github_incoming.go 3.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133
  1. package webhook
  2. import (
  3. "fmt"
  4. "net/http"
  5. "strconv"
  6. "github.com/bradleyfalzon/ghinstallation/v2"
  7. "github.com/google/go-github/v41/github"
  8. "github.com/porter-dev/porter/api/server/authz"
  9. "github.com/porter-dev/porter/api/server/handlers"
  10. "github.com/porter-dev/porter/api/server/shared"
  11. "github.com/porter-dev/porter/api/server/shared/apierrors"
  12. "github.com/porter-dev/porter/api/server/shared/config"
  13. "github.com/porter-dev/porter/internal/models"
  14. )
  15. type GithubIncomingWebhookHandler struct {
  16. handlers.PorterHandlerReadWriter
  17. authz.KubernetesAgentGetter
  18. }
  19. func NewGithubIncomingWebhookHandler(
  20. config *config.Config,
  21. decoderValidator shared.RequestDecoderValidator,
  22. writer shared.ResultWriter,
  23. ) *GithubIncomingWebhookHandler {
  24. return &GithubIncomingWebhookHandler{
  25. PorterHandlerReadWriter: handlers.NewDefaultPorterHandler(config, decoderValidator, writer),
  26. KubernetesAgentGetter: authz.NewOutOfClusterAgentGetter(config),
  27. }
  28. }
  29. func (c *GithubIncomingWebhookHandler) ServeHTTP(w http.ResponseWriter, r *http.Request) {
  30. payload, err := github.ValidatePayload(r, []byte(c.Config().ServerConf.GithubIncomingWebhookSecret))
  31. if err != nil {
  32. c.HandleAPIError(w, r, apierrors.NewErrInternal(err))
  33. return
  34. }
  35. event, err := github.ParseWebHook(github.WebHookType(r), payload)
  36. if err != nil {
  37. c.HandleAPIError(w, r, apierrors.NewErrInternal(err))
  38. return
  39. }
  40. switch event := event.(type) {
  41. case *github.PullRequestEvent:
  42. err = c.processPullRequestEvent(event, r)
  43. if err != nil {
  44. c.HandleAPIError(w, r, apierrors.NewErrInternal(err))
  45. return
  46. }
  47. }
  48. }
  49. func (c *GithubIncomingWebhookHandler) processPullRequestEvent(event *github.PullRequestEvent, r *http.Request) error {
  50. owner := event.GetOrganization().GetName()
  51. repo := event.GetRepo().GetName()
  52. env, err := c.Repo().Environment().ReadEnvironmentByOwnerRepoName(owner, repo)
  53. if err != nil {
  54. return err
  55. }
  56. // create deployment on GitHub API
  57. client, err := getGithubClientFromEnvironment(c.Config(), env)
  58. if err != nil {
  59. return err
  60. }
  61. if env.Mode == "auto" && event.GetAction() == "opened" {
  62. _, err := client.Actions.CreateWorkflowDispatchEventByFileName(
  63. r.Context(), owner, repo, fmt.Sprintf("porter_%s_env.yml", env.Name),
  64. github.CreateWorkflowDispatchEventRequest{
  65. Ref: event.PullRequest.GetHead().GetRef(),
  66. },
  67. )
  68. if err != nil {
  69. return err
  70. }
  71. }
  72. depl, err := c.Repo().Environment().ReadDeploymentByGitDetails(
  73. env.ID, owner, repo, uint(event.GetPullRequest().GetNumber()),
  74. )
  75. if err != nil {
  76. return err
  77. }
  78. if depl.Status != "disabled" {
  79. _, err := client.Actions.CreateWorkflowDispatchEventByFileName(
  80. r.Context(), owner, repo, fmt.Sprintf("porter_%s_env.yml", env.Name),
  81. github.CreateWorkflowDispatchEventRequest{
  82. Ref: event.PullRequest.GetHead().GetRef(),
  83. },
  84. )
  85. if err != nil {
  86. return err
  87. }
  88. }
  89. return nil
  90. }
  91. func getGithubClientFromEnvironment(config *config.Config, env *models.Environment) (*github.Client, error) {
  92. // get the github app client
  93. ghAppId, err := strconv.Atoi(config.ServerConf.GithubAppID)
  94. if err != nil {
  95. return nil, err
  96. }
  97. // authenticate as github app installation
  98. itr, err := ghinstallation.NewKeyFromFile(
  99. http.DefaultTransport,
  100. int64(ghAppId),
  101. int64(env.GitInstallationID),
  102. config.ServerConf.GithubAppSecretPath,
  103. )
  104. if err != nil {
  105. return nil, err
  106. }
  107. return github.NewClient(&http.Client{Transport: itr}), nil
  108. }