No description
Find a file
David Anderson 983e2d5718 Add a logo to the fastbootd screen.
fastbootd looks too much like recovery, even if you're carefully reading
the menu. It's not obvious the device is in a flashing mode, and it's
too tempting to reboot or unplug the device in this state.

As a first step, this patch adds a big red "fastbootd" logo so it's less
obviously in recovery mode.

Bug: 120429730
Test: manual test
Change-Id: I73359f1fdfdc0b1694993f760fe7f35c5713b24e
2019-02-11 19:22:03 -08:00
applypatch applypatch: Fix comparison of integers of different signs. 2018-12-17 10:07:27 -08:00
boot_control Build boot control HAL with Android.bp 2018-08-09 22:15:01 -07:00
bootloader_message Add android::fs_mgr namespace for new Fstab code 2019-01-31 09:00:40 -08:00
edify Merge "edify: Rename parse_string to ParseString and let it take std::string." 2018-07-10 16:38:08 +00:00
etc Fix sideload for user devices by adding a new sideload config 2018-09-07 15:02:43 -07:00
fastboot Add fastboot mode to recovery 2018-08-13 21:18:18 -07:00
fonts more font improvements and cleanup 2013-03-07 13:34:24 -08:00
fuse_sideload Build recovery with Soong. 2018-08-10 14:43:27 -07:00
minadbd minadbd: daemon_service_to_fd takes std::string_view. 2019-01-02 09:40:46 -08:00
minui use epoll_create1 2018-12-17 08:51:38 -08:00
otautil Move the parse of last_install to recovery-persist 2018-09-13 13:27:55 -07:00
private Drop the dependency on AB_OTA_UPDATER flag. 2018-06-19 10:50:43 -07:00
res-hdpi/images Add a logo to the fastbootd screen. 2019-02-11 19:22:03 -08:00
res-mdpi/images Add a logo to the fastbootd screen. 2019-02-11 19:22:03 -08:00
res-xhdpi/images Add a logo to the fastbootd screen. 2019-02-11 19:22:03 -08:00
res-xxhdpi/images Add a logo to the fastbootd screen. 2019-02-11 19:22:03 -08:00
res-xxxhdpi/images Add a logo to the fastbootd screen. 2019-02-11 19:22:03 -08:00
tests Recovery test: Fix an parameter issue in string construction 2019-02-05 12:44:53 -08:00
tools ImageGenerator: ignore the duplicate locales 2018-11-29 12:13:02 -08:00
uncrypt Add android::fs_mgr namespace for new Fstab code 2019-01-31 09:00:40 -08:00
update_verifier Defer marking boot successful when checkpointing 2019-02-07 13:26:05 -08:00
updater Fix potential size overflow in blockimg.cpp 2019-01-17 09:26:12 -08:00
updater_sample Add verification before downloading whole package 2018-12-17 14:24:25 -08:00
.clang-format Document the clang-format usage. 2018-05-10 13:12:59 -07:00
adb_install.cpp Fix sideload for user devices by adding a new sideload config 2018-09-07 15:02:43 -07:00
adb_install.h Rename CacheLocation to Paths. 2018-04-25 21:46:00 -07:00
Android.bp Add android::fs_mgr namespace for new Fstab code 2019-01-31 09:00:40 -08:00
Android.mk e2fsck_static is no longer needed for remount 2019-01-16 23:42:55 +00:00
asn1_decoder.cpp Checking unsigned variable less than zero 2017-03-23 17:07:39 +01:00
asn1_decoder.h Refactor asn1_decoder functions into a class. 2017-03-21 15:17:43 -07:00
bootloader.h Create bootloader_message static library. 2016-06-30 11:02:38 -07:00
CleanSpec.mk Use dynamically linked f2fs executables. 2018-12-20 14:47:11 -08:00
common.h Fix sideload for user devices by adding a new sideload config 2018-09-07 15:02:43 -07:00
default_device.cpp Auto-detect whether to use the long-press UI. 2015-04-10 15:14:35 -07:00
device.cpp Add fastboot mode to recovery 2018-08-13 21:18:18 -07:00
device.h Add fastboot mode to recovery 2018-08-13 21:18:18 -07:00
fsck_unshare_blocks.cpp roots.cpp: convert to C++ Fstab 2018-12-18 15:57:29 -08:00
fsck_unshare_blocks.h recovery: add --fsck_unshare_blocks option for adb remount 2018-05-30 13:24:30 -07:00
