Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 1 | // Copyright 2020 The Chromium Authors. All rights reserved. |
| 2 | // Use of this source code is governed by a BSD-style license that can be |
| 3 | // found in the LICENSE file. |
| 4 | |
| 5 | #ifndef CHROME_BROWSER_ENTERPRISE_CONNECTORS_CONNECTORS_MANAGER_H_ |
| 6 | #define CHROME_BROWSER_ENTERPRISE_CONNECTORS_CONNECTORS_MANAGER_H_ |
| 7 | |
Hans Wennborg | b3e433a | 2020-04-21 11:21:40 | [diff] [blame] | 8 | #include <set> |
| 9 | |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 10 | #include "base/callback_forward.h" |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 11 | #include "base/feature_list.h" |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 12 | #include "base/optional.h" |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 13 | #include "chrome/browser/enterprise/connectors/analysis_service_settings.h" |
Dominique Fauteux-Chapleau | 5ae6424 | 2020-04-17 13:18:26 | [diff] [blame] | 14 | #include "chrome/browser/enterprise/connectors/common.h" |
Roger Tawa | 445a997 | 2020-05-20 22:44:02 | [diff] [blame] | 15 | #include "chrome/browser/enterprise/connectors/reporting_service_settings.h" |
Dominique Fauteux-Chapleau | 2977570 | 2020-04-30 15:50:36 | [diff] [blame] | 16 | #include "components/prefs/pref_change_registrar.h" |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 17 | #include "url/gurl.h" |
| 18 | |
Dominique Fauteux-Chapleau | 8cf113f1 | 2020-04-08 18:14:03 | [diff] [blame] | 19 | namespace base { |
| 20 | template <typename T> |
| 21 | struct DefaultSingletonTraits; |
| 22 | } |
| 23 | |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 24 | namespace enterprise_connectors { |
| 25 | |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 26 | // Controls whether the Enterprise Connectors policies should be read by |
| 27 | // ConnectorsManager. Legacy policies will be read as a fallback if this feature |
| 28 | // is disabled. |
| 29 | extern const base::Feature kEnterpriseConnectorsEnabled; |
| 30 | |
Roger Tawa | 41fe5a9 | 2020-05-26 18:04:56 | [diff] [blame] | 31 | // For the moment, service provider configurations are static and only support |
| 32 | // google endpoints. Therefore the configurtion is placed here directly. |
| 33 | // Once the configuation becomes more dynamic this static string will be |
| 34 | // removed and replaced with a service to keep it up to date. |
| 35 | extern const char kServiceProviderConfig[]; |
| 36 | |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 37 | // Manages access to Connector policies. This class is responsible for caching |
| 38 | // the Connector policies, validate them against approved service providers and |
| 39 | // provide a simple interface to them. |
| 40 | class ConnectorsManager { |
| 41 | public: |
Roger Tawa | 445a997 | 2020-05-20 22:44:02 | [diff] [blame] | 42 | // Maps used to cache connectors settings. |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 43 | using AnalysisConnectorsSettings = |
| 44 | std::map<AnalysisConnector, std::vector<AnalysisServiceSettings>>; |
Roger Tawa | 445a997 | 2020-05-20 22:44:02 | [diff] [blame] | 45 | using ReportingConnectorsSettings = |
| 46 | std::map<ReportingConnector, std::vector<ReportingServiceSettings>>; |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 47 | |
Dominique Fauteux-Chapleau | 8cf113f1 | 2020-04-08 18:14:03 | [diff] [blame] | 48 | static ConnectorsManager* GetInstance(); |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 49 | |
Roger Tawa | 445a997 | 2020-05-20 22:44:02 | [diff] [blame] | 50 | // Validates which settings should be applied to a reporting event |
| 51 | // against cached policies. This function will prioritize new connector |
| 52 | // policies over legacy ones if they are set. |
| 53 | base::Optional<ReportingSettings> GetReportingSettings( |
| 54 | ReportingConnector connector); |
| 55 | |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 56 | // Validates which settings should be applied to an analysis connector event |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 57 | // against cached policies. This function will prioritize new connector |
| 58 | // policies over legacy ones if they are set. |
Dominique Fauteux-Chapleau | c08c8c96 | 2020-05-07 18:46:26 | [diff] [blame] | 59 | base::Optional<AnalysisSettings> GetAnalysisSettings( |
| 60 | const GURL& url, |
| 61 | AnalysisConnector connector); |
| 62 | |
| 63 | // Checks if the corresponding connector is enabled. |
Dominique Fauteux-Chapleau | adf0b11 | 2020-05-25 13:24:03 | [diff] [blame] | 64 | bool IsConnectorEnabled(AnalysisConnector connector) const; |
| 65 | bool IsConnectorEnabled(ReportingConnector connector) const; |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 66 | |
Dominique Fauteux-Chapleau | adf0b11 | 2020-05-25 13:24:03 | [diff] [blame] | 67 | bool DelayUntilVerdict(AnalysisConnector connector); |
Dominique Fauteux-Chapleau | ccf5309 | 2020-04-08 17:15:28 | [diff] [blame] | 68 | |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 69 | // Public testing functions. |
| 70 | const AnalysisConnectorsSettings& GetAnalysisConnectorsSettingsForTesting() |
| 71 | const; |
Roger Tawa | 445a997 | 2020-05-20 22:44:02 | [diff] [blame] | 72 | const ReportingConnectorsSettings& GetReportingConnectorsSettingsForTesting() |
| 73 | const; |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 74 | |
