blob: cf1342c16b8f4af141f624872dd9b6a2a29ebc05 [file] [log] [blame]
You-Cheng Syuf0f4be12017-12-05 16:33:53 +08001#!/usr/bin/env python
Jon Salze60307f2014-08-05 16:20:00 +08002# -*- coding: utf-8 -*-
3# Copyright 2014 The Chromium OS Authors. All rights reserved.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +08004# Use of this source code is governed by a BSD-style license that can be
5# found in the LICENSE file.
6
Jon Salze60307f2014-08-05 16:20:00 +08007
Tammo Spalink9a96b8a2012-04-03 11:10:41 +08008"""Google Factory Tool.
9
You-Cheng Syu461ec032017-03-06 15:56:58 +080010This tool is intended to be used on factory assembly lines. It
Tammo Spalink9a96b8a2012-04-03 11:10:41 +080011provides all of the Google required test functionality and must be run
12on each device as part of the assembly process.
13"""
14
Tammo Spalink9a96b8a2012-04-03 11:10:41 +080015import logging
16import os
Jon Salz65266432012-07-30 19:02:49 +080017import pipes
Tammo Spalink9a96b8a2012-04-03 11:10:41 +080018import re
19import sys
Peter Shihfdf17682017-05-26 11:38:39 +080020from tempfile import gettempdir
Cheng-Yi Chiang9fc121c2014-01-27 11:23:22 +080021import threading
Hung-Te Lin6bd16472012-06-20 16:26:47 +080022import time
Jon Salza88b83b2013-05-27 20:00:35 +080023import xmlrpclib
Peter Shihfdf17682017-05-26 11:38:39 +080024
Peter Shihfdf17682017-05-26 11:38:39 +080025import factory_common # pylint: disable=unused-import
Wei-Han Chen0a3320e2016-04-23 01:32:07 +080026from cros.factory.gooftool.common import ExecFactoryPar
Hung-Te Lin0e0f9362015-11-18 18:18:05 +080027from cros.factory.gooftool.common import Shell
Peter Shihfdf17682017-05-26 11:38:39 +080028from cros.factory.gooftool.core import Gooftool
29from cros.factory.gooftool import crosfw
Peter Shihfdf17682017-05-26 11:38:39 +080030from cros.factory.gooftool import report_upload
Yong Hong65bda312018-12-13 20:05:58 +080031from cros.factory.gooftool import vpd
Hung-Te Lin604e0c22015-11-24 15:17:07 +080032from cros.factory.hwid.v3 import hwid_utils
Yong Hong863d3262017-10-30 16:23:34 +080033from cros.factory.probe.functions import chromeos_firmware
Wei-Han Chen2ebb92d2016-01-12 14:51:41 +080034from cros.factory.test.env import paths
Peter Shihfdf17682017-05-26 11:38:39 +080035from cros.factory.test import event_log
Wei-Han Chenaff56232016-04-16 09:17:59 +080036from cros.factory.test.rules import phase
Hung-Te Lin3f096842016-01-13 17:37:06 +080037from cros.factory.test.rules.privacy import FilterDict
Peter Shihfdf17682017-05-26 11:38:39 +080038from cros.factory.utils import argparse_utils
Hung-Te Lin03bf7ab2016-06-16 17:26:19 +080039from cros.factory.utils.argparse_utils import CmdArg
Hung-Te Lin03bf7ab2016-06-16 17:26:19 +080040from cros.factory.utils.argparse_utils import ParseCmdline
41from cros.factory.utils.argparse_utils import verbosity_cmd_arg
Peter Shihfdf17682017-05-26 11:38:39 +080042from cros.factory.utils.debug_utils import SetupLogging
Jon Salz40b9f822014-07-25 16:39:55 +080043from cros.factory.utils import file_utils
Peter Shih67c7c0f2018-02-26 11:23:59 +080044from cros.factory.utils.process_utils import Spawn
Wei-Han Chena5c01a02016-04-23 19:27:19 +080045from cros.factory.utils import sys_utils
Chun-Ta Lin53cbbd52016-06-08 21:42:19 +080046from cros.factory.utils import time_utils
Joel Kitchingd3bc2662014-12-16 16:03:32 -080047from cros.factory.utils.type_utils import Error
Tammo Spalink86a61c62012-05-25 15:10:35 +080048
Tammo Spalink5c699832012-07-03 17:50:39 +080049
Tammo Spalink5c699832012-07-03 17:50:39 +080050# TODO(tammo): Replace calls to sys.exit with raise Exit, and maybe
51# treat that specially (as a smoot exit, as opposed to the more
52# verbose output for generic Error).
53
Cheng-Yi Chiang9fc121c2014-01-27 11:23:22 +080054_global_gooftool = None
55_gooftool_lock = threading.Lock()
Tammo Spalink5c699832012-07-03 17:50:39 +080056
Hung-Te Lin56b18402015-01-16 14:52:30 +080057
Ricky Lianga70a1202013-03-15 15:03:17 +080058def GetGooftool(options):
Peter Shihfdf17682017-05-26 11:38:39 +080059 global _global_gooftool # pylint: disable=global-statement
Ricky Lianga70a1202013-03-15 15:03:17 +080060
Cheng-Yi Chiang9fc121c2014-01-27 11:23:22 +080061 if _global_gooftool is None:
62 with _gooftool_lock:
Shen-En Shihc5d15d62017-08-04 13:02:59 +080063 if _global_gooftool is None:
64 project = getattr(options, 'project', None)
65 hwdb_path = getattr(options, 'hwdb_path', None)
66 _global_gooftool = Gooftool(hwid_version=3, project=project,
67 hwdb_path=hwdb_path)
Cheng-Yi Chiang9fc121c2014-01-27 11:23:22 +080068
69 return _global_gooftool
Ricky Lianga70a1202013-03-15 15:03:17 +080070
Hung-Te Lin56b18402015-01-16 14:52:30 +080071
Ting Shen18a06382016-08-30 16:18:21 +080072def Command(cmd_name, *args, **kwargs):
You-Cheng Syu8fc2a602017-12-22 17:05:05 +080073 """Decorator for commands in gooftool.
Ting Shen18a06382016-08-30 16:18:21 +080074
75 This is similar to argparse_utils.Command, but all gooftool commands
76 can be waived during `gooftool finalize` or `gooftool verify` using
Wei-Han Chen60c5d332017-01-05 17:15:10 +080077 --waive_list or --skip_list option.
