e2e/import_test.go
147 lines · 6288 bytes
1package e2e
2
3import (
4 "fmt"
5 "os"
6 "path/filepath"
7 "strings"
8 "testing"
9)
10
11func TestRepoImport(t *testing.T) {
12 t.Parallel()
13 inst := startInstance(t)
14 aliceKey := inst.newKey(t, "alice")
15 inst.admin(t, "admin", "user", "create", "alice",
16 "--key", aliceKey+".pub", "--email", "alice@example.test", "--verified")
17
18 // Source repo with a non-"main" default branch, a tag, and two commits.
19 if _, errOut, code := inst.ssh(t, aliceKey, "", "repo", "create", "alice/src"); code != 0 {
20 t.Fatalf("repo create: %s", errOut)
21 }
22 work := t.TempDir()
23 env := inst.gitEnv(aliceKey)
24 mustGit(t, work, env, "clone", inst.sshURL("alice/src"), "w")
25 dir := filepath.Join(work, "w")
26 os.WriteFile(filepath.Join(dir, "code.txt"), []byte("v1\n"), 0o644)
27 mustGit(t, dir, env, "checkout", "-q", "-b", "trunk")
28 mustGit(t, dir, env, "add", ".")
29 mustGit(t, dir, env, "commit", "-q", "-m", "first")
30 mustGit(t, dir, env, "tag", "v1.0")
31 mustGit(t, dir, env, "commit", "-q", "--allow-empty", "-m", "second")
32 mustGit(t, dir, env, "push", "-q", "origin", "trunk", "v1.0")
33
34 // Point the source repo's HEAD at trunk so the remote advertises it.
35 srcBare := filepath.Join(inst.root, "repos", "alice", "src.git")
36 mustGit(t, srcBare, env, "symbolic-ref", "HEAD", "refs/heads/trunk")
37
38 // Import over HTTP from our own instance (public smart HTTP).
39 httpURL := fmt.Sprintf("http://127.0.0.1:%d/alice/src.git", inst.httpPort)
40 out, errOut, code := inst.ssh(t, aliceKey, "", "repo", "import", "alice/mirror", "--from", httpURL, "--private")
41 if code != 0 {
42 t.Fatalf("import: exit %d\n%s%s", code, out, errOut)
43 }
44 if !strings.Contains(out, "imported alice/mirror (private, default trunk)") {
45 t.Fatalf("import output: %s", out)
46 }
47 if !strings.Contains(out, "git data only") {
48 t.Fatalf("import note missing: %s", out)
49 }
50
51 // Everything came across: both commits, the tag, and the default branch.
52 logOut, _, code := inst.ssh(t, aliceKey, "", "repo", "log", "alice/mirror")
53 if code != 0 || !strings.Contains(logOut, "second") || !strings.Contains(logOut, "first") {
54 t.Fatalf("imported log: %d\n%s", code, logOut)
55 }
56 mirrorBare := filepath.Join(inst.root, "repos", "alice", "mirror.git")
57 tags := mustGit(t, mirrorBare, env, "tag", "--list")
58 if !strings.Contains(tags, "v1.0") {
59 t.Fatalf("tag not imported: %q", tags)
60 }
61 head := strings.TrimSpace(mustGit(t, mirrorBare, env, "symbolic-ref", "HEAD"))
62 if head != "refs/heads/trunk" {
63 t.Fatalf("imported HEAD = %s", head)
64 }
65 showOut, _, _ := inst.ssh(t, aliceKey, "", "repo", "show", "alice/mirror")
66 if !strings.Contains(showOut, "private") || !strings.Contains(showOut, "default: trunk") {
67 t.Fatalf("repo show after import: %s", showOut)
68 }
69
70 // The imported repo has working hooks (core.hooksPath was set): a
71 // protected-branch force-push is refused.
