3
ûâdeQ  ã               @   sÄ   d dl Z d dlZd dlZd dlZd dlZd dlZyd dlmZ W n  ek
r`   d dl	mZ Y nX ddl
mZ ddlmZmZmZmZmZmZ ddlmZmZ ejeƒZdZdZG d	d
„ d
eƒZdS )é    N)ÚThreadé   )ÚDistlibException)ÚHTTPBasicAuthHandlerÚRequestÚHTTPPasswordMgrÚurlparseÚbuild_openerÚstring_types)Úzip_dirÚServerProxyzhttps://pypi.org/pypiÚpypic               @   s¶   e Zd ZdZdZd*dd„Zdd„ Zdd	„ Zd
d„ Zdd„ Z	dd„ Z
dd„ Zd+dd„Zd,dd„Zd-dd„Zd.dd„Zdd„ Zd/dd„Zd0d d!„Zd1d"d#„Zd$d%„ Zd&d'„ Zd2d(d)„ZdS )3ÚPackageIndexzc
    This class represents a package index compatible with PyPI, the Python
    Package Index.
    s.   ----------ThIs_Is_tHe_distlib_index_bouNdaRY_$Nc             C   sÊ   |pt | _| jƒ  t| jƒ\}}}}}}|s<|s<|s<|dkrJtd| j ƒ‚d| _d| _d| _d| _t	t
jdƒ�R}xJdD ]B}	y(tj|	dg||d	�}
|
d
kr |	| _P W qv tk
r¶   Y qvX qvW W dQ R X dS )z”
        Initialise an instance.

        :param url: The URL of the index. If not specified, the URL for PyPI is
                    used.
        ÚhttpÚhttpszinvalid repository: %sNÚwÚgpgÚgpg2z	--version)ÚstdoutÚstderrr   )r   r   )r   r   )ÚDEFAULT_INDEXÚurlÚread_configurationr   r   Úpassword_handlerÚssl_verifierr   Úgpg_homeÚopenÚosÚdevnullÚ
subprocessÚ
check_callÚOSError)Úselfr   ÚschemeÚnetlocÚpathÚparamsÚqueryÚfragZsinkÚsÚrc© r+   ú8/tmp/pip-build-red6nood/pip/pip/_vendor/distlib/index.pyÚ__init__$   s&    

zPackageIndex.__init__c             C   s   ddl m} |ƒ S )zs
        Get the distutils command for interacting with PyPI configurations.
        :return: the command.
        r   )Ú_get_pypirc_command)Úutilr.   )r"   Úcmdr+   r+   r,   r.   A   s    z PackageIndex._get_pypirc_commandc             C   sN   ddl m} || ƒ}|jdƒ| _|jdƒ| _|jddƒ| _|jd| jƒ| _dS )	zÃ
        Read the PyPI access configuration as supported by distutils. This populates
        ``username``, ``password``, ``realm`` and ``url`` attributes from the
        configuration.
        r   )Ú_load_pypircÚusernameÚpasswordÚrealmr   Ú
repositoryN)r/   r1   Úgetr2   r3   r4   r   )r"   r1   Úcfgr+   r+   r,   r   I   s    zPackageIndex.read_configurationc             C   s    | j ƒ  ddlm} || ƒ dS )z”
        Save the PyPI access configuration. You must have set ``username`` and
        ``password`` attributes before calling this method.
        r   )Ú_store_pypircN)Úcheck_credentialsr/   r8   )r"   r8   r+   r+   r,   Úsave_configurationV   s    zPackageIndex.save_configurationc             C   s\   | j dks| jdkrtdƒ‚tƒ }t| jƒ\}}}}}}|j| j|| j | jƒ t|ƒ| _	dS )zp
        Check that ``username`` and ``password`` have been set, and raise an
        exception if not.
        Nz!username and password must be set)
r2   r3   r   r   r   r   Úadd_passwordr4   r   r   )r"   ZpmÚ_r$   r+   r+   r,   r9   _   s    zPackageIndex.check_credentialsc             C   s\   | j ƒ  |jƒ  |jƒ }d|d< | j|jƒ g ƒ}| j|ƒ}d|d< | j|jƒ g ƒ}| j|ƒS )aq  
        Register a distribution on PyPI, using the provided metadata.

