[email protected] | 9c4eff2 | 2012-03-20 22:42:29 | [diff] [blame] | 1 | // Copyright (c) 2012 The Chromium Authors. All rights reserved. |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 2 | // Use of this source code is governed by a BSD-style license that can be |
| 3 | // found in the LICENSE file. |
| 4 | |
| 5 | #include "net/socket/client_socket_pool_manager_impl.h" |
| 6 | |
dkelson | 64cb80d3 | 2015-11-11 04:30:45 | [diff] [blame] | 7 | #include <algorithm> |
dcheng | c7eeda42 | 2015-12-26 03:56:48 | [diff] [blame] | 8 | #include <utility> |
dkelson | 64cb80d3 | 2015-11-11 04:30:45 | [diff] [blame] | 9 | |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 10 | #include "base/logging.h" |
avi | adef344 | 2016-10-03 18:50:39 | [diff] [blame] | 11 | #include "base/memory/ptr_util.h" |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 12 | #include "base/values.h" |
[email protected] | a8af215 | 2012-03-21 20:29:52 | [diff] [blame] | 13 | #include "net/http/http_network_session.h" |
[email protected] | 536fd0b | 2013-03-14 17:41:57 | [diff] [blame] | 14 | #include "net/http/http_proxy_client_socket_pool.h" |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 15 | #include "net/socket/socks_client_socket_pool.h" |
| 16 | #include "net/socket/ssl_client_socket_pool.h" |
| 17 | #include "net/socket/transport_client_socket_pool.h" |
[email protected] | 65486614 | 2014-06-24 22:53:31 | [diff] [blame] | 18 | #include "net/socket/websocket_transport_client_socket_pool.h" |
[email protected] | 536fd0b | 2013-03-14 17:41:57 | [diff] [blame] | 19 | #include "net/ssl/ssl_config_service.h" |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 20 | |
| 21 | namespace net { |
| 22 | |
tbansal | 7b403bcc | 2016-04-13 22:33:21 | [diff] [blame] | 23 | class SocketPerformanceWatcherFactory; |
| 24 | |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 25 | namespace { |
| 26 | |
| 27 | // Appends information about all |socket_pools| to the end of |list|. |
| 28 | template <class MapType> |
[email protected] | ea5ef4c | 2013-06-13 22:50:27 | [diff] [blame] | 29 | void AddSocketPoolsToList(base::ListValue* list, |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 30 | const MapType& socket_pools, |
| 31 | const std::string& type, |
| 32 | bool include_nested_pools) { |
| 33 | for (typename MapType::const_iterator it = socket_pools.begin(); |
| 34 | it != socket_pools.end(); it++) { |
| 35 | list->Append(it->second->GetInfoAsValue(it->first.ToString(), |
| 36 | type, |
| 37 | include_nested_pools)); |
| 38 | } |
| 39 | } |
| 40 | |
| 41 | } // namespace |
| 42 | |
| 43 | ClientSocketPoolManagerImpl::ClientSocketPoolManagerImpl( |
| 44 | NetLog* net_log, |
| 45 | ClientSocketFactory* socket_factory, |
tbansal | 7b403bcc | 2016-04-13 22:33:21 | [diff] [blame] | 46 | SocketPerformanceWatcherFactory* socket_performance_watcher_factory, |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 47 | HostResolver* host_resolver, |
| 48 | CertVerifier* cert_verifier, |
[email protected] | 6b8a3c74 | 2014-07-25 00:25:35 | [diff] [blame] | 49 | ChannelIDService* channel_id_service, |
[email protected] | a2a4197 | 2011-12-07 17:47:27 | [diff] [blame] | 50 | TransportSecurityState* transport_security_state, |
[email protected] | 284303b6 | 2013-11-28 15:11:54 | [diff] [blame] | 51 | CTVerifier* cert_transparency_verifier, |
