blob: e70fcfe5544d2cc6572f671cf38bf3cd5e31ea0b [file] [log] [blame]
[email protected]03ef4b2a2012-03-06 15:04:201// Copyright (c) 2012 The Chromium Authors. All rights reserved.
2// Use of this source code is governed by a BSD-style license that can be
3// found in the LICENSE file.
4
lgarron617a30f32017-03-24 21:42:075#include "chrome/browser/ui/page_info/page_info.h"
[email protected]03ef4b2a2012-03-06 15:04:206
avi655876a2015-12-25 07:18:157#include <stddef.h>
8#include <stdint.h>
9
Eric Lawrence6758d1d2017-11-21 16:06:0510#include <memory>
[email protected]03ef4b2a2012-03-06 15:04:2011#include <string>
Eric Lawrence6758d1d2017-11-21 16:06:0512#include <utility>
[email protected]03ef4b2a2012-03-06 15:04:2013#include <vector>
14
[email protected]eb2140c2013-07-29 12:37:3415#include "base/command_line.h"
[email protected]15b092542012-05-16 13:08:1416#include "base/i18n/time_formatting.h"
[email protected]71cd5ef2014-08-13 21:22:0417#include "base/metrics/field_trial.h"
Christopher Thompson0c4e06c22018-07-11 22:29:5918#include "base/metrics/histogram_functions.h"
asvitkine75036032016-09-01 20:49:3419#include "base/metrics/histogram_macros.h"
Tommy Steimeldea90f72017-11-07 20:58:0320#include "base/metrics/user_metrics.h"
Avi Drissman22f82872018-12-25 23:09:0721#include "base/stl_util.h"
[email protected]3ea1b182013-02-08 22:38:4122#include "base/strings/string_number_conversions.h"
[email protected]774cc3c2013-06-07 20:26:4523#include "base/strings/utf_string_conversions.h"
[email protected]0b9fdd72012-04-04 10:00:3324#include "base/values.h"
Suman Kancherlad54a6e5b2019-01-29 22:17:4925#include "build/build_config.h"
jialiul02aad2d2015-04-01 18:56:0326#include "chrome/browser/browser_process.h"
[email protected]b0cb5e82012-07-19 19:22:4727#include "chrome/browser/browsing_data/browsing_data_cookie_helper.h"
28#include "chrome/browser/browsing_data/browsing_data_database_helper.h"
29#include "chrome/browser/browsing_data/browsing_data_file_system_helper.h"
30#include "chrome/browser/browsing_data/browsing_data_indexed_db_helper.h"
31#include "chrome/browser/browsing_data/browsing_data_local_storage_helper.h"
peconn5100d432015-09-16 12:03:0832#include "chrome/browser/content_settings/host_content_settings_map_factory.h"
vabrbab3ffcb2016-10-04 10:08:1033#include "chrome/browser/content_settings/local_shared_objects_container.h"
[email protected]77a91c72012-08-13 16:19:3434#include "chrome/browser/history/history_service_factory.h"
palmerf2cba0d2015-08-27 23:15:0635#include "chrome/browser/infobars/infobar_service.h"
reillyg85f57db2016-01-12 23:14:3836#include "chrome/browser/permissions/chooser_context_base.h"
patricialor7131c1fe2017-04-07 01:25:5237#include "chrome/browser/permissions/permission_decision_auto_blocker.h"
patricialor2a4f41a2017-03-08 02:52:5638#include "chrome/browser/permissions/permission_manager.h"
39#include "chrome/browser/permissions/permission_result.h"
tsergeantf1e89352016-01-15 20:34:5440#include "chrome/browser/permissions/permission_uma_util.h"
41#include "chrome/browser/permissions/permission_util.h"
[email protected]03ef4b2a2012-03-06 15:04:2042#include "chrome/browser/profiles/profile.h"
Jialiu Lin11e18542017-08-14 18:16:2643#include "chrome/browser/safe_browsing/safe_browsing_service.h"
[email protected]71cd5ef2014-08-13 21:22:0444#include "chrome/browser/ssl/chrome_ssl_host_state_delegate.h"
45#include "chrome/browser/ssl/chrome_ssl_host_state_delegate_factory.h"
lgarron617a30f32017-03-24 21:42:0746#include "chrome/browser/ui/page_info/page_info_ui.h"
reillyg85f57db2016-01-12 23:14:3847#include "chrome/browser/usb/usb_chooser_context.h"
48#include "chrome/browser/usb/usb_chooser_context_factory.h"
Suman Kancherlad54a6e5b2019-01-29 22:17:4949#include "chrome/browser/vr/vr_tab_helper.h"
Patricia Lora21a04cf2017-06-05 02:53:2950#include "chrome/common/chrome_features.h"
[email protected]71cd5ef2014-08-13 21:22:0451#include "chrome/common/chrome_switches.h"
jsbellddb849e2015-08-27 00:12:5652#include "chrome/common/url_constants.h"
reillyg85f57db2016-01-12 23:14:3853#include "chrome/grit/theme_resources.h"
Patti0601e532017-09-20 08:39:3054#include "components/content_settings/core/browser/content_settings_registry.h"
mukai8eaec822014-10-25 17:53:1655#include "components/content_settings/core/browser/content_settings_utils.h"
56#include "components/content_settings/core/browser/host_content_settings_map.h"
palmer0da10b32015-02-11 00:42:1957#include "components/content_settings/core/common/content_settings.h"
vasiliif62dbf92014-09-05 10:23:1358#include "components/content_settings/core/common/content_settings_pattern.h"
tbansal08a0e3e2017-06-30 21:30:0859#include "components/content_settings/core/common/content_settings_utils.h"
nzolghadrd87a308d2016-12-07 15:45:5660#include "components/rappor/public/rappor_utils.h"
61#include "components/rappor/rappor_service_impl.h"
felt2493b4452015-09-17 20:33:5962#include "components/ssl_errors/error_info.h"
thestig4a2e88e2016-08-27 23:23:5163#include "components/strings/grit/components_chromium_strings.h"
64#include "components/strings/grit/components_strings.h"
melandory7be36d312017-03-29 15:51:1265#include "components/subresource_filter/core/browser/subresource_filter_features.h"
palmer153af982015-09-15 02:04:1966#include "components/url_formatter/elide_url.h"
[email protected]0b9fdd72012-04-04 10:00:3367#include "content/public/browser/browser_thread.h"
[email protected]eb2140c2013-07-29 12:37:3468#include "content/public/common/content_switches.h"
[email protected]03ef4b2a2012-03-06 15:04:2069#include "content/public/common/url_constants.h"
[email protected]6e7845ae2013-03-29 21:48:1170#include "net/cert/cert_status_flags.h"
71#include "net/cert/x509_certificate.h"
[email protected]536fd0b2013-03-14 17:41:5772#include "net/ssl/ssl_cipher_suite_names.h"
73#include "net/ssl/ssl_connection_status_flags.h"
tfarina29a3a1742016-10-28 18:47:3374#include "third_party/boringssl/src/include/openssl/ssl.h"
[email protected]03ef4b2a2012-03-06 15:04:2075#include "ui/base/l10n/l10n_util.h"
Patricia Lora21a04cf2017-06-05 02:53:2976#include "url/origin.h"
[email protected]03ef4b2a2012-03-06 15:04:2077
[email protected]24a9f1c92013-11-13 12:33:3778#if defined(OS_CHROMEOS)
79#include "chrome/browser/chromeos/policy/policy_cert_service.h"
80#include "chrome/browser/chromeos/policy/policy_cert_service_factory.h"
81#endif
82
estade3feb83f2015-09-01 23:00:4983#if !defined(OS_ANDROID)
Reilly Grant4e9d4f22019-02-13 17:17:3084#include "chrome/browser/serial/serial_chooser_context.h"
85#include "chrome/browser/serial/serial_chooser_context_factory.h"
Christopher Lam0dbac2b2017-11-14 07:12:1086#include "chrome/browser/ui/browser_finder.h"
87#include "chrome/browser/ui/chrome_pages.h"
mgiucaa319f212016-01-14 03:30:1188#include "chrome/browser/ui/exclusive_access/exclusive_access_manager.h"
lgarron617a30f32017-03-24 21:42:0789#include "chrome/browser/ui/page_info/page_info_infobar_delegate.h"
estade3feb83f2015-09-01 23:00:4990#endif
91
Michael Thiessen4c9e4a82019-03-08 04:39:4492#if defined(FULL_SAFE_BROWSING)
Jialiu Lin0d8cc722017-09-19 01:01:5193#include "chrome/browser/safe_browsing/chrome_password_protection_service.h"
Jialiu Lin11e18542017-08-14 18:16:2694#endif
95
[email protected]ab6df3b12013-12-24 23:32:2696using base::ASCIIToUTF16;
[email protected]f729d7a2013-12-26 07:07:5697using base::UTF16ToUTF8;
Ovidio Henriquez3fc113f2019-04-23 14:37:1098using base::UTF8ToUTF16;
[email protected]0b9fdd72012-04-04 10:00:3399using content::BrowserThread;
Michael Thiessen4c9e4a82019-03-08 04:39:44100#if defined(FULL_SAFE_BROWSING)
Jialiu Lind7defe652018-06-20 18:47:06101using PasswordReuseEvent =
102 safe_browsing::LoginReputationClientRequest::PasswordReuseEvent;
Michael Thiessen4c9e4a82019-03-08 04:39:44103#endif // FULL_SAFE_BROWSING
[email protected]0b9fdd72012-04-04 10:00:33104
105namespace {
106
lgarron617a30f32017-03-24 21:42:07107// The list of content settings types to display on the Page Info UI. THE
csharrisonad1eaa6c2017-05-11 17:14:38108// ORDER OF THESE ITEMS IS IMPORTANT and comes from https://crbug.com/610358. To
109// propose changing it, email [email protected].
