blob: 51e2a70ce2703d10503d918f984e341e4971d39d [file] [log] [blame]
San Mehat873f2142010-01-14 10:25:07 -08001/*
2 * Copyright (C) 2007 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
17package com.android.server;
18
Jeff Sharkey4529bb62011-12-14 10:31:54 -080019import static android.Manifest.permission.CONNECTIVITY_INTERNAL;
Jeff Sharkey47eb1022011-08-25 17:48:52 -070020import static android.Manifest.permission.DUMP;
Lorenzo Colitti07f13042017-07-10 19:06:57 +090021import static android.Manifest.permission.NETWORK_STACK;
Jeff Sharkeyaf75c332011-11-18 12:41:12 -080022import static android.Manifest.permission.SHUTDOWN;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -070023import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_DOZABLE;
24import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_NAME_DOZABLE;
25import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_NAME_NONE;
Felipe Leme011b98f2016-02-10 17:28:31 -080026import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_NAME_POWERSAVE;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -070027import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_NAME_STANDBY;
28import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_NONE;
Felipe Leme011b98f2016-02-10 17:28:31 -080029import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_POWERSAVE;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -070030import static android.net.NetworkPolicyManager.FIREWALL_CHAIN_STANDBY;
31import static android.net.NetworkPolicyManager.FIREWALL_RULE_DEFAULT;
32import static android.net.NetworkPolicyManager.FIREWALL_TYPE_BLACKLIST;
33import static android.net.NetworkPolicyManager.FIREWALL_TYPE_WHITELIST;
Jeff Sharkeyb5d55e32011-08-10 17:53:27 -070034import static android.net.NetworkStats.SET_DEFAULT;
Dianne Hackbornd0c5b9a2014-02-21 16:19:05 -080035import static android.net.NetworkStats.TAG_ALL;
Jeff Sharkey1b5a2a92011-06-18 18:34:16 -070036import static android.net.NetworkStats.TAG_NONE;
37import static android.net.NetworkStats.UID_ALL;
Jeff Sharkeyae2c1812011-10-04 13:11:40 -070038import static android.net.TrafficStats.UID_TETHERING;
Lorenzo Colitti79751842013-02-28 16:16:03 +090039import static com.android.server.NetworkManagementService.NetdResponseCode.ClatdStatusResult;
Jeff Sharkeyba2896e2011-11-30 18:13:54 -080040import static com.android.server.NetworkManagementService.NetdResponseCode.InterfaceGetCfgResult;
41import static com.android.server.NetworkManagementService.NetdResponseCode.InterfaceListResult;
Jeff Sharkeyba2896e2011-11-30 18:13:54 -080042import static com.android.server.NetworkManagementService.NetdResponseCode.IpFwdStatusResult;
43import static com.android.server.NetworkManagementService.NetdResponseCode.TetherDnsFwdTgtListResult;
44import static com.android.server.NetworkManagementService.NetdResponseCode.TetherInterfaceListResult;
45import static com.android.server.NetworkManagementService.NetdResponseCode.TetherStatusResult;
Jeff Sharkeye4984be2013-09-10 21:03:27 -070046import static com.android.server.NetworkManagementService.NetdResponseCode.TetheringStatsListResult;
Jeff Sharkeyba2896e2011-11-30 18:13:54 -080047import static com.android.server.NetworkManagementService.NetdResponseCode.TtyListResult;
Jeff Sharkeya63ba592011-07-19 23:47:12 -070048import static com.android.server.NetworkManagementSocketTagger.PROP_QTAGUID_ENABLED;
Erik Klineb2cfdfb2017-01-18 20:54:14 +090049
Xiaohui Chenb41c9f72015-06-17 15:55:37 -070050import android.annotation.NonNull;
Jeff Sharkey605eb792014-11-04 13:34:06 -080051import android.app.ActivityManagerNative;
Pierre Imai8e48e672016-04-21 13:30:43 +090052import android.content.ContentResolver;
San Mehat873f2142010-01-14 10:25:07 -080053import android.content.Context;
Dianne Hackborn77b987f2014-02-26 16:20:52 -080054import android.net.ConnectivityManager;
Lorenzo Colitti58967ba2016-02-02 17:21:21 +090055import android.net.INetd;
San Mehat4d02d002010-01-22 16:07:46 -080056import android.net.INetworkManagementEventObserver;
Lorenzo Colitti07f13042017-07-10 19:06:57 +090057import android.net.ITetheringStatsProvider;
Jeff Sharkeyeedcb952011-05-17 14:55:15 -070058import android.net.InterfaceConfiguration;
Lorenzo Colittic18cbfd2014-06-13 21:21:03 +090059import android.net.IpPrefix;
Robert Greenwalted126402011-01-28 15:34:55 -080060import android.net.LinkAddress;
Lorenzo Colittib57edc52014-08-22 17:10:50 -070061import android.net.Network;
Amith Yamasani15e472352015-04-24 19:06:07 -070062import android.net.NetworkPolicyManager;
Jeff Sharkeyeedcb952011-05-17 14:55:15 -070063import android.net.NetworkStats;
Robert Greenwalted126402011-01-28 15:34:55 -080064import android.net.NetworkUtils;
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -070065import android.net.RouteInfo;
Paul Jensen6bc2c2c2014-05-07 15:27:40 -040066import android.net.UidRange;
Lorenzo Colitti8c253ad2017-07-19 00:23:44 +090067import android.net.util.NetdService;
Irfan Sheriff9ab518ad2010-03-12 15:48:17 -080068import android.net.wifi.WifiConfiguration;
69import android.net.wifi.WifiConfiguration.KeyMgmt;
Dianne Hackborn91268cf2013-06-13 19:06:50 -070070import android.os.BatteryStats;
Jeff Sharkeyf56e2432012-09-06 17:54:29 -070071import android.os.Binder;
Jeff Sharkeyb24a7852012-05-01 15:19:37 -070072import android.os.Handler;
Dianne Hackborn77b987f2014-02-26 16:20:52 -080073import android.os.INetworkActivityListener;
San Mehat873f2142010-01-14 10:25:07 -080074import android.os.INetworkManagementService;
Dianne Hackborn77b987f2014-02-26 16:20:52 -080075import android.os.PowerManager;
Jeff Sharkeyf56e2432012-09-06 17:54:29 -070076import android.os.Process;
Jeff Sharkey3df273e2011-12-15 15:47:12 -080077import android.os.RemoteCallbackList;
78import android.os.RemoteException;
Jeff Sharkey7a1c3fc2013-06-04 12:29:00 -070079import android.os.ServiceManager;
Lorenzo Colitti4cb42402016-04-24 12:52:00 +090080import android.os.ServiceSpecificException;
Jeff Sharkey605eb792014-11-04 13:34:06 -080081import android.os.StrictMode;
Jeff Sharkey9a13f362011-04-26 16:25:36 -070082import android.os.SystemClock;
Marco Nelissen62dbb222010-02-18 10:56:30 -080083import android.os.SystemProperties;
Pierre Imai8e48e672016-04-21 13:30:43 +090084import android.provider.Settings;
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -070085import android.telephony.DataConnectionRealTimeInfo;
86import android.telephony.PhoneStateListener;
Wink Savillefb40dd42014-06-12 17:02:31 -070087import android.telephony.SubscriptionManager;
Wink Saville67e07892014-06-18 16:43:14 -070088import android.telephony.TelephonyManager;
Irfan Sheriff9ab518ad2010-03-12 15:48:17 -080089import android.util.Log;
Joe Onorato8a9b2202010-02-26 18:56:32 -080090import android.util.Slog;
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -070091import android.util.SparseBooleanArray;
Jeff Sharkey605eb792014-11-04 13:34:06 -080092import android.util.SparseIntArray;
San Mehat873f2142010-01-14 10:25:07 -080093
Jeff Sharkey605eb792014-11-04 13:34:06 -080094import com.android.internal.annotations.GuardedBy;
Jeff Sharkey7a1c3fc2013-06-04 12:29:00 -070095import com.android.internal.app.IBatteryStats;
Jeff Sharkey1059c3c2011-10-04 16:54:49 -070096import com.android.internal.net.NetworkStatsFactory;
Jeff Sharkey605eb792014-11-04 13:34:06 -080097import com.android.internal.util.HexDump;
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -070098import com.android.internal.util.Preconditions;
Jeff Sharkeyba2896e2011-11-30 18:13:54 -080099import com.android.server.NativeDaemonConnector.Command;
Jeff Sharkey56cd6462013-06-07 15:09:15 -0700100import com.android.server.NativeDaemonConnector.SensitiveArg;
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700101import com.google.android.collect.Maps;
Jeff Sharkey4414cea2011-06-24 17:05:24 -0700102
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -0700103import java.io.BufferedReader;
104import java.io.DataInputStream;
San Mehat873f2142010-01-14 10:25:07 -0800105import java.io.File;
Jeff Sharkey47eb1022011-08-25 17:48:52 -0700106import java.io.FileDescriptor;
Jeff Sharkey9a13f362011-04-26 16:25:36 -0700107import java.io.FileInputStream;
Jeff Sharkey9a13f362011-04-26 16:25:36 -0700108import java.io.IOException;
Jeff Sharkey9a13f362011-04-26 16:25:36 -0700109import java.io.InputStreamReader;
Jeff Sharkey47eb1022011-08-25 17:48:52 -0700110import java.io.PrintWriter;
Jeff Sharkeyeedcb952011-05-17 14:55:15 -0700111import java.net.InetAddress;
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -0700112import java.net.InterfaceAddress;
113import java.net.NetworkInterface;
114import java.net.SocketException;
Jeff Sharkeyeedcb952011-05-17 14:55:15 -0700115import java.util.ArrayList;
Paul Jensen6bc2c2c2014-05-07 15:27:40 -0400116import java.util.Arrays;
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700117import java.util.HashMap;
jiaguo1da35f72014-01-09 16:39:59 +0800118import java.util.List;
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700119import java.util.Map;
Jeff Sharkeyeedcb952011-05-17 14:55:15 -0700120import java.util.NoSuchElementException;
121import java.util.StringTokenizer;
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700122import java.util.concurrent.CountDownLatch;
San Mehat873f2142010-01-14 10:25:07 -0800123
124/**
125 * @hide
126 */
Jeff Sharkey8e9992a2011-08-23 18:37:23 -0700127public class NetworkManagementService extends INetworkManagementService.Stub
128 implements Watchdog.Monitor {
Amith Yamasani15e472352015-04-24 19:06:07 -0700129 private static final String TAG = "NetworkManagement";
130 private static final boolean DBG = Log.isLoggable(TAG, Log.DEBUG);
Kenny Root305bcbf2010-09-03 07:56:38 -0700131 private static final String NETD_TAG = "NetdConnector";
Lorenzo Colitti58967ba2016-02-02 17:21:21 +0900132 private static final String NETD_SERVICE_NAME = "netd";
Kenny Root305bcbf2010-09-03 07:56:38 -0700133
Paul Jensen6bc2c2c2014-05-07 15:27:40 -0400134 private static final int MAX_UID_RANGES_PER_COMMAND = 10;
135
Jeff Sharkey8e9992a2011-08-23 18:37:23 -0700136 /**
137 * Name representing {@link #setGlobalAlert(long)} limit when delivered to
138 * {@link INetworkManagementEventObserver#limitReached(String, String)}.
139 */
140 public static final String LIMIT_GLOBAL_ALERT = "globalAlert";
141
Paul Jensen487ffe72015-07-24 15:57:11 -0400142 /**
143 * String to pass to netd to indicate that a network is only accessible
144 * to apps that have the CHANGE_NETWORK_STATE permission.
145 */
146 public static final String PERMISSION_NETWORK = "NETWORK";
147
148 /**
149 * String to pass to netd to indicate that a network is only
150 * accessible to system apps and those with the CONNECTIVITY_INTERNAL
151 * permission.
152 */
153 public static final String PERMISSION_SYSTEM = "SYSTEM";
154
Andrew Scull45f533c2017-05-19 15:37:20 +0100155 static class NetdResponseCode {
Sreeram Ramachandran03666c72014-07-19 23:21:46 -0700156 /* Keep in sync with system/netd/server/ResponseCode.h */
San Mehat873f2142010-01-14 10:25:07 -0800157 public static final int InterfaceListResult = 110;
158 public static final int TetherInterfaceListResult = 111;
159 public static final int TetherDnsFwdTgtListResult = 112;
San Mehat72759df2010-01-19 13:50:37 -0800160 public static final int TtyListResult = 113;
Jeff Sharkeye4984be2013-09-10 21:03:27 -0700161 public static final int TetheringStatsListResult = 114;
San Mehat873f2142010-01-14 10:25:07 -0800162
163 public static final int TetherStatusResult = 210;
164 public static final int IpFwdStatusResult = 211;
San Mehated4fc8a2010-01-22 12:28:36 -0800165 public static final int InterfaceGetCfgResult = 213;
Robert Greenwalte3253922010-02-18 09:23:25 -0800166 public static final int SoftapStatusResult = 214;
San Mehat91cac642010-03-31 14:31:36 -0700167 public static final int InterfaceRxCounterResult = 216;
168 public static final int InterfaceTxCounterResult = 217;
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -0700169 public static final int QuotaCounterResult = 220;
170 public static final int TetheringStatsResult = 221;
Selim Gurun84c00c62012-02-27 15:42:38 -0800171 public static final int DnsProxyQueryResult = 222;
Lorenzo Colitti79751842013-02-28 16:16:03 +0900172 public static final int ClatdStatusResult = 223;
Robert Greenwalte3253922010-02-18 09:23:25 -0800173
174 public static final int InterfaceChange = 600;
JP Abgrall12b933d2011-07-14 18:09:22 -0700175 public static final int BandwidthControl = 601;
Haoyu Bai6b7358d2012-07-17 16:36:50 -0700176 public static final int InterfaceClassActivity = 613;
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900177 public static final int InterfaceAddressChange = 614;
Lorenzo Colitti5ae4a532013-10-31 11:59:46 +0900178 public static final int InterfaceDnsServerInfo = 615;
Lorenzo Colittic18cbfd2014-06-13 21:21:03 +0900179 public static final int RouteChange = 616;
Jeff Sharkey605eb792014-11-04 13:34:06 -0800180 public static final int StrictCleartext = 617;
San Mehat873f2142010-01-14 10:25:07 -0800181 }
182
Pierre Imai8e48e672016-04-21 13:30:43 +0900183 /* Defaults for resolver parameters. */
184 public static final int DNS_RESOLVER_DEFAULT_SAMPLE_VALIDITY_SECONDS = 1800;
185 public static final int DNS_RESOLVER_DEFAULT_SUCCESS_THRESHOLD_PERCENT = 25;
186 public static final int DNS_RESOLVER_DEFAULT_MIN_SAMPLES = 8;
187 public static final int DNS_RESOLVER_DEFAULT_MAX_SAMPLES = 64;
188
Rebecca Silbersteine2ec94f2016-03-24 13:29:00 -0700189 /**
190 * String indicating a softap command.
191 */
192 static final String SOFT_AP_COMMAND = "softap";
193
194 /**
195 * String passed back to netd connector indicating softap command success.
196 */
197 static final String SOFT_AP_COMMAND_SUCCESS = "Ok";
198
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700199 static final int DAEMON_MSG_MOBILE_CONN_REAL_TIME_INFO = 1;
200
San Mehat873f2142010-01-14 10:25:07 -0800201 /**
202 * Binder context for this service
203 */
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700204 private final Context mContext;
San Mehat873f2142010-01-14 10:25:07 -0800205
206 /**
207 * connector object for communicating with netd
208 */
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700209 private final NativeDaemonConnector mConnector;
San Mehat873f2142010-01-14 10:25:07 -0800210
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700211 private final Handler mFgHandler;
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700212 private final Handler mDaemonHandler;
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700213
Lorenzo Colitti58967ba2016-02-02 17:21:21 +0900214 private INetd mNetdService;
215
Dianne Hackborne13c4c02014-02-11 17:18:35 -0800216 private IBatteryStats mBatteryStats;
217
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700218 private final Thread mThread;
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700219 private CountDownLatch mConnectedSignal = new CountDownLatch(1);
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700220
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800221 private final RemoteCallbackList<INetworkManagementEventObserver> mObservers =
Christopher Wiley5de073a2016-08-02 11:38:57 -0700222 new RemoteCallbackList<>();
San Mehat4d02d002010-01-22 16:07:46 -0800223
Jeff Sharkey1059c3c2011-10-04 16:54:49 -0700224 private final NetworkStatsFactory mStatsFactory = new NetworkStatsFactory();
225
Lorenzo Colitti07f13042017-07-10 19:06:57 +0900226 @GuardedBy("mTetheringStatsProviders")
227 private final HashMap<ITetheringStatsProvider, String>
228 mTetheringStatsProviders = Maps.newHashMap();
229
Andrew Scull45f533c2017-05-19 15:37:20 +0100230 private final Object mQuotaLock = new Object();
Jeff Sharkey605eb792014-11-04 13:34:06 -0800231
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -0700232 /** Set of interfaces with active quotas. */
Jeff Sharkey605eb792014-11-04 13:34:06 -0800233 @GuardedBy("mQuotaLock")
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700234 private HashMap<String, Long> mActiveQuotas = Maps.newHashMap();
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -0700235 /** Set of interfaces with active alerts. */
Jeff Sharkey605eb792014-11-04 13:34:06 -0800236 @GuardedBy("mQuotaLock")
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700237 private HashMap<String, Long> mActiveAlerts = Maps.newHashMap();
Felipe Leme65be3022016-03-22 14:53:13 -0700238 /** Set of UIDs blacklisted on metered networks. */
Jeff Sharkey605eb792014-11-04 13:34:06 -0800239 @GuardedBy("mQuotaLock")
Felipe Leme65be3022016-03-22 14:53:13 -0700240 private SparseBooleanArray mUidRejectOnMetered = new SparseBooleanArray();
241 /** Set of UIDs whitelisted on metered networks. */
242 @GuardedBy("mQuotaLock")
243 private SparseBooleanArray mUidAllowOnMetered = new SparseBooleanArray();
Jeff Sharkey605eb792014-11-04 13:34:06 -0800244 /** Set of UIDs with cleartext penalties. */
245 @GuardedBy("mQuotaLock")
246 private SparseIntArray mUidCleartextPolicy = new SparseIntArray();
Amith Yamasani15e472352015-04-24 19:06:07 -0700247 /** Set of UIDs that are to be blocked/allowed by firewall controller. */
248 @GuardedBy("mQuotaLock")
249 private SparseIntArray mUidFirewallRules = new SparseIntArray();
Xiaohui Chenb41c9f72015-06-17 15:55:37 -0700250 /**
251 * Set of UIDs that are to be blocked/allowed by firewall controller. This set of Ids matches
252 * to application idles.
