blob: be9d836ebca4287bd8d43cf0f4f8104564982e23 [file] [log] [blame]
San Mehat873f2142010-01-14 10:25:07 -08001/*
2 * Copyright (C) 2007 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
17package com.android.server;
18
Jeff Sharkey4529bb62011-12-14 10:31:54 -080019import static android.Manifest.permission.CONNECTIVITY_INTERNAL;
Jeff Sharkey47eb1022011-08-25 17:48:52 -070020import static android.Manifest.permission.DUMP;
Jeff Sharkeyaf75c332011-11-18 12:41:12 -080021import static android.Manifest.permission.SHUTDOWN;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -070022import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_DOZABLE;
23import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_NAME_DOZABLE;
24import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_NAME_NONE;
Felipe Leme011b98f2016-02-10 17:28:31 -080025import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_NAME_POWERSAVE;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -070026import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_NAME_STANDBY;
27import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_NONE;
Felipe Leme011b98f2016-02-10 17:28:31 -080028import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_POWERSAVE;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -070029import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_STANDBY;
30import static android.net.NetworkPolicyManager.FIREWALL_RULE_DEFAULT;
31import static android.net.NetworkPolicyManager.FIREWALL_TYPE_BLACKLIST;
32import static android.net.NetworkPolicyManager.FIREWALL_TYPE_WHITELIST;
Jeff Sharkeyb5d55e32011-08-10 17:53:27 -070033import static android.net.NetworkStats.SET_DEFAULT;
Dianne Hackbornd0c5b9a2014-02-21 16:19:05 -080034import static android.net.NetworkStats.TAG_ALL;
Jeff Sharkey1b5a2a92011-06-18 18:34:16 -070035import static android.net.NetworkStats.TAG_NONE;
36import static android.net.NetworkStats.UID_ALL;
Jeff Sharkeyae2c1812011-10-04 13:11:40 -070037import static android.net.TrafficStats.UID_TETHERING;
Lorenzo Colitti79751842013-02-28 16:16:03 +090038import static com.android.server.NetworkManagementService.NetdResponseCode.ClatdStatusResult;
Jeff Sharkeyba2896e2011-11-30 18:13:54 -080039import static com.android.server.NetworkManagementService.NetdResponseCode.InterfaceGetCfgResult;
40import static com.android.server.NetworkManagementService.NetdResponseCode.InterfaceListResult;
Jeff Sharkeyba2896e2011-11-30 18:13:54 -080041import static com.android.server.NetworkManagementService.NetdResponseCode.IpFwdStatusResult;
42import static com.android.server.NetworkManagementService.NetdResponseCode.TetherDnsFwdTgtListResult;
43import static com.android.server.NetworkManagementService.NetdResponseCode.TetherInterfaceListResult;
44import static com.android.server.NetworkManagementService.NetdResponseCode.TetherStatusResult;
Jeff Sharkeye4984be2013-09-10 21:03:27 -070045import static com.android.server.NetworkManagementService.NetdResponseCode.TetheringStatsListResult;
Jeff Sharkeyba2896e2011-11-30 18:13:54 -080046import static com.android.server.NetworkManagementService.NetdResponseCode.TtyListResult;
Jeff Sharkeya63ba592011-07-19 23:47:12 -070047import static com.android.server.NetworkManagementSocketTagger.PROP_QTAGUID_ENABLED;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -070048import android.annotation.NonNull;
Jeff Sharkey605eb792014-11-04 13:34:06 -080049import android.app.ActivityManagerNative;
Pierre Imai8e48e672016-04-21 13:30:43 +090050import android.content.ContentResolver;
San Mehat873f2142010-01-14 10:25:07 -080051import android.content.Context;
Dianne Hackborn77b987f2014-02-26 16:20:52 -080052import android.net.ConnectivityManager;
Lorenzo Colitti58967ba2016-02-02 17:21:21 +090053import android.net.INetd;
San Mehat4d02d002010-01-22 16:07:46 -080054import android.net.INetworkManagementEventObserver;
Jeff Sharkeyeedcb952011-05-17 14:55:15 -070055import android.net.InterfaceConfiguration;
Lorenzo Colittic18cbfd2014-06-13 21:21:03 +090056import android.net.IpPrefix;
Robert Greenwalted126402011-01-28 15:34:55 -080057import android.net.LinkAddress;
Lorenzo Colittib57edc52014-08-22 17:10:50 -070058import android.net.Network;
Amith Yamasani15e472352015-04-24 19:06:07 -070059import android.net.NetworkPolicyManager;
Jeff Sharkeyeedcb952011-05-17 14:55:15 -070060import android.net.NetworkStats;
Robert Greenwalted126402011-01-28 15:34:55 -080061import android.net.NetworkUtils;
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -070062import android.net.RouteInfo;
Paul Jensen6bc2c2c2014-05-07 15:27:40 -040063import android.net.UidRange;
Irfan Sheriff9ab518ad2010-03-12 15:48:17 -080064import android.net.wifi.WifiConfiguration;
65import android.net.wifi.WifiConfiguration.KeyMgmt;
Dianne Hackborn91268cf2013-06-13 19:06:50 -070066import android.os.BatteryStats;
Jeff Sharkeyf56e2432012-09-06 17:54:29 -070067import android.os.Binder;
Jeff Sharkeyb24a7852012-05-01 15:19:37 -070068import android.os.Handler;
Dianne Hackborn77b987f2014-02-26 16:20:52 -080069import android.os.INetworkActivityListener;
San Mehat873f2142010-01-14 10:25:07 -080070import android.os.INetworkManagementService;
Dianne Hackborn77b987f2014-02-26 16:20:52 -080071import android.os.PowerManager;
Jeff Sharkeyf56e2432012-09-06 17:54:29 -070072import android.os.Process;
Jeff Sharkey3df273e2011-12-15 15:47:12 -080073import android.os.RemoteCallbackList;
74import android.os.RemoteException;
Jeff Sharkey7a1c3fc2013-06-04 12:29:00 -070075import android.os.ServiceManager;
Lorenzo Colitti4cb42402016-04-24 12:52:00 +090076import android.os.ServiceSpecificException;
Jeff Sharkey605eb792014-11-04 13:34:06 -080077import android.os.StrictMode;
Jeff Sharkey9a13f362011-04-26 16:25:36 -070078import android.os.SystemClock;
Marco Nelissen62dbb222010-02-18 10:56:30 -080079import android.os.SystemProperties;
Pierre Imai8e48e672016-04-21 13:30:43 +090080import android.provider.Settings;
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -070081import android.telephony.DataConnectionRealTimeInfo;
82import android.telephony.PhoneStateListener;
Wink Savillefb40dd42014-06-12 17:02:31 -070083import android.telephony.SubscriptionManager;
Wink Saville67e07892014-06-18 16:43:14 -070084import android.telephony.TelephonyManager;
Irfan Sheriff9ab518ad2010-03-12 15:48:17 -080085import android.util.Log;
Joe Onorato8a9b2202010-02-26 18:56:32 -080086import android.util.Slog;
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -070087import android.util.SparseBooleanArray;
Jeff Sharkey605eb792014-11-04 13:34:06 -080088import android.util.SparseIntArray;
San Mehat873f2142010-01-14 10:25:07 -080089
Jeff Sharkey605eb792014-11-04 13:34:06 -080090import com.android.internal.annotations.GuardedBy;
Jeff Sharkey7a1c3fc2013-06-04 12:29:00 -070091import com.android.internal.app.IBatteryStats;
Jeff Sharkey1059c3c2011-10-04 16:54:49 -070092import com.android.internal.net.NetworkStatsFactory;
Jeff Sharkey605eb792014-11-04 13:34:06 -080093import com.android.internal.util.HexDump;
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -070094import com.android.internal.util.Preconditions;
Jeff Sharkeyba2896e2011-11-30 18:13:54 -080095import com.android.server.NativeDaemonConnector.Command;
Jeff Sharkey56cd6462013-06-07 15:09:15 -070096import com.android.server.NativeDaemonConnector.SensitiveArg;
Jeff Sharkey69ddab42012-08-25 00:05:46 -070097import com.android.server.net.LockdownVpnTracker;
Jeff Sharkeyb24a7852012-05-01 15:19:37 -070098import com.google.android.collect.Maps;
Jeff Sharkey4414cea2011-06-24 17:05:24 -070099
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -0700100import java.io.BufferedReader;
101import java.io.DataInputStream;
San Mehat873f2142010-01-14 10:25:07 -0800102import java.io.File;
Jeff Sharkey47eb1022011-08-25 17:48:52 -0700103import java.io.FileDescriptor;
Jeff Sharkey9a13f362011-04-26 16:25:36 -0700104import java.io.FileInputStream;
Jeff Sharkey9a13f362011-04-26 16:25:36 -0700105import java.io.IOException;
Jeff Sharkey9a13f362011-04-26 16:25:36 -0700106import java.io.InputStreamReader;
Jeff Sharkey47eb1022011-08-25 17:48:52 -0700107import java.io.PrintWriter;
Jeff Sharkeyeedcb952011-05-17 14:55:15 -0700108import java.net.InetAddress;
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -0700109import java.net.InterfaceAddress;
110import java.net.NetworkInterface;
111import java.net.SocketException;
Jeff Sharkeyeedcb952011-05-17 14:55:15 -0700112import java.util.ArrayList;
Paul Jensen6bc2c2c2014-05-07 15:27:40 -0400113import java.util.Arrays;
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700114import java.util.HashMap;
jiaguo1da35f72014-01-09 16:39:59 +0800115import java.util.List;
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700116import java.util.Map;
Jeff Sharkeyeedcb952011-05-17 14:55:15 -0700117import java.util.NoSuchElementException;
118import java.util.StringTokenizer;
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700119import java.util.concurrent.CountDownLatch;
San Mehat873f2142010-01-14 10:25:07 -0800120
121/**
122 * @hide
123 */
Jeff Sharkey8e9992a2011-08-23 18:37:23 -0700124public class NetworkManagementService extends INetworkManagementService.Stub
125 implements Watchdog.Monitor {
Amith Yamasani15e472352015-04-24 19:06:07 -0700126 private static final String TAG = "NetworkManagement";
127 private static final boolean DBG = Log.isLoggable(TAG, Log.DEBUG);
Kenny Root305bcbf2010-09-03 07:56:38 -0700128 private static final String NETD_TAG = "NetdConnector";
Lorenzo Colitti58967ba2016-02-02 17:21:21 +0900129 private static final String NETD_SERVICE_NAME = "netd";
Kenny Root305bcbf2010-09-03 07:56:38 -0700130
Paul Jensen6bc2c2c2014-05-07 15:27:40 -0400131 private static final int MAX_UID_RANGES_PER_COMMAND = 10;
132
Jeff Sharkey8e9992a2011-08-23 18:37:23 -0700133 /**
134 * Name representing {@link #setGlobalAlert(long)} limit when delivered to
135 * {@link INetworkManagementEventObserver#limitReached(String, String)}.
136 */
137 public static final String LIMIT_GLOBAL_ALERT = "globalAlert";
138
Paul Jensen487ffe72015-07-24 15:57:11 -0400139 /**
140 * String to pass to netd to indicate that a network is only accessible
141 * to apps that have the CHANGE_NETWORK_STATE permission.
142 */
143 public static final String PERMISSION_NETWORK = "NETWORK";
144
145 /**
146 * String to pass to netd to indicate that a network is only
147 * accessible to system apps and those with the CONNECTIVITY_INTERNAL
148 * permission.
149 */
150 public static final String PERMISSION_SYSTEM = "SYSTEM";
151
San Mehat873f2142010-01-14 10:25:07 -0800152 class NetdResponseCode {
Sreeram Ramachandran03666c72014-07-19 23:21:46 -0700153 /* Keep in sync with system/netd/server/ResponseCode.h */
San Mehat873f2142010-01-14 10:25:07 -0800154 public static final int InterfaceListResult = 110;
155 public static final int TetherInterfaceListResult = 111;
156 public static final int TetherDnsFwdTgtListResult = 112;
San Mehat72759df2010-01-19 13:50:37 -0800157 public static final int TtyListResult = 113;
Jeff Sharkeye4984be2013-09-10 21:03:27 -0700158 public static final int TetheringStatsListResult = 114;
San Mehat873f2142010-01-14 10:25:07 -0800159
160 public static final int TetherStatusResult = 210;
161 public static final int IpFwdStatusResult = 211;
San Mehated4fc8a2010-01-22 12:28:36 -0800162 public static final int InterfaceGetCfgResult = 213;
Robert Greenwalte3253922010-02-18 09:23:25 -0800163 public static final int SoftapStatusResult = 214;
San Mehat91cac642010-03-31 14:31:36 -0700164 public static final int InterfaceRxCounterResult = 216;
165 public static final int InterfaceTxCounterResult = 217;
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -0700166 public static final int QuotaCounterResult = 220;
167 public static final int TetheringStatsResult = 221;
Selim Gurun84c00c62012-02-27 15:42:38 -0800168 public static final int DnsProxyQueryResult = 222;
Lorenzo Colitti79751842013-02-28 16:16:03 +0900169 public static final int ClatdStatusResult = 223;
Robert Greenwalte3253922010-02-18 09:23:25 -0800170
171 public static final int InterfaceChange = 600;
JP Abgrall12b933d2011-07-14 18:09:22 -0700172 public static final int BandwidthControl = 601;
Haoyu Bai6b7358d2012-07-17 16:36:50 -0700173 public static final int InterfaceClassActivity = 613;
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900174 public static final int InterfaceAddressChange = 614;
Lorenzo Colitti5ae4a532013-10-31 11:59:46 +0900175 public static final int InterfaceDnsServerInfo = 615;
Lorenzo Colittic18cbfd2014-06-13 21:21:03 +0900176 public static final int RouteChange = 616;
Jeff Sharkey605eb792014-11-04 13:34:06 -0800177 public static final int StrictCleartext = 617;
San Mehat873f2142010-01-14 10:25:07 -0800178 }
179
Pierre Imai8e48e672016-04-21 13:30:43 +0900180 /* Defaults for resolver parameters. */
181 public static final int DNS_RESOLVER_DEFAULT_SAMPLE_VALIDITY_SECONDS = 1800;
182 public static final int DNS_RESOLVER_DEFAULT_SUCCESS_THRESHOLD_PERCENT = 25;
183 public static final int DNS_RESOLVER_DEFAULT_MIN_SAMPLES = 8;
184 public static final int DNS_RESOLVER_DEFAULT_MAX_SAMPLES = 64;
185
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -0700186 /**
187 * String indicating a softap command.
188 */
189 static final String SOFT_AP_COMMAND = "softap";
190
191 /**
192 * String passed back to netd connector indicating softap command success.
193 */
194 static final String SOFT_AP_COMMAND_SUCCESS = "Ok";
195
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700196 static final int DAEMON_MSG_MOBILE_CONN_REAL_TIME_INFO = 1;
197
San Mehat873f2142010-01-14 10:25:07 -0800198 /**
199 * Binder context for this service
200 */
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700201 private final Context mContext;
San Mehat873f2142010-01-14 10:25:07 -0800202
203 /**
204 * connector object for communicating with netd
205 */
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700206 private final NativeDaemonConnector mConnector;
San Mehat873f2142010-01-14 10:25:07 -0800207
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700208 private final Handler mFgHandler;
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700209 private final Handler mDaemonHandler;
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700210
Lorenzo Colitti58967ba2016-02-02 17:21:21 +0900211 private INetd mNetdService;
212
Dianne Hackborne13c4c02014-02-11 17:18:35 -0800213 private IBatteryStats mBatteryStats;
214
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700215 private final Thread mThread;
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700216 private CountDownLatch mConnectedSignal = new CountDownLatch(1);
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700217
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800218 private final RemoteCallbackList<INetworkManagementEventObserver> mObservers =
219 new RemoteCallbackList<INetworkManagementEventObserver>();
San Mehat4d02d002010-01-22 16:07:46 -0800220
Jeff Sharkey1059c3c2011-10-04 16:54:49 -0700221 private final NetworkStatsFactory mStatsFactory = new NetworkStatsFactory();
222
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -0700223 private Object mQuotaLock = new Object();
Jeff Sharkey605eb792014-11-04 13:34:06 -0800224
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -0700225 /** Set of interfaces with active quotas. */
Jeff Sharkey605eb792014-11-04 13:34:06 -0800226 @GuardedBy("mQuotaLock")
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700227 private HashMap<String, Long> mActiveQuotas = Maps.newHashMap();
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -0700228 /** Set of interfaces with active alerts. */
Jeff Sharkey605eb792014-11-04 13:34:06 -0800229 @GuardedBy("mQuotaLock")
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700230 private HashMap<String, Long> mActiveAlerts = Maps.newHashMap();
Felipe Leme65be3022016-03-22 14:53:13 -0700231 /** Set of UIDs blacklisted on metered networks. */
Jeff Sharkey605eb792014-11-04 13:34:06 -0800232 @GuardedBy("mQuotaLock")
Felipe Leme65be3022016-03-22 14:53:13 -0700233 private SparseBooleanArray mUidRejectOnMetered = new SparseBooleanArray();
234 /** Set of UIDs whitelisted on metered networks. */
235 @GuardedBy("mQuotaLock")
236 private SparseBooleanArray mUidAllowOnMetered = new SparseBooleanArray();
Jeff Sharkey605eb792014-11-04 13:34:06 -0800237 /** Set of UIDs with cleartext penalties. */
238 @GuardedBy("mQuotaLock")
239 private SparseIntArray mUidCleartextPolicy = new SparseIntArray();
Amith Yamasani15e472352015-04-24 19:06:07 -0700240 /** Set of UIDs that are to be blocked/allowed by firewall controller. */
241 @GuardedBy("mQuotaLock")
242 private SparseIntArray mUidFirewallRules = new SparseIntArray();
Xiaohui Chenb41c9f72015-06-17 15:55:37 -0700243 /**
244 * Set of UIDs that are to be blocked/allowed by firewall controller. This set of Ids matches
245 * to application idles.
