build.yml 16 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392
  1. name: Kernel Build Process
  2. permissions:
  3. contents: write
  4. actions: write
  5. on:
  6. workflow_call:
  7. inputs:
  8. branch:
  9. required: true
  10. type: string
  11. android_version:
  12. required: true
  13. type: string
  14. kernel_version:
  15. required: true
  16. type: string
  17. jobs:
  18. build-samsung-gki:
  19. name: "${{ inputs.branch }}-${{ inputs.kernel_version }}-${{ inputs.android_version }}"
  20. runs-on: ubuntu-latest
  21. strategy:
  22. fail-fast: false
  23. steps:
  24. - name: Check Initial Disk Space
  25. run: |
  26. echo "===== Initial Total Disk Space in GB ====="
  27. df -BG
  28. - name: Download Apache Arrow's util_free_space.sh
  29. run: |
  30. curl -L -o util_free_space.sh https://raw.githubusercontent.com/apache/arrow/main/ci/scripts/util_free_space.sh
  31. chmod +x util_free_space.sh
  32. ./util_free_space.sh
  33. - name: Check Disk Space After Cleanup
  34. run: |
  35. echo "===== Total Disk Space After Cleanup in GB ====="
  36. df -BG
  37. - name: Set CONFIG Environment Variable
  38. run: |
  39. # Set CONFIG dynamically based on inputs values
  40. CONFIG="${{ inputs.branch }}-${{ inputs.android_version }}-${{ inputs.kernel_version }}"
  41. # Set CONFIG as an environment variable for future steps
  42. echo "CONFIG=$CONFIG" >> $GITHUB_ENV
  43. - name: Clone AnyKernel3 and Other Dependencies
  44. run: |
  45. ANYKERNEL_BRANCH="gki-2.0"
  46. SUSFS_BRANCH="gki-${{ inputs.android_version }}-${{ inputs.kernel_version }}"
  47. git clone https://github.com/WildKernels/AnyKernel3.git -b "$ANYKERNEL_BRANCH"
  48. git clone https://github.com/WildKernels/kernel_patches.git
  49. git clone https://gitlab.com/simonpunk/susfs4ksu.git -b "$SUSFS_BRANCH"
  50. - name: Clone Kernel Source
  51. run: |
  52. git clone https://github.com/WildKernels/Samsung_Kernels.git -b ${{ inputs.branch }} $CONFIG
  53. - name: Extract all tar.xz files and delete them
  54. run: |
  55. find . -type f -name '*.tar.xz' -print0 | while IFS= read -r -d '' file; do
  56. echo "Extracting $file"
  57. tar -xf "$file"
  58. rm "$file"
  59. done
  60. - name: Check Directory Space Usage
  61. run: |
  62. echo "===== Total Disk Space After Kernel Download in GB ====="
  63. df -BG
  64. echo "===== Directory Space Usage in GB ====="
  65. du -BG -d 1 | sort -nr
  66. echo "===== $CONFIG Directory Space Usage in GB ====="
  67. cd "$CONFIG"
  68. du -BG -d 2 | sort -nr
  69. - name: Add KernelSU
  70. run: |
  71. cd "$CONFIG/kernel_platform/common"
  72. curl -LSs "https://raw.githubusercontent.com/WildKernels/Wild_KSU/wild/kernel/setup.sh" | bash -s wild
  73. - name: Getting KernelSU Version
  74. run: |
  75. cd "$CONFIG/kernel_platform/common/Wild_KSU/kernel"
  76. BASE_VERSION=10200
  77. COMMIT_COUNT=$(/usr/bin/git rev-list --count HEAD)
  78. KSU_VERSION=$(expr $COMMIT_COUNT "+" $BASE_VERSION)
  79. echo "KSUVER=$KSU_VERSION" >> $GITHUB_ENV
  80. # change KSU version in makefile, scamsung things
  81. MAKEFILE="Makefile"
  82. sed -i "s/ccflags-y += -DKSU_VERSION=[0-9]\+/ccflags-y += -DKSU_VERSION=${KSU_VERSION}/" "$MAKEFILE"
