blob: 4bb78615249cc6d28d8f7dd73494f6d18b859c70 [file] [log] [blame]
Mike Frysinger63bb3c72019-09-01 15:16:26 -04001#!/usr/bin/env python2
Jon Salze60307f2014-08-05 16:20:00 +08002# -*- coding: utf-8 -*-
3# Copyright 2014 The Chromium OS Authors. All rights reserved.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +08004# Use of this source code is governed by a BSD-style license that can be
5# found in the LICENSE file.
6
Jon Salze60307f2014-08-05 16:20:00 +08007
Tammo Spalink9a96b8a2012-04-03 11:10:41 +08008"""Google Factory Tool.
9
You-Cheng Syu461ec032017-03-06 15:56:58 +080010This tool is intended to be used on factory assembly lines. It
Tammo Spalink9a96b8a2012-04-03 11:10:41 +080011provides all of the Google required test functionality and must be run
12on each device as part of the assembly process.
13"""
14
Tammo Spalink9a96b8a2012-04-03 11:10:41 +080015import logging
16import os
Jon Salz65266432012-07-30 19:02:49 +080017import pipes
Tammo Spalink9a96b8a2012-04-03 11:10:41 +080018import re
19import sys
Peter Shihfdf17682017-05-26 11:38:39 +080020from tempfile import gettempdir
Cheng-Yi Chiang9fc121c2014-01-27 11:23:22 +080021import threading
Hung-Te Lin6bd16472012-06-20 16:26:47 +080022import time
Jon Salza88b83b2013-05-27 20:00:35 +080023import xmlrpclib
Peter Shihfdf17682017-05-26 11:38:39 +080024
Peter Shihfdf17682017-05-26 11:38:39 +080025import factory_common # pylint: disable=unused-import
Wei-Han Chen0a3320e2016-04-23 01:32:07 +080026from cros.factory.gooftool.common import ExecFactoryPar
Hung-Te Lin0e0f9362015-11-18 18:18:05 +080027from cros.factory.gooftool.common import Shell
Peter Shihfdf17682017-05-26 11:38:39 +080028from cros.factory.gooftool.core import Gooftool
29from cros.factory.gooftool import crosfw
Peter Shihfdf17682017-05-26 11:38:39 +080030from cros.factory.gooftool import report_upload
Yong Hong65bda312018-12-13 20:05:58 +080031from cros.factory.gooftool import vpd
Hung-Te Lin604e0c22015-11-24 15:17:07 +080032from cros.factory.hwid.v3 import hwid_utils
Yong Hong863d3262017-10-30 16:23:34 +080033from cros.factory.probe.functions import chromeos_firmware
Wei-Han Chen2ebb92d2016-01-12 14:51:41 +080034from cros.factory.test.env import paths
Peter Shihfdf17682017-05-26 11:38:39 +080035from cros.factory.test import event_log
Wei-Han Chenaff56232016-04-16 09:17:59 +080036from cros.factory.test.rules import phase
Hung-Te Lin3f096842016-01-13 17:37:06 +080037from cros.factory.test.rules.privacy import FilterDict
chuntsen2b43cc22019-07-18 15:26:16 +080038from cros.factory.test import state
Peter Shihfdf17682017-05-26 11:38:39 +080039from cros.factory.utils import argparse_utils
Hung-Te Lin03bf7ab2016-06-16 17:26:19 +080040from cros.factory.utils.argparse_utils import CmdArg
Hung-Te Lin03bf7ab2016-06-16 17:26:19 +080041from cros.factory.utils.argparse_utils import ParseCmdline
Wei-Han Chenb34bdff2019-09-26 13:07:50 +080042from cros.factory.utils.argparse_utils import VERBOSITY_CMD_ARG
Peter Shihfdf17682017-05-26 11:38:39 +080043from cros.factory.utils.debug_utils import SetupLogging
Jon Salz40b9f822014-07-25 16:39:55 +080044from cros.factory.utils import file_utils
Peter Shih67c7c0f2018-02-26 11:23:59 +080045from cros.factory.utils.process_utils import Spawn
Wei-Han Chena5c01a02016-04-23 19:27:19 +080046from cros.factory.utils import sys_utils
Chun-Ta Lin53cbbd52016-06-08 21:42:19 +080047from cros.factory.utils import time_utils
Joel Kitchingd3bc2662014-12-16 16:03:32 -080048from cros.factory.utils.type_utils import Error
Tammo Spalink86a61c62012-05-25 15:10:35 +080049
Tammo Spalink5c699832012-07-03 17:50:39 +080050
Tammo Spalink5c699832012-07-03 17:50:39 +080051# TODO(tammo): Replace calls to sys.exit with raise Exit, and maybe
52# treat that specially (as a smoot exit, as opposed to the more
53# verbose output for generic Error).
54
Cheng-Yi Chiang9fc121c2014-01-27 11:23:22 +080055_global_gooftool = None
56_gooftool_lock = threading.Lock()
Tammo Spalink5c699832012-07-03 17:50:39 +080057
Hung-Te Lin56b18402015-01-16 14:52:30 +080058
Ricky Lianga70a1202013-03-15 15:03:17 +080059def GetGooftool(options):
Peter Shihfdf17682017-05-26 11:38:39 +080060 global _global_gooftool # pylint: disable=global-statement
Ricky Lianga70a1202013-03-15 15:03:17 +080061
Cheng-Yi Chiang9fc121c2014-01-27 11:23:22 +080062 if _global_gooftool is None:
63 with _gooftool_lock:
Shen-En Shihc5d15d62017-08-04 13:02:59 +080064 if _global_gooftool is None:
65 project = getattr(options, 'project', None)
66 hwdb_path = getattr(options, 'hwdb_path', None)
67 _global_gooftool = Gooftool(hwid_version=3, project=project,
68 hwdb_path=hwdb_path)
Cheng-Yi Chiang9fc121c2014-01-27 11:23:22 +080069
70 return _global_gooftool
Ricky Lianga70a1202013-03-15 15:03:17 +080071
Hung-Te Lin56b18402015-01-16 14:52:30 +080072
Ting Shen18a06382016-08-30 16:18:21 +080073def Command(cmd_name, *args, **kwargs):
You-Cheng Syu8fc2a602017-12-22 17:05:05 +080074 """Decorator for commands in gooftool.
Ting Shen18a06382016-08-30 16:18:21 +080075
76 This is similar to argparse_utils.Command, but all gooftool commands
77 can be waived during `gooftool finalize` or `gooftool verify` using
Wei-Han Chen60c5d332017-01-05 17:15:10 +080078 --waive_list or --skip_list option.
