blob: 4cffb7296a0c15be02c3a516ed6cb82222e47685 [file] [log] [blame]
You-Cheng Syuf0f4be12017-12-05 16:33:53 +08001#!/usr/bin/env python
Jon Salze60307f2014-08-05 16:20:00 +08002# -*- coding: utf-8 -*-
3# Copyright 2014 The Chromium OS Authors. All rights reserved.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +08004# Use of this source code is governed by a BSD-style license that can be
5# found in the LICENSE file.
6
Jon Salze60307f2014-08-05 16:20:00 +08007
Tammo Spalink9a96b8a2012-04-03 11:10:41 +08008"""Google Factory Tool.
9
You-Cheng Syu461ec032017-03-06 15:56:58 +080010This tool is intended to be used on factory assembly lines. It
Tammo Spalink9a96b8a2012-04-03 11:10:41 +080011provides all of the Google required test functionality and must be run
12on each device as part of the assembly process.
13"""
14
Tammo Spalink9a96b8a2012-04-03 11:10:41 +080015import logging
16import os
Jon Salz65266432012-07-30 19:02:49 +080017import pipes
Tammo Spalink9a96b8a2012-04-03 11:10:41 +080018import re
19import sys
Peter Shihfdf17682017-05-26 11:38:39 +080020from tempfile import gettempdir
Cheng-Yi Chiang9fc121c2014-01-27 11:23:22 +080021import threading
Hung-Te Lin6bd16472012-06-20 16:26:47 +080022import time
Jon Salza88b83b2013-05-27 20:00:35 +080023import xmlrpclib
Peter Shihfdf17682017-05-26 11:38:39 +080024
Peter Shihfdf17682017-05-26 11:38:39 +080025import factory_common # pylint: disable=unused-import
Wei-Han Chen0a3320e2016-04-23 01:32:07 +080026from cros.factory.gooftool.common import ExecFactoryPar
Hung-Te Lin0e0f9362015-11-18 18:18:05 +080027from cros.factory.gooftool.common import Shell
Peter Shihfdf17682017-05-26 11:38:39 +080028from cros.factory.gooftool.core import Gooftool
29from cros.factory.gooftool import crosfw
Peter Shihfdf17682017-05-26 11:38:39 +080030from cros.factory.gooftool import report_upload
Hung-Te Lin604e0c22015-11-24 15:17:07 +080031from cros.factory.hwid.v3 import hwid_utils
Yong Hong863d3262017-10-30 16:23:34 +080032from cros.factory.probe.functions import chromeos_firmware
Wei-Han Chen2ebb92d2016-01-12 14:51:41 +080033from cros.factory.test.env import paths
Peter Shihfdf17682017-05-26 11:38:39 +080034from cros.factory.test import event_log
Wei-Han Chenaff56232016-04-16 09:17:59 +080035from cros.factory.test.rules import phase
Hung-Te Lin3f096842016-01-13 17:37:06 +080036from cros.factory.test.rules.privacy import FilterDict
Peter Shihfdf17682017-05-26 11:38:39 +080037from cros.factory.utils import argparse_utils
Hung-Te Lin03bf7ab2016-06-16 17:26:19 +080038from cros.factory.utils.argparse_utils import CmdArg
Hung-Te Lin03bf7ab2016-06-16 17:26:19 +080039from cros.factory.utils.argparse_utils import ParseCmdline
40from cros.factory.utils.argparse_utils import verbosity_cmd_arg
Peter Shihfdf17682017-05-26 11:38:39 +080041from cros.factory.utils.debug_utils import SetupLogging
Jon Salz40b9f822014-07-25 16:39:55 +080042from cros.factory.utils import file_utils
Peter Shih67c7c0f2018-02-26 11:23:59 +080043from cros.factory.utils.process_utils import Spawn
Wei-Han Chena5c01a02016-04-23 19:27:19 +080044from cros.factory.utils import sys_utils
Chun-Ta Lin53cbbd52016-06-08 21:42:19 +080045from cros.factory.utils import time_utils
Joel Kitchingd3bc2662014-12-16 16:03:32 -080046from cros.factory.utils.type_utils import Error
Tammo Spalink86a61c62012-05-25 15:10:35 +080047
Tammo Spalink5c699832012-07-03 17:50:39 +080048
Tammo Spalink5c699832012-07-03 17:50:39 +080049# TODO(tammo): Replace calls to sys.exit with raise Exit, and maybe
50# treat that specially (as a smoot exit, as opposed to the more
51# verbose output for generic Error).
52
Cheng-Yi Chiang9fc121c2014-01-27 11:23:22 +080053_global_gooftool = None
54_gooftool_lock = threading.Lock()
Tammo Spalink5c699832012-07-03 17:50:39 +080055
Hung-Te Lin56b18402015-01-16 14:52:30 +080056
Ricky Lianga70a1202013-03-15 15:03:17 +080057def GetGooftool(options):
Peter Shihfdf17682017-05-26 11:38:39 +080058 global _global_gooftool # pylint: disable=global-statement
Ricky Lianga70a1202013-03-15 15:03:17 +080059
Cheng-Yi Chiang9fc121c2014-01-27 11:23:22 +080060 if _global_gooftool is None:
61 with _gooftool_lock:
Shen-En Shihc5d15d62017-08-04 13:02:59 +080062 if _global_gooftool is None:
63 project = getattr(options, 'project', None)
64 hwdb_path = getattr(options, 'hwdb_path', None)
65 _global_gooftool = Gooftool(hwid_version=3, project=project,
66 hwdb_path=hwdb_path)
Cheng-Yi Chiang9fc121c2014-01-27 11:23:22 +080067
68 return _global_gooftool
Ricky Lianga70a1202013-03-15 15:03:17 +080069
Hung-Te Lin56b18402015-01-16 14:52:30 +080070
Ting Shen18a06382016-08-30 16:18:21 +080071def Command(cmd_name, *args, **kwargs):
You-Cheng Syu8fc2a602017-12-22 17:05:05 +080072 """Decorator for commands in gooftool.
Ting Shen18a06382016-08-30 16:18:21 +080073
74 This is similar to argparse_utils.Command, but all gooftool commands
75 can be waived during `gooftool finalize` or `gooftool verify` using
Wei-Han Chen60c5d332017-01-05 17:15:10 +080076 --waive_list or --skip_list option.
