1 // Copyright 2013 The Chromium Authors. All rights reserved.
2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file.
5 #include "content/browser/frame_host/navigation_controller_impl.h"
8 #include "base/command_line.h"
9 #include "base/logging.h"
10 #include "base/metrics/histogram.h"
11 #include "base/strings/string_number_conversions.h" // Temporary
12 #include "base/strings/string_util.h"
13 #include "base/strings/utf_string_conversions.h"
14 #include "base/time/time.h"
15 #include "base/trace_event/trace_event.h"
16 #include "build/build_config.h"
17 #include "cc/base/switches.h"
18 #include "components/mime_util/mime_util.h"
19 #include "content/browser/bad_message.h"
20 #include "content/browser/browser_url_handler_impl.h"
21 #include "content/browser/dom_storage/dom_storage_context_wrapper.h"
22 #include "content/browser/dom_storage/session_storage_namespace_impl.h"
23 #include "content/browser/frame_host/debug_urls.h"
24 #include "content/browser/frame_host/interstitial_page_impl.h"
25 #include "content/browser/frame_host/navigation_entry_impl.h"
26 #include "content/browser/frame_host/navigation_entry_screenshot_manager.h"
27 #include "content/browser/renderer_host/render_view_host_impl.h" // Temporary
28 #include "content/browser/site_instance_impl.h"
29 #include "content/common/frame_messages.h"
30 #include "content/common/view_messages.h"
31 #include "content/public/browser/browser_context.h"
32 #include "content/public/browser/content_browser_client.h"
33 #include "content/public/browser/invalidate_type.h"
34 #include "content/public/browser/navigation_details.h"
35 #include "content/public/browser/notification_service.h"
36 #include "content/public/browser/notification_types.h"
37 #include "content/public/browser/render_widget_host.h"
38 #include "content/public/browser/render_widget_host_view.h"
39 #include "content/public/browser/storage_partition.h"
40 #include "content/public/browser/user_metrics.h"
41 #include "content/public/common/content_client.h"
42 #include "content/public/common/content_constants.h"
43 #include "content/public/common/content_switches.h"
44 #include "media/base/mime_util.h"
45 #include "net/base/escape.h"
46 #include "net/base/net_util.h"
47 #include "skia/ext/platform_canvas.h"
48 #include "url/url_constants.h"
53 // Invoked when entries have been pruned, or removed. For example, if the
54 // current entries are [google, digg, yahoo], with the current entry google,
55 // and the user types in cnet, then digg and yahoo are pruned.
56 void NotifyPrunedEntries(NavigationControllerImpl
* nav_controller
,
59 PrunedDetails details
;
60 details
.from_front
= from_front
;
61 details
.count
= count
;
62 NotificationService::current()->Notify(
63 NOTIFICATION_NAV_LIST_PRUNED
,
64 Source
<NavigationController
>(nav_controller
),
65 Details
<PrunedDetails
>(&details
));
68 // Ensure the given NavigationEntry has a valid state, so that WebKit does not
69 // get confused if we navigate back to it.
71 // An empty state is treated as a new navigation by WebKit, which would mean
72 // losing the navigation entries and generating a new navigation entry after
73 // this one. We don't want that. To avoid this we create a valid state which
74 // WebKit will not treat as a new navigation.
75 void SetPageStateIfEmpty(NavigationEntryImpl
* entry
) {
76 if (!entry
->GetPageState().IsValid())
77 entry
->SetPageState(PageState::CreateFromURL(entry
->GetURL()));
80 NavigationEntryImpl::RestoreType
ControllerRestoreTypeToEntryType(
81 NavigationController::RestoreType type
) {
83 case NavigationController::RESTORE_CURRENT_SESSION
:
84 return NavigationEntryImpl::RESTORE_CURRENT_SESSION
;
85 case NavigationController::RESTORE_LAST_SESSION_EXITED_CLEANLY
:
86 return NavigationEntryImpl::RESTORE_LAST_SESSION_EXITED_CLEANLY
;
87 case NavigationController::RESTORE_LAST_SESSION_CRASHED
:
88 return NavigationEntryImpl::RESTORE_LAST_SESSION_CRASHED
;
91 return NavigationEntryImpl::RESTORE_CURRENT_SESSION
;
94 // Configure all the NavigationEntries in entries for restore. This resets
95 // the transition type to reload and makes sure the content state isn't empty.
96 void ConfigureEntriesForRestore(
97 std::vector
<linked_ptr
<NavigationEntryImpl
> >* entries
,
98 NavigationController::RestoreType type
) {
99 for (size_t i
= 0; i
< entries
->size(); ++i
) {
100 // Use a transition type of reload so that we don't incorrectly increase
102 (*entries
)[i
]->SetTransitionType(ui::PAGE_TRANSITION_RELOAD
);
103 (*entries
)[i
]->set_restore_type(ControllerRestoreTypeToEntryType(type
));
104 // NOTE(darin): This code is only needed for backwards compat.
105 SetPageStateIfEmpty((*entries
)[i
].get());
109 // Determines whether or not we should be carrying over a user agent override
110 // between two NavigationEntries.
111 bool ShouldKeepOverride(const NavigationEntry
* last_entry
) {
112 return last_entry
&& last_entry
->GetIsOverridingUserAgent();
117 // NavigationControllerImpl ----------------------------------------------------
119 const size_t kMaxEntryCountForTestingNotSet
= static_cast<size_t>(-1);
122 size_t NavigationControllerImpl::max_entry_count_for_testing_
=
123 kMaxEntryCountForTestingNotSet
;
125 // Should Reload check for post data? The default is true, but is set to false
127 static bool g_check_for_repost
= true;
130 NavigationEntry
* NavigationController::CreateNavigationEntry(
132 const Referrer
& referrer
,
133 ui::PageTransition transition
,
134 bool is_renderer_initiated
,
135 const std::string
& extra_headers
,
136 BrowserContext
* browser_context
) {
137 // Fix up the given URL before letting it be rewritten, so that any minor
138 // cleanup (e.g., removing leading dots) will not lead to a virtual URL.
140 BrowserURLHandlerImpl::GetInstance()->FixupURLBeforeRewrite(&dest_url
,
143 // Allow the browser URL handler to rewrite the URL. This will, for example,
144 // remove "view-source:" from the beginning of the URL to get the URL that
145 // will actually be loaded. This real URL won't be shown to the user, just
147 GURL
loaded_url(dest_url
);
148 bool reverse_on_redirect
= false;
149 BrowserURLHandlerImpl::GetInstance()->RewriteURLIfNecessary(
150 &loaded_url
, browser_context
, &reverse_on_redirect
);
152 NavigationEntryImpl
* entry
= new NavigationEntryImpl(
153 NULL
, // The site instance for tabs is sent on navigation
154 // (WebContents::GetSiteInstance).
160 is_renderer_initiated
);
161 entry
->SetVirtualURL(dest_url
);
162 entry
->set_user_typed_url(dest_url
);
163 entry
->set_update_virtual_url_with_url(reverse_on_redirect
);
164 entry
->set_extra_headers(extra_headers
);
169 void NavigationController::DisablePromptOnRepost() {
170 g_check_for_repost
= false;
173 base::Time
NavigationControllerImpl::TimeSmoother::GetSmoothedTime(
175 // If |t| is between the water marks, we're in a run of duplicates
176 // or just getting out of it, so increase the high-water mark to get
177 // a time that probably hasn't been used before and return it.
178 if (low_water_mark_
<= t
&& t
<= high_water_mark_
) {
179 high_water_mark_
+= base::TimeDelta::FromMicroseconds(1);
180 return high_water_mark_
;
183 // Otherwise, we're clear of the last duplicate run, so reset the
185 low_water_mark_
= high_water_mark_
= t
;
189 NavigationControllerImpl::NavigationControllerImpl(
190 NavigationControllerDelegate
* delegate
,
191 BrowserContext
* browser_context
)
192 : browser_context_(browser_context
),
193 pending_entry_(NULL
),
194 failed_pending_entry_id_(0),
195 failed_pending_entry_should_replace_(false),
196 last_committed_entry_index_(-1),
197 pending_entry_index_(-1),
198 transient_entry_index_(-1),
200 max_restored_page_id_(-1),
202 needs_reload_(false),
203 is_initial_navigation_(true),
204 in_navigate_to_pending_entry_(false),
205 pending_reload_(NO_RELOAD
),
206 get_timestamp_callback_(base::Bind(&base::Time::Now
)),
207 screenshot_manager_(new NavigationEntryScreenshotManager(this)) {
208 DCHECK(browser_context_
);
211 NavigationControllerImpl::~NavigationControllerImpl() {
212 DiscardNonCommittedEntriesInternal();
215 WebContents
* NavigationControllerImpl::GetWebContents() const {
216 return delegate_
->GetWebContents();
219 BrowserContext
* NavigationControllerImpl::GetBrowserContext() const {
220 return browser_context_
;
223 void NavigationControllerImpl::SetBrowserContext(
224 BrowserContext
* browser_context
) {
225 browser_context_
= browser_context
;
228 void NavigationControllerImpl::Restore(
229 int selected_navigation
,
231 std::vector
<NavigationEntry
*>* entries
) {
232 // Verify that this controller is unused and that the input is valid.
233 DCHECK(GetEntryCount() == 0 && !GetPendingEntry());
234 DCHECK(selected_navigation
>= 0 &&
235 selected_navigation
< static_cast<int>(entries
->size()));
237 needs_reload_
= true;
238 for (size_t i
= 0; i
< entries
->size(); ++i
) {
239 NavigationEntryImpl
* entry
=
240 NavigationEntryImpl::FromNavigationEntry((*entries
)[i
]);
241 entries_
.push_back(linked_ptr
<NavigationEntryImpl
>(entry
));
245 // And finish the restore.
246 FinishRestore(selected_navigation
, type
);
249 void NavigationControllerImpl::Reload(bool check_for_repost
) {
250 ReloadInternal(check_for_repost
, RELOAD
);
252 void NavigationControllerImpl::ReloadIgnoringCache(bool check_for_repost
) {
253 ReloadInternal(check_for_repost
, RELOAD_IGNORING_CACHE
);
255 void NavigationControllerImpl::ReloadOriginalRequestURL(bool check_for_repost
) {
256 ReloadInternal(check_for_repost
, RELOAD_ORIGINAL_REQUEST_URL
);
259 void NavigationControllerImpl::ReloadInternal(bool check_for_repost
,
260 ReloadType reload_type
) {
261 if (transient_entry_index_
!= -1) {
262 // If an interstitial is showing, treat a reload as a navigation to the
263 // transient entry's URL.
