dumpstate.cpp revision 608385dd151e36a93f3e3f4a7514b1e720d20ae9
1/* 2 * Copyright (C) 2008 The Android Open Source Project 3 * 4 * Licensed under the Apache License, Version 2.0 (the "License"); 5 * you may not use this file except in compliance with the License. 6 * You may obtain a copy of the License at 7 * 8 * http://www.apache.org/licenses/LICENSE-2.0 9 * 10 * Unless required by applicable law or agreed to in writing, software 11 * distributed under the License is distributed on an "AS IS" BASIS, 12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. 13 * See the License for the specific language governing permissions and 14 * limitations under the License. 15 */ 16 17#include <dirent.h> 18#include <errno.h> 19#include <fcntl.h> 20#include <libgen.h> 21#include <limits.h> 22#include <memory> 23#include <regex> 24#include <set> 25#include <stdbool.h> 26#include <stdio.h> 27#include <stdlib.h> 28#include <string> 29#include <string.h> 30#include <sys/capability.h> 31#include <sys/prctl.h> 32#include <sys/resource.h> 33#include <sys/stat.h> 34#include <sys/time.h> 35#include <sys/wait.h> 36#include <unistd.h> 37 38#include <android-base/stringprintf.h> 39#include <cutils/properties.h> 40 41#include "private/android_filesystem_config.h" 42 43#define LOG_TAG "dumpstate" 44#include <cutils/log.h> 45 46#include "dumpstate.h" 47#include "ScopedFd.h" 48#include "ziparchive/zip_writer.h" 49 50#include "mincrypt/sha256.h" 51 52using android::base::StringPrintf; 53 54/* read before root is shed */ 55static char cmdline_buf[16384] = "(unknown)"; 56static const char *dump_traces_path = NULL; 57 58// TODO: should be part of dumpstate object 59static char build_type[PROPERTY_VALUE_MAX]; 60static time_t now; 61static std::unique_ptr<ZipWriter> zip_writer; 62static std::set<std::string> mount_points; 63void add_mountinfo(); 64static bool add_zip_entry(const std::string& entry_name, const std::string& entry_path); 65 66#define PSTORE_LAST_KMSG "/sys/fs/pstore/console-ramoops" 67 68#define RAFT_DIR "/data/misc/raft/" 69#define RECOVERY_DIR "/cache/recovery" 70#define TOMBSTONE_DIR "/data/tombstones" 71#define TOMBSTONE_FILE_PREFIX TOMBSTONE_DIR "/tombstone_" 72/* Can accomodate a tombstone number up to 9999. */ 73#define TOMBSTONE_MAX_LEN (sizeof(TOMBSTONE_FILE_PREFIX) + 4) 74#define NUM_TOMBSTONES 10 75 76typedef struct { 77 char name[TOMBSTONE_MAX_LEN]; 78 int fd; 79} tombstone_data_t; 80 81static tombstone_data_t tombstone_data[NUM_TOMBSTONES]; 82 83// Root dir for all files copied as-is into the bugreport 84const std::string& ZIP_ROOT_DIR = "FS"; 85 86/* gets the tombstone data, according to the bugreport type: if zipped gets all tombstones, 87 * otherwise gets just those modified in the last half an hour. */ 88static void get_tombstone_fds(tombstone_data_t data[NUM_TOMBSTONES]) { 89 time_t thirty_minutes_ago = now - 60*30; 90 for (size_t i = 0; i < NUM_TOMBSTONES; i++) { 91 snprintf(data[i].name, sizeof(data[i].name), "%s%02zu", TOMBSTONE_FILE_PREFIX, i); 92 int fd = TEMP_FAILURE_RETRY(open(data[i].name, 93 O_RDONLY | O_CLOEXEC | O_NOFOLLOW | O_NONBLOCK)); 94 struct stat st; 95 if (fstat(fd, &st) == 0 && S_ISREG(st.st_mode) && 96 (zip_writer || (time_t) st.st_mtime >= thirty_minutes_ago)) { 97 data[i].fd = fd; 98 } else { 99 close(fd); 100 data[i].fd = -1; 101 } 102 } 103} 104 105// for_each_pid() callback to get mount info about a process. 106void do_mountinfo(int pid, const char *name) { 107 char path[PATH_MAX]; 108 109 // Gets the the content of the /proc/PID/ns/mnt link, so only unique mount points 110 // are added. 111 sprintf(path, "/proc/%d/ns/mnt", pid); 112 char linkname[PATH_MAX]; 113 ssize_t r = readlink(path, linkname, PATH_MAX); 114 if (r == -1) { 115 ALOGE("Unable to read link for %s: %s\n", path, strerror(errno)); 116 return; 117 } 118 linkname[r] = '\0'; 119 120 if (mount_points.find(linkname) == mount_points.end()) { 121 // First time this mount point was found: add it 122 sprintf(path, "/proc/%d/mountinfo", pid); 123 if (add_zip_entry(ZIP_ROOT_DIR + path, path)) { 124 mount_points.insert(linkname); 125 } else { 126 ALOGE("Unable to add mountinfo %s to zip file\n", path); 127 } 128 } 129} 130 131void add_mountinfo() { 132 if (!zip_writer) return; 133 const char *title = "MOUNT INFO"; 134 mount_points.clear(); 135 DurationReporter duration_reporter(title, NULL); 136 for_each_pid(do_mountinfo, NULL); 137 ALOGD("%s: %d entries added to zip file\n", title, mount_points.size()); 138} 139 140static void dump_dev_files(const char *title, const char *driverpath, const char *filename) 141{ 142 DIR *d; 143 struct dirent *de; 144 char path[PATH_MAX]; 145 146 d = opendir(driverpath); 147 if (d == NULL) { 148 return; 149 } 150 151 while ((de = readdir(d))) { 152 if (de->d_type != DT_LNK) { 153 continue; 154 } 155 snprintf(path, sizeof(path), "%s/%s/%s", driverpath, de->d_name, filename); 156 dump_file(title, path); 157 } 158 159 closedir(d); 