fuse_sdcard_provider.cpp Clean up fuse_sideload and add a testcase. 2017-11-03 18:30:41 -07:00
fuse_sdcard_provider.h recovery: Fork a process for fuse when sideloading from SD card. 2016-01-13 21:29:20 -08:00
install.cpp Clean up the arg setup for exec(3). 2018-12-20 10:46:06 -08:00
install.h Refactor the code to check the metadata 2018-10-31 11:03:58 -07:00
interlace-frames.py Go back to the old ear-wiggling Android animation. 2016-04-21 14:26:14 -07:00
logging.cpp roots.cpp: convert to C++ Fstab 2018-12-18 15:57:29 -08:00
logging.h recovery: Refactor logging code into logging.cpp 2018-05-07 14:14:17 -07:00
NOTICE Automated import from //branches/master/...@140824,140824 2009-03-24 18:36:42 -07:00
OWNERS Fix owner email address. 2017-10-12 10:45:04 -07:00
PREUPLOAD.cfg Add tools/ to the style-checking path. 2018-11-06 11:27:13 -08:00
README.md Update README.md. 2018-11-27 13:47:13 -08:00
recovery-persist.cpp Check that install file exists before unlink 2019-01-23 15:16:29 -08:00
recovery-persist.rc recovery: reduce overall boot time 2017-09-18 13:55:32 -07:00
recovery-refresh.cpp recovery: Refactor logging code into logging.cpp 2018-05-07 14:14:17 -07:00
recovery-refresh.rc recovery: reduce overall boot time 2017-09-18 13:55:32 -07:00
recovery.cpp Merge changes from topic "vintf_object_recovery_mount" 2018-12-19 22:19:52 +00:00
recovery.h recovery: Refactor common setup into main() 2018-05-16 19:32:06 +00:00
recovery_main.cpp Add a logo to the fastbootd screen. 2019-02-11 19:22:03 -08:00
roots.cpp Add android::fs_mgr namespace for new Fstab code 2019-01-31 09:00:40 -08:00
roots.h Add android::fs_mgr namespace for new Fstab code 2019-01-31 09:00:40 -08:00
screen_ui.cpp Add a logo to the fastbootd screen. 2019-02-11 19:22:03 -08:00
screen_ui.h Add a logo to the fastbootd screen. 2019-02-11 19:22:03 -08:00
stub_ui.h Show wipe data confirmation text in recovery mode 2018-12-11 23:23:41 +00:00
ui.cpp Add a logo to the fastbootd screen. 2019-02-11 19:22:03 -08:00
ui.h Add a logo to the fastbootd screen. 2019-02-11 19:22:03 -08:00
verifier.cpp Remove the load_keys function 2018-10-24 23:26:59 +00:00
verifier.h Remove the load_keys function 2018-10-24 23:26:59 +00:00
vr_device.cpp Introduce VR recovery ui 2017-06-16 15:33:02 -07:00
vr_ui.cpp ui: Add constness to Draw- functions. 2018-10-23 10:56:54 -07:00
vr_ui.h ui: Add constness to Draw- functions. 2018-10-23 10:56:54 -07:00
wear_device.cpp Allow customizing WearRecoveryUI via Makefile variables. 2017-08-10 09:31:17 -07:00
wear_ui.cpp ui: Manage loaded resources with smart pointers. 2018-11-05 10:15:59 -08:00
wear_ui.h Add function to show localized rescue party menu 2018-10-22 15:27:33 -07:00

The Recovery Image

Quick turn-around testing

mm -j && m ramdisk-nodeps && m recoveryimage-nodeps

# To boot into the new recovery image
# without flashing the recovery partition:
adb reboot bootloader
fastboot boot $ANDROID_PRODUCT_OUT/recovery.img

Running the tests

# After setting up environment and lunch.
mmma -j bootable/recovery

# Running the tests on device.
adb root
adb sync data

# 32-bit device
adb shell /data/nativetest/recovery_unit_test/recovery_unit_test
adb shell /data/nativetest/recovery_component_test/recovery_component_test

# Or 64-bit device
adb shell /data/nativetest64/recovery_unit_test/recovery_unit_test
adb shell /data/nativetest64/recovery_component_test/recovery_component_test

Running the manual tests

recovery-refresh and recovery-persist executables exist only on systems without /cache partition. And we need to follow special steps to run tests for them.

