You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

repo.go 13KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459
  1. // Copyright 2014 The Gogs Authors. All rights reserved.
  2. // Use of this source code is governed by a MIT-style
  3. // license that can be found in the LICENSE file.
  4. package repo
  5. import (
  6. "fmt"
  7. "os"
  8. "path"
  9. "strings"
  10. "code.gitea.io/gitea/models"
  11. "code.gitea.io/gitea/modules/auth"
  12. "code.gitea.io/gitea/modules/base"
  13. "code.gitea.io/gitea/modules/context"
  14. "code.gitea.io/gitea/modules/git"
  15. "code.gitea.io/gitea/modules/log"
  16. "code.gitea.io/gitea/modules/migrations"
  17. "code.gitea.io/gitea/modules/notification"
  18. "code.gitea.io/gitea/modules/setting"
  19. "code.gitea.io/gitea/modules/util"
  20. "github.com/Unknwon/com"
  21. )
  22. const (
  23. tplCreate base.TplName = "repo/create"
  24. tplMigrate base.TplName = "repo/migrate"
  25. )
  26. // MustBeNotEmpty render when a repo is a empty git dir
  27. func MustBeNotEmpty(ctx *context.Context) {
  28. if ctx.Repo.Repository.IsEmpty {
  29. ctx.NotFound("MustBeNotEmpty", nil)
  30. }
  31. }
  32. // MustBeEditable check that repo can be edited
  33. func MustBeEditable(ctx *context.Context) {
  34. if !ctx.Repo.Repository.CanEnableEditor() || ctx.Repo.IsViewCommit {
  35. ctx.NotFound("", nil)
  36. return
  37. }
  38. }
  39. // MustBeAbleToUpload check that repo can be uploaded to
  40. func MustBeAbleToUpload(ctx *context.Context) {
  41. if !setting.Repository.Upload.Enabled {
  42. ctx.NotFound("", nil)
  43. }
  44. }
  45. func checkContextUser(ctx *context.Context, uid int64) *models.User {
  46. orgs, err := models.GetOwnedOrgsByUserIDDesc(ctx.User.ID, "updated_unix")
  47. if err != nil {
  48. ctx.ServerError("GetOwnedOrgsByUserIDDesc", err)
  49. return nil
  50. }
  51. ctx.Data["Orgs"] = orgs
  52. // Not equal means current user is an organization.
  53. if uid == ctx.User.ID || uid == 0 {
  54. return ctx.User
  55. }
  56. org, err := models.GetUserByID(uid)
  57. if models.IsErrUserNotExist(err) {
  58. return ctx.User
  59. }
  60. if err != nil {
  61. ctx.ServerError("GetUserByID", fmt.Errorf("[%d]: %v", uid, err))
  62. return nil
  63. }
  64. // Check ownership of organization.
  65. if !org.IsOrganization() {
  66. ctx.Error(403)
  67. return nil
  68. }
  69. if !ctx.User.IsAdmin {
  70. isOwner, err := org.IsOwnedBy(ctx.User.ID)
  71. if err != nil {
  72. ctx.ServerError("IsOwnedBy", err)
  73. return nil
  74. } else if !isOwner {
  75. ctx.Error(403)
  76. return nil
  77. }
  78. }
  79. return org
  80. }
  81. func getRepoPrivate(ctx *context.Context) bool {
  82. switch strings.ToLower(setting.Repository.DefaultPrivate) {
  83. case setting.RepoCreatingLastUserVisibility:
  84. return ctx.User.LastRepoVisibility
  85. case setting.RepoCreatingPrivate:
  86. return true
  87. case setting.RepoCreatingPublic:
  88. return false
  89. default:
  90. return ctx.User.LastRepoVisibility
  91. }
  92. }
  93. // Create render creating repository page
  94. func Create(ctx *context.Context) {
  95. if !ctx.User.CanCreateRepo() {
  96. ctx.RenderWithErr(ctx.Tr("repo.form.reach_limit_of_creation", ctx.User.MaxCreationLimit()), tplCreate, nil)
  97. }
  98. ctx.Data["Title"] = ctx.Tr("new_repo")
  99. // Give default value for template to render.
