forked from commercialhaskell/stack
-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathPackageIndex.hs
More file actions
562 lines (522 loc) · 22.4 KB
/
PackageIndex.hs
File metadata and controls
562 lines (522 loc) · 22.4 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
426
427
428
429
430
431
432
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489
490
491
492
493
494
495
496
497
498
499
500
501
502
503
504
505
506
507
508
509
510
511
512
513
514
515
516
517
518
519
520
521
522
523
524
525
526
527
528
529
530
531
532
533
534
535
536
537
538
539
540
541
542
543
544
545
546
547
548
549
550
551
552
553
554
555
556
557
558
559
560
561
562
{-# LANGUAGE BangPatterns #-}
{-# LANGUAGE ConstraintKinds #-}
{-# LANGUAGE DataKinds #-}
{-# LANGUAGE DeriveDataTypeable #-}
{-# LANGUAGE DeriveGeneric #-}
{-# LANGUAGE FlexibleContexts #-}
{-# LANGUAGE GADTs #-}
{-# LANGUAGE GeneralizedNewtypeDeriving #-}
{-# LANGUAGE KindSignatures #-}
{-# LANGUAGE LambdaCase #-}
{-# LANGUAGE MultiParamTypeClasses #-}
{-# LANGUAGE OverloadedStrings #-}
{-# LANGUAGE PatternGuards #-}
{-# LANGUAGE RankNTypes #-}
{-# LANGUAGE TemplateHaskell #-}
{-# LANGUAGE TupleSections #-}
{-# LANGUAGE ViewPatterns #-}
{-# LANGUAGE ScopedTypeVariables #-}
-- | Dealing with the 01-index file and all its cabal files.
module Stack.PackageIndex
( updateAllIndices
, getPackageCaches
, getPackageCachesIO
, getPackageVersions
, getPackageVersionsIO
, lookupPackageVersions
) where
import qualified Codec.Archive.Tar as Tar
import Control.Exception (Exception)
import Control.Exception.Safe (tryIO)
import Control.Monad (unless, when, liftM, void, guard)
import Control.Monad.Catch (throwM)
import qualified Control.Monad.Catch as C
import Control.Monad.IO.Class (MonadIO, liftIO)
import Control.Monad.Logger (logDebug, logInfo, logWarn, logError)
import Control.Monad.Trans.Control
import Crypto.Hash.SHA1 (hashlazy)
import Data.Aeson.Extended
import qualified Data.ByteString.Base16 as B16
import qualified Data.ByteString.Char8 as S8
import qualified Data.ByteString.Lazy as L
import Data.Conduit (($$), (=$), (.|), runConduitRes)
import Data.Conduit.Binary (sinkHandle, sourceHandle, sourceFile, sinkFile)
import Data.Conduit.Zlib (ungzip)
import Data.Foldable (forM_)
import Data.IORef
import Data.Int (Int64)
import Data.HashMap.Strict (HashMap)
import qualified Data.HashMap.Strict as HashMap
import Data.Map (Map)
import qualified Data.Map.Strict as Map
import Data.Monoid
import Data.Set (Set)
import qualified Data.Set as Set
import Data.Store.Version
import Data.Store.VersionTagged
import Data.Streaming.Process (ProcessExitedUnsuccessfully(..))
import Data.Text (Text)
import qualified Data.Text as T
import Data.Text.Unsafe (unsafeTail)
import Data.Time (getCurrentTime)
import Data.Traversable (forM)
import Data.Typeable (Typeable)
import qualified Hackage.Security.Client as HS
import qualified Hackage.Security.Client.Repository.Cache as HS
import qualified Hackage.Security.Client.Repository.Remote as HS
import qualified Hackage.Security.Client.Repository.HttpLib.HttpClient as HS
import qualified Hackage.Security.Util.Path as HS
import qualified Hackage.Security.Util.Pretty as HS
import Network.HTTP.Client.TLS (getGlobalManager)
import Network.HTTP.Download
import Network.URI (parseURI)
import Path (mkRelDir, mkRelFile, parent, parseRelDir, toFilePath, parseAbsFile, (</>))
import Path.IO
import Prelude -- Fix AMP warning
import Stack.Types.BuildPlan (GitSHA1 (..))
