#include "content/browser/site_instance_impl.h"
#include <string>
#include <tuple>
#include "base/containers/contains.h"
#include "base/debug/crash_logging.h"
#include "base/debug/dump_without_crashing.h"
#include "base/lazy_instance.h"
#include "base/trace_event/typed_macros.h"
#include "content/browser/bad_message.h"
#include "content/browser/browsing_instance.h"
#include "content/browser/child_process_security_policy_impl.h"
#include "content/browser/isolated_origin_util.h"
#include "content/browser/isolation_context.h"
#include "content/browser/process_lock.h"
#include "content/browser/renderer_host/render_process_host_impl.h"
#include "content/browser/site_instance_group.h"
#include "content/browser/storage_partition_impl.h"
#include "content/public/browser/browser_or_resource_context.h"
#include "content/public/browser/content_browser_client.h"
#include "content/public/browser/site_isolation_policy.h"
#include "content/public/browser/web_ui_controller_factory.h"
#include "content/public/common/content_client.h"
#include "content/public/common/content_features.h"
#include "content/public/common/url_constants.h"
#include "content/public/common/url_utils.h"
#include "net/base/registry_controlled_domains/registry_controlled_domain.h"
#include "third_party/blink/public/common/chrome_debug_urls.h"
#include "third_party/blink/public/common/features.h"
#include "third_party/perfetto/include/perfetto/tracing/traced_value.h"
#include "url/origin.h"
namespace content {
namespace {
constexpr bool kCreateForURLAllowsDefaultSiteInstance = true;
bool ShouldCompareEffectiveURLs(BrowserContext* browser_context,
SiteInstanceImpl* site_instance,
bool for_outermost_main_frame,
const GURL& dest_url) {
return site_instance->IsDefaultSiteInstance() ||
GetContentClient()
->browser()
->ShouldCompareEffectiveURLsForSiteInstanceSelection(
browser_context, site_instance, for_outermost_main_frame,
site_instance->original_url(), dest_url);
}
SiteInstanceId::Generator g_site_instance_id_generator;
}
const GURL& SiteInstanceImpl::GetDefaultSiteURL() {
struct DefaultSiteURL {
const GURL url = GURL("http://unisolated.invalid");
};
static base::LazyInstance<DefaultSiteURL>::Leaky default_site_url =
LAZY_INSTANCE_INITIALIZER;
return default_site_url.Get().url;
}
class SiteInstanceImpl::DefaultSiteInstanceState {
public:
void AddSiteInfo(const SiteInfo& site_info) {
default_site_url_set_.insert(site_info.site_url());
}
bool ContainsSite(const GURL& site_url) {
return base::Contains(default_site_url_set_, site_url);
}
private:
std::set<GURL> default_site_url_set_;
};
SiteInstanceImpl::SiteInstanceImpl(BrowsingInstance* browsing_instance)
: id_(g_site_instance_id_generator.GenerateNextId()),
browsing_instance_(browsing_instance),
can_associate_with_spare_process_(true),
site_info_(browsing_instance->isolation_context()
.browser_or_resource_context()
.ToBrowserContext()),
has_site_(false),
process_reuse_policy_(ProcessReusePolicy::DEFAULT),
is_for_service_worker_(false),
process_assignment_(SiteInstanceProcessAssignment::UNKNOWN) {
DCHECK(browsing_instance);
}
SiteInstanceImpl::~SiteInstanceImpl() {
GetContentClient()->browser()->SiteInstanceDeleting(this);
if (has_site_)
browsing_instance_->UnregisterSiteInstance(this);
if (has_group()) {
group()->RemoveSiteInstance(this);
ResetSiteInstanceGroup();
}
}
scoped_refptr<SiteInstanceImpl> SiteInstanceImpl::Create(
BrowserContext* browser_context) {
DCHECK(browser_context);
return base::WrapRefCounted(new SiteInstanceImpl(new BrowsingInstance(
browser_context, WebExposedIsolationInfo::CreateNonIsolated(),
false, false,
nullptr, absl::nullopt)));
}
scoped_refptr<SiteInstanceImpl> SiteInstanceImpl::CreateForUrlInfo(
BrowserContext* browser_context,
const UrlInfo& url_info,
bool is_guest,
bool is_fenced) {
DCHECK(url_info.is_sandboxed ||
url_info.unique_sandbox_id == UrlInfo::kInvalidUniqueSandboxId);
CHECK(!is_guest || url_info.storage_partition_config.has_value());
DCHECK(browser_context);
scoped_refptr<BrowsingInstance> instance(
new BrowsingInstance(browser_context,
url_info.web_exposed_isolation_info.value_or(
WebExposedIsolationInfo::CreateNonIsolated()),
is_guest, is_fenced, nullptr,
url_info.common_coop_origin));
return instance->GetSiteInstanceForURL(
url_info, kCreateForURLAllowsDefaultSiteInstance);
