1 /* 2 * Copyright (c) 2022-2023 Huawei Device Co., Ltd. 3 * Licensed under the Apache License, Version 2.0 (the "License"); 4 * you may not use this file except in compliance with the License. 5 * You may obtain a copy of the License at 6 * 7 * http://www.apache.org/licenses/LICENSE-2.0 8 * 9 * Unless required by applicable law or agreed to in writing, software 10 * distributed under the License is distributed on an "AS IS" BASIS, 11 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. 12 * See the License for the specific language governing permissions and 13 * limitations under the License. 14 */ 15 #ifndef I_NETSYS_SERVICE_H 16 #define I_NETSYS_SERVICE_H 17 18 #include <netdb.h> 19 #include <string> 20 #include <set> 21 22 #include "dns_config_client.h" 23 #include "i_net_diag_callback.h" 24 #include "i_notify_callback.h" 25 #include "i_net_dns_result_callback.h" 26 #include "i_net_dns_health_callback.h" 27 #include "interface_type.h" 28 #include "iremote_broker.h" 29 #include "net_stats_info.h" 30 #include "network_sharing.h" 31 #include "netsys_ipc_interface_code.h" 32 #include "route_type.h" 33 #ifdef FEATURE_NET_FIREWALL_ENABLE 34 #include "i_netfirewall_callback.h" 35 #include "netfirewall_parcel.h" 36 #endif 37 #include "uid_range.h" 38 #include "netsys_access_policy.h" 39 #include "net_all_capabilities.h" 40 41 namespace OHOS { 42 namespace NetsysNative { 43 using namespace nmd; 44 using namespace OHOS::NetManagerStandard; 45 enum IptablesType { 46 IPTYPE_IPV4 = 1, 47 IPTYPE_IPV6 = 2, 48 IPTYPE_IPV4V6 = 3, 49 }; 50 enum SysVpnStageCode : int32_t { 51 VPN_STAGE_RESTART = 0, // common stage. start charon 52 VPN_STAGE_UP_HOME, // common stage. connect "home" configuration 53 VPN_STAGE_DOWN_HOME, // common stage. disconnect "home" configuration 54 VPN_STAGE_STOP, // common stage. stop charon 55 VPN_STAGE_SWANCTL_LOAD, // ikev2 vpn. load ikev2 vpn config file 56 VPN_STAGE_L2TP_LOAD, // l2tp vpn. load l2tp vpn config file 57 VPN_STAGE_L2TP_CTL, // l2tp vpn. control pppd running 58 VPN_STAGE_OPENVPN_RESTART, // openvpn. restart openvpn 59 VPN_STAGE_OPENVPN_STOP, // openvpn. stop openvpn 60 }; 61 class INetsysService : public IRemoteBroker { 62 public: 63 virtual int32_t SetResolverConfig(uint16_t netId, uint16_t baseTimeoutMsec, uint8_t retryCount, 64 const std::vector<std::string> &servers, 65 const std::vector<std::string> &domains) = 0; 66 virtual int32_t GetResolverConfig(uint16_t netId, std::vector<std::string> &servers, 67 std::vector<std::string> &domains, uint16_t &baseTimeoutMsec, 68 uint8_t &retryCount) = 0; 69 virtual int32_t CreateNetworkCache(uint16_t netId) = 0; 70 virtual int32_t DestroyNetworkCache(uint16_t netId) = 0; 71 virtual int32_t GetAddrInfo(const std::string &hostName, const std::string &serverName, const AddrInfo &hints, 72 uint16_t netId, std::vector<AddrInfo> &res) = 0; 73 virtual int32_t SetInterfaceMtu(const std::string &interfaceName, int mtu) = 0; 74 virtual int32_t GetInterfaceMtu(const std::string &interfaceName) = 0; 75 76 virtual int32_t SetTcpBufferSizes(const std::string &tcpBufferSizes) = 0; 77 78 virtual int32_t RegisterNotifyCallback(sptr<INotifyCallback> &callback) = 0; 79 virtual