ApiController.php 8.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238
  1. <?php
  2. /*
  3. * This file is part of Packagist.
  4. *
  5. * (c) Jordi Boggiano <j.boggiano@seld.be>
  6. * Nils Adermann <naderman@naderman.de>
  7. *
  8. * For the full copyright and license information, please view the LICENSE
  9. * file that was distributed with this source code.
  10. */
  11. namespace Packagist\WebBundle\Controller;
  12. use Composer\IO\NullIO;
  13. use Composer\Factory;
  14. use Composer\Repository\VcsRepository;
  15. use Composer\Package\Loader\ValidatingArrayLoader;
  16. use Composer\Package\Loader\ArrayLoader;
  17. use Packagist\WebBundle\Package\Updater;
  18. use Packagist\WebBundle\Entity\Package;
  19. use Symfony\Bundle\FrameworkBundle\Controller\Controller;
  20. use Symfony\Component\HttpFoundation\Response;
  21. use Symfony\Component\HttpFoundation\Request;
  22. use Sensio\Bundle\FrameworkExtraBundle\Configuration\Template;
  23. use Sensio\Bundle\FrameworkExtraBundle\Configuration\Route;
  24. use Sensio\Bundle\FrameworkExtraBundle\Configuration\Method;
  25. /**
  26. * @author Jordi Boggiano <j.boggiano@seld.be>
  27. */
  28. class ApiController extends Controller
  29. {
  30. /**
  31. * @Template()
  32. * @Route("/packages.json", name="packages", defaults={"_format" = "json"})
  33. */
  34. public function packagesAction(Request $req)
  35. {
  36. $rootJson = $this->container->getParameter('kernel.root_dir').'/../web/packages_root.json';
  37. if (!$req->query->all() && file_exists($rootJson)) {
  38. return new Response(file_get_contents($rootJson));
  39. }
  40. $em = $this->get('doctrine')->getEntityManager();
  41. $filters = array(
  42. 'type' => $req->query->get('type'),
  43. 'tag' => $req->query->get('tag'),
  44. );
  45. gc_enable();
  46. $packages = $em->getRepository('Packagist\WebBundle\Entity\Package')
  47. ->getFullPackages(null, $filters);
  48. $notifyUrl = $this->generateUrl('track_download', array('name' => 'VND/PKG'));
  49. $data = array(
  50. 'notify' => str_replace('VND/PKG', '%package%', $notifyUrl),
  51. 'packages' => array(),
  52. );
  53. foreach ($packages as $package) {
  54. $versions = array();
  55. foreach ($package->getVersions() as $version) {
  56. $versions[$version->getVersion()] = $version->toArray();
  57. $em->detach($version);
  58. }
  59. $data['packages'][$package->getName()] = $versions;
  60. $em->detach($package);
  61. }
  62. unset($versions, $package, $packages);
  63. $response = new Response(json_encode($data), 200);
  64. $response->setSharedMaxAge(120);
  65. return $response;
  66. }
  67. /**
  68. * @Route("/api/github", name="github_postreceive", defaults={"_format" = "json"})
  69. * @Method({"POST"})
  70. */
  71. public function githubPostReceive(Request $request)
  72. {
  73. $payload = json_decode($request->request->get('payload'), true);
  74. if (!$payload || !isset($payload['repository']['url'])) {
  75. return new Response(json_encode(array('status' => 'error', 'message' => 'Missing or invalid payload',)), 406);
  76. }
  77. $user = $this->checkCredentials($request);
  78. if ($user instanceof Response) {
  79. return $user;
  80. }
  81. if (!preg_match('{(github.com/[\w.-]+/[\w.-]+?)(\.git)?$}', $payload['repository']['url'], $match)) {
  82. return new Response(json_encode(array('status' => 'error', 'message' => 'Could not parse payload repository URL',)), 406);
  83. }
  84. $payloadRepositoryChunk = $match[1];
  85. $updated = false;
  86. $config = Factory::createConfig();
  87. $loader = new ValidatingArrayLoader(new ArrayLoader());
  88. $updater = $this->get('packagist.package_updater');
  89. $em = $this->get('doctrine.orm.entity_manager');
  90. foreach ($user->getPackages() as $package) {
  91. if (preg_match('{'.preg_quote($payloadRepositoryChunk).'(\.git)?$}', $package->getRepository())) {
  92. set_time_limit(3600);
  93. $updated = true;
  94. $repository = new VcsRepository(array('url' => $package->getRepository()), new NullIO, $config);
  95. $repository->setLoader($loader);
  96. $package->setAutoUpdated(true);
  97. $em->flush();
  98. $updater->update($package, $repository);
  99. }
  100. }
  101. if ($updated) {
