blob: b31833e04c5a9248d9a41cdc924d6eb543a52e98 [file] [log] [blame]
Mike Frysinger63bb3c72019-09-01 15:16:26 -04001#!/usr/bin/env python2
Jon Salze60307f2014-08-05 16:20:00 +08002# -*- coding: utf-8 -*-
3# Copyright 2014 The Chromium OS Authors. All rights reserved.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +08004# Use of this source code is governed by a BSD-style license that can be
5# found in the LICENSE file.
6
Jon Salze60307f2014-08-05 16:20:00 +08007
Tammo Spalink9a96b8a2012-04-03 11:10:41 +08008"""Google Factory Tool.
9
You-Cheng Syu461ec032017-03-06 15:56:58 +080010This tool is intended to be used on factory assembly lines. It
Tammo Spalink9a96b8a2012-04-03 11:10:41 +080011provides all of the Google required test functionality and must be run
12on each device as part of the assembly process.
13"""
14
Yilin Yang71e39412019-09-24 09:26:46 +080015from __future__ import print_function
16
Tammo Spalink9a96b8a2012-04-03 11:10:41 +080017import logging
18import os
Jon Salz65266432012-07-30 19:02:49 +080019import pipes
Tammo Spalink9a96b8a2012-04-03 11:10:41 +080020import re
21import sys
Peter Shihfdf17682017-05-26 11:38:39 +080022from tempfile import gettempdir
Cheng-Yi Chiang9fc121c2014-01-27 11:23:22 +080023import threading
Hung-Te Lin6bd16472012-06-20 16:26:47 +080024import time
Jon Salza88b83b2013-05-27 20:00:35 +080025import xmlrpclib
Peter Shihfdf17682017-05-26 11:38:39 +080026
Peter Shihfdf17682017-05-26 11:38:39 +080027import factory_common # pylint: disable=unused-import
Wei-Han Chen0a3320e2016-04-23 01:32:07 +080028from cros.factory.gooftool.common import ExecFactoryPar
Hung-Te Lin0e0f9362015-11-18 18:18:05 +080029from cros.factory.gooftool.common import Shell
Peter Shihfdf17682017-05-26 11:38:39 +080030from cros.factory.gooftool.core import Gooftool
31from cros.factory.gooftool import crosfw
Peter Shihfdf17682017-05-26 11:38:39 +080032from cros.factory.gooftool import report_upload
Yong Hong65bda312018-12-13 20:05:58 +080033from cros.factory.gooftool import vpd
Hung-Te Lin604e0c22015-11-24 15:17:07 +080034from cros.factory.hwid.v3 import hwid_utils
Yong Hong863d3262017-10-30 16:23:34 +080035from cros.factory.probe.functions import chromeos_firmware
Wei-Han Chen2ebb92d2016-01-12 14:51:41 +080036from cros.factory.test.env import paths
Peter Shihfdf17682017-05-26 11:38:39 +080037from cros.factory.test import event_log
Wei-Han Chenaff56232016-04-16 09:17:59 +080038from cros.factory.test.rules import phase
Hung-Te Lin3f096842016-01-13 17:37:06 +080039from cros.factory.test.rules.privacy import FilterDict
Philip Chen6ada02c2019-11-04 19:41:54 +000040from cros.factory.test import state
Peter Shihfdf17682017-05-26 11:38:39 +080041from cros.factory.utils import argparse_utils
Hung-Te Lin03bf7ab2016-06-16 17:26:19 +080042from cros.factory.utils.argparse_utils import CmdArg
Hung-Te Lin03bf7ab2016-06-16 17:26:19 +080043from cros.factory.utils.argparse_utils import ParseCmdline
Wei-Han Chenb34bdff2019-09-26 13:07:50 +080044from cros.factory.utils.argparse_utils import VERBOSITY_CMD_ARG
Peter Shihfdf17682017-05-26 11:38:39 +080045from cros.factory.utils.debug_utils import SetupLogging
Jon Salz40b9f822014-07-25 16:39:55 +080046from cros.factory.utils import file_utils
Peter Shih67c7c0f2018-02-26 11:23:59 +080047from cros.factory.utils.process_utils import Spawn
Wei-Han Chena5c01a02016-04-23 19:27:19 +080048from cros.factory.utils import sys_utils
Chun-Ta Lin53cbbd52016-06-08 21:42:19 +080049from cros.factory.utils import time_utils
Joel Kitchingd3bc2662014-12-16 16:03:32 -080050from cros.factory.utils.type_utils import Error
Tammo Spalink86a61c62012-05-25 15:10:35 +080051
Tammo Spalink5c699832012-07-03 17:50:39 +080052
Tammo Spalink5c699832012-07-03 17:50:39 +080053# TODO(tammo): Replace calls to sys.exit with raise Exit, and maybe
54# treat that specially (as a smoot exit, as opposed to the more
55# verbose output for generic Error).
56
Cheng-Yi Chiang9fc121c2014-01-27 11:23:22 +080057_global_gooftool = None
58_gooftool_lock = threading.Lock()
Tammo Spalink5c699832012-07-03 17:50:39 +080059
Hung-Te Lin56b18402015-01-16 14:52:30 +080060
Ricky Lianga70a1202013-03-15 15:03:17 +080061def GetGooftool(options):
Peter Shihfdf17682017-05-26 11:38:39 +080062 global _global_gooftool # pylint: disable=global-statement
Ricky Lianga70a1202013-03-15 15:03:17 +080063
Cheng-Yi Chiang9fc121c2014-01-27 11:23:22 +080064 if _global_gooftool is None:
65 with _gooftool_lock:
Shen-En Shihc5d15d62017-08-04 13:02:59 +080066 if _global_gooftool is None:
67 project = getattr(options, 'project', None)
68 hwdb_path = getattr(options, 'hwdb_path', None)
69 _global_gooftool = Gooftool(hwid_version=3, project=project,
70 hwdb_path=hwdb_path)
Cheng-Yi Chiang9fc121c2014-01-27 11:23:22 +080071
72 return _global_gooftool
Ricky Lianga70a1202013-03-15 15:03:17 +080073
Hung-Te Lin56b18402015-01-16 14:52:30 +080074
Ting Shen18a06382016-08-30 16:18:21 +080075def Command(cmd_name, *args, **kwargs):
You-Cheng Syu8fc2a602017-12-22 17:05:05 +080076 """Decorator for commands in gooftool.
Ting Shen18a06382016-08-30 16:18:21 +080077
78 This is similar to argparse_utils.Command, but all gooftool commands
79 can be waived during `gooftool finalize` or `gooftool verify` using
Wei-Han Chen60c5d332017-01-05 17:15:10 +080080 --waive_list or --skip_list option.