253 */
254 @GuardedBy("mQuotaLock")
255 private SparseIntArray mUidFirewallStandbyRules = new SparseIntArray();
256 /**
257 * Set of UIDs that are to be blocked/allowed by firewall controller. This set of Ids matches
258 * to device idles.
259 */
260 @GuardedBy("mQuotaLock")
261 private SparseIntArray mUidFirewallDozableRules = new SparseIntArray();
Felipe Leme011b98f2016-02-10 17:28:31 -0800262 /**
263 * Set of UIDs that are to be blocked/allowed by firewall controller. This set of Ids matches
264 * to device on power-save mode.
265 */
266 @GuardedBy("mQuotaLock")
267 private SparseIntArray mUidFirewallPowerSaveRules = new SparseIntArray();
Xiaohui Chen8dca36d2015-06-19 12:44:59 -0700268 /** Set of states for the child firewall chains. True if the chain is active. */
269 @GuardedBy("mQuotaLock")
270 final SparseBooleanArray mFirewallChainStates = new SparseBooleanArray();
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -0700271
Felipe Leme65be3022016-03-22 14:53:13 -0700272 @GuardedBy("mQuotaLock")
273 private boolean mDataSaverMode;
274
Andrew Scull45f533c2017-05-19 15:37:20 +0100275 private final Object mIdleTimerLock = new Object();
Haoyu Bai04124232012-06-28 15:26:19 -0700276 /** Set of interfaces with active idle timers. */
277 private static class IdleTimerParams {
278 public final int timeout;
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800279 public final int type;
Haoyu Bai04124232012-06-28 15:26:19 -0700280 public int networkCount;
281
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800282 IdleTimerParams(int timeout, int type) {
Haoyu Bai04124232012-06-28 15:26:19 -0700283 this.timeout = timeout;
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800284 this.type = type;
Haoyu Bai04124232012-06-28 15:26:19 -0700285 this.networkCount = 1;
286 }
287 }
288 private HashMap<String, IdleTimerParams> mActiveIdleTimers = Maps.newHashMap();
289
Jeff Sharkeyfa23c5a2011-08-09 21:44:24 -0700290 private volatile boolean mBandwidthControlEnabled;
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -0700291 private volatile boolean mFirewallEnabled;
Jeff Sharkey605eb792014-11-04 13:34:06 -0800292 private volatile boolean mStrictEnabled;
Jeff Sharkey350083e2011-06-29 10:45:16 -0700293
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700294 private boolean mMobileActivityFromRadio = false;
295 private int mLastPowerStateFromRadio = DataConnectionRealTimeInfo.DC_POWER_STATE_LOW;
Adam Lesinskie08af192015-03-25 16:42:59 -0700296 private int mLastPowerStateFromWifi = DataConnectionRealTimeInfo.DC_POWER_STATE_LOW;
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700297
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800298 private final RemoteCallbackList<INetworkActivityListener> mNetworkActivityListeners =
Christopher Wiley5de073a2016-08-02 11:38:57 -0700299 new RemoteCallbackList<>();
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800300 private boolean mNetworkActive;
301
San Mehat873f2142010-01-14 10:25:07 -0800302 /**
303 * Constructs a new NetworkManagementService instance
304 *
305 * @param context Binder context for this service
306 */
Lorenzo Colitti7421a012013-08-20 22:51:24 +0900307 private NetworkManagementService(Context context, String socket) {
San Mehat873f2142010-01-14 10:25:07 -0800308 mContext = context;
San Mehat4d02d002010-01-22 16:07:46 -0800309
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700310 // make sure this is on the same looper as our NativeDaemonConnector for sync purposes
311 mFgHandler = new Handler(FgThread.get().getLooper());
312
Dianne Hackborn4590e522014-03-24 13:36:46 -0700313 // Don't need this wake lock, since we now have a time stamp for when
314 // the network actually went inactive. (It might be nice to still do this,
315 // but I don't want to do it through the power manager because that pollutes the
316 // battery stats history with pointless noise.)
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700317 //PowerManager pm = (PowerManager)context.getSystemService(Context.POWER_SERVICE);
Dianne Hackborn4590e522014-03-24 13:36:46 -0700318 PowerManager.WakeLock wl = null; //pm.newWakeLock(PowerManager.PARTIAL_WAKE_LOCK, NETD_TAG);
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800319
San Mehat873f2142010-01-14 10:25:07 -0800320 mConnector = new NativeDaemonConnector(
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700321 new NetdCallbackReceiver(), socket, 10, NETD_TAG, 160, wl,
322 FgThread.get().getLooper());
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700323 mThread = new Thread(mConnector, NETD_TAG);
Jeff Sharkeyfa23c5a2011-08-09 21:44:24 -0700324
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700325 mDaemonHandler = new Handler(FgThread.get().getLooper());
Wink Saville67e07892014-06-18 16:43:14 -0700326
Jeff Sharkeyfa23c5a2011-08-09 21:44:24 -0700327 // Add ourself to the Watchdog monitors.
328 Watchdog.getInstance().addMonitor(this);
Lorenzo Colitti07f13042017-07-10 19:06:57 +0900329
330 synchronized (mTetheringStatsProviders) {
331 mTetheringStatsProviders.put(new NetdTetheringStatsProvider(), "netd");
332 }
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700333 }
334
Felipe Leme03e689d2016-03-02 16:17:38 -0800335 static NetworkManagementService create(Context context, String socket)
336 throws InterruptedException {
Lorenzo Colitti7421a012013-08-20 22:51:24 +0900337 final NetworkManagementService service = new NetworkManagementService(context, socket);
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700338 final CountDownLatch connectedSignal = service.mConnectedSignal;
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700339 if (DBG) Slog.d(TAG, "Creating NetworkManagementService");
340 service.mThread.start();
341 if (DBG) Slog.d(TAG, "Awaiting socket connection");
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700342 connectedSignal.await();
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700343 if (DBG) Slog.d(TAG, "Connected");
Lorenzo Colitti8c253ad2017-07-19 00:23:44 +0900344 if (DBG) Slog.d(TAG, "Connecting native netd service");
bohu07cc3bb2016-05-03 15:58:01 -0700345 service.connectNativeNetdService();
Lorenzo Colitti8c253ad2017-07-19 00:23:44 +0900346 if (DBG) Slog.d(TAG, "Connected");
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700347 return service;
San Mehat873f2142010-01-14 10:25:07 -0800348 }
349
Lorenzo Colitti7421a012013-08-20 22:51:24 +0900350 public static NetworkManagementService create(Context context) throws InterruptedException {
Lorenzo Colitti58967ba2016-02-02 17:21:21 +0900351 return create(context, NETD_SERVICE_NAME);
Lorenzo Colitti7421a012013-08-20 22:51:24 +0900352 }
353
Jeff Sharkey350083e2011-06-29 10:45:16 -0700354 public void systemReady() {
Felipe Leme03e689d2016-03-02 16:17:38 -0800355 if (DBG) {
356 final long start = System.currentTimeMillis();
357 prepareNativeDaemon();
358 final long delta = System.currentTimeMillis() - start;
359 Slog.d(TAG, "Prepared in " + delta + "ms");
360 return;
361 } else {
362 prepareNativeDaemon();
363 }
Jeff Sharkey350083e2011-06-29 10:45:16 -0700364 }
365
Dianne Hackborne13c4c02014-02-11 17:18:35 -0800366 private IBatteryStats getBatteryStats() {
367 synchronized (this) {
368 if (mBatteryStats != null) {
369 return mBatteryStats;
370 }
371 mBatteryStats = IBatteryStats.Stub.asInterface(ServiceManager.getService(
372 BatteryStats.SERVICE_NAME));
373 return mBatteryStats;
374 }
375 }
376
Jeff Sharkeyaf75c332011-11-18 12:41:12 -0800377 @Override
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800378 public void registerObserver(INetworkManagementEventObserver observer) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -0800379 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800380 mObservers.register(observer);
San Mehat4d02d002010-01-22 16:07:46 -0800381 }
382
Jeff Sharkeyaf75c332011-11-18 12:41:12 -0800383 @Override
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800384 public void unregisterObserver(INetworkManagementEventObserver observer) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -0800385 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800386 mObservers.unregister(observer);
San Mehat4d02d002010-01-22 16:07:46 -0800387 }
388
Erik Klineb2cfdfb2017-01-18 20:54:14 +0900389 @FunctionalInterface
390 private interface NetworkManagementEventCallback {
391 public void sendCallback(INetworkManagementEventObserver o) throws RemoteException;
392 }
393
394 private void invokeForAllObservers(NetworkManagementEventCallback eventCallback) {
Jeff Sharkey3df273e2011-12-15 15:47:12 -0800395 final int length = mObservers.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700396 try {
397 for (int i = 0; i < length; i++) {
398 try {
Erik Klineb2cfdfb2017-01-18 20:54:14 +0900399 eventCallback.sendCallback(mObservers.getBroadcastItem(i));
Felipe Leme03e689d2016-03-02 16:17:38 -0800400 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700401 }
Mike J. Chen6143f5f2011-06-23 15:17:51 -0700402 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700403 } finally {
404 mObservers.finishBroadcast();
Mike J. Chen6143f5f2011-06-23 15:17:51 -0700405 }
406 }
407
408 /**
Erik Klineb2cfdfb2017-01-18 20:54:14 +0900409 * Notify our observers of an interface status change
410 */
411 private void notifyInterfaceStatusChanged(String iface, boolean up) {
412 invokeForAllObservers(o -> o.interfaceStatusChanged(iface, up));
413 }
414
415 /**
Mike J. Chenf59c7d02011-06-23 15:33:15 -0700416 * Notify our observers of an interface link state change
Mike J. Chen6143f5f2011-06-23 15:17:51 -0700417 * (typically, an Ethernet cable has been plugged-in or unplugged).
418 */
419 private void notifyInterfaceLinkStateChanged(String iface, boolean up) {
Erik Klineb2cfdfb2017-01-18 20:54:14 +0900420 invokeForAllObservers(o -> o.interfaceLinkStateChanged(iface, up));
San Mehat4d02d002010-01-22 16:07:46 -0800421 }
422
423 /**
424 * Notify our observers of an interface addition.
425 */
426 private void notifyInterfaceAdded(String iface) {
Erik Klineb2cfdfb2017-01-18 20:54:14 +0900427 invokeForAllObservers(o -> o.interfaceAdded(iface));
San Mehat4d02d002010-01-22 16:07:46 -0800428 }
429
430 /**
431 * Notify our observers of an interface removal.
432 */
433 private void notifyInterfaceRemoved(String iface) {
Jeff Sharkey89b8a212011-10-11 11:58:11 -0700434 // netd already clears out quota and alerts for removed ifaces; update
435 // our sanity-checking state.
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700436 mActiveAlerts.remove(iface);
437 mActiveQuotas.remove(iface);
Jeff Sharkey89b8a212011-10-11 11:58:11 -0700438
Erik Klineb2cfdfb2017-01-18 20:54:14 +0900439 invokeForAllObservers(o -> o.interfaceRemoved(iface));
San Mehat4d02d002010-01-22 16:07:46 -0800440 }
441
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700442 /**
JP Abgrall12b933d2011-07-14 18:09:22 -0700443 * Notify our observers of a limit reached.
444 */
445 private void notifyLimitReached(String limitName, String iface) {
Erik Klineb2cfdfb2017-01-18 20:54:14 +0900446 invokeForAllObservers(o -> o.limitReached(limitName, iface));
JP Abgrall12b933d2011-07-14 18:09:22 -0700447 }
448
449 /**
Haoyu Baidb3c8672012-06-20 14:29:57 -0700450 * Notify our observers of a change in the data activity state of the interface
451 */
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700452 private void notifyInterfaceClassActivity(int type, int powerState, long tsNanos,
Ruchi Kandoifa97fcf2016-05-13 15:10:39 -0700453 int uid, boolean fromRadio) {
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700454 final boolean isMobile = ConnectivityManager.isNetworkTypeMobile(type);
455 if (isMobile) {
456 if (!fromRadio) {
457 if (mMobileActivityFromRadio) {
458 // If this call is not coming from a report from the radio itself, but we
459 // have previously received reports from the radio, then we will take the
460 // power state to just be whatever the radio last reported.
461 powerState = mLastPowerStateFromRadio;
462 }
463 } else {
464 mMobileActivityFromRadio = true;
465 }
466 if (mLastPowerStateFromRadio != powerState) {
467 mLastPowerStateFromRadio = powerState;
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700468 try {
Ruchi Kandoifa97fcf2016-05-13 15:10:39 -0700469 getBatteryStats().noteMobileRadioPowerState(powerState, tsNanos, uid);
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700470 } catch (RemoteException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700471 }
Haoyu Baidb3c8672012-06-20 14:29:57 -0700472 }
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700473 }
474
Adam Lesinskie08af192015-03-25 16:42:59 -0700475 if (ConnectivityManager.isNetworkTypeWifi(type)) {
476 if (mLastPowerStateFromWifi != powerState) {
477 mLastPowerStateFromWifi = powerState;
478 try {
Adam Lesinski5f056f62016-07-14 16:56:08 -0700479 getBatteryStats().noteWifiRadioPowerState(powerState, tsNanos, uid);
Adam Lesinskie08af192015-03-25 16:42:59 -0700480 } catch (RemoteException e) {
481 }
482 }
483 }
484
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700485 boolean isActive = powerState == DataConnectionRealTimeInfo.DC_POWER_STATE_MEDIUM
486 || powerState == DataConnectionRealTimeInfo.DC_POWER_STATE_HIGH;
487
488 if (!isMobile || fromRadio || !mMobileActivityFromRadio) {
489 // Report the change in data activity. We don't do this if this is a change
490 // on the mobile network, that is not coming from the radio itself, and we
491 // have previously seen change reports from the radio. In that case only
492 // the radio is the authority for the current state.
Erik Klineb2cfdfb2017-01-18 20:54:14 +0900493 final boolean active = isActive;
494 invokeForAllObservers(o -> o.interfaceClassDataActivityChanged(
495 Integer.toString(type), active, tsNanos));
Haoyu Baidb3c8672012-06-20 14:29:57 -0700496 }
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800497
498 boolean report = false;
499 synchronized (mIdleTimerLock) {
500 if (mActiveIdleTimers.isEmpty()) {
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700501 // If there are no idle timers, we are not monitoring activity, so we
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800502 // are always considered active.
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700503 isActive = true;
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800504 }
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700505 if (mNetworkActive != isActive) {
506 mNetworkActive = isActive;
507 report = isActive;
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800508 }
509 }
510 if (report) {
511 reportNetworkActive();
512 }
Haoyu Baidb3c8672012-06-20 14:29:57 -0700513 }
514
Lorenzo Colitti07f13042017-07-10 19:06:57 +0900515 @Override
516 public void registerTetheringStatsProvider(ITetheringStatsProvider provider, String name) {
517 mContext.enforceCallingOrSelfPermission(NETWORK_STACK, TAG);
518 Preconditions.checkNotNull(provider);
519 synchronized(mTetheringStatsProviders) {
520 mTetheringStatsProviders.put(provider, name);
521 }
522 }
523
524 @Override
525 public void unregisterTetheringStatsProvider(ITetheringStatsProvider provider) {
526 mContext.enforceCallingOrSelfPermission(NETWORK_STACK, TAG);
527 synchronized(mTetheringStatsProviders) {
528 mTetheringStatsProviders.remove(provider);
529 }
530 }
531
Lorenzo Colitti9f0baa92017-08-15 19:25:51 +0900532 @Override
533 public void tetherLimitReached(ITetheringStatsProvider provider) {
534 mContext.enforceCallingOrSelfPermission(NETWORK_STACK, TAG);
535 synchronized(mTetheringStatsProviders) {
536 if (!mTetheringStatsProviders.containsKey(provider)) {
537 return;
538 }
539 // No current code examines the interface parameter in a global alert. Just pass null.
540 notifyLimitReached(LIMIT_GLOBAL_ALERT, null);
541 }
542 }
543
Lorenzo Colitti9eb844e2016-03-23 23:22:49 +0900544 // Sync the state of the given chain with the native daemon.
