2 * Copyright (c) 2018 Stefan Sperling <stsp@openbsd.org>
4 * Permission to use, copy, modify, and distribute this software for any
5 * purpose with or without fee is hereby granted, provided that the above
6 * copyright notice and this permission notice appear in all copies.
8 * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
9 * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
10 * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
11 * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
12 * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
13 * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
14 * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
17 #include <sys/types.h>
19 #include <sys/queue.h>
21 #include <sys/socket.h>
23 #include <sys/syslimits.h>
38 #include "got_error.h"
39 #include "got_object.h"
40 #include "got_repository.h"
41 #include "got_opentemp.h"
43 #include "got_lib_sha1.h"
44 #include "got_lib_delta.h"
45 #include "got_lib_pack.h"
46 #include "got_lib_path.h"
47 #include "got_lib_inflate.h"
48 #include "got_lib_object.h"
49 #include "got_lib_privsep.h"
50 #include "got_lib_object_idcache.h"
51 #include "got_lib_object_cache.h"
52 #include "got_lib_object_parse.h"
53 #include "got_lib_repository.h"
56 #define MIN(_a,_b) ((_a) < (_b) ? (_a) : (_b))
59 struct got_object_id *
60 got_object_id_dup(struct got_object_id *id1)
62 struct got_object_id *id2;
64 id2 = malloc(sizeof(*id2));
67 memcpy(id2, id1, sizeof(*id2));
71 struct got_object_id *
72 got_object_get_id(struct got_object *obj)
77 const struct got_error *
78 got_object_get_id_str(char **outbuf, struct got_object *obj)
80 return got_object_id_str(outbuf, &obj->id);
84 got_object_get_type(struct got_object *obj)
87 case GOT_OBJ_TYPE_COMMIT:
88 case GOT_OBJ_TYPE_TREE:
89 case GOT_OBJ_TYPE_BLOB:
90 case GOT_OBJ_TYPE_TAG:
101 static const struct got_error *
102 object_path(char **path, struct got_object_id *id, struct got_repository *repo)
104 const struct got_error *err = NULL;
106 char *path_objects = got_repo_get_path_objects(repo);
110 if (path_objects == NULL)
111 return got_error_from_errno();
113 err = got_object_id_str(&hex, id);
117 if (asprintf(path, "%s/%.2x/%s", path_objects,
118 id->sha1[0], hex + 2) == -1)
119 err = got_error_from_errno();
127 static const struct got_error *
128 open_loose_object(int *fd, struct got_object *obj, struct got_repository *repo)
130 const struct got_error *err = NULL;
133 err = object_path(&path, &obj->id, repo);
136 *fd = open(path, O_RDONLY | O_NOFOLLOW, GOT_DEFAULT_FILE_MODE);
138 err = got_error_from_errno();
146 static const struct got_error *
147 get_packfile_path(char **path_packfile, struct got_packidx *packidx)
151 /* Packfile path contains ".pack" instead of ".idx", so add one byte. */
152 size = strlen(packidx->path_packidx) + 2;
153 if (size < GOT_PACKFILE_NAMELEN + 1)
154 return got_error(GOT_ERR_BAD_PATH);
156 *path_packfile = malloc(size);
157 if (*path_packfile == NULL)
158 return got_error_from_errno();
160 /* Copy up to and excluding ".idx". */
161 if (strlcpy(*path_packfile, packidx->path_packidx,
162 size - strlen(GOT_PACKIDX_SUFFIX) - 1) >= size)
163 return got_error(GOT_ERR_NO_SPACE);
165 if (strlcat(*path_packfile, GOT_PACKFILE_SUFFIX, size) >= size)
166 return got_error(GOT_ERR_NO_SPACE);
171 static const struct got_error *
