express-init.js 4.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133
  1. module.exports = function(crowi, app) {
  2. const debug = require('debug')('growi:crowi:express-init');
  3. const path = require('path');
  4. const express = require('express');
  5. const helmet = require('helmet');
  6. const bodyParser = require('body-parser');
  7. const cookieParser = require('cookie-parser');
  8. const methodOverride = require('method-override');
  9. const passport = require('passport');
  10. const expressSession = require('express-session');
  11. const flash = require('connect-flash');
  12. const mongoSanitize = require('express-mongo-sanitize');
  13. const swig = require('swig-templates');
  14. const webpackAssets = require('express-webpack-assets');
  15. const i18next = require('i18next');
  16. const i18nFsBackend = require('i18next-node-fs-backend');
  17. const i18nSprintf = require('i18next-sprintf-postprocessor');
  18. const i18nMiddleware = require('i18next-express-middleware');
  19. const promster = require('../middlewares/promster')(crowi, app);
  20. const registerSafeRedirect = require('../middlewares/safe-redirect')();
  21. const injectCurrentuserToLocalvars = require('../middlewares/inject-currentuser-to-localvars')();
  22. const autoReconnectToS2sMsgServer = require('../middlewares/auto-reconnect-to-s2s-msg-server')(crowi);
  23. const { listLocaleIds } = require('@commons/util/locale-utils');
  24. const avoidSessionRoutes = require('../routes/avoid-session-routes');
  25. const i18nUserSettingDetector = require('../util/i18nUserSettingDetector');
  26. const env = crowi.node_env;
  27. const lngDetector = new i18nMiddleware.LanguageDetector();
  28. lngDetector.addDetector(i18nUserSettingDetector);
  29. i18next
  30. .use(lngDetector)
  31. .use(i18nFsBackend)
  32. .use(i18nSprintf)
  33. .init({
  34. // debug: true,
  35. fallbackLng: ['en_US'],
  36. whitelist: listLocaleIds(),
  37. backend: {
  38. loadPath: `${crowi.localeDir}{{lng}}/translation.json`,
  39. },
  40. detection: {
  41. order: ['userSettingDetector', 'header', 'navigator'],
  42. },
  43. overloadTranslationOptionHandler: i18nSprintf.overloadTranslationOptionHandler,
  44. // change nsSeparator from ':' to '::' because ':' is used in config keys and these are used in i18n keys
  45. nsSeparator: '::',
  46. });
  47. app.use(helmet());
  48. app.use((req, res, next) => {
  49. const now = new Date();
  50. // for datez
  51. const Page = crowi.model('Page');
  52. const User = crowi.model('User');
  53. const Config = crowi.model('Config');
  54. app.set('tzoffset', crowi.appService.getTzoffset());
  55. req.csrfToken = null;
  56. res.locals.req = req;
  57. res.locals.baseUrl = crowi.appService.getSiteUrl();
  58. res.locals.env = env;
  59. res.locals.now = now;
  60. res.locals.consts = {
  61. pageGrants: Page.getGrantLabels(),
  62. userStatus: User.getUserStatusLabels(),
  63. language: listLocaleIds(),
  64. restrictGuestMode: crowi.aclService.getRestrictGuestModeLabels(),
  65. registrationMode: crowi.aclService.getRegistrationModeLabels(),
  66. };
  67. res.locals.local_config = Config.getLocalconfig(); // config for browser context
  68. next();
  69. });
  70. app.set('port', crowi.port);
  71. const staticOption = (crowi.node_env === 'production') ? { maxAge: '30d' } : {};
  72. app.use(express.static(crowi.publicDir, staticOption));
  73. app.engine('html', swig.renderFile);
  74. app.use(webpackAssets(
  75. path.join(crowi.publicDir, 'manifest.json'),
  76. { devMode: (crowi.node_env === 'development') },
  77. ));
  78. // app.set('view cache', false); // Default: true in production, otherwise undefined. -- 2017.07.04 Yuki Takei
  79. app.set('view engine', 'html');
  80. app.set('views', crowi.viewsDir);
  81. app.use(methodOverride());
  82. app.use(bodyParser.urlencoded({ extended: true, limit: '50mb' }));
  83. app.use(bodyParser.json({ limit: '50mb' }));
  84. app.use(cookieParser());
  85. // configure express-session
  86. const sessionMiddleware = expressSession(crowi.sessionConfig);
  87. app.use((req, res, next) => {
  88. // test whether the route is listed in avoidSessionRoutes
  89. for (const regex of avoidSessionRoutes) {
  90. if (regex.test(req.path)) {
  91. return next();
  92. }
  93. }
  94. sessionMiddleware(req, res, next);
  95. });
  96. // passport
  97. debug('initialize Passport');
  98. app.use(passport.initialize());
  99. app.use(passport.session());
  100. app.use(flash());
  101. app.use(mongoSanitize());
  102. app.use(promster);
  103. app.use(registerSafeRedirect);
  104. app.use(injectCurrentuserToLocalvars);
  105. app.use(autoReconnectToS2sMsgServer);
  106. const middlewares = require('../util/middlewares')(crowi, app);
  107. app.use(middlewares.swigFilters(swig));
  108. app.use(middlewares.swigFunctions());
  109. app.use(middlewares.csrfKeyGenerator());
  110. app.use(i18nMiddleware.handle(i18next));
  111. };