Ting Shen18a06382016-08-30 16:18:21 +080077 """
78 def Decorate(fun):
Wei-Han Chen60c5d332017-01-05 17:15:10 +080079 def CommandWithWaiveSkipCheck(options):
Ting Shen18a06382016-08-30 16:18:21 +080080 waive_list = vars(options).get('waive_list', [])
Wei-Han Chen60c5d332017-01-05 17:15:10 +080081 skip_list = vars(options).get('skip_list', [])
82 if phase.GetPhase() >= phase.PVT_DOGFOOD and (
83 waive_list != [] or skip_list != []):
Ting Shen18a06382016-08-30 16:18:21 +080084 raise Error(
Wei-Han Chen60c5d332017-01-05 17:15:10 +080085 'waive_list and skip_list should be empty for phase %s' %
86 phase.GetPhase())
Ting Shen18a06382016-08-30 16:18:21 +080087
Wei-Han Chen60c5d332017-01-05 17:15:10 +080088 if cmd_name not in skip_list:
89 try:
90 fun(options)
91 except Exception as e:
92 if cmd_name in waive_list:
93 logging.exception(e)
94 else:
95 raise
Ting Shen18a06382016-08-30 16:18:21 +080096
97 return argparse_utils.Command(cmd_name, *args, **kwargs)(
Wei-Han Chen60c5d332017-01-05 17:15:10 +080098 CommandWithWaiveSkipCheck)
Ting Shen18a06382016-08-30 16:18:21 +080099 return Decorate
100
101
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800102@Command('write_hwid',
103 CmdArg('hwid', metavar='HWID', help='HWID string'))
Andy Chengc92e6f92012-11-20 16:55:53 +0800104def WriteHWID(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800105 """Write specified HWID value into the system BB."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800106
Tammo Spalink95c43732012-07-25 15:57:14 -0700107 logging.info('writing hwid string %r', options.hwid)
Ricky Lianga70a1202013-03-15 15:03:17 +0800108 GetGooftool(options).WriteHWID(options.hwid)
Andy Cheng0465d132013-03-20 12:12:06 +0800109 event_log.Log('write_hwid', hwid=options.hwid)
Tammo Spalink95c43732012-07-25 15:57:14 -0700110 print 'Wrote HWID: %r' % options.hwid
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800111
112
Yong Hongc3765412017-12-26 23:12:15 +0800113@Command('read_hwid')
114def ReadHWID(options):
115 """Read the HWID string from GBB."""
116
117 logging.info('reading the hwid string')
118 print GetGooftool(options).ReadHWID()
119
120
Yong Hong5408f652017-07-11 19:20:25 +0800121_project_cmd_arg = CmdArg(
122 '--project', metavar='PROJECT',
123 default=None, help='Project name to test.')
Ricky Liang53390232013-03-08 15:37:57 +0800124
Tammo Spalink8fab5312012-05-28 18:33:30 +0800125_hwdb_path_cmd_arg = CmdArg(
126 '--hwdb_path', metavar='PATH',
Yong Hong5c6dcd52017-12-27 11:05:01 +0800127 default=hwid_utils.GetDefaultDataPath(),
Tammo Spalink8fab5312012-05-28 18:33:30 +0800128 help='Path to the HWID database.')
129
Tammo Spalink95c43732012-07-25 15:57:14 -0700130_hwid_status_list_cmd_arg = CmdArg(
Hung-Te Lin56b18402015-01-16 14:52:30 +0800131 '--status', nargs='*', default=['supported'],
132 help='allow only HWIDs with these status values')
Tammo Spalink95c43732012-07-25 15:57:14 -0700133
Jon Salzce124fb2012-10-02 17:42:03 +0800134_probe_results_cmd_arg = CmdArg(
Yong Hong55050c12018-02-27 18:19:47 +0800135 '--probe_results', metavar='RESULTS.json',
136 help=('Output from "hwid probe" (used instead of probing this system).'))
Jon Salzce124fb2012-10-02 17:42:03 +0800137
Ricky Liang53390232013-03-08 15:37:57 +0800138_device_info_cmd_arg = CmdArg(
Ricky Liangf89f73a2013-03-19 05:00:24 +0800139 '--device_info', metavar='DEVICE_INFO.yaml', default=None,
You-Cheng Syu8fc2a602017-12-22 17:05:05 +0800140 help='A dict of device info to use instead of fetching from shopfloor '
Ricky Liang53390232013-03-08 15:37:57 +0800141 'server.')
142
Jon Salzce124fb2012-10-02 17:42:03 +0800143_hwid_cmd_arg = CmdArg(
144 '--hwid', metavar='HWID',
Ricky Lianga70a1202013-03-15 15:03:17 +0800145 help='HWID to verify (instead of the currently set HWID of this system).')
Jon Salzce124fb2012-10-02 17:42:03 +0800146
Yong Hong68a0e0d2017-12-20 19:06:54 +0800147_hwid_run_vpd_cmd_arg = CmdArg(
148 '--hwid-run-vpd', action='store_true',
149 help=('Specify the hwid utility to obtain the vpd data by running the '
150 '`vpd` commandline tool.'))
151
152_hwid_vpd_data_file_cmd_arg = CmdArg(
153 '--hwid-vpd-data-file', metavar='FILE.json', type=str, default=None,
154 help=('Specify the hwid utility to obtain the vpd data from the specified '
155 'file.'))
156
Bernie Thompson3c11c872013-07-22 18:22:45 -0700157_rma_mode_cmd_arg = CmdArg(
158 '--rma_mode', action='store_true',
159 help='Enable RMA mode, do not check for deprecated components.')
Tammo Spalink95c43732012-07-25 15:57:14 -0700160
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800161_cros_core_cmd_arg = CmdArg(
162 '--cros_core', action='store_true',
163 help='Finalize for ChromeOS Core devices (may add or remove few test '
Hung-Te Lin53c49402017-07-26 13:10:58 +0800164 'items. For example, registration codes or firmware bitmap '
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800165 'locale settings).')
166
Yilun Lin599833f2017-12-22 14:07:46 +0800167_chromebox_cmd_arg = CmdArg(
168 '--chromebox', action='store_true', default=None,
169 help='Finalize for ChromeBox devices (may add or remove few test '
170 'items. For example, VerifyECKey).')
171
bowgotsai13820f42015-09-10 23:18:04 +0800172_enforced_release_channels_cmd_arg = CmdArg(
173 '--enforced_release_channels', nargs='*', default=None,
174 help='Enforced release image channels.')
175
Yilun Lin34f54802017-11-16 11:58:25 +0800176_ec_pubkey_path_cmd_arg = CmdArg(
177 '--ec_pubkey_path',
178 default=None,
179 help='Path to public key in vb2 format. Verify EC key with pubkey file.')
180
181_ec_pubkey_hash_cmd_arg = CmdArg(
182 '--ec_pubkey_hash',
183 default=None,
184 help='A string for public key hash. Verify EC key with the given hash.')
185
Hung-Te Lincdb96522016-04-15 16:51:10 +0800186_release_rootfs_cmd_arg = CmdArg(
187 '--release_rootfs', help='Location of release image rootfs partition.')
188
189_firmware_path_cmd_arg = CmdArg(
190 '--firmware_path', help='Location of firmware image partition.')
Ricky Liang43b879b2014-02-24 11:36:55 +0800191
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800192_shopfloor_url_args_cmd_arg = CmdArg(
193 '--shopfloor_url',
Earl Ou51182222016-09-09 12:16:48 +0800194 help='Shopfloor server url to be informed when wiping is done. '
195 'After wiping, a XML-RPC request will be sent to the '
196 'given url to indicate the completion of wiping.')