246 */
247 @GuardedBy("mQuotaLock")
248 private SparseIntArray mUidFirewallStandbyRules = new SparseIntArray();
249 /**
250 * Set of UIDs that are to be blocked/allowed by firewall controller. This set of Ids matches
251 * to device idles.
252 */
253 @GuardedBy("mQuotaLock")
254 private SparseIntArray mUidFirewallDozableRules = new SparseIntArray();
Felipe Leme011b98f2016-02-10 17:28:31 -0800255 /**
256 * Set of UIDs that are to be blocked/allowed by firewall controller. This set of Ids matches
257 * to device on power-save mode.
258 */
259 @GuardedBy("mQuotaLock")
260 private SparseIntArray mUidFirewallPowerSaveRules = new SparseIntArray();
Xiaohui Chen8dca36d2015-06-19 12:44:59 -0700261 /** Set of states for the child firewall chains. True if the chain is active. */
262 @GuardedBy("mQuotaLock")
263 final SparseBooleanArray mFirewallChainStates = new SparseBooleanArray();
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -0700264
Felipe Leme65be3022016-03-22 14:53:13 -0700265 @GuardedBy("mQuotaLock")
266 private boolean mDataSaverMode;
267
Haoyu Bai04124232012-06-28 15:26:19 -0700268 private Object mIdleTimerLock = new Object();
269 /** Set of interfaces with active idle timers. */
270 private static class IdleTimerParams {
271 public final int timeout;
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800272 public final int type;
Haoyu Bai04124232012-06-28 15:26:19 -0700273 public int networkCount;
274
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800275 IdleTimerParams(int timeout, int type) {
Haoyu Bai04124232012-06-28 15:26:19 -0700276 this.timeout = timeout;
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800277 this.type = type;
Haoyu Bai04124232012-06-28 15:26:19 -0700278 this.networkCount = 1;
279 }
280 }
281 private HashMap<String, IdleTimerParams> mActiveIdleTimers = Maps.newHashMap();
282
Jeff Sharkeyfa23c5a2011-08-09 21:44:24 -0700283 private volatile boolean mBandwidthControlEnabled;
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -0700284 private volatile boolean mFirewallEnabled;
Jeff Sharkey605eb792014-11-04 13:34:06 -0800285 private volatile boolean mStrictEnabled;
Jeff Sharkey350083e2011-06-29 10:45:16 -0700286
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700287 private boolean mMobileActivityFromRadio = false;
288 private int mLastPowerStateFromRadio = DataConnectionRealTimeInfo.DC_POWER_STATE_LOW;
Adam Lesinskie08af192015-03-25 16:42:59 -0700289 private int mLastPowerStateFromWifi = DataConnectionRealTimeInfo.DC_POWER_STATE_LOW;
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700290
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800291 private final RemoteCallbackList<INetworkActivityListener> mNetworkActivityListeners =
292 new RemoteCallbackList<INetworkActivityListener>();
293 private boolean mNetworkActive;
294
San Mehat873f2142010-01-14 10:25:07 -0800295 /**
296 * Constructs a new NetworkManagementService instance
297 *
298 * @param context Binder context for this service
299 */
Lorenzo Colitti7421a012013-08-20 22:51:24 +0900300 private NetworkManagementService(Context context, String socket) {
San Mehat873f2142010-01-14 10:25:07 -0800301 mContext = context;
San Mehat4d02d002010-01-22 16:07:46 -0800302
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700303 // make sure this is on the same looper as our NativeDaemonConnector for sync purposes
304 mFgHandler = new Handler(FgThread.get().getLooper());
305
Dianne Hackborn4590e522014-03-24 13:36:46 -0700306 // Don't need this wake lock, since we now have a time stamp for when
307 // the network actually went inactive. (It might be nice to still do this,
308 // but I don't want to do it through the power manager because that pollutes the
309 // battery stats history with pointless noise.)
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700310 //PowerManager pm = (PowerManager)context.getSystemService(Context.POWER_SERVICE);
Dianne Hackborn4590e522014-03-24 13:36:46 -0700311 PowerManager.WakeLock wl = null; //pm.newWakeLock(PowerManager.PARTIAL_WAKE_LOCK, NETD_TAG);
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800312
San Mehat873f2142010-01-14 10:25:07 -0800313 mConnector = new NativeDaemonConnector(
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700314 new NetdCallbackReceiver(), socket, 10, NETD_TAG, 160, wl,
315 FgThread.get().getLooper());
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700316 mThread = new Thread(mConnector, NETD_TAG);
Jeff Sharkeyfa23c5a2011-08-09 21:44:24 -0700317
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700318 mDaemonHandler = new Handler(FgThread.get().getLooper());
Wink Saville67e07892014-06-18 16:43:14 -0700319
Jeff Sharkeyfa23c5a2011-08-09 21:44:24 -0700320 // Add ourself to the Watchdog monitors.
321 Watchdog.getInstance().addMonitor(this);
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700322 }
323
Felipe Leme03e689d2016-03-02 16:17:38 -0800324 static NetworkManagementService create(Context context, String socket)
325 throws InterruptedException {
Lorenzo Colitti7421a012013-08-20 22:51:24 +0900326 final NetworkManagementService service = new NetworkManagementService(context, socket);
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700327 final CountDownLatch connectedSignal = service.mConnectedSignal;
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700328 if (DBG) Slog.d(TAG, "Creating NetworkManagementService");
329 service.mThread.start();
330 if (DBG) Slog.d(TAG, "Awaiting socket connection");
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700331 connectedSignal.await();
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700332 if (DBG) Slog.d(TAG, "Connected");
bohu07cc3bb2016-05-03 15:58:01 -0700333 service.connectNativeNetdService();
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700334 return service;
San Mehat873f2142010-01-14 10:25:07 -0800335 }
336
Lorenzo Colitti7421a012013-08-20 22:51:24 +0900337 public static NetworkManagementService create(Context context) throws InterruptedException {
Lorenzo Colitti58967ba2016-02-02 17:21:21 +0900338 return create(context, NETD_SERVICE_NAME);
Lorenzo Colitti7421a012013-08-20 22:51:24 +0900339 }
340
Jeff Sharkey350083e2011-06-29 10:45:16 -0700341 public void systemReady() {
Felipe Leme03e689d2016-03-02 16:17:38 -0800342 if (DBG) {
343 final long start = System.currentTimeMillis();
344 prepareNativeDaemon();
345 final long delta = System.currentTimeMillis() - start;
346 Slog.d(TAG, "Prepared in " + delta + "ms");
347 return;
348 } else {
349 prepareNativeDaemon();
350 }
Jeff Sharkey350083e2011-06-29 10:45:16 -0700351 }
352
Dianne Hackborne13c4c02014-02-11 17:18:35 -0800353 private IBatteryStats getBatteryStats() {
354 synchronized (this) {
355 if (mBatteryStats != null) {
356 return mBatteryStats;
357 }
358 mBatteryStats = IBatteryStats.Stub.asInterface(ServiceManager.getService(
359 BatteryStats.SERVICE_NAME));
360 return mBatteryStats;
361 }
362 }
363
Jeff Sharkeyaf75c332011-11-18 12:41:12 -0800364 @Override
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800365 public void registerObserver(INetworkManagementEventObserver observer) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -0800366 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800367 mObservers.register(observer);
San Mehat4d02d002010-01-22 16:07:46 -0800368 }
369
Jeff Sharkeyaf75c332011-11-18 12:41:12 -0800370 @Override
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800371 public void unregisterObserver(INetworkManagementEventObserver observer) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -0800372 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800373 mObservers.unregister(observer);
San Mehat4d02d002010-01-22 16:07:46 -0800374 }
375
376 /**
Mike J. Chen6143f5f2011-06-23 15:17:51 -0700377 * Notify our observers of an interface status change
San Mehat4d02d002010-01-22 16:07:46 -0800378 */
Mike J. Chen6143f5f2011-06-23 15:17:51 -0700379 private void notifyInterfaceStatusChanged(String iface, boolean up) {
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800380 final int length = mObservers.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700381 try {
382 for (int i = 0; i < length; i++) {
383 try {
384 mObservers.getBroadcastItem(i).interfaceStatusChanged(iface, up);
Felipe Leme03e689d2016-03-02 16:17:38 -0800385 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700386 }
Mike J. Chen6143f5f2011-06-23 15:17:51 -0700387 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700388 } finally {
389 mObservers.finishBroadcast();
Mike J. Chen6143f5f2011-06-23 15:17:51 -0700390 }
391 }
392
393 /**
Mike J. Chenf59c7d02011-06-23 15:33:15 -0700394 * Notify our observers of an interface link state change
Mike J. Chen6143f5f2011-06-23 15:17:51 -0700395 * (typically, an Ethernet cable has been plugged-in or unplugged).
396 */
397 private void notifyInterfaceLinkStateChanged(String iface, boolean up) {
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800398 final int length = mObservers.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700399 try {
400 for (int i = 0; i < length; i++) {
401 try {
402 mObservers.getBroadcastItem(i).interfaceLinkStateChanged(iface, up);
Felipe Leme03e689d2016-03-02 16:17:38 -0800403 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700404 }
San Mehat4d02d002010-01-22 16:07:46 -0800405 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700406 } finally {
407 mObservers.finishBroadcast();
San Mehat4d02d002010-01-22 16:07:46 -0800408 }
409 }
410
411 /**
412 * Notify our observers of an interface addition.
413 */
414 private void notifyInterfaceAdded(String iface) {
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800415 final int length = mObservers.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700416 try {
417 for (int i = 0; i < length; i++) {
418 try {
419 mObservers.getBroadcastItem(i).interfaceAdded(iface);
Felipe Leme03e689d2016-03-02 16:17:38 -0800420 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700421 }
San Mehat4d02d002010-01-22 16:07:46 -0800422 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700423 } finally {
424 mObservers.finishBroadcast();
San Mehat4d02d002010-01-22 16:07:46 -0800425 }
426 }
427
428 /**
429 * Notify our observers of an interface removal.
430 */
431 private void notifyInterfaceRemoved(String iface) {
Jeff Sharkey89b8a212011-10-11 11:58:11 -0700432 // netd already clears out quota and alerts for removed ifaces; update
433 // our sanity-checking state.
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700434 mActiveAlerts.remove(iface);
435 mActiveQuotas.remove(iface);
Jeff Sharkey89b8a212011-10-11 11:58:11 -0700436
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800437 final int length = mObservers.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700438 try {
439 for (int i = 0; i < length; i++) {
440 try {
441 mObservers.getBroadcastItem(i).interfaceRemoved(iface);
Felipe Leme03e689d2016-03-02 16:17:38 -0800442 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700443 }
San Mehat4d02d002010-01-22 16:07:46 -0800444 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700445 } finally {
446 mObservers.finishBroadcast();
San Mehat4d02d002010-01-22 16:07:46 -0800447 }
448 }
449
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700450 /**
JP Abgrall12b933d2011-07-14 18:09:22 -0700451 * Notify our observers of a limit reached.
452 */
453 private void notifyLimitReached(String limitName, String iface) {
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800454 final int length = mObservers.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700455 try {
456 for (int i = 0; i < length; i++) {
457 try {
458 mObservers.getBroadcastItem(i).limitReached(limitName, iface);
Felipe Leme03e689d2016-03-02 16:17:38 -0800459 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700460 }
JP Abgrall12b933d2011-07-14 18:09:22 -0700461 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700462 } finally {
463 mObservers.finishBroadcast();
JP Abgrall12b933d2011-07-14 18:09:22 -0700464 }
465 }
466
467 /**
Haoyu Baidb3c8672012-06-20 14:29:57 -0700468 * Notify our observers of a change in the data activity state of the interface
469 */
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700470 private void notifyInterfaceClassActivity(int type, int powerState, long tsNanos,
Ruchi Kandoifa97fcf2016-05-13 15:10:39 -0700471 int uid, boolean fromRadio) {
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700472 final boolean isMobile = ConnectivityManager.isNetworkTypeMobile(type);
473 if (isMobile) {
474 if (!fromRadio) {
475 if (mMobileActivityFromRadio) {
476 // If this call is not coming from a report from the radio itself, but we
477 // have previously received reports from the radio, then we will take the
478 // power state to just be whatever the radio last reported.
479 powerState = mLastPowerStateFromRadio;
480 }
481 } else {
482 mMobileActivityFromRadio = true;
483 }
484 if (mLastPowerStateFromRadio != powerState) {
485 mLastPowerStateFromRadio = powerState;
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700486 try {
Ruchi Kandoifa97fcf2016-05-13 15:10:39 -0700487 getBatteryStats().noteMobileRadioPowerState(powerState, tsNanos, uid);
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700488 } catch (RemoteException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700489 }
Haoyu Baidb3c8672012-06-20 14:29:57 -0700490 }
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700491 }
492
Adam Lesinskie08af192015-03-25 16:42:59 -0700493 if (ConnectivityManager.isNetworkTypeWifi(type)) {
494 if (mLastPowerStateFromWifi != powerState) {
495 mLastPowerStateFromWifi = powerState;
496 try {
497 getBatteryStats().noteWifiRadioPowerState(powerState, tsNanos);
498 } catch (RemoteException e) {
499 }
500 }
501 }
502
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700503 boolean isActive = powerState == DataConnectionRealTimeInfo.DC_POWER_STATE_MEDIUM
504 || powerState == DataConnectionRealTimeInfo.DC_POWER_STATE_HIGH;
505
506 if (!isMobile || fromRadio || !mMobileActivityFromRadio) {
507 // Report the change in data activity. We don't do this if this is a change
508 // on the mobile network, that is not coming from the radio itself, and we
509 // have previously seen change reports from the radio. In that case only
510 // the radio is the authority for the current state.
511 final int length = mObservers.beginBroadcast();
512 try {
513 for (int i = 0; i < length; i++) {
514 try {
515 mObservers.getBroadcastItem(i).interfaceClassDataActivityChanged(
516 Integer.toString(type), isActive, tsNanos);
Felipe Leme03e689d2016-03-02 16:17:38 -0800517 } catch (RemoteException | RuntimeException e) {
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700518 }
519 }
520 } finally {
521 mObservers.finishBroadcast();
522 }
Haoyu Baidb3c8672012-06-20 14:29:57 -0700523 }
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800524
525 boolean report = false;
526 synchronized (mIdleTimerLock) {
527 if (mActiveIdleTimers.isEmpty()) {
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700528 // If there are no idle timers, we are not monitoring activity, so we
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800529 // are always considered active.
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700530 isActive = true;
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800531 }
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700532 if (mNetworkActive != isActive) {
533 mNetworkActive = isActive;
534 report = isActive;
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800535 }
536 }
537 if (report) {
538 reportNetworkActive();
539 }
Haoyu Baidb3c8672012-06-20 14:29:57 -0700540 }
541
Lorenzo Colitti9eb844e2016-03-23 23:22:49 +0900542 // Sync the state of the given chain with the native daemon.
543 private void syncFirewallChainLocked(int chain, SparseIntArray uidFirewallRules, String name) {
544 int size = uidFirewallRules.size();
545 if (size > 0) {
546 // Make a copy of the current rules, and then clear them. This is because
547 // setFirewallUidRuleInternal only pushes down rules to the native daemon if they are
548 // different from the current rules stored in the mUidFirewall*Rules array for the
549 // specified chain. If we don't clear the rules, setFirewallUidRuleInternal will do
550 // nothing.
551 final SparseIntArray rules = uidFirewallRules.clone();
552 uidFirewallRules.clear();
553
554 // Now push the rules. setFirewallUidRuleInternal will push each of these down to the
555 // native daemon, and also add them to the mUidFirewall*Rules array for the specified
556 // chain.
557 if (DBG) Slog.d(TAG, "Pushing " + size + " active firewall " + name + "UID rules");
558 for (int i = 0; i < rules.size(); i++) {
Felipe Lemea701cad2016-05-12 09:58:14 -0700559 setFirewallUidRuleLocked(chain, rules.keyAt(i), rules.valueAt(i));
Lorenzo Colitti9eb844e2016-03-23 23:22:49 +0900560 }
561 }
562 }
563
bohu07cc3bb2016-05-03 15:58:01 -0700564 private void connectNativeNetdService() {
Lorenzo Colitti58967ba2016-02-02 17:21:21 +0900565 boolean nativeServiceAvailable = false;
566 try {
567 mNetdService = INetd.Stub.asInterface(ServiceManager.getService(NETD_SERVICE_NAME));
568 nativeServiceAvailable = mNetdService.isAlive();
569 } catch (RemoteException e) {}
570 if (!nativeServiceAvailable) {
571 Slog.wtf(TAG, "Can't connect to NativeNetdService " + NETD_SERVICE_NAME);
572 }
bohu07cc3bb2016-05-03 15:58:01 -0700573 }
574
575 /**
576 * Prepare native daemon once connected, enabling modules and pushing any
577 * existing in-memory rules.
