ConnectivityService.java revision c023453a2b79b338aea36b48fd610a099379d34c
1/*
2 * Copyright (C) 2008 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 *      http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
17package com.android.server;
18
19import static android.Manifest.permission.MANAGE_NETWORK_POLICY;
20import static android.Manifest.permission.RECEIVE_DATA_ACTIVITY_CHANGE;
21import static android.net.ConnectivityManager.CONNECTIVITY_ACTION;
22import static android.net.ConnectivityManager.CONNECTIVITY_ACTION_IMMEDIATE;
23import static android.net.ConnectivityManager.TYPE_BLUETOOTH;
24import static android.net.ConnectivityManager.TYPE_DUMMY;
25import static android.net.ConnectivityManager.TYPE_ETHERNET;
26import static android.net.ConnectivityManager.TYPE_MOBILE;
27import static android.net.ConnectivityManager.TYPE_WIFI;
28import static android.net.ConnectivityManager.TYPE_WIMAX;
29import static android.net.ConnectivityManager.TYPE_PROXY;
30import static android.net.ConnectivityManager.getNetworkTypeName;
31import static android.net.ConnectivityManager.isNetworkTypeValid;
32import static android.net.NetworkPolicyManager.RULE_ALLOW_ALL;
33import static android.net.NetworkPolicyManager.RULE_REJECT_METERED;
34
35import android.app.AlarmManager;
36import android.app.AppOpsManager;
37import android.app.Notification;
38import android.app.NotificationManager;
39import android.app.PendingIntent;
40import android.bluetooth.BluetoothTetheringDataTracker;
41import android.content.ActivityNotFoundException;
42import android.content.BroadcastReceiver;
43import android.content.ContentResolver;
44import android.content.Context;
45import android.content.ContextWrapper;
46import android.content.Intent;
47import android.content.IntentFilter;
48import android.content.pm.ApplicationInfo;
49import android.content.pm.PackageManager;
50import android.content.pm.PackageManager.NameNotFoundException;
51import android.content.res.Configuration;
52import android.content.res.Resources;
53import android.database.ContentObserver;
54import android.net.CaptivePortalTracker;
55import android.net.ConnectivityManager;
56import android.net.DummyDataStateTracker;
57import android.net.EthernetDataTracker;
58import android.net.IConnectivityManager;
59import android.net.INetworkManagementEventObserver;
60import android.net.INetworkPolicyListener;
61import android.net.INetworkPolicyManager;
62import android.net.INetworkStatsService;
63import android.net.LinkAddress;
64import android.net.LinkProperties;
65import android.net.LinkProperties.CompareResult;
66import android.net.LinkQualityInfo;
67import android.net.MobileDataStateTracker;
68import android.net.NetworkConfig;
69import android.net.NetworkInfo;
70import android.net.NetworkInfo.DetailedState;
71import android.net.NetworkQuotaInfo;
72import android.net.NetworkState;
73import android.net.NetworkStateTracker;
74import android.net.NetworkUtils;
75import android.net.Proxy;
76import android.net.ProxyDataTracker;
77import android.net.ProxyProperties;
78import android.net.RouteInfo;
79import android.net.SamplingDataTracker;
80import android.net.Uri;
81import android.net.wifi.WifiStateTracker;
82import android.net.wimax.WimaxManagerConstants;
83import android.os.AsyncTask;
84import android.os.Binder;
85import android.os.Build;
86import android.os.FileUtils;
87import android.os.Handler;
88import android.os.HandlerThread;
89import android.os.IBinder;
90import android.os.INetworkManagementService;
91import android.os.Looper;
92import android.os.Message;
93import android.os.Messenger;
94import android.os.ParcelFileDescriptor;
95import android.os.PowerManager;
96import android.os.Process;
97import android.os.RemoteException;
98import android.os.ServiceManager;
99import android.os.SystemClock;
100import android.os.SystemProperties;
101import android.os.UserHandle;
102import android.provider.Settings;
103import android.security.Credentials;
104import android.security.KeyStore;
105import android.telephony.TelephonyManager;
106import android.text.TextUtils;
107import android.util.Slog;
108import android.util.SparseArray;
109import android.util.SparseIntArray;
110import android.util.Xml;
111
112import com.android.internal.R;
113import com.android.internal.annotations.GuardedBy;
114import com.android.internal.net.LegacyVpnInfo;
115import com.android.internal.net.VpnConfig;
116import com.android.internal.net.VpnProfile;
117import com.android.internal.telephony.DctConstants;
118import com.android.internal.telephony.Phone;
119import com.android.internal.telephony.PhoneConstants;
120import com.android.internal.telephony.TelephonyIntents;
121import com.android.internal.util.IndentingPrintWriter;
122import com.android.internal.util.XmlUtils;
123import com.android.server.am.BatteryStatsService;
124import com.android.server.connectivity.DataConnectionStats;
125import com.android.server.connectivity.Nat464Xlat;
126import com.android.server.connectivity.PacManager;
127import com.android.server.connectivity.Tethering;
128import com.android.server.connectivity.Vpn;
129import com.android.server.net.BaseNetworkObserver;
130import com.android.server.net.LockdownVpnTracker;
131import com.google.android.collect.Lists;
132import com.google.android.collect.Sets;
133
134import dalvik.system.DexClassLoader;
135
136import org.xmlpull.v1.XmlPullParser;
137import org.xmlpull.v1.XmlPullParserException;
138
139import java.io.File;
140import java.io.FileDescriptor;
141import java.io.FileNotFoundException;
142import java.io.FileReader;
143import java.io.IOException;
144import java.io.PrintWriter;
145import java.lang.reflect.Constructor;
146import java.net.HttpURLConnection;
147import java.net.Inet4Address;
148import java.net.Inet6Address;
149import java.net.InetAddress;
150import java.net.URL;
151import java.net.UnknownHostException;
152import java.util.ArrayList;
153import java.util.Arrays;
154import java.util.Collection;
155import java.util.GregorianCalendar;
156import java.util.HashMap;
157import java.util.HashSet;
158import java.util.List;
159import java.util.Map;
160import java.util.Random;
161import java.util.concurrent.atomic.AtomicBoolean;
162import java.util.concurrent.atomic.AtomicInteger;
163
164import javax.net.ssl.HostnameVerifier;
165import javax.net.ssl.HttpsURLConnection;
166import javax.net.ssl.SSLSession;
167
168/**
169 * @hide
170 */
171public class ConnectivityService extends IConnectivityManager.Stub {
172    private static final String TAG = "ConnectivityService";
173
174    private static final boolean DBG = true;
175    private static final boolean VDBG = true;
176
177    private static final boolean LOGD_RULES = true;
178
179    // TODO: create better separation between radio types and network types
180
181    // how long to wait before switching back to a radio's default network
182    private static final int RESTORE_DEFAULT_NETWORK_DELAY = 1 * 60 * 1000;
183    // system property that can override the above value
184    private static final String NETWORK_RESTORE_DELAY_PROP_NAME =
185            "android.telephony.apn-restore";
186
187    // Default value if FAIL_FAST_TIME_MS is not set
188    private static final int DEFAULT_FAIL_FAST_TIME_MS = 1 * 60 * 1000;
189    // system property that can override DEFAULT_FAIL_FAST_TIME_MS
190    private static final String FAIL_FAST_TIME_MS =
191            "persist.radio.fail_fast_time_ms";
192
193    private static final String ACTION_PKT_CNT_SAMPLE_INTERVAL_ELAPSED =
194            "android.net.ConnectivityService.action.PKT_CNT_SAMPLE_INTERVAL_ELAPSED";
195
196    private static final int SAMPLE_INTERVAL_ELAPSED_REQUEST_CODE = 0;
197
198    private PendingIntent mSampleIntervalElapsedIntent;
199
200    // Set network sampling interval at 12 minutes, this way, even if the timers get
201    // aggregated, it will fire at around 15 minutes, which should allow us to
202    // aggregate this timer with other timers (specially the socket keep alive timers)
203    private static final int DEFAULT_SAMPLING_INTERVAL_IN_SECONDS = (VDBG ? 30 : 12 * 60);
204
205    // start network sampling a minute after booting ...
206    private static final int DEFAULT_START_SAMPLING_INTERVAL_IN_SECONDS = (VDBG ? 30 : 60);
207
208    AlarmManager mAlarmManager;
209
210    // used in recursive route setting to add gateways for the host for which
211    // a host route was requested.
212    private static final int MAX_HOSTROUTE_CYCLE_COUNT = 10;
213
214    private Tethering mTethering;
215
216    private KeyStore mKeyStore;
217
218    @GuardedBy("mVpns")
219    private final SparseArray<Vpn> mVpns = new SparseArray<Vpn>();
220    private VpnCallback mVpnCallback = new VpnCallback();
221
222    private boolean mLockdownEnabled;
223    private LockdownVpnTracker mLockdownTracker;
224
225    private Nat464Xlat mClat;
226
227    /** Lock around {@link #mUidRules} and {@link #mMeteredIfaces}. */
228    private Object mRulesLock = new Object();
229    /** Currently active network rules by UID. */
230    private SparseIntArray mUidRules = new SparseIntArray();
231    /** Set of ifaces that are costly. */
232    private HashSet<String> mMeteredIfaces = Sets.newHashSet();
233
234    /**
235     * Sometimes we want to refer to the individual network state
236     * trackers separately, and sometimes we just want to treat them
237     * abstractly.
238     */
239    private NetworkStateTracker mNetTrackers[];
240
241    /* Handles captive portal check on a network */
242    private CaptivePortalTracker mCaptivePortalTracker;
243
244    /**
245     * The link properties that define the current links
246     */
247    private LinkProperties mCurrentLinkProperties[];
248
249    /**
250     * A per Net list of the PID's that requested access to the net
251     * used both as a refcount and for per-PID DNS selection
252     */
253    private List<Integer> mNetRequestersPids[];
254
255    // priority order of the nettrackers
256    // (excluding dynamically set mNetworkPreference)
257    // TODO - move mNetworkTypePreference into this
258    private int[] mPriorityList;
259
260    private Context mContext;
261    private int mNetworkPreference;
262    private int mActiveDefaultNetwork = -1;
263    // 0 is full bad, 100 is full good
264    private int mDefaultInetCondition = 0;
265    private int mDefaultInetConditionPublished = 0;
266    private boolean mInetConditionChangeInFlight = false;
267    private int mDefaultConnectionSequence = 0;
268
269    private Object mDnsLock = new Object();
270    private int mNumDnsEntries;
271
272    private boolean mTestMode;
273    private static ConnectivityService sServiceInstance;
274
275    private INetworkManagementService mNetd;
276    private INetworkPolicyManager mPolicyManager;
277
278    private static final int ENABLED  = 1;
279    private static final int DISABLED = 0;
280
281    private static final boolean ADD = true;
282    private static final boolean REMOVE = false;
283
284    private static final boolean TO_DEFAULT_TABLE = true;
285    private static final boolean TO_SECONDARY_TABLE = false;
286
287    private static final boolean EXEMPT = true;
288    private static final boolean UNEXEMPT = false;
289
290    /**
291     * used internally as a delayed event to make us switch back to the
292     * default network
293     */
294    private static final int EVENT_RESTORE_DEFAULT_NETWORK = 1;
295
296    /**
297     * used internally to change our mobile data enabled flag
298     */
299    private static final int EVENT_CHANGE_MOBILE_DATA_ENABLED = 2;
300
301    /**
302     * used internally to change our network preference setting
303     * arg1 = networkType to prefer
304     */
305    private static final int EVENT_SET_NETWORK_PREFERENCE = 3;
306
307    /**
308     * used internally to synchronize inet condition reports
309     * arg1 = networkType
310     * arg2 = condition (0 bad, 100 good)
311     */
312    private static final int EVENT_INET_CONDITION_CHANGE = 4;
313
314    /**
315     * used internally to mark the end of inet condition hold periods
316     * arg1 = networkType
317     */
318    private static final int EVENT_INET_CONDITION_HOLD_END = 5;
319
320    /**
321     * used internally to set enable/disable cellular data
322     * arg1 = ENBALED or DISABLED
323     */
324    private static final int EVENT_SET_MOBILE_DATA = 7;
325
326    /**
327     * used internally to clear a wakelock when transitioning
328     * from one net to another
329     */
330    private static final int EVENT_CLEAR_NET_TRANSITION_WAKELOCK = 8;
331
332    /**
333     * used internally to reload global proxy settings
334     */
335    private static final int EVENT_APPLY_GLOBAL_HTTP_PROXY = 9;
336
337    /**
338     * used internally to set external dependency met/unmet
339     * arg1 = ENABLED (met) or DISABLED (unmet)
340     * arg2 = NetworkType
341     */
342    private static final int EVENT_SET_DEPENDENCY_MET = 10;
343
344    /**
345     * used internally to send a sticky broadcast delayed.
346     */
347    private static final int EVENT_SEND_STICKY_BROADCAST_INTENT = 11;
348
349    /**
350     * Used internally to
351     * {@link NetworkStateTracker#setPolicyDataEnable(boolean)}.
352     */
353    private static final int EVENT_SET_POLICY_DATA_ENABLE = 12;
354
355    private static final int EVENT_VPN_STATE_CHANGED = 13;
356
357    /**
358     * Used internally to disable fail fast of mobile data
359     */
360    private static final int EVENT_ENABLE_FAIL_FAST_MOBILE_DATA = 14;
361
362    /**
363     * user internally to indicate that data sampling interval is up
364     */
365    private static final int EVENT_SAMPLE_INTERVAL_ELAPSED = 15;
366
367    /**
368     * PAC manager has received new port.
369     */
370    private static final int EVENT_PROXY_HAS_CHANGED = 16;
371
372    /** Handler used for internal events. */
373    private InternalHandler mHandler;
374    /** Handler used for incoming {@link NetworkStateTracker} events. */
375    private NetworkStateTrackerHandler mTrackerHandler;
376
377    // list of DeathRecipients used to make sure features are turned off when
378    // a process dies
379    private List<FeatureUser> mFeatureUsers;
380
381    private boolean mSystemReady;
382    private Intent mInitialBroadcast;
383
384    private PowerManager.WakeLock mNetTransitionWakeLock;
385    private String mNetTransitionWakeLockCausedBy = "";
386    private int mNetTransitionWakeLockSerialNumber;
387    private int mNetTransitionWakeLockTimeout;
388
389    private InetAddress mDefaultDns;
390
391    // Lock for protecting access to mAddedRoutes and mExemptAddresses
392    private final Object mRoutesLock = new Object();
393
394    // this collection is used to refcount the added routes - if there are none left
395    // it's time to remove the route from the route table
396    @GuardedBy("mRoutesLock")
397    private Collection<RouteInfo> mAddedRoutes = new ArrayList<RouteInfo>();
398
399    // this collection corresponds to the entries of mAddedRoutes that have routing exemptions
400    // used to handle cleanup of exempt rules
401    @GuardedBy("mRoutesLock")
402    private Collection<LinkAddress> mExemptAddresses = new ArrayList<LinkAddress>();
403
404    // used in DBG mode to track inet condition reports
405    private static final int INET_CONDITION_LOG_MAX_SIZE = 15;
406    private ArrayList mInetLog;
407
408    // track the current default http proxy - tell the world if we get a new one (real change)
409    private ProxyProperties mDefaultProxy = null;
410    private Object mProxyLock = new Object();
411    private boolean mDefaultProxyDisabled = false;
412
413    // track the global proxy.
414    private ProxyProperties mGlobalProxy = null;
415
416    private PacManager mPacManager = null;
417
418    private SettingsObserver mSettingsObserver;
419
420    private AppOpsManager mAppOpsManager;
421
422    NetworkConfig[] mNetConfigs;
423    int mNetworksDefined;
424
425    private static class RadioAttributes {
426        public int mSimultaneity;
427        public int mType;
428        public RadioAttributes(String init) {
429            String fragments[] = init.split(",");
430            mType = Integer.parseInt(fragments[0]);
431            mSimultaneity = Integer.parseInt(fragments[1]);
432        }
433    }
434    RadioAttributes[] mRadioAttributes;
435
436    // the set of network types that can only be enabled by system/sig apps
437    List mProtectedNetworks;
438
439    private DataConnectionStats mDataConnectionStats;
440
441    private AtomicInteger mEnableFailFastMobileDataTag = new AtomicInteger(0);
442
443    TelephonyManager mTelephonyManager;
444
445    public ConnectivityService(Context context, INetworkManagementService netd,
446            INetworkStatsService statsService, INetworkPolicyManager policyManager) {
447        // Currently, omitting a NetworkFactory will create one internally
448        // TODO: create here when we have cleaner WiMAX support
449        this(context, netd, statsService, policyManager, null);
450    }
451
452    public ConnectivityService(Context context, INetworkManagementService netManager,
453            INetworkStatsService statsService, INetworkPolicyManager policyManager,
454            NetworkFactory netFactory) {
455        if (DBG) log("ConnectivityService starting up");
456
457        HandlerThread handlerThread = new HandlerThread("ConnectivityServiceThread");
458        handlerThread.start();
459        mHandler = new InternalHandler(handlerThread.getLooper());
460        mTrackerHandler = new NetworkStateTrackerHandler(handlerThread.getLooper());
461
462        if (netFactory == null) {
463            netFactory = new DefaultNetworkFactory(context, mTrackerHandler);
464        }
465
466        // setup our unique device name
467        if (TextUtils.isEmpty(SystemProperties.get("net.hostname"))) {
468            String id = Settings.Secure.getString(context.getContentResolver(),
469                    Settings.Secure.ANDROID_ID);
470            if (id != null && id.length() > 0) {
471                String name = new String("android-").concat(id);
472                SystemProperties.set("net.hostname", name);
473            }
474        }
475
476        // read our default dns server ip
477        String dns = Settings.Global.getString(context.getContentResolver(),
478                Settings.Global.DEFAULT_DNS_SERVER);
479        if (dns == null || dns.length() == 0) {
480            dns = context.getResources().getString(
481                    com.android.internal.R.string.config_default_dns_server);
482        }
483        try {
484            mDefaultDns = NetworkUtils.numericToInetAddress(dns);
485        } catch (IllegalArgumentException e) {
486            loge("Error setting defaultDns using " + dns);
487        }
488
489        mContext = checkNotNull(context, "missing Context");
490        mNetd = checkNotNull(netManager, "missing INetworkManagementService");
491        mPolicyManager = checkNotNull(policyManager, "missing INetworkPolicyManager");
492        mKeyStore = KeyStore.getInstance();
493        mTelephonyManager = (TelephonyManager) mContext.getSystemService(Context.TELEPHONY_SERVICE);
494
495        try {
496            mPolicyManager.registerListener(mPolicyListener);
497        } catch (RemoteException e) {
498            // ouch, no rules updates means some processes may never get network
499            loge("unable to register INetworkPolicyListener" + e.toString());
500        }
501
502        final PowerManager powerManager = (PowerManager) context.getSystemService(
503                Context.POWER_SERVICE);
504        mNetTransitionWakeLock = powerManager.newWakeLock(PowerManager.PARTIAL_WAKE_LOCK, TAG);
505        mNetTransitionWakeLockTimeout = mContext.getResources().getInteger(
506                com.android.internal.R.integer.config_networkTransitionTimeout);
507
508        mNetTrackers = new NetworkStateTracker[
509                ConnectivityManager.MAX_NETWORK_TYPE+1];
510        mCurrentLinkProperties = new LinkProperties[ConnectivityManager.MAX_NETWORK_TYPE+1];
511
512        mRadioAttributes = new RadioAttributes[ConnectivityManager.MAX_RADIO_TYPE+1];
513        mNetConfigs = new NetworkConfig[ConnectivityManager.MAX_NETWORK_TYPE+1];
514
515        // Load device network attributes from resources
516        String[] raStrings = context.getResources().getStringArray(
517                com.android.internal.R.array.radioAttributes);
518        for (String raString : raStrings) {
519            RadioAttributes r = new RadioAttributes(raString);
520            if (VDBG) log("raString=" + raString + " r=" + r);
521            if (r.mType > ConnectivityManager.MAX_RADIO_TYPE) {
522                loge("Error in radioAttributes - ignoring attempt to define type " + r.mType);
523                continue;
524            }
525            if (mRadioAttributes[r.mType] != null) {
526                loge("Error in radioAttributes - ignoring attempt to redefine type " +
527                        r.mType);
528                continue;
529            }
530            mRadioAttributes[r.mType] = r;
531        }
532
533        // TODO: What is the "correct" way to do determine if this is a wifi only device?
534        boolean wifiOnly = SystemProperties.getBoolean("ro.radio.noril", false);
535        log("wifiOnly=" + wifiOnly);
536        String[] naStrings = context.getResources().getStringArray(
537                com.android.internal.R.array.networkAttributes);
538        for (String naString : naStrings) {
539            try {
540                NetworkConfig n = new NetworkConfig(naString);
541                if (VDBG) log("naString=" + naString + " config=" + n);
542                if (n.type > ConnectivityManager.MAX_NETWORK_TYPE) {
543                    loge("Error in networkAttributes - ignoring attempt to define type " +
544                            n.type);
545                    continue;
546                }
547                if (wifiOnly && ConnectivityManager.isNetworkTypeMobile(n.type)) {
548                    log("networkAttributes - ignoring mobile as this dev is wifiOnly " +
549                            n.type);
550                    continue;
551                }
552                if (mNetConfigs[n.type] != null) {
553                    loge("Error in networkAttributes - ignoring attempt to redefine type " +
554                            n.type);
555                    continue;
556                }
557                if (mRadioAttributes[n.radio] == null) {
558                    loge("Error in networkAttributes - ignoring attempt to use undefined " +
559                            "radio " + n.radio + " in network type " + n.type);
560                    continue;
561                }
562                mNetConfigs[n.type] = n;
563                mNetworksDefined++;
564            } catch(Exception e) {
565                // ignore it - leave the entry null
566            }
567        }
568        if (VDBG) log("mNetworksDefined=" + mNetworksDefined);
569
570        mProtectedNetworks = new ArrayList<Integer>();
571        int[] protectedNetworks = context.getResources().getIntArray(
572                com.android.internal.R.array.config_protectedNetworks);
573        for (int p : protectedNetworks) {
574            if ((mNetConfigs[p] != null) && (mProtectedNetworks.contains(p) == false)) {
575                mProtectedNetworks.add(p);
576            } else {
577                if (DBG) loge("Ignoring protectedNetwork " + p);
578            }
579        }
580
581        // high priority first
582        mPriorityList = new int[mNetworksDefined];
583        {
584            int insertionPoint = mNetworksDefined-1;
585            int currentLowest = 0;
586            int nextLowest = 0;
587            while (insertionPoint > -1) {
588                for (NetworkConfig na : mNetConfigs) {
589                    if (na == null) continue;
590                    if (na.priority < currentLowest) continue;
591                    if (na.priority > currentLowest) {
592                        if (na.priority < nextLowest || nextLowest == 0) {
593                            nextLowest = na.priority;
594                        }
595                        continue;
596                    }
597                    mPriorityList[insertionPoint--] = na.type;
598                }
599                currentLowest = nextLowest;
600                nextLowest = 0;
601            }
602        }
603
604        // Update mNetworkPreference according to user mannually first then overlay config.xml
605        mNetworkPreference = getPersistedNetworkPreference();
606        if (mNetworkPreference == -1) {
607            for (int n : mPriorityList) {
608                if (mNetConfigs[n].isDefault() && ConnectivityManager.isNetworkTypeValid(n)) {
609                    mNetworkPreference = n;
610                    break;
611                }
612            }
613            if (mNetworkPreference == -1) {
614                throw new IllegalStateException(
615                        "You should set at least one default Network in config.xml!");
616            }
617        }
618
619        mNetRequestersPids =
620                (List<Integer> [])new ArrayList[ConnectivityManager.MAX_NETWORK_TYPE+1];
621        for (int i : mPriorityList) {
622            mNetRequestersPids[i] = new ArrayList<Integer>();
623        }
624
625        mFeatureUsers = new ArrayList<FeatureUser>();
626
627        mTestMode = SystemProperties.get("cm.test.mode").equals("true")
628                && SystemProperties.get("ro.build.type").equals("eng");
629
630        // Create and start trackers for hard-coded networks
631        for (int targetNetworkType : mPriorityList) {
632            final NetworkConfig config = mNetConfigs[targetNetworkType];
633            final NetworkStateTracker tracker;
634            try {
635                tracker = netFactory.createTracker(targetNetworkType, config);
636                mNetTrackers[targetNetworkType] = tracker;
637            } catch (IllegalArgumentException e) {
638                Slog.e(TAG, "Problem creating " + getNetworkTypeName(targetNetworkType)
639                        + " tracker: " + e);
640                continue;
641            }
642
643            tracker.startMonitoring(context, mTrackerHandler);
644            if (config.isDefault()) {
645                tracker.reconnect();
646            }
647        }
648
649        mTethering = new Tethering(mContext, mNetd, statsService, this, mHandler.getLooper());
650
651        //set up the listener for user state for creating user VPNs
652        IntentFilter intentFilter = new IntentFilter();
653        intentFilter.addAction(Intent.ACTION_USER_STARTING);
654        intentFilter.addAction(Intent.ACTION_USER_STOPPING);
655        mContext.registerReceiverAsUser(
656                mUserIntentReceiver, UserHandle.ALL, intentFilter, null, null);
657        mClat = new Nat464Xlat(mContext, mNetd, this, mTrackerHandler);
658
659        try {
660            mNetd.registerObserver(mTethering);
661            mNetd.registerObserver(mDataActivityObserver);
662            mNetd.registerObserver(mClat);
663        } catch (RemoteException e) {
664            loge("Error registering observer :" + e);
665        }
666
667        if (DBG) {
668            mInetLog = new ArrayList();
669        }
670
671        mSettingsObserver = new SettingsObserver(mHandler, EVENT_APPLY_GLOBAL_HTTP_PROXY);
672        mSettingsObserver.observe(mContext);
673
674        mDataConnectionStats = new DataConnectionStats(mContext);
675        mDataConnectionStats.startMonitoring();
676
677        // start network sampling ..
