blob: 0efe6c7e537baf03e39e3f4afdd770daee5656cd [file] [log] [blame]
[email protected]03ef4b2a2012-03-06 15:04:201// Copyright (c) 2012 The Chromium Authors. All rights reserved.
2// Use of this source code is governed by a BSD-style license that can be
3// found in the LICENSE file.
4
lgarron617a30f32017-03-24 21:42:075#include "chrome/browser/ui/page_info/page_info.h"
[email protected]03ef4b2a2012-03-06 15:04:206
avi655876a2015-12-25 07:18:157#include <stddef.h>
8#include <stdint.h>
9
Eric Lawrence6758d1d2017-11-21 16:06:0510#include <memory>
[email protected]03ef4b2a2012-03-06 15:04:2011#include <string>
Eric Lawrence6758d1d2017-11-21 16:06:0512#include <utility>
[email protected]03ef4b2a2012-03-06 15:04:2013#include <vector>
14
[email protected]eb2140c2013-07-29 12:37:3415#include "base/command_line.h"
[email protected]15b092542012-05-16 13:08:1416#include "base/i18n/time_formatting.h"
[email protected]71cd5ef2014-08-13 21:22:0417#include "base/metrics/field_trial.h"
Christopher Thompson0c4e06c22018-07-11 22:29:5918#include "base/metrics/histogram_functions.h"
asvitkine75036032016-09-01 20:49:3419#include "base/metrics/histogram_macros.h"
Tommy Steimeldea90f72017-11-07 20:58:0320#include "base/metrics/user_metrics.h"
Avi Drissman22f82872018-12-25 23:09:0721#include "base/stl_util.h"
[email protected]3ea1b182013-02-08 22:38:4122#include "base/strings/string_number_conversions.h"
[email protected]774cc3c2013-06-07 20:26:4523#include "base/strings/utf_string_conversions.h"
[email protected]0b9fdd72012-04-04 10:00:3324#include "base/values.h"
Suman Kancherlad54a6e5b2019-01-29 22:17:4925#include "build/build_config.h"
jialiul02aad2d2015-04-01 18:56:0326#include "chrome/browser/browser_process.h"
[email protected]b0cb5e82012-07-19 19:22:4727#include "chrome/browser/browsing_data/browsing_data_cookie_helper.h"
28#include "chrome/browser/browsing_data/browsing_data_database_helper.h"
29#include "chrome/browser/browsing_data/browsing_data_file_system_helper.h"
30#include "chrome/browser/browsing_data/browsing_data_indexed_db_helper.h"
31#include "chrome/browser/browsing_data/browsing_data_local_storage_helper.h"
peconn5100d432015-09-16 12:03:0832#include "chrome/browser/content_settings/host_content_settings_map_factory.h"
vabrbab3ffcb2016-10-04 10:08:1033#include "chrome/browser/content_settings/local_shared_objects_container.h"
[email protected]77a91c72012-08-13 16:19:3434#include "chrome/browser/history/history_service_factory.h"
palmerf2cba0d2015-08-27 23:15:0635#include "chrome/browser/infobars/infobar_service.h"
reillyg85f57db2016-01-12 23:14:3836#include "chrome/browser/permissions/chooser_context_base.h"
patricialor7131c1fe2017-04-07 01:25:5237#include "chrome/browser/permissions/permission_decision_auto_blocker.h"
patricialor2a4f41a2017-03-08 02:52:5638#include "chrome/browser/permissions/permission_manager.h"
39#include "chrome/browser/permissions/permission_result.h"
tsergeantf1e89352016-01-15 20:34:5440#include "chrome/browser/permissions/permission_uma_util.h"
41#include "chrome/browser/permissions/permission_util.h"
[email protected]03ef4b2a2012-03-06 15:04:2042#include "chrome/browser/profiles/profile.h"
Jialiu Lin11e18542017-08-14 18:16:2643#include "chrome/browser/safe_browsing/safe_browsing_service.h"
[email protected]71cd5ef2014-08-13 21:22:0444#include "chrome/browser/ssl/chrome_ssl_host_state_delegate.h"
45#include "chrome/browser/ssl/chrome_ssl_host_state_delegate_factory.h"
lgarron617a30f32017-03-24 21:42:0746#include "chrome/browser/ui/page_info/page_info_ui.h"
reillyg85f57db2016-01-12 23:14:3847#include "chrome/browser/usb/usb_chooser_context.h"
48#include "chrome/browser/usb/usb_chooser_context_factory.h"
Suman Kancherlad54a6e5b2019-01-29 22:17:4949#include "chrome/browser/vr/vr_tab_helper.h"
Patricia Lora21a04cf2017-06-05 02:53:2950#include "chrome/common/chrome_features.h"
[email protected]71cd5ef2014-08-13 21:22:0451#include "chrome/common/chrome_switches.h"
jsbellddb849e2015-08-27 00:12:5652#include "chrome/common/url_constants.h"
reillyg85f57db2016-01-12 23:14:3853#include "chrome/grit/theme_resources.h"
Patti0601e532017-09-20 08:39:3054#include "components/content_settings/core/browser/content_settings_registry.h"
mukai8eaec822014-10-25 17:53:1655#include "components/content_settings/core/browser/content_settings_utils.h"
56#include "components/content_settings/core/browser/host_content_settings_map.h"
palmer0da10b32015-02-11 00:42:1957#include "components/content_settings/core/common/content_settings.h"
vasiliif62dbf92014-09-05 10:23:1358#include "components/content_settings/core/common/content_settings_pattern.h"
tbansal08a0e3e2017-06-30 21:30:0859#include "components/content_settings/core/common/content_settings_utils.h"
nzolghadrd87a308d2016-12-07 15:45:5660#include "components/rappor/public/rappor_utils.h"
61#include "components/rappor/rappor_service_impl.h"
felt2493b4452015-09-17 20:33:5962#include "components/ssl_errors/error_info.h"
thestig4a2e88e2016-08-27 23:23:5163#include "components/strings/grit/components_chromium_strings.h"
64#include "components/strings/grit/components_strings.h"
melandory7be36d312017-03-29 15:51:1265#include "components/subresource_filter/core/browser/subresource_filter_features.h"
palmer153af982015-09-15 02:04:1966#include "components/url_formatter/elide_url.h"
[email protected]0b9fdd72012-04-04 10:00:3367#include "content/public/browser/browser_thread.h"
[email protected]eb2140c2013-07-29 12:37:3468#include "content/public/common/content_switches.h"
[email protected]03ef4b2a2012-03-06 15:04:2069#include "content/public/common/url_constants.h"
[email protected]6e7845ae2013-03-29 21:48:1170#include "net/cert/cert_status_flags.h"
71#include "net/cert/x509_certificate.h"
[email protected]536fd0b2013-03-14 17:41:5772#include "net/ssl/ssl_cipher_suite_names.h"
73#include "net/ssl/ssl_connection_status_flags.h"
tfarina29a3a1742016-10-28 18:47:3374#include "third_party/boringssl/src/include/openssl/ssl.h"
[email protected]03ef4b2a2012-03-06 15:04:2075#include "ui/base/l10n/l10n_util.h"
Patricia Lora21a04cf2017-06-05 02:53:2976#include "url/origin.h"
[email protected]03ef4b2a2012-03-06 15:04:2077
[email protected]24a9f1c92013-11-13 12:33:3778#if defined(OS_CHROMEOS)
79#include "chrome/browser/chromeos/policy/policy_cert_service.h"
80#include "chrome/browser/chromeos/policy/policy_cert_service_factory.h"
81#endif
82
estade3feb83f2015-09-01 23:00:4983#if !defined(OS_ANDROID)
Reilly Grant4e9d4f22019-02-13 17:17:3084#include "chrome/browser/serial/serial_chooser_context.h"
85#include "chrome/browser/serial/serial_chooser_context_factory.h"
Christopher Lam0dbac2b2017-11-14 07:12:1086#include "chrome/browser/ui/browser_finder.h"
87#include "chrome/browser/ui/chrome_pages.h"
mgiucaa319f212016-01-14 03:30:1188#include "chrome/browser/ui/exclusive_access/exclusive_access_manager.h"
lgarron617a30f32017-03-24 21:42:0789#include "chrome/browser/ui/page_info/page_info_infobar_delegate.h"
estade3feb83f2015-09-01 23:00:4990#endif
91
Michael Thiessen4c9e4a82019-03-08 04:39:4492#if defined(FULL_SAFE_BROWSING)
Jialiu Lin0d8cc722017-09-19 01:01:5193#include "chrome/browser/safe_browsing/chrome_password_protection_service.h"
Jialiu Lin11e18542017-08-14 18:16:2694#endif
95
[email protected]ab6df3b12013-12-24 23:32:2696using base::ASCIIToUTF16;
[email protected]f729d7a2013-12-26 07:07:5697using base::UTF16ToUTF8;
Ovidio Henriquez3fc113f2019-04-23 14:37:1098using base::UTF8ToUTF16;
[email protected]0b9fdd72012-04-04 10:00:3399using content::BrowserThread;
Michael Thiessen4c9e4a82019-03-08 04:39:44100#if defined(FULL_SAFE_BROWSING)
Jialiu Lind7defe652018-06-20 18:47:06101using PasswordReuseEvent =
102 safe_browsing::LoginReputationClientRequest::PasswordReuseEvent;
Michael Thiessen4c9e4a82019-03-08 04:39:44103#endif // FULL_SAFE_BROWSING
[email protected]0b9fdd72012-04-04 10:00:33104
105namespace {
106
lgarron617a30f32017-03-24 21:42:07107// The list of content settings types to display on the Page Info UI. THE
csharrisonad1eaa6c2017-05-11 17:14:38108// ORDER OF THESE ITEMS IS IMPORTANT and comes from https://crbug.com/610358. To
109// propose changing it, email [email protected].