264 NavigationEntryImpl
* transient_entry
= GetTransientEntry();
265 if (!transient_entry
)
267 LoadURL(transient_entry
->GetURL(),
269 ui::PAGE_TRANSITION_RELOAD
,
270 transient_entry
->extra_headers());
274 NavigationEntryImpl
* entry
= NULL
;
275 int current_index
= -1;
277 // If we are reloading the initial navigation, just use the current
278 // pending entry. Otherwise look up the current entry.
279 if (IsInitialNavigation() && pending_entry_
) {
280 entry
= pending_entry_
;
281 // The pending entry might be in entries_ (e.g., after a Clone), so we
282 // should also update the current_index.
283 current_index
= pending_entry_index_
;
285 DiscardNonCommittedEntriesInternal();
286 current_index
= GetCurrentEntryIndex();
287 if (current_index
!= -1) {
288 entry
= GetEntryAtIndex(current_index
);
292 // If we are no where, then we can't reload. TODO(darin): We should add a
297 if (reload_type
== NavigationControllerImpl::RELOAD_ORIGINAL_REQUEST_URL
&&
298 entry
->GetOriginalRequestURL().is_valid() && !entry
->GetHasPostData()) {
299 // We may have been redirected when navigating to the current URL.
300 // Use the URL the user originally intended to visit, if it's valid and if a
301 // POST wasn't involved; the latter case avoids issues with sending data to
303 entry
->SetURL(entry
->GetOriginalRequestURL());
304 entry
->SetReferrer(Referrer());
307 if (g_check_for_repost
&& check_for_repost
&&
308 entry
->GetHasPostData()) {
309 // The user is asking to reload a page with POST data. Prompt to make sure
310 // they really want to do this. If they do, the dialog will call us back
311 // with check_for_repost = false.
312 delegate_
->NotifyBeforeFormRepostWarningShow();
314 pending_reload_
= reload_type
;
315 delegate_
->ActivateAndShowRepostFormWarningDialog();
317 if (!IsInitialNavigation())
318 DiscardNonCommittedEntriesInternal();
320 // If we are reloading an entry that no longer belongs to the current
321 // site instance (for example, refreshing a page for just installed app),
322 // the reload must happen in a new process.
323 // The new entry must have a new page_id and site instance, so it behaves
324 // as new navigation (which happens to clear forward history).
325 // Tabs that are discarded due to low memory conditions may not have a site
326 // instance, and should not be treated as a cross-site reload.
327 SiteInstanceImpl
* site_instance
= entry
->site_instance();
328 // Permit reloading guests without further checks.
329 bool is_isolated_guest
= site_instance
&& site_instance
->HasProcess() &&
330 site_instance
->GetProcess()->IsIsolatedGuest();
331 if (!is_isolated_guest
&& site_instance
&&
332 site_instance
->HasWrongProcessForURL(entry
->GetURL())) {
333 // Create a navigation entry that resembles the current one, but do not
334 // copy page id, site instance, content state, or timestamp.
335 NavigationEntryImpl
* nav_entry
= NavigationEntryImpl::FromNavigationEntry(
336 CreateNavigationEntry(
337 entry
->GetURL(), entry
->GetReferrer(), entry
->GetTransitionType(),
338 false, entry
->extra_headers(), browser_context_
));
340 // Mark the reload type as NO_RELOAD, so navigation will not be considered
341 // a reload in the renderer.
342 reload_type
= NavigationController::NO_RELOAD
;
344 nav_entry
->set_should_replace_entry(true);
345 pending_entry_
= nav_entry
;
347 pending_entry_
= entry
;
348 pending_entry_index_
= current_index
;
350 // The title of the page being reloaded might have been removed in the
351 // meanwhile, so we need to revert to the default title upon reload and
352 // invalidate the previously cached title (SetTitle will do both).
353 // See Chromium issue 96041.
354 pending_entry_
->SetTitle(base::string16());
356 pending_entry_
->SetTransitionType(ui::PAGE_TRANSITION_RELOAD
);
359 NavigateToPendingEntry(reload_type
);
363 void NavigationControllerImpl::CancelPendingReload() {
364 DCHECK(pending_reload_
!= NO_RELOAD
);
365 pending_reload_
= NO_RELOAD
;
368 void NavigationControllerImpl::ContinuePendingReload() {
369 if (pending_reload_
== NO_RELOAD
) {
372 ReloadInternal(false, pending_reload_
);
373 pending_reload_
= NO_RELOAD
;
377 bool NavigationControllerImpl::IsInitialNavigation() const {
378 return is_initial_navigation_
;
381 NavigationEntryImpl
* NavigationControllerImpl::GetEntryWithPageID(
382 SiteInstance
* instance
, int32 page_id
) const {
383 int index
= GetEntryIndexWithPageID(instance
, page_id
);
384 return (index
!= -1) ? entries_
[index
].get() : NULL
;
387 bool NavigationControllerImpl::HasCommittedRealLoad(
388 FrameTreeNode
* frame_tree_node
) const {
389 NavigationEntryImpl
* last_committed
= GetLastCommittedEntry();
390 return last_committed
&& last_committed
->HasFrameEntry(frame_tree_node
);
393 void NavigationControllerImpl::LoadEntry(NavigationEntryImpl
* entry
) {
394 // When navigating to a new page, we don't know for sure if we will actually
395 // end up leaving the current page. The new page load could for example
396 // result in a download or a 'no content' response (e.g., a mailto: URL).
397 SetPendingEntry(entry
);
398 NavigateToPendingEntry(NO_RELOAD
);
401 void NavigationControllerImpl::SetPendingEntry(NavigationEntryImpl
* entry
) {
402 DiscardNonCommittedEntriesInternal();
403 pending_entry_
= entry
;
404 NotificationService::current()->Notify(
405 NOTIFICATION_NAV_ENTRY_PENDING
,
406 Source
<NavigationController
>(this),
407 Details
<NavigationEntry
>(entry
));
410 NavigationEntryImpl
* NavigationControllerImpl::GetActiveEntry() const {
411 if (transient_entry_index_
!= -1)
412 return entries_
[transient_entry_index_
].get();
414 return pending_entry_
;
415 return GetLastCommittedEntry();
418 NavigationEntryImpl
* NavigationControllerImpl::GetVisibleEntry() const {
419 if (transient_entry_index_
!= -1)
420 return entries_
[transient_entry_index_
].get();
421 // The pending entry is safe to return for new (non-history), browser-
422 // initiated navigations. Most renderer-initiated navigations should not
423 // show the pending entry, to prevent URL spoof attacks.
425 // We make an exception for renderer-initiated navigations in new tabs, as
426 // long as no other page has tried to access the initial empty document in
427 // the new tab. If another page modifies this blank page, a URL spoof is
428 // possible, so we must stop showing the pending entry.
429 bool safe_to_show_pending
=
431 // Require a new navigation.
432 pending_entry_index_
== -1 &&
433 // Require either browser-initiated or an unmodified new tab.
434 (!pending_entry_
->is_renderer_initiated() || IsUnmodifiedBlankTab());
436 // Also allow showing the pending entry for history navigations in a new tab,
437 // such as Ctrl+Back. In this case, no existing page is visible and no one
438 // can script the new tab before it commits.
439 if (!safe_to_show_pending
&&
441 pending_entry_index_
!= -1 &&
442 IsInitialNavigation() &&
443 !pending_entry_
->is_renderer_initiated())
444 safe_to_show_pending
= true;
446 if (safe_to_show_pending
)
447 return pending_entry_
;
448 return GetLastCommittedEntry();
451 int NavigationControllerImpl::GetCurrentEntryIndex() const {
452 if (transient_entry_index_
!= -1)
453 return transient_entry_index_
;
454 if (pending_entry_index_
!= -1)
455 return pending_entry_index_
;
456 return last_committed_entry_index_
;
459 NavigationEntryImpl
* NavigationControllerImpl::GetLastCommittedEntry() const {
460 if (last_committed_entry_index_
== -1)
462 return entries_
[last_committed_entry_index_
].get();
465 bool NavigationControllerImpl::CanViewSource() const {
466 const std::string
& mime_type
= delegate_
->GetContentsMimeType();
467 bool is_viewable_mime_type
=
468 mime_util::IsSupportedNonImageMimeType(mime_type
) &&
469 !media::IsSupportedMediaMimeType(mime_type
);
470 NavigationEntry
* visible_entry
= GetVisibleEntry();
471 return visible_entry
&& !visible_entry
->IsViewSourceMode() &&
472 is_viewable_mime_type
&& !delegate_
->GetInterstitialPage();
475 int NavigationControllerImpl::GetLastCommittedEntryIndex() const {
476 return last_committed_entry_index_
;
479 int NavigationControllerImpl::GetEntryCount() const {
480 DCHECK(entries_
.size() <= max_entry_count());
481 return static_cast<int>(entries_
.size());
484 NavigationEntryImpl
* NavigationControllerImpl::GetEntryAtIndex(
486 return entries_
.at(index
).get();
489 NavigationEntryImpl
* NavigationControllerImpl::GetEntryAtOffset(
491 int index
= GetIndexForOffset(offset
);
492 if (index
< 0 || index
>= GetEntryCount())
495 return entries_
[index
].get();
498 int NavigationControllerImpl::GetIndexForOffset(int offset
) const {
499 return GetCurrentEntryIndex() + offset
;
502 void NavigationControllerImpl::TakeScreenshot() {
503 screenshot_manager_
->TakeScreenshot();
506 void NavigationControllerImpl::SetScreenshotManager(
507 NavigationEntryScreenshotManager
* manager
) {
508 screenshot_manager_
.reset(manager
? manager
:
509 new NavigationEntryScreenshotManager(this));
512 bool NavigationControllerImpl::CanGoBack() const {
513 return entries_
.size() > 1 && GetCurrentEntryIndex() > 0;
516 bool NavigationControllerImpl::CanGoForward() const {
517 int index
= GetCurrentEntryIndex();
518 return index
>= 0 && index
< (static_cast<int>(entries_
.size()) - 1);
521 bool NavigationControllerImpl::CanGoToOffset(int offset
) const {
522 int index
= GetIndexForOffset(offset
);
523 return index
>= 0 && index
< GetEntryCount();
526 void NavigationControllerImpl::GoBack() {
532 // Base the navigation on where we are now...
533 int current_index
= GetCurrentEntryIndex();
535 DiscardNonCommittedEntries();
537 pending_entry_index_
= current_index
- 1;
538 entries_
[pending_entry_index_
]->SetTransitionType(
539 ui::PageTransitionFromInt(
540 entries_
[pending_entry_index_
]->GetTransitionType() |
541 ui::PAGE_TRANSITION_FORWARD_BACK
));
542 NavigateToPendingEntry(NO_RELOAD
);
545 void NavigationControllerImpl::GoForward() {
546 if (!CanGoForward()) {
551 bool transient
= (transient_entry_index_
!= -1);
553 // Base the navigation on where we are now...
