2023-03-21 06:53:39 +00:00
|
|
|
const fs = require('fs');
|
|
|
|
const NodeRSA = require('node-rsa');
|
|
|
|
const logger = require('../logger').global;
|
|
|
|
|
|
|
|
const keysFile = '/data/keys.json';
|
|
|
|
|
|
|
|
let instance = null;
|
|
|
|
|
|
|
|
// 1. Load from config file first (not recommended anymore)
|
|
|
|
// 2. Use config env variables next
|
|
|
|
const configure = () => {
|
|
|
|
const filename = (process.env.NODE_CONFIG_DIR || './config') + '/' + (process.env.NODE_ENV || 'default') + '.json';
|
|
|
|
if (fs.existsSync(filename)) {
|
|
|
|
let configData;
|
|
|
|
try {
|
|
|
|
configData = require(filename);
|
|
|
|
} catch (err) {
|
|
|
|
// do nothing
|
|
|
|
}
|
2023-03-21 07:11:16 +00:00
|
|
|
|
|
|
|
if (configData && configData.database) {
|
2023-03-21 06:53:39 +00:00
|
|
|
logger.info(`Using configuration from file: ${filename}`);
|
2023-03-21 07:59:27 +00:00
|
|
|
instance = configData;
|
|
|
|
instance.keys = getKeys();
|
2023-03-21 06:53:39 +00:00
|
|
|
return;
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
const envMysqlHost = process.env.DB_MYSQL_HOST || null;
|
|
|
|
const envMysqlUser = process.env.DB_MYSQL_USER || null;
|
|
|
|
const envMysqlName = process.env.DB_MYSQL_NAME || null;
|
|
|
|
if (envMysqlHost && envMysqlUser && envMysqlName) {
|
|
|
|
// we have enough mysql creds to go with mysql
|
|
|
|
logger.info('Using MySQL configuration');
|
|
|
|
instance = {
|
|
|
|
database: {
|
|
|
|
engine: 'mysql',
|
|
|
|
host: envMysqlHost,
|
|
|
|
port: process.env.DB_MYSQL_PORT || 3306,
|
|
|
|
user: envMysqlUser,
|
|
|
|
password: process.env.DB_MYSQL_PASSWORD,
|
|
|
|
name: envMysqlName,
|
2023-03-21 07:59:27 +00:00
|
|
|
},
|
|
|
|
keys: getKeys(),
|
2023-03-21 06:53:39 +00:00
|
|
|
};
|
|
|
|
return;
|
|
|
|
}
|
|
|
|
|
|
|
|
const envSqliteFile = process.env.DB_SQLITE_FILE || '/data/database.sqlite';
|
|
|
|
logger.info(`Using Sqlite: ${envSqliteFile}`);
|
|
|
|
instance = {
|
|
|
|
database: {
|
2023-03-21 07:11:16 +00:00
|
|
|
engine: 'knex-native',
|
|
|
|
knex: {
|
2023-03-21 06:53:39 +00:00
|
|
|
client: 'sqlite3',
|
|
|
|
connection: {
|
|
|
|
filename: envSqliteFile
|
|
|
|
},
|
|
|
|
useNullAsDefault: true
|
|
|
|
}
|
2023-03-21 07:59:27 +00:00
|
|
|
},
|
|
|
|
keys: getKeys(),
|
2023-03-21 06:53:39 +00:00
|
|
|
};
|
2023-03-21 07:59:27 +00:00
|
|
|
};
|
2023-03-21 06:53:39 +00:00
|
|
|
|
2023-03-21 07:59:27 +00:00
|
|
|
const getKeys = () => {
|
2023-03-21 06:53:39 +00:00
|
|
|
// Get keys from file
|
|
|
|
if (!fs.existsSync(keysFile)) {
|
|
|
|
generateKeys();
|
2023-03-21 07:11:16 +00:00
|
|
|
} else if (process.env.DEBUG) {
|
2023-03-21 06:53:39 +00:00
|
|
|
logger.info('Keys file exists OK');
|
|
|
|
}
|
|
|
|
try {
|
2023-03-21 07:59:27 +00:00
|
|
|
return require(keysFile);
|
2023-03-21 06:53:39 +00:00
|
|
|
} catch (err) {
|
|
|
|
logger.error('Could not read JWT key pair from config file: ' + keysFile, err);
|
|
|
|
process.exit(1);
|
|
|
|
}
|
|
|
|
};
|
|
|
|
|
|
|
|
const generateKeys = () => {
|
|
|
|
logger.info('Creating a new JWT key pair...');
|
|
|
|
// Now create the keys and save them in the config.
