blob: 9d58954d2d1308b9e71c37566a9c835d94c200d4 [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Doug Zongkerea5d7a92010-09-12 15:26:16 -070017import copy
Doug Zongker8ce7c252009-05-22 13:34:54 -070018import errno
Doug Zongkereef39442009-04-02 12:14:19 -070019import getopt
20import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010021import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070022import imp
Doug Zongkereef39442009-04-02 12:14:19 -070023import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080024import platform
Doug Zongkereef39442009-04-02 12:14:19 -070025import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070026import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070027import shutil
28import subprocess
29import sys
30import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070031import threading
32import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070033import zipfile
Doug Zongkereef39442009-04-02 12:14:19 -070034
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070035import blockimgdiff
36
Tao Baof3282b42015-04-01 11:21:55 -070037from hashlib import sha1 as sha1
Doug Zongker55d93282011-01-25 17:03:34 -080038
Doug Zongkereef39442009-04-02 12:14:19 -070039
Dan Albert8b72aef2015-03-23 19:13:21 -070040class Options(object):
41 def __init__(self):
42 platform_search_path = {
43 "linux2": "out/host/linux-x86",
44 "darwin": "out/host/darwin-x86",
Doug Zongker85448772014-09-09 14:59:20 -070045 }
Doug Zongker85448772014-09-09 14:59:20 -070046
Dan Albert8b72aef2015-03-23 19:13:21 -070047 self.search_path = platform_search_path.get(sys.platform, None)
48 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Alex Klyubin9667b182015-12-10 13:38:50 -080049 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070050 self.extra_signapk_args = []
51 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080052 self.java_args = ["-Xmx2048m"] # The default JVM args.
Dan Albert8b72aef2015-03-23 19:13:21 -070053 self.public_key_suffix = ".x509.pem"
54 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070055 # use otatools built boot_signer by default
56 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070057 self.boot_signer_args = []
58 self.verity_signer_path = None
59 self.verity_signer_args = []
Dan Albert8b72aef2015-03-23 19:13:21 -070060 self.verbose = False
61 self.tempfiles = []
62 self.device_specific = None
63 self.extras = {}
64 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070065 self.source_info_dict = None
66 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070067 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070068 # Stash size cannot exceed cache_size * threshold.
69 self.cache_size = None
70 self.stash_threshold = 0.8
Dan Albert8b72aef2015-03-23 19:13:21 -070071
72
73OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -070074
Doug Zongkerf6a53aa2009-12-15 15:06:55 -080075
76# Values for "certificate" in apkcerts that mean special things.
77SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
78
Tianjie Xu209db462016-05-24 17:34:52 -070079class ErrorCode(object):
80 """Define error_codes for failures that happen during the actual
81 update package installation.
82
83 Error codes 0-999 are reserved for failures before the package
84 installation (i.e. low battery, package verification failure).
85 Detailed code in 'bootable/recovery/error_code.h' """
86
87 SYSTEM_VERIFICATION_FAILURE = 1000
88 SYSTEM_UPDATE_FAILURE = 1001
89 SYSTEM_UNEXPECTED_CONTENTS = 1002
90 SYSTEM_NONZERO_CONTENTS = 1003
91 SYSTEM_RECOVER_FAILURE = 1004
92 VENDOR_VERIFICATION_FAILURE = 2000
93 VENDOR_UPDATE_FAILURE = 2001
94 VENDOR_UNEXPECTED_CONTENTS = 2002
95 VENDOR_NONZERO_CONTENTS = 2003
96 VENDOR_RECOVER_FAILURE = 2004
97 OEM_PROP_MISMATCH = 3000
98 FINGERPRINT_MISMATCH = 3001
99 THUMBPRINT_MISMATCH = 3002
100 OLDER_BUILD = 3003
101 DEVICE_MISMATCH = 3004
102 BAD_PATCH_FILE = 3005
103 INSUFFICIENT_CACHE_SPACE = 3006
104 TUNE_PARTITION_FAILURE = 3007
105 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800106
Dan Albert8b72aef2015-03-23 19:13:21 -0700107class ExternalError(RuntimeError):
108 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700109
110
Tao Bao39451582017-05-04 11:10:47 -0700111def Run(args, verbose=None, **kwargs):
112 """Create and return a subprocess.Popen object.
113
114 Caller can specify if the command line should be printed. The global
115 OPTIONS.verbose will be used if not specified.
116 """
117 if verbose is None:
118 verbose = OPTIONS.verbose
119 if verbose:
Tao Bao89fbb0f2017-01-10 10:47:58 -0800120 print(" running: ", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700121 return subprocess.Popen(args, **kwargs)
122
123
Ying Wang7e6d4e42010-12-13 16:25:36 -0800124def CloseInheritedPipes():
125 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
126 before doing other work."""
127 if platform.system() != "Darwin":
128 return
129 for d in range(3, 1025):
130 try:
131 stat = os.fstat(d)
132 if stat is not None:
133 pipebit = stat[0] & 0x1000
134 if pipebit != 0:
135 os.close(d)
136 except OSError:
137 pass
138
139
Tao Bao2c15d9e2015-07-09 11:51:16 -0700140def LoadInfoDict(input_file, input_dir=None):
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700141 """Read and parse the META/misc_info.txt key/value pairs from the
142 input target files and return a dict."""
143
Doug Zongkerc9253822014-02-04 12:17:58 -0800144 def read_helper(fn):
Dan Albert8b72aef2015-03-23 19:13:21 -0700145 if isinstance(input_file, zipfile.ZipFile):
146 return input_file.read(fn)
Doug Zongkerc9253822014-02-04 12:17:58 -0800147 else:
Dan Albert8b72aef2015-03-23 19:13:21 -0700148 path = os.path.join(input_file, *fn.split("/"))
Doug Zongkerc9253822014-02-04 12:17:58 -0800149 try:
150 with open(path) as f:
151 return f.read()
Dan Albert8b72aef2015-03-23 19:13:21 -0700152 except IOError as e:
Doug Zongkerc9253822014-02-04 12:17:58 -0800153 if e.errno == errno.ENOENT:
154 raise KeyError(fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800155
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700156 try:
Michael Runge6e836112014-04-15 17:40:21 -0700157 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700158 except KeyError:
Tao Bao6cd54732017-02-27 15:12:05 -0800159 raise ValueError("can't find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700160
Tao Bao6cd54732017-02-27 15:12:05 -0800161 assert "recovery_api_version" in d
Tao Baod1de6f32017-03-01 16:38:48 -0800162 assert "fstab_version" in d
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800163
Tao Bao84e75682015-07-19 02:38:53 -0700164 # A few properties are stored as links to the files in the out/ directory.
165 # It works fine with the build system. However, they are no longer available
166 # when (re)generating from target_files zip. If input_dir is not None, we
167 # are doing repacking. Redirect those properties to the actual files in the
168 # unzipped directory.
Tao Bao2c15d9e2015-07-09 11:51:16 -0700169 if input_dir is not None:
Stephen Smalleyd3a803e2015-08-04 14:59:06 -0400170 # We carry a copy of file_contexts.bin under META/. If not available,
171 # search BOOT/RAMDISK/. Note that sometimes we may need a different file
Tao Bao84e75682015-07-19 02:38:53 -0700172 # to build images than the one running on device, such as when enabling
173 # system_root_image. In that case, we must have the one for image
174 # generation copied to META/.
Tao Bao79735a62015-08-28 10:52:03 -0700175 fc_basename = os.path.basename(d.get("selinux_fc", "file_contexts"))
176 fc_config = os.path.join(input_dir, "META", fc_basename)
Tao Bao84e75682015-07-19 02:38:53 -0700177 if d.get("system_root_image") == "true":
178 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700179 if not os.path.exists(fc_config):
Tao Bao79735a62015-08-28 10:52:03 -0700180 fc_config = os.path.join(input_dir, "BOOT", "RAMDISK", fc_basename)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700181 if not os.path.exists(fc_config):
182 fc_config = None
183
184 if fc_config:
185 d["selinux_fc"] = fc_config
186
Tao Bao84e75682015-07-19 02:38:53 -0700187 # Similarly we need to redirect "ramdisk_dir" and "ramdisk_fs_config".
188 if d.get("system_root_image") == "true":
189 d["ramdisk_dir"] = os.path.join(input_dir, "ROOT")
190 d["ramdisk_fs_config"] = os.path.join(
191 input_dir, "META", "root_filesystem_config.txt")
192
Tao Baof54216f2016-03-29 15:12:37 -0700193 # Redirect {system,vendor}_base_fs_file.
