blob: 56ca51fe237ea721df37eff725a7b72c7e3af4da [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Kelvin Zhang0876c412020-06-23 15:06:58 -040020import datetime
Doug Zongker8ce7c252009-05-22 13:34:54 -070021import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070022import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070023import getopt
24import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010025import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070026import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070027import json
28import logging
29import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070030import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080031import platform
Doug Zongkereef39442009-04-02 12:14:19 -070032import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070033import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070034import shutil
35import subprocess
36import sys
37import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070038import threading
39import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070040import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080041from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070042
Tianjie Xu41976c72019-07-03 13:57:01 -070043import images
Kelvin Zhang27324132021-03-22 15:38:38 -040044import rangelib
Tao Baoc765cca2018-01-31 17:32:40 -080045import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070046from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070047
Tao Bao32fcdab2018-10-12 10:30:39 -070048logger = logging.getLogger(__name__)
49
Tao Bao986ee862018-10-04 15:46:16 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070052
Dan Albert8b72aef2015-03-23 19:13:21 -070053 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070054 # Set up search path, in order to find framework/ and lib64/. At the time of
55 # running this function, user-supplied search path (`--path`) hasn't been
56 # available. So the value set here is the default, which might be overridden
57 # by commandline flag later.
Kelvin Zhang0876c412020-06-23 15:06:58 -040058 exec_path = os.path.realpath(sys.argv[0])
Tao Baoafd92a82019-10-10 22:44:22 -070059 if exec_path.endswith('.py'):
60 script_name = os.path.basename(exec_path)
61 # logger hasn't been initialized yet at this point. Use print to output
62 # warnings.
63 print(
64 'Warning: releasetools script should be invoked as hermetic Python '
Kelvin Zhang0876c412020-06-23 15:06:58 -040065 'executable -- build and run `{}` directly.'.format(
66 script_name[:-3]),
Tao Baoafd92a82019-10-10 22:44:22 -070067 file=sys.stderr)
Kelvin Zhang0876c412020-06-23 15:06:58 -040068 self.search_path = os.path.dirname(os.path.dirname(exec_path))
Pavel Salomatov32676552019-03-06 20:00:45 +030069
Dan Albert8b72aef2015-03-23 19:13:21 -070070 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -080071 if not os.path.exists(os.path.join(self.search_path, self.signapk_path)):
72 if "ANDROID_HOST_OUT" in os.environ:
73 self.search_path = os.environ["ANDROID_HOST_OUT"]
Alex Klyubin9667b182015-12-10 13:38:50 -080074 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070075 self.extra_signapk_args = []
Martin Stjernholm58472e82022-01-07 22:08:47 +000076 self.aapt2_path = "aapt2"
Dan Albert8b72aef2015-03-23 19:13:21 -070077 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080078 self.java_args = ["-Xmx2048m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080079 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070080 self.public_key_suffix = ".x509.pem"
81 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070082 # use otatools built boot_signer by default
83 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070084 self.boot_signer_args = []
85 self.verity_signer_path = None
86 self.verity_signer_args = []
Dan Albert8b72aef2015-03-23 19:13:21 -070087 self.verbose = False
88 self.tempfiles = []
89 self.device_specific = None
90 self.extras = {}
91 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070092 self.source_info_dict = None
93 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070094 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070095 # Stash size cannot exceed cache_size * threshold.
96 self.cache_size = None
97 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -070098 self.logfile = None
Yifan Hong8e332ff2020-07-29 17:51:55 -070099 self.host_tools = {}
Dan Albert8b72aef2015-03-23 19:13:21 -0700100
101
102OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -0700103
Tao Bao71197512018-10-11 14:08:45 -0700104# The block size that's used across the releasetools scripts.
105BLOCK_SIZE = 4096
106
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800107# Values for "certificate" in apkcerts that mean special things.
108SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
109
Tao Bao5cc0abb2019-03-21 10:18:05 -0700110# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
111# that system_other is not in the list because we don't want to include its
Tianjiebf0b8a82021-03-03 17:31:04 -0800112# descriptor into vbmeta.img. When adding a new entry here, the
113# AVB_FOOTER_ARGS_BY_PARTITION in sign_target_files_apks need to be updated
114# accordingly.
Devin Mooreafdd7c72021-12-13 22:04:08 +0000115AVB_PARTITIONS = ('boot', 'init_boot', 'dtbo', 'odm', 'product', 'pvmfw', 'recovery',
Lucas Wei03230252022-04-18 16:00:40 +0800116 'system', 'system_ext', 'vendor', 'vendor_boot', 'vendor_kernel_boot',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000117 'vendor_dlkm', 'odm_dlkm', 'system_dlkm')
Tao Bao9dd909e2017-11-14 11:27:32 -0800118
Tao Bao08c190f2019-06-03 23:07:58 -0700119# Chained VBMeta partitions.
120AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
121
Tianjie Xu861f4132018-09-12 11:49:33 -0700122# Partitions that should have their care_map added to META/care_map.pb
Kelvin Zhang39aea442020-08-17 11:04:25 -0400123PARTITIONS_WITH_CARE_MAP = [
Yifan Hongcfb917a2020-05-07 14:58:20 -0700124 'system',
125 'vendor',
126 'product',
127 'system_ext',
128 'odm',
129 'vendor_dlkm',
Yifan Hongf496f1b2020-07-15 16:52:59 -0700130 'odm_dlkm',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000131 'system_dlkm',
Kelvin Zhang39aea442020-08-17 11:04:25 -0400132]
Tianjie Xu861f4132018-09-12 11:49:33 -0700133
Yifan Hong5057b952021-01-07 14:09:57 -0800134# Partitions with a build.prop file
Devin Mooreafdd7c72021-12-13 22:04:08 +0000135PARTITIONS_WITH_BUILD_PROP = PARTITIONS_WITH_CARE_MAP + ['boot', 'init_boot']
Yifan Hong5057b952021-01-07 14:09:57 -0800136
Yifan Hongc65a0542021-01-07 14:21:01 -0800137# See sysprop.mk. If file is moved, add new search paths here; don't remove
138# existing search paths.
139RAMDISK_BUILD_PROP_REL_PATHS = ['system/etc/ramdisk/build.prop']
Tianjie Xu861f4132018-09-12 11:49:33 -0700140
Kelvin Zhang563750f2021-04-28 12:46:17 -0400141
Tianjie Xu209db462016-05-24 17:34:52 -0700142class ErrorCode(object):
143 """Define error_codes for failures that happen during the actual
144 update package installation.
145
146 Error codes 0-999 are reserved for failures before the package
147 installation (i.e. low battery, package verification failure).
148 Detailed code in 'bootable/recovery/error_code.h' """
149
150 SYSTEM_VERIFICATION_FAILURE = 1000
151 SYSTEM_UPDATE_FAILURE = 1001
152 SYSTEM_UNEXPECTED_CONTENTS = 1002
153 SYSTEM_NONZERO_CONTENTS = 1003
154 SYSTEM_RECOVER_FAILURE = 1004
155 VENDOR_VERIFICATION_FAILURE = 2000
156 VENDOR_UPDATE_FAILURE = 2001
157 VENDOR_UNEXPECTED_CONTENTS = 2002
158 VENDOR_NONZERO_CONTENTS = 2003
159 VENDOR_RECOVER_FAILURE = 2004
160 OEM_PROP_MISMATCH = 3000
161 FINGERPRINT_MISMATCH = 3001
162 THUMBPRINT_MISMATCH = 3002
163 OLDER_BUILD = 3003
164 DEVICE_MISMATCH = 3004
165 BAD_PATCH_FILE = 3005
166 INSUFFICIENT_CACHE_SPACE = 3006
167 TUNE_PARTITION_FAILURE = 3007
168 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800169
Tao Bao80921982018-03-21 21:02:19 -0700170
Dan Albert8b72aef2015-03-23 19:13:21 -0700171class ExternalError(RuntimeError):
172 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700173
174
Tao Bao32fcdab2018-10-12 10:30:39 -0700175def InitLogging():
176 DEFAULT_LOGGING_CONFIG = {
177 'version': 1,
178 'disable_existing_loggers': False,
179 'formatters': {
180 'standard': {
181 'format':
182 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
183 'datefmt': '%Y-%m-%d %H:%M:%S',
184 },
185 },
186 'handlers': {
187 'default': {
188 'class': 'logging.StreamHandler',
189 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700190 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700191 },
192 },
193 'loggers': {
194 '': {
195 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700196 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700197 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700198 }
199 }
200 }
201 env_config = os.getenv('LOGGING_CONFIG')
202 if env_config:
203 with open(env_config) as f:
204 config = json.load(f)
205 else:
206 config = DEFAULT_LOGGING_CONFIG
207
208 # Increase the logging level for verbose mode.
209 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700210 config = copy.deepcopy(config)
211 config['handlers']['default']['level'] = 'INFO'
212
213 if OPTIONS.logfile:
214 config = copy.deepcopy(config)
215 config['handlers']['logfile'] = {
Kelvin Zhang0876c412020-06-23 15:06:58 -0400216 'class': 'logging.FileHandler',
217 'formatter': 'standard',
218 'level': 'INFO',
219 'mode': 'w',
220 'filename': OPTIONS.logfile,
Yifan Hong30910932019-10-25 20:36:55 -0700221 }
222 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700223
224 logging.config.dictConfig(config)
225
226
Yifan Hong8e332ff2020-07-29 17:51:55 -0700227def SetHostToolLocation(tool_name, location):
228 OPTIONS.host_tools[tool_name] = location
229
Kelvin Zhang563750f2021-04-28 12:46:17 -0400230
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900231def FindHostToolPath(tool_name):
232 """Finds the path to the host tool.
233
234 Args:
235 tool_name: name of the tool to find
236 Returns:
237 path to the tool if found under either one of the host_tools map or under
238 the same directory as this binary is located at. If not found, tool_name
239 is returned.
240 """
241 if tool_name in OPTIONS.host_tools:
242 return OPTIONS.host_tools[tool_name]
243
244 my_dir = os.path.dirname(os.path.realpath(sys.argv[0]))
245 tool_path = os.path.join(my_dir, tool_name)
246 if os.path.exists(tool_path):
247 return tool_path
248
249 return tool_name
Yifan Hong8e332ff2020-07-29 17:51:55 -0700250
Kelvin Zhang563750f2021-04-28 12:46:17 -0400251
Tao Bao39451582017-05-04 11:10:47 -0700252def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700253 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700254
Tao Bao73dd4f42018-10-04 16:25:33 -0700255 Args:
256 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700257 verbose: Whether the commands should be shown. Default to the global
258 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700259 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
260 stdin, etc. stdout and stderr will default to subprocess.PIPE and
261 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800262 universal_newlines will default to True, as most of the users in
263 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700264
265 Returns:
266 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700267 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700268 if 'stdout' not in kwargs and 'stderr' not in kwargs:
269 kwargs['stdout'] = subprocess.PIPE
270 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800271 if 'universal_newlines' not in kwargs:
272 kwargs['universal_newlines'] = True
Yifan Hong8e332ff2020-07-29 17:51:55 -0700273
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900274 if args:
275 # Make a copy of args in case client relies on the content of args later.
Yifan Hong8e332ff2020-07-29 17:51:55 -0700276 args = args[:]
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900277 args[0] = FindHostToolPath(args[0])
Yifan Hong8e332ff2020-07-29 17:51:55 -0700278
Kelvin Zhang766eea72021-06-03 09:36:08 -0400279 if verbose is None:
280 verbose = OPTIONS.verbose
281
Tao Bao32fcdab2018-10-12 10:30:39 -0700282 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400283 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700284 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700285 return subprocess.Popen(args, **kwargs)
286
287
Tao Bao986ee862018-10-04 15:46:16 -0700288def RunAndCheckOutput(args, verbose=None, **kwargs):
289 """Runs the given command and returns the output.
290
291 Args:
292 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700293 verbose: Whether the commands should be shown. Default to the global
294 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700295 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
296 stdin, etc. stdout and stderr will default to subprocess.PIPE and
297 subprocess.STDOUT respectively unless caller specifies any of them.
298
299 Returns:
300 The output string.
301
302 Raises:
303 ExternalError: On non-zero exit from the command.
304 """
Tao Bao986ee862018-10-04 15:46:16 -0700305 proc = Run(args, verbose=verbose, **kwargs)
306 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800307 if output is None:
308 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700309 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400310 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700311 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700312 if proc.returncode != 0:
313 raise ExternalError(
314 "Failed to run command '{}' (exit code {}):\n{}".format(
315 args, proc.returncode, output))
316 return output
317
318
Tao Baoc765cca2018-01-31 17:32:40 -0800319def RoundUpTo4K(value):
320 rounded_up = value + 4095
321 return rounded_up - (rounded_up % 4096)
322
323
Ying Wang7e6d4e42010-12-13 16:25:36 -0800324def CloseInheritedPipes():
325 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
326 before doing other work."""
327 if platform.system() != "Darwin":
328 return
329 for d in range(3, 1025):
330 try:
331 stat = os.fstat(d)
332 if stat is not None:
333 pipebit = stat[0] & 0x1000
334 if pipebit != 0:
335 os.close(d)
336 except OSError:
337 pass
338
339
Tao Bao1c320f82019-10-04 23:25:12 -0700340class BuildInfo(object):
341 """A class that holds the information for a given build.
342
343 This class wraps up the property querying for a given source or target build.
344 It abstracts away the logic of handling OEM-specific properties, and caches
345 the commonly used properties such as fingerprint.
346
347 There are two types of info dicts: a) build-time info dict, which is generated
348 at build time (i.e. included in a target_files zip); b) OEM info dict that is
349 specified at package generation time (via command line argument
350 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
351 having "oem_fingerprint_properties" in build-time info dict), all the queries
352 would be answered based on build-time info dict only. Otherwise if using
353 OEM-specific properties, some of them will be calculated from two info dicts.
354
355 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800356 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700357
358 Attributes:
359 info_dict: The build-time info dict.
360 is_ab: Whether it's a build that uses A/B OTA.
361 oem_dicts: A list of OEM dicts.
362 oem_props: A list of OEM properties that should be read from OEM dicts; None
363 if the build doesn't use any OEM-specific property.
364 fingerprint: The fingerprint of the build, which would be calculated based
365 on OEM properties if applicable.
366 device: The device name, which could come from OEM dicts if applicable.
367 """
368
369 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
370 "ro.product.manufacturer", "ro.product.model",
371 "ro.product.name"]
Steven Laver8e2086e2020-04-27 16:26:31 -0700372 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
373 "product", "odm", "vendor", "system_ext", "system"]
374 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
375 "product", "product_services", "odm", "vendor", "system"]
376 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700377
Tianjiefdda51d2021-05-05 14:46:35 -0700378 # The length of vbmeta digest to append to the fingerprint
379 _VBMETA_DIGEST_SIZE_USED = 8
380
381 def __init__(self, info_dict, oem_dicts=None, use_legacy_id=False):
Tao Bao1c320f82019-10-04 23:25:12 -0700382 """Initializes a BuildInfo instance with the given dicts.
383
384 Note that it only wraps up the given dicts, without making copies.
385
386 Arguments:
387 info_dict: The build-time info dict.
388 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
389 that it always uses the first dict to calculate the fingerprint or the
390 device name. The rest would be used for asserting OEM properties only
391 (e.g. one package can be installed on one of these devices).
Tianjiefdda51d2021-05-05 14:46:35 -0700392 use_legacy_id: Use the legacy build id to construct the fingerprint. This
393 is used when we need a BuildInfo class, while the vbmeta digest is
394 unavailable.
Tao Bao1c320f82019-10-04 23:25:12 -0700395
396 Raises:
397 ValueError: On invalid inputs.
398 """
399 self.info_dict = info_dict
400 self.oem_dicts = oem_dicts
401
402 self._is_ab = info_dict.get("ab_update") == "true"
Tianjiefdda51d2021-05-05 14:46:35 -0700403 self.use_legacy_id = use_legacy_id
Tao Bao1c320f82019-10-04 23:25:12 -0700404
Hongguang Chend7c160f2020-05-03 21:24:26 -0700405 # Skip _oem_props if oem_dicts is None to use BuildInfo in
406 # sign_target_files_apks
407 if self.oem_dicts:
408 self._oem_props = info_dict.get("oem_fingerprint_properties")
409 else:
410 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700411
Daniel Normand5fe8622020-01-08 17:01:11 -0800412 def check_fingerprint(fingerprint):
413 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
414 raise ValueError(
415 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
416 "3.2.2. Build Parameters.".format(fingerprint))
417
Daniel Normand5fe8622020-01-08 17:01:11 -0800418 self._partition_fingerprints = {}
Yifan Hong5057b952021-01-07 14:09:57 -0800419 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800420 try:
421 fingerprint = self.CalculatePartitionFingerprint(partition)
422 check_fingerprint(fingerprint)
423 self._partition_fingerprints[partition] = fingerprint
424 except ExternalError:
425 continue
426 if "system" in self._partition_fingerprints:
Yifan Hong5057b952021-01-07 14:09:57 -0800427 # system_other is not included in PARTITIONS_WITH_BUILD_PROP, but does
Daniel Normand5fe8622020-01-08 17:01:11 -0800428 # need a fingerprint when creating the image.
429 self._partition_fingerprints[
430 "system_other"] = self._partition_fingerprints["system"]
431
Tao Bao1c320f82019-10-04 23:25:12 -0700432 # These two should be computed only after setting self._oem_props.
Steve Kondik4b8a85a2010-04-21 11:39:48 -0400433 self._device = info_dict.get("ota_override_device", self.GetOemProperty("ro.product.device"))
Tao Bao1c320f82019-10-04 23:25:12 -0700434 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800435 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700436
437 @property
438 def is_ab(self):
439 return self._is_ab
440
441 @property
442 def device(self):
443 return self._device
444
445 @property
446 def fingerprint(self):
447 return self._fingerprint
448
449 @property
Kelvin Zhang563750f2021-04-28 12:46:17 -0400450 def is_vabc(self):
451 vendor_prop = self.info_dict.get("vendor.build.prop")
452 vabc_enabled = vendor_prop and \
453 vendor_prop.GetProp("ro.virtual_ab.compression.enabled") == "true"
454 return vabc_enabled
455
456 @property
Kelvin Zhangad427382021-08-12 16:19:09 -0700457 def is_vabc_xor(self):
458 vendor_prop = self.info_dict.get("vendor.build.prop")
459 vabc_xor_enabled = vendor_prop and \
460 vendor_prop.GetProp("ro.virtual_ab.compression.xor.enabled") == "true"
461 return vabc_xor_enabled
462
463 @property
Kelvin Zhang10eac082021-06-10 14:32:19 -0400464 def vendor_suppressed_vabc(self):
465 vendor_prop = self.info_dict.get("vendor.build.prop")
466 vabc_suppressed = vendor_prop and \
467 vendor_prop.GetProp("ro.vendor.build.dont_use_vabc")
468 return vabc_suppressed and vabc_suppressed.lower() == "true"
469
470 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700471 def oem_props(self):
472 return self._oem_props
473
474 def __getitem__(self, key):
475 return self.info_dict[key]
476
477 def __setitem__(self, key, value):
478 self.info_dict[key] = value
479
480 def get(self, key, default=None):
481 return self.info_dict.get(key, default)
482
483 def items(self):
484 return self.info_dict.items()
485
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000486 def _GetRawBuildProp(self, prop, partition):
487 prop_file = '{}.build.prop'.format(
488 partition) if partition else 'build.prop'
489 partition_props = self.info_dict.get(prop_file)
490 if not partition_props:
491 return None
492 return partition_props.GetProp(prop)
493
Daniel Normand5fe8622020-01-08 17:01:11 -0800494 def GetPartitionBuildProp(self, prop, partition):
495 """Returns the inquired build property for the provided partition."""
Yifan Hong10482a22021-01-07 14:38:41 -0800496
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000497 # Boot image and init_boot image uses ro.[product.]bootimage instead of boot.
Devin Mooreb5195ff2022-02-11 18:44:26 +0000498 # This comes from the generic ramdisk
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000499 prop_partition = "bootimage" if partition == "boot" or partition == "init_boot" else partition
Yifan Hong10482a22021-01-07 14:38:41 -0800500
Daniel Normand5fe8622020-01-08 17:01:11 -0800501 # If provided a partition for this property, only look within that
502 # partition's build.prop.
