git-serve.py 7.84 KB
Newer Older
1
2
3
4
5
6
7
8
9
10
#!/usr/bin/python3

import configparser
import mysql.connector
import os
import re
import shlex
import sys

config = configparser.RawConfigParser()
Lukas Fleischer's avatar
Lukas Fleischer committed
11
config.read(os.path.dirname(os.path.realpath(__file__)) + "/../conf/config")
12
13
14
15
16

aur_db_host = config.get('database', 'host')
aur_db_name = config.get('database', 'name')
aur_db_user = config.get('database', 'user')
aur_db_pass = config.get('database', 'password')
17
aur_db_socket = config.get('database', 'socket')
18

19
repo_path = config.get('serve', 'repo-path')
20
21
repo_regex = config.get('serve', 'repo-regex')
git_shell_cmd = config.get('serve', 'git-shell-cmd')
22
git_update_cmd = config.get('serve', 'git-update-cmd')
23
ssh_cmdline = config.get('serve', 'ssh-cmdline')
24

Lukas Fleischer's avatar
Lukas Fleischer committed
25
enable_maintenance = config.getboolean('options', 'enable-maintenance')
26
maintenance_exc = config.get('options', 'maintenance-exceptions').split()
Lukas Fleischer's avatar
Lukas Fleischer committed
27

28
def pkgbase_from_name(pkgbase):
29
30
31
32
    db = mysql.connector.connect(host=aur_db_host, user=aur_db_user,
                                 passwd=aur_db_pass, db=aur_db_name,
                                 unix_socket=aur_db_socket)
    cur = db.cursor()
33
34
    cur.execute("SELECT ID FROM PackageBases WHERE Name = %s", [pkgbase])
    db.close()
35

36
37
    row = cur.fetchone()
    return row[0] if row else None
38

39
40
def pkgbase_exists(pkgbase):
    return (pkgbase_from_name(pkgbase) > 0)
41

42
43
44
45
46
47
48
49
50
def list_repos(user):
    db = mysql.connector.connect(host=aur_db_host, user=aur_db_user,
                                 passwd=aur_db_pass, db=aur_db_name,
                                 unix_socket=aur_db_socket)
    cur = db.cursor()

    cur.execute("SELECT ID FROM Users WHERE Username = %s ", [user])
    userid = cur.fetchone()[0]
    if userid == 0:
51
        die('{:s}: unknown user: {:s}'.format(action, user))
52
53
54
55
56
57
58

    cur.execute("SELECT Name, PackagerUID FROM PackageBases " +
                "WHERE MaintainerUID = %s ", [userid])
    for row in cur:
        print((' ' if row[1] else '*') + row[0])
    db.close()

59
def create_pkgbase(pkgbase, user):
60
    if not re.match(repo_regex, pkgbase):
61
        die('{:s}: invalid repository name: {:s}'.format(action, pkgbase))
62
    if pkgbase_exists(pkgbase):
63
        die('{:s}: package base already exists: {:s}'.format(action, pkgbase))
64
65

    db = mysql.connector.connect(host=aur_db_host, user=aur_db_user,
66
67
                                 passwd=aur_db_pass, db=aur_db_name,
                                 unix_socket=aur_db_socket)
68
69
70
71
72
    cur = db.cursor()

    cur.execute("SELECT ID FROM Users WHERE Username = %s ", [user])
    userid = cur.fetchone()[0]
    if userid == 0:
73
        die('{:s}: unknown user: {:s}'.format(action, user))
74
75

    cur.execute("INSERT INTO PackageBases (Name, SubmittedTS, ModifiedTS, " +
76
                "SubmitterUID, MaintainerUID) VALUES (%s, UNIX_TIMESTAMP(), " +
77
                "UNIX_TIMESTAMP(), %s, %s)", [pkgbase, userid, userid])
78
79
80
81
    pkgbase_id = cur.lastrowid

    cur.execute("INSERT INTO CommentNotify (PackageBaseID, UserID) " +
                "VALUES (%s, %s)", [pkgbase_id, userid])
82
83
84
85

    db.commit()
    db.close()

86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
def pkgbase_config_keywords(pkgbase, keywords):
    pkgbase_id = pkgbase_from_name(pkgbase)
    if not pkgbase_id:
        die('{:s}: package base not found: {:s}'.format(action, pkgbase))

    db = mysql.connector.connect(host=aur_db_host, user=aur_db_user,
                                 passwd=aur_db_pass, db=aur_db_name,
                                 unix_socket=aur_db_socket)
    cur = db.cursor()

    cur.execute("DELETE FROM PackageKeywords WHERE PackageBaseID = %s",
                [pkgbase_id])
    for keyword in keywords:
        cur.execute("INSERT INTO PackageKeywords (PackageBaseID, Keyword) "
                    "VALUES (%s, %s)", [pkgbase_id, keyword])

    db.commit()
    db.close()

105
106
107
def check_permissions(pkgbase, user):
    db = mysql.connector.connect(host=aur_db_host, user=aur_db_user,
                                 passwd=aur_db_pass, db=aur_db_name,
108
                                 unix_socket=aur_db_socket, buffered=True)
109
110
    cur = db.cursor()