194 if "system_base_fs_file" in d:
195 basename = os.path.basename(d["system_base_fs_file"])
196 system_base_fs_file = os.path.join(input_dir, "META", basename)
Tao Baob079b502016-05-03 08:01:19 -0700197 if os.path.exists(system_base_fs_file):
198 d["system_base_fs_file"] = system_base_fs_file
199 else:
Tao Bao89fbb0f2017-01-10 10:47:58 -0800200 print("Warning: failed to find system base fs file: %s" % (
201 system_base_fs_file,))
Tao Baob079b502016-05-03 08:01:19 -0700202 del d["system_base_fs_file"]
Tao Baof54216f2016-03-29 15:12:37 -0700203
204 if "vendor_base_fs_file" in d:
205 basename = os.path.basename(d["vendor_base_fs_file"])
206 vendor_base_fs_file = os.path.join(input_dir, "META", basename)
Tao Baob079b502016-05-03 08:01:19 -0700207 if os.path.exists(vendor_base_fs_file):
208 d["vendor_base_fs_file"] = vendor_base_fs_file
209 else:
Tao Bao89fbb0f2017-01-10 10:47:58 -0800210 print("Warning: failed to find vendor base fs file: %s" % (
211 vendor_base_fs_file,))
Tao Baob079b502016-05-03 08:01:19 -0700212 del d["vendor_base_fs_file"]
Tao Baof54216f2016-03-29 15:12:37 -0700213
Doug Zongker37974732010-09-16 17:44:38 -0700214 try:
Doug Zongkerc9253822014-02-04 12:17:58 -0800215 data = read_helper("META/imagesizes.txt")
Doug Zongker37974732010-09-16 17:44:38 -0700216 for line in data.split("\n"):
Dan Albert8b72aef2015-03-23 19:13:21 -0700217 if not line:
218 continue
Doug Zongker1684d9c2010-09-17 07:44:38 -0700219 name, value = line.split(" ", 1)
Dan Albert8b72aef2015-03-23 19:13:21 -0700220 if not value:
221 continue
Doug Zongker37974732010-09-16 17:44:38 -0700222 if name == "blocksize":
223 d[name] = value
224 else:
225 d[name + "_size"] = value
226 except KeyError:
227 pass
228
229 def makeint(key):
230 if key in d:
231 d[key] = int(d[key], 0)
232
233 makeint("recovery_api_version")
234 makeint("blocksize")
235 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700236 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700237 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700238 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700239 makeint("recovery_size")
240 makeint("boot_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800241 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700242
Tianjie Xucfa86222016-03-07 16:31:19 -0800243 system_root_image = d.get("system_root_image", None) == "true"
244 if d.get("no_recovery", None) != "true":
245 recovery_fstab_path = "RECOVERY/RAMDISK/etc/recovery.fstab"
Tao Bao48550cc2015-11-19 17:05:46 -0800246 d["fstab"] = LoadRecoveryFSTab(read_helper, d["fstab_version"],
Tianjie Xucfa86222016-03-07 16:31:19 -0800247 recovery_fstab_path, system_root_image)
248 elif d.get("recovery_as_boot", None) == "true":
249 recovery_fstab_path = "BOOT/RAMDISK/etc/recovery.fstab"
250 d["fstab"] = LoadRecoveryFSTab(read_helper, d["fstab_version"],
251 recovery_fstab_path, system_root_image)
252 else:
253 d["fstab"] = None
254
Doug Zongkerc9253822014-02-04 12:17:58 -0800255 d["build.prop"] = LoadBuildProp(read_helper)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700256 return d
257
Tao Baod1de6f32017-03-01 16:38:48 -0800258
Doug Zongkerc9253822014-02-04 12:17:58 -0800259def LoadBuildProp(read_helper):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700260 try:
Doug Zongkerc9253822014-02-04 12:17:58 -0800261 data = read_helper("SYSTEM/build.prop")
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700262 except KeyError:
Tao Bao89fbb0f2017-01-10 10:47:58 -0800263 print("Warning: could not find SYSTEM/build.prop in %s" % (zip,))
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700264 data = ""
Michael Runge6e836112014-04-15 17:40:21 -0700265 return LoadDictionaryFromLines(data.split("\n"))
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700266
Tao Baod1de6f32017-03-01 16:38:48 -0800267
Michael Runge6e836112014-04-15 17:40:21 -0700268def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700269 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700270 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700271 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700272 if not line or line.startswith("#"):
273 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700274 if "=" in line:
275 name, value = line.split("=", 1)
276 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700277 return d
278
Tao Baod1de6f32017-03-01 16:38:48 -0800279
Tianjie Xucfa86222016-03-07 16:31:19 -0800280def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
281 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700282 class Partition(object):
Tao Baod1de6f32017-03-01 16:38:48 -0800283 def __init__(self, mount_point, fs_type, device, length, context):
Dan Albert8b72aef2015-03-23 19:13:21 -0700284 self.mount_point = mount_point
285 self.fs_type = fs_type
286 self.device = device
287 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -0700288 self.context = context
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700289
290 try:
Tianjie Xucfa86222016-03-07 16:31:19 -0800291 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700292 except KeyError:
Tao Bao89fbb0f2017-01-10 10:47:58 -0800293 print("Warning: could not find {}".format(recovery_fstab_path))
Jeff Davidson033fbe22011-10-26 18:08:09 -0700294 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700295
Tao Baod1de6f32017-03-01 16:38:48 -0800296 assert fstab_version == 2
297
298 d = {}
299 for line in data.split("\n"):
300 line = line.strip()
301 if not line or line.startswith("#"):
302 continue
303
304 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
305 pieces = line.split()
306 if len(pieces) != 5:
307 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
308
309 # Ignore entries that are managed by vold.
310 options = pieces[4]
311 if "voldmanaged=" in options:
312 continue
313
314 # It's a good line, parse it.
315 length = 0
316 options = options.split(",")
317 for i in options:
318 if i.startswith("length="):
319 length = int(i[7:])
Doug Zongker086cbb02011-02-17 15:54:20 -0800320 else:
Tao Baod1de6f32017-03-01 16:38:48 -0800321 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -0700322 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800323
Tao Baod1de6f32017-03-01 16:38:48 -0800324 mount_flags = pieces[3]
325 # Honor the SELinux context if present.
326 context = None
327 for i in mount_flags.split(","):
328 if i.startswith("context="):
329 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -0800330
Tao Baod1de6f32017-03-01 16:38:48 -0800331 mount_point = pieces[1]
332 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
333 device=pieces[0], length=length, context=context)
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800334
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700335 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700336 # system. Other areas assume system is always at "/system" so point /system
337 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700338 if system_root_image:
339 assert not d.has_key("/system") and d.has_key("/")
340 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700341 return d
342
343
Doug Zongker37974732010-09-16 17:44:38 -0700344def DumpInfoDict(d):
345 for k, v in sorted(d.items()):
Tao Bao89fbb0f2017-01-10 10:47:58 -0800346 print("%-25s = (%s) %s" % (k, type(v).__name__, v))
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700347
Dan Albert8b72aef2015-03-23 19:13:21 -0700348
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800349def AppendAVBSigningArgs(cmd, partition):
350 """Append signing arguments for avbtool."""
351 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
352 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
353 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
354 if key_path and algorithm:
355 cmd.extend(["--key", key_path, "--algorithm", algorithm])
356
357
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700358def _BuildBootableImage(sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -0800359 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700360 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -0700361
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700362 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -0800363 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
364 we are building a two-step special image (i.e. building a recovery image to
365 be loaded into /boot in two-step OTAs).
366
367 Return the image data, or None if sourcedir does not appear to contains files
368 for building the requested image.
