1
2
3
4
5
6
7
8
9
10
11
12
13
14
15 package layout
16
17 import (
18 "bytes"
19 "encoding/json"
20 "errors"
21 "fmt"
22 "io"
23 "os"
24 "path/filepath"
25
26 "github.com/google/go-containerregistry/pkg/logs"
27 v1 "github.com/google/go-containerregistry/pkg/v1"
28 "github.com/google/go-containerregistry/pkg/v1/match"
29 "github.com/google/go-containerregistry/pkg/v1/mutate"
30 "github.com/google/go-containerregistry/pkg/v1/partial"
31 "github.com/google/go-containerregistry/pkg/v1/stream"
32 "github.com/google/go-containerregistry/pkg/v1/types"
33 "golang.org/x/sync/errgroup"
34 )
35
36 var layoutFile = `{
37 "imageLayoutVersion": "1.0.0"
38 }`
39
40
41
42 func (l Path) AppendImage(img v1.Image, options ...Option) error {
43 if err := l.WriteImage(img); err != nil {
44 return err
45 }
46
47 desc, err := partial.Descriptor(img)
48 if err != nil {
49 return err
50 }
51
52 o := makeOptions(options...)
53 for _, opt := range o.descOpts {
54 opt(desc)
55 }
56
57 return l.AppendDescriptor(*desc)
58 }
59
60
61
62 func (l Path) AppendIndex(ii v1.ImageIndex, options ...Option) error {
63 if err := l.WriteIndex(ii); err != nil {
64 return err
65 }
66
67 desc, err := partial.Descriptor(ii)
68 if err != nil {
69 return err
70 }
71
72 o := makeOptions(options...)
73 for _, opt := range o.descOpts {
74 opt(desc)
75 }
76
77 return l.AppendDescriptor(*desc)
78 }
79
80
81 func (l Path) AppendDescriptor(desc v1.Descriptor) error {
82 ii, err := l.ImageIndex()
83 if err != nil {
84 return err
85 }
86
87 index, err := ii.IndexManifest()
88 if err != nil {
89 return err
90 }
91
92 index.Manifests = append(index.Manifests, desc)
93
94 rawIndex, err := json.MarshalIndent(index, "", " ")
95 if err != nil {
96 return err
97 }
98
99 return l.WriteFile("index.json", rawIndex, os.ModePerm)
100 }
101
102
103
104 func (l Path) ReplaceImage(img v1.Image, matcher match.Matcher, options ...Option) error {
105 if err := l.WriteImage(img); err != nil {
106 return err
107 }
108
109 return l.replaceDescriptor(img, matcher, options...)
110 }
111
112
113
114 func (l Path) ReplaceIndex(ii v1.ImageIndex, matcher match.Matcher, options ...Option) error {
115 if err := l.WriteIndex(ii); err != nil {
116 return err
117 }
118
119 return l.replaceDescriptor(ii, matcher, options...)
120 }
121
122
123
124 func (l Path) replaceDescriptor(append mutate.Appendable, matcher match.Matcher, options ...Option) error {
125 ii, err := l.ImageIndex()
126 if err != nil {
127 return err
128 }
129
130 desc, err := partial.Descriptor(append)
131 if err != nil {
132 return err
133 }
134
135 o := makeOptions(options...)
