1 // Copyright (c) 2012 The Chromium Authors. All rights reserved.
2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file.
5 #ifndef CONTENT_ZYGOTE_ZYGOTE_LINUX_H_
6 #define CONTENT_ZYGOTE_ZYGOTE_LINUX_H_
12 #include "base/containers/small_map.h"
13 #include "base/files/scoped_file.h"
14 #include "base/memory/scoped_vector.h"
15 #include "base/posix/global_descriptors.h"
16 #include "base/process/kill.h"
17 #include "base/process/process.h"
24 class ZygoteForkDelegate
;
26 // This is the object which implements the zygote. The ZygoteMain function,
27 // which is called from ChromeMain, simply constructs one of these objects and
31 Zygote(int sandbox_flags
, ScopedVector
<ZygoteForkDelegate
> helpers
,
32 const std::vector
<base::ProcessHandle
>& extra_children
,
33 const std::vector
<int>& extra_fds
);
36 bool ProcessRequests();
39 struct ZygoteProcessInfo
{
40 // Pid from inside the Zygote's PID namespace.
41 base::ProcessHandle internal_pid
;
42 // Keeps track of which fork delegate helper the process was started from.
43 ZygoteForkDelegate
* started_from_helper
;
45 typedef base::SmallMap
< std::map
<base::ProcessHandle
, ZygoteProcessInfo
> >
48 // Retrieve a ZygoteProcessInfo from the process_info_map_.
49 // Returns true and write to process_info if |pid| can be found, return
51 bool GetProcessInfo(base::ProcessHandle pid
,
52 ZygoteProcessInfo
* process_info
);
54 // Returns true if the SUID sandbox is active.
55 bool UsingSUIDSandbox() const;
56 // Returns true if the NS sandbox is active.
57 bool UsingNSSandbox() const;
59 // ---------------------------------------------------------------------------
60 // Requests from the browser...
62 // Read and process a request from the browser. Returns true if we are in a
63 // new process and thus need to unwind back into ChromeMain.
64 bool HandleRequestFromBrowser(int fd
);
66 void HandleReapRequest(int fd
, PickleIterator iter
);
68 // Get the termination status of |real_pid|. |real_pid| is the PID as it
69 // appears outside of the sandbox.
70 // Return true if it managed to get the termination status and return the
71 // status in |status| and the exit code in |exit_code|.
72 bool GetTerminationStatus(base::ProcessHandle real_pid
, bool known_dead
,
73 base::TerminationStatus
* status
,
76 void HandleGetTerminationStatus(int fd
,
79 // This is equivalent to fork(), except that, when using the SUID sandbox, it
80 // returns the real PID of the child process as it appears outside the
81 // sandbox, rather than returning the PID inside the sandbox. The child's
82 // real PID is determined by having it call content::SendZygoteChildPing(int)
83 // using the |pid_oracle| descriptor.
84 // Finally, when using a ZygoteForkDelegate helper, |uma_name|, |uma_sample|,
85 // and |uma_boundary_value| may be set if the helper wants to make a UMA
86 // report via UMA_HISTOGRAM_ENUMERATION.
87 int ForkWithRealPid(const std::string
& process_type
,
88 const base::GlobalDescriptors::Mapping
& fd_mapping
,
89 const std::string
& channel_id
,
90 base::ScopedFD pid_oracle
,
91 std::string
* uma_name
,
93 int* uma_boundary_value
);
95 // Unpacks process type and arguments from |iter| and forks a new process.
96 // Returns -1 on error, otherwise returns twice, returning 0 to the child
97 // process and the child process ID to the parent process, like fork().
98 base::ProcessId
ReadArgsAndFork(PickleIterator iter
,
99 ScopedVector
<base::ScopedFD
> fds
,
100 std::string
* uma_name
,
102 int* uma_boundary_value
);
104 // Handle a 'fork' request from the browser: this means that the browser
105 // wishes to start a new renderer. Returns true if we are in a new process,
106 // otherwise writes the child_pid back to the browser via |fd|. Writes a
107 // child_pid of -1 on error.
108 bool HandleForkRequest(int fd
,
110 ScopedVector
<base::ScopedFD
> fds
);
112 bool HandleGetSandboxStatus(int fd
,
113 PickleIterator iter
);
115 // The Zygote needs to keep some information about each process. Most
116 // notably what the PID of the process is inside the PID namespace of
117 // the Zygote and whether or not a process was started by the
118 // ZygoteForkDelegate helper.
119 ZygoteProcessMap process_info_map_
;
121 const int sandbox_flags_
;
122 ScopedVector
<ZygoteForkDelegate
> helpers_
;
124 // Count of how many fork delegates for which we've invoked InitialUMA().
125 size_t initial_uma_index_
;
127 // This vector contains the PIDs of any child processes which have been
128 // created prior to the construction of the Zygote object, and must be reaped
129 // before the Zygote exits. The Zygote will perform a blocking wait on these
130 // children, so they must be guaranteed to be exiting by the time the Zygote
132 std::vector
<base::ProcessHandle
> extra_children_
;
134 // This vector contains the FDs that must be closed before reaping the extra
136 std::vector
<int> extra_fds_
;
139 } // namespace content
141 #endif // CONTENT_ZYGOTE_ZYGOTE_LINUX_H_