The Android Open Source Project | 4f6e8d7 | 2008-10-21 07:00:00 -0700 | [diff] [blame] | 1 | /* |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 2 | * Copyright (C) 2007 The Android Open Source Project |
The Android Open Source Project | 4f6e8d7 | 2008-10-21 07:00:00 -0700 | [diff] [blame] | 3 | * |
| 4 | * Licensed under the Apache License, Version 2.0 (the "License"); |
| 5 | * you may not use this file except in compliance with the License. |
| 6 | * You may obtain a copy of the License at |
| 7 | * |
| 8 | * http://www.apache.org/licenses/LICENSE-2.0 |
| 9 | * |
| 10 | * Unless required by applicable law or agreed to in writing, software |
| 11 | * distributed under the License is distributed on an "AS IS" BASIS, |
| 12 | * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. |
| 13 | * See the License for the specific language governing permissions and |
| 14 | * limitations under the License. |
| 15 | */ |
| 16 | |
Tom Cherry | cc054c9 | 2017-04-05 17:55:46 -0700 | [diff] [blame] | 17 | #include "devices.h" |
| 18 | |
The Android Open Source Project | 4f6e8d7 | 2008-10-21 07:00:00 -0700 | [diff] [blame] | 19 | #include <errno.h> |
Daniel Leung | c0c1ffe | 2012-07-02 11:32:30 -0700 | [diff] [blame] | 20 | #include <fnmatch.h> |
Elliott Hughes | 51056c4 | 2017-05-18 09:13:15 -0700 | [diff] [blame] | 21 | #include <sys/sysmacros.h> |
Elliott Hughes | f39f7f1 | 2016-08-31 14:41:51 -0700 | [diff] [blame] | 22 | #include <unistd.h> |
| 23 | |
Mark Salyzyn | e419a79 | 2019-03-06 15:18:46 -0800 | [diff] [blame] | 24 | #include <chrono> |
David Anderson | 515a5bd | 2020-10-19 19:54:18 -0700 | [diff] [blame] | 25 | #include <filesystem> |
James Hawkins | 588a2ca | 2016-02-18 14:52:46 -0800 | [diff] [blame] | 26 | #include <memory> |
Mark Salyzyn | e419a79 | 2019-03-06 15:18:46 -0800 | [diff] [blame] | 27 | #include <string> |
| 28 | #include <thread> |
James Hawkins | 588a2ca | 2016-02-18 14:52:46 -0800 | [diff] [blame] | 29 | |
Mark Salyzyn | e419a79 | 2019-03-06 15:18:46 -0800 | [diff] [blame] | 30 | #include <android-base/chrono_utils.h> |
| 31 | #include <android-base/file.h> |
Tom Cherry | 3f5eaae5 | 2017-04-06 16:30:22 -0700 | [diff] [blame] | 32 | #include <android-base/logging.h> |
Rob Herring | 6de783a | 2016-05-06 10:06:59 -0500 | [diff] [blame] | 33 | #include <android-base/stringprintf.h> |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 34 | #include <android-base/strings.h> |
Tom Cherry | 3f5eaae5 | 2017-04-06 16:30:22 -0700 | [diff] [blame] | 35 | #include <private/android_filesystem_config.h> |
| 36 | #include <selinux/android.h> |
Tom Cherry | 3f5eaae5 | 2017-04-06 16:30:22 -0700 | [diff] [blame] | 37 | #include <selinux/selinux.h> |
Vernon Tang | 3f582e9 | 2011-04-25 13:08:17 +1000 | [diff] [blame] | 38 | |
Vic Yang | 92c236e | 2019-05-28 15:58:35 -0700 | [diff] [blame] | 39 | #include "selabel.h" |
Colin Cross | b0ab94b | 2010-04-08 16:16:20 -0700 | [diff] [blame] | 40 | #include "util.h" |
The Android Open Source Project | 4f6e8d7 | 2008-10-21 07:00:00 -0700 | [diff] [blame] | 41 | |
Mark Salyzyn | e419a79 | 2019-03-06 15:18:46 -0800 | [diff] [blame] | 42 | using namespace std::chrono_literals; |
| 43 | |
Tom Cherry | 81f5d3e | 2017-06-22 12:53:17 -0700 | [diff] [blame] | 44 | using android::base::Basename; |
| 45 | using android::base::Dirname; |
Mark Salyzyn | e419a79 | 2019-03-06 15:18:46 -0800 | [diff] [blame] | 46 | using android::base::ReadFileToString; |
Tom Cherry | 81f5d3e | 2017-06-22 12:53:17 -0700 | [diff] [blame] | 47 | using android::base::Readlink; |
| 48 | using android::base::Realpath; |
| 49 | using android::base::StartsWith; |
| 50 | using android::base::StringPrintf; |
Mark Salyzyn | e419a79 | 2019-03-06 15:18:46 -0800 | [diff] [blame] | 51 | using android::base::Trim; |
Tom Cherry | 81f5d3e | 2017-06-22 12:53:17 -0700 | [diff] [blame] | 52 | |
| 53 | namespace android { |
| 54 | namespace init { |
| 55 | |
Andrew Boie | a885d04 | 2013-09-13 17:41:20 -0700 | [diff] [blame] | 56 | /* Given a path that may start with a PCI device, populate the supplied buffer |
| 57 | * with the PCI domain/bus number and the peripheral ID and return 0. |
| 58 | * If it doesn't start with a PCI device, or there is some error, return -1 */ |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 59 | static bool FindPciDevicePrefix(const std::string& path, std::string* result) { |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 60 | result->clear(); |
