Fix TrustAgent showing unclear string.
TrustAgents currently show the string "Device was locked manually" if the trustagent times out, or if lockUser() was called. Changed to show a more generic string, informing the user that they need to authenticate with whatever credentials they have set up (instead of using the trustagent). Test: Test trustagent timeout, lockUser, verify string appears Bug: 243710694 Change-Id: I96b113ab3ae63123782517339b0bdb3c6cdec2e2
This commit is contained in:
@@ -1522,7 +1522,8 @@ public class LockPatternUtils {
|
||||
STRONG_AUTH_REQUIRED_AFTER_LOCKOUT,
|
||||
STRONG_AUTH_REQUIRED_AFTER_TIMEOUT,
|
||||
STRONG_AUTH_REQUIRED_AFTER_USER_LOCKDOWN,
|
||||
STRONG_AUTH_REQUIRED_AFTER_NON_STRONG_BIOMETRICS_TIMEOUT})
|
||||
STRONG_AUTH_REQUIRED_AFTER_NON_STRONG_BIOMETRICS_TIMEOUT,
|
||||
SOME_AUTH_REQUIRED_AFTER_TRUSTAGENT_EXPIRED})
|
||||
@Retention(RetentionPolicy.SOURCE)
|
||||
public @interface StrongAuthFlags {}
|
||||
|
||||
@@ -1574,6 +1575,12 @@ public class LockPatternUtils {
|
||||
*/
|
||||
public static final int STRONG_AUTH_REQUIRED_AFTER_NON_STRONG_BIOMETRICS_TIMEOUT = 0x80;
|
||||
|
||||
/**
|
||||
* Some authentication is required because the trustagent either timed out or was disabled
|
||||
* manually.
|
||||
*/
|
||||
public static final int SOME_AUTH_REQUIRED_AFTER_TRUSTAGENT_EXPIRED = 0x100;
|
||||
|
||||
/**
|
||||
* Strong auth flags that do not prevent biometric methods from being accepted as auth.
|
||||
* If any other flags are set, biometric authentication is disabled.
|
||||
|
||||
@@ -24,6 +24,7 @@ import static com.android.keyguard.KeyguardSecurityView.PROMPT_REASON_NON_STRONG
|
||||
import static com.android.keyguard.KeyguardSecurityView.PROMPT_REASON_PREPARE_FOR_UPDATE;
|
||||
import static com.android.keyguard.KeyguardSecurityView.PROMPT_REASON_RESTART;
|
||||
import static com.android.keyguard.KeyguardSecurityView.PROMPT_REASON_TIMEOUT;
|
||||
import static com.android.keyguard.KeyguardSecurityView.PROMPT_REASON_TRUSTAGENT_EXPIRED;
|
||||
import static com.android.keyguard.KeyguardSecurityView.PROMPT_REASON_USER_REQUEST;
|
||||
|
||||
import android.animation.Animator;
|
||||
@@ -106,6 +107,8 @@ public class KeyguardPasswordView extends KeyguardAbsKeyInputView {
|
||||
return R.string.kg_prompt_reason_timeout_password;
|
||||
case PROMPT_REASON_NON_STRONG_BIOMETRIC_TIMEOUT:
|
||||
return R.string.kg_prompt_reason_timeout_password;
|
||||
case PROMPT_REASON_TRUSTAGENT_EXPIRED:
|
||||
return R.string.kg_prompt_reason_timeout_password;
|
||||
case PROMPT_REASON_NONE:
|
||||
return 0;
|
||||
default:
|
||||
|
||||
@@ -330,6 +330,9 @@ public class KeyguardPatternViewController
|
||||
case PROMPT_REASON_NON_STRONG_BIOMETRIC_TIMEOUT:
|
||||
mMessageAreaController.setMessage(R.string.kg_prompt_reason_timeout_pattern);
|
||||
break;
|
||||
case PROMPT_REASON_TRUSTAGENT_EXPIRED:
|
||||
mMessageAreaController.setMessage(R.string.kg_prompt_reason_timeout_pattern);
|
||||
break;
|
||||
case PROMPT_REASON_NONE:
|
||||
break;
|
||||
default:
|
||||
|
||||
@@ -22,6 +22,7 @@ import static com.android.keyguard.KeyguardSecurityView.PROMPT_REASON_NON_STRONG
|
||||
import static com.android.keyguard.KeyguardSecurityView.PROMPT_REASON_PREPARE_FOR_UPDATE;
|
||||
import static com.android.keyguard.KeyguardSecurityView.PROMPT_REASON_RESTART;
|
||||
import static com.android.keyguard.KeyguardSecurityView.PROMPT_REASON_TIMEOUT;
|
||||
import static com.android.keyguard.KeyguardSecurityView.PROMPT_REASON_TRUSTAGENT_EXPIRED;
|
||||
import static com.android.keyguard.KeyguardSecurityView.PROMPT_REASON_USER_REQUEST;
|
||||
|
||||
import android.animation.Animator;
|
||||
@@ -123,6 +124,8 @@ public abstract class KeyguardPinBasedInputView extends KeyguardAbsKeyInputView
|
||||
return R.string.kg_prompt_reason_timeout_pin;
|
||||
case PROMPT_REASON_NON_STRONG_BIOMETRIC_TIMEOUT:
|
||||
return R.string.kg_prompt_reason_timeout_pin;
|
||||
case PROMPT_REASON_TRUSTAGENT_EXPIRED:
|
||||
return R.string.kg_prompt_reason_timeout_pin;
|
||||
case PROMPT_REASON_NONE:
|
||||
return 0;
|
||||
default:
|
||||
|
||||
@@ -60,6 +60,12 @@ public interface KeyguardSecurityView {
|
||||
*/
|
||||
int PROMPT_REASON_NON_STRONG_BIOMETRIC_TIMEOUT = 7;
|
||||
|
||||
/**
|
||||
* Some auth is required because the trustagent expired either from timeout or manually by
|
||||
* the user
|
||||
*/
|
||||
int PROMPT_REASON_TRUSTAGENT_EXPIRED = 8;
|
||||
|
||||
/**
|
||||
* Reset the view and prepare to take input. This should do things like clearing the
|
||||
* password or pattern and clear error messages.
