blob: 4e64a081b694be454ac3fa49beec3a39076e240b [file] [log] [blame]
San Mehat873f2142010-01-14 10:25:07 -08001/*
2 * Copyright (C) 2007 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
17package com.android.server;
18
Jeff Sharkey4529bb62011-12-14 10:31:54 -080019import static android.Manifest.permission.CONNECTIVITY_INTERNAL;
Jeff Sharkey47eb1022011-08-25 17:48:52 -070020import static android.Manifest.permission.DUMP;
Jeff Sharkeyaf75c332011-11-18 12:41:12 -080021import static android.Manifest.permission.SHUTDOWN;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -070022import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_DOZABLE;
23import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_NAME_DOZABLE;
24import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_NAME_NONE;
Felipe Leme011b98f2016-02-10 17:28:31 -080025import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_NAME_POWERSAVE;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -070026import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_NAME_STANDBY;
27import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_NONE;
Felipe Leme011b98f2016-02-10 17:28:31 -080028import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_POWERSAVE;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -070029import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_STANDBY;
30import static android.net.NetworkPolicyManager.FIREWALL_RULE_DEFAULT;
31import static android.net.NetworkPolicyManager.FIREWALL_TYPE_BLACKLIST;
32import static android.net.NetworkPolicyManager.FIREWALL_TYPE_WHITELIST;
Jeff Sharkeyb5d55e32011-08-10 17:53:27 -070033import static android.net.NetworkStats.SET_DEFAULT;
Dianne Hackbornd0c5b9a2014-02-21 16:19:05 -080034import static android.net.NetworkStats.TAG_ALL;
Jeff Sharkey1b5a2a92011-06-18 18:34:16 -070035import static android.net.NetworkStats.TAG_NONE;
36import static android.net.NetworkStats.UID_ALL;
Jeff Sharkeyae2c1812011-10-04 13:11:40 -070037import static android.net.TrafficStats.UID_TETHERING;
Lorenzo Colitti79751842013-02-28 16:16:03 +090038import static com.android.server.NetworkManagementService.NetdResponseCode.ClatdStatusResult;
Jeff Sharkeyba2896e2011-11-30 18:13:54 -080039import static com.android.server.NetworkManagementService.NetdResponseCode.InterfaceGetCfgResult;
40import static com.android.server.NetworkManagementService.NetdResponseCode.InterfaceListResult;
Jeff Sharkeyba2896e2011-11-30 18:13:54 -080041import static com.android.server.NetworkManagementService.NetdResponseCode.IpFwdStatusResult;
42import static com.android.server.NetworkManagementService.NetdResponseCode.TetherDnsFwdTgtListResult;
43import static com.android.server.NetworkManagementService.NetdResponseCode.TetherInterfaceListResult;
44import static com.android.server.NetworkManagementService.NetdResponseCode.TetherStatusResult;
Jeff Sharkeye4984be2013-09-10 21:03:27 -070045import static com.android.server.NetworkManagementService.NetdResponseCode.TetheringStatsListResult;
Jeff Sharkeyba2896e2011-11-30 18:13:54 -080046import static com.android.server.NetworkManagementService.NetdResponseCode.TtyListResult;
Jeff Sharkeya63ba592011-07-19 23:47:12 -070047import static com.android.server.NetworkManagementSocketTagger.PROP_QTAGUID_ENABLED;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -070048import android.annotation.NonNull;
Jeff Sharkey605eb792014-11-04 13:34:06 -080049import android.app.ActivityManagerNative;
Pierre Imai8e48e672016-04-21 13:30:43 +090050import android.content.ContentResolver;
San Mehat873f2142010-01-14 10:25:07 -080051import android.content.Context;
Dianne Hackborn77b987f2014-02-26 16:20:52 -080052import android.net.ConnectivityManager;
Lorenzo Colitti58967ba2016-02-02 17:21:21 +090053import android.net.INetd;
San Mehat4d02d002010-01-22 16:07:46 -080054import android.net.INetworkManagementEventObserver;
Jeff Sharkeyeedcb952011-05-17 14:55:15 -070055import android.net.InterfaceConfiguration;
Lorenzo Colittic18cbfd2014-06-13 21:21:03 +090056import android.net.IpPrefix;
Robert Greenwalted126402011-01-28 15:34:55 -080057import android.net.LinkAddress;
Lorenzo Colittib57edc52014-08-22 17:10:50 -070058import android.net.Network;
Amith Yamasani15e472352015-04-24 19:06:07 -070059import android.net.NetworkPolicyManager;
Jeff Sharkeyeedcb952011-05-17 14:55:15 -070060import android.net.NetworkStats;
Robert Greenwalted126402011-01-28 15:34:55 -080061import android.net.NetworkUtils;
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -070062import android.net.RouteInfo;
Paul Jensen6bc2c2c2014-05-07 15:27:40 -040063import android.net.UidRange;
Irfan Sheriff9ab518ad2010-03-12 15:48:17 -080064import android.net.wifi.WifiConfiguration;
65import android.net.wifi.WifiConfiguration.KeyMgmt;
Dianne Hackborn91268cf2013-06-13 19:06:50 -070066import android.os.BatteryStats;
Jeff Sharkeyf56e2432012-09-06 17:54:29 -070067import android.os.Binder;
Jeff Sharkeyb24a7852012-05-01 15:19:37 -070068import android.os.Handler;
Dianne Hackborn77b987f2014-02-26 16:20:52 -080069import android.os.INetworkActivityListener;
San Mehat873f2142010-01-14 10:25:07 -080070import android.os.INetworkManagementService;
Dianne Hackborn77b987f2014-02-26 16:20:52 -080071import android.os.PowerManager;
Jeff Sharkeyf56e2432012-09-06 17:54:29 -070072import android.os.Process;
Jeff Sharkey3df273e2011-12-15 15:47:12 -080073import android.os.RemoteCallbackList;
74import android.os.RemoteException;
Jeff Sharkey7a1c3fc2013-06-04 12:29:00 -070075import android.os.ServiceManager;
Lorenzo Colitti4cb42402016-04-24 12:52:00 +090076import android.os.ServiceSpecificException;
Jeff Sharkey605eb792014-11-04 13:34:06 -080077import android.os.StrictMode;
Jeff Sharkey9a13f362011-04-26 16:25:36 -070078import android.os.SystemClock;
Marco Nelissen62dbb222010-02-18 10:56:30 -080079import android.os.SystemProperties;
Pierre Imai8e48e672016-04-21 13:30:43 +090080import android.provider.Settings;
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -070081import android.telephony.DataConnectionRealTimeInfo;
82import android.telephony.PhoneStateListener;
Wink Savillefb40dd42014-06-12 17:02:31 -070083import android.telephony.SubscriptionManager;
Wink Saville67e07892014-06-18 16:43:14 -070084import android.telephony.TelephonyManager;
Irfan Sheriff9ab518ad2010-03-12 15:48:17 -080085import android.util.Log;
Joe Onorato8a9b2202010-02-26 18:56:32 -080086import android.util.Slog;
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -070087import android.util.SparseBooleanArray;
Jeff Sharkey605eb792014-11-04 13:34:06 -080088import android.util.SparseIntArray;
San Mehat873f2142010-01-14 10:25:07 -080089
Jeff Sharkey605eb792014-11-04 13:34:06 -080090import com.android.internal.annotations.GuardedBy;
Jeff Sharkey7a1c3fc2013-06-04 12:29:00 -070091import com.android.internal.app.IBatteryStats;
Jeff Sharkey1059c3c2011-10-04 16:54:49 -070092import com.android.internal.net.NetworkStatsFactory;
Jeff Sharkey605eb792014-11-04 13:34:06 -080093import com.android.internal.util.HexDump;
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -070094import com.android.internal.util.Preconditions;
Jeff Sharkeyba2896e2011-11-30 18:13:54 -080095import com.android.server.NativeDaemonConnector.Command;
Jeff Sharkey56cd6462013-06-07 15:09:15 -070096import com.android.server.NativeDaemonConnector.SensitiveArg;
Jeff Sharkey69ddab42012-08-25 00:05:46 -070097import com.android.server.net.LockdownVpnTracker;
Jeff Sharkeyb24a7852012-05-01 15:19:37 -070098import com.google.android.collect.Maps;
Jeff Sharkey4414cea2011-06-24 17:05:24 -070099
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -0700100import java.io.BufferedReader;
101import java.io.DataInputStream;
San Mehat873f2142010-01-14 10:25:07 -0800102import java.io.File;
Jeff Sharkey47eb1022011-08-25 17:48:52 -0700103import java.io.FileDescriptor;
Jeff Sharkey9a13f362011-04-26 16:25:36 -0700104import java.io.FileInputStream;
Jeff Sharkey9a13f362011-04-26 16:25:36 -0700105import java.io.IOException;
Jeff Sharkey9a13f362011-04-26 16:25:36 -0700106import java.io.InputStreamReader;
Jeff Sharkey47eb1022011-08-25 17:48:52 -0700107import java.io.PrintWriter;
Jeff Sharkeyeedcb952011-05-17 14:55:15 -0700108import java.net.InetAddress;
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -0700109import java.net.InterfaceAddress;
110import java.net.NetworkInterface;
111import java.net.SocketException;
Jeff Sharkeyeedcb952011-05-17 14:55:15 -0700112import java.util.ArrayList;
Paul Jensen6bc2c2c2014-05-07 15:27:40 -0400113import java.util.Arrays;
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700114import java.util.HashMap;
jiaguo1da35f72014-01-09 16:39:59 +0800115import java.util.List;
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700116import java.util.Map;
Jeff Sharkeyeedcb952011-05-17 14:55:15 -0700117import java.util.NoSuchElementException;
118import java.util.StringTokenizer;
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700119import java.util.concurrent.CountDownLatch;
San Mehat873f2142010-01-14 10:25:07 -0800120
121/**
122 * @hide
123 */
Jeff Sharkey8e9992a2011-08-23 18:37:23 -0700124public class NetworkManagementService extends INetworkManagementService.Stub
125 implements Watchdog.Monitor {
Amith Yamasani15e472352015-04-24 19:06:07 -0700126 private static final String TAG = "NetworkManagement";
127 private static final boolean DBG = Log.isLoggable(TAG, Log.DEBUG);
Kenny Root305bcbf2010-09-03 07:56:38 -0700128 private static final String NETD_TAG = "NetdConnector";
Lorenzo Colitti58967ba2016-02-02 17:21:21 +0900129 private static final String NETD_SERVICE_NAME = "netd";
Kenny Root305bcbf2010-09-03 07:56:38 -0700130
Paul Jensen6bc2c2c2014-05-07 15:27:40 -0400131 private static final int MAX_UID_RANGES_PER_COMMAND = 10;
132
Jeff Sharkey8e9992a2011-08-23 18:37:23 -0700133 /**
134 * Name representing {@link #setGlobalAlert(long)} limit when delivered to
135 * {@link INetworkManagementEventObserver#limitReached(String, String)}.
136 */
137 public static final String LIMIT_GLOBAL_ALERT = "globalAlert";
138
Paul Jensen487ffe72015-07-24 15:57:11 -0400139 /**
140 * String to pass to netd to indicate that a network is only accessible
141 * to apps that have the CHANGE_NETWORK_STATE permission.
142 */
143 public static final String PERMISSION_NETWORK = "NETWORK";
144
145 /**
146 * String to pass to netd to indicate that a network is only
147 * accessible to system apps and those with the CONNECTIVITY_INTERNAL
148 * permission.
149 */
150 public static final String PERMISSION_SYSTEM = "SYSTEM";
151
San Mehat873f2142010-01-14 10:25:07 -0800152 class NetdResponseCode {
Sreeram Ramachandran03666c72014-07-19 23:21:46 -0700153 /* Keep in sync with system/netd/server/ResponseCode.h */
San Mehat873f2142010-01-14 10:25:07 -0800154 public static final int InterfaceListResult = 110;
155 public static final int TetherInterfaceListResult = 111;
156 public static final int TetherDnsFwdTgtListResult = 112;
San Mehat72759df2010-01-19 13:50:37 -0800157 public static final int TtyListResult = 113;
Jeff Sharkeye4984be2013-09-10 21:03:27 -0700158 public static final int TetheringStatsListResult = 114;
San Mehat873f2142010-01-14 10:25:07 -0800159
160 public static final int TetherStatusResult = 210;
161 public static final int IpFwdStatusResult = 211;
San Mehated4fc8a2010-01-22 12:28:36 -0800162 public static final int InterfaceGetCfgResult = 213;
Robert Greenwalte3253922010-02-18 09:23:25 -0800163 public static final int SoftapStatusResult = 214;
San Mehat91cac642010-03-31 14:31:36 -0700164 public static final int InterfaceRxCounterResult = 216;
165 public static final int InterfaceTxCounterResult = 217;
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -0700166 public static final int QuotaCounterResult = 220;
167 public static final int TetheringStatsResult = 221;
Selim Gurun84c00c62012-02-27 15:42:38 -0800168 public static final int DnsProxyQueryResult = 222;
Lorenzo Colitti79751842013-02-28 16:16:03 +0900169 public static final int ClatdStatusResult = 223;
Robert Greenwalte3253922010-02-18 09:23:25 -0800170
171 public static final int InterfaceChange = 600;
JP Abgrall12b933d2011-07-14 18:09:22 -0700172 public static final int BandwidthControl = 601;
Haoyu Bai6b7358d2012-07-17 16:36:50 -0700173 public static final int InterfaceClassActivity = 613;
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900174 public static final int InterfaceAddressChange = 614;
Lorenzo Colitti5ae4a532013-10-31 11:59:46 +0900175 public static final int InterfaceDnsServerInfo = 615;
Lorenzo Colittic18cbfd2014-06-13 21:21:03 +0900176 public static final int RouteChange = 616;
Jeff Sharkey605eb792014-11-04 13:34:06 -0800177 public static final int StrictCleartext = 617;
San Mehat873f2142010-01-14 10:25:07 -0800178 }
179
Pierre Imai8e48e672016-04-21 13:30:43 +0900180 /* Defaults for resolver parameters. */
181 public static final int DNS_RESOLVER_DEFAULT_SAMPLE_VALIDITY_SECONDS = 1800;
182 public static final int DNS_RESOLVER_DEFAULT_SUCCESS_THRESHOLD_PERCENT = 25;
183 public static final int DNS_RESOLVER_DEFAULT_MIN_SAMPLES = 8;
184 public static final int DNS_RESOLVER_DEFAULT_MAX_SAMPLES = 64;
185
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -0700186 /**
187 * String indicating a softap command.
188 */
189 static final String SOFT_AP_COMMAND = "softap";
190
191 /**
192 * String passed back to netd connector indicating softap command success.
193 */
194 static final String SOFT_AP_COMMAND_SUCCESS = "Ok";
195
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700196 static final int DAEMON_MSG_MOBILE_CONN_REAL_TIME_INFO = 1;
197
San Mehat873f2142010-01-14 10:25:07 -0800198 /**
199 * Binder context for this service
200 */
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700201 private final Context mContext;
San Mehat873f2142010-01-14 10:25:07 -0800202
203 /**
204 * connector object for communicating with netd
205 */
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700206 private final NativeDaemonConnector mConnector;
San Mehat873f2142010-01-14 10:25:07 -0800207
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700208 private final Handler mFgHandler;
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700209 private final Handler mDaemonHandler;
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700210
Lorenzo Colitti58967ba2016-02-02 17:21:21 +0900211 private INetd mNetdService;
212
Dianne Hackborne13c4c02014-02-11 17:18:35 -0800213 private IBatteryStats mBatteryStats;
214
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700215 private final Thread mThread;
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700216 private CountDownLatch mConnectedSignal = new CountDownLatch(1);
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700217
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800218 private final RemoteCallbackList<INetworkManagementEventObserver> mObservers =
219 new RemoteCallbackList<INetworkManagementEventObserver>();
San Mehat4d02d002010-01-22 16:07:46 -0800220
Jeff Sharkey1059c3c2011-10-04 16:54:49 -0700221 private final NetworkStatsFactory mStatsFactory = new NetworkStatsFactory();
222
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -0700223 private Object mQuotaLock = new Object();
Jeff Sharkey605eb792014-11-04 13:34:06 -0800224
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -0700225 /** Set of interfaces with active quotas. */
Jeff Sharkey605eb792014-11-04 13:34:06 -0800226 @GuardedBy("mQuotaLock")
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700227 private HashMap<String, Long> mActiveQuotas = Maps.newHashMap();
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -0700228 /** Set of interfaces with active alerts. */
Jeff Sharkey605eb792014-11-04 13:34:06 -0800229 @GuardedBy("mQuotaLock")
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700230 private HashMap<String, Long> mActiveAlerts = Maps.newHashMap();
Felipe Leme65be3022016-03-22 14:53:13 -0700231 /** Set of UIDs blacklisted on metered networks. */
Jeff Sharkey605eb792014-11-04 13:34:06 -0800232 @GuardedBy("mQuotaLock")
Felipe Leme65be3022016-03-22 14:53:13 -0700233 private SparseBooleanArray mUidRejectOnMetered = new SparseBooleanArray();
234 /** Set of UIDs whitelisted on metered networks. */
235 @GuardedBy("mQuotaLock")
236 private SparseBooleanArray mUidAllowOnMetered = new SparseBooleanArray();
Jeff Sharkey605eb792014-11-04 13:34:06 -0800237 /** Set of UIDs with cleartext penalties. */
238 @GuardedBy("mQuotaLock")
239 private SparseIntArray mUidCleartextPolicy = new SparseIntArray();
Amith Yamasani15e472352015-04-24 19:06:07 -0700240 /** Set of UIDs that are to be blocked/allowed by firewall controller. */
241 @GuardedBy("mQuotaLock")
242 private SparseIntArray mUidFirewallRules = new SparseIntArray();
Xiaohui Chenb41c9f72015-06-17 15:55:37 -0700243 /**
244 * Set of UIDs that are to be blocked/allowed by firewall controller. This set of Ids matches
245 * to application idles.