503 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
Yifan Hong10482a22021-01-07 14:38:41 -0800504 prop = prop.replace("ro.product", "ro.product.{}".format(prop_partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800505 else:
Yifan Hong10482a22021-01-07 14:38:41 -0800506 prop = prop.replace("ro.", "ro.{}.".format(prop_partition))
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000507
508 prop_val = self._GetRawBuildProp(prop, partition)
509 if prop_val is not None:
510 return prop_val
511 raise ExternalError("couldn't find %s in %s.build.prop" %
512 (prop, partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800513
Tao Bao1c320f82019-10-04 23:25:12 -0700514 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800515 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700516 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
517 return self._ResolveRoProductBuildProp(prop)
518
Tianjiefdda51d2021-05-05 14:46:35 -0700519 if prop == "ro.build.id":
520 return self._GetBuildId()
521
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000522 prop_val = self._GetRawBuildProp(prop, None)
523 if prop_val is not None:
524 return prop_val
525
526 raise ExternalError("couldn't find %s in build.prop" % (prop,))
Tao Bao1c320f82019-10-04 23:25:12 -0700527
528 def _ResolveRoProductBuildProp(self, prop):
529 """Resolves the inquired ro.product.* build property"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000530 prop_val = self._GetRawBuildProp(prop, None)
Tao Bao1c320f82019-10-04 23:25:12 -0700531 if prop_val:
532 return prop_val
533
Steven Laver8e2086e2020-04-27 16:26:31 -0700534 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000535 source_order_val = self._GetRawBuildProp(
536 "ro.product.property_source_order", None)
Tao Bao1c320f82019-10-04 23:25:12 -0700537 if source_order_val:
538 source_order = source_order_val.split(",")
539 else:
Steven Laver8e2086e2020-04-27 16:26:31 -0700540 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700541
542 # Check that all sources in ro.product.property_source_order are valid
Steven Laver8e2086e2020-04-27 16:26:31 -0700543 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700544 raise ExternalError(
545 "Invalid ro.product.property_source_order '{}'".format(source_order))
546
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000547 for source_partition in source_order:
Tao Bao1c320f82019-10-04 23:25:12 -0700548 source_prop = prop.replace(
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000549 "ro.product", "ro.product.{}".format(source_partition), 1)
550 prop_val = self._GetRawBuildProp(source_prop, source_partition)
Tao Bao1c320f82019-10-04 23:25:12 -0700551 if prop_val:
552 return prop_val
553
554 raise ExternalError("couldn't resolve {}".format(prop))
555
Steven Laver8e2086e2020-04-27 16:26:31 -0700556 def _GetRoProductPropsDefaultSourceOrder(self):
557 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
558 # values of these properties for each Android release.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000559 android_codename = self._GetRawBuildProp("ro.build.version.codename", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700560 if android_codename == "REL":
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000561 android_version = self._GetRawBuildProp("ro.build.version.release", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700562 if android_version == "10":
563 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
564 # NOTE: float() conversion of android_version will have rounding error.
565 # We are checking for "9" or less, and using "< 10" is well outside of
566 # possible floating point rounding.
567 try:
568 android_version_val = float(android_version)
569 except ValueError:
570 android_version_val = 0
571 if android_version_val < 10:
572 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
573 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
574
Tianjieb37c5be2020-10-15 21:27:10 -0700575 def _GetPlatformVersion(self):
576 version_sdk = self.GetBuildProp("ro.build.version.sdk")
577 # init code switches to version_release_or_codename (see b/158483506). After
578 # API finalization, release_or_codename will be the same as release. This
579 # is the best effort to support pre-S dev stage builds.
580 if int(version_sdk) >= 30:
581 try:
582 return self.GetBuildProp("ro.build.version.release_or_codename")
583 except ExternalError:
584 logger.warning('Failed to find ro.build.version.release_or_codename')
585
586 return self.GetBuildProp("ro.build.version.release")
587
Tianjiefdda51d2021-05-05 14:46:35 -0700588 def _GetBuildId(self):
589 build_id = self._GetRawBuildProp("ro.build.id", None)
590 if build_id:
591 return build_id
592
593 legacy_build_id = self.GetBuildProp("ro.build.legacy.id")
594 if not legacy_build_id:
595 raise ExternalError("Couldn't find build id in property file")
596
597 if self.use_legacy_id:
598 return legacy_build_id
599
600 # Append the top 8 chars of vbmeta digest to the existing build id. The
601 # logic needs to match the one in init, so that OTA can deliver correctly.
602 avb_enable = self.info_dict.get("avb_enable") == "true"
603 if not avb_enable:
604 raise ExternalError("AVB isn't enabled when using legacy build id")
605
606 vbmeta_digest = self.info_dict.get("vbmeta_digest")
607 if not vbmeta_digest:
608 raise ExternalError("Vbmeta digest isn't provided when using legacy build"
609 " id")
610 if len(vbmeta_digest) < self._VBMETA_DIGEST_SIZE_USED:
611 raise ExternalError("Invalid vbmeta digest " + vbmeta_digest)
612
613 digest_prefix = vbmeta_digest[:self._VBMETA_DIGEST_SIZE_USED]
614 return legacy_build_id + '.' + digest_prefix
615
Tianjieb37c5be2020-10-15 21:27:10 -0700616 def _GetPartitionPlatformVersion(self, partition):
617 try:
618 return self.GetPartitionBuildProp("ro.build.version.release_or_codename",
619 partition)
620 except ExternalError:
621 return self.GetPartitionBuildProp("ro.build.version.release",
622 partition)
623
Tao Bao1c320f82019-10-04 23:25:12 -0700624 def GetOemProperty(self, key):
625 if self.oem_props is not None and key in self.oem_props:
626 return self.oem_dicts[0][key]
627 return self.GetBuildProp(key)
628
Daniel Normand5fe8622020-01-08 17:01:11 -0800629 def GetPartitionFingerprint(self, partition):
630 return self._partition_fingerprints.get(partition, None)
631
632 def CalculatePartitionFingerprint(self, partition):
633 try:
634 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
635 except ExternalError:
636 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
637 self.GetPartitionBuildProp("ro.product.brand", partition),
638 self.GetPartitionBuildProp("ro.product.name", partition),
639 self.GetPartitionBuildProp("ro.product.device", partition),
Tianjieb37c5be2020-10-15 21:27:10 -0700640 self._GetPartitionPlatformVersion(partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800641 self.GetPartitionBuildProp("ro.build.id", partition),
Kelvin Zhang0876c412020-06-23 15:06:58 -0400642 self.GetPartitionBuildProp(
643 "ro.build.version.incremental", partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800644 self.GetPartitionBuildProp("ro.build.type", partition),
645 self.GetPartitionBuildProp("ro.build.tags", partition))
646
Tao Bao1c320f82019-10-04 23:25:12 -0700647 def CalculateFingerprint(self):
648 if self.oem_props is None:
649 try:
650 return self.GetBuildProp("ro.build.fingerprint")
651 except ExternalError:
652 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
653 self.GetBuildProp("ro.product.brand"),
654 self.GetBuildProp("ro.product.name"),
655 self.GetBuildProp("ro.product.device"),
Tianjieb37c5be2020-10-15 21:27:10 -0700656 self._GetPlatformVersion(),
Tao Bao1c320f82019-10-04 23:25:12 -0700657 self.GetBuildProp("ro.build.id"),
658 self.GetBuildProp("ro.build.version.incremental"),
659 self.GetBuildProp("ro.build.type"),
660 self.GetBuildProp("ro.build.tags"))
661 return "%s/%s/%s:%s" % (
662 self.GetOemProperty("ro.product.brand"),
663 self.GetOemProperty("ro.product.name"),
664 self.GetOemProperty("ro.product.device"),
665 self.GetBuildProp("ro.build.thumbprint"))
666
667 def WriteMountOemScript(self, script):
668 assert self.oem_props is not None
669 recovery_mount_options = self.info_dict.get("recovery_mount_options")
670 script.Mount("/oem", recovery_mount_options)
671
672 def WriteDeviceAssertions(self, script, oem_no_mount):
673 # Read the property directly if not using OEM properties.
674 if not self.oem_props:
675 script.AssertDevice(self.device)
676 return
677
678 # Otherwise assert OEM properties.
679 if not self.oem_dicts:
680 raise ExternalError(
681 "No OEM file provided to answer expected assertions")
682
683 for prop in self.oem_props.split():
684 values = []
685 for oem_dict in self.oem_dicts:
686 if prop in oem_dict:
687 values.append(oem_dict[prop])
688 if not values:
689 raise ExternalError(
690 "The OEM file is missing the property %s" % (prop,))
691 script.AssertOemProperty(prop, values, oem_no_mount)
692
693
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000694def ReadFromInputFile(input_file, fn):
695 """Reads the contents of fn from input zipfile or directory."""
696 if isinstance(input_file, zipfile.ZipFile):
697 return input_file.read(fn).decode()
698 else:
699 path = os.path.join(input_file, *fn.split("/"))
700 try:
701 with open(path) as f:
702 return f.read()
703 except IOError as e:
704 if e.errno == errno.ENOENT:
705 raise KeyError(fn)
706
707
Yifan Hong10482a22021-01-07 14:38:41 -0800708def ExtractFromInputFile(input_file, fn):
709 """Extracts the contents of fn from input zipfile or directory into a file."""
710 if isinstance(input_file, zipfile.ZipFile):
711 tmp_file = MakeTempFile(os.path.basename(fn))
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500712 with open(tmp_file, 'wb') as f:
Yifan Hong10482a22021-01-07 14:38:41 -0800713 f.write(input_file.read(fn))
714 return tmp_file
715 else:
716 file = os.path.join(input_file, *fn.split("/"))
717 if not os.path.exists(file):
718 raise KeyError(fn)
719 return file
720
Kelvin Zhang563750f2021-04-28 12:46:17 -0400721
jiajia tangf3f842b2021-03-17 21:49:44 +0800722class RamdiskFormat(object):
723 LZ4 = 1
724 GZ = 2
Yifan Hong10482a22021-01-07 14:38:41 -0800725
Kelvin Zhang563750f2021-04-28 12:46:17 -0400726
jiajia tang836f76b2021-04-02 14:48:26 +0800727def _GetRamdiskFormat(info_dict):
728 if info_dict.get('lz4_ramdisks') == 'true':
729 ramdisk_format = RamdiskFormat.LZ4
730 else:
731 ramdisk_format = RamdiskFormat.GZ
732 return ramdisk_format
733
Kelvin Zhang563750f2021-04-28 12:46:17 -0400734
Tao Bao410ad8b2018-08-24 12:08:38 -0700735def LoadInfoDict(input_file, repacking=False):
736 """Loads the key/value pairs from the given input target_files.
737
Tianjiea85bdf02020-07-29 11:56:19 -0700738 It reads `META/misc_info.txt` file in the target_files input, does validation
Tao Bao410ad8b2018-08-24 12:08:38 -0700739 checks and returns the parsed key/value pairs for to the given build. It's
740 usually called early when working on input target_files files, e.g. when
741 generating OTAs, or signing builds. Note that the function may be called
742 against an old target_files file (i.e. from past dessert releases). So the
743 property parsing needs to be backward compatible.
744
745 In a `META/misc_info.txt`, a few properties are stored as links to the files
746 in the PRODUCT_OUT directory. It works fine with the build system. However,
747 they are no longer available when (re)generating images from target_files zip.
748 When `repacking` is True, redirect these properties to the actual files in the
749 unzipped directory.
750
751 Args:
752 input_file: The input target_files file, which could be an open
753 zipfile.ZipFile instance, or a str for the dir that contains the files
754 unzipped from a target_files file.
755 repacking: Whether it's trying repack an target_files file after loading the
756 info dict (default: False). If so, it will rewrite a few loaded
757 properties (e.g. selinux_fc, root_dir) to point to the actual files in
758 target_files file. When doing repacking, `input_file` must be a dir.
759
760 Returns:
761 A dict that contains the parsed key/value pairs.
762
763 Raises:
764 AssertionError: On invalid input arguments.
765 ValueError: On malformed input values.
766 """
767 if repacking:
768 assert isinstance(input_file, str), \
769 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700770
Doug Zongkerc9253822014-02-04 12:17:58 -0800771 def read_helper(fn):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000772 return ReadFromInputFile(input_file, fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800773
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700774 try:
Michael Runge6e836112014-04-15 17:40:21 -0700775 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700776 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700777 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700778
Tao Bao410ad8b2018-08-24 12:08:38 -0700779 if "recovery_api_version" not in d:
780 raise ValueError("Failed to find 'recovery_api_version'")
781 if "fstab_version" not in d:
782 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800783
Tao Bao410ad8b2018-08-24 12:08:38 -0700784 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700785 # "selinux_fc" properties should point to the file_contexts files
786 # (file_contexts.bin) under META/.
787 for key in d:
788 if key.endswith("selinux_fc"):
789 fc_basename = os.path.basename(d[key])
790 fc_config = os.path.join(input_file, "META", fc_basename)
791 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700792
Daniel Norman72c626f2019-05-13 15:58:14 -0700793 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700794
Tom Cherryd14b8952018-08-09 14:26:00 -0700795 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700796 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700797 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700798 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700799
David Anderson0ec64ac2019-12-06 12:21:18 -0800800 # Redirect {partition}_base_fs_file for each of the named partitions.
Yifan Hongcfb917a2020-05-07 14:58:20 -0700801 for part_name in ["system", "vendor", "system_ext", "product", "odm",
Ramji Jiyani13a41372022-01-27 07:05:08 +0000802 "vendor_dlkm", "odm_dlkm", "system_dlkm"]:
David Anderson0ec64ac2019-12-06 12:21:18 -0800803 key_name = part_name + "_base_fs_file"
804 if key_name not in d:
805 continue
806 basename = os.path.basename(d[key_name])
807 base_fs_file = os.path.join(input_file, "META", basename)
808 if os.path.exists(base_fs_file):
809 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700810 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700811 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800812 "Failed to find %s base fs file: %s", part_name, base_fs_file)
813 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700814
Doug Zongker37974732010-09-16 17:44:38 -0700815 def makeint(key):
816 if key in d:
817 d[key] = int(d[key], 0)
818
819 makeint("recovery_api_version")
820 makeint("blocksize")
821 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700822 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700823 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700824 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700825 makeint("recovery_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800826 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700827
Steve Muckle903a1ca2020-05-07 17:32:10 -0700828 boot_images = "boot.img"
829 if "boot_images" in d:
830 boot_images = d["boot_images"]
831 for b in boot_images.split():
Kelvin Zhang0876c412020-06-23 15:06:58 -0400832 makeint(b.replace(".img", "_size"))
Steve Muckle903a1ca2020-05-07 17:32:10 -0700833
Tao Bao765668f2019-10-04 22:03:00 -0700834 # Load recovery fstab if applicable.
835 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
jiajia tang836f76b2021-04-02 14:48:26 +0800836 ramdisk_format = _GetRamdiskFormat(d)
Tianjie Xucfa86222016-03-07 16:31:19 -0800837
Tianjie Xu861f4132018-09-12 11:49:33 -0700838 # Tries to load the build props for all partitions with care_map, including
839 # system and vendor.
Yifan Hong5057b952021-01-07 14:09:57 -0800840 for partition in PARTITIONS_WITH_BUILD_PROP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800841 partition_prop = "{}.build.prop".format(partition)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000842 d[partition_prop] = PartitionBuildProps.FromInputFile(
jiajia tangf3f842b2021-03-17 21:49:44 +0800843 input_file, partition, ramdisk_format=ramdisk_format)
Tianjie Xu861f4132018-09-12 11:49:33 -0700844 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800845
Tao Bao3ed35d32019-10-07 20:48:48 -0700846 # Set up the salt (based on fingerprint) that will be used when adding AVB
847 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800848 if d.get("avb_enable") == "true":
Tianjiefdda51d2021-05-05 14:46:35 -0700849 build_info = BuildInfo(d, use_legacy_id=True)
Yifan Hong5057b952021-01-07 14:09:57 -0800850 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800851 fingerprint = build_info.GetPartitionFingerprint(partition)
852 if fingerprint:
Kelvin Zhang563750f2021-04-28 12:46:17 -0400853 d["avb_{}_salt".format(partition)] = sha256(
854 fingerprint.encode()).hexdigest()
Tianjiefdda51d2021-05-05 14:46:35 -0700855
856 # Set the vbmeta digest if exists
857 try:
858 d["vbmeta_digest"] = read_helper("META/vbmeta_digest.txt").rstrip()
859 except KeyError:
860 pass
861
Kelvin Zhang39aea442020-08-17 11:04:25 -0400862 try:
863 d["ab_partitions"] = read_helper("META/ab_partitions.txt").split("\n")
864 except KeyError:
865 logger.warning("Can't find META/ab_partitions.txt")
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700866 return d
867
Tao Baod1de6f32017-03-01 16:38:48 -0800868
Daniel Norman4cc9df62019-07-18 10:11:07 -0700869def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900870 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700871 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900872
Daniel Norman4cc9df62019-07-18 10:11:07 -0700873
874def LoadDictionaryFromFile(file_path):
875 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900876 return LoadDictionaryFromLines(lines)
877
878
Michael Runge6e836112014-04-15 17:40:21 -0700879def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700880 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700881 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700882 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700883 if not line or line.startswith("#"):
884 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700885 if "=" in line:
886 name, value = line.split("=", 1)
887 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700888 return d
889
Tao Baod1de6f32017-03-01 16:38:48 -0800890
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000891class PartitionBuildProps(object):
892 """The class holds the build prop of a particular partition.
893
894 This class loads the build.prop and holds the build properties for a given
895 partition. It also partially recognizes the 'import' statement in the
896 build.prop; and calculates alternative values of some specific build
897 properties during runtime.
898
899 Attributes:
900 input_file: a zipped target-file or an unzipped target-file directory.
901 partition: name of the partition.
902 props_allow_override: a list of build properties to search for the
903 alternative values during runtime.
Tianjie Xu9afb2212020-05-10 21:48:15 +0000904 build_props: a dict of build properties for the given partition.
905 prop_overrides: a set of props that are overridden by import.
906 placeholder_values: A dict of runtime variables' values to replace the
907 placeholders in the build.prop file. We expect exactly one value for
908 each of the variables.
jiajia tangf3f842b2021-03-17 21:49:44 +0800909 ramdisk_format: If name is "boot", the format of ramdisk inside the
910 boot image. Otherwise, its value is ignored.
911 Use lz4 to decompress by default. If its value is gzip, use minigzip.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000912 """
Kelvin Zhang0876c412020-06-23 15:06:58 -0400913
Tianjie Xu9afb2212020-05-10 21:48:15 +0000914 def __init__(self, input_file, name, placeholder_values=None):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000915 self.input_file = input_file
916 self.partition = name
917 self.props_allow_override = [props.format(name) for props in [
Tianjie Xu9afb2212020-05-10 21:48:15 +0000918 'ro.product.{}.brand', 'ro.product.{}.name', 'ro.product.{}.device']]
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000919 self.build_props = {}
Tianjie Xu9afb2212020-05-10 21:48:15 +0000920 self.prop_overrides = set()
921 self.placeholder_values = {}
922 if placeholder_values:
923 self.placeholder_values = copy.deepcopy(placeholder_values)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000924
925 @staticmethod
926 def FromDictionary(name, build_props):
927 """Constructs an instance from a build prop dictionary."""
928
929 props = PartitionBuildProps("unknown", name)
930 props.build_props = build_props.copy()
931 return props
932
933 @staticmethod
jiajia tangf3f842b2021-03-17 21:49:44 +0800934 def FromInputFile(input_file, name, placeholder_values=None, ramdisk_format=RamdiskFormat.LZ4):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000935 """Loads the build.prop file and builds the attributes."""
