repo_editor.go 16 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520
  1. // Copyright 2016 The Gogs Authors. All rights reserved.
  2. // Use of this source code is governed by a MIT-style
  3. // license that can be found in the LICENSE file.
  4. package db
  5. import (
  6. "fmt"
  7. "io"
  8. "io/ioutil"
  9. "mime/multipart"
  10. "os"
  11. "os/exec"
  12. "path"
  13. "path/filepath"
  14. "strings"
  15. "time"
  16. gouuid "github.com/satori/go.uuid"
  17. "github.com/unknwon/com"
  18. "github.com/gogs/git-module"
  19. "gogs.io/gogs/internal/conf"
  20. "gogs.io/gogs/internal/cryptoutil"
  21. "gogs.io/gogs/internal/db/errors"
  22. "gogs.io/gogs/internal/gitutil"
  23. "gogs.io/gogs/internal/osutil"
  24. "gogs.io/gogs/internal/process"
  25. "gogs.io/gogs/internal/tool"
  26. )
  27. const (
  28. ENV_AUTH_USER_ID = "GOGS_AUTH_USER_ID"
  29. ENV_AUTH_USER_NAME = "GOGS_AUTH_USER_NAME"
  30. ENV_AUTH_USER_EMAIL = "GOGS_AUTH_USER_EMAIL"
  31. ENV_REPO_OWNER_NAME = "GOGS_REPO_OWNER_NAME"
  32. ENV_REPO_OWNER_SALT_MD5 = "GOGS_REPO_OWNER_SALT_MD5"
  33. ENV_REPO_ID = "GOGS_REPO_ID"
  34. ENV_REPO_NAME = "GOGS_REPO_NAME"
  35. ENV_REPO_CUSTOM_HOOKS_PATH = "GOGS_REPO_CUSTOM_HOOKS_PATH"
  36. )
  37. type ComposeHookEnvsOptions struct {
  38. AuthUser *User
  39. OwnerName string
  40. OwnerSalt string
  41. RepoID int64
  42. RepoName string
  43. RepoPath string
  44. }
  45. func ComposeHookEnvs(opts ComposeHookEnvsOptions) []string {
  46. envs := []string{
  47. "SSH_ORIGINAL_COMMAND=1",
  48. ENV_AUTH_USER_ID + "=" + com.ToStr(opts.AuthUser.ID),
  49. ENV_AUTH_USER_NAME + "=" + opts.AuthUser.Name,
  50. ENV_AUTH_USER_EMAIL + "=" + opts.AuthUser.Email,
  51. ENV_REPO_OWNER_NAME + "=" + opts.OwnerName,
  52. ENV_REPO_OWNER_SALT_MD5 + "=" + cryptoutil.MD5(opts.OwnerSalt),
  53. ENV_REPO_ID + "=" + com.ToStr(opts.RepoID),
  54. ENV_REPO_NAME + "=" + opts.RepoName,
  55. ENV_REPO_CUSTOM_HOOKS_PATH + "=" + filepath.Join(opts.RepoPath, "custom_hooks"),
  56. }
  57. return envs
  58. }
  59. // ___________ .___.__ __ ___________.__.__
  60. // \_ _____/ __| _/|__|/ |_ \_ _____/|__| | ____
  61. // | __)_ / __ | | \ __\ | __) | | | _/ __ \
  62. // | \/ /_/ | | || | | \ | | |_\ ___/
  63. // /_______ /\____ | |__||__| \___ / |__|____/\___ >
  64. // \/ \/ \/ \/
  65. // discardLocalRepoBranchChanges discards local commits/changes of
  66. // given branch to make sure it is even to remote branch.
  67. func discardLocalRepoBranchChanges(localPath, branch string) error {
  68. if !com.IsExist(localPath) {
  69. return nil
  70. }
  71. // No need to check if nothing in the repository.
  72. if !git.RepoHasBranch(localPath, branch) {
  73. return nil
  74. }
  75. rev := "origin/" + branch
  76. if err := git.RepoReset(localPath, rev, git.ResetOptions{Hard: true}); err != nil {
  77. return fmt.Errorf("reset [revision: %s]: %v", rev, err)
  78. }
  79. return nil
  80. }
  81. func (repo *Repository) DiscardLocalRepoBranchChanges(branch string) error {
  82. return discardLocalRepoBranchChanges(repo.LocalCopyPath(), branch)
  83. }
  84. // CheckoutNewBranch checks out to a new branch from the a branch name.