}
scoped_refptr<SiteInstanceImpl> SiteInstanceImpl::CreateForServiceWorker(
BrowserContext* browser_context,
const UrlInfo& url_info,
bool can_reuse_process,
bool is_guest,
bool is_fenced) {
DCHECK(!url_info.url.SchemeIs(kChromeErrorScheme));
DCHECK(url_info.storage_partition_config.has_value());
scoped_refptr<BrowsingInstance> instance(
new BrowsingInstance(browser_context,
url_info.web_exposed_isolation_info.value_or(
WebExposedIsolationInfo::CreateNonIsolated()),
is_guest, is_fenced, nullptr,
url_info.common_coop_origin));
scoped_refptr<SiteInstanceImpl> site_instance =
instance->GetSiteInstanceForURL(url_info,
false);
DCHECK(!site_instance->GetSiteInfo().is_error_page());
DCHECK_EQ(site_instance->IsGuest(), is_guest);
site_instance->is_for_service_worker_ = true;
DCHECK(site_instance->process_reuse_policy() ==
SiteInstanceImpl::ProcessReusePolicy::DEFAULT ||
site_instance->process_reuse_policy() ==
SiteInstanceImpl::ProcessReusePolicy::PROCESS_PER_SITE);
if (can_reuse_process) {
site_instance->set_process_reuse_policy(
SiteInstanceImpl::ProcessReusePolicy::REUSE_PENDING_OR_COMMITTED_SITE);
}
return site_instance;
}
scoped_refptr<SiteInstanceImpl> SiteInstanceImpl::CreateForGuest(
BrowserContext* browser_context,
const StoragePartitionConfig& partition_config) {
DCHECK(browser_context);
DCHECK(!partition_config.is_default());
auto guest_site_info =
SiteInfo::CreateForGuest(browser_context, partition_config);
scoped_refptr<SiteInstanceImpl> site_instance =
base::WrapRefCounted(new SiteInstanceImpl(new BrowsingInstance(
browser_context, guest_site_info.web_exposed_isolation_info(),
true,
false, nullptr,
absl::nullopt)));
site_instance->SetSiteInfoInternal(guest_site_info);
return site_instance;
}
scoped_refptr<SiteInstanceImpl> SiteInstanceImpl::CreateForFencedFrame(
SiteInstanceImpl* embedder_site_instance) {
DCHECK(embedder_site_instance);
BrowserContext* browser_context = embedder_site_instance->GetBrowserContext();
bool should_isolate_fenced_frames =
SiteIsolationPolicy::IsProcessIsolationForFencedFramesEnabled();
scoped_refptr<SiteInstanceImpl> site_instance =
base::WrapRefCounted(new SiteInstanceImpl(new BrowsingInstance(
browser_context, embedder_site_instance->GetWebExposedIsolationInfo(),
embedder_site_instance->IsGuest(),
should_isolate_fenced_frames,
nullptr,
absl::nullopt)));
if (!embedder_site_instance->IsDefaultSiteInstance()) {
site_instance->SetSite(embedder_site_instance->GetSiteInfo());
} else if (embedder_site_instance->IsGuest()) {
DCHECK(!should_isolate_fenced_frames);
site_instance->SetSite(SiteInfo::CreateForGuest(
browser_context, embedder_site_instance->GetStoragePartitionConfig()));
}
DCHECK_EQ(embedder_site_instance->IsGuest(), site_instance->IsGuest());
site_instance->ReuseExistingProcessIfPossible(
embedder_site_instance->GetProcess());
return site_instance;
}
scoped_refptr<SiteInstanceImpl>
SiteInstanceImpl::CreateReusableInstanceForTesting(
BrowserContext* browser_context,
const GURL& url) {
DCHECK(browser_context);
scoped_refptr<BrowsingInstance> instance(new BrowsingInstance(
browser_context, WebExposedIsolationInfo::CreateNonIsolated(),
false, false,
nullptr,
absl::nullopt));
auto site_instance = instance->GetSiteInstanceForURL(
UrlInfo(UrlInfoInit(url)), false);
site_instance->set_process_reuse_policy(
SiteInstanceImpl::ProcessReusePolicy::REUSE_PENDING_OR_COMMITTED_SITE);
return site_instance;
}
scoped_refptr<SiteInstanceImpl> SiteInstanceImpl::CreateForTesting(
BrowserContext* browser_context,
const GURL& url) {
DCHECK(browser_context);
return SiteInstanceImpl::CreateForUrlInfo(browser_context,
UrlInfo::CreateForTesting(url),
false,
false);
}
bool SiteInstanceImpl::ShouldAssignSiteForUrlInfo(const UrlInfo& url_info) {
if (!base::Contains(url::GetEmptyDocumentSchemes(), url_info.url.scheme())) {
return true;
}
if (url_info.url.SchemeIs(url::kAboutScheme)) {
if (!url_info.url.IsAboutBlank()) {
return true;
}
if (url_info.origin.has_value() &&
url_info.origin->GetTupleOrPrecursorTupleIfOpaque().IsValid()) {
return true;
}
return false;
}
return false;
}
SiteInstanceId SiteInstanceImpl::GetId() {
return id_;
}
BrowsingInstanceId SiteInstanceImpl::GetBrowsingInstanceId() {
return browsing_instance_->isolation_context().browsing_instance_id();
