Check USB device path access when prompting users to select a device.
[chromium-blink-merge.git] / chrome / browser / io_thread.h
blobd5b948c61cb33fad32fbae74391769bb5c6c4d8c
1 // Copyright (c) 2012 The Chromium Authors. All rights reserved.
2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file.
5 #ifndef CHROME_BROWSER_IO_THREAD_H_
6 #define CHROME_BROWSER_IO_THREAD_H_
8 #include <string>
9 #include <vector>
11 #include "base/basictypes.h"
12 #include "base/compiler_specific.h"
13 #include "base/memory/ref_counted.h"
14 #include "base/memory/scoped_ptr.h"
15 #include "base/memory/weak_ptr.h"
16 #include "base/prefs/pref_member.h"
17 #include "base/strings/string_piece.h"
18 #include "base/time/time.h"
19 #include "chrome/browser/net/chrome_network_delegate.h"
20 #include "chrome/browser/net/ssl_config_service_manager.h"
21 #include "content/public/browser/browser_thread.h"
22 #include "content/public/browser/browser_thread_delegate.h"
23 #include "net/base/network_change_notifier.h"
24 #include "net/http/http_network_session.h"
25 #include "net/socket/next_proto.h"
27 class ChromeNetLog;
28 class PrefProxyConfigTracker;
29 class PrefService;
30 class PrefRegistrySimple;
31 class SystemURLRequestContextGetter;
33 namespace base {
34 class CommandLine;
37 namespace chrome_browser_net {
38 class DnsProbeService;
41 namespace extensions {
42 class EventRouterForwarder;
45 namespace net {
46 class CertPolicyEnforcer;
47 class CertVerifier;
48 class ChannelIDService;
49 class CookieStore;
50 class CTVerifier;
51 class FtpTransactionFactory;
52 class HostMappingRules;
53 class HostResolver;
54 class HttpAuthHandlerFactory;
55 class HttpServerProperties;
56 class HttpTransactionFactory;
57 class HttpUserAgentSettings;
58 class NetworkDelegate;
59 class ProxyConfigService;
60 class ProxyService;
61 class SSLConfigService;
62 class TransportSecurityState;
63 class URLRequestContext;
64 class URLRequestContextGetter;
65 class URLRequestJobFactory;
66 class URLRequestThrottlerManager;
67 class URLSecurityManager;
68 } // namespace net
70 namespace policy {
71 class PolicyService;
72 } // namespace policy
74 namespace test {
75 class IOThreadPeer;
76 } // namespace test
78 // Contains state associated with, initialized and cleaned up on, and
79 // primarily used on, the IO thread.
81 // If you are looking to interact with the IO thread (e.g. post tasks
82 // to it or check if it is the current thread), see
83 // content::BrowserThread.
84 class IOThread : public content::BrowserThreadDelegate {
85 public:
86 struct Globals {
87 template <typename T>
88 class Optional {
89 public:
90 Optional() : set_(false) {}
92 void set(T value) {
93 set_ = true;
94 value_ = value;
96 void CopyToIfSet(T* value) const {
97 if (set_) {
98 *value = value_;
102 private:
103 bool set_;
104 T value_;
107 class SystemRequestContextLeakChecker {
108 public:
109 explicit SystemRequestContextLeakChecker(Globals* globals);
110 ~SystemRequestContextLeakChecker();
112 private:
113 Globals* const globals_;
116 Globals();
117 ~Globals();
119 // The "system" NetworkDelegate, used for Profile-agnostic network events.
120 scoped_ptr<net::NetworkDelegate> system_network_delegate;
121 scoped_ptr<net::HostResolver> host_resolver;
122 scoped_ptr<net::CertVerifier> cert_verifier;
123 // The ChannelIDService must outlive the HttpTransactionFactory.
124 scoped_ptr<net::ChannelIDService> system_channel_id_service;
125 // This TransportSecurityState doesn't load or save any state. It's only
126 // used to enforce pinning for system requests and will only use built-in
127 // pins.