Ting Shen18a06382016-08-30 16:18:21 +080081 """
82 def Decorate(fun):
Wei-Han Chen60c5d332017-01-05 17:15:10 +080083 def CommandWithWaiveSkipCheck(options):
Ting Shen18a06382016-08-30 16:18:21 +080084 waive_list = vars(options).get('waive_list', [])
Wei-Han Chen60c5d332017-01-05 17:15:10 +080085 skip_list = vars(options).get('skip_list', [])
86 if phase.GetPhase() >= phase.PVT_DOGFOOD and (
87 waive_list != [] or skip_list != []):
Ting Shen18a06382016-08-30 16:18:21 +080088 raise Error(
Wei-Han Chen60c5d332017-01-05 17:15:10 +080089 'waive_list and skip_list should be empty for phase %s' %
90 phase.GetPhase())
Ting Shen18a06382016-08-30 16:18:21 +080091
Wei-Han Chen60c5d332017-01-05 17:15:10 +080092 if cmd_name not in skip_list:
93 try:
94 fun(options)
95 except Exception as e:
96 if cmd_name in waive_list:
97 logging.exception(e)
98 else:
99 raise
Ting Shen18a06382016-08-30 16:18:21 +0800100
101 return argparse_utils.Command(cmd_name, *args, **kwargs)(
Wei-Han Chen60c5d332017-01-05 17:15:10 +0800102 CommandWithWaiveSkipCheck)
Ting Shen18a06382016-08-30 16:18:21 +0800103 return Decorate
104
105
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800106@Command('write_hwid',
107 CmdArg('hwid', metavar='HWID', help='HWID string'))
Andy Chengc92e6f92012-11-20 16:55:53 +0800108def WriteHWID(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800109 """Write specified HWID value into the system BB."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800110
Tammo Spalink95c43732012-07-25 15:57:14 -0700111 logging.info('writing hwid string %r', options.hwid)
Ricky Lianga70a1202013-03-15 15:03:17 +0800112 GetGooftool(options).WriteHWID(options.hwid)
Andy Cheng0465d132013-03-20 12:12:06 +0800113 event_log.Log('write_hwid', hwid=options.hwid)
Yilin Yang71e39412019-09-24 09:26:46 +0800114 print('Wrote HWID: %r' % options.hwid)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800115
116
Yong Hongc3765412017-12-26 23:12:15 +0800117@Command('read_hwid')
118def ReadHWID(options):
119 """Read the HWID string from GBB."""
120
121 logging.info('reading the hwid string')
Yilin Yang71e39412019-09-24 09:26:46 +0800122 print(GetGooftool(options).ReadHWID())
Yong Hongc3765412017-12-26 23:12:15 +0800123
124
Yong Hong5408f652017-07-11 19:20:25 +0800125_project_cmd_arg = CmdArg(
126 '--project', metavar='PROJECT',
127 default=None, help='Project name to test.')
Ricky Liang53390232013-03-08 15:37:57 +0800128
Tammo Spalink8fab5312012-05-28 18:33:30 +0800129_hwdb_path_cmd_arg = CmdArg(
130 '--hwdb_path', metavar='PATH',
Yong Hong5c6dcd52017-12-27 11:05:01 +0800131 default=hwid_utils.GetDefaultDataPath(),
Tammo Spalink8fab5312012-05-28 18:33:30 +0800132 help='Path to the HWID database.')
133
Tammo Spalink95c43732012-07-25 15:57:14 -0700134_hwid_status_list_cmd_arg = CmdArg(
Hung-Te Lin56b18402015-01-16 14:52:30 +0800135 '--status', nargs='*', default=['supported'],
136 help='allow only HWIDs with these status values')
Tammo Spalink95c43732012-07-25 15:57:14 -0700137
Jon Salzce124fb2012-10-02 17:42:03 +0800138_probe_results_cmd_arg = CmdArg(
Yong Hong55050c12018-02-27 18:19:47 +0800139 '--probe_results', metavar='RESULTS.json',
140 help=('Output from "hwid probe" (used instead of probing this system).'))
Jon Salzce124fb2012-10-02 17:42:03 +0800141
Ricky Liang53390232013-03-08 15:37:57 +0800142_device_info_cmd_arg = CmdArg(
Ricky Liangf89f73a2013-03-19 05:00:24 +0800143 '--device_info', metavar='DEVICE_INFO.yaml', default=None,
You-Cheng Syu8fc2a602017-12-22 17:05:05 +0800144 help='A dict of device info to use instead of fetching from shopfloor '
Ricky Liang53390232013-03-08 15:37:57 +0800145 'server.')
146
Jon Salzce124fb2012-10-02 17:42:03 +0800147_hwid_cmd_arg = CmdArg(
148 '--hwid', metavar='HWID',
Ricky Lianga70a1202013-03-15 15:03:17 +0800149 help='HWID to verify (instead of the currently set HWID of this system).')
Jon Salzce124fb2012-10-02 17:42:03 +0800150
Yong Hong68a0e0d2017-12-20 19:06:54 +0800151_hwid_run_vpd_cmd_arg = CmdArg(
152 '--hwid-run-vpd', action='store_true',
153 help=('Specify the hwid utility to obtain the vpd data by running the '
154 '`vpd` commandline tool.'))
155
156_hwid_vpd_data_file_cmd_arg = CmdArg(
157 '--hwid-vpd-data-file', metavar='FILE.json', type=str, default=None,
158 help=('Specify the hwid utility to obtain the vpd data from the specified '
159 'file.'))
160
Bernie Thompson3c11c872013-07-22 18:22:45 -0700161_rma_mode_cmd_arg = CmdArg(
162 '--rma_mode', action='store_true',
163 help='Enable RMA mode, do not check for deprecated components.')
Tammo Spalink95c43732012-07-25 15:57:14 -0700164
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800165_cros_core_cmd_arg = CmdArg(
166 '--cros_core', action='store_true',
167 help='Finalize for ChromeOS Core devices (may add or remove few test '
Hung-Te Lin53c49402017-07-26 13:10:58 +0800168 'items. For example, registration codes or firmware bitmap '
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800169 'locale settings).')
170
Yilun Lin599833f2017-12-22 14:07:46 +0800171_chromebox_cmd_arg = CmdArg(
172 '--chromebox', action='store_true', default=None,
173 help='Finalize for ChromeBox devices (may add or remove few test '
174 'items. For example, VerifyECKey).')
175
bowgotsai13820f42015-09-10 23:18:04 +0800176_enforced_release_channels_cmd_arg = CmdArg(
177 '--enforced_release_channels', nargs='*', default=None,
178 help='Enforced release image channels.')
179
Yilun Lin34f54802017-11-16 11:58:25 +0800180_ec_pubkey_path_cmd_arg = CmdArg(
181 '--ec_pubkey_path',
182 default=None,
183 help='Path to public key in vb2 format. Verify EC key with pubkey file.')
184
185_ec_pubkey_hash_cmd_arg = CmdArg(
186 '--ec_pubkey_hash',
187 default=None,
188 help='A string for public key hash. Verify EC key with the given hash.')
189
Hung-Te Lincdb96522016-04-15 16:51:10 +0800190_release_rootfs_cmd_arg = CmdArg(
191 '--release_rootfs', help='Location of release image rootfs partition.')
192
193_firmware_path_cmd_arg = CmdArg(
194 '--firmware_path', help='Location of firmware image partition.')
Ricky Liang43b879b2014-02-24 11:36:55 +0800195
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800196_shopfloor_url_args_cmd_arg = CmdArg(
197 '--shopfloor_url',
Earl Ou51182222016-09-09 12:16:48 +0800198 help='Shopfloor server url to be informed when wiping is done. '
199 'After wiping, a XML-RPC request will be sent to the '
200 'given url to indicate the completion of wiping.')
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800201
202_station_ip_cmd_arg = CmdArg(
203 '--station_ip',
204 help='IP of remote station')
205
206_station_port_cmd_arg = CmdArg(
207 '--station_port',
208 help='Port on remote station')
209
210_wipe_finish_token_cmd_arg = CmdArg(
211 '--wipe_finish_token',
212 help='Required token when notifying station after wipe finished')
213
Wei-Han Chenf3924112019-02-25 14:52:58 +0800214_keep_developer_mode_flag_after_clobber_state_cmd_arg = CmdArg(
215 # The argument name is super long because you should never use it by
216 # yourself when using command line tools.