[email protected]0b9fdd72012-04-04 10:00:33110ContentSettingsType kPermissionType[] = {
sashab2b2a314f2015-01-17 06:42:21111 CONTENT_SETTINGS_TYPE_GEOLOCATION,
sashab2b2a314f2015-01-17 06:42:21112 CONTENT_SETTINGS_TYPE_MEDIASTREAM_CAMERA,
113 CONTENT_SETTINGS_TYPE_MEDIASTREAM_MIC,
Alexander Shalamovce5aab52018-02-07 11:45:15114 CONTENT_SETTINGS_TYPE_SENSORS,
palmer0da10b32015-02-11 00:42:19115 CONTENT_SETTINGS_TYPE_NOTIFICATIONS,
palmer7715e332016-05-27 00:41:19116 CONTENT_SETTINGS_TYPE_JAVASCRIPT,
lshange085f202016-06-14 01:25:08117#if !defined(OS_ANDROID)
palmer7715e332016-05-27 00:41:19118 CONTENT_SETTINGS_TYPE_PLUGINS,
119 CONTENT_SETTINGS_TYPE_IMAGES,
lshange085f202016-06-14 01:25:08120#endif
palmer7715e332016-05-27 00:41:19121 CONTENT_SETTINGS_TYPE_POPUPS,
Charles Harrison239d47982017-06-13 02:42:31122 CONTENT_SETTINGS_TYPE_ADS,
nsatragno670fe922016-04-08 14:10:50123 CONTENT_SETTINGS_TYPE_BACKGROUND_SYNC,
Tommy Steimela8c3757e2017-08-24 00:15:46124 CONTENT_SETTINGS_TYPE_SOUND,
palmer7715e332016-05-27 00:41:19125 CONTENT_SETTINGS_TYPE_AUTOMATIC_DOWNLOADS,
finnur46cafd42016-09-22 10:27:17126 CONTENT_SETTINGS_TYPE_AUTOPLAY,
palmer7715e332016-05-27 00:41:19127 CONTENT_SETTINGS_TYPE_MIDI_SYSEX,
Gary Kacmarcik10533cf2017-11-22 03:31:28128 CONTENT_SETTINGS_TYPE_CLIPBOARD_READ,
Reilly Granta69ab672018-04-06 18:26:07129 CONTENT_SETTINGS_TYPE_USB_GUARD,
Reilly Grant87d6eb022019-04-19 23:55:59130#if !defined(OS_ANDROID)
131 CONTENT_SETTINGS_TYPE_SERIAL_GUARD,
Jun Caiacf03c42019-05-15 20:12:29132 // TODO(https://crbug.com/960962): Implement Bluetooth scanning API content
133 // settings and page info on Android.
134 CONTENT_SETTINGS_TYPE_BLUETOOTH_SCANNING,
Reilly Grant87d6eb022019-04-19 23:55:59135#endif
[email protected]0b9fdd72012-04-04 10:00:33136};
137
Patti0601e532017-09-20 08:39:30138// Checks whether this permission is currently the factory default, as set by
139// Chrome. Specifically, that the following three conditions are true:
140// - The current active setting comes from the default or pref provider.
141// - The setting is the factory default setting (as opposed to a global
142// default setting set by the user).
143// - The setting is a wildcard setting applying to all origins (which can only
144// be set from the default provider).
145bool IsPermissionFactoryDefault(HostContentSettingsMap* content_settings,
146 const PageInfoUI::PermissionInfo& info) {
147 const ContentSetting factory_default_setting =
148 content_settings::ContentSettingsRegistry::GetInstance()
149 ->Get(info.type)
150 ->GetInitialDefaultSetting();
151 return (info.source == content_settings::SETTING_SOURCE_USER &&
152 factory_default_setting == info.default_setting &&
153 info.setting == CONTENT_SETTING_DEFAULT);
154}
155
lgarron617a30f32017-03-24 21:42:07156// Determines whether to show permission |type| in the Page Info UI. Only
mgiucaa319f212016-01-14 03:30:11157// applies to permissions listed in |kPermissionType|.
shahriar rostamia9c769d2017-12-06 04:54:08158bool ShouldShowPermission(
159 const PageInfoUI::PermissionInfo& info,
160 const GURL& site_url,
161 HostContentSettingsMap* content_settings,
162 content::WebContents* web_contents,
163 TabSpecificContentSettings* tab_specific_content_settings) {
Patti0601e532017-09-20 08:39:30164 // Note |CONTENT_SETTINGS_TYPE_ADS| will show up regardless of its default
165 // value when it has been activated on the current origin.
166 if (info.type == CONTENT_SETTINGS_TYPE_ADS) {
csharrisonad1eaa6c2017-05-11 17:14:38167 if (!base::FeatureList::IsEnabled(
Charlie Harrisonb73f7622018-06-01 14:24:34168 subresource_filter::kSafeBrowsingSubresourceFilter)) {
csharrisonad1eaa6c2017-05-11 17:14:38169 return false;
170 }
171
172 // The setting for subresource filtering should not show up if the site is
173 // not activated, both on android and desktop platforms.
174 return content_settings->GetWebsiteSetting(
Charles Harrison239d47982017-06-13 02:42:31175 site_url, GURL(), CONTENT_SETTINGS_TYPE_ADS_DATA, std::string(),
176 nullptr) != nullptr;
melandory7be36d312017-03-29 15:51:12177 }
178
Tommy Steimelc9f6c932017-10-13 23:33:04179 if (info.type == CONTENT_SETTINGS_TYPE_SOUND) {
Tommy Steimel18360512017-11-01 00:38:19180 // The sound content setting should always show up when the tab has played
181 // audio.
182 if (web_contents && web_contents->WasEverAudible())
Tommy Steimelc9f6c932017-10-13 23:33:04183 return true;
184 }
185
Patti749d4d12017-10-11 06:20:30186#if defined(OS_ANDROID)
187 // Special geolocation DSE settings apply only on Android, so make sure it
188 // gets checked there regardless of default setting on Desktop.
189 if (info.type == CONTENT_SETTINGS_TYPE_GEOLOCATION)
190 return true;
Pattid7c4d542017-12-07 00:54:14191#else
Patti8c57f37d2018-01-31 04:33:21192 // Flash is shown if the user has ever changed its setting for |site_url|.
193 if (info.type == CONTENT_SETTINGS_TYPE_PLUGINS &&
194 content_settings->GetWebsiteSetting(site_url, site_url,
195 CONTENT_SETTINGS_TYPE_PLUGINS_DATA,
196 std::string(), nullptr) != nullptr) {
Pattid7c4d542017-12-07 00:54:14197 return true;
Patti8c57f37d2018-01-31 04:33:21198 }
Patti749d4d12017-10-11 06:20:30199#endif
200
Patti0601e532017-09-20 08:39:30201#if !defined(OS_ANDROID)
202 // Autoplay is Android-only at the moment.
203 if (info.type == CONTENT_SETTINGS_TYPE_AUTOPLAY)
204 return false;
205#endif
206
shahriar rostamia9c769d2017-12-06 04:54:08207 // Show the content setting if it has been changed by the user since the last
208 // page load.
209 if (tab_specific_content_settings->HasContentSettingChangedViaPageInfo(
210 info.type)) {
211 return true;
212 }
213
214 // Show the content setting when it has a non-default value.
215 if (!IsPermissionFactoryDefault(content_settings, info))
216 return true;
217
218 return false;
mgiucaa319f212016-01-14 03:30:11219}
220
Emily Starkd75d54ce2019-03-12 20:23:09221// If the |visible_security_state| indicates that mixed content or certificate
222// errors were present, update |connection_status| and |connection_details|.
223void ReportAnyInsecureContent(
224 const security_state::VisibleSecurityState& visible_security_state,
225 PageInfo::SiteConnectionStatus* connection_status,
226 base::string16* connection_details) {
227 bool displayed_insecure_content =
228 visible_security_state.displayed_mixed_content;
229 bool ran_insecure_content = visible_security_state.ran_mixed_content;
elawrenceb2ac2a232017-03-27 21:46:25230 // Only note subresources with certificate errors if the main resource was
231 // loaded without major certificate errors. If the main resource had a
232 // certificate error, then it would not be that useful (and could
233 // potentially be confusing) to warn about subresources that had certificate
234 // errors too.
Emily Starkd75d54ce2019-03-12 20:23:09235 if (!net::IsCertStatusError(visible_security_state.cert_status) ||
236 net::IsCertStatusMinorError(visible_security_state.cert_status)) {
237 displayed_insecure_content =
238 displayed_insecure_content ||
239 visible_security_state.displayed_content_with_cert_errors;
240 ran_insecure_content = ran_insecure_content ||
241 visible_security_state.ran_content_with_cert_errors;
elawrenceb2ac2a232017-03-27 21:46:25242 }
243
244 // Only one insecure content warning is displayed; show the most severe.
245 if (ran_insecure_content) {
thestig4427f13b2017-06-20 20:42:47246 *connection_status =
elawrenceb2ac2a232017-03-27 21:46:25247 PageInfo::SITE_CONNECTION_STATUS_INSECURE_ACTIVE_SUBRESOURCE;
thestig4427f13b2017-06-20 20:42:47248 connection_details->assign(l10n_util::GetStringFUTF16(
249 IDS_PAGE_INFO_SECURITY_TAB_ENCRYPTED_SENTENCE_LINK, *connection_details,
elawrenceb2ac2a232017-03-27 21:46:25250 l10n_util::GetStringUTF16(
251 IDS_PAGE_INFO_SECURITY_TAB_ENCRYPTED_INSECURE_CONTENT_ERROR)));
estark00e83f12016-08-19 18:24:04252 return;
253 }
Emily Starkd75d54ce2019-03-12 20:23:09254 if (visible_security_state.contained_mixed_form) {
thestig4427f13b2017-06-20 20:42:47255 *connection_status = PageInfo::SITE_CONNECTION_STATUS_INSECURE_FORM_ACTION;
256 connection_details->assign(l10n_util::GetStringFUTF16(
257 IDS_PAGE_INFO_SECURITY_TAB_ENCRYPTED_SENTENCE_LINK, *connection_details,
elawrenceb2ac2a232017-03-27 21:46:25258 l10n_util::GetStringUTF16(
259 IDS_PAGE_INFO_SECURITY_TAB_ENCRYPTED_INSECURE_FORM_WARNING)));
260 return;
261 }
262 if (displayed_insecure_content) {
thestig4427f13b2017-06-20 20:42:47263 *connection_status =
elawrenceb2ac2a232017-03-27 21:46:25264 PageInfo::SITE_CONNECTION_STATUS_INSECURE_PASSIVE_SUBRESOURCE;
thestig4427f13b2017-06-20 20:42:47265 connection_details->assign(l10n_util::GetStringFUTF16(
266 IDS_PAGE_INFO_SECURITY_TAB_ENCRYPTED_SENTENCE_LINK, *connection_details,
elawrenceb2ac2a232017-03-27 21:46:25267 l10n_util::GetStringUTF16(
268 IDS_PAGE_INFO_SECURITY_TAB_ENCRYPTED_INSECURE_CONTENT_WARNING)));
269 }
estark00e83f12016-08-19 18:24:04270}
271
jshin1fb76462016-04-05 22:13:03272base::string16 GetSimpleSiteName(const GURL& url) {
benwells2337b8102016-04-20 01:53:53273 return url_formatter::FormatUrlForSecurityDisplay(
274 url, url_formatter::SchemeDisplay::OMIT_HTTP_AND_HTTPS);
palmer153af982015-09-15 02:04:19275}
276
reillyg85f57db2016-01-12 23:14:38277ChooserContextBase* GetUsbChooserContext(Profile* profile) {
278 return UsbChooserContextFactory::GetForProfile(profile);
279}
280
Reilly Grant4e9d4f22019-02-13 17:17:30281#if !defined(OS_ANDROID)
282ChooserContextBase* GetSerialChooserContext(Profile* profile) {
283 return SerialChooserContextFactory::GetForProfile(profile);
284}
285#endif
286
reillyg85f57db2016-01-12 23:14:38287// The list of chooser types that need to display entries in the Website
288// Settings UI. THE ORDER OF THESE ITEMS IS IMPORTANT. To propose changing it,
289// email [email protected].
