web.js 6.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228
  1. const autoload = require('auto-load')
  2. const bodyParser = require('body-parser')
  3. const compression = require('compression')
  4. const cookieParser = require('cookie-parser')
  5. const cors = require('cors')
  6. const express = require('express')
  7. const session = require('express-session')
  8. const KnexSessionStore = require('connect-session-knex')(session)
  9. const favicon = require('serve-favicon')
  10. const path = require('path')
  11. const _ = require('lodash')
  12. /* global WIKI */
  13. module.exports = async () => {
  14. // ----------------------------------------
  15. // Load core modules
  16. // ----------------------------------------
  17. WIKI.auth = require('./core/auth').init()
  18. WIKI.mail = require('./core/mail').init()
  19. WIKI.system = require('./core/system').init()
  20. // ----------------------------------------
  21. // Load middlewares
  22. // ----------------------------------------
  23. const mw = autoload(path.join(WIKI.SERVERPATH, '/middlewares'))
  24. const ctrl = autoload(path.join(WIKI.SERVERPATH, '/controllers'))
  25. // ----------------------------------------
  26. // Define Express App
  27. // ----------------------------------------
  28. const app = express()
  29. WIKI.app = app
  30. app.use(compression())
  31. // ----------------------------------------
  32. // Initialize HTTP/HTTPS Server
  33. // ----------------------------------------
  34. const useHTTPS = WIKI.config.ssl.enabled === true || WIKI.config.ssl.enabled === 'true' || WIKI.config.ssl.enabled === 1 || WIKI.config.ssl.enabled === '1'
  35. await WIKI.servers.initHTTP()
  36. if (useHTTPS) {
  37. await WIKI.servers.initHTTPS()
  38. }
  39. await WIKI.servers.initWebSocket()
  40. // ----------------------------------------
  41. // Attach WebSocket Server
  42. // ----------------------------------------
  43. ctrl.ws()
  44. // ----------------------------------------
  45. // Security
  46. // ----------------------------------------
  47. app.use(mw.security)
  48. app.use(cors({ origin: false }))
  49. app.options('*', cors({ origin: false }))
  50. if (WIKI.config.security.securityTrustProxy) {
  51. app.enable('trust proxy')
  52. }
  53. // ----------------------------------------
  54. // Public Assets
  55. // ----------------------------------------
  56. app.use(favicon(path.join(WIKI.ROOTPATH, 'assets', 'favicon.ico')))
  57. app.use('/_assets', express.static(path.join(WIKI.ROOTPATH, 'assets/_assets'), {
  58. index: false,
  59. maxAge: '7d'
  60. }))
  61. app.use('/_assets-legacy/svg/twemoji', async (req, res, next) => {
  62. try {
  63. WIKI.asar.serve('twemoji', req, res, next)
  64. } catch (err) {
  65. res.sendStatus(404)
  66. }
  67. })
  68. app.use('/_assets-legacy', express.static(path.join(WIKI.ROOTPATH, 'assets-legacy'), {
  69. index: false,
  70. maxAge: '7d'
  71. }))
  72. // ----------------------------------------
  73. // SSL Handlers
  74. // ----------------------------------------
  75. app.use('/', ctrl.ssl)
  76. // ----------------------------------------
  77. // Passport Authentication
  78. // ----------------------------------------
  79. app.use(cookieParser())
  80. app.use(session({
  81. secret: WIKI.config.auth.secret,
  82. resave: false,
  83. saveUninitialized: false,
  84. store: new KnexSessionStore({
  85. knex: WIKI.models.knex
  86. })
  87. }))
  88. app.use(WIKI.auth.passport.initialize())
  89. app.use(WIKI.auth.authenticate)
  90. // ----------------------------------------
  91. // GraphQL Server
  92. // ----------------------------------------
  93. app.use(bodyParser.json({ limit: WIKI.config.bodyParserLimit || '1mb' }))
  94. await WIKI.servers.startGraphQL()
  95. // ----------------------------------------
  96. // SEO
  97. // ----------------------------------------
  98. app.use(mw.seo)
  99. // ----------------------------------------
  100. // View Engine Setup
  101. // ----------------------------------------
  102. app.set('views', path.join(WIKI.SERVERPATH, 'views'))
  103. app.set('view engine', 'pug')
  104. app.use(bodyParser.urlencoded({ extended: false, limit: '1mb' }))
  105. // ----------------------------------------
  106. // View accessible data
  107. // ----------------------------------------
  108. app.locals.siteConfig = {}
  109. app.locals.analyticsCode = {}
  110. app.locals.basedir = WIKI.ROOTPATH
  111. app.locals.config = WIKI.config
  112. app.locals.pageMeta = {
  113. title: '',
  114. description: WIKI.config.description,
  115. image: '',
  116. url: '/'
  117. }
  118. app.locals.devMode = WIKI.devMode
  119. // ----------------------------------------
  120. // HMR (Dev Mode Only)
  121. // ----------------------------------------
  122. if (global.DEV) {
  123. app.use(global.WP_DEV.devMiddleware)
  124. app.use(global.WP_DEV.hotMiddleware)
  125. }
  126. // ----------------------------------------
  127. // Routing
  128. // ----------------------------------------
  129. app.use(async (req, res, next) => {
  130. const currentSite = await WIKI.models.sites.getSiteByHostname({ hostname: req.hostname })
  131. if (!currentSite) {
  132. return res.status(404).send('Site Not Found')
  133. }
  134. res.locals.siteConfig = {
  135. id: currentSite.id,
  136. title: currentSite.config.title,
  137. darkMode: currentSite.config.theme.dark,
  138. lang: currentSite.config.locale,
  139. rtl: false, // TODO: handle RTL
  140. company: currentSite.config.company,
  141. contentLicense: currentSite.config.contentLicense
  142. }
  143. res.locals.langs = await WIKI.models.locales.getNavLocales({ cache: true })
  144. res.locals.analyticsCode = await WIKI.models.analytics.getCode({ cache: true })
  145. next()
  146. })
  147. app.use('/', ctrl.auth)
  148. app.use('/', ctrl.upload)
  149. app.use('/', ctrl.common)
  150. // ----------------------------------------
  151. // Error handling
  152. // ----------------------------------------
  153. app.use((req, res, next) => {
  154. const err = new Error('Not Found')
  155. err.status = 404
  156. next(err)
  157. })
  158. app.use((err, req, res, next) => {
  159. if (req.path === '/_graphql') {
  160. res.status(err.status || 500).json({
  161. data: {},
  162. errors: [{
  163. message: err.message,
  164. path: []
  165. }]
  166. })
  167. } else {
  168. res.status(err.status || 500)
  169. _.set(res.locals, 'pageMeta.title', 'Error')
  170. res.render('error', {
  171. message: err.message,
  172. error: WIKI.IS_DEBUG ? err : {}
  173. })
  174. }
  175. })
  176. // ----------------------------------------
  177. // Start HTTP Server(s)
  178. // ----------------------------------------
  179. await WIKI.servers.startHTTP()
  180. if (useHTTPS) {
  181. await WIKI.servers.startHTTPS()
  182. }
  183. return true
  184. }