gitea源码

repo_team.go 6.1KB


  1. // Copyright 2024 The Gitea Authors. All rights reserved.
  2. // SPDX-License-Identifier: MIT
  3. package repository
  4. import (
  5. "context"
  6. "errors"
  7. "fmt"
  8. "code.gitea.io/gitea/models/db"
  9. issues_model "code.gitea.io/gitea/models/issues"
  10. "code.gitea.io/gitea/models/organization"
  11. access_model "code.gitea.io/gitea/models/perm/access"
  12. repo_model "code.gitea.io/gitea/models/repo"
  13. "code.gitea.io/gitea/modules/setting"
  14. )
  15. // TeamAddRepository adds new repository to team of organization.
  16. func TeamAddRepository(ctx context.Context, t *organization.Team, repo *repo_model.Repository) (err error) {
  17. if repo.OwnerID != t.OrgID {
  18. return errors.New("repository does not belong to organization")
  19. } else if organization.HasTeamRepo(ctx, t.OrgID, t.ID, repo.ID) {
  20. return nil
  21. }
  22. return db.WithTx(ctx, func(ctx context.Context) error {
  23. return addRepositoryToTeam(ctx, t, repo)
  24. })
  25. }
  26. func addRepositoryToTeam(ctx context.Context, t *organization.Team, repo *repo_model.Repository) (err error) {
  27. if err = organization.AddTeamRepo(ctx, t.OrgID, t.ID, repo.ID); err != nil {
  28. return err
  29. }
  30. if err = organization.IncrTeamRepoNum(ctx, t.ID); err != nil {
  31. return fmt.Errorf("update team: %w", err)
  32. }
  33. t.NumRepos++
  34. if err = access_model.RecalculateTeamAccesses(ctx, repo, 0); err != nil {
  35. return fmt.Errorf("recalculateAccesses: %w", err)
  36. }
  37. // Make all team members watch this repo if enabled in global settings
  38. if setting.Service.AutoWatchNewRepos {
  39. if err = t.LoadMembers(ctx); err != nil {
  40. return fmt.Errorf("getMembers: %w", err)
  41. }
  42. for _, u := range t.Members {
  43. if err = repo_model.WatchRepo(ctx, u, repo, true); err != nil {
  44. return fmt.Errorf("watchRepo: %w", err)
  45. }
  46. }
  47. }
  48. return nil
  49. }
  50. // AddAllRepositoriesToTeam adds all repositories to the team.
  51. // If the team already has some repositories they will be left unchanged.
  52. func AddAllRepositoriesToTeam(ctx context.Context, t *organization.Team) error {
  53. return db.WithTx(ctx, func(ctx context.Context) error {
  54. orgRepos, err := repo_model.GetOrgRepositories(ctx, t.OrgID)
  55. if err != nil {
  56. return fmt.Errorf("get org repos: %w", err)
  57. }
  58. for _, repo := range orgRepos {
  59. if !organization.HasTeamRepo(ctx, t.OrgID, t.ID, repo.ID) {
  60. if err := addRepositoryToTeam(ctx, t, repo); err != nil {
  61. return fmt.Errorf("AddRepository: %w", err)
  62. }
  63. }
  64. }
  65. return nil
  66. })
  67. }
  68. // RemoveAllRepositoriesFromTeam removes all repositories from team and recalculates access
  69. func RemoveAllRepositoriesFromTeam(ctx context.Context, t *organization.Team) (err error) {
  70. if t.IncludesAllRepositories {
  71. return nil
  72. }
  73. return db.WithTx(ctx, func(ctx context.Context) error {
  74. return removeAllRepositoriesFromTeam(ctx, t)
  75. })
  76. }
  77. // removeAllRepositoriesFromTeam removes all repositories from team and recalculates access
  78. // Note: Shall not be called if team includes all repositories
  79. func removeAllRepositoriesFromTeam(ctx context.Context, t *organization.Team) (err error) {
  80. e := db.GetEngine(ctx)
  81. repos, err := repo_model.GetTeamRepositories(ctx, &repo_model.SearchTeamRepoOptions{
  82. TeamID: t.ID,
  83. })
  84. if err != nil {
  85. return fmt.Errorf("GetTeamRepositories: %w", err)
  86. }
  87. // Delete all accesses.
