repo.go 9.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386
  1. // Copyright 2015 The Gogs Authors. All rights reserved.
  2. // Copyright 2018 Gitote. All rights reserved.
  3. //
  4. // This source code is licensed under the MIT license found in the
  5. // LICENSE file in the root directory of this source tree.
  6. package repo
  7. import (
  8. "gitote/gitote/models"
  9. "gitote/gitote/models/errors"
  10. "gitote/gitote/pkg/context"
  11. "gitote/gitote/pkg/form"
  12. "gitote/gitote/pkg/setting"
  13. "gitote/gitote/routes/api/v1/convert"
  14. "path"
  15. raven "github.com/getsentry/raven-go"
  16. api "gitlab.com/gitote/go-gitote-client"
  17. log "gopkg.in/clog.v1"
  18. )
  19. func Search(c *context.APIContext) {
  20. opts := &models.SearchRepoOptions{
  21. Keyword: path.Base(c.Query("q")),
  22. OwnerID: c.QueryInt64("uid"),
  23. PageSize: convert.ToCorrectPageSize(c.QueryInt("limit")),
  24. Page: c.QueryInt("page"),
  25. }
  26. // Check visibility.
  27. if c.IsLogged && opts.OwnerID > 0 {
  28. if c.User.ID == opts.OwnerID {
  29. opts.Private = true
  30. } else {
  31. u, err := models.GetUserByID(opts.OwnerID)
  32. if err != nil {
  33. c.JSON(500, map[string]interface{}{
  34. "ok": false,
  35. "error": err.Error(),
  36. })
  37. return
  38. }
  39. if u.IsOrganization() && u.IsOwnedBy(c.User.ID) {
  40. opts.Private = true
  41. }
  42. // FIXME: how about collaborators?
  43. }
  44. }
  45. repos, count, err := models.SearchRepositoryByName(opts)
  46. if err != nil {
  47. c.JSON(500, map[string]interface{}{
  48. "ok": false,
  49. "error": err.Error(),
  50. })
  51. return
  52. }
  53. if err = models.RepositoryList(repos).LoadAttributes(); err != nil {
  54. c.JSON(500, map[string]interface{}{
  55. "ok": false,
  56. "error": err.Error(),
  57. })
  58. return
  59. }
  60. results := make([]*api.Repository, len(repos))
  61. for i := range repos {
  62. results[i] = repos[i].APIFormat(nil)
  63. }
  64. c.SetLinkHeader(int(count), opts.PageSize)
  65. c.JSON(200, map[string]interface{}{
  66. "ok": true,
  67. "data": results,
  68. })
  69. }
  70. func listUserRepositories(c *context.APIContext, username string) {
  71. user, err := models.GetUserByName(username)
  72. if err != nil {
  73. c.NotFoundOrServerError("GetUserByName", errors.IsUserNotExist, err)
  74. return
  75. }
  76. // Only list public repositories if user requests someone else's repository list,
  77. // or an organization isn't a member of.
  78. var ownRepos []*models.Repository
  79. if user.IsOrganization() {
  80. ownRepos, _, err = user.GetUserRepositories(c.User.ID, 1, user.NumRepos)
  81. } else {
  82. ownRepos, err = models.GetUserRepositories(&models.UserRepoOptions{
  83. UserID: user.ID,
  84. Private: c.User.ID == user.ID,
  85. Page: 1,
  86. PageSize: user.NumRepos,
  87. })
  88. }
  89. if err != nil {
  90. c.Error(500, "GetUserRepositories", err)
  91. return
  92. }
  93. if err = models.RepositoryList(ownRepos).LoadAttributes(); err != nil {
  94. c.Error(500, "LoadAttributes(ownRepos)", err)
  95. return
  96. }
  97. // Early return for querying other user's repositories
  98. if c.User.ID != user.ID {
  99. repos := make([]*api.Repository, len(ownRepos))
  100. for i := range ownRepos {
  101. repos[i] = ownRepos[i].APIFormat(&api.Permission{true, true, true})
  102. }
  103. c.JSON(200, &repos)
  104. return
  105. }
  106. accessibleRepos, err := user.GetRepositoryAccesses()
  107. if err != nil {