545 private void syncFirewallChainLocked(int chain, SparseIntArray uidFirewallRules, String name) {
546 int size = uidFirewallRules.size();
547 if (size > 0) {
548 // Make a copy of the current rules, and then clear them. This is because
549 // setFirewallUidRuleInternal only pushes down rules to the native daemon if they are
550 // different from the current rules stored in the mUidFirewall*Rules array for the
551 // specified chain. If we don't clear the rules, setFirewallUidRuleInternal will do
552 // nothing.
553 final SparseIntArray rules = uidFirewallRules.clone();
554 uidFirewallRules.clear();
555
556 // Now push the rules. setFirewallUidRuleInternal will push each of these down to the
557 // native daemon, and also add them to the mUidFirewall*Rules array for the specified
558 // chain.
559 if (DBG) Slog.d(TAG, "Pushing " + size + " active firewall " + name + "UID rules");
560 for (int i = 0; i < rules.size(); i++) {
Felipe Lemea701cad2016-05-12 09:58:14 -0700561 setFirewallUidRuleLocked(chain, rules.keyAt(i), rules.valueAt(i));
Lorenzo Colitti9eb844e2016-03-23 23:22:49 +0900562 }
563 }
564 }
565
bohu07cc3bb2016-05-03 15:58:01 -0700566 private void connectNativeNetdService() {
Lorenzo Colitti8c253ad2017-07-19 00:23:44 +0900567 mNetdService = NetdService.get();
bohu07cc3bb2016-05-03 15:58:01 -0700568 }
569
570 /**
571 * Prepare native daemon once connected, enabling modules and pushing any
572 * existing in-memory rules.
573 */
574 private void prepareNativeDaemon() {
Lorenzo Colitti58967ba2016-02-02 17:21:21 +0900575
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700576 mBandwidthControlEnabled = false;
Robert Greenwalte5c3afb2010-09-22 14:32:35 -0700577
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700578 // only enable bandwidth control when support exists
579 final boolean hasKernelSupport = new File("/proc/net/xt_qtaguid/ctrl").exists();
Jeff Sharkey605eb792014-11-04 13:34:06 -0800580
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700581 // push any existing quota or UID rules
582 synchronized (mQuotaLock) {
Felipe Leme65be3022016-03-22 14:53:13 -0700583
Lorenzo Colitti8c253ad2017-07-19 00:23:44 +0900584 if (hasKernelSupport) {
585 Slog.d(TAG, "enabling bandwidth control");
586 try {
587 mConnector.execute("bandwidth", "enable");
588 mBandwidthControlEnabled = true;
589 } catch (NativeDaemonConnectorException e) {
590 Log.wtf(TAG, "problem enabling bandwidth controls", e);
591 }
592 } else {
593 Slog.i(TAG, "not enabling bandwidth control");
594 }
595
596 SystemProperties.set(PROP_QTAGUID_ENABLED, mBandwidthControlEnabled ? "1" : "0");
597
598 try {
599 mConnector.execute("strict", "enable");
600 mStrictEnabled = true;
601 } catch (NativeDaemonConnectorException e) {
602 Log.wtf(TAG, "Failed strict enable", e);
603 }
604
Felipe Leme65be3022016-03-22 14:53:13 -0700605 setDataSaverModeEnabled(mDataSaverMode);
606
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700607 int size = mActiveQuotas.size();
608 if (size > 0) {
Felipe Leme03e689d2016-03-02 16:17:38 -0800609 if (DBG) Slog.d(TAG, "Pushing " + size + " active quota rules");
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700610 final HashMap<String, Long> activeQuotas = mActiveQuotas;
611 mActiveQuotas = Maps.newHashMap();
612 for (Map.Entry<String, Long> entry : activeQuotas.entrySet()) {
613 setInterfaceQuota(entry.getKey(), entry.getValue());
614 }
615 }
616
617 size = mActiveAlerts.size();
618 if (size > 0) {
Felipe Leme03e689d2016-03-02 16:17:38 -0800619 if (DBG) Slog.d(TAG, "Pushing " + size + " active alert rules");
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700620 final HashMap<String, Long> activeAlerts = mActiveAlerts;
621 mActiveAlerts = Maps.newHashMap();
622 for (Map.Entry<String, Long> entry : activeAlerts.entrySet()) {
623 setInterfaceAlert(entry.getKey(), entry.getValue());
624 }
625 }
626
Felipe Leme65be3022016-03-22 14:53:13 -0700627 size = mUidRejectOnMetered.size();
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700628 if (size > 0) {
Felipe Leme65be3022016-03-22 14:53:13 -0700629 if (DBG) Slog.d(TAG, "Pushing " + size + " UIDs to metered whitelist rules");
630 final SparseBooleanArray uidRejectOnQuota = mUidRejectOnMetered;
631 mUidRejectOnMetered = new SparseBooleanArray();
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700632 for (int i = 0; i < uidRejectOnQuota.size(); i++) {
Felipe Leme65be3022016-03-22 14:53:13 -0700633 setUidMeteredNetworkBlacklist(uidRejectOnQuota.keyAt(i),
634 uidRejectOnQuota.valueAt(i));
635 }
636 }
637
638 size = mUidAllowOnMetered.size();
639 if (size > 0) {
640 if (DBG) Slog.d(TAG, "Pushing " + size + " UIDs to metered blacklist rules");
641 final SparseBooleanArray uidAcceptOnQuota = mUidAllowOnMetered;
642 mUidAllowOnMetered = new SparseBooleanArray();
643 for (int i = 0; i < uidAcceptOnQuota.size(); i++) {
644 setUidMeteredNetworkWhitelist(uidAcceptOnQuota.keyAt(i),
645 uidAcceptOnQuota.valueAt(i));
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700646 }
647 }
Jeff Sharkey605eb792014-11-04 13:34:06 -0800648
649 size = mUidCleartextPolicy.size();
650 if (size > 0) {
Felipe Leme03e689d2016-03-02 16:17:38 -0800651 if (DBG) Slog.d(TAG, "Pushing " + size + " active UID cleartext policies");
Jeff Sharkey605eb792014-11-04 13:34:06 -0800652 final SparseIntArray local = mUidCleartextPolicy;
653 mUidCleartextPolicy = new SparseIntArray();
654 for (int i = 0; i < local.size(); i++) {
655 setUidCleartextNetworkPolicy(local.keyAt(i), local.valueAt(i));
656 }
657 }
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -0700658
Robin Leec3736bc2017-03-10 16:19:54 +0000659 setFirewallEnabled(mFirewallEnabled);
Amith Yamasani15e472352015-04-24 19:06:07 -0700660
Lorenzo Colitti9eb844e2016-03-23 23:22:49 +0900661 syncFirewallChainLocked(FIREWALL_CHAIN_NONE, mUidFirewallRules, "");
662 syncFirewallChainLocked(FIREWALL_CHAIN_STANDBY, mUidFirewallStandbyRules, "standby ");
663 syncFirewallChainLocked(FIREWALL_CHAIN_DOZABLE, mUidFirewallDozableRules, "dozable ");
664 syncFirewallChainLocked(FIREWALL_CHAIN_POWERSAVE, mUidFirewallPowerSaveRules,
665 "powersave ");
Xiaohui Chenb41c9f72015-06-17 15:55:37 -0700666
Xiaohui Chen8dca36d2015-06-19 12:44:59 -0700667 if (mFirewallChainStates.get(FIREWALL_CHAIN_STANDBY)) {
Xiaohui Chenb41c9f72015-06-17 15:55:37 -0700668 setFirewallChainEnabled(FIREWALL_CHAIN_STANDBY, true);
669 }
Xiaohui Chen8dca36d2015-06-19 12:44:59 -0700670 if (mFirewallChainStates.get(FIREWALL_CHAIN_DOZABLE)) {
Xiaohui Chenb41c9f72015-06-17 15:55:37 -0700671 setFirewallChainEnabled(FIREWALL_CHAIN_DOZABLE, true);
672 }
Felipe Leme011b98f2016-02-10 17:28:31 -0800673 if (mFirewallChainStates.get(FIREWALL_CHAIN_POWERSAVE)) {
674 setFirewallChainEnabled(FIREWALL_CHAIN_POWERSAVE, true);
675 }
Amith Yamasani15e472352015-04-24 19:06:07 -0700676 }
Lorenzo Colitti8c253ad2017-07-19 00:23:44 +0900677
678 if (mBandwidthControlEnabled) {
679 try {
680 getBatteryStats().noteNetworkStatsEnabled();
681 } catch (RemoteException e) {
682 }
683 }
684
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700685 }
San Mehat4d02d002010-01-22 16:07:46 -0800686
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900687 /**
688 * Notify our observers of a new or updated interface address.
689 */
Lorenzo Colitti64483942013-11-15 18:43:52 +0900690 private void notifyAddressUpdated(String iface, LinkAddress address) {
Erik Klineb2cfdfb2017-01-18 20:54:14 +0900691 invokeForAllObservers(o -> o.addressUpdated(iface, address));
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900692 }
693
694 /**
695 * Notify our observers of a deleted interface address.
696 */
Lorenzo Colitti64483942013-11-15 18:43:52 +0900697 private void notifyAddressRemoved(String iface, LinkAddress address) {
Erik Klineb2cfdfb2017-01-18 20:54:14 +0900698 invokeForAllObservers(o -> o.addressRemoved(iface, address));
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900699 }
700
Lorenzo Colitti5ae4a532013-10-31 11:59:46 +0900701 /**
702 * Notify our observers of DNS server information received.
703 */
704 private void notifyInterfaceDnsServerInfo(String iface, long lifetime, String[] addresses) {
Erik Klineb2cfdfb2017-01-18 20:54:14 +0900705 invokeForAllObservers(o -> o.interfaceDnsServerInfo(iface, lifetime, addresses));
Lorenzo Colitti5ae4a532013-10-31 11:59:46 +0900706 }
707
Lorenzo Colittic18cbfd2014-06-13 21:21:03 +0900708 /**
709 * Notify our observers of a route change.
710 */
711 private void notifyRouteChange(String action, RouteInfo route) {
Erik Klineb2cfdfb2017-01-18 20:54:14 +0900712 if (action.equals("updated")) {
713 invokeForAllObservers(o -> o.routeUpdated(route));
714 } else {
715 invokeForAllObservers(o -> o.routeRemoved(route));
Lorenzo Colittic18cbfd2014-06-13 21:21:03 +0900716 }
717 }
718
San Mehat873f2142010-01-14 10:25:07 -0800719 //
720 // Netd Callback handling
721 //
722
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700723 private class NetdCallbackReceiver implements INativeDaemonConnectorCallbacks {
724 @Override
San Mehat873f2142010-01-14 10:25:07 -0800725 public void onDaemonConnected() {
Felipe Leme65be3022016-03-22 14:53:13 -0700726 Slog.i(TAG, "onDaemonConnected()");
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700727 // event is dispatched from internal NDC thread, so we prepare the
728 // daemon back on main thread.
729 if (mConnectedSignal != null) {
bohu07cc3bb2016-05-03 15:58:01 -0700730 // The system is booting and we're connecting to netd for the first time.
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700731 mConnectedSignal.countDown();
732 mConnectedSignal = null;
733 } else {
bohu07cc3bb2016-05-03 15:58:01 -0700734 // We're reconnecting to netd after the socket connection
735 // was interrupted (e.g., if it crashed).
Robert Greenwalt2c9f5472014-04-21 14:50:28 -0700736 mFgHandler.post(new Runnable() {
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700737 @Override
738 public void run() {
bohu07cc3bb2016-05-03 15:58:01 -0700739 connectNativeNetdService();
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700740 prepareNativeDaemon();
741 }
742 });
743 }
San Mehat873f2142010-01-14 10:25:07 -0800744 }
Jeff Sharkeyfa23c5a2011-08-09 21:44:24 -0700745
Jeff Sharkeyb24a7852012-05-01 15:19:37 -0700746 @Override
Dianne Hackborn77b987f2014-02-26 16:20:52 -0800747 public boolean onCheckHoldWakeLock(int code) {
748 return code == NetdResponseCode.InterfaceClassActivity;
749 }
750
751 @Override
San Mehat873f2142010-01-14 10:25:07 -0800752 public boolean onEvent(int code, String raw, String[] cooked) {
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900753 String errorMessage = String.format("Invalid event from daemon (%s)", raw);
JP Abgrall12b933d2011-07-14 18:09:22 -0700754 switch (code) {
755 case NetdResponseCode.InterfaceChange:
756 /*
757 * a network interface change occured
758 * Format: "NNN Iface added <name>"
759 * "NNN Iface removed <name>"
760 * "NNN Iface changed <name> <up/down>"
761 * "NNN Iface linkstatus <name> <up/down>"
762 */
763 if (cooked.length < 4 || !cooked[1].equals("Iface")) {
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900764 throw new IllegalStateException(errorMessage);
JP Abgrall12b933d2011-07-14 18:09:22 -0700765 }
766 if (cooked[2].equals("added")) {
767 notifyInterfaceAdded(cooked[3]);
768 return true;
769 } else if (cooked[2].equals("removed")) {
770 notifyInterfaceRemoved(cooked[3]);
771 return true;
772 } else if (cooked[2].equals("changed") && cooked.length == 5) {
773 notifyInterfaceStatusChanged(cooked[3], cooked[4].equals("up"));
774 return true;
775 } else if (cooked[2].equals("linkstate") && cooked.length == 5) {
776 notifyInterfaceLinkStateChanged(cooked[3], cooked[4].equals("up"));
777 return true;
778 }
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900779 throw new IllegalStateException(errorMessage);
JP Abgrall12b933d2011-07-14 18:09:22 -0700780 // break;
781 case NetdResponseCode.BandwidthControl:
782 /*
783 * Bandwidth control needs some attention
784 * Format: "NNN limit alert <alertName> <ifaceName>"
785 */
786 if (cooked.length < 5 || !cooked[1].equals("limit")) {
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900787 throw new IllegalStateException(errorMessage);
JP Abgrall12b933d2011-07-14 18:09:22 -0700788 }
789 if (cooked[2].equals("alert")) {
790 notifyLimitReached(cooked[3], cooked[4]);
791 return true;
792 }
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900793 throw new IllegalStateException(errorMessage);
JP Abgrall12b933d2011-07-14 18:09:22 -0700794 // break;
Haoyu Baidb3c8672012-06-20 14:29:57 -0700795 case NetdResponseCode.InterfaceClassActivity:
796 /*
797 * An network interface class state changed (active/idle)
798 * Format: "NNN IfaceClass <active/idle> <label>"
799 */
800 if (cooked.length < 4 || !cooked[1].equals("IfaceClass")) {
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900801 throw new IllegalStateException(errorMessage);
Haoyu Baidb3c8672012-06-20 14:29:57 -0700802 }
Ashish Sharma0535a9f2014-03-12 18:42:23 -0700803 long timestampNanos = 0;
Ruchi Kandoifa97fcf2016-05-13 15:10:39 -0700804 int processUid = -1;
805 if (cooked.length >= 5) {
Ashish Sharma0535a9f2014-03-12 18:42:23 -0700806 try {
807 timestampNanos = Long.parseLong(cooked[4]);
Ruchi Kandoifa97fcf2016-05-13 15:10:39 -0700808 if (cooked.length == 6) {
809 processUid = Integer.parseInt(cooked[5]);
810 }
Ashish Sharma0535a9f2014-03-12 18:42:23 -0700811 } catch(NumberFormatException ne) {}
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700812 } else {
813 timestampNanos = SystemClock.elapsedRealtimeNanos();
Ashish Sharma0535a9f2014-03-12 18:42:23 -0700814 }
Haoyu Baidb3c8672012-06-20 14:29:57 -0700815 boolean isActive = cooked[2].equals("active");
Ashish Sharma0535a9f2014-03-12 18:42:23 -0700816 notifyInterfaceClassActivity(Integer.parseInt(cooked[3]),
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -0700817 isActive ? DataConnectionRealTimeInfo.DC_POWER_STATE_HIGH
Ruchi Kandoifa97fcf2016-05-13 15:10:39 -0700818 : DataConnectionRealTimeInfo.DC_POWER_STATE_LOW,
819 timestampNanos, processUid, false);
Haoyu Baidb3c8672012-06-20 14:29:57 -0700820 return true;
821 // break;
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900822 case NetdResponseCode.InterfaceAddressChange:
823 /*
824 * A network address change occurred
825 * Format: "NNN Address updated <addr> <iface> <flags> <scope>"
826 * "NNN Address removed <addr> <iface> <flags> <scope>"
827 */
Lorenzo Colittia9626c12013-11-04 17:44:09 +0900828 if (cooked.length < 7 || !cooked[1].equals("Address")) {
829 throw new IllegalStateException(errorMessage);
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900830 }
831
Lorenzo Colitti64483942013-11-15 18:43:52 +0900832 String iface = cooked[4];
Lorenzo Colitti5ad421a2013-11-17 15:05:02 +0900833 LinkAddress address;
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900834 try {
Lorenzo Colitti64483942013-11-15 18:43:52 +0900835 int flags = Integer.parseInt(cooked[5]);
836 int scope = Integer.parseInt(cooked[6]);
837 address = new LinkAddress(cooked[3], flags, scope);
Lorenzo Colitti5ad421a2013-11-17 15:05:02 +0900838 } catch(NumberFormatException e) { // Non-numeric lifetime or scope.
839 throw new IllegalStateException(errorMessage, e);
Lorenzo Colitti64483942013-11-15 18:43:52 +0900840 } catch(IllegalArgumentException e) { // Malformed/invalid IP address.