136 for _, opt := range o.descOpts {
137 opt(desc)
138 }
139
140 add := mutate.IndexAddendum{
141 Add: append,
142 Descriptor: *desc,
143 }
144 ii = mutate.AppendManifests(mutate.RemoveManifests(ii, matcher), add)
145
146 index, err := ii.IndexManifest()
147 if err != nil {
148 return err
149 }
150
151 rawIndex, err := json.MarshalIndent(index, "", " ")
152 if err != nil {
153 return err
154 }
155
156 return l.WriteFile("index.json", rawIndex, os.ModePerm)
157 }
158
159
160 func (l Path) RemoveDescriptors(matcher match.Matcher) error {
161 ii, err := l.ImageIndex()
162 if err != nil {
163 return err
164 }
165 ii = mutate.RemoveManifests(ii, matcher)
166
167 index, err := ii.IndexManifest()
168 if err != nil {
169 return err
170 }
171
172 rawIndex, err := json.MarshalIndent(index, "", " ")
173 if err != nil {
174 return err
175 }
176
177 return l.WriteFile("index.json", rawIndex, os.ModePerm)
178 }
179
180
181
182
183
184 func (l Path) WriteFile(name string, data []byte, perm os.FileMode) error {
185 if err := os.MkdirAll(l.path(), os.ModePerm); err != nil && !os.IsExist(err) {
186 return err
187 }
188
189 return os.WriteFile(l.path(name), data, perm)
190 }
191
192
193
194 func (l Path) WriteBlob(hash v1.Hash, r io.ReadCloser) error {
195 return l.writeBlob(hash, -1, r, nil)
196 }
197
198 func (l Path) writeBlob(hash v1.Hash, size int64, rc io.ReadCloser, renamer func() (v1.Hash, error)) error {
199 defer rc.Close()
200 if hash.Hex == "" && renamer == nil {
201 panic("writeBlob called an invalid hash and no renamer")
202 }
203
204 dir := l.path("blobs", hash.Algorithm)
205 if err := os.MkdirAll(dir, os.ModePerm); err != nil && !os.IsExist(err) {
206 return err
207 }
208
209
210 file := filepath.Join(dir, hash.Hex)
211 if s, err := os.Stat(file); err == nil && !s.IsDir() && (s.Size() == size || size == -1) {
212 return nil
213 }
214
215
216 open := func() (*os.File, error) { return os.Create(file) }
217 if renamer != nil {
218 open = func() (*os.File, error) { return os.CreateTemp(dir, hash.Hex) }
219 }
220 w, err := open()
221 if err != nil {
222 return err
223 }
224 if renamer != nil {
225
226 defer func() {
227 if err := os.Remove(w.Name()); err != nil && !errors.Is(err, os.ErrNotExist) {
228 logs.Warn.Printf("error removing temporary file after encountering an error while writing blob: %v", err)
229 }
230 }()
231 }
232 defer w.Close()
233
234
235 if n, err := io.Copy(w, rc); err != nil || renamer == nil {
236 return err
237 } else if size != -1 && n != size {
238 return fmt.Errorf("expected blob size %d, but only wrote %d", size, n)
239 }
240
241
242
243
244
245
246 if err := rc.Close(); err != nil {
247 return err
248 }
249
250
251 if err := w.Close(); err != nil {
252 return err
253 }
254
255
256 finalHash, err := renamer()
257 if err != nil {
258 return fmt.Errorf("error getting final digest of layer: %w", err)
259 }
260
261 renamePath := l.path("blobs", finalHash.Algorithm, finalHash.Hex)
262 return os.Rename(w.Name(), renamePath)
263 }
264
265
266
267
268
269
270
271 func (l Path) writeLayer(layer v1.Layer) error {
272 d, err := layer.Digest()
273 if errors.Is(err, stream.ErrNotComputed) {
274
275
276
277
278
279 d = v1.Hash{Algorithm: "sha256", Hex: ""}
280 } else if err != nil {
281 return err
282 }
283
284 s, err := layer.Size()
285 if errors.Is(err, stream.ErrNotComputed) {
286
287
288
289
290
291
292 s = -1
293 } else if err != nil {
294 return err
295 }
296
297 r, err := layer.Compressed()
