xref: /OK3568_Linux_fs/external/rkupdate/RKAndroidDevice.cpp (revision 4882a59341e53eb6f0b4789bf948001014eff981)
1*4882a593Smuzhiyun #include "RKAndroidDevice.h"
2*4882a593Smuzhiyun #define tole(x)     (x)
3*4882a593Smuzhiyun #define look_for_userdata(name) \
4*4882a593Smuzhiyun     memcmp(name, PARTNAME_USERDATA, sizeof(PARTNAME_USERDATA) - 1)
5*4882a593Smuzhiyun 
6*4882a593Smuzhiyun 
7*4882a593Smuzhiyun /*factor is 0xedb88320*/
8*4882a593Smuzhiyun bool CRKAndroidDevice::bGptFlag = 0;
9*4882a593Smuzhiyun extern int sdBootUpdate;
10*4882a593Smuzhiyun 
11*4882a593Smuzhiyun char name[PART_NAME];// ��������
12*4882a593Smuzhiyun char file[RELATIVE_PATH];// ���·��������ȡ�ļ�ʱ�õ�
13*4882a593Smuzhiyun unsigned int part_size;//����ռ��������
14*4882a593Smuzhiyun unsigned int offset;// �ļ���Image�е�ƫ��
15*4882a593Smuzhiyun unsigned int flash_offset;// ��д��Flash�е�λ��(��sectorΪ��λ)
16*4882a593Smuzhiyun unsigned int usespace;// �ļ�ռ�ÿռ䣨��PAGE����)
17*4882a593Smuzhiyun unsigned int size;// �ֽ�����ʵ���ļ���С
18*4882a593Smuzhiyun 
19*4882a593Smuzhiyun #ifdef USE_SIGNATURE_FW
20*4882a593Smuzhiyun RK_UPDATE_ORDER gstUpdateOrder[] =
21*4882a593Smuzhiyun {
22*4882a593Smuzhiyun     {1, "rootfs",     {"", "", 0, 0, 0, 0, 0}, 0},
23*4882a593Smuzhiyun     {2, "boot",       {"", "", 0, 0, 0, 0, 0}, 0},
24*4882a593Smuzhiyun     {3, "uboot",      {"", "", 0, 0, 0, 0, 0}, 0},
25*4882a593Smuzhiyun     {4, "bootloader", {"", "", 0, 0, 0, 0, 0}, 0},
26*4882a593Smuzhiyun };
27*4882a593Smuzhiyun #endif
28*4882a593Smuzhiyun 
29*4882a593Smuzhiyun unsigned int crc32table_le[] =
30*4882a593Smuzhiyun {
31*4882a593Smuzhiyun     tole(0x00000000L), tole(0x77073096L), tole(0xee0e612cL), tole(0x990951baL),
32*4882a593Smuzhiyun     tole(0x076dc419L), tole(0x706af48fL), tole(0xe963a535L), tole(0x9e6495a3L),
33*4882a593Smuzhiyun     tole(0x0edb8832L), tole(0x79dcb8a4L), tole(0xe0d5e91eL), tole(0x97d2d988L),
34*4882a593Smuzhiyun     tole(0x09b64c2bL), tole(0x7eb17cbdL), tole(0xe7b82d07L), tole(0x90bf1d91L),
35*4882a593Smuzhiyun     tole(0x1db71064L), tole(0x6ab020f2L), tole(0xf3b97148L), tole(0x84be41deL),
36*4882a593Smuzhiyun     tole(0x1adad47dL), tole(0x6ddde4ebL), tole(0xf4d4b551L), tole(0x83d385c7L),
37*4882a593Smuzhiyun     tole(0x136c9856L), tole(0x646ba8c0L), tole(0xfd62f97aL), tole(0x8a65c9ecL),
38*4882a593Smuzhiyun     tole(0x14015c4fL), tole(0x63066cd9L), tole(0xfa0f3d63L), tole(0x8d080df5L),
39*4882a593Smuzhiyun     tole(0x3b6e20c8L), tole(0x4c69105eL), tole(0xd56041e4L), tole(0xa2677172L),
40*4882a593Smuzhiyun     tole(0x3c03e4d1L), tole(0x4b04d447L), tole(0xd20d85fdL), tole(0xa50ab56bL),
41*4882a593Smuzhiyun     tole(0x35b5a8faL), tole(0x42b2986cL), tole(0xdbbbc9d6L), tole(0xacbcf940L),
42*4882a593Smuzhiyun     tole(0x32d86ce3L), tole(0x45df5c75L), tole(0xdcd60dcfL), tole(0xabd13d59L),
43*4882a593Smuzhiyun     tole(0x26d930acL), tole(0x51de003aL), tole(0xc8d75180L), tole(0xbfd06116L),
44*4882a593Smuzhiyun     tole(0x21b4f4b5L), tole(0x56b3c423L), tole(0xcfba9599L), tole(0xb8bda50fL),
45*4882a593Smuzhiyun     tole(0x2802b89eL), tole(0x5f058808L), tole(0xc60cd9b2L), tole(0xb10be924L),
46*4882a593Smuzhiyun     tole(0x2f6f7c87L), tole(0x58684c11L), tole(0xc1611dabL), tole(0xb6662d3dL),
47*4882a593Smuzhiyun     tole(0x76dc4190L), tole(0x01db7106L), tole(0x98d220bcL), tole(0xefd5102aL),
48*4882a593Smuzhiyun     tole(0x71b18589L), tole(0x06b6b51fL), tole(0x9fbfe4a5L), tole(0xe8b8d433L),
49*4882a593Smuzhiyun     tole(0x7807c9a2L), tole(0x0f00f934L), tole(0x9609a88eL), tole(0xe10e9818L),
50*4882a593Smuzhiyun     tole(0x7f6a0dbbL), tole(0x086d3d2dL), tole(0x91646c97L), tole(0xe6635c01L),
51*4882a593Smuzhiyun     tole(0x6b6b51f4L), tole(0x1c6c6162L), tole(0x856530d8L), tole(0xf262004eL),
52*4882a593Smuzhiyun     tole(0x6c0695edL), tole(0x1b01a57bL), tole(0x8208f4c1L), tole(0xf50fc457L),
53*4882a593Smuzhiyun     tole(0x65b0d9c6L), tole(0x12b7e950L), tole(0x8bbeb8eaL), tole(0xfcb9887cL),
54*4882a593Smuzhiyun     tole(0x62dd1ddfL), tole(0x15da2d49L), tole(0x8cd37cf3L), tole(0xfbd44c65L),
55*4882a593Smuzhiyun     tole(0x4db26158L), tole(0x3ab551ceL), tole(0xa3bc0074L), tole(0xd4bb30e2L),
56*4882a593Smuzhiyun     tole(0x4adfa541L), tole(0x3dd895d7L), tole(0xa4d1c46dL), tole(0xd3d6f4fbL),
57*4882a593Smuzhiyun     tole(0x4369e96aL), tole(0x346ed9fcL), tole(0xad678846L), tole(0xda60b8d0L),
58*4882a593Smuzhiyun     tole(0x44042d73L), tole(0x33031de5L), tole(0xaa0a4c5fL), tole(0xdd0d7cc9L),
59*4882a593Smuzhiyun     tole(0x5005713cL), tole(0x270241aaL), tole(0xbe0b1010L), tole(0xc90c2086L),
60*4882a593Smuzhiyun     tole(0x5768b525L), tole(0x206f85b3L), tole(0xb966d409L), tole(0xce61e49fL),
61*4882a593Smuzhiyun     tole(0x5edef90eL), tole(0x29d9c998L), tole(0xb0d09822L), tole(0xc7d7a8b4L),
62*4882a593Smuzhiyun     tole(0x59b33d17L), tole(0x2eb40d81L), tole(0xb7bd5c3bL), tole(0xc0ba6cadL),
63*4882a593Smuzhiyun     tole(0xedb88320L), tole(0x9abfb3b6L), tole(0x03b6e20cL), tole(0x74b1d29aL),
64*4882a593Smuzhiyun     tole(0xead54739L), tole(0x9dd277afL), tole(0x04db2615L), tole(0x73dc1683L),
65*4882a593Smuzhiyun     tole(0xe3630b12L), tole(0x94643b84L), tole(0x0d6d6a3eL), tole(0x7a6a5aa8L),
66*4882a593Smuzhiyun     tole(0xe40ecf0bL), tole(0x9309ff9dL), tole(0x0a00ae27L), tole(0x7d079eb1L),
67*4882a593Smuzhiyun     tole(0xf00f9344L), tole(0x8708a3d2L), tole(0x1e01f268L), tole(0x6906c2feL),
68*4882a593Smuzhiyun     tole(0xf762575dL), tole(0x806567cbL), tole(0x196c3671L), tole(0x6e6b06e7L),
69*4882a593Smuzhiyun     tole(0xfed41b76L), tole(0x89d32be0L), tole(0x10da7a5aL), tole(0x67dd4accL),
70*4882a593Smuzhiyun     tole(0xf9b9df6fL), tole(0x8ebeeff9L), tole(0x17b7be43L), tole(0x60b08ed5L),
71*4882a593Smuzhiyun     tole(0xd6d6a3e8L), tole(0xa1d1937eL), tole(0x38d8c2c4L), tole(0x4fdff252L),
72*4882a593Smuzhiyun     tole(0xd1bb67f1L), tole(0xa6bc5767L), tole(0x3fb506ddL), tole(0x48b2364bL),
73*4882a593Smuzhiyun     tole(0xd80d2bdaL), tole(0xaf0a1b4cL), tole(0x36034af6L), tole(0x41047a60L),
74*4882a593Smuzhiyun     tole(0xdf60efc3L), tole(0xa867df55L), tole(0x316e8eefL), tole(0x4669be79L),
75*4882a593Smuzhiyun     tole(0xcb61b38cL), tole(0xbc66831aL), tole(0x256fd2a0L), tole(0x5268e236L),
76*4882a593Smuzhiyun     tole(0xcc0c7795L), tole(0xbb0b4703L), tole(0x220216b9L), tole(0x5505262fL),
77*4882a593Smuzhiyun     tole(0xc5ba3bbeL), tole(0xb2bd0b28L), tole(0x2bb45a92L), tole(0x5cb36a04L),
78*4882a593Smuzhiyun     tole(0xc2d7ffa7L), tole(0xb5d0cf31L), tole(0x2cd99e8bL), tole(0x5bdeae1dL),
79*4882a593Smuzhiyun     tole(0x9b64c2b0L), tole(0xec63f226L), tole(0x756aa39cL), tole(0x026d930aL),
80*4882a593Smuzhiyun     tole(0x9c0906a9L), tole(0xeb0e363fL), tole(0x72076785L), tole(0x05005713L),
81*4882a593Smuzhiyun     tole(0x95bf4a82L), tole(0xe2b87a14L), tole(0x7bb12baeL), tole(0x0cb61b38L),
82*4882a593Smuzhiyun     tole(0x92d28e9bL), tole(0xe5d5be0dL), tole(0x7cdcefb7L), tole(0x0bdbdf21L),
83*4882a593Smuzhiyun     tole(0x86d3d2d4L), tole(0xf1d4e242L), tole(0x68ddb3f8L), tole(0x1fda836eL),
84*4882a593Smuzhiyun     tole(0x81be16cdL), tole(0xf6b9265bL), tole(0x6fb077e1L), tole(0x18b74777L),
85*4882a593Smuzhiyun     tole(0x88085ae6L), tole(0xff0f6a70L), tole(0x66063bcaL), tole(0x11010b5cL),
86*4882a593Smuzhiyun     tole(0x8f659effL), tole(0xf862ae69L), tole(0x616bffd3L), tole(0x166ccf45L),
87*4882a593Smuzhiyun     tole(0xa00ae278L), tole(0xd70dd2eeL), tole(0x4e048354L), tole(0x3903b3c2L),
88*4882a593Smuzhiyun     tole(0xa7672661L), tole(0xd06016f7L), tole(0x4969474dL), tole(0x3e6e77dbL),
89*4882a593Smuzhiyun     tole(0xaed16a4aL), tole(0xd9d65adcL), tole(0x40df0b66L), tole(0x37d83bf0L),
90*4882a593Smuzhiyun     tole(0xa9bcae53L), tole(0xdebb9ec5L), tole(0x47b2cf7fL), tole(0x30b5ffe9L),
91*4882a593Smuzhiyun     tole(0xbdbdf21cL), tole(0xcabac28aL), tole(0x53b39330L), tole(0x24b4a3a6L),
92*4882a593Smuzhiyun     tole(0xbad03605L), tole(0xcdd70693L), tole(0x54de5729L), tole(0x23d967bfL),
93*4882a593Smuzhiyun     tole(0xb3667a2eL), tole(0xc4614ab8L), tole(0x5d681b02L), tole(0x2a6f2b94L),
94*4882a593Smuzhiyun     tole(0xb40bbe37L), tole(0xc30c8ea1L), tole(0x5a05df1bL), tole(0x2d02ef8dL)
95*4882a593Smuzhiyun };
FindIDBlock(char pos,char & IDBlockPos)96*4882a593Smuzhiyun CHAR CRKAndroidDevice::FindIDBlock(char pos, char &IDBlockPos)
97*4882a593Smuzhiyun {
98*4882a593Smuzhiyun     BYTE bData[SECTOR_SIZE * 4];
99*4882a593Smuzhiyun     int iRet = ERR_SUCCESS;
100*4882a593Smuzhiyun     int i = FindValidBlocks(pos, 1);
101*4882a593Smuzhiyun     if (i < 0)
102*4882a593Smuzhiyun     {
103*4882a593Smuzhiyun         return -1;
104*4882a593Smuzhiyun     }
105*4882a593Smuzhiyun     for (; i < IDBLOCK_TOP; i = FindValidBlocks(i + 1, 1))
106*4882a593Smuzhiyun     {
107*4882a593Smuzhiyun         if (i < 0)
108*4882a593Smuzhiyun         {
109*4882a593Smuzhiyun             break;
110*4882a593Smuzhiyun         }
111*4882a593Smuzhiyun         memset(bData, 0, SECTOR_SIZE * 4);
112*4882a593Smuzhiyun         iRet = m_pComm->RKU_ReadSector(i * m_flashInfo.uiSectorPerBlock, 4, bData);
113*4882a593Smuzhiyun 
114*4882a593Smuzhiyun         if (ERR_SUCCESS != iRet)
115*4882a593Smuzhiyun         {
116*4882a593Smuzhiyun             if (m_pLog)
117*4882a593Smuzhiyun             {
118*4882a593Smuzhiyun                 m_pLog->Record(_T("ERROR:FindIDBlock-->RKU_ReadSector %x failed,RetCode(%d)"), i * m_flashInfo.uiSectorPerBlock, iRet);
119*4882a593Smuzhiyun             }
120*4882a593Smuzhiyun             return -1;//���ݶ�ȡʧ��
121*4882a593Smuzhiyun         }
122*4882a593Smuzhiyun         RKANDROID_IDB_SEC0 *pSec0;
123*4882a593Smuzhiyun         pSec0 = (RKANDROID_IDB_SEC0 *)bData;
124*4882a593Smuzhiyun         P_RC4((BYTE *)pSec0, SECTOR_SIZE);
125*4882a593Smuzhiyun         //       if (bData[514]==0x69)//0x69='i'
126*4882a593Smuzhiyun         if (pSec0->dwTag == 0x0FF0AA55)
127*4882a593Smuzhiyun         {
128*4882a593Smuzhiyun             //�����ж�tag
129*4882a593Smuzhiyun             RKANDROID_IDB_SEC1 *pSec;
130*4882a593Smuzhiyun             pSec = (RKANDROID_IDB_SEC1 *)(bData + SECTOR_SIZE);
131*4882a593Smuzhiyun             if (pSec->uiChipTag == 0x38324B52)
132*4882a593Smuzhiyun             {
133*4882a593Smuzhiyun                 IDBlockPos = i;
134*4882a593Smuzhiyun                 return 0;//�ҵ�idb
135*4882a593Smuzhiyun             }
136*4882a593Smuzhiyun             else
137*4882a593Smuzhiyun             {
138*4882a593Smuzhiyun                 continue;//tag����
139*4882a593Smuzhiyun             }
140*4882a593Smuzhiyun         }
141*4882a593Smuzhiyun 
142*4882a593Smuzhiyun     }
143*4882a593Smuzhiyun     return -1;
144*4882a593Smuzhiyun }
FindAllIDB()145*4882a593Smuzhiyun char CRKAndroidDevice::FindAllIDB()
146*4882a593Smuzhiyun {
147*4882a593Smuzhiyun     char i, iIndex, iStart = 0;
148*4882a593Smuzhiyun     CHAR iRet;
149*4882a593Smuzhiyun     m_oldIDBCounts = 0;
150*4882a593Smuzhiyun     for (i = 0; i < 5; i++)
151*4882a593Smuzhiyun     {
152*4882a593Smuzhiyun         iRet = FindIDBlock(iStart, iIndex);
153*4882a593Smuzhiyun         if (iRet < 0)
154*4882a593Smuzhiyun         {
155*4882a593Smuzhiyun             return m_oldIDBCounts;
156*4882a593Smuzhiyun         }
157*4882a593Smuzhiyun 
158*4882a593Smuzhiyun         m_idBlockOffset[i] = iIndex;
159*4882a593Smuzhiyun         m_oldIDBCounts++;
160*4882a593Smuzhiyun         iStart = iIndex + 1;
161*4882a593Smuzhiyun     }
162*4882a593Smuzhiyun 
163*4882a593Smuzhiyun     return m_oldIDBCounts;
164*4882a593Smuzhiyun }
ReserveIDBlock(char iBlockIndex,char iIdblockPos)165*4882a593Smuzhiyun bool CRKAndroidDevice::ReserveIDBlock(char iBlockIndex, char iIdblockPos)
166*4882a593Smuzhiyun {
167*4882a593Smuzhiyun     char i;
168*4882a593Smuzhiyun     CHAR iRet;
169*4882a593Smuzhiyun     for (i = iIdblockPos; i < IDB_BLOCKS; i++)
170*4882a593Smuzhiyun     {
171*4882a593Smuzhiyun         iRet = iBlockIndex = FindValidBlocks(iBlockIndex, m_flashInfo.usPhyBlokcPerIDB);
172*4882a593Smuzhiyun         if (iRet < 0)
173*4882a593Smuzhiyun         {
174*4882a593Smuzhiyun             return false;
175*4882a593Smuzhiyun         }
176*4882a593Smuzhiyun         m_idBlockOffset[i] = iBlockIndex;
177*4882a593Smuzhiyun         iBlockIndex += m_flashInfo.usPhyBlokcPerIDB;
178*4882a593Smuzhiyun     }
179*4882a593Smuzhiyun     return true;
180*4882a593Smuzhiyun }
CalcIDBCount()181*4882a593Smuzhiyun bool CRKAndroidDevice::CalcIDBCount()
182*4882a593Smuzhiyun {
183*4882a593Smuzhiyun     bool bRet;
184*4882a593Smuzhiyun     UINT uiIdSectorNum;//ID BLOCK������
185*4882a593Smuzhiyun 
186*4882a593Smuzhiyun     bRet = GetLoaderSize();
187*4882a593Smuzhiyun     if (!bRet)
188*4882a593Smuzhiyun     {
189*4882a593Smuzhiyun         if (m_pLog)
190*4882a593Smuzhiyun         {
191*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:CalcIDBCount-->GetLoaderSize failed"));
192*4882a593Smuzhiyun         }
193*4882a593Smuzhiyun         return false;
194*4882a593Smuzhiyun     }
195*4882a593Smuzhiyun     bRet = GetLoaderDataSize();
196*4882a593Smuzhiyun     if (!bRet)
197*4882a593Smuzhiyun     {
198*4882a593Smuzhiyun         if (m_pLog)
199*4882a593Smuzhiyun         {
200*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:CalcIDBCount-->GetLoaderDataSize failed"));
201*4882a593Smuzhiyun         }
202*4882a593Smuzhiyun         return false;
203*4882a593Smuzhiyun     }
204*4882a593Smuzhiyun     if (m_pImage->m_bootObject->IsNewIDBFlag())
205*4882a593Smuzhiyun     {
206*4882a593Smuzhiyun         if (m_pLog)
207*4882a593Smuzhiyun         {
208*4882a593Smuzhiyun             m_pLog->Record(_T("INFO:CalcIDBCount IsNewIDBFlag is true"));
209*4882a593Smuzhiyun         }
210*4882a593Smuzhiyun         bRet = GetLoaderHeadSize();
211*4882a593Smuzhiyun         if (!bRet)
212*4882a593Smuzhiyun         {
213*4882a593Smuzhiyun             if (m_pLog)
214*4882a593Smuzhiyun             {
215*4882a593Smuzhiyun                 m_pLog->Record(_T("ERROR:CalcIDBCount-->GetLoaderHeadSize failed"));
216*4882a593Smuzhiyun             }
217*4882a593Smuzhiyun             return false;
218*4882a593Smuzhiyun         }
219*4882a593Smuzhiyun         uiIdSectorNum = m_usFlashHeadSec + m_usFlashDataSec + m_usFlashBootSec;
220*4882a593Smuzhiyun     }
221*4882a593Smuzhiyun     else
222*4882a593Smuzhiyun     {
223*4882a593Smuzhiyun         uiIdSectorNum = 4 + m_usFlashDataSec + m_usFlashBootSec;
224*4882a593Smuzhiyun     }
225*4882a593Smuzhiyun 
226*4882a593Smuzhiyun     m_flashInfo.uiSecNumPerIDB = uiIdSectorNum;
227*4882a593Smuzhiyun     m_flashInfo.usPhyBlokcPerIDB = CALC_UNIT(uiIdSectorNum, m_flashInfo.usValidSecPerBlock);
228*4882a593Smuzhiyun     return true;
229*4882a593Smuzhiyun }
OffsetIDBlock(char pos)230*4882a593Smuzhiyun bool CRKAndroidDevice::OffsetIDBlock(char pos)
231*4882a593Smuzhiyun {
232*4882a593Smuzhiyun     int iBlockIndex, i;
233*4882a593Smuzhiyun     for (i = 0; i < m_flashInfo.usPhyBlokcPerIDB; i++)
234*4882a593Smuzhiyun     {
235*4882a593Smuzhiyun         m_flashInfo.blockState[m_idBlockOffset[pos] + i] = 1; //����ϻ���
236*4882a593Smuzhiyun     }
237*4882a593Smuzhiyun     iBlockIndex = m_idBlockOffset[pos] + m_flashInfo.usPhyBlokcPerIDB;
238*4882a593Smuzhiyun     for (i = pos; i < 5; i++)
239*4882a593Smuzhiyun     {
240*4882a593Smuzhiyun         iBlockIndex = FindValidBlocks(iBlockIndex, m_flashInfo.usPhyBlokcPerIDB);
241*4882a593Smuzhiyun         if (iBlockIndex < 0)
242*4882a593Smuzhiyun         {
243*4882a593Smuzhiyun             return false;
244*4882a593Smuzhiyun         }
245*4882a593Smuzhiyun         m_idBlockOffset[i] = iBlockIndex;
246*4882a593Smuzhiyun         iBlockIndex += m_flashInfo.usPhyBlokcPerIDB;
247*4882a593Smuzhiyun     }
248*4882a593Smuzhiyun 
249*4882a593Smuzhiyun     return true;
250*4882a593Smuzhiyun }
GetLoaderSize()251*4882a593Smuzhiyun bool CRKAndroidDevice::GetLoaderSize()
252*4882a593Smuzhiyun {
253*4882a593Smuzhiyun     if (!m_pImage)
254*4882a593Smuzhiyun     {
255*4882a593Smuzhiyun         return false;
256*4882a593Smuzhiyun     }
257*4882a593Smuzhiyun     CHAR index;
258*4882a593Smuzhiyun     bool bRet;
259*4882a593Smuzhiyun     tchar loaderName[] = _T("FlashBoot");
260*4882a593Smuzhiyun     index = m_pImage->m_bootObject->GetIndexByName(ENTRYLOADER, loaderName);
261*4882a593Smuzhiyun     if (index == -1)
262*4882a593Smuzhiyun     {
263*4882a593Smuzhiyun         return false;
264*4882a593Smuzhiyun     }
265*4882a593Smuzhiyun     DWORD dwDelay;
266*4882a593Smuzhiyun     bRet = m_pImage->m_bootObject->GetEntryProperty(ENTRYLOADER, index, m_dwLoaderSize, dwDelay);
267*4882a593Smuzhiyun     if (bRet)
268*4882a593Smuzhiyun     {
269*4882a593Smuzhiyun         m_usFlashBootSec = PAGEALIGN(BYTE2SECTOR(m_dwLoaderSize)) * 4;
270*4882a593Smuzhiyun     }
271*4882a593Smuzhiyun     return bRet;
272*4882a593Smuzhiyun }
GetLoaderDataSize()273*4882a593Smuzhiyun bool CRKAndroidDevice::GetLoaderDataSize()
274*4882a593Smuzhiyun {
275*4882a593Smuzhiyun     if (!m_pImage)
276*4882a593Smuzhiyun     {
277*4882a593Smuzhiyun         return false;
278*4882a593Smuzhiyun     }
279*4882a593Smuzhiyun     CHAR index;
280*4882a593Smuzhiyun     bool bRet;
281*4882a593Smuzhiyun     tchar loaderName[] = _T("FlashData");
282*4882a593Smuzhiyun     index = m_pImage->m_bootObject->GetIndexByName(ENTRYLOADER, loaderName);
283*4882a593Smuzhiyun     if (index == -1)
284*4882a593Smuzhiyun     {
285*4882a593Smuzhiyun         return false;
286*4882a593Smuzhiyun     }
287*4882a593Smuzhiyun     DWORD dwDelay;
288*4882a593Smuzhiyun     bRet = m_pImage->m_bootObject->GetEntryProperty(ENTRYLOADER, index, m_dwLoaderDataSize, dwDelay);
289*4882a593Smuzhiyun     if (bRet)
290*4882a593Smuzhiyun     {
291*4882a593Smuzhiyun         m_usFlashDataSec = PAGEALIGN(BYTE2SECTOR(m_dwLoaderDataSize)) * 4;
292*4882a593Smuzhiyun     }
293*4882a593Smuzhiyun     return bRet;
294*4882a593Smuzhiyun }
295*4882a593Smuzhiyun 
GetLoaderHeadSize()296*4882a593Smuzhiyun bool CRKAndroidDevice::GetLoaderHeadSize()
297*4882a593Smuzhiyun {
298*4882a593Smuzhiyun     if (!m_pImage)
299*4882a593Smuzhiyun     {
300*4882a593Smuzhiyun         return false;
301*4882a593Smuzhiyun     }
302*4882a593Smuzhiyun     char index;
303*4882a593Smuzhiyun     bool bRet;
304*4882a593Smuzhiyun     tchar loaderName[] = _T("FlashHead");
305*4882a593Smuzhiyun     index = m_pImage->m_bootObject->GetIndexByName(ENTRYLOADER, loaderName);
306*4882a593Smuzhiyun     if (index == -1)
307*4882a593Smuzhiyun     {
308*4882a593Smuzhiyun         return false;
309*4882a593Smuzhiyun     }
310*4882a593Smuzhiyun     DWORD dwDelay;
311*4882a593Smuzhiyun     bRet = m_pImage->m_bootObject->GetEntryProperty(ENTRYLOADER, index, m_dwLoaderHeadSize, dwDelay);
312*4882a593Smuzhiyun     if (bRet)
313*4882a593Smuzhiyun     {
314*4882a593Smuzhiyun         m_usFlashHeadSec = PAGEALIGN(BYTE2SECTOR(m_dwLoaderHeadSize)) * 4;
315*4882a593Smuzhiyun     }
316*4882a593Smuzhiyun     return bRet;
317*4882a593Smuzhiyun }
318*4882a593Smuzhiyun 
CRKAndroidDevice(STRUCT_RKDEVICE_DESC & device)319*4882a593Smuzhiyun CRKAndroidDevice::CRKAndroidDevice(STRUCT_RKDEVICE_DESC &device): CRKDevice(device)
320*4882a593Smuzhiyun {
321*4882a593Smuzhiyun     m_oldSec0 = NULL;
322*4882a593Smuzhiyun     m_oldSec1 = NULL;
323*4882a593Smuzhiyun     m_oldSec2 = NULL;
324*4882a593Smuzhiyun     m_oldSec3 = NULL;
325*4882a593Smuzhiyun     m_dwLoaderSize = 0;
326*4882a593Smuzhiyun     m_dwLoaderDataSize = 0;
327*4882a593Smuzhiyun     m_dwLoaderHeadSize = 0;
328*4882a593Smuzhiyun     m_oldIDBCounts = 0;
329*4882a593Smuzhiyun     m_usFlashBootSec = 0;
330*4882a593Smuzhiyun     m_usFlashDataSec = 0;
331*4882a593Smuzhiyun     m_usFlashHeadSec = 0;
332*4882a593Smuzhiyun     m_dwBackupOffset = 0xFFFFFFFF;
333*4882a593Smuzhiyun     m_paramBuffer = NULL;
334*4882a593Smuzhiyun     m_pCallback = NULL;
335*4882a593Smuzhiyun     m_pProcessCallback = NULL;
336*4882a593Smuzhiyun }
~CRKAndroidDevice()337*4882a593Smuzhiyun CRKAndroidDevice::~CRKAndroidDevice()
338*4882a593Smuzhiyun {
339*4882a593Smuzhiyun     if (m_oldSec0)
340*4882a593Smuzhiyun     {
341*4882a593Smuzhiyun         delete m_oldSec0;
342*4882a593Smuzhiyun         m_oldSec0 = NULL;
343*4882a593Smuzhiyun     }
344*4882a593Smuzhiyun     if (m_oldSec1)
345*4882a593Smuzhiyun     {
346*4882a593Smuzhiyun         delete m_oldSec1;
347*4882a593Smuzhiyun         m_oldSec1 = NULL;
348*4882a593Smuzhiyun     }
349*4882a593Smuzhiyun     if (m_oldSec2)
350*4882a593Smuzhiyun     {
351*4882a593Smuzhiyun         delete m_oldSec2;
352*4882a593Smuzhiyun         m_oldSec2 = NULL;
353*4882a593Smuzhiyun     }
354*4882a593Smuzhiyun     if (m_oldSec3)
355*4882a593Smuzhiyun     {
356*4882a593Smuzhiyun         delete m_oldSec3;
357*4882a593Smuzhiyun         m_oldSec3 = NULL;
358*4882a593Smuzhiyun     }
359*4882a593Smuzhiyun     if (m_paramBuffer)
360*4882a593Smuzhiyun     {
361*4882a593Smuzhiyun         delete []m_paramBuffer;
362*4882a593Smuzhiyun         m_paramBuffer = NULL;
363*4882a593Smuzhiyun     }
364*4882a593Smuzhiyun }
GetOldSectorData()365*4882a593Smuzhiyun bool CRKAndroidDevice::GetOldSectorData()
366*4882a593Smuzhiyun {
367*4882a593Smuzhiyun     BYTE bData[SECTOR_SIZE * 4];
368*4882a593Smuzhiyun 
369*4882a593Smuzhiyun     if (m_oldIDBCounts <= 0)
370*4882a593Smuzhiyun     {
371*4882a593Smuzhiyun         return false;
372*4882a593Smuzhiyun     }
373*4882a593Smuzhiyun 
374*4882a593Smuzhiyun     if (!GetWriteBackData(m_oldIDBCounts, bData))
375*4882a593Smuzhiyun     {
376*4882a593Smuzhiyun         if (m_pLog)
377*4882a593Smuzhiyun         {
378*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:GetOldSectorData-->GetWriteBackData failed"));
379*4882a593Smuzhiyun         }
380*4882a593Smuzhiyun         return false;//���ݶ�ȡʧ��
381*4882a593Smuzhiyun     }
382*4882a593Smuzhiyun     PBYTE pSec;
383*4882a593Smuzhiyun     if (!m_oldSec0)
384*4882a593Smuzhiyun     {
385*4882a593Smuzhiyun         m_oldSec0 = new RKANDROID_IDB_SEC0;
386*4882a593Smuzhiyun     }
387*4882a593Smuzhiyun     pSec = (PBYTE)(m_oldSec0);
388*4882a593Smuzhiyun     memset(pSec, 0, SECTOR_SIZE);
389*4882a593Smuzhiyun     memcpy(pSec, bData, SECTOR_SIZE);
390*4882a593Smuzhiyun     P_RC4(pSec, SECTOR_SIZE);
391*4882a593Smuzhiyun 
392*4882a593Smuzhiyun     if (!m_oldSec1)
393*4882a593Smuzhiyun     {
394*4882a593Smuzhiyun         m_oldSec1 = new RKANDROID_IDB_SEC1;
395*4882a593Smuzhiyun     }
396*4882a593Smuzhiyun     pSec = (PBYTE)(m_oldSec1);
397*4882a593Smuzhiyun     memset(pSec, 0, SECTOR_SIZE);
398*4882a593Smuzhiyun     memcpy(pSec, bData + 512, SECTOR_SIZE);
399*4882a593Smuzhiyun 
400*4882a593Smuzhiyun     if (!m_oldSec2)
401*4882a593Smuzhiyun     {
402*4882a593Smuzhiyun         m_oldSec2 = new RKANDROID_IDB_SEC2;
403*4882a593Smuzhiyun     }
404*4882a593Smuzhiyun     pSec = (PBYTE)(m_oldSec2);
405*4882a593Smuzhiyun     memset(pSec, 0, SECTOR_SIZE);
406*4882a593Smuzhiyun     memcpy(pSec, bData + 512 * 2, SECTOR_SIZE);
407*4882a593Smuzhiyun     P_RC4(pSec, SECTOR_SIZE);
408*4882a593Smuzhiyun 
409*4882a593Smuzhiyun     if (!m_oldSec3)
410*4882a593Smuzhiyun     {
411*4882a593Smuzhiyun         m_oldSec3 = new RKANDROID_IDB_SEC3;
412*4882a593Smuzhiyun     }
413*4882a593Smuzhiyun     pSec = (PBYTE)(m_oldSec3);
414*4882a593Smuzhiyun     memset(pSec, 0, SECTOR_SIZE);
415*4882a593Smuzhiyun     memcpy(pSec, bData + 512 * 3, SECTOR_SIZE);
416*4882a593Smuzhiyun     P_RC4(pSec, SECTOR_SIZE);
417*4882a593Smuzhiyun 
418*4882a593Smuzhiyun     return true;
419*4882a593Smuzhiyun 
420*4882a593Smuzhiyun }
MakeSector0(PBYTE pSector)421*4882a593Smuzhiyun bool CRKAndroidDevice::MakeSector0(PBYTE pSector)
422*4882a593Smuzhiyun {
423*4882a593Smuzhiyun     PRKANDROID_IDB_SEC0 pSec0;
424*4882a593Smuzhiyun     memset(pSector, 0, SECTOR_SIZE);
425*4882a593Smuzhiyun     pSec0 = (PRKANDROID_IDB_SEC0)pSector;
426*4882a593Smuzhiyun 
427*4882a593Smuzhiyun     pSec0->dwTag = 0x0FF0AA55;
428*4882a593Smuzhiyun     if (m_pImage->m_bootObject->Rc4DisableFlag)
429*4882a593Smuzhiyun     {
430*4882a593Smuzhiyun         pSec0->uiRc4Flag = 1;
431*4882a593Smuzhiyun     }
432*4882a593Smuzhiyun     pSec0->usBootCode1Offset = 0x4;
433*4882a593Smuzhiyun     pSec0->usBootCode2Offset = 0x4;
434*4882a593Smuzhiyun     pSec0->usBootDataSize = m_usFlashDataSec;
