config.js 17 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564
  1. module.exports = function(crowi) {
  2. var mongoose = require('mongoose')
  3. , debug = require('debug')('growi:models:config')
  4. , uglifycss = require('uglifycss')
  5. , configSchema
  6. , Config
  7. , SECURITY_RESTRICT_GUEST_MODE_DENY = 'Deny'
  8. , SECURITY_RESTRICT_GUEST_MODE_READONLY = 'Readonly'
  9. , SECURITY_REGISTRATION_MODE_OPEN = 'Open'
  10. , SECURITY_REGISTRATION_MODE_RESTRICTED = 'Resricted'
  11. , SECURITY_REGISTRATION_MODE_CLOSED = 'Closed'
  12. ;
  13. configSchema = new mongoose.Schema({
  14. ns: { type: String, required: true, index: true },
  15. key: { type: String, required: true, index: true },
  16. value: { type: String, required: true }
  17. });
  18. /**
  19. * default values when GROWI is cleanly installed
  20. */
  21. function getArrayForInstalling() {
  22. let config = getDefaultCrowiConfigs();
  23. // overwrite
  24. config['app:fileUpload'] = true;
  25. config['security:isEnabledPassport'] = true;
  26. config['customize:behavior'] = 'growi';
  27. config['customize:layout'] = 'growi';
  28. config['customize:isSavedStatesOfTabChanges'] = false;
  29. return config;
  30. }
  31. /**
  32. * default values when migrated from Official Crowi
  33. */
  34. function getDefaultCrowiConfigs() {
  35. /* eslint-disable key-spacing */
  36. return {
  37. //'app:installed' : "0.0.0",
  38. 'app:confidential' : '',
  39. 'app:fileUpload' : false,
  40. 'security:restrictGuestMode' : 'Deny',
  41. 'security:registrationMode' : 'Open',
  42. 'security:registrationWhiteList' : [],
  43. 'security:isEnabledPassport' : false,
  44. 'security:passport-ldap:isEnabled' : false,
  45. 'security:passport-ldap:serverUrl' : undefined,
  46. 'security:passport-ldap:isUserBind' : undefined,
  47. 'security:passport-ldap:bindDN' : undefined,
  48. 'security:passport-ldap:bindDNPassword' : undefined,
  49. 'security:passport-ldap:searchFilter' : undefined,
  50. 'security:passport-ldap:attrMapUsername' : undefined,
  51. 'security:passport-ldap:attrMapName' : undefined,
  52. 'security:passport-ldap:groupSearchBase' : undefined,
  53. 'security:passport-ldap:groupSearchFilter' : undefined,
  54. 'security:passport-ldap:groupDnProperty' : undefined,
  55. 'security:passport-ldap:isSameUsernameTreatedAsIdenticalUser': false,
  56. 'security:passport-google:isEnabled' : false,
  57. 'security:passport-github:isEnabled' : false,
  58. 'aws:bucket' : 'growi',
  59. 'aws:region' : 'ap-northeast-1',
  60. 'aws:accessKeyId' : '',
  61. 'aws:secretAccessKey' : '',
  62. 'mail:from' : '',
  63. 'mail:smtpHost' : '',
  64. 'mail:smtpPort' : '',
  65. 'mail:smtpUser' : '',
  66. 'mail:smtpPassword' : '',
  67. 'google:clientId' : '',
  68. 'google:clientSecret' : '',
  69. 'plugin:isEnabledPlugins' : true,
  70. 'customize:css' : '',
  71. 'customize:script' : '',
  72. 'customize:header' : '',
  73. 'customize:title' : '',
  74. 'customize:highlightJsStyle' : 'github',
  75. 'customize:highlightJsStyleBorder' : false,
  76. 'customize:theme' : 'default',
  77. 'customize:behavior' : 'crowi',
  78. 'customize:layout' : 'crowi',
  79. 'customize:isEnabledTimeline' : true,
  80. 'customize:isSavedStatesOfTabChanges' : true,
  81. 'customize:isEnabledAttachTitleHeader' : false,
  82. };
  83. /* eslint-enable */
  84. }
  85. function getDefaultMarkdownConfigs() {
  86. return {
  87. 'markdown:XSS:isPrevented': false,
  88. 'markdown:XSS:option': 2,
  89. 'markdown:XSS:tagWhiteList': [],
  90. 'markdown:XSS:attrWhiteList': [],
