blob: 32a59cc83e7f50378c20930245b8e72b432b3f33 [file] [log] [blame]
Simon Glassa3f29ec2011-07-17 09:36:49 -07001# Copyright (c) 2011 The Chromium OS Authors. All rights reserved.
2# Use of this source code is governed by a BSD-style license that can be
3# found in the LICENSE file.
4
Simon Glass8bd05ec2012-03-22 11:09:04 -07005import binascii
Simon Glass3381a1a2012-03-22 11:13:19 -07006import glob
Simon Glassa3f29ec2011-07-17 09:36:49 -07007import os
8import re
Simon Glasse86f3132013-01-08 16:10:43 -08009import struct
Simon Glassa3f29ec2011-07-17 09:36:49 -070010import time
Simon Glassa3f29ec2011-07-17 09:36:49 -070011from tools import CmdError
12
13def RoundUp(value, boundary):
14 """Align a value to the next power of 2 boundary.
15
16 Args:
17 value: The value to align.
18 boundary: The boundary value, e.g. 4096. Must be a power of 2.
19
20 Returns:
21 The rounded-up value.
22 """
23 return (value + boundary - 1) & ~(boundary - 1)
24
25
26class WriteFirmware:
27 """Write firmware to a Tegra 2 board using USB A-A cable.
28
29 This class handles re-reflashing a board with new firmware using the Tegra's
30 built-in boot ROM feature. This works by putting the chip into a special mode
31 where it ignores any available firmware and instead reads it from a connected
32 host machine over USB.
33
34 In our case we use that feature to send U-Boot along with a suitable payload
35 and instructions to flash it to SPI flash. The payload is itself normally a
36 full Chrome OS image consisting of U-Boot, some keys and verification
37 information, images and a map of the flash memory.
Simon Glass6a616c12012-09-24 18:13:46 -070038
39 Private attributes:
40 _servo_port: Port number to use to talk to servo with dut-control.
41 Special values are:
42 None: servo is not available.
43 0: any servo will do.
44
Simon Glassa3f29ec2011-07-17 09:36:49 -070045 """
Vadim Bendebury2b719452013-02-12 17:00:06 -080046
47 _WRITE_SUCCESS_MESSAGE = 'Image Programmed Successfully'
48 _WRITE_FAILURE_MESSAGE = '** Readback checksum error, programming failed!! **'
49
50 def __init__(self, tools, fdt, output, bundle, update, verify):
Simon Glassa3f29ec2011-07-17 09:36:49 -070051 """Set up a new WriteFirmware object.
52
53 Args:
54 tools: A tools library for us to use.
55 fdt: An fdt which gives us some info that we need.
56 output: An output object to use for printing progress and messages.
Simon Glass0191a882012-05-23 13:15:06 -070057 bundle: A BundleFirmware object which created the image.
Vadim Bendebury2b719452013-02-12 17:00:06 -080058 update: Use faster update algorithm rather then full device erase.
59 verify: Verify the write by doing a readback and CRC.
Simon Glassa3f29ec2011-07-17 09:36:49 -070060 """
61 self._tools = tools
62 self._fdt = fdt
63 self._out = output
Simon Glass0191a882012-05-23 13:15:06 -070064 self._bundle = bundle
Vadim Bendebury19a77122013-01-24 17:38:00 -080065 self.text_base = self._fdt.GetInt('/chromeos-config', 'textbase', -1)
Simon Glassa3f29ec2011-07-17 09:36:49 -070066
Simon Glass5b5fd642011-08-17 12:24:01 -070067 # For speed, use the 'update' algorithm and don't verify
Vadim Bendebury2b719452013-02-12 17:00:06 -080068 self.update = update
69 self.verify = verify
Simon Glass5b5fd642011-08-17 12:24:01 -070070
Simon Glass6a616c12012-09-24 18:13:46 -070071 # Use default servo port
72 self._servo_port = 0
73
74 def SelectServo(self, servo):
75 """Select the servo to use for writing firmware.
76
77 Args:
78 servo: String containing description of servo to use:
79 'none' : Don't use servo, generate an error on any attempt.
80 'any' : Use any available servo.
81 '<port>': Use servo with that port number.
82 """
83 if servo == 'none':
84 self._servo_port = None
85 elif servo == 'any':
86 self._servo_port = 0
87 else:
88 self._servo_port = int(servo)
89 self._out.Notice('Servo port %s' % str(self._servo_port))
90
Vadim Bendebury2b719452013-02-12 17:00:06 -080091 def _GetFlashScript(self, payload_size, boot_type, checksum, bus='0'):
Simon Glassa3f29ec2011-07-17 09:36:49 -070092 """Get the U-Boot boot command needed to flash U-Boot.
93
94 We leave a marker in the string for the load address of the image,
95 since this depends on the size of this script. This can be replaced by
96 the caller provided that the marker length is unchanged.
97
98 Args:
99 payload_size: Size of payload in bytes.
Simon Glass0dcbecb2012-03-22 21:38:55 -0700100 boot_type: The source for bootdevice (nand, sdmmc, or spi)
Simon Glass8bd05ec2012-03-22 11:09:04 -0700101 checksum: The checksum of the payload (an integer)
102 bus: The bus number
Simon Glassa3f29ec2011-07-17 09:36:49 -0700103
104 Returns:
105 A tuple containing:
106 The script, as a string ready to use as a U-Boot boot command, with an
107 embedded marker for the load address.
108 The marker string, which the caller should replace with the correct
109 load address as 8 hex digits, without changing its length.
