blob: dcc083c1c6e9f61ec1a311c778827d66dfe10bba [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Doug Zongkerea5d7a92010-09-12 15:26:16 -070017import copy
Doug Zongker8ce7c252009-05-22 13:34:54 -070018import errno
Doug Zongkereef39442009-04-02 12:14:19 -070019import getopt
20import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010021import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070022import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070023import json
24import logging
25import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070026import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080027import platform
Doug Zongkereef39442009-04-02 12:14:19 -070028import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070029import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070030import shutil
Tao Baoc765cca2018-01-31 17:32:40 -080031import string
Doug Zongkereef39442009-04-02 12:14:19 -070032import subprocess
33import sys
34import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070035import threading
36import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070037import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080038from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070039
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070040import blockimgdiff
Tao Baoc765cca2018-01-31 17:32:40 -080041import sparse_img
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070042
Tao Bao32fcdab2018-10-12 10:30:39 -070043logger = logging.getLogger(__name__)
44
Tao Bao986ee862018-10-04 15:46:16 -070045
Dan Albert8b72aef2015-03-23 19:13:21 -070046class Options(object):
47 def __init__(self):
48 platform_search_path = {
49 "linux2": "out/host/linux-x86",
50 "darwin": "out/host/darwin-x86",
Doug Zongker85448772014-09-09 14:59:20 -070051 }
Doug Zongker85448772014-09-09 14:59:20 -070052
Tao Bao76def242017-11-21 09:25:31 -080053 self.search_path = platform_search_path.get(sys.platform)
Dan Albert8b72aef2015-03-23 19:13:21 -070054 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Alex Klyubin9667b182015-12-10 13:38:50 -080055 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070056 self.extra_signapk_args = []
57 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080058 self.java_args = ["-Xmx2048m"] # The default JVM args.
Dan Albert8b72aef2015-03-23 19:13:21 -070059 self.public_key_suffix = ".x509.pem"
60 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070061 # use otatools built boot_signer by default
62 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070063 self.boot_signer_args = []
64 self.verity_signer_path = None
65 self.verity_signer_args = []
Dan Albert8b72aef2015-03-23 19:13:21 -070066 self.verbose = False
67 self.tempfiles = []
68 self.device_specific = None
69 self.extras = {}
70 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070071 self.source_info_dict = None
72 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070073 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070074 # Stash size cannot exceed cache_size * threshold.
75 self.cache_size = None
76 self.stash_threshold = 0.8
Dan Albert8b72aef2015-03-23 19:13:21 -070077
78
79OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -070080
Tao Bao71197512018-10-11 14:08:45 -070081# The block size that's used across the releasetools scripts.
82BLOCK_SIZE = 4096
83
Doug Zongkerf6a53aa2009-12-15 15:06:55 -080084# Values for "certificate" in apkcerts that mean special things.
85SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
86
Tao Bao9dd909e2017-11-14 11:27:32 -080087# The partitions allowed to be signed by AVB (Android verified boot 2.0).
Dario Freni5f681e12018-05-29 13:09:01 +010088AVB_PARTITIONS = ('boot', 'recovery', 'system', 'vendor', 'product',
Dario Freni924af7d2018-08-17 00:56:14 +010089 'product_services', 'dtbo', 'odm')
Tao Bao9dd909e2017-11-14 11:27:32 -080090
Tianjie Xu861f4132018-09-12 11:49:33 -070091# Partitions that should have their care_map added to META/care_map.pb
92PARTITIONS_WITH_CARE_MAP = ('system', 'vendor', 'product', 'product_services',
93 'odm')
94
95
Tianjie Xu209db462016-05-24 17:34:52 -070096class ErrorCode(object):
97 """Define error_codes for failures that happen during the actual
98 update package installation.
99
100 Error codes 0-999 are reserved for failures before the package
101 installation (i.e. low battery, package verification failure).
102 Detailed code in 'bootable/recovery/error_code.h' """
103
104 SYSTEM_VERIFICATION_FAILURE = 1000
105 SYSTEM_UPDATE_FAILURE = 1001
106 SYSTEM_UNEXPECTED_CONTENTS = 1002
107 SYSTEM_NONZERO_CONTENTS = 1003
108 SYSTEM_RECOVER_FAILURE = 1004
109 VENDOR_VERIFICATION_FAILURE = 2000
110 VENDOR_UPDATE_FAILURE = 2001
111 VENDOR_UNEXPECTED_CONTENTS = 2002
112 VENDOR_NONZERO_CONTENTS = 2003
113 VENDOR_RECOVER_FAILURE = 2004
114 OEM_PROP_MISMATCH = 3000
115 FINGERPRINT_MISMATCH = 3001
116 THUMBPRINT_MISMATCH = 3002
117 OLDER_BUILD = 3003
118 DEVICE_MISMATCH = 3004
119 BAD_PATCH_FILE = 3005
120 INSUFFICIENT_CACHE_SPACE = 3006
121 TUNE_PARTITION_FAILURE = 3007
122 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800123
Tao Bao80921982018-03-21 21:02:19 -0700124
Dan Albert8b72aef2015-03-23 19:13:21 -0700125class ExternalError(RuntimeError):
126 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700127
128
Tao Bao32fcdab2018-10-12 10:30:39 -0700129def InitLogging():
130 DEFAULT_LOGGING_CONFIG = {
131 'version': 1,
132 'disable_existing_loggers': False,
133 'formatters': {
134 'standard': {
135 'format':
136 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
137 'datefmt': '%Y-%m-%d %H:%M:%S',
138 },
139 },
140 'handlers': {
141 'default': {
142 'class': 'logging.StreamHandler',
143 'formatter': 'standard',
144 },
145 },
146 'loggers': {
147 '': {
148 'handlers': ['default'],
149 'level': 'WARNING',
150 'propagate': True,
151 }
152 }
153 }
154 env_config = os.getenv('LOGGING_CONFIG')
155 if env_config:
156 with open(env_config) as f:
157 config = json.load(f)
158 else:
159 config = DEFAULT_LOGGING_CONFIG
160
161 # Increase the logging level for verbose mode.
162 if OPTIONS.verbose:
163 config = copy.deepcopy(DEFAULT_LOGGING_CONFIG)
164 config['loggers']['']['level'] = 'INFO'
165
166 logging.config.dictConfig(config)
167
168
Tao Bao39451582017-05-04 11:10:47 -0700169def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700170 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700171
Tao Bao73dd4f42018-10-04 16:25:33 -0700172 Args:
173 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700174 verbose: Whether the commands should be shown. Default to the global
175 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700176 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
177 stdin, etc. stdout and stderr will default to subprocess.PIPE and
178 subprocess.STDOUT respectively unless caller specifies any of them.
179
180 Returns:
181 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700182 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700183 if 'stdout' not in kwargs and 'stderr' not in kwargs:
184 kwargs['stdout'] = subprocess.PIPE
185 kwargs['stderr'] = subprocess.STDOUT
Tao Bao32fcdab2018-10-12 10:30:39 -0700186 # Don't log any if caller explicitly says so.
187 if verbose != False:
188 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700189 return subprocess.Popen(args, **kwargs)
190
191
Tao Bao986ee862018-10-04 15:46:16 -0700192def RunAndCheckOutput(args, verbose=None, **kwargs):
193 """Runs the given command and returns the output.
194
195 Args:
196 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700197 verbose: Whether the commands should be shown. Default to the global
198 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700199 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
200 stdin, etc. stdout and stderr will default to subprocess.PIPE and
201 subprocess.STDOUT respectively unless caller specifies any of them.
202
203 Returns:
204 The output string.
205
206 Raises:
207 ExternalError: On non-zero exit from the command.
208 """
Tao Bao986ee862018-10-04 15:46:16 -0700209 proc = Run(args, verbose=verbose, **kwargs)
210 output, _ = proc.communicate()
Tao Bao32fcdab2018-10-12 10:30:39 -0700211 # Don't log any if caller explicitly says so.
212 if verbose != False:
213 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700214 if proc.returncode != 0:
215 raise ExternalError(
216 "Failed to run command '{}' (exit code {}):\n{}".format(
217 args, proc.returncode, output))
218 return output
219
220
Tao Baoc765cca2018-01-31 17:32:40 -0800221def RoundUpTo4K(value):
222 rounded_up = value + 4095
223 return rounded_up - (rounded_up % 4096)
224
225
Ying Wang7e6d4e42010-12-13 16:25:36 -0800226def CloseInheritedPipes():
227 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
228 before doing other work."""
229 if platform.system() != "Darwin":
230 return
231 for d in range(3, 1025):
232 try:
233 stat = os.fstat(d)
234 if stat is not None:
235 pipebit = stat[0] & 0x1000
236 if pipebit != 0:
237 os.close(d)
238 except OSError:
239 pass
240
241
Tao Bao410ad8b2018-08-24 12:08:38 -0700242def LoadInfoDict(input_file, repacking=False):
243 """Loads the key/value pairs from the given input target_files.
244
245 It reads `META/misc_info.txt` file in the target_files input, does sanity
246 checks and returns the parsed key/value pairs for to the given build. It's
247 usually called early when working on input target_files files, e.g. when
248 generating OTAs, or signing builds. Note that the function may be called
249 against an old target_files file (i.e. from past dessert releases). So the
250 property parsing needs to be backward compatible.
251
252 In a `META/misc_info.txt`, a few properties are stored as links to the files
253 in the PRODUCT_OUT directory. It works fine with the build system. However,
254 they are no longer available when (re)generating images from target_files zip.
255 When `repacking` is True, redirect these properties to the actual files in the
256 unzipped directory.
257
258 Args:
259 input_file: The input target_files file, which could be an open
260 zipfile.ZipFile instance, or a str for the dir that contains the files
261 unzipped from a target_files file.
262 repacking: Whether it's trying repack an target_files file after loading the
263 info dict (default: False). If so, it will rewrite a few loaded
264 properties (e.g. selinux_fc, root_dir) to point to the actual files in
265 target_files file. When doing repacking, `input_file` must be a dir.