217 '--keep_developer_mode_flag_after_clobber_state',
218 action='store_true', default=None,
219 help='After clobber-state, do not delete .developer_mode')
220
Ting Shen18a06382016-08-30 16:18:21 +0800221_waive_list_cmd_arg = CmdArg(
222 '--waive_list', nargs='*', default=[], metavar='SUBCMD',
You-Cheng Syu8fc2a602017-12-22 17:05:05 +0800223 help='A list of waived checks, separated by whitespace. '
224 'Each item should be a sub-command of gooftool. '
Ting Shen18a06382016-08-30 16:18:21 +0800225 'e.g. "gooftool verify --waive_list verify_tpm clear_gbb_flags".')
226
Wei-Han Chen60c5d332017-01-05 17:15:10 +0800227_skip_list_cmd_arg = CmdArg(
228 '--skip_list', nargs='*', default=[], metavar='SUBCMD',
You-Cheng Syu8fc2a602017-12-22 17:05:05 +0800229 help='A list of skipped checks, separated by whitespace. '
230 'Each item should be a sub-command of gooftool. '
Wei-Han Chen60c5d332017-01-05 17:15:10 +0800231 'e.g. "gooftool verify --skip_list verify_tpm clear_gbb_flags".')
232
Wei-Han Cheneb4f9a22018-03-09 14:52:23 +0800233_rlz_embargo_end_date_offset_cmd_arg = CmdArg(
234 '--embargo_offset', type=int, default=7, choices=xrange(7, 15),
235 help='Change the offset of embargo end date, cannot less than 7 days or '
236 'more than 14 days.')
237
Marco Chena681b2e2018-08-31 11:41:41 +0800238_no_ectool_cmd_arg = CmdArg(
239 '--no_ectool', action='store_false', dest='has_ectool',
240 help='There is no ectool utility so tests rely on ectool should be '
241 'skipped.')
Tammo Spalink8fab5312012-05-28 18:33:30 +0800242
chuntsenaf1232f2019-03-20 15:45:54 +0800243_no_generate_mfg_date_cmd_arg = CmdArg(
244 '--no_generate_mfg_date', action='store_false', dest='generate_mfg_date',
245 help='Do not generate manufacturing date nor write mfg_date into VPD.')
246
Marco Chenecee04f2019-02-15 22:24:24 +0800247_has_fpmcu_cmd_arg = CmdArg(
248 '--has_fpmcu', action='store_true', default=None,
249 help='Force execution of fpmcu related commands.')
250
251_no_fpmcu_cmd_arg = CmdArg(
252 '--no_fpmcu', action='store_false', default=None, dest='has_fpmcu',
253 help='Skip fpmcu related commands.')
254
chuntsenaf1232f2019-03-20 15:45:54 +0800255
Yilun Lin34f54802017-11-16 11:58:25 +0800256@Command(
257 'verify_ec_key',
258 _ec_pubkey_path_cmd_arg,
259 _ec_pubkey_hash_cmd_arg)
260def VerifyECKey(options):
261 """Verify EC key."""
262 return GetGooftool(options).VerifyECKey(
263 options.ec_pubkey_path, options.ec_pubkey_hash)
264
265
Hung-Te Line1d80f62016-03-31 14:58:13 +0800266@Command('verify_keys',
Hung-Te Lincdb96522016-04-15 16:51:10 +0800267 _release_rootfs_cmd_arg,
268 _firmware_path_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800269def VerifyKeys(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800270 """Verify keys in firmware and SSD match."""
Hung-Te Line1d80f62016-03-31 14:58:13 +0800271 return GetGooftool(options).VerifyKeys(
Hung-Te Lincdb96522016-04-15 16:51:10 +0800272 options.release_rootfs, options.firmware_path)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800273
274
275@Command('set_fw_bitmap_locale')
Peter Shihfdf17682017-05-26 11:38:39 +0800276def SetFirmwareBitmapLocale(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800277 """Use VPD locale value to set firmware bitmap default language."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800278
Ricky Lianga70a1202013-03-15 15:03:17 +0800279 (index, locale) = GetGooftool(options).SetFirmwareBitmapLocale()
Andy Cheng2582d292012-12-04 17:38:28 +0800280 logging.info('Firmware bitmap initial locale set to %d (%s).',
281 index, locale)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800282
283
Hung-Te Line1d80f62016-03-31 14:58:13 +0800284@Command('verify_system_time',
Wei-Han Chen2790d2e2019-01-18 21:13:40 +0800285 _release_rootfs_cmd_arg,
286 _rma_mode_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800287def VerifySystemTime(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800288 """Verify system time is later than release filesystem creation time."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800289
Wei-Han Chen2790d2e2019-01-18 21:13:40 +0800290 return GetGooftool(options).VerifySystemTime(options.release_rootfs,
291 rma_mode=options.rma_mode)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800292
293
Hung-Te Line1d80f62016-03-31 14:58:13 +0800294@Command('verify_rootfs',
Hung-Te Lincdb96522016-04-15 16:51:10 +0800295 _release_rootfs_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800296def VerifyRootFs(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800297 """Verify rootfs on SSD is valid by checking hash."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800298
Hung-Te Line1d80f62016-03-31 14:58:13 +0800299 return GetGooftool(options).VerifyRootFs(options.release_rootfs)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800300
Hung-Te Lin56b18402015-01-16 14:52:30 +0800301
Cheng-Yi Chiang676b5292013-06-18 12:05:33 +0800302@Command('verify_tpm')
Peter Shihfdf17682017-05-26 11:38:39 +0800303def VerifyTPM(options):
Cheng-Yi Chiang676b5292013-06-18 12:05:33 +0800304 """Verify TPM is cleared."""
305
306 return GetGooftool(options).VerifyTPM()
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800307
Hung-Te Lin56b18402015-01-16 14:52:30 +0800308
Hung-Te Lindd708d42014-07-11 17:05:01 +0800309@Command('verify_me_locked')
Peter Shihfdf17682017-05-26 11:38:39 +0800310def VerifyManagementEngineLocked(options):
You-Cheng Syu461ec032017-03-06 15:56:58 +0800311 """Verify Management Engine is locked."""
Hung-Te Lindd708d42014-07-11 17:05:01 +0800312
313 return GetGooftool(options).VerifyManagementEngineLocked()
314
Hung-Te Lin56b18402015-01-16 14:52:30 +0800315
Marco Chena681b2e2018-08-31 11:41:41 +0800316@Command('verify_switch_wp',
317 _no_ectool_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800318def VerifyWPSwitch(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800319 """Verify hardware write protection switch is enabled."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800320
Marco Chena681b2e2018-08-31 11:41:41 +0800321 GetGooftool(options).VerifyWPSwitch(options.has_ectool)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800322
323
Hung-Te Lin53c49402017-07-26 13:10:58 +0800324@Command('verify_vpd')
325def VerifyVPD(options):
326 """Verify that VPD values are properly set.
Jon Salzadd90d32014-04-29 16:16:27 +0800327
Hung-Te Lin53c49402017-07-26 13:10:58 +0800328 Check if mandatory fields are set, and deprecated fields don't exist.
Jon Salzadd90d32014-04-29 16:16:27 +0800329 """
Hung-Te Lin53c49402017-07-26 13:10:58 +0800330 return GetGooftool(options).VerifyVPD()
Jon Salzadd90d32014-04-29 16:16:27 +0800331
332
bowgotsai13820f42015-09-10 23:18:04 +0800333@Command('verify_release_channel',
334 _enforced_release_channels_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800335def VerifyReleaseChannel(options):
bowgotsai529139c2015-05-30 01:39:49 +0800336 """Verify that release image channel is correct.