435*4882a593Smuzhiyun     pSec0->usBootCodeSize = m_usFlashDataSec + m_usFlashBootSec;
436*4882a593Smuzhiyun 
437*4882a593Smuzhiyun     //  pSec0->usCrc = CRC_16(pSector,SECTOR_SIZE-2);
438*4882a593Smuzhiyun     return true;
439*4882a593Smuzhiyun }
440*4882a593Smuzhiyun 
MakeSector1(PBYTE pSector)441*4882a593Smuzhiyun void CRKAndroidDevice::MakeSector1(PBYTE pSector)
442*4882a593Smuzhiyun {
443*4882a593Smuzhiyun     PRKANDROID_IDB_SEC1 pSec1;
444*4882a593Smuzhiyun     memset(pSector, 0, SECTOR_SIZE);
445*4882a593Smuzhiyun     pSec1 = (PRKANDROID_IDB_SEC1)pSector;
446*4882a593Smuzhiyun     USHORT usSysReserved;
447*4882a593Smuzhiyun     if ((m_idBlockOffset[4] + 1) % 12 == 0)
448*4882a593Smuzhiyun     {
449*4882a593Smuzhiyun         usSysReserved = m_idBlockOffset[4] + 13;
450*4882a593Smuzhiyun     }
451*4882a593Smuzhiyun     else
452*4882a593Smuzhiyun     {
453*4882a593Smuzhiyun         usSysReserved = ((m_idBlockOffset[4] + 1) / 12 + 1) * 12;
454*4882a593Smuzhiyun     }
455*4882a593Smuzhiyun     if (usSysReserved > IDBLOCK_TOP)
456*4882a593Smuzhiyun     {
457*4882a593Smuzhiyun         usSysReserved = IDBLOCK_TOP;
458*4882a593Smuzhiyun     }
459*4882a593Smuzhiyun     pSec1->usSysReservedBlock = usSysReserved;
460*4882a593Smuzhiyun 
461*4882a593Smuzhiyun 
462*4882a593Smuzhiyun     pSec1->usDisk0Size = 0;
463*4882a593Smuzhiyun     pSec1->usDisk1Size = 0;
464*4882a593Smuzhiyun     pSec1->usDisk2Size = 0;
465*4882a593Smuzhiyun     pSec1->usDisk3Size = 0;
466*4882a593Smuzhiyun     pSec1->uiChipTag = 0x38324B52;
467*4882a593Smuzhiyun     pSec1->uiMachineId = 0;
468*4882a593Smuzhiyun     pSec1->usLoaderYear = UshortToBCD(((STRUCT_RKTIME)m_pImage->m_bootObject->ReleaseTime).usYear);
469*4882a593Smuzhiyun     pSec1->usLoaderDate = ByteToBCD(((STRUCT_RKTIME)m_pImage->m_bootObject->ReleaseTime).ucMonth);
470*4882a593Smuzhiyun     pSec1->usLoaderDate = (pSec1->usLoaderDate << 8) | ByteToBCD(((STRUCT_RKTIME)m_pImage->m_bootObject->ReleaseTime).ucDay);
471*4882a593Smuzhiyun     pSec1->usLoaderVer =  m_pImage->m_bootObject->Version;
472*4882a593Smuzhiyun     if (m_oldSec1)
473*4882a593Smuzhiyun     {
474*4882a593Smuzhiyun         pSec1->usLastLoaderVer = m_oldSec1->usLoaderVer;
475*4882a593Smuzhiyun         pSec1->usReadWriteTimes = m_oldSec1->usReadWriteTimes + 1;
476*4882a593Smuzhiyun     }
477*4882a593Smuzhiyun     else
478*4882a593Smuzhiyun     {
479*4882a593Smuzhiyun         pSec1->usLastLoaderVer = 0;
480*4882a593Smuzhiyun         pSec1->usReadWriteTimes = 1;
481*4882a593Smuzhiyun     }
482*4882a593Smuzhiyun     pSec1->uiFlashSize = m_flashInfo.uiFlashSize * 2 * 1024;
483*4882a593Smuzhiyun     pSec1->usBlockSize = m_flashInfo.usBlockSize * 2;
484*4882a593Smuzhiyun     pSec1->bPageSize = m_flashInfo.uiPageSize * 2;
485*4882a593Smuzhiyun     pSec1->bECCBits = m_flashInfo.bECCBits;
486*4882a593Smuzhiyun     pSec1->bAccessTime = m_flashInfo.bAccessTime;
487*4882a593Smuzhiyun 
488*4882a593Smuzhiyun     pSec1->usFlashInfoLen = 0;
489*4882a593Smuzhiyun     pSec1->usFlashInfoOffset = 0;
490*4882a593Smuzhiyun 
491*4882a593Smuzhiyun 
492*4882a593Smuzhiyun     pSec1->usIdBlock0 = m_idBlockOffset[0];
493*4882a593Smuzhiyun     pSec1->usIdBlock1 = m_idBlockOffset[1];
494*4882a593Smuzhiyun     pSec1->usIdBlock2 = m_idBlockOffset[2];
495*4882a593Smuzhiyun     pSec1->usIdBlock3 = m_idBlockOffset[3];
496*4882a593Smuzhiyun     pSec1->usIdBlock4 = m_idBlockOffset[4];
497*4882a593Smuzhiyun }
MakeSector2(PBYTE pSector)498*4882a593Smuzhiyun bool CRKAndroidDevice::MakeSector2(PBYTE pSector)
499*4882a593Smuzhiyun {
500*4882a593Smuzhiyun     PRKANDROID_IDB_SEC2 pSec2;
501*4882a593Smuzhiyun     pSec2 = (PRKANDROID_IDB_SEC2)pSector;
502*4882a593Smuzhiyun 
503*4882a593Smuzhiyun     pSec2->usInfoSize = 0;
504*4882a593Smuzhiyun     memset(pSec2->bChipInfo, 0, CHIPINFO_LEN);
505*4882a593Smuzhiyun 
506*4882a593Smuzhiyun     if (m_oldSec2)
507*4882a593Smuzhiyun     {
508*4882a593Smuzhiyun         memcpy(pSec2->reserved, m_oldSec2->reserved, RKANDROID_SEC2_RESERVED_LEN);
509*4882a593Smuzhiyun         pSec2->usSec3CustomDataOffset = m_oldSec2->usSec3CustomDataOffset;
510*4882a593Smuzhiyun         pSec2->usSec3CustomDataSize = m_oldSec2->usSec3CustomDataSize;
511*4882a593Smuzhiyun     }
512*4882a593Smuzhiyun     else
513*4882a593Smuzhiyun     {
514*4882a593Smuzhiyun         memset(pSec2->reserved, 0, RKANDROID_SEC2_RESERVED_LEN);
515*4882a593Smuzhiyun         pSec2->usSec3CustomDataOffset = m_usWriteBackCustomDataOffset;
516*4882a593Smuzhiyun         pSec2->usSec3CustomDataSize = m_usWriteBackCustomDataSize;
517*4882a593Smuzhiyun     }
518*4882a593Smuzhiyun 
519*4882a593Smuzhiyun     strcpy(pSec2->szVcTag, "VC");
520*4882a593Smuzhiyun     strcpy(pSec2->szCrcTag, "CRC");
521*4882a593Smuzhiyun     return true;
522*4882a593Smuzhiyun }
MakeSector3(PBYTE pSector)523*4882a593Smuzhiyun bool CRKAndroidDevice::MakeSector3(PBYTE pSector)
524*4882a593Smuzhiyun {
525*4882a593Smuzhiyun     PRKANDROID_IDB_SEC3 pSec3;
526*4882a593Smuzhiyun     memset(pSector, 0, SECTOR_SIZE);
527*4882a593Smuzhiyun     pSec3 = (PRKANDROID_IDB_SEC3)pSector;
528*4882a593Smuzhiyun 
529*4882a593Smuzhiyun     if (m_oldSec3)
530*4882a593Smuzhiyun     {
531*4882a593Smuzhiyun         memcpy(pSector, (PBYTE)m_oldSec3, SECTOR_SIZE);
532*4882a593Smuzhiyun     }
533*4882a593Smuzhiyun     else
534*4882a593Smuzhiyun     {
535*4882a593Smuzhiyun         if (m_backupBuffer)
536*4882a593Smuzhiyun         {
537*4882a593Smuzhiyun             memcpy(pSector, (PBYTE)m_backupBuffer, SECTOR_SIZE);
538*4882a593Smuzhiyun         }
539*4882a593Smuzhiyun     }
540*4882a593Smuzhiyun 
541*4882a593Smuzhiyun 
542*4882a593Smuzhiyun     if (m_uid)
543*4882a593Smuzhiyun     {
544*4882a593Smuzhiyun         if ((m_oldSec3) || (m_backupBuffer))
545*4882a593Smuzhiyun         {
546*4882a593Smuzhiyun             if (!CheckUid(pSec3->uidSize, pSec3->uid))
547*4882a593Smuzhiyun             {
548*4882a593Smuzhiyun                 pSec3->uidSize = RKDEVICE_UID_LEN;
549*4882a593Smuzhiyun                 memcpy(pSec3->uid, m_uid, RKDEVICE_UID_LEN);
550*4882a593Smuzhiyun             }
551*4882a593Smuzhiyun         }
552*4882a593Smuzhiyun         else
553*4882a593Smuzhiyun         {
554*4882a593Smuzhiyun             pSec3->uidSize = RKDEVICE_UID_LEN;
555*4882a593Smuzhiyun             memcpy(pSec3->uid, m_uid, RKDEVICE_UID_LEN);
556*4882a593Smuzhiyun         }
557*4882a593Smuzhiyun     }
558*4882a593Smuzhiyun 
559*4882a593Smuzhiyun     return true;
560*4882a593Smuzhiyun }
MakeIDBlockData(PBYTE lpIDBlock)561*4882a593Smuzhiyun int CRKAndroidDevice::MakeIDBlockData(PBYTE lpIDBlock)
562*4882a593Smuzhiyun {
563*4882a593Smuzhiyun     if (m_pLog)
564*4882a593Smuzhiyun     {
565*4882a593Smuzhiyun         m_pLog->Record(_T("INFO:MakeIDBlockData in"));
566*4882a593Smuzhiyun     }
567*4882a593Smuzhiyun     RKANDROID_IDB_SEC0 sector0Info;
568*4882a593Smuzhiyun     RKANDROID_IDB_SEC1 sector1Info;
569*4882a593Smuzhiyun     RKANDROID_IDB_SEC2 sector2Info;
570*4882a593Smuzhiyun     RKANDROID_IDB_SEC3 sector3Info;
571*4882a593Smuzhiyun 
572*4882a593Smuzhiyun     if (!m_pImage)
573*4882a593Smuzhiyun     {
574*4882a593Smuzhiyun         if (m_pLog)
575*4882a593Smuzhiyun         {
576*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:MakeIDBlockData-->Image is invalid"));
577*4882a593Smuzhiyun         }
578*4882a593Smuzhiyun         return -1;
579*4882a593Smuzhiyun     }
580*4882a593Smuzhiyun     CHAR index;
581*4882a593Smuzhiyun     tchar loaderCodeName[] = _T("FlashBoot");
582*4882a593Smuzhiyun     index = m_pImage->m_bootObject->GetIndexByName(ENTRYLOADER, loaderCodeName);
583*4882a593Smuzhiyun     if (index == -1)
584*4882a593Smuzhiyun     {
585*4882a593Smuzhiyun         if (m_pLog)
586*4882a593Smuzhiyun         {
587*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:MakeIDBlockData-->Get LoaderCode Entry failed"));
588*4882a593Smuzhiyun         }
589*4882a593Smuzhiyun         return -2;
590*4882a593Smuzhiyun     }
591*4882a593Smuzhiyun     PBYTE loaderCodeBuffer;
592*4882a593Smuzhiyun     loaderCodeBuffer = new BYTE[m_dwLoaderSize];
593*4882a593Smuzhiyun     memset(loaderCodeBuffer, 0, m_dwLoaderSize);
594*4882a593Smuzhiyun     if (!m_pImage->m_bootObject->GetEntryData(ENTRYLOADER, index, loaderCodeBuffer))
595*4882a593Smuzhiyun     {
596*4882a593Smuzhiyun         if (m_pLog)
597*4882a593Smuzhiyun         {
598*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:MakeIDBlockData-->Get LoaderCode Data failed"));
599*4882a593Smuzhiyun         }
600*4882a593Smuzhiyun         delete []loaderCodeBuffer;
601*4882a593Smuzhiyun         return -3;
602*4882a593Smuzhiyun     }
603*4882a593Smuzhiyun 
604*4882a593Smuzhiyun     tchar loaderDataName[] = _T("FlashData");
605*4882a593Smuzhiyun     index = m_pImage->m_bootObject->GetIndexByName(ENTRYLOADER, loaderDataName);
606*4882a593Smuzhiyun     if (index == -1)
607*4882a593Smuzhiyun     {
608*4882a593Smuzhiyun         if (m_pLog)
609*4882a593Smuzhiyun         {
610*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:MakeIDBlockData-->Get LoaderData Entry failed"));
611*4882a593Smuzhiyun         }
612*4882a593Smuzhiyun         delete []loaderCodeBuffer;
613*4882a593Smuzhiyun         return -4;
614*4882a593Smuzhiyun     }
615*4882a593Smuzhiyun     PBYTE loaderDataBuffer;
616*4882a593Smuzhiyun     loaderDataBuffer = new BYTE[m_dwLoaderDataSize];
617*4882a593Smuzhiyun     memset(loaderDataBuffer, 0, m_dwLoaderDataSize);
618*4882a593Smuzhiyun     if (!m_pImage->m_bootObject->GetEntryData(ENTRYLOADER, index, loaderDataBuffer))
619*4882a593Smuzhiyun     {
620*4882a593Smuzhiyun         if (m_pLog)
621*4882a593Smuzhiyun         {
622*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:MakeIDBlockData-->Get LoaderData Data failed"));
623*4882a593Smuzhiyun         }
624*4882a593Smuzhiyun         delete []loaderDataBuffer;
625*4882a593Smuzhiyun         delete []loaderCodeBuffer;
626*4882a593Smuzhiyun         return -5;
627*4882a593Smuzhiyun     }
628*4882a593Smuzhiyun 
629*4882a593Smuzhiyun     ////////////// �������� ////////////////////////////////////////////
630*4882a593Smuzhiyun     UINT i;
631*4882a593Smuzhiyun     MakeSector0((PBYTE)&sector0Info);
632*4882a593Smuzhiyun     MakeSector1((PBYTE)&sector1Info);
633*4882a593Smuzhiyun     if (!MakeSector2((PBYTE)&sector2Info))
634*4882a593Smuzhiyun     {
635*4882a593Smuzhiyun         if (m_pLog)
636*4882a593Smuzhiyun         {
637*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:MakeIDBlockData-->MakeSector2 failed"));
638*4882a593Smuzhiyun         }
639*4882a593Smuzhiyun         return -6;
640*4882a593Smuzhiyun     }
641*4882a593Smuzhiyun     if (!MakeSector3((PBYTE)&sector3Info))
642*4882a593Smuzhiyun     {
643*4882a593Smuzhiyun         if (m_pLog)
644*4882a593Smuzhiyun         {
645*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:MakeIDBlockData-->MakeSector3 failed"));
646*4882a593Smuzhiyun         }
647*4882a593Smuzhiyun         return -7;
648*4882a593Smuzhiyun     }
649*4882a593Smuzhiyun     sector2Info.usSec0Crc = CRC_16((PBYTE)&sector0Info, SECTOR_SIZE);
650*4882a593Smuzhiyun     sector2Info.usSec1Crc = CRC_16((PBYTE)&sector1Info, SECTOR_SIZE);
651*4882a593Smuzhiyun     sector2Info.usSec3Crc = CRC_16((PBYTE)&sector3Info, SECTOR_SIZE);
652*4882a593Smuzhiyun 
653*4882a593Smuzhiyun     memcpy(lpIDBlock, &sector0Info, SECTOR_SIZE);
654*4882a593Smuzhiyun     memcpy(lpIDBlock + SECTOR_SIZE, &sector1Info, SECTOR_SIZE);
655*4882a593Smuzhiyun     //  memcpy(lpIDBlock+SECTOR_SIZE*2, &sector2Info, SECTOR_SIZE);
656*4882a593Smuzhiyun     memcpy(lpIDBlock + SECTOR_SIZE * 3, &sector3Info, SECTOR_SIZE);
657*4882a593Smuzhiyun 
658*4882a593Smuzhiyun     if (sector0Info.uiRc4Flag)
659*4882a593Smuzhiyun     {
660*4882a593Smuzhiyun         //close rc4 encryption
661*4882a593Smuzhiyun         for (i = 0; i < m_dwLoaderDataSize / SECTOR_SIZE; i++)
662*4882a593Smuzhiyun         {
663*4882a593Smuzhiyun             P_RC4(loaderDataBuffer + SECTOR_SIZE * i, SECTOR_SIZE);
664*4882a593Smuzhiyun         }
665*4882a593Smuzhiyun         for (i = 0; i < m_dwLoaderSize / SECTOR_SIZE; i++)
666*4882a593Smuzhiyun         {
667*4882a593Smuzhiyun             P_RC4(loaderCodeBuffer + SECTOR_SIZE * i, SECTOR_SIZE);
668*4882a593Smuzhiyun         }
669*4882a593Smuzhiyun     }
670*4882a593Smuzhiyun 
671*4882a593Smuzhiyun     memcpy(lpIDBlock + SECTOR_SIZE * 4, loaderDataBuffer, m_dwLoaderDataSize);
672*4882a593Smuzhiyun     memcpy(lpIDBlock + SECTOR_SIZE * (4 + m_usFlashDataSec), loaderCodeBuffer, m_dwLoaderSize);
673*4882a593Smuzhiyun 
674*4882a593Smuzhiyun     sector2Info.uiBootCodeCrc = CRC_32((PBYTE)(lpIDBlock + SECTOR_SIZE * 4), sector0Info.usBootCodeSize * SECTOR_SIZE);
675*4882a593Smuzhiyun     memcpy(lpIDBlock + SECTOR_SIZE * 2, &sector2Info, SECTOR_SIZE);
676*4882a593Smuzhiyun 
677*4882a593Smuzhiyun     for (i = 0; i < 4; i++)
678*4882a593Smuzhiyun     {
679*4882a593Smuzhiyun         if (i == 1)
680*4882a593Smuzhiyun         {
681*4882a593Smuzhiyun             continue;
682*4882a593Smuzhiyun         }
683*4882a593Smuzhiyun         else
684*4882a593Smuzhiyun         {
685*4882a593Smuzhiyun             P_RC4(lpIDBlock + SECTOR_SIZE * i, SECTOR_SIZE);
686*4882a593Smuzhiyun         }
687*4882a593Smuzhiyun     }
688*4882a593Smuzhiyun 
689*4882a593Smuzhiyun     delete []loaderDataBuffer;
690*4882a593Smuzhiyun     delete []loaderCodeBuffer;
691*4882a593Smuzhiyun     if (m_pLog)
692*4882a593Smuzhiyun     {
693*4882a593Smuzhiyun         m_pLog->Record(_T("INFO:MakeIDBlockData out"));
694*4882a593Smuzhiyun     }
695*4882a593Smuzhiyun     return 0;
696*4882a593Smuzhiyun }
697*4882a593Smuzhiyun 
MakeNewIDBlockData(PBYTE lpIDBlock)698*4882a593Smuzhiyun int CRKAndroidDevice::MakeNewIDBlockData(PBYTE lpIDBlock)
699*4882a593Smuzhiyun {
700*4882a593Smuzhiyun     int i;
701*4882a593Smuzhiyun 
702*4882a593Smuzhiyun     if (m_pLog)
703*4882a593Smuzhiyun     {
704*4882a593Smuzhiyun         m_pLog->Record(_T("INFO:MakeNewIDBlockData in"));
705*4882a593Smuzhiyun     }
706*4882a593Smuzhiyun 
707*4882a593Smuzhiyun     if (!m_pImage)
708*4882a593Smuzhiyun     {
709*4882a593Smuzhiyun         if (m_pLog)
710*4882a593Smuzhiyun         {
711*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:MakeNewIDBlockData-->Image is invalid"));
712*4882a593Smuzhiyun         }
713*4882a593Smuzhiyun         return -1;
714*4882a593Smuzhiyun     }
715*4882a593Smuzhiyun     char index;
716*4882a593Smuzhiyun     tchar loaderCodeName[] = _T("FlashBoot");
717*4882a593Smuzhiyun     index = m_pImage->m_bootObject->GetIndexByName(ENTRYLOADER, loaderCodeName);
718*4882a593Smuzhiyun     if (index == -1)
719*4882a593Smuzhiyun     {
720*4882a593Smuzhiyun         if (m_pLog)
721*4882a593Smuzhiyun         {
722*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:MakeNewIDBlockData-->Get LoaderCode Entry failed"));
723*4882a593Smuzhiyun         }
724*4882a593Smuzhiyun         return -2;
725*4882a593Smuzhiyun     }
726*4882a593Smuzhiyun     PBYTE loaderCodeBuffer;
727*4882a593Smuzhiyun     loaderCodeBuffer = new BYTE[m_dwLoaderSize];
728*4882a593Smuzhiyun     memset(loaderCodeBuffer, 0, m_dwLoaderSize);
729*4882a593Smuzhiyun     if (!m_pImage->m_bootObject->GetEntryData(ENTRYLOADER, index, loaderCodeBuffer))
730*4882a593Smuzhiyun     {
731*4882a593Smuzhiyun         if (m_pLog)
732*4882a593Smuzhiyun         {
733*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:MakeNewIDBlockData-->Get LoaderCode Data failed"));
734*4882a593Smuzhiyun         }
735*4882a593Smuzhiyun         delete []loaderCodeBuffer;
736*4882a593Smuzhiyun         return -3;
737*4882a593Smuzhiyun     }
738*4882a593Smuzhiyun 
739*4882a593Smuzhiyun     tchar loaderDataName[] = _T("FlashData");
740*4882a593Smuzhiyun     index = m_pImage->m_bootObject->GetIndexByName(ENTRYLOADER, loaderDataName);
741*4882a593Smuzhiyun     if (index == -1)
742*4882a593Smuzhiyun     {
743*4882a593Smuzhiyun         if (m_pLog)
744*4882a593Smuzhiyun         {
745*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:MakeNewIDBlockData-->Get LoaderData Entry failed"));
746*4882a593Smuzhiyun         }
747*4882a593Smuzhiyun         delete []loaderCodeBuffer;
748*4882a593Smuzhiyun         return -4;
749*4882a593Smuzhiyun     }
750*4882a593Smuzhiyun     PBYTE loaderDataBuffer;
751*4882a593Smuzhiyun     loaderDataBuffer = new BYTE[m_dwLoaderDataSize];
752*4882a593Smuzhiyun     memset(loaderDataBuffer, 0, m_dwLoaderDataSize);
753*4882a593Smuzhiyun     if (!m_pImage->m_bootObject->GetEntryData(ENTRYLOADER, index, loaderDataBuffer))
754*4882a593Smuzhiyun     {
755*4882a593Smuzhiyun         if (m_pLog)
756*4882a593Smuzhiyun         {
757*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:MakeNewIDBlockData-->Get LoaderData Data failed"));
758*4882a593Smuzhiyun         }
759*4882a593Smuzhiyun         delete []loaderDataBuffer;
760*4882a593Smuzhiyun         delete []loaderCodeBuffer;
761*4882a593Smuzhiyun         return -5;
762*4882a593Smuzhiyun     }
763*4882a593Smuzhiyun 
764*4882a593Smuzhiyun     tchar loaderHeadName[] = _T("FlashHead");
765*4882a593Smuzhiyun     index = m_pImage->m_bootObject->GetIndexByName(ENTRYLOADER, loaderHeadName);
766*4882a593Smuzhiyun     if (index == -1)
767*4882a593Smuzhiyun     {
768*4882a593Smuzhiyun         if (m_pLog)
769*4882a593Smuzhiyun         {
770*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:MakeNewIDBlockData-->Get LoaderHead Entry failed"));
771*4882a593Smuzhiyun         }
772*4882a593Smuzhiyun         delete []loaderDataBuffer;
773*4882a593Smuzhiyun         delete []loaderCodeBuffer;
774*4882a593Smuzhiyun         return -6;
775*4882a593Smuzhiyun     }
776*4882a593Smuzhiyun     PBYTE loaderHeadBuffer;
777*4882a593Smuzhiyun     loaderHeadBuffer = new BYTE[m_dwLoaderHeadSize];
778*4882a593Smuzhiyun     memset(loaderHeadBuffer, 0, m_dwLoaderHeadSize);
779*4882a593Smuzhiyun     if (!m_pImage->m_bootObject->GetEntryData(ENTRYLOADER, index, loaderHeadBuffer))
780*4882a593Smuzhiyun     {
781*4882a593Smuzhiyun         if (m_pLog)
782*4882a593Smuzhiyun         {
783*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:MakeNewIDBlockData-->Get LoaderHead Data failed"));
784*4882a593Smuzhiyun         }
785*4882a593Smuzhiyun         delete []loaderDataBuffer;
786*4882a593Smuzhiyun         delete []loaderCodeBuffer;
787*4882a593Smuzhiyun         delete []loaderHeadBuffer;
788*4882a593Smuzhiyun         return -7;
789*4882a593Smuzhiyun     }
790*4882a593Smuzhiyun 
791*4882a593Smuzhiyun     if (m_pImage->m_bootObject->Rc4DisableFlag)
792*4882a593Smuzhiyun     {
793*4882a593Smuzhiyun         //close rc4 encryption
794*4882a593Smuzhiyun         for (i = 0; i < m_dwLoaderHeadSize / SECTOR_SIZE; i++)
795*4882a593Smuzhiyun         {
796*4882a593Smuzhiyun             P_RC4(loaderHeadBuffer + SECTOR_SIZE * i, SECTOR_SIZE);
797*4882a593Smuzhiyun         }
798*4882a593Smuzhiyun         for (i = 0; i < m_dwLoaderDataSize / SECTOR_SIZE; i++)
799*4882a593Smuzhiyun         {
800*4882a593Smuzhiyun             P_RC4(loaderDataBuffer + SECTOR_SIZE * i, SECTOR_SIZE);
801*4882a593Smuzhiyun         }
802*4882a593Smuzhiyun         for (i = 0; i < m_dwLoaderSize / SECTOR_SIZE; i++)
803*4882a593Smuzhiyun         {
804*4882a593Smuzhiyun             P_RC4(loaderCodeBuffer + SECTOR_SIZE * i, SECTOR_SIZE);
805*4882a593Smuzhiyun         }
806*4882a593Smuzhiyun     }
807*4882a593Smuzhiyun     memcpy(lpIDBlock, loaderHeadBuffer, m_dwLoaderHeadSize);
808*4882a593Smuzhiyun     memcpy(lpIDBlock + SECTOR_SIZE * m_usFlashHeadSec, loaderDataBuffer, m_dwLoaderDataSize);
809*4882a593Smuzhiyun     memcpy(lpIDBlock + SECTOR_SIZE * (m_usFlashHeadSec + m_usFlashDataSec), loaderCodeBuffer, m_dwLoaderSize);
810*4882a593Smuzhiyun 
811*4882a593Smuzhiyun 
812*4882a593Smuzhiyun     delete []loaderDataBuffer;
813*4882a593Smuzhiyun     delete []loaderCodeBuffer;
814*4882a593Smuzhiyun     delete []loaderHeadBuffer;
815*4882a593Smuzhiyun 
816*4882a593Smuzhiyun     if (m_pLog)
817*4882a593Smuzhiyun     {
818*4882a593Smuzhiyun         m_pLog->Record(_T("INFO:MakeNewIDBlockData out"));
819*4882a593Smuzhiyun     }
820*4882a593Smuzhiyun     return 0;
821*4882a593Smuzhiyun }
822*4882a593Smuzhiyun 
MakeSpareData(PBYTE lpIDBlock,DWORD dwSectorNum,PBYTE lpSpareBuffer)823*4882a593Smuzhiyun bool CRKAndroidDevice::MakeSpareData(PBYTE lpIDBlock, DWORD dwSectorNum, PBYTE lpSpareBuffer)
824*4882a593Smuzhiyun {
825*4882a593Smuzhiyun     int i = 0;
826*4882a593Smuzhiyun     BYTE bchOutBuf[512 + 3 + 13];
827*4882a593Smuzhiyun     BYTE bchInBuf[512 + 3];
828*4882a593Smuzhiyun 
829*4882a593Smuzhiyun     for (i = 0; i < dwSectorNum; i++)
830*4882a593Smuzhiyun     {
831*4882a593Smuzhiyun         memcpy(bchInBuf, lpIDBlock + 512 * i, 512);
832*4882a593Smuzhiyun         bchInBuf[514] = ((i == 0) ? 'i' : 0xff);
833*4882a593Smuzhiyun         bchInBuf[512] = 0xff;
834*4882a593Smuzhiyun         bchInBuf[513] = 0xff;
835*4882a593Smuzhiyun         //��bchInBuf����BCH���루����13���ֽڵı��룩�����ɵ�bchOutBuf(528 Bytes)
836*4882a593Smuzhiyun         //��bchInBuf(515 Bytes)��BCH����(13 Bytes)���
837*4882a593Smuzhiyun         bch_encode(bchInBuf, bchOutBuf);
838*4882a593Smuzhiyun         memcpy(lpSpareBuffer + i * 16 + 3, bchOutBuf + 515, 13);
839*4882a593Smuzhiyun     }
840*4882a593Smuzhiyun     lpSpareBuffer[2] = 'i';
841*4882a593Smuzhiyun     return true;
842*4882a593Smuzhiyun }
843*4882a593Smuzhiyun 
WriteIDBlock(PBYTE lpIDBlock,DWORD dwSectorNum,bool bErase)844*4882a593Smuzhiyun int CRKAndroidDevice::WriteIDBlock(PBYTE lpIDBlock, DWORD dwSectorNum, bool bErase)
845*4882a593Smuzhiyun {
846*4882a593Smuzhiyun     if (m_pLog)
847*4882a593Smuzhiyun     {
848*4882a593Smuzhiyun         m_pLog->Record(_T("INFO:WriteIDBlock in"));
849*4882a593Smuzhiyun         m_pLog->Record(_T("INFO:---------------------"));
850*4882a593Smuzhiyun     }
851*4882a593Smuzhiyun 
852*4882a593Smuzhiyun     UINT uiBufferSize = 16 * 1024;
853*4882a593Smuzhiyun     int iRet, i, nTryCount = 3;
854*4882a593Smuzhiyun     UINT uiTotal;
855*4882a593Smuzhiyun     uiTotal = dwSectorNum * SECTOR_SIZE;
856*4882a593Smuzhiyun 
857*4882a593Smuzhiyun     while (nTryCount > 0)
858*4882a593Smuzhiyun     {
859*4882a593Smuzhiyun         m_pLog->Record(_T("dwSectorNum=%d"), dwSectorNum);
860*4882a593Smuzhiyun         m_pLog->Record(_T("uiTotal=%d\n"), uiTotal);
861*4882a593Smuzhiyun 
862*4882a593Smuzhiyun         //iRet = m_pComm->RKU_EndWriteSector((BYTE*)&end_write_sector_data);
863*4882a593Smuzhiyun         for (i = 0; i <= 4; i++)
864*4882a593Smuzhiyun         {
865*4882a593Smuzhiyun             iRet = m_pComm->RKU_LoaderWriteLBA(64 + i * 1024, dwSectorNum, lpIDBlock);
866*4882a593Smuzhiyun             if (iRet != ERR_SUCCESS)
867*4882a593Smuzhiyun             {
868*4882a593Smuzhiyun                 if (m_pLog)
869*4882a593Smuzhiyun                 {
870*4882a593Smuzhiyun                     m_pLog->Record(_T("ERROR:WriteIDBlock-->RKU_WriteSector failed!"));
871*4882a593Smuzhiyun                 }
872*4882a593Smuzhiyun                 return -1;
873*4882a593Smuzhiyun             }
874*4882a593Smuzhiyun         }
875*4882a593Smuzhiyun 
876*4882a593Smuzhiyun         if (iRet == ERR_SUCCESS)
877*4882a593Smuzhiyun         {
878*4882a593Smuzhiyun             break;
879*4882a593Smuzhiyun         }
880*4882a593Smuzhiyun         nTryCount--;
881*4882a593Smuzhiyun     }
882*4882a593Smuzhiyun 
883*4882a593Smuzhiyun     if (nTryCount <= 0)
884*4882a593Smuzhiyun     {
885*4882a593Smuzhiyun         return -2;
886*4882a593Smuzhiyun     }
887*4882a593Smuzhiyun 
888*4882a593Smuzhiyun     if (m_pLog)
889*4882a593Smuzhiyun     {
890*4882a593Smuzhiyun         m_pLog->Record(_T("INFO:WriteIDBlock out"));
891*4882a593Smuzhiyun     }
892*4882a593Smuzhiyun     return 0;
893*4882a593Smuzhiyun }
894*4882a593Smuzhiyun 
PrepareIDB()895*4882a593Smuzhiyun int CRKAndroidDevice::PrepareIDB()
896*4882a593Smuzhiyun {
897*4882a593Smuzhiyun     int i;
898*4882a593Smuzhiyun     generate_gf();
899*4882a593Smuzhiyun     gen_poly();
900*4882a593Smuzhiyun     string strInfo = "";
901*4882a593Smuzhiyun     char szTmp[32];
902*4882a593Smuzhiyun     bool bFirstCS = false;
903*4882a593Smuzhiyun 
