Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(551)

Side by Side Diff: content/browser/ssl/ssl_policy_backend.h

Issue 465133004: Remove DenyCertForHost from SSLHostStateDelegate API. (Closed) Base URL: svn://svn.chromium.org/chrome/trunk/src
Patch Set: Style nit Created 6 years, 4 months ago
Use n/p to move between diff chunks; N/P to move between comments. Draft comments are only viewable by you.
Jump to:
View unified diff | Download patch | Annotate | Revision Log
OLDNEW
1 // Copyright (c) 2012 The Chromium Authors. All rights reserved. 1 // Copyright (c) 2012 The Chromium Authors. All rights reserved.
2 // Use of this source code is governed by a BSD-style license that can be 2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file. 3 // found in the LICENSE file.
4 4
5 #ifndef CONTENT_BROWSER_SSL_SSL_POLICY_BACKEND_H_ 5 #ifndef CONTENT_BROWSER_SSL_SSL_POLICY_BACKEND_H_
6 #define CONTENT_BROWSER_SSL_SSL_POLICY_BACKEND_H_ 6 #define CONTENT_BROWSER_SSL_SSL_POLICY_BACKEND_H_
7 7
8 #include <string> 8 #include <string>
9 #include <vector> 9 #include <vector>
10 10
11 #include "base/basictypes.h" 11 #include "base/basictypes.h"
12 #include "base/strings/string16.h" 12 #include "base/strings/string16.h"
13 #include "net/cert/cert_status_flags.h" 13 #include "net/cert/cert_status_flags.h"
14 #include "net/cert/x509_certificate.h" 14 #include "net/cert/x509_certificate.h"
15 15
16 namespace content { 16 namespace content {
17 class NavigationControllerImpl; 17 class NavigationControllerImpl;
18 class SSLHostStateDelegate; 18 class SSLHostStateDelegate;
19 19
20 class SSLPolicyBackend { 20 class SSLPolicyBackend {
21 public: 21 public:
22 explicit SSLPolicyBackend(NavigationControllerImpl* controller); 22 explicit SSLPolicyBackend(NavigationControllerImpl* controller);
23 23
24 // Records that a host has run insecure content. 24 // Records that a host has run insecure content.
25 void HostRanInsecureContent(const std::string& host, int pid); 25 void HostRanInsecureContent(const std::string& host, int pid);
26 26
27 // Returns whether the specified host ran insecure content. 27 // Returns whether the specified host ran insecure content.
28 bool DidHostRunInsecureContent(const std::string& host, int pid) const; 28 bool DidHostRunInsecureContent(const std::string& host, int pid) const;
29 29
30 // Records that |cert| is not permitted to be used for |host| in the future,
31 // for a specific error type.
32 void DenyCertForHost(net::X509Certificate* cert,
33 const std::string& host,
34 net::CertStatus error);
35
36 // Records that |cert| is permitted to be used for |host| in the future, for 30 // Records that |cert| is permitted to be used for |host| in the future, for
37 // a specific error type. 31 // a specific error type.
38 void AllowCertForHost(net::X509Certificate* cert, 32 void AllowCertForHost(net::X509Certificate* cert,
39 const std::string& host, 33 const std::string& host,
40 net::CertStatus error); 34 net::CertStatus error);
41 35
42 // Queries whether |cert| is allowed or denied for |host|. Returns true in 36 // Queries whether |cert| is allowed for |host|. Returns true in
43 // |expired_previous_decision| if a user decision had been made previously but 37 // |expired_previous_decision| if a user decision had been made previously but
44 // that decision has expired, otherwise false. 38 // that decision has expired, otherwise false. Since the API does not
39 // currently provide a way to deny certs, QueryPolicy guarantees to return
40 // either ALLOWED or UNKNOWN but never DENIED.
45 net::CertPolicy::Judgment QueryPolicy(net::X509Certificate* cert, 41 net::CertPolicy::Judgment QueryPolicy(net::X509Certificate* cert,
46 const std::string& host, 42 const std::string& host,
47 net::CertStatus error, 43 net::CertStatus error,
48 bool* expired_previous_decision); 44 bool* expired_previous_decision);
49 45
50 private: 46 private:
51 // SSL state delegate specific for each host. 47 // SSL state delegate specific for each host.
52 SSLHostStateDelegate* ssl_host_state_delegate_; 48 SSLHostStateDelegate* ssl_host_state_delegate_;
53 49
54 NavigationControllerImpl* controller_; 50 NavigationControllerImpl* controller_;
55 51
56 DISALLOW_COPY_AND_ASSIGN(SSLPolicyBackend); 52 DISALLOW_COPY_AND_ASSIGN(SSLPolicyBackend);
57 }; 53 };
58 54
59 } // namespace content 55 } // namespace content
60 56
61 #endif // CONTENT_BROWSER_SSL_SSL_POLICY_BACKEND_H_ 57 #endif // CONTENT_BROWSER_SSL_SSL_POLICY_BACKEND_H_
OLDNEW

Powered by Google App Engine
This is Rietveld 408576698