337
338 ChromeOS has four channels: canary, dev, beta and stable.
339 The last three channels support image auto-updates, checks
340 that release image channel is one of them.
341 """
bowgotsai13820f42015-09-10 23:18:04 +0800342 return GetGooftool(options).VerifyReleaseChannel(
343 options.enforced_release_channels)
bowgotsai529139c2015-05-30 01:39:49 +0800344
345
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800346@Command('write_protect')
Peter Shihfdf17682017-05-26 11:38:39 +0800347def EnableFwWp(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800348 """Enable then verify firmware write protection."""
Peter Shihfdf17682017-05-26 11:38:39 +0800349 del options # Unused.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800350
Yong Hongdad230a2017-08-30 22:25:19 +0800351 def WriteProtect(fw):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800352 """Calculate protection size, then invoke flashrom.
353
Yong Hongdad230a2017-08-30 22:25:19 +0800354 The region (offset and size) to write protect may be different per chipset
355 and firmware layout, so we have to read the WP_RO section from FMAP to
356 decide that.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800357 """
Hung-Te Lin7ea39e82012-07-31 18:39:33 +0800358 wp_section = 'WP_RO'
Hung-Te Lin7ea39e82012-07-31 18:39:33 +0800359
Yong Hongdad230a2017-08-30 22:25:19 +0800360 fmap_image = fw.GetFirmwareImage(
361 sections=(['FMAP'] if fw.target == crosfw.TARGET_MAIN else None))
362 if not fmap_image.has_section(wp_section):
363 raise Error('Could not find %s firmware section: %s' %
364 (fw.target.upper(), wp_section))
365
366 section_data = fw.GetFirmwareImage(
367 sections=[wp_section]).get_section_area(wp_section)
Peter Shihe6afab32018-09-11 17:16:48 +0800368 ro_offset, ro_size = section_data[0:2]
Yong Hongdad230a2017-08-30 22:25:19 +0800369
370 logging.debug('write protecting %s [off=%x size=%x]', fw.target.upper(),
Hung-Te Lin7ea39e82012-07-31 18:39:33 +0800371 ro_offset, ro_size)
Yong Hongdad230a2017-08-30 22:25:19 +0800372 crosfw.Flashrom(fw.target).EnableWriteProtection(ro_offset, ro_size)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800373
Yong Hongdad230a2017-08-30 22:25:19 +0800374 WriteProtect(crosfw.LoadMainFirmware())
Andy Cheng0465d132013-03-20 12:12:06 +0800375 event_log.Log('wp', fw='main')
Hung-Te Lind3b124c2016-10-20 22:22:31 +0800376
377 # Some EC (mostly PD) does not support "RO NOW". Instead they will only set
378 # "RO_AT_BOOT" when you request to enable RO (These platforms consider
379 # --wp-range with right range identical to --wp-enable), and requires a
380 # 'ectool reboot_ec RO at-shutdown; reboot' to let the RO take effect.
Hung-Te Lin0d10b562016-12-28 10:58:07 +0800381 # After reboot, "flashrom -p host --wp-status" will return protected range.
Hung-Te Lind3b124c2016-10-20 22:22:31 +0800382 # If you don't reboot, returned range will be (0, 0), and running command
383 # "ectool flashprotect" will not have RO_NOW.
384
Yong Hongdad230a2017-08-30 22:25:19 +0800385 for fw in [crosfw.LoadEcFirmware(), crosfw.LoadPDFirmware()]:
386 if fw.GetChipId() is None:
Hung-Te Lind3b124c2016-10-20 22:22:31 +0800387 logging.warning('%s not write protected (seems there is no %s flash).',
Yong Hongdad230a2017-08-30 22:25:19 +0800388 fw.target.upper(), fw.target.upper())
Hung-Te Lind3b124c2016-10-20 22:22:31 +0800389 continue
Yong Hongdad230a2017-08-30 22:25:19 +0800390 WriteProtect(fw)
391 event_log.Log('wp', fw=fw.target)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800392
393
394@Command('clear_gbb_flags')
Peter Shihfdf17682017-05-26 11:38:39 +0800395def ClearGBBFlags(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800396 """Zero out the GBB flags, in preparation for transition to release state.
397
398 No GBB flags are set in release/shipping state, but they are useful
Hung-Te Lin879cff42017-06-19 12:46:37 +0800399 for factory/development. See "futility gbb --flags" for details.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800400 """
Andy Cheng7a76cb82012-11-19 18:08:19 +0800401
Ricky Lianga70a1202013-03-15 15:03:17 +0800402 GetGooftool(options).ClearGBBFlags()
Andy Cheng0465d132013-03-20 12:12:06 +0800403 event_log.Log('clear_gbb_flags')
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800404
405
Jon Salzaa3a30e2013-05-15 15:56:28 +0800406@Command('clear_factory_vpd_entries')
Peter Shihfdf17682017-05-26 11:38:39 +0800407def ClearFactoryVPDEntries(options):
Jon Salzaa3a30e2013-05-15 15:56:28 +0800408 """Clears factory.* items in the RW VPD."""
409 entries = GetGooftool(options).ClearFactoryVPDEntries()
410 event_log.Log('clear_factory_vpd_entries', entries=FilterDict(entries))
411
412
Mattias Nisslercca761b2015-04-15 21:53:04 +0200413@Command('generate_stable_device_secret')
Peter Shihfdf17682017-05-26 11:38:39 +0800414def GenerateStableDeviceSecret(options):
You-Cheng Syu461ec032017-03-06 15:56:58 +0800415 """Generates a fresh stable device secret and stores it in the RO VPD."""
Mattias Nisslercca761b2015-04-15 21:53:04 +0200416 GetGooftool(options).GenerateStableDeviceSecret()
417 event_log.Log('generate_stable_device_secret')
418
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800419
Yves Arrouyeb49b31e2019-03-06 21:51:52 -0800420@Command('cr50_set_sn_bits_and_board_id')
421def Cr50SetSnBitsAndBoardId(options):
422 """Set the serial number bits, board id and flags on the Cr50 chip."""
423 GetGooftool(options).Cr50SetSnBitsAndBoardId()
424 event_log.Log('cr50_set_sn_bits_and_board_id')
Shen-En Shihd078a7c2017-08-04 13:33:49 +0800425
426
Marco Chen20c885d2018-10-04 17:22:03 +0800427@Command('cr50_disable_factory_mode')
Marco Chen44a666d2018-07-13 21:01:50 +0800428def Cr50DisableFactoryMode(options):
Cheng-Han Yang08333af2017-12-18 17:22:38 +0800429 """Reset Cr50 state back to default state after RMA."""
Marco Chen44a666d2018-07-13 21:01:50 +0800430 return GetGooftool(options).Cr50DisableFactoryMode()
Cheng-Han Yang08333af2017-12-18 17:22:38 +0800431
432
Earl Ou564a7872016-10-05 10:22:00 +0800433@Command('enable_release_partition',
434 CmdArg('--release_rootfs',
435 help=('path to the release rootfs device. If not specified, '
436 'the default (5th) partition will be used.')))
437def EnableReleasePartition(options):
438 """Enables a release image partition on the disk."""
439 GetGooftool(options).EnableReleasePartition(options.release_rootfs)
440
441
Shun-Hsing Oucdc64e12015-01-14 22:07:33 +0800442@Command('wipe_in_place',
443 CmdArg('--fast', action='store_true',
Shun-Hsing Ou8d3c40a2015-10-08 18:16:08 +0800444 help='use non-secure but faster wipe method.'),
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800445 _shopfloor_url_args_cmd_arg,
446 _station_ip_cmd_arg,
447 _station_port_cmd_arg,
448 _wipe_finish_token_cmd_arg)
Shun-Hsing Oucdc64e12015-01-14 22:07:33 +0800449def WipeInPlace(options):
450 """Start factory wipe directly without reboot."""