|
||||
|
||||
@@ -24,6 +24,7 @@ import static android.view.WindowManagerPolicyConstants.KEYGUARD_GOING_AWAY_FLAG
|
||||
import static com.android.internal.config.sysui.SystemUiDeviceConfigFlags.NAV_BAR_HANDLE_SHOW_OVER_LOCKSCREEN;
|
||||
import static com.android.internal.jank.InteractionJankMonitor.CUJ_LOCKSCREEN_TRANSITION_FROM_AOD;
|
||||
import static com.android.internal.jank.InteractionJankMonitor.CUJ_LOCKSCREEN_UNLOCK_ANIMATION;
|
||||
import static com.android.internal.widget.LockPatternUtils.StrongAuthTracker.SOME_AUTH_REQUIRED_AFTER_TRUSTAGENT_EXPIRED;
|
||||
import static com.android.internal.widget.LockPatternUtils.StrongAuthTracker.SOME_AUTH_REQUIRED_AFTER_USER_REQUEST;
|
||||
import static com.android.internal.widget.LockPatternUtils.StrongAuthTracker.STRONG_AUTH_REQUIRED_AFTER_DPM_LOCK_NOW;
|
||||
import static com.android.internal.widget.LockPatternUtils.StrongAuthTracker.STRONG_AUTH_REQUIRED_AFTER_LOCKOUT;
|
||||
@@ -802,6 +803,9 @@ public class KeyguardViewMediator extends CoreStartable implements Dumpable,
|
||||
} else if (trustAgentsEnabled
|
||||
&& (strongAuth & SOME_AUTH_REQUIRED_AFTER_USER_REQUEST) != 0) {
|
||||
return KeyguardSecurityView.PROMPT_REASON_USER_REQUEST;
|
||||
} else if (trustAgentsEnabled
|
||||
&& (strongAuth & SOME_AUTH_REQUIRED_AFTER_TRUSTAGENT_EXPIRED) != 0) {
|
||||
return KeyguardSecurityView.PROMPT_REASON_TRUSTAGENT_EXPIRED;
|
||||
} else if (any && ((strongAuth & STRONG_AUTH_REQUIRED_AFTER_LOCKOUT) != 0
|
||||
|| mUpdateMonitor.isFingerprintLockedOut())) {
|
||||
return KeyguardSecurityView.PROMPT_REASON_AFTER_LOCKOUT;
|
||||
|
||||
@@ -687,7 +687,7 @@ public class TrustManagerService extends SystemService {
|
||||
*/
|
||||
public void lockUser(int userId) {
|
||||
mLockPatternUtils.requireStrongAuth(
|
||||
StrongAuthTracker.SOME_AUTH_REQUIRED_AFTER_USER_REQUEST, userId);
|
||||
StrongAuthTracker.SOME_AUTH_REQUIRED_AFTER_TRUSTAGENT_EXPIRED, userId);
|
||||
try {
|
||||
WindowManagerGlobal.getWindowManagerService().lockNow(null);
|
||||
} catch (RemoteException e) {
|
||||
@@ -2084,7 +2084,7 @@ public class TrustManagerService extends SystemService {
|
||||
if (mStrongAuthTracker.isTrustAllowedForUser(mUserId)) {
|
||||
if (DEBUG) Slog.d(TAG, "Revoking all trust because of trust timeout");
|
||||
mLockPatternUtils.requireStrongAuth(
|
||||
mStrongAuthTracker.SOME_AUTH_REQUIRED_AFTER_USER_REQUEST, mUserId);
|
||||
mStrongAuthTracker.SOME_AUTH_REQUIRED_AFTER_TRUSTAGENT_EXPIRED, mUserId);
|
||||
}
|
||||
maybeLockScreen(mUserId);
|
||||
}
|
||||
|
||||
Reference in New Issue
Block a user