160} 161 162static bool skip_not_stat(const char *path) { 163 static const char stat[] = "/stat"; 164 size_t len = strlen(path); 165 if (path[len - 1] == '/') { /* Directory? */ 166 return false; 167 } 168 return strcmp(path + len - sizeof(stat) + 1, stat); /* .../stat? */ 169} 170 171static bool skip_none(const char *path) { 172 return false; 173} 174 175static const char mmcblk0[] = "/sys/block/mmcblk0/"; 176unsigned long worst_write_perf = 20000; /* in KB/s */ 177 178static int dump_stat_from_fd(const char *title __unused, const char *path, int fd) { 179 unsigned long fields[11], read_perf, write_perf; 180 bool z; 181 char *cp, *buffer = NULL; 182 size_t i = 0; 183 FILE *fp = fdopen(fd, "rb"); 184 getline(&buffer, &i, fp); 185 fclose(fp); 186 if (!buffer) { 187 return -errno; 188 } 189 i = strlen(buffer); 190 while ((i > 0) && (buffer[i - 1] == '\n')) { 191 buffer[--i] = '\0'; 192 } 193 if (!*buffer) { 194 free(buffer); 195 return 0; 196 } 197 z = true; 198 for (cp = buffer, i = 0; i < (sizeof(fields) / sizeof(fields[0])); ++i) { 199 fields[i] = strtol(cp, &cp, 0); 200 if (fields[i] != 0) { 201 z = false; 202 } 203 } 204 if (z) { /* never accessed */ 205 free(buffer); 206 return 0; 207 } 208 209 if (!strncmp(path, mmcblk0, sizeof(mmcblk0) - 1)) { 210 path += sizeof(mmcblk0) - 1; 211 } 212 213 printf("%s: %s\n", path, buffer); 214 free(buffer); 215 216 read_perf = 0; 217 if (fields[3]) { 218 read_perf = 512 * fields[2] / fields[3]; 219 } 220 write_perf = 0; 221 if (fields[7]) { 222 write_perf = 512 * fields[6] / fields[7]; 223 } 224 printf("%s: read: %luKB/s write: %luKB/s\n", path, read_perf, write_perf); 225 if ((write_perf > 1) && (write_perf < worst_write_perf)) { 226 worst_write_perf = write_perf; 227 } 228 return 0; 229} 230 231/* Copied policy from system/core/logd/LogBuffer.cpp */ 232 233#define LOG_BUFFER_SIZE (256 * 1024) 234#define LOG_BUFFER_MIN_SIZE (64 * 1024UL) 235#define LOG_BUFFER_MAX_SIZE (256 * 1024 * 1024UL) 236 237static bool valid_size(unsigned long value) { 238 if ((value < LOG_BUFFER_MIN_SIZE) || (LOG_BUFFER_MAX_SIZE < value)) { 239 return false; 240 } 241 242 long pages = sysconf(_SC_PHYS_PAGES); 243 if (pages < 1) { 244 return true; 245 } 246 247 long pagesize = sysconf(_SC_PAGESIZE); 248 if (pagesize <= 1) { 249 pagesize = PAGE_SIZE; 250 } 251 252 // maximum memory impact a somewhat arbitrary ~3% 253 pages = (pages + 31) / 32; 254 unsigned long maximum = pages * pagesize; 255 256 if ((maximum < LOG_BUFFER_MIN_SIZE) || (LOG_BUFFER_MAX_SIZE < maximum)) { 257 return true; 258 } 259 260 return value <= maximum; 261} 262 263static unsigned long property_get_size(const char *key) { 264 unsigned long value; 265 char *cp, property[PROPERTY_VALUE_MAX]; 266 267 property_get(key, property, ""); 268 value = strtoul(property, &cp, 10); 269 270 switch(*cp) { 271 case 'm': 272 case 'M': 273 value *= 1024; 274 /* FALLTHRU */ 275 case 'k': 276 case 'K': 277 value *= 1024; 278 /* FALLTHRU */ 279 case '\0': 280 break; 281 282 default: 283 value = 0; 284 } 285 286 if (!valid_size(value)) { 287 value = 0; 288 } 289 290 return value; 291} 292 293/* timeout in ms */ 294static unsigned long logcat_timeout(const char *name) { 295 static const char global_tuneable[] = "persist.logd.size"; // Settings App 296 static const char global_default[] = "ro.logd.size"; // BoardConfig.mk 297 char key[PROP_NAME_MAX]; 298 unsigned long property_size, default_size; 299 300 default_size = property_get_size(global_tuneable); 301 if (!default_size) { 302 default_size = property_get_size(global_default); 303 } 304 305 snprintf(key, sizeof(key), "%s.%s", global_tuneable, name); 306 property_size = property_get_size(key); 307 308 if (!property_size) { 309 snprintf(key, sizeof(key), "%s.%s", global_default, name); 310 property_size = property_get_size(key); 311 } 312 313 if (!property_size) { 314 property_size = default_size; 315 } 316 317 if (!property_size) { 318 property_size = LOG_BUFFER_SIZE; 319 } 320 321 /* Engineering margin is ten-fold our guess */ 322 return 10 * (property_size + worst_write_perf) / worst_write_perf; 323} 324 325/* End copy from system/core/logd/LogBuffer.cpp */ 326 327/* dumps the current system state to stdout */ 328static void print_header() { 329 char build[PROPERTY_VALUE_MAX], fingerprint[PROPERTY_VALUE_MAX]; 330 char radio[PROPERTY_VALUE_MAX], bootloader[PROPERTY_VALUE_MAX]; 331 char network[PROPERTY_VALUE_MAX], date[80]; 332 333 property_get("ro.build.display.id", build, "(unknown)"); 334 property_get("ro.build.fingerprint", fingerprint, "(unknown)"); 335 property_get("ro.build.type", build_type, "(unknown)"); 336 property_get("ro.baseband", radio, "(unknown)"); 337 property_get("ro.bootloader", bootloader, "(unknown)"); 338 property_get("gsm.operator.alpha", network, "(unknown)"); 339 strftime(date, sizeof(date), "%Y-%m-%d %H:%M:%S", localtime(&now)); 340 341 printf("========================================================\n"); 