xref: /aosp_15_r20/system/core/init/devices.h (revision 00c7fec1bb09f3284aad6a6f96d2f63dfc3650ad)
1*00c7fec1SAndroid Build Coastguard Worker /*
2*00c7fec1SAndroid Build Coastguard Worker  * Copyright (C) 2007 The Android Open Source Project
3*00c7fec1SAndroid Build Coastguard Worker  *
4*00c7fec1SAndroid Build Coastguard Worker  * Licensed under the Apache License, Version 2.0 (the "License");
5*00c7fec1SAndroid Build Coastguard Worker  * you may not use this file except in compliance with the License.
6*00c7fec1SAndroid Build Coastguard Worker  * You may obtain a copy of the License at
7*00c7fec1SAndroid Build Coastguard Worker  *
8*00c7fec1SAndroid Build Coastguard Worker  *      http://www.apache.org/licenses/LICENSE-2.0
9*00c7fec1SAndroid Build Coastguard Worker  *
10*00c7fec1SAndroid Build Coastguard Worker  * Unless required by applicable law or agreed to in writing, software
11*00c7fec1SAndroid Build Coastguard Worker  * distributed under the License is distributed on an "AS IS" BASIS,
12*00c7fec1SAndroid Build Coastguard Worker  * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13*00c7fec1SAndroid Build Coastguard Worker  * See the License for the specific language governing permissions and
14*00c7fec1SAndroid Build Coastguard Worker  * limitations under the License.
15*00c7fec1SAndroid Build Coastguard Worker  */
16*00c7fec1SAndroid Build Coastguard Worker 
17*00c7fec1SAndroid Build Coastguard Worker #ifndef _INIT_DEVICES_H
18*00c7fec1SAndroid Build Coastguard Worker #define _INIT_DEVICES_H
19*00c7fec1SAndroid Build Coastguard Worker 
20*00c7fec1SAndroid Build Coastguard Worker #include <sys/stat.h>
21*00c7fec1SAndroid Build Coastguard Worker #include <sys/types.h>
22*00c7fec1SAndroid Build Coastguard Worker 
23*00c7fec1SAndroid Build Coastguard Worker #include <algorithm>
24*00c7fec1SAndroid Build Coastguard Worker #include <map>
25*00c7fec1SAndroid Build Coastguard Worker #include <set>
26*00c7fec1SAndroid Build Coastguard Worker #include <string>
27*00c7fec1SAndroid Build Coastguard Worker #include <vector>
28*00c7fec1SAndroid Build Coastguard Worker 
29*00c7fec1SAndroid Build Coastguard Worker #include <android-base/file.h>
30*00c7fec1SAndroid Build Coastguard Worker #include <selinux/label.h>
31*00c7fec1SAndroid Build Coastguard Worker 
32*00c7fec1SAndroid Build Coastguard Worker #include "uevent.h"
33*00c7fec1SAndroid Build Coastguard Worker #include "uevent_handler.h"
34*00c7fec1SAndroid Build Coastguard Worker 
35*00c7fec1SAndroid Build Coastguard Worker namespace android {
36*00c7fec1SAndroid Build Coastguard Worker namespace init {
37*00c7fec1SAndroid Build Coastguard Worker 
38*00c7fec1SAndroid Build Coastguard Worker class Permissions {
39*00c7fec1SAndroid Build Coastguard Worker   public:
40*00c7fec1SAndroid Build Coastguard Worker     friend void TestPermissions(const Permissions& expected, const Permissions& test);
41*00c7fec1SAndroid Build Coastguard Worker 
42*00c7fec1SAndroid Build Coastguard Worker     Permissions(const std::string& name, mode_t perm, uid_t uid, gid_t gid, bool no_fnm_pathname);
43*00c7fec1SAndroid Build Coastguard Worker 
44*00c7fec1SAndroid Build Coastguard Worker     bool Match(const std::string& path) const;
45*00c7fec1SAndroid Build Coastguard Worker 
perm()46*00c7fec1SAndroid Build Coastguard Worker     mode_t perm() const { return perm_; }
uid()47*00c7fec1SAndroid Build Coastguard Worker     uid_t uid() const { return uid_; }
gid()48*00c7fec1SAndroid Build Coastguard Worker     gid_t gid() const { return gid_; }
49*00c7fec1SAndroid Build Coastguard Worker 
50*00c7fec1SAndroid Build Coastguard Worker   protected:
name()51*00c7fec1SAndroid Build Coastguard Worker     const std::string& name() const { return name_; }
52*00c7fec1SAndroid Build Coastguard Worker 