Ting Shen18a06382016-08-30 16:18:21 +080079 """
80 def Decorate(fun):
Wei-Han Chen60c5d332017-01-05 17:15:10 +080081 def CommandWithWaiveSkipCheck(options):
Ting Shen18a06382016-08-30 16:18:21 +080082 waive_list = vars(options).get('waive_list', [])
Wei-Han Chen60c5d332017-01-05 17:15:10 +080083 skip_list = vars(options).get('skip_list', [])
84 if phase.GetPhase() >= phase.PVT_DOGFOOD and (
85 waive_list != [] or skip_list != []):
Ting Shen18a06382016-08-30 16:18:21 +080086 raise Error(
Wei-Han Chen60c5d332017-01-05 17:15:10 +080087 'waive_list and skip_list should be empty for phase %s' %
88 phase.GetPhase())
Ting Shen18a06382016-08-30 16:18:21 +080089
Wei-Han Chen60c5d332017-01-05 17:15:10 +080090 if cmd_name not in skip_list:
91 try:
92 fun(options)
93 except Exception as e:
94 if cmd_name in waive_list:
95 logging.exception(e)
96 else:
97 raise
Ting Shen18a06382016-08-30 16:18:21 +080098
99 return argparse_utils.Command(cmd_name, *args, **kwargs)(
Wei-Han Chen60c5d332017-01-05 17:15:10 +0800100 CommandWithWaiveSkipCheck)
Ting Shen18a06382016-08-30 16:18:21 +0800101 return Decorate
102
103
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800104@Command('write_hwid',
105 CmdArg('hwid', metavar='HWID', help='HWID string'))
Andy Chengc92e6f92012-11-20 16:55:53 +0800106def WriteHWID(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800107 """Write specified HWID value into the system BB."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800108
Tammo Spalink95c43732012-07-25 15:57:14 -0700109 logging.info('writing hwid string %r', options.hwid)
Ricky Lianga70a1202013-03-15 15:03:17 +0800110 GetGooftool(options).WriteHWID(options.hwid)
Andy Cheng0465d132013-03-20 12:12:06 +0800111 event_log.Log('write_hwid', hwid=options.hwid)
Tammo Spalink95c43732012-07-25 15:57:14 -0700112 print 'Wrote HWID: %r' % options.hwid
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800113
114
Yong Hongc3765412017-12-26 23:12:15 +0800115@Command('read_hwid')
116def ReadHWID(options):
117 """Read the HWID string from GBB."""
118
119 logging.info('reading the hwid string')
120 print GetGooftool(options).ReadHWID()
121
122
Yong Hong5408f652017-07-11 19:20:25 +0800123_project_cmd_arg = CmdArg(
124 '--project', metavar='PROJECT',
125 default=None, help='Project name to test.')
Ricky Liang53390232013-03-08 15:37:57 +0800126
Tammo Spalink8fab5312012-05-28 18:33:30 +0800127_hwdb_path_cmd_arg = CmdArg(
128 '--hwdb_path', metavar='PATH',
Yong Hong5c6dcd52017-12-27 11:05:01 +0800129 default=hwid_utils.GetDefaultDataPath(),
Tammo Spalink8fab5312012-05-28 18:33:30 +0800130 help='Path to the HWID database.')
131
Tammo Spalink95c43732012-07-25 15:57:14 -0700132_hwid_status_list_cmd_arg = CmdArg(
Hung-Te Lin56b18402015-01-16 14:52:30 +0800133 '--status', nargs='*', default=['supported'],
134 help='allow only HWIDs with these status values')
Tammo Spalink95c43732012-07-25 15:57:14 -0700135
Jon Salzce124fb2012-10-02 17:42:03 +0800136_probe_results_cmd_arg = CmdArg(
Yong Hong55050c12018-02-27 18:19:47 +0800137 '--probe_results', metavar='RESULTS.json',
138 help=('Output from "hwid probe" (used instead of probing this system).'))
Jon Salzce124fb2012-10-02 17:42:03 +0800139
Ricky Liang53390232013-03-08 15:37:57 +0800140_device_info_cmd_arg = CmdArg(
Ricky Liangf89f73a2013-03-19 05:00:24 +0800141 '--device_info', metavar='DEVICE_INFO.yaml', default=None,
You-Cheng Syu8fc2a602017-12-22 17:05:05 +0800142 help='A dict of device info to use instead of fetching from shopfloor '
Ricky Liang53390232013-03-08 15:37:57 +0800143 'server.')
144
Jon Salzce124fb2012-10-02 17:42:03 +0800145_hwid_cmd_arg = CmdArg(
146 '--hwid', metavar='HWID',
Ricky Lianga70a1202013-03-15 15:03:17 +0800147 help='HWID to verify (instead of the currently set HWID of this system).')
Jon Salzce124fb2012-10-02 17:42:03 +0800148
Yong Hong68a0e0d2017-12-20 19:06:54 +0800149_hwid_run_vpd_cmd_arg = CmdArg(
150 '--hwid-run-vpd', action='store_true',
151 help=('Specify the hwid utility to obtain the vpd data by running the '
152 '`vpd` commandline tool.'))
153
154_hwid_vpd_data_file_cmd_arg = CmdArg(
155 '--hwid-vpd-data-file', metavar='FILE.json', type=str, default=None,
156 help=('Specify the hwid utility to obtain the vpd data from the specified '
157 'file.'))
158
Bernie Thompson3c11c872013-07-22 18:22:45 -0700159_rma_mode_cmd_arg = CmdArg(
160 '--rma_mode', action='store_true',
161 help='Enable RMA mode, do not check for deprecated components.')
Tammo Spalink95c43732012-07-25 15:57:14 -0700162
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800163_cros_core_cmd_arg = CmdArg(
164 '--cros_core', action='store_true',
165 help='Finalize for ChromeOS Core devices (may add or remove few test '
Hung-Te Lin53c49402017-07-26 13:10:58 +0800166 'items. For example, registration codes or firmware bitmap '
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800167 'locale settings).')
168
Yilun Lin599833f2017-12-22 14:07:46 +0800169_chromebox_cmd_arg = CmdArg(
170 '--chromebox', action='store_true', default=None,
171 help='Finalize for ChromeBox devices (may add or remove few test '
172 'items. For example, VerifyECKey).')
173
bowgotsai13820f42015-09-10 23:18:04 +0800174_enforced_release_channels_cmd_arg = CmdArg(
175 '--enforced_release_channels', nargs='*', default=None,
176 help='Enforced release image channels.')
177
Yilun Lin34f54802017-11-16 11:58:25 +0800178_ec_pubkey_path_cmd_arg = CmdArg(
179 '--ec_pubkey_path',
180 default=None,
181 help='Path to public key in vb2 format. Verify EC key with pubkey file.')
182
183_ec_pubkey_hash_cmd_arg = CmdArg(
184 '--ec_pubkey_hash',
185 default=None,
186 help='A string for public key hash. Verify EC key with the given hash.')
187
Hung-Te Lincdb96522016-04-15 16:51:10 +0800188_release_rootfs_cmd_arg = CmdArg(
189 '--release_rootfs', help='Location of release image rootfs partition.')
190
191_firmware_path_cmd_arg = CmdArg(
192 '--firmware_path', help='Location of firmware image partition.')
Ricky Liang43b879b2014-02-24 11:36:55 +0800193
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800194_shopfloor_url_args_cmd_arg = CmdArg(
195 '--shopfloor_url',
Earl Ou51182222016-09-09 12:16:48 +0800196 help='Shopfloor server url to be informed when wiping is done. '
197 'After wiping, a XML-RPC request will be sent to the '
198 'given url to indicate the completion of wiping.')
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800199
200_station_ip_cmd_arg = CmdArg(
201 '--station_ip',
202 help='IP of remote station')
203
204_station_port_cmd_arg = CmdArg(
205 '--station_port',
206 help='Port on remote station')
207
208_wipe_finish_token_cmd_arg = CmdArg(
209 '--wipe_finish_token',
210 help='Required token when notifying station after wipe finished')
211
Wei-Han Chenf3924112019-02-25 14:52:58 +0800212_keep_developer_mode_flag_after_clobber_state_cmd_arg = CmdArg(
213 # The argument name is super long because you should never use it by
214 # yourself when using command line tools.
