
422 lines
15 KiB
Raw Normal View History

2020-06-27 17:11:31 +02:00
import config from "config";
import express, {NextFunction, Request, Response, Router} from 'express';
2020-07-15 15:13:40 +02:00
import * as fs from "fs";
import nunjucks from "nunjucks";
import * as path from "path";
import ApplicationComponent from "./ApplicationComponent.js";
import CacheProvider from "./CacheProvider.js";
import {route, setPublicUrl} from "./common/Routing.js";
import FrontendToolsComponent from "./components/FrontendToolsComponent.js";
import LogRequestsComponent from "./components/LogRequestsComponent.js";
import RedisComponent from "./components/RedisComponent.js";
import Controller from "./Controller.js";
import Migration, {MigrationType} from "./db/Migration.js";
import MysqlConnectionManager from "./db/MysqlConnectionManager.js";
import {ValidationBag, ValidationError} from "./db/Validator.js";
import Extendable, {MissingComponentError} from "./Extendable.js";
import {BadRequestError, HttpError, NotFoundHttpError, ServerError, ServiceUnavailableHttpError} from "./HttpError.js";
import {logger, loggingContextMiddleware} from "./Logger.js";
import SecurityError from "./SecurityError.js";
import {doesFileExist, Type} from "./Utils.js";
import WebSocketListener from "./WebSocketListener.js";
import TemplateError = nunjucks.lib.TemplateError;
2020-04-22 15:52:17 +02:00
export default abstract class Application implements Extendable<ApplicationComponent | WebSocketListener<Application>> {
2020-04-22 15:52:17 +02:00
private readonly version: string;
private coreVersion: string = 'unknown';
private readonly ignoreCommandLine: boolean;
2020-04-22 15:52:17 +02:00
private readonly controllers: Controller[] = [];
private readonly webSocketListeners: { [p: string]: WebSocketListener<Application> } = {};
private readonly components: ApplicationComponent[] = [];
2020-07-19 11:57:47 +02:00
private cacheProvider?: CacheProvider;
2020-04-22 15:52:17 +02:00
private ready: boolean = false;
private started: boolean = false;
private busy: boolean = false;
2020-04-22 15:52:17 +02:00
protected constructor(version: string, ignoreCommandLine: boolean = false) {
2020-04-22 15:52:17 +02:00
this.version = version;
this.ignoreCommandLine = ignoreCommandLine;
2020-04-22 15:52:17 +02:00
protected abstract getMigrations(): MigrationType<Migration>[];
protected abstract init(): Promise<void>;
2020-04-22 15:52:17 +02:00
protected use(thing: Controller | WebSocketListener<this> | ApplicationComponent): void {
2020-04-22 15:52:17 +02:00
if (thing instanceof Controller) {
2020-04-22 15:52:17 +02:00
} else if (thing instanceof WebSocketListener) {
const path = thing.path();
this.webSocketListeners[path] = thing;
2020-07-19 11:57:47 +02:00
logger.info(`Added websocket listener on ${path}`);
2020-04-22 15:52:17 +02:00
} else {
2020-04-22 15:52:17 +02:00
2020-07-19 11:57:47 +02:00
if (thing instanceof RedisComponent) {
this.cacheProvider = thing;
2020-04-22 15:52:17 +02:00
public async start(): Promise<void> {
if (this.started) throw new Error('Application already started');
if (this.busy) throw new Error('Application busy');
this.busy = true;
// Load core version
const file = await this.isInNodeModules() ?
