Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(454)

Side by Side Diff: net/socket/client_socket_factory.cc

Issue 6487012: Clear the SSL Client Auth cache when a new SSL Client Certificate is... (Closed) Base URL: svn://svn.chromium.org/chrome/trunk/src/
Patch Set: '' Created 9 years, 10 months ago
Use n/p to move between diff chunks; N/P to move between comments. Draft comments are only viewable by you.
Jump to:
View unified diff | Download patch | Annotate | Revision Log
OLDNEW
1 // Copyright (c) 2010 The Chromium Authors. All rights reserved. 1 // Copyright (c) 2010 The Chromium Authors. All rights reserved.
2 // Use of this source code is governed by a BSD-style license that can be 2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file. 3 // found in the LICENSE file.
4 4
5 #include "net/socket/client_socket_factory.h" 5 #include "net/socket/client_socket_factory.h"
6 6
7 #include "base/lazy_instance.h" 7 #include "base/lazy_instance.h"
8 #include "build/build_config.h" 8 #include "build/build_config.h"
9 #include "net/socket/client_socket_handle.h" 9 #include "net/socket/client_socket_handle.h"
10 #if defined(OS_WIN) 10 #if defined(OS_WIN)
11 #include "net/socket/ssl_client_socket_win.h" 11 #include "net/socket/ssl_client_socket_nss.h"
12 #include "net/socket/ssl_client_socket_win_factory.h"
12 #elif defined(USE_OPENSSL) 13 #elif defined(USE_OPENSSL)
13 #include "net/socket/ssl_client_socket_openssl.h" 14 #include "net/socket/ssl_client_socket_openssl.h"
14 #elif defined(USE_NSS) 15 #elif defined(USE_NSS)
15 #include "net/socket/ssl_client_socket_nss.h" 16 #include "net/socket/ssl_client_socket_nss.h"
16 #elif defined(OS_MACOSX) 17 #elif defined(OS_MACOSX)
18 #include "net/socket/ssl_client_socket_mac_factory.h"
17 #include "net/socket/ssl_client_socket_nss.h" 19 #include "net/socket/ssl_client_socket_nss.h"
18 #endif 20 #endif
19 #include "net/socket/ssl_host_info.h" 21 #include "net/socket/ssl_host_info.h"
20 #include "net/socket/tcp_client_socket.h" 22 #include "net/socket/tcp_client_socket.h"
21 23
22 namespace net { 24 namespace net {
23 25
24 class DnsCertProvenanceChecker; 26 class DnsCertProvenanceChecker;
25 27
26 namespace { 28 namespace {
27 29
28 SSLClientSocket* DefaultSSLClientSocketFactory( 30 SSLClientSocket* DefaultSSLClientSocketFactory(
29 ClientSocketHandle* transport_socket, 31 ClientSocketHandle* transport_socket,
30 const HostPortPair& host_and_port, 32 const HostPortPair& host_and_port,
31 const SSLConfig& ssl_config, 33 const SSLConfig& ssl_config,
32 SSLHostInfo* ssl_host_info, 34 SSLHostInfo* ssl_host_info,
33 CertVerifier* cert_verifier, 35 CertVerifier* cert_verifier,
34 DnsCertProvenanceChecker* dns_cert_checker) { 36 DnsCertProvenanceChecker* dns_cert_checker) {
35 scoped_ptr<SSLHostInfo> shi(ssl_host_info); 37 scoped_ptr<SSLHostInfo> shi(ssl_host_info);
36 #if defined(OS_WIN) 38 #if defined(OS_WIN)
37 return new SSLClientSocketWin(transport_socket, host_and_port, ssl_config, 39 return new SSLClientSocketNSS(transport_socket, host_and_port, ssl_config,
38 cert_verifier); 40 shi.release(), cert_verifier, dns_cert_checker);
39 #elif defined(USE_OPENSSL) 41 #elif defined(USE_OPENSSL)
40 return new SSLClientSocketOpenSSL(transport_socket, host_and_port, 42 return new SSLClientSocketOpenSSL(transport_socket, host_and_port,
41 ssl_config, cert_verifier); 43 ssl_config, cert_verifier);
42 #elif defined(USE_NSS) 44 #elif defined(USE_NSS)
43 return new SSLClientSocketNSS(transport_socket, host_and_port, ssl_config, 45 return new SSLClientSocketNSS(transport_socket, host_and_port, ssl_config,
44 shi.release(), cert_verifier, dns_cert_checker); 46 shi.release(), cert_verifier, dns_cert_checker);
45 #elif defined(OS_MACOSX) 47 #elif defined(OS_MACOSX)
46 return new SSLClientSocketNSS(transport_socket, host_and_port, ssl_config, 48 return new SSLClientSocketNSS(transport_socket, host_and_port, ssl_config,
47 shi.release(), cert_verifier, dns_cert_checker); 49 shi.release(), cert_verifier, dns_cert_checker);
48 #else 50 #else
(...skipping 42 matching lines...) Expand 10 before | Expand all | Expand 10 after
91 return CreateSSLClientSocket(socket_handle, host_and_port, ssl_config, 93 return CreateSSLClientSocket(socket_handle, host_and_port, ssl_config,
92 ssl_host_info, cert_verifier, 94 ssl_host_info, cert_verifier,
93 NULL /* DnsCertProvenanceChecker */); 95 NULL /* DnsCertProvenanceChecker */);
94 } 96 }
95 97
96 // static 98 // static
97 ClientSocketFactory* ClientSocketFactory::GetDefaultFactory() { 99 ClientSocketFactory* ClientSocketFactory::GetDefaultFactory() {
98 return g_default_client_socket_factory.Pointer(); 100 return g_default_client_socket_factory.Pointer();
99 } 101 }
100 102
101 // static 103 void ClientSocketFactory::UseSystemSSL() {
wtc 2011/02/23 00:38:38 This function can just set a global boolean flag:
102 void ClientSocketFactory::SetSSLClientSocketFactory( 104 #if defined(OS_WIN)
103 SSLClientSocketFactory factory) { 105 g_ssl_factory = net::SSLClientSocketWinFactory;
104 g_ssl_factory = factory; 106 #elif defined(OS_MACOSX)
107 g_ssl_factory = net::SSLClientSocketMacFactory;
wtc 2011/02/23 00:38:38 Nit: remove the net:: prefix because this file is
108 #endif
109 SSLClientSocket::UseSystemClearSSLSessionCache();
105 } 110 }
106 111
107 } // namespace net 112 } // namespace net
OLDNEW

Powered by Google App Engine
This is Rietveld 408576698