  91. 'markdown:isEnabledLinebreaks': false,
  92. 'markdown:isEnabledLinebreaksInComments': true,
  93. };
  94. }
  95. function getValueForCrowiNS(config, key) {
  96. // return the default value if undefined
  97. if (undefined === config.crowi || undefined === config.crowi[key]) {
  98. return getDefaultCrowiConfigs()[key];
  99. }
  100. return config.crowi[key];
  101. }
  102. configSchema.statics.getRestrictGuestModeLabels = function() {
  103. var labels = {};
  104. labels[SECURITY_RESTRICT_GUEST_MODE_DENY] = 'security_setting.guest_mode.deny';
  105. labels[SECURITY_RESTRICT_GUEST_MODE_READONLY] = 'security_setting.guest_mode.readonly';
  106. return labels;
  107. };
  108. configSchema.statics.getRegistrationModeLabels = function() {
  109. var labels = {};
  110. labels[SECURITY_REGISTRATION_MODE_OPEN] = 'security_setting.registration_mode.open';
  111. labels[SECURITY_REGISTRATION_MODE_RESTRICTED] = 'security_setting.registration_mode.restricted';
  112. labels[SECURITY_REGISTRATION_MODE_CLOSED] = 'security_setting.registration_mode.closed';
  113. return labels;
  114. };
  115. configSchema.statics.updateConfigCache = function(ns, config) {
  116. var originalConfig = crowi.getConfig();
  117. var newNSConfig = originalConfig[ns] || {};
  118. Object.keys(config).forEach(function(key) {
  119. if (config[key] || config[key] === '' || config[key] === false) {
  120. newNSConfig[key] = config[key];
  121. }
  122. });
  123. originalConfig[ns] = newNSConfig;
  124. crowi.setConfig(originalConfig);
  125. // initialize custom css/script
  126. Config.initCustomCss(originalConfig);
  127. Config.initCustomScript(originalConfig);
  128. };
  129. // Execute only once for installing application
  130. configSchema.statics.applicationInstall = function(callback) {
  131. var Config = this;
  132. Config.count({ ns: 'crowi' }, function(err, count) {
  133. if (count > 0) {
  134. return callback(new Error('Application already installed'), null);
  135. }
  136. Config.updateNamespaceByArray('crowi', getArrayForInstalling(), function(err, configs) {
  137. Config.updateConfigCache('crowi', configs);
  138. return callback(err, configs);
  139. });
  140. });
  141. };
  142. configSchema.statics.setupCofigFormData = function(ns, config) {
  143. var defaultConfig = {};
  144. // set Default Settings
  145. if (ns === 'crowi') {
  146. defaultConfig = getDefaultCrowiConfigs();
  147. }
  148. else if (ns === 'markdown') {
  149. defaultConfig = getDefaultMarkdownConfigs();
  150. }
  151. if (!defaultConfig[ns]) {
  152. defaultConfig[ns] = {};
  153. }
  154. Object.keys(config[ns] || {}).forEach(function(key) {
  155. if (config[ns][key] !== undefined) {
  156. defaultConfig[key] = config[ns][key];
  157. }
  158. });
  159. return defaultConfig;
  160. };
  161. configSchema.statics.updateNamespaceByArray = function(ns, configs, callback) {
  162. var Config = this;
  163. if (configs.length < 0) {
  164. return callback(new Error('Argument #1 is not array.'), null);
  165. }
  166. Object.keys(configs).forEach(function(key) {
  167. var value = configs[key];
  168. Config.findOneAndUpdate(
  169. { ns: ns, key: key },
  170. { ns: ns, key: key, value: JSON.stringify(value) },
  171. { upsert: true, },
  172. function(err, config) {
  173. debug('Config.findAndUpdate', err, config);
  174. });
  175. });
  176. return callback(null, configs);
  177. };
  178. configSchema.statics.findAndUpdate = function(ns, key, value, callback) {
  179. var Config = this;
  180. Config.findOneAndUpdate(
  181. { ns: ns, key: key },