578 */
579 private void prepareNativeDaemon() {
Lorenzo Colitti58967ba2016-02-02 17:21:21 +0900580
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700581 mBandwidthControlEnabled = false;
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700582
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700583 // only enable bandwidth control when support exists
584 final boolean hasKernelSupport = new File("/proc/net/xt_qtaguid/ctrl").exists();
585 if (hasKernelSupport) {
586 Slog.d(TAG, "enabling bandwidth control");
587 try {
588 mConnector.execute("bandwidth", "enable");
589 mBandwidthControlEnabled = true;
590 } catch (NativeDaemonConnectorException e) {
591 Log.wtf(TAG, "problem enabling bandwidth controls", e);
592 }
593 } else {
Felipe Leme03e689d2016-03-02 16:17:38 -0800594 Slog.i(TAG, "not enabling bandwidth control");
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700595 }
596
597 SystemProperties.set(PROP_QTAGUID_ENABLED, mBandwidthControlEnabled ? "1" : "0");
598
Jeff Sharkey7a1c3fc2013-06-04 12:29:00 -0700599 if (mBandwidthControlEnabled) {
600 try {
Dianne Hackborne13c4c02014-02-11 17:18:35 -0800601 getBatteryStats().noteNetworkStatsEnabled();
Jeff Sharkey7a1c3fc2013-06-04 12:29:00 -0700602 } catch (RemoteException e) {
603 }
604 }
605
Jeff Sharkey605eb792014-11-04 13:34:06 -0800606 try {
607 mConnector.execute("strict", "enable");
608 mStrictEnabled = true;
609 } catch (NativeDaemonConnectorException e) {
610 Log.wtf(TAG, "Failed strict enable", e);
611 }
612
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700613 // push any existing quota or UID rules
614 synchronized (mQuotaLock) {
Felipe Leme65be3022016-03-22 14:53:13 -0700615
616 setDataSaverModeEnabled(mDataSaverMode);
617
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700618 int size = mActiveQuotas.size();
619 if (size > 0) {
Felipe Leme03e689d2016-03-02 16:17:38 -0800620 if (DBG) Slog.d(TAG, "Pushing " + size + " active quota rules");
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700621 final HashMap<String, Long> activeQuotas = mActiveQuotas;
622 mActiveQuotas = Maps.newHashMap();
623 for (Map.Entry<String, Long> entry : activeQuotas.entrySet()) {
624 setInterfaceQuota(entry.getKey(), entry.getValue());
625 }
626 }
627
628 size = mActiveAlerts.size();
629 if (size > 0) {
Felipe Leme03e689d2016-03-02 16:17:38 -0800630 if (DBG) Slog.d(TAG, "Pushing " + size + " active alert rules");
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700631 final HashMap<String, Long> activeAlerts = mActiveAlerts;
632 mActiveAlerts = Maps.newHashMap();
633 for (Map.Entry<String, Long> entry : activeAlerts.entrySet()) {
634 setInterfaceAlert(entry.getKey(), entry.getValue());
635 }
636 }
637
Felipe Leme65be3022016-03-22 14:53:13 -0700638 size = mUidRejectOnMetered.size();
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700639 if (size > 0) {
Felipe Leme65be3022016-03-22 14:53:13 -0700640 if (DBG) Slog.d(TAG, "Pushing " + size + " UIDs to metered whitelist rules");
641 final SparseBooleanArray uidRejectOnQuota = mUidRejectOnMetered;
642 mUidRejectOnMetered = new SparseBooleanArray();
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700643 for (int i = 0; i < uidRejectOnQuota.size(); i++) {
Felipe Leme65be3022016-03-22 14:53:13 -0700644 setUidMeteredNetworkBlacklist(uidRejectOnQuota.keyAt(i),
645 uidRejectOnQuota.valueAt(i));
646 }
647 }
648
649 size = mUidAllowOnMetered.size();
650 if (size > 0) {
651 if (DBG) Slog.d(TAG, "Pushing " + size + " UIDs to metered blacklist rules");
652 final SparseBooleanArray uidAcceptOnQuota = mUidAllowOnMetered;
653 mUidAllowOnMetered = new SparseBooleanArray();
654 for (int i = 0; i < uidAcceptOnQuota.size(); i++) {
655 setUidMeteredNetworkWhitelist(uidAcceptOnQuota.keyAt(i),
656 uidAcceptOnQuota.valueAt(i));
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700657 }
658 }
Jeff Sharkey605eb792014-11-04 13:34:06 -0800659
660 size = mUidCleartextPolicy.size();
661 if (size > 0) {
Felipe Leme03e689d2016-03-02 16:17:38 -0800662 if (DBG) Slog.d(TAG, "Pushing " + size + " active UID cleartext policies");
Jeff Sharkey605eb792014-11-04 13:34:06 -0800663 final SparseIntArray local = mUidCleartextPolicy;
664 mUidCleartextPolicy = new SparseIntArray();
665 for (int i = 0; i < local.size(); i++) {
666 setUidCleartextNetworkPolicy(local.keyAt(i), local.valueAt(i));
667 }
668 }
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -0700669
Amith Yamasani15e472352015-04-24 19:06:07 -0700670 setFirewallEnabled(mFirewallEnabled || LockdownVpnTracker.isEnabled());
671
Lorenzo Colitti9eb844e2016-03-23 23:22:49 +0900672 syncFirewallChainLocked(FIREWALL_CHAIN_NONE, mUidFirewallRules, "");
673 syncFirewallChainLocked(FIREWALL_CHAIN_STANDBY, mUidFirewallStandbyRules, "standby ");
674 syncFirewallChainLocked(FIREWALL_CHAIN_DOZABLE, mUidFirewallDozableRules, "dozable ");
675 syncFirewallChainLocked(FIREWALL_CHAIN_POWERSAVE, mUidFirewallPowerSaveRules,
676 "powersave ");
Xiaohui Chenb41c9f72015-06-17 15:55:37 -0700677
Xiaohui Chen8dca36d2015-06-19 12:44:59 -0700678 if (mFirewallChainStates.get(FIREWALL_CHAIN_STANDBY)) {
Xiaohui Chenb41c9f72015-06-17 15:55:37 -0700679 setFirewallChainEnabled(FIREWALL_CHAIN_STANDBY, true);
680 }
Xiaohui Chen8dca36d2015-06-19 12:44:59 -0700681 if (mFirewallChainStates.get(FIREWALL_CHAIN_DOZABLE)) {
Xiaohui Chenb41c9f72015-06-17 15:55:37 -0700682 setFirewallChainEnabled(FIREWALL_CHAIN_DOZABLE, true);
683 }
Felipe Leme011b98f2016-02-10 17:28:31 -0800684 if (mFirewallChainStates.get(FIREWALL_CHAIN_POWERSAVE)) {
685 setFirewallChainEnabled(FIREWALL_CHAIN_POWERSAVE, true);
686 }
Amith Yamasani15e472352015-04-24 19:06:07 -0700687 }
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700688 }
San Mehat4d02d002010-01-22 16:07:46 -0800689
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900690 /**
691 * Notify our observers of a new or updated interface address.
692 */
Lorenzo Colitti64483942013-11-15 18:43:52 +0900693 private void notifyAddressUpdated(String iface, LinkAddress address) {
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900694 final int length = mObservers.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700695 try {
696 for (int i = 0; i < length; i++) {
697 try {
698 mObservers.getBroadcastItem(i).addressUpdated(iface, address);
Felipe Leme03e689d2016-03-02 16:17:38 -0800699 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700700 }
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900701 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700702 } finally {
703 mObservers.finishBroadcast();
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900704 }
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900705 }
706
707 /**
708 * Notify our observers of a deleted interface address.
709 */
Lorenzo Colitti64483942013-11-15 18:43:52 +0900710 private void notifyAddressRemoved(String iface, LinkAddress address) {
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900711 final int length = mObservers.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700712 try {
713 for (int i = 0; i < length; i++) {
714 try {
715 mObservers.getBroadcastItem(i).addressRemoved(iface, address);
Felipe Leme03e689d2016-03-02 16:17:38 -0800716 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700717 }
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900718 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700719 } finally {
720 mObservers.finishBroadcast();
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900721 }
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900722 }
723
Lorenzo Colitti5ae4a532013-10-31 11:59:46 +0900724 /**
725 * Notify our observers of DNS server information received.
726 */
727 private void notifyInterfaceDnsServerInfo(String iface, long lifetime, String[] addresses) {
728 final int length = mObservers.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700729 try {
730 for (int i = 0; i < length; i++) {
731 try {
732 mObservers.getBroadcastItem(i).interfaceDnsServerInfo(iface, lifetime,
733 addresses);
Felipe Leme03e689d2016-03-02 16:17:38 -0800734 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700735 }
Lorenzo Colitti5ae4a532013-10-31 11:59:46 +0900736 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700737 } finally {
738 mObservers.finishBroadcast();
Lorenzo Colitti5ae4a532013-10-31 11:59:46 +0900739 }
Lorenzo Colitti5ae4a532013-10-31 11:59:46 +0900740 }
741
Lorenzo Colittic18cbfd2014-06-13 21:21:03 +0900742 /**
743 * Notify our observers of a route change.
744 */
745 private void notifyRouteChange(String action, RouteInfo route) {
746 final int length = mObservers.beginBroadcast();
747 try {
748 for (int i = 0; i < length; i++) {
749 try {
750 if (action.equals("updated")) {
751 mObservers.getBroadcastItem(i).routeUpdated(route);
752 } else {
753 mObservers.getBroadcastItem(i).routeRemoved(route);
754 }
Felipe Leme03e689d2016-03-02 16:17:38 -0800755 } catch (RemoteException | RuntimeException e) {
Lorenzo Colittic18cbfd2014-06-13 21:21:03 +0900756 }
757 }
758 } finally {
759 mObservers.finishBroadcast();
760 }
761 }
762
San Mehat873f2142010-01-14 10:25:07 -0800763 //
764 // Netd Callback handling
765 //
766
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700767 private class NetdCallbackReceiver implements INativeDaemonConnectorCallbacks {
768 @Override
San Mehat873f2142010-01-14 10:25:07 -0800769 public void onDaemonConnected() {
Felipe Leme65be3022016-03-22 14:53:13 -0700770 Slog.i(TAG, "onDaemonConnected()");
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700771 // event is dispatched from internal NDC thread, so we prepare the
772 // daemon back on main thread.
773 if (mConnectedSignal != null) {
bohu07cc3bb2016-05-03 15:58:01 -0700774 // The system is booting and we're connecting to netd for the first time.
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700775 mConnectedSignal.countDown();
776 mConnectedSignal = null;
777 } else {
bohu07cc3bb2016-05-03 15:58:01 -0700778 // We're reconnecting to netd after the socket connection
779 // was interrupted (e.g., if it crashed).
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700780 mFgHandler.post(new Runnable() {
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700781 @Override
782 public void run() {
bohu07cc3bb2016-05-03 15:58:01 -0700783 connectNativeNetdService();
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700784 prepareNativeDaemon();
785 }
786 });
787 }
San Mehat873f2142010-01-14 10:25:07 -0800788 }
Jeff Sharkeyfa23c5a2011-08-09 21:44:24 -0700789
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700790 @Override
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800791 public boolean onCheckHoldWakeLock(int code) {
792 return code == NetdResponseCode.InterfaceClassActivity;
793 }
794
795 @Override
San Mehat873f2142010-01-14 10:25:07 -0800796 public boolean onEvent(int code, String raw, String[] cooked) {
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900797 String errorMessage = String.format("Invalid event from daemon (%s)", raw);
JP Abgrall12b933d2011-07-14 18:09:22 -0700798 switch (code) {
799 case NetdResponseCode.InterfaceChange:
800 /*
801 * a network interface change occured
802 * Format: "NNN Iface added <name>"
803 * "NNN Iface removed <name>"
804 * "NNN Iface changed <name> <up/down>"
805 * "NNN Iface linkstatus <name> <up/down>"
806 */
807 if (cooked.length < 4 || !cooked[1].equals("Iface")) {
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900808 throw new IllegalStateException(errorMessage);
JP Abgrall12b933d2011-07-14 18:09:22 -0700809 }
810 if (cooked[2].equals("added")) {
811 notifyInterfaceAdded(cooked[3]);
812 return true;
813 } else if (cooked[2].equals("removed")) {
814 notifyInterfaceRemoved(cooked[3]);
815 return true;
816 } else if (cooked[2].equals("changed") && cooked.length == 5) {
817 notifyInterfaceStatusChanged(cooked[3], cooked[4].equals("up"));
818 return true;
819 } else if (cooked[2].equals("linkstate") && cooked.length == 5) {
820 notifyInterfaceLinkStateChanged(cooked[3], cooked[4].equals("up"));
821 return true;
822 }
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900823 throw new IllegalStateException(errorMessage);
JP Abgrall12b933d2011-07-14 18:09:22 -0700824 // break;
825 case NetdResponseCode.BandwidthControl:
826 /*
827 * Bandwidth control needs some attention
828 * Format: "NNN limit alert <alertName> <ifaceName>"
829 */
830 if (cooked.length < 5 || !cooked[1].equals("limit")) {
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900831 throw new IllegalStateException(errorMessage);
JP Abgrall12b933d2011-07-14 18:09:22 -0700832 }
833 if (cooked[2].equals("alert")) {
834 notifyLimitReached(cooked[3], cooked[4]);
835 return true;
836 }
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900837 throw new IllegalStateException(errorMessage);
JP Abgrall12b933d2011-07-14 18:09:22 -0700838 // break;
Haoyu Baidb3c8672012-06-20 14:29:57 -0700839 case NetdResponseCode.InterfaceClassActivity:
840 /*
841 * An network interface class state changed (active/idle)
842 * Format: "NNN IfaceClass <active/idle> <label>"
843 */
844 if (cooked.length < 4 || !cooked[1].equals("IfaceClass")) {
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900845 throw new IllegalStateException(errorMessage);
Haoyu Baidb3c8672012-06-20 14:29:57 -0700846 }
Ashish Sharma0535a9f2014-03-12 18:42:23 -0700847 long timestampNanos = 0;
Ruchi Kandoifa97fcf2016-05-13 15:10:39 -0700848 int processUid = -1;
849 if (cooked.length >= 5) {
Ashish Sharma0535a9f2014-03-12 18:42:23 -0700850 try {
851 timestampNanos = Long.parseLong(cooked[4]);
Ruchi Kandoifa97fcf2016-05-13 15:10:39 -0700852 if (cooked.length == 6) {
853 processUid = Integer.parseInt(cooked[5]);
854 }
Ashish Sharma0535a9f2014-03-12 18:42:23 -0700855 } catch(NumberFormatException ne) {}
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700856 } else {
857 timestampNanos = SystemClock.elapsedRealtimeNanos();
Ashish Sharma0535a9f2014-03-12 18:42:23 -0700858 }
Haoyu Baidb3c8672012-06-20 14:29:57 -0700859 boolean isActive = cooked[2].equals("active");
Ashish Sharma0535a9f2014-03-12 18:42:23 -0700860 notifyInterfaceClassActivity(Integer.parseInt(cooked[3]),
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700861 isActive ? DataConnectionRealTimeInfo.DC_POWER_STATE_HIGH
Ruchi Kandoifa97fcf2016-05-13 15:10:39 -0700862 : DataConnectionRealTimeInfo.DC_POWER_STATE_LOW,
863 timestampNanos, processUid, false);
Haoyu Baidb3c8672012-06-20 14:29:57 -0700864 return true;
865 // break;
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900866 case NetdResponseCode.InterfaceAddressChange:
867 /*
868 * A network address change occurred
869 * Format: "NNN Address updated <addr> <iface> <flags> <scope>"
870 * "NNN Address removed <addr> <iface> <flags> <scope>"
871 */
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900872 if (cooked.length < 7 || !cooked[1].equals("Address")) {
873 throw new IllegalStateException(errorMessage);
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900874 }
875
Lorenzo Colitti64483942013-11-15 18:43:52 +0900876 String iface = cooked[4];
Lorenzo Colitti5ad421a2013-11-17 15:05:02 +0900877 LinkAddress address;
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900878 try {
Lorenzo Colitti64483942013-11-15 18:43:52 +0900879 int flags = Integer.parseInt(cooked[5]);
880 int scope = Integer.parseInt(cooked[6]);
881 address = new LinkAddress(cooked[3], flags, scope);
Lorenzo Colitti5ad421a2013-11-17 15:05:02 +0900882 } catch(NumberFormatException e) { // Non-numeric lifetime or scope.
883 throw new IllegalStateException(errorMessage, e);
Lorenzo Colitti64483942013-11-15 18:43:52 +0900884 } catch(IllegalArgumentException e) { // Malformed/invalid IP address.
Lorenzo Colitti5ad421a2013-11-17 15:05:02 +0900885 throw new IllegalStateException(errorMessage, e);
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900886 }
887
888 if (cooked[2].equals("updated")) {
Lorenzo Colitti64483942013-11-15 18:43:52 +0900889 notifyAddressUpdated(iface, address);
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900890 } else {
Lorenzo Colitti64483942013-11-15 18:43:52 +0900891 notifyAddressRemoved(iface, address);
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900892 }
893 return true;
894 // break;
Lorenzo Colitti5ae4a532013-10-31 11:59:46 +0900895 case NetdResponseCode.InterfaceDnsServerInfo:
896 /*
897 * Information about available DNS servers has been received.
898 * Format: "NNN DnsInfo servers <interface> <lifetime> <servers>"
899 */
900 long lifetime; // Actually a 32-bit unsigned integer.
901
902 if (cooked.length == 6 &&
903 cooked[1].equals("DnsInfo") &&
904 cooked[2].equals("servers")) {
905 try {
906 lifetime = Long.parseLong(cooked[4]);
907 } catch (NumberFormatException e) {
908 throw new IllegalStateException(errorMessage);
909 }
910 String[] servers = cooked[5].split(",");
911 notifyInterfaceDnsServerInfo(cooked[3], lifetime, servers);
912 }
913 return true;
914 // break;
Lorenzo Colittic18cbfd2014-06-13 21:21:03 +0900915 case NetdResponseCode.RouteChange:
916 /*
917 * A route has been updated or removed.
