2023-06-03 21:58:38 +08:00
|
|
|
// import { Application, Router } from "./deps.ts";
|
2022-10-10 20:50:21 +08:00
|
|
|
import { SpacePrimitives } from "../common/spaces/space_primitives.ts";
|
2022-10-12 17:47:13 +08:00
|
|
|
import { AssetBundle } from "../plugos/asset_bundle/bundle.ts";
|
2023-05-24 02:53:53 +08:00
|
|
|
import { ensureSettingsAndIndex } from "../common/util.ts";
|
|
|
|
import { performLocalFetch } from "../common/proxy_fetch.ts";
|
2023-05-29 15:53:49 +08:00
|
|
|
import { BuiltinSettings } from "../web/types.ts";
|
|
|
|
import { gitIgnoreCompiler } from "./deps.ts";
|
|
|
|
import { FilteredSpacePrimitives } from "../common/spaces/filtered_space_primitives.ts";
|
2023-05-29 23:05:20 +08:00
|
|
|
import { CollabServer } from "./collab.ts";
|
2022-10-10 20:50:21 +08:00
|
|
|
|
2023-06-03 21:58:38 +08:00
|
|
|
// @deno-types="npm:@types/express@4.17.15"
|
|
|
|
import express from "npm:express@4.18.2";
|
|
|
|
import cookieParser from "npm:cookie-parser";
|
|
|
|
|
|
|
|
// @deno-types="npm:@types/express-ws"
|
|
|
|
import expressWebsockets from "npm:express-ws@5.0.2";
|
|
|
|
|
|
|
|
import { Buffer } from "node:buffer";
|
|
|
|
// @deno-types="npm:body-parser@1.19.2"
|
|
|
|
import bodyParser from "npm:body-parser@1.19.2";
|
|
|
|
|
2022-10-10 20:50:21 +08:00
|
|
|
export type ServerOptions = {
|
2022-12-04 13:24:06 +08:00
|
|
|
hostname: string;
|
2022-10-10 20:50:21 +08:00
|
|
|
port: number;
|
|
|
|
pagesPath: string;
|
2023-05-24 02:53:53 +08:00
|
|
|
clientAssetBundle: AssetBundle;
|
2022-12-05 19:14:21 +08:00
|
|
|
user?: string;
|
|
|
|
pass?: string;
|
2023-05-24 02:53:53 +08:00
|
|
|
certFile?: string;
|
|
|
|
keyFile?: string;
|
|
|
|
maxFileSizeMB?: number;
|
2022-10-10 20:50:21 +08:00
|
|
|
};
|
|
|
|
|
|
|
|
export class HttpServer {
|
2023-06-03 21:58:38 +08:00
|
|
|
private app: express.Express;
|
2022-12-04 13:24:06 +08:00
|
|
|
private hostname: string;
|
2022-10-10 20:50:21 +08:00
|
|
|
private port: number;
|
2022-12-05 19:14:21 +08:00
|
|
|
user?: string;
|
2022-10-10 20:50:21 +08:00
|
|
|
abortController?: AbortController;
|
2023-05-24 02:53:53 +08:00
|
|
|
clientAssetBundle: AssetBundle;
|
2023-05-29 15:53:49 +08:00
|
|
|
settings?: BuiltinSettings;
|
|
|
|
spacePrimitives: SpacePrimitives;
|
2023-05-29 23:05:20 +08:00
|
|
|
collab: CollabServer;
|
2022-10-10 20:50:21 +08:00
|
|
|
|
2023-05-24 02:53:53 +08:00
|
|
|
constructor(
|
2023-05-29 15:53:49 +08:00
|
|
|
spacePrimitives: SpacePrimitives,
|
2023-05-24 02:53:53 +08:00
|
|
|
private options: ServerOptions,
|
|
|
|
) {
|
2022-12-04 13:24:06 +08:00
|
|
|
this.hostname = options.hostname;
|