128 scoped_ptr<net::TransportSecurityState> transport_security_state;
129 scoped_ptr<net::CTVerifier> cert_transparency_verifier;
130 scoped_ptr<net::CertPolicyEnforcer> cert_policy_enforcer;
131 scoped_refptr<net::SSLConfigService> ssl_config_service;
132 scoped_ptr<net::HttpAuthHandlerFactory> http_auth_handler_factory;
133 scoped_ptr<net::HttpServerProperties> http_server_properties;
134 scoped_ptr<net::ProxyService> proxy_script_fetcher_proxy_service;
135 scoped_ptr<net::HttpTransactionFactory>
136 proxy_script_fetcher_http_transaction_factory;
137 scoped_ptr<net::FtpTransactionFactory>
138 proxy_script_fetcher_ftp_transaction_factory;
139 scoped_ptr<net::URLRequestJobFactory>
140 proxy_script_fetcher_url_request_job_factory;
141 scoped_ptr<net::URLRequestThrottlerManager> throttler_manager;
142 scoped_ptr<net::URLSecurityManager> url_security_manager;
143 // TODO(willchan): Remove proxy script fetcher context since it's not
144 // necessary now that I got rid of refcounting URLRequestContexts.
146 // The first URLRequestContext is |system_url_request_context|. We introduce
147 // |proxy_script_fetcher_context| for the second context. It has a direct
148 // ProxyService, since we always directly connect to fetch the PAC script.
149 scoped_ptr<net::URLRequestContext> proxy_script_fetcher_context;
150 scoped_ptr<net::ProxyService> system_proxy_service;
151 scoped_ptr<net::HttpTransactionFactory> system_http_transaction_factory;
152 scoped_ptr<net::URLRequestJobFactory> system_url_request_job_factory;
153 scoped_ptr<net::URLRequestContext> system_request_context;
154 SystemRequestContextLeakChecker system_request_context_leak_checker;
155 // |system_cookie_store| and |system_channel_id_service| are shared
156 // between |proxy_script_fetcher_context| and |system_request_context|.
157 scoped_refptr<net::CookieStore> system_cookie_store;
158 #if defined(ENABLE_EXTENSIONS)
159 scoped_refptr<extensions::EventRouterForwarder>
160 extension_event_router_forwarder;
161 #endif
162 scoped_ptr<net::HostMappingRules> host_mapping_rules;
163 scoped_ptr<net::HttpUserAgentSettings> http_user_agent_settings;
164 bool ignore_certificate_errors;
165 bool use_stale_while_revalidate;
166 uint16 testing_fixed_http_port;
167 uint16 testing_fixed_https_port;
168 Optional<bool> enable_tcp_fast_open_for_ssl;
170 Optional<size_t> initial_max_spdy_concurrent_streams;
171 Optional<bool> force_spdy_single_domain;
172 Optional<bool> enable_spdy_compression;
173 Optional<bool> enable_spdy_ping_based_connection_checking;
174 Optional<net::NextProto> spdy_default_protocol;
175 net::NextProtoVector next_protos;
176 Optional<std::string> trusted_spdy_proxy;
177 Optional<bool> force_spdy_over_ssl;
178 Optional<bool> force_spdy_always;
179 std::set<net::HostPortPair> forced_spdy_exclusions;
180 Optional<bool> use_alternate_protocols;
181 Optional<double> alternate_protocol_probability_threshold;
183 Optional<bool> enable_quic;
184 Optional<bool> enable_quic_for_proxies;
185 Optional<bool> enable_quic_port_selection;
186 Optional<bool> quic_always_require_handshake_confirmation;
187 Optional<bool> quic_disable_connection_pooling;
188 Optional<float> quic_load_server_info_timeout_srtt_multiplier;
189 Optional<bool> quic_enable_connection_racing;
190 Optional<bool> quic_enable_non_blocking_io;
191 Optional<bool> quic_disable_disk_cache;
192 Optional<int> quic_max_number_of_lossy_connections;
193 Optional<float> quic_packet_loss_threshold;
194 Optional<int> quic_socket_receive_buffer_size;
195 Optional<size_t> quic_max_packet_length;
196 net::QuicTagVector quic_connection_options;
197 Optional<std::string> quic_user_agent_id;
198 Optional<net::QuicVersionVector> quic_supported_versions;
199 Optional<net::HostPortPair> origin_to_force_quic_on;
200 bool enable_user_alternate_protocol_ports;
201 // NetErrorTabHelper uses |dns_probe_service| to send DNS probes when a
202 // main frame load fails with a DNS error in order to provide more useful
203 // information to the renderer so it can show a more specific error page.
