OLD | NEW |
1 // Copyright (c) 2006-2008 The Chromium Authors. All rights reserved. | 1 // Copyright (c) 2006-2008 The Chromium Authors. All rights reserved. |
2 // Use of this source code is governed by a BSD-style license that can be | 2 // Use of this source code is governed by a BSD-style license that can be |
3 // found in the LICENSE file. | 3 // found in the LICENSE file. |
4 | 4 |
5 #ifndef SANDBOX_SRC_FILESYSTEM_POLICY_H__ | 5 #ifndef SANDBOX_SRC_FILESYSTEM_POLICY_H__ |
6 #define SANDBOX_SRC_FILESYSTEM_POLICY_H__ | 6 #define SANDBOX_SRC_FILESYSTEM_POLICY_H__ |
7 | 7 |
8 #include <stdint.h> | 8 #include <stdint.h> |
9 | 9 |
10 #include <string> | 10 #include <string> |
11 | 11 |
12 #include "base/strings/string16.h" | 12 #include "base/strings/string16.h" |
13 #include "sandbox/win/src/crosscall_server.h" | 13 #include "sandbox/win/src/crosscall_server.h" |
14 #include "sandbox/win/src/nt_internals.h" | 14 #include "sandbox/win/src/nt_internals.h" |
15 #include "sandbox/win/src/policy_low_level.h" | 15 #include "sandbox/win/src/policy_low_level.h" |
16 #include "sandbox/win/src/sandbox_policy.h" | 16 #include "sandbox/win/src/sandbox_policy.h" |
17 | 17 |
18 namespace sandbox { | 18 namespace sandbox { |
19 | 19 |
20 enum EvalResult; | |
21 | |
22 // This class centralizes most of the knowledge related to file system policy | 20 // This class centralizes most of the knowledge related to file system policy |
23 class FileSystemPolicy { | 21 class FileSystemPolicy { |
24 public: | 22 public: |
25 // Creates the required low-level policy rules to evaluate a high-level | 23 // Creates the required low-level policy rules to evaluate a high-level |
26 // policy rule for File IO, in particular open or create actions. | 24 // policy rule for File IO, in particular open or create actions. |
27 // 'name' is the file or directory name. | 25 // 'name' is the file or directory name. |
28 // 'semantics' is the desired semantics for the open or create. | 26 // 'semantics' is the desired semantics for the open or create. |
29 // 'policy' is the policy generator to which the rules are going to be added. | 27 // 'policy' is the policy generator to which the rules are going to be added. |
30 static bool GenerateRules(const wchar_t* name, | 28 static bool GenerateRules(const wchar_t* name, |
31 TargetPolicy::Semantics semantics, | 29 TargetPolicy::Semantics semantics, |
(...skipping 72 matching lines...) Expand 10 before | Expand all | Expand 10 after Loading... |
104 bool PreProcessName(base::string16* path); | 102 bool PreProcessName(base::string16* path); |
105 | 103 |
106 // Corrects global paths to have a correctly escaped NT prefix at the | 104 // Corrects global paths to have a correctly escaped NT prefix at the |
107 // beginning. If the name has no NT prefix (either normal or escaped) | 105 // beginning. If the name has no NT prefix (either normal or escaped) |
108 // add the escaped form to the string | 106 // add the escaped form to the string |
109 base::string16 FixNTPrefixForMatch(const base::string16& name); | 107 base::string16 FixNTPrefixForMatch(const base::string16& name); |
110 | 108 |
111 } // namespace sandbox | 109 } // namespace sandbox |
112 | 110 |
113 #endif // SANDBOX_SRC_FILESYSTEM_POLICY_H__ | 111 #endif // SANDBOX_SRC_FILESYSTEM_POLICY_H__ |
OLD | NEW |