ssh_key.go 21 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775
  1. // Copyright 2014 The Gogs Authors. All rights reserved.
  2. // Use of this source code is governed by a MIT-style
  3. // license that can be found in the LICENSE file.
  4. package models
  5. import (
  6. "encoding/base64"
  7. "encoding/binary"
  8. "errors"
  9. "fmt"
  10. "io/ioutil"
  11. "math/big"
  12. "os"
  13. "path"
  14. "path/filepath"
  15. "strings"
  16. "sync"
  17. "time"
  18. "github.com/Unknwon/com"
  19. "github.com/go-xorm/xorm"
  20. "golang.org/x/crypto/ssh"
  21. log "gopkg.in/clog.v1"
  22. "github.com/gogits/gogs/pkg/process"
  23. "github.com/gogits/gogs/pkg/setting"
  24. "github.com/gogits/gogs/pkg/tool"
  25. )
  26. const (
  27. _TPL_PUBLICK_KEY = `command="%s serv key-%d --config='%s'",no-port-forwarding,no-X11-forwarding,no-agent-forwarding,no-pty %s` + "\n"
  28. )
  29. var sshOpLocker sync.Mutex
  30. type KeyType int
  31. const (
  32. KEY_TYPE_USER = iota + 1
  33. KEY_TYPE_DEPLOY
  34. )
  35. // PublicKey represents a user or deploy SSH public key.
  36. type PublicKey struct {
  37. ID int64
  38. OwnerID int64 `xorm:"INDEX NOT NULL"`
  39. Name string `xorm:"NOT NULL"`
  40. Fingerprint string `xorm:"NOT NULL"`
  41. Content string `xorm:"TEXT NOT NULL"`
  42. Mode AccessMode `xorm:"NOT NULL DEFAULT 2"`
  43. Type KeyType `xorm:"NOT NULL DEFAULT 1"`
  44. Created time.Time `xorm:"-"`
  45. CreatedUnix int64
  46. Updated time.Time `xorm:"-"` // Note: Updated must below Created for AfterSet.
  47. UpdatedUnix int64
  48. HasRecentActivity bool `xorm:"-"`
  49. HasUsed bool `xorm:"-"`
  50. }
  51. func (k *PublicKey) BeforeInsert() {
  52. k.CreatedUnix = time.Now().Unix()
  53. }
  54. func (k *PublicKey) BeforeUpdate() {
  55. k.UpdatedUnix = time.Now().Unix()
  56. }
  57. func (k *PublicKey) AfterSet(colName string, _ xorm.Cell) {
  58. switch colName {
  59. case "created_unix":
  60. k.Created = time.Unix(k.CreatedUnix, 0).Local()
  61. case "updated_unix":
  62. k.Updated = time.Unix(k.UpdatedUnix, 0).Local()
  63. k.HasUsed = k.Updated.After(k.Created)
  64. k.HasRecentActivity = k.Updated.Add(7 * 24 * time.Hour).After(time.Now())
  65. }
  66. }
  67. // OmitEmail returns content of public key without email address.
  68. func (k *PublicKey) OmitEmail() string {
  69. return strings.Join(strings.Split(k.Content, " ")[:2], " ")
  70. }
  71. // AuthorizedString returns formatted public key string for authorized_keys file.
  72. func (k *PublicKey) AuthorizedString() string {
  73. return fmt.Sprintf(_TPL_PUBLICK_KEY, setting.AppPath, k.ID, setting.CustomConf, k.Content)
  74. }
  75. // IsDeployKey returns true if the public key is used as deploy key.
  76. func (k *PublicKey) IsDeployKey() bool {
  77. return k.Type == KEY_TYPE_DEPLOY
  78. }
  79. func extractTypeFromBase64Key(key string) (string, error) {
  80. b, err := base64.StdEncoding.DecodeString(key)
  81. if err != nil || len(b) < 4 {
  82. return "", fmt.Errorf("invalid key format: %v", err)
  83. }
  84. keyLength := int(binary.BigEndian.Uint32(b))
  85. if len(b) < 4+keyLength {
  86. return "", fmt.Errorf("invalid key format: not enough length %d", keyLength)
  87. }
  88. return string(b[4 : 4+keyLength]), nil
  89. }
  90. // parseKeyString parses any key string in OpenSSH or SSH2 format to clean OpenSSH string (RFC4253).