}
const IsolationContext& SiteInstanceImpl::GetIsolationContext() {
return browsing_instance_->isolation_context();
}
RenderProcessHost* SiteInstanceImpl::GetSiteInstanceGroupProcessIfAvailable() {
return browsing_instance_->site_instance_group_manager()
.GetExistingGroupProcess(this);
}
bool SiteInstanceImpl::IsDefaultSiteInstance() const {
return default_site_instance_state_ != nullptr;
}
void SiteInstanceImpl::AddSiteInfoToDefault(const SiteInfo& site_info) {
DCHECK(IsDefaultSiteInstance());
default_site_instance_state_->AddSiteInfo(site_info);
}
bool SiteInstanceImpl::IsSiteInDefaultSiteInstance(const GURL& site_url) const {
DCHECK(IsDefaultSiteInstance());
return default_site_instance_state_->ContainsSite(site_url);
}
BrowsingInstanceId SiteInstanceImpl::NextBrowsingInstanceId() {
return BrowsingInstance::NextBrowsingInstanceId();
}
bool SiteInstanceImpl::HasProcess() {
if (has_group())
return true;
if (ShouldUseProcessPerSite() &&
RenderProcessHostImpl::GetSoleProcessHostForSite(GetIsolationContext(),
site_info_)) {
return true;
}
return false;
}
RenderProcessHost* SiteInstanceImpl::GetProcess() {
if (!has_group()) {
if (ShouldUseProcessPerSite()) {
process_reuse_policy_ = ProcessReusePolicy::PROCESS_PER_SITE;
} else if (process_reuse_policy_ == ProcessReusePolicy::PROCESS_PER_SITE) {
process_reuse_policy_ = ProcessReusePolicy::DEFAULT;
}
SetProcessInternal(
RenderProcessHostImpl::GetProcessHostForSiteInstance(this));
}
DCHECK(site_instance_group_);
return site_instance_group_->process();
}
bool SiteInstanceImpl::ShouldUseProcessPerSite() const {
BrowserContext* browser_context = browsing_instance_->GetBrowserContext();
return has_site_ && site_info_.ShouldUseProcessPerSite(browser_context);
}
void SiteInstanceImpl::ReuseExistingProcessIfPossible(
RenderProcessHost* existing_process) {
if (HasProcess())
return;
if (ShouldUseProcessPerSite())
return;
if (!RenderProcessHostImpl::MayReuseAndIsSuitable(existing_process, this)) {
return;
}
SetProcessInternal(existing_process);
}
void SiteInstanceImpl::SetProcessInternal(RenderProcessHost* process) {
if (!site_instance_group_) {
site_instance_group_ =
browsing_instance_->site_instance_group_manager()
.GetOrCreateGroupForNewSiteInstance(this, process);
}
LockProcessIfNeeded();
if (process_reuse_policy_ == ProcessReusePolicy::PROCESS_PER_SITE &&
has_site_) {
RenderProcessHostImpl::RegisterSoleProcessHostForSite(
site_instance_group_->process(), this);
}
TRACE_EVENT2("navigation", "SiteInstanceImpl::SetProcessInternal", "site id",
id_.value(), "process id",
site_instance_group_->process()->GetID());
GetContentClient()->browser()->SiteInstanceGotProcess(this);
browsing_instance_->site_instance_group_manager().OnProcessSet(this);
}
bool SiteInstanceImpl::CanAssociateWithSpareProcess() {
return can_associate_with_spare_process_;
}
void SiteInstanceImpl::PreventAssociationWithSpareProcess() {
can_associate_with_spare_process_ = false;
}
void SiteInstanceImpl::SetSite(const UrlInfo& url_info) {
const GURL& url = url_info.url;
TRACE_EVENT2("navigation", "SiteInstanceImpl::SetSite", "site id",
id_.value(), "url", url.possibly_invalid_spec());
DCHECK(!has_site_);
original_url_ = url;
SetSiteInfoInternal(browsing_instance_->GetSiteInfoForURL(
url_info, false));
}
void SiteInstanceImpl::SetSite(const SiteInfo& site_info) {
TRACE_EVENT2("navigation", "SiteInstanceImpl::SetSite", "site id",
id_.value(), "siteinfo", site_info.GetDebugString());
DCHECK(!has_site_);
SetSiteInfoInternal(site_info);
}
void SiteInstanceImpl::SetSiteInfoToDefault(
const StoragePartitionConfig& storage_partition_config) {
TRACE_EVENT1("navigation", "SiteInstanceImpl::SetSiteInfoToDefault",
"site id", id_.value());
DCHECK(!has_site_);
default_site_instance_state_ = std::make_unique<DefaultSiteInstanceState>();
original_url_ = GetDefaultSiteURL();
SetSiteInfoInternal(SiteInfo::CreateForDefaultSiteInstance(
GetIsolationContext(), storage_partition_config,
browsing_instance_->web_exposed_isolation_info()));
}
void SiteInstanceImpl::SetSiteInfoInternal(const SiteInfo& site_info) {
DCHECK(!has_site_);
CHECK_EQ(site_info.web_exposed_isolation_info(),
browsing_instance_->web_exposed_isolation_info());
if (verify_storage_partition_info_) {
auto old_partition_config = site_info_.storage_partition_config();