Andrew Boie | a885d04 | 2013-09-13 17:41:20 -0700 | [diff] [blame] | 61 | |
Tom Cherry | 81f5d3e | 2017-06-22 12:53:17 -0700 | [diff] [blame] | 62 | if (!StartsWith(path, "/devices/pci")) return false; |
Andrew Boie | a885d04 | 2013-09-13 17:41:20 -0700 | [diff] [blame] | 63 | |
| 64 | /* Beginning of the prefix is the initial "pci" after "/devices/" */ |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 65 | std::string::size_type start = 9; |
Andrew Boie | a885d04 | 2013-09-13 17:41:20 -0700 | [diff] [blame] | 66 | |
| 67 | /* End of the prefix is two path '/' later, capturing the domain/bus number |
| 68 | * and the peripheral ID. Example: pci0000:00/0000:00:1f.2 */ |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 69 | auto end = path.find('/', start); |
| 70 | if (end == std::string::npos) return false; |
Andrew Boie | a885d04 | 2013-09-13 17:41:20 -0700 | [diff] [blame] | 71 | |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 72 | end = path.find('/', end + 1); |
| 73 | if (end == std::string::npos) return false; |
Andrew Boie | a885d04 | 2013-09-13 17:41:20 -0700 | [diff] [blame] | 74 | |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 75 | auto length = end - start; |
| 76 | if (length <= 4) { |
| 77 | // The minimum string that will get to this check is 'pci/', which is malformed, |
| 78 | // so return false |
| 79 | return false; |
| 80 | } |
| 81 | |
| 82 | *result = path.substr(start, length); |
| 83 | return true; |
Andrew Boie | a885d04 | 2013-09-13 17:41:20 -0700 | [diff] [blame] | 84 | } |
| 85 | |
Jeremy Compostella | 937309d | 2017-03-03 16:27:29 +0100 | [diff] [blame] | 86 | /* Given a path that may start with a virtual block device, populate |
| 87 | * the supplied buffer with the virtual block device ID and return 0. |
| 88 | * If it doesn't start with a virtual block device, or there is some |
| 89 | * error, return -1 */ |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 90 | static bool FindVbdDevicePrefix(const std::string& path, std::string* result) { |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 91 | result->clear(); |
| 92 | |
Tom Cherry | 81f5d3e | 2017-06-22 12:53:17 -0700 | [diff] [blame] | 93 | if (!StartsWith(path, "/devices/vbd-")) return false; |
Jeremy Compostella | 937309d | 2017-03-03 16:27:29 +0100 | [diff] [blame] | 94 | |
| 95 | /* Beginning of the prefix is the initial "vbd-" after "/devices/" */ |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 96 | std::string::size_type start = 13; |
Jeremy Compostella | 937309d | 2017-03-03 16:27:29 +0100 | [diff] [blame] | 97 | |
| 98 | /* End of the prefix is one path '/' later, capturing the |
| 99 | virtual block device ID. Example: 768 */ |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 100 | auto end = path.find('/', start); |
| 101 | if (end == std::string::npos) return false; |
Jeremy Compostella | 937309d | 2017-03-03 16:27:29 +0100 | [diff] [blame] | 102 | |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 103 | auto length = end - start; |
| 104 | if (length == 0) return false; |
Jeremy Compostella | 937309d | 2017-03-03 16:27:29 +0100 | [diff] [blame] | 105 | |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 106 | *result = path.substr(start, length); |
| 107 | return true; |
Jeremy Compostella | 937309d | 2017-03-03 16:27:29 +0100 | [diff] [blame] | 108 | } |
| 109 | |
Mark Salyzyn | e419a79 | 2019-03-06 15:18:46 -0800 | [diff] [blame] | 110 | // Given a path that may start with a virtual dm block device, populate |
| 111 | // the supplied buffer with the dm module's instantiated name. |
| 112 | // If it doesn't start with a virtual block device, or there is some |
| 113 | // error, return false. |
David Anderson | 924858c | 2019-06-26 17:00:00 -0700 | [diff] [blame] | 114 | static bool FindDmDevice(const std::string& path, std::string* name, std::string* uuid) { |
Mark Salyzyn | e419a79 | 2019-03-06 15:18:46 -0800 | [diff] [blame] | 115 | if (!StartsWith(path, "/devices/virtual/block/dm-")) return false; |
Mark Salyzyn | e419a79 | 2019-03-06 15:18:46 -0800 | [diff] [blame] | 116 | |
David Anderson | 924858c | 2019-06-26 17:00:00 -0700 | [diff] [blame] | 117 | if (!ReadFileToString("/sys" + path + "/dm/name", name)) { |
| 118 | return false; |
Mark Salyzyn | e419a79 | 2019-03-06 15:18:46 -0800 | [diff] [blame] | 119 | } |
David Anderson | 924858c | 2019-06-26 17:00:00 -0700 | [diff] [blame] | 120 | ReadFileToString("/sys" + path + "/dm/uuid", uuid); |
| 121 | |
| 122 | *name = android::base::Trim(*name); |
