2017-05-15 22:22:03 +02:00
|
|
|
import { values } from 'lodash'
|
2017-06-05 21:53:49 +02:00
|
|
|
import * as validator from 'validator'
|
2017-10-10 10:02:18 +02:00
|
|
|
import * as Promise from 'bluebird'
|
|
|
|
import * as express from 'express'
|
2017-09-07 15:27:35 +02:00
|
|
|
import 'express-validator'
|
2017-06-11 15:19:43 +02:00
|
|
|
import 'multer'
|
2017-05-15 22:22:03 +02:00
|
|
|
|
|
|
|
import {
|
|
|
|
CONSTRAINTS_FIELDS,
|
|
|
|
VIDEO_CATEGORIES,
|
|
|
|
VIDEO_LICENCES,
|
|
|
|
VIDEO_LANGUAGES,
|
2017-10-10 10:02:18 +02:00
|
|
|
VIDEO_RATE_TYPES,
|
2017-10-31 11:52:52 +01:00
|
|
|
VIDEO_PRIVACIES,
|
2017-10-10 10:02:18 +02:00
|
|
|
database as db
|
2017-05-15 22:22:03 +02:00
|
|
|
} from '../../initializers'
|
|
|
|
import { isUserUsernameValid } from './users'
|
2017-06-10 22:15:25 +02:00
|
|
|
import { isArray, exists } from './misc'
|
2017-10-10 10:02:18 +02:00
|
|
|
import { VideoInstance } from '../../models'
|
|
|
|
import { logger } from '../../helpers'
|
2017-06-16 10:36:18 +02:00
|
|
|
import { VideoRateType } from '../../../shared'
|
2017-11-14 10:57:56 +01:00
|
|
|
import { isActivityPubUrlValid } from './activitypub/misc'
|
2017-05-15 22:22:03 +02:00
|
|
|
|
|
|
|
const VIDEOS_CONSTRAINTS_FIELDS = CONSTRAINTS_FIELDS.VIDEOS
|
|
|
|
const VIDEO_ABUSES_CONSTRAINTS_FIELDS = CONSTRAINTS_FIELDS.VIDEO_ABUSES
|
|
|
|
const VIDEO_EVENTS_CONSTRAINTS_FIELDS = CONSTRAINTS_FIELDS.VIDEO_EVENTS
|
2015-12-04 16:13:32 +01:00
|
|
|
|
2017-06-10 22:15:25 +02:00
|
|
|
function isVideoCategoryValid (value: number) {
|
2017-05-15 22:22:03 +02:00
|
|
|
return VIDEO_CATEGORIES[value] !== undefined
|
2017-03-22 21:15:55 +01:00
|
|
|
}
|
|
|
|
|
2017-10-26 10:40:37 +02:00
|
|
|
// Maybe we don't know the remote category, but that doesn't matter
|
|
|
|
function isRemoteVideoCategoryValid (value: string) {
|
|
|
|
return validator.isInt('' + value)
|
|
|
|
}
|
|
|
|
|
2017-11-14 10:57:56 +01:00
|
|
|
function isVideoUrlValid (value: string) {
|
|
|
|
return isActivityPubUrlValid(value)
|
|
|
|
}
|
|
|
|
|
2017-06-10 22:15:25 +02:00
|
|
|
function isVideoLicenceValid (value: number) {
|
2017-05-15 22:22:03 +02:00
|
|
|
return VIDEO_LICENCES[value] !== undefined
|
2017-03-27 20:53:11 +02:00
|
|
|
}
|
|
|
|
|
2017-10-31 11:52:52 +01:00
|
|
|
function isVideoPrivacyValid (value: string) {
|
|
|
|
return VIDEO_PRIVACIES[value] !== undefined
|
|
|
|
}
|
|
|
|
|
|
|
|
// Maybe we don't know the remote privacy setting, but that doesn't matter
|
|
|
|
function isRemoteVideoPrivacyValid (value: string) {
|
|
|
|
return validator.isInt('' + value)
|
|
|
|
}
|
|
|
|
|
2017-10-26 10:40:37 +02:00
|
|
|
// Maybe we don't know the remote licence, but that doesn't matter
|
|
|
|
function isRemoteVideoLicenceValid (value: string) {