246 */
247 @GuardedBy("mQuotaLock")
248 private SparseIntArray mUidFirewallStandbyRules = new SparseIntArray();
249 /**
250 * Set of UIDs that are to be blocked/allowed by firewall controller. This set of Ids matches
251 * to device idles.
252 */
253 @GuardedBy("mQuotaLock")
254 private SparseIntArray mUidFirewallDozableRules = new SparseIntArray();
Felipe Leme011b98f2016-02-10 17:28:31 -0800255 /**
256 * Set of UIDs that are to be blocked/allowed by firewall controller. This set of Ids matches
257 * to device on power-save mode.
258 */
259 @GuardedBy("mQuotaLock")
260 private SparseIntArray mUidFirewallPowerSaveRules = new SparseIntArray();
Xiaohui Chen8dca36d2015-06-19 12:44:59 -0700261 /** Set of states for the child firewall chains. True if the chain is active. */
262 @GuardedBy("mQuotaLock")
263 final SparseBooleanArray mFirewallChainStates = new SparseBooleanArray();
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -0700264
Felipe Leme65be3022016-03-22 14:53:13 -0700265 @GuardedBy("mQuotaLock")
266 private boolean mDataSaverMode;
267
Haoyu Bai04124232012-06-28 15:26:19 -0700268 private Object mIdleTimerLock = new Object();
269 /** Set of interfaces with active idle timers. */
270 private static class IdleTimerParams {
271 public final int timeout;
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800272 public final int type;
Haoyu Bai04124232012-06-28 15:26:19 -0700273 public int networkCount;
274
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800275 IdleTimerParams(int timeout, int type) {
Haoyu Bai04124232012-06-28 15:26:19 -0700276 this.timeout = timeout;
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800277 this.type = type;
Haoyu Bai04124232012-06-28 15:26:19 -0700278 this.networkCount = 1;
279 }
280 }
281 private HashMap<String, IdleTimerParams> mActiveIdleTimers = Maps.newHashMap();
282
Jeff Sharkeyfa23c5a2011-08-09 21:44:24 -0700283 private volatile boolean mBandwidthControlEnabled;
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -0700284 private volatile boolean mFirewallEnabled;
Jeff Sharkey605eb792014-11-04 13:34:06 -0800285 private volatile boolean mStrictEnabled;
Jeff Sharkey350083e2011-06-29 10:45:16 -0700286
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700287 private boolean mMobileActivityFromRadio = false;
288 private int mLastPowerStateFromRadio = DataConnectionRealTimeInfo.DC_POWER_STATE_LOW;
Adam Lesinskie08af192015-03-25 16:42:59 -0700289 private int mLastPowerStateFromWifi = DataConnectionRealTimeInfo.DC_POWER_STATE_LOW;
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700290
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800291 private final RemoteCallbackList<INetworkActivityListener> mNetworkActivityListeners =
292 new RemoteCallbackList<INetworkActivityListener>();
293 private boolean mNetworkActive;
294
San Mehat873f2142010-01-14 10:25:07 -0800295 /**
296 * Constructs a new NetworkManagementService instance
297 *
298 * @param context Binder context for this service
299 */
Lorenzo Colitti7421a012013-08-20 22:51:24 +0900300 private NetworkManagementService(Context context, String socket) {
San Mehat873f2142010-01-14 10:25:07 -0800301 mContext = context;
San Mehat4d02d002010-01-22 16:07:46 -0800302
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700303 // make sure this is on the same looper as our NativeDaemonConnector for sync purposes
304 mFgHandler = new Handler(FgThread.get().getLooper());
305
Dianne Hackborn4590e522014-03-24 13:36:46 -0700306 // Don't need this wake lock, since we now have a time stamp for when
307 // the network actually went inactive. (It might be nice to still do this,
308 // but I don't want to do it through the power manager because that pollutes the
309 // battery stats history with pointless noise.)
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700310 //PowerManager pm = (PowerManager)context.getSystemService(Context.POWER_SERVICE);
Dianne Hackborn4590e522014-03-24 13:36:46 -0700311 PowerManager.WakeLock wl = null; //pm.newWakeLock(PowerManager.PARTIAL_WAKE_LOCK, NETD_TAG);
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800312
San Mehat873f2142010-01-14 10:25:07 -0800313 mConnector = new NativeDaemonConnector(
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700314 new NetdCallbackReceiver(), socket, 10, NETD_TAG, 160, wl,
315 FgThread.get().getLooper());
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700316 mThread = new Thread(mConnector, NETD_TAG);
Jeff Sharkeyfa23c5a2011-08-09 21:44:24 -0700317
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700318 mDaemonHandler = new Handler(FgThread.get().getLooper());
Wink Saville67e07892014-06-18 16:43:14 -0700319
Jeff Sharkeyfa23c5a2011-08-09 21:44:24 -0700320 // Add ourself to the Watchdog monitors.
321 Watchdog.getInstance().addMonitor(this);
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700322 }
323
Felipe Leme03e689d2016-03-02 16:17:38 -0800324 static NetworkManagementService create(Context context, String socket)
325 throws InterruptedException {
Lorenzo Colitti7421a012013-08-20 22:51:24 +0900326 final NetworkManagementService service = new NetworkManagementService(context, socket);
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700327 final CountDownLatch connectedSignal = service.mConnectedSignal;
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700328 if (DBG) Slog.d(TAG, "Creating NetworkManagementService");
329 service.mThread.start();
330 if (DBG) Slog.d(TAG, "Awaiting socket connection");
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700331 connectedSignal.await();
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700332 if (DBG) Slog.d(TAG, "Connected");
333 return service;
San Mehat873f2142010-01-14 10:25:07 -0800334 }
335
Lorenzo Colitti7421a012013-08-20 22:51:24 +0900336 public static NetworkManagementService create(Context context) throws InterruptedException {
Lorenzo Colitti58967ba2016-02-02 17:21:21 +0900337 return create(context, NETD_SERVICE_NAME);
Lorenzo Colitti7421a012013-08-20 22:51:24 +0900338 }
339
Jeff Sharkey350083e2011-06-29 10:45:16 -0700340 public void systemReady() {
Felipe Leme03e689d2016-03-02 16:17:38 -0800341 if (DBG) {
342 final long start = System.currentTimeMillis();
343 prepareNativeDaemon();
344 final long delta = System.currentTimeMillis() - start;
345 Slog.d(TAG, "Prepared in " + delta + "ms");
346 return;
347 } else {
348 prepareNativeDaemon();
349 }
Jeff Sharkey350083e2011-06-29 10:45:16 -0700350 }
351
Dianne Hackborne13c4c02014-02-11 17:18:35 -0800352 private IBatteryStats getBatteryStats() {
353 synchronized (this) {
354 if (mBatteryStats != null) {
355 return mBatteryStats;
356 }
357 mBatteryStats = IBatteryStats.Stub.asInterface(ServiceManager.getService(
358 BatteryStats.SERVICE_NAME));
359 return mBatteryStats;
360 }
361 }
362
Jeff Sharkeyaf75c332011-11-18 12:41:12 -0800363 @Override
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800364 public void registerObserver(INetworkManagementEventObserver observer) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -0800365 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800366 mObservers.register(observer);
San Mehat4d02d002010-01-22 16:07:46 -0800367 }
368
Jeff Sharkeyaf75c332011-11-18 12:41:12 -0800369 @Override
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800370 public void unregisterObserver(INetworkManagementEventObserver observer) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -0800371 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800372 mObservers.unregister(observer);
San Mehat4d02d002010-01-22 16:07:46 -0800373 }
374
375 /**
Mike J. Chen6143f5f2011-06-23 15:17:51 -0700376 * Notify our observers of an interface status change
San Mehat4d02d002010-01-22 16:07:46 -0800377 */
Mike J. Chen6143f5f2011-06-23 15:17:51 -0700378 private void notifyInterfaceStatusChanged(String iface, boolean up) {
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800379 final int length = mObservers.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700380 try {
381 for (int i = 0; i < length; i++) {
382 try {
383 mObservers.getBroadcastItem(i).interfaceStatusChanged(iface, up);
Felipe Leme03e689d2016-03-02 16:17:38 -0800384 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700385 }
Mike J. Chen6143f5f2011-06-23 15:17:51 -0700386 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700387 } finally {
388 mObservers.finishBroadcast();
Mike J. Chen6143f5f2011-06-23 15:17:51 -0700389 }
390 }
391
392 /**
Mike J. Chenf59c7d02011-06-23 15:33:15 -0700393 * Notify our observers of an interface link state change
Mike J. Chen6143f5f2011-06-23 15:17:51 -0700394 * (typically, an Ethernet cable has been plugged-in or unplugged).
395 */
396 private void notifyInterfaceLinkStateChanged(String iface, boolean up) {
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800397 final int length = mObservers.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700398 try {
399 for (int i = 0; i < length; i++) {
400 try {
401 mObservers.getBroadcastItem(i).interfaceLinkStateChanged(iface, up);
Felipe Leme03e689d2016-03-02 16:17:38 -0800402 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700403 }
San Mehat4d02d002010-01-22 16:07:46 -0800404 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700405 } finally {
406 mObservers.finishBroadcast();
San Mehat4d02d002010-01-22 16:07:46 -0800407 }
408 }
409
410 /**
411 * Notify our observers of an interface addition.
412 */
413 private void notifyInterfaceAdded(String iface) {
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800414 final int length = mObservers.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700415 try {
416 for (int i = 0; i < length; i++) {
417 try {
418 mObservers.getBroadcastItem(i).interfaceAdded(iface);
Felipe Leme03e689d2016-03-02 16:17:38 -0800419 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700420 }
San Mehat4d02d002010-01-22 16:07:46 -0800421 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700422 } finally {
423 mObservers.finishBroadcast();
San Mehat4d02d002010-01-22 16:07:46 -0800424 }
425 }
426
427 /**
428 * Notify our observers of an interface removal.
429 */
430 private void notifyInterfaceRemoved(String iface) {
Jeff Sharkey89b8a212011-10-11 11:58:11 -0700431 // netd already clears out quota and alerts for removed ifaces; update
432 // our sanity-checking state.
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700433 mActiveAlerts.remove(iface);
434 mActiveQuotas.remove(iface);
Jeff Sharkey89b8a212011-10-11 11:58:11 -0700435
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800436 final int length = mObservers.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700437 try {
438 for (int i = 0; i < length; i++) {
439 try {
440 mObservers.getBroadcastItem(i).interfaceRemoved(iface);
Felipe Leme03e689d2016-03-02 16:17:38 -0800441 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700442 }
San Mehat4d02d002010-01-22 16:07:46 -0800443 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700444 } finally {
445 mObservers.finishBroadcast();
San Mehat4d02d002010-01-22 16:07:46 -0800446 }
447 }
448
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700449 /**
JP Abgrall12b933d2011-07-14 18:09:22 -0700450 * Notify our observers of a limit reached.
451 */
452 private void notifyLimitReached(String limitName, String iface) {
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800453 final int length = mObservers.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700454 try {
455 for (int i = 0; i < length; i++) {
456 try {
457 mObservers.getBroadcastItem(i).limitReached(limitName, iface);
Felipe Leme03e689d2016-03-02 16:17:38 -0800458 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700459 }
JP Abgrall12b933d2011-07-14 18:09:22 -0700460 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700461 } finally {
462 mObservers.finishBroadcast();
JP Abgrall12b933d2011-07-14 18:09:22 -0700463 }
464 }
465
466 /**
Haoyu Baidb3c8672012-06-20 14:29:57 -0700467 * Notify our observers of a change in the data activity state of the interface
468 */
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700469 private void notifyInterfaceClassActivity(int type, int powerState, long tsNanos,
470 boolean fromRadio) {
471 final boolean isMobile = ConnectivityManager.isNetworkTypeMobile(type);
472 if (isMobile) {
473 if (!fromRadio) {
474 if (mMobileActivityFromRadio) {
475 // If this call is not coming from a report from the radio itself, but we
476 // have previously received reports from the radio, then we will take the
477 // power state to just be whatever the radio last reported.
478 powerState = mLastPowerStateFromRadio;
479 }
480 } else {
481 mMobileActivityFromRadio = true;
482 }
483 if (mLastPowerStateFromRadio != powerState) {
484 mLastPowerStateFromRadio = powerState;
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700485 try {
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700486 getBatteryStats().noteMobileRadioPowerState(powerState, tsNanos);
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700487 } catch (RemoteException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700488 }
Haoyu Baidb3c8672012-06-20 14:29:57 -0700489 }
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700490 }
491
Adam Lesinskie08af192015-03-25 16:42:59 -0700492 if (ConnectivityManager.isNetworkTypeWifi(type)) {
493 if (mLastPowerStateFromWifi != powerState) {
494 mLastPowerStateFromWifi = powerState;
495 try {
496 getBatteryStats().noteWifiRadioPowerState(powerState, tsNanos);
497 } catch (RemoteException e) {
498 }
499 }
500 }
501
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700502 boolean isActive = powerState == DataConnectionRealTimeInfo.DC_POWER_STATE_MEDIUM
503 || powerState == DataConnectionRealTimeInfo.DC_POWER_STATE_HIGH;
504
505 if (!isMobile || fromRadio || !mMobileActivityFromRadio) {
506 // Report the change in data activity. We don't do this if this is a change
507 // on the mobile network, that is not coming from the radio itself, and we
508 // have previously seen change reports from the radio. In that case only
509 // the radio is the authority for the current state.
510 final int length = mObservers.beginBroadcast();
511 try {
512 for (int i = 0; i < length; i++) {
513 try {
514 mObservers.getBroadcastItem(i).interfaceClassDataActivityChanged(
515 Integer.toString(type), isActive, tsNanos);
Felipe Leme03e689d2016-03-02 16:17:38 -0800516 } catch (RemoteException | RuntimeException e) {
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700517 }
518 }
519 } finally {
520 mObservers.finishBroadcast();
521 }
Haoyu Baidb3c8672012-06-20 14:29:57 -0700522 }
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800523
524 boolean report = false;
525 synchronized (mIdleTimerLock) {
526 if (mActiveIdleTimers.isEmpty()) {
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700527 // If there are no idle timers, we are not monitoring activity, so we
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800528 // are always considered active.
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700529 isActive = true;
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800530 }
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700531 if (mNetworkActive != isActive) {
532 mNetworkActive = isActive;
533 report = isActive;
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800534 }
535 }
536 if (report) {
537 reportNetworkActive();
538 }
Haoyu Baidb3c8672012-06-20 14:29:57 -0700539 }
540
Lorenzo Colitti9eb844e2016-03-23 23:22:49 +0900541 // Sync the state of the given chain with the native daemon.
542 private void syncFirewallChainLocked(int chain, SparseIntArray uidFirewallRules, String name) {
543 int size = uidFirewallRules.size();
544 if (size > 0) {
545 // Make a copy of the current rules, and then clear them. This is because
546 // setFirewallUidRuleInternal only pushes down rules to the native daemon if they are
547 // different from the current rules stored in the mUidFirewall*Rules array for the
548 // specified chain. If we don't clear the rules, setFirewallUidRuleInternal will do
549 // nothing.
550 final SparseIntArray rules = uidFirewallRules.clone();
551 uidFirewallRules.clear();
552
553 // Now push the rules. setFirewallUidRuleInternal will push each of these down to the
554 // native daemon, and also add them to the mUidFirewall*Rules array for the specified
555 // chain.
556 if (DBG) Slog.d(TAG, "Pushing " + size + " active firewall " + name + "UID rules");
557 for (int i = 0; i < rules.size(); i++) {
558 setFirewallUidRuleInternal(chain, rules.keyAt(i), rules.valueAt(i));
559 }
560 }
561 }
562
Haoyu Baidb3c8672012-06-20 14:29:57 -0700563 /**
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700564 * Prepare native daemon once connected, enabling modules and pushing any
565 * existing in-memory rules.
