Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 1 | // Copyright 2020 The Chromium Authors. All rights reserved. |
| 2 | // Use of this source code is governed by a BSD-style license that can be |
| 3 | // found in the LICENSE file. |
| 4 | |
| 5 | #ifndef CHROME_BROWSER_ENTERPRISE_CONNECTORS_CONNECTORS_MANAGER_H_ |
| 6 | #define CHROME_BROWSER_ENTERPRISE_CONNECTORS_CONNECTORS_MANAGER_H_ |
| 7 | |
Hans Wennborg | b3e433a | 2020-04-21 11:21:40 | [diff] [blame] | 8 | #include <set> |
| 9 | |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 10 | #include "base/callback_forward.h" |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 11 | #include "base/feature_list.h" |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 12 | #include "base/optional.h" |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 13 | #include "chrome/browser/enterprise/connectors/analysis_service_settings.h" |
Dominique Fauteux-Chapleau | 5ae6424 | 2020-04-17 13:18:26 | [diff] [blame] | 14 | #include "chrome/browser/enterprise/connectors/common.h" |
Roger Tawa | 445a997 | 2020-05-20 22:44:02 | [diff] [blame] | 15 | #include "chrome/browser/enterprise/connectors/reporting_service_settings.h" |
Dominique Fauteux-Chapleau | 76b366a | 2020-05-28 17:15:06 | [diff] [blame^] | 16 | #include "chrome/browser/enterprise/connectors/service_provider_config.h" |
Dominique Fauteux-Chapleau | 2977570 | 2020-04-30 15:50:36 | [diff] [blame] | 17 | #include "components/prefs/pref_change_registrar.h" |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 18 | #include "url/gurl.h" |
| 19 | |
Dominique Fauteux-Chapleau | 8cf113f1 | 2020-04-08 18:14:03 | [diff] [blame] | 20 | namespace base { |
| 21 | template <typename T> |
| 22 | struct DefaultSingletonTraits; |
| 23 | } |
| 24 | |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 25 | namespace enterprise_connectors { |
| 26 | |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 27 | // Controls whether the Enterprise Connectors policies should be read by |
| 28 | // ConnectorsManager. Legacy policies will be read as a fallback if this feature |
| 29 | // is disabled. |
| 30 | extern const base::Feature kEnterpriseConnectorsEnabled; |
| 31 | |
Roger Tawa | 41fe5a9 | 2020-05-26 18:04:56 | [diff] [blame] | 32 | // For the moment, service provider configurations are static and only support |
| 33 | // google endpoints. Therefore the configurtion is placed here directly. |
| 34 | // Once the configuation becomes more dynamic this static string will be |
| 35 | // removed and replaced with a service to keep it up to date. |
| 36 | extern const char kServiceProviderConfig[]; |
| 37 | |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 38 | // Manages access to Connector policies. This class is responsible for caching |
| 39 | // the Connector policies, validate them against approved service providers and |
| 40 | // provide a simple interface to them. |
| 41 | class ConnectorsManager { |
| 42 | public: |
Roger Tawa | 445a997 | 2020-05-20 22:44:02 | [diff] [blame] | 43 | // Maps used to cache connectors settings. |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 44 | using AnalysisConnectorsSettings = |
| 45 | std::map<AnalysisConnector, std::vector<AnalysisServiceSettings>>; |
Roger Tawa | 445a997 | 2020-05-20 22:44:02 | [diff] [blame] | 46 | using ReportingConnectorsSettings = |
| 47 | std::map<ReportingConnector, std::vector<ReportingServiceSettings>>; |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 48 | |
Dominique Fauteux-Chapleau | 8cf113f1 | 2020-04-08 18:14:03 | [diff] [blame] | 49 | static ConnectorsManager* GetInstance(); |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 50 | |
Roger Tawa | 445a997 | 2020-05-20 22:44:02 | [diff] [blame] | 51 | // Validates which settings should be applied to a reporting event |