[email protected]0b9fdd72012-04-04 10:00:33110ContentSettingsType kPermissionType[] = {
sashab2b2a314f2015-01-17 06:42:21111 CONTENT_SETTINGS_TYPE_GEOLOCATION,
sashab2b2a314f2015-01-17 06:42:21112 CONTENT_SETTINGS_TYPE_MEDIASTREAM_CAMERA,
113 CONTENT_SETTINGS_TYPE_MEDIASTREAM_MIC,
Alexander Shalamovce5aab52018-02-07 11:45:15114 CONTENT_SETTINGS_TYPE_SENSORS,
palmer0da10b32015-02-11 00:42:19115 CONTENT_SETTINGS_TYPE_NOTIFICATIONS,
palmer7715e332016-05-27 00:41:19116 CONTENT_SETTINGS_TYPE_JAVASCRIPT,
lshange085f202016-06-14 01:25:08117#if !defined(OS_ANDROID)
palmer7715e332016-05-27 00:41:19118 CONTENT_SETTINGS_TYPE_PLUGINS,
119 CONTENT_SETTINGS_TYPE_IMAGES,
lshange085f202016-06-14 01:25:08120#endif
palmer7715e332016-05-27 00:41:19121 CONTENT_SETTINGS_TYPE_POPUPS,
Charles Harrison239d47982017-06-13 02:42:31122 CONTENT_SETTINGS_TYPE_ADS,
nsatragno670fe922016-04-08 14:10:50123 CONTENT_SETTINGS_TYPE_BACKGROUND_SYNC,
Tommy Steimela8c3757e2017-08-24 00:15:46124 CONTENT_SETTINGS_TYPE_SOUND,
palmer7715e332016-05-27 00:41:19125 CONTENT_SETTINGS_TYPE_AUTOMATIC_DOWNLOADS,
finnur46cafd42016-09-22 10:27:17126 CONTENT_SETTINGS_TYPE_AUTOPLAY,
palmer7715e332016-05-27 00:41:19127 CONTENT_SETTINGS_TYPE_MIDI_SYSEX,
Gary Kacmarcik10533cf2017-11-22 03:31:28128 CONTENT_SETTINGS_TYPE_CLIPBOARD_READ,
Reilly Granta69ab672018-04-06 18:26:07129 CONTENT_SETTINGS_TYPE_USB_GUARD,
Reilly Grant87d6eb022019-04-19 23:55:59130#if !defined(OS_ANDROID)
131 CONTENT_SETTINGS_TYPE_SERIAL_GUARD,
132#endif
[email protected]0b9fdd72012-04-04 10:00:33133};
134
Patti0601e532017-09-20 08:39:30135// Checks whether this permission is currently the factory default, as set by
136// Chrome. Specifically, that the following three conditions are true:
137// - The current active setting comes from the default or pref provider.
138// - The setting is the factory default setting (as opposed to a global
139// default setting set by the user).
140// - The setting is a wildcard setting applying to all origins (which can only
141// be set from the default provider).
142bool IsPermissionFactoryDefault(HostContentSettingsMap* content_settings,
143 const PageInfoUI::PermissionInfo& info) {
144 const ContentSetting factory_default_setting =
145 content_settings::ContentSettingsRegistry::GetInstance()
146 ->Get(info.type)
147 ->GetInitialDefaultSetting();
148 return (info.source == content_settings::SETTING_SOURCE_USER &&
149 factory_default_setting == info.default_setting &&
150 info.setting == CONTENT_SETTING_DEFAULT);
151}
152
lgarron617a30f32017-03-24 21:42:07153// Determines whether to show permission |type| in the Page Info UI. Only
mgiucaa319f212016-01-14 03:30:11154// applies to permissions listed in |kPermissionType|.
shahriar rostamia9c769d2017-12-06 04:54:08155bool ShouldShowPermission(
156 const PageInfoUI::PermissionInfo& info,
157 const GURL& site_url,
158 HostContentSettingsMap* content_settings,
159 content::WebContents* web_contents,
160 TabSpecificContentSettings* tab_specific_content_settings) {
Patti0601e532017-09-20 08:39:30161 // Note |CONTENT_SETTINGS_TYPE_ADS| will show up regardless of its default
162 // value when it has been activated on the current origin.
163 if (info.type == CONTENT_SETTINGS_TYPE_ADS) {
csharrisonad1eaa6c2017-05-11 17:14:38164 if (!base::FeatureList::IsEnabled(
Charlie Harrisonb73f7622018-06-01 14:24:34165 subresource_filter::kSafeBrowsingSubresourceFilter)) {
csharrisonad1eaa6c2017-05-11 17:14:38166 return false;
167 }
168
169 // The setting for subresource filtering should not show up if the site is
170 // not activated, both on android and desktop platforms.
171 return content_settings->GetWebsiteSetting(
Charles Harrison239d47982017-06-13 02:42:31172 site_url, GURL(), CONTENT_SETTINGS_TYPE_ADS_DATA, std::string(),
173 nullptr) != nullptr;
melandory7be36d312017-03-29 15:51:12174 }
175
Tommy Steimelc9f6c932017-10-13 23:33:04176 if (info.type == CONTENT_SETTINGS_TYPE_SOUND) {
Tommy Steimel18360512017-11-01 00:38:19177 // The sound content setting should always show up when the tab has played
178 // audio.
179 if (web_contents && web_contents->WasEverAudible())
Tommy Steimelc9f6c932017-10-13 23:33:04180 return true;
181 }
182
Patti749d4d12017-10-11 06:20:30183#if defined(OS_ANDROID)
184 // Special geolocation DSE settings apply only on Android, so make sure it
185 // gets checked there regardless of default setting on Desktop.
186 if (info.type == CONTENT_SETTINGS_TYPE_GEOLOCATION)
187 return true;
Pattid7c4d542017-12-07 00:54:14188#else
Patti8c57f37d2018-01-31 04:33:21189 // Flash is shown if the user has ever changed its setting for |site_url|.
190 if (info.type == CONTENT_SETTINGS_TYPE_PLUGINS &&
191 content_settings->GetWebsiteSetting(site_url, site_url,
192 CONTENT_SETTINGS_TYPE_PLUGINS_DATA,
193 std::string(), nullptr) != nullptr) {
Pattid7c4d542017-12-07 00:54:14194 return true;
Patti8c57f37d2018-01-31 04:33:21195 }
Patti749d4d12017-10-11 06:20:30196#endif
197
Patti0601e532017-09-20 08:39:30198#if !defined(OS_ANDROID)
199 // Autoplay is Android-only at the moment.
200 if (info.type == CONTENT_SETTINGS_TYPE_AUTOPLAY)
201 return false;
202#endif
203
shahriar rostamia9c769d2017-12-06 04:54:08204 // Show the content setting if it has been changed by the user since the last
205 // page load.
206 if (tab_specific_content_settings->HasContentSettingChangedViaPageInfo(
207 info.type)) {
208 return true;
209 }
210
211 // Show the content setting when it has a non-default value.
212 if (!IsPermissionFactoryDefault(content_settings, info))
213 return true;
214
215 return false;
mgiucaa319f212016-01-14 03:30:11216}
217
Emily Starkd75d54ce2019-03-12 20:23:09218// If the |visible_security_state| indicates that mixed content or certificate
219// errors were present, update |connection_status| and |connection_details|.
220void ReportAnyInsecureContent(
221 const security_state::VisibleSecurityState& visible_security_state,
222 PageInfo::SiteConnectionStatus* connection_status,
223 base::string16* connection_details) {
224 bool displayed_insecure_content =
225 visible_security_state.displayed_mixed_content;
226 bool ran_insecure_content = visible_security_state.ran_mixed_content;
elawrenceb2ac2a232017-03-27 21:46:25227 // Only note subresources with certificate errors if the main resource was
228 // loaded without major certificate errors. If the main resource had a
229 // certificate error, then it would not be that useful (and could
230 // potentially be confusing) to warn about subresources that had certificate
231 // errors too.
Emily Starkd75d54ce2019-03-12 20:23:09232 if (!net::IsCertStatusError(visible_security_state.cert_status) ||
233 net::IsCertStatusMinorError(visible_security_state.cert_status)) {
234 displayed_insecure_content =
235 displayed_insecure_content ||
236 visible_security_state.displayed_content_with_cert_errors;
237 ran_insecure_content = ran_insecure_content ||
238 visible_security_state.ran_content_with_cert_errors;
elawrenceb2ac2a232017-03-27 21:46:25239 }
240
241 // Only one insecure content warning is displayed; show the most severe.
242 if (ran_insecure_content) {
thestig4427f13b2017-06-20 20:42:47243 *connection_status =
elawrenceb2ac2a232017-03-27 21:46:25244 PageInfo::SITE_CONNECTION_STATUS_INSECURE_ACTIVE_SUBRESOURCE;
thestig4427f13b2017-06-20 20:42:47245 connection_details->assign(l10n_util::GetStringFUTF16(
246 IDS_PAGE_INFO_SECURITY_TAB_ENCRYPTED_SENTENCE_LINK, *connection_details,
elawrenceb2ac2a232017-03-27 21:46:25247 l10n_util::GetStringUTF16(
248 IDS_PAGE_INFO_SECURITY_TAB_ENCRYPTED_INSECURE_CONTENT_ERROR)));
estark00e83f12016-08-19 18:24:04249 return;
250 }
Emily Starkd75d54ce2019-03-12 20:23:09251 if (visible_security_state.contained_mixed_form) {
thestig4427f13b2017-06-20 20:42:47252 *connection_status = PageInfo::SITE_CONNECTION_STATUS_INSECURE_FORM_ACTION;
253 connection_details->assign(l10n_util::GetStringFUTF16(
254 IDS_PAGE_INFO_SECURITY_TAB_ENCRYPTED_SENTENCE_LINK, *connection_details,
elawrenceb2ac2a232017-03-27 21:46:25255 l10n_util::GetStringUTF16(
256 IDS_PAGE_INFO_SECURITY_TAB_ENCRYPTED_INSECURE_FORM_WARNING)));
257 return;
258 }
259 if (displayed_insecure_content) {
thestig4427f13b2017-06-20 20:42:47260 *connection_status =
elawrenceb2ac2a232017-03-27 21:46:25261 PageInfo::SITE_CONNECTION_STATUS_INSECURE_PASSIVE_SUBRESOURCE;
thestig4427f13b2017-06-20 20:42:47262 connection_details->assign(l10n_util::GetStringFUTF16(
263 IDS_PAGE_INFO_SECURITY_TAB_ENCRYPTED_SENTENCE_LINK, *connection_details,
elawrenceb2ac2a232017-03-27 21:46:25264 l10n_util::GetStringUTF16(
265 IDS_PAGE_INFO_SECURITY_TAB_ENCRYPTED_INSECURE_CONTENT_WARNING)));
266 }
estark00e83f12016-08-19 18:24:04267}
268
jshin1fb76462016-04-05 22:13:03269base::string16 GetSimpleSiteName(const GURL& url) {
benwells2337b8102016-04-20 01:53:53270 return url_formatter::FormatUrlForSecurityDisplay(
271 url, url_formatter::SchemeDisplay::OMIT_HTTP_AND_HTTPS);
palmer153af982015-09-15 02:04:19272}
273
reillyg85f57db2016-01-12 23:14:38274ChooserContextBase* GetUsbChooserContext(Profile* profile) {
275 return UsbChooserContextFactory::GetForProfile(profile);
276}
277
Reilly Grant4e9d4f22019-02-13 17:17:30278#if !defined(OS_ANDROID)
279ChooserContextBase* GetSerialChooserContext(Profile* profile) {
280 return SerialChooserContextFactory::GetForProfile(profile);
281}
282#endif
283
reillyg85f57db2016-01-12 23:14:38284// The list of chooser types that need to display entries in the Website
285// Settings UI. THE ORDER OF THESE ITEMS IS IMPORTANT. To propose changing it,
286// email [email protected].