53*00c7fec1SAndroid Build Coastguard Worker   private:
54*00c7fec1SAndroid Build Coastguard Worker     std::string name_;
55*00c7fec1SAndroid Build Coastguard Worker     mode_t perm_;
56*00c7fec1SAndroid Build Coastguard Worker     uid_t uid_;
57*00c7fec1SAndroid Build Coastguard Worker     gid_t gid_;
58*00c7fec1SAndroid Build Coastguard Worker     bool prefix_;
59*00c7fec1SAndroid Build Coastguard Worker     bool wildcard_;
60*00c7fec1SAndroid Build Coastguard Worker     bool no_fnm_pathname_;
61*00c7fec1SAndroid Build Coastguard Worker };
62*00c7fec1SAndroid Build Coastguard Worker 
63*00c7fec1SAndroid Build Coastguard Worker class SysfsPermissions : public Permissions {
64*00c7fec1SAndroid Build Coastguard Worker   public:
65*00c7fec1SAndroid Build Coastguard Worker     friend void TestSysfsPermissions(const SysfsPermissions& expected, const SysfsPermissions& test);
66*00c7fec1SAndroid Build Coastguard Worker 
SysfsPermissions(const std::string & name,const std::string & attribute,mode_t perm,uid_t uid,gid_t gid,bool no_fnm_pathname)67*00c7fec1SAndroid Build Coastguard Worker     SysfsPermissions(const std::string& name, const std::string& attribute, mode_t perm, uid_t uid,
68*00c7fec1SAndroid Build Coastguard Worker                      gid_t gid, bool no_fnm_pathname)
69*00c7fec1SAndroid Build Coastguard Worker         : Permissions(name, perm, uid, gid, no_fnm_pathname), attribute_(attribute) {}
70*00c7fec1SAndroid Build Coastguard Worker 
71*00c7fec1SAndroid Build Coastguard Worker     bool MatchWithSubsystem(const std::string& path, const std::string& subsystem) const;
72*00c7fec1SAndroid Build Coastguard Worker     void SetPermissions(const std::string& path) const;
73*00c7fec1SAndroid Build Coastguard Worker 
74*00c7fec1SAndroid Build Coastguard Worker   private:
75*00c7fec1SAndroid Build Coastguard Worker     const std::string attribute_;
76*00c7fec1SAndroid Build Coastguard Worker };
77*00c7fec1SAndroid Build Coastguard Worker 
78*00c7fec1SAndroid Build Coastguard Worker class Subsystem {
79*00c7fec1SAndroid Build Coastguard Worker   public:
80*00c7fec1SAndroid Build Coastguard Worker     friend class SubsystemParser;
81*00c7fec1SAndroid Build Coastguard Worker     friend void TestSubsystems(const Subsystem& expected, const Subsystem& test);
82*00c7fec1SAndroid Build Coastguard Worker 
83*00c7fec1SAndroid Build Coastguard Worker     enum DevnameSource {
84*00c7fec1SAndroid Build Coastguard Worker         DEVNAME_UEVENT_DEVNAME,
85*00c7fec1SAndroid Build Coastguard Worker         DEVNAME_UEVENT_DEVPATH,
86*00c7fec1SAndroid Build Coastguard Worker         DEVNAME_SYS_NAME,
87*00c7fec1SAndroid Build Coastguard Worker     };
88*00c7fec1SAndroid Build Coastguard Worker 
Subsystem()89*00c7fec1SAndroid Build Coastguard Worker     Subsystem() {}
Subsystem(std::string name)90*00c7fec1SAndroid Build Coastguard Worker     Subsystem(std::string name) : name_(std::move(name)) {}
Subsystem(std::string name,DevnameSource source,std::string dir_name)91*00c7fec1SAndroid Build Coastguard Worker     Subsystem(std::string name, DevnameSource source, std::string dir_name)
92*00c7fec1SAndroid Build Coastguard Worker         : name_(std::move(name)), devname_source_(source), dir_name_(std::move(dir_name)) {}
93*00c7fec1SAndroid Build Coastguard Worker 
94*00c7fec1SAndroid Build Coastguard Worker     // Returns the full path for a uevent of a device that is a member of this subsystem,
95*00c7fec1SAndroid Build Coastguard Worker     // according to the rules parsed from ueventd.rc
ParseDevPath(const Uevent & uevent)96*00c7fec1SAndroid Build Coastguard Worker     std::string ParseDevPath(const Uevent& uevent) const {
97*00c7fec1SAndroid Build Coastguard Worker         std::string devname;
98*00c7fec1SAndroid Build Coastguard Worker         if (devname_source_ == DEVNAME_UEVENT_DEVNAME) {