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700566 */
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700567 private void prepareNativeDaemon() {
Lorenzo Colitti58967ba2016-02-02 17:21:21 +0900568 boolean nativeServiceAvailable = false;
569 try {
570 mNetdService = INetd.Stub.asInterface(ServiceManager.getService(NETD_SERVICE_NAME));
571 nativeServiceAvailable = mNetdService.isAlive();
572 } catch (RemoteException e) {}
573 if (!nativeServiceAvailable) {
574 Slog.wtf(TAG, "Can't connect to NativeNetdService " + NETD_SERVICE_NAME);
575 }
576
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700577 mBandwidthControlEnabled = false;
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700578
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700579 // only enable bandwidth control when support exists
580 final boolean hasKernelSupport = new File("/proc/net/xt_qtaguid/ctrl").exists();
581 if (hasKernelSupport) {
582 Slog.d(TAG, "enabling bandwidth control");
583 try {
584 mConnector.execute("bandwidth", "enable");
585 mBandwidthControlEnabled = true;
586 } catch (NativeDaemonConnectorException e) {
587 Log.wtf(TAG, "problem enabling bandwidth controls", e);
588 }
589 } else {
Felipe Leme03e689d2016-03-02 16:17:38 -0800590 Slog.i(TAG, "not enabling bandwidth control");
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700591 }
592
593 SystemProperties.set(PROP_QTAGUID_ENABLED, mBandwidthControlEnabled ? "1" : "0");
594
Jeff Sharkey7a1c3fc2013-06-04 12:29:00 -0700595 if (mBandwidthControlEnabled) {
596 try {
Dianne Hackborne13c4c02014-02-11 17:18:35 -0800597 getBatteryStats().noteNetworkStatsEnabled();
Jeff Sharkey7a1c3fc2013-06-04 12:29:00 -0700598 } catch (RemoteException e) {
599 }
600 }
601
Jeff Sharkey605eb792014-11-04 13:34:06 -0800602 try {
603 mConnector.execute("strict", "enable");
604 mStrictEnabled = true;
605 } catch (NativeDaemonConnectorException e) {
606 Log.wtf(TAG, "Failed strict enable", e);
607 }
608
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700609 // push any existing quota or UID rules
610 synchronized (mQuotaLock) {
Felipe Leme65be3022016-03-22 14:53:13 -0700611
612 setDataSaverModeEnabled(mDataSaverMode);
613
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700614 int size = mActiveQuotas.size();
615 if (size > 0) {
Felipe Leme03e689d2016-03-02 16:17:38 -0800616 if (DBG) Slog.d(TAG, "Pushing " + size + " active quota rules");
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700617 final HashMap<String, Long> activeQuotas = mActiveQuotas;
618 mActiveQuotas = Maps.newHashMap();
619 for (Map.Entry<String, Long> entry : activeQuotas.entrySet()) {
620 setInterfaceQuota(entry.getKey(), entry.getValue());
621 }
622 }
623
624 size = mActiveAlerts.size();
625 if (size > 0) {
Felipe Leme03e689d2016-03-02 16:17:38 -0800626 if (DBG) Slog.d(TAG, "Pushing " + size + " active alert rules");
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700627 final HashMap<String, Long> activeAlerts = mActiveAlerts;
628 mActiveAlerts = Maps.newHashMap();
629 for (Map.Entry<String, Long> entry : activeAlerts.entrySet()) {
630 setInterfaceAlert(entry.getKey(), entry.getValue());
631 }
632 }
633
Felipe Leme65be3022016-03-22 14:53:13 -0700634 size = mUidRejectOnMetered.size();
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700635 if (size > 0) {
Felipe Leme65be3022016-03-22 14:53:13 -0700636 if (DBG) Slog.d(TAG, "Pushing " + size + " UIDs to metered whitelist rules");
637 final SparseBooleanArray uidRejectOnQuota = mUidRejectOnMetered;
638 mUidRejectOnMetered = new SparseBooleanArray();
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700639 for (int i = 0; i < uidRejectOnQuota.size(); i++) {
Felipe Leme65be3022016-03-22 14:53:13 -0700640 setUidMeteredNetworkBlacklist(uidRejectOnQuota.keyAt(i),
641 uidRejectOnQuota.valueAt(i));
642 }
643 }
644
645 size = mUidAllowOnMetered.size();
646 if (size > 0) {
647 if (DBG) Slog.d(TAG, "Pushing " + size + " UIDs to metered blacklist rules");
648 final SparseBooleanArray uidAcceptOnQuota = mUidAllowOnMetered;
649 mUidAllowOnMetered = new SparseBooleanArray();
650 for (int i = 0; i < uidAcceptOnQuota.size(); i++) {
651 setUidMeteredNetworkWhitelist(uidAcceptOnQuota.keyAt(i),
652 uidAcceptOnQuota.valueAt(i));
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700653 }
654 }
Jeff Sharkey605eb792014-11-04 13:34:06 -0800655
656 size = mUidCleartextPolicy.size();
657 if (size > 0) {
Felipe Leme03e689d2016-03-02 16:17:38 -0800658 if (DBG) Slog.d(TAG, "Pushing " + size + " active UID cleartext policies");
Jeff Sharkey605eb792014-11-04 13:34:06 -0800659 final SparseIntArray local = mUidCleartextPolicy;
660 mUidCleartextPolicy = new SparseIntArray();
661 for (int i = 0; i < local.size(); i++) {
662 setUidCleartextNetworkPolicy(local.keyAt(i), local.valueAt(i));
663 }
664 }
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -0700665
Amith Yamasani15e472352015-04-24 19:06:07 -0700666 setFirewallEnabled(mFirewallEnabled || LockdownVpnTracker.isEnabled());
667
Lorenzo Colitti9eb844e2016-03-23 23:22:49 +0900668 syncFirewallChainLocked(FIREWALL_CHAIN_NONE, mUidFirewallRules, "");
669 syncFirewallChainLocked(FIREWALL_CHAIN_STANDBY, mUidFirewallStandbyRules, "standby ");
670 syncFirewallChainLocked(FIREWALL_CHAIN_DOZABLE, mUidFirewallDozableRules, "dozable ");
671 syncFirewallChainLocked(FIREWALL_CHAIN_POWERSAVE, mUidFirewallPowerSaveRules,
672 "powersave ");
Xiaohui Chenb41c9f72015-06-17 15:55:37 -0700673
Xiaohui Chen8dca36d2015-06-19 12:44:59 -0700674 if (mFirewallChainStates.get(FIREWALL_CHAIN_STANDBY)) {
Xiaohui Chenb41c9f72015-06-17 15:55:37 -0700675 setFirewallChainEnabled(FIREWALL_CHAIN_STANDBY, true);
676 }
Xiaohui Chen8dca36d2015-06-19 12:44:59 -0700677 if (mFirewallChainStates.get(FIREWALL_CHAIN_DOZABLE)) {
Xiaohui Chenb41c9f72015-06-17 15:55:37 -0700678 setFirewallChainEnabled(FIREWALL_CHAIN_DOZABLE, true);
679 }
Felipe Leme011b98f2016-02-10 17:28:31 -0800680 if (mFirewallChainStates.get(FIREWALL_CHAIN_POWERSAVE)) {
681 setFirewallChainEnabled(FIREWALL_CHAIN_POWERSAVE, true);
682 }
Amith Yamasani15e472352015-04-24 19:06:07 -0700683 }
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700684 }
San Mehat4d02d002010-01-22 16:07:46 -0800685
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900686 /**
687 * Notify our observers of a new or updated interface address.
688 */
Lorenzo Colitti64483942013-11-15 18:43:52 +0900689 private void notifyAddressUpdated(String iface, LinkAddress address) {
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900690 final int length = mObservers.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700691 try {
692 for (int i = 0; i < length; i++) {
693 try {
694 mObservers.getBroadcastItem(i).addressUpdated(iface, address);
Felipe Leme03e689d2016-03-02 16:17:38 -0800695 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700696 }
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900697 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700698 } finally {
699 mObservers.finishBroadcast();
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900700 }
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900701 }
702
703 /**
704 * Notify our observers of a deleted interface address.
705 */
Lorenzo Colitti64483942013-11-15 18:43:52 +0900706 private void notifyAddressRemoved(String iface, LinkAddress address) {
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900707 final int length = mObservers.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700708 try {
709 for (int i = 0; i < length; i++) {
710 try {
711 mObservers.getBroadcastItem(i).addressRemoved(iface, address);
Felipe Leme03e689d2016-03-02 16:17:38 -0800712 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700713 }
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900714 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700715 } finally {
716 mObservers.finishBroadcast();
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900717 }
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900718 }
719
Lorenzo Colitti5ae4a532013-10-31 11:59:46 +0900720 /**
721 * Notify our observers of DNS server information received.
722 */
723 private void notifyInterfaceDnsServerInfo(String iface, long lifetime, String[] addresses) {
724 final int length = mObservers.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700725 try {
726 for (int i = 0; i < length; i++) {
727 try {
728 mObservers.getBroadcastItem(i).interfaceDnsServerInfo(iface, lifetime,
729 addresses);
Felipe Leme03e689d2016-03-02 16:17:38 -0800730 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700731 }
Lorenzo Colitti5ae4a532013-10-31 11:59:46 +0900732 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700733 } finally {
734 mObservers.finishBroadcast();
Lorenzo Colitti5ae4a532013-10-31 11:59:46 +0900735 }
Lorenzo Colitti5ae4a532013-10-31 11:59:46 +0900736 }
737
Lorenzo Colittic18cbfd2014-06-13 21:21:03 +0900738 /**
739 * Notify our observers of a route change.
740 */
741 private void notifyRouteChange(String action, RouteInfo route) {
742 final int length = mObservers.beginBroadcast();
743 try {
744 for (int i = 0; i < length; i++) {
745 try {
746 if (action.equals("updated")) {
747 mObservers.getBroadcastItem(i).routeUpdated(route);
748 } else {
749 mObservers.getBroadcastItem(i).routeRemoved(route);
750 }
Felipe Leme03e689d2016-03-02 16:17:38 -0800751 } catch (RemoteException | RuntimeException e) {
Lorenzo Colittic18cbfd2014-06-13 21:21:03 +0900752 }
753 }
754 } finally {
755 mObservers.finishBroadcast();
756 }
757 }
758
San Mehat873f2142010-01-14 10:25:07 -0800759 //
760 // Netd Callback handling
761 //
762
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700763 private class NetdCallbackReceiver implements INativeDaemonConnectorCallbacks {
764 @Override
San Mehat873f2142010-01-14 10:25:07 -0800765 public void onDaemonConnected() {
Felipe Leme65be3022016-03-22 14:53:13 -0700766 Slog.i(TAG, "onDaemonConnected()");
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700767 // event is dispatched from internal NDC thread, so we prepare the
768 // daemon back on main thread.
769 if (mConnectedSignal != null) {
770 mConnectedSignal.countDown();
771 mConnectedSignal = null;
772 } else {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700773 mFgHandler.post(new Runnable() {
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700774 @Override
775 public void run() {
776 prepareNativeDaemon();
777 }
778 });
779 }
San Mehat873f2142010-01-14 10:25:07 -0800780 }
Jeff Sharkeyfa23c5a2011-08-09 21:44:24 -0700781
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700782 @Override
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800783 public boolean onCheckHoldWakeLock(int code) {
784 return code == NetdResponseCode.InterfaceClassActivity;
785 }
786
787 @Override
San Mehat873f2142010-01-14 10:25:07 -0800788 public boolean onEvent(int code, String raw, String[] cooked) {
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900789 String errorMessage = String.format("Invalid event from daemon (%s)", raw);
JP Abgrall12b933d2011-07-14 18:09:22 -0700790 switch (code) {
791 case NetdResponseCode.InterfaceChange:
792 /*
793 * a network interface change occured
794 * Format: "NNN Iface added <name>"
795 * "NNN Iface removed <name>"
796 * "NNN Iface changed <name> <up/down>"
797 * "NNN Iface linkstatus <name> <up/down>"
798 */
799 if (cooked.length < 4 || !cooked[1].equals("Iface")) {
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900800 throw new IllegalStateException(errorMessage);
JP Abgrall12b933d2011-07-14 18:09:22 -0700801 }
802 if (cooked[2].equals("added")) {
803 notifyInterfaceAdded(cooked[3]);
804 return true;
805 } else if (cooked[2].equals("removed")) {
806 notifyInterfaceRemoved(cooked[3]);
807 return true;
808 } else if (cooked[2].equals("changed") && cooked.length == 5) {
809 notifyInterfaceStatusChanged(cooked[3], cooked[4].equals("up"));
810 return true;
811 } else if (cooked[2].equals("linkstate") && cooked.length == 5) {
812 notifyInterfaceLinkStateChanged(cooked[3], cooked[4].equals("up"));
813 return true;
814 }
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900815 throw new IllegalStateException(errorMessage);
JP Abgrall12b933d2011-07-14 18:09:22 -0700816 // break;
817 case NetdResponseCode.BandwidthControl:
818 /*
819 * Bandwidth control needs some attention
820 * Format: "NNN limit alert <alertName> <ifaceName>"
821 */
822 if (cooked.length < 5 || !cooked[1].equals("limit")) {
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900823 throw new IllegalStateException(errorMessage);
JP Abgrall12b933d2011-07-14 18:09:22 -0700824 }
825 if (cooked[2].equals("alert")) {
826 notifyLimitReached(cooked[3], cooked[4]);
827 return true;
828 }
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900829 throw new IllegalStateException(errorMessage);
JP Abgrall12b933d2011-07-14 18:09:22 -0700830 // break;
Haoyu Baidb3c8672012-06-20 14:29:57 -0700831 case NetdResponseCode.InterfaceClassActivity:
832 /*
833 * An network interface class state changed (active/idle)
834 * Format: "NNN IfaceClass <active/idle> <label>"
835 */
836 if (cooked.length < 4 || !cooked[1].equals("IfaceClass")) {
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900837 throw new IllegalStateException(errorMessage);
Haoyu Baidb3c8672012-06-20 14:29:57 -0700838 }
Ashish Sharma0535a9f2014-03-12 18:42:23 -0700839 long timestampNanos = 0;
840 if (cooked.length == 5) {
841 try {
842 timestampNanos = Long.parseLong(cooked[4]);
843 } catch(NumberFormatException ne) {}
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700844 } else {
845 timestampNanos = SystemClock.elapsedRealtimeNanos();
Ashish Sharma0535a9f2014-03-12 18:42:23 -0700846 }
Haoyu Baidb3c8672012-06-20 14:29:57 -0700847 boolean isActive = cooked[2].equals("active");
Ashish Sharma0535a9f2014-03-12 18:42:23 -0700848 notifyInterfaceClassActivity(Integer.parseInt(cooked[3]),
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700849 isActive ? DataConnectionRealTimeInfo.DC_POWER_STATE_HIGH
850 : DataConnectionRealTimeInfo.DC_POWER_STATE_LOW, timestampNanos, false);
Haoyu Baidb3c8672012-06-20 14:29:57 -0700851 return true;
852 // break;
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900853 case NetdResponseCode.InterfaceAddressChange:
854 /*
855 * A network address change occurred
856 * Format: "NNN Address updated <addr> <iface> <flags> <scope>"
857 * "NNN Address removed <addr> <iface> <flags> <scope>"
858 */
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900859 if (cooked.length < 7 || !cooked[1].equals("Address")) {
860 throw new IllegalStateException(errorMessage);
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900861 }
862
Lorenzo Colitti64483942013-11-15 18:43:52 +0900863 String iface = cooked[4];
Lorenzo Colitti5ad421a2013-11-17 15:05:02 +0900864 LinkAddress address;
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900865 try {
Lorenzo Colitti64483942013-11-15 18:43:52 +0900866 int flags = Integer.parseInt(cooked[5]);
867 int scope = Integer.parseInt(cooked[6]);
868 address = new LinkAddress(cooked[3], flags, scope);
Lorenzo Colitti5ad421a2013-11-17 15:05:02 +0900869 } catch(NumberFormatException e) { // Non-numeric lifetime or scope.
870 throw new IllegalStateException(errorMessage, e);
Lorenzo Colitti64483942013-11-15 18:43:52 +0900871 } catch(IllegalArgumentException e) { // Malformed/invalid IP address.
Lorenzo Colitti5ad421a2013-11-17 15:05:02 +0900872 throw new IllegalStateException(errorMessage, e);
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900873 }
874
875 if (cooked[2].equals("updated")) {
Lorenzo Colitti64483942013-11-15 18:43:52 +0900876 notifyAddressUpdated(iface, address);
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900877 } else {
Lorenzo Colitti64483942013-11-15 18:43:52 +0900878 notifyAddressRemoved(iface, address);
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900879 }
880 return true;
881 // break;
Lorenzo Colitti5ae4a532013-10-31 11:59:46 +0900882 case NetdResponseCode.InterfaceDnsServerInfo:
883 /*
884 * Information about available DNS servers has been received.
885 * Format: "NNN DnsInfo servers <interface> <lifetime> <servers>"
886 */
887 long lifetime; // Actually a 32-bit unsigned integer.
888
889 if (cooked.length == 6 &&
890 cooked[1].equals("DnsInfo") &&
891 cooked[2].equals("servers")) {
892 try {
893 lifetime = Long.parseLong(cooked[4]);
894 } catch (NumberFormatException e) {
895 throw new IllegalStateException(errorMessage);
896 }
897 String[] servers = cooked[5].split(",");
898 notifyInterfaceDnsServerInfo(cooked[3], lifetime, servers);
899 }
900 return true;
901 // break;
Lorenzo Colittic18cbfd2014-06-13 21:21:03 +0900902 case NetdResponseCode.RouteChange:
903 /*
904 * A route has been updated or removed.
