blob: 08221e9ed428519669c9ccfa557b84908dd3a912 [file] [log] [blame]
Mandeep Singh Bainesa63cd2d2010-12-02 11:58:26 -08001#!/bin/bash
2
Taylor Hutt60da6422011-06-02 13:54:43 -07003# Copyright (c) 2009-2011 The Chromium OS Authors. All rights reserved.
Mandeep Singh Bainesa63cd2d2010-12-02 11:58:26 -08004# Use of this source code is governed by a BSD-style license that can be
5# found in the LICENSE file.
6
7# Script to update the kernel on a live running ChromiumOS instance.
8
Brian Harringaa13ea42012-03-15 18:31:03 -07009SCRIPT_ROOT=$(dirname $(readlink -f "$0"))
David James359d3e12012-07-10 13:09:48 -070010. "${SCRIPT_ROOT}/common.sh" || exit 1
11. "${SCRIPT_ROOT}/remote_access.sh" || exit 1
Mandeep Singh Bainesa63cd2d2010-12-02 11:58:26 -080012
Mandeep Singh Baines2f3b5fc2011-01-14 14:20:12 -080013# Script must be run inside the chroot.
Greg Spencer798d75f2011-02-01 22:04:49 -080014restart_in_chroot_if_needed "$@"
Mandeep Singh Baines2f3b5fc2011-01-14 14:20:12 -080015
Mandeep Singh Bainesa63cd2d2010-12-02 11:58:26 -080016DEFINE_string board "" "Override board reported by target"
Olof Johanssonf53fa0d2011-01-26 13:06:46 -080017DEFINE_string device "" "Override boot device reported by target"
Mandeep Singh Bainesa63cd2d2010-12-02 11:58:26 -080018DEFINE_string partition "" "Override kernel partition reported by target"
Doug Andersonfcaed8a2014-07-09 11:34:29 -070019DEFINE_string rootoff "" "Override root offset"
Olof Johanssonf53fa0d2011-01-26 13:06:46 -080020DEFINE_string arch "" "Override architecture reported by target"
Nicolas Boichatabdf6642016-07-04 11:30:44 +080021DEFINE_boolean ignore_verity $FLAGS_FALSE "Update kernel even if system is using verity"
Olof Johansson8488f5a2011-04-20 17:27:37 -070022DEFINE_boolean reboot $FLAGS_TRUE "Reboot system after update"
Doug Anderson5a21b442012-12-07 11:47:31 -080023DEFINE_boolean vboot $FLAGS_TRUE "Update the vboot kernel"
Olof Johansson68cbfaf2013-04-23 14:06:28 -070024DEFINE_boolean syslinux $FLAGS_TRUE "Update the syslinux kernel"
Olof Johansson45225c92013-10-15 17:32:48 -070025DEFINE_boolean bootonce $FLAGS_FALSE "Mark kernel partition as boot once"
Olof Johansson4a7b2882013-10-16 11:59:58 -070026DEFINE_boolean remote_bootargs $FLAGS_FALSE "Use bootargs from running kernel on target"
Mandeep Singh Bainesa63cd2d2010-12-02 11:58:26 -080027
Doug Anderson549f3b52013-09-26 14:46:18 -070028ORIG_ARGS=("$@")
29
Mandeep Singh Baines2f3b5fc2011-01-14 14:20:12 -080030# Parse command line.
31FLAGS "$@" || exit 1
32eval set -- "${FLAGS_ARGV}"
33
34# Only now can we die on error. shflags functions leak non-zero error codes,
Brian Harring7f175a52012-03-02 05:37:00 -080035# so will die prematurely if 'switch_to_strict_mode' is specified before now.