auto new_partition_config = site_info.storage_partition_config();
CHECK_EQ(old_partition_config, new_partition_config);
}
has_site_ = true;
site_info_ = site_info;
browsing_instance_->RegisterSiteInstance(this);
if (site_info_.requires_origin_keyed_process()) {
ChildProcessSecurityPolicyImpl* policy =
ChildProcessSecurityPolicyImpl::GetInstance();
url::Origin origin(url::Origin::Create(site_info_.process_lock_url()));
policy->AddOriginIsolationStateForBrowsingInstance(
browsing_instance_->isolation_context(), origin,
true ,
true );
}
if (site_info_.does_site_request_dedicated_process_for_coop()) {
url::Origin origin(url::Origin::Create(site_info_.process_lock_url()));
GURL site(SiteInfo::GetSiteForOrigin(origin));
ChildProcessSecurityPolicyImpl* policy =
ChildProcessSecurityPolicyImpl::GetInstance();
policy->AddCoopIsolatedOriginForBrowsingInstance(
browsing_instance_->isolation_context(), url::Origin::Create(site),
ChildProcessSecurityPolicy::IsolatedOriginSource::WEB_TRIGGERED);
}
bool should_use_process_per_site = ShouldUseProcessPerSite();
if (should_use_process_per_site)
process_reuse_policy_ = ProcessReusePolicy::PROCESS_PER_SITE;
if (has_group()) {
LockProcessIfNeeded();
if (should_use_process_per_site) {
RenderProcessHostImpl::RegisterSoleProcessHostForSite(
site_instance_group_->process(), this);
}
}
browsing_instance_->site_instance_group_manager().OnSiteInfoSet(this,
has_group());
}
void SiteInstanceImpl::ConvertToDefaultOrSetSite(const UrlInfo& url_info) {
DCHECK(!has_site_);
if (!browsing_instance_->HasDefaultSiteInstance()) {
DCHECK(WebExposedIsolationInfo::AreCompatible(
url_info.web_exposed_isolation_info, GetWebExposedIsolationInfo()));
UrlInfo updated_url_info = url_info;
updated_url_info.web_exposed_isolation_info = GetWebExposedIsolationInfo();
const SiteInfo site_info =
SiteInfo::Create(GetIsolationContext(), updated_url_info);
if (CanBePlacedInDefaultSiteInstance(GetIsolationContext(),
updated_url_info.url, site_info)) {
SetSiteInfoToDefault(site_info.storage_partition_config());
AddSiteInfoToDefault(site_info);
DCHECK(browsing_instance_->HasDefaultSiteInstance());
return;
}
}
SetSite(url_info);
}
SiteInstanceProcessAssignment
SiteInstanceImpl::GetLastProcessAssignmentOutcome() {
return process_assignment_;
}
const GURL& SiteInstanceImpl::GetSiteURL() {
return site_info_.site_url();
}
const SiteInfo& SiteInstanceImpl::GetSiteInfo() {
return site_info_;
}
SiteInfo SiteInstanceImpl::DeriveSiteInfo(
const UrlInfo& url_info,
bool is_related,
bool disregard_web_exposed_isolation_info) {
if (is_related) {
return browsing_instance_->GetSiteInfoForURL(
url_info, true);
}
if (!disregard_web_exposed_isolation_info) {
DCHECK(WebExposedIsolationInfo::AreCompatible(
url_info.web_exposed_isolation_info, GetWebExposedIsolationInfo()));
}
UrlInfo overridden_url_info = url_info;
overridden_url_info.web_exposed_isolation_info = GetWebExposedIsolationInfo();
if (IsGuest()) {
overridden_url_info.storage_partition_config =
GetSiteInfo().storage_partition_config();
}
return SiteInfo::Create(GetIsolationContext(), overridden_url_info);
}
bool SiteInstanceImpl::HasSite() const {
return has_site_;
}
bool SiteInstanceImpl::HasRelatedSiteInstance(const SiteInfo& site_info) {
return browsing_instance_->HasSiteInstance(site_info);
}
scoped_refptr<SiteInstance> SiteInstanceImpl::GetRelatedSiteInstance(
const GURL& url) {
return GetRelatedSiteInstanceImpl(UrlInfo(UrlInfoInit(url)));
}
scoped_refptr<SiteInstanceImpl> SiteInstanceImpl::GetRelatedSiteInstanceImpl(
const UrlInfo& url_info) {
return browsing_instance_->GetSiteInstanceForURL(
url_info, true);
}
scoped_refptr<SiteInstanceImpl>
SiteInstanceImpl::GetCoopRelatedSiteInstanceImpl(const UrlInfo& url_info) {
return browsing_instance_->GetCoopRelatedSiteInstanceForURL(
url_info, true);
}
AgentSchedulingGroupHost& SiteInstanceImpl::GetOrCreateAgentSchedulingGroup() {
if (!site_instance_group_)
GetProcess();
return site_instance_group_->agent_scheduling_group();
}
void SiteInstanceImpl::ResetSiteInstanceGroup() {
site_instance_group_.reset();
}
bool SiteInstanceImpl::IsRelatedSiteInstance(const SiteInstance* instance) {
return browsing_instance_.get() ==
static_cast<const SiteInstanceImpl*>(instance)
->browsing_instance_.get();
}
