OLD | NEW |
---|---|
(Empty) | |
1 // Copyright 2013 The Chromium Authors. All rights reserved. | |
2 // Use of this source code is governed by a BSD-style license that can be | |
3 // found in the LICENSE file. | |
4 | |
5 #include "chrome/browser/chromeos/policy/network_policy_service.h" | |
6 | |
7 #include "base/bind.h" | |
8 #include "base/bind_helpers.h" | |
9 #include "base/logging.h" | |
10 #include "base/prefs/pref_service.h" | |
11 #include "chrome/browser/browser_process.h" | |
12 #include "chrome/browser/chromeos/login/user.h" | |
13 #include "chrome/browser/chromeos/login/user_manager.h" | |
14 #include "chrome/browser/chromeos/policy/policy_cert_verifier.h" | |
15 #include "chrome/browser/chromeos/policy/user_network_configuration_updater.h" | |
16 #include "chrome/browser/policy/browser_policy_connector.h" | |
17 #include "chrome/common/pref_names.h" | |
18 #include "chromeos/network/network_handler.h" | |
19 #include "chromeos/network/onc/onc_certificate_importer_impl.h" | |
20 | |
21 namespace policy { | |
22 | |
23 NetworkPolicyService::~NetworkPolicyService() {} | |
24 | |
25 NetworkPolicyService::NetworkPolicyService(PrefService* user_prefs, | |
26 PolicyService* policy_service) | |
27 : user_prefs_(user_prefs) { | |
28 chromeos::UserManager* user_manager = chromeos::UserManager::Get(); | |
29 chromeos::User* user = user_manager->GetActiveUser(); | |
Joao da Silva
2013/10/16 12:44:58
Pass |user| in the ctor
pneubeck (no reviews)
2013/10/22 18:47:41
Done.
| |
30 CHECK(user); | |
31 std::string username = user->email(); | |
32 | |
33 BrowserPolicyConnector* connector = | |
34 g_browser_process->browser_policy_connector(); | |
35 // Allow trusted certs from policy only for accounts with managed user | |
36 // affiliation, i.e users that are managed by the same domain as the device. | |
37 bool allow_trusted_certs_from_policy = | |
38 connector->GetUserAffiliation(username) == USER_AFFILIATION_MANAGED && | |
39 user->GetType() == chromeos::User::USER_TYPE_REGULAR; | |
Joao da Silva
2013/10/16 12:44:58
pass in ctor
pneubeck (no reviews)
2013/10/22 18:47:41
do you mean, that I should forward user to UserNe
Joao da Silva
2013/10/23 07:45:54
I was suggesting to pass |allow_trusted_certs_from
pneubeck (no reviews)
2013/10/23 11:22:09
Done.
| |
40 | |
41 network_configuration_updater_ = | |
42 UserNetworkConfigurationUpdater::CreateForUserPolicy( | |
43 allow_trusted_certs_from_policy, | |
44 *user, | |
45 scoped_ptr<chromeos::onc::CertificateImporter>( | |
46 new chromeos::onc::CertificateImporterImpl), | |
47 policy_service, | |
48 chromeos::NetworkHandler::Get() | |
49 ->managed_network_configuration_handler()); | |
50 } | |
51 | |
52 void NetworkPolicyService::SetPolicyCertVerifier( | |
53 PolicyCertVerifier* cert_verifier) { | |
54 network_configuration_updater_->SetPolicyCertVerifier(cert_verifier); | |
55 cert_verifier_subscription_ = cert_verifier->RegisterAnchorUsedCallback( | |
56 base::Bind(&NetworkPolicyService::SetUsedPolicyCertificatesOnce, | |
57 base::Unretained(this))); | |
58 } | |
59 | |
60 void NetworkPolicyService::GetWebTrustedCertificates( | |
61 net::CertificateList* certs) const { | |
62 certs->clear(); | |
63 network_configuration_updater_->GetWebTrustedCertificates(certs); | |
64 } | |
65 | |
66 bool NetworkPolicyService::UsedPolicyCertificates() { | |
67 return user_prefs_->GetBoolean(prefs::kUsedPolicyCertificatesOnce); | |
68 } | |
69 | |
70 void NetworkPolicyService::Shutdown() { | |
71 network_configuration_updater_.reset(); | |
72 user_prefs_ = NULL; | |
73 } | |
74 | |
75 void NetworkPolicyService::SetUsedPolicyCertificatesOnce() { | |
76 DCHECK(user_prefs_); | |
77 user_prefs_->SetBoolean(prefs::kUsedPolicyCertificatesOnce, true); | |
78 } | |
79 | |
80 } // namespace policy | |
OLD | NEW |