204 scoped_ptr<chrome_browser_net::DnsProbeService> dns_probe_service;
207 // |net_log| must either outlive the IOThread or be NULL.
208 IOThread(PrefService* local_state,
209 policy::PolicyService* policy_service,
210 ChromeNetLog* net_log,
211 extensions::EventRouterForwarder* extension_event_router_forwarder);
213 ~IOThread() override;
215 static void RegisterPrefs(PrefRegistrySimple* registry);
217 // Can only be called on the IO thread.
218 Globals* globals();
220 // Allows overriding Globals in tests where IOThread::Init() and
221 // IOThread::CleanUp() are not called. This allows for injecting mocks into
222 // IOThread global objects.
223 void SetGlobalsForTesting(Globals* globals);
225 ChromeNetLog* net_log();
227 // Handles changing to On The Record mode, discarding confidential data.
228 void ChangedToOnTheRecord();
230 // Returns a getter for the URLRequestContext. Only called on the UI thread.
231 net::URLRequestContextGetter* system_url_request_context_getter();
233 // Clears the host cache. Intended to be used to prevent exposing recently
234 // visited sites on about:net-internals/#dns and about:dns pages. Must be
235 // called on the IO thread.
236 void ClearHostCache();
238 void InitializeNetworkSessionParams(net::HttpNetworkSession::Params* params);
240 base::TimeTicks creation_time() const;
242 // Returns true if QUIC should be enabled for data reduction proxy, either as
243 // a result of a field trial or a command line flag.
244 static bool ShouldEnableQuicForDataReductionProxy();
246 private:
247 // Map from name to value for all parameters associate with a field trial.
248 typedef std::map<std::string, std::string> VariationParameters;
250 // Provide SystemURLRequestContextGetter with access to
251 // InitSystemRequestContext().
252 friend class SystemURLRequestContextGetter;
254 friend class test::IOThreadPeer;
256 // BrowserThreadDelegate implementation, runs on the IO thread.
257 // This handles initialization and destruction of state that must
258 // live on the IO thread.
259 void Init() override;
260 void InitAsync() override;
261 void CleanUp() override;
263 // Initializes |params| based on the settings in |globals|.
264 static void InitializeNetworkSessionParamsFromGlobals(
265 const Globals& globals,
266 net::HttpNetworkSession::Params* params);
268 void InitializeNetworkOptions(const base::CommandLine& parsed_command_line);
270 // Sets up TCP FastOpen if enabled via field trials or via the command line.
271 void ConfigureTCPFastOpen(const base::CommandLine& command_line);
273 // Sets up SDCH based on field trials.
274 void ConfigureSdch();
276 // Configures available SPDY protocol versions in |globals| based on the flags
277 // in |command_lin| as well as SPDY field trial group and parameters. Must be
278 // called after ConfigureQuicGlobals.
279 static void ConfigureSpdyGlobals(const base::CommandLine& command_line,
280 base::StringPiece quic_trial_group,
281 const VariationParameters& quic_trial_params,
282 Globals* globals);
284 // Global state must be initialized on the IO thread, then this
285 // method must be invoked on the UI thread.
286 void InitSystemRequestContext();
288 // Lazy initialization of system request context for
289 // SystemURLRequestContextGetter. To be called on IO thread only
290 // after global state has been initialized on the IO thread, and
291 // SystemRequestContext state has been initialized on the UI thread.