369 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700370
371 def make_ramdisk():
372 ramdisk_img = tempfile.NamedTemporaryFile()
373
374 if os.access(fs_config_file, os.F_OK):
375 cmd = ["mkbootfs", "-f", fs_config_file,
376 os.path.join(sourcedir, "RAMDISK")]
377 else:
378 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
379 p1 = Run(cmd, stdout=subprocess.PIPE)
380 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
381
382 p2.wait()
383 p1.wait()
384 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
385 assert p2.returncode == 0, "minigzip of %s ramdisk failed" % (sourcedir,)
386
387 return ramdisk_img
388
389 if not os.access(os.path.join(sourcedir, "kernel"), os.F_OK):
390 return None
391
392 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -0700393 return None
Doug Zongkereef39442009-04-02 12:14:19 -0700394
Doug Zongkerd5131602012-08-02 14:46:42 -0700395 if info_dict is None:
396 info_dict = OPTIONS.info_dict
397
Doug Zongkereef39442009-04-02 12:14:19 -0700398 img = tempfile.NamedTemporaryFile()
399
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700400 if has_ramdisk:
401 ramdisk_img = make_ramdisk()
Doug Zongkereef39442009-04-02 12:14:19 -0700402
Bjorn Andersson612e2cd2012-11-25 16:53:44 -0800403 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
404 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
405
406 cmd = [mkbootimg, "--kernel", os.path.join(sourcedir, "kernel")]
Doug Zongker38a649f2009-06-17 09:07:09 -0700407
Benoit Fradina45a8682014-07-14 21:00:43 +0200408 fn = os.path.join(sourcedir, "second")
409 if os.access(fn, os.F_OK):
410 cmd.append("--second")
411 cmd.append(fn)
412
Doug Zongker171f1cd2009-06-15 22:36:37 -0700413 fn = os.path.join(sourcedir, "cmdline")
414 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -0700415 cmd.append("--cmdline")
416 cmd.append(open(fn).read().rstrip("\n"))
417
418 fn = os.path.join(sourcedir, "base")
419 if os.access(fn, os.F_OK):
420 cmd.append("--base")
421 cmd.append(open(fn).read().rstrip("\n"))
422
Ying Wang4de6b5b2010-08-25 14:29:34 -0700423 fn = os.path.join(sourcedir, "pagesize")
424 if os.access(fn, os.F_OK):
425 cmd.append("--pagesize")
426 cmd.append(open(fn).read().rstrip("\n"))
427
Doug Zongkerd5131602012-08-02 14:46:42 -0700428 args = info_dict.get("mkbootimg_args", None)
429 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -0700430 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -0700431
Sami Tolvanen3303d902016-03-15 16:49:30 +0000432 args = info_dict.get("mkbootimg_version_args", None)
433 if args and args.strip():
434 cmd.extend(shlex.split(args))
435
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700436 if has_ramdisk:
437 cmd.extend(["--ramdisk", ramdisk_img.name])
438
Tao Baod95e9fd2015-03-29 23:07:41 -0700439 img_unsigned = None
440 if info_dict.get("vboot", None):
441 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700442 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -0700443 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700444 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -0700445
446 p = Run(cmd, stdout=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -0700447 p.communicate()
Doug Zongkere1c31ba2009-06-23 17:40:35 -0700448 assert p.returncode == 0, "mkbootimg of %s image failed" % (
449 os.path.basename(sourcedir),)
Doug Zongkereef39442009-04-02 12:14:19 -0700450
Sami Tolvanen8b3f08b2015-04-07 15:08:59 +0100451 if (info_dict.get("boot_signer", None) == "true" and
452 info_dict.get("verity_key", None)):
Tao Baod42e97e2016-11-30 12:11:57 -0800453 # Hard-code the path as "/boot" for two-step special recovery image (which
454 # will be loaded into /boot during the two-step OTA).
455 if two_step_image:
456 path = "/boot"
457 else:
458 path = "/" + os.path.basename(sourcedir).lower()
Baligh Uddin601ddea2015-06-09 15:48:14 -0700459 cmd = [OPTIONS.boot_signer_path]
460 cmd.extend(OPTIONS.boot_signer_args)
461 cmd.extend([path, img.name,
462 info_dict["verity_key"] + ".pk8",
463 info_dict["verity_key"] + ".x509.pem", img.name])
Geremy Condra95ebe7a2014-08-19 17:27:56 -0700464 p = Run(cmd, stdout=subprocess.PIPE)
465 p.communicate()
466 assert p.returncode == 0, "boot_signer of %s image failed" % path
467
Tao Baod95e9fd2015-03-29 23:07:41 -0700468 # Sign the image if vboot is non-empty.
469 elif info_dict.get("vboot", None):
470 path = "/" + os.path.basename(sourcedir).lower()
471 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -0800472 # We have switched from the prebuilt futility binary to using the tool
473 # (futility-host) built from the source. Override the setting in the old
474 # TF.zip.
475 futility = info_dict["futility"]
476 if futility.startswith("prebuilts/"):
477 futility = "futility-host"
478 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -0700479 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -0700480 info_dict["vboot_key"] + ".vbprivk",
481 info_dict["vboot_subkey"] + ".vbprivk",
482 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -0700483 img.name]
484 p = Run(cmd, stdout=subprocess.PIPE)
485 p.communicate()
486 assert p.returncode == 0, "vboot_signer of %s image failed" % path
487
Tao Baof3282b42015-04-01 11:21:55 -0700488 # Clean up the temp files.
489 img_unsigned.close()
490 img_keyblock.close()
491
David Zeuthen2ce63ed2016-09-15 13:43:54 -0400492 # AVB: if enabled, calculate and add hash to boot.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800493 if info_dict.get("avb_enable") == "true":
Tao Bao3ebfdde2017-05-23 23:06:55 -0700494 avbtool = os.getenv('AVBTOOL') or info_dict["avb_avbtool"]
495 part_size = info_dict["boot_size"]
David Zeuthen2ce63ed2016-09-15 13:43:54 -0400496 cmd = [avbtool, "add_hash_footer", "--image", img.name,
497 "--partition_size", str(part_size), "--partition_name", "boot"]
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800498 AppendAVBSigningArgs(cmd, "boot")
499 args = info_dict.get("avb_boot_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -0400500 if args and args.strip():
501 cmd.extend(shlex.split(args))
502 p = Run(cmd, stdout=subprocess.PIPE)
503 p.communicate()
504 assert p.returncode == 0, "avbtool add_hash_footer of %s failed" % (
505 os.path.basename(OPTIONS.input_tmp))
David Zeuthend995f4b2016-01-29 16:59:17 -0500506
507 img.seek(os.SEEK_SET, 0)
508 data = img.read()
509
510 if has_ramdisk:
511 ramdisk_img.close()
512 img.close()
513
514 return data
515
516
Doug Zongkerd5131602012-08-02 14:46:42 -0700517def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -0800518 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700519 """Return a File object with the desired bootable image.
520
521 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
522 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
523 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -0700524
Doug Zongker55d93282011-01-25 17:03:34 -0800525 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
526 if os.path.exists(prebuilt_path):
Tao Bao89fbb0f2017-01-10 10:47:58 -0800527 print("using prebuilt %s from BOOTABLE_IMAGES..." % (prebuilt_name,))
Doug Zongker55d93282011-01-25 17:03:34 -0800528 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -0700529
530 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
531 if os.path.exists(prebuilt_path):
Tao Bao89fbb0f2017-01-10 10:47:58 -0800532 print("using prebuilt %s from IMAGES..." % (prebuilt_name,))
Doug Zongker6f1d0312014-08-22 08:07:12 -0700533 return File.FromLocalFile(name, prebuilt_path)
534
Tao Bao89fbb0f2017-01-10 10:47:58 -0800535 print("building image from target_files %s..." % (tree_subdir,))
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700536
537 if info_dict is None:
538 info_dict = OPTIONS.info_dict
539
540 # With system_root_image == "true", we don't pack ramdisk into the boot image.
Daniel Rosenberg40ef35b2015-11-10 19:21:34 -0800541 # Unless "recovery_as_boot" is specified, in which case we carry the ramdisk
542 # for recovery.
543 has_ramdisk = (info_dict.get("system_root_image") != "true" or
544 prebuilt_name != "boot.img" or
545 info_dict.get("recovery_as_boot") == "true")
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700546
Doug Zongker6f1d0312014-08-22 08:07:12 -0700547 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
David Zeuthen2ce63ed2016-09-15 13:43:54 -0400548 data = _BuildBootableImage(os.path.join(unpack_dir, tree_subdir),
549 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -0800550 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -0700551 if data:
552 return File(name, data)
553 return None
Doug Zongker55d93282011-01-25 17:03:34 -0800554
Doug Zongkereef39442009-04-02 12:14:19 -0700555
Narayan Kamatha07bf042017-08-14 14:49:21 +0100556def Gunzip(in_filename, out_filename):
557 """Gunzip the given gzip compressed file to a given output file.
558 """
559 with gzip.open(in_filename, "rb") as in_file, open(out_filename, "wb") as out_file:
560 shutil.copyfileobj(in_file, out_file)
561
562
Doug Zongker75f17362009-12-08 13:46:44 -0800563def UnzipTemp(filename, pattern=None):
Doug Zongker55d93282011-01-25 17:03:34 -0800564 """Unzip the given archive into a temporary directory and return the name.
565
566 If filename is of the form "foo.zip+bar.zip", unzip foo.zip into a
567 temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
568
569 Returns (tempdir, zipobj) where zipobj is a zipfile.ZipFile (of the
570 main file), open for reading.
571 """
Doug Zongkereef39442009-04-02 12:14:19 -0700572
573 tmp = tempfile.mkdtemp(prefix="targetfiles-")
574 OPTIONS.tempfiles.append(tmp)
Doug Zongker55d93282011-01-25 17:03:34 -0800575
576 def unzip_to_dir(filename, dirname):
577 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
578 if pattern is not None:
Tao Bao6b0b2f92017-03-05 11:38:11 -0800579 cmd.extend(pattern)
Doug Zongker55d93282011-01-25 17:03:34 -0800580 p = Run(cmd, stdout=subprocess.PIPE)
581 p.communicate()
582 if p.returncode != 0:
583 raise ExternalError("failed to unzip input target-files \"%s\"" %
584 (filename,))
585
586 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
587 if m:
588 unzip_to_dir(m.group(1), tmp)
589 unzip_to_dir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"))
590 filename = m.group(1)
591 else:
592 unzip_to_dir(filename, tmp)
593
594 return tmp, zipfile.ZipFile(filename, "r")
Doug Zongkereef39442009-04-02 12:14:19 -0700595
596
597def GetKeyPasswords(keylist):
598 """Given a list of keys, prompt the user to enter passwords for
599 those which require them. Return a {key: password} dict. password
600 will be None if the key has no password."""