|
|
|
|
const key = new NodeRSA({ b: 2048 });
|
|
|
|
key.generateKeyPair();
|
|
|
|
|
|
|
|
const keys = {
|
|
|
|
key: key.exportKey('private').toString(),
|
|
|
|
pub: key.exportKey('public').toString(),
|
|
|
|
};
|
|
|
|
|
|
|
|
// Write keys config
|
|
|
|
try {
|
|
|
|
fs.writeFileSync(keysFile, JSON.stringify(keys, null, 2));
|
|
|
|
} catch (err) {
|
2024-06-30 13:27:54 +00:00
|
|
|
logger.error('Could not write JWT key pair to config file: ' + keysFile + ': ' + err.message);
|
2023-03-21 06:53:39 +00:00
|
|
|
process.exit(1);
|
|
|
|
}
|
|
|
|
logger.info('Wrote JWT key pair to config file: ' + keysFile);
|
|
|
|
};
|
|
|
|
|
|
|
|
module.exports = {
|
|
|
|
|
|
|
|
/**
|
|
|
|
*
|
|
|
|
* @param {string} key ie: 'database' or 'database.engine'
|
|
|
|
* @returns {boolean}
|
|
|
|
*/
|
|
|
|
has: function(key) {
|
|
|
|
instance === null && configure();
|
|
|
|
const keys = key.split('.');
|
2023-03-21 07:11:16 +00:00
|
|
|
let level = instance;
|
|
|
|
let has = true;
|
2023-03-21 06:53:39 +00:00
|
|
|
keys.forEach((keyItem) =>{
|
|
|
|
if (typeof level[keyItem] === 'undefined') {
|
|
|
|
has = false;
|
|
|
|
} else {
|
|
|
|
level = level[keyItem];
|
|
|
|
}
|
|
|
|
});
|
|
|
|
|
|
|
|
return has;
|
|
|
|
},
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Gets a specific key from the top level
|
|
|
|
*
|
|
|
|
* @param {string} key
|
|
|
|
* @returns {*}
|
|
|
|
*/
|
|
|
|
get: function (key) {
|
|
|
|
instance === null && configure();
|
|
|
|
if (key && typeof instance[key] !== 'undefined') {
|
|
|
|
return instance[key];
|
|
|
|
}
|
|
|
|
return instance;
|
|
|
|
},
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Is this a sqlite configuration?
|
|
|
|
*
|
|
|
|
* @returns {boolean}
|
|
|
|
*/
|
|
|
|
isSqlite: function () {
|
|
|
|
instance === null && configure();
|
2023-03-21 07:11:16 +00:00
|
|
|
return instance.database.knex && instance.database.knex.client === 'sqlite3';
|
2023-03-21 06:53:39 +00:00
|
|
|
},
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Are we running in debug mdoe?
|
|
|
|
*
|
|
|
|
* @returns {boolean}
|
|
|
|
*/
|
|
|
|
debug: function () {
|
|
|
|
return !!process.env.DEBUG;
|
|
|
|
},
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Returns a public key
|
|
|
|
*
|
|
|
|
* @returns {string}
|
|
|
|
*/
|
|
|
|
getPublicKey: function () {
|
|
|
|
instance === null && configure();
|
2023-03-21 07:11:16 +00:00
|
|
|
return instance.keys.pub;
|
2023-03-21 06:53:39 +00:00
|
|
|
},
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Returns a private key
|
|
|
|
*
|
|
|
|
* @returns {string}
|
|
|
|
*/
|
|
|
|
getPrivateKey: function () {
|
|
|
|
instance === null && configure();
|
2023-03-21 07:11:16 +00:00
|
|
|
return instance.keys.key;
|
2023-03-21 06:53:39 +00:00
|
|
|
},
|
|
|
|
|
|
|
|
/**
|
|
|
|
* @returns {boolean}
|
|
|
|
*/
|
|
|
|
useLetsencryptStaging: function () {
|
|
|
|
return !!process.env.LE_STAGING;
|
|
|
|
}
|
|
|
|
};
|