451
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800452 GetGooftool(options).WipeInPlace(options.fast,
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800453 options.shopfloor_url,
454 options.station_ip,
455 options.station_port,
456 options.wipe_finish_token)
Mattias Nisslercca761b2015-04-15 21:53:04 +0200457
Wei-Han Chen7dc6d132016-04-06 11:11:53 +0800458@Command('wipe_init',
Wei-Han Chen0a3320e2016-04-23 01:32:07 +0800459 CmdArg('--wipe_args', help='arguments for clobber-state'),
460 CmdArg('--state_dev', help='path to stateful partition device'),
461 CmdArg('--root_disk', help='path to primary device'),
462 CmdArg('--old_root', help='path to old root'),
Wei-Han Chen0a3320e2016-04-23 01:32:07 +0800463 _shopfloor_url_args_cmd_arg,
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800464 _release_rootfs_cmd_arg,
465 _station_ip_cmd_arg,
466 _station_port_cmd_arg,
Wei-Han Chenf3924112019-02-25 14:52:58 +0800467 _wipe_finish_token_cmd_arg,
468 _keep_developer_mode_flag_after_clobber_state_cmd_arg)
Wei-Han Chen7dc6d132016-04-06 11:11:53 +0800469def WipeInit(options):
Wei-Han Chenf3924112019-02-25 14:52:58 +0800470 GetGooftool(options).WipeInit(
471 options.wipe_args,
472 options.shopfloor_url,
473 options.state_dev,
474 options.release_rootfs,
475 options.root_disk,
476 options.old_root,
477 options.station_ip,
478 options.station_port,
479 options.wipe_finish_token,
480 options.keep_developer_mode_flag_after_clobber_state)
Wei-Han Chen7dc6d132016-04-06 11:11:53 +0800481
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800482@Command('verify',
Hung-Te Lin6d827542012-07-19 11:50:41 +0800483 CmdArg('--no_write_protect', action='store_true',
484 help='Do not check write protection switch state.'),
Tammo Spalink95c43732012-07-25 15:57:14 -0700485 _hwid_status_list_cmd_arg,
Jon Salzce124fb2012-10-02 17:42:03 +0800486 _hwdb_path_cmd_arg,
Yong Hong5408f652017-07-11 19:20:25 +0800487 _project_cmd_arg,
Jon Salzce124fb2012-10-02 17:42:03 +0800488 _probe_results_cmd_arg,
Cheng-Yi Chiang406ad912013-11-14 16:51:33 +0800489 _hwid_cmd_arg,
Yong Hong68a0e0d2017-12-20 19:06:54 +0800490 _hwid_run_vpd_cmd_arg,
491 _hwid_vpd_data_file_cmd_arg,
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800492 _rma_mode_cmd_arg,
bowgotsai13820f42015-09-10 23:18:04 +0800493 _cros_core_cmd_arg,
Yilun Lin599833f2017-12-22 14:07:46 +0800494 _chromebox_cmd_arg,
Yilun Lin34f54802017-11-16 11:58:25 +0800495 _ec_pubkey_path_cmd_arg,
496 _ec_pubkey_hash_cmd_arg,
Hung-Te Lincdb96522016-04-15 16:51:10 +0800497 _release_rootfs_cmd_arg,
498 _firmware_path_cmd_arg,
Ting Shen18a06382016-08-30 16:18:21 +0800499 _enforced_release_channels_cmd_arg,
Wei-Han Chen60c5d332017-01-05 17:15:10 +0800500 _waive_list_cmd_arg,
Marco Chena681b2e2018-08-31 11:41:41 +0800501 _skip_list_cmd_arg,
502 _no_ectool_cmd_arg)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800503def Verify(options):
504 """Verifies if whole factory process is ready for finalization.
505
506 This routine performs all the necessary checks to make sure the
507 device is ready to be finalized, but does not modify state. These
508 checks include dev switch, firmware write protection switch, hwid,
509 system time, keys, and root file system.
510 """
Andy Cheng7a76cb82012-11-19 18:08:19 +0800511
Hung-Te Lin6d827542012-07-19 11:50:41 +0800512 if not options.no_write_protect:
Ricky Lianga70a1202013-03-15 15:03:17 +0800513 VerifyWPSwitch(options)
Hung-Te Lindd708d42014-07-11 17:05:01 +0800514 VerifyManagementEngineLocked(options)
Ting Shen129fa6f2016-09-02 12:22:24 +0800515 VerifyHWID(options)
Ricky Lianga70a1202013-03-15 15:03:17 +0800516 VerifySystemTime(options)
Yilun Lin599833f2017-12-22 14:07:46 +0800517 if options.chromebox:
518 VerifyECKey(options)
Ricky Lianga70a1202013-03-15 15:03:17 +0800519 VerifyKeys(options)
520 VerifyRootFs(options)
Cheng-Yi Chiang676b5292013-06-18 12:05:33 +0800521 VerifyTPM(options)
Hung-Te Lin53c49402017-07-26 13:10:58 +0800522 VerifyVPD(options)
bowgotsai529139c2015-05-30 01:39:49 +0800523 VerifyReleaseChannel(options)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800524
Hung-Te Lin56b18402015-01-16 14:52:30 +0800525
Jon Salzfe9036f2014-01-16 14:11:23 +0800526@Command('untar_stateful_files')
Hung-Te Lin388bce22014-06-03 19:56:40 +0800527def UntarStatefulFiles(unused_options):
Jon Salzfe9036f2014-01-16 14:11:23 +0800528 """Untars stateful files from stateful_files.tar.xz on stateful partition.
529
530 If that file does not exist (which should only be R30 and earlier),
531 this is a no-op.
532 """
Hung-Te Lin2333f3f2016-08-24 17:56:48 +0800533 # Path to stateful partition on device.
534 device_stateful_path = '/mnt/stateful_partition'
535 tar_file = os.path.join(device_stateful_path, 'stateful_files.tar.xz')
Jon Salzfe9036f2014-01-16 14:11:23 +0800536 if os.path.exists(tar_file):
Hung-Te Lin2333f3f2016-08-24 17:56:48 +0800537 Spawn(['tar', 'xf', tar_file], cwd=device_stateful_path,
Jon Salzfe9036f2014-01-16 14:11:23 +0800538 log=True, check_call=True)
539 else:
540 logging.warning('No stateful files at %s', tar_file)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800541
Jon Salz40b9f822014-07-25 16:39:55 +0800542
543@Command('log_source_hashes')
Peter Shihfdf17682017-05-26 11:38:39 +0800544def LogSourceHashes(options):
Jon Salz40b9f822014-07-25 16:39:55 +0800545 """Logs hashes of source files in the factory toolkit."""
Peter Shihfdf17682017-05-26 11:38:39 +0800546 del options # Unused.
Jon Salze60307f2014-08-05 16:20:00 +0800547 # WARNING: The following line is necessary to validate the integrity
548 # of the factory software. Do not remove or modify it.