215 '--keep_developer_mode_flag_after_clobber_state',
216 action='store_true', default=None,
217 help='After clobber-state, do not delete .developer_mode')
218
Ting Shen18a06382016-08-30 16:18:21 +0800219_waive_list_cmd_arg = CmdArg(
220 '--waive_list', nargs='*', default=[], metavar='SUBCMD',
You-Cheng Syu8fc2a602017-12-22 17:05:05 +0800221 help='A list of waived checks, separated by whitespace. '
222 'Each item should be a sub-command of gooftool. '
Ting Shen18a06382016-08-30 16:18:21 +0800223 'e.g. "gooftool verify --waive_list verify_tpm clear_gbb_flags".')
224
Wei-Han Chen60c5d332017-01-05 17:15:10 +0800225_skip_list_cmd_arg = CmdArg(
226 '--skip_list', nargs='*', default=[], metavar='SUBCMD',
You-Cheng Syu8fc2a602017-12-22 17:05:05 +0800227 help='A list of skipped checks, separated by whitespace. '
228 'Each item should be a sub-command of gooftool. '
Wei-Han Chen60c5d332017-01-05 17:15:10 +0800229 'e.g. "gooftool verify --skip_list verify_tpm clear_gbb_flags".')
230
Wei-Han Cheneb4f9a22018-03-09 14:52:23 +0800231_rlz_embargo_end_date_offset_cmd_arg = CmdArg(
232 '--embargo_offset', type=int, default=7, choices=xrange(7, 15),
233 help='Change the offset of embargo end date, cannot less than 7 days or '
234 'more than 14 days.')
235
Marco Chena681b2e2018-08-31 11:41:41 +0800236_no_ectool_cmd_arg = CmdArg(
237 '--no_ectool', action='store_false', dest='has_ectool',
238 help='There is no ectool utility so tests rely on ectool should be '
239 'skipped.')
Tammo Spalink8fab5312012-05-28 18:33:30 +0800240
chuntsenaf1232f2019-03-20 15:45:54 +0800241_no_generate_mfg_date_cmd_arg = CmdArg(
242 '--no_generate_mfg_date', action='store_false', dest='generate_mfg_date',
243 help='Do not generate manufacturing date nor write mfg_date into VPD.')
244
245
Yilun Lin34f54802017-11-16 11:58:25 +0800246@Command(
247 'verify_ec_key',
248 _ec_pubkey_path_cmd_arg,
249 _ec_pubkey_hash_cmd_arg)
250def VerifyECKey(options):
251 """Verify EC key."""
252 return GetGooftool(options).VerifyECKey(
253 options.ec_pubkey_path, options.ec_pubkey_hash)
254
255
Hung-Te Line1d80f62016-03-31 14:58:13 +0800256@Command('verify_keys',
Hung-Te Lincdb96522016-04-15 16:51:10 +0800257 _release_rootfs_cmd_arg,
258 _firmware_path_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800259def VerifyKeys(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800260 """Verify keys in firmware and SSD match."""
Hung-Te Line1d80f62016-03-31 14:58:13 +0800261 return GetGooftool(options).VerifyKeys(
Hung-Te Lincdb96522016-04-15 16:51:10 +0800262 options.release_rootfs, options.firmware_path)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800263
264
265@Command('set_fw_bitmap_locale')
Peter Shihfdf17682017-05-26 11:38:39 +0800266def SetFirmwareBitmapLocale(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800267 """Use VPD locale value to set firmware bitmap default language."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800268
Ricky Lianga70a1202013-03-15 15:03:17 +0800269 (index, locale) = GetGooftool(options).SetFirmwareBitmapLocale()
Andy Cheng2582d292012-12-04 17:38:28 +0800270 logging.info('Firmware bitmap initial locale set to %d (%s).',
271 index, locale)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800272
273
Hung-Te Line1d80f62016-03-31 14:58:13 +0800274@Command('verify_system_time',
Wei-Han Chen2790d2e2019-01-18 21:13:40 +0800275 _release_rootfs_cmd_arg,
276 _rma_mode_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800277def VerifySystemTime(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800278 """Verify system time is later than release filesystem creation time."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800279
Wei-Han Chen2790d2e2019-01-18 21:13:40 +0800280 return GetGooftool(options).VerifySystemTime(options.release_rootfs,
281 rma_mode=options.rma_mode)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800282
283
Hung-Te Line1d80f62016-03-31 14:58:13 +0800284@Command('verify_rootfs',
Hung-Te Lincdb96522016-04-15 16:51:10 +0800285 _release_rootfs_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800286def VerifyRootFs(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800287 """Verify rootfs on SSD is valid by checking hash."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800288
Hung-Te Line1d80f62016-03-31 14:58:13 +0800289 return GetGooftool(options).VerifyRootFs(options.release_rootfs)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800290
Hung-Te Lin56b18402015-01-16 14:52:30 +0800291
Cheng-Yi Chiang676b5292013-06-18 12:05:33 +0800292@Command('verify_tpm')
Peter Shihfdf17682017-05-26 11:38:39 +0800293def VerifyTPM(options):
Cheng-Yi Chiang676b5292013-06-18 12:05:33 +0800294 """Verify TPM is cleared."""
295
296 return GetGooftool(options).VerifyTPM()
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800297
Hung-Te Lin56b18402015-01-16 14:52:30 +0800298
Hung-Te Lindd708d42014-07-11 17:05:01 +0800299@Command('verify_me_locked')
Peter Shihfdf17682017-05-26 11:38:39 +0800300def VerifyManagementEngineLocked(options):
You-Cheng Syu461ec032017-03-06 15:56:58 +0800301 """Verify Management Engine is locked."""
Hung-Te Lindd708d42014-07-11 17:05:01 +0800302
303 return GetGooftool(options).VerifyManagementEngineLocked()
304
Hung-Te Lin56b18402015-01-16 14:52:30 +0800305
Marco Chena681b2e2018-08-31 11:41:41 +0800306@Command('verify_switch_wp',
307 _no_ectool_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800308def VerifyWPSwitch(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800309 """Verify hardware write protection switch is enabled."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800310
Marco Chena681b2e2018-08-31 11:41:41 +0800311 GetGooftool(options).VerifyWPSwitch(options.has_ectool)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800312
313
Hung-Te Lin53c49402017-07-26 13:10:58 +0800314@Command('verify_vpd')
315def VerifyVPD(options):
316 """Verify that VPD values are properly set.
Jon Salzadd90d32014-04-29 16:16:27 +0800317
Hung-Te Lin53c49402017-07-26 13:10:58 +0800318 Check if mandatory fields are set, and deprecated fields don't exist.
Jon Salzadd90d32014-04-29 16:16:27 +0800319 """
Hung-Te Lin53c49402017-07-26 13:10:58 +0800320 return GetGooftool(options).VerifyVPD()
Jon Salzadd90d32014-04-29 16:16:27 +0800321
322
bowgotsai13820f42015-09-10 23:18:04 +0800323@Command('verify_release_channel',
324 _enforced_release_channels_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800325def VerifyReleaseChannel(options):
bowgotsai529139c2015-05-30 01:39:49 +0800326 """Verify that release image channel is correct.