| 123 | *uuid = android::base::Trim(*uuid); |
Mark Salyzyn | e419a79 | 2019-03-06 15:18:46 -0800 | [diff] [blame] | 124 | return true; |
| 125 | } |
| 126 | |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 127 | Permissions::Permissions(const std::string& name, mode_t perm, uid_t uid, gid_t gid) |
| 128 | : name_(name), perm_(perm), uid_(uid), gid_(gid), prefix_(false), wildcard_(false) { |
| 129 | // Set 'prefix_' or 'wildcard_' based on the below cases: |
| 130 | // |
| 131 | // 1) No '*' in 'name' -> Neither are set and Match() checks a given path for strict |
| 132 | // equality with 'name' |
| 133 | // |
| 134 | // 2) '*' only appears as the last character in 'name' -> 'prefix'_ is set to true and |
| 135 | // Match() checks if 'name' is a prefix of a given path. |
| 136 | // |
| 137 | // 3) '*' appears elsewhere -> 'wildcard_' is set to true and Match() uses fnmatch() |
| 138 | // with FNM_PATHNAME to compare 'name' to a given path. |
| 139 | |
| 140 | auto wildcard_position = name_.find('*'); |
| 141 | if (wildcard_position != std::string::npos) { |
| 142 | if (wildcard_position == name_.length() - 1) { |
| 143 | prefix_ = true; |
| 144 | name_.pop_back(); |
| 145 | } else { |
| 146 | wildcard_ = true; |
The Android Open Source Project | 4f6e8d7 | 2008-10-21 07:00:00 -0700 | [diff] [blame] | 147 | } |
Elliott Hughes | c0e919c | 2015-02-04 14:46:36 -0800 | [diff] [blame] | 148 | } |
The Android Open Source Project | 4f6e8d7 | 2008-10-21 07:00:00 -0700 | [diff] [blame] | 149 | } |
| 150 | |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 151 | bool Permissions::Match(const std::string& path) const { |
Elliott Hughes | 579e682 | 2017-12-20 09:41:00 -0800 | [diff] [blame] | 152 | if (prefix_) return StartsWith(path, name_); |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 153 | if (wildcard_) return fnmatch(name_.c_str(), path.c_str(), FNM_PATHNAME) == 0; |
| 154 | return path == name_; |
| 155 | } |
| 156 | |
| 157 | bool SysfsPermissions::MatchWithSubsystem(const std::string& path, |
| 158 | const std::string& subsystem) const { |
Tom Cherry | 81f5d3e | 2017-06-22 12:53:17 -0700 | [diff] [blame] | 159 | std::string path_basename = Basename(path); |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 160 | if (name().find(subsystem) != std::string::npos) { |
| 161 | if (Match("/sys/class/" + subsystem + "/" + path_basename)) return true; |
| 162 | if (Match("/sys/bus/" + subsystem + "/devices/" + path_basename)) return true; |
| 163 | } |
| 164 | return Match(path); |
| 165 | } |
| 166 | |
| 167 | void SysfsPermissions::SetPermissions(const std::string& path) const { |
| 168 | std::string attribute_file = path + "/" + attribute_; |
| 169 | LOG(VERBOSE) << "fixup " << attribute_file << " " << uid() << " " << gid() << " " << std::oct |
| 170 | << perm(); |
| 171 | |
| 172 | if (access(attribute_file.c_str(), F_OK) == 0) { |
| 173 | if (chown(attribute_file.c_str(), uid(), gid()) != 0) { |
| 174 | PLOG(ERROR) << "chown(" << attribute_file << ", " << uid() << ", " << gid() |
| 175 | << ") failed"; |
| 176 | } |
| 177 | if (chmod(attribute_file.c_str(), perm()) != 0) { |
| 178 | PLOG(ERROR) << "chmod(" << attribute_file << ", " << perm() << ") failed"; |
| 179 | } |
| 180 | } |
| 181 | } |
| 182 | |
Sandeep Patil | cd2ba0d | 2017-06-21 12:46:41 -0700 | [diff] [blame] | 183 | // Given a path that may start with a platform device, find the parent platform device by finding a |
| 184 | // parent directory with a 'subsystem' symlink that points to the platform bus. |
| 185 | // If it doesn't start with a platform device, return false |
| 186 | bool DeviceHandler::FindPlatformDevice(std::string path, std::string* platform_device_path) const { |
| 187 | platform_device_path->clear(); |
| 188 | |
| 189 | // Uevents don't contain the mount point, so we need to add it here. |
| 190 | path.insert(0, sysfs_mount_point_); |
| 191 | |
Tom Cherry | 81f5d3e | 2017-06-22 12:53:17 -0700 | [diff] [blame] | 192 | std::string directory = Dirname(path); |
Sandeep Patil | cd2ba0d | 2017-06-21 12:46:41 -0700 | [diff] [blame] | 193 | |
| 194 | while (directory != "/" && directory != ".") { |
| 195 | std::string subsystem_link_path; |
Tom Cherry | 81f5d3e | 2017-06-22 12:53:17 -0700 | [diff] [blame] | 196 | if (Realpath(directory + "/subsystem", &subsystem_link_path) && |
Usama Arif | d86300c | 2020-06-12 13:45:11 +0100 | [diff] [blame] | 197 | (subsystem_link_path == sysfs_mount_point_ + "/bus/platform" || |