601
Doug Zongker8ce7c252009-05-22 13:34:54 -0700602 no_passwords = []
603 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -0700604 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -0700605 devnull = open("/dev/null", "w+b")
606 for k in sorted(keylist):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800607 # We don't need a password for things that aren't really keys.
608 if k in SPECIAL_CERT_STRINGS:
Doug Zongker8ce7c252009-05-22 13:34:54 -0700609 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -0700610 continue
611
T.R. Fullhart37e10522013-03-18 10:31:26 -0700612 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -0700613 "-inform", "DER", "-nocrypt"],
614 stdin=devnull.fileno(),
615 stdout=devnull.fileno(),
616 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -0700617 p.communicate()
618 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -0700619 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -0700620 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -0700621 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -0700622 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
623 "-inform", "DER", "-passin", "pass:"],
624 stdin=devnull.fileno(),
625 stdout=devnull.fileno(),
626 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -0700627 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -0700628 if p.returncode == 0:
629 # Encrypted key with empty string as password.
630 key_passwords[k] = ''
631 elif stderr.startswith('Error decrypting key'):
632 # Definitely encrypted key.
633 # It would have said "Error reading key" if it didn't parse correctly.
634 need_passwords.append(k)
635 else:
636 # Potentially, a type of key that openssl doesn't understand.
637 # We'll let the routines in signapk.jar handle it.
638 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -0700639 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -0700640
T.R. Fullhart37e10522013-03-18 10:31:26 -0700641 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Doug Zongker8ce7c252009-05-22 13:34:54 -0700642 key_passwords.update(dict.fromkeys(no_passwords, None))
Doug Zongkereef39442009-04-02 12:14:19 -0700643 return key_passwords
644
645
Alex Klyubin2cfd1d12016-01-13 10:32:47 -0800646def GetMinSdkVersion(apk_name):
647 """Get the minSdkVersion delared in the APK. This can be both a decimal number
648 (API Level) or a codename.
649 """
650
651 p = Run(["aapt", "dump", "badging", apk_name], stdout=subprocess.PIPE)
652 output, err = p.communicate()
653 if err:
654 raise ExternalError("Failed to obtain minSdkVersion: aapt return code %s"
655 % (p.returncode,))
656
657 for line in output.split("\n"):
658 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'
659 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
660 if m:
661 return m.group(1)
662 raise ExternalError("No minSdkVersion returned by aapt")
663
664
665def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
666 """Get the minSdkVersion declared in the APK as a number (API Level). If
667 minSdkVersion is set to a codename, it is translated to a number using the
668 provided map.
669 """
670
671 version = GetMinSdkVersion(apk_name)
672 try:
673 return int(version)
674 except ValueError:
675 # Not a decimal number. Codename?
676 if version in codename_to_api_level_map:
677 return codename_to_api_level_map[version]
678 else:
679 raise ExternalError("Unknown minSdkVersion: '%s'. Known codenames: %s"
680 % (version, codename_to_api_level_map))
681
682
683def SignFile(input_name, output_name, key, password, min_api_level=None,
684 codename_to_api_level_map=dict(),
685 whole_file=False):
Doug Zongkereef39442009-04-02 12:14:19 -0700686 """Sign the input_name zip/jar/apk, producing output_name. Use the
687 given key and password (the latter may be None if the key does not
688 have a password.
689
Doug Zongker951495f2009-08-14 12:44:19 -0700690 If whole_file is true, use the "-w" option to SignApk to embed a
691 signature that covers the whole file in the archive comment of the
692 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -0800693
694 min_api_level is the API Level (int) of the oldest platform this file may end
695 up on. If not specified for an APK, the API Level is obtained by interpreting
696 the minSdkVersion attribute of the APK's AndroidManifest.xml.
697
698 codename_to_api_level_map is needed to translate the codename which may be
699 encountered as the APK's minSdkVersion.
Doug Zongkereef39442009-04-02 12:14:19 -0700700 """
Doug Zongker951495f2009-08-14 12:44:19 -0700701
Alex Klyubin9667b182015-12-10 13:38:50 -0800702 java_library_path = os.path.join(
703 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
704
Tao Baoe95540e2016-11-08 12:08:53 -0800705 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
706 ["-Djava.library.path=" + java_library_path,
707 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
708 OPTIONS.extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -0700709 if whole_file:
710 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -0800711
712 min_sdk_version = min_api_level
713 if min_sdk_version is None:
714 if not whole_file:
715 min_sdk_version = GetMinSdkVersionInt(
716 input_name, codename_to_api_level_map)
717 if min_sdk_version is not None:
718 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
719
T.R. Fullhart37e10522013-03-18 10:31:26 -0700720 cmd.extend([key + OPTIONS.public_key_suffix,
721 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -0800722 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -0700723
724 p = Run(cmd, stdin=subprocess.PIPE, stdout=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -0700725 if password is not None:
726 password += "\n"
727 p.communicate(password)
728 if p.returncode != 0:
729 raise ExternalError("signapk.jar failed: return code %s" % (p.returncode,))
730
Doug Zongkereef39442009-04-02 12:14:19 -0700731
Doug Zongker37974732010-09-16 17:44:38 -0700732def CheckSize(data, target, info_dict):
Doug Zongkereef39442009-04-02 12:14:19 -0700733 """Check the data string passed against the max size limit, if
734 any, for the given target. Raise exception if the data is too big.
735 Print a warning if the data is nearing the maximum size."""
Doug Zongkerc77a9ad2010-09-16 11:28:43 -0700736
Dan Albert8b72aef2015-03-23 19:13:21 -0700737 if target.endswith(".img"):
738 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700739 mount_point = "/" + target
740
Ying Wangf8824af2014-06-03 14:07:27 -0700741 fs_type = None
742 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700743 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -0700744 if mount_point == "/userdata":
745 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700746 p = info_dict["fstab"][mount_point]
747 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -0800748 device = p.device
749 if "/" in device:
750 device = device[device.rfind("/")+1:]
751 limit = info_dict.get(device + "_size", None)
Dan Albert8b72aef2015-03-23 19:13:21 -0700752 if not fs_type or not limit:
753 return
Doug Zongkereef39442009-04-02 12:14:19 -0700754
Andrew Boie0f9aec82012-02-14 09:32:52 -0800755 size = len(data)
756 pct = float(size) * 100.0 / limit
757 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
758 if pct >= 99.0:
759 raise ExternalError(msg)
760 elif pct >= 95.0:
Tao Bao89fbb0f2017-01-10 10:47:58 -0800761 print("\n WARNING: %s\n" % (msg,))
Andrew Boie0f9aec82012-02-14 09:32:52 -0800762 elif OPTIONS.verbose:
Tao Bao89fbb0f2017-01-10 10:47:58 -0800763 print(" ", msg)
Doug Zongkereef39442009-04-02 12:14:19 -0700764
765
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800766def ReadApkCerts(tf_zip):
767 """Given a target_files ZipFile, parse the META/apkcerts.txt file
Narayan Kamatha07bf042017-08-14 14:49:21 +0100768 and return a tuple with the following elements: (1) a dictionary that maps
769 packages to certs (based on the "certificate" and "private_key" attributes
770 in the file. (2) A string representing the extension of compressed APKs in
771 the target files (e.g ".gz" ".bro")."""
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800772 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +0100773 compressed_extension = None
774
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800775 for line in tf_zip.read("META/apkcerts.txt").split("\n"):
776 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700777 if not line:
778 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +0100779 m = re.match(r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
780 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*)")?$',
781 line)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800782 if m:
Narayan Kamatha07bf042017-08-14 14:49:21 +0100783 matches = m.groupdict()
784 cert = matches["CERT"]
785 privkey = matches["PRIVKEY"]
786 name = matches["NAME"]
787 this_compressed_extension = matches["COMPRESSED"]
T.R. Fullhart37e10522013-03-18 10:31:26 -0700788 public_key_suffix_len = len(OPTIONS.public_key_suffix)
789 private_key_suffix_len = len(OPTIONS.private_key_suffix)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800790 if cert in SPECIAL_CERT_STRINGS and not privkey:
791 certmap[name] = cert
T.R. Fullhart37e10522013-03-18 10:31:26 -0700792 elif (cert.endswith(OPTIONS.public_key_suffix) and
793 privkey.endswith(OPTIONS.private_key_suffix) and
794 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
795 certmap[name] = cert[:-public_key_suffix_len]
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800796 else:
797 raise ValueError("failed to parse line from apkcerts.txt:\n" + line)
Narayan Kamatha07bf042017-08-14 14:49:21 +0100798 if this_compressed_extension:
799 # Make sure that all the values in the compression map have the same
800 # extension. We don't support multiple compression methods in the same
801 # system image.
