2008-10-23 22:29:50 +02:00
|
|
|
#!/usr/bin/perl
|
|
|
|
package IkiWiki::Receive;
|
|
|
|
|
|
|
|
use warnings;
|
|
|
|
use strict;
|
|
|
|
use IkiWiki;
|
|
|
|
|
2008-12-17 21:22:16 +01:00
|
|
|
sub getuser () {
|
2008-10-24 21:47:42 +02:00
|
|
|
my $user=(getpwuid(exists $ENV{CALLER_UID} ? $ENV{CALLER_UID} : $<))[0];
|
2008-10-23 22:29:50 +02:00
|
|
|
if (! defined $user) {
|
|
|
|
error("cannot determine username for $<");
|
|
|
|
}
|
|
|
|
return $user;
|
2008-12-17 21:22:16 +01:00
|
|
|
}
|
2008-10-23 22:29:50 +02:00
|
|
|
|
2008-12-17 21:22:16 +01:00
|
|
|
sub trusted () {
|
2008-10-23 22:29:50 +02:00
|
|
|
my $user=getuser();
|
|
|
|
return ! ref $config{untrusted_committers} ||
|
|
|
|
! grep { $_ eq $user } @{$config{untrusted_committers}};
|
2008-12-17 21:22:16 +01:00
|
|
|
}
|
2008-10-23 22:29:50 +02:00
|
|
|
|
2009-09-10 22:09:19 +02:00
|
|
|
sub genwrapper () {
|
2008-10-26 19:03:18 +01:00
|
|
|
# Test for commits from untrusted committers in the wrapper, to
|
2009-09-10 22:09:19 +02:00
|
|
|
# avoid starting ikiwiki proper at all for trusted commits.
|
2008-10-26 19:03:18 +01:00
|
|
|
|
|
|
|
my $ret=<<"EOF";
|
|
|
|
{
|
|
|
|
int u=getuid();
|
|
|
|
EOF
|
|
|
|
$ret.="\t\tif ( ".
|
|
|
|
join("&&", map {
|
|
|
|
my $uid=getpwnam($_);
|
|
|
|
if (! defined $uid) {
|
|
|
|
error(sprintf(gettext("cannot determine id of untrusted committer %s"), $_));
|
|
|
|
}
|
|
|
|
"u != $uid";
|
|
|
|
} @{$config{untrusted_committers}}).
|
|
|
|
") exit(0);\n";
|
2009-09-10 22:09:19 +02:00
|
|
|
|
|
|
|
|
2008-10-26 19:03:18 +01:00
|
|
|
$ret.=<<"EOF";
|
|
|
|
asprintf(&s, "CALLER_UID=%i", u);
|
|
|
|
newenviron[i++]=s;
|
|
|
|
}
|
|
|
|
EOF
|
|
|
|
return $ret;
|
2008-12-17 21:22:16 +01:00
|
|
|
}
|
2008-10-26 19:03:18 +01:00
|
|
|
|
2008-12-17 21:22:16 +01:00
|
|
|
sub test () {
|
2008-10-23 22:29:50 +02:00
|
|
|
exit 0 if trusted();
|
|
|
|
|
2008-10-24 21:47:42 +02:00
|
|
|
IkiWiki::lockwiki();
|
|
|
|
IkiWiki::loadindex();
|
|
|
|
|
2008-10-23 22:29:50 +02:00
|
|
|
# Dummy up a cgi environment to use when calling check_canedit
|
|
|
|
# and friends.
|
|
|
|
eval q{use CGI};
|
|
|
|
error($@) if $@;
|
|
|
|
my $cgi=CGI->new;
|
2008-10-24 21:47:42 +02:00
|
|
|
|
|
|
|
# And dummy up a session object.
|
2008-10-23 22:29:50 +02:00
|
|
|
require IkiWiki::CGI;
|
|
|
|
my $session=IkiWiki::cgi_getsession($cgi);
|
2008-10-24 00:05:12 +02:00
|
|
|
$session->param("name", getuser());