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800197
198_station_ip_cmd_arg = CmdArg(
199 '--station_ip',
200 help='IP of remote station')
201
202_station_port_cmd_arg = CmdArg(
203 '--station_port',
204 help='Port on remote station')
205
206_wipe_finish_token_cmd_arg = CmdArg(
207 '--wipe_finish_token',
208 help='Required token when notifying station after wipe finished')
209
Ting Shen18a06382016-08-30 16:18:21 +0800210_waive_list_cmd_arg = CmdArg(
211 '--waive_list', nargs='*', default=[], metavar='SUBCMD',
You-Cheng Syu8fc2a602017-12-22 17:05:05 +0800212 help='A list of waived checks, separated by whitespace. '
213 'Each item should be a sub-command of gooftool. '
Ting Shen18a06382016-08-30 16:18:21 +0800214 'e.g. "gooftool verify --waive_list verify_tpm clear_gbb_flags".')
215
Wei-Han Chen60c5d332017-01-05 17:15:10 +0800216_skip_list_cmd_arg = CmdArg(
217 '--skip_list', nargs='*', default=[], metavar='SUBCMD',
You-Cheng Syu8fc2a602017-12-22 17:05:05 +0800218 help='A list of skipped checks, separated by whitespace. '
219 'Each item should be a sub-command of gooftool. '
Wei-Han Chen60c5d332017-01-05 17:15:10 +0800220 'e.g. "gooftool verify --skip_list verify_tpm clear_gbb_flags".')
221
Wei-Han Cheneb4f9a22018-03-09 14:52:23 +0800222_rlz_embargo_end_date_offset_cmd_arg = CmdArg(
223 '--embargo_offset', type=int, default=7, choices=xrange(7, 15),
224 help='Change the offset of embargo end date, cannot less than 7 days or '
225 'more than 14 days.')
226
Marco Chena681b2e2018-08-31 11:41:41 +0800227_no_ectool_cmd_arg = CmdArg(
228 '--no_ectool', action='store_false', dest='has_ectool',
229 help='There is no ectool utility so tests rely on ectool should be '
230 'skipped.')
Tammo Spalink8fab5312012-05-28 18:33:30 +0800231
Yilun Lin34f54802017-11-16 11:58:25 +0800232@Command(
233 'verify_ec_key',
234 _ec_pubkey_path_cmd_arg,
235 _ec_pubkey_hash_cmd_arg)
236def VerifyECKey(options):
237 """Verify EC key."""
238 return GetGooftool(options).VerifyECKey(
239 options.ec_pubkey_path, options.ec_pubkey_hash)
240
241
Hung-Te Line1d80f62016-03-31 14:58:13 +0800242@Command('verify_keys',
Hung-Te Lincdb96522016-04-15 16:51:10 +0800243 _release_rootfs_cmd_arg,
244 _firmware_path_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800245def VerifyKeys(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800246 """Verify keys in firmware and SSD match."""
Hung-Te Line1d80f62016-03-31 14:58:13 +0800247 return GetGooftool(options).VerifyKeys(
Hung-Te Lincdb96522016-04-15 16:51:10 +0800248 options.release_rootfs, options.firmware_path)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800249
250
251@Command('set_fw_bitmap_locale')
Peter Shihfdf17682017-05-26 11:38:39 +0800252def SetFirmwareBitmapLocale(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800253 """Use VPD locale value to set firmware bitmap default language."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800254
Ricky Lianga70a1202013-03-15 15:03:17 +0800255 (index, locale) = GetGooftool(options).SetFirmwareBitmapLocale()
Andy Cheng2582d292012-12-04 17:38:28 +0800256 logging.info('Firmware bitmap initial locale set to %d (%s).',
257 index, locale)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800258
259
Hung-Te Line1d80f62016-03-31 14:58:13 +0800260@Command('verify_system_time',
Hung-Te Lincdb96522016-04-15 16:51:10 +0800261 _release_rootfs_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800262def VerifySystemTime(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800263 """Verify system time is later than release filesystem creation time."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800264
Hung-Te Lincdb96522016-04-15 16:51:10 +0800265 return GetGooftool(options).VerifySystemTime(options.release_rootfs)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800266
267
Hung-Te Line1d80f62016-03-31 14:58:13 +0800268@Command('verify_rootfs',
Hung-Te Lincdb96522016-04-15 16:51:10 +0800269 _release_rootfs_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800270def VerifyRootFs(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800271 """Verify rootfs on SSD is valid by checking hash."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800272
Hung-Te Line1d80f62016-03-31 14:58:13 +0800273 return GetGooftool(options).VerifyRootFs(options.release_rootfs)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800274
Hung-Te Lin56b18402015-01-16 14:52:30 +0800275
Cheng-Yi Chiang676b5292013-06-18 12:05:33 +0800276@Command('verify_tpm')
Peter Shihfdf17682017-05-26 11:38:39 +0800277def VerifyTPM(options):
Cheng-Yi Chiang676b5292013-06-18 12:05:33 +0800278 """Verify TPM is cleared."""
279
280 return GetGooftool(options).VerifyTPM()
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800281
Hung-Te Lin56b18402015-01-16 14:52:30 +0800282
Hung-Te Lindd708d42014-07-11 17:05:01 +0800283@Command('verify_me_locked')
Peter Shihfdf17682017-05-26 11:38:39 +0800284def VerifyManagementEngineLocked(options):
You-Cheng Syu461ec032017-03-06 15:56:58 +0800285 """Verify Management Engine is locked."""
Hung-Te Lindd708d42014-07-11 17:05:01 +0800286
287 return GetGooftool(options).VerifyManagementEngineLocked()
288
Hung-Te Lin56b18402015-01-16 14:52:30 +0800289
Marco Chena681b2e2018-08-31 11:41:41 +0800290@Command('verify_switch_wp',
291 _no_ectool_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800292def VerifyWPSwitch(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800293 """Verify hardware write protection switch is enabled."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800294
Marco Chena681b2e2018-08-31 11:41:41 +0800295 GetGooftool(options).VerifyWPSwitch(options.has_ectool)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800296
297
298@Command('verify_switch_dev')
Peter Shihfdf17682017-05-26 11:38:39 +0800299def VerifyDevSwitch(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800300 """Verify developer switch is disabled."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800301
Ricky Lianga70a1202013-03-15 15:03:17 +0800302 if GetGooftool(options).CheckDevSwitchForDisabling():
Hung-Te Lind7d34722012-07-26 16:48:35 +0800303 logging.warn('VerifyDevSwitch: No physical switch.')
Andy Cheng0465d132013-03-20 12:12:06 +0800304 event_log.Log('switch_dev', type='virtual switch')
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800305
306
Hung-Te Lin53c49402017-07-26 13:10:58 +0800307@Command('verify_vpd')
308def VerifyVPD(options):
309 """Verify that VPD values are properly set.
Jon Salzadd90d32014-04-29 16:16:27 +0800310
Hung-Te Lin53c49402017-07-26 13:10:58 +0800311 Check if mandatory fields are set, and deprecated fields don't exist.