802 if compressed_extension:
803 if this_compressed_extension != compressed_extension:
804 raise ValueError("multiple compressed extensions : %s vs %s",
805 (compressed_extension, this_compressed_extension))
806 else:
807 compressed_extension = this_compressed_extension
808
809 return (certmap, ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800810
811
Doug Zongkereef39442009-04-02 12:14:19 -0700812COMMON_DOCSTRING = """
813 -p (--path) <dir>
Doug Zongker602a84e2009-06-18 08:35:12 -0700814 Prepend <dir>/bin to the list of places to search for binaries
815 run by this script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -0700816
Doug Zongker05d3dea2009-06-22 11:32:31 -0700817 -s (--device_specific) <file>
818 Path to the python module containing device-specific
819 releasetools code.
820
Doug Zongker8bec09e2009-11-30 15:37:14 -0800821 -x (--extra) <key=value>
822 Add a key/value pair to the 'extras' dict, which device-specific
823 extension code may look at.
824
Doug Zongkereef39442009-04-02 12:14:19 -0700825 -v (--verbose)
826 Show command lines being executed.
827
828 -h (--help)
829 Display this usage message and exit.
830"""
831
832def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -0800833 print(docstring.rstrip("\n"))
834 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -0700835
836
837def ParseOptions(argv,
838 docstring,
839 extra_opts="", extra_long_opts=(),
840 extra_option_handler=None):
841 """Parse the options in argv and return any arguments that aren't
842 flags. docstring is the calling module's docstring, to be displayed
843 for errors and -h. extra_opts and extra_long_opts are for flags
844 defined by the caller, which are processed by passing them to
845 extra_option_handler."""
846
847 try:
848 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -0800849 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -0800850 ["help", "verbose", "path=", "signapk_path=",
851 "signapk_shared_library_path=", "extra_signapk_args=",
Baligh Uddinbdc2e312014-09-05 17:36:20 -0700852 "java_path=", "java_args=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -0700853 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
854 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Baligh Uddine2048682014-11-20 09:52:05 -0800855 "extra="] +
T.R. Fullhart37e10522013-03-18 10:31:26 -0700856 list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -0700857 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -0700858 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -0800859 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -0700860 sys.exit(2)
861
Doug Zongkereef39442009-04-02 12:14:19 -0700862 for o, a in opts:
863 if o in ("-h", "--help"):
864 Usage(docstring)
865 sys.exit()
866 elif o in ("-v", "--verbose"):
867 OPTIONS.verbose = True
868 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -0700869 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -0700870 elif o in ("--signapk_path",):
871 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -0800872 elif o in ("--signapk_shared_library_path",):
873 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -0700874 elif o in ("--extra_signapk_args",):
875 OPTIONS.extra_signapk_args = shlex.split(a)
876 elif o in ("--java_path",):
877 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -0700878 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -0800879 OPTIONS.java_args = shlex.split(a)
T.R. Fullhart37e10522013-03-18 10:31:26 -0700880 elif o in ("--public_key_suffix",):
881 OPTIONS.public_key_suffix = a
882 elif o in ("--private_key_suffix",):
883 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -0800884 elif o in ("--boot_signer_path",):
885 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -0700886 elif o in ("--boot_signer_args",):
887 OPTIONS.boot_signer_args = shlex.split(a)
888 elif o in ("--verity_signer_path",):
889 OPTIONS.verity_signer_path = a
890 elif o in ("--verity_signer_args",):
891 OPTIONS.verity_signer_args = shlex.split(a)
Doug Zongker05d3dea2009-06-22 11:32:31 -0700892 elif o in ("-s", "--device_specific"):
893 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -0800894 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -0800895 key, value = a.split("=", 1)
896 OPTIONS.extras[key] = value
Doug Zongkereef39442009-04-02 12:14:19 -0700897 else:
898 if extra_option_handler is None or not extra_option_handler(o, a):
899 assert False, "unknown option \"%s\"" % (o,)
900
Doug Zongker85448772014-09-09 14:59:20 -0700901 if OPTIONS.search_path:
902 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
903 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -0700904
905 return args
906
907
Tao Bao4c851b12016-09-19 13:54:38 -0700908def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -0700909 """Make a temp file and add it to the list of things to be deleted
910 when Cleanup() is called. Return the filename."""
911 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
912 os.close(fd)
913 OPTIONS.tempfiles.append(fn)
914 return fn
915
916
Doug Zongkereef39442009-04-02 12:14:19 -0700917def Cleanup():
918 for i in OPTIONS.tempfiles:
919 if os.path.isdir(i):
920 shutil.rmtree(i)
921 else:
922 os.remove(i)
Doug Zongker8ce7c252009-05-22 13:34:54 -0700923
924
925class PasswordManager(object):
926 def __init__(self):
927 self.editor = os.getenv("EDITOR", None)
928 self.pwfile = os.getenv("ANDROID_PW_FILE", None)
929
930 def GetPasswords(self, items):
931 """Get passwords corresponding to each string in 'items',
932 returning a dict. (The dict may have keys in addition to the
933 values in 'items'.)
934
935 Uses the passwords in $ANDROID_PW_FILE if available, letting the
936 user edit that file to add more needed passwords. If no editor is
937 available, or $ANDROID_PW_FILE isn't define, prompts the user
938 interactively in the ordinary way.
939 """
940
941 current = self.ReadFile()
942
943 first = True
944 while True:
945 missing = []
946 for i in items:
947 if i not in current or not current[i]:
948 missing.append(i)
949 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -0700950 if not missing:
951 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -0700952
953 for i in missing:
954 current[i] = ""
955
956 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -0800957 print("key file %s still missing some passwords." % (self.pwfile,))
Doug Zongker8ce7c252009-05-22 13:34:54 -0700958 answer = raw_input("try to edit again? [y]> ").strip()
959 if answer and answer[0] not in 'yY':
960 raise RuntimeError("key passwords unavailable")
961 first = False
962
963 current = self.UpdateAndReadFile(current)
964
Dan Albert8b72aef2015-03-23 19:13:21 -0700965 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -0700966 """Prompt the user to enter a value (password) for each key in
967 'current' whose value is fales. Returns a new dict with all the
968 values.
969 """
970 result = {}
971 for k, v in sorted(current.iteritems()):
972 if v:
973 result[k] = v
974 else:
975 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -0700976 result[k] = getpass.getpass(
977 "Enter password for %s key> " % k).strip()
978 if result[k]:
979 break
Doug Zongker8ce7c252009-05-22 13:34:54 -0700980 return result
981
982 def UpdateAndReadFile(self, current):
983 if not self.editor or not self.pwfile:
984 return self.PromptResult(current)
985
986 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -0700987 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -0700988 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
989 f.write("# (Additional spaces are harmless.)\n\n")
990
991 first_line = None
Dan Albert8b72aef2015-03-23 19:13:21 -0700992 sorted_list = sorted([(not v, k, v) for (k, v) in current.iteritems()])
993 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -0700994 f.write("[[[ %s ]]] %s\n" % (v, k))
995 if not v and first_line is None:
996 # position cursor on first line with no password.
997 first_line = i + 4
998 f.close()
999
1000 p = Run([self.editor, "+%d" % (first_line,), self.pwfile])
1001 _, _ = p.communicate()
1002
1003 return self.ReadFile()
1004
1005 def ReadFile(self):
1006 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07001007 if self.pwfile is None:
1008 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07001009 try:
1010 f = open(self.pwfile, "r")
1011 for line in f:
1012 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07001013 if not line or line[0] == '#':
1014 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07001015 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
1016 if not m:
Tao Bao89fbb0f2017-01-10 10:47:58 -08001017 print("failed to parse password file: ", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07001018 else:
1019 result[m.group(2)] = m.group(1)
1020 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07001021 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07001022 if e.errno != errno.ENOENT:
Tao Bao89fbb0f2017-01-10 10:47:58 -08001023 print("error reading password file: ", str(e))
Doug Zongker8ce7c252009-05-22 13:34:54 -07001024 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07001025
1026
Dan Albert8e0178d2015-01-27 15:53:15 -08001027def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
1028 compress_type=None):
1029 import datetime
1030
1031 # http://b/18015246
1032 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
1033 # for files larger than 2GiB. We can work around this by adjusting their
1034 # limit. Note that `zipfile.writestr()` will not work for strings larger than
1035 # 2GiB. The Python interpreter sometimes rejects strings that large (though
1036 # it isn't clear to me exactly what circumstances cause this).
1037 # `zipfile.write()` must be used directly to work around this.
1038 #
1039 # This mess can be avoided if we port to python3.
1040 saved_zip64_limit = zipfile.ZIP64_LIMIT
1041 zipfile.ZIP64_LIMIT = (1 << 32) - 1
1042
1043 if compress_type is None:
1044 compress_type = zip_file.compression
1045 if arcname is None:
1046 arcname = filename
1047
1048 saved_stat = os.stat(filename)
1049
1050 try:
1051 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
1052 # file to be zipped and reset it when we're done.