  182. { ns: ns, key: key, value: JSON.stringify(value) },
  183. { upsert: true, },
  184. function(err, config) {
  185. debug('Config.findAndUpdate', err, config);
  186. callback(err, config);
  187. });
  188. };
  189. configSchema.statics.getConfig = function(callback) {
  190. };
  191. configSchema.statics.loadAllConfig = function(callback) {
  192. var Config = this
  193. , config = {};
  194. config.crowi = {}; // crowi namespace
  195. Config.find()
  196. .sort({ns: 1, key: 1})
  197. .exec(function(err, doc) {
  198. doc.forEach(function(el) {
  199. if (!config[el.ns]) {
  200. config[el.ns] = {};
  201. }
  202. config[el.ns][el.key] = JSON.parse(el.value);
  203. });
  204. debug('Config loaded', config);
  205. // initialize custom css/script
  206. Config.initCustomCss(config);
  207. Config.initCustomScript(config);
  208. return callback(null, config);
  209. });
  210. };
  211. configSchema.statics.appTitle = function(config) {
  212. const key = 'app:title';
  213. return getValueForCrowiNS(config, key) || 'GROWI';
  214. };
  215. configSchema.statics.isEnabledPassport = function(config) {
  216. // always true if growi installed cleanly
  217. if (Object.keys(config.crowi).length == 0) {
  218. return true;
  219. }
  220. const key = 'security:isEnabledPassport';
  221. return getValueForCrowiNS(config, key);
  222. };
  223. configSchema.statics.isEnabledPassportLdap = function(config) {
  224. const key = 'security:passport-ldap:isEnabled';
  225. return getValueForCrowiNS(config, key);
  226. };
  227. configSchema.statics.isEnabledPassportGoogle = function(config) {
  228. const key = 'security:passport-google:isEnabled';
  229. return getValueForCrowiNS(config, key);
  230. };
  231. configSchema.statics.isEnabledPassportGitHub = function(config) {
  232. const key = 'security:passport-github:isEnabled';
  233. return getValueForCrowiNS(config, key);
  234. };
  235. configSchema.statics.isSameUsernameTreatedAsIdenticalUser = function(config, providerType) {
  236. const key = `security:passport-${providerType}:isSameUsernameTreatedAsIdenticalUser`;
  237. return getValueForCrowiNS(config, key);
  238. };
  239. configSchema.statics.isUploadable = function(config) {
  240. var method = crowi.env.FILE_UPLOAD || 'aws';
  241. if (method == 'aws' && (
  242. !config.crowi['aws:accessKeyId'] ||
  243. !config.crowi['aws:secretAccessKey'] ||
  244. !config.crowi['aws:region'] ||
  245. !config.crowi['aws:bucket'])) {
  246. return false;
  247. }
  248. return method != 'none';
  249. };
  250. configSchema.statics.isGuesstAllowedToRead = function(config) {
  251. // return false if undefined
  252. if (undefined === config.crowi || undefined === config.crowi['security:restrictGuestMode']) {
  253. return false;
  254. }
  255. return SECURITY_RESTRICT_GUEST_MODE_READONLY === config.crowi['security:restrictGuestMode'];
  256. };
  257. configSchema.statics.isEnabledPlugins = function(config) {
  258. const key = 'plugin:isEnabledPlugins';
  259. return getValueForCrowiNS(config, key);
  260. };
  261. configSchema.statics.isEnabledLinebreaks = function(config) {
  262. const key = 'markdown:isEnabledLinebreaks';
  263. // return default value if undefined
  264. if (undefined === config.markdown || undefined === config.markdown[key]) {
  265. return getDefaultMarkdownConfigs()[key];
  266. }
  267. return config.markdown[key];
  268. };
  269. configSchema.statics.isEnabledLinebreaksInComments = function(config) {
  270. const key = 'markdown:isEnabledLinebreaksInComments';
  271. // return default value if undefined
