OLD | NEW |
1 // Copyright (c) 2006-2008 The Chromium Authors. All rights reserved. | 1 // Copyright (c) 2006-2008 The Chromium Authors. All rights reserved. |
2 // Use of this source code is governed by a BSD-style license that can be | 2 // Use of this source code is governed by a BSD-style license that can be |
3 // found in the LICENSE file. | 3 // found in the LICENSE file. |
4 | 4 |
5 #ifndef SANDBOX_SRC_SYNC_POLICY_H__ | 5 #ifndef SANDBOX_SRC_SYNC_POLICY_H__ |
6 #define SANDBOX_SRC_SYNC_POLICY_H__ | 6 #define SANDBOX_SRC_SYNC_POLICY_H__ |
7 | 7 |
8 #include <stdint.h> | 8 #include <stdint.h> |
9 | 9 |
10 #include <string> | 10 #include <string> |
11 | 11 |
12 #include "base/strings/string16.h" | 12 #include "base/strings/string16.h" |
13 #include "sandbox/win/src/crosscall_server.h" | 13 #include "sandbox/win/src/crosscall_server.h" |
14 #include "sandbox/win/src/nt_internals.h" | 14 #include "sandbox/win/src/nt_internals.h" |
15 #include "sandbox/win/src/policy_low_level.h" | 15 #include "sandbox/win/src/policy_low_level.h" |
16 #include "sandbox/win/src/sandbox_policy.h" | 16 #include "sandbox/win/src/sandbox_policy.h" |
17 | 17 |
18 namespace sandbox { | 18 namespace sandbox { |
19 | 19 |
20 enum EvalResult; | |
21 | |
22 // This class centralizes most of the knowledge related to sync policy | 20 // This class centralizes most of the knowledge related to sync policy |
23 class SyncPolicy { | 21 class SyncPolicy { |
24 public: | 22 public: |
25 // Creates the required low-level policy rules to evaluate a high-level | 23 // Creates the required low-level policy rules to evaluate a high-level |
26 // policy rule for sync calls, in particular open or create actions. | 24 // policy rule for sync calls, in particular open or create actions. |
27 // name is the sync object name, semantics is the desired semantics for the | 25 // name is the sync object name, semantics is the desired semantics for the |
28 // open or create and policy is the policy generator to which the rules are | 26 // open or create and policy is the policy generator to which the rules are |
29 // going to be added. | 27 // going to be added. |
30 static bool GenerateRules(const wchar_t* name, | 28 static bool GenerateRules(const wchar_t* name, |
31 TargetPolicy::Semantics semantics, | 29 TargetPolicy::Semantics semantics, |
(...skipping 11 matching lines...) Expand all Loading... |
43 static NTSTATUS OpenEventAction(EvalResult eval_result, | 41 static NTSTATUS OpenEventAction(EvalResult eval_result, |
44 const ClientInfo& client_info, | 42 const ClientInfo& client_info, |
45 const base::string16& event_name, | 43 const base::string16& event_name, |
46 uint32_t desired_access, | 44 uint32_t desired_access, |
47 HANDLE* handle); | 45 HANDLE* handle); |
48 }; | 46 }; |
49 | 47 |
50 } // namespace sandbox | 48 } // namespace sandbox |
51 | 49 |
52 #endif // SANDBOX_SRC_SYNC_POLICY_H__ | 50 #endif // SANDBOX_SRC_SYNC_POLICY_H__ |
OLD | NEW |