cgit.c (view raw)
1/* cgit.c: cgi for the git scm
2 *
3 * Copyright (C) 2006-2014 cgit Development Team <cgit@lists.zx2c4.com>
4 *
5 * Licensed under GNU General Public License v2
6 * (see COPYING for full license text)
7 */
8
9#include "cgit.h"
10#include "cache.h"
11#include "cmd.h"
12#include "configfile.h"
13#include "html.h"
14#include "ui-shared.h"
15#include "ui-stats.h"
16#include "ui-blob.h"
17#include "ui-summary.h"
18#include "scan-tree.h"
19
20const char *cgit_version = CGIT_VERSION;
21
22static void add_mimetype(const char *name, const char *value)
23{
24 struct string_list_item *item;
25
26 item = string_list_insert(&ctx.cfg.mimetypes, name);
27 item->util = xstrdup(value);
28}
29
30static void process_cached_repolist(const char *path);
31
32static void repo_config(struct cgit_repo *repo, const char *name, const char *value)
33{
34 const char *path;
35 struct string_list_item *item;
36
37 if (!strcmp(name, "name"))
38 repo->name = xstrdup(value);
39 else if (!strcmp(name, "clone-url"))
40 repo->clone_url = xstrdup(value);
41 else if (!strcmp(name, "desc"))
42 repo->desc = xstrdup(value);
43 else if (!strcmp(name, "owner"))
44 repo->owner = xstrdup(value);
45 else if (!strcmp(name, "homepage"))
46 repo->homepage = xstrdup(value);
47 else if (!strcmp(name, "defbranch"))
48 repo->defbranch = xstrdup(value);
49 else if (!strcmp(name, "extra-head-content"))
50 repo->extra_head_content = xstrdup(value);
51 else if (!strcmp(name, "snapshots"))
52 repo->snapshots = ctx.cfg.snapshots & cgit_parse_snapshots_mask(value);
53 else if (!strcmp(name, "enable-blame"))
54 repo->enable_blame = atoi(value);
55 else if (!strcmp(name, "enable-commit-graph"))
56 repo->enable_commit_graph = atoi(value);
57 else if (!strcmp(name, "enable-log-filecount"))
58 repo->enable_log_filecount = atoi(value);
59 else if (!strcmp(name, "enable-log-linecount"))
60 repo->enable_log_linecount = atoi(value);
61 else if (!strcmp(name, "enable-remote-branches"))
62 repo->enable_remote_branches = atoi(value);
63 else if (!strcmp(name, "enable-subject-links"))
64 repo->enable_subject_links = atoi(value);
65 else if (!strcmp(name, "enable-html-serving"))
66 repo->enable_html_serving = atoi(value);
67 else if (!strcmp(name, "branch-sort")) {
68 if (!strcmp(value, "age"))
69 repo->branch_sort = 1;
70 if (!strcmp(value, "name"))
71 repo->branch_sort = 0;
72 } else if (!strcmp(name, "commit-sort")) {
73 if (!strcmp(value, "date"))
74 repo->commit_sort = 1;
75 if (!strcmp(value, "topo"))
76 repo->commit_sort = 2;
77 } else if (!strcmp(name, "max-stats"))
78 repo->max_stats = cgit_find_stats_period(value, NULL);
79 else if (!strcmp(name, "module-link"))
80 repo->module_link= xstrdup(value);
81 else if (skip_prefix(name, "module-link.", &path)) {
82 item = string_list_append(&repo->submodules, xstrdup(path));
83 item->util = xstrdup(value);
84 } else if (!strcmp(name, "section"))
85 repo->section = xstrdup(value);
86 else if (!strcmp(name, "snapshot-prefix"))
87 repo->snapshot_prefix = xstrdup(value);
88 else if (!strcmp(name, "readme") && value != NULL) {
89 if (repo->readme.items == ctx.cfg.readme.items)
90 memset(&repo->readme, 0, sizeof(repo->readme));
91 string_list_append(&repo->readme, xstrdup(value));
92 } else if (!strcmp(name, "logo") && value != NULL)
93 repo->logo = xstrdup(value);
94 else if (!strcmp(name, "logo-link") && value != NULL)
95 repo->logo_link = xstrdup(value);
96 else if (!strcmp(name, "hide"))
97 repo->hide = atoi(value);
98 else if (!strcmp(name, "ignore"))
99 repo->ignore = atoi(value);
100 else if (ctx.cfg.enable_filter_overrides) {
101 if (!strcmp(name, "about-filter"))
102 repo->about_filter = cgit_new_filter(value, ABOUT);
103 else if (!strcmp(name, "commit-filter"))
104 repo->commit_filter = cgit_new_filter(value, COMMIT);
105 else if (!strcmp(name, "source-filter"))
106 repo->source_filter = cgit_new_filter(value, SOURCE);
107 else if (!strcmp(name, "email-filter"))
108 repo->email_filter = cgit_new_filter(value, EMAIL);
109 else if (!strcmp(name, "owner-filter"))
110 repo->owner_filter = cgit_new_filter(value, OWNER);
111 }
112}
113
114static void config_cb(const char *name, const char *value)
115{
116 const char *arg;
117
118 if (!strcmp(name, "section"))
119 ctx.cfg.section = xstrdup(value);
120 else if (!strcmp(name, "repo.url"))
121 ctx.repo = cgit_add_repo(value);
122 else if (ctx.repo && !strcmp(name, "repo.path"))
123 ctx.repo->path = trim_end(value, '/');
124 else if (ctx.repo && skip_prefix(name, "repo.", &arg))
125 repo_config(ctx.repo, arg, value);
126 else if (!strcmp(name, "readme"))
127 string_list_append(&ctx.cfg.readme, xstrdup(value));
128 else if (!strcmp(name, "root-title"))
129 ctx.cfg.root_title = xstrdup(value);
130 else if (!strcmp(name, "root-desc"))
131 ctx.cfg.root_desc = xstrdup(value);
132 else if (!strcmp(name, "root-readme"))
