blob: 3f6c0adf0f0d0d14194b0f581f09f6dc22b8075e [file] [log] [blame]
JP Abgrall4a5f5ca2011-06-15 18:37:39 -07001/*
2 * Copyright (C) 2011 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16#ifndef _BANDWIDTH_CONTROLLER_H
17#define _BANDWIDTH_CONTROLLER_H
18
Joel Scherpelzced1dd92017-06-28 10:19:52 +090019#include <map>
20#include <set>
JP Abgrall4a5f5ca2011-06-15 18:37:39 -070021#include <string>
Joel Scherpelzbcad6612017-05-30 10:55:11 +090022#include <utility>
23#include <vector>
JP Abgralldb7da582011-09-18 12:57:32 -070024
Lorenzo Colittidedd2712016-03-22 12:36:29 +090025#include <utils/RWLock.h>
JP Abgrallbaeccc42013-06-25 09:44:10 -070026
Lorenzo Colitti13debb82016-03-27 17:46:30 +090027#include "NetdConstants.h"
28
JP Abgrall4a5f5ca2011-06-15 18:37:39 -070029class BandwidthController {
30public:
Lorenzo Colittidedd2712016-03-22 12:36:29 +090031 android::RWLock lock;
32
JP Abgrallfa6f46d2011-06-17 23:17:28 -070033 BandwidthController();
JP Abgrall0031cea2012-04-17 16:38:23 -070034
Joel Scherpelzbcad6612017-05-30 10:55:11 +090035 int setupIptablesHooks();
Chenbo Feng95892f32018-06-07 14:52:02 -070036 static bool getBpfStatus();
JP Abgrall0031cea2012-04-17 16:38:23 -070037
38 int enableBandwidthControl(bool force);
Joel Scherpelzbcad6612017-05-30 10:55:11 +090039 int disableBandwidthControl();
Lorenzo Colitti7618ccb2016-03-18 12:36:03 +090040 int enableDataSaver(bool enable);
JP Abgrallfa6f46d2011-06-17 23:17:28 -070041
Joel Scherpelzbcad6612017-05-30 10:55:11 +090042 int setInterfaceSharedQuota(const std::string& iface, int64_t bytes);
JP Abgrall8a932722011-07-13 19:17:35 -070043 int getInterfaceSharedQuota(int64_t *bytes);
Joel Scherpelzbcad6612017-05-30 10:55:11 +090044 int removeInterfaceSharedQuota(const std::string& iface);
JP Abgrallfa6f46d2011-06-17 23:17:28 -070045
Joel Scherpelzbcad6612017-05-30 10:55:11 +090046 int setInterfaceQuota(const std::string& iface, int64_t bytes);
47 int getInterfaceQuota(const std::string& iface, int64_t* bytes);
48 int removeInterfaceQuota(const std::string& iface);
JP Abgrall0dad7c22011-06-24 11:58:14 -070049
JP Abgrallfa6f46d2011-06-17 23:17:28 -070050 int addNaughtyApps(int numUids, char *appUids[]);
51 int removeNaughtyApps(int numUids, char *appUids[]);
JP Abgralle4788732013-07-02 20:28:45 -070052 int addNiceApps(int numUids, char *appUids[]);
53 int removeNiceApps(int numUids, char *appUids[]);
JP Abgrall4a5f5ca2011-06-15 18:37:39 -070054
JP Abgrall8a932722011-07-13 19:17:35 -070055 int setGlobalAlert(int64_t bytes);
Joel Scherpelzbcad6612017-05-30 10:55:11 +090056 int removeGlobalAlert();
57 int setGlobalAlertInForwardChain();
58 int removeGlobalAlertInForwardChain();
JP Abgrall8a932722011-07-13 19:17:35 -070059
60 int setSharedAlert(int64_t bytes);
Joel Scherpelzbcad6612017-05-30 10:55:11 +090061 int removeSharedAlert();
JP Abgrall8a932722011-07-13 19:17:35 -070062
Joel Scherpelzbcad6612017-05-30 10:55:11 +090063 int setInterfaceAlert(const std::string& iface, int64_t bytes);
64 int removeInterfaceAlert(const std::string& iface);
JP Abgrall0dad7c22011-06-24 11:58:14 -070065
Joel Scherpelzbcad6612017-05-30 10:55:11 +090066 static const char LOCAL_INPUT[];
67 static const char LOCAL_FORWARD[];
68 static const char LOCAL_OUTPUT[];
69 static const char LOCAL_RAW_PREROUTING[];
70 static const char LOCAL_MANGLE_POSTROUTING[];
Jeff Sharkey8e188ed2012-07-12 18:32:03 -070071
Chenbo Feng95892f32018-06-07 14:52:02 -070072 enum IptJumpOp { IptJumpReject, IptJumpReturn, IptJumpNoAdd };
73 enum IptOp { IptOpInsert, IptOpDelete };
74
Joel Scherpelzbcad6612017-05-30 10:55:11 +090075 private:
Joel Scherpelzced1dd92017-06-28 10:19:52 +090076 struct QuotaInfo {
JP Abgrall8a932722011-07-13 19:17:35 -070077 int64_t quota;
78 int64_t alert;
79 };
JP Abgralldb7da582011-09-18 12:57:32 -070080
