Roll src/third_party/WebKit d9c6159:8139f33 (svn 201974:201975)
[chromium-blink-merge.git] / content / browser / frame_host / navigation_controller_impl.cc
blob41a4e177b520e9a8944972795616e75e4fabb110
1 // Copyright 2013 The Chromium Authors. All rights reserved.
2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file.
5 /*
6 * Copyright (C) 2006, 2007, 2008, 2009 Apple Inc. All rights reserved.
7 * Copyright (C) 2008 Nokia Corporation and/or its subsidiary(-ies)
8 * Copyright (C) 2008, 2009 Torch Mobile Inc. All rights reserved.
9 * (http://www.torchmobile.com/)
11 * Redistribution and use in source and binary forms, with or without
12 * modification, are permitted provided that the following conditions
13 * are met:
15 * 1. Redistributions of source code must retain the above copyright
16 * notice, this list of conditions and the following disclaimer.
17 * 2. Redistributions in binary form must reproduce the above copyright
18 * notice, this list of conditions and the following disclaimer in the
19 * documentation and/or other materials provided with the distribution.
20 * 3. Neither the name of Apple Computer, Inc. ("Apple") nor the names of
21 * its contributors may be used to endorse or promote products derived
22 * from this software without specific prior written permission.
24 * THIS SOFTWARE IS PROVIDED BY APPLE AND ITS CONTRIBUTORS "AS IS" AND ANY
25 * EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED
26 * WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE
27 * DISCLAIMED. IN NO EVENT SHALL APPLE OR ITS CONTRIBUTORS BE LIABLE FOR ANY
28 * DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES
29 * (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
30 * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND
31 * ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
32 * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
33 * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
36 #include "content/browser/frame_host/navigation_controller_impl.h"
38 #include "base/bind.h"
39 #include "base/command_line.h"
40 #include "base/logging.h"
41 #include "base/metrics/histogram.h"
42 #include "base/strings/string_number_conversions.h" // Temporary
43 #include "base/strings/string_util.h"
44 #include "base/strings/utf_string_conversions.h"
45 #include "base/time/time.h"
46 #include "base/trace_event/trace_event.h"
47 #include "build/build_config.h"
48 #include "cc/base/switches.h"
49 #include "components/mime_util/mime_util.h"
50 #include "content/browser/bad_message.h"
51 #include "content/browser/browser_url_handler_impl.h"
52 #include "content/browser/dom_storage/dom_storage_context_wrapper.h"
53 #include "content/browser/dom_storage/session_storage_namespace_impl.h"
54 #include "content/browser/frame_host/debug_urls.h"
55 #include "content/browser/frame_host/interstitial_page_impl.h"
56 #include "content/browser/frame_host/navigation_entry_impl.h"
57 #include "content/browser/frame_host/navigation_entry_screenshot_manager.h"
58 #include "content/browser/frame_host/navigator.h"
59 #include "content/browser/renderer_host/render_view_host_impl.h" // Temporary
60 #include "content/browser/site_instance_impl.h"
61 #include "content/common/frame_messages.h"
62 #include "content/common/site_isolation_policy.h"
63 #include "content/common/ssl_status_serialization.h"
64 #include "content/common/view_messages.h"
65 #include "content/public/browser/browser_context.h"
66 #include "content/public/browser/content_browser_client.h"
67 #include "content/public/browser/invalidate_type.h"
68 #include "content/public/browser/navigation_details.h"
69 #include "content/public/browser/notification_service.h"
70 #include "content/public/browser/notification_types.h"
71 #include "content/public/browser/render_widget_host.h"
72 #include "content/public/browser/render_widget_host_view.h"
73 #include "content/public/browser/storage_partition.h"
74 #include "content/public/browser/user_metrics.h"
75 #include "content/public/common/content_client.h"
76 #include "content/public/common/content_constants.h"
77 #include "media/base/mime_util.h"
78 #include "net/base/escape.h"
79 #include "net/base/net_util.h"
80 #include "skia/ext/platform_canvas.h"
81 #include "url/url_constants.h"
83 namespace content {
84 namespace {
86 // Invoked when entries have been pruned, or removed. For example, if the
87 // current entries are [google, digg, yahoo], with the current entry google,
88 // and the user types in cnet, then digg and yahoo are pruned.
89 void NotifyPrunedEntries(NavigationControllerImpl* nav_controller,
90 bool from_front,
91 int count) {
92 PrunedDetails details;
93 details.from_front = from_front;
94 details.count = count;
95 NotificationService::current()->Notify(
96 NOTIFICATION_NAV_LIST_PRUNED,
97 Source<NavigationController>(nav_controller),
98 Details<PrunedDetails>(&details));
101 // Ensure the given NavigationEntry has a valid state, so that WebKit does not
102 // get confused if we navigate back to it.
104 // An empty state is treated as a new navigation by WebKit, which would mean
105 // losing the navigation entries and generating a new navigation entry after
106 // this one. We don't want that. To avoid this we create a valid state which
107 // WebKit will not treat as a new navigation.
108 void SetPageStateIfEmpty(NavigationEntryImpl* entry) {
109 if (!entry->GetPageState().IsValid())
110 entry->SetPageState(PageState::CreateFromURL(entry->GetURL()));
113 NavigationEntryImpl::RestoreType ControllerRestoreTypeToEntryType(
114 NavigationController::RestoreType type) {
115 switch (type) {
116 case NavigationController::RESTORE_CURRENT_SESSION:
117 return NavigationEntryImpl::RESTORE_CURRENT_SESSION;
118 case NavigationController::RESTORE_LAST_SESSION_EXITED_CLEANLY:
119 return NavigationEntryImpl::RESTORE_LAST_SESSION_EXITED_CLEANLY;
120 case NavigationController::RESTORE_LAST_SESSION_CRASHED:
121 return NavigationEntryImpl::RESTORE_LAST_SESSION_CRASHED;
123 NOTREACHED();
124 return NavigationEntryImpl::RESTORE_CURRENT_SESSION;
127 // Configure all the NavigationEntries in entries for restore. This resets
128 // the transition type to reload and makes sure the content state isn't empty.
129 void ConfigureEntriesForRestore(
130 ScopedVector<NavigationEntryImpl>* entries,
131 NavigationController::RestoreType type) {
132 for (size_t i = 0; i < entries->size(); ++i) {
133 // Use a transition type of reload so that we don't incorrectly increase
134 // the typed count.
135 (*entries)[i]->SetTransitionType(ui::PAGE_TRANSITION_RELOAD);
136 (*entries)[i]->set_restore_type(ControllerRestoreTypeToEntryType(type));
137 // NOTE(darin): This code is only needed for backwards compat.
138 SetPageStateIfEmpty((*entries)[i]);
142 // Determines whether or not we should be carrying over a user agent override
143 // between two NavigationEntries.
144 bool ShouldKeepOverride(const NavigationEntry* last_entry) {
145 return last_entry && last_entry->GetIsOverridingUserAgent();
148 } // namespace
150 // NavigationControllerImpl ----------------------------------------------------
152 const size_t kMaxEntryCountForTestingNotSet = static_cast<size_t>(-1);
154 // static
155 size_t NavigationControllerImpl::max_entry_count_for_testing_ =
156 kMaxEntryCountForTestingNotSet;
158 // Should Reload check for post data? The default is true, but is set to false
159 // when testing.
160 static bool g_check_for_repost = true;
162 // static
163 scoped_ptr<NavigationEntry> NavigationController::CreateNavigationEntry(
164 const GURL& url,
165 const Referrer& referrer,
166 ui::PageTransition transition,
167 bool is_renderer_initiated,
168 const std::string& extra_headers,
169 BrowserContext* browser_context) {
170 // Fix up the given URL before letting it be rewritten, so that any minor
171 // cleanup (e.g., removing leading dots) will not lead to a virtual URL.
172 GURL dest_url(url);
173 BrowserURLHandlerImpl::GetInstance()->FixupURLBeforeRewrite(&dest_url,
174 browser_context);
176 // Allow the browser URL handler to rewrite the URL. This will, for example,
177 // remove "view-source:" from the beginning of the URL to get the URL that
178 // will actually be loaded. This real URL won't be shown to the user, just
179 // used internally.
180 GURL loaded_url(dest_url);
181 bool reverse_on_redirect = false;
182 BrowserURLHandlerImpl::GetInstance()->RewriteURLIfNecessary(
183 &loaded_url, browser_context, &reverse_on_redirect);
185 NavigationEntryImpl* entry = new NavigationEntryImpl(
186 NULL, // The site instance for tabs is sent on navigation
187 // (WebContents::GetSiteInstance).
189 loaded_url,
190 referrer,
191 base::string16(),
192 transition,
193 is_renderer_initiated);
194 entry->SetVirtualURL(dest_url);
195 entry->set_user_typed_url(dest_url);
196 entry->set_update_virtual_url_with_url(reverse_on_redirect);
197 entry->set_extra_headers(extra_headers);
198 return make_scoped_ptr(entry);
201 // static
202 void NavigationController::DisablePromptOnRepost() {
203 g_check_for_repost = false;
206 base::Time NavigationControllerImpl::TimeSmoother::GetSmoothedTime(
207 base::Time t) {
208 // If |t| is between the water marks, we're in a run of duplicates
209 // or just getting out of it, so increase the high-water mark to get
210 // a time that probably hasn't been used before and return it.
211 if (low_water_mark_ <= t && t <= high_water_mark_) {
212 high_water_mark_ += base::TimeDelta::FromMicroseconds(1);
213 return high_water_mark_;
216 // Otherwise, we're clear of the last duplicate run, so reset the
217 // water marks.
218 low_water_mark_ = high_water_mark_ = t;
219 return t;
222 NavigationControllerImpl::NavigationControllerImpl(
223 NavigationControllerDelegate* delegate,
224 BrowserContext* browser_context)
225 : browser_context_(browser_context),
226 pending_entry_(NULL),
227 failed_pending_entry_id_(0),
228 failed_pending_entry_should_replace_(false),
229 last_committed_entry_index_(-1),
230 pending_entry_index_(-1),
231 transient_entry_index_(-1),
232 delegate_(delegate),
233 max_restored_page_id_(-1),
234 ssl_manager_(this),
235 needs_reload_(false),
236 is_initial_navigation_(true),
237 in_navigate_to_pending_entry_(false),
238 pending_reload_(NO_RELOAD),
239 get_timestamp_callback_(base::Bind(&base::Time::Now)),
240 screenshot_manager_(new NavigationEntryScreenshotManager(this)) {
241 DCHECK(browser_context_);
244 NavigationControllerImpl::~NavigationControllerImpl() {
245 DiscardNonCommittedEntriesInternal();
248 WebContents* NavigationControllerImpl::GetWebContents() const {
249 return delegate_->GetWebContents();
252 BrowserContext* NavigationControllerImpl::GetBrowserContext() const {
253 return browser_context_;
256 void NavigationControllerImpl::SetBrowserContext(
257 BrowserContext* browser_context) {
258 browser_context_ = browser_context;
261 void NavigationControllerImpl::Restore(
262 int selected_navigation,
263 RestoreType type,
264 ScopedVector<NavigationEntry>* entries) {
265 // Verify that this controller is unused and that the input is valid.