| 198 | subsystem_link_path == sysfs_mount_point_ + "/bus/amba")) { |
Sandeep Patil | cd2ba0d | 2017-06-21 12:46:41 -0700 | [diff] [blame] | 199 | // We need to remove the mount point that we added above before returning. |
| 200 | directory.erase(0, sysfs_mount_point_.size()); |
| 201 | *platform_device_path = directory; |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 202 | return true; |
| 203 | } |
Sandeep Patil | cd2ba0d | 2017-06-21 12:46:41 -0700 | [diff] [blame] | 204 | |
| 205 | auto last_slash = path.rfind('/'); |
| 206 | if (last_slash == std::string::npos) return false; |
| 207 | |
| 208 | path.erase(last_slash); |
Tom Cherry | 81f5d3e | 2017-06-22 12:53:17 -0700 | [diff] [blame] | 209 | directory = Dirname(path); |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 210 | } |
Sandeep Patil | cd2ba0d | 2017-06-21 12:46:41 -0700 | [diff] [blame] | 211 | |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 212 | return false; |
| 213 | } |
| 214 | |
| 215 | void DeviceHandler::FixupSysPermissions(const std::string& upath, |
| 216 | const std::string& subsystem) const { |
| 217 | // upaths omit the "/sys" that paths in this list |
| 218 | // contain, so we prepend it... |
| 219 | std::string path = "/sys" + upath; |
| 220 | |
| 221 | for (const auto& s : sysfs_permissions_) { |
| 222 | if (s.MatchWithSubsystem(path, subsystem)) s.SetPermissions(path); |
| 223 | } |
| 224 | |
Tom Cherry | c583305 | 2017-05-16 15:35:41 -0700 | [diff] [blame] | 225 | if (!skip_restorecon_ && access(path.c_str(), F_OK) == 0) { |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 226 | LOG(VERBOSE) << "restorecon_recursive: " << path; |
| 227 | if (selinux_android_restorecon(path.c_str(), SELINUX_ANDROID_RESTORECON_RECURSE) != 0) { |
| 228 | PLOG(ERROR) << "selinux_android_restorecon(" << path << ") failed"; |
| 229 | } |
| 230 | } |
| 231 | } |
| 232 | |
| 233 | std::tuple<mode_t, uid_t, gid_t> DeviceHandler::GetDevicePermissions( |
| 234 | const std::string& path, const std::vector<std::string>& links) const { |
| 235 | // Search the perms list in reverse so that ueventd.$hardware can override ueventd.rc. |
| 236 | for (auto it = dev_permissions_.crbegin(); it != dev_permissions_.crend(); ++it) { |
| 237 | if (it->Match(path) || std::any_of(links.cbegin(), links.cend(), |
| 238 | [it](const auto& link) { return it->Match(link); })) { |
| 239 | return {it->perm(), it->uid(), it->gid()}; |
| 240 | } |
| 241 | } |
| 242 | /* Default if nothing found. */ |
| 243 | return {0600, 0, 0}; |
| 244 | } |
| 245 | |
Tom Cherry | b4dd881 | 2017-06-23 12:43:48 -0700 | [diff] [blame] | 246 | void DeviceHandler::MakeDevice(const std::string& path, bool block, int major, int minor, |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 247 | const std::vector<std::string>& links) const { |
| 248 | auto[mode, uid, gid] = GetDevicePermissions(path, links); |
| 249 | mode |= (block ? S_IFBLK : S_IFCHR); |
| 250 | |
Tom Cherry | 0c8d6d2 | 2017-08-10 12:22:44 -0700 | [diff] [blame] | 251 | std::string secontext; |
| 252 | if (!SelabelLookupFileContextBestMatch(path, links, mode, &secontext)) { |
| 253 | PLOG(ERROR) << "Device '" << path << "' not created; cannot find SELinux label"; |
| 254 | return; |
| 255 | } |
| 256 | if (!secontext.empty()) { |
| 257 | setfscreatecon(secontext.c_str()); |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 258 | } |
| 259 | |
| 260 | dev_t dev = makedev(major, minor); |
| 261 | /* Temporarily change egid to avoid race condition setting the gid of the |
| 262 | * device node. Unforunately changing the euid would prevent creation of |
| 263 | * some device nodes, so the uid has to be set with chown() and is still |
| 264 | * racy. Fixing the gid race at least fixed the issue with system_server |
| 265 | * opening dynamic input devices under the AID_INPUT gid. */ |
| 266 | if (setegid(gid)) { |
| 267 | PLOG(ERROR) << "setegid(" << gid << ") for " << path << " device failed"; |
| 268 | goto out; |
| 269 | } |
| 270 | /* If the node already exists update its SELinux label to handle cases when |
| 271 | * it was created with the wrong context during coldboot procedure. */ |
Tom Cherry | 0c8d6d2 | 2017-08-10 12:22:44 -0700 | [diff] [blame] | 272 | if (mknod(path.c_str(), mode, dev) && (errno == EEXIST) && !secontext.empty()) { |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 273 | char* fcon = nullptr; |
| 274 | int rc = lgetfilecon(path.c_str(), &fcon); |
| 275 | if (rc < 0) { |