  85. func (repo *Repository) CheckoutNewBranch(oldBranch, newBranch string) error {
  86. if err := git.RepoCheckout(repo.LocalCopyPath(), newBranch, git.CheckoutOptions{
  87. BaseBranch: oldBranch,
  88. Timeout: time.Duration(conf.Git.Timeout.Pull) * time.Second,
  89. }); err != nil {
  90. return fmt.Errorf("checkout [base: %s, new: %s]: %v", oldBranch, newBranch, err)
  91. }
  92. return nil
  93. }
  94. type UpdateRepoFileOptions struct {
  95. LastCommitID string
  96. OldBranch string
  97. NewBranch string
  98. OldTreeName string
  99. NewTreeName string
  100. Message string
  101. Content string
  102. IsNewFile bool
  103. }
  104. // UpdateRepoFile adds or updates a file in repository.
  105. func (repo *Repository) UpdateRepoFile(doer *User, opts UpdateRepoFileOptions) (err error) {
  106. repoWorkingPool.CheckIn(com.ToStr(repo.ID))
  107. defer repoWorkingPool.CheckOut(com.ToStr(repo.ID))
  108. if err = repo.DiscardLocalRepoBranchChanges(opts.OldBranch); err != nil {
  109. return fmt.Errorf("discard local repo branch[%s] changes: %v", opts.OldBranch, err)
  110. } else if err = repo.UpdateLocalCopyBranch(opts.OldBranch); err != nil {
  111. return fmt.Errorf("update local copy branch[%s]: %v", opts.OldBranch, err)
  112. }
  113. repoPath := repo.RepoPath()
  114. localPath := repo.LocalCopyPath()
  115. if opts.OldBranch != opts.NewBranch {
  116. // Directly return error if new branch already exists in the server
  117. if git.RepoHasBranch(repoPath, opts.NewBranch) {
  118. return errors.BranchAlreadyExists{Name: opts.NewBranch}
  119. }
  120. // Otherwise, delete branch from local copy in case out of sync
  121. if git.RepoHasBranch(localPath, opts.NewBranch) {
  122. if err = git.RepoDeleteBranch(localPath, opts.NewBranch, git.DeleteBranchOptions{
  123. Force: true,
  124. }); err != nil {
  125. return fmt.Errorf("delete branch %q: %v", opts.NewBranch, err)
  126. }
  127. }
  128. if err := repo.CheckoutNewBranch(opts.OldBranch, opts.NewBranch); err != nil {
  129. return fmt.Errorf("checkout new branch[%s] from old branch[%s]: %v", opts.NewBranch, opts.OldBranch, err)
  130. }
  131. }
  132. oldFilePath := path.Join(localPath, opts.OldTreeName)
  133. filePath := path.Join(localPath, opts.NewTreeName)
  134. if err = os.MkdirAll(path.Dir(filePath), os.ModePerm); err != nil {
  135. return err
  136. }
  137. // If it's meant to be a new file, make sure it doesn't exist.
  138. if opts.IsNewFile {
  139. if com.IsExist(filePath) {
  140. return ErrRepoFileAlreadyExist{filePath}
  141. }
  142. }
  143. // Ignore move step if it's a new file under a directory.
  144. // Otherwise, move the file when name changed.
  145. if osutil.IsFile(oldFilePath) && opts.OldTreeName != opts.NewTreeName {
  146. if err = git.RepoMove(localPath, opts.OldTreeName, opts.NewTreeName); err != nil {
  147. return fmt.Errorf("git mv %q %q: %v", opts.OldTreeName, opts.NewTreeName, err)
  148. }
  149. }
  150. if err = ioutil.WriteFile(filePath, []byte(opts.Content), 0666); err != nil {
  151. return fmt.Errorf("write file: %v", err)
  152. }
  153. if err = git.RepoAdd(localPath, git.AddOptions{All: true}); err != nil {
  154. return fmt.Errorf("git add --all: %v", err)
  155. } else if err = git.RepoCommit(localPath, doer.NewGitSig(), opts.Message); err != nil {
  156. return fmt.Errorf("commit changes on %q: %v", localPath, err)
  157. }
  158. envs := ComposeHookEnvs(ComposeHookEnvsOptions{
  159. AuthUser: doer,
  160. OwnerName: repo.MustOwner().Name,
  161. OwnerSalt: repo.MustOwner().Salt,
  162. RepoID: repo.ID,
  163. RepoName: repo.Name,
  164. RepoPath: repo.RepoPath(),
  165. })
  166. if err = git.RepoPush(localPath, "origin", opts.NewBranch, git.PushOptions{Envs: envs}); err != nil {
  167. return fmt.Errorf("git push origin %s: %v", opts.NewBranch, err)
  168. }
  169. return nil
  170. }
  171. // GetDiffPreview produces and returns diff result of a file which is not yet committed.