JP Abgrall26e0d492011-06-24 19:21:51 -070081 enum IptIpVer { IptIpV4, IptIpV6 };
Lorenzo Colittid9db08c2017-04-28 11:06:40 +090082 enum IptFullOp { IptFullOpInsert, IptFullOpDelete, IptFullOpAppend };
JP Abgrall26e0d492011-06-24 19:21:51 -070083 enum QuotaType { QuotaUnique, QuotaShared };
84 enum RunCmdErrHandling { RunCmdFailureBad, RunCmdFailureOk };
JP Abgrall1fb02df2012-04-24 23:27:44 -070085#if LOG_NDEBUG
86 enum IptFailureLog { IptFailShow, IptFailHide };
87#else
88 enum IptFailureLog { IptFailShow, IptFailHide = IptFailShow };
89#endif
JP Abgralla9ba4cb2013-07-02 19:08:48 -070090
Lorenzo Colittiaff28792017-09-26 17:46:18 +090091 std::string makeDataSaverCommand(IptablesTarget target, bool enable);
92
Joel Scherpelzbcad6612017-05-30 10:55:11 +090093 int manipulateSpecialApps(const std::vector<std::string>& appStrUids, const std::string& chain,
94 IptJumpOp jumpHandling, IptOp appOp);
JP Abgrall4a5f5ca2011-06-15 18:37:39 -070095
Joel Scherpelzbcad6612017-05-30 10:55:11 +090096 int runIptablesAlertCmd(IptOp op, const std::string& alertName, int64_t bytes);
97 int runIptablesAlertFwdCmd(IptOp op, const std::string& alertName, int64_t bytes);
JP Abgrall8a932722011-07-13 19:17:35 -070098
Joel Scherpelzbcad6612017-05-30 10:55:11 +090099 int updateQuota(const std::string& alertName, int64_t bytes);
JP Abgrall8a932722011-07-13 19:17:35 -0700100
Joel Scherpelzbcad6612017-05-30 10:55:11 +0900101 int setCostlyAlert(const std::string& costName, int64_t bytes, int64_t* alertBytes);
102 int removeCostlyAlert(const std::string& costName, int64_t* alertBytes);
JP Abgrall8a932722011-07-13 19:17:35 -0700103
JP Abgrall0e540ec2013-08-26 15:13:10 -0700104 /*
105 * Attempt to find the bw_costly_* tables that need flushing,
106 * and flush them.
107 * If doClean then remove the tables also.
108 * Deals with both ip4 and ip6 tables.
109 */
110 void flushExistingCostlyTables(bool doClean);
Lorenzo Colitti56c4b1e2017-02-01 02:45:10 +0900111 static void parseAndFlushCostlyTables(const std::string& ruleList, bool doRemove);
JP Abgrall0e540ec2013-08-26 15:13:10 -0700112
113 /*
114 * Attempt to flush our tables.
115 * If doClean then remove them also.
116 * Deals with both ip4 and ip6 tables.
117 */
118 void flushCleanTables(bool doClean);
119
Joel Scherpelzced1dd92017-06-28 10:19:52 +0900120 // For testing.
121 friend class BandwidthControllerTest;
122 static int (*execFunction)(int, char **, int *, bool, bool);
123 static FILE *(*popenFunction)(const char *, const char *);
124 static int (*iptablesRestoreFunction)(IptablesTarget, const std::string&, std::string *);
JP Abgralldb7da582011-09-18 12:57:32 -0700125
Joel Scherpelzced1dd92017-06-28 10:19:52 +0900126 static const char *opToString(IptOp op);
127 static const char *jumpToString(IptJumpOp jumpHandling);
128
Chenbo Feng95892f32018-06-07 14:52:02 -0700129 bool mBpfSupported;
130
Joel Scherpelzced1dd92017-06-28 10:19:52 +0900131 int64_t mSharedQuotaBytes = 0;
132 int64_t mSharedAlertBytes = 0;
133 int64_t mGlobalAlertBytes = 0;
JP Abgrallc6c67342011-10-07 16:28:54 -0700134 /*
135 * This tracks the number of tethers setup.
136 * The FORWARD chain is updated in the following cases:
137 * - The 1st time a globalAlert is setup and there are tethers setup.
138 * - Anytime a globalAlert is removed and there are tethers setup.
139 * - The 1st tether is setup and there is a globalAlert active.
140 * - The last tether is removed and there is a globalAlert active.
141 */
Joel Scherpelzced1dd92017-06-28 10:19:52 +0900142 int mGlobalAlertTetherCount = 0;
JP Abgrallc6c67342011-10-07 16:28:54 -0700143
Joel Scherpelzced1dd92017-06-28 10:19:52 +0900144 std::map<std::string, QuotaInfo> mQuotaIfaces;
145 std::set<std::string> mSharedQuotaIfaces;
JP Abgrall4a5f5ca2011-06-15 18:37:39 -0700146};
147
148#endif