Andrew Grieved1978b0e2017-07-28 15:53:41287const PageInfo::ChooserUIInfo kChooserUIInfo[] = {
reillyg58f82ab2016-08-03 01:49:52288 {CONTENT_SETTINGS_TYPE_USB_CHOOSER_DATA, &GetUsbChooserContext,
Reilly Grant4e9d4f22019-02-13 17:17:30289 IDS_PAGE_INFO_USB_DEVICE_SECONDARY_LABEL,
Ovidio Henriquez017d3b8f2019-02-01 18:51:24290 IDS_PAGE_INFO_USB_DEVICE_ALLOWED_BY_POLICY_LABEL,
Ovidio Henriquez3fc113f2019-04-23 14:37:10291 IDS_PAGE_INFO_DELETE_USB_DEVICE, &UsbChooserContext::GetObjectName},
Reilly Grant4e9d4f22019-02-13 17:17:30292#if !defined(OS_ANDROID)
293 {CONTENT_SETTINGS_TYPE_SERIAL_CHOOSER_DATA, &GetSerialChooserContext,
294 IDS_PAGE_INFO_SERIAL_PORT_SECONDARY_LABEL,
295 /*allowed_by_policy_description_string_id=*/-1,
Ovidio Henriquez3fc113f2019-04-23 14:37:10296 IDS_PAGE_INFO_DELETE_SERIAL_PORT, &SerialChooserContext::GetObjectName},
Reilly Grant4e9d4f22019-02-13 17:17:30297#endif
reillyg85f57db2016-01-12 23:14:38298};
299
Christopher Thompson0c4e06c22018-07-11 22:29:59300// Time open histogram prefixes.
301const char kPageInfoTimePrefix[] = "Security.PageInfo.TimeOpen";
302const char kPageInfoTimeActionPrefix[] = "Security.PageInfo.TimeOpen.Action";
303const char kPageInfoTimeNoActionPrefix[] =
304 "Security.PageInfo.TimeOpen.NoAction";
305
[email protected]0b9fdd72012-04-04 10:00:33306} // namespace
307
Emily Starkd75d54ce2019-03-12 20:23:09308PageInfo::PageInfo(
309 PageInfoUI* ui,
310 Profile* profile,
311 TabSpecificContentSettings* tab_specific_content_settings,
312 content::WebContents* web_contents,
313 const GURL& url,
314 security_state::SecurityLevel security_level,
315 const security_state::VisibleSecurityState& visible_security_state)
[email protected]df818272012-04-20 13:10:50316 : TabSpecificContentSettings::SiteDataObserver(
317 tab_specific_content_settings),
dominicknbdd53b5f2016-09-28 01:08:13318 content::WebContentsObserver(web_contents),
[email protected]df818272012-04-20 13:10:50319 ui_(ui),
[email protected]66f157312012-08-01 13:50:26320 show_info_bar_(false),
[email protected]0b9fdd72012-04-04 10:00:33321 site_url_(url),
322 site_identity_status_(SITE_IDENTITY_STATUS_UNKNOWN),
[email protected]03ef4b2a2012-03-06 15:04:20323 site_connection_status_(SITE_CONNECTION_STATUS_UNKNOWN),
alshabalin5e894c12016-10-25 06:47:46324 show_ssl_decision_revoke_button_(false),
peconn5100d432015-09-16 12:03:08325 content_settings_(HostContentSettingsMapFactory::GetForProfile(profile)),
[email protected]71cd5ef2014-08-13 21:22:04326 chrome_ssl_host_state_delegate_(
jww1ed8ea72014-09-02 20:43:25327 ChromeSSLHostStateDelegateFactory::GetForProfile(profile)),
palmer153af982015-09-15 02:04:19328 did_revoke_user_ssl_decisions_(false),
estark8d67cd7a2016-10-24 05:06:41329 profile_(profile),
Jialiu Lin11e18542017-08-14 18:16:26330 security_level_(security_state::NONE),
Michael Thiessen4c9e4a82019-03-08 04:39:44331#if defined(FULL_SAFE_BROWSING)
Jialiu Lin0d8cc722017-09-19 01:01:51332 password_protection_service_(
333 safe_browsing::ChromePasswordProtectionService::
334 GetPasswordProtectionService(profile_)),
Jialiu Lin11e18542017-08-14 18:16:26335#endif
Christopher Thompson0c4e06c22018-07-11 22:29:59336 show_change_password_buttons_(false),
337 did_perform_action_(false) {
Joe DeBlasioc7187e62019-04-25 21:14:15338 ComputeUIInputs(url, security_level, visible_security_state);
[email protected]0b9fdd72012-04-04 10:00:33339
340 PresentSitePermissions();
[email protected]24c8818c2012-04-25 09:57:41341 PresentSiteIdentity();
Pattie8c616202017-09-29 07:58:03342 PresentSiteData();
Suman Kancherlad54a6e5b2019-01-29 22:17:49343 PresentPageFeatureInfo();
[email protected]e22d64f2012-09-10 09:03:23344
lgarron617a30f32017-03-24 21:42:07345 // Every time the Page Info UI is opened a |PageInfo| object is
346 // created. So this counts how ofter the Page Info UI is opened.
347 RecordPageInfoAction(PAGE_INFO_OPENED);
Christopher Thompson0c4e06c22018-07-11 22:29:59348
349 // Record the time when the Page Info UI is opened so the total time it is
350 // open can be measured.
351 start_time_ = base::TimeTicks::Now();
[email protected]03ef4b2a2012-03-06 15:04:20352}
353
Carlos ILe5dfda72017-09-21 02:33:05354PageInfo::~PageInfo() {
355 // Check if Re-enable warnings button was visible, if so, log on UMA whether
356 // it was clicked or not.
357 SSLCertificateDecisionsDidRevoke user_decision =
358 did_revoke_user_ssl_decisions_ ? USER_CERT_DECISIONS_REVOKED
359 : USER_CERT_DECISIONS_NOT_REVOKED;
360 if (show_ssl_decision_revoke_button_) {
361 UMA_HISTOGRAM_ENUMERATION("interstitial.ssl.did_user_revoke_decisions2",
362 user_decision,
363 END_OF_SSL_CERTIFICATE_DECISIONS_DID_REVOKE_ENUM);
364 }
Christopher Thompson0c4e06c22018-07-11 22:29:59365
366 // Record the total time the Page Info UI was open for all opens as well as
367 // split between whether any action was taken.
