blob: 429669b19201de9f432c34446601653e0935804c [file] [log] [blame]
Jeff Sharkeydeb24052015-03-02 21:01:40 -08001/*
2 * Copyright (C) 2015 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
17#ifndef ANDROID_VOLD_UTILS_H
18#define ANDROID_VOLD_UTILS_H
19
Pavel Grafove2e2d302017-08-01 17:15:53 +010020#include "KeyBuffer.h"
21
Jeff Sharkey814e9d32017-09-13 11:49:44 -060022#include <android-base/macros.h>
Nandana Dutta914cc72019-08-29 15:22:42 +010023#include <android-base/unique_fd.h>
Jeff Sharkeyd2c96e72015-11-08 17:56:23 -080024#include <cutils/multiuser.h>
Jeff Sharkey95c87cc2015-04-01 11:54:32 -070025#include <selinux/selinux.h>
Paul Crowley14c8c072018-09-18 13:30:21 -070026#include <utils/Errors.h>
Jeff Sharkeydeb24052015-03-02 21:01:40 -080027
Paul Crowley298fa322018-10-30 15:59:24 -070028#include <chrono>
Jeff Sharkeydeb24052015-03-02 21:01:40 -080029#include <string>
Yurii Zubrytskyi40389822021-10-18 22:33:15 -070030#include <string_view>
Paul Crowley14c8c072018-09-18 13:30:21 -070031#include <vector>
Jeff Sharkeydeb24052015-03-02 21:01:40 -080032
Daichi Hirono10d34882016-01-29 14:33:51 +090033struct DIR;
34
Jeff Sharkeydeb24052015-03-02 21:01:40 -080035namespace android {
36namespace vold {
37
Ricky Wai07e64a42020-02-11 14:31:24 +000038static const char* kVoldAppDataIsolationEnabled = "persist.sys.vold_app_data_isolation_enabled";
Daniel Rosenbergf36bddd2020-05-11 22:58:42 -070039static const char* kExternalStorageSdcardfs = "external_storage.sdcardfs.enabled";
Zim3623a212019-07-19 16:46:53 +010040
Daniel Rosenbergd9261b12021-09-14 17:32:06 -070041static constexpr std::chrono::seconds kUntrustedFsckSleepTime(45);
42
Jeff Sharkey95c87cc2015-04-01 11:54:32 -070043/* SELinux contexts used depending on the block device type */
ThiƩbaud Weksteenae8550f2021-09-10 10:51:08 +020044extern char* sBlkidContext;
45extern char* sBlkidUntrustedContext;
46extern char* sFsckContext;
47extern char* sFsckUntrustedContext;
Jeff Sharkey95c87cc2015-04-01 11:54:32 -070048
Paul Crowley56292ef2017-10-20 08:07:53 -070049// TODO remove this with better solution, b/64143519
50extern bool sSleepOnUnmount;
51
Nikita Ioffedcee5c12020-06-12 12:59:45 +010052std::string GetFuseMountPathForUser(userid_t user_id, const std::string& relative_upper_path);
53
Jeff Sharkeydeb24052015-03-02 21:01:40 -080054status_t CreateDeviceNode(const std::string& path, dev_t dev);
55status_t DestroyDeviceNode(const std::string& path);
56
Martijn Coenen5adf92a2021-02-01 07:57:02 +000057status_t SetDefaultAcl(const std::string& path, mode_t mode, uid_t uid, gid_t gid,
58 std::vector<gid_t> additionalGids);
59
Martijn Coenen23c04452020-04-29 07:49:41 +020060status_t AbortFuseConnections();
61
Martijn Coenen5fe1b162020-02-06 18:57:47 +010062int SetQuotaInherit(const std::string& path);
63int SetQuotaProjectId(const std::string& path, long projectId);
Martijn Coenen13ff6682019-12-24 12:57:16 +010064/*
Martijn Coenen04bb17f2020-02-10 23:48:11 +010065 * Creates and sets up an application-specific path on external
66 * storage with the correct ACL and project ID (if needed).
Martijn Coenenba9868b2020-01-31 15:49:24 +010067 *
Martijn Coenen62a4b272020-01-31 15:23:09 +010068 * ONLY for use with app-specific data directories on external storage!
69 * (eg, /Android/data/com.foo, /Android/obb/com.foo, etc.)