| 276 | PLOG(ERROR) << "Cannot get SELinux label on '" << path << "' device"; |
| 277 | goto out; |
| 278 | } |
| 279 | |
Tom Cherry | 0c8d6d2 | 2017-08-10 12:22:44 -0700 | [diff] [blame] | 280 | bool different = fcon != secontext; |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 281 | freecon(fcon); |
| 282 | |
Tom Cherry | 0c8d6d2 | 2017-08-10 12:22:44 -0700 | [diff] [blame] | 283 | if (different && lsetfilecon(path.c_str(), secontext.c_str())) { |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 284 | PLOG(ERROR) << "Cannot set '" << secontext << "' SELinux label on '" << path |
| 285 | << "' device"; |
| 286 | } |
| 287 | } |
| 288 | |
| 289 | out: |
| 290 | chown(path.c_str(), uid, -1); |
| 291 | if (setegid(AID_ROOT)) { |
| 292 | PLOG(FATAL) << "setegid(AID_ROOT) failed"; |
| 293 | } |
| 294 | |
Tom Cherry | 0c8d6d2 | 2017-08-10 12:22:44 -0700 | [diff] [blame] | 295 | if (!secontext.empty()) { |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 296 | setfscreatecon(nullptr); |
| 297 | } |
| 298 | } |
| 299 | |
Tom Cherry | c44f6a4 | 2017-04-05 15:58:31 -0700 | [diff] [blame] | 300 | // replaces any unacceptable characters with '_', the |
| 301 | // length of the resulting string is equal to the input string |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 302 | void SanitizePartitionName(std::string* string) { |
Tom Cherry | c44f6a4 | 2017-04-05 15:58:31 -0700 | [diff] [blame] | 303 | const char* accept = |
| 304 | "abcdefghijklmnopqrstuvwxyz" |
| 305 | "ABCDEFGHIJKLMNOPQRSTUVWXYZ" |
| 306 | "0123456789" |
| 307 | "_-."; |
| 308 | |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 309 | if (!string) return; |
Tom Cherry | c44f6a4 | 2017-04-05 15:58:31 -0700 | [diff] [blame] | 310 | |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 311 | std::string::size_type pos = 0; |
| 312 | while ((pos = string->find_first_not_of(accept, pos)) != std::string::npos) { |
| 313 | (*string)[pos] = '_'; |
Tom Cherry | c44f6a4 | 2017-04-05 15:58:31 -0700 | [diff] [blame] | 314 | } |
| 315 | } |
| 316 | |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 317 | std::vector<std::string> DeviceHandler::GetBlockDeviceSymlinks(const Uevent& uevent) const { |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 318 | std::string device; |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 319 | std::string type; |
Mark Salyzyn | e419a79 | 2019-03-06 15:18:46 -0800 | [diff] [blame] | 320 | std::string partition; |
David Anderson | 924858c | 2019-06-26 17:00:00 -0700 | [diff] [blame] | 321 | std::string uuid; |
Colin Cross | b0ab94b | 2010-04-08 16:16:20 -0700 | [diff] [blame] | 322 | |
Sandeep Patil | cd2ba0d | 2017-06-21 12:46:41 -0700 | [diff] [blame] | 323 | if (FindPlatformDevice(uevent.path, &device)) { |
Tom Cherry | 1ab8f55 | 2017-04-06 14:41:30 -0700 | [diff] [blame] | 324 | // Skip /devices/platform or /devices/ if present |
| 325 | static const std::string devices_platform_prefix = "/devices/platform/"; |
| 326 | static const std::string devices_prefix = "/devices/"; |
| 327 | |
Elliott Hughes | 579e682 | 2017-12-20 09:41:00 -0800 | [diff] [blame] | 328 | if (StartsWith(device, devices_platform_prefix)) { |
Tom Cherry | 1ab8f55 | 2017-04-06 14:41:30 -0700 | [diff] [blame] | 329 | device = device.substr(devices_platform_prefix.length()); |
Elliott Hughes | 579e682 | 2017-12-20 09:41:00 -0800 | [diff] [blame] | 330 | } else if (StartsWith(device, devices_prefix)) { |
Tom Cherry | 1ab8f55 | 2017-04-06 14:41:30 -0700 | [diff] [blame] | 331 | device = device.substr(devices_prefix.length()); |
| 332 | } |
| 333 | |
Andrew Boie | a885d04 | 2013-09-13 17:41:20 -0700 | [diff] [blame] | 334 | type = "platform"; |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 335 | } else if (FindPciDevicePrefix(uevent.path, &device)) { |
Andrew Boie | a885d04 | 2013-09-13 17:41:20 -0700 | [diff] [blame] | 336 | type = "pci"; |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 337 | } else if (FindVbdDevicePrefix(uevent.path, &device)) { |
Jeremy Compostella | 937309d | 2017-03-03 16:27:29 +0100 | [diff] [blame] | 338 | type = "vbd"; |
David Anderson | 924858c | 2019-06-26 17:00:00 -0700 | [diff] [blame] | 339 | } else if (FindDmDevice(uevent.path, &partition, &uuid)) { |
| 340 | std::vector<std::string> symlinks = {"/dev/block/mapper/" + partition}; |
| 341 | if (!uuid.empty()) { |
| 342 | symlinks.emplace_back("/dev/block/mapper/by-uuid/" + uuid); |
| 343 | } |
| 344 | return symlinks; |