678        Intent intent = new Intent(ACTION_PKT_CNT_SAMPLE_INTERVAL_ELAPSED, null);
679        mSampleIntervalElapsedIntent = PendingIntent.getBroadcast(mContext,
680                SAMPLE_INTERVAL_ELAPSED_REQUEST_CODE, intent, 0);
681
682        mAlarmManager = (AlarmManager)mContext.getSystemService(Context.ALARM_SERVICE);
683        setAlarm(DEFAULT_START_SAMPLING_INTERVAL_IN_SECONDS * 1000, mSampleIntervalElapsedIntent);
684
685        IntentFilter filter = new IntentFilter();
686        filter.addAction(ACTION_PKT_CNT_SAMPLE_INTERVAL_ELAPSED);
687        mContext.registerReceiver(
688                new BroadcastReceiver() {
689                    @Override
690                    public void onReceive(Context context, Intent intent) {
691                        String action = intent.getAction();
692                        if (action.equals(ACTION_PKT_CNT_SAMPLE_INTERVAL_ELAPSED)) {
693                            mHandler.sendMessage(mHandler.obtainMessage
694                                    (EVENT_SAMPLE_INTERVAL_ELAPSED));
695                        }
696                    }
697                },
698                new IntentFilter(filter));
699
700        mPacManager = new PacManager(mContext, mHandler, EVENT_PROXY_HAS_CHANGED);
701
702        filter = new IntentFilter();
703        filter.addAction(CONNECTED_TO_PROVISIONING_NETWORK_ACTION);
704        mContext.registerReceiver(mProvisioningReceiver, filter);
705
706        mAppOpsManager = (AppOpsManager) context.getSystemService(Context.APP_OPS_SERVICE);
707    }
708
709    /**
710     * Factory that creates {@link NetworkStateTracker} instances using given
711     * {@link NetworkConfig}.
712     */
713    public interface NetworkFactory {
714        public NetworkStateTracker createTracker(int targetNetworkType, NetworkConfig config);
715    }
716
717    private static class DefaultNetworkFactory implements NetworkFactory {
718        private final Context mContext;
719        private final Handler mTrackerHandler;
720
721        public DefaultNetworkFactory(Context context, Handler trackerHandler) {
722            mContext = context;
723            mTrackerHandler = trackerHandler;
724        }
725
726        @Override
727        public NetworkStateTracker createTracker(int targetNetworkType, NetworkConfig config) {
728            switch (config.radio) {
729                case TYPE_WIFI:
730                    return new WifiStateTracker(targetNetworkType, config.name);
731                case TYPE_MOBILE:
732                    return new MobileDataStateTracker(targetNetworkType, config.name);
733                case TYPE_DUMMY:
734                    return new DummyDataStateTracker(targetNetworkType, config.name);
735                case TYPE_BLUETOOTH:
736                    return BluetoothTetheringDataTracker.getInstance();
737                case TYPE_WIMAX:
738                    return makeWimaxStateTracker(mContext, mTrackerHandler);
739                case TYPE_ETHERNET:
740                    return EthernetDataTracker.getInstance();
741                case TYPE_PROXY:
742                    return new ProxyDataTracker();
743                default:
744                    throw new IllegalArgumentException(
745                            "Trying to create a NetworkStateTracker for an unknown radio type: "
746                            + config.radio);
747            }
748        }
749    }
750
751    /**
752     * Loads external WiMAX library and registers as system service, returning a
753     * {@link NetworkStateTracker} for WiMAX. Caller is still responsible for
754     * invoking {@link NetworkStateTracker#startMonitoring(Context, Handler)}.
755     */
756    private static NetworkStateTracker makeWimaxStateTracker(
757            Context context, Handler trackerHandler) {
758        // Initialize Wimax
759        DexClassLoader wimaxClassLoader;
760        Class wimaxStateTrackerClass = null;
761        Class wimaxServiceClass = null;
762        Class wimaxManagerClass;
763        String wimaxJarLocation;
764        String wimaxLibLocation;
765        String wimaxManagerClassName;
766        String wimaxServiceClassName;
767        String wimaxStateTrackerClassName;
768
769        NetworkStateTracker wimaxStateTracker = null;
770
771        boolean isWimaxEnabled = context.getResources().getBoolean(
772                com.android.internal.R.bool.config_wimaxEnabled);
773
774        if (isWimaxEnabled) {
775            try {
776                wimaxJarLocation = context.getResources().getString(
777                        com.android.internal.R.string.config_wimaxServiceJarLocation);
778                wimaxLibLocation = context.getResources().getString(
779                        com.android.internal.R.string.config_wimaxNativeLibLocation);
780                wimaxManagerClassName = context.getResources().getString(
781                        com.android.internal.R.string.config_wimaxManagerClassname);
782                wimaxServiceClassName = context.getResources().getString(
783                        com.android.internal.R.string.config_wimaxServiceClassname);
784                wimaxStateTrackerClassName = context.getResources().getString(
785                        com.android.internal.R.string.config_wimaxStateTrackerClassname);
786
787                if (DBG) log("wimaxJarLocation: " + wimaxJarLocation);
788                wimaxClassLoader =  new DexClassLoader(wimaxJarLocation,
789                        new ContextWrapper(context).getCacheDir().getAbsolutePath(),
790                        wimaxLibLocation, ClassLoader.getSystemClassLoader());
791
792                try {
793                    wimaxManagerClass = wimaxClassLoader.loadClass(wimaxManagerClassName);
794                    wimaxStateTrackerClass = wimaxClassLoader.loadClass(wimaxStateTrackerClassName);
795                    wimaxServiceClass = wimaxClassLoader.loadClass(wimaxServiceClassName);
796                } catch (ClassNotFoundException ex) {
797                    loge("Exception finding Wimax classes: " + ex.toString());
798                    return null;
799                }
800            } catch(Resources.NotFoundException ex) {
801                loge("Wimax Resources does not exist!!! ");
802                return null;
803            }
804
805            try {
806                if (DBG) log("Starting Wimax Service... ");
807
808                Constructor wmxStTrkrConst = wimaxStateTrackerClass.getConstructor
809                        (new Class[] {Context.class, Handler.class});
810                wimaxStateTracker = (NetworkStateTracker) wmxStTrkrConst.newInstance(
811                        context, trackerHandler);
812
813                Constructor wmxSrvConst = wimaxServiceClass.getDeclaredConstructor
814                        (new Class[] {Context.class, wimaxStateTrackerClass});
815                wmxSrvConst.setAccessible(true);
816                IBinder svcInvoker = (IBinder)wmxSrvConst.newInstance(context, wimaxStateTracker);
817                wmxSrvConst.setAccessible(false);
818
819                ServiceManager.addService(WimaxManagerConstants.WIMAX_SERVICE, svcInvoker);
820
821            } catch(Exception ex) {
822                loge("Exception creating Wimax classes: " + ex.toString());
823                return null;
824            }
825        } else {
826            loge("Wimax is not enabled or not added to the network attributes!!! ");
827            return null;
828        }
829
830        return wimaxStateTracker;
831    }
832
833    /**
834     * Sets the preferred network.
835     * @param preference the new preference
836     */
837    public void setNetworkPreference(int preference) {
838        enforceChangePermission();
839
840        mHandler.sendMessage(
841                mHandler.obtainMessage(EVENT_SET_NETWORK_PREFERENCE, preference, 0));
842    }
843
844    public int getNetworkPreference() {
845        enforceAccessPermission();
846        int preference;
847        synchronized(this) {
848            preference = mNetworkPreference;
849        }
850        return preference;
851    }
852
853    private void handleSetNetworkPreference(int preference) {
854        if (ConnectivityManager.isNetworkTypeValid(preference) &&
855                mNetConfigs[preference] != null &&
856                mNetConfigs[preference].isDefault()) {
857            if (mNetworkPreference != preference) {
858                final ContentResolver cr = mContext.getContentResolver();
859                Settings.Global.putInt(cr, Settings.Global.NETWORK_PREFERENCE, preference);
860                synchronized(this) {
861                    mNetworkPreference = preference;
862                }
863                enforcePreference();
864            }
865        }
866    }
867
868    private int getConnectivityChangeDelay() {
869        final ContentResolver cr = mContext.getContentResolver();
870
871        /** Check system properties for the default value then use secure settings value, if any. */
872        int defaultDelay = SystemProperties.getInt(
873                "conn." + Settings.Global.CONNECTIVITY_CHANGE_DELAY,
874                ConnectivityManager.CONNECTIVITY_CHANGE_DELAY_DEFAULT);
875        return Settings.Global.getInt(cr, Settings.Global.CONNECTIVITY_CHANGE_DELAY,
876                defaultDelay);
877    }
878
879    private int getPersistedNetworkPreference() {
880        final ContentResolver cr = mContext.getContentResolver();
881
882        final int networkPrefSetting = Settings.Global
883                .getInt(cr, Settings.Global.NETWORK_PREFERENCE, -1);
884
885        return networkPrefSetting;
886    }
887
888    /**
889     * Make the state of network connectivity conform to the preference settings
890     * In this method, we only tear down a non-preferred network. Establishing
891     * a connection to the preferred network is taken care of when we handle
892     * the disconnect event from the non-preferred network
893     * (see {@link #handleDisconnect(NetworkInfo)}).
894     */
895    private void enforcePreference() {
896        if (mNetTrackers[mNetworkPreference].getNetworkInfo().isConnected())
897            return;
898
899        if (!mNetTrackers[mNetworkPreference].isAvailable())
900            return;
901
902        for (int t=0; t <= ConnectivityManager.MAX_RADIO_TYPE; t++) {
903            if (t != mNetworkPreference && mNetTrackers[t] != null &&
904                    mNetTrackers[t].getNetworkInfo().isConnected()) {
905                if (DBG) {
906                    log("tearing down " + mNetTrackers[t].getNetworkInfo() +
907                            " in enforcePreference");
908                }
909                teardown(mNetTrackers[t]);
910            }
911        }
912    }
913
914    private boolean teardown(NetworkStateTracker netTracker) {
915        if (netTracker.teardown()) {
916            netTracker.setTeardownRequested(true);
917            return true;
918        } else {
919            return false;
920        }
921    }
922
923    /**
924     * Check if UID should be blocked from using the network represented by the
925     * given {@link NetworkStateTracker}.
926     */
927    private boolean isNetworkBlocked(NetworkStateTracker tracker, int uid) {
928        final String iface = tracker.getLinkProperties().getInterfaceName();
929
930        final boolean networkCostly;
931        final int uidRules;
932        synchronized (mRulesLock) {
933            networkCostly = mMeteredIfaces.contains(iface);
934            uidRules = mUidRules.get(uid, RULE_ALLOW_ALL);
935        }
936
937        if (networkCostly && (uidRules & RULE_REJECT_METERED) != 0) {
938            return true;
939        }
940
941        // no restrictive rules; network is visible
942        return false;
943    }
944
945    /**
946     * Return a filtered {@link NetworkInfo}, potentially marked
947     * {@link DetailedState#BLOCKED} based on
948     * {@link #isNetworkBlocked(NetworkStateTracker, int)}.
949     */
950    private NetworkInfo getFilteredNetworkInfo(NetworkStateTracker tracker, int uid) {
951        NetworkInfo info = tracker.getNetworkInfo();
952        if (isNetworkBlocked(tracker, uid)) {
953            // network is blocked; clone and override state
954            info = new NetworkInfo(info);
955            info.setDetailedState(DetailedState.BLOCKED, null, null);
956        }
957        if (mLockdownTracker != null) {
958            info = mLockdownTracker.augmentNetworkInfo(info);
959        }
960        return info;
961    }
962
963    /**
964     * Return NetworkInfo for the active (i.e., connected) network interface.
965     * It is assumed that at most one network is active at a time. If more
966     * than one is active, it is indeterminate which will be returned.
967     * @return the info for the active network, or {@code null} if none is
968     * active
969     */
970    @Override
971    public NetworkInfo getActiveNetworkInfo() {
972        enforceAccessPermission();
973        final int uid = Binder.getCallingUid();
974        return getNetworkInfo(mActiveDefaultNetwork, uid);
975    }
976
977    /**
978     * Find the first Provisioning network.
979     *
980     * @return NetworkInfo or null if none.
981     */
982    private NetworkInfo getProvisioningNetworkInfo() {
983        enforceAccessPermission();
984
985        // Find the first Provisioning Network
986        NetworkInfo provNi = null;
987        for (NetworkInfo ni : getAllNetworkInfo()) {
988            if (ni.isConnectedToProvisioningNetwork()) {
989                provNi = ni;
990                break;
991            }
992        }
993        if (DBG) log("getProvisioningNetworkInfo: X provNi=" + provNi);
994        return provNi;
995    }
996
997    /**
998     * Find the first Provisioning network or the ActiveDefaultNetwork
999     * if there is no Provisioning network
1000     *
1001     * @return NetworkInfo or null if none.
1002     */
1003    @Override
1004    public NetworkInfo getProvisioningOrActiveNetworkInfo() {
1005        enforceAccessPermission();
1006
1007        NetworkInfo provNi = getProvisioningNetworkInfo();
1008        if (provNi == null) {
1009            final int uid = Binder.getCallingUid();
1010            provNi = getNetworkInfo(mActiveDefaultNetwork, uid);
1011        }
1012        if (DBG) log("getProvisioningOrActiveNetworkInfo: X provNi=" + provNi);
1013        return provNi;
1014    }
1015
1016    public NetworkInfo getActiveNetworkInfoUnfiltered() {
1017        enforceAccessPermission();
1018        if (isNetworkTypeValid(mActiveDefaultNetwork)) {
1019            final NetworkStateTracker tracker = mNetTrackers[mActiveDefaultNetwork];
1020            if (tracker != null) {
1021                return tracker.getNetworkInfo();
1022            }
1023        }
1024        return null;
1025    }
1026
1027    @Override
1028    public NetworkInfo getActiveNetworkInfoForUid(int uid) {
1029        enforceConnectivityInternalPermission();
1030        return getNetworkInfo(mActiveDefaultNetwork, uid);
1031    }
1032
1033    @Override
1034    public NetworkInfo getNetworkInfo(int networkType) {
1035        enforceAccessPermission();
1036        final int uid = Binder.getCallingUid();
1037        return getNetworkInfo(networkType, uid);
1038    }
1039
1040    private NetworkInfo getNetworkInfo(int networkType, int uid) {
1041        NetworkInfo info = null;
1042        if (isNetworkTypeValid(networkType)) {
1043            final NetworkStateTracker tracker = mNetTrackers[networkType];
1044            if (tracker != null) {
1045                info = getFilteredNetworkInfo(tracker, uid);
1046            }
1047        }
1048        return info;
1049    }
1050
1051    @Override
1052    public NetworkInfo[] getAllNetworkInfo() {
1053        enforceAccessPermission();
1054        final int uid = Binder.getCallingUid();
1055        final ArrayList<NetworkInfo> result = Lists.newArrayList();
1056        synchronized (mRulesLock) {
1057            for (NetworkStateTracker tracker : mNetTrackers) {
1058                if (tracker != null) {
1059                    result.add(getFilteredNetworkInfo(tracker, uid));
1060                }
1061            }
1062        }
1063        return result.toArray(new NetworkInfo[result.size()]);
1064    }
1065
1066    @Override
1067    public boolean isNetworkSupported(int networkType) {
1068        enforceAccessPermission();
1069        return (isNetworkTypeValid(networkType) && (mNetTrackers[networkType] != null));
1070    }
1071
1072    /**
1073     * Return LinkProperties for the active (i.e., connected) default
1074     * network interface.  It is assumed that at most one default network
1075     * is active at a time. If more than one is active, it is indeterminate
1076     * which will be returned.
1077     * @return the ip properties for the active network, or {@code null} if
1078     * none is active
1079     */
1080    @Override
1081    public LinkProperties getActiveLinkProperties() {
1082        return getLinkProperties(mActiveDefaultNetwork);
1083    }
1084
1085    @Override
1086    public LinkProperties getLinkProperties(int networkType) {
1087        enforceAccessPermission();
1088        if (isNetworkTypeValid(networkType)) {
1089            final NetworkStateTracker tracker = mNetTrackers[networkType];
1090            if (tracker != null) {
1091                return tracker.getLinkProperties();
1092            }
1093        }
1094        return null;
1095    }
1096
1097    @Override
1098    public NetworkState[] getAllNetworkState() {
1099        enforceAccessPermission();
1100        final int uid = Binder.getCallingUid();
1101        final ArrayList<NetworkState> result = Lists.newArrayList();
1102        synchronized (mRulesLock) {
1103            for (NetworkStateTracker tracker : mNetTrackers) {
1104                if (tracker != null) {
1105                    final NetworkInfo info = getFilteredNetworkInfo(tracker, uid);
1106                    result.add(new NetworkState(
1107                            info, tracker.getLinkProperties(), tracker.getLinkCapabilities()));
1108                }
1109            }
1110        }
1111        return result.toArray(new NetworkState[result.size()]);
1112    }
1113
1114    private NetworkState getNetworkStateUnchecked(int networkType) {
1115        if (isNetworkTypeValid(networkType)) {
1116            final NetworkStateTracker tracker = mNetTrackers[networkType];
1117            if (tracker != null) {
1118                return new NetworkState(tracker.getNetworkInfo(), tracker.getLinkProperties(),
1119                        tracker.getLinkCapabilities());
1120            }
1121        }
1122        return null;
1123    }
1124
1125    @Override
1126    public NetworkQuotaInfo getActiveNetworkQuotaInfo() {
1127        enforceAccessPermission();
1128
1129        final long token = Binder.clearCallingIdentity();
1130        try {
1131            final NetworkState state = getNetworkStateUnchecked(mActiveDefaultNetwork);
1132            if (state != null) {
1133                try {
1134                    return mPolicyManager.getNetworkQuotaInfo(state);
1135                } catch (RemoteException e) {
1136                }
1137            }
1138            return null;
1139        } finally {
1140            Binder.restoreCallingIdentity(token);
1141        }
1142    }
1143
1144    @Override
1145    public boolean isActiveNetworkMetered() {
1146        enforceAccessPermission();
1147        final long token = Binder.clearCallingIdentity();
1148        try {
1149            return isNetworkMeteredUnchecked(mActiveDefaultNetwork);
1150        } finally {
1151            Binder.restoreCallingIdentity(token);
1152        }
1153    }
1154
1155    private boolean isNetworkMeteredUnchecked(int networkType) {
1156        final NetworkState state = getNetworkStateUnchecked(networkType);
1157        if (state != null) {
1158            try {
1159                return mPolicyManager.isNetworkMetered(state);
1160            } catch (RemoteException e) {
1161            }
1162        }
1163        return false;
1164    }
1165
1166    public boolean setRadios(boolean turnOn) {
1167        boolean result = true;
1168        enforceChangePermission();
1169        for (NetworkStateTracker t : mNetTrackers) {
1170            if (t != null) result = t.setRadio(turnOn) && result;
1171        }
1172        return result;
1173    }
1174
1175    public boolean setRadio(int netType, boolean turnOn) {
1176        enforceChangePermission();
1177        if (!ConnectivityManager.isNetworkTypeValid(netType)) {
1178            return false;
1179        }
1180        NetworkStateTracker tracker = mNetTrackers[netType];
1181        return tracker != null && tracker.setRadio(turnOn);
1182    }
1183
1184    private INetworkManagementEventObserver mDataActivityObserver = new BaseNetworkObserver() {
1185        @Override
1186        public void interfaceClassDataActivityChanged(String label, boolean active) {
1187            int deviceType = Integer.parseInt(label);
1188            sendDataActivityBroadcast(deviceType, active);
1189        }
1190    };
1191
1192    /**
1193     * Used to notice when the calling process dies so we can self-expire
1194     *
1195     * Also used to know if the process has cleaned up after itself when
1196     * our auto-expire timer goes off.  The timer has a link to an object.
1197     *
1198     */
1199    private class FeatureUser implements IBinder.DeathRecipient {
1200        int mNetworkType;
1201        String mFeature;
1202        IBinder mBinder;
1203        int mPid;
1204        int mUid;
1205        long mCreateTime;
1206
1207        FeatureUser(int type, String feature, IBinder binder) {
1208            super();
1209            mNetworkType = type;
1210            mFeature = feature;
1211            mBinder = binder;
1212            mPid = getCallingPid();
1213            mUid = getCallingUid();
1214            mCreateTime = System.currentTimeMillis();
1215
1216            try {
1217                mBinder.linkToDeath(this, 0);
1218            } catch (RemoteException e) {
1219                binderDied();
1220            }
1221        }
1222
1223        void unlinkDeathRecipient() {
1224            mBinder.unlinkToDeath(this, 0);
1225        }
1226
1227        public void binderDied() {
1228            log("ConnectivityService FeatureUser binderDied(" +
1229                    mNetworkType + ", " + mFeature + ", " + mBinder + "), created " +
1230                    (System.currentTimeMillis() - mCreateTime) + " mSec ago");
1231            stopUsingNetworkFeature(this, false);
1232        }
1233
1234        public void expire() {
1235            if (VDBG) {
1236                log("ConnectivityService FeatureUser expire(" +
1237                        mNetworkType + ", " + mFeature + ", " + mBinder +"), created " +
1238                        (System.currentTimeMillis() - mCreateTime) + " mSec ago");
1239            }
1240            stopUsingNetworkFeature(this, false);
1241        }
1242
1243        public boolean isSameUser(FeatureUser u) {
1244            if (u == null) return false;
1245
1246            return isSameUser(u.mPid, u.mUid, u.mNetworkType, u.mFeature);
1247        }
1248
1249        public boolean isSameUser(int pid, int uid, int networkType, String feature) {
1250            if ((mPid == pid) && (mUid == uid) && (mNetworkType == networkType) &&
1251                TextUtils.equals(mFeature, feature)) {
1252                return true;
1253            }
1254            return false;
1255        }
1256
1257        public String toString() {
1258            return "FeatureUser("+mNetworkType+","+mFeature+","+mPid+","+mUid+"), created " +
1259                    (System.currentTimeMillis() - mCreateTime) + " mSec ago";
1260        }
1261    }
1262
1263    // javadoc from interface
1264    public int startUsingNetworkFeature(int networkType, String feature,
1265            IBinder binder) {
1266        long startTime = 0;
1267        if (DBG) {
1268            startTime = SystemClock.elapsedRealtime();
1269        }
1270        if (VDBG) {
1271            log("startUsingNetworkFeature for net " + networkType + ": " + feature + ", uid="
1272                    + Binder.getCallingUid());
1273        }
1274        enforceChangePermission();
1275        try {
1276            if (!ConnectivityManager.isNetworkTypeValid(networkType) ||
1277                    mNetConfigs[networkType] == null) {
1278                return PhoneConstants.APN_REQUEST_FAILED;
1279            }
1280
1281            FeatureUser f = new FeatureUser(networkType, feature, binder);
1282
1283            // TODO - move this into individual networktrackers
1284            int usedNetworkType = convertFeatureToNetworkType(networkType, feature);
1285
1286            if (mLockdownEnabled) {
1287                // Since carrier APNs usually aren't available from VPN
1288                // endpoint, mark them as unavailable.
1289                return PhoneConstants.APN_TYPE_NOT_AVAILABLE;
1290            }
1291
1292            if (mProtectedNetworks.contains(usedNetworkType)) {
1293                enforceConnectivityInternalPermission();
1294            }
1295
1296            // if UID is restricted, don't allow them to bring up metered APNs
1297            final boolean networkMetered = isNetworkMeteredUnchecked(usedNetworkType);
1298            final int uidRules;
1299            synchronized (mRulesLock) {
1300                uidRules = mUidRules.get(Binder.getCallingUid(), RULE_ALLOW_ALL);
1301            }
1302            if (networkMetered && (uidRules & RULE_REJECT_METERED) != 0) {
1303                return PhoneConstants.APN_REQUEST_FAILED;
1304            }
1305
1306            NetworkStateTracker network = mNetTrackers[usedNetworkType];
1307            if (network != null) {
1308                Integer currentPid = new Integer(getCallingPid());
1309                if (usedNetworkType != networkType) {
1310                    NetworkInfo ni = network.getNetworkInfo();
1311
1312                    if (ni.isAvailable() == false) {
1313                        if (!TextUtils.equals(feature,Phone.FEATURE_ENABLE_DUN_ALWAYS)) {
1314                            if (DBG) log("special network not available ni=" + ni.getTypeName());
1315                            return PhoneConstants.APN_TYPE_NOT_AVAILABLE;
1316                        } else {
1317                            // else make the attempt anyway - probably giving REQUEST_STARTED below
1318                            if (DBG) {
1319                                log("special network not available, but try anyway ni=" +
1320                                        ni.getTypeName());
1321                            }
1322                        }
1323                    }
1324
1325                    int restoreTimer = getRestoreDefaultNetworkDelay(usedNetworkType);
1326
1327                    synchronized(this) {
1328                        boolean addToList = true;
1329                        if (restoreTimer < 0) {
1330                            // In case there is no timer is specified for the feature,
1331                            // make sure we don't add duplicate entry with the same request.
1332                            for (FeatureUser u : mFeatureUsers) {
1333                                if (u.isSameUser(f)) {
1334                                    // Duplicate user is found. Do not add.