549 #
550 # 警告:此行会验证工厂软件的完整性,禁止删除或修改。
Wei-Han Chena5c01a02016-04-23 19:27:19 +0800551 factory_par = sys_utils.GetRunningFactoryPythonArchivePath()
552 if factory_par:
553 event_log.Log(
554 'source_hashes',
555 **file_utils.HashPythonArchive(factory_par))
556 else:
557 event_log.Log(
558 'source_hashes',
Peter Shihad166772017-05-31 11:36:17 +0800559 **file_utils.HashSourceTree(os.path.join(paths.FACTORY_DIR, 'py')))
Jon Salz40b9f822014-07-25 16:39:55 +0800560
561
Tammo Spalink86a61c62012-05-25 15:10:35 +0800562@Command('log_system_details')
Peter Shihfdf17682017-05-26 11:38:39 +0800563def LogSystemDetails(options):
Tammo Spalink86a61c62012-05-25 15:10:35 +0800564 """Write miscellaneous system details to the event log."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800565
Ricky Liang43b879b2014-02-24 11:36:55 +0800566 event_log.Log('system_details', **GetGooftool(options).GetSystemDetails())
Tammo Spalink86a61c62012-05-25 15:10:35 +0800567
568
Jon Salza88b83b2013-05-27 20:00:35 +0800569def CreateReportArchiveBlob(*args, **kwargs):
570 """Creates a report archive and returns it as a blob.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800571
Jon Salza88b83b2013-05-27 20:00:35 +0800572 Args:
573 See CreateReportArchive.
Andy Cheng7a76cb82012-11-19 18:08:19 +0800574
Jon Salza88b83b2013-05-27 20:00:35 +0800575 Returns:
576 An xmlrpclib.Binary object containing a .tar.xz file.
577 """
Wei-Han Chen47416612016-09-14 17:41:52 +0800578 report_archive = CreateReportArchive(*args, **kwargs)
579 try:
You-Cheng Syuf0f4be12017-12-05 16:33:53 +0800580 return xmlrpclib.Binary(file_utils.ReadFile(report_archive))
Wei-Han Chen47416612016-09-14 17:41:52 +0800581 finally:
582 os.unlink(report_archive)
Jon Salza88b83b2013-05-27 20:00:35 +0800583
584
585def CreateReportArchive(device_sn=None, add_file=None):
586 """Creates a report archive in a temporary directory.
587
588 Args:
589 device_sn: The device serial number (optional).
590 add_file: A list of files to add (optional).
591
592 Returns:
593 Path to the archive.
594 """
Philip Chen6ada02c2019-11-04 19:41:54 +0000595 # Flush Testlog data to DATA_TESTLOG_DIR before creating a report archive.
596 result, reason = state.GetInstance().FlushTestlog(
597 uplink=False, local=True, timeout=10)
598 if not result:
599 logging.warning('Failed to flush testlog data: %s', reason)
600
Hung-Te Lin6bd16472012-06-20 16:26:47 +0800601 def NormalizeAsFileName(token):
602 return re.sub(r'\W+', '', token).strip()
Jon Salza88b83b2013-05-27 20:00:35 +0800603
604 target_name = '%s%s.tar.xz' % (
605 time.strftime('%Y%m%dT%H%M%SZ',
606 time.gmtime()),
Hung-Te Lin56b18402015-01-16 14:52:30 +0800607 ('' if device_sn is None else
608 '_' + NormalizeAsFileName(device_sn)))
Tammo Spalink86a61c62012-05-25 15:10:35 +0800609 target_path = os.path.join(gettempdir(), target_name)
Jon Salza88b83b2013-05-27 20:00:35 +0800610
Tammo Spalink86a61c62012-05-25 15:10:35 +0800611 # Intentionally ignoring dotfiles in EVENT_LOG_DIR.
Andy Cheng0465d132013-03-20 12:12:06 +0800612 tar_cmd = 'cd %s ; tar cJf %s *' % (event_log.EVENT_LOG_DIR, target_path)
Peter Shihb4e49352017-05-25 17:35:11 +0800613 tar_cmd += ' %s' % paths.FACTORY_LOG_PATH
Philip Chen6ada02c2019-11-04 19:41:54 +0000614 tar_cmd += ' %s' % paths.DATA_TESTLOG_DIR
Jon Salza88b83b2013-05-27 20:00:35 +0800615 if add_file:
616 for f in add_file:
Jon Salz65266432012-07-30 19:02:49 +0800617 # Require absolute paths since the tar command may change the
618 # directory.
619 if not f.startswith('/'):
620 raise Error('Not an absolute path: %s' % f)
621 if not os.path.exists(f):
622 raise Error('File does not exist: %s' % f)
Wei-Han Chen4b755022017-01-04 10:51:52 +0800623 tar_cmd += ' %s' % pipes.quote(f)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800624 cmd_result = Shell(tar_cmd)
Jon Salzff88c022012-11-03 12:19:58 +0800625
626 if ((cmd_result.status == 1) and
627 all((x == '' or
628 'file changed as we read it' in x or
629 "Removing leading `/' from member names" in x)
630 for x in cmd_result.stderr.split('\n'))):
631 # That's OK. Make sure it's valid though.
Vic Yang85199e72013-01-28 14:33:11 +0800632 Spawn(['tar', 'tfJ', target_path], check_call=True, log=True,
Jon Salzff88c022012-11-03 12:19:58 +0800633 ignore_stdout=True)
634 elif not cmd_result.success:
Tammo Spalink86a61c62012-05-25 15:10:35 +0800635 raise Error('unable to tar event logs, cmd %r failed, stderr: %r' %
636 (tar_cmd, cmd_result.stderr))
Jon Salzff88c022012-11-03 12:19:58 +0800637
Jon Salza88b83b2013-05-27 20:00:35 +0800638 return target_path
639
640_upload_method_cmd_arg = CmdArg(
641 '--upload_method', metavar='METHOD:PARAM',
642 help=('How to perform the upload. METHOD should be one of '
643 '{ftp, shopfloor, ftps, cpfe}.'))
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800644_upload_max_retry_times_arg = CmdArg(
645 '--upload_max_retry_times', type=int, default=0,
646 help='Number of tries to upload. 0 to retry infinitely.')
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800647_upload_retry_interval_arg = CmdArg(
648 '--upload_retry_interval', type=int, default=None,
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800649 help='Retry interval in seconds.')
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800650_upload_allow_fail_arg = CmdArg(
651 '--upload_allow_fail', action='store_true',
652 help='Continue finalize if report upload fails.')
Jon Salza88b83b2013-05-27 20:00:35 +0800653_add_file_cmd_arg = CmdArg(
654 '--add_file', metavar='FILE', action='append',
655 help='Extra file to include in report (must be an absolute path)')
656
Hung-Te Lin56b18402015-01-16 14:52:30 +0800657
Jon Salza88b83b2013-05-27 20:00:35 +0800658@Command('upload_report',
659 _upload_method_cmd_arg,
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800660 _upload_max_retry_times_arg,
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800661 _upload_retry_interval_arg,
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800662 _upload_allow_fail_arg,
Jon Salza88b83b2013-05-27 20:00:35 +0800663 _add_file_cmd_arg)
664def UploadReport(options):
665 """Create a report containing key device details."""