133 ctx.cfg.root_readme = xstrdup(value);
134 else if (!strcmp(name, "css"))
135 ctx.cfg.css = xstrdup(value);
136 else if (!strcmp(name, "favicon"))
137 ctx.cfg.favicon = xstrdup(value);
138 else if (!strcmp(name, "footer"))
139 ctx.cfg.footer = xstrdup(value);
140 else if (!strcmp(name, "head-include"))
141 ctx.cfg.head_include = xstrdup(value);
142 else if (!strcmp(name, "header"))
143 ctx.cfg.header = xstrdup(value);
144 else if (!strcmp(name, "logo"))
145 ctx.cfg.logo = xstrdup(value);
146 else if (!strcmp(name, "logo-link"))
147 ctx.cfg.logo_link = xstrdup(value);
148 else if (!strcmp(name, "module-link"))
149 ctx.cfg.module_link = xstrdup(value);
150 else if (!strcmp(name, "strict-export"))
151 ctx.cfg.strict_export = xstrdup(value);
152 else if (!strcmp(name, "virtual-root"))
153 ctx.cfg.virtual_root = ensure_end(value, '/');
154 else if (!strcmp(name, "noplainemail"))
155 ctx.cfg.noplainemail = atoi(value);
156 else if (!strcmp(name, "noheader"))
157 ctx.cfg.noheader = atoi(value);
158 else if (!strcmp(name, "snapshots"))
159 ctx.cfg.snapshots = cgit_parse_snapshots_mask(value);
160 else if (!strcmp(name, "enable-filter-overrides"))
161 ctx.cfg.enable_filter_overrides = atoi(value);
162 else if (!strcmp(name, "enable-follow-links"))
163 ctx.cfg.enable_follow_links = atoi(value);
164 else if (!strcmp(name, "enable-http-clone"))
165 ctx.cfg.enable_http_clone = atoi(value);
166 else if (!strcmp(name, "enable-index-links"))
167 ctx.cfg.enable_index_links = atoi(value);
168 else if (!strcmp(name, "enable-index-owner"))
169 ctx.cfg.enable_index_owner = atoi(value);
170 else if (!strcmp(name, "enable-blame"))
171 ctx.cfg.enable_blame = atoi(value);
172 else if (!strcmp(name, "enable-commit-graph"))
173 ctx.cfg.enable_commit_graph = atoi(value);
174 else if (!strcmp(name, "enable-log-filecount"))
175 ctx.cfg.enable_log_filecount = atoi(value);
176 else if (!strcmp(name, "enable-log-linecount"))
177 ctx.cfg.enable_log_linecount = atoi(value);
178 else if (!strcmp(name, "enable-remote-branches"))
179 ctx.cfg.enable_remote_branches = atoi(value);
180 else if (!strcmp(name, "enable-subject-links"))
181 ctx.cfg.enable_subject_links = atoi(value);
182 else if (!strcmp(name, "enable-html-serving"))
183 ctx.cfg.enable_html_serving = atoi(value);
184 else if (!strcmp(name, "enable-tree-linenumbers"))
185 ctx.cfg.enable_tree_linenumbers = atoi(value);
186 else if (!strcmp(name, "enable-git-config"))
187 ctx.cfg.enable_git_config = atoi(value);
188 else if (!strcmp(name, "max-stats"))
189 ctx.cfg.max_stats = cgit_find_stats_period(value, NULL);
190 else if (!strcmp(name, "cache-size"))
191 ctx.cfg.cache_size = atoi(value);
192 else if (!strcmp(name, "cache-root"))
193 ctx.cfg.cache_root = xstrdup(expand_macros(value));
194 else if (!strcmp(name, "cache-root-ttl"))
195 ctx.cfg.cache_root_ttl = atoi(value);
196 else if (!strcmp(name, "cache-repo-ttl"))
197 ctx.cfg.cache_repo_ttl = atoi(value);
198 else if (!strcmp(name, "cache-scanrc-ttl"))
199 ctx.cfg.cache_scanrc_ttl = atoi(value);
200 else if (!strcmp(name, "cache-static-ttl"))
201 ctx.cfg.cache_static_ttl = atoi(value);
202 else if (!strcmp(name, "cache-dynamic-ttl"))
203 ctx.cfg.cache_dynamic_ttl = atoi(value);
204 else if (!strcmp(name, "cache-about-ttl"))
205 ctx.cfg.cache_about_ttl = atoi(value);
206 else if (!strcmp(name, "cache-snapshot-ttl"))
207 ctx.cfg.cache_snapshot_ttl = atoi(value);
208 else if (!strcmp(name, "case-sensitive-sort"))
209 ctx.cfg.case_sensitive_sort = atoi(value);
210 else if (!strcmp(name, "about-filter"))
211 ctx.cfg.about_filter = cgit_new_filter(value, ABOUT);
212 else if (!strcmp(name, "commit-filter"))
213 ctx.cfg.commit_filter = cgit_new_filter(value, COMMIT);
214 else if (!strcmp(name, "email-filter"))
215 ctx.cfg.email_filter = cgit_new_filter(value, EMAIL);
216 else if (!strcmp(name, "owner-filter"))
217 ctx.cfg.owner_filter = cgit_new_filter(value, OWNER);
218 else if (!strcmp(name, "auth-filter"))
219 ctx.cfg.auth_filter = cgit_new_filter(value, AUTH);
220 else if (!strcmp(name, "embedded"))
221 ctx.cfg.embedded = atoi(value);
222 else if (!strcmp(name, "max-atom-items"))
223 ctx.cfg.max_atom_items = atoi(value);
224 else if (!strcmp(name, "max-message-length"))
225 ctx.cfg.max_msg_len = atoi(value);
226 else if (!strcmp(name, "max-repodesc-length"))
227 ctx.cfg.max_repodesc_len = atoi(value);
228 else if (!strcmp(name, "max-blob-size"))
229 ctx.cfg.max_blob_size = atoi(value);
230 else if (!strcmp(name, "max-repo-count"))
231 ctx.cfg.max_repo_count = atoi(value);
232 else if (!strcmp(name, "max-commit-count"))
233 ctx.cfg.max_commit_count = atoi(value);
234 else if (!strcmp(name, "project-list"))
235 ctx.cfg.project_list = xstrdup(expand_macros(value));
236 else if (!strcmp(name, "scan-path"))
237 if (ctx.cfg.cache_size)
238 process_cached_repolist(expand_macros(value));