1335                                    addToList = false;
1336                                    break;
1337                                }
1338                            }
1339                        }
1340
1341                        if (addToList) mFeatureUsers.add(f);
1342                        if (!mNetRequestersPids[usedNetworkType].contains(currentPid)) {
1343                            // this gets used for per-pid dns when connected
1344                            mNetRequestersPids[usedNetworkType].add(currentPid);
1345                        }
1346                    }
1347
1348                    if (restoreTimer >= 0) {
1349                        mHandler.sendMessageDelayed(mHandler.obtainMessage(
1350                                EVENT_RESTORE_DEFAULT_NETWORK, f), restoreTimer);
1351                    }
1352
1353                    if ((ni.isConnectedOrConnecting() == true) &&
1354                            !network.isTeardownRequested()) {
1355                        if (ni.isConnected() == true) {
1356                            final long token = Binder.clearCallingIdentity();
1357                            try {
1358                                // add the pid-specific dns
1359                                handleDnsConfigurationChange(usedNetworkType);
1360                                if (VDBG) log("special network already active");
1361                            } finally {
1362                                Binder.restoreCallingIdentity(token);
1363                            }
1364                            return PhoneConstants.APN_ALREADY_ACTIVE;
1365                        }
1366                        if (VDBG) log("special network already connecting");
1367                        return PhoneConstants.APN_REQUEST_STARTED;
1368                    }
1369
1370                    // check if the radio in play can make another contact
1371                    // assume if cannot for now
1372
1373                    if (DBG) {
1374                        log("startUsingNetworkFeature reconnecting to " + networkType + ": " +
1375                                feature);
1376                    }
1377                    if (network.reconnect()) {
1378                        if (DBG) log("startUsingNetworkFeature X: return APN_REQUEST_STARTED");
1379                        return PhoneConstants.APN_REQUEST_STARTED;
1380                    } else {
1381                        if (DBG) log("startUsingNetworkFeature X: return APN_REQUEST_FAILED");
1382                        return PhoneConstants.APN_REQUEST_FAILED;
1383                    }
1384                } else {
1385                    // need to remember this unsupported request so we respond appropriately on stop
1386                    synchronized(this) {
1387                        mFeatureUsers.add(f);
1388                        if (!mNetRequestersPids[usedNetworkType].contains(currentPid)) {
1389                            // this gets used for per-pid dns when connected
1390                            mNetRequestersPids[usedNetworkType].add(currentPid);
1391                        }
1392                    }
1393                    if (DBG) log("startUsingNetworkFeature X: return -1 unsupported feature.");
1394                    return -1;
1395                }
1396            }
1397            if (DBG) log("startUsingNetworkFeature X: return APN_TYPE_NOT_AVAILABLE");
1398            return PhoneConstants.APN_TYPE_NOT_AVAILABLE;
1399         } finally {
1400            if (DBG) {
1401                final long execTime = SystemClock.elapsedRealtime() - startTime;
1402                if (execTime > 250) {
1403                    loge("startUsingNetworkFeature took too long: " + execTime + "ms");
1404                } else {
1405                    if (VDBG) log("startUsingNetworkFeature took " + execTime + "ms");
1406                }
1407            }
1408         }
1409    }
1410
1411    // javadoc from interface
1412    public int stopUsingNetworkFeature(int networkType, String feature) {
1413        enforceChangePermission();
1414
1415        int pid = getCallingPid();
1416        int uid = getCallingUid();
1417
1418        FeatureUser u = null;
1419        boolean found = false;
1420
1421        synchronized(this) {
1422            for (FeatureUser x : mFeatureUsers) {
1423                if (x.isSameUser(pid, uid, networkType, feature)) {
1424                    u = x;
1425                    found = true;
1426                    break;
1427                }
1428            }
1429        }
1430        if (found && u != null) {
1431            if (VDBG) log("stopUsingNetworkFeature: X");
1432            // stop regardless of how many other time this proc had called start
1433            return stopUsingNetworkFeature(u, true);
1434        } else {
1435            // none found!
1436            if (VDBG) log("stopUsingNetworkFeature: X not a live request, ignoring");
1437            return 1;
1438        }
1439    }
1440
1441    private int stopUsingNetworkFeature(FeatureUser u, boolean ignoreDups) {
1442        int networkType = u.mNetworkType;
1443        String feature = u.mFeature;
1444        int pid = u.mPid;
1445        int uid = u.mUid;
1446
1447        NetworkStateTracker tracker = null;
1448        boolean callTeardown = false;  // used to carry our decision outside of sync block
1449
1450        if (VDBG) {
1451            log("stopUsingNetworkFeature: net " + networkType + ": " + feature);
1452        }
1453
1454        if (!ConnectivityManager.isNetworkTypeValid(networkType)) {
1455            if (DBG) {
1456                log("stopUsingNetworkFeature: net " + networkType + ": " + feature +
1457                        ", net is invalid");
1458            }
1459            return -1;
1460        }
1461
1462        // need to link the mFeatureUsers list with the mNetRequestersPids state in this
1463        // sync block
1464        synchronized(this) {
1465            // check if this process still has an outstanding start request
1466            if (!mFeatureUsers.contains(u)) {
1467                if (VDBG) {
1468                    log("stopUsingNetworkFeature: this process has no outstanding requests" +
1469                        ", ignoring");
1470                }
1471                return 1;
1472            }
1473            u.unlinkDeathRecipient();
1474            mFeatureUsers.remove(mFeatureUsers.indexOf(u));
1475            // If we care about duplicate requests, check for that here.
1476            //
1477            // This is done to support the extension of a request - the app
1478            // can request we start the network feature again and renew the
1479            // auto-shutoff delay.  Normal "stop" calls from the app though
1480            // do not pay attention to duplicate requests - in effect the
1481            // API does not refcount and a single stop will counter multiple starts.
1482            if (ignoreDups == false) {
1483                for (FeatureUser x : mFeatureUsers) {
1484                    if (x.isSameUser(u)) {
1485                        if (VDBG) log("stopUsingNetworkFeature: dup is found, ignoring");
1486                        return 1;
1487                    }
1488                }
1489            }
1490
1491            // TODO - move to individual network trackers
1492            int usedNetworkType = convertFeatureToNetworkType(networkType, feature);
1493
1494            tracker =  mNetTrackers[usedNetworkType];
1495            if (tracker == null) {
1496                if (DBG) {
1497                    log("stopUsingNetworkFeature: net " + networkType + ": " + feature +
1498                            " no known tracker for used net type " + usedNetworkType);
1499                }
1500                return -1;
1501            }
1502            if (usedNetworkType != networkType) {
1503                Integer currentPid = new Integer(pid);
1504                mNetRequestersPids[usedNetworkType].remove(currentPid);
1505
1506                final long token = Binder.clearCallingIdentity();
1507                try {
1508                    reassessPidDns(pid, true);
1509                } finally {
1510                    Binder.restoreCallingIdentity(token);
1511                }
1512                flushVmDnsCache();
1513                if (mNetRequestersPids[usedNetworkType].size() != 0) {
1514                    if (VDBG) {
1515                        log("stopUsingNetworkFeature: net " + networkType + ": " + feature +
1516                                " others still using it");
1517                    }
1518                    return 1;
1519                }
1520                callTeardown = true;
1521            } else {
1522                if (DBG) {
1523                    log("stopUsingNetworkFeature: net " + networkType + ": " + feature +
1524                            " not a known feature - dropping");
1525                }
1526            }
1527        }
1528
1529        if (callTeardown) {
1530            if (DBG) {
1531                log("stopUsingNetworkFeature: teardown net " + networkType + ": " + feature);
1532            }
1533            tracker.teardown();
1534            return 1;
1535        } else {
1536            return -1;
1537        }
1538    }
1539
1540    /**
1541     * Check if the address falls into any of currently running VPN's route's.
1542     */
1543    private boolean isAddressUnderVpn(InetAddress address) {
1544        synchronized (mVpns) {
1545            synchronized (mRoutesLock) {
1546                int uid = UserHandle.getCallingUserId();
1547                Vpn vpn = mVpns.get(uid);
1548                if (vpn == null) {
1549                    return false;
1550                }
1551
1552                // Check if an exemption exists for this address.
1553                for (LinkAddress destination : mExemptAddresses) {
1554                    if (!NetworkUtils.addressTypeMatches(address, destination.getAddress())) {
1555                        continue;
1556                    }
1557
1558                    int prefix = destination.getNetworkPrefixLength();
1559                    InetAddress addrMasked = NetworkUtils.getNetworkPart(address, prefix);
1560                    InetAddress destMasked = NetworkUtils.getNetworkPart(destination.getAddress(),
1561                            prefix);
1562
1563                    if (addrMasked.equals(destMasked)) {
1564                        return false;
1565                    }
1566                }
1567
1568                // Finally check if the address is covered by the VPN.
1569                return vpn.isAddressCovered(address);
1570            }
1571        }
1572    }
1573
1574    /**
1575     * @deprecated use requestRouteToHostAddress instead
1576     *
1577     * Ensure that a network route exists to deliver traffic to the specified
1578     * host via the specified network interface.
1579     * @param networkType the type of the network over which traffic to the
1580     * specified host is to be routed
1581     * @param hostAddress the IP address of the host to which the route is
1582     * desired
1583     * @return {@code true} on success, {@code false} on failure
1584     */
1585    public boolean requestRouteToHost(int networkType, int hostAddress, String packageName) {
1586        InetAddress inetAddress = NetworkUtils.intToInetAddress(hostAddress);
1587
1588        if (inetAddress == null) {
1589            return false;
1590        }
1591
1592        return requestRouteToHostAddress(networkType, inetAddress.getAddress(), packageName);
1593    }
1594
1595    /**
1596     * Ensure that a network route exists to deliver traffic to the specified
1597     * host via the specified network interface.
1598     * @param networkType the type of the network over which traffic to the
1599     * specified host is to be routed
1600     * @param hostAddress the IP address of the host to which the route is
1601     * desired
1602     * @return {@code true} on success, {@code false} on failure
1603     */
1604    public boolean requestRouteToHostAddress(int networkType, byte[] hostAddress,
1605            String packageName) {
1606        enforceChangePermission();
1607        if (mProtectedNetworks.contains(networkType)) {
1608            enforceConnectivityInternalPermission();
1609        }
1610        boolean exempt;
1611        InetAddress addr;
1612        try {
1613            addr = InetAddress.getByAddress(hostAddress);
1614        } catch (UnknownHostException e) {
1615            if (DBG) log("requestRouteToHostAddress got " + e.toString());
1616            return false;
1617        }
1618        // System apps may request routes bypassing the VPN to keep other networks working.
1619        if (Binder.getCallingUid() == Process.SYSTEM_UID) {
1620            exempt = true;
1621        } else {
1622            mAppOpsManager.checkPackage(Binder.getCallingUid(), packageName);
1623            try {
1624                ApplicationInfo info = mContext.getPackageManager().getApplicationInfo(packageName,
1625                        0);
1626                exempt = (info.flags & ApplicationInfo.FLAG_SYSTEM) != 0;
1627            } catch (NameNotFoundException e) {
1628                throw new IllegalArgumentException("Failed to find calling package details", e);
1629            }
1630        }
1631
1632        // Non-exempt routeToHost's can only be added if the host is not covered by the VPN.
1633        // This can be either because the VPN's routes do not cover the destination or a
1634        // system application added an exemption that covers this destination.
1635        if (!exempt && isAddressUnderVpn(addr)) {
1636            return false;
1637        }
1638
1639        if (!ConnectivityManager.isNetworkTypeValid(networkType)) {
1640            if (DBG) log("requestRouteToHostAddress on invalid network: " + networkType);
1641            return false;
1642        }
1643        NetworkStateTracker tracker = mNetTrackers[networkType];
1644        DetailedState netState = DetailedState.DISCONNECTED;
1645        if (tracker != null) {
1646            netState = tracker.getNetworkInfo().getDetailedState();
1647        }
1648
1649        if ((netState != DetailedState.CONNECTED &&
1650                netState != DetailedState.CAPTIVE_PORTAL_CHECK) ||
1651                tracker.isTeardownRequested()) {
1652            if (VDBG) {
1653                log("requestRouteToHostAddress on down network "
1654                        + "(" + networkType + ") - dropped"
1655                        + " tracker=" + tracker
1656                        + " netState=" + netState
1657                        + " isTeardownRequested="
1658                            + ((tracker != null) ? tracker.isTeardownRequested() : "tracker:null"));
1659            }
1660            return false;
1661        }
1662        final long token = Binder.clearCallingIdentity();
1663        try {
1664            LinkProperties lp = tracker.getLinkProperties();
1665            boolean ok = addRouteToAddress(lp, addr, exempt);
1666            if (DBG) log("requestRouteToHostAddress ok=" + ok);
1667            return ok;
1668        } finally {
1669            Binder.restoreCallingIdentity(token);
1670        }
1671    }
1672
1673    private boolean addRoute(LinkProperties p, RouteInfo r, boolean toDefaultTable,
1674            boolean exempt) {
1675        return modifyRoute(p, r, 0, ADD, toDefaultTable, exempt);
1676    }
1677
1678    private boolean removeRoute(LinkProperties p, RouteInfo r, boolean toDefaultTable) {
1679        return modifyRoute(p, r, 0, REMOVE, toDefaultTable, UNEXEMPT);
1680    }
1681
1682    private boolean addRouteToAddress(LinkProperties lp, InetAddress addr, boolean exempt) {
1683        return modifyRouteToAddress(lp, addr, ADD, TO_DEFAULT_TABLE, exempt);
1684    }
1685
1686    private boolean removeRouteToAddress(LinkProperties lp, InetAddress addr) {
1687        return modifyRouteToAddress(lp, addr, REMOVE, TO_DEFAULT_TABLE, UNEXEMPT);
1688    }
1689
1690    private boolean modifyRouteToAddress(LinkProperties lp, InetAddress addr, boolean doAdd,
1691            boolean toDefaultTable, boolean exempt) {
1692        RouteInfo bestRoute = RouteInfo.selectBestRoute(lp.getAllRoutes(), addr);
1693        if (bestRoute == null) {
1694            bestRoute = RouteInfo.makeHostRoute(addr, lp.getInterfaceName());
1695        } else {
1696            String iface = bestRoute.getInterface();
1697            if (bestRoute.getGateway().equals(addr)) {
1698                // if there is no better route, add the implied hostroute for our gateway
1699                bestRoute = RouteInfo.makeHostRoute(addr, iface);
1700            } else {
1701                // if we will connect to this through another route, add a direct route
1702                // to it's gateway
1703                bestRoute = RouteInfo.makeHostRoute(addr, bestRoute.getGateway(), iface);
1704            }
1705        }
1706        return modifyRoute(lp, bestRoute, 0, doAdd, toDefaultTable, exempt);
1707    }
1708
1709    private boolean modifyRoute(LinkProperties lp, RouteInfo r, int cycleCount, boolean doAdd,
1710            boolean toDefaultTable, boolean exempt) {
1711        if ((lp == null) || (r == null)) {
1712            if (DBG) log("modifyRoute got unexpected null: " + lp + ", " + r);
1713            return false;
1714        }
1715
1716        if (cycleCount > MAX_HOSTROUTE_CYCLE_COUNT) {
1717            loge("Error modifying route - too much recursion");
1718            return false;
1719        }
1720
1721        String ifaceName = r.getInterface();
1722        if(ifaceName == null) {
1723            loge("Error modifying route - no interface name");
1724            return false;
1725        }
1726        if (r.hasGateway()) {
1727            RouteInfo bestRoute = RouteInfo.selectBestRoute(lp.getAllRoutes(), r.getGateway());
1728            if (bestRoute != null) {
1729                if (bestRoute.getGateway().equals(r.getGateway())) {
1730                    // if there is no better route, add the implied hostroute for our gateway
1731                    bestRoute = RouteInfo.makeHostRoute(r.getGateway(), ifaceName);
1732                } else {
1733                    // if we will connect to our gateway through another route, add a direct
1734                    // route to it's gateway
1735                    bestRoute = RouteInfo.makeHostRoute(r.getGateway(),
1736                                                        bestRoute.getGateway(),
1737                                                        ifaceName);
1738                }
1739                modifyRoute(lp, bestRoute, cycleCount+1, doAdd, toDefaultTable, exempt);
1740            }
1741        }
1742        if (doAdd) {
1743            if (VDBG) log("Adding " + r + " for interface " + ifaceName);
1744            try {
1745                if (toDefaultTable) {
1746                    synchronized (mRoutesLock) {
1747                        // only track default table - only one apps can effect
1748                        mAddedRoutes.add(r);
1749                        mNetd.addRoute(ifaceName, r);
1750                        if (exempt) {
1751                            LinkAddress dest = r.getDestination();
1752                            if (!mExemptAddresses.contains(dest)) {
1753                                mNetd.setHostExemption(dest);
1754                                mExemptAddresses.add(dest);
1755                            }
1756                        }
1757                    }
1758                } else {
1759                    mNetd.addSecondaryRoute(ifaceName, r);
1760                }
1761            } catch (Exception e) {
1762                // never crash - catch them all
1763                if (DBG) loge("Exception trying to add a route: " + e);
1764                return false;
1765            }
1766        } else {
1767            // if we remove this one and there are no more like it, then refcount==0 and
1768            // we can remove it from the table
1769            if (toDefaultTable) {
1770                synchronized (mRoutesLock) {
1771                    mAddedRoutes.remove(r);
1772                    if (mAddedRoutes.contains(r) == false) {
1773                        if (VDBG) log("Removing " + r + " for interface " + ifaceName);
1774                        try {
1775                            mNetd.removeRoute(ifaceName, r);
1776                            LinkAddress dest = r.getDestination();
1777                            if (mExemptAddresses.contains(dest)) {
1778                                mNetd.clearHostExemption(dest);
1779                                mExemptAddresses.remove(dest);
1780                            }
1781                        } catch (Exception e) {
1782                            // never crash - catch them all
1783                            if (VDBG) loge("Exception trying to remove a route: " + e);
1784                            return false;
1785                        }
1786                    } else {
1787                        if (VDBG) log("not removing " + r + " as it's still in use");
1788                    }
1789                }
1790            } else {
1791                if (VDBG) log("Removing " + r + " for interface " + ifaceName);
1792                try {
1793                    mNetd.removeSecondaryRoute(ifaceName, r);
1794                } catch (Exception e) {
1795                    // never crash - catch them all
1796                    if (VDBG) loge("Exception trying to remove a route: " + e);
1797                    return false;
1798                }
1799            }
1800        }
1801        return true;
1802    }
1803
1804    /**
1805     * @see ConnectivityManager#getMobileDataEnabled()
1806     */
1807    public boolean getMobileDataEnabled() {
1808        // TODO: This detail should probably be in DataConnectionTracker's
1809        //       which is where we store the value and maybe make this
1810        //       asynchronous.
1811        enforceAccessPermission();
1812        boolean retVal = Settings.Global.getInt(mContext.getContentResolver(),
1813                Settings.Global.MOBILE_DATA, 1) == 1;
1814        if (VDBG) log("getMobileDataEnabled returning " + retVal);
1815        return retVal;
1816    }
1817
1818    public void setDataDependency(int networkType, boolean met) {
1819        enforceConnectivityInternalPermission();
1820
1821        mHandler.sendMessage(mHandler.obtainMessage(EVENT_SET_DEPENDENCY_MET,
1822                (met ? ENABLED : DISABLED), networkType));
1823    }
1824
1825    private void handleSetDependencyMet(int networkType, boolean met) {
1826        if (mNetTrackers[networkType] != null) {
1827            if (DBG) {
1828                log("handleSetDependencyMet(" + networkType + ", " + met + ")");
1829            }
1830            mNetTrackers[networkType].setDependencyMet(met);
1831        }
1832    }
1833
1834    private INetworkPolicyListener mPolicyListener = new INetworkPolicyListener.Stub() {
1835        @Override
1836        public void onUidRulesChanged(int uid, int uidRules) {
1837            // caller is NPMS, since we only register with them
1838            if (LOGD_RULES) {
1839                log("onUidRulesChanged(uid=" + uid + ", uidRules=" + uidRules + ")");
1840            }
1841
1842            synchronized (mRulesLock) {
1843                // skip update when we've already applied rules
1844                final int oldRules = mUidRules.get(uid, RULE_ALLOW_ALL);
1845                if (oldRules == uidRules) return;
1846
1847                mUidRules.put(uid, uidRules);
1848            }
1849
1850            // TODO: notify UID when it has requested targeted updates
1851        }
1852
1853        @Override
1854        public void onMeteredIfacesChanged(String[] meteredIfaces) {
1855            // caller is NPMS, since we only register with them
1856            if (LOGD_RULES) {
1857                log("onMeteredIfacesChanged(ifaces=" + Arrays.toString(meteredIfaces) + ")");
1858            }
1859
1860            synchronized (mRulesLock) {
1861                mMeteredIfaces.clear();
1862                for (String iface : meteredIfaces) {
1863                    mMeteredIfaces.add(iface);
1864                }
1865            }
1866        }
1867
1868        @Override
1869        public void onRestrictBackgroundChanged(boolean restrictBackground) {
1870            // caller is NPMS, since we only register with them
1871            if (LOGD_RULES) {
1872                log("onRestrictBackgroundChanged(restrictBackground=" + restrictBackground + ")");
1873            }
1874
1875            // kick off connectivity change broadcast for active network, since
1876            // global background policy change is radical.
1877            final int networkType = mActiveDefaultNetwork;
1878            if (isNetworkTypeValid(networkType)) {
1879                final NetworkStateTracker tracker = mNetTrackers[networkType];
1880                if (tracker != null) {
1881                    final NetworkInfo info = tracker.getNetworkInfo();
1882                    if (info != null && info.isConnected()) {
1883                        sendConnectedBroadcast(info);
1884                    }
1885                }
1886            }
1887        }
1888    };
1889
1890    /**
1891     * @see ConnectivityManager#setMobileDataEnabled(boolean)
1892     */
1893    public void setMobileDataEnabled(boolean enabled) {
1894        enforceChangePermission();
1895        if (DBG) log("setMobileDataEnabled(" + enabled + ")");
1896
1897        mHandler.sendMessage(mHandler.obtainMessage(EVENT_SET_MOBILE_DATA,
1898                (enabled ? ENABLED : DISABLED), 0));
1899    }
1900
1901    private void handleSetMobileData(boolean enabled) {
1902        if (mNetTrackers[ConnectivityManager.TYPE_MOBILE] != null) {
1903            if (VDBG) {
1904                log(mNetTrackers[ConnectivityManager.TYPE_MOBILE].toString() + enabled);
1905            }
1906            mNetTrackers[ConnectivityManager.TYPE_MOBILE].setUserDataEnable(enabled);
1907        }
1908        if (mNetTrackers[ConnectivityManager.TYPE_WIMAX] != null) {
1909            if (VDBG) {
1910                log(mNetTrackers[ConnectivityManager.TYPE_WIMAX].toString() + enabled);
1911            }
1912            mNetTrackers[ConnectivityManager.TYPE_WIMAX].setUserDataEnable(enabled);
1913        }
1914    }
1915
1916    @Override
1917    public void setPolicyDataEnable(int networkType, boolean enabled) {
1918        // only someone like NPMS should only be calling us
1919        mContext.enforceCallingOrSelfPermission(MANAGE_NETWORK_POLICY, TAG);
1920
1921        mHandler.sendMessage(mHandler.obtainMessage(
1922                EVENT_SET_POLICY_DATA_ENABLE, networkType, (enabled ? ENABLED : DISABLED)));
1923    }
1924
1925    private void handleSetPolicyDataEnable(int networkType, boolean enabled) {
1926        if (isNetworkTypeValid(networkType)) {
1927            final NetworkStateTracker tracker = mNetTrackers[networkType];
1928            if (tracker != null) {
1929                tracker.setPolicyDataEnable(enabled);
1930            }
1931        }
1932    }
1933
1934    private void enforceAccessPermission() {
1935        mContext.enforceCallingOrSelfPermission(
1936                android.Manifest.permission.ACCESS_NETWORK_STATE,
1937                "ConnectivityService");
1938    }
1939
1940    private void enforceChangePermission() {
1941        mContext.enforceCallingOrSelfPermission(
1942                android.Manifest.permission.CHANGE_NETWORK_STATE,
1943                "ConnectivityService");
1944    }
1945
1946    // TODO Make this a special check when it goes public
1947    private void enforceTetherChangePermission() {
1948        mContext.enforceCallingOrSelfPermission(
1949                android.Manifest.permission.CHANGE_NETWORK_STATE,
1950                "ConnectivityService");
1951    }
1952
1953    private void enforceTetherAccessPermission() {
1954        mContext.enforceCallingOrSelfPermission(
1955                android.Manifest.permission.ACCESS_NETWORK_STATE,
1956                "ConnectivityService");
1957    }
1958
1959    private void enforceConnectivityInternalPermission() {
1960        mContext.enforceCallingOrSelfPermission(
1961                android.Manifest.permission.CONNECTIVITY_INTERNAL,
1962                "ConnectivityService");
1963    }
1964
1965    private void enforceMarkNetworkSocketPermission() {
1966        //Media server special case
1967        if (Binder.getCallingUid() == Process.MEDIA_UID) {
1968            return;
1969        }
1970        mContext.enforceCallingOrSelfPermission(
1971                android.Manifest.permission.MARK_NETWORK_SOCKET,
1972                "ConnectivityService");
1973    }
1974
1975    /**
1976     * Handle a {@code DISCONNECTED} event. If this pertains to the non-active
1977     * network, we ignore it. If it is for the active network, we send out a
1978     * broadcast. But first, we check whether it might be possible to connect
1979     * to a different network.