estark | 6f9b3d8 | 2016-01-12 21:37:05 | [diff] [blame] | 52 | CTPolicyEnforcer* ct_policy_enforcer, |
[email protected] | c3456bb | 2011-12-12 22:22:19 | [diff] [blame] | 53 | const std::string& ssl_session_cache_shard, |
[email protected] | a8af215 | 2012-03-21 20:29:52 | [diff] [blame] | 54 | SSLConfigService* ssl_config_service, |
| 55 | HttpNetworkSession::SocketPoolType pool_type) |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 56 | : net_log_(net_log), |
| 57 | socket_factory_(socket_factory), |
tbansal | 7b403bcc | 2016-04-13 22:33:21 | [diff] [blame] | 58 | socket_performance_watcher_factory_(socket_performance_watcher_factory), |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 59 | host_resolver_(host_resolver), |
| 60 | cert_verifier_(cert_verifier), |
[email protected] | 6b8a3c74 | 2014-07-25 00:25:35 | [diff] [blame] | 61 | channel_id_service_(channel_id_service), |
[email protected] | a2a4197 | 2011-12-07 17:47:27 | [diff] [blame] | 62 | transport_security_state_(transport_security_state), |
[email protected] | 284303b6 | 2013-11-28 15:11:54 | [diff] [blame] | 63 | cert_transparency_verifier_(cert_transparency_verifier), |
estark | 6f9b3d8 | 2016-01-12 21:37:05 | [diff] [blame] | 64 | ct_policy_enforcer_(ct_policy_enforcer), |
[email protected] | c3456bb | 2011-12-12 22:22:19 | [diff] [blame] | 65 | ssl_session_cache_shard_(ssl_session_cache_shard), |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 66 | ssl_config_service_(ssl_config_service), |
[email protected] | a8af215 | 2012-03-21 20:29:52 | [diff] [blame] | 67 | pool_type_(pool_type), |
tbansal | 7b403bcc | 2016-04-13 22:33:21 | [diff] [blame] | 68 | transport_socket_pool_(pool_type == |
| 69 | HttpNetworkSession::WEBSOCKET_SOCKET_POOL |
| 70 | ? new WebSocketTransportClientSocketPool( |
| 71 | max_sockets_per_pool(pool_type), |
| 72 | max_sockets_per_group(pool_type), |
| 73 | host_resolver, |
| 74 | socket_factory_, |
| 75 | net_log) |
| 76 | : new TransportClientSocketPool( |
| 77 | max_sockets_per_pool(pool_type), |
| 78 | max_sockets_per_group(pool_type), |
| 79 | host_resolver, |
| 80 | socket_factory_, |
| 81 | socket_performance_watcher_factory_, |
| 82 | net_log)), |
[email protected] | 8e45855 | 2014-08-05 00:02:15 | [diff] [blame] | 83 | ssl_socket_pool_(new SSLClientSocketPool(max_sockets_per_pool(pool_type), |
| 84 | max_sockets_per_group(pool_type), |
[email protected] | 8e45855 | 2014-08-05 00:02:15 | [diff] [blame] | 85 | cert_verifier, |
| 86 | channel_id_service, |
| 87 | transport_security_state, |
| 88 | cert_transparency_verifier, |
estark | 6f9b3d8 | 2016-01-12 21:37:05 | [diff] [blame] | 89 | ct_policy_enforcer, |
[email protected] | 8e45855 | 2014-08-05 00:02:15 | [diff] [blame] | 90 | ssl_session_cache_shard, |
| 91 | socket_factory, |
| 92 | transport_socket_pool_.get(), |
avi | adef344 | 2016-10-03 18:50:39 | [diff] [blame] | 93 | nullptr /* no socks proxy */, |
| 94 | nullptr /* no http proxy */, |
[email protected] | 8e45855 | 2014-08-05 00:02:15 | [diff] [blame] | 95 | ssl_config_service, |
rkaplow | d90695c | 2015-03-25 22:12:41 | [diff] [blame] | 96 | net_log)) { |
[email protected] | 7fda9a40 | 2012-09-10 14:11:07 | [diff] [blame] | 97 | CertDatabase::GetInstance()->AddObserver(this); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 98 | } |
| 99 | |
| 100 | ClientSocketPoolManagerImpl::~ClientSocketPoolManagerImpl() { |