239 else if (ctx.cfg.project_list)
240 scan_projects(expand_macros(value),
241 ctx.cfg.project_list, repo_config);
242 else
243 scan_tree(expand_macros(value), repo_config);
244 else if (!strcmp(name, "scan-hidden-path"))
245 ctx.cfg.scan_hidden_path = atoi(value);
246 else if (!strcmp(name, "section-from-path"))
247 ctx.cfg.section_from_path = atoi(value);
248 else if (!strcmp(name, "repository-sort"))
249 ctx.cfg.repository_sort = xstrdup(value);
250 else if (!strcmp(name, "section-sort"))
251 ctx.cfg.section_sort = atoi(value);
252 else if (!strcmp(name, "source-filter"))
253 ctx.cfg.source_filter = cgit_new_filter(value, SOURCE);
254 else if (!strcmp(name, "summary-log"))
255 ctx.cfg.summary_log = atoi(value);
256 else if (!strcmp(name, "summary-branches"))
257 ctx.cfg.summary_branches = atoi(value);
258 else if (!strcmp(name, "summary-tags"))
259 ctx.cfg.summary_tags = atoi(value);
260 else if (!strcmp(name, "side-by-side-diffs"))
261 ctx.cfg.difftype = atoi(value) ? DIFF_SSDIFF : DIFF_UNIFIED;
262 else if (!strcmp(name, "agefile"))
263 ctx.cfg.agefile = xstrdup(value);
264 else if (!strcmp(name, "mimetype-file"))
265 ctx.cfg.mimetype_file = xstrdup(value);
266 else if (!strcmp(name, "renamelimit"))
267 ctx.cfg.renamelimit = atoi(value);
268 else if (!strcmp(name, "remove-suffix"))
269 ctx.cfg.remove_suffix = atoi(value);
270 else if (!strcmp(name, "robots"))
271 ctx.cfg.robots = xstrdup(value);
272 else if (!strcmp(name, "clone-prefix"))
273 ctx.cfg.clone_prefix = xstrdup(value);
274 else if (!strcmp(name, "clone-url"))
275 ctx.cfg.clone_url = xstrdup(value);
276 else if (!strcmp(name, "local-time"))
277 ctx.cfg.local_time = atoi(value);
278 else if (!strcmp(name, "commit-sort")) {
279 if (!strcmp(value, "date"))
280 ctx.cfg.commit_sort = 1;
281 if (!strcmp(value, "topo"))
282 ctx.cfg.commit_sort = 2;
283 } else if (!strcmp(name, "branch-sort")) {
284 if (!strcmp(value, "age"))
285 ctx.cfg.branch_sort = 1;
286 if (!strcmp(value, "name"))
287 ctx.cfg.branch_sort = 0;
288 } else if (skip_prefix(name, "mimetype.", &arg))
289 add_mimetype(arg, value);
290 else if (!strcmp(name, "include"))
291 parse_configfile(expand_macros(value), config_cb);
292}
293
294static void querystring_cb(const char *name, const char *value)
295{
296 if (!value)
297 value = "";
298
299 if (!strcmp(name,"r")) {
300 ctx.qry.repo = xstrdup(value);
301 ctx.repo = cgit_get_repoinfo(value);
302 } else if (!strcmp(name, "p")) {
303 ctx.qry.page = xstrdup(value);
304 } else if (!strcmp(name, "url")) {
305 if (*value == '/')
306 value++;
307 ctx.qry.url = xstrdup(value);
308 cgit_parse_url(value);
309 } else if (!strcmp(name, "qt")) {
310 ctx.qry.grep = xstrdup(value);
311 } else if (!strcmp(name, "q")) {
312 ctx.qry.search = xstrdup(value);
313 } else if (!strcmp(name, "h")) {
314 ctx.qry.head = xstrdup(value);
315 ctx.qry.has_symref = 1;
316 } else if (!strcmp(name, "id")) {
317 ctx.qry.sha1 = xstrdup(value);
318 ctx.qry.has_sha1 = 1;
319 } else if (!strcmp(name, "id2")) {
320 ctx.qry.sha2 = xstrdup(value);
321 ctx.qry.has_sha1 = 1;
322 } else if (!strcmp(name, "ofs")) {
323 ctx.qry.ofs = atoi(value);
324 } else if (!strcmp(name, "path")) {
325 ctx.qry.path = trim_end(value, '/');
326 } else if (!strcmp(name, "name")) {
327 ctx.qry.name = xstrdup(value);
328 } else if (!strcmp(name, "s")) {
329 ctx.qry.sort = xstrdup(value);
330 } else if (!strcmp(name, "showmsg")) {
331 ctx.qry.showmsg = atoi(value);
332 } else if (!strcmp(name, "period")) {
333 ctx.qry.period = xstrdup(value);
334 } else if (!strcmp(name, "dt")) {
335 ctx.qry.difftype = atoi(value);
336 ctx.qry.has_difftype = 1;
337 } else if (!strcmp(name, "ss")) {
338 /* No longer generated, but there may be links out there. */
339 ctx.qry.difftype = atoi(value) ? DIFF_SSDIFF : DIFF_UNIFIED;
340 ctx.qry.has_difftype = 1;
341 } else if (!strcmp(name, "all")) {
342 ctx.qry.show_all = atoi(value);
343 } else if (!strcmp(name, "context")) {
344 ctx.qry.context = atoi(value);
345 } else if (!strcmp(name, "ignorews")) {
346 ctx.qry.ignorews = atoi(value);
347 } else if (!strcmp(name, "follow")) {
348 ctx.qry.follow = atoi(value);
349 }
350}
351
352static void prepare_context(void)
353{
354 memset(&ctx, 0, sizeof(ctx));
355 ctx.cfg.agefile = "info/web/last-modified";
356 ctx.cfg.cache_size = 0;
357 ctx.cfg.cache_max_create_time = 5;
358 ctx.cfg.cache_root = CGIT_CACHE_ROOT;
359 ctx.cfg.cache_about_ttl = 15;
360 ctx.cfg.cache_snapshot_ttl = 5;
361 ctx.cfg.cache_repo_ttl = 5;
362 ctx.cfg.cache_root_ttl = 5;
363 ctx.cfg.cache_scanrc_ttl = 15;
364 ctx.cfg.cache_dynamic_ttl = 5;
365 ctx.cfg.cache_static_ttl = -1;
366 ctx.cfg.case_sensitive_sort = 1;
367 ctx.cfg.branch_sort = 0;
368 ctx.cfg.commit_sort = 0;
369 ctx.cfg.css = "/cgit.css";
370 ctx.cfg.logo = "/cgit.png";
371 ctx.cfg.favicon = "/favicon.ico";
372 ctx.cfg.local_time = 0;