292 void InitSystemRequestContextOnIOThread();
294 net::HttpAuthHandlerFactory* CreateDefaultAuthHandlerFactory(
295 net::HostResolver* resolver);
297 // Returns an SSLConfigService instance.
298 net::SSLConfigService* GetSSLConfigService();
300 void ChangedToOnTheRecordOnIOThread();
302 void UpdateDnsClientEnabled();
304 // Configures QUIC options based on the flags in |command_line| as
305 // well as the QUIC field trial group.
306 void ConfigureQuic(const base::CommandLine& command_line);
308 extensions::EventRouterForwarder* extension_event_router_forwarder() {
309 #if defined(ENABLE_EXTENSIONS)
310 return extension_event_router_forwarder_;
311 #else
312 return NULL;
313 #endif
315 // Configures QUIC options in |globals| based on the flags in |command_line|
316 // as well as the QUIC field trial group and parameters. Must be called
317 // before ConfigureSpdyGlobals.
318 static void ConfigureQuicGlobals(
319 const base::CommandLine& command_line,
320 base::StringPiece quic_trial_group,
321 const VariationParameters& quic_trial_params,
322 Globals* globals);
324 // Returns true if QUIC should be enabled, either as a result
325 // of a field trial or a command line flag.
326 static bool ShouldEnableQuic(
327 const base::CommandLine& command_line,
328 base::StringPiece quic_trial_group);
330 // Returns true if QUIC should be enabled for proxies, either as a result
331 // of a field trial or a command line flag.
332 static bool ShouldEnableQuicForProxies(
333 const base::CommandLine& command_line,
334 base::StringPiece quic_trial_group);
336 // Returns true if the selection of the ephemeral port in bind() should be
337 // performed by Chromium, and false if the OS should select the port. The OS
338 // option is used to prevent Windows from posting a security security warning
339 // dialog.
340 static bool ShouldEnableQuicPortSelection(
341 const base::CommandLine& command_line);
343 // Returns true if QUIC packet pacing should be negotiated during the
344 // QUIC handshake.
345 static bool ShouldEnableQuicPacing(
346 const base::CommandLine& command_line,
347 const VariationParameters& quic_trial_params);
349 // Returns true if QUIC should always require handshake confirmation during
350 // the QUIC handshake.
351 static bool ShouldQuicAlwaysRequireHandshakeConfirmation(
352 const VariationParameters& quic_trial_params);
354 // Returns true if QUIC should disable connection pooling.
355 static bool ShouldQuicDisableConnectionPooling(
356 const VariationParameters& quic_trial_params);
358 // Returns the ratio of time to load QUIC sever information from disk cache to
359 // 'smoothed RTT' based on field trial. Returns 0 if there is an error parsing
360 // the field trial params, or if the default value should be used.
361 static float GetQuicLoadServerInfoTimeoutSrttMultiplier(
362 const VariationParameters& quic_trial_params);
364 // Returns true if QUIC's connection racing should be enabled.
365 static bool ShouldQuicEnableConnectionRacing(
366 const VariationParameters& quic_trial_params);
368 // Returns true if QUIC's should use non-blocking IO.
369 static bool ShouldQuicEnableNonBlockingIO(
370 const VariationParameters& quic_trial_params);
372 // Returns true if QUIC shouldn't load QUIC server information from the disk
373 // cache.
374 static bool ShouldQuicDisableDiskCache(
375 const VariationParameters& quic_trial_params);
377 // Returns the maximum number of QUIC connections with high packet loss in a
378 // row after which QUIC should be disabled. Returns 0 if the default value
379 // should be used.
380 static int GetQuicMaxNumberOfLossyConnections(
381 const VariationParameters& quic_trial_params);
383 // Returns the packet loss rate in fraction after which a QUIC connection is
384 // closed and is considered as a lossy connection. Returns 0 if the default
385 // value should be used.
