blob: 26c4ae8426a162f3f8c28575087ee222a77bd896 [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Kelvin Zhang0876c412020-06-23 15:06:58 -040020import datetime
Doug Zongker8ce7c252009-05-22 13:34:54 -070021import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070022import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070023import getopt
24import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010025import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070026import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070027import json
28import logging
29import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070030import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080031import platform
Doug Zongkereef39442009-04-02 12:14:19 -070032import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070033import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070034import shutil
35import subprocess
36import sys
37import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070038import threading
39import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070040import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080041from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070042
Tianjie Xu41976c72019-07-03 13:57:01 -070043import images
Tao Baoc765cca2018-01-31 17:32:40 -080044import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070045from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070046
Tao Bao32fcdab2018-10-12 10:30:39 -070047logger = logging.getLogger(__name__)
48
Tao Bao986ee862018-10-04 15:46:16 -070049
Dan Albert8b72aef2015-03-23 19:13:21 -070050class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070051
Dan Albert8b72aef2015-03-23 19:13:21 -070052 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070053 # Set up search path, in order to find framework/ and lib64/. At the time of
54 # running this function, user-supplied search path (`--path`) hasn't been
55 # available. So the value set here is the default, which might be overridden
56 # by commandline flag later.
Kelvin Zhang0876c412020-06-23 15:06:58 -040057 exec_path = os.path.realpath(sys.argv[0])
Tao Baoafd92a82019-10-10 22:44:22 -070058 if exec_path.endswith('.py'):
59 script_name = os.path.basename(exec_path)
60 # logger hasn't been initialized yet at this point. Use print to output
61 # warnings.
62 print(
63 'Warning: releasetools script should be invoked as hermetic Python '
Kelvin Zhang0876c412020-06-23 15:06:58 -040064 'executable -- build and run `{}` directly.'.format(
65 script_name[:-3]),
Tao Baoafd92a82019-10-10 22:44:22 -070066 file=sys.stderr)
Kelvin Zhang0876c412020-06-23 15:06:58 -040067 self.search_path = os.path.dirname(os.path.dirname(exec_path))
Pavel Salomatov32676552019-03-06 20:00:45 +030068
Dan Albert8b72aef2015-03-23 19:13:21 -070069 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Alex Klyubin9667b182015-12-10 13:38:50 -080070 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070071 self.extra_signapk_args = []
72 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080073 self.java_args = ["-Xmx2048m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080074 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070075 self.public_key_suffix = ".x509.pem"
76 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070077 # use otatools built boot_signer by default
78 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070079 self.boot_signer_args = []
80 self.verity_signer_path = None
81 self.verity_signer_args = []
Tianjie0f307452020-04-01 12:20:21 -070082 self.aftl_tool_path = None
Dan Austin52903642019-12-12 15:44:00 -080083 self.aftl_server = None
84 self.aftl_key_path = None
85 self.aftl_manufacturer_key_path = None
86 self.aftl_signer_helper = None
Dan Albert8b72aef2015-03-23 19:13:21 -070087 self.verbose = False
88 self.tempfiles = []
89 self.device_specific = None
90 self.extras = {}
91 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070092 self.source_info_dict = None
93 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070094 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070095 # Stash size cannot exceed cache_size * threshold.
96 self.cache_size = None
97 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -070098 self.logfile = None
Yifan Hong8e332ff2020-07-29 17:51:55 -070099 self.host_tools = {}
Dan Albert8b72aef2015-03-23 19:13:21 -0700100
101
102OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -0700103
Tao Bao71197512018-10-11 14:08:45 -0700104# The block size that's used across the releasetools scripts.
105BLOCK_SIZE = 4096
106
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800107# Values for "certificate" in apkcerts that mean special things.
108SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
109
Tao Bao5cc0abb2019-03-21 10:18:05 -0700110# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
111# that system_other is not in the list because we don't want to include its
112# descriptor into vbmeta.img.
Justin Yun6151e3f2019-06-25 15:58:13 +0900113AVB_PARTITIONS = ('boot', 'dtbo', 'odm', 'product', 'recovery', 'system',
Yifan Hongf496f1b2020-07-15 16:52:59 -0700114 'system_ext', 'vendor', 'vendor_boot', 'vendor_dlkm',
115 'odm_dlkm')
Tao Bao9dd909e2017-11-14 11:27:32 -0800116
Tao Bao08c190f2019-06-03 23:07:58 -0700117# Chained VBMeta partitions.
118AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
119
Tianjie Xu861f4132018-09-12 11:49:33 -0700120# Partitions that should have their care_map added to META/care_map.pb
Kelvin Zhang39aea442020-08-17 11:04:25 -0400121PARTITIONS_WITH_CARE_MAP = [
Yifan Hongcfb917a2020-05-07 14:58:20 -0700122 'system',
123 'vendor',
124 'product',
125 'system_ext',
126 'odm',
127 'vendor_dlkm',
Yifan Hongf496f1b2020-07-15 16:52:59 -0700128 'odm_dlkm',
Kelvin Zhang39aea442020-08-17 11:04:25 -0400129]
Tianjie Xu861f4132018-09-12 11:49:33 -0700130
Yifan Hong5057b952021-01-07 14:09:57 -0800131# Partitions with a build.prop file
Yifan Hong10482a22021-01-07 14:38:41 -0800132PARTITIONS_WITH_BUILD_PROP = PARTITIONS_WITH_CARE_MAP + ['boot']
Yifan Hong5057b952021-01-07 14:09:57 -0800133
Yifan Hongc65a0542021-01-07 14:21:01 -0800134# See sysprop.mk. If file is moved, add new search paths here; don't remove
135# existing search paths.
136RAMDISK_BUILD_PROP_REL_PATHS = ['system/etc/ramdisk/build.prop']
Tianjie Xu861f4132018-09-12 11:49:33 -0700137
Tianjie Xu209db462016-05-24 17:34:52 -0700138class ErrorCode(object):
139 """Define error_codes for failures that happen during the actual
140 update package installation.
141
142 Error codes 0-999 are reserved for failures before the package
143 installation (i.e. low battery, package verification failure).
144 Detailed code in 'bootable/recovery/error_code.h' """
145
146 SYSTEM_VERIFICATION_FAILURE = 1000
147 SYSTEM_UPDATE_FAILURE = 1001
148 SYSTEM_UNEXPECTED_CONTENTS = 1002
149 SYSTEM_NONZERO_CONTENTS = 1003
150 SYSTEM_RECOVER_FAILURE = 1004
151 VENDOR_VERIFICATION_FAILURE = 2000
152 VENDOR_UPDATE_FAILURE = 2001
153 VENDOR_UNEXPECTED_CONTENTS = 2002
154 VENDOR_NONZERO_CONTENTS = 2003
155 VENDOR_RECOVER_FAILURE = 2004
156 OEM_PROP_MISMATCH = 3000
157 FINGERPRINT_MISMATCH = 3001
158 THUMBPRINT_MISMATCH = 3002
159 OLDER_BUILD = 3003
160 DEVICE_MISMATCH = 3004
161 BAD_PATCH_FILE = 3005
162 INSUFFICIENT_CACHE_SPACE = 3006
163 TUNE_PARTITION_FAILURE = 3007
164 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800165
Tao Bao80921982018-03-21 21:02:19 -0700166
Dan Albert8b72aef2015-03-23 19:13:21 -0700167class ExternalError(RuntimeError):
168 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700169
170
Tao Bao32fcdab2018-10-12 10:30:39 -0700171def InitLogging():
172 DEFAULT_LOGGING_CONFIG = {
173 'version': 1,
174 'disable_existing_loggers': False,
175 'formatters': {
176 'standard': {
177 'format':
178 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
179 'datefmt': '%Y-%m-%d %H:%M:%S',
180 },
181 },
182 'handlers': {
183 'default': {
184 'class': 'logging.StreamHandler',
185 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700186 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700187 },
188 },
189 'loggers': {
190 '': {
191 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700192 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700193 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700194 }
195 }
196 }
197 env_config = os.getenv('LOGGING_CONFIG')
198 if env_config:
199 with open(env_config) as f:
200 config = json.load(f)
201 else:
202 config = DEFAULT_LOGGING_CONFIG
203
204 # Increase the logging level for verbose mode.
205 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700206 config = copy.deepcopy(config)
207 config['handlers']['default']['level'] = 'INFO'
208
209 if OPTIONS.logfile:
210 config = copy.deepcopy(config)
211 config['handlers']['logfile'] = {
Kelvin Zhang0876c412020-06-23 15:06:58 -0400212 'class': 'logging.FileHandler',
213 'formatter': 'standard',
214 'level': 'INFO',
215 'mode': 'w',
216 'filename': OPTIONS.logfile,
Yifan Hong30910932019-10-25 20:36:55 -0700217 }
218 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700219
220 logging.config.dictConfig(config)
221
222
Yifan Hong8e332ff2020-07-29 17:51:55 -0700223def SetHostToolLocation(tool_name, location):
224 OPTIONS.host_tools[tool_name] = location
225
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900226def FindHostToolPath(tool_name):
227 """Finds the path to the host tool.
228
229 Args:
230 tool_name: name of the tool to find
231 Returns:
232 path to the tool if found under either one of the host_tools map or under
233 the same directory as this binary is located at. If not found, tool_name
234 is returned.
235 """
236 if tool_name in OPTIONS.host_tools:
237 return OPTIONS.host_tools[tool_name]
238
239 my_dir = os.path.dirname(os.path.realpath(sys.argv[0]))
240 tool_path = os.path.join(my_dir, tool_name)
241 if os.path.exists(tool_path):
242 return tool_path
243
244 return tool_name
Yifan Hong8e332ff2020-07-29 17:51:55 -0700245
Tao Bao39451582017-05-04 11:10:47 -0700246def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700247 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700248
Tao Bao73dd4f42018-10-04 16:25:33 -0700249 Args:
250 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700251 verbose: Whether the commands should be shown. Default to the global
252 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700253 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
254 stdin, etc. stdout and stderr will default to subprocess.PIPE and
255 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800256 universal_newlines will default to True, as most of the users in
257 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700258
259 Returns:
260 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700261 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700262 if 'stdout' not in kwargs and 'stderr' not in kwargs:
263 kwargs['stdout'] = subprocess.PIPE
264 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800265 if 'universal_newlines' not in kwargs:
266 kwargs['universal_newlines'] = True
Yifan Hong8e332ff2020-07-29 17:51:55 -0700267
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900268 if args:
269 # Make a copy of args in case client relies on the content of args later.
Yifan Hong8e332ff2020-07-29 17:51:55 -0700270 args = args[:]
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900271 args[0] = FindHostToolPath(args[0])
Yifan Hong8e332ff2020-07-29 17:51:55 -0700272
Tao Bao32fcdab2018-10-12 10:30:39 -0700273 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400274 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700275 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700276 return subprocess.Popen(args, **kwargs)
277
278
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800279def RunAndWait(args, verbose=None, **kwargs):
Bill Peckham889b0c62019-02-21 18:53:37 -0800280 """Runs the given command waiting for it to complete.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800281
282 Args:
283 args: The command represented as a list of strings.
284 verbose: Whether the commands should be shown. Default to the global
285 verbosity if unspecified.
286 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
287 stdin, etc. stdout and stderr will default to subprocess.PIPE and
288 subprocess.STDOUT respectively unless caller specifies any of them.
289
Bill Peckham889b0c62019-02-21 18:53:37 -0800290 Raises:
291 ExternalError: On non-zero exit from the command.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800292 """
293 proc = Run(args, verbose=verbose, **kwargs)
294 proc.wait()
Bill Peckham889b0c62019-02-21 18:53:37 -0800295
296 if proc.returncode != 0:
297 raise ExternalError(
298 "Failed to run command '{}' (exit code {})".format(
299 args, proc.returncode))
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800300
301
Tao Bao986ee862018-10-04 15:46:16 -0700302def RunAndCheckOutput(args, verbose=None, **kwargs):
303 """Runs the given command and returns the output.
304
305 Args:
306 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700307 verbose: Whether the commands should be shown. Default to the global
308 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700309 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
310 stdin, etc. stdout and stderr will default to subprocess.PIPE and
311 subprocess.STDOUT respectively unless caller specifies any of them.
312
313 Returns:
314 The output string.
315
316 Raises:
317 ExternalError: On non-zero exit from the command.
318 """
Tao Bao986ee862018-10-04 15:46:16 -0700319 proc = Run(args, verbose=verbose, **kwargs)
320 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800321 if output is None:
322 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700323 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400324 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700325 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700326 if proc.returncode != 0:
327 raise ExternalError(
328 "Failed to run command '{}' (exit code {}):\n{}".format(
329 args, proc.returncode, output))
330 return output
331
332
Tao Baoc765cca2018-01-31 17:32:40 -0800333def RoundUpTo4K(value):
334 rounded_up = value + 4095
335 return rounded_up - (rounded_up % 4096)
336
337
Ying Wang7e6d4e42010-12-13 16:25:36 -0800338def CloseInheritedPipes():
339 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
340 before doing other work."""
341 if platform.system() != "Darwin":
342 return
343 for d in range(3, 1025):
344 try:
345 stat = os.fstat(d)
346 if stat is not None:
347 pipebit = stat[0] & 0x1000
348 if pipebit != 0:
349 os.close(d)
350 except OSError:
351 pass
352
353
Tao Bao1c320f82019-10-04 23:25:12 -0700354class BuildInfo(object):
355 """A class that holds the information for a given build.
356
357 This class wraps up the property querying for a given source or target build.
358 It abstracts away the logic of handling OEM-specific properties, and caches
359 the commonly used properties such as fingerprint.
360
361 There are two types of info dicts: a) build-time info dict, which is generated
362 at build time (i.e. included in a target_files zip); b) OEM info dict that is
363 specified at package generation time (via command line argument
364 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
365 having "oem_fingerprint_properties" in build-time info dict), all the queries
366 would be answered based on build-time info dict only. Otherwise if using
367 OEM-specific properties, some of them will be calculated from two info dicts.
368
369 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800370 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700371
372 Attributes:
373 info_dict: The build-time info dict.
374 is_ab: Whether it's a build that uses A/B OTA.
375 oem_dicts: A list of OEM dicts.
376 oem_props: A list of OEM properties that should be read from OEM dicts; None
377 if the build doesn't use any OEM-specific property.
378 fingerprint: The fingerprint of the build, which would be calculated based
379 on OEM properties if applicable.
380 device: The device name, which could come from OEM dicts if applicable.
381 """
382
383 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
384 "ro.product.manufacturer", "ro.product.model",
385 "ro.product.name"]
Steven Laver8e2086e2020-04-27 16:26:31 -0700386 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
387 "product", "odm", "vendor", "system_ext", "system"]
388 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
389 "product", "product_services", "odm", "vendor", "system"]
390 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700391
Tao Bao3ed35d32019-10-07 20:48:48 -0700392 def __init__(self, info_dict, oem_dicts=None):
Tao Bao1c320f82019-10-04 23:25:12 -0700393 """Initializes a BuildInfo instance with the given dicts.
394
395 Note that it only wraps up the given dicts, without making copies.
396
397 Arguments:
398 info_dict: The build-time info dict.
399 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
400 that it always uses the first dict to calculate the fingerprint or the
401 device name. The rest would be used for asserting OEM properties only
402 (e.g. one package can be installed on one of these devices).
403
404 Raises:
405 ValueError: On invalid inputs.
406 """
407 self.info_dict = info_dict
408 self.oem_dicts = oem_dicts
409
410 self._is_ab = info_dict.get("ab_update") == "true"
Tao Bao1c320f82019-10-04 23:25:12 -0700411
Hongguang Chend7c160f2020-05-03 21:24:26 -0700412 # Skip _oem_props if oem_dicts is None to use BuildInfo in
413 # sign_target_files_apks
414 if self.oem_dicts:
415 self._oem_props = info_dict.get("oem_fingerprint_properties")
416 else:
417 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700418
Daniel Normand5fe8622020-01-08 17:01:11 -0800419 def check_fingerprint(fingerprint):
420 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
421 raise ValueError(
422 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
423 "3.2.2. Build Parameters.".format(fingerprint))
424
Daniel Normand5fe8622020-01-08 17:01:11 -0800425 self._partition_fingerprints = {}
Yifan Hong5057b952021-01-07 14:09:57 -0800426 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800427 try:
428 fingerprint = self.CalculatePartitionFingerprint(partition)
429 check_fingerprint(fingerprint)
430 self._partition_fingerprints[partition] = fingerprint
431 except ExternalError:
432 continue
433 if "system" in self._partition_fingerprints:
Yifan Hong5057b952021-01-07 14:09:57 -0800434 # system_other is not included in PARTITIONS_WITH_BUILD_PROP, but does
Daniel Normand5fe8622020-01-08 17:01:11 -0800435 # need a fingerprint when creating the image.
436 self._partition_fingerprints[
437 "system_other"] = self._partition_fingerprints["system"]
438
Tao Bao1c320f82019-10-04 23:25:12 -0700439 # These two should be computed only after setting self._oem_props.
440 self._device = self.GetOemProperty("ro.product.device")
441 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800442 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700443
444 @property
445 def is_ab(self):
446 return self._is_ab
447
448 @property
449 def device(self):
450 return self._device
451
452 @property
453 def fingerprint(self):
454 return self._fingerprint
455
456 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700457 def oem_props(self):
458 return self._oem_props
459
460 def __getitem__(self, key):
461 return self.info_dict[key]
462
463 def __setitem__(self, key, value):
464 self.info_dict[key] = value
465
466 def get(self, key, default=None):
467 return self.info_dict.get(key, default)
468
469 def items(self):
470 return self.info_dict.items()
471
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000472 def _GetRawBuildProp(self, prop, partition):
473 prop_file = '{}.build.prop'.format(
474 partition) if partition else 'build.prop'
475 partition_props = self.info_dict.get(prop_file)
476 if not partition_props:
477 return None
478 return partition_props.GetProp(prop)
479
Daniel Normand5fe8622020-01-08 17:01:11 -0800480 def GetPartitionBuildProp(self, prop, partition):
481 """Returns the inquired build property for the provided partition."""