Lorenzo Colitti5ad421a2013-11-17 15:05:02 +0900841 throw new IllegalStateException(errorMessage, e);
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900842 }
843
844 if (cooked[2].equals("updated")) {
Lorenzo Colitti64483942013-11-15 18:43:52 +0900845 notifyAddressUpdated(iface, address);
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900846 } else {
Lorenzo Colitti64483942013-11-15 18:43:52 +0900847 notifyAddressRemoved(iface, address);
Lorenzo Colitti5c7daac2013-08-05 10:39:37 +0900848 }
849 return true;
850 // break;
Lorenzo Colitti5ae4a532013-10-31 11:59:46 +0900851 case NetdResponseCode.InterfaceDnsServerInfo:
852 /*
853 * Information about available DNS servers has been received.
854 * Format: "NNN DnsInfo servers <interface> <lifetime> <servers>"
855 */
856 long lifetime; // Actually a 32-bit unsigned integer.
857
858 if (cooked.length == 6 &&
859 cooked[1].equals("DnsInfo") &&
860 cooked[2].equals("servers")) {
861 try {
862 lifetime = Long.parseLong(cooked[4]);
863 } catch (NumberFormatException e) {
864 throw new IllegalStateException(errorMessage);
865 }
866 String[] servers = cooked[5].split(",");
867 notifyInterfaceDnsServerInfo(cooked[3], lifetime, servers);
868 }
869 return true;
870 // break;
Lorenzo Colittic18cbfd2014-06-13 21:21:03 +0900871 case NetdResponseCode.RouteChange:
872 /*
873 * A route has been updated or removed.
874 * Format: "NNN Route <updated|removed> <dst> [via <gateway] [dev <iface>]"
875 */
876 if (!cooked[1].equals("Route") || cooked.length < 6) {
877 throw new IllegalStateException(errorMessage);
878 }
879
880 String via = null;
881 String dev = null;
882 boolean valid = true;
883 for (int i = 4; (i + 1) < cooked.length && valid; i += 2) {
884 if (cooked[i].equals("dev")) {
885 if (dev == null) {
886 dev = cooked[i+1];
887 } else {
888 valid = false; // Duplicate interface.
889 }
890 } else if (cooked[i].equals("via")) {
891 if (via == null) {
892 via = cooked[i+1];
893 } else {
894 valid = false; // Duplicate gateway.
895 }
896 } else {
897 valid = false; // Unknown syntax.
898 }
899 }
900 if (valid) {
901 try {
902 // InetAddress.parseNumericAddress(null) inexplicably returns ::1.
903 InetAddress gateway = null;
904 if (via != null) gateway = InetAddress.parseNumericAddress(via);
905 RouteInfo route = new RouteInfo(new IpPrefix(cooked[3]), gateway, dev);
906 notifyRouteChange(cooked[2], route);
907 return true;
908 } catch (IllegalArgumentException e) {}
909 }
910 throw new IllegalStateException(errorMessage);
911 // break;
Jeff Sharkey605eb792014-11-04 13:34:06 -0800912 case NetdResponseCode.StrictCleartext:
913 final int uid = Integer.parseInt(cooked[1]);
914 final byte[] firstPacket = HexDump.hexStringToByteArray(cooked[2]);
915 try {
916 ActivityManagerNative.getDefault().notifyCleartextNetwork(uid, firstPacket);
917 } catch (RemoteException ignored) {
918 }
919 break;
JP Abgrall12b933d2011-07-14 18:09:22 -0700920 default: break;
Robert Greenwalte3253922010-02-18 09:23:25 -0800921 }
922 return false;
San Mehat873f2142010-01-14 10:25:07 -0800923 }
924 }
925
San Mehated4fc8a2010-01-22 12:28:36 -0800926
San Mehat873f2142010-01-14 10:25:07 -0800927 //
928 // INetworkManagementService members
929 //
Erik Kline4e37b702016-07-05 11:34:21 +0900930 @Override
931 public INetd getNetdService() throws RemoteException {
932 final CountDownLatch connectedSignal = mConnectedSignal;
933 if (connectedSignal != null) {
934 try {
935 connectedSignal.await();
936 } catch (InterruptedException ignored) {}
937 }
938
939 return mNetdService;
940 }
San Mehat873f2142010-01-14 10:25:07 -0800941
Jeff Sharkeyaf75c332011-11-18 12:41:12 -0800942 @Override
943 public String[] listInterfaces() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -0800944 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -0700945 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -0800946 return NativeDaemonEvent.filterMessageList(
947 mConnector.executeForList("interface", "list"), InterfaceListResult);
Kenny Roota80ce062010-06-01 13:23:53 -0700948 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -0800949 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -0700950 }
San Mehated4fc8a2010-01-22 12:28:36 -0800951 }
952
Jeff Sharkeyaf75c332011-11-18 12:41:12 -0800953 @Override
954 public InterfaceConfiguration getInterfaceConfig(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -0800955 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyba2896e2011-11-30 18:13:54 -0800956
957 final NativeDaemonEvent event;
Kenny Roota80ce062010-06-01 13:23:53 -0700958 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -0800959 event = mConnector.execute("interface", "getcfg", iface);
Kenny Roota80ce062010-06-01 13:23:53 -0700960 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -0800961 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -0700962 }
San Mehated4fc8a2010-01-22 12:28:36 -0800963
Jeff Sharkeyba2896e2011-11-30 18:13:54 -0800964 event.checkCode(InterfaceGetCfgResult);
965
966 // Rsp: 213 xx:xx:xx:xx:xx:xx yyy.yyy.yyy.yyy zzz flag1 flag2 flag3
967 final StringTokenizer st = new StringTokenizer(event.getMessage());
San Mehated4fc8a2010-01-22 12:28:36 -0800968
Kenny Roota80ce062010-06-01 13:23:53 -0700969 InterfaceConfiguration cfg;
San Mehated4fc8a2010-01-22 12:28:36 -0800970 try {
Kenny Roota80ce062010-06-01 13:23:53 -0700971 cfg = new InterfaceConfiguration();
Jeff Sharkeyddba1062011-11-29 18:37:04 -0800972 cfg.setHardwareAddress(st.nextToken(" "));
Robert Greenwalted126402011-01-28 15:34:55 -0800973 InetAddress addr = null;
Robert Greenwalt2d2afd12011-02-01 15:30:46 -0800974 int prefixLength = 0;
Kenny Roota80ce062010-06-01 13:23:53 -0700975 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -0800976 addr = NetworkUtils.numericToInetAddress(st.nextToken());
Robert Greenwalte5903732011-02-22 16:00:42 -0800977 } catch (IllegalArgumentException iae) {
978 Slog.e(TAG, "Failed to parse ipaddr", iae);
Kenny Roota80ce062010-06-01 13:23:53 -0700979 }
980
981 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -0800982 prefixLength = Integer.parseInt(st.nextToken());
Robert Greenwalt2d2afd12011-02-01 15:30:46 -0800983 } catch (NumberFormatException nfe) {
984 Slog.e(TAG, "Failed to parse prefixLength", nfe);
Kenny Roota80ce062010-06-01 13:23:53 -0700985 }
Robert Greenwalt04808c22010-12-13 17:01:41 -0800986
Jeff Sharkeyddba1062011-11-29 18:37:04 -0800987 cfg.setLinkAddress(new LinkAddress(addr, prefixLength));
988 while (st.hasMoreTokens()) {
989 cfg.setFlag(st.nextToken());
990 }
Kenny Roota80ce062010-06-01 13:23:53 -0700991 } catch (NoSuchElementException nsee) {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -0800992 throw new IllegalStateException("Invalid response from daemon: " + event);
San Mehated4fc8a2010-01-22 12:28:36 -0800993 }
San Mehated4fc8a2010-01-22 12:28:36 -0800994 return cfg;
995 }
996
Jeff Sharkeyaf75c332011-11-18 12:41:12 -0800997 @Override
998 public void setInterfaceConfig(String iface, InterfaceConfiguration cfg) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -0800999 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyddba1062011-11-29 18:37:04 -08001000 LinkAddress linkAddr = cfg.getLinkAddress();
Robert Greenwalt2d2afd12011-02-01 15:30:46 -08001001 if (linkAddr == null || linkAddr.getAddress() == null) {
1002 throw new IllegalStateException("Null LinkAddress given");
Robert Greenwalted126402011-01-28 15:34:55 -08001003 }
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001004
1005 final Command cmd = new Command("interface", "setcfg", iface,
Robert Greenwalt2d2afd12011-02-01 15:30:46 -08001006 linkAddr.getAddress().getHostAddress(),
Lorenzo Colitti7dc78cf2014-06-09 22:58:46 +09001007 linkAddr.getPrefixLength());
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001008 for (String flag : cfg.getFlags()) {
1009 cmd.appendArg(flag);
1010 }
1011
Kenny Roota80ce062010-06-01 13:23:53 -07001012 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001013 mConnector.execute(cmd);
Kenny Roota80ce062010-06-01 13:23:53 -07001014 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001015 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001016 }
San Mehat873f2142010-01-14 10:25:07 -08001017 }
1018
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001019 @Override
1020 public void setInterfaceDown(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001021 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001022 final InterfaceConfiguration ifcg = getInterfaceConfig(iface);
Jeff Sharkeyddba1062011-11-29 18:37:04 -08001023 ifcg.setInterfaceDown();
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001024 setInterfaceConfig(iface, ifcg);
Irfan Sheriff7244c972011-08-05 20:40:45 -07001025 }
1026
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001027 @Override
1028 public void setInterfaceUp(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001029 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001030 final InterfaceConfiguration ifcg = getInterfaceConfig(iface);
Jeff Sharkeyddba1062011-11-29 18:37:04 -08001031 ifcg.setInterfaceUp();
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001032 setInterfaceConfig(iface, ifcg);
Irfan Sheriff7244c972011-08-05 20:40:45 -07001033 }
1034
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001035 @Override
1036 public void setInterfaceIpv6PrivacyExtensions(String iface, boolean enable) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001037 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Irfan Sheriff73293612011-09-14 12:31:56 -07001038 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001039 mConnector.execute(
1040 "interface", "ipv6privacyextensions", iface, enable ? "enable" : "disable");
Irfan Sheriff73293612011-09-14 12:31:56 -07001041 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001042 throw e.rethrowAsParcelableException();
Irfan Sheriff73293612011-09-14 12:31:56 -07001043 }
1044 }
1045
Irfan Sherifff5600612011-06-16 10:26:28 -07001046 /* TODO: This is right now a IPv4 only function. Works for wifi which loses its
1047 IPv6 addresses on interface down, but we need to do full clean up here */
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001048 @Override
1049 public void clearInterfaceAddresses(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001050 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Irfan Sherifff5600612011-06-16 10:26:28 -07001051 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001052 mConnector.execute("interface", "clearaddrs", iface);
Irfan Sherifff5600612011-06-16 10:26:28 -07001053 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001054 throw e.rethrowAsParcelableException();
Irfan Sherifff5600612011-06-16 10:26:28 -07001055 }
1056 }
1057
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001058 @Override
1059 public void enableIpv6(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001060 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
repo sync7960d9f2011-09-29 12:40:02 -07001061 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001062 mConnector.execute("interface", "ipv6", iface, "enable");
repo sync7960d9f2011-09-29 12:40:02 -07001063 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001064 throw e.rethrowAsParcelableException();
repo sync7960d9f2011-09-29 12:40:02 -07001065 }
1066 }
1067
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001068 @Override
Joel Scherpelz2db10742017-06-07 15:38:38 +09001069 public void setIPv6AddrGenMode(String iface, int mode) throws ServiceSpecificException {
1070 try {
1071 mNetdService.setIPv6AddrGenMode(iface, mode);
1072 } catch (RemoteException e) {
1073 throw e.rethrowAsRuntimeException();
1074 }
1075 }
1076
1077 @Override
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001078 public void disableIpv6(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001079 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
repo sync7960d9f2011-09-29 12:40:02 -07001080 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001081 mConnector.execute("interface", "ipv6", iface, "disable");
repo sync7960d9f2011-09-29 12:40:02 -07001082 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001083 throw e.rethrowAsParcelableException();
repo sync7960d9f2011-09-29 12:40:02 -07001084 }
1085 }
1086
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001087 @Override
Lorenzo Colittie21a26b2014-10-28 15:24:03 +09001088 public void setInterfaceIpv6NdOffload(String iface, boolean enable) {
1089 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1090 try {
1091 mConnector.execute(
1092 "interface", "ipv6ndoffload", iface, (enable ? "enable" : "disable"));
1093 } catch (NativeDaemonConnectorException e) {
1094 throw e.rethrowAsParcelableException();
1095 }
1096 }
1097
1098 @Override
Sreeram Ramachandranb2829fa2014-04-15 19:07:12 -07001099 public void addRoute(int netId, RouteInfo route) {
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07001100 modifyRoute("add", "" + netId, route);
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -07001101 }
1102
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001103 @Override
Sreeram Ramachandranb2829fa2014-04-15 19:07:12 -07001104 public void removeRoute(int netId, RouteInfo route) {
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07001105 modifyRoute("remove", "" + netId, route);
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -07001106 }
1107
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07001108 private void modifyRoute(String action, String netId, RouteInfo route) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001109 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001110
Sreeram Ramachandranb2829fa2014-04-15 19:07:12 -07001111 final Command cmd = new Command("network", "route", action, netId);
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001112
Sreeram Ramachandranb2829fa2014-04-15 19:07:12 -07001113 // create triplet: interface dest-ip-addr/prefixlength gateway-ip-addr
Sreeram Ramachandranb2829fa2014-04-15 19:07:12 -07001114 cmd.appendArg(route.getInterface());
Lorenzo Colitti4b0f8e62014-09-19 01:49:05 +09001115 cmd.appendArg(route.getDestination().toString());
1116
1117 switch (route.getType()) {
1118 case RouteInfo.RTN_UNICAST:
1119 if (route.hasGateway()) {
1120 cmd.appendArg(route.getGateway().getHostAddress());
1121 }
1122 break;
1123 case RouteInfo.RTN_UNREACHABLE:
1124 cmd.appendArg("unreachable");
1125 break;
1126 case RouteInfo.RTN_THROW:
1127 cmd.appendArg("throw");
1128 break;
Sreeram Ramachandran1fbcb272014-05-22 16:30:48 -07001129 }
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -07001130
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001131 try {
1132 mConnector.execute(cmd);
1133 } catch (NativeDaemonConnectorException e) {
1134 throw e.rethrowAsParcelableException();
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -07001135 }
1136 }
1137
1138 private ArrayList<String> readRouteList(String filename) {
1139 FileInputStream fstream = null;
Christopher Wiley5de073a2016-08-02 11:38:57 -07001140 ArrayList<String> list = new ArrayList<>();
Robert Greenwalt59b1a4e2011-05-10 15:05:02 -07001141
1142 try {
1143 fstream = new FileInputStream(filename);
1144 DataInputStream in = new DataInputStream(fstream);
1145 BufferedReader br = new BufferedReader(new InputStreamReader(in));
1146 String s;
1147
1148 // throw away the title line
1149
1150 while (((s = br.readLine()) != null) && (s.length() != 0)) {
1151 list.add(s);
1152 }
1153 } catch (IOException ex) {
1154 // return current list, possibly empty
1155 } finally {
1156 if (fstream != null) {
1157 try {
1158 fstream.close();
1159 } catch (IOException ex) {}
1160 }
1161 }
1162
1163 return list;
1164 }
1165
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001166 @Override
sy.yun9d9b74a2013-09-02 05:24:09 +09001167 public void setMtu(String iface, int mtu) {
1168 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1169
1170 final NativeDaemonEvent event;
1171 try {
1172 event = mConnector.execute("interface", "setmtu", iface, mtu);
1173 } catch (NativeDaemonConnectorException e) {
1174 throw e.rethrowAsParcelableException();
1175 }
1176 }
1177
1178 @Override
San Mehat873f2142010-01-14 10:25:07 -08001179 public void shutdown() {
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001180 // TODO: remove from aidl if nobody calls externally
1181 mContext.enforceCallingOrSelfPermission(SHUTDOWN, TAG);
San Mehat873f2142010-01-14 10:25:07 -08001182
Felipe Leme03e689d2016-03-02 16:17:38 -08001183 Slog.i(TAG, "Shutting down");
San Mehat873f2142010-01-14 10:25:07 -08001184 }
1185
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001186 @Override
San Mehat873f2142010-01-14 10:25:07 -08001187 public boolean getIpForwardingEnabled() throws IllegalStateException{
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001188 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
San Mehat873f2142010-01-14 10:25:07 -08001189
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001190 final NativeDaemonEvent event;
Kenny Roota80ce062010-06-01 13:23:53 -07001191 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001192 event = mConnector.execute("ipfwd", "status");
Kenny Roota80ce062010-06-01 13:23:53 -07001193 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001194 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001195 }
San Mehat873f2142010-01-14 10:25:07 -08001196
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001197 // 211 Forwarding enabled
1198 event.checkCode(IpFwdStatusResult);
1199 return event.getMessage().endsWith("enabled");
San Mehat873f2142010-01-14 10:25:07 -08001200 }
1201
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001202 @Override
1203 public void setIpForwardingEnabled(boolean enable) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001204 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001205 try {
Nilesh Poddarf3d4a582015-02-24 12:11:11 -08001206 mConnector.execute("ipfwd", enable ? "enable" : "disable", "tethering");
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001207 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001208 throw e.rethrowAsParcelableException();
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001209 }
San Mehat873f2142010-01-14 10:25:07 -08001210 }
1211
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001212 @Override
1213 public void startTethering(String[] dhcpRange) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001214 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Robert Greenwaltbfb7bfa2010-03-24 16:03:21 -07001215 // cmd is "tether start first_start first_stop second_start second_stop ..."