342 printf("== dumpstate: %s\n", date); 343 printf("========================================================\n"); 344 345 printf("\n"); 346 printf("Build: %s\n", build); 347 printf("Build fingerprint: '%s'\n", fingerprint); /* format is important for other tools */ 348 printf("Bootloader: %s\n", bootloader); 349 printf("Radio: %s\n", radio); 350 printf("Network: %s\n", network); 351 352 printf("Kernel: "); 353 dump_file(NULL, "/proc/version"); 354 printf("Command line: %s\n", strtok(cmdline_buf, "\n")); 355 printf("\n"); 356} 357 358/* adds a new entry to the existing zip file. */ 359static bool add_zip_entry_from_fd(const std::string& entry_name, int fd) { 360 ALOGD("Adding zip entry %s", entry_name.c_str()); 361 int32_t err = zip_writer->StartEntryWithTime(entry_name.c_str(), 362 ZipWriter::kCompress, get_mtime(fd, now)); 363 if (err) { 364 ALOGE("zip_writer->StartEntryWithTime(%s): %s\n", entry_name.c_str(), ZipWriter::ErrorCodeString(err)); 365 return false; 366 } 367 368 std::vector<uint8_t> buffer(65536); 369 while (1) { 370 ssize_t bytes_read = TEMP_FAILURE_RETRY(read(fd, buffer.data(), sizeof(buffer))); 371 if (bytes_read == 0) { 372 break; 373 } else if (bytes_read == -1) { 374 ALOGE("read(%s): %s\n", entry_name.c_str(), strerror(errno)); 375 return false; 376 } 377 err = zip_writer->WriteBytes(buffer.data(), bytes_read); 378 if (err) { 379 ALOGE("zip_writer->WriteBytes(): %s\n", ZipWriter::ErrorCodeString(err)); 380 return false; 381 } 382 } 383 384 err = zip_writer->FinishEntry(); 385 if (err) { 386 ALOGE("zip_writer->FinishEntry(): %s\n", ZipWriter::ErrorCodeString(err)); 387 return false; 388 } 389 390 return true; 391} 392 393/* adds a new entry to the existing zip file. */ 394static bool add_zip_entry(const std::string& entry_name, const std::string& entry_path) { 395 ScopedFd fd(TEMP_FAILURE_RETRY(open(entry_path.c_str(), O_RDONLY | O_NONBLOCK | O_CLOEXEC))); 396 if (fd.get() == -1) { 397 ALOGE("open(%s): %s\n", entry_path.c_str(), strerror(errno)); 398 return false; 399 } 400 401 return add_zip_entry_from_fd(entry_name, fd.get()); 402} 403 404/* adds a file to the existing zipped bugreport */ 405static int _add_file_from_fd(const char *title, const char *path, int fd) { 406 return add_zip_entry_from_fd(ZIP_ROOT_DIR + path, fd) ? 0 : 1; 407} 408 409/* adds all files from a directory to the zipped bugreport file */ 410void add_dir(const char *dir, bool recursive) { 411 if (!zip_writer) return; 412 DurationReporter duration_reporter(dir, NULL); 413 dump_files(NULL, dir, recursive ? skip_none : is_dir, _add_file_from_fd); 414} 415 416static void dumpstate(const std::string& screenshot_path) { 417 DurationReporter duration_reporter("DUMPSTATE"); 418 unsigned long timeout; 419 420 dump_dev_files("TRUSTY VERSION", "/sys/bus/platform/drivers/trusty", "trusty_version"); 421 run_command("UPTIME", 10, "uptime", NULL); 422 dump_files("UPTIME MMC PERF", mmcblk0, skip_not_stat, dump_stat_from_fd); 423 dump_emmc_ecsd("/d/mmc0/mmc0:0001/ext_csd"); 424 dump_file("MEMORY INFO", "/proc/meminfo"); 425 run_command("CPU INFO", 10, "top", "-n", "1", "-d", "1", "-m", "30", "-H", NULL); 426 run_command("PROCRANK", 20, SU_PATH, "root", "procrank", NULL); 427 dump_file("VIRTUAL MEMORY STATS", "/proc/vmstat"); 428 dump_file("VMALLOC INFO", "/proc/vmallocinfo"); 429 dump_file("SLAB INFO", "/proc/slabinfo"); 430 dump_file("ZONEINFO", "/proc/zoneinfo"); 431 dump_file("PAGETYPEINFO", "/proc/pagetypeinfo"); 432 dump_file("BUDDYINFO", "/proc/buddyinfo"); 433 dump_file("FRAGMENTATION INFO", "/d/extfrag/unusable_index"); 434 435 dump_file("KERNEL WAKELOCKS", "/proc/wakelocks"); 436 dump_file("KERNEL WAKE SOURCES", "/d/wakeup_sources"); 437 dump_file("KERNEL CPUFREQ", "/sys/devices/system/cpu/cpu0/cpufreq/stats/time_in_state"); 438 dump_file("KERNEL SYNC", "/d/sync"); 439 440 run_command("PROCESSES AND THREADS", 10, "ps", "-Z", "-t", "-p", "-P", NULL); 441 run_command("LIBRANK", 10, SU_PATH, "root", "librank", NULL); 442 443 run_command("ROUTE", 10, "route", NULL); 444 run_command("PRINTENV", 10, "printenv", NULL); 445 run_command("NETSTAT", 10, "netstat", NULL); 446 run_command("LSMOD", 10, "lsmod", NULL); 447 448 do_dmesg(); 449 450 run_command("LIST OF OPEN FILES", 10, SU_PATH, "root", "lsof", NULL); 451 for_each_pid(do_showmap, "SMAPS OF ALL PROCESSES"); 452 for_each_tid(show_wchan, "BLOCKED PROCESS WAIT-CHANNELS"); 453 454 if (!screenshot_path.empty()) { 455 ALOGI("taking late screenshot\n"); 456 take_screenshot(screenshot_path); 457 ALOGI("wrote screenshot: %s\n", screenshot_path.c_str()); 458 } 459 460 // dump_file("EVENT LOG TAGS", "/etc/event-log-tags"); 461 // calculate timeout 462 timeout = logcat_timeout("main") + logcat_timeout("system") + logcat_timeout("crash"); 463 if (timeout < 20000) { 464 timeout = 20000; 465 } 466 run_command("SYSTEM LOG", timeout / 1000, "logcat", "-v", "threadtime", 467 "-v", "printable", 468 "-d", 469 "*:v", NULL); 470 timeout = logcat_timeout("events"); 471 if (timeout < 20000) { 472 timeout = 20000; 473 } 474 run_command("EVENT LOG", timeout / 1000, "logcat", "-b", "events", 475 "-v", "threadtime", 476 "-v", "printable", 477 "-d", 478 "*:v", NULL); 479 timeout = logcat_timeout("radio"); 480 if (timeout < 20000) { 481 timeout = 20000; 482 } 483 run_command("RADIO LOG", timeout / 1000, "logcat", "-b", "radio", 484 "-v", "threadtime", 485 "-v", "printable", 486 "-d", 487 "*:v", NULL); 488 489 run_command("LOG STATISTICS", 10, "logcat", "-b", "all", "-S", NULL); 490 491 run_command("RAFT LOGS", 600, SU_PATH, "root", "logcompressor", "-r", RAFT_DIR, NULL); 492 493 /* show the traces we collected in main(), if that was done */ 494 if (dump_traces_path != NULL) { 495 dump_file("VM TRACES JUST NOW", dump_traces_path); 496 } 497 498 /* only show ANR traces if they're less than 15 minutes old */ 499 struct stat st; 500 char anr_traces_path[PATH_MAX]; 501 property_get("dalvik.vm.stack-trace-file", anr_traces_path, ""); 502 if (!anr_traces_path[0]) { 503 printf("*** NO VM TRACES FILE DEFINED (dalvik.vm.stack-trace-file)\n\n"); 504 } else { 505 int fd = TEMP_FAILURE_RETRY(open(anr_traces_path, 506 O_RDONLY | O_CLOEXEC | O_NOFOLLOW | O_NONBLOCK)); 507 if (fd < 0) { 508 printf("*** NO ANR VM TRACES FILE (%s): %s\n\n", anr_traces_path, strerror(errno)); 509 } else { 510 dump_file_from_fd("VM TRACES AT LAST ANR", anr_traces_path, fd); 511 } 512 } 513 514 /* slow traces for slow operations */ 515 if (anr_traces_path[0] != 0) { 516 int tail = strlen(anr_traces_path)-1; 517 while (tail > 0 && anr_traces_path[tail] != '/') { 518 tail--; 519 } 520 int i = 0; 521 while (1) { 522 sprintf(anr_traces_path+tail+1, "slow%02d.txt", i); 523 if (stat(anr_traces_path, &st)) { 524 // No traces file at this index, done with the files. 525 break; 526 } 527 dump_file("VM TRACES WHEN SLOW", anr_traces_path); 528 i++; 529 } 530 } 531 532 int dumped = 0; 533 for (size_t i = 0; i < NUM_TOMBSTONES; i++) { 534 if (tombstone_data[i].fd != -1) { 535 const char *name = tombstone_data[i].name; 536 int fd = tombstone_data[i].fd; 537 dumped = 1; 538 if (zip_writer) { 539 if (!add_zip_entry_from_fd(ZIP_ROOT_DIR + name, fd)) { 540 ALOGE("Unable to add tombstone %s to zip file\n", name); 541 } 542 } else { 543 dump_file_from_fd("TOMBSTONE", name, fd); 544 } 545 close(fd); 546 tombstone_data[i].fd = -1; 547 } 548 } 549 if (!dumped) { 550 printf("*** NO TOMBSTONES to dump in %s\n\n", TOMBSTONE_DIR); 551 } 552 553 dump_file("NETWORK DEV INFO", "/proc/net/dev"); 554 dump_file("QTAGUID NETWORK INTERFACES INFO", "/proc/net/xt_qtaguid/iface_stat_all"); 555 dump_file("QTAGUID NETWORK INTERFACES INFO (xt)", "/proc/net/xt_qtaguid/iface_stat_fmt"); 556 dump_file("QTAGUID CTRL INFO", "/proc/net/xt_qtaguid/ctrl"); 557 dump_file("QTAGUID STATS INFO", "/proc/net/xt_qtaguid/stats"); 558 559 if (!stat(PSTORE_LAST_KMSG, &st)) { 560 /* Also TODO: Make console-ramoops CAP_SYSLOG protected. */ 561 dump_file("LAST KMSG", PSTORE_LAST_KMSG); 562 } else { 563 /* TODO: Make last_kmsg CAP_SYSLOG protected. b/5555691 */ 564 dump_file("LAST KMSG", "/proc/last_kmsg"); 565 } 566 567 /* kernels must set CONFIG_PSTORE_PMSG, slice up pstore with device tree */ 568 run_command("LAST LOGCAT", 10, "logcat", "-L", 569 "-b", "all", 570 "-v", "threadtime", 571 "-v", "printable", 572 "-d", 573 "*:v", NULL); 574 575 /* The following have a tendency to get wedged when wifi drivers/fw goes belly-up. */ 576 577 run_command("NETWORK INTERFACES", 10, "ip", "link", NULL); 578 579 run_command("IPv4 ADDRESSES", 10, "ip", "-4", "addr", "show", NULL); 580 run_command("IPv6 ADDRESSES", 10, "ip", "-6", "addr", "show", NULL); 581 582 run_command("IP RULES", 10, "ip", "rule", "show", NULL); 583 run_command("IP RULES v6", 10, "ip", "-6", "rule", "show", NULL); 584 585 dump_route_tables(); 586 587 run_command("ARP CACHE", 10, "ip", "-4", "neigh", "show", NULL); 588 run_command("IPv6 ND CACHE", 10, "ip", "-6", "neigh", "show", NULL); 589 590 run_command("IPTABLES", 10, SU_PATH, "root", "iptables", "-L", "-nvx", NULL); 591 run_command("IP6TABLES", 10, SU_PATH, "root", "ip6tables", "-L", "-nvx", NULL); 592 run_command("IPTABLE NAT", 10, SU_PATH, "root", "iptables", "-t", "nat", "-L", "-nvx", NULL); 593 /* no ip6 nat */ 594 run_command("IPTABLE RAW", 10, SU_PATH, "root", "iptables", "-t", "raw", "-L", "-nvx", NULL); 595 run_command("IP6TABLE RAW", 10, SU_PATH, "root", "ip6tables", "-t", "raw", "-L", "-nvx", NULL); 596 597 run_command("WIFI NETWORKS", 20, 598 SU_PATH, "root", "wpa_cli", "IFNAME=wlan0", "list_networks", NULL); 599 600#ifdef FWDUMP_bcmdhd 601 run_command("ND OFFLOAD TABLE", 5, 602 SU_PATH, "root", "wlutil", "nd_hostip", NULL); 603 604 run_command("DUMP WIFI INTERNAL COUNTERS (1)", 20, 605 SU_PATH, "root", "wlutil", "counters", NULL); 606 607 run_command("ND OFFLOAD STATUS (1)", 5, 608 SU_PATH, "root", "wlutil", "nd_status", NULL); 