266 DCHECK(GetEntryCount() == 0 && !GetPendingEntry());
267 DCHECK(selected_navigation >= 0 &&
268 selected_navigation < static_cast<int>(entries->size()));
270 needs_reload_ = true;
271 for (size_t i = 0; i < entries->size(); ++i) {
272 NavigationEntryImpl* entry =
273 NavigationEntryImpl::FromNavigationEntry((*entries)[i]);
274 entries_.push_back(entry);
276 entries->weak_clear();
278 // And finish the restore.
279 FinishRestore(selected_navigation, type);
282 void NavigationControllerImpl::Reload(bool check_for_repost) {
283 ReloadInternal(check_for_repost, RELOAD);
285 void NavigationControllerImpl::ReloadIgnoringCache(bool check_for_repost) {
286 ReloadInternal(check_for_repost, RELOAD_IGNORING_CACHE);
288 void NavigationControllerImpl::ReloadOriginalRequestURL(bool check_for_repost) {
289 ReloadInternal(check_for_repost, RELOAD_ORIGINAL_REQUEST_URL);
292 void NavigationControllerImpl::ReloadInternal(bool check_for_repost,
293 ReloadType reload_type) {
294 if (transient_entry_index_ != -1) {
295 // If an interstitial is showing, treat a reload as a navigation to the
296 // transient entry's URL.
297 NavigationEntryImpl* transient_entry = GetTransientEntry();
298 if (!transient_entry)
299 return;
300 LoadURL(transient_entry->GetURL(),
301 Referrer(),
302 ui::PAGE_TRANSITION_RELOAD,
303 transient_entry->extra_headers());
304 return;
307 NavigationEntryImpl* entry = NULL;
308 int current_index = -1;
310 // If we are reloading the initial navigation, just use the current
311 // pending entry. Otherwise look up the current entry.
312 if (IsInitialNavigation() && pending_entry_) {
313 entry = pending_entry_;
314 // The pending entry might be in entries_ (e.g., after a Clone), so we
315 // should also update the current_index.
316 current_index = pending_entry_index_;
317 } else {
318 DiscardNonCommittedEntriesInternal();
319 current_index = GetCurrentEntryIndex();
320 if (current_index != -1) {
321 entry = GetEntryAtIndex(current_index);
325 // If we are no where, then we can't reload. TODO(darin): We should add a
326 // CanReload method.
327 if (!entry)
328 return;
330 if (g_check_for_repost && check_for_repost &&
331 entry->GetHasPostData()) {
332 // The user is asking to reload a page with POST data. Prompt to make sure
333 // they really want to do this. If they do, the dialog will call us back
334 // with check_for_repost = false.
335 delegate_->NotifyBeforeFormRepostWarningShow();
337 pending_reload_ = reload_type;
338 delegate_->ActivateAndShowRepostFormWarningDialog();
339 } else {
340 if (!IsInitialNavigation())
341 DiscardNonCommittedEntriesInternal();
343 // If we are reloading an entry that no longer belongs to the current
344 // site instance (for example, refreshing a page for just installed app),
345 // the reload must happen in a new process.
346 // The new entry must have a new page_id and site instance, so it behaves
347 // as new navigation (which happens to clear forward history).
348 // Tabs that are discarded due to low memory conditions may not have a site
349 // instance, and should not be treated as a cross-site reload.
350 SiteInstanceImpl* site_instance = entry->site_instance();
351 // Permit reloading guests without further checks.
352 bool is_for_guests_only = site_instance && site_instance->HasProcess() &&
353 site_instance->GetProcess()->IsForGuestsOnly();
354 if (!is_for_guests_only && site_instance &&
355 site_instance->HasWrongProcessForURL(entry->GetURL())) {
356 // Create a navigation entry that resembles the current one, but do not
357 // copy page id, site instance, content state, or timestamp.
358 NavigationEntryImpl* nav_entry = NavigationEntryImpl::FromNavigationEntry(
359 CreateNavigationEntry(
360 entry->GetURL(), entry->GetReferrer(), entry->GetTransitionType(),
361 false, entry->extra_headers(), browser_context_).release());
363 // Mark the reload type as NO_RELOAD, so navigation will not be considered
364 // a reload in the renderer.
365 reload_type = NavigationController::NO_RELOAD;
367 nav_entry->set_should_replace_entry(true);
368 pending_entry_ = nav_entry;
369 DCHECK_EQ(-1, pending_entry_index_);
370 } else {
371 pending_entry_ = entry;
372 pending_entry_index_ = current_index;
374 // The title of the page being reloaded might have been removed in the
375 // meanwhile, so we need to revert to the default title upon reload and
376 // invalidate the previously cached title (SetTitle will do both).
377 // See Chromium issue 96041.
378 pending_entry_->SetTitle(base::string16());
380 pending_entry_->SetTransitionType(ui::PAGE_TRANSITION_RELOAD);
383 NavigateToPendingEntry(reload_type);
387 void NavigationControllerImpl::CancelPendingReload() {
388 DCHECK(pending_reload_ != NO_RELOAD);
389 pending_reload_ = NO_RELOAD;
392 void NavigationControllerImpl::ContinuePendingReload() {
393 if (pending_reload_ == NO_RELOAD) {
394 NOTREACHED();
395 } else {
396 ReloadInternal(false, pending_reload_);
397 pending_reload_ = NO_RELOAD;
401 bool NavigationControllerImpl::IsInitialNavigation() const {
402 return is_initial_navigation_;
405 NavigationEntryImpl* NavigationControllerImpl::GetEntryWithPageID(
406 SiteInstance* instance, int32 page_id) const {
407 int index = GetEntryIndexWithPageID(instance, page_id);
408 return (index != -1) ? entries_[index] : nullptr;
411 NavigationEntryImpl*
412 NavigationControllerImpl::GetEntryWithUniqueID(int nav_entry_id) const {
413 int index = GetEntryIndexWithUniqueID(nav_entry_id);
414 return (index != -1) ? entries_[index] : nullptr;
417 void NavigationControllerImpl::LoadEntry(
418 scoped_ptr<NavigationEntryImpl> entry) {
419 // When navigating to a new page, we don't know for sure if we will actually
420 // end up leaving the current page. The new page load could for example
421 // result in a download or a 'no content' response (e.g., a mailto: URL).
422 SetPendingEntry(entry.Pass());
423 NavigateToPendingEntry(NO_RELOAD);
426 void NavigationControllerImpl::SetPendingEntry(
427 scoped_ptr<NavigationEntryImpl> entry) {
428 DiscardNonCommittedEntriesInternal();
429 pending_entry_ = entry.release();
430 NotificationService::current()->Notify(
431 NOTIFICATION_NAV_ENTRY_PENDING,
432 Source<NavigationController>(this),
433 Details<NavigationEntry>(pending_entry_));
436 NavigationEntryImpl* NavigationControllerImpl::GetActiveEntry() const {
437 if (transient_entry_index_ != -1)
438 return entries_[transient_entry_index_];
439 if (pending_entry_)
440 return pending_entry_;
441 return GetLastCommittedEntry();
444 NavigationEntryImpl* NavigationControllerImpl::GetVisibleEntry() const {
445 if (transient_entry_index_ != -1)
446 return entries_[transient_entry_index_];
447 // The pending entry is safe to return for new (non-history), browser-
448 // initiated navigations. Most renderer-initiated navigations should not
449 // show the pending entry, to prevent URL spoof attacks.
451 // We make an exception for renderer-initiated navigations in new tabs, as
452 // long as no other page has tried to access the initial empty document in
453 // the new tab. If another page modifies this blank page, a URL spoof is
454 // possible, so we must stop showing the pending entry.
455 bool safe_to_show_pending =
456 pending_entry_ &&
457 // Require a new navigation.
458 pending_entry_index_ == -1 &&
459 // Require either browser-initiated or an unmodified new tab.
460 (!pending_entry_->is_renderer_initiated() || IsUnmodifiedBlankTab());
462 // Also allow showing the pending entry for history navigations in a new tab,
463 // such as Ctrl+Back. In this case, no existing page is visible and no one
464 // can script the new tab before it commits.
465 if (!safe_to_show_pending &&
466 pending_entry_ &&
467 pending_entry_index_ != -1 &&
468 IsInitialNavigation() &&
469 !pending_entry_->is_renderer_initiated())
470 safe_to_show_pending = true;
472 if (safe_to_show_pending)
473 return pending_entry_;
474 return GetLastCommittedEntry();
477 int NavigationControllerImpl::GetCurrentEntryIndex() const {
478 if (transient_entry_index_ != -1)
479 return transient_entry_index_;
480 if (pending_entry_index_ != -1)
481 return pending_entry_index_;
482 return last_committed_entry_index_;
485 NavigationEntryImpl* NavigationControllerImpl::GetLastCommittedEntry() const {
486 if (last_committed_entry_index_ == -1)
487 return NULL;
488 return entries_[last_committed_entry_index_];
491 bool NavigationControllerImpl::CanViewSource() const {
492 const std::string& mime_type = delegate_->GetContentsMimeType();
493 bool is_viewable_mime_type =
494 mime_util::IsSupportedNonImageMimeType(mime_type) &&
495 !media::IsSupportedMediaMimeType(mime_type);
496 NavigationEntry* visible_entry = GetVisibleEntry();
497 return visible_entry && !visible_entry->IsViewSourceMode() &&
498 is_viewable_mime_type && !delegate_->GetInterstitialPage();
501 int NavigationControllerImpl::GetLastCommittedEntryIndex() const {
502 return last_committed_entry_index_;
505 int NavigationControllerImpl::GetEntryCount() const {
506 DCHECK(entries_.size() <= max_entry_count());
507 return static_cast<int>(entries_.size());
510 NavigationEntryImpl* NavigationControllerImpl::GetEntryAtIndex(
511 int index) const {
512 if (index < 0 || index >= GetEntryCount())
513 return nullptr;
515 return entries_[index];
518 NavigationEntryImpl* NavigationControllerImpl::GetEntryAtOffset(
519 int offset) const {
520 return GetEntryAtIndex(GetIndexForOffset(offset));
523 int NavigationControllerImpl::GetIndexForOffset(int offset) const {
524 return GetCurrentEntryIndex() + offset;
527 void NavigationControllerImpl::TakeScreenshot() {
528 screenshot_manager_->TakeScreenshot();
531 void NavigationControllerImpl::SetScreenshotManager(
532 scoped_ptr<NavigationEntryScreenshotManager> manager) {
533 if (manager.get())
534 screenshot_manager_ = manager.Pass();
535 else
536 screenshot_manager_.reset(new NavigationEntryScreenshotManager(this));
539 bool NavigationControllerImpl::CanGoBack() const {
540 return CanGoToOffset(-1);
543 bool NavigationControllerImpl::CanGoForward() const {
544 return CanGoToOffset(1);
547 bool NavigationControllerImpl::CanGoToOffset(int offset) const {
548 int index = GetIndexForOffset(offset);
549 return index >= 0 && index < GetEntryCount();
552 void NavigationControllerImpl::GoBack() {
553 if (!CanGoBack()) {
554 NOTREACHED();
555 return;
558 // Base the navigation on where we are now...