110 """
111 replace_me = 'zsHEXYla'
Rhyland Kleinc5c87282012-03-08 16:40:54 -0800112 page_size = 4096
Simon Glass0dcbecb2012-03-22 21:38:55 -0700113 if boot_type == 'sdmmc':
Rhyland Kleinc5c87282012-03-08 16:40:54 -0800114 page_size = 512
Vadim Bendebury2b719452013-02-12 17:00:06 -0800115 update = self.update and boot_type == 'spi'
Rhyland Kleinc5c87282012-03-08 16:40:54 -0800116
Simon Glassa3f29ec2011-07-17 09:36:49 -0700117 cmds = [
118 'setenv address 0x%s' % replace_me,
119 'setenv firmware_size %#x' % payload_size,
Rhyland Kleinc5c87282012-03-08 16:40:54 -0800120 'setenv length %#x' % RoundUp(payload_size, page_size),
121 'setenv blocks %#x' % (RoundUp(payload_size, page_size) / page_size),
Simon Glass8bd05ec2012-03-22 11:09:04 -0700122 'setenv _crc "crc32 -v ${address} ${firmware_size} %#08x"' %
123 checksum,
Simon Glass5b5fd642011-08-17 12:24:01 -0700124 'setenv _clear "echo Clearing RAM; mw.b ${address} 0 ${length}"',
Doug Anderson37ae2292011-09-15 17:41:57 -0700125 ]
Simon Glass0dcbecb2012-03-22 21:38:55 -0700126 if boot_type == 'nand':
Doug Anderson37ae2292011-09-15 17:41:57 -0700127 cmds.extend([
128 'setenv _init "echo Init NAND; nand info"',
129 'setenv _erase "echo Erase NAND; nand erase 0 ${length}"',
130 'setenv _write "echo Write NAND; nand write ${address} 0 ${length}"',
131 'setenv _read "echo Read NAND; nand read ${address} 0 ${length}"',
132 ])
Simon Glass0dcbecb2012-03-22 21:38:55 -0700133 elif boot_type == 'sdmmc':
Rhyland Kleinc5c87282012-03-08 16:40:54 -0800134 cmds.extend([
135 'setenv _init "echo Init EMMC; mmc rescan 0"',
136 'setenv _erase "echo Erase EMMC; "',
137 'setenv _write "echo Write EMMC; mmc write 0 ${address} 0 ' \
138 '${blocks} boot1"',
139 'setenv _read "echo Read EMMC; mmc read 0 ${address} 0 ' \
140 '${blocks} boot1"',
141 ])
Doug Anderson37ae2292011-09-15 17:41:57 -0700142 else:
143 cmds.extend([
Simon Glass3d9a6c62012-03-15 20:38:04 -0700144 'setenv _init "echo Init SPI; sf probe %s"' % bus,
Doug Anderson37ae2292011-09-15 17:41:57 -0700145 'setenv _erase "echo Erase SPI; sf erase 0 ${length}"',
146 'setenv _write "echo Write SPI; sf write ${address} 0 ${length}"',
147 'setenv _read "echo Read SPI; sf read ${address} 0 ${length}"',
148 'setenv _update "echo Update SPI; sf update ${address} 0 ${length}"',
149 ])
Simon Glassa3f29ec2011-07-17 09:36:49 -0700150
Doug Anderson37ae2292011-09-15 17:41:57 -0700151 cmds.extend([
Simon Glassa3f29ec2011-07-17 09:36:49 -0700152 'echo Firmware loaded to ${address}, size ${firmware_size}, '
153 'length ${length}',
Simon Glass8bd05ec2012-03-22 11:09:04 -0700154 'if run _crc; then',
Simon Glassa3f29ec2011-07-17 09:36:49 -0700155 'run _init',
Doug Anderson37ae2292011-09-15 17:41:57 -0700156 ])
Simon Glass5b5fd642011-08-17 12:24:01 -0700157 if update:
158 cmds += ['time run _update']
159 else:
160 cmds += ['run _erase', 'run _write']
Vadim Bendebury2b719452013-02-12 17:00:06 -0800161 if self.verify:
Simon Glass5b5fd642011-08-17 12:24:01 -0700162 cmds += [
Simon Glassa3f29ec2011-07-17 09:36:49 -0700163 'run _clear',
164 'run _read',
Vadim Bendeburyd6b0a372013-02-06 16:36:28 -0800165 'if run _crc; then',
Vadim Bendebury2b719452013-02-12 17:00:06 -0800166 'echo "%s"' % self._WRITE_SUCCESS_MESSAGE,
Vadim Bendeburyd6b0a372013-02-06 16:36:28 -0800167 'else',
168 'echo',
Vadim Bendebury2b719452013-02-12 17:00:06 -0800169 'echo "%s"' % self._WRITE_FAILURE_MESSAGE,
Vadim Bendeburyd6b0a372013-02-06 16:36:28 -0800170 'echo',
171 'fi',
Simon Glass5b5fd642011-08-17 12:24:01 -0700172 ]
173 else:
174 cmds += ['echo Skipping verify']
Simon Glass8bd05ec2012-03-22 11:09:04 -0700175 cmds.extend([
176 'else',
177 'echo',
178 'echo "** Checksum error on load: please check download tool **"',
179 'fi',
180 ])
Simon Glassa3f29ec2011-07-17 09:36:49 -0700181 script = '; '.join(cmds)
182 return script, replace_me
183
Vadim Bendebury2b719452013-02-12 17:00:06 -0800184 def _PrepareFlasher(self, uboot, payload, boot_type, bus):
Simon Glassa3f29ec2011-07-17 09:36:49 -0700185 """Get a flasher ready for sending to the board.
186
187 The flasher is an executable image consisting of:
188
189 - U-Boot (u-boot.bin);
190 - a special FDT to tell it what to do in the form of a run command;
191 - (we could add some empty space here, in case U-Boot is not built to
192 be relocatable);
193 - the payload (which is a full flash image, or signed U-Boot + fdt).
194
195 Args:
196 uboot: Full path to u-boot.bin.
197 payload: Full path to payload.
Simon Glass0dcbecb2012-03-22 21:38:55 -0700198 boot_type: the src for bootdevice (nand, sdmmc, or spi)
Simon Glassa3f29ec2011-07-17 09:36:49 -0700199
200 Returns:
Simon Glass290a1802011-07-17 13:54:32 -0700201 Filename of the flasher binary created.
