1 // Copyright (c) 2012 The Chromium Authors. All rights reserved.
2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file.
5 #include "content/browser/ssl/ssl_manager.h"
10 #include "base/strings/utf_string_conversions.h"
11 #include "base/supports_user_data.h"
12 #include "content/browser/frame_host/navigation_entry_impl.h"
13 #include "content/browser/loader/resource_dispatcher_host_impl.h"
14 #include "content/browser/loader/resource_request_info_impl.h"
15 #include "content/browser/ssl/ssl_cert_error_handler.h"
16 #include "content/browser/ssl/ssl_policy.h"
17 #include "content/browser/ssl/ssl_request_info.h"
18 #include "content/browser/web_contents/web_contents_impl.h"
19 #include "content/common/ssl_status_serialization.h"
20 #include "content/public/browser/browser_context.h"
21 #include "content/public/browser/browser_thread.h"
22 #include "content/public/browser/load_from_memory_cache_details.h"
23 #include "content/public/browser/navigation_details.h"
24 #include "content/public/browser/resource_request_details.h"
25 #include "content/public/common/ssl_status.h"
26 #include "net/url_request/url_request.h"
32 const char kSSLManagerKeyName
[] = "content_ssl_manager";
34 class SSLManagerSet
: public base::SupportsUserData::Data
{
39 std::set
<SSLManager
*>& get() { return set_
; }
42 std::set
<SSLManager
*> set_
;
44 DISALLOW_COPY_AND_ASSIGN(SSLManagerSet
);
50 void SSLManager::OnSSLCertificateError(
51 const base::WeakPtr
<SSLErrorHandler::Delegate
>& delegate
,
52 const GlobalRequestID
& id
,
53 const ResourceType resource_type
,
55 int render_process_id
,
57 const net::SSLInfo
& ssl_info
,
59 DCHECK(delegate
.get());
60 DVLOG(1) << "OnSSLCertificateError() cert_error: "
61 << net::MapCertStatusToNetError(ssl_info
.cert_status
) << " id: "
62 << id
.child_id
<< "," << id
.request_id
<< " resource_type: "
63 << resource_type
<< " url: " << url
.spec() << " render_process_id: "
64 << render_process_id
<< " render_frame_id: " << render_frame_id
65 << " cert_status: " << std::hex
<< ssl_info
.cert_status
;
67 // A certificate error occurred. Construct a SSLCertErrorHandler object and
68 // hand it over to the UI thread for processing.
69 BrowserThread::PostTask(
70 BrowserThread::UI
, FROM_HERE
,
71 base::Bind(&SSLCertErrorHandler::Dispatch
,
72 new SSLCertErrorHandler(delegate
,
83 void SSLManager::NotifySSLInternalStateChanged(BrowserContext
* context
) {
84 SSLManagerSet
* managers
= static_cast<SSLManagerSet
*>(
85 context
->GetUserData(kSSLManagerKeyName
));
87 for (std::set
<SSLManager
*>::iterator i
= managers
->get().begin();
88 i
!= managers
->get().end(); ++i
) {
89 (*i
)->UpdateEntry(NavigationEntryImpl::FromNavigationEntry(
90 (*i
)->controller()->GetLastCommittedEntry()));
94 SSLManager::SSLManager(NavigationControllerImpl
* controller
)
95 : backend_(controller
),
96 policy_(new SSLPolicy(&backend_
)),
97 controller_(controller
) {
100 SSLManagerSet
* managers
= static_cast<SSLManagerSet
*>(
101 controller_
->GetBrowserContext()->GetUserData(kSSLManagerKeyName
));
103 managers
= new SSLManagerSet
;
104 controller_
->GetBrowserContext()->SetUserData(kSSLManagerKeyName
, managers
);
106 managers
->get().insert(this);
109 SSLManager::~SSLManager() {
110 SSLManagerSet
* managers
= static_cast<SSLManagerSet
*>(
111 controller_
->GetBrowserContext()->GetUserData(kSSLManagerKeyName
));
112 managers
->get().erase(this);
115 void SSLManager::DidCommitProvisionalLoad(const LoadCommittedDetails
& details
) {
116 NavigationEntryImpl
* entry
=
117 NavigationEntryImpl::FromNavigationEntry(
118 controller_
->GetLastCommittedEntry());
120 if (details
.is_main_frame
) {
122 // Decode the security details.