172 open_packed_object(struct got_object **obj, struct got_object_id *id,
173 struct got_repository *repo)
175 const struct got_error *err = NULL;
176 struct got_pack *pack = NULL;
177 struct got_packidx *packidx = NULL;
181 err = got_repo_search_packidx(&packidx, &idx, repo, id);
185 err = get_packfile_path(&path_packfile, packidx);
189 pack = got_repo_get_cached_pack(repo, path_packfile);
191 err = got_repo_cache_pack(&pack, repo, path_packfile, packidx);
196 err = got_object_packed_read_privsep(obj, repo, pack, packidx, idx, id);
200 err = got_repo_cache_pack(NULL, repo, (*obj)->path_packfile, packidx);
206 const struct got_error *
207 got_object_open(struct got_object **obj, struct got_repository *repo,
208 struct got_object_id *id)
210 const struct got_error *err = NULL;
214 *obj = got_repo_get_cached_object(repo, id);
220 err = open_packed_object(obj, id, repo);
221 if (err && err->code != GOT_ERR_NO_OBJ)
225 return got_repo_cache_object(repo, id, *obj);
228 err = object_path(&path, id, repo);
232 fd = open(path, O_RDONLY | O_NOFOLLOW, GOT_DEFAULT_FILE_MODE);
235 err = got_error(GOT_ERR_NO_OBJ);
237 err = got_error_from_errno();
240 err = got_object_read_header_privsep(obj, repo, fd);
243 memcpy((*obj)->id.sha1, id->sha1, SHA1_DIGEST_LENGTH);
247 err = got_repo_cache_object(repo, id, *obj);
256 const struct got_error *
257 got_object_open_by_id_str(struct got_object **obj, struct got_repository *repo,
260 struct got_object_id id;
262 if (!got_parse_sha1_digest(id.sha1, id_str))
263 return got_error(GOT_ERR_BAD_OBJ_ID_STR);
265 return got_object_open(obj, repo, &id);
268 static const struct got_error *
269 open_commit(struct got_commit_object **commit,
270 struct got_repository *repo, struct got_object *obj, int check_cache)
272 const struct got_error *err = NULL;
275 *commit = got_repo_get_cached_commit(repo, &obj->id);
276 if (*commit != NULL) {
283 if (obj->type != GOT_OBJ_TYPE_COMMIT)
284 return got_error(GOT_ERR_OBJ_TYPE);
286 if (obj->flags & GOT_OBJ_FLAG_PACKED) {
287 struct got_pack *pack;
288 pack = got_repo_get_cached_pack(repo, obj->path_packfile);
290 err = got_repo_cache_pack(&pack, repo,
291 obj->path_packfile, NULL);
295 err = got_object_read_packed_commit_privsep(commit, obj, pack);
298 err = open_loose_object(&fd, obj, repo);
301 err = got_object_read_commit_privsep(commit, obj, fd, repo);
307 err = got_repo_cache_commit(repo, &obj->id, *commit);
313 const struct got_error *
314 got_object_open_as_commit(struct got_commit_object **commit,
315 struct got_repository *repo, struct got_object_id *id)
317 const struct got_error *err;
318 struct got_object *obj;
320 *commit = got_repo_get_cached_commit(repo, id);
321 if (*commit != NULL) {
326 err = got_object_open(&obj, repo, id);
329 if (got_object_get_type(obj) != GOT_OBJ_TYPE_COMMIT) {
330 err = got_error(GOT_ERR_OBJ_TYPE);
334 err = open_commit(commit, repo, obj, 0);
336 got_object_close(obj);
340 const struct got_error *
341 got_object_commit_open(struct got_commit_object **commit,
342 struct got_repository *repo, struct got_object *obj)
344 return open_commit(commit, repo, obj, 1);
347 const struct got_error *
348 got_object_qid_alloc(struct got_object_qid **qid, struct got_object_id *id)
350 const struct got_error *err = NULL;
352 *qid = calloc(1, sizeof(**qid));
354 return got_error_from_errno();
356 (*qid)->id = got_object_id_dup(id);