Simon Glassa3f29ec2011-07-17 09:36:49 -0700202 """
Simon Glass951a2db2011-07-17 15:58:58 -0700203 fdt = self._fdt.Copy(os.path.join(self._tools.outdir, 'flasher.dtb'))
Simon Glass8bd05ec2012-03-22 11:09:04 -0700204 payload_data = self._tools.ReadFile(payload)
Simon Glassa3f29ec2011-07-17 09:36:49 -0700205
Simon Glass8bd05ec2012-03-22 11:09:04 -0700206 # Make sure that the checksum is not negative
207 checksum = binascii.crc32(payload_data) & 0xffffffff
208
Vadim Bendebury2b719452013-02-12 17:00:06 -0800209 script, replace_me = self._GetFlashScript(len(payload_data), boot_type,
210 checksum, bus)
Simon Glassa3f29ec2011-07-17 09:36:49 -0700211 data = self._tools.ReadFile(uboot)
Simon Glass02d124a2012-03-02 14:47:20 -0800212 fdt.PutString('/config', 'bootcmd', script)
Simon Glassa3f29ec2011-07-17 09:36:49 -0700213 fdt_data = self._tools.ReadFile(fdt.fname)
214
215 # Work out where to place the payload in memory. This is a chicken-and-egg
216 # problem (although in case you haven't heard, it was the chicken that
217 # came first), so we resolve it by replacing the string after
218 # fdt.PutString has done its job.
219 #
220 # Correction: Technically, the egg came first. Whatever genetic mutation
221 # created the new species would have been present in the egg, but not the
222 # parent (since if it was in the parent, it would have been present in the
223 # parent when it was an egg).
224 #
225 # Question: ok so who laid the egg then?
226 payload_offset = len(data) + len(fdt_data)
Doug Anderson37ae2292011-09-15 17:41:57 -0700227
228 # NAND driver expects 4-byte alignment. Just go whole hog and do 4K.
229 alignment = 0x1000
Simon Glass8bd05ec2012-03-22 11:09:04 -0700230 payload_offset = (payload_offset + alignment - 1) & ~(alignment - 1)
Doug Anderson37ae2292011-09-15 17:41:57 -0700231
Simon Glass2c4b3e52011-11-15 14:45:43 -0800232 load_address = self.text_base + payload_offset,
Simon Glassa3f29ec2011-07-17 09:36:49 -0700233 new_str = '%08x' % load_address
234 if len(replace_me) is not len(new_str):
235 raise ValueError("Internal error: replacement string '%s' length does "
236 "not match new string '%s'" % (replace_me, new_str))
Vadim Bendebury19a77122013-01-24 17:38:00 -0800237 matches = len(re.findall(replace_me, fdt_data))
238 if matches != 1:
Simon Glassa3f29ec2011-07-17 09:36:49 -0700239 raise ValueError("Internal error: replacement string '%s' already "
240 "exists in the fdt (%d matches)" % (replace_me, matches))
241 fdt_data = re.sub(replace_me, new_str, fdt_data)
242
243 # Now put it together.
244 data += fdt_data
245 data += "\0" * (payload_offset - len(data))
Simon Glass8bd05ec2012-03-22 11:09:04 -0700246 data += payload_data
Simon Glass951a2db2011-07-17 15:58:58 -0700247 flasher = os.path.join(self._tools.outdir, 'flasher-for-image.bin')
Simon Glassa3f29ec2011-07-17 09:36:49 -0700248 self._tools.WriteFile(flasher, data)
249
250 # Tell the user about a few things.
251 self._tools.OutputSize('U-Boot', uboot)
252 self._tools.OutputSize('Payload', payload)
Simon Glass8bd05ec2012-03-22 11:09:04 -0700253 self._out.Notice('Payload checksum %08x' % checksum)
Simon Glassa3f29ec2011-07-17 09:36:49 -0700254 self._tools.OutputSize('Flasher', flasher)
255 return flasher
256
Vadim Bendebury19a77122013-01-24 17:38:00 -0800257 def NvidiaFlashImage(self, flash_dest, uboot, bct, payload, bootstub):
Simon Glassa3f29ec2011-07-17 09:36:49 -0700258 """Flash the image to SPI flash.
259
260 This creates a special Flasher binary, with the image to be flashed as
Allen Martinb3aa2672012-03-23 15:55:25 +0000261 a payload. This is then sent to the board using the tegrarcm utility.
Simon Glassa3f29ec2011-07-17 09:36:49 -0700262
263 Args:
Simon Glass2d1fc8b2012-03-22 21:44:50 -0700264 flash_dest: Destination for flasher, or None to not create a flasher
265 Valid options are spi, sdmmc
Simon Glassa3f29ec2011-07-17 09:36:49 -0700266 uboot: Full path to u-boot.bin.
267 bct: Full path to BCT file (binary chip timings file for Nvidia SOCs).
268 payload: Full path to payload.
Simon Glass89ecf712012-06-07 12:20:15 -0700269 bootstub: Full path to bootstub, which is the payload without the
270 signing information (i.e. bootstub is u-boot.bin + the FDT)
Simon Glassa3f29ec2011-07-17 09:36:49 -0700271
272 Returns:
273 True if ok, False if failed.
274 """
Rhyland Kleinc5c87282012-03-08 16:40:54 -0800275 # Use a Regex to pull Boot type from BCT file.
276 match = re.compile('DevType\[0\] = NvBootDevType_(?P<boot>([a-zA-Z])+);')
277 bct_dumped = self._tools.Run('bct_dump', [bct]).splitlines()
Simon Glass2d1fc8b2012-03-22 21:44:50 -0700278
279 # TODO(sjg): The boot type is currently selected by the bct, rather than
280 # flash_dest selecting which bct to use. This is a bit backwards. For now
281 # we go with the bct's idea.
Rhyland Kleinc5c87282012-03-08 16:40:54 -0800282 boot_type = filter(match.match, bct_dumped)
Simon Glass0dcbecb2012-03-22 21:38:55 -0700283 boot_type = match.match(boot_type[0]).group('boot').lower()
Doug Anderson37ae2292011-09-15 17:41:57 -0700284
Simon Glass89ecf712012-06-07 12:20:15 -0700285 if flash_dest:
Vadim Bendebury2b719452013-02-12 17:00:06 -0800286 image = self._PrepareFlasher(uboot, payload, boot_type, 0)
Simon Glasse1824db2012-07-11 17:38:40 +0200287 elif bootstub:
Simon Glass89ecf712012-06-07 12:20:15 -0700288 image = bootstub
Simon Glassa3f29ec2011-07-17 09:36:49 -0700289
Simon Glasse1824db2012-07-11 17:38:40 +0200290 else:
291 image = payload
292 # If we don't know the textbase, extract it from the payload.