Andrew Grieved1978b0e2017-07-28 15:53:41290const PageInfo::ChooserUIInfo kChooserUIInfo[] = {
reillyg58f82ab2016-08-03 01:49:52291 {CONTENT_SETTINGS_TYPE_USB_CHOOSER_DATA, &GetUsbChooserContext,
Reilly Grant4e9d4f22019-02-13 17:17:30292 IDS_PAGE_INFO_USB_DEVICE_SECONDARY_LABEL,
Ovidio Henriquez017d3b8f2019-02-01 18:51:24293 IDS_PAGE_INFO_USB_DEVICE_ALLOWED_BY_POLICY_LABEL,
Ovidio Henriquez3fc113f2019-04-23 14:37:10294 IDS_PAGE_INFO_DELETE_USB_DEVICE, &UsbChooserContext::GetObjectName},
Reilly Grant4e9d4f22019-02-13 17:17:30295#if !defined(OS_ANDROID)
296 {CONTENT_SETTINGS_TYPE_SERIAL_CHOOSER_DATA, &GetSerialChooserContext,
297 IDS_PAGE_INFO_SERIAL_PORT_SECONDARY_LABEL,
298 /*allowed_by_policy_description_string_id=*/-1,
Ovidio Henriquez3fc113f2019-04-23 14:37:10299 IDS_PAGE_INFO_DELETE_SERIAL_PORT, &SerialChooserContext::GetObjectName},
Reilly Grant4e9d4f22019-02-13 17:17:30300#endif
reillyg85f57db2016-01-12 23:14:38301};
302
Christopher Thompson0c4e06c22018-07-11 22:29:59303// Time open histogram prefixes.
304const char kPageInfoTimePrefix[] = "Security.PageInfo.TimeOpen";
305const char kPageInfoTimeActionPrefix[] = "Security.PageInfo.TimeOpen.Action";
306const char kPageInfoTimeNoActionPrefix[] =
307 "Security.PageInfo.TimeOpen.NoAction";
308
[email protected]0b9fdd72012-04-04 10:00:33309} // namespace
310
Emily Starkd75d54ce2019-03-12 20:23:09311PageInfo::PageInfo(
312 PageInfoUI* ui,
313 Profile* profile,
314 TabSpecificContentSettings* tab_specific_content_settings,
315 content::WebContents* web_contents,
316 const GURL& url,
317 security_state::SecurityLevel security_level,
318 const security_state::VisibleSecurityState& visible_security_state)
[email protected]df818272012-04-20 13:10:50319 : TabSpecificContentSettings::SiteDataObserver(
320 tab_specific_content_settings),
dominicknbdd53b5f2016-09-28 01:08:13321 content::WebContentsObserver(web_contents),
[email protected]df818272012-04-20 13:10:50322 ui_(ui),
[email protected]66f157312012-08-01 13:50:26323 show_info_bar_(false),
[email protected]0b9fdd72012-04-04 10:00:33324 site_url_(url),
325 site_identity_status_(SITE_IDENTITY_STATUS_UNKNOWN),
Joe DeBlasioecda2b42019-06-26 22:18:40326 safe_browsing_status_(SAFE_BROWSING_STATUS_NONE),
[email protected]03ef4b2a2012-03-06 15:04:20327 site_connection_status_(SITE_CONNECTION_STATUS_UNKNOWN),
alshabalin5e894c12016-10-25 06:47:46328 show_ssl_decision_revoke_button_(false),
peconn5100d432015-09-16 12:03:08329 content_settings_(HostContentSettingsMapFactory::GetForProfile(profile)),
[email protected]71cd5ef2014-08-13 21:22:04330 chrome_ssl_host_state_delegate_(
jww1ed8ea72014-09-02 20:43:25331 ChromeSSLHostStateDelegateFactory::GetForProfile(profile)),
palmer153af982015-09-15 02:04:19332 did_revoke_user_ssl_decisions_(false),
estark8d67cd7a2016-10-24 05:06:41333 profile_(profile),
Jialiu Lin11e18542017-08-14 18:16:26334 security_level_(security_state::NONE),
Michael Thiessen4c9e4a82019-03-08 04:39:44335#if defined(FULL_SAFE_BROWSING)
Jialiu Lin0d8cc722017-09-19 01:01:51336 password_protection_service_(
337 safe_browsing::ChromePasswordProtectionService::
338 GetPasswordProtectionService(profile_)),
Jialiu Lin11e18542017-08-14 18:16:26339#endif
Christopher Thompson0c4e06c22018-07-11 22:29:59340 show_change_password_buttons_(false),
341 did_perform_action_(false) {
Joe DeBlasioc7187e62019-04-25 21:14:15342 ComputeUIInputs(url, security_level, visible_security_state);
[email protected]0b9fdd72012-04-04 10:00:33343
344 PresentSitePermissions();
[email protected]24c8818c2012-04-25 09:57:41345 PresentSiteIdentity();
Pattie8c616202017-09-29 07:58:03346 PresentSiteData();
Suman Kancherlad54a6e5b2019-01-29 22:17:49347 PresentPageFeatureInfo();
[email protected]e22d64f2012-09-10 09:03:23348
lgarron617a30f32017-03-24 21:42:07349 // Every time the Page Info UI is opened a |PageInfo| object is
350 // created. So this counts how ofter the Page Info UI is opened.
351 RecordPageInfoAction(PAGE_INFO_OPENED);
Christopher Thompson0c4e06c22018-07-11 22:29:59352
353 // Record the time when the Page Info UI is opened so the total time it is
354 // open can be measured.
355 start_time_ = base::TimeTicks::Now();
[email protected]03ef4b2a2012-03-06 15:04:20356}
357
Carlos ILe5dfda72017-09-21 02:33:05358PageInfo::~PageInfo() {
359 // Check if Re-enable warnings button was visible, if so, log on UMA whether
360 // it was clicked or not.
361 SSLCertificateDecisionsDidRevoke user_decision =
362 did_revoke_user_ssl_decisions_ ? USER_CERT_DECISIONS_REVOKED
363 : USER_CERT_DECISIONS_NOT_REVOKED;
364 if (show_ssl_decision_revoke_button_) {
365 UMA_HISTOGRAM_ENUMERATION("interstitial.ssl.did_user_revoke_decisions2",
366 user_decision,
367 END_OF_SSL_CERTIFICATE_DECISIONS_DID_REVOKE_ENUM);
368 }
Christopher Thompson0c4e06c22018-07-11 22:29:59369
370 // Record the total time the Page Info UI was open for all opens as well as
371 // split between whether any action was taken.