368 base::UmaHistogramCustomTimes(
Joe DeBlasioc7b95282018-11-08 18:41:37369 security_state::GetSecurityLevelHistogramName(
370 kPageInfoTimePrefix, security_level_),
Christopher Thompson0c4e06c22018-07-11 22:29:59371 base::TimeTicks::Now() - start_time_,
372 base::TimeDelta::FromMilliseconds(1), base::TimeDelta::FromHours(1), 100);
373 if (did_perform_action_) {
374 base::UmaHistogramCustomTimes(
Joe DeBlasioc7b95282018-11-08 18:41:37375 security_state::GetSecurityLevelHistogramName(
376 kPageInfoTimeActionPrefix, security_level_),
Christopher Thompson0c4e06c22018-07-11 22:29:59377 base::TimeTicks::Now() - start_time_,
378 base::TimeDelta::FromMilliseconds(1), base::TimeDelta::FromHours(1),
379 100);
380 } else {
381 base::UmaHistogramCustomTimes(
Joe DeBlasioc7b95282018-11-08 18:41:37382 security_state::GetSecurityLevelHistogramName(
383 kPageInfoTimeNoActionPrefix, security_level_),
Christopher Thompson0c4e06c22018-07-11 22:29:59384 base::TimeTicks::Now() - start_time_,
385 base::TimeDelta::FromMilliseconds(1), base::TimeDelta::FromHours(1),
386 100);
387 }
Carlos ILe5dfda72017-09-21 02:33:05388}
[email protected]03ef4b2a2012-03-06 15:04:20389
Joe DeBlasioc7187e62019-04-25 21:14:15390void PageInfo::UpdateSecurityState(
391 security_state::SecurityLevel security_level,
392 const security_state::VisibleSecurityState& visible_security_state) {
393 ComputeUIInputs(site_url_, security_level, visible_security_state);
394 PresentSiteIdentity();
395}
396
lgarron617a30f32017-03-24 21:42:07397void PageInfo::RecordPageInfoAction(PageInfoAction action) {
Christopher Thompson0c4e06c22018-07-11 22:29:59398 if (action != PAGE_INFO_OPENED)
399 did_perform_action_ = true;
400
lgarron617a30f32017-03-24 21:42:07401 UMA_HISTOGRAM_ENUMERATION("WebsiteSettings.Action", action, PAGE_INFO_COUNT);
lgarron04a93502014-11-04 22:25:04402
estark8d67cd7a2016-10-24 05:06:41403 std::string histogram_name;
estark8d67cd7a2016-10-24 05:06:41404 if (site_url_.SchemeIsCryptographic()) {
Carlos ILcb2321112018-02-01 18:05:23405 if (security_level_ == security_state::SECURE) {
406 UMA_HISTOGRAM_ENUMERATION("Security.PageInfo.Action.HttpsUrl.ValidNonEV",
407 action, PAGE_INFO_COUNT);
408 } else if (security_level_ == security_state::EV_SECURE) {
409 UMA_HISTOGRAM_ENUMERATION("Security.PageInfo.Action.HttpsUrl.ValidEV",
lgarron617a30f32017-03-24 21:42:07410 action, PAGE_INFO_COUNT);
esecklercac56b62016-11-16 13:49:44411 } else if (security_level_ == security_state::NONE) {
estark8d67cd7a2016-10-24 05:06:41412 UMA_HISTOGRAM_ENUMERATION("Security.PageInfo.Action.HttpsUrl.Downgraded",
lgarron617a30f32017-03-24 21:42:07413 action, PAGE_INFO_COUNT);
esecklercac56b62016-11-16 13:49:44414 } else if (security_level_ == security_state::DANGEROUS) {
estark8d67cd7a2016-10-24 05:06:41415 UMA_HISTOGRAM_ENUMERATION("Security.PageInfo.Action.HttpsUrl.Dangerous",
lgarron617a30f32017-03-24 21:42:07416 action, PAGE_INFO_COUNT);
estark8d67cd7a2016-10-24 05:06:41417 }
418 return;
419 }
420
esecklercac56b62016-11-16 13:49:44421 if (security_level_ == security_state::HTTP_SHOW_WARNING) {
estark8d67cd7a2016-10-24 05:06:41422 UMA_HISTOGRAM_ENUMERATION("Security.PageInfo.Action.HttpUrl.Warning",
lgarron617a30f32017-03-24 21:42:07423 action, PAGE_INFO_COUNT);
esecklercac56b62016-11-16 13:49:44424 } else if (security_level_ == security_state::DANGEROUS) {
estark8d67cd7a2016-10-24 05:06:41425 UMA_HISTOGRAM_ENUMERATION("Security.PageInfo.Action.HttpUrl.Dangerous",
lgarron617a30f32017-03-24 21:42:07426 action, PAGE_INFO_COUNT);
estark8d67cd7a2016-10-24 05:06:41427 } else {
428 UMA_HISTOGRAM_ENUMERATION("Security.PageInfo.Action.HttpUrl.Neutral",
lgarron617a30f32017-03-24 21:42:07429 action, PAGE_INFO_COUNT);
lgarron04a93502014-11-04 22:25:04430 }
431}
432
lgarron617a30f32017-03-24 21:42:07433void PageInfo::OnSitePermissionChanged(ContentSettingsType type,
434 ContentSetting setting) {
shahriar rostamia9c769d2017-12-06 04:54:08435 tab_specific_content_settings()->ContentSettingChangedViaPageInfo(type);
436
[email protected]e22d64f2012-09-10 09:03:23437 // Count how often a permission for a specific content type is changed using
lgarron617a30f32017-03-24 21:42:07438 // the Page Info UI.
raymes4a13d432015-09-08 00:44:07439 size_t num_values;
440 int histogram_value = ContentSettingTypeToHistogramValue(type, &num_values);
dchengf6f4e4942017-03-30 23:55:57441 UMA_HISTOGRAM_EXACT_LINEAR("WebsiteSettings.OriginInfo.PermissionChanged",
442 histogram_value, num_values);
sashab9debecd2014-12-18 04:15:56443
444 if (setting == ContentSetting::CONTENT_SETTING_ALLOW) {
dchengf6f4e4942017-03-30 23:55:57445 UMA_HISTOGRAM_EXACT_LINEAR(
sashab9debecd2014-12-18 04:15:56446 "WebsiteSettings.OriginInfo.PermissionChanged.Allowed", histogram_value,
raymes4a13d432015-09-08 00:44:07447 num_values);
tommycli34cf29bf2016-09-08 05:46:25448
449 if (type == CONTENT_SETTINGS_TYPE_PLUGINS) {
450 rappor::SampleDomainAndRegistryFromGURL(
451 g_browser_process->rappor_service(),
452 "ContentSettings.Plugins.AddedAllowException", site_url_);
453 }
sashab9debecd2014-12-18 04:15:56454 } else if (setting == ContentSetting::CONTENT_SETTING_BLOCK) {
dchengf6f4e4942017-03-30 23:55:57455 UMA_HISTOGRAM_EXACT_LINEAR(
sashab9debecd2014-12-18 04:15:56456 "WebsiteSettings.OriginInfo.PermissionChanged.Blocked", histogram_value,
raymes4a13d432015-09-08 00:44:07457 num_values);
sashab9debecd2014-12-18 04:15:56458 }
[email protected]e22d64f2012-09-10 09:03:23459
lgarron04a93502014-11-04 22:25:04460 // This is technically redundant given the histogram above, but putting the
461 // total count of permission changes in another histogram makes it easier to
lgarron026e9c42017-04-07 20:09:31462 // compare it against other kinds of actions in Page Info.
lgarron617a30f32017-03-24 21:42:07463 RecordPageInfoAction(PAGE_INFO_CHANGED_PERMISSION);
Tommy Steimeldea90f72017-11-07 20:58:03464 if (type == CONTENT_SETTINGS_TYPE_SOUND) {
465 ContentSetting default_setting =
466 content_settings_->GetDefaultContentSetting(CONTENT_SETTINGS_TYPE_SOUND,
467 nullptr);
468 bool mute = (setting == CONTENT_SETTING_BLOCK) ||
469 (setting == CONTENT_SETTING_DEFAULT &&
470 default_setting == CONTENT_SETTING_BLOCK);
471 if (mute) {
472 base::RecordAction(
473 base::UserMetricsAction("SoundContentSetting.MuteBy.PageInfo"));
474 } else {
475 base::RecordAction(
476 base::UserMetricsAction("SoundContentSetting.UnmuteBy.PageInfo"));
477 }
478 }
lgarron04a93502014-11-04 22:25:04479
stefanocs8b3490cc2016-07-28 05:32:52480 PermissionUtil::ScopedRevocationReporter scoped_revocation_reporter(
patricialor7131c1fe2017-04-07 01:25:52481 profile_, site_url_, site_url_, type, PermissionSourceUI::OIB);
stefanocs8b3490cc2016-07-28 05:32:52482
patricialor7131c1fe2017-04-07 01:25:52483 // The permission may have been blocked due to being under embargo, so if it
484 // was changed away from BLOCK, clear embargo status if it exists.
485 if (setting != CONTENT_SETTING_BLOCK) {
486 PermissionDecisionAutoBlocker::GetForProfile(profile_)->RemoveEmbargoByUrl(
487 site_url_, type);
488 }
raymesfbaaaaa2015-11-10 02:20:40489 content_settings_->SetNarrowestContentSetting(site_url_, site_url_, type,
490 setting);
[email protected]df818272012-04-20 13:10:50491
Tommy Steimel97ee2f82017-11-01 21:39:52492 // When the sound setting is changed, no reload is necessary.
493 if (type != CONTENT_SETTINGS_TYPE_SOUND)
494 show_info_bar_ = true;
[email protected]2f45d542012-08-22 08:47:24495
496 // Refresh the UI to reflect the new setting.
497 PresentSitePermissions();
[email protected]df818272012-04-20 13:10:50498}
499
lgarron617a30f32017-03-24 21:42:07500void PageInfo::OnSiteChosenObjectDeleted(const ChooserUIInfo& ui_info,
Ovidio Henriquez3fc113f2019-04-23 14:37:10501 const base::Value& object) {
reillyg85f57db2016-01-12 23:14:38502 // TODO(reillyg): Create metrics for revocations. crbug.com/556845
503 ChooserContextBase* context = ui_info.get_context(profile_);
reillyg36a7fab32016-01-28 19:15:10504 const GURL origin = site_url_.GetOrigin();
505 context->RevokeObjectPermission(origin, origin, object);
reillyg85f57db2016-01-12 23:14:38506 show_info_bar_ = true;
507
508 // Refresh the UI to reflect the changed settings.