|
|
|
|
return validator.isInt('' + value)
|
|
|
|
}
|
|
|
|
|
2017-06-10 22:15:25 +02:00
|
|
|
function isVideoLanguageValid (value: number) {
|
2017-05-15 22:22:03 +02:00
|
|
|
return value === null || VIDEO_LANGUAGES[value] !== undefined
|
2017-04-07 12:13:37 +02:00
|
|
|
}
|
|
|
|
|
2017-10-26 10:40:37 +02:00
|
|
|
// Maybe we don't know the remote language, but that doesn't matter
|
|
|
|
function isRemoteVideoLanguageValid (value: string) {
|
|
|
|
return validator.isInt('' + value)
|
|
|
|
}
|
|
|
|
|
2017-06-10 22:15:25 +02:00
|
|
|
function isVideoNSFWValid (value: any) {
|
|
|
|
return typeof value === 'boolean' || (typeof value === 'string' && validator.isBoolean(value))
|
2017-03-28 21:19:46 +02:00
|
|
|
}
|
|
|
|
|
2017-10-30 10:16:27 +01:00
|
|
|
function isVideoTruncatedDescriptionValid (value: string) {
|
|
|
|
return exists(value) && validator.isLength(value, VIDEOS_CONSTRAINTS_FIELDS.TRUNCATED_DESCRIPTION)
|
|
|
|
}
|
|
|
|
|
2017-06-10 22:15:25 +02:00
|
|
|
function isVideoDescriptionValid (value: string) {
|
|
|
|
return exists(value) && validator.isLength(value, VIDEOS_CONSTRAINTS_FIELDS.DESCRIPTION)
|
2016-06-06 14:15:03 +02:00
|
|
|
}
|
|
|
|
|
2017-06-10 22:15:25 +02:00
|
|
|
function isVideoDurationValid (value: string) {
|
2017-11-10 14:34:45 +01:00
|
|
|
// https://www.w3.org/TR/activitystreams-vocabulary/#dfn-duration
|
|
|
|
return exists(value) &&
|
|
|
|
typeof value === 'string' &&
|
|
|
|
value.startsWith('PT') &&
|
|
|
|
value.endsWith('S') &&
|
|
|
|
validator.isInt(value.replace(/[^0-9]+/, ''), VIDEOS_CONSTRAINTS_FIELDS.DURATION)
|
2016-06-06 14:15:03 +02:00
|
|
|
}
|
|
|
|
|
2017-06-10 22:15:25 +02:00
|
|
|
function isVideoNameValid (value: string) {
|
|
|
|
return exists(value) && validator.isLength(value, VIDEOS_CONSTRAINTS_FIELDS.NAME)
|
2016-06-06 14:15:03 +02:00
|
|
|
}
|
|
|
|
|
2017-11-10 14:34:45 +01:00
|
|
|
function isVideoTagValid (tag: string) {
|
|
|
|
return exists(tag) && validator.isLength(tag, VIDEOS_CONSTRAINTS_FIELDS.TAG)
|
|
|
|
}
|
|
|
|
|
2017-06-10 22:15:25 +02:00
|
|
|
function isVideoTagsValid (tags: string[]) {
|
2017-05-15 22:22:03 +02:00
|
|
|
return isArray(tags) &&
|
2017-06-10 22:15:25 +02:00
|
|
|
validator.isInt(tags.length.toString(), VIDEOS_CONSTRAINTS_FIELDS.TAGS) &&
|
2017-11-10 14:34:45 +01:00
|
|
|
tags.every(tag => isVideoTagValid(tag))
|
2016-06-06 14:15:03 +02:00
|
|
|
}
|
|
|
|
|
2017-06-10 22:15:25 +02:00
|
|
|
function isVideoThumbnailValid (value: string) {
|
|
|
|
return exists(value) && validator.isLength(value, VIDEOS_CONSTRAINTS_FIELDS.THUMBNAIL)
|
2016-06-24 17:42:51 +02:00
|
|
|
}
|
|
|
|
|
2017-06-10 22:15:25 +02:00
|
|
|
function isVideoThumbnailDataValid (value: string) {
|
|
|
|
return exists(value) && validator.isByteLength(value, VIDEOS_CONSTRAINTS_FIELDS.THUMBNAIL_DATA)