559 int current_index = GetCurrentEntryIndex();
561 DiscardNonCommittedEntries();
563 pending_entry_index_ = current_index - 1;
564 entries_[pending_entry_index_]->SetTransitionType(
565 ui::PageTransitionFromInt(
566 entries_[pending_entry_index_]->GetTransitionType() |
567 ui::PAGE_TRANSITION_FORWARD_BACK));
568 NavigateToPendingEntry(NO_RELOAD);
571 void NavigationControllerImpl::GoForward() {
572 if (!CanGoForward()) {
573 NOTREACHED();
574 return;
577 bool transient = (transient_entry_index_ != -1);
579 // Base the navigation on where we are now...
580 int current_index = GetCurrentEntryIndex();
582 DiscardNonCommittedEntries();
584 pending_entry_index_ = current_index;
585 // If there was a transient entry, we removed it making the current index
586 // the next page.
587 if (!transient)
588 pending_entry_index_++;
590 entries_[pending_entry_index_]->SetTransitionType(
591 ui::PageTransitionFromInt(
592 entries_[pending_entry_index_]->GetTransitionType() |
593 ui::PAGE_TRANSITION_FORWARD_BACK));
594 NavigateToPendingEntry(NO_RELOAD);
597 void NavigationControllerImpl::GoToIndex(int index) {
598 if (index < 0 || index >= static_cast<int>(entries_.size())) {
599 NOTREACHED();
600 return;
603 if (transient_entry_index_ != -1) {
604 if (index == transient_entry_index_) {
605 // Nothing to do when navigating to the transient.
606 return;
608 if (index > transient_entry_index_) {
609 // Removing the transient is goint to shift all entries by 1.
610 index--;
614 DiscardNonCommittedEntries();
616 pending_entry_index_ = index;
617 entries_[pending_entry_index_]->SetTransitionType(
618 ui::PageTransitionFromInt(
619 entries_[pending_entry_index_]->GetTransitionType() |
620 ui::PAGE_TRANSITION_FORWARD_BACK));
621 NavigateToPendingEntry(NO_RELOAD);
624 void NavigationControllerImpl::GoToOffset(int offset) {
625 if (!CanGoToOffset(offset))
626 return;
628 GoToIndex(GetIndexForOffset(offset));
631 bool NavigationControllerImpl::RemoveEntryAtIndex(int index) {
632 if (index == last_committed_entry_index_ ||
633 index == pending_entry_index_)
634 return false;
636 RemoveEntryAtIndexInternal(index);
637 return true;
640 void NavigationControllerImpl::UpdateVirtualURLToURL(
641 NavigationEntryImpl* entry, const GURL& new_url) {
642 GURL new_virtual_url(new_url);
643 if (BrowserURLHandlerImpl::GetInstance()->ReverseURLRewrite(
644 &new_virtual_url, entry->GetVirtualURL(), browser_context_)) {
645 entry->SetVirtualURL(new_virtual_url);
649 void NavigationControllerImpl::LoadURL(
650 const GURL& url,
651 const Referrer& referrer,
652 ui::PageTransition transition,
653 const std::string& extra_headers) {
654 LoadURLParams params(url);
655 params.referrer = referrer;
656 params.transition_type = transition;
657 params.extra_headers = extra_headers;
658 LoadURLWithParams(params);
661 void NavigationControllerImpl::LoadURLWithParams(const LoadURLParams& params) {
662 TRACE_EVENT1("browser,navigation",
663 "NavigationControllerImpl::LoadURLWithParams",
664 "url", params.url.possibly_invalid_spec());
665 if (HandleDebugURL(params.url, params.transition_type)) {
666 // If Telemetry is running, allow the URL load to proceed as if it's
667 // unhandled, otherwise Telemetry can't tell if Navigation completed.
668 if (!base::CommandLine::ForCurrentProcess()->HasSwitch(
669 cc::switches::kEnableGpuBenchmarking))
670 return;
673 // Any renderer-side debug URLs or javascript: URLs should be ignored if the
674 // renderer process is not live, unless it is the initial navigation of the
675 // tab.
676 if (IsRendererDebugURL(params.url)) {
677 // TODO(creis): Find the RVH for the correct frame.
678 if (!delegate_->GetRenderViewHost()->IsRenderViewLive() &&
679 !IsInitialNavigation())
680 return;
683 // Checks based on params.load_type.
684 switch (params.load_type) {
685 case LOAD_TYPE_DEFAULT:
686 break;
687 case LOAD_TYPE_BROWSER_INITIATED_HTTP_POST:
688 if (!params.url.SchemeIs(url::kHttpScheme) &&
689 !params.url.SchemeIs(url::kHttpsScheme)) {
690 NOTREACHED() << "Http post load must use http(s) scheme.";
691 return;
693 break;
694 case LOAD_TYPE_DATA:
695 if (!params.url.SchemeIs(url::kDataScheme)) {
696 NOTREACHED() << "Data load must use data scheme.";
697 return;
699 break;
700 default:
701 NOTREACHED();
702 break;
705 // The user initiated a load, we don't need to reload anymore.
706 needs_reload_ = false;
708 bool override = false;
709 switch (params.override_user_agent) {
710 case UA_OVERRIDE_INHERIT:
711 override = ShouldKeepOverride(GetLastCommittedEntry());
712 break;
713 case UA_OVERRIDE_TRUE:
714 override = true;
715 break;
716 case UA_OVERRIDE_FALSE:
717 override = false;
718 break;
719 default:
720 NOTREACHED();
721 break;
724 scoped_ptr<NavigationEntryImpl> entry;
726 // For subframes, create a pending entry with a corresponding frame entry.
727 int frame_tree_node_id = params.frame_tree_node_id;
728 if (frame_tree_node_id != -1 || !params.frame_name.empty()) {
729 FrameTreeNode* node =
730 params.frame_tree_node_id != -1
731 ? delegate_->GetFrameTree()->FindByID(params.frame_tree_node_id)
732 : delegate_->GetFrameTree()->FindByName(params.frame_name);
733 if (node && !node->IsMainFrame()) {
734 DCHECK(GetLastCommittedEntry());
736 // Update the FTN ID to use below in case we found a named frame.
737 frame_tree_node_id = node->frame_tree_node_id();
739 // In --site-per-process, create an identical NavigationEntry with a
740 // new FrameNavigationEntry for the target subframe.
741 if (SiteIsolationPolicy::UseSubframeNavigationEntries()) {
742 entry = GetLastCommittedEntry()->Clone();
743 entry->SetPageID(-1);
744 entry->AddOrUpdateFrameEntry(node, -1, -1, nullptr, params.url,
745 params.referrer, PageState());
750 // Otherwise, create a pending entry for the main frame.
751 if (!entry) {
752 entry = NavigationEntryImpl::FromNavigationEntry(CreateNavigationEntry(
753 params.url, params.referrer, params.transition_type,
754 params.is_renderer_initiated, params.extra_headers, browser_context_));
756 // Set the FTN ID (only used in non-site-per-process, for tests).
757 entry->set_frame_tree_node_id(frame_tree_node_id);
758 entry->set_source_site_instance(
759 static_cast<SiteInstanceImpl*>(params.source_site_instance.get()));
760 if (params.redirect_chain.size() > 0)
761 entry->SetRedirectChain(params.redirect_chain);
762 // Don't allow an entry replacement if there is no entry to replace.
763 // http://crbug.com/457149
764 if (params.should_replace_current_entry && entries_.size() > 0)
765 entry->set_should_replace_entry(true);
766 entry->set_should_clear_history_list(params.should_clear_history_list);
767 entry->SetIsOverridingUserAgent(override);
768 entry->set_transferred_global_request_id(
769 params.transferred_global_request_id);
771 #if defined(OS_ANDROID)
772 if (params.intent_received_timestamp > 0) {
773 entry->set_intent_received_timestamp(
774 base::TimeTicks() +
775 base::TimeDelta::FromMilliseconds(params.intent_received_timestamp));
777 entry->set_has_user_gesture(params.has_user_gesture);
778 #endif
780 switch (params.load_type) {
781 case LOAD_TYPE_DEFAULT:
782 break;
783 case LOAD_TYPE_BROWSER_INITIATED_HTTP_POST:
784 entry->SetHasPostData(true);
785 entry->SetBrowserInitiatedPostData(
786 params.browser_initiated_post_data.get());
787 break;
788 case LOAD_TYPE_DATA:
789 entry->SetBaseURLForDataURL(params.base_url_for_data_url);
790 entry->SetVirtualURL(params.virtual_url_for_data_url);
791 entry->SetCanLoadLocalResources(params.can_load_local_resources);
792 break;
793 default:
794 NOTREACHED();
795 break;
798 LoadEntry(entry.Pass());
801 bool NavigationControllerImpl::RendererDidNavigate(
802 RenderFrameHostImpl* rfh,
803 const FrameHostMsg_DidCommitProvisionalLoad_Params& params,
804 LoadCommittedDetails* details) {
805 is_initial_navigation_ = false;
807 // Save the previous state before we clobber it.