Yifan Hong10482a22021-01-07 14:38:41 -0800482
483 # Boot image uses ro.[product.]bootimage instead of boot.
484 prop_partition = "bootimage" if partition == "boot" else partition
485
Daniel Normand5fe8622020-01-08 17:01:11 -0800486 # If provided a partition for this property, only look within that
487 # partition's build.prop.
488 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
Yifan Hong10482a22021-01-07 14:38:41 -0800489 prop = prop.replace("ro.product", "ro.product.{}".format(prop_partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800490 else:
Yifan Hong10482a22021-01-07 14:38:41 -0800491 prop = prop.replace("ro.", "ro.{}.".format(prop_partition))
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000492
493 prop_val = self._GetRawBuildProp(prop, partition)
494 if prop_val is not None:
495 return prop_val
496 raise ExternalError("couldn't find %s in %s.build.prop" %
497 (prop, partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800498
Tao Bao1c320f82019-10-04 23:25:12 -0700499 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800500 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700501 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
502 return self._ResolveRoProductBuildProp(prop)
503
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000504 prop_val = self._GetRawBuildProp(prop, None)
505 if prop_val is not None:
506 return prop_val
507
508 raise ExternalError("couldn't find %s in build.prop" % (prop,))
Tao Bao1c320f82019-10-04 23:25:12 -0700509
510 def _ResolveRoProductBuildProp(self, prop):
511 """Resolves the inquired ro.product.* build property"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000512 prop_val = self._GetRawBuildProp(prop, None)
Tao Bao1c320f82019-10-04 23:25:12 -0700513 if prop_val:
514 return prop_val
515
Steven Laver8e2086e2020-04-27 16:26:31 -0700516 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000517 source_order_val = self._GetRawBuildProp(
518 "ro.product.property_source_order", None)
Tao Bao1c320f82019-10-04 23:25:12 -0700519 if source_order_val:
520 source_order = source_order_val.split(",")
521 else:
Steven Laver8e2086e2020-04-27 16:26:31 -0700522 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700523
524 # Check that all sources in ro.product.property_source_order are valid
Steven Laver8e2086e2020-04-27 16:26:31 -0700525 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700526 raise ExternalError(
527 "Invalid ro.product.property_source_order '{}'".format(source_order))
528
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000529 for source_partition in source_order:
Tao Bao1c320f82019-10-04 23:25:12 -0700530 source_prop = prop.replace(
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000531 "ro.product", "ro.product.{}".format(source_partition), 1)
532 prop_val = self._GetRawBuildProp(source_prop, source_partition)
Tao Bao1c320f82019-10-04 23:25:12 -0700533 if prop_val:
534 return prop_val
535
536 raise ExternalError("couldn't resolve {}".format(prop))
537
Steven Laver8e2086e2020-04-27 16:26:31 -0700538 def _GetRoProductPropsDefaultSourceOrder(self):
539 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
540 # values of these properties for each Android release.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000541 android_codename = self._GetRawBuildProp("ro.build.version.codename", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700542 if android_codename == "REL":
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000543 android_version = self._GetRawBuildProp("ro.build.version.release", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700544 if android_version == "10":
545 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
546 # NOTE: float() conversion of android_version will have rounding error.
547 # We are checking for "9" or less, and using "< 10" is well outside of
548 # possible floating point rounding.
549 try:
550 android_version_val = float(android_version)
551 except ValueError:
552 android_version_val = 0
553 if android_version_val < 10:
554 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
555 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
556
Tianjieb37c5be2020-10-15 21:27:10 -0700557 def _GetPlatformVersion(self):
558 version_sdk = self.GetBuildProp("ro.build.version.sdk")
559 # init code switches to version_release_or_codename (see b/158483506). After
560 # API finalization, release_or_codename will be the same as release. This
561 # is the best effort to support pre-S dev stage builds.
562 if int(version_sdk) >= 30:
563 try:
564 return self.GetBuildProp("ro.build.version.release_or_codename")
565 except ExternalError:
566 logger.warning('Failed to find ro.build.version.release_or_codename')
567
568 return self.GetBuildProp("ro.build.version.release")
569
570 def _GetPartitionPlatformVersion(self, partition):
571 try:
572 return self.GetPartitionBuildProp("ro.build.version.release_or_codename",
573 partition)
574 except ExternalError:
575 return self.GetPartitionBuildProp("ro.build.version.release",
576 partition)
577
Tao Bao1c320f82019-10-04 23:25:12 -0700578 def GetOemProperty(self, key):
579 if self.oem_props is not None and key in self.oem_props:
580 return self.oem_dicts[0][key]
581 return self.GetBuildProp(key)
582
Daniel Normand5fe8622020-01-08 17:01:11 -0800583 def GetPartitionFingerprint(self, partition):
584 return self._partition_fingerprints.get(partition, None)
585
586 def CalculatePartitionFingerprint(self, partition):
587 try:
588 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
589 except ExternalError:
590 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
591 self.GetPartitionBuildProp("ro.product.brand", partition),
592 self.GetPartitionBuildProp("ro.product.name", partition),
593 self.GetPartitionBuildProp("ro.product.device", partition),
Tianjieb37c5be2020-10-15 21:27:10 -0700594 self._GetPartitionPlatformVersion(partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800595 self.GetPartitionBuildProp("ro.build.id", partition),
Kelvin Zhang0876c412020-06-23 15:06:58 -0400596 self.GetPartitionBuildProp(
597 "ro.build.version.incremental", partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800598 self.GetPartitionBuildProp("ro.build.type", partition),
599 self.GetPartitionBuildProp("ro.build.tags", partition))
600
Tao Bao1c320f82019-10-04 23:25:12 -0700601 def CalculateFingerprint(self):
602 if self.oem_props is None:
603 try:
604 return self.GetBuildProp("ro.build.fingerprint")
605 except ExternalError:
606 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
607 self.GetBuildProp("ro.product.brand"),
608 self.GetBuildProp("ro.product.name"),
609 self.GetBuildProp("ro.product.device"),
Tianjieb37c5be2020-10-15 21:27:10 -0700610 self._GetPlatformVersion(),
Tao Bao1c320f82019-10-04 23:25:12 -0700611 self.GetBuildProp("ro.build.id"),
612 self.GetBuildProp("ro.build.version.incremental"),
613 self.GetBuildProp("ro.build.type"),
614 self.GetBuildProp("ro.build.tags"))
615 return "%s/%s/%s:%s" % (
616 self.GetOemProperty("ro.product.brand"),
617 self.GetOemProperty("ro.product.name"),
618 self.GetOemProperty("ro.product.device"),
619 self.GetBuildProp("ro.build.thumbprint"))
620
621 def WriteMountOemScript(self, script):
622 assert self.oem_props is not None
623 recovery_mount_options = self.info_dict.get("recovery_mount_options")
624 script.Mount("/oem", recovery_mount_options)
625
626 def WriteDeviceAssertions(self, script, oem_no_mount):
627 # Read the property directly if not using OEM properties.
628 if not self.oem_props:
629 script.AssertDevice(self.device)
630 return
631
632 # Otherwise assert OEM properties.
633 if not self.oem_dicts:
634 raise ExternalError(
635 "No OEM file provided to answer expected assertions")
636
637 for prop in self.oem_props.split():
638 values = []
639 for oem_dict in self.oem_dicts:
640 if prop in oem_dict:
641 values.append(oem_dict[prop])
642 if not values:
643 raise ExternalError(
644 "The OEM file is missing the property %s" % (prop,))
645 script.AssertOemProperty(prop, values, oem_no_mount)
646
647
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000648def ReadFromInputFile(input_file, fn):
649 """Reads the contents of fn from input zipfile or directory."""
650 if isinstance(input_file, zipfile.ZipFile):
651 return input_file.read(fn).decode()
652 else:
653 path = os.path.join(input_file, *fn.split("/"))
654 try:
655 with open(path) as f:
656 return f.read()
657 except IOError as e:
658 if e.errno == errno.ENOENT:
659 raise KeyError(fn)
660
661
Yifan Hong10482a22021-01-07 14:38:41 -0800662def ExtractFromInputFile(input_file, fn):
663 """Extracts the contents of fn from input zipfile or directory into a file."""
664 if isinstance(input_file, zipfile.ZipFile):
665 tmp_file = MakeTempFile(os.path.basename(fn))
666 with open(tmp_file, 'w') as f:
667 f.write(input_file.read(fn))
668 return tmp_file
669 else:
670 file = os.path.join(input_file, *fn.split("/"))
671 if not os.path.exists(file):
672 raise KeyError(fn)
673 return file
674
675
Tao Bao410ad8b2018-08-24 12:08:38 -0700676def LoadInfoDict(input_file, repacking=False):
677 """Loads the key/value pairs from the given input target_files.
678
Tianjiea85bdf02020-07-29 11:56:19 -0700679 It reads `META/misc_info.txt` file in the target_files input, does validation
Tao Bao410ad8b2018-08-24 12:08:38 -0700680 checks and returns the parsed key/value pairs for to the given build. It's
681 usually called early when working on input target_files files, e.g. when
682 generating OTAs, or signing builds. Note that the function may be called
683 against an old target_files file (i.e. from past dessert releases). So the
684 property parsing needs to be backward compatible.
685
686 In a `META/misc_info.txt`, a few properties are stored as links to the files
687 in the PRODUCT_OUT directory. It works fine with the build system. However,
688 they are no longer available when (re)generating images from target_files zip.
689 When `repacking` is True, redirect these properties to the actual files in the
690 unzipped directory.
691
692 Args:
693 input_file: The input target_files file, which could be an open
694 zipfile.ZipFile instance, or a str for the dir that contains the files
695 unzipped from a target_files file.
696 repacking: Whether it's trying repack an target_files file after loading the
697 info dict (default: False). If so, it will rewrite a few loaded
698 properties (e.g. selinux_fc, root_dir) to point to the actual files in
699 target_files file. When doing repacking, `input_file` must be a dir.
700
701 Returns:
702 A dict that contains the parsed key/value pairs.
703
704 Raises:
705 AssertionError: On invalid input arguments.
706 ValueError: On malformed input values.
707 """
708 if repacking:
709 assert isinstance(input_file, str), \
710 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700711
Doug Zongkerc9253822014-02-04 12:17:58 -0800712 def read_helper(fn):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000713 return ReadFromInputFile(input_file, fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800714
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700715 try:
Michael Runge6e836112014-04-15 17:40:21 -0700716 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700717 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700718 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700719
Tao Bao410ad8b2018-08-24 12:08:38 -0700720 if "recovery_api_version" not in d:
721 raise ValueError("Failed to find 'recovery_api_version'")
722 if "fstab_version" not in d:
723 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800724
Tao Bao410ad8b2018-08-24 12:08:38 -0700725 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700726 # "selinux_fc" properties should point to the file_contexts files
727 # (file_contexts.bin) under META/.
728 for key in d:
729 if key.endswith("selinux_fc"):
730 fc_basename = os.path.basename(d[key])
731 fc_config = os.path.join(input_file, "META", fc_basename)
732 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700733
Daniel Norman72c626f2019-05-13 15:58:14 -0700734 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700735
Tom Cherryd14b8952018-08-09 14:26:00 -0700736 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700737 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700738 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700739 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700740
David Anderson0ec64ac2019-12-06 12:21:18 -0800741 # Redirect {partition}_base_fs_file for each of the named partitions.
Yifan Hongcfb917a2020-05-07 14:58:20 -0700742 for part_name in ["system", "vendor", "system_ext", "product", "odm",
Yifan Hongf496f1b2020-07-15 16:52:59 -0700743 "vendor_dlkm", "odm_dlkm"]:
David Anderson0ec64ac2019-12-06 12:21:18 -0800744 key_name = part_name + "_base_fs_file"
745 if key_name not in d:
746 continue
747 basename = os.path.basename(d[key_name])
748 base_fs_file = os.path.join(input_file, "META", basename)
749 if os.path.exists(base_fs_file):
750 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700751 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700752 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800753 "Failed to find %s base fs file: %s", part_name, base_fs_file)
754 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700755
Doug Zongker37974732010-09-16 17:44:38 -0700756 def makeint(key):
757 if key in d:
758 d[key] = int(d[key], 0)
759
760 makeint("recovery_api_version")
761 makeint("blocksize")
762 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700763 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700764 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700765 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700766 makeint("recovery_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800767 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700768
Steve Muckle903a1ca2020-05-07 17:32:10 -0700769 boot_images = "boot.img"
770 if "boot_images" in d:
771 boot_images = d["boot_images"]
772 for b in boot_images.split():
Kelvin Zhang0876c412020-06-23 15:06:58 -0400773 makeint(b.replace(".img", "_size"))
Steve Muckle903a1ca2020-05-07 17:32:10 -0700774
Tao Bao765668f2019-10-04 22:03:00 -0700775 # Load recovery fstab if applicable.
776 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
Tianjie Xucfa86222016-03-07 16:31:19 -0800777
Tianjie Xu861f4132018-09-12 11:49:33 -0700778 # Tries to load the build props for all partitions with care_map, including
779 # system and vendor.
Yifan Hong5057b952021-01-07 14:09:57 -0800780 for partition in PARTITIONS_WITH_BUILD_PROP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800781 partition_prop = "{}.build.prop".format(partition)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000782 d[partition_prop] = PartitionBuildProps.FromInputFile(
783 input_file, partition)
Tianjie Xu861f4132018-09-12 11:49:33 -0700784 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800785
Tao Bao3ed35d32019-10-07 20:48:48 -0700786 # Set up the salt (based on fingerprint) that will be used when adding AVB
787 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800788 if d.get("avb_enable") == "true":
Tao Bao3ed35d32019-10-07 20:48:48 -0700789 build_info = BuildInfo(d)
Yifan Hong5057b952021-01-07 14:09:57 -0800790 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800791 fingerprint = build_info.GetPartitionFingerprint(partition)
792 if fingerprint:
Kelvin Zhang0876c412020-06-23 15:06:58 -0400793 d["avb_{}_salt".format(partition)] = sha256(fingerprint.encode()).hexdigest()
Kelvin Zhang39aea442020-08-17 11:04:25 -0400794 try:
795 d["ab_partitions"] = read_helper("META/ab_partitions.txt").split("\n")
796 except KeyError:
797 logger.warning("Can't find META/ab_partitions.txt")
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700798 return d
799
Tao Baod1de6f32017-03-01 16:38:48 -0800800
Kelvin Zhang39aea442020-08-17 11:04:25 -0400801
Daniel Norman4cc9df62019-07-18 10:11:07 -0700802def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900803 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700804 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900805
Daniel Norman4cc9df62019-07-18 10:11:07 -0700806
807def LoadDictionaryFromFile(file_path):
808 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900809 return LoadDictionaryFromLines(lines)
810
811
Michael Runge6e836112014-04-15 17:40:21 -0700812def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700813 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700814 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700815 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700816 if not line or line.startswith("#"):
817 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700818 if "=" in line:
819 name, value = line.split("=", 1)
820 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700821 return d
822
Tao Baod1de6f32017-03-01 16:38:48 -0800823
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000824class PartitionBuildProps(object):
825 """The class holds the build prop of a particular partition.
826
827 This class loads the build.prop and holds the build properties for a given
828 partition. It also partially recognizes the 'import' statement in the
829 build.prop; and calculates alternative values of some specific build
830 properties during runtime.
831
832 Attributes:
833 input_file: a zipped target-file or an unzipped target-file directory.
834 partition: name of the partition.
835 props_allow_override: a list of build properties to search for the
836 alternative values during runtime.
Tianjie Xu9afb2212020-05-10 21:48:15 +0000837 build_props: a dict of build properties for the given partition.
838 prop_overrides: a set of props that are overridden by import.
839 placeholder_values: A dict of runtime variables' values to replace the
840 placeholders in the build.prop file. We expect exactly one value for
841 each of the variables.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000842 """
Kelvin Zhang0876c412020-06-23 15:06:58 -0400843
Tianjie Xu9afb2212020-05-10 21:48:15 +0000844 def __init__(self, input_file, name, placeholder_values=None):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000845 self.input_file = input_file
846 self.partition = name
847 self.props_allow_override = [props.format(name) for props in [
Tianjie Xu9afb2212020-05-10 21:48:15 +0000848 'ro.product.{}.brand', 'ro.product.{}.name', 'ro.product.{}.device']]
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000849 self.build_props = {}
Tianjie Xu9afb2212020-05-10 21:48:15 +0000850 self.prop_overrides = set()
851 self.placeholder_values = {}
852 if placeholder_values:
853 self.placeholder_values = copy.deepcopy(placeholder_values)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000854
855 @staticmethod
856 def FromDictionary(name, build_props):
857 """Constructs an instance from a build prop dictionary."""
858
859 props = PartitionBuildProps("unknown", name)
860 props.build_props = build_props.copy()
861 return props
862
863 @staticmethod
Tianjie Xu9afb2212020-05-10 21:48:15 +0000864 def FromInputFile(input_file, name, placeholder_values=None):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000865 """Loads the build.prop file and builds the attributes."""