905 * Format: "NNN Route <updated|removed> <dst> [via <gateway] [dev <iface>]"
906 */
907 if (!cooked[1].equals("Route") || cooked.length < 6) {
908 throw new IllegalStateException(errorMessage);
909 }
910
911 String via = null;
912 String dev = null;
913 boolean valid = true;
914 for (int i = 4; (i + 1) < cooked.length && valid; i += 2) {
915 if (cooked[i].equals("dev")) {
916 if (dev == null) {
917 dev = cooked[i+1];
918 } else {
919 valid = false; // Duplicate interface.
920 }
921 } else if (cooked[i].equals("via")) {
922 if (via == null) {
923 via = cooked[i+1];
924 } else {
925 valid = false; // Duplicate gateway.
926 }
927 } else {
928 valid = false; // Unknown syntax.
929 }
930 }
931 if (valid) {
932 try {
933 // InetAddress.parseNumericAddress(null) inexplicably returns ::1.
934 InetAddress gateway = null;
935 if (via != null) gateway = InetAddress.parseNumericAddress(via);
936 RouteInfo route = new RouteInfo(new IpPrefix(cooked[3]), gateway, dev);
937 notifyRouteChange(cooked[2], route);
938 return true;
939 } catch (IllegalArgumentException e) {}
940 }
941 throw new IllegalStateException(errorMessage);
942 // break;
Jeff Sharkey605eb792014-11-04 13:34:06 -0800943 case NetdResponseCode.StrictCleartext:
944 final int uid = Integer.parseInt(cooked[1]);
945 final byte[] firstPacket = HexDump.hexStringToByteArray(cooked[2]);
946 try {
947 ActivityManagerNative.getDefault().notifyCleartextNetwork(uid, firstPacket);
948 } catch (RemoteException ignored) {
949 }
950 break;
JP Abgrall12b933d2011-07-14 18:09:22 -0700951 default: break;
Robert Greenwalte3253922010-02-18 09:23:25 -0800952 }
953 return false;
San Mehat873f2142010-01-14 10:25:07 -0800954 }
955 }
956
San Mehated4fc8a2010-01-22 12:28:36 -0800957
San Mehat873f2142010-01-14 10:25:07 -0800958 //
959 // INetworkManagementService members
960 //
961
Jeff Sharkeyaf75c332011-11-18 12:41:12 -0800962 @Override
963 public String[] listInterfaces() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -0800964 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -0700965 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -0800966 return NativeDaemonEvent.filterMessageList(
967 mConnector.executeForList("interface", "list"), InterfaceListResult);
Kenny Roota80ce062010-06-01 13:23:53 -0700968 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -0800969 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -0700970 }
San Mehated4fc8a2010-01-22 12:28:36 -0800971 }
972
Jeff Sharkeyaf75c332011-11-18 12:41:12 -0800973 @Override
974 public InterfaceConfiguration getInterfaceConfig(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -0800975 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyba2896e2011-11-30 18:13:54 -0800976
977 final NativeDaemonEvent event;
Kenny Roota80ce062010-06-01 13:23:53 -0700978 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -0800979 event = mConnector.execute("interface", "getcfg", iface);
Kenny Roota80ce062010-06-01 13:23:53 -0700980 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -0800981 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -0700982 }
San Mehated4fc8a2010-01-22 12:28:36 -0800983
Jeff Sharkeyba2896e2011-11-30 18:13:54 -0800984 event.checkCode(InterfaceGetCfgResult);
985
986 // Rsp: 213 xx:xx:xx:xx:xx:xx yyy.yyy.yyy.yyy zzz flag1 flag2 flag3
987 final StringTokenizer st = new StringTokenizer(event.getMessage());
San Mehated4fc8a2010-01-22 12:28:36 -0800988
Kenny Roota80ce062010-06-01 13:23:53 -0700989 InterfaceConfiguration cfg;
San Mehated4fc8a2010-01-22 12:28:36 -0800990 try {
Kenny Roota80ce062010-06-01 13:23:53 -0700991 cfg = new InterfaceConfiguration();
Jeff Sharkeyddba1062011-11-29 18:37:04 -0800992 cfg.setHardwareAddress(st.nextToken(" "));
Robert Greenwalted126402011-01-28 15:34:55 -0800993 InetAddress addr = null;
Robert Greenwalt2d2afd12011-02-01 15:30:46 -0800994 int prefixLength = 0;
Kenny Roota80ce062010-06-01 13:23:53 -0700995 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -0800996 addr = NetworkUtils.numericToInetAddress(st.nextToken());
Robert Greenwalte5903732011-02-22 16:00:42 -0800997 } catch (IllegalArgumentException iae) {
998 Slog.e(TAG, "Failed to parse ipaddr", iae);
Kenny Roota80ce062010-06-01 13:23:53 -0700999 }
1000
1001 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001002 prefixLength = Integer.parseInt(st.nextToken());
Robert Greenwalt2d2afd12011-02-01 15:30:46 -08001003 } catch (NumberFormatException nfe) {
1004 Slog.e(TAG, "Failed to parse prefixLength", nfe);
Kenny Roota80ce062010-06-01 13:23:53 -07001005 }
Robert Greenwalt04808c22010-12-13 17:01:41 -08001006
Jeff Sharkeyddba1062011-11-29 18:37:04 -08001007 cfg.setLinkAddress(new LinkAddress(addr, prefixLength));
1008 while (st.hasMoreTokens()) {
1009 cfg.setFlag(st.nextToken());
1010 }
Kenny Roota80ce062010-06-01 13:23:53 -07001011 } catch (NoSuchElementException nsee) {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001012 throw new IllegalStateException("Invalid response from daemon: " + event);
San Mehated4fc8a2010-01-22 12:28:36 -08001013 }
San Mehated4fc8a2010-01-22 12:28:36 -08001014 return cfg;
1015 }
1016
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001017 @Override
1018 public void setInterfaceConfig(String iface, InterfaceConfiguration cfg) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001019 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyddba1062011-11-29 18:37:04 -08001020 LinkAddress linkAddr = cfg.getLinkAddress();
Robert Greenwalt2d2afd12011-02-01 15:30:46 -08001021 if (linkAddr == null || linkAddr.getAddress() == null) {
1022 throw new IllegalStateException("Null LinkAddress given");
Robert Greenwalted126402011-01-28 15:34:55 -08001023 }
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001024
1025 final Command cmd = new Command("interface", "setcfg", iface,
Robert Greenwalt2d2afd12011-02-01 15:30:46 -08001026 linkAddr.getAddress().getHostAddress(),
Lorenzo Colitti7dc78cf2014-06-09 22:58:46 +09001027 linkAddr.getPrefixLength());
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001028 for (String flag : cfg.getFlags()) {
1029 cmd.appendArg(flag);
1030 }
1031
Kenny Roota80ce062010-06-01 13:23:53 -07001032 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001033 mConnector.execute(cmd);
Kenny Roota80ce062010-06-01 13:23:53 -07001034 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001035 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001036 }
San Mehat873f2142010-01-14 10:25:07 -08001037 }
1038
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001039 @Override
1040 public void setInterfaceDown(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001041 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001042 final InterfaceConfiguration ifcg = getInterfaceConfig(iface);
Jeff Sharkeyddba1062011-11-29 18:37:04 -08001043 ifcg.setInterfaceDown();
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001044 setInterfaceConfig(iface, ifcg);
Irfan Sheriff7244c972011-08-05 20:40:45 -07001045 }
1046
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001047 @Override
1048 public void setInterfaceUp(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001049 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001050 final InterfaceConfiguration ifcg = getInterfaceConfig(iface);
Jeff Sharkeyddba1062011-11-29 18:37:04 -08001051 ifcg.setInterfaceUp();
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001052 setInterfaceConfig(iface, ifcg);
Irfan Sheriff7244c972011-08-05 20:40:45 -07001053 }
1054
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001055 @Override
1056 public void setInterfaceIpv6PrivacyExtensions(String iface, boolean enable) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001057 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Irfan Sheriff73293612011-09-14 12:31:56 -07001058 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001059 mConnector.execute(
1060 "interface", "ipv6privacyextensions", iface, enable ? "enable" : "disable");
Irfan Sheriff73293612011-09-14 12:31:56 -07001061 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001062 throw e.rethrowAsParcelableException();
Irfan Sheriff73293612011-09-14 12:31:56 -07001063 }
1064 }
1065
Irfan Sherifff5600612011-06-16 10:26:28 -07001066 /* TODO: This is right now a IPv4 only function. Works for wifi which loses its
1067 IPv6 addresses on interface down, but we need to do full clean up here */
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001068 @Override
1069 public void clearInterfaceAddresses(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001070 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Irfan Sherifff5600612011-06-16 10:26:28 -07001071 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001072 mConnector.execute("interface", "clearaddrs", iface);
Irfan Sherifff5600612011-06-16 10:26:28 -07001073 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001074 throw e.rethrowAsParcelableException();
Irfan Sherifff5600612011-06-16 10:26:28 -07001075 }
1076 }
1077
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001078 @Override
1079 public void enableIpv6(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001080 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
repo sync7960d9f2011-09-29 12:40:02 -07001081 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001082 mConnector.execute("interface", "ipv6", iface, "enable");
repo sync7960d9f2011-09-29 12:40:02 -07001083 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001084 throw e.rethrowAsParcelableException();
repo sync7960d9f2011-09-29 12:40:02 -07001085 }
1086 }
1087
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001088 @Override
1089 public void disableIpv6(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001090 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
repo sync7960d9f2011-09-29 12:40:02 -07001091 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001092 mConnector.execute("interface", "ipv6", iface, "disable");
repo sync7960d9f2011-09-29 12:40:02 -07001093 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001094 throw e.rethrowAsParcelableException();
repo sync7960d9f2011-09-29 12:40:02 -07001095 }
1096 }
1097
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001098 @Override
Lorenzo Colittie21a26b2014-10-28 15:24:03 +09001099 public void setInterfaceIpv6NdOffload(String iface, boolean enable) {
1100 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1101 try {
1102 mConnector.execute(
1103 "interface", "ipv6ndoffload", iface, (enable ? "enable" : "disable"));
1104 } catch (NativeDaemonConnectorException e) {
1105 throw e.rethrowAsParcelableException();
1106 }
1107 }
1108
1109 @Override
Sreeram Ramachandranb2829fa2014-04-15 19:07:12 -07001110 public void addRoute(int netId, RouteInfo route) {
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07001111 modifyRoute("add", "" + netId, route);
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -07001112 }
1113
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001114 @Override
Sreeram Ramachandranb2829fa2014-04-15 19:07:12 -07001115 public void removeRoute(int netId, RouteInfo route) {
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07001116 modifyRoute("remove", "" + netId, route);
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -07001117 }
1118
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07001119 private void modifyRoute(String action, String netId, RouteInfo route) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001120 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001121
Sreeram Ramachandranb2829fa2014-04-15 19:07:12 -07001122 final Command cmd = new Command("network", "route", action, netId);
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001123
Sreeram Ramachandranb2829fa2014-04-15 19:07:12 -07001124 // create triplet: interface dest-ip-addr/prefixlength gateway-ip-addr
Sreeram Ramachandranb2829fa2014-04-15 19:07:12 -07001125 cmd.appendArg(route.getInterface());
Lorenzo Colitti4b0f8e62014-09-19 01:49:05 +09001126 cmd.appendArg(route.getDestination().toString());
1127
1128 switch (route.getType()) {
1129 case RouteInfo.RTN_UNICAST:
1130 if (route.hasGateway()) {
1131 cmd.appendArg(route.getGateway().getHostAddress());
1132 }
1133 break;
1134 case RouteInfo.RTN_UNREACHABLE:
1135 cmd.appendArg("unreachable");
1136 break;
1137 case RouteInfo.RTN_THROW:
1138 cmd.appendArg("throw");
1139 break;
Sreeram Ramachandran1fbcb272014-05-22 16:30:48 -07001140 }
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -07001141
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001142 try {
1143 mConnector.execute(cmd);
1144 } catch (NativeDaemonConnectorException e) {
1145 throw e.rethrowAsParcelableException();
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -07001146 }
1147 }
1148
1149 private ArrayList<String> readRouteList(String filename) {
1150 FileInputStream fstream = null;
1151 ArrayList<String> list = new ArrayList<String>();
1152
1153 try {
1154 fstream = new FileInputStream(filename);
1155 DataInputStream in = new DataInputStream(fstream);
1156 BufferedReader br = new BufferedReader(new InputStreamReader(in));
1157 String s;
1158
1159 // throw away the title line
1160
1161 while (((s = br.readLine()) != null) && (s.length() != 0)) {
1162 list.add(s);
1163 }
1164 } catch (IOException ex) {
1165 // return current list, possibly empty
1166 } finally {
1167 if (fstream != null) {
1168 try {
1169 fstream.close();
1170 } catch (IOException ex) {}
1171 }
1172 }
1173
1174 return list;
1175 }
1176
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001177 @Override
sy.yun9d9b74a2013-09-02 05:24:09 +09001178 public void setMtu(String iface, int mtu) {
1179 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1180
1181 final NativeDaemonEvent event;
1182 try {
1183 event = mConnector.execute("interface", "setmtu", iface, mtu);
1184 } catch (NativeDaemonConnectorException e) {
1185 throw e.rethrowAsParcelableException();
1186 }
1187 }
1188
1189 @Override
San Mehat873f2142010-01-14 10:25:07 -08001190 public void shutdown() {
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001191 // TODO: remove from aidl if nobody calls externally
1192 mContext.enforceCallingOrSelfPermission(SHUTDOWN, TAG);
San Mehat873f2142010-01-14 10:25:07 -08001193
Felipe Leme03e689d2016-03-02 16:17:38 -08001194 Slog.i(TAG, "Shutting down");
San Mehat873f2142010-01-14 10:25:07 -08001195 }
1196
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001197 @Override
San Mehat873f2142010-01-14 10:25:07 -08001198 public boolean getIpForwardingEnabled() throws IllegalStateException{
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001199 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
San Mehat873f2142010-01-14 10:25:07 -08001200
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001201 final NativeDaemonEvent event;
Kenny Roota80ce062010-06-01 13:23:53 -07001202 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001203 event = mConnector.execute("ipfwd", "status");
Kenny Roota80ce062010-06-01 13:23:53 -07001204 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001205 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001206 }
San Mehat873f2142010-01-14 10:25:07 -08001207
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001208 // 211 Forwarding enabled
1209 event.checkCode(IpFwdStatusResult);
1210 return event.getMessage().endsWith("enabled");
San Mehat873f2142010-01-14 10:25:07 -08001211 }
1212
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001213 @Override
1214 public void setIpForwardingEnabled(boolean enable) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001215 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001216 try {
Nilesh Poddarf3d4a582015-02-24 12:11:11 -08001217 mConnector.execute("ipfwd", enable ? "enable" : "disable", "tethering");
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001218 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001219 throw e.rethrowAsParcelableException();
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001220 }
San Mehat873f2142010-01-14 10:25:07 -08001221 }
1222
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001223 @Override
1224 public void startTethering(String[] dhcpRange) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001225 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Robert Greenwaltbfb7bfa2010-03-24 16:03:21 -07001226 // cmd is "tether start first_start first_stop second_start second_stop ..."
1227 // an odd number of addrs will fail
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001228
1229 final Command cmd = new Command("tether", "start");
Robert Greenwaltbfb7bfa2010-03-24 16:03:21 -07001230 for (String d : dhcpRange) {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001231 cmd.appendArg(d);
Robert Greenwaltbfb7bfa2010-03-24 16:03:21 -07001232 }
Kenny Roota80ce062010-06-01 13:23:53 -07001233
1234 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001235 mConnector.execute(cmd);
Kenny Roota80ce062010-06-01 13:23:53 -07001236 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001237 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001238 }
San Mehat873f2142010-01-14 10:25:07 -08001239 }
1240
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001241 @Override
1242 public void stopTethering() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001243 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001244 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001245 mConnector.execute("tether", "stop");
Kenny Roota80ce062010-06-01 13:23:53 -07001246 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001247 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001248 }
San Mehat873f2142010-01-14 10:25:07 -08001249 }
1250
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001251 @Override
1252 public boolean isTetheringStarted() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001253 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
San Mehat873f2142010-01-14 10:25:07 -08001254
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001255 final NativeDaemonEvent event;
Kenny Roota80ce062010-06-01 13:23:53 -07001256 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001257 event = mConnector.execute("tether", "status");
Kenny Roota80ce062010-06-01 13:23:53 -07001258 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001259 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001260 }
San Mehat873f2142010-01-14 10:25:07 -08001261
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001262 // 210 Tethering services started
1263 event.checkCode(TetherStatusResult);
1264 return event.getMessage().endsWith("started");
San Mehat873f2142010-01-14 10:25:07 -08001265 }
Matthew Xiefe19f122012-07-12 16:03:32 -07001266
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001267 @Override
1268 public void tetherInterface(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001269 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001270 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001271 mConnector.execute("tether", "interface", "add", iface);
Kenny Roota80ce062010-06-01 13:23:53 -07001272 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001273 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001274 }
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07001275 List<RouteInfo> routes = new ArrayList<RouteInfo>();
1276 // The RouteInfo constructor truncates the LinkAddress to a network prefix, thus making it
1277 // suitable to use as a route destination.