1980     * @param info the {@code NetworkInfo} for the network
1981     */
1982    private void handleDisconnect(NetworkInfo info) {
1983
1984        int prevNetType = info.getType();
1985
1986        mNetTrackers[prevNetType].setTeardownRequested(false);
1987
1988        // Remove idletimer previously setup in {@code handleConnect}
1989        removeDataActivityTracking(prevNetType);
1990
1991        /*
1992         * If the disconnected network is not the active one, then don't report
1993         * this as a loss of connectivity. What probably happened is that we're
1994         * getting the disconnect for a network that we explicitly disabled
1995         * in accordance with network preference policies.
1996         */
1997        if (!mNetConfigs[prevNetType].isDefault()) {
1998            List<Integer> pids = mNetRequestersPids[prevNetType];
1999            for (Integer pid : pids) {
2000                // will remove them because the net's no longer connected
2001                // need to do this now as only now do we know the pids and
2002                // can properly null things that are no longer referenced.
2003                reassessPidDns(pid.intValue(), false);
2004            }
2005        }
2006
2007        Intent intent = new Intent(ConnectivityManager.CONNECTIVITY_ACTION);
2008        intent.putExtra(ConnectivityManager.EXTRA_NETWORK_INFO, new NetworkInfo(info));
2009        intent.putExtra(ConnectivityManager.EXTRA_NETWORK_TYPE, info.getType());
2010        if (info.isFailover()) {
2011            intent.putExtra(ConnectivityManager.EXTRA_IS_FAILOVER, true);
2012            info.setFailover(false);
2013        }
2014        if (info.getReason() != null) {
2015            intent.putExtra(ConnectivityManager.EXTRA_REASON, info.getReason());
2016        }
2017        if (info.getExtraInfo() != null) {
2018            intent.putExtra(ConnectivityManager.EXTRA_EXTRA_INFO,
2019                    info.getExtraInfo());
2020        }
2021
2022        if (mNetConfigs[prevNetType].isDefault()) {
2023            tryFailover(prevNetType);
2024            if (mActiveDefaultNetwork != -1) {
2025                NetworkInfo switchTo = mNetTrackers[mActiveDefaultNetwork].getNetworkInfo();
2026                intent.putExtra(ConnectivityManager.EXTRA_OTHER_NETWORK_INFO, switchTo);
2027            } else {
2028                mDefaultInetConditionPublished = 0; // we're not connected anymore
2029                intent.putExtra(ConnectivityManager.EXTRA_NO_CONNECTIVITY, true);
2030            }
2031        }
2032        intent.putExtra(ConnectivityManager.EXTRA_INET_CONDITION, mDefaultInetConditionPublished);
2033
2034        // Reset interface if no other connections are using the same interface
2035        boolean doReset = true;
2036        LinkProperties linkProperties = mNetTrackers[prevNetType].getLinkProperties();
2037        if (linkProperties != null) {
2038            String oldIface = linkProperties.getInterfaceName();
2039            if (TextUtils.isEmpty(oldIface) == false) {
2040                for (NetworkStateTracker networkStateTracker : mNetTrackers) {
2041                    if (networkStateTracker == null) continue;
2042                    NetworkInfo networkInfo = networkStateTracker.getNetworkInfo();
2043                    if (networkInfo.isConnected() && networkInfo.getType() != prevNetType) {
2044                        LinkProperties l = networkStateTracker.getLinkProperties();
2045                        if (l == null) continue;
2046                        if (oldIface.equals(l.getInterfaceName())) {
2047                            doReset = false;
2048                            break;
2049                        }
2050                    }
2051                }
2052            }
2053        }
2054
2055        // do this before we broadcast the change
2056        handleConnectivityChange(prevNetType, doReset);
2057
2058        final Intent immediateIntent = new Intent(intent);
2059        immediateIntent.setAction(CONNECTIVITY_ACTION_IMMEDIATE);
2060        sendStickyBroadcast(immediateIntent);
2061        sendStickyBroadcastDelayed(intent, getConnectivityChangeDelay());
2062        /*
2063         * If the failover network is already connected, then immediately send
2064         * out a followup broadcast indicating successful failover
2065         */
2066        if (mActiveDefaultNetwork != -1) {
2067            sendConnectedBroadcastDelayed(mNetTrackers[mActiveDefaultNetwork].getNetworkInfo(),
2068                    getConnectivityChangeDelay());
2069        }
2070    }
2071
2072    private void tryFailover(int prevNetType) {
2073        /*
2074         * If this is a default network, check if other defaults are available.
2075         * Try to reconnect on all available and let them hash it out when
2076         * more than one connects.
2077         */
2078        if (mNetConfigs[prevNetType].isDefault()) {
2079            if (mActiveDefaultNetwork == prevNetType) {
2080                if (DBG) {
2081                    log("tryFailover: set mActiveDefaultNetwork=-1, prevNetType=" + prevNetType);
2082                }
2083                mActiveDefaultNetwork = -1;
2084            }
2085
2086            // don't signal a reconnect for anything lower or equal priority than our
2087            // current connected default
2088            // TODO - don't filter by priority now - nice optimization but risky
2089//            int currentPriority = -1;
2090//            if (mActiveDefaultNetwork != -1) {
2091//                currentPriority = mNetConfigs[mActiveDefaultNetwork].mPriority;
2092//            }
2093
2094            for (int checkType=0; checkType <= ConnectivityManager.MAX_NETWORK_TYPE; checkType++) {
2095                if (checkType == prevNetType) continue;
2096                if (mNetConfigs[checkType] == null) continue;
2097                if (!mNetConfigs[checkType].isDefault()) continue;
2098                if (mNetTrackers[checkType] == null) continue;
2099
2100// Enabling the isAvailable() optimization caused mobile to not get
2101// selected if it was in the middle of error handling. Specifically
2102// a moble connection that took 30 seconds to complete the DEACTIVATE_DATA_CALL
2103// would not be available and we wouldn't get connected to anything.
2104// So removing the isAvailable() optimization below for now. TODO: This
2105// optimization should work and we need to investigate why it doesn't work.
2106// This could be related to how DEACTIVATE_DATA_CALL is reporting its
2107// complete before it is really complete.
2108
2109//                if (!mNetTrackers[checkType].isAvailable()) continue;
2110
2111//                if (currentPriority >= mNetConfigs[checkType].mPriority) continue;
2112
2113                NetworkStateTracker checkTracker = mNetTrackers[checkType];
2114                NetworkInfo checkInfo = checkTracker.getNetworkInfo();
2115                if (!checkInfo.isConnectedOrConnecting() || checkTracker.isTeardownRequested()) {
2116                    checkInfo.setFailover(true);
2117                    checkTracker.reconnect();
2118                }
2119                if (DBG) log("Attempting to switch to " + checkInfo.getTypeName());
2120            }
2121        }
2122    }
2123
2124    public void sendConnectedBroadcast(NetworkInfo info) {
2125        enforceConnectivityInternalPermission();
2126        sendGeneralBroadcast(info, CONNECTIVITY_ACTION_IMMEDIATE);
2127        sendGeneralBroadcast(info, CONNECTIVITY_ACTION);
2128    }
2129
2130    private void sendConnectedBroadcastDelayed(NetworkInfo info, int delayMs) {
2131        sendGeneralBroadcast(info, CONNECTIVITY_ACTION_IMMEDIATE);
2132        sendGeneralBroadcastDelayed(info, CONNECTIVITY_ACTION, delayMs);
2133    }
2134
2135    private void sendInetConditionBroadcast(NetworkInfo info) {
2136        sendGeneralBroadcast(info, ConnectivityManager.INET_CONDITION_ACTION);
2137    }
2138
2139    private Intent makeGeneralIntent(NetworkInfo info, String bcastType) {
2140        if (mLockdownTracker != null) {
2141            info = mLockdownTracker.augmentNetworkInfo(info);
2142        }
2143
2144        Intent intent = new Intent(bcastType);
2145        intent.putExtra(ConnectivityManager.EXTRA_NETWORK_INFO, new NetworkInfo(info));
2146        intent.putExtra(ConnectivityManager.EXTRA_NETWORK_TYPE, info.getType());
2147        if (info.isFailover()) {
2148            intent.putExtra(ConnectivityManager.EXTRA_IS_FAILOVER, true);
2149            info.setFailover(false);
2150        }
2151        if (info.getReason() != null) {
2152            intent.putExtra(ConnectivityManager.EXTRA_REASON, info.getReason());
2153        }
2154        if (info.getExtraInfo() != null) {
2155            intent.putExtra(ConnectivityManager.EXTRA_EXTRA_INFO,
2156                    info.getExtraInfo());
2157        }
2158        intent.putExtra(ConnectivityManager.EXTRA_INET_CONDITION, mDefaultInetConditionPublished);
2159        return intent;
2160    }
2161
2162    private void sendGeneralBroadcast(NetworkInfo info, String bcastType) {
2163        sendStickyBroadcast(makeGeneralIntent(info, bcastType));
2164    }
2165
2166    private void sendGeneralBroadcastDelayed(NetworkInfo info, String bcastType, int delayMs) {
2167        sendStickyBroadcastDelayed(makeGeneralIntent(info, bcastType), delayMs);
2168    }
2169
2170    private void sendDataActivityBroadcast(int deviceType, boolean active) {
2171        Intent intent = new Intent(ConnectivityManager.ACTION_DATA_ACTIVITY_CHANGE);
2172        intent.putExtra(ConnectivityManager.EXTRA_DEVICE_TYPE, deviceType);
2173        intent.putExtra(ConnectivityManager.EXTRA_IS_ACTIVE, active);
2174        final long ident = Binder.clearCallingIdentity();
2175        try {
2176            mContext.sendOrderedBroadcastAsUser(intent, UserHandle.ALL,
2177                    RECEIVE_DATA_ACTIVITY_CHANGE, null, null, 0, null, null);
2178        } finally {
2179            Binder.restoreCallingIdentity(ident);
2180        }
2181    }
2182
2183    /**
2184     * Called when an attempt to fail over to another network has failed.
2185     * @param info the {@link NetworkInfo} for the failed network
2186     */
2187    private void handleConnectionFailure(NetworkInfo info) {
2188        mNetTrackers[info.getType()].setTeardownRequested(false);
2189
2190        String reason = info.getReason();
2191        String extraInfo = info.getExtraInfo();
2192
2193        String reasonText;
2194        if (reason == null) {
2195            reasonText = ".";
2196        } else {
2197            reasonText = " (" + reason + ").";
2198        }
2199        loge("Attempt to connect to " + info.getTypeName() + " failed" + reasonText);
2200
2201        Intent intent = new Intent(ConnectivityManager.CONNECTIVITY_ACTION);
2202        intent.putExtra(ConnectivityManager.EXTRA_NETWORK_INFO, new NetworkInfo(info));
2203        intent.putExtra(ConnectivityManager.EXTRA_NETWORK_TYPE, info.getType());
2204        if (getActiveNetworkInfo() == null) {
2205            intent.putExtra(ConnectivityManager.EXTRA_NO_CONNECTIVITY, true);
2206        }
2207        if (reason != null) {
2208            intent.putExtra(ConnectivityManager.EXTRA_REASON, reason);
2209        }
2210        if (extraInfo != null) {
2211            intent.putExtra(ConnectivityManager.EXTRA_EXTRA_INFO, extraInfo);
2212        }
2213        if (info.isFailover()) {
2214            intent.putExtra(ConnectivityManager.EXTRA_IS_FAILOVER, true);
2215            info.setFailover(false);
2216        }
2217
2218        if (mNetConfigs[info.getType()].isDefault()) {
2219            tryFailover(info.getType());
2220            if (mActiveDefaultNetwork != -1) {
2221                NetworkInfo switchTo = mNetTrackers[mActiveDefaultNetwork].getNetworkInfo();
2222                intent.putExtra(ConnectivityManager.EXTRA_OTHER_NETWORK_INFO, switchTo);
2223            } else {
2224                mDefaultInetConditionPublished = 0;
2225                intent.putExtra(ConnectivityManager.EXTRA_NO_CONNECTIVITY, true);
2226            }
2227        }
2228
2229        intent.putExtra(ConnectivityManager.EXTRA_INET_CONDITION, mDefaultInetConditionPublished);
2230
2231        final Intent immediateIntent = new Intent(intent);
2232        immediateIntent.setAction(CONNECTIVITY_ACTION_IMMEDIATE);
2233        sendStickyBroadcast(immediateIntent);
2234        sendStickyBroadcast(intent);
2235        /*
2236         * If the failover network is already connected, then immediately send
2237         * out a followup broadcast indicating successful failover
2238         */
2239        if (mActiveDefaultNetwork != -1) {
2240            sendConnectedBroadcast(mNetTrackers[mActiveDefaultNetwork].getNetworkInfo());
2241        }
2242    }
2243
2244    private void sendStickyBroadcast(Intent intent) {
2245        synchronized(this) {
2246            if (!mSystemReady) {
2247                mInitialBroadcast = new Intent(intent);
2248            }
2249            intent.addFlags(Intent.FLAG_RECEIVER_REGISTERED_ONLY_BEFORE_BOOT);
2250            if (VDBG) {
2251                log("sendStickyBroadcast: action=" + intent.getAction());
2252            }
2253
2254            final long ident = Binder.clearCallingIdentity();
2255            try {
2256                mContext.sendStickyBroadcastAsUser(intent, UserHandle.ALL);
2257            } finally {
2258                Binder.restoreCallingIdentity(ident);
2259            }
2260        }
2261    }
2262
2263    private void sendStickyBroadcastDelayed(Intent intent, int delayMs) {
2264        if (delayMs <= 0) {
2265            sendStickyBroadcast(intent);
2266        } else {
2267            if (VDBG) {
2268                log("sendStickyBroadcastDelayed: delayMs=" + delayMs + ", action="
2269                        + intent.getAction());
2270            }
2271            mHandler.sendMessageDelayed(mHandler.obtainMessage(
2272                    EVENT_SEND_STICKY_BROADCAST_INTENT, intent), delayMs);
2273        }
2274    }
2275
2276    void systemReady() {
2277        mCaptivePortalTracker = CaptivePortalTracker.makeCaptivePortalTracker(mContext, this);
2278        loadGlobalProxy();
2279
2280        synchronized(this) {
2281            mSystemReady = true;
2282            if (mInitialBroadcast != null) {
2283                mContext.sendStickyBroadcastAsUser(mInitialBroadcast, UserHandle.ALL);
2284                mInitialBroadcast = null;
2285            }
2286        }
2287        // load the global proxy at startup
2288        mHandler.sendMessage(mHandler.obtainMessage(EVENT_APPLY_GLOBAL_HTTP_PROXY));
2289
2290        // Try bringing up tracker, but if KeyStore isn't ready yet, wait
2291        // for user to unlock device.
2292        if (!updateLockdownVpn()) {
2293            final IntentFilter filter = new IntentFilter(Intent.ACTION_USER_PRESENT);
2294            mContext.registerReceiver(mUserPresentReceiver, filter);
2295        }
2296    }
2297
2298    private BroadcastReceiver mUserPresentReceiver = new BroadcastReceiver() {
2299        @Override
2300        public void onReceive(Context context, Intent intent) {
2301            // Try creating lockdown tracker, since user present usually means
2302            // unlocked keystore.
2303            if (updateLockdownVpn()) {
2304                mContext.unregisterReceiver(this);
2305            }
2306        }
2307    };
2308
2309    private boolean isNewNetTypePreferredOverCurrentNetType(int type) {
2310        if (((type != mNetworkPreference)
2311                      && (mNetConfigs[mActiveDefaultNetwork].priority > mNetConfigs[type].priority))
2312                   || (mNetworkPreference == mActiveDefaultNetwork)) {
2313            return false;
2314        }
2315        return true;
2316    }
2317
2318    private void handleConnect(NetworkInfo info) {
2319        final int newNetType = info.getType();
2320
2321        setupDataActivityTracking(newNetType);
2322
2323        // snapshot isFailover, because sendConnectedBroadcast() resets it
2324        boolean isFailover = info.isFailover();
2325        final NetworkStateTracker thisNet = mNetTrackers[newNetType];
2326        final String thisIface = thisNet.getLinkProperties().getInterfaceName();
2327
2328        if (VDBG) {
2329            log("handleConnect: E newNetType=" + newNetType + " thisIface=" + thisIface
2330                    + " isFailover" + isFailover);
2331        }
2332
2333        // if this is a default net and other default is running
2334        // kill the one not preferred
2335        if (mNetConfigs[newNetType].isDefault()) {
2336            if (mActiveDefaultNetwork != -1 && mActiveDefaultNetwork != newNetType) {
2337                if (isNewNetTypePreferredOverCurrentNetType(newNetType)) {
2338                    // tear down the other
2339                    NetworkStateTracker otherNet =
2340                            mNetTrackers[mActiveDefaultNetwork];
2341                    if (DBG) {
2342                        log("Policy requires " + otherNet.getNetworkInfo().getTypeName() +
2343                            " teardown");
2344                    }
2345                    if (!teardown(otherNet)) {
2346                        loge("Network declined teardown request");
2347                        teardown(thisNet);
2348                        return;
2349                    }
2350                } else {
2351                       // don't accept this one
2352                        if (VDBG) {
2353                            log("Not broadcasting CONNECT_ACTION " +
2354                                "to torn down network " + info.getTypeName());
2355                        }
2356                        teardown(thisNet);
2357                        return;
2358                }
2359            }
2360            synchronized (ConnectivityService.this) {
2361                // have a new default network, release the transition wakelock in a second
2362                // if it's held.  The second pause is to allow apps to reconnect over the
2363                // new network
2364                if (mNetTransitionWakeLock.isHeld()) {
2365                    mHandler.sendMessageDelayed(mHandler.obtainMessage(
2366                            EVENT_CLEAR_NET_TRANSITION_WAKELOCK,
2367                            mNetTransitionWakeLockSerialNumber, 0),
2368                            1000);
2369                }
2370            }
2371            mActiveDefaultNetwork = newNetType;
2372            // this will cause us to come up initially as unconnected and switching
2373            // to connected after our normal pause unless somebody reports us as reall
2374            // disconnected
2375            mDefaultInetConditionPublished = 0;
2376            mDefaultConnectionSequence++;
2377            mInetConditionChangeInFlight = false;
2378            // Don't do this - if we never sign in stay, grey
2379            //reportNetworkCondition(mActiveDefaultNetwork, 100);
2380        }
2381        thisNet.setTeardownRequested(false);
2382        updateNetworkSettings(thisNet);
2383        updateMtuSizeSettings(thisNet);
2384        handleConnectivityChange(newNetType, false);
2385        sendConnectedBroadcastDelayed(info, getConnectivityChangeDelay());
2386
2387        // notify battery stats service about this network
2388        if (thisIface != null) {
2389            try {
2390                BatteryStatsService.getService().noteNetworkInterfaceType(thisIface, newNetType);
2391            } catch (RemoteException e) {
2392                // ignored; service lives in system_server
2393            }
2394        }
2395    }
2396
2397    /** @hide */
2398    @Override
2399    public void captivePortalCheckCompleted(NetworkInfo info, boolean isCaptivePortal) {
2400        enforceConnectivityInternalPermission();
2401        if (DBG) log("captivePortalCheckCompleted: ni=" + info + " captive=" + isCaptivePortal);
2402        mNetTrackers[info.getType()].captivePortalCheckCompleted(isCaptivePortal);
2403    }
2404
2405    /**
2406     * Setup data activity tracking for the given network interface.
2407     *
2408     * Every {@code setupDataActivityTracking} should be paired with a
2409     * {@link removeDataActivityTracking} for cleanup.
2410     */
2411    private void setupDataActivityTracking(int type) {
2412        final NetworkStateTracker thisNet = mNetTrackers[type];
2413        final String iface = thisNet.getLinkProperties().getInterfaceName();
2414
2415        final int timeout;
2416
2417        if (ConnectivityManager.isNetworkTypeMobile(type)) {
2418            timeout = Settings.Global.getInt(mContext.getContentResolver(),
2419                                             Settings.Global.DATA_ACTIVITY_TIMEOUT_MOBILE,
2420                                             5);
2421            // Canonicalize mobile network type
2422            type = ConnectivityManager.TYPE_MOBILE;
2423        } else if (ConnectivityManager.TYPE_WIFI == type) {
2424            timeout = Settings.Global.getInt(mContext.getContentResolver(),
2425                                             Settings.Global.DATA_ACTIVITY_TIMEOUT_WIFI,
2426                                             0);
2427        } else {
2428            // do not track any other networks
2429            timeout = 0;
2430        }
2431
2432        if (timeout > 0 && iface != null) {
2433            try {
2434                mNetd.addIdleTimer(iface, timeout, Integer.toString(type));
2435            } catch (RemoteException e) {
2436            }
2437        }
2438    }
2439
2440    /**
2441     * Remove data activity tracking when network disconnects.
2442     */
2443    private void removeDataActivityTracking(int type) {
2444        final NetworkStateTracker net = mNetTrackers[type];
2445        final String iface = net.getLinkProperties().getInterfaceName();
2446
2447        if (iface != null && (ConnectivityManager.isNetworkTypeMobile(type) ||
2448                              ConnectivityManager.TYPE_WIFI == type)) {
2449            try {
2450                // the call fails silently if no idletimer setup for this interface
2451                mNetd.removeIdleTimer(iface);
2452            } catch (RemoteException e) {
2453            }
2454        }
2455    }
2456
2457    /**
2458     * After a change in the connectivity state of a network. We're mainly
2459     * concerned with making sure that the list of DNS servers is set up
2460     * according to which networks are connected, and ensuring that the
2461     * right routing table entries exist.
2462     */
2463    private void handleConnectivityChange(int netType, boolean doReset) {
2464        int resetMask = doReset ? NetworkUtils.RESET_ALL_ADDRESSES : 0;
2465        boolean exempt = ConnectivityManager.isNetworkTypeExempt(netType);
2466        if (VDBG) {
2467            log("handleConnectivityChange: netType=" + netType + " doReset=" + doReset
2468                    + " resetMask=" + resetMask);
2469        }
2470
2471        /*
2472         * If a non-default network is enabled, add the host routes that
2473         * will allow it's DNS servers to be accessed.
2474         */
2475        handleDnsConfigurationChange(netType);
2476
2477        LinkProperties curLp = mCurrentLinkProperties[netType];
2478        LinkProperties newLp = null;
2479
2480        if (mNetTrackers[netType].getNetworkInfo().isConnected()) {
2481            newLp = mNetTrackers[netType].getLinkProperties();
2482            if (VDBG) {
2483                log("handleConnectivityChange: changed linkProperty[" + netType + "]:" +
2484                        " doReset=" + doReset + " resetMask=" + resetMask +
2485                        "\n   curLp=" + curLp +
2486                        "\n   newLp=" + newLp);
2487            }
2488
2489            if (curLp != null) {
2490                if (curLp.isIdenticalInterfaceName(newLp)) {
2491                    CompareResult<LinkAddress> car = curLp.compareAddresses(newLp);
2492                    if ((car.removed.size() != 0) || (car.added.size() != 0)) {
2493                        for (LinkAddress linkAddr : car.removed) {
2494                            if (linkAddr.getAddress() instanceof Inet4Address) {
2495                                resetMask |= NetworkUtils.RESET_IPV4_ADDRESSES;
2496                            }
2497                            if (linkAddr.getAddress() instanceof Inet6Address) {
2498                                resetMask |= NetworkUtils.RESET_IPV6_ADDRESSES;
2499                            }
2500                        }
2501                        if (DBG) {
2502                            log("handleConnectivityChange: addresses changed" +
2503                                    " linkProperty[" + netType + "]:" + " resetMask=" + resetMask +
2504                                    "\n   car=" + car);
2505                        }
2506                    } else {
2507                        if (VDBG) {
2508                            log("handleConnectivityChange: addresses are the same reset per" +
2509                                   " doReset linkProperty[" + netType + "]:" +
2510                                   " resetMask=" + resetMask);
2511                        }
2512                    }
2513                } else {
2514                    resetMask = NetworkUtils.RESET_ALL_ADDRESSES;
2515                    if (DBG) {
2516                        log("handleConnectivityChange: interface not not equivalent reset both" +
2517                                " linkProperty[" + netType + "]:" +
2518                                " resetMask=" + resetMask);
2519                    }
2520                }
2521            }
2522            if (mNetConfigs[netType].isDefault()) {
2523                handleApplyDefaultProxy(newLp.getHttpProxy());
2524            }
2525        } else {
2526            if (VDBG) {
2527                log("handleConnectivityChange: changed linkProperty[" + netType + "]:" +
2528                        " doReset=" + doReset + " resetMask=" + resetMask +
2529                        "\n  curLp=" + curLp +
2530                        "\n  newLp= null");
2531            }
2532        }
2533        mCurrentLinkProperties[netType] = newLp;
2534        boolean resetDns = updateRoutes(newLp, curLp, mNetConfigs[netType].isDefault(), exempt);
2535
2536        if (resetMask != 0 || resetDns) {
2537            if (VDBG) log("handleConnectivityChange: resetting");
2538            if (curLp != null) {
2539                if (VDBG) log("handleConnectivityChange: resetting curLp=" + curLp);
2540                for (String iface : curLp.getAllInterfaceNames()) {
2541                    if (TextUtils.isEmpty(iface) == false) {
2542                        if (resetMask != 0) {
2543                            if (DBG) log("resetConnections(" + iface + ", " + resetMask + ")");
2544                            NetworkUtils.resetConnections(iface, resetMask);
2545
2546                            // Tell VPN the interface is down. It is a temporary
2547                            // but effective fix to make VPN aware of the change.
