var express = require('express'), express_namespace = require('express-namespace'), WebServer = express(), server = require('http').createServer(WebServer), RedisStore = require('connect-redis')(express), path = require('path'), redis = require('redis'), redisServer = redis.createClient(global.nconf.get('redis:port'), global.nconf.get('redis:host')), marked = require('marked'), utils = require('../public/src/utils.js'), pkg = require('../package.json'), fs = require('fs'), user = require('./user.js'), categories = require('./categories.js'), posts = require('./posts.js'), topics = require('./topics.js'), notifications = require('./notifications.js'), admin = require('./routes/admin.js'), userRoute = require('./routes/user.js'), installRoute = require('./routes/install.js'), testBed = require('./routes/testbed.js'), auth = require('./routes/authentication.js'), meta = require('./meta.js'); (function(app) { var templates = null; app.build_header = function(res, metaTags) { var defaultMetaTags = [ { name: 'viewport', content: 'width=device-width, initial-scale=1.0' }, { name: 'content-type', content: 'text/html; charset=UTF-8' }, { name: 'apple-mobile-web-app-capable', content: 'yes' } ], metaString = utils.buildMetaTags(defaultMetaTags.concat(metaTags || [])); return templates['header'].parse({ cssSrc: global.config['theme:src'] || global.nconf.get('relative_path') + '/vendor/bootstrap/css/bootstrap.min.css', title: global.config['title'] || 'NodeBB', csrf:res.locals.csrf_token, relative_path: global.nconf.get('relative_path'), meta_tags: metaString }); }; // Middlewares app.use(express.favicon(path.join(__dirname, '../', 'public', 'favicon.ico'))); app.use(require('less-middleware')({ src: path.join(__dirname, '../', 'public') })); app.use(global.nconf.get('relative_path'), express.static(path.join(__dirname, '../', 'public'))); app.use(express.bodyParser()); // Puts POST vars in request.body app.use(express.cookieParser()); // If you want to parse cookies (res.cookies) app.use(express.compress()); app.use(express.session({ store: new RedisStore({ client: redisServer, ttl: 60*60*24*14 }), secret: global.nconf.get('secret'), key: 'express.sid' })); app.use(express.csrf()); app.use(function(req, res, next) { res.locals.csrf_token = req.session._csrf; next(); }); module.exports.init = function() { templates = global.templates; } auth.initialize(app); app.use(function(req, res, next) { global.nconf.set('https', req.secure); // Don't bother with session handling for API requests if (/^\/api\//.test(req.url)) return next(); if (req.user && req.user.uid) { user.session_ping(req.sessionID, req.user.uid); } // (Re-)register the session as active user.active.register(req.sessionID); next(); }); app.use(app.router); app.use(function(req, res, next) { res.status(404); // respond with html page if (req.accepts('html')) { //res.json('404', { url: req.url }); res.redirect(global.nconf.get('relative_path') + '/404'); return; } // respond with json if (req.accepts('json')) { console.log('sending 404 json'); res.send({ error: 'Not found' }); return; } // default to plain-text. send() res.type('txt').send('Not found'); }); app.use(function(err, req, res, next) { // we may use properties of the error object // here and next(err) appropriately, or if // we possibly recovered from the error, simply next(). console.error(err.stack); res.status(err.status || 500); res.json('500', { error: err.message }); }); app.create_route = function(url, tpl) { // to remove return ''; }; app.namespace(global.nconf.get('relative_path'), function() { auth.create_routes(app); admin.create_routes(app); userRoute.create_routes(app); installRoute.create_routes(app); testBed.create_routes(app); // Basic Routes (entirely client-side parsed, goal is to move the rest of the crap in this file into this one section) (function() { var routes = ['login', 'register', 'account', 'recent', 'popular', 'active', '403', '404']; for (var i=0, ii=routes.length; i 0)) { user.getUserField(req.user.uid, 'userslug', function(userslug) { res.redirect('/users/'+userslug); }); return; } res.send(app.build_header(res) + app.create_route(route) + templates['footer']); }); }(routes[i])); } }()); app.get('/', function(req, res) { categories.getAllCategories(function(returnData) { res.send( app.build_header(res) + '\n\t' + app.create_route('') + templates['footer'] ); }, 