808 if (GetLastCommittedEntry()) {
809 details->previous_url = GetLastCommittedEntry()->GetURL();
810 details->previous_entry_index = GetLastCommittedEntryIndex();
811 } else {
812 details->previous_url = GURL();
813 details->previous_entry_index = -1;
816 // If there is a pending entry at this point, it should have a SiteInstance,
817 // except for restored entries.
818 DCHECK(pending_entry_index_ == -1 ||
819 pending_entry_->site_instance() ||
820 pending_entry_->restore_type() != NavigationEntryImpl::RESTORE_NONE);
821 if (pending_entry_ &&
822 pending_entry_->restore_type() != NavigationEntryImpl::RESTORE_NONE)
823 pending_entry_->set_restore_type(NavigationEntryImpl::RESTORE_NONE);
825 // If we are doing a cross-site reload, we need to replace the existing
826 // navigation entry, not add another entry to the history. This has the side
827 // effect of removing forward browsing history, if such existed. Or if we are
828 // doing a cross-site redirect navigation, we will do a similar thing.
830 // If this is an error load, we may have already removed the pending entry
831 // when we got the notice of the load failure. If so, look at the copy of the
832 // pending parameters that were saved.
833 if (params.url_is_unreachable && failed_pending_entry_id_ != 0) {
834 details->did_replace_entry = failed_pending_entry_should_replace_;
835 } else {
836 details->did_replace_entry = pending_entry_ &&
837 pending_entry_->should_replace_entry();
840 // Do navigation-type specific actions. These will make and commit an entry.
841 details->type = ClassifyNavigation(rfh, params);
843 // is_in_page must be computed before the entry gets committed.
844 details->is_in_page = IsURLInPageNavigation(
845 params.url, params.was_within_same_page, rfh);
847 switch (details->type) {
848 case NAVIGATION_TYPE_NEW_PAGE:
849 RendererDidNavigateToNewPage(rfh, params, details->did_replace_entry);
850 break;
851 case NAVIGATION_TYPE_EXISTING_PAGE:
852 details->did_replace_entry = details->is_in_page;
853 RendererDidNavigateToExistingPage(rfh, params);
854 break;
855 case NAVIGATION_TYPE_SAME_PAGE:
856 RendererDidNavigateToSamePage(rfh, params);
857 break;
858 case NAVIGATION_TYPE_NEW_SUBFRAME:
859 RendererDidNavigateNewSubframe(rfh, params);
860 break;
861 case NAVIGATION_TYPE_AUTO_SUBFRAME:
862 if (!RendererDidNavigateAutoSubframe(rfh, params))
863 return false;
864 break;
865 case NAVIGATION_TYPE_NAV_IGNORE:
866 // If a pending navigation was in progress, this canceled it. We should
867 // discard it and make sure it is removed from the URL bar. After that,
868 // there is nothing we can do with this navigation, so we just return to
869 // the caller that nothing has happened.
870 if (pending_entry_) {
871 DiscardNonCommittedEntries();
872 delegate_->NotifyNavigationStateChanged(INVALIDATE_TYPE_URL);
874 return false;
875 default:
876 NOTREACHED();
879 // At this point, we know that the navigation has just completed, so
880 // record the time.
882 // TODO(akalin): Use "sane time" as described in
883 // http://www.chromium.org/developers/design-documents/sane-time .
884 base::Time timestamp =
885 time_smoother_.GetSmoothedTime(get_timestamp_callback_.Run());
886 DVLOG(1) << "Navigation finished at (smoothed) timestamp "
887 << timestamp.ToInternalValue();
889 // We should not have a pending entry anymore. Clear it again in case any
890 // error cases above forgot to do so.
891 DiscardNonCommittedEntriesInternal();
893 // All committed entries should have nonempty content state so WebKit doesn't
894 // get confused when we go back to them (see the function for details).
895 DCHECK(params.page_state.IsValid());
896 NavigationEntryImpl* active_entry = GetLastCommittedEntry();
897 active_entry->SetTimestamp(timestamp);
898 active_entry->SetHttpStatusCode(params.http_status_code);
899 if (SiteIsolationPolicy::UseSubframeNavigationEntries()) {
900 // Update the frame-specific PageState.
901 FrameNavigationEntry* frame_entry =
902 active_entry->GetFrameEntry(rfh->frame_tree_node());
903 // We may not find a frame_entry in some cases; ignore the PageState if so.
904 // TODO(creis): Remove the "if" once https://crbug.com/522193 is fixed.
905 if (frame_entry)
906 frame_entry->set_page_state(params.page_state);
907 } else {
908 active_entry->SetPageState(params.page_state);
910 active_entry->SetRedirectChain(params.redirects);
912 // Use histogram to track memory impact of redirect chain because it's now
913 // not cleared for committed entries.
914 size_t redirect_chain_size = 0;
915 for (size_t i = 0; i < params.redirects.size(); ++i) {
916 redirect_chain_size += params.redirects[i].spec().length();
918 UMA_HISTOGRAM_COUNTS("Navigation.RedirectChainSize", redirect_chain_size);
920 // Once it is committed, we no longer need to track several pieces of state on
921 // the entry.
922 active_entry->ResetForCommit();
924 // The active entry's SiteInstance should match our SiteInstance.
925 // TODO(creis): This check won't pass for subframes until we create entries
926 // for subframe navigations.
927 if (!rfh->GetParent())
928 CHECK(active_entry->site_instance() == rfh->GetSiteInstance());
930 // Remember the bindings the renderer process has at this point, so that
931 // we do not grant this entry additional bindings if we come back to it.
932 active_entry->SetBindings(rfh->GetEnabledBindings());
934 // Now prep the rest of the details for the notification and broadcast.
935 details->entry = active_entry;
936 details->is_main_frame = !rfh->GetParent();
937 details->http_status_code = params.http_status_code;
939 // Deserialize the security info and kill the renderer if
940 // deserialization fails. The navigation will continue with default
941 // SSLStatus values.
942 if (!DeserializeSecurityInfo(params.security_info, &details->ssl_status)) {
943 bad_message::ReceivedBadMessage(
944 rfh->GetProcess(),
945 bad_message::WC_RENDERER_DID_NAVIGATE_BAD_SECURITY_INFO);
948 NotifyNavigationEntryCommitted(details);
950 // Update the RenderViewHost of the top-level RenderFrameHost's notion of what
951 // entry it's showing for use later.
952 RenderFrameHostImpl* main_frame =
953 rfh->frame_tree_node()->frame_tree()->root()->current_frame_host();
954 static_cast<RenderViewHostImpl*>(main_frame->GetRenderViewHost())->
955 set_nav_entry_id(active_entry->GetUniqueID());
957 return true;
960 NavigationType NavigationControllerImpl::ClassifyNavigation(
961 RenderFrameHostImpl* rfh,
962 const FrameHostMsg_DidCommitProvisionalLoad_Params& params) const {
963 if (params.did_create_new_entry) {
964 // A new entry. We may or may not have a pending entry for the page, and
965 // this may or may not be the main frame.
966 if (!rfh->GetParent()) {
967 return NAVIGATION_TYPE_NEW_PAGE;
970 // When this is a new subframe navigation, we should have a committed page
971 // in which it's a subframe. This may not be the case when an iframe is
972 // navigated on a popup navigated to about:blank (the iframe would be
973 // written into the popup by script on the main page). For these cases,
974 // there isn't any navigation stuff we can do, so just ignore it.
975 if (!GetLastCommittedEntry())
976 return NAVIGATION_TYPE_NAV_IGNORE;
978 // Valid subframe navigation.
979 return NAVIGATION_TYPE_NEW_SUBFRAME;
982 // We only clear the session history when navigating to a new page.
983 DCHECK(!params.history_list_was_cleared);
985 if (rfh->GetParent()) {
986 // All manual subframes would be did_create_new_entry and handled above, so
987 // we know this is auto.
988 if (GetLastCommittedEntry()) {
989 return NAVIGATION_TYPE_AUTO_SUBFRAME;
990 } else {
991 // We ignore subframes created in non-committed pages; we'd appreciate if
992 // people stopped doing that.
993 return NAVIGATION_TYPE_NAV_IGNORE;
997 if (params.nav_entry_id == 0) {
998 // This is a renderer-initiated navigation (nav_entry_id == 0), but didn't
999 // create a new page.
1001 // Just like above in the did_create_new_entry case, it's possible to
1002 // scribble onto an uncommitted page. Again, there isn't any navigation
1003 // stuff that we can do, so ignore it here as well.
1004 NavigationEntry* last_committed = GetLastCommittedEntry();
1005 if (!last_committed)
1006 return NAVIGATION_TYPE_NAV_IGNORE;
1008 // This is history.replaceState(), history.reload(), or a client-side
1009 // redirect.
1010 return NAVIGATION_TYPE_EXISTING_PAGE;
1013 if (pending_entry_ && pending_entry_index_ == -1 &&
1014 pending_entry_->GetUniqueID() == params.nav_entry_id) {
1015 // In this case, we have a pending entry for a load of a new URL but Blink
1016 // didn't do a new navigation (params.did_create_new_entry). This happens
1017 // when you press enter in the URL bar to reload. We will create a pending
1018 // entry, but Blink will convert it to a reload since it's the same page and
1019 // not create a new entry for it (the user doesn't want to have a new
1020 // back/forward entry when they do this). Therefore we want to just ignore
1021 // the pending entry and go back to where we were (the "existing entry").
1022 return NAVIGATION_TYPE_SAME_PAGE;
1025 if (params.intended_as_new_entry) {
1026 // This was intended to be a navigation to a new entry but the pending entry
1027 // got cleared in the meanwhile. Classify as EXISTING_PAGE because we may or
1028 // may not have a pending entry.
1029 return NAVIGATION_TYPE_EXISTING_PAGE;
1032 if (params.url_is_unreachable && failed_pending_entry_id_ != 0 &&
1033 params.nav_entry_id == failed_pending_entry_id_) {
1034 // If the renderer was going to a new pending entry that got cleared because
1035 // of an error, this is the case of the user trying to retry a failed load
1036 // by pressing return. Classify as EXISTING_PAGE because we probably don't
1037 // have a pending entry.
1038 return NAVIGATION_TYPE_EXISTING_PAGE;
1041 // Now we know that the notification is for an existing page. Find that entry.
1042 int existing_entry_index = GetEntryIndexWithUniqueID(params.nav_entry_id);
1043 if (existing_entry_index == -1) {
1044 // The renderer has committed a navigation to an entry that no longer
1045 // exists. Because the renderer is showing that page, resurrect that entry.
