Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(294)

Side by Side Diff: chrome/browser/extensions/permissions_updater.h

Issue 2499493004: Communicate ExtensionSettings policy to renderers (Closed)
Patch Set: -Added includes, Seperated setting usage of default policy in PermissionsData, spelling fixes Created 3 years, 8 months ago
Use n/p to move between diff chunks; N/P to move between comments. Draft comments are only viewable by you.
Jump to:
View unified diff | Download patch
OLDNEW
1 // Copyright (c) 2012 The Chromium Authors. All rights reserved. 1 // Copyright (c) 2012 The Chromium Authors. All rights reserved.
2 // Use of this source code is governed by a BSD-style license that can be 2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file. 3 // found in the LICENSE file.
4 4
5 #ifndef CHROME_BROWSER_EXTENSIONS_PERMISSIONS_UPDATER_H__ 5 #ifndef CHROME_BROWSER_EXTENSIONS_PERMISSIONS_UPDATER_H__
6 #define CHROME_BROWSER_EXTENSIONS_PERMISSIONS_UPDATER_H__ 6 #define CHROME_BROWSER_EXTENSIONS_PERMISSIONS_UPDATER_H__
7 7
8 #include <memory> 8 #include <memory>
9 #include <string> 9 #include <string>
10 10
11 #include "base/macros.h" 11 #include "base/macros.h"
12 #include "extensions/browser/extension_event_histogram_value.h" 12 #include "extensions/browser/extension_event_histogram_value.h"
13 13
14 namespace base { 14 namespace base {
15 class DictionaryValue; 15 class DictionaryValue;
16 } 16 }
17 17
18 namespace content { 18 namespace content {
19 class BrowserContext; 19 class BrowserContext;
20 } 20 }
21 21
22 namespace extensions { 22 namespace extensions {
23 23
24 class Extension; 24 class Extension;
25 class ExtensionPrefs; 25 class ExtensionPrefs;
26 class PermissionSet; 26 class PermissionSet;
27 class URLPatternSet;
27 28
28 // Updates an Extension's active and granted permissions in persistent storage 29 // Updates an Extension's active and granted permissions in persistent storage
29 // and notifies interested parties of the changes. 30 // and notifies interested parties of the changes.
30 class PermissionsUpdater { 31 class PermissionsUpdater {
31 public: 32 public:
32 enum InitFlag { 33 enum InitFlag {
33 INIT_FLAG_NONE = 0, 34 INIT_FLAG_NONE = 0,
34 INIT_FLAG_TRANSIENT = 1 << 0, 35 INIT_FLAG_TRANSIENT = 1 << 0,
35 }; 36 };
36 37
(...skipping 25 matching lines...) Expand all
62 void RemovePermissions(const Extension* extension, 63 void RemovePermissions(const Extension* extension,
63 const PermissionSet& permissions, 64 const PermissionSet& permissions,
64 RemoveType remove_type); 65 RemoveType remove_type);
65 66
66 // Removes the |permissions| from |extension| and makes no effort to determine 67 // Removes the |permissions| from |extension| and makes no effort to determine
67 // if doing so is safe in the slightlest. This method shouldn't be used, 68 // if doing so is safe in the slightlest. This method shouldn't be used,
68 // except for removing permissions totally blacklisted by management. 69 // except for removing permissions totally blacklisted by management.
69 void RemovePermissionsUnsafe(const Extension* extension, 70 void RemovePermissionsUnsafe(const Extension* extension,
70 const PermissionSet& permissions); 71 const PermissionSet& permissions);
71 72
73 // Sets list of hosts |extension| may not interact with (overrides default).
74 void SetPolicyHostRestrictions(const Extension* extension,
75 const URLPatternSet& runtime_blocked_hosts,
76 const URLPatternSet& runtime_allowed_hosts,
77 bool is_default);
Devlin 2017/03/30 21:07:27 As mentioned here [1], we should either set explic
nrpeter 2017/03/31 21:43:35 Done.
78
79 // Sets list of hosts extensions may not interact with. Extension specific
80 // exceptions to this default policy are defined with
81 // SetPolicyHostRestrictions.
82 void SetDefaultPolicyHostRestrictions(
83 const URLPatternSet& default_runtime_blocked_hosts,
84 const URLPatternSet& default_runtime_allowed_hosts);
85
72 // Returns the set of revokable permissions. 86 // Returns the set of revokable permissions.
73 std::unique_ptr<const PermissionSet> GetRevokablePermissions( 87 std::unique_ptr<const PermissionSet> GetRevokablePermissions(
74 const Extension* extension) const; 88 const Extension* extension) const;
75 89
76 // Adds all permissions in the |extension|'s active permissions to its 90 // Adds all permissions in the |extension|'s active permissions to its