Yong Hong65bda312018-12-13 20:05:58 +0800666 ro_vpd = vpd.VPDTool().GetAllData(partition=vpd.VPD_READONLY_PARTITION_NAME)
Jon Salza88b83b2013-05-27 20:00:35 +0800667 device_sn = ro_vpd.get('serial_number', None)
668 if device_sn is None:
669 logging.warning('RO_VPD missing device serial number')
Chun-Ta Lin53cbbd52016-06-08 21:42:19 +0800670 device_sn = 'MISSING_SN_' + time_utils.TimedUUID()
chuntsena6da2be2019-08-14 17:11:55 +0800671 target_path = CreateReportArchive(device_sn, options.add_file)
Jon Salza88b83b2013-05-27 20:00:35 +0800672
Tammo Spalink86a61c62012-05-25 15:10:35 +0800673 if options.upload_method is None or options.upload_method == 'none':
674 logging.warning('REPORT UPLOAD SKIPPED (report left at %s)', target_path)
675 return
676 method, param = options.upload_method.split(':', 1)
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800677
678 if options.upload_retry_interval is not None:
679 retry_interval = options.upload_retry_interval
680 else:
681 retry_interval = report_upload.DEFAULT_RETRY_INTERVAL
682
Tammo Spalink86a61c62012-05-25 15:10:35 +0800683 if method == 'shopfloor':
You-Cheng Syuf0f4be12017-12-05 16:33:53 +0800684 report_upload.ShopFloorUpload(
685 target_path, param,
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800686 'GRT' if options.command_name == 'finalize' else None,
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800687 max_retry_times=options.upload_max_retry_times,
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800688 retry_interval=retry_interval,
689 allow_fail=options.upload_allow_fail)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800690 elif method == 'ftp':
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800691 report_upload.FtpUpload(target_path, 'ftp:' + param,
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800692 max_retry_times=options.upload_max_retry_times,
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800693 retry_interval=retry_interval,
694 allow_fail=options.upload_allow_fail)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800695 elif method == 'ftps':
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800696 report_upload.CurlUrlUpload(target_path, '--ftp-ssl-reqd ftp:%s' % param,
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800697 max_retry_times=options.upload_max_retry_times,
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800698 retry_interval=retry_interval,
699 allow_fail=options.upload_allow_fail)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800700 elif method == 'cpfe':
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800701 report_upload.CpfeUpload(target_path, pipes.quote(param),
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800702 max_retry_times=options.upload_max_retry_times,
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800703 retry_interval=retry_interval,
704 allow_fail=options.upload_allow_fail)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800705 else:
Peter Shihbf6f22b2018-02-26 14:05:28 +0800706 raise Error('unknown report upload method %r' % method)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800707
708
709@Command('finalize',
Hung-Te Lin6d827542012-07-19 11:50:41 +0800710 CmdArg('--no_write_protect', action='store_true',
711 help='Do not enable firmware write protection.'),
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800712 CmdArg('--fast', action='store_true',
713 help='use non-secure but faster wipe method.'),
Yong Hongb2926bd2018-10-12 14:11:14 +0800714 _no_ectool_cmd_arg,
Shun-Hsing Oudb407d62015-11-11 11:03:59 +0800715 _shopfloor_url_args_cmd_arg,
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800716 _hwdb_path_cmd_arg,
Tammo Spalink95c43732012-07-25 15:57:14 -0700717 _hwid_status_list_cmd_arg,
Jon Salz65266432012-07-30 19:02:49 +0800718 _upload_method_cmd_arg,
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800719 _upload_max_retry_times_arg,
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800720 _upload_retry_interval_arg,
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800721 _upload_allow_fail_arg,
Jon Salzce124fb2012-10-02 17:42:03 +0800722 _add_file_cmd_arg,
723 _probe_results_cmd_arg,
Cheng-Yi Chiang406ad912013-11-14 16:51:33 +0800724 _hwid_cmd_arg,
Yong Hong68a0e0d2017-12-20 19:06:54 +0800725 _hwid_run_vpd_cmd_arg,
726 _hwid_vpd_data_file_cmd_arg,
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800727 _rma_mode_cmd_arg,
bowgotsai13820f42015-09-10 23:18:04 +0800728 _cros_core_cmd_arg,
Yilun Lin599833f2017-12-22 14:07:46 +0800729 _chromebox_cmd_arg,
Yilun Lin34f54802017-11-16 11:58:25 +0800730 _ec_pubkey_path_cmd_arg,
731 _ec_pubkey_hash_cmd_arg,
Hung-Te Lincdb96522016-04-15 16:51:10 +0800732 _release_rootfs_cmd_arg,
733 _firmware_path_cmd_arg,
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800734 _enforced_release_channels_cmd_arg,
735 _station_ip_cmd_arg,
736 _station_port_cmd_arg,
Ting Shen18a06382016-08-30 16:18:21 +0800737 _wipe_finish_token_cmd_arg,
Wei-Han Cheneb4f9a22018-03-09 14:52:23 +0800738 _rlz_embargo_end_date_offset_cmd_arg,
Wei-Han Chen60c5d332017-01-05 17:15:10 +0800739 _waive_list_cmd_arg,
chuntsenaf1232f2019-03-20 15:45:54 +0800740 _skip_list_cmd_arg,
Marco Chenecee04f2019-02-15 22:24:24 +0800741 _no_generate_mfg_date_cmd_arg,
742 _has_fpmcu_cmd_arg,
743 _no_fpmcu_cmd_arg)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800744def Finalize(options):
745 """Verify system readiness and trigger transition into release state.
746
Jon Salzaa3a30e2013-05-15 15:56:28 +0800747 This routine does the following:
748 - Verifies system state (see verify command)
Jon Salzfe9036f2014-01-16 14:11:23 +0800749 - Untars stateful_files.tar.xz, if it exists, in the stateful partition, to
750 initialize files such as the CRX cache
Jon Salzaa3a30e2013-05-15 15:56:28 +0800751 - Modifies firmware bitmaps to match locale
752 - Clears all factory-friendly flags from the GBB
753 - Removes factory-specific entries from RW_VPD (factory.*)
754 - Enables firmware write protection (cannot rollback after this)
Marco Chenecee04f2019-02-15 22:24:24 +0800755 - Initialize Fpmcu entropy
Jon Salzaa3a30e2013-05-15 15:56:28 +0800756 - Uploads system logs & reports
Earl Ou51182222016-09-09 12:16:48 +0800757 - Wipes the testing kernel, rootfs, and stateful partition
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800758 """
Wei-Han Cheneb4f9a22018-03-09 14:52:23 +0800759 if not options.rma_mode:
760 # Write VPD values related to RLZ ping into VPD.
761 GetGooftool(options).WriteVPDForRLZPing(options.embargo_offset)
chuntsenaf1232f2019-03-20 15:45:54 +0800762 if options.generate_mfg_date:
763 GetGooftool(options).WriteVPDForMFGDate()
Yves Arrouyeb49b31e2019-03-06 21:51:52 -0800764 Cr50SetSnBitsAndBoardId(options)
Marco Chen44a666d2018-07-13 21:01:50 +0800765 Cr50DisableFactoryMode(options)
Marco Chen9d0631c2018-08-31 10:52:44 +0800766 Verify(options)
Jon Salz40b9f822014-07-25 16:39:55 +0800767 LogSourceHashes(options)
Jon Salzfe9036f2014-01-16 14:11:23 +0800768 UntarStatefulFiles(options)
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800769 if options.cros_core:
770 logging.info('SetFirmwareBitmapLocale is skipped for ChromeOS Core device.')
771 else:
772 SetFirmwareBitmapLocale(options)
Jon Salzaa3a30e2013-05-15 15:56:28 +0800773 ClearFactoryVPDEntries(options)
Mattias Nisslercca761b2015-04-15 21:53:04 +0200774 GenerateStableDeviceSecret(options)
Shen-En Shih3e079b22017-09-11 05:43:09 -0700775 ClearGBBFlags(options)
Hung-Te Lin6d827542012-07-19 11:50:41 +0800776 if options.no_write_protect:
777 logging.warn('WARNING: Firmware Write Protection is SKIPPED.')