[email protected] | 7fda9a40 | 2012-09-10 14:11:07 | [diff] [blame] | 101 | CertDatabase::GetInstance()->RemoveObserver(this); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 102 | } |
| 103 | |
[email protected] | 7af985a | 2012-12-14 22:40:42 | [diff] [blame] | 104 | void ClientSocketPoolManagerImpl::FlushSocketPoolsWithError(int error) { |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 105 | // Flush the highest level pools first, since higher level pools may release |
| 106 | // stuff to the lower level pools. |
| 107 | |
| 108 | for (SSLSocketPoolMap::const_iterator it = |
| 109 | ssl_socket_pools_for_proxies_.begin(); |
| 110 | it != ssl_socket_pools_for_proxies_.end(); |
| 111 | ++it) |
[email protected] | 7af985a | 2012-12-14 22:40:42 | [diff] [blame] | 112 | it->second->FlushWithError(error); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 113 | |
| 114 | for (HTTPProxySocketPoolMap::const_iterator it = |
| 115 | http_proxy_socket_pools_.begin(); |
| 116 | it != http_proxy_socket_pools_.end(); |
| 117 | ++it) |
[email protected] | 7af985a | 2012-12-14 22:40:42 | [diff] [blame] | 118 | it->second->FlushWithError(error); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 119 | |
| 120 | for (SSLSocketPoolMap::const_iterator it = |
| 121 | ssl_socket_pools_for_https_proxies_.begin(); |
| 122 | it != ssl_socket_pools_for_https_proxies_.end(); |
| 123 | ++it) |
[email protected] | 7af985a | 2012-12-14 22:40:42 | [diff] [blame] | 124 | it->second->FlushWithError(error); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 125 | |
| 126 | for (TransportSocketPoolMap::const_iterator it = |
| 127 | transport_socket_pools_for_https_proxies_.begin(); |
| 128 | it != transport_socket_pools_for_https_proxies_.end(); |
| 129 | ++it) |
[email protected] | 7af985a | 2012-12-14 22:40:42 | [diff] [blame] | 130 | it->second->FlushWithError(error); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 131 | |
| 132 | for (TransportSocketPoolMap::const_iterator it = |
| 133 | transport_socket_pools_for_http_proxies_.begin(); |
| 134 | it != transport_socket_pools_for_http_proxies_.end(); |
| 135 | ++it) |
[email protected] | 7af985a | 2012-12-14 22:40:42 | [diff] [blame] | 136 | it->second->FlushWithError(error); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 137 | |
| 138 | for (SOCKSSocketPoolMap::const_iterator it = |
| 139 | socks_socket_pools_.begin(); |
| 140 | it != socks_socket_pools_.end(); |
| 141 | ++it) |
[email protected] | 7af985a | 2012-12-14 22:40:42 | [diff] [blame] | 142 | it->second->FlushWithError(error); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 143 | |
| 144 | for (TransportSocketPoolMap::const_iterator it = |
| 145 | transport_socket_pools_for_socks_proxies_.begin(); |
| 146 | it != transport_socket_pools_for_socks_proxies_.end(); |
| 147 | ++it) |
[email protected] | 7af985a | 2012-12-14 22:40:42 | [diff] [blame] | 148 | it->second->FlushWithError(error); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 149 | |
[email protected] | 7af985a | 2012-12-14 22:40:42 | [diff] [blame] | 150 | ssl_socket_pool_->FlushWithError(error); |
| 151 | transport_socket_pool_->FlushWithError(error); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 152 | } |
| 153 | |
| 154 | void ClientSocketPoolManagerImpl::CloseIdleSockets() { |
| 155 | // Close sockets in the highest level pools first, since higher level pools' |
