index.js 9.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122
  1. module.exports = function(crowi, app) {
  2. var middleware = require('../util/middlewares')
  3. , form = require('../form')
  4. , page = require('./page')(crowi, app)
  5. , login = require('./login')(crowi, app)
  6. , logout = require('./logout')(crowi, app)
  7. , me = require('./me')(crowi, app)
  8. , admin = require('./admin')(crowi, app)
  9. , installer = require('./installer')(crowi, app)
  10. , user = require('./user')(crowi, app)
  11. , attachment= require('./attachment')(crowi, app)
  12. , comment = require('./comment')(crowi, app)
  13. , bookmark = require('./bookmark')(crowi, app)
  14. , revision = require('./revision')(crowi, app)
  15. , search = require('./search')(crowi, app)
  16. , loginRequired = middleware.loginRequired
  17. , accessTokenParser = middleware.accessTokenParser
  18. , csrf = middleware.csrfVerify(crowi, app)
  19. ;
  20. app.get('/' , loginRequired(crowi, app) , page.pageListShow);
  21. app.get('/installer' , middleware.applicationNotInstalled() , installer.index);
  22. app.post('/installer/createAdmin' , middleware.applicationNotInstalled() , form.register , csrf, installer.createAdmin);
  23. //app.post('/installer/user' , middleware.applicationNotInstalled() , installer.createFirstUser);
  24. app.get('/login/error/:reason' , login.error);
  25. app.get('/login' , middleware.applicationInstalled() , login.login);
  26. app.get('/login/invited' , login.invited);
  27. app.post('/login/activateInvited' , form.invited , csrf, login.invited);
  28. app.post('/login' , form.login , csrf, login.login);
  29. app.post('/register' , form.register , csrf, login.register);
  30. app.get('/register' , middleware.applicationInstalled() , login.register);
  31. app.post('/register/google' , login.registerGoogle);
  32. app.get('/google/callback' , login.googleCallback);
  33. app.get('/login/google' , login.loginGoogle);
  34. app.get('/logout' , logout.logout);
  35. app.get('/admin' , loginRequired(crowi, app) , middleware.adminRequired() , admin.index);
  36. app.get('/admin/app' , loginRequired(crowi, app) , middleware.adminRequired() , admin.app.index);
  37. app.post('/_api/admin/settings/app' , loginRequired(crowi, app) , middleware.adminRequired() , csrf, form.admin.app, admin.api.appSetting);
  38. app.post('/_api/admin/settings/sec' , loginRequired(crowi, app) , middleware.adminRequired() , form.admin.sec, admin.api.appSetting);
  39. app.post('/_api/admin/settings/mail' , loginRequired(crowi, app) , middleware.adminRequired() , csrf, form.admin.mail, admin.api.appSetting);
  40. app.post('/_api/admin/settings/aws' , loginRequired(crowi, app) , middleware.adminRequired() , csrf, form.admin.aws, admin.api.appSetting);
  41. app.post('/_api/admin/settings/google', loginRequired(crowi, app) , middleware.adminRequired() , csrf, form.admin.google, admin.api.appSetting);
  42. // search admin
  43. app.get('/admin/search' , loginRequired(crowi, app) , middleware.adminRequired() , admin.search.index);
  44. app.post('/admin/search/build' , loginRequired(crowi, app) , middleware.adminRequired() , csrf, admin.search.buildIndex);
  45. // notification admin
  46. app.get('/admin/notification' , loginRequired(crowi, app) , middleware.adminRequired() , admin.notification.index);
  47. app.post('/admin/notification/slackSetting', loginRequired(crowi, app) , middleware.adminRequired() , csrf, form.admin.slackSetting, admin.notification.slackSetting);
  48. app.get('/admin/notification/slackAuth' , loginRequired(crowi, app) , middleware.adminRequired() , admin.notification.slackAuth);
  49. app.post('/_api/admin/notification.add' , loginRequired(crowi, app) , middleware.adminRequired() , csrf, admin.api.notificationAdd);
  50. app.post('/_api/admin/notification.remove' , loginRequired(crowi, app) , middleware.adminRequired() , csrf, admin.api.notificationRemove);
  51. app.get('/admin/users' , loginRequired(crowi, app) , middleware.adminRequired() , admin.user.index);
  52. app.post('/admin/user/invite' , form.admin.userInvite , loginRequired(crowi, app) , middleware.adminRequired() , csrf, admin.user.invite);
  53. app.post('/admin/user/:id/makeAdmin' , loginRequired(crowi, app) , middleware.adminRequired() , csrf, admin.user.makeAdmin);
  54. app.post('/admin/user/:id/removeFromAdmin', loginRequired(crowi, app) , middleware.adminRequired() , admin.user.removeFromAdmin);
  55. app.post('/admin/user/:id/activate' , loginRequired(crowi, app) , middleware.adminRequired() , csrf, admin.user.activate);
  56. app.post('/admin/user/:id/suspend' , loginRequired(crowi, app) , middleware.adminRequired() , csrf, admin.user.suspend);
