1 /*
2  * Copyright (c) 2022-2023 Huawei Device Co., Ltd.
3  * Licensed under the Apache License, Version 2.0 (the "License");
4  * you may not use this file except in compliance with the License.
5  * You may obtain a copy of the License at
6  *
7  *     http://www.apache.org/licenses/LICENSE-2.0
8  *
9  * Unless required by applicable law or agreed to in writing, software
10  * distributed under the License is distributed on an "AS IS" BASIS,
11  * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12  * See the License for the specific language governing permissions and
13  * limitations under the License.
14  */
15 #ifndef I_NETSYS_SERVICE_H
16 #define I_NETSYS_SERVICE_H
17 
18 #include <netdb.h>
19 #include <string>
20 #include <set>
21 
22 #include "dns_config_client.h"
23 #include "i_net_diag_callback.h"
24 #include "i_notify_callback.h"
25 #include "i_net_dns_result_callback.h"
26 #include "i_net_dns_health_callback.h"
27 #include "interface_type.h"
28 #include "iremote_broker.h"
29 #include "net_stats_info.h"
30 #include "network_sharing.h"
31 #include "netsys_ipc_interface_code.h"
32 #include "route_type.h"
33 #ifdef FEATURE_NET_FIREWALL_ENABLE
34 #include "i_netfirewall_callback.h"
35 #include "netfirewall_parcel.h"
36 #endif
37 #include "uid_range.h"
38 #include "netsys_access_policy.h"
39 #include "net_all_capabilities.h"
40 
41 namespace OHOS {
42 namespace NetsysNative {
43 using namespace nmd;
44 using namespace OHOS::NetManagerStandard;
45 enum IptablesType {
46     IPTYPE_IPV4 = 1,
47     IPTYPE_IPV6 = 2,
48     IPTYPE_IPV4V6 = 3,
49 };
50 enum SysVpnStageCode : int32_t {
51     VPN_STAGE_RESTART = 0, // common stage. start charon
52     VPN_STAGE_UP_HOME, // common stage. connect "home" configuration
53     VPN_STAGE_DOWN_HOME, // common stage. disconnect "home" configuration
54     VPN_STAGE_STOP, // common stage. stop charon
55     VPN_STAGE_SWANCTL_LOAD, // ikev2 vpn. load ikev2 vpn config file
56     VPN_STAGE_L2TP_LOAD, // l2tp vpn. load l2tp vpn config file
57     VPN_STAGE_L2TP_CTL, // l2tp vpn. control pppd running
58     VPN_STAGE_OPENVPN_RESTART, // openvpn. restart openvpn
59     VPN_STAGE_OPENVPN_STOP, // openvpn. stop openvpn
60 };
61 class INetsysService : public IRemoteBroker {
62 public:
63     virtual int32_t SetResolverConfig(uint16_t netId, uint16_t baseTimeoutMsec, uint8_t retryCount,
64                                       const std::vector<std::string> &servers,
65                                       const std::vector<std::string> &domains) = 0;
66     virtual int32_t GetResolverConfig(uint16_t netId, std::vector<std::string> &servers,
67                                       std::vector<std::string> &domains, uint16_t &baseTimeoutMsec,
68                                       uint8_t &retryCount) = 0;
69     virtual int32_t CreateNetworkCache(uint16_t netId) = 0;
70     virtual int32_t DestroyNetworkCache(uint16_t netId) = 0;
71     virtual int32_t GetAddrInfo(const std::string &hostName, const std::string &serverName, const AddrInfo &hints,
72                                 uint16_t netId, std::vector<AddrInfo> &res) = 0;
73     virtual int32_t SetInterfaceMtu(const std::string &interfaceName, int mtu) = 0;
74     virtual int32_t GetInterfaceMtu(const std::string &interfaceName) = 0;
75 
76     virtual int32_t SetTcpBufferSizes(const std::string &tcpBufferSizes) = 0;
77 
78     virtual int32_t RegisterNotifyCallback(sptr<INotifyCallback> &callback) = 0;
79     virtual int32_t UnRegisterNotifyCallback(sptr<INotifyCallback> &callback) = 0;