609 610#endif 611 dump_file("INTERRUPTS (1)", "/proc/interrupts"); 612 613 run_command("NETWORK DIAGNOSTICS", 10, "dumpsys", "connectivity", "--diag", NULL); 614 615#ifdef FWDUMP_bcmdhd 616 run_command("DUMP WIFI STATUS", 20, 617 SU_PATH, "root", "dhdutil", "-i", "wlan0", "dump", NULL); 618 619 run_command("DUMP WIFI INTERNAL COUNTERS (2)", 20, 620 SU_PATH, "root", "wlutil", "counters", NULL); 621 622 run_command("ND OFFLOAD STATUS (2)", 5, 623 SU_PATH, "root", "wlutil", "nd_status", NULL); 624#endif 625 dump_file("INTERRUPTS (2)", "/proc/interrupts"); 626 627 print_properties(); 628 629 run_command("VOLD DUMP", 10, "vdc", "dump", NULL); 630 run_command("SECURE CONTAINERS", 10, "vdc", "asec", "list", NULL); 631 632 run_command("FILESYSTEMS & FREE SPACE", 10, "df", NULL); 633 634 run_command("LAST RADIO LOG", 10, "parse_radio_log", "/proc/last_radio_log", NULL); 635 636 printf("------ BACKLIGHTS ------\n"); 637 printf("LCD brightness="); 638 dump_file(NULL, "/sys/class/leds/lcd-backlight/brightness"); 639 printf("Button brightness="); 640 dump_file(NULL, "/sys/class/leds/button-backlight/brightness"); 641 printf("Keyboard brightness="); 642 dump_file(NULL, "/sys/class/leds/keyboard-backlight/brightness"); 643 printf("ALS mode="); 644 dump_file(NULL, "/sys/class/leds/lcd-backlight/als"); 645 printf("LCD driver registers:\n"); 646 dump_file(NULL, "/sys/class/leds/lcd-backlight/registers"); 647 printf("\n"); 648 649 /* Binder state is expensive to look at as it uses a lot of memory. */ 650 dump_file("BINDER FAILED TRANSACTION LOG", "/sys/kernel/debug/binder/failed_transaction_log"); 651 dump_file("BINDER TRANSACTION LOG", "/sys/kernel/debug/binder/transaction_log"); 652 dump_file("BINDER TRANSACTIONS", "/sys/kernel/debug/binder/transactions"); 653 dump_file("BINDER STATS", "/sys/kernel/debug/binder/stats"); 654 dump_file("BINDER STATE", "/sys/kernel/debug/binder/state"); 655 656 printf("========================================================\n"); 657 printf("== Board\n"); 658 printf("========================================================\n"); 659 660 dumpstate_board(); 661 printf("\n"); 662 663 /* Migrate the ril_dumpstate to a dumpstate_board()? */ 664 char ril_dumpstate_timeout[PROPERTY_VALUE_MAX] = {0}; 665 property_get("ril.dumpstate.timeout", ril_dumpstate_timeout, "30"); 666 if (strnlen(ril_dumpstate_timeout, PROPERTY_VALUE_MAX - 1) > 0) { 667 if (0 == strncmp(build_type, "user", PROPERTY_VALUE_MAX - 1)) { 668 // su does not exist on user builds, so try running without it. 669 // This way any implementations of vril-dump that do not require 670 // root can run on user builds. 671 run_command("DUMP VENDOR RIL LOGS", atoi(ril_dumpstate_timeout), 672 "vril-dump", NULL); 673 } else { 674 run_command("DUMP VENDOR RIL LOGS", atoi(ril_dumpstate_timeout), 675 SU_PATH, "root", "vril-dump", NULL); 676 } 677 } 678 679 printf("========================================================\n"); 680 printf("== Android Framework Services\n"); 681 printf("========================================================\n"); 682 683 /* the full dumpsys is starting to take a long time, so we need 684 to increase its timeout. we really need to do the timeouts in 685 dumpsys itself... */ 686 run_command("DUMPSYS", 60, "dumpsys", NULL); 687 688 printf("========================================================\n"); 689 printf("== Checkins\n"); 690 printf("========================================================\n"); 691 692 run_command("CHECKIN BATTERYSTATS", 30, "dumpsys", "batterystats", "-c", NULL); 693 run_command("CHECKIN MEMINFO", 30, "dumpsys", "meminfo", "--checkin", NULL); 694 run_command("CHECKIN NETSTATS", 30, "dumpsys", "netstats", "--checkin", NULL); 695 run_command("CHECKIN PROCSTATS", 30, "dumpsys", "procstats", "-c", NULL); 696 run_command("CHECKIN USAGESTATS", 30, "dumpsys", "usagestats", "-c", NULL); 697 run_command("CHECKIN PACKAGE", 30, "dumpsys", "package", "--checkin", NULL); 698 699 printf("========================================================\n"); 700 printf("== Running Application Activities\n"); 701 printf("========================================================\n"); 702 703 run_command("APP ACTIVITIES", 30, "dumpsys", "activity", "all", NULL); 704 705 printf("========================================================\n"); 706 printf("== Running Application Services\n"); 707 printf("========================================================\n"); 708 709 run_command("APP SERVICES", 30, "dumpsys", "activity", "service", "all", NULL); 710 711 printf("========================================================\n"); 712 printf("== Running Application Providers\n"); 713 printf("========================================================\n"); 714 715 run_command("APP SERVICES", 30, "dumpsys", "activity", "provider", "all", NULL); 716 717 718 printf("========================================================\n"); 719 printf("== Final progress (pid %d): %d/%d (originally %d)\n", 720 getpid(), progress, weight_total, WEIGHT_TOTAL); 721 printf("========================================================\n"); 722 printf("== dumpstate: done\n"); 723 printf("========================================================\n"); 724} 725 726static void usage() { 727 fprintf(stderr, "usage: dumpstate [-b soundfile] [-e soundfile] [-o file [-d] [-p] [-z]] [-s] [-q]\n" 728 " -o: write to file (instead of stdout)\n" 729 " -d: append date to filename (requires -o)\n" 730 " -z: generates zipped file (requires -o)\n" 731 " -p: capture screenshot to filename.png (requires -o)\n" 732 " -s: write output to control socket (for init)\n" 733 " -b: play sound file instead of vibrate, at beginning of job\n" 734 " -e: play sound file instead of vibrate, at end of job\n" 735 " -q: disable vibrate\n" 736 " -B: send broadcast when finished (requires -o)\n" 737 " -P: send broadacast when started and update system properties on progress (requires -o and -B)\n" 738 " -R: take bugreport in remote mode (requires -o, -z, -d and -B, shouldn't be used with -P)\n" 739 ); 740} 741 742static void sigpipe_handler(int n) { 743 // don't complain to stderr or stdout 744 _exit(EXIT_FAILURE); 745} 746 747/* adds the temporary report to the existing .zip file, closes the .zip file, and removes the 748 temporary file. 749 */ 750static bool finish_zip_file(const std::string& bugreport_name, const std::string& bugreport_path, 751 time_t now) { 752 if (!add_zip_entry(bugreport_name, bugreport_path)) { 753 ALOGE("Failed to add text entry to .zip file\n"); 754 return false; 755 } 756 757 int32_t err = zip_writer->Finish(); 758 if (err) { 759 ALOGE("zip_writer->Finish(): %s\n", ZipWriter::ErrorCodeString(err)); 760 return false; 761 } 762 763 if (remove(bugreport_path.c_str())) { 764 ALOGW("remove(%s): %s\n", bugreport_path.c_str(), strerror(errno)); 765 } 766 767 return true; 768} 769 770static std::string SHA256_file_hash(std::string filepath) { 771 ScopedFd fd(TEMP_FAILURE_RETRY(open(filepath.c_str(), O_RDONLY | O_NONBLOCK | O_CLOEXEC 772 | O_NOFOLLOW))); 773 if (fd.get() == -1) { 774 ALOGE("open(%s): %s\n", filepath.c_str(), strerror(errno)); 775 return NULL; 776 } 777 778 SHA256_CTX ctx; 779 SHA256_init(&ctx); 780 781 std::vector<uint8_t> buffer(65536); 782 while (1) { 783 ssize_t bytes_read = TEMP_FAILURE_RETRY(read(fd.get(), buffer.data(), buffer.size())); 784 if (bytes_read == 0) { 785 break; 786 } else if (bytes_read == -1) { 787 ALOGE("read(%s): %s\n", filepath.c_str(), strerror(errno)); 788 return NULL; 789 } 790 791 SHA256_update(&ctx, buffer.data(), bytes_read); 792 } 793 794 uint8_t hash[SHA256_DIGEST_SIZE]; 795 memcpy(hash, SHA256_final(&ctx), SHA256_DIGEST_SIZE); 796 char hash_buffer[SHA256_DIGEST_SIZE * 2 + 1]; 797 for(size_t i = 0; i < SHA256_DIGEST_SIZE; i++) { 798 sprintf(hash_buffer + (i * 2), "%02x", hash[i]); 799 } 800 hash_buffer[sizeof(hash_buffer) - 1] = 0; 801 return std::string(hash_buffer); 802} 803 804/* switch to non-root user and group */ 805bool drop_root() { 806 /* ensure we will keep capabilities when we drop root */ 807 if (prctl(PR_SET_KEEPCAPS, 1) < 0) { 808 ALOGE("prctl(PR_SET_KEEPCAPS) failed: %s\n", strerror(errno)); 809 return false; 810 } 811 812 gid_t groups[] = { AID_LOG, AID_SDCARD_R, AID_SDCARD_RW, 813 AID_MOUNT, AID_INET, AID_NET_BW_STATS, AID_READPROC }; 814 if (setgroups(sizeof(groups)/sizeof(groups[0]), groups) != 0) { 815 ALOGE("Unable to setgroups, aborting: %s\n", strerror(errno)); 816 return false; 817 } 818 if (setgid(AID_SHELL) != 0) { 819 ALOGE("Unable to setgid, aborting: %s\n", strerror(errno)); 820 return false; 821 } 822 if (setuid(AID_SHELL) != 0) { 823 ALOGE("Unable to setuid, aborting: %s\n", strerror(errno)); 824 return false; 825 } 826 827 struct __user_cap_header_struct capheader; 828 struct __user_cap_data_struct capdata[2]; 829 memset(&capheader, 0, sizeof(capheader)); 830 memset(&capdata, 0, sizeof(capdata)); 831 capheader.version = _LINUX_CAPABILITY_VERSION_3; 832 capheader.pid = 0; 833 834 capdata[CAP_TO_INDEX(CAP_SYSLOG)].permitted = CAP_TO_MASK(CAP_SYSLOG); 835 capdata[CAP_TO_INDEX(CAP_SYSLOG)].effective = CAP_TO_MASK(CAP_SYSLOG); 836 capdata[0].inheritable = 0; 837 capdata[1].inheritable = 0; 838 839 if (capset(&capheader, &capdata[0]) < 0) { 840 ALOGE("capset failed: %s\n", strerror(errno)); 841 return false; 842 } 843 844 return true; 845} 846 847int main(int argc, char *argv[]) { 848 struct sigaction sigact; 849 int do_add_date = 0; 850 int do_zip_file = 0; 851 int do_vibrate = 1; 852 char* use_outfile = 0; 853 int use_socket = 0; 854 int do_fb = 0; 855 int do_broadcast = 0; 856 int do_early_screenshot = 0; 857 int is_remote_mode = 0; 858 859 now = time(NULL); 860 861 if (getuid() != 0) { 862 // Old versions of the adb client would call the 863 // dumpstate command directly. Newer clients 864 // call /system/bin/bugreport instead. If we detect 865 // we're being called incorrectly, then exec the 866 // correct program. 