2018-01-05 14:15:32 +01:00
|
|
|
// FIXME: https://github.com/nodejs/node/pull/16853
|
2018-07-12 19:02:00 +02:00
|
|
|
import { VideosCaptionCache } from './server/lib/cache/videos-caption-cache'
|
|
|
|
|
2018-01-05 14:15:32 +01:00
|
|
|
require('tls').DEFAULT_ECDH_CURVE = 'auto'
|
|
|
|
|
2017-06-11 15:19:43 +02:00
|
|
|
import { isTestInstance } from './server/helpers/core-utils'
|
|
|
|
|
|
|
|
if (isTestInstance()) {
|
2017-05-22 20:58:25 +02:00
|
|
|
require('source-map-support').install()
|
|
|
|
}
|
|
|
|
|
2016-02-07 11:47:30 +01:00
|
|
|
// ----------- Node modules -----------
|
2017-06-05 21:53:49 +02:00
|
|
|
import * as bodyParser from 'body-parser'
|
|
|
|
import * as express from 'express'
|
|
|
|
import * as morgan from 'morgan'
|
2017-06-11 15:19:43 +02:00
|
|
|
import * as cors from 'cors'
|
2018-06-28 13:59:48 +02:00
|
|
|
import * as cookieParser from 'cookie-parser'
|
2018-07-16 09:02:08 +02:00
|
|
|
import * as helmet from 'helmet'
|
2016-02-07 11:47:30 +01:00
|
|
|
|
2016-10-21 14:23:20 +02:00
|
|
|
process.title = 'peertube'
|
|
|
|
|
2016-02-07 11:47:30 +01:00
|
|
|
// Create our main app
|
2016-03-21 21:13:10 +01:00
|
|
|
const app = express()
|
2016-02-07 11:47:30 +01:00
|
|
|
|
2017-08-26 09:17:20 +02:00
|
|
|
// ----------- Core checker -----------
|
2018-06-21 18:29:28 +02:00
|
|
|
import { checkMissedConfig, checkFFmpeg, checkConfig, checkActivityPubUrls } from './server/initializers/checker'
|
2016-07-01 16:03:53 +02:00
|
|
|
|
2018-03-26 15:54:13 +02:00
|
|
|
// Do not use barrels because we don't want to load all modules here (we need to initialize database first)
|
|
|
|
import { logger } from './server/helpers/logger'
|
2018-07-17 18:44:47 +02:00
|
|
|
import { API_VERSION, CONFIG, STATIC_PATHS, CACHE, REMOTE_SCHEME } from './server/initializers/constants'
|
2018-03-26 15:54:13 +02:00
|
|
|
|
2017-05-15 22:22:03 +02:00
|
|
|
const missed = checkMissedConfig()
|
2016-11-01 19:46:07 +01:00
|
|
|
if (missed.length !== 0) {
|
2018-03-26 15:54:13 +02:00
|
|
|
logger.error('Your configuration files miss keys: ' + missed)
|
|
|
|
process.exit(-1)
|
2016-11-01 19:46:07 +01:00
|
|
|
}
|
2017-08-26 09:17:20 +02:00
|
|
|
|
|
|
|
checkFFmpeg(CONFIG)
|
2018-03-26 15:54:13 +02:00
|
|
|
.catch(err => {
|
|
|
|
logger.error('Error in ffmpeg check.', { err })
|
|
|
|
process.exit(-1)
|
|
|
|
})
|
2016-11-01 19:46:07 +01:00
|
|
|
|
2017-05-15 22:22:03 +02:00
|
|
|
const errorMessage = checkConfig()
|
2016-11-01 19:46:07 +01:00
|
|
|
if (errorMessage !== null) {
|
|
|
|
throw new Error(errorMessage)
|
2016-07-01 16:03:53 +02:00
|
|
|
}
|
|
|
|
|
2018-03-29 10:58:24 +02:00
|
|
|
// Trust our proxy (IP forwarding...)