Yifan Hong10482a22021-01-07 14:38:41 -0800936
Devin Mooreafdd7c72021-12-13 22:04:08 +0000937 if name in ("boot", "init_boot"):
Kelvin Zhang563750f2021-04-28 12:46:17 -0400938 data = PartitionBuildProps._ReadBootPropFile(
Devin Mooreafdd7c72021-12-13 22:04:08 +0000939 input_file, name, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800940 else:
941 data = PartitionBuildProps._ReadPartitionPropFile(input_file, name)
942
943 props = PartitionBuildProps(input_file, name, placeholder_values)
944 props._LoadBuildProp(data)
945 return props
946
947 @staticmethod
Devin Mooreafdd7c72021-12-13 22:04:08 +0000948 def _ReadBootPropFile(input_file, partition_name, ramdisk_format):
Yifan Hong10482a22021-01-07 14:38:41 -0800949 """
950 Read build.prop for boot image from input_file.
951 Return empty string if not found.
952 """
Devin Mooreafdd7c72021-12-13 22:04:08 +0000953 image_path = 'IMAGES/' + partition_name + '.img'
Yifan Hong10482a22021-01-07 14:38:41 -0800954 try:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000955 boot_img = ExtractFromInputFile(input_file, image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800956 except KeyError:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000957 logger.warning('Failed to read %s', image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800958 return ''
jiajia tangf3f842b2021-03-17 21:49:44 +0800959 prop_file = GetBootImageBuildProp(boot_img, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800960 if prop_file is None:
961 return ''
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500962 with open(prop_file, "r") as f:
963 return f.read()
Yifan Hong10482a22021-01-07 14:38:41 -0800964
965 @staticmethod
966 def _ReadPartitionPropFile(input_file, name):
967 """
968 Read build.prop for name from input_file.
969 Return empty string if not found.
970 """
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000971 data = ''
972 for prop_file in ['{}/etc/build.prop'.format(name.upper()),
973 '{}/build.prop'.format(name.upper())]:
974 try:
975 data = ReadFromInputFile(input_file, prop_file)
976 break
977 except KeyError:
978 logger.warning('Failed to read %s', prop_file)
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -0800979 if data == '':
980 logger.warning("Failed to read build.prop for partition {}".format(name))
Yifan Hong10482a22021-01-07 14:38:41 -0800981 return data
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000982
Yifan Hong125d0b62020-09-24 17:07:03 -0700983 @staticmethod
984 def FromBuildPropFile(name, build_prop_file):
985 """Constructs an instance from a build prop file."""
986
987 props = PartitionBuildProps("unknown", name)
988 with open(build_prop_file) as f:
989 props._LoadBuildProp(f.read())
990 return props
991
Tianjie Xu9afb2212020-05-10 21:48:15 +0000992 def _LoadBuildProp(self, data):
993 for line in data.split('\n'):
994 line = line.strip()
995 if not line or line.startswith("#"):
996 continue
997 if line.startswith("import"):
998 overrides = self._ImportParser(line)
999 duplicates = self.prop_overrides.intersection(overrides.keys())
1000 if duplicates:
1001 raise ValueError('prop {} is overridden multiple times'.format(
1002 ','.join(duplicates)))
1003 self.prop_overrides = self.prop_overrides.union(overrides.keys())
1004 self.build_props.update(overrides)
1005 elif "=" in line:
1006 name, value = line.split("=", 1)
1007 if name in self.prop_overrides:
1008 raise ValueError('prop {} is set again after overridden by import '
1009 'statement'.format(name))
1010 self.build_props[name] = value
1011
1012 def _ImportParser(self, line):
1013 """Parses the build prop in a given import statement."""
1014
1015 tokens = line.split()
Kelvin Zhang0876c412020-06-23 15:06:58 -04001016 if tokens[0] != 'import' or (len(tokens) != 2 and len(tokens) != 3):
Tianjie Xu9afb2212020-05-10 21:48:15 +00001017 raise ValueError('Unrecognized import statement {}'.format(line))
Hongguang Chenb4702b72020-05-13 18:05:20 -07001018
1019 if len(tokens) == 3:
1020 logger.info("Import %s from %s, skip", tokens[2], tokens[1])
1021 return {}
1022
Tianjie Xu9afb2212020-05-10 21:48:15 +00001023 import_path = tokens[1]
1024 if not re.match(r'^/{}/.*\.prop$'.format(self.partition), import_path):
Kelvin Zhang42ab8282022-02-17 13:07:55 -08001025 logger.warn('Unrecognized import path {}'.format(line))
1026 return {}
Tianjie Xu9afb2212020-05-10 21:48:15 +00001027
1028 # We only recognize a subset of import statement that the init process
1029 # supports. And we can loose the restriction based on how the dynamic
1030 # fingerprint is used in practice. The placeholder format should be
1031 # ${placeholder}, and its value should be provided by the caller through
1032 # the placeholder_values.
1033 for prop, value in self.placeholder_values.items():
1034 prop_place_holder = '${{{}}}'.format(prop)
1035 if prop_place_holder in import_path:
1036 import_path = import_path.replace(prop_place_holder, value)
1037 if '$' in import_path:
1038 logger.info('Unresolved place holder in import path %s', import_path)
1039 return {}
1040
1041 import_path = import_path.replace('/{}'.format(self.partition),
1042 self.partition.upper())
1043 logger.info('Parsing build props override from %s', import_path)
1044
1045 lines = ReadFromInputFile(self.input_file, import_path).split('\n')
1046 d = LoadDictionaryFromLines(lines)
1047 return {key: val for key, val in d.items()
1048 if key in self.props_allow_override}
1049
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001050 def GetProp(self, prop):
1051 return self.build_props.get(prop)
1052
1053
Tianjie Xucfa86222016-03-07 16:31:19 -08001054def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
1055 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001056 class Partition(object):
Yifan Hong65afc072020-04-17 10:08:10 -07001057 def __init__(self, mount_point, fs_type, device, length, context, slotselect):
Dan Albert8b72aef2015-03-23 19:13:21 -07001058 self.mount_point = mount_point
1059 self.fs_type = fs_type
1060 self.device = device
1061 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -07001062 self.context = context
Yifan Hong65afc072020-04-17 10:08:10 -07001063 self.slotselect = slotselect
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001064
1065 try:
Tianjie Xucfa86222016-03-07 16:31:19 -08001066 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001067 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -07001068 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -07001069 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001070
Tao Baod1de6f32017-03-01 16:38:48 -08001071 assert fstab_version == 2
1072
1073 d = {}
1074 for line in data.split("\n"):
1075 line = line.strip()
1076 if not line or line.startswith("#"):
1077 continue
1078
1079 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
1080 pieces = line.split()
1081 if len(pieces) != 5:
1082 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
1083
1084 # Ignore entries that are managed by vold.
1085 options = pieces[4]
1086 if "voldmanaged=" in options:
1087 continue
1088
1089 # It's a good line, parse it.
1090 length = 0
Yifan Hong65afc072020-04-17 10:08:10 -07001091 slotselect = False
Tao Baod1de6f32017-03-01 16:38:48 -08001092 options = options.split(",")
1093 for i in options:
1094 if i.startswith("length="):
1095 length = int(i[7:])
Yifan Hong65afc072020-04-17 10:08:10 -07001096 elif i == "slotselect":
1097 slotselect = True
Doug Zongker086cbb02011-02-17 15:54:20 -08001098 else:
Tao Baod1de6f32017-03-01 16:38:48 -08001099 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -07001100 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001101
Tao Baod1de6f32017-03-01 16:38:48 -08001102 mount_flags = pieces[3]
1103 # Honor the SELinux context if present.
1104 context = None
1105 for i in mount_flags.split(","):
1106 if i.startswith("context="):
1107 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -08001108
Tao Baod1de6f32017-03-01 16:38:48 -08001109 mount_point = pieces[1]
Brint E. Kriebel78222aa2018-02-14 23:02:06 -08001110 if not d.get(mount_point):
1111 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
1112 device=pieces[0], length=length, context=context,
1113 slotselect=slotselect)
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001114
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001115 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001116 # system. Other areas assume system is always at "/system" so point /system
1117 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001118 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -08001119 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001120 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001121 return d
1122
1123
Tao Bao765668f2019-10-04 22:03:00 -07001124def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
1125 """Finds the path to recovery fstab and loads its contents."""
1126 # recovery fstab is only meaningful when installing an update via recovery
1127 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
Yifan Hong65afc072020-04-17 10:08:10 -07001128 if info_dict.get('ab_update') == 'true' and \
1129 info_dict.get("allow_non_ab") != "true":
Tao Bao765668f2019-10-04 22:03:00 -07001130 return None
1131
1132 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
1133 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
1134 # cases, since it may load the info_dict from an old build (e.g. when
1135 # generating incremental OTAs from that build).
1136 system_root_image = info_dict.get('system_root_image') == 'true'
1137 if info_dict.get('no_recovery') != 'true':
1138 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
1139 if isinstance(input_file, zipfile.ZipFile):
1140 if recovery_fstab_path not in input_file.namelist():
1141 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1142 else:
1143 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1144 if not os.path.exists(path):
1145 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1146 return LoadRecoveryFSTab(
1147 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1148 system_root_image)
1149
1150 if info_dict.get('recovery_as_boot') == 'true':
1151 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
1152 if isinstance(input_file, zipfile.ZipFile):
1153 if recovery_fstab_path not in input_file.namelist():
1154 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1155 else:
1156 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1157 if not os.path.exists(path):
1158 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1159 return LoadRecoveryFSTab(
1160 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1161 system_root_image)
1162
1163 return None
1164
1165
Doug Zongker37974732010-09-16 17:44:38 -07001166def DumpInfoDict(d):
1167 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -07001168 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -07001169
Dan Albert8b72aef2015-03-23 19:13:21 -07001170
Daniel Norman55417142019-11-25 16:04:36 -08001171def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001172 """Merges dynamic partition info variables.
1173
1174 Args:
1175 framework_dict: The dictionary of dynamic partition info variables from the
1176 partial framework target files.
1177 vendor_dict: The dictionary of dynamic partition info variables from the
1178 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001179
1180 Returns:
1181 The merged dynamic partition info dictionary.
1182 """
Daniel Normanb0c75912020-09-24 14:30:21 -07001183
1184 def uniq_concat(a, b):
1185 combined = set(a.split(" "))
1186 combined.update(set(b.split(" ")))
1187 combined = [item.strip() for item in combined if item.strip()]
1188 return " ".join(sorted(combined))
1189
1190 if (framework_dict.get("use_dynamic_partitions") !=
Kelvin Zhangf4406ca2022-05-02 12:19:45 -07001191 "true") or (vendor_dict.get("use_dynamic_partitions") != "true"):
Daniel Normanb0c75912020-09-24 14:30:21 -07001192 raise ValueError("Both dictionaries must have use_dynamic_partitions=true")
1193
1194 merged_dict = {"use_dynamic_partitions": "true"}
Kelvin Zhangf4406ca2022-05-02 12:19:45 -07001195 # For keys-value pairs that are the same, copy to merged dict
1196 for key in vendor_dict.keys():
1197 if key in framework_dict and framework_dict[key] == vendor_dict[key]:
1198 merged_dict[key] = vendor_dict[key]
Daniel Normanb0c75912020-09-24 14:30:21 -07001199
1200 merged_dict["dynamic_partition_list"] = uniq_concat(
1201 framework_dict.get("dynamic_partition_list", ""),
1202 vendor_dict.get("dynamic_partition_list", ""))
1203
1204 # Super block devices are defined by the vendor dict.
1205 if "super_block_devices" in vendor_dict:
1206 merged_dict["super_block_devices"] = vendor_dict["super_block_devices"]
1207 for block_device in merged_dict["super_block_devices"].split(" "):
1208 key = "super_%s_device_size" % block_device
1209 if key not in vendor_dict:
1210 raise ValueError("Vendor dict does not contain required key %s." % key)
1211 merged_dict[key] = vendor_dict[key]
1212
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001213 # Partition groups and group sizes are defined by the vendor dict because
1214 # these values may vary for each board that uses a shared system image.
1215 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001216 for partition_group in merged_dict["super_partition_groups"].split(" "):
1217 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -08001218 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001219 if key not in vendor_dict:
1220 raise ValueError("Vendor dict does not contain required key %s." % key)
1221 merged_dict[key] = vendor_dict[key]
1222
1223 # Set the partition group's partition list using a concatenation of the
1224 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -08001225 key = "super_%s_partition_list" % partition_group
Daniel Normanb0c75912020-09-24 14:30:21 -07001226 merged_dict[key] = uniq_concat(
1227 framework_dict.get(key, ""), vendor_dict.get(key, ""))
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +05301228
Daniel Normanb0c75912020-09-24 14:30:21 -07001229 # Various other flags should be copied from the vendor dict, if defined.
1230 for key in ("virtual_ab", "virtual_ab_retrofit", "lpmake",
1231 "super_metadata_device", "super_partition_error_limit",
1232 "super_partition_size"):
1233 if key in vendor_dict.keys():
1234 merged_dict[key] = vendor_dict[key]
1235
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001236 return merged_dict
1237
1238
Daniel Norman21c34f72020-11-11 17:25:50 -08001239def PartitionMapFromTargetFiles(target_files_dir):
1240 """Builds a map from partition -> path within an extracted target files directory."""
1241 # Keep possible_subdirs in sync with build/make/core/board_config.mk.
1242 possible_subdirs = {
1243 "system": ["SYSTEM"],
1244 "vendor": ["VENDOR", "SYSTEM/vendor"],
1245 "product": ["PRODUCT", "SYSTEM/product"],
1246 "system_ext": ["SYSTEM_EXT", "SYSTEM/system_ext"],
1247 "odm": ["ODM", "VENDOR/odm", "SYSTEM/vendor/odm"],
1248 "vendor_dlkm": [
1249 "VENDOR_DLKM", "VENDOR/vendor_dlkm", "SYSTEM/vendor/vendor_dlkm"
1250 ],
1251 "odm_dlkm": ["ODM_DLKM", "VENDOR/odm_dlkm", "SYSTEM/vendor/odm_dlkm"],
Ramji Jiyani13a41372022-01-27 07:05:08 +00001252 "system_dlkm": ["SYSTEM_DLKM", "SYSTEM/system_dlkm"],
Daniel Norman21c34f72020-11-11 17:25:50 -08001253 }
1254 partition_map = {}
1255 for partition, subdirs in possible_subdirs.items():
1256 for subdir in subdirs:
1257 if os.path.exists(os.path.join(target_files_dir, subdir)):
1258 partition_map[partition] = subdir
1259 break
1260 return partition_map
1261
1262
Daniel Normand3351562020-10-29 12:33:11 -07001263def SharedUidPartitionViolations(uid_dict, partition_groups):
1264 """Checks for APK sharedUserIds that cross partition group boundaries.
1265
1266 This uses a single or merged build's shareduid_violation_modules.json
1267 output file, as generated by find_shareduid_violation.py or
1268 core/tasks/find-shareduid-violation.mk.
1269
1270 An error is defined as a sharedUserId that is found in a set of partitions
1271 that span more than one partition group.
1272
1273 Args:
1274 uid_dict: A dictionary created by using the standard json module to read a
1275 complete shareduid_violation_modules.json file.
1276 partition_groups: A list of groups, where each group is a list of
1277 partitions.
1278
1279 Returns:
1280 A list of error messages.
1281 """
1282 errors = []
1283 for uid, partitions in uid_dict.items():
1284 found_in_groups = [
1285 group for group in partition_groups
1286 if set(partitions.keys()) & set(group)
1287 ]
1288 if len(found_in_groups) > 1:
1289 errors.append(
1290 "APK sharedUserId \"%s\" found across partition groups in partitions \"%s\""
1291 % (uid, ",".join(sorted(partitions.keys()))))
1292 return errors
1293
1294
Daniel Norman21c34f72020-11-11 17:25:50 -08001295def RunHostInitVerifier(product_out, partition_map):
1296 """Runs host_init_verifier on the init rc files within partitions.
1297
1298 host_init_verifier searches the etc/init path within each partition.
1299
1300 Args:
1301 product_out: PRODUCT_OUT directory, containing partition directories.
1302 partition_map: A map of partition name -> relative path within product_out.
1303 """
1304 allowed_partitions = ("system", "system_ext", "product", "vendor", "odm")
1305 cmd = ["host_init_verifier"]
1306 for partition, path in partition_map.items():
1307 if partition not in allowed_partitions:
1308 raise ExternalError("Unable to call host_init_verifier for partition %s" %
1309 partition)
1310 cmd.extend(["--out_%s" % partition, os.path.join(product_out, path)])
1311 # Add --property-contexts if the file exists on the partition.
1312 property_contexts = "%s_property_contexts" % (
1313 "plat" if partition == "system" else partition)
1314 property_contexts_path = os.path.join(product_out, path, "etc", "selinux",
1315 property_contexts)
1316 if os.path.exists(property_contexts_path):
1317 cmd.append("--property-contexts=%s" % property_contexts_path)
1318 # Add the passwd file if the file exists on the partition.
1319 passwd_path = os.path.join(product_out, path, "etc", "passwd")
1320 if os.path.exists(passwd_path):
1321 cmd.extend(["-p", passwd_path])
1322 return RunAndCheckOutput(cmd)
1323
1324
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001325def AppendAVBSigningArgs(cmd, partition):
1326 """Append signing arguments for avbtool."""
1327 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
1328 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -07001329 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
1330 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1331 if os.path.exists(new_key_path):
1332 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001333 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
1334 if key_path and algorithm:
1335 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -07001336 avb_salt = OPTIONS.info_dict.get("avb_salt")
1337 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -07001338 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -07001339 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001340
1341
Tao Bao765668f2019-10-04 22:03:00 -07001342def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -07001343 """Returns the VBMeta arguments for partition.
1344
1345 It sets up the VBMeta argument by including the partition descriptor from the
1346 given 'image', or by configuring the partition as a chained partition.
1347
1348 Args:
1349 partition: The name of the partition (e.g. "system").
1350 image: The path to the partition image.
1351 info_dict: A dict returned by common.LoadInfoDict(). Will use
1352 OPTIONS.info_dict if None has been given.
1353
1354 Returns:
1355 A list of VBMeta arguments.
1356 """
1357 if info_dict is None:
1358 info_dict = OPTIONS.info_dict
1359
1360 # Check if chain partition is used.
1361 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +08001362 if not key_path:
1363 return ["--include_descriptors_from_image", image]
1364
1365 # For a non-A/B device, we don't chain /recovery nor include its descriptor
1366 # into vbmeta.img. The recovery image will be configured on an independent
1367 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
1368 # See details at
1369 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -07001370 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +08001371 return []
1372
1373 # Otherwise chain the partition into vbmeta.
1374 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
1375 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -07001376
1377
Tao Bao02a08592018-07-22 12:40:45 -07001378def GetAvbChainedPartitionArg(partition, info_dict, key=None):
1379 """Constructs and returns the arg to build or verify a chained partition.
1380
1381 Args:
1382 partition: The partition name.
1383 info_dict: The info dict to look up the key info and rollback index
1384 location.
1385 key: The key to be used for building or verifying the partition. Defaults to
1386 the key listed in info_dict.
1387
1388 Returns:
1389 A string of form "partition:rollback_index_location:key" that can be used to
1390 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -07001391 """
1392 if key is None:
1393 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -07001394 if key and not os.path.exists(key) and OPTIONS.search_path:
1395 new_key_path = os.path.join(OPTIONS.search_path, key)
1396 if os.path.exists(new_key_path):
1397 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -07001398 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -07001399 rollback_index_location = info_dict[
1400 "avb_" + partition + "_rollback_index_location"]
1401 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
1402
1403
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001404def _HasGkiCertificationArgs():
1405 return ("gki_signing_key_path" in OPTIONS.info_dict and
1406 "gki_signing_algorithm" in OPTIONS.info_dict)
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001407
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001408
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001409def _GenerateGkiCertificate(image, image_name):
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001410 key_path = OPTIONS.info_dict.get("gki_signing_key_path")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001411 algorithm = OPTIONS.info_dict.get("gki_signing_algorithm")
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001412
1413 if not os.path.exists(key_path) and OPTIONS.search_path:
1414 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1415 if os.path.exists(new_key_path):
1416 key_path = new_key_path
1417
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001418 # Checks key_path exists, before processing --gki_signing_* args.