  83. echo "✅ Updated KSU version to ${KSU_VERSION} in $MAKEFILE"
  84. - name: Apply SUSFS Patches for KernelSU Variants
  85. run: |
  86. cd "$CONFIG"
  87. # Apply compatibility fixes
  88. SUSFS_VERSION="1.5.12"
  89. cp ../susfs4ksu/kernel_patches/fs/* ./kernel_platform/common/fs/
  90. cp ../susfs4ksu/kernel_patches/include/linux/* ./kernel_platform/common/include/linux/
  91. # Apply core SUSFS patches
  92. cp ../susfs4ksu/kernel_patches/50_add_susfs_in_gki-${{ inputs.android_version }}-${{ inputs.kernel_version }}.patch ./kernel_platform/common/
  93. cd kernel_platform/common
  94. # Apply SUSFS core patch
  95. patch -p1 < 50_add_susfs_in_gki-${{ inputs.android_version }}-${{ inputs.kernel_version }}.patch || true
  96. # Fix SUSFS rejects
  97. if [[ "${{ inputs.branch }}" == "SM-S928B-Oneui7" || "${{ inputs.branch }}" == "SM-S928B-Oneui8" ]]; then
  98. cp ../../../kernel_patches/samsung/S24U/* ./
  99. patch -p1 < fix_namespace.patch
  100. patch -p1 < fix_base.patch
  101. elif [[ "${{ inputs.branch }}" == "SM-A366B" ]]; then
  102. cp ../../../kernel_patches/samsung/${{ inputs.branch }}/* ./
  103. patch -p1 < fix_namespace.patch
  104. patch -p1 < fix_base.patch
  105. patch -p1 < fix_taskmmu.patch
  106. elif [[ "${{ inputs.branch }}" == "SM-X916B" ]]; then
  107. cp ../../../kernel_patches/samsung/${{ inputs.branch }}/* ./
  108. patch -p1 < fix_namespace.patch
  109. patch -p1 < fix_base.patch
  110. elif [[ "${{ inputs.branch }}" == "SM-F946N" ]]; then
  111. cp ../../../kernel_patches/samsung/${{ inputs.branch }}/* ./
  112. patch -p1 < fix_namespace.patch
  113. patch -p1 < fix_base.patch
  114. fi
  115. # Apply KSU integration patches
  116. cd Wild_KSU
  117. cp ../../../../susfs4ksu/kernel_patches/KernelSU/10_enable_susfs_for_ksu.patch .
  118. patch -p1 < 10_enable_susfs_for_ksu.patch || true
  119. cp ../../../../kernel_patches/wild/susfs_fix_patches/v${SUSFS_VERSION}/fix_core_hook.c.patch ./
  120. patch -p1 < fix_core_hook.c.patch
  121. cp ../../../../kernel_patches/wild/susfs_fix_patches/v${SUSFS_VERSION}/fix_sucompat.c.patch ./
  122. patch -p1 < fix_sucompat.c.patch
  123. cp ../../../../kernel_patches/wild/susfs_fix_patches/v${SUSFS_VERSION}/fix_kernel_compat.c.patch ./
  124. patch -p1 < fix_kernel_compat.c.patch
  125. - name: Apply Hooks Patches
  126. run: |
  127. cd "$CONFIG/kernel_platform/common"
  128. cp ../../../kernel_patches/wild/hooks/scope_min_manual_hooks_v1.4.patch ./
  129. if [[ "${{ inputs.branch }}" == "SM-A366B" ]]; then
  130. patch -p1 < scope_min_manual_hooks_v1.4.patch || true
  131. else
  132. patch -p1 < scope_min_manual_hooks_v1.4.patch || true
  133. patch -p1 < fix_exec.patch
  134. fi
  135. - name: Add BBG
  136. run: |
  137. cd "$CONFIG/kernel_platform/common"
  138. echo "Adding BBG..."
  139. wget -O- https://github.com/vc-teahouse/Baseband-guard/raw/main/setup.sh | bash
  140. sed -i '/^config LSM$/,/^help$/{ /^[[:space:]]*default/ { /baseband_guard/! s/lockdown/lockdown,baseband_guard/ } }' security/Kconfig
  141. - name: Set Kernel Configuration Variables
  142. run: |
  143. cd "$CONFIG/kernel_platform/common"
  144. echo "Initializing kernel configuration..."