357 if ((*qid)->id == NULL) {
358 err = got_error_from_errno();
359 got_object_qid_free(*qid);
367 static const struct got_error *
368 open_tree(struct got_tree_object **tree,
369 struct got_repository *repo, struct got_object *obj, int check_cache)
371 const struct got_error *err = NULL;
374 *tree = got_repo_get_cached_tree(repo, &obj->id);
382 if (obj->type != GOT_OBJ_TYPE_TREE)
383 return got_error(GOT_ERR_OBJ_TYPE);
385 if (obj->flags & GOT_OBJ_FLAG_PACKED) {
386 struct got_pack *pack;
387 pack = got_repo_get_cached_pack(repo, obj->path_packfile);
389 err = got_repo_cache_pack(&pack, repo,
390 obj->path_packfile, NULL);
394 err = got_object_read_packed_tree_privsep(tree, obj, pack);
397 err = open_loose_object(&fd, obj, repo);
400 err = got_object_read_tree_privsep(tree, obj, fd, repo);
406 err = got_repo_cache_tree(repo, &obj->id, *tree);
412 const struct got_error *
413 got_object_open_as_tree(struct got_tree_object **tree,
414 struct got_repository *repo, struct got_object_id *id)
416 const struct got_error *err;
417 struct got_object *obj;
419 *tree = got_repo_get_cached_tree(repo, id);
425 err = got_object_open(&obj, repo, id);
428 if (got_object_get_type(obj) != GOT_OBJ_TYPE_TREE) {
429 err = got_error(GOT_ERR_OBJ_TYPE);
433 err = open_tree(tree, repo, obj, 0);
435 got_object_close(obj);
439 const struct got_error *
440 got_object_tree_open(struct got_tree_object **tree,
441 struct got_repository *repo, struct got_object *obj)
443 return open_tree(tree, repo, obj, 1);
446 const struct got_tree_entries *
447 got_object_tree_get_entries(struct got_tree_object *tree)
449 return &tree->entries;
452 static const struct got_error *
453 read_packed_blob_privsep(size_t *size, int outfd, struct got_object *obj,
454 struct got_pack *pack)
456 const struct got_error *err = NULL;
458 int basefd, accumfd; /* temporary files for delta application */
460 basefd = got_opentempfd();
462 return got_error_from_errno();
463 accumfd = got_opentempfd();
465 return got_error_from_errno();
467 outfd_child = dup(outfd);
468 if (outfd_child == -1)
469 return got_error_from_errno();
471 err = got_privsep_send_obj_req(pack->privsep_child->ibuf, -1, obj);
475 err = got_privsep_send_blob_outfd(pack->privsep_child->ibuf,
481 err = got_privsep_send_tmpfd(pack->privsep_child->ibuf,
490 err = got_privsep_send_tmpfd(pack->privsep_child->ibuf,
498 err = got_privsep_recv_blob(size, pack->privsep_child->ibuf);
502 if (lseek(outfd, SEEK_SET, 0) == -1)
503 err = got_error_from_errno();
508 const struct got_error *
509 got_object_blob_open(struct got_blob_object **blob,
510 struct got_repository *repo, struct got_object *obj, size_t blocksize)
512 const struct got_error *err = NULL;
517 if (obj->type != GOT_OBJ_TYPE_BLOB)
518 return got_error(GOT_ERR_OBJ_TYPE);
520 if (blocksize < obj->hdrlen)
521 return got_error(GOT_ERR_NO_SPACE);
523 *blob = calloc(1, sizeof(**blob));
525 return got_error_from_errno();
527 outfd = got_opentempfd();
529 return got_error_from_errno();
531 (*blob)->read_buf = malloc(blocksize);
532 if ((*blob)->read_buf == NULL) {
533 err = got_error_from_errno();
536 if (obj->flags & GOT_OBJ_FLAG_PACKED) {
537 struct got_pack *pack;
538 pack = got_repo_get_cached_pack(repo, obj->path_packfile);
540 err = got_repo_cache_pack(&pack, repo,
541 obj->path_packfile, NULL);
545 err = read_packed_blob_privsep(&size, outfd, obj, pack);