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001419 if not os.path.exists(key_path):
Kelvin Zhang563750f2021-04-28 12:46:17 -04001420 raise ExternalError(
1421 'gki_signing_key_path: "{}" not found'.format(key_path))
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001422
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001423 output_certificate = tempfile.NamedTemporaryFile()
1424 cmd = [
1425 "generate_gki_certificate",
1426 "--name", image_name,
1427 "--algorithm", algorithm,
1428 "--key", key_path,
1429 "--output", output_certificate.name,
1430 image,
1431 ]
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001432
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001433 signature_args = OPTIONS.info_dict.get("gki_signing_signature_args", "")
1434 signature_args = signature_args.strip()
1435 if signature_args:
1436 cmd.extend(["--additional_avb_args", signature_args])
1437
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001438 args = OPTIONS.info_dict.get("avb_boot_add_hash_footer_args", "")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001439 args = args.strip()
1440 if args:
1441 cmd.extend(["--additional_avb_args", args])
1442
1443 RunAndCheckOutput(cmd)
1444
1445 output_certificate.seek(os.SEEK_SET, 0)
1446 data = output_certificate.read()
1447 output_certificate.close()
1448 return data
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001449
1450
Daniel Norman276f0622019-07-26 14:13:51 -07001451def BuildVBMeta(image_path, partitions, name, needed_partitions):
1452 """Creates a VBMeta image.
1453
1454 It generates the requested VBMeta image. The requested image could be for
1455 top-level or chained VBMeta image, which is determined based on the name.
1456
1457 Args:
1458 image_path: The output path for the new VBMeta image.
1459 partitions: A dict that's keyed by partition names with image paths as
Hongguang Chenf23364d2020-04-27 18:36:36 -07001460 values. Only valid partition names are accepted, as partitions listed
1461 in common.AVB_PARTITIONS and custom partitions listed in
1462 OPTIONS.info_dict.get("avb_custom_images_partition_list")
Daniel Norman276f0622019-07-26 14:13:51 -07001463 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
1464 needed_partitions: Partitions whose descriptors should be included into the
1465 generated VBMeta image.
1466
1467 Raises:
1468 AssertionError: On invalid input args.
1469 """
1470 avbtool = OPTIONS.info_dict["avb_avbtool"]
1471 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
1472 AppendAVBSigningArgs(cmd, name)
1473
Hongguang Chenf23364d2020-04-27 18:36:36 -07001474 custom_partitions = OPTIONS.info_dict.get(
1475 "avb_custom_images_partition_list", "").strip().split()
1476
Daniel Norman276f0622019-07-26 14:13:51 -07001477 for partition, path in partitions.items():
1478 if partition not in needed_partitions:
1479 continue
1480 assert (partition in AVB_PARTITIONS or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001481 partition in AVB_VBMETA_PARTITIONS or
1482 partition in custom_partitions), \
Daniel Norman276f0622019-07-26 14:13:51 -07001483 'Unknown partition: {}'.format(partition)
1484 assert os.path.exists(path), \
1485 'Failed to find {} for {}'.format(path, partition)
1486 cmd.extend(GetAvbPartitionArg(partition, path))
1487
1488 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1489 if args and args.strip():
1490 split_args = shlex.split(args)
1491 for index, arg in enumerate(split_args[:-1]):
Ivan Lozanob021b2a2020-07-28 09:31:06 -04001492 # Check that the image file exists. Some images might be defined
Daniel Norman276f0622019-07-26 14:13:51 -07001493 # as a path relative to source tree, which may not be available at the
1494 # same location when running this script (we have the input target_files
1495 # zip only). For such cases, we additionally scan other locations (e.g.
1496 # IMAGES/, RADIO/, etc) before bailing out.
1497 if arg == '--include_descriptors_from_image':
Tianjie Xueaed60c2020-03-12 00:33:28 -07001498 chained_image = split_args[index + 1]
1499 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001500 continue
1501 found = False
1502 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1503 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001504 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001505 if os.path.exists(alt_path):
1506 split_args[index + 1] = alt_path
1507 found = True
1508 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001509 assert found, 'Failed to find {}'.format(chained_image)
Daniel Norman276f0622019-07-26 14:13:51 -07001510 cmd.extend(split_args)
1511
1512 RunAndCheckOutput(cmd)
1513
1514
jiajia tang836f76b2021-04-02 14:48:26 +08001515def _MakeRamdisk(sourcedir, fs_config_file=None,
1516 ramdisk_format=RamdiskFormat.GZ):
Steve Mucklee1b10862019-07-10 10:49:37 -07001517 ramdisk_img = tempfile.NamedTemporaryFile()
1518
1519 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1520 cmd = ["mkbootfs", "-f", fs_config_file,
1521 os.path.join(sourcedir, "RAMDISK")]
1522 else:
1523 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1524 p1 = Run(cmd, stdout=subprocess.PIPE)
jiajia tang836f76b2021-04-02 14:48:26 +08001525 if ramdisk_format == RamdiskFormat.LZ4:
Kelvin Zhangcff4d762020-07-29 16:37:51 -04001526 p2 = Run(["lz4", "-l", "-12", "--favor-decSpeed"], stdin=p1.stdout,
J. Avila98cd4cc2020-06-10 20:09:10 +00001527 stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001528 elif ramdisk_format == RamdiskFormat.GZ:
J. Avila98cd4cc2020-06-10 20:09:10 +00001529 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001530 else:
1531 raise ValueError("Only support lz4 or minigzip ramdisk format.")
Steve Mucklee1b10862019-07-10 10:49:37 -07001532
1533 p2.wait()
1534 p1.wait()
1535 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
J. Avila98cd4cc2020-06-10 20:09:10 +00001536 assert p2.returncode == 0, "compression of %s ramdisk failed" % (sourcedir,)
Steve Mucklee1b10862019-07-10 10:49:37 -07001537
1538 return ramdisk_img
1539
1540
Steve Muckle9793cf62020-04-08 18:27:00 -07001541def _BuildBootableImage(image_name, sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001542 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001543 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001544
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001545 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001546 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1547 we are building a two-step special image (i.e. building a recovery image to
1548 be loaded into /boot in two-step OTAs).
1549
1550 Return the image data, or None if sourcedir does not appear to contains files
1551 for building the requested image.
1552 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001553
Yifan Hong63c5ca12020-10-08 11:54:02 -07001554 if info_dict is None:
1555 info_dict = OPTIONS.info_dict
1556
Steve Muckle9793cf62020-04-08 18:27:00 -07001557 # "boot" or "recovery", without extension.
1558 partition_name = os.path.basename(sourcedir).lower()
1559
Yifan Hong63c5ca12020-10-08 11:54:02 -07001560 kernel = None
Steve Muckle9793cf62020-04-08 18:27:00 -07001561 if partition_name == "recovery":
Yifan Hong63c5ca12020-10-08 11:54:02 -07001562 if info_dict.get("exclude_kernel_from_recovery_image") == "true":
1563 logger.info("Excluded kernel binary from recovery image.")
1564 else:
1565 kernel = "kernel"
Devin Mooreafdd7c72021-12-13 22:04:08 +00001566 elif partition_name == "init_boot":
1567 pass
Steve Muckle9793cf62020-04-08 18:27:00 -07001568 else:
1569 kernel = image_name.replace("boot", "kernel")
Kelvin Zhang0876c412020-06-23 15:06:58 -04001570 kernel = kernel.replace(".img", "")
Yifan Hong63c5ca12020-10-08 11:54:02 -07001571 if kernel and not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001572 return None
1573
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001574 kernel_path = os.path.join(sourcedir, kernel) if kernel else None
1575
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001576 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001577 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001578
Doug Zongkereef39442009-04-02 12:14:19 -07001579 img = tempfile.NamedTemporaryFile()
1580
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001581 if has_ramdisk:
jiajia tang836f76b2021-04-02 14:48:26 +08001582 ramdisk_format = _GetRamdiskFormat(info_dict)
1583 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file,
1584 ramdisk_format=ramdisk_format)
Doug Zongkereef39442009-04-02 12:14:19 -07001585
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001586 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1587 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1588
Yifan Hong63c5ca12020-10-08 11:54:02 -07001589 cmd = [mkbootimg]
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001590 if kernel_path is not None:
1591 cmd.extend(["--kernel", kernel_path])
Doug Zongker38a649f2009-06-17 09:07:09 -07001592
Benoit Fradina45a8682014-07-14 21:00:43 +02001593 fn = os.path.join(sourcedir, "second")
1594 if os.access(fn, os.F_OK):
1595 cmd.append("--second")
1596 cmd.append(fn)
1597
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001598 fn = os.path.join(sourcedir, "dtb")
1599 if os.access(fn, os.F_OK):
1600 cmd.append("--dtb")
1601 cmd.append(fn)
1602
Doug Zongker171f1cd2009-06-15 22:36:37 -07001603 fn = os.path.join(sourcedir, "cmdline")
1604 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001605 cmd.append("--cmdline")
1606 cmd.append(open(fn).read().rstrip("\n"))
1607
1608 fn = os.path.join(sourcedir, "base")
1609 if os.access(fn, os.F_OK):
1610 cmd.append("--base")
1611 cmd.append(open(fn).read().rstrip("\n"))
1612
Ying Wang4de6b5b2010-08-25 14:29:34 -07001613 fn = os.path.join(sourcedir, "pagesize")
1614 if os.access(fn, os.F_OK):
1615 cmd.append("--pagesize")
1616 cmd.append(open(fn).read().rstrip("\n"))
1617
Steve Mucklef84668e2020-03-16 19:13:46 -07001618 if partition_name == "recovery":
1619 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddyd8e24ee2020-05-04 19:40:16 +05301620 if not args:
1621 # Fall back to "mkbootimg_args" for recovery image
1622 # in case "recovery_mkbootimg_args" is not set.
1623 args = info_dict.get("mkbootimg_args")
Devin Mooreafdd7c72021-12-13 22:04:08 +00001624 elif partition_name == "init_boot":
1625 args = info_dict.get("mkbootimg_init_args")
Steve Mucklef84668e2020-03-16 19:13:46 -07001626 else:
1627 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001628 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001629 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001630
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001631 args = info_dict.get("mkbootimg_version_args")
1632 if args and args.strip():
1633 cmd.extend(shlex.split(args))
Sami Tolvanen3303d902016-03-15 16:49:30 +00001634
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001635 if has_ramdisk:
1636 cmd.extend(["--ramdisk", ramdisk_img.name])
1637
Tao Baod95e9fd2015-03-29 23:07:41 -07001638 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001639 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001640 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001641 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001642 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001643 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001644
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001645 if partition_name == "recovery":
1646 if info_dict.get("include_recovery_dtbo") == "true":
1647 fn = os.path.join(sourcedir, "recovery_dtbo")
1648 cmd.extend(["--recovery_dtbo", fn])
1649 if info_dict.get("include_recovery_acpio") == "true":
1650 fn = os.path.join(sourcedir, "recovery_acpio")
1651 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001652
Tao Bao986ee862018-10-04 15:46:16 -07001653 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001654
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001655 if _HasGkiCertificationArgs():
1656 if not os.path.exists(img.name):
1657 raise ValueError("Cannot find GKI boot.img")
1658 if kernel_path is None or not os.path.exists(kernel_path):
1659 raise ValueError("Cannot find GKI kernel.img")
1660
1661 # Certify GKI images.
1662 boot_signature_bytes = b''
1663 boot_signature_bytes += _GenerateGkiCertificate(img.name, "boot")
1664 boot_signature_bytes += _GenerateGkiCertificate(
1665 kernel_path, "generic_kernel")
1666
1667 BOOT_SIGNATURE_SIZE = 16 * 1024
1668 if len(boot_signature_bytes) > BOOT_SIGNATURE_SIZE:
1669 raise ValueError(
1670 f"GKI boot_signature size must be <= {BOOT_SIGNATURE_SIZE}")
1671 boot_signature_bytes += (
1672 b'\0' * (BOOT_SIGNATURE_SIZE - len(boot_signature_bytes)))
1673 assert len(boot_signature_bytes) == BOOT_SIGNATURE_SIZE
1674
1675 with open(img.name, 'ab') as f:
1676 f.write(boot_signature_bytes)
1677
Tao Bao76def242017-11-21 09:25:31 -08001678 if (info_dict.get("boot_signer") == "true" and
Kelvin Zhang563750f2021-04-28 12:46:17 -04001679 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001680 # Hard-code the path as "/boot" for two-step special recovery image (which
1681 # will be loaded into /boot during the two-step OTA).
1682 if two_step_image:
1683 path = "/boot"
1684 else:
Tao Baobf70c312017-07-11 17:27:55 -07001685 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001686 cmd = [OPTIONS.boot_signer_path]
1687 cmd.extend(OPTIONS.boot_signer_args)
1688 cmd.extend([path, img.name,
1689 info_dict["verity_key"] + ".pk8",
1690 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001691 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001692
Tao Baod95e9fd2015-03-29 23:07:41 -07001693 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001694 elif info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001695 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001696 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001697 # We have switched from the prebuilt futility binary to using the tool
1698 # (futility-host) built from the source. Override the setting in the old
1699 # TF.zip.
1700 futility = info_dict["futility"]
1701 if futility.startswith("prebuilts/"):
1702 futility = "futility-host"
1703 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001704 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001705 info_dict["vboot_key"] + ".vbprivk",
1706 info_dict["vboot_subkey"] + ".vbprivk",
1707 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001708 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001709 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001710
Tao Baof3282b42015-04-01 11:21:55 -07001711 # Clean up the temp files.
1712 img_unsigned.close()
1713 img_keyblock.close()
1714
David Zeuthen8fecb282017-12-01 16:24:01 -05001715 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001716 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001717 avbtool = info_dict["avb_avbtool"]
Steve Muckle903a1ca2020-05-07 17:32:10 -07001718 if partition_name == "recovery":
1719 part_size = info_dict["recovery_size"]
1720 else:
Kelvin Zhang0876c412020-06-23 15:06:58 -04001721 part_size = info_dict[image_name.replace(".img", "_size")]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001722 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001723 "--partition_size", str(part_size), "--partition_name",
1724 partition_name]
1725 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001726 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001727 if args and args.strip():
1728 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001729 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001730
1731 img.seek(os.SEEK_SET, 0)
1732 data = img.read()
1733
1734 if has_ramdisk:
1735 ramdisk_img.close()
1736 img.close()
1737
1738 return data
1739
1740
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001741def _SignBootableImage(image_path, prebuilt_name, partition_name,
1742 info_dict=None):
1743 """Performs AVB signing for a prebuilt boot.img.
1744
1745 Args:
1746 image_path: The full path of the image, e.g., /path/to/boot.img.
1747 prebuilt_name: The prebuilt image name, e.g., boot.img, boot-5.4-gz.img,
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001748 boot-5.10.img, recovery.img or init_boot.img.
1749 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001750 info_dict: The information dict read from misc_info.txt.
1751 """
1752 if info_dict is None:
1753 info_dict = OPTIONS.info_dict
1754
1755 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
1756 if info_dict.get("avb_enable") == "true":
1757 avbtool = info_dict["avb_avbtool"]
1758 if partition_name == "recovery":
1759 part_size = info_dict["recovery_size"]
1760 else:
1761 part_size = info_dict[prebuilt_name.replace(".img", "_size")]
1762
1763 cmd = [avbtool, "add_hash_footer", "--image", image_path,
1764 "--partition_size", str(part_size), "--partition_name",
1765 partition_name]
1766 AppendAVBSigningArgs(cmd, partition_name)
1767 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
1768 if args and args.strip():
1769 cmd.extend(shlex.split(args))
1770 RunAndCheckOutput(cmd)
1771
1772
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001773def HasRamdisk(partition_name, info_dict=None):
1774 """Returns true/false to see if a bootable image should have a ramdisk.
1775
1776 Args:
1777 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
1778 info_dict: The information dict read from misc_info.txt.
1779 """
1780 if info_dict is None:
1781 info_dict = OPTIONS.info_dict
1782
1783 if partition_name != "boot":
1784 return True # init_boot.img or recovery.img has a ramdisk.
1785
1786 if info_dict.get("recovery_as_boot") == "true":
1787 return True # the recovery-as-boot boot.img has a RECOVERY ramdisk.
1788
Bowgo Tsai85578e02022-04-19 10:50:59 +08001789 if info_dict.get("gki_boot_image_without_ramdisk") == "true":
1790 return False # A GKI boot.img has no ramdisk since Android-13.
1791
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001792 if info_dict.get("system_root_image") == "true":
1793 # The ramdisk content is merged into the system.img, so there is NO
1794 # ramdisk in the boot.img or boot-<kernel version>.img.
1795 return False
1796
1797 if info_dict.get("init_boot") == "true":
1798 # The ramdisk is moved to the init_boot.img, so there is NO
1799 # ramdisk in the boot.img or boot-<kernel version>.img.
1800 return False
1801
1802 return True
1803
1804
Doug Zongkerd5131602012-08-02 14:46:42 -07001805def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001806 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001807 """Return a File object with the desired bootable image.
1808
1809 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1810 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1811 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001812
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001813 if info_dict is None:
1814 info_dict = OPTIONS.info_dict
1815
Doug Zongker55d93282011-01-25 17:03:34 -08001816 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1817 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001818 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001819 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001820
1821 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1822 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001823 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001824 return File.FromLocalFile(name, prebuilt_path)
1825
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001826 partition_name = tree_subdir.lower()
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001827 prebuilt_path = os.path.join(unpack_dir, "PREBUILT_IMAGES", prebuilt_name)
1828 if os.path.exists(prebuilt_path):
1829 logger.info("Re-signing prebuilt %s from PREBUILT_IMAGES...", prebuilt_name)
1830 signed_img = MakeTempFile()
1831 shutil.copy(prebuilt_path, signed_img)
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001832 _SignBootableImage(signed_img, prebuilt_name, partition_name, info_dict)
1833 return File.FromLocalFile(name, signed_img)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001834
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001835 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001836
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001837 has_ramdisk = HasRamdisk(partition_name, info_dict)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001838
Doug Zongker6f1d0312014-08-22 08:07:12 -07001839 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07001840 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001841 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001842 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001843 if data:
1844 return File(name, data)
1845 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001846
Doug Zongkereef39442009-04-02 12:14:19 -07001847
Lucas Wei03230252022-04-18 16:00:40 +08001848def _BuildVendorBootImage(sourcedir, partition_name, info_dict=None):
Steve Mucklee1b10862019-07-10 10:49:37 -07001849 """Build a vendor boot image from the specified sourcedir.
1850
1851 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1852 turn them into a vendor boot image.
1853
1854 Return the image data, or None if sourcedir does not appear to contains files
1855 for building the requested image.
1856 """
1857
1858 if info_dict is None:
1859 info_dict = OPTIONS.info_dict
1860
1861 img = tempfile.NamedTemporaryFile()
1862
jiajia tang836f76b2021-04-02 14:48:26 +08001863 ramdisk_format = _GetRamdiskFormat(info_dict)
1864 ramdisk_img = _MakeRamdisk(sourcedir, ramdisk_format=ramdisk_format)
Steve Mucklee1b10862019-07-10 10:49:37 -07001865
1866 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1867 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1868
1869 cmd = [mkbootimg]
1870
1871 fn = os.path.join(sourcedir, "dtb")
1872 if os.access(fn, os.F_OK):
Lucas Wei03230252022-04-18 16:00:40 +08001873 has_vendor_kernel_boot = (info_dict.get("vendor_kernel_boot", "").lower() == "true")
1874
1875 # Pack dtb into vendor_kernel_boot if building vendor_kernel_boot.
1876 # Otherwise pack dtb into vendor_boot.
1877 if not has_vendor_kernel_boot or partition_name == "vendor_kernel_boot":
1878 cmd.append("--dtb")
1879 cmd.append(fn)
Steve Mucklee1b10862019-07-10 10:49:37 -07001880
1881 fn = os.path.join(sourcedir, "vendor_cmdline")
1882 if os.access(fn, os.F_OK):
1883 cmd.append("--vendor_cmdline")
1884 cmd.append(open(fn).read().rstrip("\n"))
1885
1886 fn = os.path.join(sourcedir, "base")
1887 if os.access(fn, os.F_OK):
1888 cmd.append("--base")
1889 cmd.append(open(fn).read().rstrip("\n"))
1890
1891 fn = os.path.join(sourcedir, "pagesize")
1892 if os.access(fn, os.F_OK):
1893 cmd.append("--pagesize")
1894 cmd.append(open(fn).read().rstrip("\n"))
1895
1896 args = info_dict.get("mkbootimg_args")
1897 if args and args.strip():
1898 cmd.extend(shlex.split(args))
1899
1900 args = info_dict.get("mkbootimg_version_args")
1901 if args and args.strip():
1902 cmd.extend(shlex.split(args))
1903
1904 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1905 cmd.extend(["--vendor_boot", img.name])
1906
Devin Moore50509012021-01-13 10:45:04 -08001907 fn = os.path.join(sourcedir, "vendor_bootconfig")
1908 if os.access(fn, os.F_OK):
1909 cmd.append("--vendor_bootconfig")
1910 cmd.append(fn)
1911
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001912 ramdisk_fragment_imgs = []
1913 fn = os.path.join(sourcedir, "vendor_ramdisk_fragments")
1914 if os.access(fn, os.F_OK):
1915 ramdisk_fragments = shlex.split(open(fn).read().rstrip("\n"))
1916 for ramdisk_fragment in ramdisk_fragments:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001917 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1918 ramdisk_fragment, "mkbootimg_args")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001919 cmd.extend(shlex.split(open(fn).read().rstrip("\n")))
Kelvin Zhang563750f2021-04-28 12:46:17 -04001920 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1921 ramdisk_fragment, "prebuilt_ramdisk")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001922 # Use prebuilt image if found, else create ramdisk from supplied files.
