[email protected] | 1ce1597 | 2014-03-20 19:25:48 | [diff] [blame] | 1 | // Copyright 2014 The Chromium Authors. All rights reserved. |
| 2 | // Use of this source code is governed by a BSD-style license that can be |
| 3 | // found in the LICENSE file. |
| 4 | |
| 5 | #include "extensions/browser/extension_web_contents_observer.h" |
| 6 | |
| 7 | #include "content/public/browser/child_process_security_policy.h" |
jam | 78581ca | 2017-01-27 19:52:42 | [diff] [blame] | 8 | #include "content/public/browser/navigation_handle.h" |
rdevlin.cronin | 6ae04a01 | 2015-04-03 20:19:40 | [diff] [blame] | 9 | #include "content/public/browser/render_frame_host.h" |
[email protected] | 1ce1597 | 2014-03-20 19:25:48 | [diff] [blame] | 10 | #include "content/public/browser/render_process_host.h" |
| 11 | #include "content/public/browser/render_view_host.h" |
| 12 | #include "content/public/browser/site_instance.h" |
| 13 | #include "content/public/browser/web_contents.h" |
| 14 | #include "content/public/common/url_constants.h" |
rob | 3e2a073 | 2016-01-06 21:22:09 | [diff] [blame] | 15 | #include "extensions/browser/extension_api_frame_id_map.h" |
[email protected] | 1ce1597 | 2014-03-20 19:25:48 | [diff] [blame] | 16 | #include "extensions/browser/extension_prefs.h" |
| 17 | #include "extensions/browser/extension_registry.h" |
kmarshall | 166e5b4 | 2015-04-03 22:29:43 | [diff] [blame] | 18 | #include "extensions/browser/extensions_browser_client.h" |
sammc | 143f3c5 | 2015-02-13 09:42:38 | [diff] [blame] | 19 | #include "extensions/browser/mojo/service_registration.h" |
rdevlin.cronin | 6ae04a01 | 2015-04-03 20:19:40 | [diff] [blame] | 20 | #include "extensions/browser/process_manager.h" |
rdevlin.cronin | 5e510e80 | 2016-07-26 15:09:20 | [diff] [blame] | 21 | #include "extensions/browser/renderer_startup_helper.h" |
[email protected] | 1ce1597 | 2014-03-20 19:25:48 | [diff] [blame] | 22 | #include "extensions/browser/view_type_utils.h" |
| 23 | #include "extensions/common/constants.h" |
emaxx | e70f5e1 | 2015-05-29 11:26:00 | [diff] [blame] | 24 | #include "extensions/common/extension.h" |
[email protected] | 1ce1597 | 2014-03-20 19:25:48 | [diff] [blame] | 25 | #include "extensions/common/extension_messages.h" |
emaxx | e3baba1 | 2015-10-19 22:45:00 | [diff] [blame] | 26 | #include "extensions/common/view_type.h" |
csharrison | aec2c54 | 2016-10-12 19:40:36 | [diff] [blame] | 27 | #include "url/origin.h" |
[email protected] | 1ce1597 | 2014-03-20 19:25:48 | [diff] [blame] | 28 | |
| 29 | namespace extensions { |
| 30 | |
rdevlin.cronin | cb2ec659a | 2015-06-10 23:32:41 | [diff] [blame] | 31 | // static |
| 32 | ExtensionWebContentsObserver* ExtensionWebContentsObserver::GetForWebContents( |
| 33 | content::WebContents* web_contents) { |
| 34 | return ExtensionsBrowserClient::Get()->GetExtensionWebContentsObserver( |
| 35 | web_contents); |
| 36 | } |
| 37 | |
[email protected] | 1ce1597 | 2014-03-20 19:25:48 | [diff] [blame] | 38 | ExtensionWebContentsObserver::ExtensionWebContentsObserver( |