554 int current_index
= GetCurrentEntryIndex();
556 DiscardNonCommittedEntries();
558 pending_entry_index_
= current_index
;
559 // If there was a transient entry, we removed it making the current index
562 pending_entry_index_
++;
564 entries_
[pending_entry_index_
]->SetTransitionType(
565 ui::PageTransitionFromInt(
566 entries_
[pending_entry_index_
]->GetTransitionType() |
567 ui::PAGE_TRANSITION_FORWARD_BACK
));
568 NavigateToPendingEntry(NO_RELOAD
);
571 void NavigationControllerImpl::GoToIndex(int index
) {
572 if (index
< 0 || index
>= static_cast<int>(entries_
.size())) {
577 if (transient_entry_index_
!= -1) {
578 if (index
== transient_entry_index_
) {
579 // Nothing to do when navigating to the transient.
582 if (index
> transient_entry_index_
) {
583 // Removing the transient is goint to shift all entries by 1.
588 DiscardNonCommittedEntries();
590 pending_entry_index_
= index
;
591 entries_
[pending_entry_index_
]->SetTransitionType(
592 ui::PageTransitionFromInt(
593 entries_
[pending_entry_index_
]->GetTransitionType() |
594 ui::PAGE_TRANSITION_FORWARD_BACK
));
595 NavigateToPendingEntry(NO_RELOAD
);
598 void NavigationControllerImpl::GoToOffset(int offset
) {
599 if (!CanGoToOffset(offset
))
602 GoToIndex(GetIndexForOffset(offset
));
605 bool NavigationControllerImpl::RemoveEntryAtIndex(int index
) {
606 if (index
== last_committed_entry_index_
||
607 index
== pending_entry_index_
)
610 RemoveEntryAtIndexInternal(index
);
614 void NavigationControllerImpl::UpdateVirtualURLToURL(
615 NavigationEntryImpl
* entry
, const GURL
& new_url
) {
616 GURL
new_virtual_url(new_url
);
617 if (BrowserURLHandlerImpl::GetInstance()->ReverseURLRewrite(
618 &new_virtual_url
, entry
->GetVirtualURL(), browser_context_
)) {
619 entry
->SetVirtualURL(new_virtual_url
);
623 void NavigationControllerImpl::LoadURL(
625 const Referrer
& referrer
,
626 ui::PageTransition transition
,
627 const std::string
& extra_headers
) {
628 LoadURLParams
params(url
);
629 params
.referrer
= referrer
;
630 params
.transition_type
= transition
;
631 params
.extra_headers
= extra_headers
;
632 LoadURLWithParams(params
);
635 void NavigationControllerImpl::LoadURLWithParams(const LoadURLParams
& params
) {
636 TRACE_EVENT1("browser,navigation",
637 "NavigationControllerImpl::LoadURLWithParams",
638 "url", params
.url
.possibly_invalid_spec());
639 if (HandleDebugURL(params
.url
, params
.transition_type
)) {
640 // If Telemetry is running, allow the URL load to proceed as if it's
641 // unhandled, otherwise Telemetry can't tell if Navigation completed.
642 if (!base::CommandLine::ForCurrentProcess()->HasSwitch(
643 cc::switches::kEnableGpuBenchmarking
))
647 // Any renderer-side debug URLs or javascript: URLs should be ignored if the
648 // renderer process is not live, unless it is the initial navigation of the
650 if (IsRendererDebugURL(params
.url
)) {
651 // TODO(creis): Find the RVH for the correct frame.
652 if (!delegate_
->GetRenderViewHost()->IsRenderViewLive() &&
653 !IsInitialNavigation())
657 // Checks based on params.load_type.
658 switch (params
.load_type
) {
659 case LOAD_TYPE_DEFAULT
:
661 case LOAD_TYPE_BROWSER_INITIATED_HTTP_POST
:
662 if (!params
.url
.SchemeIs(url::kHttpScheme
) &&
663 !params
.url
.SchemeIs(url::kHttpsScheme
)) {
664 NOTREACHED() << "Http post load must use http(s) scheme.";
669 if (!params
.url
.SchemeIs(url::kDataScheme
)) {
670 NOTREACHED() << "Data load must use data scheme.";
679 // The user initiated a load, we don't need to reload anymore.
680 needs_reload_
= false;
682 bool override
= false;
683 switch (params
.override_user_agent
) {
684 case UA_OVERRIDE_INHERIT
:
685 override
= ShouldKeepOverride(GetLastCommittedEntry());
687 case UA_OVERRIDE_TRUE
:
690 case UA_OVERRIDE_FALSE
:
698 NavigationEntryImpl
* entry
= NavigationEntryImpl::FromNavigationEntry(
699 CreateNavigationEntry(
702 params
.transition_type
,
703 params
.is_renderer_initiated
,
704 params
.extra_headers
,
706 if (!params
.frame_name
.empty()) {
707 // This is only used for navigating subframes in tests.
708 FrameTreeNode
* named_frame
=
709 delegate_
->GetFrameTree()->FindByName(params
.frame_name
);
711 entry
->set_frame_tree_node_id(named_frame
->frame_tree_node_id());
713 if (params
.frame_tree_node_id
!= -1)
714 entry
->set_frame_tree_node_id(params
.frame_tree_node_id
);
715 entry
->set_source_site_instance(
716 static_cast<SiteInstanceImpl
*>(params
.source_site_instance
.get()));
717 if (params
.redirect_chain
.size() > 0)
718 entry
->SetRedirectChain(params
.redirect_chain
);
719 // Don't allow an entry replacement if there is no entry to replace.
720 // http://crbug.com/457149
721 if (params
.should_replace_current_entry
&& entries_
.size() > 0)
722 entry
->set_should_replace_entry(true);
723 entry
->set_should_clear_history_list(params
.should_clear_history_list
);
724 entry
->SetIsOverridingUserAgent(override
);
725 entry
->set_transferred_global_request_id(
726 params
.transferred_global_request_id
);
728 #if defined(OS_ANDROID)
729 if (params
.intent_received_timestamp
> 0) {
730 entry
->set_intent_received_timestamp(
732 base::TimeDelta::FromMilliseconds(params
.intent_received_timestamp
));
736 switch (params
.load_type
) {
737 case LOAD_TYPE_DEFAULT
:
739 case LOAD_TYPE_BROWSER_INITIATED_HTTP_POST
:
740 entry
->SetHasPostData(true);
741 entry
->SetBrowserInitiatedPostData(
742 params
.browser_initiated_post_data
.get());
745 entry
->SetBaseURLForDataURL(params
.base_url_for_data_url
);
746 entry
->SetVirtualURL(params
.virtual_url_for_data_url
);
747 entry
->SetCanLoadLocalResources(params
.can_load_local_resources
);
757 bool NavigationControllerImpl::RendererDidNavigate(
758 RenderFrameHostImpl
* rfh
,
759 const FrameHostMsg_DidCommitProvisionalLoad_Params
& params
,
760 LoadCommittedDetails
* details
) {
761 is_initial_navigation_
= false;
763 // Save the previous state before we clobber it.
764 if (GetLastCommittedEntry()) {
765 details
->previous_url
= GetLastCommittedEntry()->GetURL();
766 details
->previous_entry_index
= GetLastCommittedEntryIndex();
768 details
->previous_url
= GURL();
769 details
->previous_entry_index
= -1;
772 // If we have a pending entry at this point, it should have a SiteInstance.
773 // Restored entries start out with a null SiteInstance, but we should have
774 // assigned one in NavigateToPendingEntry.
775 DCHECK(pending_entry_index_
== -1 || pending_entry_
->site_instance());
777 // If we are doing a cross-site reload, we need to replace the existing
778 // navigation entry, not add another entry to the history. This has the side
779 // effect of removing forward browsing history, if such existed. Or if we are
780 // doing a cross-site redirect navigation, we will do a similar thing.
782 // If this is an error load, we may have already removed the pending entry
783 // when we got the notice of the load failure. If so, look at the copy of the
784 // pending parameters that were saved.
785 if (params
.url_is_unreachable
&& failed_pending_entry_id_
!= 0) {
786 details
->did_replace_entry
= failed_pending_entry_should_replace_
;
788 details
->did_replace_entry
= pending_entry_
&&
789 pending_entry_
->should_replace_entry();
792 // Do navigation-type specific actions. These will make and commit an entry.
793 details
->type
= ClassifyNavigation(rfh
, params
);
794 NavigationType new_type
= ClassifyNavigationWithoutPageID(rfh
, params
);
795 bool ignore_mismatch
= false;
796 // There are disagreements on some Android bots over SAME_PAGE between the two
797 // classifiers so ignore disagreements if that's the case.
798 ignore_mismatch
|= details
->type
== NAVIGATION_TYPE_EXISTING_PAGE
&&
799 new_type
== NAVIGATION_TYPE_SAME_PAGE
;
800 ignore_mismatch
|= details
->type
== NAVIGATION_TYPE_SAME_PAGE
&&
801 new_type
== NAVIGATION_TYPE_EXISTING_PAGE
;
802 // There are mismatches in the field where the new classifier thinks it's
803 // AUTO_SUBFRAME and the old classifier somehow thinks it's NEW or IGNORE. For
804 // IGNORE we know of at least one repro (https://crbug.com/492875), and for
805 // NEW it's not entirely clear what's going on, but we're pretty sure the new
806 // classifier is correct for both cases, so we're letting these mismatches go.
807 ignore_mismatch
|= details
->type
== NAVIGATION_TYPE_NEW_SUBFRAME
&&
808 new_type
== NAVIGATION_TYPE_AUTO_SUBFRAME
;
809 ignore_mismatch
|= details
->type
== NAVIGATION_TYPE_NAV_IGNORE
&&
810 new_type
== NAVIGATION_TYPE_AUTO_SUBFRAME
;
811 if (base::CommandLine::ForCurrentProcess()->HasSwitch(
812 switches::kSitePerProcess
)) {
813 // We know that the old classifier is wrong for OOPIFs, so use the new one
814 // in --site-per-process mode.
815 details
->type
= new_type
;
816 ignore_mismatch
= true;
818 if (!ignore_mismatch
) {
819 DCHECK_EQ(details
->type
, new_type
);
822 // is_in_page must be computed before the entry gets committed.