904*4882a593Smuzhiyun     #if 0   //chad.ma closed 2018/09/27
905*4882a593Smuzhiyun     for (i = 0; i < 8; i++)
906*4882a593Smuzhiyun     {
907*4882a593Smuzhiyun         if (m_flashInfo.bFlashCS & (1 << i))
908*4882a593Smuzhiyun         {
909*4882a593Smuzhiyun             if (i == 0)
910*4882a593Smuzhiyun             {
911*4882a593Smuzhiyun                 bFirstCS = true;
912*4882a593Smuzhiyun             }
913*4882a593Smuzhiyun             if (m_pLog)
914*4882a593Smuzhiyun             {
915*4882a593Smuzhiyun                 m_pLog->Record(_T("INFO:CS(%d)\t\t(%dMB)\t\t(%s)"), i + 1, m_flashInfo.uiFlashSize, m_flashInfo.szManufacturerName);
916*4882a593Smuzhiyun             }
917*4882a593Smuzhiyun         }
918*4882a593Smuzhiyun     }
919*4882a593Smuzhiyun     if (!bFirstCS)
920*4882a593Smuzhiyun     {
921*4882a593Smuzhiyun         if (m_pLog)
922*4882a593Smuzhiyun         {
923*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:PrepareIDB-->No Found 1st Flash CS"));
924*4882a593Smuzhiyun         }
925*4882a593Smuzhiyun         return -1;
926*4882a593Smuzhiyun     }
927*4882a593Smuzhiyun 
928*4882a593Smuzhiyun     if (!BuildBlockStateMap(0))
929*4882a593Smuzhiyun     {
930*4882a593Smuzhiyun         if (m_pLog)
931*4882a593Smuzhiyun         {
932*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:PrepareIDB-->BuildBlockStateMap failed"));
933*4882a593Smuzhiyun         }
934*4882a593Smuzhiyun         return -2;
935*4882a593Smuzhiyun     }
936*4882a593Smuzhiyun 
937*4882a593Smuzhiyun     FindAllIDB();
938*4882a593Smuzhiyun 
939*4882a593Smuzhiyun     if (m_pLog)
940*4882a593Smuzhiyun     {
941*4882a593Smuzhiyun         m_pLog->Record(_T("ERROR:PrepareIDB-->IDblock count=%d."), m_oldIDBCounts);
942*4882a593Smuzhiyun     }
943*4882a593Smuzhiyun 
944*4882a593Smuzhiyun     memset(m_backupBuffer, 0, SECTOR_SIZE);
945*4882a593Smuzhiyun 
946*4882a593Smuzhiyun     if (m_oldIDBCounts > 0)
947*4882a593Smuzhiyun     {
948*4882a593Smuzhiyun         if (m_pLog)
949*4882a593Smuzhiyun         {
950*4882a593Smuzhiyun             strInfo = "";
951*4882a593Smuzhiyun             for (i = 0; i < m_oldIDBCounts; i++)
952*4882a593Smuzhiyun             {
953*4882a593Smuzhiyun                 sprintf(szTmp, "%d ", m_idBlockOffset[i]);
954*4882a593Smuzhiyun                 strInfo += szTmp;
955*4882a593Smuzhiyun             }
956*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:PrepareIDB-->IDblock offset=%s."), strInfo.c_str());
957*4882a593Smuzhiyun         }
958*4882a593Smuzhiyun         BYTE buffer[4 * SECTOR_SIZE];
959*4882a593Smuzhiyun         PRKANDROID_IDB_SEC3 pSec;
960*4882a593Smuzhiyun         PRKANDROID_IDB_SEC2 pSec2;
961*4882a593Smuzhiyun         pSec2 = (PRKANDROID_IDB_SEC2)(buffer + 2 * SECTOR_SIZE);
962*4882a593Smuzhiyun         pSec = (PRKANDROID_IDB_SEC3)(buffer + 3 * SECTOR_SIZE);
963*4882a593Smuzhiyun 
964*4882a593Smuzhiyun         if (!GetWriteBackData(m_oldIDBCounts, buffer))
965*4882a593Smuzhiyun         {
966*4882a593Smuzhiyun             if (m_pLog)
967*4882a593Smuzhiyun             {
968*4882a593Smuzhiyun                 m_pLog->Record(_T("ERROR:PrepareIDB-->GetWriteBackData failed"));
969*4882a593Smuzhiyun             }
970*4882a593Smuzhiyun             return -3;
971*4882a593Smuzhiyun         }
972*4882a593Smuzhiyun         P_RC4((PBYTE)pSec2, SECTOR_SIZE);
973*4882a593Smuzhiyun         P_RC4((PBYTE)pSec, SECTOR_SIZE);
974*4882a593Smuzhiyun         IsExistSector3Crc(pSec2);
975*4882a593Smuzhiyun 
976*4882a593Smuzhiyun         m_usWriteBackCrc = CRC_16((PBYTE)pSec, SECTOR_SIZE);
977*4882a593Smuzhiyun         if (m_bExistSector3Crc)
978*4882a593Smuzhiyun         {
979*4882a593Smuzhiyun             m_usWriteBackCustomDataOffset = pSec2->usSec3CustomDataOffset;
980*4882a593Smuzhiyun             m_usWriteBackCustomDataSize = pSec2->usSec3CustomDataSize;
981*4882a593Smuzhiyun             if (m_usSector3Crc != m_usWriteBackCrc)
982*4882a593Smuzhiyun             {
983*4882a593Smuzhiyun                 if (m_pLog)
984*4882a593Smuzhiyun                 {
985*4882a593Smuzhiyun                     m_pLog->Record(_T("ERROR:PrepareIDB-->Check sector3 crc failed"));
986*4882a593Smuzhiyun                 }
987*4882a593Smuzhiyun             }
988*4882a593Smuzhiyun         }
989*4882a593Smuzhiyun         memcpy(m_backupBuffer, pSec, SECTOR_SIZE);
990*4882a593Smuzhiyun     }
991*4882a593Smuzhiyun     else
992*4882a593Smuzhiyun     {
993*4882a593Smuzhiyun         FindBackupBuffer();
994*4882a593Smuzhiyun     }
995*4882a593Smuzhiyun 
996*4882a593Smuzhiyun     if (m_oldIDBCounts > 0)
997*4882a593Smuzhiyun     {
998*4882a593Smuzhiyun         if (!GetOldSectorData())
999*4882a593Smuzhiyun         {
1000*4882a593Smuzhiyun             if (m_pLog)
1001*4882a593Smuzhiyun             {
1002*4882a593Smuzhiyun                 m_pLog->Record(_T("ERROR:PrepareIDB-->GetOldSectorData failed"));
1003*4882a593Smuzhiyun             }
1004*4882a593Smuzhiyun             return -4;
1005*4882a593Smuzhiyun         }
1006*4882a593Smuzhiyun     }
1007*4882a593Smuzhiyun     #endif
1008*4882a593Smuzhiyun 
1009*4882a593Smuzhiyun     if (!CalcIDBCount())
1010*4882a593Smuzhiyun     {
1011*4882a593Smuzhiyun         if (m_pLog)
1012*4882a593Smuzhiyun         {
1013*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:PrepareIDB-->CalcIDBCount failed"));
1014*4882a593Smuzhiyun         }
1015*4882a593Smuzhiyun         return -5;
1016*4882a593Smuzhiyun     }
1017*4882a593Smuzhiyun     if (!ReserveIDBlock())
1018*4882a593Smuzhiyun     {
1019*4882a593Smuzhiyun         if (m_pLog)
1020*4882a593Smuzhiyun         {
1021*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:PrepareIDB-->ReserveIDBlock failed"));
1022*4882a593Smuzhiyun         }
1023*4882a593Smuzhiyun         return -6;
1024*4882a593Smuzhiyun     }
1025*4882a593Smuzhiyun     if (m_pLog)
1026*4882a593Smuzhiyun     {
1027*4882a593Smuzhiyun         strInfo = "";
1028*4882a593Smuzhiyun         for (i = 0; i < 5; i++)
1029*4882a593Smuzhiyun         {
1030*4882a593Smuzhiyun             sprintf(szTmp, "%d ", m_idBlockOffset[i]);
1031*4882a593Smuzhiyun             strInfo += szTmp;
1032*4882a593Smuzhiyun         }
1033*4882a593Smuzhiyun         m_pLog->Record(_T("ERROR:PrepareIDB-->New IDblock offset=%s."), strInfo.c_str());
1034*4882a593Smuzhiyun     }
1035*4882a593Smuzhiyun 
1036*4882a593Smuzhiyun     return 0;
1037*4882a593Smuzhiyun }
1038*4882a593Smuzhiyun 
DownloadIDBlock()1039*4882a593Smuzhiyun int CRKAndroidDevice::DownloadIDBlock()
1040*4882a593Smuzhiyun {
1041*4882a593Smuzhiyun     DWORD dwSectorNum;
1042*4882a593Smuzhiyun     dwSectorNum = m_flashInfo.uiSecNumPerIDB;
1043*4882a593Smuzhiyun 
1044*4882a593Smuzhiyun     PBYTE pIDBData = NULL;
1045*4882a593Smuzhiyun     pIDBData = new BYTE[dwSectorNum * SECTOR_SIZE];
1046*4882a593Smuzhiyun     if (!pIDBData)
1047*4882a593Smuzhiyun     {
1048*4882a593Smuzhiyun         return -1;
1049*4882a593Smuzhiyun     }
1050*4882a593Smuzhiyun 
1051*4882a593Smuzhiyun     int iRet = 0;
1052*4882a593Smuzhiyun     memset(pIDBData, 0, dwSectorNum * SECTOR_SIZE);
1053*4882a593Smuzhiyun 
1054*4882a593Smuzhiyun     // iRet = MakeIDBlockData(pIDBData);
1055*4882a593Smuzhiyun     if (m_pImage->m_bootObject->IsNewIDBFlag())
1056*4882a593Smuzhiyun     {
1057*4882a593Smuzhiyun         if (m_pLog)
1058*4882a593Smuzhiyun         {
1059*4882a593Smuzhiyun             m_pLog->Record(_T("INFO:DownloadIDBlock-->IsNewIDBFlag is true"), iRet);
1060*4882a593Smuzhiyun         }
1061*4882a593Smuzhiyun         iRet = MakeNewIDBlockData(pIDBData);
1062*4882a593Smuzhiyun     }
1063*4882a593Smuzhiyun     else
1064*4882a593Smuzhiyun     {
1065*4882a593Smuzhiyun         iRet = MakeIDBlockData(pIDBData);
1066*4882a593Smuzhiyun     }
1067*4882a593Smuzhiyun 
1068*4882a593Smuzhiyun     if (iRet != 0)
1069*4882a593Smuzhiyun     {
1070*4882a593Smuzhiyun         if (m_pLog)
1071*4882a593Smuzhiyun         {
1072*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:DownloadIDBlock-->MakeIDBlockData failed,RetCode(%d)"), iRet);
1073*4882a593Smuzhiyun         }
1074*4882a593Smuzhiyun         return -2;
1075*4882a593Smuzhiyun     }
1076*4882a593Smuzhiyun 
1077*4882a593Smuzhiyun     iRet = WriteIDBlock(pIDBData, dwSectorNum, false);
1078*4882a593Smuzhiyun     delete []pIDBData;
1079*4882a593Smuzhiyun     if (iRet == 0)
1080*4882a593Smuzhiyun     {
1081*4882a593Smuzhiyun         return 0;
1082*4882a593Smuzhiyun     }
1083*4882a593Smuzhiyun     else
1084*4882a593Smuzhiyun     {
1085*4882a593Smuzhiyun         if (m_pLog)
1086*4882a593Smuzhiyun         {
1087*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:DownloadIDBlock-->WriteIDBlock failed,RetCode(%d)"), iRet);
1088*4882a593Smuzhiyun         }
1089*4882a593Smuzhiyun         //BufferWriteBack();
1090*4882a593Smuzhiyun         return -3;
1091*4882a593Smuzhiyun     }
1092*4882a593Smuzhiyun }
1093*4882a593Smuzhiyun 
IsExistPartitionInFw(const char * partName,UINT & offset,UINT & size)1094*4882a593Smuzhiyun bool CRKAndroidDevice::IsExistPartitionInFw(const char *partName, UINT &offset, UINT &size)
1095*4882a593Smuzhiyun {
1096*4882a593Smuzhiyun     bool bRet;
1097*4882a593Smuzhiyun     long long dwFwOffset;
1098*4882a593Smuzhiyun     bool  bFound = false;
1099*4882a593Smuzhiyun     STRUCT_RKIMAGE_HDR rkImageHead;
1100*4882a593Smuzhiyun     int iHeadSize;
1101*4882a593Smuzhiyun 
1102*4882a593Smuzhiyun     dwFwOffset = m_pImage->FWOffset;
1103*4882a593Smuzhiyun     iHeadSize = sizeof(STRUCT_RKIMAGE_HDR);
1104*4882a593Smuzhiyun 
1105*4882a593Smuzhiyun     bRet = m_pImage->GetData(dwFwOffset, iHeadSize, (PBYTE)&rkImageHead);
1106*4882a593Smuzhiyun     if (!bRet)
1107*4882a593Smuzhiyun     {
1108*4882a593Smuzhiyun         return false;
1109*4882a593Smuzhiyun     }
1110*4882a593Smuzhiyun     if (rkImageHead.item_count <= 0)
1111*4882a593Smuzhiyun     {
1112*4882a593Smuzhiyun         return false;
1113*4882a593Smuzhiyun     }
1114*4882a593Smuzhiyun 
1115*4882a593Smuzhiyun     /* get partition size and offset in fw data to buffer */
1116*4882a593Smuzhiyun     long long partitionSize;
1117*4882a593Smuzhiyun     long long partitionOffset;
1118*4882a593Smuzhiyun 
1119*4882a593Smuzhiyun     for (int i = 0; i < rkImageHead.item_count; i++)
1120*4882a593Smuzhiyun     {
1121*4882a593Smuzhiyun         if (strncmp(rkImageHead.item[i].name, partName, strlen(partName)) != 0)
1122*4882a593Smuzhiyun         {
1123*4882a593Smuzhiyun             continue;
1124*4882a593Smuzhiyun         }
1125*4882a593Smuzhiyun 
1126*4882a593Smuzhiyun         if (rkImageHead.item[i].file[55] == 'H')
1127*4882a593Smuzhiyun         {
1128*4882a593Smuzhiyun             partitionSize = *((DWORD *)(&rkImageHead.item[i].file[56]));
1129*4882a593Smuzhiyun             partitionSize <<= 32;
1130*4882a593Smuzhiyun             partitionSize += rkImageHead.item[i].size;
1131*4882a593Smuzhiyun         }
1132*4882a593Smuzhiyun         else
1133*4882a593Smuzhiyun         {
1134*4882a593Smuzhiyun             partitionSize = rkImageHead.item[i].size;
1135*4882a593Smuzhiyun         }
1136*4882a593Smuzhiyun 
1137*4882a593Smuzhiyun         partitionOffset = rkImageHead.item[i].offset;
1138*4882a593Smuzhiyun         offset         = (UINT)partitionOffset;
1139*4882a593Smuzhiyun         size           = (UINT)partitionSize;
1140*4882a593Smuzhiyun         bFound = true;
1141*4882a593Smuzhiyun 
1142*4882a593Smuzhiyun         break;
1143*4882a593Smuzhiyun     }
1144*4882a593Smuzhiyun 
1145*4882a593Smuzhiyun     return bFound;
1146*4882a593Smuzhiyun }
1147*4882a593Smuzhiyun 
IsExistBootloaderInFw()1148*4882a593Smuzhiyun bool CRKAndroidDevice::IsExistBootloaderInFw()
1149*4882a593Smuzhiyun {
1150*4882a593Smuzhiyun     bool bRet;
1151*4882a593Smuzhiyun     long long dwFwOffset;
1152*4882a593Smuzhiyun     bool  bExistLoader = false;
1153*4882a593Smuzhiyun     FILE *pfPackageFile = NULL;
1154*4882a593Smuzhiyun     STRUCT_RKIMAGE_HDR rkImageHead;
1155*4882a593Smuzhiyun     PBYTE pBuffer = NULL;
1156*4882a593Smuzhiyun     int iHeadSize;
1157*4882a593Smuzhiyun 
1158*4882a593Smuzhiyun     dwFwOffset = m_pImage->FWOffset;
1159*4882a593Smuzhiyun     iHeadSize = sizeof(STRUCT_RKIMAGE_HDR);
1160*4882a593Smuzhiyun     bRet = m_pImage->GetData(dwFwOffset, iHeadSize, (PBYTE)&rkImageHead);
1161*4882a593Smuzhiyun 
1162*4882a593Smuzhiyun     if (!bRet)
1163*4882a593Smuzhiyun     {
1164*4882a593Smuzhiyun         return false;
1165*4882a593Smuzhiyun     }
1166*4882a593Smuzhiyun     if (rkImageHead.item_count <= 0)
1167*4882a593Smuzhiyun     {
1168*4882a593Smuzhiyun         return false;
1169*4882a593Smuzhiyun     }
1170*4882a593Smuzhiyun 
1171*4882a593Smuzhiyun     const char *package_name = "/tmp/package-file";
1172*4882a593Smuzhiyun     pfPackageFile = fopen(package_name, "wb+");
1173*4882a593Smuzhiyun     if (!pfPackageFile)
1174*4882a593Smuzhiyun     {
1175*4882a593Smuzhiyun         printf("open %s fail !\n", package_name);
1176*4882a593Smuzhiyun         return false;
1177*4882a593Smuzhiyun     }
1178*4882a593Smuzhiyun 
1179*4882a593Smuzhiyun     /* get package-file data to buffer */
1180*4882a593Smuzhiyun     long long fileBufferSize;
1181*4882a593Smuzhiyun     long long entryStartOffset;
1182*4882a593Smuzhiyun     unsigned int uiBufferSize = LBA_TRANSFER_SIZE_16K;
1183*4882a593Smuzhiyun 
1184*4882a593Smuzhiyun     for (int i = 0; i < rkImageHead.item_count; i++)
1185*4882a593Smuzhiyun     {
1186*4882a593Smuzhiyun         if (strcmp(rkImageHead.item[i].name, "package-file") != 0)
1187*4882a593Smuzhiyun         {
1188*4882a593Smuzhiyun             continue;
1189*4882a593Smuzhiyun         }
1190*4882a593Smuzhiyun 
1191*4882a593Smuzhiyun         if (rkImageHead.item[i].file[55] == 'H')
1192*4882a593Smuzhiyun         {
1193*4882a593Smuzhiyun             fileBufferSize = *((DWORD *)(&rkImageHead.item[i].file[56]));
1194*4882a593Smuzhiyun             fileBufferSize <<= 32;
1195*4882a593Smuzhiyun             fileBufferSize += rkImageHead.item[i].size;
1196*4882a593Smuzhiyun         }
1197*4882a593Smuzhiyun         else
1198*4882a593Smuzhiyun         {
1199*4882a593Smuzhiyun             fileBufferSize = rkImageHead.item[i].size;
1200*4882a593Smuzhiyun         }
1201*4882a593Smuzhiyun 
1202*4882a593Smuzhiyun         if (fileBufferSize > 0)
1203*4882a593Smuzhiyun         {
1204*4882a593Smuzhiyun             if (rkImageHead.item[i].file[50] == 'H')
1205*4882a593Smuzhiyun             {
1206*4882a593Smuzhiyun                 entryStartOffset = *((DWORD *)(&rkImageHead.item[i].file[51]));
1207*4882a593Smuzhiyun                 entryStartOffset <<= 32;
1208*4882a593Smuzhiyun                 entryStartOffset += rkImageHead.item[i].offset;
1209*4882a593Smuzhiyun                 entryStartOffset += m_pImage->FWOffset;
1210*4882a593Smuzhiyun             }
1211*4882a593Smuzhiyun             else
1212*4882a593Smuzhiyun             {
1213*4882a593Smuzhiyun                 entryStartOffset = m_pImage->FWOffset;
1214*4882a593Smuzhiyun                 entryStartOffset += rkImageHead.item[i].offset;
1215*4882a593Smuzhiyun             }
1216*4882a593Smuzhiyun 
1217*4882a593Smuzhiyun             pBuffer = new BYTE[uiBufferSize];
1218*4882a593Smuzhiyun             if (!pBuffer)
1219*4882a593Smuzhiyun             {
1220*4882a593Smuzhiyun                 printf("Err: No enough memory!\n");
1221*4882a593Smuzhiyun                 goto END;
1222*4882a593Smuzhiyun             }
1223*4882a593Smuzhiyun 
1224*4882a593Smuzhiyun             unsigned int uiWroteByte = 0;
1225*4882a593Smuzhiyun             long long uiEntryOffset = 0;
1226*4882a593Smuzhiyun             while (fileBufferSize > 0)
1227*4882a593Smuzhiyun             {
1228*4882a593Smuzhiyun                 memset(pBuffer, 0, uiBufferSize);
1229*4882a593Smuzhiyun                 if (fileBufferSize < uiBufferSize)
1230*4882a593Smuzhiyun                 {
1231*4882a593Smuzhiyun                     uiWroteByte = fileBufferSize;
1232*4882a593Smuzhiyun                 }
1233*4882a593Smuzhiyun                 else
1234*4882a593Smuzhiyun                 {
1235*4882a593Smuzhiyun                     uiWroteByte = uiBufferSize;
1236*4882a593Smuzhiyun                 }
1237*4882a593Smuzhiyun 
1238*4882a593Smuzhiyun                 bRet = m_pImage->GetData(entryStartOffset + uiEntryOffset,
1239*4882a593Smuzhiyun                                          uiWroteByte, pBuffer);
1240*4882a593Smuzhiyun                 if (!bRet)
1241*4882a593Smuzhiyun                 {
1242*4882a593Smuzhiyun                     goto END;
1243*4882a593Smuzhiyun                 }
1244*4882a593Smuzhiyun 
1245*4882a593Smuzhiyun                 /* write package-file to file */
1246*4882a593Smuzhiyun                 size_t size_wr = 0;
1247*4882a593Smuzhiyun                 if (!strcmp(rkImageHead.item[i].name, PARTNAME_PARAMETER))
1248*4882a593Smuzhiyun                 {
1249*4882a593Smuzhiyun                     size_wr = fwrite(pBuffer + 8, 1, uiWroteByte - 12, pfPackageFile);
1250*4882a593Smuzhiyun                 }
1251*4882a593Smuzhiyun                 else
1252*4882a593Smuzhiyun                 {
1253*4882a593Smuzhiyun                     size_wr = fwrite(pBuffer, 1, uiWroteByte, pfPackageFile);
1254*4882a593Smuzhiyun                 }
1255*4882a593Smuzhiyun 
1256*4882a593Smuzhiyun                 if (size_wr != uiWroteByte)
1257*4882a593Smuzhiyun                 {
1258*4882a593Smuzhiyun                     printf(" ### save %s fail!!! ###\n", rkImageHead.item[i].name);
1259*4882a593Smuzhiyun                     goto END;
1260*4882a593Smuzhiyun                 }
1261*4882a593Smuzhiyun 
1262*4882a593Smuzhiyun                 fileBufferSize -= uiWroteByte;
1263*4882a593Smuzhiyun                 uiEntryOffset  += uiWroteByte;
1264*4882a593Smuzhiyun             }
1265*4882a593Smuzhiyun         }
1266*4882a593Smuzhiyun 
1267*4882a593Smuzhiyun         /* judge whether exist bootloader string in package-file */
1268*4882a593Smuzhiyun         ssize_t read;
1269*4882a593Smuzhiyun         size_t  len = 0;
1270*4882a593Smuzhiyun         char *line = NULL;
1271*4882a593Smuzhiyun         fseek(pfPackageFile, 0, SEEK_SET);
1272*4882a593Smuzhiyun         while ((read = getline(&line, &len, pfPackageFile)) != -1)
1273*4882a593Smuzhiyun         {
1274*4882a593Smuzhiyun             printf("%s", line);
1275*4882a593Smuzhiyun             int i = 0;
1276*4882a593Smuzhiyun 
1277*4882a593Smuzhiyun             if (strstr(line, INCLUDE_LOADER) == NULL)
1278*4882a593Smuzhiyun             {
1279*4882a593Smuzhiyun                 continue;
1280*4882a593Smuzhiyun             }
1281*4882a593Smuzhiyun             for (i = 0; i < read; i++)
1282*4882a593Smuzhiyun             {
1283*4882a593Smuzhiyun                 if (line[i] == '#')
1284*4882a593Smuzhiyun                 {
1285*4882a593Smuzhiyun                     bExistLoader = false;
1286*4882a593Smuzhiyun                     break;
1287*4882a593Smuzhiyun                 }
1288*4882a593Smuzhiyun                 if (line[i] == 'b')
1289*4882a593Smuzhiyun                 {
1290*4882a593Smuzhiyun                     bExistLoader = true;
1291*4882a593Smuzhiyun                     break;
1292*4882a593Smuzhiyun                 }
1293*4882a593Smuzhiyun             }
1294*4882a593Smuzhiyun         }
1295*4882a593Smuzhiyun         if (line)
1296*4882a593Smuzhiyun         {
1297*4882a593Smuzhiyun             free(line);
1298*4882a593Smuzhiyun         }
1299*4882a593Smuzhiyun     }
1300*4882a593Smuzhiyun 
1301*4882a593Smuzhiyun END:
1302*4882a593Smuzhiyun     if (pfPackageFile)
1303*4882a593Smuzhiyun     {
1304*4882a593Smuzhiyun         fclose(pfPackageFile);
1305*4882a593Smuzhiyun     }
1306*4882a593Smuzhiyun     if (pBuffer)
1307*4882a593Smuzhiyun     {
1308*4882a593Smuzhiyun         delete []pBuffer;
1309*4882a593Smuzhiyun         pBuffer = NULL;
1310*4882a593Smuzhiyun     }
1311*4882a593Smuzhiyun     return bExistLoader;
1312*4882a593Smuzhiyun }
1313*4882a593Smuzhiyun 
isInOrderList(char * partName)1314*4882a593Smuzhiyun static bool isInOrderList(char *partName)
1315*4882a593Smuzhiyun {
1316*4882a593Smuzhiyun     bool bExist = false;
1317*4882a593Smuzhiyun     int i = 0;
1318*4882a593Smuzhiyun     #ifdef USE_SIGNATURE_FW
1319*4882a593Smuzhiyun     for (; i < ARRAY_LENGTH(gstUpdateOrder); i++)
1320*4882a593Smuzhiyun     {
1321*4882a593Smuzhiyun         if (!strcmp(partName, gstUpdateOrder[i].partName))
1322*4882a593Smuzhiyun         {
1323*4882a593Smuzhiyun             bExist = true;
1324*4882a593Smuzhiyun             break;
1325*4882a593Smuzhiyun         }
1326*4882a593Smuzhiyun     }
1327*4882a593Smuzhiyun     #endif
1328*4882a593Smuzhiyun     return bExist;
1329*4882a593Smuzhiyun }
1330*4882a593Smuzhiyun 
DownloadImage()1331*4882a593Smuzhiyun int CRKAndroidDevice::DownloadImage()
1332*4882a593Smuzhiyun {
1333*4882a593Smuzhiyun     long long dwFwOffset;
1334*4882a593Smuzhiyun     bool  bRet;
1335*4882a593Smuzhiyun     dwFwOffset = m_pImage->FWOffset;
1336*4882a593Smuzhiyun     STRUCT_RKIMAGE_HDR rkImageHead;
1337*4882a593Smuzhiyun     int i;
1338*4882a593Smuzhiyun     int iHeadSize;
1339*4882a593Smuzhiyun     char szPrompt[100];
1340*4882a593Smuzhiyun     int iParamPos = -1;
1341*4882a593Smuzhiyun     bool bFoundParam = false;
1342*4882a593Smuzhiyun     bool bFwFromUserdata = false;
1343*4882a593Smuzhiyun     long long uiTotalSize = 0;
1344*4882a593Smuzhiyun     long long ulItemSize;
1345*4882a593Smuzhiyun 
1346*4882a593Smuzhiyun     iHeadSize = sizeof(STRUCT_RKIMAGE_HDR);
1347*4882a593Smuzhiyun     if (m_pProcessCallback)
1348*4882a593Smuzhiyun     {
1349*4882a593Smuzhiyun         m_pProcessCallback(0.1, 5);
1350*4882a593Smuzhiyun     }
1351*4882a593Smuzhiyun     bRet = m_pImage->GetData(dwFwOffset, iHeadSize, (PBYTE)&rkImageHead);
1352*4882a593Smuzhiyun     if (!bRet)
1353*4882a593Smuzhiyun     {
1354*4882a593Smuzhiyun         if (m_pLog)
1355*4882a593Smuzhiyun         {
1356*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:DownloadImage-->GetData failed"));
1357*4882a593Smuzhiyun         }
1358*4882a593Smuzhiyun         return -1;
1359*4882a593Smuzhiyun     }
1360*4882a593Smuzhiyun     if (rkImageHead.item_count <= 0)
1361*4882a593Smuzhiyun     {
1362*4882a593Smuzhiyun         if (m_pLog)
1363*4882a593Smuzhiyun         {
1364*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:DownloadImage-->No Found item"));
1365*4882a593Smuzhiyun         }
1366*4882a593Smuzhiyun         return -2;
1367*4882a593Smuzhiyun     }
1368*4882a593Smuzhiyun 
1369*4882a593Smuzhiyun     if (!memcmp(m_pImage->GetFwPath(), "/userdata", 9) ||
1370*4882a593Smuzhiyun         !memcmp(m_pImage->GetFwPath(), "/data", 5))
1371*4882a593Smuzhiyun     {
1372*4882a593Smuzhiyun         bFwFromUserdata = true;
1373*4882a593Smuzhiyun     }
1374*4882a593Smuzhiyun 
1375*4882a593Smuzhiyun     m_dwBackupOffset = 0xFFFFFFFF;
1376*4882a593Smuzhiyun     for (i = 0; i < rkImageHead.item_count; i++)
1377*4882a593Smuzhiyun     {
1378*4882a593Smuzhiyun         if (rkImageHead.item[i].flash_offset != 0xFFFFFFFF)
1379*4882a593Smuzhiyun         {
1380*4882a593Smuzhiyun             if (strcmp(rkImageHead.item[i].name, PARTNAME_PARAMETER) == 0)
1381*4882a593Smuzhiyun             {
1382*4882a593Smuzhiyun                 bFoundParam = true;
1383*4882a593Smuzhiyun                 iParamPos = i;
1384*4882a593Smuzhiyun             }
1385*4882a593Smuzhiyun             else
1386*4882a593Smuzhiyun             {
1387*4882a593Smuzhiyun                 if (strcmp(rkImageHead.item[i].name, PARTNAME_BACKUP) == 0)
1388*4882a593Smuzhiyun                 {
1389*4882a593Smuzhiyun                     m_dwBackupOffset = rkImageHead.item[i].flash_offset;
1390*4882a593Smuzhiyun                 }
1391*4882a593Smuzhiyun 
1392*4882a593Smuzhiyun                 if (strcmp(rkImageHead.item[i].name, PARTNAME_RECOVERY) == 0 ||
1393*4882a593Smuzhiyun                     strcmp(rkImageHead.item[i].name, PARTNAME_MISC) == 0)
1394*4882a593Smuzhiyun                 {
1395*4882a593Smuzhiyun                     //if find "recovery" or "misc" partition, we ignore,
1396*4882a593Smuzhiyun                     //recovery.img update processing in normal system.
