|
| 1 | +'use strict'; |
| 2 | + |
| 3 | +let config = require('config'); |
| 4 | +let log = require('npmlog'); |
| 5 | + |
| 6 | +let express = require('express'); |
| 7 | +let bodyParser = require('body-parser'); |
| 8 | +let path = require('path'); |
| 9 | +let favicon = require('serve-favicon'); |
| 10 | +let logger = require('morgan'); |
| 11 | +let cookieParser = require('cookie-parser'); |
| 12 | +let session = require('express-session'); |
| 13 | +let RedisStore = require('connect-redis')(session); |
| 14 | +let flash = require('connect-flash'); |
| 15 | +let hbs = require('hbs'); |
| 16 | +let compression = require('compression'); |
| 17 | +let auth = require('basic-auth'); |
| 18 | +let urllib = require('url'); |
| 19 | +const humanize = require('humanize'); |
| 20 | + |
| 21 | +let routes = require('./routes/index'); |
| 22 | + |
| 23 | +let app = express(); |
| 24 | + |
| 25 | +// view engine setup |
| 26 | +app.set('views', path.join(__dirname, 'views')); |
| 27 | +app.set('view engine', 'hbs'); |
| 28 | + |
| 29 | +// Handle proxies. Needed to resolve client IP |
| 30 | +if (config.proxy) { |
| 31 | + app.set('trust proxy', config.proxy); |
| 32 | +} |
| 33 | + |
| 34 | +// Do not expose software used |
| 35 | +app.disable('x-powered-by'); |
| 36 | + |
| 37 | +/** |
| 38 | + * We need this helper to make sure that we consume flash messages only |
| 39 | + * when we are able to actually display these. Otherwise we might end up |
| 40 | + * in a situation where we consume a flash messages but then comes a redirect |
| 41 | + * and the message is never displayed |
| 42 | + */ |
| 43 | +hbs.registerHelper('flash_messages', function () { // eslint-disable-line prefer-arrow-callback |
| 44 | + if (typeof this.flash !== 'function') { // eslint-disable-line no-invalid-this |
| 45 | + return ''; |
| 46 | + } |
| 47 | + |
| 48 | + let messages = this.flash(); // eslint-disable-line no-invalid-this |
| 49 | + let response = []; |
| 50 | + |
| 51 | + // group messages by type |
| 52 | + Object.keys(messages).forEach(key => { |
| 53 | + let el = '<div class="alert alert-' + key + ' alert-dismissible" role="alert"><button type="button" class="close" data-dismiss="alert" aria-label="Close"><span aria-hidden="true">×</span></button>'; |
| 54 | + |
| 55 | + if (key === 'danger') { |
| 56 | + el += '<span class="glyphicon glyphicon-exclamation-sign" aria-hidden="true"></span> '; |
| 57 | + } |
| 58 | + |
| 59 | + let rows = []; |
| 60 | + |
| 61 | + messages[key].forEach(message => { |
| 62 | + rows.push(hbs.handlebars.escapeExpression(message)); |
| 63 | + }); |
| 64 | + |
| 65 | + if (rows.length > 1) { |
| 66 | + el += '<p>' + rows.join('</p>\n<p>') + '</p>'; |
| 67 | + } else { |
| 68 | + el += rows.join(''); |
| 69 | + } |
| 70 | + |
| 71 | + el += '</div>'; |
| 72 | + |
| 73 | + response.push(el); |
| 74 | + }); |
| 75 | + |
| 76 | + return new hbs.handlebars.SafeString( |
| 77 | + response.join('\n') |
| 78 | + ); |
| 79 | +}); |
| 80 | + |
| 81 | +hbs.registerHelper('num', function (options) { // eslint-disable-line prefer-arrow-callback |