823 details
->is_in_page
= IsURLInPageNavigation(
824 params
.url
, params
.was_within_same_page
, rfh
);
826 switch (details
->type
) {
827 case NAVIGATION_TYPE_NEW_PAGE
:
828 RendererDidNavigateToNewPage(rfh
, params
, details
->did_replace_entry
);
830 case NAVIGATION_TYPE_EXISTING_PAGE
:
831 RendererDidNavigateToExistingPage(rfh
, params
);
833 case NAVIGATION_TYPE_SAME_PAGE
:
834 RendererDidNavigateToSamePage(rfh
, params
);
836 case NAVIGATION_TYPE_IN_PAGE
:
837 RendererDidNavigateInPage(rfh
, params
, &details
->did_replace_entry
);
839 case NAVIGATION_TYPE_NEW_SUBFRAME
:
840 RendererDidNavigateNewSubframe(rfh
, params
);
842 case NAVIGATION_TYPE_AUTO_SUBFRAME
:
843 if (!RendererDidNavigateAutoSubframe(rfh
, params
))
846 case NAVIGATION_TYPE_NAV_IGNORE
:
847 // If a pending navigation was in progress, this canceled it. We should
848 // discard it and make sure it is removed from the URL bar. After that,
849 // there is nothing we can do with this navigation, so we just return to
850 // the caller that nothing has happened.
851 if (pending_entry_
) {
852 DiscardNonCommittedEntries();
853 delegate_
->NotifyNavigationStateChanged(INVALIDATE_TYPE_URL
);
860 // At this point, we know that the navigation has just completed, so
863 // TODO(akalin): Use "sane time" as described in
864 // http://www.chromium.org/developers/design-documents/sane-time .
865 base::Time timestamp
=
866 time_smoother_
.GetSmoothedTime(get_timestamp_callback_
.Run());
867 DVLOG(1) << "Navigation finished at (smoothed) timestamp "
868 << timestamp
.ToInternalValue();
870 // We should not have a pending entry anymore. Clear it again in case any
871 // error cases above forgot to do so.
872 DiscardNonCommittedEntriesInternal();
874 // All committed entries should have nonempty content state so WebKit doesn't
875 // get confused when we go back to them (see the function for details).
876 DCHECK(params
.page_state
.IsValid());
877 NavigationEntryImpl
* active_entry
= GetLastCommittedEntry();
878 active_entry
->SetTimestamp(timestamp
);
879 active_entry
->SetHttpStatusCode(params
.http_status_code
);
880 // TODO(creis): Do this on the frame entry instead, once we have them for
881 // manual subframe navigations in --site-per-process.
882 active_entry
->SetPageState(params
.page_state
);
883 active_entry
->SetRedirectChain(params
.redirects
);
885 // Use histogram to track memory impact of redirect chain because it's now
886 // not cleared for committed entries.
887 size_t redirect_chain_size
= 0;
888 for (size_t i
= 0; i
< params
.redirects
.size(); ++i
) {
889 redirect_chain_size
+= params
.redirects
[i
].spec().length();
891 UMA_HISTOGRAM_COUNTS("Navigation.RedirectChainSize", redirect_chain_size
);
893 // Once it is committed, we no longer need to track several pieces of state on
895 active_entry
->ResetForCommit();
897 // The active entry's SiteInstance should match our SiteInstance.
898 // TODO(creis): This check won't pass for subframes until we create entries
899 // for subframe navigations.
900 if (!rfh
->GetParent())
901 CHECK(active_entry
->site_instance() == rfh
->GetSiteInstance());
903 // Remember the bindings the renderer process has at this point, so that
904 // we do not grant this entry additional bindings if we come back to it.
905 active_entry
->SetBindings(rfh
->GetEnabledBindings());
907 // Now prep the rest of the details for the notification and broadcast.
908 details
->entry
= active_entry
;
909 details
->is_main_frame
= !rfh
->GetParent();
910 details
->serialized_security_info
= params
.security_info
;
911 details
->http_status_code
= params
.http_status_code
;
912 NotifyNavigationEntryCommitted(details
);
917 NavigationType
NavigationControllerImpl::ClassifyNavigation(
918 RenderFrameHostImpl
* rfh
,
919 const FrameHostMsg_DidCommitProvisionalLoad_Params
& params
) const {
920 if (params
.page_id
== -1) {
921 // The renderer generates the page IDs, and so if it gives us the invalid
922 // page ID (-1) we know it didn't actually navigate. This happens in a few
925 // - If a page makes a popup navigated to about blank, and then writes
926 // stuff like a subframe navigated to a real page. We'll get the commit
927 // for the subframe, but there won't be any commit for the outer page.
929 // - We were also getting these for failed loads (for example, bug 21849).
930 // The guess is that we get a "load commit" for the alternate error page,
931 // but that doesn't affect the page ID, so we get the "old" one, which
932 // could be invalid. This can also happen for a cross-site transition
933 // that causes us to swap processes. Then the error page load will be in
934 // a new process with no page IDs ever assigned (and hence a -1 value),
935 // yet the navigation controller still might have previous pages in its
938 // In these cases, there's nothing we can do with them, so ignore.
939 return NAVIGATION_TYPE_NAV_IGNORE
;
942 if (params
.page_id
> delegate_
->GetMaxPageIDForSiteInstance(
943 rfh
->GetSiteInstance())) {
944 // Greater page IDs than we've ever seen before are new pages. We may or may
945 // not have a pending entry for the page, and this may or may not be the
947 if (!rfh
->GetParent())
948 return NAVIGATION_TYPE_NEW_PAGE
;
950 // When this is a new subframe navigation, we should have a committed page
951 // for which it's a suframe in. This may not be the case when an iframe is
952 // navigated on a popup navigated to about:blank (the iframe would be
953 // written into the popup by script on the main page). For these cases,
954 // there isn't any navigation stuff we can do, so just ignore it.
955 if (!GetLastCommittedEntry())
956 return NAVIGATION_TYPE_NAV_IGNORE
;
958 // Valid subframe navigation.
959 return NAVIGATION_TYPE_NEW_SUBFRAME
;
962 // We only clear the session history when navigating to a new page.
963 DCHECK(!params
.history_list_was_cleared
);
965 // Now we know that the notification is for an existing page. Find that entry.
966 int existing_entry_index
= GetEntryIndexWithPageID(
967 rfh
->GetSiteInstance(),
969 if (existing_entry_index
== -1) {
970 // The page was not found. It could have been pruned because of the limit on
971 // back/forward entries (not likely since we'll usually tell it to navigate
972 // to such entries). It could also mean that the renderer is smoking crack.
975 // Because the unknown entry has committed, we risk showing the wrong URL in
976 // release builds. Instead, we'll kill the renderer process to be safe.
977 LOG(ERROR
) << "terminating renderer for bad navigation: " << params
.url
;
978 RecordAction(base::UserMetricsAction("BadMessageTerminate_NC"));
980 // Temporary code so we can get more information. Format:
981 // http://url/foo.html#page1#max3#frame1#ids:2_Nx,1_1x,3_2
982 std::string temp
= params
.url
.spec();
983 temp
.append("#page");
984 temp
.append(base::IntToString(params
.page_id
));
986 temp
.append(base::IntToString(delegate_
->GetMaxPageID()));
987 temp
.append("#frame");
988 temp
.append(base::IntToString(rfh
->GetRoutingID()));
990 for (int i
= 0; i
< static_cast<int>(entries_
.size()); ++i
) {
991 // Append entry metadata (e.g., 3_7x):
993 // 7: SiteInstance ID, or N for null
994 // x: appended if not from the current SiteInstance
995 temp
.append(base::IntToString(entries_
[i
]->GetPageID()));
997 if (entries_
[i
]->site_instance())
998 temp
.append(base::IntToString(entries_
[i
]->site_instance()->GetId()));
1001 if (entries_
[i
]->site_instance() != rfh
->GetSiteInstance())
1006 rfh
->render_view_host()->Send(new ViewMsg_TempCrashWithData(url
));
1007 return NAVIGATION_TYPE_NAV_IGNORE
;
1009 NavigationEntryImpl
* existing_entry
= entries_
[existing_entry_index
].get();
1011 if (rfh
->GetParent()) {
1012 // All manual subframes would get new IDs and were handled above, so we
1013 // know this is auto. Since the current page was found in the navigation
1014 // entry list, we're guaranteed to have a last committed entry.
1015 DCHECK(GetLastCommittedEntry());
1016 return NAVIGATION_TYPE_AUTO_SUBFRAME
;
1019 // Anything below here we know is a main frame navigation.
1020 if (pending_entry_
&&
1021 !pending_entry_
->is_renderer_initiated() &&
1022 existing_entry
!= pending_entry_
&&
1023 pending_entry_
->GetPageID() == -1 &&
1024 existing_entry
== GetLastCommittedEntry() &&
1025 !params
.was_within_same_page
) {
1026 // In order to prevent unrelated pending entries from interfering with
1027 // this classification, make sure that the URL committed matches the URLs
1028 // of both the existing entry and the pending entry. There might have been
1029 // a redirection, though, so allow both the existing and pending entries
1030 // to match either the final URL that committed, or the original one
1031 // before redirection.
1033 if (params
.redirects
.size())
1034 original_url
= params
.redirects
[0];
1036 if ((params
.url
== existing_entry
->GetURL() ||
1037 original_url
== existing_entry
->GetURL()) &&
1038 (params
.url
== pending_entry_
->GetURL() ||
1039 original_url
== pending_entry_
->GetURL())) {
1040 // In this case, we have a pending entry for a URL but Blink didn't do a
1041 // new navigation. This happens when you press enter in the URL bar to
1042 // reload. We will create a pending entry, but Blink will convert it to a
1043 // reload since it's the same page and not create a new entry for it (the
1044 // user doesn't want to have a new back/forward entry when they do this).
1045 // If this matches the last committed entry, we want to just ignore the
1046 // pending entry and go back to where we were (the "existing entry").
1047 return NAVIGATION_TYPE_SAME_PAGE
;
1051 // Any toplevel navigations with the same base (minus the reference fragment)
1052 // are in-page navigations. We weeded out subframe navigations above. Most of
1053 // the time this doesn't matter since WebKit doesn't tell us about subframe
1054 // navigations that don't actually navigate, but it can happen when there is
1055 // an encoding override (it always sends a navigation request).
1056 if (IsURLInPageNavigation(params
.url
, params
.was_within_same_page
, rfh
))
1057 return NAVIGATION_TYPE_IN_PAGE
;
1059 // Since we weeded out "new" navigations above, we know this is an existing
1060 // (back/forward) navigation.
1061 return NAVIGATION_TYPE_EXISTING_PAGE
;
1064 NavigationType
NavigationControllerImpl::ClassifyNavigationWithoutPageID(
1065 RenderFrameHostImpl
* rfh
,
1066 const FrameHostMsg_DidCommitProvisionalLoad_Params
& params
) const {
1067 if (params
.did_create_new_entry
) {
1068 // A new entry. We may or may not have a pending entry for the page, and
1069 // this may or may not be the main frame.