327
328 ChromeOS has four channels: canary, dev, beta and stable.
329 The last three channels support image auto-updates, checks
330 that release image channel is one of them.
331 """
bowgotsai13820f42015-09-10 23:18:04 +0800332 return GetGooftool(options).VerifyReleaseChannel(
333 options.enforced_release_channels)
bowgotsai529139c2015-05-30 01:39:49 +0800334
335
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800336@Command('write_protect')
Peter Shihfdf17682017-05-26 11:38:39 +0800337def EnableFwWp(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800338 """Enable then verify firmware write protection."""
Peter Shihfdf17682017-05-26 11:38:39 +0800339 del options # Unused.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800340
Yong Hongdad230a2017-08-30 22:25:19 +0800341 def WriteProtect(fw):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800342 """Calculate protection size, then invoke flashrom.
343
Yong Hongdad230a2017-08-30 22:25:19 +0800344 The region (offset and size) to write protect may be different per chipset
345 and firmware layout, so we have to read the WP_RO section from FMAP to
346 decide that.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800347 """
Hung-Te Lin7ea39e82012-07-31 18:39:33 +0800348 wp_section = 'WP_RO'
Hung-Te Lin7ea39e82012-07-31 18:39:33 +0800349
Yong Hongdad230a2017-08-30 22:25:19 +0800350 fmap_image = fw.GetFirmwareImage(
351 sections=(['FMAP'] if fw.target == crosfw.TARGET_MAIN else None))
352 if not fmap_image.has_section(wp_section):
353 raise Error('Could not find %s firmware section: %s' %
354 (fw.target.upper(), wp_section))
355
356 section_data = fw.GetFirmwareImage(
357 sections=[wp_section]).get_section_area(wp_section)
Peter Shihe6afab32018-09-11 17:16:48 +0800358 ro_offset, ro_size = section_data[0:2]
Yong Hongdad230a2017-08-30 22:25:19 +0800359
360 logging.debug('write protecting %s [off=%x size=%x]', fw.target.upper(),
Hung-Te Lin7ea39e82012-07-31 18:39:33 +0800361 ro_offset, ro_size)
Yong Hongdad230a2017-08-30 22:25:19 +0800362 crosfw.Flashrom(fw.target).EnableWriteProtection(ro_offset, ro_size)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800363
Yong Hongdad230a2017-08-30 22:25:19 +0800364 WriteProtect(crosfw.LoadMainFirmware())
Andy Cheng0465d132013-03-20 12:12:06 +0800365 event_log.Log('wp', fw='main')
Hung-Te Lind3b124c2016-10-20 22:22:31 +0800366
367 # Some EC (mostly PD) does not support "RO NOW". Instead they will only set
368 # "RO_AT_BOOT" when you request to enable RO (These platforms consider
369 # --wp-range with right range identical to --wp-enable), and requires a
370 # 'ectool reboot_ec RO at-shutdown; reboot' to let the RO take effect.
Hung-Te Lin0d10b562016-12-28 10:58:07 +0800371 # After reboot, "flashrom -p host --wp-status" will return protected range.
Hung-Te Lind3b124c2016-10-20 22:22:31 +0800372 # If you don't reboot, returned range will be (0, 0), and running command
373 # "ectool flashprotect" will not have RO_NOW.
374
Yong Hongdad230a2017-08-30 22:25:19 +0800375 for fw in [crosfw.LoadEcFirmware(), crosfw.LoadPDFirmware()]:
376 if fw.GetChipId() is None:
Hung-Te Lind3b124c2016-10-20 22:22:31 +0800377 logging.warning('%s not write protected (seems there is no %s flash).',
Yong Hongdad230a2017-08-30 22:25:19 +0800378 fw.target.upper(), fw.target.upper())
Hung-Te Lind3b124c2016-10-20 22:22:31 +0800379 continue
Yong Hongdad230a2017-08-30 22:25:19 +0800380 WriteProtect(fw)
381 event_log.Log('wp', fw=fw.target)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800382
383
384@Command('clear_gbb_flags')
Peter Shihfdf17682017-05-26 11:38:39 +0800385def ClearGBBFlags(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800386 """Zero out the GBB flags, in preparation for transition to release state.
387
388 No GBB flags are set in release/shipping state, but they are useful
Hung-Te Lin879cff42017-06-19 12:46:37 +0800389 for factory/development. See "futility gbb --flags" for details.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800390 """
Andy Cheng7a76cb82012-11-19 18:08:19 +0800391
Ricky Lianga70a1202013-03-15 15:03:17 +0800392 GetGooftool(options).ClearGBBFlags()
Andy Cheng0465d132013-03-20 12:12:06 +0800393 event_log.Log('clear_gbb_flags')
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800394
395
Jon Salzaa3a30e2013-05-15 15:56:28 +0800396@Command('clear_factory_vpd_entries')
Peter Shihfdf17682017-05-26 11:38:39 +0800397def ClearFactoryVPDEntries(options):
Jon Salzaa3a30e2013-05-15 15:56:28 +0800398 """Clears factory.* items in the RW VPD."""
399 entries = GetGooftool(options).ClearFactoryVPDEntries()
400 event_log.Log('clear_factory_vpd_entries', entries=FilterDict(entries))
401
402
Mattias Nisslercca761b2015-04-15 21:53:04 +0200403@Command('generate_stable_device_secret')
Peter Shihfdf17682017-05-26 11:38:39 +0800404def GenerateStableDeviceSecret(options):
You-Cheng Syu461ec032017-03-06 15:56:58 +0800405 """Generates a fresh stable device secret and stores it in the RO VPD."""
Mattias Nisslercca761b2015-04-15 21:53:04 +0200406 GetGooftool(options).GenerateStableDeviceSecret()
407 event_log.Log('generate_stable_device_secret')
408
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800409
Yves Arrouyeb49b31e2019-03-06 21:51:52 -0800410@Command('cr50_set_sn_bits_and_board_id')
411def Cr50SetSnBitsAndBoardId(options):
412 """Set the serial number bits, board id and flags on the Cr50 chip."""
413 GetGooftool(options).Cr50SetSnBitsAndBoardId()
414 event_log.Log('cr50_set_sn_bits_and_board_id')
Shen-En Shihd078a7c2017-08-04 13:33:49 +0800415
416
Marco Chen20c885d2018-10-04 17:22:03 +0800417@Command('cr50_disable_factory_mode')
Marco Chen44a666d2018-07-13 21:01:50 +0800418def Cr50DisableFactoryMode(options):
Cheng-Han Yang08333af2017-12-18 17:22:38 +0800419 """Reset Cr50 state back to default state after RMA."""
Marco Chen44a666d2018-07-13 21:01:50 +0800420 return GetGooftool(options).Cr50DisableFactoryMode()
Cheng-Han Yang08333af2017-12-18 17:22:38 +0800421
422
Earl Ou564a7872016-10-05 10:22:00 +0800423@Command('enable_release_partition',
424 CmdArg('--release_rootfs',
425 help=('path to the release rootfs device. If not specified, '
426 'the default (5th) partition will be used.')))
427def EnableReleasePartition(options):
428 """Enables a release image partition on the disk."""