2548                            if ((resetMask & NetworkUtils.RESET_IPV4_ADDRESSES) != 0) {
2549                                synchronized(mVpns) {
2550                                    for (int i = 0; i < mVpns.size(); i++) {
2551                                        mVpns.valueAt(i).interfaceStatusChanged(iface, false);
2552                                    }
2553                                }
2554                            }
2555                        }
2556                        if (resetDns) {
2557                            flushVmDnsCache();
2558                            if (VDBG) log("resetting DNS cache for " + iface);
2559                            try {
2560                                mNetd.flushInterfaceDnsCache(iface);
2561                            } catch (Exception e) {
2562                                // never crash - catch them all
2563                                if (DBG) loge("Exception resetting dns cache: " + e);
2564                            }
2565                        }
2566                    } else {
2567                        loge("Can't reset connection for type "+netType);
2568                    }
2569                }
2570            }
2571        }
2572
2573        // Update 464xlat state.
2574        NetworkStateTracker tracker = mNetTrackers[netType];
2575        if (mClat.requiresClat(netType, tracker)) {
2576
2577            // If the connection was previously using clat, but is not using it now, stop the clat
2578            // daemon. Normally, this happens automatically when the connection disconnects, but if
2579            // the disconnect is not reported, or if the connection's LinkProperties changed for
2580            // some other reason (e.g., handoff changes the IP addresses on the link), it would
2581            // still be running. If it's not running, then stopping it is a no-op.
2582            if (Nat464Xlat.isRunningClat(curLp) && !Nat464Xlat.isRunningClat(newLp)) {
2583                mClat.stopClat();
2584            }
2585            // If the link requires clat to be running, then start the daemon now.
2586            if (mNetTrackers[netType].getNetworkInfo().isConnected()) {
2587                mClat.startClat(tracker);
2588            } else {
2589                mClat.stopClat();
2590            }
2591        }
2592
2593        // TODO: Temporary notifying upstread change to Tethering.
2594        //       @see bug/4455071
2595        /** Notify TetheringService if interface name has been changed. */
2596        if (TextUtils.equals(mNetTrackers[netType].getNetworkInfo().getReason(),
2597                             PhoneConstants.REASON_LINK_PROPERTIES_CHANGED)) {
2598            if (isTetheringSupported()) {
2599                mTethering.handleTetherIfaceChange();
2600            }
2601        }
2602    }
2603
2604    /**
2605     * Add and remove routes using the old properties (null if not previously connected),
2606     * new properties (null if becoming disconnected).  May even be double null, which
2607     * is a noop.
2608     * Uses isLinkDefault to determine if default routes should be set or conversely if
2609     * host routes should be set to the dns servers
2610     * returns a boolean indicating the routes changed
2611     */
2612    private boolean updateRoutes(LinkProperties newLp, LinkProperties curLp,
2613            boolean isLinkDefault, boolean exempt) {
2614        Collection<RouteInfo> routesToAdd = null;
2615        CompareResult<InetAddress> dnsDiff = new CompareResult<InetAddress>();
2616        CompareResult<RouteInfo> routeDiff = new CompareResult<RouteInfo>();
2617        if (curLp != null) {
2618            // check for the delta between the current set and the new
2619            routeDiff = curLp.compareAllRoutes(newLp);
2620            dnsDiff = curLp.compareDnses(newLp);
2621        } else if (newLp != null) {
2622            routeDiff.added = newLp.getAllRoutes();
2623            dnsDiff.added = newLp.getDnses();
2624        }
2625
2626        boolean routesChanged = (routeDiff.removed.size() != 0 || routeDiff.added.size() != 0);
2627
2628        for (RouteInfo r : routeDiff.removed) {
2629            if (isLinkDefault || ! r.isDefaultRoute()) {
2630                if (VDBG) log("updateRoutes: default remove route r=" + r);
2631                removeRoute(curLp, r, TO_DEFAULT_TABLE);
2632            }
2633            if (isLinkDefault == false) {
2634                // remove from a secondary route table
2635                removeRoute(curLp, r, TO_SECONDARY_TABLE);
2636            }
2637        }
2638
2639        if (!isLinkDefault) {
2640            // handle DNS routes
2641            if (routesChanged) {
2642                // routes changed - remove all old dns entries and add new
2643                if (curLp != null) {
2644                    for (InetAddress oldDns : curLp.getDnses()) {
2645                        removeRouteToAddress(curLp, oldDns);
2646                    }
2647                }
2648                if (newLp != null) {
2649                    for (InetAddress newDns : newLp.getDnses()) {
2650                        addRouteToAddress(newLp, newDns, exempt);
2651                    }
2652                }
2653            } else {
2654                // no change in routes, check for change in dns themselves
2655                for (InetAddress oldDns : dnsDiff.removed) {
2656                    removeRouteToAddress(curLp, oldDns);
2657                }
2658                for (InetAddress newDns : dnsDiff.added) {
2659                    addRouteToAddress(newLp, newDns, exempt);
2660                }
2661            }
2662        }
2663
2664        for (RouteInfo r :  routeDiff.added) {
2665            if (isLinkDefault || ! r.isDefaultRoute()) {
2666                addRoute(newLp, r, TO_DEFAULT_TABLE, exempt);
2667            } else {
2668                // add to a secondary route table
2669                addRoute(newLp, r, TO_SECONDARY_TABLE, UNEXEMPT);
2670
2671                // many radios add a default route even when we don't want one.
2672                // remove the default route unless somebody else has asked for it
2673                String ifaceName = newLp.getInterfaceName();
2674                synchronized (mRoutesLock) {
2675                    if (!TextUtils.isEmpty(ifaceName) && !mAddedRoutes.contains(r)) {
2676                        if (VDBG) log("Removing " + r + " for interface " + ifaceName);
2677                        try {
2678                            mNetd.removeRoute(ifaceName, r);
2679                        } catch (Exception e) {
2680                            // never crash - catch them all
2681                            if (DBG) loge("Exception trying to remove a route: " + e);
2682                        }
2683                    }
2684                }
2685            }
2686        }
2687
2688        return routesChanged;
2689    }
2690
2691   /**
2692     * Reads the network specific MTU size from reources.
2693     * and set it on it's iface.
2694     */
2695   private void updateMtuSizeSettings(NetworkStateTracker nt) {
2696       final String iface = nt.getLinkProperties().getInterfaceName();
2697       final int mtu = nt.getLinkProperties().getMtu();
2698
2699       if (mtu < 68 || mtu > 10000) {
2700           loge("Unexpected mtu value: " + nt);
2701           return;
2702       }
2703
2704       try {
2705           if (VDBG) log("Setting MTU size: " + iface + ", " + mtu);
2706           mNetd.setMtu(iface, mtu);
2707       } catch (Exception e) {
2708           Slog.e(TAG, "exception in setMtu()" + e);
2709       }
2710   }
2711
2712    /**
2713     * Reads the network specific TCP buffer sizes from SystemProperties
2714     * net.tcp.buffersize.[default|wifi|umts|edge|gprs] and set them for system
2715     * wide use
2716     */
2717    private void updateNetworkSettings(NetworkStateTracker nt) {
2718        String key = nt.getTcpBufferSizesPropName();
2719        String bufferSizes = key == null ? null : SystemProperties.get(key);
2720
2721        if (TextUtils.isEmpty(bufferSizes)) {
2722            if (VDBG) log(key + " not found in system properties. Using defaults");
2723
2724            // Setting to default values so we won't be stuck to previous values
2725            key = "net.tcp.buffersize.default";
2726            bufferSizes = SystemProperties.get(key);
2727        }
2728
2729        // Set values in kernel
2730        if (bufferSizes.length() != 0) {
2731            if (VDBG) {
2732                log("Setting TCP values: [" + bufferSizes
2733                        + "] which comes from [" + key + "]");
2734            }
2735            setBufferSize(bufferSizes);
2736        }
2737    }
2738
2739    /**
2740     * Writes TCP buffer sizes to /sys/kernel/ipv4/tcp_[r/w]mem_[min/def/max]
2741     * which maps to /proc/sys/net/ipv4/tcp_rmem and tcpwmem
2742     *
2743     * @param bufferSizes in the format of "readMin, readInitial, readMax,
2744     *        writeMin, writeInitial, writeMax"
2745     */
2746    private void setBufferSize(String bufferSizes) {
2747        try {
2748            String[] values = bufferSizes.split(",");
2749
2750            if (values.length == 6) {
2751              final String prefix = "/sys/kernel/ipv4/tcp_";
2752                FileUtils.stringToFile(prefix + "rmem_min", values[0]);
2753                FileUtils.stringToFile(prefix + "rmem_def", values[1]);
2754                FileUtils.stringToFile(prefix + "rmem_max", values[2]);
2755                FileUtils.stringToFile(prefix + "wmem_min", values[3]);
2756                FileUtils.stringToFile(prefix + "wmem_def", values[4]);
2757                FileUtils.stringToFile(prefix + "wmem_max", values[5]);
2758            } else {
2759                loge("Invalid buffersize string: " + bufferSizes);
2760            }
2761        } catch (IOException e) {
2762            loge("Can't set tcp buffer sizes:" + e);
2763        }
2764    }
2765
2766    /**
2767     * Adjust the per-process dns entries (net.dns<x>.<pid>) based
2768     * on the highest priority active net which this process requested.
2769     * If there aren't any, clear it out
2770     */
2771    private void reassessPidDns(int pid, boolean doBump)
2772    {
2773        if (VDBG) log("reassessPidDns for pid " + pid);
2774        Integer myPid = new Integer(pid);
2775        for(int i : mPriorityList) {
2776            if (mNetConfigs[i].isDefault()) {
2777                continue;
2778            }
2779            NetworkStateTracker nt = mNetTrackers[i];
2780            if (nt.getNetworkInfo().isConnected() &&
2781                    !nt.isTeardownRequested()) {
2782                LinkProperties p = nt.getLinkProperties();
2783                if (p == null) continue;
2784                if (mNetRequestersPids[i].contains(myPid)) {
2785                    try {
2786                        mNetd.setDnsInterfaceForPid(p.getInterfaceName(), pid);
2787                    } catch (Exception e) {
2788                        Slog.e(TAG, "exception reasseses pid dns: " + e);
2789                    }
2790                    return;
2791                }
2792           }
2793        }
2794        // nothing found - delete
2795        try {
2796            mNetd.clearDnsInterfaceForPid(pid);
2797        } catch (Exception e) {
2798            Slog.e(TAG, "exception clear interface from pid: " + e);
2799        }
2800    }
2801
2802    private void flushVmDnsCache() {
2803        /*
2804         * Tell the VMs to toss their DNS caches
2805         */
2806        Intent intent = new Intent(Intent.ACTION_CLEAR_DNS_CACHE);
2807        intent.addFlags(Intent.FLAG_RECEIVER_REPLACE_PENDING);
2808        /*
2809         * Connectivity events can happen before boot has completed ...
2810         */
2811        intent.addFlags(Intent.FLAG_RECEIVER_REGISTERED_ONLY_BEFORE_BOOT);
2812        final long ident = Binder.clearCallingIdentity();
2813        try {
2814            mContext.sendBroadcastAsUser(intent, UserHandle.ALL);
2815        } finally {
2816            Binder.restoreCallingIdentity(ident);
2817        }
2818    }
2819
2820    // Caller must grab mDnsLock.
2821    private void updateDnsLocked(String network, String iface,
2822            Collection<InetAddress> dnses, String domains, boolean defaultDns) {
2823        int last = 0;
2824        if (dnses.size() == 0 && mDefaultDns != null) {
2825            dnses = new ArrayList();
2826            dnses.add(mDefaultDns);
2827            if (DBG) {
2828                loge("no dns provided for " + network + " - using " + mDefaultDns.getHostAddress());
2829            }
2830        }
2831
2832        try {
2833            mNetd.setDnsServersForInterface(iface, NetworkUtils.makeStrings(dnses), domains);
2834            if (defaultDns) {
2835                mNetd.setDefaultInterfaceForDns(iface);
2836            }
2837
2838            for (InetAddress dns : dnses) {
2839                ++last;
2840                String key = "net.dns" + last;
2841                String value = dns.getHostAddress();
2842                SystemProperties.set(key, value);
2843            }
2844            for (int i = last + 1; i <= mNumDnsEntries; ++i) {
2845                String key = "net.dns" + i;
2846                SystemProperties.set(key, "");
2847            }
2848            mNumDnsEntries = last;
2849        } catch (Exception e) {
2850            loge("exception setting default dns interface: " + e);
2851        }
2852    }
2853
2854    private void handleDnsConfigurationChange(int netType) {
2855        // add default net's dns entries
2856        NetworkStateTracker nt = mNetTrackers[netType];
2857        if (nt != null && nt.getNetworkInfo().isConnected() && !nt.isTeardownRequested()) {
2858            LinkProperties p = nt.getLinkProperties();
2859            if (p == null) return;
2860            Collection<InetAddress> dnses = p.getDnses();
2861            if (mNetConfigs[netType].isDefault()) {
2862                String network = nt.getNetworkInfo().getTypeName();
2863                synchronized (mDnsLock) {
2864                    updateDnsLocked(network, p.getInterfaceName(), dnses, p.getDomains(), true);
2865                }
2866            } else {
2867                try {
2868                    mNetd.setDnsServersForInterface(p.getInterfaceName(),
2869                            NetworkUtils.makeStrings(dnses), p.getDomains());
2870                } catch (Exception e) {
2871                    if (DBG) loge("exception setting dns servers: " + e);
2872                }
2873                // set per-pid dns for attached secondary nets
2874                List<Integer> pids = mNetRequestersPids[netType];
2875                for (Integer pid : pids) {
2876                    try {
2877                        mNetd.setDnsInterfaceForPid(p.getInterfaceName(), pid);
2878                    } catch (Exception e) {
2879                        Slog.e(TAG, "exception setting interface for pid: " + e);
2880                    }
2881                }
2882            }
2883            flushVmDnsCache();
2884        }
2885    }
2886
2887    private int getRestoreDefaultNetworkDelay(int networkType) {
2888        String restoreDefaultNetworkDelayStr = SystemProperties.get(
2889                NETWORK_RESTORE_DELAY_PROP_NAME);
2890        if(restoreDefaultNetworkDelayStr != null &&
2891                restoreDefaultNetworkDelayStr.length() != 0) {
2892            try {
2893                return Integer.valueOf(restoreDefaultNetworkDelayStr);
2894            } catch (NumberFormatException e) {
2895            }
2896        }
2897        // if the system property isn't set, use the value for the apn type
2898        int ret = RESTORE_DEFAULT_NETWORK_DELAY;
2899
2900        if ((networkType <= ConnectivityManager.MAX_NETWORK_TYPE) &&
2901                (mNetConfigs[networkType] != null)) {
2902            ret = mNetConfigs[networkType].restoreTime;
2903        }
2904        return ret;
2905    }
2906
2907    @Override
2908    protected void dump(FileDescriptor fd, PrintWriter writer, String[] args) {
2909        final IndentingPrintWriter pw = new IndentingPrintWriter(writer, "  ");
2910        if (mContext.checkCallingOrSelfPermission(
2911                android.Manifest.permission.DUMP)
2912                != PackageManager.PERMISSION_GRANTED) {
2913            pw.println("Permission Denial: can't dump ConnectivityService " +
2914                    "from from pid=" + Binder.getCallingPid() + ", uid=" +
2915                    Binder.getCallingUid());
2916            return;
2917        }
2918
2919        // TODO: add locking to get atomic snapshot
2920        pw.println();
2921        for (int i = 0; i < mNetTrackers.length; i++) {
2922            final NetworkStateTracker nst = mNetTrackers[i];
2923            if (nst != null) {
2924                pw.println("NetworkStateTracker for " + getNetworkTypeName(i) + ":");
2925                pw.increaseIndent();
2926                if (nst.getNetworkInfo().isConnected()) {
2927                    pw.println("Active network: " + nst.getNetworkInfo().
2928                            getTypeName());
2929                }
2930                pw.println(nst.getNetworkInfo());
2931                pw.println(nst.getLinkProperties());
2932                pw.println(nst);
2933                pw.println();
2934                pw.decreaseIndent();
2935            }
2936        }
2937
2938        pw.println("Network Requester Pids:");
2939        pw.increaseIndent();
2940        for (int net : mPriorityList) {
2941            String pidString = net + ": ";
2942            for (Integer pid : mNetRequestersPids[net]) {
2943                pidString = pidString + pid.toString() + ", ";
2944            }
2945            pw.println(pidString);
2946        }
2947        pw.println();
2948        pw.decreaseIndent();
2949
2950        pw.println("FeatureUsers:");
2951        pw.increaseIndent();
2952        for (Object requester : mFeatureUsers) {
2953            pw.println(requester.toString());
2954        }
2955        pw.println();
2956        pw.decreaseIndent();
2957
2958        synchronized (this) {
2959            pw.println("NetworkTranstionWakeLock is currently " +
2960                    (mNetTransitionWakeLock.isHeld() ? "" : "not ") + "held.");
2961            pw.println("It was last requested for "+mNetTransitionWakeLockCausedBy);
2962        }
2963        pw.println();
2964
2965        mTethering.dump(fd, pw, args);
2966
2967        if (mInetLog != null) {
2968            pw.println();
2969            pw.println("Inet condition reports:");
2970            pw.increaseIndent();
2971            for(int i = 0; i < mInetLog.size(); i++) {
2972                pw.println(mInetLog.get(i));
2973            }
2974            pw.decreaseIndent();
2975        }
2976    }
2977
2978    // must be stateless - things change under us.
2979    private class NetworkStateTrackerHandler extends Handler {
2980        public NetworkStateTrackerHandler(Looper looper) {
2981            super(looper);
2982        }
2983
2984        @Override
2985        public void handleMessage(Message msg) {
2986            NetworkInfo info;
2987            switch (msg.what) {
2988                case NetworkStateTracker.EVENT_STATE_CHANGED: {
2989                    info = (NetworkInfo) msg.obj;
2990                    NetworkInfo.State state = info.getState();
2991
2992                    if (VDBG || (state == NetworkInfo.State.CONNECTED) ||
2993                            (state == NetworkInfo.State.DISCONNECTED) ||
2994                            (state == NetworkInfo.State.SUSPENDED)) {
2995                        log("ConnectivityChange for " +
2996                            info.getTypeName() + ": " +
2997                            state + "/" + info.getDetailedState());
2998                    }
2999
3000                    // Since mobile has the notion of a network/apn that can be used for
3001                    // provisioning we need to check every time we're connected as
3002                    // CaptiveProtalTracker won't detected it because DCT doesn't report it
3003                    // as connected as ACTION_ANY_DATA_CONNECTION_STATE_CHANGED instead its
3004                    // reported as ACTION_DATA_CONNECTION_CONNECTED_TO_PROVISIONING_APN. Which
3005                    // is received by MDST and sent here as EVENT_STATE_CHANGED.
3006                    if (ConnectivityManager.isNetworkTypeMobile(info.getType())
3007                            && (0 != Settings.Global.getInt(mContext.getContentResolver(),
3008                                        Settings.Global.DEVICE_PROVISIONED, 0))
3009                            && (((state == NetworkInfo.State.CONNECTED)
3010                                    && (info.getType() == ConnectivityManager.TYPE_MOBILE))
3011                                || info.isConnectedToProvisioningNetwork())) {
3012                        log("ConnectivityChange checkMobileProvisioning for"
3013                                + " TYPE_MOBILE or ProvisioningNetwork");
3014                        checkMobileProvisioning(CheckMp.MAX_TIMEOUT_MS);
3015                    }
3016
3017                    EventLogTags.writeConnectivityStateChanged(
3018                            info.getType(), info.getSubtype(), info.getDetailedState().ordinal());
3019
3020                    if (info.getDetailedState() ==
3021                            NetworkInfo.DetailedState.FAILED) {
3022                        handleConnectionFailure(info);
3023                    } else if (info.isConnectedToProvisioningNetwork()) {
3024                        /**
3025                         * TODO: Create ConnectivityManager.TYPE_MOBILE_PROVISIONING
3026                         * for now its an in between network, its a network that
3027                         * is actually a default network but we don't want it to be
3028                         * announced as such to keep background applications from
3029                         * trying to use it. It turns out that some still try so we
3030                         * take the additional step of clearing any default routes
3031                         * to the link that may have incorrectly setup by the lower
3032                         * levels.
3033                         */
3034                        LinkProperties lp = getLinkProperties(info.getType());
3035                        if (DBG) {
3036                            log("EVENT_STATE_CHANGED: connected to provisioning network, lp=" + lp);
3037                        }
3038
3039                        // Clear any default routes setup by the radio so
3040                        // any activity by applications trying to use this
3041                        // connection will fail until the provisioning network
3042                        // is enabled.
3043                        for (RouteInfo r : lp.getRoutes()) {
3044                            removeRoute(lp, r, TO_DEFAULT_TABLE);
3045                        }
3046                    } else if (state == NetworkInfo.State.DISCONNECTED) {
3047                        handleDisconnect(info);
3048                    } else if (state == NetworkInfo.State.SUSPENDED) {
3049                        // TODO: need to think this over.
3050                        // the logic here is, handle SUSPENDED the same as
3051                        // DISCONNECTED. The only difference being we are
3052                        // broadcasting an intent with NetworkInfo that's
3053                        // suspended. This allows the applications an
3054                        // opportunity to handle DISCONNECTED and SUSPENDED
3055                        // differently, or not.
3056                        handleDisconnect(info);
3057                    } else if (state == NetworkInfo.State.CONNECTED) {
3058                        handleConnect(info);
3059                    }
3060                    if (mLockdownTracker != null) {
3061                        mLockdownTracker.onNetworkInfoChanged(info);
3062                    }
3063                    break;
3064                }
3065                case NetworkStateTracker.EVENT_CONFIGURATION_CHANGED: {
3066                    info = (NetworkInfo) msg.obj;
3067                    // TODO: Temporary allowing network configuration
3068                    //       change not resetting sockets.