  91. func parseKeyString(content string) (string, error) {
  92. // Transform all legal line endings to a single "\n"
  93. // Replace all windows full new lines ("\r\n")
  94. content = strings.Replace(content, "\r\n", "\n", -1)
  95. // Replace all windows half new lines ("\r"), if it happen not to match replace above
  96. content = strings.Replace(content, "\r", "\n", -1)
  97. // Replace ending new line as its may cause unwanted behaviour (extra line means not a single line key | OpenSSH key)
  98. content = strings.TrimRight(content, "\n")
  99. // split lines
  100. lines := strings.Split(content, "\n")
  101. var keyType, keyContent, keyComment string
  102. if len(lines) == 1 {
  103. // Parse OpenSSH format.
  104. parts := strings.SplitN(lines[0], " ", 3)
  105. switch len(parts) {
  106. case 0:
  107. return "", errors.New("empty key")
  108. case 1:
  109. keyContent = parts[0]
  110. case 2:
  111. keyType = parts[0]
  112. keyContent = parts[1]
  113. default:
  114. keyType = parts[0]
  115. keyContent = parts[1]
  116. keyComment = parts[2]
  117. }
  118. // If keyType is not given, extract it from content. If given, validate it.
  119. t, err := extractTypeFromBase64Key(keyContent)
  120. if err != nil {
  121. return "", fmt.Errorf("extractTypeFromBase64Key: %v", err)
  122. }
  123. if len(keyType) == 0 {
  124. keyType = t
  125. } else if keyType != t {
  126. return "", fmt.Errorf("key type and content does not match: %s - %s", keyType, t)
  127. }
  128. } else {
  129. // Parse SSH2 file format.
  130. continuationLine := false
  131. for _, line := range lines {
  132. // Skip lines that:
  133. // 1) are a continuation of the previous line,
  134. // 2) contain ":" as that are comment lines
  135. // 3) contain "-" as that are begin and end tags
  136. if continuationLine || strings.ContainsAny(line, ":-") {
  137. continuationLine = strings.HasSuffix(line, "\\")
  138. } else {
  139. keyContent = keyContent + line
  140. }
  141. }
  142. t, err := extractTypeFromBase64Key(keyContent)
  143. if err != nil {
  144. return "", fmt.Errorf("extractTypeFromBase64Key: %v", err)
  145. }
  146. keyType = t
  147. }
  148. return keyType + " " + keyContent + " " + keyComment, nil
  149. }
  150. // writeTmpKeyFile writes key content to a temporary file
  151. // and returns the name of that file, along with any possible errors.
  152. func writeTmpKeyFile(content string) (string, error) {
  153. tmpFile, err := ioutil.TempFile(setting.SSH.KeyTestPath, "gogs_keytest")
  154. if err != nil {
  155. return "", fmt.Errorf("TempFile: %v", err)
  156. }
  157. defer tmpFile.Close()
  158. if _, err = tmpFile.WriteString(content); err != nil {
  159. return "", fmt.Errorf("WriteString: %v", err)
  160. }
  161. return tmpFile.Name(), nil
  162. }
  163. // SSHKeyGenParsePublicKey extracts key type and length using ssh-keygen.
  164. func SSHKeyGenParsePublicKey(key string) (string, int, error) {
  165. // The ssh-keygen in Windows does not print key type, so no need go further.
  166. if setting.IsWindows {
  167. return "", 0, nil
  168. }
  169. tmpName, err := writeTmpKeyFile(key)
  170. if err != nil {
  171. return "", 0, fmt.Errorf("writeTmpKeyFile: %v", err)
  172. }
  173. defer os.Remove(tmpName)
  174. stdout, stderr, err := process.Exec("SSHKeyGenParsePublicKey", setting.SSH.KeygenPath, "-lf", tmpName)
  175. if err != nil {
  176. return "", 0, fmt.Errorf("fail to parse public key: %s - %s", err, stderr)
  177. }
  178. if strings.Contains(stdout, "is not a public key file") {
  179. return "", 0, ErrKeyUnableVerify{stdout}
  180. }
  181. fields := strings.Split(stdout, " ")
  182. if len(fields) < 4 {
  183. return "", 0, fmt.Errorf("invalid public key line: %s", stdout)
  184. }
  185. keyType := strings.Trim(fields[len(fields)-1], "()\r\n")
  186. return strings.ToLower(keyType), com.StrTo(fields[0]).MustInt(), nil
  187. }
  188. // SSHNativeParsePublicKey extracts the key type and length using the golang SSH library.