int32_t UnRegisterNotifyCallback(sptr<INotifyCallback> &callback) = 0; 80 81 virtual int32_t NetworkAddRoute(int32_t netId, const std::string &interfaceName, const std::string &destination, 82 const std::string &nextHop) = 0; 83 virtual int32_t NetworkRemoveRoute(int32_t netId, const std::string &interfaceName, const std::string &destination, 84 const std::string &nextHop) = 0; 85 virtual int32_t NetworkAddRouteParcel(int32_t netId, const RouteInfoParcel &routeInfo) = 0; 86 virtual int32_t NetworkRemoveRouteParcel(int32_t netId, const RouteInfoParcel &routeInfo) = 0; 87 virtual int32_t NetworkSetDefault(int32_t netId) = 0; 88 virtual int32_t NetworkGetDefault() = 0; 89 virtual int32_t NetworkClearDefault() = 0; 90 virtual int32_t GetProcSysNet(int32_t family, int32_t which, const std::string &ifname, 91 const std::string ¶meter, std::string &value) = 0; 92 virtual int32_t SetProcSysNet(int32_t family, int32_t which, const std::string &ifname, 93 const std::string ¶meter, std::string &value) = 0; 94 virtual int32_t SetInternetPermission(uint32_t uid, uint8_t allow, uint8_t isBroker) = 0; 95 virtual int32_t NetworkCreatePhysical(int32_t netId, int32_t permission) = 0; 96 virtual int32_t NetworkCreateVirtual(int32_t netId, bool hasDns) = 0; 97 virtual int32_t NetworkAddUids(int32_t netId, const std::vector<UidRange> &uidRanges) = 0; 98 virtual int32_t NetworkDelUids(int32_t netId, const std::vector<UidRange> &uidRanges) = 0; 99 virtual int32_t AddInterfaceAddress(const std::string &interfaceName, const std::string &addrString, 100 int32_t prefixLength) = 0; 101 virtual int32_t DelInterfaceAddress(const std::string &interfaceName, const std::string &addrString, 102 int32_t prefixLength) = 0; 103 virtual int32_t DelInterfaceAddress(const std::string &interfaceName, const std::string &addrString, 104 int32_t prefixLength, const std::string &netCapabilities) = 0; 105 virtual int32_t InterfaceSetIpAddress(const std::string &ifaceName, const std::string &ipAddress) = 0; 106 virtual int32_t InterfaceSetIffUp(const std::string &ifaceName) = 0; 107 virtual int32_t NetworkAddInterface(int32_t netId, const std::string &iface, NetBearType netBearerType) = 0; 108 virtual int32_t NetworkRemoveInterface(int32_t netId, const std::string &iface) = 0; 109 virtual int32_t NetworkDestroy(int32_t netId) = 0; 110 virtual int32_t CreateVnic(uint16_t mtu, const std::string &tunAddr, int32_t prefix, 111 const std::set<int32_t> &uids) = 0; 112 virtual int32_t DestroyVnic() = 0; 113 virtual int32_t EnableDistributedClientNet(const std::string &virnicAddr, const std::string &iif) = 0; 114 virtual int32_t EnableDistributedServerNet(const std::string &iif, const std::string &devIface, 115 const std::string &dstAddr) = 0; 116 virtual int32_t DisableDistributedNet(bool isServer) = 0; 117 virtual int32_t GetFwmarkForNetwork(int32_t netId, MarkMaskParcel &markMaskParcel) = 0; 118 virtual int32_t SetInterfaceConfig(const InterfaceConfigurationParcel &cfg) = 0; 119 virtual int32_t GetInterfaceConfig(InterfaceConfigurationParcel &cfg) = 0; 120 virtual int32_t InterfaceGetList(std::vector<std::string> &ifaces) = 0; 121 virtual int32_t StartDhcpClient(const std::string &iface, bool bIpv6) = 0; 122 virtual int32_t StopDhcpClient(const std::string &iface, bool bIpv6) = 0; 123 virtual int32_t StartDhcpService(const std::string &iface, const std::string &ipv4addr) = 0; 124 virtual int32_t StopDhcpService(const std::string &iface) = 0; 125 virtual int32_t IpEnableForwarding(const std::string &requestor) = 0; 126 virtual int32_t IpDisableForwarding(const std::string &requestor) = 0; 127 virtual int32_t EnableNat(const std::string &downstreamIface, const std::string &upstreamIface) = 0; 128 virtual int32_t DisableNat(const std::string &downstreamIface, const std::string &upstreamIface) = 0; 129 virtual int32_t IpfwdAddInterfaceForward(const std::string &fromIface, const std::string &toIface) = 0; 130 virtual int32_t IpfwdRemoveInterfaceForward(const std::string &fromIface, const std::string &toIface) = 0; 131 virtual int32_t BandwidthAddAllowedList(uint32_t uid) = 0; 132 virtual int32_t BandwidthRemoveAllowedList(uint32_t uid) = 0; 133 virtual int32_t BandwidthEnableDataSaver(bool enable) = 0; 134 virtual int32_t BandwidthSetIfaceQuota(const std::string &ifName, int64_t bytes) = 0; 135 virtual int32_t BandwidthAddDeniedList(uint32_t uid) = 0; 136 virtual int32_t BandwidthRemoveDeniedList(uint32_t uid) = 0; 137 virtual int32_t BandwidthRemoveIfaceQuota(const std::string &ifName) = 0; 138 virtual int32_t FirewallSetUidsAllowedListChain(uint32_t chain, const std::vector<uint32_t> &uids) = 0; 139 virtual int32_t FirewallSetUidsDeniedListChain(uint32_t chain, const std::vector<uint32_t> &uids) = 0; 140 virtual int32_t FirewallEnableChain(uint32_t chain, bool enable) = 0; 141 virtual int32_t FirewallSetUidRule(uint32_t chain, const std::vector<uint32_t> &uids, uint32_t firewallRule) = 0; 142 virtual int32_t ShareDnsSet(uint16_t netId) = 0; 143 virtual int32_t StartDnsProxyListen() = 0; 144 virtual int32_t StopDnsProxyListen() = 0; 145 virtual int32_t GetNetworkSharingTraffic(const std::string &downIface, const std::string &upIface, 146 NetworkSharingTraffic &traffic) = 0; 147 virtual int32_t GetTotalStats(uint64_t &stats, uint32_t type) = 0; 148 virtual int32_t GetUidStats(uint64_t &stats, uint32_t type, uint32_t uid) = 0; 149 virtual int32_t GetIfaceStats(uint64_t &stats, uint32_t type, const std::string &interfaceName) = 0; 150 virtual int32_t GetAllStatsInfo(std::vector<OHOS::NetManagerStandard::NetStatsInfo> &stats) = 0; 151 virtual int32_t DeleteStatsInfo(uint32_t uid) = 0; 152 virtual int32_t GetAllSimStatsInfo(std::vector<OHOS::NetManagerStandard::NetStatsInfo> &stats) = 0; 153 virtual int32_t DeleteSimStatsInfo(uint32_t uid) = 0; 154 virtual int32_t SetIptablesCommandForRes(const std::string &cmd, std::string &respond, 155 IptablesType ipType = IPTYPE_IPV4) = 0; 156 virtual int32_t NetDiagPingHost(const NetDiagPingOption &pingOption, const sptr<INetDiagCallback> &callback) = 0; 157 virtual int32_t NetDiagGetRouteTable(std::list<NetDiagRouteTable> &routeTables) = 0; 158 virtual int32_t NetDiagGetSocketsInfo(NetDiagProtocolType socketType, NetDiagSocketsInfo &socketsInfo) = 0; 159 virtual int32_t NetDiagGetInterfaceConfig(std::list<NetDiagIfaceConfig> &configs, const std::string &ifaceName) = 0; 160 virtual