1397*4882a593Smuzhiyun                     //misc.img not process here.
1398*4882a593Smuzhiyun                     if (!sdBootUpdate)
1399*4882a593Smuzhiyun                     {
1400*4882a593Smuzhiyun                         continue;
1401*4882a593Smuzhiyun                     }
1402*4882a593Smuzhiyun                 }
1403*4882a593Smuzhiyun 
1404*4882a593Smuzhiyun                 // if fw is in userdata and fw have userdata partiton, we ignore update userdata partition.
1405*4882a593Smuzhiyun                 if (look_for_userdata(rkImageHead.item[i].name) == 0 && bFwFromUserdata)
1406*4882a593Smuzhiyun                     continue;
1407*4882a593Smuzhiyun 
1408*4882a593Smuzhiyun                 if (rkImageHead.item[i].file[55] == 'H')
1409*4882a593Smuzhiyun                 {
1410*4882a593Smuzhiyun                     ulItemSize = *((DWORD *)(&rkImageHead.item[i].file[56]));
1411*4882a593Smuzhiyun                     ulItemSize <<= 32;
1412*4882a593Smuzhiyun                     ulItemSize += rkImageHead.item[i].size;
1413*4882a593Smuzhiyun                 }
1414*4882a593Smuzhiyun                 else
1415*4882a593Smuzhiyun                 {
1416*4882a593Smuzhiyun                     ulItemSize = rkImageHead.item[i].size;
1417*4882a593Smuzhiyun                 }
1418*4882a593Smuzhiyun 
1419*4882a593Smuzhiyun                 #ifdef USE_SIGNATURE_FW
1420*4882a593Smuzhiyun                 for (int idx = 0; idx < ARRAY_LENGTH(gstUpdateOrder); idx++)
1421*4882a593Smuzhiyun                 {
1422*4882a593Smuzhiyun                     if (!strcmp(rkImageHead.item[i].name, gstUpdateOrder[idx].partName))
1423*4882a593Smuzhiyun                     {
1424*4882a593Smuzhiyun                         gstUpdateOrder[idx].stItem = rkImageHead.item[i];
1425*4882a593Smuzhiyun                         gstUpdateOrder[idx].ulItemSize = ulItemSize;
1426*4882a593Smuzhiyun                     }
1427*4882a593Smuzhiyun                 }
1428*4882a593Smuzhiyun                 #endif
1429*4882a593Smuzhiyun 
1430*4882a593Smuzhiyun                 uiTotalSize += ulItemSize;
1431*4882a593Smuzhiyun             }
1432*4882a593Smuzhiyun         }
1433*4882a593Smuzhiyun     }
1434*4882a593Smuzhiyun 
1435*4882a593Smuzhiyun     if (!bFoundParam)
1436*4882a593Smuzhiyun     {
1437*4882a593Smuzhiyun         if (m_pLog)
1438*4882a593Smuzhiyun         {
1439*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:DownloadImage-->No Found Parameter file"));
1440*4882a593Smuzhiyun         }
1441*4882a593Smuzhiyun         return -3;
1442*4882a593Smuzhiyun     }
1443*4882a593Smuzhiyun 
1444*4882a593Smuzhiyun     if (!MakeParamFileBuffer(rkImageHead.item[iParamPos]))
1445*4882a593Smuzhiyun     {
1446*4882a593Smuzhiyun         if (m_pLog)
1447*4882a593Smuzhiyun         {
1448*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:DownloadImage-->MakeParamFileBuffer failed"));
1449*4882a593Smuzhiyun         }
1450*4882a593Smuzhiyun         return -12;
1451*4882a593Smuzhiyun     }
1452*4882a593Smuzhiyun 
1453*4882a593Smuzhiyun     GptFlag = GetParameterGptFlag(rkImageHead.item[iParamPos]);
1454*4882a593Smuzhiyun     bGptFlag = GptFlag;
1455*4882a593Smuzhiyun     printf(">>>>>>>> bGptFlag = %d, lineno = %d\n", bGptFlag, __LINE__);
1456*4882a593Smuzhiyun     printf(">>>>>>>> CRKAndroidDevice::bGptFlag = %d \n", CRKAndroidDevice::bGptFlag);
1457*4882a593Smuzhiyun     if (!GptFlag)
1458*4882a593Smuzhiyun     {
1459*4882a593Smuzhiyun         if (!CheckParamPartSize(rkImageHead, iParamPos))
1460*4882a593Smuzhiyun         {
1461*4882a593Smuzhiyun             if (m_pLog)
1462*4882a593Smuzhiyun             {
1463*4882a593Smuzhiyun                 m_pLog->Record(_T("ERROR:DownloadImage-->CheckParamPartSize failed"));
1464*4882a593Smuzhiyun             }
1465*4882a593Smuzhiyun             return -13;
1466*4882a593Smuzhiyun         }
1467*4882a593Smuzhiyun         uiTotalSize += (8 * m_uiParamFileSize);
1468*4882a593Smuzhiyun     }
1469*4882a593Smuzhiyun     else
1470*4882a593Smuzhiyun     {
1471*4882a593Smuzhiyun         uiTotalSize += (SECTOR_SIZE * 67);
1472*4882a593Smuzhiyun     }
1473*4882a593Smuzhiyun     m_uiLBATimes = 1;
1474*4882a593Smuzhiyun     if (m_pProcessCallback)
1475*4882a593Smuzhiyun     {
1476*4882a593Smuzhiyun         m_pProcessCallback(0.4, 60);
1477*4882a593Smuzhiyun     }
1478*4882a593Smuzhiyun 
1479*4882a593Smuzhiyun     /*
1480*4882a593Smuzhiyun      * **************************************************************
1481*4882a593Smuzhiyun      *
1482*4882a593Smuzhiyun      * upgrade partiton fw data
1483*4882a593Smuzhiyun      *
1484*4882a593Smuzhiyun      * **************************************************************
1485*4882a593Smuzhiyun     */
1486*4882a593Smuzhiyun     long long uiCurrentByte = 0;
1487*4882a593Smuzhiyun     for (i = 0; i < rkImageHead.item_count; i++)
1488*4882a593Smuzhiyun     {
1489*4882a593Smuzhiyun         if (m_pProcessCallback)
1490*4882a593Smuzhiyun         {
1491*4882a593Smuzhiyun             m_pProcessCallback((double)uiCurrentByte / (double)uiTotalSize, 0);
1492*4882a593Smuzhiyun         }
1493*4882a593Smuzhiyun         if (rkImageHead.item[i].flash_offset == 0xFFFFFFFF)
1494*4882a593Smuzhiyun         {
1495*4882a593Smuzhiyun             continue;
1496*4882a593Smuzhiyun         }
1497*4882a593Smuzhiyun 
1498*4882a593Smuzhiyun         if (i == iParamPos)
1499*4882a593Smuzhiyun         {
1500*4882a593Smuzhiyun             if (m_pCallback)
1501*4882a593Smuzhiyun             {
1502*4882a593Smuzhiyun                 sprintf(szPrompt, "%s writing...\n", rkImageHead.item[i].name);
1503*4882a593Smuzhiyun                 m_pCallback(szPrompt);
1504*4882a593Smuzhiyun             }
1505*4882a593Smuzhiyun             if (GptFlag)
1506*4882a593Smuzhiyun             {
1507*4882a593Smuzhiyun                 m_pLog->Record(_T("########### RKA_Gpt_Download #########"));
1508*4882a593Smuzhiyun                 bRet = RKA_Gpt_Download(rkImageHead.item[i], uiCurrentByte, uiTotalSize);
1509*4882a593Smuzhiyun                 if (!bRet)
1510*4882a593Smuzhiyun                 {
1511*4882a593Smuzhiyun                     if (m_pLog)
1512*4882a593Smuzhiyun                     {
1513*4882a593Smuzhiyun                         m_pLog->Record(_T("ERROR:DownloadImage-->RKA_Gpt_Download failed"));
1514*4882a593Smuzhiyun                     }
1515*4882a593Smuzhiyun                     return -4;
1516*4882a593Smuzhiyun                 }
1517*4882a593Smuzhiyun             }
1518*4882a593Smuzhiyun             else
1519*4882a593Smuzhiyun             {
1520*4882a593Smuzhiyun                 bRet = RKA_Param_Download(rkImageHead.item[i], uiCurrentByte, uiTotalSize);
1521*4882a593Smuzhiyun                 if (!bRet)
1522*4882a593Smuzhiyun                 {
1523*4882a593Smuzhiyun                     if (m_pLog)
1524*4882a593Smuzhiyun                     {
1525*4882a593Smuzhiyun                         m_pLog->Record(_T(" ERROR:DownloadImage-->RKA_Param_Download failed"));
1526*4882a593Smuzhiyun                     }
1527*4882a593Smuzhiyun                     // if(m_pCallback)
1528*4882a593Smuzhiyun                     // {
1529*4882a593Smuzhiyun                     //  sprintf(szPrompt,"%s writing... failed",rkImageHead.item[i].name);
1530*4882a593Smuzhiyun                     //  m_pCallback(szPrompt);
1531*4882a593Smuzhiyun                     // }
1532*4882a593Smuzhiyun                     return -4;
1533*4882a593Smuzhiyun                 }
1534*4882a593Smuzhiyun             }
1535*4882a593Smuzhiyun         }
1536*4882a593Smuzhiyun         else
1537*4882a593Smuzhiyun         {
1538*4882a593Smuzhiyun             if (strcmp(rkImageHead.item[i].name, PARTNAME_RECOVERY) == 0 ||
1539*4882a593Smuzhiyun                 strcmp(rkImageHead.item[i].name, PARTNAME_MISC) == 0)
1540*4882a593Smuzhiyun             {
1541*4882a593Smuzhiyun                 if (!sdBootUpdate)
1542*4882a593Smuzhiyun                 {
1543*4882a593Smuzhiyun                     //if not sd boot update image, we will ignore download partiton.
1544*4882a593Smuzhiyun                     //chad.ma add for ignore 'recovery' or 'misc' or 'userdata' partition update at here.
1545*4882a593Smuzhiyun                     m_pLog->Record(_T("INFO:##  Ignore [ %s ] download  ##"), rkImageHead.item[i].name);
1546*4882a593Smuzhiyun                     continue;
1547*4882a593Smuzhiyun                 }
1548*4882a593Smuzhiyun             }
1549*4882a593Smuzhiyun 
1550*4882a593Smuzhiyun             // if fw is in userdata and fw have userdata partiton, we ignore check userdata partition.
1551*4882a593Smuzhiyun             if (look_for_userdata(rkImageHead.item[i].name) == 0 && bFwFromUserdata)
1552*4882a593Smuzhiyun                 continue;
1553*4882a593Smuzhiyun 
1554*4882a593Smuzhiyun             #ifdef USE_SIGNATURE_FW
1555*4882a593Smuzhiyun             if (isInOrderList(rkImageHead.item[i].name))
1556*4882a593Smuzhiyun             {
1557*4882a593Smuzhiyun                 continue;
1558*4882a593Smuzhiyun             }
1559*4882a593Smuzhiyun             #endif
1560*4882a593Smuzhiyun 
1561*4882a593Smuzhiyun             m_pLog->Record(_T("INFO:###### Downloading %s #######"), rkImageHead.item[i].name);
1562*4882a593Smuzhiyun 
1563*4882a593Smuzhiyun             if (rkImageHead.item[i].file[55] == 'H')
1564*4882a593Smuzhiyun             {
1565*4882a593Smuzhiyun                 ulItemSize = *((DWORD *)(&rkImageHead.item[i].file[56]));
1566*4882a593Smuzhiyun                 ulItemSize <<= 32;
1567*4882a593Smuzhiyun                 ulItemSize += rkImageHead.item[i].size;
1568*4882a593Smuzhiyun             }
1569*4882a593Smuzhiyun             else
1570*4882a593Smuzhiyun             {
1571*4882a593Smuzhiyun                 ulItemSize = rkImageHead.item[i].size;
1572*4882a593Smuzhiyun             }
1573*4882a593Smuzhiyun 
1574*4882a593Smuzhiyun             if (ulItemSize > 0)
1575*4882a593Smuzhiyun             {
1576*4882a593Smuzhiyun                 if (m_pCallback)
1577*4882a593Smuzhiyun                 {
1578*4882a593Smuzhiyun                     sprintf(szPrompt, "%s writing...\n", rkImageHead.item[i].name);
1579*4882a593Smuzhiyun                     m_pCallback(szPrompt);
1580*4882a593Smuzhiyun                 }
1581*4882a593Smuzhiyun                 bRet = RKA_File_Download(rkImageHead.item[i], uiCurrentByte, uiTotalSize);
1582*4882a593Smuzhiyun                 if (!bRet)
1583*4882a593Smuzhiyun                 {
1584*4882a593Smuzhiyun                     if (m_pLog)
1585*4882a593Smuzhiyun                     {
1586*4882a593Smuzhiyun                         m_pLog->Record(_T("ERROR:DownloadImage-->RKA_File_Download failed(%s)"),
1587*4882a593Smuzhiyun                                        rkImageHead.item[i].name);
1588*4882a593Smuzhiyun                     }
1589*4882a593Smuzhiyun                     return -5;
1590*4882a593Smuzhiyun                 }
1591*4882a593Smuzhiyun                 m_pLog->Record(_T("INFO:###### Download %s Done #######"), rkImageHead.item[i].name);
1592*4882a593Smuzhiyun             }
1593*4882a593Smuzhiyun         }
1594*4882a593Smuzhiyun     }
1595*4882a593Smuzhiyun 
1596*4882a593Smuzhiyun     #ifdef USE_SIGNATURE_FW
1597*4882a593Smuzhiyun     for (int idx = 0; idx < ARRAY_LENGTH(gstUpdateOrder); idx++)
1598*4882a593Smuzhiyun     {
1599*4882a593Smuzhiyun         if (gstUpdateOrder[idx].ulItemSize > 0)
1600*4882a593Smuzhiyun         {
1601*4882a593Smuzhiyun             m_pLog->Record(_T("INFO:###### Downloading %s #######"), rkImageHead.item[i].name);
1602*4882a593Smuzhiyun             if (m_pCallback)
1603*4882a593Smuzhiyun             {
1604*4882a593Smuzhiyun                 sprintf(szPrompt, "%s writing...\n", gstUpdateOrder[idx].partName);
1605*4882a593Smuzhiyun                 m_pCallback(szPrompt);
1606*4882a593Smuzhiyun             }
1607*4882a593Smuzhiyun             bRet = RKA_File_Download(gstUpdateOrder[idx].stItem, uiCurrentByte, uiTotalSize);
1608*4882a593Smuzhiyun             if (!bRet)
1609*4882a593Smuzhiyun             {
1610*4882a593Smuzhiyun                 if (m_pLog)
1611*4882a593Smuzhiyun                 {
1612*4882a593Smuzhiyun                     m_pLog->Record(_T("ERROR:DownloadImage-->RKA_File_Download failed(%s)"),
1613*4882a593Smuzhiyun                                    gstUpdateOrder[idx].partName);
1614*4882a593Smuzhiyun                 }
1615*4882a593Smuzhiyun                 return -5;
1616*4882a593Smuzhiyun             }
1617*4882a593Smuzhiyun             m_pLog->Record(_T("INFO:###### Download %s Done #######"), gstUpdateOrder[idx].partName);
1618*4882a593Smuzhiyun         }
1619*4882a593Smuzhiyun     }
1620*4882a593Smuzhiyun     #endif
1621*4882a593Smuzhiyun 
1622*4882a593Smuzhiyun     /*
1623*4882a593Smuzhiyun      * **************************************************************
1624*4882a593Smuzhiyun      *
1625*4882a593Smuzhiyun      * Check partiton fw data
1626*4882a593Smuzhiyun      *
1627*4882a593Smuzhiyun      * **************************************************************
1628*4882a593Smuzhiyun     */
1629*4882a593Smuzhiyun     m_pComm->RKU_ReopenLBAHandle();
1630*4882a593Smuzhiyun     if (m_pProcessCallback)
1631*4882a593Smuzhiyun     {
1632*4882a593Smuzhiyun         m_pProcessCallback(1, 0);
1633*4882a593Smuzhiyun     }
1634*4882a593Smuzhiyun     if (m_pProcessCallback)
1635*4882a593Smuzhiyun     {
1636*4882a593Smuzhiyun         m_pProcessCallback(0.4, 60);
1637*4882a593Smuzhiyun     }
1638*4882a593Smuzhiyun     uiCurrentByte = 0;
1639*4882a593Smuzhiyun     for (i = 0; i < rkImageHead.item_count; i++)
1640*4882a593Smuzhiyun     {
1641*4882a593Smuzhiyun         if (m_pProcessCallback)
1642*4882a593Smuzhiyun         {
1643*4882a593Smuzhiyun             m_pProcessCallback((double)uiCurrentByte / (double)uiTotalSize, 0);
1644*4882a593Smuzhiyun         }
1645*4882a593Smuzhiyun         if (rkImageHead.item[i].flash_offset == 0xFFFFFFFF)
1646*4882a593Smuzhiyun         {
1647*4882a593Smuzhiyun             continue;
1648*4882a593Smuzhiyun         }
1649*4882a593Smuzhiyun         if (i == iParamPos)
1650*4882a593Smuzhiyun         {
1651*4882a593Smuzhiyun             if (m_pCallback)
1652*4882a593Smuzhiyun             {
1653*4882a593Smuzhiyun                 sprintf(szPrompt, "%s checking...\n", rkImageHead.item[i].name);
1654*4882a593Smuzhiyun                 m_pCallback(szPrompt);
1655*4882a593Smuzhiyun             }
1656*4882a593Smuzhiyun             if (GptFlag)
1657*4882a593Smuzhiyun             {
1658*4882a593Smuzhiyun                 bRet = RKA_Gpt_Check(rkImageHead.item[i], uiCurrentByte, uiTotalSize);
1659*4882a593Smuzhiyun                 if (!bRet)
1660*4882a593Smuzhiyun                 {
1661*4882a593Smuzhiyun                     if (m_pLog)
1662*4882a593Smuzhiyun                     {
1663*4882a593Smuzhiyun                         m_pLog->Record(_T("ERROR:DownloadImage-->RKA_Gpt_Check failed"));
1664*4882a593Smuzhiyun                     }
1665*4882a593Smuzhiyun                     return -6;
1666*4882a593Smuzhiyun                 }
1667*4882a593Smuzhiyun             }
1668*4882a593Smuzhiyun             else
1669*4882a593Smuzhiyun             {
1670*4882a593Smuzhiyun                 bRet = RKA_Param_Check(rkImageHead.item[i], uiCurrentByte, uiTotalSize);
1671*4882a593Smuzhiyun                 if (!bRet)
1672*4882a593Smuzhiyun                 {
1673*4882a593Smuzhiyun                     if (m_pLog)
1674*4882a593Smuzhiyun                     {
1675*4882a593Smuzhiyun                         m_pLog->Record(_T("ERROR:DownloadImage-->RKA_Param_Check failed"));
1676*4882a593Smuzhiyun                     }
1677*4882a593Smuzhiyun                     return -6;
1678*4882a593Smuzhiyun                 }
1679*4882a593Smuzhiyun             }
1680*4882a593Smuzhiyun         }
1681*4882a593Smuzhiyun         else
1682*4882a593Smuzhiyun         {
1683*4882a593Smuzhiyun             if (strcmp(rkImageHead.item[i].name, PARTNAME_RECOVERY) == 0 ||
1684*4882a593Smuzhiyun                 strcmp(rkImageHead.item[i].name, PARTNAME_MISC) == 0 ||
1685*4882a593Smuzhiyun                 look_for_userdata(rkImageHead.item[i].name) == 0)
1686*4882a593Smuzhiyun             {
1687*4882a593Smuzhiyun                 if (!sdBootUpdate)
1688*4882a593Smuzhiyun                 {
1689*4882a593Smuzhiyun                     //not sdboot update image , we will ignore check partiton.
1690*4882a593Smuzhiyun                     //chad.ma add for ignore 'recovery' or 'misc' or 'userdata' partition check at here.
1691*4882a593Smuzhiyun                     m_pLog->Record(_T("INFO:# Ignore [ %s ] Check #"), rkImageHead.item[i].name);
1692*4882a593Smuzhiyun                     continue;
1693*4882a593Smuzhiyun                 }
1694*4882a593Smuzhiyun             }
1695*4882a593Smuzhiyun 
1696*4882a593Smuzhiyun             if (rkImageHead.item[i].file[55] == 'H')
1697*4882a593Smuzhiyun             {
1698*4882a593Smuzhiyun                 ulItemSize = *((DWORD *)(&rkImageHead.item[i].file[56]));
1699*4882a593Smuzhiyun                 ulItemSize <<= 32;
1700*4882a593Smuzhiyun                 ulItemSize += rkImageHead.item[i].size;
1701*4882a593Smuzhiyun             }
1702*4882a593Smuzhiyun             else
1703*4882a593Smuzhiyun             {
1704*4882a593Smuzhiyun                 ulItemSize = rkImageHead.item[i].size;
1705*4882a593Smuzhiyun             }
1706*4882a593Smuzhiyun             if (ulItemSize > 0)
1707*4882a593Smuzhiyun             {
1708*4882a593Smuzhiyun                 if (m_pCallback)
1709*4882a593Smuzhiyun                 {
1710*4882a593Smuzhiyun                     sprintf(szPrompt, "%s checking...\n", rkImageHead.item[i].name);
1711*4882a593Smuzhiyun                     m_pCallback(szPrompt);
1712*4882a593Smuzhiyun                 }
1713*4882a593Smuzhiyun                 bRet = RKA_File_Check(rkImageHead.item[i], uiCurrentByte, uiTotalSize);
1714*4882a593Smuzhiyun                 if (!bRet)
1715*4882a593Smuzhiyun                 {
1716*4882a593Smuzhiyun                     if (m_pLog)
1717*4882a593Smuzhiyun                     {
1718*4882a593Smuzhiyun                         m_pLog->Record(_T("ERROR:DownloadImage-->RKA_File_Check failed(%s)"), rkImageHead.item[i].name);
1719*4882a593Smuzhiyun                     }
1720*4882a593Smuzhiyun                     return -7;
1721*4882a593Smuzhiyun                 }
1722*4882a593Smuzhiyun             }
1723*4882a593Smuzhiyun         }
1724*4882a593Smuzhiyun     }
1725*4882a593Smuzhiyun     if (m_pProcessCallback)
1726*4882a593Smuzhiyun     {
1727*4882a593Smuzhiyun         m_pProcessCallback(1, 0);
1728*4882a593Smuzhiyun     }
1729*4882a593Smuzhiyun 
1730*4882a593Smuzhiyun     return 0;
1731*4882a593Smuzhiyun }
1732*4882a593Smuzhiyun 
write_partition_upgrade_flag(DWORD dwOffset,BYTE * pMd5,UINT uiFlag)1733*4882a593Smuzhiyun bool CRKAndroidDevice::write_partition_upgrade_flag(DWORD dwOffset, BYTE *pMd5, UINT uiFlag)
1734*4882a593Smuzhiyun {
1735*4882a593Smuzhiyun     BYTE flagSector[SECTOR_SIZE];
1736*4882a593Smuzhiyun     int iRet;
1737*4882a593Smuzhiyun     memset(flagSector, 0, SECTOR_SIZE);
1738*4882a593Smuzhiyun     memcpy(flagSector, pMd5, 32);
1739*4882a593Smuzhiyun     memcpy(flagSector + 32, (BYTE *)(&uiFlag), 4);
1740*4882a593Smuzhiyun     iRet = m_pComm->RKU_WriteLBA(dwOffset, 1, flagSector);
1741*4882a593Smuzhiyun     if (iRet != ERR_SUCCESS)
1742*4882a593Smuzhiyun     {
1743*4882a593Smuzhiyun         if (m_pLog)
1744*4882a593Smuzhiyun         {
1745*4882a593Smuzhiyun             m_pLog->Record("ERROR:write_partition_upgrade_flag-->RKU_WriteLBA failed,err=%d", iRet);
1746*4882a593Smuzhiyun         }
1747*4882a593Smuzhiyun         return false;
1748*4882a593Smuzhiyun     }
1749*4882a593Smuzhiyun     return true;
1750*4882a593Smuzhiyun }
read_partition_upgrade_flag(DWORD dwOffset,BYTE * pMd5,UINT * uiFlag)1751*4882a593Smuzhiyun bool CRKAndroidDevice::read_partition_upgrade_flag(DWORD dwOffset, BYTE *pMd5, UINT *uiFlag)
1752*4882a593Smuzhiyun {
1753*4882a593Smuzhiyun     if (m_pLog)
1754*4882a593Smuzhiyun     {
1755*4882a593Smuzhiyun         m_pLog->Record("INFO:read_partition_upgrade_flag in");
1756*4882a593Smuzhiyun     }
1757*4882a593Smuzhiyun     BYTE flagSector[SECTOR_SIZE];
1758*4882a593Smuzhiyun     int iRet;
1759*4882a593Smuzhiyun     iRet = m_pComm->RKU_ReadLBA(dwOffset, 1, flagSector);
1760*4882a593Smuzhiyun     if (iRet != ERR_SUCCESS)
1761*4882a593Smuzhiyun     {
1762*4882a593Smuzhiyun         if (m_pLog)
1763*4882a593Smuzhiyun         {
1764*4882a593Smuzhiyun             m_pLog->Record("ERROR:read_partition_upgrade_flag-->RKU_ReadLBA failed,err=%d", iRet);
1765*4882a593Smuzhiyun         }
1766*4882a593Smuzhiyun         return false;
1767*4882a593Smuzhiyun     }
1768*4882a593Smuzhiyun     memcpy(pMd5, flagSector, 32);
1769*4882a593Smuzhiyun     (*uiFlag) = *((UINT *)(flagSector + 32));
1770*4882a593Smuzhiyun     if (m_pLog)
1771*4882a593Smuzhiyun     {
1772*4882a593Smuzhiyun         m_pLog->Record("INFO:read_partition_upgrade_flag out,flag=0x%x", *uiFlag);
1773*4882a593Smuzhiyun     }
1774*4882a593Smuzhiyun     return true;
1775*4882a593Smuzhiyun }
1776*4882a593Smuzhiyun 
UpgradePartition()1777*4882a593Smuzhiyun int CRKAndroidDevice::UpgradePartition()
1778*4882a593Smuzhiyun {
1779*4882a593Smuzhiyun     long long dwFwOffset;
1780*4882a593Smuzhiyun     bool bRet, bSameFw = false;
1781*4882a593Smuzhiyun     BYTE localMd5[32];
1782*4882a593Smuzhiyun     BYTE *fwMd5, *fwSignMd5;
1783*4882a593Smuzhiyun     UINT uiFlag;
1784*4882a593Smuzhiyun     DWORD dwFlagSector = 0;
1785*4882a593Smuzhiyun     dwFwOffset = m_pImage->FWOffset;
1786*4882a593Smuzhiyun     STRUCT_RKIMAGE_HDR rkImageHead;
1787*4882a593Smuzhiyun     vector<int> vecUpgradePartition;
1788*4882a593Smuzhiyun     vecUpgradePartition.clear();
1789*4882a593Smuzhiyun     char szPrompt[100];
1790*4882a593Smuzhiyun     int iHeadSize = 0;
1791*4882a593Smuzhiyun     if (m_pProcessCallback)
1792*4882a593Smuzhiyun     {
1793*4882a593Smuzhiyun         m_pProcessCallback(0.1, 5);
1794*4882a593Smuzhiyun     }
1795*4882a593Smuzhiyun 
1796*4882a593Smuzhiyun     iHeadSize = sizeof(STRUCT_RKIMAGE_HDR);
1797*4882a593Smuzhiyun     bRet = m_pImage->GetData(dwFwOffset, iHeadSize, (PBYTE)&rkImageHead);
1798*4882a593Smuzhiyun     if (!bRet)
1799*4882a593Smuzhiyun     {
1800*4882a593Smuzhiyun         if (m_pLog)
1801*4882a593Smuzhiyun         {
1802*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:UpgradePartition-->GetData failed"));
1803*4882a593Smuzhiyun         }
1804*4882a593Smuzhiyun         return -1;
1805*4882a593Smuzhiyun     }
1806*4882a593Smuzhiyun     if (rkImageHead.item_count <= 0)
1807*4882a593Smuzhiyun     {
1808*4882a593Smuzhiyun         if (m_pLog)
1809*4882a593Smuzhiyun         {
1810*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:UpgradePartition-->No Found partition item"));
1811*4882a593Smuzhiyun         }
1812*4882a593Smuzhiyun         return -2;
1813*4882a593Smuzhiyun     }
1814*4882a593Smuzhiyun 
1815*4882a593Smuzhiyun     int i;
1816*4882a593Smuzhiyun     vector<int>::iterator iter;
1817*4882a593Smuzhiyun     m_dwBackupOffset = 0xFFFFFFFF;
1818*4882a593Smuzhiyun     int iParamPos = - 1;
1819*4882a593Smuzhiyun     long long uiTotalSize = 0;
1820*4882a593Smuzhiyun     long long ulItemSize  = 0;
1821*4882a593Smuzhiyun     bool bFoundParam = false, bFoundSystem = false, bFoundUserData = false;
1822*4882a593Smuzhiyun     for (i = 0; i < rkImageHead.item_count; i++)
1823*4882a593Smuzhiyun     {
1824*4882a593Smuzhiyun         if (rkImageHead.item[i].flash_offset != 0xFFFFFFFF)
1825*4882a593Smuzhiyun         {
1826*4882a593Smuzhiyun             for (iter = vecUpgradePartition.begin(); iter != vecUpgradePartition.end(); iter++)
1827*4882a593Smuzhiyun             {
1828*4882a593Smuzhiyun                 if (rkImageHead.item[*iter].flash_offset > rkImageHead.item[i].flash_offset)
1829*4882a593Smuzhiyun                 {
1830*4882a593Smuzhiyun                     iter = vecUpgradePartition.insert(iter, i);
1831*4882a593Smuzhiyun                     break;
1832*4882a593Smuzhiyun                 }
1833*4882a593Smuzhiyun             }
1834*4882a593Smuzhiyun 
1835*4882a593Smuzhiyun             if (iter == vecUpgradePartition.end())
1836*4882a593Smuzhiyun             {
1837*4882a593Smuzhiyun                 vecUpgradePartition.push_back(i);
1838*4882a593Smuzhiyun             }
1839*4882a593Smuzhiyun             if (strcmp(rkImageHead.item[i].name, PARTNAME_PARAMETER) == 0)
1840*4882a593Smuzhiyun             {
1841*4882a593Smuzhiyun                 bFoundParam = true;
1842*4882a593Smuzhiyun                 iParamPos = i;
1843*4882a593Smuzhiyun             }
1844*4882a593Smuzhiyun             else
1845*4882a593Smuzhiyun             {
1846*4882a593Smuzhiyun                 if (strcmp(rkImageHead.item[i].name, PARTNAME_SYSTEM) == 0 ||
1847*4882a593Smuzhiyun                     !strcmp(rkImageHead.item[i].name, PARTNAME_ROOTFS))
1848*4882a593Smuzhiyun                 {
1849*4882a593Smuzhiyun                     bFoundSystem = true;
1850*4882a593Smuzhiyun                 }
1851*4882a593Smuzhiyun                 if (strcmp(rkImageHead.item[i].name, PARTNAME_MISC) == 0)
1852*4882a593Smuzhiyun                 {
1853*4882a593Smuzhiyun                     dwFlagSector = rkImageHead.item[i].flash_offset + rkImageHead.item[i].part_size - 4;
1854*4882a593Smuzhiyun                 }