266
267 Returns:
268 A dict that contains the parsed key/value pairs.
269
270 Raises:
271 AssertionError: On invalid input arguments.
272 ValueError: On malformed input values.
273 """
274 if repacking:
275 assert isinstance(input_file, str), \
276 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700277
Doug Zongkerc9253822014-02-04 12:17:58 -0800278 def read_helper(fn):
Dan Albert8b72aef2015-03-23 19:13:21 -0700279 if isinstance(input_file, zipfile.ZipFile):
280 return input_file.read(fn)
Doug Zongkerc9253822014-02-04 12:17:58 -0800281 else:
Dan Albert8b72aef2015-03-23 19:13:21 -0700282 path = os.path.join(input_file, *fn.split("/"))
Doug Zongkerc9253822014-02-04 12:17:58 -0800283 try:
284 with open(path) as f:
285 return f.read()
Dan Albert8b72aef2015-03-23 19:13:21 -0700286 except IOError as e:
Doug Zongkerc9253822014-02-04 12:17:58 -0800287 if e.errno == errno.ENOENT:
288 raise KeyError(fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800289
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700290 try:
Michael Runge6e836112014-04-15 17:40:21 -0700291 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700292 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700293 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700294
Tao Bao410ad8b2018-08-24 12:08:38 -0700295 if "recovery_api_version" not in d:
296 raise ValueError("Failed to find 'recovery_api_version'")
297 if "fstab_version" not in d:
298 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800299
Tao Bao410ad8b2018-08-24 12:08:38 -0700300 if repacking:
301 # We carry a copy of file_contexts.bin under META/. If not available, search
302 # BOOT/RAMDISK/. Note that sometimes we may need a different file to build
303 # images than the one running on device, in that case, we must have the one
304 # for image generation copied to META/.
Tao Bao79735a62015-08-28 10:52:03 -0700305 fc_basename = os.path.basename(d.get("selinux_fc", "file_contexts"))
Tao Bao410ad8b2018-08-24 12:08:38 -0700306 fc_config = os.path.join(input_file, "META", fc_basename)
Tom Cherryd14b8952018-08-09 14:26:00 -0700307 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700308
Tom Cherryd14b8952018-08-09 14:26:00 -0700309 d["selinux_fc"] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700310
Tom Cherryd14b8952018-08-09 14:26:00 -0700311 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700312 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700313 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700314 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700315
Tao Baof54216f2016-03-29 15:12:37 -0700316 # Redirect {system,vendor}_base_fs_file.
317 if "system_base_fs_file" in d:
318 basename = os.path.basename(d["system_base_fs_file"])
Tao Bao410ad8b2018-08-24 12:08:38 -0700319 system_base_fs_file = os.path.join(input_file, "META", basename)
Tao Baob079b502016-05-03 08:01:19 -0700320 if os.path.exists(system_base_fs_file):
321 d["system_base_fs_file"] = system_base_fs_file
322 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700323 logger.warning(
324 "Failed to find system base fs file: %s", system_base_fs_file)
Tao Baob079b502016-05-03 08:01:19 -0700325 del d["system_base_fs_file"]
Tao Baof54216f2016-03-29 15:12:37 -0700326
327 if "vendor_base_fs_file" in d:
328 basename = os.path.basename(d["vendor_base_fs_file"])
Tao Bao410ad8b2018-08-24 12:08:38 -0700329 vendor_base_fs_file = os.path.join(input_file, "META", basename)
Tao Baob079b502016-05-03 08:01:19 -0700330 if os.path.exists(vendor_base_fs_file):
331 d["vendor_base_fs_file"] = vendor_base_fs_file
332 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700333 logger.warning(
334 "Failed to find vendor base fs file: %s", vendor_base_fs_file)
Tao Baob079b502016-05-03 08:01:19 -0700335 del d["vendor_base_fs_file"]
Tao Baof54216f2016-03-29 15:12:37 -0700336
Doug Zongker37974732010-09-16 17:44:38 -0700337 def makeint(key):
338 if key in d:
339 d[key] = int(d[key], 0)
340
341 makeint("recovery_api_version")
342 makeint("blocksize")
343 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700344 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700345 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700346 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700347 makeint("recovery_size")
348 makeint("boot_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800349 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700350
Tao Baoa57ab9f2018-08-24 12:08:38 -0700351 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
352 # ../RAMDISK/system/etc/recovery.fstab. LoadInfoDict() has to handle both
353 # cases, since it may load the info_dict from an old build (e.g. when
354 # generating incremental OTAs from that build).
Tao Bao76def242017-11-21 09:25:31 -0800355 system_root_image = d.get("system_root_image") == "true"
356 if d.get("no_recovery") != "true":
Tao Bao696bb332018-08-17 16:27:01 -0700357 recovery_fstab_path = "RECOVERY/RAMDISK/system/etc/recovery.fstab"
Tao Baob4adc062018-08-22 18:27:14 -0700358 if isinstance(input_file, zipfile.ZipFile):
359 if recovery_fstab_path not in input_file.namelist():
360 recovery_fstab_path = "RECOVERY/RAMDISK/etc/recovery.fstab"
361 else:
362 path = os.path.join(input_file, *recovery_fstab_path.split("/"))
363 if not os.path.exists(path):
364 recovery_fstab_path = "RECOVERY/RAMDISK/etc/recovery.fstab"
Tao Bao76def242017-11-21 09:25:31 -0800365 d["fstab"] = LoadRecoveryFSTab(
366 read_helper, d["fstab_version"], recovery_fstab_path, system_root_image)
Tao Baob4adc062018-08-22 18:27:14 -0700367
Tao Bao76def242017-11-21 09:25:31 -0800368 elif d.get("recovery_as_boot") == "true":
Tao Bao696bb332018-08-17 16:27:01 -0700369 recovery_fstab_path = "BOOT/RAMDISK/system/etc/recovery.fstab"
Tao Baob4adc062018-08-22 18:27:14 -0700370 if isinstance(input_file, zipfile.ZipFile):
371 if recovery_fstab_path not in input_file.namelist():
372 recovery_fstab_path = "BOOT/RAMDISK/etc/recovery.fstab"
373 else:
374 path = os.path.join(input_file, *recovery_fstab_path.split("/"))
375 if not os.path.exists(path):
376 recovery_fstab_path = "BOOT/RAMDISK/etc/recovery.fstab"
Tao Bao76def242017-11-21 09:25:31 -0800377 d["fstab"] = LoadRecoveryFSTab(
378 read_helper, d["fstab_version"], recovery_fstab_path, system_root_image)
Tao Baob4adc062018-08-22 18:27:14 -0700379
Tianjie Xucfa86222016-03-07 16:31:19 -0800380 else:
381 d["fstab"] = None
382
Tianjie Xu861f4132018-09-12 11:49:33 -0700383 # Tries to load the build props for all partitions with care_map, including
384 # system and vendor.
385 for partition in PARTITIONS_WITH_CARE_MAP:
386 d["{}.build.prop".format(partition)] = LoadBuildProp(
387 read_helper, "{}/build.prop".format(partition.upper()))
388 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800389
390 # Set up the salt (based on fingerprint or thumbprint) that will be used when
391 # adding AVB footer.
392 if d.get("avb_enable") == "true":
393 fp = None
394 if "build.prop" in d:
395 build_prop = d["build.prop"]
396 if "ro.build.fingerprint" in build_prop:
397 fp = build_prop["ro.build.fingerprint"]
398 elif "ro.build.thumbprint" in build_prop:
399 fp = build_prop["ro.build.thumbprint"]
400 if fp:
401 d["avb_salt"] = sha256(fp).hexdigest()
402
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700403 return d
404
Tao Baod1de6f32017-03-01 16:38:48 -0800405
Tao Baobcd1d162017-08-26 13:10:26 -0700406def LoadBuildProp(read_helper, prop_file):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700407 try:
Tao Baobcd1d162017-08-26 13:10:26 -0700408 data = read_helper(prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700409 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700410 logger.warning("Failed to read %s", prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700411 data = ""
Michael Runge6e836112014-04-15 17:40:21 -0700412 return LoadDictionaryFromLines(data.split("\n"))
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700413
Tao Baod1de6f32017-03-01 16:38:48 -0800414
Michael Runge6e836112014-04-15 17:40:21 -0700415def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700416 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700417 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700418 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700419 if not line or line.startswith("#"):
420 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700421 if "=" in line:
422 name, value = line.split("=", 1)
423 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700424 return d
425
Tao Baod1de6f32017-03-01 16:38:48 -0800426
Tianjie Xucfa86222016-03-07 16:31:19 -0800427def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
428 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700429 class Partition(object):
Tao Baod1de6f32017-03-01 16:38:48 -0800430 def __init__(self, mount_point, fs_type, device, length, context):
Dan Albert8b72aef2015-03-23 19:13:21 -0700431 self.mount_point = mount_point
432 self.fs_type = fs_type
433 self.device = device
434 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -0700435 self.context = context
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700436
437 try:
Tianjie Xucfa86222016-03-07 16:31:19 -0800438 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700439 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700440 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -0700441 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700442
Tao Baod1de6f32017-03-01 16:38:48 -0800443 assert fstab_version == 2
444
445 d = {}
446 for line in data.split("\n"):
447 line = line.strip()
448 if not line or line.startswith("#"):
449 continue
450
451 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
452 pieces = line.split()
453 if len(pieces) != 5:
454 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
455
456 # Ignore entries that are managed by vold.
457 options = pieces[4]
458 if "voldmanaged=" in options:
459 continue
460
461 # It's a good line, parse it.
462 length = 0
463 options = options.split(",")
464 for i in options:
465 if i.startswith("length="):
466 length = int(i[7:])
Doug Zongker086cbb02011-02-17 15:54:20 -0800467 else:
Tao Baod1de6f32017-03-01 16:38:48 -0800468 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -0700469 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800470
Tao Baod1de6f32017-03-01 16:38:48 -0800471 mount_flags = pieces[3]
472 # Honor the SELinux context if present.
