const path = require('path') /* global WIKI */ module.exports = () => { WIKI.config.site = { path: '', title: 'WIKI.js' } WIKI.system = require('./core/system') // ---------------------------------------- // Load modules // ---------------------------------------- const bodyParser = require('body-parser') const compression = require('compression') const express = require('express') const favicon = require('serve-favicon') const http = require('http') const Promise = require('bluebird') const fs = Promise.promisifyAll(require('fs-extra')) const yaml = require('js-yaml') const _ = require('lodash') const cfgHelper = require('./helpers/config') const filesize = require('filesize.js') const crypto = Promise.promisifyAll(require('crypto')) // ---------------------------------------- // Define Express App // ---------------------------------------- let app = express() app.use(compression()) let server // ---------------------------------------- // Public Assets // ---------------------------------------- app.use(favicon(path.join(WIKI.ROOTPATH, 'assets', 'favicon.ico'))) app.use(express.static(path.join(WIKI.ROOTPATH, 'assets'))) // ---------------------------------------- // View Engine Setup // ---------------------------------------- app.set('views', path.join(WIKI.SERVERPATH, 'views')) app.set('view engine', 'pug') app.use(bodyParser.json()) app.use(bodyParser.urlencoded({ extended: false })) app.locals.config = WIKI.config app.locals.data = WIKI.data app.locals._ = require('lodash') // ---------------------------------------- // HMR (Dev Mode Only) // ---------------------------------------- if (global.DEV) { app.use(global.WP_DEV.devMiddleware) app.use(global.WP_DEV.hotMiddleware) } // ---------------------------------------- // Controllers // ---------------------------------------- app.get('*', async (req, res) => { let packageObj = await fs.readJson(path.join(WIKI.ROOTPATH, 'package.json')) res.render('main/setup', { packageObj, telemetryClientID: WIKI.telemetry.cid }) }) /** * Perform basic system checks */ app.post('/syscheck', (req, res) => { WIKI.telemetry.enabled = (req.body.telemetry === true) WIKI.telemetry.sendEvent('setup', 'start') Promise.mapSeries([ () => { const semver = require('semver') if (!semver.satisfies(semver.clean(process.version), '>=8.9.0')) { throw new Error('Node.js version is too old. Minimum is 8.9.0.') } return 'Node.js ' + process.version + ' detected. Minimum is 8.9.0.' }, () => { return Promise.try(() => { require('crypto') }).catch(err => { throw new Error('Crypto Node.js module is not available.') }).return('Node.js Crypto module is available.') }, () => { const exec = require('child_process').exec const semver = require('semver') return new Promise((resolve, reject) => { exec('git --version', (err, stdout, stderr) => { if (err || stdout.length < 3) { reject(new Error('Git is not installed or not reachable from PATH.')) } let gitver = _.head(stdout.match(/[\d]+\.[\d]+(\.[\d]+)?/gi)) if (!gitver || !semver.satisfies(semver.clean(gitver), '>=2.7.4')) { reject(new Error('Git version is too old. Minimum is 2.7.4.')) } resolve('Git ' + gitver + ' detected. Minimum is 2.7.4.') }) }) }, () => { const os = require('os') if (os.totalmem() < 1000 * 1000 * 512) { throw new Error('Not enough memory. Minimum is 512 MB.') } return filesize(os.totalmem()) + ' of system memory available. Minimum is 512 MB.' }, () => { let fs = require('fs') return Promise.try(() => { fs.accessSync(path.join(WIKI.ROOTPATH, 'config.yml'), (fs.constants || fs).W_OK) }).catch(err => { throw new Error('config.yml file is not writable by Node.js process or was not created properly.') }).return('config.yml is writable by the setup process.') } ], test => test()).then(results => { res.json({ ok: true, results }) }).catch(err => { res.json({ ok: false, error: err.message }) }) }) /** * Check the Git connection */ app.post('/gitcheck', (req, res) => { WIKI.telemetry.sendEvent('setup', 