293 if self.text_base == -1:
294 data = self._tools.ReadFile(payload)
295 # Skip the BCT which is the first 64KB
296 self.text_base = self._bundle.DecodeTextBase(data[0x10000:])
297
Simon Glass89ecf712012-06-07 12:20:15 -0700298 self._out.Notice('TEXT_BASE is %#x' % self.text_base)
Simon Glassa3f29ec2011-07-17 09:36:49 -0700299 self._out.Progress('Uploading flasher image')
300 args = [
Simon Glassa3f29ec2011-07-17 09:36:49 -0700301 '--bct', bct,
Allen Martinb3aa2672012-03-23 15:55:25 +0000302 '--bootloader', image,
303 '--loadaddr', "%#x" % self.text_base
Simon Glassa3f29ec2011-07-17 09:36:49 -0700304 ]
305
306 # TODO(sjg): Check for existence of board - but chroot has no lsusb!
307 last_err = None
Vadim Bendebury19a77122013-01-24 17:38:00 -0800308 for _ in range(10):
Simon Glassa3f29ec2011-07-17 09:36:49 -0700309 try:
Simon Glassa3f29ec2011-07-17 09:36:49 -0700310 # TODO(sjg): Use Chromite library so we can monitor output
Allen Martinb3aa2672012-03-23 15:55:25 +0000311 self._tools.Run('tegrarcm', args, sudo=True)
Simon Glassa3f29ec2011-07-17 09:36:49 -0700312 self._out.Notice('Flasher downloaded - please see serial output '
313 'for progress.')
314 return True
315
316 except CmdError as err:
317 if not self._out.stdout_is_tty:
318 return False
319
320 # Only show the error output once unless it changes.
321 err = str(err)
Simon Glass22190ff2012-07-11 14:52:26 +0200322 if not 'could not open USB device' in err:
Allen Martinb3aa2672012-03-23 15:55:25 +0000323 raise CmdError('tegrarcm failed: %s' % err)
Simon Glassa3f29ec2011-07-17 09:36:49 -0700324
325 if err != last_err:
326 self._out.Notice(err)
327 last_err = err
328 self._out.Progress('Please connect USB A-A cable and do a '
329 'recovery-reset', True)
330 time.sleep(1)
331
332 return False
Simon Glass710dedc2011-08-09 14:08:52 -0700333
Simon Glass27a9c142012-03-15 21:08:29 -0700334 def _WaitForUSBDevice(self, name, vendor_id, product_id, timeout=10):
335 """Wait until we see a device on the USB bus.
336
337 Args:
338 name: Board type name
339 vendor_id: USB vendor ID to look for
340 product_id: USB product ID to look for
341 timeout: Timeout to wait in seconds
342
343 Returns
344 True if the device was found, False if we timed out.
345 """
346 self._out.Progress('Waiting for board to appear on USB bus')
Simon Glass4968a472012-05-23 13:52:19 -0700347 start_time = time.time()
348 while time.time() - start_time < timeout:
Simon Glass27a9c142012-03-15 21:08:29 -0700349 try:
350 args = ['-d', '%04x:%04x' % (vendor_id, product_id)]
351 self._tools.Run('lsusb', args, sudo=True)
Simon Glass3381a1a2012-03-22 11:13:19 -0700352 self._out.Progress('Found %s board' % name)
Simon Glass27a9c142012-03-15 21:08:29 -0700353 return True
354
Vadim Bendebury19a77122013-01-24 17:38:00 -0800355 except CmdError:
Simon Glass27a9c142012-03-15 21:08:29 -0700356 pass
357
Simon Glass3381a1a2012-03-22 11:13:19 -0700358 return False
Simon Glass27a9c142012-03-15 21:08:29 -0700359
Vadim Bendebury2b719452013-02-12 17:00:06 -0800360 def DutControl(self, args):
Simon Glass6a616c12012-09-24 18:13:46 -0700361 """Run dut-control with supplied arguments.
362
363 The correct servo will be used based on self._servo_port.
364
365 Args:
366 args: List of arguments to dut-control.
367
Vadim Bendeburybfaf0552013-01-24 17:38:00 -0800368 Retruns:
369 a string, stdout generated by running the command
Simon Glass6a616c12012-09-24 18:13:46 -0700370 Raises:
371 IOError if no servo access is permitted.
372 """
373 if self._servo_port is None:
374 raise IOError('No servo access available, please use --servo')
375 if self._servo_port:
376 args.extend(['-p', '%s' % self._servo_port])
Vadim Bendeburybfaf0552013-01-24 17:38:00 -0800377 return self._tools.Run('dut-control', args)
Simon Glass6a616c12012-09-24 18:13:46 -0700378
Vadim Bendebury2b719452013-02-12 17:00:06 -0800379 def VerifySuccess(self):
380 """Verify flash programming operation success.
381
382 The DUT is presumed to be programming flash with verification enabled and
383 console capture mode on. This function scans console output for the
384 success or failure strings.
385
386 Raises:
387 CmdError if neither of the strings show up in the allotted time (2
388 minutes) or console goes silent for more than 10 seconds, or an
389 unexpected output is seen.
390 """
391
392 _SOFT_DEADLINE_LIMIT = 10
393 _HARD_DEADLINE_LIMIT = 120
394 string_leftover = ''
395 soft_deadline = time.time() + _SOFT_DEADLINE_LIMIT
396 hard_deadline = soft_deadline + _HARD_DEADLINE_LIMIT - _SOFT_DEADLINE_LIMIT
397
398 while True:
399 now = time.time()
400 if now > hard_deadline:
401 raise CmdError('Target console flooded, programming failed')
402 if now > soft_deadline:
403 raise CmdError('Target console dead, programming failed')
404 stream = self.DutControl(['cpu_uart_stream',])
405 match = re.search("^cpu_uart_stream:'(.*)'\n", stream)
406 if not match:
407 raise CmdError('Unexpected console output: \n%s\n' % stream)
408
409 text = string_leftover + match.group(1)
410 strings = text.split('\\r')
411 string_leftover = strings.pop()
412 if strings:
413 soft_deadline = now + _SOFT_DEADLINE_LIMIT
414 for string in strings:
415 if self._WRITE_SUCCESS_MESSAGE in string:
416 return True
417 if self._WRITE_FAILURE_MESSAGE in string:
418 return False
419
Simon Glass3c5b35b2012-05-23 13:22:23 -0700420 def _ExtractPayloadParts(self, payload):
421 """Extract the BL1, BL2 and U-Boot parts from a payload.