386 static float GetQuicPacketLossThreshold(
387 const VariationParameters& quic_trial_params);
389 // Returns the size of the QUIC receive buffer to use, or 0 if
390 // the default should be used.
391 static int GetQuicSocketReceiveBufferSize(
392 const VariationParameters& quic_trial_params);
394 // Returns the maximum length for QUIC packets, based on any flags in
395 // |command_line| or the field trial. Returns 0 if there is an error
396 // parsing any of the options, or if the default value should be used.
397 static size_t GetQuicMaxPacketLength(
398 const base::CommandLine& command_line,
399 const VariationParameters& quic_trial_params);
401 // Returns the QUIC versions specified by any flags in |command_line|
402 // or |quic_trial_params|.
403 static net::QuicVersion GetQuicVersion(
404 const base::CommandLine& command_line,
405 const VariationParameters& quic_trial_params);
407 // Returns the QUIC version specified by |quic_version| or
408 // QUIC_VERSION_UNSUPPORTED if |quic_version| is invalid.
409 static net::QuicVersion ParseQuicVersion(const std::string& quic_version);
411 // Returns the QUIC connection options specified by any flags in
412 // |command_line| or |quic_trial_params|.
413 static net::QuicTagVector GetQuicConnectionOptions(
414 const base::CommandLine& command_line,
415 const VariationParameters& quic_trial_params);
417 // Returns the alternate protocol probability threshold specified by
418 // any flags in |command_line| or |quic_trial_params|.
419 static double GetAlternateProtocolProbabilityThreshold(
420 const base::CommandLine& command_line,
421 const VariationParameters& quic_trial_params);
423 // The NetLog is owned by the browser process, to allow logging from other
424 // threads during shutdown, but is used most frequently on the IOThread.
425 ChromeNetLog* net_log_;
427 #if defined(ENABLE_EXTENSIONS)
428 // The extensions::EventRouterForwarder allows for sending events to
429 // extensions from the IOThread.
430 extensions::EventRouterForwarder* extension_event_router_forwarder_;
431 #endif
433 // These member variables are basically global, but their lifetimes are tied
434 // to the IOThread. IOThread owns them all, despite not using scoped_ptr.
435 // This is because the destructor of IOThread runs on the wrong thread. All
436 // member variables should be deleted in CleanUp().
438 // These member variables are initialized in Init() and do not change for the
439 // lifetime of the IO thread.
441 Globals* globals_;
443 // Observer that logs network changes to the ChromeNetLog.
444 class LoggingNetworkChangeObserver;
445 scoped_ptr<LoggingNetworkChangeObserver> network_change_observer_;
447 BooleanPrefMember system_enable_referrers_;
449 BooleanPrefMember dns_client_enabled_;
451 BooleanPrefMember quick_check_enabled_;
453 // Store HTTP Auth-related policies in this thread.
454 std::string auth_schemes_;
455 bool negotiate_disable_cname_lookup_;
456 bool negotiate_enable_port_;
457 std::string auth_server_whitelist_;
458 std::string auth_delegate_whitelist_;
459 std::string gssapi_library_name_;
461 // This is an instance of the default SSLConfigServiceManager for the current
462 // platform and it gets SSL preferences from local_state object.
463 scoped_ptr<SSLConfigServiceManager> ssl_config_service_manager_;
465 // These member variables are initialized by a task posted to the IO thread,
466 // which gets posted by calling certain member functions of IOThread.
467 scoped_ptr<net::ProxyConfigService> system_proxy_config_service_;
469 scoped_ptr<PrefProxyConfigTracker> pref_proxy_config_tracker_;
471 scoped_refptr<net::URLRequestContextGetter>
472 system_url_request_context_getter_;
474 // True if SPDY is disabled by policy.
475 bool is_spdy_disabled_by_policy_;
477 const base::TimeTicks creation_time_;
479 base::WeakPtrFactory<IOThread> weak_factory_;
481 DISALLOW_COPY_AND_ASSIGN(IOThread);
484 #endif // CHROME_BROWSER_IO_THREAD_H_