1046 return NAVIGATION_TYPE_NEW_PAGE;
1049 // Since we weeded out "new" navigations above, we know this is an existing
1050 // (back/forward) navigation.
1051 return NAVIGATION_TYPE_EXISTING_PAGE;
1054 void NavigationControllerImpl::RendererDidNavigateToNewPage(
1055 RenderFrameHostImpl* rfh,
1056 const FrameHostMsg_DidCommitProvisionalLoad_Params& params,
1057 bool replace_entry) {
1058 scoped_ptr<NavigationEntryImpl> new_entry;
1059 bool update_virtual_url;
1060 // Only make a copy of the pending entry if it is appropriate for the new page
1061 // that was just loaded. We verify this at a coarse grain by checking that
1062 // the SiteInstance hasn't been assigned to something else, and by making sure
1063 // that the pending entry was intended as a new entry (rather than being a
1064 // history navigation that was interrupted by an unrelated, renderer-initiated
1065 // navigation).
1066 if (pending_entry_ && pending_entry_index_ == -1 &&
1067 (!pending_entry_->site_instance() ||
1068 pending_entry_->site_instance() == rfh->GetSiteInstance())) {
1069 new_entry = pending_entry_->Clone();
1071 update_virtual_url = new_entry->update_virtual_url_with_url();
1072 } else {
1073 new_entry = make_scoped_ptr(new NavigationEntryImpl);
1075 // Find out whether the new entry needs to update its virtual URL on URL
1076 // change and set up the entry accordingly. This is needed to correctly
1077 // update the virtual URL when replaceState is called after a pushState.
1078 GURL url = params.url;
1079 bool needs_update = false;
1080 BrowserURLHandlerImpl::GetInstance()->RewriteURLIfNecessary(
1081 &url, browser_context_, &needs_update);
1082 new_entry->set_update_virtual_url_with_url(needs_update);
1084 // When navigating to a new page, give the browser URL handler a chance to
1085 // update the virtual URL based on the new URL. For example, this is needed
1086 // to show chrome://bookmarks/#1 when the bookmarks webui extension changes
1087 // the URL.
1088 update_virtual_url = needs_update;
1091 // Don't use the page type from the pending entry. Some interstitial page
1092 // may have set the type to interstitial. Once we commit, however, the page
1093 // type must always be normal or error.
1094 new_entry->set_page_type(params.url_is_unreachable ? PAGE_TYPE_ERROR
1095 : PAGE_TYPE_NORMAL);
1096 new_entry->SetURL(params.url);
1097 if (update_virtual_url)
1098 UpdateVirtualURLToURL(new_entry.get(), params.url);
1099 new_entry->SetReferrer(params.referrer);
1100 new_entry->SetPageID(params.page_id);
1101 new_entry->SetTransitionType(params.transition);
1102 new_entry->set_site_instance(
1103 static_cast<SiteInstanceImpl*>(rfh->GetSiteInstance()));
1104 new_entry->SetHasPostData(params.is_post);
1105 new_entry->SetPostID(params.post_id);
1106 new_entry->SetOriginalRequestURL(params.original_request_url);
1107 new_entry->SetIsOverridingUserAgent(params.is_overriding_user_agent);
1109 // Update the FrameNavigationEntry for new main frame commits.
1110 FrameNavigationEntry* frame_entry =
1111 new_entry->GetFrameEntry(rfh->frame_tree_node());
1112 frame_entry->set_item_sequence_number(params.item_sequence_number);
1113 frame_entry->set_document_sequence_number(params.document_sequence_number);
1115 // history.pushState() is classified as a navigation to a new page, but
1116 // sets was_within_same_page to true. In this case, we already have the
1117 // title and favicon available, so set them immediately.
1118 if (params.was_within_same_page && GetLastCommittedEntry()) {
1119 new_entry->SetTitle(GetLastCommittedEntry()->GetTitle());
1120 new_entry->GetFavicon() = GetLastCommittedEntry()->GetFavicon();
1123 DCHECK(!params.history_list_was_cleared || !replace_entry);
1124 // The browser requested to clear the session history when it initiated the
1125 // navigation. Now we know that the renderer has updated its state accordingly
1126 // and it is safe to also clear the browser side history.
1127 if (params.history_list_was_cleared) {
1128 DiscardNonCommittedEntriesInternal();
1129 entries_.clear();
1130 last_committed_entry_index_ = -1;
1133 InsertOrReplaceEntry(new_entry.Pass(), replace_entry);
1136 void NavigationControllerImpl::RendererDidNavigateToExistingPage(
1137 RenderFrameHostImpl* rfh,
1138 const FrameHostMsg_DidCommitProvisionalLoad_Params& params) {
1139 // We should only get here for main frame navigations.
1140 DCHECK(!rfh->GetParent());
1142 NavigationEntryImpl* entry;
1143 if (params.intended_as_new_entry) {
1144 // This was intended as a new entry but the pending entry was lost in the
1145 // meanwhile and no new page was created. We are stuck at the last committed
1146 // entry.
1147 entry = GetLastCommittedEntry();
1148 } else if (params.nav_entry_id) {
1149 // This is a browser-initiated navigation (back/forward/reload).
1150 entry = GetEntryWithUniqueID(params.nav_entry_id);
1151 } else {
1152 // This is renderer-initiated. The only kinds of renderer-initated
1153 // navigations that are EXISTING_PAGE are reloads and location.replace,
1154 // which land us at the last committed entry.
1155 entry = GetLastCommittedEntry();
1157 DCHECK(entry);
1159 // The URL may have changed due to redirects.
1160 entry->set_page_type(params.url_is_unreachable ? PAGE_TYPE_ERROR
1161 : PAGE_TYPE_NORMAL);
1162 entry->SetURL(params.url);
1163 entry->SetReferrer(params.referrer);
1164 if (entry->update_virtual_url_with_url())
1165 UpdateVirtualURLToURL(entry, params.url);
1167 // The redirected to page should not inherit the favicon from the previous
1168 // page.
1169 if (ui::PageTransitionIsRedirect(params.transition))
1170 entry->GetFavicon() = FaviconStatus();
1172 // The site instance will normally be the same except during session restore,
1173 // when no site instance will be assigned.
1174 DCHECK(entry->site_instance() == nullptr ||
1175 entry->site_instance() == rfh->GetSiteInstance());
1176 entry->set_site_instance(
1177 static_cast<SiteInstanceImpl*>(rfh->GetSiteInstance()));
1179 entry->SetHasPostData(params.is_post);
1180 entry->SetPostID(params.post_id);
1182 // The entry we found in the list might be pending if the user hit
1183 // back/forward/reload. This load should commit it (since it's already in the
1184 // list, we can just discard the pending pointer). We should also discard the
1185 // pending entry if it corresponds to a different navigation, since that one
1186 // is now likely canceled. If it is not canceled, we will treat it as a new
1187 // navigation when it arrives, which is also ok.
1189 // Note that we need to use the "internal" version since we don't want to
1190 // actually change any other state, just kill the pointer.
1191 DiscardNonCommittedEntriesInternal();
1193 // If a transient entry was removed, the indices might have changed, so we
1194 // have to query the entry index again.
1195 last_committed_entry_index_ = GetIndexOfEntry(entry);
1198 void NavigationControllerImpl::RendererDidNavigateToSamePage(
1199 RenderFrameHostImpl* rfh,
1200 const FrameHostMsg_DidCommitProvisionalLoad_Params& params) {
1201 // This classification says that we have a pending entry that's the same as
1202 // the last committed entry. This entry is guaranteed to exist by
1203 // ClassifyNavigation. All we need to do is update the existing entry.
1204 NavigationEntryImpl* existing_entry = GetLastCommittedEntry();
1206 // We assign the entry's unique ID to be that of the new one. Since this is
1207 // always the result of a user action, we want to dismiss infobars, etc. like
1208 // a regular user-initiated navigation.
1209 existing_entry->set_unique_id(pending_entry_->GetUniqueID());
1211 // The URL may have changed due to redirects.
1212 existing_entry->set_page_type(params.url_is_unreachable ? PAGE_TYPE_ERROR
1213 : PAGE_TYPE_NORMAL);
1214 if (existing_entry->update_virtual_url_with_url())
1215 UpdateVirtualURLToURL(existing_entry, params.url);
1216 existing_entry->SetURL(params.url);
1217 existing_entry->SetReferrer(params.referrer);
1219 // The page may have been requested with a different HTTP method.
1220 existing_entry->SetHasPostData(params.is_post);
1221 existing_entry->SetPostID(params.post_id);
1223 DiscardNonCommittedEntries();
1226 void NavigationControllerImpl::RendererDidNavigateNewSubframe(
1227 RenderFrameHostImpl* rfh,
1228 const FrameHostMsg_DidCommitProvisionalLoad_Params& params) {
1229 DCHECK(ui::PageTransitionCoreTypeIs(params.transition,
1230 ui::PAGE_TRANSITION_MANUAL_SUBFRAME));
1232 // Manual subframe navigations just get the current entry cloned so the user
1233 // can go back or forward to it. The actual subframe information will be
1234 // stored in the page state for each of those entries. This happens out of
1235 // band with the actual navigations.
1236 DCHECK(GetLastCommittedEntry()) << "ClassifyNavigation should guarantee "
1237 << "that a last committed entry exists.";
1239 scoped_ptr<NavigationEntryImpl> new_entry;
1240 if (SiteIsolationPolicy::UseSubframeNavigationEntries()) {
1241 // Make sure new_entry takes ownership of frame_entry in a scoped_refptr.
1242 FrameNavigationEntry* frame_entry = new FrameNavigationEntry(
1243 rfh->frame_tree_node()->frame_tree_node_id(),
1244 params.item_sequence_number, params.document_sequence_number,
1245 rfh->GetSiteInstance(), params.url, params.referrer);
1246 new_entry = GetLastCommittedEntry()->CloneAndReplace(rfh->frame_tree_node(),
1247 frame_entry);
1249 // TODO(creis): Make sure the last committed entry always has the subframe
1250 // entry to replace, and CHECK(frame_entry->HasOneRef). For now, we might
1251 // not find the entry to replace, and new_entry will be deleted when it goes
1252 // out of scope. See https://crbug.com/522193.