1216 // an odd number of addrs will fail
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001217
1218 final Command cmd = new Command("tether", "start");
Robert Greenwaltbfb7bfa2010-03-24 16:03:21 -07001219 for (String d : dhcpRange) {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001220 cmd.appendArg(d);
Robert Greenwaltbfb7bfa2010-03-24 16:03:21 -07001221 }
Kenny Roota80ce062010-06-01 13:23:53 -07001222
1223 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001224 mConnector.execute(cmd);
Kenny Roota80ce062010-06-01 13:23:53 -07001225 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001226 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001227 }
San Mehat873f2142010-01-14 10:25:07 -08001228 }
1229
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001230 @Override
1231 public void stopTethering() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001232 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001233 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001234 mConnector.execute("tether", "stop");
Kenny Roota80ce062010-06-01 13:23:53 -07001235 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001236 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001237 }
San Mehat873f2142010-01-14 10:25:07 -08001238 }
1239
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001240 @Override
1241 public boolean isTetheringStarted() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001242 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
San Mehat873f2142010-01-14 10:25:07 -08001243
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001244 final NativeDaemonEvent event;
Kenny Roota80ce062010-06-01 13:23:53 -07001245 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001246 event = mConnector.execute("tether", "status");
Kenny Roota80ce062010-06-01 13:23:53 -07001247 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001248 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001249 }
San Mehat873f2142010-01-14 10:25:07 -08001250
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001251 // 210 Tethering services started
1252 event.checkCode(TetherStatusResult);
1253 return event.getMessage().endsWith("started");
San Mehat873f2142010-01-14 10:25:07 -08001254 }
Matthew Xiefe19f122012-07-12 16:03:32 -07001255
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001256 @Override
1257 public void tetherInterface(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001258 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001259 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001260 mConnector.execute("tether", "interface", "add", iface);
Kenny Roota80ce062010-06-01 13:23:53 -07001261 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001262 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001263 }
Christopher Wiley5de073a2016-08-02 11:38:57 -07001264 List<RouteInfo> routes = new ArrayList<>();
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07001265 // The RouteInfo constructor truncates the LinkAddress to a network prefix, thus making it
1266 // suitable to use as a route destination.
1267 routes.add(new RouteInfo(getInterfaceConfig(iface).getLinkAddress(), null, iface));
1268 addInterfaceToLocalNetwork(iface, routes);
San Mehat873f2142010-01-14 10:25:07 -08001269 }
1270
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001271 @Override
San Mehat873f2142010-01-14 10:25:07 -08001272 public void untetherInterface(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001273 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001274 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001275 mConnector.execute("tether", "interface", "remove", iface);
Kenny Roota80ce062010-06-01 13:23:53 -07001276 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001277 throw e.rethrowAsParcelableException();
Erik Kline1f4278a2016-08-16 16:46:33 +09001278 } finally {
1279 removeInterfaceFromLocalNetwork(iface);
Kenny Roota80ce062010-06-01 13:23:53 -07001280 }
San Mehat873f2142010-01-14 10:25:07 -08001281 }
1282
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001283 @Override
1284 public String[] listTetheredInterfaces() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001285 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001286 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001287 return NativeDaemonEvent.filterMessageList(
1288 mConnector.executeForList("tether", "interface", "list"),
1289 TetherInterfaceListResult);
Kenny Roota80ce062010-06-01 13:23:53 -07001290 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001291 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001292 }
San Mehat873f2142010-01-14 10:25:07 -08001293 }
1294
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001295 @Override
Lorenzo Colittib57edc52014-08-22 17:10:50 -07001296 public void setDnsForwarders(Network network, String[] dns) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001297 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001298
Lorenzo Colittib57edc52014-08-22 17:10:50 -07001299 int netId = (network != null) ? network.netId : ConnectivityManager.NETID_UNSET;
1300 final Command cmd = new Command("tether", "dns", "set", netId);
1301
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001302 for (String s : dns) {
1303 cmd.appendArg(NetworkUtils.numericToInetAddress(s).getHostAddress());
1304 }
1305
San Mehat873f2142010-01-14 10:25:07 -08001306 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001307 mConnector.execute(cmd);
1308 } catch (NativeDaemonConnectorException e) {
1309 throw e.rethrowAsParcelableException();
San Mehat873f2142010-01-14 10:25:07 -08001310 }
1311 }
1312
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001313 @Override
1314 public String[] getDnsForwarders() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001315 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001316 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001317 return NativeDaemonEvent.filterMessageList(
1318 mConnector.executeForList("tether", "dns", "list"), TetherDnsFwdTgtListResult);
Kenny Roota80ce062010-06-01 13:23:53 -07001319 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001320 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001321 }
San Mehat873f2142010-01-14 10:25:07 -08001322 }
1323
jiaguo1da35f72014-01-09 16:39:59 +08001324 private List<InterfaceAddress> excludeLinkLocal(List<InterfaceAddress> addresses) {
Christopher Wiley5de073a2016-08-02 11:38:57 -07001325 ArrayList<InterfaceAddress> filtered = new ArrayList<>(addresses.size());
jiaguo1da35f72014-01-09 16:39:59 +08001326 for (InterfaceAddress ia : addresses) {
1327 if (!ia.getAddress().isLinkLocalAddress())
1328 filtered.add(ia);
1329 }
1330 return filtered;
1331 }
1332
Lorenzo Colitti35e36db2015-02-26 01:25:36 +09001333 private void modifyInterfaceForward(boolean add, String fromIface, String toIface) {
1334 final Command cmd = new Command("ipfwd", add ? "add" : "remove", fromIface, toIface);
1335 try {
1336 mConnector.execute(cmd);
1337 } catch (NativeDaemonConnectorException e) {
1338 throw e.rethrowAsParcelableException();
1339 }
1340 }
1341
1342 @Override
1343 public void startInterfaceForwarding(String fromIface, String toIface) {
1344 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1345 modifyInterfaceForward(true, fromIface, toIface);
1346 }
1347
1348 @Override
1349 public void stopInterfaceForwarding(String fromIface, String toIface) {
1350 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1351 modifyInterfaceForward(false, fromIface, toIface);
1352 }
1353
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001354 private void modifyNat(String action, String internalInterface, String externalInterface)
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001355 throws SocketException {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001356 final Command cmd = new Command("nat", action, internalInterface, externalInterface);
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001357
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001358 final NetworkInterface internalNetworkInterface = NetworkInterface.getByName(
1359 internalInterface);
Robert Greenwalte83d1812011-11-21 14:44:39 -08001360 if (internalNetworkInterface == null) {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001361 cmd.appendArg("0");
Robert Greenwalte83d1812011-11-21 14:44:39 -08001362 } else {
jiaguo1da35f72014-01-09 16:39:59 +08001363 // Don't touch link-local routes, as link-local addresses aren't routable,
1364 // kernel creates link-local routes on all interfaces automatically
1365 List<InterfaceAddress> interfaceAddresses = excludeLinkLocal(
1366 internalNetworkInterface.getInterfaceAddresses());
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001367 cmd.appendArg(interfaceAddresses.size());
Robert Greenwalte83d1812011-11-21 14:44:39 -08001368 for (InterfaceAddress ia : interfaceAddresses) {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001369 InetAddress addr = NetworkUtils.getNetworkPart(
1370 ia.getAddress(), ia.getNetworkPrefixLength());
1371 cmd.appendArg(addr.getHostAddress() + "/" + ia.getNetworkPrefixLength());
Robert Greenwalte83d1812011-11-21 14:44:39 -08001372 }
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001373 }
1374
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001375 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001376 mConnector.execute(cmd);
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001377 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001378 throw e.rethrowAsParcelableException();
Jeff Sharkey31c6e482011-11-18 17:09:01 -08001379 }
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001380 }
1381
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001382 @Override
1383 public void enableNat(String internalInterface, String externalInterface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001384 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001385 try {
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001386 modifyNat("enable", internalInterface, externalInterface);
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001387 } catch (SocketException e) {
1388 throw new IllegalStateException(e);
Kenny Roota80ce062010-06-01 13:23:53 -07001389 }
San Mehat873f2142010-01-14 10:25:07 -08001390 }
1391
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001392 @Override
1393 public void disableNat(String internalInterface, String externalInterface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001394 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001395 try {
Robert Greenwalt3b28e9a2011-11-02 14:37:19 -07001396 modifyNat("disable", internalInterface, externalInterface);
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001397 } catch (SocketException e) {
1398 throw new IllegalStateException(e);
Kenny Roota80ce062010-06-01 13:23:53 -07001399 }
San Mehat873f2142010-01-14 10:25:07 -08001400 }
San Mehat72759df2010-01-19 13:50:37 -08001401
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001402 @Override
1403 public String[] listTtys() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001404 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001405 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001406 return NativeDaemonEvent.filterMessageList(
1407 mConnector.executeForList("list_ttys"), TtyListResult);
Kenny Roota80ce062010-06-01 13:23:53 -07001408 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001409 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001410 }
San Mehat72759df2010-01-19 13:50:37 -08001411 }
1412
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001413 @Override
1414 public void attachPppd(
1415 String tty, String localAddr, String remoteAddr, String dns1Addr, String dns2Addr) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001416 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
San Mehat72759df2010-01-19 13:50:37 -08001417 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001418 mConnector.execute("pppd", "attach", tty,
Robert Greenwalte5903732011-02-22 16:00:42 -08001419 NetworkUtils.numericToInetAddress(localAddr).getHostAddress(),
1420 NetworkUtils.numericToInetAddress(remoteAddr).getHostAddress(),
1421 NetworkUtils.numericToInetAddress(dns1Addr).getHostAddress(),
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001422 NetworkUtils.numericToInetAddress(dns2Addr).getHostAddress());
Kenny Roota80ce062010-06-01 13:23:53 -07001423 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001424 throw e.rethrowAsParcelableException();
San Mehat72759df2010-01-19 13:50:37 -08001425 }
1426 }
1427
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001428 @Override
1429 public void detachPppd(String tty) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001430 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Kenny Roota80ce062010-06-01 13:23:53 -07001431 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001432 mConnector.execute("pppd", "detach", tty);
Kenny Roota80ce062010-06-01 13:23:53 -07001433 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001434 throw e.rethrowAsParcelableException();
Kenny Roota80ce062010-06-01 13:23:53 -07001435 }
San Mehat72759df2010-01-19 13:50:37 -08001436 }
Robert Greenwaltce1200d2010-02-18 11:25:54 -08001437
Jeff Sharkeyeedcb952011-05-17 14:55:15 -07001438 @Override
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001439 public void addIdleTimer(String iface, int timeout, final int type) {
Haoyu Bai04124232012-06-28 15:26:19 -07001440 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1441
1442 if (DBG) Slog.d(TAG, "Adding idletimer");
1443
1444 synchronized (mIdleTimerLock) {
1445 IdleTimerParams params = mActiveIdleTimers.get(iface);
1446 if (params != null) {
1447 // the interface already has idletimer, update network count
1448 params.networkCount++;
1449 return;
1450 }
1451
1452 try {
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001453 mConnector.execute("idletimer", "add", iface, Integer.toString(timeout),
1454 Integer.toString(type));
Haoyu Bai04124232012-06-28 15:26:19 -07001455 } catch (NativeDaemonConnectorException e) {
1456 throw e.rethrowAsParcelableException();
1457 }
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001458 mActiveIdleTimers.put(iface, new IdleTimerParams(timeout, type));
1459
Dianne Hackborne13c4c02014-02-11 17:18:35 -08001460 // Networks start up.
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001461 if (ConnectivityManager.isNetworkTypeMobile(type)) {
1462 mNetworkActive = false;
1463 }
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -07001464 mDaemonHandler.post(new Runnable() {
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001465 @Override public void run() {
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -07001466 notifyInterfaceClassActivity(type,
1467 DataConnectionRealTimeInfo.DC_POWER_STATE_HIGH,
Ruchi Kandoifa97fcf2016-05-13 15:10:39 -07001468 SystemClock.elapsedRealtimeNanos(), -1, false);
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001469 }
1470 });
Haoyu Bai04124232012-06-28 15:26:19 -07001471 }
1472 }
1473
1474 @Override
1475 public void removeIdleTimer(String iface) {
1476 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1477
1478 if (DBG) Slog.d(TAG, "Removing idletimer");
1479
1480 synchronized (mIdleTimerLock) {
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001481 final IdleTimerParams params = mActiveIdleTimers.get(iface);
Haoyu Bai04124232012-06-28 15:26:19 -07001482 if (params == null || --(params.networkCount) > 0) {
1483 return;
1484 }
1485
1486 try {
1487 mConnector.execute("idletimer", "remove", iface,
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001488 Integer.toString(params.timeout), Integer.toString(params.type));
Haoyu Bai04124232012-06-28 15:26:19 -07001489 } catch (NativeDaemonConnectorException e) {
1490 throw e.rethrowAsParcelableException();
1491 }
1492 mActiveIdleTimers.remove(iface);
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -07001493 mDaemonHandler.post(new Runnable() {
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001494 @Override public void run() {
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -07001495 notifyInterfaceClassActivity(params.type,
1496 DataConnectionRealTimeInfo.DC_POWER_STATE_LOW,
Ruchi Kandoifa97fcf2016-05-13 15:10:39 -07001497 SystemClock.elapsedRealtimeNanos(), -1, false);
Dianne Hackborn77b987f2014-02-26 16:20:52 -08001498 }
1499 });
Haoyu Bai04124232012-06-28 15:26:19 -07001500 }
1501 }
1502
1503 @Override
Jeff Sharkeye8914c32012-05-01 16:26:09 -07001504 public NetworkStats getNetworkStatsSummaryDev() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001505 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey9a2c2a62013-01-14 16:48:51 -08001506 try {
1507 return mStatsFactory.readNetworkStatsSummaryDev();
1508 } catch (IOException e) {
1509 throw new IllegalStateException(e);
1510 }
Jeff Sharkeye8914c32012-05-01 16:26:09 -07001511 }
1512
1513 @Override
1514 public NetworkStats getNetworkStatsSummaryXt() {
1515 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey9a2c2a62013-01-14 16:48:51 -08001516 try {
1517 return mStatsFactory.readNetworkStatsSummaryXt();
1518 } catch (IOException e) {
1519 throw new IllegalStateException(e);
1520 }
Jeff Sharkeyae2c1812011-10-04 13:11:40 -07001521 }
1522
Jeff Sharkeyeedcb952011-05-17 14:55:15 -07001523 @Override
Jeff Sharkey9a13f362011-04-26 16:25:36 -07001524 public NetworkStats getNetworkStatsDetail() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001525 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey9a2c2a62013-01-14 16:48:51 -08001526 try {
Dianne Hackbornd0c5b9a2014-02-21 16:19:05 -08001527 return mStatsFactory.readNetworkStatsDetail(UID_ALL, null, TAG_ALL, null);
Jeff Sharkey9a2c2a62013-01-14 16:48:51 -08001528 } catch (IOException e) {
1529 throw new IllegalStateException(e);
1530 }
San Mehat91cac642010-03-31 14:31:36 -07001531 }
1532
Jeff Sharkeyeedcb952011-05-17 14:55:15 -07001533 @Override
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001534 public void setInterfaceQuota(String iface, long quotaBytes) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001535 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001536
Jeff Sharkey350083e2011-06-29 10:45:16 -07001537 // silently discard when control disabled
1538 // TODO: eventually migrate to be always enabled
1539 if (!mBandwidthControlEnabled) return;
1540
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001541 synchronized (mQuotaLock) {
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001542 if (mActiveQuotas.containsKey(iface)) {
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001543 throw new IllegalStateException("iface " + iface + " already has quota");