Yifan Hong10482a22021-01-07 14:38:41 -0800866
867 if name == "boot":
868 data = PartitionBuildProps._ReadBootPropFile(input_file)
869 else:
870 data = PartitionBuildProps._ReadPartitionPropFile(input_file, name)
871
872 props = PartitionBuildProps(input_file, name, placeholder_values)
873 props._LoadBuildProp(data)
874 return props
875
876 @staticmethod
877 def _ReadBootPropFile(input_file):
878 """
879 Read build.prop for boot image from input_file.
880 Return empty string if not found.
881 """
882 try:
883 boot_img = ExtractFromInputFile(input_file, 'IMAGES/boot.img')
884 except KeyError:
885 logger.warning('Failed to read IMAGES/boot.img')
886 return ''
887 prop_file = GetBootImageBuildProp(boot_img)
888 if prop_file is None:
889 return ''
890 with open(prop_file) as f:
891 return f.read().decode()
892
893 @staticmethod
894 def _ReadPartitionPropFile(input_file, name):
895 """
896 Read build.prop for name from input_file.
897 Return empty string if not found.
898 """
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000899 data = ''
900 for prop_file in ['{}/etc/build.prop'.format(name.upper()),
901 '{}/build.prop'.format(name.upper())]:
902 try:
903 data = ReadFromInputFile(input_file, prop_file)
904 break
905 except KeyError:
906 logger.warning('Failed to read %s', prop_file)
Yifan Hong10482a22021-01-07 14:38:41 -0800907 return data
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000908
Yifan Hong125d0b62020-09-24 17:07:03 -0700909 @staticmethod
910 def FromBuildPropFile(name, build_prop_file):
911 """Constructs an instance from a build prop file."""
912
913 props = PartitionBuildProps("unknown", name)
914 with open(build_prop_file) as f:
915 props._LoadBuildProp(f.read())
916 return props
917
Tianjie Xu9afb2212020-05-10 21:48:15 +0000918 def _LoadBuildProp(self, data):
919 for line in data.split('\n'):
920 line = line.strip()
921 if not line or line.startswith("#"):
922 continue
923 if line.startswith("import"):
924 overrides = self._ImportParser(line)
925 duplicates = self.prop_overrides.intersection(overrides.keys())
926 if duplicates:
927 raise ValueError('prop {} is overridden multiple times'.format(
928 ','.join(duplicates)))
929 self.prop_overrides = self.prop_overrides.union(overrides.keys())
930 self.build_props.update(overrides)
931 elif "=" in line:
932 name, value = line.split("=", 1)
933 if name in self.prop_overrides:
934 raise ValueError('prop {} is set again after overridden by import '
935 'statement'.format(name))
936 self.build_props[name] = value
937
938 def _ImportParser(self, line):
939 """Parses the build prop in a given import statement."""
940
941 tokens = line.split()
Kelvin Zhang0876c412020-06-23 15:06:58 -0400942 if tokens[0] != 'import' or (len(tokens) != 2 and len(tokens) != 3):
Tianjie Xu9afb2212020-05-10 21:48:15 +0000943 raise ValueError('Unrecognized import statement {}'.format(line))
Hongguang Chenb4702b72020-05-13 18:05:20 -0700944
945 if len(tokens) == 3:
946 logger.info("Import %s from %s, skip", tokens[2], tokens[1])
947 return {}
948
Tianjie Xu9afb2212020-05-10 21:48:15 +0000949 import_path = tokens[1]
950 if not re.match(r'^/{}/.*\.prop$'.format(self.partition), import_path):
951 raise ValueError('Unrecognized import path {}'.format(line))
952
953 # We only recognize a subset of import statement that the init process
954 # supports. And we can loose the restriction based on how the dynamic
955 # fingerprint is used in practice. The placeholder format should be
956 # ${placeholder}, and its value should be provided by the caller through
957 # the placeholder_values.
958 for prop, value in self.placeholder_values.items():
959 prop_place_holder = '${{{}}}'.format(prop)
960 if prop_place_holder in import_path:
961 import_path = import_path.replace(prop_place_holder, value)
962 if '$' in import_path:
963 logger.info('Unresolved place holder in import path %s', import_path)
964 return {}
965
966 import_path = import_path.replace('/{}'.format(self.partition),
967 self.partition.upper())
968 logger.info('Parsing build props override from %s', import_path)
969
970 lines = ReadFromInputFile(self.input_file, import_path).split('\n')
971 d = LoadDictionaryFromLines(lines)
972 return {key: val for key, val in d.items()
973 if key in self.props_allow_override}
974
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000975 def GetProp(self, prop):
976 return self.build_props.get(prop)
977
978
Tianjie Xucfa86222016-03-07 16:31:19 -0800979def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
980 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700981 class Partition(object):
Yifan Hong65afc072020-04-17 10:08:10 -0700982 def __init__(self, mount_point, fs_type, device, length, context, slotselect):
Dan Albert8b72aef2015-03-23 19:13:21 -0700983 self.mount_point = mount_point
984 self.fs_type = fs_type
985 self.device = device
986 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -0700987 self.context = context
Yifan Hong65afc072020-04-17 10:08:10 -0700988 self.slotselect = slotselect
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700989
990 try:
Tianjie Xucfa86222016-03-07 16:31:19 -0800991 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700992 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700993 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -0700994 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700995
Tao Baod1de6f32017-03-01 16:38:48 -0800996 assert fstab_version == 2
997
998 d = {}
999 for line in data.split("\n"):
1000 line = line.strip()
1001 if not line or line.startswith("#"):
1002 continue
1003
1004 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
1005 pieces = line.split()
1006 if len(pieces) != 5:
1007 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
1008
1009 # Ignore entries that are managed by vold.
1010 options = pieces[4]
1011 if "voldmanaged=" in options:
1012 continue
1013
1014 # It's a good line, parse it.
1015 length = 0
Yifan Hong65afc072020-04-17 10:08:10 -07001016 slotselect = False
Tao Baod1de6f32017-03-01 16:38:48 -08001017 options = options.split(",")
1018 for i in options:
1019 if i.startswith("length="):
1020 length = int(i[7:])
Yifan Hong65afc072020-04-17 10:08:10 -07001021 elif i == "slotselect":
1022 slotselect = True
Doug Zongker086cbb02011-02-17 15:54:20 -08001023 else:
Tao Baod1de6f32017-03-01 16:38:48 -08001024 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -07001025 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001026
Tao Baod1de6f32017-03-01 16:38:48 -08001027 mount_flags = pieces[3]
1028 # Honor the SELinux context if present.
1029 context = None
1030 for i in mount_flags.split(","):
1031 if i.startswith("context="):
1032 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -08001033
Tao Baod1de6f32017-03-01 16:38:48 -08001034 mount_point = pieces[1]
1035 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
Yifan Hong65afc072020-04-17 10:08:10 -07001036 device=pieces[0], length=length, context=context,
1037 slotselect=slotselect)
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001038
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001039 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001040 # system. Other areas assume system is always at "/system" so point /system
1041 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001042 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -08001043 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001044 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001045 return d
1046
1047
Tao Bao765668f2019-10-04 22:03:00 -07001048def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
1049 """Finds the path to recovery fstab and loads its contents."""
1050 # recovery fstab is only meaningful when installing an update via recovery
1051 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
Yifan Hong65afc072020-04-17 10:08:10 -07001052 if info_dict.get('ab_update') == 'true' and \
1053 info_dict.get("allow_non_ab") != "true":
Tao Bao765668f2019-10-04 22:03:00 -07001054 return None
1055
1056 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
1057 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
1058 # cases, since it may load the info_dict from an old build (e.g. when
1059 # generating incremental OTAs from that build).
1060 system_root_image = info_dict.get('system_root_image') == 'true'
1061 if info_dict.get('no_recovery') != 'true':
1062 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
1063 if isinstance(input_file, zipfile.ZipFile):
1064 if recovery_fstab_path not in input_file.namelist():
1065 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1066 else:
1067 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1068 if not os.path.exists(path):
1069 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1070 return LoadRecoveryFSTab(
1071 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1072 system_root_image)
1073
1074 if info_dict.get('recovery_as_boot') == 'true':
1075 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
1076 if isinstance(input_file, zipfile.ZipFile):
1077 if recovery_fstab_path not in input_file.namelist():
1078 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1079 else:
1080 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1081 if not os.path.exists(path):
1082 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1083 return LoadRecoveryFSTab(
1084 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1085 system_root_image)
1086
1087 return None
1088
1089
Doug Zongker37974732010-09-16 17:44:38 -07001090def DumpInfoDict(d):
1091 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -07001092 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -07001093
Dan Albert8b72aef2015-03-23 19:13:21 -07001094
Daniel Norman55417142019-11-25 16:04:36 -08001095def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001096 """Merges dynamic partition info variables.
1097
1098 Args:
1099 framework_dict: The dictionary of dynamic partition info variables from the
1100 partial framework target files.
1101 vendor_dict: The dictionary of dynamic partition info variables from the
1102 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001103
1104 Returns:
1105 The merged dynamic partition info dictionary.
1106 """
Daniel Normanb0c75912020-09-24 14:30:21 -07001107
1108 def uniq_concat(a, b):
1109 combined = set(a.split(" "))
1110 combined.update(set(b.split(" ")))
1111 combined = [item.strip() for item in combined if item.strip()]
1112 return " ".join(sorted(combined))
1113
1114 if (framework_dict.get("use_dynamic_partitions") !=
1115 "true") or (vendor_dict.get("use_dynamic_partitions") != "true"):
1116 raise ValueError("Both dictionaries must have use_dynamic_partitions=true")
1117
1118 merged_dict = {"use_dynamic_partitions": "true"}
1119
1120 merged_dict["dynamic_partition_list"] = uniq_concat(
1121 framework_dict.get("dynamic_partition_list", ""),
1122 vendor_dict.get("dynamic_partition_list", ""))
1123
1124 # Super block devices are defined by the vendor dict.
1125 if "super_block_devices" in vendor_dict:
1126 merged_dict["super_block_devices"] = vendor_dict["super_block_devices"]
1127 for block_device in merged_dict["super_block_devices"].split(" "):
1128 key = "super_%s_device_size" % block_device
1129 if key not in vendor_dict:
1130 raise ValueError("Vendor dict does not contain required key %s." % key)
1131 merged_dict[key] = vendor_dict[key]
1132
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001133 # Partition groups and group sizes are defined by the vendor dict because
1134 # these values may vary for each board that uses a shared system image.
1135 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001136 for partition_group in merged_dict["super_partition_groups"].split(" "):
1137 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -08001138 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001139 if key not in vendor_dict:
1140 raise ValueError("Vendor dict does not contain required key %s." % key)
1141 merged_dict[key] = vendor_dict[key]
1142
1143 # Set the partition group's partition list using a concatenation of the
1144 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -08001145 key = "super_%s_partition_list" % partition_group
Daniel Normanb0c75912020-09-24 14:30:21 -07001146 merged_dict[key] = uniq_concat(
1147 framework_dict.get(key, ""), vendor_dict.get(key, ""))
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +05301148
Daniel Normanb0c75912020-09-24 14:30:21 -07001149 # Various other flags should be copied from the vendor dict, if defined.
1150 for key in ("virtual_ab", "virtual_ab_retrofit", "lpmake",
1151 "super_metadata_device", "super_partition_error_limit",
1152 "super_partition_size"):
1153 if key in vendor_dict.keys():
1154 merged_dict[key] = vendor_dict[key]
1155
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001156 return merged_dict
1157
1158
Daniel Norman21c34f72020-11-11 17:25:50 -08001159def PartitionMapFromTargetFiles(target_files_dir):
1160 """Builds a map from partition -> path within an extracted target files directory."""
1161 # Keep possible_subdirs in sync with build/make/core/board_config.mk.
1162 possible_subdirs = {
1163 "system": ["SYSTEM"],
1164 "vendor": ["VENDOR", "SYSTEM/vendor"],
1165 "product": ["PRODUCT", "SYSTEM/product"],
1166 "system_ext": ["SYSTEM_EXT", "SYSTEM/system_ext"],
1167 "odm": ["ODM", "VENDOR/odm", "SYSTEM/vendor/odm"],
1168 "vendor_dlkm": [
1169 "VENDOR_DLKM", "VENDOR/vendor_dlkm", "SYSTEM/vendor/vendor_dlkm"
1170 ],
1171 "odm_dlkm": ["ODM_DLKM", "VENDOR/odm_dlkm", "SYSTEM/vendor/odm_dlkm"],
1172 }
1173 partition_map = {}
1174 for partition, subdirs in possible_subdirs.items():
1175 for subdir in subdirs:
1176 if os.path.exists(os.path.join(target_files_dir, subdir)):
1177 partition_map[partition] = subdir
1178 break
1179 return partition_map
1180
1181
Daniel Normand3351562020-10-29 12:33:11 -07001182def SharedUidPartitionViolations(uid_dict, partition_groups):
1183 """Checks for APK sharedUserIds that cross partition group boundaries.
1184
1185 This uses a single or merged build's shareduid_violation_modules.json
1186 output file, as generated by find_shareduid_violation.py or
1187 core/tasks/find-shareduid-violation.mk.
1188
1189 An error is defined as a sharedUserId that is found in a set of partitions
1190 that span more than one partition group.
1191
1192 Args:
1193 uid_dict: A dictionary created by using the standard json module to read a
1194 complete shareduid_violation_modules.json file.
1195 partition_groups: A list of groups, where each group is a list of
1196 partitions.
1197
1198 Returns:
1199 A list of error messages.
1200 """
1201 errors = []
1202 for uid, partitions in uid_dict.items():
1203 found_in_groups = [
1204 group for group in partition_groups
1205 if set(partitions.keys()) & set(group)
1206 ]
1207 if len(found_in_groups) > 1:
1208 errors.append(
1209 "APK sharedUserId \"%s\" found across partition groups in partitions \"%s\""
1210 % (uid, ",".join(sorted(partitions.keys()))))
1211 return errors
1212
1213
Daniel Norman21c34f72020-11-11 17:25:50 -08001214def RunHostInitVerifier(product_out, partition_map):
1215 """Runs host_init_verifier on the init rc files within partitions.
1216
1217 host_init_verifier searches the etc/init path within each partition.
1218
1219 Args:
1220 product_out: PRODUCT_OUT directory, containing partition directories.
1221 partition_map: A map of partition name -> relative path within product_out.
1222 """
1223 allowed_partitions = ("system", "system_ext", "product", "vendor", "odm")
1224 cmd = ["host_init_verifier"]
1225 for partition, path in partition_map.items():
1226 if partition not in allowed_partitions:
1227 raise ExternalError("Unable to call host_init_verifier for partition %s" %
1228 partition)
1229 cmd.extend(["--out_%s" % partition, os.path.join(product_out, path)])
1230 # Add --property-contexts if the file exists on the partition.
1231 property_contexts = "%s_property_contexts" % (
1232 "plat" if partition == "system" else partition)
1233 property_contexts_path = os.path.join(product_out, path, "etc", "selinux",
1234 property_contexts)
1235 if os.path.exists(property_contexts_path):
1236 cmd.append("--property-contexts=%s" % property_contexts_path)
1237 # Add the passwd file if the file exists on the partition.
1238 passwd_path = os.path.join(product_out, path, "etc", "passwd")
1239 if os.path.exists(passwd_path):
1240 cmd.extend(["-p", passwd_path])
1241 return RunAndCheckOutput(cmd)
1242
1243
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001244def AppendAVBSigningArgs(cmd, partition):
1245 """Append signing arguments for avbtool."""
1246 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
1247 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -07001248 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
1249 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1250 if os.path.exists(new_key_path):
1251 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001252 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
1253 if key_path and algorithm:
1254 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -07001255 avb_salt = OPTIONS.info_dict.get("avb_salt")
1256 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -07001257 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -07001258 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001259
1260
Tao Bao765668f2019-10-04 22:03:00 -07001261def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -07001262 """Returns the VBMeta arguments for partition.
1263
1264 It sets up the VBMeta argument by including the partition descriptor from the
1265 given 'image', or by configuring the partition as a chained partition.
1266
1267 Args:
1268 partition: The name of the partition (e.g. "system").
1269 image: The path to the partition image.
1270 info_dict: A dict returned by common.LoadInfoDict(). Will use
1271 OPTIONS.info_dict if None has been given.
1272
1273 Returns:
1274 A list of VBMeta arguments.
1275 """
1276 if info_dict is None:
1277 info_dict = OPTIONS.info_dict
1278
1279 # Check if chain partition is used.
1280 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +08001281 if not key_path:
1282 return ["--include_descriptors_from_image", image]
1283
1284 # For a non-A/B device, we don't chain /recovery nor include its descriptor
1285 # into vbmeta.img. The recovery image will be configured on an independent
1286 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
1287 # See details at
1288 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -07001289 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +08001290 return []
1291
1292 # Otherwise chain the partition into vbmeta.
1293 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
1294 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -07001295
1296
Tao Bao02a08592018-07-22 12:40:45 -07001297def GetAvbChainedPartitionArg(partition, info_dict, key=None):
1298 """Constructs and returns the arg to build or verify a chained partition.
1299
1300 Args:
1301 partition: The partition name.
1302 info_dict: The info dict to look up the key info and rollback index
1303 location.
1304 key: The key to be used for building or verifying the partition. Defaults to
1305 the key listed in info_dict.
1306
1307 Returns:
1308 A string of form "partition:rollback_index_location:key" that can be used to
1309 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -07001310 """
1311 if key is None:
1312 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -07001313 if key and not os.path.exists(key) and OPTIONS.search_path:
1314 new_key_path = os.path.join(OPTIONS.search_path, key)
1315 if os.path.exists(new_key_path):
1316 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -07001317 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -07001318 rollback_index_location = info_dict[
1319 "avb_" + partition + "_rollback_index_location"]
1320 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
1321
1322
Tianjie20dd8f22020-04-19 15:51:16 -07001323def ConstructAftlMakeImageCommands(output_image):
1324 """Constructs the command to append the aftl image to vbmeta."""
