You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

RepositoryFilter.java 7.3KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206
  1. /*
  2. * Copyright (C) 2009-2010, Google Inc.
  3. * and other copyright owners as documented in the project's IP log.
  4. *
  5. * This program and the accompanying materials are made available
  6. * under the terms of the Eclipse Distribution License v1.0 which
  7. * accompanies this distribution, is reproduced below, and is
  8. * available at http://www.eclipse.org/org/documents/edl-v10.php
  9. *
  10. * All rights reserved.
  11. *
  12. * Redistribution and use in source and binary forms, with or
  13. * without modification, are permitted provided that the following
  14. * conditions are met:
  15. *
  16. * - Redistributions of source code must retain the above copyright
  17. * notice, this list of conditions and the following disclaimer.
  18. *
  19. * - Redistributions in binary form must reproduce the above
  20. * copyright notice, this list of conditions and the following
  21. * disclaimer in the documentation and/or other materials provided
  22. * with the distribution.
  23. *
  24. * - Neither the name of the Eclipse Foundation, Inc. nor the
  25. * names of its contributors may be used to endorse or promote
  26. * products derived from this software without specific prior
  27. * written permission.
  28. *
  29. * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND
  30. * CONTRIBUTORS "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES,
  31. * INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
  32. * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
  33. * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR
  34. * CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
  35. * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
  36. * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
  37. * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER
  38. * CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
  39. * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
  40. * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF
  41. * ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
  42. */
  43. package org.eclipse.jgit.http.server;
  44. import static javax.servlet.http.HttpServletResponse.SC_FORBIDDEN;
  45. import static javax.servlet.http.HttpServletResponse.SC_INTERNAL_SERVER_ERROR;
  46. import static javax.servlet.http.HttpServletResponse.SC_NOT_FOUND;
  47. import static javax.servlet.http.HttpServletResponse.SC_UNAUTHORIZED;
  48. import static org.eclipse.jgit.http.server.ServletUtils.ATTRIBUTE_REPOSITORY;
  49. import static org.eclipse.jgit.util.HttpSupport.HDR_ACCEPT;
  50. import java.io.IOException;
  51. import java.text.MessageFormat;
  52. import javax.servlet.Filter;
  53. import javax.servlet.FilterChain;
  54. import javax.servlet.FilterConfig;
  55. import javax.servlet.ServletContext;
  56. import javax.servlet.ServletException;
  57. import javax.servlet.ServletRequest;
  58. import javax.servlet.ServletResponse;
  59. import javax.servlet.http.HttpServletRequest;
  60. import javax.servlet.http.HttpServletResponse;
  61. import org.eclipse.jgit.errors.RepositoryNotFoundException;
  62. import org.eclipse.jgit.lib.Repository;
  63. import org.eclipse.jgit.transport.PacketLineOut;
  64. import org.eclipse.jgit.transport.resolver.RepositoryResolver;
  65. import org.eclipse.jgit.transport.resolver.ServiceNotAuthorizedException;
  66. import org.eclipse.jgit.transport.resolver.ServiceNotEnabledException;
  67. /**
  68. * Opens a repository named by the path info through {@link RepositoryResolver}.
  69. * <p>
  70. * This filter assumes it is invoked by {@link GitServlet} and is likely to not
  71. * work as expected if called from any other class. This filter assumes the path
  72. * info of the current request is a repository name which can be used by the
  73. * configured {@link RepositoryResolver} to open a {@link Repository} and attach
  74. * it to the current request.
  75. * <p>
  76. * This filter sets request attribute {@link ServletUtils#ATTRIBUTE_REPOSITORY}
  77. * when it discovers the repository, and automatically closes and removes the
  78. * attribute when the request is complete.
  79. */
  80. public class RepositoryFilter implements Filter {
  81. private final RepositoryResolver<HttpServletRequest> resolver;
  82. private ServletContext context;
  83. /**
  84. * Create a new filter.
  85. *
  86. * @param resolver
  87. * the resolver which will be used to translate the URL name
  88. * component to the actual {@link Repository} instance for the
  89. * current web request.