1855*4882a593Smuzhiyun                 if (look_for_userdata(rkImageHead.item[i].name) == 0)
1856*4882a593Smuzhiyun                 {
1857*4882a593Smuzhiyun                     bFoundUserData = true;
1858*4882a593Smuzhiyun                 }
1859*4882a593Smuzhiyun 
1860*4882a593Smuzhiyun                 if (strcmp(rkImageHead.item[i].name, PARTNAME_BACKUP) == 0)
1861*4882a593Smuzhiyun                 {
1862*4882a593Smuzhiyun                     m_dwBackupOffset = rkImageHead.item[i].flash_offset;
1863*4882a593Smuzhiyun                 }
1864*4882a593Smuzhiyun 
1865*4882a593Smuzhiyun                 if (rkImageHead.item[i].file[55] == 'H')
1866*4882a593Smuzhiyun                 {
1867*4882a593Smuzhiyun                     ulItemSize = *((DWORD *)(&rkImageHead.item[i].file[56]));
1868*4882a593Smuzhiyun                     ulItemSize <<= 32;
1869*4882a593Smuzhiyun                     ulItemSize += rkImageHead.item[i].size;
1870*4882a593Smuzhiyun                 }
1871*4882a593Smuzhiyun                 else
1872*4882a593Smuzhiyun                 {
1873*4882a593Smuzhiyun                     ulItemSize = rkImageHead.item[i].size;
1874*4882a593Smuzhiyun                 }
1875*4882a593Smuzhiyun                 uiTotalSize += ulItemSize;
1876*4882a593Smuzhiyun             }
1877*4882a593Smuzhiyun         }
1878*4882a593Smuzhiyun     }
1879*4882a593Smuzhiyun 
1880*4882a593Smuzhiyun     if (!bFoundParam)
1881*4882a593Smuzhiyun     {
1882*4882a593Smuzhiyun         if (m_pLog)
1883*4882a593Smuzhiyun         {
1884*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:UpgradePartition-->No Found Parameter file"));
1885*4882a593Smuzhiyun         }
1886*4882a593Smuzhiyun         return -3;
1887*4882a593Smuzhiyun     }
1888*4882a593Smuzhiyun 
1889*4882a593Smuzhiyun     if (!MakeParamFileBuffer(rkImageHead.item[iParamPos]))
1890*4882a593Smuzhiyun     {
1891*4882a593Smuzhiyun         if (m_pLog)
1892*4882a593Smuzhiyun         {
1893*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:UpgradePartition-->MakeParamFileBuffer failed"));
1894*4882a593Smuzhiyun         }
1895*4882a593Smuzhiyun         return -12;
1896*4882a593Smuzhiyun     }
1897*4882a593Smuzhiyun 
1898*4882a593Smuzhiyun     if (!CheckParamPartSize(rkImageHead, iParamPos))
1899*4882a593Smuzhiyun     {
1900*4882a593Smuzhiyun         if (m_pLog)
1901*4882a593Smuzhiyun         {
1902*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:UpgradePartition-->CheckParamPartSize failed"));
1903*4882a593Smuzhiyun         }
1904*4882a593Smuzhiyun         return -13;
1905*4882a593Smuzhiyun     }
1906*4882a593Smuzhiyun     uiTotalSize += (8 * m_uiParamFileSize); //���ϲ����ļ���Ҫ�Ĵ�С
1907*4882a593Smuzhiyun     m_uiLBATimes = 1;
1908*4882a593Smuzhiyun     m_pImage->GetMd5Data(fwMd5, fwSignMd5);
1909*4882a593Smuzhiyun     if (dwFlagSector != 0)
1910*4882a593Smuzhiyun     {
1911*4882a593Smuzhiyun         if (read_partition_upgrade_flag(dwFlagSector, localMd5, &uiFlag))
1912*4882a593Smuzhiyun         {
1913*4882a593Smuzhiyun             if (memcmp(localMd5, fwMd5, 32) == 0)
1914*4882a593Smuzhiyun             {
1915*4882a593Smuzhiyun                 bSameFw = true;
1916*4882a593Smuzhiyun             }
1917*4882a593Smuzhiyun         }
1918*4882a593Smuzhiyun     }
1919*4882a593Smuzhiyun     if (m_pProcessCallback)
1920*4882a593Smuzhiyun     {
1921*4882a593Smuzhiyun         m_pProcessCallback(0.8, 90);
1922*4882a593Smuzhiyun     }
1923*4882a593Smuzhiyun     long long uiCurrentByte = 0;
1924*4882a593Smuzhiyun     for (i = 0; i < vecUpgradePartition.size(); i++)
1925*4882a593Smuzhiyun     {
1926*4882a593Smuzhiyun         if (m_pProcessCallback)
1927*4882a593Smuzhiyun         {
1928*4882a593Smuzhiyun             m_pProcessCallback((double)uiCurrentByte / (double)uiTotalSize, 0);
1929*4882a593Smuzhiyun         }
1930*4882a593Smuzhiyun         if (vecUpgradePartition[i] == iParamPos)
1931*4882a593Smuzhiyun         {
1932*4882a593Smuzhiyun             if ((bSameFw) && (uiFlag >= rkImageHead.item[vecUpgradePartition[i]].flash_offset))
1933*4882a593Smuzhiyun             {
1934*4882a593Smuzhiyun                 uiCurrentByte += (8 * m_uiParamFileSize);
1935*4882a593Smuzhiyun                 continue;
1936*4882a593Smuzhiyun             }
1937*4882a593Smuzhiyun             if (m_pCallback)
1938*4882a593Smuzhiyun             {
1939*4882a593Smuzhiyun                 sprintf(szPrompt, "%s writing...\n", rkImageHead.item[vecUpgradePartition[i]].name);
1940*4882a593Smuzhiyun                 m_pCallback(szPrompt);
1941*4882a593Smuzhiyun             }
1942*4882a593Smuzhiyun             bRet = RKA_Param_Download(rkImageHead.item[vecUpgradePartition[i]], uiCurrentByte, uiTotalSize);
1943*4882a593Smuzhiyun             if (!bRet)
1944*4882a593Smuzhiyun             {
1945*4882a593Smuzhiyun                 if (m_pLog)
1946*4882a593Smuzhiyun                 {
1947*4882a593Smuzhiyun                     m_pLog->Record(_T(" ERROR:UpgradePartition-->RKA_Param_Download failed"));
1948*4882a593Smuzhiyun                 }
1949*4882a593Smuzhiyun                 return -4;
1950*4882a593Smuzhiyun             }
1951*4882a593Smuzhiyun             m_pComm->RKU_ReopenLBAHandle();
1952*4882a593Smuzhiyun             if (m_pCallback)
1953*4882a593Smuzhiyun             {
1954*4882a593Smuzhiyun                 sprintf(szPrompt, "%s checking...\n", rkImageHead.item[vecUpgradePartition[i]].name);
1955*4882a593Smuzhiyun                 m_pCallback(szPrompt);
1956*4882a593Smuzhiyun             }
1957*4882a593Smuzhiyun             uiCurrentByte -= (8 * m_uiParamFileSize);
1958*4882a593Smuzhiyun             bRet = RKA_Param_Check(rkImageHead.item[vecUpgradePartition[i]], uiCurrentByte, uiTotalSize);
1959*4882a593Smuzhiyun             if (!bRet)
1960*4882a593Smuzhiyun             {
1961*4882a593Smuzhiyun                 if (m_pLog)
1962*4882a593Smuzhiyun                 {
1963*4882a593Smuzhiyun                     m_pLog->Record(_T("ERROR:UpgradePartition-->RKA_Param_Check failed"));
1964*4882a593Smuzhiyun                 }
1965*4882a593Smuzhiyun                 return -6;
1966*4882a593Smuzhiyun             }
1967*4882a593Smuzhiyun         }
1968*4882a593Smuzhiyun         else
1969*4882a593Smuzhiyun         {
1970*4882a593Smuzhiyun             if (rkImageHead.item[vecUpgradePartition[i]].file[55] == 'H')
1971*4882a593Smuzhiyun             {
1972*4882a593Smuzhiyun                 ulItemSize = *((DWORD *)(&rkImageHead.item[vecUpgradePartition[i]].file[56]));
1973*4882a593Smuzhiyun                 ulItemSize <<= 32;
1974*4882a593Smuzhiyun                 ulItemSize += rkImageHead.item[vecUpgradePartition[i]].size;
1975*4882a593Smuzhiyun             }
1976*4882a593Smuzhiyun             else
1977*4882a593Smuzhiyun             {
1978*4882a593Smuzhiyun                 ulItemSize = rkImageHead.item[vecUpgradePartition[i]].size;
1979*4882a593Smuzhiyun             }
1980*4882a593Smuzhiyun             if ((bSameFw) && (uiFlag >= rkImageHead.item[vecUpgradePartition[i]].flash_offset))
1981*4882a593Smuzhiyun             {
1982*4882a593Smuzhiyun                 uiCurrentByte += ulItemSize;
1983*4882a593Smuzhiyun                 continue;
1984*4882a593Smuzhiyun             }
1985*4882a593Smuzhiyun 
1986*4882a593Smuzhiyun             if (ulItemSize > 0)
1987*4882a593Smuzhiyun             {
1988*4882a593Smuzhiyun                 if (m_pCallback)
1989*4882a593Smuzhiyun                 {
1990*4882a593Smuzhiyun                     sprintf(szPrompt, "%s writing...\n", rkImageHead.item[vecUpgradePartition[i]].name);
1991*4882a593Smuzhiyun                     m_pCallback(szPrompt);
1992*4882a593Smuzhiyun                 }
1993*4882a593Smuzhiyun                 bRet = RKA_File_Download(rkImageHead.item[vecUpgradePartition[i]], uiCurrentByte, uiTotalSize);
1994*4882a593Smuzhiyun                 if (!bRet)
1995*4882a593Smuzhiyun                 {
1996*4882a593Smuzhiyun                     if (m_pLog)
1997*4882a593Smuzhiyun                     {
1998*4882a593Smuzhiyun                         m_pLog->Record(_T("ERROR:UpgradePartition-->RKA_File_Download failed(%s)"), rkImageHead.item[vecUpgradePartition[i]].name);
1999*4882a593Smuzhiyun                     }
2000*4882a593Smuzhiyun                     return -5;
2001*4882a593Smuzhiyun                 }
2002*4882a593Smuzhiyun                 m_pComm->RKU_ReopenLBAHandle();
2003*4882a593Smuzhiyun                 if (m_pCallback)
2004*4882a593Smuzhiyun                 {
2005*4882a593Smuzhiyun                     sprintf(szPrompt, "%s checking...\n", rkImageHead.item[vecUpgradePartition[i]].name);
2006*4882a593Smuzhiyun                     m_pCallback(szPrompt);
2007*4882a593Smuzhiyun                 }
2008*4882a593Smuzhiyun                 uiCurrentByte -= ulItemSize;
2009*4882a593Smuzhiyun                 bRet = RKA_File_Check(rkImageHead.item[vecUpgradePartition[i]], uiCurrentByte, uiTotalSize);
2010*4882a593Smuzhiyun                 if (!bRet)
2011*4882a593Smuzhiyun                 {
2012*4882a593Smuzhiyun                     if (m_pLog)
2013*4882a593Smuzhiyun                     {
2014*4882a593Smuzhiyun                         m_pLog->Record(_T("ERROR:UpgradePartition-->RKA_File_Check failed(%s)"), rkImageHead.item[vecUpgradePartition[i]].name);
2015*4882a593Smuzhiyun                     }
2016*4882a593Smuzhiyun                     return -7;
2017*4882a593Smuzhiyun                 }
2018*4882a593Smuzhiyun             }
2019*4882a593Smuzhiyun             else
2020*4882a593Smuzhiyun             {
2021*4882a593Smuzhiyun                 continue;
2022*4882a593Smuzhiyun             }
2023*4882a593Smuzhiyun         }
2024*4882a593Smuzhiyun         if (dwFlagSector != 0)
2025*4882a593Smuzhiyun         {
2026*4882a593Smuzhiyun             write_partition_upgrade_flag(dwFlagSector, fwMd5, rkImageHead.item[vecUpgradePartition[i]].flash_offset);
2027*4882a593Smuzhiyun         }
2028*4882a593Smuzhiyun     }
2029*4882a593Smuzhiyun     if (m_pProcessCallback)
2030*4882a593Smuzhiyun     {
2031*4882a593Smuzhiyun         m_pProcessCallback(1, 0);
2032*4882a593Smuzhiyun     }
2033*4882a593Smuzhiyun     return 0;
2034*4882a593Smuzhiyun }
EraseIDB()2035*4882a593Smuzhiyun int CRKAndroidDevice::EraseIDB()
2036*4882a593Smuzhiyun {
2037*4882a593Smuzhiyun     DWORD dwEraseCounts;
2038*4882a593Smuzhiyun     if (m_oldIDBCounts > 0)
2039*4882a593Smuzhiyun     {
2040*4882a593Smuzhiyun         dwEraseCounts = m_oldSec1->usSysReservedBlock;
2041*4882a593Smuzhiyun     }
2042*4882a593Smuzhiyun     else
2043*4882a593Smuzhiyun     {
2044*4882a593Smuzhiyun         dwEraseCounts = IDBLOCK_TOP;
2045*4882a593Smuzhiyun     }
2046*4882a593Smuzhiyun     if (m_bEmmc)
2047*4882a593Smuzhiyun     {
2048*4882a593Smuzhiyun         if (EraseEmmcBlock(0, 0, dwEraseCounts) != ERR_SUCCESS)
2049*4882a593Smuzhiyun         {
2050*4882a593Smuzhiyun             if (m_pLog)
2051*4882a593Smuzhiyun             {
2052*4882a593Smuzhiyun                 m_pLog->Record(_T("ERROR:EraseIDB-->EraseEmmcBlock failed"));
2053*4882a593Smuzhiyun             }
2054*4882a593Smuzhiyun             return -1;
2055*4882a593Smuzhiyun         }
2056*4882a593Smuzhiyun     }
2057*4882a593Smuzhiyun     else
2058*4882a593Smuzhiyun     {
2059*4882a593Smuzhiyun         if (!EraseMutilBlock(0, 0, dwEraseCounts, false))
2060*4882a593Smuzhiyun         {
2061*4882a593Smuzhiyun             if (m_pLog)
2062*4882a593Smuzhiyun             {
2063*4882a593Smuzhiyun                 m_pLog->Record(_T("ERROR:EraseIDB-->EraseMutilBlock failed"));
2064*4882a593Smuzhiyun             }
2065*4882a593Smuzhiyun             return -1;
2066*4882a593Smuzhiyun         }
2067*4882a593Smuzhiyun     }
2068*4882a593Smuzhiyun 
2069*4882a593Smuzhiyun     return 0;
2070*4882a593Smuzhiyun }
EraseAllBlocks()2071*4882a593Smuzhiyun int CRKAndroidDevice::EraseAllBlocks()
2072*4882a593Smuzhiyun {
2073*4882a593Smuzhiyun     int i;
2074*4882a593Smuzhiyun     UINT uiBlockCount;
2075*4882a593Smuzhiyun     int iRet = ERR_SUCCESS, iErasePos = 0, iEraseBlockNum = 0, iEraseTimes = 0, iCSIndex = 0;
2076*4882a593Smuzhiyun     BYTE bCSCount = 0;
2077*4882a593Smuzhiyun     for (i = 0; i < 8; i++)
2078*4882a593Smuzhiyun     {
2079*4882a593Smuzhiyun         if (m_flashInfo.bFlashCS & (1 << i))
2080*4882a593Smuzhiyun         {
2081*4882a593Smuzhiyun             bCSCount++;
2082*4882a593Smuzhiyun         }
2083*4882a593Smuzhiyun     }
2084*4882a593Smuzhiyun 
2085*4882a593Smuzhiyun     for (i = 0; i < 8; i++)
2086*4882a593Smuzhiyun     {
2087*4882a593Smuzhiyun         if (m_flashInfo.bFlashCS & (1 << i))
2088*4882a593Smuzhiyun         {
2089*4882a593Smuzhiyun             uiBlockCount = m_flashInfo.uiBlockNum;
2090*4882a593Smuzhiyun             iErasePos = 0;
2091*4882a593Smuzhiyun             iEraseTimes = 0;
2092*4882a593Smuzhiyun             while (uiBlockCount > 0)
2093*4882a593Smuzhiyun             {
2094*4882a593Smuzhiyun                 iEraseBlockNum = (uiBlockCount < MAX_ERASE_BLOCKS) ? uiBlockCount : MAX_ERASE_BLOCKS;
2095*4882a593Smuzhiyun                 if (m_bEmmc)
2096*4882a593Smuzhiyun                 {
2097*4882a593Smuzhiyun                     iRet = EraseEmmcBlock(i, iErasePos, iEraseBlockNum);
2098*4882a593Smuzhiyun                     if (iRet != ERR_SUCCESS)
2099*4882a593Smuzhiyun                     {
2100*4882a593Smuzhiyun                         if (m_pLog)
2101*4882a593Smuzhiyun                         {
2102*4882a593Smuzhiyun                             m_pLog->Record(_T("ERROR:EraseAllBlocks-->EraseEmmcBlock failed,RetCode(%d)"), iRet);
2103*4882a593Smuzhiyun                         }
2104*4882a593Smuzhiyun                         return -1;
2105*4882a593Smuzhiyun                     }
2106*4882a593Smuzhiyun                 }
2107*4882a593Smuzhiyun                 else
2108*4882a593Smuzhiyun                 {
2109*4882a593Smuzhiyun                     iRet = m_pComm->RKU_EraseBlock(i, iErasePos, iEraseBlockNum, ERASE_FORCE);
2110*4882a593Smuzhiyun                     if ((iRet != ERR_SUCCESS) && (iRet != ERR_FOUND_BAD_BLOCK))
2111*4882a593Smuzhiyun                     {
2112*4882a593Smuzhiyun                         if (m_pLog)
2113*4882a593Smuzhiyun                         {
2114*4882a593Smuzhiyun                             m_pLog->Record(_T("ERROR:EraseAllBlocks-->RKU_EraseBlock failed,RetCode(%d)"), iRet);
2115*4882a593Smuzhiyun                         }
2116*4882a593Smuzhiyun                         return -1;
2117*4882a593Smuzhiyun                     }
2118*4882a593Smuzhiyun                 }
2119*4882a593Smuzhiyun 
2120*4882a593Smuzhiyun                 iErasePos += iEraseBlockNum;
2121*4882a593Smuzhiyun                 uiBlockCount -= iEraseBlockNum;
2122*4882a593Smuzhiyun                 iEraseTimes++;
2123*4882a593Smuzhiyun             }
2124*4882a593Smuzhiyun             iCSIndex++;
2125*4882a593Smuzhiyun         }
2126*4882a593Smuzhiyun     }
2127*4882a593Smuzhiyun 
2128*4882a593Smuzhiyun     return 0;
2129*4882a593Smuzhiyun }
2130*4882a593Smuzhiyun 
BufferWriteBack()2131*4882a593Smuzhiyun bool CRKAndroidDevice::BufferWriteBack()
2132*4882a593Smuzhiyun {
2133*4882a593Smuzhiyun     FindAllIDB();
2134*4882a593Smuzhiyun     if (m_oldIDBCounts > 0)
2135*4882a593Smuzhiyun     {
2136*4882a593Smuzhiyun         if (m_pLog)
2137*4882a593Smuzhiyun         {
2138*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:BufferWriteBack-->Found IDB"));
2139*4882a593Smuzhiyun         }
2140*4882a593Smuzhiyun         return true;
2141*4882a593Smuzhiyun     }
2142*4882a593Smuzhiyun     if (m_usWriteBackCrc == 0)
2143*4882a593Smuzhiyun     {
2144*4882a593Smuzhiyun         if (m_pLog)
2145*4882a593Smuzhiyun         {
2146*4882a593Smuzhiyun             m_pLog->Record(_T("INFO:BufferWriteBack-->Crc is zero"));
2147*4882a593Smuzhiyun         }
2148*4882a593Smuzhiyun         return true;
2149*4882a593Smuzhiyun     }
2150*4882a593Smuzhiyun     BYTE pWriteBackBuffer[2 * SECTOR_SIZE];
2151*4882a593Smuzhiyun 
2152*4882a593Smuzhiyun     char *pszTag = (char *)pWriteBackBuffer;
2153*4882a593Smuzhiyun     USHORT *pValue = (USHORT *)(pWriteBackBuffer + 4);
2154*4882a593Smuzhiyun 
2155*4882a593Smuzhiyun     memset(pWriteBackBuffer, 0, 2 * SECTOR_SIZE);
2156*4882a593Smuzhiyun 
2157*4882a593Smuzhiyun 
2158*4882a593Smuzhiyun     strcpy(pszTag, "CRC");
2159*4882a593Smuzhiyun     *pValue = m_usWriteBackCrc;
2160*4882a593Smuzhiyun     pValue++;
2161*4882a593Smuzhiyun     *pValue = m_usWriteBackCustomDataOffset;
2162*4882a593Smuzhiyun     pValue++;
2163*4882a593Smuzhiyun     *pValue = m_usWriteBackCustomDataSize;
2164*4882a593Smuzhiyun     memcpy(pWriteBackBuffer + SECTOR_SIZE, m_backupBuffer, SECTOR_SIZE);
2165*4882a593Smuzhiyun 
2166*4882a593Smuzhiyun     STRUCT_END_WRITE_SECTOR end_write_sector_data;
2167*4882a593Smuzhiyun     BYTE writeBuf[8 * SECTOR_SIZE];
2168*4882a593Smuzhiyun     UINT uiOffset, uiTotal, uiWriteByte, uiCrc;
2169*4882a593Smuzhiyun     int iRet, i, nTryCount = 3;
2170*4882a593Smuzhiyun     uiTotal = 2 * SECTOR_SIZE;
2171*4882a593Smuzhiyun     uiCrc = CRC_32(pWriteBackBuffer, uiTotal);
2172*4882a593Smuzhiyun     end_write_sector_data.uiSize = uiTotal;
2173*4882a593Smuzhiyun     end_write_sector_data.uiCrc = uiCrc;
2174*4882a593Smuzhiyun     for (i = WBBUFFER_BOTTOM; i < WBBUFFER_TOP; i++)
2175*4882a593Smuzhiyun     {
2176*4882a593Smuzhiyun         end_write_sector_data.uiBlock[i] = i;
2177*4882a593Smuzhiyun     }
2178*4882a593Smuzhiyun     while (nTryCount > 0)
2179*4882a593Smuzhiyun     {
2180*4882a593Smuzhiyun         uiOffset = 0;
2181*4882a593Smuzhiyun         uiTotal = 2 * SECTOR_SIZE;
2182*4882a593Smuzhiyun         while (uiTotal > 0)
2183*4882a593Smuzhiyun         {
2184*4882a593Smuzhiyun             if (uiTotal >= 2048)
2185*4882a593Smuzhiyun             {
2186*4882a593Smuzhiyun                 uiWriteByte = 2048;
2187*4882a593Smuzhiyun             }
2188*4882a593Smuzhiyun             else
2189*4882a593Smuzhiyun             {
2190*4882a593Smuzhiyun                 uiWriteByte = uiTotal;
2191*4882a593Smuzhiyun             }
2192*4882a593Smuzhiyun 
2193*4882a593Smuzhiyun             memcpy(writeBuf + 8, pWriteBackBuffer + uiOffset, uiWriteByte);
2194*4882a593Smuzhiyun             iRet = m_pComm->RKU_WriteLBA(64 + uiOffset, uiWriteByte, writeBuf);
2195*4882a593Smuzhiyun             if (iRet != ERR_SUCCESS)
2196*4882a593Smuzhiyun             {
2197*4882a593Smuzhiyun                 if (m_pLog)
2198*4882a593Smuzhiyun                 {
2199*4882a593Smuzhiyun                     m_pLog->Record(_T("ERROR:BufferWriteBack-->RKU_WriteSector failed!"));
2200*4882a593Smuzhiyun                 }
2201*4882a593Smuzhiyun                 return false;
2202*4882a593Smuzhiyun             }
2203*4882a593Smuzhiyun             uiOffset += uiWriteByte;
2204*4882a593Smuzhiyun             uiTotal -= uiWriteByte;
2205*4882a593Smuzhiyun         }
2206*4882a593Smuzhiyun         //iRet = m_pComm->RKU_EndWriteSector((BYTE*)&end_write_sector_data);
2207*4882a593Smuzhiyun         if (iRet == ERR_SUCCESS)
2208*4882a593Smuzhiyun         {
2209*4882a593Smuzhiyun             break;
2210*4882a593Smuzhiyun         }
2211*4882a593Smuzhiyun         nTryCount--;
2212*4882a593Smuzhiyun     }
2213*4882a593Smuzhiyun     if (nTryCount <= 0)
2214*4882a593Smuzhiyun     {
2215*4882a593Smuzhiyun         return false;
2216*4882a593Smuzhiyun     }
2217*4882a593Smuzhiyun 
2218*4882a593Smuzhiyun     return true;
2219*4882a593Smuzhiyun }
FindBackupBuffer()2220*4882a593Smuzhiyun bool CRKAndroidDevice::FindBackupBuffer()
2221*4882a593Smuzhiyun {
2222*4882a593Smuzhiyun     int i, iRet;
2223*4882a593Smuzhiyun     bool bRet;
2224*4882a593Smuzhiyun     BYTE buffer[2 * SECTOR_SIZE];
2225*4882a593Smuzhiyun     for (i = WBBUFFER_BOTTOM; i < WBBUFFER_TOP; i++)
2226*4882a593Smuzhiyun     {
2227*4882a593Smuzhiyun         memset(buffer, 0, 2 * SECTOR_SIZE);
2228*4882a593Smuzhiyun         iRet = m_pComm->RKU_ReadSector(i * m_flashInfo.uiSectorPerBlock, 2, buffer);
2229*4882a593Smuzhiyun         if (iRet != ERR_SUCCESS)
2230*4882a593Smuzhiyun         {
2231*4882a593Smuzhiyun             if (m_pLog)
2232*4882a593Smuzhiyun             {
2233*4882a593Smuzhiyun                 m_pLog->Record(_T("ERROR:FindBackupBuffer-->RKU_ReadSector failed,RetCode(%d)"), iRet);
2234*4882a593Smuzhiyun             }
2235*4882a593Smuzhiyun             continue;
2236*4882a593Smuzhiyun         }
2237*4882a593Smuzhiyun         else
2238*4882a593Smuzhiyun         {
2239*4882a593Smuzhiyun             PSTRUCT_RKANDROID_WBBUFFER pWriteBack;
2240*4882a593Smuzhiyun             pWriteBack = (PSTRUCT_RKANDROID_WBBUFFER)buffer;
2241*4882a593Smuzhiyun             char *pszCrcTag = (char *)buffer;
2242*4882a593Smuzhiyun             if (pWriteBack->dwTag == 0x38324B52)
2243*4882a593Smuzhiyun             {
2244*4882a593Smuzhiyun                 bRet = CheckCrc16(buffer, SECTOR_SIZE - 2, pWriteBack->usCrc);
2245*4882a593Smuzhiyun                 if (!bRet)
2246*4882a593Smuzhiyun                 {
2247*4882a593Smuzhiyun                     if (m_pLog)
2248*4882a593Smuzhiyun                     {
2249*4882a593Smuzhiyun                         m_pLog->Record(_T("ERROR:FindBackupBuffer-->Check Crc Failed"));
2250*4882a593Smuzhiyun                     }
2251*4882a593Smuzhiyun                     //                  continue;
2252*4882a593Smuzhiyun                 }
2253*4882a593Smuzhiyun                 PRKANDROID_IDB_SEC3 pSec = (PRKANDROID_IDB_SEC3)m_backupBuffer;
2254*4882a593Smuzhiyun                 pSec->usSNSize = pWriteBack->usSnSize;
2255*4882a593Smuzhiyun                 memcpy(pSec->sn, pWriteBack->btSnData, RKDEVICE_SN_LEN);
2256*4882a593Smuzhiyun                 memset(pSec->reserved, 0, RKANDROID_SEC3_RESERVED_LEN);
2257*4882a593Smuzhiyun                 memcpy(pSec->reserved + 6, pWriteBack->btReserve, RKANDROID_SEC3_RESERVED_LEN - 6);
2258*4882a593Smuzhiyun                 pSec->imeiSize = pWriteBack->btImeiSize;
2259*4882a593Smuzhiyun                 memcpy(pSec->imei, pWriteBack->btImeiData, RKDEVICE_IMEI_LEN);
2260*4882a593Smuzhiyun                 pSec->uidSize = pWriteBack->btUidSize;
2261*4882a593Smuzhiyun                 memcpy(pSec->uid, pWriteBack->btUidData, RKDEVICE_UID_LEN);
2262*4882a593Smuzhiyun                 pSec->blueToothSize = pWriteBack->btBlueToothSize;
2263*4882a593Smuzhiyun                 memcpy(pSec->blueToothAddr, pWriteBack->btBlueToothData, RKDEVICE_BT_LEN);
2264*4882a593Smuzhiyun                 pSec->macSize = pWriteBack->btMacSize;
2265*4882a593Smuzhiyun                 memcpy(pSec->macAddr, pWriteBack->btMacData, RKDEVICE_MAC_LEN);
2266*4882a593Smuzhiyun                 m_usWriteBackCrc = CRC_16(m_backupBuffer, SECTOR_SIZE);
2267*4882a593Smuzhiyun             }
2268*4882a593Smuzhiyun             else if (strcmp(pszCrcTag, "CRC") == 0)
2269*4882a593Smuzhiyun             {
2270*4882a593Smuzhiyun                 m_usWriteBackCrc = *((USHORT *)(buffer + 4));
2271*4882a593Smuzhiyun                 m_usWriteBackCustomDataOffset = *((USHORT *)(buffer + 6));
2272*4882a593Smuzhiyun                 m_usWriteBackCustomDataSize = *((USHORT *)(buffer + 8));
2273*4882a593Smuzhiyun                 bRet = CheckCrc16(buffer + SECTOR_SIZE, SECTOR_SIZE, m_usWriteBackCrc);
2274*4882a593Smuzhiyun                 if (!bRet)
2275*4882a593Smuzhiyun                 {
2276*4882a593Smuzhiyun                     if (m_pLog)
2277*4882a593Smuzhiyun                     {
2278*4882a593Smuzhiyun                         m_pLog->Record(_T("ERROR:FindBackupBuffer-->Check Crc Failed"));
2279*4882a593Smuzhiyun                     }
2280*4882a593Smuzhiyun                     m_usWriteBackCrc = CRC_16(buffer + SECTOR_SIZE + SPARE_SIZE, SECTOR_SIZE);
2281*4882a593Smuzhiyun                     //                  continue;
2282*4882a593Smuzhiyun                 }
2283*4882a593Smuzhiyun                 memcpy(m_backupBuffer, buffer + SECTOR_SIZE, SECTOR_SIZE);
2284*4882a593Smuzhiyun             }
2285*4882a593Smuzhiyun             else
2286*4882a593Smuzhiyun             {
2287*4882a593Smuzhiyun                 if (m_pLog)
2288*4882a593Smuzhiyun                 {
2289*4882a593Smuzhiyun                     m_pLog->Record(_T("INFO:FindBackupBuffer-->No Found Tag"));
2290*4882a593Smuzhiyun                 }
2291*4882a593Smuzhiyun                 continue;
2292*4882a593Smuzhiyun             }
2293*4882a593Smuzhiyun 
2294*4882a593Smuzhiyun             break;
2295*4882a593Smuzhiyun         }
2296*4882a593Smuzhiyun     }
2297*4882a593Smuzhiyun     if (i < WBBUFFER_TOP)
2298*4882a593Smuzhiyun     {
2299*4882a593Smuzhiyun         return true;
2300*4882a593Smuzhiyun     }
2301*4882a593Smuzhiyun     else
2302*4882a593Smuzhiyun     {
2303*4882a593Smuzhiyun         return false;
2304*4882a593Smuzhiyun     }
2305*4882a593Smuzhiyun }
2306*4882a593Smuzhiyun 
RKA_File_Download(STRUCT_RKIMAGE_ITEM & entry,long long & currentByte,long long totalByte)2307*4882a593Smuzhiyun bool CRKAndroidDevice::RKA_File_Download(STRUCT_RKIMAGE_ITEM &entry, long long &currentByte, long long totalByte)
2308*4882a593Smuzhiyun {
2309*4882a593Smuzhiyun     int iRet;
2310*4882a593Smuzhiyun     bool bRet;
2311*4882a593Smuzhiyun     UINT uiLBATransferSize;
2312*4882a593Smuzhiyun 
2313*4882a593Smuzhiyun     /* To reduce the write frequency of EMMC flash memory, we use different block sizes
2314*4882a593Smuzhiyun      * according to the flash memory type configuration, EMMC flash memory is 1M, nand or other devices use 16K by default.
