1 // Copyright (c) 2012 The Chromium Authors. All rights reserved.
2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file.
5 #include "components/nacl/browser/nacl_broker_host_win.h"
7 #include "base/base_switches.h"
8 #include "base/command_line.h"
9 #include "components/nacl/browser/nacl_broker_service_win.h"
10 #include "components/nacl/browser/nacl_browser.h"
11 #include "components/nacl/common/nacl_cmd_line.h"
12 #include "components/nacl/common/nacl_messages.h"
13 #include "components/nacl/common/nacl_process_type.h"
14 #include "components/nacl/common/nacl_switches.h"
15 #include "content/public/browser/browser_child_process_host.h"
16 #include "content/public/browser/child_process_data.h"
17 #include "content/public/common/child_process_host.h"
18 #include "content/public/common/content_switches.h"
19 #include "content/public/common/sandboxed_process_launcher_delegate.h"
20 #include "ipc/ipc_switches.h"
23 // NOTE: changes to this class need to be reviewed by the security team.
24 class NaClBrokerSandboxedProcessLauncherDelegate
25 : public content::SandboxedProcessLauncherDelegate
{
27 NaClBrokerSandboxedProcessLauncherDelegate() {}
28 virtual ~NaClBrokerSandboxedProcessLauncherDelegate() {}
30 virtual bool ShouldSandbox() override
{
35 DISALLOW_COPY_AND_ASSIGN(NaClBrokerSandboxedProcessLauncherDelegate
);
41 NaClBrokerHost::NaClBrokerHost() : is_terminating_(false) {
42 process_
.reset(content::BrowserChildProcessHost::Create(
43 PROCESS_TYPE_NACL_BROKER
, this));
46 NaClBrokerHost::~NaClBrokerHost() {
49 bool NaClBrokerHost::Init() {
50 // Create the channel that will be used for communicating with the broker.
51 std::string channel_id
= process_
->GetHost()->CreateChannel();
52 if (channel_id
.empty())
55 // Create the path to the nacl broker/loader executable.
56 base::FilePath nacl_path
;
57 if (!NaClBrowser::GetInstance()->GetNaCl64ExePath(&nacl_path
))
60 base::CommandLine
* cmd_line
= new base::CommandLine(nacl_path
);
61 CopyNaClCommandLineArguments(cmd_line
);
63 cmd_line
->AppendSwitchASCII(switches::kProcessType
,
64 switches::kNaClBrokerProcess
);
65 cmd_line
->AppendSwitchASCII(switches::kProcessChannelID
, channel_id
);
66 if (NaClBrowser::GetDelegate()->DialogsAreSuppressed())
67 cmd_line
->AppendSwitch(switches::kNoErrorDialogs
);
69 process_
->Launch(new NaClBrokerSandboxedProcessLauncherDelegate
,
74 bool NaClBrokerHost::OnMessageReceived(const IPC::Message
& msg
) {
76 IPC_BEGIN_MESSAGE_MAP(NaClBrokerHost
, msg
)
77 IPC_MESSAGE_HANDLER(NaClProcessMsg_LoaderLaunched
, OnLoaderLaunched
)
78 IPC_MESSAGE_HANDLER(NaClProcessMsg_DebugExceptionHandlerLaunched
,
79 OnDebugExceptionHandlerLaunched
)
80 IPC_MESSAGE_UNHANDLED(handled
= false)
85 bool NaClBrokerHost::LaunchLoader(const std::string
& loader_channel_id
) {
86 return process_
->Send(
87 new NaClProcessMsg_LaunchLoaderThroughBroker(loader_channel_id
));
90 void NaClBrokerHost::OnLoaderLaunched(const std::string
& loader_channel_id
,
91 base::ProcessHandle handle
) {
92 NaClBrokerService::GetInstance()->OnLoaderLaunched(loader_channel_id
, handle
);
95 bool NaClBrokerHost::LaunchDebugExceptionHandler(
96 int32 pid
, base::ProcessHandle process_handle
,
97 const std::string
& startup_info
) {
98 base::ProcessHandle broker_process
= process_
->GetData().handle
;
99 base::ProcessHandle handle_in_broker_process
;
100 if (!DuplicateHandle(::GetCurrentProcess(), process_handle
,
101 broker_process
, &handle_in_broker_process
,
102 0, /* bInheritHandle= */ FALSE
, DUPLICATE_SAME_ACCESS
))
104 return process_
->Send(new NaClProcessMsg_LaunchDebugExceptionHandler(
105 pid
, handle_in_broker_process
, startup_info
));
108 void NaClBrokerHost::OnDebugExceptionHandlerLaunched(int32 pid
, bool success
) {
109 NaClBrokerService::GetInstance()->OnDebugExceptionHandlerLaunched(pid
,
113 void NaClBrokerHost::StopBroker() {
114 is_terminating_
= true;
115 process_
->Send(new NaClProcessMsg_StopBroker());