1 // Copyright (c) 2012 The Chromium Authors. All rights reserved.
2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file.
5 #ifndef CONTENT_BROWSER_SSL_SSL_POLICY_BACKEND_H_
6 #define CONTENT_BROWSER_SSL_SSL_POLICY_BACKEND_H_
11 #include "base/basictypes.h"
12 #include "base/strings/string16.h"
13 #include "net/cert/cert_status_flags.h"
14 #include "net/cert/x509_certificate.h"
17 class NavigationControllerImpl
;
18 class SSLHostStateDelegate
;
20 class SSLPolicyBackend
{
22 explicit SSLPolicyBackend(NavigationControllerImpl
* controller
);
24 // Records that a host has run insecure content.
25 void HostRanInsecureContent(const std::string
& host
, int pid
);
27 // Returns whether the specified host ran insecure content.
28 bool DidHostRunInsecureContent(const std::string
& host
, int pid
) const;
30 // Records that |cert| is not permitted to be used for |host| in the future,
31 // for a specific error type.
32 void DenyCertForHost(net::X509Certificate
* cert
,
33 const std::string
& host
,
34 net::CertStatus error
);
36 // Records that |cert| is permitted to be used for |host| in the future, for
37 // a specific error type.
38 void AllowCertForHost(net::X509Certificate
* cert
,
39 const std::string
& host
,
40 net::CertStatus error
);
42 // Queries whether |cert| is allowed or denied for |host|. Returns true in
43 // |expired_previous_decision| if a user decision had been made previously but
44 // that decision has expired, otherwise false.
45 net::CertPolicy::Judgment
QueryPolicy(net::X509Certificate
* cert
,
46 const std::string
& host
,
47 net::CertStatus error
,
48 bool* expired_previous_decision
);
51 // SSL state delegate specific for each host.
52 SSLHostStateDelegate
* ssl_host_state_delegate_
;
54 NavigationControllerImpl
* controller_
;
56 DISALLOW_COPY_AND_ASSIGN(SSLPolicyBackend
);
59 } // namespace content
61 #endif // CONTENT_BROWSER_SSL_SSL_POLICY_BACKEND_H_