429 GetGooftool(options).EnableReleasePartition(options.release_rootfs)
430
431
Shun-Hsing Oucdc64e12015-01-14 22:07:33 +0800432@Command('wipe_in_place',
433 CmdArg('--fast', action='store_true',
Shun-Hsing Ou8d3c40a2015-10-08 18:16:08 +0800434 help='use non-secure but faster wipe method.'),
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800435 _shopfloor_url_args_cmd_arg,
436 _station_ip_cmd_arg,
437 _station_port_cmd_arg,
438 _wipe_finish_token_cmd_arg)
Shun-Hsing Oucdc64e12015-01-14 22:07:33 +0800439def WipeInPlace(options):
440 """Start factory wipe directly without reboot."""
441
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800442 GetGooftool(options).WipeInPlace(options.fast,
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800443 options.shopfloor_url,
444 options.station_ip,
445 options.station_port,
446 options.wipe_finish_token)
Mattias Nisslercca761b2015-04-15 21:53:04 +0200447
Wei-Han Chen7dc6d132016-04-06 11:11:53 +0800448@Command('wipe_init',
Wei-Han Chen0a3320e2016-04-23 01:32:07 +0800449 CmdArg('--wipe_args', help='arguments for clobber-state'),
450 CmdArg('--state_dev', help='path to stateful partition device'),
451 CmdArg('--root_disk', help='path to primary device'),
452 CmdArg('--old_root', help='path to old root'),
Wei-Han Chen0a3320e2016-04-23 01:32:07 +0800453 _shopfloor_url_args_cmd_arg,
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800454 _release_rootfs_cmd_arg,
455 _station_ip_cmd_arg,
456 _station_port_cmd_arg,
Wei-Han Chenf3924112019-02-25 14:52:58 +0800457 _wipe_finish_token_cmd_arg,
458 _keep_developer_mode_flag_after_clobber_state_cmd_arg)
Wei-Han Chen7dc6d132016-04-06 11:11:53 +0800459def WipeInit(options):
Wei-Han Chenf3924112019-02-25 14:52:58 +0800460 GetGooftool(options).WipeInit(
461 options.wipe_args,
462 options.shopfloor_url,
463 options.state_dev,
464 options.release_rootfs,
465 options.root_disk,
466 options.old_root,
467 options.station_ip,
468 options.station_port,
469 options.wipe_finish_token,
470 options.keep_developer_mode_flag_after_clobber_state)
Wei-Han Chen7dc6d132016-04-06 11:11:53 +0800471
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800472@Command('verify',
Hung-Te Lin6d827542012-07-19 11:50:41 +0800473 CmdArg('--no_write_protect', action='store_true',
474 help='Do not check write protection switch state.'),
Tammo Spalink95c43732012-07-25 15:57:14 -0700475 _hwid_status_list_cmd_arg,
Jon Salzce124fb2012-10-02 17:42:03 +0800476 _hwdb_path_cmd_arg,
Yong Hong5408f652017-07-11 19:20:25 +0800477 _project_cmd_arg,
Jon Salzce124fb2012-10-02 17:42:03 +0800478 _probe_results_cmd_arg,
Cheng-Yi Chiang406ad912013-11-14 16:51:33 +0800479 _hwid_cmd_arg,
Yong Hong68a0e0d2017-12-20 19:06:54 +0800480 _hwid_run_vpd_cmd_arg,
481 _hwid_vpd_data_file_cmd_arg,
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800482 _rma_mode_cmd_arg,
bowgotsai13820f42015-09-10 23:18:04 +0800483 _cros_core_cmd_arg,
Yilun Lin599833f2017-12-22 14:07:46 +0800484 _chromebox_cmd_arg,
Yilun Lin34f54802017-11-16 11:58:25 +0800485 _ec_pubkey_path_cmd_arg,
486 _ec_pubkey_hash_cmd_arg,
Hung-Te Lincdb96522016-04-15 16:51:10 +0800487 _release_rootfs_cmd_arg,
488 _firmware_path_cmd_arg,
Ting Shen18a06382016-08-30 16:18:21 +0800489 _enforced_release_channels_cmd_arg,
Wei-Han Chen60c5d332017-01-05 17:15:10 +0800490 _waive_list_cmd_arg,
Marco Chena681b2e2018-08-31 11:41:41 +0800491 _skip_list_cmd_arg,
492 _no_ectool_cmd_arg)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800493def Verify(options):
494 """Verifies if whole factory process is ready for finalization.
495
496 This routine performs all the necessary checks to make sure the
497 device is ready to be finalized, but does not modify state. These
498 checks include dev switch, firmware write protection switch, hwid,
499 system time, keys, and root file system.
500 """
Andy Cheng7a76cb82012-11-19 18:08:19 +0800501
Hung-Te Lin6d827542012-07-19 11:50:41 +0800502 if not options.no_write_protect:
Ricky Lianga70a1202013-03-15 15:03:17 +0800503 VerifyWPSwitch(options)
Hung-Te Lindd708d42014-07-11 17:05:01 +0800504 VerifyManagementEngineLocked(options)
Ting Shen129fa6f2016-09-02 12:22:24 +0800505 VerifyHWID(options)
Ricky Lianga70a1202013-03-15 15:03:17 +0800506 VerifySystemTime(options)
Yilun Lin599833f2017-12-22 14:07:46 +0800507 if options.chromebox:
508 VerifyECKey(options)
Ricky Lianga70a1202013-03-15 15:03:17 +0800509 VerifyKeys(options)
510 VerifyRootFs(options)
Cheng-Yi Chiang676b5292013-06-18 12:05:33 +0800511 VerifyTPM(options)
Hung-Te Lin53c49402017-07-26 13:10:58 +0800512 VerifyVPD(options)
bowgotsai529139c2015-05-30 01:39:49 +0800513 VerifyReleaseChannel(options)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800514
Hung-Te Lin56b18402015-01-16 14:52:30 +0800515
Jon Salzfe9036f2014-01-16 14:11:23 +0800516@Command('untar_stateful_files')
Hung-Te Lin388bce22014-06-03 19:56:40 +0800517def UntarStatefulFiles(unused_options):
Jon Salzfe9036f2014-01-16 14:11:23 +0800518 """Untars stateful files from stateful_files.tar.xz on stateful partition.
519
520 If that file does not exist (which should only be R30 and earlier),
521 this is a no-op.
522 """
Hung-Te Lin2333f3f2016-08-24 17:56:48 +0800523 # Path to stateful partition on device.
524 device_stateful_path = '/mnt/stateful_partition'
525 tar_file = os.path.join(device_stateful_path, 'stateful_files.tar.xz')
Jon Salzfe9036f2014-01-16 14:11:23 +0800526 if os.path.exists(tar_file):
Hung-Te Lin2333f3f2016-08-24 17:56:48 +0800527 Spawn(['tar', 'xf', tar_file], cwd=device_stateful_path,
Jon Salzfe9036f2014-01-16 14:11:23 +0800528 log=True, check_call=True)
529 else:
530 logging.warning('No stateful files at %s', tar_file)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800531
Jon Salz40b9f822014-07-25 16:39:55 +0800532
533@Command('log_source_hashes')
Peter Shihfdf17682017-05-26 11:38:39 +0800534def LogSourceHashes(options):
Jon Salz40b9f822014-07-25 16:39:55 +0800535 """Logs hashes of source files in the factory toolkit."""
Peter Shihfdf17682017-05-26 11:38:39 +0800536 del options # Unused.
Jon Salze60307f2014-08-05 16:20:00 +0800537 # WARNING: The following line is necessary to validate the integrity
538 # of the factory software. Do not remove or modify it.