1923 if os.access(fn, os.F_OK):
1924 ramdisk_fragment_pathname = fn
1925 else:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001926 ramdisk_fragment_root = os.path.join(
1927 sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment)
jiajia tang836f76b2021-04-02 14:48:26 +08001928 ramdisk_fragment_img = _MakeRamdisk(ramdisk_fragment_root,
1929 ramdisk_format=ramdisk_format)
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001930 ramdisk_fragment_imgs.append(ramdisk_fragment_img)
1931 ramdisk_fragment_pathname = ramdisk_fragment_img.name
1932 cmd.extend(["--vendor_ramdisk_fragment", ramdisk_fragment_pathname])
1933
Steve Mucklee1b10862019-07-10 10:49:37 -07001934 RunAndCheckOutput(cmd)
1935
1936 # AVB: if enabled, calculate and add hash.
1937 if info_dict.get("avb_enable") == "true":
1938 avbtool = info_dict["avb_avbtool"]
Lucas Wei03230252022-04-18 16:00:40 +08001939 part_size = info_dict[f'{partition_name}_size']
Steve Mucklee1b10862019-07-10 10:49:37 -07001940 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Lucas Wei03230252022-04-18 16:00:40 +08001941 "--partition_size", str(part_size), "--partition_name", partition_name]
1942 AppendAVBSigningArgs(cmd, partition_name)
1943 args = info_dict.get(f'avb_{partition_name}_add_hash_footer_args')
Steve Mucklee1b10862019-07-10 10:49:37 -07001944 if args and args.strip():
1945 cmd.extend(shlex.split(args))
1946 RunAndCheckOutput(cmd)
1947
1948 img.seek(os.SEEK_SET, 0)
1949 data = img.read()
1950
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001951 for f in ramdisk_fragment_imgs:
1952 f.close()
Steve Mucklee1b10862019-07-10 10:49:37 -07001953 ramdisk_img.close()
1954 img.close()
1955
1956 return data
1957
1958
1959def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1960 info_dict=None):
1961 """Return a File object with the desired vendor boot image.
1962
1963 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1964 the source files in 'unpack_dir'/'tree_subdir'."""
1965
1966 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1967 if os.path.exists(prebuilt_path):
1968 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1969 return File.FromLocalFile(name, prebuilt_path)
1970
1971 logger.info("building image from target_files %s...", tree_subdir)
1972
1973 if info_dict is None:
1974 info_dict = OPTIONS.info_dict
1975
Kelvin Zhang0876c412020-06-23 15:06:58 -04001976 data = _BuildVendorBootImage(
Lucas Wei03230252022-04-18 16:00:40 +08001977 os.path.join(unpack_dir, tree_subdir), "vendor_boot", info_dict)
1978 if data:
1979 return File(name, data)
1980 return None
1981
1982
1983def GetVendorKernelBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1984 info_dict=None):
1985 """Return a File object with the desired vendor kernel boot image.
1986
1987 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1988 the source files in 'unpack_dir'/'tree_subdir'."""
1989
1990 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1991 if os.path.exists(prebuilt_path):
1992 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1993 return File.FromLocalFile(name, prebuilt_path)
1994
1995 logger.info("building image from target_files %s...", tree_subdir)
1996
1997 if info_dict is None:
1998 info_dict = OPTIONS.info_dict
1999
2000 data = _BuildVendorBootImage(
2001 os.path.join(unpack_dir, tree_subdir), "vendor_kernel_boot", info_dict)
Steve Mucklee1b10862019-07-10 10:49:37 -07002002 if data:
2003 return File(name, data)
2004 return None
2005
2006
Narayan Kamatha07bf042017-08-14 14:49:21 +01002007def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08002008 """Gunzips the given gzip compressed file to a given output file."""
2009 with gzip.open(in_filename, "rb") as in_file, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04002010 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01002011 shutil.copyfileobj(in_file, out_file)
2012
2013
Tao Bao0ff15de2019-03-20 11:26:06 -07002014def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002015 """Unzips the archive to the given directory.
2016
2017 Args:
2018 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002019 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07002020 patterns: Files to unzip from the archive. If omitted, will unzip the entire
2021 archvie. Non-matching patterns will be filtered out. If there's no match
2022 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002023 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002024 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07002025 if patterns is not None:
2026 # Filter out non-matching patterns. unzip will complain otherwise.
Kelvin Zhang928c2342020-09-22 16:15:57 -04002027 with zipfile.ZipFile(filename, allowZip64=True) as input_zip:
Tao Bao0ff15de2019-03-20 11:26:06 -07002028 names = input_zip.namelist()
2029 filtered = [
2030 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
2031
2032 # There isn't any matching files. Don't unzip anything.
2033 if not filtered:
2034 return
2035 cmd.extend(filtered)
2036
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002037 RunAndCheckOutput(cmd)
2038
2039
Daniel Norman78554ea2021-09-14 10:29:38 -07002040def UnzipTemp(filename, patterns=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08002041 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08002042
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002043 Args:
2044 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
2045 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
2046
Daniel Norman78554ea2021-09-14 10:29:38 -07002047 patterns: Files to unzip from the archive. If omitted, will unzip the entire
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002048 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08002049
Tao Bao1c830bf2017-12-25 10:43:47 -08002050 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08002051 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08002052 """
Doug Zongkereef39442009-04-02 12:14:19 -07002053
Tao Bao1c830bf2017-12-25 10:43:47 -08002054 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08002055 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
2056 if m:
Daniel Norman78554ea2021-09-14 10:29:38 -07002057 UnzipToDir(m.group(1), tmp, patterns)
2058 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002059 filename = m.group(1)
2060 else:
Daniel Norman78554ea2021-09-14 10:29:38 -07002061 UnzipToDir(filename, tmp, patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002062
Tao Baodba59ee2018-01-09 13:21:02 -08002063 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07002064
2065
Yifan Hong8a66a712019-04-04 15:37:57 -07002066def GetUserImage(which, tmpdir, input_zip,
2067 info_dict=None,
2068 allow_shared_blocks=None,
2069 hashtree_info_generator=None,
2070 reset_file_map=False):
2071 """Returns an Image object suitable for passing to BlockImageDiff.
2072
2073 This function loads the specified image from the given path. If the specified
2074 image is sparse, it also performs additional processing for OTA purpose. For
2075 example, it always adds block 0 to clobbered blocks list. It also detects
2076 files that cannot be reconstructed from the block list, for whom we should
2077 avoid applying imgdiff.
2078
2079 Args:
2080 which: The partition name.
2081 tmpdir: The directory that contains the prebuilt image and block map file.
2082 input_zip: The target-files ZIP archive.
2083 info_dict: The dict to be looked up for relevant info.
2084 allow_shared_blocks: If image is sparse, whether having shared blocks is
2085 allowed. If none, it is looked up from info_dict.
2086 hashtree_info_generator: If present and image is sparse, generates the
2087 hashtree_info for this sparse image.
2088 reset_file_map: If true and image is sparse, reset file map before returning
2089 the image.
2090 Returns:
2091 A Image object. If it is a sparse image and reset_file_map is False, the
2092 image will have file_map info loaded.
2093 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002094 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07002095 info_dict = LoadInfoDict(input_zip)
2096
2097 is_sparse = info_dict.get("extfs_sparse_flag")
David Anderson9e95a022021-08-31 21:32:45 -07002098 if info_dict.get(which + "_disable_sparse"):
2099 is_sparse = False
Yifan Hong8a66a712019-04-04 15:37:57 -07002100
2101 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
2102 # shared blocks (i.e. some blocks will show up in multiple files' block
2103 # list). We can only allocate such shared blocks to the first "owner", and
2104 # disable imgdiff for all later occurrences.
2105 if allow_shared_blocks is None:
2106 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
2107
2108 if is_sparse:
2109 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2110 hashtree_info_generator)
2111 if reset_file_map:
2112 img.ResetFileMap()
2113 return img
Kelvin Zhang0876c412020-06-23 15:06:58 -04002114 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
Yifan Hong8a66a712019-04-04 15:37:57 -07002115
2116
2117def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
2118 """Returns a Image object suitable for passing to BlockImageDiff.
2119
2120 This function loads the specified non-sparse image from the given path.
2121
2122 Args:
2123 which: The partition name.
2124 tmpdir: The directory that contains the prebuilt image and block map file.
2125 Returns:
2126 A Image object.
2127 """
2128 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2129 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2130
2131 # The image and map files must have been created prior to calling
2132 # ota_from_target_files.py (since LMP).
2133 assert os.path.exists(path) and os.path.exists(mappath)
2134
Tianjie Xu41976c72019-07-03 13:57:01 -07002135 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
2136
Yifan Hong8a66a712019-04-04 15:37:57 -07002137
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002138def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2139 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08002140 """Returns a SparseImage object suitable for passing to BlockImageDiff.
2141
2142 This function loads the specified sparse image from the given path, and
2143 performs additional processing for OTA purpose. For example, it always adds
2144 block 0 to clobbered blocks list. It also detects files that cannot be
2145 reconstructed from the block list, for whom we should avoid applying imgdiff.
2146
2147 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07002148 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08002149 tmpdir: The directory that contains the prebuilt image and block map file.
2150 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08002151 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002152 hashtree_info_generator: If present, generates the hashtree_info for this
2153 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08002154 Returns:
2155 A SparseImage object, with file_map info loaded.
2156 """
Tao Baoc765cca2018-01-31 17:32:40 -08002157 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2158 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2159
2160 # The image and map files must have been created prior to calling
2161 # ota_from_target_files.py (since LMP).
2162 assert os.path.exists(path) and os.path.exists(mappath)
2163
2164 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
2165 # it to clobbered_blocks so that it will be written to the target
2166 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
2167 clobbered_blocks = "0"
2168
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002169 image = sparse_img.SparseImage(
2170 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
2171 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08002172
2173 # block.map may contain less blocks, because mke2fs may skip allocating blocks
2174 # if they contain all zeros. We can't reconstruct such a file from its block
2175 # list. Tag such entries accordingly. (Bug: 65213616)
2176 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08002177 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07002178 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08002179 continue
2180
Tom Cherryd14b8952018-08-09 14:26:00 -07002181 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
2182 # filename listed in system.map may contain an additional leading slash
2183 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
2184 # results.
wangshumin71af07a2021-02-24 11:08:47 +08002185 # And handle another special case, where files not under /system
Tom Cherryd14b8952018-08-09 14:26:00 -07002186 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
wangshumin71af07a2021-02-24 11:08:47 +08002187 arcname = entry.lstrip('/')
2188 if which == 'system' and not arcname.startswith('system'):
Tao Baod3554e62018-07-10 15:31:22 -07002189 arcname = 'ROOT/' + arcname
wangshumin71af07a2021-02-24 11:08:47 +08002190 else:
2191 arcname = arcname.replace(which, which.upper(), 1)
Tao Baod3554e62018-07-10 15:31:22 -07002192
2193 assert arcname in input_zip.namelist(), \
2194 "Failed to find the ZIP entry for {}".format(entry)
2195
Tao Baoc765cca2018-01-31 17:32:40 -08002196 info = input_zip.getinfo(arcname)
2197 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08002198
2199 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08002200 # image, check the original block list to determine its completeness. Note
2201 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08002202 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08002203 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08002204
Tao Baoc765cca2018-01-31 17:32:40 -08002205 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
2206 ranges.extra['incomplete'] = True
2207
2208 return image
2209
2210
Doug Zongkereef39442009-04-02 12:14:19 -07002211def GetKeyPasswords(keylist):
2212 """Given a list of keys, prompt the user to enter passwords for
2213 those which require them. Return a {key: password} dict. password
2214 will be None if the key has no password."""
2215
Doug Zongker8ce7c252009-05-22 13:34:54 -07002216 no_passwords = []
2217 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07002218 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07002219 devnull = open("/dev/null", "w+b")
Cole Faustb820bcd2021-10-28 13:59:48 -07002220
2221 # sorted() can't compare strings to None, so convert Nones to strings
2222 for k in sorted(keylist, key=lambda x: x if x is not None else ""):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002223 # We don't need a password for things that aren't really keys.
Jooyung Han8caba5e2021-10-27 03:58:09 +09002224 if k in SPECIAL_CERT_STRINGS or k is None:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002225 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07002226 continue
2227
T.R. Fullhart37e10522013-03-18 10:31:26 -07002228 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07002229 "-inform", "DER", "-nocrypt"],
2230 stdin=devnull.fileno(),
2231 stdout=devnull.fileno(),
2232 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07002233 p.communicate()
2234 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002235 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07002236 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002237 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002238 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
2239 "-inform", "DER", "-passin", "pass:"],
2240 stdin=devnull.fileno(),
2241 stdout=devnull.fileno(),
2242 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07002243 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07002244 if p.returncode == 0:
2245 # Encrypted key with empty string as password.
2246 key_passwords[k] = ''
2247 elif stderr.startswith('Error decrypting key'):
2248 # Definitely encrypted key.
2249 # It would have said "Error reading key" if it didn't parse correctly.
2250 need_passwords.append(k)
2251 else:
2252 # Potentially, a type of key that openssl doesn't understand.
2253 # We'll let the routines in signapk.jar handle it.
2254 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002255 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07002256
T.R. Fullhart37e10522013-03-18 10:31:26 -07002257 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08002258 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07002259 return key_passwords
2260
2261
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002262def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07002263 """Gets the minSdkVersion declared in the APK.
2264
Martin Stjernholm58472e82022-01-07 22:08:47 +00002265 It calls OPTIONS.aapt2_path to query the embedded minSdkVersion from the given
2266 APK file. This can be both a decimal number (API Level) or a codename.
Tao Baof47bf0f2018-03-21 23:28:51 -07002267
2268 Args:
2269 apk_name: The APK filename.
2270
2271 Returns:
2272 The parsed SDK version string.
2273
2274 Raises:
2275 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002276 """
Tao Baof47bf0f2018-03-21 23:28:51 -07002277 proc = Run(
Martin Stjernholm58472e82022-01-07 22:08:47 +00002278 [OPTIONS.aapt2_path, "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07002279 stderr=subprocess.PIPE)
2280 stdoutdata, stderrdata = proc.communicate()
2281 if proc.returncode != 0:
2282 raise ExternalError(
Kelvin Zhang21118bb2022-02-12 09:40:35 -08002283 "Failed to obtain minSdkVersion for {}: aapt2 return code {}:\n{}\n{}".format(
2284 apk_name, proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002285
Tao Baof47bf0f2018-03-21 23:28:51 -07002286 for line in stdoutdata.split("\n"):
2287 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002288 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
2289 if m:
2290 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09002291 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002292
2293
2294def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07002295 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002296
Tao Baof47bf0f2018-03-21 23:28:51 -07002297 If minSdkVersion is set to a codename, it is translated to a number using the
2298 provided map.
2299
2300 Args:
2301 apk_name: The APK filename.
2302
2303 Returns:
2304 The parsed SDK version number.
2305
2306 Raises:
2307 ExternalError: On failing to get the min SDK version number.
2308 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002309 version = GetMinSdkVersion(apk_name)
2310 try:
2311 return int(version)
2312 except ValueError:
2313 # Not a decimal number. Codename?
2314 if version in codename_to_api_level_map:
2315 return codename_to_api_level_map[version]
Kelvin Zhang0876c412020-06-23 15:06:58 -04002316 raise ExternalError(
2317 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
2318 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002319
2320
2321def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07002322 codename_to_api_level_map=None, whole_file=False,
2323 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07002324 """Sign the input_name zip/jar/apk, producing output_name. Use the
2325 given key and password (the latter may be None if the key does not
2326 have a password.
2327
Doug Zongker951495f2009-08-14 12:44:19 -07002328 If whole_file is true, use the "-w" option to SignApk to embed a
2329 signature that covers the whole file in the archive comment of the
2330 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002331
2332 min_api_level is the API Level (int) of the oldest platform this file may end
2333 up on. If not specified for an APK, the API Level is obtained by interpreting
2334 the minSdkVersion attribute of the APK's AndroidManifest.xml.
2335
2336 codename_to_api_level_map is needed to translate the codename which may be
2337 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07002338
2339 Caller may optionally specify extra args to be passed to SignApk, which
2340 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07002341 """
Tao Bao76def242017-11-21 09:25:31 -08002342 if codename_to_api_level_map is None:
2343 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07002344 if extra_signapk_args is None:
2345 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07002346
Alex Klyubin9667b182015-12-10 13:38:50 -08002347 java_library_path = os.path.join(
2348 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2349
Tao Baoe95540e2016-11-08 12:08:53 -08002350 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2351 ["-Djava.library.path=" + java_library_path,
2352 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07002353 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07002354 if whole_file:
2355 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002356
2357 min_sdk_version = min_api_level
2358 if min_sdk_version is None:
2359 if not whole_file:
2360 min_sdk_version = GetMinSdkVersionInt(
2361 input_name, codename_to_api_level_map)
2362 if min_sdk_version is not None:
2363 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
2364
T.R. Fullhart37e10522013-03-18 10:31:26 -07002365 cmd.extend([key + OPTIONS.public_key_suffix,
2366 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08002367 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07002368
Tao Bao73dd4f42018-10-04 16:25:33 -07002369 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07002370 if password is not None:
2371 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07002372 stdoutdata, _ = proc.communicate(password)
2373 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07002374 raise ExternalError(
2375 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07002376 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07002377
Doug Zongkereef39442009-04-02 12:14:19 -07002378
Doug Zongker37974732010-09-16 17:44:38 -07002379def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08002380 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07002381
Tao Bao9dd909e2017-11-14 11:27:32 -08002382 For non-AVB images, raise exception if the data is too big. Print a warning
2383 if the data is nearing the maximum size.
2384
2385 For AVB images, the actual image size should be identical to the limit.
2386
2387 Args:
2388 data: A string that contains all the data for the partition.
2389 target: The partition name. The ".img" suffix is optional.
2390 info_dict: The dict to be looked up for relevant info.
2391 """
Dan Albert8b72aef2015-03-23 19:13:21 -07002392 if target.endswith(".img"):
2393 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002394 mount_point = "/" + target
2395
Ying Wangf8824af2014-06-03 14:07:27 -07002396 fs_type = None
2397 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002398 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07002399 if mount_point == "/userdata":
2400 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002401 p = info_dict["fstab"][mount_point]
2402 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08002403 device = p.device
2404 if "/" in device:
2405 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08002406 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07002407 if not fs_type or not limit:
2408 return
Doug Zongkereef39442009-04-02 12:14:19 -07002409
Andrew Boie0f9aec82012-02-14 09:32:52 -08002410 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08002411 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
2412 # path.
2413 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
2414 if size != limit:
2415 raise ExternalError(
2416 "Mismatching image size for %s: expected %d actual %d" % (
2417 target, limit, size))
2418 else:
2419 pct = float(size) * 100.0 / limit
2420 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
2421 if pct >= 99.0:
2422 raise ExternalError(msg)
Kelvin Zhang0876c412020-06-23 15:06:58 -04002423
2424 if pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002425 logger.warning("\n WARNING: %s\n", msg)
2426 else:
2427 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07002428
2429
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002430def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08002431 """Parses the APK certs info from a given target-files zip.
2432
2433 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
2434 tuple with the following elements: (1) a dictionary that maps packages to
2435 certs (based on the "certificate" and "private_key" attributes in the file;
2436 (2) a string representing the extension of compressed APKs in the target files
2437 (e.g ".gz", ".bro").
2438
2439 Args:
2440 tf_zip: The input target_files ZipFile (already open).
2441
2442 Returns:
2443 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
2444 the extension string of compressed APKs (e.g. ".gz"), or None if there's
2445 no compressed APKs.