Tianjie Xueaed60c2020-03-12 00:33:28 -07001325
1326 # Ensure the other AFTL parameters are set as well.
Tianjie0f307452020-04-01 12:20:21 -07001327 assert OPTIONS.aftl_tool_path is not None, 'No aftl tool provided.'
Tianjie Xueaed60c2020-03-12 00:33:28 -07001328 assert OPTIONS.aftl_key_path is not None, 'No AFTL key provided.'
1329 assert OPTIONS.aftl_manufacturer_key_path is not None, \
1330 'No AFTL manufacturer key provided.'
1331
1332 vbmeta_image = MakeTempFile()
1333 os.rename(output_image, vbmeta_image)
1334 build_info = BuildInfo(OPTIONS.info_dict)
1335 version_incremental = build_info.GetBuildProp("ro.build.version.incremental")
Tianjie0f307452020-04-01 12:20:21 -07001336 aftltool = OPTIONS.aftl_tool_path
Tianjie20dd8f22020-04-19 15:51:16 -07001337 server_argument_list = [OPTIONS.aftl_server, OPTIONS.aftl_key_path]
Tianjie0f307452020-04-01 12:20:21 -07001338 aftl_cmd = [aftltool, "make_icp_from_vbmeta",
Tianjie Xueaed60c2020-03-12 00:33:28 -07001339 "--vbmeta_image_path", vbmeta_image,
1340 "--output", output_image,
1341 "--version_incremental", version_incremental,
Tianjie20dd8f22020-04-19 15:51:16 -07001342 "--transparency_log_servers", ','.join(server_argument_list),
Tianjie Xueaed60c2020-03-12 00:33:28 -07001343 "--manufacturer_key", OPTIONS.aftl_manufacturer_key_path,
1344 "--algorithm", "SHA256_RSA4096",
1345 "--padding", "4096"]
1346 if OPTIONS.aftl_signer_helper:
1347 aftl_cmd.extend(shlex.split(OPTIONS.aftl_signer_helper))
Tianjie20dd8f22020-04-19 15:51:16 -07001348 return aftl_cmd
1349
1350
1351def AddAftlInclusionProof(output_image):
1352 """Appends the aftl inclusion proof to the vbmeta image."""
1353
1354 aftl_cmd = ConstructAftlMakeImageCommands(output_image)
Tianjie Xueaed60c2020-03-12 00:33:28 -07001355 RunAndCheckOutput(aftl_cmd)
1356
1357 verify_cmd = ['aftltool', 'verify_image_icp', '--vbmeta_image_path',
1358 output_image, '--transparency_log_pub_keys',
1359 OPTIONS.aftl_key_path]
1360 RunAndCheckOutput(verify_cmd)
1361
1362
Daniel Norman276f0622019-07-26 14:13:51 -07001363def BuildVBMeta(image_path, partitions, name, needed_partitions):
1364 """Creates a VBMeta image.
1365
1366 It generates the requested VBMeta image. The requested image could be for
1367 top-level or chained VBMeta image, which is determined based on the name.
1368
1369 Args:
1370 image_path: The output path for the new VBMeta image.
1371 partitions: A dict that's keyed by partition names with image paths as
Hongguang Chenf23364d2020-04-27 18:36:36 -07001372 values. Only valid partition names are accepted, as partitions listed
1373 in common.AVB_PARTITIONS and custom partitions listed in
1374 OPTIONS.info_dict.get("avb_custom_images_partition_list")
Daniel Norman276f0622019-07-26 14:13:51 -07001375 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
1376 needed_partitions: Partitions whose descriptors should be included into the
1377 generated VBMeta image.
1378
1379 Raises:
1380 AssertionError: On invalid input args.
1381 """
1382 avbtool = OPTIONS.info_dict["avb_avbtool"]
1383 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
1384 AppendAVBSigningArgs(cmd, name)
1385
Hongguang Chenf23364d2020-04-27 18:36:36 -07001386 custom_partitions = OPTIONS.info_dict.get(
1387 "avb_custom_images_partition_list", "").strip().split()
1388
Daniel Norman276f0622019-07-26 14:13:51 -07001389 for partition, path in partitions.items():
1390 if partition not in needed_partitions:
1391 continue
1392 assert (partition in AVB_PARTITIONS or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001393 partition in AVB_VBMETA_PARTITIONS or
1394 partition in custom_partitions), \
Daniel Norman276f0622019-07-26 14:13:51 -07001395 'Unknown partition: {}'.format(partition)
1396 assert os.path.exists(path), \
1397 'Failed to find {} for {}'.format(path, partition)
1398 cmd.extend(GetAvbPartitionArg(partition, path))
1399
1400 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1401 if args and args.strip():
1402 split_args = shlex.split(args)
1403 for index, arg in enumerate(split_args[:-1]):
Ivan Lozanob021b2a2020-07-28 09:31:06 -04001404 # Check that the image file exists. Some images might be defined
Daniel Norman276f0622019-07-26 14:13:51 -07001405 # as a path relative to source tree, which may not be available at the
1406 # same location when running this script (we have the input target_files
1407 # zip only). For such cases, we additionally scan other locations (e.g.
1408 # IMAGES/, RADIO/, etc) before bailing out.
1409 if arg == '--include_descriptors_from_image':
Tianjie Xueaed60c2020-03-12 00:33:28 -07001410 chained_image = split_args[index + 1]
1411 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001412 continue
1413 found = False
1414 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1415 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001416 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001417 if os.path.exists(alt_path):
1418 split_args[index + 1] = alt_path
1419 found = True
1420 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001421 assert found, 'Failed to find {}'.format(chained_image)
Daniel Norman276f0622019-07-26 14:13:51 -07001422 cmd.extend(split_args)
1423
1424 RunAndCheckOutput(cmd)
1425
Tianjie Xueaed60c2020-03-12 00:33:28 -07001426 # Generate the AFTL inclusion proof.
Dan Austin52903642019-12-12 15:44:00 -08001427 if OPTIONS.aftl_server is not None:
Tianjie Xueaed60c2020-03-12 00:33:28 -07001428 AddAftlInclusionProof(image_path)
1429
Daniel Norman276f0622019-07-26 14:13:51 -07001430
J. Avila98cd4cc2020-06-10 20:09:10 +00001431def _MakeRamdisk(sourcedir, fs_config_file=None, lz4_ramdisks=False):
Steve Mucklee1b10862019-07-10 10:49:37 -07001432 ramdisk_img = tempfile.NamedTemporaryFile()
1433
1434 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1435 cmd = ["mkbootfs", "-f", fs_config_file,
1436 os.path.join(sourcedir, "RAMDISK")]
1437 else:
1438 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1439 p1 = Run(cmd, stdout=subprocess.PIPE)
J. Avila98cd4cc2020-06-10 20:09:10 +00001440 if lz4_ramdisks:
Kelvin Zhangcff4d762020-07-29 16:37:51 -04001441 p2 = Run(["lz4", "-l", "-12", "--favor-decSpeed"], stdin=p1.stdout,
J. Avila98cd4cc2020-06-10 20:09:10 +00001442 stdout=ramdisk_img.file.fileno())
1443 else:
1444 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
Steve Mucklee1b10862019-07-10 10:49:37 -07001445
1446 p2.wait()
1447 p1.wait()
1448 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
J. Avila98cd4cc2020-06-10 20:09:10 +00001449 assert p2.returncode == 0, "compression of %s ramdisk failed" % (sourcedir,)
Steve Mucklee1b10862019-07-10 10:49:37 -07001450
1451 return ramdisk_img
1452
1453
Steve Muckle9793cf62020-04-08 18:27:00 -07001454def _BuildBootableImage(image_name, sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001455 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001456 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001457
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001458 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001459 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1460 we are building a two-step special image (i.e. building a recovery image to
1461 be loaded into /boot in two-step OTAs).
1462
1463 Return the image data, or None if sourcedir does not appear to contains files
1464 for building the requested image.
1465 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001466
Yifan Hong63c5ca12020-10-08 11:54:02 -07001467 if info_dict is None:
1468 info_dict = OPTIONS.info_dict
1469
Steve Muckle9793cf62020-04-08 18:27:00 -07001470 # "boot" or "recovery", without extension.
1471 partition_name = os.path.basename(sourcedir).lower()
1472
Yifan Hong63c5ca12020-10-08 11:54:02 -07001473 kernel = None
Steve Muckle9793cf62020-04-08 18:27:00 -07001474 if partition_name == "recovery":
Yifan Hong63c5ca12020-10-08 11:54:02 -07001475 if info_dict.get("exclude_kernel_from_recovery_image") == "true":
1476 logger.info("Excluded kernel binary from recovery image.")
1477 else:
1478 kernel = "kernel"
Steve Muckle9793cf62020-04-08 18:27:00 -07001479 else:
1480 kernel = image_name.replace("boot", "kernel")
Kelvin Zhang0876c412020-06-23 15:06:58 -04001481 kernel = kernel.replace(".img", "")
Yifan Hong63c5ca12020-10-08 11:54:02 -07001482 if kernel and not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001483 return None
1484
1485 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001486 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001487
Doug Zongkereef39442009-04-02 12:14:19 -07001488 img = tempfile.NamedTemporaryFile()
1489
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001490 if has_ramdisk:
J. Avila98cd4cc2020-06-10 20:09:10 +00001491 use_lz4 = info_dict.get("lz4_ramdisks") == 'true'
1492 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file, lz4_ramdisks=use_lz4)
Doug Zongkereef39442009-04-02 12:14:19 -07001493
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001494 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1495 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1496
Yifan Hong63c5ca12020-10-08 11:54:02 -07001497 cmd = [mkbootimg]
1498 if kernel:
1499 cmd += ["--kernel", os.path.join(sourcedir, kernel)]
Doug Zongker38a649f2009-06-17 09:07:09 -07001500
Benoit Fradina45a8682014-07-14 21:00:43 +02001501 fn = os.path.join(sourcedir, "second")
1502 if os.access(fn, os.F_OK):
1503 cmd.append("--second")
1504 cmd.append(fn)
1505
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001506 fn = os.path.join(sourcedir, "dtb")
1507 if os.access(fn, os.F_OK):
1508 cmd.append("--dtb")
1509 cmd.append(fn)
1510
Doug Zongker171f1cd2009-06-15 22:36:37 -07001511 fn = os.path.join(sourcedir, "cmdline")
1512 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001513 cmd.append("--cmdline")
1514 cmd.append(open(fn).read().rstrip("\n"))
1515
1516 fn = os.path.join(sourcedir, "base")
1517 if os.access(fn, os.F_OK):
1518 cmd.append("--base")
1519 cmd.append(open(fn).read().rstrip("\n"))
1520
Ying Wang4de6b5b2010-08-25 14:29:34 -07001521 fn = os.path.join(sourcedir, "pagesize")
1522 if os.access(fn, os.F_OK):
1523 cmd.append("--pagesize")
1524 cmd.append(open(fn).read().rstrip("\n"))
1525
Steve Mucklef84668e2020-03-16 19:13:46 -07001526 if partition_name == "recovery":
1527 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddyd8e24ee2020-05-04 19:40:16 +05301528 if not args:
1529 # Fall back to "mkbootimg_args" for recovery image
1530 # in case "recovery_mkbootimg_args" is not set.
1531 args = info_dict.get("mkbootimg_args")
Steve Mucklef84668e2020-03-16 19:13:46 -07001532 else:
1533 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001534 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001535 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001536
Tao Bao76def242017-11-21 09:25:31 -08001537 args = info_dict.get("mkbootimg_version_args")
Sami Tolvanen3303d902016-03-15 16:49:30 +00001538 if args and args.strip():
1539 cmd.extend(shlex.split(args))
1540
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001541 if has_ramdisk:
1542 cmd.extend(["--ramdisk", ramdisk_img.name])
1543
Tao Baod95e9fd2015-03-29 23:07:41 -07001544 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001545 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001546 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001547 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001548 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001549 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001550
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001551 if partition_name == "recovery":
1552 if info_dict.get("include_recovery_dtbo") == "true":
1553 fn = os.path.join(sourcedir, "recovery_dtbo")
1554 cmd.extend(["--recovery_dtbo", fn])
1555 if info_dict.get("include_recovery_acpio") == "true":
1556 fn = os.path.join(sourcedir, "recovery_acpio")
1557 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001558
Tao Bao986ee862018-10-04 15:46:16 -07001559 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001560
Tao Bao76def242017-11-21 09:25:31 -08001561 if (info_dict.get("boot_signer") == "true" and
1562 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001563 # Hard-code the path as "/boot" for two-step special recovery image (which
1564 # will be loaded into /boot during the two-step OTA).
1565 if two_step_image:
1566 path = "/boot"
1567 else:
Tao Baobf70c3182017-07-11 17:27:55 -07001568 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001569 cmd = [OPTIONS.boot_signer_path]
1570 cmd.extend(OPTIONS.boot_signer_args)
1571 cmd.extend([path, img.name,
1572 info_dict["verity_key"] + ".pk8",
1573 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001574 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001575
Tao Baod95e9fd2015-03-29 23:07:41 -07001576 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001577 elif info_dict.get("vboot"):
Tao Baobf70c3182017-07-11 17:27:55 -07001578 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001579 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001580 # We have switched from the prebuilt futility binary to using the tool
1581 # (futility-host) built from the source. Override the setting in the old
1582 # TF.zip.
1583 futility = info_dict["futility"]
1584 if futility.startswith("prebuilts/"):
1585 futility = "futility-host"
1586 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001587 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001588 info_dict["vboot_key"] + ".vbprivk",
1589 info_dict["vboot_subkey"] + ".vbprivk",
1590 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001591 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001592 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001593
Tao Baof3282b42015-04-01 11:21:55 -07001594 # Clean up the temp files.
1595 img_unsigned.close()
1596 img_keyblock.close()
1597
David Zeuthen8fecb282017-12-01 16:24:01 -05001598 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001599 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001600 avbtool = info_dict["avb_avbtool"]
Steve Muckle903a1ca2020-05-07 17:32:10 -07001601 if partition_name == "recovery":
1602 part_size = info_dict["recovery_size"]
1603 else:
Kelvin Zhang0876c412020-06-23 15:06:58 -04001604 part_size = info_dict[image_name.replace(".img", "_size")]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001605 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c3182017-07-11 17:27:55 -07001606 "--partition_size", str(part_size), "--partition_name",
1607 partition_name]
1608 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001609 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001610 if args and args.strip():
1611 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001612 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001613
1614 img.seek(os.SEEK_SET, 0)
1615 data = img.read()
1616
1617 if has_ramdisk:
1618 ramdisk_img.close()
1619 img.close()
1620
1621 return data
1622
1623
Doug Zongkerd5131602012-08-02 14:46:42 -07001624def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001625 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001626 """Return a File object with the desired bootable image.
1627
1628 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1629 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1630 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001631
Doug Zongker55d93282011-01-25 17:03:34 -08001632 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1633 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001634 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001635 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001636
1637 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1638 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001639 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001640 return File.FromLocalFile(name, prebuilt_path)
1641
Tao Bao32fcdab2018-10-12 10:30:39 -07001642 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001643
1644 if info_dict is None:
1645 info_dict = OPTIONS.info_dict
1646
1647 # With system_root_image == "true", we don't pack ramdisk into the boot image.
Daniel Rosenberg40ef35b2015-11-10 19:21:34 -08001648 # Unless "recovery_as_boot" is specified, in which case we carry the ramdisk
1649 # for recovery.
1650 has_ramdisk = (info_dict.get("system_root_image") != "true" or
1651 prebuilt_name != "boot.img" or
1652 info_dict.get("recovery_as_boot") == "true")
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001653
Doug Zongker6f1d0312014-08-22 08:07:12 -07001654 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07001655 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001656 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001657 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001658 if data:
1659 return File(name, data)
1660 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001661
Doug Zongkereef39442009-04-02 12:14:19 -07001662
Steve Mucklee1b10862019-07-10 10:49:37 -07001663def _BuildVendorBootImage(sourcedir, info_dict=None):
1664 """Build a vendor boot image from the specified sourcedir.
1665
1666 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1667 turn them into a vendor boot image.
1668
1669 Return the image data, or None if sourcedir does not appear to contains files
1670 for building the requested image.
1671 """
1672
1673 if info_dict is None:
1674 info_dict = OPTIONS.info_dict
1675
1676 img = tempfile.NamedTemporaryFile()
1677
J. Avila98cd4cc2020-06-10 20:09:10 +00001678 use_lz4 = info_dict.get("lz4_ramdisks") == 'true'
1679 ramdisk_img = _MakeRamdisk(sourcedir, lz4_ramdisks=use_lz4)
Steve Mucklee1b10862019-07-10 10:49:37 -07001680
1681 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1682 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1683
1684 cmd = [mkbootimg]
1685
1686 fn = os.path.join(sourcedir, "dtb")
1687 if os.access(fn, os.F_OK):
1688 cmd.append("--dtb")
1689 cmd.append(fn)
1690
1691 fn = os.path.join(sourcedir, "vendor_cmdline")
1692 if os.access(fn, os.F_OK):
1693 cmd.append("--vendor_cmdline")
1694 cmd.append(open(fn).read().rstrip("\n"))
1695
1696 fn = os.path.join(sourcedir, "base")
1697 if os.access(fn, os.F_OK):
1698 cmd.append("--base")
1699 cmd.append(open(fn).read().rstrip("\n"))
1700
1701 fn = os.path.join(sourcedir, "pagesize")
1702 if os.access(fn, os.F_OK):
1703 cmd.append("--pagesize")
1704 cmd.append(open(fn).read().rstrip("\n"))
1705
1706 args = info_dict.get("mkbootimg_args")
1707 if args and args.strip():
1708 cmd.extend(shlex.split(args))
1709
1710 args = info_dict.get("mkbootimg_version_args")
1711 if args and args.strip():
1712 cmd.extend(shlex.split(args))
1713
1714 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1715 cmd.extend(["--vendor_boot", img.name])
1716
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001717 ramdisk_fragment_imgs = []
1718 fn = os.path.join(sourcedir, "vendor_ramdisk_fragments")
1719 if os.access(fn, os.F_OK):
1720 ramdisk_fragments = shlex.split(open(fn).read().rstrip("\n"))
1721 for ramdisk_fragment in ramdisk_fragments:
1722 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment, "mkbootimg_args")
1723 cmd.extend(shlex.split(open(fn).read().rstrip("\n")))
1724 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment, "prebuilt_ramdisk")
1725 # Use prebuilt image if found, else create ramdisk from supplied files.