473 context = None
474 for i in mount_flags.split(","):
475 if i.startswith("context="):
476 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -0800477
Tao Baod1de6f32017-03-01 16:38:48 -0800478 mount_point = pieces[1]
479 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
480 device=pieces[0], length=length, context=context)
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800481
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700482 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700483 # system. Other areas assume system is always at "/system" so point /system
484 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700485 if system_root_image:
486 assert not d.has_key("/system") and d.has_key("/")
487 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700488 return d
489
490
Doug Zongker37974732010-09-16 17:44:38 -0700491def DumpInfoDict(d):
492 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -0700493 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700494
Dan Albert8b72aef2015-03-23 19:13:21 -0700495
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800496def AppendAVBSigningArgs(cmd, partition):
497 """Append signing arguments for avbtool."""
498 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
499 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
500 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
501 if key_path and algorithm:
502 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -0700503 avb_salt = OPTIONS.info_dict.get("avb_salt")
504 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -0700505 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -0700506 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800507
508
Tao Bao02a08592018-07-22 12:40:45 -0700509def GetAvbChainedPartitionArg(partition, info_dict, key=None):
510 """Constructs and returns the arg to build or verify a chained partition.
511
512 Args:
513 partition: The partition name.
514 info_dict: The info dict to look up the key info and rollback index
515 location.
516 key: The key to be used for building or verifying the partition. Defaults to
517 the key listed in info_dict.
518
519 Returns:
520 A string of form "partition:rollback_index_location:key" that can be used to
521 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -0700522 """
523 if key is None:
524 key = info_dict["avb_" + partition + "_key_path"]
525 avbtool = os.getenv('AVBTOOL') or info_dict["avb_avbtool"]
526 pubkey_path = MakeTempFile(prefix="avb-", suffix=".pubkey")
Tao Bao986ee862018-10-04 15:46:16 -0700527 RunAndCheckOutput(
Tao Bao73dd4f42018-10-04 16:25:33 -0700528 [avbtool, "extract_public_key", "--key", key, "--output", pubkey_path])
Tao Bao02a08592018-07-22 12:40:45 -0700529
530 rollback_index_location = info_dict[
531 "avb_" + partition + "_rollback_index_location"]
532 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
533
534
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700535def _BuildBootableImage(sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -0800536 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700537 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -0700538
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700539 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -0800540 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
541 we are building a two-step special image (i.e. building a recovery image to
542 be loaded into /boot in two-step OTAs).
543
544 Return the image data, or None if sourcedir does not appear to contains files
545 for building the requested image.
546 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700547
548 def make_ramdisk():
549 ramdisk_img = tempfile.NamedTemporaryFile()
550
551 if os.access(fs_config_file, os.F_OK):
552 cmd = ["mkbootfs", "-f", fs_config_file,
553 os.path.join(sourcedir, "RAMDISK")]
554 else:
555 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
556 p1 = Run(cmd, stdout=subprocess.PIPE)
557 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
558
559 p2.wait()
560 p1.wait()
561 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
562 assert p2.returncode == 0, "minigzip of %s ramdisk failed" % (sourcedir,)
563
564 return ramdisk_img
565
566 if not os.access(os.path.join(sourcedir, "kernel"), os.F_OK):
567 return None
568
569 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -0700570 return None
Doug Zongkereef39442009-04-02 12:14:19 -0700571
Doug Zongkerd5131602012-08-02 14:46:42 -0700572 if info_dict is None:
573 info_dict = OPTIONS.info_dict
574
Doug Zongkereef39442009-04-02 12:14:19 -0700575 img = tempfile.NamedTemporaryFile()
576
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700577 if has_ramdisk:
578 ramdisk_img = make_ramdisk()
Doug Zongkereef39442009-04-02 12:14:19 -0700579
Bjorn Andersson612e2cd2012-11-25 16:53:44 -0800580 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
581 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
582
583 cmd = [mkbootimg, "--kernel", os.path.join(sourcedir, "kernel")]
Doug Zongker38a649f2009-06-17 09:07:09 -0700584
Benoit Fradina45a8682014-07-14 21:00:43 +0200585 fn = os.path.join(sourcedir, "second")
586 if os.access(fn, os.F_OK):
587 cmd.append("--second")
588 cmd.append(fn)
589
Doug Zongker171f1cd2009-06-15 22:36:37 -0700590 fn = os.path.join(sourcedir, "cmdline")
591 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -0700592 cmd.append("--cmdline")
593 cmd.append(open(fn).read().rstrip("\n"))
594
595 fn = os.path.join(sourcedir, "base")
596 if os.access(fn, os.F_OK):
597 cmd.append("--base")
598 cmd.append(open(fn).read().rstrip("\n"))
599
Ying Wang4de6b5b2010-08-25 14:29:34 -0700600 fn = os.path.join(sourcedir, "pagesize")
601 if os.access(fn, os.F_OK):
602 cmd.append("--pagesize")
603 cmd.append(open(fn).read().rstrip("\n"))
604
Tao Bao76def242017-11-21 09:25:31 -0800605 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -0700606 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -0700607 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -0700608
Tao Bao76def242017-11-21 09:25:31 -0800609 args = info_dict.get("mkbootimg_version_args")
Sami Tolvanen3303d902016-03-15 16:49:30 +0000610 if args and args.strip():
611 cmd.extend(shlex.split(args))
612
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700613 if has_ramdisk:
614 cmd.extend(["--ramdisk", ramdisk_img.name])
615
Tao Baod95e9fd2015-03-29 23:07:41 -0700616 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -0800617 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -0700618 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700619 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -0700620 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700621 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -0700622
Tao Baobf70c3182017-07-11 17:27:55 -0700623 # "boot" or "recovery", without extension.
624 partition_name = os.path.basename(sourcedir).lower()
625
Chen, ZhiminX752439b2018-09-23 22:10:47 +0800626 if partition_name == "recovery":
627 if info_dict.get("include_recovery_dtbo") == "true":
628 fn = os.path.join(sourcedir, "recovery_dtbo")
629 cmd.extend(["--recovery_dtbo", fn])
630 if info_dict.get("include_recovery_acpio") == "true":
631 fn = os.path.join(sourcedir, "recovery_acpio")
632 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -0700633
Tao Bao986ee862018-10-04 15:46:16 -0700634 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -0700635
Tao Bao76def242017-11-21 09:25:31 -0800636 if (info_dict.get("boot_signer") == "true" and
637 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -0800638 # Hard-code the path as "/boot" for two-step special recovery image (which
639 # will be loaded into /boot during the two-step OTA).
640 if two_step_image:
641 path = "/boot"
642 else:
Tao Baobf70c3182017-07-11 17:27:55 -0700643 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -0700644 cmd = [OPTIONS.boot_signer_path]
645 cmd.extend(OPTIONS.boot_signer_args)
646 cmd.extend([path, img.name,
647 info_dict["verity_key"] + ".pk8",
648 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -0700649 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -0700650
Tao Baod95e9fd2015-03-29 23:07:41 -0700651 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -0800652 elif info_dict.get("vboot"):
Tao Baobf70c3182017-07-11 17:27:55 -0700653 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -0700654 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -0800655 # We have switched from the prebuilt futility binary to using the tool
656 # (futility-host) built from the source. Override the setting in the old
657 # TF.zip.
658 futility = info_dict["futility"]
659 if futility.startswith("prebuilts/"):
660 futility = "futility-host"
661 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -0700662 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -0700663 info_dict["vboot_key"] + ".vbprivk",
664 info_dict["vboot_subkey"] + ".vbprivk",
665 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -0700666 img.name]
Tao Bao986ee862018-10-04 15:46:16 -0700667 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -0700668
Tao Baof3282b42015-04-01 11:21:55 -0700669 # Clean up the temp files.
670 img_unsigned.close()
671 img_keyblock.close()
672
David Zeuthen8fecb282017-12-01 16:24:01 -0500673 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800674 if info_dict.get("avb_enable") == "true":
Tao Bao3ebfdde2017-05-23 23:06:55 -0700675 avbtool = os.getenv('AVBTOOL') or info_dict["avb_avbtool"]
David Zeuthen8fecb282017-12-01 16:24:01 -0500676 part_size = info_dict[partition_name + "_size"]
David Zeuthen2ce63ed2016-09-15 13:43:54 -0400677 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c3182017-07-11 17:27:55 -0700678 "--partition_size", str(part_size), "--partition_name",
679 partition_name]
680 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -0500681 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -0400682 if args and args.strip():
683 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -0700684 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -0500685
686 img.seek(os.SEEK_SET, 0)
687 data = img.read()
688
689 if has_ramdisk:
690 ramdisk_img.close()
691 img.close()
692
693 return data
694
695
Doug Zongkerd5131602012-08-02 14:46:42 -0700696def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -0800697 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700698 """Return a File object with the desired bootable image.
699
700 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
701 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
702 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -0700703
Doug Zongker55d93282011-01-25 17:03:34 -0800704 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
705 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -0700706 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -0800707 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -0700708
709 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
710 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -0700711 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -0700712 return File.FromLocalFile(name, prebuilt_path)
713
Tao Bao32fcdab2018-10-12 10:30:39 -0700714 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700715
716 if info_dict is None:
717 info_dict = OPTIONS.info_dict
718
719 # With system_root_image == "true", we don't pack ramdisk into the boot image.
Daniel Rosenberg40ef35b2015-11-10 19:21:34 -0800720 # Unless "recovery_as_boot" is specified, in which case we carry the ramdisk
721 # for recovery.
722 has_ramdisk = (info_dict.get("system_root_image") != "true" or
723 prebuilt_name != "boot.img" or
724 info_dict.get("recovery_as_boot") == "true")
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700725
Doug Zongker6f1d0312014-08-22 08:07:12 -0700726 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
David Zeuthen2ce63ed2016-09-15 13:43:54 -0400727 data = _BuildBootableImage(os.path.join(unpack_dir, tree_subdir),
728 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -0800729 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -0700730 if data:
731 return File(name, data)
732 return None
Doug Zongker55d93282011-01-25 17:03:34 -0800733
Doug Zongkereef39442009-04-02 12:14:19 -0700734
Narayan Kamatha07bf042017-08-14 14:49:21 +0100735def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -0800736 """Gunzips the given gzip compressed file to a given output file."""