372 base::UmaHistogramCustomTimes(
Joe DeBlasioc7b95282018-11-08 18:41:37373 security_state::GetSecurityLevelHistogramName(
374 kPageInfoTimePrefix, security_level_),
Christopher Thompson0c4e06c22018-07-11 22:29:59375 base::TimeTicks::Now() - start_time_,
376 base::TimeDelta::FromMilliseconds(1), base::TimeDelta::FromHours(1), 100);
377 if (did_perform_action_) {
378 base::UmaHistogramCustomTimes(
Joe DeBlasioc7b95282018-11-08 18:41:37379 security_state::GetSecurityLevelHistogramName(
380 kPageInfoTimeActionPrefix, security_level_),
Christopher Thompson0c4e06c22018-07-11 22:29:59381 base::TimeTicks::Now() - start_time_,
382 base::TimeDelta::FromMilliseconds(1), base::TimeDelta::FromHours(1),
383 100);
384 } else {
385 base::UmaHistogramCustomTimes(
Joe DeBlasioc7b95282018-11-08 18:41:37386 security_state::GetSecurityLevelHistogramName(
387 kPageInfoTimeNoActionPrefix, security_level_),
Christopher Thompson0c4e06c22018-07-11 22:29:59388 base::TimeTicks::Now() - start_time_,
389 base::TimeDelta::FromMilliseconds(1), base::TimeDelta::FromHours(1),
390 100);
391 }
Carlos ILe5dfda72017-09-21 02:33:05392}
[email protected]03ef4b2a2012-03-06 15:04:20393
Joe DeBlasioc7187e62019-04-25 21:14:15394void PageInfo::UpdateSecurityState(
395 security_state::SecurityLevel security_level,
396 const security_state::VisibleSecurityState& visible_security_state) {
397 ComputeUIInputs(site_url_, security_level, visible_security_state);
398 PresentSiteIdentity();
399}
400
lgarron617a30f32017-03-24 21:42:07401void PageInfo::RecordPageInfoAction(PageInfoAction action) {
Christopher Thompson0c4e06c22018-07-11 22:29:59402 if (action != PAGE_INFO_OPENED)
403 did_perform_action_ = true;
404
lgarron617a30f32017-03-24 21:42:07405 UMA_HISTOGRAM_ENUMERATION("WebsiteSettings.Action", action, PAGE_INFO_COUNT);
lgarron04a93502014-11-04 22:25:04406
estark8d67cd7a2016-10-24 05:06:41407 std::string histogram_name;
estark8d67cd7a2016-10-24 05:06:41408 if (site_url_.SchemeIsCryptographic()) {
Carlos ILcb2321112018-02-01 18:05:23409 if (security_level_ == security_state::SECURE) {
410 UMA_HISTOGRAM_ENUMERATION("Security.PageInfo.Action.HttpsUrl.ValidNonEV",
411 action, PAGE_INFO_COUNT);
412 } else if (security_level_ == security_state::EV_SECURE) {
413 UMA_HISTOGRAM_ENUMERATION("Security.PageInfo.Action.HttpsUrl.ValidEV",
lgarron617a30f32017-03-24 21:42:07414 action, PAGE_INFO_COUNT);
esecklercac56b62016-11-16 13:49:44415 } else if (security_level_ == security_state::NONE) {
estark8d67cd7a2016-10-24 05:06:41416 UMA_HISTOGRAM_ENUMERATION("Security.PageInfo.Action.HttpsUrl.Downgraded",
lgarron617a30f32017-03-24 21:42:07417 action, PAGE_INFO_COUNT);
esecklercac56b62016-11-16 13:49:44418 } else if (security_level_ == security_state::DANGEROUS) {
estark8d67cd7a2016-10-24 05:06:41419 UMA_HISTOGRAM_ENUMERATION("Security.PageInfo.Action.HttpsUrl.Dangerous",
lgarron617a30f32017-03-24 21:42:07420 action, PAGE_INFO_COUNT);
estark8d67cd7a2016-10-24 05:06:41421 }
422 return;
423 }
424
esecklercac56b62016-11-16 13:49:44425 if (security_level_ == security_state::HTTP_SHOW_WARNING) {
estark8d67cd7a2016-10-24 05:06:41426 UMA_HISTOGRAM_ENUMERATION("Security.PageInfo.Action.HttpUrl.Warning",
lgarron617a30f32017-03-24 21:42:07427 action, PAGE_INFO_COUNT);
esecklercac56b62016-11-16 13:49:44428 } else if (security_level_ == security_state::DANGEROUS) {
estark8d67cd7a2016-10-24 05:06:41429 UMA_HISTOGRAM_ENUMERATION("Security.PageInfo.Action.HttpUrl.Dangerous",
lgarron617a30f32017-03-24 21:42:07430 action, PAGE_INFO_COUNT);
estark8d67cd7a2016-10-24 05:06:41431 } else {
432 UMA_HISTOGRAM_ENUMERATION("Security.PageInfo.Action.HttpUrl.Neutral",
lgarron617a30f32017-03-24 21:42:07433 action, PAGE_INFO_COUNT);
lgarron04a93502014-11-04 22:25:04434 }
435}
436
lgarron617a30f32017-03-24 21:42:07437void PageInfo::OnSitePermissionChanged(ContentSettingsType type,
438 ContentSetting setting) {
shahriar rostamia9c769d2017-12-06 04:54:08439 tab_specific_content_settings()->ContentSettingChangedViaPageInfo(type);
440
[email protected]e22d64f2012-09-10 09:03:23441 // Count how often a permission for a specific content type is changed using
lgarron617a30f32017-03-24 21:42:07442 // the Page Info UI.
raymes4a13d432015-09-08 00:44:07443 size_t num_values;
444 int histogram_value = ContentSettingTypeToHistogramValue(type, &num_values);
dchengf6f4e4942017-03-30 23:55:57445 UMA_HISTOGRAM_EXACT_LINEAR("WebsiteSettings.OriginInfo.PermissionChanged",
446 histogram_value, num_values);
sashab9debecd2014-12-18 04:15:56447
448 if (setting == ContentSetting::CONTENT_SETTING_ALLOW) {
dchengf6f4e4942017-03-30 23:55:57449 UMA_HISTOGRAM_EXACT_LINEAR(
sashab9debecd2014-12-18 04:15:56450 "WebsiteSettings.OriginInfo.PermissionChanged.Allowed", histogram_value,
raymes4a13d432015-09-08 00:44:07451 num_values);
tommycli34cf29bf2016-09-08 05:46:25452
453 if (type == CONTENT_SETTINGS_TYPE_PLUGINS) {
454 rappor::SampleDomainAndRegistryFromGURL(
455 g_browser_process->rappor_service(),
456 "ContentSettings.Plugins.AddedAllowException", site_url_);
457 }
sashab9debecd2014-12-18 04:15:56458 } else if (setting == ContentSetting::CONTENT_SETTING_BLOCK) {
dchengf6f4e4942017-03-30 23:55:57459 UMA_HISTOGRAM_EXACT_LINEAR(
sashab9debecd2014-12-18 04:15:56460 "WebsiteSettings.OriginInfo.PermissionChanged.Blocked", histogram_value,
raymes4a13d432015-09-08 00:44:07461 num_values);
sashab9debecd2014-12-18 04:15:56462 }
[email protected]e22d64f2012-09-10 09:03:23463
lgarron04a93502014-11-04 22:25:04464 // This is technically redundant given the histogram above, but putting the
465 // total count of permission changes in another histogram makes it easier to
lgarron026e9c42017-04-07 20:09:31466 // compare it against other kinds of actions in Page Info.
lgarron617a30f32017-03-24 21:42:07467 RecordPageInfoAction(PAGE_INFO_CHANGED_PERMISSION);
Tommy Steimeldea90f72017-11-07 20:58:03468 if (type == CONTENT_SETTINGS_TYPE_SOUND) {
469 ContentSetting default_setting =
470 content_settings_->GetDefaultContentSetting(CONTENT_SETTINGS_TYPE_SOUND,
471 nullptr);
472 bool mute = (setting == CONTENT_SETTING_BLOCK) ||
473 (setting == CONTENT_SETTING_DEFAULT &&
474 default_setting == CONTENT_SETTING_BLOCK);
475 if (mute) {
476 base::RecordAction(
477 base::UserMetricsAction("SoundContentSetting.MuteBy.PageInfo"));
478 } else {
479 base::RecordAction(
480 base::UserMetricsAction("SoundContentSetting.UnmuteBy.PageInfo"));
481 }
482 }
lgarron04a93502014-11-04 22:25:04483
stefanocs8b3490cc2016-07-28 05:32:52484 PermissionUtil::ScopedRevocationReporter scoped_revocation_reporter(
patricialor7131c1fe2017-04-07 01:25:52485 profile_, site_url_, site_url_, type, PermissionSourceUI::OIB);
stefanocs8b3490cc2016-07-28 05:32:52486
patricialor7131c1fe2017-04-07 01:25:52487 // The permission may have been blocked due to being under embargo, so if it
488 // was changed away from BLOCK, clear embargo status if it exists.
489 if (setting != CONTENT_SETTING_BLOCK) {
490 PermissionDecisionAutoBlocker::GetForProfile(profile_)->RemoveEmbargoByUrl(
491 site_url_, type);
492 }
raymesfbaaaaa2015-11-10 02:20:40493 content_settings_->SetNarrowestContentSetting(site_url_, site_url_, type,
494 setting);
[email protected]df818272012-04-20 13:10:50495
Tommy Steimel97ee2f82017-11-01 21:39:52496 // When the sound setting is changed, no reload is necessary.
497 if (type != CONTENT_SETTINGS_TYPE_SOUND)
498 show_info_bar_ = true;
[email protected]2f45d542012-08-22 08:47:24499
500 // Refresh the UI to reflect the new setting.
501 PresentSitePermissions();
[email protected]df818272012-04-20 13:10:50502}
503
lgarron617a30f32017-03-24 21:42:07504void PageInfo::OnSiteChosenObjectDeleted(const ChooserUIInfo& ui_info,
Ovidio Henriquez3fc113f2019-04-23 14:37:10505 const base::Value& object) {
reillyg85f57db2016-01-12 23:14:38506 // TODO(reillyg): Create metrics for revocations. crbug.com/556845
507 ChooserContextBase* context = ui_info.get_context(profile_);
Reilly Grantbcdeddb2019-05-06 22:37:24508 const auto origin = url::Origin::Create(site_url_);
reillyg36a7fab32016-01-28 19:15:10509 context->RevokeObjectPermission(origin, origin, object);
reillyg85f57db2016-01-12 23:14:38510 show_info_bar_ = true;
511
512 // Refresh the UI to reflect the changed settings.