|
2008-10-24 21:47:42 +02:00
|
|
|
# Make sure whatever user was authed is in the
|
|
|
|
# userinfo db.
|
|
|
|
require IkiWiki::UserInfo;
|
|
|
|
if (! IkiWiki::userinfo_get($session->param("name"), "regdate")) {
|
|
|
|
IkiWiki::userinfo_setall($session->param("name"), {
|
|
|
|
email => "",
|
|
|
|
password => "",
|
|
|
|
regdate => time,
|
|
|
|
}) || error("failed adding user");
|
|
|
|
}
|
|
|
|
|
2008-10-23 22:29:50 +02:00
|
|
|
my %newfiles;
|
|
|
|
|
|
|
|
foreach my $change (IkiWiki::rcs_receive()) {
|
|
|
|
# This untaint is safe because we check file_pruned and
|
|
|
|
# wiki_file_regexp.
|
2008-10-24 00:05:12 +02:00
|
|
|
my ($file)=$change->{file}=~/$config{wiki_file_regexp}/;
|
|
|
|
$file=IkiWiki::possibly_foolish_untaint($file);
|
2008-10-23 22:29:50 +02:00
|
|
|
if (! defined $file || ! length $file ||
|
2010-04-18 01:05:40 +02:00
|
|
|
IkiWiki::file_pruned($file)) {
|
2008-10-24 19:44:03 +02:00
|
|
|
error(gettext("bad file name %s"), $file);
|
2008-10-23 22:29:50 +02:00
|
|
|
}
|
|
|
|
|
|
|
|
my $type=pagetype($file);
|
|
|
|
my $page=pagename($file) if defined $type;
|
|
|
|
|
|
|
|
if ($change->{action} eq 'add') {
|
|
|
|
$newfiles{$file}=1;
|
|
|
|
}
|
|
|
|
|
|
|
|
if ($change->{action} eq 'change' ||
|
|
|
|
$change->{action} eq 'add') {
|
|
|
|
if (defined $page) {
|
2010-08-31 00:31:56 +02:00
|
|
|
IkiWiki::check_canedit($page, $cgi, $session);
|
2010-08-31 00:20:34 +02:00
|
|
|
next;
|
2008-10-23 22:29:50 +02:00
|
|
|
}
|
|
|
|
else {
|
2008-10-24 19:29:30 +02:00
|
|
|
if (IkiWiki::Plugin::attachment->can("check_canattach")) {
|
|
|
|
IkiWiki::Plugin::attachment::check_canattach($session, $file, $change->{path});
|
2010-08-31 00:31:56 +02:00
|
|
|
IkiWiki::check_canedit($file, $cgi, $session);
|
2010-08-31 00:20:34 +02:00
|
|
|
next;
|
2008-10-23 22:56:40 +02:00
|
|
|
}
|
2008-10-23 22:29:50 +02:00
|
|
|
}
|
|
|
|
}
|
|
|
|
elsif ($change->{action} eq 'remove') {
|
|
|
|
# check_canremove tests to see if the file is present
|
2010-08-30 22:26:01 +02:00
|
|
|
# on disk. This will fail when a single commit adds a
|
2008-10-23 22:29:50 +02:00
|
|
|
# file and then removes it again. Avoid the problem
|
|
|
|
# by not testing the removal in such pairs of changes.
|
|
|
|
# (The add is still tested, just to make sure that
|
|
|
|
# no data is added to the repo that a web edit
|
2009-09-10 19:49:42 +02:00
|
|
|
# could not add.)
|
2008-10-23 22:29:50 +02:00
|
|
|
next if $newfiles{$file};
|
|
|
|
|
2008-10-24 19:29:30 +02:00
|
|
|
if (IkiWiki::Plugin::remove->can("check_canremove")) {
|
|
|
|
IkiWiki::Plugin::remove::check_canremove(defined $page ? $page : $file, $cgi, $session);
|
2010-08-31 00:31:56 +02:00
|
|
|
IkiWiki::check_canedit(defined $page ? $page : $file, $cgi, $session);
|
2010-08-31 00:20:34 +02:00
|
|
|
next;
|
2008-10-23 22:29:50 +02:00
|
|
|
}
|
|
|
|
}
|
|
|
|
else {
|
|
|
|
error "unknown action ".$change->{action};
|
|
|
|
}
|
2010-08-31 00:20:34 +02:00
|
|
|
|
|
|
|
error sprintf(gettext("you are not allowed to change %s"), $file);
|
2008-10-23 22:29:50 +02:00
|
|
|
}
|
|
|
|
|
|
|
|
exit 0;
|
2008-12-17 21:22:16 +01:00
|
|
|
}
|
2008-10-23 22:29:50 +02:00
|
|
|
|
|
|
|
1
|