373 ctx.cfg.enable_http_clone = 1;
374 ctx.cfg.enable_index_owner = 1;
375 ctx.cfg.enable_tree_linenumbers = 1;
376 ctx.cfg.enable_git_config = 0;
377 ctx.cfg.max_repo_count = 50;
378 ctx.cfg.max_commit_count = 50;
379 ctx.cfg.max_lock_attempts = 5;
380 ctx.cfg.max_msg_len = 80;
381 ctx.cfg.max_repodesc_len = 80;
382 ctx.cfg.max_blob_size = 0;
383 ctx.cfg.max_stats = 0;
384 ctx.cfg.project_list = NULL;
385 ctx.cfg.renamelimit = -1;
386 ctx.cfg.remove_suffix = 0;
387 ctx.cfg.robots = "index, nofollow";
388 ctx.cfg.root_title = "Git repository browser";
389 ctx.cfg.root_desc = "a fast webinterface for the git dscm";
390 ctx.cfg.scan_hidden_path = 0;
391 ctx.cfg.script_name = CGIT_SCRIPT_NAME;
392 ctx.cfg.section = "";
393 ctx.cfg.repository_sort = "name";
394 ctx.cfg.section_sort = 1;
395 ctx.cfg.summary_branches = 10;
396 ctx.cfg.summary_log = 10;
397 ctx.cfg.summary_tags = 10;
398 ctx.cfg.max_atom_items = 10;
399 ctx.cfg.difftype = DIFF_UNIFIED;
400 ctx.env.cgit_config = getenv("CGIT_CONFIG");
401 ctx.env.http_host = getenv("HTTP_HOST");
402 ctx.env.https = getenv("HTTPS");
403 ctx.env.no_http = getenv("NO_HTTP");
404 ctx.env.path_info = getenv("PATH_INFO");
405 ctx.env.query_string = getenv("QUERY_STRING");
406 ctx.env.request_method = getenv("REQUEST_METHOD");
407 ctx.env.script_name = getenv("SCRIPT_NAME");
408 ctx.env.server_name = getenv("SERVER_NAME");
409 ctx.env.server_port = getenv("SERVER_PORT");
410 ctx.env.http_cookie = getenv("HTTP_COOKIE");
411 ctx.env.http_referer = getenv("HTTP_REFERER");
412 ctx.env.content_length = getenv("CONTENT_LENGTH") ? strtoul(getenv("CONTENT_LENGTH"), NULL, 10) : 0;
413 ctx.env.authenticated = 0;
414 ctx.page.mimetype = "text/html";
415 ctx.page.charset = PAGE_ENCODING;
416 ctx.page.filename = NULL;
417 ctx.page.size = 0;
418 ctx.page.modified = time(NULL);
419 ctx.page.expires = ctx.page.modified;
420 ctx.page.etag = NULL;
421 string_list_init(&ctx.cfg.mimetypes, 1);
422 if (ctx.env.script_name)
423 ctx.cfg.script_name = xstrdup(ctx.env.script_name);
424 if (ctx.env.query_string)
425 ctx.qry.raw = xstrdup(ctx.env.query_string);
426 if (!ctx.env.cgit_config)
427 ctx.env.cgit_config = CGIT_CONFIG;
428}
429
430struct refmatch {
431 char *req_ref;
432 char *first_ref;
433 int match;
434};
435
436static int find_current_ref(const char *refname, const struct object_id *oid,
437 int flags, void *cb_data)
438{
439 struct refmatch *info;
440
441 info = (struct refmatch *)cb_data;
442 if (!strcmp(refname, info->req_ref))
443 info->match = 1;
444 if (!info->first_ref)
445 info->first_ref = xstrdup(refname);
446 return info->match;
447}
448
449static void free_refmatch_inner(struct refmatch *info)
450{
451 if (info->first_ref)
452 free(info->first_ref);
453}
454
455static char *find_default_branch(struct cgit_repo *repo)
456{
457 struct refmatch info;
458 char *ref;
459
460 info.req_ref = repo->defbranch;
461 info.first_ref = NULL;
462 info.match = 0;
463 for_each_branch_ref(find_current_ref, &info);
464 if (info.match)
465 ref = info.req_ref;
466 else
467 ref = info.first_ref;
468 if (ref)
469 ref = xstrdup(ref);
470 free_refmatch_inner(&info);
471
472 return ref;
473}
474
475static char *guess_defbranch(void)
476{
477 const char *ref, *refname;
478 struct object_id oid;
479
480 ref = resolve_ref_unsafe("HEAD", 0, &oid, NULL);
481 if (!ref || !skip_prefix(ref, "refs/heads/", &refname))
482 return "master";
483 return xstrdup(refname);
484}
485
486/* The caller must free filename and ref after calling this. */
487static inline void parse_readme(const char *readme, char **filename, char **ref, struct cgit_repo *repo)
488{
489 const char *colon;
490
491 *filename = NULL;
492 *ref = NULL;
493
494 if (!readme || !readme[0])
495 return;
496
497 /* Check if the readme is tracked in the git repo. */
498 colon = strchr(readme, ':');
499 if (colon && strlen(colon) > 1) {
500 /* If it starts with a colon, we want to use
501 * the default branch */
502 if (colon == readme && repo->defbranch)
503 *ref = xstrdup(repo->defbranch);
504 else
505 *ref = xstrndup(readme, colon - readme);
506 readme = colon + 1;
507 }
508
509 /* Prepend repo path to relative readme path unless tracked. */
510 if (!(*ref) && readme[0] != '/')
511 *filename = fmtalloc("%s/%s", repo->path, readme);
512 else
513 *filename = xstrdup(readme);
514}
515static void choose_readme(struct cgit_repo *repo)
516{
517 int found;
518 char *filename, *ref;
519 struct string_list_item *entry;
520
521 if (!repo->readme.nr)
522 return;
523
524 found = 0;
525 for_each_string_list_item(entry, &repo->readme) {
526 parse_readme(entry->string, &filename, &ref, repo);
527 if (!filename) {
528 free(filename);
529 free(ref);
530 continue;
531 }
532 if (ref) {
533 if (cgit_ref_path_exists(filename, ref, 1)) {
534 found = 1;
535 break;
536 }
537 }
538 else if (!access(filename, R_OK)) {