0); }); app.get('/topic/:topic_id/:slug?', function(req, res) { var tid = req.params.topic_id; if (tid.match(/^\d+\.rss$/)) { fs.readFile('feeds/topics/' + tid, function (err, data) { if (err) { res.type('text').send(404, "Unable to locate an rss feed at this location."); return; } res.type('xml').set('Content-Length', data.length).send(data); }); return; } var topic_url = tid + (req.params.slug ? '/' + req.params.slug : ''); topics.getTopicWithPosts(tid, ((req.user) ? req.user.uid : 0), function(err, topic) { if (err) return res.redirect('404'); res.send( app.build_header(res) + '\n\t' + '\n\t' + templates['footer'] ); }); }); app.get('/category/:category_id/:slug?', function(req, res) { var cid = req.params.category_id; if (cid.match(/^\d+\.rss$/)) { fs.readFile('feeds/categories/' + cid, function (err, data) { if (err) { res.type('text').send(404, "Unable to locate an rss feed at this location."); return; } res.type('xml').set('Content-Length', data.length).send(data); }); return; } var category_url = cid + (req.params.slug ? '/' + req.params.slug : ''); categories.getCategoryById(cid, 0, function(err, returnData) { if(err) return res.redirect('404'); res.send( app.build_header(res, [ { name: 'title', content: returnData.category_name }, { name: 'description', content: returnData.category_description } ]) + '\n\t' + '\n\t' + templates['footer'] ); }); }); app.get('/confirm/:code', function(req, res) { res.send(app.build_header(res) + '' + templates['footer']); }); app.get('/sitemap.xml', function(req, res) { var sitemap = require('./sitemap.js'); sitemap.render(function(xml) { res.type('xml').set('Content-Length', xml.length).send(xml); }); }); app.get('/robots.txt', function(req, res) { res.set('Content-Type', 'text/plain'); res.send( "User-agent: *\n" + "Disallow: \n" + "Disallow: /admin/\n" + "Sitemap: " + global.nconf.get('url') + "sitemap.xml"); }); app.get('/api/:method', api_method); app.get('/api/:method/:id', api_method); // ok fine MUST ADD RECURSION style. I'll look for a better fix in future but unblocking baris for this: app.get('/api/:method/:id/:section?', api_method); app.get('/api/:method/:id*', api_method); app.get('/cid/:cid', function(req, res) { categories.getCategoryData(req.params.cid, function(err, data) { if(data) res.send(data); else res.send(404, "Category doesn't exist!"); }); }); app.get('/tid/:tid', function(req, res) { topics.getTopicData(req.params.tid, function(data){ if(data) res.send(data); else res.send(404, "Topic doesn't exist!"); }); }); app.get('/pid/:pid', function(req, res) { posts.getPostData(req.params.pid, function(data){ if(data) res.send(data); else res.send(404, "Post doesn't exist!"); }); }); app.get('/outgoing', function(req, res) { var url = req.url.split('?'); if (url[1]) { res.send(app.build_header(res) + templates['outgoing'].parse({ url: url[1], home: global.nconf.get('url') }) + templates['footer']); } else { res.status(404); res.redirect(global.nconf.get('relative_path') + '/404'); } }); }); // These functions are called via ajax once the initial page is loaded to populate templates with data function api_method(req, res) { var uid = (req.user) ? req.user.uid : 0; switch(req.params.method) { case 'get_templates_listing' : utils.walk(global.configuration.ROOT_DIRECTORY + '/public/templates', function(err, data) { res.json(data); }); break; case 'home' : categories.getAllCategories(function(data) { var async = require('async'); function iterator(category, callback) { categories.getRecentReplies(category.cid, 2, function(posts) { category["posts"] = posts; category["post_count"] = posts.length>2 ? 2 : posts.length; callback(null); }); } async.each(data.categories, iterator, function(err) { data.motd_class = (config.show_motd === '1' || config.show_motd === undefined) ? '' : 'none'; data.motd = marked(config.motd || "# NodeBB v" + pkg.version + "\nWelcome to NodeBB, the discussion platform of the future.\n\n Get NodeBB Fork us on Github @dcplabs"); res.json(data); }); }, uid); break; case 'login' : var data = {}, login_strategies = auth.get_login_strategies(), num_strategies = login_strategies.length; if (num_strategies == 0) { data = { 'login_window:spansize': 'span12', 'alternate_logins:display': 'none' }; } else { data = { 'login_window:spansize': 'span6', 'alternate_logins:display': 'block' } for (var i=0, ii=num_strategies; i