  90. */
  91. public RepositoryFilter(final RepositoryResolver<HttpServletRequest> resolver) {
  92. this.resolver = resolver;
  93. }
  94. public void init(final FilterConfig config) throws ServletException {
  95. context = config.getServletContext();
  96. }
  97. public void destroy() {
  98. context = null;
  99. }
  100. public void doFilter(final ServletRequest request,
  101. final ServletResponse rsp, final FilterChain chain)
  102. throws IOException, ServletException {
  103. if (request.getAttribute(ATTRIBUTE_REPOSITORY) != null) {
  104. context.log(MessageFormat.format(HttpServerText.get().internalServerErrorRequestAttributeWasAlreadySet
  105. , ATTRIBUTE_REPOSITORY
  106. , getClass().getName()));
  107. ((HttpServletResponse) rsp).sendError(SC_INTERNAL_SERVER_ERROR);
  108. return;
  109. }
  110. final HttpServletRequest req = (HttpServletRequest) request;
  111. String name = req.getPathInfo();
  112. if (name == null || name.length() == 0) {
  113. ((HttpServletResponse) rsp).sendError(SC_NOT_FOUND);
  114. return;
  115. }
  116. if (name.startsWith("/"))
  117. name = name.substring(1);
  118. final Repository db;
  119. try {
  120. db = resolver.open(req, name);
  121. } catch (RepositoryNotFoundException e) {
  122. sendError(SC_NOT_FOUND, req, (HttpServletResponse) rsp);
  123. return;
  124. } catch (ServiceNotEnabledException e) {
  125. sendError(SC_FORBIDDEN, req, (HttpServletResponse) rsp);
  126. return;
  127. } catch (ServiceNotAuthorizedException e) {
  128. ((HttpServletResponse) rsp).sendError(SC_UNAUTHORIZED);
  129. return;
  130. }
  131. try {
  132. request.setAttribute(ATTRIBUTE_REPOSITORY, db);
  133. chain.doFilter(request, rsp);
  134. } finally {
  135. request.removeAttribute(ATTRIBUTE_REPOSITORY);
  136. db.close();
  137. }
  138. }
  139. static void sendError(int statusCode, HttpServletRequest req,
  140. HttpServletResponse rsp) throws IOException {
  141. String svc = req.getParameter("service");
  142. if (req.getRequestURI().endsWith("/info/refs") && isService(svc)) {
  143. // Smart HTTP service request, use an ERR response.
  144. rsp.setContentType("application/x-" + svc + "-advertisement");
  145. SmartOutputStream buf = new SmartOutputStream(req, rsp);
  146. PacketLineOut out = new PacketLineOut(buf);
  147. out.writeString("# service=" + svc + "\n");
  148. out.end();
  149. out.writeString("ERR " + translate(statusCode));
  150. buf.close();
  151. return;
  152. }
  153. String accept = req.getHeader(HDR_ACCEPT);
  154. if (accept != null && accept.contains(UploadPackServlet.RSP_TYPE)) {
  155. // An upload-pack wants ACK or NAK, return ERR
  156. // and the client will print this instead.
  157. rsp.setContentType(UploadPackServlet.RSP_TYPE);
  158. SmartOutputStream buf = new SmartOutputStream(req, rsp);
  159. PacketLineOut out = new PacketLineOut(buf);
  160. out.writeString("ERR " + translate(statusCode));
  161. buf.close();
  162. return;
  163. }
  164. // Otherwise fail with an HTTP error code instead of an
  165. // application level message. This may not be as pretty
  166. // of a result for the user, but its better than nothing.
  167. //
  168. rsp.sendError(statusCode);
  169. }
  170. private static boolean isService(String svc) {
  171. return "git-upload-pack".equals(svc) || "git-receive-pack".equals(svc);
  172. }
  173. private static String translate(int statusCode) {
  174. switch (statusCode) {
  175. case SC_NOT_FOUND:
  176. return HttpServerText.get().repositoryNotFound;
  177. case SC_FORBIDDEN:
  178. return HttpServerText.get().repositoryAccessForbidden;
  179. default:
  180. return String.valueOf(statusCode);
  181. }
  182. }
  183. }