539 found = 1;
540 break;
541 }
542 free(filename);
543 free(ref);
544 }
545 repo->readme.strdup_strings = 1;
546 string_list_clear(&repo->readme, 0);
547 repo->readme.strdup_strings = 0;
548 if (found)
549 string_list_append(&repo->readme, filename)->util = ref;
550}
551
552static void print_no_repo_clone_urls(const char *url)
553{
554 html("<tr><td><a rel='vcs-git' href='");
555 html_url_path(url);
556 html("' title='");
557 html_attr(ctx.repo->name);
558 html(" Git repository'>");
559 html_txt(url);
560 html("</a></td></tr>\n");
561}
562
563static void prepare_repo_env(int *nongit)
564{
565 /* The path to the git repository. */
566 setenv("GIT_DIR", ctx.repo->path, 1);
567
568 /* Do not look in /etc/ for gitconfig and gitattributes. */
569 setenv("GIT_CONFIG_NOSYSTEM", "1", 1);
570 setenv("GIT_ATTR_NOSYSTEM", "1", 1);
571 unsetenv("HOME");
572 unsetenv("XDG_CONFIG_HOME");
573
574 /* Setup the git directory and initialize the notes system. Both of these
575 * load local configuration from the git repository, so we do them both while
576 * the HOME variables are unset. */
577 setup_git_directory_gently(nongit);
578 init_display_notes(NULL);
579}
580static int prepare_repo_cmd(int nongit)
581{
582 struct object_id oid;
583 int rc;
584
585 if (nongit) {
586 const char *name = ctx.repo->name;
587 rc = errno;
588 ctx.page.title = fmtalloc("%s - %s", ctx.cfg.root_title,
589 "config error");
590 ctx.repo = NULL;
591 cgit_print_http_headers();
592 cgit_print_docstart();
593 cgit_print_pageheader();
594 cgit_print_error("Failed to open %s: %s", name,
595 rc ? strerror(rc) : "Not a valid git repository");
596 cgit_print_docend();
597 return 1;
598 }
599 ctx.page.title = fmtalloc("%s - %s", ctx.repo->name, ctx.repo->desc);
600
601 if (!ctx.repo->defbranch)
602 ctx.repo->defbranch = guess_defbranch();
603
604 if (!ctx.qry.head) {
605 ctx.qry.nohead = 1;
606 ctx.qry.head = find_default_branch(ctx.repo);
607 }
608
609 if (!ctx.qry.head) {
610 cgit_print_http_headers();
611 cgit_print_docstart();
612 cgit_print_pageheader();
613 cgit_print_error("Repository seems to be empty");
614 if (!strcmp(ctx.qry.page, "summary")) {
615 html("<table class='list'><tr class='nohover'><td> </td></tr><tr class='nohover'><th class='left'>Clone</th></tr>\n");
616 cgit_prepare_repo_env(ctx.repo);
617 cgit_add_clone_urls(print_no_repo_clone_urls);
618 html("</table>\n");
619 }
620 cgit_print_docend();
621 return 1;
622 }
623
624 if (get_oid(ctx.qry.head, &oid)) {
625 char *old_head = ctx.qry.head;
626 ctx.qry.head = xstrdup(ctx.repo->defbranch);
627 cgit_print_error_page(404, "Not found",
628 "Invalid branch: %s", old_head);
629 free(old_head);
630 return 1;
631 }
632 string_list_sort(&ctx.repo->submodules);
633 cgit_prepare_repo_env(ctx.repo);
634 choose_readme(ctx.repo);
635 return 0;
636}
637
638static inline void open_auth_filter(const char *function)
639{
640 cgit_open_filter(ctx.cfg.auth_filter, function,
641 ctx.env.http_cookie ? ctx.env.http_cookie : "",
642 ctx.env.request_method ? ctx.env.request_method : "",
643 ctx.env.query_string ? ctx.env.query_string : "",
644 ctx.env.http_referer ? ctx.env.http_referer : "",
645 ctx.env.path_info ? ctx.env.path_info : "",
646 ctx.env.http_host ? ctx.env.http_host : "",
647 ctx.env.https ? ctx.env.https : "",
648 ctx.qry.repo ? ctx.qry.repo : "",
649 ctx.qry.page ? ctx.qry.page : "",
650 cgit_currentfullurl(),
651 cgit_loginurl());
652}
653
654/* We intentionally keep this rather small, instead of looping and
655 * feeding it to the filter a couple bytes at a time. This way, the
656 * filter itself does not need to handle any denial of service or
657 * buffer bloat issues. If this winds up being too small, people
658 * will complain on the mailing list, and we'll increase it as needed. */
659#define MAX_AUTHENTICATION_POST_BYTES 4096
660/* The filter is expected to spit out "Status: " and all headers. */
661static inline void authenticate_post(void)
662{
663 char buffer[MAX_AUTHENTICATION_POST_BYTES];
664 ssize_t len;
665
666 open_auth_filter("authenticate-post");
667 len = ctx.env.content_length;
668 if (len > MAX_AUTHENTICATION_POST_BYTES)
669 len = MAX_AUTHENTICATION_POST_BYTES;
670 if ((len = read(STDIN_FILENO, buffer, len)) < 0)
671 die_errno("Could not read POST from stdin");
672 if (write(STDOUT_FILENO, buffer, len) < 0)
673 die_errno("Could not write POST to stdout");
674 cgit_close_filter(ctx.cfg.auth_filter);
675 exit(0);
676}
677
678static inline void authenticate_cookie(void)
679{
680 /* If we don't have an auth_filter, consider all cookies valid, and thus return early. */
681 if (!ctx.cfg.auth_filter) {
682 ctx.env.authenticated = 1;
683 return;
684 }
685
686 /* If we're having something POST'd to /login, we're authenticating POST,
687 * instead of the cookie, so call authenticate_post and bail out early.
