init
This commit is contained in:
commit
6f427d4a22
20 changed files with 5508 additions and 0 deletions
99
routes/auth.js
Normal file
99
routes/auth.js
Normal file
|
@ -0,0 +1,99 @@
|
|||
let express = require('express');
|
||||
let passport = require('passport');
|
||||
let LocalStrategy = require('passport-local');
|
||||
let crypto = require('crypto');
|
||||
let db = require('../db');
|
||||
|
||||
let router = express.Router();
|
||||
|
||||
passport.use(new LocalStrategy(function verify(username, password, cb) {
|
||||
db.get('SELECT * FROM users WHERE username = ?', [username], function(err, row) {
|
||||
if (err) {
|
||||
return cb(err);
|
||||
}
|
||||
if (!row) {
|
||||
return cb(null, false, {
|
||||
message: 'Incorrect username or password.'
|
||||
});
|
||||
}
|
||||
|
||||
crypto.pbkdf2(password, row.salt, 310000, 32, 'sha256', function(err, hashedPassword) {
|
||||
if (err) {
|
||||
return cb(err);
|
||||
}
|
||||
if (!crypto.timingSafeEqual(row.hashed_password, hashedPassword)) {
|
||||
return cb(null, false, {
|
||||
message: 'Incorrect username or password.'
|
||||
});
|
||||
}
|
||||
return cb(null, row);
|
||||
});
|
||||
});
|
||||
}));
|
||||
|
||||
passport.serializeUser(function(user, cb) {
|
||||
process.nextTick(function() {
|
||||
cb(null, {
|
||||
id: user.id,
|
||||
username: user.username
|
||||
});
|
||||
});
|
||||
});
|
||||
|
||||
passport.deserializeUser(function(user, cb) {
|
||||
process.nextTick(function() {
|
||||
return cb(null, user);
|
||||
});
|
||||
});
|
||||
|
||||
router.get('/login', function(req, res, next) {
|
||||
res.render('login');
|
||||
});
|
||||
|
||||
router.post('/login/password', passport.authenticate('local', {
|
||||
successRedirect: '/',
|
||||
failureRedirect: '/login'
|
||||
}));
|
||||
|
||||
router.post('/logout', function(req, res, next) {
|
||||
req.logout(function(err) {
|
||||
if (err) {
|
||||
return next(err);
|
||||
}
|
||||
res.redirect('/');
|
||||
});
|
||||
});
|
||||
|
||||
router.get('/signup', function(req, res, next) {
|
||||
res.render('signup');
|
||||
});
|
||||
|
||||
router.post('/signup', function(req, res, next) {
|
||||
var salt = crypto.randomBytes(16);
|
||||
crypto.pbkdf2(req.body.password, salt, 310000, 32, 'sha256', function(err, hashedPassword) {
|
||||
if (err) {
|
||||
return next(err);
|
||||
}
|
||||
db.run('INSERT INTO users (username, hashed_password, salt) VALUES (?, ?, ?)', [
|
||||
req.body.username,
|
||||
hashedPassword,
|
||||
salt
|
||||
], function(err) {
|
||||
if (err) {
|
||||
return next(err);
|
||||
}
|
||||
var user = {
|
||||
id: this.lastID,
|
||||
username: req.body.username
|
||||
};
|
||||
req.login(user, function(err) {
|
||||
if (err) {
|
||||
return next(err);
|
||||
}
|
||||
res.redirect('/');
|
||||
});
|
||||
});
|
||||
});
|
||||
});
|
||||
|
||||
module.exports = router;
|
84
routes/index.js
Normal file
84
routes/index.js
Normal file
|
@ -0,0 +1,84 @@
|
|||
let express = require('express');
|
||||
let multer = require('multer');
|
||||
|
||||
let fs = require('fs');
|
||||
|
||||
function extension(string) {
|
||||
return string.slice((string.lastIndexOf(".") - 2 >>> 0) + 2);
|
||||
}
|
||||
|
||||
const storage = multer.diskStorage({
|
||||
destination: function (req, file, cb) {
|
||||
cb(null, 'uploads/')
|
||||
},
|
||||
filename : function(req, file, cb) {
|
||||
let prefix = Date.now();
|
||||
if (req.body.title == '' || req.body.title == null || req.body.title == undefined)
|
||||
cb(null, prefix + '-' + file.originalname)
|
||||
else
|
||||
cb(null, prefix + '-' + req.body.title + extension(file.originalname))
|
||||
}
|
||||
})
|
||||
|
||||
let upload = multer({ storage: storage });
|
||||
|
||||
let db = require('../db');
|
||||
|
||||
function fetchMedia(req, res, next) {
|
||||
db.all('SELECT * FROM media', (err, rows) => {
|
||||
if (err) return next(err);
|
||||
let files = rows.map((row)=> {
|
||||
return {
|
||||
id: row.id,
|
||||
path: row.path,
|
||||
expire: row.expire,
|
||||
url: '/' + row.id
|
||||
}
|
||||
});
|
||||
res.locals.files = files;
|
||||
res.locals.Count = files.length;
|
||||
next();
|
||||
});
|
||||
}
|
||||
|
||||
let router = express.Router();
|
||||
|
||||
router.get('/', function (req, res, next) {
|
||||
if (!req.user) { return res.render('home'); }
|
||||
next();
|
||||
}, fetchMedia, function(req, res, next) {
|
||||
res.locals.filter = null;
|
||||
res.render('index', { user: req.user });
|
||||
});
|
||||
|
||||
router.post('/', upload.single('fileupload'), function(req, res, next) {
|
||||
if (!req.file || Object.keys(req.file).length === 0) {
|
||||
return res.status(400).send('No files were uploaded.');
|
||||
}
|
||||
|
||||
db.run('INSERT INTO media (path) VALUES (?)', [req.file.filename], function (err) {
|
||||
if (err) return next(err);
|
||||
return res.redirect('/');
|
||||
})
|
||||
});
|
||||
|
||||
router.post('/:id(\\d+)/delete', function(req, res, next) {
|
||||
db.all('SELECT path FROM media WHERE id = ?', [ req.params.id ], function(err, path) {
|
||||
if (err) { return next(err); }
|
||||
fs.unlink('uploads/' + path[0].path, (err => {
|
||||
if (err) console.log(err);
|
||||
else {
|
||||
console.log(`Deleted ${path}`);
|
||||
//Callback Hell :D
|
||||
db.run('DELETE FROM media WHERE id = ?', [
|
||||
req.params.id
|
||||
], function(err) {
|
||||
if (err) { return next(err); }
|
||||
return res.redirect('/');
|
||||
});
|
||||
}
|
||||
}));
|
||||
});
|
||||
});
|
||||
|
||||
module.exports = router;
|
Loading…
Add table
Add a link
Reference in a new issue