72 if _, errOut, code = inst.ssh(t, aliceKey, "", "repo", "settings", "protect", "alice/mirror", "trunk"); code != 0 {
73 t.Fatalf("protect: %s", errOut)
74 }
75 mWork := t.TempDir()
76 mustGit(t, mWork, env, "clone", inst.sshURL("alice/mirror"), "m")
77 mDir := filepath.Join(mWork, "m")
78 mustGit(t, mDir, env, "commit", "-q", "--amend", "--allow-empty", "-m", "rewrite")
79 pushOut, pushCode := gitRun(t, mDir, env, "push", "--force", "origin", "trunk")
80 if pushCode == 0 || !strings.Contains(pushOut, "force-push refused") {
81 t.Fatalf("hooks not wired on imported repo:\n%s", pushOut)
82 }
83
84 // Import over git:// too.
85 if _, errOut, code = inst.ssh(t, aliceKey, "", "repo", "settings", "git-daemon", "alice/src", "on"); code != 0 {
86 t.Fatalf("git-daemon on: %s", errOut)
87 }
88 gitURL := fmt.Sprintf("git://127.0.0.1:%d/alice/src.git", inst.gitPort)
89 if _, errOut, code = inst.ssh(t, aliceKey, "", "repo", "import", "alice/mirror2", "--from", gitURL); code != 0 {
90 t.Fatalf("git:// import: %s", errOut)
91 }
92
93 // Org-owned imports: allowed for org admins, refused for non-members.
94 if _, errOut, code := inst.ssh(t, aliceKey, "", "org", "create", "imports"); code != 0 {
95 t.Fatalf("org create: %s", errOut)
96 }
97 if _, errOut, code := inst.ssh(t, aliceKey, "", "repo", "import", "imports/mirror", "--from", httpURL); code != 0 {
98 t.Fatalf("org import: %s", errOut)
99 }
100 if out, _, code := inst.ssh(t, aliceKey, "", "repo", "log", "imports/mirror"); code != 0 || !strings.Contains(out, "first") {
101 t.Fatalf("org import log: %d\n%s", code, out)
102 }
103
104 // Refusals: bad scheme, credentials in URL, existing name, foreign owner.
105 cases := []struct {
106 args []string
107 want string
108 }{
109 {[]string{"repo", "import", "alice/x", "--from", "file:///etc"}, "https://, http://, and git://"},
110 {[]string{"repo", "import", "alice/x", "--from", "https://token@github.com/a/b"}, "--token-stdin"},
111 {[]string{"repo", "import", "alice/mirror", "--from", httpURL}, "already exists"},
112 {[]string{"repo", "import", "bob/x", "--from", httpURL}, "not you and not an organization"},
113 }
114 for _, tc := range cases {
115 _, errOut, code := inst.ssh(t, aliceKey, "", tc.args...)
116 if code == 0 || !strings.Contains(errOut, tc.want) {
117 t.Errorf("%v: exit %d, stderr %q (want %q)", tc.args, code, errOut, tc.want)
118 }
119 }
120
121 // A failed import leaves nothing behind.
122 _, _, code = inst.ssh(t, aliceKey, "", "repo", "import", "alice/gone", "--from",
123 fmt.Sprintf("http://127.0.0.1:%d/alice/nonexistent.git", inst.httpPort))
124 if code == 0 {
125 t.Fatal("import of nonexistent source succeeded")
126 }
127 if _, _, code = inst.ssh(t, aliceKey, "", "repo", "show", "alice/gone"); code != 3 {
128 t.Fatalf("failed import left a repo behind: exit %d, want 3", code)
129 }
130 if _, err := os.Stat(filepath.Join(inst.root, "repos", "alice", "gone.git")); !os.IsNotExist(err) {
131 t.Fatal("failed import left a directory behind")
132 }
133
134 // --token-stdin consumes a token from stdin without leaking it: the
135 // fetch works (token unused by our anonymous endpoint, but the askpass
136 // plumbing must not break it) and the token string appears nowhere in
137 // the repo config.
138 _, errOut, code = inst.ssh(t, aliceKey, "s3cr3t-token\n", "repo", "import", "alice/mirror3",
139 "--from", httpURL, "--token-stdin")
140 if code != 0 {
141 t.Fatalf("token-stdin import: %s", errOut)
142 }
143 cfgRaw, _ := os.ReadFile(filepath.Join(inst.root, "repos", "alice", "mirror3.git", "config"))
144 if strings.Contains(string(cfgRaw), "s3cr3t") {
145 t.Fatal("token leaked into repo config")
146 }
147}