1053 os.chmod(filename, perms)
1054
1055 # Use a fixed timestamp so the output is repeatable.
1056 epoch = datetime.datetime.fromtimestamp(0)
1057 timestamp = (datetime.datetime(2009, 1, 1) - epoch).total_seconds()
1058 os.utime(filename, (timestamp, timestamp))
1059
1060 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
1061 finally:
1062 os.chmod(filename, saved_stat.st_mode)
1063 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
1064 zipfile.ZIP64_LIMIT = saved_zip64_limit
1065
1066
Tao Bao58c1b962015-05-20 09:32:18 -07001067def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07001068 compress_type=None):
1069 """Wrap zipfile.writestr() function to work around the zip64 limit.
1070
1071 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
1072 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
1073 when calling crc32(bytes).
1074
1075 But it still works fine to write a shorter string into a large zip file.
1076 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
1077 when we know the string won't be too long.
1078 """
1079
1080 saved_zip64_limit = zipfile.ZIP64_LIMIT
1081 zipfile.ZIP64_LIMIT = (1 << 32) - 1
1082
1083 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
1084 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07001085 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07001086 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07001087 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08001088 else:
Tao Baof3282b42015-04-01 11:21:55 -07001089 zinfo = zinfo_or_arcname
1090
1091 # If compress_type is given, it overrides the value in zinfo.
1092 if compress_type is not None:
1093 zinfo.compress_type = compress_type
1094
Tao Bao58c1b962015-05-20 09:32:18 -07001095 # If perms is given, it has a priority.
1096 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07001097 # If perms doesn't set the file type, mark it as a regular file.
1098 if perms & 0o770000 == 0:
1099 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07001100 zinfo.external_attr = perms << 16
1101
Tao Baof3282b42015-04-01 11:21:55 -07001102 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07001103 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
1104
Dan Albert8b72aef2015-03-23 19:13:21 -07001105 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07001106 zipfile.ZIP64_LIMIT = saved_zip64_limit
1107
1108
1109def ZipClose(zip_file):
1110 # http://b/18015246
1111 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
1112 # central directory.
1113 saved_zip64_limit = zipfile.ZIP64_LIMIT
1114 zipfile.ZIP64_LIMIT = (1 << 32) - 1
1115
1116 zip_file.close()
1117
1118 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07001119
1120
1121class DeviceSpecificParams(object):
1122 module = None
1123 def __init__(self, **kwargs):
1124 """Keyword arguments to the constructor become attributes of this
1125 object, which is passed to all functions in the device-specific
1126 module."""
1127 for k, v in kwargs.iteritems():
1128 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08001129 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07001130
1131 if self.module is None:
1132 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07001133 if not path:
1134 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07001135 try:
1136 if os.path.isdir(path):
1137 info = imp.find_module("releasetools", [path])
1138 else:
1139 d, f = os.path.split(path)
1140 b, x = os.path.splitext(f)
1141 if x == ".py":
1142 f = b
1143 info = imp.find_module(f, [d])
Tao Bao89fbb0f2017-01-10 10:47:58 -08001144 print("loaded device-specific extensions from", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07001145 self.module = imp.load_module("device_specific", *info)
1146 except ImportError:
Tao Bao89fbb0f2017-01-10 10:47:58 -08001147 print("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07001148
1149 def _DoCall(self, function_name, *args, **kwargs):
1150 """Call the named function in the device-specific module, passing
1151 the given args and kwargs. The first argument to the call will be
1152 the DeviceSpecific object itself. If there is no module, or the
1153 module does not define the function, return the value of the
1154 'default' kwarg (which itself defaults to None)."""
1155 if self.module is None or not hasattr(self.module, function_name):
1156 return kwargs.get("default", None)
1157 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
1158
1159 def FullOTA_Assertions(self):
1160 """Called after emitting the block of assertions at the top of a
1161 full OTA package. Implementations can add whatever additional
1162 assertions they like."""
1163 return self._DoCall("FullOTA_Assertions")
1164
Doug Zongkere5ff5902012-01-17 10:55:37 -08001165 def FullOTA_InstallBegin(self):
1166 """Called at the start of full OTA installation."""
1167 return self._DoCall("FullOTA_InstallBegin")
1168
Doug Zongker05d3dea2009-06-22 11:32:31 -07001169 def FullOTA_InstallEnd(self):
1170 """Called at the end of full OTA installation; typically this is
1171 used to install the image for the device's baseband processor."""
1172 return self._DoCall("FullOTA_InstallEnd")
1173
1174 def IncrementalOTA_Assertions(self):
1175 """Called after emitting the block of assertions at the top of an
1176 incremental OTA package. Implementations can add whatever
1177 additional assertions they like."""
1178 return self._DoCall("IncrementalOTA_Assertions")
1179
Doug Zongkere5ff5902012-01-17 10:55:37 -08001180 def IncrementalOTA_VerifyBegin(self):
1181 """Called at the start of the verification phase of incremental
1182 OTA installation; additional checks can be placed here to abort
1183 the script before any changes are made."""
1184 return self._DoCall("IncrementalOTA_VerifyBegin")
1185
Doug Zongker05d3dea2009-06-22 11:32:31 -07001186 def IncrementalOTA_VerifyEnd(self):
1187 """Called at the end of the verification phase of incremental OTA
1188 installation; additional checks can be placed here to abort the
1189 script before any changes are made."""
1190 return self._DoCall("IncrementalOTA_VerifyEnd")
1191
Doug Zongkere5ff5902012-01-17 10:55:37 -08001192 def IncrementalOTA_InstallBegin(self):
1193 """Called at the start of incremental OTA installation (after
1194 verification is complete)."""
1195 return self._DoCall("IncrementalOTA_InstallBegin")
1196
Doug Zongker05d3dea2009-06-22 11:32:31 -07001197 def IncrementalOTA_InstallEnd(self):
1198 """Called at the end of incremental OTA installation; typically
1199 this is used to install the image for the device's baseband
1200 processor."""
1201 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001202
Tao Bao9bc6bb22015-11-09 16:58:28 -08001203 def VerifyOTA_Assertions(self):
1204 return self._DoCall("VerifyOTA_Assertions")
1205
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001206class File(object):
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09001207 def __init__(self, name, data, compress_size = None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001208 self.name = name
1209 self.data = data
1210 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09001211 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08001212 self.sha1 = sha1(data).hexdigest()
1213
1214 @classmethod
1215 def FromLocalFile(cls, name, diskname):
1216 f = open(diskname, "rb")
1217 data = f.read()
1218 f.close()
1219 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001220
1221 def WriteToTemp(self):
1222 t = tempfile.NamedTemporaryFile()
1223 t.write(self.data)
1224 t.flush()
1225 return t
1226
Dan Willemsen2ee00d52017-03-05 19:51:56 -08001227 def WriteToDir(self, d):
1228 with open(os.path.join(d, self.name), "wb") as fp:
1229 fp.write(self.data)
1230
Geremy Condra36bd3652014-02-06 19:45:10 -08001231 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07001232 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001233
1234DIFF_PROGRAM_BY_EXT = {
1235 ".gz" : "imgdiff",
1236 ".zip" : ["imgdiff", "-z"],
1237 ".jar" : ["imgdiff", "-z"],
1238 ".apk" : ["imgdiff", "-z"],
1239 ".img" : "imgdiff",
1240 }
1241
1242class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07001243 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001244 self.tf = tf
1245 self.sf = sf
1246 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07001247 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001248
1249 def ComputePatch(self):
1250 """Compute the patch (as a string of data) needed to turn sf into
1251 tf. Returns the same tuple as GetPatch()."""
1252
1253 tf = self.tf
1254 sf = self.sf
1255
Doug Zongker24cd2802012-08-14 16:36:15 -07001256 if self.diff_program:
1257 diff_program = self.diff_program
1258 else:
1259 ext = os.path.splitext(tf.name)[1]
1260 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001261
1262 ttemp = tf.WriteToTemp()
1263 stemp = sf.WriteToTemp()
1264
1265 ext = os.path.splitext(tf.name)[1]
1266
1267 try:
1268 ptemp = tempfile.NamedTemporaryFile()
1269 if isinstance(diff_program, list):
1270 cmd = copy.copy(diff_program)
1271 else:
1272 cmd = [diff_program]
1273 cmd.append(stemp.name)
1274 cmd.append(ttemp.name)
1275 cmd.append(ptemp.name)
1276 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07001277 err = []
1278 def run():
1279 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07001280 if e:
1281 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07001282 th = threading.Thread(target=run)
1283 th.start()
1284 th.join(timeout=300) # 5 mins
1285 if th.is_alive():
Tao Bao89fbb0f2017-01-10 10:47:58 -08001286 print("WARNING: diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07001287 p.terminate()
1288 th.join(5)
1289 if th.is_alive():
1290 p.kill()
1291 th.join()
1292
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001293 if err or p.returncode != 0:
Tao Bao89fbb0f2017-01-10 10:47:58 -08001294 print("WARNING: failure running %s:\n%s\n" % (
1295 diff_program, "".join(err)))
Doug Zongkerf8340082014-08-05 10:39:37 -07001296 self.patch = None
1297 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001298 diff = ptemp.read()
1299 finally:
1300 ptemp.close()
1301 stemp.close()
1302 ttemp.close()
1303
1304 self.patch = diff
1305 return self.tf, self.sf, self.patch
1306
1307
1308 def GetPatch(self):
1309 """Return a tuple (target_file, source_file, patch_data).