  145. patch -p1 < config.patch
  146. # Remove check_defconfig
  147. sed -i 's/check_defconfig//' ./build.config.gki
  148. - name: Change Kernel Name
  149. run: |
  150. cd "$CONFIG/kernel_platform"
  151. #Add Wild to Kernel Version
  152. sed -i '$s|echo "\$res"|echo "\$res-Wild"|' ./common/scripts/setlocalversion
  153. #Set Kernel Timestamp
  154. perl -pi -e 's{UTS_VERSION="\$\(echo \$UTS_VERSION \$CONFIG_FLAGS \$TIMESTAMP \| cut -b -\$UTS_LEN\)"}{UTS_VERSION="#1 SMP PREEMPT Sun Apr 20 04:20:00 UTC 2025"}' ./common/scripts/mkcompile_h
  155. if [ -f "build/build.sh" ]; then
  156. #Remove Dirty Flag
  157. sed -i 's/-dirty//' ./common/scripts/setlocalversion
  158. else
  159. #Remove Dirty Flag
  160. sed -i "/stable_scmversion_cmd/s/-maybe-dirty//g" ./build/kernel/kleaf/impl/stamp.bzl
  161. #Remove Abi Exports and Error
  162. #rm -rf ./common/android/abi_gki_protected_exports_*
  163. #perl -pi -e 's/^\s*"protected_exports_list"\s*:\s*"android\/abi_gki_protected_exports_aarch64",\s*$//;' ./common/BUILD.bazel
  164. fi
  165. - name: Set file name
  166. run: |
  167. ARTIFACT_BASE="${{ inputs.branch }}-${{ inputs.kernel_version }}-${{ inputs.android_version }}"
  168. echo "ARTIFACT_BASE=$ARTIFACT_BASE" >> $GITHUB_ENV
  169. echo "FILE_NAME=$ARTIFACT_BASE" >> $GITHUB_ENV
  170. - name: Build
  171. run : |
  172. set -e
  173. set -x
  174. cd "$CONFIG"
  175. chmod +x build_kernel_GKI.sh
  176. echo "Building the kernel..."
  177. if [[ "${{ inputs.branch }}" == "SM-S928B-Oneui7" || "${{ inputs.branch }}" == "SM-S928B-Oneui8" ]]; then
  178. ./build_kernel_GKI.sh
  179. else
  180. #temporarily using this until i can figure out the other phones build script issues
  181. cd kernel_platform
  182. tools/bazel build --config=fast --lto=thin //common:kernel_aarch64_dist || exit 1
  183. fi
  184. - name: Prepare AnyKernel3
  185. run: |
  186. # Copy Image from normal build locations
  187. #if [ -f "./$CONFIG/out/${{ inputs.android_version }}-${{ inputs.kernel_version }}/dist/Image" ]; then
  188. # cp ./$CONFIG/out/${{ inputs.android_version }}-${{ inputs.kernel_version }}/dist/Image AnyKernel3/Image
  189. #elif [ -f "./$CONFIG/bazel-bin/common/kernel_aarch64/Image" ]; then
  190. # cp ./$CONFIG/bazel-bin/common/kernel_aarch64/Image AnyKernel3/Image
  191. #else
  192. # echo "Error: Image file not found in any expected location"
  193. # exit 1
  194. #fi
  195. cd "$CONFIG"
  196. if [[ "${{ inputs.branch }}" == "SM-S928B-Oneui7" || "${{ inputs.branch }}" == "SM-S928B-Oneui8" ]]; then
  197. cp ./kernel_platform/sec/dist/Image ../AnyKernel3/Image
  198. elif [[ -f ./$CONFIG/bazel-bin/common/kernel_aarch64/Image ]]; then
  199. cp ./$CONFIG/bazel-bin/common/kernel_aarch64/Image ../AnyKernel3/Image
  200. else
  201. echo "Error: Image file not found in any expected location"
  202. exit 1
  203. fi
  204. - name: Create Bootimgs Folder and Copy Images for Android 14/15
  205. if: ${{ inputs.android_version == 'android14' || inputs.android_version == 'android15' }}