1726 if os.access(fn, os.F_OK):
1727 ramdisk_fragment_pathname = fn
1728 else:
1729 ramdisk_fragment_root = os.path.join(sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment)
1730 ramdisk_fragment_img = _MakeRamdisk(ramdisk_fragment_root, lz4_ramdisks=use_lz4)
1731 ramdisk_fragment_imgs.append(ramdisk_fragment_img)
1732 ramdisk_fragment_pathname = ramdisk_fragment_img.name
1733 cmd.extend(["--vendor_ramdisk_fragment", ramdisk_fragment_pathname])
1734
Steve Mucklee1b10862019-07-10 10:49:37 -07001735 RunAndCheckOutput(cmd)
1736
1737 # AVB: if enabled, calculate and add hash.
1738 if info_dict.get("avb_enable") == "true":
1739 avbtool = info_dict["avb_avbtool"]
1740 part_size = info_dict["vendor_boot_size"]
1741 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Donghoon Yu92420db2019-11-21 14:20:17 +09001742 "--partition_size", str(part_size), "--partition_name", "vendor_boot"]
Steve Mucklee1b10862019-07-10 10:49:37 -07001743 AppendAVBSigningArgs(cmd, "vendor_boot")
1744 args = info_dict.get("avb_vendor_boot_add_hash_footer_args")
1745 if args and args.strip():
1746 cmd.extend(shlex.split(args))
1747 RunAndCheckOutput(cmd)
1748
1749 img.seek(os.SEEK_SET, 0)
1750 data = img.read()
1751
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001752 for f in ramdisk_fragment_imgs:
1753 f.close()
Steve Mucklee1b10862019-07-10 10:49:37 -07001754 ramdisk_img.close()
1755 img.close()
1756
1757 return data
1758
1759
1760def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1761 info_dict=None):
1762 """Return a File object with the desired vendor boot image.
1763
1764 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1765 the source files in 'unpack_dir'/'tree_subdir'."""
1766
1767 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1768 if os.path.exists(prebuilt_path):
1769 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1770 return File.FromLocalFile(name, prebuilt_path)
1771
1772 logger.info("building image from target_files %s...", tree_subdir)
1773
1774 if info_dict is None:
1775 info_dict = OPTIONS.info_dict
1776
Kelvin Zhang0876c412020-06-23 15:06:58 -04001777 data = _BuildVendorBootImage(
1778 os.path.join(unpack_dir, tree_subdir), info_dict)
Steve Mucklee1b10862019-07-10 10:49:37 -07001779 if data:
1780 return File(name, data)
1781 return None
1782
1783
Narayan Kamatha07bf042017-08-14 14:49:21 +01001784def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08001785 """Gunzips the given gzip compressed file to a given output file."""
1786 with gzip.open(in_filename, "rb") as in_file, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04001787 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01001788 shutil.copyfileobj(in_file, out_file)
1789
1790
Tao Bao0ff15de2019-03-20 11:26:06 -07001791def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001792 """Unzips the archive to the given directory.
1793
1794 Args:
1795 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001796 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07001797 patterns: Files to unzip from the archive. If omitted, will unzip the entire
1798 archvie. Non-matching patterns will be filtered out. If there's no match
1799 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001800 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001801 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07001802 if patterns is not None:
1803 # Filter out non-matching patterns. unzip will complain otherwise.
Kelvin Zhang928c2342020-09-22 16:15:57 -04001804 with zipfile.ZipFile(filename, allowZip64=True) as input_zip:
Tao Bao0ff15de2019-03-20 11:26:06 -07001805 names = input_zip.namelist()
1806 filtered = [
1807 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
1808
1809 # There isn't any matching files. Don't unzip anything.
1810 if not filtered:
1811 return
1812 cmd.extend(filtered)
1813
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001814 RunAndCheckOutput(cmd)
1815
1816
Doug Zongker75f17362009-12-08 13:46:44 -08001817def UnzipTemp(filename, pattern=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08001818 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08001819
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001820 Args:
1821 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
1822 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
1823
1824 pattern: Files to unzip from the archive. If omitted, will unzip the entire
1825 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08001826
Tao Bao1c830bf2017-12-25 10:43:47 -08001827 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08001828 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08001829 """
Doug Zongkereef39442009-04-02 12:14:19 -07001830
Tao Bao1c830bf2017-12-25 10:43:47 -08001831 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08001832 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
1833 if m:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001834 UnzipToDir(m.group(1), tmp, pattern)
1835 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001836 filename = m.group(1)
1837 else:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001838 UnzipToDir(filename, tmp, pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001839
Tao Baodba59ee2018-01-09 13:21:02 -08001840 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07001841
1842
Yifan Hong8a66a712019-04-04 15:37:57 -07001843def GetUserImage(which, tmpdir, input_zip,
1844 info_dict=None,
1845 allow_shared_blocks=None,
1846 hashtree_info_generator=None,
1847 reset_file_map=False):
1848 """Returns an Image object suitable for passing to BlockImageDiff.
1849
1850 This function loads the specified image from the given path. If the specified
1851 image is sparse, it also performs additional processing for OTA purpose. For
1852 example, it always adds block 0 to clobbered blocks list. It also detects
1853 files that cannot be reconstructed from the block list, for whom we should
1854 avoid applying imgdiff.
1855
1856 Args:
1857 which: The partition name.
1858 tmpdir: The directory that contains the prebuilt image and block map file.
1859 input_zip: The target-files ZIP archive.
1860 info_dict: The dict to be looked up for relevant info.
1861 allow_shared_blocks: If image is sparse, whether having shared blocks is
1862 allowed. If none, it is looked up from info_dict.
1863 hashtree_info_generator: If present and image is sparse, generates the
1864 hashtree_info for this sparse image.
1865 reset_file_map: If true and image is sparse, reset file map before returning
1866 the image.
1867 Returns:
1868 A Image object. If it is a sparse image and reset_file_map is False, the
1869 image will have file_map info loaded.
1870 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07001871 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07001872 info_dict = LoadInfoDict(input_zip)
1873
1874 is_sparse = info_dict.get("extfs_sparse_flag")
1875
1876 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
1877 # shared blocks (i.e. some blocks will show up in multiple files' block
1878 # list). We can only allocate such shared blocks to the first "owner", and
1879 # disable imgdiff for all later occurrences.
1880 if allow_shared_blocks is None:
1881 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
1882
1883 if is_sparse:
1884 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1885 hashtree_info_generator)
1886 if reset_file_map:
1887 img.ResetFileMap()
1888 return img
Kelvin Zhang0876c412020-06-23 15:06:58 -04001889 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
Yifan Hong8a66a712019-04-04 15:37:57 -07001890
1891
1892def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
1893 """Returns a Image object suitable for passing to BlockImageDiff.
1894
1895 This function loads the specified non-sparse image from the given path.
1896
1897 Args:
1898 which: The partition name.
1899 tmpdir: The directory that contains the prebuilt image and block map file.
1900 Returns:
1901 A Image object.
1902 """
1903 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1904 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1905
1906 # The image and map files must have been created prior to calling
1907 # ota_from_target_files.py (since LMP).
1908 assert os.path.exists(path) and os.path.exists(mappath)
1909
Tianjie Xu41976c72019-07-03 13:57:01 -07001910 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
1911
Yifan Hong8a66a712019-04-04 15:37:57 -07001912
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001913def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1914 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08001915 """Returns a SparseImage object suitable for passing to BlockImageDiff.
1916
1917 This function loads the specified sparse image from the given path, and
1918 performs additional processing for OTA purpose. For example, it always adds
1919 block 0 to clobbered blocks list. It also detects files that cannot be
1920 reconstructed from the block list, for whom we should avoid applying imgdiff.
1921
1922 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07001923 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08001924 tmpdir: The directory that contains the prebuilt image and block map file.
1925 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08001926 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001927 hashtree_info_generator: If present, generates the hashtree_info for this
1928 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08001929 Returns:
1930 A SparseImage object, with file_map info loaded.
1931 """
Tao Baoc765cca2018-01-31 17:32:40 -08001932 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1933 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1934
1935 # The image and map files must have been created prior to calling
1936 # ota_from_target_files.py (since LMP).
1937 assert os.path.exists(path) and os.path.exists(mappath)
1938
1939 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
1940 # it to clobbered_blocks so that it will be written to the target
1941 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
1942 clobbered_blocks = "0"
1943
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001944 image = sparse_img.SparseImage(
1945 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
1946 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08001947
1948 # block.map may contain less blocks, because mke2fs may skip allocating blocks
1949 # if they contain all zeros. We can't reconstruct such a file from its block
1950 # list. Tag such entries accordingly. (Bug: 65213616)
1951 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08001952 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07001953 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08001954 continue
1955
Tom Cherryd14b8952018-08-09 14:26:00 -07001956 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
1957 # filename listed in system.map may contain an additional leading slash
1958 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
1959 # results.
Tao Baoda30cfa2017-12-01 16:19:46 -08001960 arcname = entry.replace(which, which.upper(), 1).lstrip('/')
Tao Baod3554e62018-07-10 15:31:22 -07001961
Tom Cherryd14b8952018-08-09 14:26:00 -07001962 # Special handling another case, where files not under /system
1963 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
Tao Baod3554e62018-07-10 15:31:22 -07001964 if which == 'system' and not arcname.startswith('SYSTEM'):
1965 arcname = 'ROOT/' + arcname
1966
1967 assert arcname in input_zip.namelist(), \
1968 "Failed to find the ZIP entry for {}".format(entry)
1969
Tao Baoc765cca2018-01-31 17:32:40 -08001970 info = input_zip.getinfo(arcname)
1971 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08001972
1973 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08001974 # image, check the original block list to determine its completeness. Note
1975 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08001976 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08001977 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08001978
Tao Baoc765cca2018-01-31 17:32:40 -08001979 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
1980 ranges.extra['incomplete'] = True
1981
1982 return image
1983
1984
Doug Zongkereef39442009-04-02 12:14:19 -07001985def GetKeyPasswords(keylist):
1986 """Given a list of keys, prompt the user to enter passwords for
1987 those which require them. Return a {key: password} dict. password
1988 will be None if the key has no password."""
1989
Doug Zongker8ce7c252009-05-22 13:34:54 -07001990 no_passwords = []
1991 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07001992 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07001993 devnull = open("/dev/null", "w+b")
1994 for k in sorted(keylist):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001995 # We don't need a password for things that aren't really keys.
1996 if k in SPECIAL_CERT_STRINGS:
Doug Zongker8ce7c252009-05-22 13:34:54 -07001997 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07001998 continue
1999
T.R. Fullhart37e10522013-03-18 10:31:26 -07002000 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07002001 "-inform", "DER", "-nocrypt"],
2002 stdin=devnull.fileno(),
2003 stdout=devnull.fileno(),
2004 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07002005 p.communicate()
2006 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002007 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07002008 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002009 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002010 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
2011 "-inform", "DER", "-passin", "pass:"],
2012 stdin=devnull.fileno(),
2013 stdout=devnull.fileno(),
2014 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07002015 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07002016 if p.returncode == 0:
2017 # Encrypted key with empty string as password.
2018 key_passwords[k] = ''
2019 elif stderr.startswith('Error decrypting key'):
2020 # Definitely encrypted key.
2021 # It would have said "Error reading key" if it didn't parse correctly.
2022 need_passwords.append(k)
2023 else:
2024 # Potentially, a type of key that openssl doesn't understand.
2025 # We'll let the routines in signapk.jar handle it.
2026 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002027 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07002028
T.R. Fullhart37e10522013-03-18 10:31:26 -07002029 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08002030 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07002031 return key_passwords
2032
2033
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002034def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07002035 """Gets the minSdkVersion declared in the APK.
2036
changho.shin0f125362019-07-08 10:59:00 +09002037 It calls 'aapt2' to query the embedded minSdkVersion from the given APK file.
Tao Baof47bf0f2018-03-21 23:28:51 -07002038 This can be both a decimal number (API Level) or a codename.
2039
2040 Args:
2041 apk_name: The APK filename.
2042
2043 Returns:
2044 The parsed SDK version string.
2045
2046 Raises:
2047 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002048 """
Tao Baof47bf0f2018-03-21 23:28:51 -07002049 proc = Run(
changho.shin0f125362019-07-08 10:59:00 +09002050 ["aapt2", "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07002051 stderr=subprocess.PIPE)
2052 stdoutdata, stderrdata = proc.communicate()
2053 if proc.returncode != 0:
2054 raise ExternalError(
changho.shin0f125362019-07-08 10:59:00 +09002055 "Failed to obtain minSdkVersion: aapt2 return code {}:\n{}\n{}".format(
Tao Baof47bf0f2018-03-21 23:28:51 -07002056 proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002057
Tao Baof47bf0f2018-03-21 23:28:51 -07002058 for line in stdoutdata.split("\n"):
2059 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002060 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
2061 if m:
2062 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09002063 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002064
2065
2066def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07002067 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002068
Tao Baof47bf0f2018-03-21 23:28:51 -07002069 If minSdkVersion is set to a codename, it is translated to a number using the
2070 provided map.
2071
2072 Args:
2073 apk_name: The APK filename.
2074
2075 Returns:
2076 The parsed SDK version number.
2077
2078 Raises:
2079 ExternalError: On failing to get the min SDK version number.
2080 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002081 version = GetMinSdkVersion(apk_name)
2082 try:
2083 return int(version)
2084 except ValueError:
2085 # Not a decimal number. Codename?
2086 if version in codename_to_api_level_map:
2087 return codename_to_api_level_map[version]
Kelvin Zhang0876c412020-06-23 15:06:58 -04002088 raise ExternalError(
2089 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
2090 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002091
2092
2093def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07002094 codename_to_api_level_map=None, whole_file=False,
2095 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07002096 """Sign the input_name zip/jar/apk, producing output_name. Use the
2097 given key and password (the latter may be None if the key does not
2098 have a password.
2099
Doug Zongker951495f2009-08-14 12:44:19 -07002100 If whole_file is true, use the "-w" option to SignApk to embed a
2101 signature that covers the whole file in the archive comment of the
2102 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002103
2104 min_api_level is the API Level (int) of the oldest platform this file may end
2105 up on. If not specified for an APK, the API Level is obtained by interpreting
2106 the minSdkVersion attribute of the APK's AndroidManifest.xml.
2107
2108 codename_to_api_level_map is needed to translate the codename which may be
2109 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07002110
2111 Caller may optionally specify extra args to be passed to SignApk, which
2112 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07002113 """
Tao Bao76def242017-11-21 09:25:31 -08002114 if codename_to_api_level_map is None:
2115 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07002116 if extra_signapk_args is None:
2117 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07002118
Alex Klyubin9667b182015-12-10 13:38:50 -08002119 java_library_path = os.path.join(
2120 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2121
Tao Baoe95540e2016-11-08 12:08:53 -08002122 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2123 ["-Djava.library.path=" + java_library_path,
2124 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07002125 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07002126 if whole_file:
2127 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002128
2129 min_sdk_version = min_api_level
2130 if min_sdk_version is None:
2131 if not whole_file:
2132 min_sdk_version = GetMinSdkVersionInt(
2133 input_name, codename_to_api_level_map)
2134 if min_sdk_version is not None:
2135 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
2136
T.R. Fullhart37e10522013-03-18 10:31:26 -07002137 cmd.extend([key + OPTIONS.public_key_suffix,
2138 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08002139 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07002140
Tao Bao73dd4f42018-10-04 16:25:33 -07002141 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07002142 if password is not None:
2143 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07002144 stdoutdata, _ = proc.communicate(password)
2145 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07002146 raise ExternalError(
2147 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07002148 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07002149
Doug Zongkereef39442009-04-02 12:14:19 -07002150
Doug Zongker37974732010-09-16 17:44:38 -07002151def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08002152 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07002153
Tao Bao9dd909e2017-11-14 11:27:32 -08002154 For non-AVB images, raise exception if the data is too big. Print a warning
2155 if the data is nearing the maximum size.
2156
2157 For AVB images, the actual image size should be identical to the limit.
2158
2159 Args:
2160 data: A string that contains all the data for the partition.
2161 target: The partition name. The ".img" suffix is optional.
2162 info_dict: The dict to be looked up for relevant info.
2163 """
Dan Albert8b72aef2015-03-23 19:13:21 -07002164 if target.endswith(".img"):
2165 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002166 mount_point = "/" + target
2167
Ying Wangf8824af2014-06-03 14:07:27 -07002168 fs_type = None
2169 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002170 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07002171 if mount_point == "/userdata":
2172 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002173 p = info_dict["fstab"][mount_point]
2174 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08002175 device = p.device
2176 if "/" in device:
2177 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08002178 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07002179 if not fs_type or not limit:
2180 return
Doug Zongkereef39442009-04-02 12:14:19 -07002181
Andrew Boie0f9aec82012-02-14 09:32:52 -08002182 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08002183 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
2184 # path.