| 52 | // against cached policies. This function will prioritize new connector |
| 53 | // policies over legacy ones if they are set. |
| 54 | base::Optional<ReportingSettings> GetReportingSettings( |
| 55 | ReportingConnector connector); |
| 56 | |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 57 | // Validates which settings should be applied to an analysis connector event |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 58 | // against cached policies. This function will prioritize new connector |
| 59 | // policies over legacy ones if they are set. |
Dominique Fauteux-Chapleau | c08c8c96 | 2020-05-07 18:46:26 | [diff] [blame] | 60 | base::Optional<AnalysisSettings> GetAnalysisSettings( |
| 61 | const GURL& url, |
| 62 | AnalysisConnector connector); |
| 63 | |
| 64 | // Checks if the corresponding connector is enabled. |
Dominique Fauteux-Chapleau | adf0b11 | 2020-05-25 13:24:03 | [diff] [blame] | 65 | bool IsConnectorEnabled(AnalysisConnector connector) const; |
| 66 | bool IsConnectorEnabled(ReportingConnector connector) const; |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 67 | |
Dominique Fauteux-Chapleau | adf0b11 | 2020-05-25 13:24:03 | [diff] [blame] | 68 | bool DelayUntilVerdict(AnalysisConnector connector); |
Dominique Fauteux-Chapleau | ccf5309 | 2020-04-08 17:15:28 | [diff] [blame] | 69 | |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 70 | // Public testing functions. |
| 71 | const AnalysisConnectorsSettings& GetAnalysisConnectorsSettingsForTesting() |
| 72 | const; |
Roger Tawa | 445a997 | 2020-05-20 22:44:02 | [diff] [blame] | 73 | const ReportingConnectorsSettings& GetReportingConnectorsSettingsForTesting() |
| 74 | const; |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 75 | |
Dominique Fauteux-Chapleau | 2977570 | 2020-04-30 15:50:36 | [diff] [blame] | 76 | // Helpers to reset the ConnectorManager instance across test since it's a |
| 77 | // singleton that would otherwise persist its state. |
| 78 | void SetUpForTesting(); |
| 79 | void TearDownForTesting(); |
Dominique Fauteux-Chapleau | 6f15fae | 2020-05-26 18:25:35 | [diff] [blame] | 80 | void ClearCacheForTesting(); |
Dominique Fauteux-Chapleau | 2977570 | 2020-04-30 15:50:36 | [diff] [blame] | 81 | |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 82 | private: |
Dominique Fauteux-Chapleau | 8cf113f1 | 2020-04-08 18:14:03 | [diff] [blame] | 83 | friend struct base::DefaultSingletonTraits<ConnectorsManager>; |
| 84 | |
| 85 | // Constructor and destructor are declared as private so callers use |
| 86 | // GetInstance instead. |
| 87 | ConnectorsManager(); |
| 88 | ~ConnectorsManager(); |
| 89 | |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 90 | // Validates which settings should be applied to an analysis connector event |
| 91 | // against connector policies. Cache the policy value the first time this is |
| 92 | // called for every different connector. |
Dominique Fauteux-Chapleau | c08c8c96 | 2020-05-07 18:46:26 | [diff] [blame] | 93 | base::Optional<AnalysisSettings> GetAnalysisSettingsFromConnectorPolicy( |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 94 | const GURL& url, |
Dominique Fauteux-Chapleau | c08c8c96 | 2020-05-07 18:46:26 | [diff] [blame] | 95 | AnalysisConnector connector); |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 96 | |
| 97 | // Read and cache the policy corresponding to |connector|. |
Roger Tawa | 445a997 | 2020-05-20 22:44:02 | [diff] [blame] | 98 | void CacheAnalysisConnectorPolicy(AnalysisConnector connector); |
| 99 | void CacheReportingConnectorPolicy(ReportingConnector connector); |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 100 | |
Dominique Fauteux-Chapleau | 2977570 | 2020-04-30 15:50:36 | [diff] [blame] | 101 | // Sets up |pref_change_registrar_| if kEnterpriseConntorsEnabled is true. |