Jon Salzadd90d32014-04-29 16:16:27 +0800312 """
Hung-Te Lin53c49402017-07-26 13:10:58 +0800313 return GetGooftool(options).VerifyVPD()
Jon Salzadd90d32014-04-29 16:16:27 +0800314
315
bowgotsai13820f42015-09-10 23:18:04 +0800316@Command('verify_release_channel',
317 _enforced_release_channels_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800318def VerifyReleaseChannel(options):
bowgotsai529139c2015-05-30 01:39:49 +0800319 """Verify that release image channel is correct.
320
321 ChromeOS has four channels: canary, dev, beta and stable.
322 The last three channels support image auto-updates, checks
323 that release image channel is one of them.
324 """
bowgotsai13820f42015-09-10 23:18:04 +0800325 return GetGooftool(options).VerifyReleaseChannel(
326 options.enforced_release_channels)
bowgotsai529139c2015-05-30 01:39:49 +0800327
328
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800329@Command('write_protect')
Peter Shihfdf17682017-05-26 11:38:39 +0800330def EnableFwWp(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800331 """Enable then verify firmware write protection."""
Peter Shihfdf17682017-05-26 11:38:39 +0800332 del options # Unused.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800333
Yong Hongdad230a2017-08-30 22:25:19 +0800334 def WriteProtect(fw):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800335 """Calculate protection size, then invoke flashrom.
336
Yong Hongdad230a2017-08-30 22:25:19 +0800337 The region (offset and size) to write protect may be different per chipset
338 and firmware layout, so we have to read the WP_RO section from FMAP to
339 decide that.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800340 """
Hung-Te Lin7ea39e82012-07-31 18:39:33 +0800341 wp_section = 'WP_RO'
Hung-Te Lin7ea39e82012-07-31 18:39:33 +0800342
Yong Hongdad230a2017-08-30 22:25:19 +0800343 fmap_image = fw.GetFirmwareImage(
344 sections=(['FMAP'] if fw.target == crosfw.TARGET_MAIN else None))
345 if not fmap_image.has_section(wp_section):
346 raise Error('Could not find %s firmware section: %s' %
347 (fw.target.upper(), wp_section))
348
349 section_data = fw.GetFirmwareImage(
350 sections=[wp_section]).get_section_area(wp_section)
Peter Shihe6afab32018-09-11 17:16:48 +0800351 ro_offset, ro_size = section_data[0:2]
Yong Hongdad230a2017-08-30 22:25:19 +0800352
353 logging.debug('write protecting %s [off=%x size=%x]', fw.target.upper(),
Hung-Te Lin7ea39e82012-07-31 18:39:33 +0800354 ro_offset, ro_size)
Yong Hongdad230a2017-08-30 22:25:19 +0800355 crosfw.Flashrom(fw.target).EnableWriteProtection(ro_offset, ro_size)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800356
Yong Hongdad230a2017-08-30 22:25:19 +0800357 WriteProtect(crosfw.LoadMainFirmware())
Andy Cheng0465d132013-03-20 12:12:06 +0800358 event_log.Log('wp', fw='main')
Hung-Te Lind3b124c2016-10-20 22:22:31 +0800359
360 # Some EC (mostly PD) does not support "RO NOW". Instead they will only set
361 # "RO_AT_BOOT" when you request to enable RO (These platforms consider
362 # --wp-range with right range identical to --wp-enable), and requires a
363 # 'ectool reboot_ec RO at-shutdown; reboot' to let the RO take effect.
Hung-Te Lin0d10b562016-12-28 10:58:07 +0800364 # After reboot, "flashrom -p host --wp-status" will return protected range.
Hung-Te Lind3b124c2016-10-20 22:22:31 +0800365 # If you don't reboot, returned range will be (0, 0), and running command
366 # "ectool flashprotect" will not have RO_NOW.
367
Yong Hongdad230a2017-08-30 22:25:19 +0800368 for fw in [crosfw.LoadEcFirmware(), crosfw.LoadPDFirmware()]:
369 if fw.GetChipId() is None:
Hung-Te Lind3b124c2016-10-20 22:22:31 +0800370 logging.warning('%s not write protected (seems there is no %s flash).',
Yong Hongdad230a2017-08-30 22:25:19 +0800371 fw.target.upper(), fw.target.upper())
Hung-Te Lind3b124c2016-10-20 22:22:31 +0800372 continue
Yong Hongdad230a2017-08-30 22:25:19 +0800373 WriteProtect(fw)
374 event_log.Log('wp', fw=fw.target)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800375
376
377@Command('clear_gbb_flags')
Peter Shihfdf17682017-05-26 11:38:39 +0800378def ClearGBBFlags(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800379 """Zero out the GBB flags, in preparation for transition to release state.
380
381 No GBB flags are set in release/shipping state, but they are useful
Hung-Te Lin879cff42017-06-19 12:46:37 +0800382 for factory/development. See "futility gbb --flags" for details.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800383 """
Andy Cheng7a76cb82012-11-19 18:08:19 +0800384
Ricky Lianga70a1202013-03-15 15:03:17 +0800385 GetGooftool(options).ClearGBBFlags()
Andy Cheng0465d132013-03-20 12:12:06 +0800386 event_log.Log('clear_gbb_flags')
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800387
388
Jon Salzaa3a30e2013-05-15 15:56:28 +0800389@Command('clear_factory_vpd_entries')
Peter Shihfdf17682017-05-26 11:38:39 +0800390def ClearFactoryVPDEntries(options):
Jon Salzaa3a30e2013-05-15 15:56:28 +0800391 """Clears factory.* items in the RW VPD."""
392 entries = GetGooftool(options).ClearFactoryVPDEntries()
393 event_log.Log('clear_factory_vpd_entries', entries=FilterDict(entries))
394
395
Mattias Nisslercca761b2015-04-15 21:53:04 +0200396@Command('generate_stable_device_secret')
Peter Shihfdf17682017-05-26 11:38:39 +0800397def GenerateStableDeviceSecret(options):
You-Cheng Syu461ec032017-03-06 15:56:58 +0800398 """Generates a fresh stable device secret and stores it in the RO VPD."""
Mattias Nisslercca761b2015-04-15 21:53:04 +0200399 GetGooftool(options).GenerateStableDeviceSecret()
400 event_log.Log('generate_stable_device_secret')
401
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800402
Shen-En Shihd078a7c2017-08-04 13:33:49 +0800403@Command('cr50_set_board_id')
404def Cr50SetBoardId(options):
405 """Set the board id and flag in the Cr50 chip."""
406 GetGooftool(options).Cr50SetBoardId()
407 event_log.Log('cr50_set_board_id')
408
409
Marco Chen7a97e162018-05-03 19:04:03 +0800410@Command('cr50_disable_rma_mode')
Marco Chen44a666d2018-07-13 21:01:50 +0800411def Cr50DisableFactoryMode(options):
Cheng-Han Yang08333af2017-12-18 17:22:38 +0800412 """Reset Cr50 state back to default state after RMA."""