| 39 | content::WebContents* web_contents) |
| 40 | : content::WebContentsObserver(web_contents), |
rdevlin.cronin | cb2ec659a | 2015-06-10 23:32:41 | [diff] [blame] | 41 | browser_context_(web_contents->GetBrowserContext()), |
| 42 | dispatcher_(browser_context_) { |
rdevlin.cronin | 6f42c252 | 2015-06-19 18:58:51 | [diff] [blame] | 43 | web_contents->ForEachFrame( |
| 44 | base::Bind(&ExtensionWebContentsObserver::InitializeFrameHelper, |
| 45 | base::Unretained(this))); |
rdevlin.cronin | cb2ec659a | 2015-06-10 23:32:41 | [diff] [blame] | 46 | dispatcher_.set_delegate(this); |
[email protected] | 0b36507 | 2014-03-22 06:14:18 | [diff] [blame] | 47 | } |
[email protected] | 1ce1597 | 2014-03-20 19:25:48 | [diff] [blame] | 48 | |
rdevlin.cronin | 6ae04a01 | 2015-04-03 20:19:40 | [diff] [blame] | 49 | ExtensionWebContentsObserver::~ExtensionWebContentsObserver() { |
| 50 | } |
[email protected] | 1ce1597 | 2014-03-20 19:25:48 | [diff] [blame] | 51 | |
rdevlin.cronin | 6f42c252 | 2015-06-19 18:58:51 | [diff] [blame] | 52 | void ExtensionWebContentsObserver::InitializeRenderFrame( |
| 53 | content::RenderFrameHost* render_frame_host) { |
| 54 | DCHECK(render_frame_host); |
| 55 | DCHECK(render_frame_host->IsRenderFrameLive()); |
| 56 | |
rob | cdcc4b8 | 2015-12-06 12:39:45 | [diff] [blame] | 57 | // At the initialization of the render frame, the last committed URL is not |
| 58 | // reliable, so do not take it into account in determining whether it is an |
| 59 | // extension frame. |
| 60 | const Extension* frame_extension = |
| 61 | GetExtensionFromFrame(render_frame_host, false); |
| 62 | // This observer is attached to every WebContents, so we are also notified of |
| 63 | // frames that are not in an extension process. |
| 64 | if (!frame_extension) |
| 65 | return; |
| 66 | |
nick | 2a8ba8c | 2016-10-03 18:51:39 | [diff] [blame] | 67 | // |render_frame_host->GetProcess()| is an extension process. Grant permission |
| 68 | // to commit pages from chrome-extension:// origins. |
| 69 | content::ChildProcessSecurityPolicy* security_policy = |
| 70 | content::ChildProcessSecurityPolicy::GetInstance(); |
| 71 | int process_id = render_frame_host->GetProcess()->GetID(); |
| 72 | security_policy->GrantScheme(process_id, extensions::kExtensionScheme); |
nick | 2a8ba8c | 2016-10-03 18:51:39 | [diff] [blame] | 73 | |
rdevlin.cronin | 6f42c252 | 2015-06-19 18:58:51 | [diff] [blame] | 74 | // Notify the render frame of the view type. |
| 75 | render_frame_host->Send(new ExtensionMsg_NotifyRenderViewType( |
| 76 | render_frame_host->GetRoutingID(), GetViewType(web_contents()))); |
| 77 | |
rob | cdcc4b8 | 2015-12-06 12:39:45 | [diff] [blame] | 78 | ExtensionsBrowserClient::Get()->RegisterMojoServices(render_frame_host, |
| 79 | frame_extension); |
| 80 | ProcessManager::Get(browser_context_) |
| 81 | ->RegisterRenderFrameHost(web_contents(), render_frame_host, |
| 82 | frame_extension); |
rdevlin.cronin | 6f42c252 | 2015-06-19 18:58:51 | [diff] [blame] | 83 | } |