Martijn Coenen13ff6682019-12-24 12:57:16 +010070 */
Martijn Coenen816f4d92020-02-18 15:06:37 +010071int PrepareAppDirFromRoot(const std::string& path, const std::string& root, int appUid,
72 bool fixupExisting);
Martijn Coenen13ff6682019-12-24 12:57:16 +010073
Jeff Sharkeyf0121c52015-04-06 14:08:45 -070074/* fs_prepare_dir wrapper that creates with SELinux context */
Daniel Rosenbergcc874802020-08-12 18:31:43 -070075status_t PrepareDir(const std::string& path, mode_t mode, uid_t uid, gid_t gid,
76 unsigned int attrs = 0);
Jeff Sharkeyf0121c52015-04-06 14:08:45 -070077
Jeff Sharkeydeb24052015-03-02 21:01:40 -080078/* Really unmounts the path, killing active processes along the way */
79status_t ForceUnmount(const std::string& path);
80
Jeff Sharkey89f74fb2015-10-21 12:16:12 -070081/* Kills any processes using given path */
82status_t KillProcessesUsingPath(const std::string& path);
83
Ricky Wai23356372021-04-30 09:53:07 +010084/* Kills any processes using given tmpfs mount prifix */
85status_t KillProcessesWithTmpfsMountPrefix(const std::string& path);
Ricky Wai07e64a42020-02-11 14:31:24 +000086
Jeff Sharkey36801cc2015-03-13 16:09:20 -070087/* Creates bind mount from source to target */
88status_t BindMount(const std::string& source, const std::string& target);
89
Sudheer Shanka023b5392019-02-06 12:39:19 -080090/** Creates a symbolic link to target */
91status_t Symlink(const std::string& target, const std::string& linkpath);
92
93/** Calls unlink(2) at linkpath */
94status_t Unlink(const std::string& linkpath);
95
Sudheer Shankaf9b38a52019-02-14 19:09:51 +000096/** Creates the given directory if it is not already available */
97status_t CreateDir(const std::string& dir, mode_t mode);
98
Jeff Sharkey3472e522017-10-06 18:02:53 -060099bool FindValue(const std::string& raw, const std::string& key, std::string* value);
100
Jeff Sharkey9c484982015-03-31 10:35:33 -0700101/* Reads filesystem metadata from device at path */
Paul Crowley14c8c072018-09-18 13:30:21 -0700102status_t ReadMetadata(const std::string& path, std::string* fsType, std::string* fsUuid,
103 std::string* fsLabel);
Jeff Sharkey9c484982015-03-31 10:35:33 -0700104
Jeff Sharkey95c87cc2015-04-01 11:54:32 -0700105/* Reads filesystem metadata from untrusted device at path */
Paul Crowley14c8c072018-09-18 13:30:21 -0700106status_t ReadMetadataUntrusted(const std::string& path, std::string* fsType, std::string* fsUuid,
107 std::string* fsLabel);
Jeff Sharkey95c87cc2015-04-01 11:54:32 -0700108
Jeff Sharkeyce6a9132015-04-08 21:07:21 -0700109/* Returns either WEXITSTATUS() status, or a negative errno */
ThiƩbaud Weksteenae8550f2021-09-10 10:51:08 +0200110status_t ForkExecvp(const std::vector<std::string>& args,
111 std::vector<std::string>* output = nullptr, char* context = nullptr);
Daniel Rosenbergd9261b12021-09-14 17:32:06 -0700112status_t ForkExecvpTimeout(const std::vector<std::string>& args, std::chrono::seconds timeout,
113 char* context = nullptr);
Jeff Sharkey9c484982015-03-31 10:35:33 -0700114
Daniel Rosenbergd9261b12021-09-14 17:32:06 -0700115pid_t ForkExecvpAsync(const std::vector<std::string>& args, char* context = nullptr);
Jeff Sharkey1d6fbcc2015-04-24 16:00:03 -0700116
Oleksiy Avramchenko625dc782018-05-23 10:50:46 +0200117/* Gets block device size in bytes */
118status_t GetBlockDevSize(int fd, uint64_t* size);
119status_t GetBlockDevSize(const std::string& path, uint64_t* size);
120/* Gets block device size in 512 byte sectors */
121status_t GetBlockDev512Sectors(const std::string& path, uint64_t* nr_sec);
122