513 PresentSitePermissions();
514}
515
lgarron617a30f32017-03-24 21:42:07516void PageInfo::OnSiteDataAccessed() {
[email protected]df818272012-04-20 13:10:50517 PresentSiteData();
[email protected]0b9fdd72012-04-04 10:00:33518}
519
Dana Fried08b774a2019-05-10 18:21:48520void PageInfo::OnUIClosing(bool* reload_prompt) {
521 if (reload_prompt)
522 *reload_prompt = false;
estade3feb83f2015-09-01 23:00:49523#if defined(OS_ANDROID)
524 NOTREACHED();
525#else
dominicknbdd53b5f2016-09-28 01:08:13526 if (show_info_bar_ && web_contents() && !web_contents()->IsBeingDestroyed()) {
palmerf2cba0d2015-08-27 23:15:06527 InfoBarService* infobar_service =
dominicknbdd53b5f2016-09-28 01:08:13528 InfoBarService::FromWebContents(web_contents());
Dana Fried08b774a2019-05-10 18:21:48529 if (infobar_service) {
lgarron617a30f32017-03-24 21:42:07530 PageInfoInfoBarDelegate::Create(infobar_service);
Dana Fried08b774a2019-05-10 18:21:48531 if (reload_prompt)
532 *reload_prompt = true;
533 }
palmerf2cba0d2015-08-27 23:15:06534 }
estade3feb83f2015-09-01 23:00:49535#endif
jww1ed8ea72014-09-02 20:43:25536}
537
lgarron617a30f32017-03-24 21:42:07538void PageInfo::OnRevokeSSLErrorBypassButtonPressed() {
jww1ed8ea72014-09-02 20:43:25539 DCHECK(chrome_ssl_host_state_delegate_);
jww6a55df72014-09-05 19:59:29540 chrome_ssl_host_state_delegate_->RevokeUserAllowExceptionsHard(
541 site_url().host());
jww1ed8ea72014-09-02 20:43:25542 did_revoke_user_ssl_decisions_ = true;
[email protected]66f157312012-08-01 13:50:26543}
544
Patricia Lora21a04cf2017-06-05 02:53:29545void PageInfo::OpenSiteSettingsView() {
Christopher Lam0dbac2b2017-11-14 07:12:10546#if defined(OS_ANDROID)
547 NOTREACHED();
548#else
549 chrome::ShowSiteSettings(chrome::FindBrowserWithWebContents(web_contents()),
550 site_url());
Patricia Lora21a04cf2017-06-05 02:53:29551 RecordPageInfoAction(PageInfo::PAGE_INFO_SITE_SETTINGS_OPENED);
Christopher Lam0dbac2b2017-11-14 07:12:10552#endif
Patricia Lora21a04cf2017-06-05 02:53:29553}
554
Jialiu Lin11e18542017-08-14 18:16:26555void PageInfo::OnChangePasswordButtonPressed(
556 content::WebContents* web_contents) {
Michael Thiessen4c9e4a82019-03-08 04:39:44557#if defined(FULL_SAFE_BROWSING)
Jialiu Lin11e18542017-08-14 18:16:26558 DCHECK(password_protection_service_);
Joe DeBlasioecda2b42019-06-26 22:18:40559 DCHECK(safe_browsing_status_ == SAFE_BROWSING_STATUS_SIGN_IN_PASSWORD_REUSE ||
560 safe_browsing_status_ ==
561 SAFE_BROWSING_STATUS_ENTERPRISE_PASSWORD_REUSE);
Jialiu Lin3fc7f38f2017-09-21 18:38:37562 password_protection_service_->OnUserAction(
Jialiu Lind7defe652018-06-20 18:47:06563 web_contents,
Joe DeBlasioecda2b42019-06-26 22:18:40564 safe_browsing_status_ == SAFE_BROWSING_STATUS_SIGN_IN_PASSWORD_REUSE
Jialiu Lind7defe652018-06-20 18:47:06565 ? PasswordReuseEvent::SIGN_IN_PASSWORD
566 : PasswordReuseEvent::ENTERPRISE_PASSWORD,
Jialiu Lina97fe522018-07-26 16:47:26567 safe_browsing::WarningUIType::PAGE_INFO,
568 safe_browsing::WarningAction::CHANGE_PASSWORD);
Jialiu Lin11e18542017-08-14 18:16:26569#endif
570}
571
572void PageInfo::OnWhitelistPasswordReuseButtonPressed(
573 content::WebContents* web_contents) {
Michael Thiessen4c9e4a82019-03-08 04:39:44574#if defined(FULL_SAFE_BROWSING)
Jialiu Lin11e18542017-08-14 18:16:26575 DCHECK(password_protection_service_);
Joe DeBlasioecda2b42019-06-26 22:18:40576 DCHECK(safe_browsing_status_ == SAFE_BROWSING_STATUS_SIGN_IN_PASSWORD_REUSE ||
577 safe_browsing_status_ ==
578 SAFE_BROWSING_STATUS_ENTERPRISE_PASSWORD_REUSE);
Jialiu Lin3fc7f38f2017-09-21 18:38:37579 password_protection_service_->OnUserAction(
Jialiu Lind7defe652018-06-20 18:47:06580 web_contents,
Joe DeBlasioecda2b42019-06-26 22:18:40581 safe_browsing_status_ == SAFE_BROWSING_STATUS_SIGN_IN_PASSWORD_REUSE
Jialiu Lind7defe652018-06-20 18:47:06582 ? PasswordReuseEvent::SIGN_IN_PASSWORD
583 : PasswordReuseEvent::ENTERPRISE_PASSWORD,
Jialiu Lina97fe522018-07-26 16:47:26584 safe_browsing::WarningUIType::PAGE_INFO,
585 safe_browsing::WarningAction::MARK_AS_LEGITIMATE);
Jialiu Lin11e18542017-08-14 18:16:26586#endif
587}
588
Joe DeBlasioc7187e62019-04-25 21:14:15589void PageInfo::ComputeUIInputs(
Emily Starkd75d54ce2019-03-12 20:23:09590 const GURL& url,
591 security_state::SecurityLevel security_level,
592 const security_state::VisibleSecurityState& visible_security_state) {
thestig0c55ee32017-06-20 22:17:51593#if !defined(OS_ANDROID)
meacerde53fcff2016-10-12 19:21:57594 // On desktop, internal URLs aren't handled by this class. Instead, a
lgarron026e9c42017-04-07 20:09:31595 // custom and simpler bubble is shown.
meacerde53fcff2016-10-12 19:21:57596 DCHECK(!url.SchemeIs(content::kChromeUIScheme) &&
597 !url.SchemeIs(content::kChromeDevToolsScheme) &&
598 !url.SchemeIs(content::kViewSourceScheme) &&
599 !url.SchemeIs(content_settings::kExtensionScheme));
600#endif
601
thestig0c55ee32017-06-20 22:17:51602 bool is_chrome_ui_native_scheme = false;
zpengdb4a58e2017-01-10 17:40:32603#if defined(OS_ANDROID)
thestig0c55ee32017-06-20 22:17:51604 is_chrome_ui_native_scheme = url.SchemeIs(chrome::kChromeUINativeScheme);
sashab97894ce2014-10-22 10:08:33605#endif
606
Emily Starkd75d54ce2019-03-12 20:23:09607 security_level_ = security_level;
estark8d67cd7a2016-10-24 05:06:41608
upendrag.gowda60886a6e2015-10-31 05:51:09609 if (url.SchemeIs(url::kAboutScheme)) {
610 // All about: URLs except about:blank are redirected.
611 DCHECK_EQ(url::kAboutBlankURL, url.spec());
612 site_identity_status_ = SITE_IDENTITY_STATUS_NO_CERT;
Joe DeBlasioecda2b42019-06-26 22:18:40613 site_details_message_ =
upendrag.gowda60886a6e2015-10-31 05:51:09614 l10n_util::GetStringUTF16(IDS_PAGE_INFO_SECURITY_TAB_INSECURE_IDENTITY);
615 site_connection_status_ = SITE_CONNECTION_STATUS_UNENCRYPTED;
616 site_connection_details_ = l10n_util::GetStringFUTF16(
617 IDS_PAGE_INFO_SECURITY_TAB_NOT_ENCRYPTED_CONNECTION_TEXT,
618 UTF8ToUTF16(url.spec()));
619 return;
620 }
621
thestig0c55ee32017-06-20 22:17:51622 if (url.SchemeIs(content::kChromeUIScheme) || is_chrome_ui_native_scheme) {
[email protected]03ef4b2a2012-03-06 15:04:20623 site_identity_status_ = SITE_IDENTITY_STATUS_INTERNAL_PAGE;
Joe DeBlasioecda2b42019-06-26 22:18:40624 site_details_message_ =
[email protected]03ef4b2a2012-03-06 15:04:20625 l10n_util::GetStringUTF16(IDS_PAGE_INFO_INTERNAL_PAGE);
626 site_connection_status_ = SITE_CONNECTION_STATUS_INTERNAL_PAGE;
627 return;
628 }
629
[email protected]03ef4b2a2012-03-06 15:04:20630 // Identity section.
Emily Starkd75d54ce2019-03-12 20:23:09631 certificate_ = visible_security_state.certificate;
[email protected]f61c1ce2012-05-09 13:55:11632
Joe DeBlasioecda2b42019-06-26 22:18:40633 if (certificate_ &&
634 (!net::IsCertStatusError(visible_security_state.cert_status) ||
635 net::IsCertStatusMinorError(visible_security_state.cert_status))) {
estarkfcfccdb82016-11-14 02:17:29636 // HTTPS with no or minor errors.
Emily Starkd75d54ce2019-03-12 20:23:09637 if (security_level == security_state::SECURE_WITH_POLICY_INSTALLED_CERT) {
Eric Lawrence6758d1d2017-11-21 16:06:05638#if defined(OS_CHROMEOS)
[email protected]eaf3f322013-04-25 21:53:59639 site_identity_status_ = SITE_IDENTITY_STATUS_ADMIN_PROVIDED_CERT;
Joe DeBlasioecda2b42019-06-26 22:18:40640 site_details_message_ = l10n_util::GetStringFUTF16(
[email protected]24a9f1c92013-11-13 12:33:37641 IDS_CERT_POLICY_PROVIDED_CERT_MESSAGE, UTF8ToUTF16(url.host()));
Eric Lawrence6758d1d2017-11-21 16:06:05642#else
643 DCHECK(false) << "Policy certificates exist only on ChromeOS";
644#endif
Emily Starkd75d54ce2019-03-12 20:23:09645 } else if (net::IsCertStatusMinorError(
646 visible_security_state.cert_status)) {
[email protected]03ef4b2a2012-03-06 15:04:20647 site_identity_status_ = SITE_IDENTITY_STATUS_CERT_REVOCATION_UNKNOWN;
jam8ae7cad2016-09-08 23:55:21648 base::string16 issuer_name(
649 UTF8ToUTF16(certificate_->issuer().GetDisplayName()));
[email protected]03ef4b2a2012-03-06 15:04:20650 if (issuer_name.empty()) {
651 issuer_name.assign(l10n_util::GetStringUTF16(
652 IDS_PAGE_INFO_SECURITY_TAB_UNKNOWN_PARTY));
653 }
[email protected]94c74b42013-12-02 15:19:49654
Joe DeBlasioecda2b42019-06-26 22:18:40655 site_details_message_.assign(l10n_util::GetStringFUTF16(
estarkcf305562016-11-15 03:45:39656 IDS_PAGE_INFO_SECURITY_TAB_SECURE_IDENTITY_VERIFIED, issuer_name));
[email protected]03ef4b2a2012-03-06 15:04:20657
Joe DeBlasioecda2b42019-06-26 22:18:40658 site_details_message_ += ASCIIToUTF16("\n\n");
Emily Starkd75d54ce2019-03-12 20:23:09659 if (visible_security_state.cert_status &
estarka3121f6b2015-09-18 21:15:59660 net::CERT_STATUS_UNABLE_TO_CHECK_REVOCATION) {
Joe DeBlasioecda2b42019-06-26 22:18:40661 site_details_message_ += l10n_util::GetStringUTF16(
[email protected]03ef4b2a2012-03-06 15:04:20662 IDS_PAGE_INFO_SECURITY_TAB_UNABLE_TO_CHECK_REVOCATION);
Emily Starkd75d54ce2019-03-12 20:23:09663 } else if (visible_security_state.cert_status &
estarka3121f6b2015-09-18 21:15:59664 net::CERT_STATUS_NO_REVOCATION_MECHANISM) {
Joe DeBlasioecda2b42019-06-26 22:18:40665 site_details_message_ += l10n_util::GetStringUTF16(
[email protected]03ef4b2a2012-03-06 15:04:20666 IDS_PAGE_INFO_SECURITY_TAB_NO_REVOCATION_MECHANISM);
667 } else {
668 NOTREACHED() << "Need to specify string for this warning";
669 }
[email protected]03ef4b2a2012-03-06 15:04:20670 } else {
estarkcf305562016-11-15 03:45:39671 // No major or minor errors.