  108. c.Error(500, "GetRepositoryAccesses", err)
  109. return
  110. }
  111. numOwnRepos := len(ownRepos)
  112. repos := make([]*api.Repository, numOwnRepos+len(accessibleRepos))
  113. for i := range ownRepos {
  114. repos[i] = ownRepos[i].APIFormat(&api.Permission{true, true, true})
  115. }
  116. i := numOwnRepos
  117. for repo, access := range accessibleRepos {
  118. repos[i] = repo.APIFormat(&api.Permission{
  119. Admin: access >= models.AccessModeAdmin,
  120. Push: access >= models.AccessModeWrite,
  121. Pull: true,
  122. })
  123. i++
  124. }
  125. c.JSON(200, &repos)
  126. }
  127. func ListMyRepos(c *context.APIContext) {
  128. listUserRepositories(c, c.User.Name)
  129. }
  130. func ListUserRepositories(c *context.APIContext) {
  131. listUserRepositories(c, c.Params(":username"))
  132. }
  133. func ListOrgRepositories(c *context.APIContext) {
  134. listUserRepositories(c, c.Params(":org"))
  135. }
  136. func CreateUserRepo(c *context.APIContext, owner *models.User, opt api.CreateRepoOption) {
  137. repo, err := models.CreateRepository(c.User, owner, models.CreateRepoOptions{
  138. Name: opt.Name,
  139. Description: opt.Description,
  140. Gitignores: opt.Gitignores,
  141. License: opt.License,
  142. Readme: opt.Readme,
  143. IsPrivate: opt.Private,
  144. AutoInit: opt.AutoInit,
  145. })
  146. if err != nil {
  147. if models.IsErrRepoAlreadyExist(err) ||
  148. models.IsErrNameReserved(err) ||
  149. models.IsErrNamePatternNotAllowed(err) {
  150. c.Error(422, "", err)
  151. } else {
  152. if repo != nil {
  153. if err = models.DeleteRepository(c.User.ID, repo.ID); err != nil {
  154. raven.CaptureErrorAndWait(err, nil)
  155. log.Error(2, "DeleteRepository: %v", err)
  156. }
  157. }
  158. c.Error(500, "CreateRepository", err)
  159. }
  160. return
  161. }
  162. c.JSON(201, repo.APIFormat(&api.Permission{true, true, true}))
  163. }
  164. func Create(c *context.APIContext, opt api.CreateRepoOption) {
  165. // Shouldn't reach this condition, but just in case.
  166. if c.User.IsOrganization() {
  167. c.Error(422, "", "not allowed creating repository for organization")
  168. return
  169. }
  170. CreateUserRepo(c, c.User, opt)
  171. }
  172. func CreateOrgRepo(c *context.APIContext, opt api.CreateRepoOption) {
  173. org, err := models.GetOrgByName(c.Params(":org"))
  174. if err != nil {
  175. if errors.IsUserNotExist(err) {
  176. c.Error(422, "", err)
  177. } else {
  178. c.Error(500, "GetOrgByName", err)
  179. }
  180. return
  181. }
  182. if !org.IsOwnedBy(c.User.ID) {
  183. c.Error(403, "", "Given user is not owner of organization.")
  184. return
  185. }
  186. CreateUserRepo(c, org, opt)
  187. }
  188. func Migrate(c *context.APIContext, f form.MigrateRepo) {
  189. ctxUser := c.User
  190. // Not equal means context user is an organization,
  191. // or is another user/organization if current user is admin.
  192. if f.Uid != ctxUser.ID {
  193. org, err := models.GetUserByID(f.Uid)
  194. if err != nil {
  195. if errors.IsUserNotExist(err) {
  196. c.Error(422, "", err)
  197. } else {
  198. c.Error(500, "GetUserByID", err)
  199. }
  200. return
  201. } else if !org.IsOrganization() && !c.User.IsAdmin {
  202. c.Error(403, "", "Given user is not an organization")
  203. return
  204. }
  205. ctxUser = org
  206. }
  207. if c.HasError() {
  208. c.Error(422, "", c.GetErrMsg())
  209. return
  210. }
  211. if ctxUser.IsOrganization() && !c.User.IsAdmin {
  212. // Check ownership of organization.