2185 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
2186 if size != limit:
2187 raise ExternalError(
2188 "Mismatching image size for %s: expected %d actual %d" % (
2189 target, limit, size))
2190 else:
2191 pct = float(size) * 100.0 / limit
2192 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
2193 if pct >= 99.0:
2194 raise ExternalError(msg)
Kelvin Zhang0876c412020-06-23 15:06:58 -04002195
2196 if pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002197 logger.warning("\n WARNING: %s\n", msg)
2198 else:
2199 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07002200
2201
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002202def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08002203 """Parses the APK certs info from a given target-files zip.
2204
2205 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
2206 tuple with the following elements: (1) a dictionary that maps packages to
2207 certs (based on the "certificate" and "private_key" attributes in the file;
2208 (2) a string representing the extension of compressed APKs in the target files
2209 (e.g ".gz", ".bro").
2210
2211 Args:
2212 tf_zip: The input target_files ZipFile (already open).
2213
2214 Returns:
2215 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
2216 the extension string of compressed APKs (e.g. ".gz"), or None if there's
2217 no compressed APKs.
2218 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002219 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01002220 compressed_extension = None
2221
Tao Bao0f990332017-09-08 19:02:54 -07002222 # META/apkcerts.txt contains the info for _all_ the packages known at build
2223 # time. Filter out the ones that are not installed.
2224 installed_files = set()
2225 for name in tf_zip.namelist():
2226 basename = os.path.basename(name)
2227 if basename:
2228 installed_files.add(basename)
2229
Tao Baoda30cfa2017-12-01 16:19:46 -08002230 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002231 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002232 if not line:
2233 continue
Tao Bao818ddf52018-01-05 11:17:34 -08002234 m = re.match(
2235 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07002236 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
2237 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08002238 line)
2239 if not m:
2240 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01002241
Tao Bao818ddf52018-01-05 11:17:34 -08002242 matches = m.groupdict()
2243 cert = matches["CERT"]
2244 privkey = matches["PRIVKEY"]
2245 name = matches["NAME"]
2246 this_compressed_extension = matches["COMPRESSED"]
2247
2248 public_key_suffix_len = len(OPTIONS.public_key_suffix)
2249 private_key_suffix_len = len(OPTIONS.private_key_suffix)
2250 if cert in SPECIAL_CERT_STRINGS and not privkey:
2251 certmap[name] = cert
2252 elif (cert.endswith(OPTIONS.public_key_suffix) and
2253 privkey.endswith(OPTIONS.private_key_suffix) and
2254 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
2255 certmap[name] = cert[:-public_key_suffix_len]
2256 else:
2257 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
2258
2259 if not this_compressed_extension:
2260 continue
2261
2262 # Only count the installed files.
2263 filename = name + '.' + this_compressed_extension
2264 if filename not in installed_files:
2265 continue
2266
2267 # Make sure that all the values in the compression map have the same
2268 # extension. We don't support multiple compression methods in the same
2269 # system image.
2270 if compressed_extension:
2271 if this_compressed_extension != compressed_extension:
2272 raise ValueError(
2273 "Multiple compressed extensions: {} vs {}".format(
2274 compressed_extension, this_compressed_extension))
2275 else:
2276 compressed_extension = this_compressed_extension
2277
2278 return (certmap,
2279 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002280
2281
Doug Zongkereef39442009-04-02 12:14:19 -07002282COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07002283Global options
2284
2285 -p (--path) <dir>
2286 Prepend <dir>/bin to the list of places to search for binaries run by this
2287 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07002288
Doug Zongker05d3dea2009-06-22 11:32:31 -07002289 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07002290 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07002291
Tao Bao30df8b42018-04-23 15:32:53 -07002292 -x (--extra) <key=value>
2293 Add a key/value pair to the 'extras' dict, which device-specific extension
2294 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08002295
Doug Zongkereef39442009-04-02 12:14:19 -07002296 -v (--verbose)
2297 Show command lines being executed.
2298
2299 -h (--help)
2300 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07002301
2302 --logfile <file>
2303 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07002304"""
2305
Kelvin Zhang0876c412020-06-23 15:06:58 -04002306
Doug Zongkereef39442009-04-02 12:14:19 -07002307def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08002308 print(docstring.rstrip("\n"))
2309 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07002310
2311
2312def ParseOptions(argv,
2313 docstring,
2314 extra_opts="", extra_long_opts=(),
2315 extra_option_handler=None):
2316 """Parse the options in argv and return any arguments that aren't
2317 flags. docstring is the calling module's docstring, to be displayed
2318 for errors and -h. extra_opts and extra_long_opts are for flags
2319 defined by the caller, which are processed by passing them to
2320 extra_option_handler."""
2321
2322 try:
2323 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08002324 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08002325 ["help", "verbose", "path=", "signapk_path=",
2326 "signapk_shared_library_path=", "extra_signapk_args=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08002327 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07002328 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
2329 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Tianjie0f307452020-04-01 12:20:21 -07002330 "extra=", "logfile=", "aftl_tool_path=", "aftl_server=",
2331 "aftl_key_path=", "aftl_manufacturer_key_path=",
2332 "aftl_signer_helper="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07002333 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07002334 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08002335 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07002336 sys.exit(2)
2337
Doug Zongkereef39442009-04-02 12:14:19 -07002338 for o, a in opts:
2339 if o in ("-h", "--help"):
2340 Usage(docstring)
2341 sys.exit()
2342 elif o in ("-v", "--verbose"):
2343 OPTIONS.verbose = True
2344 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07002345 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002346 elif o in ("--signapk_path",):
2347 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08002348 elif o in ("--signapk_shared_library_path",):
2349 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002350 elif o in ("--extra_signapk_args",):
2351 OPTIONS.extra_signapk_args = shlex.split(a)
2352 elif o in ("--java_path",):
2353 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07002354 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08002355 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08002356 elif o in ("--android_jar_path",):
2357 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002358 elif o in ("--public_key_suffix",):
2359 OPTIONS.public_key_suffix = a
2360 elif o in ("--private_key_suffix",):
2361 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08002362 elif o in ("--boot_signer_path",):
2363 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07002364 elif o in ("--boot_signer_args",):
2365 OPTIONS.boot_signer_args = shlex.split(a)
2366 elif o in ("--verity_signer_path",):
2367 OPTIONS.verity_signer_path = a
2368 elif o in ("--verity_signer_args",):
2369 OPTIONS.verity_signer_args = shlex.split(a)
Tianjie0f307452020-04-01 12:20:21 -07002370 elif o in ("--aftl_tool_path",):
2371 OPTIONS.aftl_tool_path = a
Dan Austin52903642019-12-12 15:44:00 -08002372 elif o in ("--aftl_server",):
2373 OPTIONS.aftl_server = a
2374 elif o in ("--aftl_key_path",):
2375 OPTIONS.aftl_key_path = a
2376 elif o in ("--aftl_manufacturer_key_path",):
2377 OPTIONS.aftl_manufacturer_key_path = a
2378 elif o in ("--aftl_signer_helper",):
2379 OPTIONS.aftl_signer_helper = a
Doug Zongker05d3dea2009-06-22 11:32:31 -07002380 elif o in ("-s", "--device_specific"):
2381 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08002382 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08002383 key, value = a.split("=", 1)
2384 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07002385 elif o in ("--logfile",):
2386 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07002387 else:
2388 if extra_option_handler is None or not extra_option_handler(o, a):
2389 assert False, "unknown option \"%s\"" % (o,)
2390
Doug Zongker85448772014-09-09 14:59:20 -07002391 if OPTIONS.search_path:
2392 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
2393 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07002394
2395 return args
2396
2397
Tao Bao4c851b12016-09-19 13:54:38 -07002398def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07002399 """Make a temp file and add it to the list of things to be deleted
2400 when Cleanup() is called. Return the filename."""
2401 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
2402 os.close(fd)
2403 OPTIONS.tempfiles.append(fn)
2404 return fn
2405
2406
Tao Bao1c830bf2017-12-25 10:43:47 -08002407def MakeTempDir(prefix='tmp', suffix=''):
2408 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
2409
2410 Returns:
2411 The absolute pathname of the new directory.
2412 """
2413 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
2414 OPTIONS.tempfiles.append(dir_name)
2415 return dir_name
2416
2417
Doug Zongkereef39442009-04-02 12:14:19 -07002418def Cleanup():
2419 for i in OPTIONS.tempfiles:
2420 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08002421 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07002422 else:
2423 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08002424 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07002425
2426
2427class PasswordManager(object):
2428 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08002429 self.editor = os.getenv("EDITOR")
2430 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002431
2432 def GetPasswords(self, items):
2433 """Get passwords corresponding to each string in 'items',
2434 returning a dict. (The dict may have keys in addition to the
2435 values in 'items'.)
2436
2437 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2438 user edit that file to add more needed passwords. If no editor is
2439 available, or $ANDROID_PW_FILE isn't define, prompts the user
2440 interactively in the ordinary way.
2441 """
2442
2443 current = self.ReadFile()
2444
2445 first = True
2446 while True:
2447 missing = []
2448 for i in items:
2449 if i not in current or not current[i]:
2450 missing.append(i)
2451 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002452 if not missing:
2453 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002454
2455 for i in missing:
2456 current[i] = ""
2457
2458 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002459 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002460 if sys.version_info[0] >= 3:
2461 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002462 answer = raw_input("try to edit again? [y]> ").strip()
2463 if answer and answer[0] not in 'yY':
2464 raise RuntimeError("key passwords unavailable")
2465 first = False
2466
2467 current = self.UpdateAndReadFile(current)
2468
Kelvin Zhang0876c412020-06-23 15:06:58 -04002469 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002470 """Prompt the user to enter a value (password) for each key in
2471 'current' whose value is fales. Returns a new dict with all the
2472 values.
2473 """
2474 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002475 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002476 if v:
2477 result[k] = v
2478 else:
2479 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002480 result[k] = getpass.getpass(
2481 "Enter password for %s key> " % k).strip()
2482 if result[k]:
2483 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002484 return result
2485
2486 def UpdateAndReadFile(self, current):
2487 if not self.editor or not self.pwfile:
2488 return self.PromptResult(current)
2489
2490 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002491 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002492 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2493 f.write("# (Additional spaces are harmless.)\n\n")
2494
2495 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002496 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002497 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002498 f.write("[[[ %s ]]] %s\n" % (v, k))
2499 if not v and first_line is None:
2500 # position cursor on first line with no password.
2501 first_line = i + 4
2502 f.close()
2503
Tao Bao986ee862018-10-04 15:46:16 -07002504 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002505
2506 return self.ReadFile()
2507
2508 def ReadFile(self):
2509 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002510 if self.pwfile is None:
2511 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002512 try:
2513 f = open(self.pwfile, "r")
2514 for line in f:
2515 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002516 if not line or line[0] == '#':
2517 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002518 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2519 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002520 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002521 else:
2522 result[m.group(2)] = m.group(1)
2523 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002524 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002525 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002526 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002527 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002528
2529
Dan Albert8e0178d2015-01-27 15:53:15 -08002530def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2531 compress_type=None):
Dan Albert8e0178d2015-01-27 15:53:15 -08002532
2533 # http://b/18015246
2534 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2535 # for files larger than 2GiB. We can work around this by adjusting their
2536 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2537 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2538 # it isn't clear to me exactly what circumstances cause this).
2539 # `zipfile.write()` must be used directly to work around this.
2540 #
2541 # This mess can be avoided if we port to python3.
2542 saved_zip64_limit = zipfile.ZIP64_LIMIT
2543 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2544
2545 if compress_type is None:
2546 compress_type = zip_file.compression
2547 if arcname is None:
2548 arcname = filename
2549
2550 saved_stat = os.stat(filename)
2551
2552 try:
2553 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2554 # file to be zipped and reset it when we're done.
2555 os.chmod(filename, perms)
2556
2557 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002558 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2559 # intentional. zip stores datetimes in local time without a time zone
2560 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2561 # in the zip archive.
2562 local_epoch = datetime.datetime.fromtimestamp(0)
2563 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002564 os.utime(filename, (timestamp, timestamp))
2565
2566 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2567 finally:
2568 os.chmod(filename, saved_stat.st_mode)
2569 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2570 zipfile.ZIP64_LIMIT = saved_zip64_limit
2571
2572
Tao Bao58c1b962015-05-20 09:32:18 -07002573def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002574 compress_type=None):
2575 """Wrap zipfile.writestr() function to work around the zip64 limit.
2576
2577 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2578 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2579 when calling crc32(bytes).
2580
2581 But it still works fine to write a shorter string into a large zip file.
2582 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2583 when we know the string won't be too long.
2584 """
2585
2586 saved_zip64_limit = zipfile.ZIP64_LIMIT
2587 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2588
2589 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2590 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002591 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002592 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002593 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002594 else:
Tao Baof3282b42015-04-01 11:21:55 -07002595 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002596 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2597 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2598 # such a case (since
2599 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2600 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2601 # permission bits. We follow the logic in Python 3 to get consistent
2602 # behavior between using the two versions.
2603 if not zinfo.external_attr:
2604 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002605
2606 # If compress_type is given, it overrides the value in zinfo.
2607 if compress_type is not None:
2608 zinfo.compress_type = compress_type
2609
Tao Bao58c1b962015-05-20 09:32:18 -07002610 # If perms is given, it has a priority.
2611 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002612 # If perms doesn't set the file type, mark it as a regular file.
2613 if perms & 0o770000 == 0:
2614 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002615 zinfo.external_attr = perms << 16
2616
Tao Baof3282b42015-04-01 11:21:55 -07002617 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002618 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2619
Dan Albert8b72aef2015-03-23 19:13:21 -07002620 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002621 zipfile.ZIP64_LIMIT = saved_zip64_limit
2622
2623
Tao Bao89d7ab22017-12-14 17:05:33 -08002624def ZipDelete(zip_filename, entries):
2625 """Deletes entries from a ZIP file.
2626
2627 Since deleting entries from a ZIP file is not supported, it shells out to
2628 'zip -d'.
2629
2630 Args:
2631 zip_filename: The name of the ZIP file.
2632 entries: The name of the entry, or the list of names to be deleted.
2633
2634 Raises:
2635 AssertionError: In case of non-zero return from 'zip'.
2636 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002637 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002638 entries = [entries]
2639 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002640 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002641
2642
Tao Baof3282b42015-04-01 11:21:55 -07002643def ZipClose(zip_file):
2644 # http://b/18015246
2645 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2646 # central directory.
2647 saved_zip64_limit = zipfile.ZIP64_LIMIT
2648 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2649
2650 zip_file.close()
2651
2652 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002653
2654
2655class DeviceSpecificParams(object):
2656 module = None
Kelvin Zhang0876c412020-06-23 15:06:58 -04002657
Doug Zongker05d3dea2009-06-22 11:32:31 -07002658 def __init__(self, **kwargs):
2659 """Keyword arguments to the constructor become attributes of this
2660 object, which is passed to all functions in the device-specific
2661 module."""
Tao Bao38884282019-07-10 22:20:56 -07002662 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002663 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002664 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002665
2666 if self.module is None:
2667 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002668 if not path:
2669 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002670 try:
2671 if os.path.isdir(path):
2672 info = imp.find_module("releasetools", [path])
2673 else:
2674 d, f = os.path.split(path)
2675 b, x = os.path.splitext(f)
2676 if x == ".py":
2677 f = b
2678 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002679 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002680 self.module = imp.load_module("device_specific", *info)
2681 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002682 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002683
2684 def _DoCall(self, function_name, *args, **kwargs):
2685 """Call the named function in the device-specific module, passing
2686 the given args and kwargs. The first argument to the call will be
2687 the DeviceSpecific object itself. If there is no module, or the
2688 module does not define the function, return the value of the
2689 'default' kwarg (which itself defaults to None)."""
2690 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002691 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002692 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2693
2694 def FullOTA_Assertions(self):
2695 """Called after emitting the block of assertions at the top of a
2696 full OTA package. Implementations can add whatever additional
2697 assertions they like."""
2698 return self._DoCall("FullOTA_Assertions")
2699
Doug Zongkere5ff5902012-01-17 10:55:37 -08002700 def FullOTA_InstallBegin(self):
2701 """Called at the start of full OTA installation."""
2702 return self._DoCall("FullOTA_InstallBegin")
2703
Yifan Hong10c530d2018-12-27 17:34:18 -08002704 def FullOTA_GetBlockDifferences(self):
2705 """Called during full OTA installation and verification.
2706 Implementation should return a list of BlockDifference objects describing
2707 the update on each additional partitions.
2708 """
2709 return self._DoCall("FullOTA_GetBlockDifferences")
2710
Doug Zongker05d3dea2009-06-22 11:32:31 -07002711 def FullOTA_InstallEnd(self):
2712 """Called at the end of full OTA installation; typically this is
2713 used to install the image for the device's baseband processor."""
2714 return self._DoCall("FullOTA_InstallEnd")
2715
2716 def IncrementalOTA_Assertions(self):
2717 """Called after emitting the block of assertions at the top of an
2718 incremental OTA package. Implementations can add whatever
2719 additional assertions they like."""
2720 return self._DoCall("IncrementalOTA_Assertions")
2721
Doug Zongkere5ff5902012-01-17 10:55:37 -08002722 def IncrementalOTA_VerifyBegin(self):
2723 """Called at the start of the verification phase of incremental
2724 OTA installation; additional checks can be placed here to abort
2725 the script before any changes are made."""