Dominique Fauteux-Chapleau | 2977570 | 2020-04-30 15:50:36 | [diff] [blame] | 75 | // Helpers to reset the ConnectorManager instance across test since it's a |
| 76 | // singleton that would otherwise persist its state. |
| 77 | void SetUpForTesting(); |
| 78 | void TearDownForTesting(); |
Dominique Fauteux-Chapleau | 6f15fae | 2020-05-26 18:25:35 | [diff] [blame] | 79 | void ClearCacheForTesting(); |
Dominique Fauteux-Chapleau | 2977570 | 2020-04-30 15:50:36 | [diff] [blame] | 80 | |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 81 | private: |
Dominique Fauteux-Chapleau | 8cf113f1 | 2020-04-08 18:14:03 | [diff] [blame] | 82 | friend struct base::DefaultSingletonTraits<ConnectorsManager>; |
| 83 | |
| 84 | // Constructor and destructor are declared as private so callers use |
| 85 | // GetInstance instead. |
| 86 | ConnectorsManager(); |
| 87 | ~ConnectorsManager(); |
| 88 | |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 89 | // Validates which settings should be applied to an analysis connector event |
| 90 | // against connector policies. Cache the policy value the first time this is |
| 91 | // called for every different connector. |
Dominique Fauteux-Chapleau | c08c8c96 | 2020-05-07 18:46:26 | [diff] [blame] | 92 | base::Optional<AnalysisSettings> GetAnalysisSettingsFromConnectorPolicy( |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 93 | const GURL& url, |
Dominique Fauteux-Chapleau | c08c8c96 | 2020-05-07 18:46:26 | [diff] [blame] | 94 | AnalysisConnector connector); |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 95 | |
| 96 | // Read and cache the policy corresponding to |connector|. |
Roger Tawa | 445a997 | 2020-05-20 22:44:02 | [diff] [blame] | 97 | void CacheAnalysisConnectorPolicy(AnalysisConnector connector); |
| 98 | void CacheReportingConnectorPolicy(ReportingConnector connector); |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 99 | |
Dominique Fauteux-Chapleau | 2977570 | 2020-04-30 15:50:36 | [diff] [blame] | 100 | // Sets up |pref_change_registrar_| if kEnterpriseConntorsEnabled is true. |
| 101 | // Used by the constructor and SetUpForTesting. |
| 102 | void StartObservingPrefs(); |
Dominique Fauteux-Chapleau | 045c37d | 2020-05-05 12:51:40 | [diff] [blame] | 103 | void StartObservingPref(AnalysisConnector connector); |
Roger Tawa | 445a997 | 2020-05-20 22:44:02 | [diff] [blame] | 104 | void StartObservingPref(ReportingConnector connector); |
Dominique Fauteux-Chapleau | 2977570 | 2020-04-30 15:50:36 | [diff] [blame] | 105 | |
Dominique Fauteux-Chapleau | ccf5309 | 2020-04-08 17:15:28 | [diff] [blame] | 106 | // Private legacy functions. |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 107 | // These functions are used to interact with legacy policies and should stay |
| 108 | // private. They should be removed once legacy policies are deprecated. |
| 109 | |
| 110 | // Returns analysis settings based on legacy policies. |
| 111 | base::Optional<AnalysisSettings> GetAnalysisSettingsFromLegacyPolicies( |
| 112 | const GURL& url, |
| 113 | AnalysisConnector connector) const; |
| 114 | |
| 115 | BlockUntilVerdict LegacyBlockUntilVerdict(bool upload) const; |
| 116 | bool LegacyBlockPasswordProtectedFiles(bool upload) const; |
| 117 | bool LegacyBlockLargeFiles(bool upload) const; |
| 118 | bool LegacyBlockUnsupportedFileTypes(bool upload) const; |
| 119 | |
Dominique Fauteux-Chapleau | adf0b11 | 2020-05-25 13:24:03 | [diff] [blame] | 120 | // Functions that check a url against the corresponding URL patterns policies. |
| 121 | bool MatchURLAgainstLegacyDlpPolicies(const GURL& url, bool upload) const; |
| 122 | bool MatchURLAgainstLegacyMalwarePolicies(const GURL& url, bool upload) const; |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 123 | std::set<std::string> MatchURLAgainstLegacyPolicies(const GURL& url, |
| 124 | bool upload) const; |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 125 | |
Roger Tawa | 445a997 | 2020-05-20 22:44:02 | [diff] [blame] | 126 | // Validates which settings should be applied to an analysis connector event |
| 127 | // against connector policies. Cache the policy value the first time this is |
| 128 | // called for every different connector. |
| 129 | base::Optional<ReportingSettings> GetReportingSettingsFromConnectorPolicy( |
| 130 | ReportingConnector connector); |
| 131 | |
| 132 | // Returns reporting settings based on legacy policies. |
| 133 | base::Optional<ReportingSettings> GetReportingSettingsFromLegacyPolicies( |
| 134 | ReportingConnector connector) const; |
| 135 | |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 136 | // Cached values of the connector policies. Updated when a connector is first |
| 137 | // used or when a policy is updated. |
Roger Tawa | 445a997 | 2020-05-20 22:44:02 | [diff] [blame] | 138 | AnalysisConnectorsSettings analysis_connector_settings_; |
| 139 | ReportingConnectorsSettings reporting_connector_settings_; |
Dominique Fauteux-Chapleau | 2977570 | 2020-04-30 15:50:36 | [diff] [blame] | 140 | |
| 141 | // Used to track changes of connector policies and propagate them in |
| 142 | // |connector_settings_|. |
| 143 | PrefChangeRegistrar pref_change_registrar_; |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 144 | }; |
| 145 | |
| 146 | } // namespace enterprise_connectors |
| 147 | |
| 148 | #endif // CHROME_BROWSER_ENTERPRISE_CONNECTORS_CONNECTORS_MANAGER_H_ |