80 
81     virtual int32_t NetworkAddRoute(int32_t netId, const std::string &interfaceName, const std::string &destination,
82                                     const std::string &nextHop) = 0;
83     virtual int32_t NetworkRemoveRoute(int32_t netId, const std::string &interfaceName, const std::string &destination,
84                                        const std::string &nextHop) = 0;
85     virtual int32_t NetworkAddRouteParcel(int32_t netId, const RouteInfoParcel &routeInfo) = 0;
86     virtual int32_t NetworkRemoveRouteParcel(int32_t netId, const RouteInfoParcel &routeInfo) = 0;
87     virtual int32_t NetworkSetDefault(int32_t netId) = 0;
88     virtual int32_t NetworkGetDefault() = 0;
89     virtual int32_t NetworkClearDefault() = 0;
90     virtual int32_t GetProcSysNet(int32_t family, int32_t which, const std::string &ifname,
91                                   const std::string &parameter, std::string &value) = 0;
92     virtual int32_t SetProcSysNet(int32_t family, int32_t which, const std::string &ifname,
93                                   const std::string &parameter, std::string &value) = 0;
94     virtual int32_t SetInternetPermission(uint32_t uid, uint8_t allow, uint8_t isBroker) = 0;
95     virtual int32_t NetworkCreatePhysical(int32_t netId, int32_t permission) = 0;
96     virtual int32_t NetworkCreateVirtual(int32_t netId, bool hasDns) = 0;
97     virtual int32_t NetworkAddUids(int32_t netId, const std::vector<UidRange> &uidRanges) = 0;
98     virtual int32_t NetworkDelUids(int32_t netId, const std::vector<UidRange> &uidRanges) = 0;
99     virtual int32_t AddInterfaceAddress(const std::string &interfaceName, const std::string &addrString,
100                                         int32_t prefixLength) = 0;
101     virtual int32_t DelInterfaceAddress(const std::string &interfaceName, const std::string &addrString,
102                                         int32_t prefixLength) = 0;
103     virtual int32_t DelInterfaceAddress(const std::string &interfaceName, const std::string &addrString,
104                                         int32_t prefixLength, const std::string &netCapabilities) = 0;
105     virtual int32_t InterfaceSetIpAddress(const std::string &ifaceName, const std::string &ipAddress) = 0;
106     virtual int32_t InterfaceSetIffUp(const std::string &ifaceName) = 0;
107     virtual int32_t NetworkAddInterface(int32_t netId, const std::string &iface, NetBearType netBearerType) = 0;
108     virtual int32_t NetworkRemoveInterface(int32_t netId, const std::string &iface) = 0;
109     virtual int32_t NetworkDestroy(int32_t netId) = 0;
110     virtual int32_t CreateVnic(uint16_t mtu, const std::string &tunAddr, int32_t prefix,
111                                const std::set<int32_t> &uids) = 0;
112     virtual int32_t DestroyVnic() = 0;
113     virtual int32_t EnableDistributedClientNet(const std::string &virnicAddr, const std::string &iif) = 0;
114     virtual int32_t EnableDistributedServerNet(const std::string &iif, const std::string &devIface,
115                                                const std::string &dstAddr) = 0;
116     virtual int32_t DisableDistributedNet(bool isServer) = 0;
117     virtual int32_t GetFwmarkForNetwork(int32_t netId, MarkMaskParcel &markMaskParcel) = 0;
118     virtual int32_t SetInterfaceConfig(const InterfaceConfigurationParcel &cfg) = 0;
119     virtual int32_t GetInterfaceConfig(InterfaceConfigurationParcel &cfg) = 0;
