Add security context protocol

Currently, excludes some protocols if they have any security context
associated.
This commit is contained in:
Ian Douglas Scott 2023-08-29 17:00:11 -07:00
parent c68625ff78
commit 8dce518ba6
4 changed files with 54 additions and 6 deletions

View file

@ -54,7 +54,7 @@ use smithay::{
wayland_server::{
backend::{ClientData, ClientId, DisconnectReason},
protocol::wl_shm,
Display, DisplayHandle,
Client, Display, DisplayHandle,
},
},
utils::{Clock, IsAlive, Monotonic},
@ -69,6 +69,7 @@ use smithay::{
presentation::PresentationState,
primary_selection::PrimarySelectionState,
seat::WaylandFocus,
security_context::{SecurityContext, SecurityContextState},
shell::{kde::decoration::KdeDecorationState, xdg::decoration::XdgDecorationState},
shm::ShmState,
viewporter::ViewporterState,
@ -103,6 +104,7 @@ pub struct ClientState {
pub drm_node: Option<DrmNode>,
pub privileged: bool,
pub evls: LoopSignal,
pub security_context: Option<SecurityContext>,
}
impl ClientData for ClientState {
fn initialized(&self, _client_id: ClientId) {}
@ -268,6 +270,12 @@ impl BackendData {
}
}
pub fn client_has_security_context(client: &Client) -> bool {
client
.get_data::<ClientState>()
.map_or(true, |client_state| client_state.security_context.is_none())
}
impl State {
pub fn new(
dh: &DisplayHandle,
@ -288,13 +296,14 @@ impl State {
let fractional_scale_state = FractionalScaleManagerState::new::<State>(dh);
let keyboard_shortcuts_inhibit_state = KeyboardShortcutsInhibitState::new::<Self>(dh);
let output_state = OutputManagerState::new_with_xdg_output::<Self>(dh);
let output_configuration_state = OutputConfigurationState::new(dh, |_| true);
let output_configuration_state =
OutputConfigurationState::new(dh, client_has_security_context);
let presentation_state = PresentationState::new::<Self>(dh, clock.id() as u32);
let primary_selection_state = PrimarySelectionState::new::<Self>(dh);
let screencopy_state = ScreencopyState::new::<Self, _, _>(
dh,
vec![CursorMode::Embedded, CursorMode::Hidden],
|_| true,
client_has_security_context,
); // TODO: privileged
let shm_state =
ShmState::new::<Self>(dh, vec![wl_shm::Format::Xbgr8888, wl_shm::Format::Abgr8888]);
@ -305,6 +314,7 @@ impl State {
let xdg_decoration_state = XdgDecorationState::new::<Self>(&dh);
XWaylandKeyboardGrabState::new::<Self>(&dh);
PointerGesturesState::new::<Self>(&dh);
SecurityContextState::new::<Self, _>(&dh, client_has_security_context);
let shell = Shell::new(&config, dh);
@ -377,6 +387,7 @@ impl State {
},
privileged: false,
evls: self.common.event_loop_signal.clone(),
security_context: None,
}
}
@ -387,6 +398,7 @@ impl State {
drm_node: Some(drm_node),
privileged: false,
evls: self.common.event_loop_signal.clone(),
security_context: None,
}
}
@ -400,6 +412,7 @@ impl State {
},
privileged: true,
evls: self.common.event_loop_signal.clone(),
security_context: None,
}
}
}