Ting Shen18a06382016-08-30 16:18:21 +080078 """
79 def Decorate(fun):
Wei-Han Chen60c5d332017-01-05 17:15:10 +080080 def CommandWithWaiveSkipCheck(options):
Ting Shen18a06382016-08-30 16:18:21 +080081 waive_list = vars(options).get('waive_list', [])
Wei-Han Chen60c5d332017-01-05 17:15:10 +080082 skip_list = vars(options).get('skip_list', [])
83 if phase.GetPhase() >= phase.PVT_DOGFOOD and (
84 waive_list != [] or skip_list != []):
Ting Shen18a06382016-08-30 16:18:21 +080085 raise Error(
Wei-Han Chen60c5d332017-01-05 17:15:10 +080086 'waive_list and skip_list should be empty for phase %s' %
87 phase.GetPhase())
Ting Shen18a06382016-08-30 16:18:21 +080088
Wei-Han Chen60c5d332017-01-05 17:15:10 +080089 if cmd_name not in skip_list:
90 try:
91 fun(options)
92 except Exception as e:
93 if cmd_name in waive_list:
94 logging.exception(e)
95 else:
96 raise
Ting Shen18a06382016-08-30 16:18:21 +080097
98 return argparse_utils.Command(cmd_name, *args, **kwargs)(
Wei-Han Chen60c5d332017-01-05 17:15:10 +080099 CommandWithWaiveSkipCheck)
Ting Shen18a06382016-08-30 16:18:21 +0800100 return Decorate
101
102
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800103@Command('write_hwid',
104 CmdArg('hwid', metavar='HWID', help='HWID string'))
Andy Chengc92e6f92012-11-20 16:55:53 +0800105def WriteHWID(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800106 """Write specified HWID value into the system BB."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800107
Tammo Spalink95c43732012-07-25 15:57:14 -0700108 logging.info('writing hwid string %r', options.hwid)
Ricky Lianga70a1202013-03-15 15:03:17 +0800109 GetGooftool(options).WriteHWID(options.hwid)
Andy Cheng0465d132013-03-20 12:12:06 +0800110 event_log.Log('write_hwid', hwid=options.hwid)
Tammo Spalink95c43732012-07-25 15:57:14 -0700111 print 'Wrote HWID: %r' % options.hwid
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800112
113
Yong Hongc3765412017-12-26 23:12:15 +0800114@Command('read_hwid')
115def ReadHWID(options):
116 """Read the HWID string from GBB."""
117
118 logging.info('reading the hwid string')
119 print GetGooftool(options).ReadHWID()
120
121
Yong Hong5408f652017-07-11 19:20:25 +0800122_project_cmd_arg = CmdArg(
123 '--project', metavar='PROJECT',
124 default=None, help='Project name to test.')
Ricky Liang53390232013-03-08 15:37:57 +0800125
Tammo Spalink8fab5312012-05-28 18:33:30 +0800126_hwdb_path_cmd_arg = CmdArg(
127 '--hwdb_path', metavar='PATH',
Yong Hong5c6dcd52017-12-27 11:05:01 +0800128 default=hwid_utils.GetDefaultDataPath(),
Tammo Spalink8fab5312012-05-28 18:33:30 +0800129 help='Path to the HWID database.')
130
Tammo Spalink95c43732012-07-25 15:57:14 -0700131_hwid_status_list_cmd_arg = CmdArg(
Hung-Te Lin56b18402015-01-16 14:52:30 +0800132 '--status', nargs='*', default=['supported'],
133 help='allow only HWIDs with these status values')
Tammo Spalink95c43732012-07-25 15:57:14 -0700134
Jon Salzce124fb2012-10-02 17:42:03 +0800135_probe_results_cmd_arg = CmdArg(
Yong Hong55050c12018-02-27 18:19:47 +0800136 '--probe_results', metavar='RESULTS.json',
137 help=('Output from "hwid probe" (used instead of probing this system).'))
Jon Salzce124fb2012-10-02 17:42:03 +0800138
Ricky Liang53390232013-03-08 15:37:57 +0800139_device_info_cmd_arg = CmdArg(
Ricky Liangf89f73a2013-03-19 05:00:24 +0800140 '--device_info', metavar='DEVICE_INFO.yaml', default=None,
You-Cheng Syu8fc2a602017-12-22 17:05:05 +0800141 help='A dict of device info to use instead of fetching from shopfloor '
Ricky Liang53390232013-03-08 15:37:57 +0800142 'server.')
143
Jon Salzce124fb2012-10-02 17:42:03 +0800144_hwid_cmd_arg = CmdArg(
145 '--hwid', metavar='HWID',
Ricky Lianga70a1202013-03-15 15:03:17 +0800146 help='HWID to verify (instead of the currently set HWID of this system).')
Jon Salzce124fb2012-10-02 17:42:03 +0800147
Yong Hong68a0e0d2017-12-20 19:06:54 +0800148_hwid_run_vpd_cmd_arg = CmdArg(
149 '--hwid-run-vpd', action='store_true',
150 help=('Specify the hwid utility to obtain the vpd data by running the '
151 '`vpd` commandline tool.'))
152
153_hwid_vpd_data_file_cmd_arg = CmdArg(
154 '--hwid-vpd-data-file', metavar='FILE.json', type=str, default=None,
155 help=('Specify the hwid utility to obtain the vpd data from the specified '
156 'file.'))
157
Bernie Thompson3c11c872013-07-22 18:22:45 -0700158_rma_mode_cmd_arg = CmdArg(
159 '--rma_mode', action='store_true',
160 help='Enable RMA mode, do not check for deprecated components.')
Tammo Spalink95c43732012-07-25 15:57:14 -0700161
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800162_cros_core_cmd_arg = CmdArg(
163 '--cros_core', action='store_true',
164 help='Finalize for ChromeOS Core devices (may add or remove few test '
Hung-Te Lin53c49402017-07-26 13:10:58 +0800165 'items. For example, registration codes or firmware bitmap '
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800166 'locale settings).')
167
Yilun Lin599833f2017-12-22 14:07:46 +0800168_chromebox_cmd_arg = CmdArg(
169 '--chromebox', action='store_true', default=None,
170 help='Finalize for ChromeBox devices (may add or remove few test '
171 'items. For example, VerifyECKey).')
172
bowgotsai13820f42015-09-10 23:18:04 +0800173_enforced_release_channels_cmd_arg = CmdArg(
174 '--enforced_release_channels', nargs='*', default=None,
175 help='Enforced release image channels.')
176
Yilun Lin34f54802017-11-16 11:58:25 +0800177_ec_pubkey_path_cmd_arg = CmdArg(
178 '--ec_pubkey_path',
179 default=None,
180 help='Path to public key in vb2 format. Verify EC key with pubkey file.')
181
182_ec_pubkey_hash_cmd_arg = CmdArg(
183 '--ec_pubkey_hash',
184 default=None,
185 help='A string for public key hash. Verify EC key with the given hash.')
186
Hung-Te Lincdb96522016-04-15 16:51:10 +0800187_release_rootfs_cmd_arg = CmdArg(
188 '--release_rootfs', help='Location of release image rootfs partition.')
189
190_firmware_path_cmd_arg = CmdArg(
191 '--firmware_path', help='Location of firmware image partition.')
Ricky Liang43b879b2014-02-24 11:36:55 +0800192
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800193_shopfloor_url_args_cmd_arg = CmdArg(
194 '--shopfloor_url',
Earl Ou51182222016-09-09 12:16:48 +0800195 help='Shopfloor server url to be informed when wiping is done. '
196 'After wiping, a XML-RPC request will be sent to the '
197 'given url to indicate the completion of wiping.')
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800198
199_station_ip_cmd_arg = CmdArg(
200 '--station_ip',
201 help='IP of remote station')
202
203_station_port_cmd_arg = CmdArg(
204 '--station_port',
205 help='Port on remote station')
206
207_wipe_finish_token_cmd_arg = CmdArg(
208 '--wipe_finish_token',
209 help='Required token when notifying station after wipe finished')
210
Wei-Han Chenf3924112019-02-25 14:52:58 +0800211_keep_developer_mode_flag_after_clobber_state_cmd_arg = CmdArg(
212 # The argument name is super long because you should never use it by
213 # yourself when using command line tools.