422
423 An exynos image consists of 3 parts: BL1, BL2 and U-Boot/FDT.
424
425 This pulls out the various parts, puts them into files and returns
426 these files.
427
428 Args:
429 payload: Full path to payload.
430
431 Returns:
432 (bl1, bl2, image) where:
433 bl1 is the filename of the extracted BL1
434 bl2 is the filename of the extracted BL2
435 image is the filename of the extracted U-Boot image
436 """
437 # Pull out the parts from the payload
438 bl1 = os.path.join(self._tools.outdir, 'bl1.bin')
439 bl2 = os.path.join(self._tools.outdir, 'bl2.bin')
440 image = os.path.join(self._tools.outdir, 'u-boot-from-image.bin')
441 data = self._tools.ReadFile(payload)
442
443 # The BL1 is always 8KB - extract that part into a new file
444 # TODO(sjg@chromium.org): Perhaps pick these up from the fdt?
Simon Glasse86f3132013-01-08 16:10:43 -0800445 bl1_size = 0x2000
446 self._tools.WriteFile(bl1, data[:bl1_size])
Simon Glass3c5b35b2012-05-23 13:22:23 -0700447
Simon Glasse86f3132013-01-08 16:10:43 -0800448 # Try to detect the BL2 size. We look for 0xea000014 which is the
Tom Wai-Hong Tamf67046f2013-02-06 09:23:26 +0800449 # 'B reset' instruction at the start of U-Boot. When U-Boot is LZO
450 # compressed, we look for a LZO magic instead.
Simon Glasse86f3132013-01-08 16:10:43 -0800451 first_instr = struct.pack('<L', 0xea000014)
Tom Wai-Hong Tamf67046f2013-02-06 09:23:26 +0800452 lzo_magic = struct.pack('>B3s', 0x89, 'LZO')
453 first_instr_offset = data.find(first_instr, bl1_size + 0x3800)
454 lzo_magic_offset = data.find(lzo_magic, bl1_size + 0x3800)
455 uboot_offset = min(first_instr_offset, lzo_magic_offset)
456 if uboot_offset == -1:
457 uboot_offset = max(first_instr_offset, lzo_magic_offset)
Simon Glasse86f3132013-01-08 16:10:43 -0800458 if uboot_offset == -1:
Vadim Bendebury19a77122013-01-24 17:38:00 -0800459 raise ValueError('Could not locate start of U-Boot')
Simon Glasse86f3132013-01-08 16:10:43 -0800460 bl2_size = uboot_offset - bl1_size - 0x800 # 2KB gap after BL2
Simon Glass3c5b35b2012-05-23 13:22:23 -0700461
Simon Glasse86f3132013-01-08 16:10:43 -0800462 # Sanity check: At present we only allow 14KB and 30KB for SPL
463 allowed = [14, 30]
464 if (bl2_size >> 10) not in allowed:
Vadim Bendebury19a77122013-01-24 17:38:00 -0800465 raise ValueError('BL2 size is %dK - only %s supported' %
466 (bl2_size >> 10, ', '.join(
467 [str(size) for size in allowed])))
Simon Glasse86f3132013-01-08 16:10:43 -0800468 self._out.Notice('BL2 size is %dKB' % (bl2_size >> 10))
469
470 # The BL2 (U-Boot SPL) follows BL1. After that there is a 2KB gap
471 bl2_end = uboot_offset - 0x800
472 self._tools.WriteFile(bl2, data[0x2000:bl2_end])
473
474 # U-Boot itself starts after the gap
475 self._tools.WriteFile(image, data[uboot_offset:])
Simon Glass3c5b35b2012-05-23 13:22:23 -0700476 return bl1, bl2, image
477
Vadim Bendebury19a77122013-01-24 17:38:00 -0800478 def ExynosFlashImage(self, flash_dest, flash_uboot, bl1, bl2, payload,
Simon Glassde9c8072012-07-02 22:29:02 -0700479 kernel):
Simon Glass27a9c142012-03-15 21:08:29 -0700480 """Flash the image to SPI flash.
481
482 This creates a special Flasher binary, with the image to be flashed as
Allen Martinb3aa2672012-03-23 15:55:25 +0000483 a payload. This is then sent to the board using the tegrarcm utility.
Simon Glass27a9c142012-03-15 21:08:29 -0700484
485 Args:
Simon Glass2d1fc8b2012-03-22 21:44:50 -0700486 flash_dest: Destination for flasher, or None to not create a flasher
487 Valid options are spi, sdmmc.
488 flash_uboot: Full path to u-boot.bin to use for flasher.
Simon Glass27a9c142012-03-15 21:08:29 -0700489 bl1: Full path to file containing BL1 (pre-boot).
Simon Glass2d1fc8b2012-03-22 21:44:50 -0700490 bl2: Full path to file containing BL2 (SPL).
Simon Glass27a9c142012-03-15 21:08:29 -0700491 payload: Full path to payload.
Simon Glassde9c8072012-07-02 22:29:02 -0700492 kernel: Kernel to send after the payload, or None.