3069                    //       @see bug/4455071
3070                    handleConnectivityChange(info.getType(), false);
3071                    break;
3072                }
3073                case NetworkStateTracker.EVENT_NETWORK_SUBTYPE_CHANGED: {
3074                    info = (NetworkInfo) msg.obj;
3075                    int type = info.getType();
3076                    updateNetworkSettings(mNetTrackers[type]);
3077                    break;
3078                }
3079            }
3080        }
3081    }
3082
3083    private class InternalHandler extends Handler {
3084        public InternalHandler(Looper looper) {
3085            super(looper);
3086        }
3087
3088        @Override
3089        public void handleMessage(Message msg) {
3090            NetworkInfo info;
3091            switch (msg.what) {
3092                case EVENT_CLEAR_NET_TRANSITION_WAKELOCK: {
3093                    String causedBy = null;
3094                    synchronized (ConnectivityService.this) {
3095                        if (msg.arg1 == mNetTransitionWakeLockSerialNumber &&
3096                                mNetTransitionWakeLock.isHeld()) {
3097                            mNetTransitionWakeLock.release();
3098                            causedBy = mNetTransitionWakeLockCausedBy;
3099                        }
3100                    }
3101                    if (causedBy != null) {
3102                        log("NetTransition Wakelock for " + causedBy + " released by timeout");
3103                    }
3104                    break;
3105                }
3106                case EVENT_RESTORE_DEFAULT_NETWORK: {
3107                    FeatureUser u = (FeatureUser)msg.obj;
3108                    u.expire();
3109                    break;
3110                }
3111                case EVENT_INET_CONDITION_CHANGE: {
3112                    int netType = msg.arg1;
3113                    int condition = msg.arg2;
3114                    handleInetConditionChange(netType, condition);
3115                    break;
3116                }
3117                case EVENT_INET_CONDITION_HOLD_END: {
3118                    int netType = msg.arg1;
3119                    int sequence = msg.arg2;
3120                    handleInetConditionHoldEnd(netType, sequence);
3121                    break;
3122                }
3123                case EVENT_SET_NETWORK_PREFERENCE: {
3124                    int preference = msg.arg1;
3125                    handleSetNetworkPreference(preference);
3126                    break;
3127                }
3128                case EVENT_SET_MOBILE_DATA: {
3129                    boolean enabled = (msg.arg1 == ENABLED);
3130                    handleSetMobileData(enabled);
3131                    break;
3132                }
3133                case EVENT_APPLY_GLOBAL_HTTP_PROXY: {
3134                    handleDeprecatedGlobalHttpProxy();
3135                    break;
3136                }
3137                case EVENT_SET_DEPENDENCY_MET: {
3138                    boolean met = (msg.arg1 == ENABLED);
3139                    handleSetDependencyMet(msg.arg2, met);
3140                    break;
3141                }
3142                case EVENT_SEND_STICKY_BROADCAST_INTENT: {
3143                    Intent intent = (Intent)msg.obj;
3144                    sendStickyBroadcast(intent);
3145                    break;
3146                }
3147                case EVENT_SET_POLICY_DATA_ENABLE: {
3148                    final int networkType = msg.arg1;
3149                    final boolean enabled = msg.arg2 == ENABLED;
3150                    handleSetPolicyDataEnable(networkType, enabled);
3151                    break;
3152                }
3153                case EVENT_VPN_STATE_CHANGED: {
3154                    if (mLockdownTracker != null) {
3155                        mLockdownTracker.onVpnStateChanged((NetworkInfo) msg.obj);
3156                    }
3157                    break;
3158                }
3159                case EVENT_ENABLE_FAIL_FAST_MOBILE_DATA: {
3160                    int tag = mEnableFailFastMobileDataTag.get();
3161                    if (msg.arg1 == tag) {
3162                        MobileDataStateTracker mobileDst =
3163                            (MobileDataStateTracker) mNetTrackers[ConnectivityManager.TYPE_MOBILE];
3164                        if (mobileDst != null) {
3165                            mobileDst.setEnableFailFastMobileData(msg.arg2);
3166                        }
3167                    } else {
3168                        log("EVENT_ENABLE_FAIL_FAST_MOBILE_DATA: stale arg1:" + msg.arg1
3169                                + " != tag:" + tag);
3170                    }
3171                    break;
3172                }
3173                case EVENT_SAMPLE_INTERVAL_ELAPSED: {
3174                    handleNetworkSamplingTimeout();
3175                    break;
3176                }
3177                case EVENT_PROXY_HAS_CHANGED: {
3178                    handleApplyDefaultProxy((ProxyProperties)msg.obj);
3179                    break;
3180                }
3181            }
3182        }
3183    }
3184
3185    // javadoc from interface
3186    public int tether(String iface) {
3187        enforceTetherChangePermission();
3188
3189        if (isTetheringSupported()) {
3190            return mTethering.tether(iface);
3191        } else {
3192            return ConnectivityManager.TETHER_ERROR_UNSUPPORTED;
3193        }
3194    }
3195
3196    // javadoc from interface
3197    public int untether(String iface) {
3198        enforceTetherChangePermission();
3199
3200        if (isTetheringSupported()) {
3201            return mTethering.untether(iface);
3202        } else {
3203            return ConnectivityManager.TETHER_ERROR_UNSUPPORTED;
3204        }
3205    }
3206
3207    // javadoc from interface
3208    public int getLastTetherError(String iface) {
3209        enforceTetherAccessPermission();
3210
3211        if (isTetheringSupported()) {
3212            return mTethering.getLastTetherError(iface);
3213        } else {
3214            return ConnectivityManager.TETHER_ERROR_UNSUPPORTED;
3215        }
3216    }
3217
3218    // TODO - proper iface API for selection by property, inspection, etc
3219    public String[] getTetherableUsbRegexs() {
3220        enforceTetherAccessPermission();
3221        if (isTetheringSupported()) {
3222            return mTethering.getTetherableUsbRegexs();
3223        } else {
3224            return new String[0];
3225        }
3226    }
3227
3228    public String[] getTetherableWifiRegexs() {
3229        enforceTetherAccessPermission();
3230        if (isTetheringSupported()) {
3231            return mTethering.getTetherableWifiRegexs();
3232        } else {
3233            return new String[0];
3234        }
3235    }
3236
3237    public String[] getTetherableBluetoothRegexs() {
3238        enforceTetherAccessPermission();
3239        if (isTetheringSupported()) {
3240            return mTethering.getTetherableBluetoothRegexs();
3241        } else {
3242            return new String[0];
3243        }
3244    }
3245
3246    public int setUsbTethering(boolean enable) {
3247        enforceTetherChangePermission();
3248        if (isTetheringSupported()) {
3249            return mTethering.setUsbTethering(enable);
3250        } else {
3251            return ConnectivityManager.TETHER_ERROR_UNSUPPORTED;
3252        }
3253    }
3254
3255    // TODO - move iface listing, queries, etc to new module
3256    // javadoc from interface
3257    public String[] getTetherableIfaces() {
3258        enforceTetherAccessPermission();
3259        return mTethering.getTetherableIfaces();
3260    }
3261
3262    public String[] getTetheredIfaces() {
3263        enforceTetherAccessPermission();
3264        return mTethering.getTetheredIfaces();
3265    }
3266
3267    public String[] getTetheringErroredIfaces() {
3268        enforceTetherAccessPermission();
3269        return mTethering.getErroredIfaces();
3270    }
3271
3272    // if ro.tether.denied = true we default to no tethering
3273    // gservices could set the secure setting to 1 though to enable it on a build where it
3274    // had previously been turned off.
3275    public boolean isTetheringSupported() {
3276        enforceTetherAccessPermission();
3277        int defaultVal = (SystemProperties.get("ro.tether.denied").equals("true") ? 0 : 1);
3278        boolean tetherEnabledInSettings = (Settings.Global.getInt(mContext.getContentResolver(),
3279                Settings.Global.TETHER_SUPPORTED, defaultVal) != 0);
3280        return tetherEnabledInSettings && ((mTethering.getTetherableUsbRegexs().length != 0 ||
3281                mTethering.getTetherableWifiRegexs().length != 0 ||
3282                mTethering.getTetherableBluetoothRegexs().length != 0) &&
3283                mTethering.getUpstreamIfaceTypes().length != 0);
3284    }
3285
3286    // An API NetworkStateTrackers can call when they lose their network.
3287    // This will automatically be cleared after X seconds or a network becomes CONNECTED,
3288    // whichever happens first.  The timer is started by the first caller and not
3289    // restarted by subsequent callers.
3290    public void requestNetworkTransitionWakelock(String forWhom) {
3291        enforceConnectivityInternalPermission();
3292        synchronized (this) {
3293            if (mNetTransitionWakeLock.isHeld()) return;
3294            mNetTransitionWakeLockSerialNumber++;
3295            mNetTransitionWakeLock.acquire();
3296            mNetTransitionWakeLockCausedBy = forWhom;
3297        }
3298        mHandler.sendMessageDelayed(mHandler.obtainMessage(
3299                EVENT_CLEAR_NET_TRANSITION_WAKELOCK,
3300                mNetTransitionWakeLockSerialNumber, 0),
3301                mNetTransitionWakeLockTimeout);
3302        return;
3303    }
3304
3305    // 100 percent is full good, 0 is full bad.
3306    public void reportInetCondition(int networkType, int percentage) {
3307        if (VDBG) log("reportNetworkCondition(" + networkType + ", " + percentage + ")");
3308        mContext.enforceCallingOrSelfPermission(
3309                android.Manifest.permission.STATUS_BAR,
3310                "ConnectivityService");
3311
3312        if (DBG) {
3313            int pid = getCallingPid();
3314            int uid = getCallingUid();
3315            String s = pid + "(" + uid + ") reports inet is " +
3316                (percentage > 50 ? "connected" : "disconnected") + " (" + percentage + ") on " +
3317                "network Type " + networkType + " at " + GregorianCalendar.getInstance().getTime();
3318            mInetLog.add(s);
3319            while(mInetLog.size() > INET_CONDITION_LOG_MAX_SIZE) {
3320                mInetLog.remove(0);
3321            }
3322        }
3323        mHandler.sendMessage(mHandler.obtainMessage(
3324            EVENT_INET_CONDITION_CHANGE, networkType, percentage));
3325    }
3326
3327    private void handleInetConditionChange(int netType, int condition) {
3328        if (mActiveDefaultNetwork == -1) {
3329            if (DBG) log("handleInetConditionChange: no active default network - ignore");
3330            return;
3331        }
3332        if (mActiveDefaultNetwork != netType) {
3333            if (DBG) log("handleInetConditionChange: net=" + netType +
3334                            " != default=" + mActiveDefaultNetwork + " - ignore");
3335            return;
3336        }
3337        if (VDBG) {
3338            log("handleInetConditionChange: net=" +
3339                    netType + ", condition=" + condition +
3340                    ",mActiveDefaultNetwork=" + mActiveDefaultNetwork);
3341        }
3342        mDefaultInetCondition = condition;
3343        int delay;
3344        if (mInetConditionChangeInFlight == false) {
3345            if (VDBG) log("handleInetConditionChange: starting a change hold");
3346            // setup a new hold to debounce this
3347            if (mDefaultInetCondition > 50) {
3348                delay = Settings.Global.getInt(mContext.getContentResolver(),
3349                        Settings.Global.INET_CONDITION_DEBOUNCE_UP_DELAY, 500);
3350            } else {
3351                delay = Settings.Global.getInt(mContext.getContentResolver(),
3352                        Settings.Global.INET_CONDITION_DEBOUNCE_DOWN_DELAY, 3000);
3353            }
3354            mInetConditionChangeInFlight = true;
3355            mHandler.sendMessageDelayed(mHandler.obtainMessage(EVENT_INET_CONDITION_HOLD_END,
3356                    mActiveDefaultNetwork, mDefaultConnectionSequence), delay);
3357        } else {
3358            // we've set the new condition, when this hold ends that will get picked up
3359            if (VDBG) log("handleInetConditionChange: currently in hold - not setting new end evt");
3360        }
3361    }
3362
3363    private void handleInetConditionHoldEnd(int netType, int sequence) {
3364        if (DBG) {
3365            log("handleInetConditionHoldEnd: net=" + netType +
3366                    ", condition=" + mDefaultInetCondition +
3367                    ", published condition=" + mDefaultInetConditionPublished);
3368        }
3369        mInetConditionChangeInFlight = false;
3370
3371        if (mActiveDefaultNetwork == -1) {
3372            if (DBG) log("handleInetConditionHoldEnd: no active default network - ignoring");
3373            return;
3374        }
3375        if (mDefaultConnectionSequence != sequence) {
3376            if (DBG) log("handleInetConditionHoldEnd: event hold for obsolete network - ignoring");
3377            return;
3378        }
3379        // TODO: Figure out why this optimization sometimes causes a
3380        //       change in mDefaultInetCondition to be missed and the
3381        //       UI to not be updated.
3382        //if (mDefaultInetConditionPublished == mDefaultInetCondition) {
3383        //    if (DBG) log("no change in condition - aborting");
3384        //    return;
3385        //}
3386        NetworkInfo networkInfo = mNetTrackers[mActiveDefaultNetwork].getNetworkInfo();
3387        if (networkInfo.isConnected() == false) {
3388            if (DBG) log("handleInetConditionHoldEnd: default network not connected - ignoring");
3389            return;
3390        }
3391        mDefaultInetConditionPublished = mDefaultInetCondition;
3392        sendInetConditionBroadcast(networkInfo);
3393        return;
3394    }
3395
3396    public ProxyProperties getProxy() {
3397        // this information is already available as a world read/writable jvm property
3398        // so this API change wouldn't have a benifit.  It also breaks the passing
3399        // of proxy info to all the JVMs.
3400        // enforceAccessPermission();
3401        synchronized (mProxyLock) {
3402            ProxyProperties ret = mGlobalProxy;
3403            if ((ret == null) && !mDefaultProxyDisabled) ret = mDefaultProxy;
3404            return ret;
3405        }
3406    }
3407
3408    public void setGlobalProxy(ProxyProperties proxyProperties) {
3409        enforceConnectivityInternalPermission();
3410
3411        synchronized (mProxyLock) {
3412            if (proxyProperties == mGlobalProxy) return;
3413            if (proxyProperties != null && proxyProperties.equals(mGlobalProxy)) return;
3414            if (mGlobalProxy != null && mGlobalProxy.equals(proxyProperties)) return;
3415
3416            String host = "";
3417            int port = 0;
3418            String exclList = "";
3419            String pacFileUrl = "";
3420            if (proxyProperties != null && (!TextUtils.isEmpty(proxyProperties.getHost()) ||
3421                    !TextUtils.isEmpty(proxyProperties.getPacFileUrl()))) {
3422                if (!proxyProperties.isValid()) {
3423                    if (DBG)
3424                        log("Invalid proxy properties, ignoring: " + proxyProperties.toString());
3425                    return;
3426                }
3427                mGlobalProxy = new ProxyProperties(proxyProperties);
3428                host = mGlobalProxy.getHost();
3429                port = mGlobalProxy.getPort();
3430                exclList = mGlobalProxy.getExclusionList();
3431                if (proxyProperties.getPacFileUrl() != null) {
3432                    pacFileUrl = proxyProperties.getPacFileUrl();
3433                }
3434            } else {
3435                mGlobalProxy = null;
3436            }
3437            ContentResolver res = mContext.getContentResolver();
3438            final long token = Binder.clearCallingIdentity();
3439            try {
3440                Settings.Global.putString(res, Settings.Global.GLOBAL_HTTP_PROXY_HOST, host);
3441                Settings.Global.putInt(res, Settings.Global.GLOBAL_HTTP_PROXY_PORT, port);
3442                Settings.Global.putString(res, Settings.Global.GLOBAL_HTTP_PROXY_EXCLUSION_LIST,
3443                        exclList);
3444                Settings.Global.putString(res, Settings.Global.GLOBAL_HTTP_PROXY_PAC, pacFileUrl);
3445            } finally {
3446                Binder.restoreCallingIdentity(token);
3447            }
3448        }
3449
3450        if (mGlobalProxy == null) {
3451            proxyProperties = mDefaultProxy;
3452        }
3453        sendProxyBroadcast(proxyProperties);
3454    }
3455
3456    private void loadGlobalProxy() {
3457        ContentResolver res = mContext.getContentResolver();
3458        String host = Settings.Global.getString(res, Settings.Global.GLOBAL_HTTP_PROXY_HOST);
3459        int port = Settings.Global.getInt(res, Settings.Global.GLOBAL_HTTP_PROXY_PORT, 0);
3460        String exclList = Settings.Global.getString(res,
3461                Settings.Global.GLOBAL_HTTP_PROXY_EXCLUSION_LIST);
3462        String pacFileUrl = Settings.Global.getString(res, Settings.Global.GLOBAL_HTTP_PROXY_PAC);
3463        if (!TextUtils.isEmpty(host) || !TextUtils.isEmpty(pacFileUrl)) {
3464            ProxyProperties proxyProperties;
3465            if (!TextUtils.isEmpty(pacFileUrl)) {
3466                proxyProperties = new ProxyProperties(pacFileUrl);
3467            } else {
3468                proxyProperties = new ProxyProperties(host, port, exclList);
3469            }
3470            if (!proxyProperties.isValid()) {
3471                if (DBG) log("Invalid proxy properties, ignoring: " + proxyProperties.toString());
3472                return;
3473            }
3474
3475            synchronized (mProxyLock) {
3476                mGlobalProxy = proxyProperties;
3477            }
3478        }
3479    }
3480
3481    public ProxyProperties getGlobalProxy() {
3482        // this information is already available as a world read/writable jvm property
3483        // so this API change wouldn't have a benifit.  It also breaks the passing
3484        // of proxy info to all the JVMs.
3485        // enforceAccessPermission();
3486        synchronized (mProxyLock) {
3487            return mGlobalProxy;
3488        }
3489    }
3490
3491    private void handleApplyDefaultProxy(ProxyProperties proxy) {
3492        if (proxy != null && TextUtils.isEmpty(proxy.getHost())
3493                && TextUtils.isEmpty(proxy.getPacFileUrl())) {
3494            proxy = null;
3495        }
3496        synchronized (mProxyLock) {
3497            if (mDefaultProxy != null && mDefaultProxy.equals(proxy)) return;
3498            if (mDefaultProxy == proxy) return; // catches repeated nulls
3499            if (proxy != null &&  !proxy.isValid()) {
3500                if (DBG) log("Invalid proxy properties, ignoring: " + proxy.toString());
3501                return;
3502            }
3503            mDefaultProxy = proxy;
3504
3505            if (mGlobalProxy != null) return;
3506            if (!mDefaultProxyDisabled) {
3507                sendProxyBroadcast(proxy);
3508            }
3509        }
3510    }
3511
3512    private void handleDeprecatedGlobalHttpProxy() {
3513        String proxy = Settings.Global.getString(mContext.getContentResolver(),
3514                Settings.Global.HTTP_PROXY);
3515        if (!TextUtils.isEmpty(proxy)) {
3516            String data[] = proxy.split(":");
3517            if (data.length == 0) {
3518                return;
3519            }
3520
3521            String proxyHost =  data[0];
3522            int proxyPort = 8080;
3523            if (data.length > 1) {
3524                try {
3525                    proxyPort = Integer.parseInt(data[1]);
3526                } catch (NumberFormatException e) {
3527                    return;
3528                }
3529            }
3530            ProxyProperties p = new ProxyProperties(data[0], proxyPort, "");
3531            setGlobalProxy(p);
3532        }
3533    }
3534
3535    private void sendProxyBroadcast(ProxyProperties proxy) {
3536        if (proxy == null) proxy = new ProxyProperties("", 0, "");
3537        if (mPacManager.setCurrentProxyScriptUrl(proxy)) return;
3538        if (DBG) log("sending Proxy Broadcast for " + proxy);
3539        Intent intent = new Intent(Proxy.PROXY_CHANGE_ACTION);
3540        intent.addFlags(Intent.FLAG_RECEIVER_REPLACE_PENDING |
3541            Intent.FLAG_RECEIVER_REGISTERED_ONLY_BEFORE_BOOT);
3542        intent.putExtra(Proxy.EXTRA_PROXY_INFO, proxy);
3543        final long ident = Binder.clearCallingIdentity();
3544        try {
3545            mContext.sendStickyBroadcastAsUser(intent, UserHandle.ALL);
3546        } finally {
3547            Binder.restoreCallingIdentity(ident);
3548        }
3549    }
3550
3551    private static class SettingsObserver extends ContentObserver {
3552        private int mWhat;
3553        private Handler mHandler;
3554        SettingsObserver(Handler handler, int what) {
3555            super(handler);
3556            mHandler = handler;
3557            mWhat = what;
3558        }
3559
3560        void observe(Context context) {
3561            ContentResolver resolver = context.getContentResolver();
3562            resolver.registerContentObserver(Settings.Global.getUriFor(
3563                    Settings.Global.HTTP_PROXY), false, this);
3564        }
3565
3566        @Override
3567        public void onChange(boolean selfChange) {
3568            mHandler.obtainMessage(mWhat).sendToTarget();
3569        }
3570    }
3571
3572    private static void log(String s) {
3573        Slog.d(TAG, s);
3574    }
3575
3576    private static void loge(String s) {
3577        Slog.e(TAG, s);
3578    }
3579
3580    int convertFeatureToNetworkType(int networkType, String feature) {
3581        int usedNetworkType = networkType;
3582
3583        if(networkType == ConnectivityManager.TYPE_MOBILE) {
3584            if (TextUtils.equals(feature, Phone.FEATURE_ENABLE_MMS)) {
3585                usedNetworkType = ConnectivityManager.TYPE_MOBILE_MMS;
3586            } else if (TextUtils.equals(feature, Phone.FEATURE_ENABLE_SUPL)) {
3587                usedNetworkType = ConnectivityManager.TYPE_MOBILE_SUPL;
3588            } else if (TextUtils.equals(feature, Phone.FEATURE_ENABLE_DUN) ||
3589                    TextUtils.equals(feature, Phone.FEATURE_ENABLE_DUN_ALWAYS)) {
3590                usedNetworkType = ConnectivityManager.TYPE_MOBILE_DUN;
3591            } else if (TextUtils.equals(feature, Phone.FEATURE_ENABLE_HIPRI)) {
3592                usedNetworkType = ConnectivityManager.TYPE_MOBILE_HIPRI;
3593            } else if (TextUtils.equals(feature, Phone.FEATURE_ENABLE_FOTA)) {
3594                usedNetworkType = ConnectivityManager.TYPE_MOBILE_FOTA;
3595            } else if (TextUtils.equals(feature, Phone.FEATURE_ENABLE_IMS)) {
3596                usedNetworkType = ConnectivityManager.TYPE_MOBILE_IMS;
3597            } else if (TextUtils.equals(feature, Phone.FEATURE_ENABLE_CBS)) {
3598                usedNetworkType = ConnectivityManager.TYPE_MOBILE_CBS;
3599            } else {
3600                Slog.e(TAG, "Can't match any mobile netTracker!");
3601            }
3602        } else if (networkType == ConnectivityManager.TYPE_WIFI) {
3603            if (TextUtils.equals(feature, "p2p")) {
3604                usedNetworkType = ConnectivityManager.TYPE_WIFI_P2P;
3605            } else {
3606                Slog.e(TAG, "Can't match any wifi netTracker!");
3607            }
3608        } else {
3609            Slog.e(TAG, "Unexpected network type");
3610        }
3611        return usedNetworkType;
3612    }
3613
3614    private static <T> T checkNotNull(T value, String message) {
3615        if (value == null) {
3616            throw new NullPointerException(message);
3617        }
3618        return value;
3619    }
3620
3621    /**
3622     * Protect a socket from VPN routing rules. This method is used by
3623     * VpnBuilder and not available in ConnectivityManager. Permissions
3624     * are checked in Vpn class.
3625     * @hide
3626     */
3627    @Override
3628    public boolean protectVpn(ParcelFileDescriptor socket) {
3629        throwIfLockdownEnabled();
3630        try {
3631            int type = mActiveDefaultNetwork;
3632            int user = UserHandle.getUserId(Binder.getCallingUid());
3633            if (ConnectivityManager.isNetworkTypeValid(type) && mNetTrackers[type] != null) {
3634                synchronized(mVpns) {
3635                    mVpns.get(user).protect(socket,
3636                            mNetTrackers[type].getLinkProperties().getInterfaceName());
3637                }
3638                return true;
3639            }
3640        } catch (Exception e) {
3641            // ignore
3642        } finally {
3643            try {
3644                socket.close();
3645            } catch (Exception e) {
3646                // ignore
3647            }
3648        }
3649        return false;
3650    }
3651
3652    /**
3653     * Prepare for a VPN application. This method is used by VpnDialogs
3654     * and not available in ConnectivityManager. Permissions are checked
3655     * in Vpn class.
3656     * @hide
3657     */
3658    @Override
3659    public boolean prepareVpn(String oldPackage, String newPackage) {
3660        throwIfLockdownEnabled();
3661        int user = UserHandle.getUserId(Binder.getCallingUid());
3662        synchronized(mVpns) {
3663            return mVpns.get(user).prepare(oldPackage, newPackage);
3664        }
3665    }
3666
3667    @Override
3668    public void markSocketAsUser(ParcelFileDescriptor socket, int uid) {
3669        enforceMarkNetworkSocketPermission();
3670        final long token = Binder.clearCallingIdentity();
3671        try {
3672            int mark = mNetd.getMarkForUid(uid);
3673            // Clear the mark on the socket if no mark is needed to prevent socket reuse issues
3674            if (mark == -1) {
3675                mark = 0;
3676            }
3677            NetworkUtils.markSocket(socket.getFd(), mark);
3678        } catch (RemoteException e) {
3679        } finally {
3680            Binder.restoreCallingIdentity(token);
3681        }
3682    }
3683
3684    /**
3685     * Configure a TUN interface and return its file descriptor. Parameters
3686     * are encoded and opaque to this class. This method is used by VpnBuilder
3687     * and not available in ConnectivityManager. Permissions are checked in
3688     * Vpn class.
3689     * @hide
3690     */
3691    @Override
3692    public ParcelFileDescriptor establishVpn(VpnConfig config) {
3693        throwIfLockdownEnabled();
3694        int user = UserHandle.getUserId(Binder.getCallingUid());
3695        synchronized(mVpns) {
3696            return mVpns.get(user).establish(config);
3697        }
3698    }
3699
3700    /**
3701     * Start legacy VPN, controlling native daemons as needed. Creates a
3702     * secondary thread to perform connection work, returning quickly.
3703     */
3704    @Override
3705    public void startLegacyVpn(VpnProfile profile) {
3706        throwIfLockdownEnabled();
3707        final LinkProperties egress = getActiveLinkProperties();
3708        if (egress == null) {
3709            throw new IllegalStateException("Missing active network connection");
3710        }
3711        int user = UserHandle.getUserId(Binder.getCallingUid());
3712        synchronized(mVpns) {
3713            mVpns.get(user).startLegacyVpn(profile, mKeyStore, egress);
3714        }
3715    }
3716
3717    /**
3718     * Return the information of the ongoing legacy VPN. This method is used
3719     * by VpnSettings and not available in ConnectivityManager. Permissions
3720     * are checked in Vpn class.
3721     * @hide
3722     */
3723    @Override
3724    public LegacyVpnInfo getLegacyVpnInfo() {
3725        throwIfLockdownEnabled();
3726        int user = UserHandle.getUserId(Binder.getCallingUid());
3727        synchronized(mVpns) {
3728            return mVpns.get(user).getLegacyVpnInfo();
3729        }
3730    }
3731
3732    /**
3733     * Returns the information of the ongoing VPN. This method is used by VpnDialogs and
3734     * not available in ConnectivityManager.
3735     * Permissions are checked in Vpn class.
3736     * @hide
3737     */
3738    @Override
3739    public VpnConfig getVpnConfig() {
3740        int user = UserHandle.getUserId(Binder.getCallingUid());
3741        synchronized(mVpns) {
3742            return mVpns.get(user).getVpnConfig();
3743        }
3744    }
3745
3746    /**
3747     * Callback for VPN subsystem. Currently VPN is not adapted to the service
3748     * through NetworkStateTracker since it works differently. For example, it
3749     * needs to override DNS servers but never takes the default routes. It
3750     * relies on another data network, and it could keep existing connections
3751     * alive after reconnecting, switching between networks, or even resuming
3752     * from deep sleep. Calls from applications should be done synchronously
3753     * to avoid race conditions. As these are all hidden APIs, refactoring can
3754     * be done whenever a better abstraction is developed.
3755     */
3756    public class VpnCallback {
3757        private VpnCallback() {
3758        }
3759
3760        public void onStateChanged(NetworkInfo info) {
3761            mHandler.obtainMessage(EVENT_VPN_STATE_CHANGED, info).sendToTarget();
3762        }
3763
3764        public void override(String iface, List<String> dnsServers, List<String> searchDomains) {
3765            if (dnsServers == null) {
3766                restore();
3767                return;
3768            }
3769
3770            // Convert DNS servers into addresses.
3771            List<InetAddress> addresses = new ArrayList<InetAddress>();
3772            for (String address : dnsServers) {
3773                // Double check the addresses and remove invalid ones.