214 '--keep_developer_mode_flag_after_clobber_state',
215 action='store_true', default=None,
216 help='After clobber-state, do not delete .developer_mode')
217
Ting Shen18a06382016-08-30 16:18:21 +0800218_waive_list_cmd_arg = CmdArg(
219 '--waive_list', nargs='*', default=[], metavar='SUBCMD',
You-Cheng Syu8fc2a602017-12-22 17:05:05 +0800220 help='A list of waived checks, separated by whitespace. '
221 'Each item should be a sub-command of gooftool. '
Ting Shen18a06382016-08-30 16:18:21 +0800222 'e.g. "gooftool verify --waive_list verify_tpm clear_gbb_flags".')
223
Wei-Han Chen60c5d332017-01-05 17:15:10 +0800224_skip_list_cmd_arg = CmdArg(
225 '--skip_list', nargs='*', default=[], metavar='SUBCMD',
You-Cheng Syu8fc2a602017-12-22 17:05:05 +0800226 help='A list of skipped checks, separated by whitespace. '
227 'Each item should be a sub-command of gooftool. '
Wei-Han Chen60c5d332017-01-05 17:15:10 +0800228 'e.g. "gooftool verify --skip_list verify_tpm clear_gbb_flags".')
229
Wei-Han Cheneb4f9a22018-03-09 14:52:23 +0800230_rlz_embargo_end_date_offset_cmd_arg = CmdArg(
231 '--embargo_offset', type=int, default=7, choices=xrange(7, 15),
232 help='Change the offset of embargo end date, cannot less than 7 days or '
233 'more than 14 days.')
234
Marco Chena681b2e2018-08-31 11:41:41 +0800235_no_ectool_cmd_arg = CmdArg(
236 '--no_ectool', action='store_false', dest='has_ectool',
237 help='There is no ectool utility so tests rely on ectool should be '
238 'skipped.')
Tammo Spalink8fab5312012-05-28 18:33:30 +0800239
chuntsenaf1232f2019-03-20 15:45:54 +0800240_no_generate_mfg_date_cmd_arg = CmdArg(
241 '--no_generate_mfg_date', action='store_false', dest='generate_mfg_date',
242 help='Do not generate manufacturing date nor write mfg_date into VPD.')
243
244
Yilun Lin34f54802017-11-16 11:58:25 +0800245@Command(
246 'verify_ec_key',
247 _ec_pubkey_path_cmd_arg,
248 _ec_pubkey_hash_cmd_arg)
249def VerifyECKey(options):
250 """Verify EC key."""
251 return GetGooftool(options).VerifyECKey(
252 options.ec_pubkey_path, options.ec_pubkey_hash)
253
254
Hung-Te Line1d80f62016-03-31 14:58:13 +0800255@Command('verify_keys',
Hung-Te Lincdb96522016-04-15 16:51:10 +0800256 _release_rootfs_cmd_arg,
257 _firmware_path_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800258def VerifyKeys(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800259 """Verify keys in firmware and SSD match."""
Hung-Te Line1d80f62016-03-31 14:58:13 +0800260 return GetGooftool(options).VerifyKeys(
Hung-Te Lincdb96522016-04-15 16:51:10 +0800261 options.release_rootfs, options.firmware_path)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800262
263
264@Command('set_fw_bitmap_locale')
Peter Shihfdf17682017-05-26 11:38:39 +0800265def SetFirmwareBitmapLocale(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800266 """Use VPD locale value to set firmware bitmap default language."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800267
Ricky Lianga70a1202013-03-15 15:03:17 +0800268 (index, locale) = GetGooftool(options).SetFirmwareBitmapLocale()
Andy Cheng2582d292012-12-04 17:38:28 +0800269 logging.info('Firmware bitmap initial locale set to %d (%s).',
270 index, locale)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800271
272
Hung-Te Line1d80f62016-03-31 14:58:13 +0800273@Command('verify_system_time',
Wei-Han Chen2790d2e2019-01-18 21:13:40 +0800274 _release_rootfs_cmd_arg,
275 _rma_mode_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800276def VerifySystemTime(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800277 """Verify system time is later than release filesystem creation time."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800278
Wei-Han Chen2790d2e2019-01-18 21:13:40 +0800279 return GetGooftool(options).VerifySystemTime(options.release_rootfs,
280 rma_mode=options.rma_mode)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800281
282
Hung-Te Line1d80f62016-03-31 14:58:13 +0800283@Command('verify_rootfs',
Hung-Te Lincdb96522016-04-15 16:51:10 +0800284 _release_rootfs_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800285def VerifyRootFs(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800286 """Verify rootfs on SSD is valid by checking hash."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800287
Hung-Te Line1d80f62016-03-31 14:58:13 +0800288 return GetGooftool(options).VerifyRootFs(options.release_rootfs)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800289
Hung-Te Lin56b18402015-01-16 14:52:30 +0800290
Cheng-Yi Chiang676b5292013-06-18 12:05:33 +0800291@Command('verify_tpm')
Peter Shihfdf17682017-05-26 11:38:39 +0800292def VerifyTPM(options):
Cheng-Yi Chiang676b5292013-06-18 12:05:33 +0800293 """Verify TPM is cleared."""
294
295 return GetGooftool(options).VerifyTPM()
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800296
Hung-Te Lin56b18402015-01-16 14:52:30 +0800297
Hung-Te Lindd708d42014-07-11 17:05:01 +0800298@Command('verify_me_locked')
Peter Shihfdf17682017-05-26 11:38:39 +0800299def VerifyManagementEngineLocked(options):
You-Cheng Syu461ec032017-03-06 15:56:58 +0800300 """Verify Management Engine is locked."""
Hung-Te Lindd708d42014-07-11 17:05:01 +0800301
302 return GetGooftool(options).VerifyManagementEngineLocked()
303
Hung-Te Lin56b18402015-01-16 14:52:30 +0800304
Marco Chena681b2e2018-08-31 11:41:41 +0800305@Command('verify_switch_wp',
306 _no_ectool_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800307def VerifyWPSwitch(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800308 """Verify hardware write protection switch is enabled."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800309
Marco Chena681b2e2018-08-31 11:41:41 +0800310 GetGooftool(options).VerifyWPSwitch(options.has_ectool)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800311
312
Hung-Te Lin53c49402017-07-26 13:10:58 +0800313@Command('verify_vpd')
314def VerifyVPD(options):
315 """Verify that VPD values are properly set.
Jon Salzadd90d32014-04-29 16:16:27 +0800316
Hung-Te Lin53c49402017-07-26 13:10:58 +0800317 Check if mandatory fields are set, and deprecated fields don't exist.
Jon Salzadd90d32014-04-29 16:16:27 +0800318 """
Hung-Te Lin53c49402017-07-26 13:10:58 +0800319 return GetGooftool(options).VerifyVPD()
Jon Salzadd90d32014-04-29 16:16:27 +0800320
321
bowgotsai13820f42015-09-10 23:18:04 +0800322@Command('verify_release_channel',
323 _enforced_release_channels_cmd_arg)
Peter Shihfdf17682017-05-26 11:38:39 +0800324def VerifyReleaseChannel(options):
bowgotsai529139c2015-05-30 01:39:49 +0800325 """Verify that release image channel is correct.
326
327 ChromeOS has four channels: canary, dev, beta and stable.
328 The last three channels support image auto-updates, checks
329 that release image channel is one of them.
