1 // Copyright 2013 The Chromium Authors. All rights reserved.
2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file.
5 #ifndef CHROME_BROWSER_MANAGED_MODE_MANAGED_USER_REFRESH_TOKEN_FETCHER_H_
6 #define CHROME_BROWSER_MANAGED_MODE_MANAGED_USER_REFRESH_TOKEN_FETCHER_H_
10 #include "base/callback_forward.h"
11 #include "base/compiler_specific.h"
12 #include "base/memory/scoped_ptr.h"
13 #include "base/strings/string16.h"
15 class GoogleServiceAuthError
;
16 class OAuth2TokenService
;
19 class URLRequestContextGetter
;
22 // This class fetches an OAuth2 refresh token that is tied to a managed user ID
23 // and downscoped to a special scope for Chrome Sync for managed users.
24 // Fetching the token consists of the following steps:
25 // 1. Get an access token for the custodian from OAuth2TokenService
26 // (either cached or fetched).
27 // 2. Call the IssueToken API to mint a scoped authorization code for a
28 // refresh token for the managed user from the custodian's access token.
29 // 3. Exchange the authorization code for a refresh token for the managed
30 // user and return it to the caller. The refresh token can only be used to
31 // mint tokens with the special managed user Sync scope.
32 class ManagedUserRefreshTokenFetcher
{
34 typedef base::Callback
<void(const GoogleServiceAuthError
& /* error */,
35 const std::string
& /* refresh_token */)>
38 static scoped_ptr
<ManagedUserRefreshTokenFetcher
> Create(
39 OAuth2TokenService
* oauth2_token_service
,
40 const std::string
& account_id
,
41 net::URLRequestContextGetter
* context
);
43 virtual ~ManagedUserRefreshTokenFetcher();
45 virtual void Start(const std::string
& managed_user_id
,
46 const std::string
& device_name
,
47 const TokenCallback
& callback
) = 0;
50 #endif // CHROME_BROWSER_MANAGED_MODE_MANAGED_USER_REFRESH_TOKEN_FETCHER_H_