  206. run: |
  207. #mkdir bootimgs
  208. #cp ./$CONFIG/bazel-bin/common/kernel_aarch64/Image ./bootimgs
  209. #cp ./$CONFIG/bazel-bin/common/kernel_aarch64/Image.lz4 ./bootimgs
  210. #cp ./$CONFIG/bazel-bin/common/kernel_aarch64/Image ./${{ env.FILE_NAME }}-Image
  211. #cp ./$CONFIG/bazel-bin/common/kernel_aarch64/Image.lz4 ./${{ env.FILE_NAME }}-Image.lz4
  212. # Create gzip of the Image file
  213. #gzip -n -k -f -9 ./${{ env.FILE_NAME }}-Image > ./${{ env.FILE_NAME }}-Image.gz
  214. #gzip -n -k -f -9 ./bootimgs/Image > ./bootimgs/Image.gz
  215. #cp ./boot-lz4.img ../${{ env.FILE_NAME }}-boot-lz4.img
  216. - name: Upload AnyKernel3 Artifacts
  217. id: upload_ak3
  218. uses: actions/upload-artifact@v4
  219. with:
  220. name: ${{ env.FILE_NAME }}-AnyKernel3
  221. path: |
  222. ./AnyKernel3/**
  223. compression-level: 9
  224. - name: Scan and collect patch rejects
  225. if: ${{ always() }}
  226. run: |
  227. set -e
  228. CONFIG_DIR="$CONFIG"
  229. REJECTS_DIR="$GITHUB_WORKSPACE/patch-rejects"
  230. mkdir -p "$REJECTS_DIR"
  231. # Find all .rej files under the configuration directory
  232. mapfile -t REJS < <(find "$CONFIG_DIR" -type f -name '*.rej')
  233. REJ_COUNT=${#REJS[@]}
  234. echo "Found $REJ_COUNT .rej files under $CONFIG_DIR"
  235. echo "REJ_COUNT=$REJ_COUNT" >> $GITHUB_ENV
  236. if [ "$REJ_COUNT" -gt 0 ]; then
  237. for REJ in "${REJS[@]}"; do
  238. # Relative path from $CONFIG
  239. REL="${REJ#"$CONFIG_DIR"/}"
  240. DEST="$REJECTS_DIR/$REL"
  241. mkdir -p "$(dirname "$DEST")"
  242. cp "$REJ" "$DEST"
  243. # Copy the associated original file alongside the .rej
  244. ORIG="${REJ%.rej}"
  245. if [ -f "$ORIG" ]; then
  246. ORIG_DEST="$REJECTS_DIR/${REL%.rej}"
  247. mkdir -p "$(dirname "$ORIG_DEST")"
  248. cp "$ORIG" "$ORIG_DEST"
  249. fi
  250. echo "$REL" >> "$REJECTS_DIR/index.txt"
  251. done
  252. fi
  253. - name: Generate Build Summary
  254. if: ${{ always() }}
  255. run: |
  256. # Create build summary file for inclusion in Misc artifact
  257. echo "# Kernel Build Summary" > build_summary.md
  258. # Add build variant header
  259. echo "## ${{ env.FILE_NAME }}" >> build_summary.md
  260. # Add build info
  261. echo "## Build Information" >> build_summary.md
  262. echo "- **Android Version**: ${{ inputs.android_version }}" >> build_summary.md
  263. echo "- **Kernel Version**: ${{ inputs.kernel_version }}.${{ inputs.sub_level }}" >> build_summary.md
  264. echo "- **BBG**: Installed" >> build_summary.md
  265. echo "- **Bypass Mode**: ${{ matrix.apply_bypass }}" >> build_summary.md
  266. echo "" >> build_summary.md
  267. # Get Wild_KSU commit
  268. if [ -d "$CONFIG/Wild_KSU" ]; then
  269. cd "$CONFIG/Wild_KSU"
  270. WKSU_COMMIT=$(git rev-parse HEAD)
  271. WKSU_URL="https://github.com/WildKernels/Wild_KSU/commit/$WKSU_COMMIT"
  272. echo "- **Wild_KSU**: [$WKSU_COMMIT]($WKSU_URL)" >> "$GITHUB_WORKSPACE/build_summary.md"
  273. cd "$GITHUB_WORKSPACE"
  274. else