918 * Format: "NNN Route <updated|removed> <dst> [via <gateway] [dev <iface>]"
919 */
920 if (!cooked[1].equals("Route") || cooked.length < 6) {
921 throw new IllegalStateException(errorMessage);
922 }
923
924 String via = null;
925 String dev = null;
926 boolean valid = true;
927 for (int i = 4; (i + 1) < cooked.length && valid; i += 2) {
928 if (cooked[i].equals("dev")) {
929 if (dev == null) {
930 dev = cooked[i+1];
931 } else {
932 valid = false; // Duplicate interface.
933 }
934 } else if (cooked[i].equals("via")) {
935 if (via == null) {
936 via = cooked[i+1];
937 } else {
938 valid = false; // Duplicate gateway.
939 }
940 } else {
941 valid = false; // Unknown syntax.
942 }
943 }
944 if (valid) {
945 try {
946 // InetAddress.parseNumericAddress(null) inexplicably returns ::1.
947 InetAddress gateway = null;
948 if (via != null) gateway = InetAddress.parseNumericAddress(via);
949 RouteInfo route = new RouteInfo(new IpPrefix(cooked[3]), gateway, dev);
950 notifyRouteChange(cooked[2], route);
951 return true;
952 } catch (IllegalArgumentException e) {}
953 }
954 throw new IllegalStateException(errorMessage);
955 // break;
Jeff Sharkey605eb792014-11-04 13:34:06 -0800956 case NetdResponseCode.StrictCleartext:
957 final int uid = Integer.parseInt(cooked[1]);
958 final byte[] firstPacket = HexDump.hexStringToByteArray(cooked[2]);
959 try {
960 ActivityManagerNative.getDefault().notifyCleartextNetwork(uid, firstPacket);
961 } catch (RemoteException ignored) {
962 }
963 break;
JP Abgrall12b933d2011-07-14 18:09:22 -0700964 default: break;
Robert Greenwalte3253922010-02-18 09:23:25 -0800965 }
966 return false;
San Mehat873f2142010-01-14 10:25:07 -0800967 }
968 }
969
San Mehated4fc8a2010-01-22 12:28:36 -0800970
San Mehat873f2142010-01-14 10:25:07 -0800971 //
972 // INetworkManagementService members
973 //
Erik Kline4e37b702016-07-05 11:34:21 +0900974 @Override
975 public INetd getNetdService() throws RemoteException {
976 final CountDownLatch connectedSignal = mConnectedSignal;
977 if (connectedSignal != null) {
978 try {
979 connectedSignal.await();
980 } catch (InterruptedException ignored) {}
981 }
982
983 return mNetdService;
984 }
San Mehat873f2142010-01-14 10:25:07 -0800985
Jeff Sharkeyaf75c332011-11-18 12:41:12 -0800986 @Override
987 public String[] listInterfaces() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -0800988 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -0700989 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -0800990 return NativeDaemonEvent.filterMessageList(
991 mConnector.executeForList("interface", "list"), InterfaceListResult);
Kenny Roota80ce062010-06-01 13:23:53 -0700992 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -0800993 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -0700994 }
San Mehated4fc8a2010-01-22 12:28:36 -0800995 }
996
Jeff Sharkeyaf75c332011-11-18 12:41:12 -0800997 @Override
998 public InterfaceConfiguration getInterfaceConfig(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -0800999 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001000
1001 final NativeDaemonEvent event;
Kenny Roota80ce062010-06-01 13:23:53 -07001002 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001003 event = mConnector.execute("interface", "getcfg", iface);
Kenny Roota80ce062010-06-01 13:23:53 -07001004 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001005 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001006 }
San Mehated4fc8a2010-01-22 12:28:36 -08001007
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001008 event.checkCode(InterfaceGetCfgResult);
1009
1010 // Rsp: 213 xx:xx:xx:xx:xx:xx yyy.yyy.yyy.yyy zzz flag1 flag2 flag3
1011 final StringTokenizer st = new StringTokenizer(event.getMessage());
San Mehated4fc8a2010-01-22 12:28:36 -08001012
Kenny Roota80ce062010-06-01 13:23:53 -07001013 InterfaceConfiguration cfg;
San Mehated4fc8a2010-01-22 12:28:36 -08001014 try {
Kenny Roota80ce062010-06-01 13:23:53 -07001015 cfg = new InterfaceConfiguration();
Jeff Sharkeyddba1062011-11-29 18:37:04 -08001016 cfg.setHardwareAddress(st.nextToken(" "));
Robert Greenwalted126402011-01-28 15:34:55 -08001017 InetAddress addr = null;
Robert Greenwalt2d2afd12011-02-01 15:30:46 -08001018 int prefixLength = 0;
Kenny Roota80ce062010-06-01 13:23:53 -07001019 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001020 addr = NetworkUtils.numericToInetAddress(st.nextToken());
Robert Greenwalte5903732011-02-22 16:00:42 -08001021 } catch (IllegalArgumentException iae) {
1022 Slog.e(TAG, "Failed to parse ipaddr", iae);
Kenny Roota80ce062010-06-01 13:23:53 -07001023 }
1024
1025 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001026 prefixLength = Integer.parseInt(st.nextToken());
Robert Greenwalt2d2afd12011-02-01 15:30:46 -08001027 } catch (NumberFormatException nfe) {
1028 Slog.e(TAG, "Failed to parse prefixLength", nfe);
Kenny Roota80ce062010-06-01 13:23:53 -07001029 }
Robert Greenwalt04808c22010-12-13 17:01:41 -08001030
Jeff Sharkeyddba1062011-11-29 18:37:04 -08001031 cfg.setLinkAddress(new LinkAddress(addr, prefixLength));
1032 while (st.hasMoreTokens()) {
1033 cfg.setFlag(st.nextToken());
1034 }
Kenny Roota80ce062010-06-01 13:23:53 -07001035 } catch (NoSuchElementException nsee) {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001036 throw new IllegalStateException("Invalid response from daemon: " + event);
San Mehated4fc8a2010-01-22 12:28:36 -08001037 }
San Mehated4fc8a2010-01-22 12:28:36 -08001038 return cfg;
1039 }
1040
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001041 @Override
1042 public void setInterfaceConfig(String iface, InterfaceConfiguration cfg) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001043 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyddba1062011-11-29 18:37:04 -08001044 LinkAddress linkAddr = cfg.getLinkAddress();
Robert Greenwalt2d2afd12011-02-01 15:30:46 -08001045 if (linkAddr == null || linkAddr.getAddress() == null) {
1046 throw new IllegalStateException("Null LinkAddress given");
Robert Greenwalted126402011-01-28 15:34:55 -08001047 }
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001048
1049 final Command cmd = new Command("interface", "setcfg", iface,
Robert Greenwalt2d2afd12011-02-01 15:30:46 -08001050 linkAddr.getAddress().getHostAddress(),
Lorenzo Colitti7dc78cf2014-06-09 22:58:46 +09001051 linkAddr.getPrefixLength());
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001052 for (String flag : cfg.getFlags()) {
1053 cmd.appendArg(flag);
1054 }
1055
Kenny Roota80ce062010-06-01 13:23:53 -07001056 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001057 mConnector.execute(cmd);
Kenny Roota80ce062010-06-01 13:23:53 -07001058 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001059 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001060 }
San Mehat873f2142010-01-14 10:25:07 -08001061 }
1062
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001063 @Override
1064 public void setInterfaceDown(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001065 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001066 final InterfaceConfiguration ifcg = getInterfaceConfig(iface);
Jeff Sharkeyddba1062011-11-29 18:37:04 -08001067 ifcg.setInterfaceDown();
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001068 setInterfaceConfig(iface, ifcg);
Irfan Sheriff7244c972011-08-05 20:40:45 -07001069 }
1070
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001071 @Override
1072 public void setInterfaceUp(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001073 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001074 final InterfaceConfiguration ifcg = getInterfaceConfig(iface);
Jeff Sharkeyddba1062011-11-29 18:37:04 -08001075 ifcg.setInterfaceUp();
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001076 setInterfaceConfig(iface, ifcg);
Irfan Sheriff7244c972011-08-05 20:40:45 -07001077 }
1078
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001079 @Override
1080 public void setInterfaceIpv6PrivacyExtensions(String iface, boolean enable) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001081 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Irfan Sheriff73293612011-09-14 12:31:56 -07001082 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001083 mConnector.execute(
1084 "interface", "ipv6privacyextensions", iface, enable ? "enable" : "disable");
Irfan Sheriff73293612011-09-14 12:31:56 -07001085 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001086 throw e.rethrowAsParcelableException();
Irfan Sheriff73293612011-09-14 12:31:56 -07001087 }
1088 }
1089
Irfan Sherifff5600612011-06-16 10:26:28 -07001090 /* TODO: This is right now a IPv4 only function. Works for wifi which loses its
1091 IPv6 addresses on interface down, but we need to do full clean up here */
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001092 @Override
1093 public void clearInterfaceAddresses(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001094 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Irfan Sherifff5600612011-06-16 10:26:28 -07001095 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001096 mConnector.execute("interface", "clearaddrs", iface);
Irfan Sherifff5600612011-06-16 10:26:28 -07001097 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001098 throw e.rethrowAsParcelableException();
Irfan Sherifff5600612011-06-16 10:26:28 -07001099 }
1100 }
1101
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001102 @Override
1103 public void enableIpv6(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001104 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
repo sync7960d9f2011-09-29 12:40:02 -07001105 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001106 mConnector.execute("interface", "ipv6", iface, "enable");
repo sync7960d9f2011-09-29 12:40:02 -07001107 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001108 throw e.rethrowAsParcelableException();
repo sync7960d9f2011-09-29 12:40:02 -07001109 }
1110 }
1111
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001112 @Override
1113 public void disableIpv6(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001114 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
repo sync7960d9f2011-09-29 12:40:02 -07001115 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001116 mConnector.execute("interface", "ipv6", iface, "disable");
repo sync7960d9f2011-09-29 12:40:02 -07001117 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001118 throw e.rethrowAsParcelableException();
repo sync7960d9f2011-09-29 12:40:02 -07001119 }
1120 }
1121
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001122 @Override
Lorenzo Colittie21a26b2014-10-28 15:24:03 +09001123 public void setInterfaceIpv6NdOffload(String iface, boolean enable) {
1124 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1125 try {
1126 mConnector.execute(
1127 "interface", "ipv6ndoffload", iface, (enable ? "enable" : "disable"));
1128 } catch (NativeDaemonConnectorException e) {
1129 throw e.rethrowAsParcelableException();
1130 }
1131 }
1132
1133 @Override
Sreeram Ramachandranb2829fa2014-04-15 19:07:12 -07001134 public void addRoute(int netId, RouteInfo route) {
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07001135 modifyRoute("add", "" + netId, route);
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -07001136 }
1137
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001138 @Override
Sreeram Ramachandranb2829fa2014-04-15 19:07:12 -07001139 public void removeRoute(int netId, RouteInfo route) {
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07001140 modifyRoute("remove", "" + netId, route);
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -07001141 }
1142
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07001143 private void modifyRoute(String action, String netId, RouteInfo route) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001144 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001145
Sreeram Ramachandranb2829fa2014-04-15 19:07:12 -07001146 final Command cmd = new Command("network", "route", action, netId);
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001147
Sreeram Ramachandranb2829fa2014-04-15 19:07:12 -07001148 // create triplet: interface dest-ip-addr/prefixlength gateway-ip-addr
Sreeram Ramachandranb2829fa2014-04-15 19:07:12 -07001149 cmd.appendArg(route.getInterface());
Lorenzo Colitti4b0f8e62014-09-19 01:49:05 +09001150 cmd.appendArg(route.getDestination().toString());
1151
1152 switch (route.getType()) {
1153 case RouteInfo.RTN_UNICAST:
1154 if (route.hasGateway()) {
1155 cmd.appendArg(route.getGateway().getHostAddress());
1156 }
1157 break;
1158 case RouteInfo.RTN_UNREACHABLE:
1159 cmd.appendArg("unreachable");
1160 break;
1161 case RouteInfo.RTN_THROW:
1162 cmd.appendArg("throw");
1163 break;
Sreeram Ramachandran1fbcb272014-05-22 16:30:48 -07001164 }
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -07001165
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001166 try {
1167 mConnector.execute(cmd);
1168 } catch (NativeDaemonConnectorException e) {
1169 throw e.rethrowAsParcelableException();
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -07001170 }
1171 }
1172
1173 private ArrayList<String> readRouteList(String filename) {
1174 FileInputStream fstream = null;
1175 ArrayList<String> list = new ArrayList<String>();
1176
1177 try {
1178 fstream = new FileInputStream(filename);
1179 DataInputStream in = new DataInputStream(fstream);
1180 BufferedReader br = new BufferedReader(new InputStreamReader(in));
1181 String s;
1182
1183 // throw away the title line
1184
1185 while (((s = br.readLine()) != null) && (s.length() != 0)) {
1186 list.add(s);
1187 }
1188 } catch (IOException ex) {
1189 // return current list, possibly empty
1190 } finally {
1191 if (fstream != null) {
1192 try {
1193 fstream.close();
1194 } catch (IOException ex) {}
1195 }
1196 }
1197
1198 return list;
1199 }
1200
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001201 @Override
sy.yun9d9b74a2013-09-02 05:24:09 +09001202 public void setMtu(String iface, int mtu) {
1203 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1204
1205 final NativeDaemonEvent event;
1206 try {
1207 event = mConnector.execute("interface", "setmtu", iface, mtu);
1208 } catch (NativeDaemonConnectorException e) {
1209 throw e.rethrowAsParcelableException();
1210 }
1211 }
1212
1213 @Override
San Mehat873f2142010-01-14 10:25:07 -08001214 public void shutdown() {
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001215 // TODO: remove from aidl if nobody calls externally
1216 mContext.enforceCallingOrSelfPermission(SHUTDOWN, TAG);
San Mehat873f2142010-01-14 10:25:07 -08001217
Felipe Leme03e689d2016-03-02 16:17:38 -08001218 Slog.i(TAG, "Shutting down");
San Mehat873f2142010-01-14 10:25:07 -08001219 }
1220
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001221 @Override
San Mehat873f2142010-01-14 10:25:07 -08001222 public boolean getIpForwardingEnabled() throws IllegalStateException{
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001223 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
San Mehat873f2142010-01-14 10:25:07 -08001224
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001225 final NativeDaemonEvent event;
Kenny Roota80ce062010-06-01 13:23:53 -07001226 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001227 event = mConnector.execute("ipfwd", "status");
Kenny Roota80ce062010-06-01 13:23:53 -07001228 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001229 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001230 }
San Mehat873f2142010-01-14 10:25:07 -08001231
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001232 // 211 Forwarding enabled
1233 event.checkCode(IpFwdStatusResult);
1234 return event.getMessage().endsWith("enabled");
San Mehat873f2142010-01-14 10:25:07 -08001235 }
1236
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001237 @Override
1238 public void setIpForwardingEnabled(boolean enable) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001239 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001240 try {
Nilesh Poddarf3d4a582015-02-24 12:11:11 -08001241 mConnector.execute("ipfwd", enable ? "enable" : "disable", "tethering");
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001242 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001243 throw e.rethrowAsParcelableException();
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001244 }
San Mehat873f2142010-01-14 10:25:07 -08001245 }
1246
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001247 @Override
1248 public void startTethering(String[] dhcpRange) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001249 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Robert Greenwaltbfb7bfa2010-03-24 16:03:21 -07001250 // cmd is "tether start first_start first_stop second_start second_stop ..."
1251 // an odd number of addrs will fail
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001252
1253 final Command cmd = new Command("tether", "start");
Robert Greenwaltbfb7bfa2010-03-24 16:03:21 -07001254 for (String d : dhcpRange) {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001255 cmd.appendArg(d);
Robert Greenwaltbfb7bfa2010-03-24 16:03:21 -07001256 }
Kenny Roota80ce062010-06-01 13:23:53 -07001257
1258 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001259 mConnector.execute(cmd);
Kenny Roota80ce062010-06-01 13:23:53 -07001260 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001261 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001262 }
San Mehat873f2142010-01-14 10:25:07 -08001263 }
1264
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001265 @Override
1266 public void stopTethering() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001267 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001268 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001269 mConnector.execute("tether", "stop");
Kenny Roota80ce062010-06-01 13:23:53 -07001270 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001271 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001272 }
San Mehat873f2142010-01-14 10:25:07 -08001273 }
1274
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001275 @Override
1276 public boolean isTetheringStarted() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001277 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
San Mehat873f2142010-01-14 10:25:07 -08001278
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001279 final NativeDaemonEvent event;
Kenny Roota80ce062010-06-01 13:23:53 -07001280 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001281 event = mConnector.execute("tether", "status");
Kenny Roota80ce062010-06-01 13:23:53 -07001282 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001283 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001284 }
San Mehat873f2142010-01-14 10:25:07 -08001285
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001286 // 210 Tethering services started
1287 event.checkCode(TetherStatusResult);
1288 return event.getMessage().endsWith("started");
San Mehat873f2142010-01-14 10:25:07 -08001289 }
Matthew Xiefe19f122012-07-12 16:03:32 -07001290
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001291 @Override
1292 public void tetherInterface(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001293 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001294 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001295 mConnector.execute("tether", "interface", "add", iface);
Kenny Roota80ce062010-06-01 13:23:53 -07001296 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001297 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001298 }
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07001299 List<RouteInfo> routes = new ArrayList<RouteInfo>();
1300 // The RouteInfo constructor truncates the LinkAddress to a network prefix, thus making it
1301 // suitable to use as a route destination.
