blob: 882dea4398c97da841d27eb42c77daed4a967b1d [file] [log] [blame]
JP Abgrall4a5f5ca2011-06-15 18:37:39 -07001/*
2 * Copyright (C) 2011 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16#ifndef _BANDWIDTH_CONTROLLER_H
17#define _BANDWIDTH_CONTROLLER_H
18
Joel Scherpelzced1dd92017-06-28 10:19:52 +090019#include <map>
20#include <set>
JP Abgrall4a5f5ca2011-06-15 18:37:39 -070021#include <string>
Joel Scherpelzbcad6612017-05-30 10:55:11 +090022#include <utility>
23#include <vector>
Luke Huangd1ee4622018-06-29 13:49:58 +080024#include <mutex>
JP Abgrallbaeccc42013-06-25 09:44:10 -070025
Lorenzo Colitti13debb82016-03-27 17:46:30 +090026#include "NetdConstants.h"
27
JP Abgrall4a5f5ca2011-06-15 18:37:39 -070028class BandwidthController {
29public:
Luke Huangd1ee4622018-06-29 13:49:58 +080030 std::mutex lock;
Lorenzo Colittidedd2712016-03-22 12:36:29 +090031
JP Abgrallfa6f46d2011-06-17 23:17:28 -070032 BandwidthController();
JP Abgrall0031cea2012-04-17 16:38:23 -070033
Joel Scherpelzbcad6612017-05-30 10:55:11 +090034 int setupIptablesHooks();
Chenbo Feng95892f32018-06-07 14:52:02 -070035 static bool getBpfStatus();
JP Abgrall0031cea2012-04-17 16:38:23 -070036
37 int enableBandwidthControl(bool force);
Joel Scherpelzbcad6612017-05-30 10:55:11 +090038 int disableBandwidthControl();
Lorenzo Colitti7618ccb2016-03-18 12:36:03 +090039 int enableDataSaver(bool enable);
JP Abgrallfa6f46d2011-06-17 23:17:28 -070040
Joel Scherpelzbcad6612017-05-30 10:55:11 +090041 int setInterfaceSharedQuota(const std::string& iface, int64_t bytes);
JP Abgrall8a932722011-07-13 19:17:35 -070042 int getInterfaceSharedQuota(int64_t *bytes);
Joel Scherpelzbcad6612017-05-30 10:55:11 +090043 int removeInterfaceSharedQuota(const std::string& iface);
JP Abgrallfa6f46d2011-06-17 23:17:28 -070044
Joel Scherpelzbcad6612017-05-30 10:55:11 +090045 int setInterfaceQuota(const std::string& iface, int64_t bytes);
46 int getInterfaceQuota(const std::string& iface, int64_t* bytes);
47 int removeInterfaceQuota(const std::string& iface);
JP Abgrall0dad7c22011-06-24 11:58:14 -070048
Bernie Innocenti15bb55c2018-06-03 16:19:51 +090049 int addNaughtyApps(int numUids, const char* const appUids[]);
50 int removeNaughtyApps(int numUids, const char* const appUids[]);
51 int addNiceApps(int numUids, const char* const appUids[]);
52 int removeNiceApps(int numUids, const char* const appUids[]);
JP Abgrall4a5f5ca2011-06-15 18:37:39 -070053
JP Abgrall8a932722011-07-13 19:17:35 -070054 int setGlobalAlert(int64_t bytes);
Joel Scherpelzbcad6612017-05-30 10:55:11 +090055 int removeGlobalAlert();
56 int setGlobalAlertInForwardChain();
57 int removeGlobalAlertInForwardChain();
JP Abgrall8a932722011-07-13 19:17:35 -070058
59 int setSharedAlert(int64_t bytes);
Joel Scherpelzbcad6612017-05-30 10:55:11 +090060 int removeSharedAlert();
JP Abgrall8a932722011-07-13 19:17:35 -070061
Joel Scherpelzbcad6612017-05-30 10:55:11 +090062 int setInterfaceAlert(const std::string& iface, int64_t bytes);
63 int removeInterfaceAlert(const std::string& iface);
JP Abgrall0dad7c22011-06-24 11:58:14 -070064
Joel Scherpelzbcad6612017-05-30 10:55:11 +090065 static const char LOCAL_INPUT[];
66 static const char LOCAL_FORWARD[];
67 static const char LOCAL_OUTPUT[];
68 static const char LOCAL_RAW_PREROUTING[];
69 static const char LOCAL_MANGLE_POSTROUTING[];
Jeff Sharkey8e188ed2012-07-12 18:32:03 -070070
Chenbo Feng95892f32018-06-07 14:52:02 -070071 enum IptJumpOp { IptJumpReject, IptJumpReturn, IptJumpNoAdd };
72 enum IptOp { IptOpInsert, IptOpDelete };
73
Joel Scherpelzbcad6612017-05-30 10:55:11 +090074 private:
Joel Scherpelzced1dd92017-06-28 10:19:52 +090075 struct QuotaInfo {
JP Abgrall8a932722011-07-13 19:17:35 -070076 int64_t quota;
77 int64_t alert;
78 };
JP Abgralldb7da582011-09-18 12:57:32 -070079