| 84 | |
rdevlin.cronin | cb2ec659a | 2015-06-10 23:32:41 | [diff] [blame] | 85 | content::WebContents* ExtensionWebContentsObserver::GetAssociatedWebContents() |
| 86 | const { |
| 87 | return web_contents(); |
| 88 | } |
| 89 | |
[email protected] | 1ce1597 | 2014-03-20 19:25:48 | [diff] [blame] | 90 | void ExtensionWebContentsObserver::RenderViewCreated( |
| 91 | content::RenderViewHost* render_view_host) { |
rdevlin.cronin | 6f42c252 | 2015-06-19 18:58:51 | [diff] [blame] | 92 | // TODO(devlin): Most/all of this should move to RenderFrameCreated. |
[email protected] | 1ce1597 | 2014-03-20 19:25:48 | [diff] [blame] | 93 | const Extension* extension = GetExtension(render_view_host); |
| 94 | if (!extension) |
| 95 | return; |
| 96 | |
[email protected] | 1ce1597 | 2014-03-20 19:25:48 | [diff] [blame] | 97 | Manifest::Type type = extension->GetType(); |
[email protected] | 1ce1597 | 2014-03-20 19:25:48 | [diff] [blame] | 98 | |
| 99 | // Some extensions use file:// URLs. |
| 100 | if (type == Manifest::TYPE_EXTENSION || |
| 101 | type == Manifest::TYPE_LEGACY_PACKAGED_APP) { |
| 102 | ExtensionPrefs* prefs = ExtensionPrefs::Get(browser_context_); |
| 103 | if (prefs->AllowFileAccess(extension->id())) { |
| 104 | content::ChildProcessSecurityPolicy::GetInstance()->GrantScheme( |
paulmeyer | 1eefa26e | 2015-10-01 02:11:13 | [diff] [blame] | 105 | render_view_host->GetProcess()->GetID(), url::kFileScheme); |
[email protected] | 1ce1597 | 2014-03-20 19:25:48 | [diff] [blame] | 106 | } |
| 107 | } |
| 108 | |
kalman | 8bcbc759 | 2015-06-03 23:12:27 | [diff] [blame] | 109 | // Tells the new view that it's hosted in an extension process. |
| 110 | // |
| 111 | // This will often be a rendant IPC, because activating extensions happens at |
| 112 | // the process level, not at the view level. However, without some mild |
| 113 | // refactoring this isn't trivial to do, and this way is simpler. |
| 114 | // |
| 115 | // Plus, we can delete the concept of activating an extension once site |
| 116 | // isolation is turned on. |
rdevlin.cronin | 5e510e80 | 2016-07-26 15:09:20 | [diff] [blame] | 117 | RendererStartupHelperFactory::GetForBrowserContext(browser_context_) |
rdevlin.cronin | c40d39f | 2016-08-04 23:42:13 | [diff] [blame] | 118 | ->ActivateExtensionInProcess(*extension, render_view_host->GetProcess()); |
[email protected] | 1ce1597 | 2014-03-20 19:25:48 | [diff] [blame] | 119 | } |
| 120 | |
sammc | 143f3c5 | 2015-02-13 09:42:38 | [diff] [blame] | 121 | void ExtensionWebContentsObserver::RenderFrameCreated( |
| 122 | content::RenderFrameHost* render_frame_host) { |
rdevlin.cronin | 6f42c252 | 2015-06-19 18:58:51 | [diff] [blame] | 123 | InitializeRenderFrame(render_frame_host); |
rob | 3e2a073 | 2016-01-06 21:22:09 | [diff] [blame] | 124 | |
| 125 | // Optimization: Look up the extension API frame ID to force the mapping to be |
| 126 | // cached. This minimizes the number of IO->UI->IO thread hops when the ID is |
| 127 | // looked up again on the IO thread for the webRequest API. |