  189. func SSHNativeParsePublicKey(keyLine string) (string, int, error) {
  190. fields := strings.Fields(keyLine)
  191. if len(fields) < 2 {
  192. return "", 0, fmt.Errorf("not enough fields in public key line: %s", string(keyLine))
  193. }
  194. raw, err := base64.StdEncoding.DecodeString(fields[1])
  195. if err != nil {
  196. return "", 0, err
  197. }
  198. pkey, err := ssh.ParsePublicKey(raw)
  199. if err != nil {
  200. if strings.Contains(err.Error(), "ssh: unknown key algorithm") {
  201. return "", 0, ErrKeyUnableVerify{err.Error()}
  202. }
  203. return "", 0, fmt.Errorf("ParsePublicKey: %v", err)
  204. }
  205. // The ssh library can parse the key, so next we find out what key exactly we have.
  206. switch pkey.Type() {
  207. case ssh.KeyAlgoDSA:
  208. rawPub := struct {
  209. Name string
  210. P, Q, G, Y *big.Int
  211. }{}
  212. if err := ssh.Unmarshal(pkey.Marshal(), &rawPub); err != nil {
  213. return "", 0, err
  214. }
  215. // as per https://bugzilla.mindrot.org/show_bug.cgi?id=1647 we should never
  216. // see dsa keys != 1024 bit, but as it seems to work, we will not check here
  217. return "dsa", rawPub.P.BitLen(), nil // use P as per crypto/dsa/dsa.go (is L)
  218. case ssh.KeyAlgoRSA:
  219. rawPub := struct {
  220. Name string
  221. E *big.Int
  222. N *big.Int
  223. }{}
  224. if err := ssh.Unmarshal(pkey.Marshal(), &rawPub); err != nil {
  225. return "", 0, err
  226. }
  227. return "rsa", rawPub.N.BitLen(), nil // use N as per crypto/rsa/rsa.go (is bits)
  228. case ssh.KeyAlgoECDSA256:
  229. return "ecdsa", 256, nil
  230. case ssh.KeyAlgoECDSA384:
  231. return "ecdsa", 384, nil
  232. case ssh.KeyAlgoECDSA521:
  233. return "ecdsa", 521, nil
  234. case ssh.KeyAlgoED25519:
  235. return "ed25519", 256, nil
  236. }
  237. return "", 0, fmt.Errorf("unsupported key length detection for type: %s", pkey.Type())
  238. }
  239. // CheckPublicKeyString checks if the given public key string is recognized by SSH.
  240. // It returns the actual public key line on success.
  241. func CheckPublicKeyString(content string) (_ string, err error) {
  242. if setting.SSH.Disabled {
  243. return "", errors.New("SSH is disabled")
  244. }
  245. content, err = parseKeyString(content)
  246. if err != nil {
  247. return "", err
  248. }
  249. content = strings.TrimRight(content, "\n\r")
  250. if strings.ContainsAny(content, "\n\r") {
  251. return "", errors.New("only a single line with a single key please")
  252. }
  253. // remove any unnecessary whitespace now
  254. content = strings.TrimSpace(content)
  255. if !setting.SSH.MinimumKeySizeCheck {
  256. return content, nil
  257. }
  258. var (
  259. fnName string
  260. keyType string
  261. length int
  262. )
  263. if setting.SSH.StartBuiltinServer {
  264. fnName = "SSHNativeParsePublicKey"
  265. keyType, length, err = SSHNativeParsePublicKey(content)
  266. } else {
  267. fnName = "SSHKeyGenParsePublicKey"
  268. keyType, length, err = SSHKeyGenParsePublicKey(content)
  269. }
  270. if err != nil {
  271. return "", fmt.Errorf("%s: %v", fnName, err)
  272. }
  273. log.Trace("Key info [native: %v]: %s-%d", setting.SSH.StartBuiltinServer, keyType, length)
  274. if minLen, found := setting.SSH.MinimumKeySizes[keyType]; found && length >= minLen {
  275. return content, nil
  276. } else if found && length < minLen {
  277. return "", fmt.Errorf("key length is not enough: got %d, needs %d", length, minLen)
  278. }
  279. return "", fmt.Errorf("key type is not allowed: %s", keyType)
  280. }
  281. // appendAuthorizedKeysToFile appends new SSH keys' content to authorized_keys file.