36switch_to_strict_mode
Mandeep Singh Baines2f3b5fc2011-01-14 14:20:12 -080037
Mike Frysinger6b1abb22012-05-11 13:44:06 -040038cleanup() {
Mandeep Singh Bainesa63cd2d2010-12-02 11:58:26 -080039 cleanup_remote_access
40 rm -rf "${TMP}"
41}
42
Mike Frysinger6b1abb22012-05-11 13:44:06 -040043learn_device() {
Olof Johanssonf53fa0d2011-01-26 13:06:46 -080044 [ -n "${FLAGS_device}" ] && return
45 remote_sh df /mnt/stateful_partition
46 FLAGS_device=$(echo "${REMOTE_OUT}" | awk '/dev/ {print $1}' | sed s/1\$//)
47 info "Target reports root device is ${FLAGS_device}"
48}
49
Mandeep Singh Bainesa63cd2d2010-12-02 11:58:26 -080050# Ask the target what the kernel partition is
Mike Frysinger6b1abb22012-05-11 13:44:06 -040051learn_partition_and_ro() {
Mandeep Singh Bainese39579a2011-03-04 15:58:57 -080052 ! remote_sh rootdev
Paul Taysoma64d9db2012-09-21 13:30:43 -070053 if [ "${REMOTE_OUT%%-*}" == "/dev/dm" ]; then
54 remote_sh rootdev -s
Olof Johansson8488f5a2011-04-20 17:27:37 -070055 REMOTE_VERITY=${FLAGS_TRUE}
Nicolas Boichatabdf6642016-07-04 11:30:44 +080056 if [[ ${FLAGS_ignore_verity} -eq ${FLAGS_TRUE} ]]; then
57 warn "System is using verity: not updating firmware/modules"
58 else
59 warn "System is using verity: First remove rootfs verification using"
60 warn "/usr/share/vboot/bin/make_dev_ssd.sh --remove_rootfs_verification"
61 warn "on the DUT, or add --ignore_verity parameter to this command."
62 die
63 fi
Olof Johansson8488f5a2011-04-20 17:27:37 -070064 else
65 REMOTE_VERITY=${FLAGS_FALSE}
66 info "System is not using verity: updating firmware and modules"
Mandeep Singh Bainese39579a2011-03-04 15:58:57 -080067 fi
Olof Johansson4996bfb2013-11-13 12:58:52 -080068 [ -n "${FLAGS_partition}" ] && return
Steven 'Steve' Kendall019f38f2016-06-09 12:43:28 -040069 if [ "${REMOTE_OUT}" == "${FLAGS_device}${PARTITION_NUM_ROOT_A}" ]; then
70 FLAGS_partition="${FLAGS_device}${PARTITION_NUM_KERN_A}"
Mandeep Singh Bainesa63cd2d2010-12-02 11:58:26 -080071 else
Steven 'Steve' Kendall019f38f2016-06-09 12:43:28 -040072 FLAGS_partition="${FLAGS_device}${PARTITION_NUM_KERN_B}"
Mandeep Singh Bainesa63cd2d2010-12-02 11:58:26 -080073 fi
74 if [ -z "${FLAGS_partition}" ]; then
Doug Andersonb2fe4652012-12-07 17:33:56 -080075 die "Partition required"
Mandeep Singh Bainesa63cd2d2010-12-02 11:58:26 -080076 fi
Doug Anderson5a21b442012-12-07 11:47:31 -080077 if [ ${REMOTE_VERITY} -eq ${FLAGS_TRUE} ]; then
78 info "Target reports kernel partition is ${FLAGS_partition}"
79 if [ ${FLAGS_vboot} -eq ${FLAGS_FALSE} ]; then
80 die "Must update vboot when target is using verity"
81 fi
82 fi
Mandeep Singh Bainesa63cd2d2010-12-02 11:58:26 -080083}
84
Olof Johansson4a7b2882013-10-16 11:59:58 -070085get_bootargs() {
86 if [ ${FLAGS_remote_bootargs} -eq ${FLAGS_TRUE} ] ; then
87 info "Using remote bootargs"
88 remote_sh cat /proc/cmdline && echo "${REMOTE_OUT}"
89 else
Doug Andersonfcaed8a2014-07-09 11:34:29 -070090 if [ -n "${FLAGS_rootoff}" ]; then
91 sed "s/PARTNROFF=1/PARTNROFF=${FLAGS_rootoff}/" \
92 "${SRC_ROOT}/build/images/${FLAGS_board}/latest/config.txt"
93 else
94 cat "${SRC_ROOT}/build/images/${FLAGS_board}/latest/config.txt"
95 fi
