1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74
|
// Copyright 2024 The Chromium Authors
// Use of this source code is governed by a BSD-style license that can be
// found in the LICENSE file.
#ifndef REMOTING_PROTOCOL_SESSION_AUTHZ_REAUTHORIZER_H_
#define REMOTING_PROTOCOL_SESSION_AUTHZ_REAUTHORIZER_H_
#include <memory>
#include <string>
#include <string_view>
#include "base/functional/callback.h"
#include "base/memory/raw_ptr.h"
#include "base/time/time.h"
#include "base/timer/timer.h"
#include "remoting/base/http_status.h"
#include "remoting/base/session_authz_service_client.h"
#include "remoting/protocol/authenticator.h"
namespace remoting {
namespace internal {
struct ReauthorizeHostResponseStruct;
} // namespace internal
namespace protocol {
// SessionReauthorizer implementation that reauthorizes using the SessionAuthz
// service.
class SessionAuthzReauthorizer {
public:
using OnReauthorizationFailedCallback =
base::OnceCallback<void(HttpStatus::Code,
const Authenticator::RejectionDetails&)>;
// |service_client| must outlive |this|.
SessionAuthzReauthorizer(
SessionAuthzServiceClient* service_client,
std::string_view session_id,
std::string_view session_reauth_token,
base::TimeDelta session_reauth_token_lifetime,
OnReauthorizationFailedCallback on_reauthorization_failed);
~SessionAuthzReauthorizer();
SessionAuthzReauthorizer(const SessionAuthzReauthorizer&) = delete;
SessionAuthzReauthorizer& operator=(const SessionAuthzReauthorizer&) = delete;
void Start();
const std::string& session_reauth_token() const {
return session_reauth_token_;
}
private:
void ScheduleNextReauth();
void Reauthorize();
void OnReauthorizeResult(
const HttpStatus& status,
std::unique_ptr<internal::ReauthorizeHostResponseStruct> response);
void NotifyReauthorizationFailed(
HttpStatus::Code error_code,
const Authenticator::RejectionDetails& details);
raw_ptr<SessionAuthzServiceClient> service_client_;
std::string session_id_;
std::string session_reauth_token_;
base::TimeTicks token_expire_time_;
base::OneShotTimer reauthorize_timer_;
OnReauthorizationFailedCallback on_reauthorization_failed_;
};
} // namespace protocol
} // namespace remoting
#endif // REMOTING_PROTOCOL_SESSION_AUTHZ_REAUTHORIZER_H_
|