1 /*
2  * Copyright (C) 2008 The Android Open Source Project
3  *
4  * Licensed under the Apache License, Version 2.0 (the "License");
5  * you may not use this file except in compliance with the License.
6  * You may obtain a copy of the License at
7  *
8  *      http://www.apache.org/licenses/LICENSE-2.0
9  *
10  * Unless required by applicable law or agreed to in writing, software
11  * distributed under the License is distributed on an "AS IS" BASIS,
12  * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13  * See the License for the specific language governing permissions and
14  * limitations under the License.
15  */
16 
17 #include <errno.h>
18 #include <fcntl.h>
19 #include <poll.h>
20 #include <signal.h>
21 #include <stdio.h>
22 #include <stdlib.h>
23 #include <string.h>
24 #include <unistd.h>
25 
26 #include <sys/select.h>
27 #include <sys/time.h>
28 #include <sys/types.h>
29 #include <sys/un.h>
30 
31 #include "Utils.h"
32 #include "android/os/IVold.h"
33 
34 #include <android-base/logging.h>
35 #include <android-base/parsebool.h>
36 #include <android-base/parseint.h>
37 #include <android-base/stringprintf.h>
38 #include <android-base/strings.h>
39 #include <binder/IServiceManager.h>
40 #include <binder/Status.h>
41 #include <utils/Errors.h>
42 
43 #include <private/android_filesystem_config.h>
44 
45 static void usage(char* progname);
46 
getServiceAggressive()47 static android::sp<android::IBinder> getServiceAggressive() {
48     android::sp<android::IBinder> res;
49     auto sm = android::defaultServiceManager();
50     auto name = android::String16("vold");
51     for (int i = 0; i < 5000; i++) {
52         res = sm->checkService(name);
53         if (res) {
54             LOG(VERBOSE) << "Waited " << (i * 10) << "ms for vold";
55             break;
56         }
57         usleep(10000);  // 10ms
58     }
59     return res;
60 }
61 
checkStatus(std::vector<std::string> & cmd,android::binder::Status status)62 static void checkStatus(std::vector<std::string>& cmd, android::binder::Status status) {
63     if (status.isOk()) return;
64     std::string command = ::android::base::Join(cmd, " ");
65     LOG(ERROR) << "Command: " << command << " Failed: " << status.toString8().string();
66     exit(ENOTTY);
67 }
68 
bindkeys(std::vector<std::string> & args,const android::sp<android::os::IVold> & vold)69 static void bindkeys(std::vector<std::string>& args, const android::sp<android::os::IVold>& vold) {
70     std::string raw_bytes;
71     const char* seed_value;
72 
73     seed_value = getenv("SEED_VALUE");
74     if (seed_value == NULL) {
75         LOG(ERROR) << "Empty seed";
76         exit(EINVAL);
77     }
78 
79     android::status_t status = android::vold::HexToStr(seed_value, raw_bytes);
80     if (status != android::OK) {
81         LOG(ERROR) << "Extraction of seed failed: " << status;
82         exit(status);
83     }
84 
85     std::vector<uint8_t> seed{raw_bytes.begin(), raw_bytes.end()};
86     checkStatus(args, vold->setStorageBindingSeed(seed));
87 }
88 
main(int argc,char ** argv)89 int main(int argc, char** argv) {
90     setenv("ANDROID_LOG_TAGS", "*:v", 1);
91     if (getppid() == 1) {
92         // If init is calling us then it's during boot and we should log to kmsg
93         android::base::InitLogging(argv, &android::base::KernelLogger);
94     } else {
95         android::base::InitLogging(argv, &android::base::StderrLogger);
96     }
97     std::vector<std::string> args(argv + 1, argv + argc);
98 
99     if (args.size() > 0 && args[0] == "--wait") {
100         // Just ignore the --wait flag
101         args.erase(args.begin());
102     }
103 
104     if (args.size() < 2) {
105         usage(argv[0]);
106         exit(5);
107     }
108     android::sp<android::IBinder> binder = getServiceAggressive();
109     if (!binder) {
110         LOG(ERROR) << "Failed to obtain vold Binder";
111         exit(EINVAL);
112     }
113     auto vold = android::interface_cast<android::os::IVold>(binder);
114 
115     if (args[0] == "cryptfs" && args[1] == "enablefilecrypto") {
116         checkStatus(args, vold->fbeEnable());
117     } else if (args[0] == "cryptfs" && args[1] == "init_user0") {
118         checkStatus(args, vold->initUser0());
119     } else if (args[0] == "cryptfs" && args[1] == "enablecrypto") {
120         int passwordType = android::os::IVold::PASSWORD_TYPE_DEFAULT;
121         int encryptionFlags = android::os::IVold::ENCRYPTION_FLAG_NO_UI;