737 with gzip.open(in_filename, "rb") as in_file, \
738 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +0100739 shutil.copyfileobj(in_file, out_file)
740
741
Doug Zongker75f17362009-12-08 13:46:44 -0800742def UnzipTemp(filename, pattern=None):
Tao Bao1c830bf2017-12-25 10:43:47 -0800743 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -0800744
Tao Bao1c830bf2017-12-25 10:43:47 -0800745 If filename is of the form "foo.zip+bar.zip", unzip foo.zip into a temp dir,
746 then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
Doug Zongker55d93282011-01-25 17:03:34 -0800747
Tao Bao1c830bf2017-12-25 10:43:47 -0800748 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -0800749 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -0800750 """
Doug Zongkereef39442009-04-02 12:14:19 -0700751
Doug Zongker55d93282011-01-25 17:03:34 -0800752 def unzip_to_dir(filename, dirname):
753 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
754 if pattern is not None:
Tao Bao6b0b2f92017-03-05 11:38:11 -0800755 cmd.extend(pattern)
Tao Bao986ee862018-10-04 15:46:16 -0700756 RunAndCheckOutput(cmd)
Doug Zongker55d93282011-01-25 17:03:34 -0800757
Tao Bao1c830bf2017-12-25 10:43:47 -0800758 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -0800759 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
760 if m:
761 unzip_to_dir(m.group(1), tmp)
762 unzip_to_dir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"))
763 filename = m.group(1)
764 else:
765 unzip_to_dir(filename, tmp)
766
Tao Baodba59ee2018-01-09 13:21:02 -0800767 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -0700768
769
Tianjie Xu67c7cbb2018-08-30 00:32:07 -0700770def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
771 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -0800772 """Returns a SparseImage object suitable for passing to BlockImageDiff.
773
774 This function loads the specified sparse image from the given path, and
775 performs additional processing for OTA purpose. For example, it always adds
776 block 0 to clobbered blocks list. It also detects files that cannot be
777 reconstructed from the block list, for whom we should avoid applying imgdiff.
778
779 Args:
780 which: The partition name, which must be "system" or "vendor".
781 tmpdir: The directory that contains the prebuilt image and block map file.
782 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -0800783 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -0700784 hashtree_info_generator: If present, generates the hashtree_info for this
785 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -0800786 Returns:
787 A SparseImage object, with file_map info loaded.
788 """
789 assert which in ("system", "vendor")
790
791 path = os.path.join(tmpdir, "IMAGES", which + ".img")
792 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
793
794 # The image and map files must have been created prior to calling
795 # ota_from_target_files.py (since LMP).
796 assert os.path.exists(path) and os.path.exists(mappath)
797
798 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
799 # it to clobbered_blocks so that it will be written to the target
800 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
801 clobbered_blocks = "0"
802
Tianjie Xu67c7cbb2018-08-30 00:32:07 -0700803 image = sparse_img.SparseImage(
804 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
805 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -0800806
807 # block.map may contain less blocks, because mke2fs may skip allocating blocks
808 # if they contain all zeros. We can't reconstruct such a file from its block
809 # list. Tag such entries accordingly. (Bug: 65213616)
810 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -0800811 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -0700812 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -0800813 continue
814
Tom Cherryd14b8952018-08-09 14:26:00 -0700815 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
816 # filename listed in system.map may contain an additional leading slash
817 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
818 # results.
Tao Baod3554e62018-07-10 15:31:22 -0700819 arcname = string.replace(entry, which, which.upper(), 1).lstrip('/')
820
Tom Cherryd14b8952018-08-09 14:26:00 -0700821 # Special handling another case, where files not under /system
822 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
Tao Baod3554e62018-07-10 15:31:22 -0700823 if which == 'system' and not arcname.startswith('SYSTEM'):
824 arcname = 'ROOT/' + arcname
825
826 assert arcname in input_zip.namelist(), \
827 "Failed to find the ZIP entry for {}".format(entry)
828
Tao Baoc765cca2018-01-31 17:32:40 -0800829 info = input_zip.getinfo(arcname)
830 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -0800831
832 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -0800833 # image, check the original block list to determine its completeness. Note
834 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -0800835 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -0800836 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -0800837
Tao Baoc765cca2018-01-31 17:32:40 -0800838 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
839 ranges.extra['incomplete'] = True
840
841 return image
842
843
Doug Zongkereef39442009-04-02 12:14:19 -0700844def GetKeyPasswords(keylist):
845 """Given a list of keys, prompt the user to enter passwords for
846 those which require them. Return a {key: password} dict. password
847 will be None if the key has no password."""
848
Doug Zongker8ce7c252009-05-22 13:34:54 -0700849 no_passwords = []
850 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -0700851 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -0700852 devnull = open("/dev/null", "w+b")
853 for k in sorted(keylist):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800854 # We don't need a password for things that aren't really keys.
855 if k in SPECIAL_CERT_STRINGS:
Doug Zongker8ce7c252009-05-22 13:34:54 -0700856 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -0700857 continue
858
T.R. Fullhart37e10522013-03-18 10:31:26 -0700859 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -0700860 "-inform", "DER", "-nocrypt"],
861 stdin=devnull.fileno(),
862 stdout=devnull.fileno(),
863 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -0700864 p.communicate()
865 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -0700866 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -0700867 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -0700868 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -0700869 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
870 "-inform", "DER", "-passin", "pass:"],
871 stdin=devnull.fileno(),
872 stdout=devnull.fileno(),
873 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -0700874 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -0700875 if p.returncode == 0:
876 # Encrypted key with empty string as password.
877 key_passwords[k] = ''
878 elif stderr.startswith('Error decrypting key'):
879 # Definitely encrypted key.
880 # It would have said "Error reading key" if it didn't parse correctly.
881 need_passwords.append(k)
882 else:
883 # Potentially, a type of key that openssl doesn't understand.
884 # We'll let the routines in signapk.jar handle it.
885 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -0700886 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -0700887
T.R. Fullhart37e10522013-03-18 10:31:26 -0700888 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -0800889 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -0700890 return key_passwords
891
892
Alex Klyubin2cfd1d12016-01-13 10:32:47 -0800893def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -0700894 """Gets the minSdkVersion declared in the APK.
895
896 It calls 'aapt' to query the embedded minSdkVersion from the given APK file.
897 This can be both a decimal number (API Level) or a codename.
898
899 Args:
900 apk_name: The APK filename.
901
902 Returns:
903 The parsed SDK version string.
904
905 Raises:
906 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -0800907 """
Tao Baof47bf0f2018-03-21 23:28:51 -0700908 proc = Run(
909 ["aapt", "dump", "badging", apk_name], stdout=subprocess.PIPE,
910 stderr=subprocess.PIPE)
911 stdoutdata, stderrdata = proc.communicate()
912 if proc.returncode != 0:
913 raise ExternalError(
914 "Failed to obtain minSdkVersion: aapt return code {}:\n{}\n{}".format(
915 proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -0800916
Tao Baof47bf0f2018-03-21 23:28:51 -0700917 for line in stdoutdata.split("\n"):
918 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -0800919 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
920 if m:
921 return m.group(1)
922 raise ExternalError("No minSdkVersion returned by aapt")
923
924
925def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -0700926 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -0800927
Tao Baof47bf0f2018-03-21 23:28:51 -0700928 If minSdkVersion is set to a codename, it is translated to a number using the
929 provided map.
930
931 Args:
932 apk_name: The APK filename.
933
934 Returns:
935 The parsed SDK version number.
936
937 Raises:
938 ExternalError: On failing to get the min SDK version number.
939 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -0800940 version = GetMinSdkVersion(apk_name)
941 try:
942 return int(version)
943 except ValueError:
944 # Not a decimal number. Codename?
945 if version in codename_to_api_level_map:
946 return codename_to_api_level_map[version]
947 else:
Tao Baof47bf0f2018-03-21 23:28:51 -0700948 raise ExternalError(
949 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
950 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -0800951
952
953def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Bao76def242017-11-21 09:25:31 -0800954 codename_to_api_level_map=None, whole_file=False):
Doug Zongkereef39442009-04-02 12:14:19 -0700955 """Sign the input_name zip/jar/apk, producing output_name. Use the
956 given key and password (the latter may be None if the key does not
957 have a password.
958
Doug Zongker951495f2009-08-14 12:44:19 -0700959 If whole_file is true, use the "-w" option to SignApk to embed a
960 signature that covers the whole file in the archive comment of the
961 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -0800962
963 min_api_level is the API Level (int) of the oldest platform this file may end
964 up on. If not specified for an APK, the API Level is obtained by interpreting
965 the minSdkVersion attribute of the APK's AndroidManifest.xml.
966
967 codename_to_api_level_map is needed to translate the codename which may be
968 encountered as the APK's minSdkVersion.
Doug Zongkereef39442009-04-02 12:14:19 -0700969 """
Tao Bao76def242017-11-21 09:25:31 -0800970 if codename_to_api_level_map is None:
971 codename_to_api_level_map = {}
Doug Zongker951495f2009-08-14 12:44:19 -0700972
Alex Klyubin9667b182015-12-10 13:38:50 -0800973 java_library_path = os.path.join(
974 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
975
Tao Baoe95540e2016-11-08 12:08:53 -0800976 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
977 ["-Djava.library.path=" + java_library_path,
978 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
979 OPTIONS.extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -0700980 if whole_file:
981 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -0800982
983 min_sdk_version = min_api_level
984 if min_sdk_version is None:
985 if not whole_file:
986 min_sdk_version = GetMinSdkVersionInt(
987 input_name, codename_to_api_level_map)
988 if min_sdk_version is not None:
989 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
990
T.R. Fullhart37e10522013-03-18 10:31:26 -0700991 cmd.extend([key + OPTIONS.public_key_suffix,
992 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -0800993 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -0700994
Tao Bao73dd4f42018-10-04 16:25:33 -0700995 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -0700996 if password is not None:
997 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -0700998 stdoutdata, _ = proc.communicate(password)
999 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07001000 raise ExternalError(
1001 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07001002 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07001003
Doug Zongkereef39442009-04-02 12:14:19 -07001004
Doug Zongker37974732010-09-16 17:44:38 -07001005def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08001006 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07001007
Tao Bao9dd909e2017-11-14 11:27:32 -08001008 For non-AVB images, raise exception if the data is too big. Print a warning
1009 if the data is nearing the maximum size.