2446 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002447 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01002448 compressed_extension = None
2449
Tao Bao0f990332017-09-08 19:02:54 -07002450 # META/apkcerts.txt contains the info for _all_ the packages known at build
2451 # time. Filter out the ones that are not installed.
2452 installed_files = set()
2453 for name in tf_zip.namelist():
2454 basename = os.path.basename(name)
2455 if basename:
2456 installed_files.add(basename)
2457
Tao Baoda30cfa2017-12-01 16:19:46 -08002458 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002459 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002460 if not line:
2461 continue
Tao Bao818ddf52018-01-05 11:17:34 -08002462 m = re.match(
2463 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07002464 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
2465 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08002466 line)
2467 if not m:
2468 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01002469
Tao Bao818ddf52018-01-05 11:17:34 -08002470 matches = m.groupdict()
2471 cert = matches["CERT"]
2472 privkey = matches["PRIVKEY"]
2473 name = matches["NAME"]
2474 this_compressed_extension = matches["COMPRESSED"]
2475
2476 public_key_suffix_len = len(OPTIONS.public_key_suffix)
2477 private_key_suffix_len = len(OPTIONS.private_key_suffix)
2478 if cert in SPECIAL_CERT_STRINGS and not privkey:
2479 certmap[name] = cert
2480 elif (cert.endswith(OPTIONS.public_key_suffix) and
2481 privkey.endswith(OPTIONS.private_key_suffix) and
2482 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
2483 certmap[name] = cert[:-public_key_suffix_len]
2484 else:
2485 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
2486
2487 if not this_compressed_extension:
2488 continue
2489
2490 # Only count the installed files.
2491 filename = name + '.' + this_compressed_extension
2492 if filename not in installed_files:
2493 continue
2494
2495 # Make sure that all the values in the compression map have the same
2496 # extension. We don't support multiple compression methods in the same
2497 # system image.
2498 if compressed_extension:
2499 if this_compressed_extension != compressed_extension:
2500 raise ValueError(
2501 "Multiple compressed extensions: {} vs {}".format(
2502 compressed_extension, this_compressed_extension))
2503 else:
2504 compressed_extension = this_compressed_extension
2505
2506 return (certmap,
2507 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002508
2509
Doug Zongkereef39442009-04-02 12:14:19 -07002510COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07002511Global options
2512
2513 -p (--path) <dir>
2514 Prepend <dir>/bin to the list of places to search for binaries run by this
2515 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07002516
Doug Zongker05d3dea2009-06-22 11:32:31 -07002517 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07002518 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07002519
Tao Bao30df8b42018-04-23 15:32:53 -07002520 -x (--extra) <key=value>
2521 Add a key/value pair to the 'extras' dict, which device-specific extension
2522 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08002523
Doug Zongkereef39442009-04-02 12:14:19 -07002524 -v (--verbose)
2525 Show command lines being executed.
2526
2527 -h (--help)
2528 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07002529
2530 --logfile <file>
2531 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07002532"""
2533
Kelvin Zhang0876c412020-06-23 15:06:58 -04002534
Doug Zongkereef39442009-04-02 12:14:19 -07002535def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08002536 print(docstring.rstrip("\n"))
2537 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07002538
2539
2540def ParseOptions(argv,
2541 docstring,
2542 extra_opts="", extra_long_opts=(),
2543 extra_option_handler=None):
2544 """Parse the options in argv and return any arguments that aren't
2545 flags. docstring is the calling module's docstring, to be displayed
2546 for errors and -h. extra_opts and extra_long_opts are for flags
2547 defined by the caller, which are processed by passing them to
2548 extra_option_handler."""
2549
2550 try:
2551 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08002552 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08002553 ["help", "verbose", "path=", "signapk_path=",
Martin Stjernholm58472e82022-01-07 22:08:47 +00002554 "signapk_shared_library_path=", "extra_signapk_args=", "aapt2_path=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08002555 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07002556 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
2557 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Jan Monsche147d482021-06-23 12:30:35 +02002558 "extra=", "logfile="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07002559 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07002560 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08002561 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07002562 sys.exit(2)
2563
Doug Zongkereef39442009-04-02 12:14:19 -07002564 for o, a in opts:
2565 if o in ("-h", "--help"):
2566 Usage(docstring)
2567 sys.exit()
2568 elif o in ("-v", "--verbose"):
2569 OPTIONS.verbose = True
2570 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07002571 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002572 elif o in ("--signapk_path",):
2573 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08002574 elif o in ("--signapk_shared_library_path",):
2575 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002576 elif o in ("--extra_signapk_args",):
2577 OPTIONS.extra_signapk_args = shlex.split(a)
Martin Stjernholm58472e82022-01-07 22:08:47 +00002578 elif o in ("--aapt2_path",):
2579 OPTIONS.aapt2_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002580 elif o in ("--java_path",):
2581 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07002582 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08002583 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08002584 elif o in ("--android_jar_path",):
2585 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002586 elif o in ("--public_key_suffix",):
2587 OPTIONS.public_key_suffix = a
2588 elif o in ("--private_key_suffix",):
2589 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08002590 elif o in ("--boot_signer_path",):
2591 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07002592 elif o in ("--boot_signer_args",):
2593 OPTIONS.boot_signer_args = shlex.split(a)
2594 elif o in ("--verity_signer_path",):
2595 OPTIONS.verity_signer_path = a
2596 elif o in ("--verity_signer_args",):
2597 OPTIONS.verity_signer_args = shlex.split(a)
Doug Zongker05d3dea2009-06-22 11:32:31 -07002598 elif o in ("-s", "--device_specific"):
2599 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08002600 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08002601 key, value = a.split("=", 1)
2602 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07002603 elif o in ("--logfile",):
2604 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07002605 else:
2606 if extra_option_handler is None or not extra_option_handler(o, a):
2607 assert False, "unknown option \"%s\"" % (o,)
2608
Doug Zongker85448772014-09-09 14:59:20 -07002609 if OPTIONS.search_path:
2610 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
2611 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07002612
2613 return args
2614
2615
Tao Bao4c851b12016-09-19 13:54:38 -07002616def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07002617 """Make a temp file and add it to the list of things to be deleted
2618 when Cleanup() is called. Return the filename."""
2619 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
2620 os.close(fd)
2621 OPTIONS.tempfiles.append(fn)
2622 return fn
2623
2624
Tao Bao1c830bf2017-12-25 10:43:47 -08002625def MakeTempDir(prefix='tmp', suffix=''):
2626 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
2627
2628 Returns:
2629 The absolute pathname of the new directory.
2630 """
2631 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
2632 OPTIONS.tempfiles.append(dir_name)
2633 return dir_name
2634
2635
Doug Zongkereef39442009-04-02 12:14:19 -07002636def Cleanup():
2637 for i in OPTIONS.tempfiles:
2638 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08002639 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07002640 else:
2641 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08002642 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07002643
2644
2645class PasswordManager(object):
2646 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08002647 self.editor = os.getenv("EDITOR")
2648 self.pwfile = os.getenv("ANDROID_PW_FILE")
Tom Powell68ba8192017-01-20 20:47:49 -08002649 self.secure_storage_cmd = os.getenv("ANDROID_SECURE_STORAGE_CMD", None)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002650
2651 def GetPasswords(self, items):
2652 """Get passwords corresponding to each string in 'items',
2653 returning a dict. (The dict may have keys in addition to the
2654 values in 'items'.)
2655
2656 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2657 user edit that file to add more needed passwords. If no editor is
2658 available, or $ANDROID_PW_FILE isn't define, prompts the user
2659 interactively in the ordinary way.
2660 """
2661
2662 current = self.ReadFile()
2663
2664 first = True
2665 while True:
2666 missing = []
2667 for i in items:
2668 if i not in current or not current[i]:
Tom Powell68ba8192017-01-20 20:47:49 -08002669 # Attempt to load using ANDROID_SECURE_STORAGE_CMD
2670 if self.secure_storage_cmd:
2671 try:
2672 os.environ["TMP__KEY_FILE_NAME"] = str(i)
2673 ps = subprocess.Popen(self.secure_storage_cmd, shell=True, stdout=subprocess.PIPE)
2674 output = ps.communicate()[0]
2675 if ps.returncode == 0:
2676 current[i] = output
2677 except Exception as e:
2678 print(e)
2679 pass
2680 if i not in current or not current[i]:
2681 missing.append(i)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002682 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002683 if not missing:
Tom Powell68ba8192017-01-20 20:47:49 -08002684 if "ANDROID_SECURE_STORAGE_CMD" in os.environ:
2685 del os.environ["ANDROID_SECURE_STORAGE_CMD"]
Dan Albert8b72aef2015-03-23 19:13:21 -07002686 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002687
2688 for i in missing:
2689 current[i] = ""
2690
2691 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002692 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002693 if sys.version_info[0] >= 3:
2694 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002695 answer = raw_input("try to edit again? [y]> ").strip()
2696 if answer and answer[0] not in 'yY':
2697 raise RuntimeError("key passwords unavailable")
2698 first = False
2699
2700 current = self.UpdateAndReadFile(current)
2701
Kelvin Zhang0876c412020-06-23 15:06:58 -04002702 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002703 """Prompt the user to enter a value (password) for each key in
2704 'current' whose value is fales. Returns a new dict with all the
2705 values.
2706 """
2707 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002708 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002709 if v:
2710 result[k] = v
2711 else:
2712 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002713 result[k] = getpass.getpass(
2714 "Enter password for %s key> " % k).strip()
2715 if result[k]:
2716 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002717 return result
2718
2719 def UpdateAndReadFile(self, current):
2720 if not self.editor or not self.pwfile:
2721 return self.PromptResult(current)
2722
2723 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002724 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002725 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2726 f.write("# (Additional spaces are harmless.)\n\n")
2727
2728 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002729 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002730 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002731 f.write("[[[ %s ]]] %s\n" % (v, k))
2732 if not v and first_line is None:
2733 # position cursor on first line with no password.
2734 first_line = i + 4
2735 f.close()
2736
Tao Bao986ee862018-10-04 15:46:16 -07002737 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002738
2739 return self.ReadFile()
2740
2741 def ReadFile(self):
2742 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002743 if self.pwfile is None:
2744 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002745 try:
2746 f = open(self.pwfile, "r")
2747 for line in f:
2748 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002749 if not line or line[0] == '#':
2750 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002751 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2752 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002753 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002754 else:
2755 result[m.group(2)] = m.group(1)
2756 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002757 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002758 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002759 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002760 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002761
2762
Dan Albert8e0178d2015-01-27 15:53:15 -08002763def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2764 compress_type=None):
Dan Albert8e0178d2015-01-27 15:53:15 -08002765
2766 # http://b/18015246
2767 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2768 # for files larger than 2GiB. We can work around this by adjusting their
2769 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2770 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2771 # it isn't clear to me exactly what circumstances cause this).
2772 # `zipfile.write()` must be used directly to work around this.
2773 #
2774 # This mess can be avoided if we port to python3.
2775 saved_zip64_limit = zipfile.ZIP64_LIMIT
2776 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2777
2778 if compress_type is None:
2779 compress_type = zip_file.compression
2780 if arcname is None:
2781 arcname = filename
2782
2783 saved_stat = os.stat(filename)
2784
2785 try:
2786 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2787 # file to be zipped and reset it when we're done.
2788 os.chmod(filename, perms)
2789
2790 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002791 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2792 # intentional. zip stores datetimes in local time without a time zone
2793 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2794 # in the zip archive.
2795 local_epoch = datetime.datetime.fromtimestamp(0)
2796 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002797 os.utime(filename, (timestamp, timestamp))
2798
2799 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2800 finally:
2801 os.chmod(filename, saved_stat.st_mode)
2802 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2803 zipfile.ZIP64_LIMIT = saved_zip64_limit
2804
2805
Tao Bao58c1b962015-05-20 09:32:18 -07002806def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002807 compress_type=None):
2808 """Wrap zipfile.writestr() function to work around the zip64 limit.
2809
2810 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2811 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2812 when calling crc32(bytes).
2813
2814 But it still works fine to write a shorter string into a large zip file.
2815 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2816 when we know the string won't be too long.
2817 """
2818
2819 saved_zip64_limit = zipfile.ZIP64_LIMIT
2820 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2821
2822 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2823 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002824 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002825 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002826 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002827 else:
Tao Baof3282b42015-04-01 11:21:55 -07002828 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002829 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2830 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2831 # such a case (since
2832 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2833 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2834 # permission bits. We follow the logic in Python 3 to get consistent
2835 # behavior between using the two versions.
2836 if not zinfo.external_attr:
2837 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002838
2839 # If compress_type is given, it overrides the value in zinfo.
2840 if compress_type is not None:
2841 zinfo.compress_type = compress_type
2842
Tao Bao58c1b962015-05-20 09:32:18 -07002843 # If perms is given, it has a priority.
2844 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002845 # If perms doesn't set the file type, mark it as a regular file.
2846 if perms & 0o770000 == 0:
2847 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002848 zinfo.external_attr = perms << 16
2849
Tao Baof3282b42015-04-01 11:21:55 -07002850 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002851 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2852
Dan Albert8b72aef2015-03-23 19:13:21 -07002853 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002854 zipfile.ZIP64_LIMIT = saved_zip64_limit
2855
2856
Tao Bao89d7ab22017-12-14 17:05:33 -08002857def ZipDelete(zip_filename, entries):
2858 """Deletes entries from a ZIP file.
2859
2860 Since deleting entries from a ZIP file is not supported, it shells out to
2861 'zip -d'.
2862
2863 Args:
2864 zip_filename: The name of the ZIP file.
2865 entries: The name of the entry, or the list of names to be deleted.
2866
2867 Raises:
2868 AssertionError: In case of non-zero return from 'zip'.
2869 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002870 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002871 entries = [entries]
Kelvin Zhang70876142022-02-09 16:05:29 -08002872 # If list is empty, nothing to do
2873 if not entries:
2874 return
Tao Bao89d7ab22017-12-14 17:05:33 -08002875 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002876 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002877
2878
Tao Baof3282b42015-04-01 11:21:55 -07002879def ZipClose(zip_file):
2880 # http://b/18015246
2881 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2882 # central directory.
2883 saved_zip64_limit = zipfile.ZIP64_LIMIT
2884 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2885
2886 zip_file.close()
2887
2888 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002889
2890
2891class DeviceSpecificParams(object):
2892 module = None
Kelvin Zhang0876c412020-06-23 15:06:58 -04002893
Doug Zongker05d3dea2009-06-22 11:32:31 -07002894 def __init__(self, **kwargs):
2895 """Keyword arguments to the constructor become attributes of this
2896 object, which is passed to all functions in the device-specific
2897 module."""
Tao Bao38884282019-07-10 22:20:56 -07002898 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002899 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002900 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002901
2902 if self.module is None:
2903 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002904 if not path:
2905 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002906 try:
2907 if os.path.isdir(path):
2908 info = imp.find_module("releasetools", [path])
2909 else:
2910 d, f = os.path.split(path)
2911 b, x = os.path.splitext(f)
2912 if x == ".py":
2913 f = b
2914 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002915 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002916 self.module = imp.load_module("device_specific", *info)
2917 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002918 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002919
2920 def _DoCall(self, function_name, *args, **kwargs):
2921 """Call the named function in the device-specific module, passing
2922 the given args and kwargs. The first argument to the call will be
2923 the DeviceSpecific object itself. If there is no module, or the
2924 module does not define the function, return the value of the
2925 'default' kwarg (which itself defaults to None)."""
2926 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002927 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002928 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2929
2930 def FullOTA_Assertions(self):
2931 """Called after emitting the block of assertions at the top of a
2932 full OTA package. Implementations can add whatever additional
2933 assertions they like."""
2934 return self._DoCall("FullOTA_Assertions")
2935
Doug Zongkere5ff5902012-01-17 10:55:37 -08002936 def FullOTA_InstallBegin(self):
2937 """Called at the start of full OTA installation."""
2938 return self._DoCall("FullOTA_InstallBegin")
2939
Yifan Hong10c530d2018-12-27 17:34:18 -08002940 def FullOTA_GetBlockDifferences(self):
2941 """Called during full OTA installation and verification.
2942 Implementation should return a list of BlockDifference objects describing
2943 the update on each additional partitions.
2944 """
2945 return self._DoCall("FullOTA_GetBlockDifferences")
2946
Doug Zongker05d3dea2009-06-22 11:32:31 -07002947 def FullOTA_InstallEnd(self):
2948 """Called at the end of full OTA installation; typically this is
2949 used to install the image for the device's baseband processor."""
2950 return self._DoCall("FullOTA_InstallEnd")
2951
M1cha82b08a62014-11-25 15:30:48 +01002952 def FullOTA_PostValidate(self):
2953 """Called after installing and validating /system; typically this is
2954 used to resize the system partition after a block based installation."""
2955 return self._DoCall("FullOTA_PostValidate")
2956
Doug Zongker05d3dea2009-06-22 11:32:31 -07002957 def IncrementalOTA_Assertions(self):
2958 """Called after emitting the block of assertions at the top of an
2959 incremental OTA package. Implementations can add whatever
2960 additional assertions they like."""
2961 return self._DoCall("IncrementalOTA_Assertions")
2962
Doug Zongkere5ff5902012-01-17 10:55:37 -08002963 def IncrementalOTA_VerifyBegin(self):
2964 """Called at the start of the verification phase of incremental
2965 OTA installation; additional checks can be placed here to abort
2966 the script before any changes are made."""
2967 return self._DoCall("IncrementalOTA_VerifyBegin")
2968
Doug Zongker05d3dea2009-06-22 11:32:31 -07002969 def IncrementalOTA_VerifyEnd(self):
2970 """Called at the end of the verification phase of incremental OTA
2971 installation; additional checks can be placed here to abort the
2972 script before any changes are made."""
2973 return self._DoCall("IncrementalOTA_VerifyEnd")
2974
Doug Zongkere5ff5902012-01-17 10:55:37 -08002975 def IncrementalOTA_InstallBegin(self):
2976 """Called at the start of incremental OTA installation (after
2977 verification is complete)."""
2978 return self._DoCall("IncrementalOTA_InstallBegin")
2979
Yifan Hong10c530d2018-12-27 17:34:18 -08002980 def IncrementalOTA_GetBlockDifferences(self):
2981 """Called during incremental OTA installation and verification.
2982 Implementation should return a list of BlockDifference objects describing
2983 the update on each additional partitions.
2984 """
2985 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2986
Doug Zongker05d3dea2009-06-22 11:32:31 -07002987 def IncrementalOTA_InstallEnd(self):
2988 """Called at the end of incremental OTA installation; typically
2989 this is used to install the image for the device's baseband
2990 processor."""
2991 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002992
Tao Bao9bc6bb22015-11-09 16:58:28 -08002993 def VerifyOTA_Assertions(self):
2994 return self._DoCall("VerifyOTA_Assertions")
2995
Tao Bao76def242017-11-21 09:25:31 -08002996
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002997class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002998 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002999 self.name = name
3000 self.data = data
3001 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09003002 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08003003 self.sha1 = sha1(data).hexdigest()
3004
3005 @classmethod
3006 def FromLocalFile(cls, name, diskname):
3007 f = open(diskname, "rb")
3008 data = f.read()
3009 f.close()
3010 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003011
3012 def WriteToTemp(self):
3013 t = tempfile.NamedTemporaryFile()
3014 t.write(self.data)
3015 t.flush()
3016 return t
3017
Dan Willemsen2ee00d52017-03-05 19:51:56 -08003018 def WriteToDir(self, d):
3019 with open(os.path.join(d, self.name), "wb") as fp:
3020 fp.write(self.data)
3021
Geremy Condra36bd3652014-02-06 19:45:10 -08003022 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07003023 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003024
Tao Bao76def242017-11-21 09:25:31 -08003025
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003026DIFF_PROGRAM_BY_EXT = {
Kelvin Zhang0876c412020-06-23 15:06:58 -04003027 ".gz": "imgdiff",
3028 ".zip": ["imgdiff", "-z"],
3029 ".jar": ["imgdiff", "-z"],
3030 ".apk": ["imgdiff", "-z"],
3031 ".img": "imgdiff",
3032}
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003033
Tao Bao76def242017-11-21 09:25:31 -08003034
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003035class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07003036 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003037 self.tf = tf
3038 self.sf = sf
3039 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07003040 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003041
3042 def ComputePatch(self):
3043 """Compute the patch (as a string of data) needed to turn sf into
3044 tf. Returns the same tuple as GetPatch()."""
