api.js 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226
  1. const mime = require("mime-types");
  2. const fs = require('fs');
  3. const Path = require('path');
  4. const Security = require('../src/security.js');
  5. const MediaService = require('../model/mediaService.js');
  6. const MediaFileMetaModel = require('../model/mediaItemMeta.js').MediaFileMetaModel;
  7. const MediaFileTagModel = require('../model/mediaItemTag.js').MediaFileTagModel;
  8. const { AccessModel, ACCESS_TYPE, ACCESS_GRANT, ACCESS_TO } = require('../model/access.js');
  9. function MediaToJson(mediaData) {
  10. if (!mediaData)
  11. return null;
  12. if (mediaData.accessType === ACCESS_GRANT.readNoMeta)
  13. mediaData.meta = {
  14. height: mediaData.meta?.height,
  15. width: mediaData.meta?.width
  16. };
  17. return mediaData;
  18. }
  19. module.exports = { register: app => {
  20. app.router.post("/api/database/reload", (req, res) => {
  21. app.routerUtils.onApiRequest(req, res);
  22. if (!req.sessionObj?.accessList?.isAdmin)
  23. return app.routerUtils.onBadRequest(res);
  24. app.libraryManager.updateLibraries(app.databaseHelper).finally(x => { require('../src/autotagBuilder').rebuildPathTags(app); });
  25. app.routerUtils.jsonResponse(res, {});
  26. });
  27. app.router.get("/api/access/list", (req, res) => {
  28. app.routerUtils.onApiRequest(req, res);
  29. app.routerUtils.jsonResponse(res, req.sessionObj?.accessList || {});
  30. });
  31. app.router.post("/api/access/link", async (req, res) => { // /api/access/link, post: { linkIds: [string] (JSON) }
  32. app.routerUtils.onApiRequest(req, res);
  33. if (!req.post?.linkIds?.length)
  34. return app.routerUtils.httpResponse(res, 400, "Missing argument");
  35. try {
  36. for (let i of JSON.parse(req.post.linkIds)) {
  37. const access = await app.databaseHelper.findOne(AccessModel, { type: ACCESS_TYPE.link, typeData: i });
  38. if (access) {
  39. Security.addLinkToSession(req, access.id, i);
  40. if (access.accessTo == ACCESS_TO.admin)
  41. Security.setAdmin(req, true);
  42. }
  43. }
  44. }
  45. catch (err) {
  46. console.error(err);
  47. return app.routerUtils.onBadRequest(res);
  48. }
  49. app.routerUtils.jsonResponse(res, req.sessionObj.accessList);
  50. });
  51. app.router.del("/api/access/:id", async (req, res) => {
  52. app.routerUtils.onApiRequest(req, res);
  53. Security.removeFromSession(req, req.params.id);
  54. const access = await app.databaseHelper.fetch(AccessModel, { id: Object.keys(req.sessionObj.accessList).map(i => req.sessionObj.accessList[i]).filter(x => x.dbId).map(x => x.dbId), accessTo: ACCESS_TO.admin });
  55. const result = Security.setAdmin(req, !!(access?.length || 0));
  56. app.routerUtils.jsonResponse(res, result);
  57. });
  58. app.router.post("/api/media/:id/tag/del/:tag", async (req, res) => {
  59. app.routerUtils.onApiRequest(req, res);
  60. if (!req.params.id ||!req.params.tag)
  61. return app.routerUtils.onBadRequest(res);
  62. let checksum = [ req.params.id ];
  63. if (req.params.id === "list") {
  64. if (!req.body?.['list[]'])
  65. return app.routerUtils.onBadRequest(res);
  66. checksum = req.body['list[]'];
  67. }
  68. let data = await MediaService.fetchMultiple(app, checksum, req.sessionObj?.accessList, 0);
  69. data = Object.keys(data).map(x => data[x]).filter(x => x.ACCESS_TYPE != ACCESS_GRANT.write);
  70. await Promise.all(data.map(x => MediaService.updateVersionInDb(app, x.fixedSum)));
  71. await app.databaseHelper.remove(MediaFileTagModel, { md5sum: data.map(x => x.fixedSum), tag: decodeURIComponent(req.params.tag), fromMeta: 0 });
  72. const allMedias = await MediaService.fetchMultiple(app, checksum, req.sessionObj?.accessList, 0);
  73. app.routerUtils.jsonResponse(res, Object.keys(allMedias).map(x => allMedias[x]).map(x => MediaToJson(x)));
  74. });
  75. app.router.put("/api/media/:id/tag", async (req, res) => {
  76. app.routerUtils.onApiRequest(req, res);
  77. const requestedTag = req.body?.tag;
  78. if (!req.params.id ||!requestedTag)
  79. return app.routerUtils.onBadRequest(res);
  80. let checksum = [ req.params.id ];