1010
1011 For AVB images, the actual image size should be identical to the limit.
1012
1013 Args:
1014 data: A string that contains all the data for the partition.
1015 target: The partition name. The ".img" suffix is optional.
1016 info_dict: The dict to be looked up for relevant info.
1017 """
Dan Albert8b72aef2015-03-23 19:13:21 -07001018 if target.endswith(".img"):
1019 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001020 mount_point = "/" + target
1021
Ying Wangf8824af2014-06-03 14:07:27 -07001022 fs_type = None
1023 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001024 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07001025 if mount_point == "/userdata":
1026 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001027 p = info_dict["fstab"][mount_point]
1028 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08001029 device = p.device
1030 if "/" in device:
1031 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08001032 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07001033 if not fs_type or not limit:
1034 return
Doug Zongkereef39442009-04-02 12:14:19 -07001035
Andrew Boie0f9aec82012-02-14 09:32:52 -08001036 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08001037 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
1038 # path.
1039 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
1040 if size != limit:
1041 raise ExternalError(
1042 "Mismatching image size for %s: expected %d actual %d" % (
1043 target, limit, size))
1044 else:
1045 pct = float(size) * 100.0 / limit
1046 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
1047 if pct >= 99.0:
1048 raise ExternalError(msg)
1049 elif pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07001050 logger.warning("\n WARNING: %s\n", msg)
1051 else:
1052 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07001053
1054
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001055def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08001056 """Parses the APK certs info from a given target-files zip.
1057
1058 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
1059 tuple with the following elements: (1) a dictionary that maps packages to
1060 certs (based on the "certificate" and "private_key" attributes in the file;
1061 (2) a string representing the extension of compressed APKs in the target files
1062 (e.g ".gz", ".bro").
1063
1064 Args:
1065 tf_zip: The input target_files ZipFile (already open).
1066
1067 Returns:
1068 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
1069 the extension string of compressed APKs (e.g. ".gz"), or None if there's
1070 no compressed APKs.
1071 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001072 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01001073 compressed_extension = None
1074
Tao Bao0f990332017-09-08 19:02:54 -07001075 # META/apkcerts.txt contains the info for _all_ the packages known at build
1076 # time. Filter out the ones that are not installed.
1077 installed_files = set()
1078 for name in tf_zip.namelist():
1079 basename = os.path.basename(name)
1080 if basename:
1081 installed_files.add(basename)
1082
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001083 for line in tf_zip.read("META/apkcerts.txt").split("\n"):
1084 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07001085 if not line:
1086 continue
Tao Bao818ddf52018-01-05 11:17:34 -08001087 m = re.match(
1088 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
1089 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*)")?$',
1090 line)
1091 if not m:
1092 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01001093
Tao Bao818ddf52018-01-05 11:17:34 -08001094 matches = m.groupdict()
1095 cert = matches["CERT"]
1096 privkey = matches["PRIVKEY"]
1097 name = matches["NAME"]
1098 this_compressed_extension = matches["COMPRESSED"]
1099
1100 public_key_suffix_len = len(OPTIONS.public_key_suffix)
1101 private_key_suffix_len = len(OPTIONS.private_key_suffix)
1102 if cert in SPECIAL_CERT_STRINGS and not privkey:
1103 certmap[name] = cert
1104 elif (cert.endswith(OPTIONS.public_key_suffix) and
1105 privkey.endswith(OPTIONS.private_key_suffix) and
1106 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
1107 certmap[name] = cert[:-public_key_suffix_len]
1108 else:
1109 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
1110
1111 if not this_compressed_extension:
1112 continue
1113
1114 # Only count the installed files.
1115 filename = name + '.' + this_compressed_extension
1116 if filename not in installed_files:
1117 continue
1118
1119 # Make sure that all the values in the compression map have the same
1120 # extension. We don't support multiple compression methods in the same
1121 # system image.
1122 if compressed_extension:
1123 if this_compressed_extension != compressed_extension:
1124 raise ValueError(
1125 "Multiple compressed extensions: {} vs {}".format(
1126 compressed_extension, this_compressed_extension))
1127 else:
1128 compressed_extension = this_compressed_extension
1129
1130 return (certmap,
1131 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001132
1133
Doug Zongkereef39442009-04-02 12:14:19 -07001134COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07001135Global options
1136
1137 -p (--path) <dir>
1138 Prepend <dir>/bin to the list of places to search for binaries run by this
1139 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07001140
Doug Zongker05d3dea2009-06-22 11:32:31 -07001141 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07001142 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07001143
Tao Bao30df8b42018-04-23 15:32:53 -07001144 -x (--extra) <key=value>
1145 Add a key/value pair to the 'extras' dict, which device-specific extension
1146 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08001147
Doug Zongkereef39442009-04-02 12:14:19 -07001148 -v (--verbose)
1149 Show command lines being executed.
1150
1151 -h (--help)
1152 Display this usage message and exit.
1153"""
1154
1155def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08001156 print(docstring.rstrip("\n"))
1157 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07001158
1159
1160def ParseOptions(argv,
1161 docstring,
1162 extra_opts="", extra_long_opts=(),
1163 extra_option_handler=None):
1164 """Parse the options in argv and return any arguments that aren't
1165 flags. docstring is the calling module's docstring, to be displayed
1166 for errors and -h. extra_opts and extra_long_opts are for flags
1167 defined by the caller, which are processed by passing them to
1168 extra_option_handler."""
1169
1170 try:
1171 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08001172 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08001173 ["help", "verbose", "path=", "signapk_path=",
1174 "signapk_shared_library_path=", "extra_signapk_args=",
Baligh Uddinbdc2e312014-09-05 17:36:20 -07001175 "java_path=", "java_args=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07001176 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
1177 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Baligh Uddine2048682014-11-20 09:52:05 -08001178 "extra="] +
T.R. Fullhart37e10522013-03-18 10:31:26 -07001179 list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07001180 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07001181 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08001182 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07001183 sys.exit(2)
1184
Doug Zongkereef39442009-04-02 12:14:19 -07001185 for o, a in opts:
1186 if o in ("-h", "--help"):
1187 Usage(docstring)
1188 sys.exit()
1189 elif o in ("-v", "--verbose"):
1190 OPTIONS.verbose = True
1191 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07001192 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001193 elif o in ("--signapk_path",):
1194 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08001195 elif o in ("--signapk_shared_library_path",):
1196 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001197 elif o in ("--extra_signapk_args",):
1198 OPTIONS.extra_signapk_args = shlex.split(a)
1199 elif o in ("--java_path",):
1200 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07001201 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08001202 OPTIONS.java_args = shlex.split(a)
T.R. Fullhart37e10522013-03-18 10:31:26 -07001203 elif o in ("--public_key_suffix",):
1204 OPTIONS.public_key_suffix = a
1205 elif o in ("--private_key_suffix",):
1206 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08001207 elif o in ("--boot_signer_path",):
1208 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07001209 elif o in ("--boot_signer_args",):
1210 OPTIONS.boot_signer_args = shlex.split(a)
1211 elif o in ("--verity_signer_path",):
1212 OPTIONS.verity_signer_path = a
1213 elif o in ("--verity_signer_args",):
1214 OPTIONS.verity_signer_args = shlex.split(a)
Doug Zongker05d3dea2009-06-22 11:32:31 -07001215 elif o in ("-s", "--device_specific"):
1216 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08001217 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08001218 key, value = a.split("=", 1)
1219 OPTIONS.extras[key] = value
Doug Zongkereef39442009-04-02 12:14:19 -07001220 else:
1221 if extra_option_handler is None or not extra_option_handler(o, a):
1222 assert False, "unknown option \"%s\"" % (o,)
1223
Doug Zongker85448772014-09-09 14:59:20 -07001224 if OPTIONS.search_path:
1225 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
1226 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07001227
1228 return args
1229
1230
Tao Bao4c851b12016-09-19 13:54:38 -07001231def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07001232 """Make a temp file and add it to the list of things to be deleted
1233 when Cleanup() is called. Return the filename."""
1234 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
1235 os.close(fd)
1236 OPTIONS.tempfiles.append(fn)
1237 return fn
1238
1239
Tao Bao1c830bf2017-12-25 10:43:47 -08001240def MakeTempDir(prefix='tmp', suffix=''):
1241 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
1242
1243 Returns:
1244 The absolute pathname of the new directory.
1245 """
1246 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
1247 OPTIONS.tempfiles.append(dir_name)
1248 return dir_name
1249
1250
Doug Zongkereef39442009-04-02 12:14:19 -07001251def Cleanup():
1252 for i in OPTIONS.tempfiles:
1253 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08001254 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07001255 else:
1256 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08001257 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07001258
1259
1260class PasswordManager(object):
1261 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08001262 self.editor = os.getenv("EDITOR")
1263 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07001264
1265 def GetPasswords(self, items):
1266 """Get passwords corresponding to each string in 'items',
1267 returning a dict. (The dict may have keys in addition to the
1268 values in 'items'.)
1269
1270 Uses the passwords in $ANDROID_PW_FILE if available, letting the
1271 user edit that file to add more needed passwords. If no editor is
1272 available, or $ANDROID_PW_FILE isn't define, prompts the user
1273 interactively in the ordinary way.