size_t SiteInstanceImpl::GetRelatedActiveContentsCount() {
return browsing_instance_->GetCoopRelatedGroupActiveContentsCount();
}
namespace {
bool SandboxConfigurationsMatch(const SiteInfo& site_info,
const UrlInfo& url_info) {
return site_info.is_sandboxed() == url_info.is_sandboxed &&
site_info.unique_sandbox_id() == url_info.unique_sandbox_id;
}
}
bool SiteInstanceImpl::IsSuitableForUrlInfo(const UrlInfo& url_info) {
const GURL& url = url_info.url;
DCHECK_CURRENTLY_ON(BrowserThread::UI);
if (blink::IsRendererDebugURL(url))
return true;
if (url.IsAboutBlank() && !site_info_.is_error_page())
return true;
if (!SandboxConfigurationsMatch(GetSiteInfo(), url_info))
return false;
SiteInfo site_info = DeriveSiteInfo(url_info, true);
if (IsDefaultSiteInstance() && site_info != site_info_)
return false;
if (!HasProcess()) {
if (!HasSite())
return true;
if (site_info_ == site_info)
return !IsGuest();
if (!RequiresDedicatedProcess() &&
!site_info.RequiresDedicatedProcess(GetIsolationContext())) {
return true;
}
return false;
}
return RenderProcessHostImpl::IsSuitableHost(
GetProcess(), GetIsolationContext(), site_info);
}
bool SiteInstanceImpl::RequiresDedicatedProcess() {
DCHECK_CURRENTLY_ON(BrowserThread::UI);
if (!has_site_)
return false;
return site_info_.RequiresDedicatedProcess(GetIsolationContext());
}
bool SiteInstanceImpl::RequiresOriginKeyedProcess() {
DCHECK_CURRENTLY_ON(BrowserThread::UI);
if (!has_site_)
return false;
return site_info_.requires_origin_keyed_process();
}
void SiteInstanceImpl::IncrementRelatedActiveContentsCount() {
browsing_instance_->IncrementActiveContentsCount();
}
void SiteInstanceImpl::DecrementRelatedActiveContentsCount() {
browsing_instance_->DecrementActiveContentsCount();
}
BrowserContext* SiteInstanceImpl::GetBrowserContext() {
return browsing_instance_->GetBrowserContext();
}
scoped_refptr<SiteInstance> SiteInstance::Create(
BrowserContext* browser_context) {
DCHECK(browser_context);
return SiteInstanceImpl::Create(browser_context);
}
scoped_refptr<SiteInstance> SiteInstance::CreateForURL(
BrowserContext* browser_context,
const GURL& url) {
return SiteInstanceImpl::CreateForURL(browser_context, url);
}
scoped_refptr<SiteInstanceImpl> SiteInstanceImpl::CreateForURL(
BrowserContext* browser_context,
const GURL& url) {
DCHECK(browser_context);
return SiteInstanceImpl::CreateForUrlInfo(
browser_context, UrlInfo(UrlInfoInit(url)), false,
false);
}
scoped_refptr<SiteInstance> SiteInstance::CreateForGuest(
BrowserContext* browser_context,
const StoragePartitionConfig& partition_config) {
DCHECK(browser_context);
return SiteInstanceImpl::CreateForGuest(browser_context, partition_config);
}
bool SiteInstance::ShouldAssignSiteForURL(const GURL& url) {
return SiteInstanceImpl::ShouldAssignSiteForUrlInfo(
UrlInfo(UrlInfoInit(url)));
}
bool SiteInstanceImpl::IsSameSiteWithURL(const GURL& url) {
return IsSameSiteWithURLInfo(UrlInfo(UrlInfoInit(url)));
}
bool SiteInstanceImpl::IsSameSiteWithURLInfo(const UrlInfo& url_info) {
const GURL& url = url_info.url;
if (IsDefaultSiteInstance()) {
if (url.IsAboutBlank())
return true;
DCHECK_EQ(site_info_.site_url(), GetDefaultSiteURL());
UrlInfo updated_url_info = url_info;
updated_url_info.web_exposed_isolation_info = GetWebExposedIsolationInfo();
auto site_info = SiteInfo::Create(GetIsolationContext(), updated_url_info);
return CanBePlacedInDefaultSiteInstance(GetIsolationContext(), url,
site_info) &&
!browsing_instance_->HasSiteInstance(site_info);
}
return SiteInstanceImpl::IsSameSite(
GetIsolationContext(), UrlInfo(UrlInfoInit(site_info_.site_url())),
url_info, true );
}
bool SiteInstanceImpl::IsGuest() {
return site_info_.is_guest();
}
bool SiteInstanceImpl::IsJitDisabled() {
return site_info_.is_jit_disabled();
}
bool SiteInstanceImpl::IsPdf() {
return site_info_.is_pdf();
}
const StoragePartitionConfig& SiteInstanceImpl::GetStoragePartitionConfig() {
if (!has_site_) {
verify_storage_partition_info_ = true;
}
return site_info_.storage_partition_config();
}
std::string SiteInstanceImpl::GetPartitionDomain(
StoragePartitionImpl* storage_partition) {
auto storage_partition_config = GetStoragePartitionConfig();
DCHECK_EQ(storage_partition->GetPartitionDomain(),
storage_partition_config.partition_domain());
if (storage_partition->GetPartitionDomain() !=