  172. func (repo *Repository) GetDiffPreview(branch, treePath, content string) (diff *gitutil.Diff, err error) {
  173. repoWorkingPool.CheckIn(com.ToStr(repo.ID))
  174. defer repoWorkingPool.CheckOut(com.ToStr(repo.ID))
  175. if err = repo.DiscardLocalRepoBranchChanges(branch); err != nil {
  176. return nil, fmt.Errorf("discard local repo branch[%s] changes: %v", branch, err)
  177. } else if err = repo.UpdateLocalCopyBranch(branch); err != nil {
  178. return nil, fmt.Errorf("update local copy branch[%s]: %v", branch, err)
  179. }
  180. localPath := repo.LocalCopyPath()
  181. filePath := path.Join(localPath, treePath)
  182. if err = os.MkdirAll(filepath.Dir(filePath), os.ModePerm); err != nil {
  183. return nil, err
  184. }
  185. if err = ioutil.WriteFile(filePath, []byte(content), 0666); err != nil {
  186. return nil, fmt.Errorf("write file: %v", err)
  187. }
  188. cmd := exec.Command("git", "diff", treePath)
  189. cmd.Dir = localPath
  190. cmd.Stderr = os.Stderr
  191. stdout, err := cmd.StdoutPipe()
  192. if err != nil {
  193. return nil, fmt.Errorf("get stdout pipe: %v", err)
  194. }
  195. if err = cmd.Start(); err != nil {
  196. return nil, fmt.Errorf("start: %v", err)
  197. }
  198. pid := process.Add(fmt.Sprintf("GetDiffPreview [repo_path: %s]", repo.RepoPath()), cmd)
  199. defer process.Remove(pid)
  200. diff, err = gitutil.ParseDiff(stdout, conf.Git.MaxDiffFiles, conf.Git.MaxDiffLines, conf.Git.MaxDiffLineChars)
  201. if err != nil {
  202. return nil, fmt.Errorf("parse diff: %v", err)
  203. }
  204. if err = cmd.Wait(); err != nil {
  205. return nil, fmt.Errorf("wait: %v", err)
  206. }
  207. return diff, nil
  208. }
  209. // ________ .__ __ ___________.__.__
  210. // \______ \ ____ | | _____/ |_ ____ \_ _____/|__| | ____
  211. // | | \_/ __ \| | _/ __ \ __\/ __ \ | __) | | | _/ __ \
  212. // | ` \ ___/| |_\ ___/| | \ ___/ | \ | | |_\ ___/
  213. // /_______ /\___ >____/\___ >__| \___ > \___ / |__|____/\___ >
  214. // \/ \/ \/ \/ \/ \/
  215. //
  216. type DeleteRepoFileOptions struct {
  217. LastCommitID string
  218. OldBranch string
  219. NewBranch string
  220. TreePath string
  221. Message string
  222. }
  223. func (repo *Repository) DeleteRepoFile(doer *User, opts DeleteRepoFileOptions) (err error) {
  224. repoWorkingPool.CheckIn(com.ToStr(repo.ID))
  225. defer repoWorkingPool.CheckOut(com.ToStr(repo.ID))
  226. if err = repo.DiscardLocalRepoBranchChanges(opts.OldBranch); err != nil {
  227. return fmt.Errorf("discard local repo branch[%s] changes: %v", opts.OldBranch, err)
  228. } else if err = repo.UpdateLocalCopyBranch(opts.OldBranch); err != nil {
  229. return fmt.Errorf("update local copy branch[%s]: %v", opts.OldBranch, err)
  230. }
  231. if opts.OldBranch != opts.NewBranch {
  232. if err := repo.CheckoutNewBranch(opts.OldBranch, opts.NewBranch); err != nil {
  233. return fmt.Errorf("checkout new branch[%s] from old branch[%s]: %v", opts.NewBranch, opts.OldBranch, err)
  234. }
  235. }
  236. localPath := repo.LocalCopyPath()
  237. if err = os.Remove(path.Join(localPath, opts.TreePath)); err != nil {
  238. return fmt.Errorf("remove file %q: %v", opts.TreePath, err)
  239. }