|
2016-06-06 14:15:03 +02:00
|
|
|
}
|
|
|
|
|
2017-06-10 22:15:25 +02:00
|
|
|
function isVideoAbuseReasonValid (value: string) {
|
|
|
|
return exists(value) && validator.isLength(value, VIDEO_ABUSES_CONSTRAINTS_FIELDS.REASON)
|
2016-07-31 20:58:43 +02:00
|
|
|
}
|
|
|
|
|
2017-06-10 22:15:25 +02:00
|
|
|
function isVideoAbuseReporterUsernameValid (value: string) {
|
2017-05-15 22:22:03 +02:00
|
|
|
return isUserUsernameValid(value)
|
2016-12-30 11:27:42 +01:00
|
|
|
}
|
|
|
|
|
2017-06-10 22:15:25 +02:00
|
|
|
function isVideoViewsValid (value: string) {
|
|
|
|
return exists(value) && validator.isInt(value + '', VIDEOS_CONSTRAINTS_FIELDS.VIEWS)
|
2017-02-21 21:35:59 +01:00
|
|
|
}
|
|
|
|
|
2017-06-10 22:15:25 +02:00
|
|
|
function isVideoLikesValid (value: string) {
|
|
|
|
return exists(value) && validator.isInt(value + '', VIDEOS_CONSTRAINTS_FIELDS.LIKES)
|
2017-02-21 21:35:59 +01:00
|
|
|
}
|
|
|
|
|
2017-06-10 22:15:25 +02:00
|
|
|
function isVideoDislikesValid (value: string) {
|
|
|
|
return exists(value) && validator.isInt(value + '', VIDEOS_CONSTRAINTS_FIELDS.DISLIKES)
|
2017-02-26 18:57:33 +01:00
|
|
|
}
|
|
|
|
|
2017-06-10 22:15:25 +02:00
|
|
|
function isVideoEventCountValid (value: string) {
|
|
|
|
return exists(value) && validator.isInt(value + '', VIDEO_EVENTS_CONSTRAINTS_FIELDS.COUNT)
|
2017-02-21 21:35:59 +01:00
|
|
|
}
|
|
|
|
|
2017-06-10 22:15:25 +02:00
|
|
|
function isVideoRatingTypeValid (value: string) {
|
2017-06-16 10:36:18 +02:00
|
|
|
return values(VIDEO_RATE_TYPES).indexOf(value as VideoRateType) !== -1
|
2017-03-08 21:35:43 +01:00
|
|
|
}
|
|
|
|
|
2017-09-15 12:17:08 +02:00
|
|
|
function isVideoFile (files: { [ fieldname: string ]: Express.Multer.File[] } | Express.Multer.File[]) {
|
2017-02-10 11:27:14 +01:00
|
|
|
// Should have files
|
|
|
|
if (!files) return false
|
2017-09-15 12:17:08 +02:00
|
|
|
if (isArray(files)) return false
|
2017-02-10 11:27:14 +01:00
|
|
|
|
|
|
|
// Should have videofile file
|
2017-09-15 12:17:08 +02:00
|
|
|
const videofile = files['videofile']
|
2017-02-10 11:27:14 +01:00
|
|
|
if (!videofile || videofile.length === 0) return false
|
|
|
|
|
|
|
|
// The file should exist
|
|
|
|
const file = videofile[0]
|
|
|
|
if (!file || !file.originalname) return false
|
|
|
|
|
|
|
|
return new RegExp('^video/(webm|mp4|ogg)$', 'i').test(file.mimetype)
|
|
|
|
}
|
|
|
|
|
2017-08-25 11:36:23 +02:00
|
|
|
function isVideoFileSizeValid (value: string) {
|
|
|
|
return exists(value) && validator.isInt(value + '', VIDEOS_CONSTRAINTS_FIELDS.FILE_SIZE)
|
|
|
|
}
|
|
|
|
|
|
|
|
function isVideoFileResolutionValid (value: string) {
|
2017-10-09 11:06:13 +02:00
|
|
|
return exists(value) && validator.isInt(value + '')
|