storage_partition_config.partition_domain()) {
SCOPED_CRASH_KEY_STRING256("GetPartitionDomain", "domain",
storage_partition->GetPartitionDomain());
SCOPED_CRASH_KEY_STRING256("GetPartitionDomain", "config_domain_key",
storage_partition_config.partition_domain());
base::debug::DumpWithoutCrashing();
return storage_partition_config.partition_domain();
}
return storage_partition->GetPartitionDomain();
}
bool SiteInstanceImpl::IsOriginalUrlSameSite(
const UrlInfo& dest_url_info,
bool should_compare_effective_urls) {
if (IsDefaultSiteInstance())
return IsSameSiteWithURLInfo(dest_url_info);
return IsSameSite(GetIsolationContext(), UrlInfo(UrlInfoInit(original_url_)),
dest_url_info, should_compare_effective_urls);
}
bool SiteInstanceImpl::IsNavigationSameSite(
const GURL& last_successful_url,
const url::Origin& last_committed_origin,
bool for_outermost_main_frame,
const UrlInfo& dest_url_info) {
if (!SandboxConfigurationsMatch(GetSiteInfo(), dest_url_info))
return false;
const GURL& dest_url = dest_url_info.url;
BrowserContext* browser_context = GetBrowserContext();
bool should_compare_effective_urls = ShouldCompareEffectiveURLs(
browser_context, this, for_outermost_main_frame, dest_url);
bool should_check_for_wrong_process =
!IsNavigationAllowedToStayInSameProcessDueToEffectiveURLs(
browser_context, for_outermost_main_frame, dest_url);
if (should_check_for_wrong_process && !IsSuitableForUrlInfo(dest_url_info))
return false;
if (last_successful_url.is_empty())
return IsOriginalUrlSameSite(dest_url_info, should_compare_effective_urls);
if (IsSameSite(GetIsolationContext(),
UrlInfo(UrlInfoInit(last_successful_url)), dest_url_info,
should_compare_effective_urls)) {
return true;
}
if (!last_committed_origin.opaque() &&
IsSameSite(GetIsolationContext(),
UrlInfo(UrlInfoInit(GURL(last_committed_origin.Serialize()))),
dest_url_info, should_compare_effective_urls)) {
return true;
}
if (last_successful_url.IsAboutBlank() && last_committed_origin.opaque() &&
IsOriginalUrlSameSite(dest_url_info, should_compare_effective_urls)) {
return true;
}
return false;
}
bool SiteInstanceImpl::IsNavigationAllowedToStayInSameProcessDueToEffectiveURLs(
BrowserContext* browser_context,
bool for_outermost_main_frame,
const GURL& dest_url) {
if (ShouldCompareEffectiveURLs(browser_context, this,
for_outermost_main_frame, dest_url)) {
return false;
}
bool src_has_effective_url = !IsDefaultSiteInstance() &&
HasEffectiveURL(browser_context, original_url());
if (src_has_effective_url)
return true;
return HasEffectiveURL(browser_context, dest_url);
}
bool SiteInstanceImpl::IsSameSite(const IsolationContext& isolation_context,
const UrlInfo& real_src_url_info,
const UrlInfo& real_dest_url_info,
bool should_compare_effective_urls) {
const GURL& real_src_url = real_src_url_info.url;
const GURL& real_dest_url = real_dest_url_info.url;
DCHECK_CURRENTLY_ON(BrowserThread::UI);
BrowserContext* browser_context =
isolation_context.browser_or_resource_context().ToBrowserContext();
DCHECK(browser_context);
DCHECK_NE(real_src_url, GetDefaultSiteURL());
GURL src_url =
should_compare_effective_urls
? SiteInstanceImpl::GetEffectiveURL(browser_context, real_src_url)
: real_src_url;
GURL dest_url =
should_compare_effective_urls
? SiteInstanceImpl::GetEffectiveURL(browser_context, real_dest_url)
: real_dest_url;
if (blink::IsRendererDebugURL(src_url) || blink::IsRendererDebugURL(dest_url))
return true;
if (!src_url.is_valid() || !dest_url.is_valid())
return false;
if (real_src_url_info.is_sandboxed != real_dest_url_info.is_sandboxed)
return false;
if (dest_url.IsAboutBlank())
return true;
if (src_url.EqualsIgnoringRef(dest_url))
return true;
url::Origin src_origin = url::Origin::Create(src_url);
url::Origin dest_origin = url::Origin::Create(dest_url);
if (src_origin.scheme() != dest_origin.scheme())
return false;
if (SiteIsolationPolicy::IsStrictOriginIsolationEnabled() ||
(real_src_url_info.is_sandboxed &&
blink::features::kIsolateSandboxedIframesGroupingParam.Get() ==
blink::features::IsolateSandboxedIframesGrouping::kPerOrigin)) {
return src_origin == dest_origin;
}
if (!net::registry_controlled_domains::SameDomainOrHost(
src_origin, dest_origin,
net::registry_controlled_domains::INCLUDE_PRIVATE_REGISTRIES)) {
return false;
}
if (src_origin == dest_origin)