rdevlin.cronin | 9a62870f | 2016-02-11 23:25:58 | [diff] [blame] | 128 | ExtensionApiFrameIdMap::Get()->CacheFrameData(render_frame_host); |
rdevlin.cronin | 6f42c252 | 2015-06-19 18:58:51 | [diff] [blame] | 129 | } |
| 130 | |
| 131 | void ExtensionWebContentsObserver::RenderFrameDeleted( |
| 132 | content::RenderFrameHost* render_frame_host) { |
| 133 | ProcessManager::Get(browser_context_) |
| 134 | ->UnregisterRenderFrameHost(render_frame_host); |
rdevlin.cronin | 9a62870f | 2016-02-11 23:25:58 | [diff] [blame] | 135 | ExtensionApiFrameIdMap::Get()->RemoveFrameData(render_frame_host); |
sammc | 143f3c5 | 2015-02-13 09:42:38 | [diff] [blame] | 136 | } |
| 137 | |
jam | 78581ca | 2017-01-27 19:52:42 | [diff] [blame] | 138 | void ExtensionWebContentsObserver::DidFinishNavigation( |
| 139 | content::NavigationHandle* navigation_handle) { |
| 140 | if (!navigation_handle->HasCommitted()) |
| 141 | return; |
| 142 | |
rob | cdcc4b8 | 2015-12-06 12:39:45 | [diff] [blame] | 143 | ProcessManager* pm = ProcessManager::Get(browser_context_); |
| 144 | |
jam | 78581ca | 2017-01-27 19:52:42 | [diff] [blame] | 145 | content::RenderFrameHost* render_frame_host = |
| 146 | navigation_handle->GetRenderFrameHost(); |
rob | cdcc4b8 | 2015-12-06 12:39:45 | [diff] [blame] | 147 | const Extension* frame_extension = |
| 148 | GetExtensionFromFrame(render_frame_host, true); |
rob | cdcc4b8 | 2015-12-06 12:39:45 | [diff] [blame] | 149 | if (pm->IsRenderFrameHostRegistered(render_frame_host)) { |
Nasko Oskov | 7cdb0ae | 2017-06-06 15:17:41 | [diff] [blame] | 150 | if (!frame_extension) |
jam | 6987a2d | 2017-02-06 19:10:43 | [diff] [blame] | 151 | pm->UnregisterRenderFrameHost(render_frame_host); |
jam | 6987a2d | 2017-02-06 19:10:43 | [diff] [blame] | 152 | } else if (frame_extension) { |
rob | cdcc4b8 | 2015-12-06 12:39:45 | [diff] [blame] | 153 | pm->RegisterRenderFrameHost(web_contents(), render_frame_host, |
| 154 | frame_extension); |
| 155 | } |
| 156 | } |
| 157 | |
rdevlin.cronin | cb2ec659a | 2015-06-10 23:32:41 | [diff] [blame] | 158 | bool ExtensionWebContentsObserver::OnMessageReceived( |
rdevlin.cronin | 92503ba | 2015-06-12 17:00:56 | [diff] [blame] | 159 | const IPC::Message& message, |
| 160 | content::RenderFrameHost* render_frame_host) { |
rdevlin.cronin | cb2ec659a | 2015-06-10 23:32:41 | [diff] [blame] | 161 | bool handled = true; |
rdevlin.cronin | 92503ba | 2015-06-12 17:00:56 | [diff] [blame] | 162 | IPC_BEGIN_MESSAGE_MAP_WITH_PARAM( |
| 163 | ExtensionWebContentsObserver, message, render_frame_host) |
rdevlin.cronin | cb2ec659a | 2015-06-10 23:32:41 | [diff] [blame] | 164 | IPC_MESSAGE_HANDLER(ExtensionHostMsg_Request, OnRequest) |
| 165 | IPC_MESSAGE_UNHANDLED(handled = false) |
| 166 | IPC_END_MESSAGE_MAP() |
| 167 | return handled; |
| 168 | } |
| 169 | |
emaxx | e70f5e1 | 2015-05-29 11:26:00 | [diff] [blame] | 170 | void ExtensionWebContentsObserver::PepperInstanceCreated() { |