Simon Glass27a9c142012-03-15 21:08:29 -0700493
494 Returns:
495 True if ok, False if failed.
496 """
Simon Glass2d1fc8b2012-03-22 21:44:50 -0700497 if flash_dest:
Vadim Bendebury2b719452013-02-12 17:00:06 -0800498 image = self._PrepareFlasher(flash_uboot, payload, flash_dest, '1:0')
Simon Glass2d1fc8b2012-03-22 21:44:50 -0700499 else:
Simon Glass3c5b35b2012-05-23 13:22:23 -0700500 bl1, bl2, image = self._ExtractPayloadParts(payload)
Simon Glass27a9c142012-03-15 21:08:29 -0700501
502 vendor_id = 0x04e8
503 product_id = 0x1234
Simon Glass3381a1a2012-03-22 11:13:19 -0700504
Vadim Bendeburybfaf0552013-01-24 17:38:00 -0800505 # Preserve dut_hub_sel state.
Vadim Bendebury2b719452013-02-12 17:00:06 -0800506 preserved_dut_hub_sel = self.DutControl(['dut_hub_sel',]
507 ).strip().split(':')[-1]
Vadim Bendeburybfaf0552013-01-24 17:38:00 -0800508 required_dut_hub_sel = 'dut_sees_servo'
Simon Glass3381a1a2012-03-22 11:13:19 -0700509 args = ['warm_reset:on', 'fw_up:on', 'pwr_button:press', 'sleep:.1',
510 'warm_reset:off']
Vadim Bendeburybfaf0552013-01-24 17:38:00 -0800511 if preserved_dut_hub_sel != required_dut_hub_sel:
512 # Need to set it to get the port properly powered up.
513 args += ['dut_hub_sel:%s' % required_dut_hub_sel]
Simon Glass3381a1a2012-03-22 11:13:19 -0700514 # TODO(sjg) If the board is bricked a reset does not seem to bring it
515 # back to life.
516 # BUG=chromium-os:28229
517 args = ['cold_reset:on', 'sleep:.2', 'cold_reset:off'] + args
Vadim Bendeburybfaf0552013-01-24 17:38:00 -0800518 self._out.Progress('Reseting board via servo')
Vadim Bendebury2b719452013-02-12 17:00:06 -0800519 self.DutControl(args)
Simon Glass27a9c142012-03-15 21:08:29 -0700520
Simon Glassde9c8072012-07-02 22:29:02 -0700521 # If we have a kernel to write, create a new image with that added.
522 if kernel:
523 dl_image = os.path.join(self._tools.outdir, 'image-plus-kernel.bin')
524 data = self._tools.ReadFile(image)
525
526 # Pad the original payload out to the original length
527 data += '\0' * (os.stat(payload).st_size - len(data))
528 data += self._tools.ReadFile(kernel)
529 self._tools.WriteFile(dl_image, data)
530 else:
531 dl_image = image
532
Simon Glass2d1fc8b2012-03-22 21:44:50 -0700533 self._out.Progress('Uploading image')
Simon Glass27a9c142012-03-15 21:08:29 -0700534 download_list = [
Simon Glass3c5b35b2012-05-23 13:22:23 -0700535 # The numbers are the download addresses (in SRAM) for each piece
536 # TODO(sjg@chromium.org): Perhaps pick these up from the fdt?
Simon Glass27a9c142012-03-15 21:08:29 -0700537 ['bl1', 0x02021400, bl1],
538 ['bl2', 0x02023400, bl2],
Simon Glassde9c8072012-07-02 22:29:02 -0700539 ['u-boot', 0x43e00000, dl_image]
Simon Glass27a9c142012-03-15 21:08:29 -0700540 ]
Simon Glass3381a1a2012-03-22 11:13:19 -0700541 try:
Simon Glass4968a472012-05-23 13:52:19 -0700542 for upto in range(len(download_list)):
543 item = download_list[upto]
Simon Glass3381a1a2012-03-22 11:13:19 -0700544 if not self._WaitForUSBDevice('exynos', vendor_id, product_id, 4):
Simon Glass4968a472012-05-23 13:52:19 -0700545 if upto == 0:
Simon Glass3381a1a2012-03-22 11:13:19 -0700546 raise CmdError('Could not find Exynos board on USB port')
547 raise CmdError("Stage '%s' did not complete" % item[0])
Simon Glass3381a1a2012-03-22 11:13:19 -0700548 self._out.Notice(item[2])
Simon Glass27a9c142012-03-15 21:08:29 -0700549 self._out.Progress("Uploading stage '%s'" % item[0])
Simon Glass3381a1a2012-03-22 11:13:19 -0700550
Simon Glass4968a472012-05-23 13:52:19 -0700551 if upto == 0:
552 # The IROM needs roughly 200ms here to be ready for USB download
553 time.sleep(.5)
554
Simon Glass79e3dd02012-08-28 20:08:50 -0700555 args = ['-a', '%#x' % item[1], '-f', item[2]]
556 self._tools.Run('smdk-usbdl', args, sudo=True)
Simon Glass4968a472012-05-23 13:52:19 -0700557 if upto == 1:
558 # Once SPL starts up we can release the power buttom
559 args = ['fw_up:off', 'pwr_button:release']
Vadim Bendebury2b719452013-02-12 17:00:06 -0800560 self.DutControl(args)
Simon Glass4968a472012-05-23 13:52:19 -0700561
Simon Glass3381a1a2012-03-22 11:13:19 -0700562 finally:
Vadim Bendeburybfaf0552013-01-24 17:38:00 -0800563 # Make sure that the power button is released and dut_sel_hub state is
564 # restored, whatever happens
Simon Glass3381a1a2012-03-22 11:13:19 -0700565 args = ['fw_up:off', 'pwr_button:release']
Vadim Bendeburybfaf0552013-01-24 17:38:00 -0800566 if preserved_dut_hub_sel != required_dut_hub_sel:
567 args += ['dut_hub_sel:%s' % preserved_dut_hub_sel]
Vadim Bendebury2b719452013-02-12 17:00:06 -0800568 self.DutControl(args)
Simon Glass27a9c142012-03-15 21:08:29 -0700569
Simon Glass2d1fc8b2012-03-22 21:44:50 -0700570 self._out.Notice('Image downloaded - please see serial output '
Simon Glass3381a1a2012-03-22 11:13:19 -0700571 'for progress.')
Simon Glass27a9c142012-03-15 21:08:29 -0700572 return True
573
Simon Glass0c2ba482012-03-22 21:57:51 -0700574 def _GetDiskInfo(self, disk, item):
575 """Returns information about a SCSI disk device.