import Stack.Types.Config
import Stack.Types.PackageIdentifier
import Stack.Types.PackageIndex
import Stack.Types.PackageName
import Stack.Types.StackT
import Stack.Types.Version
import qualified System.Directory as D
import System.FilePath (takeBaseName, (<.>))
import System.IO (IOMode (ReadMode, WriteMode), withBinaryFile)
import System.Process.Read (EnvOverride, ReadProcessException(..), doesExecutableExist, readProcessNull, tryProcessStdout)
import System.Process.Run (Cmd(..), callProcessInheritStderrStdout)
import System.Exit (exitFailure)
-- | Populate the package index caches and return them.
populateCache
:: (StackMiniM env m, HasConfig env)
=> EnvOverride
-> PackageIndex
-> m PackageCacheMap
populateCache menv index = do
requireIndex menv index
-- This uses full on lazy I/O instead of ResourceT to provide some
-- protections. Caveat emptor
path <- configPackageIndex (indexName index)
let loadPIS = do
$logSticky "Populating index cache ..."
lbs <- liftIO $ L.readFile $ Path.toFilePath path
loop 0 (Map.empty, HashMap.empty) (Tar.read lbs)
(pis, gitPIs) <- loadPIS `C.catch` \e -> do
$logWarn $ "Exception encountered when parsing index tarball: "
<> T.pack (show (e :: Tar.FormatError))
$logWarn "Automatically updating index and trying again"
updateIndex menv index
loadPIS
when (indexRequireHashes index) $ forM_ (Map.toList pis) $ \(ident, pc) ->
case pcDownload pc of
Just _ -> return ()
Nothing -> throwM $ MissingRequiredHashes (indexName index) ident
$logStickyDone "Populated index cache."
return $ PackageCacheMap pis gitPIs
where
loop !blockNo (!m, !hm) (Tar.Next e es) =
loop (blockNo + entrySizeInBlocks e) (goE blockNo m hm e) es
loop _ (m, hm) Tar.Done = return (m, hm)
loop _ _ (Tar.Fail e) = throwM e
goE blockNo m hm e =
case Tar.entryContent e of
Tar.NormalFile lbs size ->
case parseNameVersionSuffix $ Tar.entryPath e of
Just (ident, ".cabal") -> addCabal lbs ident size
Just (ident, ".json") -> (addJSON id ident lbs, hm)
_ ->
case parsePackageJSON $ Tar.entryPath e of
Just ident -> (addJSON unHSPackageDownload ident lbs, hm)
Nothing -> (m, hm)
_ -> (m, hm)
where
addCabal lbs ident size =
( Map.insertWith
(\_ pcOld -> pcNew { pcDownload = pcDownload pcOld })
ident
pcNew
m
, HashMap.insert gitSHA1 offsetSize hm
)
where
pcNew = PackageCache
{ pcOffsetSize = offsetSize
, pcDownload = Nothing
}
offsetSize = OffsetSize
((blockNo + 1) * 512)
size
-- Calculate the Git SHA1 of the contents. This uses the
-- Git algorithm of prepending "blob <size>\0" to the raw
-- contents. We use this to be able to share the same SHA
-- information between the Git and tarball backends.
gitSHA1 = GitSHA1 $ B16.encode $ hashlazy $ L.fromChunks
$ "blob "
: S8.pack (show $ L.length lbs)
: "\0"
: L.toChunks lbs
addJSON :: FromJSON a
=> (a -> PackageDownload)
-> PackageIdentifier
-> L.ByteString
-> Map PackageIdentifier PackageCache
addJSON unwrap ident lbs =
case decode lbs of
Nothing -> m
Just (unwrap -> pd) -> Map.insertWith
(\_ pc -> pc { pcDownload = Just pd })
ident
PackageCache
{ pcOffsetSize = OffsetSize 0 0
, pcDownload = Just pd
}
m
breakSlash x
| T.null z = Nothing
| otherwise = Just (y, unsafeTail z)
where
(y, z) = T.break (== '/') x
parseNameVersion t1 = do
(p', t3) <- breakSlash
$ T.map (\c -> if c == '\\' then '/' else c)
$ T.pack t1
p <- parsePackageName p'
(v', t5) <- breakSlash t3
v <- parseVersion v'
return (p', p, v, t5)
parseNameVersionSuffix t1 = do
(p', p, v, t5) <- parseNameVersion t1
let (t6, suffix) = T.break (== '.') t5
guard $ t6 == p'
return (PackageIdentifier p v, suffix)
parsePackageJSON t1 = do
(_, p, v, t5) <- parseNameVersion t1
guard $ t5 == "package.json"
return $ PackageIdentifier p v
data PackageIndexException
= GitNotAvailable IndexName
| MissingRequiredHashes IndexName PackageIdentifier
deriving Typeable
instance Exception PackageIndexException
instance Show PackageIndexException where
show (GitNotAvailable name) = concat
[ "Package index "
, T.unpack $ indexNameText name
, " only provides Git access, and you do not have"
, " the git executable on your PATH"
]
show (MissingRequiredHashes name ident) = concat
[ "Package index "
, T.unpack $ indexNameText name
, " is configured to require package hashes, but no"
, " hash is available for "
, packageIdentifierString ident
]
-- | Require that an index be present, updating if it isn't.