| 156 | // sockets may release stuff to the lower level pools. |
| 157 | for (SSLSocketPoolMap::const_iterator it = |
| 158 | ssl_socket_pools_for_proxies_.begin(); |
| 159 | it != ssl_socket_pools_for_proxies_.end(); |
| 160 | ++it) |
| 161 | it->second->CloseIdleSockets(); |
| 162 | |
| 163 | for (HTTPProxySocketPoolMap::const_iterator it = |
| 164 | http_proxy_socket_pools_.begin(); |
| 165 | it != http_proxy_socket_pools_.end(); |
| 166 | ++it) |
| 167 | it->second->CloseIdleSockets(); |
| 168 | |
| 169 | for (SSLSocketPoolMap::const_iterator it = |
| 170 | ssl_socket_pools_for_https_proxies_.begin(); |
| 171 | it != ssl_socket_pools_for_https_proxies_.end(); |
| 172 | ++it) |
| 173 | it->second->CloseIdleSockets(); |
| 174 | |
| 175 | for (TransportSocketPoolMap::const_iterator it = |
| 176 | transport_socket_pools_for_https_proxies_.begin(); |
| 177 | it != transport_socket_pools_for_https_proxies_.end(); |
| 178 | ++it) |
| 179 | it->second->CloseIdleSockets(); |
| 180 | |
| 181 | for (TransportSocketPoolMap::const_iterator it = |
| 182 | transport_socket_pools_for_http_proxies_.begin(); |
| 183 | it != transport_socket_pools_for_http_proxies_.end(); |
| 184 | ++it) |
| 185 | it->second->CloseIdleSockets(); |
| 186 | |
| 187 | for (SOCKSSocketPoolMap::const_iterator it = |
| 188 | socks_socket_pools_.begin(); |
| 189 | it != socks_socket_pools_.end(); |
| 190 | ++it) |
| 191 | it->second->CloseIdleSockets(); |
| 192 | |
| 193 | for (TransportSocketPoolMap::const_iterator it = |
| 194 | transport_socket_pools_for_socks_proxies_.begin(); |
| 195 | it != transport_socket_pools_for_socks_proxies_.end(); |
| 196 | ++it) |
| 197 | it->second->CloseIdleSockets(); |
| 198 | |
| 199 | ssl_socket_pool_->CloseIdleSockets(); |
| 200 | transport_socket_pool_->CloseIdleSockets(); |
| 201 | } |
| 202 | |
| 203 | TransportClientSocketPool* |
| 204 | ClientSocketPoolManagerImpl::GetTransportSocketPool() { |
| 205 | return transport_socket_pool_.get(); |
| 206 | } |
| 207 | |
| 208 | SSLClientSocketPool* ClientSocketPoolManagerImpl::GetSSLSocketPool() { |
| 209 | return ssl_socket_pool_.get(); |
| 210 | } |
| 211 | |
| 212 | SOCKSClientSocketPool* ClientSocketPoolManagerImpl::GetSocketPoolForSOCKSProxy( |
| 213 | const HostPortPair& socks_proxy) { |
| 214 | SOCKSSocketPoolMap::const_iterator it = socks_socket_pools_.find(socks_proxy); |
| 215 | if (it != socks_socket_pools_.end()) { |
skyostil | b8f60ca | 2016-08-12 12:34:43 | [diff] [blame] | 216 | DCHECK(base::ContainsKey(transport_socket_pools_for_socks_proxies_, |
| 217 | socks_proxy)); |
avi | adef344 | 2016-10-03 18:50:39 | [diff] [blame] | 218 | return it->second.get(); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 219 | } |
| 220 | |
skyostil | b8f60ca | 2016-08-12 12:34:43 | [diff] [blame] | 221 | DCHECK(!base::ContainsKey(transport_socket_pools_for_socks_proxies_, |
| 222 | socks_proxy)); |
dkelson | 64cb80d3 | 2015-11-11 04:30:45 | [diff] [blame] | 223 | int sockets_per_proxy_server = max_sockets_per_proxy_server(pool_type_); |
| 224 | int sockets_per_group = std::min(sockets_per_proxy_server, |
| 225 | max_sockets_per_group(pool_type_)); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 226 | |
| 227 | std::pair<TransportSocketPoolMap::iterator, bool> tcp_ret = |
tbansal | 7b403bcc | 2016-04-13 22:33:21 | [diff] [blame] | 228 | transport_socket_pools_for_socks_proxies_.insert(std::make_pair( |
