You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

404 lines
13 KiB

  1. const path = require('path')
  2. /* global wiki */
  3. module.exports = () => {
  4. wiki.config.site = {
  5. path: '',
  6. title: 'Wiki.js'
  7. }
  8. wiki.system = require('./modules/system')
  9. // ----------------------------------------
  10. // Load modules
  11. // ----------------------------------------
  12. const bodyParser = require('body-parser')
  13. const compression = require('compression')
  14. const express = require('express')
  15. const favicon = require('serve-favicon')
  16. const http = require('http')
  17. const Promise = require('bluebird')
  18. const fs = Promise.promisifyAll(require('fs-extra'))
  19. const yaml = require('js-yaml')
  20. const _ = require('lodash')
  21. const cfgHelper = require('./helpers/config')
  22. const filesize = require('filesize.js')
  23. const crypto = Promise.promisifyAll(require('crypto'))
  24. // ----------------------------------------
  25. // Define Express App
  26. // ----------------------------------------
  27. let app = express()
  28. app.use(compression())
  29. let server
  30. // ----------------------------------------
  31. // Public Assets
  32. // ----------------------------------------
  33. app.use(favicon(path.join(wiki.ROOTPATH, 'assets', 'favicon.ico')))
  34. app.use(express.static(path.join(wiki.ROOTPATH, 'assets')))
  35. // ----------------------------------------
  36. // View Engine Setup
  37. // ----------------------------------------
  38. app.set('views', path.join(wiki.SERVERPATH, 'views'))
  39. app.set('view engine', 'pug')
  40. app.use(bodyParser.json())
  41. app.use(bodyParser.urlencoded({ extended: false }))
  42. app.locals.config = wiki.config
  43. app.locals.data = wiki.data
  44. app.locals._ = require('lodash')
  45. // ----------------------------------------
  46. // Controllers
  47. // ----------------------------------------
  48. app.get('*', async (req, res) => {
  49. let packageObj = await fs.readJson(path.join(wiki.ROOTPATH, 'package.json'))
  50. res.render('setup', {
  51. packageObj,
  52. telemetryClientID: wiki.telemetry.cid
  53. })
  54. })
  55. /**
  56. * Perform basic system checks
  57. */
  58. app.post('/syscheck', (req, res) => {
  59. wiki.telemetry.enabled = (req.body.telemetry === true)
  60. wiki.telemetry.sendEvent('setup', 'start')
  61. Promise.mapSeries([
  62. () => {
  63. const semver = require('semver')
  64. if (!semver.satisfies(semver.clean(process.version), '>=8.9.0')) {
  65. throw new Error('Node.js version is too old. Minimum is 8.9.0.')
  66. }
  67. return 'Node.js ' + process.version + ' detected. Minimum is 8.9.0.'
  68. },
  69. () => {
  70. return Promise.try(() => {
  71. require('crypto')
  72. }).catch(err => {
  73. throw new Error('Crypto Node.js module is not available.')
  74. }).return('Node.js Crypto module is available.')
  75. },
  76. () => {
  77. const exec = require('child_process').exec
  78. const semver = require('semver')
  79. return new Promise((resolve, reject) => {
  80. exec('git --version', (err, stdout, stderr) => {
  81. if (err || stdout.length < 3) {
  82. reject(new Error('Git is not installed or not reachable from PATH.'))
  83. }
  84. let gitver = _.head(stdout.match(/[\d]+\.[\d]+(\.[\d]+)?/gi))
  85. if (!gitver || !semver.satisfies(semver.clean(gitver), '>=2.7.4')) {
  86. reject(new Error('Git version is too old. Minimum is 2.7.4.'))
  87. }
  88. resolve('Git ' + gitver + ' detected. Minimum is 2.7.4.')
  89. })
  90. })
  91. },
  92. () => {
  93. const os = require('os')
  94. if (os.totalmem() < 1000 * 1000 * 512) {
  95. throw new Error('Not enough memory. Minimum is 512 MB.')