1278 routes.add(new RouteInfo(getInterfaceConfig(iface).getLinkAddress(), null, iface));
1279 addInterfaceToLocalNetwork(iface, routes);
San Mehat873f2142010-01-14 10:25:07 -08001280 }
1281
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001282 @Override
San Mehat873f2142010-01-14 10:25:07 -08001283 public void untetherInterface(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001284 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001285 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001286 mConnector.execute("tether", "interface", "remove", iface);
Kenny Roota80ce062010-06-01 13:23:53 -07001287 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001288 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001289 }
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07001290 removeInterfaceFromLocalNetwork(iface);
San Mehat873f2142010-01-14 10:25:07 -08001291 }
1292
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001293 @Override
1294 public String[] listTetheredInterfaces() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001295 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001296 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001297 return NativeDaemonEvent.filterMessageList(
1298 mConnector.executeForList("tether", "interface", "list"),
1299 TetherInterfaceListResult);
Kenny Roota80ce062010-06-01 13:23:53 -07001300 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001301 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001302 }
San Mehat873f2142010-01-14 10:25:07 -08001303 }
1304
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001305 @Override
Lorenzo Colittib57edc52014-08-22 17:10:50 -07001306 public void setDnsForwarders(Network network, String[] dns) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001307 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001308
Lorenzo Colittib57edc52014-08-22 17:10:50 -07001309 int netId = (network != null) ? network.netId : ConnectivityManager.NETID_UNSET;
1310 final Command cmd = new Command("tether", "dns", "set", netId);
1311
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001312 for (String s : dns) {
1313 cmd.appendArg(NetworkUtils.numericToInetAddress(s).getHostAddress());
1314 }
1315
San Mehat873f2142010-01-14 10:25:07 -08001316 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001317 mConnector.execute(cmd);
1318 } catch (NativeDaemonConnectorException e) {
1319 throw e.rethrowAsParcelableException();
San Mehat873f2142010-01-14 10:25:07 -08001320 }
1321 }
1322
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001323 @Override
1324 public String[] getDnsForwarders() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001325 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001326 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001327 return NativeDaemonEvent.filterMessageList(
1328 mConnector.executeForList("tether", "dns", "list"), TetherDnsFwdTgtListResult);
Kenny Roota80ce062010-06-01 13:23:53 -07001329 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001330 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001331 }
San Mehat873f2142010-01-14 10:25:07 -08001332 }
1333
jiaguo1da35f72014-01-09 16:39:59 +08001334 private List<InterfaceAddress> excludeLinkLocal(List<InterfaceAddress> addresses) {
1335 ArrayList<InterfaceAddress> filtered = new ArrayList<InterfaceAddress>(addresses.size());
1336 for (InterfaceAddress ia : addresses) {
1337 if (!ia.getAddress().isLinkLocalAddress())
1338 filtered.add(ia);
1339 }
1340 return filtered;
1341 }
1342
Lorenzo Colitti35e36db2015-02-26 01:25:36 +09001343 private void modifyInterfaceForward(boolean add, String fromIface, String toIface) {
1344 final Command cmd = new Command("ipfwd", add ? "add" : "remove", fromIface, toIface);
1345 try {
1346 mConnector.execute(cmd);
1347 } catch (NativeDaemonConnectorException e) {
1348 throw e.rethrowAsParcelableException();
1349 }
1350 }
1351
1352 @Override
1353 public void startInterfaceForwarding(String fromIface, String toIface) {
1354 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1355 modifyInterfaceForward(true, fromIface, toIface);
1356 }
1357
1358 @Override
1359 public void stopInterfaceForwarding(String fromIface, String toIface) {
1360 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1361 modifyInterfaceForward(false, fromIface, toIface);
1362 }
1363
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001364 private void modifyNat(String action, String internalInterface, String externalInterface)
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001365 throws SocketException {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001366 final Command cmd = new Command("nat", action, internalInterface, externalInterface);
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001367
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001368 final NetworkInterface internalNetworkInterface = NetworkInterface.getByName(
1369 internalInterface);
Robert Greenwalte83d1812011-11-21 14:44:39 -08001370 if (internalNetworkInterface == null) {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001371 cmd.appendArg("0");
Robert Greenwalte83d1812011-11-21 14:44:39 -08001372 } else {
jiaguo1da35f72014-01-09 16:39:59 +08001373 // Don't touch link-local routes, as link-local addresses aren't routable,
1374 // kernel creates link-local routes on all interfaces automatically
1375 List<InterfaceAddress> interfaceAddresses = excludeLinkLocal(
1376 internalNetworkInterface.getInterfaceAddresses());
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001377 cmd.appendArg(interfaceAddresses.size());
Robert Greenwalte83d1812011-11-21 14:44:39 -08001378 for (InterfaceAddress ia : interfaceAddresses) {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001379 InetAddress addr = NetworkUtils.getNetworkPart(
1380 ia.getAddress(), ia.getNetworkPrefixLength());
1381 cmd.appendArg(addr.getHostAddress() + "/" + ia.getNetworkPrefixLength());
Robert Greenwalte83d1812011-11-21 14:44:39 -08001382 }
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001383 }
1384
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001385 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001386 mConnector.execute(cmd);
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001387 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001388 throw e.rethrowAsParcelableException();
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001389 }
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001390 }
1391
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001392 @Override
1393 public void enableNat(String internalInterface, String externalInterface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001394 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001395 try {
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001396 modifyNat("enable", internalInterface, externalInterface);
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001397 } catch (SocketException e) {
1398 throw new IllegalStateException(e);
Kenny Roota80ce062010-06-01 13:23:53 -07001399 }
San Mehat873f2142010-01-14 10:25:07 -08001400 }
1401
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001402 @Override
1403 public void disableNat(String internalInterface, String externalInterface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001404 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001405 try {
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001406 modifyNat("disable", internalInterface, externalInterface);
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001407 } catch (SocketException e) {
1408 throw new IllegalStateException(e);
Kenny Roota80ce062010-06-01 13:23:53 -07001409 }
San Mehat873f2142010-01-14 10:25:07 -08001410 }
San Mehat72759df2010-01-19 13:50:37 -08001411
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001412 @Override
1413 public String[] listTtys() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001414 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001415 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001416 return NativeDaemonEvent.filterMessageList(
1417 mConnector.executeForList("list_ttys"), TtyListResult);
Kenny Roota80ce062010-06-01 13:23:53 -07001418 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001419 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001420 }
San Mehat72759df2010-01-19 13:50:37 -08001421 }
1422
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001423 @Override
1424 public void attachPppd(
1425 String tty, String localAddr, String remoteAddr, String dns1Addr, String dns2Addr) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001426 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
San Mehat72759df2010-01-19 13:50:37 -08001427 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001428 mConnector.execute("pppd", "attach", tty,
Robert Greenwalte5903732011-02-22 16:00:42 -08001429 NetworkUtils.numericToInetAddress(localAddr).getHostAddress(),
1430 NetworkUtils.numericToInetAddress(remoteAddr).getHostAddress(),
1431 NetworkUtils.numericToInetAddress(dns1Addr).getHostAddress(),
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001432 NetworkUtils.numericToInetAddress(dns2Addr).getHostAddress());
Kenny Roota80ce062010-06-01 13:23:53 -07001433 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001434 throw e.rethrowAsParcelableException();
San Mehat72759df2010-01-19 13:50:37 -08001435 }
1436 }
1437
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001438 @Override
1439 public void detachPppd(String tty) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001440 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001441 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001442 mConnector.execute("pppd", "detach", tty);
Kenny Roota80ce062010-06-01 13:23:53 -07001443 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001444 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001445 }
San Mehat72759df2010-01-19 13:50:37 -08001446 }
Robert Greenwaltce1200d2010-02-18 11:25:54 -08001447
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001448 /**
1449 * Private method used to call execute for a command given the provided arguments.
1450 *
1451 * This function checks the returned NativeDaemonEvent for the provided expected response code
1452 * and message. If either of these is not correct, an error is logged.
1453 *
1454 * @param String command The command to execute.
1455 * @param Object[] args If needed, arguments for the command to execute.
1456 * @param int expectedResponseCode The code expected to be returned in the corresponding event.
1457 * @param String expectedResponseMessage The message expected in the returned event.
1458 * @param String logMsg The message to log as an error (TAG will be applied).
1459 */
1460 private void executeOrLogWithMessage(String command, Object[] args,
1461 int expectedResponseCode, String expectedResponseMessage, String logMsg)
1462 throws NativeDaemonConnectorException {
1463 NativeDaemonEvent event = mConnector.execute(command, args);
1464 if (event.getCode() != expectedResponseCode
1465 || !event.getMessage().equals(expectedResponseMessage)) {
1466 Log.e(TAG, logMsg + ": event = " + event);
1467 }
1468 }
1469
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001470 @Override
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001471 public void startAccessPoint(WifiConfiguration wifiConfig, String wlanIface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001472 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001473 Object[] args;
1474 String logMsg = "startAccessPoint Error setting up softap";
Kenny Roota80ce062010-06-01 13:23:53 -07001475 try {
Kenny Roota80ce062010-06-01 13:23:53 -07001476 if (wifiConfig == null) {
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001477 args = new Object[] {"set", wlanIface};
Kenny Roota80ce062010-06-01 13:23:53 -07001478 } else {
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001479 args = new Object[] {"set", wlanIface, wifiConfig.SSID,
1480 "broadcast", Integer.toString(wifiConfig.apChannel),
1481 getSecurityType(wifiConfig), new SensitiveArg(wifiConfig.preSharedKey)};
Kenny Roota80ce062010-06-01 13:23:53 -07001482 }
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001483 executeOrLogWithMessage(SOFT_AP_COMMAND, args, NetdResponseCode.SoftapStatusResult,
1484 SOFT_AP_COMMAND_SUCCESS, logMsg);
1485
1486 logMsg = "startAccessPoint Error starting softap";
1487 args = new Object[] {"startap"};
1488 executeOrLogWithMessage(SOFT_AP_COMMAND, args, NetdResponseCode.SoftapStatusResult,
1489 SOFT_AP_COMMAND_SUCCESS, logMsg);
Kenny Roota80ce062010-06-01 13:23:53 -07001490 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001491 throw e.rethrowAsParcelableException();
Irfan Sheriff9ab518ad2010-03-12 15:48:17 -08001492 }
Irfan Sheriff5321aef2010-02-12 12:35:59 -08001493 }
1494
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001495 private static String getSecurityType(WifiConfiguration wifiConfig) {
Irfan Sheriffec8d23a2011-02-16 17:00:33 -08001496 switch (wifiConfig.getAuthType()) {
1497 case KeyMgmt.WPA_PSK:
1498 return "wpa-psk";
1499 case KeyMgmt.WPA2_PSK:
1500 return "wpa2-psk";
1501 default:
1502 return "open";
1503 }
1504 }
1505
Irfan Sheriffcb30b222011-07-29 20:54:52 -07001506 /* @param mode can be "AP", "STA" or "P2P" */
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001507 @Override
1508 public void wifiFirmwareReload(String wlanIface, String mode) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001509 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001510 Object[] args = {"fwreload", wlanIface, mode};
1511 String logMsg = "wifiFirmwareReload Error reloading "
1512 + wlanIface + " fw in " + mode + " mode";
Irfan Sheriffcb30b222011-07-29 20:54:52 -07001513 try {
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001514 executeOrLogWithMessage(SOFT_AP_COMMAND, args, NetdResponseCode.SoftapStatusResult,
1515 SOFT_AP_COMMAND_SUCCESS, logMsg);
Irfan Sheriffcb30b222011-07-29 20:54:52 -07001516 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001517 throw e.rethrowAsParcelableException();
Irfan Sheriffcb30b222011-07-29 20:54:52 -07001518 }
Rebecca Silbersteinefdb8452016-04-21 12:14:41 -07001519
1520 // Ensure that before we return from this command, any asynchronous
1521 // notifications generated before the command completed have been
1522 // processed by all NetworkManagementEventObservers.
1523 mConnector.waitForCallbacks();
Irfan Sheriffcb30b222011-07-29 20:54:52 -07001524 }
1525
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001526 @Override
1527 public void stopAccessPoint(String wlanIface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001528 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001529 Object[] args = {"stopap"};
1530 String logMsg = "stopAccessPoint Error stopping softap";
1531
Kenny Roota80ce062010-06-01 13:23:53 -07001532 try {
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001533 executeOrLogWithMessage(SOFT_AP_COMMAND, args, NetdResponseCode.SoftapStatusResult,
1534 SOFT_AP_COMMAND_SUCCESS, logMsg);
Irfan Sheriffcb30b222011-07-29 20:54:52 -07001535 wifiFirmwareReload(wlanIface, "STA");
Kenny Roota80ce062010-06-01 13:23:53 -07001536 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001537 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001538 }
Irfan Sheriff5321aef2010-02-12 12:35:59 -08001539 }
1540
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001541 @Override
Irfan Sheriff90542752012-06-19 15:44:35 -07001542 public void setAccessPoint(WifiConfiguration wifiConfig, String wlanIface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001543 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001544 Object[] args;
1545 String logMsg = "startAccessPoint Error setting up softap";
Kenny Roota80ce062010-06-01 13:23:53 -07001546 try {
1547 if (wifiConfig == null) {
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001548 args = new Object[] {"set", wlanIface};
Kenny Roota80ce062010-06-01 13:23:53 -07001549 } else {
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001550 // TODO: understand why this is set to "6" instead of
1551 // Integer.toString(wifiConfig.apChannel) as in startAccessPoint
1552 // TODO: should startAccessPoint call this instead of repeating code?
1553 args = new Object[] {"set", wlanIface, wifiConfig.SSID,
1554 "broadcast", "6",
1555 getSecurityType(wifiConfig), new SensitiveArg(wifiConfig.preSharedKey)};
Kenny Roota80ce062010-06-01 13:23:53 -07001556 }
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -07001557 executeOrLogWithMessage(SOFT_AP_COMMAND, args, NetdResponseCode.SoftapStatusResult,
1558 SOFT_AP_COMMAND_SUCCESS, logMsg);
Kenny Roota80ce062010-06-01 13:23:53 -07001559 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001560 throw e.rethrowAsParcelableException();
Irfan Sheriffc2f54c22010-03-18 14:02:22 -07001561 }
1562 }
San Mehat91cac642010-03-31 14:31:36 -07001563
Jeff Sharkeyeedcb952011-05-17 14:55:15 -07001564 @Override
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001565 public void addIdleTimer(String iface, int timeout, final int type) {
Haoyu Bai04124232012-06-28 15:26:19 -07001566 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1567
1568 if (DBG) Slog.d(TAG, "Adding idletimer");
1569
1570 synchronized (mIdleTimerLock) {
1571 IdleTimerParams params = mActiveIdleTimers.get(iface);
1572 if (params != null) {
1573 // the interface already has idletimer, update network count
1574 params.networkCount++;
1575 return;
1576 }
1577
1578 try {
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001579 mConnector.execute("idletimer", "add", iface, Integer.toString(timeout),
1580 Integer.toString(type));
Haoyu Bai04124232012-06-28 15:26:19 -07001581 } catch (NativeDaemonConnectorException e) {
1582 throw e.rethrowAsParcelableException();
1583 }
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001584 mActiveIdleTimers.put(iface, new IdleTimerParams(timeout, type));
1585
Dianne Hackborne13c4c02014-02-11 17:18:35 -08001586 // Networks start up.