1302 routes.add(new RouteInfo(getInterfaceConfig(iface).getLinkAddress(), null, iface));
1303 addInterfaceToLocalNetwork(iface, routes);
San Mehat873f2142010-01-14 10:25:07 -08001304 }
1305
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001306 @Override
San Mehat873f2142010-01-14 10:25:07 -08001307 public void untetherInterface(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001308 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001309 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001310 mConnector.execute("tether", "interface", "remove", iface);
Kenny Roota80ce062010-06-01 13:23:53 -07001311 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001312 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001313 }
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07001314 removeInterfaceFromLocalNetwork(iface);
San Mehat873f2142010-01-14 10:25:07 -08001315 }
1316
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001317 @Override
1318 public String[] listTetheredInterfaces() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001319 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001320 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001321 return NativeDaemonEvent.filterMessageList(
1322 mConnector.executeForList("tether", "interface", "list"),
1323 TetherInterfaceListResult);
Kenny Roota80ce062010-06-01 13:23:53 -07001324 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001325 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001326 }
San Mehat873f2142010-01-14 10:25:07 -08001327 }
1328
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001329 @Override
Lorenzo Colittib57edc52014-08-22 17:10:50 -07001330 public void setDnsForwarders(Network network, String[] dns) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001331 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001332
Lorenzo Colittib57edc52014-08-22 17:10:50 -07001333 int netId = (network != null) ? network.netId : ConnectivityManager.NETID_UNSET;
1334 final Command cmd = new Command("tether", "dns", "set", netId);
1335
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001336 for (String s : dns) {
1337 cmd.appendArg(NetworkUtils.numericToInetAddress(s).getHostAddress());
1338 }
1339
San Mehat873f2142010-01-14 10:25:07 -08001340 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001341 mConnector.execute(cmd);
1342 } catch (NativeDaemonConnectorException e) {
1343 throw e.rethrowAsParcelableException();
San Mehat873f2142010-01-14 10:25:07 -08001344 }
1345 }
1346
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001347 @Override
1348 public String[] getDnsForwarders() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001349 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001350 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001351 return NativeDaemonEvent.filterMessageList(
1352 mConnector.executeForList("tether", "dns", "list"), TetherDnsFwdTgtListResult);
Kenny Roota80ce062010-06-01 13:23:53 -07001353 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001354 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001355 }
San Mehat873f2142010-01-14 10:25:07 -08001356 }
1357
jiaguo1da35f72014-01-09 16:39:59 +08001358 private List<InterfaceAddress> excludeLinkLocal(List<InterfaceAddress> addresses) {
1359 ArrayList<InterfaceAddress> filtered = new ArrayList<InterfaceAddress>(addresses.size());
1360 for (InterfaceAddress ia : addresses) {
1361 if (!ia.getAddress().isLinkLocalAddress())
1362 filtered.add(ia);
1363 }
1364 return filtered;
1365 }
1366
Lorenzo Colitti35e36db2015-02-26 01:25:36 +09001367 private void modifyInterfaceForward(boolean add, String fromIface, String toIface) {
1368 final Command cmd = new Command("ipfwd", add ? "add" : "remove", fromIface, toIface);
1369 try {
1370 mConnector.execute(cmd);
1371 } catch (NativeDaemonConnectorException e) {
1372 throw e.rethrowAsParcelableException();
1373 }
1374 }
1375
1376 @Override
1377 public void startInterfaceForwarding(String fromIface, String toIface) {
1378 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1379 modifyInterfaceForward(true, fromIface, toIface);
1380 }
1381
1382 @Override
1383 public void stopInterfaceForwarding(String fromIface, String toIface) {
1384 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1385 modifyInterfaceForward(false, fromIface, toIface);
1386 }
1387
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001388 private void modifyNat(String action, String internalInterface, String externalInterface)
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001389 throws SocketException {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001390 final Command cmd = new Command("nat", action, internalInterface, externalInterface);
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001391
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001392 final NetworkInterface internalNetworkInterface = NetworkInterface.getByName(
1393 internalInterface);
Robert Greenwalte83d1812011-11-21 14:44:39 -08001394 if (internalNetworkInterface == null) {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001395 cmd.appendArg("0");
Robert Greenwalte83d1812011-11-21 14:44:39 -08001396 } else {
jiaguo1da35f72014-01-09 16:39:59 +08001397 // Don't touch link-local routes, as link-local addresses aren't routable,
1398 // kernel creates link-local routes on all interfaces automatically
1399 List<InterfaceAddress> interfaceAddresses = excludeLinkLocal(
1400 internalNetworkInterface.getInterfaceAddresses());
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001401 cmd.appendArg(interfaceAddresses.size());
Robert Greenwalte83d1812011-11-21 14:44:39 -08001402 for (InterfaceAddress ia : interfaceAddresses) {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001403 InetAddress addr = NetworkUtils.getNetworkPart(
1404 ia.getAddress(), ia.getNetworkPrefixLength());
1405 cmd.appendArg(addr.getHostAddress() + "/" + ia.getNetworkPrefixLength());
Robert Greenwalte83d1812011-11-21 14:44:39 -08001406 }
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001407 }
1408
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001409 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001410 mConnector.execute(cmd);
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001411 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001412 throw e.rethrowAsParcelableException();
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001413 }
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001414 }
1415
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001416 @Override
1417 public void enableNat(String internalInterface, String externalInterface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001418 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001419 try {
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001420 modifyNat("enable", internalInterface, externalInterface);
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001421 } catch (SocketException e) {
1422 throw new IllegalStateException(e);
Kenny Roota80ce062010-06-01 13:23:53 -07001423 }
San Mehat873f2142010-01-14 10:25:07 -08001424 }
1425
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001426 @Override
1427 public void disableNat(String internalInterface, String externalInterface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001428 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001429 try {
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001430 modifyNat("disable", internalInterface, externalInterface);
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001431 } catch (SocketException e) {
1432 throw new IllegalStateException(e);
Kenny Roota80ce062010-06-01 13:23:53 -07001433 }
San Mehat873f2142010-01-14 10:25:07 -08001434 }
San Mehat72759df2010-01-19 13:50:37 -08001435
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001436 @Override
1437 public String[] listTtys() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001438 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001439 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001440 return NativeDaemonEvent.filterMessageList(
1441 mConnector.executeForList("list_ttys"), TtyListResult);
Kenny Roota80ce062010-06-01 13:23:53 -07001442 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001443 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001444 }
San Mehat72759df2010-01-19 13:50:37 -08001445 }
1446
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001447 @Override
1448 public void attachPppd(
1449 String tty, String localAddr, String remoteAddr, String dns1Addr, String dns2Addr) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001450 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
San Mehat72759df2010-01-19 13:50:37 -08001451 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001452 mConnector.execute("pppd", "attach", tty,
Robert Greenwalte5903732011-02-22 16:00:42 -08001453 NetworkUtils.numericToInetAddress(localAddr).getHostAddress(),
1454 NetworkUtils.numericToInetAddress(remoteAddr).getHostAddress(),
1455 NetworkUtils.numericToInetAddress(dns1Addr).getHostAddress(),
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001456 NetworkUtils.numericToInetAddress(dns2Addr).getHostAddress());
Kenny Roota80ce062010-06-01 13:23:53 -07001457 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001458 throw e.rethrowAsParcelableException();
San Mehat72759df2010-01-19 13:50:37 -08001459 }
1460 }
1461
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001462 @Override
1463 public void detachPppd(String tty) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001464 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001465 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001466 mConnector.execute("pppd", "detach", tty);
Kenny Roota80ce062010-06-01 13:23:53 -07001467 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001468 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001469 }
San Mehat72759df2010-01-19 13:50:37 -08001470 }
Robert Greenwaltce1200d2010-02-18 11:25:54 -08001471
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001472 /**
1473 * Private method used to call execute for a command given the provided arguments.
1474 *
1475 * This function checks the returned NativeDaemonEvent for the provided expected response code
1476 * and message. If either of these is not correct, an error is logged.
1477 *
1478 * @param String command The command to execute.
1479 * @param Object[] args If needed, arguments for the command to execute.
1480 * @param int expectedResponseCode The code expected to be returned in the corresponding event.
1481 * @param String expectedResponseMessage The message expected in the returned event.
1482 * @param String logMsg The message to log as an error (TAG will be applied).
1483 */
1484 private void executeOrLogWithMessage(String command, Object[] args,
1485 int expectedResponseCode, String expectedResponseMessage, String logMsg)
1486 throws NativeDaemonConnectorException {
1487 NativeDaemonEvent event = mConnector.execute(command, args);
1488 if (event.getCode() != expectedResponseCode
1489 || !event.getMessage().equals(expectedResponseMessage)) {
1490 Log.e(TAG, logMsg + ": event = " + event);
1491 }
1492 }
1493
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001494 @Override
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001495 public void startAccessPoint(WifiConfiguration wifiConfig, String wlanIface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001496 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001497 Object[] args;
1498 String logMsg = "startAccessPoint Error setting up softap";
Kenny Roota80ce062010-06-01 13:23:53 -07001499 try {
Kenny Roota80ce062010-06-01 13:23:53 -07001500 if (wifiConfig == null) {
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001501 args = new Object[] {"set", wlanIface};
Kenny Roota80ce062010-06-01 13:23:53 -07001502 } else {
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001503 args = new Object[] {"set", wlanIface, wifiConfig.SSID,
1504 "broadcast", Integer.toString(wifiConfig.apChannel),
1505 getSecurityType(wifiConfig), new SensitiveArg(wifiConfig.preSharedKey)};
Kenny Roota80ce062010-06-01 13:23:53 -07001506 }
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001507 executeOrLogWithMessage(SOFT_AP_COMMAND, args, NetdResponseCode.SoftapStatusResult,
1508 SOFT_AP_COMMAND_SUCCESS, logMsg);
1509
1510 logMsg = "startAccessPoint Error starting softap";
1511 args = new Object[] {"startap"};
1512 executeOrLogWithMessage(SOFT_AP_COMMAND, args, NetdResponseCode.SoftapStatusResult,
1513 SOFT_AP_COMMAND_SUCCESS, logMsg);
Kenny Roota80ce062010-06-01 13:23:53 -07001514 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001515 throw e.rethrowAsParcelableException();
Irfan Sheriff9ab518ad2010-03-12 15:48:17 -08001516 }
Irfan Sheriff5321aef2010-02-12 12:35:59 -08001517 }
1518
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001519 private static String getSecurityType(WifiConfiguration wifiConfig) {
Irfan Sheriffec8d23a2011-02-16 17:00:33 -08001520 switch (wifiConfig.getAuthType()) {
1521 case KeyMgmt.WPA_PSK:
1522 return "wpa-psk";
1523 case KeyMgmt.WPA2_PSK:
1524 return "wpa2-psk";
1525 default:
1526 return "open";
1527 }
1528 }
1529
Irfan Sheriffcb30b222011-07-29 20:54:52 -07001530 /* @param mode can be "AP", "STA" or "P2P" */
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001531 @Override
1532 public void wifiFirmwareReload(String wlanIface, String mode) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001533 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001534 Object[] args = {"fwreload", wlanIface, mode};
1535 String logMsg = "wifiFirmwareReload Error reloading "
1536 + wlanIface + " fw in " + mode + " mode";
Irfan Sheriffcb30b222011-07-29 20:54:52 -07001537 try {
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001538 executeOrLogWithMessage(SOFT_AP_COMMAND, args, NetdResponseCode.SoftapStatusResult,
1539 SOFT_AP_COMMAND_SUCCESS, logMsg);
Irfan Sheriffcb30b222011-07-29 20:54:52 -07001540 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001541 throw e.rethrowAsParcelableException();
Irfan Sheriffcb30b222011-07-29 20:54:52 -07001542 }
Rebecca Silbersteinefdb8452016-04-21 12:14:41 -07001543
1544 // Ensure that before we return from this command, any asynchronous
1545 // notifications generated before the command completed have been
1546 // processed by all NetworkManagementEventObservers.
1547 mConnector.waitForCallbacks();
Irfan Sheriffcb30b222011-07-29 20:54:52 -07001548 }
1549
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001550 @Override
1551 public void stopAccessPoint(String wlanIface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001552 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001553 Object[] args = {"stopap"};
1554 String logMsg = "stopAccessPoint Error stopping softap";
1555
Kenny Roota80ce062010-06-01 13:23:53 -07001556 try {
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001557 executeOrLogWithMessage(SOFT_AP_COMMAND, args, NetdResponseCode.SoftapStatusResult,
1558 SOFT_AP_COMMAND_SUCCESS, logMsg);
Irfan Sheriffcb30b222011-07-29 20:54:52 -07001559 wifiFirmwareReload(wlanIface, "STA");
Kenny Roota80ce062010-06-01 13:23:53 -07001560 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001561 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001562 }
Irfan Sheriff5321aef2010-02-12 12:35:59 -08001563 }
1564
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001565 @Override
Irfan Sheriff90542752012-06-19 15:44:35 -07001566 public void setAccessPoint(WifiConfiguration wifiConfig, String wlanIface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001567 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001568 Object[] args;
1569 String logMsg = "startAccessPoint Error setting up softap";
Kenny Roota80ce062010-06-01 13:23:53 -07001570 try {
1571 if (wifiConfig == null) {
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001572 args = new Object[] {"set", wlanIface};
Kenny Roota80ce062010-06-01 13:23:53 -07001573 } else {
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001574 // TODO: understand why this is set to "6" instead of
1575 // Integer.toString(wifiConfig.apChannel) as in startAccessPoint
1576 // TODO: should startAccessPoint call this instead of repeating code?
1577 args = new Object[] {"set", wlanIface, wifiConfig.SSID,
1578 "broadcast", "6",
1579 getSecurityType(wifiConfig), new SensitiveArg(wifiConfig.preSharedKey)};
Kenny Roota80ce062010-06-01 13:23:53 -07001580 }
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001581 executeOrLogWithMessage(SOFT_AP_COMMAND, args, NetdResponseCode.SoftapStatusResult,
1582 SOFT_AP_COMMAND_SUCCESS, logMsg);
Kenny Roota80ce062010-06-01 13:23:53 -07001583 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001584 throw e.rethrowAsParcelableException();
Irfan Sheriffc2f54c22010-03-18 14:02:22 -07001585 }
1586 }
San Mehat91cac642010-03-31 14:31:36 -07001587
Jeff Sharkeyeedcb952011-05-17 14:55:15 -07001588 @Override
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001589 public void addIdleTimer(String iface, int timeout, final int type) {
Haoyu Bai04124232012-06-28 15:26:19 -07001590 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1591
1592 if (DBG) Slog.d(TAG, "Adding idletimer");
1593
1594 synchronized (mIdleTimerLock) {
1595 IdleTimerParams params = mActiveIdleTimers.get(iface);
1596 if (params != null) {
1597 // the interface already has idletimer, update network count
1598 params.networkCount++;
1599 return;
1600 }
1601
1602 try {
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001603 mConnector.execute("idletimer", "add", iface, Integer.toString(timeout),
1604 Integer.toString(type));
Haoyu Bai04124232012-06-28 15:26:19 -07001605 } catch (NativeDaemonConnectorException e) {
1606 throw e.rethrowAsParcelableException();
1607 }
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001608 mActiveIdleTimers.put(iface, new IdleTimerParams(timeout, type));
1609
Dianne Hackborne13c4c02014-02-11 17:18:35 -08001610 // Networks start up.