298 if err != nil {
299 return err
300 }
301
302 if err := l.writeBlob(d, s, r, layer.Digest); err != nil {
303 return fmt.Errorf("error writing layer: %w", err)
304 }
305 return nil
306 }
307
308
309
310
311
312 func (l Path) RemoveBlob(hash v1.Hash) error {
313 dir := l.path("blobs", hash.Algorithm)
314 err := os.Remove(filepath.Join(dir, hash.Hex))
315 if err != nil && !os.IsNotExist(err) {
316 return err
317 }
318 return nil
319 }
320
321
322
323
324
325
326
327 func (l Path) WriteImage(img v1.Image) error {
328 layers, err := img.Layers()
329 if err != nil {
330 return err
331 }
332
333
334 var g errgroup.Group
335 for _, layer := range layers {
336 layer := layer
337 g.Go(func() error {
338 return l.writeLayer(layer)
339 })
340 }
341 if err := g.Wait(); err != nil {
342 return err
343 }
344
345
346 cfgName, err := img.ConfigName()
347 if err != nil {
348 return err
349 }
350 cfgBlob, err := img.RawConfigFile()
351 if err != nil {
352 return err
353 }
354 if err := l.WriteBlob(cfgName, io.NopCloser(bytes.NewReader(cfgBlob))); err != nil {
355 return err
356 }
357
358
359 d, err := img.Digest()
360 if err != nil {
361 return err
362 }
363 manifest, err := img.RawManifest()
364 if err != nil {
365 return err
366 }
367
368 return l.WriteBlob(d, io.NopCloser(bytes.NewReader(manifest)))
369 }
370
371 type withLayer interface {
372 Layer(v1.Hash) (v1.Layer, error)
373 }
374
375 type withBlob interface {
376 Blob(v1.Hash) (io.ReadCloser, error)
377 }
378
379 func (l Path) writeIndexToFile(indexFile string, ii v1.ImageIndex) error {
380 index, err := ii.IndexManifest()
381 if err != nil {
382 return err
383 }
384
385
386
387 for _, desc := range index.Manifests {
388 switch desc.MediaType {
389 case types.OCIImageIndex, types.DockerManifestList:
390 ii, err := ii.ImageIndex(desc.Digest)
391 if err != nil {
392 return err
393 }
394 if err := l.WriteIndex(ii); err != nil {
395 return err
396 }
397 case types.OCIManifestSchema1, types.DockerManifestSchema2:
398 img, err := ii.Image(desc.Digest)
399 if err != nil {
400 return err
401 }
402 if err := l.WriteImage(img); err != nil {
403 return err
404 }
405 default:
406
407
408
409 var blob io.ReadCloser
410
411 if wl, ok := ii.(withLayer); ok {
412 layer, lerr := wl.Layer(desc.Digest)
413 if lerr != nil {
414 return lerr
415 }
416 blob, err = layer.Compressed()
417 } else if wb, ok := ii.(withBlob); ok {
418 blob, err = wb.Blob(desc.Digest)
419 }
420 if err != nil {
421 return err
422 }
423 if err := l.WriteBlob(desc.Digest, blob); err != nil {
424 return err
425 }
426 }
427 }
428
429 rawIndex, err := ii.RawManifest()
430 if err != nil {
431 return err
432 }
433
434 return l.WriteFile(indexFile, rawIndex, os.ModePerm)
435 }
436
437
438
439
440
441
442
443
444 func (l Path) WriteIndex(ii v1.ImageIndex) error {
445
446 if err := l.WriteFile("oci-layout", []byte(layoutFile), os.ModePerm); err != nil {
447 return err
448 }
449
450 h, err := ii.Digest()
451 if err != nil {
452 return err
453 }
454
455 indexFile := filepath.Join("blobs", h.Algorithm, h.Hex)
456 return l.writeIndexToFile(indexFile, ii)
457 }
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472 func Write(path string, ii v1.ImageIndex) (Path, error) {
473 lp := Path(path)
474
475 if err := lp.WriteFile("oci-layout", []byte(layoutFile), os.ModePerm); err != nil {
476 return "", err
477 }
478
479
480
481 return lp, lp.writeIndexToFile("index.json", ii)
482 }
483
View as plain text