77 // granted permission set. 91 // granted permission set.
78 void GrantActivePermissions(const Extension* extension); 92 void GrantActivePermissions(const Extension* extension);
79 93
80 // Initializes the |extension|'s active permission set to include only 94 // Initializes the |extension|'s active permission set to include only
81 // permissions currently requested by the extension and all the permissions 95 // permissions currently requested by the extension and all the permissions
82 // required by the extension. 96 // required by the extension.
83 void InitializePermissions(const Extension* extension); 97 void InitializePermissions(const Extension* extension);
84 98
85 private: 99 private:
86 enum EventType { 100 enum EventType {
87 ADDED, 101 ADDED,
88 REMOVED, 102 REMOVED,
103 POLICY,
89 }; 104 };
90 105
91 // Sets the |extension|'s active permissions to |active| and records the 106 // Sets the |extension|'s active permissions to |active| and records the
92 // change in the prefs. If |withheld| is non-null, also sets the extension's 107 // change in the prefs. If |withheld| is non-null, also sets the extension's
93 // withheld permissions to |withheld|. Otherwise, |withheld| permissions are 108 // withheld permissions to |withheld|. Otherwise, |withheld| permissions are
94 // not changed. 109 // not changed.
95 void SetPermissions(const Extension* extension, 110 void SetPermissions(const Extension* extension,
96 std::unique_ptr<const PermissionSet> active, 111 std::unique_ptr<const PermissionSet> active,
97 std::unique_ptr<const PermissionSet> withheld); 112 std::unique_ptr<const PermissionSet> withheld);
98 113
99 // Dispatches specified event to the extension. 114 // Dispatches specified event to the extension.
100 void DispatchEvent(const std::string& extension_id, 115 void DispatchEvent(const std::string& extension_id,
101 events::HistogramValue histogram_value, 116 events::HistogramValue histogram_value,
102 const char* event_name, 117 const char* event_name,
103 const PermissionSet& changed_permissions); 118 const PermissionSet& changed_permissions);
104 119
105 // Issues the relevant events, messages and notifications when the 120 // Issues the relevant events, messages and notifications when the
106 // |extension|'s permissions have |changed| (|changed| is the delta). 121 // |extension|'s permissions have |changed| (|changed| is the delta).
107 // Specifically, this sends the EXTENSION_PERMISSIONS_UPDATED notification, 122 // Specifically, this sends the EXTENSION_PERMISSIONS_UPDATED notification,
108 // the ExtensionMsg_UpdatePermissions IPC message, and fires the 123 // the ExtensionMsg_UpdatePermissions IPC message, and fires the
109 // onAdded/onRemoved events in the extension. 124 // onAdded/onRemoved events in the extension.
110 void NotifyPermissionsUpdated(EventType event_type, 125 void NotifyPermissionsUpdated(EventType event_type,
111 const Extension* extension, 126 const Extension* extension,
112 const PermissionSet& changed); 127 const PermissionSet& changed);
113 128
129 // Issues the relevant events, messages and notifications when the
130 // default scope management policy have changed.
131 // Specifically, this sends the ExtensionMsg_UpdateDefaultHostRestrictions
132 // IPC message.
133 void NotifyDefaultPolicyHostRestrictionsUpdated(
134 const URLPatternSet& default_runtime_blocked_hosts,
135 const URLPatternSet& default_runtime_allowed_hosts);
136
114 // The associated BrowserContext. 137 // The associated BrowserContext.
115 content::BrowserContext* browser_context_; 138 content::BrowserContext* browser_context_;
116 139
117 // Initialization flag that determines whether prefs is consulted about the 140 // Initialization flag that determines whether prefs is consulted about the
118 // extension. Transient extensions should not have entries in prefs. 141 // extension. Transient extensions should not have entries in prefs.
119 InitFlag init_flag_; 142 InitFlag init_flag_;
120 143
121 DISALLOW_COPY_AND_ASSIGN(PermissionsUpdater); 144 DISALLOW_COPY_AND_ASSIGN(PermissionsUpdater);
122 }; 145 };
123 146
124 } // namespace extensions 147 } // namespace extensions
125 148
126 #endif // CHROME_BROWSER_EXTENSIONS_PERMISSIONS_UPDATER_H__ 149 #endif // CHROME_BROWSER_EXTENSIONS_PERMISSIONS_UPDATER_H__
OLDNEW

Powered by Google App Engine
This is Rietveld 408576698