576
577 Args:
578 disk: a block device name in sys/block, like '/sys/block/sdf'.
579 item: the item of disk information that is required.
580
581 Returns:
582 The information obtained, as a string, or '[Unknown]' if not found
583 """
584 dev_path = os.path.join(disk, 'device')
585
586 # Search upwards and through symlinks looking for the item.
587 while os.path.isdir(dev_path) and dev_path != '/sys':
588 fname = os.path.join(dev_path, item)
589 if os.path.exists(fname):
590 with open(fname, 'r') as fd:
591 return fd.readline().rstrip()
592
593 # Move up a level and follow any symlink.
594 new_path = os.path.join(dev_path, '..')
595 if os.path.islink(new_path):
596 new_path = os.path.abspath(os.readlink(os.path.dirname(dev_path)))
597 dev_path = new_path
598 return '[Unknown]'
599
600 def _GetDiskCapacity(self, device):
601 """Returns the disk capacity in GB, or 0 if not known.
602
603 Args:
604 device: Device to check, like '/dev/sdf'.
605
606 Returns:
607 Capacity of device in GB, or 0 if not known.
608 """
609 args = ['-l', device]
610 stdout = self._tools.Run('fdisk', args, sudo=True)
611 if stdout:
612 # Seach for the line with capacity information.
613 re_capacity = re.compile('Disk .*: (\d+) \w+,')
614 lines = filter(re_capacity.match, stdout.splitlines())
615 if len(lines):
616 m = re_capacity.match(lines[0])
617
618 # We get something like 7859 MB, so turn into bytes, then GB
619 return int(m.group(1)) * 1024 * 1024 / 1e9
620 return 0
621
622 def _ListUsbDisks(self):
623 """Return a list of available removable USB disks.
624
625 Returns:
626 List of USB devices, each element is itself a list containing:
627 device ('/dev/sdx')
628 manufacturer name
629 product name
630 capacity in GB (an integer)
631 full description (all of the above concatenated).
632 """
633 disk_list = []
634 for disk in glob.glob('/sys/block/sd*'):
635 with open(disk + '/removable', 'r') as fd:
636 if int(fd.readline()) == 1:
637 device = '/dev/%s' % disk.split('/')[-1]
638 manuf = self._GetDiskInfo(disk, 'manufacturer')
639 product = self._GetDiskInfo(disk, 'product')
640 capacity = self._GetDiskCapacity(device)
641 if capacity:
642 desc = '%s: %s %s %d GB' % (device, manuf, product, capacity)
643 disk_list.append([device, manuf, product, capacity, desc])
644 return disk_list
645
646 def WriteToSd(self, flash_dest, disk, uboot, payload):
647 if flash_dest:
Vadim Bendebury2b719452013-02-12 17:00:06 -0800648 raw_image = self._PrepareFlasher(uboot, payload, flash_dest, '1:0')
Vadim Bendebury19a77122013-01-24 17:38:00 -0800649 bl1, bl2, _ = self._ExtractPayloadParts(payload)
Simon Glass559b6612012-05-23 13:28:45 -0700650 spl_load_size = os.stat(raw_image).st_size
651 bl2 = self._bundle.ConfigureExynosBl2(self._fdt, spl_load_size, bl2,
652 'flasher')
653
654 data = self._tools.ReadFile(bl1) + self._tools.ReadFile(bl2)
655
656 # Pad BL2 out to the required size.
657 # We require that it be 24KB, but data will only contain 8KB + 14KB.
658 # Add the extra padding to bring it to 24KB.
659 data += '\0' * (0x6000 - len(data))
660 data += self._tools.ReadFile(raw_image)
661 image = os.path.join(self._tools.outdir, 'flasher-with-bl.bin')
662 self._tools.WriteFile(image, data)
Simon Glass0c2ba482012-03-22 21:57:51 -0700663 self._out.Progress('Writing flasher to %s' % disk)
664 else:
665 image = payload
666 self._out.Progress('Writing image to %s' % disk)
667
668 args = ['if=%s' % image, 'of=%s' % disk, 'bs=512', 'seek=1']
669 self._tools.Run('dd', args, sudo=True)
670
671 def SendToSdCard(self, dest, flash_dest, uboot, payload):
672 """Write a flasher to an SD card.
673
674 Args:
675 dest: Destination in one of these forms:
676 ':<full description of device>'
677 ':.' selects the only available device, fails if more than one option
678 ':<device>' select deivce
679
680 Examples:
681 ':/dev/sdd: Generic Flash Card Reader/Writer 8 GB'
682 ':.'
683 ':/dev/sdd'
684
685 flash_dest: Destination for flasher, or None to not create a flasher:
686 Valid options are spi, sdmmc.
687 uboot: Full path to u-boot.bin.
688 payload: Full path to payload.
689 """
690 disk = None
691 disks = self._ListUsbDisks()
692 if dest[:1] == ':':
693 name = dest[1:]
694
695 # A '.' just means to use the only available disk.
696 if name == '.' and len(disks) == 1:
697 disk = disks[0][0]
698 for disk_info in disks:
699 # Use the full name or the device name.
700 if disk_info[4] == name or disk_info[1] == name:
701 disk = disk_info[0]
702
703 if disk:
704 self.WriteToSd(flash_dest, disk, uboot, payload)
705 else:
706 self._out.Error("Please specify destination -w 'sd:<disk_description>':")
707 self._out.Error(' - description can be . for the only disk, SCSI '
708 'device letter')
709 self._out.Error(' or the full description listed here')
710 msg = 'Found %d available disks.' % len(disks)
711 if not disks:
712 msg += ' Please insert an SD card and try again.'
713 self._out.UserOutput(msg)
714
715 # List available disks as a convenience.
716 for disk in disks:
717 self._out.UserOutput(' %s' % disk[4])
718
Vadim Bendebury19a77122013-01-24 17:38:00 -0800719 def Em100FlashImage(self, image_fname):
Simon Glass9eb8c722012-06-07 13:34:31 -0700720 """Send an image to an attached EM100 device.
721
722 This is a Dediprog EM100 SPI flash emulation device. We set up servo2
723 to do the SPI emulation, then write the image, then boot the board.