  100. ctx.Data["Gitignores"] = models.Gitignores
  101. ctx.Data["Licenses"] = models.Licenses
  102. ctx.Data["Readmes"] = models.Readmes
  103. ctx.Data["readme"] = "Default"
  104. ctx.Data["private"] = getRepoPrivate(ctx)
  105. ctx.Data["IsForcedPrivate"] = setting.Repository.ForcePrivate
  106. ctxUser := checkContextUser(ctx, ctx.QueryInt64("org"))
  107. if ctx.Written() {
  108. return
  109. }
  110. ctx.Data["ContextUser"] = ctxUser
  111. ctx.HTML(200, tplCreate)
  112. }
  113. func handleCreateError(ctx *context.Context, owner *models.User, err error, name string, tpl base.TplName, form interface{}) {
  114. switch {
  115. case migrations.IsRateLimitError(err):
  116. ctx.RenderWithErr(ctx.Tr("form.visit_rate_limit"), tpl, form)
  117. case models.IsErrReachLimitOfRepo(err):
  118. ctx.RenderWithErr(ctx.Tr("repo.form.reach_limit_of_creation", owner.MaxCreationLimit()), tpl, form)
  119. case models.IsErrRepoAlreadyExist(err):
  120. ctx.Data["Err_RepoName"] = true
  121. ctx.RenderWithErr(ctx.Tr("form.repo_name_been_taken"), tpl, form)
  122. case models.IsErrNameReserved(err):
  123. ctx.Data["Err_RepoName"] = true
  124. ctx.RenderWithErr(ctx.Tr("repo.form.name_reserved", err.(models.ErrNameReserved).Name), tpl, form)
  125. case models.IsErrNamePatternNotAllowed(err):
  126. ctx.Data["Err_RepoName"] = true
  127. ctx.RenderWithErr(ctx.Tr("repo.form.name_pattern_not_allowed", err.(models.ErrNamePatternNotAllowed).Pattern), tpl, form)
  128. default:
  129. ctx.ServerError(name, err)
  130. }
  131. }
  132. // CreatePost response for creating repository
  133. func CreatePost(ctx *context.Context, form auth.CreateRepoForm) {
  134. ctx.Data["Title"] = ctx.Tr("new_repo")
  135. ctx.Data["Gitignores"] = models.Gitignores
  136. ctx.Data["Licenses"] = models.Licenses
  137. ctx.Data["Readmes"] = models.Readmes
  138. ctxUser := checkContextUser(ctx, form.UID)
  139. if ctx.Written() {
  140. return
  141. }
  142. ctx.Data["ContextUser"] = ctxUser
  143. if ctx.HasError() {
  144. ctx.HTML(200, tplCreate)
  145. return
  146. }
  147. repo, err := models.CreateRepository(ctx.User, ctxUser, models.CreateRepoOptions{
  148. Name: form.RepoName,
  149. Description: form.Description,
  150. Gitignores: form.Gitignores,
  151. License: form.License,
  152. Readme: form.Readme,
  153. IsPrivate: form.Private || setting.Repository.ForcePrivate,
  154. AutoInit: form.AutoInit,
  155. })
  156. if err == nil {
  157. notification.NotifyCreateRepository(ctx.User, ctxUser, repo)
  158. log.Trace("Repository created [%d]: %s/%s", repo.ID, ctxUser.Name, repo.Name)
  159. ctx.Redirect(setting.AppSubURL + "/" + ctxUser.Name + "/" + repo.Name)
  160. return
  161. }
  162. if repo != nil {
  163. if errDelete := models.DeleteRepository(ctx.User, ctxUser.ID, repo.ID); errDelete != nil {
  164. log.Error("DeleteRepository: %v", errDelete)
  165. }
  166. }
  167. handleCreateError(ctx, ctxUser, err, "CreatePost", tplCreate, &form)
  168. }
  169. // Migrate render migration of repository page