return true;
auto* policy = ChildProcessSecurityPolicyImpl::GetInstance();
url::Origin src_isolated_origin;
url::Origin dest_isolated_origin;
bool src_origin_is_isolated = policy->GetMatchingProcessIsolatedOrigin(
isolation_context, src_origin,
real_src_url_info.requests_origin_keyed_process(), &src_isolated_origin);
bool dest_origin_is_isolated = policy->GetMatchingProcessIsolatedOrigin(
isolation_context, dest_origin,
real_dest_url_info.requests_origin_keyed_process(),
&dest_isolated_origin);
if (src_origin_is_isolated || dest_origin_is_isolated) {
return src_isolated_origin == dest_isolated_origin;
}
return true;
}
bool SiteInstanceImpl::DoesSiteInfoForURLMatch(const UrlInfo& url_info) {
if (!WebExposedIsolationInfo::AreCompatible(
url_info.web_exposed_isolation_info, GetWebExposedIsolationInfo())) {
return false;
}
UrlInfo updated_url_info = url_info;
updated_url_info.web_exposed_isolation_info =
site_info_.web_exposed_isolation_info();
auto site_info = SiteInfo::Create(GetIsolationContext(), updated_url_info);
if (kCreateForURLAllowsDefaultSiteInstance &&
CanBePlacedInDefaultSiteInstance(GetIsolationContext(), url_info.url,
site_info)) {
site_info = SiteInfo::CreateForDefaultSiteInstance(
GetIsolationContext(), site_info.storage_partition_config(),
GetWebExposedIsolationInfo());
}
return site_info_.IsExactMatch(site_info);
}
void SiteInstanceImpl::RegisterAsDefaultOriginIsolation(
const url::Origin& previously_visited_origin) {
auto* policy = ChildProcessSecurityPolicyImpl::GetInstance();
policy->AddDefaultIsolatedOriginIfNeeded(
GetIsolationContext(), previously_visited_origin,
true );
}
bool SiteInstanceImpl::CanBePlacedInDefaultSiteInstance(
const IsolationContext& isolation_context,
const GURL& url,
const SiteInfo& site_info) {
DCHECK_CURRENTLY_ON(BrowserThread::UI);
if (!base::FeatureList::IsEnabled(
features::kProcessSharingWithDefaultSiteInstances)) {
return false;
}
if (url.SchemeIs(url::kFileScheme))
return false;
if (base::FeatureList::IsEnabled(
features::kProcessSharingWithStrictSiteInstances)) {
return false;
}
if (!ShouldAssignSiteForURL(url))
return false;
return !site_info.RequiresDedicatedProcess(isolation_context);
}
GURL SiteInstanceImpl::GetEffectiveURL(BrowserContext* browser_context,
const GURL& url) {
DCHECK(browser_context);
return GetContentClient()->browser()->GetEffectiveURL(browser_context, url);
}
bool SiteInstanceImpl::HasEffectiveURL(BrowserContext* browser_context,
const GURL& url) {
return GetEffectiveURL(browser_context, url) != url;
}
void SiteInstanceImpl::LockProcessIfNeeded() {
RenderProcessHost* process = site_instance_group_->process();
ChildProcessSecurityPolicyImpl* policy =
ChildProcessSecurityPolicyImpl::GetInstance();
ProcessLock process_lock = process->GetProcessLock();
StoragePartitionImpl* storage_partition =
static_cast<StoragePartitionImpl*>(process->GetStoragePartition());
if (!has_site_) {
CHECK(!process_lock.is_locked_to_site())
<< "A process that's already locked to " << process_lock.ToString()
<< " cannot be updated to a more permissive lock";
if (process_lock.is_invalid()) {
auto new_process_lock = ProcessLock::CreateAllowAnySite(
storage_partition->GetConfig(), GetWebExposedIsolationInfo());
process->SetProcessLock(GetIsolationContext(), new_process_lock);
} else {
CHECK(process_lock.allows_any_site())
<< "Unexpected process lock " << process_lock.ToString();
policy->IncludeIsolationContext(process->GetID(), GetIsolationContext());
}
return;
}
DCHECK(HasSite());
DCHECK_EQ(storage_partition->GetConfig(),
site_info_.storage_partition_config());
if (site_info_.ShouldLockProcessToSite(GetIsolationContext())) {
ProcessLock lock_to_set = ProcessLock::FromSiteInfo(GetSiteInfo());
if (!process_lock.is_locked_to_site()) {
TRACE_EVENT2("navigation", "RenderProcessHost::SetProcessLock", "site id",
id_.value(), "lock", lock_to_set.ToString());
process->SetProcessLock(GetIsolationContext(), lock_to_set);
} else if (process_lock != lock_to_set) {
base::debug::SetCrashKeyString(bad_message::GetRequestedSiteInfoKey(),
site_info_.GetDebugString());
policy->LogKilledProcessOriginLock(process->GetID());
CHECK(false) << "Trying to lock a process to " << lock_to_set.ToString()
<< " but the process is already locked to "
<< process_lock.ToString();