330 """
bowgotsai13820f42015-09-10 23:18:04 +0800331 return GetGooftool(options).VerifyReleaseChannel(
332 options.enforced_release_channels)
bowgotsai529139c2015-05-30 01:39:49 +0800333
334
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800335@Command('write_protect')
Peter Shihfdf17682017-05-26 11:38:39 +0800336def EnableFwWp(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800337 """Enable then verify firmware write protection."""
Peter Shihfdf17682017-05-26 11:38:39 +0800338 del options # Unused.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800339
Yong Hongdad230a2017-08-30 22:25:19 +0800340 def WriteProtect(fw):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800341 """Calculate protection size, then invoke flashrom.
342
Yong Hongdad230a2017-08-30 22:25:19 +0800343 The region (offset and size) to write protect may be different per chipset
344 and firmware layout, so we have to read the WP_RO section from FMAP to
345 decide that.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800346 """
Hung-Te Lin7ea39e82012-07-31 18:39:33 +0800347 wp_section = 'WP_RO'
Hung-Te Lin7ea39e82012-07-31 18:39:33 +0800348
Yong Hongdad230a2017-08-30 22:25:19 +0800349 fmap_image = fw.GetFirmwareImage(
350 sections=(['FMAP'] if fw.target == crosfw.TARGET_MAIN else None))
351 if not fmap_image.has_section(wp_section):
352 raise Error('Could not find %s firmware section: %s' %
353 (fw.target.upper(), wp_section))
354
355 section_data = fw.GetFirmwareImage(
356 sections=[wp_section]).get_section_area(wp_section)
Peter Shihe6afab32018-09-11 17:16:48 +0800357 ro_offset, ro_size = section_data[0:2]
Yong Hongdad230a2017-08-30 22:25:19 +0800358
359 logging.debug('write protecting %s [off=%x size=%x]', fw.target.upper(),
Hung-Te Lin7ea39e82012-07-31 18:39:33 +0800360 ro_offset, ro_size)
Yong Hongdad230a2017-08-30 22:25:19 +0800361 crosfw.Flashrom(fw.target).EnableWriteProtection(ro_offset, ro_size)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800362
Yong Hongdad230a2017-08-30 22:25:19 +0800363 WriteProtect(crosfw.LoadMainFirmware())
Andy Cheng0465d132013-03-20 12:12:06 +0800364 event_log.Log('wp', fw='main')
Hung-Te Lind3b124c2016-10-20 22:22:31 +0800365
366 # Some EC (mostly PD) does not support "RO NOW". Instead they will only set
367 # "RO_AT_BOOT" when you request to enable RO (These platforms consider
368 # --wp-range with right range identical to --wp-enable), and requires a
369 # 'ectool reboot_ec RO at-shutdown; reboot' to let the RO take effect.
Hung-Te Lin0d10b562016-12-28 10:58:07 +0800370 # After reboot, "flashrom -p host --wp-status" will return protected range.
Hung-Te Lind3b124c2016-10-20 22:22:31 +0800371 # If you don't reboot, returned range will be (0, 0), and running command
372 # "ectool flashprotect" will not have RO_NOW.
373
Yong Hongdad230a2017-08-30 22:25:19 +0800374 for fw in [crosfw.LoadEcFirmware(), crosfw.LoadPDFirmware()]:
375 if fw.GetChipId() is None:
Hung-Te Lind3b124c2016-10-20 22:22:31 +0800376 logging.warning('%s not write protected (seems there is no %s flash).',
Yong Hongdad230a2017-08-30 22:25:19 +0800377 fw.target.upper(), fw.target.upper())
Hung-Te Lind3b124c2016-10-20 22:22:31 +0800378 continue
Yong Hongdad230a2017-08-30 22:25:19 +0800379 WriteProtect(fw)
380 event_log.Log('wp', fw=fw.target)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800381
382
383@Command('clear_gbb_flags')
Peter Shihfdf17682017-05-26 11:38:39 +0800384def ClearGBBFlags(options):
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800385 """Zero out the GBB flags, in preparation for transition to release state.
386
387 No GBB flags are set in release/shipping state, but they are useful
Hung-Te Lin879cff42017-06-19 12:46:37 +0800388 for factory/development. See "futility gbb --flags" for details.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800389 """
Andy Cheng7a76cb82012-11-19 18:08:19 +0800390
Ricky Lianga70a1202013-03-15 15:03:17 +0800391 GetGooftool(options).ClearGBBFlags()
Andy Cheng0465d132013-03-20 12:12:06 +0800392 event_log.Log('clear_gbb_flags')
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800393
394
Jon Salzaa3a30e2013-05-15 15:56:28 +0800395@Command('clear_factory_vpd_entries')
Peter Shihfdf17682017-05-26 11:38:39 +0800396def ClearFactoryVPDEntries(options):
Jon Salzaa3a30e2013-05-15 15:56:28 +0800397 """Clears factory.* items in the RW VPD."""
398 entries = GetGooftool(options).ClearFactoryVPDEntries()
399 event_log.Log('clear_factory_vpd_entries', entries=FilterDict(entries))
400
401
Mattias Nisslercca761b2015-04-15 21:53:04 +0200402@Command('generate_stable_device_secret')
Peter Shihfdf17682017-05-26 11:38:39 +0800403def GenerateStableDeviceSecret(options):
You-Cheng Syu461ec032017-03-06 15:56:58 +0800404 """Generates a fresh stable device secret and stores it in the RO VPD."""
Mattias Nisslercca761b2015-04-15 21:53:04 +0200405 GetGooftool(options).GenerateStableDeviceSecret()
406 event_log.Log('generate_stable_device_secret')
407
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800408
Yves Arrouyeb49b31e2019-03-06 21:51:52 -0800409@Command('cr50_set_sn_bits_and_board_id')
410def Cr50SetSnBitsAndBoardId(options):
411 """Set the serial number bits, board id and flags on the Cr50 chip."""
412 GetGooftool(options).Cr50SetSnBitsAndBoardId()
413 event_log.Log('cr50_set_sn_bits_and_board_id')
Shen-En Shihd078a7c2017-08-04 13:33:49 +0800414
415
Marco Chen20c885d2018-10-04 17:22:03 +0800416@Command('cr50_disable_factory_mode')
Marco Chen44a666d2018-07-13 21:01:50 +0800417def Cr50DisableFactoryMode(options):
Cheng-Han Yang08333af2017-12-18 17:22:38 +0800418 """Reset Cr50 state back to default state after RMA."""
Marco Chen44a666d2018-07-13 21:01:50 +0800419 return GetGooftool(options).Cr50DisableFactoryMode()
Cheng-Han Yang08333af2017-12-18 17:22:38 +0800420
421
Earl Ou564a7872016-10-05 10:22:00 +0800422@Command('enable_release_partition',
423 CmdArg('--release_rootfs',
424 help=('path to the release rootfs device. If not specified, '
425 'the default (5th) partition will be used.')))
426def EnableReleasePartition(options):
427 """Enables a release image partition on the disk."""
