| 123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300 |
- name: Kernel Build Process
- permissions:
- contents: write
- actions: write
- on:
- workflow_call:
- inputs:
- kernel_version:
- required: true
- type: string
- variant:
- required: false
- type: string
- ksu_commit:
- required: false
- type: string
- anykernel_commit:
- required: false
- type: string
- patches_commit:
- required: false
- type: string
- susfs_commit:
- required: false
- type: string
- feature_set:
- required: true
- type: string
- use_repo:
- required: false
- type: boolean
- jobs:
- build-gki:
- name: "${{ inputs.kernel_version }} (${{ inputs.variant }})"
- runs-on: ubuntu-latest
- timeout-minutes: 60
- steps:
- - name: Checkout Repository
- uses: actions/checkout@v5
- - name: Parse kernel version
- id: parse
- uses: ./.github/actions/parse-kernel-version
- with:
- kernel_version: ${{ inputs.kernel_version }}
- - name: Free Disk Space
- if: true
- uses: endersonmenezes/free-disk-space@v3 # Use @main for latest, @v3 for stable
- with:
- remove_android: true
- remove_dotnet: true
- remove_haskell: true
- remove_tool_cache: true
- remove_packages: "azure-cli google-cloud-cli microsoft-edge-stable google-chrome-stable firefox postgresql* temurin-* *llvm* mysql* dotnet-sdk-*"
- remove_packages_one_command: true
- remove_folders: "/usr/share/swift /usr/share/miniconda /usr/share/az* /usr/local/lib/node_modules /usr/local/share/chromium /usr/local/share/powershell /usr/local/julia /usr/local/aws-cli /usr/local/aws-sam-cli /usr/share/gradle"
- rm_cmd: "rmz" # Use 'rmz' for faster deletion (default: 'rm')
- rmz_version: "3.1.1" # Required when rm_cmd is 'rmz'
- testing: false
- - name: Setup more Swap (for LTO)
- uses: thejerrybao/setup-swap-space@v1 # or pierotofy/set-swap-space
- with:
- swap-size-gb: 25 # 10-24 GB is common for heavy LTO
- # swap-space-path: /mnt/swapfile # optional
- - name: Setup Build Environment
- uses: ./.github/actions/setup-build-environment
- env:
- BOOT_SIGN_KEY: ${{ secrets.BOOT_SIGN_KEY }}
- with:
- patches_commit: ${{ inputs.patches_commit }}
- anykernel_commit: ${{ inputs.anykernel_commit }}
-
- - name: Download Kernel Repository
- uses: ./.github/actions/download-kernel
- with:
- android_version: ${{ steps.parse.outputs.android_version }}
- kernel_version: ${{ steps.parse.outputs.kernel_version }}
- os_patch_level: ${{ steps.parse.outputs.os_patch_level }}
- use_repo: ${{ inputs.use_repo }}
- - name: Grep for vm_flags_clear after download
- run: |
- grep -n 'vm_flags_clear' ${{ github.workspace }}/kernel/common/mm/mmap.c || echo 'Not found'
- - name: Extract Sublevel and Set File Name
- id: extract
- uses: ./.github/actions/extract-sublevel-file-name
- with:
- variant: ${{ matrix.variant }}
- - name: Kernel Fixes
- uses: ./.github/actions/kernel-fixes
- with:
- android_version: ${{ steps.parse.outputs.android_version }}
- kernel_version: ${{ steps.parse.outputs.kernel_version }}
- sublevel: ${{ steps.extract.outputs.sublevel }}
- os_patch_level: ${{ steps.parse.outputs.os_patch_level }}
- - name: Setup KernelSU-Next
- if: contains(inputs.feature_set, 'KSUN') || inputs.feature_set == 'FULL'
- uses: ./.github/actions/kernelsu
- with:
- ksu_commit: ${{ inputs.ksu_commit }}
- - name: SUSFS