} else {
}
} else {
if (process_lock.is_locked_to_site()) {
base::debug::SetCrashKeyString(bad_message::GetRequestedSiteInfoKey(),
site_info_.GetDebugString());
policy->LogKilledProcessOriginLock(process->GetID());
CHECK(false) << "Trying to commit non-isolated site " << site_info_
<< " in process locked to " << process_lock.ToString();
} else if (process_lock.is_invalid()) {
auto new_process_lock = ProcessLock::CreateAllowAnySite(
storage_partition->GetConfig(), GetWebExposedIsolationInfo());
process->SetProcessLock(GetIsolationContext(), new_process_lock);
} else {
CHECK(process_lock.allows_any_site())
<< "Unexpected process lock " << process_lock.ToString();
}
}
process->SetIsUsed();
policy->IncludeIsolationContext(process->GetID(), GetIsolationContext());
}
const WebExposedIsolationInfo& SiteInstanceImpl::GetWebExposedIsolationInfo()
const {
return browsing_instance_->web_exposed_isolation_info();
}
bool SiteInstanceImpl::IsCrossOriginIsolated() const {
return GetWebExposedIsolationInfo().is_isolated();
}
const absl::optional<url::Origin>& SiteInstanceImpl::GetCommonCoopOrigin()
const {
return browsing_instance_->common_coop_origin();
}
void SiteInstance::StartIsolatingSite(
BrowserContext* context,
const GURL& url,
ChildProcessSecurityPolicy::IsolatedOriginSource source,
bool should_persist) {
if (!SiteIsolationPolicy::AreDynamicIsolatedOriginsEnabled())
return;
url::Origin origin(url::Origin::Create(url));
if (!IsolatedOriginUtil::IsValidIsolatedOrigin(origin))
return;
GURL site(SiteInfo::GetSiteForOrigin(origin));
ChildProcessSecurityPolicyImpl* policy =
ChildProcessSecurityPolicyImpl::GetInstance();
url::Origin site_origin(url::Origin::Create(site));
policy->AddFutureIsolatedOrigins({site_origin}, source, context);
if (!context->IsOffTheRecord() && should_persist) {
GetContentClient()->browser()->PersistIsolatedOrigin(context, site_origin,
source);
}
}
void SiteInstanceImpl::WriteIntoTrace(
perfetto::TracedProto<perfetto::protos::pbzero::SiteInstance> proto) {
proto->set_site_instance_id(GetId().value());
proto->set_browsing_instance_id(GetBrowsingInstanceId().value());
proto->set_is_default(IsDefaultSiteInstance());
proto->set_has_process(HasProcess());
proto->set_related_active_contents_count(GetRelatedActiveContentsCount());
proto.Set(TraceProto::kSiteInstanceGroup, group());
if (group()) {
proto->set_active_rfh_count(site_instance_group_->active_frame_count());
}
perfetto::TracedDictionary dict = std::move(proto).AddDebugAnnotations();
dict.Add("site_info", site_info_);
}
int SiteInstanceImpl::EstimateOriginAgentClusterOverheadForMetrics() {
return browsing_instance_->EstimateOriginAgentClusterOverhead();
}
scoped_refptr<SiteInstanceImpl>
SiteInstanceImpl::GetCompatibleSandboxedSiteInstance(
const UrlInfo& url_info,
const url::Origin& parent_origin) {
DCHECK(!IsDefaultSiteInstance());
DCHECK(has_site_);
DCHECK(!GetSiteInfo().is_sandboxed());
DCHECK(url_info.url.IsAboutSrcdoc());
UrlInfo sandboxed_url_info = url_info;
sandboxed_url_info.url =
parent_origin.GetTupleOrPrecursorTupleIfOpaque().GetURL();
DCHECK(sandboxed_url_info.is_sandboxed);
DCHECK(!sandboxed_url_info.origin);
auto sandboxed_site_info =
SiteInfo::Create(GetIsolationContext(), sandboxed_url_info);
auto result =
browsing_instance_->GetSiteInstanceForSiteInfo(sandboxed_site_info);
result->original_url_ = original_url_;
return result;
}
RenderProcessHost* SiteInstanceImpl::GetDefaultProcessForBrowsingInstance() {
if (SiteInstanceImpl* default_instance =
browsing_instance_->default_site_instance()) {
DCHECK(base::FeatureList::IsEnabled(
features::kProcessSharingWithDefaultSiteInstances));
return default_instance->HasProcess() ? default_instance->GetProcess()
: nullptr;
}
if (browsing_instance_->site_instance_group_manager().default_process()) {
DCHECK(base::FeatureList::IsEnabled(
features::kProcessSharingWithStrictSiteInstances));
return browsing_instance_->site_instance_group_manager().default_process();
}
return nullptr;
}
bool SiteInstanceImpl::IsCoopRelatedSiteInstance(
const SiteInstanceImpl* instance) const {
return instance->browsing_instance_->GetCoopRelatedGroupId() ==
browsing_instance_->GetCoopRelatedGroupId();
}
void SiteInstanceImpl::SetProcessForTesting(RenderProcessHost* process) {
SetProcessInternal(process);
}
}