Files
windowmanager/utils/src/permission.cpp
T
dubj f6f30cd975 增加服务端权限校验接口
Signed-off-by: dubj <dubingjian@huawei.com>
Change-Id: I8fa54f680930ce52103bf43a0b1389e904aa59ce
2022-06-14 14:31:12 +08:00

69 lines
2.2 KiB
C++

/*
* Copyright (c) 2022-2022 Huawei Device Co., Ltd.
* Licensed under the Apache License, Version 2.0 (the "License");
* you may not use this file except in compliance with the License.
* You may obtain a copy of the License at
*
* http://www.apache.org/licenses/LICENSE-2.0
*
* Unless required by applicable law or agreed to in writing, software
* distributed under the License is distributed on an "AS IS" BASIS,
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
* See the License for the specific language governing permissions and
* limitations under the License.
*/
#include "permission.h"
#include <accesstoken_kit.h>
#include <bundle_constants.h>
#include <ipc_skeleton.h>
#include "window_manager_hilog.h"
namespace OHOS {
namespace Rosen {
namespace {
constexpr HiviewDFX::HiLogLabel LABEL = {LOG_CORE, HILOG_DOMAIN_WINDOW, "WMPermission"};
}
bool Permission::IsSystemCalling()
{
Security::AccessToken::NativeTokenInfo tokenInfo;
Security::AccessToken::AccessTokenKit::GetNativeTokenInfo(IPCSkeleton::GetCallingTokenID(), tokenInfo);
if (tokenInfo.apl == Security::AccessToken::ATokenAplEnum::APL_SYSTEM_CORE ||
tokenInfo.apl == Security::AccessToken::ATokenAplEnum::APL_SYSTEM_BASIC) {
WLOGFI("Is system calling");
return true;
}
WLOGFI("Is not system calling");
return false;
}
bool Permission::CheckCallingPermission(const std::string& permission)
{
WLOGFI("permission:%{public}s", permission.c_str());
if (Security::AccessToken::AccessTokenKit::VerifyAccessToken(IPCSkeleton::GetCallingTokenID(), permission) !=
AppExecFwk::Constants::PERMISSION_GRANTED) {
WLOGFI("permission denied!");
return false;
}
WLOGFI("permission ok!");
return true;
}
bool Permission::IsStartByHdcd()
{
OHOS::Security::AccessToken::NativeTokenInfo info;
if (Security::AccessToken::AccessTokenKit::GetNativeTokenInfo(IPCSkeleton::GetCallingTokenID(), info) != 0) {
return false;
}
if (info.processName.compare("hdcd") == 0) {
return true;
}
return false;
}
} // namespace Rosen
} // namespace OHOS