  272. if (undefined === config.markdown || undefined === config.markdown[key]) {
  273. return getDefaultMarkdownConfigs()[key];
  274. }
  275. return config.markdown[key];
  276. };
  277. configSchema.statics.isXSSPrevented = function(config) {
  278. const key = 'markdown:XSS:isPrevented';
  279. // return default value if undefined
  280. if (undefined === config.markdown || undefined === config.markdown[key]) {
  281. return getDefaultMarkdownConfigs[key];
  282. }
  283. return config.markdown[key];
  284. };
  285. configSchema.statics.XSSOption = function(config) {
  286. const key = 'markdown:XSS:option';
  287. // return default value if undefined
  288. if (undefined === config.markdown || undefined === config.markdown[key]) {
  289. return getDefaultMarkdownConfigs[key];
  290. }
  291. return config.markdown[key];
  292. };
  293. configSchema.statics.tagWhiteList = function(config) {
  294. const key = 'markdown:XSS:tagWhiteList';
  295. // return default value if undefined
  296. if (undefined === config.markdown || undefined === config.markdown[key]) {
  297. return getDefaultMarkdownConfigs[key];
  298. }
  299. return config.markdown[key];
  300. };
  301. configSchema.statics.attrWhiteList = function(config) {
  302. const key = 'markdown:XSS:attrWhiteList';
  303. // return default value if undefined
  304. if (undefined === config.markdown || undefined === config.markdown[key]) {
  305. return getDefaultMarkdownConfigs[key];
  306. }
  307. return config.markdown[key];
  308. };
  309. /**
  310. * initialize custom css strings
  311. */
  312. configSchema.statics.initCustomCss = function(config) {
  313. const key = 'customize:css';
  314. const rawCss = getValueForCrowiNS(config, key);
  315. // uglify and store
  316. this._customCss = uglifycss.processString(rawCss);
  317. };
  318. configSchema.statics.customCss = function(config) {
  319. return this._customCss;
  320. };
  321. configSchema.statics.initCustomScript = function(config) {
  322. const key = 'customize:script';
  323. const rawScript = getValueForCrowiNS(config, key);
  324. // store as is
  325. this._customScript = rawScript;
  326. };
  327. configSchema.statics.customScript = function(config) {
  328. return this._customScript;
  329. };
  330. configSchema.statics.customHeader = function(config) {
  331. const key = 'customize:header';
  332. return getValueForCrowiNS(config, key);
  333. };
  334. configSchema.statics.theme = function(config) {
  335. const key = 'customize:theme';
  336. return getValueForCrowiNS(config, key);
  337. };
  338. configSchema.statics.customTitle = function(config, page) {
  339. const key = 'customize:title';
  340. let customTitle = getValueForCrowiNS(config, key);
  341. if (customTitle == null || customTitle.trim().length == 0) {
  342. customTitle = '{{page}} - {{sitename}}';
  343. }
  344. return customTitle
  345. .replace('{{sitename}}', this.appTitle(config))
  346. .replace('{{page}}', page);
  347. };
  348. configSchema.statics.behaviorType = function(config) {
  349. const key = 'customize:behavior';
  350. return getValueForCrowiNS(config, key);
  351. };
  352. configSchema.statics.layoutType = function(config) {
  353. const key = 'customize:layout';
  354. return getValueForCrowiNS(config, key);
  355. };
  356. configSchema.statics.highlightJsStyle = function(config) {
  357. const key = 'customize:highlightJsStyle';
  358. return getValueForCrowiNS(config, key);
  359. };
  360. configSchema.statics.highlightJsStyleBorder = function(config) {
  361. const key = 'customize:highlightJsStyleBorder';