Olof Johansson4a7b2882013-10-16 11:59:58 -070096 fi
97}
98
Mike Frysinger6b1abb22012-05-11 13:44:06 -040099make_kernelimage() {
Tom Wai-Hong Tam6b50a072011-05-25 17:00:15 +0800100 local bootloader_path
101 local kernel_image
Olof Johansson4a7b2882013-10-16 11:59:58 -0700102 local config_path="$(mktemp /tmp/config.txt.XXXXX)"
Olof Johanssonf53fa0d2011-01-26 13:06:46 -0800103 if [[ "${FLAGS_arch}" == "arm" ]]; then
Taylor Hutt60da6422011-06-02 13:54:43 -0700104 name="bootloader.bin"
105 bootloader_path="${SRC_ROOT}/build/images/${FLAGS_board}/latest/${name}"
Tom Wai-Hong Tam6b50a072011-05-25 17:00:15 +0800106 kernel_image="/build/${FLAGS_board}/boot/vmlinux.uimg"
Olof Johanssonf53fa0d2011-01-26 13:06:46 -0800107 else
Tom Wai-Hong Tam6b50a072011-05-25 17:00:15 +0800108 bootloader_path="/lib64/bootstub/bootstub.efi"
109 kernel_image="/build/${FLAGS_board}/boot/vmlinuz"
110 fi
Olof Johansson4a7b2882013-10-16 11:59:58 -0700111 get_bootargs > "${config_path}"
Kees Cook43a32132011-10-18 13:17:11 -0700112 vbutil_kernel --pack $TMP/new_kern.bin \
Olof Johanssonf53fa0d2011-01-26 13:06:46 -0800113 --keyblock /usr/share/vboot/devkeys/kernel.keyblock \
114 --signprivate /usr/share/vboot/devkeys/kernel_data_key.vbprivk \
115 --version 1 \
Olof Johansson4a7b2882013-10-16 11:59:58 -0700116 --config ${config_path} \
Tom Wai-Hong Tam6b50a072011-05-25 17:00:15 +0800117 --bootloader "${bootloader_path}" \
118 --vmlinuz "${kernel_image}" \
119 --arch "${FLAGS_arch}"
Olof Johansson4a7b2882013-10-16 11:59:58 -0700120 rm "${config_path}"
Olof Johanssonf53fa0d2011-01-26 13:06:46 -0800121}
122
Edward Hyunkoo Jeea979a902017-03-08 13:44:26 -0800123copy_kernelmodules() {
124 echo "copying modules"
125 local modules_dir=/build/"${FLAGS_board}"/lib/modules/
126 if [ ! -d "${modules_dir}" ]; then
127 info "No modules. Skipping."
128 return
129 fi
130 remote_send_to "${modules_dir}" /lib/modules/
131 local kernel_release
132 remote_sh "cd /lib/modules; echo *"
133 for kernel_release in "${REMOTE_OUT}"; do
134 local system_map="${modules_dir}"/"${kernel_release}"/build/System.map
135 if [ -r "${system_map}" ]; then
136 remote_sh mktemp -d /tmp/update_kernel_system_map_"${kernel_release}".XXXXXX
137 local temp_dir="${REMOTE_OUT}"
138 remote_cp_to "${system_map}" "${temp_dir}"
139 remote_sh depmod -ae -F "${temp_dir}"/System.map "${kernel_release}"
140 remote_sh rm -rf "${temp_dir}"
141 fi
142 done
143}
144
Mike Frysinger6b1abb22012-05-11 13:44:06 -0400145copy_kernelimage() {
Doug Andersonadf8a002012-12-17 11:40:34 -0800146 remote_sh dd of="${FLAGS_partition}" bs=4K < "${TMP}/new_kern.bin"
Olof Johansson8488f5a2011-04-20 17:27:37 -0700147}
148
Jonathan Kliegman775bc8e2012-08-14 12:30:49 -0400149check_kernelbuildtime() {
150 local version=$(readlink "/build/${FLAGS_board}/boot/vmlinuz" | cut -d- -f2-)
151 local build_dir="/build/${FLAGS_board}/lib/modules/${version}/build"
152 if [ "${build_dir}/Makefile" -nt "/build/${FLAGS_board}/boot/vmlinuz" ]; then
153 warn "Your build directory has been built more recently than"
154 warn "the installed kernel being updated to. Did you forget to"
155 warn "run 'cros_workon_make chromeos-kernel --install'?"