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001611 if (ConnectivityManager.isNetworkTypeMobile(type)) {
1612 mNetworkActive = false;
1613 }
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -07001614 mDaemonHandler.post(new Runnable() {
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001615 @Override public void run() {
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -07001616 notifyInterfaceClassActivity(type,
1617 DataConnectionRealTimeInfo.DC_POWER_STATE_HIGH,
Ruchi Kandoifa97fcf2016-05-13 15:10:39 -07001618 SystemClock.elapsedRealtimeNanos(), -1, false);
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001619 }
1620 });
Haoyu Bai04124232012-06-28 15:26:19 -07001621 }
1622 }
1623
1624 @Override
1625 public void removeIdleTimer(String iface) {
1626 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1627
1628 if (DBG) Slog.d(TAG, "Removing idletimer");
1629
1630 synchronized (mIdleTimerLock) {
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001631 final IdleTimerParams params = mActiveIdleTimers.get(iface);
Haoyu Bai04124232012-06-28 15:26:19 -07001632 if (params == null || --(params.networkCount) > 0) {
1633 return;
1634 }
1635
1636 try {
1637 mConnector.execute("idletimer", "remove", iface,
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001638 Integer.toString(params.timeout), Integer.toString(params.type));
Haoyu Bai04124232012-06-28 15:26:19 -07001639 } catch (NativeDaemonConnectorException e) {
1640 throw e.rethrowAsParcelableException();
1641 }
1642 mActiveIdleTimers.remove(iface);
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -07001643 mDaemonHandler.post(new Runnable() {
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001644 @Override public void run() {
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -07001645 notifyInterfaceClassActivity(params.type,
1646 DataConnectionRealTimeInfo.DC_POWER_STATE_LOW,
Ruchi Kandoifa97fcf2016-05-13 15:10:39 -07001647 SystemClock.elapsedRealtimeNanos(), -1, false);
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001648 }
1649 });
Haoyu Bai04124232012-06-28 15:26:19 -07001650 }
1651 }
1652
1653 @Override
Jeff Sharkeye8914c32012-05-01 16:26:09 -07001654 public NetworkStats getNetworkStatsSummaryDev() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001655 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey9a2c2a62013-01-14 16:48:51 -08001656 try {
1657 return mStatsFactory.readNetworkStatsSummaryDev();
1658 } catch (IOException e) {
1659 throw new IllegalStateException(e);
1660 }
Jeff Sharkeye8914c32012-05-01 16:26:09 -07001661 }
1662
1663 @Override
1664 public NetworkStats getNetworkStatsSummaryXt() {
1665 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey9a2c2a62013-01-14 16:48:51 -08001666 try {
1667 return mStatsFactory.readNetworkStatsSummaryXt();
1668 } catch (IOException e) {
1669 throw new IllegalStateException(e);
1670 }
Jeff Sharkeyae2c1812011-10-04 13:11:40 -07001671 }
1672
Jeff Sharkeyeedcb952011-05-17 14:55:15 -07001673 @Override
Jeff Sharkey9a13f362011-04-26 16:25:36 -07001674 public NetworkStats getNetworkStatsDetail() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001675 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey9a2c2a62013-01-14 16:48:51 -08001676 try {
Dianne Hackbornd0c5b9a2014-02-21 16:19:05 -08001677 return mStatsFactory.readNetworkStatsDetail(UID_ALL, null, TAG_ALL, null);
Jeff Sharkey9a2c2a62013-01-14 16:48:51 -08001678 } catch (IOException e) {
1679 throw new IllegalStateException(e);
1680 }
San Mehat91cac642010-03-31 14:31:36 -07001681 }
1682
Jeff Sharkeyeedcb952011-05-17 14:55:15 -07001683 @Override
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001684 public void setInterfaceQuota(String iface, long quotaBytes) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001685 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001686
Jeff Sharkey350083e2011-06-29 10:45:16 -07001687 // silently discard when control disabled
1688 // TODO: eventually migrate to be always enabled
1689 if (!mBandwidthControlEnabled) return;
1690
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001691 synchronized (mQuotaLock) {
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001692 if (mActiveQuotas.containsKey(iface)) {
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001693 throw new IllegalStateException("iface " + iface + " already has quota");
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001694 }
1695
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001696 try {
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001697 // TODO: support quota shared across interfaces
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001698 mConnector.execute("bandwidth", "setiquota", iface, quotaBytes);
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001699 mActiveQuotas.put(iface, quotaBytes);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001700 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001701 throw e.rethrowAsParcelableException();
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001702 }
Ashish Sharma50fd36d2011-06-15 19:34:53 -07001703 }
1704 }
1705
1706 @Override
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001707 public void removeInterfaceQuota(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001708 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001709
Jeff Sharkey350083e2011-06-29 10:45:16 -07001710 // silently discard when control disabled
1711 // TODO: eventually migrate to be always enabled
1712 if (!mBandwidthControlEnabled) return;
1713
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001714 synchronized (mQuotaLock) {
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001715 if (!mActiveQuotas.containsKey(iface)) {
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001716 // TODO: eventually consider throwing
1717 return;
1718 }
1719
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001720 mActiveQuotas.remove(iface);
1721 mActiveAlerts.remove(iface);
Jeff Sharkey38ddeaa2011-11-08 13:04:22 -08001722
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001723 try {
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001724 // TODO: support quota shared across interfaces
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001725 mConnector.execute("bandwidth", "removeiquota", iface);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001726 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001727 throw e.rethrowAsParcelableException();
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001728 }
1729 }
1730 }
1731
1732 @Override
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001733 public void setInterfaceAlert(String iface, long alertBytes) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001734 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001735
1736 // silently discard when control disabled
1737 // TODO: eventually migrate to be always enabled
1738 if (!mBandwidthControlEnabled) return;
1739
1740 // quick sanity check
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001741 if (!mActiveQuotas.containsKey(iface)) {
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001742 throw new IllegalStateException("setting alert requires existing quota on iface");
1743 }
1744
1745 synchronized (mQuotaLock) {
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001746 if (mActiveAlerts.containsKey(iface)) {
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001747 throw new IllegalStateException("iface " + iface + " already has alert");
1748 }
1749
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001750 try {
1751 // TODO: support alert shared across interfaces
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001752 mConnector.execute("bandwidth", "setinterfacealert", iface, alertBytes);
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001753 mActiveAlerts.put(iface, alertBytes);
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001754 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001755 throw e.rethrowAsParcelableException();
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001756 }
1757 }
1758 }
1759
1760 @Override
1761 public void removeInterfaceAlert(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001762 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001763
1764 // silently discard when control disabled
1765 // TODO: eventually migrate to be always enabled
1766 if (!mBandwidthControlEnabled) return;
1767
1768 synchronized (mQuotaLock) {
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001769 if (!mActiveAlerts.containsKey(iface)) {
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001770 // TODO: eventually consider throwing
1771 return;
1772 }
1773
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001774 try {
1775 // TODO: support alert shared across interfaces
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001776 mConnector.execute("bandwidth", "removeinterfacealert", iface);
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001777 mActiveAlerts.remove(iface);
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001778 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001779 throw e.rethrowAsParcelableException();
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001780 }
1781 }
1782 }
1783
1784 @Override
1785 public void setGlobalAlert(long alertBytes) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001786 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001787
1788 // silently discard when control disabled
1789 // TODO: eventually migrate to be always enabled
1790 if (!mBandwidthControlEnabled) return;
1791
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001792 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001793 mConnector.execute("bandwidth", "setglobalalert", alertBytes);
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001794 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001795 throw e.rethrowAsParcelableException();
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001796 }
1797 }
1798
Felipe Leme65be3022016-03-22 14:53:13 -07001799 private void setUidOnMeteredNetworkList(SparseBooleanArray quotaList, int uid,
1800 boolean blacklist, boolean enable) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001801 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001802
Jeff Sharkey350083e2011-06-29 10:45:16 -07001803 // silently discard when control disabled
1804 // TODO: eventually migrate to be always enabled
1805 if (!mBandwidthControlEnabled) return;
1806
Felipe Leme65be3022016-03-22 14:53:13 -07001807 final String chain = blacklist ? "naughtyapps" : "niceapps";
1808 final String suffix = enable ? "add" : "remove";
1809
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001810 synchronized (mQuotaLock) {
Felipe Leme65be3022016-03-22 14:53:13 -07001811 final boolean oldEnable = quotaList.get(uid, false);
1812 if (oldEnable == enable) {
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001813 // TODO: eventually consider throwing
1814 return;
1815 }
1816
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001817 try {
Felipe Leme65be3022016-03-22 14:53:13 -07001818 mConnector.execute("bandwidth", suffix + chain, uid);
1819 if (enable) {
1820 quotaList.put(uid, true);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001821 } else {
Felipe Leme65be3022016-03-22 14:53:13 -07001822 quotaList.delete(uid);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001823 }
1824 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001825 throw e.rethrowAsParcelableException();
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001826 }
Ashish Sharma50fd36d2011-06-15 19:34:53 -07001827 }
1828 }
1829
Jeff Sharkey63d27a92011-08-03 17:04:22 -07001830 @Override
Felipe Leme65be3022016-03-22 14:53:13 -07001831 public void setUidMeteredNetworkBlacklist(int uid, boolean enable) {
1832 setUidOnMeteredNetworkList(mUidRejectOnMetered, uid, true, enable);
1833 }
1834
1835 @Override
1836 public void setUidMeteredNetworkWhitelist(int uid, boolean enable) {
1837 setUidOnMeteredNetworkList(mUidAllowOnMetered, uid, false, enable);
1838 }
1839
1840 @Override
1841 public boolean setDataSaverModeEnabled(boolean enable) {
1842 if (DBG) Log.d(TAG, "setDataSaverMode: " + enable);
1843 synchronized (mQuotaLock) {
1844 if (mDataSaverMode == enable) {
1845 Log.w(TAG, "setDataSaverMode(): already " + mDataSaverMode);
1846 return true;
1847 }
1848 try {
1849 final boolean changed = mNetdService.bandwidthEnableDataSaver(enable);
1850 if (changed) {
1851 mDataSaverMode = enable;
1852 } else {
1853 Log.w(TAG, "setDataSaverMode(" + enable + "): netd command silently failed");
1854 }
1855 return changed;
1856 } catch (RemoteException e) {
1857 Log.w(TAG, "setDataSaverMode(" + enable + "): netd command failed", e);
1858 return false;
1859 }
1860 }
1861 }
1862
1863 @Override
Robin Lee17e61832016-05-09 13:46:28 +01001864 public void setAllowOnlyVpnForUids(boolean add, UidRange[] uidRanges)
1865 throws ServiceSpecificException {
1866 try {
1867 mNetdService.networkRejectNonSecureVpn(add, uidRanges);
1868 } catch (ServiceSpecificException e) {
1869 Log.w(TAG, "setAllowOnlyVpnForUids(" + add + ", " + Arrays.toString(uidRanges) + ")"
1870 + ": netd command failed", e);
1871 throw e;
1872 } catch (RemoteException e) {
1873 Log.w(TAG, "setAllowOnlyVpnForUids(" + add + ", " + Arrays.toString(uidRanges) + ")"
1874 + ": netd command failed", e);
1875 throw e.rethrowAsRuntimeException();
1876 }
1877 }
1878
1879 @Override
Jeff Sharkey605eb792014-11-04 13:34:06 -08001880 public void setUidCleartextNetworkPolicy(int uid, int policy) {
1881 if (Binder.getCallingUid() != uid) {
1882 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1883 }
1884
1885 synchronized (mQuotaLock) {
1886 final int oldPolicy = mUidCleartextPolicy.get(uid, StrictMode.NETWORK_POLICY_ACCEPT);
1887 if (oldPolicy == policy) {
1888 return;
1889 }
1890
1891 if (!mStrictEnabled) {
1892 // Module isn't enabled yet; stash the requested policy away to
1893 // apply later once the daemon is connected.
1894 mUidCleartextPolicy.put(uid, policy);
1895 return;
1896 }
1897
1898 final String policyString;
1899 switch (policy) {
1900 case StrictMode.NETWORK_POLICY_ACCEPT:
1901 policyString = "accept";
1902 break;
1903 case StrictMode.NETWORK_POLICY_LOG:
1904 policyString = "log";
1905 break;
1906 case StrictMode.NETWORK_POLICY_REJECT:
1907 policyString = "reject";
1908 break;
1909 default:
1910 throw new IllegalArgumentException("Unknown policy " + policy);
1911 }
1912
1913 try {
1914 mConnector.execute("strict", "set_uid_cleartext_policy", uid, policyString);
1915 mUidCleartextPolicy.put(uid, policy);
1916 } catch (NativeDaemonConnectorException e) {
1917 throw e.rethrowAsParcelableException();
1918 }
1919 }
1920 }
1921
1922 @Override
Jeff Sharkey63d27a92011-08-03 17:04:22 -07001923 public boolean isBandwidthControlEnabled() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001924 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey63d27a92011-08-03 17:04:22 -07001925 return mBandwidthControlEnabled;
1926 }
1927
1928 @Override
Jeff Sharkeyeedcb952011-05-17 14:55:15 -07001929 public NetworkStats getNetworkStatsUidDetail(int uid) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001930 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey9a2c2a62013-01-14 16:48:51 -08001931 try {
Dianne Hackbornd0c5b9a2014-02-21 16:19:05 -08001932 return mStatsFactory.readNetworkStatsDetail(uid, null, TAG_ALL, null);
Jeff Sharkey9a2c2a62013-01-14 16:48:51 -08001933 } catch (IOException e) {
1934 throw new IllegalStateException(e);
1935 }
Jeff Sharkeyeedcb952011-05-17 14:55:15 -07001936 }
1937
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -07001938 @Override
Jeff Sharkeye4984be2013-09-10 21:03:27 -07001939 public NetworkStats getNetworkStatsTethering() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001940 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -07001941
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -07001942 final NetworkStats stats = new NetworkStats(SystemClock.elapsedRealtime(), 1);
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -07001943 try {
Jeff Sharkeye4984be2013-09-10 21:03:27 -07001944 final NativeDaemonEvent[] events = mConnector.executeForList(
1945 "bandwidth", "gettetherstats");
1946 for (NativeDaemonEvent event : events) {
1947 if (event.getCode() != TetheringStatsListResult) continue;
1948
1949 // 114 ifaceIn ifaceOut rx_bytes rx_packets tx_bytes tx_packets
1950 final StringTokenizer tok = new StringTokenizer(event.getMessage());
1951 try {
1952 final String ifaceIn = tok.nextToken();
1953 final String ifaceOut = tok.nextToken();
1954
1955 final NetworkStats.Entry entry = new NetworkStats.Entry();
1956 entry.iface = ifaceOut;
1957 entry.uid = UID_TETHERING;
1958 entry.set = SET_DEFAULT;
1959 entry.tag = TAG_NONE;
1960 entry.rxBytes = Long.parseLong(tok.nextToken());
1961 entry.rxPackets = Long.parseLong(tok.nextToken());
1962 entry.txBytes = Long.parseLong(tok.nextToken());
1963 entry.txPackets = Long.parseLong(tok.nextToken());
1964 stats.combineValues(entry);
1965 } catch (NoSuchElementException e) {
1966 throw new IllegalStateException("problem parsing tethering stats: " + event);
1967 } catch (NumberFormatException e) {
1968 throw new IllegalStateException("problem parsing tethering stats: " + event);
1969 }
1970 }
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -07001971 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001972 throw e.rethrowAsParcelableException();
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -07001973 }
Jeff Sharkeye4984be2013-09-10 21:03:27 -07001974 return stats;
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -07001975 }
1976
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001977 @Override
Pierre Imai8e48e672016-04-21 13:30:43 +09001978 public void setDnsConfigurationForNetwork(int netId, String[] servers, String domains) {
1979 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1980
1981 ContentResolver resolver = mContext.getContentResolver();
1982
1983 int sampleValidity = Settings.Global.getInt(resolver,
1984 Settings.Global.DNS_RESOLVER_SAMPLE_VALIDITY_SECONDS,
1985 DNS_RESOLVER_DEFAULT_SAMPLE_VALIDITY_SECONDS);
1986 if (sampleValidity < 0 || sampleValidity > 65535) {
1987 Slog.w(TAG, "Invalid sampleValidity=" + sampleValidity + ", using default=" +
1988 DNS_RESOLVER_DEFAULT_SAMPLE_VALIDITY_SECONDS);
1989 sampleValidity = DNS_RESOLVER_DEFAULT_SAMPLE_VALIDITY_SECONDS;
1990 }
1991
1992 int successThreshold = Settings.Global.getInt(resolver,
1993 Settings.Global.DNS_RESOLVER_SUCCESS_THRESHOLD_PERCENT,
1994 DNS_RESOLVER_DEFAULT_SUCCESS_THRESHOLD_PERCENT);
1995 if (successThreshold < 0 || successThreshold > 100) {
1996 Slog.w(TAG, "Invalid successThreshold=" + successThreshold + ", using default=" +
1997 DNS_RESOLVER_DEFAULT_SUCCESS_THRESHOLD_PERCENT);
1998 successThreshold = DNS_RESOLVER_DEFAULT_SUCCESS_THRESHOLD_PERCENT;
1999 }
2000
2001 int minSamples = Settings.Global.getInt(resolver,
2002 Settings.Global.DNS_RESOLVER_MIN_SAMPLES, DNS_RESOLVER_DEFAULT_MIN_SAMPLES);
2003 int maxSamples = Settings.Global.getInt(resolver,
2004 Settings.Global.DNS_RESOLVER_MAX_SAMPLES, DNS_RESOLVER_DEFAULT_MAX_SAMPLES);
2005 if (minSamples < 0 || minSamples > maxSamples || maxSamples > 64) {
2006 Slog.w(TAG, "Invalid sample count (min, max)=(" + minSamples + ", " + maxSamples +
2007 "), using default=(" + DNS_RESOLVER_DEFAULT_MIN_SAMPLES + ", " +
2008 DNS_RESOLVER_DEFAULT_MAX_SAMPLES + ")");
2009 minSamples = DNS_RESOLVER_DEFAULT_MIN_SAMPLES;
2010 maxSamples = DNS_RESOLVER_DEFAULT_MAX_SAMPLES;
2011 }
2012
2013 final String[] domainStrs = domains == null ? new String[0] : domains.split(" ");
2014 final int[] params = { sampleValidity, successThreshold, minSamples, maxSamples };
2015 try {
2016 mNetdService.setResolverConfiguration(netId, servers, domainStrs, params);
2017 } catch (RemoteException e) {
2018 throw new RuntimeException(e);
2019 }
2020 }
2021
2022 @Override
Paul Jensen13e817d2014-04-10 14:16:37 -04002023 public void setDnsServersForNetwork(int netId, String[] servers, String domains) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08002024 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08002025
Lorenzo Colitti829dfa72014-11-28 20:07:46 +09002026 Command cmd;
2027 if (servers.length > 0) {
2028 cmd = new Command("resolver", "setnetdns", netId,
2029 (domains == null ? "" : domains));
2030 for (String s : servers) {
2031 InetAddress a = NetworkUtils.numericToInetAddress(s);
2032 if (a.isAnyLocalAddress() == false) {
2033 cmd.appendArg(a.getHostAddress());
2034 }
Mattias Falk7475c0c2011-04-04 16:10:36 +02002035 }
Lorenzo Colitti829dfa72014-11-28 20:07:46 +09002036 } else {
2037 cmd = new Command("resolver", "clearnetdns", netId);
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08002038 }
2039
2040 try {
2041 mConnector.execute(cmd);
Mattias Falk7475c0c2011-04-04 16:10:36 +02002042 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08002043 throw e.rethrowAsParcelableException();
Mattias Falk7475c0c2011-04-04 16:10:36 +02002044 }
2045 }
2046
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08002047 @Override
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04002048 public void addVpnUidRanges(int netId, UidRange[] ranges) {
Chad Brubaker3277620a2013-06-12 13:37:30 -07002049 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04002050 Object[] argv = new Object[3 + MAX_UID_RANGES_PER_COMMAND];
2051 argv[0] = "users";
2052 argv[1] = "add";
2053 argv[2] = netId;
2054 int argc = 3;
2055 // Avoid overly long commands by limiting number of UID ranges per command.