2022-10-10 20:50:21 +08:00
|
|
|
this.port = options.port;
|
2023-06-03 21:58:38 +08:00
|
|
|
this.app = expressWebsockets(express()).app;
|
2023-05-24 11:42:24 +08:00
|
|
|
this.user = options.user;
|
2023-05-24 02:53:53 +08:00
|
|
|
this.clientAssetBundle = options.clientAssetBundle;
|
2023-05-29 15:53:49 +08:00
|
|
|
|
|
|
|
let fileFilterFn: (s: string) => boolean = () => true;
|
|
|
|
this.spacePrimitives = new FilteredSpacePrimitives(
|
|
|
|
spacePrimitives,
|
|
|
|
(meta) => {
|
|
|
|
// Don't list file exceeding the maximum file size
|
|
|
|
if (
|
|
|
|
options.maxFileSizeMB &&
|
|
|
|
meta.size / (1024 * 1024) > options.maxFileSizeMB
|
|
|
|
) {
|
|
|
|
return false;
|
|
|
|
}
|
|
|
|
return fileFilterFn(meta.name);
|
|
|
|
},
|
|
|
|
async () => {
|
|
|
|
await this.reloadSettings();
|
|
|
|
if (typeof this.settings?.spaceIgnore === "string") {
|
|
|
|
fileFilterFn = gitIgnoreCompiler(this.settings.spaceIgnore).accepts;
|
|
|
|
} else {
|
|
|
|
fileFilterFn = () => true;
|
|
|
|
}
|
|
|
|
},
|
|
|
|
);
|
2023-05-29 23:05:20 +08:00
|
|
|
this.collab = new CollabServer(this.spacePrimitives);
|
|
|
|
this.collab.start();
|
2023-05-24 02:53:53 +08:00
|
|
|
}
|
2022-10-10 20:50:21 +08:00
|
|
|
|
2023-05-24 02:53:53 +08:00
|
|
|
// Replaces some template variables in index.html in a rather ad-hoc manner, but YOLO
|
|
|
|
renderIndexHtml() {
|
|
|
|
return this.clientAssetBundle.readTextFileSync(".client/index.html")
|
|
|
|
.replaceAll(
|
|
|
|
"{{SPACE_PATH}}",
|
|
|
|
this.options.pagesPath.replaceAll("\\", "\\\\"),
|
|
|
|
).replaceAll(
|
|
|
|
"{{SYNC_ENDPOINT}}",
|
|
|
|
"/.fs",
|
|
|
|
);
|
2022-10-10 20:50:21 +08:00
|
|
|
}
|
|
|
|
|
|
|
|
async start() {
|
2023-05-29 15:53:49 +08:00
|
|
|
await this.reloadSettings();
|
2023-06-03 21:58:38 +08:00
|
|
|
this.app.use(cookieParser());
|
|
|
|
this.app.all(/^(\/((?!\.fs).)*)$/, (req, res) => {
|
|
|
|
// console.log(req.path, req.method);
|
2022-10-10 20:50:21 +08:00
|
|
|
try {
|
2023-06-03 21:58:38 +08:00
|
|
|
const assetName = req.path.slice(1);
|
|
|
|
if (this.clientAssetBundle.has(assetName)) {
|
|
|
|
console.log("Serving asset", assetName);
|
|
|
|
if (
|
|
|
|
req.header("If-Modified-Since") ===
|
|
|
|
utcDateString(this.clientAssetBundle.getMtime(assetName))
|
|
|
|
) {
|
|
|
|
res.status(304);
|
|
|
|
res.send();
|
|
|
|
return;
|
|
|
|
}
|
|
|
|
res.status(200);
|
|
|
|
res.header(
|
|
|
|
"Content-type",
|
|
|
|
this.clientAssetBundle.getMimeType(assetName),
|
|
|
|
);
|
|
|
|
const data = this.clientAssetBundle.readFileSync(
|
|
|
|
assetName,
|
|
|
|
);
|
|
|
|
res.header("Cache-Control", "no-cache");
|
|
|
|
// res.header("Content-Length", "" + data.length);