688 * This pattern here should match /?p=login with POST. */
689 if (ctx.env.request_method && ctx.qry.page && !ctx.repo && \
690 !strcmp(ctx.env.request_method, "POST") && !strcmp(ctx.qry.page, "login")) {
691 authenticate_post();
692 return;
693 }
694
695 /* If we've made it this far, we're authenticating the cookie for real, so do that. */
696 open_auth_filter("authenticate-cookie");
697 ctx.env.authenticated = cgit_close_filter(ctx.cfg.auth_filter);
698}
699
700static void process_request(void)
701{
702 struct cgit_cmd *cmd;
703 int nongit = 0;
704
705 /* If we're not yet authenticated, no matter what page we're on,
706 * display the authentication body from the auth_filter. This should
707 * never be cached. */
708 if (!ctx.env.authenticated) {
709 ctx.page.title = "Authentication Required";
710 cgit_print_http_headers();
711 cgit_print_docstart();
712 cgit_print_pageheader();
713 open_auth_filter("body");
714 cgit_close_filter(ctx.cfg.auth_filter);
715 cgit_print_docend();
716 return;
717 }
718
719 if (ctx.repo)
720 prepare_repo_env(&nongit);
721
722 cmd = cgit_get_cmd();
723 if (!cmd) {
724 ctx.page.title = "cgit error";
725 cgit_print_error_page(404, "Not found", "Invalid request");
726 return;
727 }
728
729 if (!ctx.cfg.enable_http_clone && cmd->is_clone) {
730 ctx.page.title = "cgit error";
731 cgit_print_error_page(404, "Not found", "Invalid request");
732 return;
733 }
734
735 if (cmd->want_repo && !ctx.repo) {
736 cgit_print_error_page(400, "Bad request",
737 "No repository selected");
738 return;
739 }
740
741 /* If cmd->want_vpath is set, assume ctx.qry.path contains a "virtual"
742 * in-project path limit to be made available at ctx.qry.vpath.
743 * Otherwise, no path limit is in effect (ctx.qry.vpath = NULL).
744 */
745 ctx.qry.vpath = cmd->want_vpath ? ctx.qry.path : NULL;
746
747 if (ctx.repo && prepare_repo_cmd(nongit))
748 return;
749
750 cmd->fn();
751}
752
753static int cmp_repos(const void *a, const void *b)
754{
755 const struct cgit_repo *ra = a, *rb = b;
756 return strcmp(ra->url, rb->url);
757}
758
759static char *build_snapshot_setting(int bitmap)
760{
761 const struct cgit_snapshot_format *f;
762 struct strbuf result = STRBUF_INIT;
763
764 for (f = cgit_snapshot_formats; f->suffix; f++) {
765 if (cgit_snapshot_format_bit(f) & bitmap) {
766 if (result.len)
767 strbuf_addch(&result, ' ');
768 strbuf_addstr(&result, f->suffix);
769 }
770 }
771 return strbuf_detach(&result, NULL);
772}
773
774static char *get_first_line(char *txt)
775{
776 char *t = xstrdup(txt);
777 char *p = strchr(t, '\n');
778 if (p)
779 *p = '\0';
780 return t;
781}
782
783static void print_repo(FILE *f, struct cgit_repo *repo)
784{
785 struct string_list_item *item;
786 fprintf(f, "repo.url=%s\n", repo->url);
787 fprintf(f, "repo.name=%s\n", repo->name);
788 fprintf(f, "repo.path=%s\n", repo->path);
789 if (repo->owner)
790 fprintf(f, "repo.owner=%s\n", repo->owner);
791 if (repo->desc) {
792 char *tmp = get_first_line(repo->desc);
793 fprintf(f, "repo.desc=%s\n", tmp);
794 free(tmp);
795 }
796 for_each_string_list_item(item, &repo->readme) {
797 if (item->util)
798 fprintf(f, "repo.readme=%s:%s\n", (char *)item->util, item->string);
799 else
800 fprintf(f, "repo.readme=%s\n", item->string);
801 }
802 if (repo->defbranch)
803 fprintf(f, "repo.defbranch=%s\n", repo->defbranch);
804 if (repo->extra_head_content)
805 fprintf(f, "repo.extra-head-content=%s\n", repo->extra_head_content);
806 if (repo->module_link)
807 fprintf(f, "repo.module-link=%s\n", repo->module_link);
808 if (repo->section)
809 fprintf(f, "repo.section=%s\n", repo->section);
810 if (repo->homepage)
811 fprintf(f, "repo.homepage=%s\n", repo->homepage);
812 if (repo->clone_url)
813 fprintf(f, "repo.clone-url=%s\n", repo->clone_url);
814 fprintf(f, "repo.enable-blame=%d\n",
815 repo->enable_blame);
816 fprintf(f, "repo.enable-commit-graph=%d\n",
817 repo->enable_commit_graph);
818 fprintf(f, "repo.enable-log-filecount=%d\n",
819 repo->enable_log_filecount);
820 fprintf(f, "repo.enable-log-linecount=%d\n",
821 repo->enable_log_linecount);
822 if (repo->about_filter && repo->about_filter != ctx.cfg.about_filter)
823 cgit_fprintf_filter(repo->about_filter, f, "repo.about-filter=");
824 if (repo->commit_filter && repo->commit_filter != ctx.cfg.commit_filter)