1253 } else {
1254 new_entry = GetLastCommittedEntry()->Clone();
1257 new_entry->SetPageID(params.page_id);
1258 InsertOrReplaceEntry(new_entry.Pass(), false);
1261 bool NavigationControllerImpl::RendererDidNavigateAutoSubframe(
1262 RenderFrameHostImpl* rfh,
1263 const FrameHostMsg_DidCommitProvisionalLoad_Params& params) {
1264 DCHECK(ui::PageTransitionCoreTypeIs(params.transition,
1265 ui::PAGE_TRANSITION_AUTO_SUBFRAME));
1267 // We're guaranteed to have a previously committed entry, and we now need to
1268 // handle navigation inside of a subframe in it without creating a new entry.
1269 DCHECK(GetLastCommittedEntry());
1271 if (params.nav_entry_id) {
1272 int entry_index = GetEntryIndexWithUniqueID(params.nav_entry_id);
1274 // If the |nav_entry_id| is non-zero and matches an existing entry, this is
1275 // a history auto" navigation. Update the last committed index accordingly.
1276 // If we don't recognize the |nav_entry_id|, it might be either a pending
1277 // entry for a transfer or a recently pruned entry. We'll handle it below.
1278 if (entry_index != -1 && entry_index != last_committed_entry_index_) {
1279 // Make sure that a subframe commit isn't changing the main frame's
1280 // origin. Otherwise the renderer process may be confused, leading to a
1281 // URL spoof. We can't check the path since that may change
1282 // (https://crbug.com/373041).
1283 if (GetLastCommittedEntry()->GetURL().GetOrigin() !=
1284 GetEntryAtIndex(entry_index)->GetURL().GetOrigin()) {
1285 // TODO(creis): This is unexpectedly being encountered in practice. If
1286 // you encounter this in practice, please post details to
1287 // https://crbug.com/486916. Once that's resolved, we'll change this to
1288 // kill the renderer process with bad_message::NC_AUTO_SUBFRAME.
1289 NOTREACHED() << "Unexpected main frame origin change on AUTO_SUBFRAME.";
1292 // TODO(creis): Update the FrameNavigationEntry in --site-per-process.
1293 last_committed_entry_index_ = entry_index;
1294 DiscardNonCommittedEntriesInternal();
1295 return true;
1299 if (SiteIsolationPolicy::UseSubframeNavigationEntries()) {
1300 // This may be a "new auto" case where we add a new FrameNavigationEntry, or
1301 // it may be a "history auto" case where we update an existing one.
1302 NavigationEntryImpl* last_committed = GetLastCommittedEntry();
1303 last_committed->AddOrUpdateFrameEntry(
1304 rfh->frame_tree_node(), params.item_sequence_number,
1305 params.document_sequence_number, rfh->GetSiteInstance(), params.url,
1306 params.referrer, params.page_state);
1308 // Cross-process subframe navigations may leave a pending entry around.
1309 // Clear it if it's actually for the subframe.
1310 // TODO(creis): Don't use pending entries for subframe navigations.
1311 // See https://crbug.com/495161.
1312 if (pending_entry_ &&
1313 pending_entry_->frame_tree_node_id() ==
1314 rfh->frame_tree_node()->frame_tree_node_id()) {
1315 DiscardPendingEntry(false);
1319 // We do not need to discard the pending entry in this case, since we will
1320 // not generate commit notifications for this auto-subframe navigation.
1321 return false;
1324 int NavigationControllerImpl::GetIndexOfEntry(
1325 const NavigationEntryImpl* entry) const {
1326 const NavigationEntries::const_iterator i(std::find(
1327 entries_.begin(),
1328 entries_.end(),
1329 entry));
1330 return (i == entries_.end()) ? -1 : static_cast<int>(i - entries_.begin());
1333 // There are two general cases where a navigation is "in page":
1334 // 1. A fragment navigation, in which the url is kept the same except for the
1335 // reference fragment.
1336 // 2. A history API navigation (pushState and replaceState). This case is
1337 // always in-page, but the urls are not guaranteed to match excluding the
1338 // fragment. The relevant spec allows pushState/replaceState to any URL on
1339 // the same origin.
1340 // However, due to reloads, even identical urls are *not* guaranteed to be
1341 // in-page navigations, we have to trust the renderer almost entirely.
1342 // The one thing we do know is that cross-origin navigations will *never* be
1343 // in-page. Therefore, trust the renderer if the URLs are on the same origin,
1344 // and assume the renderer is malicious if a cross-origin navigation claims to
1345 // be in-page.
1346 bool NavigationControllerImpl::IsURLInPageNavigation(
1347 const GURL& url,
1348 bool renderer_says_in_page,
1349 RenderFrameHost* rfh) const {
1350 GURL last_committed_url;
1351 if (rfh->GetParent()) {
1352 last_committed_url = rfh->GetLastCommittedURL();
1353 } else {
1354 NavigationEntry* last_committed = GetLastCommittedEntry();
1355 // There must be a last-committed entry to compare URLs to. TODO(avi): When
1356 // might Blink say that a navigation is in-page yet there be no last-
1357 // committed entry?
1358 if (!last_committed)
1359 return false;
1360 last_committed_url = last_committed->GetURL();
1363 WebPreferences prefs = rfh->GetRenderViewHost()->GetWebkitPreferences();
1364 bool is_same_origin = last_committed_url.is_empty() ||
1365 // TODO(japhet): We should only permit navigations
1366 // originating from about:blank to be in-page if the
1367 // about:blank is the first document that frame loaded.
1368 // We don't have sufficient information to identify
1369 // that case at the moment, so always allow about:blank
1370 // for now.
1371 last_committed_url == GURL(url::kAboutBlankURL) ||
1372 last_committed_url.GetOrigin() == url.GetOrigin() ||
1373 !prefs.web_security_enabled ||
1374 (prefs.allow_universal_access_from_file_urls &&
1375 last_committed_url.SchemeIs(url::kFileScheme));
1376 if (!is_same_origin && renderer_says_in_page) {
1377 bad_message::ReceivedBadMessage(rfh->GetProcess(),
1378 bad_message::NC_IN_PAGE_NAVIGATION);
1380 return is_same_origin && renderer_says_in_page;
1383 void NavigationControllerImpl::CopyStateFrom(
1384 const NavigationController& temp) {
1385 const NavigationControllerImpl& source =
1386 static_cast<const NavigationControllerImpl&>(temp);
1387 // Verify that we look new.
1388 DCHECK(GetEntryCount() == 0 && !GetPendingEntry());
1390 if (source.GetEntryCount() == 0)
1391 return; // Nothing new to do.
1393 needs_reload_ = true;
1394 InsertEntriesFrom(source, source.GetEntryCount());
1396 for (SessionStorageNamespaceMap::const_iterator it =
1397 source.session_storage_namespace_map_.begin();
1398 it != source.session_storage_namespace_map_.end();
1399 ++it) {
1400 SessionStorageNamespaceImpl* source_namespace =
1401 static_cast<SessionStorageNamespaceImpl*>(it->second.get());
1402 session_storage_namespace_map_[it->first] = source_namespace->Clone();
1405 FinishRestore(source.last_committed_entry_index_, RESTORE_CURRENT_SESSION);
1407 // Copy the max page id map from the old tab to the new tab. This ensures
1408 // that new and existing navigations in the tab's current SiteInstances
1409 // are identified properly.
1410 delegate_->CopyMaxPageIDsFrom(source.delegate()->GetWebContents());
1413 void NavigationControllerImpl::CopyStateFromAndPrune(
1414 NavigationController* temp,
1415 bool replace_entry) {
1416 // It is up to callers to check the invariants before calling this.
1417 CHECK(CanPruneAllButLastCommitted());
1419 NavigationControllerImpl* source =
1420 static_cast<NavigationControllerImpl*>(temp);
1422 // Remove all the entries leaving the last committed entry.
1423 PruneAllButLastCommittedInternal();
1425 // We now have one entry, possibly with a new pending entry. Ensure that
1426 // adding the entries from source won't put us over the limit.
1427 DCHECK_EQ(1, GetEntryCount());
1428 if (!replace_entry)
1429 source->PruneOldestEntryIfFull();
1431 // Insert the entries from source. Don't use source->GetCurrentEntryIndex as
1432 // we don't want to copy over the transient entry. Ignore any pending entry,
1433 // since it has not committed in source.
1434 int max_source_index = source->last_committed_entry_index_;
1435 if (max_source_index == -1)
1436 max_source_index = source->GetEntryCount();
1437 else
1438 max_source_index++;
1440 // Ignore the source's current entry if merging with replacement.
1441 // TODO(davidben): This should preserve entries forward of the current
1442 // too. http://crbug.com/317872
1443 if (replace_entry && max_source_index > 0)
1444 max_source_index--;
1446 InsertEntriesFrom(*source, max_source_index);
1448 // Adjust indices such that the last entry and pending are at the end now.
1449 last_committed_entry_index_ = GetEntryCount() - 1;
1451 delegate_->SetHistoryOffsetAndLength(last_committed_entry_index_,
1452 GetEntryCount());
1454 // Copy the max page id map from the old tab to the new tab. This ensures that
1455 // new and existing navigations in the tab's current SiteInstances are
1456 // identified properly.
1457 NavigationEntryImpl* last_committed = GetLastCommittedEntry();
1458 int32 site_max_page_id =
1459 delegate_->GetMaxPageIDForSiteInstance(last_committed->site_instance());
1460 delegate_->CopyMaxPageIDsFrom(source->delegate()->GetWebContents());
1461 delegate_->UpdateMaxPageIDForSiteInstance(last_committed->site_instance(),
1462 site_max_page_id);
1463 max_restored_page_id_ = source->max_restored_page_id_;
1466 bool NavigationControllerImpl::CanPruneAllButLastCommitted() {
1467 // If there is no last committed entry, we cannot prune. Even if there is a
1468 // pending entry, it may not commit, leaving this WebContents blank, despite
1469 // possibly giving it new entries via CopyStateFromAndPrune.
1470 if (last_committed_entry_index_ == -1)
1471 return false;
1473 // We cannot prune if there is a pending entry at an existing entry index.
1474 // It may not commit, so we have to keep the last committed entry, and thus
1475 // there is no sensible place to keep the pending entry. It is ok to have
1476 // a new pending entry, which can optionally commit as a new navigation.
1477 if (pending_entry_index_ != -1)
1478 return false;
1480 // We should not prune if we are currently showing a transient entry.
