summaryrefslogtreecommitdiffstats
path: root/src/org/cyanogenmod/profiles/ProfilesTrustAgent.java
blob: c8b30d48e1ab95cbdbcfc9c2d7fa544068dbd9ae (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
/*
* Copyright (C) 2015 The CyanogenMod Project
*
* Licensed under the Apache License, Version 2.0 (the "License");
* you may not use this file except in compliance with the License.
* You may obtain a copy of the License at
*
* http://www.apache.org/licenses/LICENSE-2.0
*
* Unless required by applicable law or agreed to in writing, software
* distributed under the License is distributed on an "AS IS" BASIS,
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
* See the License for the specific language governing permissions and
* limitations under the License.
*/

package org.cyanogenmod.profiles;

import android.app.admin.DevicePolicyManager;
import android.content.BroadcastReceiver;
import android.content.Context;
import android.content.Intent;
import android.content.IntentFilter;
import android.os.Handler;
import android.os.Message;
import android.service.trust.TrustAgentService;
import android.util.Log;

import cyanogenmod.app.Profile;
import cyanogenmod.app.ProfileManager;

import java.lang.ref.WeakReference;

/**
 * Profiles Trust Agent
 *
 * Watches for changes in the current {@link Profile} and grants or revokes trust (whether
 * lock screen security is enforced).
 */
public class ProfilesTrustAgent extends TrustAgentService {

    private static final String TAG = ProfilesTrustAgent.class.getSimpleName();
    private static final boolean DEBUG = Log.isLoggable(TAG, Log.DEBUG);

    private static final int GRANT_DURATION_MS = 1000 * 60 * 5; // 5 minutes

    private static final int MSG_UPDATE_STATE = 100;

    private BroadcastReceiver mReceiver = new BroadcastReceiver() {
        @Override
        public void onReceive(Context context, Intent intent) {
            mHandler.sendEmptyMessage(MSG_UPDATE_STATE);
        }
    };

    private ProfileManager mProfileManager;
    private ProfileHandler mHandler;

    @Override
    public void onCreate() {
        super.onCreate();
        mProfileManager = ProfileManager.getInstance(this);
        mHandler = new ProfileHandler(ProfilesTrustAgent.this);

        IntentFilter filter = new IntentFilter();
        filter.addAction(ProfileManager.INTENT_ACTION_PROFILE_SELECTED);
        filter.addAction(ProfileManager.INTENT_ACTION_PROFILE_UPDATED);

        registerReceiver(mReceiver, filter);

        setManagingTrust(true);
    }

    @Override
    public void onDestroy() {
        mHandler = null;
        mProfileManager = null;
        setManagingTrust(false);
        unregisterReceiver(mReceiver);
        super.onDestroy();
    }

    @Override
    public void onTrustTimeout() {
        mHandler.sendEmptyMessage(MSG_UPDATE_STATE);
    }

    private void handleApplyCurrentProfileState() {
        /*final DevicePolicyManager devicePolicyManager =
                (DevicePolicyManager) getSystemService(Context.DEVICE_POLICY_SERVICE);
        if (devicePolicyManager != null && devicePolicyManager.requireSecureKeyguard()) {
            revokeTrust();
            return;
        }*/

        Profile p = mProfileManager.getActiveProfile();
        int lockscreenState = p != null ? p.getScreenLockMode().getValue()
                : Profile.LockMode.DEFAULT;
        switch (lockscreenState) {
            case Profile.LockMode.DISABLE:
            case Profile.LockMode.DEFAULT:
                if (DEBUG) Log.w(TAG, "revoking trust.");
                revokeTrust();
                break;
            case Profile.LockMode.INSECURE:
                if (DEBUG) Log.w(TAG, "granting trust for profile " + p.getName());
                grantTrust(getString(R.string.trust_by_profile), GRANT_DURATION_MS, false);
                break;
        }
    }

    private static class ProfileHandler extends Handler {
        private final WeakReference<ProfilesTrustAgent> mService;

        private ProfileHandler(ProfilesTrustAgent service) {
            this.mService = new WeakReference<ProfilesTrustAgent>(service);
        }

        @Override
        public void handleMessage(Message msg) {
            switch (msg.what) {
                case MSG_UPDATE_STATE:
                    ProfilesTrustAgent service = mService.get();
                    if (service != null) {
                        service.handleApplyCurrentProfileState();
                    }
                    break;
            }
        }
    }
}