- if: contains(inputs.feature_set, 'SUSFS') || inputs.feature_set == 'FULL'
- uses: ./.github/actions/susfs
- with:
- android_version: ${{ steps.parse.outputs.android_version }}
- kernel_version: ${{ steps.parse.outputs.kernel_version }}
- os_patch_level: ${{ steps.parse.outputs.os_patch_level }}
- sublevel: ${{ steps.extract.outputs.sublevel }}
- susfs_commit: ${{ inputs.susfs_commit }}
- - name: Baseband Guard
- if: contains(inputs.feature_set, 'BBG') || inputs.feature_set == 'FULL'
- uses: ./.github/actions/bbg
- - name: Setup Networking
- if: contains(inputs.feature_set, 'NET') || inputs.feature_set == 'FULL'
- uses: ./.github/actions/networking
- with:
- kernel_version: ${{ steps.parse.outputs.kernel_version }}
- android_version: ${{ steps.parse.outputs.android_version }}
- - name: Setup Misc Configs
- uses: ./.github/actions/misc
- with:
- kernel_version: ${{ steps.parse.outputs.kernel_version }}
- android_version: ${{ steps.parse.outputs.android_version }}
- - name: Apply Module Check Bypass
- if: ${{ matrix.variant == 'Bypass' }}
- uses: ./.github/actions/module-check-bypass
- with:
- kernel_version: ${{ steps.parse.outputs.kernel_version }}
- - name: Apply Device-Specific Patches
- uses: ./.github/actions/apply-device-patches
- with:
- kernel_version: ${{ steps.parse.outputs.kernel_version }}
- - name: Apply ABI Compare Bypass
- if: false
- working-directory: ${{ github.workspace }}/kernel
- run: |
- # ABI compare bypass per kernel/android version
- # Edit each block as needed per version
- if [[ "$ANDROID_VERSION" == "android12" && "$KERNEL_VERSION" == "5.10" ]]; then
- sed -i 's/^\s*exit 1$/ echo "Who Cares? Bypassing Now!"/' build/abi/compare_to_symbol_list
- elif [[ "$ANDROID_VERSION" == "android13" && "$KERNEL_VERSION" == "5.10" ]]; then
- sed -i 's/^\s*exit 1$/ echo "Who Cares? Bypassing Now!"/' build/kernel/abi/compare_to_symbol_list
- elif [[ "$ANDROID_VERSION" == "android13" && "$KERNEL_VERSION" == "5.15" ]]; then
- sed -i 's/^\s*exit 1$/ echo "Who Cares? Bypassing Now!"/' build/kernel/abi/compare_to_symbol_list
- elif [[ "$ANDROID_VERSION" == "android14" && "$KERNEL_VERSION" == "5.15" ]]; then
- perl -i -pe 's/^(\s*)return 1$/$1print("Who Cares? Bypassing Now!")\n$1return 0/g if /if missing_symbols:/../return 1/' build/kernel/abi/check_buildtime_symbol_protection.py
- elif [[ "$ANDROID_VERSION" == "android14" && "$KERNEL_VERSION" == "6.1" ]]; then
- perl -i -pe 's/^(\s*)return 1$/$1print("Who Cares? Bypassing Now!")\n$1return 0/g if /if missing_symbols:/../return 1/' build/kernel/abi/check_buildtime_symbol_protection.py
- elif [[ "$ANDROID_VERSION" == "android15" && "$KERNEL_VERSION" == "6.6" ]]; then
- perl -i -pe 's/^(\s*)return 1$/$1print("Who Cares? Bypassing Now!")\n$1return 0/g if /if missing_symbols:/../return 1/' build/kernel/abi/check_buildtime_symbol_protection.py
- fi
- - name: Apply Kernel Branding
- uses: ./.github/actions/apply-kernel-branding
- with:
- variant: ${{ matrix.variant }}
- kernel_version: ${{ steps.parse.outputs.kernel_version }}
- android_version: ${{ steps.parse.outputs.android_version }}
- sublevel: ${{ steps.extract.outputs.sublevel }}
- - name: Remove Protected Exports
- uses: ./.github/actions/remove-protected-exports
- - name: Clean Kernel Flags
- uses: ./.github/actions/clean-kernel-flags
- - name: Scan and collect patch rejects