1070 if (!rfh
->GetParent()) {
1071 return NAVIGATION_TYPE_NEW_PAGE
;
1074 // When this is a new subframe navigation, we should have a committed page
1075 // in which it's a subframe. This may not be the case when an iframe is
1076 // navigated on a popup navigated to about:blank (the iframe would be
1077 // written into the popup by script on the main page). For these cases,
1078 // there isn't any navigation stuff we can do, so just ignore it.
1079 if (!GetLastCommittedEntry())
1080 return NAVIGATION_TYPE_NAV_IGNORE
;
1082 // Valid subframe navigation.
1083 return NAVIGATION_TYPE_NEW_SUBFRAME
;
1086 // We only clear the session history when navigating to a new page.
1087 DCHECK(!params
.history_list_was_cleared
);
1089 if (rfh
->GetParent()) {
1090 // All manual subframes would be did_create_new_entry and handled above, so
1091 // we know this is auto.
1092 if (GetLastCommittedEntry()) {
1093 return NAVIGATION_TYPE_AUTO_SUBFRAME
;
1095 // We ignore subframes created in non-committed pages; we'd appreciate if
1096 // people stopped doing that.
1097 return NAVIGATION_TYPE_NAV_IGNORE
;
1101 if (params
.nav_entry_id
== 0) {
1102 // This is a renderer-initiated navigation (nav_entry_id == 0), but didn't
1103 // create a new page.
1105 // Just like above in the did_create_new_entry case, it's possible to
1106 // scribble onto an uncommitted page. Again, there isn't any navigation
1107 // stuff that we can do, so ignore it here as well.
1108 NavigationEntry
* last_committed
= GetLastCommittedEntry();
1109 if (!last_committed
)
1110 return NAVIGATION_TYPE_NAV_IGNORE
;
1112 if (IsURLInPageNavigation(params
.url
, params
.was_within_same_page
, rfh
)) {
1113 // This is history.replaceState(), which is renderer-initiated yet within
1115 return NAVIGATION_TYPE_IN_PAGE
;
1117 // This is history.reload() or a client-side redirect.
1118 return NAVIGATION_TYPE_EXISTING_PAGE
;
1122 if (pending_entry_
&& pending_entry_index_
== -1 &&
1123 pending_entry_
->GetUniqueID() == params
.nav_entry_id
) {
1124 // In this case, we have a pending entry for a load of a new URL but Blink
1125 // didn't do a new navigation (params.did_create_new_entry). This happens
1126 // when you press enter in the URL bar to reload. We will create a pending
1127 // entry, but Blink will convert it to a reload since it's the same page and
1128 // not create a new entry for it (the user doesn't want to have a new
1129 // back/forward entry when they do this). Therefore we want to just ignore
1130 // the pending entry and go back to where we were (the "existing entry").
1131 return NAVIGATION_TYPE_SAME_PAGE
;
1134 if (params
.intended_as_new_entry
) {
1135 // This was intended to be a navigation to a new entry but the pending entry
1136 // got cleared in the meanwhile. Classify as EXISTING_PAGE because we may or
1137 // may not have a pending entry.
1138 return NAVIGATION_TYPE_EXISTING_PAGE
;
1141 if (params
.url_is_unreachable
&& failed_pending_entry_id_
!= 0 &&
1142 params
.nav_entry_id
== failed_pending_entry_id_
) {
1143 // If the renderer was going to a new pending entry that got cleared because
1144 // of an error, this is the case of the user trying to retry a failed load
1145 // by pressing return. Classify as EXISTING_PAGE because we probably don't
1146 // have a pending entry.
1147 return NAVIGATION_TYPE_EXISTING_PAGE
;
1150 // Now we know that the notification is for an existing page. Find that entry.
1151 int existing_entry_index
= GetEntryIndexWithUniqueID(params
.nav_entry_id
);
1152 if (existing_entry_index
== -1) {
1153 // The page was not found. It could have been pruned because of the limit on
1154 // back/forward entries (not likely since we'll usually tell it to navigate
1155 // to such entries). It could also mean that the renderer is smoking crack.
1156 // TODO(avi): Crash the renderer like we do in the old ClassifyNavigation?
1157 NOTREACHED() << "Could not find nav entry with id " << params
.nav_entry_id
;
1158 return NAVIGATION_TYPE_NAV_IGNORE
;
1161 // Any top-level navigations with the same base (minus the reference fragment)
1162 // are in-page navigations. (We weeded out subframe navigations above.) Most
1163 // of the time this doesn't matter since Blink doesn't tell us about subframe
1164 // navigations that don't actually navigate, but it can happen when there is
1165 // an encoding override (it always sends a navigation request).
1166 if (IsURLInPageNavigation(params
.url
, params
.was_within_same_page
, rfh
))
1167 return NAVIGATION_TYPE_IN_PAGE
;
1169 // Since we weeded out "new" navigations above, we know this is an existing
1170 // (back/forward) navigation.
1171 return NAVIGATION_TYPE_EXISTING_PAGE
;
1174 void NavigationControllerImpl::RendererDidNavigateToNewPage(
1175 RenderFrameHostImpl
* rfh
,
1176 const FrameHostMsg_DidCommitProvisionalLoad_Params
& params
,
1177 bool replace_entry
) {
1178 NavigationEntryImpl
* new_entry
;
1179 bool update_virtual_url
;
1180 // Only make a copy of the pending entry if it is appropriate for the new page
1181 // that was just loaded. We verify this at a coarse grain by checking that
1182 // the SiteInstance hasn't been assigned to something else.
1183 if (pending_entry_
&&
1184 (!pending_entry_
->site_instance() ||
1185 pending_entry_
->site_instance() == rfh
->GetSiteInstance())) {
1186 new_entry
= pending_entry_
->Clone();
1188 update_virtual_url
= new_entry
->update_virtual_url_with_url();
1190 new_entry
= new NavigationEntryImpl
;
1192 // Find out whether the new entry needs to update its virtual URL on URL
1193 // change and set up the entry accordingly. This is needed to correctly
1194 // update the virtual URL when replaceState is called after a pushState.
1195 GURL url
= params
.url
;
1196 bool needs_update
= false;
1197 BrowserURLHandlerImpl::GetInstance()->RewriteURLIfNecessary(
1198 &url
, browser_context_
, &needs_update
);
1199 new_entry
->set_update_virtual_url_with_url(needs_update
);
1201 // When navigating to a new page, give the browser URL handler a chance to
1202 // update the virtual URL based on the new URL. For example, this is needed
1203 // to show chrome://bookmarks/#1 when the bookmarks webui extension changes
1205 update_virtual_url
= needs_update
;
1208 // Don't use the page type from the pending entry. Some interstitial page
1209 // may have set the type to interstitial. Once we commit, however, the page
1210 // type must always be normal or error.
1211 new_entry
->set_page_type(params
.url_is_unreachable
? PAGE_TYPE_ERROR
1212 : PAGE_TYPE_NORMAL
);
1213 new_entry
->SetURL(params
.url
);
1214 if (update_virtual_url
)
1215 UpdateVirtualURLToURL(new_entry
, params
.url
);
1216 new_entry
->SetReferrer(params
.referrer
);
1217 new_entry
->SetPageID(params
.page_id
);
1218 new_entry
->SetTransitionType(params
.transition
);
1219 new_entry
->set_site_instance(
1220 static_cast<SiteInstanceImpl
*>(rfh
->GetSiteInstance()));
1221 new_entry
->SetHasPostData(params
.is_post
);
1222 new_entry
->SetPostID(params
.post_id
);
1223 new_entry
->SetOriginalRequestURL(params
.original_request_url
);
1224 new_entry
->SetIsOverridingUserAgent(params
.is_overriding_user_agent
);
1226 // history.pushState() is classified as a navigation to a new page, but
1227 // sets was_within_same_page to true. In this case, we already have the
1228 // title and favicon available, so set them immediately.
1229 if (params
.was_within_same_page
&& GetLastCommittedEntry()) {
1230 new_entry
->SetTitle(GetLastCommittedEntry()->GetTitle());
1231 new_entry
->GetFavicon() = GetLastCommittedEntry()->GetFavicon();
1234 DCHECK(!params
.history_list_was_cleared
|| !replace_entry
);
1235 // The browser requested to clear the session history when it initiated the
1236 // navigation. Now we know that the renderer has updated its state accordingly
1237 // and it is safe to also clear the browser side history.
1238 if (params
.history_list_was_cleared
) {
1239 DiscardNonCommittedEntriesInternal();
1241 last_committed_entry_index_
= -1;
1244 InsertOrReplaceEntry(new_entry
, replace_entry
);
1247 void NavigationControllerImpl::RendererDidNavigateToExistingPage(
1248 RenderFrameHostImpl
* rfh
,
1249 const FrameHostMsg_DidCommitProvisionalLoad_Params
& params
) {
1250 // We should only get here for main frame navigations.
1251 DCHECK(!rfh
->GetParent());
1253 // This is a back/forward navigation. The existing page for the ID is
1254 // guaranteed to exist by ClassifyNavigation, and we just need to update it
1255 // with new information from the renderer.
1256 int entry_index
= GetEntryIndexWithPageID(rfh
->GetSiteInstance(),
1258 DCHECK(entry_index
>= 0 &&
1259 entry_index
< static_cast<int>(entries_
.size()));
1260 NavigationEntryImpl
* entry
= entries_
[entry_index
].get();
1262 // The URL may have changed due to redirects.
1263 entry
->set_page_type(params
.url_is_unreachable
? PAGE_TYPE_ERROR
1264 : PAGE_TYPE_NORMAL
);
1265 entry
->SetURL(params
.url
);
1266 entry
->SetReferrer(params
.referrer
);
1267 if (entry
->update_virtual_url_with_url())
1268 UpdateVirtualURLToURL(entry
, params
.url
);
1270 // The redirected to page should not inherit the favicon from the previous
1272 if (ui::PageTransitionIsRedirect(params
.transition
))
1273 entry
->GetFavicon() = FaviconStatus();
1275 // The site instance will normally be the same except during session restore,
1276 // when no site instance will be assigned.
1277 DCHECK(entry
->site_instance() == NULL
||
1278 entry
->site_instance() == rfh
->GetSiteInstance());
1279 entry
->set_site_instance(
1280 static_cast<SiteInstanceImpl
*>(rfh
->GetSiteInstance()));
1282 entry
->SetHasPostData(params
.is_post
);
1283 entry
->SetPostID(params
.post_id
);
1285 // The entry we found in the list might be pending if the user hit
1286 // back/forward/reload. This load should commit it (since it's already in the
1287 // list, we can just discard the pending pointer). We should also discard the
1288 // pending entry if it corresponds to a different navigation, since that one
1289 // is now likely canceled. If it is not canceled, we will treat it as a new
1290 // navigation when it arrives, which is also ok.
1292 // Note that we need to use the "internal" version since we don't want to
1293 // actually change any other state, just kill the pointer.
