1/*
2 * Copyright (C) 2011 Google Inc. All Rights Reserved.
3 *
4 * Redistribution and use in source and binary forms, with or without
5 * modification, are permitted provided that the following conditions
6 * are met:
7 * 1. Redistributions of source code must retain the above copyright
8 *    notice, this list of conditions and the following disclaimer.
9 * 2. Redistributions in binary form must reproduce the above copyright
10 *    notice, this list of conditions and the following disclaimer in the
11 *    documentation and/or other materials provided with the distribution.
12 *
13 * THIS SOFTWARE IS PROVIDED BY GOOGLE, INC. ``AS IS'' AND ANY
14 * EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
15 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
16 * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL APPLE COMPUTER, INC. OR
17 * CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL,
18 * EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO,
19 * PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR
20 * PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY
21 * OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
22 * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE
23 * OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
24 *
25 */
26
27#ifndef SecurityContext_h
28#define SecurityContext_h
29
30#include "wtf/PassRefPtr.h"
31#include "wtf/RefPtr.h"
32#include "wtf/text/WTFString.h"
33
34namespace blink {
35
36class SecurityOrigin;
37class ContentSecurityPolicy;
38class KURL;
39
40class SecurityContext {
41public:
42    SecurityOrigin* securityOrigin() const { return m_securityOrigin.get(); }
43    ContentSecurityPolicy* contentSecurityPolicy() const { return m_contentSecurityPolicy.get(); }
44
45    bool isSecureTransitionTo(const KURL&) const;
46
47    // Explicitly override the security origin for this security context.
48    // Note: It is dangerous to change the security origin of a script context
49    //       that already contains content.
50    void setSecurityOrigin(PassRefPtr<SecurityOrigin>);
51
52protected:
53    SecurityContext();
54    virtual ~SecurityContext();
55
56    void setContentSecurityPolicy(PassRefPtr<ContentSecurityPolicy>);
57
58    void didFailToInitializeSecurityOrigin() { m_haveInitializedSecurityOrigin = false; }
59    bool haveInitializedSecurityOrigin() const { return m_haveInitializedSecurityOrigin; }
60
61private:
62    bool m_haveInitializedSecurityOrigin;
63    RefPtr<SecurityOrigin> m_securityOrigin;
64    RefPtr<ContentSecurityPolicy> m_contentSecurityPolicy;
65};
66
67} // namespace blink
68
69#endif // SecurityContext_h
70