509 PresentSitePermissions();
510}
511
lgarron617a30f32017-03-24 21:42:07512void PageInfo::OnSiteDataAccessed() {
[email protected]df818272012-04-20 13:10:50513 PresentSiteData();
[email protected]0b9fdd72012-04-04 10:00:33514}
515
lgarron617a30f32017-03-24 21:42:07516void PageInfo::OnUIClosing() {
estade3feb83f2015-09-01 23:00:49517#if defined(OS_ANDROID)
518 NOTREACHED();
519#else
dominicknbdd53b5f2016-09-28 01:08:13520 if (show_info_bar_ && web_contents() && !web_contents()->IsBeingDestroyed()) {
palmerf2cba0d2015-08-27 23:15:06521 InfoBarService* infobar_service =
dominicknbdd53b5f2016-09-28 01:08:13522 InfoBarService::FromWebContents(web_contents());
palmerf2cba0d2015-08-27 23:15:06523 if (infobar_service)
lgarron617a30f32017-03-24 21:42:07524 PageInfoInfoBarDelegate::Create(infobar_service);
palmerf2cba0d2015-08-27 23:15:06525 }
estade3feb83f2015-09-01 23:00:49526#endif
jww1ed8ea72014-09-02 20:43:25527}
528
lgarron617a30f32017-03-24 21:42:07529void PageInfo::OnRevokeSSLErrorBypassButtonPressed() {
jww1ed8ea72014-09-02 20:43:25530 DCHECK(chrome_ssl_host_state_delegate_);
jww6a55df72014-09-05 19:59:29531 chrome_ssl_host_state_delegate_->RevokeUserAllowExceptionsHard(
532 site_url().host());
jww1ed8ea72014-09-02 20:43:25533 did_revoke_user_ssl_decisions_ = true;
[email protected]66f157312012-08-01 13:50:26534}
535
Patricia Lora21a04cf2017-06-05 02:53:29536void PageInfo::OpenSiteSettingsView() {
Christopher Lam0dbac2b2017-11-14 07:12:10537#if defined(OS_ANDROID)
538 NOTREACHED();
539#else
540 chrome::ShowSiteSettings(chrome::FindBrowserWithWebContents(web_contents()),
541 site_url());
Patricia Lora21a04cf2017-06-05 02:53:29542 RecordPageInfoAction(PageInfo::PAGE_INFO_SITE_SETTINGS_OPENED);
Christopher Lam0dbac2b2017-11-14 07:12:10543#endif
Patricia Lora21a04cf2017-06-05 02:53:29544}
545
Jialiu Lin11e18542017-08-14 18:16:26546void PageInfo::OnChangePasswordButtonPressed(
547 content::WebContents* web_contents) {
Michael Thiessen4c9e4a82019-03-08 04:39:44548#if defined(FULL_SAFE_BROWSING)
Jialiu Lin11e18542017-08-14 18:16:26549 DCHECK(password_protection_service_);
Jialiu Lind7defe652018-06-20 18:47:06550 DCHECK(site_identity_status_ == SITE_IDENTITY_STATUS_SIGN_IN_PASSWORD_REUSE ||
551 site_identity_status_ ==
552 SITE_IDENTITY_STATUS_ENTERPRISE_PASSWORD_REUSE);
Jialiu Lin3fc7f38f2017-09-21 18:38:37553 password_protection_service_->OnUserAction(
Jialiu Lind7defe652018-06-20 18:47:06554 web_contents,
555 site_identity_status_ == SITE_IDENTITY_STATUS_SIGN_IN_PASSWORD_REUSE
556 ? PasswordReuseEvent::SIGN_IN_PASSWORD
557 : PasswordReuseEvent::ENTERPRISE_PASSWORD,
Jialiu Lina97fe522018-07-26 16:47:26558 safe_browsing::WarningUIType::PAGE_INFO,
559 safe_browsing::WarningAction::CHANGE_PASSWORD);
Jialiu Lin11e18542017-08-14 18:16:26560#endif
561}
562
563void PageInfo::OnWhitelistPasswordReuseButtonPressed(
564 content::WebContents* web_contents) {
Michael Thiessen4c9e4a82019-03-08 04:39:44565#if defined(FULL_SAFE_BROWSING)
Jialiu Lin11e18542017-08-14 18:16:26566 DCHECK(password_protection_service_);
Jialiu Lind7defe652018-06-20 18:47:06567 DCHECK(site_identity_status_ == SITE_IDENTITY_STATUS_SIGN_IN_PASSWORD_REUSE ||
568 site_identity_status_ ==
569 SITE_IDENTITY_STATUS_ENTERPRISE_PASSWORD_REUSE);
Jialiu Lin3fc7f38f2017-09-21 18:38:37570 password_protection_service_->OnUserAction(
Jialiu Lind7defe652018-06-20 18:47:06571 web_contents,
572 site_identity_status_ == SITE_IDENTITY_STATUS_SIGN_IN_PASSWORD_REUSE
573 ? PasswordReuseEvent::SIGN_IN_PASSWORD
574 : PasswordReuseEvent::ENTERPRISE_PASSWORD,
Jialiu Lina97fe522018-07-26 16:47:26575 safe_browsing::WarningUIType::PAGE_INFO,
576 safe_browsing::WarningAction::MARK_AS_LEGITIMATE);
Jialiu Lin11e18542017-08-14 18:16:26577#endif
578}
579
Joe DeBlasioc7187e62019-04-25 21:14:15580void PageInfo::ComputeUIInputs(
Emily Starkd75d54ce2019-03-12 20:23:09581 const GURL& url,
582 security_state::SecurityLevel security_level,
583 const security_state::VisibleSecurityState& visible_security_state) {
thestig0c55ee32017-06-20 22:17:51584#if !defined(OS_ANDROID)
meacerde53fcff2016-10-12 19:21:57585 // On desktop, internal URLs aren't handled by this class. Instead, a
lgarron026e9c42017-04-07 20:09:31586 // custom and simpler bubble is shown.
meacerde53fcff2016-10-12 19:21:57587 DCHECK(!url.SchemeIs(content::kChromeUIScheme) &&
588 !url.SchemeIs(content::kChromeDevToolsScheme) &&
589 !url.SchemeIs(content::kViewSourceScheme) &&
590 !url.SchemeIs(content_settings::kExtensionScheme));
591#endif
592
thestig0c55ee32017-06-20 22:17:51593 bool is_chrome_ui_native_scheme = false;
zpengdb4a58e2017-01-10 17:40:32594#if defined(OS_ANDROID)
thestig0c55ee32017-06-20 22:17:51595 is_chrome_ui_native_scheme = url.SchemeIs(chrome::kChromeUINativeScheme);
sashab97894ce2014-10-22 10:08:33596#endif
597
Emily Starkd75d54ce2019-03-12 20:23:09598 security_level_ = security_level;
estark8d67cd7a2016-10-24 05:06:41599
upendrag.gowda60886a6e2015-10-31 05:51:09600 if (url.SchemeIs(url::kAboutScheme)) {
601 // All about: URLs except about:blank are redirected.
602 DCHECK_EQ(url::kAboutBlankURL, url.spec());
603 site_identity_status_ = SITE_IDENTITY_STATUS_NO_CERT;
604 site_identity_details_ =
605 l10n_util::GetStringUTF16(IDS_PAGE_INFO_SECURITY_TAB_INSECURE_IDENTITY);
606 site_connection_status_ = SITE_CONNECTION_STATUS_UNENCRYPTED;
607 site_connection_details_ = l10n_util::GetStringFUTF16(
608 IDS_PAGE_INFO_SECURITY_TAB_NOT_ENCRYPTED_CONNECTION_TEXT,
609 UTF8ToUTF16(url.spec()));
610 return;
611 }
612
thestig0c55ee32017-06-20 22:17:51613 if (url.SchemeIs(content::kChromeUIScheme) || is_chrome_ui_native_scheme) {
[email protected]03ef4b2a2012-03-06 15:04:20614 site_identity_status_ = SITE_IDENTITY_STATUS_INTERNAL_PAGE;
615 site_identity_details_ =
616 l10n_util::GetStringUTF16(IDS_PAGE_INFO_INTERNAL_PAGE);
617 site_connection_status_ = SITE_CONNECTION_STATUS_INTERNAL_PAGE;
618 return;
619 }
620
[email protected]03ef4b2a2012-03-06 15:04:20621 // Identity section.
Emily Starkd75d54ce2019-03-12 20:23:09622 certificate_ = visible_security_state.certificate;
[email protected]f61c1ce2012-05-09 13:55:11623
Emily Starkd75d54ce2019-03-12 20:23:09624 if (visible_security_state.malicious_content_status !=
esecklercac56b62016-11-16 13:49:44625 security_state::MALICIOUS_CONTENT_STATUS_NONE) {
estarkfcfccdb82016-11-14 02:17:29626 // The site has been flagged by Safe Browsing as dangerous.
627 GetSiteIdentityByMaliciousContentStatus(
Emily Starkd75d54ce2019-03-12 20:23:09628 visible_security_state.malicious_content_status, &site_identity_status_,
estarkfcfccdb82016-11-14 02:17:29629 &site_identity_details_);
Joe DeBlasioc7187e62019-04-25 21:14:15630#if defined(FULL_SAFE_BROWSING)
631 bool old_show_change_pw_buttons = show_change_password_buttons_;
632#endif
Jialiu Lin11e18542017-08-14 18:16:26633 show_change_password_buttons_ =
Emily Starkd75d54ce2019-03-12 20:23:09634 (visible_security_state.malicious_content_status ==
Jialiu Lind7defe652018-06-20 18:47:06635 security_state::MALICIOUS_CONTENT_STATUS_SIGN_IN_PASSWORD_REUSE ||
Emily Starkd75d54ce2019-03-12 20:23:09636 visible_security_state.malicious_content_status ==
Jialiu Lind7defe652018-06-20 18:47:06637 security_state::
638 MALICIOUS_CONTENT_STATUS_ENTERPRISE_PASSWORD_REUSE);
Joe DeBlasioc7187e62019-04-25 21:14:15639#if defined(FULL_SAFE_BROWSING)
640 // Only record password reuse when adding the button, not on updates.
641 if (show_change_password_buttons_ && !old_show_change_pw_buttons) {
642 RecordPasswordReuseEvent();
643 }
644#endif
estarkfcfccdb82016-11-14 02:17:29645 } else if (certificate_ &&
Emily Starkd75d54ce2019-03-12 20:23:09646 (!net::IsCertStatusError(visible_security_state.cert_status) ||
647 net::IsCertStatusMinorError(
648 visible_security_state.cert_status))) {
estarkfcfccdb82016-11-14 02:17:29649 // HTTPS with no or minor errors.
