Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(806)

Unified Diff: chrome/browser/extensions/permissions_updater.h

Issue 2499493004: Communicate ExtensionSettings policy to renderers (Closed)
Patch Set: URLPatternSets use shared memory for IPC. Default scope patterns sent once per renderer. Created 4 years ago
Use n/p to move between diff chunks; N/P to move between comments. Draft comments are only viewable by you.
Jump to:
View side-by-side diff with in-line comments
Download patch
Index: chrome/browser/extensions/permissions_updater.h
diff --git a/chrome/browser/extensions/permissions_updater.h b/chrome/browser/extensions/permissions_updater.h
index 2bb6f8fe2f9d62149afdbffad1b3e4e0f051ed2d..038a356ad66faf1b93d91d6bccc3d10c49ebb93f 100644
--- a/chrome/browser/extensions/permissions_updater.h
+++ b/chrome/browser/extensions/permissions_updater.h
@@ -9,6 +9,7 @@
#include <string>
#include "base/macros.h"
+#include "base/memory/shared_memory.h"
#include "extensions/browser/extension_event_histogram_value.h"
namespace base {
@@ -24,6 +25,7 @@ namespace extensions {
class Extension;
class ExtensionPrefs;
class PermissionSet;
+class URLPatternSet;
// Updates an Extension's active and granted permissions in persistent storage
// and notifies interested parties of the changes.
@@ -69,6 +71,21 @@ class PermissionsUpdater {
void RemovePermissionsUnsafe(const Extension* extension,
const PermissionSet& permissions);
+ // Sets list of hosts |extension| may not interact with (overrides default).
+ // This is the individual scope of ExtensionSettings.
+ void SetRuntimeBlockedAllowedHosts(const Extension* extension,
Devlin 2017/01/09 23:30:57 RuntimeBlockedAllowedHosts makes no sense to me :)
nrpeter 2017/01/10 17:48:05 This function updates the list of hosts to be bloc
+ const URLPatternSet& runtime_blocked_hosts,
+ const URLPatternSet& runtime_allowed_hosts,
+ bool is_default);
+
+ // Sets list of hosts extensions may not interact with. Extension specific
+ // exceptions to this default policy are defined with
+ // SetRuntimeBlockedAllowedHosts. This is the Deault scope "*" of
+ // ExtensionSettings.
+ void SetDefaultRuntimeBlockedAllowedHosts(
+ const URLPatternSet& default_runtime_blocked_hosts,
+ const URLPatternSet& default_runtime_allowed_hosts);
+
// Returns the set of revokable permissions.
std::unique_ptr<const PermissionSet> GetRevokablePermissions(
const Extension* extension) const;
@@ -111,6 +128,24 @@ class PermissionsUpdater {
const Extension* extension,
const PermissionSet& changed);
+ // Issues the relevant events, messages and notifications when the
+ // |extension|'s management policy have changed.
+ // Specifically, this sends the EXTENSION_POLICY_UPDATED notification,
+ // the ExtensionMsg_UpdateAllowedAndBlockedHosts IPC message.
+ void NotifyRuntimeBlockedAllowedHostsUpdated(
+ const Extension* extension,
+ const URLPatternSet& runtime_blocked_hosts,
+ const URLPatternSet& runtime_allowed_hosts,
+ bool is_default);
+
+ // Issues the relevant events, messages and notifications when the
+ // |extension|'s management policy have changed.
+ // Specifically, this sends the EXTENSION_POLICY_UPDATED notification,
+ // the ExtensionMsg_UpdateDefaultAllowedAndBlockedHostsPolicy IPC message.
+ void NotifyDefaultRuntimeBlockedAllowedHostsUpdated(
+ const URLPatternSet& default_runtime_blocked_hosts,
+ const URLPatternSet& default_runtime_allowed_hosts);
+
// The associated BrowserContext.
content::BrowserContext* browser_context_;

Powered by Google App Engine
This is Rietveld 408576698