  282. func appendAuthorizedKeysToFile(keys ...*PublicKey) error {
  283. sshOpLocker.Lock()
  284. defer sshOpLocker.Unlock()
  285. fpath := filepath.Join(setting.SSH.RootPath, "authorized_keys")
  286. f, err := os.OpenFile(fpath, os.O_CREATE|os.O_WRONLY|os.O_APPEND, 0600)
  287. if err != nil {
  288. return err
  289. }
  290. defer f.Close()
  291. // Note: chmod command does not support in Windows.
  292. if !setting.IsWindows {
  293. fi, err := f.Stat()
  294. if err != nil {
  295. return err
  296. }
  297. // .ssh directory should have mode 700, and authorized_keys file should have mode 600.
  298. if fi.Mode().Perm() > 0600 {
  299. log.Error(4, "authorized_keys file has unusual permission flags: %s - setting to -rw-------", fi.Mode().Perm().String())
  300. if err = f.Chmod(0600); err != nil {
  301. return err
  302. }
  303. }
  304. }
  305. for _, key := range keys {
  306. if _, err = f.WriteString(key.AuthorizedString()); err != nil {
  307. return err
  308. }
  309. }
  310. return nil
  311. }
  312. // checkKeyContent onlys checks if key content has been used as public key,
  313. // it is OK to use same key as deploy key for multiple repositories/users.
  314. func checkKeyContent(content string) error {
  315. has, err := x.Get(&PublicKey{
  316. Content: content,
  317. Type: KEY_TYPE_USER,
  318. })
  319. if err != nil {
  320. return err
  321. } else if has {
  322. return ErrKeyAlreadyExist{0, content}
  323. }
  324. return nil
  325. }
  326. func addKey(e Engine, key *PublicKey) (err error) {
  327. // Calculate fingerprint.
  328. tmpPath := strings.Replace(path.Join(os.TempDir(), fmt.Sprintf("%d", time.Now().Nanosecond()),
  329. "id_rsa.pub"), "\\", "/", -1)
  330. os.MkdirAll(path.Dir(tmpPath), os.ModePerm)
  331. if err = ioutil.WriteFile(tmpPath, []byte(key.Content), 0644); err != nil {
  332. return err
  333. }
  334. stdout, stderr, err := process.Exec("AddPublicKey", setting.SSH.KeygenPath, "-lf", tmpPath)
  335. if err != nil {
  336. return fmt.Errorf("fail to parse public key: %s - %s", err, stderr)
  337. } else if len(stdout) < 2 {
  338. return errors.New("not enough output for calculating fingerprint: " + stdout)
  339. }
  340. key.Fingerprint = strings.Split(stdout, " ")[1]
  341. // Save SSH key.
  342. if _, err = e.Insert(key); err != nil {
  343. return err
  344. }
  345. // Don't need to rewrite this file if builtin SSH server is enabled.
  346. if setting.SSH.StartBuiltinServer {
  347. return nil
  348. }
  349. return appendAuthorizedKeysToFile(key)
  350. }
  351. // AddPublicKey adds new public key to database and authorized_keys file.
  352. func AddPublicKey(ownerID int64, name, content string) (*PublicKey, error) {
  353. log.Trace(content)
  354. if err := checkKeyContent(content); err != nil {
  355. return nil, err
  356. }
  357. // Key name of same user cannot be duplicated.