1274 """
1275
1276 current = self.ReadFile()
1277
1278 first = True
1279 while True:
1280 missing = []
1281 for i in items:
1282 if i not in current or not current[i]:
1283 missing.append(i)
1284 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07001285 if not missing:
1286 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07001287
1288 for i in missing:
1289 current[i] = ""
1290
1291 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08001292 print("key file %s still missing some passwords." % (self.pwfile,))
Doug Zongker8ce7c252009-05-22 13:34:54 -07001293 answer = raw_input("try to edit again? [y]> ").strip()
1294 if answer and answer[0] not in 'yY':
1295 raise RuntimeError("key passwords unavailable")
1296 first = False
1297
1298 current = self.UpdateAndReadFile(current)
1299
Dan Albert8b72aef2015-03-23 19:13:21 -07001300 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07001301 """Prompt the user to enter a value (password) for each key in
1302 'current' whose value is fales. Returns a new dict with all the
1303 values.
1304 """
1305 result = {}
1306 for k, v in sorted(current.iteritems()):
1307 if v:
1308 result[k] = v
1309 else:
1310 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07001311 result[k] = getpass.getpass(
1312 "Enter password for %s key> " % k).strip()
1313 if result[k]:
1314 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07001315 return result
1316
1317 def UpdateAndReadFile(self, current):
1318 if not self.editor or not self.pwfile:
1319 return self.PromptResult(current)
1320
1321 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07001322 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07001323 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
1324 f.write("# (Additional spaces are harmless.)\n\n")
1325
1326 first_line = None
Dan Albert8b72aef2015-03-23 19:13:21 -07001327 sorted_list = sorted([(not v, k, v) for (k, v) in current.iteritems()])
1328 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07001329 f.write("[[[ %s ]]] %s\n" % (v, k))
1330 if not v and first_line is None:
1331 # position cursor on first line with no password.
1332 first_line = i + 4
1333 f.close()
1334
Tao Bao986ee862018-10-04 15:46:16 -07001335 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07001336
1337 return self.ReadFile()
1338
1339 def ReadFile(self):
1340 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07001341 if self.pwfile is None:
1342 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07001343 try:
1344 f = open(self.pwfile, "r")
1345 for line in f:
1346 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07001347 if not line or line[0] == '#':
1348 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07001349 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
1350 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07001351 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07001352 else:
1353 result[m.group(2)] = m.group(1)
1354 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07001355 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07001356 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07001357 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07001358 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07001359
1360
Dan Albert8e0178d2015-01-27 15:53:15 -08001361def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
1362 compress_type=None):
1363 import datetime
1364
1365 # http://b/18015246
1366 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
1367 # for files larger than 2GiB. We can work around this by adjusting their
1368 # limit. Note that `zipfile.writestr()` will not work for strings larger than
1369 # 2GiB. The Python interpreter sometimes rejects strings that large (though
1370 # it isn't clear to me exactly what circumstances cause this).
1371 # `zipfile.write()` must be used directly to work around this.
1372 #
1373 # This mess can be avoided if we port to python3.
1374 saved_zip64_limit = zipfile.ZIP64_LIMIT
1375 zipfile.ZIP64_LIMIT = (1 << 32) - 1
1376
1377 if compress_type is None:
1378 compress_type = zip_file.compression
1379 if arcname is None:
1380 arcname = filename
1381
1382 saved_stat = os.stat(filename)
1383
1384 try:
1385 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
1386 # file to be zipped and reset it when we're done.
1387 os.chmod(filename, perms)
1388
1389 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07001390 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
1391 # intentional. zip stores datetimes in local time without a time zone
1392 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
1393 # in the zip archive.
1394 local_epoch = datetime.datetime.fromtimestamp(0)
1395 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08001396 os.utime(filename, (timestamp, timestamp))
1397
1398 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
1399 finally:
1400 os.chmod(filename, saved_stat.st_mode)
1401 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
1402 zipfile.ZIP64_LIMIT = saved_zip64_limit
1403
1404
Tao Bao58c1b962015-05-20 09:32:18 -07001405def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07001406 compress_type=None):
1407 """Wrap zipfile.writestr() function to work around the zip64 limit.
1408
1409 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
1410 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
1411 when calling crc32(bytes).
1412
1413 But it still works fine to write a shorter string into a large zip file.
1414 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
1415 when we know the string won't be too long.
1416 """
1417
1418 saved_zip64_limit = zipfile.ZIP64_LIMIT
1419 zipfile.ZIP64_LIMIT = (1 << 32) - 1
1420
1421 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
1422 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07001423 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07001424 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07001425 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08001426 else:
Tao Baof3282b42015-04-01 11:21:55 -07001427 zinfo = zinfo_or_arcname
1428
1429 # If compress_type is given, it overrides the value in zinfo.
1430 if compress_type is not None:
1431 zinfo.compress_type = compress_type
1432
Tao Bao58c1b962015-05-20 09:32:18 -07001433 # If perms is given, it has a priority.
1434 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07001435 # If perms doesn't set the file type, mark it as a regular file.
1436 if perms & 0o770000 == 0:
1437 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07001438 zinfo.external_attr = perms << 16
1439
Tao Baof3282b42015-04-01 11:21:55 -07001440 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07001441 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
1442
Dan Albert8b72aef2015-03-23 19:13:21 -07001443 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07001444 zipfile.ZIP64_LIMIT = saved_zip64_limit
1445
1446
Tao Bao89d7ab22017-12-14 17:05:33 -08001447def ZipDelete(zip_filename, entries):
1448 """Deletes entries from a ZIP file.
1449
1450 Since deleting entries from a ZIP file is not supported, it shells out to
1451 'zip -d'.
1452
1453 Args:
1454 zip_filename: The name of the ZIP file.
1455 entries: The name of the entry, or the list of names to be deleted.
1456
1457 Raises:
1458 AssertionError: In case of non-zero return from 'zip'.
1459 """
1460 if isinstance(entries, basestring):
1461 entries = [entries]
1462 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07001463 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08001464
1465
Tao Baof3282b42015-04-01 11:21:55 -07001466def ZipClose(zip_file):
1467 # http://b/18015246
1468 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
1469 # central directory.
1470 saved_zip64_limit = zipfile.ZIP64_LIMIT
1471 zipfile.ZIP64_LIMIT = (1 << 32) - 1
1472
1473 zip_file.close()
1474
1475 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07001476
1477
1478class DeviceSpecificParams(object):
1479 module = None
1480 def __init__(self, **kwargs):
1481 """Keyword arguments to the constructor become attributes of this
1482 object, which is passed to all functions in the device-specific
1483 module."""
1484 for k, v in kwargs.iteritems():
1485 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08001486 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07001487
1488 if self.module is None:
1489 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07001490 if not path:
1491 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07001492 try:
1493 if os.path.isdir(path):
1494 info = imp.find_module("releasetools", [path])
1495 else:
1496 d, f = os.path.split(path)
1497 b, x = os.path.splitext(f)
1498 if x == ".py":
1499 f = b
1500 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07001501 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07001502 self.module = imp.load_module("device_specific", *info)
1503 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07001504 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07001505
1506 def _DoCall(self, function_name, *args, **kwargs):
1507 """Call the named function in the device-specific module, passing
1508 the given args and kwargs. The first argument to the call will be
1509 the DeviceSpecific object itself. If there is no module, or the
1510 module does not define the function, return the value of the
1511 'default' kwarg (which itself defaults to None)."""
1512 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08001513 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07001514 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
1515
1516 def FullOTA_Assertions(self):
1517 """Called after emitting the block of assertions at the top of a
1518 full OTA package. Implementations can add whatever additional
1519 assertions they like."""
1520 return self._DoCall("FullOTA_Assertions")
1521
Doug Zongkere5ff5902012-01-17 10:55:37 -08001522 def FullOTA_InstallBegin(self):
1523 """Called at the start of full OTA installation."""
1524 return self._DoCall("FullOTA_InstallBegin")
1525
Doug Zongker05d3dea2009-06-22 11:32:31 -07001526 def FullOTA_InstallEnd(self):
1527 """Called at the end of full OTA installation; typically this is
1528 used to install the image for the device's baseband processor."""
1529 return self._DoCall("FullOTA_InstallEnd")
1530
1531 def IncrementalOTA_Assertions(self):
1532 """Called after emitting the block of assertions at the top of an
1533 incremental OTA package. Implementations can add whatever
1534 additional assertions they like."""
1535 return self._DoCall("IncrementalOTA_Assertions")
1536
Doug Zongkere5ff5902012-01-17 10:55:37 -08001537 def IncrementalOTA_VerifyBegin(self):
1538 """Called at the start of the verification phase of incremental
1539 OTA installation; additional checks can be placed here to abort
1540 the script before any changes are made."""
1541 return self._DoCall("IncrementalOTA_VerifyBegin")
1542
Doug Zongker05d3dea2009-06-22 11:32:31 -07001543 def IncrementalOTA_VerifyEnd(self):
1544 """Called at the end of the verification phase of incremental OTA
1545 installation; additional checks can be placed here to abort the
1546 script before any changes are made."""
1547 return self._DoCall("IncrementalOTA_VerifyEnd")
1548
Doug Zongkere5ff5902012-01-17 10:55:37 -08001549 def IncrementalOTA_InstallBegin(self):
1550 """Called at the start of incremental OTA installation (after
1551 verification is complete)."""
1552 return self._DoCall("IncrementalOTA_InstallBegin")
1553
Doug Zongker05d3dea2009-06-22 11:32:31 -07001554 def IncrementalOTA_InstallEnd(self):
1555 """Called at the end of incremental OTA installation; typically
1556 this is used to install the image for the device's baseband
1557 processor."""