Emily Starkd75d54ce2019-03-12 20:23:09650 if (security_level == security_state::SECURE_WITH_POLICY_INSTALLED_CERT) {
Eric Lawrence6758d1d2017-11-21 16:06:05651#if defined(OS_CHROMEOS)
[email protected]eaf3f322013-04-25 21:53:59652 site_identity_status_ = SITE_IDENTITY_STATUS_ADMIN_PROVIDED_CERT;
[email protected]24a9f1c92013-11-13 12:33:37653 site_identity_details_ = l10n_util::GetStringFUTF16(
654 IDS_CERT_POLICY_PROVIDED_CERT_MESSAGE, UTF8ToUTF16(url.host()));
Eric Lawrence6758d1d2017-11-21 16:06:05655#else
656 DCHECK(false) << "Policy certificates exist only on ChromeOS";
657#endif
Emily Starkd75d54ce2019-03-12 20:23:09658 } else if (net::IsCertStatusMinorError(
659 visible_security_state.cert_status)) {
[email protected]03ef4b2a2012-03-06 15:04:20660 site_identity_status_ = SITE_IDENTITY_STATUS_CERT_REVOCATION_UNKNOWN;
jam8ae7cad2016-09-08 23:55:21661 base::string16 issuer_name(
662 UTF8ToUTF16(certificate_->issuer().GetDisplayName()));
[email protected]03ef4b2a2012-03-06 15:04:20663 if (issuer_name.empty()) {
664 issuer_name.assign(l10n_util::GetStringUTF16(
665 IDS_PAGE_INFO_SECURITY_TAB_UNKNOWN_PARTY));
666 }
[email protected]94c74b42013-12-02 15:19:49667
[email protected]03ef4b2a2012-03-06 15:04:20668 site_identity_details_.assign(l10n_util::GetStringFUTF16(
estarkcf305562016-11-15 03:45:39669 IDS_PAGE_INFO_SECURITY_TAB_SECURE_IDENTITY_VERIFIED, issuer_name));
[email protected]03ef4b2a2012-03-06 15:04:20670
671 site_identity_details_ += ASCIIToUTF16("\n\n");
Emily Starkd75d54ce2019-03-12 20:23:09672 if (visible_security_state.cert_status &
estarka3121f6b2015-09-18 21:15:59673 net::CERT_STATUS_UNABLE_TO_CHECK_REVOCATION) {
[email protected]03ef4b2a2012-03-06 15:04:20674 site_identity_details_ += l10n_util::GetStringUTF16(
675 IDS_PAGE_INFO_SECURITY_TAB_UNABLE_TO_CHECK_REVOCATION);
Emily Starkd75d54ce2019-03-12 20:23:09676 } else if (visible_security_state.cert_status &
estarka3121f6b2015-09-18 21:15:59677 net::CERT_STATUS_NO_REVOCATION_MECHANISM) {
[email protected]03ef4b2a2012-03-06 15:04:20678 site_identity_details_ += l10n_util::GetStringUTF16(
679 IDS_PAGE_INFO_SECURITY_TAB_NO_REVOCATION_MECHANISM);
680 } else {
681 NOTREACHED() << "Need to specify string for this warning";
682 }
[email protected]03ef4b2a2012-03-06 15:04:20683 } else {
estarkcf305562016-11-15 03:45:39684 // No major or minor errors.
Emily Starkd75d54ce2019-03-12 20:23:09685 if (visible_security_state.cert_status & net::CERT_STATUS_IS_EV) {
rsleevi4f8012722014-09-30 01:28:01686 // EV HTTPS page.
estarkcf305562016-11-15 03:45:39687 site_identity_status_ = SITE_IDENTITY_STATUS_EV_CERT;
jam8ae7cad2016-09-08 23:55:21688 DCHECK(!certificate_->subject().organization_names.empty());
689 organization_name_ =
690 UTF8ToUTF16(certificate_->subject().organization_names[0]);
rsleevi4f8012722014-09-30 01:28:01691 // An EV Cert is required to have a city (localityName) and country but
692 // state is "if any".
jam8ae7cad2016-09-08 23:55:21693 DCHECK(!certificate_->subject().locality_name.empty());
694 DCHECK(!certificate_->subject().country_name.empty());
rsleevi4f8012722014-09-30 01:28:01695 base::string16 locality;
jam8ae7cad2016-09-08 23:55:21696 if (!certificate_->subject().state_or_province_name.empty()) {
rsleevi4f8012722014-09-30 01:28:01697 locality = l10n_util::GetStringFUTF16(
lgarronfc1d5e52017-05-03 23:15:21698 IDS_PAGE_INFO_ADDRESS,
jam8ae7cad2016-09-08 23:55:21699 UTF8ToUTF16(certificate_->subject().locality_name),
700 UTF8ToUTF16(certificate_->subject().state_or_province_name),
701 UTF8ToUTF16(certificate_->subject().country_name));
rsleevi4f8012722014-09-30 01:28:01702 } else {
703 locality = l10n_util::GetStringFUTF16(
lgarronfc1d5e52017-05-03 23:15:21704 IDS_PAGE_INFO_PARTIAL_ADDRESS,
jam8ae7cad2016-09-08 23:55:21705 UTF8ToUTF16(certificate_->subject().locality_name),
706 UTF8ToUTF16(certificate_->subject().country_name));
rsleevi4f8012722014-09-30 01:28:01707 }
jam8ae7cad2016-09-08 23:55:21708 DCHECK(!certificate_->subject().organization_names.empty());
rsleevi4f8012722014-09-30 01:28:01709 site_identity_details_.assign(l10n_util::GetStringFUTF16(
estarkcf305562016-11-15 03:45:39710 IDS_PAGE_INFO_SECURITY_TAB_SECURE_IDENTITY_EV_VERIFIED,
jam8ae7cad2016-09-08 23:55:21711 UTF8ToUTF16(certificate_->subject().organization_names[0]),
estarkcf305562016-11-15 03:45:39712 locality, UTF8ToUTF16(certificate_->issuer().GetDisplayName())));
rsleevi4f8012722014-09-30 01:28:01713 } else {
714 // Non-EV OK HTTPS page.
estarkcf305562016-11-15 03:45:39715 site_identity_status_ = SITE_IDENTITY_STATUS_CERT;
rsleevi4f8012722014-09-30 01:28:01716 base::string16 issuer_name(
jam8ae7cad2016-09-08 23:55:21717 UTF8ToUTF16(certificate_->issuer().GetDisplayName()));
rsleevi4f8012722014-09-30 01:28:01718 if (issuer_name.empty()) {
719 issuer_name.assign(l10n_util::GetStringUTF16(
720 IDS_PAGE_INFO_SECURITY_TAB_UNKNOWN_PARTY));
721 }
[email protected]94c74b42013-12-02 15:19:49722
rsleevi4f8012722014-09-30 01:28:01723 site_identity_details_.assign(l10n_util::GetStringFUTF16(
estarkcf305562016-11-15 03:45:39724 IDS_PAGE_INFO_SECURITY_TAB_SECURE_IDENTITY_VERIFIED, issuer_name));
rsleevi4f8012722014-09-30 01:28:01725 }
Emily Starkd75d54ce2019-03-12 20:23:09726 if (security_state::IsSHA1InChain(visible_security_state)) {
elawrencebe87bd62017-01-10 16:08:59727 site_identity_status_ =
728 SITE_IDENTITY_STATUS_DEPRECATED_SIGNATURE_ALGORITHM;
729 site_identity_details_ +=
730 UTF8ToUTF16("\n\n") +
731 l10n_util::GetStringUTF16(
732 IDS_PAGE_INFO_SECURITY_TAB_DEPRECATED_SIGNATURE_ALGORITHM);
rsleevi4f8012722014-09-30 01:28:01733 }
[email protected]03ef4b2a2012-03-06 15:04:20734 }
735 } else {
736 // HTTP or HTTPS with errors (not warnings).
737 site_identity_details_.assign(l10n_util::GetStringUTF16(
738 IDS_PAGE_INFO_SECURITY_TAB_INSECURE_IDENTITY));
Emily Starkd75d54ce2019-03-12 20:23:09739 if (!security_state::IsSchemeCryptographic(visible_security_state.url) ||
740 !visible_security_state.certificate) {
[email protected]03ef4b2a2012-03-06 15:04:20741 site_identity_status_ = SITE_IDENTITY_STATUS_NO_CERT;
Emily Starkd75d54ce2019-03-12 20:23:09742 } else {
[email protected]03ef4b2a2012-03-06 15:04:20743 site_identity_status_ = SITE_IDENTITY_STATUS_ERROR;
Emily Starkd75d54ce2019-03-12 20:23:09744 }
[email protected]03ef4b2a2012-03-06 15:04:20745
[email protected]a04db822013-12-11 19:14:40746 const base::string16 bullet = UTF8ToUTF16("\n • ");
felt2493b4452015-09-17 20:33:59747 std::vector<ssl_errors::ErrorInfo> errors;
estarka3121f6b2015-09-18 21:15:59748 ssl_errors::ErrorInfo::GetErrorsForCertStatus(
Emily Starkd75d54ce2019-03-12 20:23:09749 certificate_, visible_security_state.cert_status, url, &errors);
[email protected]03ef4b2a2012-03-06 15:04:20750 for (size_t i = 0; i < errors.size(); ++i) {
751 site_identity_details_ += bullet;
752 site_identity_details_ += errors[i].short_description();
753 }
754
Emily Starkd75d54ce2019-03-12 20:23:09755 if (visible_security_state.cert_status & net::CERT_STATUS_NON_UNIQUE_NAME) {
[email protected]03ef4b2a2012-03-06 15:04:20756 site_identity_details_ += ASCIIToUTF16("\n\n");
lgarron1a6300d2017-03-18 03:33:04757 site_identity_details_ +=
758 l10n_util::GetStringUTF16(IDS_PAGE_INFO_SECURITY_TAB_NON_UNIQUE_NAME);
[email protected]03ef4b2a2012-03-06 15:04:20759 }
760 }
761
762 // Site Connection
763 // We consider anything less than 80 bits encryption to be weak encryption.
764 // TODO(wtc): Bug 1198735: report mixed/unsafe content for unencrypted and
765 // weakly encrypted connections.
766 site_connection_status_ = SITE_CONNECTION_STATUS_UNKNOWN;
767
jshin1fb76462016-04-05 22:13:03768 base::string16 subject_name(GetSimpleSiteName(url));
palmer153af982015-09-15 02:04:19769 if (subject_name.empty()) {
770 subject_name.assign(
771 l10n_util::GetStringUTF16(IDS_PAGE_INFO_SECURITY_TAB_UNKNOWN_PARTY));
772 }
773
Emily Starkd75d54ce2019-03-12 20:23:09774 if (!visible_security_state.certificate ||
775 !security_state::IsSchemeCryptographic(visible_security_state.url)) {
estarka3121f6b2015-09-18 21:15:59776 // Page is still loading (so SSL status is not yet available) or
777 // loaded over HTTP or loaded over HTTPS with no cert.