Marco Chen44a666d2018-07-13 21:01:50 +0800413 return GetGooftool(options).Cr50DisableFactoryMode()
Cheng-Han Yang08333af2017-12-18 17:22:38 +0800414
415
Earl Ou564a7872016-10-05 10:22:00 +0800416@Command('enable_release_partition',
417 CmdArg('--release_rootfs',
418 help=('path to the release rootfs device. If not specified, '
419 'the default (5th) partition will be used.')))
420def EnableReleasePartition(options):
421 """Enables a release image partition on the disk."""
422 GetGooftool(options).EnableReleasePartition(options.release_rootfs)
423
424
Shun-Hsing Oucdc64e12015-01-14 22:07:33 +0800425@Command('wipe_in_place',
426 CmdArg('--fast', action='store_true',
Shun-Hsing Ou8d3c40a2015-10-08 18:16:08 +0800427 help='use non-secure but faster wipe method.'),
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800428 _shopfloor_url_args_cmd_arg,
429 _station_ip_cmd_arg,
430 _station_port_cmd_arg,
431 _wipe_finish_token_cmd_arg)
Shun-Hsing Oucdc64e12015-01-14 22:07:33 +0800432def WipeInPlace(options):
433 """Start factory wipe directly without reboot."""
434
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800435 GetGooftool(options).WipeInPlace(options.fast,
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800436 options.shopfloor_url,
437 options.station_ip,
438 options.station_port,
439 options.wipe_finish_token)
Mattias Nisslercca761b2015-04-15 21:53:04 +0200440
Wei-Han Chen7dc6d132016-04-06 11:11:53 +0800441@Command('wipe_init',
Wei-Han Chen0a3320e2016-04-23 01:32:07 +0800442 CmdArg('--wipe_args', help='arguments for clobber-state'),
443 CmdArg('--state_dev', help='path to stateful partition device'),
444 CmdArg('--root_disk', help='path to primary device'),
445 CmdArg('--old_root', help='path to old root'),
Wei-Han Chen0a3320e2016-04-23 01:32:07 +0800446 _shopfloor_url_args_cmd_arg,
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800447 _release_rootfs_cmd_arg,
448 _station_ip_cmd_arg,
449 _station_port_cmd_arg,
450 _wipe_finish_token_cmd_arg)
Wei-Han Chen7dc6d132016-04-06 11:11:53 +0800451def WipeInit(options):
Wei-Han Chen0a3320e2016-04-23 01:32:07 +0800452 GetGooftool(options).WipeInit(options.wipe_args,
Wei-Han Chen0a3320e2016-04-23 01:32:07 +0800453 options.shopfloor_url,
454 options.state_dev,
455 options.release_rootfs,
456 options.root_disk,
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800457 options.old_root,
458 options.station_ip,
459 options.station_port,
460 options.wipe_finish_token)
Wei-Han Chen7dc6d132016-04-06 11:11:53 +0800461
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800462@Command('verify',
Hung-Te Lin6d827542012-07-19 11:50:41 +0800463 CmdArg('--no_write_protect', action='store_true',
464 help='Do not check write protection switch state.'),
Tammo Spalink95c43732012-07-25 15:57:14 -0700465 _hwid_status_list_cmd_arg,
Jon Salzce124fb2012-10-02 17:42:03 +0800466 _hwdb_path_cmd_arg,
Yong Hong5408f652017-07-11 19:20:25 +0800467 _project_cmd_arg,
Jon Salzce124fb2012-10-02 17:42:03 +0800468 _probe_results_cmd_arg,
Cheng-Yi Chiang406ad912013-11-14 16:51:33 +0800469 _hwid_cmd_arg,
Yong Hong68a0e0d2017-12-20 19:06:54 +0800470 _hwid_run_vpd_cmd_arg,
471 _hwid_vpd_data_file_cmd_arg,
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800472 _rma_mode_cmd_arg,
bowgotsai13820f42015-09-10 23:18:04 +0800473 _cros_core_cmd_arg,
Yilun Lin599833f2017-12-22 14:07:46 +0800474 _chromebox_cmd_arg,
Yilun Lin34f54802017-11-16 11:58:25 +0800475 _ec_pubkey_path_cmd_arg,
476 _ec_pubkey_hash_cmd_arg,
Hung-Te Lincdb96522016-04-15 16:51:10 +0800477 _release_rootfs_cmd_arg,
478 _firmware_path_cmd_arg,
Ting Shen18a06382016-08-30 16:18:21 +0800479 _enforced_release_channels_cmd_arg,
Wei-Han Chen60c5d332017-01-05 17:15:10 +0800480 _waive_list_cmd_arg,
Marco Chena681b2e2018-08-31 11:41:41 +0800481 _skip_list_cmd_arg,
482 _no_ectool_cmd_arg)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800483def Verify(options):
484 """Verifies if whole factory process is ready for finalization.
485
486 This routine performs all the necessary checks to make sure the
487 device is ready to be finalized, but does not modify state. These
488 checks include dev switch, firmware write protection switch, hwid,
489 system time, keys, and root file system.
490 """
Andy Cheng7a76cb82012-11-19 18:08:19 +0800491
Hung-Te Lin6d827542012-07-19 11:50:41 +0800492 if not options.no_write_protect:
Ricky Lianga70a1202013-03-15 15:03:17 +0800493 VerifyWPSwitch(options)
Hung-Te Lindd708d42014-07-11 17:05:01 +0800494 VerifyManagementEngineLocked(options)
Ricky Lianga70a1202013-03-15 15:03:17 +0800495 VerifyDevSwitch(options)
Ting Shen129fa6f2016-09-02 12:22:24 +0800496 VerifyHWID(options)
Ricky Lianga70a1202013-03-15 15:03:17 +0800497 VerifySystemTime(options)
Yilun Lin599833f2017-12-22 14:07:46 +0800498 if options.chromebox:
499 VerifyECKey(options)
Ricky Lianga70a1202013-03-15 15:03:17 +0800500 VerifyKeys(options)
501 VerifyRootFs(options)
Cheng-Yi Chiang676b5292013-06-18 12:05:33 +0800502 VerifyTPM(options)
Hung-Te Lin53c49402017-07-26 13:10:58 +0800503 VerifyVPD(options)
bowgotsai529139c2015-05-30 01:39:49 +0800504 VerifyReleaseChannel(options)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800505
Hung-Te Lin56b18402015-01-16 14:52:30 +0800506
Jon Salzfe9036f2014-01-16 14:11:23 +0800507@Command('untar_stateful_files')
Hung-Te Lin388bce22014-06-03 19:56:40 +0800508def UntarStatefulFiles(unused_options):
Jon Salzfe9036f2014-01-16 14:11:23 +0800509 """Untars stateful files from stateful_files.tar.xz on stateful partition.
510
511 If that file does not exist (which should only be R30 and earlier),
512 this is a no-op.
513 """
Hung-Te Lin2333f3f2016-08-24 17:56:48 +0800514 # Path to stateful partition on device.