  57. app.post('/admin/user/:id/remove' , loginRequired(crowi, app) , middleware.adminRequired() , csrf, admin.user.remove);
  58. app.post('/admin/user/:id/removeCompletely' , loginRequired(crowi, app) , middleware.adminRequired() , csrf, admin.user.removeCompletely);
  59. app.get('/me' , loginRequired(crowi, app) , me.index);
  60. app.get('/me/password' , loginRequired(crowi, app) , me.password);
  61. app.get('/me/apiToken' , loginRequired(crowi, app) , me.apiToken);
  62. app.post('/me' , form.me.user , loginRequired(crowi, app) , me.index);
  63. app.post('/me/password' , form.me.password , loginRequired(crowi, app) , me.password);
  64. app.post('/me/apiToken' , form.me.apiToken , loginRequired(crowi, app) , me.apiToken);
  65. app.post('/me/picture/delete' , loginRequired(crowi, app) , me.deletePicture);
  66. app.post('/me/auth/google' , loginRequired(crowi, app) , me.authGoogle);
  67. app.get( '/me/auth/google/callback' , loginRequired(crowi, app) , me.authGoogleCallback);
  68. app.get( '/:id([0-9a-z]{24})' , loginRequired(crowi, app) , page.api.redirector);
  69. app.get( '/_r/:id([0-9a-z]{24})' , loginRequired(crowi, app) , page.api.redirector); // alias
  70. app.get( '/_search' , loginRequired(crowi, app) , search.searchPage);
  71. app.get( '/_api/search' , accessTokenParser(crowi, app) , loginRequired(crowi, app) , search.api.search);
  72. app.get( '/_api/check_username' , user.api.checkUsername);
  73. app.post('/_api/me/picture/upload' , loginRequired(crowi, app) , me.api.uploadPicture);
  74. app.get( '/_api/user/bookmarks' , loginRequired(crowi, app) , user.api.bookmarks);
  75. app.get( '/_api/attachment/page/:pageId', loginRequired(crowi, app) , attachment.api.list);
  76. app.post('/_api/attachment/page/:pageId', loginRequired(crowi, app) , attachment.api.add);
  77. app.post('/_api/attachment/:id/remove',loginRequired(crowi, app), attachment.api.remove);
  78. app.get( '/user/:username([^/]+)/bookmarks' , loginRequired(crowi, app) , page.userBookmarkList);
  79. app.get( '/user/:username([^/]+)/recent-create' , loginRequired(crowi, app) , page.userRecentCreatedList);
  80. // HTTP RPC Styled API (に徐々に移行していいこうと思う)
  81. app.get('/_api/users.list' , accessTokenParser(crowi, app) , loginRequired(crowi, app) , user.api.list);
  82. app.post('/_api/pages.create' , accessTokenParser(crowi, app) , loginRequired(crowi, app) , csrf, page.api.create);
  83. app.get('/_api/pages.get' , accessTokenParser(crowi, app) , loginRequired(crowi, app) , page.api.get);
  84. app.get('/_api/pages.updatePost' , accessTokenParser(crowi, app) , loginRequired(crowi, app) , page.api.getUpdatePost);
  85. app.post('/_api/pages.seen' , accessTokenParser(crowi, app) , loginRequired(crowi, app) , page.api.seen);
  86. app.post('/_api/pages.rename' , accessTokenParser(crowi, app) , loginRequired(crowi, app) , csrf, page.api.rename);
  87. app.post('/_api/pages.remove' , loginRequired(crowi, app) , csrf, page.api.remove); // (Avoid from API Token)
  88. app.post('/_api/pages.revertRemove' , loginRequired(crowi, app) , csrf, page.api.revertRemove); // (Avoid from API Token)
  89. app.get('/_api/comments.get' , accessTokenParser(crowi, app) , loginRequired(crowi, app) , comment.api.get);
  90. app.post('/_api/comments.add' , form.comment, accessTokenParser(crowi, app) , loginRequired(crowi, app) , csrf, comment.api.add);
  91. app.get( '/_api/bookmarks.get' , accessTokenParser(crowi, app) , loginRequired(crowi, app) , bookmark.api.get);
  92. app.post('/_api/bookmarks.add' , accessTokenParser(crowi, app) , loginRequired(crowi, app) , csrf, bookmark.api.add);
  93. app.post('/_api/bookmarks.remove' , accessTokenParser(crowi, app) , loginRequired(crowi, app) , csrf, bookmark.api.remove);
  94. app.post('/_api/likes.add' , accessTokenParser(crowi, app) , loginRequired(crowi, app) , csrf, page.api.like);
  95. app.post('/_api/likes.remove' , accessTokenParser(crowi, app) , loginRequired(crowi, app) , csrf, page.api.unlike);
  96. app.get( '/_api/revisions.get' , accessTokenParser(crowi, app) , loginRequired(crowi, app) , revision.api.get);
  97. app.get( '/_api/revisions.list' , accessTokenParser(crowi, app) , loginRequired(crowi, app) ,revision.api.list);
  98. //app.get('/_api/revision/:id' , user.useUserData() , revision.api.get);
  99. //app.get('/_api/r/:revisionId' , user.useUserData() , page.api.get);
  100. app.post('/_/edit' , form.revision , loginRequired(crowi, app) , csrf, page.pageEdit);
  101. app.get('/trash/$' , loginRequired(crowi, app) , page.deletedPageListShow);
  102. app.get('/trash/*/$' , loginRequired(crowi, app) , page.deletedPageListShow);
  103. app.get('/*/$' , loginRequired(crowi, app) , page.pageListShow);
  104. app.get('/*' , loginRequired(crowi, app) , page.pageShow);
  105. };