1558 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001559
Tao Bao9bc6bb22015-11-09 16:58:28 -08001560 def VerifyOTA_Assertions(self):
1561 return self._DoCall("VerifyOTA_Assertions")
1562
Tao Bao76def242017-11-21 09:25:31 -08001563
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001564class File(object):
Tao Bao76def242017-11-21 09:25:31 -08001565 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001566 self.name = name
1567 self.data = data
1568 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09001569 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08001570 self.sha1 = sha1(data).hexdigest()
1571
1572 @classmethod
1573 def FromLocalFile(cls, name, diskname):
1574 f = open(diskname, "rb")
1575 data = f.read()
1576 f.close()
1577 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001578
1579 def WriteToTemp(self):
1580 t = tempfile.NamedTemporaryFile()
1581 t.write(self.data)
1582 t.flush()
1583 return t
1584
Dan Willemsen2ee00d52017-03-05 19:51:56 -08001585 def WriteToDir(self, d):
1586 with open(os.path.join(d, self.name), "wb") as fp:
1587 fp.write(self.data)
1588
Geremy Condra36bd3652014-02-06 19:45:10 -08001589 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07001590 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001591
Tao Bao76def242017-11-21 09:25:31 -08001592
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001593DIFF_PROGRAM_BY_EXT = {
1594 ".gz" : "imgdiff",
1595 ".zip" : ["imgdiff", "-z"],
1596 ".jar" : ["imgdiff", "-z"],
1597 ".apk" : ["imgdiff", "-z"],
1598 ".img" : "imgdiff",
1599 }
1600
Tao Bao76def242017-11-21 09:25:31 -08001601
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001602class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07001603 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001604 self.tf = tf
1605 self.sf = sf
1606 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07001607 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001608
1609 def ComputePatch(self):
1610 """Compute the patch (as a string of data) needed to turn sf into
1611 tf. Returns the same tuple as GetPatch()."""
1612
1613 tf = self.tf
1614 sf = self.sf
1615
Doug Zongker24cd2802012-08-14 16:36:15 -07001616 if self.diff_program:
1617 diff_program = self.diff_program
1618 else:
1619 ext = os.path.splitext(tf.name)[1]
1620 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001621
1622 ttemp = tf.WriteToTemp()
1623 stemp = sf.WriteToTemp()
1624
1625 ext = os.path.splitext(tf.name)[1]
1626
1627 try:
1628 ptemp = tempfile.NamedTemporaryFile()
1629 if isinstance(diff_program, list):
1630 cmd = copy.copy(diff_program)
1631 else:
1632 cmd = [diff_program]
1633 cmd.append(stemp.name)
1634 cmd.append(ttemp.name)
1635 cmd.append(ptemp.name)
1636 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07001637 err = []
1638 def run():
1639 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07001640 if e:
1641 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07001642 th = threading.Thread(target=run)
1643 th.start()
1644 th.join(timeout=300) # 5 mins
1645 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07001646 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07001647 p.terminate()
1648 th.join(5)
1649 if th.is_alive():
1650 p.kill()
1651 th.join()
1652
Tianjie Xua2a9f992018-01-05 15:15:54 -08001653 if p.returncode != 0:
Tao Bao32fcdab2018-10-12 10:30:39 -07001654 logger.warning("Failure running %s:\n%s\n", diff_program, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07001655 self.patch = None
1656 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001657 diff = ptemp.read()
1658 finally:
1659 ptemp.close()
1660 stemp.close()
1661 ttemp.close()
1662
1663 self.patch = diff
1664 return self.tf, self.sf, self.patch
1665
1666
1667 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08001668 """Returns a tuple of (target_file, source_file, patch_data).
1669
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001670 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08001671 computing the patch failed.
1672 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001673 return self.tf, self.sf, self.patch
1674
1675
1676def ComputeDifferences(diffs):
1677 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07001678 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001679
1680 # Do the largest files first, to try and reduce the long-pole effect.
1681 by_size = [(i.tf.size, i) for i in diffs]
1682 by_size.sort(reverse=True)
1683 by_size = [i[1] for i in by_size]
1684
1685 lock = threading.Lock()
1686 diff_iter = iter(by_size) # accessed under lock
1687
1688 def worker():
1689 try:
1690 lock.acquire()
1691 for d in diff_iter:
1692 lock.release()
1693 start = time.time()
1694 d.ComputePatch()
1695 dur = time.time() - start
1696 lock.acquire()
1697
1698 tf, sf, patch = d.GetPatch()
1699 if sf.name == tf.name:
1700 name = tf.name
1701 else:
1702 name = "%s (%s)" % (tf.name, sf.name)
1703 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07001704 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001705 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07001706 logger.info(
1707 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
1708 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001709 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07001710 except Exception:
1711 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001712 raise
1713
1714 # start worker threads; wait for them all to finish.
1715 threads = [threading.Thread(target=worker)
1716 for i in range(OPTIONS.worker_threads)]
1717 for th in threads:
1718 th.start()
1719 while threads:
1720 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07001721
1722
Dan Albert8b72aef2015-03-23 19:13:21 -07001723class BlockDifference(object):
1724 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07001725 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001726 self.tgt = tgt
1727 self.src = src
1728 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07001729 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07001730 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001731
Tao Baodd2a5892015-03-12 12:32:37 -07001732 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08001733 version = max(
1734 int(i) for i in
1735 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08001736 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07001737 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07001738
1739 b = blockimgdiff.BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
Tao Bao293fd132016-06-11 12:19:23 -07001740 version=self.version,
1741 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08001742 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001743 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08001744 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07001745 self.touched_src_ranges = b.touched_src_ranges
1746 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001747
Tao Baoaac4ad52015-10-16 15:26:34 -07001748 if src is None:
1749 _, self.device = GetTypeAndDevice("/" + partition, OPTIONS.info_dict)
1750 else:
1751 _, self.device = GetTypeAndDevice("/" + partition,
1752 OPTIONS.source_info_dict)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001753
Tao Baod8d14be2016-02-04 14:26:02 -08001754 @property
1755 def required_cache(self):
1756 return self._required_cache
1757
Tao Bao76def242017-11-21 09:25:31 -08001758 def WriteScript(self, script, output_zip, progress=None,
1759 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001760 if not self.src:
1761 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08001762 script.Print("Patching %s image unconditionally..." % (self.partition,))
1763 else:
1764 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001765
Dan Albert8b72aef2015-03-23 19:13:21 -07001766 if progress:
1767 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08001768 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08001769
1770 if write_verify_script:
Tianjie Xub2deb222016-03-25 15:01:33 -07001771 self._WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08001772
Tao Bao9bc6bb22015-11-09 16:58:28 -08001773 def WriteStrictVerifyScript(self, script):
1774 """Verify all the blocks in the care_map, including clobbered blocks.
1775
1776 This differs from the WriteVerifyScript() function: a) it prints different
1777 error messages; b) it doesn't allow half-way updated images to pass the
1778 verification."""
1779
1780 partition = self.partition
1781 script.Print("Verifying %s..." % (partition,))
1782 ranges = self.tgt.care_map
1783 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08001784 script.AppendExtra(
1785 'range_sha1("%s", "%s") == "%s" && ui_print(" Verified.") || '
1786 'ui_print("\\"%s\\" has unexpected contents.");' % (
1787 self.device, ranges_str,
1788 self.tgt.TotalSha1(include_clobbered_blocks=True),
1789 self.device))
Tao Bao9bc6bb22015-11-09 16:58:28 -08001790 script.AppendExtra("")
1791
Tao Baod522bdc2016-04-12 15:53:16 -07001792 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00001793 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07001794
1795 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08001796 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00001797 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07001798
1799 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001800 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08001801 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07001802 ranges = self.touched_src_ranges
1803 expected_sha1 = self.touched_src_sha1
1804 else:
1805 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
1806 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07001807
1808 # No blocks to be checked, skipping.
1809 if not ranges:
1810 return
1811
Tao Bao5ece99d2015-05-12 11:42:31 -07001812 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08001813 script.AppendExtra(
1814 'if (range_sha1("%s", "%s") == "%s" || block_image_verify("%s", '
1815 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
1816 '"%s.patch.dat")) then' % (
1817 self.device, ranges_str, expected_sha1,
1818 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07001819 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07001820 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00001821
Tianjie Xufc3422a2015-12-15 11:53:59 -08001822 if self.version >= 4:
1823
1824 # Bug: 21124327
1825 # When generating incrementals for the system and vendor partitions in
1826 # version 4 or newer, explicitly check the first block (which contains
1827 # the superblock) of the partition to see if it's what we expect. If
1828 # this check fails, give an explicit log message about the partition
1829 # having been remounted R/W (the most likely explanation).
1830 if self.check_first_block:
1831 script.AppendExtra('check_first_block("%s");' % (self.device,))
1832
1833 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07001834 if partition == "system":
1835 code = ErrorCode.SYSTEM_RECOVER_FAILURE
1836 else:
1837 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08001838 script.AppendExtra((
1839 'ifelse (block_image_recover("{device}", "{ranges}") && '
1840 'block_image_verify("{device}", '
1841 'package_extract_file("{partition}.transfer.list"), '
1842 '"{partition}.new.dat", "{partition}.patch.dat"), '
1843 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07001844 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08001845 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07001846 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07001847
Tao Baodd2a5892015-03-12 12:32:37 -07001848 # Abort the OTA update. Note that the incremental OTA cannot be applied
1849 # even if it may match the checksum of the target partition.
1850 # a) If version < 3, operations like move and erase will make changes
1851 # unconditionally and damage the partition.
1852 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08001853 else:
Tianjie Xu209db462016-05-24 17:34:52 -07001854 if partition == "system":
1855 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
1856 else:
1857 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
1858 script.AppendExtra((
1859 'abort("E%d: %s partition has unexpected contents");\n'
1860 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001861
Tao Bao5fcaaef2015-06-01 13:40:49 -07001862 def _WritePostInstallVerifyScript(self, script):
1863 partition = self.partition
1864 script.Print('Verifying the updated %s image...' % (partition,))
1865 # Unlike pre-install verification, clobbered_blocks should not be ignored.
1866 ranges = self.tgt.care_map
1867 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08001868 script.AppendExtra(
1869 'if range_sha1("%s", "%s") == "%s" then' % (
1870 self.device, ranges_str,
1871 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07001872
1873 # Bug: 20881595
1874 # Verify that extended blocks are really zeroed out.