  358. has, err := x.Where("owner_id = ? AND name = ?", ownerID, name).Get(new(PublicKey))
  359. if err != nil {
  360. return nil, err
  361. } else if has {
  362. return nil, ErrKeyNameAlreadyUsed{ownerID, name}
  363. }
  364. sess := x.NewSession()
  365. defer sessionRelease(sess)
  366. if err = sess.Begin(); err != nil {
  367. return nil, err
  368. }
  369. key := &PublicKey{
  370. OwnerID: ownerID,
  371. Name: name,
  372. Content: content,
  373. Mode: ACCESS_MODE_WRITE,
  374. Type: KEY_TYPE_USER,
  375. }
  376. if err = addKey(sess, key); err != nil {
  377. return nil, fmt.Errorf("addKey: %v", err)
  378. }
  379. return key, sess.Commit()
  380. }
  381. // GetPublicKeyByID returns public key by given ID.
  382. func GetPublicKeyByID(keyID int64) (*PublicKey, error) {
  383. key := new(PublicKey)
  384. has, err := x.Id(keyID).Get(key)
  385. if err != nil {
  386. return nil, err
  387. } else if !has {
  388. return nil, ErrKeyNotExist{keyID}
  389. }
  390. return key, nil
  391. }
  392. // SearchPublicKeyByContent searches content as prefix (leak e-mail part)
  393. // and returns public key found.
  394. func SearchPublicKeyByContent(content string) (*PublicKey, error) {
  395. key := new(PublicKey)
  396. has, err := x.Where("content like ?", content+"%").Get(key)
  397. if err != nil {
  398. return nil, err
  399. } else if !has {
  400. return nil, ErrKeyNotExist{}
  401. }
  402. return key, nil
  403. }
  404. // ListPublicKeys returns a list of public keys belongs to given user.
  405. func ListPublicKeys(uid int64) ([]*PublicKey, error) {
  406. keys := make([]*PublicKey, 0, 5)
  407. return keys, x.Where("owner_id = ?", uid).Find(&keys)
  408. }
  409. // UpdatePublicKey updates given public key.
  410. func UpdatePublicKey(key *PublicKey) error {
  411. _, err := x.Id(key.ID).AllCols().Update(key)
  412. return err
  413. }
  414. // deletePublicKeys does the actual key deletion but does not update authorized_keys file.
  415. func deletePublicKeys(e *xorm.Session, keyIDs ...int64) error {
  416. if len(keyIDs) == 0 {
  417. return nil
  418. }
  419. _, err := e.In("id", strings.Join(tool.Int64sToStrings(keyIDs), ",")).Delete(new(PublicKey))
  420. return err
  421. }
  422. // DeletePublicKey deletes SSH key information both in database and authorized_keys file.
  423. func DeletePublicKey(doer *User, id int64) (err error) {
  424. key, err := GetPublicKeyByID(id)
  425. if err != nil {
  426. if IsErrKeyNotExist(err) {
  427. return nil
  428. }
  429. return fmt.Errorf("GetPublicKeyByID: %v", err)
  430. }
  431. // Check if user has access to delete this key.
  432. if !doer.IsAdmin && doer.ID != key.OwnerID {
  433. return ErrKeyAccessDenied{doer.ID, key.ID, "public"}
  434. }
  435. sess := x.NewSession()
  436. defer sessionRelease(sess)
  437. if err = sess.Begin(); err != nil {
  438. return err
  439. }
  440. if err = deletePublicKeys(sess, id); err != nil {
  441. return err
  442. }
  443. if err = sess.Commit(); err != nil {
  444. return err
  445. }
  446. return RewriteAllPublicKeys()
  447. }
  448. // RewriteAllPublicKeys removes any authorized key and rewrite all keys from database again.
  449. // Note: x.Iterate does not get latest data after insert/delete, so we have to call this function
  450. // outsite any session scope independently.
  451. func RewriteAllPublicKeys() error {
  452. sshOpLocker.Lock()
  453. defer sshOpLocker.Unlock()
  454. os.MkdirAll(setting.SSH.RootPath, os.ModePerm)
  455. fpath := filepath.Join(setting.SSH.RootPath, "authorized_keys")
  456. tmpPath := fpath + ".tmp"
  457. f, err := os.OpenFile(tmpPath, os.O_RDWR|os.O_CREATE|os.O_TRUNC, 0600)
  458. if err != nil {
  459. return err
  460. }
  461. defer os.Remove(tmpPath)
  462. err = x.Iterate(new(PublicKey), func(idx int, bean interface{}) (err error) {
  463. _, err = f.WriteString((bean.(*PublicKey)).AuthorizedString())
  464. return err
  465. })
  466. f.Close()
  467. if err != nil {
  468. return err
  469. }
  470. if com.IsExist(fpath) {
  471. if err = os.Remove(fpath); err != nil {
  472. return err
  473. }
  474. }
  475. if err = os.Rename(tmpPath, fpath); err != nil {
  476. return err
  477. }
  478. return nil
  479. }
  480. // ________ .__ ____ __.