  96. }
  97. return filesize(os.totalmem()) + ' of system memory available. Minimum is 512 MB.'
  98. },
  99. () => {
  100. let fs = require('fs')
  101. return Promise.try(() => {
  102. fs.accessSync(path.join(wiki.ROOTPATH, 'config.yml'), (fs.constants || fs).W_OK)
  103. }).catch(err => {
  104. throw new Error('config.yml file is not writable by Node.js process or was not created properly.')
  105. }).return('config.yml is writable by the setup process.')
  106. }
  107. ], test => test()).then(results => {
  108. res.json({ ok: true, results })
  109. }).catch(err => {
  110. res.json({ ok: false, error: err.message })
  111. })
  112. })
  113. /**
  114. * Check the Git connection
  115. */
  116. app.post('/gitcheck', (req, res) => {
  117. wiki.telemetry.sendEvent('setup', 'gitcheck')
  118. const exec = require('execa')
  119. const url = require('url')
  120. const dataDir = path.resolve(wiki.ROOTPATH, cfgHelper.parseConfigValue(req.body.pathData))
  121. const gitDir = path.resolve(wiki.ROOTPATH, cfgHelper.parseConfigValue(req.body.pathRepo))
  122. let gitRemoteUrl = ''
  123. if (req.body.gitUseRemote === true) {
  124. let urlObj = url.parse(cfgHelper.parseConfigValue(req.body.gitUrl))
  125. if (req.body.gitAuthType === 'basic') {
  126. urlObj.auth = req.body.gitAuthUser + ':' + req.body.gitAuthPass
  127. }
  128. gitRemoteUrl = url.format(urlObj)
  129. }
  130. Promise.mapSeries([
  131. () => {
  132. return fs.ensureDir(dataDir).then(() => 'Data directory path is valid.')
  133. },
  134. () => {
  135. return fs.ensureDir(gitDir).then(() => 'Git directory path is valid.')
  136. },
  137. () => {
  138. return exec.stdout('git', ['init'], { cwd: gitDir }).then(result => {
  139. return 'Local git repository has been initialized.'
  140. })
  141. },
  142. () => {
  143. if (req.body.gitUseRemote === false) { return false }
  144. return exec.stdout('git', ['config', '--local', 'user.name', 'Wiki'], { cwd: gitDir }).then(result => {
  145. return 'Git Signature Name has been set successfully.'
  146. })
  147. },
  148. () => {
  149. if (req.body.gitUseRemote === false) { return false }
  150. return exec.stdout('git', ['config', '--local', 'user.email', req.body.gitServerEmail], { cwd: gitDir }).then(result => {
  151. return 'Git Signature Name has been set successfully.'
  152. })
  153. },
  154. () => {
  155. if (req.body.gitUseRemote === false) { return false }
  156. return exec.stdout('git', ['config', '--local', '--bool', 'http.sslVerify', req.body.gitAuthSSL], { cwd: gitDir }).then(result => {
  157. return 'Git SSL Verify flag has been set successfully.'
  158. })
  159. },
  160. () => {
  161. if (req.body.gitUseRemote === false) { return false }
  162. if (_.includes(['sshenv', 'sshdb'], req.body.gitAuthType)) {
  163. req.body.gitAuthSSHKey = path.join(dataDir, 'ssh/key.pem')
  164. }
  165. if (_.startsWith(req.body.gitAuthType, 'ssh')) {
  166. return exec.stdout('git', ['config', '--local', 'core.sshCommand', 'ssh -i "' + req.body.gitAuthSSHKey + '" -o StrictHostKeyChecking=no'], { cwd: gitDir }).then(result => {
  167. return 'Git SSH Private Key path has been set successfully.'
