1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229
|
/*
* Copyright (C) 2014 Igalia S.L.
* Copyright (C) 2016-2022 Apple Inc. All rights reserved.
*
* This library is free software; you can redistribute it and/or
* modify it under the terms of the GNU Lesser General Public
* License as published by the Free Software Foundation; either
* version 2 of the License, or (at your option) any later version.
*
* This library is distributed in the hope that it will be useful,
* but WITHOUT ANY WARRANTY; without even the implied warranty of
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
* Lesser General Public License for more details.
*
* You should have received a copy of the GNU Lesser General Public
* License along with this library; if not, write to the Free Software
* Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA
*/
#pragma once
#include "UserMediaPermissionCheckProxy.h"
#include "UserMediaPermissionRequestProxy.h"
#include <WebCore/MediaProducer.h>
#include <WebCore/PermissionDescriptor.h>
#include <WebCore/PermissionState.h>
#include <WebCore/RealtimeMediaSourceCenter.h>
#include <WebCore/RealtimeMediaSourceFactory.h>
#include <WebCore/SecurityOrigin.h>
#include <wtf/CompletionHandler.h>
#include <wtf/Deque.h>
#include <wtf/HashMap.h>
#include <wtf/LoggerHelper.h>
#include <wtf/RunLoop.h>
#include <wtf/Seconds.h>
#include <wtf/WeakPtr.h>
namespace WebCore {
class CaptureDevice;
class SecurityOrigin;
enum class PermissionName : uint8_t;
struct CaptureDeviceWithCapabilities;
struct ClientOrigin;
struct MediaConstraints;
struct MediaStreamRequest;
};
namespace WebKit {
class WebPageProxy;
enum MediaDevicePermissionRequestIdentifierType { };
using MediaDevicePermissionRequestIdentifier = ObjectIdentifier<MediaDevicePermissionRequestIdentifierType>;
class UserMediaPermissionRequestManagerProxy
#if ENABLE(MEDIA_STREAM)
: public WebCore::AudioCaptureFactory::ExtensiveObserver
#else
: public CanMakeWeakPtr<UserMediaPermissionRequestManagerProxy>
#endif
#if !RELEASE_LOG_DISABLED
, private LoggerHelper
#endif
{
WTF_MAKE_FAST_ALLOCATED;
public:
explicit UserMediaPermissionRequestManagerProxy(WebPageProxy&);
~UserMediaPermissionRequestManagerProxy();
WebPageProxy& page() const { return m_page; }
#if ENABLE(MEDIA_STREAM)
static void forEach(const WTF::Function<void(UserMediaPermissionRequestManagerProxy&)>&);
#endif
static bool permittedToCaptureAudio();
static bool permittedToCaptureVideo();
void invalidatePendingRequests();
void requestUserMediaPermissionForFrame(WebCore::UserMediaRequestIdentifier, WebCore::FrameIdentifier, Ref<WebCore::SecurityOrigin>&& userMediaDocumentOrigin, Ref<WebCore::SecurityOrigin>&& topLevelDocumentOrigin, WebCore::MediaStreamRequest&&);
void resetAccess(std::optional<WebCore::FrameIdentifier> mainFrameID = { });
void didCommitLoadForFrame(WebCore::FrameIdentifier);
void viewIsBecomingVisible();
void grantRequest(UserMediaPermissionRequestProxy&);
void denyRequest(UserMediaPermissionRequestProxy&, UserMediaPermissionRequestProxy::UserMediaAccessDenialReason, const String& invalidConstraint = { });
void enumerateMediaDevicesForFrame(WebCore::FrameIdentifier, Ref<WebCore::SecurityOrigin>&& userMediaDocumentOrigin, Ref<WebCore::SecurityOrigin>&& topLevelDocumentOrigin, CompletionHandler<void(const Vector<WebCore::CaptureDeviceWithCapabilities>&, WebCore::MediaDeviceHashSalts&&)>&&);
void stopCapture();
void scheduleNextRejection();
void rejectionTimerFired();
void clearCachedState();
void captureDevicesChanged();
void captureStateChanged(WebCore::MediaProducerMediaStateFlags oldState, WebCore::MediaProducerMediaStateFlags newState);
void syncWithWebCorePrefs() const;
enum class RequestAction {
Deny,
Grant,
Prompt
};
bool canAudioCaptureSucceed() const;
bool canVideoCaptureSucceed() const;
void setMockCaptureDevicesEnabledOverride(std::optional<bool>);
bool hasPendingCapture() const { return m_hasPendingCapture; }
void checkUserMediaPermissionForSpeechRecognition(WebCore::FrameIdentifier, const WebCore::SecurityOrigin&, const WebCore::SecurityOrigin&, const WebCore::CaptureDevice&, CompletionHandler<void(bool)>&&);
struct DeniedRequest {
WebCore::FrameIdentifier mainFrameID;
Ref<WebCore::SecurityOrigin> userMediaDocumentOrigin;
Ref<WebCore::SecurityOrigin> topLevelDocumentOrigin;
bool isAudioDenied;
bool isVideoDenied;
bool isScreenCaptureDenied;
};
std::optional<WebCore::PermissionState> filterPermissionQuery(const WebCore::ClientOrigin&, const WebCore::PermissionDescriptor&, WebCore::PermissionState);
bool shouldChangeDeniedToPromptForCamera(const WebCore::ClientOrigin&) const;
bool shouldChangeDeniedToPromptForMicrophone(const WebCore::ClientOrigin&) const;
