Summary: Add two flags to load the keys from pkcs#11 keystore. When the option -loadPrivateKeysFromKeyStore is specified, will load private keys from the keystore with specified keyStoreName instead of load from file. Test: make dist for arm_sunfish-user, which includes apk and ota (wholefile) signing Test: - manually call signapk in Java11 (java9 may need additional change to support), with statically registered pkcs#11 keystore, signed both apk and ota-package. - verified using apksigner and extracting otacert from ota-package, both correct Change-Id: I3efb8017f73d3d992c07ed4562acfef016a109fe
Android Make Build System
This is the Makefile-based portion of the Android Build System.
For documentation on how to run a build, see Usage.txt
For a list of behavioral changes useful for Android.mk writers see Changes.md
For an outdated reference on Android.mk files, see build-system.html. Our Android.mk files look similar, but are entirely different from the Android.mk files used by the NDK build system. When searching for documentation elsewhere, ensure that it is for the platform build system -- most are not.
This Makefile-based system is in the process of being replaced with Soong, a new build system written in Go. During the transition, all of these makefiles are read by Kati, and generate a ninja file instead of being executed directly. That's combined with a ninja file read by Soong so that the build graph of the two systems can be combined and run as one.