3045
3046 tf = self.tf
3047 sf = self.sf
3048
Doug Zongker24cd2802012-08-14 16:36:15 -07003049 if self.diff_program:
3050 diff_program = self.diff_program
3051 else:
3052 ext = os.path.splitext(tf.name)[1]
3053 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003054
3055 ttemp = tf.WriteToTemp()
3056 stemp = sf.WriteToTemp()
3057
3058 ext = os.path.splitext(tf.name)[1]
3059
3060 try:
3061 ptemp = tempfile.NamedTemporaryFile()
3062 if isinstance(diff_program, list):
3063 cmd = copy.copy(diff_program)
3064 else:
3065 cmd = [diff_program]
3066 cmd.append(stemp.name)
3067 cmd.append(ttemp.name)
3068 cmd.append(ptemp.name)
3069 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07003070 err = []
Kelvin Zhang0876c412020-06-23 15:06:58 -04003071
Doug Zongkerf8340082014-08-05 10:39:37 -07003072 def run():
3073 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07003074 if e:
3075 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07003076 th = threading.Thread(target=run)
3077 th.start()
3078 th.join(timeout=300) # 5 mins
3079 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07003080 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07003081 p.terminate()
3082 th.join(5)
3083 if th.is_alive():
3084 p.kill()
3085 th.join()
3086
Tianjie Xua2a9f992018-01-05 15:15:54 -08003087 if p.returncode != 0:
Yifan Honga4140d22021-08-04 18:09:03 -07003088 logger.warning("Failure running %s:\n%s\n", cmd, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07003089 self.patch = None
3090 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003091 diff = ptemp.read()
3092 finally:
3093 ptemp.close()
3094 stemp.close()
3095 ttemp.close()
3096
3097 self.patch = diff
3098 return self.tf, self.sf, self.patch
3099
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003100 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08003101 """Returns a tuple of (target_file, source_file, patch_data).
3102
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003103 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08003104 computing the patch failed.
3105 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003106 return self.tf, self.sf, self.patch
3107
3108
3109def ComputeDifferences(diffs):
3110 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07003111 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003112
3113 # Do the largest files first, to try and reduce the long-pole effect.
3114 by_size = [(i.tf.size, i) for i in diffs]
3115 by_size.sort(reverse=True)
3116 by_size = [i[1] for i in by_size]
3117
3118 lock = threading.Lock()
3119 diff_iter = iter(by_size) # accessed under lock
3120
3121 def worker():
3122 try:
3123 lock.acquire()
3124 for d in diff_iter:
3125 lock.release()
3126 start = time.time()
3127 d.ComputePatch()
3128 dur = time.time() - start
3129 lock.acquire()
3130
3131 tf, sf, patch = d.GetPatch()
3132 if sf.name == tf.name:
3133 name = tf.name
3134 else:
3135 name = "%s (%s)" % (tf.name, sf.name)
3136 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07003137 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003138 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07003139 logger.info(
3140 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
3141 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003142 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07003143 except Exception:
3144 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003145 raise
3146
3147 # start worker threads; wait for them all to finish.
3148 threads = [threading.Thread(target=worker)
3149 for i in range(OPTIONS.worker_threads)]
3150 for th in threads:
3151 th.start()
3152 while threads:
3153 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07003154
3155
Dan Albert8b72aef2015-03-23 19:13:21 -07003156class BlockDifference(object):
3157 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07003158 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003159 self.tgt = tgt
3160 self.src = src
3161 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003162 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07003163 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003164
Tao Baodd2a5892015-03-12 12:32:37 -07003165 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08003166 version = max(
3167 int(i) for i in
3168 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08003169 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07003170 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07003171
Tianjie Xu41976c72019-07-03 13:57:01 -07003172 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
3173 version=self.version,
3174 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08003175 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003176 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08003177 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07003178 self.touched_src_ranges = b.touched_src_ranges
3179 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003180
Yifan Hong10c530d2018-12-27 17:34:18 -08003181 # On devices with dynamic partitions, for new partitions,
3182 # src is None but OPTIONS.source_info_dict is not.
3183 if OPTIONS.source_info_dict is None:
3184 is_dynamic_build = OPTIONS.info_dict.get(
3185 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003186 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07003187 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08003188 is_dynamic_build = OPTIONS.source_info_dict.get(
3189 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003190 is_dynamic_source = partition in shlex.split(
3191 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08003192
Yifan Hongbb2658d2019-01-25 12:30:58 -08003193 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08003194 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
3195
Yifan Hongbb2658d2019-01-25 12:30:58 -08003196 # For dynamic partitions builds, check partition list in both source
3197 # and target build because new partitions may be added, and existing
3198 # partitions may be removed.
3199 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
3200
Yifan Hong10c530d2018-12-27 17:34:18 -08003201 if is_dynamic:
3202 self.device = 'map_partition("%s")' % partition
3203 else:
3204 if OPTIONS.source_info_dict is None:
Yifan Hongbdb32012020-05-07 12:38:53 -07003205 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3206 OPTIONS.info_dict)
Yifan Hong10c530d2018-12-27 17:34:18 -08003207 else:
Yifan Hongbdb32012020-05-07 12:38:53 -07003208 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3209 OPTIONS.source_info_dict)
3210 self.device = device_expr
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003211
Tao Baod8d14be2016-02-04 14:26:02 -08003212 @property
3213 def required_cache(self):
3214 return self._required_cache
3215
Tao Bao76def242017-11-21 09:25:31 -08003216 def WriteScript(self, script, output_zip, progress=None,
3217 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003218 if not self.src:
3219 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08003220 script.Print("Patching %s image unconditionally..." % (self.partition,))
3221 else:
3222 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003223
Dan Albert8b72aef2015-03-23 19:13:21 -07003224 if progress:
3225 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003226 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08003227
3228 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08003229 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003230
Tao Bao9bc6bb22015-11-09 16:58:28 -08003231 def WriteStrictVerifyScript(self, script):
3232 """Verify all the blocks in the care_map, including clobbered blocks.
3233
3234 This differs from the WriteVerifyScript() function: a) it prints different
3235 error messages; b) it doesn't allow half-way updated images to pass the
3236 verification."""
3237
3238 partition = self.partition
3239 script.Print("Verifying %s..." % (partition,))
3240 ranges = self.tgt.care_map
3241 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003242 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003243 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
3244 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08003245 self.device, ranges_str,
3246 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08003247 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08003248 script.AppendExtra("")
3249
Tao Baod522bdc2016-04-12 15:53:16 -07003250 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00003251 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07003252
3253 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08003254 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00003255 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07003256
3257 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003258 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08003259 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07003260 ranges = self.touched_src_ranges
3261 expected_sha1 = self.touched_src_sha1
3262 else:
3263 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
3264 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07003265
3266 # No blocks to be checked, skipping.
3267 if not ranges:
3268 return
3269
Tao Bao5ece99d2015-05-12 11:42:31 -07003270 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003271 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003272 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08003273 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
3274 '"%s.patch.dat")) then' % (
3275 self.device, ranges_str, expected_sha1,
3276 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07003277 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07003278 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00003279
Tianjie Xufc3422a2015-12-15 11:53:59 -08003280 if self.version >= 4:
3281
3282 # Bug: 21124327
3283 # When generating incrementals for the system and vendor partitions in
3284 # version 4 or newer, explicitly check the first block (which contains
3285 # the superblock) of the partition to see if it's what we expect. If
3286 # this check fails, give an explicit log message about the partition
3287 # having been remounted R/W (the most likely explanation).
3288 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08003289 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08003290
3291 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07003292 if partition == "system":
3293 code = ErrorCode.SYSTEM_RECOVER_FAILURE
3294 else:
3295 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08003296 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08003297 'ifelse (block_image_recover({device}, "{ranges}") && '
3298 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08003299 'package_extract_file("{partition}.transfer.list"), '
3300 '"{partition}.new.dat", "{partition}.patch.dat"), '
3301 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07003302 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08003303 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07003304 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003305
Tao Baodd2a5892015-03-12 12:32:37 -07003306 # Abort the OTA update. Note that the incremental OTA cannot be applied
3307 # even if it may match the checksum of the target partition.
3308 # a) If version < 3, operations like move and erase will make changes
3309 # unconditionally and damage the partition.
3310 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08003311 else:
Tianjie Xu209db462016-05-24 17:34:52 -07003312 if partition == "system":
3313 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
3314 else:
3315 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
3316 script.AppendExtra((
3317 'abort("E%d: %s partition has unexpected contents");\n'
3318 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003319
Yifan Hong10c530d2018-12-27 17:34:18 -08003320 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07003321 partition = self.partition
3322 script.Print('Verifying the updated %s image...' % (partition,))
3323 # Unlike pre-install verification, clobbered_blocks should not be ignored.
3324 ranges = self.tgt.care_map
3325 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003326 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003327 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003328 self.device, ranges_str,
3329 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07003330
3331 # Bug: 20881595
3332 # Verify that extended blocks are really zeroed out.
3333 if self.tgt.extended:
3334 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003335 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003336 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003337 self.device, ranges_str,
3338 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07003339 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07003340 if partition == "system":
3341 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
3342 else:
3343 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07003344 script.AppendExtra(
3345 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003346 ' abort("E%d: %s partition has unexpected non-zero contents after '
3347 'OTA update");\n'
3348 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07003349 else:
3350 script.Print('Verified the updated %s image.' % (partition,))
3351
Tianjie Xu209db462016-05-24 17:34:52 -07003352 if partition == "system":
3353 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
3354 else:
3355 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
3356
Tao Bao5fcaaef2015-06-01 13:40:49 -07003357 script.AppendExtra(
3358 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003359 ' abort("E%d: %s partition has unexpected contents after OTA '
3360 'update");\n'
3361 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07003362
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003363 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08003364 ZipWrite(output_zip,
3365 '{}.transfer.list'.format(self.path),
3366 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003367
Tao Bao76def242017-11-21 09:25:31 -08003368 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
3369 # its size. Quailty 9 almost triples the compression time but doesn't
3370 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003371 # zip | brotli(quality 6) | brotli(quality 9)
3372 # compressed_size: 942M | 869M (~8% reduced) | 854M
3373 # compression_time: 75s | 265s | 719s
3374 # decompression_time: 15s | 25s | 25s
3375
3376 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01003377 brotli_cmd = ['brotli', '--quality=6',
3378 '--output={}.new.dat.br'.format(self.path),
3379 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003380 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07003381 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003382
3383 new_data_name = '{}.new.dat.br'.format(self.partition)
3384 ZipWrite(output_zip,
3385 '{}.new.dat.br'.format(self.path),
3386 new_data_name,
3387 compress_type=zipfile.ZIP_STORED)
3388 else:
3389 new_data_name = '{}.new.dat'.format(self.partition)
3390 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
3391
Dan Albert8e0178d2015-01-27 15:53:15 -08003392 ZipWrite(output_zip,
3393 '{}.patch.dat'.format(self.path),
3394 '{}.patch.dat'.format(self.partition),
3395 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003396
Tianjie Xu209db462016-05-24 17:34:52 -07003397 if self.partition == "system":
3398 code = ErrorCode.SYSTEM_UPDATE_FAILURE
3399 else:
3400 code = ErrorCode.VENDOR_UPDATE_FAILURE
3401
Yifan Hong10c530d2018-12-27 17:34:18 -08003402 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08003403 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003404 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003405 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003406 device=self.device, partition=self.partition,
3407 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07003408 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003409
Kelvin Zhang0876c412020-06-23 15:06:58 -04003410 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00003411 data = source.ReadRangeSet(ranges)
3412 ctx = sha1()
3413
3414 for p in data:
3415 ctx.update(p)
3416
3417 return ctx.hexdigest()
3418
Kelvin Zhang0876c412020-06-23 15:06:58 -04003419 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
Tao Baoe9b61912015-07-09 17:37:49 -07003420 """Return the hash value for all zero blocks."""
3421 zero_block = '\x00' * 4096
3422 ctx = sha1()
3423 for _ in range(num_blocks):
3424 ctx.update(zero_block)
3425
3426 return ctx.hexdigest()
3427
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003428
Tianjie Xu41976c72019-07-03 13:57:01 -07003429# Expose these two classes to support vendor-specific scripts
3430DataImage = images.DataImage
3431EmptyImage = images.EmptyImage
3432
Tao Bao76def242017-11-21 09:25:31 -08003433
Doug Zongker96a57e72010-09-26 14:57:41 -07003434# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07003435PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07003436 "ext4": "EMMC",
3437 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07003438 "f2fs": "EMMC",
3439 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07003440}
Doug Zongker96a57e72010-09-26 14:57:41 -07003441
Kelvin Zhang0876c412020-06-23 15:06:58 -04003442
Yifan Hongbdb32012020-05-07 12:38:53 -07003443def GetTypeAndDevice(mount_point, info, check_no_slot=True):
3444 """
3445 Use GetTypeAndDeviceExpr whenever possible. This function is kept for
3446 backwards compatibility. It aborts if the fstab entry has slotselect option
3447 (unless check_no_slot is explicitly set to False).
3448 """
Doug Zongker96a57e72010-09-26 14:57:41 -07003449 fstab = info["fstab"]
3450 if fstab:
Yifan Hongbdb32012020-05-07 12:38:53 -07003451 if check_no_slot:
3452 assert not fstab[mount_point].slotselect, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04003453 "Use GetTypeAndDeviceExpr instead"
Dan Albert8b72aef2015-03-23 19:13:21 -07003454 return (PARTITION_TYPES[fstab[mount_point].fs_type],
3455 fstab[mount_point].device)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003456 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003457
3458
Yifan Hongbdb32012020-05-07 12:38:53 -07003459def GetTypeAndDeviceExpr(mount_point, info):
3460 """
3461 Return the filesystem of the partition, and an edify expression that evaluates
3462 to the device at runtime.
3463 """
3464 fstab = info["fstab"]
3465 if fstab:
3466 p = fstab[mount_point]
3467 device_expr = '"%s"' % fstab[mount_point].device
3468 if p.slotselect:
3469 device_expr = 'add_slot_suffix(%s)' % device_expr
3470 return (PARTITION_TYPES[fstab[mount_point].fs_type], device_expr)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003471 raise KeyError
Yifan Hongbdb32012020-05-07 12:38:53 -07003472
3473
3474def GetEntryForDevice(fstab, device):
3475 """
3476 Returns:
3477 The first entry in fstab whose device is the given value.
3478 """
3479 if not fstab:
3480 return None
3481 for mount_point in fstab:
3482 if fstab[mount_point].device == device:
3483 return fstab[mount_point]
3484 return None
3485
Kelvin Zhang0876c412020-06-23 15:06:58 -04003486
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003487def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08003488 """Parses and converts a PEM-encoded certificate into DER-encoded.
3489
3490 This gives the same result as `openssl x509 -in <filename> -outform DER`.
3491
3492 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08003493 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08003494 """
3495 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003496 save = False
3497 for line in data.split("\n"):
3498 if "--END CERTIFICATE--" in line:
3499 break
3500 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08003501 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003502 if "--BEGIN CERTIFICATE--" in line:
3503 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08003504 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003505 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08003506
Tao Bao04e1f012018-02-04 12:13:35 -08003507
3508def ExtractPublicKey(cert):
3509 """Extracts the public key (PEM-encoded) from the given certificate file.
3510
3511 Args:
3512 cert: The certificate filename.
3513
3514 Returns:
3515 The public key string.
3516
3517 Raises:
3518 AssertionError: On non-zero return from 'openssl'.
3519 """
3520 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
3521 # While openssl 1.1 writes the key into the given filename followed by '-out',
3522 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
3523 # stdout instead.
3524 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
3525 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3526 pubkey, stderrdata = proc.communicate()
3527 assert proc.returncode == 0, \
3528 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
3529 return pubkey
3530
3531
Tao Bao1ac886e2019-06-26 11:58:22 -07003532def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07003533 """Extracts the AVB public key from the given public or private key.
3534
3535 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07003536 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07003537 key: The input key file, which should be PEM-encoded public or private key.
3538
3539 Returns:
3540 The path to the extracted AVB public key file.
3541 """
3542 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
3543 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07003544 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07003545 return output
3546
3547
Doug Zongker412c02f2014-02-13 10:58:24 -08003548def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
3549 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08003550 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08003551
Tao Bao6d5d6232018-03-09 17:04:42 -08003552 Most of the space in the boot and recovery images is just the kernel, which is
3553 identical for the two, so the resulting patch should be efficient. Add it to
3554 the output zip, along with a shell script that is run from init.rc on first
3555 boot to actually do the patching and install the new recovery image.
3556
3557 Args:
3558 input_dir: The top-level input directory of the target-files.zip.
3559 output_sink: The callback function that writes the result.
3560 recovery_img: File object for the recovery image.
3561 boot_img: File objects for the boot image.
3562 info_dict: A dict returned by common.LoadInfoDict() on the input
3563 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08003564 """
Doug Zongker412c02f2014-02-13 10:58:24 -08003565 if info_dict is None:
3566 info_dict = OPTIONS.info_dict
3567
Tao Bao6d5d6232018-03-09 17:04:42 -08003568 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003569 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
3570
3571 if board_uses_vendorimage:
3572 # In this case, the output sink is rooted at VENDOR
3573 recovery_img_path = "etc/recovery.img"
3574 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
Bill Peckhame868aec2019-09-17 17:06:47 -07003575 else:
3576 # In this case the output sink is rooted at SYSTEM
3577 recovery_img_path = "vendor/etc/recovery.img"
3578 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
Doug Zongkerc9253822014-02-04 12:17:58 -08003579
Tao Baof2cffbd2015-07-22 12:33:18 -07003580 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003581 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07003582
3583 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08003584 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003585 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08003586 # With system-root-image, boot and recovery images will have mismatching
3587 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
3588 # to handle such a case.
3589 if system_root_image:
3590 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07003591 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08003592 assert not os.path.exists(path)
3593 else:
3594 diff_program = ["imgdiff"]
3595 if os.path.exists(path):
3596 diff_program.append("-b")
3597 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07003598 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08003599 else:
3600 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07003601
3602 d = Difference(recovery_img, boot_img, diff_program=diff_program)
3603 _, _, patch = d.ComputePatch()
3604 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08003605
Dan Albertebb19aa2015-03-27 19:11:53 -07003606 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07003607 # The following GetTypeAndDevice()s need to use the path in the target
3608 # info_dict instead of source_info_dict.
Yifan Hongbdb32012020-05-07 12:38:53 -07003609 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict,
3610 check_no_slot=False)
3611 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict,
3612 check_no_slot=False)
Dan Albertebb19aa2015-03-27 19:11:53 -07003613 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07003614 return
Doug Zongkerc9253822014-02-04 12:17:58 -08003615
Tao Baof2cffbd2015-07-22 12:33:18 -07003616 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003617
3618 # Note that we use /vendor to refer to the recovery resources. This will
3619 # work for a separate vendor partition mounted at /vendor or a
3620 # /system/vendor subdirectory on the system partition, for which init will
3621 # create a symlink from /vendor to /system/vendor.