724 All going well, this is enough to get U-Boot running.
725
726 Args:
727 image_fname: Filename of image to send
728 """
729 args = ['spi2_vref:off', 'spi2_buf_en:off', 'spi2_buf_on_flex_en:off']
730 args.append('spi_hold:on')
Vadim Bendebury2b719452013-02-12 17:00:06 -0800731 self.DutControl(args)
Simon Glass9eb8c722012-06-07 13:34:31 -0700732
733 # TODO(sjg@chromium.org): This is for link. We could make this
734 # configurable from the fdt.
735 args = ['-c', 'W25Q64CV', '-d', self._tools.Filename(image_fname), '-r']
736 self._out.Progress('Writing image to em100')
737 self._tools.Run('em100', args, sudo=True)
738
739 self._out.Progress('Resetting board')
740 args = ['cold_reset:on', 'sleep:.2', 'cold_reset:off', 'sleep:.5']
741 args.extend(['pwr_button:press', 'sleep:.2', 'pwr_button:release'])
Vadim Bendebury2b719452013-02-12 17:00:06 -0800742 self.DutControl(args)
Simon Glass9eb8c722012-06-07 13:34:31 -0700743
Simon Glass0c2ba482012-03-22 21:57:51 -0700744
Simon Glass27a9c142012-03-15 21:08:29 -0700745def DoWriteFirmware(output, tools, fdt, flasher, file_list, image_fname,
Simon Glass60a40af2012-06-07 11:54:17 -0700746 bundle, update=True, verify=False, dest=None,
Vadim Bendebury19a77122013-01-24 17:38:00 -0800747 flash_dest=None, kernel=None, bootstub=None, servo='any',
Simon Glass4b8b3bd2012-11-06 12:31:01 -0800748 method='tegra'):
Simon Glasse0b61442012-03-13 15:29:51 -0700749 """A simple function to write firmware to a device.
Simon Glass710dedc2011-08-09 14:08:52 -0700750
751 This creates a WriteFirmware object and uses it to write the firmware image
Simon Glasse0b61442012-03-13 15:29:51 -0700752 to the given destination device.
Simon Glass710dedc2011-08-09 14:08:52 -0700753
754 Args:
755 output: cros_output object to use.
756 tools: Tools object to use.
757 fdt: Fdt object to use as our device tree.
758 flasher: U-Boot binary to use as the flasher.
Simon Glass75759302012-03-15 20:26:53 -0700759 file_list: Dictionary containing files that we might need.
Simon Glass710dedc2011-08-09 14:08:52 -0700760 image_fname: Filename of image to write.
Simon Glass0191a882012-05-23 13:15:06 -0700761 bundle: The bundle object which created the image.
Simon Glass2c4b3e52011-11-15 14:45:43 -0800762 update: Use faster update algorithm rather then full device erase.
763 verify: Verify the write by doing a readback and CRC.
Simon Glasse0b61442012-03-13 15:29:51 -0700764 dest: Destination device to write firmware to (usb, sd).
Simon Glass2d1fc8b2012-03-22 21:44:50 -0700765 flash_dest: Destination device for flasher to program payload into.
Simon Glassde9c8072012-07-02 22:29:02 -0700766 kernel: Kernel file to write after U-Boot
Vadim Bendebury19a77122013-01-24 17:38:00 -0800767 bootstub: string, file name of the boot stub, if present
Simon Glass6a616c12012-09-24 18:13:46 -0700768 servo: Describes the servo unit to use: none=none; any=any; otherwise
769 port number of servo to use.
Simon Glass710dedc2011-08-09 14:08:52 -0700770 """
Vadim Bendebury2b719452013-02-12 17:00:06 -0800771 write = WriteFirmware(tools, fdt, output, bundle, update, verify)
Simon Glass6a616c12012-09-24 18:13:46 -0700772 write.SelectServo(servo)
Simon Glasse0b61442012-03-13 15:29:51 -0700773 if dest == 'usb':
Vadim Bendebury2b719452013-02-12 17:00:06 -0800774 try:
775 write.DutControl(['cpu_uart_capture:on',])
776 method = fdt.GetString('/chromeos-config', 'flash-method', method)
777 if method == 'tegra':
778 tools.CheckTool('tegrarcm')
779 if flash_dest:
780 write.text_base = bundle.CalcTextBase('flasher ', fdt, flasher)
781 elif bootstub:
782 write.text_base = bundle.CalcTextBase('bootstub ', fdt, bootstub)
783 ok = write.NvidiaFlashImage(flash_dest, flasher, file_list['bct'],
784 image_fname, bootstub)
785 elif method == 'exynos':
786 tools.CheckTool('lsusb', 'usbutils')
787 tools.CheckTool('smdk-usbdl', 'smdk-dltool')
788 ok = write.ExynosFlashImage(flash_dest, flasher,
789 file_list['exynos-bl1'], file_list['exynos-bl2'], image_fname,
790 kernel)
791 else:
792 raise CmdError("Unknown flash method '%s'" % method)
793 if ok:
794 if verify:
795 output.Progress('Image uploaded, waiting for verification')
796 if write.VerifySuccess():
797 output.Progress('Done!')
798 else:
799 ok = False
800 else:
801 output.Progress('Image uploaded - please wait for flashing to '
802 'complete')
803 if not ok:
804 raise CmdError('Image upload failed - please check board connection')
805 finally:
806 write.DutControl(['cpu_uart_capture:off',])
Simon Glass9eb8c722012-06-07 13:34:31 -0700807 elif dest == 'em100':
808 # crosbug.com/31625
809 tools.CheckTool('em100')
Vadim Bendebury19a77122013-01-24 17:38:00 -0800810 write.Em100FlashImage(image_fname)
Simon Glass0c2ba482012-03-22 21:57:51 -0700811 elif dest.startswith('sd'):
812 write.SendToSdCard(dest[2:], flash_dest, flasher, image_fname)
Simon Glass710dedc2011-08-09 14:08:52 -0700813 else:
Simon Glasse0b61442012-03-13 15:29:51 -0700814 raise CmdError("Unknown destination device '%s'" % dest)