  240. if err = git.RepoAdd(localPath, git.AddOptions{All: true}); err != nil {
  241. return fmt.Errorf("git add --all: %v", err)
  242. } else if err = git.RepoCommit(localPath, doer.NewGitSig(), opts.Message); err != nil {
  243. return fmt.Errorf("commit changes to %q: %v", localPath, err)
  244. }
  245. envs := ComposeHookEnvs(ComposeHookEnvsOptions{
  246. AuthUser: doer,
  247. OwnerName: repo.MustOwner().Name,
  248. OwnerSalt: repo.MustOwner().Salt,
  249. RepoID: repo.ID,
  250. RepoName: repo.Name,
  251. RepoPath: repo.RepoPath(),
  252. })
  253. if err = git.RepoPush(localPath, "origin", opts.NewBranch, git.PushOptions{Envs: envs}); err != nil {
  254. return fmt.Errorf("git push origin %s: %v", opts.NewBranch, err)
  255. }
  256. return nil
  257. }
  258. // ____ ___ .__ .___ ___________.___.__
  259. // | | \______ | | _________ __| _/ \_ _____/| | | ____ ______
  260. // | | /\____ \| | / _ \__ \ / __ | | __) | | | _/ __ \ / ___/
  261. // | | / | |_> > |_( <_> ) __ \_/ /_/ | | \ | | |_\ ___/ \___ \
  262. // |______/ | __/|____/\____(____ /\____ | \___ / |___|____/\___ >____ >
  263. // |__| \/ \/ \/ \/ \/
  264. //
  265. // Upload represent a uploaded file to a repo to be deleted when moved
  266. type Upload struct {
  267. ID int64
  268. UUID string `xorm:"uuid UNIQUE"`
  269. Name string
  270. }
  271. // UploadLocalPath returns where uploads is stored in local file system based on given UUID.
  272. func UploadLocalPath(uuid string) string {
  273. return path.Join(conf.Repository.Upload.TempPath, uuid[0:1], uuid[1:2], uuid)
  274. }
  275. // LocalPath returns where uploads are temporarily stored in local file system.
  276. func (upload *Upload) LocalPath() string {
  277. return UploadLocalPath(upload.UUID)
  278. }
  279. // NewUpload creates a new upload object.
  280. func NewUpload(name string, buf []byte, file multipart.File) (_ *Upload, err error) {
  281. if tool.IsMaliciousPath(name) {
  282. return nil, fmt.Errorf("malicious path detected: %s", name)
  283. }
  284. upload := &Upload{
  285. UUID: gouuid.NewV4().String(),
  286. Name: name,
  287. }
  288. localPath := upload.LocalPath()
  289. if err = os.MkdirAll(path.Dir(localPath), os.ModePerm); err != nil {
  290. return nil, fmt.Errorf("mkdir all: %v", err)
  291. }
  292. fw, err := os.Create(localPath)
  293. if err != nil {
  294. return nil, fmt.Errorf("create: %v", err)
  295. }
  296. defer fw.Close()
  297. if _, err = fw.Write(buf); err != nil {
  298. return nil, fmt.Errorf("write: %v", err)
  299. } else if _, err = io.Copy(fw, file); err != nil {
  300. return nil, fmt.Errorf("copy: %v", err)
  301. }
  302. if _, err := x.Insert(upload); err != nil {
  303. return nil, err
  304. }
  305. return upload, nil
  306. }
  307. func GetUploadByUUID(uuid string) (*Upload, error) {
  308. upload := &Upload{UUID: uuid}
  309. has, err := x.Get(upload)
  310. if err != nil {
  311. return nil, err
  312. } else if !has {
  313. return nil, ErrUploadNotExist{0, uuid}
  314. }
  315. return upload, nil
  316. }
  317. func GetUploadsByUUIDs(uuids []string) ([]*Upload, error) {
  318. if len(uuids) == 0 {
  319. return []*Upload{}, nil
  320. }
  321. // Silently drop invalid uuids.