552 err = open_loose_object(&infd, obj, repo);
556 err = got_object_read_blob_privsep(&size, outfd, infd, repo);
561 if (size != obj->hdrlen + obj->size) {
562 err = got_error(GOT_ERR_PRIVSEP_LEN);
567 if (fstat(outfd, &sb) == -1) {
568 err = got_error_from_errno();
572 if (sb.st_size != obj->hdrlen + obj->size) {
573 err = got_error(GOT_ERR_PRIVSEP_LEN);
577 (*blob)->f = fdopen(outfd, "rb");
578 if ((*blob)->f == NULL) {
579 err = got_error_from_errno();
584 (*blob)->hdrlen = obj->hdrlen;
585 (*blob)->blocksize = blocksize;
586 memcpy(&(*blob)->id.sha1, obj->id.sha1, SHA1_DIGEST_LENGTH);
593 free((*blob)->read_buf);
596 } else if (outfd != -1)
602 const struct got_error *
603 got_object_open_as_blob(struct got_blob_object **blob,
604 struct got_repository *repo, struct got_object_id *id,
607 const struct got_error *err;
608 struct got_object *obj;
612 err = got_object_open(&obj, repo, id);
615 if (got_object_get_type(obj) != GOT_OBJ_TYPE_BLOB) {
616 err = got_error(GOT_ERR_OBJ_TYPE);
620 err = got_object_blob_open(blob, repo, obj, blocksize);
622 got_object_close(obj);
627 got_object_blob_close(struct got_blob_object *blob)
629 free(blob->read_buf);
635 got_object_blob_id_str(struct got_blob_object *blob, char *buf, size_t size)
637 return got_sha1_digest_to_str(blob->id.sha1, buf, size);
641 got_object_blob_get_hdrlen(struct got_blob_object *blob)
647 got_object_blob_get_read_buf(struct got_blob_object *blob)
649 return blob->read_buf;
652 const struct got_error *
653 got_object_blob_read_block(size_t *outlenp, struct got_blob_object *blob)
657 n = fread(blob->read_buf, 1, blob->blocksize, blob->f);
658 if (n == 0 && ferror(blob->f))
659 return got_ferror(blob->f, GOT_ERR_IO);
664 const struct got_error *
665 got_object_blob_dump_to_file(size_t *total_len, size_t *nlines,
666 FILE *outfile, struct got_blob_object *blob)
668 const struct got_error *err = NULL;
678 hdrlen = got_object_blob_get_hdrlen(blob);
680 err = got_object_blob_read_block(&len, blob);
687 buf = got_object_blob_get_read_buf(blob);
689 for (i = 0; i < len; i++) {
694 /* Skip blob object header first time around. */
695 fwrite(buf + hdrlen, len - hdrlen, 1, outfile);
705 static struct got_tree_entry *
706 find_entry_by_name(struct got_tree_object *tree, const char *name, size_t len)
708 struct got_tree_entry *te;
710 SIMPLEQ_FOREACH(te, &tree->entries.head, entry) {
711 if (strncmp(te->name, name, len) == 0 && te->name[len] == '\0')
717 const struct got_error *
718 got_object_id_by_path(struct got_object_id **id, struct got_repository *repo,
719 struct got_object_id *commit_id, const char *path)
721 const struct got_error *err = NULL;
722 struct got_commit_object *commit = NULL;
723 struct got_tree_object *tree = NULL;
724 struct got_tree_entry *te = NULL;
726 size_t seglen, len = strlen(path);
730 /* We are expecting an absolute in-repository path. */
732 return got_error(GOT_ERR_NOT_ABSPATH);
734 err = got_object_open_as_commit(&commit, repo, commit_id);
738 /* Handle opening of root of commit's tree. */
739 if (path[1] == '\0') {
740 *id = got_object_id_dup(commit->tree_id);
742 err = got_error_from_errno();
746 err = got_object_open_as_tree(&tree, repo, commit->tree_id);
751 s++; /* skip leading '/' */
756 struct got_tree_object *next_tree;
766 te = find_entry_by_name(tree, seg, seglen);