  275. echo "- **Wild_KSU**: not present" >> build_summary.md
  276. fi
  277. # Get Baseband-guard commit
  278. if [ -d "$CONFIG/Baseband-guard" ]; then
  279. cd "$CONFIG/Baseband-guard"
  280. BBG_COMMIT=$(git rev-parse HEAD)
  281. BBG_URL="https://github.com/vc-teahouse/Baseband-guard/commit/$BBG_COMMIT"
  282. echo "- **Baseband-guard**: [$BBG_COMMIT]($BBG_URL)" >> "$GITHUB_WORKSPACE/build_summary.md"
  283. cd "$GITHUB_WORKSPACE"
  284. else
  285. echo "- **Baseband-guard**: not present" >> build_summary.md
  286. fi
  287. # Get SUSFS4KSU commit
  288. if [ -d "$GITHUB_WORKSPACE/susfs4ksu" ]; then
  289. cd "$GITHUB_WORKSPACE/susfs4ksu"
  290. SUSFS_COMMIT=$(git rev-parse HEAD)
  291. SUSFS_URL="https://gitlab.com/simonpunk/susfs4ksu/-/commit/$SUSFS_COMMIT"
  292. echo "- **SUSFS4KSU (v1.5.12)**: [$SUSFS_COMMIT]($SUSFS_URL)" >> "$GITHUB_WORKSPACE/build_summary.md"
  293. cd "$GITHUB_WORKSPACE"
  294. else
  295. echo "- **SUSFS4KSU (v1.5.12)**: not present" >> build_summary.md
  296. fi
  297. echo "" >> build_summary.md
  298. # Add artifact summary with presence verification
  299. echo "## Build Artifacts" >> build_summary.md
  300. # Verify AnyKernel3 contents - check if kernel Image was actually copied (indicates successful build)
  301. if [ -d "AnyKernel3" ] && [ -f "AnyKernel3/Image" ]; then
  302. AK3_STATUS="✅"
  303. else
  304. AK3_STATUS="❌"
  305. fi
  306. echo "- **AnyKernel3**: $AK3_STATUS ${{ env.FILE_NAME }}-AnyKernel3" >> build_summary.md
  307. echo "### Misc (uploaded files)" >> build_summary.md
  308. FILES_PRESENT=0
  309. for f in "${{ env.FILE_NAME }}-Image" "${{ env.FILE_NAME }}-Image.gz" "${{ env.FILE_NAME }}-Image.lz4" "${{ env.FILE_NAME }}-boot.img" "${{ env.FILE_NAME }}-boot-gz.img" "${{ env.FILE_NAME }}-boot-lz4.img"; do
  310. if [ -f "$f" ]; then FILES_PRESENT=$((FILES_PRESENT+1)); fi
  311. done
  312. if [ "$FILES_PRESENT" -gt 0 ]; then
  313. MISC_STATUS="✅"
  314. else
  315. MISC_STATUS="❌"
  316. fi
  317. echo "- **Set**: $MISC_STATUS ${{ env.FILE_NAME }}-Misc" >> build_summary.md
  318. if [ "$MISC_STATUS" = "✅" ]; then
  319. echo " Included:" >> build_summary.md
  320. for f in "${{ env.FILE_NAME }}-Image" "${{ env.FILE_NAME }}-Image.gz" "${{ env.FILE_NAME }}-Image.lz4" "${{ env.FILE_NAME }}-boot.img" "${{ env.FILE_NAME }}-boot-gz.img" "${{ env.FILE_NAME }}-boot-lz4.img"; do
  321. if [ -f "$f" ]; then
  322. echo " - $f" >> build_summary.md
  323. fi
  324. done
  325. fi
  326. echo "### Diagnostics" >> build_summary.md
  327. echo "- **Rejected Patches**: ${{ env.FILE_NAME }}-Rejected-Patches" >> build_summary.md
  328. if [ -f patch-rejects/index.txt ]; then
  329. if [ -s patch-rejects/index.txt ]; then
  330. echo " Rejected files:" >> build_summary.md
  331. while IFS= read -r line; do
  332. echo " - $line" >> build_summary.md
  333. done < patch-rejects/index.txt
  334. else
  335. echo " Rejected file list is empty." >> build_summary.md
  336. fi
  337. else
  338. echo " No rejected patches found." >> build_summary.md
  339. fi