- id: scan
- if: ${{ always() && inputs.variant == 'Normal' }}
- uses: ./.github/actions/scan-patch-rejects
-
- - name: Upload Rejects
- if: ${{ always() && inputs.variant == 'Normal' }}
- uses: actions/upload-artifact@v7
- with:
- name: ${{ steps.extract.outputs.file_name }}-Rejects
- path: patch-rejects/
- if-no-files-found: ignore
- compression-level: 9
- - name: Grep for vm_flags_clear before build
- run: |
- grep -n 'vm_flags_clear' ${{ github.workspace }}/kernel/common/mm/mmap.c || echo 'Not found'
- - name: Restore build caches (ccache, Bazel)
- uses: actions/cache@v4
- with:
- path: |
- .ccache
- bazel-*
- .cache/bazel
- key: buildcache-${{ inputs.kernel_version }}
- restore-keys: |
- buildcache-
- - name: ♻️ Configure ccache (bounded)
- run: |
- echo "::group::Configure ccache environment"
- set -euo pipefail
- if command -v ccache >/dev/null 2>&1; then
- CACHE_DIR="${{ github.workspace }}/.ccache"
- mkdir -p "$CACHE_DIR"
- SETTINGS=(
- "CCACHE_DIR=$CACHE_DIR"
- "CCACHE_MAXSIZE=1G"
- "CCACHE_COMPILERCHECK=content"
- "CCACHE_BASEDIR=${GITHUB_WORKSPACE}"
- "CCACHE_NOHASHDIR=true"
- "CCACHE_IGNOREOPTIONS=--sysroot*"
- "CCACHE_COMPRESSION=true"
- "CCACHE_COMPRESSION_LEVEL=3"
- "CCACHE_DIRECT=true"
- "CCACHE_FILE_CLONE=true"
- "CCACHE_INODE_CACHE=true"
- "CCACHE_UMASK=002"
- "CCACHE_SLOPPINESS=file_macro,time_macros,include_file_mtime,include_file_ctime,pch_defines,system_headers,locale"
- )
- for setting in "${SETTINGS[@]}"; do
- export "$setting"
- echo "$setting" >> "$GITHUB_ENV"
- done
- if ccache --help 2>&1 | grep -q 'depend_mode'; then
- export CCACHE_DEPEND=true
- echo "CCACHE_DEPEND=true" >> "$GITHUB_ENV"
- fi
- echo "✅ ccache configured successfully"
- echo "Current ccache configuration:"
- ccache -p
- else
- echo "ccache not found, skipping configuration."
- fi
- echo "::endgroup::"
- - name: Build Kernel
- env:
- SOURCE_DATE_EPOCH: ${{ env.SOURCE_DATE_EPOCH }}
- KBUILD_BUILD_TIMESTAMP: ${{ env.KBUILD_BUILD_TIMESTAMP }}
- uses: ./.github/actions/build-kernel
- - name: Save build caches (ccache, Bazel)
- if: always()
- uses: actions/cache@v4
- with:
- path: |
- .ccache
- bazel-*
- .cache/bazel
- key: buildcache-${{ inputs.kernel_version }}
- - name: Create Bootimgs Folder and Build Boot Images
- uses: ./.github/actions/build-boot-images
- - name: Upload Boot Image (boot.img)
- uses: actions/upload-artifact@v7
- with:
- path: ${{ github.workspace }}/boot-artifacts/${{ steps.extract.outputs.file_name }}-boot.img
- if-no-files-found: error
- archive: false
- - name: Upload Boot Image (boot-gz.img)
- uses: actions/upload-artifact@v7
- with:
- path: ${{ github.workspace }}/boot-artifacts/${{ steps.extract.outputs.file_name }}-boot-gz.img
- if-no-files-found: error
- archive: false
- - name: Upload Boot Image (boot-lz4.img)
- uses: actions/upload-artifact@v7
- with:
- path: ${{ github.workspace }}/boot-artifacts/${{ steps.extract.outputs.file_name }}-boot-lz4.img
- if-no-files-found: error
- archive: false
- - name: Prepare AnyKernel3 Zip
- uses: ./.github/actions/prepare-anykernel3
- - name: Upload Artifacts
- uses: actions/upload-artifact@v7
- with:
- name: ${{ steps.extract.outputs.file_name }}-AnyKernel3
- path: ${{ github.workspace }}/AnyKernel3/**
- if-no-files-found: ignore
- compression-level: 9
|