  213. if !ctxUser.IsOwnedBy(c.User.ID) {
  214. c.Error(403, "", "Given user is not owner of organization")
  215. return
  216. }
  217. }
  218. remoteAddr, err := f.ParseRemoteAddr(c.User)
  219. if err != nil {
  220. if models.IsErrInvalidCloneAddr(err) {
  221. addrErr := err.(models.ErrInvalidCloneAddr)
  222. switch {
  223. case addrErr.IsURLError:
  224. c.Error(422, "", err)
  225. case addrErr.IsPermissionDenied:
  226. c.Error(422, "", "You are not allowed to import local repositories")
  227. case addrErr.IsInvalidPath:
  228. c.Error(422, "", "Invalid local path, it does not exist or not a directory")
  229. default:
  230. c.Error(500, "ParseRemoteAddr", "Unknown error type (ErrInvalidCloneAddr): "+err.Error())
  231. }
  232. } else {
  233. c.Error(500, "ParseRemoteAddr", err)
  234. }
  235. return
  236. }
  237. repo, err := models.MigrateRepository(c.User, ctxUser, models.MigrateRepoOptions{
  238. Name: f.RepoName,
  239. Description: f.Description,
  240. IsPrivate: f.Private || setting.Repository.ForcePrivate,
  241. IsMirror: f.Mirror,
  242. RemoteAddr: remoteAddr,
  243. })
  244. if err != nil {
  245. if repo != nil {
  246. if errDelete := models.DeleteRepository(ctxUser.ID, repo.ID); errDelete != nil {
  247. raven.CaptureErrorAndWait(err, nil)
  248. log.Error(2, "DeleteRepository: %v", errDelete)
  249. }
  250. }
  251. if errors.IsReachLimitOfRepo(err) {
  252. c.Error(422, "", err)
  253. } else {
  254. c.Error(500, "MigrateRepository", models.HandleMirrorCredentials(err.Error(), true))
  255. }
  256. return
  257. }
  258. log.Trace("Repository migrated: %s/%s", ctxUser.Name, f.RepoName)
  259. c.JSON(201, repo.APIFormat(&api.Permission{true, true, true}))
  260. }
  261. func parseOwnerAndRepo(c *context.APIContext) (*models.User, *models.Repository) {
  262. owner, err := models.GetUserByName(c.Params(":username"))
  263. if err != nil {
  264. if errors.IsUserNotExist(err) {
  265. c.Error(422, "", err)
  266. } else {
  267. c.Error(500, "GetUserByName", err)
  268. }
  269. return nil, nil
  270. }
  271. repo, err := models.GetRepositoryByName(owner.ID, c.Params(":reponame"))
  272. if err != nil {
  273. if errors.IsRepoNotExist(err) {
  274. c.Status(404)
  275. } else {
  276. c.Error(500, "GetRepositoryByName", err)
  277. }
  278. return nil, nil
  279. }
  280. return owner, repo
  281. }
  282. func Get(c *context.APIContext) {
  283. _, repo := parseOwnerAndRepo(c)
  284. if c.Written() {
  285. return
  286. }
  287. c.JSON(200, repo.APIFormat(&api.Permission{
  288. Admin: c.Repo.IsAdmin(),
  289. Push: c.Repo.IsWriter(),
  290. Pull: true,
  291. }))
  292. }
  293. func Delete(c *context.APIContext) {
  294. owner, repo := parseOwnerAndRepo(c)
  295. if c.Written() {
  296. return
  297. }
  298. if owner.IsOrganization() && !owner.IsOwnedBy(c.User.ID) {
  299. c.Error(403, "", "Given user is not owner of organization.")
  300. return
  301. }
  302. if err := models.DeleteRepository(owner.ID, repo.ID); err != nil {
  303. c.Error(500, "DeleteRepository", err)
  304. return
  305. }
  306. log.Trace("Repository deleted: %s/%s", owner.Name, repo.Name)
  307. c.Status(204)
  308. }
  309. func ListForks(c *context.APIContext) {
  310. forks, err := c.Repo.Repository.GetForks()
  311. if err != nil {
  312. c.Error(500, "GetForks", err)
  313. return
  314. }
  315. apiForks := make([]*api.Repository, len(forks))
  316. for i := range forks {
  317. if err := forks[i].GetOwner(); err != nil {
  318. c.Error(500, "GetOwner", err)
  319. return
  320. }
  321. apiForks[i] = forks[i].APIFormat(&api.Permission{
  322. Admin: c.User.IsAdminOfRepo(forks[i]),
  323. Push: c.User.IsWriterOfRepo(forks[i]),
  324. Pull: true,
  325. })
  326. }
  327. c.JSON(200, &apiForks)
  328. }
  329. func MirrorSync(c *context.APIContext) {
  330. _, repo := parseOwnerAndRepo(c)
  331. if c.Written() {
  332. return
  333. } else if !repo.IsMirror {
  334. c.Status(404)
  335. return
  336. }
  337. go models.MirrorQueue.Add(repo.ID)
  338. c.Status(202)
  339. }