        :param metadata: A :class:`Metadata` instance defining at least a name
                         and version number for the distribution to be
                         registered.
        :return: The HTTP response received from PyPI upon submission of the
                request.
        Úverifyz:actionZsubmit)r9   ÚvalidateÚtodictÚencode_requestÚitemsÚsend_request)r"   ÚmetadataÚdÚrequestÚresponser+   r+   r,   Úregisterk   s    

zPackageIndex.registerc             C   sJ   x<|j ƒ }|sP |jdƒjƒ }|j|ƒ tjd||f ƒ qW |jƒ  dS )ar  
        Thread runner for reading lines of from a subprocess into a buffer.

        :param name: The logical name of the stream (used for logging only).
        :param stream: The stream to read from. This will typically a pipe
                       connected to the output stream of a subprocess.
        :param outbuf: The list to append the read lines to.
        zutf-8z%s: %sN)ÚreadlineÚdecodeÚrstripÚappendÚloggerÚdebugÚclose)r"   ÚnameÚstreamZoutbufr)   r+   r+   r,   Ú_reader   s    	
zPackageIndex._readerc             C   sš   | j dddg}|dkr| j}|r.|jd|gƒ |dk	rF|jdddgƒ tjƒ }tjj|tjj|ƒd	 ƒ}|jd
dd|d||gƒ t	j
ddj|ƒƒ ||fS )a‰  
        Return a suitable command for signing a file.

        :param filename: The pathname to the file to be signed.
        :param signer: The identifier of the signer of the file.
        :param sign_password: The passphrase for the signer's
                              private key used for signing.
        :param keystore: The path to a directory which contains the keys
                         used in verification. If not specified, the
                         instance's ``gpg_home`` attribute is used instead.
        :return: The signing command as a list suitable to be
                 passed to :class:`subprocess.Popen`.
        z--status-fdÚ2z--no-ttyNz	--homedirz--batchz--passphrase-fdÚ0z.ascz--detach-signz--armorz--local-userz--outputzinvoking: %sú )r   r   ÚextendÚtempfileÚmkdtempr   r%   ÚjoinÚbasenamerL   rM   )r"   ÚfilenameÚsignerÚsign_passwordÚkeystorer0   ÚtdZsfr+   r+   r,   Úget_sign_command‘   s    
zPackageIndex.get_sign_commandc       	      C   s´   t jt jdœ}|dk	r t j|d< g }g }t j|f|Ž}t| jd|j|fd�}|jƒ  t| jd|j|fd�}|jƒ  |dk	r�|jj	|ƒ |jj
ƒ  |jƒ  |jƒ  |jƒ  |j||fS )aæ  
        Run a command in a child process , passing it any input data specified.

        :param cmd: The command to run.
        :param input_data: If specified, this must be a byte string containing
                           data to be sent to the child process.
        :return: A tuple consisting of the subprocess' exit code, a list of
                 lines read from the subprocess' ``stdout``, and a list of
                 lines read from the subprocess' ``stderr``.
        )r   r   NÚstdinr   )ÚtargetÚargsr   )r   ÚPIPEÚPopenr   rQ   r   Ústartr   r`   ÚwriterN   ÚwaitrX   Ú
returncode)	r"   r0   Z
input_dataÚkwargsr   r   ÚpÚt1Út2r+   r+   r,   Úrun_command®   s$    


zPackageIndex.run_commandc       
      C   sD   | j ||||ƒ\}}| j||jdƒƒ\}}}	|dkr@td| ƒ‚|S )aR  
        Sign a file.

        :param filename: The pathname to the file to be signed.
        :param signer: The identifier of the signer of the file.
        :param sign_password: The passphrase for the signer's
                              private key used for signing.
        :param keystore: The path to a directory which contains the keys
                         used in signing. If not specified, the instance's
                         ``gpg_home`` attribute is used instead.
        :return: The absolute pathname of the file where the signature is
                 stored.
        zutf-8r   z&sign command failed with error code %s)r_   rm   Úencoder   )
r"   rZ   r[   r\   r]   r0   Úsig_filer*   r   r   r+   r+   r,   Ú	sign_fileÑ   s    

zPackageIndex.sign_fileÚsdistÚsourcec             C   s(  | j ƒ  tjj|ƒs td| ƒ‚|jƒ  |jƒ }d}	|rZ| jsJtj	dƒ n| j
||||ƒ}	t|dƒ�}
|
jƒ }W dQ R X tj|ƒjƒ }tj|ƒjƒ }|jdd||||dœƒ dtjj|ƒ|fg}|	�rt|	dƒ�}
|
jƒ }W dQ R X |jd	tjj|	ƒ|fƒ tjtjj|	ƒƒ | j|jƒ |ƒ}| j|ƒS )
a´  
        Upload a release file to the index.