|
|
|
|
res.header(
|
|
|
|
"Last-Modified",
|
|
|
|
utcDateString(this.clientAssetBundle.getMtime(assetName)),
|
|
|
|
);
|
2022-10-12 17:47:13 +08:00
|
|
|
|
2023-06-03 21:58:38 +08:00
|
|
|
if (req.method === "GET") {
|
|
|
|
const buf = Buffer.from(data);
|
|
|
|
console.log("Buffer length", buf.length, assetName);
|
|
|
|
res.send(buf);
|
|
|
|
// res.send
|
|
|
|
} else {
|
|
|
|
res.send();
|
|
|
|
}
|
|
|
|
return;
|
2022-10-10 20:50:21 +08:00
|
|
|
}
|
2023-06-03 21:58:38 +08:00
|
|
|
} catch (e: any) {
|
|
|
|
console.error("Error", e);
|
2022-10-10 20:50:21 +08:00
|
|
|
}
|
|
|
|
|
2023-06-03 21:58:38 +08:00
|
|
|
res.status(200);
|
|
|
|
res.header("Content-Type", "text/html");
|
|
|
|
res.send(this.renderIndexHtml());
|
2023-05-24 02:53:53 +08:00
|
|
|
});
|
|
|
|
|
2022-10-10 20:50:21 +08:00
|
|
|
// Pages API
|
2023-06-03 21:58:38 +08:00
|
|
|
this.app.use(
|
|
|
|
"/.fs",
|
|
|
|
// passwordMiddleware,
|
|
|
|
this.buildFsRouter(this.spacePrimitives),
|
2022-10-10 20:50:21 +08:00
|
|
|
);
|
2023-06-03 21:58:38 +08:00
|
|
|
this.app.listen(this.port, this.hostname, () => {
|
|
|
|
const visibleHostname = this.hostname === "0.0.0.0"
|
|
|
|
? "localhost"
|
|
|
|
: this.hostname;
|
|
|
|
console.log(
|
|
|
|
`SilverBullet is now running: http://${visibleHostname}:${this.port}`,
|
|
|
|
);
|
|
|
|
});
|
|
|
|
// return;
|
|
|
|
|
|
|
|
// this.collab.route(this.app);
|
2022-11-26 21:15:38 +08:00
|
|
|
}
|
|
|
|
|
2023-05-29 15:53:49 +08:00
|
|
|
async reloadSettings() {
|
|
|
|
// TODO: Throttle this?
|
|
|
|
this.settings = await ensureSettingsAndIndex(this.spacePrimitives);
|
|
|
|
}
|
|
|
|
|
2023-06-03 21:58:38 +08:00
|
|
|
private passwordAuth(
|
|
|
|
req: express.Request,
|
|
|
|
res: express.Response,
|
|
|
|
next: express.NextFunction,
|
|
|
|
) {
|
2022-12-22 18:21:12 +08:00
|
|
|
const excludedPaths = [
|
|
|
|
"/manifest.json",
|
|
|
|
"/favicon.png",
|
|
|
|
"/logo.png",
|
|
|
|
"/.auth",
|
|
|
|
];
|
2022-12-05 19:14:21 +08:00
|
|
|
if (this.user) {
|
2022-12-22 18:21:12 +08:00
|
|
|
const b64User = btoa(this.user);
|
2023-06-03 21:58:38 +08:00
|
|
|
if (!excludedPaths.includes(req.path)) {
|
|
|
|
const authCookie = req.cookies["auth"];
|
|
|
|
if (!authCookie || authCookie !== b64User) {
|
|
|
|
res.status(401);
|
|
|
|
res.send("Unauthorized, please authenticate");
|
|
|
|
return;
|
2022-12-22 18:21:12 +08:00
|
|
|
}
|
2023-06-03 21:58:38 +08:00
|
|
|
}
|
|
|
|
if (req.path === "/.auth") {
|
|
|
|
if (req.method === "GET") {
|
|
|
|
res.header("Content-type", "text/html");
|
|
|
|
res.send(this.clientAssetBundle.readTextFileSync(
|
|
|
|
".client/auth.html",