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001587 if (ConnectivityManager.isNetworkTypeMobile(type)) {
1588 mNetworkActive = false;
1589 }
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -07001590 mDaemonHandler.post(new Runnable() {
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001591 @Override public void run() {
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -07001592 notifyInterfaceClassActivity(type,
1593 DataConnectionRealTimeInfo.DC_POWER_STATE_HIGH,
1594 SystemClock.elapsedRealtimeNanos(), false);
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001595 }
1596 });
Haoyu Bai04124232012-06-28 15:26:19 -07001597 }
1598 }
1599
1600 @Override
1601 public void removeIdleTimer(String iface) {
1602 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1603
1604 if (DBG) Slog.d(TAG, "Removing idletimer");
1605
1606 synchronized (mIdleTimerLock) {
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001607 final IdleTimerParams params = mActiveIdleTimers.get(iface);
Haoyu Bai04124232012-06-28 15:26:19 -07001608 if (params == null || --(params.networkCount) > 0) {
1609 return;
1610 }
1611
1612 try {
1613 mConnector.execute("idletimer", "remove", iface,
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001614 Integer.toString(params.timeout), Integer.toString(params.type));
Haoyu Bai04124232012-06-28 15:26:19 -07001615 } catch (NativeDaemonConnectorException e) {
1616 throw e.rethrowAsParcelableException();
1617 }
1618 mActiveIdleTimers.remove(iface);
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -07001619 mDaemonHandler.post(new Runnable() {
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001620 @Override public void run() {
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -07001621 notifyInterfaceClassActivity(params.type,
1622 DataConnectionRealTimeInfo.DC_POWER_STATE_LOW,
1623 SystemClock.elapsedRealtimeNanos(), false);
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001624 }
1625 });
Haoyu Bai04124232012-06-28 15:26:19 -07001626 }
1627 }
1628
1629 @Override
Jeff Sharkeye8914c32012-05-01 16:26:09 -07001630 public NetworkStats getNetworkStatsSummaryDev() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001631 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey9a2c2a62013-01-14 16:48:51 -08001632 try {
1633 return mStatsFactory.readNetworkStatsSummaryDev();
1634 } catch (IOException e) {
1635 throw new IllegalStateException(e);
1636 }
Jeff Sharkeye8914c32012-05-01 16:26:09 -07001637 }
1638
1639 @Override
1640 public NetworkStats getNetworkStatsSummaryXt() {
1641 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey9a2c2a62013-01-14 16:48:51 -08001642 try {
1643 return mStatsFactory.readNetworkStatsSummaryXt();
1644 } catch (IOException e) {
1645 throw new IllegalStateException(e);
1646 }
Jeff Sharkeyae2c1812011-10-04 13:11:40 -07001647 }
1648
Jeff Sharkeyeedcb952011-05-17 14:55:15 -07001649 @Override
Jeff Sharkey9a13f362011-04-26 16:25:36 -07001650 public NetworkStats getNetworkStatsDetail() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001651 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey9a2c2a62013-01-14 16:48:51 -08001652 try {
Dianne Hackbornd0c5b9a2014-02-21 16:19:05 -08001653 return mStatsFactory.readNetworkStatsDetail(UID_ALL, null, TAG_ALL, null);
Jeff Sharkey9a2c2a62013-01-14 16:48:51 -08001654 } catch (IOException e) {
1655 throw new IllegalStateException(e);
1656 }
San Mehat91cac642010-03-31 14:31:36 -07001657 }
1658
Jeff Sharkeyeedcb952011-05-17 14:55:15 -07001659 @Override
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001660 public void setInterfaceQuota(String iface, long quotaBytes) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001661 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001662
Jeff Sharkey350083e2011-06-29 10:45:16 -07001663 // silently discard when control disabled
1664 // TODO: eventually migrate to be always enabled
1665 if (!mBandwidthControlEnabled) return;
1666
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001667 synchronized (mQuotaLock) {
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001668 if (mActiveQuotas.containsKey(iface)) {
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001669 throw new IllegalStateException("iface " + iface + " already has quota");
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001670 }
1671
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001672 try {
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001673 // TODO: support quota shared across interfaces
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001674 mConnector.execute("bandwidth", "setiquota", iface, quotaBytes);
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001675 mActiveQuotas.put(iface, quotaBytes);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001676 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001677 throw e.rethrowAsParcelableException();
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001678 }
Ashish Sharma50fd36d2011-06-15 19:34:53 -07001679 }
1680 }
1681
1682 @Override
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001683 public void removeInterfaceQuota(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001684 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001685
Jeff Sharkey350083e2011-06-29 10:45:16 -07001686 // silently discard when control disabled
1687 // TODO: eventually migrate to be always enabled
1688 if (!mBandwidthControlEnabled) return;
1689
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001690 synchronized (mQuotaLock) {
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001691 if (!mActiveQuotas.containsKey(iface)) {
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001692 // TODO: eventually consider throwing
1693 return;
1694 }
1695
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001696 mActiveQuotas.remove(iface);
1697 mActiveAlerts.remove(iface);
Jeff Sharkey38ddeaa2011-11-08 13:04:22 -08001698
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001699 try {
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001700 // TODO: support quota shared across interfaces
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001701 mConnector.execute("bandwidth", "removeiquota", iface);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001702 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001703 throw e.rethrowAsParcelableException();
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001704 }
1705 }
1706 }
1707
1708 @Override
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001709 public void setInterfaceAlert(String iface, long alertBytes) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001710 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001711
1712 // silently discard when control disabled
1713 // TODO: eventually migrate to be always enabled
1714 if (!mBandwidthControlEnabled) return;
1715
1716 // quick sanity check
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001717 if (!mActiveQuotas.containsKey(iface)) {
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001718 throw new IllegalStateException("setting alert requires existing quota on iface");
1719 }
1720
1721 synchronized (mQuotaLock) {
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001722 if (mActiveAlerts.containsKey(iface)) {
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001723 throw new IllegalStateException("iface " + iface + " already has alert");
1724 }
1725
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001726 try {
1727 // TODO: support alert shared across interfaces
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001728 mConnector.execute("bandwidth", "setinterfacealert", iface, alertBytes);
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001729 mActiveAlerts.put(iface, alertBytes);
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001730 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001731 throw e.rethrowAsParcelableException();
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001732 }
1733 }
1734 }
1735
1736 @Override
1737 public void removeInterfaceAlert(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001738 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001739
1740 // silently discard when control disabled
1741 // TODO: eventually migrate to be always enabled
1742 if (!mBandwidthControlEnabled) return;
1743
1744 synchronized (mQuotaLock) {
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001745 if (!mActiveAlerts.containsKey(iface)) {
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001746 // TODO: eventually consider throwing
1747 return;
1748 }
1749
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001750 try {
1751 // TODO: support alert shared across interfaces
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001752 mConnector.execute("bandwidth", "removeinterfacealert", iface);
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001753 mActiveAlerts.remove(iface);
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001754 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001755 throw e.rethrowAsParcelableException();
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001756 }
1757 }
1758 }
1759
1760 @Override
1761 public void setGlobalAlert(long alertBytes) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001762 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001763
1764 // silently discard when control disabled
1765 // TODO: eventually migrate to be always enabled
1766 if (!mBandwidthControlEnabled) return;
1767
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001768 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001769 mConnector.execute("bandwidth", "setglobalalert", alertBytes);
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001770 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001771 throw e.rethrowAsParcelableException();
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001772 }
1773 }
1774
Felipe Leme65be3022016-03-22 14:53:13 -07001775 private void setUidOnMeteredNetworkList(SparseBooleanArray quotaList, int uid,
1776 boolean blacklist, boolean enable) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001777 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001778
Jeff Sharkey350083e2011-06-29 10:45:16 -07001779 // silently discard when control disabled
1780 // TODO: eventually migrate to be always enabled
1781 if (!mBandwidthControlEnabled) return;
1782
Felipe Leme65be3022016-03-22 14:53:13 -07001783 final String chain = blacklist ? "naughtyapps" : "niceapps";
1784 final String suffix = enable ? "add" : "remove";
1785
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001786 synchronized (mQuotaLock) {
Felipe Leme65be3022016-03-22 14:53:13 -07001787 final boolean oldEnable = quotaList.get(uid, false);
1788 if (oldEnable == enable) {
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001789 // TODO: eventually consider throwing
1790 return;
1791 }
1792
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001793 try {
Felipe Leme65be3022016-03-22 14:53:13 -07001794 mConnector.execute("bandwidth", suffix + chain, uid);
1795 if (enable) {
1796 quotaList.put(uid, true);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001797 } else {
Felipe Leme65be3022016-03-22 14:53:13 -07001798 quotaList.delete(uid);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001799 }
1800 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001801 throw e.rethrowAsParcelableException();
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001802 }
Ashish Sharma50fd36d2011-06-15 19:34:53 -07001803 }
1804 }
1805
Jeff Sharkey63d27a92011-08-03 17:04:22 -07001806 @Override
Felipe Leme65be3022016-03-22 14:53:13 -07001807 public void setUidMeteredNetworkBlacklist(int uid, boolean enable) {
1808 setUidOnMeteredNetworkList(mUidRejectOnMetered, uid, true, enable);
1809 }
1810
1811 @Override
1812 public void setUidMeteredNetworkWhitelist(int uid, boolean enable) {
1813 setUidOnMeteredNetworkList(mUidAllowOnMetered, uid, false, enable);
1814 }
1815
1816 @Override
1817 public boolean setDataSaverModeEnabled(boolean enable) {
1818 if (DBG) Log.d(TAG, "setDataSaverMode: " + enable);
1819 synchronized (mQuotaLock) {
1820 if (mDataSaverMode == enable) {
1821 Log.w(TAG, "setDataSaverMode(): already " + mDataSaverMode);
1822 return true;
1823 }
1824 try {
1825 final boolean changed = mNetdService.bandwidthEnableDataSaver(enable);
1826 if (changed) {
1827 mDataSaverMode = enable;
1828 } else {
1829 Log.w(TAG, "setDataSaverMode(" + enable + "): netd command silently failed");
1830 }
1831 return changed;
1832 } catch (RemoteException e) {
1833 Log.w(TAG, "setDataSaverMode(" + enable + "): netd command failed", e);
1834 return false;
1835 }
1836 }
1837 }
1838
1839 @Override
Jeff Sharkey605eb792014-11-04 13:34:06 -08001840 public void setUidCleartextNetworkPolicy(int uid, int policy) {
1841 if (Binder.getCallingUid() != uid) {
1842 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1843 }
1844
1845 synchronized (mQuotaLock) {
1846 final int oldPolicy = mUidCleartextPolicy.get(uid, StrictMode.NETWORK_POLICY_ACCEPT);
1847 if (oldPolicy == policy) {
1848 return;
1849 }
1850
1851 if (!mStrictEnabled) {
1852 // Module isn't enabled yet; stash the requested policy away to
1853 // apply later once the daemon is connected.
1854 mUidCleartextPolicy.put(uid, policy);
1855 return;
1856 }
1857
1858 final String policyString;
1859 switch (policy) {
1860 case StrictMode.NETWORK_POLICY_ACCEPT:
1861 policyString = "accept";
1862 break;
1863 case StrictMode.NETWORK_POLICY_LOG:
1864 policyString = "log";
1865 break;
1866 case StrictMode.NETWORK_POLICY_REJECT:
1867 policyString = "reject";
1868 break;
1869 default:
1870 throw new IllegalArgumentException("Unknown policy " + policy);
1871 }
1872
1873 try {
1874 mConnector.execute("strict", "set_uid_cleartext_policy", uid, policyString);
1875 mUidCleartextPolicy.put(uid, policy);
1876 } catch (NativeDaemonConnectorException e) {
1877 throw e.rethrowAsParcelableException();
1878 }
1879 }
1880 }
1881
1882 @Override
Jeff Sharkey63d27a92011-08-03 17:04:22 -07001883 public boolean isBandwidthControlEnabled() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001884 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey63d27a92011-08-03 17:04:22 -07001885 return mBandwidthControlEnabled;
1886 }
1887
1888 @Override
Jeff Sharkeyeedcb952011-05-17 14:55:15 -07001889 public NetworkStats getNetworkStatsUidDetail(int uid) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001890 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey9a2c2a62013-01-14 16:48:51 -08001891 try {
Dianne Hackbornd0c5b9a2014-02-21 16:19:05 -08001892 return mStatsFactory.readNetworkStatsDetail(uid, null, TAG_ALL, null);
Jeff Sharkey9a2c2a62013-01-14 16:48:51 -08001893 } catch (IOException e) {
1894 throw new IllegalStateException(e);
1895 }
Jeff Sharkeyeedcb952011-05-17 14:55:15 -07001896 }
1897
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -07001898 @Override
Jeff Sharkeye4984be2013-09-10 21:03:27 -07001899 public NetworkStats getNetworkStatsTethering() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001900 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -07001901
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -07001902 final NetworkStats stats = new NetworkStats(SystemClock.elapsedRealtime(), 1);
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -07001903 try {
Jeff Sharkeye4984be2013-09-10 21:03:27 -07001904 final NativeDaemonEvent[] events = mConnector.executeForList(
1905 "bandwidth", "gettetherstats");
1906 for (NativeDaemonEvent event : events) {
1907 if (event.getCode() != TetheringStatsListResult) continue;
1908
1909 // 114 ifaceIn ifaceOut rx_bytes rx_packets tx_bytes tx_packets
1910 final StringTokenizer tok = new StringTokenizer(event.getMessage());
1911 try {
1912 final String ifaceIn = tok.nextToken();
1913 final String ifaceOut = tok.nextToken();
1914
1915 final NetworkStats.Entry entry = new NetworkStats.Entry();
1916 entry.iface = ifaceOut;
1917 entry.uid = UID_TETHERING;
1918 entry.set = SET_DEFAULT;
1919 entry.tag = TAG_NONE;
1920 entry.rxBytes = Long.parseLong(tok.nextToken());
1921 entry.rxPackets = Long.parseLong(tok.nextToken());
1922 entry.txBytes = Long.parseLong(tok.nextToken());
1923 entry.txPackets = Long.parseLong(tok.nextToken());
1924 stats.combineValues(entry);
1925 } catch (NoSuchElementException e) {
1926 throw new IllegalStateException("problem parsing tethering stats: " + event);
1927 } catch (NumberFormatException e) {
1928 throw new IllegalStateException("problem parsing tethering stats: " + event);
1929 }
1930 }
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -07001931 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001932 throw e.rethrowAsParcelableException();
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -07001933 }
Jeff Sharkeye4984be2013-09-10 21:03:27 -07001934 return stats;
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -07001935 }
1936
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001937 @Override
Pierre Imai8e48e672016-04-21 13:30:43 +09001938 public void setDnsConfigurationForNetwork(int netId, String[] servers, String domains) {
1939 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1940
1941 ContentResolver resolver = mContext.getContentResolver();
1942
1943 int sampleValidity = Settings.Global.getInt(resolver,
1944 Settings.Global.DNS_RESOLVER_SAMPLE_VALIDITY_SECONDS,
1945 DNS_RESOLVER_DEFAULT_SAMPLE_VALIDITY_SECONDS);
1946 if (sampleValidity < 0 || sampleValidity > 65535) {
1947 Slog.w(TAG, "Invalid sampleValidity=" + sampleValidity + ", using default=" +
1948 DNS_RESOLVER_DEFAULT_SAMPLE_VALIDITY_SECONDS);
1949 sampleValidity = DNS_RESOLVER_DEFAULT_SAMPLE_VALIDITY_SECONDS;
1950 }
1951
1952 int successThreshold = Settings.Global.getInt(resolver,
1953 Settings.Global.DNS_RESOLVER_SUCCESS_THRESHOLD_PERCENT,
1954 DNS_RESOLVER_DEFAULT_SUCCESS_THRESHOLD_PERCENT);
1955 if (successThreshold < 0 || successThreshold > 100) {
1956 Slog.w(TAG, "Invalid successThreshold=" + successThreshold + ", using default=" +
1957 DNS_RESOLVER_DEFAULT_SUCCESS_THRESHOLD_PERCENT);
1958 successThreshold = DNS_RESOLVER_DEFAULT_SUCCESS_THRESHOLD_PERCENT;
1959 }
1960
1961 int minSamples = Settings.Global.getInt(resolver,
1962 Settings.Global.DNS_RESOLVER_MIN_SAMPLES, DNS_RESOLVER_DEFAULT_MIN_SAMPLES);
1963 int maxSamples = Settings.Global.getInt(resolver,
1964 Settings.Global.DNS_RESOLVER_MAX_SAMPLES, DNS_RESOLVER_DEFAULT_MAX_SAMPLES);
1965 if (minSamples < 0 || minSamples > maxSamples || maxSamples > 64) {
1966 Slog.w(TAG, "Invalid sample count (min, max)=(" + minSamples + ", " + maxSamples +
1967 "), using default=(" + DNS_RESOLVER_DEFAULT_MIN_SAMPLES + ", " +
1968 DNS_RESOLVER_DEFAULT_MAX_SAMPLES + ")");
1969 minSamples = DNS_RESOLVER_DEFAULT_MIN_SAMPLES;
1970 maxSamples = DNS_RESOLVER_DEFAULT_MAX_SAMPLES;
1971 }
1972
1973 final String[] domainStrs = domains == null ? new String[0] : domains.split(" ");
1974 final int[] params = { sampleValidity, successThreshold, minSamples, maxSamples };
1975 try {
1976 mNetdService.setResolverConfiguration(netId, servers, domainStrs, params);
1977 } catch (RemoteException e) {
1978 throw new RuntimeException(e);
1979 }
1980 }
1981
1982 @Override
Paul Jensen13e817d2014-04-10 14:16:37 -04001983 public void setDnsServersForNetwork(int netId, String[] servers, String domains) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001984 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001985
Lorenzo Colitti829dfa72014-11-28 20:07:46 +09001986 Command cmd;
1987 if (servers.length > 0) {
1988 cmd = new Command("resolver", "setnetdns", netId,
1989 (domains == null ? "" : domains));
1990 for (String s : servers) {
1991 InetAddress a = NetworkUtils.numericToInetAddress(s);
1992 if (a.isAnyLocalAddress() == false) {
1993 cmd.appendArg(a.getHostAddress());
1994 }
Mattias Falk7475c0c2011-04-04 16:10:36 +02001995 }
Lorenzo Colitti829dfa72014-11-28 20:07:46 +09001996 } else {
1997 cmd = new Command("resolver", "clearnetdns", netId);
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001998 }
1999
2000 try {
2001 mConnector.execute(cmd);
Mattias Falk7475c0c2011-04-04 16:10:36 +02002002 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08002003 throw e.rethrowAsParcelableException();
Mattias Falk7475c0c2011-04-04 16:10:36 +02002004 }
2005 }
2006
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08002007 @Override
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04002008 public void addVpnUidRanges(int netId, UidRange[] ranges) {
Chad Brubaker3277620a2013-06-12 13:37:30 -07002009 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04002010 Object[] argv = new Object[3 + MAX_UID_RANGES_PER_COMMAND];
2011 argv[0] = "users";
2012 argv[1] = "add";
2013 argv[2] = netId;
2014 int argc = 3;
2015 // Avoid overly long commands by limiting number of UID ranges per command.