        :param metadata: A :class:`Metadata` instance defining at least a name
                         and version number for the file to be uploaded.
        :param filename: The pathname of the file to be uploaded.
        :param signer: The identifier of the signer of the file.
        :param sign_password: The passphrase for the signer's
                              private key used for signing.
        :param filetype: The type of the file being uploaded. This is the
                        distutils command which produced that file, e.g.
                        ``sdist`` or ``bdist_wheel``.
        :param pyversion: The version of Python which the release relates
                          to. For code compatible with any Python, this would
                          be ``source``, otherwise it would be e.g. ``3.2``.
        :param keystore: The path to a directory which contains the keys
                         used in signing. If not specified, the instance's
                         ``gpg_home`` attribute is used instead.
        :return: The HTTP response received from PyPI upon submission of the
                request.
        znot found: %sNz)no signing program available - not signedÚrbZfile_uploadÚ1)z:actionZprotocol_versionÚfiletypeÚ	pyversionÚ
md5_digestÚsha256_digestÚcontentZgpg_signature)r9   r   r%   Úexistsr   r>   r?   r   rL   Úwarningrp   r   ÚreadÚhashlibÚmd5Ú	hexdigestÚsha256ÚupdaterY   rK   ÚshutilÚrmtreeÚdirnamer@   rA   rB   )r"   rC   rZ   r[   r\   ru   rv   r]   rD   ro   ÚfZ	file_datarw   rx   ÚfilesZsig_datarE   r+   r+   r,   Úupload_fileè   s>    

zPackageIndex.upload_filec       
      C   sœ   | j ƒ  tjj|ƒs td| ƒ‚tjj|dƒ}tjj|ƒsFtd| ƒ‚|jƒ  |j|j	 }}t
|ƒjƒ }d	d|fd|fg}d||fg}| j||ƒ}	| j|	ƒS )
a2  
        Upload documentation to the index.

        :param metadata: A :class:`Metadata` instance defining at least a name
                         and version number for the documentation to be
                         uploaded.
        :param doc_dir: The pathname of the directory which contains the
                        documentation. This should be the directory that
                        contains the ``index.html`` for the documentation.
        :return: The HTTP response received from PyPI upon submission of the
                request.
        znot a directory: %rz
index.htmlznot found: %rú:actionÚ
doc_uploadrO   Úversionry   )rˆ   r‰   )r9   r   r%   Úisdirr   rX   rz   r>   rO   rŠ   r   Úgetvaluer@   rB   )
r"   rC   Zdoc_dirÚfnrO   rŠ   Úzip_dataÚfieldsr†   rE   r+   r+   r,   Úupload_documentation!  s    z!PackageIndex.upload_documentationc             C   sT   | j dddg}|dkr| j}|r.|jd|gƒ |jd||gƒ tjddj|ƒƒ |S )	a|  
        Return a suitable command for verifying a file.

        :param signature_filename: The pathname to the file containing the
                                   signature.
        :param data_filename: The pathname to the file containing the
                              signed data.
        :param keystore: The path to a directory which contains the keys
                         used in verification. If not specified, the
                         instance's ``gpg_home`` attribute is used instead.
        :return: The verifying command as a list suitable to be
                 passed to :class:`subprocess.Popen`.
        z--status-fdrR   z--no-ttyNz	--homedirz--verifyzinvoking: %srT   )r   r   rU   rL   rM   rX   )r"   Úsignature_filenameÚdata_filenamer]   r0   r+   r+   r,   Úget_verify_command=  s    zPackageIndex.get_verify_commandc             C   sH   | j stdƒ‚| j|||ƒ}| j|ƒ\}}}|dkr@td| ƒ‚|dkS )a6  
        Verify a signature for a file.

        :param signature_filename: The pathname to the file containing the
                                   signature.
        :param data_filename: The pathname to the file containing the
                              signed data.
        :param keystore: The path to a directory which contains the keys
                         used in verification. If not specified, the
                         instance's ``gpg_home`` attribute is used instead.
        :return: True if the signature was verified, else False.
        z0verification unavailable because gpg unavailabler   r   z(verify command failed with error code %s)r   r   )r   r   r“   rm   )r"   r‘   r’   r]   r0   r*   r   r   r+   r+   r,   Úverify_signatureU  s    zPackageIndex.verify_signaturec             C   sp  |dkrd}t jdƒ n6t|ttfƒr0|\}}nd}tt|ƒƒ }t jd| ƒ t|dƒ�²}| jt	|ƒƒ}z’|j
ƒ }	d}
d}d}d}d	|	kr–t|	d
 ƒ}|r¦|||
|ƒ xP|j|
ƒ}|s¸P |t|ƒ7 }|j|ƒ |rÜ|j|ƒ |d7 }|r¨|||
|ƒ q¨W W d|jƒ  X W dQ R X |dk�r4||k �r4td||f ƒ‚|�rl|jƒ }||k�r`td||||f ƒ‚t jd|ƒ dS )a  
        This is a convenience method for downloading a file from an URL.
        Normally, this will be a file from the index, though currently
        no check is made for this (i.e. a file can be downloaded from
        anywhere).