99*00c7fec1SAndroid Build Coastguard Worker             devname = uevent.device_name;
100*00c7fec1SAndroid Build Coastguard Worker         } else if (devname_source_ == DEVNAME_UEVENT_DEVPATH) {
101*00c7fec1SAndroid Build Coastguard Worker             devname = android::base::Basename(uevent.path);
102*00c7fec1SAndroid Build Coastguard Worker         } else if (devname_source_ == DEVNAME_SYS_NAME) {
103*00c7fec1SAndroid Build Coastguard Worker             if (android::base::ReadFileToString("/sys/" + uevent.path + "/name", &devname)) {
104*00c7fec1SAndroid Build Coastguard Worker                 devname.pop_back();  // Remove terminating newline
105*00c7fec1SAndroid Build Coastguard Worker             } else {
106*00c7fec1SAndroid Build Coastguard Worker                 devname = uevent.device_name;
107*00c7fec1SAndroid Build Coastguard Worker             }
108*00c7fec1SAndroid Build Coastguard Worker         }
109*00c7fec1SAndroid Build Coastguard Worker         return dir_name_ + "/" + devname;
110*00c7fec1SAndroid Build Coastguard Worker     }
111*00c7fec1SAndroid Build Coastguard Worker 
112*00c7fec1SAndroid Build Coastguard Worker     bool operator==(const std::string& string_name) const { return name_ == string_name; }
113*00c7fec1SAndroid Build Coastguard Worker 
114*00c7fec1SAndroid Build Coastguard Worker   private:
115*00c7fec1SAndroid Build Coastguard Worker     std::string name_;
116*00c7fec1SAndroid Build Coastguard Worker     DevnameSource devname_source_ = DEVNAME_UEVENT_DEVNAME;
117*00c7fec1SAndroid Build Coastguard Worker     std::string dir_name_ = "/dev";
118*00c7fec1SAndroid Build Coastguard Worker };
119*00c7fec1SAndroid Build Coastguard Worker 
120*00c7fec1SAndroid Build Coastguard Worker struct BlockDeviceInfo {
121*00c7fec1SAndroid Build Coastguard Worker     std::string str;
122*00c7fec1SAndroid Build Coastguard Worker     std::string type;
123*00c7fec1SAndroid Build Coastguard Worker     bool is_boot_device;
124*00c7fec1SAndroid Build Coastguard Worker };
125*00c7fec1SAndroid Build Coastguard Worker 
126*00c7fec1SAndroid Build Coastguard Worker class DeviceHandler : public UeventHandler {
127*00c7fec1SAndroid Build Coastguard Worker   public:
128*00c7fec1SAndroid Build Coastguard Worker     friend class DeviceHandlerTester;
129*00c7fec1SAndroid Build Coastguard Worker 
130*00c7fec1SAndroid Build Coastguard Worker     DeviceHandler();
131*00c7fec1SAndroid Build Coastguard Worker     DeviceHandler(std::vector<Permissions> dev_permissions,
132*00c7fec1SAndroid Build Coastguard Worker                   std::vector<SysfsPermissions> sysfs_permissions, std::vector<Subsystem> drivers,
133*00c7fec1SAndroid Build Coastguard Worker                   std::vector<Subsystem> subsystems, std::set<std::string> boot_devices,
134*00c7fec1SAndroid Build Coastguard Worker                   std::string boot_part_uuid, bool skip_restorecon);
135*00c7fec1SAndroid Build Coastguard Worker     virtual ~DeviceHandler() = default;
136*00c7fec1SAndroid Build Coastguard Worker 
137*00c7fec1SAndroid Build Coastguard Worker     bool CheckUeventForBootPartUuid(const Uevent& uevent);
138*00c7fec1SAndroid Build Coastguard Worker     void HandleUevent(const Uevent& uevent) override;
139*00c7fec1SAndroid Build Coastguard Worker 
140*00c7fec1SAndroid Build Coastguard Worker     // `androidboot.partition_map` allows associating a partition name for a raw block device
141*00c7fec1SAndroid Build Coastguard Worker     // through a comma separated and semicolon deliminated list. For example,
142*00c7fec1SAndroid Build Coastguard Worker     // `androidboot.partition_map=vdb,metadata;vdc,userdata` maps `vdb` to `metadata` and `vdc` to
143*00c7fec1SAndroid Build Coastguard Worker     // `userdata`.