156 fi
157}
158
Olof Johansson45225c92013-10-15 17:32:48 -0700159mark_boot_once() {
160 local idx=${FLAGS_partition##*[^0-9]}
Chirantan Ekbotef25b4402014-05-06 12:42:18 -0700161 remote_sh cgpt add -i ${idx} -S 0 -T 1 -P 15 ${FLAGS_device%p}
Olof Johansson45225c92013-10-15 17:32:48 -0700162}
163
Olof Johansson68cbfaf2013-04-23 14:06:28 -0700164update_syslinux_kernel() {
165 # ARM does not have the syslinux directory, so skip it when the
166 # partition or the syslinux vmlinuz target is missing.
167 echo "updating syslinux kernel"
Steven 'Steve' Kendall019f38f2016-06-09 12:43:28 -0400168 remote_sh grep $(echo ${FLAGS_device}${PARTITION_NUM_EFI_SYSTEM} | cut -d/ -f3) /proc/partitions
Olof Johansson68cbfaf2013-04-23 14:06:28 -0700169 if [ $(echo "$REMOTE_OUT" | wc -l) -eq 1 ]; then
Steven 'Steve' Kendall019f38f2016-06-09 12:43:28 -0400170 remote_sh mkdir -p /tmp/${PARTITION_NUM_EFI_SYSTEM}
171 remote_sh mount ${FLAGS_device}${PARTITION_NUM_EFI_SYSTEM} /tmp/${PARTITION_NUM_EFI_SYSTEM}
Olof Johansson68cbfaf2013-04-23 14:06:28 -0700172
Steven 'Steve' Kendall019f38f2016-06-09 12:43:28 -0400173 if [ "$FLAGS_partition" = "${FLAGS_device}${PARTITION_NUM_KERN_A}" ]; then
174 target="/tmp/${PARTITION_NUM_EFI_SYSTEM}/syslinux/vmlinuz.A"
Olof Johansson68cbfaf2013-04-23 14:06:28 -0700175 else
Steven 'Steve' Kendall019f38f2016-06-09 12:43:28 -0400176 target="/tmp/${PARTITION_NUM_EFI_SYSTEM}/syslinux/vmlinuz.B"
Olof Johansson68cbfaf2013-04-23 14:06:28 -0700177 fi
178 remote_sh "test ! -f $target || cp /boot/vmlinuz $target"
179
Steven 'Steve' Kendall019f38f2016-06-09 12:43:28 -0400180 remote_sh umount /tmp/${PARTITION_NUM_EFI_SYSTEM}
181 remote_sh rmdir /tmp/${PARTITION_NUM_EFI_SYSTEM}
Olof Johansson68cbfaf2013-04-23 14:06:28 -0700182 fi
183}
184
Doug Anderson549f3b52013-09-26 14:46:18 -0700185multi_main() {
186 local host
187
188 IFS=","
189 for host in ${FLAGS_remote}; do
190 "$0" "${ORIG_ARGS[@]}" --remote="${host}" \
191 |& sed "s/^/${V_BOLD_YELLOW}${host}: ${V_VIDOFF}/" &
192 done
193 wait
194}
195
Mike Frysinger6b1abb22012-05-11 13:44:06 -0400196main() {
Doug Anderson549f3b52013-09-26 14:46:18 -0700197 # If there are commas in the --remote, run the script in parallel.
198 if [[ ${FLAGS_remote} == *,* ]]; then
199 multi_main
200 return $?