JP Abgrall26e0d492011-06-24 19:21:51 -070080 enum IptIpVer { IptIpV4, IptIpV6 };
Lorenzo Colittid9db08c2017-04-28 11:06:40 +090081 enum IptFullOp { IptFullOpInsert, IptFullOpDelete, IptFullOpAppend };
JP Abgrall26e0d492011-06-24 19:21:51 -070082 enum QuotaType { QuotaUnique, QuotaShared };
83 enum RunCmdErrHandling { RunCmdFailureBad, RunCmdFailureOk };
JP Abgrall1fb02df2012-04-24 23:27:44 -070084#if LOG_NDEBUG
85 enum IptFailureLog { IptFailShow, IptFailHide };
86#else
87 enum IptFailureLog { IptFailShow, IptFailHide = IptFailShow };
88#endif
JP Abgralla9ba4cb2013-07-02 19:08:48 -070089
Lorenzo Colittiaff28792017-09-26 17:46:18 +090090 std::string makeDataSaverCommand(IptablesTarget target, bool enable);
91
Joel Scherpelzbcad6612017-05-30 10:55:11 +090092 int manipulateSpecialApps(const std::vector<std::string>& appStrUids, const std::string& chain,
93 IptJumpOp jumpHandling, IptOp appOp);
JP Abgrall4a5f5ca2011-06-15 18:37:39 -070094
Joel Scherpelzbcad6612017-05-30 10:55:11 +090095 int runIptablesAlertCmd(IptOp op, const std::string& alertName, int64_t bytes);
96 int runIptablesAlertFwdCmd(IptOp op, const std::string& alertName, int64_t bytes);
JP Abgrall8a932722011-07-13 19:17:35 -070097
Joel Scherpelzbcad6612017-05-30 10:55:11 +090098 int updateQuota(const std::string& alertName, int64_t bytes);
JP Abgrall8a932722011-07-13 19:17:35 -070099
Joel Scherpelzbcad6612017-05-30 10:55:11 +0900100 int setCostlyAlert(const std::string& costName, int64_t bytes, int64_t* alertBytes);
101 int removeCostlyAlert(const std::string& costName, int64_t* alertBytes);
JP Abgrall8a932722011-07-13 19:17:35 -0700102
JP Abgrall0e540ec2013-08-26 15:13:10 -0700103 /*
104 * Attempt to find the bw_costly_* tables that need flushing,
105 * and flush them.
106 * If doClean then remove the tables also.
107 * Deals with both ip4 and ip6 tables.
108 */
109 void flushExistingCostlyTables(bool doClean);
Lorenzo Colitti56c4b1e2017-02-01 02:45:10 +0900110 static void parseAndFlushCostlyTables(const std::string& ruleList, bool doRemove);
JP Abgrall0e540ec2013-08-26 15:13:10 -0700111
112 /*
113 * Attempt to flush our tables.
114 * If doClean then remove them also.
115 * Deals with both ip4 and ip6 tables.
116 */
117 void flushCleanTables(bool doClean);
118
Joel Scherpelzced1dd92017-06-28 10:19:52 +0900119 // For testing.
120 friend class BandwidthControllerTest;
121 static int (*execFunction)(int, char **, int *, bool, bool);
122 static FILE *(*popenFunction)(const char *, const char *);
123 static int (*iptablesRestoreFunction)(IptablesTarget, const std::string&, std::string *);
JP Abgralldb7da582011-09-18 12:57:32 -0700124
Joel Scherpelzced1dd92017-06-28 10:19:52 +0900125 static const char *opToString(IptOp op);
126 static const char *jumpToString(IptJumpOp jumpHandling);
127
Chenbo Feng95892f32018-06-07 14:52:02 -0700128 bool mBpfSupported;
129
Joel Scherpelzced1dd92017-06-28 10:19:52 +0900130 int64_t mSharedQuotaBytes = 0;
131 int64_t mSharedAlertBytes = 0;
132 int64_t mGlobalAlertBytes = 0;
JP Abgrallc6c67342011-10-07 16:28:54 -0700133 /*
134 * This tracks the number of tethers setup.
135 * The FORWARD chain is updated in the following cases:
136 * - The 1st time a globalAlert is setup and there are tethers setup.
137 * - Anytime a globalAlert is removed and there are tethers setup.
138 * - The 1st tether is setup and there is a globalAlert active.
139 * - The last tether is removed and there is a globalAlert active.
140 */
Joel Scherpelzced1dd92017-06-28 10:19:52 +0900141 int mGlobalAlertTetherCount = 0;
JP Abgrallc6c67342011-10-07 16:28:54 -0700142
Joel Scherpelzced1dd92017-06-28 10:19:52 +0900143 std::map<std::string, QuotaInfo> mQuotaIfaces;
144 std::set<std::string> mSharedQuotaIfaces;
JP Abgrall4a5f5ca2011-06-15 18:37:39 -0700145};
146
147#endif