  170. func Migrate(ctx *context.Context) {
  171. ctx.Data["Title"] = ctx.Tr("new_migrate")
  172. ctx.Data["private"] = getRepoPrivate(ctx)
  173. ctx.Data["IsForcedPrivate"] = setting.Repository.ForcePrivate
  174. ctx.Data["mirror"] = ctx.Query("mirror") == "1"
  175. ctx.Data["wiki"] = ctx.Query("wiki") == "1"
  176. ctx.Data["milestones"] = ctx.Query("milestones") == "1"
  177. ctx.Data["labels"] = ctx.Query("labels") == "1"
  178. ctx.Data["issues"] = ctx.Query("issues") == "1"
  179. ctx.Data["pull_requests"] = ctx.Query("pull_requests") == "1"
  180. ctx.Data["releases"] = ctx.Query("releases") == "1"
  181. ctx.Data["LFSActive"] = setting.LFS.StartServer
  182. ctxUser := checkContextUser(ctx, ctx.QueryInt64("org"))
  183. if ctx.Written() {
  184. return
  185. }
  186. ctx.Data["ContextUser"] = ctxUser
  187. ctx.HTML(200, tplMigrate)
  188. }
  189. // MigratePost response for migrating from external git repository
  190. func MigratePost(ctx *context.Context, form auth.MigrateRepoForm) {
  191. ctx.Data["Title"] = ctx.Tr("new_migrate")
  192. ctxUser := checkContextUser(ctx, form.UID)
  193. if ctx.Written() {
  194. return
  195. }
  196. ctx.Data["ContextUser"] = ctxUser
  197. if ctx.HasError() {
  198. ctx.HTML(200, tplMigrate)
  199. return
  200. }
  201. remoteAddr, err := form.ParseRemoteAddr(ctx.User)
  202. if err != nil {
  203. if models.IsErrInvalidCloneAddr(err) {
  204. ctx.Data["Err_CloneAddr"] = true
  205. addrErr := err.(models.ErrInvalidCloneAddr)
  206. switch {
  207. case addrErr.IsURLError:
  208. ctx.RenderWithErr(ctx.Tr("form.url_error"), tplMigrate, &form)
  209. case addrErr.IsPermissionDenied:
  210. ctx.RenderWithErr(ctx.Tr("repo.migrate.permission_denied"), tplMigrate, &form)
  211. case addrErr.IsInvalidPath:
  212. ctx.RenderWithErr(ctx.Tr("repo.migrate.invalid_local_path"), tplMigrate, &form)
  213. default:
  214. ctx.ServerError("Unknown error", err)
  215. }
  216. } else {
  217. ctx.ServerError("ParseRemoteAddr", err)
  218. }
  219. return
  220. }
  221. var opts = migrations.MigrateOptions{
  222. RemoteURL: remoteAddr,
  223. Name: form.RepoName,
  224. Description: form.Description,
  225. Private: form.Private || setting.Repository.ForcePrivate,
  226. Mirror: form.Mirror,
  227. AuthUsername: form.AuthUsername,
  228. AuthPassword: form.AuthPassword,
  229. Wiki: form.Wiki,
  230. Issues: form.Issues,
  231. Milestones: form.Milestones,
  232. Labels: form.Labels,
  233. Comments: true,
  234. PullRequests: form.PullRequests,
  235. Releases: form.Releases,
  236. }
  237. if opts.Mirror {
  238. opts.Issues = false
  239. opts.Milestones = false
  240. opts.Labels = false
  241. opts.Comments = false
  242. opts.PullRequests = false
  243. opts.Releases = false
  244. }
  245. repo, err := migrations.MigrateRepository(ctx.User, ctxUser.Name, opts)
  246. if err == nil {
  247. notification.NotifyCreateRepository(ctx.User, ctxUser, repo)