'node_modules/swaf/package.json' :
try {
this.coreVersion = JSON.parse(fs.readFileSync(file).toString()).version;
} catch (e) {
logger.warn('Couldn\'t determine coreVersion.', e);
logger.info(`${config.get('app.name')} v${this.version} | swaf v${this.coreVersion}`);
// Catch interrupt signals
const exitHandler = () => {
2020-04-22 15:52:17 +02:00
process.once('exit', exitHandler);
process.once('SIGINT', exitHandler);
process.once('SIGUSR1', exitHandler);
process.once('SIGUSR2', exitHandler);
process.once('SIGTERM', exitHandler);
process.once('uncaughtException', exitHandler);
2020-04-22 15:52:17 +02:00
// Register migrations
// Register and initialize all components and alike
await this.init();
for (const component of this.components) {
await component.init?.();
// Process command line
if (!this.ignoreCommandLine) {
let result: boolean;
try {
result = await this.processCommandLine();
} catch (err) {
if (result) {
this.started = true;
this.busy = false;
// Security
if (process.env.NODE_ENV === 'production') {
await this.checkSecuritySettings();
2020-04-22 15:52:17 +02:00
// Init express
const app = express();
// Logging context
// Routers
const initRouter = express.Router();
const handleRouter = express.Router();
2020-04-22 15:52:17 +02:00
// Error handlers
app.use((err: unknown, req: Request, res: Response, next: NextFunction) => {
if (res.headersSent) return next(err);
2020-04-22 15:52:17 +02:00
// Transform single validation errors into a validation bag for convenience
if (err instanceof ValidationError) {
const bag = new ValidationBag();
err = bag;
if (err instanceof ValidationBag) {
const bag = err;
2020-06-15 12:58:15 +02:00
json: () => {
2020-06-15 12:58:15 +02:00
status: 'error',
code: 400,
2020-06-15 12:58:15 +02:00
message: 'Invalid form data',
messages: bag.getMessages(),
2020-06-15 12:58:15 +02:00
text: () => {
res.send('Error: ' + bag.getMessages());
2020-06-15 12:58:15 +02:00
html: () => {
req.flash('validation', bag.getMessages());
res.redirect(req.getPreviousUrl() || route('home'));
2020-06-15 12:58:15 +02:00
const errorId = LogRequestsComponent.logRequest(req, res, err, '500 Internal Error',
err instanceof BadRequestError || err instanceof ServiceUnavailableHttpError);
2020-04-22 15:52:17 +02:00
let httpError: HttpError;
if (err instanceof HttpError) {
httpError = err;
} else if (err instanceof TemplateError && err.cause instanceof HttpError) {
httpError = err.cause;
} else {
httpError = new ServerError('Internal server error.', err instanceof Error ? err : undefined);
2020-04-22 15:52:17 +02:00
html: () => {
const locals = {
2020-04-22 15:52:17 +02:00
error_code: httpError.errorCode,
error_message: httpError.message,
error_instructions: httpError.instructions,
error_id: errorId,
res.render('errors/' + httpError.errorCode, locals, (err: Error | undefined, html) => {
if (err) {
res.render('errors/Error', locals);
} else {
2020-04-22 15:52:17 +02:00
json: () => {
status: 'error',
code: httpError.errorCode,
message: httpError.message,
instructions: httpError.instructions,
error_id: errorId,
2020-04-22 15:52:17 +02:00
default: () => {
res.type('txt').send(`${httpError.errorCode} - ${httpError.message}\n\n${httpError.instructions}\n\nError ID: ${errorId}`);
2020-04-22 15:52:17 +02:00
// Components routes
2020-04-22 15:52:17 +02:00
for (const component of this.components) {
if (component.initRoutes) {
await component.initRoutes(initRouter);
if (component.handleRoutes) {
await component.handleRoutes(handleRouter);
2020-04-22 15:52:17 +02:00
// Start components
for (const component of this.components) {
await component.start?.(app);
2020-04-22 15:52:17 +02:00
// Routes
this.routes(initRouter, handleRouter);
2020-04-22 15:52:17 +02:00
this.ready = true;
this.started = true;
this.busy = false;
2020-04-22 15:52:17 +02:00
protected async processCommandLine(): Promise<boolean> {
const args = process.argv;
// Flags
const flags = {
verbose: false,
fullHttpRequests: false,
watch: false,
let mainCommand: string | null = null;
const mainCommandArgs: string[] = [];
for (let i = 2; i < args.length; i++) {
switch (args[i]) {
case '--verbose':
flags.verbose = true;
2020-06-14 11:43:00 +02:00
case '--full-http-requests':
flags.fullHttpRequests = true;
2020-06-14 11:43:00 +02:00
case '--watch':
flags.watch = true;
case 'migration':
case 'pre-compile-views':
if (mainCommand === null) mainCommand = args[i];
else throw new Error(`Only one main command can be used at once (${mainCommand},${args[i]})`);