124 net::CertStatus ssl_cert_status
;
125 int ssl_security_bits
;
126 int ssl_connection_status
;
127 SignedCertificateTimestampIDStatusList
128 ssl_signed_certificate_timestamp_ids
;
129 DeserializeSecurityInfo(details
.serialized_security_info
,
133 &ssl_connection_status
,
134 &ssl_signed_certificate_timestamp_ids
);
136 // We may not have an entry if this is a navigation to an initial blank
137 // page. Reset the SSL information and add the new data we have.
138 entry
->GetSSL() = SSLStatus();
139 entry
->GetSSL().cert_id
= ssl_cert_id
;
140 entry
->GetSSL().cert_status
= ssl_cert_status
;
141 entry
->GetSSL().security_bits
= ssl_security_bits
;
142 entry
->GetSSL().connection_status
= ssl_connection_status
;
143 entry
->GetSSL().signed_certificate_timestamp_ids
=
144 ssl_signed_certificate_timestamp_ids
;
151 void SSLManager::DidDisplayInsecureContent() {
153 NavigationEntryImpl::FromNavigationEntry(
154 controller_
->GetLastCommittedEntry()));
157 void SSLManager::DidRunInsecureContent(const std::string
& security_origin
) {
158 NavigationEntryImpl
* navigation_entry
=
159 NavigationEntryImpl::FromNavigationEntry(
160 controller_
->GetLastCommittedEntry());
161 policy()->DidRunInsecureContent(navigation_entry
, security_origin
);
162 UpdateEntry(navigation_entry
);
165 void SSLManager::DidLoadFromMemoryCache(
166 const LoadFromMemoryCacheDetails
& details
) {
167 // Simulate loading this resource through the usual path.
168 // Note that we specify SUB_RESOURCE as the resource type as WebCore only
169 // caches sub-resources.
170 // This resource must have been loaded with no filtering because filtered
171 // resouces aren't cachable.
172 scoped_refptr
<SSLRequestInfo
> info(new SSLRequestInfo(
174 RESOURCE_TYPE_SUB_RESOURCE
,
177 details
.cert_status
));
179 // Simulate loading this resource through the usual path.
180 policy()->OnRequestStarted(info
.get());
183 void SSLManager::DidStartResourceResponse(
184 const ResourceRequestDetails
& details
) {
185 scoped_refptr
<SSLRequestInfo
> info(new SSLRequestInfo(
187 details
.resource_type
,
188 details
.origin_child_id
,
190 details
.ssl_cert_status
));
192 // Notify our policy that we started a resource request. Ideally, the
193 // policy should have the ability to cancel the request, but we can't do
195 policy()->OnRequestStarted(info
.get());
198 void SSLManager::DidReceiveResourceRedirect(
199 const ResourceRedirectDetails
& details
) {
200 // TODO(abarth): Make sure our redirect behavior is correct. If we ever see a
201 // non-HTTPS resource in the redirect chain, we want to trigger
202 // insecure content, even if the redirect chain goes back to
203 // HTTPS. This is because the network attacker can redirect the
204 // HTTP request to https://attacker.com/payload.js.
207 void SSLManager::UpdateEntry(NavigationEntryImpl
* entry
) {
208 // We don't always have a navigation entry to update, for example in the
209 // case of the Web Inspector.
213 SSLStatus original_ssl_status
= entry
->GetSSL(); // Copy!
215 WebContentsImpl
* contents
=
216 static_cast<WebContentsImpl
*>(controller_
->delegate()->GetWebContents());
217 policy()->UpdateEntry(entry
, contents
);
219 if (!entry
->GetSSL().Equals(original_ssl_status
))
220 contents
->DidChangeVisibleSSLState();
223 } // namespace content