Andrew Boie | a885d04 | 2013-09-13 17:41:20 -0700 | [diff] [blame] | 345 | } else { |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 346 | return {}; |
Andrew Boie | a885d04 | 2013-09-13 17:41:20 -0700 | [diff] [blame] | 347 | } |
Dima Zavin | f395c92 | 2013-03-06 16:23:57 -0800 | [diff] [blame] | 348 | |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 349 | std::vector<std::string> links; |
Colin Cross | b0ab94b | 2010-04-08 16:16:20 -0700 | [diff] [blame] | 350 | |
Sandeep Patil | 35403eb | 2017-02-08 20:27:12 -0800 | [diff] [blame] | 351 | LOG(VERBOSE) << "found " << type << " device " << device; |
Colin Cross | fadb85e | 2011-03-30 18:32:12 -0700 | [diff] [blame] | 352 | |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 353 | auto link_path = "/dev/block/" + type + "/" + device; |
Colin Cross | b0ab94b | 2010-04-08 16:16:20 -0700 | [diff] [blame] | 354 | |
Tom Cherry | 2c56d7c | 2018-12-20 14:36:49 -0800 | [diff] [blame] | 355 | bool is_boot_device = boot_devices_.find(device) != boot_devices_.end(); |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 356 | if (!uevent.partition_name.empty()) { |
| 357 | std::string partition_name_sanitized(uevent.partition_name); |
| 358 | SanitizePartitionName(&partition_name_sanitized); |
| 359 | if (partition_name_sanitized != uevent.partition_name) { |
| 360 | LOG(VERBOSE) << "Linking partition '" << uevent.partition_name << "' as '" |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 361 | << partition_name_sanitized << "'"; |
Elliott Hughes | f86b5a6 | 2016-06-24 15:12:21 -0700 | [diff] [blame] | 362 | } |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 363 | links.emplace_back(link_path + "/by-name/" + partition_name_sanitized); |
Bowgo Tsai | 8eec38f | 2018-05-16 18:33:44 +0800 | [diff] [blame] | 364 | // Adds symlink: /dev/block/by-name/<partition_name>. |
Tom Cherry | 2c56d7c | 2018-12-20 14:36:49 -0800 | [diff] [blame] | 365 | if (is_boot_device) { |
Bowgo Tsai | 8eec38f | 2018-05-16 18:33:44 +0800 | [diff] [blame] | 366 | links.emplace_back("/dev/block/by-name/" + partition_name_sanitized); |
| 367 | } |
Tom Cherry | 2c56d7c | 2018-12-20 14:36:49 -0800 | [diff] [blame] | 368 | } else if (is_boot_device) { |
| 369 | // If we don't have a partition name but we are a partition on a boot device, create a |
| 370 | // symlink of /dev/block/by-name/<device_name> for symmetry. |
| 371 | links.emplace_back("/dev/block/by-name/" + uevent.device_name); |
Colin Cross | b0ab94b | 2010-04-08 16:16:20 -0700 | [diff] [blame] | 372 | } |
| 373 | |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 374 | auto last_slash = uevent.path.rfind('/'); |
| 375 | links.emplace_back(link_path + "/" + uevent.path.substr(last_slash + 1)); |
Colin Cross | b0ab94b | 2010-04-08 16:16:20 -0700 | [diff] [blame] | 376 | |
| 377 | return links; |
Colin Cross | b0ab94b | 2010-04-08 16:16:20 -0700 | [diff] [blame] | 378 | } |
| 379 | |
David Anderson | 924858c | 2019-06-26 17:00:00 -0700 | [diff] [blame] | 380 | static void RemoveDeviceMapperLinks(const std::string& devpath) { |
| 381 | std::vector<std::string> dirs = { |
| 382 | "/dev/block/mapper", |
| 383 | "/dev/block/mapper/by-uuid", |
| 384 | }; |
| 385 | for (const auto& dir : dirs) { |
| 386 | if (access(dir.c_str(), F_OK) != 0) continue; |
| 387 | |
| 388 | std::unique_ptr<DIR, decltype(&closedir)> dh(opendir(dir.c_str()), closedir); |
| 389 | if (!dh) { |
| 390 | PLOG(ERROR) << "Failed to open directory " << dir; |
| 391 | continue; |
| 392 | } |
| 393 | |
| 394 | struct dirent* dp; |
| 395 | std::string link_path; |
| 396 | while ((dp = readdir(dh.get())) != nullptr) { |
| 397 | if (dp->d_type != DT_LNK) continue; |
| 398 | |
| 399 | auto path = dir + "/" + dp->d_name; |
| 400 | if (Readlink(path, &link_path) && link_path == devpath) { |
| 401 | unlink(path.c_str()); |
| 402 | } |
| 403 | } |
| 404 | } |
| 405 | } |
| 406 | |
Tom Cherry | b4dd881 | 2017-06-23 12:43:48 -0700 | [diff] [blame] | 407 | void DeviceHandler::HandleDevice(const std::string& action, const std::string& devpath, bool block, |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 408 | int major, int minor, const std::vector<std::string>& links) const { |
Tom Cherry | e3e4821 | 2017-04-11 13:53:37 -0700 | [diff] [blame] | 409 | if (action == "add") { |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 410 | MakeDevice(devpath, block, major, minor, links); |
David Anderson | 924858c | 2019-06-26 17:00:00 -0700 | [diff] [blame] | 411 | } |
| 412 | |