if (mainCommand) mainCommandArgs.push(args[i]);
else logger.fatal('Unrecognized argument', args[i]);
return true;
if (flags.verbose) logger.setSettings({minLevel: "trace"});
if (flags.fullHttpRequests) LogRequestsComponent.logFullHttpRequests();
if (mainCommand) {
switch (mainCommand) {
case 'migration':
await MysqlConnectionManager.migrationCommand(mainCommandArgs);
await this.stop();
case 'pre-compile-views': {
// Prepare migrations
for (const migration of this.getMigrations()) {
new migration().registerModels?.();
// Prepare routes
for (const controller of this.controllers) {
const frontendToolsComponent = this.as(FrontendToolsComponent);
await frontendToolsComponent.preCompileViews(flags.watch);
logger.fatal('Unimplemented main command', mainCommand);
return true;
return false;
private async checkSecuritySettings(): Promise<void> {
2020-07-15 15:13:40 +02:00
// Check config file permissions
const configDir = 'config';
for (const file of fs.readdirSync(configDir)) {
const fullPath = path.resolve(configDir, file);
const stats = fs.lstatSync(fullPath);
2020-07-15 15:13:40 +02:00
if (stats.uid !== process.getuid())
2020-07-15 15:39:08 +02:00
throw new SecurityError(`${fullPath} is not owned by this process (${process.getuid()}).`);
const mode = (stats.mode & parseInt('777', 8)).toString(8);
if (mode !== '400')
throw new SecurityError(`${fullPath} is ${mode}; should be 400.`);
2020-07-15 15:13:40 +02:00
// Check security fields
for (const component of this.components) {
await component.checkSecuritySettings?.();
2020-09-23 08:46:21 +02:00
public async stop(): Promise<void> {
if (this.started && !this.busy) {
this.busy = true;
logger.info('Stopping application...');
2020-04-22 15:52:17 +02:00
for (const component of this.components) {
await component.stop?.();
2020-04-22 15:52:17 +02:00
logger.info(`${this.constructor.name} stopped properly.`);
this.started = false;
this.busy = false;
2020-04-22 15:52:17 +02:00
private routes(initRouter: Router, handleRouter: Router) {
2020-04-22 15:52:17 +02:00
for (const controller of this.controllers) {
if (controller.hasGlobalMiddlewares()) {
2020-04-22 15:52:17 +02:00
logger.info(`Registered global middlewares for controller ${controller.constructor.name}`);
2020-04-22 15:52:17 +02:00
for (const controller of this.controllers) {
const {mainRouter, fileUploadFormRouter} = controller.setupRoutes();
initRouter.use(controller.getRoutesPrefix(), fileUploadFormRouter);
handleRouter.use(controller.getRoutesPrefix(), mainRouter);
2020-04-22 15:52:17 +02:00
logger.info(`> Registered routes for controller ${controller.constructor.name} at ${controller.getRoutesPrefix()}`);
2020-04-22 15:52:17 +02:00
handleRouter.use((req: Request) => {
2020-04-22 15:52:17 +02:00
throw new NotFoundHttpError('page', req.originalUrl);
public getWebSocketListeners(): { [p: string]: WebSocketListener<Application> } {
2020-07-19 11:57:47 +02:00
return this.webSocketListeners;
public getCache(): CacheProvider | null {
return this.cacheProvider || null;
2020-07-19 11:57:47 +02:00
2020-09-23 08:46:21 +02:00
public getComponents(): ApplicationComponent[] {
return [...this.components];
public as<C extends ApplicationComponent | WebSocketListener<Application>>(type: Type<C>): C {
const module = this.components.find(component => component.constructor === type) ||
Object.values(this.webSocketListeners).find(listener => listener.constructor === type);
if (!module) throw new Error(`This app doesn't have a ${type.name} component.`);
return module as C;
public asOptional<C extends ApplicationComponent | WebSocketListener<Application>>(type: Type<C>): C | null {
const module = this.components.find(component => component.constructor === type) ||
Object.values(this.webSocketListeners).find(listener => listener.constructor === type);
return module ? module as C : null;
2020-09-23 08:46:21 +02:00
public has<C extends ApplicationComponent | WebSocketListener<Application>>(type: Type<C>): boolean {
return !!this.asOptional(type);
public require<C extends ApplicationComponent | WebSocketListener<Application>>(type: Type<C>): void {
if (!this.has(type)) {
throw new MissingComponentError(type);
public async isInNodeModules(): Promise<boolean> {
return await doesFileExist('node_modules/swaf');
public isReady(): boolean {
return this.ready;
public getVersion(): string {
return this.version;
public getCoreVersion(): string {
return this.coreVersion;