539 #
540 # 警告:此行会验证工厂软件的完整性,禁止删除或修改。
Wei-Han Chena5c01a02016-04-23 19:27:19 +0800541 factory_par = sys_utils.GetRunningFactoryPythonArchivePath()
542 if factory_par:
543 event_log.Log(
544 'source_hashes',
545 **file_utils.HashPythonArchive(factory_par))
546 else:
547 event_log.Log(
548 'source_hashes',
Peter Shihad166772017-05-31 11:36:17 +0800549 **file_utils.HashSourceTree(os.path.join(paths.FACTORY_DIR, 'py')))
Jon Salz40b9f822014-07-25 16:39:55 +0800550
551
Tammo Spalink86a61c62012-05-25 15:10:35 +0800552@Command('log_system_details')
Peter Shihfdf17682017-05-26 11:38:39 +0800553def LogSystemDetails(options):
Tammo Spalink86a61c62012-05-25 15:10:35 +0800554 """Write miscellaneous system details to the event log."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800555
Ricky Liang43b879b2014-02-24 11:36:55 +0800556 event_log.Log('system_details', **GetGooftool(options).GetSystemDetails())
Tammo Spalink86a61c62012-05-25 15:10:35 +0800557
558
Jon Salza88b83b2013-05-27 20:00:35 +0800559def CreateReportArchiveBlob(*args, **kwargs):
560 """Creates a report archive and returns it as a blob.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800561
Jon Salza88b83b2013-05-27 20:00:35 +0800562 Args:
563 See CreateReportArchive.
Andy Cheng7a76cb82012-11-19 18:08:19 +0800564
Jon Salza88b83b2013-05-27 20:00:35 +0800565 Returns:
566 An xmlrpclib.Binary object containing a .tar.xz file.
567 """
Wei-Han Chen47416612016-09-14 17:41:52 +0800568 report_archive = CreateReportArchive(*args, **kwargs)
569 try:
You-Cheng Syuf0f4be12017-12-05 16:33:53 +0800570 return xmlrpclib.Binary(file_utils.ReadFile(report_archive))
Wei-Han Chen47416612016-09-14 17:41:52 +0800571 finally:
572 os.unlink(report_archive)
Jon Salza88b83b2013-05-27 20:00:35 +0800573
574
575def CreateReportArchive(device_sn=None, add_file=None):
576 """Creates a report archive in a temporary directory.
577
578 Args:
579 device_sn: The device serial number (optional).
580 add_file: A list of files to add (optional).
581
582 Returns:
583 Path to the archive.
584 """
chuntsen2b43cc22019-07-18 15:26:16 +0800585 # Flush Testlog data to DATA_TESTLOG_DIR before creating a report archive.
586 result, reason = state.GetInstance().FlushTestlog(
587 uplink=False, local=True, timeout=10)
588 if not result:
589 logging.warning('Failed to flush testlog data: %s', reason)
590
Hung-Te Lin6bd16472012-06-20 16:26:47 +0800591 def NormalizeAsFileName(token):
592 return re.sub(r'\W+', '', token).strip()
Jon Salza88b83b2013-05-27 20:00:35 +0800593
594 target_name = '%s%s.tar.xz' % (
595 time.strftime('%Y%m%dT%H%M%SZ',
596 time.gmtime()),
Hung-Te Lin56b18402015-01-16 14:52:30 +0800597 ('' if device_sn is None else
598 '_' + NormalizeAsFileName(device_sn)))
Tammo Spalink86a61c62012-05-25 15:10:35 +0800599 target_path = os.path.join(gettempdir(), target_name)
Jon Salza88b83b2013-05-27 20:00:35 +0800600
Tammo Spalink86a61c62012-05-25 15:10:35 +0800601 # Intentionally ignoring dotfiles in EVENT_LOG_DIR.
Andy Cheng0465d132013-03-20 12:12:06 +0800602 tar_cmd = 'cd %s ; tar cJf %s *' % (event_log.EVENT_LOG_DIR, target_path)
Peter Shihb4e49352017-05-25 17:35:11 +0800603 tar_cmd += ' %s' % paths.FACTORY_LOG_PATH
chuntsen2b43cc22019-07-18 15:26:16 +0800604 tar_cmd += ' %s' % paths.DATA_TESTLOG_DIR
Jon Salza88b83b2013-05-27 20:00:35 +0800605 if add_file:
606 for f in add_file:
Jon Salz65266432012-07-30 19:02:49 +0800607 # Require absolute paths since the tar command may change the
608 # directory.
609 if not f.startswith('/'):
610 raise Error('Not an absolute path: %s' % f)
611 if not os.path.exists(f):
612 raise Error('File does not exist: %s' % f)
Wei-Han Chen4b755022017-01-04 10:51:52 +0800613 tar_cmd += ' %s' % pipes.quote(f)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800614 cmd_result = Shell(tar_cmd)
Jon Salzff88c022012-11-03 12:19:58 +0800615
616 if ((cmd_result.status == 1) and
617 all((x == '' or
618 'file changed as we read it' in x or
619 "Removing leading `/' from member names" in x)
620 for x in cmd_result.stderr.split('\n'))):
621 # That's OK. Make sure it's valid though.
Vic Yang85199e72013-01-28 14:33:11 +0800622 Spawn(['tar', 'tfJ', target_path], check_call=True, log=True,
Jon Salzff88c022012-11-03 12:19:58 +0800623 ignore_stdout=True)
624 elif not cmd_result.success:
Tammo Spalink86a61c62012-05-25 15:10:35 +0800625 raise Error('unable to tar event logs, cmd %r failed, stderr: %r' %
626 (tar_cmd, cmd_result.stderr))
Jon Salzff88c022012-11-03 12:19:58 +0800627
Jon Salza88b83b2013-05-27 20:00:35 +0800628 return target_path
629
630_upload_method_cmd_arg = CmdArg(
631 '--upload_method', metavar='METHOD:PARAM',
632 help=('How to perform the upload. METHOD should be one of '
633 '{ftp, shopfloor, ftps, cpfe}.'))
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800634_upload_max_retry_times_arg = CmdArg(
635 '--upload_max_retry_times', type=int, default=0,
636 help='Number of tries to upload. 0 to retry infinitely.')
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800637_upload_retry_interval_arg = CmdArg(
638 '--upload_retry_interval', type=int, default=None,
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800639 help='Retry interval in seconds.')
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800640_upload_allow_fail_arg = CmdArg(
641 '--upload_allow_fail', action='store_true',
642 help='Continue finalize if report upload fails.')
Jon Salza88b83b2013-05-27 20:00:35 +0800643_add_file_cmd_arg = CmdArg(
644 '--add_file', metavar='FILE', action='append',
645 help='Extra file to include in report (must be an absolute path)')
646
Hung-Te Lin56b18402015-01-16 14:52:30 +0800647
Jon Salza88b83b2013-05-27 20:00:35 +0800648@Command('upload_report',
649 _upload_method_cmd_arg,
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800650 _upload_max_retry_times_arg,
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800651 _upload_retry_interval_arg,
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800652 _upload_allow_fail_arg,
Jon Salza88b83b2013-05-27 20:00:35 +0800653 _add_file_cmd_arg)
654def UploadReport(options):
655 """Create a report containing key device details."""