Jeff Sharkey9c484982015-03-31 10:35:33 -0700123status_t ReadRandomBytes(size_t bytes, std::string& out);
Pavel Grafove2e2d302017-08-01 17:15:53 +0100124status_t ReadRandomBytes(size_t bytes, char* buffer);
Jeff Sharkey46bb69f2017-06-21 13:52:23 -0600125status_t GenerateRandomUuid(std::string& out);
Jeff Sharkey9c484982015-03-31 10:35:33 -0700126
Jeff Sharkey95c87cc2015-04-01 11:54:32 -0700127/* Converts hex string to raw bytes, ignoring [ :-] */
Jeff Sharkey9c484982015-03-31 10:35:33 -0700128status_t HexToStr(const std::string& hex, std::string& str);
Jeff Sharkey95c87cc2015-04-01 11:54:32 -0700129/* Converts raw bytes to hex string */
Jeff Sharkey9c484982015-03-31 10:35:33 -0700130status_t StrToHex(const std::string& str, std::string& hex);
Pavel Grafove2e2d302017-08-01 17:15:53 +0100131/* Converts raw key bytes to hex string */
132status_t StrToHex(const KeyBuffer& str, KeyBuffer& hex);
Jeff Sharkeybc40cc82015-06-18 14:25:08 -0700133/* Normalize given hex string into consistent format */
134status_t NormalizeHex(const std::string& in, std::string& out);
Jeff Sharkey9c484982015-03-31 10:35:33 -0700135
Jeff Sharkey1d6fbcc2015-04-24 16:00:03 -0700136uint64_t GetFreeBytes(const std::string& path);
137uint64_t GetTreeBytes(const std::string& path);
138
Jeff Sharkeyd0640f62015-05-21 22:35:42 -0700139bool IsFilesystemSupported(const std::string& fsType);
Daniel Rosenbergf36bddd2020-05-11 22:58:42 -0700140bool IsSdcardfsUsed();
Ricky Wai07e64a42020-02-11 14:31:24 +0000141bool IsFuseDaemon(const pid_t pid);
Jeff Sharkeyd0640f62015-05-21 22:35:42 -0700142
143/* Wipes contents of block device at given path */
144status_t WipeBlockDevice(const std::string& path);
145
Jeff Sharkeybc40cc82015-06-18 14:25:08 -0700146std::string BuildKeyPath(const std::string& partGuid);
147
Jeff Sharkeybe70c9a2016-04-14 20:45:16 -0600148std::string BuildDataSystemLegacyPath(userid_t userid);
Jeff Sharkeyd2c96e72015-11-08 17:56:23 -0800149std::string BuildDataSystemCePath(userid_t userid);
Jeff Sharkey47695b22016-02-01 17:02:29 -0700150std::string BuildDataSystemDePath(userid_t userid);
Jeff Sharkeybe70c9a2016-04-14 20:45:16 -0600151std::string BuildDataMiscLegacyPath(userid_t userid);
Calin Juravle79f55a42016-02-17 20:14:46 +0000152std::string BuildDataProfilesDePath(userid_t userid);
Andreas Huber71cd43f2018-01-22 11:25:29 -0800153std::string BuildDataVendorCePath(userid_t userid);
154std::string BuildDataVendorDePath(userid_t userid);
Jeff Sharkeyd2c96e72015-11-08 17:56:23 -0800155
Paul Crowley3b71fc52017-10-09 10:55:21 -0700156std::string BuildDataPath(const std::string& volumeUuid);
157std::string BuildDataMediaCePath(const std::string& volumeUuid, userid_t userid);
Mohammad Samiul Islamb4595912022-03-07 20:27:06 +0000158std::string BuildDataMiscCePath(const std::string& volumeUuid, userid_t userid);
159std::string BuildDataMiscDePath(const std::string& volumeUuid, userid_t userid);
Paul Crowley3b71fc52017-10-09 10:55:21 -0700160std::string BuildDataUserCePath(const std::string& volumeUuid, userid_t userid);
161std::string BuildDataUserDePath(const std::string& volumeUuid, userid_t userid);
Jeff Sharkeyd2c96e72015-11-08 17:56:23 -0800162
Jeff Sharkey66270a22015-06-24 11:49:24 -0700163dev_t GetDevice(const std::string& path);
164
Eric Biggersf74373b2020-11-05 19:58:26 -0800165bool IsSameFile(const std::string& path1, const std::string& path2);
166
Ricky Wai07e64a42020-02-11 14:31:24 +0000167status_t EnsureDirExists(const std::string& path, mode_t mode, uid_t uid, gid_t gid);
168