3622
3623 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003624if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
3625 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003626 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07003627 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
3628 log -t recovery "Installing new recovery image: succeeded" || \\
3629 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07003630else
3631 log -t recovery "Recovery image already installed"
3632fi
3633""" % {'type': recovery_type,
3634 'device': recovery_device,
3635 'sha1': recovery_img.sha1,
3636 'size': recovery_img.size}
3637 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07003638 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003639if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
3640 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003641 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07003642 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
3643 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
3644 log -t recovery "Installing new recovery image: succeeded" || \\
3645 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08003646else
3647 log -t recovery "Recovery image already installed"
3648fi
Dan Albert8b72aef2015-03-23 19:13:21 -07003649""" % {'boot_size': boot_img.size,
3650 'boot_sha1': boot_img.sha1,
3651 'recovery_size': recovery_img.size,
3652 'recovery_sha1': recovery_img.sha1,
3653 'boot_type': boot_type,
Yifan Hongbdb32012020-05-07 12:38:53 -07003654 'boot_device': boot_device + '$(getprop ro.boot.slot_suffix)',
Tianjiee3c31ea2020-05-19 13:44:26 -07003655 'recovery_type': recovery_type,
3656 'recovery_device': recovery_device + '$(getprop ro.boot.slot_suffix)',
Dan Albert8b72aef2015-03-23 19:13:21 -07003657 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08003658
Bill Peckhame868aec2019-09-17 17:06:47 -07003659 # The install script location moved from /system/etc to /system/bin in the L
3660 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
dianlujitaoad6e17c2020-09-12 13:48:26 +08003661 output_sink("bin/install-recovery.sh", sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08003662
3663
3664class DynamicPartitionUpdate(object):
3665 def __init__(self, src_group=None, tgt_group=None, progress=None,
3666 block_difference=None):
3667 self.src_group = src_group
3668 self.tgt_group = tgt_group
3669 self.progress = progress
3670 self.block_difference = block_difference
3671
3672 @property
3673 def src_size(self):
3674 if not self.block_difference:
3675 return 0
3676 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3677
3678 @property
3679 def tgt_size(self):
3680 if not self.block_difference:
3681 return 0
3682 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3683
3684 @staticmethod
3685 def _GetSparseImageSize(img):
3686 if not img:
3687 return 0
3688 return img.blocksize * img.total_blocks
3689
3690
3691class DynamicGroupUpdate(object):
3692 def __init__(self, src_size=None, tgt_size=None):
3693 # None: group does not exist. 0: no size limits.
3694 self.src_size = src_size
3695 self.tgt_size = tgt_size
3696
3697
3698class DynamicPartitionsDifference(object):
3699 def __init__(self, info_dict, block_diffs, progress_dict=None,
Peter Cai6001dfb2020-03-01 14:43:57 +08003700 source_info_dict=None, build_without_vendor=False):
Yifan Hong10c530d2018-12-27 17:34:18 -08003701 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07003702 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003703
Peter Cai6001dfb2020-03-01 14:43:57 +08003704 self._build_without_vendor = build_without_vendor
Yifan Hong10c530d2018-12-27 17:34:18 -08003705 self._remove_all_before_apply = False
3706 if source_info_dict is None:
3707 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07003708 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003709
Tao Baof1113e92019-06-18 12:10:14 -07003710 block_diff_dict = collections.OrderedDict(
3711 [(e.partition, e) for e in block_diffs])
3712
Yifan Hong10c530d2018-12-27 17:34:18 -08003713 assert len(block_diff_dict) == len(block_diffs), \
3714 "Duplicated BlockDifference object for {}".format(
3715 [partition for partition, count in
3716 collections.Counter(e.partition for e in block_diffs).items()
3717 if count > 1])
3718
Yifan Hong79997e52019-01-23 16:56:19 -08003719 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003720
3721 for p, block_diff in block_diff_dict.items():
3722 self._partition_updates[p] = DynamicPartitionUpdate()
3723 self._partition_updates[p].block_difference = block_diff
3724
3725 for p, progress in progress_dict.items():
3726 if p in self._partition_updates:
3727 self._partition_updates[p].progress = progress
3728
3729 tgt_groups = shlex.split(info_dict.get(
3730 "super_partition_groups", "").strip())
3731 src_groups = shlex.split(source_info_dict.get(
3732 "super_partition_groups", "").strip())
3733
3734 for g in tgt_groups:
3735 for p in shlex.split(info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003736 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003737 assert p in self._partition_updates, \
3738 "{} is in target super_{}_partition_list but no BlockDifference " \
3739 "object is provided.".format(p, g)
3740 self._partition_updates[p].tgt_group = g
3741
3742 for g in src_groups:
3743 for p in shlex.split(source_info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003744 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003745 assert p in self._partition_updates, \
3746 "{} is in source super_{}_partition_list but no BlockDifference " \
3747 "object is provided.".format(p, g)
3748 self._partition_updates[p].src_group = g
3749
Yifan Hong45433e42019-01-18 13:55:25 -08003750 target_dynamic_partitions = set(shlex.split(info_dict.get(
3751 "dynamic_partition_list", "").strip()))
3752 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3753 if u.tgt_size)
3754 assert block_diffs_with_target == target_dynamic_partitions, \
3755 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3756 list(target_dynamic_partitions), list(block_diffs_with_target))
3757
3758 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3759 "dynamic_partition_list", "").strip()))
3760 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3761 if u.src_size)
3762 assert block_diffs_with_source == source_dynamic_partitions, \
3763 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3764 list(source_dynamic_partitions), list(block_diffs_with_source))
3765
Yifan Hong10c530d2018-12-27 17:34:18 -08003766 if self._partition_updates:
3767 logger.info("Updating dynamic partitions %s",
3768 self._partition_updates.keys())
3769
Yifan Hong79997e52019-01-23 16:56:19 -08003770 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003771
3772 for g in tgt_groups:
3773 self._group_updates[g] = DynamicGroupUpdate()
3774 self._group_updates[g].tgt_size = int(info_dict.get(
3775 "super_%s_group_size" % g, "0").strip())
3776
3777 for g in src_groups:
3778 if g not in self._group_updates:
3779 self._group_updates[g] = DynamicGroupUpdate()
3780 self._group_updates[g].src_size = int(source_info_dict.get(
3781 "super_%s_group_size" % g, "0").strip())
3782
3783 self._Compute()
3784
3785 def WriteScript(self, script, output_zip, write_verify_script=False):
3786 script.Comment('--- Start patching dynamic partitions ---')
3787 for p, u in self._partition_updates.items():
3788 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3789 script.Comment('Patch partition %s' % p)
3790 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3791 write_verify_script=False)
3792
3793 op_list_path = MakeTempFile()
3794 with open(op_list_path, 'w') as f:
3795 for line in self._op_list:
3796 f.write('{}\n'.format(line))
3797
3798 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3799
3800 script.Comment('Update dynamic partition metadata')
3801 script.AppendExtra('assert(update_dynamic_partitions('
3802 'package_extract_file("dynamic_partitions_op_list")));')
3803
3804 if write_verify_script:
3805 for p, u in self._partition_updates.items():
3806 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3807 u.block_difference.WritePostInstallVerifyScript(script)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003808 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003809
3810 for p, u in self._partition_updates.items():
3811 if u.tgt_size and u.src_size <= u.tgt_size:
3812 script.Comment('Patch partition %s' % p)
3813 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3814 write_verify_script=write_verify_script)
3815 if write_verify_script:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003816 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003817
3818 script.Comment('--- End patching dynamic partitions ---')
3819
3820 def _Compute(self):
3821 self._op_list = list()
3822
3823 def append(line):
3824 self._op_list.append(line)
3825
3826 def comment(line):
3827 self._op_list.append("# %s" % line)
3828
Peter Cai6001dfb2020-03-01 14:43:57 +08003829 if self._build_without_vendor:
3830 comment('System-only build, keep original vendor partition')
3831 # When building without vendor, we do not want to override
3832 # any partition already existing. In this case, we can only
3833 # resize, but not remove / create / re-create any other
3834 # partition.
3835 for p, u in self._partition_updates.items():
3836 comment('Resize partition %s to %s' % (p, u.tgt_size))
3837 append('resize %s %s' % (p, u.tgt_size))
3838 return
3839
Yifan Hong10c530d2018-12-27 17:34:18 -08003840 if self._remove_all_before_apply:
3841 comment('Remove all existing dynamic partitions and groups before '
3842 'applying full OTA')
3843 append('remove_all_groups')
3844
3845 for p, u in self._partition_updates.items():
3846 if u.src_group and not u.tgt_group:
3847 append('remove %s' % p)
3848
3849 for p, u in self._partition_updates.items():
3850 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3851 comment('Move partition %s from %s to default' % (p, u.src_group))
3852 append('move %s default' % p)
3853
3854 for p, u in self._partition_updates.items():
3855 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3856 comment('Shrink partition %s from %d to %d' %
3857 (p, u.src_size, u.tgt_size))
3858 append('resize %s %s' % (p, u.tgt_size))
3859
3860 for g, u in self._group_updates.items():
3861 if u.src_size is not None and u.tgt_size is None:
3862 append('remove_group %s' % g)
3863 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003864 u.src_size > u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003865 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3866 append('resize_group %s %d' % (g, u.tgt_size))
3867
3868 for g, u in self._group_updates.items():
3869 if u.src_size is None and u.tgt_size is not None:
3870 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3871 append('add_group %s %d' % (g, u.tgt_size))
3872 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003873 u.src_size < u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003874 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3875 append('resize_group %s %d' % (g, u.tgt_size))
3876
3877 for p, u in self._partition_updates.items():
3878 if u.tgt_group and not u.src_group:
3879 comment('Add partition %s to group %s' % (p, u.tgt_group))
3880 append('add %s %s' % (p, u.tgt_group))
3881
3882 for p, u in self._partition_updates.items():
3883 if u.tgt_size and u.src_size < u.tgt_size:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003884 comment('Grow partition %s from %d to %d' %
3885 (p, u.src_size, u.tgt_size))
Yifan Hong10c530d2018-12-27 17:34:18 -08003886 append('resize %s %d' % (p, u.tgt_size))
3887
3888 for p, u in self._partition_updates.items():
3889 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3890 comment('Move partition %s from default to %s' %
3891 (p, u.tgt_group))
3892 append('move %s %s' % (p, u.tgt_group))
Yifan Hongc65a0542021-01-07 14:21:01 -08003893
3894
jiajia tangf3f842b2021-03-17 21:49:44 +08003895def GetBootImageBuildProp(boot_img, ramdisk_format=RamdiskFormat.LZ4):
Yifan Hongc65a0542021-01-07 14:21:01 -08003896 """
Yifan Hong85ac5012021-01-07 14:43:46 -08003897 Get build.prop from ramdisk within the boot image
Yifan Hongc65a0542021-01-07 14:21:01 -08003898
3899 Args:
jiajia tangf3f842b2021-03-17 21:49:44 +08003900 boot_img: the boot image file. Ramdisk must be compressed with lz4 or minigzip format.
Yifan Hongc65a0542021-01-07 14:21:01 -08003901
3902 Return:
Yifan Hong85ac5012021-01-07 14:43:46 -08003903 An extracted file that stores properties in the boot image.
Yifan Hongc65a0542021-01-07 14:21:01 -08003904 """
Yifan Hongc65a0542021-01-07 14:21:01 -08003905 tmp_dir = MakeTempDir('boot_', suffix='.img')
3906 try:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003907 RunAndCheckOutput(['unpack_bootimg', '--boot_img',
3908 boot_img, '--out', tmp_dir])
Yifan Hongc65a0542021-01-07 14:21:01 -08003909 ramdisk = os.path.join(tmp_dir, 'ramdisk')
3910 if not os.path.isfile(ramdisk):
3911 logger.warning('Unable to get boot image timestamp: no ramdisk in boot')
3912 return None
3913 uncompressed_ramdisk = os.path.join(tmp_dir, 'uncompressed_ramdisk')
jiajia tangf3f842b2021-03-17 21:49:44 +08003914 if ramdisk_format == RamdiskFormat.LZ4:
3915 RunAndCheckOutput(['lz4', '-d', ramdisk, uncompressed_ramdisk])
3916 elif ramdisk_format == RamdiskFormat.GZ:
3917 with open(ramdisk, 'rb') as input_stream:
3918 with open(uncompressed_ramdisk, 'wb') as output_stream:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003919 p2 = Run(['minigzip', '-d'], stdin=input_stream.fileno(),
3920 stdout=output_stream.fileno())
jiajia tangf3f842b2021-03-17 21:49:44 +08003921 p2.wait()
3922 else:
3923 logger.error('Only support lz4 or minigzip ramdisk format.')
3924 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003925
3926 abs_uncompressed_ramdisk = os.path.abspath(uncompressed_ramdisk)
3927 extracted_ramdisk = MakeTempDir('extracted_ramdisk')
3928 # Use "toybox cpio" instead of "cpio" because the latter invokes cpio from
3929 # the host environment.
3930 RunAndCheckOutput(['toybox', 'cpio', '-F', abs_uncompressed_ramdisk, '-i'],
Kelvin Zhang563750f2021-04-28 12:46:17 -04003931 cwd=extracted_ramdisk)
Yifan Hongc65a0542021-01-07 14:21:01 -08003932
Yifan Hongc65a0542021-01-07 14:21:01 -08003933 for search_path in RAMDISK_BUILD_PROP_REL_PATHS:
3934 prop_file = os.path.join(extracted_ramdisk, search_path)
3935 if os.path.isfile(prop_file):
Yifan Hong7dc51172021-01-12 11:27:39 -08003936 return prop_file
Kelvin Zhang563750f2021-04-28 12:46:17 -04003937 logger.warning(
3938 'Unable to get boot image timestamp: no %s in ramdisk', search_path)
Yifan Hongc65a0542021-01-07 14:21:01 -08003939
Yifan Hong7dc51172021-01-12 11:27:39 -08003940 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003941
Yifan Hong85ac5012021-01-07 14:43:46 -08003942 except ExternalError as e:
3943 logger.warning('Unable to get boot image build props: %s', e)
3944 return None
3945
3946
3947def GetBootImageTimestamp(boot_img):
3948 """
3949 Get timestamp from ramdisk within the boot image
3950
3951 Args:
3952 boot_img: the boot image file. Ramdisk must be compressed with lz4 format.
3953
3954 Return:
3955 An integer that corresponds to the timestamp of the boot image, or None
3956 if file has unknown format. Raise exception if an unexpected error has
3957 occurred.
3958 """
3959 prop_file = GetBootImageBuildProp(boot_img)
3960 if not prop_file:
3961 return None
3962
3963 props = PartitionBuildProps.FromBuildPropFile('boot', prop_file)
3964 if props is None:
3965 return None
3966
3967 try:
Yifan Hongc65a0542021-01-07 14:21:01 -08003968 timestamp = props.GetProp('ro.bootimage.build.date.utc')
3969 if timestamp:
3970 return int(timestamp)
Kelvin Zhang563750f2021-04-28 12:46:17 -04003971 logger.warning(
3972 'Unable to get boot image timestamp: ro.bootimage.build.date.utc is undefined')
Yifan Hongc65a0542021-01-07 14:21:01 -08003973 return None
3974
3975 except ExternalError as e:
3976 logger.warning('Unable to get boot image timestamp: %s', e)
3977 return None
Kelvin Zhang27324132021-03-22 15:38:38 -04003978
3979
3980def GetCareMap(which, imgname):
3981 """Returns the care_map string for the given partition.
3982
3983 Args:
3984 which: The partition name, must be listed in PARTITIONS_WITH_CARE_MAP.
3985 imgname: The filename of the image.
3986
3987 Returns:
3988 (which, care_map_ranges): care_map_ranges is the raw string of the care_map
3989 RangeSet; or None.
3990 """
3991 assert which in PARTITIONS_WITH_CARE_MAP
3992
3993 # which + "_image_size" contains the size that the actual filesystem image
3994 # resides in, which is all that needs to be verified. The additional blocks in
3995 # the image file contain verity metadata, by reading which would trigger
3996 # invalid reads.
3997 image_size = OPTIONS.info_dict.get(which + "_image_size")
3998 if not image_size:
3999 return None
4000
David Anderson9e95a022021-08-31 21:32:45 -07004001 disable_sparse = OPTIONS.info_dict.get(which + "_disable_sparse")
4002
Kelvin Zhang27324132021-03-22 15:38:38 -04004003 image_blocks = int(image_size) // 4096 - 1
Kelvin Zhang98ef7bb2022-01-07 14:41:46 -08004004 # It's OK for image_blocks to be 0, because care map ranges are inclusive.
4005 # So 0-0 means "just block 0", which is valid.
4006 assert image_blocks >= 0, "blocks for {} must be non-negative, image size: {}".format(
4007 which, image_size)
Kelvin Zhang27324132021-03-22 15:38:38 -04004008
4009 # For sparse images, we will only check the blocks that are listed in the care
4010 # map, i.e. the ones with meaningful data.
David Anderson9e95a022021-08-31 21:32:45 -07004011 if "extfs_sparse_flag" in OPTIONS.info_dict and not disable_sparse:
Kelvin Zhang27324132021-03-22 15:38:38 -04004012 simg = sparse_img.SparseImage(imgname)
4013 care_map_ranges = simg.care_map.intersect(
4014 rangelib.RangeSet("0-{}".format(image_blocks)))
4015
4016 # Otherwise for non-sparse images, we read all the blocks in the filesystem
4017 # image.
4018 else:
4019 care_map_ranges = rangelib.RangeSet("0-{}".format(image_blocks))
4020
4021 return [which, care_map_ranges.to_string_raw()]
4022
4023
4024def AddCareMapForAbOta(output_file, ab_partitions, image_paths):
4025 """Generates and adds care_map.pb for a/b partition that has care_map.
4026
4027 Args:
4028 output_file: The output zip file (needs to be already open),
4029 or file path to write care_map.pb.
4030 ab_partitions: The list of A/B partitions.
4031 image_paths: A map from the partition name to the image path.
4032 """
4033 if not output_file:
4034 raise ExternalError('Expected output_file for AddCareMapForAbOta')
4035
4036 care_map_list = []
4037 for partition in ab_partitions:
4038 partition = partition.strip()
4039 if partition not in PARTITIONS_WITH_CARE_MAP:
4040 continue
4041
4042 verity_block_device = "{}_verity_block_device".format(partition)
4043 avb_hashtree_enable = "avb_{}_hashtree_enable".format(partition)
4044 if (verity_block_device in OPTIONS.info_dict or
4045 OPTIONS.info_dict.get(avb_hashtree_enable) == "true"):
4046 if partition not in image_paths:
4047 logger.warning('Potential partition with care_map missing from images: %s',
4048 partition)
4049 continue
4050 image_path = image_paths[partition]
4051 if not os.path.exists(image_path):
4052 raise ExternalError('Expected image at path {}'.format(image_path))
4053
4054 care_map = GetCareMap(partition, image_path)
4055 if not care_map:
4056 continue
4057 care_map_list += care_map
4058
4059 # adds fingerprint field to the care_map
4060 # TODO(xunchang) revisit the fingerprint calculation for care_map.
4061 partition_props = OPTIONS.info_dict.get(partition + ".build.prop")
4062 prop_name_list = ["ro.{}.build.fingerprint".format(partition),
4063 "ro.{}.build.thumbprint".format(partition)]
4064
4065 present_props = [x for x in prop_name_list if
4066 partition_props and partition_props.GetProp(x)]
4067 if not present_props:
4068 logger.warning(
4069 "fingerprint is not present for partition %s", partition)
4070 property_id, fingerprint = "unknown", "unknown"
4071 else:
4072 property_id = present_props[0]
4073 fingerprint = partition_props.GetProp(property_id)
4074 care_map_list += [property_id, fingerprint]
4075
4076 if not care_map_list:
4077 return
4078
4079 # Converts the list into proto buf message by calling care_map_generator; and
4080 # writes the result to a temp file.
4081 temp_care_map_text = MakeTempFile(prefix="caremap_text-",
4082 suffix=".txt")
4083 with open(temp_care_map_text, 'w') as text_file:
4084 text_file.write('\n'.join(care_map_list))
4085
4086 temp_care_map = MakeTempFile(prefix="caremap-", suffix=".pb")
4087 care_map_gen_cmd = ["care_map_generator", temp_care_map_text, temp_care_map]
4088 RunAndCheckOutput(care_map_gen_cmd)
4089
4090 if not isinstance(output_file, zipfile.ZipFile):
4091 shutil.copy(temp_care_map, output_file)
4092 return
4093 # output_file is a zip file
4094 care_map_path = "META/care_map.pb"
4095 if care_map_path in output_file.namelist():
4096 # Copy the temp file into the OPTIONS.input_tmp dir and update the
4097 # replace_updated_files_list used by add_img_to_target_files
4098 if not OPTIONS.replace_updated_files_list:
4099 OPTIONS.replace_updated_files_list = []
4100 shutil.copy(temp_care_map, os.path.join(OPTIONS.input_tmp, care_map_path))
4101 OPTIONS.replace_updated_files_list.append(care_map_path)
4102 else:
4103 ZipWrite(output_file, temp_care_map, arcname=care_map_path)
Kelvin Zhang26390482021-11-02 14:31:10 -07004104
4105
4106def IsSparseImage(filepath):
4107 with open(filepath, 'rb') as fp:
4108 # Magic for android sparse image format
4109 # https://source.android.com/devices/bootloader/images
4110 return fp.read(4) == b'\x3A\xFF\x26\xED'