requireIndex :: (StackMiniM env m, HasConfig env)
=> EnvOverride -> PackageIndex -> m ()
requireIndex menv index = do
tarFile <- configPackageIndex $ indexName index
exists <- doesFileExist tarFile
unless exists $ updateIndex menv index
-- | Update all of the package indices
updateAllIndices :: (StackMiniM env m, HasConfig env)
=> EnvOverride -> m ()
updateAllIndices menv = do
clearPackageCaches
view packageIndicesL >>= mapM_ (updateIndex menv)
-- | Update the index tarball
updateIndex :: (StackMiniM env m, HasConfig env)
=> EnvOverride -> PackageIndex -> m ()
updateIndex menv index =
do let name = indexName index
sloc = simplifyIndexLocation $ indexLocation index
$logSticky $ "Updating package index "
<> indexNameText (indexName index)
<> " (mirrored at "
<> (case sloc of
SILGit url -> url
SILHttp url _ -> url)
<> ") ..."
git <- isGitInstalled menv
case (git, sloc) of
(True, SILGit url) -> updateIndexGit menv name index url
(False, SILGit _) -> throwM (GitNotAvailable name)
(_, SILHttp url HTVanilla) -> updateIndexHTTP name index url
(_, SILHttp url (HTHackageSecurity hs)) -> updateIndexHackageSecurity name index url hs
-- Copy to the 00-index.tar filename for backwards compatibility
tarFile <- configPackageIndex name
oldTarFile <- configPackageIndexOld name
runConduitRes $ sourceFile (toFilePath tarFile) .| sinkFile (toFilePath oldTarFile)
-- | Update the index Git repo and the index tarball
updateIndexGit :: (StackMiniM env m, HasConfig env)
=> EnvOverride
-> IndexName
-> PackageIndex
-> Text -- ^ Git URL
-> m ()
updateIndexGit menv indexName' index gitUrl = do
tarFile <- configPackageIndex indexName'
let idxPath = parent tarFile
ensureDir idxPath
do
repoName <- parseRelDir $ takeBaseName $ T.unpack gitUrl
let cloneArgs =
["clone"
,T.unpack gitUrl
,toFilePath repoName
,"-b" --
,"display"]
sDir <- configPackageIndexRoot indexName'
let suDir =
sDir </>
$(mkRelDir "git-update")
acfDir = suDir </> repoName
repoExists <- doesDirExist acfDir
let doClone = readProcessNull (Just suDir) menv "git" cloneArgs
unless repoExists doClone
isShallow <- doesFileExist $ acfDir </> $(mkRelDir ".git") </> $(mkRelFile "shallow")
when isShallow $ do
$logWarn "Shallow package index repo detected, transitioning to a full clone..."
let handleUnshallowError =
C.handle $ \case
ProcessFailed{} -> do
$logInfo $ "Failed to convert to full clone, deleting and re-cloning."
ignoringAbsence (removeDirRecur acfDir)
doClone
err -> throwM err
-- See https://github.com/commercialhaskell/stack/issues/2748
-- for an explanation of --git-dir=.git
handleUnshallowError $
readProcessNull (Just acfDir) menv "git"
["--git-dir=.git", "fetch", "--unshallow"]
$logSticky "Fetching package index ..."
let runFetch = callProcessInheritStderrStdout
(Cmd (Just acfDir) "git" menv ["--git-dir=.git","fetch","--tags"])
runFetch `C.catch` \(ex :: ProcessExitedUnsuccessfully) -> do
-- we failed, so wipe the directory and try again, see #1418
$logWarn (T.pack (show ex))
$logStickyDone "Failed to fetch package index, retrying."
removeDirRecur acfDir
readProcessNull (Just suDir) menv "git" cloneArgs
$logSticky "Fetching package index ..."
runFetch
$logStickyDone "Fetched package index."
when (indexGpgVerify index) $ do
result <- C.try $ readProcessNull (Just acfDir) menv "git" ["--git-dir=.git","tag","-v","current-hackage"]
case result of
Left ex -> do
$logError (T.pack (show ex))
case ex of
ProcessFailed{} -> $logError $ T.unlines
["Signature verification failed. "
,"Please ensure you've set up your"
,"GPG keychain to accept the D6CF60FD signing key."