3774                try {
3775                    addresses.add(InetAddress.parseNumericAddress(address));
3776                } catch (Exception e) {
3777                    // ignore
3778                }
3779            }
3780            if (addresses.isEmpty()) {
3781                restore();
3782                return;
3783            }
3784
3785            // Concatenate search domains into a string.
3786            StringBuilder buffer = new StringBuilder();
3787            if (searchDomains != null) {
3788                for (String domain : searchDomains) {
3789                    buffer.append(domain).append(' ');
3790                }
3791            }
3792            String domains = buffer.toString().trim();
3793
3794            // Apply DNS changes.
3795            synchronized (mDnsLock) {
3796                updateDnsLocked("VPN", iface, addresses, domains, false);
3797            }
3798
3799            // Temporarily disable the default proxy (not global).
3800            synchronized (mProxyLock) {
3801                mDefaultProxyDisabled = true;
3802                if (mGlobalProxy == null && mDefaultProxy != null) {
3803                    sendProxyBroadcast(null);
3804                }
3805            }
3806
3807            // TODO: support proxy per network.
3808        }
3809
3810        public void restore() {
3811            synchronized (mProxyLock) {
3812                mDefaultProxyDisabled = false;
3813                if (mGlobalProxy == null && mDefaultProxy != null) {
3814                    sendProxyBroadcast(mDefaultProxy);
3815                }
3816            }
3817        }
3818
3819        public void protect(ParcelFileDescriptor socket) {
3820            try {
3821                final int mark = mNetd.getMarkForProtect();
3822                NetworkUtils.markSocket(socket.getFd(), mark);
3823            } catch (RemoteException e) {
3824            }
3825        }
3826
3827        public void setRoutes(String interfaze, List<RouteInfo> routes) {
3828            for (RouteInfo route : routes) {
3829                try {
3830                    mNetd.setMarkedForwardingRoute(interfaze, route);
3831                } catch (RemoteException e) {
3832                }
3833            }
3834        }
3835
3836        public void setMarkedForwarding(String interfaze) {
3837            try {
3838                mNetd.setMarkedForwarding(interfaze);
3839            } catch (RemoteException e) {
3840            }
3841        }
3842
3843        public void clearMarkedForwarding(String interfaze) {
3844            try {
3845                mNetd.clearMarkedForwarding(interfaze);
3846            } catch (RemoteException e) {
3847            }
3848        }
3849
3850        public void addUserForwarding(String interfaze, int uid, boolean forwardDns) {
3851            int uidStart = uid * UserHandle.PER_USER_RANGE;
3852            int uidEnd = uidStart + UserHandle.PER_USER_RANGE - 1;
3853            addUidForwarding(interfaze, uidStart, uidEnd, forwardDns);
3854        }
3855
3856        public void clearUserForwarding(String interfaze, int uid, boolean forwardDns) {
3857            int uidStart = uid * UserHandle.PER_USER_RANGE;
3858            int uidEnd = uidStart + UserHandle.PER_USER_RANGE - 1;
3859            clearUidForwarding(interfaze, uidStart, uidEnd, forwardDns);
3860        }
3861
3862        public void addUidForwarding(String interfaze, int uidStart, int uidEnd,
3863                boolean forwardDns) {
3864            try {
3865                mNetd.setUidRangeRoute(interfaze,uidStart, uidEnd);
3866                if (forwardDns) mNetd.setDnsInterfaceForUidRange(interfaze, uidStart, uidEnd);
3867            } catch (RemoteException e) {
3868            }
3869
3870        }
3871
3872        public void clearUidForwarding(String interfaze, int uidStart, int uidEnd,
3873                boolean forwardDns) {
3874            try {
3875                mNetd.clearUidRangeRoute(interfaze, uidStart, uidEnd);
3876                if (forwardDns) mNetd.clearDnsInterfaceForUidRange(uidStart, uidEnd);
3877            } catch (RemoteException e) {
3878            }
3879
3880        }
3881    }
3882
3883    @Override
3884    public boolean updateLockdownVpn() {
3885        if (Binder.getCallingUid() != Process.SYSTEM_UID) {
3886            Slog.w(TAG, "Lockdown VPN only available to AID_SYSTEM");
3887            return false;
3888        }
3889
3890        // Tear down existing lockdown if profile was removed
3891        mLockdownEnabled = LockdownVpnTracker.isEnabled();
3892        if (mLockdownEnabled) {
3893            if (!mKeyStore.isUnlocked()) {
3894                Slog.w(TAG, "KeyStore locked; unable to create LockdownTracker");
3895                return false;
3896            }
3897
3898            final String profileName = new String(mKeyStore.get(Credentials.LOCKDOWN_VPN));
3899            final VpnProfile profile = VpnProfile.decode(
3900                    profileName, mKeyStore.get(Credentials.VPN + profileName));
3901            int user = UserHandle.getUserId(Binder.getCallingUid());
3902            synchronized(mVpns) {
3903                setLockdownTracker(new LockdownVpnTracker(mContext, mNetd, this, mVpns.get(user),
3904                            profile));
3905            }
3906        } else {
3907            setLockdownTracker(null);
3908        }
3909
3910        return true;
3911    }
3912
3913    /**
3914     * Internally set new {@link LockdownVpnTracker}, shutting down any existing
3915     * {@link LockdownVpnTracker}. Can be {@code null} to disable lockdown.
3916     */
3917    private void setLockdownTracker(LockdownVpnTracker tracker) {
3918        // Shutdown any existing tracker
3919        final LockdownVpnTracker existing = mLockdownTracker;
3920        mLockdownTracker = null;
3921        if (existing != null) {
3922            existing.shutdown();
3923        }
3924
3925        try {
3926            if (tracker != null) {
3927                mNetd.setFirewallEnabled(true);
3928                mNetd.setFirewallInterfaceRule("lo", true);
3929                mLockdownTracker = tracker;
3930                mLockdownTracker.init();
3931            } else {
3932                mNetd.setFirewallEnabled(false);
3933            }
3934        } catch (RemoteException e) {
3935            // ignored; NMS lives inside system_server
3936        }
3937    }
3938
3939    private void throwIfLockdownEnabled() {
3940        if (mLockdownEnabled) {
3941            throw new IllegalStateException("Unavailable in lockdown mode");
3942        }
3943    }
3944
3945    public void supplyMessenger(int networkType, Messenger messenger) {
3946        enforceConnectivityInternalPermission();
3947
3948        if (isNetworkTypeValid(networkType) && mNetTrackers[networkType] != null) {
3949            mNetTrackers[networkType].supplyMessenger(messenger);
3950        }
3951    }
3952
3953    public int findConnectionTypeForIface(String iface) {
3954        enforceConnectivityInternalPermission();
3955
3956        if (TextUtils.isEmpty(iface)) return ConnectivityManager.TYPE_NONE;
3957        for (NetworkStateTracker tracker : mNetTrackers) {
3958            if (tracker != null) {
3959                LinkProperties lp = tracker.getLinkProperties();
3960                if (lp != null && iface.equals(lp.getInterfaceName())) {
3961                    return tracker.getNetworkInfo().getType();
3962                }
3963            }
3964        }
3965        return ConnectivityManager.TYPE_NONE;
3966    }
3967
3968    /**
3969     * Have mobile data fail fast if enabled.
3970     *
3971     * @param enabled DctConstants.ENABLED/DISABLED
3972     */
3973    private void setEnableFailFastMobileData(int enabled) {
3974        int tag;
3975
3976        if (enabled == DctConstants.ENABLED) {
3977            tag = mEnableFailFastMobileDataTag.incrementAndGet();
3978        } else {
3979            tag = mEnableFailFastMobileDataTag.get();
3980        }
3981        mHandler.sendMessage(mHandler.obtainMessage(EVENT_ENABLE_FAIL_FAST_MOBILE_DATA, tag,
3982                         enabled));
3983    }
3984
3985    private boolean isMobileDataStateTrackerReady() {
3986        MobileDataStateTracker mdst =
3987                (MobileDataStateTracker) mNetTrackers[ConnectivityManager.TYPE_MOBILE_HIPRI];
3988        return (mdst != null) && (mdst.isReady());
3989    }
3990
3991    /**
3992     * The ResultReceiver resultCode for checkMobileProvisioning (CMP_RESULT_CODE)
3993     */
3994
3995    /**
3996     * No connection was possible to the network.
3997     * This is NOT a warm sim.
3998     */
3999    private static final int CMP_RESULT_CODE_NO_CONNECTION = 0;
4000
4001    /**
4002     * A connection was made to the internet, all is well.
4003     * This is NOT a warm sim.
4004     */
4005    private static final int CMP_RESULT_CODE_CONNECTABLE = 1;
4006
4007    /**
4008     * A connection was made but no dns server was available to resolve a name to address.
4009     * This is NOT a warm sim since provisioning network is supported.
4010     */
4011    private static final int CMP_RESULT_CODE_NO_DNS = 2;
4012
4013    /**
4014     * A connection was made but could not open a TCP connection.
4015     * This is NOT a warm sim since provisioning network is supported.
4016     */
4017    private static final int CMP_RESULT_CODE_NO_TCP_CONNECTION = 3;
4018
4019    /**
4020     * A connection was made but there was a redirection, we appear to be in walled garden.
4021     * This is an indication of a warm sim on a mobile network such as T-Mobile.
4022     */
4023    private static final int CMP_RESULT_CODE_REDIRECTED = 4;
4024
4025    /**
4026     * The mobile network is a provisioning network.
4027     * This is an indication of a warm sim on a mobile network such as AT&T.
4028     */
4029    private static final int CMP_RESULT_CODE_PROVISIONING_NETWORK = 5;
4030
4031    private AtomicBoolean mIsCheckingMobileProvisioning = new AtomicBoolean(false);
4032
4033    @Override
4034    public int checkMobileProvisioning(int suggestedTimeOutMs) {
4035        int timeOutMs = -1;
4036        if (DBG) log("checkMobileProvisioning: E suggestedTimeOutMs=" + suggestedTimeOutMs);
4037        enforceConnectivityInternalPermission();
4038
4039        final long token = Binder.clearCallingIdentity();
4040        try {
4041            timeOutMs = suggestedTimeOutMs;
4042            if (suggestedTimeOutMs > CheckMp.MAX_TIMEOUT_MS) {
4043                timeOutMs = CheckMp.MAX_TIMEOUT_MS;
4044            }
4045
4046            // Check that mobile networks are supported
4047            if (!isNetworkSupported(ConnectivityManager.TYPE_MOBILE)
4048                    || !isNetworkSupported(ConnectivityManager.TYPE_MOBILE_HIPRI)) {
4049                if (DBG) log("checkMobileProvisioning: X no mobile network");
4050                return timeOutMs;
4051            }
4052
4053            // If we're already checking don't do it again
4054            // TODO: Add a queue of results...
4055            if (mIsCheckingMobileProvisioning.getAndSet(true)) {
4056                if (DBG) log("checkMobileProvisioning: X already checking ignore for the moment");
4057                return timeOutMs;
4058            }
4059
4060            // Start off with mobile notification off
4061            setProvNotificationVisible(false, ConnectivityManager.TYPE_MOBILE_HIPRI, null, null);
4062
4063            CheckMp checkMp = new CheckMp(mContext, this);
4064            CheckMp.CallBack cb = new CheckMp.CallBack() {
4065                @Override
4066                void onComplete(Integer result) {
4067                    if (DBG) log("CheckMp.onComplete: result=" + result);
4068                    NetworkInfo ni =
4069                            mNetTrackers[ConnectivityManager.TYPE_MOBILE_HIPRI].getNetworkInfo();
4070                    switch(result) {
4071                        case CMP_RESULT_CODE_CONNECTABLE:
4072                        case CMP_RESULT_CODE_NO_CONNECTION:
4073                        case CMP_RESULT_CODE_NO_DNS:
4074                        case CMP_RESULT_CODE_NO_TCP_CONNECTION: {
4075                            if (DBG) log("CheckMp.onComplete: ignore, connected or no connection");
4076                            break;
4077                        }
4078                        case CMP_RESULT_CODE_REDIRECTED: {
4079                            if (DBG) log("CheckMp.onComplete: warm sim");
4080                            String url = getMobileProvisioningUrl();
4081                            if (TextUtils.isEmpty(url)) {
4082                                url = getMobileRedirectedProvisioningUrl();
4083                            }
4084                            if (TextUtils.isEmpty(url) == false) {
4085                                if (DBG) log("CheckMp.onComplete: warm (redirected), url=" + url);
4086                                setProvNotificationVisible(true,
4087                                        ConnectivityManager.TYPE_MOBILE_HIPRI, ni.getExtraInfo(),
4088                                        url);
4089                            } else {
4090                                if (DBG) log("CheckMp.onComplete: warm (redirected), no url");
4091                            }
4092                            break;
4093                        }
4094                        case CMP_RESULT_CODE_PROVISIONING_NETWORK: {
4095                            String url = getMobileProvisioningUrl();
4096                            if (TextUtils.isEmpty(url) == false) {
4097                                if (DBG) log("CheckMp.onComplete: warm (no dns/tcp), url=" + url);
4098                                setProvNotificationVisible(true,
4099                                        ConnectivityManager.TYPE_MOBILE_HIPRI, ni.getExtraInfo(),
4100                                        url);
4101                            } else {
4102                                if (DBG) log("CheckMp.onComplete: warm (no dns/tcp), no url");
4103                            }
4104                            break;
4105                        }
4106                        default: {
4107                            loge("CheckMp.onComplete: ignore unexpected result=" + result);
4108                            break;
4109                        }
4110                    }
4111                    mIsCheckingMobileProvisioning.set(false);
4112                }
4113            };
4114            CheckMp.Params params =
4115                    new CheckMp.Params(checkMp.getDefaultUrl(), timeOutMs, cb);
4116            if (DBG) log("checkMobileProvisioning: params=" + params);
4117            checkMp.execute(params);
4118        } finally {
4119            Binder.restoreCallingIdentity(token);
4120            if (DBG) log("checkMobileProvisioning: X");
4121        }
4122        return timeOutMs;
4123    }
4124
4125    static class CheckMp extends
4126            AsyncTask<CheckMp.Params, Void, Integer> {
4127        private static final String CHECKMP_TAG = "CheckMp";
4128
4129        // adb shell setprop persist.checkmp.testfailures 1 to enable testing failures
4130        private static boolean mTestingFailures;
4131
4132        // Choosing 4 loops as half of them will use HTTPS and the other half HTTP
4133        private static final int MAX_LOOPS = 4;
4134
4135        // Number of milli-seconds to complete all of the retires
4136        public static final int MAX_TIMEOUT_MS =  60000;
4137
4138        // The socket should retry only 5 seconds, the default is longer
4139        private static final int SOCKET_TIMEOUT_MS = 5000;
4140
4141        // Sleep time for network errors
4142        private static final int NET_ERROR_SLEEP_SEC = 3;
4143
4144        // Sleep time for network route establishment
4145        private static final int NET_ROUTE_ESTABLISHMENT_SLEEP_SEC = 3;
4146
4147        // Short sleep time for polling :(
4148        private static final int POLLING_SLEEP_SEC = 1;
4149
4150        private Context mContext;
4151        private ConnectivityService mCs;
4152        private TelephonyManager mTm;
4153        private Params mParams;
4154
4155        /**
4156         * Parameters for AsyncTask.execute
4157         */
4158        static class Params {
4159            private String mUrl;
4160            private long mTimeOutMs;
4161            private CallBack mCb;
4162
4163            Params(String url, long timeOutMs, CallBack cb) {
4164                mUrl = url;
4165                mTimeOutMs = timeOutMs;
4166                mCb = cb;
4167            }
4168
4169            @Override
4170            public String toString() {
4171                return "{" + " url=" + mUrl + " mTimeOutMs=" + mTimeOutMs + " mCb=" + mCb + "}";
4172            }
4173        }
4174
4175        // As explained to me by Brian Carlstrom and Kenny Root, Certificates can be
4176        // issued by name or ip address, for Google its by name so when we construct
4177        // this HostnameVerifier we'll pass the original Uri and use it to verify
4178        // the host. If the host name in the original uril fails we'll test the
4179        // hostname parameter just incase things change.
4180        static class CheckMpHostnameVerifier implements HostnameVerifier {
4181            Uri mOrgUri;
4182
4183            CheckMpHostnameVerifier(Uri orgUri) {
4184                mOrgUri = orgUri;
4185            }
4186
4187            @Override
4188            public boolean verify(String hostname, SSLSession session) {
4189                HostnameVerifier hv = HttpsURLConnection.getDefaultHostnameVerifier();
4190                String orgUriHost = mOrgUri.getHost();
4191                boolean retVal = hv.verify(orgUriHost, session) || hv.verify(hostname, session);
4192                if (DBG) {
4193                    log("isMobileOk: hostnameVerify retVal=" + retVal + " hostname=" + hostname
4194                        + " orgUriHost=" + orgUriHost);
4195                }
4196                return retVal;
4197            }
4198        }
4199
4200        /**
4201         * The call back object passed in Params. onComplete will be called
4202         * on the main thread.
4203         */
4204        abstract static class CallBack {
4205            // Called on the main thread.
4206            abstract void onComplete(Integer result);
4207        }
4208
4209        public CheckMp(Context context, ConnectivityService cs) {
4210            if (Build.IS_DEBUGGABLE) {
4211                mTestingFailures =
4212                        SystemProperties.getInt("persist.checkmp.testfailures", 0) == 1;
4213            } else {
4214                mTestingFailures = false;
4215            }
4216
4217            mContext = context;
4218            mCs = cs;
4219
4220            // Setup access to TelephonyService we'll be using.
4221            mTm = (TelephonyManager) mContext.getSystemService(
4222                    Context.TELEPHONY_SERVICE);
4223        }
4224
4225        /**
4226         * Get the default url to use for the test.
4227         */
4228        public String getDefaultUrl() {
4229            // See http://go/clientsdns for usage approval
4230            String server = Settings.Global.getString(mContext.getContentResolver(),
4231                    Settings.Global.CAPTIVE_PORTAL_SERVER);
4232            if (server == null) {
4233                server = "clients3.google.com";
4234            }
4235            return "http://" + server + "/generate_204";
4236        }
4237
4238        /**
4239         * Detect if its possible to connect to the http url. DNS based detection techniques
4240         * do not work at all hotspots. The best way to check is to perform a request to
4241         * a known address that fetches the data we expect.
4242         */
4243        private synchronized Integer isMobileOk(Params params) {
4244            Integer result = CMP_RESULT_CODE_NO_CONNECTION;
4245            Uri orgUri = Uri.parse(params.mUrl);
4246            Random rand = new Random();
4247            mParams = params;
4248
4249            if (mCs.isNetworkSupported(ConnectivityManager.TYPE_MOBILE) == false) {
4250                result = CMP_RESULT_CODE_NO_CONNECTION;
4251                log("isMobileOk: X not mobile capable result=" + result);
4252                return result;
4253            }
4254
4255            // See if we've already determined we've got a provisioning connection,
4256            // if so we don't need to do anything active.
4257            MobileDataStateTracker mdstDefault = (MobileDataStateTracker)
4258                    mCs.mNetTrackers[ConnectivityManager.TYPE_MOBILE];
4259            boolean isDefaultProvisioning = mdstDefault.isProvisioningNetwork();
4260            log("isMobileOk: isDefaultProvisioning=" + isDefaultProvisioning);
4261
4262            MobileDataStateTracker mdstHipri = (MobileDataStateTracker)
4263                    mCs.mNetTrackers[ConnectivityManager.TYPE_MOBILE_HIPRI];
4264            boolean isHipriProvisioning = mdstHipri.isProvisioningNetwork();
4265            log("isMobileOk: isHipriProvisioning=" + isHipriProvisioning);
4266
4267            if (isDefaultProvisioning || isHipriProvisioning) {
4268                result = CMP_RESULT_CODE_PROVISIONING_NETWORK;
4269                log("isMobileOk: X default || hipri is provisioning result=" + result);
4270                return result;
4271            }
4272
4273            try {
4274                // Continue trying to connect until time has run out
4275                long endTime = SystemClock.elapsedRealtime() + params.mTimeOutMs;
4276
4277                if (!mCs.isMobileDataStateTrackerReady()) {
4278                    // Wait for MobileDataStateTracker to be ready.
4279                    if (DBG) log("isMobileOk: mdst is not ready");
4280                    while(SystemClock.elapsedRealtime() < endTime) {
4281                        if (mCs.isMobileDataStateTrackerReady()) {
4282                            // Enable fail fast as we'll do retries here and use a
4283                            // hipri connection so the default connection stays active.
4284                            if (DBG) log("isMobileOk: mdst ready, enable fail fast of mobile data");
4285                            mCs.setEnableFailFastMobileData(DctConstants.ENABLED);
4286                            break;
4287                        }
4288                        sleep(POLLING_SLEEP_SEC);
4289                    }
4290                }
4291
4292                log("isMobileOk: start hipri url=" + params.mUrl);
4293
4294                // First wait until we can start using hipri
4295                Binder binder = new Binder();
4296                while(SystemClock.elapsedRealtime() < endTime) {
4297                    int ret = mCs.startUsingNetworkFeature(ConnectivityManager.TYPE_MOBILE,
4298                            Phone.FEATURE_ENABLE_HIPRI, binder);
4299                    if ((ret == PhoneConstants.APN_ALREADY_ACTIVE)
4300                        || (ret == PhoneConstants.APN_REQUEST_STARTED)) {
4301                            log("isMobileOk: hipri started");
4302                            break;
4303                    }
4304                    if (VDBG) log("isMobileOk: hipri not started yet");
4305                    result = CMP_RESULT_CODE_NO_CONNECTION;
4306                    sleep(POLLING_SLEEP_SEC);
4307                }
4308
4309                // Continue trying to connect until time has run out
4310                while(SystemClock.elapsedRealtime() < endTime) {
4311                    try {
4312                        // Wait for hipri to connect.
4313                        // TODO: Don't poll and handle situation where hipri fails
4314                        // because default is retrying. See b/9569540
4315                        NetworkInfo.State state = mCs
4316                                .getNetworkInfo(ConnectivityManager.TYPE_MOBILE_HIPRI).getState();
4317                        if (state != NetworkInfo.State.CONNECTED) {
4318                            if (true/*VDBG*/) {
4319                                log("isMobileOk: not connected ni=" +
4320                                    mCs.getNetworkInfo(ConnectivityManager.TYPE_MOBILE_HIPRI));
4321                            }
4322                            sleep(POLLING_SLEEP_SEC);
4323                            result = CMP_RESULT_CODE_NO_CONNECTION;
4324                            continue;
4325                        }
4326
4327                        // Hipri has started check if this is a provisioning url
4328                        MobileDataStateTracker mdst = (MobileDataStateTracker)
4329                                mCs.mNetTrackers[ConnectivityManager.TYPE_MOBILE_HIPRI];
4330                        if (mdst.isProvisioningNetwork()) {
4331                            result = CMP_RESULT_CODE_PROVISIONING_NETWORK;
4332                            if (DBG) log("isMobileOk: X isProvisioningNetwork result=" + result);
4333                            return result;
4334                        } else {
4335                            if (DBG) log("isMobileOk: isProvisioningNetwork is false, continue");
4336                        }
4337
4338                        // Get of the addresses associated with the url host. We need to use the
4339                        // address otherwise HttpURLConnection object will use the name to get
4340                        // the addresses and will try every address but that will bypass the
4341                        // route to host we setup and the connection could succeed as the default
4342                        // interface might be connected to the internet via wifi or other interface.
4343                        InetAddress[] addresses;
4344                        try {
4345                            addresses = InetAddress.getAllByName(orgUri.getHost());
4346                        } catch (UnknownHostException e) {
4347                            result = CMP_RESULT_CODE_NO_DNS;
4348                            log("isMobileOk: X UnknownHostException result=" + result);
4349                            return result;
4350                        }
4351                        log("isMobileOk: addresses=" + inetAddressesToString(addresses));
4352
4353                        // Get the type of addresses supported by this link
4354                        LinkProperties lp = mCs.getLinkProperties(
4355                                ConnectivityManager.TYPE_MOBILE_HIPRI);
4356                        boolean linkHasIpv4 = lp.hasIPv4Address();
4357                        boolean linkHasIpv6 = lp.hasIPv6Address();
4358                        log("isMobileOk: linkHasIpv4=" + linkHasIpv4
4359                                + " linkHasIpv6=" + linkHasIpv6);
4360
4361                        final ArrayList<InetAddress> validAddresses =
4362                                new ArrayList<InetAddress>(addresses.length);
4363
4364                        for (InetAddress addr : addresses) {
4365                            if (((addr instanceof Inet4Address) && linkHasIpv4) ||
4366                                    ((addr instanceof Inet6Address) && linkHasIpv6)) {
4367                                validAddresses.add(addr);
4368                            }
4369                        }
4370
4371                        if (validAddresses.size() == 0) {
4372                            return CMP_RESULT_CODE_NO_CONNECTION;
4373                        }
4374
4375                        int addrTried = 0;
4376                        while (true) {
4377                            // Loop through at most MAX_LOOPS valid addresses or until
4378                            // we run out of time
4379                            if (addrTried++ >= MAX_LOOPS) {
4380                                log("isMobileOk: too many loops tried - giving up");
4381                                break;
4382                            }
4383                            if (SystemClock.elapsedRealtime() >= endTime) {
4384                                log("isMobileOk: spend too much time - giving up");
4385                                break;
4386                            }
4387
4388                            InetAddress hostAddr = validAddresses.get(rand.nextInt(
4389                                    validAddresses.size()));
4390
4391                            // Make a route to host so we check the specific interface.