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001544 }
1545
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001546 try {
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001547 // TODO: support quota shared across interfaces
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001548 mConnector.execute("bandwidth", "setiquota", iface, quotaBytes);
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001549 mActiveQuotas.put(iface, quotaBytes);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001550 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001551 throw e.rethrowAsParcelableException();
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001552 }
Lorenzo Colitti50b60fc2017-08-11 13:47:49 +09001553
1554 synchronized (mTetheringStatsProviders) {
1555 for (ITetheringStatsProvider provider : mTetheringStatsProviders.keySet()) {
1556 try {
1557 provider.setInterfaceQuota(iface, quotaBytes);
1558 } catch (RemoteException e) {
1559 Log.e(TAG, "Problem setting tethering data limit on provider " +
1560 mTetheringStatsProviders.get(provider) + ": " + e);
1561 }
1562 }
1563 }
Ashish Sharma50fd36d2011-06-15 19:34:53 -07001564 }
1565 }
1566
1567 @Override
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001568 public void removeInterfaceQuota(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001569 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001570
Jeff Sharkey350083e2011-06-29 10:45:16 -07001571 // silently discard when control disabled
1572 // TODO: eventually migrate to be always enabled
1573 if (!mBandwidthControlEnabled) return;
1574
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001575 synchronized (mQuotaLock) {
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001576 if (!mActiveQuotas.containsKey(iface)) {
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001577 // TODO: eventually consider throwing
1578 return;
1579 }
1580
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001581 mActiveQuotas.remove(iface);
1582 mActiveAlerts.remove(iface);
Jeff Sharkey38ddeaa2011-11-08 13:04:22 -08001583
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001584 try {
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001585 // TODO: support quota shared across interfaces
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001586 mConnector.execute("bandwidth", "removeiquota", iface);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001587 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001588 throw e.rethrowAsParcelableException();
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001589 }
Lorenzo Colitti50b60fc2017-08-11 13:47:49 +09001590
1591 synchronized (mTetheringStatsProviders) {
1592 for (ITetheringStatsProvider provider : mTetheringStatsProviders.keySet()) {
1593 try {
1594 provider.setInterfaceQuota(iface, ITetheringStatsProvider.QUOTA_UNLIMITED);
1595 } catch (RemoteException e) {
1596 Log.e(TAG, "Problem removing tethering data limit on provider " +
1597 mTetheringStatsProviders.get(provider) + ": " + e);
1598 }
1599 }
1600 }
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001601 }
1602 }
1603
1604 @Override
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001605 public void setInterfaceAlert(String iface, long alertBytes) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001606 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001607
1608 // silently discard when control disabled
1609 // TODO: eventually migrate to be always enabled
1610 if (!mBandwidthControlEnabled) return;
1611
1612 // quick sanity check
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001613 if (!mActiveQuotas.containsKey(iface)) {
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001614 throw new IllegalStateException("setting alert requires existing quota on iface");
1615 }
1616
1617 synchronized (mQuotaLock) {
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001618 if (mActiveAlerts.containsKey(iface)) {
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001619 throw new IllegalStateException("iface " + iface + " already has alert");
1620 }
1621
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001622 try {
1623 // TODO: support alert shared across interfaces
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001624 mConnector.execute("bandwidth", "setinterfacealert", iface, alertBytes);
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001625 mActiveAlerts.put(iface, alertBytes);
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001626 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001627 throw e.rethrowAsParcelableException();
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001628 }
1629 }
1630 }
1631
1632 @Override
1633 public void removeInterfaceAlert(String iface) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001634 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001635
1636 // silently discard when control disabled
1637 // TODO: eventually migrate to be always enabled
1638 if (!mBandwidthControlEnabled) return;
1639
1640 synchronized (mQuotaLock) {
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001641 if (!mActiveAlerts.containsKey(iface)) {
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001642 // TODO: eventually consider throwing
1643 return;
1644 }
1645
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001646 try {
1647 // TODO: support alert shared across interfaces
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001648 mConnector.execute("bandwidth", "removeinterfacealert", iface);
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001649 mActiveAlerts.remove(iface);
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001650 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001651 throw e.rethrowAsParcelableException();
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001652 }
1653 }
1654 }
1655
1656 @Override
1657 public void setGlobalAlert(long alertBytes) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001658 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001659
1660 // silently discard when control disabled
1661 // TODO: eventually migrate to be always enabled
1662 if (!mBandwidthControlEnabled) return;
1663
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001664 try {
Jeff Sharkeyba2896e2011-11-30 18:13:54 -08001665 mConnector.execute("bandwidth", "setglobalalert", alertBytes);
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001666 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001667 throw e.rethrowAsParcelableException();
Jeff Sharkey41ff7ec2011-07-25 15:21:22 -07001668 }
1669 }
1670
Felipe Leme65be3022016-03-22 14:53:13 -07001671 private void setUidOnMeteredNetworkList(SparseBooleanArray quotaList, int uid,
1672 boolean blacklist, boolean enable) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001673 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001674
Jeff Sharkey350083e2011-06-29 10:45:16 -07001675 // silently discard when control disabled
1676 // TODO: eventually migrate to be always enabled
1677 if (!mBandwidthControlEnabled) return;
1678
Felipe Leme65be3022016-03-22 14:53:13 -07001679 final String chain = blacklist ? "naughtyapps" : "niceapps";
1680 final String suffix = enable ? "add" : "remove";
1681
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07001682 synchronized (mQuotaLock) {
Felipe Leme65be3022016-03-22 14:53:13 -07001683 final boolean oldEnable = quotaList.get(uid, false);
1684 if (oldEnable == enable) {
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001685 // TODO: eventually consider throwing
1686 return;
1687 }
1688
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001689 try {
Felipe Leme65be3022016-03-22 14:53:13 -07001690 mConnector.execute("bandwidth", suffix + chain, uid);
1691 if (enable) {
1692 quotaList.put(uid, true);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001693 } else {
Felipe Leme65be3022016-03-22 14:53:13 -07001694 quotaList.delete(uid);
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001695 }
1696 } catch (NativeDaemonConnectorException e) {
Jeff Sharkey276642b2011-12-01 11:24:24 -08001697 throw e.rethrowAsParcelableException();
Jeff Sharkeyb3f19ca2011-06-29 23:54:13 -07001698 }
Ashish Sharma50fd36d2011-06-15 19:34:53 -07001699 }
1700 }
1701
Jeff Sharkey63d27a92011-08-03 17:04:22 -07001702 @Override
Felipe Leme65be3022016-03-22 14:53:13 -07001703 public void setUidMeteredNetworkBlacklist(int uid, boolean enable) {
1704 setUidOnMeteredNetworkList(mUidRejectOnMetered, uid, true, enable);
1705 }
1706
1707 @Override
1708 public void setUidMeteredNetworkWhitelist(int uid, boolean enable) {
1709 setUidOnMeteredNetworkList(mUidAllowOnMetered, uid, false, enable);
1710 }
1711
1712 @Override
1713 public boolean setDataSaverModeEnabled(boolean enable) {
1714 if (DBG) Log.d(TAG, "setDataSaverMode: " + enable);
1715 synchronized (mQuotaLock) {
1716 if (mDataSaverMode == enable) {
1717 Log.w(TAG, "setDataSaverMode(): already " + mDataSaverMode);
1718 return true;
1719 }
1720 try {
1721 final boolean changed = mNetdService.bandwidthEnableDataSaver(enable);
1722 if (changed) {
1723 mDataSaverMode = enable;
1724 } else {
1725 Log.w(TAG, "setDataSaverMode(" + enable + "): netd command silently failed");
1726 }
1727 return changed;
1728 } catch (RemoteException e) {
1729 Log.w(TAG, "setDataSaverMode(" + enable + "): netd command failed", e);
1730 return false;
1731 }
1732 }
1733 }
1734
1735 @Override
Robin Lee17e61832016-05-09 13:46:28 +01001736 public void setAllowOnlyVpnForUids(boolean add, UidRange[] uidRanges)
1737 throws ServiceSpecificException {
1738 try {
1739 mNetdService.networkRejectNonSecureVpn(add, uidRanges);
1740 } catch (ServiceSpecificException e) {
1741 Log.w(TAG, "setAllowOnlyVpnForUids(" + add + ", " + Arrays.toString(uidRanges) + ")"
1742 + ": netd command failed", e);
1743 throw e;
1744 } catch (RemoteException e) {
1745 Log.w(TAG, "setAllowOnlyVpnForUids(" + add + ", " + Arrays.toString(uidRanges) + ")"
1746 + ": netd command failed", e);
1747 throw e.rethrowAsRuntimeException();
1748 }
1749 }
1750
Lorenzo Colitti8c253ad2017-07-19 00:23:44 +09001751 private void applyUidCleartextNetworkPolicy(int uid, int policy) {
1752 final String policyString;
1753 switch (policy) {
1754 case StrictMode.NETWORK_POLICY_ACCEPT:
1755 policyString = "accept";
1756 break;
1757 case StrictMode.NETWORK_POLICY_LOG:
1758 policyString = "log";
1759 break;
1760 case StrictMode.NETWORK_POLICY_REJECT:
1761 policyString = "reject";
1762 break;
1763 default:
1764 throw new IllegalArgumentException("Unknown policy " + policy);
1765 }
1766
1767 try {
1768 mConnector.execute("strict", "set_uid_cleartext_policy", uid, policyString);
1769 mUidCleartextPolicy.put(uid, policy);
1770 } catch (NativeDaemonConnectorException e) {
1771 throw e.rethrowAsParcelableException();
1772 }
1773 }
1774
Robin Lee17e61832016-05-09 13:46:28 +01001775 @Override
Jeff Sharkey605eb792014-11-04 13:34:06 -08001776 public void setUidCleartextNetworkPolicy(int uid, int policy) {
1777 if (Binder.getCallingUid() != uid) {
1778 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1779 }
1780
1781 synchronized (mQuotaLock) {
1782 final int oldPolicy = mUidCleartextPolicy.get(uid, StrictMode.NETWORK_POLICY_ACCEPT);
1783 if (oldPolicy == policy) {
Lorenzo Colitti8c253ad2017-07-19 00:23:44 +09001784 // This also ensures we won't needlessly apply an ACCEPT policy if we've just
1785 // enabled strict and the underlying iptables rules are empty.
Jeff Sharkey605eb792014-11-04 13:34:06 -08001786 return;
1787 }
1788
1789 if (!mStrictEnabled) {
1790 // Module isn't enabled yet; stash the requested policy away to
1791 // apply later once the daemon is connected.
1792 mUidCleartextPolicy.put(uid, policy);
1793 return;
1794 }
1795
Lorenzo Colitti8c253ad2017-07-19 00:23:44 +09001796 // netd does not keep state on strict mode policies, and cannot replace a non-accept
1797 // policy without deleting it first. Rather than add state to netd, just always send
1798 // it an accept policy when switching between two non-accept policies.
1799 if (oldPolicy != StrictMode.NETWORK_POLICY_ACCEPT &&
1800 policy != StrictMode.NETWORK_POLICY_ACCEPT) {
1801 applyUidCleartextNetworkPolicy(uid, policy);
Jeff Sharkey605eb792014-11-04 13:34:06 -08001802 }
1803 }
Lorenzo Colitti8c253ad2017-07-19 00:23:44 +09001804 applyUidCleartextNetworkPolicy(uid, policy);
Jeff Sharkey605eb792014-11-04 13:34:06 -08001805 }
1806
1807 @Override
Jeff Sharkey63d27a92011-08-03 17:04:22 -07001808 public boolean isBandwidthControlEnabled() {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001809 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey63d27a92011-08-03 17:04:22 -07001810 return mBandwidthControlEnabled;
1811 }
1812
1813 @Override
Jeff Sharkeyeedcb952011-05-17 14:55:15 -07001814 public NetworkStats getNetworkStatsUidDetail(int uid) {
Jeff Sharkey4529bb62011-12-14 10:31:54 -08001815 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Jeff Sharkey9a2c2a62013-01-14 16:48:51 -08001816 try {
Dianne Hackbornd0c5b9a2014-02-21 16:19:05 -08001817 return mStatsFactory.readNetworkStatsDetail(uid, null, TAG_ALL, null);
Jeff Sharkey9a2c2a62013-01-14 16:48:51 -08001818 } catch (IOException e) {
1819 throw new IllegalStateException(e);
1820 }
Jeff Sharkeyeedcb952011-05-17 14:55:15 -07001821 }
1822
Lorenzo Colitti07f13042017-07-10 19:06:57 +09001823 private class NetdTetheringStatsProvider extends ITetheringStatsProvider.Stub {
1824 @Override
1825 public NetworkStats getTetherStats() {
1826 final NativeDaemonEvent[] events;
1827 try {
1828 events = mConnector.executeForList("bandwidth", "gettetherstats");
1829 } catch (NativeDaemonConnectorException e) {
1830 throw e.rethrowAsParcelableException();
1831 }
1832 final NetworkStats stats = new NetworkStats(SystemClock.elapsedRealtime(), 1);
Jeff Sharkeye4984be2013-09-10 21:03:27 -07001833 for (NativeDaemonEvent event : events) {
1834 if (event.getCode() != TetheringStatsListResult) continue;
1835
1836 // 114 ifaceIn ifaceOut rx_bytes rx_packets tx_bytes tx_packets
1837 final StringTokenizer tok = new StringTokenizer(event.getMessage());
1838 try {
1839 final String ifaceIn = tok.nextToken();
1840 final String ifaceOut = tok.nextToken();
1841
1842 final NetworkStats.Entry entry = new NetworkStats.Entry();
1843 entry.iface = ifaceOut;
1844 entry.uid = UID_TETHERING;
1845 entry.set = SET_DEFAULT;
1846 entry.tag = TAG_NONE;
1847 entry.rxBytes = Long.parseLong(tok.nextToken());
1848 entry.rxPackets = Long.parseLong(tok.nextToken());
1849 entry.txBytes = Long.parseLong(tok.nextToken());
1850 entry.txPackets = Long.parseLong(tok.nextToken());
1851 stats.combineValues(entry);
1852 } catch (NoSuchElementException e) {
1853 throw new IllegalStateException("problem parsing tethering stats: " + event);
1854 } catch (NumberFormatException e) {
1855 throw new IllegalStateException("problem parsing tethering stats: " + event);
1856 }
1857 }
Lorenzo Colitti07f13042017-07-10 19:06:57 +09001858 return stats;
1859 }
Lorenzo Colitti50b60fc2017-08-11 13:47:49 +09001860
1861 @Override
1862 public void setInterfaceQuota(String iface, long quotaBytes) {
1863 // Do nothing. netd is already informed of quota changes in setInterfaceQuota.
1864 }
Lorenzo Colitti07f13042017-07-10 19:06:57 +09001865 }
1866
1867 @Override
1868 public NetworkStats getNetworkStatsTethering() {
1869 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1870
1871 final NetworkStats stats = new NetworkStats(SystemClock.elapsedRealtime(), 1);
1872 synchronized (mTetheringStatsProviders) {
1873 for (ITetheringStatsProvider provider: mTetheringStatsProviders.keySet()) {
1874 try {
1875 stats.combineAllValues(provider.getTetherStats());
1876 } catch (RemoteException e) {
1877 Log.e(TAG, "Problem reading tethering stats from " +
1878 mTetheringStatsProviders.get(provider) + ": " + e);
1879 }
1880 }
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -07001881 }
Jeff Sharkeye4984be2013-09-10 21:03:27 -07001882 return stats;
Jeff Sharkeycdd02c5d2011-09-16 01:52:49 -07001883 }
1884
Jeff Sharkeyaf75c332011-11-18 12:41:12 -08001885 @Override
Pierre Imai8e48e672016-04-21 13:30:43 +09001886 public void setDnsConfigurationForNetwork(int netId, String[] servers, String domains) {
1887 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
1888
1889 ContentResolver resolver = mContext.getContentResolver();
1890
1891 int sampleValidity = Settings.Global.getInt(resolver,
1892 Settings.Global.DNS_RESOLVER_SAMPLE_VALIDITY_SECONDS,
1893 DNS_RESOLVER_DEFAULT_SAMPLE_VALIDITY_SECONDS);
1894 if (sampleValidity < 0 || sampleValidity > 65535) {
1895 Slog.w(TAG, "Invalid sampleValidity=" + sampleValidity + ", using default=" +
1896 DNS_RESOLVER_DEFAULT_SAMPLE_VALIDITY_SECONDS);
1897 sampleValidity = DNS_RESOLVER_DEFAULT_SAMPLE_VALIDITY_SECONDS;
1898 }
1899
1900 int successThreshold = Settings.Global.getInt(resolver,
1901 Settings.Global.DNS_RESOLVER_SUCCESS_THRESHOLD_PERCENT,
1902 DNS_RESOLVER_DEFAULT_SUCCESS_THRESHOLD_PERCENT);
1903 if (successThreshold < 0 || successThreshold > 100) {
1904 Slog.w(TAG, "Invalid successThreshold=" + successThreshold + ", using default=" +
1905 DNS_RESOLVER_DEFAULT_SUCCESS_THRESHOLD_PERCENT);
1906 successThreshold = DNS_RESOLVER_DEFAULT_SUCCESS_THRESHOLD_PERCENT;
1907 }
1908
1909 int minSamples = Settings.Global.getInt(resolver,
1910 Settings.Global.DNS_RESOLVER_MIN_SAMPLES, DNS_RESOLVER_DEFAULT_MIN_SAMPLES);
1911 int maxSamples = Settings.Global.getInt(resolver,
1912 Settings.Global.DNS_RESOLVER_MAX_SAMPLES, DNS_RESOLVER_DEFAULT_MAX_SAMPLES);
1913 if (minSamples < 0 || minSamples > maxSamples || maxSamples > 64) {
1914 Slog.w(TAG, "Invalid sample count (min, max)=(" + minSamples + ", " + maxSamples +
1915 "), using default=(" + DNS_RESOLVER_DEFAULT_MIN_SAMPLES + ", " +
1916 DNS_RESOLVER_DEFAULT_MAX_SAMPLES + ")");
1917 minSamples = DNS_RESOLVER_DEFAULT_MIN_SAMPLES;
1918 maxSamples = DNS_RESOLVER_DEFAULT_MAX_SAMPLES;
1919 }
1920
1921 final String[] domainStrs = domains == null ? new String[0] : domains.split(" ");
1922 final int[] params = { sampleValidity, successThreshold, minSamples, maxSamples };
1923 try {
1924 mNetdService.setResolverConfiguration(netId, servers, domainStrs, params);
1925 } catch (RemoteException e) {
1926 throw new RuntimeException(e);
1927 }
1928 }
1929
1930 @Override
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04001931 public void addVpnUidRanges(int netId, UidRange[] ranges) {
Chad Brubaker3277620a2013-06-12 13:37:30 -07001932 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04001933 Object[] argv = new Object[3 + MAX_UID_RANGES_PER_COMMAND];
1934 argv[0] = "users";
1935 argv[1] = "add";
1936 argv[2] = netId;
1937 int argc = 3;
1938 // Avoid overly long commands by limiting number of UID ranges per command.