2056 for (int i = 0; i < ranges.length; i++) {
2057 argv[argc++] = ranges[i].toString();
2058 if (i == (ranges.length - 1) || argc == argv.length) {
2059 try {
2060 mConnector.execute("network", Arrays.copyOf(argv, argc));
2061 } catch (NativeDaemonConnectorException e) {
2062 throw e.rethrowAsParcelableException();
2063 }
2064 argc = 3;
2065 }
Chad Brubaker3277620a2013-06-12 13:37:30 -07002066 }
2067 }
2068
2069 @Override
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04002070 public void removeVpnUidRanges(int netId, UidRange[] ranges) {
Chad Brubaker3277620a2013-06-12 13:37:30 -07002071 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04002072 Object[] argv = new Object[3 + MAX_UID_RANGES_PER_COMMAND];
2073 argv[0] = "users";
2074 argv[1] = "remove";
2075 argv[2] = netId;
2076 int argc = 3;
2077 // Avoid overly long commands by limiting number of UID ranges per command.
2078 for (int i = 0; i < ranges.length; i++) {
2079 argv[argc++] = ranges[i].toString();
2080 if (i == (ranges.length - 1) || argc == argv.length) {
2081 try {
2082 mConnector.execute("network", Arrays.copyOf(argv, argc));
2083 } catch (NativeDaemonConnectorException e) {
2084 throw e.rethrowAsParcelableException();
2085 }
2086 argc = 3;
2087 }
Chad Brubakercca54c42013-06-27 17:41:38 -07002088 }
2089 }
2090
2091 @Override
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002092 public void setFirewallEnabled(boolean enabled) {
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07002093 enforceSystemUid();
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002094 try {
Amith Yamasani15e472352015-04-24 19:06:07 -07002095 mConnector.execute("firewall", "enable", enabled ? "whitelist" : "blacklist");
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002096 mFirewallEnabled = enabled;
2097 } catch (NativeDaemonConnectorException e) {
2098 throw e.rethrowAsParcelableException();
2099 }
2100 }
2101
2102 @Override
2103 public boolean isFirewallEnabled() {
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07002104 enforceSystemUid();
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002105 return mFirewallEnabled;
2106 }
2107
2108 @Override
Jeff Sharkey2c092982012-08-24 11:44:40 -07002109 public void setFirewallInterfaceRule(String iface, boolean allow) {
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07002110 enforceSystemUid();
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002111 Preconditions.checkState(mFirewallEnabled);
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002112 final String rule = allow ? "allow" : "deny";
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002113 try {
2114 mConnector.execute("firewall", "set_interface_rule", iface, rule);
2115 } catch (NativeDaemonConnectorException e) {
2116 throw e.rethrowAsParcelableException();
2117 }
2118 }
2119
2120 @Override
Jeff Sharkey2c092982012-08-24 11:44:40 -07002121 public void setFirewallEgressSourceRule(String addr, boolean allow) {
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07002122 enforceSystemUid();
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002123 Preconditions.checkState(mFirewallEnabled);
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002124 final String rule = allow ? "allow" : "deny";
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002125 try {
2126 mConnector.execute("firewall", "set_egress_source_rule", addr, rule);
2127 } catch (NativeDaemonConnectorException e) {
2128 throw e.rethrowAsParcelableException();
2129 }
2130 }
2131
2132 @Override
Jeff Sharkey2c092982012-08-24 11:44:40 -07002133 public void setFirewallEgressDestRule(String addr, int port, boolean allow) {
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07002134 enforceSystemUid();
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002135 Preconditions.checkState(mFirewallEnabled);
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002136 final String rule = allow ? "allow" : "deny";
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002137 try {
2138 mConnector.execute("firewall", "set_egress_dest_rule", addr, port, rule);
2139 } catch (NativeDaemonConnectorException e) {
2140 throw e.rethrowAsParcelableException();
2141 }
2142 }
2143
Lorenzo Colitti3fef7232016-04-29 18:00:03 +09002144 private void closeSocketsForFirewallChainLocked(int chain, String chainName) {
Lorenzo Colitti4cb42402016-04-24 12:52:00 +09002145 // UID ranges to close sockets on.
2146 UidRange[] ranges;
2147 // UID ranges whose sockets we won't touch.
2148 int[] exemptUids;
2149
Lorenzo Colitti3fef7232016-04-29 18:00:03 +09002150 final SparseIntArray rules = getUidFirewallRules(chain);
Lorenzo Colitti4cb42402016-04-24 12:52:00 +09002151 int numUids = 0;
2152
2153 if (getFirewallType(chain) == FIREWALL_TYPE_WHITELIST) {
2154 // Close all sockets on all non-system UIDs...
2155 ranges = new UidRange[] {
2156 // TODO: is there a better way of finding all existing users? If so, we could
2157 // specify their ranges here.
2158 new UidRange(Process.FIRST_APPLICATION_UID, Integer.MAX_VALUE),
2159 };
2160 // ... except for the UIDs that have allow rules.
2161 exemptUids = new int[rules.size()];
2162 for (int i = 0; i < exemptUids.length; i++) {
2163 if (rules.valueAt(i) == NetworkPolicyManager.FIREWALL_RULE_ALLOW) {
2164 exemptUids[numUids] = rules.keyAt(i);
2165 numUids++;
2166 }
2167 }
2168 // Normally, whitelist chains only contain deny rules, so numUids == exemptUids.length.
2169 // But the code does not guarantee this in any way, and at least in one case - if we add
2170 // a UID rule to the firewall, and then disable the firewall - the chains can contain
2171 // the wrong type of rule. In this case, don't close connections that we shouldn't.
2172 //
2173 // TODO: tighten up this code by ensuring we never set the wrong type of rule, and
2174 // fix setFirewallEnabled to grab mQuotaLock and clear rules.
2175 if (numUids != exemptUids.length) {
2176 exemptUids = Arrays.copyOf(exemptUids, numUids);
2177 }
2178 } else {
2179 // Close sockets for every UID that has a deny rule...
2180 ranges = new UidRange[rules.size()];
2181 for (int i = 0; i < ranges.length; i++) {
2182 if (rules.valueAt(i) == NetworkPolicyManager.FIREWALL_RULE_DENY) {
2183 int uid = rules.keyAt(i);
2184 ranges[numUids] = new UidRange(uid, uid);
2185 numUids++;
2186 }
2187 }
2188 // As above; usually numUids == ranges.length, but not always.
2189 if (numUids != ranges.length) {
2190 ranges = Arrays.copyOf(ranges, numUids);
2191 }
2192 // ... with no exceptions.
2193 exemptUids = new int[0];
2194 }
2195
2196 try {
2197 mNetdService.socketDestroy(ranges, exemptUids);
2198 } catch(RemoteException | ServiceSpecificException e) {
2199 Slog.e(TAG, "Error closing sockets after enabling chain " + chainName + ": " + e);
2200 }
2201 }
2202
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002203 @Override
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002204 public void setFirewallChainEnabled(int chain, boolean enable) {
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07002205 enforceSystemUid();
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002206 synchronized (mQuotaLock) {
Xiaohui Chen896b49a2015-07-29 14:12:22 -07002207 if (mFirewallChainStates.get(chain) == enable) {
2208 // All is the same, nothing to do. This relies on the fact that netd has child
2209 // chains default detached.
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002210 return;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002211 }
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002212 mFirewallChainStates.put(chain, enable);
2213
2214 final String operation = enable ? "enable_chain" : "disable_chain";
Lorenzo Colitti3fef7232016-04-29 18:00:03 +09002215 final String chainName;
Lorenzo Colitti4cb42402016-04-24 12:52:00 +09002216 switch(chain) {
2217 case FIREWALL_CHAIN_STANDBY:
2218 chainName = FIREWALL_CHAIN_NAME_STANDBY;
2219 break;
2220 case FIREWALL_CHAIN_DOZABLE:
2221 chainName = FIREWALL_CHAIN_NAME_DOZABLE;
2222 break;
2223 case FIREWALL_CHAIN_POWERSAVE:
2224 chainName = FIREWALL_CHAIN_NAME_POWERSAVE;
2225 break;
2226 default:
2227 throw new IllegalArgumentException("Bad child chain: " + chain);
2228 }
2229
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002230 try {
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002231 mConnector.execute("firewall", operation, chainName);
2232 } catch (NativeDaemonConnectorException e) {
2233 throw e.rethrowAsParcelableException();
2234 }
Lorenzo Colitti4cb42402016-04-24 12:52:00 +09002235
2236 // Close any sockets that were opened by the affected UIDs. This has to be done after
2237 // disabling network connectivity, in case they react to the socket close by reopening
2238 // the connection and race with the iptables commands that enable the firewall. All
2239 // whitelist and blacklist chains allow RSTs through.
2240 if (enable) {
2241 if (DBG) Slog.d(TAG, "Closing sockets after enabling chain " + chainName);
Lorenzo Colitti3fef7232016-04-29 18:00:03 +09002242 closeSocketsForFirewallChainLocked(chain, chainName);
Lorenzo Colitti4cb42402016-04-24 12:52:00 +09002243 }
Amith Yamasani15e472352015-04-24 19:06:07 -07002244 }
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002245 }
2246
2247 private int getFirewallType(int chain) {
2248 switch (chain) {
2249 case FIREWALL_CHAIN_STANDBY:
2250 return FIREWALL_TYPE_BLACKLIST;
2251 case FIREWALL_CHAIN_DOZABLE:
2252 return FIREWALL_TYPE_WHITELIST;
Felipe Leme011b98f2016-02-10 17:28:31 -08002253 case FIREWALL_CHAIN_POWERSAVE:
2254 return FIREWALL_TYPE_WHITELIST;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002255 default:
2256 return isFirewallEnabled() ? FIREWALL_TYPE_WHITELIST : FIREWALL_TYPE_BLACKLIST;
2257 }
2258 }
2259
2260 @Override
2261 public void setFirewallUidRules(int chain, int[] uids, int[] rules) {
2262 enforceSystemUid();
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002263 synchronized (mQuotaLock) {
2264 SparseIntArray uidFirewallRules = getUidFirewallRules(chain);
2265 SparseIntArray newRules = new SparseIntArray();
2266 // apply new set of rules
2267 for (int index = uids.length - 1; index >= 0; --index) {
2268 int uid = uids[index];
2269 int rule = rules[index];
Felipe Lemea701cad2016-05-12 09:58:14 -07002270 updateFirewallUidRuleLocked(chain, uid, rule);
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002271 newRules.put(uid, rule);
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002272 }
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002273 // collect the rules to remove.
2274 SparseIntArray rulesToRemove = new SparseIntArray();
2275 for (int index = uidFirewallRules.size() - 1; index >= 0; --index) {
2276 int uid = uidFirewallRules.keyAt(index);
2277 if (newRules.indexOfKey(uid) < 0) {
2278 rulesToRemove.put(uid, FIREWALL_RULE_DEFAULT);
2279 }
2280 }
2281 // remove dead rules
2282 for (int index = rulesToRemove.size() - 1; index >= 0; --index) {
2283 int uid = rulesToRemove.keyAt(index);
Felipe Lemea701cad2016-05-12 09:58:14 -07002284 updateFirewallUidRuleLocked(chain, uid, FIREWALL_RULE_DEFAULT);
2285 }
2286 try {
2287 switch (chain) {
2288 case FIREWALL_CHAIN_DOZABLE:
2289 mNetdService.firewallReplaceUidChain("fw_dozable", true, uids);
2290 break;
2291 case FIREWALL_CHAIN_STANDBY:
2292 mNetdService.firewallReplaceUidChain("fw_standby", false, uids);
2293 break;
2294 case FIREWALL_CHAIN_POWERSAVE:
2295 mNetdService.firewallReplaceUidChain("fw_powersave", true, uids);
2296 break;
2297 case FIREWALL_CHAIN_NONE:
2298 default:
2299 Slog.d(TAG, "setFirewallUidRules() called on invalid chain: " + chain);
2300 }
2301 } catch (RemoteException e) {
2302 Slog.w(TAG, "Error flushing firewall chain " + chain, e);
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002303 }
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002304 }
2305 }
2306
2307 @Override
2308 public void setFirewallUidRule(int chain, int uid, int rule) {
2309 enforceSystemUid();
Felipe Lemea701cad2016-05-12 09:58:14 -07002310 synchronized (mQuotaLock) {
2311 setFirewallUidRuleLocked(chain, uid, rule);
2312 }
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002313 }
2314
Felipe Lemea701cad2016-05-12 09:58:14 -07002315 private void setFirewallUidRuleLocked(int chain, int uid, int rule) {
2316 if (updateFirewallUidRuleLocked(chain, uid, rule)) {
Amith Yamasani15e472352015-04-24 19:06:07 -07002317 try {
Felipe Lemea701cad2016-05-12 09:58:14 -07002318 mConnector.execute("firewall", "set_uid_rule", getFirewallChainName(chain), uid,
2319 getFirewallRuleName(chain, rule));
Amith Yamasani15e472352015-04-24 19:06:07 -07002320 } catch (NativeDaemonConnectorException e) {
2321 throw e.rethrowAsParcelableException();
2322 }
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002323 }
2324 }
2325
Felipe Lemea701cad2016-05-12 09:58:14 -07002326 // TODO: now that netd supports batching, NMS should not keep these data structures anymore...