120     virtual int32_t InterfaceGetList(std::vector<std::string> &ifaces) = 0;
121     virtual int32_t StartDhcpClient(const std::string &iface, bool bIpv6) = 0;
122     virtual int32_t StopDhcpClient(const std::string &iface, bool bIpv6) = 0;
123     virtual int32_t StartDhcpService(const std::string &iface, const std::string &ipv4addr) = 0;
124     virtual int32_t StopDhcpService(const std::string &iface) = 0;
125     virtual int32_t IpEnableForwarding(const std::string &requestor) = 0;
126     virtual int32_t IpDisableForwarding(const std::string &requestor) = 0;
127     virtual int32_t EnableNat(const std::string &downstreamIface, const std::string &upstreamIface) = 0;
128     virtual int32_t DisableNat(const std::string &downstreamIface, const std::string &upstreamIface) = 0;
129     virtual int32_t IpfwdAddInterfaceForward(const std::string &fromIface, const std::string &toIface) = 0;
130     virtual int32_t IpfwdRemoveInterfaceForward(const std::string &fromIface, const std::string &toIface) = 0;
131     virtual int32_t BandwidthAddAllowedList(uint32_t uid) = 0;
132     virtual int32_t BandwidthRemoveAllowedList(uint32_t uid) = 0;
133     virtual int32_t BandwidthEnableDataSaver(bool enable) = 0;
134     virtual int32_t BandwidthSetIfaceQuota(const std::string &ifName, int64_t bytes) = 0;
135     virtual int32_t BandwidthAddDeniedList(uint32_t uid) = 0;
136     virtual int32_t BandwidthRemoveDeniedList(uint32_t uid) = 0;
137     virtual int32_t BandwidthRemoveIfaceQuota(const std::string &ifName) = 0;
138     virtual int32_t FirewallSetUidsAllowedListChain(uint32_t chain, const std::vector<uint32_t> &uids) = 0;
139     virtual int32_t FirewallSetUidsDeniedListChain(uint32_t chain, const std::vector<uint32_t> &uids) = 0;
140     virtual int32_t FirewallEnableChain(uint32_t chain, bool enable) = 0;
141     virtual int32_t FirewallSetUidRule(uint32_t chain, const std::vector<uint32_t> &uids, uint32_t firewallRule) = 0;
142     virtual int32_t ShareDnsSet(uint16_t netId) = 0;
143     virtual int32_t StartDnsProxyListen() = 0;
144     virtual int32_t StopDnsProxyListen() = 0;
145     virtual int32_t GetNetworkSharingTraffic(const std::string &downIface, const std::string &upIface,
146                                              NetworkSharingTraffic &traffic) = 0;
147     virtual int32_t GetTotalStats(uint64_t &stats, uint32_t type) = 0;
148     virtual int32_t GetUidStats(uint64_t &stats, uint32_t type, uint32_t uid) = 0;
149     virtual int32_t GetIfaceStats(uint64_t &stats, uint32_t type, const std::string &interfaceName) = 0;
150     virtual int32_t GetAllStatsInfo(std::vector<OHOS::NetManagerStandard::NetStatsInfo> &stats) = 0;
151     virtual int32_t DeleteStatsInfo(uint32_t uid) = 0;
152     virtual int32_t GetAllSimStatsInfo(std::vector<OHOS::NetManagerStandard::NetStatsInfo> &stats) = 0;
153     virtual int32_t DeleteSimStatsInfo(uint32_t uid) = 0;
154     virtual int32_t SetIptablesCommandForRes(const std::string &cmd, std::string &respond,
155                                              IptablesType ipType = IPTYPE_IPV4) = 0;
156     virtual int32_t NetDiagPingHost(const NetDiagPingOption &pingOption, const sptr<INetDiagCallback> &callback) = 0;
157     virtual int32_t NetDiagGetRouteTable(std::list<NetDiagRouteTable> &routeTables) = 0;
158     virtual int32_t NetDiagGetSocketsInfo(NetDiagProtocolType socketType, NetDiagSocketsInfo &socketsInfo) = 0;
159     virtual int32_t NetDiagGetInterfaceConfig(std::list<NetDiagIfaceConfig> &configs, const std::string &ifaceName) = 0;