| 229 | socks_proxy, |
avi | adef344 | 2016-10-03 18:50:39 | [diff] [blame] | 230 | base::MakeUnique<TransportClientSocketPool>( |
| 231 | sockets_per_proxy_server, sockets_per_group, host_resolver_, |
| 232 | socket_factory_, nullptr, net_log_))); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 233 | DCHECK(tcp_ret.second); |
| 234 | |
| 235 | std::pair<SOCKSSocketPoolMap::iterator, bool> ret = |
tbansal | 7b403bcc | 2016-04-13 22:33:21 | [diff] [blame] | 236 | socks_socket_pools_.insert(std::make_pair( |
| 237 | socks_proxy, |
avi | adef344 | 2016-10-03 18:50:39 | [diff] [blame] | 238 | base::MakeUnique<SOCKSClientSocketPool>( |
| 239 | sockets_per_proxy_server, sockets_per_group, host_resolver_, |
| 240 | tcp_ret.first->second.get(), nullptr, net_log_))); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 241 | |
avi | adef344 | 2016-10-03 18:50:39 | [diff] [blame] | 242 | return ret.first->second.get(); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 243 | } |
| 244 | |
| 245 | HttpProxyClientSocketPool* |
| 246 | ClientSocketPoolManagerImpl::GetSocketPoolForHTTPProxy( |
| 247 | const HostPortPair& http_proxy) { |
| 248 | HTTPProxySocketPoolMap::const_iterator it = |
| 249 | http_proxy_socket_pools_.find(http_proxy); |
| 250 | if (it != http_proxy_socket_pools_.end()) { |
skyostil | b8f60ca | 2016-08-12 12:34:43 | [diff] [blame] | 251 | DCHECK(base::ContainsKey(transport_socket_pools_for_http_proxies_, |
| 252 | http_proxy)); |
| 253 | DCHECK(base::ContainsKey(transport_socket_pools_for_https_proxies_, |
| 254 | http_proxy)); |
| 255 | DCHECK(base::ContainsKey(ssl_socket_pools_for_https_proxies_, http_proxy)); |
avi | adef344 | 2016-10-03 18:50:39 | [diff] [blame] | 256 | return it->second.get(); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 257 | } |
| 258 | |
skyostil | b8f60ca | 2016-08-12 12:34:43 | [diff] [blame] | 259 | DCHECK( |
| 260 | !base::ContainsKey(transport_socket_pools_for_http_proxies_, http_proxy)); |
| 261 | DCHECK(!base::ContainsKey(transport_socket_pools_for_https_proxies_, |
| 262 | http_proxy)); |
| 263 | DCHECK(!base::ContainsKey(ssl_socket_pools_for_https_proxies_, http_proxy)); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 264 | |
dkelson | 64cb80d3 | 2015-11-11 04:30:45 | [diff] [blame] | 265 | int sockets_per_proxy_server = max_sockets_per_proxy_server(pool_type_); |
| 266 | int sockets_per_group = std::min(sockets_per_proxy_server, |
| 267 | max_sockets_per_group(pool_type_)); |
| 268 | |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 269 | std::pair<TransportSocketPoolMap::iterator, bool> tcp_http_ret = |
tbansal | 7b403bcc | 2016-04-13 22:33:21 | [diff] [blame] | 270 | transport_socket_pools_for_http_proxies_.insert(std::make_pair( |
| 271 | http_proxy, |
avi | adef344 | 2016-10-03 18:50:39 | [diff] [blame] | 272 | base::MakeUnique<TransportClientSocketPool>( |
tbansal | 7b403bcc | 2016-04-13 22:33:21 | [diff] [blame] | 273 | sockets_per_proxy_server, sockets_per_group, host_resolver_, |
| 274 | socket_factory_, socket_performance_watcher_factory_, net_log_))); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 275 | DCHECK(tcp_http_ret.second); |
| 276 | |
| 277 | std::pair<TransportSocketPoolMap::iterator, bool> tcp_https_ret = |
tbansal | 7b403bcc | 2016-04-13 22:33:21 | [diff] [blame] | 278 | transport_socket_pools_for_https_proxies_.insert(std::make_pair( |