2327 private boolean updateFirewallUidRuleLocked(int chain, int uid, int rule) {
2328 SparseIntArray uidFirewallRules = getUidFirewallRules(chain);
2329
2330 final int oldUidFirewallRule = uidFirewallRules.get(uid, FIREWALL_RULE_DEFAULT);
2331 if (DBG) {
2332 Slog.d(TAG, "oldRule = " + oldUidFirewallRule
2333 + ", newRule=" + rule + " for uid=" + uid + " on chain " + chain);
2334 }
2335 if (oldUidFirewallRule == rule) {
2336 if (DBG) Slog.d(TAG, "!!!!! Skipping change");
2337 // TODO: eventually consider throwing
2338 return false;
2339 }
2340
2341 String ruleName = getFirewallRuleName(chain, rule);
2342 String oldRuleName = getFirewallRuleName(chain, oldUidFirewallRule);
2343
2344 if (rule == NetworkPolicyManager.FIREWALL_RULE_DEFAULT) {
2345 uidFirewallRules.delete(uid);
2346 } else {
2347 uidFirewallRules.put(uid, rule);
2348 }
2349 return !ruleName.equals(oldRuleName);
2350 }
2351
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002352 private @NonNull String getFirewallRuleName(int chain, int rule) {
2353 String ruleName;
2354 if (getFirewallType(chain) == FIREWALL_TYPE_WHITELIST) {
2355 if (rule == NetworkPolicyManager.FIREWALL_RULE_ALLOW) {
2356 ruleName = "allow";
2357 } else {
2358 ruleName = "deny";
2359 }
2360 } else { // Blacklist mode
2361 if (rule == NetworkPolicyManager.FIREWALL_RULE_DENY) {
2362 ruleName = "deny";
2363 } else {
2364 ruleName = "allow";
2365 }
2366 }
2367 return ruleName;
2368 }
2369
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002370 private @NonNull SparseIntArray getUidFirewallRules(int chain) {
2371 switch (chain) {
2372 case FIREWALL_CHAIN_STANDBY:
2373 return mUidFirewallStandbyRules;
2374 case FIREWALL_CHAIN_DOZABLE:
2375 return mUidFirewallDozableRules;
Felipe Leme011b98f2016-02-10 17:28:31 -08002376 case FIREWALL_CHAIN_POWERSAVE:
2377 return mUidFirewallPowerSaveRules;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002378 case FIREWALL_CHAIN_NONE:
2379 return mUidFirewallRules;
2380 default:
2381 throw new IllegalArgumentException("Unknown chain:" + chain);
2382 }
2383 }
2384
2385 public @NonNull String getFirewallChainName(int chain) {
2386 switch (chain) {
2387 case FIREWALL_CHAIN_STANDBY:
2388 return FIREWALL_CHAIN_NAME_STANDBY;
2389 case FIREWALL_CHAIN_DOZABLE:
2390 return FIREWALL_CHAIN_NAME_DOZABLE;
Felipe Leme011b98f2016-02-10 17:28:31 -08002391 case FIREWALL_CHAIN_POWERSAVE:
2392 return FIREWALL_CHAIN_NAME_POWERSAVE;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002393 case FIREWALL_CHAIN_NONE:
2394 return FIREWALL_CHAIN_NAME_NONE;
2395 default:
2396 throw new IllegalArgumentException("Unknown chain:" + chain);
2397 }
2398 }
2399
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07002400 private static void enforceSystemUid() {
2401 final int uid = Binder.getCallingUid();
2402 if (uid != Process.SYSTEM_UID) {
2403 throw new SecurityException("Only available to AID_SYSTEM");
2404 }
2405 }
2406
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002407 @Override
Lorenzo Colitti79751842013-02-28 16:16:03 +09002408 public void startClatd(String interfaceName) throws IllegalStateException {
2409 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2410
2411 try {
2412 mConnector.execute("clatd", "start", interfaceName);
2413 } catch (NativeDaemonConnectorException e) {
2414 throw e.rethrowAsParcelableException();
2415 }
2416 }
2417
2418 @Override
Lorenzo Colitti95439462014-10-09 13:44:48 +09002419 public void stopClatd(String interfaceName) throws IllegalStateException {
Lorenzo Colitti79751842013-02-28 16:16:03 +09002420 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2421
2422 try {
Lorenzo Colitti95439462014-10-09 13:44:48 +09002423 mConnector.execute("clatd", "stop", interfaceName);
Lorenzo Colitti79751842013-02-28 16:16:03 +09002424 } catch (NativeDaemonConnectorException e) {
2425 throw e.rethrowAsParcelableException();
2426 }
2427 }
2428
2429 @Override
Lorenzo Colitti95439462014-10-09 13:44:48 +09002430 public boolean isClatdStarted(String interfaceName) {
Lorenzo Colitti79751842013-02-28 16:16:03 +09002431 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2432
2433 final NativeDaemonEvent event;
2434 try {
Lorenzo Colitti95439462014-10-09 13:44:48 +09002435 event = mConnector.execute("clatd", "status", interfaceName);
Lorenzo Colitti79751842013-02-28 16:16:03 +09002436 } catch (NativeDaemonConnectorException e) {
2437 throw e.rethrowAsParcelableException();
2438 }
2439
2440 event.checkCode(ClatdStatusResult);
2441 return event.getMessage().endsWith("started");
2442 }
2443
Dianne Hackborn77b987f2014-02-26 16:20:52 -08002444 @Override
2445 public void registerNetworkActivityListener(INetworkActivityListener listener) {
2446 mNetworkActivityListeners.register(listener);
2447 }
2448
2449 @Override
2450 public void unregisterNetworkActivityListener(INetworkActivityListener listener) {
2451 mNetworkActivityListeners.unregister(listener);
2452 }
2453
2454 @Override
2455 public boolean isNetworkActive() {
2456 synchronized (mNetworkActivityListeners) {
2457 return mNetworkActive || mActiveIdleTimers.isEmpty();
2458 }
2459 }
2460
2461 private void reportNetworkActive() {
2462 final int length = mNetworkActivityListeners.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -07002463 try {
2464 for (int i = 0; i < length; i++) {
2465 try {
2466 mNetworkActivityListeners.getBroadcastItem(i).onNetworkActive();
Felipe Leme03e689d2016-03-02 16:17:38 -08002467 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -07002468 }
Dianne Hackborn77b987f2014-02-26 16:20:52 -08002469 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -07002470 } finally {
2471 mNetworkActivityListeners.finishBroadcast();
Dianne Hackborn77b987f2014-02-26 16:20:52 -08002472 }
Dianne Hackborn77b987f2014-02-26 16:20:52 -08002473 }
2474
Mattias Falk8b47b362011-08-23 14:15:13 +02002475 /** {@inheritDoc} */
Jeff Sharkey7b4596f2013-02-25 10:55:29 -08002476 @Override
Jeff Sharkeyfa23c5a2011-08-09 21:44:24 -07002477 public void monitor() {
2478 if (mConnector != null) {
2479 mConnector.monitor();
2480 }
2481 }
Jeff Sharkey47eb1022011-08-25 17:48:52 -07002482
2483 @Override
2484 protected void dump(FileDescriptor fd, PrintWriter pw, String[] args) {
2485 mContext.enforceCallingOrSelfPermission(DUMP, TAG);
2486
Robert Greenwalt470fd722012-01-18 12:51:15 -08002487 pw.println("NetworkManagementService NativeDaemonConnector Log:");
2488 mConnector.dump(fd, pw, args);
2489 pw.println();
2490
Jeff Sharkey47eb1022011-08-25 17:48:52 -07002491 pw.print("Bandwidth control enabled: "); pw.println(mBandwidthControlEnabled);
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -07002492 pw.print("mMobileActivityFromRadio="); pw.print(mMobileActivityFromRadio);
2493 pw.print(" mLastPowerStateFromRadio="); pw.println(mLastPowerStateFromRadio);
2494 pw.print("mNetworkActive="); pw.println(mNetworkActive);
Jeff Sharkey47eb1022011-08-25 17:48:52 -07002495
2496 synchronized (mQuotaLock) {
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07002497 pw.print("Active quota ifaces: "); pw.println(mActiveQuotas.toString());
2498 pw.print("Active alert ifaces: "); pw.println(mActiveAlerts.toString());
Felipe Leme65be3022016-03-22 14:53:13 -07002499 pw.print("Data saver mode: "); pw.println(mDataSaverMode);
2500 dumpUidRuleOnQuotaLocked(pw, "blacklist", mUidRejectOnMetered);
2501 dumpUidRuleOnQuotaLocked(pw, "whitelist", mUidAllowOnMetered);
Jeff Sharkey47eb1022011-08-25 17:48:52 -07002502 }
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002503
Amith Yamasani15e472352015-04-24 19:06:07 -07002504 synchronized (mUidFirewallRules) {
Felipe Leme011b98f2016-02-10 17:28:31 -08002505 dumpUidFirewallRule(pw, "", mUidFirewallRules);
Amith Yamasani15e472352015-04-24 19:06:07 -07002506 }
2507
Felipe Leme65be3022016-03-22 14:53:13 -07002508 pw.print("UID firewall standby chain enabled: "); pw.println(
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002509 mFirewallChainStates.get(FIREWALL_CHAIN_STANDBY));
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002510 synchronized (mUidFirewallStandbyRules) {
Felipe Leme011b98f2016-02-10 17:28:31 -08002511 dumpUidFirewallRule(pw, FIREWALL_CHAIN_NAME_STANDBY, mUidFirewallStandbyRules);
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002512 }
2513
Felipe Leme65be3022016-03-22 14:53:13 -07002514 pw.print("UID firewall dozable chain enabled: "); pw.println(
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002515 mFirewallChainStates.get(FIREWALL_CHAIN_DOZABLE));
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002516 synchronized (mUidFirewallDozableRules) {
Felipe Leme011b98f2016-02-10 17:28:31 -08002517 dumpUidFirewallRule(pw, FIREWALL_CHAIN_NAME_DOZABLE, mUidFirewallDozableRules);
2518 }
2519
2520 pw.println("UID firewall powersave chain enabled: " +
2521 mFirewallChainStates.get(FIREWALL_CHAIN_POWERSAVE));
2522 synchronized (mUidFirewallPowerSaveRules) {
2523 dumpUidFirewallRule(pw, FIREWALL_CHAIN_NAME_POWERSAVE, mUidFirewallPowerSaveRules);
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002524 }
2525
Dianne Hackborn77b987f2014-02-26 16:20:52 -08002526 synchronized (mIdleTimerLock) {
2527 pw.println("Idle timers:");
2528 for (HashMap.Entry<String, IdleTimerParams> ent : mActiveIdleTimers.entrySet()) {
2529 pw.print(" "); pw.print(ent.getKey()); pw.println(":");
2530 IdleTimerParams params = ent.getValue();
2531 pw.print(" timeout="); pw.print(params.timeout);
2532 pw.print(" type="); pw.print(params.type);
2533 pw.print(" networkCount="); pw.println(params.networkCount);
2534 }
2535 }
2536
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002537 pw.print("Firewall enabled: "); pw.println(mFirewallEnabled);
Felipe Leme65be3022016-03-22 14:53:13 -07002538 pw.print("Netd service status: " );
2539 if (mNetdService == null) {
2540 pw.println("disconnected");
2541 } else {
2542 try {
2543 final boolean alive = mNetdService.isAlive();
2544 pw.println(alive ? "alive": "dead");
2545 } catch (RemoteException e) {
2546 pw.println("unreachable");
2547 }
2548 }
2549 }
2550
2551 private void dumpUidRuleOnQuotaLocked(PrintWriter pw, String name, SparseBooleanArray list) {
2552 pw.print("UID bandwith control ");
2553 pw.print(name);
2554 pw.print(" rule: [");
2555 final int size = list.size();
2556 for (int i = 0; i < size; i++) {
2557 pw.print(list.keyAt(i));
2558 if (i < size - 1) pw.print(",");
2559 }
2560 pw.println("]");
Jeff Sharkey47eb1022011-08-25 17:48:52 -07002561 }
Robert Greenwalt9ba9c582014-03-19 17:56:12 -07002562
Felipe Leme011b98f2016-02-10 17:28:31 -08002563 private void dumpUidFirewallRule(PrintWriter pw, String name, SparseIntArray rules) {
Lorenzo Colitti4cb42402016-04-24 12:52:00 +09002564 pw.print("UID firewall ");
Felipe Leme011b98f2016-02-10 17:28:31 -08002565 pw.print(name);
2566 pw.print(" rule: [");
2567 final int size = rules.size();
2568 for (int i = 0; i < size; i++) {
2569 pw.print(rules.keyAt(i));
2570 pw.print(":");
2571 pw.print(rules.valueAt(i));
2572 if (i < size - 1) pw.print(",");
2573 }
2574 pw.println("]");
2575 }
2576
Robert Greenwalt568891d2014-04-04 13:38:00 -07002577 @Override
Paul Jensen487ffe72015-07-24 15:57:11 -04002578 public void createPhysicalNetwork(int netId, String permission) {
Robert Greenwalt9ba9c582014-03-19 17:56:12 -07002579 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2580
2581 try {
Paul Jensen487ffe72015-07-24 15:57:11 -04002582 if (permission != null) {
2583 mConnector.execute("network", "create", netId, permission);
2584 } else {
2585 mConnector.execute("network", "create", netId);
2586 }
Robert Greenwalt9ba9c582014-03-19 17:56:12 -07002587 } catch (NativeDaemonConnectorException e) {
2588 throw e.rethrowAsParcelableException();
2589 }
2590 }
2591
Robert Greenwalt568891d2014-04-04 13:38:00 -07002592 @Override
Sreeram Ramachandran8cd33ed2014-07-23 15:23:15 -07002593 public void createVirtualNetwork(int netId, boolean hasDNS, boolean secure) {
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04002594 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2595
2596 try {
Sreeram Ramachandran8cd33ed2014-07-23 15:23:15 -07002597 mConnector.execute("network", "create", netId, "vpn", hasDNS ? "1" : "0",
2598 secure ? "1" : "0");
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04002599 } catch (NativeDaemonConnectorException e) {
2600 throw e.rethrowAsParcelableException();
2601 }
2602 }
2603
2604 @Override
Robert Greenwalt9ba9c582014-03-19 17:56:12 -07002605 public void removeNetwork(int netId) {
2606 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2607
2608 try {
2609 mConnector.execute("network", "destroy", netId);
2610 } catch (NativeDaemonConnectorException e) {
2611 throw e.rethrowAsParcelableException();
2612 }
2613 }
Robert Greenwalt568891d2014-04-04 13:38:00 -07002614
2615 @Override
Paul Jensen992f2522014-04-28 10:33:11 -04002616 public void addInterfaceToNetwork(String iface, int netId) {
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002617 modifyInterfaceInNetwork("add", "" + netId, iface);
Paul Jensen992f2522014-04-28 10:33:11 -04002618 }
2619
2620 @Override
2621 public void removeInterfaceFromNetwork(String iface, int netId) {
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002622 modifyInterfaceInNetwork("remove", "" + netId, iface);
2623 }
Paul Jensen992f2522014-04-28 10:33:11 -04002624
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002625 private void modifyInterfaceInNetwork(String action, String netId, String iface) {
2626 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Paul Jensen992f2522014-04-28 10:33:11 -04002627 try {
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002628 mConnector.execute("network", "interface", action, netId, iface);
Paul Jensen992f2522014-04-28 10:33:11 -04002629 } catch (NativeDaemonConnectorException e) {
2630 throw e.rethrowAsParcelableException();
2631 }
2632 }
2633
2634 @Override
Robert Greenwalt913c8952014-04-07 17:36:35 -07002635 public void addLegacyRouteForNetId(int netId, RouteInfo routeInfo, int uid) {
Robert Greenwalt568891d2014-04-04 13:38:00 -07002636 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2637
Sreeram Ramachandran03666c72014-07-19 23:21:46 -07002638 final Command cmd = new Command("network", "route", "legacy", uid, "add", netId);
Robert Greenwalt568891d2014-04-04 13:38:00 -07002639
Sreeram Ramachandran1fbcb272014-05-22 16:30:48 -07002640 // create triplet: interface dest-ip-addr/prefixlength gateway-ip-addr
Sreeram Ramachandrancc91c7b2014-06-03 18:41:43 -07002641 final LinkAddress la = routeInfo.getDestinationLinkAddress();
Robert Greenwalt568891d2014-04-04 13:38:00 -07002642 cmd.appendArg(routeInfo.getInterface());
Lorenzo Colitti7dc78cf2014-06-09 22:58:46 +09002643 cmd.appendArg(la.getAddress().getHostAddress() + "/" + la.getPrefixLength());
Sreeram Ramachandran1fbcb272014-05-22 16:30:48 -07002644 if (routeInfo.hasGateway()) {
2645 cmd.appendArg(routeInfo.getGateway().getHostAddress());
2646 }
Robert Greenwalt568891d2014-04-04 13:38:00 -07002647
2648 try {
2649 mConnector.execute(cmd);
2650 } catch (NativeDaemonConnectorException e) {
2651 throw e.rethrowAsParcelableException();
2652 }
2653 }
2654
2655 @Override
Sreeram Ramachandranf047f2a2014-04-15 16:04:26 -07002656 public void setDefaultNetId(int netId) {
Robert Greenwalt568891d2014-04-04 13:38:00 -07002657 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2658
2659 try {
Sreeram Ramachandranf047f2a2014-04-15 16:04:26 -07002660 mConnector.execute("network", "default", "set", netId);
Robert Greenwalt568891d2014-04-04 13:38:00 -07002661 } catch (NativeDaemonConnectorException e) {
2662 throw e.rethrowAsParcelableException();
2663 }
2664 }
2665
2666 @Override
2667 public void clearDefaultNetId() {
2668 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2669
2670 try {
2671 mConnector.execute("network", "default", "clear");
2672 } catch (NativeDaemonConnectorException e) {
2673 throw e.rethrowAsParcelableException();
2674 }
2675 }
2676
2677 @Override
Paul Jensen487ffe72015-07-24 15:57:11 -04002678 public void setNetworkPermission(int netId, String permission) {
2679 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2680
2681 try {
2682 if (permission != null) {
2683 mConnector.execute("network", "permission", "network", "set", permission, netId);
2684 } else {
2685 mConnector.execute("network", "permission", "network", "clear", netId);
2686 }
2687 } catch (NativeDaemonConnectorException e) {
2688 throw e.rethrowAsParcelableException();
2689 }
2690 }
2691
2692
2693 @Override
Sreeram Ramachandrane4a05af2014-09-24 09:16:19 -07002694 public void setPermission(String permission, int[] uids) {
Robert Greenwalt568891d2014-04-04 13:38:00 -07002695 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2696
Sreeram Ramachandrane4a05af2014-09-24 09:16:19 -07002697 Object[] argv = new Object[4 + MAX_UID_RANGES_PER_COMMAND];
2698 argv[0] = "permission";
2699 argv[1] = "user";
2700 argv[2] = "set";
2701 argv[3] = permission;
2702 int argc = 4;
2703 // Avoid overly long commands by limiting number of UIDs per command.
2704 for (int i = 0; i < uids.length; ++i) {
2705 argv[argc++] = uids[i];
2706 if (i == uids.length - 1 || argc == argv.length) {
2707 try {
2708 mConnector.execute("network", Arrays.copyOf(argv, argc));
2709 } catch (NativeDaemonConnectorException e) {
2710 throw e.rethrowAsParcelableException();
2711 }
2712 argc = 4;
2713 }
Robert Greenwalt568891d2014-04-04 13:38:00 -07002714 }
2715 }
2716
2717 @Override
2718 public void clearPermission(int[] uids) {
2719 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2720
Sreeram Ramachandrane4a05af2014-09-24 09:16:19 -07002721 Object[] argv = new Object[3 + MAX_UID_RANGES_PER_COMMAND];
2722 argv[0] = "permission";
2723 argv[1] = "user";
2724 argv[2] = "clear";
2725 int argc = 3;
2726 // Avoid overly long commands by limiting number of UIDs per command.
2727 for (int i = 0; i < uids.length; ++i) {
2728 argv[argc++] = uids[i];
2729 if (i == uids.length - 1 || argc == argv.length) {
2730 try {
2731 mConnector.execute("network", Arrays.copyOf(argv, argc));
2732 } catch (NativeDaemonConnectorException e) {
2733 throw e.rethrowAsParcelableException();
2734 }
2735 argc = 3;
2736 }
Robert Greenwalt568891d2014-04-04 13:38:00 -07002737 }
2738 }
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04002739
2740 @Override
2741 public void allowProtect(int uid) {
2742 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2743
2744 try {
2745 mConnector.execute("network", "protect", "allow", uid);
2746 } catch (NativeDaemonConnectorException e) {
2747 throw e.rethrowAsParcelableException();
2748 }
2749 }
2750
2751 @Override
2752 public void denyProtect(int uid) {
2753 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2754
2755 try {
2756 mConnector.execute("network", "protect", "deny", uid);
2757 } catch (NativeDaemonConnectorException e) {
2758 throw e.rethrowAsParcelableException();
2759 }
2760 }
2761
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002762 @Override
2763 public void addInterfaceToLocalNetwork(String iface, List<RouteInfo> routes) {
2764 modifyInterfaceInNetwork("add", "local", iface);
2765
2766 for (RouteInfo route : routes) {
2767 if (!route.isDefaultRoute()) {
2768 modifyRoute("add", "local", route);
2769 }
2770 }
2771 }
2772
2773 @Override
2774 public void removeInterfaceFromLocalNetwork(String iface) {
2775 modifyInterfaceInNetwork("remove", "local", iface);
2776 }
San Mehat873f2142010-01-14 10:25:07 -08002777}