Jeff Sharkeyd24aeda2016-07-15 16:20:22 -0600169status_t RestoreconRecursive(const std::string& path);
170
Jeff Sharkey3472e522017-10-06 18:02:53 -0600171// TODO: promote to android::base
172bool Readlinkat(int dirfd, const std::string& path, std::string* result);
Daichi Hirono10d34882016-01-29 14:33:51 +0900173
Alistair Delvaff1fc9b2020-05-14 16:35:03 -0700174// Handles dynamic major assignment for virtio-block
175bool IsVirtioBlkDevice(unsigned int major);
Yu Ning942d4e82016-01-08 17:36:47 +0800176
Sudheer Shanka295fb242019-01-16 23:04:07 -0800177status_t UnmountTree(const std::string& mountPoint);
Sudheer Shanka89ddf992018-09-25 14:22:07 -0700178
Eric Biggers7bcf4272020-11-02 15:31:56 -0800179bool IsDotOrDotDot(const struct dirent& ent);
180
Sudheer Shanka40ab6742018-09-18 13:07:45 -0700181status_t DeleteDirContentsAndDir(const std::string& pathname);
Sudheer Shanka30df1c62019-02-22 17:03:02 -0800182status_t DeleteDirContents(const std::string& pathname);
Sudheer Shanka40ab6742018-09-18 13:07:45 -0700183
Paul Crowley298fa322018-10-30 15:59:24 -0700184status_t WaitForFile(const char* filename, std::chrono::nanoseconds timeout);
185
Eric Biggersbd138dd2021-02-16 15:59:17 -0800186bool pathExists(const std::string& path);
187
Paul Crowley621d9b92018-12-07 15:36:09 -0800188bool FsyncDirectory(const std::string& dirname);
189
Eric Biggers3345a2a2021-02-16 15:59:17 -0800190bool FsyncParentDirectory(const std::string& path);
191
Eric Biggersfec0c0e2021-02-16 15:59:17 -0800192bool MkdirsSync(const std::string& path, mode_t mode);
193
Tommy Chiu0bd2d112019-03-26 17:18:09 +0800194bool writeStringToFile(const std::string& payload, const std::string& filename);
Zim3623a212019-07-19 16:46:53 +0100195
Martijn Coenena4850062020-06-29 11:53:34 +0200196void ConfigureMaxDirtyRatioForFuse(const std::string& fuse_mount, unsigned int max_ratio);
197
Nikita Ioffedcee5c12020-06-12 12:59:45 +0100198void ConfigureReadAheadForFuse(const std::string& fuse_mount, size_t read_ahead_kb);
199
Zima438b242019-09-25 14:37:38 +0100200status_t MountUserFuse(userid_t user_id, const std::string& absolute_lower_path,
201 const std::string& relative_upper_path, android::base::unique_fd* fuse_fd);
202
Martijn Coenen6f5802e2019-11-28 11:53:53 +0100203status_t UnmountUserFuse(userid_t userId, const std::string& absolute_lower_path,
204 const std::string& relative_upper_path);
Zim3623a212019-07-19 16:46:53 +0100205
Martijn Coenen62a4b272020-01-31 15:23:09 +0100206status_t PrepareAndroidDirs(const std::string& volumeRoot);
Yurii Zubrytskyi40389822021-10-18 22:33:15 -0700207
Alessio Balsini583ae3e2022-03-23 18:27:59 +0000208bool IsFuseBpfEnabled();
209
Yurii Zubrytskyi40389822021-10-18 22:33:15 -0700210// Open a given directory as an FD, and return that and the corresponding procfs virtual
211// symlink path that can be used in any API that accepts a path string. Path stays valid until
212// the directory FD is closed.
213//
214// This may be useful when an API wants to restrict a path passed from an untrusted process,
215// and do it without any TOCTOU attacks possible (e.g. where an attacker replaces one of
216// the components with a symlink after the check passed). In that case opening a path through
217// this function guarantees that the target directory stays the same, and that it can be
218// referenced inside the current process via the virtual procfs symlink returned here.
219std::pair<android::base::unique_fd, std::string> OpenDirInProcfs(std::string_view path);
220
Jeff Sharkeydeb24052015-03-02 21:01:40 -0800221} // namespace vold
222} // namespace android
223
224#endif