|
|
|
|
app.set('trust proxy', CONFIG.TRUST_PROXY)
|
|
|
|
|
2018-07-19 16:17:54 +02:00
|
|
|
// Security middleware
|
2018-07-16 09:02:08 +02:00
|
|
|
app.use(helmet({
|
|
|
|
frameguard: {
|
2018-07-17 11:37:25 +02:00
|
|
|
action: 'deny' // we only allow it for /videos/embed, see server/controllers/client.ts
|
|
|
|
},
|
|
|
|
dnsPrefetchControl: {
|
|
|
|
allow: true
|
|
|
|
},
|
|
|
|
contentSecurityPolicy: {
|
|
|
|
directives: {
|
2018-07-17 18:44:47 +02:00
|
|
|
defaultSrc: ['*', 'data:', REMOTE_SCHEME.WS + ':', REMOTE_SCHEME.HTTP + ':'],
|
2018-07-17 16:36:07 +02:00
|
|
|
fontSrc: ["'self'", 'data:'],
|
2018-07-17 11:37:25 +02:00
|
|
|
frameSrc: ["'none'"],
|
2018-07-17 18:44:47 +02:00
|
|
|
mediaSrc: ['*', REMOTE_SCHEME.HTTP + ':'],
|
2018-07-17 11:37:25 +02:00
|
|
|
objectSrc: ["'none'"],
|
2018-07-17 16:36:07 +02:00
|
|
|
scriptSrc: ["'self'", "'unsafe-inline'", "'unsafe-eval'"],
|
|
|
|
styleSrc: ["'self'", "'unsafe-inline'"],
|
2018-07-17 18:44:47 +02:00
|
|
|
upgradeInsecureRequests: false
|
2018-07-17 11:37:25 +02:00
|
|
|
},
|
|
|
|
browserSniff: false // assumes a modern browser, but allows CDN in front
|
|
|
|
},
|
|
|
|
referrerPolicy: {
|
|
|
|
policy: 'strict-origin-when-cross-origin'
|
2018-07-16 09:02:08 +02:00
|
|
|
}
|
|
|
|
}))
|
2018-07-17 16:36:07 +02:00
|
|
|
app.use((_, res, next) => {
|
|
|
|
[
|
|
|
|
"vibrate 'none'",
|
|
|
|
"geolocation 'none'",
|
|
|
|
"camera 'none'",
|
|
|
|
"microphone 'none'",
|
|
|
|
"magnetometer 'none'",
|
|
|
|
"payment 'none'",
|
|
|
|
"accelerometer 'none'"
|
|
|
|
].forEach(e => res.append('Feature-Policy', e + ';'))
|
|
|
|
next()
|
|
|
|
})
|
2018-07-16 09:02:08 +02:00
|
|
|
|
2017-08-26 09:17:20 +02:00
|
|
|
// ----------- Database -----------
|
2017-12-13 17:46:23 +01:00
|
|
|
|
2017-08-26 09:17:20 +02:00
|
|
|
// Initialize database and models
|
2017-12-13 17:46:23 +01:00
|
|
|
import { initDatabaseModels } from './server/initializers/database'
|
|
|
|
import { migrate } from './server/initializers/migrator'
|
|
|
|
migrate()
|
|
|
|
.then(() => initDatabaseModels(false))
|
2018-04-04 11:04:14 +02:00
|
|
|
.then(() => startApplication())
|
|
|
|
.catch(err => {
|
|
|
|
logger.error('Cannot start application.', { err })
|
|
|
|
process.exit(-1)
|
|
|
|
})
|
2017-08-26 09:17:20 +02:00
|
|
|
|
2016-06-28 20:10:32 +02:00
|
|
|
// ----------- PeerTube modules -----------
|
2017-12-13 17:46:23 +01:00
|
|
|
import { installApplication } from './server/initializers'
|
2018-01-30 13:27:07 +01:00
|
|
|
import { Emailer } from './server/lib/emailer'
|
2018-01-25 15:05:18 +01:00
|
|
|
import { JobQueue } from './server/lib/job-queue'
|
2017-12-14 17:38:41 +01:00
|
|
|
import { VideosPreviewCache } from './server/lib/cache'