111
    if os.environ.get('AUR_PRIVILEGED', '0') == '1':
112
113
        return True

114
115
116
117
118
119
120
    cur.execute("SELECT COUNT(*) FROM PackageBases " +
                "LEFT JOIN PackageComaintainers " +
                "ON PackageComaintainers.PackageBaseID = PackageBases.ID " +
                "INNER JOIN Users ON Users.ID = PackageBases.MaintainerUID " +
                "OR PackageBases.MaintainerUID IS NULL " +
                "OR Users.ID = PackageComaintainers.UsersID " +
                "WHERE Name = %s AND Username = %s", [pkgbase, user])
121
122
123
    return cur.fetchone()[0] > 0

def die(msg):
124
    sys.stderr.write("{:s}\n".format(msg))
125
126
    exit(1)

127
def die_with_help(msg):
128
    die(msg + "\nTry `{:s} help` for a list of commands.".format(ssh_cmdline))
129

130
user = os.environ.get("AUR_USER")
131
132
cmd = os.environ.get("SSH_ORIGINAL_COMMAND")
if not cmd:
133
    die_with_help("Interactive shell is disabled.")
134
135
136
cmdargv = shlex.split(cmd)
action = cmdargv[0]

Lukas Fleischer's avatar
Lukas Fleischer committed
137
if enable_maintenance:
138
139
140
    remote_addr = os.environ["SSH_CLIENT"].split(" ")[0]
    if not remote_addr in maintenance_exc:
        die("The AUR is down due to maintenance. We will be back soon.")
Lukas Fleischer's avatar
Lukas Fleischer committed
141

142
if action == 'git-upload-pack' or action == 'git-receive-pack':
143
    if len(cmdargv) < 2:
144
        die_with_help("{:s}: missing path".format(action))
145
146

    path = cmdargv[1].rstrip('/')
147
148
149
150
    if not path.startswith('/'):
        path = '/' + path
    if not path.endswith('.git'):
        path = path + '.git'
151
152
    pkgbase = path[1:-4]
    if not re.match(repo_regex, pkgbase):
153
        die('{:s}: invalid repository name: {:s}'.format(action, pkgbase))
154
155

    if not pkgbase_exists(pkgbase):
156
        create_pkgbase(pkgbase, user)
157

158
159
    if action == 'git-receive-pack':
        if not check_permissions(pkgbase, user):
160
            die('{:s}: permission denied: {:s}'.format(action, user))
161

162
163
    os.environ["AUR_USER"] = user
    os.environ["AUR_PKGBASE"] = pkgbase
164
165
    os.environ["GIT_NAMESPACE"] = pkgbase
    cmd = action + " '" + repo_path + "'"
166
    os.execl(git_shell_cmd, git_shell_cmd, '-c', cmd)
167
168
169
170
171
172
173
174
175
176
177
elif action == 'config':
    if len(cmdargv) < 2:
        die_with_help("{:s}: missing repository name".format(action))
    if len(cmdargv) < 3:
        die_with_help("{:s}: missing option name".format(action))
    pkgbase = cmdargv[1]
    option = cmdargv[2]

    if option == 'keywords':
        pkgbase_config_keywords(pkgbase, cmdargv[3:])

178
179
elif action == 'list-repos':
    if len(cmdargv) > 1:
180
        die_with_help("{:s}: too many arguments".format(action))
181
    list_repos(user)
182
183
elif action == 'setup-repo':
    if len(cmdargv) < 2:
184
        die_with_help("{:s}: missing repository name".format(action))
185
    if len(cmdargv) > 2:
186
        die_with_help("{:s}: too many arguments".format(action))
187
    create_pkgbase(cmdargv[1], user)
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
elif action == 'restore':
    if len(cmdargv) < 2:
        die_with_help("{:s}: missing repository name".format(action))
    if len(cmdargv) > 2:
        die_with_help("{:s}: too many arguments".format(action))

    pkgbase = cmdargv[1]
    if not re.match(repo_regex, pkgbase):
        die('{:s}: invalid repository name: {:s}'.format(action, pkgbase))

    if pkgbase_exists(pkgbase):
        die('{:s}: package base exists: {:s}'.format(action, pkgbase))
    create_pkgbase(pkgbase, user)

    os.environ["AUR_USER"] = user
    os.environ["AUR_PKGBASE"] = pkgbase
    os.execl(git_update_cmd, git_update_cmd, 'restore')
205
206
elif action == 'help':
    die("Commands:\n" +
207
208
209
210
211
212
213
        "  config <name> <param>... Change package base settings.\n" +
        "  help                     Show this help message and exit.\n" +
        "  list-repos               List all your repositories.\n" +
        "  restore <name>           Restore a deleted package base.\n" +
        "  setup-repo <name>        Create an empty repository.\n" +
        "  git-receive-pack         Internal command used with Git.\n" +
        "  git-upload-pack          Internal command used with Git.")
214
else:
215
    die_with_help("invalid command: {:s}".format(action))