jschan - Anonymous imageboard software. Classic look, modern features and feel. Works without JavaScript and supports Tor, I2P, Lokinet, etc.
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

89 lines
2.2 KiB

5 years ago
'use strict';
process.on('uncaughtException', console.error);
process.on('unhandledRejection', console.error);
const express = require('express')
, session = require('express-session')
, MongoStore = require('connect-mongo')(session)
, path = require('path')
, app = express()
, helmet = require('helmet')
, csrf = require('csurf')
, bodyParser = require('body-parser')
, cookieParser = require('cookie-parser')
, configs = require(__dirname+'/configs/main.json')
, Mongo = require(__dirname+'/db/db.js')
5 years ago
, upload = require('express-fileupload');
5 years ago
(async () => {
// let db connect
await Mongo.connect();
// parse forms and allow file uploads
app.use(bodyParser.urlencoded({extended: true}));
app.use(bodyParser.json());
app.use(upload({
createParentPath: true,
safeFileNames: true,
preserveExtension: 4,
limits: {
fileSize: 10 * 1024 * 1024,
files: 3
},
abortOnLimit: true,
useTempFile: true,
tempFileDir: path.join(__dirname+'/tmp/')
5 years ago
}));
// session store
app.use(session({
secret: configs.sessionSecret,
store: new MongoStore({ db: Mongo.client.db('sessions') }),
resave: false,
saveUninitialized: false
}));
app.use(cookieParser());
// csurf and helmet
app.use(helmet());
app.use(csrf());
// use pug view engine
app.set('view engine', 'pug');
app.set('views', path.join(__dirname, 'views/pages'));
app.enable('view cache');
5 years ago
// static files
app.use('/css', express.static(__dirname + '/static/css'));
app.use('/js', express.static(__dirname + '/static/js'));
app.use('/img', express.static(__dirname + '/static/img'));
// routes
app.use('/forms', require(__dirname+'/controllers/forms.js'))
app.use('/', require(__dirname+'/controllers/pages.js'))
5 years ago
app.get('*', (req, res) => {
res.status(404).render('404')
5 years ago
})
// catch any unhandled errors
5 years ago
app.use((err, req, res, next) => {
if (err.code === 'EBADCSRFTOKEN') {
return res.status(403).send('Invalid CSRF token')
}
console.error(err.stack)
return res.status(500).render('message', {
'title': 'Internal Server Error',
'redirect': req.header('Referer') || '/'
})
5 years ago
})
// listen
5 years ago
app.listen(configs.port, () => {
console.log(`Listening on port ${configs.port}`);
});
})();