515 device_stateful_path = '/mnt/stateful_partition'
516 tar_file = os.path.join(device_stateful_path, 'stateful_files.tar.xz')
Jon Salzfe9036f2014-01-16 14:11:23 +0800517 if os.path.exists(tar_file):
Hung-Te Lin2333f3f2016-08-24 17:56:48 +0800518 Spawn(['tar', 'xf', tar_file], cwd=device_stateful_path,
Jon Salzfe9036f2014-01-16 14:11:23 +0800519 log=True, check_call=True)
520 else:
521 logging.warning('No stateful files at %s', tar_file)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800522
Jon Salz40b9f822014-07-25 16:39:55 +0800523
524@Command('log_source_hashes')
Peter Shihfdf17682017-05-26 11:38:39 +0800525def LogSourceHashes(options):
Jon Salz40b9f822014-07-25 16:39:55 +0800526 """Logs hashes of source files in the factory toolkit."""
Peter Shihfdf17682017-05-26 11:38:39 +0800527 del options # Unused.
Jon Salze60307f2014-08-05 16:20:00 +0800528 # WARNING: The following line is necessary to validate the integrity
529 # of the factory software. Do not remove or modify it.
530 #
531 # 警告:此行会验证工厂软件的完整性,禁止删除或修改。
Wei-Han Chena5c01a02016-04-23 19:27:19 +0800532 factory_par = sys_utils.GetRunningFactoryPythonArchivePath()
533 if factory_par:
534 event_log.Log(
535 'source_hashes',
536 **file_utils.HashPythonArchive(factory_par))
537 else:
538 event_log.Log(
539 'source_hashes',
Peter Shihad166772017-05-31 11:36:17 +0800540 **file_utils.HashSourceTree(os.path.join(paths.FACTORY_DIR, 'py')))
Jon Salz40b9f822014-07-25 16:39:55 +0800541
542
Tammo Spalink86a61c62012-05-25 15:10:35 +0800543@Command('log_system_details')
Peter Shihfdf17682017-05-26 11:38:39 +0800544def LogSystemDetails(options):
Tammo Spalink86a61c62012-05-25 15:10:35 +0800545 """Write miscellaneous system details to the event log."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800546
Ricky Liang43b879b2014-02-24 11:36:55 +0800547 event_log.Log('system_details', **GetGooftool(options).GetSystemDetails())
Tammo Spalink86a61c62012-05-25 15:10:35 +0800548
549
Jon Salza88b83b2013-05-27 20:00:35 +0800550def CreateReportArchiveBlob(*args, **kwargs):
551 """Creates a report archive and returns it as a blob.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800552
Jon Salza88b83b2013-05-27 20:00:35 +0800553 Args:
554 See CreateReportArchive.
Andy Cheng7a76cb82012-11-19 18:08:19 +0800555
Jon Salza88b83b2013-05-27 20:00:35 +0800556 Returns:
557 An xmlrpclib.Binary object containing a .tar.xz file.
558 """
Wei-Han Chen47416612016-09-14 17:41:52 +0800559 report_archive = CreateReportArchive(*args, **kwargs)
560 try:
You-Cheng Syuf0f4be12017-12-05 16:33:53 +0800561 return xmlrpclib.Binary(file_utils.ReadFile(report_archive))
Wei-Han Chen47416612016-09-14 17:41:52 +0800562 finally:
563 os.unlink(report_archive)
Jon Salza88b83b2013-05-27 20:00:35 +0800564
565
566def CreateReportArchive(device_sn=None, add_file=None):
567 """Creates a report archive in a temporary directory.
568
569 Args:
570 device_sn: The device serial number (optional).
571 add_file: A list of files to add (optional).
572
573 Returns:
574 Path to the archive.
575 """
Hung-Te Lin6bd16472012-06-20 16:26:47 +0800576 def NormalizeAsFileName(token):
577 return re.sub(r'\W+', '', token).strip()
Jon Salza88b83b2013-05-27 20:00:35 +0800578
579 target_name = '%s%s.tar.xz' % (
580 time.strftime('%Y%m%dT%H%M%SZ',
581 time.gmtime()),
Hung-Te Lin56b18402015-01-16 14:52:30 +0800582 ('' if device_sn is None else
583 '_' + NormalizeAsFileName(device_sn)))
Tammo Spalink86a61c62012-05-25 15:10:35 +0800584 target_path = os.path.join(gettempdir(), target_name)
Jon Salza88b83b2013-05-27 20:00:35 +0800585
Tammo Spalink86a61c62012-05-25 15:10:35 +0800586 # Intentionally ignoring dotfiles in EVENT_LOG_DIR.
Andy Cheng0465d132013-03-20 12:12:06 +0800587 tar_cmd = 'cd %s ; tar cJf %s *' % (event_log.EVENT_LOG_DIR, target_path)
Peter Shihb4e49352017-05-25 17:35:11 +0800588 tar_cmd += ' %s' % paths.FACTORY_LOG_PATH
Jon Salza88b83b2013-05-27 20:00:35 +0800589 if add_file:
590 for f in add_file:
Jon Salz65266432012-07-30 19:02:49 +0800591 # Require absolute paths since the tar command may change the
592 # directory.
593 if not f.startswith('/'):
594 raise Error('Not an absolute path: %s' % f)
595 if not os.path.exists(f):
596 raise Error('File does not exist: %s' % f)
Wei-Han Chen4b755022017-01-04 10:51:52 +0800597 tar_cmd += ' %s' % pipes.quote(f)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800598 cmd_result = Shell(tar_cmd)
Jon Salzff88c022012-11-03 12:19:58 +0800599
600 if ((cmd_result.status == 1) and
601 all((x == '' or
602 'file changed as we read it' in x or
603 "Removing leading `/' from member names" in x)
604 for x in cmd_result.stderr.split('\n'))):
605 # That's OK. Make sure it's valid though.
Vic Yang85199e72013-01-28 14:33:11 +0800606 Spawn(['tar', 'tfJ', target_path], check_call=True, log=True,
Jon Salzff88c022012-11-03 12:19:58 +0800607 ignore_stdout=True)
608 elif not cmd_result.success:
Tammo Spalink86a61c62012-05-25 15:10:35 +0800609 raise Error('unable to tar event logs, cmd %r failed, stderr: %r' %
610 (tar_cmd, cmd_result.stderr))
Jon Salzff88c022012-11-03 12:19:58 +0800611
Jon Salza88b83b2013-05-27 20:00:35 +0800612 return target_path
613
614_upload_method_cmd_arg = CmdArg(
615 '--upload_method', metavar='METHOD:PARAM',
616 help=('How to perform the upload. METHOD should be one of '
617 '{ftp, shopfloor, ftps, cpfe}.'))
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800618_upload_retry_interval_arg = CmdArg(
619 '--upload_retry_interval', type=int, default=None,
620 help='Retry interval in seconds. 0 to prevent retry.')