bool shouldChangePromptToGrantForCamera(const WebCore::ClientOrigin&) const;
bool shouldChangePromptToGrantForMicrophone(const WebCore::ClientOrigin&) const;
void clearUserMediaPermissionRequestHistory(WebCore::PermissionName);
private:
#if !RELEASE_LOG_DISABLED
const Logger& logger() const final;
const void* logIdentifier() const final { return m_logIdentifier; }
const char* logClassName() const override { return "UserMediaPermissionRequestManagerProxy"; }
WTFLogChannel& logChannel() const final;
#endif
Ref<UserMediaPermissionRequestProxy> createPermissionRequest(WebCore::UserMediaRequestIdentifier, WebCore::FrameIdentifier mainFrameID, WebCore::FrameIdentifier, Ref<WebCore::SecurityOrigin>&& userMediaDocumentOrigin, Ref<WebCore::SecurityOrigin>&& topLevelDocumentOrigin, Vector<WebCore::CaptureDevice>&& audioDevices, Vector<WebCore::CaptureDevice>&& videoDevices, WebCore::MediaStreamRequest&&);
#if ENABLE(MEDIA_STREAM)
void finishGrantingRequest(UserMediaPermissionRequestProxy&);
const UserMediaPermissionRequestProxy* searchForGrantedRequest(WebCore::FrameIdentifier, const WebCore::SecurityOrigin& userMediaDocumentOrigin, const WebCore::SecurityOrigin& topLevelDocumentOrigin, bool needsAudio, bool needsVideo) const;
bool wasRequestDenied(const UserMediaPermissionRequestProxy&, bool needsAudio, bool needsVideo, bool needsScreenCapture);
using PermissionInfo = UserMediaPermissionCheckProxy::PermissionInfo;
void getUserMediaPermissionInfo(WebCore::FrameIdentifier, Ref<WebCore::SecurityOrigin>&& userMediaDocumentOrigin, Ref<WebCore::SecurityOrigin>&& topLevelDocumentOrigin, CompletionHandler<void(PermissionInfo)>&&);
void captureDevicesChanged(PermissionInfo);
RequestAction getRequestAction(const UserMediaPermissionRequestProxy&);
bool wasGrantedVideoOrAudioAccess(WebCore::FrameIdentifier);
void computeFilteredDeviceList(bool revealIdsAndLabels, CompletionHandler<void(Vector<WebCore::CaptureDeviceWithCapabilities>&&)>&&);
void platformGetMediaStreamDevices(bool revealIdsAndLabels, CompletionHandler<void(Vector<WebCore::CaptureDeviceWithCapabilities>&&)>&&);
void processUserMediaPermissionRequest();
void processUserMediaPermissionInvalidRequest(const String& invalidConstraint);
void processUserMediaPermissionValidRequest(Vector<WebCore::CaptureDevice>&& audioDevices, Vector<WebCore::CaptureDevice>&& videoDevices, WebCore::MediaDeviceHashSalts&&);
void startProcessingUserMediaPermissionRequest(Ref<UserMediaPermissionRequestProxy>&&);
static void requestSystemValidation(const WebPageProxy&, UserMediaPermissionRequestProxy&, CompletionHandler<void(bool)>&&);
void platformValidateUserMediaRequestConstraints(WebCore::RealtimeMediaSourceCenter::ValidConstraintsHandler&& validHandler, WebCore::RealtimeMediaSourceCenter::InvalidConstraintsHandler&& invalidHandler, WebCore::MediaDeviceHashSalts&&);
#endif
bool mockCaptureDevicesEnabled() const;
void watchdogTimerFired();
void processNextUserMediaRequestIfNeeded();
void decidePolicyForUserMediaPermissionRequest();
void updateStoredRequests(UserMediaPermissionRequestProxy&);
String ephemeralDeviceHashSaltForFrame(WebCore::FrameIdentifier);
RefPtr<UserMediaPermissionRequestProxy> m_currentUserMediaRequest;
Deque<Ref<UserMediaPermissionRequestProxy>> m_pendingUserMediaRequests;
HashSet<MediaDevicePermissionRequestIdentifier> m_pendingDeviceRequests;
WebPageProxy& m_page;
RunLoop::Timer m_rejectionTimer;
Deque<Ref<UserMediaPermissionRequestProxy>> m_pendingRejections;
Vector<Ref<UserMediaPermissionRequestProxy>> m_pregrantedRequests;
Vector<Ref<UserMediaPermissionRequestProxy>> m_grantedRequests;
HashMap<WebCore::FrameIdentifier, String> m_frameEphemeralHashSalts;
Vector<DeniedRequest> m_deniedRequests;
WebCore::MediaProducerMediaStateFlags m_captureState;
RunLoop::Timer m_watchdogTimer;
Seconds m_currentWatchdogInterval;
#if !RELEASE_LOG_DISABLED
Ref<const Logger> m_logger;
const void* m_logIdentifier;
#endif
bool m_hasFilteredDeviceList { false };
#if PLATFORM(COCOA)
bool m_hasCreatedSandboxExtensionForTCCD { false };
#endif
uint64_t m_hasPendingCapture { 0 };
std::optional<bool> m_mockDevicesEnabledOverride;
HashSet<WebCore::FrameIdentifier> m_grantedFrames;
};
String convertEnumerationToString(UserMediaPermissionRequestManagerProxy::RequestAction);
} // namespace WebKit
#if ENABLE(MEDIA_STREAM)
namespace WTF {
template<typename Type>
struct LogArgument;
template <>
struct LogArgument<WebKit::UserMediaPermissionRequestManagerProxy::RequestAction> {
static String toString(const WebKit::UserMediaPermissionRequestManagerProxy::RequestAction type)
{
return convertEnumerationToString(type);
}
};
}; // namespace WTF
#endif
|