1481 if (transient_entry_index_ != -1)
1482 return false;
1484 return true;
1487 void NavigationControllerImpl::PruneAllButLastCommitted() {
1488 PruneAllButLastCommittedInternal();
1490 DCHECK_EQ(0, last_committed_entry_index_);
1491 DCHECK_EQ(1, GetEntryCount());
1493 delegate_->SetHistoryOffsetAndLength(last_committed_entry_index_,
1494 GetEntryCount());
1497 void NavigationControllerImpl::PruneAllButLastCommittedInternal() {
1498 // It is up to callers to check the invariants before calling this.
1499 CHECK(CanPruneAllButLastCommitted());
1501 // Erase all entries but the last committed entry. There may still be a
1502 // new pending entry after this.
1503 entries_.erase(entries_.begin(),
1504 entries_.begin() + last_committed_entry_index_);
1505 entries_.erase(entries_.begin() + 1, entries_.end());
1506 last_committed_entry_index_ = 0;
1509 void NavigationControllerImpl::ClearAllScreenshots() {
1510 screenshot_manager_->ClearAllScreenshots();
1513 void NavigationControllerImpl::SetSessionStorageNamespace(
1514 const std::string& partition_id,
1515 SessionStorageNamespace* session_storage_namespace) {
1516 if (!session_storage_namespace)
1517 return;
1519 // We can't overwrite an existing SessionStorage without violating spec.
1520 // Attempts to do so may give a tab access to another tab's session storage
1521 // so die hard on an error.
1522 bool successful_insert = session_storage_namespace_map_.insert(
1523 make_pair(partition_id,
1524 static_cast<SessionStorageNamespaceImpl*>(
1525 session_storage_namespace)))
1526 .second;
1527 CHECK(successful_insert) << "Cannot replace existing SessionStorageNamespace";
1530 void NavigationControllerImpl::SetMaxRestoredPageID(int32 max_id) {
1531 max_restored_page_id_ = max_id;
1534 int32 NavigationControllerImpl::GetMaxRestoredPageID() const {
1535 return max_restored_page_id_;
1538 bool NavigationControllerImpl::IsUnmodifiedBlankTab() const {
1539 return IsInitialNavigation() &&
1540 !GetLastCommittedEntry() &&
1541 !delegate_->HasAccessedInitialDocument();
1544 SessionStorageNamespace*
1545 NavigationControllerImpl::GetSessionStorageNamespace(SiteInstance* instance) {
1546 std::string partition_id;
1547 if (instance) {
1548 // TODO(ajwong): When GetDefaultSessionStorageNamespace() goes away, remove
1549 // this if statement so |instance| must not be NULL.
1550 partition_id =
1551 GetContentClient()->browser()->GetStoragePartitionIdForSite(
1552 browser_context_, instance->GetSiteURL());
1555 SessionStorageNamespaceMap::const_iterator it =
1556 session_storage_namespace_map_.find(partition_id);
1557 if (it != session_storage_namespace_map_.end())
1558 return it->second.get();
1560 // Create one if no one has accessed session storage for this partition yet.
1562 // TODO(ajwong): Should this use the |partition_id| directly rather than
1563 // re-lookup via |instance|? http://crbug.com/142685
1564 StoragePartition* partition =
1565 BrowserContext::GetStoragePartition(browser_context_, instance);
1566 SessionStorageNamespaceImpl* session_storage_namespace =
1567 new SessionStorageNamespaceImpl(
1568 static_cast<DOMStorageContextWrapper*>(
1569 partition->GetDOMStorageContext()));
1570 session_storage_namespace_map_[partition_id] = session_storage_namespace;
1572 return session_storage_namespace;
1575 SessionStorageNamespace*
1576 NavigationControllerImpl::GetDefaultSessionStorageNamespace() {
1577 // TODO(ajwong): Remove if statement in GetSessionStorageNamespace().
1578 return GetSessionStorageNamespace(NULL);
1581 const SessionStorageNamespaceMap&
1582 NavigationControllerImpl::GetSessionStorageNamespaceMap() const {
1583 return session_storage_namespace_map_;
1586 bool NavigationControllerImpl::NeedsReload() const {
1587 return needs_reload_;
1590 void NavigationControllerImpl::SetNeedsReload() {
1591 needs_reload_ = true;
1593 if (last_committed_entry_index_ != -1) {
1594 entries_[last_committed_entry_index_]->SetTransitionType(
1595 ui::PAGE_TRANSITION_RELOAD);
1599 void NavigationControllerImpl::RemoveEntryAtIndexInternal(int index) {
1600 DCHECK(index < GetEntryCount());
1601 DCHECK(index != last_committed_entry_index_);
1603 DiscardNonCommittedEntries();
1605 entries_.erase(entries_.begin() + index);
1606 if (last_committed_entry_index_ > index)
1607 last_committed_entry_index_--;
1610 void NavigationControllerImpl::DiscardNonCommittedEntries() {
1611 bool transient = transient_entry_index_ != -1;
1612 DiscardNonCommittedEntriesInternal();
1614 // If there was a transient entry, invalidate everything so the new active
1615 // entry state is shown.
1616 if (transient) {
1617 delegate_->NotifyNavigationStateChanged(INVALIDATE_TYPE_ALL);
1621 NavigationEntryImpl* NavigationControllerImpl::GetPendingEntry() const {
1622 return pending_entry_;
1625 int NavigationControllerImpl::GetPendingEntryIndex() const {
1626 return pending_entry_index_;
1629 void NavigationControllerImpl::InsertOrReplaceEntry(
1630 scoped_ptr<NavigationEntryImpl> entry, bool replace) {
1631 DCHECK(entry->GetTransitionType() != ui::PAGE_TRANSITION_AUTO_SUBFRAME);
1633 // If the pending_entry_index_ is -1, the navigation was to a new page, and we
1634 // need to keep continuity with the pending entry, so copy the pending entry's
1635 // unique ID to the committed entry. If the pending_entry_index_ isn't -1,
1636 // then the renderer navigated on its own, independent of the pending entry,
1637 // so don't copy anything.
1638 if (pending_entry_ && pending_entry_index_ == -1)
1639 entry->set_unique_id(pending_entry_->GetUniqueID());
1641 DiscardNonCommittedEntriesInternal();
1643 int current_size = static_cast<int>(entries_.size());
1645 // When replacing, don't prune the forward history.
1646 if (replace && current_size > 0) {
1647 int32 page_id = entry->GetPageID();
1649 // ScopedVectors don't automatically delete the replaced value, so make sure
1650 // the previous value gets deleted.
1651 scoped_ptr<NavigationEntryImpl> old_entry(
1652 entries_[last_committed_entry_index_]);
1653 entries_[last_committed_entry_index_] = entry.release();
1655 // This is a new page ID, so we need everybody to know about it.
1656 delegate_->UpdateMaxPageID(page_id);
1657 return;
1660 // We shouldn't see replace == true when there's no committed entries.
1661 DCHECK(!replace);
1663 if (current_size > 0) {
1664 // Prune any entries which are in front of the current entry.
1665 // last_committed_entry_index_ must be updated here since calls to
1666 // NotifyPrunedEntries() below may re-enter and we must make sure
1667 // last_committed_entry_index_ is not left in an invalid state.
1668 int num_pruned = 0;
1669 while (last_committed_entry_index_ < (current_size - 1)) {
1670 num_pruned++;
1671 entries_.pop_back();
1672 current_size--;
1674 if (num_pruned > 0) // Only notify if we did prune something.
1675 NotifyPrunedEntries(this, false, num_pruned);
1678 PruneOldestEntryIfFull();
1680 int32 page_id = entry->GetPageID();
1681 entries_.push_back(entry.Pass());
1682 last_committed_entry_index_ = static_cast<int>(entries_.size()) - 1;
1684 // This is a new page ID, so we need everybody to know about it.
1685 delegate_->UpdateMaxPageID(page_id);
1688 void NavigationControllerImpl::PruneOldestEntryIfFull() {
1689 if (entries_.size() >= max_entry_count()) {
1690 DCHECK_EQ(max_entry_count(), entries_.size());
1691 DCHECK_GT(last_committed_entry_index_, 0);
1692 RemoveEntryAtIndex(0);
1693 NotifyPrunedEntries(this, true, 1);
1697 void NavigationControllerImpl::NavigateToPendingEntry(ReloadType reload_type) {
1698 needs_reload_ = false;
1700 // If we were navigating to a slow-to-commit page, and the user performs
1701 // a session history navigation to the last committed page, RenderViewHost
1702 // will force the throbber to start, but WebKit will essentially ignore the
1703 // navigation, and won't send a message to stop the throbber. To prevent this
1704 // from happening, we drop the navigation here and stop the slow-to-commit
1705 // page from loading (which would normally happen during the navigation).
1706 if (pending_entry_index_ != -1 &&
1707 pending_entry_index_ == last_committed_entry_index_ &&
1708 (entries_[pending_entry_index_]->restore_type() ==
1709 NavigationEntryImpl::RESTORE_NONE) &&
1710 (entries_[pending_entry_index_]->GetTransitionType() &
1711 ui::PAGE_TRANSITION_FORWARD_BACK)) {
1712 delegate_->Stop();
1714 // If an interstitial page is showing, we want to close it to get back
1715 // to what was showing before.
1716 if (delegate_->GetInterstitialPage())
1717 delegate_->GetInterstitialPage()->DontProceed();
1719 DiscardNonCommittedEntries();
1720 return;
1723 // If an interstitial page is showing, the previous renderer is blocked and
1724 // cannot make new requests. Unblock (and disable) it to allow this
1725 // navigation to succeed. The interstitial will stay visible until the
1726 // resulting DidNavigate.
1727 if (delegate_->GetInterstitialPage()) {
1728 static_cast<InterstitialPageImpl*>(delegate_->GetInterstitialPage())->
1729 CancelForNavigation();
1732 // For session history navigations only the pending_entry_index_ is set.
1733 if (!pending_entry_) {
1734 CHECK_NE(pending_entry_index_, -1);
1735 pending_entry_ = entries_[pending_entry_index_];
1738 // This call does not support re-entrancy. See http://crbug.com/347742.
1739 CHECK(!in_navigate_to_pending_entry_);
1740 in_navigate_to_pending_entry_ = true;
1741 bool success = NavigateToPendingEntryInternal(reload_type);
1742 in_navigate_to_pending_entry_ = false;
1744 if (!success)
1745 DiscardNonCommittedEntries();
1748 bool NavigationControllerImpl::NavigateToPendingEntryInternal(
1749 ReloadType reload_type) {
1750 DCHECK(pending_entry_);
1751 FrameTreeNode* root = delegate_->GetFrameTree()->root();
1753 // In default Chrome, there are no subframe FrameNavigationEntries. Either
1754 // navigate the main frame or use the main frame's FrameNavigationEntry to
1755 // tell the indicated frame where to go.