1294 DiscardNonCommittedEntriesInternal();
1296 // If a transient entry was removed, the indices might have changed, so we
1297 // have to query the entry index again.
1298 last_committed_entry_index_
=
1299 GetEntryIndexWithPageID(rfh
->GetSiteInstance(), params
.page_id
);
1302 void NavigationControllerImpl::RendererDidNavigateToSamePage(
1303 RenderFrameHostImpl
* rfh
,
1304 const FrameHostMsg_DidCommitProvisionalLoad_Params
& params
) {
1305 // This mode implies we have a pending entry that's the same as an existing
1306 // entry for this page ID. This entry is guaranteed to exist by
1307 // ClassifyNavigation. All we need to do is update the existing entry.
1308 NavigationEntryImpl
* existing_entry
= GetEntryWithPageID(
1309 rfh
->GetSiteInstance(), params
.page_id
);
1311 // We assign the entry's unique ID to be that of the new one. Since this is
1312 // always the result of a user action, we want to dismiss infobars, etc. like
1313 // a regular user-initiated navigation.
1314 existing_entry
->set_unique_id(pending_entry_
->GetUniqueID());
1316 // The URL may have changed due to redirects.
1317 existing_entry
->set_page_type(params
.url_is_unreachable
? PAGE_TYPE_ERROR
1318 : PAGE_TYPE_NORMAL
);
1319 if (existing_entry
->update_virtual_url_with_url())
1320 UpdateVirtualURLToURL(existing_entry
, params
.url
);
1321 existing_entry
->SetURL(params
.url
);
1322 existing_entry
->SetReferrer(params
.referrer
);
1324 // The page may have been requested with a different HTTP method.
1325 existing_entry
->SetHasPostData(params
.is_post
);
1326 existing_entry
->SetPostID(params
.post_id
);
1328 DiscardNonCommittedEntries();
1331 void NavigationControllerImpl::RendererDidNavigateInPage(
1332 RenderFrameHostImpl
* rfh
,
1333 const FrameHostMsg_DidCommitProvisionalLoad_Params
& params
,
1334 bool* did_replace_entry
) {
1335 DCHECK(!rfh
->GetParent()) <<
1336 "Blink should only tell us about in-page navs for the main frame.";
1337 // We're guaranteed to have an entry for this one.
1338 NavigationEntryImpl
* existing_entry
= GetEntryWithPageID(
1339 rfh
->GetSiteInstance(), params
.page_id
);
1341 // Reference fragment navigation. We're guaranteed to have the last_committed
1342 // entry and it will be the same page as the new navigation (minus the
1343 // reference fragments, of course). We'll update the URL of the existing
1344 // entry without pruning the forward history.
1345 existing_entry
->set_page_type(params
.url_is_unreachable
? PAGE_TYPE_ERROR
1346 : PAGE_TYPE_NORMAL
);
1347 existing_entry
->SetURL(params
.url
);
1348 if (existing_entry
->update_virtual_url_with_url())
1349 UpdateVirtualURLToURL(existing_entry
, params
.url
);
1351 existing_entry
->SetHasPostData(params
.is_post
);
1352 existing_entry
->SetPostID(params
.post_id
);
1354 // This replaces the existing entry since the page ID didn't change.
1355 *did_replace_entry
= true;
1357 DiscardNonCommittedEntriesInternal();
1359 // If a transient entry was removed, the indices might have changed, so we
1360 // have to query the entry index again.
1361 last_committed_entry_index_
=
1362 GetEntryIndexWithPageID(rfh
->GetSiteInstance(), params
.page_id
);
1365 void NavigationControllerImpl::RendererDidNavigateNewSubframe(
1366 RenderFrameHostImpl
* rfh
,
1367 const FrameHostMsg_DidCommitProvisionalLoad_Params
& params
) {
1368 if (!ui::PageTransitionCoreTypeIs(params
.transition
,
1369 ui::PAGE_TRANSITION_MANUAL_SUBFRAME
)) {
1370 // There was a comment here that said, "This is not user-initiated. Ignore."
1371 // But this makes no sense; non-user-initiated navigations should be
1372 // determined to be of type NAVIGATION_TYPE_AUTO_SUBFRAME and sent to
1373 // RendererDidNavigateAutoSubframe below.
1375 // This if clause dates back to https://codereview.chromium.org/115919 and
1376 // the handling of immediate redirects. TODO(avi): Is this still valid? I'm
1377 // pretty sure that's there's nothing left of that code and that we should
1380 // Except for cross-process iframes; this doesn't work yet for them.
1381 if (!base::CommandLine::ForCurrentProcess()->HasSwitch(
1382 switches::kSitePerProcess
)) {
1386 DiscardNonCommittedEntriesInternal();
1390 // Manual subframe navigations just get the current entry cloned so the user
1391 // can go back or forward to it. The actual subframe information will be
1392 // stored in the page state for each of those entries. This happens out of
1393 // band with the actual navigations.
1394 DCHECK(GetLastCommittedEntry()) << "ClassifyNavigation should guarantee "
1395 << "that a last committed entry exists.";
1396 NavigationEntryImpl
* new_entry
= GetLastCommittedEntry()->Clone();
1397 new_entry
->SetPageID(params
.page_id
);
1398 InsertOrReplaceEntry(new_entry
, false);
1401 bool NavigationControllerImpl::RendererDidNavigateAutoSubframe(
1402 RenderFrameHostImpl
* rfh
,
1403 const FrameHostMsg_DidCommitProvisionalLoad_Params
& params
) {
1404 DCHECK(ui::PageTransitionCoreTypeIs(params
.transition
,
1405 ui::PAGE_TRANSITION_AUTO_SUBFRAME
));
1407 // We're guaranteed to have a previously committed entry, and we now need to
1408 // handle navigation inside of a subframe in it without creating a new entry.
1409 DCHECK(GetLastCommittedEntry());
1411 if (params
.nav_entry_id
) {
1412 int entry_index
= GetEntryIndexWithUniqueID(params
.nav_entry_id
);
1414 // If the |nav_entry_id| is non-zero and matches an existing entry, this is
1415 // a history auto" navigation. Update the last committed index accordingly.
1416 // If we don't recognize the |nav_entry_id|, it might be either a pending
1417 // entry for a transfer or a recently pruned entry. We'll handle it below.
1418 if (entry_index
!= -1 && entry_index
!= last_committed_entry_index_
) {
1419 // Make sure that a subframe commit isn't changing the main frame's
1420 // origin. Otherwise the renderer process may be confused, leading to a
1421 // URL spoof. We can't check the path since that may change
1422 // (https://crbug.com/373041).
1423 if (GetLastCommittedEntry()->GetURL().GetOrigin() !=
1424 GetEntryAtIndex(entry_index
)->GetURL().GetOrigin()) {
1425 // TODO(creis): This is unexpectedly being encountered in practice. If
1426 // you encounter this in practice, please post details to
1427 // https://crbug.com/486916. Once that's resolved, we'll change this to
1428 // kill the renderer process with bad_message::NC_AUTO_SUBFRAME.
1429 NOTREACHED() << "Unexpected main frame origin change on AUTO_SUBFRAME.";
1432 // TODO(creis): Update the FrameNavigationEntry in --site-per-process.
1433 last_committed_entry_index_
= entry_index
;
1434 DiscardNonCommittedEntriesInternal();
1439 if (base::CommandLine::ForCurrentProcess()->HasSwitch(
1440 switches::kSitePerProcess
)) {
1441 // This may be a "new auto" case where we add a new FrameNavigationEntry, or
1442 // it may be a "history auto" case where we update an existing one.
1443 NavigationEntryImpl
* last_committed
= GetLastCommittedEntry();
1444 last_committed
->AddOrUpdateFrameEntry(rfh
->frame_tree_node(),
1445 rfh
->GetSiteInstance(), params
.url
,
1446 params
.referrer
, params
.page_state
);
1448 // Cross-process subframe navigations may leave a pending entry around.
1449 // Clear it if it's actually for the subframe.
1450 // TODO(creis): Don't use pending entries for subframe navigations.
1451 // See https://crbug.com/495161.
1452 if (pending_entry_
&&
1453 pending_entry_
->frame_tree_node_id() ==
1454 rfh
->frame_tree_node()->frame_tree_node_id()) {
1455 DiscardPendingEntry(false);
1459 // We do not need to discard the pending entry in this case, since we will
1460 // not generate commit notifications for this auto-subframe navigation.
1464 int NavigationControllerImpl::GetIndexOfEntry(
1465 const NavigationEntryImpl
* entry
) const {
1466 const NavigationEntries::const_iterator
i(std::find(
1470 return (i
== entries_
.end()) ? -1 : static_cast<int>(i
- entries_
.begin());
1473 // There are two general cases where a navigation is "in page":
1474 // 1. A fragment navigation, in which the url is kept the same except for the
1475 // reference fragment.
1476 // 2. A history API navigation (pushState and replaceState). This case is
1477 // always in-page, but the urls are not guaranteed to match excluding the
1478 // fragment. The relevant spec allows pushState/replaceState to any URL on
1480 // However, due to reloads, even identical urls are *not* guaranteed to be
1481 // in-page navigations, we have to trust the renderer almost entirely.
1482 // The one thing we do know is that cross-origin navigations will *never* be
1483 // in-page. Therefore, trust the renderer if the URLs are on the same origin,
1484 // and assume the renderer is malicious if a cross-origin navigation claims to
1486 bool NavigationControllerImpl::IsURLInPageNavigation(
1488 bool renderer_says_in_page
,
1489 RenderFrameHost
* rfh
) const {
1490 GURL last_committed_url
;
1491 if (rfh
->GetParent()) {
1492 last_committed_url
= rfh
->GetLastCommittedURL();
1494 NavigationEntry
* last_committed
= GetLastCommittedEntry();
1495 // There must be a last-committed entry to compare URLs to. TODO(avi): When
1496 // might Blink say that a navigation is in-page yet there be no last-
1498 if (!last_committed
)
1500 last_committed_url
= last_committed
->GetURL();
1503 WebPreferences prefs
= rfh
->GetRenderViewHost()->GetWebkitPreferences();
1504 bool is_same_origin
= last_committed_url
.is_empty() ||
1505 // TODO(japhet): We should only permit navigations
1506 // originating from about:blank to be in-page if the
1507 // about:blank is the first document that frame loaded.