1310 patch_data may be None if ComputePatch hasn't been called, or if
1311 computing the patch failed."""
1312 return self.tf, self.sf, self.patch
1313
1314
1315def ComputeDifferences(diffs):
1316 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao89fbb0f2017-01-10 10:47:58 -08001317 print(len(diffs), "diffs to compute")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001318
1319 # Do the largest files first, to try and reduce the long-pole effect.
1320 by_size = [(i.tf.size, i) for i in diffs]
1321 by_size.sort(reverse=True)
1322 by_size = [i[1] for i in by_size]
1323
1324 lock = threading.Lock()
1325 diff_iter = iter(by_size) # accessed under lock
1326
1327 def worker():
1328 try:
1329 lock.acquire()
1330 for d in diff_iter:
1331 lock.release()
1332 start = time.time()
1333 d.ComputePatch()
1334 dur = time.time() - start
1335 lock.acquire()
1336
1337 tf, sf, patch = d.GetPatch()
1338 if sf.name == tf.name:
1339 name = tf.name
1340 else:
1341 name = "%s (%s)" % (tf.name, sf.name)
1342 if patch is None:
Tao Bao89fbb0f2017-01-10 10:47:58 -08001343 print("patching failed! %s" % (name,))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001344 else:
Tao Bao89fbb0f2017-01-10 10:47:58 -08001345 print("%8.2f sec %8d / %8d bytes (%6.2f%%) %s" % (
1346 dur, len(patch), tf.size, 100.0 * len(patch) / tf.size, name))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001347 lock.release()
Dan Albert8b72aef2015-03-23 19:13:21 -07001348 except Exception as e:
Tao Bao89fbb0f2017-01-10 10:47:58 -08001349 print(e)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07001350 raise
1351
1352 # start worker threads; wait for them all to finish.
1353 threads = [threading.Thread(target=worker)
1354 for i in range(OPTIONS.worker_threads)]
1355 for th in threads:
1356 th.start()
1357 while threads:
1358 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07001359
1360
Dan Albert8b72aef2015-03-23 19:13:21 -07001361class BlockDifference(object):
1362 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07001363 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001364 self.tgt = tgt
1365 self.src = src
1366 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07001367 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07001368 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001369
Tao Baodd2a5892015-03-12 12:32:37 -07001370 if version is None:
1371 version = 1
1372 if OPTIONS.info_dict:
1373 version = max(
1374 int(i) for i in
1375 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08001376 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07001377 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07001378
1379 b = blockimgdiff.BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
Tao Bao293fd132016-06-11 12:19:23 -07001380 version=self.version,
1381 disable_imgdiff=self.disable_imgdiff)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001382 tmpdir = tempfile.mkdtemp()
1383 OPTIONS.tempfiles.append(tmpdir)
1384 self.path = os.path.join(tmpdir, partition)
1385 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08001386 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07001387 self.touched_src_ranges = b.touched_src_ranges
1388 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001389
Tao Baoaac4ad52015-10-16 15:26:34 -07001390 if src is None:
1391 _, self.device = GetTypeAndDevice("/" + partition, OPTIONS.info_dict)
1392 else:
1393 _, self.device = GetTypeAndDevice("/" + partition,
1394 OPTIONS.source_info_dict)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001395
Tao Baod8d14be2016-02-04 14:26:02 -08001396 @property
1397 def required_cache(self):
1398 return self._required_cache
1399
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001400 def WriteScript(self, script, output_zip, progress=None):
1401 if not self.src:
1402 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08001403 script.Print("Patching %s image unconditionally..." % (self.partition,))
1404 else:
1405 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001406
Dan Albert8b72aef2015-03-23 19:13:21 -07001407 if progress:
1408 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08001409 self._WriteUpdate(script, output_zip)
Tianjie Xub2deb222016-03-25 15:01:33 -07001410 if OPTIONS.verify:
1411 self._WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08001412
Tao Bao9bc6bb22015-11-09 16:58:28 -08001413 def WriteStrictVerifyScript(self, script):
1414 """Verify all the blocks in the care_map, including clobbered blocks.
1415
1416 This differs from the WriteVerifyScript() function: a) it prints different
1417 error messages; b) it doesn't allow half-way updated images to pass the
1418 verification."""
1419
1420 partition = self.partition
1421 script.Print("Verifying %s..." % (partition,))
1422 ranges = self.tgt.care_map
1423 ranges_str = ranges.to_string_raw()
1424 script.AppendExtra('range_sha1("%s", "%s") == "%s" && '
1425 'ui_print(" Verified.") || '
1426 'ui_print("\\"%s\\" has unexpected contents.");' % (
1427 self.device, ranges_str,
1428 self.tgt.TotalSha1(include_clobbered_blocks=True),
1429 self.device))
1430 script.AppendExtra("")
1431
Tao Baod522bdc2016-04-12 15:53:16 -07001432 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00001433 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07001434
1435 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08001436 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00001437 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07001438
1439 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001440 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08001441 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07001442 ranges = self.touched_src_ranges
1443 expected_sha1 = self.touched_src_sha1
1444 else:
1445 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
1446 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07001447
1448 # No blocks to be checked, skipping.
1449 if not ranges:
1450 return
1451
Tao Bao5ece99d2015-05-12 11:42:31 -07001452 ranges_str = ranges.to_string_raw()
Tao Bao8fad03e2017-03-01 14:36:26 -08001453 script.AppendExtra(('if (range_sha1("%s", "%s") == "%s" || '
1454 'block_image_verify("%s", '
1455 'package_extract_file("%s.transfer.list"), '
1456 '"%s.new.dat", "%s.patch.dat")) then') % (
1457 self.device, ranges_str, expected_sha1,
1458 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07001459 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07001460 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00001461
Tianjie Xufc3422a2015-12-15 11:53:59 -08001462 if self.version >= 4:
1463
1464 # Bug: 21124327
1465 # When generating incrementals for the system and vendor partitions in
1466 # version 4 or newer, explicitly check the first block (which contains
1467 # the superblock) of the partition to see if it's what we expect. If
1468 # this check fails, give an explicit log message about the partition
1469 # having been remounted R/W (the most likely explanation).
1470 if self.check_first_block:
1471 script.AppendExtra('check_first_block("%s");' % (self.device,))
1472
1473 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07001474 if partition == "system":
1475 code = ErrorCode.SYSTEM_RECOVER_FAILURE
1476 else:
1477 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08001478 script.AppendExtra((
1479 'ifelse (block_image_recover("{device}", "{ranges}") && '
1480 'block_image_verify("{device}", '
1481 'package_extract_file("{partition}.transfer.list"), '
1482 '"{partition}.new.dat", "{partition}.patch.dat"), '
1483 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07001484 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08001485 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07001486 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07001487
Tao Baodd2a5892015-03-12 12:32:37 -07001488 # Abort the OTA update. Note that the incremental OTA cannot be applied
1489 # even if it may match the checksum of the target partition.
1490 # a) If version < 3, operations like move and erase will make changes
1491 # unconditionally and damage the partition.
1492 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08001493 else:
Tianjie Xu209db462016-05-24 17:34:52 -07001494 if partition == "system":
1495 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
1496 else:
1497 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
1498 script.AppendExtra((
1499 'abort("E%d: %s partition has unexpected contents");\n'
1500 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001501
Tao Bao5fcaaef2015-06-01 13:40:49 -07001502 def _WritePostInstallVerifyScript(self, script):
1503 partition = self.partition
1504 script.Print('Verifying the updated %s image...' % (partition,))
1505 # Unlike pre-install verification, clobbered_blocks should not be ignored.
1506 ranges = self.tgt.care_map
1507 ranges_str = ranges.to_string_raw()
1508 script.AppendExtra('if range_sha1("%s", "%s") == "%s" then' % (
1509 self.device, ranges_str,
1510 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07001511
1512 # Bug: 20881595
1513 # Verify that extended blocks are really zeroed out.