Emily Starkd75d54ce2019-03-12 20:23:09672 if (visible_security_state.cert_status & net::CERT_STATUS_IS_EV) {
rsleevi4f8012722014-09-30 01:28:01673 // EV HTTPS page.
estarkcf305562016-11-15 03:45:39674 site_identity_status_ = SITE_IDENTITY_STATUS_EV_CERT;
jam8ae7cad2016-09-08 23:55:21675 DCHECK(!certificate_->subject().organization_names.empty());
676 organization_name_ =
677 UTF8ToUTF16(certificate_->subject().organization_names[0]);
rsleevi4f8012722014-09-30 01:28:01678 // An EV Cert is required to have a city (localityName) and country but
679 // state is "if any".
jam8ae7cad2016-09-08 23:55:21680 DCHECK(!certificate_->subject().locality_name.empty());
681 DCHECK(!certificate_->subject().country_name.empty());
Joe DeBlasioecda2b42019-06-26 22:18:40682 site_details_message_.assign(l10n_util::GetStringFUTF16(
estarkcf305562016-11-15 03:45:39683 IDS_PAGE_INFO_SECURITY_TAB_SECURE_IDENTITY_EV_VERIFIED,
Christopher Thompsonf3ba20122019-06-06 22:01:01684 organization_name_,
685 UTF8ToUTF16(certificate_->subject().country_name)));
rsleevi4f8012722014-09-30 01:28:01686 } else {
687 // Non-EV OK HTTPS page.
estarkcf305562016-11-15 03:45:39688 site_identity_status_ = SITE_IDENTITY_STATUS_CERT;
rsleevi4f8012722014-09-30 01:28:01689 base::string16 issuer_name(
jam8ae7cad2016-09-08 23:55:21690 UTF8ToUTF16(certificate_->issuer().GetDisplayName()));
rsleevi4f8012722014-09-30 01:28:01691 if (issuer_name.empty()) {
692 issuer_name.assign(l10n_util::GetStringUTF16(
693 IDS_PAGE_INFO_SECURITY_TAB_UNKNOWN_PARTY));
694 }
[email protected]94c74b42013-12-02 15:19:49695
Joe DeBlasioecda2b42019-06-26 22:18:40696 site_details_message_.assign(l10n_util::GetStringFUTF16(
estarkcf305562016-11-15 03:45:39697 IDS_PAGE_INFO_SECURITY_TAB_SECURE_IDENTITY_VERIFIED, issuer_name));
rsleevi4f8012722014-09-30 01:28:01698 }
Emily Starkd75d54ce2019-03-12 20:23:09699 if (security_state::IsSHA1InChain(visible_security_state)) {
elawrencebe87bd62017-01-10 16:08:59700 site_identity_status_ =
701 SITE_IDENTITY_STATUS_DEPRECATED_SIGNATURE_ALGORITHM;
Joe DeBlasioecda2b42019-06-26 22:18:40702 site_details_message_ +=
elawrencebe87bd62017-01-10 16:08:59703 UTF8ToUTF16("\n\n") +
704 l10n_util::GetStringUTF16(
705 IDS_PAGE_INFO_SECURITY_TAB_DEPRECATED_SIGNATURE_ALGORITHM);
rsleevi4f8012722014-09-30 01:28:01706 }
[email protected]03ef4b2a2012-03-06 15:04:20707 }
708 } else {
709 // HTTP or HTTPS with errors (not warnings).
Joe DeBlasioecda2b42019-06-26 22:18:40710 site_details_message_.assign(l10n_util::GetStringUTF16(
[email protected]03ef4b2a2012-03-06 15:04:20711 IDS_PAGE_INFO_SECURITY_TAB_INSECURE_IDENTITY));
Emily Starkd75d54ce2019-03-12 20:23:09712 if (!security_state::IsSchemeCryptographic(visible_security_state.url) ||
713 !visible_security_state.certificate) {
[email protected]03ef4b2a2012-03-06 15:04:20714 site_identity_status_ = SITE_IDENTITY_STATUS_NO_CERT;
Emily Starkd75d54ce2019-03-12 20:23:09715 } else {
[email protected]03ef4b2a2012-03-06 15:04:20716 site_identity_status_ = SITE_IDENTITY_STATUS_ERROR;
Emily Starkd75d54ce2019-03-12 20:23:09717 }
[email protected]03ef4b2a2012-03-06 15:04:20718
[email protected]a04db822013-12-11 19:14:40719 const base::string16 bullet = UTF8ToUTF16("\n • ");
felt2493b4452015-09-17 20:33:59720 std::vector<ssl_errors::ErrorInfo> errors;
estarka3121f6b2015-09-18 21:15:59721 ssl_errors::ErrorInfo::GetErrorsForCertStatus(
Emily Starkd75d54ce2019-03-12 20:23:09722 certificate_, visible_security_state.cert_status, url, &errors);
[email protected]03ef4b2a2012-03-06 15:04:20723 for (size_t i = 0; i < errors.size(); ++i) {
Joe DeBlasioecda2b42019-06-26 22:18:40724 site_details_message_ += bullet;
725 site_details_message_ += errors[i].short_description();
[email protected]03ef4b2a2012-03-06 15:04:20726 }
727
Emily Starkd75d54ce2019-03-12 20:23:09728 if (visible_security_state.cert_status & net::CERT_STATUS_NON_UNIQUE_NAME) {
Joe DeBlasioecda2b42019-06-26 22:18:40729 site_details_message_ += ASCIIToUTF16("\n\n");
730 site_details_message_ +=
lgarron1a6300d2017-03-18 03:33:04731 l10n_util::GetStringUTF16(IDS_PAGE_INFO_SECURITY_TAB_NON_UNIQUE_NAME);
[email protected]03ef4b2a2012-03-06 15:04:20732 }
733 }
734
Joe DeBlasioecda2b42019-06-26 22:18:40735 if (visible_security_state.malicious_content_status !=
736 security_state::MALICIOUS_CONTENT_STATUS_NONE) {
737 // The site has been flagged by Safe Browsing. Takes precedence over TLS.
738 GetSafeBrowsingStatusByMaliciousContentStatus(
739 visible_security_state.malicious_content_status, &safe_browsing_status_,
740 &site_details_message_);
741#if defined(FULL_SAFE_BROWSING)
742 bool old_show_change_pw_buttons = show_change_password_buttons_;
743#endif
744 show_change_password_buttons_ =
745 (visible_security_state.malicious_content_status ==
746 security_state::MALICIOUS_CONTENT_STATUS_SIGN_IN_PASSWORD_REUSE ||
747 visible_security_state.malicious_content_status ==
748 security_state::
749 MALICIOUS_CONTENT_STATUS_ENTERPRISE_PASSWORD_REUSE);
750#if defined(FULL_SAFE_BROWSING)
751 // Only record password reuse when adding the button, not on updates.
752 if (show_change_password_buttons_ && !old_show_change_pw_buttons) {
753 RecordPasswordReuseEvent();
754 }
755#endif
756 }
757
[email protected]03ef4b2a2012-03-06 15:04:20758 // Site Connection
759 // We consider anything less than 80 bits encryption to be weak encryption.
760 // TODO(wtc): Bug 1198735: report mixed/unsafe content for unencrypted and
761 // weakly encrypted connections.
762 site_connection_status_ = SITE_CONNECTION_STATUS_UNKNOWN;
763
jshin1fb76462016-04-05 22:13:03764 base::string16 subject_name(GetSimpleSiteName(url));
palmer153af982015-09-15 02:04:19765 if (subject_name.empty()) {
766 subject_name.assign(
767 l10n_util::GetStringUTF16(IDS_PAGE_INFO_SECURITY_TAB_UNKNOWN_PARTY));
768 }
769
Emily Starkd75d54ce2019-03-12 20:23:09770 if (!visible_security_state.certificate ||
771 !security_state::IsSchemeCryptographic(visible_security_state.url)) {
estarka3121f6b2015-09-18 21:15:59772 // Page is still loading (so SSL status is not yet available) or
773 // loaded over HTTP or loaded over HTTPS with no cert.