| 413 | // We don't have full device-mapper information until a change event is fired. |
| 414 | if (action == "add" || (action == "change" && StartsWith(devpath, "/dev/block/dm-"))) { |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 415 | for (const auto& link : links) { |
Tom Cherry | 0c8d6d2 | 2017-08-10 12:22:44 -0700 | [diff] [blame] | 416 | if (!mkdir_recursive(Dirname(link), 0755)) { |
Tom Cherry | 81f5d3e | 2017-06-22 12:53:17 -0700 | [diff] [blame] | 417 | PLOG(ERROR) << "Failed to create directory " << Dirname(link); |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 418 | } |
| 419 | |
Bowgo Tsai | 8eec38f | 2018-05-16 18:33:44 +0800 | [diff] [blame] | 420 | if (symlink(devpath.c_str(), link.c_str())) { |
| 421 | if (errno != EEXIST) { |
| 422 | PLOG(ERROR) << "Failed to symlink " << devpath << " to " << link; |
| 423 | } else if (std::string link_path; |
| 424 | Readlink(link, &link_path) && link_path != devpath) { |
| 425 | PLOG(ERROR) << "Failed to symlink " << devpath << " to " << link |
| 426 | << ", which already links to: " << link_path; |
| 427 | } |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 428 | } |
Colin Cross | b0ab94b | 2010-04-08 16:16:20 -0700 | [diff] [blame] | 429 | } |
The Android Open Source Project | 4f6e8d7 | 2008-10-21 07:00:00 -0700 | [diff] [blame] | 430 | } |
| 431 | |
Tom Cherry | e3e4821 | 2017-04-11 13:53:37 -0700 | [diff] [blame] | 432 | if (action == "remove") { |
David Anderson | 924858c | 2019-06-26 17:00:00 -0700 | [diff] [blame] | 433 | if (StartsWith(devpath, "/dev/block/dm-")) { |
| 434 | RemoveDeviceMapperLinks(devpath); |
| 435 | } |
Tom Cherry | 2e344f9 | 2017-04-04 17:53:45 -0700 | [diff] [blame] | 436 | for (const auto& link : links) { |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 437 | std::string link_path; |
Tom Cherry | 81f5d3e | 2017-06-22 12:53:17 -0700 | [diff] [blame] | 438 | if (Readlink(link, &link_path) && link_path == devpath) { |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 439 | unlink(link.c_str()); |
| 440 | } |
Colin Cross | b0ab94b | 2010-04-08 16:16:20 -0700 | [diff] [blame] | 441 | } |
Tom Cherry | e3e4821 | 2017-04-11 13:53:37 -0700 | [diff] [blame] | 442 | unlink(devpath.c_str()); |
David Anderson | 515a5bd | 2020-10-19 19:54:18 -0700 | [diff] [blame] | 443 | |
| 444 | if (android::base::StartsWith(devpath, "/dev/dm-user/")) { |
| 445 | std::error_code ec; |
| 446 | if (std::filesystem::is_empty("/dev/dm-user/", ec)) { |
| 447 | rmdir("/dev/dm-user"); |
| 448 | } |
| 449 | } |
Colin Cross | b0ab94b | 2010-04-08 16:16:20 -0700 | [diff] [blame] | 450 | } |
The Android Open Source Project | 4f6e8d7 | 2008-10-21 07:00:00 -0700 | [diff] [blame] | 451 | } |
| 452 | |
Tri Vo | ff89b8d | 2019-09-24 13:00:43 -0700 | [diff] [blame] | 453 | void DeviceHandler::HandleAshmemUevent(const Uevent& uevent) { |
| 454 | if (uevent.device_name == "ashmem") { |
| 455 | static const std::string boot_id_path = "/proc/sys/kernel/random/boot_id"; |
| 456 | std::string boot_id; |
| 457 | if (!ReadFileToString(boot_id_path, &boot_id)) { |
| 458 | PLOG(ERROR) << "Cannot duplicate ashmem device node. Failed to read " << boot_id_path; |
| 459 | return; |
| 460 | }; |
| 461 | boot_id = Trim(boot_id); |
| 462 | |
| 463 | Uevent dup_ashmem_uevent = uevent; |
| 464 | dup_ashmem_uevent.device_name += boot_id; |
| 465 | dup_ashmem_uevent.path += boot_id; |
| 466 | HandleUevent(dup_ashmem_uevent); |
| 467 | } |
| 468 | } |
| 469 | |
Tom Cherry | 457e28f | 2018-08-01 13:12:20 -0700 | [diff] [blame] | 470 | void DeviceHandler::HandleUevent(const Uevent& uevent) { |
Tom Cherry | b4dd881 | 2017-06-23 12:43:48 -0700 | [diff] [blame] | 471 | if (uevent.action == "add" || uevent.action == "change" || uevent.action == "online") { |
| 472 | FixupSysPermissions(uevent.path, uevent.subsystem); |
Tom Cherry | e3e4821 | 2017-04-11 13:53:37 -0700 | [diff] [blame] | 473 | } |
Colin Cross | eb5ba83 | 2011-03-30 17:37:17 -0700 | [diff] [blame] | 474 | |
Tom Cherry | 3fa4673 | 2017-04-11 14:19:50 -0700 | [diff] [blame] | 475 | // if it's not a /dev device, nothing to do |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 476 | if (uevent.major < 0 || uevent.minor < 0) return; |
Greg Hackmann | 3312aa8 | 2013-11-18 15:24:40 -0800 | [diff] [blame] | 477 | |
Tom Cherry | 3fa4673 | 2017-04-11 14:19:50 -0700 | [diff] [blame] | 478 | std::string devpath; |
Tom Cherry | b4dd881 | 2017-06-23 12:43:48 -0700 | [diff] [blame] | 479 | std::vector<std::string> links; |
| 480 | bool block = false; |