1514 if self.tgt.extended:
1515 ranges_str = self.tgt.extended.to_string_raw()
1516 script.AppendExtra('if range_sha1("%s", "%s") == "%s" then' % (
1517 self.device, ranges_str,
1518 self._HashZeroBlocks(self.tgt.extended.size())))
1519 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07001520 if partition == "system":
1521 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
1522 else:
1523 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07001524 script.AppendExtra(
1525 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07001526 ' abort("E%d: %s partition has unexpected non-zero contents after '
1527 'OTA update");\n'
1528 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07001529 else:
1530 script.Print('Verified the updated %s image.' % (partition,))
1531
Tianjie Xu209db462016-05-24 17:34:52 -07001532 if partition == "system":
1533 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
1534 else:
1535 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
1536
Tao Bao5fcaaef2015-06-01 13:40:49 -07001537 script.AppendExtra(
1538 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07001539 ' abort("E%d: %s partition has unexpected contents after OTA '
1540 'update");\n'
1541 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07001542
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001543 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08001544 ZipWrite(output_zip,
1545 '{}.transfer.list'.format(self.path),
1546 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07001547
1548 # For full OTA, compress the new.dat with brotli with quality 6 to reduce its size. Quailty 9
1549 # almost triples the compression time but doesn't further reduce the size too much.
1550 # For a typical 1.8G system.new.dat
1551 # zip | brotli(quality 6) | brotli(quality 9)
1552 # compressed_size: 942M | 869M (~8% reduced) | 854M
1553 # compression_time: 75s | 265s | 719s
1554 # decompression_time: 15s | 25s | 25s
1555
1556 if not self.src:
1557 bro_cmd = ['bro', '--quality', '6',
1558 '--input', '{}.new.dat'.format(self.path),
1559 '--output', '{}.new.dat.br'.format(self.path)]
1560 print("Compressing {}.new.dat with brotli".format(self.partition))
1561 p = Run(bro_cmd, stdout=subprocess.PIPE)
1562 p.communicate()
1563 assert p.returncode == 0,\
1564 'compression of {}.new.dat failed'.format(self.partition)
1565
1566 new_data_name = '{}.new.dat.br'.format(self.partition)
1567 ZipWrite(output_zip,
1568 '{}.new.dat.br'.format(self.path),
1569 new_data_name,
1570 compress_type=zipfile.ZIP_STORED)
1571 else:
1572 new_data_name = '{}.new.dat'.format(self.partition)
1573 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
1574
Dan Albert8e0178d2015-01-27 15:53:15 -08001575 ZipWrite(output_zip,
1576 '{}.patch.dat'.format(self.path),
1577 '{}.patch.dat'.format(self.partition),
1578 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001579
Tianjie Xu209db462016-05-24 17:34:52 -07001580 if self.partition == "system":
1581 code = ErrorCode.SYSTEM_UPDATE_FAILURE
1582 else:
1583 code = ErrorCode.VENDOR_UPDATE_FAILURE
1584
Dan Albert8e0178d2015-01-27 15:53:15 -08001585 call = ('block_image_update("{device}", '
1586 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07001587 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07001588 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07001589 device=self.device, partition=self.partition,
1590 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07001591 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001592
Dan Albert8b72aef2015-03-23 19:13:21 -07001593 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00001594 data = source.ReadRangeSet(ranges)
1595 ctx = sha1()
1596
1597 for p in data:
1598 ctx.update(p)
1599
1600 return ctx.hexdigest()
1601
Tao Baoe9b61912015-07-09 17:37:49 -07001602 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
1603 """Return the hash value for all zero blocks."""
1604 zero_block = '\x00' * 4096
1605 ctx = sha1()
1606 for _ in range(num_blocks):
1607 ctx.update(zero_block)
1608
1609 return ctx.hexdigest()
1610
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07001611
1612DataImage = blockimgdiff.DataImage
1613
Doug Zongker96a57e72010-09-26 14:57:41 -07001614# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07001615PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07001616 "ext4": "EMMC",
1617 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07001618 "f2fs": "EMMC",
1619 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07001620}
Doug Zongker96a57e72010-09-26 14:57:41 -07001621
1622def GetTypeAndDevice(mount_point, info):
1623 fstab = info["fstab"]
1624 if fstab:
Dan Albert8b72aef2015-03-23 19:13:21 -07001625 return (PARTITION_TYPES[fstab[mount_point].fs_type],
1626 fstab[mount_point].device)
Doug Zongker96a57e72010-09-26 14:57:41 -07001627 else:
Dan Albert8b72aef2015-03-23 19:13:21 -07001628 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00001629
1630
1631def ParseCertificate(data):
1632 """Parse a PEM-format certificate."""
1633 cert = []
1634 save = False
1635 for line in data.split("\n"):
1636 if "--END CERTIFICATE--" in line:
1637 break
1638 if save:
1639 cert.append(line)
1640 if "--BEGIN CERTIFICATE--" in line:
1641 save = True
1642 cert = "".join(cert).decode('base64')
1643 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08001644
Doug Zongker412c02f2014-02-13 10:58:24 -08001645def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
1646 info_dict=None):
Doug Zongkerc9253822014-02-04 12:17:58 -08001647 """Generate a binary patch that creates the recovery image starting
1648 with the boot image. (Most of the space in these images is just the
1649 kernel, which is identical for the two, so the resulting patch
1650 should be efficient.) Add it to the output zip, along with a shell
1651 script that is run from init.rc on first boot to actually do the
1652 patching and install the new recovery image.
1653
1654 recovery_img and boot_img should be File objects for the
1655 corresponding images. info should be the dictionary returned by
1656 common.LoadInfoDict() on the input target_files.
1657 """
1658
Doug Zongker412c02f2014-02-13 10:58:24 -08001659 if info_dict is None:
1660 info_dict = OPTIONS.info_dict
1661
Tao Baof2cffbd2015-07-22 12:33:18 -07001662 full_recovery_image = info_dict.get("full_recovery_image", None) == "true"
Doug Zongkerc9253822014-02-04 12:17:58 -08001663
Tao Baof2cffbd2015-07-22 12:33:18 -07001664 if full_recovery_image:
1665 output_sink("etc/recovery.img", recovery_img.data)
1666
1667 else:
1668 diff_program = ["imgdiff"]
1669 path = os.path.join(input_dir, "SYSTEM", "etc", "recovery-resource.dat")
1670 if os.path.exists(path):
1671 diff_program.append("-b")
1672 diff_program.append(path)
1673 bonus_args = "-b /system/etc/recovery-resource.dat"
1674 else:
1675 bonus_args = ""
1676
1677 d = Difference(recovery_img, boot_img, diff_program=diff_program)
1678 _, _, patch = d.ComputePatch()
1679 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08001680
Dan Albertebb19aa2015-03-27 19:11:53 -07001681 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07001682 # The following GetTypeAndDevice()s need to use the path in the target
1683 # info_dict instead of source_info_dict.
Dan Albertebb19aa2015-03-27 19:11:53 -07001684 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict)
1685 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict)
1686 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07001687 return
Doug Zongkerc9253822014-02-04 12:17:58 -08001688
Tao Baof2cffbd2015-07-22 12:33:18 -07001689 if full_recovery_image:
1690 sh = """#!/system/bin/sh
1691if ! applypatch -c %(type)s:%(device)s:%(size)d:%(sha1)s; then
1692 applypatch /system/etc/recovery.img %(type)s:%(device)s %(sha1)s %(size)d && log -t recovery "Installing new recovery image: succeeded" || log -t recovery "Installing new recovery image: failed"
1693else
1694 log -t recovery "Recovery image already installed"
1695fi
1696""" % {'type': recovery_type,
1697 'device': recovery_device,
1698 'sha1': recovery_img.sha1,
1699 'size': recovery_img.size}
1700 else:
1701 sh = """#!/system/bin/sh
Doug Zongkerc9253822014-02-04 12:17:58 -08001702if ! applypatch -c %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
1703 applypatch %(bonus_args)s %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s %(recovery_type)s:%(recovery_device)s %(recovery_sha1)s %(recovery_size)d %(boot_sha1)s:/system/recovery-from-boot.p && log -t recovery "Installing new recovery image: succeeded" || log -t recovery "Installing new recovery image: failed"
1704else
1705 log -t recovery "Recovery image already installed"
1706fi
Dan Albert8b72aef2015-03-23 19:13:21 -07001707""" % {'boot_size': boot_img.size,
1708 'boot_sha1': boot_img.sha1,
1709 'recovery_size': recovery_img.size,
1710 'recovery_sha1': recovery_img.sha1,
1711 'boot_type': boot_type,
1712 'boot_device': boot_device,
1713 'recovery_type': recovery_type,
1714 'recovery_device': recovery_device,
1715 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08001716
1717 # The install script location moved from /system/etc to /system/bin
Tianjie Xu78de9f12017-06-20 16:52:54 -07001718 # in the L release.
1719 sh_location = "bin/install-recovery.sh"
Tao Bao9f0c8df2015-07-07 18:31:47 -07001720
Tao Bao89fbb0f2017-01-10 10:47:58 -08001721 print("putting script in", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08001722
1723 output_sink(sh_location, sh)