Chromium Code Reviews| OLD | NEW |
|---|---|
| (Empty) | |
| 1 // Copyright 2013 The Chromium Authors. All rights reserved. | |
| 2 // Use of this source code is governed by a BSD-style license that can be | |
| 3 // found in the LICENSE file. | |
| 4 | |
| 5 #include "chrome/browser/chromeos/policy/network_policy_service.h" | |
| 6 | |
| 7 #include "base/bind.h" | |
| 8 #include "base/bind_helpers.h" | |
| 9 #include "base/logging.h" | |
| 10 #include "base/prefs/pref_service.h" | |
| 11 #include "chrome/browser/browser_process.h" | |
| 12 #include "chrome/browser/chromeos/login/user.h" | |
| 13 #include "chrome/browser/chromeos/login/user_manager.h" | |
| 14 #include "chrome/browser/chromeos/policy/policy_cert_verifier.h" | |
| 15 #include "chrome/browser/chromeos/policy/user_network_configuration_updater.h" | |
| 16 #include "chrome/browser/policy/browser_policy_connector.h" | |
| 17 #include "chrome/common/pref_names.h" | |
| 18 #include "chromeos/network/network_handler.h" | |
| 19 #include "chromeos/network/onc/onc_certificate_importer_impl.h" | |
| 20 | |
| 21 namespace policy { | |
| 22 | |
| 23 NetworkPolicyService::~NetworkPolicyService() {} | |
| 24 | |
| 25 NetworkPolicyService::NetworkPolicyService(PrefService* user_prefs, | |
| 26 PolicyService* policy_service) | |
| 27 : user_prefs_(user_prefs) { | |
| 28 chromeos::UserManager* user_manager = chromeos::UserManager::Get(); | |
| 29 chromeos::User* user = user_manager->GetActiveUser(); | |
|
Joao da Silva
2013/10/16 12:44:58
Pass |user| in the ctor
pneubeck (no reviews)
2013/10/22 18:47:41
Done.
| |
| 30 CHECK(user); | |
| 31 std::string username = user->email(); | |
| 32 | |
| 33 BrowserPolicyConnector* connector = | |
| 34 g_browser_process->browser_policy_connector(); | |
| 35 // Allow trusted certs from policy only for accounts with managed user | |
| 36 // affiliation, i.e users that are managed by the same domain as the device. | |
| 37 bool allow_trusted_certs_from_policy = | |
| 38 connector->GetUserAffiliation(username) == USER_AFFILIATION_MANAGED && | |
| 39 user->GetType() == chromeos::User::USER_TYPE_REGULAR; | |
|
Joao da Silva
2013/10/16 12:44:58
pass in ctor
pneubeck (no reviews)
2013/10/22 18:47:41
do you mean, that I should forward user to UserNe
Joao da Silva
2013/10/23 07:45:54
I was suggesting to pass |allow_trusted_certs_from
pneubeck (no reviews)
2013/10/23 11:22:09
Done.
| |
| 40 | |
| 41 network_configuration_updater_ = | |
| 42 UserNetworkConfigurationUpdater::CreateForUserPolicy( | |
| 43 allow_trusted_certs_from_policy, | |
| 44 *user, | |
| 45 scoped_ptr<chromeos::onc::CertificateImporter>( | |
| 46 new chromeos::onc::CertificateImporterImpl), | |
| 47 policy_service, | |
| 48 chromeos::NetworkHandler::Get() | |
| 49 ->managed_network_configuration_handler()); | |
| 50 } | |
| 51 | |
| 52 void NetworkPolicyService::SetPolicyCertVerifier( | |
| 53 PolicyCertVerifier* cert_verifier) { | |
| 54 network_configuration_updater_->SetPolicyCertVerifier(cert_verifier); | |
| 55 cert_verifier_subscription_ = cert_verifier->RegisterAnchorUsedCallback( | |
| 56 base::Bind(&NetworkPolicyService::SetUsedPolicyCertificatesOnce, | |
| 57 base::Unretained(this))); | |
| 58 } | |
| 59 | |
| 60 void NetworkPolicyService::GetWebTrustedCertificates( | |
| 61 net::CertificateList* certs) const { | |
| 62 certs->clear(); | |
| 63 network_configuration_updater_->GetWebTrustedCertificates(certs); | |
| 64 } | |
| 65 | |
| 66 bool NetworkPolicyService::UsedPolicyCertificates() { | |
| 67 return user_prefs_->GetBoolean(prefs::kUsedPolicyCertificatesOnce); | |
| 68 } | |
| 69 | |
| 70 void NetworkPolicyService::Shutdown() { | |
| 71 network_configuration_updater_.reset(); | |
| 72 user_prefs_ = NULL; | |
| 73 } | |
| 74 | |
| 75 void NetworkPolicyService::SetUsedPolicyCertificatesOnce() { | |
| 76 DCHECK(user_prefs_); | |
| 77 user_prefs_->SetBoolean(prefs::kUsedPolicyCertificatesOnce, true); | |
| 78 } | |
| 79 | |
| 80 } // namespace policy | |
| OLD | NEW |