825 cgit_fprintf_filter(repo->commit_filter, f, "repo.commit-filter=");
826 if (repo->source_filter && repo->source_filter != ctx.cfg.source_filter)
827 cgit_fprintf_filter(repo->source_filter, f, "repo.source-filter=");
828 if (repo->email_filter && repo->email_filter != ctx.cfg.email_filter)
829 cgit_fprintf_filter(repo->email_filter, f, "repo.email-filter=");
830 if (repo->owner_filter && repo->owner_filter != ctx.cfg.owner_filter)
831 cgit_fprintf_filter(repo->owner_filter, f, "repo.owner-filter=");
832 if (repo->snapshots != ctx.cfg.snapshots) {
833 char *tmp = build_snapshot_setting(repo->snapshots);
834 fprintf(f, "repo.snapshots=%s\n", tmp ? tmp : "");
835 free(tmp);
836 }
837 if (repo->snapshot_prefix)
838 fprintf(f, "repo.snapshot-prefix=%s\n", repo->snapshot_prefix);
839 if (repo->max_stats != ctx.cfg.max_stats)
840 fprintf(f, "repo.max-stats=%s\n",
841 cgit_find_stats_periodname(repo->max_stats));
842 if (repo->logo)
843 fprintf(f, "repo.logo=%s\n", repo->logo);
844 if (repo->logo_link)
845 fprintf(f, "repo.logo-link=%s\n", repo->logo_link);
846 fprintf(f, "repo.enable-remote-branches=%d\n", repo->enable_remote_branches);
847 fprintf(f, "repo.enable-subject-links=%d\n", repo->enable_subject_links);
848 fprintf(f, "repo.enable-html-serving=%d\n", repo->enable_html_serving);
849 if (repo->branch_sort == 1)
850 fprintf(f, "repo.branch-sort=age\n");
851 if (repo->commit_sort) {
852 if (repo->commit_sort == 1)
853 fprintf(f, "repo.commit-sort=date\n");
854 else if (repo->commit_sort == 2)
855 fprintf(f, "repo.commit-sort=topo\n");
856 }
857 fprintf(f, "repo.hide=%d\n", repo->hide);
858 fprintf(f, "repo.ignore=%d\n", repo->ignore);
859 fprintf(f, "\n");
860}
861
862static void print_repolist(FILE *f, struct cgit_repolist *list, int start)
863{
864 int i;
865
866 for (i = start; i < list->count; i++)
867 print_repo(f, &list->repos[i]);
868}
869
870/* Scan 'path' for git repositories, save the resulting repolist in 'cached_rc'
871 * and return 0 on success.
872 */
873static int generate_cached_repolist(const char *path, const char *cached_rc)
874{
875 struct strbuf locked_rc = STRBUF_INIT;
876 int result = 0;
877 int idx;
878 FILE *f;
879
880 strbuf_addf(&locked_rc, "%s.lock", cached_rc);
881 f = fopen(locked_rc.buf, "wx");
882 if (!f) {
883 /* Inform about the error unless the lockfile already existed,
884 * since that only means we've got concurrent requests.
885 */
886 result = errno;
887 if (result != EEXIST)
888 fprintf(stderr, "[cgit] Error opening %s: %s (%d)\n",
889 locked_rc.buf, strerror(result), result);
890 goto out;
891 }
892 idx = cgit_repolist.count;
893 if (ctx.cfg.project_list)
894 scan_projects(path, ctx.cfg.project_list, repo_config);
895 else
896 scan_tree(path, repo_config);
897 print_repolist(f, &cgit_repolist, idx);
898 if (rename(locked_rc.buf, cached_rc))
899 fprintf(stderr, "[cgit] Error renaming %s to %s: %s (%d)\n",
900 locked_rc.buf, cached_rc, strerror(errno), errno);
901 fclose(f);
902out:
903 strbuf_release(&locked_rc);
904 return result;
905}
906
907static void process_cached_repolist(const char *path)
908{
909 struct stat st;
910 struct strbuf cached_rc = STRBUF_INIT;
911 time_t age;
912 unsigned long hash;
913
914 hash = hash_str(path);
915 if (ctx.cfg.project_list)
916 hash += hash_str(ctx.cfg.project_list);
917 strbuf_addf(&cached_rc, "%s/rc-%8lx", ctx.cfg.cache_root, hash);
918
919 if (stat(cached_rc.buf, &st)) {
920 /* Nothing is cached, we need to scan without forking. And
921 * if we fail to generate a cached repolist, we need to
922 * invoke scan_tree manually.
923 */
924 if (generate_cached_repolist(path, cached_rc.buf)) {
925 if (ctx.cfg.project_list)
926 scan_projects(path, ctx.cfg.project_list,
927 repo_config);
928 else
929 scan_tree(path, repo_config);
930 }
931 goto out;
932 }
933
934 parse_configfile(cached_rc.buf, config_cb);
935
936 /* If the cached configfile hasn't expired, lets exit now */
937 age = time(NULL) - st.st_mtime;
938 if (age <= (ctx.cfg.cache_scanrc_ttl * 60))
939 goto out;
940
941 /* The cached repolist has been parsed, but it was old. So lets
942 * rescan the specified path and generate a new cached repolist
943 * in a child-process to avoid latency for the current request.