2017-08-25 11:36:23 +02:00
|
|
|
}
|
|
|
|
|
|
|
|
function isVideoFileExtnameValid (value: string) {
|
|
|
|
return VIDEOS_CONSTRAINTS_FIELDS.EXTNAME.indexOf(value) !== -1
|
|
|
|
}
|
|
|
|
|
|
|
|
function isVideoFileInfoHashValid (value: string) {
|
|
|
|
return exists(value) && validator.isLength(value, VIDEOS_CONSTRAINTS_FIELDS.INFO_HASH)
|
|
|
|
}
|
|
|
|
|
2017-10-10 10:02:18 +02:00
|
|
|
function checkVideoExists (id: string, res: express.Response, callback: () => void) {
|
|
|
|
let promise: Promise<VideoInstance>
|
|
|
|
if (validator.isInt(id)) {
|
2017-11-10 14:48:08 +01:00
|
|
|
promise = db.Video.loadAndPopulateAccountAndPodAndTags(+id)
|
2017-10-10 10:02:18 +02:00
|
|
|
} else { // UUID
|
2017-11-10 14:48:08 +01:00
|
|
|
promise = db.Video.loadByUUIDAndPopulateAccountAndPodAndTags(id)
|
2017-10-10 10:02:18 +02:00
|
|
|
}
|
|
|
|
|
|
|
|
promise.then(video => {
|
|
|
|
if (!video) {
|
|
|
|
return res.status(404)
|
|
|
|
.json({ error: 'Video not found' })
|
|
|
|
.end()
|
|
|
|
}
|
|
|
|
|
|
|
|
res.locals.video = video
|
|
|
|
callback()
|
|
|
|
})
|
|
|
|
.catch(err => {
|
|
|
|
logger.error('Error in video request validator.', err)
|
|
|
|
return res.sendStatus(500)
|
|
|
|
})
|
|
|
|
}
|
|
|
|
|
2017-01-04 20:59:23 +01:00
|
|
|
// ---------------------------------------------------------------------------
|
|
|
|
|
2017-05-15 22:22:03 +02:00
|
|
|
export {
|
|
|
|
isVideoCategoryValid,
|
|
|
|
isVideoLicenceValid,
|
|
|
|
isVideoLanguageValid,
|
|
|
|
isVideoNSFWValid,
|
2017-10-30 10:16:27 +01:00
|
|
|
isVideoTruncatedDescriptionValid,
|
2017-05-15 22:22:03 +02:00
|
|
|
isVideoDescriptionValid,
|
|
|
|
isVideoDurationValid,
|
2017-08-25 11:36:23 +02:00
|
|
|
isVideoFileInfoHashValid,
|
2017-05-15 22:22:03 +02:00
|
|
|
isVideoNameValid,
|
|
|
|
isVideoTagsValid,
|
|
|
|
isVideoThumbnailValid,
|
|
|
|
isVideoThumbnailDataValid,
|
2017-08-25 11:36:23 +02:00
|
|
|
isVideoFileExtnameValid,
|
2017-05-15 22:22:03 +02:00
|
|
|
isVideoAbuseReasonValid,
|
|
|
|
isVideoAbuseReporterUsernameValid,
|
|
|
|
isVideoFile,
|
|
|
|
isVideoViewsValid,
|
|
|
|
isVideoLikesValid,
|
|
|
|
isVideoRatingTypeValid,
|
|
|
|
isVideoDislikesValid,
|
2017-08-25 11:36:23 +02:00
|
|
|
isVideoEventCountValid,
|
|
|
|
isVideoFileSizeValid,
|
2017-10-31 11:52:52 +01:00
|
|
|
isVideoPrivacyValid,
|
|
|
|
isRemoteVideoPrivacyValid,
|
2017-10-10 10:02:18 +02:00
|
|
|
isVideoFileResolutionValid,
|
2017-10-26 10:40:37 +02:00
|
|
|
checkVideoExists,
|
2017-11-10 14:34:45 +01:00
|
|
|
isVideoTagValid,
|
2017-10-26 10:40:37 +02:00
|
|
|
isRemoteVideoCategoryValid,
|
|
|
|
isRemoteVideoLicenceValid,
|
2017-11-14 10:57:56 +01:00
|
|
|
isVideoUrlValid,
|
2017-10-26 10:40:37 +02:00
|
|
|
isRemoteVideoLanguageValid
|
2017-05-15 22:22:03 +02:00
|
|
|
}
|