201 fi
202
Mandeep Singh Bainesa63cd2d2010-12-02 11:58:26 -0800203 trap cleanup EXIT
204
Kees Cook43a32132011-10-18 13:17:11 -0700205 TMP=$(mktemp -d /tmp/update_kernel.XXXXXX)
Mandeep Singh Bainesa63cd2d2010-12-02 11:58:26 -0800206
207 remote_access_init
208
Olof Johanssonf53fa0d2011-01-26 13:06:46 -0800209 learn_arch
210
Mandeep Singh Bainesa63cd2d2010-12-02 11:58:26 -0800211 learn_board
212
Olof Johanssonf53fa0d2011-01-26 13:06:46 -0800213 learn_device
214
Ian Coolidgec3d5d912017-03-07 14:21:28 -0800215 learn_partition_layout
216
Olof Johansson8488f5a2011-04-20 17:27:37 -0700217 learn_partition_and_ro
Olof Johanssonf53fa0d2011-01-26 13:06:46 -0800218
Mandeep Singh Bainesa63cd2d2010-12-02 11:58:26 -0800219 remote_sh uname -r -v
220
221 old_kernel="${REMOTE_OUT}"
222
Jonathan Kliegman775bc8e2012-08-14 12:30:49 -0400223 check_kernelbuildtime
224
Doug Anderson5a21b442012-12-07 11:47:31 -0800225 if [ ${FLAGS_vboot} -eq ${FLAGS_TRUE} ]; then
226 make_kernelimage
227 fi
Mandeep Singh Bainesa63cd2d2010-12-02 11:58:26 -0800228
Olof Johansson8488f5a2011-04-20 17:27:37 -0700229 if [[ ${REMOTE_VERITY} -eq ${FLAGS_FALSE} ]]; then
Olof Johansson8488f5a2011-04-20 17:27:37 -0700230 remote_sh mount -o remount,rw /
Kees Cook7d7d2ef2011-10-18 13:12:12 -0700231 echo "copying kernel"
Doug Anderson48b52002012-12-07 12:40:07 -0800232 remote_send_to /build/"${FLAGS_board}"/boot/ /boot/
Kees Cook7d7d2ef2011-10-18 13:12:12 -0700233
Olof Johansson68cbfaf2013-04-23 14:06:28 -0700234 if [ ${FLAGS_syslinux} -eq ${FLAGS_TRUE} ]; then
235 update_syslinux_kernel
Kees Cook7d7d2ef2011-10-18 13:12:12 -0700236 fi
Olof Johansson9a83e4e2012-08-17 02:45:12 -0700237
Edward Hyunkoo Jeea979a902017-03-08 13:44:26 -0800238 copy_kernelmodules
Olof Johansson9a83e4e2012-08-17 02:45:12 -0700239
240 echo "copying firmware"
Doug Anderson48b52002012-12-07 12:40:07 -0800241 remote_send_to /build/"${FLAGS_board}"/lib/firmware/ /lib/firmware/
Olof Johansson5a46bfb2010-12-22 12:14:21 -0800242 fi
243
Doug Anderson5a21b442012-12-07 11:47:31 -0800244 if [ ${FLAGS_vboot} -eq ${FLAGS_TRUE} ]; then
245 info "Copying vboot kernel image"
246 copy_kernelimage
247 else
248 info "Skipping update of vboot (per request)"
249 fi
Olof Johansson8488f5a2011-04-20 17:27:37 -0700250
Olof Johansson45225c92013-10-15 17:32:48 -0700251 if [ ${FLAGS_bootonce} -eq ${FLAGS_TRUE} ]; then
252 info "Marking kernel partition ${FLAGS_partition} as boot once"
253 mark_boot_once
254 fi
255
Jonathan Kliegmand6f3d072012-07-12 12:45:33 -0400256 # An early kernel panic can prevent the normal sync on reboot. Explicitly
257 # sync for safety to avoid random file system corruption.
258 remote_sh sync
259
Doug Andersonb2fe4652012-12-07 17:33:56 -0800260 if [ ${FLAGS_reboot} -eq ${FLAGS_TRUE} ]; then
Olof Johansson8488f5a2011-04-20 17:27:37 -0700261 remote_reboot
262
263 remote_sh uname -r -v
264 info "old kernel: ${old_kernel}"
265 info "new kernel: ${REMOTE_OUT}"
266 else
267 info "Not rebooting (per request)"
268 fi
Mandeep Singh Bainesa63cd2d2010-12-02 11:58:26 -0800269}
270
Olof Johanssonf53fa0d2011-01-26 13:06:46 -0800271main "$@"