867 return execl("/system/bin/bugreport", "/system/bin/bugreport", NULL); 868 } 869 870 ALOGI("begin\n"); 871 872 /* clear SIGPIPE handler */ 873 memset(&sigact, 0, sizeof(sigact)); 874 sigact.sa_handler = sigpipe_handler; 875 sigaction(SIGPIPE, &sigact, NULL); 876 877 /* set as high priority, and protect from OOM killer */ 878 setpriority(PRIO_PROCESS, 0, -20); 879 FILE *oom_adj = fopen("/proc/self/oom_adj", "we"); 880 if (oom_adj) { 881 fputs("-17", oom_adj); 882 fclose(oom_adj); 883 } 884 885 /* parse arguments */ 886 int c; 887 while ((c = getopt(argc, argv, "dho:svqzpPBR")) != -1) { 888 switch (c) { 889 case 'd': do_add_date = 1; break; 890 case 'z': do_zip_file = 1; break; 891 case 'o': use_outfile = optarg; break; 892 case 's': use_socket = 1; break; 893 case 'v': break; // compatibility no-op 894 case 'q': do_vibrate = 0; break; 895 case 'p': do_fb = 1; break; 896 case 'P': do_update_progress = 1; break; 897 case 'R': is_remote_mode = 1; break; 898 case 'B': do_broadcast = 1; break; 899 case '?': printf("\n"); 900 case 'h': 901 usage(); 902 exit(1); 903 } 904 } 905 906 if ((do_zip_file || do_add_date || do_update_progress || do_broadcast) && !use_outfile) { 907 usage(); 908 exit(1); 909 } 910 911 if (do_update_progress && !do_broadcast) { 912 usage(); 913 exit(1); 914 } 915 916 if (is_remote_mode && (do_update_progress || !do_broadcast || !do_zip_file || !do_add_date)) { 917 usage(); 918 exit(1); 919 } 920 921 do_early_screenshot = do_update_progress; 922 923 // If we are going to use a socket, do it as early as possible 924 // to avoid timeouts from bugreport. 925 if (use_socket) { 926 redirect_to_socket(stdout, "dumpstate"); 927 } 928 929 /* full path of the directory where the bug report files will be written */ 930 std::string bugreport_dir; 931 932 /* full path of the temporary file containing the bug report */ 933 std::string tmp_path; 934 935 /* full path of the temporary file containing the screenshot (when requested) */ 936 std::string screenshot_path; 937 938 /* base name (without suffix or extensions) of the bug report files */ 939 std::string base_name; 940 941 /* suffix of the bug report files - it's typically the date (when invoked with -d), 942 * although it could be changed by the user using a system property */ 943 std::string suffix; 944 945 /* pointer to the actual path, be it zip or text */ 946 std::string path; 947 948 /* pointer to the zipped file */ 949 std::unique_ptr<FILE, int(*)(FILE*)> zip_file(NULL, fclose); 950 951 /* redirect output if needed */ 952 bool is_redirecting = !use_socket && use_outfile; 953 954 if (is_redirecting) { 955 bugreport_dir = dirname(use_outfile); 956 base_name = basename(use_outfile); 957 if (do_add_date) { 958 char date[80]; 959 strftime(date, sizeof(date), "%Y-%m-%d-%H-%M-%S", localtime(&now)); 960 suffix = date; 961 } else { 962 suffix = "undated"; 963 } 964 if (do_fb) { 965 // TODO: if dumpstate was an object, the paths could be internal variables and then 966 // we could have a function to calculate the derived values, such as: 967 // screenshot_path = GetPath(".png"); 968 screenshot_path = bugreport_dir + "/" + base_name + "-" + suffix + ".png"; 969 } 970 tmp_path = bugreport_dir + "/" + base_name + "-" + suffix + ".tmp"; 971 972 ALOGD("Bugreport dir: %s\nBase name: %s\nSuffix: %s\nTemporary path: %s\n" 973 "Screenshot path: %s\n", bugreport_dir.c_str(), base_name.c_str(), suffix.c_str(), 974 tmp_path.c_str(), screenshot_path.c_str()); 975 976 if (do_zip_file) { 977 ALOGD("Creating initial .zip file"); 978 path = bugreport_dir + "/" + base_name + "-" + suffix + ".zip"; 979 zip_file.reset(fopen(path.c_str(), "wb")); 980 if (!zip_file) { 981 ALOGE("fopen(%s, 'wb'): %s\n", path.c_str(), strerror(errno)); 982 do_zip_file = 0; 983 } else { 984 zip_writer.reset(new ZipWriter(zip_file.get())); 985 } 986 } 987 988 if (do_update_progress) { 989 std::vector<std::string> am_args = { 990 "--receiver-permission", "android.permission.DUMP", 991 "--es", "android.intent.extra.NAME", suffix, 992 "--ei", "android.intent.extra.PID", std::to_string(getpid()), 993 "--ei", "android.intent.extra.MAX", std::to_string(WEIGHT_TOTAL), 994 }; 995 send_broadcast("android.intent.action.BUGREPORT_STARTED", am_args); 996 } 997 } 998 999 /* read /proc/cmdline before dropping root */ 1000 FILE *cmdline = fopen("/proc/cmdline", "re"); 1001 if (cmdline) { 1002 fgets(cmdline_buf, sizeof(cmdline_buf), cmdline); 1003 fclose(cmdline); 1004 } 1005 1006 /* open the vibrator before dropping root */ 1007 std::unique_ptr<FILE, int(*)(FILE*)> vibrator(NULL, fclose); 1008 if (do_vibrate) { 1009 vibrator.reset(fopen("/sys/class/timed_output/vibrator/enable", "we")); 1010 if (vibrator) { 1011 vibrate(vibrator.get(), 150); 1012 } 1013 } 1014 1015 if (do_fb && do_early_screenshot) { 1016 if (screenshot_path.empty()) { 1017 // should not have happened 1018 ALOGE("INTERNAL