1939 for (int i = 0; i < ranges.length; i++) {
1940 argv[argc++] = ranges[i].toString();
1941 if (i == (ranges.length - 1) || argc == argv.length) {
1942 try {
1943 mConnector.execute("network", Arrays.copyOf(argv, argc));
1944 } catch (NativeDaemonConnectorException e) {
1945 throw e.rethrowAsParcelableException();
1946 }
1947 argc = 3;
1948 }
Chad Brubaker3277620a2013-06-12 13:37:30 -07001949 }
1950 }
1951
1952 @Override
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04001953 public void removeVpnUidRanges(int netId, UidRange[] ranges) {
Chad Brubaker3277620a2013-06-12 13:37:30 -07001954 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04001955 Object[] argv = new Object[3 + MAX_UID_RANGES_PER_COMMAND];
1956 argv[0] = "users";
1957 argv[1] = "remove";
1958 argv[2] = netId;
1959 int argc = 3;
1960 // Avoid overly long commands by limiting number of UID ranges per command.
1961 for (int i = 0; i < ranges.length; i++) {
1962 argv[argc++] = ranges[i].toString();
1963 if (i == (ranges.length - 1) || argc == argv.length) {
1964 try {
1965 mConnector.execute("network", Arrays.copyOf(argv, argc));
1966 } catch (NativeDaemonConnectorException e) {
1967 throw e.rethrowAsParcelableException();
1968 }
1969 argc = 3;
1970 }
Chad Brubakercca54c42013-06-27 17:41:38 -07001971 }
1972 }
1973
1974 @Override
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07001975 public void setFirewallEnabled(boolean enabled) {
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07001976 enforceSystemUid();
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07001977 try {
Amith Yamasani15e472352015-04-24 19:06:07 -07001978 mConnector.execute("firewall", "enable", enabled ? "whitelist" : "blacklist");
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07001979 mFirewallEnabled = enabled;
1980 } catch (NativeDaemonConnectorException e) {
1981 throw e.rethrowAsParcelableException();
1982 }
1983 }
1984
1985 @Override
1986 public boolean isFirewallEnabled() {
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07001987 enforceSystemUid();
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07001988 return mFirewallEnabled;
1989 }
1990
1991 @Override
Jeff Sharkey2c092982012-08-24 11:44:40 -07001992 public void setFirewallInterfaceRule(String iface, boolean allow) {
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07001993 enforceSystemUid();
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07001994 Preconditions.checkState(mFirewallEnabled);
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07001995 final String rule = allow ? "allow" : "deny";
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07001996 try {
1997 mConnector.execute("firewall", "set_interface_rule", iface, rule);
1998 } catch (NativeDaemonConnectorException e) {
1999 throw e.rethrowAsParcelableException();
2000 }
2001 }
2002
Lorenzo Colitti3fef7232016-04-29 18:00:03 +09002003 private void closeSocketsForFirewallChainLocked(int chain, String chainName) {
Lorenzo Colitti4cb42402016-04-24 12:52:00 +09002004 // UID ranges to close sockets on.
2005 UidRange[] ranges;
2006 // UID ranges whose sockets we won't touch.
2007 int[] exemptUids;
2008
Lorenzo Colitti3fef7232016-04-29 18:00:03 +09002009 final SparseIntArray rules = getUidFirewallRules(chain);
Lorenzo Colitti4cb42402016-04-24 12:52:00 +09002010 int numUids = 0;
2011
2012 if (getFirewallType(chain) == FIREWALL_TYPE_WHITELIST) {
2013 // Close all sockets on all non-system UIDs...
2014 ranges = new UidRange[] {
2015 // TODO: is there a better way of finding all existing users? If so, we could
2016 // specify their ranges here.
2017 new UidRange(Process.FIRST_APPLICATION_UID, Integer.MAX_VALUE),
2018 };
2019 // ... except for the UIDs that have allow rules.
2020 exemptUids = new int[rules.size()];
2021 for (int i = 0; i < exemptUids.length; i++) {
2022 if (rules.valueAt(i) == NetworkPolicyManager.FIREWALL_RULE_ALLOW) {
2023 exemptUids[numUids] = rules.keyAt(i);
2024 numUids++;
2025 }
2026 }
2027 // Normally, whitelist chains only contain deny rules, so numUids == exemptUids.length.
2028 // But the code does not guarantee this in any way, and at least in one case - if we add
2029 // a UID rule to the firewall, and then disable the firewall - the chains can contain
2030 // the wrong type of rule. In this case, don't close connections that we shouldn't.
2031 //
2032 // TODO: tighten up this code by ensuring we never set the wrong type of rule, and
2033 // fix setFirewallEnabled to grab mQuotaLock and clear rules.
2034 if (numUids != exemptUids.length) {
2035 exemptUids = Arrays.copyOf(exemptUids, numUids);
2036 }
2037 } else {
2038 // Close sockets for every UID that has a deny rule...
2039 ranges = new UidRange[rules.size()];
2040 for (int i = 0; i < ranges.length; i++) {
2041 if (rules.valueAt(i) == NetworkPolicyManager.FIREWALL_RULE_DENY) {
2042 int uid = rules.keyAt(i);
2043 ranges[numUids] = new UidRange(uid, uid);
2044 numUids++;
2045 }
2046 }
2047 // As above; usually numUids == ranges.length, but not always.
2048 if (numUids != ranges.length) {
2049 ranges = Arrays.copyOf(ranges, numUids);
2050 }
2051 // ... with no exceptions.
2052 exemptUids = new int[0];
2053 }
2054
2055 try {
2056 mNetdService.socketDestroy(ranges, exemptUids);
2057 } catch(RemoteException | ServiceSpecificException e) {
2058 Slog.e(TAG, "Error closing sockets after enabling chain " + chainName + ": " + e);
2059 }
2060 }
2061
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002062 @Override
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002063 public void setFirewallChainEnabled(int chain, boolean enable) {
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07002064 enforceSystemUid();
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002065 synchronized (mQuotaLock) {
Xiaohui Chen896b49a2015-07-29 14:12:22 -07002066 if (mFirewallChainStates.get(chain) == enable) {
2067 // All is the same, nothing to do. This relies on the fact that netd has child
2068 // chains default detached.
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002069 return;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002070 }
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002071 mFirewallChainStates.put(chain, enable);
2072
2073 final String operation = enable ? "enable_chain" : "disable_chain";
Lorenzo Colitti3fef7232016-04-29 18:00:03 +09002074 final String chainName;
Lorenzo Colitti4cb42402016-04-24 12:52:00 +09002075 switch(chain) {
2076 case FIREWALL_CHAIN_STANDBY:
2077 chainName = FIREWALL_CHAIN_NAME_STANDBY;
2078 break;
2079 case FIREWALL_CHAIN_DOZABLE:
2080 chainName = FIREWALL_CHAIN_NAME_DOZABLE;
2081 break;
2082 case FIREWALL_CHAIN_POWERSAVE:
2083 chainName = FIREWALL_CHAIN_NAME_POWERSAVE;
2084 break;
2085 default:
2086 throw new IllegalArgumentException("Bad child chain: " + chain);
2087 }
2088
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002089 try {
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002090 mConnector.execute("firewall", operation, chainName);
2091 } catch (NativeDaemonConnectorException e) {
2092 throw e.rethrowAsParcelableException();
2093 }
Lorenzo Colitti4cb42402016-04-24 12:52:00 +09002094
2095 // Close any sockets that were opened by the affected UIDs. This has to be done after
2096 // disabling network connectivity, in case they react to the socket close by reopening
2097 // the connection and race with the iptables commands that enable the firewall. All
2098 // whitelist and blacklist chains allow RSTs through.
2099 if (enable) {
2100 if (DBG) Slog.d(TAG, "Closing sockets after enabling chain " + chainName);
Lorenzo Colitti3fef7232016-04-29 18:00:03 +09002101 closeSocketsForFirewallChainLocked(chain, chainName);
Lorenzo Colitti4cb42402016-04-24 12:52:00 +09002102 }
Amith Yamasani15e472352015-04-24 19:06:07 -07002103 }
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002104 }
2105
2106 private int getFirewallType(int chain) {
2107 switch (chain) {
2108 case FIREWALL_CHAIN_STANDBY:
2109 return FIREWALL_TYPE_BLACKLIST;
2110 case FIREWALL_CHAIN_DOZABLE:
2111 return FIREWALL_TYPE_WHITELIST;
Felipe Leme011b98f2016-02-10 17:28:31 -08002112 case FIREWALL_CHAIN_POWERSAVE:
2113 return FIREWALL_TYPE_WHITELIST;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002114 default:
2115 return isFirewallEnabled() ? FIREWALL_TYPE_WHITELIST : FIREWALL_TYPE_BLACKLIST;
2116 }
2117 }
2118
2119 @Override
2120 public void setFirewallUidRules(int chain, int[] uids, int[] rules) {
2121 enforceSystemUid();
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002122 synchronized (mQuotaLock) {
2123 SparseIntArray uidFirewallRules = getUidFirewallRules(chain);
2124 SparseIntArray newRules = new SparseIntArray();
2125 // apply new set of rules
2126 for (int index = uids.length - 1; index >= 0; --index) {
2127 int uid = uids[index];
2128 int rule = rules[index];
Felipe Lemea701cad2016-05-12 09:58:14 -07002129 updateFirewallUidRuleLocked(chain, uid, rule);
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002130 newRules.put(uid, rule);
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002131 }
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002132 // collect the rules to remove.
2133 SparseIntArray rulesToRemove = new SparseIntArray();
2134 for (int index = uidFirewallRules.size() - 1; index >= 0; --index) {
2135 int uid = uidFirewallRules.keyAt(index);
2136 if (newRules.indexOfKey(uid) < 0) {
2137 rulesToRemove.put(uid, FIREWALL_RULE_DEFAULT);
2138 }
2139 }
2140 // remove dead rules
2141 for (int index = rulesToRemove.size() - 1; index >= 0; --index) {
2142 int uid = rulesToRemove.keyAt(index);
Felipe Lemea701cad2016-05-12 09:58:14 -07002143 updateFirewallUidRuleLocked(chain, uid, FIREWALL_RULE_DEFAULT);
2144 }
2145 try {
2146 switch (chain) {
2147 case FIREWALL_CHAIN_DOZABLE:
2148 mNetdService.firewallReplaceUidChain("fw_dozable", true, uids);
2149 break;
2150 case FIREWALL_CHAIN_STANDBY:
2151 mNetdService.firewallReplaceUidChain("fw_standby", false, uids);
2152 break;
2153 case FIREWALL_CHAIN_POWERSAVE:
2154 mNetdService.firewallReplaceUidChain("fw_powersave", true, uids);
2155 break;
2156 case FIREWALL_CHAIN_NONE:
2157 default:
2158 Slog.d(TAG, "setFirewallUidRules() called on invalid chain: " + chain);
2159 }
2160 } catch (RemoteException e) {
2161 Slog.w(TAG, "Error flushing firewall chain " + chain, e);
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002162 }
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002163 }
2164 }
2165
2166 @Override
2167 public void setFirewallUidRule(int chain, int uid, int rule) {
2168 enforceSystemUid();
Felipe Lemea701cad2016-05-12 09:58:14 -07002169 synchronized (mQuotaLock) {
2170 setFirewallUidRuleLocked(chain, uid, rule);
2171 }
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002172 }
2173
Felipe Lemea701cad2016-05-12 09:58:14 -07002174 private void setFirewallUidRuleLocked(int chain, int uid, int rule) {
2175 if (updateFirewallUidRuleLocked(chain, uid, rule)) {
Amith Yamasani15e472352015-04-24 19:06:07 -07002176 try {
Felipe Lemea701cad2016-05-12 09:58:14 -07002177 mConnector.execute("firewall", "set_uid_rule", getFirewallChainName(chain), uid,
2178 getFirewallRuleName(chain, rule));
Amith Yamasani15e472352015-04-24 19:06:07 -07002179 } catch (NativeDaemonConnectorException e) {
2180 throw e.rethrowAsParcelableException();
2181 }
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002182 }
2183 }
2184
Felipe Lemea701cad2016-05-12 09:58:14 -07002185 // TODO: now that netd supports batching, NMS should not keep these data structures anymore...
2186 private boolean updateFirewallUidRuleLocked(int chain, int uid, int rule) {
2187 SparseIntArray uidFirewallRules = getUidFirewallRules(chain);
2188
2189 final int oldUidFirewallRule = uidFirewallRules.get(uid, FIREWALL_RULE_DEFAULT);
2190 if (DBG) {
2191 Slog.d(TAG, "oldRule = " + oldUidFirewallRule
2192 + ", newRule=" + rule + " for uid=" + uid + " on chain " + chain);
2193 }
2194 if (oldUidFirewallRule == rule) {
2195 if (DBG) Slog.d(TAG, "!!!!! Skipping change");
2196 // TODO: eventually consider throwing
2197 return false;
2198 }
2199
2200 String ruleName = getFirewallRuleName(chain, rule);
2201 String oldRuleName = getFirewallRuleName(chain, oldUidFirewallRule);
2202
2203 if (rule == NetworkPolicyManager.FIREWALL_RULE_DEFAULT) {
2204 uidFirewallRules.delete(uid);
2205 } else {
2206 uidFirewallRules.put(uid, rule);
2207 }
2208 return !ruleName.equals(oldRuleName);
2209 }
2210
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002211 private @NonNull String getFirewallRuleName(int chain, int rule) {
2212 String ruleName;
2213 if (getFirewallType(chain) == FIREWALL_TYPE_WHITELIST) {
2214 if (rule == NetworkPolicyManager.FIREWALL_RULE_ALLOW) {
2215 ruleName = "allow";
2216 } else {
2217 ruleName = "deny";
2218 }
2219 } else { // Blacklist mode
2220 if (rule == NetworkPolicyManager.FIREWALL_RULE_DENY) {
2221 ruleName = "deny";
2222 } else {
2223 ruleName = "allow";
2224 }
2225 }
2226 return ruleName;
2227 }
2228
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002229 private @NonNull SparseIntArray getUidFirewallRules(int chain) {
2230 switch (chain) {
2231 case FIREWALL_CHAIN_STANDBY:
2232 return mUidFirewallStandbyRules;
2233 case FIREWALL_CHAIN_DOZABLE:
2234 return mUidFirewallDozableRules;
Felipe Leme011b98f2016-02-10 17:28:31 -08002235 case FIREWALL_CHAIN_POWERSAVE:
2236 return mUidFirewallPowerSaveRules;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002237 case FIREWALL_CHAIN_NONE:
2238 return mUidFirewallRules;
2239 default:
2240 throw new IllegalArgumentException("Unknown chain:" + chain);
2241 }
2242 }
2243
2244 public @NonNull String getFirewallChainName(int chain) {
2245 switch (chain) {
2246 case FIREWALL_CHAIN_STANDBY:
2247 return FIREWALL_CHAIN_NAME_STANDBY;
2248 case FIREWALL_CHAIN_DOZABLE:
2249 return FIREWALL_CHAIN_NAME_DOZABLE;
Felipe Leme011b98f2016-02-10 17:28:31 -08002250 case FIREWALL_CHAIN_POWERSAVE:
2251 return FIREWALL_CHAIN_NAME_POWERSAVE;
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002252 case FIREWALL_CHAIN_NONE:
2253 return FIREWALL_CHAIN_NAME_NONE;
2254 default:
2255 throw new IllegalArgumentException("Unknown chain:" + chain);
2256 }
2257 }
2258
Jeff Sharkeyf56e2432012-09-06 17:54:29 -07002259 private static void enforceSystemUid() {
2260 final int uid = Binder.getCallingUid();
2261 if (uid != Process.SYSTEM_UID) {
2262 throw new SecurityException("Only available to AID_SYSTEM");
2263 }
2264 }
2265
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002266 @Override
Lorenzo Colitti79751842013-02-28 16:16:03 +09002267 public void startClatd(String interfaceName) throws IllegalStateException {
2268 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2269
2270 try {
2271 mConnector.execute("clatd", "start", interfaceName);
2272 } catch (NativeDaemonConnectorException e) {
2273 throw e.rethrowAsParcelableException();
2274 }
2275 }
2276
2277 @Override
Lorenzo Colitti95439462014-10-09 13:44:48 +09002278 public void stopClatd(String interfaceName) throws IllegalStateException {
Lorenzo Colitti79751842013-02-28 16:16:03 +09002279 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2280
2281 try {
Lorenzo Colitti95439462014-10-09 13:44:48 +09002282 mConnector.execute("clatd", "stop", interfaceName);
Lorenzo Colitti79751842013-02-28 16:16:03 +09002283 } catch (NativeDaemonConnectorException e) {
2284 throw e.rethrowAsParcelableException();
2285 }
2286 }
2287
2288 @Override
Lorenzo Colitti95439462014-10-09 13:44:48 +09002289 public boolean isClatdStarted(String interfaceName) {
Lorenzo Colitti79751842013-02-28 16:16:03 +09002290 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2291