122         checkStatus(args, vold->fdeEnable(passwordType, "", encryptionFlags));
123     } else if (args[0] == "cryptfs" && args[1] == "mountdefaultencrypted") {
124         checkStatus(args, vold->mountDefaultEncrypted());
125     } else if (args[0] == "volume" && args[1] == "abort_fuse") {
126         checkStatus(args, vold->abortFuse());
127     } else if (args[0] == "volume" && args[1] == "shutdown") {
128         checkStatus(args, vold->shutdown());
129     } else if (args[0] == "volume" && args[1] == "reset") {
130         checkStatus(args, vold->reset());
131     } else if (args[0] == "cryptfs" && args[1] == "bindkeys") {
132         bindkeys(args, vold);
133     } else if (args[0] == "cryptfs" && args[1] == "mountFstab" && args.size() == 4) {
134         checkStatus(args, vold->mountFstab(args[2], args[3]));
135     } else if (args[0] == "cryptfs" && args[1] == "encryptFstab" && args.size() == 6) {
136         auto shouldFormat = android::base::ParseBool(args[4]);
137         if (shouldFormat == android::base::ParseBoolResult::kError) exit(EINVAL);
138         checkStatus(args, vold->encryptFstab(args[2], args[3],
139                                              shouldFormat == android::base::ParseBoolResult::kTrue,
140                                              args[5]));
141     } else if (args[0] == "checkpoint" && args[1] == "supportsCheckpoint" && args.size() == 2) {
142         bool supported = false;
143         checkStatus(args, vold->supportsCheckpoint(&supported));
144         return supported ? 1 : 0;
145     } else if (args[0] == "checkpoint" && args[1] == "supportsBlockCheckpoint" &&
146                args.size() == 2) {
147         bool supported = false;
148         checkStatus(args, vold->supportsBlockCheckpoint(&supported));
149         return supported ? 1 : 0;
150     } else if (args[0] == "checkpoint" && args[1] == "supportsFileCheckpoint" && args.size() == 2) {
151         bool supported = false;
152         checkStatus(args, vold->supportsFileCheckpoint(&supported));
153         return supported ? 1 : 0;
154     } else if (args[0] == "checkpoint" && args[1] == "startCheckpoint" && args.size() == 3) {
155         int retry;
156         if (!android::base::ParseInt(args[2], &retry)) exit(EINVAL);
157         checkStatus(args, vold->startCheckpoint(retry));
158     } else if (args[0] == "checkpoint" && args[1] == "needsCheckpoint" && args.size() == 2) {
159         bool enabled = false;
160         checkStatus(args, vold->needsCheckpoint(&enabled));
161         return enabled ? 1 : 0;
162     } else if (args[0] == "checkpoint" && args[1] == "needsRollback" && args.size() == 2) {
163         bool enabled = false;
164         checkStatus(args, vold->needsRollback(&enabled));
165         return enabled ? 1 : 0;
166     } else if (args[0] == "checkpoint" && args[1] == "commitChanges" && args.size() == 2) {
167         checkStatus(args, vold->commitChanges());
168     } else if (args[0] == "checkpoint" && args[1] == "prepareCheckpoint" && args.size() == 2) {
169         checkStatus(args, vold->prepareCheckpoint());
170     } else if (args[0] == "checkpoint" && args[1] == "restoreCheckpoint" && args.size() == 3) {
171         checkStatus(args, vold->restoreCheckpoint(args[2]));
172     } else if (args[0] == "checkpoint" && args[1] == "restoreCheckpointPart" && args.size() == 4) {
173         int count;
174         if (!android::base::ParseInt(args[3], &count)) exit(EINVAL);
175         checkStatus(args, vold->restoreCheckpointPart(args[2], count));
176     } else if (args[0] == "checkpoint" && args[1] == "markBootAttempt" && args.size() == 2) {
177         checkStatus(args, vold->markBootAttempt());
178     } else if (args[0] == "checkpoint" && args[1] == "abortChanges" && args.size() == 4) {
179         int retry;
180         if (!android::base::ParseInt(args[2], &retry)) exit(EINVAL);
181         checkStatus(args, vold->abortChanges(args[2], retry != 0));
182     } else if (args[0] == "checkpoint" && args[1] == "resetCheckpoint") {
183         checkStatus(args, vold->resetCheckpoint());
184     } else if (args[0] == "keymaster" && args[1] == "earlyBootEnded") {
185         checkStatus(args, vold->earlyBootEnded());
186     } else {
187         LOG(ERROR) << "Raw commands are no longer supported";
188         exit(EINVAL);
189     }
190     return 0;
191 }
192 
usage(char * progname)193 static void usage(char* progname) {
194     LOG(INFO) << "Usage: " << progname << " [--wait] <system> <subcommand> [args...]";
195 }
196