428 GetGooftool(options).EnableReleasePartition(options.release_rootfs)
429
430
Shun-Hsing Oucdc64e12015-01-14 22:07:33 +0800431@Command('wipe_in_place',
432 CmdArg('--fast', action='store_true',
Shun-Hsing Ou8d3c40a2015-10-08 18:16:08 +0800433 help='use non-secure but faster wipe method.'),
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800434 _shopfloor_url_args_cmd_arg,
435 _station_ip_cmd_arg,
436 _station_port_cmd_arg,
437 _wipe_finish_token_cmd_arg)
Shun-Hsing Oucdc64e12015-01-14 22:07:33 +0800438def WipeInPlace(options):
439 """Start factory wipe directly without reboot."""
440
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800441 GetGooftool(options).WipeInPlace(options.fast,
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800442 options.shopfloor_url,
443 options.station_ip,
444 options.station_port,
445 options.wipe_finish_token)
Mattias Nisslercca761b2015-04-15 21:53:04 +0200446
Wei-Han Chen7dc6d132016-04-06 11:11:53 +0800447@Command('wipe_init',
Wei-Han Chen0a3320e2016-04-23 01:32:07 +0800448 CmdArg('--wipe_args', help='arguments for clobber-state'),
449 CmdArg('--state_dev', help='path to stateful partition device'),
450 CmdArg('--root_disk', help='path to primary device'),
451 CmdArg('--old_root', help='path to old root'),
Wei-Han Chen0a3320e2016-04-23 01:32:07 +0800452 _shopfloor_url_args_cmd_arg,
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800453 _release_rootfs_cmd_arg,
454 _station_ip_cmd_arg,
455 _station_port_cmd_arg,
Wei-Han Chenf3924112019-02-25 14:52:58 +0800456 _wipe_finish_token_cmd_arg,
457 _keep_developer_mode_flag_after_clobber_state_cmd_arg)
Wei-Han Chen7dc6d132016-04-06 11:11:53 +0800458def WipeInit(options):
Wei-Han Chenf3924112019-02-25 14:52:58 +0800459 GetGooftool(options).WipeInit(
460 options.wipe_args,
461 options.shopfloor_url,
462 options.state_dev,
463 options.release_rootfs,
464 options.root_disk,
465 options.old_root,
466 options.station_ip,
467 options.station_port,
468 options.wipe_finish_token,
469 options.keep_developer_mode_flag_after_clobber_state)
Wei-Han Chen7dc6d132016-04-06 11:11:53 +0800470
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800471@Command('verify',
Hung-Te Lin6d827542012-07-19 11:50:41 +0800472 CmdArg('--no_write_protect', action='store_true',
473 help='Do not check write protection switch state.'),
Tammo Spalink95c43732012-07-25 15:57:14 -0700474 _hwid_status_list_cmd_arg,
Jon Salzce124fb2012-10-02 17:42:03 +0800475 _hwdb_path_cmd_arg,
Yong Hong5408f652017-07-11 19:20:25 +0800476 _project_cmd_arg,
Jon Salzce124fb2012-10-02 17:42:03 +0800477 _probe_results_cmd_arg,
Cheng-Yi Chiang406ad912013-11-14 16:51:33 +0800478 _hwid_cmd_arg,
Yong Hong68a0e0d2017-12-20 19:06:54 +0800479 _hwid_run_vpd_cmd_arg,
480 _hwid_vpd_data_file_cmd_arg,
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800481 _rma_mode_cmd_arg,
bowgotsai13820f42015-09-10 23:18:04 +0800482 _cros_core_cmd_arg,
Yilun Lin599833f2017-12-22 14:07:46 +0800483 _chromebox_cmd_arg,
Yilun Lin34f54802017-11-16 11:58:25 +0800484 _ec_pubkey_path_cmd_arg,
485 _ec_pubkey_hash_cmd_arg,
Hung-Te Lincdb96522016-04-15 16:51:10 +0800486 _release_rootfs_cmd_arg,
487 _firmware_path_cmd_arg,
Ting Shen18a06382016-08-30 16:18:21 +0800488 _enforced_release_channels_cmd_arg,
Wei-Han Chen60c5d332017-01-05 17:15:10 +0800489 _waive_list_cmd_arg,
Marco Chena681b2e2018-08-31 11:41:41 +0800490 _skip_list_cmd_arg,
491 _no_ectool_cmd_arg)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800492def Verify(options):
493 """Verifies if whole factory process is ready for finalization.
494
495 This routine performs all the necessary checks to make sure the
496 device is ready to be finalized, but does not modify state. These
497 checks include dev switch, firmware write protection switch, hwid,
498 system time, keys, and root file system.
499 """
Andy Cheng7a76cb82012-11-19 18:08:19 +0800500
Hung-Te Lin6d827542012-07-19 11:50:41 +0800501 if not options.no_write_protect:
Ricky Lianga70a1202013-03-15 15:03:17 +0800502 VerifyWPSwitch(options)
Hung-Te Lindd708d42014-07-11 17:05:01 +0800503 VerifyManagementEngineLocked(options)
Ting Shen129fa6f2016-09-02 12:22:24 +0800504 VerifyHWID(options)
Ricky Lianga70a1202013-03-15 15:03:17 +0800505 VerifySystemTime(options)
Yilun Lin599833f2017-12-22 14:07:46 +0800506 if options.chromebox:
507 VerifyECKey(options)
Ricky Lianga70a1202013-03-15 15:03:17 +0800508 VerifyKeys(options)
509 VerifyRootFs(options)
Cheng-Yi Chiang676b5292013-06-18 12:05:33 +0800510 VerifyTPM(options)
Hung-Te Lin53c49402017-07-26 13:10:58 +0800511 VerifyVPD(options)
bowgotsai529139c2015-05-30 01:39:49 +0800512 VerifyReleaseChannel(options)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800513
Hung-Te Lin56b18402015-01-16 14:52:30 +0800514
Jon Salzfe9036f2014-01-16 14:11:23 +0800515@Command('untar_stateful_files')
Hung-Te Lin388bce22014-06-03 19:56:40 +0800516def UntarStatefulFiles(unused_options):
Jon Salzfe9036f2014-01-16 14:11:23 +0800517 """Untars stateful files from stateful_files.tar.xz on stateful partition.
518
519 If that file does not exist (which should only be R30 and earlier),
520 this is a no-op.
521 """
Hung-Te Lin2333f3f2016-08-24 17:56:48 +0800522 # Path to stateful partition on device.
523 device_stateful_path = '/mnt/stateful_partition'
524 tar_file = os.path.join(device_stateful_path, 'stateful_files.tar.xz')
Jon Salzfe9036f2014-01-16 14:11:23 +0800525 if os.path.exists(tar_file):
Hung-Te Lin2333f3f2016-08-24 17:56:48 +0800526 Spawn(['tar', 'xf', tar_file], cwd=device_stateful_path,
Jon Salzfe9036f2014-01-16 14:11:23 +0800527 log=True, check_call=True)
528 else:
529 logging.warning('No stateful files at %s', tar_file)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800530
Jon Salz40b9f822014-07-25 16:39:55 +0800531
532@Command('log_source_hashes')
Peter Shihfdf17682017-05-26 11:38:39 +0800533def LogSourceHashes(options):
Jon Salz40b9f822014-07-25 16:39:55 +0800534 """Logs hashes of source files in the factory toolkit."""
Peter Shihfdf17682017-05-26 11:38:39 +0800535 del options # Unused.
Jon Salze60307f2014-08-05 16:20:00 +0800536 # WARNING: The following line is necessary to validate the integrity
537 # of the factory software. Do not remove or modify it.