|
|
|
|
));
|
|
|
|
return;
|
|
|
|
} else if (req.method === "POST") {
|
|
|
|
bodyParser.urlencoded({ extended: false })(req, res, next);
|
|
|
|
// const values = req.body;
|
|
|
|
const username = req.body.username,
|
|
|
|
password = req.body.password,
|
|
|
|
refer = req.body.refer;
|
|
|
|
if (this.user === `${username}:${password}`) {
|
|
|
|
res.cookie("auth", b64User, {
|
|
|
|
expires: new Date(Date.now() + 1000 * 60 * 60 * 24 * 7), // in a week
|
|
|
|
sameSite: "strict",
|
|
|
|
});
|
|
|
|
res.redirect(refer || "/");
|
|
|
|
// console.log("All headers", request.headers);
|
2022-12-15 19:59:31 +08:00
|
|
|
} else {
|
2023-06-03 21:58:38 +08:00
|
|
|
res.redirect("/.auth?error=1");
|
2022-12-15 19:59:31 +08:00
|
|
|
}
|
2023-06-03 21:58:38 +08:00
|
|
|
return;
|
2022-10-18 02:35:38 +08:00
|
|
|
} else {
|
2023-06-03 21:58:38 +08:00
|
|
|
res.status(401);
|
|
|
|
res.send("Unauthorized");
|
|
|
|
return;
|
2022-10-18 02:35:38 +08:00
|
|
|
}
|
2023-06-03 21:58:38 +08:00
|
|
|
} else {
|
|
|
|
// Unauthenticated access to excluded paths
|
|
|
|
next();
|
|
|
|
}
|
2022-10-18 02:35:38 +08:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2023-06-03 21:58:38 +08:00
|
|
|
private buildFsRouter(spacePrimitives: SpacePrimitives): express.Router {
|
|
|
|
const fsRouter = express.Router();
|
2022-10-18 02:35:38 +08:00
|
|
|
// File list
|
2023-06-03 21:58:38 +08:00
|
|
|
fsRouter.route("/").get(async (_req, res) => {
|
|
|
|
res.header("X-Space-Path", this.options.pagesPath);
|
|
|
|
res.json(await spacePrimitives.fetchFileList());
|
|
|
|
}).post(
|
|
|
|
bodyParser.json({
|
|
|
|
type: "*/*",
|
|
|
|
}),
|
|
|
|
async (req, res) => {
|
|
|
|
// console.log("RPC", req.body);
|
|
|
|
const body = req.body;
|
|
|
|
try {
|
|
|
|
switch (body.operation) {
|
|
|
|
case "fetch": {
|
|
|
|
const result = await performLocalFetch(body.url, body.options);
|
|
|
|
console.log("Proxying fetch request to", body.url);
|
|
|
|
res.header("Content-Type", "application/json");
|
|
|
|
res.send(JSON.stringify(result));
|
2023-05-24 02:53:53 +08:00
|
|
|
return;
|
|
|
|
}
|
2023-06-03 21:58:38 +08:00
|
|
|
case "shell": {
|
|
|
|
// TODO: Have a nicer way to do this
|
|
|
|
if (this.options.pagesPath.startsWith("s3://")) {
|
|
|
|
res.status(500);
|
|
|
|
res.header("Content-Type", "application/json");
|
|
|
|
res.send(JSON.stringify({
|
|
|
|
stdout: "",
|
|
|
|
stderr: "Cannot run shell commands with S3 backend",
|
|
|
|
code: 500,
|
|
|
|
}));
|
|
|
|
return;
|
|
|
|
}
|
|
|
|
const p = new Deno.Command(body.cmd, {
|
|
|
|
args: body.args,
|
|
|
|
cwd: this.options.pagesPath,
|
|
|
|
stdout: "piped",