2016 for (int i = 0; i < ranges.length; i++) {
2017 argv[argc++] = ranges[i].toString();
2018 if (i == (ranges.length - 1) || argc == argv.length) {
2019 try {
2020 mConnector.execute("network", Arrays.copyOf(argv, argc));
2021 } catch (NativeDaemonConnectorException e) {
2022 throw e.rethrowAsParcelableException();
2023 }
2024 argc = 3;
2025 }
Chad Brubaker3277620a2013-06-12 13:37:30 -07002026 }
2027 }
2028
2029 @Override
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04002030 public void removeVpnUidRanges(int netId, UidRange[] ranges) {
Chad Brubaker3277620a2013-06-12 13:37:30 -07002031 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04002032 Object[] argv = new Object[3 + MAX_UID_RANGES_PER_COMMAND];
2033 argv[0] = "users";
2034 argv[1] = "remove";
2035 argv[2] = netId;
2036 int argc = 3;
2037 // Avoid overly long commands by limiting number of UID ranges per command.
2038 for (int i = 0; i < ranges.length; i++) {
2039 argv[argc++] = ranges[i].toString();
2040 if (i == (ranges.length - 1) || argc == argv.length) {
2041 try {
2042 mConnector.execute("network", Arrays.copyOf(argv, argc));
2043 } catch (NativeDaemonConnectorException e) {
2044 throw e.rethrowAsParcelableException();
2045 }
2046 argc = 3;
2047 }
Chad Brubakercca54c42013-06-27 17:41:38 -07002048 }
2049 }
2050
2051 @Override
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002052 public void setFirewallEnabled(boolean enabled) {
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07002053 enforceSystemUid();
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002054 try {
Amith Yamasani15e472352015-04-24 19:06:07 -07002055 mConnector.execute("firewall", "enable", enabled ? "whitelist" : "blacklist");
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002056 mFirewallEnabled = enabled;
2057 } catch (NativeDaemonConnectorException e) {
2058 throw e.rethrowAsParcelableException();
2059 }
2060 }
2061
2062 @Override
2063 public boolean isFirewallEnabled() {
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07002064 enforceSystemUid();
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002065 return mFirewallEnabled;
2066 }
2067
2068 @Override
Jeff Sharkey2c092982012-08-24 11:44:40 -07002069 public void setFirewallInterfaceRule(String iface, boolean allow) {
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07002070 enforceSystemUid();
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002071 Preconditions.checkState(mFirewallEnabled);
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002072 final String rule = allow ? "allow" : "deny";
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002073 try {
2074 mConnector.execute("firewall", "set_interface_rule", iface, rule);
2075 } catch (NativeDaemonConnectorException e) {
2076 throw e.rethrowAsParcelableException();
2077 }
2078 }
2079
2080 @Override
Jeff Sharkey2c092982012-08-24 11:44:40 -07002081 public void setFirewallEgressSourceRule(String addr, boolean allow) {
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07002082 enforceSystemUid();
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002083 Preconditions.checkState(mFirewallEnabled);
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002084 final String rule = allow ? "allow" : "deny";
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002085 try {
2086 mConnector.execute("firewall", "set_egress_source_rule", addr, rule);
2087 } catch (NativeDaemonConnectorException e) {
2088 throw e.rethrowAsParcelableException();
2089 }
2090 }
2091
2092 @Override
Jeff Sharkey2c092982012-08-24 11:44:40 -07002093 public void setFirewallEgressDestRule(String addr, int port, boolean allow) {
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07002094 enforceSystemUid();
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002095 Preconditions.checkState(mFirewallEnabled);
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002096 final String rule = allow ? "allow" : "deny";
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002097 try {
2098 mConnector.execute("firewall", "set_egress_dest_rule", addr, port, rule);
2099 } catch (NativeDaemonConnectorException e) {
2100 throw e.rethrowAsParcelableException();
2101 }
2102 }
2103
Lorenzo Colitti4cb42402016-04-24 12:52:00 +09002104 private void closeSocketsForFirewallChain(int chain, String chainName) {
2105 // UID ranges to close sockets on.
2106 UidRange[] ranges;
2107 // UID ranges whose sockets we won't touch.
2108 int[] exemptUids;
2109
2110 SparseIntArray rules = getUidFirewallRules(chain);
2111 int numUids = 0;
2112
2113 if (getFirewallType(chain) == FIREWALL_TYPE_WHITELIST) {
2114 // Close all sockets on all non-system UIDs...
2115 ranges = new UidRange[] {
2116 // TODO: is there a better way of finding all existing users? If so, we could
2117 // specify their ranges here.
2118 new UidRange(Process.FIRST_APPLICATION_UID, Integer.MAX_VALUE),
2119 };
2120 // ... except for the UIDs that have allow rules.
2121 exemptUids = new int[rules.size()];
2122 for (int i = 0; i < exemptUids.length; i++) {
2123 if (rules.valueAt(i) == NetworkPolicyManager.FIREWALL_RULE_ALLOW) {
2124 exemptUids[numUids] = rules.keyAt(i);
2125 numUids++;
2126 }
2127 }
2128 // Normally, whitelist chains only contain deny rules, so numUids == exemptUids.length.
2129 // But the code does not guarantee this in any way, and at least in one case - if we add
2130 // a UID rule to the firewall, and then disable the firewall - the chains can contain
2131 // the wrong type of rule. In this case, don't close connections that we shouldn't.
2132 //
2133 // TODO: tighten up this code by ensuring we never set the wrong type of rule, and
2134 // fix setFirewallEnabled to grab mQuotaLock and clear rules.
2135 if (numUids != exemptUids.length) {
2136 exemptUids = Arrays.copyOf(exemptUids, numUids);
2137 }
2138 } else {
2139 // Close sockets for every UID that has a deny rule...
2140 ranges = new UidRange[rules.size()];
2141 for (int i = 0; i < ranges.length; i++) {
2142 if (rules.valueAt(i) == NetworkPolicyManager.FIREWALL_RULE_DENY) {
2143 int uid = rules.keyAt(i);
2144 ranges[numUids] = new UidRange(uid, uid);
2145 numUids++;
2146 }
2147 }
2148 // As above; usually numUids == ranges.length, but not always.
2149 if (numUids != ranges.length) {
2150 ranges = Arrays.copyOf(ranges, numUids);
2151 }
2152 // ... with no exceptions.
2153 exemptUids = new int[0];
2154 }
2155
2156 try {
2157 mNetdService.socketDestroy(ranges, exemptUids);
2158 } catch(RemoteException | ServiceSpecificException e) {
2159 Slog.e(TAG, "Error closing sockets after enabling chain " + chainName + ": " + e);
2160 }
2161 }
2162
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002163 @Override
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002164 public void setFirewallChainEnabled(int chain, boolean enable) {
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07002165 enforceSystemUid();
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002166 synchronized (mQuotaLock) {
Xiaohui Chen896b49a2015-07-29 14:12:22 -07002167 if (mFirewallChainStates.get(chain) == enable) {
2168 // All is the same, nothing to do. This relies on the fact that netd has child
2169 // chains default detached.
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002170 return;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002171 }
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002172 mFirewallChainStates.put(chain, enable);
2173
2174 final String operation = enable ? "enable_chain" : "disable_chain";
Lorenzo Colitti4cb42402016-04-24 12:52:00 +09002175 String chainName;
2176 switch(chain) {
2177 case FIREWALL_CHAIN_STANDBY:
2178 chainName = FIREWALL_CHAIN_NAME_STANDBY;
2179 break;
2180 case FIREWALL_CHAIN_DOZABLE:
2181 chainName = FIREWALL_CHAIN_NAME_DOZABLE;
2182 break;
2183 case FIREWALL_CHAIN_POWERSAVE:
2184 chainName = FIREWALL_CHAIN_NAME_POWERSAVE;
2185 break;
2186 default:
2187 throw new IllegalArgumentException("Bad child chain: " + chain);
2188 }
2189
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002190 try {
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002191 mConnector.execute("firewall", operation, chainName);
2192 } catch (NativeDaemonConnectorException e) {
2193 throw e.rethrowAsParcelableException();
2194 }
Lorenzo Colitti4cb42402016-04-24 12:52:00 +09002195
2196 // Close any sockets that were opened by the affected UIDs. This has to be done after
2197 // disabling network connectivity, in case they react to the socket close by reopening
2198 // the connection and race with the iptables commands that enable the firewall. All
2199 // whitelist and blacklist chains allow RSTs through.
2200 if (enable) {
2201 if (DBG) Slog.d(TAG, "Closing sockets after enabling chain " + chainName);
2202 closeSocketsForFirewallChain(chain, chainName);
2203 }
Amith Yamasani15e472352015-04-24 19:06:07 -07002204 }
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002205 }
2206
2207 private int getFirewallType(int chain) {
2208 switch (chain) {
2209 case FIREWALL_CHAIN_STANDBY:
2210 return FIREWALL_TYPE_BLACKLIST;
2211 case FIREWALL_CHAIN_DOZABLE:
2212 return FIREWALL_TYPE_WHITELIST;
Felipe Leme011b98f2016-02-10 17:28:31 -08002213 case FIREWALL_CHAIN_POWERSAVE:
2214 return FIREWALL_TYPE_WHITELIST;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002215 default:
2216 return isFirewallEnabled() ? FIREWALL_TYPE_WHITELIST : FIREWALL_TYPE_BLACKLIST;
2217 }
2218 }
2219
2220 @Override
2221 public void setFirewallUidRules(int chain, int[] uids, int[] rules) {
2222 enforceSystemUid();
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002223 synchronized (mQuotaLock) {
2224 SparseIntArray uidFirewallRules = getUidFirewallRules(chain);
2225 SparseIntArray newRules = new SparseIntArray();
2226 // apply new set of rules
2227 for (int index = uids.length - 1; index >= 0; --index) {
2228 int uid = uids[index];
2229 int rule = rules[index];
2230 setFirewallUidRule(chain, uid, rule);
2231 newRules.put(uid, rule);
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002232 }
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002233 // collect the rules to remove.
2234 SparseIntArray rulesToRemove = new SparseIntArray();
2235 for (int index = uidFirewallRules.size() - 1; index >= 0; --index) {
2236 int uid = uidFirewallRules.keyAt(index);
2237 if (newRules.indexOfKey(uid) < 0) {
2238 rulesToRemove.put(uid, FIREWALL_RULE_DEFAULT);
2239 }
2240 }
2241 // remove dead rules
2242 for (int index = rulesToRemove.size() - 1; index >= 0; --index) {
2243 int uid = rulesToRemove.keyAt(index);
2244 setFirewallUidRuleInternal(chain, uid, FIREWALL_RULE_DEFAULT);
2245 }
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002246 }
2247 }
2248
2249 @Override
2250 public void setFirewallUidRule(int chain, int uid, int rule) {
2251 enforceSystemUid();
2252 setFirewallUidRuleInternal(chain, uid, rule);
2253 }
2254
2255 private void setFirewallUidRuleInternal(int chain, int uid, int rule) {
Amith Yamasani15e472352015-04-24 19:06:07 -07002256 synchronized (mQuotaLock) {
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002257 SparseIntArray uidFirewallRules = getUidFirewallRules(chain);
2258
2259 final int oldUidFirewallRule = uidFirewallRules.get(uid, FIREWALL_RULE_DEFAULT);
Amith Yamasani15e472352015-04-24 19:06:07 -07002260 if (DBG) {
2261 Slog.d(TAG, "oldRule = " + oldUidFirewallRule
Felipe Leme47585ba2016-02-09 16:56:32 -08002262 + ", newRule=" + rule + " for uid=" + uid + " on chain " + chain);
Amith Yamasani15e472352015-04-24 19:06:07 -07002263 }
2264 if (oldUidFirewallRule == rule) {
2265 if (DBG) Slog.d(TAG, "!!!!! Skipping change");
2266 // TODO: eventually consider throwing
2267 return;
2268 }
2269
2270 try {
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002271 String ruleName = getFirewallRuleName(chain, rule);
2272 String oldRuleName = getFirewallRuleName(chain, oldUidFirewallRule);
Amith Yamasani15e472352015-04-24 19:06:07 -07002273
2274 if (rule == NetworkPolicyManager.FIREWALL_RULE_DEFAULT) {
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002275 uidFirewallRules.delete(uid);
Amith Yamasani15e472352015-04-24 19:06:07 -07002276 } else {
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002277 uidFirewallRules.put(uid, rule);
Amith Yamasani15e472352015-04-24 19:06:07 -07002278 }
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002279
2280 if (!ruleName.equals(oldRuleName)) {
2281 mConnector.execute("firewall", "set_uid_rule", getFirewallChainName(chain), uid,
2282 ruleName);
2283 }
Amith Yamasani15e472352015-04-24 19:06:07 -07002284 } catch (NativeDaemonConnectorException e) {
2285 throw e.rethrowAsParcelableException();
2286 }
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002287 }
2288 }
2289
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002290 private @NonNull String getFirewallRuleName(int chain, int rule) {
2291 String ruleName;
2292 if (getFirewallType(chain) == FIREWALL_TYPE_WHITELIST) {
2293 if (rule == NetworkPolicyManager.FIREWALL_RULE_ALLOW) {
2294 ruleName = "allow";
2295 } else {
2296 ruleName = "deny";
2297 }
2298 } else { // Blacklist mode
2299 if (rule == NetworkPolicyManager.FIREWALL_RULE_DENY) {
2300 ruleName = "deny";
2301 } else {
2302 ruleName = "allow";
2303 }
2304 }
2305 return ruleName;
2306 }
2307
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002308 private @NonNull SparseIntArray getUidFirewallRules(int chain) {
2309 switch (chain) {
2310 case FIREWALL_CHAIN_STANDBY:
2311 return mUidFirewallStandbyRules;
2312 case FIREWALL_CHAIN_DOZABLE:
2313 return mUidFirewallDozableRules;
Felipe Leme011b98f2016-02-10 17:28:31 -08002314 case FIREWALL_CHAIN_POWERSAVE:
2315 return mUidFirewallPowerSaveRules;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002316 case FIREWALL_CHAIN_NONE:
2317 return mUidFirewallRules;
2318 default:
2319 throw new IllegalArgumentException("Unknown chain:" + chain);
2320 }
2321 }
2322
2323 public @NonNull String getFirewallChainName(int chain) {
2324 switch (chain) {
2325 case FIREWALL_CHAIN_STANDBY:
2326 return FIREWALL_CHAIN_NAME_STANDBY;
2327 case FIREWALL_CHAIN_DOZABLE:
2328 return FIREWALL_CHAIN_NAME_DOZABLE;
Felipe Leme011b98f2016-02-10 17:28:31 -08002329 case FIREWALL_CHAIN_POWERSAVE:
2330 return FIREWALL_CHAIN_NAME_POWERSAVE;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002331 case FIREWALL_CHAIN_NONE:
2332 return FIREWALL_CHAIN_NAME_NONE;
2333 default:
2334 throw new IllegalArgumentException("Unknown chain:" + chain);
2335 }
2336 }
2337
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07002338 private static void enforceSystemUid() {
2339 final int uid = Binder.getCallingUid();
2340 if (uid != Process.SYSTEM_UID) {
2341 throw new SecurityException("Only available to AID_SYSTEM");
2342 }
2343 }
2344
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002345 @Override
Lorenzo Colitti79751842013-02-28 16:16:03 +09002346 public void startClatd(String interfaceName) throws IllegalStateException {
2347 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2348
2349 try {
2350 mConnector.execute("clatd", "start", interfaceName);
2351 } catch (NativeDaemonConnectorException e) {
2352 throw e.rethrowAsParcelableException();
2353 }
2354 }
2355
2356 @Override
Lorenzo Colitti95439462014-10-09 13:44:48 +09002357 public void stopClatd(String interfaceName) throws IllegalStateException {
Lorenzo Colitti79751842013-02-28 16:16:03 +09002358 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2359
2360 try {
Lorenzo Colitti95439462014-10-09 13:44:48 +09002361 mConnector.execute("clatd", "stop", interfaceName);
Lorenzo Colitti79751842013-02-28 16:16:03 +09002362 } catch (NativeDaemonConnectorException e) {