[email protected]1c1051d2014-05-10 11:39:58774 site_connection_status_ = SITE_CONNECTION_STATUS_UNENCRYPTED;
775
776 site_connection_details_.assign(l10n_util::GetStringFUTF16(
777 IDS_PAGE_INFO_SECURITY_TAB_NOT_ENCRYPTED_CONNECTION_TEXT,
778 subject_name));
Emily Starkd75d54ce2019-03-12 20:23:09779 } else if (!visible_security_state.connection_info_initialized) {
780 DCHECK_NE(security_level, security_state::NONE);
[email protected]03ef4b2a2012-03-06 15:04:20781 site_connection_status_ = SITE_CONNECTION_STATUS_ENCRYPTED_ERROR;
[email protected]03ef4b2a2012-03-06 15:04:20782 } else {
783 site_connection_status_ = SITE_CONNECTION_STATUS_ENCRYPTED;
Adam Langley71c2b59b2014-11-13 00:34:22784
Emily Starkd75d54ce2019-03-12 20:23:09785 if (net::ObsoleteSSLStatus(
786 visible_security_state.connection_status,
787 visible_security_state.peer_signature_algorithm) ==
788 net::OBSOLETE_SSL_NONE) {
Adam Langley71c2b59b2014-11-13 00:34:22789 site_connection_details_.assign(l10n_util::GetStringFUTF16(
lgarron1a6300d2017-03-18 03:33:04790 IDS_PAGE_INFO_SECURITY_TAB_ENCRYPTED_CONNECTION_TEXT, subject_name));
Adam Langley71c2b59b2014-11-13 00:34:22791 } else {
792 site_connection_details_.assign(l10n_util::GetStringFUTF16(
793 IDS_PAGE_INFO_SECURITY_TAB_WEAK_ENCRYPTION_CONNECTION_TEXT,
794 subject_name));
795 }
796
Emily Starkd75d54ce2019-03-12 20:23:09797 ReportAnyInsecureContent(visible_security_state, &site_connection_status_,
thestig4427f13b2017-06-20 20:42:47798 &site_connection_details_);
[email protected]03ef4b2a2012-03-06 15:04:20799 }
800
Emily Starkd75d54ce2019-03-12 20:23:09801 uint16_t cipher_suite = net::SSLConnectionStatusToCipherSuite(
802 visible_security_state.connection_status);
803 if (visible_security_state.connection_info_initialized && cipher_suite) {
804 int ssl_version = net::SSLConnectionStatusToVersion(
805 visible_security_state.connection_status);
[email protected]03ef4b2a2012-03-06 15:04:20806 const char* ssl_version_str;
807 net::SSLVersionToString(&ssl_version_str, ssl_version);
808 site_connection_details_ += ASCIIToUTF16("\n\n");
809 site_connection_details_ += l10n_util::GetStringFUTF16(
lgarron1a6300d2017-03-18 03:33:04810 IDS_PAGE_INFO_SECURITY_TAB_SSL_VERSION, ASCIIToUTF16(ssl_version_str));
[email protected]03ef4b2a2012-03-06 15:04:20811
[email protected]03ef4b2a2012-03-06 15:04:20812 const char *key_exchange, *cipher, *mac;
davidben56a8aece2016-10-14 18:20:56813 bool is_aead, is_tls13;
814 net::SSLCipherSuiteToStrings(&key_exchange, &cipher, &mac, &is_aead,
815 &is_tls13, cipher_suite);
[email protected]03ef4b2a2012-03-06 15:04:20816
817 site_connection_details_ += ASCIIToUTF16("\n\n");
[email protected]b6c1d9e82013-06-12 17:26:57818 if (is_aead) {
davidben56a8aece2016-10-14 18:20:56819 if (is_tls13) {
820 // For TLS 1.3 ciphers, report the group (historically, curve) as the
821 // key exchange.
Emily Starkd75d54ce2019-03-12 20:23:09822 key_exchange =
823 SSL_get_curve_name(visible_security_state.key_exchange_group);
davidben56a8aece2016-10-14 18:20:56824 if (!key_exchange) {
825 NOTREACHED();
826 key_exchange = "";
827 }
828 }
[email protected]b6c1d9e82013-06-12 17:26:57829 site_connection_details_ += l10n_util::GetStringFUTF16(
830 IDS_PAGE_INFO_SECURITY_TAB_ENCRYPTION_DETAILS_AEAD,
831 ASCIIToUTF16(cipher), ASCIIToUTF16(key_exchange));
832 } else {
833 site_connection_details_ += l10n_util::GetStringFUTF16(
lgarron1a6300d2017-03-18 03:33:04834 IDS_PAGE_INFO_SECURITY_TAB_ENCRYPTION_DETAILS, ASCIIToUTF16(cipher),
835 ASCIIToUTF16(mac), ASCIIToUTF16(key_exchange));
[email protected]b6c1d9e82013-06-12 17:26:57836 }
[email protected]03ef4b2a2012-03-06 15:04:20837 }
[email protected]e583f752012-08-30 13:26:21838
[email protected]71cd5ef2014-08-13 21:22:04839 // Check if a user decision has been made to allow or deny certificates with
840 // errors on this site.
841 ChromeSSLHostStateDelegate* delegate =
estark7c6bfbf2015-09-16 22:20:50842 ChromeSSLHostStateDelegateFactory::GetForProfile(profile_);
[email protected]71cd5ef2014-08-13 21:22:04843 DCHECK(delegate);
jwwf806c362015-06-02 02:00:40844 // Only show an SSL decision revoke button if the user has chosen to bypass
Joe DeBlasioecda2b42019-06-26 22:18:40845 // SSL host errors for this host in the past, and we're not presently on a
846 // Safe Browsing error (since otherwise it's confusing which warning you're
847 // re-enabling).
848 show_ssl_decision_revoke_button_ =
849 delegate->HasAllowException(url.host()) &&
850 visible_security_state.malicious_content_status ==
851 security_state::MALICIOUS_CONTENT_STATUS_NONE;
[email protected]03ef4b2a2012-03-06 15:04:20852}
[email protected]0b9fdd72012-04-04 10:00:33853
lgarron617a30f32017-03-24 21:42:07854void PageInfo::PresentSitePermissions() {
[email protected]df818272012-04-20 13:10:50855 PermissionInfoList permission_info_list;
reillyg85f57db2016-01-12 23:14:38856 ChosenObjectInfoList chosen_object_info_list;
[email protected]df818272012-04-20 13:10:50857
lgarron617a30f32017-03-24 21:42:07858 PageInfoUI::PermissionInfo permission_info;
Avi Drissman22f82872018-12-25 23:09:07859 for (size_t i = 0; i < base::size(kPermissionType); ++i) {
[email protected]df818272012-04-20 13:10:50860 permission_info.type = kPermissionType[i];
861
862 content_settings::SettingInfo info;
dcheng9603ab92016-04-08 04:17:32863 std::unique_ptr<base::Value> value = content_settings_->GetWebsiteSetting(
864 site_url_, site_url_, permission_info.type, std::string(), &info);
sashab2b2a314f2015-01-17 06:42:21865 DCHECK(value.get());
jdoerrie76cee9c2017-10-06 22:42:42866 if (value->type() == base::Value::Type::INTEGER) {
sashab2b2a314f2015-01-17 06:42:21867 permission_info.setting =
868 content_settings::ValueToContentSetting(value.get());
[email protected]fe4686a2012-10-19 15:38:26869 } else {
sashab2b2a314f2015-01-17 06:42:21870 NOTREACHED();
[email protected]fe4686a2012-10-19 15:38:26871 }
872
[email protected]8bdf45c32012-08-04 00:12:55873 permission_info.source = info.source;
johnme9ed93882016-01-15 01:13:28874 permission_info.is_incognito = profile_->IsOffTheRecord();
[email protected]df818272012-04-20 13:10:50875
[email protected]b1d113d2012-06-27 21:27:34876 if (info.primary_pattern == ContentSettingsPattern::Wildcard() &&
sashab2b2a314f2015-01-17 06:42:21877 info.secondary_pattern == ContentSettingsPattern::Wildcard()) {
[email protected]b1d113d2012-06-27 21:27:34878 permission_info.default_setting = permission_info.setting;
879 permission_info.setting = CONTENT_SETTING_DEFAULT;
880 } else {
881 permission_info.default_setting =
882 content_settings_->GetDefaultContentSetting(permission_info.type,
883 NULL);
[email protected]df818272012-04-20 13:10:50884 }
palmer0da10b32015-02-11 00:42:19885
patricialor2a4f41a2017-03-08 02:52:56886 // For permissions that are still prompting the user and haven't been
887 // explicitly set by another source, check its embargo status.
888 if (PermissionUtil::IsPermission(permission_info.type) &&
889 permission_info.setting == CONTENT_SETTING_DEFAULT &&
890 permission_info.source ==
891 content_settings::SettingSource::SETTING_SOURCE_USER) {
892 // TODO(raymes): Use GetPermissionStatus() to retrieve information
893 // about *all* permissions once it has default behaviour implemented for
894 // ContentSettingTypes that aren't permissions.
895 PermissionResult permission_result =
896 PermissionManager::Get(profile_)->GetPermissionStatus(
897 permission_info.type, site_url_, site_url_);
898
899 // If under embargo, update |permission_info| to reflect that.
900 if (permission_result.content_setting == CONTENT_SETTING_BLOCK &&
Timothy Loh8fbdac52018-03-15 03:34:30901 permission_result.source ==
902 PermissionStatusSource::MULTIPLE_DISMISSALS) {
patricialor2a4f41a2017-03-08 02:52:56903 permission_info.setting = permission_result.content_setting;
Timothy Loh8fbdac52018-03-15 03:34:30904 }
patricialor2a4f41a2017-03-08 02:52:56905 }
906
Tommy Steimelc9f6c932017-10-13 23:33:04907 if (ShouldShowPermission(permission_info, site_url_, content_settings_,
shahriar rostamia9c769d2017-12-06 04:54:08908 web_contents(), tab_specific_content_settings())) {
Patti0601e532017-09-20 08:39:30909 permission_info_list.push_back(permission_info);
Tommy Steimelc9f6c932017-10-13 23:33:04910 }
[email protected]df818272012-04-20 13:10:50911 }
912
Reilly Grantbcdeddb2019-05-06 22:37:24913 const auto origin = url::Origin::Create(site_url_);
reillyg85f57db2016-01-12 23:14:38914 for (const ChooserUIInfo& ui_info : kChooserUIInfo) {
915 ChooserContextBase* context = ui_info.get_context(profile_);
reillyg36a7fab32016-01-28 19:15:10916 auto chosen_objects = context->GetGrantedObjects(origin, origin);
Ovidio Henriquez0e7c32a2019-01-16 03:15:29917 for (std::unique_ptr<ChooserContextBase::Object>& object : chosen_objects) {
reillyg85f57db2016-01-12 23:14:38918 chosen_object_info_list.push_back(
Jinho Bangcc280792018-01-17 23:33:55919 std::make_unique<PageInfoUI::ChosenObjectInfo>(ui_info,
lgarron617a30f32017-03-24 21:42:07920 std::move(object)));
reillyg85f57db2016-01-12 23:14:38921 }
922 }
923
avi09dd4d02016-10-14 20:40:09924 ui_->SetPermissionInfo(permission_info_list,
925 std::move(chosen_object_info_list));
[email protected]0b9fdd72012-04-04 10:00:33926}
927
lgarron617a30f32017-03-24 21:42:07928void PageInfo::PresentSiteData() {
[email protected]df818272012-04-20 13:10:50929 CookieInfoList cookie_info_list;
vabrbab3ffcb2016-10-04 10:08:10930 const LocalSharedObjectsContainer& allowed_objects =
[email protected]e0ac35892012-05-15 12:53:34931 tab_specific_content_settings()->allowed_local_shared_objects();
vabrbab3ffcb2016-10-04 10:08:10932 const LocalSharedObjectsContainer& blocked_objects =
[email protected]e0ac35892012-05-15 12:53:34933 tab_specific_content_settings()->blocked_local_shared_objects();
934
935 // Add first party cookie and site data counts.
lgarron617a30f32017-03-24 21:42:07936 PageInfoUI::CookieInfo cookie_info;
[email protected]e0ac35892012-05-15 12:53:34937 cookie_info.allowed = allowed_objects.GetObjectCountForDomain(site_url_);
938 cookie_info.blocked = blocked_objects.GetObjectCountForDomain(site_url_);
palmerb145264922015-08-28 23:53:15939 cookie_info.is_first_party = true;
[email protected]e0ac35892012-05-15 12:53:34940 cookie_info_list.push_back(cookie_info);
941
942 // Add third party cookie counts.