Andy Cheng0465d132013-03-20 12:12:06 +0800778 event_log.Log('wp', fw='both', status='skipped')
Hung-Te Lin6d827542012-07-19 11:50:41 +0800779 else:
Wei-Han Chenba21f512016-10-14 18:52:33 +0800780 EnableFwWp(options)
Marco Chenecee04f2019-02-15 22:24:24 +0800781 FpmcuInitializeEntropy(options)
Jon Salza0f58e02012-05-29 19:33:39 +0800782 LogSystemDetails(options)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800783 UploadReport(options)
Earl Ou51182222016-09-09 12:16:48 +0800784
785 event_log.Log('wipe_in_place')
786 wipe_args = []
Earl Ou51182222016-09-09 12:16:48 +0800787 if options.shopfloor_url:
788 wipe_args += ['--shopfloor_url', options.shopfloor_url]
789 if options.fast:
790 wipe_args += ['--fast']
791 if options.station_ip:
792 wipe_args += ['--station_ip', options.station_ip]
793 if options.station_port:
794 wipe_args += ['--station_port', options.station_port]
795 if options.wipe_finish_token:
796 wipe_args += ['--wipe_finish_token', options.wipe_finish_token]
797 ExecFactoryPar('gooftool', 'wipe_in_place', *wipe_args)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800798
799
Ting Shen129fa6f2016-09-02 12:22:24 +0800800@Command('verify_hwid',
801 _probe_results_cmd_arg,
802 _hwdb_path_cmd_arg,
803 _hwid_cmd_arg,
Yong Hong68a0e0d2017-12-20 19:06:54 +0800804 _hwid_run_vpd_cmd_arg,
805 _hwid_vpd_data_file_cmd_arg,
Ting Shen129fa6f2016-09-02 12:22:24 +0800806 _rma_mode_cmd_arg)
807def VerifyHWID(options):
Ricky Liangc662be32013-12-24 11:50:23 +0800808 """A simple wrapper that calls out to HWID utils to verify version 3 HWID.
Ricky Liang53390232013-03-08 15:37:57 +0800809
Ricky Liangc662be32013-12-24 11:50:23 +0800810 This is mainly for Gooftool to verify v3 HWID during finalize. For testing
811 and development purposes, please use `hwid` command.
Ricky Liang53390232013-03-08 15:37:57 +0800812 """
Yong Hongada8e0e2018-01-04 16:36:21 +0800813 database = GetGooftool(options).db
Yong Hong68a0e0d2017-12-20 19:06:54 +0800814
Yong Hongada8e0e2018-01-04 16:36:21 +0800815 encoded_string = options.hwid or GetGooftool(options).ReadHWID()
816
817 probed_results = hwid_utils.GetProbedResults(infile=options.probe_results)
Yong Hong2c39bf22018-01-24 22:24:11 +0800818 device_info = hwid_utils.GetDeviceInfo()
Yong Hong65bda312018-12-13 20:05:58 +0800819 vpd_data = hwid_utils.GetVPDData(run_vpd=options.hwid_run_vpd,
820 infile=options.hwid_vpd_data_file)
Ricky Liang53390232013-03-08 15:37:57 +0800821
Hung-Te Lin11052952015-03-18 13:48:59 +0800822 event_log.Log('probed_results', probed_results=FilterDict(probed_results))
Yong Hong65bda312018-12-13 20:05:58 +0800823 event_log.Log('vpd', vpd=FilterDict(vpd_data))
Ricky Liang53390232013-03-08 15:37:57 +0800824
Yong Hong2c39bf22018-01-24 22:24:11 +0800825 hwid_utils.VerifyHWID(database, encoded_string, probed_results,
Yong Hong65bda312018-12-13 20:05:58 +0800826 device_info, vpd_data, options.rma_mode)
Ricky Liang53390232013-03-08 15:37:57 +0800827
Ricky Liangc662be32013-12-24 11:50:23 +0800828 event_log.Log('verified_hwid', hwid=encoded_string)
Ricky Liang53390232013-03-08 15:37:57 +0800829
830
henryhsu44d793a2013-07-20 00:07:38 +0800831@Command('get_firmware_hash',
Marco Chence70b132018-05-03 23:43:39 +0800832 CmdArg('--file', required=True, metavar='FILE', help='Firmware File.'))
henryhsu44d793a2013-07-20 00:07:38 +0800833def GetFirmwareHash(options):
henryhsuf6f835c2013-07-20 20:49:25 +0800834 """Get firmware hash from a file"""
henryhsu44d793a2013-07-20 00:07:38 +0800835 if os.path.exists(options.file):
Cheng-Han Yang2c668ae2018-04-18 22:31:07 +0800836 value_dict = chromeos_firmware.CalculateFirmwareHashes(options.file)
837 for key, value in value_dict.iteritems():
Yilin Yang71e39412019-09-24 09:26:46 +0800838 print(' %s: %s' % (key, value))
henryhsu44d793a2013-07-20 00:07:38 +0800839 else:
840 raise Error('File does not exist: %s' % options.file)
841
henryhsuf6f835c2013-07-20 20:49:25 +0800842
Marco Chenecee04f2019-02-15 22:24:24 +0800843@Command('fpmcu_initialize_entropy',
844 _has_fpmcu_cmd_arg,
845 _no_fpmcu_cmd_arg)
846def FpmcuInitializeEntropy(options):
847 """Initialze entropy of FPMCU."""
848 fpmcu_exists = os.path.exists('/dev/cros_fp')
849 if options.has_fpmcu is None:
850 options.has_fpmcu = fpmcu_exists
851 if options.has_fpmcu:
852 if not fpmcu_exists:
853 raise Error('FPS not found on device.')
854 GetGooftool(options).FpmcuInitializeEntropy()
855 elif fpmcu_exists:
856 logging.warning('FPS found. Entropy initialization skipped.')
857
858
Peter Shihfdf17682017-05-26 11:38:39 +0800859def main():
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800860 """Run sub-command specified by the command line args."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800861
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800862 options = ParseCmdline(
Ting Shen129fa6f2016-09-02 12:22:24 +0800863 'Perform Google required factory tests.',
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800864 CmdArg('-l', '--log', metavar='PATH',
865 help='Write logs to this file.'),
Jon Salza4bea382012-10-29 13:00:34 +0800866 CmdArg('--suppress-event-logs', action='store_true',
867 help='Suppress event logging.'),
Wei-Han Chenaff56232016-04-16 09:17:59 +0800868 CmdArg('--phase', default=None,
869 help=('override phase for phase checking (defaults to the current '
870 'as returned by the "factory phase" command)')),
Wei-Han Chenb34bdff2019-09-26 13:07:50 +0800871 VERBOSITY_CMD_ARG)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800872 SetupLogging(options.verbosity, options.log)
Andy Cheng0465d132013-03-20 12:12:06 +0800873 event_log.SetGlobalLoggerDefaultPrefix('gooftool')
874 event_log.GetGlobalLogger().suppress = options.suppress_event_logs
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800875 logging.debug('gooftool options: %s', repr(options))
Wei-Han Chenaff56232016-04-16 09:17:59 +0800876
877 phase.OverridePhase(options.phase)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800878 try:
879 logging.debug('GOOFTOOL command %r', options.command_name)
880 options.command(options)
881 logging.info('GOOFTOOL command %r SUCCESS', options.command_name)
Peter Shih6674ecf2018-03-29 14:04:57 +0800882 except Error as e:
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800883 logging.exception(e)
884 sys.exit('GOOFTOOL command %r ERROR: %s' % (options.command_name, e))
Peter Shih6674ecf2018-03-29 14:04:57 +0800885 except Exception as e:
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800886 logging.exception(e)
887 sys.exit('UNCAUGHT RUNTIME EXCEPTION %s' % e)
888
889
890if __name__ == '__main__':
Peter Shihfdf17682017-05-26 11:38:39 +0800891 main()