2292 final NativeDaemonEvent event;
2293 try {
Lorenzo Colitti95439462014-10-09 13:44:48 +09002294 event = mConnector.execute("clatd", "status", interfaceName);
Lorenzo Colitti79751842013-02-28 16:16:03 +09002295 } catch (NativeDaemonConnectorException e) {
2296 throw e.rethrowAsParcelableException();
2297 }
2298
2299 event.checkCode(ClatdStatusResult);
2300 return event.getMessage().endsWith("started");
2301 }
2302
Dianne Hackborn77b987f2014-02-26 16:20:52 -08002303 @Override
2304 public void registerNetworkActivityListener(INetworkActivityListener listener) {
2305 mNetworkActivityListeners.register(listener);
2306 }
2307
2308 @Override
2309 public void unregisterNetworkActivityListener(INetworkActivityListener listener) {
2310 mNetworkActivityListeners.unregister(listener);
2311 }
2312
2313 @Override
2314 public boolean isNetworkActive() {
2315 synchronized (mNetworkActivityListeners) {
2316 return mNetworkActive || mActiveIdleTimers.isEmpty();
2317 }
2318 }
2319
2320 private void reportNetworkActive() {
2321 final int length = mNetworkActivityListeners.beginBroadcast();
Robert Greenwalt2c9f5472014-04-21 14:50:28 -07002322 try {
2323 for (int i = 0; i < length; i++) {
2324 try {
2325 mNetworkActivityListeners.getBroadcastItem(i).onNetworkActive();
Felipe Leme03e689d2016-03-02 16:17:38 -08002326 } catch (RemoteException | RuntimeException e) {
Robert Greenwalt2c9f5472014-04-21 14:50:28 -07002327 }
Dianne Hackborn77b987f2014-02-26 16:20:52 -08002328 }
Robert Greenwalt2c9f5472014-04-21 14:50:28 -07002329 } finally {
2330 mNetworkActivityListeners.finishBroadcast();
Dianne Hackborn77b987f2014-02-26 16:20:52 -08002331 }
Dianne Hackborn77b987f2014-02-26 16:20:52 -08002332 }
2333
Mattias Falk8b47b362011-08-23 14:15:13 +02002334 /** {@inheritDoc} */
Jeff Sharkey7b4596f2013-02-25 10:55:29 -08002335 @Override
Jeff Sharkeyfa23c5a2011-08-09 21:44:24 -07002336 public void monitor() {
2337 if (mConnector != null) {
2338 mConnector.monitor();
2339 }
2340 }
Jeff Sharkey47eb1022011-08-25 17:48:52 -07002341
2342 @Override
2343 protected void dump(FileDescriptor fd, PrintWriter pw, String[] args) {
2344 mContext.enforceCallingOrSelfPermission(DUMP, TAG);
2345
Robert Greenwalt470fd722012-01-18 12:51:15 -08002346 pw.println("NetworkManagementService NativeDaemonConnector Log:");
2347 mConnector.dump(fd, pw, args);
2348 pw.println();
2349
Jeff Sharkey47eb1022011-08-25 17:48:52 -07002350 pw.print("Bandwidth control enabled: "); pw.println(mBandwidthControlEnabled);
Dianne Hackborn2ffa11e2014-04-21 15:56:18 -07002351 pw.print("mMobileActivityFromRadio="); pw.print(mMobileActivityFromRadio);
2352 pw.print(" mLastPowerStateFromRadio="); pw.println(mLastPowerStateFromRadio);
2353 pw.print("mNetworkActive="); pw.println(mNetworkActive);
Jeff Sharkey47eb1022011-08-25 17:48:52 -07002354
2355 synchronized (mQuotaLock) {
Jeff Sharkeyb24a7852012-05-01 15:19:37 -07002356 pw.print("Active quota ifaces: "); pw.println(mActiveQuotas.toString());
2357 pw.print("Active alert ifaces: "); pw.println(mActiveAlerts.toString());
Felipe Leme65be3022016-03-22 14:53:13 -07002358 pw.print("Data saver mode: "); pw.println(mDataSaverMode);
2359 dumpUidRuleOnQuotaLocked(pw, "blacklist", mUidRejectOnMetered);
2360 dumpUidRuleOnQuotaLocked(pw, "whitelist", mUidAllowOnMetered);
Jeff Sharkey47eb1022011-08-25 17:48:52 -07002361 }
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002362
Amith Yamasani15e472352015-04-24 19:06:07 -07002363 synchronized (mUidFirewallRules) {
Felipe Leme011b98f2016-02-10 17:28:31 -08002364 dumpUidFirewallRule(pw, "", mUidFirewallRules);
Amith Yamasani15e472352015-04-24 19:06:07 -07002365 }
2366
Felipe Leme65be3022016-03-22 14:53:13 -07002367 pw.print("UID firewall standby chain enabled: "); pw.println(
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002368 mFirewallChainStates.get(FIREWALL_CHAIN_STANDBY));
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002369 synchronized (mUidFirewallStandbyRules) {
Felipe Leme011b98f2016-02-10 17:28:31 -08002370 dumpUidFirewallRule(pw, FIREWALL_CHAIN_NAME_STANDBY, mUidFirewallStandbyRules);
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002371 }
2372
Felipe Leme65be3022016-03-22 14:53:13 -07002373 pw.print("UID firewall dozable chain enabled: "); pw.println(
Xiaohui Chen8dca36d2015-06-19 12:44:59 -07002374 mFirewallChainStates.get(FIREWALL_CHAIN_DOZABLE));
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002375 synchronized (mUidFirewallDozableRules) {
Felipe Leme011b98f2016-02-10 17:28:31 -08002376 dumpUidFirewallRule(pw, FIREWALL_CHAIN_NAME_DOZABLE, mUidFirewallDozableRules);
2377 }
2378
2379 pw.println("UID firewall powersave chain enabled: " +
2380 mFirewallChainStates.get(FIREWALL_CHAIN_POWERSAVE));
2381 synchronized (mUidFirewallPowerSaveRules) {
2382 dumpUidFirewallRule(pw, FIREWALL_CHAIN_NAME_POWERSAVE, mUidFirewallPowerSaveRules);
Xiaohui Chenb41c9f72015-06-17 15:55:37 -07002383 }
2384
Dianne Hackborn77b987f2014-02-26 16:20:52 -08002385 synchronized (mIdleTimerLock) {
2386 pw.println("Idle timers:");
2387 for (HashMap.Entry<String, IdleTimerParams> ent : mActiveIdleTimers.entrySet()) {
2388 pw.print(" "); pw.print(ent.getKey()); pw.println(":");
2389 IdleTimerParams params = ent.getValue();
2390 pw.print(" timeout="); pw.print(params.timeout);
2391 pw.print(" type="); pw.print(params.type);
2392 pw.print(" networkCount="); pw.println(params.networkCount);
2393 }
2394 }
2395
Jeff Sharkeyc268f0b2012-08-24 10:25:31 -07002396 pw.print("Firewall enabled: "); pw.println(mFirewallEnabled);
Felipe Leme65be3022016-03-22 14:53:13 -07002397 pw.print("Netd service status: " );
2398 if (mNetdService == null) {
2399 pw.println("disconnected");
2400 } else {
2401 try {
2402 final boolean alive = mNetdService.isAlive();
2403 pw.println(alive ? "alive": "dead");
2404 } catch (RemoteException e) {
2405 pw.println("unreachable");
2406 }
2407 }
2408 }
2409
2410 private void dumpUidRuleOnQuotaLocked(PrintWriter pw, String name, SparseBooleanArray list) {
2411 pw.print("UID bandwith control ");
2412 pw.print(name);
2413 pw.print(" rule: [");
2414 final int size = list.size();
2415 for (int i = 0; i < size; i++) {
2416 pw.print(list.keyAt(i));
2417 if (i < size - 1) pw.print(",");
2418 }
2419 pw.println("]");
Jeff Sharkey47eb1022011-08-25 17:48:52 -07002420 }
Robert Greenwalt9ba9c582014-03-19 17:56:12 -07002421
Felipe Leme011b98f2016-02-10 17:28:31 -08002422 private void dumpUidFirewallRule(PrintWriter pw, String name, SparseIntArray rules) {
Lorenzo Colitti4cb42402016-04-24 12:52:00 +09002423 pw.print("UID firewall ");
Felipe Leme011b98f2016-02-10 17:28:31 -08002424 pw.print(name);
2425 pw.print(" rule: [");
2426 final int size = rules.size();
2427 for (int i = 0; i < size; i++) {
2428 pw.print(rules.keyAt(i));
2429 pw.print(":");
2430 pw.print(rules.valueAt(i));
2431 if (i < size - 1) pw.print(",");
2432 }
2433 pw.println("]");
2434 }
2435
Robert Greenwalt568891d2014-04-04 13:38:00 -07002436 @Override
Paul Jensen487ffe72015-07-24 15:57:11 -04002437 public void createPhysicalNetwork(int netId, String permission) {
Robert Greenwalt9ba9c582014-03-19 17:56:12 -07002438 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2439
2440 try {
Paul Jensen487ffe72015-07-24 15:57:11 -04002441 if (permission != null) {
2442 mConnector.execute("network", "create", netId, permission);
2443 } else {
2444 mConnector.execute("network", "create", netId);
2445 }
Robert Greenwalt9ba9c582014-03-19 17:56:12 -07002446 } catch (NativeDaemonConnectorException e) {
2447 throw e.rethrowAsParcelableException();
2448 }
2449 }
2450
Robert Greenwalt568891d2014-04-04 13:38:00 -07002451 @Override
Sreeram Ramachandran8cd33ed2014-07-23 15:23:15 -07002452 public void createVirtualNetwork(int netId, boolean hasDNS, boolean secure) {
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04002453 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2454
2455 try {
Sreeram Ramachandran8cd33ed2014-07-23 15:23:15 -07002456 mConnector.execute("network", "create", netId, "vpn", hasDNS ? "1" : "0",
2457 secure ? "1" : "0");
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04002458 } catch (NativeDaemonConnectorException e) {
2459 throw e.rethrowAsParcelableException();
2460 }
2461 }
2462
2463 @Override
Robert Greenwalt9ba9c582014-03-19 17:56:12 -07002464 public void removeNetwork(int netId) {
2465 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2466
2467 try {
2468 mConnector.execute("network", "destroy", netId);
2469 } catch (NativeDaemonConnectorException e) {
2470 throw e.rethrowAsParcelableException();
2471 }
2472 }
Robert Greenwalt568891d2014-04-04 13:38:00 -07002473
2474 @Override
Paul Jensen992f2522014-04-28 10:33:11 -04002475 public void addInterfaceToNetwork(String iface, int netId) {
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002476 modifyInterfaceInNetwork("add", "" + netId, iface);
Paul Jensen992f2522014-04-28 10:33:11 -04002477 }
2478
2479 @Override
2480 public void removeInterfaceFromNetwork(String iface, int netId) {
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002481 modifyInterfaceInNetwork("remove", "" + netId, iface);
2482 }
Paul Jensen992f2522014-04-28 10:33:11 -04002483
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002484 private void modifyInterfaceInNetwork(String action, String netId, String iface) {
2485 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
Paul Jensen992f2522014-04-28 10:33:11 -04002486 try {
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002487 mConnector.execute("network", "interface", action, netId, iface);
Paul Jensen992f2522014-04-28 10:33:11 -04002488 } catch (NativeDaemonConnectorException e) {
2489 throw e.rethrowAsParcelableException();
2490 }
2491 }
2492
2493 @Override
Robert Greenwalt913c8952014-04-07 17:36:35 -07002494 public void addLegacyRouteForNetId(int netId, RouteInfo routeInfo, int uid) {
Robert Greenwalt568891d2014-04-04 13:38:00 -07002495 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2496
Sreeram Ramachandran03666c72014-07-19 23:21:46 -07002497 final Command cmd = new Command("network", "route", "legacy", uid, "add", netId);
Robert Greenwalt568891d2014-04-04 13:38:00 -07002498
Sreeram Ramachandran1fbcb272014-05-22 16:30:48 -07002499 // create triplet: interface dest-ip-addr/prefixlength gateway-ip-addr
Sreeram Ramachandrancc91c7b2014-06-03 18:41:43 -07002500 final LinkAddress la = routeInfo.getDestinationLinkAddress();
Robert Greenwalt568891d2014-04-04 13:38:00 -07002501 cmd.appendArg(routeInfo.getInterface());
Lorenzo Colitti7dc78cf2014-06-09 22:58:46 +09002502 cmd.appendArg(la.getAddress().getHostAddress() + "/" + la.getPrefixLength());
Sreeram Ramachandran1fbcb272014-05-22 16:30:48 -07002503 if (routeInfo.hasGateway()) {
2504 cmd.appendArg(routeInfo.getGateway().getHostAddress());
2505 }
Robert Greenwalt568891d2014-04-04 13:38:00 -07002506
2507 try {
2508 mConnector.execute(cmd);
2509 } catch (NativeDaemonConnectorException e) {
2510 throw e.rethrowAsParcelableException();
2511 }
2512 }
2513
2514 @Override
Sreeram Ramachandranf047f2a2014-04-15 16:04:26 -07002515 public void setDefaultNetId(int netId) {
Robert Greenwalt568891d2014-04-04 13:38:00 -07002516 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2517
2518 try {
Sreeram Ramachandranf047f2a2014-04-15 16:04:26 -07002519 mConnector.execute("network", "default", "set", netId);
Robert Greenwalt568891d2014-04-04 13:38:00 -07002520 } catch (NativeDaemonConnectorException e) {
2521 throw e.rethrowAsParcelableException();
2522 }
2523 }
2524
2525 @Override
2526 public void clearDefaultNetId() {
2527 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2528
2529 try {
2530 mConnector.execute("network", "default", "clear");
2531 } catch (NativeDaemonConnectorException e) {
2532 throw e.rethrowAsParcelableException();
2533 }
2534 }
2535
2536 @Override
Paul Jensen487ffe72015-07-24 15:57:11 -04002537 public void setNetworkPermission(int netId, String permission) {
2538 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2539
2540 try {
2541 if (permission != null) {
2542 mConnector.execute("network", "permission", "network", "set", permission, netId);
2543 } else {
2544 mConnector.execute("network", "permission", "network", "clear", netId);
2545 }
2546 } catch (NativeDaemonConnectorException e) {
2547 throw e.rethrowAsParcelableException();
2548 }
2549 }
2550
2551
2552 @Override
Sreeram Ramachandrane4a05af2014-09-24 09:16:19 -07002553 public void setPermission(String permission, int[] uids) {
Robert Greenwalt568891d2014-04-04 13:38:00 -07002554 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2555
Sreeram Ramachandrane4a05af2014-09-24 09:16:19 -07002556 Object[] argv = new Object[4 + MAX_UID_RANGES_PER_COMMAND];
2557 argv[0] = "permission";
2558 argv[1] = "user";
2559 argv[2] = "set";
2560 argv[3] = permission;
2561 int argc = 4;
2562 // Avoid overly long commands by limiting number of UIDs per command.
2563 for (int i = 0; i < uids.length; ++i) {
2564 argv[argc++] = uids[i];
2565 if (i == uids.length - 1 || argc == argv.length) {
2566 try {
2567 mConnector.execute("network", Arrays.copyOf(argv, argc));
2568 } catch (NativeDaemonConnectorException e) {
2569 throw e.rethrowAsParcelableException();
2570 }
2571 argc = 4;
2572 }
Robert Greenwalt568891d2014-04-04 13:38:00 -07002573 }
2574 }
2575
2576 @Override
2577 public void clearPermission(int[] uids) {
2578 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2579
Sreeram Ramachandrane4a05af2014-09-24 09:16:19 -07002580 Object[] argv = new Object[3 + MAX_UID_RANGES_PER_COMMAND];
2581 argv[0] = "permission";
2582 argv[1] = "user";
2583 argv[2] = "clear";
2584 int argc = 3;
2585 // Avoid overly long commands by limiting number of UIDs per command.
2586 for (int i = 0; i < uids.length; ++i) {
2587 argv[argc++] = uids[i];
2588 if (i == uids.length - 1 || argc == argv.length) {
2589 try {
2590 mConnector.execute("network", Arrays.copyOf(argv, argc));
2591 } catch (NativeDaemonConnectorException e) {
2592 throw e.rethrowAsParcelableException();
2593 }
2594 argc = 3;
2595 }
Robert Greenwalt568891d2014-04-04 13:38:00 -07002596 }
2597 }
Paul Jensen6bc2c2c2014-05-07 15:27:40 -04002598
2599 @Override
2600 public void allowProtect(int uid) {
2601 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2602
2603 try {
2604 mConnector.execute("network", "protect", "allow", uid);
2605 } catch (NativeDaemonConnectorException e) {
2606 throw e.rethrowAsParcelableException();
2607 }
2608 }
2609
2610 @Override
2611 public void denyProtect(int uid) {
2612 mContext.enforceCallingOrSelfPermission(CONNECTIVITY_INTERNAL, TAG);
2613
2614 try {
2615 mConnector.execute("network", "protect", "deny", uid);
2616 } catch (NativeDaemonConnectorException e) {
2617 throw e.rethrowAsParcelableException();
2618 }
2619 }
2620
Sreeram Ramachandrana77760d2014-07-17 17:09:07 -07002621 @Override
2622 public void addInterfaceToLocalNetwork(String iface, List<RouteInfo> routes) {
2623 modifyInterfaceInNetwork("add", "local", iface);
2624
2625 for (RouteInfo route : routes) {
2626 if (!route.isDefaultRoute()) {
2627 modifyRoute("add", "local", route);
2628 }
2629 }
2630 }
2631
2632 @Override
2633 public void removeInterfaceFromLocalNetwork(String iface) {
2634 modifyInterfaceInNetwork("remove", "local", iface);
2635 }
Erik Kline6599ee82016-07-17 21:28:39 +09002636
2637 @Override
2638 public int removeRoutesFromLocalNetwork(List<RouteInfo> routes) {
2639 int failures = 0;
2640
2641 for (RouteInfo route : routes) {
2642 try {
2643 modifyRoute("remove", "local", route);
2644 } catch (IllegalStateException e) {
2645 failures++;
2646 }
2647 }
2648
2649 return failures;
2650 }
San Mehat873f2142010-01-14 10:25:07 -08002651}