538 #
539 # 警告:此行会验证工厂软件的完整性,禁止删除或修改。
Wei-Han Chena5c01a02016-04-23 19:27:19 +0800540 factory_par = sys_utils.GetRunningFactoryPythonArchivePath()
541 if factory_par:
542 event_log.Log(
543 'source_hashes',
544 **file_utils.HashPythonArchive(factory_par))
545 else:
546 event_log.Log(
547 'source_hashes',
Peter Shihad166772017-05-31 11:36:17 +0800548 **file_utils.HashSourceTree(os.path.join(paths.FACTORY_DIR, 'py')))
Jon Salz40b9f822014-07-25 16:39:55 +0800549
550
Tammo Spalink86a61c62012-05-25 15:10:35 +0800551@Command('log_system_details')
Peter Shihfdf17682017-05-26 11:38:39 +0800552def LogSystemDetails(options):
Tammo Spalink86a61c62012-05-25 15:10:35 +0800553 """Write miscellaneous system details to the event log."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800554
Ricky Liang43b879b2014-02-24 11:36:55 +0800555 event_log.Log('system_details', **GetGooftool(options).GetSystemDetails())
Tammo Spalink86a61c62012-05-25 15:10:35 +0800556
557
Jon Salza88b83b2013-05-27 20:00:35 +0800558def CreateReportArchiveBlob(*args, **kwargs):
559 """Creates a report archive and returns it as a blob.
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800560
Jon Salza88b83b2013-05-27 20:00:35 +0800561 Args:
562 See CreateReportArchive.
Andy Cheng7a76cb82012-11-19 18:08:19 +0800563
Jon Salza88b83b2013-05-27 20:00:35 +0800564 Returns:
565 An xmlrpclib.Binary object containing a .tar.xz file.
566 """
Wei-Han Chen47416612016-09-14 17:41:52 +0800567 report_archive = CreateReportArchive(*args, **kwargs)
568 try:
You-Cheng Syuf0f4be12017-12-05 16:33:53 +0800569 return xmlrpclib.Binary(file_utils.ReadFile(report_archive))
Wei-Han Chen47416612016-09-14 17:41:52 +0800570 finally:
571 os.unlink(report_archive)
Jon Salza88b83b2013-05-27 20:00:35 +0800572
573
574def CreateReportArchive(device_sn=None, add_file=None):
575 """Creates a report archive in a temporary directory.
576
577 Args:
578 device_sn: The device serial number (optional).
579 add_file: A list of files to add (optional).
580
581 Returns:
582 Path to the archive.
583 """
Hung-Te Lin6bd16472012-06-20 16:26:47 +0800584 def NormalizeAsFileName(token):
585 return re.sub(r'\W+', '', token).strip()
Jon Salza88b83b2013-05-27 20:00:35 +0800586
587 target_name = '%s%s.tar.xz' % (
588 time.strftime('%Y%m%dT%H%M%SZ',
589 time.gmtime()),
Hung-Te Lin56b18402015-01-16 14:52:30 +0800590 ('' if device_sn is None else
591 '_' + NormalizeAsFileName(device_sn)))
Tammo Spalink86a61c62012-05-25 15:10:35 +0800592 target_path = os.path.join(gettempdir(), target_name)
Jon Salza88b83b2013-05-27 20:00:35 +0800593
Tammo Spalink86a61c62012-05-25 15:10:35 +0800594 # Intentionally ignoring dotfiles in EVENT_LOG_DIR.
Andy Cheng0465d132013-03-20 12:12:06 +0800595 tar_cmd = 'cd %s ; tar cJf %s *' % (event_log.EVENT_LOG_DIR, target_path)
Peter Shihb4e49352017-05-25 17:35:11 +0800596 tar_cmd += ' %s' % paths.FACTORY_LOG_PATH
Jon Salza88b83b2013-05-27 20:00:35 +0800597 if add_file:
598 for f in add_file:
Jon Salz65266432012-07-30 19:02:49 +0800599 # Require absolute paths since the tar command may change the
600 # directory.
601 if not f.startswith('/'):
602 raise Error('Not an absolute path: %s' % f)
603 if not os.path.exists(f):
604 raise Error('File does not exist: %s' % f)
Wei-Han Chen4b755022017-01-04 10:51:52 +0800605 tar_cmd += ' %s' % pipes.quote(f)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800606 cmd_result = Shell(tar_cmd)
Jon Salzff88c022012-11-03 12:19:58 +0800607
608 if ((cmd_result.status == 1) and
609 all((x == '' or
610 'file changed as we read it' in x or
611 "Removing leading `/' from member names" in x)
612 for x in cmd_result.stderr.split('\n'))):
613 # That's OK. Make sure it's valid though.
Vic Yang85199e72013-01-28 14:33:11 +0800614 Spawn(['tar', 'tfJ', target_path], check_call=True, log=True,
Jon Salzff88c022012-11-03 12:19:58 +0800615 ignore_stdout=True)
616 elif not cmd_result.success:
Tammo Spalink86a61c62012-05-25 15:10:35 +0800617 raise Error('unable to tar event logs, cmd %r failed, stderr: %r' %
618 (tar_cmd, cmd_result.stderr))
Jon Salzff88c022012-11-03 12:19:58 +0800619
Jon Salza88b83b2013-05-27 20:00:35 +0800620 return target_path
621
622_upload_method_cmd_arg = CmdArg(
623 '--upload_method', metavar='METHOD:PARAM',
624 help=('How to perform the upload. METHOD should be one of '
625 '{ftp, shopfloor, ftps, cpfe}.'))
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800626_upload_max_retry_times_arg = CmdArg(
627 '--upload_max_retry_times', type=int, default=0,
628 help='Number of tries to upload. 0 to retry infinitely.')
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800629_upload_retry_interval_arg = CmdArg(
630 '--upload_retry_interval', type=int, default=None,
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800631 help='Retry interval in seconds.')
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800632_upload_allow_fail_arg = CmdArg(
633 '--upload_allow_fail', action='store_true',
634 help='Continue finalize if report upload fails.')
Jon Salza88b83b2013-05-27 20:00:35 +0800635_add_file_cmd_arg = CmdArg(
636 '--add_file', metavar='FILE', action='append',
637 help='Extra file to include in report (must be an absolute path)')
638
Hung-Te Lin56b18402015-01-16 14:52:30 +0800639
Jon Salza88b83b2013-05-27 20:00:35 +0800640@Command('upload_report',
641 _upload_method_cmd_arg,
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800642 _upload_max_retry_times_arg,
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800643 _upload_retry_interval_arg,
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800644 _upload_allow_fail_arg,
Jon Salza88b83b2013-05-27 20:00:35 +0800645 _add_file_cmd_arg)
646def UploadReport(options):
647 """Create a report containing key device details."""