|
2018-04-17 00:49:04 +02:00
|
|
|
import {
|
|
|
|
activityPubRouter,
|
|
|
|
apiRouter,
|
|
|
|
clientsRouter,
|
|
|
|
feedsRouter,
|
|
|
|
staticRouter,
|
|
|
|
servicesRouter,
|
2018-06-26 16:53:24 +02:00
|
|
|
webfingerRouter,
|
|
|
|
trackerRouter,
|
|
|
|
createWebsocketServer
|
2018-04-17 00:49:04 +02:00
|
|
|
} from './server/controllers'
|
2018-01-30 13:27:07 +01:00
|
|
|
import { Redis } from './server/lib/redis'
|
2018-01-11 09:35:50 +01:00
|
|
|
import { BadActorFollowScheduler } from './server/lib/schedulers/bad-actor-follow-scheduler'
|
2018-01-25 15:05:18 +01:00
|
|
|
import { RemoveOldJobsScheduler } from './server/lib/schedulers/remove-old-jobs-scheduler'
|
2018-06-14 18:06:56 +02:00
|
|
|
import { UpdateVideosScheduler } from './server/lib/schedulers/update-videos-scheduler'
|
2016-02-07 11:47:30 +01:00
|
|
|
|
|
|
|
// ----------- Command line -----------
|
|
|
|
|
|
|
|
// ----------- App -----------
|
|
|
|
|
2018-06-29 05:23:26 +02:00
|
|
|
// Enable CORS for develop
|
|
|
|
if (isTestInstance()) {
|
2018-07-17 15:04:54 +02:00
|
|
|
app.use(cors({
|
|
|
|
origin: '*',
|
|
|
|
exposedHeaders: 'Retry-After',
|
|
|
|
credentials: true
|
|
|
|
}))
|
2018-06-29 05:23:26 +02:00
|
|
|
}
|
2017-06-11 15:19:43 +02:00
|
|
|
|
2016-02-07 11:47:30 +01:00
|
|
|
// For the logger
|
2017-05-22 20:58:25 +02:00
|
|
|
app.use(morgan('combined', {
|
2018-01-19 13:58:13 +01:00
|
|
|
stream: { write: logger.info.bind(logger) }
|
2017-05-22 20:58:25 +02:00
|
|
|
}))
|
2016-02-07 11:47:30 +01:00
|
|
|
// For body requests
|
2018-03-26 11:49:44 +02:00
|
|
|
app.use(bodyParser.urlencoded({ extended: false }))
|
2017-11-29 11:34:44 +01:00
|
|
|
app.use(bodyParser.json({
|
2017-11-29 13:18:05 +01:00
|
|
|
type: [ 'application/json', 'application/*+json' ],
|
2017-11-29 11:34:44 +01:00
|
|
|
limit: '500kb'
|
|
|
|
}))
|
2018-06-28 13:59:48 +02:00
|
|
|
// Cookies
|
|
|
|
app.use(cookieParser())
|
2016-02-07 11:47:30 +01:00
|
|
|
|
2017-10-19 14:58:28 +02:00
|
|
|
// ----------- Views, routes and static files -----------
|
|
|
|
|
|
|
|
// API
|
|
|
|
const apiRoute = '/api/' + API_VERSION
|
|
|
|
app.use(apiRoute, apiRouter)
|
|
|
|
|
|
|
|
// Services (oembed...)
|
|
|
|
app.use('/services', servicesRouter)
|
|
|
|
|
2017-11-14 17:31:26 +01:00
|
|
|
app.use('/', activityPubRouter)
|
2018-04-17 00:49:04 +02:00
|
|
|
app.use('/', feedsRouter)
|
|
|
|
app.use('/', webfingerRouter)
|
2018-06-26 16:53:24 +02:00
|
|
|
app.use('/', trackerRouter)
|
2017-11-14 17:31:26 +01:00
|
|
|
|
2017-10-19 14:58:28 +02:00
|
|
|
// Static files
|
|
|
|
app.use('/', staticRouter)
|
|
|
|
|
2018-05-31 18:12:15 +02:00
|
|
|
// Client files, last valid routes!