768 err = got_error(GOT_ERR_NO_OBJ);
780 err = got_object_open_as_tree(&next_tree, repo,
785 got_object_tree_close(tree);
791 *id = got_object_id_dup(te->id);
793 return got_error_from_errno();
795 err = got_error(GOT_ERR_NO_OBJ);
798 got_object_commit_close(commit);
800 got_object_tree_close(tree);
804 const struct got_error *
805 got_object_tree_path_changed(int *changed,
806 struct got_tree_object *tree01, struct got_tree_object *tree02,
807 const char *path, struct got_repository *repo)
809 const struct got_error *err = NULL;
810 struct got_tree_object *tree1 = NULL, *tree2 = NULL;
811 struct got_tree_entry *te1 = NULL, *te2 = NULL;
813 size_t seglen, remain = strlen(path);
817 /* We are expecting an absolute in-repository path. */
819 return got_error(GOT_ERR_NOT_ABSPATH);
821 /* We not do support comparing the root path. */
823 return got_error(GOT_ERR_BAD_PATH);
828 s++; /* skip leading '/' */
833 struct got_tree_object *next_tree1, *next_tree2;
843 te1 = find_entry_by_name(tree1, seg, seglen);
845 err = got_error(GOT_ERR_NO_OBJ);
849 te2 = find_entry_by_name(tree2, seg, seglen);
855 if (te1->mode != te2->mode) {
860 if (got_object_id_cmp(te1->id, te2->id) == 0) {
865 if (remain == 0) { /* final path element */
875 err = got_object_open_as_tree(&next_tree1, repo,
881 got_object_tree_close(tree1);
884 err = got_object_open_as_tree(&next_tree2, repo,
890 got_object_tree_close(tree2);
895 if (tree1 && tree1 != tree01)
896 got_object_tree_close(tree1);
897 if (tree2 && tree2 != tree02)
898 got_object_tree_close(tree2);
903 exec_privsep_child(int imsg_fds[2], const char *path, const char *repo_path)
907 if (dup2(imsg_fds[1], GOT_IMSG_FD_CHILD) == -1) {
908 fprintf(stderr, "%s: %s\n", getprogname(),
912 if (closefrom(GOT_IMSG_FD_CHILD + 1) == -1) {
913 fprintf(stderr, "%s: %s\n", getprogname(),
918 if (execl(path, path, repo_path, (char *)NULL) == -1) {
919 fprintf(stderr, "%s: %s: %s\n", getprogname(), path,
925 static const struct got_error *
926 request_object(struct got_object **obj, struct got_repository *repo, int fd)
928 const struct got_error *err = NULL;
929 struct imsgbuf *ibuf;
931 ibuf = repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_OBJECT].ibuf;
933 err = got_privsep_send_obj_req(ibuf, fd, NULL);
937 return got_privsep_recv_obj(obj, ibuf);
940 const struct got_error *
941 got_object_read_header_privsep(struct got_object **obj,
942 struct got_repository *repo, int obj_fd)
946 struct imsgbuf *ibuf;
948 if (repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_OBJECT].imsg_fd != -1)
949 return request_object(obj, repo, obj_fd);
951 ibuf = calloc(1, sizeof(*ibuf));
953 return got_error_from_errno();
955 if (socketpair(AF_UNIX, SOCK_STREAM, PF_UNSPEC, imsg_fds) == -1)
956 return got_error_from_errno();
960 return got_error_from_errno();
962 exec_privsep_child(imsg_fds, GOT_PATH_PROG_READ_OBJECT,
968 repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_OBJECT].imsg_fd =
970 repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_OBJECT].pid = pid;
971 imsg_init(ibuf, imsg_fds[0]);
972 repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_OBJECT].ibuf = ibuf;
974 return request_object(obj, repo, obj_fd);
977 static const struct got_error *
978 request_packed_object(struct got_object **obj, struct got_pack *pack, int idx,
979 struct got_object_id *id)
981 const struct got_error *err = NULL;