Yong Hong65bda312018-12-13 20:05:58 +0800648 ro_vpd = vpd.VPDTool().GetAllData(partition=vpd.VPD_READONLY_PARTITION_NAME)
Jon Salza88b83b2013-05-27 20:00:35 +0800649 device_sn = ro_vpd.get('serial_number', None)
650 if device_sn is None:
651 logging.warning('RO_VPD missing device serial number')
Chun-Ta Lin53cbbd52016-06-08 21:42:19 +0800652 device_sn = 'MISSING_SN_' + time_utils.TimedUUID()
Jon Salza88b83b2013-05-27 20:00:35 +0800653 target_path = CreateReportArchive(device_sn)
654
Tammo Spalink86a61c62012-05-25 15:10:35 +0800655 if options.upload_method is None or options.upload_method == 'none':
656 logging.warning('REPORT UPLOAD SKIPPED (report left at %s)', target_path)
657 return
658 method, param = options.upload_method.split(':', 1)
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800659
660 if options.upload_retry_interval is not None:
661 retry_interval = options.upload_retry_interval
662 else:
663 retry_interval = report_upload.DEFAULT_RETRY_INTERVAL
664
Tammo Spalink86a61c62012-05-25 15:10:35 +0800665 if method == 'shopfloor':
You-Cheng Syuf0f4be12017-12-05 16:33:53 +0800666 report_upload.ShopFloorUpload(
667 target_path, param,
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800668 'GRT' if options.command_name == 'finalize' else None,
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800669 max_retry_times=options.upload_max_retry_times,
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800670 retry_interval=retry_interval,
671 allow_fail=options.upload_allow_fail)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800672 elif method == 'ftp':
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800673 report_upload.FtpUpload(target_path, 'ftp:' + param,
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800674 max_retry_times=options.upload_max_retry_times,
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800675 retry_interval=retry_interval,
676 allow_fail=options.upload_allow_fail)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800677 elif method == 'ftps':
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800678 report_upload.CurlUrlUpload(target_path, '--ftp-ssl-reqd ftp:%s' % param,
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800679 max_retry_times=options.upload_max_retry_times,
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800680 retry_interval=retry_interval,
681 allow_fail=options.upload_allow_fail)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800682 elif method == 'cpfe':
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800683 report_upload.CpfeUpload(target_path, pipes.quote(param),
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800684 max_retry_times=options.upload_max_retry_times,
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800685 retry_interval=retry_interval,
686 allow_fail=options.upload_allow_fail)
Tammo Spalink86a61c62012-05-25 15:10:35 +0800687 else:
Peter Shihbf6f22b2018-02-26 14:05:28 +0800688 raise Error('unknown report upload method %r' % method)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800689
690
691@Command('finalize',
Hung-Te Lin6d827542012-07-19 11:50:41 +0800692 CmdArg('--no_write_protect', action='store_true',
693 help='Do not enable firmware write protection.'),
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800694 CmdArg('--fast', action='store_true',
695 help='use non-secure but faster wipe method.'),
Yong Hongb2926bd2018-10-12 14:11:14 +0800696 _no_ectool_cmd_arg,
Shun-Hsing Oudb407d62015-11-11 11:03:59 +0800697 _shopfloor_url_args_cmd_arg,
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800698 _hwdb_path_cmd_arg,
Tammo Spalink95c43732012-07-25 15:57:14 -0700699 _hwid_status_list_cmd_arg,
Jon Salz65266432012-07-30 19:02:49 +0800700 _upload_method_cmd_arg,
Cheng-Han Yang31a3bd92018-08-23 19:04:04 +0800701 _upload_max_retry_times_arg,
Cheng-Han Yang3d4b0c02018-08-23 18:24:14 +0800702 _upload_retry_interval_arg,
Cheng-Han Yangc1697e22018-08-24 15:22:39 +0800703 _upload_allow_fail_arg,
Jon Salzce124fb2012-10-02 17:42:03 +0800704 _add_file_cmd_arg,
705 _probe_results_cmd_arg,
Cheng-Yi Chiang406ad912013-11-14 16:51:33 +0800706 _hwid_cmd_arg,
Yong Hong68a0e0d2017-12-20 19:06:54 +0800707 _hwid_run_vpd_cmd_arg,
708 _hwid_vpd_data_file_cmd_arg,
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800709 _rma_mode_cmd_arg,
bowgotsai13820f42015-09-10 23:18:04 +0800710 _cros_core_cmd_arg,
Yilun Lin599833f2017-12-22 14:07:46 +0800711 _chromebox_cmd_arg,
Yilun Lin34f54802017-11-16 11:58:25 +0800712 _ec_pubkey_path_cmd_arg,
713 _ec_pubkey_hash_cmd_arg,
Hung-Te Lincdb96522016-04-15 16:51:10 +0800714 _release_rootfs_cmd_arg,
715 _firmware_path_cmd_arg,
Wei-Han Chenbe1355a2016-04-24 19:31:03 +0800716 _enforced_release_channels_cmd_arg,
717 _station_ip_cmd_arg,
718 _station_port_cmd_arg,
Ting Shen18a06382016-08-30 16:18:21 +0800719 _wipe_finish_token_cmd_arg,
Wei-Han Cheneb4f9a22018-03-09 14:52:23 +0800720 _rlz_embargo_end_date_offset_cmd_arg,
Wei-Han Chen60c5d332017-01-05 17:15:10 +0800721 _waive_list_cmd_arg,
chuntsenaf1232f2019-03-20 15:45:54 +0800722 _skip_list_cmd_arg,
723 _no_generate_mfg_date_cmd_arg)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800724def Finalize(options):
725 """Verify system readiness and trigger transition into release state.
726
Jon Salzaa3a30e2013-05-15 15:56:28 +0800727 This routine does the following:
728 - Verifies system state (see verify command)
Jon Salzfe9036f2014-01-16 14:11:23 +0800729 - Untars stateful_files.tar.xz, if it exists, in the stateful partition, to
730 initialize files such as the CRX cache
Jon Salzaa3a30e2013-05-15 15:56:28 +0800731 - Modifies firmware bitmaps to match locale
732 - Clears all factory-friendly flags from the GBB
733 - Removes factory-specific entries from RW_VPD (factory.*)
734 - Enables firmware write protection (cannot rollback after this)
735 - Uploads system logs & reports
Earl Ou51182222016-09-09 12:16:48 +0800736 - Wipes the testing kernel, rootfs, and stateful partition
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800737 """
Wei-Han Cheneb4f9a22018-03-09 14:52:23 +0800738 if not options.rma_mode:
739 # Write VPD values related to RLZ ping into VPD.
740 GetGooftool(options).WriteVPDForRLZPing(options.embargo_offset)
chuntsenaf1232f2019-03-20 15:45:54 +0800741 if options.generate_mfg_date:
742 GetGooftool(options).WriteVPDForMFGDate()
Yves Arrouyeb49b31e2019-03-06 21:51:52 -0800743 Cr50SetSnBitsAndBoardId(options)
Marco Chen44a666d2018-07-13 21:01:50 +0800744 Cr50DisableFactoryMode(options)
Marco Chen9d0631c2018-08-31 10:52:44 +0800745 Verify(options)
Jon Salz40b9f822014-07-25 16:39:55 +0800746 LogSourceHashes(options)
Jon Salzfe9036f2014-01-16 14:11:23 +0800747 UntarStatefulFiles(options)
Chih-Yu Huang714dbc42015-07-21 16:42:16 +0800748 if options.cros_core:
749 logging.info('SetFirmwareBitmapLocale is skipped for ChromeOS Core device.')
750 else:
751 SetFirmwareBitmapLocale(options)
Jon Salzaa3a30e2013-05-15 15:56:28 +0800752 ClearFactoryVPDEntries(options)
Mattias Nisslercca761b2015-04-15 21:53:04 +0200753 GenerateStableDeviceSecret(options)
Shen-En Shih3e079b22017-09-11 05:43:09 -0700754 ClearGBBFlags(options)
Hung-Te Lin6d827542012-07-19 11:50:41 +0800755 if options.no_write_protect:
756 logging.warn('WARNING: Firmware Write Protection is SKIPPED.')