Yong Hong65bda312018-12-13 20:05:58 +0800656 ro_vpd = vpd.VPDTool().GetAllData(partition=vpd.VPD_READONLY_PARTITION_NAME)
Jon Salza88b83b2013-05-27 20:00:35 +0800657 device_sn = ro_vpd.get('serial_number', None)
658 if device_sn is None:
659 logging.warning('RO_VPD missing device serial number')
Chun-Ta Lin53cbbd52016-06-08 21:42:19 +0800660 device_sn = 'MISSING_SN_' + time_utils.TimedUUID()
chuntsena6da2be2019-08-14 17:11:55 +0800661 target_path = CreateReportArchive(device_sn, options.add_file)
Jon Salza88b83b2013-05-27 20:00:35 +0800662
Tammo Spalink86a61c62012-05-25 15:10:35 +0800663 if options.upload_method is None or options.upload_method == 'none':
664 logging.warning('REPORT UPLOAD SKIPPED (report left at %s)', target_path)
665 return
666 method, param = options.upload_method.split(':', 1)
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800667
668 if options.upload_retry_interval is not None:
669 retry_interval = options.upload_retry_interval
670 else:
671 retry_interval = report_upload.DEFAULT_RETRY_INTERVAL
672
Tammo Spalink86a61c62012-05-25 15:10:35 +0800673 if method == 'shopfloor':
You-Cheng Syuf0f4be12017-12-05 16:33:53 +0800674 report_upload.ShopFloorUpload(
675 target_path, param,
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800676 'GRT' if options.command_name == 'finalize' else None,
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800677 max_retry_times=options.upload_max_retry_times,
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800678 retry_interval=retry_interval,
679 allow_fail=options.upload_allow_fail)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800680 elif method == 'ftp':
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800681 report_upload.FtpUpload(target_path, 'ftp:' + param,
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800682 max_retry_times=options.upload_max_retry_times,
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800683 retry_interval=retry_interval,
684 allow_fail=options.upload_allow_fail)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800685 elif method == 'ftps':
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800686 report_upload.CurlUrlUpload(target_path, '--ftp-ssl-reqd ftp:%s' % param,
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800687 max_retry_times=options.upload_max_retry_times,
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800688 retry_interval=retry_interval,
689 allow_fail=options.upload_allow_fail)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800690 elif method == 'cpfe':
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800691 report_upload.CpfeUpload(target_path, pipes.quote(param),
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800692 max_retry_times=options.upload_max_retry_times,
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800693 retry_interval=retry_interval,
694 allow_fail=options.upload_allow_fail)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800695 else:
Peter Shihbf6f22b2018-02-26 14:05:28 +0800696 raise Error('unknown report upload method %r' % method)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800697
698
699@Command('finalize',
Hung-Te Lin6d827542012-07-19 11:50:41 +0800700 CmdArg('--no_write_protect', action='store_true',
701 help='Do not enable firmware write protection.'),
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800702 CmdArg('--fast', action='store_true',
703 help='use non-secure but faster wipe method.'),
Yong Hongb2926bd2018-10-12 14:11:14 +0800704 _no_ectool_cmd_arg,
Shun-Hsing Oudb407d62015-11-11 11:03:59 +0800705 _shopfloor_url_args_cmd_arg,
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800706 _hwdb_path_cmd_arg,
Tammo Spalink95c43732012-07-25 15:57:14 -0700707 _hwid_status_list_cmd_arg,
Jon Salz65266432012-07-30 19:02:49 +0800708 _upload_method_cmd_arg,
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800709 _upload_max_retry_times_arg,
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800710 _upload_retry_interval_arg,
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800711 _upload_allow_fail_arg,
Jon Salzce124fb2012-10-02 17:42:03 +0800712 _add_file_cmd_arg,
713 _probe_results_cmd_arg,
Cheng-Yi Chiang406ad912013-11-14 16:51:33 +0800714 _hwid_cmd_arg,
Yong Hong68a0e0d2017-12-20 19:06:54 +0800715 _hwid_run_vpd_cmd_arg,
716 _hwid_vpd_data_file_cmd_arg,
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800717 _rma_mode_cmd_arg,
bowgotsai13820f42015-09-10 23:18:04 +0800718 _cros_core_cmd_arg,
Yilun Lin599833f2017-12-22 14:07:46 +0800719 _chromebox_cmd_arg,
Yilun Lin34f54802017-11-16 11:58:25 +0800720 _ec_pubkey_path_cmd_arg,
721 _ec_pubkey_hash_cmd_arg,
Hung-Te Lincdb96522016-04-15 16:51:10 +0800722 _release_rootfs_cmd_arg,
723 _firmware_path_cmd_arg,
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800724 _enforced_release_channels_cmd_arg,
725 _station_ip_cmd_arg,
726 _station_port_cmd_arg,
Ting Shen18a06382016-08-30 16:18:21 +0800727 _wipe_finish_token_cmd_arg,
Wei-Han Cheneb4f9a22018-03-09 14:52:23 +0800728 _rlz_embargo_end_date_offset_cmd_arg,
Wei-Han Chen60c5d332017-01-05 17:15:10 +0800729 _waive_list_cmd_arg,
chuntsenaf1232f2019-03-20 15:45:54 +0800730 _skip_list_cmd_arg,
731 _no_generate_mfg_date_cmd_arg)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800732def Finalize(options):
733 """Verify system readiness and trigger transition into release state.
734
Jon Salzaa3a30e2013-05-15 15:56:28 +0800735 This routine does the following:
736 - Verifies system state (see verify command)
Jon Salzfe9036f2014-01-16 14:11:23 +0800737 - Untars stateful_files.tar.xz, if it exists, in the stateful partition, to
738 initialize files such as the CRX cache
Jon Salzaa3a30e2013-05-15 15:56:28 +0800739 - Modifies firmware bitmaps to match locale
740 - Clears all factory-friendly flags from the GBB
741 - Removes factory-specific entries from RW_VPD (factory.*)
742 - Enables firmware write protection (cannot rollback after this)
743 - Uploads system logs & reports
Earl Ou51182222016-09-09 12:16:48 +0800744 - Wipes the testing kernel, rootfs, and stateful partition
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800745 """
Wei-Han Cheneb4f9a22018-03-09 14:52:23 +0800746 if not options.rma_mode:
747 # Write VPD values related to RLZ ping into VPD.
748 GetGooftool(options).WriteVPDForRLZPing(options.embargo_offset)
chuntsenaf1232f2019-03-20 15:45:54 +0800749 if options.generate_mfg_date:
750 GetGooftool(options).WriteVPDForMFGDate()
Yves Arrouyeb49b31e2019-03-06 21:51:52 -0800751 Cr50SetSnBitsAndBoardId(options)
Marco Chen44a666d2018-07-13 21:01:50 +0800752 Cr50DisableFactoryMode(options)
Marco Chen9d0631c2018-08-31 10:52:44 +0800753 Verify(options)
Jon Salz40b9f822014-07-25 16:39:55 +0800754 LogSourceHashes(options)
Jon Salzfe9036f2014-01-16 14:11:23 +0800755 UntarStatefulFiles(options)
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800756 if options.cros_core:
757 logging.info('SetFirmwareBitmapLocale is skipped for ChromeOS Core device.')