982 struct imsgbuf *ibuf = pack->privsep_child->ibuf;
984 err = got_privsep_send_packed_obj_req(ibuf, idx, id);
988 err = got_privsep_recv_obj(obj, ibuf);
992 (*obj)->path_packfile = strdup(pack->path_packfile);
993 if ((*obj)->path_packfile == NULL) {
994 err = got_error_from_errno();
997 memcpy(&(*obj)->id, id, sizeof((*obj)->id));
1002 const struct got_error *
1003 got_object_packed_read_privsep(struct got_object **obj,
1004 struct got_repository *repo, struct got_pack *pack,
1005 struct got_packidx *packidx, int idx, struct got_object_id *id)
1007 const struct got_error *err = NULL;
1010 struct imsgbuf *ibuf;
1012 if (pack->privsep_child)
1013 return request_packed_object(obj, pack, idx, id);
1015 ibuf = calloc(1, sizeof(*ibuf));
1017 return got_error_from_errno();
1019 pack->privsep_child = calloc(1, sizeof(*pack->privsep_child));
1020 if (pack->privsep_child == NULL) {
1021 err = got_error_from_errno();
1026 if (socketpair(AF_UNIX, SOCK_STREAM, PF_UNSPEC, imsg_fds) == -1) {
1027 err = got_error_from_errno();
1033 err = got_error_from_errno();
1035 } else if (pid == 0) {
1036 exec_privsep_child(imsg_fds, GOT_PATH_PROG_READ_PACK,
1037 pack->path_packfile);
1042 pack->privsep_child->imsg_fd = imsg_fds[0];
1043 pack->privsep_child->pid = pid;
1044 imsg_init(ibuf, imsg_fds[0]);
1045 pack->privsep_child->ibuf = ibuf;
1047 err = got_privsep_init_pack_child(ibuf, pack, packidx);
1049 const struct got_error *child_err;
1050 err = got_privsep_send_stop(pack->privsep_child->imsg_fd);
1051 child_err = got_privsep_wait_for_child(
1052 pack->privsep_child->pid);
1053 if (child_err && err == NULL)
1056 free(pack->privsep_child);
1057 pack->privsep_child = NULL;
1064 free(pack->privsep_child);
1065 pack->privsep_child = NULL;
1067 err = request_packed_object(obj, pack, idx, id);
1072 static const struct got_error *
1073 request_commit(struct got_commit_object **commit, struct got_repository *repo,
1074 struct got_object *obj, int fd)
1076 const struct got_error *err = NULL;
1077 struct imsgbuf *ibuf;
1079 ibuf = repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_COMMIT].ibuf;
1081 err = got_privsep_send_obj_req(ibuf, fd, obj);
1085 return got_privsep_recv_commit(commit, ibuf);
1088 const struct got_error *
1089 got_object_read_packed_commit_privsep(struct got_commit_object **commit,
1090 struct got_object *obj, struct got_pack *pack)
1092 const struct got_error *err = NULL;
1094 err = got_privsep_send_obj_req(pack->privsep_child->ibuf, -1, obj);
1098 return got_privsep_recv_commit(commit, pack->privsep_child->ibuf);
1101 const struct got_error *
1102 got_object_read_commit_privsep(struct got_commit_object **commit,
1103 struct got_object *obj, int obj_fd, struct got_repository *repo)
1107 struct imsgbuf *ibuf;
1109 if (repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_COMMIT].imsg_fd != -1)
1110 return request_commit(commit, repo, obj, obj_fd);
1112 ibuf = calloc(1, sizeof(*ibuf));
1114 return got_error_from_errno();
1116 if (socketpair(AF_UNIX, SOCK_STREAM, PF_UNSPEC, imsg_fds) == -1)
1117 return got_error_from_errno();
1121 return got_error_from_errno();
1122 else if (pid == 0) {
1123 exec_privsep_child(imsg_fds, GOT_PATH_PROG_READ_COMMIT,
1129 repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_COMMIT].imsg_fd =
1131 repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_COMMIT].pid = pid;
