web.js 6.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235
  1. const autoload = require('auto-load')
  2. const bodyParser = require('body-parser')
  3. const compression = require('compression')
  4. const cookieParser = require('cookie-parser')
  5. const cors = require('cors')
  6. const express = require('express')
  7. const session = require('express-session')
  8. const KnexSessionStore = require('connect-session-knex')(session)
  9. const favicon = require('serve-favicon')
  10. const path = require('path')
  11. const _ = require('lodash')
  12. /* global WIKI */
  13. module.exports = async () => {
  14. // ----------------------------------------
  15. // Load core modules
  16. // ----------------------------------------
  17. WIKI.auth = require('./core/auth').init()
  18. WIKI.lang = require('./core/localization').init()
  19. WIKI.mail = require('./core/mail').init()
  20. WIKI.system = require('./core/system').init()
  21. // ----------------------------------------
  22. // Load middlewares
  23. // ----------------------------------------
  24. const mw = autoload(path.join(WIKI.SERVERPATH, '/middlewares'))
  25. const ctrl = autoload(path.join(WIKI.SERVERPATH, '/controllers'))
  26. // ----------------------------------------
  27. // Define Express App
  28. // ----------------------------------------
  29. const app = express()
  30. WIKI.app = app
  31. app.use(compression())
  32. // ----------------------------------------
  33. // Initialize HTTP/HTTPS Server
  34. // ----------------------------------------
  35. const useHTTPS = WIKI.config.ssl.enabled === true || WIKI.config.ssl.enabled === 'true' || WIKI.config.ssl.enabled === 1 || WIKI.config.ssl.enabled === '1'
  36. await WIKI.servers.initHTTP()
  37. if (useHTTPS) {
  38. await WIKI.servers.initHTTPS()
  39. }
  40. await WIKI.servers.initWebSocket()
  41. // ----------------------------------------
  42. // Attach WebSocket Server
  43. // ----------------------------------------
  44. ctrl.ws()
  45. // ----------------------------------------
  46. // Security
  47. // ----------------------------------------
  48. app.use(mw.security)
  49. app.use(cors({ origin: false }))
  50. app.options('*', cors({ origin: false }))
  51. if (WIKI.config.security.securityTrustProxy) {
  52. app.enable('trust proxy')
  53. }
  54. // ----------------------------------------
  55. // Public Assets
  56. // ----------------------------------------
  57. app.use(favicon(path.join(WIKI.ROOTPATH, 'assets', 'favicon.ico')))
  58. app.use('/_assets', express.static(path.join(WIKI.ROOTPATH, 'assets/_assets'), {
  59. index: false,
  60. maxAge: '7d'
  61. }))
  62. app.use('/_assets-legacy/svg/twemoji', async (req, res, next) => {
  63. try {
  64. WIKI.asar.serve('twemoji', req, res, next)
  65. } catch (err) {
  66. res.sendStatus(404)
  67. }
  68. })
  69. app.use('/_assets-legacy', express.static(path.join(WIKI.ROOTPATH, 'assets-legacy'), {
  70. index: false,
  71. maxAge: '7d'
  72. }))
  73. // ----------------------------------------
  74. // SSL Handlers
  75. // ----------------------------------------
  76. app.use('/', ctrl.ssl)
  77. // ----------------------------------------
  78. // Passport Authentication
  79. // ----------------------------------------
  80. app.use(cookieParser())
  81. app.use(session({
  82. secret: WIKI.config.auth.secret,
  83. resave: false,
  84. saveUninitialized: false,
  85. store: new KnexSessionStore({
  86. knex: WIKI.models.knex
  87. })
  88. }))
  89. app.use(WIKI.auth.passport.initialize())
  90. app.use(WIKI.auth.authenticate)
  91. // ----------------------------------------
  92. // GraphQL Server
  93. // ----------------------------------------
  94. app.use(bodyParser.json({ limit: WIKI.config.bodyParserLimit || '1mb' }))
  95. await WIKI.servers.startGraphQL()
  96. // ----------------------------------------
  97. // SEO
  98. // ----------------------------------------
  99. app.use(mw.seo)
  100. // ----------------------------------------
  101. // View Engine Setup
  102. // ----------------------------------------
  103. app.set('views', path.join(WIKI.SERVERPATH, 'views'))
  104. app.set('view engine', 'pug')
  105. app.use(bodyParser.urlencoded({ extended: false, limit: '1mb' }))
  106. // ----------------------------------------
  107. // Localization
  108. // ----------------------------------------
  109. WIKI.lang.attachMiddleware(app)
  110. // ----------------------------------------
  111. // View accessible data
  112. // ----------------------------------------
  113. app.locals.siteConfig = {}
  114. app.locals.analyticsCode = {}
  115. app.locals.basedir = WIKI.ROOTPATH
  116. app.locals.config = WIKI.config
  117. app.locals.pageMeta = {
  118. title: '',
  119. description: WIKI.config.description,
  120. image: '',
  121. url: '/'
  122. }
  123. app.locals.devMode = WIKI.devMode
  124. // ----------------------------------------
  125. // HMR (Dev Mode Only)
  126. // ----------------------------------------
  127. if (global.DEV) {
  128. app.use(global.WP_DEV.devMiddleware)
  129. app.use(global.WP_DEV.hotMiddleware)
  130. }
  131. // ----------------------------------------
  132. // Routing
  133. // ----------------------------------------
  134. app.use(async (req, res, next) => {
  135. const currentSite = await WIKI.models.sites.getSiteByHostname({ hostname: req.hostname })
  136. if (!currentSite) {
  137. return res.status(404).send('Site Not Found')
  138. }
  139. res.locals.siteConfig = {
  140. id: currentSite.id,
  141. title: currentSite.config.title,
  142. darkMode: currentSite.config.theme.dark,
  143. lang: currentSite.config.locale,
  144. rtl: false, // TODO: handle RTL
  145. company: currentSite.config.company,
  146. contentLicense: currentSite.config.contentLicense
  147. }
  148. res.locals.langs = await WIKI.models.locales.getNavLocales({ cache: true })
  149. res.locals.analyticsCode = await WIKI.models.analytics.getCode({ cache: true })
  150. next()
  151. })
  152. app.use('/', ctrl.auth)
  153. app.use('/', ctrl.upload)
  154. app.use('/', ctrl.common)
  155. // ----------------------------------------
  156. // Error handling
  157. // ----------------------------------------
  158. app.use((req, res, next) => {
  159. const err = new Error('Not Found')
  160. err.status = 404
  161. next(err)
  162. })
  163. app.use((err, req, res, next) => {
  164. if (req.path === '/_graphql') {
  165. res.status(err.status || 500).json({
  166. data: {},
  167. errors: [{
  168. message: err.message,
  169. path: []
  170. }]
  171. })
  172. } else {
  173. res.status(err.status || 500)
  174. _.set(res.locals, 'pageMeta.title', 'Error')
  175. res.render('error', {
  176. message: err.message,
  177. error: WIKI.IS_DEBUG ? err : {}
  178. })
  179. }
  180. })
  181. // ----------------------------------------
  182. // Start HTTP Server(s)
  183. // ----------------------------------------
  184. await WIKI.servers.startHTTP()
  185. if (useHTTPS) {
  186. await WIKI.servers.startHTTPS()
  187. }
  188. return true
  189. }