ERROR: skipping early screenshot because path was not set"); 1019 } else { 1020 ALOGI("taking early screenshot\n"); 1021 take_screenshot(screenshot_path); 1022 ALOGI("wrote screenshot: %s\n", screenshot_path.c_str()); 1023 if (chown(screenshot_path.c_str(), AID_SHELL, AID_SHELL)) { 1024 ALOGE("Unable to change ownership of screenshot file %s: %s\n", 1025 screenshot_path.c_str(), strerror(errno)); 1026 } 1027 } 1028 } 1029 1030 if (do_zip_file) { 1031 if (chown(path.c_str(), AID_SHELL, AID_SHELL)) { 1032 ALOGE("Unable to change ownership of zip file %s: %s\n", path.c_str(), strerror(errno)); 1033 } 1034 } 1035 1036 /* collect stack traces from Dalvik and native processes (needs root) */ 1037 dump_traces_path = dump_traces(); 1038 1039 /* Get the tombstone fds, recovery files, and mount info here while we are running as root. */ 1040 get_tombstone_fds(tombstone_data); 1041 add_dir(RECOVERY_DIR, true); 1042 add_mountinfo(); 1043 1044 if (!drop_root()) { 1045 return -1; 1046 } 1047 1048 if (is_redirecting) { 1049 /* TODO: rather than generating a text file now and zipping it later, 1050 it would be more efficient to redirect stdout to the zip entry 1051 directly, but the libziparchive doesn't support that option yet. */ 1052 redirect_to_file(stdout, const_cast<char*>(tmp_path.c_str())); 1053 } 1054 // NOTE: there should be no stdout output until now, otherwise it would break the header. 1055 // In particular, DurationReport objects should be created passing 'title, NULL', so their 1056 // duration is logged into ALOG instead. 1057 print_header(); 1058 1059 dumpstate(do_early_screenshot ? "": screenshot_path); 1060 1061 /* done */ 1062 if (vibrator) { 1063 for (int i = 0; i < 3; i++) { 1064 vibrate(vibrator.get(), 75); 1065 usleep((75 + 50) * 1000); 1066 } 1067 } 1068 1069 /* close output if needed */ 1070 if (is_redirecting) { 1071 fclose(stdout); 1072 } 1073 1074 /* rename or zip the (now complete) .tmp file to its final location */ 1075 if (use_outfile) { 1076 1077 /* check if user changed the suffix using system properties */ 1078 char key[PROPERTY_KEY_MAX]; 1079 char value[PROPERTY_VALUE_MAX]; 1080 sprintf(key, "dumpstate.%d.name", getpid()); 1081 property_get(key, value, ""); 1082 bool change_suffix= false; 1083 if (value[0]) { 1084 /* must whitelist which characters are allowed, otherwise it could cross directories */ 1085 std::regex valid_regex("^[-_a-zA-Z0-9]+$"); 1086 if (std::regex_match(value, valid_regex)) { 1087 change_suffix = true; 1088 } else { 1089 ALOGE("invalid suffix provided by user: %s", value); 1090 } 1091 } 1092 if (change_suffix) { 1093 ALOGI("changing suffix from %s to %s", suffix.c_str(), value); 1094 suffix = value; 1095 if (!screenshot_path.empty()) { 1096 std::string new_screenshot_path = 1097 bugreport_dir + "/" + base_name + "-" + suffix + ".png"; 1098 if (rename(screenshot_path.c_str(), new_screenshot_path.c_str())) { 1099 ALOGE("rename(%s, %s): %s\n", screenshot_path.c_str(), 1100 new_screenshot_path.c_str(), strerror(errno)); 1101 } else { 1102 screenshot_path = new_screenshot_path; 1103 } 1104 } 1105 } 1106 1107 bool do_text_file = true; 1108 if (do_zip_file) { 1109 ALOGD("Adding text entry to .zip bugreport"); 1110 if (!finish_zip_file(base_name + "-" + suffix + ".txt", tmp_path, now)) { 1111 ALOGE("Failed to finish zip file; sending text bugreport instead\n"); 1112 do_text_file = true; 1113 } else { 1114 do_text_file = false; 1115 } 1116 } 1117 if (do_text_file) { 1118 ALOGD("Generating .txt bugreport"); 1119 path = bugreport_dir + "/" + base_name + "-" + suffix + ".txt"; 1120 if (rename(tmp_path.c_str(), path.c_str())) { 1121 ALOGE("rename(%s, %s): %s\n", tmp_path.c_str(), path.c_str(), strerror(errno)); 1122 path.clear(); 1123 } 1124 } 1125 } 1126 1127 /* tell activity manager we're done */ 1128 if (do_broadcast) { 1129 if (!path.empty()) { 1130 ALOGI("Final bugreport path: %s\n", path.c_str()); 1131 std::vector<std::string> am_args = { 1132 "--receiver-permission", "android.permission.DUMP", "--receiver-foreground", 1133 "--ei", "android.intent.extra.PID", std::to_string(getpid()), 1134 "--es", "android.intent.extra.BUGREPORT", path 1135 }; 1136 if (do_fb) { 1137 am_args.push_back("--es"); 1138 am_args.push_back("android.intent.extra.SCREENSHOT"); 1139 am_args.push_back(screenshot_path); 1140 } 1141 if (is_remote_mode) { 1142 am_args.push_back("--es"); 1143 am_args.push_back("android.intent.extra.REMOTE_BUGREPORT_HASH"); 1144 am_args.push_back(SHA256_file_hash(path)); 1145 send_broadcast("android.intent.action.REMOTE_BUGREPORT_FINISHED", am_args); 1146 } else { 1147 send_broadcast("android.intent.action.BUGREPORT_FINISHED", am_args); 1148 } 1149 } else { 1150 ALOGE("Skipping finished broadcast because bugreport could not be generated\n"); 1151 } 1152 } 1153 1154 ALOGD("Final progress: %d/%d (originally %d)\n", progress, weight_total, WEIGHT_TOTAL); 1155 ALOGI("done\n"); 1156 1157 return 0; 1158} 1159