,"For more information, see:"
,"https://github.com/fpco/stackage-update#readme"]
_ -> return ()
liftIO exitFailure
Right () -> return ()
-- generate index archive when commit id differs from cloned repo
tarId <- getTarCommitId (toFilePath tarFile)
cloneId <- getCloneCommitId acfDir
unless (tarId `equals` cloneId)
(generateArchive acfDir tarFile)
where
getTarCommitId fp =
tryProcessStdout Nothing menv "sh" ["-c","git get-tar-commit-id < "++fp]
getCloneCommitId dir =
tryProcessStdout (Just dir) menv "git" ["rev-parse","current-hackage^{}"]
equals (Right cid1) (Right cid2) = cid1 == cid2
equals _ _ = False
generateArchive acfDir tarFile = do
ignoringAbsence (removeFile tarFile)
deleteCache indexName'
$logDebug ("Exporting a tarball to " <> (T.pack . toFilePath) tarFile)
let tarFileTmp = toFilePath tarFile ++ ".tmp"
readProcessNull (Just acfDir) menv
"git" ["--git-dir=.git","archive","--format=tar","-o",tarFileTmp,"current-hackage"]
tarFileTmpPath <- parseAbsFile tarFileTmp
renameFile tarFileTmpPath tarFile
-- | Update the index tarball via HTTP
updateIndexHTTP :: (StackMiniM env m, HasConfig env)
=> IndexName
-> PackageIndex
-> Text -- ^ url
-> m ()
updateIndexHTTP indexName' index url = do
req <- parseRequest $ T.unpack url
$logInfo ("Downloading package index from " <> url)
gz <- configPackageIndexGz indexName'
tar <- configPackageIndex indexName'
wasDownloaded <- redownload req gz
toUnpack <-
if wasDownloaded
then return True
else not `liftM` doesFileExist tar
when toUnpack $ do
let tmp = toFilePath tar <.> "tmp"
tmpPath <- parseAbsFile tmp
deleteCache indexName'
liftIO $ do
withBinaryFile (toFilePath gz) ReadMode $ \input ->
withBinaryFile tmp WriteMode $ \output ->
sourceHandle input
$$ ungzip
=$ sinkHandle output
renameFile tmpPath tar
when (indexGpgVerify index)
$ $logWarn
$ "You have enabled GPG verification of the package index, " <>
"but GPG verification only works with Git downloading"
-- | Update the index tarball via Hackage Security
updateIndexHackageSecurity
:: (StackMiniM env m, HasConfig env)
=> IndexName
-> PackageIndex
-> Text -- ^ base URL
-> HackageSecurity
-> m ()
updateIndexHackageSecurity indexName' index url (HackageSecurity keyIds threshold) = do
baseURI <-
case parseURI $ T.unpack url of
Nothing -> error $ "Invalid Hackage Security base URL: " ++ T.unpack url
Just x -> return x
manager <- liftIO getGlobalManager
root <- configPackageIndexRoot indexName'
logTUF <- embed_ ($logInfo . T.pack . HS.pretty)
let withRepo = HS.withRepository
(HS.makeHttpLib manager)
[baseURI]
HS.defaultRepoOpts
HS.Cache
{ HS.cacheRoot = HS.fromAbsoluteFilePath $ toFilePath root
, HS.cacheLayout = HS.cabalCacheLayout
-- Have Hackage Security write to a temporary file
-- to avoid invalidating the cache... continued
-- below at case didUpdate
{ HS.cacheLayoutIndexTar = HS.rootPath $ HS.fragment "01-index.tar-tmp"
}
}
HS.hackageRepoLayout
HS.hackageIndexLayout
logTUF
didUpdate <- liftIO $ withRepo $ \repo -> HS.uncheckClientErrors $ do
needBootstrap <- HS.requiresBootstrap repo
when needBootstrap $ do
HS.bootstrap
repo
(map (HS.KeyId . T.unpack) keyIds)
(HS.KeyThreshold (fromIntegral threshold))
now <- getCurrentTime
HS.checkForUpdates repo (Just now)
case didUpdate of
HS.HasUpdates -> do
-- The index actually updated. Delete the old cache, and
-- then move the temporary unpacked file to its real
-- location
tar <- configPackageIndex indexName'
deleteCache indexName'
liftIO $ D.renameFile (toFilePath tar ++ "-tmp") (toFilePath tar)
$logInfo "Updated package list downloaded"
HS.NoUpdates -> $logInfo "No updates to your package list were found"
when (indexGpgVerify index)
$ $logWarn
$ "You have enabled GPG verification of the package index, " <>
"but GPG verification only works with Git downloading"
-- | Is the git executable installed?