|
|
|
|
app.use('/', clientsRouter)
|
2017-10-19 14:58:28 +02:00
|
|
|
|
2016-02-07 11:47:30 +01:00
|
|
|
// ----------- Errors -----------
|
|
|
|
|
|
|
|
// Catch 404 and forward to error handler
|
|
|
|
app.use(function (req, res, next) {
|
2016-03-21 21:13:10 +01:00
|
|
|
const err = new Error('Not Found')
|
2017-05-15 22:22:03 +02:00
|
|
|
err['status'] = 404
|
2016-02-07 11:47:30 +01:00
|
|
|
next(err)
|
|
|
|
})
|
|
|
|
|
2016-03-07 14:48:46 +01:00
|
|
|
app.use(function (err, req, res, next) {
|
2018-02-14 15:33:49 +01:00
|
|
|
let error = 'Unknown error.'
|
|
|
|
if (err) {
|
|
|
|
error = err.stack || err.message || err
|
|
|
|
}
|
|
|
|
|
|
|
|
logger.error('Error in controller.', { error })
|
|
|
|
return res.status(err.status || 500).end()
|
2016-03-07 14:48:46 +01:00
|
|
|
})
|
2016-02-07 11:47:30 +01:00
|
|
|
|
2018-06-26 16:53:24 +02:00
|
|
|
const server = createWebsocketServer(app)
|
|
|
|
|
2016-11-25 12:32:21 +01:00
|
|
|
// ----------- Run -----------
|
|
|
|
|
2018-04-04 11:04:14 +02:00
|
|
|
async function startApplication () {
|
2017-05-15 22:22:03 +02:00
|
|
|
const port = CONFIG.LISTEN.PORT
|
2018-04-17 11:14:32 +02:00
|
|
|
const hostname = CONFIG.LISTEN.HOSTNAME
|
2017-12-13 17:46:23 +01:00
|
|
|
|
2018-04-04 11:04:14 +02:00
|
|
|
await installApplication()
|
|
|
|
|
2018-06-21 18:29:28 +02:00
|
|
|
// Check activity pub urls are valid
|
|
|
|
checkActivityPubUrls()
|
|
|
|
.catch(err => {
|
|
|
|
logger.error('Error in ActivityPub URLs checker.', { err })
|
|
|
|
process.exit(-1)
|
|
|
|
})
|
|
|
|
|
2018-04-04 11:04:14 +02:00
|
|
|
// Email initialization
|
|
|
|
Emailer.Instance.init()
|
|
|
|
await Emailer.Instance.checkConnectionOrDie()
|
|
|
|
|
|
|
|
await JobQueue.Instance.init()
|
|
|
|
|
|
|
|
// Caches initializations
|
2018-07-16 14:22:16 +02:00
|
|
|
VideosPreviewCache.Instance.init(CONFIG.CACHE.PREVIEWS.SIZE, CACHE.PREVIEWS.MAX_AGE)
|
|
|
|
VideosCaptionCache.Instance.init(CONFIG.CACHE.VIDEO_CAPTIONS.SIZE, CACHE.VIDEO_CAPTIONS.MAX_AGE)
|
2018-04-04 11:04:14 +02:00
|
|
|
|
|
|
|
// Enable Schedulers
|
|
|
|
BadActorFollowScheduler.Instance.enable()
|
|
|
|
RemoveOldJobsScheduler.Instance.enable()
|
2018-06-14 18:06:56 +02:00
|
|
|
UpdateVideosScheduler.Instance.enable()
|
2018-04-04 11:04:14 +02:00
|
|
|
|
|
|
|
// Redis initialization
|
|
|
|
Redis.Instance.init()
|
|
|
|
|
|
|
|
// Make server listening
|
2018-04-18 16:04:49 +02:00
|
|
|
server.listen(port, hostname, () => {
|
|
|
|
logger.info('Server listening on %s:%d', hostname, port)
|
|
|
|
logger.info('Web server: %s', CONFIG.WEBSERVER.URL)
|
|
|
|
})
|
2017-02-18 11:56:28 +01:00
|
|
|
}
|