  322. uploads := make([]*Upload, 0, len(uuids))
  323. return uploads, x.In("uuid", uuids).Find(&uploads)
  324. }
  325. func DeleteUploads(uploads ...*Upload) (err error) {
  326. if len(uploads) == 0 {
  327. return nil
  328. }
  329. sess := x.NewSession()
  330. defer sess.Close()
  331. if err = sess.Begin(); err != nil {
  332. return err
  333. }
  334. ids := make([]int64, len(uploads))
  335. for i := 0; i < len(uploads); i++ {
  336. ids[i] = uploads[i].ID
  337. }
  338. if _, err = sess.In("id", ids).Delete(new(Upload)); err != nil {
  339. return fmt.Errorf("delete uploads: %v", err)
  340. }
  341. for _, upload := range uploads {
  342. localPath := upload.LocalPath()
  343. if !osutil.IsFile(localPath) {
  344. continue
  345. }
  346. if err := os.Remove(localPath); err != nil {
  347. return fmt.Errorf("remove upload: %v", err)
  348. }
  349. }
  350. return sess.Commit()
  351. }
  352. func DeleteUpload(u *Upload) error {
  353. return DeleteUploads(u)
  354. }
  355. func DeleteUploadByUUID(uuid string) error {
  356. upload, err := GetUploadByUUID(uuid)
  357. if err != nil {
  358. if IsErrUploadNotExist(err) {
  359. return nil
  360. }
  361. return fmt.Errorf("get upload by UUID[%s]: %v", uuid, err)
  362. }
  363. if err := DeleteUpload(upload); err != nil {
  364. return fmt.Errorf("delete upload: %v", err)
  365. }
  366. return nil
  367. }
  368. type UploadRepoFileOptions struct {
  369. LastCommitID string
  370. OldBranch string
  371. NewBranch string
  372. TreePath string
  373. Message string
  374. Files []string // In UUID format
  375. }
  376. // isRepositoryGitPath returns true if given path is or resides inside ".git" path of the repository.
  377. func isRepositoryGitPath(path string) bool {
  378. return strings.HasSuffix(path, ".git") || strings.Contains(path, ".git"+string(os.PathSeparator))
  379. }
  380. func (repo *Repository) UploadRepoFiles(doer *User, opts UploadRepoFileOptions) (err error) {
  381. if len(opts.Files) == 0 {
  382. return nil
  383. }
  384. uploads, err := GetUploadsByUUIDs(opts.Files)
  385. if err != nil {
  386. return fmt.Errorf("get uploads by UUIDs[%v]: %v", opts.Files, err)
  387. }
  388. repoWorkingPool.CheckIn(com.ToStr(repo.ID))
  389. defer repoWorkingPool.CheckOut(com.ToStr(repo.ID))
  390. if err = repo.DiscardLocalRepoBranchChanges(opts.OldBranch); err != nil {
  391. return fmt.Errorf("discard local repo branch[%s] changes: %v", opts.OldBranch, err)
  392. } else if err = repo.UpdateLocalCopyBranch(opts.OldBranch); err != nil {
  393. return fmt.Errorf("update local copy branch[%s]: %v", opts.OldBranch, err)
  394. }
  395. if opts.OldBranch != opts.NewBranch {
  396. if err = repo.CheckoutNewBranch(opts.OldBranch, opts.NewBranch); err != nil {
  397. return fmt.Errorf("checkout new branch[%s] from old branch[%s]: %v", opts.NewBranch, opts.OldBranch, err)
  398. }
  399. }
  400. localPath := repo.LocalCopyPath()
  401. dirPath := path.Join(localPath, opts.TreePath)
  402. if err = os.MkdirAll(dirPath, os.ModePerm); err != nil {
  403. return err
  404. }
  405. // Copy uploaded files into repository
  406. for _, upload := range uploads {
  407. tmpPath := upload.LocalPath()
  408. if !osutil.IsFile(tmpPath) {
  409. continue
  410. }
  411. // Prevent copying files into .git directory, see https://gogs.io/gogs/issues/5558.
  412. if isRepositoryGitPath(upload.Name) {
  413. continue
  414. }
  415. targetPath := path.Join(dirPath, upload.Name)
  416. if err = com.Copy(tmpPath, targetPath); err != nil {
  417. return fmt.Errorf("copy: %v", err)
  418. }
  419. }
  420. if err = git.RepoAdd(localPath, git.AddOptions{All: true}); err != nil {
  421. return fmt.Errorf("git add --all: %v", err)
  422. } else if err = git.RepoCommit(localPath, doer.NewGitSig(), opts.Message); err != nil {
  423. return fmt.Errorf("commit changes on %q: %v", localPath, err)
  424. }
  425. envs := ComposeHookEnvs(ComposeHookEnvsOptions{
  426. AuthUser: doer,
  427. OwnerName: repo.MustOwner().Name,
  428. OwnerSalt: repo.MustOwner().Salt,
  429. RepoID: repo.ID,
  430. RepoName: repo.Name,
  431. RepoPath: repo.RepoPath(),
  432. })
  433. if err = git.RepoPush(localPath, "origin", opts.NewBranch, git.PushOptions{Envs: envs}); err != nil {
  434. return fmt.Errorf("git push origin %s: %v", opts.NewBranch, err)
  435. }
  436. return DeleteUploads(uploads...)
  437. }