144*00c7fec1SAndroid Build Coastguard Worker     static std::string GetPartitionNameForDevice(const std::string& device);
145*00c7fec1SAndroid Build Coastguard Worker     bool IsBootDeviceStrict() const;
146*00c7fec1SAndroid Build Coastguard Worker     bool IsBootDevice(const Uevent& uevent) const;
147*00c7fec1SAndroid Build Coastguard Worker 
148*00c7fec1SAndroid Build Coastguard Worker   private:
149*00c7fec1SAndroid Build Coastguard Worker     struct TrackedUevent {
150*00c7fec1SAndroid Build Coastguard Worker         Uevent uevent;
151*00c7fec1SAndroid Build Coastguard Worker         std::string canonical_device_path;
152*00c7fec1SAndroid Build Coastguard Worker     };
153*00c7fec1SAndroid Build Coastguard Worker 
154*00c7fec1SAndroid Build Coastguard Worker     void ColdbootDone() override;
155*00c7fec1SAndroid Build Coastguard Worker     BlockDeviceInfo GetBlockDeviceInfo(const std::string& uevent_path) const;
156*00c7fec1SAndroid Build Coastguard Worker     bool FindSubsystemDevice(std::string path, std::string* device_path,
157*00c7fec1SAndroid Build Coastguard Worker                              const std::set<std::string>& subsystem_paths) const;
158*00c7fec1SAndroid Build Coastguard Worker     bool FindPlatformDevice(const std::string& path, std::string* platform_device_path) const;
159*00c7fec1SAndroid Build Coastguard Worker     bool FindMmcDevice(const std::string& path, std::string* mmc_device_path) const;
160*00c7fec1SAndroid Build Coastguard Worker     bool FindNvmeDevice(const std::string& path, std::string* nvme_device_path) const;
161*00c7fec1SAndroid Build Coastguard Worker     bool FindScsiDevice(const std::string& path, std::string* scsi_device_path) const;
162*00c7fec1SAndroid Build Coastguard Worker     std::tuple<mode_t, uid_t, gid_t> GetDevicePermissions(
163*00c7fec1SAndroid Build Coastguard Worker         const std::string& path, const std::vector<std::string>& links) const;
164*00c7fec1SAndroid Build Coastguard Worker     void MakeDevice(const std::string& path, bool block, int major, int minor,
165*00c7fec1SAndroid Build Coastguard Worker                     const std::vector<std::string>& links) const;
166*00c7fec1SAndroid Build Coastguard Worker     std::vector<std::string> GetBlockDeviceSymlinks(const Uevent& uevent) const;
167*00c7fec1SAndroid Build Coastguard Worker     void HandleDevice(const std::string& action, const std::string& devpath, bool block, int major,
168*00c7fec1SAndroid Build Coastguard Worker                       int minor, const std::vector<std::string>& links) const;
169*00c7fec1SAndroid Build Coastguard Worker     void FixupSysPermissions(const std::string& upath, const std::string& subsystem) const;
170*00c7fec1SAndroid Build Coastguard Worker     void HandleAshmemUevent(const Uevent& uevent);
171*00c7fec1SAndroid Build Coastguard Worker 
172*00c7fec1SAndroid Build Coastguard Worker     void TrackDeviceUevent(const Uevent& uevent);
173*00c7fec1SAndroid Build Coastguard Worker     void HandleBindInternal(std::string driver_name, std::string action, const Uevent& uevent);
174*00c7fec1SAndroid Build Coastguard Worker 
175*00c7fec1SAndroid Build Coastguard Worker     std::vector<Permissions> dev_permissions_;
176*00c7fec1SAndroid Build Coastguard Worker     std::vector<SysfsPermissions> sysfs_permissions_;
177*00c7fec1SAndroid Build Coastguard Worker     std::vector<Subsystem> drivers_;
178*00c7fec1SAndroid Build Coastguard Worker     std::vector<Subsystem> subsystems_;
179*00c7fec1SAndroid Build Coastguard Worker     std::set<std::string> boot_devices_;
180*00c7fec1SAndroid Build Coastguard Worker     std::string boot_part_uuid_;
181*00c7fec1SAndroid Build Coastguard Worker     bool found_boot_part_uuid_;
182*00c7fec1SAndroid Build Coastguard Worker     bool skip_restorecon_;
183*00c7fec1SAndroid Build Coastguard Worker     std::string sysfs_mount_point_;
184*00c7fec1SAndroid Build Coastguard Worker 
185*00c7fec1SAndroid Build Coastguard Worker     std::vector<TrackedUevent> tracked_uevents_;
186*00c7fec1SAndroid Build Coastguard Worker     std::map<std::string, std::string> bound_drivers_;
187*00c7fec1SAndroid Build Coastguard Worker };
188*00c7fec1SAndroid Build Coastguard Worker 
189*00c7fec1SAndroid Build Coastguard Worker // Exposed for testing
190*00c7fec1SAndroid Build Coastguard Worker void SanitizePartitionName(std::string* string);
191*00c7fec1SAndroid Build Coastguard Worker 
192*00c7fec1SAndroid Build Coastguard Worker }  // namespace init
193*00c7fec1SAndroid Build Coastguard Worker }  // namespace android
194*00c7fec1SAndroid Build Coastguard Worker 
195*00c7fec1SAndroid Build Coastguard Worker #endif
196