| 279 | http_proxy, |
avi | adef344 | 2016-10-03 18:50:39 | [diff] [blame] | 280 | base::MakeUnique<TransportClientSocketPool>( |
tbansal | 7b403bcc | 2016-04-13 22:33:21 | [diff] [blame] | 281 | sockets_per_proxy_server, sockets_per_group, host_resolver_, |
| 282 | socket_factory_, socket_performance_watcher_factory_, net_log_))); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 283 | DCHECK(tcp_https_ret.second); |
| 284 | |
| 285 | std::pair<SSLSocketPoolMap::iterator, bool> ssl_https_ret = |
[email protected] | 9049948 | 2013-06-01 00:39:50 | [diff] [blame] | 286 | ssl_socket_pools_for_https_proxies_.insert(std::make_pair( |
estark | 6f9b3d8 | 2016-01-12 21:37:05 | [diff] [blame] | 287 | http_proxy, |
avi | adef344 | 2016-10-03 18:50:39 | [diff] [blame] | 288 | base::MakeUnique<SSLClientSocketPool>( |
estark | 6f9b3d8 | 2016-01-12 21:37:05 | [diff] [blame] | 289 | sockets_per_proxy_server, sockets_per_group, cert_verifier_, |
| 290 | channel_id_service_, transport_security_state_, |
| 291 | cert_transparency_verifier_, ct_policy_enforcer_, |
| 292 | ssl_session_cache_shard_, socket_factory_, |
avi | adef344 | 2016-10-03 18:50:39 | [diff] [blame] | 293 | tcp_https_ret.first->second.get() /* https proxy */, |
| 294 | nullptr /* no socks proxy */, nullptr /* no http proxy */, |
estark | 6f9b3d8 | 2016-01-12 21:37:05 | [diff] [blame] | 295 | ssl_config_service_.get(), net_log_))); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 296 | DCHECK(tcp_https_ret.second); |
| 297 | |
| 298 | std::pair<HTTPProxySocketPoolMap::iterator, bool> ret = |
avi | adef344 | 2016-10-03 18:50:39 | [diff] [blame] | 299 | http_proxy_socket_pools_.insert(std::make_pair( |
| 300 | http_proxy, base::MakeUnique<HttpProxyClientSocketPool>( |
| 301 | sockets_per_proxy_server, sockets_per_group, |
| 302 | tcp_http_ret.first->second.get(), |
| 303 | ssl_https_ret.first->second.get(), net_log_))); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 304 | |
avi | adef344 | 2016-10-03 18:50:39 | [diff] [blame] | 305 | return ret.first->second.get(); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 306 | } |
| 307 | |
| 308 | SSLClientSocketPool* ClientSocketPoolManagerImpl::GetSocketPoolForSSLWithProxy( |
| 309 | const HostPortPair& proxy_server) { |
| 310 | SSLSocketPoolMap::const_iterator it = |
| 311 | ssl_socket_pools_for_proxies_.find(proxy_server); |
| 312 | if (it != ssl_socket_pools_for_proxies_.end()) |
avi | adef344 | 2016-10-03 18:50:39 | [diff] [blame] | 313 | return it->second.get(); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 314 | |
dkelson | 64cb80d3 | 2015-11-11 04:30:45 | [diff] [blame] | 315 | int sockets_per_proxy_server = max_sockets_per_proxy_server(pool_type_); |
| 316 | int sockets_per_group = std::min(sockets_per_proxy_server, |
| 317 | max_sockets_per_group(pool_type_)); |
| 318 | |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 319 | std::pair<SSLSocketPoolMap::iterator, bool> ret = |
avi | adef344 | 2016-10-03 18:50:39 | [diff] [blame] | 320 | ssl_socket_pools_for_proxies_.insert(std::make_pair( |
| 321 | proxy_server, |
| 322 | base::MakeUnique<SSLClientSocketPool>( |
| 323 | sockets_per_proxy_server, sockets_per_group, cert_verifier_, |
| 324 | channel_id_service_, transport_security_state_, |
| 325 | cert_transparency_verifier_, ct_policy_enforcer_, |
| 326 | ssl_session_cache_shard_, socket_factory_, |
