web.js 5.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216
  1. const autoload = require('auto-load')
  2. const bodyParser = require('body-parser')
  3. const compression = require('compression')
  4. const cookieParser = require('cookie-parser')
  5. const cors = require('cors')
  6. const express = require('express')
  7. const session = require('express-session')
  8. const KnexSessionStore = require('connect-session-knex')(session)
  9. const favicon = require('serve-favicon')
  10. const path = require('path')
  11. const _ = require('lodash')
  12. /* global WIKI */
  13. module.exports = async () => {
  14. // ----------------------------------------
  15. // Load core modules
  16. // ----------------------------------------
  17. WIKI.auth = require('./core/auth').init()
  18. WIKI.lang = require('./core/localization').init()
  19. WIKI.mail = require('./core/mail').init()
  20. WIKI.system = require('./core/system').init()
  21. // ----------------------------------------
  22. // Load middlewares
  23. // ----------------------------------------
  24. const mw = autoload(path.join(WIKI.SERVERPATH, '/middlewares'))
  25. const ctrl = autoload(path.join(WIKI.SERVERPATH, '/controllers'))
  26. // ----------------------------------------
  27. // Define Express App
  28. // ----------------------------------------
  29. const app = express()
  30. WIKI.app = app
  31. app.use(compression())
  32. // ----------------------------------------
  33. // Security
  34. // ----------------------------------------
  35. app.use(mw.security)
  36. app.use(cors({ origin: false }))
  37. app.options('*', cors({ origin: false }))
  38. if (WIKI.config.security.securityTrustProxy) {
  39. app.enable('trust proxy')
  40. }
  41. // ----------------------------------------
  42. // Public Assets
  43. // ----------------------------------------
  44. app.use(favicon(path.join(WIKI.ROOTPATH, 'assets', 'favicon.ico')))
  45. app.use('/_assets', express.static(path.join(WIKI.ROOTPATH, 'assets/_assets'), {
  46. index: false,
  47. maxAge: '7d'
  48. }))
  49. app.use('/_assets-legacy/svg/twemoji', async (req, res, next) => {
  50. try {
  51. WIKI.asar.serve('twemoji', req, res, next)
  52. } catch (err) {
  53. res.sendStatus(404)
  54. }
  55. })
  56. app.use('/_assets-legacy', express.static(path.join(WIKI.ROOTPATH, 'assets-legacy'), {
  57. index: false,
  58. maxAge: '7d'
  59. }))
  60. // ----------------------------------------
  61. // SSL Handlers
  62. // ----------------------------------------
  63. app.use('/', ctrl.ssl)
  64. // ----------------------------------------
  65. // Passport Authentication
  66. // ----------------------------------------
  67. app.use(cookieParser())
  68. app.use(session({
  69. secret: WIKI.config.auth.secret,
  70. resave: false,
  71. saveUninitialized: false,
  72. store: new KnexSessionStore({
  73. knex: WIKI.models.knex
  74. })
  75. }))
  76. app.use(WIKI.auth.passport.initialize())
  77. app.use(WIKI.auth.authenticate)
  78. // ----------------------------------------
  79. // GraphQL Server
  80. // ----------------------------------------
  81. app.use(bodyParser.json({ limit: WIKI.config.bodyParserLimit || '1mb' }))
  82. await WIKI.servers.startGraphQL()
  83. // ----------------------------------------
  84. // SEO
  85. // ----------------------------------------
  86. app.use(mw.seo)
  87. // ----------------------------------------
  88. // View Engine Setup
  89. // ----------------------------------------
  90. app.set('views', path.join(WIKI.SERVERPATH, 'views'))
  91. app.set('view engine', 'pug')
  92. app.use(bodyParser.urlencoded({ extended: false, limit: '1mb' }))
  93. // ----------------------------------------
  94. // Localization
  95. // ----------------------------------------
  96. WIKI.lang.attachMiddleware(app)
  97. // ----------------------------------------
  98. // View accessible data
  99. // ----------------------------------------
  100. app.locals.siteConfig = {}
  101. app.locals.analyticsCode = {}
  102. app.locals.basedir = WIKI.ROOTPATH
  103. app.locals.config = WIKI.config
  104. app.locals.pageMeta = {
  105. title: '',
  106. description: WIKI.config.description,
  107. image: '',
  108. url: '/'
  109. }
  110. app.locals.devMode = WIKI.devMode
  111. // ----------------------------------------
  112. // HMR (Dev Mode Only)
  113. // ----------------------------------------
  114. if (global.DEV) {
  115. app.use(global.WP_DEV.devMiddleware)
  116. app.use(global.WP_DEV.hotMiddleware)
  117. }
  118. // ----------------------------------------
  119. // Routing
  120. // ----------------------------------------
  121. app.use(async (req, res, next) => {
  122. const currentSite = await WIKI.models.sites.getSiteByHostname({ hostname: req.hostname })
  123. if (!currentSite) {
  124. return res.status(404).send('Site Not Found')
  125. }
  126. res.locals.siteConfig = {
  127. id: currentSite.id,
  128. title: currentSite.config.title,
  129. darkMode: currentSite.config.theme.dark,
  130. lang: currentSite.config.locale,
  131. rtl: false, // TODO: handle RTL
  132. company: currentSite.config.company,
  133. contentLicense: currentSite.config.contentLicense,
  134. logoUrl: currentSite.config.logoUrl
  135. }
  136. res.locals.langs = await WIKI.models.locales.getNavLocales({ cache: true })
  137. res.locals.analyticsCode = await WIKI.models.analytics.getCode({ cache: true })
  138. next()
  139. })
  140. app.use('/', ctrl.auth)
  141. app.use('/', ctrl.upload)
  142. app.use('/', ctrl.common)
  143. // ----------------------------------------
  144. // Error handling
  145. // ----------------------------------------
  146. app.use((req, res, next) => {
  147. const err = new Error('Not Found')
  148. err.status = 404
  149. next(err)
  150. })
  151. app.use((err, req, res, next) => {
  152. if (req.path === '/_graphql') {
  153. res.status(err.status || 500).json({
  154. data: {},
  155. errors: [{
  156. message: err.message,
  157. path: []
  158. }]
  159. })
  160. } else {
  161. res.status(err.status || 500)
  162. _.set(res.locals, 'pageMeta.title', 'Error')
  163. res.render('error', {
  164. message: err.message,
  165. error: WIKI.IS_DEBUG ? err : {}
  166. })
  167. }
  168. })
  169. // ----------------------------------------
  170. // Start HTTP Server(s)
  171. // ----------------------------------------
  172. await WIKI.servers.startHTTP()
  173. if (WIKI.config.ssl.enabled === true || WIKI.config.ssl.enabled === 'true' || WIKI.config.ssl.enabled === 1 || WIKI.config.ssl.enabled === '1') {
  174. await WIKI.servers.startHTTPS()
  175. }
  176. return true
  177. }