[email protected]1c1051d2014-05-10 11:39:58778 site_connection_status_ = SITE_CONNECTION_STATUS_UNENCRYPTED;
779
780 site_connection_details_.assign(l10n_util::GetStringFUTF16(
781 IDS_PAGE_INFO_SECURITY_TAB_NOT_ENCRYPTED_CONNECTION_TEXT,
782 subject_name));
Emily Starkd75d54ce2019-03-12 20:23:09783 } else if (!visible_security_state.connection_info_initialized) {
784 DCHECK_NE(security_level, security_state::NONE);
[email protected]03ef4b2a2012-03-06 15:04:20785 site_connection_status_ = SITE_CONNECTION_STATUS_ENCRYPTED_ERROR;
[email protected]03ef4b2a2012-03-06 15:04:20786 } else {
787 site_connection_status_ = SITE_CONNECTION_STATUS_ENCRYPTED;
Adam Langley71c2b59b2014-11-13 00:34:22788
Emily Starkd75d54ce2019-03-12 20:23:09789 if (net::ObsoleteSSLStatus(
790 visible_security_state.connection_status,
791 visible_security_state.peer_signature_algorithm) ==
792 net::OBSOLETE_SSL_NONE) {
Adam Langley71c2b59b2014-11-13 00:34:22793 site_connection_details_.assign(l10n_util::GetStringFUTF16(
lgarron1a6300d2017-03-18 03:33:04794 IDS_PAGE_INFO_SECURITY_TAB_ENCRYPTED_CONNECTION_TEXT, subject_name));
Adam Langley71c2b59b2014-11-13 00:34:22795 } else {
796 site_connection_details_.assign(l10n_util::GetStringFUTF16(
797 IDS_PAGE_INFO_SECURITY_TAB_WEAK_ENCRYPTION_CONNECTION_TEXT,
798 subject_name));
799 }
800
Emily Starkd75d54ce2019-03-12 20:23:09801 ReportAnyInsecureContent(visible_security_state, &site_connection_status_,
thestig4427f13b2017-06-20 20:42:47802 &site_connection_details_);
[email protected]03ef4b2a2012-03-06 15:04:20803 }
804
Emily Starkd75d54ce2019-03-12 20:23:09805 uint16_t cipher_suite = net::SSLConnectionStatusToCipherSuite(
806 visible_security_state.connection_status);
807 if (visible_security_state.connection_info_initialized && cipher_suite) {
808 int ssl_version = net::SSLConnectionStatusToVersion(
809 visible_security_state.connection_status);
[email protected]03ef4b2a2012-03-06 15:04:20810 const char* ssl_version_str;
811 net::SSLVersionToString(&ssl_version_str, ssl_version);
812 site_connection_details_ += ASCIIToUTF16("\n\n");
813 site_connection_details_ += l10n_util::GetStringFUTF16(
lgarron1a6300d2017-03-18 03:33:04814 IDS_PAGE_INFO_SECURITY_TAB_SSL_VERSION, ASCIIToUTF16(ssl_version_str));
[email protected]03ef4b2a2012-03-06 15:04:20815
[email protected]03ef4b2a2012-03-06 15:04:20816 const char *key_exchange, *cipher, *mac;
davidben56a8aece2016-10-14 18:20:56817 bool is_aead, is_tls13;
818 net::SSLCipherSuiteToStrings(&key_exchange, &cipher, &mac, &is_aead,
819 &is_tls13, cipher_suite);
[email protected]03ef4b2a2012-03-06 15:04:20820
821 site_connection_details_ += ASCIIToUTF16("\n\n");
[email protected]b6c1d9e82013-06-12 17:26:57822 if (is_aead) {
davidben56a8aece2016-10-14 18:20:56823 if (is_tls13) {
824 // For TLS 1.3 ciphers, report the group (historically, curve) as the
825 // key exchange.
Emily Starkd75d54ce2019-03-12 20:23:09826 key_exchange =
827 SSL_get_curve_name(visible_security_state.key_exchange_group);
davidben56a8aece2016-10-14 18:20:56828 if (!key_exchange) {
829 NOTREACHED();
830 key_exchange = "";
831 }
832 }
[email protected]b6c1d9e82013-06-12 17:26:57833 site_connection_details_ += l10n_util::GetStringFUTF16(
834 IDS_PAGE_INFO_SECURITY_TAB_ENCRYPTION_DETAILS_AEAD,
835 ASCIIToUTF16(cipher), ASCIIToUTF16(key_exchange));
836 } else {
837 site_connection_details_ += l10n_util::GetStringFUTF16(
lgarron1a6300d2017-03-18 03:33:04838 IDS_PAGE_INFO_SECURITY_TAB_ENCRYPTION_DETAILS, ASCIIToUTF16(cipher),
839 ASCIIToUTF16(mac), ASCIIToUTF16(key_exchange));
[email protected]b6c1d9e82013-06-12 17:26:57840 }
[email protected]03ef4b2a2012-03-06 15:04:20841 }
[email protected]e583f752012-08-30 13:26:21842
[email protected]71cd5ef2014-08-13 21:22:04843 // Check if a user decision has been made to allow or deny certificates with
844 // errors on this site.
845 ChromeSSLHostStateDelegate* delegate =
estark7c6bfbf2015-09-16 22:20:50846 ChromeSSLHostStateDelegateFactory::GetForProfile(profile_);
[email protected]71cd5ef2014-08-13 21:22:04847 DCHECK(delegate);
jwwf806c362015-06-02 02:00:40848 // Only show an SSL decision revoke button if the user has chosen to bypass
849 // SSL host errors for this host in the past.
850 show_ssl_decision_revoke_button_ = delegate->HasAllowException(url.host());
[email protected]03ef4b2a2012-03-06 15:04:20851}
[email protected]0b9fdd72012-04-04 10:00:33852
lgarron617a30f32017-03-24 21:42:07853void PageInfo::PresentSitePermissions() {
[email protected]df818272012-04-20 13:10:50854 PermissionInfoList permission_info_list;
reillyg85f57db2016-01-12 23:14:38855 ChosenObjectInfoList chosen_object_info_list;
[email protected]df818272012-04-20 13:10:50856
lgarron617a30f32017-03-24 21:42:07857 PageInfoUI::PermissionInfo permission_info;
Avi Drissman22f82872018-12-25 23:09:07858 for (size_t i = 0; i < base::size(kPermissionType); ++i) {
[email protected]df818272012-04-20 13:10:50859 permission_info.type = kPermissionType[i];
860
861 content_settings::SettingInfo info;
dcheng9603ab92016-04-08 04:17:32862 std::unique_ptr<base::Value> value = content_settings_->GetWebsiteSetting(
863 site_url_, site_url_, permission_info.type, std::string(), &info);
sashab2b2a314f2015-01-17 06:42:21864 DCHECK(value.get());
jdoerrie76cee9c2017-10-06 22:42:42865 if (value->type() == base::Value::Type::INTEGER) {
sashab2b2a314f2015-01-17 06:42:21866 permission_info.setting =
867 content_settings::ValueToContentSetting(value.get());
[email protected]fe4686a2012-10-19 15:38:26868 } else {
sashab2b2a314f2015-01-17 06:42:21869 NOTREACHED();
[email protected]fe4686a2012-10-19 15:38:26870 }
871
[email protected]8bdf45c32012-08-04 00:12:55872 permission_info.source = info.source;
johnme9ed93882016-01-15 01:13:28873 permission_info.is_incognito = profile_->IsOffTheRecord();
[email protected]df818272012-04-20 13:10:50874
[email protected]b1d113d2012-06-27 21:27:34875 if (info.primary_pattern == ContentSettingsPattern::Wildcard() &&
sashab2b2a314f2015-01-17 06:42:21876 info.secondary_pattern == ContentSettingsPattern::Wildcard()) {
[email protected]b1d113d2012-06-27 21:27:34877 permission_info.default_setting = permission_info.setting;
878 permission_info.setting = CONTENT_SETTING_DEFAULT;
879 } else {
880 permission_info.default_setting =
881 content_settings_->GetDefaultContentSetting(permission_info.type,
882 NULL);
[email protected]df818272012-04-20 13:10:50883 }
palmer0da10b32015-02-11 00:42:19884
patricialor2a4f41a2017-03-08 02:52:56885 // For permissions that are still prompting the user and haven't been
886 // explicitly set by another source, check its embargo status.
887 if (PermissionUtil::IsPermission(permission_info.type) &&
888 permission_info.setting == CONTENT_SETTING_DEFAULT &&
889 permission_info.source ==
890 content_settings::SettingSource::SETTING_SOURCE_USER) {
891 // TODO(raymes): Use GetPermissionStatus() to retrieve information
892 // about *all* permissions once it has default behaviour implemented for
893 // ContentSettingTypes that aren't permissions.
894 PermissionResult permission_result =
895 PermissionManager::Get(profile_)->GetPermissionStatus(
896 permission_info.type, site_url_, site_url_);
897
898 // If under embargo, update |permission_info| to reflect that.
899 if (permission_result.content_setting == CONTENT_SETTING_BLOCK &&
Timothy Loh8fbdac52018-03-15 03:34:30900 permission_result.source ==
901 PermissionStatusSource::MULTIPLE_DISMISSALS) {
patricialor2a4f41a2017-03-08 02:52:56902 permission_info.setting = permission_result.content_setting;
Timothy Loh8fbdac52018-03-15 03:34:30903 }
patricialor2a4f41a2017-03-08 02:52:56904 }
905
Tommy Steimelc9f6c932017-10-13 23:33:04906 if (ShouldShowPermission(permission_info, site_url_, content_settings_,
shahriar rostamia9c769d2017-12-06 04:54:08907 web_contents(), tab_specific_content_settings())) {
Patti0601e532017-09-20 08:39:30908 permission_info_list.push_back(permission_info);
Tommy Steimelc9f6c932017-10-13 23:33:04909 }
[email protected]df818272012-04-20 13:10:50910 }
911
reillyg85f57db2016-01-12 23:14:38912 for (const ChooserUIInfo& ui_info : kChooserUIInfo) {
913 ChooserContextBase* context = ui_info.get_context(profile_);
reillyg36a7fab32016-01-28 19:15:10914 const GURL origin = site_url_.GetOrigin();
Reilly Granta69ab672018-04-06 18:26:07915
reillyg36a7fab32016-01-28 19:15:10916 auto chosen_objects = context->GetGrantedObjects(origin, origin);
Ovidio Henriquez0e7c32a2019-01-16 03:15:29917 for (std::unique_ptr<ChooserContextBase::Object>& object : chosen_objects) {
reillyg85f57db2016-01-12 23:14:38918 chosen_object_info_list.push_back(
Jinho Bangcc280792018-01-17 23:33:55919 std::make_unique<PageInfoUI::ChosenObjectInfo>(ui_info,
lgarron617a30f32017-03-24 21:42:07920 std::move(object)));
reillyg85f57db2016-01-12 23:14:38921 }
922 }
923
avi09dd4d02016-10-14 20:40:09924 ui_->SetPermissionInfo(permission_info_list,
925 std::move(chosen_object_info_list));
[email protected]0b9fdd72012-04-04 10:00:33926}
927
lgarron617a30f32017-03-24 21:42:07928void PageInfo::PresentSiteData() {
[email protected]df818272012-04-20 13:10:50929 CookieInfoList cookie_info_list;
vabrbab3ffcb2016-10-04 10:08:10930 const LocalSharedObjectsContainer& allowed_objects =
[email protected]e0ac35892012-05-15 12:53:34931 tab_specific_content_settings()->allowed_local_shared_objects();
vabrbab3ffcb2016-10-04 10:08:10932 const LocalSharedObjectsContainer& blocked_objects =
[email protected]e0ac35892012-05-15 12:53:34933 tab_specific_content_settings()->blocked_local_shared_objects();
934
935 // Add first party cookie and site data counts.