| 327 | nullptr, /* no tcp pool, we always go through a proxy */ |
| 328 | GetSocketPoolForSOCKSProxy(proxy_server), |
| 329 | GetSocketPoolForHTTPProxy(proxy_server), |
| 330 | ssl_config_service_.get(), net_log_))); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 331 | |
avi | adef344 | 2016-10-03 18:50:39 | [diff] [blame] | 332 | return ret.first->second.get(); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 333 | } |
| 334 | |
danakj | 655b66c | 2016-04-16 00:51:38 | [diff] [blame] | 335 | std::unique_ptr<base::Value> |
| 336 | ClientSocketPoolManagerImpl::SocketPoolInfoToValue() const { |
| 337 | std::unique_ptr<base::ListValue> list(new base::ListValue()); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 338 | list->Append(transport_socket_pool_->GetInfoAsValue("transport_socket_pool", |
| 339 | "transport_socket_pool", |
| 340 | false)); |
| 341 | // Third parameter is false because |ssl_socket_pool_| uses |
| 342 | // |transport_socket_pool_| internally, and do not want to add it a second |
| 343 | // time. |
| 344 | list->Append(ssl_socket_pool_->GetInfoAsValue("ssl_socket_pool", |
| 345 | "ssl_socket_pool", |
| 346 | false)); |
payal.pandey | 62a40029 | 2015-05-28 09:29:54 | [diff] [blame] | 347 | AddSocketPoolsToList(list.get(), http_proxy_socket_pools_, |
| 348 | "http_proxy_socket_pool", true); |
| 349 | AddSocketPoolsToList(list.get(), socks_socket_pools_, "socks_socket_pool", |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 350 | true); |
| 351 | |
| 352 | // Third parameter is false because |ssl_socket_pools_for_proxies_| use |
| 353 | // socket pools in |http_proxy_socket_pools_| and |socks_socket_pools_|. |
payal.pandey | 62a40029 | 2015-05-28 09:29:54 | [diff] [blame] | 354 | AddSocketPoolsToList(list.get(), ssl_socket_pools_for_proxies_, |
| 355 | "ssl_socket_pool_for_proxies", false); |
dcheng | c7eeda42 | 2015-12-26 03:56:48 | [diff] [blame] | 356 | return std::move(list); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 357 | } |
| 358 | |
[email protected] | 7fda9a40 | 2012-09-10 14:11:07 | [diff] [blame] | 359 | void ClientSocketPoolManagerImpl::OnCertAdded(const X509Certificate* cert) { |
[email protected] | 7af985a | 2012-12-14 22:40:42 | [diff] [blame] | 360 | FlushSocketPoolsWithError(ERR_NETWORK_CHANGED); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 361 | } |
| 362 | |
[email protected] | c157b2e2 | 2013-10-31 01:38:33 | [diff] [blame] | 363 | void ClientSocketPoolManagerImpl::OnCACertChanged( |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 364 | const X509Certificate* cert) { |
| 365 | // We should flush the socket pools if we removed trust from a |
| 366 | // cert, because a previously trusted server may have become |
| 367 | // untrusted. |
| 368 | // |
| 369 | // We should not flush the socket pools if we added trust to a |
| 370 | // cert. |
| 371 | // |
[email protected] | c157b2e2 | 2013-10-31 01:38:33 | [diff] [blame] | 372 | // Since the OnCACertChanged method doesn't tell us what |
| 373 | // kind of change it is, we have to flush the socket |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 374 | // pools to be safe. |
[email protected] | 7af985a | 2012-12-14 22:40:42 | [diff] [blame] | 375 | FlushSocketPoolsWithError(ERR_NETWORK_CHANGED); |
[email protected] | a42dbd14 | 2011-11-17 16:42:02 | [diff] [blame] | 376 | } |
| 377 | |
| 378 | } // namespace net |