  102. return new Response('{"status": "success"}', 202);
  103. }
  104. return new Response(json_encode(array('status' => 'error', 'message' => 'Could not find a package that matches this request (does user maintain the package?)',)), 404);
  105. }
  106. /**
  107. * @Route("/api/bitbucket", name="bitbucket_postreceive", defaults={"_format" = "json"})
  108. * @Method({"POST"})
  109. */
  110. public function bitbucketPostReceive(Request $request)
  111. {
  112. $payload = json_decode($request->request->get('payload'), true);
  113. if (!$payload || !isset($payload['repository']['url'])) {
  114. return new Response(json_encode(array('status' => 'error', 'message' => 'Missing or invalid payload',)), 406);
  115. }
  116. $user = $this->checkCredentials($request);
  117. if ($user instanceof Response) {
  118. return $user;
  119. }
  120. if (!preg_match('{(bitbucket.org/[\w.-]+/[\w.-]+?)/?$}', $payload['repository']['url'], $match)) {
  121. return new Response(json_encode(array('status' => 'error', 'message' => 'Could not parse payload repository URL',)), 406);
  122. }
  123. $payloadRepositoryChunk = $match[1];
  124. $updated = false;
  125. $config = Factory::createConfig();
  126. $loader = new ValidatingArrayLoader(new ArrayLoader());
  127. $updater = $this->get('packagist.package_updater');
  128. $em = $this->get('doctrine.orm.entity_manager');
  129. foreach ($user->getPackages() as $package) {
  130. if (preg_match('{'.preg_quote($payloadRepositoryChunk).'/?$}', $package->getRepository())) {
  131. set_time_limit(3600);
  132. $updated = true;
  133. $repository = new VcsRepository(array('url' => $package->getRepository()), new NullIO, $config);
  134. $repository->setLoader($loader);
  135. $package->setAutoUpdated(true);
  136. $em->flush();
  137. $updater->update($package, $repository);
  138. }
  139. }
  140. if ($updated) {
  141. return new Response('{"status": "success"}', 202);
  142. }
  143. return new Response(json_encode(array('status' => 'error', 'message' => 'Could not find a package that matches this request (does user maintain the package?)',)), 404);
  144. }
  145. /**
  146. * @Route("/downloads/{name}", name="track_download", requirements={"name"="[A-Za-z0-9_.-]+/[A-Za-z0-9_.-]+"}, defaults={"_format" = "json"})
  147. * @Method({"POST"})
  148. */
  149. public function trackDownloadAction(Request $request, $name)
  150. {
  151. $result = $this->get('doctrine.dbal.default_connection')->fetchAssoc(
  152. 'SELECT p.id, v.id vid
  153. FROM package p
  154. LEFT JOIN package_version v ON p.id = v.package_id
  155. WHERE p.name = ?
  156. AND v.normalizedVersion = ?
  157. LIMIT 1',
  158. array($name, $request->request->get('version_normalized'))
  159. );
  160. if (!$result) {
  161. return new Response('{"status": "error", "message": "Package not found"}', 200);
  162. }
  163. $redis = $this->get('snc_redis.default');
  164. $id = $result['id'];
  165. $version = $result['vid'];
  166. $throttleKey = 'dl:'.$id.':'.$request->getClientIp().':'.date('Ymd');
  167. $requests = $redis->incr($throttleKey);
  168. if (1 === $requests) {
  169. $redis->expire($throttleKey, 86400);
  170. }
  171. if ($requests <= 10) {
  172. $redis->incr('downloads');
  173. $redis->incr('dl:'.$id);
  174. $redis->incr('dl:'.$id.':'.date('Ym'));
  175. $redis->incr('dl:'.$id.':'.date('Ymd'));
  176. $redis->incr('dl:'.$id.'-'.$version);
  177. $redis->incr('dl:'.$id.'-'.$version.':'.date('Ym'));
  178. $redis->incr('dl:'.$id.'-'.$version.':'.date('Ymd'));
  179. }
  180. return new Response('{"status": "success"}', 201);
  181. }
  182. protected function checkCredentials(Request $request)
  183. {
  184. $username = $request->request->has('username') ?
  185. $request->request->get('username') :
  186. $request->query->get('username');
  187. $apiToken = $request->request->has('apiToken') ?
  188. $request->request->get('apiToken') :
  189. $request->query->get('apiToken');
  190. $user = $this->get('packagist.user_repository')
  191. ->findOneBy(array('username' => $username, 'apiToken' => $apiToken));
  192. if (!$user) {
  193. return new Response(json_encode(array('status' => 'error', 'message' => 'Invalid credentials',)), 403);
  194. }
  195. return $user;
  196. }
  197. }