1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
|
// Copyright (c) 2011 The Chromium Authors. All rights reserved.
// Use of this source code is governed by a BSD-style license that can be
// found in the LICENSE file.
#ifndef CONTENT_PLUGIN_PLUGIN_CHANNEL_BASE_H_
#define CONTENT_PLUGIN_PLUGIN_CHANNEL_BASE_H_
#pragma once
#include <string>
#include "base/basictypes.h"
#include "base/hash_tables.h"
#include "base/memory/ref_counted.h"
#include "base/memory/scoped_ptr.h"
#include "content/common/message_router.h"
#include "content/plugin/npobject_base.h"
#include "ipc/ipc_channel_handle.h"
#include "ipc/ipc_sync_channel.h"
#include "ui/gfx/native_widget_types.h"
namespace base {
class MessageLoopProxy;
}
#if defined(COMPILER_GCC)
namespace __gnu_cxx {
template<>
struct hash<NPObject*> {
std::size_t operator()(NPObject* const& ptr) const {
return hash<size_t>()(reinterpret_cast<size_t>(ptr));
}
};
} // namespace __gnu_cxx
#elif defined(COMPILER_MSVC)
namespace stdext {
template<>
inline size_t hash_value(NPObject* const& ptr) {
return hash_value(reinterpret_cast<size_t>(ptr));
}
} // namespace stdext
#endif // COMPILER
// Encapsulates an IPC channel between a renderer and a plugin process.
class PluginChannelBase : public IPC::Channel::Listener,
public IPC::Message::Sender,
public base::RefCountedThreadSafe<PluginChannelBase> {
public:
// WebPlugin[Delegate] call these on construction and destruction to setup
// the routing and manage lifetime of this object. This is also called by
// NPObjectProxy and NPObjectStub. However the latter don't control the
// lifetime of this object (by passing true for npobject) because we don't
// want a leak of an NPObject in a plugin to keep the channel around longer
// than necessary.
void AddRoute(int route_id, IPC::Channel::Listener* listener,
NPObjectBase* npobject);
void RemoveRoute(int route_id);
void AddMappingForNPObjectProxy(int route_id, NPObject* object);
void RemoveMappingForNPObjectProxy(int route_id);
void AddMappingForNPObjectStub(int route_id, NPObject* object);
void RemoveMappingForNPObjectStub(int route_id, NPObject* object);
NPObject* GetExistingNPObjectProxy(int route_id);
int GetExistingRouteForNPObjectStub(NPObject* npobject);
// IPC::Message::Sender implementation:
virtual bool Send(IPC::Message* msg);
int peer_pid() { return peer_pid_; }
IPC::ChannelHandle channel_handle() const { return channel_handle_; }
// Returns the number of open plugin channels in this process.
static int Count();
// Returns a new route id.
virtual int GenerateRouteID() = 0;
// Returns whether the channel is valid or not. A channel is invalid
// if it is disconnected due to a channel error.
bool channel_valid() {
return channel_valid_;
}
// Returns the most recent PluginChannelBase to have received a message
// in this process.
static PluginChannelBase* GetCurrentChannel();
static void CleanupChannels();
// Returns the NPObjectBase object for the route id passed in.
// Returns NULL on failure.
NPObjectBase* GetNPObjectListenerForRoute(int route_id);
protected:
typedef PluginChannelBase* (*PluginChannelFactory)();
friend class base::RefCountedThreadSafe<PluginChannelBase>;
virtual ~PluginChannelBase();
// Returns a PluginChannelBase derived object for the given channel name.
// If an existing channel exists returns that object, otherwise creates a
// new one. Even though on creation the object is refcounted, each caller
// must still ref count the returned value. When there are no more routes
// on the channel and its ref count is 0, the object deletes itself.
static PluginChannelBase* GetChannel(
const IPC::ChannelHandle& channel_handle, IPC::Channel::Mode mode,
PluginChannelFactory factory, base::MessageLoopProxy* ipc_message_loop,
bool create_pipe_now);
// Sends a message to all instances.
static void Broadcast(IPC::Message* message);
// Called on the worker thread
PluginChannelBase();
virtual void CleanUp() { }
// Implemented by derived classes to handle control messages
virtual bool OnControlMessageReceived(const IPC::Message& msg);
// IPC::Channel::Listener implementation:
virtual bool OnMessageReceived(const IPC::Message& msg);
virtual void OnChannelConnected(int32 peer_pid);
virtual void OnChannelError();
void set_send_unblocking_only_during_unblock_dispatch() {
send_unblocking_only_during_unblock_dispatch_ = true;
}
virtual bool Init(base::MessageLoopProxy* ipc_message_loop,
bool create_pipe_now);
scoped_ptr<IPC::SyncChannel> channel_;
private:
IPC::Channel::Mode mode_;
IPC::ChannelHandle channel_handle_;
int plugin_count_;
int peer_pid_;
// true when in the middle of a RemoveRoute call
bool in_remove_route_;
// Keep track of all the registered NPObjects proxies/stubs so that when the
// channel is closed we can inform them.
typedef base::hash_map<int, NPObjectBase*> ListenerMap;
ListenerMap npobject_listeners_;
typedef base::hash_map<int, NPObject*> ProxyMap;
ProxyMap proxy_map_;
typedef base::hash_map<NPObject*, int> StubMap;
StubMap stub_map_;
// Used to implement message routing functionality to WebPlugin[Delegate]
// objects
MessageRouter router_;
// A channel is invalid if it is disconnected as a result of a channel
// error. This flag is used to indicate the same.
bool channel_valid_;
// Track whether we're dispatching a message with the unblock flag; works like
// a refcount, 0 when we're not.
int in_unblock_dispatch_;
// If true, sync messages will only be marked as unblocking if the channel is
// in the middle of dispatching an unblocking message.
// The plugin process wants to avoid setting the unblock flag on its sync
// messages unless necessary, since it can potentially introduce reentrancy
// into WebKit in ways that it doesn't expect (i.e. causing layout during
// paint). However to avoid deadlock, we must ensure that any message that's
// sent as a result of a sync call from the renderer must unblock the
// renderer. We additionally have to do this for async messages from the
// renderer that have the unblock flag set, since they could be followed by a
// sync message that won't get dispatched until the call to the renderer is
// complete.
bool send_unblocking_only_during_unblock_dispatch_;
DISALLOW_COPY_AND_ASSIGN(PluginChannelBase);
};
#endif // CONTENT_PLUGIN_PLUGIN_CHANNEL_BASE_H_
|