|
|
|
|
stderr: "piped",
|
|
|
|
});
|
|
|
|
const output = await p.output();
|
|
|
|
const stdout = new TextDecoder().decode(output.stdout);
|
|
|
|
const stderr = new TextDecoder().decode(output.stderr);
|
2023-05-24 02:53:53 +08:00
|
|
|
|
2023-06-03 21:58:38 +08:00
|
|
|
res.header("Content-Type", "application/json");
|
|
|
|
res.send(JSON.stringify({
|
|
|
|
stdout,
|
|
|
|
stderr,
|
|
|
|
code: output.code,
|
|
|
|
}));
|
|
|
|
return;
|
|
|
|
}
|
|
|
|
case "ping": {
|
|
|
|
// RPC to check (for collab purposes) which client has what page open
|
|
|
|
res.header("Content-Type", "application/json");
|
|
|
|
// console.log("Got ping", body);
|
|
|
|
res.send(JSON.stringify(
|
|
|
|
this.collab.ping(body.clientId, body.page),
|
|
|
|
));
|
|
|
|
return;
|
|
|
|
}
|
|
|
|
default:
|
|
|
|
res.header("Content-Type", "text/plain");
|
|
|
|
res.status(400);
|
|
|
|
res.send("Unknown operation");
|
2023-05-29 23:05:20 +08:00
|
|
|
}
|
2023-06-03 21:58:38 +08:00
|
|
|
} catch (e: any) {
|
|
|
|
console.log("Error", e);
|
|
|
|
res.status(500);
|
|
|
|
res.send(e.message);
|
|
|
|
return;
|
2023-05-24 02:53:53 +08:00
|
|
|
}
|
2023-06-03 21:58:38 +08:00
|
|
|
},
|
|
|
|
);
|
2023-05-24 02:53:53 +08:00
|
|
|
|
2022-10-18 02:35:38 +08:00
|
|
|
fsRouter
|
2023-06-03 21:58:38 +08:00
|
|
|
.route(/\/(.+)/)
|
|
|
|
.get(async (req, res) => {
|
|
|
|
const name = req.params[0];
|
|
|
|
|
2023-05-24 02:53:53 +08:00
|
|
|
console.log("Loading file", name);
|
2022-10-18 02:35:38 +08:00
|
|
|
try {
|
|
|
|
const attachmentData = await spacePrimitives.readFile(
|
|
|
|
name,
|
|
|
|
);
|
2022-10-21 22:56:46 +08:00
|
|
|
const lastModifiedHeader = new Date(attachmentData.meta.lastModified)
|
|
|
|
.toUTCString();
|
2023-06-03 21:58:38 +08:00
|
|
|
if (req.header("If-Modified-Since") === lastModifiedHeader) {
|
|
|
|
res.status(304);
|
|
|
|
res.end();
|
2022-10-21 22:56:46 +08:00
|
|
|
return;
|
|
|
|
}
|
2023-06-03 21:58:38 +08:00
|
|
|
res.status(200);
|
|
|
|
res.header(
|
2022-10-18 02:35:38 +08:00
|
|
|
"X-Last-Modified",
|
|
|
|
"" + attachmentData.meta.lastModified,
|
|
|
|
);
|
2023-06-03 21:58:38 +08:00
|
|
|
res.header("Cache-Control", "no-cache");
|
|
|
|
res.header("X-Permission", attachmentData.meta.perm);
|
|
|
|
res.header(
|
2022-10-21 22:56:46 +08:00
|
|
|
"Last-Modified",
|
|
|
|
lastModifiedHeader,
|
|
|
|
);
|
2023-06-03 21:58:38 +08:00
|
|
|
res.header("Content-Type", attachmentData.meta.contentType);
|
|
|
|
res.send(Buffer.from(attachmentData.data));
|
2022-10-18 02:35:38 +08:00
|
|
|
} catch {
|
|
|
|
// console.error("Error in main router", e);
|
2023-06-03 21:58:38 +08:00
|
|
|
res.status(404);