Jon Salza88b83b2013-05-27 20:00:35 +0800621_add_file_cmd_arg = CmdArg(
622 '--add_file', metavar='FILE', action='append',
623 help='Extra file to include in report (must be an absolute path)')
624
Hung-Te Lin56b18402015-01-16 14:52:30 +0800625
Jon Salza88b83b2013-05-27 20:00:35 +0800626@Command('upload_report',
627 _upload_method_cmd_arg,
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800628 _upload_retry_interval_arg,
Jon Salza88b83b2013-05-27 20:00:35 +0800629 _add_file_cmd_arg)
630def UploadReport(options):
631 """Create a report containing key device details."""
Yong Hong863d3262017-10-30 16:23:34 +0800632 ro_vpd = sys_utils.VPDTool().GetAllData(
633 partition=sys_utils.VPDTool.RO_PARTITION)
Jon Salza88b83b2013-05-27 20:00:35 +0800634 device_sn = ro_vpd.get('serial_number', None)
635 if device_sn is None:
636 logging.warning('RO_VPD missing device serial number')
Chun-Ta Lin53cbbd52016-06-08 21:42:19 +0800637 device_sn = 'MISSING_SN_' + time_utils.TimedUUID()
Jon Salza88b83b2013-05-27 20:00:35 +0800638 target_path = CreateReportArchive(device_sn)
639
Tammo Spalink86a61c62012-05-25 15:10:35 +0800640 if options.upload_method is None or options.upload_method == 'none':
641 logging.warning('REPORT UPLOAD SKIPPED (report left at %s)', target_path)
642 return
643 method, param = options.upload_method.split(':', 1)
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800644
645 if options.upload_retry_interval is not None:
646 retry_interval = options.upload_retry_interval
647 else:
648 retry_interval = report_upload.DEFAULT_RETRY_INTERVAL
649
Tammo Spalink86a61c62012-05-25 15:10:35 +0800650 if method == 'shopfloor':
You-Cheng Syuf0f4be12017-12-05 16:33:53 +0800651 report_upload.ShopFloorUpload(
652 target_path, param,
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800653 'GRT' if options.command_name == 'finalize' else None,
654 retry_interval=retry_interval)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800655 elif method == 'ftp':
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800656 report_upload.FtpUpload(target_path, 'ftp:' + param,
657 retry_interval=retry_interval)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800658 elif method == 'ftps':
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800659 report_upload.CurlUrlUpload(target_path, '--ftp-ssl-reqd ftp:%s' % param,
660 retry_interval=retry_interval)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800661 elif method == 'cpfe':
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800662 report_upload.CpfeUpload(target_path, pipes.quote(param),
663 retry_interval=retry_interval)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800664 else:
Peter Shihbf6f22b2018-02-26 14:05:28 +0800665 raise Error('unknown report upload method %r' % method)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800666
667
668@Command('finalize',
Hung-Te Lin6d827542012-07-19 11:50:41 +0800669 CmdArg('--no_write_protect', action='store_true',
670 help='Do not enable firmware write protection.'),
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800671 CmdArg('--fast', action='store_true',
672 help='use non-secure but faster wipe method.'),
Shun-Hsing Oudb407d62015-11-11 11:03:59 +0800673 _shopfloor_url_args_cmd_arg,
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800674 _hwdb_path_cmd_arg,
Tammo Spalink95c43732012-07-25 15:57:14 -0700675 _hwid_status_list_cmd_arg,
Jon Salz65266432012-07-30 19:02:49 +0800676 _upload_method_cmd_arg,
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800677 _upload_retry_interval_arg,
Jon Salzce124fb2012-10-02 17:42:03 +0800678 _add_file_cmd_arg,
679 _probe_results_cmd_arg,
Cheng-Yi Chiang406ad912013-11-14 16:51:33 +0800680 _hwid_cmd_arg,
Yong Hong68a0e0d2017-12-20 19:06:54 +0800681 _hwid_run_vpd_cmd_arg,
682 _hwid_vpd_data_file_cmd_arg,
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800683 _rma_mode_cmd_arg,
bowgotsai13820f42015-09-10 23:18:04 +0800684 _cros_core_cmd_arg,
Yilun Lin599833f2017-12-22 14:07:46 +0800685 _chromebox_cmd_arg,
Yilun Lin34f54802017-11-16 11:58:25 +0800686 _ec_pubkey_path_cmd_arg,
687 _ec_pubkey_hash_cmd_arg,
Hung-Te Lincdb96522016-04-15 16:51:10 +0800688 _release_rootfs_cmd_arg,
689 _firmware_path_cmd_arg,
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800690 _enforced_release_channels_cmd_arg,
691 _station_ip_cmd_arg,
692 _station_port_cmd_arg,
Ting Shen18a06382016-08-30 16:18:21 +0800693 _wipe_finish_token_cmd_arg,
Wei-Han Cheneb4f9a22018-03-09 14:52:23 +0800694 _rlz_embargo_end_date_offset_cmd_arg,
Wei-Han Chen60c5d332017-01-05 17:15:10 +0800695 _waive_list_cmd_arg,
696 _skip_list_cmd_arg)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800697def Finalize(options):
698 """Verify system readiness and trigger transition into release state.
699
Jon Salzaa3a30e2013-05-15 15:56:28 +0800700 This routine does the following:
701 - Verifies system state (see verify command)
Jon Salzfe9036f2014-01-16 14:11:23 +0800702 - Untars stateful_files.tar.xz, if it exists, in the stateful partition, to
703 initialize files such as the CRX cache
Jon Salzaa3a30e2013-05-15 15:56:28 +0800704 - Modifies firmware bitmaps to match locale
705 - Clears all factory-friendly flags from the GBB
706 - Removes factory-specific entries from RW_VPD (factory.*)
707 - Enables firmware write protection (cannot rollback after this)
708 - Uploads system logs & reports
Earl Ou51182222016-09-09 12:16:48 +0800709 - Wipes the testing kernel, rootfs, and stateful partition
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800710 """
Wei-Han Cheneb4f9a22018-03-09 14:52:23 +0800711 if not options.rma_mode:
712 # Write VPD values related to RLZ ping into VPD.
713 GetGooftool(options).WriteVPDForRLZPing(options.embargo_offset)
Shen-En Shih3e079b22017-09-11 05:43:09 -0700714 Cr50SetBoardId(options)
Marco Chen44a666d2018-07-13 21:01:50 +0800715 Cr50DisableFactoryMode(options)
Marco Chen9d0631c2018-08-31 10:52:44 +0800716 Verify(options)
Jon Salz40b9f822014-07-25 16:39:55 +0800717 LogSourceHashes(options)
Jon Salzfe9036f2014-01-16 14:11:23 +0800718 UntarStatefulFiles(options)
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800719 if options.cros_core:
720 logging.info('SetFirmwareBitmapLocale is skipped for ChromeOS Core device.')
721 else:
722 SetFirmwareBitmapLocale(options)
Jon Salzaa3a30e2013-05-15 15:56:28 +0800723 ClearFactoryVPDEntries(options)
Mattias Nisslercca761b2015-04-15 21:53:04 +0200724 GenerateStableDeviceSecret(options)
Shen-En Shih3e079b22017-09-11 05:43:09 -0700725 ClearGBBFlags(options)
Hung-Te Lin6d827542012-07-19 11:50:41 +0800726 if options.no_write_protect:
727 logging.warn('WARNING: Firmware Write Protection is SKIPPED.')