  168. })
  169. } else {
  170. return false
  171. }
  172. },
  173. () => {
  174. if (req.body.gitUseRemote === false) { return false }
  175. return exec.stdout('git', ['remote', 'rm', 'origin'], { cwd: gitDir }).catch(err => {
  176. if (_.includes(err.message, 'No such remote') || _.includes(err.message, 'Could not remove')) {
  177. return true
  178. } else {
  179. throw err
  180. }
  181. }).then(() => {
  182. return exec.stdout('git', ['remote', 'add', 'origin', gitRemoteUrl], { cwd: gitDir }).then(result => {
  183. return 'Git Remote was added successfully.'
  184. })
  185. })
  186. },
  187. () => {
  188. if (req.body.gitUseRemote === false) { return false }
  189. return exec.stdout('git', ['pull', 'origin', req.body.gitBranch], { cwd: gitDir }).then(result => {
  190. return 'Git Pull operation successful.'
  191. })
  192. }
  193. ], step => { return step() }).then(results => {
  194. return res.json({ ok: true, results: _.without(results, false) })
  195. }).catch(err => {
  196. let errMsg = (err.stderr) ? err.stderr.replace(/(error:|warning:|fatal:)/gi, '').replace(/ \s+/g, ' ') : err.message
  197. res.json({ ok: false, error: errMsg })
  198. })
  199. })
  200. /**
  201. * Finalize
  202. */
  203. app.post('/finalize', async (req, res) => {
  204. wiki.telemetry.sendEvent('setup', 'finalize')
  205. try {
  206. // Upgrade from Wiki.js 1.x?
  207. if (req.body.upgrade) {
  208. await wiki.system.upgradeFromMongo({
  209. mongoCnStr: cfgHelper.parseConfigValue(req.body.upgMongo)
  210. })
  211. }
  212. // Update config file
  213. wiki.logger.info('Writing config file to disk...')
  214. let confRaw = await fs.readFileAsync(path.join(wiki.ROOTPATH, 'config.yml'), 'utf8')
  215. let conf = yaml.safeLoad(confRaw)
  216. conf.port = req.body.port
  217. conf.paths.repo = req.body.pathRepo
  218. confRaw = yaml.safeDump(conf)
  219. await fs.writeFileAsync(path.join(wiki.ROOTPATH, 'config.yml'), confRaw)
  220. _.set(wiki.config, 'port', req.body.port)
  221. _.set(wiki.config, 'paths.repo', req.body.pathRepo)
  222. // Populate config namespaces
  223. wiki.config.auth = wiki.config.auth || {}
  224. wiki.config.features = wiki.config.features || {}
  225. wiki.config.git = wiki.config.git || {}
  226. wiki.config.logging = wiki.config.logging || {}
  227. wiki.config.site = wiki.config.site || {}
  228. wiki.config.theme = wiki.config.theme || {}
  229. wiki.config.uploads = wiki.config.uploads || {}
  230. // Site namespace
  231. _.set(wiki.config.site, 'title', req.body.title)
  232. _.set(wiki.config.site, 'path', req.body.path)
  233. _.set(wiki.config.site, 'lang', req.body.lang)
  234. _.set(wiki.config.site, 'rtl', _.includes(wiki.data.rtlLangs, req.body.lang))
  235. _.set(wiki.config.site, 'sessionSecret', (await crypto.randomBytesAsync(32)).toString('hex'))
  236. // Auth namespace
  237. _.set(wiki.config.auth, 'public', req.body.public === 'true')
  238. _.set(wiki.config.auth, 'strategies.local.enabled', true)
  239. _.set(wiki.config.auth, 'strategies.local.allowSelfRegister', req.body.selfRegister === 'true')
  240. // Git namespace
  241. _.set(wiki.config.git, 'enabled', req.body.gitUseRemote === 'true')
  242. if (wiki.config.git.enabled) {
  243. _.set(wiki.config.git, 'url', req.body.gitUrl)
  244. _.set(wiki.config.git, 'branch', req.body.gitBranch)
  245. _.set(wiki.config.git, 'author.defaultEmail', req.body.gitServerEmail)
  246. _.set(wiki.config.git, 'author.useUserEmail', req.body.gitShowUserEmail)
  247. _.set(wiki.config.git, 'sslVerify', req.body.gitAuthSSL === 'true')
  248. _.set(wiki.config.git, 'auth.type', req.body.gitAuthType)
  249. switch (wiki.config.git.auth.type) {
  250. case 'basic':
  251. _.set(wiki.config.git, 'auth.user', req.body.gitAuthUser)
  252. _.set(wiki.config.git, 'auth.pass', req.body.gitAuthPass)
  253. break
  254. case 'ssh':
  255. _.set(wiki.config.git, 'auth.keyPath', req.body.gitAuthSSHKey)
  256. break
  257. case 'sshenv':
  258. _.set(wiki.config.git, 'auth.keyEnv', req.body.gitAuthSSHKeyEnv)
  259. break
  260. case 'sshdb':
  261. _.set(wiki.config.git, 'auth.keyContents', req.body.gitAuthSSHKeyDB)
  262. break
  263. }
  264. }
  265. // Logging namespace
  266. wiki.config.logging.telemetry = (req.body.telemetry === 'true')
  267. // Save config to DB
  268. wiki.logger.info('Persisting config to DB...')