1508 // We don't have sufficient information to identify
1509 // that case at the moment, so always allow about:blank
1511 last_committed_url
== GURL(url::kAboutBlankURL
) ||
1512 last_committed_url
.GetOrigin() == url
.GetOrigin() ||
1513 !prefs
.web_security_enabled
||
1514 (prefs
.allow_universal_access_from_file_urls
&&
1515 last_committed_url
.SchemeIs(url::kFileScheme
));
1516 if (!is_same_origin
&& renderer_says_in_page
) {
1517 bad_message::ReceivedBadMessage(rfh
->GetProcess(),
1518 bad_message::NC_IN_PAGE_NAVIGATION
);
1520 return is_same_origin
&& renderer_says_in_page
;
1523 void NavigationControllerImpl::CopyStateFrom(
1524 const NavigationController
& temp
) {
1525 const NavigationControllerImpl
& source
=
1526 static_cast<const NavigationControllerImpl
&>(temp
);
1527 // Verify that we look new.
1528 DCHECK(GetEntryCount() == 0 && !GetPendingEntry());
1530 if (source
.GetEntryCount() == 0)
1531 return; // Nothing new to do.
1533 needs_reload_
= true;
1534 InsertEntriesFrom(source
, source
.GetEntryCount());
1536 for (SessionStorageNamespaceMap::const_iterator it
=
1537 source
.session_storage_namespace_map_
.begin();
1538 it
!= source
.session_storage_namespace_map_
.end();
1540 SessionStorageNamespaceImpl
* source_namespace
=
1541 static_cast<SessionStorageNamespaceImpl
*>(it
->second
.get());
1542 session_storage_namespace_map_
[it
->first
] = source_namespace
->Clone();
1545 FinishRestore(source
.last_committed_entry_index_
, RESTORE_CURRENT_SESSION
);
1547 // Copy the max page id map from the old tab to the new tab. This ensures
1548 // that new and existing navigations in the tab's current SiteInstances
1549 // are identified properly.
1550 delegate_
->CopyMaxPageIDsFrom(source
.delegate()->GetWebContents());
1553 void NavigationControllerImpl::CopyStateFromAndPrune(
1554 NavigationController
* temp
,
1555 bool replace_entry
) {
1556 // It is up to callers to check the invariants before calling this.
1557 CHECK(CanPruneAllButLastCommitted());
1559 NavigationControllerImpl
* source
=
1560 static_cast<NavigationControllerImpl
*>(temp
);
1562 // Remove all the entries leaving the last committed entry.
1563 PruneAllButLastCommittedInternal();
1565 // We now have one entry, possibly with a new pending entry. Ensure that
1566 // adding the entries from source won't put us over the limit.
1567 DCHECK_EQ(1, GetEntryCount());
1569 source
->PruneOldestEntryIfFull();
1571 // Insert the entries from source. Don't use source->GetCurrentEntryIndex as
1572 // we don't want to copy over the transient entry. Ignore any pending entry,
1573 // since it has not committed in source.
1574 int max_source_index
= source
->last_committed_entry_index_
;
1575 if (max_source_index
== -1)
1576 max_source_index
= source
->GetEntryCount();
1580 // Ignore the source's current entry if merging with replacement.
1581 // TODO(davidben): This should preserve entries forward of the current
1582 // too. http://crbug.com/317872
1583 if (replace_entry
&& max_source_index
> 0)
1586 InsertEntriesFrom(*source
, max_source_index
);
1588 // Adjust indices such that the last entry and pending are at the end now.
1589 last_committed_entry_index_
= GetEntryCount() - 1;
1591 delegate_
->SetHistoryOffsetAndLength(last_committed_entry_index_
,
1594 // Copy the max page id map from the old tab to the new tab. This ensures that
1595 // new and existing navigations in the tab's current SiteInstances are
1596 // identified properly.
1597 NavigationEntryImpl
* last_committed
= GetLastCommittedEntry();
1598 int32 site_max_page_id
=
1599 delegate_
->GetMaxPageIDForSiteInstance(last_committed
->site_instance());
1600 delegate_
->CopyMaxPageIDsFrom(source
->delegate()->GetWebContents());
1601 delegate_
->UpdateMaxPageIDForSiteInstance(last_committed
->site_instance(),
1603 max_restored_page_id_
= source
->max_restored_page_id_
;
1606 bool NavigationControllerImpl::CanPruneAllButLastCommitted() {
1607 // If there is no last committed entry, we cannot prune. Even if there is a
1608 // pending entry, it may not commit, leaving this WebContents blank, despite
1609 // possibly giving it new entries via CopyStateFromAndPrune.
1610 if (last_committed_entry_index_
== -1)
1613 // We cannot prune if there is a pending entry at an existing entry index.
1614 // It may not commit, so we have to keep the last committed entry, and thus
1615 // there is no sensible place to keep the pending entry. It is ok to have
1616 // a new pending entry, which can optionally commit as a new navigation.
1617 if (pending_entry_index_
!= -1)
1620 // We should not prune if we are currently showing a transient entry.
1621 if (transient_entry_index_
!= -1)
1627 void NavigationControllerImpl::PruneAllButLastCommitted() {
1628 PruneAllButLastCommittedInternal();
1630 DCHECK_EQ(0, last_committed_entry_index_
);
1631 DCHECK_EQ(1, GetEntryCount());
1633 delegate_
->SetHistoryOffsetAndLength(last_committed_entry_index_
,
1637 void NavigationControllerImpl::PruneAllButLastCommittedInternal() {
1638 // It is up to callers to check the invariants before calling this.
1639 CHECK(CanPruneAllButLastCommitted());
1641 // Erase all entries but the last committed entry. There may still be a
1642 // new pending entry after this.
1643 entries_
.erase(entries_
.begin(),
1644 entries_
.begin() + last_committed_entry_index_
);
1645 entries_
.erase(entries_
.begin() + 1, entries_
.end());
1646 last_committed_entry_index_
= 0;
1649 void NavigationControllerImpl::ClearAllScreenshots() {
1650 screenshot_manager_
->ClearAllScreenshots();
1653 void NavigationControllerImpl::SetSessionStorageNamespace(
1654 const std::string
& partition_id
,
1655 SessionStorageNamespace
* session_storage_namespace
) {
1656 if (!session_storage_namespace
)
1659 // We can't overwrite an existing SessionStorage without violating spec.
1660 // Attempts to do so may give a tab access to another tab's session storage
1661 // so die hard on an error.
1662 bool successful_insert
= session_storage_namespace_map_
.insert(
1663 make_pair(partition_id
,
1664 static_cast<SessionStorageNamespaceImpl
*>(
1665 session_storage_namespace
)))
1667 CHECK(successful_insert
) << "Cannot replace existing SessionStorageNamespace";
1670 void NavigationControllerImpl::SetMaxRestoredPageID(int32 max_id
) {
1671 max_restored_page_id_
= max_id
;
1674 int32
NavigationControllerImpl::GetMaxRestoredPageID() const {
1675 return max_restored_page_id_
;
1678 bool NavigationControllerImpl::IsUnmodifiedBlankTab() const {
1679 return IsInitialNavigation() &&
1680 !GetLastCommittedEntry() &&
1681 !delegate_
->HasAccessedInitialDocument();
1684 SessionStorageNamespace
*
1685 NavigationControllerImpl::GetSessionStorageNamespace(SiteInstance
* instance
) {
1686 std::string partition_id
;
1688 // TODO(ajwong): When GetDefaultSessionStorageNamespace() goes away, remove
1689 // this if statement so |instance| must not be NULL.
1691 GetContentClient()->browser()->GetStoragePartitionIdForSite(
1692 browser_context_
, instance
->GetSiteURL());
1695 SessionStorageNamespaceMap::const_iterator it
=
1696 session_storage_namespace_map_
.find(partition_id
);
1697 if (it
!= session_storage_namespace_map_
.end())
1698 return it
->second
.get();
1700 // Create one if no one has accessed session storage for this partition yet.
1702 // TODO(ajwong): Should this use the |partition_id| directly rather than
1703 // re-lookup via |instance|? http://crbug.com/142685
1704 StoragePartition
* partition
=
1705 BrowserContext::GetStoragePartition(browser_context_
, instance
);
1706 SessionStorageNamespaceImpl
* session_storage_namespace
=
1707 new SessionStorageNamespaceImpl(
1708 static_cast<DOMStorageContextWrapper
*>(
1709 partition
->GetDOMStorageContext()));
1710 session_storage_namespace_map_
[partition_id
] = session_storage_namespace
;
1712 return session_storage_namespace
;
1715 SessionStorageNamespace
*
1716 NavigationControllerImpl::GetDefaultSessionStorageNamespace() {
1717 // TODO(ajwong): Remove if statement in GetSessionStorageNamespace().
1718 return GetSessionStorageNamespace(NULL
);
1721 const SessionStorageNamespaceMap
&
1722 NavigationControllerImpl::GetSessionStorageNamespaceMap() const {
1723 return session_storage_namespace_map_
;
1726 bool NavigationControllerImpl::NeedsReload() const {
1727 return needs_reload_
;
1730 void NavigationControllerImpl::SetNeedsReload() {
1731 needs_reload_
= true;
1733 if (last_committed_entry_index_
!= -1) {
1734 entries_
[last_committed_entry_index_
]->SetTransitionType(
1735 ui::PAGE_TRANSITION_RELOAD
);
1739 void NavigationControllerImpl::RemoveEntryAtIndexInternal(int index
) {
1740 DCHECK(index
< GetEntryCount());
1741 DCHECK(index
!= last_committed_entry_index_
);
1743 DiscardNonCommittedEntries();
1745 entries_
.erase(entries_
.begin() + index
);
1746 if (last_committed_entry_index_
> index
)
1747 last_committed_entry_index_
--;
1750 void NavigationControllerImpl::DiscardNonCommittedEntries() {
1751 bool transient
= transient_entry_index_
!= -1;
1752 DiscardNonCommittedEntriesInternal();
1754 // If there was a transient entry, invalidate everything so the new active
1755 // entry state is shown.
1757 delegate_
->NotifyNavigationStateChanged(INVALIDATE_TYPE_ALL
);
1761 NavigationEntryImpl
* NavigationControllerImpl::GetPendingEntry() const {
1762 return pending_entry_
;
1765 int NavigationControllerImpl::GetPendingEntryIndex() const {
1766 return pending_entry_index_
;
1769 void NavigationControllerImpl::InsertOrReplaceEntry(NavigationEntryImpl
* entry
,
1771 DCHECK(entry
->GetTransitionType() != ui::PAGE_TRANSITION_AUTO_SUBFRAME
);
1773 // Copy the pending entry's unique ID to the committed entry.
1774 // I don't know if pending_entry_index_ can be other than -1 here.
1775 const NavigationEntryImpl
* const pending_entry
=
1776 (pending_entry_index_
== -1) ?
1777 pending_entry_
: entries_
[pending_entry_index_
].get();
1779 entry
->set_unique_id(pending_entry
->GetUniqueID());
1781 DiscardNonCommittedEntriesInternal();
1783 int current_size
= static_cast<int>(entries_
.size());
1784 DCHECK_IMPLIES(replace
, current_size
> 0);
1786 if (current_size
> 0) {
1787 // Prune any entries which are in front of the current entry.