Andy Cheng0465d132013-03-20 12:12:06 +0800728 event_log.Log('wp', fw='both', status='skipped')
Hung-Te Lin6d827542012-07-19 11:50:41 +0800729 else:
Wei-Han Chenba21f512016-10-14 18:52:33 +0800730 EnableFwWp(options)
Jon Salza0f58e02012-05-29 19:33:39 +0800731 LogSystemDetails(options)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800732 UploadReport(options)
Earl Ou51182222016-09-09 12:16:48 +0800733
734 event_log.Log('wipe_in_place')
735 wipe_args = []
Earl Ou51182222016-09-09 12:16:48 +0800736 if options.shopfloor_url:
737 wipe_args += ['--shopfloor_url', options.shopfloor_url]
738 if options.fast:
739 wipe_args += ['--fast']
740 if options.station_ip:
741 wipe_args += ['--station_ip', options.station_ip]
742 if options.station_port:
743 wipe_args += ['--station_port', options.station_port]
744 if options.wipe_finish_token:
745 wipe_args += ['--wipe_finish_token', options.wipe_finish_token]
746 ExecFactoryPar('gooftool', 'wipe_in_place', *wipe_args)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800747
748
Ting Shen129fa6f2016-09-02 12:22:24 +0800749@Command('verify_hwid',
750 _probe_results_cmd_arg,
751 _hwdb_path_cmd_arg,
752 _hwid_cmd_arg,
Yong Hong68a0e0d2017-12-20 19:06:54 +0800753 _hwid_run_vpd_cmd_arg,
754 _hwid_vpd_data_file_cmd_arg,
Ting Shen129fa6f2016-09-02 12:22:24 +0800755 _rma_mode_cmd_arg)
756def VerifyHWID(options):
Ricky Liangc662be32013-12-24 11:50:23 +0800757 """A simple wrapper that calls out to HWID utils to verify version 3 HWID.
Ricky Liang53390232013-03-08 15:37:57 +0800758
Ricky Liangc662be32013-12-24 11:50:23 +0800759 This is mainly for Gooftool to verify v3 HWID during finalize. For testing
760 and development purposes, please use `hwid` command.
Ricky Liang53390232013-03-08 15:37:57 +0800761 """
Yong Hongada8e0e2018-01-04 16:36:21 +0800762 database = GetGooftool(options).db
Yong Hong68a0e0d2017-12-20 19:06:54 +0800763
Yong Hongada8e0e2018-01-04 16:36:21 +0800764 encoded_string = options.hwid or GetGooftool(options).ReadHWID()
765
766 probed_results = hwid_utils.GetProbedResults(infile=options.probe_results)
Yong Hong2c39bf22018-01-24 22:24:11 +0800767 device_info = hwid_utils.GetDeviceInfo()
Yong Hongada8e0e2018-01-04 16:36:21 +0800768 vpd = hwid_utils.GetVPDData(run_vpd=options.hwid_run_vpd,
769 infile=options.hwid_vpd_data_file)
Ricky Liang53390232013-03-08 15:37:57 +0800770
Hung-Te Lin11052952015-03-18 13:48:59 +0800771 event_log.Log('probed_results', probed_results=FilterDict(probed_results))
chuntsen9c472f72018-09-03 15:48:04 +0800772 event_log.Log('vpd', vpd=FilterDict(vpd))
Ricky Liang53390232013-03-08 15:37:57 +0800773
Yong Hong2c39bf22018-01-24 22:24:11 +0800774 hwid_utils.VerifyHWID(database, encoded_string, probed_results,
775 device_info, vpd, options.rma_mode)
Ricky Liang53390232013-03-08 15:37:57 +0800776
Ricky Liangc662be32013-12-24 11:50:23 +0800777 event_log.Log('verified_hwid', hwid=encoded_string)
Ricky Liang53390232013-03-08 15:37:57 +0800778
779
henryhsu44d793a2013-07-20 00:07:38 +0800780@Command('get_firmware_hash',
Marco Chence70b132018-05-03 23:43:39 +0800781 CmdArg('--file', required=True, metavar='FILE', help='Firmware File.'))
henryhsu44d793a2013-07-20 00:07:38 +0800782def GetFirmwareHash(options):
henryhsuf6f835c2013-07-20 20:49:25 +0800783 """Get firmware hash from a file"""
henryhsu44d793a2013-07-20 00:07:38 +0800784 if os.path.exists(options.file):
Cheng-Han Yang2c668ae2018-04-18 22:31:07 +0800785 value_dict = chromeos_firmware.CalculateFirmwareHashes(options.file)
786 for key, value in value_dict.iteritems():
787 print ' %s: %s' % (key, value)
henryhsu44d793a2013-07-20 00:07:38 +0800788 else:
789 raise Error('File does not exist: %s' % options.file)
790
henryhsuf6f835c2013-07-20 20:49:25 +0800791
Peter Shihfdf17682017-05-26 11:38:39 +0800792def main():
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800793 """Run sub-command specified by the command line args."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800794
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800795 options = ParseCmdline(
Ting Shen129fa6f2016-09-02 12:22:24 +0800796 'Perform Google required factory tests.',
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800797 CmdArg('-l', '--log', metavar='PATH',
798 help='Write logs to this file.'),
Jon Salza4bea382012-10-29 13:00:34 +0800799 CmdArg('--suppress-event-logs', action='store_true',
800 help='Suppress event logging.'),
Wei-Han Chenaff56232016-04-16 09:17:59 +0800801 CmdArg('--phase', default=None,
802 help=('override phase for phase checking (defaults to the current '
803 'as returned by the "factory phase" command)')),
Tammo Spalink8fab5312012-05-28 18:33:30 +0800804 verbosity_cmd_arg)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800805 SetupLogging(options.verbosity, options.log)
Andy Cheng0465d132013-03-20 12:12:06 +0800806 event_log.SetGlobalLoggerDefaultPrefix('gooftool')
807 event_log.GetGlobalLogger().suppress = options.suppress_event_logs
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800808 logging.debug('gooftool options: %s', repr(options))
Wei-Han Chenaff56232016-04-16 09:17:59 +0800809
810 phase.OverridePhase(options.phase)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800811 try:
812 logging.debug('GOOFTOOL command %r', options.command_name)
813 options.command(options)
814 logging.info('GOOFTOOL command %r SUCCESS', options.command_name)
Peter Shih6674ecf2018-03-29 14:04:57 +0800815 except Error as e:
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800816 logging.exception(e)
817 sys.exit('GOOFTOOL command %r ERROR: %s' % (options.command_name, e))
Peter Shih6674ecf2018-03-29 14:04:57 +0800818 except Exception as e:
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800819 logging.exception(e)
820 sys.exit('UNCAUGHT RUNTIME EXCEPTION %s' % e)
821
822
823if __name__ == '__main__':
Peter Shihfdf17682017-05-26 11:38:39 +0800824 main()