|
|
|
|
res.end();
|
2022-10-18 02:35:38 +08:00
|
|
|
}
|
|
|
|
})
|
2023-06-03 21:58:38 +08:00
|
|
|
.put(
|
|
|
|
bodyParser.raw({ type: "*/*", limit: "100mb" }),
|
|
|
|
async (req, res) => {
|
|
|
|
const name = req.params[0];
|
|
|
|
console.log("Saving file", name);
|
2022-10-18 02:35:38 +08:00
|
|
|
|
2023-06-03 21:58:38 +08:00
|
|
|
try {
|
|
|
|
const meta = await spacePrimitives.writeFile(
|
|
|
|
name,
|
|
|
|
new Uint8Array(req.body as ArrayBuffer),
|
|
|
|
);
|
|
|
|
res.status(200);
|
|
|
|
res.header("Content-Type", meta.contentType);
|
|
|
|
res.header("X-Last-Modified", "" + meta.lastModified);
|
|
|
|
res.header("X-Content-Length", "" + meta.size);
|
|
|
|
res.header("X-Permission", meta.perm);
|
|
|
|
res.send("OK");
|
|
|
|
} catch (err) {
|
|
|
|
res.status(500);
|
|
|
|
res.send("Write failed");
|
|
|
|
console.error("Pipeline failed", err);
|
|
|
|
}
|
|
|
|
},
|
|
|
|
)
|
|
|
|
.options(async (req, res) => {
|
|
|
|
const name = req.params[0];
|
2022-10-18 02:35:38 +08:00
|
|
|
try {
|
|
|
|
const meta = await spacePrimitives.getFileMeta(name);
|
2023-06-03 21:58:38 +08:00
|
|
|
res.status(200);
|
|
|
|
res.header("Content-Type", meta.contentType);
|
|
|
|
res.header("X-Last-Modified", "" + meta.lastModified);
|
|
|
|
res.header("X-Content-Length", "" + meta.size);
|
|
|
|
res.header("X-Permission", meta.perm);
|
2022-10-18 02:35:38 +08:00
|
|
|
} catch {
|
2023-06-03 21:58:38 +08:00
|
|
|
res.status(404);
|
|
|
|
res.send("Not found");
|
2022-10-18 02:35:38 +08:00
|
|
|
// console.error("Options failed", err);
|
|
|
|
}
|
|
|
|
})
|
2023-06-03 21:58:38 +08:00
|
|
|
.delete(async (req, res) => {
|
|
|
|
const name = req.params[0];
|
2023-05-25 23:21:51 +08:00
|
|
|
console.log("Deleting file", name);
|
2022-10-18 02:35:38 +08:00
|
|
|
try {
|
|
|
|
await spacePrimitives.deleteFile(name);
|
2023-06-03 21:58:38 +08:00
|
|
|
res.status(200);
|
|
|
|
res.send("OK");
|
2022-10-18 02:35:38 +08:00
|
|
|
} catch (e: any) {
|
|
|
|
console.error("Error deleting attachment", e);
|
2023-06-03 21:58:38 +08:00
|
|
|
res.status(200);
|
|
|
|
res.send(e.message);
|
2022-10-18 02:35:38 +08:00
|
|
|
}
|
|
|
|
});
|
2023-06-03 21:58:38 +08:00
|
|
|
return fsRouter;
|
2022-10-10 20:50:21 +08:00
|
|
|
}
|
|
|
|
|
2023-05-24 02:53:53 +08:00
|
|
|
stop() {
|
2022-10-10 20:50:21 +08:00
|
|
|
if (this.abortController) {
|
|
|
|
this.abortController.abort();
|
|
|
|
console.log("stopped server");
|
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|
2023-05-24 02:53:53 +08:00
|
|
|
|
|
|
|
function utcDateString(mtime: number): string {
|
|
|
|
return new Date(mtime).toUTCString();
|
|
|
|
}
|