| 82 | + return new hbs.handlebars.SafeString( |
| 83 | + humanize.numberFormat(options.fn(this), 0, ',', ' ') // eslint-disable-line no-invalid-this |
| 84 | + ); |
| 85 | +}); |
| 86 | + |
| 87 | +hbs.registerHelper('dec', function (options) { // eslint-disable-line prefer-arrow-callback |
| 88 | + return new hbs.handlebars.SafeString( |
| 89 | + humanize.numberFormat(options.fn(this), 3, ',', ' ') // eslint-disable-line no-invalid-this |
| 90 | + ); |
| 91 | +}); |
| 92 | + |
| 93 | +app.use(compression()); |
| 94 | +app.use(favicon(path.join(__dirname, 'public', 'favicon.ico'))); |
| 95 | + |
| 96 | +app.use(logger(config.httplog, { |
| 97 | + stream: { |
| 98 | + write: message => { |
| 99 | + message = (message || '').toString(); |
| 100 | + if (message && process.NODE_ENV !== 'production') { |
| 101 | + log.info('HTTP', message.replace('\n', '').trim()); |
| 102 | + } |
| 103 | + } |
| 104 | + } |
| 105 | +})); |
| 106 | + |
| 107 | +app.use(cookieParser()); |
| 108 | +app.use(express.static(path.join(__dirname, 'public'))); |
| 109 | + |
| 110 | +app.use(session({ |
| 111 | + store: new RedisStore(config.redis), |
| 112 | + secret: config.secret, |
| 113 | + saveUninitialized: false, |
| 114 | + resave: false |
| 115 | +})); |
| 116 | +app.use(flash()); |
| 117 | + |
| 118 | +app.use(bodyParser.urlencoded({ |
| 119 | + extended: true, |
| 120 | + limit: config.maxPostSize |
| 121 | +})); |
| 122 | + |
| 123 | +app.use(bodyParser.text({ |
| 124 | + limit: config.maxPostSize |
| 125 | +})); |
| 126 | + |
| 127 | +app.use(bodyParser.json({ |
| 128 | + limit: config.maxPostSize |
| 129 | +})); |
| 130 | + |
| 131 | +// make sure flash messages are available |
| 132 | +app.use((req, res, next) => { |
| 133 | + res.locals.flash = req.flash.bind(req); |
| 134 | + |
| 135 | + let menu = [ |
| 136 | + /*{ |
| 137 | + title: 'Home', |
| 138 | + url: '/', |
| 139 | + selected: true |
| 140 | + }*/ |
| 141 | + ]; |
| 142 | + |
| 143 | + res.setSelectedMenu = key => { |
| 144 | + menu.forEach(item => { |
| 145 | + item.selected = (item.key === key); |
| 146 | + }); |
| 147 | + }; |
| 148 | + |
| 149 | + res.locals.menu = menu; |
| 150 | + |
| 151 | + next(); |
| 152 | +}); |
| 153 | + |
| 154 | +// setup HTTP auth |
| 155 | +app.use((req, res, next) => { |
| 156 | + if (!config.auth) { |
| 157 | + return next(); |
| 158 | + } |
| 159 | + let credentials = auth(req); |
| 160 | + if (!credentials || credentials.name !== config.user || credentials.pass !== config.pass) { |
| 161 | + res.statusCode = 401; |
| 162 | + res.setHeader('WWW-Authenticate', 'Basic realm="example"'); |
| 163 | + res.end('Access denied'); |
| 164 | + } else { |
| 165 | + next(); |
| 166 | + } |
| 167 | +}); |
| 168 | + |
| 169 | +app.use('/', routes); |
| 170 | + |
| 171 | +app.use((err, req, res, next) => { |
| 172 | + if (!err) { |
| 173 | + return next(); |
| 174 | + } |
| 175 | + res.status(err.statusCode || 500); |
| 176 | + res.render('error', { |
| 177 | + message: err.message, |
| 178 | + error: err |
| 179 | + }); |
| 180 | +}); |
| 181 | + |
| 182 | +module.exports = app; |
0 commit comments