1132 imsg_init(ibuf, imsg_fds[0]);
1133 repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_COMMIT].ibuf = ibuf;
1135 return request_commit(commit, repo, obj, obj_fd);
1138 static const struct got_error *
1139 request_tree(struct got_tree_object **tree, struct got_repository *repo,
1140 struct got_object *obj, int fd)
1142 const struct got_error *err = NULL;
1143 struct imsgbuf *ibuf;
1145 ibuf = repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_TREE].ibuf;
1147 err = got_privsep_send_obj_req(ibuf, fd, obj);
1151 return got_privsep_recv_tree(tree, ibuf);
1154 const struct got_error *
1155 got_object_read_tree_privsep(struct got_tree_object **tree,
1156 struct got_object *obj, int obj_fd, struct got_repository *repo)
1160 struct imsgbuf *ibuf;
1162 if (repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_TREE].imsg_fd != -1)
1163 return request_tree(tree, repo, obj, obj_fd);
1165 ibuf = calloc(1, sizeof(*ibuf));
1167 return got_error_from_errno();
1169 if (socketpair(AF_UNIX, SOCK_STREAM, PF_UNSPEC, imsg_fds) == -1)
1170 return got_error_from_errno();
1174 return got_error_from_errno();
1175 else if (pid == 0) {
1176 exec_privsep_child(imsg_fds, GOT_PATH_PROG_READ_TREE,
1183 repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_TREE].imsg_fd =
1185 repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_TREE].pid = pid;
1186 imsg_init(ibuf, imsg_fds[0]);
1187 repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_TREE].ibuf = ibuf;
1190 return request_tree(tree, repo, obj, obj_fd);
1193 const struct got_error *
1194 got_object_read_packed_tree_privsep(struct got_tree_object **tree,
1195 struct got_object *obj, struct got_pack *pack)
1197 const struct got_error *err = NULL;
1199 err = got_privsep_send_obj_req(pack->privsep_child->ibuf, -1, obj);
1203 return got_privsep_recv_tree(tree, pack->privsep_child->ibuf);
1206 static const struct got_error *
1207 request_blob(size_t *size, int outfd, int infd, struct imsgbuf *ibuf)
1209 const struct got_error *err = NULL;
1212 outfd_child = dup(outfd);
1213 if (outfd_child == -1)
1214 return got_error_from_errno();
1216 err = got_privsep_send_blob_req(ibuf, infd);
1220 err = got_privsep_send_blob_outfd(ibuf, outfd_child);
1226 err = got_privsep_recv_blob(size, ibuf);
1230 if (lseek(outfd, SEEK_SET, 0) == -1)
1231 return got_error_from_errno();
1236 const struct got_error *
1237 got_object_read_blob_privsep(size_t *size, int outfd, int infd,
1238 struct got_repository *repo)
1242 struct imsgbuf *ibuf;
1244 if (repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_BLOB].imsg_fd != -1) {
1245 ibuf = repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_BLOB].ibuf;
1246 return request_blob(size, outfd, infd, ibuf);
1249 ibuf = calloc(1, sizeof(*ibuf));
1251 return got_error_from_errno();
1253 if (socketpair(AF_UNIX, SOCK_STREAM, PF_UNSPEC, imsg_fds) == -1)
1254 return got_error_from_errno();
1258 return got_error_from_errno();
1259 else if (pid == 0) {
1260 exec_privsep_child(imsg_fds, GOT_PATH_PROG_READ_BLOB,
1266 repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_BLOB].imsg_fd =
1268 repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_BLOB].pid = pid;
1269 imsg_init(ibuf, imsg_fds[0]);
1270 repo->privsep_children[GOT_REPO_PRIVSEP_CHILD_BLOB].ibuf = ibuf;
1272 return request_blob(size, outfd, infd, ibuf);