isGitInstalled :: MonadIO m
=> EnvOverride
-> m Bool
isGitInstalled = flip doesExecutableExist "git"
-- | Delete the package index cache
deleteCache
:: (StackMiniM env m, HasConfig env)
=> IndexName -> m ()
deleteCache indexName' = do
fp <- configPackageIndexCache indexName'
eres <- liftIO $ tryIO $ removeFile fp
case eres of
Left e -> $logDebug $ "Could not delete cache: " <> T.pack (show e)
Right () -> $logDebug $ "Deleted index cache at " <> T.pack (toFilePath fp)
-- | Lookup a package's versions from 'IO'.
getPackageVersionsIO
:: (StackMiniM env m, HasConfig env)
=> m (PackageName -> IO (Set Version))
getPackageVersionsIO = do
getCaches <- getPackageCachesIO
return $ \name ->
fmap (lookupPackageVersions name . fst) getCaches
-- | Get the known versions for a given package from the package caches.
--
-- See 'getPackageCaches' for performance notes.
getPackageVersions
:: (StackMiniM env m, HasConfig env)
=> PackageName
-> m (Set Version)
getPackageVersions pkgName =
fmap (lookupPackageVersions pkgName . fst) getPackageCaches
lookupPackageVersions :: PackageName -> Map PackageIdentifier a -> Set Version
lookupPackageVersions pkgName pkgCaches =
Set.fromList [v | PackageIdentifier n v <- Map.keys pkgCaches, n == pkgName]
-- | Access the package caches from 'IO'.
--
-- FIXME: This is a temporary solution until a better solution
-- to access the package caches from Stack.Build.ConstructPlan
-- has been found.
getPackageCachesIO
:: (StackMiniM env m, HasConfig env)
=> m (IO ( Map PackageIdentifier (PackageIndex, PackageCache)
, HashMap GitSHA1 (PackageIndex, OffsetSize)))
getPackageCachesIO = toIO getPackageCaches
where
toIO :: (MonadIO m, MonadBaseControl IO m) => m a -> m (IO a)
toIO m = do
runInBase <- liftBaseWith $ \run -> return (void . run)
return $ do
i <- newIORef (error "Impossible evaluation in toIO")
runInBase $ do
x <- m
liftIO $ writeIORef i x
readIORef i
-- | Load the package caches, or create the caches if necessary.
--
-- This has two levels of caching: in memory, and the on-disk cache. So,
-- feel free to call this function multiple times.
getPackageCaches
:: (StackMiniM env m, HasConfig env)
=> m ( Map PackageIdentifier (PackageIndex, PackageCache)
, HashMap GitSHA1 (PackageIndex, OffsetSize)
)
getPackageCaches = do
menv <- getMinimalEnvOverride
config <- view configL
mcached <- liftIO $ readIORef (configPackageCaches config)
case mcached of
Just cached -> return cached
Nothing -> do
result <- liftM mconcat $ forM (configPackageIndices config) $ \index -> do
fp <- configPackageIndexCache (indexName index)
PackageCacheMap pis' gitPIs <-
$(versionedDecodeOrLoad (storeVersionConfig "pkg-v2" "WlAvAaRXlIMkjSmg5G3dD16UpT8="
:: VersionConfig PackageCacheMap))
fp
(populateCache menv index)
return (fmap (index,) pis', fmap (index,) gitPIs)
liftIO $ writeIORef (configPackageCaches config) (Just result)
return result
-- | Clear the in-memory hackage index cache. This is needed when the
-- hackage index is updated.
clearPackageCaches :: (StackMiniM env m, HasConfig env) => m ()
clearPackageCaches = do
cacheRef <- view packageCachesL
liftIO $ writeIORef cacheRef Nothing
--------------- Lifted from cabal-install, Distribution.Client.Tar:
-- | Return the number of blocks in an entry.
entrySizeInBlocks :: Tar.Entry -> Int64
entrySizeInBlocks entry = 1 + case Tar.entryContent entry of
Tar.NormalFile _ size -> bytesToBlocks size
Tar.OtherEntryType _ _ size -> bytesToBlocks size
_ -> 0
where
bytesToBlocks s = 1 + ((fromIntegral s - 1) `div` 512)