emaxx | e3baba1 | 2015-10-19 22:45:00 | [diff] [blame] | 171 | if (GetViewType(web_contents()) == VIEW_TYPE_EXTENSION_BACKGROUND_PAGE) { |
| 172 | ProcessManager* const process_manager = |
| 173 | ProcessManager::Get(browser_context_); |
| 174 | const Extension* const extension = |
| 175 | process_manager->GetExtensionForWebContents(web_contents()); |
| 176 | if (extension) |
| 177 | process_manager->IncrementLazyKeepaliveCount(extension); |
| 178 | } |
emaxx | e70f5e1 | 2015-05-29 11:26:00 | [diff] [blame] | 179 | } |
| 180 | |
| 181 | void ExtensionWebContentsObserver::PepperInstanceDeleted() { |
emaxx | e3baba1 | 2015-10-19 22:45:00 | [diff] [blame] | 182 | if (GetViewType(web_contents()) == VIEW_TYPE_EXTENSION_BACKGROUND_PAGE) { |
| 183 | ProcessManager* const process_manager = |
| 184 | ProcessManager::Get(browser_context_); |
| 185 | const Extension* const extension = |
| 186 | process_manager->GetExtensionForWebContents(web_contents()); |
| 187 | if (extension) |
| 188 | process_manager->DecrementLazyKeepaliveCount(extension); |
| 189 | } |
emaxx | e70f5e1 | 2015-05-29 11:26:00 | [diff] [blame] | 190 | } |
| 191 | |
rdevlin.cronin | 86f5b70 | 2015-06-24 18:49:17 | [diff] [blame] | 192 | std::string ExtensionWebContentsObserver::GetExtensionIdFromFrame( |
| 193 | content::RenderFrameHost* render_frame_host) const { |
rob | 90e0bcd7 | 2015-12-08 09:29:42 | [diff] [blame] | 194 | // The second argument is false because |render_frame_host| need not be an |
| 195 | // active RenderFrameHost (crbug.com/567277). |
| 196 | // TODO(robwu): If there is a method to check whether |render_frame_host| is |
| 197 | // an active host, use it. |
| 198 | const Extension* extension = GetExtensionFromFrame(render_frame_host, false); |
rob | cdcc4b8 | 2015-12-06 12:39:45 | [diff] [blame] | 199 | return extension ? extension->id() : std::string(); |
rdevlin.cronin | 86f5b70 | 2015-06-24 18:49:17 | [diff] [blame] | 200 | } |
| 201 | |
| 202 | const Extension* ExtensionWebContentsObserver::GetExtensionFromFrame( |
rob | cdcc4b8 | 2015-12-06 12:39:45 | [diff] [blame] | 203 | content::RenderFrameHost* render_frame_host, |
| 204 | bool verify_url) const { |
| 205 | const GURL site_url(render_frame_host->GetSiteInstance()->GetSiteURL()); |
| 206 | if (!site_url.SchemeIs(kExtensionScheme)) |
| 207 | return nullptr; |
| 208 | |
| 209 | const std::string& extension_id = site_url.host(); |
| 210 | content::BrowserContext* browser_context = |
| 211 | render_frame_host->GetProcess()->GetBrowserContext(); |
| 212 | const Extension* extension = ExtensionRegistry::Get(browser_context) |
| 213 | ->enabled_extensions() |
| 214 | .GetByID(extension_id); |
| 215 | if (!extension) |
| 216 | return nullptr; |
| 217 | |
| 218 | if (verify_url) { |
| 219 | const url::Origin& origin(render_frame_host->GetLastCommittedOrigin()); |
| 220 | // Without site isolation, this check is needed to eliminate non-extension |
| 221 | // schemes. With site isolation, this is still needed to exclude sandboxed |
| 222 | // extension frames with a unique origin. |