'gitcheck') const exec = require('execa') const url = require('url') const dataDir = path.resolve(WIKI.ROOTPATH, cfgHelper.parseConfigValue(req.body.pathData)) const gitDir = path.resolve(WIKI.ROOTPATH, cfgHelper.parseConfigValue(req.body.pathRepo)) let gitRemoteUrl = '' if (req.body.gitUseRemote === true) { let urlObj = url.parse(cfgHelper.parseConfigValue(req.body.gitUrl)) if (req.body.gitAuthType === 'basic') { urlObj.auth = req.body.gitAuthUser + ':' + req.body.gitAuthPass } gitRemoteUrl = url.format(urlObj) } Promise.mapSeries([ () => { return fs.ensureDir(dataDir).then(() => 'Data directory path is valid.') }, () => { return fs.ensureDir(gitDir).then(() => 'Git directory path is valid.') }, () => { return exec.stdout('git', ['init'], { cwd: gitDir }).then(result => { return 'Local git repository has been initialized.' }) }, () => { if (req.body.gitUseRemote === false) { return false } return exec.stdout('git', ['config', '--local', 'user.name', 'Wiki'], { cwd: gitDir }).then(result => { return 'Git Signature Name has been set successfully.' }) }, () => { if (req.body.gitUseRemote === false) { return false } return exec.stdout('git', ['config', '--local', 'user.email', req.body.gitServerEmail], { cwd: gitDir }).then(result => { return 'Git Signature Name has been set successfully.' }) }, () => { if (req.body.gitUseRemote === false) { return false } return exec.stdout('git', ['config', '--local', '--bool', 'http.sslVerify', req.body.gitAuthSSL], { cwd: gitDir }).then(result => { return 'Git SSL Verify flag has been set successfully.' }) }, () => { if (req.body.gitUseRemote === false) { return false } if (_.includes(['sshenv', 'sshdb'], req.body.gitAuthType)) { req.body.gitAuthSSHKey = path.join(dataDir, 'ssh/key.pem') } if (_.startsWith(req.body.gitAuthType, 'ssh')) { return exec.stdout('git', ['config', '--local', 'core.sshCommand', 'ssh -i "' + req.body.gitAuthSSHKey + '" -o StrictHostKeyChecking=no'], { cwd: gitDir }).then(result => { return 'Git SSH Private Key path has been set successfully.' }) } else { return false } }, () => { if (req.body.gitUseRemote === false) { return false } return exec.stdout('git', ['remote', 'rm', 'origin'], { cwd: gitDir }).catch(err => { if (_.includes(err.message, 'No such remote') || _.includes(err.message, 'Could not remove')) { return true } else { throw err } }).then(() => { return exec.stdout('git', ['remote', 'add', 'origin', gitRemoteUrl], { cwd: gitDir }).then(result => { return 'Git Remote was added successfully.' }) }) }, () => { if (req.body.gitUseRemote === false) { return false } return exec.stdout('git', ['pull', 'origin', req.body.gitBranch], { cwd: gitDir }).then(result => { return 'Git Pull operation successful.' }) } ], step => { return step() }).then(results => { return res.json({ ok: true, results: _.without(results, false) }) }).catch(err => { let errMsg = (err.stderr) ? err.stderr.replace(/(error:|warning:|fatal:)/gi, '').replace(/ \s+/g, ' ') : err.message res.json({ ok: false, error: errMsg }) }) }) /** * Finalize */ app.post('/finalize', async (req, res) => { WIKI.telemetry.sendEvent('setup', 'finalize') try { // Upgrade from WIKI.js 1.x? if (req.body.upgrade) { await WIKI.system.upgradeFromMongo({ mongoCnStr: cfgHelper.parseConfigValue(req.body.upgMongo) }) } // Update config file WIKI.logger.info('Writing config file to disk...') let confRaw = await fs.readFileAsync(path.join(WIKI.ROOTPATH, 'config.yml'), 'utf8') let conf = yaml.safeLoad(confRaw) conf.port = req.body.port conf.paths.repo = req.body.pathRepo confRaw = yaml.safeDump(conf) await fs.writeFileAsync(path.join(WIKI.ROOTPATH, 'config.yml'), confRaw) _.set(WIKI.config, 'port', req.body.port) _.set(WIKI.config, 'paths.repo', req.body.pathRepo) // Populate config namespaces WIKI.config.auth = WIKI.config.auth || {} WIKI.config.features = WIKI.config.features || {} WIKI.config.git = WIKI.config.git || {} WIKI.config.logging = WIKI.config.logging || {} WIKI.config.site = WIKI.config.site || {} WIKI.config.theme = WIKI.config.theme || {} WIKI.config.uploads = WIKI.config.uploads || {} // Site namespace _.set(WIKI.config.site, 'title', req.body.title) _.set(WIKI.config.site, 'path', req.body.path) _.set(WIKI.config.site, 'lang', req.body.lang) _.set(WIKI.config.site, 'rtl', _.includes(WIKI.data.rtlLangs, req.body.lang)) _.set(WIKI.config.site, 'sessionSecret', (await crypto.randomBytesAsync(32)).toString('hex')) // Auth namespace _.set(WIKI.config.auth, 'public', req.body.public === 'true') _.set(WIKI.config.auth, 'strategies.local.enabled', true) _.set(WIKI.config.auth, 'strategies.local.allowSelfRegister', req.body.selfRegister === 'true') // Git namespace _.set(WIKI.config.git, 'enabled', req.body.gitUseRemote === 'true') if (WIKI.config.git.enabled) { _.set(WIKI.config.git, 'url', req.body.gitUrl) _.set(WIKI.config.git, 'branch', req.body.gitBranch) _.set(WIKI.config.git, 'author.defaultEmail', req.body.gitServerEmail) _.set(WIKI.config.git, 'author.useUserEmail', req.body.gitShowUserEmail) _.set(WIKI.config.git, 'sslVerify', req.body.gitAuthSSL === 'true') _.set(WIKI.config.git, 'auth.type', req.body.gitAuthType) switch (WIKI.config.git.auth.type) { case 'basic': _.set(WIKI.config.git, 'auth.user', req.body.gitAuthUser) _.set(WIKI.config.git, 'auth.pass', req.body.gitAuthPass) break case 'ssh': _.set(WIKI.config.git, 'auth.keyPath', req.body.gitAuthSSHKey) break case 'sshenv': _.set(WIKI.config.git, 'auth.keyEnv', req.body.gitAuthSSHKeyEnv) break case 'sshdb': _.set(WIKI.config.git, 'auth.keyContents', req.body.gitAuthSSHKeyDB) break } } // Logging namespace WIKI.config.logging.telemetry = (req.body.telemetry === 'true') // Save config to DB WIKI.logger.info('Persisting config to DB...') await WIKI.configSvc.saveToDb() // Create root administrator WIKI.logger.info('Creating root administrator...') await WIKI.db.User.upsert({ email: req.body.adminEmail, provider: 'local', password: await WIKI.db.User.hashPassword(req.body.adminPassword), name: 'Administrator', role: 'admin', tfaIsActive: false }) WIKI.logger.info('Setup is complete!') res.json({ ok: true, redirectPath: WIKI.config.site.path, redirectPort: WIKI.config.port }).end() WIKI.logger.info('Stopping Setup...') server.destroy(() => { WIKI.logger.info('Setup stopped. Starting WIKI.js...') _.delay(() => { WIKI.kernel.bootMaster() }, 1000) }) } catch (err) { res.json({ ok: false, error: err.message }) } }) // ---------------------------------------- // Error handling // ---------------------------------------- app.use(function (req, res, next) { var err = new Error('Not Found') err.status = 404 next(err) }) app.use(function (err, req, res, next) { res.status(err.status || 500) res.send({ message: err.message, error: WIKI.IS_DEBUG ? err : {} }) WIKI.logger.error(err.message) WIKI.telemetry.sendError(err) }) // ---------------------------------------- // Start HTTP server // ---------------------------------------- WIKI.logger.info(`HTTP Server on port: ${WIKI.config.port}`) app.set('port', WIKI.config.port) WIKI.server = http.createServer(app) WIKI.server.listen(WIKI.config.port) var openConnections = [] WIKI.server.on('connection', (conn) => { let key = conn.remoteAddress + ':' + conn.remotePort openConnections[key] = conn conn.on('close', () => { delete openConnections[key] }) }) WIKI.server.destroy = (cb) => { WIKI.server.close(cb) for (let key in openConnections) { openConnections[key].destroy() } } WIKI.server.on('error', (error) => { if (error.syscall !== 'listen') { throw error } switch (error.code) { case 'EACCES': WIKI.logger.error('Listening on port ' + WIKI.config.port + ' requires elevated privileges!') return process.exit(1) case 'EADDRINUSE': WIKI.logger.error('Port ' + WIKI.config.port + ' is already in use!') return process.exit(1) default: throw error } }) WIKI.server.on('listening', () => { WIKI.logger.info('HTTP Server: RUNNING') }) }