  481. // \______ \ ____ ______ | | ____ ___.__.| |/ _|____ ___.__.
  482. // | | \_/ __ \\____ \| | / _ < | || <_/ __ < | |
  483. // | ` \ ___/| |_> > |_( <_> )___ || | \ ___/\___ |
  484. // /_______ /\___ > __/|____/\____// ____||____|__ \___ > ____|
  485. // \/ \/|__| \/ \/ \/\/
  486. // DeployKey represents deploy key information and its relation with repository.
  487. type DeployKey struct {
  488. ID int64
  489. KeyID int64 `xorm:"UNIQUE(s) INDEX"`
  490. RepoID int64 `xorm:"UNIQUE(s) INDEX"`
  491. Name string
  492. Fingerprint string
  493. Content string `xorm:"-"`
  494. Created time.Time `xorm:"-"`
  495. CreatedUnix int64
  496. Updated time.Time `xorm:"-"` // Note: Updated must below Created for AfterSet.
  497. UpdatedUnix int64
  498. HasRecentActivity bool `xorm:"-"`
  499. HasUsed bool `xorm:"-"`
  500. }
  501. func (k *DeployKey) BeforeInsert() {
  502. k.CreatedUnix = time.Now().Unix()
  503. }
  504. func (k *DeployKey) BeforeUpdate() {
  505. k.UpdatedUnix = time.Now().Unix()
  506. }
  507. func (k *DeployKey) AfterSet(colName string, _ xorm.Cell) {
  508. switch colName {
  509. case "created_unix":
  510. k.Created = time.Unix(k.CreatedUnix, 0).Local()
  511. case "updated_unix":
  512. k.Updated = time.Unix(k.UpdatedUnix, 0).Local()
  513. k.HasUsed = k.Updated.After(k.Created)
  514. k.HasRecentActivity = k.Updated.Add(7 * 24 * time.Hour).After(time.Now())
  515. }
  516. }
  517. // GetContent gets associated public key content.
  518. func (k *DeployKey) GetContent() error {
  519. pkey, err := GetPublicKeyByID(k.KeyID)
  520. if err != nil {
  521. return err
  522. }
  523. k.Content = pkey.Content
  524. return nil
  525. }
  526. func checkDeployKey(e Engine, keyID, repoID int64, name string) error {
  527. // Note: We want error detail, not just true or false here.
  528. has, err := e.Where("key_id = ? AND repo_id = ?", keyID, repoID).Get(new(DeployKey))
  529. if err != nil {
  530. return err
  531. } else if has {
  532. return ErrDeployKeyAlreadyExist{keyID, repoID}
  533. }
  534. has, err = e.Where("repo_id = ? AND name = ?", repoID, name).Get(new(DeployKey))
  535. if err != nil {
  536. return err
  537. } else if has {
  538. return ErrDeployKeyNameAlreadyUsed{repoID, name}
  539. }
  540. return nil
  541. }
  542. // addDeployKey adds new key-repo relation.
  543. func addDeployKey(e *xorm.Session, keyID, repoID int64, name, fingerprint string) (*DeployKey, error) {
  544. if err := checkDeployKey(e, keyID, repoID, name); err != nil {
  545. return nil, err
  546. }
  547. key := &DeployKey{
  548. KeyID: keyID,
  549. RepoID: repoID,
  550. Name: name,
  551. Fingerprint: fingerprint,
  552. }
  553. _, err := e.Insert(key)
  554. return key, err
  555. }
  556. // HasDeployKey returns true if public key is a deploy key of given repository.
  557. func HasDeployKey(keyID, repoID int64) bool {
  558. has, _ := x.Where("key_id = ? AND repo_id = ?", keyID, repoID).Get(new(DeployKey))
  559. return has
  560. }
  561. // AddDeployKey add new deploy key to database and authorized_keys file.