944 */
945 if (fork())
946 goto out;
947
948 exit(generate_cached_repolist(path, cached_rc.buf));
949out:
950 strbuf_release(&cached_rc);
951}
952
953static void cgit_parse_args(int argc, const char **argv)
954{
955 int i;
956 const char *arg;
957 int scan = 0;
958
959 for (i = 1; i < argc; i++) {
960 if (!strcmp(argv[i], "--version")) {
961 printf("CGit %s | https://git.zx2c4.com/cgit/\n\nCompiled in features:\n", CGIT_VERSION);
962#ifdef NO_LUA
963 printf("[-] ");
964#else
965 printf("[+] ");
966#endif
967 printf("Lua scripting\n");
968#ifndef HAVE_LINUX_SENDFILE
969 printf("[-] ");
970#else
971 printf("[+] ");
972#endif
973 printf("Linux sendfile() usage\n");
974
975 exit(0);
976 }
977 if (skip_prefix(argv[i], "--cache=", &arg)) {
978 ctx.cfg.cache_root = xstrdup(arg);
979 } else if (!strcmp(argv[i], "--nohttp")) {
980 ctx.env.no_http = "1";
981 } else if (skip_prefix(argv[i], "--query=", &arg)) {
982 ctx.qry.raw = xstrdup(arg);
983 } else if (skip_prefix(argv[i], "--repo=", &arg)) {
984 ctx.qry.repo = xstrdup(arg);
985 } else if (skip_prefix(argv[i], "--page=", &arg)) {
986 ctx.qry.page = xstrdup(arg);
987 } else if (skip_prefix(argv[i], "--head=", &arg)) {
988 ctx.qry.head = xstrdup(arg);
989 ctx.qry.has_symref = 1;
990 } else if (skip_prefix(argv[i], "--sha1=", &arg)) {
991 ctx.qry.sha1 = xstrdup(arg);
992 ctx.qry.has_sha1 = 1;
993 } else if (skip_prefix(argv[i], "--ofs=", &arg)) {
994 ctx.qry.ofs = atoi(arg);
995 } else if (skip_prefix(argv[i], "--scan-tree=", &arg) ||
996 skip_prefix(argv[i], "--scan-path=", &arg)) {
997 /*
998 * HACK: The global snapshot bit mask defines the set
999 * of allowed snapshot formats, but the config file
1000 * hasn't been parsed yet so the mask is currently 0.
1001 * By setting all bits high before scanning we make
1002 * sure that any in-repo cgitrc snapshot setting is
1003 * respected by scan_tree().
1004 *
1005 * NOTE: We assume that there aren't more than 8
1006 * different snapshot formats supported by cgit...
1007 */
1008 ctx.cfg.snapshots = 0xFF;
1009 scan++;
1010 scan_tree(arg, repo_config);
1011 }
1012 }
1013 if (scan) {
1014 qsort(cgit_repolist.repos, cgit_repolist.count,
1015 sizeof(struct cgit_repo), cmp_repos);
1016 print_repolist(stdout, &cgit_repolist, 0);
1017 exit(0);
1018 }
1019}
1020
1021static int calc_ttl(void)
1022{
1023 if (!ctx.repo)
1024 return ctx.cfg.cache_root_ttl;
1025
1026 if (!ctx.qry.page)
1027 return ctx.cfg.cache_repo_ttl;
1028
1029 if (!strcmp(ctx.qry.page, "about"))
1030 return ctx.cfg.cache_about_ttl;
1031
1032 if (!strcmp(ctx.qry.page, "snapshot"))
1033 return ctx.cfg.cache_snapshot_ttl;
1034
1035 if (ctx.qry.has_sha1)
1036 return ctx.cfg.cache_static_ttl;
1037
1038 if (ctx.qry.has_symref)
1039 return ctx.cfg.cache_dynamic_ttl;
1040
1041 return ctx.cfg.cache_repo_ttl;
1042}
1043
1044int cmd_main(int argc, const char **argv)
1045{
1046 const char *path;
1047 int err, ttl;
1048
1049 cgit_init_filters();
1050 atexit(cgit_cleanup_filters);
1051
1052 prepare_context();
1053 cgit_repolist.length = 0;
1054 cgit_repolist.count = 0;
1055 cgit_repolist.repos = NULL;
1056
1057 cgit_parse_args(argc, argv);
1058 parse_configfile(expand_macros(ctx.env.cgit_config), config_cb);
1059 ctx.repo = NULL;
1060 http_parse_querystring(ctx.qry.raw, querystring_cb);
1061
1062 /* If virtual-root isn't specified in cgitrc, lets pretend
1063 * that virtual-root equals SCRIPT_NAME, minus any possibly
1064 * trailing slashes.
1065 */
1066 if (!ctx.cfg.virtual_root && ctx.cfg.script_name)
1067 ctx.cfg.virtual_root = ensure_end(ctx.cfg.script_name, '/');
1068
1069 /* If no url parameter is specified on the querystring, lets
1070 * use PATH_INFO as url. This allows cgit to work with virtual
1071 * urls without the need for rewriterules in the webserver (as
1072 * long as PATH_INFO is included in the cache lookup key).
1073 */
1074 path = ctx.env.path_info;
1075 if (!ctx.qry.url && path) {
1076 if (path[0] == '/')
1077 path++;
1078 ctx.qry.url = xstrdup(path);
1079 if (ctx.qry.raw) {
1080 char *newqry = fmtalloc("%s?%s", path, ctx.qry.raw);
1081 free(ctx.qry.raw);
1082 ctx.qry.raw = newqry;
1083 } else
1084 ctx.qry.raw = xstrdup(ctx.qry.url);
1085 cgit_parse_url(ctx.qry.url);
1086 }
1087
1088 /* Before we go any further, we set ctx.env.authenticated by checking to see
1089 * if the supplied cookie is valid. All cookies are valid if there is no
1090 * auth_filter. If there is an auth_filter, the filter decides. */
1091 authenticate_cookie();
1092
1093 ttl = calc_ttl();
1094 if (ttl < 0)
1095 ctx.page.expires += 10 * 365 * 24 * 60 * 60; /* 10 years */
1096 else
1097 ctx.page.expires += ttl * 60;
1098 if (!ctx.env.authenticated || (ctx.env.request_method && !strcmp(ctx.env.request_method, "HEAD")))
1099 ctx.cfg.cache_size = 0;
1100 err = cache_process(ctx.cfg.cache_size, ctx.cfg.cache_root,
1101 ctx.qry.raw, ttl, process_request);
1102 cgit_cleanup_filters();
1103 if (err)
1104 cgit_print_error("Error processing page: %s (%d)",
1105 strerror(err), err);
1106 return err;
1107}