160     virtual int32_t NetDiagUpdateInterfaceConfig(const NetDiagIfaceConfig &config, const std::string &ifaceName,
161                                                  bool add) = 0;
162     virtual int32_t NetDiagSetInterfaceActiveState(const std::string &ifaceName, bool up) = 0;
163     virtual int32_t AddStaticArp(const std::string &ipAddr, const std::string &macAddr,
164                                  const std::string &ifName) = 0;
165     virtual int32_t DelStaticArp(const std::string &ipAddr, const std::string &macAddr,
166                                  const std::string &ifName) = 0;
167     virtual int32_t RegisterDnsResultCallback(const sptr<INetDnsResultCallback> &callback, uint32_t delay) = 0;
168     virtual int32_t UnregisterDnsResultCallback(const sptr<INetDnsResultCallback> &callback) = 0;
169     virtual int32_t RegisterDnsHealthCallback(const sptr<INetDnsHealthCallback> &callback) = 0;
170     virtual int32_t UnregisterDnsHealthCallback(const sptr<INetDnsHealthCallback> &callback) = 0;
171     virtual int32_t GetCookieStats(uint64_t &stats, uint32_t type, uint64_t cookie) = 0;
172     virtual int32_t GetNetworkSharingType(std::set<uint32_t>& sharingTypeIsOn) = 0;
173     virtual int32_t UpdateNetworkSharingType(uint32_t type, bool isOpen) = 0;
174 #ifdef FEATURE_NET_FIREWALL_ENABLE
175     virtual int32_t SetFirewallRules(NetFirewallRuleType type, const std::vector<sptr<NetFirewallBaseRule>> &ruleList,
176                                      bool isFinish) = 0;
177     virtual int32_t SetFirewallDefaultAction(FirewallRuleAction inDefault, FirewallRuleAction outDefault) = 0;
178     virtual int32_t SetFirewallCurrentUserId(int32_t userId) = 0;
179     virtual int32_t ClearFirewallRules(NetFirewallRuleType type) = 0;
180     virtual int32_t RegisterNetFirewallCallback(const sptr<INetFirewallCallback> &callback) = 0;
181     virtual int32_t UnRegisterNetFirewallCallback(const sptr<INetFirewallCallback> &callback) = 0;
182 #endif
183 #ifdef FEATURE_WEARABLE_DISTRIBUTED_NET_ENABLE
184     virtual int32_t EnableWearableDistributedNetForward(const int32_t tcpPortId, const int32_t udpPortId) = 0;
185     virtual int32_t DisableWearableDistributedNetForward() = 0;
186 #endif
187     virtual int32_t SetIpv6PrivacyExtensions(const std::string &interfaceName, const uint32_t on) = 0;
188     virtual int32_t SetEnableIpv6(const std::string &interfaceName, const uint32_t on) = 0;
189     virtual int32_t SetNetworkAccessPolicy(uint32_t uid, NetworkAccessPolicy policy, bool reconfirmFlag,
190                                            bool isBroker) = 0;
191     virtual int32_t DeleteNetworkAccessPolicy(uint32_t uid) = 0;
192     virtual int32_t NotifyNetBearerTypeChange(std::set<NetBearType> bearerTypes) = 0;
193     virtual int32_t StartClat(const std::string &interfaceName, int32_t netId, const std::string &nat64PrefixStr) = 0;
194     virtual int32_t StopClat(const std::string &interfaceName) = 0;
195     virtual int32_t ClearFirewallAllRules() = 0;
196     virtual int32_t SetNicTrafficAllowed(const std::vector<std::string> &ifaceNames, bool status) = 0;
197     virtual int32_t CloseSocketsUid(const std::string &ipAddr, uint32_t uid) = 0;
198 #ifdef SUPPORT_SYSVPN
199     virtual int32_t ProcessVpnStage(NetsysNative::SysVpnStageCode stage) = 0;
200 #endif // SUPPORT_SYSVPN
201     DECLARE_INTERFACE_DESCRIPTOR(u"OHOS.NetsysNative.INetsysService")
202 };
203 } // namespace NetsysNative
204 } // namespace OHOS
205 #endif // I_NETSYS_SERVICE_H
206