1756 if (!SiteIsolationPolicy::UseSubframeNavigationEntries()) {
1757 FrameNavigationEntry* frame_entry = GetPendingEntry()->GetFrameEntry(root);
1758 FrameTreeNode* frame = root;
1759 int ftn_id = GetPendingEntry()->frame_tree_node_id();
1760 if (ftn_id != -1) {
1761 frame = delegate_->GetFrameTree()->FindByID(ftn_id);
1762 DCHECK(frame);
1764 return frame->navigator()->NavigateToPendingEntry(frame, *frame_entry,
1765 reload_type, false);
1768 // In --site-per-process, we compare FrameNavigationEntries to see which
1769 // frames in the tree need to be navigated.
1770 FrameLoadVector same_document_loads;
1771 FrameLoadVector different_document_loads;
1772 if (GetLastCommittedEntry()) {
1773 FindFramesToNavigate(root, &same_document_loads, &different_document_loads);
1776 if (same_document_loads.empty() && different_document_loads.empty()) {
1777 // If we don't have any frames to navigate at this point, either
1778 // (1) there is no previous history entry to compare against, or
1779 // (2) we were unable to match any frames by name. In the first case,
1780 // doing a different document navigation to the root item is the only valid
1781 // thing to do. In the second case, we should have been able to find a
1782 // frame to navigate based on names if this were a same document
1783 // navigation, so we can safely assume this is the different document case.
1784 different_document_loads.push_back(
1785 std::make_pair(root, pending_entry_->GetFrameEntry(root)));
1788 // If all the frame loads fail, we will discard the pending entry.
1789 bool success = false;
1791 // Send all the same document frame loads before the different document loads.
1792 for (const auto& item : same_document_loads) {
1793 FrameTreeNode* frame = item.first;
1794 success |= frame->navigator()->NavigateToPendingEntry(frame, *item.second,
1795 reload_type, true);
1797 for (const auto& item : different_document_loads) {
1798 FrameTreeNode* frame = item.first;
1799 success |= frame->navigator()->NavigateToPendingEntry(frame, *item.second,
1800 reload_type, false);
1802 return success;
1805 void NavigationControllerImpl::FindFramesToNavigate(
1806 FrameTreeNode* frame,
1807 FrameLoadVector* same_document_loads,
1808 FrameLoadVector* different_document_loads) {
1809 DCHECK(pending_entry_);
1810 DCHECK_GE(last_committed_entry_index_, 0);
1811 FrameNavigationEntry* new_item = pending_entry_->GetFrameEntry(frame);
1812 FrameNavigationEntry* old_item =
1813 GetLastCommittedEntry()->GetFrameEntry(frame);
1814 if (!new_item)
1815 return;
1817 // Schedule a load in this frame if the new item isn't for the same item
1818 // sequence number in the same SiteInstance.
1819 if (!old_item ||
1820 new_item->item_sequence_number() != old_item->item_sequence_number() ||
1821 new_item->site_instance() != old_item->site_instance()) {
1822 if (old_item &&
1823 new_item->document_sequence_number() ==
1824 old_item->document_sequence_number()) {
1825 same_document_loads->push_back(std::make_pair(frame, new_item));
1826 } else {
1827 different_document_loads->push_back(std::make_pair(frame, new_item));
1829 return;
1832 for (size_t i = 0; i < frame->child_count(); i++) {
1833 FindFramesToNavigate(frame->child_at(i), same_document_loads,
1834 different_document_loads);
1838 void NavigationControllerImpl::NotifyNavigationEntryCommitted(
1839 LoadCommittedDetails* details) {
1840 details->entry = GetLastCommittedEntry();
1842 // We need to notify the ssl_manager_ before the web_contents_ so the
1843 // location bar will have up-to-date information about the security style
1844 // when it wants to draw. See http://crbug.com/11157
1845 ssl_manager_.DidCommitProvisionalLoad(*details);
1847 delegate_->NotifyNavigationStateChanged(INVALIDATE_TYPE_ALL);
1848 delegate_->NotifyNavigationEntryCommitted(*details);
1850 // TODO(avi): Remove. http://crbug.com/170921
1851 NotificationDetails notification_details =
1852 Details<LoadCommittedDetails>(details);
1853 NotificationService::current()->Notify(
1854 NOTIFICATION_NAV_ENTRY_COMMITTED,
1855 Source<NavigationController>(this),
1856 notification_details);
1859 // static
1860 size_t NavigationControllerImpl::max_entry_count() {
1861 if (max_entry_count_for_testing_ != kMaxEntryCountForTestingNotSet)
1862 return max_entry_count_for_testing_;
1863 return kMaxSessionHistoryEntries;
1866 void NavigationControllerImpl::SetActive(bool is_active) {
1867 if (is_active && needs_reload_)
1868 LoadIfNecessary();
1871 void NavigationControllerImpl::LoadIfNecessary() {
1872 if (!needs_reload_)
1873 return;
1875 // Calling Reload() results in ignoring state, and not loading.
1876 // Explicitly use NavigateToPendingEntry so that the renderer uses the
1877 // cached state.
1878 if (pending_entry_) {
1879 NavigateToPendingEntry(NO_RELOAD);
1880 } else if (last_committed_entry_index_ != -1) {
1881 pending_entry_index_ = last_committed_entry_index_;
1882 NavigateToPendingEntry(NO_RELOAD);
1883 } else {
1884 // If there is something to reload, the successful reload will clear the
1885 // |needs_reload_| flag. Otherwise, just do it here.
1886 needs_reload_ = false;
1890 void NavigationControllerImpl::NotifyEntryChanged(
1891 const NavigationEntry* entry) {
1892 EntryChangedDetails det;
1893 det.changed_entry = entry;
1894 det.index = GetIndexOfEntry(
1895 NavigationEntryImpl::FromNavigationEntry(entry));
1896 NotificationService::current()->Notify(
1897 NOTIFICATION_NAV_ENTRY_CHANGED,
1898 Source<NavigationController>(this),
1899 Details<EntryChangedDetails>(&det));
1902 void NavigationControllerImpl::FinishRestore(int selected_index,
1903 RestoreType type) {
1904 DCHECK(selected_index >= 0 && selected_index < GetEntryCount());
1905 ConfigureEntriesForRestore(&entries_, type);
1907 SetMaxRestoredPageID(static_cast<int32>(GetEntryCount()));
1909 last_committed_entry_index_ = selected_index;
1912 void NavigationControllerImpl::DiscardNonCommittedEntriesInternal() {
1913 DiscardPendingEntry(false);
1914 DiscardTransientEntry();
1917 void NavigationControllerImpl::DiscardPendingEntry(bool was_failure) {
1918 // It is not safe to call DiscardPendingEntry while NavigateToEntry is in
1919 // progress, since this will cause a use-after-free. (We only allow this
1920 // when the tab is being destroyed for shutdown, since it won't return to
1921 // NavigateToEntry in that case.) http://crbug.com/347742.
1922 CHECK(!in_navigate_to_pending_entry_ || delegate_->IsBeingDestroyed());
1924 if (was_failure && pending_entry_) {
1925 failed_pending_entry_id_ = pending_entry_->GetUniqueID();
1926 failed_pending_entry_should_replace_ =
1927 pending_entry_->should_replace_entry();
1928 } else {
1929 failed_pending_entry_id_ = 0;
1932 if (pending_entry_index_ == -1)
1933 delete pending_entry_;
1934 pending_entry_ = NULL;
1935 pending_entry_index_ = -1;
1938 void NavigationControllerImpl::DiscardTransientEntry() {
1939 if (transient_entry_index_ == -1)
1940 return;
1941 entries_.erase(entries_.begin() + transient_entry_index_);
1942 if (last_committed_entry_index_ > transient_entry_index_)
1943 last_committed_entry_index_--;
1944 transient_entry_index_ = -1;
1947 int NavigationControllerImpl::GetEntryIndexWithPageID(
1948 SiteInstance* instance, int32 page_id) const {
1949 for (int i = static_cast<int>(entries_.size()) - 1; i >= 0; --i) {
1950 if ((entries_[i]->site_instance() == instance) &&
1951 (entries_[i]->GetPageID() == page_id))
1952 return i;
1954 return -1;
1957 int NavigationControllerImpl::GetEntryIndexWithUniqueID(
1958 int nav_entry_id) const {
1959 for (int i = static_cast<int>(entries_.size()) - 1; i >= 0; --i) {
1960 if (entries_[i]->GetUniqueID() == nav_entry_id)
1961 return i;
1963 return -1;
1966 NavigationEntryImpl* NavigationControllerImpl::GetTransientEntry() const {
1967 if (transient_entry_index_ == -1)
1968 return NULL;
1969 return entries_[transient_entry_index_];
1972 void NavigationControllerImpl::SetTransientEntry(
1973 scoped_ptr<NavigationEntry> entry) {
1974 // Discard any current transient entry, we can only have one at a time.
1975 int index = 0;
1976 if (last_committed_entry_index_ != -1)
1977 index = last_committed_entry_index_ + 1;
1978 DiscardTransientEntry();
1979 entries_.insert(entries_.begin() + index,
1980 NavigationEntryImpl::FromNavigationEntry(entry.release()));
1981 transient_entry_index_ = index;
1982 delegate_->NotifyNavigationStateChanged(INVALIDATE_TYPE_ALL);
1985 void NavigationControllerImpl::InsertEntriesFrom(
1986 const NavigationControllerImpl& source,
1987 int max_index) {
1988 DCHECK_LE(max_index, source.GetEntryCount());
1989 size_t insert_index = 0;
1990 for (int i = 0; i < max_index; i++) {
1991 // When cloning a tab, copy all entries except interstitial pages.
1992 if (source.entries_[i]->GetPageType() != PAGE_TYPE_INTERSTITIAL) {
1993 // TODO(creis): Once we start sharing FrameNavigationEntries between
1994 // NavigationEntries, it will not be safe to share them with another tab.
1995 // Must have a version of Clone that recreates them.
1996 entries_.insert(entries_.begin() + insert_index++,
1997 source.entries_[i]->Clone().Pass());
2002 void NavigationControllerImpl::SetGetTimestampCallbackForTest(
2003 const base::Callback<base::Time()>& get_timestamp_callback) {
2004 get_timestamp_callback_ = get_timestamp_callback;
2007 } // namespace content