2315*4882a593Smuzhiyun      */
2316*4882a593Smuzhiyun     if (m_bEmmc)
2317*4882a593Smuzhiyun         uiLBATransferSize = (LBA_TRANSFER_SIZE_1M) * m_uiLBATimes;
2318*4882a593Smuzhiyun     else
2319*4882a593Smuzhiyun         uiLBATransferSize = (LBA_TRANSFER_SIZE_16K) * m_uiLBATimes;
2320*4882a593Smuzhiyun     UINT uiLBASector = uiLBATransferSize / SECTOR_SIZE;
2321*4882a593Smuzhiyun 
2322*4882a593Smuzhiyun     UINT uiBufferSize = uiLBATransferSize;
2323*4882a593Smuzhiyun     long long uifileBufferSize;
2324*4882a593Smuzhiyun     long long ulEntryStartOffset;
2325*4882a593Smuzhiyun     DWORD dwFWOffset;
2326*4882a593Smuzhiyun     dwFWOffset = m_pImage->FWOffset;
2327*4882a593Smuzhiyun     if (entry.file[50] == 'H')
2328*4882a593Smuzhiyun     {
2329*4882a593Smuzhiyun         ulEntryStartOffset = *((DWORD *)(&entry.file[51]));
2330*4882a593Smuzhiyun         ulEntryStartOffset <<= 32;
2331*4882a593Smuzhiyun         ulEntryStartOffset += entry.offset;
2332*4882a593Smuzhiyun         ulEntryStartOffset += m_pImage->FWOffset;
2333*4882a593Smuzhiyun     }
2334*4882a593Smuzhiyun     else
2335*4882a593Smuzhiyun     {
2336*4882a593Smuzhiyun         ulEntryStartOffset = m_pImage->FWOffset;
2337*4882a593Smuzhiyun         ulEntryStartOffset += entry.offset;
2338*4882a593Smuzhiyun     }
2339*4882a593Smuzhiyun     if (entry.file[55] == 'H')
2340*4882a593Smuzhiyun     {
2341*4882a593Smuzhiyun         uifileBufferSize = *((DWORD *)(&entry.file[56]));
2342*4882a593Smuzhiyun         uifileBufferSize <<= 32;
2343*4882a593Smuzhiyun         uifileBufferSize += entry.size;
2344*4882a593Smuzhiyun     }
2345*4882a593Smuzhiyun     else
2346*4882a593Smuzhiyun     {
2347*4882a593Smuzhiyun         uifileBufferSize = entry.size;
2348*4882a593Smuzhiyun     }
2349*4882a593Smuzhiyun     if (m_pLog)
2350*4882a593Smuzhiyun     {
2351*4882a593Smuzhiyun         m_pLog->Record(_T("INFO:Start updating [ %s ],offset=0x%x,size=%llu"), entry.name, entry.flash_offset, uifileBufferSize);
2352*4882a593Smuzhiyun     }
2353*4882a593Smuzhiyun 
2354*4882a593Smuzhiyun     BYTE byRWMethod = RWMETHOD_IMAGE;
2355*4882a593Smuzhiyun 
2356*4882a593Smuzhiyun     if (entry.flash_offset > m_dwBackupOffset)
2357*4882a593Smuzhiyun     {
2358*4882a593Smuzhiyun         byRWMethod = RWMETHOD_LBA;
2359*4882a593Smuzhiyun     }
2360*4882a593Smuzhiyun 
2361*4882a593Smuzhiyun     PBYTE pBuffer = NULL;
2362*4882a593Smuzhiyun     pBuffer = new BYTE[uiBufferSize];
2363*4882a593Smuzhiyun     if (!pBuffer)
2364*4882a593Smuzhiyun     {
2365*4882a593Smuzhiyun         if (m_pLog)
2366*4882a593Smuzhiyun         {
2367*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:RKA_File_Download-->New memory failed"));
2368*4882a593Smuzhiyun         }
2369*4882a593Smuzhiyun         return false;
2370*4882a593Smuzhiyun     }
2371*4882a593Smuzhiyun 
2372*4882a593Smuzhiyun     bool bUser = false;
2373*4882a593Smuzhiyun     //  if (strcmp(entry.name,PARTNAME_MISC)==0)
2374*4882a593Smuzhiyun     //  {
2375*4882a593Smuzhiyun     //      currentByte += uifileBufferSize;
2376*4882a593Smuzhiyun     //      return true;
2377*4882a593Smuzhiyun     //  }
2378*4882a593Smuzhiyun     if (strcmp(entry.name, PARTNAME_USER) == 0)
2379*4882a593Smuzhiyun     {
2380*4882a593Smuzhiyun         bUser = true;
2381*4882a593Smuzhiyun     }
2382*4882a593Smuzhiyun 
2383*4882a593Smuzhiyun     UINT uiBegin, uiLen, uiWriteByte;
2384*4882a593Smuzhiyun     u64 uiEntryOffset;
2385*4882a593Smuzhiyun 
2386*4882a593Smuzhiyun     uiBegin = entry.flash_offset;
2387*4882a593Smuzhiyun     uiLen = 0;
2388*4882a593Smuzhiyun     uiWriteByte = 0;
2389*4882a593Smuzhiyun     uiEntryOffset = 0;
2390*4882a593Smuzhiyun #ifdef USE_SIMULATE_POWER_OFF
2391*4882a593Smuzhiyun     UINT cnt = 5;
2392*4882a593Smuzhiyun     long long itemTotalsize;
2393*4882a593Smuzhiyun     bool isInOrder = false;
2394*4882a593Smuzhiyun     itemTotalsize = uifileBufferSize;
2395*4882a593Smuzhiyun     isInOrder = isInOrderList(entry.name);
2396*4882a593Smuzhiyun #endif
2397*4882a593Smuzhiyun 
2398*4882a593Smuzhiyun     while (uifileBufferSize > 0)
2399*4882a593Smuzhiyun     {
2400*4882a593Smuzhiyun         #ifdef USE_SIMULATE_POWER_OFF
2401*4882a593Smuzhiyun         if (isInOrder && uifileBufferSize < itemTotalsize / 2)
2402*4882a593Smuzhiyun         {
2403*4882a593Smuzhiyun             while (cnt > 0)
2404*4882a593Smuzhiyun             {
2405*4882a593Smuzhiyun                 if (m_pLog)
2406*4882a593Smuzhiyun                 {
2407*4882a593Smuzhiyun                     printf("******************************************************\n");
2408*4882a593Smuzhiyun                     printf("current is %s upgrading\n", entry.name);
2409*4882a593Smuzhiyun                     printf("This is simulate abnormal power off test\n");
2410*4882a593Smuzhiyun                     printf("left --- %ds ---\n", cnt);
2411*4882a593Smuzhiyun                     printf("******************************************************\n");
2412*4882a593Smuzhiyun                 }
2413*4882a593Smuzhiyun                 sleep(1);
2414*4882a593Smuzhiyun                 cnt--;
2415*4882a593Smuzhiyun             }
2416*4882a593Smuzhiyun         }
2417*4882a593Smuzhiyun         #endif
2418*4882a593Smuzhiyun         memset(pBuffer, 0, uiBufferSize);
2419*4882a593Smuzhiyun         if (uifileBufferSize < uiBufferSize)
2420*4882a593Smuzhiyun         {
2421*4882a593Smuzhiyun             uiWriteByte = uifileBufferSize;
2422*4882a593Smuzhiyun             uiLen = ((uiWriteByte % SECTOR_SIZE == 0) ? (uiWriteByte / SECTOR_SIZE) : (uiWriteByte / SECTOR_SIZE + 1));
2423*4882a593Smuzhiyun         }
2424*4882a593Smuzhiyun         else
2425*4882a593Smuzhiyun         {
2426*4882a593Smuzhiyun             uiWriteByte = uiBufferSize;
2427*4882a593Smuzhiyun             uiLen = uiLBASector;
2428*4882a593Smuzhiyun         }
2429*4882a593Smuzhiyun         bRet = m_pImage->GetData(ulEntryStartOffset + uiEntryOffset, uiWriteByte, pBuffer);
2430*4882a593Smuzhiyun         if (!bRet)
2431*4882a593Smuzhiyun         {
2432*4882a593Smuzhiyun             if (m_pLog)
2433*4882a593Smuzhiyun             {
2434*4882a593Smuzhiyun                 m_pLog->Record(_T("ERROR:RKA_File_Download-->GetFileData failed"));
2435*4882a593Smuzhiyun             }
2436*4882a593Smuzhiyun             delete []pBuffer;
2437*4882a593Smuzhiyun             pBuffer = NULL;
2438*4882a593Smuzhiyun             return false;
2439*4882a593Smuzhiyun         }
2440*4882a593Smuzhiyun         if (bUser)
2441*4882a593Smuzhiyun         {
2442*4882a593Smuzhiyun             if ((pBuffer[0] == 0xEB) && (pBuffer[1] == 0x58) && (pBuffer[2] == 0x90))
2443*4882a593Smuzhiyun             {
2444*4882a593Smuzhiyun                 //fat user image
2445*4882a593Smuzhiyun                 iRet = m_pComm->RKU_TestDeviceReady((DWORD *)&m_uiUserSectors, NULL, TU_GETUSERSECTOR_SUBCODE);
2446*4882a593Smuzhiyun                 if (iRet != ERR_SUCCESS)
2447*4882a593Smuzhiyun                 {
2448*4882a593Smuzhiyun                     if (m_pLog)
2449*4882a593Smuzhiyun                     {
2450*4882a593Smuzhiyun                         m_pLog->Record(_T("ERROR:RKA_File_Download-->Get user sectors failed,RetCode(%d)"), iRet);
2451*4882a593Smuzhiyun                     }
2452*4882a593Smuzhiyun 
2453*4882a593Smuzhiyun                     delete []pBuffer;
2454*4882a593Smuzhiyun                     pBuffer = NULL;
2455*4882a593Smuzhiyun                     return false;
2456*4882a593Smuzhiyun                 }
2457*4882a593Smuzhiyun                 if ((m_uiUserSectors == 0) || (m_uiUserSectors == (DWORD) -1))
2458*4882a593Smuzhiyun                 {
2459*4882a593Smuzhiyun                     if (m_pLog)
2460*4882a593Smuzhiyun                     {
2461*4882a593Smuzhiyun                         m_pLog->Record(_T("ERROR:RKA_File_Download-->User size is wrong,value=0x%x"), m_uiUserSectors);
2462*4882a593Smuzhiyun                     }
2463*4882a593Smuzhiyun 
2464*4882a593Smuzhiyun                     delete []pBuffer;
2465*4882a593Smuzhiyun                     pBuffer = NULL;
2466*4882a593Smuzhiyun                     return false;
2467*4882a593Smuzhiyun                 }
2468*4882a593Smuzhiyun                 if (m_uiUserSectors <= uiBegin)
2469*4882a593Smuzhiyun                 {
2470*4882a593Smuzhiyun                     if (m_pLog)
2471*4882a593Smuzhiyun                     {
2472*4882a593Smuzhiyun                         m_pLog->Record(_T("ERROR:RKA_File_Download-->Available total is smaller than user offset"));
2473*4882a593Smuzhiyun                     }
2474*4882a593Smuzhiyun 
2475*4882a593Smuzhiyun                     delete []pBuffer;
2476*4882a593Smuzhiyun                     pBuffer = NULL;
2477*4882a593Smuzhiyun                     return false;
2478*4882a593Smuzhiyun                 }
2479*4882a593Smuzhiyun                 m_uiUserSectors -= uiBegin;
2480*4882a593Smuzhiyun 
2481*4882a593Smuzhiyun                 PBYTE pDbr, pCopyDbr;
2482*4882a593Smuzhiyun                 pDbr = pBuffer;
2483*4882a593Smuzhiyun                 pCopyDbr = pBuffer + SECTOR_SIZE * 6;
2484*4882a593Smuzhiyun                 if (*(UINT *)(pDbr + 32) < m_uiUserSectors)
2485*4882a593Smuzhiyun                 {
2486*4882a593Smuzhiyun                     if (m_pLog)
2487*4882a593Smuzhiyun                     {
2488*4882a593Smuzhiyun                         m_pLog->Record(_T("ERROR:RKA_File_Download-->Original size is smaller than current user size"));
2489*4882a593Smuzhiyun                     }
2490*4882a593Smuzhiyun 
2491*4882a593Smuzhiyun                     delete []pBuffer;
2492*4882a593Smuzhiyun                     pBuffer = NULL;
2493*4882a593Smuzhiyun                     return false;
2494*4882a593Smuzhiyun                 }
2495*4882a593Smuzhiyun 
2496*4882a593Smuzhiyun                 (*(UINT *)(pDbr + 32)) = m_uiUserSectors;
2497*4882a593Smuzhiyun                 (*(UINT *)(pCopyDbr + 32)) = m_uiUserSectors;
2498*4882a593Smuzhiyun             }
2499*4882a593Smuzhiyun 
2500*4882a593Smuzhiyun             bUser = false;
2501*4882a593Smuzhiyun         }
2502*4882a593Smuzhiyun 
2503*4882a593Smuzhiyun         iRet = m_pComm->RKU_WriteLBA(uiBegin, uiLen, pBuffer, byRWMethod);
2504*4882a593Smuzhiyun         if (iRet != ERR_SUCCESS)
2505*4882a593Smuzhiyun         {
2506*4882a593Smuzhiyun             if (m_pLog)
2507*4882a593Smuzhiyun             {
2508*4882a593Smuzhiyun                 m_pLog->Record(_T("ERROR:RKA_File_Download-->RKU_WriteLBA failed,Written(%d),RetCode(%d)"), uiEntryOffset, iRet);
2509*4882a593Smuzhiyun             }
2510*4882a593Smuzhiyun 
2511*4882a593Smuzhiyun             delete []pBuffer;
2512*4882a593Smuzhiyun             pBuffer = NULL;
2513*4882a593Smuzhiyun             return false;
2514*4882a593Smuzhiyun         }
2515*4882a593Smuzhiyun         uifileBufferSize -= uiWriteByte;
2516*4882a593Smuzhiyun         uiEntryOffset += uiWriteByte;
2517*4882a593Smuzhiyun         uiBegin += uiLen;
2518*4882a593Smuzhiyun         currentByte += uiWriteByte;
2519*4882a593Smuzhiyun     }
2520*4882a593Smuzhiyun 
2521*4882a593Smuzhiyun     delete []pBuffer;
2522*4882a593Smuzhiyun     pBuffer = NULL;
2523*4882a593Smuzhiyun 
2524*4882a593Smuzhiyun     // if (m_pLog)
2525*4882a593Smuzhiyun     // {
2526*4882a593Smuzhiyun     //  m_pLog->Record(_T("INFO:[ %s ] upgrade Done!"), entry.name);
2527*4882a593Smuzhiyun     // }
2528*4882a593Smuzhiyun     return true;
2529*4882a593Smuzhiyun }
2530*4882a593Smuzhiyun 
RKA_File_Check(STRUCT_RKIMAGE_ITEM & entry,long long & currentByte,long long totalByte)2531*4882a593Smuzhiyun bool CRKAndroidDevice::RKA_File_Check(STRUCT_RKIMAGE_ITEM &entry, long long &currentByte, long long totalByte)
2532*4882a593Smuzhiyun {
2533*4882a593Smuzhiyun     int iRet;
2534*4882a593Smuzhiyun     bool bRet;
2535*4882a593Smuzhiyun     UINT uiLBATransferSize;
2536*4882a593Smuzhiyun     if (m_bEmmc)
2537*4882a593Smuzhiyun         uiLBATransferSize = (LBA_TRANSFER_SIZE_1M) * m_uiLBATimes;
2538*4882a593Smuzhiyun     else
2539*4882a593Smuzhiyun         uiLBATransferSize = (LBA_TRANSFER_SIZE_16K) * m_uiLBATimes;
2540*4882a593Smuzhiyun     UINT uiLBASector       = uiLBATransferSize / SECTOR_SIZE;
2541*4882a593Smuzhiyun     UINT uiBufferSize      = uiLBATransferSize;
2542*4882a593Smuzhiyun     long long uifileBufferSize;
2543*4882a593Smuzhiyun     long long ulEntryStartOffset;
2544*4882a593Smuzhiyun     DWORD dwFWOffset;
2545*4882a593Smuzhiyun     dwFWOffset = m_pImage->FWOffset;
2546*4882a593Smuzhiyun     if (entry.file[50] == 'H')
2547*4882a593Smuzhiyun     {
2548*4882a593Smuzhiyun         ulEntryStartOffset = *((DWORD *)(&entry.file[51]));
2549*4882a593Smuzhiyun         ulEntryStartOffset <<= 32;
2550*4882a593Smuzhiyun         ulEntryStartOffset += entry.offset;
2551*4882a593Smuzhiyun         ulEntryStartOffset += m_pImage->FWOffset;
2552*4882a593Smuzhiyun     }
2553*4882a593Smuzhiyun     else
2554*4882a593Smuzhiyun     {
2555*4882a593Smuzhiyun         ulEntryStartOffset = m_pImage->FWOffset;
2556*4882a593Smuzhiyun         ulEntryStartOffset += entry.offset;
2557*4882a593Smuzhiyun     }
2558*4882a593Smuzhiyun     if (entry.file[55] == 'H')
2559*4882a593Smuzhiyun     {
2560*4882a593Smuzhiyun         uifileBufferSize = *((DWORD *)(&entry.file[56]));
2561*4882a593Smuzhiyun         uifileBufferSize <<= 32;
2562*4882a593Smuzhiyun         uifileBufferSize += entry.size;
2563*4882a593Smuzhiyun     }
2564*4882a593Smuzhiyun     else
2565*4882a593Smuzhiyun     {
2566*4882a593Smuzhiyun         uifileBufferSize = entry.size;
2567*4882a593Smuzhiyun     }
2568*4882a593Smuzhiyun 
2569*4882a593Smuzhiyun     BYTE byRWMethod = RWMETHOD_IMAGE;
2570*4882a593Smuzhiyun     if (entry.flash_offset > m_dwBackupOffset)
2571*4882a593Smuzhiyun     {
2572*4882a593Smuzhiyun         byRWMethod = RWMETHOD_LBA;
2573*4882a593Smuzhiyun     }
2574*4882a593Smuzhiyun 
2575*4882a593Smuzhiyun     PBYTE pBufferFromFile = NULL;
2576*4882a593Smuzhiyun     pBufferFromFile = new BYTE[uiBufferSize];
2577*4882a593Smuzhiyun     if (!pBufferFromFile)
2578*4882a593Smuzhiyun     {
2579*4882a593Smuzhiyun         if (m_pLog)
2580*4882a593Smuzhiyun         {
2581*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:RKA_File_Check-->New memory failed"));
2582*4882a593Smuzhiyun         }
2583*4882a593Smuzhiyun         return false;
2584*4882a593Smuzhiyun     }
2585*4882a593Smuzhiyun     PBYTE pBufferFromFlash = NULL;
2586*4882a593Smuzhiyun     pBufferFromFlash = new BYTE[uiBufferSize];
2587*4882a593Smuzhiyun     if (!pBufferFromFlash)
2588*4882a593Smuzhiyun     {
2589*4882a593Smuzhiyun         if (m_pLog)
2590*4882a593Smuzhiyun         {
2591*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:RKA_File_Check-->New memory failed"));
2592*4882a593Smuzhiyun         }
2593*4882a593Smuzhiyun         delete []pBufferFromFile;
2594*4882a593Smuzhiyun         return false;
2595*4882a593Smuzhiyun     }
2596*4882a593Smuzhiyun 
2597*4882a593Smuzhiyun     bool bUser = false;
2598*4882a593Smuzhiyun     //  if (strcmp(entry.name,PARTNAME_MISC)==0)
2599*4882a593Smuzhiyun     //  {
2600*4882a593Smuzhiyun     //      currentByte += uifileBufferSize;
2601*4882a593Smuzhiyun     //      return true;
2602*4882a593Smuzhiyun     //  }
2603*4882a593Smuzhiyun     if (strcmp(entry.name, PARTNAME_USER) == 0)
2604*4882a593Smuzhiyun     {
2605*4882a593Smuzhiyun         bUser = true;
2606*4882a593Smuzhiyun         if ((entry.name[PART_NAME - 2] == 'N') && (entry.name[PART_NAME - 1] == 'C'))
2607*4882a593Smuzhiyun         {
2608*4882a593Smuzhiyun             //no check user
2609*4882a593Smuzhiyun             currentByte += uifileBufferSize;
2610*4882a593Smuzhiyun             return true;
2611*4882a593Smuzhiyun         }
2612*4882a593Smuzhiyun     }
2613*4882a593Smuzhiyun 
2614*4882a593Smuzhiyun     UINT uiBegin, uiLen, uiWriteByte;
2615*4882a593Smuzhiyun     long long uiEntryOffset;
2616*4882a593Smuzhiyun     uiBegin = entry.flash_offset;
2617*4882a593Smuzhiyun     uiLen = 0;
2618*4882a593Smuzhiyun     uiWriteByte = 0;
2619*4882a593Smuzhiyun     uiEntryOffset = 0;
2620*4882a593Smuzhiyun     while (uifileBufferSize > 0)
2621*4882a593Smuzhiyun     {
2622*4882a593Smuzhiyun         if (uifileBufferSize < uiBufferSize)
2623*4882a593Smuzhiyun         {
2624*4882a593Smuzhiyun             uiWriteByte = uifileBufferSize;
2625*4882a593Smuzhiyun             uiLen = ((uiWriteByte % SECTOR_SIZE == 0) ? (uiWriteByte / SECTOR_SIZE) : (uiWriteByte / SECTOR_SIZE + 1));
2626*4882a593Smuzhiyun         }
2627*4882a593Smuzhiyun         else
2628*4882a593Smuzhiyun         {
2629*4882a593Smuzhiyun             uiWriteByte = uiBufferSize;
2630*4882a593Smuzhiyun             uiLen = uiLBASector;
2631*4882a593Smuzhiyun         }
2632*4882a593Smuzhiyun 
2633*4882a593Smuzhiyun         memset(pBufferFromFile, 0, uiBufferSize);
2634*4882a593Smuzhiyun         memset(pBufferFromFlash, 0, uiBufferSize);
2635*4882a593Smuzhiyun 
2636*4882a593Smuzhiyun         iRet = m_pComm->RKU_ReadLBA(uiBegin, uiLen, pBufferFromFlash, byRWMethod);
2637*4882a593Smuzhiyun         if (iRet != ERR_SUCCESS)
2638*4882a593Smuzhiyun         {
2639*4882a593Smuzhiyun             if (m_pLog)
2640*4882a593Smuzhiyun             {
2641*4882a593Smuzhiyun                 m_pLog->Record(_T("ERROR:RKA_File_Check-->RKU_ReadLBA failed,Read(%d),RetCode(%d)"), uiEntryOffset, iRet);
2642*4882a593Smuzhiyun             }
2643*4882a593Smuzhiyun             delete []pBufferFromFile;
2644*4882a593Smuzhiyun             delete []pBufferFromFlash;
2645*4882a593Smuzhiyun             return false;
2646*4882a593Smuzhiyun         }
2647*4882a593Smuzhiyun         bRet = m_pImage->GetData(ulEntryStartOffset + uiEntryOffset, uiWriteByte, pBufferFromFile);
2648*4882a593Smuzhiyun         if (!bRet)
2649*4882a593Smuzhiyun         {
2650*4882a593Smuzhiyun             if (m_pLog)
2651*4882a593Smuzhiyun             {
2652*4882a593Smuzhiyun                 m_pLog->Record(_T("ERROR:RKA_File_Check-->GetFileData failed"));
2653*4882a593Smuzhiyun             }
2654*4882a593Smuzhiyun             delete []pBufferFromFile;
2655*4882a593Smuzhiyun             delete []pBufferFromFlash;
2656*4882a593Smuzhiyun             return false;
2657*4882a593Smuzhiyun         }
2658*4882a593Smuzhiyun         if (bUser)
2659*4882a593Smuzhiyun         {
2660*4882a593Smuzhiyun             if ((pBufferFromFile[0] == 0xEB) && (pBufferFromFile[1] == 0x58) && (pBufferFromFile[2] == 0x90))
2661*4882a593Smuzhiyun             {
2662*4882a593Smuzhiyun                 //fat user image
2663*4882a593Smuzhiyun                 PBYTE pDbr, pCopyDbr;
2664*4882a593Smuzhiyun                 pDbr = pBufferFromFile;
2665*4882a593Smuzhiyun                 pCopyDbr = pBufferFromFile + SECTOR_SIZE * 6;
2666*4882a593Smuzhiyun 
2667*4882a593Smuzhiyun                 (*(UINT *)(pDbr + 32)) = m_uiUserSectors;
2668*4882a593Smuzhiyun                 (*(UINT *)(pCopyDbr + 32)) = m_uiUserSectors;
2669*4882a593Smuzhiyun             }
2670*4882a593Smuzhiyun 
2671*4882a593Smuzhiyun             bUser = false;
2672*4882a593Smuzhiyun         }
2673*4882a593Smuzhiyun 
2674*4882a593Smuzhiyun         if (memcmp(pBufferFromFile, pBufferFromFlash, uiWriteByte) != 0)
2675*4882a593Smuzhiyun         {
2676*4882a593Smuzhiyun             if (m_pLog)
2677*4882a593Smuzhiyun             {
2678*4882a593Smuzhiyun                 m_pLog->Record(_T("ERROR:RKA_File_Check-->Memcmp failed,Read(%d)"), uiEntryOffset);
2679*4882a593Smuzhiyun                 tchar szDateTime[100];
2680*4882a593Smuzhiyun                 tstring strFile;
2681*4882a593Smuzhiyun                 time_t  now;
2682*4882a593Smuzhiyun                 struct tm timeNow;
2683*4882a593Smuzhiyun                 time(&now);
2684*4882a593Smuzhiyun                 localtime_r(&now, &timeNow);
2685*4882a593Smuzhiyun                 _stprintf(szDateTime, _T("%02d-%02d-%02d"), timeNow.tm_hour, timeNow.tm_min, timeNow.tm_sec);
2686*4882a593Smuzhiyun 
2687*4882a593Smuzhiyun                 strFile = szDateTime;
2688*4882a593Smuzhiyun                 strFile += _T("/tmp/file.bin");
2689*4882a593Smuzhiyun                 m_pLog->SaveBuffer(strFile, pBufferFromFile, uiWriteByte);
2690*4882a593Smuzhiyun 
2691*4882a593Smuzhiyun                 strFile = szDateTime;
2692*4882a593Smuzhiyun                 strFile += _T("/tmp/flash.bin");
2693*4882a593Smuzhiyun                 m_pLog->SaveBuffer(strFile, pBufferFromFlash, uiWriteByte);
2694*4882a593Smuzhiyun             }
2695*4882a593Smuzhiyun             delete []pBufferFromFile;
2696*4882a593Smuzhiyun             delete []pBufferFromFlash;
2697*4882a593Smuzhiyun             return false;
2698*4882a593Smuzhiyun         }
2699*4882a593Smuzhiyun         //      if (uiBegin == entry.flash_offset)
2700*4882a593Smuzhiyun         //      {
2701*4882a593Smuzhiyun         //          tstring strFile;
2702*4882a593Smuzhiyun         //          strFile = "/tmp/";
2703*4882a593Smuzhiyun         //          strFile += entry.name;
2704*4882a593Smuzhiyun         //          strFile += ".img";
2705*4882a593Smuzhiyun         //          m_pLog->SaveBuffer( strFile,pBufferFromFlash,uiWriteByte );
2706*4882a593Smuzhiyun         //          m_pLog->Record("%s=%x %x %x %x",entry.name,pBufferFromFlash[0],pBufferFromFlash[1],pBufferFromFlash[2],pBufferFromFlash[3]);
2707*4882a593Smuzhiyun         //      }
2708*4882a593Smuzhiyun 
2709*4882a593Smuzhiyun         currentByte += uiWriteByte;
2710*4882a593Smuzhiyun         uiEntryOffset += uiWriteByte;
2711*4882a593Smuzhiyun         uifileBufferSize -= uiWriteByte;
2712*4882a593Smuzhiyun         uiBegin += uiLen;
2713*4882a593Smuzhiyun     }
2714*4882a593Smuzhiyun 
2715*4882a593Smuzhiyun     delete []pBufferFromFile;
2716*4882a593Smuzhiyun     delete []pBufferFromFlash;
2717*4882a593Smuzhiyun     return true;
2718*4882a593Smuzhiyun }
2719*4882a593Smuzhiyun 
RKA_Param_Download(STRUCT_RKIMAGE_ITEM & entry,long long & currentByte,long long totalByte)2720*4882a593Smuzhiyun bool CRKAndroidDevice::RKA_Param_Download(STRUCT_RKIMAGE_ITEM &entry, long long &currentByte, long long totalByte)
2721*4882a593Smuzhiyun {
2722*4882a593Smuzhiyun     //д5�ݲ����ļ�
2723*4882a593Smuzhiyun     UINT uiLBATransferSize = (LBA_TRANSFER_SIZE_16K) * m_uiLBATimes;
2724*4882a593Smuzhiyun     UINT uiLBASector = uiLBATransferSize / SECTOR_SIZE;
2725*4882a593Smuzhiyun     int  iRet, i;
2726*4882a593Smuzhiyun     BYTE byRWMethod = RWMETHOD_IMAGE;
2727*4882a593Smuzhiyun     if (entry.flash_offset > m_dwBackupOffset)
2728*4882a593Smuzhiyun     {
2729*4882a593Smuzhiyun         byRWMethod = RWMETHOD_LBA;
2730*4882a593Smuzhiyun     }
2731*4882a593Smuzhiyun 
2732*4882a593Smuzhiyun     UINT uiTransfer;
2733*4882a593Smuzhiyun     UINT uiStepSec = entry.part_size / 8;
2734*4882a593Smuzhiyun     //  if (m_pLog)
2735*4882a593Smuzhiyun     //  {
2736*4882a593Smuzhiyun     //      m_pLog->Record(_T("INFO:RKA_Param_Download-->step=%d"),uiStepSec);
2737*4882a593Smuzhiyun     //  }
2738*4882a593Smuzhiyun 
2739*4882a593Smuzhiyun     UINT uiLen, uiWriteByte, uiFileSize;
2740*4882a593Smuzhiyun     UINT uiBegin;
2741*4882a593Smuzhiyun     for (i = 0; i < 8; i++)
2742*4882a593Smuzhiyun     {
2743*4882a593Smuzhiyun         uiFileSize = m_uiParamFileSize;
2744*4882a593Smuzhiyun         uiBegin = entry.flash_offset + uiStepSec * i;
2745*4882a593Smuzhiyun         uiLen = 0;
2746*4882a593Smuzhiyun         uiWriteByte = 0;
2747*4882a593Smuzhiyun         uiTransfer = 0;
2748*4882a593Smuzhiyun         //      if (m_pLog)
2749*4882a593Smuzhiyun         //      {
2750*4882a593Smuzhiyun         //          m_pLog->Record(_T("INFO:RKA_Param_Download-->no %d,offset=%d"),i+1,uiBegin);
2751*4882a593Smuzhiyun         //      }
2752*4882a593Smuzhiyun         while (uiFileSize > 0)
2753*4882a593Smuzhiyun         {
2754*4882a593Smuzhiyun             if (uiFileSize < uiLBATransferSize)
2755*4882a593Smuzhiyun             {
2756*4882a593Smuzhiyun                 uiWriteByte = uiFileSize;
2757*4882a593Smuzhiyun                 uiLen = ((uiWriteByte % 512 == 0) ? (uiWriteByte / 512) : (uiWriteByte / 512 + 1));
2758*4882a593Smuzhiyun             }
2759*4882a593Smuzhiyun             else
2760*4882a593Smuzhiyun             {
2761*4882a593Smuzhiyun                 uiWriteByte = uiLBATransferSize;
2762*4882a593Smuzhiyun                 uiLen = uiLBASector;
2763*4882a593Smuzhiyun             }
2764*4882a593Smuzhiyun             iRet = m_pComm->RKU_WriteLBA(uiBegin, uiLen, m_paramBuffer + uiTransfer, byRWMethod); //ÿ�ζ�Ҫд32����,��page����
2765*4882a593Smuzhiyun             if (iRet != ERR_SUCCESS)
2766*4882a593Smuzhiyun             {
2767*4882a593Smuzhiyun                 if (m_pLog)
2768*4882a593Smuzhiyun                 {
2769*4882a593Smuzhiyun                     m_pLog->Record(_T("ERROR:RKA_Param_Download-->RKU_WriteLBA failed,Written(%d),RetCode(%d)"), uiTransfer, iRet);
2770*4882a593Smuzhiyun                 }
2771*4882a593Smuzhiyun 
2772*4882a593Smuzhiyun                 return false;
2773*4882a593Smuzhiyun             }
2774*4882a593Smuzhiyun 
2775*4882a593Smuzhiyun             uiTransfer += uiWriteByte;
2776*4882a593Smuzhiyun             currentByte += uiWriteByte;
2777*4882a593Smuzhiyun             uiBegin += uiLen;
2778*4882a593Smuzhiyun             uiFileSize -= uiWriteByte;
2779*4882a593Smuzhiyun 
2780*4882a593Smuzhiyun         }
2781*4882a593Smuzhiyun     }
2782*4882a593Smuzhiyun 
2783*4882a593Smuzhiyun     return true;
2784*4882a593Smuzhiyun }
RKA_Param_Check(STRUCT_RKIMAGE_ITEM & entry,long long & currentByte,long long totalByte)2785*4882a593Smuzhiyun bool CRKAndroidDevice::RKA_Param_Check(STRUCT_RKIMAGE_ITEM &entry, long long &currentByte, long long totalByte)
2786*4882a593Smuzhiyun {
2787*4882a593Smuzhiyun     UINT uiLBATransferSize = (LBA_TRANSFER_SIZE_16K) * m_uiLBATimes;
2788*4882a593Smuzhiyun     UINT uiLBASector = uiLBATransferSize / SECTOR_SIZE;
2789*4882a593Smuzhiyun     int iRet, i;
2790*4882a593Smuzhiyun     UINT uiReadBufferSize = uiLBATransferSize;