  248. log.Trace("Repository migrated [%d]: %s/%s successfully", repo.ID, ctxUser.Name, form.RepoName)
  249. ctx.Redirect(setting.AppSubURL + "/" + ctxUser.Name + "/" + form.RepoName)
  250. return
  251. }
  252. switch {
  253. case models.IsErrReachLimitOfRepo(err):
  254. ctx.RenderWithErr(ctx.Tr("repo.form.reach_limit_of_creation", ctxUser.MaxCreationLimit()), tplMigrate, &form)
  255. case models.IsErrNameReserved(err):
  256. ctx.Data["Err_RepoName"] = true
  257. ctx.RenderWithErr(ctx.Tr("repo.form.name_reserved", err.(models.ErrNameReserved).Name), tplMigrate, &form)
  258. case models.IsErrRepoAlreadyExist(err):
  259. ctx.Data["Err_RepoName"] = true
  260. ctx.RenderWithErr(ctx.Tr("form.repo_name_been_taken"), tplMigrate, &form)
  261. case models.IsErrNamePatternNotAllowed(err):
  262. ctx.Data["Err_RepoName"] = true
  263. ctx.RenderWithErr(ctx.Tr("repo.form.name_pattern_not_allowed", err.(models.ErrNamePatternNotAllowed).Pattern), tplMigrate, &form)
  264. case migrations.IsRateLimitError(err):
  265. ctx.RenderWithErr(ctx.Tr("form.visit_rate_limit"), tplMigrate, &form)
  266. case migrations.IsTwoFactorAuthError(err):
  267. ctx.Data["Err_Auth"] = true
  268. ctx.RenderWithErr(ctx.Tr("form.2fa_auth_required"), tplMigrate, &form)
  269. default:
  270. // remoteAddr may contain credentials, so we sanitize it
  271. err = util.URLSanitizedError(err, remoteAddr)
  272. if strings.Contains(err.Error(), "Authentication failed") ||
  273. strings.Contains(err.Error(), "Bad credentials") ||
  274. strings.Contains(err.Error(), "could not read Username") {
  275. ctx.Data["Err_Auth"] = true
  276. ctx.RenderWithErr(ctx.Tr("form.auth_failed", err.Error()), tplMigrate, &form)
  277. } else if strings.Contains(err.Error(), "fatal:") {
  278. ctx.Data["Err_CloneAddr"] = true
  279. ctx.RenderWithErr(ctx.Tr("repo.migrate.failed", err.Error()), tplMigrate, &form)
  280. } else {
  281. ctx.ServerError("MigratePost", err)
  282. }
  283. }
  284. }
  285. // Action response for actions to a repository
  286. func Action(ctx *context.Context) {
  287. var err error
  288. switch ctx.Params(":action") {
  289. case "watch":
  290. err = models.WatchRepo(ctx.User.ID, ctx.Repo.Repository.ID, true)
  291. case "unwatch":
  292. err = models.WatchRepo(ctx.User.ID, ctx.Repo.Repository.ID, false)
  293. case "star":
  294. err = models.StarRepo(ctx.User.ID, ctx.Repo.Repository.ID, true)
  295. case "unstar":
  296. err = models.StarRepo(ctx.User.ID, ctx.Repo.Repository.ID, false)
  297. case "desc": // FIXME: this is not used
  298. if !ctx.Repo.IsOwner() {
  299. ctx.Error(404)
  300. return
  301. }
  302. ctx.Repo.Repository.Description = ctx.Query("desc")
  303. ctx.Repo.Repository.Website = ctx.Query("site")
  304. err = models.UpdateRepository(ctx.Repo.Repository, false)
  305. }
  306. if err != nil {
  307. ctx.ServerError(fmt.Sprintf("Action (%s)", ctx.Params(":action")), err)
  308. return
  309. }
  310. ctx.RedirectToFirst(ctx.Query("redirect_to"), ctx.Repo.RepoLink)
  311. }