  562. func AddDeployKey(repoID int64, name, content string) (*DeployKey, error) {
  563. if err := checkKeyContent(content); err != nil {
  564. return nil, err
  565. }
  566. pkey := &PublicKey{
  567. Content: content,
  568. Mode: ACCESS_MODE_READ,
  569. Type: KEY_TYPE_DEPLOY,
  570. }
  571. has, err := x.Get(pkey)
  572. if err != nil {
  573. return nil, err
  574. }
  575. sess := x.NewSession()
  576. defer sessionRelease(sess)
  577. if err = sess.Begin(); err != nil {
  578. return nil, err
  579. }
  580. // First time use this deploy key.
  581. if !has {
  582. if err = addKey(sess, pkey); err != nil {
  583. return nil, fmt.Errorf("addKey: %v", err)
  584. }
  585. }
  586. key, err := addDeployKey(sess, pkey.ID, repoID, name, pkey.Fingerprint)
  587. if err != nil {
  588. return nil, fmt.Errorf("addDeployKey: %v", err)
  589. }
  590. return key, sess.Commit()
  591. }
  592. // GetDeployKeyByID returns deploy key by given ID.
  593. func GetDeployKeyByID(id int64) (*DeployKey, error) {
  594. key := new(DeployKey)
  595. has, err := x.Id(id).Get(key)
  596. if err != nil {
  597. return nil, err
  598. } else if !has {
  599. return nil, ErrDeployKeyNotExist{id, 0, 0}
  600. }
  601. return key, nil
  602. }
  603. // GetDeployKeyByRepo returns deploy key by given public key ID and repository ID.
  604. func GetDeployKeyByRepo(keyID, repoID int64) (*DeployKey, error) {
  605. key := &DeployKey{
  606. KeyID: keyID,
  607. RepoID: repoID,
  608. }
  609. has, err := x.Get(key)
  610. if err != nil {
  611. return nil, err
  612. } else if !has {
  613. return nil, ErrDeployKeyNotExist{0, keyID, repoID}
  614. }
  615. return key, nil
  616. }
  617. // UpdateDeployKey updates deploy key information.
  618. func UpdateDeployKey(key *DeployKey) error {
  619. _, err := x.Id(key.ID).AllCols().Update(key)
  620. return err
  621. }
  622. // DeleteDeployKey deletes deploy key from its repository authorized_keys file if needed.
  623. func DeleteDeployKey(doer *User, id int64) error {
  624. key, err := GetDeployKeyByID(id)
  625. if err != nil {
  626. if IsErrDeployKeyNotExist(err) {
  627. return nil
  628. }
  629. return fmt.Errorf("GetDeployKeyByID: %v", err)
  630. }
  631. // Check if user has access to delete this key.
  632. if !doer.IsAdmin {
  633. repo, err := GetRepositoryByID(key.RepoID)
  634. if err != nil {
  635. return fmt.Errorf("GetRepositoryByID: %v", err)
  636. }
  637. yes, err := HasAccess(doer.ID, repo, ACCESS_MODE_ADMIN)
  638. if err != nil {
  639. return fmt.Errorf("HasAccess: %v", err)
  640. } else if !yes {
  641. return ErrKeyAccessDenied{doer.ID, key.ID, "deploy"}
  642. }
  643. }
  644. sess := x.NewSession()
  645. defer sessionRelease(sess)
  646. if err = sess.Begin(); err != nil {
  647. return err
  648. }
  649. if _, err = sess.Id(key.ID).Delete(new(DeployKey)); err != nil {
  650. return fmt.Errorf("delete deploy key [%d]: %v", key.ID, err)
  651. }
  652. // Check if this is the last reference to same key content.
  653. has, err := sess.Where("key_id = ?", key.KeyID).Get(new(DeployKey))
  654. if err != nil {
  655. return err
  656. } else if !has {
  657. if err = deletePublicKeys(sess, key.KeyID); err != nil {
  658. return err
  659. }
  660. }
  661. return sess.Commit()
  662. }
  663. // ListDeployKeys returns all deploy keys by given repository ID.
  664. func ListDeployKeys(repoID int64) ([]*DeployKey, error) {
  665. keys := make([]*DeployKey, 0, 5)
  666. return keys, x.Where("repo_id = ?", repoID).Find(&keys)
  667. }