2363 throw e.rethrowAsParcelableException();
2364 }
2365 }
2366
2367 @Override
Lorenzo Colitti95439462014-10-09 13:44:48 +09002368 public boolean isClatdStarted(String interfaceName) {
Lorenzo Colitti79751842013-02-28 16:16:03 +09002369 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2370
2371 final NativeDaemonEvent event;
2372 try {
Lorenzo Colitti95439462014-10-09 13:44:48 +09002373 event = mConnector.execute("clatd", "status", interfaceName);
Lorenzo Colitti79751842013-02-28 16:16:03 +09002374 } catch (NativeDaemonConnectorException e) {
2375 throw e.rethrowAsParcelableException();
2376 }
2377
2378 event.checkCode(ClatdStatusResult);
2379 return event.getMessage().endsWith("started");
2380 }
2381
Dianne Hackborn77b987f2014-02-26 16:20:52 -08002382 @Override
2383 public void registerNetworkActivityListener(INetworkActivityListener listener) {
2384 mNetworkActivityListeners.register(listener);
2385 }
2386
2387 @Override
2388 public void unregisterNetworkActivityListener(INetworkActivityListener listener) {
2389 mNetworkActivityListeners.unregister(listener);
2390 }
2391
2392 @Override
2393 public boolean isNetworkActive() {
2394 synchronized (mNetworkActivityListeners) {
2395 return mNetworkActive || mActiveIdleTimers.isEmpty();
2396 }
2397 }
2398
2399 private void reportNetworkActive() {
2400 final int length = mNetworkActivityListeners.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -07002401 try {
2402 for (int i = 0; i < length; i++) {
2403 try {
2404 mNetworkActivityListeners.getBroadcastItem(i).onNetworkActive();
Felipe Leme03e689d2016-03-02 16:17:38 -08002405 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -07002406 }
Dianne Hackborn77b987f2014-02-26 16:20:52 -08002407 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -07002408 } finally {
2409 mNetworkActivityListeners.finishBroadcast();
Dianne Hackborn77b987f2014-02-26 16:20:52 -08002410 }
Dianne Hackborn77b987f2014-02-26 16:20:52 -08002411 }
2412
Mattias Falk8b47b362011-08-23 14:15:13 +02002413 /** {@inheritDoc} */
Jeff Sharkey7b4596f2013-02-25 10:55:29 -08002414 @Override
Jeff Sharkeyfa23c5a2011-08-09 21:44:24 -07002415 public void monitor() {
2416 if (mConnector != null) {
2417 mConnector.monitor();
2418 }
2419 }
Jeff Sharkey47eb1022011-08-25 17:48:52 -07002420
2421 @Override
2422 protected void dump(FileDescriptor fd, PrintWriter pw, String[] args) {
2423 mContext.enforceCallingOrSelfPermission(DUMP, TAG);
2424
Robert Greenwalt470fd722012-01-18 12:51:15 -08002425 pw.println("NetworkManagementService NativeDaemonConnector Log:");
2426 mConnector.dump(fd, pw, args);
2427 pw.println();
2428
Jeff Sharkey47eb1022011-08-25 17:48:52 -07002429 pw.print("Bandwidth control enabled: "); pw.println(mBandwidthControlEnabled);
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -07002430 pw.print("mMobileActivityFromRadio="); pw.print(mMobileActivityFromRadio);
2431 pw.print(" mLastPowerStateFromRadio="); pw.println(mLastPowerStateFromRadio);
2432 pw.print("mNetworkActive="); pw.println(mNetworkActive);
Jeff Sharkey47eb1022011-08-25 17:48:52 -07002433
2434 synchronized (mQuotaLock) {
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07002435 pw.print("Active quota ifaces: "); pw.println(mActiveQuotas.toString());
2436 pw.print("Active alert ifaces: "); pw.println(mActiveAlerts.toString());
Felipe Leme65be3022016-03-22 14:53:13 -07002437 pw.print("Data saver mode: "); pw.println(mDataSaverMode);
2438 dumpUidRuleOnQuotaLocked(pw, "blacklist", mUidRejectOnMetered);
2439 dumpUidRuleOnQuotaLocked(pw, "whitelist", mUidAllowOnMetered);
Jeff Sharkey47eb1022011-08-25 17:48:52 -07002440 }
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002441
Amith Yamasani15e472352015-04-24 19:06:07 -07002442 synchronized (mUidFirewallRules) {
Felipe Leme011b98f2016-02-10 17:28:31 -08002443 dumpUidFirewallRule(pw, "", mUidFirewallRules);
Amith Yamasani15e472352015-04-24 19:06:07 -07002444 }
2445
Felipe Leme65be3022016-03-22 14:53:13 -07002446 pw.print("UID firewall standby chain enabled: "); pw.println(
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002447 mFirewallChainStates.get(FIREWALL_CHAIN_STANDBY));
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002448 synchronized (mUidFirewallStandbyRules) {
Felipe Leme011b98f2016-02-10 17:28:31 -08002449 dumpUidFirewallRule(pw, FIREWALL_CHAIN_NAME_STANDBY, mUidFirewallStandbyRules);
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002450 }
2451
Felipe Leme65be3022016-03-22 14:53:13 -07002452 pw.print("UID firewall dozable chain enabled: "); pw.println(
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002453 mFirewallChainStates.get(FIREWALL_CHAIN_DOZABLE));
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002454 synchronized (mUidFirewallDozableRules) {
Felipe Leme011b98f2016-02-10 17:28:31 -08002455 dumpUidFirewallRule(pw, FIREWALL_CHAIN_NAME_DOZABLE, mUidFirewallDozableRules);
2456 }
2457
2458 pw.println("UID firewall powersave chain enabled: " +
2459 mFirewallChainStates.get(FIREWALL_CHAIN_POWERSAVE));
2460 synchronized (mUidFirewallPowerSaveRules) {
2461 dumpUidFirewallRule(pw, FIREWALL_CHAIN_NAME_POWERSAVE, mUidFirewallPowerSaveRules);
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002462 }
2463
Dianne Hackborn77b987f2014-02-26 16:20:52 -08002464 synchronized (mIdleTimerLock) {
2465 pw.println("Idle timers:");
2466 for (HashMap.Entry<String, IdleTimerParams> ent : mActiveIdleTimers.entrySet()) {
2467 pw.print(" "); pw.print(ent.getKey()); pw.println(":");
2468 IdleTimerParams params = ent.getValue();
2469 pw.print(" timeout="); pw.print(params.timeout);
2470 pw.print(" type="); pw.print(params.type);
2471 pw.print(" networkCount="); pw.println(params.networkCount);
2472 }
2473 }
2474
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002475 pw.print("Firewall enabled: "); pw.println(mFirewallEnabled);
Felipe Leme65be3022016-03-22 14:53:13 -07002476 pw.print("Netd service status: " );
2477 if (mNetdService == null) {
2478 pw.println("disconnected");
2479 } else {
2480 try {
2481 final boolean alive = mNetdService.isAlive();
2482 pw.println(alive ? "alive": "dead");
2483 } catch (RemoteException e) {
2484 pw.println("unreachable");
2485 }
2486 }
2487 }
2488
2489 private void dumpUidRuleOnQuotaLocked(PrintWriter pw, String name, SparseBooleanArray list) {
2490 pw.print("UID bandwith control ");
2491 pw.print(name);
2492 pw.print(" rule: [");
2493 final int size = list.size();
2494 for (int i = 0; i < size; i++) {
2495 pw.print(list.keyAt(i));
2496 if (i < size - 1) pw.print(",");
2497 }
2498 pw.println("]");
Jeff Sharkey47eb1022011-08-25 17:48:52 -07002499 }
Robert Greenwalt9ba9c582014-03-19 17:56:12 -07002500
Felipe Leme011b98f2016-02-10 17:28:31 -08002501 private void dumpUidFirewallRule(PrintWriter pw, String name, SparseIntArray rules) {
Lorenzo Colitti4cb42402016-04-24 12:52:00 +09002502 pw.print("UID firewall ");
Felipe Leme011b98f2016-02-10 17:28:31 -08002503 pw.print(name);
2504 pw.print(" rule: [");
2505 final int size = rules.size();
2506 for (int i = 0; i < size; i++) {
2507 pw.print(rules.keyAt(i));
2508 pw.print(":");
2509 pw.print(rules.valueAt(i));
2510 if (i < size - 1) pw.print(",");
2511 }
2512 pw.println("]");
2513 }
2514
Robert Greenwalt568891d2014-04-04 13:38:00 -07002515 @Override
Paul Jensen487ffe72015-07-24 15:57:11 -04002516 public void createPhysicalNetwork(int netId, String permission) {
Robert Greenwalt9ba9c582014-03-19 17:56:12 -07002517 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2518
2519 try {
Paul Jensen487ffe72015-07-24 15:57:11 -04002520 if (permission != null) {
2521 mConnector.execute("network", "create", netId, permission);
2522 } else {
2523 mConnector.execute("network", "create", netId);
2524 }
Robert Greenwalt9ba9c582014-03-19 17:56:12 -07002525 } catch (NativeDaemonConnectorException e) {
2526 throw e.rethrowAsParcelableException();
2527 }
2528 }
2529
Robert Greenwalt568891d2014-04-04 13:38:00 -07002530 @Override
Sreeram Ramachandran8cd33ed2014-07-23 15:23:15 -07002531 public void createVirtualNetwork(int netId, boolean hasDNS, boolean secure) {
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04002532 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2533
2534 try {
Sreeram Ramachandran8cd33ed2014-07-23 15:23:15 -07002535 mConnector.execute("network", "create", netId, "vpn", hasDNS ? "1" : "0",
2536 secure ? "1" : "0");
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04002537 } catch (NativeDaemonConnectorException e) {
2538 throw e.rethrowAsParcelableException();
2539 }
2540 }
2541
2542 @Override
Robert Greenwalt9ba9c582014-03-19 17:56:12 -07002543 public void removeNetwork(int netId) {
2544 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2545
2546 try {
2547 mConnector.execute("network", "destroy", netId);
2548 } catch (NativeDaemonConnectorException e) {
2549 throw e.rethrowAsParcelableException();
2550 }
2551 }
Robert Greenwalt568891d2014-04-04 13:38:00 -07002552
2553 @Override
Paul Jensen992f2522014-04-28 10:33:11 -04002554 public void addInterfaceToNetwork(String iface, int netId) {
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002555 modifyInterfaceInNetwork("add", "" + netId, iface);
Paul Jensen992f2522014-04-28 10:33:11 -04002556 }
2557
2558 @Override
2559 public void removeInterfaceFromNetwork(String iface, int netId) {
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002560 modifyInterfaceInNetwork("remove", "" + netId, iface);
2561 }
Paul Jensen992f2522014-04-28 10:33:11 -04002562
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002563 private void modifyInterfaceInNetwork(String action, String netId, String iface) {
2564 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Paul Jensen992f2522014-04-28 10:33:11 -04002565 try {
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002566 mConnector.execute("network", "interface", action, netId, iface);
Paul Jensen992f2522014-04-28 10:33:11 -04002567 } catch (NativeDaemonConnectorException e) {
2568 throw e.rethrowAsParcelableException();
2569 }
2570 }
2571
2572 @Override
Robert Greenwalt913c8952014-04-07 17:36:35 -07002573 public void addLegacyRouteForNetId(int netId, RouteInfo routeInfo, int uid) {
Robert Greenwalt568891d2014-04-04 13:38:00 -07002574 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2575
Sreeram Ramachandran03666c72014-07-19 23:21:46 -07002576 final Command cmd = new Command("network", "route", "legacy", uid, "add", netId);
Robert Greenwalt568891d2014-04-04 13:38:00 -07002577
Sreeram Ramachandran1fbcb272014-05-22 16:30:48 -07002578 // create triplet: interface dest-ip-addr/prefixlength gateway-ip-addr
Sreeram Ramachandrancc91c7b2014-06-03 18:41:43 -07002579 final LinkAddress la = routeInfo.getDestinationLinkAddress();
Robert Greenwalt568891d2014-04-04 13:38:00 -07002580 cmd.appendArg(routeInfo.getInterface());
Lorenzo Colitti7dc78cf2014-06-09 22:58:46 +09002581 cmd.appendArg(la.getAddress().getHostAddress() + "/" + la.getPrefixLength());
Sreeram Ramachandran1fbcb272014-05-22 16:30:48 -07002582 if (routeInfo.hasGateway()) {
2583 cmd.appendArg(routeInfo.getGateway().getHostAddress());
2584 }
Robert Greenwalt568891d2014-04-04 13:38:00 -07002585
2586 try {
2587 mConnector.execute(cmd);
2588 } catch (NativeDaemonConnectorException e) {
2589 throw e.rethrowAsParcelableException();
2590 }
2591 }
2592
2593 @Override
Sreeram Ramachandranf047f2a2014-04-15 16:04:26 -07002594 public void setDefaultNetId(int netId) {
Robert Greenwalt568891d2014-04-04 13:38:00 -07002595 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2596
2597 try {
Sreeram Ramachandranf047f2a2014-04-15 16:04:26 -07002598 mConnector.execute("network", "default", "set", netId);
Robert Greenwalt568891d2014-04-04 13:38:00 -07002599 } catch (NativeDaemonConnectorException e) {
2600 throw e.rethrowAsParcelableException();
2601 }
2602 }
2603
2604 @Override
2605 public void clearDefaultNetId() {
2606 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2607
2608 try {
2609 mConnector.execute("network", "default", "clear");
2610 } catch (NativeDaemonConnectorException e) {
2611 throw e.rethrowAsParcelableException();
2612 }
2613 }
2614
2615 @Override
Paul Jensen487ffe72015-07-24 15:57:11 -04002616 public void setNetworkPermission(int netId, String permission) {
2617 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2618
2619 try {
2620 if (permission != null) {
2621 mConnector.execute("network", "permission", "network", "set", permission, netId);
2622 } else {
2623 mConnector.execute("network", "permission", "network", "clear", netId);
2624 }
2625 } catch (NativeDaemonConnectorException e) {
2626 throw e.rethrowAsParcelableException();
2627 }
2628 }
2629
2630
2631 @Override
Sreeram Ramachandrane4a05af2014-09-24 09:16:19 -07002632 public void setPermission(String permission, int[] uids) {
Robert Greenwalt568891d2014-04-04 13:38:00 -07002633 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2634
Sreeram Ramachandrane4a05af2014-09-24 09:16:19 -07002635 Object[] argv = new Object[4 + MAX_UID_RANGES_PER_COMMAND];
2636 argv[0] = "permission";
2637 argv[1] = "user";
2638 argv[2] = "set";
2639 argv[3] = permission;
2640 int argc = 4;
2641 // Avoid overly long commands by limiting number of UIDs per command.
2642 for (int i = 0; i < uids.length; ++i) {
2643 argv[argc++] = uids[i];
2644 if (i == uids.length - 1 || argc == argv.length) {
2645 try {
2646 mConnector.execute("network", Arrays.copyOf(argv, argc));
2647 } catch (NativeDaemonConnectorException e) {
2648 throw e.rethrowAsParcelableException();
2649 }
2650 argc = 4;
2651 }
Robert Greenwalt568891d2014-04-04 13:38:00 -07002652 }
2653 }
2654
2655 @Override
2656 public void clearPermission(int[] uids) {
2657 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2658
Sreeram Ramachandrane4a05af2014-09-24 09:16:19 -07002659 Object[] argv = new Object[3 + MAX_UID_RANGES_PER_COMMAND];
2660 argv[0] = "permission";
2661 argv[1] = "user";
2662 argv[2] = "clear";
2663 int argc = 3;
2664 // Avoid overly long commands by limiting number of UIDs per command.
2665 for (int i = 0; i < uids.length; ++i) {
2666 argv[argc++] = uids[i];
2667 if (i == uids.length - 1 || argc == argv.length) {
2668 try {
2669 mConnector.execute("network", Arrays.copyOf(argv, argc));
2670 } catch (NativeDaemonConnectorException e) {
2671 throw e.rethrowAsParcelableException();
2672 }
2673 argc = 3;
2674 }
Robert Greenwalt568891d2014-04-04 13:38:00 -07002675 }
2676 }
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04002677
2678 @Override
2679 public void allowProtect(int uid) {
2680 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2681
2682 try {
2683 mConnector.execute("network", "protect", "allow", uid);
2684 } catch (NativeDaemonConnectorException e) {
2685 throw e.rethrowAsParcelableException();
2686 }
2687 }
2688
2689 @Override
2690 public void denyProtect(int uid) {
2691 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2692
2693 try {
2694 mConnector.execute("network", "protect", "deny", uid);
2695 } catch (NativeDaemonConnectorException e) {
2696 throw e.rethrowAsParcelableException();
2697 }
2698 }
2699
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002700 @Override
2701 public void addInterfaceToLocalNetwork(String iface, List<RouteInfo> routes) {
2702 modifyInterfaceInNetwork("add", "local", iface);
2703
2704 for (RouteInfo route : routes) {
2705 if (!route.isDefaultRoute()) {
2706 modifyRoute("add", "local", route);
2707 }
2708 }
2709 }
2710
2711 @Override
2712 public void removeInterfaceFromLocalNetwork(String iface) {
2713 modifyInterfaceInNetwork("remove", "local", iface);
2714 }
San Mehat873f2142010-01-14 10:25:07 -08002715}