  362. return getValueForCrowiNS(config, key);
  363. };
  364. configSchema.statics.isEnabledTimeline = function(config) {
  365. const key = 'customize:isEnabledTimeline';
  366. return getValueForCrowiNS(config, key);
  367. };
  368. configSchema.statics.isSavedStatesOfTabChanges = function(config) {
  369. const key = 'customize:isSavedStatesOfTabChanges';
  370. return getValueForCrowiNS(config, key);
  371. };
  372. configSchema.statics.isEnabledAttachTitleHeader = function(config) {
  373. const key = 'customize:isEnabledAttachTitleHeader';
  374. return getValueForCrowiNS(config, key);
  375. };
  376. configSchema.statics.fileUploadEnabled = function(config) {
  377. const Config = this;
  378. if (!Config.isUploadable(config)) {
  379. return false;
  380. }
  381. // convert to boolean
  382. return !!config.crowi['app:fileUpload'];
  383. };
  384. configSchema.statics.hasSlackConfig = function(config) {
  385. return Config.hasSlackToken(config) || Config.hasSlackIwhUrl(config);
  386. };
  387. /**
  388. * for Slack Incoming Webhooks
  389. */
  390. configSchema.statics.hasSlackIwhUrl = function(config) {
  391. if (!config.notification) {
  392. return false;
  393. }
  394. return (config.notification['slack:incomingWebhookUrl'] ? true : false);
  395. };
  396. configSchema.statics.isIncomingWebhookPrioritized = function(config) {
  397. if (!config.notification) {
  398. return false;
  399. }
  400. return (config.notification['slack:isIncomingWebhookPrioritized'] ? true : false);
  401. };
  402. configSchema.statics.hasSlackToken = function(config) {
  403. if (!config.notification) {
  404. return false;
  405. }
  406. return (config.notification['slack:token'] ? true : false);
  407. };
  408. configSchema.statics.getLocalconfig = function(config) {
  409. const Config = this;
  410. const env = crowi.getEnv();
  411. const local_config = {
  412. crowi: {
  413. title: Config.appTitle(crowi),
  414. url: config.crowi['app:url'] || '',
  415. },
  416. upload: {
  417. image: Config.isUploadable(config),
  418. file: Config.fileUploadEnabled(config),
  419. },
  420. behaviorType: Config.behaviorType(config),
  421. layoutType: Config.layoutType(config),
  422. isEnabledLinebreaks: Config.isEnabledLinebreaks(config),
  423. isEnabledLinebreaksInComments: Config.isEnabledLinebreaksInComments(config),
  424. isXSSPrevented: Config.isXSSPrevented(config),
  425. XSSOption: Config.XSSOption(config),
  426. tagWhiteList: Config.attrWhiteList(config),
  427. attrWhiteList: Config.tagWhiteList(config),
  428. highlightJsStyleBorder: Config.highlightJsStyleBorder(config),
  429. isSavedStatesOfTabChanges: Config.isSavedStatesOfTabChanges(config),
  430. env: {
  431. PLANTUML_URI: env.PLANTUML_URI || null,
  432. BLOCKDIAG_URI: env.BLOCKDIAG_URI || null,
  433. MATHJAX: env.MATHJAX || null,
  434. },
  435. };
  436. return local_config;
  437. };
  438. /*
  439. configSchema.statics.isInstalled = function(config)
  440. {
  441. if (!config.crowi) {
  442. return false;
  443. }
  444. if (config.crowi['app:installed']
  445. && config.crowi['app:installed'] !== '0.0.0') {
  446. return true;
  447. }
  448. return false;
  449. }
  450. */
  451. Config = mongoose.model('Config', configSchema);
  452. Config.SECURITY_REGISTRATION_MODE_OPEN = SECURITY_REGISTRATION_MODE_OPEN;
  453. Config.SECURITY_REGISTRATION_MODE_RESTRICTED = SECURITY_REGISTRATION_MODE_RESTRICTED;
  454. Config.SECURITY_REGISTRATION_MODE_CLOSED = SECURITY_REGISTRATION_MODE_CLOSED;
  455. return Config;
  456. };