2791*4882a593Smuzhiyun     BYTE byRWMethod = RWMETHOD_IMAGE;
2792*4882a593Smuzhiyun     if (entry.flash_offset > m_dwBackupOffset)
2793*4882a593Smuzhiyun     {
2794*4882a593Smuzhiyun         byRWMethod = RWMETHOD_LBA;
2795*4882a593Smuzhiyun     }
2796*4882a593Smuzhiyun 
2797*4882a593Smuzhiyun     PBYTE pRead = NULL;
2798*4882a593Smuzhiyun     pRead = new BYTE[uiReadBufferSize];
2799*4882a593Smuzhiyun     if (!pRead)
2800*4882a593Smuzhiyun     {
2801*4882a593Smuzhiyun         if (m_pLog)
2802*4882a593Smuzhiyun         {
2803*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:RKA_Param_Check-->New ReadBuffer failed"));
2804*4882a593Smuzhiyun         }
2805*4882a593Smuzhiyun         return false;
2806*4882a593Smuzhiyun     }
2807*4882a593Smuzhiyun 
2808*4882a593Smuzhiyun     UINT uiTransfer;
2809*4882a593Smuzhiyun     UINT uiStepSec = entry.part_size / 8;
2810*4882a593Smuzhiyun 
2811*4882a593Smuzhiyun     UINT uiLen, uiWriteByte, uiFileSize;
2812*4882a593Smuzhiyun     UINT uiBegin;
2813*4882a593Smuzhiyun     for (i = 0; i < 8; i++)
2814*4882a593Smuzhiyun     {
2815*4882a593Smuzhiyun         uiFileSize = m_uiParamFileSize;
2816*4882a593Smuzhiyun         uiBegin = entry.flash_offset + uiStepSec * i;
2817*4882a593Smuzhiyun         uiLen = 0;
2818*4882a593Smuzhiyun         uiWriteByte = 0;
2819*4882a593Smuzhiyun         uiTransfer = 0;
2820*4882a593Smuzhiyun         //      if (m_pLog)
2821*4882a593Smuzhiyun         //      {
2822*4882a593Smuzhiyun         //          m_pLog->Record(_T("INFO:RKA_Param_Check-->no %d,offset=%d"),i+1,uiBegin);
2823*4882a593Smuzhiyun         //      }
2824*4882a593Smuzhiyun         while (uiFileSize > 0)
2825*4882a593Smuzhiyun         {
2826*4882a593Smuzhiyun             memset(pRead, 0, uiReadBufferSize);
2827*4882a593Smuzhiyun             if (uiFileSize < uiLBATransferSize)
2828*4882a593Smuzhiyun             {
2829*4882a593Smuzhiyun                 uiWriteByte = uiFileSize;
2830*4882a593Smuzhiyun                 uiLen = ((uiWriteByte % 512 == 0) ? (uiWriteByte / 512) : (uiWriteByte / 512 + 1));
2831*4882a593Smuzhiyun             }
2832*4882a593Smuzhiyun             else
2833*4882a593Smuzhiyun             {
2834*4882a593Smuzhiyun                 uiWriteByte = uiLBATransferSize;
2835*4882a593Smuzhiyun                 uiLen = uiLBASector;
2836*4882a593Smuzhiyun             }
2837*4882a593Smuzhiyun             iRet = m_pComm->RKU_ReadLBA(uiBegin, uiLen, pRead, byRWMethod);
2838*4882a593Smuzhiyun             if (iRet != ERR_SUCCESS)
2839*4882a593Smuzhiyun             {
2840*4882a593Smuzhiyun                 if (m_pLog)
2841*4882a593Smuzhiyun                 {
2842*4882a593Smuzhiyun                     m_pLog->Record(_T("ERROR:RKA_Param_Check-->RKU_ReadLBA failed,Read(%d),RetCode(%d)"), uiTransfer, iRet);
2843*4882a593Smuzhiyun                 }
2844*4882a593Smuzhiyun                 delete []pRead;
2845*4882a593Smuzhiyun                 return false;
2846*4882a593Smuzhiyun             }
2847*4882a593Smuzhiyun             if (memcmp(pRead, m_paramBuffer + uiTransfer, uiWriteByte) != 0)
2848*4882a593Smuzhiyun             {
2849*4882a593Smuzhiyun                 if (m_pLog)
2850*4882a593Smuzhiyun                 {
2851*4882a593Smuzhiyun                     m_pLog->Record(_T("ERROR:RKA_Param_Check-->Memcmp failed,Read(%d)"), uiTransfer);
2852*4882a593Smuzhiyun                     tchar szDateTime[100];
2853*4882a593Smuzhiyun                     tstring strFile;
2854*4882a593Smuzhiyun                     time_t  now;
2855*4882a593Smuzhiyun                     struct tm timeNow;
2856*4882a593Smuzhiyun                     time(&now);
2857*4882a593Smuzhiyun                     localtime_r(&now, &timeNow);
2858*4882a593Smuzhiyun                     _stprintf(szDateTime, _T("%02d-%02d-%02d"), timeNow.tm_hour + 1, timeNow.tm_min + 1, timeNow.tm_sec + 1);
2859*4882a593Smuzhiyun 
2860*4882a593Smuzhiyun                     strFile = szDateTime;
2861*4882a593Smuzhiyun                     strFile += _T("/tmp/file.bin");
2862*4882a593Smuzhiyun                     m_pLog->SaveBuffer(strFile, m_paramBuffer + uiTransfer, uiWriteByte);
2863*4882a593Smuzhiyun 
2864*4882a593Smuzhiyun                     strFile = szDateTime;
2865*4882a593Smuzhiyun                     strFile += _T("/tmp/flash.bin");
2866*4882a593Smuzhiyun                     m_pLog->SaveBuffer(strFile, pRead, uiWriteByte);
2867*4882a593Smuzhiyun                 }
2868*4882a593Smuzhiyun 
2869*4882a593Smuzhiyun                 delete []pRead;
2870*4882a593Smuzhiyun                 return false;
2871*4882a593Smuzhiyun 
2872*4882a593Smuzhiyun             }
2873*4882a593Smuzhiyun             //          if (m_pLog)
2874*4882a593Smuzhiyun             //          {
2875*4882a593Smuzhiyun             //              string strSrc,strDst;
2876*4882a593Smuzhiyun             //              if (uiWriteByte>16)
2877*4882a593Smuzhiyun             //              {
2878*4882a593Smuzhiyun             //                  m_pLog->PrintBuffer(strSrc,pRead,16);
2879*4882a593Smuzhiyun             //                  m_pLog->PrintBuffer(strDst,m_paramBuffer+uiTransfer,16);
2880*4882a593Smuzhiyun             //              }
2881*4882a593Smuzhiyun             //              else
2882*4882a593Smuzhiyun             //              {
2883*4882a593Smuzhiyun             //                  m_pLog->PrintBuffer(strSrc,pRead,uiWriteByte);
2884*4882a593Smuzhiyun             //                  m_pLog->PrintBuffer(strDst,m_paramBuffer+uiTransfer,uiWriteByte);
2885*4882a593Smuzhiyun             //              }
2886*4882a593Smuzhiyun             //              m_pLog->Record("Read:%s",strSrc.c_str());
2887*4882a593Smuzhiyun             //              m_pLog->Record("Compare:%s",strDst.c_str());
2888*4882a593Smuzhiyun             //          }
2889*4882a593Smuzhiyun             uiTransfer += uiWriteByte;
2890*4882a593Smuzhiyun             currentByte += uiWriteByte;
2891*4882a593Smuzhiyun             uiBegin += uiLen;
2892*4882a593Smuzhiyun             uiFileSize -= uiWriteByte;
2893*4882a593Smuzhiyun 
2894*4882a593Smuzhiyun         }
2895*4882a593Smuzhiyun     }
2896*4882a593Smuzhiyun 
2897*4882a593Smuzhiyun     delete []pRead;
2898*4882a593Smuzhiyun     return true;
2899*4882a593Smuzhiyun }
2900*4882a593Smuzhiyun 
RKA_Gpt_Download(STRUCT_RKIMAGE_ITEM & entry,long long & currentByte,long long totalByte)2901*4882a593Smuzhiyun bool CRKAndroidDevice::RKA_Gpt_Download(STRUCT_RKIMAGE_ITEM &entry, long long &currentByte, long long totalByte)
2902*4882a593Smuzhiyun {
2903*4882a593Smuzhiyun     UINT uiLBATransferSize = (LBA_TRANSFER_SIZE_16K) * m_uiLBATimes;
2904*4882a593Smuzhiyun     UINT uiLBALoopLimit = (LBA_LOOP_SIZE) / uiLBATransferSize;
2905*4882a593Smuzhiyun     UINT uiLBASector = uiLBATransferSize / SECTOR_SIZE;
2906*4882a593Smuzhiyun     int  iRet;
2907*4882a593Smuzhiyun     bool bRet;
2908*4882a593Smuzhiyun     PARAM_ITEM_VECTOR vecItems;
2909*4882a593Smuzhiyun     CONFIG_ITEM_VECTOR vecUuids;
2910*4882a593Smuzhiyun     BYTE byRWMethod = RWMETHOD_IMAGE;
2911*4882a593Smuzhiyun     BYTE *backup_gpt;
2912*4882a593Smuzhiyun 
2913*4882a593Smuzhiyun     if (!m_gptBuffer)
2914*4882a593Smuzhiyun     {
2915*4882a593Smuzhiyun         m_gptBuffer = new BYTE[SECTOR_SIZE * 67];
2916*4882a593Smuzhiyun         if (!m_gptBuffer)
2917*4882a593Smuzhiyun         {
2918*4882a593Smuzhiyun             if (m_pLog)
2919*4882a593Smuzhiyun             {
2920*4882a593Smuzhiyun                 m_pLog->Record(_T("ERROR:RKA_Gpt_Download-->new memory failed,err=%d)"), errno);
2921*4882a593Smuzhiyun             }
2922*4882a593Smuzhiyun             return false;
2923*4882a593Smuzhiyun         }
2924*4882a593Smuzhiyun     }
2925*4882a593Smuzhiyun     memset(m_gptBuffer, 0, SECTOR_SIZE * 67);
2926*4882a593Smuzhiyun     bRet = parse_parameter((char *)(m_paramBuffer + 8), vecItems);
2927*4882a593Smuzhiyun     if (!bRet)
2928*4882a593Smuzhiyun     {
2929*4882a593Smuzhiyun         if (m_pLog)
2930*4882a593Smuzhiyun         {
2931*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:RKA_Gpt_Download-->parse_parameter failed)"));
2932*4882a593Smuzhiyun         }
2933*4882a593Smuzhiyun         return false;
2934*4882a593Smuzhiyun     }
2935*4882a593Smuzhiyun     bRet = get_uuid_from_parameter((char *)(m_paramBuffer + 8), vecUuids);
2936*4882a593Smuzhiyun     backup_gpt = m_gptBuffer + 34 * SECTOR_SIZE;
2937*4882a593Smuzhiyun 
2938*4882a593Smuzhiyun     //create_gpt_buffer(m_gptBuffer,vecItems,vecUuids,m_flashInfo.uiFlashSize*2048);
2939*4882a593Smuzhiyun     create_gpt_buffer(m_gptBuffer, vecItems, vecUuids, m_flashInfo.uiBlockNum);
2940*4882a593Smuzhiyun     memcpy(backup_gpt, m_gptBuffer + 2 * SECTOR_SIZE, 32 * SECTOR_SIZE);
2941*4882a593Smuzhiyun     memcpy(backup_gpt + 32 * SECTOR_SIZE, m_gptBuffer + SECTOR_SIZE, SECTOR_SIZE);
2942*4882a593Smuzhiyun     prepare_gpt_backup(m_paramBuffer, backup_gpt);
2943*4882a593Smuzhiyun 
2944*4882a593Smuzhiyun     iRet = m_pComm->RKU_WriteLBA(0, 34, m_gptBuffer);
2945*4882a593Smuzhiyun     if (iRet != ERR_SUCCESS)
2946*4882a593Smuzhiyun     {
2947*4882a593Smuzhiyun         if (m_pLog)
2948*4882a593Smuzhiyun         {
2949*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:RKA_Gpt_Download-->write gpt master failed,RetCode(%d)"), iRet);
2950*4882a593Smuzhiyun         }
2951*4882a593Smuzhiyun         return false;
2952*4882a593Smuzhiyun     }
2953*4882a593Smuzhiyun 
2954*4882a593Smuzhiyun     DWORD dwPos;
2955*4882a593Smuzhiyun     //dwPos = m_flashInfo.uiFlashSize*2048-33;
2956*4882a593Smuzhiyun     dwPos = m_flashInfo.uiBlockNum - 33;
2957*4882a593Smuzhiyun     iRet = m_pComm->RKU_WriteLBA(dwPos, 33, backup_gpt);
2958*4882a593Smuzhiyun     if (iRet != ERR_SUCCESS)
2959*4882a593Smuzhiyun     {
2960*4882a593Smuzhiyun         if (m_pLog)
2961*4882a593Smuzhiyun         {
2962*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:RKA_Gpt_Download-->write gpt backup failed,RetCode(%d)"), iRet);
2963*4882a593Smuzhiyun         }
2964*4882a593Smuzhiyun         return false;
2965*4882a593Smuzhiyun     }
2966*4882a593Smuzhiyun     currentByte += (SECTOR_SIZE * 67);
2967*4882a593Smuzhiyun 
2968*4882a593Smuzhiyun     return true;
2969*4882a593Smuzhiyun }
RKA_Gpt_Check(STRUCT_RKIMAGE_ITEM & entry,long long & currentByte,long long totalByte)2970*4882a593Smuzhiyun bool CRKAndroidDevice::RKA_Gpt_Check(STRUCT_RKIMAGE_ITEM &entry, long long &currentByte, long long totalByte)
2971*4882a593Smuzhiyun {
2972*4882a593Smuzhiyun     UINT uiLBATransferSize = (LBA_TRANSFER_SIZE_16K) * m_uiLBATimes;
2973*4882a593Smuzhiyun     UINT uiLBALoopLimit = (LBA_LOOP_SIZE) / uiLBATransferSize;
2974*4882a593Smuzhiyun     UINT uiLBASector = uiLBATransferSize / SECTOR_SIZE;
2975*4882a593Smuzhiyun     int iRet;
2976*4882a593Smuzhiyun     BYTE byRWMethod = RWMETHOD_IMAGE;
2977*4882a593Smuzhiyun 
2978*4882a593Smuzhiyun     PBYTE pRead = NULL;
2979*4882a593Smuzhiyun     pRead = new BYTE[34 * SECTOR_SIZE];
2980*4882a593Smuzhiyun     if (!pRead)
2981*4882a593Smuzhiyun     {
2982*4882a593Smuzhiyun         if (m_pLog)
2983*4882a593Smuzhiyun         {
2984*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:RKA_Gpt_Check-->New ReadBuffer failed,err=%d"), errno);
2985*4882a593Smuzhiyun         }
2986*4882a593Smuzhiyun         return false;
2987*4882a593Smuzhiyun     }
2988*4882a593Smuzhiyun     iRet = m_pComm->RKU_ReadLBA(0, 34, pRead);
2989*4882a593Smuzhiyun     if (iRet != ERR_SUCCESS)
2990*4882a593Smuzhiyun     {
2991*4882a593Smuzhiyun         if (m_pLog)
2992*4882a593Smuzhiyun         {
2993*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:RKA_Gpt_Download-->read gpt master failed,RetCode(%d)"), iRet);
2994*4882a593Smuzhiyun         }
2995*4882a593Smuzhiyun         delete []pRead;
2996*4882a593Smuzhiyun         return false;
2997*4882a593Smuzhiyun     }
2998*4882a593Smuzhiyun     if (memcmp(m_gptBuffer, pRead, 34 * SECTOR_SIZE) != 0)
2999*4882a593Smuzhiyun     {
3000*4882a593Smuzhiyun         if (m_pLog)
3001*4882a593Smuzhiyun         {
3002*4882a593Smuzhiyun             if (m_pLog)
3003*4882a593Smuzhiyun             {
3004*4882a593Smuzhiyun                 m_pLog->Record(_T("ERROR:RKA_Gpt_Download-->compare gpt master failed"));
3005*4882a593Smuzhiyun             }
3006*4882a593Smuzhiyun             tchar szDateTime[100];
3007*4882a593Smuzhiyun             tstring strFile;
3008*4882a593Smuzhiyun             time_t  now;
3009*4882a593Smuzhiyun             struct tm timeNow;
3010*4882a593Smuzhiyun             time(&now);
3011*4882a593Smuzhiyun             localtime_r(&now, &timeNow);
3012*4882a593Smuzhiyun             _stprintf(szDateTime, _T("%02d-%02d-%02d"), timeNow.tm_hour + 1, timeNow.tm_min + 1, timeNow.tm_sec + 1);
3013*4882a593Smuzhiyun             strFile = m_pLog->LogSavePath;
3014*4882a593Smuzhiyun             strFile += szDateTime;
3015*4882a593Smuzhiyun             strFile += _T("file.bin");
3016*4882a593Smuzhiyun             m_pLog->SaveBuffer(strFile, m_gptBuffer, 34 * SECTOR_SIZE);
3017*4882a593Smuzhiyun             strFile = m_pLog->LogSavePath;
3018*4882a593Smuzhiyun             strFile += szDateTime;
3019*4882a593Smuzhiyun             strFile += _T("flash.bin");
3020*4882a593Smuzhiyun             m_pLog->SaveBuffer(strFile, pRead, 34 * SECTOR_SIZE);
3021*4882a593Smuzhiyun         }
3022*4882a593Smuzhiyun         delete []pRead;
3023*4882a593Smuzhiyun         return false;
3024*4882a593Smuzhiyun     }
3025*4882a593Smuzhiyun 
3026*4882a593Smuzhiyun     iRet = m_pComm->RKU_ReadLBA(m_flashInfo.uiBlockNum - 33, 33, pRead);
3027*4882a593Smuzhiyun     //iRet = m_pComm->RKU_ReadLBA(m_flashInfo.uiFlashSize*2048-33,33,pRead);
3028*4882a593Smuzhiyun     if (iRet != ERR_SUCCESS)
3029*4882a593Smuzhiyun     {
3030*4882a593Smuzhiyun         if (m_pLog)
3031*4882a593Smuzhiyun         {
3032*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:RKA_Gpt_Download-->read gpt backup failed,RetCode(%d)"), iRet);
3033*4882a593Smuzhiyun         }
3034*4882a593Smuzhiyun         delete []pRead;
3035*4882a593Smuzhiyun         return false;
3036*4882a593Smuzhiyun     }
3037*4882a593Smuzhiyun     if (memcmp(m_gptBuffer + 34 * SECTOR_SIZE, pRead, 33 * SECTOR_SIZE) != 0)
3038*4882a593Smuzhiyun     {
3039*4882a593Smuzhiyun         if (m_pLog)
3040*4882a593Smuzhiyun         {
3041*4882a593Smuzhiyun             if (m_pLog)
3042*4882a593Smuzhiyun             {
3043*4882a593Smuzhiyun                 m_pLog->Record(_T("ERROR:RKA_Gpt_Download-->compare gpt backup failed"));
3044*4882a593Smuzhiyun             }
3045*4882a593Smuzhiyun             tchar szDateTime[100];
3046*4882a593Smuzhiyun             tstring strFile;
3047*4882a593Smuzhiyun             time_t  now;
3048*4882a593Smuzhiyun             struct tm timeNow;
3049*4882a593Smuzhiyun             time(&now);
3050*4882a593Smuzhiyun             localtime_r(&now, &timeNow);
3051*4882a593Smuzhiyun             _stprintf(szDateTime, _T("%02d-%02d-%02d"), timeNow.tm_hour + 1, timeNow.tm_min + 1, timeNow.tm_sec + 1);
3052*4882a593Smuzhiyun             strFile = m_pLog->LogSavePath;
3053*4882a593Smuzhiyun             strFile += szDateTime;
3054*4882a593Smuzhiyun             strFile += _T("file.bin");
3055*4882a593Smuzhiyun             m_pLog->SaveBuffer(strFile, m_gptBuffer + 34 * SECTOR_SIZE, 33 * SECTOR_SIZE);
3056*4882a593Smuzhiyun             strFile = m_pLog->LogSavePath;
3057*4882a593Smuzhiyun             strFile += szDateTime;
3058*4882a593Smuzhiyun             strFile += _T("flash.bin");
3059*4882a593Smuzhiyun             m_pLog->SaveBuffer(strFile, pRead, 33 * SECTOR_SIZE);
3060*4882a593Smuzhiyun         }
3061*4882a593Smuzhiyun         delete []pRead;
3062*4882a593Smuzhiyun         return false;
3063*4882a593Smuzhiyun     }
3064*4882a593Smuzhiyun     currentByte += (SECTOR_SIZE * 67);
3065*4882a593Smuzhiyun 
3066*4882a593Smuzhiyun     delete []pRead;
3067*4882a593Smuzhiyun     return true;
3068*4882a593Smuzhiyun }
3069*4882a593Smuzhiyun 
MakeParamFileBuffer(STRUCT_RKIMAGE_ITEM & entry)3070*4882a593Smuzhiyun bool CRKAndroidDevice::MakeParamFileBuffer(STRUCT_RKIMAGE_ITEM &entry)
3071*4882a593Smuzhiyun {
3072*4882a593Smuzhiyun     bool bRet;
3073*4882a593Smuzhiyun     UINT uiFileBufferSize;
3074*4882a593Smuzhiyun     long long dwFWOffset;
3075*4882a593Smuzhiyun 
3076*4882a593Smuzhiyun     dwFWOffset = m_pImage->FWOffset;
3077*4882a593Smuzhiyun     uiFileBufferSize = 2 * entry.size;
3078*4882a593Smuzhiyun     m_uiParamFileSize = entry.size;
3079*4882a593Smuzhiyun     PBYTE pBuffer = NULL;
3080*4882a593Smuzhiyun     pBuffer = new BYTE[uiFileBufferSize];
3081*4882a593Smuzhiyun     if (!pBuffer)
3082*4882a593Smuzhiyun     {
3083*4882a593Smuzhiyun         if (m_pLog)
3084*4882a593Smuzhiyun         {
3085*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:MakeParamFileBuffer-->New memory failed"));
3086*4882a593Smuzhiyun         }
3087*4882a593Smuzhiyun         return false;
3088*4882a593Smuzhiyun     }
3089*4882a593Smuzhiyun     memset(pBuffer, 0, uiFileBufferSize);
3090*4882a593Smuzhiyun     bRet = m_pImage->GetData(dwFWOffset + entry.offset, entry.size, pBuffer);
3091*4882a593Smuzhiyun     if (!bRet)
3092*4882a593Smuzhiyun     {
3093*4882a593Smuzhiyun         if (m_pLog)
3094*4882a593Smuzhiyun         {
3095*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:MakeParamFileBuffer-->GetFileData failed"));
3096*4882a593Smuzhiyun         }
3097*4882a593Smuzhiyun         delete[] pBuffer;
3098*4882a593Smuzhiyun         pBuffer = NULL;
3099*4882a593Smuzhiyun         return false;
3100*4882a593Smuzhiyun     }
3101*4882a593Smuzhiyun     //�ж��Ƿ�Ҫ�޸�Paramter�ļ�����,�ֻ�������Ҫ��paramter�ļ��е�partition�������ݸij����ֽ�Ϊ��λ����ƫ��
3102*4882a593Smuzhiyun 
3103*4882a593Smuzhiyun     UINT uiParamSec;
3104*4882a593Smuzhiyun     if (m_uiParamFileSize % 512 == 0)
3105*4882a593Smuzhiyun     {
3106*4882a593Smuzhiyun         uiParamSec = m_uiParamFileSize / 512;
3107*4882a593Smuzhiyun     }
3108*4882a593Smuzhiyun     else
3109*4882a593Smuzhiyun     {
3110*4882a593Smuzhiyun         uiParamSec = (m_uiParamFileSize + 512) / 512;
3111*4882a593Smuzhiyun     }
3112*4882a593Smuzhiyun 
3113*4882a593Smuzhiyun     if (m_paramBuffer)
3114*4882a593Smuzhiyun     {
3115*4882a593Smuzhiyun         delete []m_paramBuffer;
3116*4882a593Smuzhiyun         m_paramBuffer = NULL;
3117*4882a593Smuzhiyun     }
3118*4882a593Smuzhiyun     m_paramBuffer = new BYTE[uiParamSec * 512];
3119*4882a593Smuzhiyun     if (!m_paramBuffer)
3120*4882a593Smuzhiyun     {
3121*4882a593Smuzhiyun         if (m_pLog)
3122*4882a593Smuzhiyun         {
3123*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:MakeParamFileBuffer-->new memory failed"));
3124*4882a593Smuzhiyun         }
3125*4882a593Smuzhiyun         delete []pBuffer;
3126*4882a593Smuzhiyun         return false;
3127*4882a593Smuzhiyun     }
3128*4882a593Smuzhiyun     memset(m_paramBuffer, 0, uiParamSec * 512);
3129*4882a593Smuzhiyun     memcpy(m_paramBuffer, pBuffer, m_uiParamFileSize);
3130*4882a593Smuzhiyun     delete []pBuffer;
3131*4882a593Smuzhiyun     return true;
3132*4882a593Smuzhiyun }
CheckParamPartSize(STRUCT_RKIMAGE_HDR & rkImageHead,int iParamPos)3133*4882a593Smuzhiyun bool CRKAndroidDevice::CheckParamPartSize(STRUCT_RKIMAGE_HDR &rkImageHead, int iParamPos)
3134*4882a593Smuzhiyun {
3135*4882a593Smuzhiyun     //  UINT uiParamPartSize;
3136*4882a593Smuzhiyun     //  int i;
3137*4882a593Smuzhiyun     //  uiParamPartSize = 0xFFFFFFFF;
3138*4882a593Smuzhiyun     //  for (i=0;i<rkImageHead.item_count;i++)
3139*4882a593Smuzhiyun     //  {
3140*4882a593Smuzhiyun     //      if (i!=iParamPos)
3141*4882a593Smuzhiyun     //      {
3142*4882a593Smuzhiyun     //          if (rkImageHead.item[i].flash_offset<uiParamPartSize)
3143*4882a593Smuzhiyun     //          {
3144*4882a593Smuzhiyun     //              uiParamPartSize = rkImageHead.item[i].flash_offset;
3145*4882a593Smuzhiyun     //          }
3146*4882a593Smuzhiyun     //      }
3147*4882a593Smuzhiyun     //  }
3148*4882a593Smuzhiyun     if (!GetParameterPartSize(rkImageHead.item[iParamPos]))
3149*4882a593Smuzhiyun     {
3150*4882a593Smuzhiyun         return false;
3151*4882a593Smuzhiyun     }
3152*4882a593Smuzhiyun     if (m_uiParamFileSize > rkImageHead.item[iParamPos].part_size / 8 * 512) //�Ƿ�������8��
3153*4882a593Smuzhiyun     {
3154*4882a593Smuzhiyun         return false;
3155*4882a593Smuzhiyun     }
3156*4882a593Smuzhiyun 
3157*4882a593Smuzhiyun     return true;
3158*4882a593Smuzhiyun }
IsExistSector3Crc(PRKANDROID_IDB_SEC2 pSec)3159*4882a593Smuzhiyun bool CRKAndroidDevice::IsExistSector3Crc(PRKANDROID_IDB_SEC2 pSec)
3160*4882a593Smuzhiyun {
3161*4882a593Smuzhiyun     if (!pSec)
3162*4882a593Smuzhiyun     {
3163*4882a593Smuzhiyun         return false;
3164*4882a593Smuzhiyun     }
3165*4882a593Smuzhiyun 
3166*4882a593Smuzhiyun     if (strcmp(pSec->szCrcTag, "CRC") == 0)
3167*4882a593Smuzhiyun     {
3168*4882a593Smuzhiyun         m_bExistSector3Crc = true;
3169*4882a593Smuzhiyun         m_usSector3Crc = pSec->usSec3Crc;
3170*4882a593Smuzhiyun     }
3171*4882a593Smuzhiyun     return true;
3172*4882a593Smuzhiyun }
ParsePartitionInfo(string & strPartInfo,string & strName,UINT & uiOffset,UINT & uiLen)3173*4882a593Smuzhiyun bool CRKAndroidDevice::ParsePartitionInfo(string &strPartInfo, string &strName, UINT &uiOffset, UINT &uiLen)
3174*4882a593Smuzhiyun {
3175*4882a593Smuzhiyun     string::size_type pos, prevPos;
3176*4882a593Smuzhiyun     string strOffset, strLen;
3177*4882a593Smuzhiyun     int iCount;
3178*4882a593Smuzhiyun     prevPos = pos = 0;
3179*4882a593Smuzhiyun     if (strPartInfo.size() <= 0)
3180*4882a593Smuzhiyun     {
3181*4882a593Smuzhiyun         return false;
3182*4882a593Smuzhiyun     }
3183*4882a593Smuzhiyun     pos = strPartInfo.find('@');
3184*4882a593Smuzhiyun     if (pos == string::npos)
3185*4882a593Smuzhiyun     {
3186*4882a593Smuzhiyun         return false;
3187*4882a593Smuzhiyun     }
3188*4882a593Smuzhiyun     strLen = strPartInfo.substr(prevPos, pos - prevPos);
3189*4882a593Smuzhiyun     strLen.erase(0, strLen.find_first_not_of(" "));
3190*4882a593Smuzhiyun     strLen.erase(strLen.find_last_not_of(" ") + 1);
3191*4882a593Smuzhiyun     if (strchr(strLen.c_str(), '-'))
3192*4882a593Smuzhiyun     {
3193*4882a593Smuzhiyun         uiLen = 0xFFFFFFFF;
3194*4882a593Smuzhiyun     }
3195*4882a593Smuzhiyun     else
3196*4882a593Smuzhiyun     {
3197*4882a593Smuzhiyun         iCount = sscanf(strLen.c_str(), "0x%x", &uiLen);
3198*4882a593Smuzhiyun         if (iCount != 1)
3199*4882a593Smuzhiyun         {
3200*4882a593Smuzhiyun             return false;
3201*4882a593Smuzhiyun         }
3202*4882a593Smuzhiyun     }
3203*4882a593Smuzhiyun 
3204*4882a593Smuzhiyun     prevPos = pos + 1;
3205*4882a593Smuzhiyun     pos = strPartInfo.find('(', prevPos);
3206*4882a593Smuzhiyun     if (pos == string::npos)
3207*4882a593Smuzhiyun     {
3208*4882a593Smuzhiyun         return false;
3209*4882a593Smuzhiyun     }
3210*4882a593Smuzhiyun     strOffset = strPartInfo.substr(prevPos, pos - prevPos);
3211*4882a593Smuzhiyun     strOffset.erase(0, strOffset.find_first_not_of(" "));
3212*4882a593Smuzhiyun     strOffset.erase(strOffset.find_last_not_of(" ") + 1);
3213*4882a593Smuzhiyun     iCount = sscanf(strOffset.c_str(), "0x%x", &uiOffset);
3214*4882a593Smuzhiyun     if (iCount != 1)
3215*4882a593Smuzhiyun     {
3216*4882a593Smuzhiyun         return false;
3217*4882a593Smuzhiyun     }
3218*4882a593Smuzhiyun 
3219*4882a593Smuzhiyun     prevPos = pos + 1;
3220*4882a593Smuzhiyun     pos = strPartInfo.find(')', prevPos);
3221*4882a593Smuzhiyun     if (pos == string::npos)
3222*4882a593Smuzhiyun     {
3223*4882a593Smuzhiyun         return false;
3224*4882a593Smuzhiyun     }
3225*4882a593Smuzhiyun     strName = strPartInfo.substr(prevPos, pos - prevPos);
3226*4882a593Smuzhiyun     strName.erase(0, strName.find_first_not_of(" "));
3227*4882a593Smuzhiyun     strName.erase(strName.find_last_not_of(" ") + 1);
3228*4882a593Smuzhiyun 
3229*4882a593Smuzhiyun     return true;
3230*4882a593Smuzhiyun }
GetParameterPartSize(STRUCT_RKIMAGE_ITEM & paramItem)3231*4882a593Smuzhiyun bool CRKAndroidDevice::GetParameterPartSize(STRUCT_RKIMAGE_ITEM &paramItem)
3232*4882a593Smuzhiyun {
3233*4882a593Smuzhiyun     PBYTE pParamBuf = NULL;
3234*4882a593Smuzhiyun     pParamBuf = new BYTE[paramItem.size - 12 + 1];
3235*4882a593Smuzhiyun     if (!pParamBuf)
3236*4882a593Smuzhiyun     {
3237*4882a593Smuzhiyun         return false;
3238*4882a593Smuzhiyun     }
3239*4882a593Smuzhiyun     memset(pParamBuf, 0, paramItem.size - 12 + 1);
3240*4882a593Smuzhiyun     bool bRet;
3241*4882a593Smuzhiyun     bRet = m_pImage->GetData(m_pImage->FWOffset + paramItem.offset + 8, paramItem.size - 12, pParamBuf);
3242*4882a593Smuzhiyun     if (!bRet)
3243*4882a593Smuzhiyun     {
3244*4882a593Smuzhiyun         delete []pParamBuf;
3245*4882a593Smuzhiyun         return false;
3246*4882a593Smuzhiyun     }
3247*4882a593Smuzhiyun     string strParamFile = (char *)pParamBuf;
3248*4882a593Smuzhiyun     stringstream paramStream(strParamFile);
3249*4882a593Smuzhiyun     delete []pParamBuf;
3250*4882a593Smuzhiyun 
3251*4882a593Smuzhiyun     string strLine, strPartition, strPartInfo, strPartName;
3252*4882a593Smuzhiyun     string::size_type line_size, pos, posColon, posComma;
3253*4882a593Smuzhiyun     UINT uiPartOffset, uiPartSize;
3254*4882a593Smuzhiyun     while (!paramStream.eof())
3255*4882a593Smuzhiyun     {
3256*4882a593Smuzhiyun         getline(paramStream, strLine);
3257*4882a593Smuzhiyun         line_size = strLine.size();
3258*4882a593Smuzhiyun         if (line_size <= 0)
3259*4882a593Smuzhiyun         {
3260*4882a593Smuzhiyun             continue;
3261*4882a593Smuzhiyun         }
3262*4882a593Smuzhiyun         if (strLine[line_size - 1] == '\r')
3263*4882a593Smuzhiyun         {
3264*4882a593Smuzhiyun             strLine = strLine.substr(0, line_size - 1);
3265*4882a593Smuzhiyun         }