758 else:
759 SetFirmwareBitmapLocale(options)
Jon Salzaa3a30e2013-05-15 15:56:28 +0800760 ClearFactoryVPDEntries(options)
Mattias Nisslercca761b2015-04-15 21:53:04 +0200761 GenerateStableDeviceSecret(options)
Shen-En Shih3e079b22017-09-11 05:43:09 -0700762 ClearGBBFlags(options)
Hung-Te Lin6d827542012-07-19 11:50:41 +0800763 if options.no_write_protect:
764 logging.warn('WARNING: Firmware Write Protection is SKIPPED.')
Andy Cheng0465d132013-03-20 12:12:06 +0800765 event_log.Log('wp', fw='both', status='skipped')
Hung-Te Lin6d827542012-07-19 11:50:41 +0800766 else:
Wei-Han Chenba21f512016-10-14 18:52:33 +0800767 EnableFwWp(options)
Jon Salza0f58e02012-05-29 19:33:39 +0800768 LogSystemDetails(options)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800769 UploadReport(options)
Earl Ou51182222016-09-09 12:16:48 +0800770
771 event_log.Log('wipe_in_place')
772 wipe_args = []
Earl Ou51182222016-09-09 12:16:48 +0800773 if options.shopfloor_url:
774 wipe_args += ['--shopfloor_url', options.shopfloor_url]
775 if options.fast:
776 wipe_args += ['--fast']
777 if options.station_ip:
778 wipe_args += ['--station_ip', options.station_ip]
779 if options.station_port:
780 wipe_args += ['--station_port', options.station_port]
781 if options.wipe_finish_token:
782 wipe_args += ['--wipe_finish_token', options.wipe_finish_token]
783 ExecFactoryPar('gooftool', 'wipe_in_place', *wipe_args)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800784
785
Ting Shen129fa6f2016-09-02 12:22:24 +0800786@Command('verify_hwid',
787 _probe_results_cmd_arg,
788 _hwdb_path_cmd_arg,
789 _hwid_cmd_arg,
Yong Hong68a0e0d2017-12-20 19:06:54 +0800790 _hwid_run_vpd_cmd_arg,
791 _hwid_vpd_data_file_cmd_arg,
Ting Shen129fa6f2016-09-02 12:22:24 +0800792 _rma_mode_cmd_arg)
793def VerifyHWID(options):
Ricky Liangc662be32013-12-24 11:50:23 +0800794 """A simple wrapper that calls out to HWID utils to verify version 3 HWID.
Ricky Liang53390232013-03-08 15:37:57 +0800795
Ricky Liangc662be32013-12-24 11:50:23 +0800796 This is mainly for Gooftool to verify v3 HWID during finalize. For testing
797 and development purposes, please use `hwid` command.
Ricky Liang53390232013-03-08 15:37:57 +0800798 """
Yong Hongada8e0e2018-01-04 16:36:21 +0800799 database = GetGooftool(options).db
Yong Hong68a0e0d2017-12-20 19:06:54 +0800800
Yong Hongada8e0e2018-01-04 16:36:21 +0800801 encoded_string = options.hwid or GetGooftool(options).ReadHWID()
802
803 probed_results = hwid_utils.GetProbedResults(infile=options.probe_results)
Yong Hong2c39bf22018-01-24 22:24:11 +0800804 device_info = hwid_utils.GetDeviceInfo()
Yong Hong65bda312018-12-13 20:05:58 +0800805 vpd_data = hwid_utils.GetVPDData(run_vpd=options.hwid_run_vpd,
806 infile=options.hwid_vpd_data_file)
Ricky Liang53390232013-03-08 15:37:57 +0800807
Hung-Te Lin11052952015-03-18 13:48:59 +0800808 event_log.Log('probed_results', probed_results=FilterDict(probed_results))
Yong Hong65bda312018-12-13 20:05:58 +0800809 event_log.Log('vpd', vpd=FilterDict(vpd_data))
Ricky Liang53390232013-03-08 15:37:57 +0800810
Yong Hong2c39bf22018-01-24 22:24:11 +0800811 hwid_utils.VerifyHWID(database, encoded_string, probed_results,
Yong Hong65bda312018-12-13 20:05:58 +0800812 device_info, vpd_data, options.rma_mode)
Ricky Liang53390232013-03-08 15:37:57 +0800813
Ricky Liangc662be32013-12-24 11:50:23 +0800814 event_log.Log('verified_hwid', hwid=encoded_string)
Ricky Liang53390232013-03-08 15:37:57 +0800815
816
henryhsu44d793a2013-07-20 00:07:38 +0800817@Command('get_firmware_hash',
Marco Chence70b132018-05-03 23:43:39 +0800818 CmdArg('--file', required=True, metavar='FILE', help='Firmware File.'))
henryhsu44d793a2013-07-20 00:07:38 +0800819def GetFirmwareHash(options):
henryhsuf6f835c2013-07-20 20:49:25 +0800820 """Get firmware hash from a file"""
henryhsu44d793a2013-07-20 00:07:38 +0800821 if os.path.exists(options.file):
Cheng-Han Yang2c668ae2018-04-18 22:31:07 +0800822 value_dict = chromeos_firmware.CalculateFirmwareHashes(options.file)
823 for key, value in value_dict.iteritems():
824 print ' %s: %s' % (key, value)
henryhsu44d793a2013-07-20 00:07:38 +0800825 else:
826 raise Error('File does not exist: %s' % options.file)
827
henryhsuf6f835c2013-07-20 20:49:25 +0800828
Peter Shihfdf17682017-05-26 11:38:39 +0800829def main():
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800830 """Run sub-command specified by the command line args."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800831
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800832 options = ParseCmdline(
Ting Shen129fa6f2016-09-02 12:22:24 +0800833 'Perform Google required factory tests.',
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800834 CmdArg('-l', '--log', metavar='PATH',
835 help='Write logs to this file.'),
Jon Salza4bea382012-10-29 13:00:34 +0800836 CmdArg('--suppress-event-logs', action='store_true',
837 help='Suppress event logging.'),
Wei-Han Chenaff56232016-04-16 09:17:59 +0800838 CmdArg('--phase', default=None,
839 help=('override phase for phase checking (defaults to the current '
840 'as returned by the "factory phase" command)')),
Wei-Han Chenb34bdff2019-09-26 13:07:50 +0800841 VERBOSITY_CMD_ARG)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800842 SetupLogging(options.verbosity, options.log)
Andy Cheng0465d132013-03-20 12:12:06 +0800843 event_log.SetGlobalLoggerDefaultPrefix('gooftool')
844 event_log.GetGlobalLogger().suppress = options.suppress_event_logs
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800845 logging.debug('gooftool options: %s', repr(options))
Wei-Han Chenaff56232016-04-16 09:17:59 +0800846
847 phase.OverridePhase(options.phase)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800848 try:
849 logging.debug('GOOFTOOL command %r', options.command_name)
850 options.command(options)
851 logging.info('GOOFTOOL command %r SUCCESS', options.command_name)
Peter Shih6674ecf2018-03-29 14:04:57 +0800852 except Error as e:
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800853 logging.exception(e)
854 sys.exit('GOOFTOOL command %r ERROR: %s' % (options.command_name, e))
Peter Shih6674ecf2018-03-29 14:04:57 +0800855 except Exception as e:
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800856 logging.exception(e)
857 sys.exit('UNCAUGHT RUNTIME EXCEPTION %s' % e)
858
859
860if __name__ == '__main__':
Peter Shihfdf17682017-05-26 11:38:39 +0800861 main()