1788 // Also prune the current entry if we are to replace the current entry.
1789 // last_committed_entry_index_ must be updated here since calls to
1790 // NotifyPrunedEntries() below may re-enter and we must make sure
1791 // last_committed_entry_index_ is not left in an invalid state.
1793 --last_committed_entry_index_
;
1796 while (last_committed_entry_index_
< (current_size
- 1)) {
1798 entries_
.pop_back();
1801 if (num_pruned
> 0) // Only notify if we did prune something.
1802 NotifyPrunedEntries(this, false, num_pruned
);
1805 PruneOldestEntryIfFull();
1807 entries_
.push_back(linked_ptr
<NavigationEntryImpl
>(entry
));
1808 last_committed_entry_index_
= static_cast<int>(entries_
.size()) - 1;
1810 // This is a new page ID, so we need everybody to know about it.
1811 delegate_
->UpdateMaxPageID(entry
->GetPageID());
1814 void NavigationControllerImpl::PruneOldestEntryIfFull() {
1815 if (entries_
.size() >= max_entry_count()) {
1816 DCHECK_EQ(max_entry_count(), entries_
.size());
1817 DCHECK_GT(last_committed_entry_index_
, 0);
1818 RemoveEntryAtIndex(0);
1819 NotifyPrunedEntries(this, true, 1);
1823 void NavigationControllerImpl::NavigateToPendingEntry(ReloadType reload_type
) {
1824 needs_reload_
= false;
1826 // If we were navigating to a slow-to-commit page, and the user performs
1827 // a session history navigation to the last committed page, RenderViewHost
1828 // will force the throbber to start, but WebKit will essentially ignore the
1829 // navigation, and won't send a message to stop the throbber. To prevent this
1830 // from happening, we drop the navigation here and stop the slow-to-commit
1831 // page from loading (which would normally happen during the navigation).
1832 if (pending_entry_index_
!= -1 &&
1833 pending_entry_index_
== last_committed_entry_index_
&&
1834 (entries_
[pending_entry_index_
]->restore_type() ==
1835 NavigationEntryImpl::RESTORE_NONE
) &&
1836 (entries_
[pending_entry_index_
]->GetTransitionType() &
1837 ui::PAGE_TRANSITION_FORWARD_BACK
)) {
1840 // If an interstitial page is showing, we want to close it to get back
1841 // to what was showing before.
1842 if (delegate_
->GetInterstitialPage())
1843 delegate_
->GetInterstitialPage()->DontProceed();
1845 DiscardNonCommittedEntries();
1849 // If an interstitial page is showing, the previous renderer is blocked and
1850 // cannot make new requests. Unblock (and disable) it to allow this
1851 // navigation to succeed. The interstitial will stay visible until the
1852 // resulting DidNavigate.
1853 if (delegate_
->GetInterstitialPage()) {
1854 static_cast<InterstitialPageImpl
*>(delegate_
->GetInterstitialPage())->
1855 CancelForNavigation();
1858 // For session history navigations only the pending_entry_index_ is set.
1859 if (!pending_entry_
) {
1860 DCHECK_NE(pending_entry_index_
, -1);
1861 pending_entry_
= entries_
[pending_entry_index_
].get();
1864 // This call does not support re-entrancy. See http://crbug.com/347742.
1865 CHECK(!in_navigate_to_pending_entry_
);
1866 in_navigate_to_pending_entry_
= true;
1867 bool success
= delegate_
->NavigateToPendingEntry(reload_type
);
1868 in_navigate_to_pending_entry_
= false;
1871 DiscardNonCommittedEntries();
1873 // If the entry is being restored and doesn't have a SiteInstance yet, fill
1874 // it in now that we know. This allows us to find the entry when it commits.
1875 if (pending_entry_
&& !pending_entry_
->site_instance() &&
1876 pending_entry_
->restore_type() != NavigationEntryImpl::RESTORE_NONE
) {
1877 pending_entry_
->set_site_instance(static_cast<SiteInstanceImpl
*>(
1878 delegate_
->GetPendingSiteInstance()));
1879 pending_entry_
->set_restore_type(NavigationEntryImpl::RESTORE_NONE
);
1883 void NavigationControllerImpl::NotifyNavigationEntryCommitted(
1884 LoadCommittedDetails
* details
) {
1885 details
->entry
= GetLastCommittedEntry();
1887 // We need to notify the ssl_manager_ before the web_contents_ so the
1888 // location bar will have up-to-date information about the security style
1889 // when it wants to draw. See http://crbug.com/11157
1890 ssl_manager_
.DidCommitProvisionalLoad(*details
);
1892 delegate_
->NotifyNavigationStateChanged(INVALIDATE_TYPE_ALL
);
1893 delegate_
->NotifyNavigationEntryCommitted(*details
);
1895 // TODO(avi): Remove. http://crbug.com/170921
1896 NotificationDetails notification_details
=
1897 Details
<LoadCommittedDetails
>(details
);
1898 NotificationService::current()->Notify(
1899 NOTIFICATION_NAV_ENTRY_COMMITTED
,
1900 Source
<NavigationController
>(this),
1901 notification_details
);
1905 size_t NavigationControllerImpl::max_entry_count() {
1906 if (max_entry_count_for_testing_
!= kMaxEntryCountForTestingNotSet
)
1907 return max_entry_count_for_testing_
;
1908 return kMaxSessionHistoryEntries
;
1911 void NavigationControllerImpl::SetActive(bool is_active
) {
1912 if (is_active
&& needs_reload_
)
1916 void NavigationControllerImpl::LoadIfNecessary() {
1920 // Calling Reload() results in ignoring state, and not loading.
1921 // Explicitly use NavigateToPendingEntry so that the renderer uses the
1923 pending_entry_index_
= last_committed_entry_index_
;
1924 NavigateToPendingEntry(NO_RELOAD
);
1927 void NavigationControllerImpl::NotifyEntryChanged(
1928 const NavigationEntry
* entry
) {
1929 EntryChangedDetails det
;
1930 det
.changed_entry
= entry
;
1931 det
.index
= GetIndexOfEntry(
1932 NavigationEntryImpl::FromNavigationEntry(entry
));
1933 NotificationService::current()->Notify(
1934 NOTIFICATION_NAV_ENTRY_CHANGED
,
1935 Source
<NavigationController
>(this),
1936 Details
<EntryChangedDetails
>(&det
));
1939 void NavigationControllerImpl::FinishRestore(int selected_index
,
1941 DCHECK(selected_index
>= 0 && selected_index
< GetEntryCount());
1942 ConfigureEntriesForRestore(&entries_
, type
);
1944 SetMaxRestoredPageID(static_cast<int32
>(GetEntryCount()));
1946 last_committed_entry_index_
= selected_index
;
1949 void NavigationControllerImpl::DiscardNonCommittedEntriesInternal() {
1950 DiscardPendingEntry(false);
1951 DiscardTransientEntry();
1954 void NavigationControllerImpl::DiscardPendingEntry(bool was_failure
) {
1955 // It is not safe to call DiscardPendingEntry while NavigateToEntry is in
1956 // progress, since this will cause a use-after-free. (We only allow this
1957 // when the tab is being destroyed for shutdown, since it won't return to
1958 // NavigateToEntry in that case.) http://crbug.com/347742.
1959 CHECK(!in_navigate_to_pending_entry_
|| delegate_
->IsBeingDestroyed());
1961 if (was_failure
&& pending_entry_
) {
1962 failed_pending_entry_id_
= pending_entry_
->GetUniqueID();
1963 failed_pending_entry_should_replace_
=
1964 pending_entry_
->should_replace_entry();
1966 failed_pending_entry_id_
= 0;
1969 if (pending_entry_index_
== -1)
1970 delete pending_entry_
;
1971 pending_entry_
= NULL
;
1972 pending_entry_index_
= -1;
1975 void NavigationControllerImpl::DiscardTransientEntry() {
1976 if (transient_entry_index_
== -1)
1978 entries_
.erase(entries_
.begin() + transient_entry_index_
);
1979 if (last_committed_entry_index_
> transient_entry_index_
)
1980 last_committed_entry_index_
--;
1981 transient_entry_index_
= -1;
1984 int NavigationControllerImpl::GetEntryIndexWithPageID(
1985 SiteInstance
* instance
, int32 page_id
) const {
1986 for (int i
= static_cast<int>(entries_
.size()) - 1; i
>= 0; --i
) {
1987 if ((entries_
[i
]->site_instance() == instance
) &&
1988 (entries_
[i
]->GetPageID() == page_id
))
1994 int NavigationControllerImpl::GetEntryIndexWithUniqueID(
1995 int nav_entry_id
) const {
1996 for (int i
= static_cast<int>(entries_
.size()) - 1; i
>= 0; --i
) {
1997 if (entries_
[i
]->GetUniqueID() == nav_entry_id
)
2003 NavigationEntryImpl
* NavigationControllerImpl::GetTransientEntry() const {
2004 if (transient_entry_index_
== -1)
2006 return entries_
[transient_entry_index_
].get();
2009 void NavigationControllerImpl::SetTransientEntry(NavigationEntry
* entry
) {
2010 // Discard any current transient entry, we can only have one at a time.
2012 if (last_committed_entry_index_
!= -1)
2013 index
= last_committed_entry_index_
+ 1;
2014 DiscardTransientEntry();
2016 entries_
.begin() + index
, linked_ptr
<NavigationEntryImpl
>(
2017 NavigationEntryImpl::FromNavigationEntry(entry
)));
2018 transient_entry_index_
= index
;
2019 delegate_
->NotifyNavigationStateChanged(INVALIDATE_TYPE_ALL
);
2022 void NavigationControllerImpl::InsertEntriesFrom(
2023 const NavigationControllerImpl
& source
,
2025 DCHECK_LE(max_index
, source
.GetEntryCount());
2026 size_t insert_index
= 0;
2027 for (int i
= 0; i
< max_index
; i
++) {
2028 // When cloning a tab, copy all entries except interstitial pages.
2029 if (source
.entries_
[i
].get()->GetPageType() != PAGE_TYPE_INTERSTITIAL
) {
2030 // TODO(creis): Once we start sharing FrameNavigationEntries between
2031 // NavigationEntries, it will not be safe to share them with another tab.
2032 // Must have a version of Clone that recreates them.
2033 entries_
.insert(entries_
.begin() + insert_index
++,
2034 linked_ptr
<NavigationEntryImpl
>(
2035 source
.entries_
[i
]->Clone()));
2040 void NavigationControllerImpl::SetGetTimestampCallbackForTest(
2041 const base::Callback
<base::Time()>& get_timestamp_callback
) {
2042 get_timestamp_callback_
= get_timestamp_callback
;
2045 } // namespace content