int32_t NetDiagUpdateInterfaceConfig(const NetDiagIfaceConfig &config, const std::string &ifaceName, 161 bool add) = 0; 162 virtual int32_t NetDiagSetInterfaceActiveState(const std::string &ifaceName, bool up) = 0; 163 virtual int32_t AddStaticArp(const std::string &ipAddr, const std::string &macAddr, 164 const std::string &ifName) = 0; 165 virtual int32_t DelStaticArp(const std::string &ipAddr, const std::string &macAddr, 166 const std::string &ifName) = 0; 167 virtual int32_t RegisterDnsResultCallback(const sptr<INetDnsResultCallback> &callback, uint32_t delay) = 0; 168 virtual int32_t UnregisterDnsResultCallback(const sptr<INetDnsResultCallback> &callback) = 0; 169 virtual int32_t RegisterDnsHealthCallback(const sptr<INetDnsHealthCallback> &callback) = 0; 170 virtual int32_t UnregisterDnsHealthCallback(const sptr<INetDnsHealthCallback> &callback) = 0; 171 virtual int32_t GetCookieStats(uint64_t &stats, uint32_t type, uint64_t cookie) = 0; 172 virtual int32_t GetNetworkSharingType(std::set<uint32_t>& sharingTypeIsOn) = 0; 173 virtual int32_t UpdateNetworkSharingType(uint32_t type, bool isOpen) = 0; 174 #ifdef FEATURE_NET_FIREWALL_ENABLE 175 virtual int32_t SetFirewallRules(NetFirewallRuleType type, const std::vector<sptr<NetFirewallBaseRule>> &ruleList, 176 bool isFinish) = 0; 177 virtual int32_t SetFirewallDefaultAction(FirewallRuleAction inDefault, FirewallRuleAction outDefault) = 0; 178 virtual int32_t SetFirewallCurrentUserId(int32_t userId) = 0; 179 virtual int32_t ClearFirewallRules(NetFirewallRuleType type) = 0; 180 virtual int32_t RegisterNetFirewallCallback(const sptr<INetFirewallCallback> &callback) = 0; 181 virtual int32_t UnRegisterNetFirewallCallback(const sptr<INetFirewallCallback> &callback) = 0; 182 #endif 183 #ifdef FEATURE_WEARABLE_DISTRIBUTED_NET_ENABLE 184 virtual int32_t EnableWearableDistributedNetForward(const int32_t tcpPortId, const int32_t udpPortId) = 0; 185 virtual int32_t DisableWearableDistributedNetForward() = 0; 186 #endif 187 virtual int32_t SetIpv6PrivacyExtensions(const std::string &interfaceName, const uint32_t on) = 0; 188 virtual int32_t SetEnableIpv6(const std::string &interfaceName, const uint32_t on) = 0; 189 virtual int32_t SetNetworkAccessPolicy(uint32_t uid, NetworkAccessPolicy policy, bool reconfirmFlag, 190 bool isBroker) = 0; 191 virtual int32_t DeleteNetworkAccessPolicy(uint32_t uid) = 0; 192 virtual int32_t NotifyNetBearerTypeChange(std::set<NetBearType> bearerTypes) = 0; 193 virtual int32_t StartClat(const std::string &interfaceName, int32_t netId, const std::string &nat64PrefixStr) = 0; 194 virtual int32_t StopClat(const std::string &interfaceName) = 0; 195 virtual int32_t ClearFirewallAllRules() = 0; 196 virtual int32_t SetNicTrafficAllowed(const std::vector<std::string> &ifaceNames, bool status) = 0; 197 virtual int32_t CloseSocketsUid(const std::string &ipAddr, uint32_t uid) = 0; 198 #ifdef SUPPORT_SYSVPN 199 virtual int32_t ProcessVpnStage(NetsysNative::SysVpnStageCode stage) = 0; 200 #endif // SUPPORT_SYSVPN 201 DECLARE_INTERFACE_DESCRIPTOR(u"OHOS.NetsysNative.INetsysService") 202 }; 203 } // namespace NetsysNative 204 } // namespace OHOS 205 #endif // I_NETSYS_SERVICE_H 206