xref: /aosp_15_r20/system/security/ondevice-signing/include/VerityUtils.h (revision e1997b9af69e3155ead6e072d106a0077849ffba)
1 /*
2  * Copyright (C) 2020 The Android Open Source Project
3  *
4  * Licensed under the Apache License, Version 2.0 (the "License");
5  * you may not use this file except in compliance with the License.
6  * You may obtain a copy of the License at
7  *
8  *      http://www.apache.org/licenses/LICENSE-2.0
9  *
10  * Unless required by applicable law or agreed to in writing, software
11  * distributed under the License is distributed on an "AS IS" BASIS,
12  * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13  * See the License for the specific language governing permissions and
14  * limitations under the License.
15  */
16 
17 #pragma once
18 
19 #include <android-base/result.h>
20 
21 #include <map>
22 #include <string>
23 #include <vector>
24 
25 android::base::Result<std::vector<uint8_t>> createDigest(const std::string& path);
26 android::base::Result<std::string> enableFsVerity(int fd);
27 bool SupportsFsVerity();
28 android::base::Result<std::map<std::string, std::string>>
29 verifyAllFilesInVerity(const std::string& path);
30 
31 // Note that this function will skip files that are already in fs-verity, and
32 // for those files it will return the existing digest.
33 android::base::Result<std::map<std::string, std::string>>
34 addFilesToVerityRecursive(const std::string& path);
35 
36 // Enable verity on the provided file.
37 android::base::Result<void> enableFsVerity(const std::string& path);
38 
39 android::base::Result<void>
40 verifyAllFilesUsingCompOs(const std::string& directory_path,
41                           const std::map<std::string, std::string>& digests);
42