  • Execute the test on an A/B device first. The test should fail but it will log some contents to pmsg.

  • Reboot the device immediately and run the test again. The test should save the contents of pmsg buffer into /data/misc/recovery/inject.txt. Test will pass if this file has expected contents.

Using adb under recovery

When running recovery image from debuggable builds (i.e. -eng or -userdebug build variants, or ro.debuggable=1 in /prop.default), adbd service is enabled and started by default, which allows adb communication. A device should be listed under adb devices, either in recovery or sideload state.

$ adb devices
List of devices attached
1234567890abcdef    recovery

Although /system/bin/adbd is built from the same code base as the one in the normal boot, only a subset of adb commands are meaningful under recovery, such as adb root, adb shell, adb push, adb pull etc. Since Android Q, adb shell no longer requires manually mounting /system from recovery menu.

Troubleshooting

adb devices doesn't show the device.

$ adb devices
List of devices attached
  • Ensure adbd is built and running.

By default, adbd is always included into recovery image, as /system/bin/adbd. init starts adbd service automatically only in debuggable builds. This behavior is controlled by the recovery specific /init.rc, whose source code is at bootable/recovery/etc/init.rc.

The best way to confirm a running adbd is by checking the serial output, which shows a service start log as below.

[   18.961986] c1      1 init: starting service 'adbd'...
  • Ensure USB gadget has been enabled.

If adbd service has been started but device not shown under adb devices, use lsusb(8) (on host) to check if the device is visible to the host.

bootable/recovery/etc/init.rc disables Android USB gadget (via sysfs) as part of the fs action trigger, and will only re-enable it in debuggable builds (the on property rule will always run after on fs).

on fs
    write /sys/class/android_usb/android0/enable 0

# Always start adbd on userdebug and eng builds
on property:ro.debuggable=1
    write /sys/class/android_usb/android0/enable 1
    start adbd

If device is using configfs, check if configfs has been properly set up in init rc scripts. See the example configuration for Pixel 2 devices. Note that the flag set via sysfs (i.e. the one above) is no-op when using configfs.

adb devices shows the device, but in unauthorized state.

$ adb devices
List of devices attached
1234567890abcdef    unauthorized

recovery image doesn't honor the USB debugging toggle and the authorizations added under normal boot (because such authorization data stays in /data, which recovery doesn't mount), nor does it support authorizing a host device under recovery. We can use one of the following options instead.

  • Option 1 (Recommended): Authorize a host device with adb vendor keys.

For debuggable builds, an RSA keypair can be used to authorize a host device that has the private key. The public key, defined via PRODUCT_ADB_KEYS, will be copied to /adb_keys. When starting the host-side adbd, make sure the filename (or the directory) of the matching private key has been added to $ADB_VENDOR_KEYS.

$ export ADB_VENDOR_KEYS=/path/to/adb/private/key
$ adb kill-server
$ adb devices

-user builds filter out PRODUCT_ADB_KEYS, so no /adb_keys will be included there.

Note that this mechanism applies to both of normal boot and recovery modes.

  • Option 2: Allow adbd to connect without authentication.
    • adbd is compiled with ALLOW_ADBD_NO_AUTH (only on debuggable builds).
    • ro.adb.secure has a value of 0.

Both of the two conditions need to be satisfied. Although ro.adb.secure is a runtime property, its value is set at build time (written into /prop.default). It defaults to 1 on -user builds, and 0 for other build variants. The value is overridable via PRODUCT_DEFAULT_PROPERTY_OVERRIDES.