3266*4882a593Smuzhiyun         if (strLine.size() <= 0)
3267*4882a593Smuzhiyun         {
3268*4882a593Smuzhiyun             continue;
3269*4882a593Smuzhiyun         }
3270*4882a593Smuzhiyun         if (strLine[0] == '#')
3271*4882a593Smuzhiyun         {
3272*4882a593Smuzhiyun             continue;
3273*4882a593Smuzhiyun         }
3274*4882a593Smuzhiyun         pos = strLine.find("mtdparts");
3275*4882a593Smuzhiyun         if (pos == string::npos)
3276*4882a593Smuzhiyun         {
3277*4882a593Smuzhiyun             continue;
3278*4882a593Smuzhiyun         }
3279*4882a593Smuzhiyun         posColon = strLine.find(':', pos);
3280*4882a593Smuzhiyun         if (posColon == string::npos)
3281*4882a593Smuzhiyun         {
3282*4882a593Smuzhiyun             continue;
3283*4882a593Smuzhiyun         }
3284*4882a593Smuzhiyun         strPartition = strLine.substr(posColon + 1);
3285*4882a593Smuzhiyun         //��ȡ������Ϣ
3286*4882a593Smuzhiyun         pos = 0;
3287*4882a593Smuzhiyun         posComma = strPartition.find(',', pos);
3288*4882a593Smuzhiyun         while (posComma != string::npos)
3289*4882a593Smuzhiyun         {
3290*4882a593Smuzhiyun             strPartInfo = strPartition.substr(pos, posComma - pos);
3291*4882a593Smuzhiyun             bRet = ParsePartitionInfo(strPartInfo, strPartName, uiPartOffset, uiPartSize);
3292*4882a593Smuzhiyun             if (!bRet)
3293*4882a593Smuzhiyun             {
3294*4882a593Smuzhiyun                 if (m_pLog)
3295*4882a593Smuzhiyun                 {
3296*4882a593Smuzhiyun                     m_pLog->Record(_T("ERROR:GetParameterPartSize-->ParsePartitionInfo failed"));
3297*4882a593Smuzhiyun                 }
3298*4882a593Smuzhiyun                 return false;
3299*4882a593Smuzhiyun             }
3300*4882a593Smuzhiyun             paramItem.part_size = uiPartOffset;
3301*4882a593Smuzhiyun             return true;
3302*4882a593Smuzhiyun         }
3303*4882a593Smuzhiyun     }
3304*4882a593Smuzhiyun     return false;
3305*4882a593Smuzhiyun }
3306*4882a593Smuzhiyun 
GetPublicKey(unsigned char * pKey,unsigned int & nKeySize)3307*4882a593Smuzhiyun bool CRKAndroidDevice::GetPublicKey(unsigned char *pKey, unsigned int &nKeySize)
3308*4882a593Smuzhiyun {
3309*4882a593Smuzhiyun     int i, j, iRet, nRsaByte;
3310*4882a593Smuzhiyun     bool bRet;
3311*4882a593Smuzhiyun     BYTE bData[SECTOR_SIZE * 8];
3312*4882a593Smuzhiyun     PRKANDROID_IDB_SEC0 pSec0 = (PRKANDROID_IDB_SEC0)bData;
3313*4882a593Smuzhiyun     PRK_SECURE_HEADER pSecureHdr = (PRK_SECURE_HEADER)(bData + SECTOR_SIZE * 4);
3314*4882a593Smuzhiyun     string strOutput;
3315*4882a593Smuzhiyun     bRet = GetFlashInfo();
3316*4882a593Smuzhiyun     if (!bRet)
3317*4882a593Smuzhiyun     {
3318*4882a593Smuzhiyun         if (m_pLog)
3319*4882a593Smuzhiyun         {
3320*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:GetPublicKey-->GetFlashInfo failed"));
3321*4882a593Smuzhiyun         }
3322*4882a593Smuzhiyun         return false;
3323*4882a593Smuzhiyun     }
3324*4882a593Smuzhiyun     if (!BuildBlockStateMap(0))
3325*4882a593Smuzhiyun     {
3326*4882a593Smuzhiyun         if (m_pLog)
3327*4882a593Smuzhiyun         {
3328*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:GetPublicKey-->BuildBlockStateMap failed"));
3329*4882a593Smuzhiyun         }
3330*4882a593Smuzhiyun         return false;
3331*4882a593Smuzhiyun     }
3332*4882a593Smuzhiyun 
3333*4882a593Smuzhiyun     FindAllIDB();
3334*4882a593Smuzhiyun     //  sleep(1);
3335*4882a593Smuzhiyun     //  if (m_pLog)
3336*4882a593Smuzhiyun     //  {
3337*4882a593Smuzhiyun     //      m_pLog->Record(_T("INFO:GetPublicKey-->IDblock count=%d."),m_oldIDBCounts);
3338*4882a593Smuzhiyun     //  }
3339*4882a593Smuzhiyun     if (m_oldIDBCounts <= 0)
3340*4882a593Smuzhiyun     {
3341*4882a593Smuzhiyun         if (m_pLog)
3342*4882a593Smuzhiyun         {
3343*4882a593Smuzhiyun             m_pLog->Record(_T("ERROR:GetPublicKey-->IDblock count=%d."), m_oldIDBCounts);
3344*4882a593Smuzhiyun         }
3345*4882a593Smuzhiyun         return false;
3346*4882a593Smuzhiyun     }
3347*4882a593Smuzhiyun     for (i = 0; i < m_oldIDBCounts; i++)
3348*4882a593Smuzhiyun     {
3349*4882a593Smuzhiyun         iRet = m_pComm->RKU_ReadSector(m_idBlockOffset[i] * m_flashInfo.uiSectorPerBlock, 8, bData);
3350*4882a593Smuzhiyun         //      sleep(1);
3351*4882a593Smuzhiyun         if (iRet != ERR_SUCCESS)
3352*4882a593Smuzhiyun         {
3353*4882a593Smuzhiyun             if (m_pLog)
3354*4882a593Smuzhiyun             {
3355*4882a593Smuzhiyun                 m_pLog->Record(_T("ERROR:GetPublicKey-->RKU_ReadSector failed,RetCode(%d)"), iRet);
3356*4882a593Smuzhiyun             }
3357*4882a593Smuzhiyun             return false;
3358*4882a593Smuzhiyun         }
3359*4882a593Smuzhiyun 
3360*4882a593Smuzhiyun         P_RC4(bData, SECTOR_SIZE);
3361*4882a593Smuzhiyun 
3362*4882a593Smuzhiyun         if (pSec0->uiRc4Flag == 0)
3363*4882a593Smuzhiyun         {
3364*4882a593Smuzhiyun             //          if (m_pLog)
3365*4882a593Smuzhiyun             //          {
3366*4882a593Smuzhiyun             //              m_pLog->PrintBuffer(strOutput,bData+4*512,512,16);
3367*4882a593Smuzhiyun             //              m_pLog->Record("INFO:secure header\n%s",strOutput.c_str());
3368*4882a593Smuzhiyun             //          }
3369*4882a593Smuzhiyun             for (j = 0; j < 4; j++)
3370*4882a593Smuzhiyun             {
3371*4882a593Smuzhiyun                 P_RC4(bData + SECTOR_SIZE * (j + 4), SECTOR_SIZE);
3372*4882a593Smuzhiyun             }
3373*4882a593Smuzhiyun             //          if (m_pLog)
3374*4882a593Smuzhiyun             //          {
3375*4882a593Smuzhiyun             //              m_pLog->PrintBuffer(strOutput,bData+4*512,512,16);
3376*4882a593Smuzhiyun             //              m_pLog->Record("INFO:secure header rc4\n%s",strOutput.c_str());
3377*4882a593Smuzhiyun             //          }
3378*4882a593Smuzhiyun         }
3379*4882a593Smuzhiyun         //      if (m_pLog)
3380*4882a593Smuzhiyun         //      {
3381*4882a593Smuzhiyun         //          m_pLog->Record("INFO:secure header tag=0x%x",pSecureHdr->uiTag);
3382*4882a593Smuzhiyun         //      }
3383*4882a593Smuzhiyun         if (pSecureHdr->uiTag == 0x4B415352)
3384*4882a593Smuzhiyun         {
3385*4882a593Smuzhiyun             nRsaByte = pSecureHdr->usRsaBit / 8;
3386*4882a593Smuzhiyun             *((USHORT *)pKey) = pSecureHdr->usRsaBit;
3387*4882a593Smuzhiyun             for (j = 0; j < nRsaByte; j++)
3388*4882a593Smuzhiyun             {
3389*4882a593Smuzhiyun                 *(pKey + j + 2) = pSecureHdr->nFactor[nRsaByte - j - 1];
3390*4882a593Smuzhiyun             }
3391*4882a593Smuzhiyun             for (j = 0; j < nRsaByte; j++)
3392*4882a593Smuzhiyun             {
3393*4882a593Smuzhiyun                 *(pKey + j + 2 + nRsaByte) = pSecureHdr->eFactor[nRsaByte - j - 1];
3394*4882a593Smuzhiyun             }
3395*4882a593Smuzhiyun             nKeySize = nRsaByte * 2 + 2;
3396*4882a593Smuzhiyun             //          if (m_pLog)
3397*4882a593Smuzhiyun             //          {
3398*4882a593Smuzhiyun             //              m_pLog->PrintBuffer(strOutput,pKey,nKeySize,16);
3399*4882a593Smuzhiyun             //              m_pLog->Record("INFO:Key\n%s",strOutput.c_str());
3400*4882a593Smuzhiyun             //          }
3401*4882a593Smuzhiyun             return true;
3402*4882a593Smuzhiyun         }
3403*4882a593Smuzhiyun 
3404*4882a593Smuzhiyun     }
3405*4882a593Smuzhiyun 
3406*4882a593Smuzhiyun     return false;
3407*4882a593Smuzhiyun }
3408*4882a593Smuzhiyun 
GetParameterGptFlag(STRUCT_RKIMAGE_ITEM & paramItem)3409*4882a593Smuzhiyun bool CRKAndroidDevice::GetParameterGptFlag(STRUCT_RKIMAGE_ITEM &paramItem)
3410*4882a593Smuzhiyun {
3411*4882a593Smuzhiyun     PBYTE pParamBuf = NULL;
3412*4882a593Smuzhiyun     bool bGpt = false;
3413*4882a593Smuzhiyun     pParamBuf = new BYTE[paramItem.size - 12 + 1];
3414*4882a593Smuzhiyun     if (!pParamBuf)
3415*4882a593Smuzhiyun     {
3416*4882a593Smuzhiyun         return false;
3417*4882a593Smuzhiyun     }
3418*4882a593Smuzhiyun     memset(pParamBuf, 0, paramItem.size - 12 + 1);
3419*4882a593Smuzhiyun     bool bRet;
3420*4882a593Smuzhiyun     bRet = m_pImage->GetData(m_pImage->FWOffset + paramItem.offset + 8, paramItem.size - 12, pParamBuf);
3421*4882a593Smuzhiyun     if (!bRet)
3422*4882a593Smuzhiyun     {
3423*4882a593Smuzhiyun         delete []pParamBuf;
3424*4882a593Smuzhiyun         return false;
3425*4882a593Smuzhiyun     }
3426*4882a593Smuzhiyun     string strParamFile = (char *)pParamBuf;
3427*4882a593Smuzhiyun     stringstream paramStream(strParamFile);
3428*4882a593Smuzhiyun     delete []pParamBuf;
3429*4882a593Smuzhiyun 
3430*4882a593Smuzhiyun 
3431*4882a593Smuzhiyun     string strLine;
3432*4882a593Smuzhiyun     string::size_type pos, line_size;
3433*4882a593Smuzhiyun     while (!paramStream.eof())
3434*4882a593Smuzhiyun     {
3435*4882a593Smuzhiyun         getline(paramStream, strLine);
3436*4882a593Smuzhiyun         line_size = strLine.size();
3437*4882a593Smuzhiyun         if (line_size <= 0)
3438*4882a593Smuzhiyun         {
3439*4882a593Smuzhiyun             continue;
3440*4882a593Smuzhiyun         }
3441*4882a593Smuzhiyun         if (strLine[line_size - 1] == '\r')
3442*4882a593Smuzhiyun         {
3443*4882a593Smuzhiyun             strLine = strLine.substr(0, line_size - 1);
3444*4882a593Smuzhiyun         }
3445*4882a593Smuzhiyun         if (strLine.size() <= 0)
3446*4882a593Smuzhiyun         {
3447*4882a593Smuzhiyun             continue;
3448*4882a593Smuzhiyun         }
3449*4882a593Smuzhiyun         if (strLine[0] == '#')
3450*4882a593Smuzhiyun         {
3451*4882a593Smuzhiyun             continue;
3452*4882a593Smuzhiyun         }
3453*4882a593Smuzhiyun         transform(strLine.begin(), strLine.end(), strLine.begin(), (int(*)(int))toupper);
3454*4882a593Smuzhiyun         pos = strLine.find("TYPE");
3455*4882a593Smuzhiyun         if (pos == string::npos)
3456*4882a593Smuzhiyun         {
3457*4882a593Smuzhiyun             continue;
3458*4882a593Smuzhiyun         }
3459*4882a593Smuzhiyun         if ((pos = strLine.find("GPT")) != string::npos)
3460*4882a593Smuzhiyun         {
3461*4882a593Smuzhiyun             bGpt = true;
3462*4882a593Smuzhiyun             break;
3463*4882a593Smuzhiyun         }
3464*4882a593Smuzhiyun         else
3465*4882a593Smuzhiyun         {
3466*4882a593Smuzhiyun             continue;
3467*4882a593Smuzhiyun         }
3468*4882a593Smuzhiyun     }
3469*4882a593Smuzhiyun     return bGpt;
3470*4882a593Smuzhiyun }
3471*4882a593Smuzhiyun 
3472*4882a593Smuzhiyun #define DO_CRC(x) crc = tab[ (crc ^ (x)) & 255 ] ^ (crc>>8)
crc32_le(unsigned int crc,unsigned char * p,unsigned int len)3473*4882a593Smuzhiyun unsigned int crc32_le(unsigned int crc, unsigned char *p, unsigned int len)
3474*4882a593Smuzhiyun {
3475*4882a593Smuzhiyun     unsigned int      *b = (unsigned int *)p;
3476*4882a593Smuzhiyun     unsigned int      *tab = crc32table_le;
3477*4882a593Smuzhiyun     crc = crc ^ 0xFFFFFFFF;
3478*4882a593Smuzhiyun     if ((((long)b) & 3 && len))
3479*4882a593Smuzhiyun     {
3480*4882a593Smuzhiyun         do
3481*4882a593Smuzhiyun         {
3482*4882a593Smuzhiyun             unsigned char *p = (unsigned char *)b;
3483*4882a593Smuzhiyun             DO_CRC(*p++);
3484*4882a593Smuzhiyun             b = (unsigned int *)p;
3485*4882a593Smuzhiyun         } while ((--len) && ((long)b) & 3);
3486*4882a593Smuzhiyun     }
3487*4882a593Smuzhiyun     if ((len >= 4))
3488*4882a593Smuzhiyun     {
3489*4882a593Smuzhiyun         unsigned int save_len = len & 3;
3490*4882a593Smuzhiyun         len = len >> 2;
3491*4882a593Smuzhiyun         --b;
3492*4882a593Smuzhiyun         do
3493*4882a593Smuzhiyun         {
3494*4882a593Smuzhiyun             crc ^= *++b;
3495*4882a593Smuzhiyun             DO_CRC(0);
3496*4882a593Smuzhiyun             DO_CRC(0);
3497*4882a593Smuzhiyun             DO_CRC(0);
3498*4882a593Smuzhiyun             DO_CRC(0);
3499*4882a593Smuzhiyun         } while (--len);
3500*4882a593Smuzhiyun         b++;
3501*4882a593Smuzhiyun         len = save_len;
3502*4882a593Smuzhiyun     }
3503*4882a593Smuzhiyun     if (len)
3504*4882a593Smuzhiyun     {
3505*4882a593Smuzhiyun         do
3506*4882a593Smuzhiyun         {
3507*4882a593Smuzhiyun             unsigned char *p = (unsigned char *)b;
3508*4882a593Smuzhiyun             DO_CRC(*p++);
3509*4882a593Smuzhiyun             b = (unsigned int *)p;
3510*4882a593Smuzhiyun         } while (--len);
3511*4882a593Smuzhiyun     }
3512*4882a593Smuzhiyun     crc = crc ^ 0xFFFFFFFF;
3513*4882a593Smuzhiyun     return crc;
3514*4882a593Smuzhiyun 
3515*4882a593Smuzhiyun }
prepare_gpt_backup(u8 * master,u8 * backup)3516*4882a593Smuzhiyun void prepare_gpt_backup(u8 *master, u8 *backup)
3517*4882a593Smuzhiyun {
3518*4882a593Smuzhiyun     gpt_header *gptMasterHead = (gpt_header *)(master + SECTOR_SIZE);
3519*4882a593Smuzhiyun     gpt_header *gptBackupHead = (gpt_header *)(backup + 32 * SECTOR_SIZE);
3520*4882a593Smuzhiyun     u32 calc_crc32;
3521*4882a593Smuzhiyun     u64 val;
3522*4882a593Smuzhiyun 
3523*4882a593Smuzhiyun     /* recalculate the values for the Backup GPT Header */
3524*4882a593Smuzhiyun     val = le64_to_cpu(gptMasterHead->my_lba);
3525*4882a593Smuzhiyun     gptBackupHead->my_lba = gptMasterHead->alternate_lba;
3526*4882a593Smuzhiyun     gptBackupHead->alternate_lba = cpu_to_le64(val);
3527*4882a593Smuzhiyun     gptBackupHead->partition_entry_lba = cpu_to_le64(le64_to_cpu(gptMasterHead->last_usable_lba) + 1);
3528*4882a593Smuzhiyun     gptBackupHead->header_crc32 = 0;
3529*4882a593Smuzhiyun 
3530*4882a593Smuzhiyun     calc_crc32 = crc32_le(0, (unsigned char *)gptBackupHead, le32_to_cpu(gptBackupHead->header_size));
3531*4882a593Smuzhiyun     gptBackupHead->header_crc32 = cpu_to_le32(calc_crc32);
3532*4882a593Smuzhiyun }
gen_rand_uuid(unsigned char * uuid_bin)3533*4882a593Smuzhiyun void gen_rand_uuid(unsigned char *uuid_bin)
3534*4882a593Smuzhiyun {
3535*4882a593Smuzhiyun     efi_guid_t id;
3536*4882a593Smuzhiyun     unsigned int *ptr = (unsigned int *)&id;
3537*4882a593Smuzhiyun     unsigned int i;
3538*4882a593Smuzhiyun 
3539*4882a593Smuzhiyun     /* Set all fields randomly */
3540*4882a593Smuzhiyun     for (i = 0; i < sizeof(id) / sizeof(*ptr); i++)
3541*4882a593Smuzhiyun     {
3542*4882a593Smuzhiyun         *(ptr + i) = cpu_to_be32(rand());
3543*4882a593Smuzhiyun     }
3544*4882a593Smuzhiyun 
3545*4882a593Smuzhiyun     id.uuid.time_hi_and_version = (id.uuid.time_hi_and_version & 0x0FFF) | 0x4000;
3546*4882a593Smuzhiyun     id.uuid.clock_seq_hi_and_reserved = id.uuid.clock_seq_hi_and_reserved | 0x80;
3547*4882a593Smuzhiyun 
3548*4882a593Smuzhiyun     memcpy(uuid_bin, id.raw, sizeof(id));
3549*4882a593Smuzhiyun }
create_gpt_buffer(u8 * gpt,PARAM_ITEM_VECTOR & vecParts,CONFIG_ITEM_VECTOR & vecUuid,u64 diskSectors)3550*4882a593Smuzhiyun void create_gpt_buffer(u8 *gpt, PARAM_ITEM_VECTOR &vecParts, CONFIG_ITEM_VECTOR &vecUuid, u64 diskSectors)
3551*4882a593Smuzhiyun {
3552*4882a593Smuzhiyun     legacy_mbr *mbr = (legacy_mbr *)gpt;
3553*4882a593Smuzhiyun     gpt_header *gptHead = (gpt_header *)(gpt + SECTOR_SIZE);
3554*4882a593Smuzhiyun     gpt_entry *gptEntry = (gpt_entry *)(gpt + 2 * SECTOR_SIZE);
3555*4882a593Smuzhiyun     u32 i, j;
3556*4882a593Smuzhiyun     int pos;
3557*4882a593Smuzhiyun     tstring strPartName;
3558*4882a593Smuzhiyun     string::size_type iPos;
3559*4882a593Smuzhiyun     /*1.protective mbr*/
3560*4882a593Smuzhiyun     memset(gpt, 0, SECTOR_SIZE);
3561*4882a593Smuzhiyun     mbr->signature = MSDOS_MBR_SIGNATURE;
3562*4882a593Smuzhiyun     mbr->partition_record[0].sys_ind = EFI_PMBR_OSTYPE_EFI_GPT;
3563*4882a593Smuzhiyun     mbr->partition_record[0].start_sect = 1;
3564*4882a593Smuzhiyun     mbr->partition_record[0].nr_sects = (u32) - 1;
3565*4882a593Smuzhiyun     /*2.gpt header*/
3566*4882a593Smuzhiyun     memset(gpt + SECTOR_SIZE, 0, SECTOR_SIZE);
3567*4882a593Smuzhiyun     gptHead->signature = cpu_to_le64(GPT_HEADER_SIGNATURE);
3568*4882a593Smuzhiyun     gptHead->revision = cpu_to_le32(GPT_HEADER_REVISION_V1);
3569*4882a593Smuzhiyun     gptHead->header_size = cpu_to_le32(sizeof(gpt_header));
3570*4882a593Smuzhiyun     gptHead->my_lba = cpu_to_le64(1);
3571*4882a593Smuzhiyun     gptHead->alternate_lba = cpu_to_le64(diskSectors - 1);
3572*4882a593Smuzhiyun     gptHead->first_usable_lba = cpu_to_le64(34);
3573*4882a593Smuzhiyun     gptHead->last_usable_lba = cpu_to_le64(diskSectors - 34);
3574*4882a593Smuzhiyun     gptHead->partition_entry_lba = cpu_to_le64(2);
3575*4882a593Smuzhiyun     gptHead->num_partition_entries = cpu_to_le32(GPT_ENTRY_NUMBERS);
3576*4882a593Smuzhiyun     gptHead->sizeof_partition_entry = cpu_to_le32(GPT_ENTRY_SIZE);
3577*4882a593Smuzhiyun     gptHead->header_crc32 = 0;
3578*4882a593Smuzhiyun     gptHead->partition_entry_array_crc32 = 0;
3579*4882a593Smuzhiyun     gen_rand_uuid(gptHead->disk_guid.raw);
3580*4882a593Smuzhiyun 
3581*4882a593Smuzhiyun     /*3.gpt partition entry*/
3582*4882a593Smuzhiyun     memset(gpt + 2 * SECTOR_SIZE, 0, 32 * SECTOR_SIZE);
3583*4882a593Smuzhiyun     for (i = 0; i < vecParts.size(); i++)
3584*4882a593Smuzhiyun     {
3585*4882a593Smuzhiyun         gen_rand_uuid(gptEntry->partition_type_guid.raw);
3586*4882a593Smuzhiyun         gen_rand_uuid(gptEntry->unique_partition_guid.raw);
3587*4882a593Smuzhiyun         gptEntry->starting_lba = cpu_to_le64(vecParts[i].uiItemOffset);
3588*4882a593Smuzhiyun         gptEntry->ending_lba = cpu_to_le64(gptEntry->starting_lba + vecParts[i].uiItemSize - 1);
3589*4882a593Smuzhiyun         gptEntry->attributes.raw = 0;
3590*4882a593Smuzhiyun         strPartName = vecParts[i].szItemName;
3591*4882a593Smuzhiyun         iPos = strPartName.find(_T(':'));
3592*4882a593Smuzhiyun         if (iPos != tstring::npos)
3593*4882a593Smuzhiyun         {
3594*4882a593Smuzhiyun             transform(strPartName.begin(), strPartName.end(), strPartName.begin(), (int(*)(int))tolower);
3595*4882a593Smuzhiyun             if (strPartName.find(_T("bootable")) != tstring::npos)
3596*4882a593Smuzhiyun             {
3597*4882a593Smuzhiyun                 gptEntry->attributes.raw = PART_PROPERTY_BOOTABLE;
3598*4882a593Smuzhiyun             }
3599*4882a593Smuzhiyun             if (strPartName.find(_T("grow")) != tstring::npos)
3600*4882a593Smuzhiyun             {
3601*4882a593Smuzhiyun                 gptEntry->ending_lba = cpu_to_le64(diskSectors - 34);
3602*4882a593Smuzhiyun             }
3603*4882a593Smuzhiyun             strPartName = strPartName.substr(0, iPos);
3604*4882a593Smuzhiyun             vecParts[i].szItemName[strPartName.size()] = 0;
3605*4882a593Smuzhiyun         }
3606*4882a593Smuzhiyun         for (j = 0; j < _tcslen(vecParts[i].szItemName); j++)
3607*4882a593Smuzhiyun         {
3608*4882a593Smuzhiyun             gptEntry->partition_name[j] = vecParts[i].szItemName[j];
3609*4882a593Smuzhiyun         }
3610*4882a593Smuzhiyun         if ((pos = find_uuid_item(vecUuid, vecParts[i].szItemName)) != -1)
3611*4882a593Smuzhiyun         {
3612*4882a593Smuzhiyun             memcpy(gptEntry->unique_partition_guid.raw, vecUuid[pos].szItemValue, 16);
3613*4882a593Smuzhiyun         }
3614*4882a593Smuzhiyun         gptEntry++;
3615*4882a593Smuzhiyun     }
3616*4882a593Smuzhiyun 
3617*4882a593Smuzhiyun     gptHead->partition_entry_array_crc32 = cpu_to_le32(crc32_le(0, gpt + 2 * SECTOR_SIZE, GPT_ENTRY_SIZE * GPT_ENTRY_NUMBERS));
3618*4882a593Smuzhiyun     gptHead->header_crc32 = cpu_to_le32(crc32_le(0, gpt + SECTOR_SIZE, sizeof(gpt_header)));
3619*4882a593Smuzhiyun 
3620*4882a593Smuzhiyun }
ParseUuidInfo(string & strUuidInfo,string & strName,string & strUUid)3621*4882a593Smuzhiyun bool ParseUuidInfo(string &strUuidInfo, string &strName, string &strUUid)
3622*4882a593Smuzhiyun {
3623*4882a593Smuzhiyun     string::size_type pos(0);
3624*4882a593Smuzhiyun 
3625*4882a593Smuzhiyun     if (strUuidInfo.size() <= 0)
3626*4882a593Smuzhiyun     {
3627*4882a593Smuzhiyun         return false;
3628*4882a593Smuzhiyun     }
3629*4882a593Smuzhiyun     pos = strUuidInfo.find('=');
3630*4882a593Smuzhiyun     if (pos == string::npos)
3631*4882a593Smuzhiyun     {
3632*4882a593Smuzhiyun         return false;
3633*4882a593Smuzhiyun     }
3634*4882a593Smuzhiyun     strName = strUuidInfo.substr(0, pos);
3635*4882a593Smuzhiyun     strName.erase(0, strName.find_first_not_of(" "));
3636*4882a593Smuzhiyun     strName.erase(strName.find_last_not_of(" ") + 1);
3637*4882a593Smuzhiyun 
3638*4882a593Smuzhiyun     strUUid = strUuidInfo.substr(pos + 1);
3639*4882a593Smuzhiyun     strUUid.erase(0, strUUid.find_first_not_of(" "));
3640*4882a593Smuzhiyun     strUUid.erase(strUUid.find_last_not_of(" ") + 1);
3641*4882a593Smuzhiyun 
3642*4882a593Smuzhiyun     while (true)
3643*4882a593Smuzhiyun     {
3644*4882a593Smuzhiyun         pos = 0;
3645*4882a593Smuzhiyun         if ((pos = strUUid.find("-")) != string::npos)
3646*4882a593Smuzhiyun         {
3647*4882a593Smuzhiyun             strUUid.replace(pos, 1, "");
3648*4882a593Smuzhiyun         }
3649*4882a593Smuzhiyun         else
3650*4882a593Smuzhiyun         {
3651*4882a593Smuzhiyun             break;
3652*4882a593Smuzhiyun         }
3653*4882a593Smuzhiyun     }
3654*4882a593Smuzhiyun     if (strUUid.size() != 32)
3655*4882a593Smuzhiyun     {
3656*4882a593Smuzhiyun         return false;
3657*4882a593Smuzhiyun     }
3658*4882a593Smuzhiyun     return true;
3659*4882a593Smuzhiyun }
string_to_uuid(string strUUid,char * uuid)3660*4882a593Smuzhiyun void string_to_uuid(string strUUid, char *uuid)
3661*4882a593Smuzhiyun {
3662*4882a593Smuzhiyun     unsigned int i;
3663*4882a593Smuzhiyun     char value;
3664*4882a593Smuzhiyun     memset(uuid, 0, 16);
3665*4882a593Smuzhiyun     for (i = 0; i < strUUid.size(); i++)
3666*4882a593Smuzhiyun     {
3667*4882a593Smuzhiyun         value = 0;
3668*4882a593Smuzhiyun         if ((strUUid[i] >= '0') && (strUUid[i] <= '9'))
3669*4882a593Smuzhiyun         {
3670*4882a593Smuzhiyun             value = strUUid[i] - '0';
3671*4882a593Smuzhiyun         }
3672*4882a593Smuzhiyun         if ((strUUid[i] >= 'a') && (strUUid[i] <= 'f'))
3673*4882a593Smuzhiyun         {
3674*4882a593Smuzhiyun             value = strUUid[i] - 'a' + 10;
3675*4882a593Smuzhiyun         }
3676*4882a593Smuzhiyun         if ((strUUid[i] >= 'A') && (strUUid[i] <= 'F'))
3677*4882a593Smuzhiyun         {
3678*4882a593Smuzhiyun             value = strUUid[i] - 'A' + 10;
3679*4882a593Smuzhiyun         }
3680*4882a593Smuzhiyun         if ((i % 2) == 0)
3681*4882a593Smuzhiyun         {
3682*4882a593Smuzhiyun             uuid[i / 2] += (value << 4);
3683*4882a593Smuzhiyun         }
3684*4882a593Smuzhiyun         else
3685*4882a593Smuzhiyun         {
3686*4882a593Smuzhiyun             uuid[i / 2] += value;
3687*4882a593Smuzhiyun         }
3688*4882a593Smuzhiyun     }
3689*4882a593Smuzhiyun     unsigned int *p32;
3690*4882a593Smuzhiyun     unsigned short *p16;
3691*4882a593Smuzhiyun     p32 = (unsigned int *)uuid;
3692*4882a593Smuzhiyun     *p32 = cpu_to_be32(*p32);
3693*4882a593Smuzhiyun     p16 = (unsigned short *)(uuid + 4);
3694*4882a593Smuzhiyun     *p16 = cpu_to_be16(*p16);
3695*4882a593Smuzhiyun     p16 = (unsigned short *)(uuid + 6);
3696*4882a593Smuzhiyun     *p16 = cpu_to_be16(*p16);
3697*4882a593Smuzhiyun }
get_uuid_from_parameter(char * pParameter,CONFIG_ITEM_VECTOR & vecItem)3698*4882a593Smuzhiyun bool get_uuid_from_parameter(char *pParameter, CONFIG_ITEM_VECTOR &vecItem)
3699*4882a593Smuzhiyun {
3700*4882a593Smuzhiyun     stringstream paramStream(pParameter);
3701*4882a593Smuzhiyun     bool bRet;
3702*4882a593Smuzhiyun     string strLine, strUUid, strPartInfo, strPartName;
3703*4882a593Smuzhiyun     string::size_type line_size, pos, posColon, posComma;
3704*4882a593Smuzhiyun     STRUCT_CONFIG_ITEM uuid_item;
3705*4882a593Smuzhiyun     vecItem.clear();
3706*4882a593Smuzhiyun     while (!paramStream.eof())
3707*4882a593Smuzhiyun     {
3708*4882a593Smuzhiyun         getline(paramStream, strLine);
3709*4882a593Smuzhiyun         line_size = strLine.size();
3710*4882a593Smuzhiyun         if (line_size == 0)
3711*4882a593Smuzhiyun         {
3712*4882a593Smuzhiyun             continue;
3713*4882a593Smuzhiyun         }
3714*4882a593Smuzhiyun         if (strLine[line_size - 1] == '\r')
3715*4882a593Smuzhiyun         {
3716*4882a593Smuzhiyun             strLine = strLine.substr(0, line_size - 1);
3717*4882a593Smuzhiyun         }
3718*4882a593Smuzhiyun         pos = strLine.find("uuid:");
3719*4882a593Smuzhiyun         if (pos != string::npos)
3720*4882a593Smuzhiyun         {
3721*4882a593Smuzhiyun             strPartInfo = strLine.substr(pos + 5);
3722*4882a593Smuzhiyun             bRet = ParseUuidInfo(strPartInfo, strPartName, strUUid);
3723*4882a593Smuzhiyun             if (bRet)
3724*4882a593Smuzhiyun             {
3725*4882a593Smuzhiyun                 strcpy(uuid_item.szItemName, strPartName.c_str());
3726*4882a593Smuzhiyun                 string_to_uuid(strUUid, uuid_item.szItemValue);
3727*4882a593Smuzhiyun                 vecItem.push_back(uuid_item);
3728*4882a593Smuzhiyun             }
3729*4882a593Smuzhiyun         }
3730*4882a593Smuzhiyun     }
3731*4882a593Smuzhiyun     return (vecItem.size() > 0);
3732*4882a593Smuzhiyun }
find_uuid_item(CONFIG_ITEM_VECTOR & vecItems,char * pszName)3733*4882a593Smuzhiyun int find_uuid_item(CONFIG_ITEM_VECTOR &vecItems, char *pszName)
3734*4882a593Smuzhiyun {
3735*4882a593Smuzhiyun     unsigned int i;
3736*4882a593Smuzhiyun     for (i = 0; i < vecItems.size(); i++)
3737*4882a593Smuzhiyun     {
3738*4882a593Smuzhiyun         if (strcasecmp(pszName, vecItems[i].szItemName) == 0)
3739*4882a593Smuzhiyun         {
3740*4882a593Smuzhiyun             return i;
3741*4882a593Smuzhiyun         }
3742*4882a593Smuzhiyun     }
3743*4882a593Smuzhiyun     return -1;
3744*4882a593Smuzhiyun }
3745