2726 return self._DoCall("IncrementalOTA_VerifyBegin")
2727
Doug Zongker05d3dea2009-06-22 11:32:31 -07002728 def IncrementalOTA_VerifyEnd(self):
2729 """Called at the end of the verification phase of incremental OTA
2730 installation; additional checks can be placed here to abort the
2731 script before any changes are made."""
2732 return self._DoCall("IncrementalOTA_VerifyEnd")
2733
Doug Zongkere5ff5902012-01-17 10:55:37 -08002734 def IncrementalOTA_InstallBegin(self):
2735 """Called at the start of incremental OTA installation (after
2736 verification is complete)."""
2737 return self._DoCall("IncrementalOTA_InstallBegin")
2738
Yifan Hong10c530d2018-12-27 17:34:18 -08002739 def IncrementalOTA_GetBlockDifferences(self):
2740 """Called during incremental OTA installation and verification.
2741 Implementation should return a list of BlockDifference objects describing
2742 the update on each additional partitions.
2743 """
2744 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2745
Doug Zongker05d3dea2009-06-22 11:32:31 -07002746 def IncrementalOTA_InstallEnd(self):
2747 """Called at the end of incremental OTA installation; typically
2748 this is used to install the image for the device's baseband
2749 processor."""
2750 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002751
Tao Bao9bc6bb22015-11-09 16:58:28 -08002752 def VerifyOTA_Assertions(self):
2753 return self._DoCall("VerifyOTA_Assertions")
2754
Tao Bao76def242017-11-21 09:25:31 -08002755
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002756class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002757 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002758 self.name = name
2759 self.data = data
2760 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09002761 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08002762 self.sha1 = sha1(data).hexdigest()
2763
2764 @classmethod
2765 def FromLocalFile(cls, name, diskname):
2766 f = open(diskname, "rb")
2767 data = f.read()
2768 f.close()
2769 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002770
2771 def WriteToTemp(self):
2772 t = tempfile.NamedTemporaryFile()
2773 t.write(self.data)
2774 t.flush()
2775 return t
2776
Dan Willemsen2ee00d52017-03-05 19:51:56 -08002777 def WriteToDir(self, d):
2778 with open(os.path.join(d, self.name), "wb") as fp:
2779 fp.write(self.data)
2780
Geremy Condra36bd3652014-02-06 19:45:10 -08002781 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07002782 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002783
Tao Bao76def242017-11-21 09:25:31 -08002784
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002785DIFF_PROGRAM_BY_EXT = {
Kelvin Zhang0876c412020-06-23 15:06:58 -04002786 ".gz": "imgdiff",
2787 ".zip": ["imgdiff", "-z"],
2788 ".jar": ["imgdiff", "-z"],
2789 ".apk": ["imgdiff", "-z"],
2790 ".img": "imgdiff",
2791}
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002792
Tao Bao76def242017-11-21 09:25:31 -08002793
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002794class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07002795 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002796 self.tf = tf
2797 self.sf = sf
2798 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07002799 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002800
2801 def ComputePatch(self):
2802 """Compute the patch (as a string of data) needed to turn sf into
2803 tf. Returns the same tuple as GetPatch()."""
2804
2805 tf = self.tf
2806 sf = self.sf
2807
Doug Zongker24cd2802012-08-14 16:36:15 -07002808 if self.diff_program:
2809 diff_program = self.diff_program
2810 else:
2811 ext = os.path.splitext(tf.name)[1]
2812 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002813
2814 ttemp = tf.WriteToTemp()
2815 stemp = sf.WriteToTemp()
2816
2817 ext = os.path.splitext(tf.name)[1]
2818
2819 try:
2820 ptemp = tempfile.NamedTemporaryFile()
2821 if isinstance(diff_program, list):
2822 cmd = copy.copy(diff_program)
2823 else:
2824 cmd = [diff_program]
2825 cmd.append(stemp.name)
2826 cmd.append(ttemp.name)
2827 cmd.append(ptemp.name)
2828 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07002829 err = []
Kelvin Zhang0876c412020-06-23 15:06:58 -04002830
Doug Zongkerf8340082014-08-05 10:39:37 -07002831 def run():
2832 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07002833 if e:
2834 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07002835 th = threading.Thread(target=run)
2836 th.start()
2837 th.join(timeout=300) # 5 mins
2838 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07002839 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07002840 p.terminate()
2841 th.join(5)
2842 if th.is_alive():
2843 p.kill()
2844 th.join()
2845
Tianjie Xua2a9f992018-01-05 15:15:54 -08002846 if p.returncode != 0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002847 logger.warning("Failure running %s:\n%s\n", diff_program, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07002848 self.patch = None
2849 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002850 diff = ptemp.read()
2851 finally:
2852 ptemp.close()
2853 stemp.close()
2854 ttemp.close()
2855
2856 self.patch = diff
2857 return self.tf, self.sf, self.patch
2858
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002859 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08002860 """Returns a tuple of (target_file, source_file, patch_data).
2861
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002862 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08002863 computing the patch failed.
2864 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002865 return self.tf, self.sf, self.patch
2866
2867
2868def ComputeDifferences(diffs):
2869 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07002870 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002871
2872 # Do the largest files first, to try and reduce the long-pole effect.
2873 by_size = [(i.tf.size, i) for i in diffs]
2874 by_size.sort(reverse=True)
2875 by_size = [i[1] for i in by_size]
2876
2877 lock = threading.Lock()
2878 diff_iter = iter(by_size) # accessed under lock
2879
2880 def worker():
2881 try:
2882 lock.acquire()
2883 for d in diff_iter:
2884 lock.release()
2885 start = time.time()
2886 d.ComputePatch()
2887 dur = time.time() - start
2888 lock.acquire()
2889
2890 tf, sf, patch = d.GetPatch()
2891 if sf.name == tf.name:
2892 name = tf.name
2893 else:
2894 name = "%s (%s)" % (tf.name, sf.name)
2895 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07002896 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002897 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07002898 logger.info(
2899 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
2900 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002901 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07002902 except Exception:
2903 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002904 raise
2905
2906 # start worker threads; wait for them all to finish.
2907 threads = [threading.Thread(target=worker)
2908 for i in range(OPTIONS.worker_threads)]
2909 for th in threads:
2910 th.start()
2911 while threads:
2912 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07002913
2914
Dan Albert8b72aef2015-03-23 19:13:21 -07002915class BlockDifference(object):
2916 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07002917 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002918 self.tgt = tgt
2919 self.src = src
2920 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002921 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07002922 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002923
Tao Baodd2a5892015-03-12 12:32:37 -07002924 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08002925 version = max(
2926 int(i) for i in
2927 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08002928 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07002929 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07002930
Tianjie Xu41976c72019-07-03 13:57:01 -07002931 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
2932 version=self.version,
2933 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08002934 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002935 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08002936 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07002937 self.touched_src_ranges = b.touched_src_ranges
2938 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002939
Yifan Hong10c530d2018-12-27 17:34:18 -08002940 # On devices with dynamic partitions, for new partitions,
2941 # src is None but OPTIONS.source_info_dict is not.
2942 if OPTIONS.source_info_dict is None:
2943 is_dynamic_build = OPTIONS.info_dict.get(
2944 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002945 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07002946 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08002947 is_dynamic_build = OPTIONS.source_info_dict.get(
2948 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002949 is_dynamic_source = partition in shlex.split(
2950 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08002951
Yifan Hongbb2658d2019-01-25 12:30:58 -08002952 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08002953 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
2954
Yifan Hongbb2658d2019-01-25 12:30:58 -08002955 # For dynamic partitions builds, check partition list in both source
2956 # and target build because new partitions may be added, and existing
2957 # partitions may be removed.
2958 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
2959
Yifan Hong10c530d2018-12-27 17:34:18 -08002960 if is_dynamic:
2961 self.device = 'map_partition("%s")' % partition
2962 else:
2963 if OPTIONS.source_info_dict is None:
Yifan Hongbdb32012020-05-07 12:38:53 -07002964 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
2965 OPTIONS.info_dict)
Yifan Hong10c530d2018-12-27 17:34:18 -08002966 else:
Yifan Hongbdb32012020-05-07 12:38:53 -07002967 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
2968 OPTIONS.source_info_dict)
2969 self.device = device_expr
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002970
Tao Baod8d14be2016-02-04 14:26:02 -08002971 @property
2972 def required_cache(self):
2973 return self._required_cache
2974
Tao Bao76def242017-11-21 09:25:31 -08002975 def WriteScript(self, script, output_zip, progress=None,
2976 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002977 if not self.src:
2978 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08002979 script.Print("Patching %s image unconditionally..." % (self.partition,))
2980 else:
2981 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002982
Dan Albert8b72aef2015-03-23 19:13:21 -07002983 if progress:
2984 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002985 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08002986
2987 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08002988 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002989
Tao Bao9bc6bb22015-11-09 16:58:28 -08002990 def WriteStrictVerifyScript(self, script):
2991 """Verify all the blocks in the care_map, including clobbered blocks.
2992
2993 This differs from the WriteVerifyScript() function: a) it prints different
2994 error messages; b) it doesn't allow half-way updated images to pass the
2995 verification."""
2996
2997 partition = self.partition
2998 script.Print("Verifying %s..." % (partition,))
2999 ranges = self.tgt.care_map
3000 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003001 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003002 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
3003 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08003004 self.device, ranges_str,
3005 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08003006 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08003007 script.AppendExtra("")
3008
Tao Baod522bdc2016-04-12 15:53:16 -07003009 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00003010 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07003011
3012 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08003013 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00003014 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07003015
3016 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003017 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08003018 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07003019 ranges = self.touched_src_ranges
3020 expected_sha1 = self.touched_src_sha1
3021 else:
3022 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
3023 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07003024
3025 # No blocks to be checked, skipping.
3026 if not ranges:
3027 return
3028
Tao Bao5ece99d2015-05-12 11:42:31 -07003029 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003030 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003031 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08003032 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
3033 '"%s.patch.dat")) then' % (
3034 self.device, ranges_str, expected_sha1,
3035 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07003036 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07003037 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00003038
Tianjie Xufc3422a2015-12-15 11:53:59 -08003039 if self.version >= 4:
3040
3041 # Bug: 21124327
3042 # When generating incrementals for the system and vendor partitions in
3043 # version 4 or newer, explicitly check the first block (which contains
3044 # the superblock) of the partition to see if it's what we expect. If
3045 # this check fails, give an explicit log message about the partition
3046 # having been remounted R/W (the most likely explanation).
3047 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08003048 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08003049
3050 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07003051 if partition == "system":
3052 code = ErrorCode.SYSTEM_RECOVER_FAILURE
3053 else:
3054 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08003055 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08003056 'ifelse (block_image_recover({device}, "{ranges}") && '
3057 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08003058 'package_extract_file("{partition}.transfer.list"), '
3059 '"{partition}.new.dat", "{partition}.patch.dat"), '
3060 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07003061 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08003062 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07003063 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003064
Tao Baodd2a5892015-03-12 12:32:37 -07003065 # Abort the OTA update. Note that the incremental OTA cannot be applied
3066 # even if it may match the checksum of the target partition.
3067 # a) If version < 3, operations like move and erase will make changes
3068 # unconditionally and damage the partition.
3069 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08003070 else:
Tianjie Xu209db462016-05-24 17:34:52 -07003071 if partition == "system":
3072 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
3073 else:
3074 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
3075 script.AppendExtra((
3076 'abort("E%d: %s partition has unexpected contents");\n'
3077 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003078
Yifan Hong10c530d2018-12-27 17:34:18 -08003079 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07003080 partition = self.partition
3081 script.Print('Verifying the updated %s image...' % (partition,))
3082 # Unlike pre-install verification, clobbered_blocks should not be ignored.
3083 ranges = self.tgt.care_map
3084 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003085 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003086 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003087 self.device, ranges_str,
3088 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07003089
3090 # Bug: 20881595
3091 # Verify that extended blocks are really zeroed out.
3092 if self.tgt.extended:
3093 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003094 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003095 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003096 self.device, ranges_str,
3097 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07003098 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07003099 if partition == "system":
3100 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
3101 else:
3102 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07003103 script.AppendExtra(
3104 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003105 ' abort("E%d: %s partition has unexpected non-zero contents after '
3106 'OTA update");\n'
3107 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07003108 else:
3109 script.Print('Verified the updated %s image.' % (partition,))
3110
Tianjie Xu209db462016-05-24 17:34:52 -07003111 if partition == "system":
3112 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
3113 else:
3114 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
3115
Tao Bao5fcaaef2015-06-01 13:40:49 -07003116 script.AppendExtra(
3117 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003118 ' abort("E%d: %s partition has unexpected contents after OTA '
3119 'update");\n'
3120 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07003121
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003122 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08003123 ZipWrite(output_zip,
3124 '{}.transfer.list'.format(self.path),
3125 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003126
Tao Bao76def242017-11-21 09:25:31 -08003127 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
3128 # its size. Quailty 9 almost triples the compression time but doesn't
3129 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003130 # zip | brotli(quality 6) | brotli(quality 9)
3131 # compressed_size: 942M | 869M (~8% reduced) | 854M
3132 # compression_time: 75s | 265s | 719s
3133 # decompression_time: 15s | 25s | 25s
3134
3135 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01003136 brotli_cmd = ['brotli', '--quality=6',
3137 '--output={}.new.dat.br'.format(self.path),
3138 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003139 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07003140 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003141
3142 new_data_name = '{}.new.dat.br'.format(self.partition)
3143 ZipWrite(output_zip,
3144 '{}.new.dat.br'.format(self.path),
3145 new_data_name,
3146 compress_type=zipfile.ZIP_STORED)
3147 else:
3148 new_data_name = '{}.new.dat'.format(self.partition)
3149 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
3150
Dan Albert8e0178d2015-01-27 15:53:15 -08003151 ZipWrite(output_zip,
3152 '{}.patch.dat'.format(self.path),
3153 '{}.patch.dat'.format(self.partition),
3154 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003155
Tianjie Xu209db462016-05-24 17:34:52 -07003156 if self.partition == "system":
3157 code = ErrorCode.SYSTEM_UPDATE_FAILURE
3158 else:
3159 code = ErrorCode.VENDOR_UPDATE_FAILURE
3160
Yifan Hong10c530d2018-12-27 17:34:18 -08003161 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08003162 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003163 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003164 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003165 device=self.device, partition=self.partition,
3166 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07003167 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003168
Kelvin Zhang0876c412020-06-23 15:06:58 -04003169 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00003170 data = source.ReadRangeSet(ranges)
3171 ctx = sha1()
3172
3173 for p in data:
3174 ctx.update(p)
3175
3176 return ctx.hexdigest()
3177
Kelvin Zhang0876c412020-06-23 15:06:58 -04003178 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
Tao Baoe9b61912015-07-09 17:37:49 -07003179 """Return the hash value for all zero blocks."""
3180 zero_block = '\x00' * 4096
3181 ctx = sha1()
3182 for _ in range(num_blocks):
3183 ctx.update(zero_block)
3184
3185 return ctx.hexdigest()
3186
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003187
Tianjie Xu41976c72019-07-03 13:57:01 -07003188# Expose these two classes to support vendor-specific scripts
3189DataImage = images.DataImage
3190EmptyImage = images.EmptyImage
3191
Tao Bao76def242017-11-21 09:25:31 -08003192
Doug Zongker96a57e72010-09-26 14:57:41 -07003193# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07003194PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07003195 "ext4": "EMMC",
3196 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07003197 "f2fs": "EMMC",
3198 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07003199}
Doug Zongker96a57e72010-09-26 14:57:41 -07003200
Kelvin Zhang0876c412020-06-23 15:06:58 -04003201
Yifan Hongbdb32012020-05-07 12:38:53 -07003202def GetTypeAndDevice(mount_point, info, check_no_slot=True):
3203 """
3204 Use GetTypeAndDeviceExpr whenever possible. This function is kept for
3205 backwards compatibility. It aborts if the fstab entry has slotselect option
3206 (unless check_no_slot is explicitly set to False).
3207 """
Doug Zongker96a57e72010-09-26 14:57:41 -07003208 fstab = info["fstab"]
3209 if fstab:
Yifan Hongbdb32012020-05-07 12:38:53 -07003210 if check_no_slot:
3211 assert not fstab[mount_point].slotselect, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04003212 "Use GetTypeAndDeviceExpr instead"
Dan Albert8b72aef2015-03-23 19:13:21 -07003213 return (PARTITION_TYPES[fstab[mount_point].fs_type],
3214 fstab[mount_point].device)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003215 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003216
3217
Yifan Hongbdb32012020-05-07 12:38:53 -07003218def GetTypeAndDeviceExpr(mount_point, info):
3219 """
3220 Return the filesystem of the partition, and an edify expression that evaluates
3221 to the device at runtime.
3222 """
3223 fstab = info["fstab"]
3224 if fstab:
3225 p = fstab[mount_point]
3226 device_expr = '"%s"' % fstab[mount_point].device
3227 if p.slotselect:
3228 device_expr = 'add_slot_suffix(%s)' % device_expr
3229 return (PARTITION_TYPES[fstab[mount_point].fs_type], device_expr)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003230 raise KeyError
Yifan Hongbdb32012020-05-07 12:38:53 -07003231
3232
3233def GetEntryForDevice(fstab, device):
3234 """
3235 Returns:
3236 The first entry in fstab whose device is the given value.
3237 """
3238 if not fstab:
3239 return None
3240 for mount_point in fstab:
3241 if fstab[mount_point].device == device:
3242 return fstab[mount_point]
3243 return None
3244
Kelvin Zhang0876c412020-06-23 15:06:58 -04003245
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003246def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08003247 """Parses and converts a PEM-encoded certificate into DER-encoded.