| 102 | // Used by the constructor and SetUpForTesting. |
| 103 | void StartObservingPrefs(); |
Dominique Fauteux-Chapleau | 045c37d | 2020-05-05 12:51:40 | [diff] [blame] | 104 | void StartObservingPref(AnalysisConnector connector); |
Roger Tawa | 445a997 | 2020-05-20 22:44:02 | [diff] [blame] | 105 | void StartObservingPref(ReportingConnector connector); |
Dominique Fauteux-Chapleau | 2977570 | 2020-04-30 15:50:36 | [diff] [blame] | 106 | |
Dominique Fauteux-Chapleau | ccf5309 | 2020-04-08 17:15:28 | [diff] [blame] | 107 | // Private legacy functions. |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 108 | // These functions are used to interact with legacy policies and should stay |
| 109 | // private. They should be removed once legacy policies are deprecated. |
| 110 | |
| 111 | // Returns analysis settings based on legacy policies. |
| 112 | base::Optional<AnalysisSettings> GetAnalysisSettingsFromLegacyPolicies( |
| 113 | const GURL& url, |
| 114 | AnalysisConnector connector) const; |
| 115 | |
| 116 | BlockUntilVerdict LegacyBlockUntilVerdict(bool upload) const; |
| 117 | bool LegacyBlockPasswordProtectedFiles(bool upload) const; |
| 118 | bool LegacyBlockLargeFiles(bool upload) const; |
| 119 | bool LegacyBlockUnsupportedFileTypes(bool upload) const; |
| 120 | |
Dominique Fauteux-Chapleau | adf0b11 | 2020-05-25 13:24:03 | [diff] [blame] | 121 | // Functions that check a url against the corresponding URL patterns policies. |
| 122 | bool MatchURLAgainstLegacyDlpPolicies(const GURL& url, bool upload) const; |
| 123 | bool MatchURLAgainstLegacyMalwarePolicies(const GURL& url, bool upload) const; |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 124 | std::set<std::string> MatchURLAgainstLegacyPolicies(const GURL& url, |
| 125 | bool upload) const; |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 126 | |
Roger Tawa | 445a997 | 2020-05-20 22:44:02 | [diff] [blame] | 127 | // Validates which settings should be applied to an analysis connector event |
| 128 | // against connector policies. Cache the policy value the first time this is |
| 129 | // called for every different connector. |
| 130 | base::Optional<ReportingSettings> GetReportingSettingsFromConnectorPolicy( |
| 131 | ReportingConnector connector); |
| 132 | |
| 133 | // Returns reporting settings based on legacy policies. |
| 134 | base::Optional<ReportingSettings> GetReportingSettingsFromLegacyPolicies( |
| 135 | ReportingConnector connector) const; |
| 136 | |
Dominique Fauteux-Chapleau | 76b366a | 2020-05-28 17:15:06 | [diff] [blame^] | 137 | // Cached values of available service providers. This information validates |
| 138 | // the Connector policies have a valid provider. |
| 139 | ServiceProviderConfig service_provider_config_ = |
| 140 | ServiceProviderConfig(kServiceProviderConfig); |
| 141 | |
Dominique Fauteux-Chapleau | cb08fe4 | 2020-04-23 19:57:45 | [diff] [blame] | 142 | // Cached values of the connector policies. Updated when a connector is first |
| 143 | // used or when a policy is updated. |
Roger Tawa | 445a997 | 2020-05-20 22:44:02 | [diff] [blame] | 144 | AnalysisConnectorsSettings analysis_connector_settings_; |
| 145 | ReportingConnectorsSettings reporting_connector_settings_; |
Dominique Fauteux-Chapleau | 2977570 | 2020-04-30 15:50:36 | [diff] [blame] | 146 | |
| 147 | // Used to track changes of connector policies and propagate them in |
| 148 | // |connector_settings_|. |
| 149 | PrefChangeRegistrar pref_change_registrar_; |
Dominique Fauteux-Chapleau | c2d0a17 | 2020-04-01 20:04:13 | [diff] [blame] | 150 | }; |
| 151 | |
| 152 | } // namespace enterprise_connectors |
| 153 | |
| 154 | #endif // CHROME_BROWSER_ENTERPRISE_CONNECTORS_CONNECTORS_MANAGER_H_ |