1875 if self.tgt.extended:
1876 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08001877 script.AppendExtra(
1878 'if range_sha1("%s", "%s") == "%s" then' % (
1879 self.device, ranges_str,
1880 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07001881 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07001882 if partition == "system":
1883 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
1884 else:
1885 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07001886 script.AppendExtra(
1887 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07001888 ' abort("E%d: %s partition has unexpected non-zero contents after '
1889 'OTA update");\n'
1890 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07001891 else:
1892 script.Print('Verified the updated %s image.' % (partition,))
1893
Tianjie Xu209db462016-05-24 17:34:52 -07001894 if partition == "system":
1895 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
1896 else:
1897 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
1898
Tao Bao5fcaaef2015-06-01 13:40:49 -07001899 script.AppendExtra(
1900 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07001901 ' abort("E%d: %s partition has unexpected contents after OTA '
1902 'update");\n'
1903 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07001904
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001905 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08001906 ZipWrite(output_zip,
1907 '{}.transfer.list'.format(self.path),
1908 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07001909
Tao Bao76def242017-11-21 09:25:31 -08001910 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
1911 # its size. Quailty 9 almost triples the compression time but doesn't
1912 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07001913 # zip | brotli(quality 6) | brotli(quality 9)
1914 # compressed_size: 942M | 869M (~8% reduced) | 854M
1915 # compression_time: 75s | 265s | 719s
1916 # decompression_time: 15s | 25s | 25s
1917
1918 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01001919 brotli_cmd = ['brotli', '--quality=6',
1920 '--output={}.new.dat.br'.format(self.path),
1921 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07001922 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07001923 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07001924
1925 new_data_name = '{}.new.dat.br'.format(self.partition)
1926 ZipWrite(output_zip,
1927 '{}.new.dat.br'.format(self.path),
1928 new_data_name,
1929 compress_type=zipfile.ZIP_STORED)
1930 else:
1931 new_data_name = '{}.new.dat'.format(self.partition)
1932 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
1933
Dan Albert8e0178d2015-01-27 15:53:15 -08001934 ZipWrite(output_zip,
1935 '{}.patch.dat'.format(self.path),
1936 '{}.patch.dat'.format(self.partition),
1937 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001938
Tianjie Xu209db462016-05-24 17:34:52 -07001939 if self.partition == "system":
1940 code = ErrorCode.SYSTEM_UPDATE_FAILURE
1941 else:
1942 code = ErrorCode.VENDOR_UPDATE_FAILURE
1943
Dan Albert8e0178d2015-01-27 15:53:15 -08001944 call = ('block_image_update("{device}", '
1945 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07001946 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07001947 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07001948 device=self.device, partition=self.partition,
1949 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07001950 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001951
Dan Albert8b72aef2015-03-23 19:13:21 -07001952 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00001953 data = source.ReadRangeSet(ranges)
1954 ctx = sha1()
1955
1956 for p in data:
1957 ctx.update(p)
1958
1959 return ctx.hexdigest()
1960
Tao Baoe9b61912015-07-09 17:37:49 -07001961 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
1962 """Return the hash value for all zero blocks."""
1963 zero_block = '\x00' * 4096
1964 ctx = sha1()
1965 for _ in range(num_blocks):
1966 ctx.update(zero_block)
1967
1968 return ctx.hexdigest()
1969
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001970
1971DataImage = blockimgdiff.DataImage
1972
Tao Bao76def242017-11-21 09:25:31 -08001973
Doug Zongker96a57e72010-09-26 14:57:41 -07001974# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07001975PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07001976 "ext4": "EMMC",
1977 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07001978 "f2fs": "EMMC",
1979 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07001980}
Doug Zongker96a57e72010-09-26 14:57:41 -07001981
Tao Bao76def242017-11-21 09:25:31 -08001982
Doug Zongker96a57e72010-09-26 14:57:41 -07001983def GetTypeAndDevice(mount_point, info):
1984 fstab = info["fstab"]
1985 if fstab:
Dan Albert8b72aef2015-03-23 19:13:21 -07001986 return (PARTITION_TYPES[fstab[mount_point].fs_type],
1987 fstab[mount_point].device)
Doug Zongker96a57e72010-09-26 14:57:41 -07001988 else:
Dan Albert8b72aef2015-03-23 19:13:21 -07001989 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00001990
1991
1992def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08001993 """Parses and converts a PEM-encoded certificate into DER-encoded.
1994
1995 This gives the same result as `openssl x509 -in <filename> -outform DER`.
1996
1997 Returns:
1998 The decoded certificate string.
1999 """
2000 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002001 save = False
2002 for line in data.split("\n"):
2003 if "--END CERTIFICATE--" in line:
2004 break
2005 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08002006 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002007 if "--BEGIN CERTIFICATE--" in line:
2008 save = True
Tao Bao17e4e612018-02-16 17:12:54 -08002009 cert = "".join(cert_buffer).decode('base64')
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002010 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08002011
Tao Bao04e1f012018-02-04 12:13:35 -08002012
2013def ExtractPublicKey(cert):
2014 """Extracts the public key (PEM-encoded) from the given certificate file.
2015
2016 Args:
2017 cert: The certificate filename.
2018
2019 Returns:
2020 The public key string.
2021
2022 Raises:
2023 AssertionError: On non-zero return from 'openssl'.
2024 """
2025 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
2026 # While openssl 1.1 writes the key into the given filename followed by '-out',
2027 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
2028 # stdout instead.
2029 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
2030 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
2031 pubkey, stderrdata = proc.communicate()
2032 assert proc.returncode == 0, \
2033 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
2034 return pubkey
2035
2036
Doug Zongker412c02f2014-02-13 10:58:24 -08002037def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
2038 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08002039 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08002040
Tao Bao6d5d6232018-03-09 17:04:42 -08002041 Most of the space in the boot and recovery images is just the kernel, which is
2042 identical for the two, so the resulting patch should be efficient. Add it to
2043 the output zip, along with a shell script that is run from init.rc on first
2044 boot to actually do the patching and install the new recovery image.
2045
2046 Args:
2047 input_dir: The top-level input directory of the target-files.zip.
2048 output_sink: The callback function that writes the result.
2049 recovery_img: File object for the recovery image.
2050 boot_img: File objects for the boot image.
2051 info_dict: A dict returned by common.LoadInfoDict() on the input
2052 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08002053 """
Doug Zongker412c02f2014-02-13 10:58:24 -08002054 if info_dict is None:
2055 info_dict = OPTIONS.info_dict
2056
Tao Bao6d5d6232018-03-09 17:04:42 -08002057 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Doug Zongkerc9253822014-02-04 12:17:58 -08002058
Tao Baof2cffbd2015-07-22 12:33:18 -07002059 if full_recovery_image:
2060 output_sink("etc/recovery.img", recovery_img.data)
2061
2062 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08002063 system_root_image = info_dict.get("system_root_image") == "true"
Tao Baof2cffbd2015-07-22 12:33:18 -07002064 path = os.path.join(input_dir, "SYSTEM", "etc", "recovery-resource.dat")
Tao Bao6d5d6232018-03-09 17:04:42 -08002065 # With system-root-image, boot and recovery images will have mismatching
2066 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
2067 # to handle such a case.
2068 if system_root_image:
2069 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07002070 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08002071 assert not os.path.exists(path)
2072 else:
2073 diff_program = ["imgdiff"]
2074 if os.path.exists(path):
2075 diff_program.append("-b")
2076 diff_program.append(path)
Tao Bao4948aed2018-07-13 16:11:16 -07002077 bonus_args = "--bonus /system/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08002078 else:
2079 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07002080
2081 d = Difference(recovery_img, boot_img, diff_program=diff_program)
2082 _, _, patch = d.ComputePatch()
2083 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08002084
Dan Albertebb19aa2015-03-27 19:11:53 -07002085 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07002086 # The following GetTypeAndDevice()s need to use the path in the target
2087 # info_dict instead of source_info_dict.
Dan Albertebb19aa2015-03-27 19:11:53 -07002088 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict)
2089 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict)
2090 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07002091 return
Doug Zongkerc9253822014-02-04 12:17:58 -08002092
Tao Baof2cffbd2015-07-22 12:33:18 -07002093 if full_recovery_image:
2094 sh = """#!/system/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002095if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
2096 applypatch \\
2097 --flash /system/etc/recovery.img \\
2098 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
2099 log -t recovery "Installing new recovery image: succeeded" || \\
2100 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07002101else
2102 log -t recovery "Recovery image already installed"
2103fi
2104""" % {'type': recovery_type,
2105 'device': recovery_device,
2106 'sha1': recovery_img.sha1,
2107 'size': recovery_img.size}
2108 else:
2109 sh = """#!/system/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002110if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
2111 applypatch %(bonus_args)s \\
2112 --patch /system/recovery-from-boot.p \\
2113 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
2114 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
2115 log -t recovery "Installing new recovery image: succeeded" || \\
2116 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08002117else
2118 log -t recovery "Recovery image already installed"
2119fi
Dan Albert8b72aef2015-03-23 19:13:21 -07002120""" % {'boot_size': boot_img.size,
2121 'boot_sha1': boot_img.sha1,
2122 'recovery_size': recovery_img.size,
2123 'recovery_sha1': recovery_img.sha1,
2124 'boot_type': boot_type,
2125 'boot_device': boot_device,
2126 'recovery_type': recovery_type,
2127 'recovery_device': recovery_device,
2128 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08002129
2130 # The install script location moved from /system/etc to /system/bin
Tianjie Xu78de9f12017-06-20 16:52:54 -07002131 # in the L release.
2132 sh_location = "bin/install-recovery.sh"
Tao Bao9f0c8df2015-07-07 18:31:47 -07002133
Tao Bao32fcdab2018-10-12 10:30:39 -07002134 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08002135
2136 output_sink(sh_location, sh)