[email protected]e0ac35892012-05-15 12:53:34943 cookie_info.allowed = allowed_objects.GetObjectCount() - cookie_info.allowed;
944 cookie_info.blocked = blocked_objects.GetObjectCount() - cookie_info.blocked;
palmerb145264922015-08-28 23:53:15945 cookie_info.is_first_party = false;
[email protected]df818272012-04-20 13:10:50946 cookie_info_list.push_back(cookie_info);
[email protected]0b9fdd72012-04-04 10:00:33947
[email protected]df818272012-04-20 13:10:50948 ui_->SetCookieInfo(cookie_info_list);
[email protected]0b9fdd72012-04-04 10:00:33949}
[email protected]16de6de2012-04-04 12:24:14950
lgarron617a30f32017-03-24 21:42:07951void PageInfo::PresentSiteIdentity() {
palmerf9b680a2015-07-09 18:56:04952 // After initialization the status about the site's connection and its
953 // identity must be available.
[email protected]24c8818c2012-04-25 09:57:41954 DCHECK_NE(site_identity_status_, SITE_IDENTITY_STATUS_UNKNOWN);
955 DCHECK_NE(site_connection_status_, SITE_CONNECTION_STATUS_UNKNOWN);
lgarron617a30f32017-03-24 21:42:07956 PageInfoUI::IdentityInfo info;
[email protected]24c8818c2012-04-25 09:57:41957 if (site_identity_status_ == SITE_IDENTITY_STATUS_EV_CERT)
958 info.site_identity = UTF16ToUTF8(organization_name());
959 else
jshin1fb76462016-04-05 22:13:03960 info.site_identity = UTF16ToUTF8(GetSimpleSiteName(site_url_));
[email protected]24c8818c2012-04-25 09:57:41961
962 info.connection_status = site_connection_status_;
lgarron1a6300d2017-03-18 03:33:04963 info.connection_status_description = UTF16ToUTF8(site_connection_details_);
[email protected]24c8818c2012-04-25 09:57:41964 info.identity_status = site_identity_status_;
Joe DeBlasioecda2b42019-06-26 22:18:40965 info.safe_browsing_status = safe_browsing_status_;
966 info.identity_status_description = UTF16ToUTF8(site_details_message_);
jam8ae7cad2016-09-08 23:55:21967 info.certificate = certificate_;
[email protected]71cd5ef2014-08-13 21:22:04968 info.show_ssl_decision_revoke_button = show_ssl_decision_revoke_button_;
Jialiu Lin11e18542017-08-14 18:16:26969 info.show_change_password_buttons = show_change_password_buttons_;
[email protected]24c8818c2012-04-25 09:57:41970 ui_->SetIdentityInfo(info);
[email protected]24c8818c2012-04-25 09:57:41971}
Patti7f21c4b2017-11-28 03:37:17972
Suman Kancherlad54a6e5b2019-01-29 22:17:49973void PageInfo::PresentPageFeatureInfo() {
974 PageInfoUI::PageFeatureInfo info;
975 info.is_vr_presentation_in_headset =
976 vr::VrTabHelper::IsContentDisplayedInHeadset(web_contents());
977
978 ui_->SetPageFeatureInfo(info);
979}
980
Joe DeBlasioc7187e62019-04-25 21:14:15981#if defined(FULL_SAFE_BROWSING)
982void PageInfo::RecordPasswordReuseEvent() {
983 if (!password_protection_service_) {
984 return;
985 }
986
Joe DeBlasioecda2b42019-06-26 22:18:40987 if (safe_browsing_status_ == SAFE_BROWSING_STATUS_SIGN_IN_PASSWORD_REUSE) {
Joe DeBlasioc7187e62019-04-25 21:14:15988 safe_browsing::LogWarningAction(
989 safe_browsing::WarningUIType::PAGE_INFO,
990 safe_browsing::WarningAction::SHOWN,
991 safe_browsing::LoginReputationClientRequest::PasswordReuseEvent::
992 SIGN_IN_PASSWORD,
993 password_protection_service_->GetSyncAccountType());
994 } else {
995 safe_browsing::LogWarningAction(
996 safe_browsing::WarningUIType::PAGE_INFO,
997 safe_browsing::WarningAction::SHOWN,
998 safe_browsing::LoginReputationClientRequest::PasswordReuseEvent::
999 ENTERPRISE_PASSWORD,
1000 password_protection_service_->GetSyncAccountType());
1001 }
1002}
1003#endif
1004
Patti7f21c4b2017-11-28 03:37:171005std::vector<ContentSettingsType> PageInfo::GetAllPermissionsForTesting() {
1006 std::vector<ContentSettingsType> permission_list;
Avi Drissman22f82872018-12-25 23:09:071007 for (size_t i = 0; i < base::size(kPermissionType); ++i) {
Patti7f21c4b2017-11-28 03:37:171008#if !defined(OS_ANDROID)
1009 if (kPermissionType[i] == CONTENT_SETTINGS_TYPE_AUTOPLAY)
1010 continue;
1011#endif
1012 permission_list.push_back(kPermissionType[i]);
1013 }
1014 return permission_list;
1015}
Jialiu Lin4d7c6042018-04-04 17:45:351016
Joe DeBlasioecda2b42019-06-26 22:18:401017void PageInfo::GetSafeBrowsingStatusByMaliciousContentStatus(
Jialiu Lin4d7c6042018-04-04 17:45:351018 security_state::MaliciousContentStatus malicious_content_status,
Joe DeBlasioecda2b42019-06-26 22:18:401019 PageInfo::SafeBrowsingStatus* status,
Jialiu Lin4d7c6042018-04-04 17:45:351020 base::string16* details) {
1021 switch (malicious_content_status) {
1022 case security_state::MALICIOUS_CONTENT_STATUS_NONE:
1023 NOTREACHED();
1024 break;
1025 case security_state::MALICIOUS_CONTENT_STATUS_MALWARE:
Joe DeBlasioecda2b42019-06-26 22:18:401026 *status = PageInfo::SAFE_BROWSING_STATUS_MALWARE;
Jialiu Lin4d7c6042018-04-04 17:45:351027 *details = l10n_util::GetStringUTF16(IDS_PAGE_INFO_MALWARE_DETAILS);
1028 break;
1029 case security_state::MALICIOUS_CONTENT_STATUS_SOCIAL_ENGINEERING:
Joe DeBlasioecda2b42019-06-26 22:18:401030 *status = PageInfo::SAFE_BROWSING_STATUS_SOCIAL_ENGINEERING;
Jialiu Lin4d7c6042018-04-04 17:45:351031 *details =
1032 l10n_util::GetStringUTF16(IDS_PAGE_INFO_SOCIAL_ENGINEERING_DETAILS);
1033 break;
1034 case security_state::MALICIOUS_CONTENT_STATUS_UNWANTED_SOFTWARE:
Joe DeBlasioecda2b42019-06-26 22:18:401035 *status = PageInfo::SAFE_BROWSING_STATUS_UNWANTED_SOFTWARE;
Jialiu Lin4d7c6042018-04-04 17:45:351036 *details =
1037 l10n_util::GetStringUTF16(IDS_PAGE_INFO_UNWANTED_SOFTWARE_DETAILS);
1038 break;
Jialiu Lind7defe652018-06-20 18:47:061039 case security_state::MALICIOUS_CONTENT_STATUS_SIGN_IN_PASSWORD_REUSE:
Michael Thiessen4c9e4a82019-03-08 04:39:441040#if defined(FULL_SAFE_BROWSING)
Joe DeBlasioecda2b42019-06-26 22:18:401041 *status = PageInfo::SAFE_BROWSING_STATUS_SIGN_IN_PASSWORD_REUSE;
Jialiu Lind7defe652018-06-20 18:47:061042 // |password_protection_service_| may be null in test.
1043 *details = password_protection_service_
1044 ? password_protection_service_->GetWarningDetailText(
1045 PasswordReuseEvent::SIGN_IN_PASSWORD)
1046 : base::string16();
1047#endif
1048 break;
1049 case security_state::MALICIOUS_CONTENT_STATUS_ENTERPRISE_PASSWORD_REUSE:
Michael Thiessen4c9e4a82019-03-08 04:39:441050#if defined(FULL_SAFE_BROWSING)
Joe DeBlasioecda2b42019-06-26 22:18:401051 *status = PageInfo::SAFE_BROWSING_STATUS_ENTERPRISE_PASSWORD_REUSE;
Jialiu Lind7defe652018-06-20 18:47:061052 // |password_protection_service_| maybe null in test.
1053 *details = password_protection_service_
1054 ? password_protection_service_->GetWarningDetailText(
1055 PasswordReuseEvent::ENTERPRISE_PASSWORD)
1056 : base::string16();
Jialiu Lin4d7c6042018-04-04 17:45:351057#endif
1058 break;
spqchan6da308a2018-08-10 19:19:531059 case security_state::MALICIOUS_CONTENT_STATUS_BILLING:
Joe DeBlasioecda2b42019-06-26 22:18:401060 *status = PageInfo::SAFE_BROWSING_STATUS_BILLING;
spqchan6da308a2018-08-10 19:19:531061 *details = l10n_util::GetStringUTF16(IDS_PAGE_INFO_BILLING_DETAILS);
spqchan6da308a2018-08-10 19:19:531062 break;
Jialiu Lin4d7c6042018-04-04 17:45:351063 }
1064}