| 223 | if (origin.unique() || |
csharrison | aec2c54 | 2016-10-12 19:40:36 | [diff] [blame] | 224 | site_url != content::SiteInstance::GetSiteForURL(browser_context, |
| 225 | origin.GetURL())) |
rob | cdcc4b8 | 2015-12-06 12:39:45 | [diff] [blame] | 226 | return nullptr; |
| 227 | } |
| 228 | |
| 229 | return extension; |
rdevlin.cronin | 86f5b70 | 2015-06-24 18:49:17 | [diff] [blame] | 230 | } |
| 231 | |
[email protected] | 1ce1597 | 2014-03-20 19:25:48 | [diff] [blame] | 232 | const Extension* ExtensionWebContentsObserver::GetExtension( |
| 233 | content::RenderViewHost* render_view_host) { |
| 234 | std::string extension_id = GetExtensionId(render_view_host); |
| 235 | if (extension_id.empty()) |
| 236 | return NULL; |
| 237 | |
| 238 | // May be null if the extension doesn't exist, for example if somebody typos |
| 239 | // a chrome-extension:// URL. |
| 240 | return ExtensionRegistry::Get(browser_context_) |
| 241 | ->GetExtensionById(extension_id, ExtensionRegistry::ENABLED); |
| 242 | } |
| 243 | |
| 244 | // static |
| 245 | std::string ExtensionWebContentsObserver::GetExtensionId( |
| 246 | content::RenderViewHost* render_view_host) { |
| 247 | // Note that due to ChromeContentBrowserClient::GetEffectiveURL(), hosted apps |
| 248 | // (excluding bookmark apps) will have a chrome-extension:// URL for their |
| 249 | // site, so we can ignore that wrinkle here. |
| 250 | const GURL& site = render_view_host->GetSiteInstance()->GetSiteURL(); |
| 251 | |
| 252 | if (!site.SchemeIs(kExtensionScheme)) |
| 253 | return std::string(); |
| 254 | |
| 255 | return site.host(); |
| 256 | } |
| 257 | |
rdevlin.cronin | cb2ec659a | 2015-06-10 23:32:41 | [diff] [blame] | 258 | void ExtensionWebContentsObserver::OnRequest( |
rdevlin.cronin | 92503ba | 2015-06-12 17:00:56 | [diff] [blame] | 259 | content::RenderFrameHost* render_frame_host, |
rdevlin.cronin | cb2ec659a | 2015-06-10 23:32:41 | [diff] [blame] | 260 | const ExtensionHostMsg_Request_Params& params) { |
lazyboy | ee4adef | 2016-05-24 00:55:16 | [diff] [blame] | 261 | dispatcher_.Dispatch(params, render_frame_host, |
| 262 | render_frame_host->GetProcess()->GetID()); |
rdevlin.cronin | cb2ec659a | 2015-06-10 23:32:41 | [diff] [blame] | 263 | } |
| 264 | |
rdevlin.cronin | 6f42c252 | 2015-06-19 18:58:51 | [diff] [blame] | 265 | void ExtensionWebContentsObserver::InitializeFrameHelper( |
| 266 | content::RenderFrameHost* render_frame_host) { |
| 267 | // Since this is called for all existing RenderFrameHosts during the |
| 268 | // ExtensionWebContentsObserver's creation, it's possible that not all hosts |
| 269 | // are ready. |
| 270 | // We only initialize the frame if the renderer counterpart is live; otherwise |
| 271 | // we wait for the RenderFrameCreated notification. |
| 272 | if (render_frame_host->IsRenderFrameLive()) |
| 273 | InitializeRenderFrame(render_frame_host); |
| 274 | } |
| 275 | |
[email protected] | 1ce1597 | 2014-03-20 19:25:48 | [diff] [blame] | 276 | } // namespace extensions |