1 #include "aktualizr_secondary.h"
3 #include "crypto/keymanager.h"
4 #include "logging/logging.h"
5 #include "update_agent.h"
6 #include "uptane/manifest.h"
7 #include "utilities/utils.h"
13 std::shared_ptr<KeyManager> key_mngr, std::shared_ptr<UpdateAgent> update_agent)
14 : config_(std::move(config)),
15 storage_(std::move(storage)),
16 keys_(std::move(key_mngr)),
17 update_agent_(std::move(update_agent)) {
19 manifest_issuer_ = std::make_shared<Uptane::ManifestIssuer>(keys_, ecu_serial_);
20 initPendingTargetIfAny();
22 if (hasPendingUpdate()) {
23 LOG_INFO <<
"Found a pending target to be applied.";
26 std::vector<Uptane::Target> installed_versions;
27 boost::optional<Uptane::Target> pending_target;
28 storage_->loadInstalledVersions(ecu_serial_.ToString(),
nullptr, &pending_target);
30 if (!!pending_target) {
33 LOG_INFO <<
"Pending update found; attempting to apply it. Target hash: " << pending_target->sha256Hash();
35 install_res = update_agent_->applyPendingInstall(*pending_target);
37 if (install_res.result_code != data::ResultCode::Numeric::kNeedCompletion) {
38 storage_->saveEcuInstallationResult(ecu_serial_, install_res);
40 if (install_res.success) {
41 LOG_INFO <<
"Pending update has been successfully applied: " << pending_target->sha256Hash();
42 storage_->saveInstalledVersion(ecu_serial_.ToString(), *pending_target, InstalledVersionUpdateMode::kCurrent);
44 LOG_ERROR <<
"Application of the pending update has failed: (" << install_res.result_code.toString() <<
")"
45 << install_res.description;
46 storage_->saveInstalledVersion(ecu_serial_.ToString(), *pending_target, InstalledVersionUpdateMode::kNone);
49 director_repo_.dropTargets(*storage_);
51 LOG_INFO <<
"Pending update hasn't been applied because a reboot hasn't been detected";
61 PublicKey AktualizrSecondary::getPublicKey()
const {
return keys_->UptanePublicKey(); }
66 if (update_agent_->getInstalledImageInfo(installed_image_info)) {
67 manifest = manifest_issuer_->assembleAndSignManifest(installed_image_info);
73 int32_t AktualizrSecondary::getRootVersion(
bool director)
const {
74 std::string root_meta;
75 if (!storage_->loadLatestRoot(&root_meta,
76 (director) ? Uptane::RepositoryType::Director() : Uptane::RepositoryType::Image())) {
77 LOG_ERROR <<
"Could not load Root metadata";
81 return Uptane::extractVersionUntrusted(root_meta);
84 bool AktualizrSecondary::putRoot(
const std::string& root,
bool director) {
87 LOG_ERROR <<
"putRootResp is not implemented yet";
91 bool AktualizrSecondary::putMetadata(
const Metadata& metadata) {
return doFullVerification(metadata); }
93 bool AktualizrSecondary::sendFirmware(
const std::string& firmware) {
94 if (!pending_target_.IsValid()) {
95 LOG_ERROR <<
"Aborting image download/receiving; no valid target found.";
99 if (!update_agent_->download(pending_target_, firmware)) {
100 LOG_ERROR <<
"Failed to pull/store an update data";
101 pending_target_ = Uptane::Target::Unknown();
105 LOG_INFO <<
"Download firmware " << pending_target_.filename() <<
" successful.";
110 if (!pending_target_.IsValid()) {
111 LOG_ERROR <<
"Aborting target image installation; no valid target found.";
115 if (pending_target_.filename() != target_name) {
116 LOG_ERROR <<
"name of the target to install and a name of the pending target do not match";
120 auto install_result = update_agent_->install(pending_target_);