Greg Hackmann | 3312aa8 | 2013-11-18 15:24:40 -0800 | [diff] [blame] | 481 | |
Tom Cherry | b4dd881 | 2017-06-23 12:43:48 -0700 | [diff] [blame] | 482 | if (uevent.subsystem == "block") { |
| 483 | block = true; |
| 484 | devpath = "/dev/block/" + Basename(uevent.path); |
| 485 | |
| 486 | if (StartsWith(uevent.path, "/devices")) { |
| 487 | links = GetBlockDeviceSymlinks(uevent); |
| 488 | } |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 489 | } else if (const auto subsystem = |
| 490 | std::find(subsystems_.cbegin(), subsystems_.cend(), uevent.subsystem); |
| 491 | subsystem != subsystems_.cend()) { |
Tom Cherry | fe06205 | 2017-04-24 16:59:05 -0700 | [diff] [blame] | 492 | devpath = subsystem->ParseDevPath(uevent); |
Tom Cherry | 9c8d6dd | 2017-08-17 09:38:01 -0700 | [diff] [blame] | 493 | } else if (uevent.subsystem == "usb") { |
| 494 | if (!uevent.device_name.empty()) { |
| 495 | devpath = "/dev/" + uevent.device_name; |
| 496 | } else { |
| 497 | // This imitates the file system that would be created |
| 498 | // if we were using devfs instead. |
| 499 | // Minors are broken up into groups of 128, starting at "001" |
| 500 | int bus_id = uevent.minor / 128 + 1; |
| 501 | int device_id = uevent.minor % 128 + 1; |
| 502 | devpath = StringPrintf("/dev/bus/usb/%03d/%03d", bus_id, device_id); |
| 503 | } |
| 504 | } else if (StartsWith(uevent.subsystem, "usb")) { |
| 505 | // ignore other USB events |
| 506 | return; |
David Anderson | 515a5bd | 2020-10-19 19:54:18 -0700 | [diff] [blame] | 507 | } else if (uevent.subsystem == "misc" && StartsWith(uevent.device_name, "dm-user/")) { |
| 508 | devpath = "/dev/dm-user/" + uevent.device_name.substr(8); |
Tom Cherry | 780a71e | 2017-04-04 16:30:40 -0700 | [diff] [blame] | 509 | } else { |
Tom Cherry | 81f5d3e | 2017-06-22 12:53:17 -0700 | [diff] [blame] | 510 | devpath = "/dev/" + Basename(uevent.path); |
Tom Cherry | 780a71e | 2017-04-04 16:30:40 -0700 | [diff] [blame] | 511 | } |
Colin Cross | eb5ba83 | 2011-03-30 17:37:17 -0700 | [diff] [blame] | 512 | |
Tom Cherry | 0c8d6d2 | 2017-08-10 12:22:44 -0700 | [diff] [blame] | 513 | mkdir_recursive(Dirname(devpath), 0755); |
Tom Cherry | fe06205 | 2017-04-24 16:59:05 -0700 | [diff] [blame] | 514 | |
Tom Cherry | b4dd881 | 2017-06-23 12:43:48 -0700 | [diff] [blame] | 515 | HandleDevice(uevent.action, devpath, block, uevent.major, uevent.minor, links); |
Tri Vo | ff89b8d | 2019-09-24 13:00:43 -0700 | [diff] [blame] | 516 | |
| 517 | // Duplicate /dev/ashmem device and name it /dev/ashmem<boot_id>. |
| 518 | // TODO(b/111903542): remove once all users of /dev/ashmem are migrated to libcutils API. |
| 519 | HandleAshmemUevent(uevent); |
Colin Cross | eb5ba83 | 2011-03-30 17:37:17 -0700 | [diff] [blame] | 520 | } |
| 521 | |
Tom Cherry | 457e28f | 2018-08-01 13:12:20 -0700 | [diff] [blame] | 522 | void DeviceHandler::ColdbootDone() { |
Oleksiy Avramchenko | dd5802a | 2018-11-02 10:06:47 +0100 | [diff] [blame] | 523 | skip_restorecon_ = false; |
Tom Cherry | 457e28f | 2018-08-01 13:12:20 -0700 | [diff] [blame] | 524 | } |
| 525 | |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 526 | DeviceHandler::DeviceHandler(std::vector<Permissions> dev_permissions, |
| 527 | std::vector<SysfsPermissions> sysfs_permissions, |
Bowgo Tsai | 8eec38f | 2018-05-16 18:33:44 +0800 | [diff] [blame] | 528 | std::vector<Subsystem> subsystems, std::set<std::string> boot_devices, |
| 529 | bool skip_restorecon) |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 530 | : dev_permissions_(std::move(dev_permissions)), |
| 531 | sysfs_permissions_(std::move(sysfs_permissions)), |
| 532 | subsystems_(std::move(subsystems)), |
Bowgo Tsai | 8eec38f | 2018-05-16 18:33:44 +0800 | [diff] [blame] | 533 | boot_devices_(std::move(boot_devices)), |
Sandeep Patil | cd2ba0d | 2017-06-21 12:46:41 -0700 | [diff] [blame] | 534 | skip_restorecon_(skip_restorecon), |
| 535 | sysfs_mount_point_("/sys") {} |
The Android Open Source Project | 4f6e8d7 | 2008-10-21 07:00:00 -0700 | [diff] [blame] | 536 | |
Tom Cherry | ed506f7 | 2017-05-25 15:58:59 -0700 | [diff] [blame] | 537 | DeviceHandler::DeviceHandler() |
| 538 | : DeviceHandler(std::vector<Permissions>{}, std::vector<SysfsPermissions>{}, |
Bowgo Tsai | 8eec38f | 2018-05-16 18:33:44 +0800 | [diff] [blame] | 539 | std::vector<Subsystem>{}, std::set<std::string>{}, false) {} |
Tom Cherry | 81f5d3e | 2017-06-22 12:53:17 -0700 | [diff] [blame] | 540 | |
| 541 | } // namespace init |
| 542 | } // namespace android |