        The method is just like the :func:`urlretrieve` function in the
        standard library, except that it allows digest computation to be
        done during download and checking that the downloaded data
        matched any expected value.

        :param url: The URL of the file to be downloaded (assumed to be
                    available via an HTTP GET request).
        :param destfile: The pathname where the downloaded file is to be
                         saved.
        :param digest: If specified, this must be a (hasher, value)
                       tuple, where hasher is the algorithm used (e.g.
                       ``'md5'``) and ``value`` is the expected value.
        :param reporthook: The same as for :func:`urlretrieve` in the
                           standard library.
        NzNo digest specifiedr~   zDigest specified: %sÚwbi    r   r   zcontent-lengthzContent-Lengthz1retrieval incomplete: got only %d out of %d bytesz.%s digest mismatch for %s: expected %s, got %szDigest verified: %séÿÿÿÿ)rL   rM   Ú
isinstanceÚlistÚtupleÚgetattrr}   r   rB   r   ÚinfoÚintr|   Úlenrf   r�   rN   r   r   )r"   r   ÚdestfileÚdigestÚ
reporthookZdigesterZhasherZdfpZsfpÚheadersÚ	blocksizeÚsizer|   ÚblocknumÚblockÚactualr+   r+   r,   Údownload_filen  sV    




zPackageIndex.download_filec             C   s:   g }| j r|j| j ƒ | jr(|j| jƒ t|Ž }|j|ƒS )zÝ
        Send a standard library :class:`Request` to PyPI and return its
        response.

        :param req: The request to send.
        :return: The HTTP response from PyPI (a standard library HTTPResponse).
        )r   rK   r   r	   r   )r"   ÚreqÚhandlersÚopenerr+   r+   r,   rB   »  s    zPackageIndex.send_requestc             C   sä   g }| j }xX|D ]P\}}t|ttfƒs,|g}x2|D ]*}|jd| d| jdƒd|jdƒfƒ q2W qW x6|D ].\}}	}
|jd| d||	f jdƒd|
fƒ qjW |jd| d dfƒ dj|ƒ}d| }|tt|ƒƒdœ}t	| j
||ƒS )	a&  
        Encode fields and files for posting to an HTTP server.

        :param fields: The fields to send as a list of (fieldname, value)
                       tuples.
        :param files: The files to send as a list of (fieldname, filename,
                      file_bytes) tuple.
        s   --z)Content-Disposition: form-data; name="%s"zutf-8ó    z8Content-Disposition: form-data; name="%s"; filename="%s"s   
s   multipart/form-data; boundary=)zContent-typezContent-length)Úboundaryr—   r˜   r™   rU   rn   rX   Ústrr�   r   r   )r"   r�   r†   Úpartsr¬   ÚkÚvaluesÚvÚkeyrZ   ÚvalueÚbodyÚctr¡   r+   r+   r,   r@   Ë  s2    


zPackageIndex.encode_requestc             C   sB   t |tƒrd|i}t| jdd�}z|j||p.dƒS |dƒƒ  X d S )NrO   g      @)ÚtimeoutÚandrN   )r—   r
   r   r   Úsearch)r"   ZtermsÚoperatorZ	rpc_proxyr+   r+   r,   r¸   ö  s    
zPackageIndex.search)N)N)N)N)NNrq   rr   N)N)N)NN)N)Ú__name__Ú
__module__Ú__qualname__Ú__doc__r¬   r-   r.   r   r:   r9   rG   rQ   r_   rm   rp   r‡   r�   r“   r”   r§   rB   r@   r¸   r+   r+   r+   r,   r      s*   
	

#
 
8


M+r   )r}   Úloggingr   r‚   r   rV   Ú	threadingr   ÚImportErrorÚdummy_threadingÚ r   Úcompatr   r   r   r   r	   r
   r/   r   r   Ú	getLoggerrº   rL   r   ÚDEFAULT_REALMÚobjectr   r+   r+   r+   r,   Ú<module>   s     