Andy Cheng0465d132013-03-20 12:12:06 +0800757 event_log.Log('wp', fw='both', status='skipped')
Hung-Te Lin6d827542012-07-19 11:50:41 +0800758 else:
Wei-Han Chenba21f512016-10-14 18:52:33 +0800759 EnableFwWp(options)
Jon Salza0f58e02012-05-29 19:33:39 +0800760 LogSystemDetails(options)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800761 UploadReport(options)
Earl Ou51182222016-09-09 12:16:48 +0800762
763 event_log.Log('wipe_in_place')
764 wipe_args = []
Earl Ou51182222016-09-09 12:16:48 +0800765 if options.shopfloor_url:
766 wipe_args += ['--shopfloor_url', options.shopfloor_url]
767 if options.fast:
768 wipe_args += ['--fast']
769 if options.station_ip:
770 wipe_args += ['--station_ip', options.station_ip]
771 if options.station_port:
772 wipe_args += ['--station_port', options.station_port]
773 if options.wipe_finish_token:
774 wipe_args += ['--wipe_finish_token', options.wipe_finish_token]
775 ExecFactoryPar('gooftool', 'wipe_in_place', *wipe_args)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800776
777
Ting Shen129fa6f2016-09-02 12:22:24 +0800778@Command('verify_hwid',
779 _probe_results_cmd_arg,
780 _hwdb_path_cmd_arg,
781 _hwid_cmd_arg,
Yong Hong68a0e0d2017-12-20 19:06:54 +0800782 _hwid_run_vpd_cmd_arg,
783 _hwid_vpd_data_file_cmd_arg,
Ting Shen129fa6f2016-09-02 12:22:24 +0800784 _rma_mode_cmd_arg)
785def VerifyHWID(options):
Ricky Liangc662be32013-12-24 11:50:23 +0800786 """A simple wrapper that calls out to HWID utils to verify version 3 HWID.
Ricky Liang53390232013-03-08 15:37:57 +0800787
Ricky Liangc662be32013-12-24 11:50:23 +0800788 This is mainly for Gooftool to verify v3 HWID during finalize. For testing
789 and development purposes, please use `hwid` command.
Ricky Liang53390232013-03-08 15:37:57 +0800790 """
Yong Hongada8e0e2018-01-04 16:36:21 +0800791 database = GetGooftool(options).db
Yong Hong68a0e0d2017-12-20 19:06:54 +0800792
Yong Hongada8e0e2018-01-04 16:36:21 +0800793 encoded_string = options.hwid or GetGooftool(options).ReadHWID()
794
795 probed_results = hwid_utils.GetProbedResults(infile=options.probe_results)
Yong Hong2c39bf22018-01-24 22:24:11 +0800796 device_info = hwid_utils.GetDeviceInfo()
Yong Hong65bda312018-12-13 20:05:58 +0800797 vpd_data = hwid_utils.GetVPDData(run_vpd=options.hwid_run_vpd,
798 infile=options.hwid_vpd_data_file)
Ricky Liang53390232013-03-08 15:37:57 +0800799
Hung-Te Lin11052952015-03-18 13:48:59 +0800800 event_log.Log('probed_results', probed_results=FilterDict(probed_results))
Yong Hong65bda312018-12-13 20:05:58 +0800801 event_log.Log('vpd', vpd=FilterDict(vpd_data))
Ricky Liang53390232013-03-08 15:37:57 +0800802
Yong Hong2c39bf22018-01-24 22:24:11 +0800803 hwid_utils.VerifyHWID(database, encoded_string, probed_results,
Yong Hong65bda312018-12-13 20:05:58 +0800804 device_info, vpd_data, options.rma_mode)
Ricky Liang53390232013-03-08 15:37:57 +0800805
Ricky Liangc662be32013-12-24 11:50:23 +0800806 event_log.Log('verified_hwid', hwid=encoded_string)
Ricky Liang53390232013-03-08 15:37:57 +0800807
808
henryhsu44d793a2013-07-20 00:07:38 +0800809@Command('get_firmware_hash',
Marco Chence70b132018-05-03 23:43:39 +0800810 CmdArg('--file', required=True, metavar='FILE', help='Firmware File.'))
henryhsu44d793a2013-07-20 00:07:38 +0800811def GetFirmwareHash(options):
henryhsuf6f835c2013-07-20 20:49:25 +0800812 """Get firmware hash from a file"""
henryhsu44d793a2013-07-20 00:07:38 +0800813 if os.path.exists(options.file):
Cheng-Han Yang2c668ae2018-04-18 22:31:07 +0800814 value_dict = chromeos_firmware.CalculateFirmwareHashes(options.file)
815 for key, value in value_dict.iteritems():
816 print ' %s: %s' % (key, value)
henryhsu44d793a2013-07-20 00:07:38 +0800817 else:
818 raise Error('File does not exist: %s' % options.file)
819
henryhsuf6f835c2013-07-20 20:49:25 +0800820
Peter Shihfdf17682017-05-26 11:38:39 +0800821def main():
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800822 """Run sub-command specified by the command line args."""
Andy Cheng7a76cb82012-11-19 18:08:19 +0800823
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800824 options = ParseCmdline(
Ting Shen129fa6f2016-09-02 12:22:24 +0800825 'Perform Google required factory tests.',
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800826 CmdArg('-l', '--log', metavar='PATH',
827 help='Write logs to this file.'),
Jon Salza4bea382012-10-29 13:00:34 +0800828 CmdArg('--suppress-event-logs', action='store_true',
829 help='Suppress event logging.'),
Wei-Han Chenaff56232016-04-16 09:17:59 +0800830 CmdArg('--phase', default=None,
831 help=('override phase for phase checking (defaults to the current '
832 'as returned by the "factory phase" command)')),
Tammo Spalink8fab5312012-05-28 18:33:30 +0800833 verbosity_cmd_arg)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800834 SetupLogging(options.verbosity, options.log)
Andy Cheng0465d132013-03-20 12:12:06 +0800835 event_log.SetGlobalLoggerDefaultPrefix('gooftool')
836 event_log.GetGlobalLogger().suppress = options.suppress_event_logs
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800837 logging.debug('gooftool options: %s', repr(options))
Wei-Han Chenaff56232016-04-16 09:17:59 +0800838
839 phase.OverridePhase(options.phase)
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800840 try:
841 logging.debug('GOOFTOOL command %r', options.command_name)
842 options.command(options)
843 logging.info('GOOFTOOL command %r SUCCESS', options.command_name)
Peter Shih6674ecf2018-03-29 14:04:57 +0800844 except Error as e:
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800845 logging.exception(e)
846 sys.exit('GOOFTOOL command %r ERROR: %s' % (options.command_name, e))
Peter Shih6674ecf2018-03-29 14:04:57 +0800847 except Exception as e:
Tammo Spalink9a96b8a2012-04-03 11:10:41 +0800848 logging.exception(e)
849 sys.exit('UNCAUGHT RUNTIME EXCEPTION %s' % e)
850
851
852if __name__ == '__main__':
Peter Shihfdf17682017-05-26 11:38:39 +0800853 main()