lgarron617a30f32017-03-24 21:42:07936 PageInfoUI::CookieInfo cookie_info;
[email protected]e0ac35892012-05-15 12:53:34937 cookie_info.allowed = allowed_objects.GetObjectCountForDomain(site_url_);
938 cookie_info.blocked = blocked_objects.GetObjectCountForDomain(site_url_);
palmerb145264922015-08-28 23:53:15939 cookie_info.is_first_party = true;
[email protected]e0ac35892012-05-15 12:53:34940 cookie_info_list.push_back(cookie_info);
941
942 // Add third party cookie counts.
[email protected]e0ac35892012-05-15 12:53:34943 cookie_info.allowed = allowed_objects.GetObjectCount() - cookie_info.allowed;
944 cookie_info.blocked = blocked_objects.GetObjectCount() - cookie_info.blocked;
palmerb145264922015-08-28 23:53:15945 cookie_info.is_first_party = false;
[email protected]df818272012-04-20 13:10:50946 cookie_info_list.push_back(cookie_info);
[email protected]0b9fdd72012-04-04 10:00:33947
[email protected]df818272012-04-20 13:10:50948 ui_->SetCookieInfo(cookie_info_list);
[email protected]0b9fdd72012-04-04 10:00:33949}
[email protected]16de6de2012-04-04 12:24:14950
lgarron617a30f32017-03-24 21:42:07951void PageInfo::PresentSiteIdentity() {
palmerf9b680a2015-07-09 18:56:04952 // After initialization the status about the site's connection and its
953 // identity must be available.
[email protected]24c8818c2012-04-25 09:57:41954 DCHECK_NE(site_identity_status_, SITE_IDENTITY_STATUS_UNKNOWN);
955 DCHECK_NE(site_connection_status_, SITE_CONNECTION_STATUS_UNKNOWN);
lgarron617a30f32017-03-24 21:42:07956 PageInfoUI::IdentityInfo info;
[email protected]24c8818c2012-04-25 09:57:41957 if (site_identity_status_ == SITE_IDENTITY_STATUS_EV_CERT)
958 info.site_identity = UTF16ToUTF8(organization_name());
959 else
jshin1fb76462016-04-05 22:13:03960 info.site_identity = UTF16ToUTF8(GetSimpleSiteName(site_url_));
[email protected]24c8818c2012-04-25 09:57:41961
962 info.connection_status = site_connection_status_;
lgarron1a6300d2017-03-18 03:33:04963 info.connection_status_description = UTF16ToUTF8(site_connection_details_);
[email protected]24c8818c2012-04-25 09:57:41964 info.identity_status = site_identity_status_;
lgarron1a6300d2017-03-18 03:33:04965 info.identity_status_description = UTF16ToUTF8(site_identity_details_);
jam8ae7cad2016-09-08 23:55:21966 info.certificate = certificate_;
[email protected]71cd5ef2014-08-13 21:22:04967 info.show_ssl_decision_revoke_button = show_ssl_decision_revoke_button_;
Jialiu Lin11e18542017-08-14 18:16:26968 info.show_change_password_buttons = show_change_password_buttons_;
[email protected]24c8818c2012-04-25 09:57:41969 ui_->SetIdentityInfo(info);
[email protected]24c8818c2012-04-25 09:57:41970}
Patti7f21c4b2017-11-28 03:37:17971
Suman Kancherlad54a6e5b2019-01-29 22:17:49972void PageInfo::PresentPageFeatureInfo() {
973 PageInfoUI::PageFeatureInfo info;
974 info.is_vr_presentation_in_headset =
975 vr::VrTabHelper::IsContentDisplayedInHeadset(web_contents());
976
977 ui_->SetPageFeatureInfo(info);
978}
979
Joe DeBlasioc7187e62019-04-25 21:14:15980#if defined(FULL_SAFE_BROWSING)
981void PageInfo::RecordPasswordReuseEvent() {
982 if (!password_protection_service_) {
983 return;
984 }
985
986 if (site_identity_status_ == SITE_IDENTITY_STATUS_SIGN_IN_PASSWORD_REUSE) {
987 safe_browsing::LogWarningAction(
988 safe_browsing::WarningUIType::PAGE_INFO,
989 safe_browsing::WarningAction::SHOWN,
990 safe_browsing::LoginReputationClientRequest::PasswordReuseEvent::
991 SIGN_IN_PASSWORD,
992 password_protection_service_->GetSyncAccountType());
993 } else {
994 safe_browsing::LogWarningAction(
995 safe_browsing::WarningUIType::PAGE_INFO,
996 safe_browsing::WarningAction::SHOWN,
997 safe_browsing::LoginReputationClientRequest::PasswordReuseEvent::
998 ENTERPRISE_PASSWORD,
999 password_protection_service_->GetSyncAccountType());
1000 }
1001}
1002#endif
1003
Patti7f21c4b2017-11-28 03:37:171004std::vector<ContentSettingsType> PageInfo::GetAllPermissionsForTesting() {
1005 std::vector<ContentSettingsType> permission_list;
Avi Drissman22f82872018-12-25 23:09:071006 for (size_t i = 0; i < base::size(kPermissionType); ++i) {
Patti7f21c4b2017-11-28 03:37:171007#if !defined(OS_ANDROID)
1008 if (kPermissionType[i] == CONTENT_SETTINGS_TYPE_AUTOPLAY)
1009 continue;
1010#endif
1011 permission_list.push_back(kPermissionType[i]);
1012 }
1013 return permission_list;
1014}
Jialiu Lin4d7c6042018-04-04 17:45:351015
1016void PageInfo::GetSiteIdentityByMaliciousContentStatus(
1017 security_state::MaliciousContentStatus malicious_content_status,
1018 PageInfo::SiteIdentityStatus* status,
1019 base::string16* details) {
1020 switch (malicious_content_status) {
1021 case security_state::MALICIOUS_CONTENT_STATUS_NONE:
1022 NOTREACHED();
1023 break;
1024 case security_state::MALICIOUS_CONTENT_STATUS_MALWARE:
1025 *status = PageInfo::SITE_IDENTITY_STATUS_MALWARE;
1026 *details = l10n_util::GetStringUTF16(IDS_PAGE_INFO_MALWARE_DETAILS);
1027 break;
1028 case security_state::MALICIOUS_CONTENT_STATUS_SOCIAL_ENGINEERING:
1029 *status = PageInfo::SITE_IDENTITY_STATUS_SOCIAL_ENGINEERING;
1030 *details =
1031 l10n_util::GetStringUTF16(IDS_PAGE_INFO_SOCIAL_ENGINEERING_DETAILS);
1032 break;
1033 case security_state::MALICIOUS_CONTENT_STATUS_UNWANTED_SOFTWARE:
1034 *status = PageInfo::SITE_IDENTITY_STATUS_UNWANTED_SOFTWARE;
1035 *details =
1036 l10n_util::GetStringUTF16(IDS_PAGE_INFO_UNWANTED_SOFTWARE_DETAILS);
1037 break;
Jialiu Lind7defe652018-06-20 18:47:061038 case security_state::MALICIOUS_CONTENT_STATUS_SIGN_IN_PASSWORD_REUSE:
Michael Thiessen4c9e4a82019-03-08 04:39:441039#if defined(FULL_SAFE_BROWSING)
Jialiu Lind7defe652018-06-20 18:47:061040 *status = PageInfo::SITE_IDENTITY_STATUS_SIGN_IN_PASSWORD_REUSE;
1041 // |password_protection_service_| may be null in test.
1042 *details = password_protection_service_
1043 ? password_protection_service_->GetWarningDetailText(
1044 PasswordReuseEvent::SIGN_IN_PASSWORD)
1045 : base::string16();
1046#endif
1047 break;
1048 case security_state::MALICIOUS_CONTENT_STATUS_ENTERPRISE_PASSWORD_REUSE:
Michael Thiessen4c9e4a82019-03-08 04:39:441049#if defined(FULL_SAFE_BROWSING)
Jialiu Lind7defe652018-06-20 18:47:061050 *status = PageInfo::SITE_IDENTITY_STATUS_ENTERPRISE_PASSWORD_REUSE;
1051 // |password_protection_service_| maybe null in test.
1052 *details = password_protection_service_
1053 ? password_protection_service_->GetWarningDetailText(
1054 PasswordReuseEvent::ENTERPRISE_PASSWORD)
1055 : base::string16();
Jialiu Lin4d7c6042018-04-04 17:45:351056#endif
1057 break;
spqchan6da308a2018-08-10 19:19:531058 case security_state::MALICIOUS_CONTENT_STATUS_BILLING:
spqchan6da308a2018-08-10 19:19:531059 *status = PageInfo::SITE_IDENTITY_STATUS_BILLING;
1060 *details = l10n_util::GetStringUTF16(IDS_PAGE_INFO_BILLING_DETAILS);
spqchan6da308a2018-08-10 19:19:531061 break;
Jialiu Lin4d7c6042018-04-04 17:45:351062 }
1063}