122 switch (install_result) {
123 case data::ResultCode::Numeric::kOk: {
124 storage_->saveInstalledVersion(ecu_serial_.ToString(), pending_target_, InstalledVersionUpdateMode::kCurrent);
125 pending_target_ = Uptane::Target::Unknown();
126 LOG_INFO <<
"The target has been successfully installed: " << target_name;
129 case data::ResultCode::Numeric::kNeedCompletion: {
130 storage_->saveInstalledVersion(ecu_serial_.ToString(), pending_target_, InstalledVersionUpdateMode::kPending);
131 LOG_INFO <<
"The target has been successfully installed, but a reboot is required to be applied: " << target_name;
134 default: { LOG_INFO <<
"Failed to install the target: " << target_name; }
137 return install_result;
140 void AktualizrSecondary::completeInstall() { update_agent_->completeInstall(); }
142 bool AktualizrSecondary::doFullVerification(
const Metadata& metadata) {
166 if (!director_repo_.updateMeta(*storage_, metadata)) {
167 LOG_ERROR <<
"Failed to update Director metadata: " << director_repo_.getLastException().what();
178 if (!image_repo_.updateMeta(*storage_, metadata)) {
179 LOG_ERROR <<
"Failed to update Image repo metadata: " << image_repo_.getLastException().what();
184 if (!director_repo_.matchTargetsWithImageTargets(*(image_repo_.getTargets()))) {
185 LOG_ERROR <<
"Targets metadata from the Director and Image repositories DOES NOT match ";
189 auto targetsForThisEcu = director_repo_.getTargets(getSerial(), getHwId());
191 if (targetsForThisEcu.size() != 1) {
192 LOG_ERROR <<
"Invalid number of targets (should be 1): " << targetsForThisEcu.size();
196 if (!update_agent_->isTargetSupported(targetsForThisEcu[0])) {
197 LOG_ERROR <<
"The given target type is not supported: " << targetsForThisEcu[0].type();
201 pending_target_ = targetsForThisEcu[0];
203 LOG_DEBUG <<
"Metadata verified, new update found.";
207 void AktualizrSecondary::uptaneInitialize() {
208 if (keys_->generateUptaneKeyPair().size() == 0) {
209 throw std::runtime_error(
"Failed to generate uptane key pair");
213 EcuSerials ecu_serials;
215 if (storage_->loadEcuSerials(&ecu_serials)) {
216 ecu_serial_ = ecu_serials[0].first;
217 hardware_id_ = ecu_serials[0].second;
221 std::string ecu_serial_local = config_.uptane.ecu_serial;
222 if (ecu_serial_local.empty()) {
223 ecu_serial_local = keys_->UptanePublicKey().KeyId();
226 std::string ecu_hardware_id = config_.uptane.ecu_hardware_id;
227 if (ecu_hardware_id.empty()) {
228 ecu_hardware_id = Utils::getHostname();
229 if (ecu_hardware_id ==
"") {
230 throw std::runtime_error(
"Failed to define ECU hardware ID");
235 storage_->storeEcuSerials(ecu_serials);
236 ecu_serial_ = ecu_serials[0].first;
237 hardware_id_ = ecu_serials[0].second;
247 storage_->importInstalledVersions(config_.import.base_path);
250 void AktualizrSecondary::initPendingTargetIfAny() {
251 if (!director_repo_.checkMetaOffline(*storage_)) {
252 LOG_INFO <<
"No valid metadata found in storage.";
256 auto targetsForThisEcu = director_repo_.getTargets(ecu_serial_, hardware_id_);
258 if (targetsForThisEcu.size() != 1) {
259 LOG_ERROR <<
"Invalid number of targets (should be 1): " << targetsForThisEcu.size();
263 if (!update_agent_->isTargetSupported(targetsForThisEcu[0])) {
264 LOG_ERROR <<
"The given target type is not supported: " << targetsForThisEcu[0].type();
268 pending_target_ = targetsForThisEcu[0];