4392                            if (mCs.requestRouteToHostAddress(ConnectivityManager.TYPE_MOBILE_HIPRI,
4393                                    hostAddr.getAddress(), null)) {
4394                                // Wait a short time to be sure the route is established ??
4395                                log("isMobileOk:"
4396                                        + " wait to establish route to hostAddr=" + hostAddr);
4397                                sleep(NET_ROUTE_ESTABLISHMENT_SLEEP_SEC);
4398                            } else {
4399                                log("isMobileOk:"
4400                                        + " could not establish route to hostAddr=" + hostAddr);
4401                                // Wait a short time before the next attempt
4402                                sleep(NET_ERROR_SLEEP_SEC);
4403                                continue;
4404                            }
4405
4406                            // Rewrite the url to have numeric address to use the specific route
4407                            // using http for half the attempts and https for the other half.
4408                            // Doing https first and http second as on a redirected walled garden
4409                            // such as t-mobile uses we get a SocketTimeoutException: "SSL
4410                            // handshake timed out" which we declare as
4411                            // CMP_RESULT_CODE_NO_TCP_CONNECTION. We could change this, but by
4412                            // having http second we will be using logic used for some time.
4413                            URL newUrl;
4414                            String scheme = (addrTried <= (MAX_LOOPS/2)) ? "https" : "http";
4415                            newUrl = new URL(scheme, hostAddr.getHostAddress(),
4416                                        orgUri.getPath());
4417                            log("isMobileOk: newUrl=" + newUrl);
4418
4419                            HttpURLConnection urlConn = null;
4420                            try {
4421                                // Open the connection set the request headers and get the response
4422                                urlConn = (HttpURLConnection)newUrl.openConnection(
4423                                        java.net.Proxy.NO_PROXY);
4424                                if (scheme.equals("https")) {
4425                                    ((HttpsURLConnection)urlConn).setHostnameVerifier(
4426                                            new CheckMpHostnameVerifier(orgUri));
4427                                }
4428                                urlConn.setInstanceFollowRedirects(false);
4429                                urlConn.setConnectTimeout(SOCKET_TIMEOUT_MS);
4430                                urlConn.setReadTimeout(SOCKET_TIMEOUT_MS);
4431                                urlConn.setUseCaches(false);
4432                                urlConn.setAllowUserInteraction(false);
4433                                // Set the "Connection" to "Close" as by default "Keep-Alive"
4434                                // is used which is useless in this case.
4435                                urlConn.setRequestProperty("Connection", "close");
4436                                int responseCode = urlConn.getResponseCode();
4437
4438                                // For debug display the headers
4439                                Map<String, List<String>> headers = urlConn.getHeaderFields();
4440                                log("isMobileOk: headers=" + headers);
4441
4442                                // Close the connection
4443                                urlConn.disconnect();
4444                                urlConn = null;
4445
4446                                if (mTestingFailures) {
4447                                    // Pretend no connection, this tests using http and https
4448                                    result = CMP_RESULT_CODE_NO_CONNECTION;
4449                                    log("isMobileOk: TESTING_FAILURES, pretend no connction");
4450                                    continue;
4451                                }
4452
4453                                if (responseCode == 204) {
4454                                    // Return
4455                                    result = CMP_RESULT_CODE_CONNECTABLE;
4456                                    log("isMobileOk: X got expected responseCode=" + responseCode
4457                                            + " result=" + result);
4458                                    return result;
4459                                } else {
4460                                    // Retry to be sure this was redirected, we've gotten
4461                                    // occasions where a server returned 200 even though
4462                                    // the device didn't have a "warm" sim.
4463                                    log("isMobileOk: not expected responseCode=" + responseCode);
4464                                    // TODO - it would be nice in the single-address case to do
4465                                    // another DNS resolve here, but flushing the cache is a bit
4466                                    // heavy-handed.
4467                                    result = CMP_RESULT_CODE_REDIRECTED;
4468                                }
4469                            } catch (Exception e) {
4470                                log("isMobileOk: HttpURLConnection Exception" + e);
4471                                result = CMP_RESULT_CODE_NO_TCP_CONNECTION;
4472                                if (urlConn != null) {
4473                                    urlConn.disconnect();
4474                                    urlConn = null;
4475                                }
4476                                sleep(NET_ERROR_SLEEP_SEC);
4477                                continue;
4478                            }
4479                        }
4480                        log("isMobileOk: X loops|timed out result=" + result);
4481                        return result;
4482                    } catch (Exception e) {
4483                        log("isMobileOk: Exception e=" + e);
4484                        continue;
4485                    }
4486                }
4487                log("isMobileOk: timed out");
4488            } finally {
4489                log("isMobileOk: F stop hipri");
4490                mCs.setEnableFailFastMobileData(DctConstants.DISABLED);
4491                mCs.stopUsingNetworkFeature(ConnectivityManager.TYPE_MOBILE,
4492                        Phone.FEATURE_ENABLE_HIPRI);
4493
4494                // Wait for hipri to disconnect.
4495                long endTime = SystemClock.elapsedRealtime() + 5000;
4496
4497                while(SystemClock.elapsedRealtime() < endTime) {
4498                    NetworkInfo.State state = mCs
4499                            .getNetworkInfo(ConnectivityManager.TYPE_MOBILE_HIPRI).getState();
4500                    if (state != NetworkInfo.State.DISCONNECTED) {
4501                        if (VDBG) {
4502                            log("isMobileOk: connected ni=" +
4503                                mCs.getNetworkInfo(ConnectivityManager.TYPE_MOBILE_HIPRI));
4504                        }
4505                        sleep(POLLING_SLEEP_SEC);
4506                        continue;
4507                    }
4508                }
4509
4510                log("isMobileOk: X result=" + result);
4511            }
4512            return result;
4513        }
4514
4515        @Override
4516        protected Integer doInBackground(Params... params) {
4517            return isMobileOk(params[0]);
4518        }
4519
4520        @Override
4521        protected void onPostExecute(Integer result) {
4522            log("onPostExecute: result=" + result);
4523            if ((mParams != null) && (mParams.mCb != null)) {
4524                mParams.mCb.onComplete(result);
4525            }
4526        }
4527
4528        private String inetAddressesToString(InetAddress[] addresses) {
4529            StringBuffer sb = new StringBuffer();
4530            boolean firstTime = true;
4531            for(InetAddress addr : addresses) {
4532                if (firstTime) {
4533                    firstTime = false;
4534                } else {
4535                    sb.append(",");
4536                }
4537                sb.append(addr);
4538            }
4539            return sb.toString();
4540        }
4541
4542        private void printNetworkInfo() {
4543            boolean hasIccCard = mTm.hasIccCard();
4544            int simState = mTm.getSimState();
4545            log("hasIccCard=" + hasIccCard
4546                    + " simState=" + simState);
4547            NetworkInfo[] ni = mCs.getAllNetworkInfo();
4548            if (ni != null) {
4549                log("ni.length=" + ni.length);
4550                for (NetworkInfo netInfo: ni) {
4551                    log("netInfo=" + netInfo.toString());
4552                }
4553            } else {
4554                log("no network info ni=null");
4555            }
4556        }
4557
4558        /**
4559         * Sleep for a few seconds then return.
4560         * @param seconds
4561         */
4562        private static void sleep(int seconds) {
4563            log("XXXXX sleeping for " + seconds + " sec");
4564            long stopTime = System.nanoTime() + (seconds * 1000000000);
4565            long sleepTime;
4566            while ((sleepTime = stopTime - System.nanoTime()) > 0) {
4567                try {
4568                    Thread.sleep(sleepTime / 1000000);
4569                } catch (InterruptedException ignored) {
4570                }
4571            }
4572            log("XXXXX returning from sleep");
4573        }
4574
4575        private static void log(String s) {
4576            Slog.d(ConnectivityService.TAG, "[" + CHECKMP_TAG + "] " + s);
4577        }
4578    }
4579
4580    // TODO: Move to ConnectivityManager and make public?
4581    private static final String CONNECTED_TO_PROVISIONING_NETWORK_ACTION =
4582            "com.android.server.connectivityservice.CONNECTED_TO_PROVISIONING_NETWORK_ACTION";
4583
4584    private BroadcastReceiver mProvisioningReceiver = new BroadcastReceiver() {
4585        @Override
4586        public void onReceive(Context context, Intent intent) {
4587            if (intent.getAction().equals(CONNECTED_TO_PROVISIONING_NETWORK_ACTION)) {
4588                handleMobileProvisioningAction(intent.getStringExtra("EXTRA_URL"));
4589            }
4590        }
4591    };
4592
4593    private void handleMobileProvisioningAction(String url) {
4594        // Notication mark notification as not visible
4595        setProvNotificationVisible(false, ConnectivityManager.TYPE_MOBILE_HIPRI, null, null);
4596
4597        // If provisioning network handle as a special case,
4598        // otherwise launch browser with the intent directly.
4599        NetworkInfo ni = getProvisioningNetworkInfo();
4600        if ((ni != null) && ni.isConnectedToProvisioningNetwork()) {
4601            if (DBG) log("handleMobileProvisioningAction: on provisioning network");
4602            MobileDataStateTracker mdst = (MobileDataStateTracker)
4603                    mNetTrackers[ConnectivityManager.TYPE_MOBILE];
4604            mdst.enableMobileProvisioning(url);
4605        } else {
4606            if (DBG) log("handleMobileProvisioningAction: on default network");
4607            // Check for  apps that can handle provisioning first
4608            Intent provisioningIntent = new Intent(TelephonyIntents.ACTION_CARRIER_SETUP);
4609            provisioningIntent.addCategory(TelephonyIntents.CATEGORY_MCCMNC_PREFIX
4610                    + mTelephonyManager.getSimOperator());
4611            if (mContext.getPackageManager().resolveActivity(provisioningIntent, 0 /* flags */)
4612                    != null) {
4613                provisioningIntent.setFlags(Intent.FLAG_ACTIVITY_BROUGHT_TO_FRONT |
4614                        Intent.FLAG_ACTIVITY_NEW_TASK);
4615                mContext.startActivity(provisioningIntent);
4616            } else {
4617                // If no apps exist, use standard URL ACTION_VIEW method
4618                Intent newIntent = Intent.makeMainSelectorActivity(Intent.ACTION_MAIN,
4619                        Intent.CATEGORY_APP_BROWSER);
4620                newIntent.setData(Uri.parse(url));
4621                newIntent.setFlags(Intent.FLAG_ACTIVITY_BROUGHT_TO_FRONT |
4622                        Intent.FLAG_ACTIVITY_NEW_TASK);
4623                try {
4624                    mContext.startActivity(newIntent);
4625                } catch (ActivityNotFoundException e) {
4626                    loge("handleMobileProvisioningAction: startActivity failed" + e);
4627                }
4628            }
4629        }
4630    }
4631
4632    private static final String NOTIFICATION_ID = "CaptivePortal.Notification";
4633    private volatile boolean mIsNotificationVisible = false;
4634
4635    private void setProvNotificationVisible(boolean visible, int networkType, String extraInfo,
4636            String url) {
4637        if (DBG) {
4638            log("setProvNotificationVisible: E visible=" + visible + " networkType=" + networkType
4639                + " extraInfo=" + extraInfo + " url=" + url);
4640        }
4641
4642        Resources r = Resources.getSystem();
4643        NotificationManager notificationManager = (NotificationManager) mContext
4644            .getSystemService(Context.NOTIFICATION_SERVICE);
4645
4646        if (visible) {
4647            CharSequence title;
4648            CharSequence details;
4649            int icon;
4650            Intent intent;
4651            Notification notification = new Notification();
4652            switch (networkType) {
4653                case ConnectivityManager.TYPE_WIFI:
4654                    title = r.getString(R.string.wifi_available_sign_in, 0);
4655                    details = r.getString(R.string.network_available_sign_in_detailed,
4656                            extraInfo);
4657                    icon = R.drawable.stat_notify_wifi_in_range;
4658                    intent = new Intent(Intent.ACTION_VIEW, Uri.parse(url));
4659                    intent.setFlags(Intent.FLAG_ACTIVITY_BROUGHT_TO_FRONT |
4660                            Intent.FLAG_ACTIVITY_NEW_TASK);
4661                    notification.contentIntent = PendingIntent.getActivity(mContext, 0, intent, 0);
4662                    break;
4663                case ConnectivityManager.TYPE_MOBILE:
4664                case ConnectivityManager.TYPE_MOBILE_HIPRI:
4665                    title = r.getString(R.string.network_available_sign_in, 0);
4666                    // TODO: Change this to pull from NetworkInfo once a printable
4667                    // name has been added to it
4668                    details = mTelephonyManager.getNetworkOperatorName();
4669                    icon = R.drawable.stat_notify_rssi_in_range;
4670                    intent = new Intent(CONNECTED_TO_PROVISIONING_NETWORK_ACTION);
4671                    intent.putExtra("EXTRA_URL", url);
4672                    intent.setFlags(0);
4673                    notification.contentIntent = PendingIntent.getBroadcast(mContext, 0, intent, 0);
4674                    break;
4675                default:
4676                    title = r.getString(R.string.network_available_sign_in, 0);
4677                    details = r.getString(R.string.network_available_sign_in_detailed,
4678                            extraInfo);
4679                    icon = R.drawable.stat_notify_rssi_in_range;
4680                    intent = new Intent(Intent.ACTION_VIEW, Uri.parse(url));
4681                    intent.setFlags(Intent.FLAG_ACTIVITY_BROUGHT_TO_FRONT |
4682                            Intent.FLAG_ACTIVITY_NEW_TASK);
4683                    notification.contentIntent = PendingIntent.getActivity(mContext, 0, intent, 0);
4684                    break;
4685            }
4686
4687            notification.when = 0;
4688            notification.icon = icon;
4689            notification.flags = Notification.FLAG_AUTO_CANCEL;
4690            notification.tickerText = title;
4691            notification.setLatestEventInfo(mContext, title, details, notification.contentIntent);
4692
4693            try {
4694                notificationManager.notify(NOTIFICATION_ID, networkType, notification);
4695            } catch (NullPointerException npe) {
4696                loge("setNotificaitionVisible: visible notificationManager npe=" + npe);
4697                npe.printStackTrace();
4698            }
4699        } else {
4700            try {
4701                notificationManager.cancel(NOTIFICATION_ID, networkType);
4702            } catch (NullPointerException npe) {
4703                loge("setNotificaitionVisible: cancel notificationManager npe=" + npe);
4704                npe.printStackTrace();
4705            }
4706        }
4707        mIsNotificationVisible = visible;
4708    }
4709
4710    /** Location to an updatable file listing carrier provisioning urls.
4711     *  An example:
4712     *
4713     * <?xml version="1.0" encoding="utf-8"?>
4714     *  <provisioningUrls>
4715     *   <provisioningUrl mcc="310" mnc="4">http://myserver.com/foo?mdn=%3$s&iccid=%1$s&imei=%2$s</provisioningUrl>
4716     *   <redirectedUrl mcc="310" mnc="4">http://www.google.com</redirectedUrl>
4717     *  </provisioningUrls>
4718     */
4719    private static final String PROVISIONING_URL_PATH =
4720            "/data/misc/radio/provisioning_urls.xml";
4721    private final File mProvisioningUrlFile = new File(PROVISIONING_URL_PATH);
4722
4723    /** XML tag for root element. */
4724    private static final String TAG_PROVISIONING_URLS = "provisioningUrls";
4725    /** XML tag for individual url */
4726    private static final String TAG_PROVISIONING_URL = "provisioningUrl";
4727    /** XML tag for redirected url */
4728    private static final String TAG_REDIRECTED_URL = "redirectedUrl";
4729    /** XML attribute for mcc */
4730    private static final String ATTR_MCC = "mcc";
4731    /** XML attribute for mnc */
4732    private static final String ATTR_MNC = "mnc";
4733
4734    private static final int REDIRECTED_PROVISIONING = 1;
4735    private static final int PROVISIONING = 2;
4736
4737    private String getProvisioningUrlBaseFromFile(int type) {
4738        FileReader fileReader = null;
4739        XmlPullParser parser = null;
4740        Configuration config = mContext.getResources().getConfiguration();
4741        String tagType;
4742
4743        switch (type) {
4744            case PROVISIONING:
4745                tagType = TAG_PROVISIONING_URL;
4746                break;
4747            case REDIRECTED_PROVISIONING:
4748                tagType = TAG_REDIRECTED_URL;
4749                break;
4750            default:
4751                throw new RuntimeException("getProvisioningUrlBaseFromFile: Unexpected parameter " +
4752                        type);
4753        }
4754
4755        try {
4756            fileReader = new FileReader(mProvisioningUrlFile);
4757            parser = Xml.newPullParser();
4758            parser.setInput(fileReader);
4759            XmlUtils.beginDocument(parser, TAG_PROVISIONING_URLS);
4760
4761            while (true) {
4762                XmlUtils.nextElement(parser);
4763
4764                String element = parser.getName();
4765                if (element == null) break;
4766
4767                if (element.equals(tagType)) {
4768                    String mcc = parser.getAttributeValue(null, ATTR_MCC);
4769                    try {
4770                        if (mcc != null && Integer.parseInt(mcc) == config.mcc) {
4771                            String mnc = parser.getAttributeValue(null, ATTR_MNC);
4772                            if (mnc != null && Integer.parseInt(mnc) == config.mnc) {
4773                                parser.next();
4774                                if (parser.getEventType() == XmlPullParser.TEXT) {
4775                                    return parser.getText();
4776                                }
4777                            }
4778                        }
4779                    } catch (NumberFormatException e) {
4780                        loge("NumberFormatException in getProvisioningUrlBaseFromFile: " + e);
4781                    }
4782                }
4783            }
4784            return null;
4785        } catch (FileNotFoundException e) {
4786            loge("Carrier Provisioning Urls file not found");
4787        } catch (XmlPullParserException e) {
4788            loge("Xml parser exception reading Carrier Provisioning Urls file: " + e);
4789        } catch (IOException e) {
4790            loge("I/O exception reading Carrier Provisioning Urls file: " + e);
4791        } finally {
4792            if (fileReader != null) {
4793                try {
4794                    fileReader.close();
4795                } catch (IOException e) {}
4796            }
4797        }
4798        return null;
4799    }
4800
4801    @Override
4802    public String getMobileRedirectedProvisioningUrl() {
4803        enforceConnectivityInternalPermission();
4804        String url = getProvisioningUrlBaseFromFile(REDIRECTED_PROVISIONING);
4805        if (TextUtils.isEmpty(url)) {
4806            url = mContext.getResources().getString(R.string.mobile_redirected_provisioning_url);
4807        }
4808        return url;
4809    }
4810
4811    @Override
4812    public String getMobileProvisioningUrl() {
4813        enforceConnectivityInternalPermission();
4814        String url = getProvisioningUrlBaseFromFile(PROVISIONING);
4815        if (TextUtils.isEmpty(url)) {
4816            url = mContext.getResources().getString(R.string.mobile_provisioning_url);
4817            log("getMobileProvisioningUrl: mobile_provisioining_url from resource =" + url);
4818        } else {
4819            log("getMobileProvisioningUrl: mobile_provisioning_url from File =" + url);
4820        }
4821        // populate the iccid, imei and phone number in the provisioning url.
4822        if (!TextUtils.isEmpty(url)) {
4823            String phoneNumber = mTelephonyManager.getLine1Number();
4824            if (TextUtils.isEmpty(phoneNumber)) {
4825                phoneNumber = "0000000000";
4826            }
4827            url = String.format(url,
4828                    mTelephonyManager.getSimSerialNumber() /* ICCID */,
4829                    mTelephonyManager.getDeviceId() /* IMEI */,
4830                    phoneNumber /* Phone numer */);
4831        }
4832
4833        return url;
4834    }
4835
4836    @Override
4837    public void setProvisioningNotificationVisible(boolean visible, int networkType,
4838            String extraInfo, String url) {
4839        enforceConnectivityInternalPermission();
4840        setProvNotificationVisible(visible, networkType, extraInfo, url);
4841    }
4842
4843    @Override
4844    public void setAirplaneMode(boolean enable) {
4845        enforceConnectivityInternalPermission();
4846        final long ident = Binder.clearCallingIdentity();
4847        try {
4848            final ContentResolver cr = mContext.getContentResolver();
4849            Settings.Global.putInt(cr, Settings.Global.AIRPLANE_MODE_ON, enable ? 1 : 0);
4850            Intent intent = new Intent(Intent.ACTION_AIRPLANE_MODE_CHANGED);
4851            intent.putExtra("state", enable);
4852            mContext.sendBroadcast(intent);
4853        } finally {
4854            Binder.restoreCallingIdentity(ident);
4855        }
4856    }
4857
4858    private void onUserStart(int userId) {
4859        synchronized(mVpns) {
4860            Vpn userVpn = mVpns.get(userId);
4861            if (userVpn != null) {
4862                loge("Starting user already has a VPN");
4863                return;
4864            }
4865            userVpn = new Vpn(mContext, mVpnCallback, mNetd, this, userId);
4866            mVpns.put(userId, userVpn);
4867            userVpn.startMonitoring(mContext, mTrackerHandler);
4868        }
4869    }
4870
4871    private void onUserStop(int userId) {
4872        synchronized(mVpns) {
4873            Vpn userVpn = mVpns.get(userId);
4874            if (userVpn == null) {
4875                loge("Stopping user has no VPN");
4876                return;
4877            }
4878            mVpns.delete(userId);
4879        }
4880    }
4881
4882    private BroadcastReceiver mUserIntentReceiver = new BroadcastReceiver() {
4883        @Override
4884        public void onReceive(Context context, Intent intent) {
4885            final String action = intent.getAction();
4886            final int userId = intent.getIntExtra(Intent.EXTRA_USER_HANDLE, UserHandle.USER_NULL);
4887            if (userId == UserHandle.USER_NULL) return;
4888
4889            if (Intent.ACTION_USER_STARTING.equals(action)) {
4890                onUserStart(userId);
4891            } else if (Intent.ACTION_USER_STOPPING.equals(action)) {
4892                onUserStop(userId);
4893            }
4894        }
4895    };
4896
4897    @Override
4898    public LinkQualityInfo getLinkQualityInfo(int networkType) {
4899        enforceAccessPermission();
4900        if (isNetworkTypeValid(networkType)) {
4901            return mNetTrackers[networkType].getLinkQualityInfo();
4902        } else {
4903            return null;
4904        }
4905    }
4906
4907    @Override
4908    public LinkQualityInfo getActiveLinkQualityInfo() {
4909        enforceAccessPermission();
4910        if (isNetworkTypeValid(mActiveDefaultNetwork)) {
4911            return mNetTrackers[mActiveDefaultNetwork].getLinkQualityInfo();
4912        } else {
4913            return null;
4914        }
4915    }
4916
4917    @Override
4918    public LinkQualityInfo[] getAllLinkQualityInfo() {
4919        enforceAccessPermission();
4920        final ArrayList<LinkQualityInfo> result = Lists.newArrayList();
4921        for (NetworkStateTracker tracker : mNetTrackers) {
4922            if (tracker != null) {
4923                LinkQualityInfo li = tracker.getLinkQualityInfo();
4924                if (li != null) {
4925                    result.add(li);
4926                }
4927            }
4928        }
4929
4930        return result.toArray(new LinkQualityInfo[result.size()]);
4931    }
4932
4933    /* Infrastructure for network sampling */
4934
4935    private void handleNetworkSamplingTimeout() {
4936
4937        log("Sampling interval elapsed, updating statistics ..");
4938
4939        // initialize list of interfaces ..
4940        Map<String, SamplingDataTracker.SamplingSnapshot> mapIfaceToSample =
4941                new HashMap<String, SamplingDataTracker.SamplingSnapshot>();
4942        for (NetworkStateTracker tracker : mNetTrackers) {
4943            if (tracker != null) {
4944                String ifaceName = tracker.getNetworkInterfaceName();
4945                if (ifaceName != null) {
4946                    mapIfaceToSample.put(ifaceName, null);
4947                }
4948            }
4949        }
4950
4951        // Read samples for all interfaces
4952        SamplingDataTracker.getSamplingSnapshots(mapIfaceToSample);
4953
4954        // process samples for all networks
4955        for (NetworkStateTracker tracker : mNetTrackers) {
4956            if (tracker != null) {
4957                String ifaceName = tracker.getNetworkInterfaceName();
4958                SamplingDataTracker.SamplingSnapshot ss = mapIfaceToSample.get(ifaceName);
4959                if (ss != null) {
4960                    // end the previous sampling cycle
4961                    tracker.stopSampling(ss);
4962                    // start a new sampling cycle ..
4963                    tracker.startSampling(ss);
4964                }
4965            }
4966        }
4967
4968        log("Done.");
4969
4970        int samplingIntervalInSeconds = Settings.Global.getInt(mContext.getContentResolver(),
4971                Settings.Global.CONNECTIVITY_SAMPLING_INTERVAL_IN_SECONDS,
4972                DEFAULT_SAMPLING_INTERVAL_IN_SECONDS);
4973
4974        if (DBG) log("Setting timer for " + String.valueOf(samplingIntervalInSeconds) + "seconds");
4975
4976        setAlarm(samplingIntervalInSeconds * 1000, mSampleIntervalElapsedIntent);
4977    }
4978
4979    void setAlarm(int timeoutInMilliseconds, PendingIntent intent) {
4980        long wakeupTime = SystemClock.elapsedRealtime() + timeoutInMilliseconds;
4981        mAlarmManager.set(AlarmManager.ELAPSED_REALTIME_WAKEUP, wakeupTime, intent);
4982    }
4983}
4984