3248
3249 This gives the same result as `openssl x509 -in <filename> -outform DER`.
3250
3251 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08003252 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08003253 """
3254 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003255 save = False
3256 for line in data.split("\n"):
3257 if "--END CERTIFICATE--" in line:
3258 break
3259 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08003260 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003261 if "--BEGIN CERTIFICATE--" in line:
3262 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08003263 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003264 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08003265
Tao Bao04e1f012018-02-04 12:13:35 -08003266
3267def ExtractPublicKey(cert):
3268 """Extracts the public key (PEM-encoded) from the given certificate file.
3269
3270 Args:
3271 cert: The certificate filename.
3272
3273 Returns:
3274 The public key string.
3275
3276 Raises:
3277 AssertionError: On non-zero return from 'openssl'.
3278 """
3279 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
3280 # While openssl 1.1 writes the key into the given filename followed by '-out',
3281 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
3282 # stdout instead.
3283 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
3284 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3285 pubkey, stderrdata = proc.communicate()
3286 assert proc.returncode == 0, \
3287 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
3288 return pubkey
3289
3290
Tao Bao1ac886e2019-06-26 11:58:22 -07003291def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07003292 """Extracts the AVB public key from the given public or private key.
3293
3294 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07003295 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07003296 key: The input key file, which should be PEM-encoded public or private key.
3297
3298 Returns:
3299 The path to the extracted AVB public key file.
3300 """
3301 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
3302 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07003303 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07003304 return output
3305
3306
Doug Zongker412c02f2014-02-13 10:58:24 -08003307def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
3308 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08003309 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08003310
Tao Bao6d5d6232018-03-09 17:04:42 -08003311 Most of the space in the boot and recovery images is just the kernel, which is
3312 identical for the two, so the resulting patch should be efficient. Add it to
3313 the output zip, along with a shell script that is run from init.rc on first
3314 boot to actually do the patching and install the new recovery image.
3315
3316 Args:
3317 input_dir: The top-level input directory of the target-files.zip.
3318 output_sink: The callback function that writes the result.
3319 recovery_img: File object for the recovery image.
3320 boot_img: File objects for the boot image.
3321 info_dict: A dict returned by common.LoadInfoDict() on the input
3322 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08003323 """
Doug Zongker412c02f2014-02-13 10:58:24 -08003324 if info_dict is None:
3325 info_dict = OPTIONS.info_dict
3326
Tao Bao6d5d6232018-03-09 17:04:42 -08003327 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003328 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
3329
3330 if board_uses_vendorimage:
3331 # In this case, the output sink is rooted at VENDOR
3332 recovery_img_path = "etc/recovery.img"
3333 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
3334 sh_dir = "bin"
3335 else:
3336 # In this case the output sink is rooted at SYSTEM
3337 recovery_img_path = "vendor/etc/recovery.img"
3338 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
3339 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08003340
Tao Baof2cffbd2015-07-22 12:33:18 -07003341 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003342 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07003343
3344 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08003345 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003346 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08003347 # With system-root-image, boot and recovery images will have mismatching
3348 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
3349 # to handle such a case.
3350 if system_root_image:
3351 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07003352 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08003353 assert not os.path.exists(path)
3354 else:
3355 diff_program = ["imgdiff"]
3356 if os.path.exists(path):
3357 diff_program.append("-b")
3358 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07003359 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08003360 else:
3361 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07003362
3363 d = Difference(recovery_img, boot_img, diff_program=diff_program)
3364 _, _, patch = d.ComputePatch()
3365 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08003366
Dan Albertebb19aa2015-03-27 19:11:53 -07003367 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07003368 # The following GetTypeAndDevice()s need to use the path in the target
3369 # info_dict instead of source_info_dict.
Yifan Hongbdb32012020-05-07 12:38:53 -07003370 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict,
3371 check_no_slot=False)
3372 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict,
3373 check_no_slot=False)
Dan Albertebb19aa2015-03-27 19:11:53 -07003374 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07003375 return
Doug Zongkerc9253822014-02-04 12:17:58 -08003376
Tao Baof2cffbd2015-07-22 12:33:18 -07003377 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003378
3379 # Note that we use /vendor to refer to the recovery resources. This will
3380 # work for a separate vendor partition mounted at /vendor or a
3381 # /system/vendor subdirectory on the system partition, for which init will
3382 # create a symlink from /vendor to /system/vendor.
3383
3384 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003385if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
3386 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003387 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07003388 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
3389 log -t recovery "Installing new recovery image: succeeded" || \\
3390 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07003391else
3392 log -t recovery "Recovery image already installed"
3393fi
3394""" % {'type': recovery_type,
3395 'device': recovery_device,
3396 'sha1': recovery_img.sha1,
3397 'size': recovery_img.size}
3398 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07003399 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003400if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
3401 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003402 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07003403 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
3404 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
3405 log -t recovery "Installing new recovery image: succeeded" || \\
3406 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08003407else
3408 log -t recovery "Recovery image already installed"
3409fi
Dan Albert8b72aef2015-03-23 19:13:21 -07003410""" % {'boot_size': boot_img.size,
3411 'boot_sha1': boot_img.sha1,
3412 'recovery_size': recovery_img.size,
3413 'recovery_sha1': recovery_img.sha1,
3414 'boot_type': boot_type,
Yifan Hongbdb32012020-05-07 12:38:53 -07003415 'boot_device': boot_device + '$(getprop ro.boot.slot_suffix)',
Tianjiee3c31ea2020-05-19 13:44:26 -07003416 'recovery_type': recovery_type,
3417 'recovery_device': recovery_device + '$(getprop ro.boot.slot_suffix)',
Dan Albert8b72aef2015-03-23 19:13:21 -07003418 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08003419
Bill Peckhame868aec2019-09-17 17:06:47 -07003420 # The install script location moved from /system/etc to /system/bin in the L
3421 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
3422 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07003423
Tao Bao32fcdab2018-10-12 10:30:39 -07003424 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08003425
Tao Baoda30cfa2017-12-01 16:19:46 -08003426 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08003427
3428
3429class DynamicPartitionUpdate(object):
3430 def __init__(self, src_group=None, tgt_group=None, progress=None,
3431 block_difference=None):
3432 self.src_group = src_group
3433 self.tgt_group = tgt_group
3434 self.progress = progress
3435 self.block_difference = block_difference
3436
3437 @property
3438 def src_size(self):
3439 if not self.block_difference:
3440 return 0
3441 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3442
3443 @property
3444 def tgt_size(self):
3445 if not self.block_difference:
3446 return 0
3447 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3448
3449 @staticmethod
3450 def _GetSparseImageSize(img):
3451 if not img:
3452 return 0
3453 return img.blocksize * img.total_blocks
3454
3455
3456class DynamicGroupUpdate(object):
3457 def __init__(self, src_size=None, tgt_size=None):
3458 # None: group does not exist. 0: no size limits.
3459 self.src_size = src_size
3460 self.tgt_size = tgt_size
3461
3462
3463class DynamicPartitionsDifference(object):
3464 def __init__(self, info_dict, block_diffs, progress_dict=None,
3465 source_info_dict=None):
3466 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07003467 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003468
3469 self._remove_all_before_apply = False
3470 if source_info_dict is None:
3471 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07003472 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003473
Tao Baof1113e92019-06-18 12:10:14 -07003474 block_diff_dict = collections.OrderedDict(
3475 [(e.partition, e) for e in block_diffs])
3476
Yifan Hong10c530d2018-12-27 17:34:18 -08003477 assert len(block_diff_dict) == len(block_diffs), \
3478 "Duplicated BlockDifference object for {}".format(
3479 [partition for partition, count in
3480 collections.Counter(e.partition for e in block_diffs).items()
3481 if count > 1])
3482
Yifan Hong79997e52019-01-23 16:56:19 -08003483 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003484
3485 for p, block_diff in block_diff_dict.items():
3486 self._partition_updates[p] = DynamicPartitionUpdate()
3487 self._partition_updates[p].block_difference = block_diff
3488
3489 for p, progress in progress_dict.items():
3490 if p in self._partition_updates:
3491 self._partition_updates[p].progress = progress
3492
3493 tgt_groups = shlex.split(info_dict.get(
3494 "super_partition_groups", "").strip())
3495 src_groups = shlex.split(source_info_dict.get(
3496 "super_partition_groups", "").strip())
3497
3498 for g in tgt_groups:
3499 for p in shlex.split(info_dict.get(
3500 "super_%s_partition_list" % g, "").strip()):
3501 assert p in self._partition_updates, \
3502 "{} is in target super_{}_partition_list but no BlockDifference " \
3503 "object is provided.".format(p, g)
3504 self._partition_updates[p].tgt_group = g
3505
3506 for g in src_groups:
3507 for p in shlex.split(source_info_dict.get(
3508 "super_%s_partition_list" % g, "").strip()):
3509 assert p in self._partition_updates, \
3510 "{} is in source super_{}_partition_list but no BlockDifference " \
3511 "object is provided.".format(p, g)
3512 self._partition_updates[p].src_group = g
3513
Yifan Hong45433e42019-01-18 13:55:25 -08003514 target_dynamic_partitions = set(shlex.split(info_dict.get(
3515 "dynamic_partition_list", "").strip()))
3516 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3517 if u.tgt_size)
3518 assert block_diffs_with_target == target_dynamic_partitions, \
3519 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3520 list(target_dynamic_partitions), list(block_diffs_with_target))
3521
3522 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3523 "dynamic_partition_list", "").strip()))
3524 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3525 if u.src_size)
3526 assert block_diffs_with_source == source_dynamic_partitions, \
3527 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3528 list(source_dynamic_partitions), list(block_diffs_with_source))
3529
Yifan Hong10c530d2018-12-27 17:34:18 -08003530 if self._partition_updates:
3531 logger.info("Updating dynamic partitions %s",
3532 self._partition_updates.keys())
3533
Yifan Hong79997e52019-01-23 16:56:19 -08003534 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003535
3536 for g in tgt_groups:
3537 self._group_updates[g] = DynamicGroupUpdate()
3538 self._group_updates[g].tgt_size = int(info_dict.get(
3539 "super_%s_group_size" % g, "0").strip())
3540
3541 for g in src_groups:
3542 if g not in self._group_updates:
3543 self._group_updates[g] = DynamicGroupUpdate()
3544 self._group_updates[g].src_size = int(source_info_dict.get(
3545 "super_%s_group_size" % g, "0").strip())
3546
3547 self._Compute()
3548
3549 def WriteScript(self, script, output_zip, write_verify_script=False):
3550 script.Comment('--- Start patching dynamic partitions ---')
3551 for p, u in self._partition_updates.items():
3552 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3553 script.Comment('Patch partition %s' % p)
3554 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3555 write_verify_script=False)
3556
3557 op_list_path = MakeTempFile()
3558 with open(op_list_path, 'w') as f:
3559 for line in self._op_list:
3560 f.write('{}\n'.format(line))
3561
3562 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3563
3564 script.Comment('Update dynamic partition metadata')
3565 script.AppendExtra('assert(update_dynamic_partitions('
3566 'package_extract_file("dynamic_partitions_op_list")));')
3567
3568 if write_verify_script:
3569 for p, u in self._partition_updates.items():
3570 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3571 u.block_difference.WritePostInstallVerifyScript(script)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003572 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003573
3574 for p, u in self._partition_updates.items():
3575 if u.tgt_size and u.src_size <= u.tgt_size:
3576 script.Comment('Patch partition %s' % p)
3577 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3578 write_verify_script=write_verify_script)
3579 if write_verify_script:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003580 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003581
3582 script.Comment('--- End patching dynamic partitions ---')
3583
3584 def _Compute(self):
3585 self._op_list = list()
3586
3587 def append(line):
3588 self._op_list.append(line)
3589
3590 def comment(line):
3591 self._op_list.append("# %s" % line)
3592
3593 if self._remove_all_before_apply:
3594 comment('Remove all existing dynamic partitions and groups before '
3595 'applying full OTA')
3596 append('remove_all_groups')
3597
3598 for p, u in self._partition_updates.items():
3599 if u.src_group and not u.tgt_group:
3600 append('remove %s' % p)
3601
3602 for p, u in self._partition_updates.items():
3603 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3604 comment('Move partition %s from %s to default' % (p, u.src_group))
3605 append('move %s default' % p)
3606
3607 for p, u in self._partition_updates.items():
3608 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3609 comment('Shrink partition %s from %d to %d' %
3610 (p, u.src_size, u.tgt_size))
3611 append('resize %s %s' % (p, u.tgt_size))
3612
3613 for g, u in self._group_updates.items():
3614 if u.src_size is not None and u.tgt_size is None:
3615 append('remove_group %s' % g)
3616 if (u.src_size is not None and u.tgt_size is not None and
3617 u.src_size > u.tgt_size):
3618 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3619 append('resize_group %s %d' % (g, u.tgt_size))
3620
3621 for g, u in self._group_updates.items():
3622 if u.src_size is None and u.tgt_size is not None:
3623 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3624 append('add_group %s %d' % (g, u.tgt_size))
3625 if (u.src_size is not None and u.tgt_size is not None and
3626 u.src_size < u.tgt_size):
3627 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3628 append('resize_group %s %d' % (g, u.tgt_size))
3629
3630 for p, u in self._partition_updates.items():
3631 if u.tgt_group and not u.src_group:
3632 comment('Add partition %s to group %s' % (p, u.tgt_group))
3633 append('add %s %s' % (p, u.tgt_group))
3634
3635 for p, u in self._partition_updates.items():
3636 if u.tgt_size and u.src_size < u.tgt_size:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003637 comment('Grow partition %s from %d to %d' %
3638 (p, u.src_size, u.tgt_size))
Yifan Hong10c530d2018-12-27 17:34:18 -08003639 append('resize %s %d' % (p, u.tgt_size))
3640
3641 for p, u in self._partition_updates.items():
3642 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3643 comment('Move partition %s from default to %s' %
3644 (p, u.tgt_group))
3645 append('move %s %s' % (p, u.tgt_group))
Yifan Hongc65a0542021-01-07 14:21:01 -08003646
3647
Yifan Hong85ac5012021-01-07 14:43:46 -08003648def GetBootImageBuildProp(boot_img):
Yifan Hongc65a0542021-01-07 14:21:01 -08003649 """
Yifan Hong85ac5012021-01-07 14:43:46 -08003650 Get build.prop from ramdisk within the boot image
Yifan Hongc65a0542021-01-07 14:21:01 -08003651
3652 Args:
3653 boot_img: the boot image file. Ramdisk must be compressed with lz4 format.
3654
3655 Return:
Yifan Hong85ac5012021-01-07 14:43:46 -08003656 An extracted file that stores properties in the boot image.
Yifan Hongc65a0542021-01-07 14:21:01 -08003657 """
Yifan Hongc65a0542021-01-07 14:21:01 -08003658 tmp_dir = MakeTempDir('boot_', suffix='.img')
3659 try:
3660 RunAndCheckOutput(['unpack_bootimg', '--boot_img', boot_img, '--out', tmp_dir])
3661 ramdisk = os.path.join(tmp_dir, 'ramdisk')
3662 if not os.path.isfile(ramdisk):
3663 logger.warning('Unable to get boot image timestamp: no ramdisk in boot')
3664 return None
3665 uncompressed_ramdisk = os.path.join(tmp_dir, 'uncompressed_ramdisk')
3666 RunAndCheckOutput(['lz4', '-d', ramdisk, uncompressed_ramdisk])
3667
3668 abs_uncompressed_ramdisk = os.path.abspath(uncompressed_ramdisk)
3669 extracted_ramdisk = MakeTempDir('extracted_ramdisk')
3670 # Use "toybox cpio" instead of "cpio" because the latter invokes cpio from
3671 # the host environment.
3672 RunAndCheckOutput(['toybox', 'cpio', '-F', abs_uncompressed_ramdisk, '-i'],
3673 cwd=extracted_ramdisk)
3674
Yifan Hongc65a0542021-01-07 14:21:01 -08003675 for search_path in RAMDISK_BUILD_PROP_REL_PATHS:
3676 prop_file = os.path.join(extracted_ramdisk, search_path)
3677 if os.path.isfile(prop_file):
Yifan Hong7dc51172021-01-12 11:27:39 -08003678 return prop_file
Yifan Hongc65a0542021-01-07 14:21:01 -08003679 logger.warning('Unable to get boot image timestamp: no %s in ramdisk', search_path)
3680
Yifan Hong7dc51172021-01-12 11:27:39 -08003681 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003682
Yifan Hong85ac5012021-01-07 14:43:46 -08003683 except ExternalError as e:
3684 logger.warning('Unable to get boot image build props: %s', e)
3685 return None
3686
3687
3688def GetBootImageTimestamp(boot_img):
3689 """
3690 Get timestamp from ramdisk within the boot image
3691
3692 Args:
3693 boot_img: the boot image file. Ramdisk must be compressed with lz4 format.
3694
3695 Return:
3696 An integer that corresponds to the timestamp of the boot image, or None
3697 if file has unknown format. Raise exception if an unexpected error has
3698 occurred.
3699 """
3700 prop_file = GetBootImageBuildProp(boot_img)
3701 if not prop_file:
3702 return None
3703
3704 props = PartitionBuildProps.FromBuildPropFile('boot', prop_file)
3705 if props is None:
3706 return None
3707
3708 try:
Yifan Hongc65a0542021-01-07 14:21:01 -08003709 timestamp = props.GetProp('ro.bootimage.build.date.utc')
3710 if timestamp:
3711 return int(timestamp)
3712 logger.warning('Unable to get boot image timestamp: ro.bootimage.build.date.utc is undefined')
3713 return None
3714
3715 except ExternalError as e:
3716 logger.warning('Unable to get boot image timestamp: %s', e)
3717 return None