  269. await wiki.configSvc.saveToDb()
  270. // Create root administrator
  271. wiki.logger.info('Creating root administrator...')
  272. await wiki.db.User.upsert({
  273. email: req.body.adminEmail,
  274. provider: 'local',
  275. password: await wiki.db.User.hashPassword(req.body.adminPassword),
  276. name: 'Administrator',
  277. role: 'admin',
  278. tfaIsActive: false
  279. })
  280. wiki.logger.info('Setup is complete!')
  281. res.json({
  282. ok: true,
  283. redirectPath: wiki.config.site.path,
  284. redirectPort: wiki.config.port
  285. }).end()
  286. wiki.logger.info('Stopping Setup...')
  287. server.destroy(() => {
  288. wiki.logger.info('Setup stopped. Starting Wiki.js...')
  289. _.delay(() => {
  290. wiki.kernel.bootMaster()
  291. }, 1000)
  292. })
  293. } catch (err) {
  294. res.json({ ok: false, error: err.message })
  295. }
  296. })
  297. // ----------------------------------------
  298. // Error handling
  299. // ----------------------------------------
  300. app.use(function (req, res, next) {
  301. var err = new Error('Not Found')
  302. err.status = 404
  303. next(err)
  304. })
  305. app.use(function (err, req, res, next) {
  306. res.status(err.status || 500)
  307. res.send({
  308. message: err.message,
  309. error: wiki.IS_DEBUG ? err : {}
  310. })
  311. wiki.logger.error(err.message)
  312. wiki.telemetry.sendError(err)
  313. })
  314. // ----------------------------------------
  315. // Start HTTP server
  316. // ----------------------------------------
  317. wiki.logger.info(`HTTP Server on port: ${wiki.config.port}`)
  318. app.set('port', wiki.config.port)
  319. server = http.createServer(app)
  320. server.listen(wiki.config.port)
  321. var openConnections = []
  322. server.on('connection', (conn) => {
  323. let key = conn.remoteAddress + ':' + conn.remotePort
  324. openConnections[key] = conn
  325. conn.on('close', () => {
  326. delete openConnections[key]
  327. })
  328. })
  329. server.destroy = (cb) => {
  330. server.close(cb)
  331. for (let key in openConnections) {
  332. openConnections[key].destroy()
  333. }
  334. }
  335. server.on('error', (error) => {
  336. if (error.syscall !== 'listen') {
  337. throw error
  338. }
  339. switch (error.code) {
  340. case 'EACCES':
  341. wiki.logger.error('Listening on port ' + wiki.config.port + ' requires elevated privileges!')
  342. return process.exit(1)
  343. case 'EADDRINUSE':
  344. wiki.logger.error('Port ' + wiki.config.port + ' is already in use!')
  345. return process.exit(1)
  346. default:
  347. throw error
  348. }
  349. })
  350. server.on('listening', () => {
  351. wiki.logger.info('HTTP Server: RUNNING')
  352. })
  353. }