  88. for _, repo := range repos {
  89. if err := access_model.RecalculateTeamAccesses(ctx, repo, t.ID); err != nil {
  90. return err
  91. }
  92. // Remove watches from all users and now unaccessible repos
  93. for _, user := range t.Members {
  94. has, err := access_model.HasAnyUnitAccess(ctx, user.ID, repo)
  95. if err != nil {
  96. return err
  97. } else if has {
  98. continue
  99. }
  100. if err = repo_model.WatchRepo(ctx, user, repo, false); err != nil {
  101. return err
  102. }
  103. // Remove all IssueWatches a user has subscribed to in the repositories
  104. if err = issues_model.RemoveIssueWatchersByRepoID(ctx, user.ID, repo.ID); err != nil {
  105. return err
  106. }
  107. }
  108. }
  109. // Delete team-repo
  110. if _, err := e.
  111. Where("team_id=?", t.ID).
  112. Delete(new(organization.TeamRepo)); err != nil {
  113. return err
  114. }
  115. t.NumRepos = 0
  116. if _, err = e.ID(t.ID).Cols("num_repos").Update(t); err != nil {
  117. return err
  118. }
  119. return nil
  120. }
  121. // RemoveRepositoryFromTeam removes repository from team of organization.
  122. // If the team shall include all repositories the request is ignored.
  123. func RemoveRepositoryFromTeam(ctx context.Context, t *organization.Team, repoID int64) error {
  124. if !HasRepository(ctx, t, repoID) {
  125. return nil
  126. }
  127. if t.IncludesAllRepositories {
  128. return nil
  129. }
  130. repo, err := repo_model.GetRepositoryByID(ctx, repoID)
  131. if err != nil {
  132. return err
  133. }
  134. return db.WithTx(ctx, func(ctx context.Context) error {
  135. return removeRepositoryFromTeam(ctx, t, repo, true)
  136. })
  137. }
  138. // removeRepositoryFromTeam removes a repository from a team and recalculates access
  139. // Note: Repository shall not be removed from team if it includes all repositories (unless the repository is deleted)
  140. func removeRepositoryFromTeam(ctx context.Context, t *organization.Team, repo *repo_model.Repository, recalculate bool) (err error) {
  141. e := db.GetEngine(ctx)
  142. if err = organization.RemoveTeamRepo(ctx, t.ID, repo.ID); err != nil {
  143. return err
  144. }
  145. t.NumRepos--
  146. if _, err = e.ID(t.ID).Cols("num_repos").Update(t); err != nil {
  147. return err
  148. }
  149. // Don't need to recalculate when delete a repository from organization.
  150. if recalculate {
  151. if err = access_model.RecalculateTeamAccesses(ctx, repo, t.ID); err != nil {
  152. return err
  153. }
  154. }
  155. teamMembers, err := organization.GetTeamMembers(ctx, &organization.SearchMembersOptions{
  156. TeamID: t.ID,
  157. })
  158. if err != nil {
  159. return fmt.Errorf("GetTeamMembers: %w", err)
  160. }
  161. for _, member := range teamMembers {
  162. has, err := access_model.HasAnyUnitAccess(ctx, member.ID, repo)
  163. if err != nil {
  164. return err
  165. } else if has {
  166. continue
  167. }
  168. if err = repo_model.WatchRepo(ctx, member, repo, false); err != nil {
  169. return err
  170. }
  171. // Remove all IssueWatches a user has subscribed to in the repositories
  172. if err := issues_model.RemoveIssueWatchersByRepoID(ctx, member.ID, repo.ID); err != nil {
  173. return err
  174. }
  175. }
  176. return nil
  177. }
  178. // HasRepository returns true if given repository belong to team.
  179. func HasRepository(ctx context.Context, t *organization.Team, repoID int64) bool {
  180. return organization.HasTeamRepo(ctx, t.OrgID, t.ID, repoID)
  181. }