  312. // RedirectDownload return a file based on the following infos:
  313. func RedirectDownload(ctx *context.Context) {
  314. var (
  315. vTag = ctx.Params("vTag")
  316. fileName = ctx.Params("fileName")
  317. )
  318. tagNames := []string{vTag}
  319. curRepo := ctx.Repo.Repository
  320. releases, err := models.GetReleasesByRepoIDAndNames(curRepo.ID, tagNames)
  321. if err != nil {
  322. if models.IsErrAttachmentNotExist(err) {
  323. ctx.Error(404)
  324. return
  325. }
  326. ctx.ServerError("RedirectDownload", err)
  327. return
  328. }
  329. if len(releases) == 1 {
  330. release := releases[0]
  331. att, err := models.GetAttachmentByReleaseIDFileName(release.ID, fileName)
  332. if err != nil {
  333. ctx.Error(404)
  334. return
  335. }
  336. if att != nil {
  337. ctx.Redirect(setting.AppSubURL + "/attachments/" + att.UUID)
  338. return
  339. }
  340. }
  341. ctx.Error(404)
  342. }
  343. // Download download an archive of a repository
  344. func Download(ctx *context.Context) {
  345. var (
  346. uri = ctx.Params("*")
  347. refName string
  348. ext string
  349. archivePath string
  350. archiveType git.ArchiveType
  351. )
  352. switch {
  353. case strings.HasSuffix(uri, ".zip"):
  354. ext = ".zip"
  355. archivePath = path.Join(ctx.Repo.GitRepo.Path, "archives/zip")
  356. archiveType = git.ZIP
  357. case strings.HasSuffix(uri, ".tar.gz"):
  358. ext = ".tar.gz"
  359. archivePath = path.Join(ctx.Repo.GitRepo.Path, "archives/targz")
  360. archiveType = git.TARGZ
  361. default:
  362. log.Trace("Unknown format: %s", uri)
  363. ctx.Error(404)
  364. return
  365. }
  366. refName = strings.TrimSuffix(uri, ext)
  367. if !com.IsDir(archivePath) {
  368. if err := os.MkdirAll(archivePath, os.ModePerm); err != nil {
  369. ctx.ServerError("Download -> os.MkdirAll(archivePath)", err)
  370. return
  371. }
  372. }
  373. // Get corresponding commit.
  374. var (
  375. commit *git.Commit
  376. err error
  377. )
  378. gitRepo := ctx.Repo.GitRepo
  379. if gitRepo.IsBranchExist(refName) {
  380. commit, err = gitRepo.GetBranchCommit(refName)
  381. if err != nil {
  382. ctx.ServerError("GetBranchCommit", err)
  383. return
  384. }
  385. } else if gitRepo.IsTagExist(refName) {
  386. commit, err = gitRepo.GetTagCommit(refName)
  387. if err != nil {
  388. ctx.ServerError("GetTagCommit", err)
  389. return
  390. }
  391. } else if len(refName) >= 4 && len(refName) <= 40 {
  392. commit, err = gitRepo.GetCommit(refName)
  393. if err != nil {
  394. ctx.NotFound("GetCommit", nil)
  395. return
  396. }
  397. } else {
  398. ctx.NotFound("Download", nil)
  399. return
  400. }
  401. archivePath = path.Join(archivePath, base.ShortSha(commit.ID.String())+ext)
  402. if !com.IsFile(archivePath) {
  403. if err := commit.CreateArchive(archivePath, archiveType); err != nil {
  404. ctx.ServerError("Download -> CreateArchive "+archivePath, err)
  405. return
  406. }
  407. }
  408. ctx.ServeFile(archivePath, ctx.Repo.Repository.Name+"-"+refName+ext)
  409. }