  81. if (req.params.id === "list") {
  82. if (!req.body?.['list[]'])
  83. return app.routerUtils.onBadRequest(res);
  84. checksum = req.body['list[]'];
  85. }
  86. let data = await MediaService.fetchMultiple(app, checksum, req.sessionObj?.accessList, 0);
  87. data = Object.keys(data)
  88. .map(x => data[x])
  89. .filter(x => {
  90. if (x.ACCESS_TYPE != ACCESS_GRANT.write)
  91. return true;
  92. for (let existingTag of [...x.tags, ...x.fixedTags]) {
  93. if (existingTag === requestedTag || existingTag.startsWith(`${requestedTag}/`)) {
  94. return true;
  95. }
  96. }
  97. });
  98. await Promise.all(data.map(x => MediaService.updateVersionInDb(app, x.fixedSum)));
  99. let tag = data.map(x => new MediaFileTagModel(x.fixedSum, requestedTag, false));
  100. await app.databaseHelper.insertMultipleSameTable(tag);
  101. const allMedias = await MediaService.fetchMultiple(app, checksum, req.sessionObj?.accessList, 0);
  102. app.routerUtils.jsonResponse(res, Object.keys(allMedias).map(x => allMedias[x]).map(x => MediaToJson(x)));
  103. });
  104. app.router.patch("/api/media/:id/meta/:key", async (req, res) => {
  105. app.routerUtils.onApiRequest(req, res);
  106. if (!req.params.id ||!req.params.key || !Number.isInteger(req.body?.value?.length))
  107. return app.routerUtils.onBadRequest(res);
  108. let checksum = [ req.params.id ];
  109. if (req.params.id === "list") {
  110. if (!req.body?.['list[]'])
  111. return app.routerUtils.onBadRequest(res);
  112. checksum = req.body['list[]'];
  113. }
  114. let data = await MediaService.fetchMultiple(app, checksum, req.sessionObj?.accessList, 0);
  115. data = Object.keys(data)
  116. .map(x => data[x])
  117. .filter(x => x.ACCESS_TYPE != ACCESS_GRANT.write);
  118. await Promise.all(data.map(x => MediaService.updateVersionInDb(app, x.fixedSum)));
  119. if (!req.body.value) {
  120. await app.databaseHelper.remove(MediaFileMetaModel, { md5sum: data.map(x => x.fixedSum), key: req.params.key, fromFile: 0 });
  121. } else {
  122. let newMediaItemMedia = data.map(x => new MediaFileMetaModel(x.fixedSum, req.params.key, req.body.value, false));
  123. await app.databaseHelper.remove(MediaFileMetaModel, { md5sum: data.map(x => x.fixedSum), key: req.params.key, fromFile: 0 });
  124. await app.databaseHelper.insertMultipleSameTable(newMediaItemMedia);
  125. }
  126. const allMedias = await MediaService.fetchMultiple(app, checksum, req.sessionObj?.accessList);
  127. app.routerUtils.jsonResponse(res, Object.keys(allMedias).map(x => allMedias[x]).map(x => MediaToJson(x)));
  128. });
  129. app.router.get("/api/media/list", async (req, res) => {
  130. app.routerUtils.onApiRequest(req, res);
  131. let first = undefined,
  132. last = undefined,
  133. maxVersion = undefined;
  134. if (req.body?.chronology !== undefined) {
  135. let range = await MediaService.getMediaRange(app);
  136. first = range.min;
  137. last = range.max;
  138. maxVersion = range.maxVersion;
  139. }
  140. let fromDate = parseInt(req.body?.from);
  141. let count = parseInt(req.body?.count);
  142. app.routerUtils.jsonResponse(res, {
  143. data: (await MediaService.fetchMediasWithAccess(
  144. app,
  145. isNaN(fromDate) ? 0 : fromDate,
  146. isNaN(count) ? 25 : Math.min(350, count),
  147. req.sessionObj?.accessList,
  148. req.body?.version || 0)).map(MediaToJson),
  149. first: first,
  150. last: last,
  151. maxVersion: maxVersion
  152. });
  153. });
  154. app.router.get("/api/media/sumlist", async (req, res) => {
  155. app.routerUtils.onApiRequest(req, res);
  156. app.routerUtils.jsonResponse(res, {
  157. data: await MediaService.fetchMediasSumWithAccess(
  158. app,
  159. req.sessionObj?.accessList)
  160. });
  161. });
  162. app.router.get("/api/media/:md5sum", async (req, res) => {
  163. app.routerUtils.onApiRequest(req, res);
  164. let data = MediaToJson(await MediaService.fetchOne(app, req.params.md5sum, req.sessionObj?.accessList, 0));
  165. if (!data)
  166. return app.routerUtils.onPageNotFound(res);
  167. app.routerUtils.jsonResponse(res, data);
  168. });
  169. app.router.get("/api/media/thumbnail/:md5sum.jpg", async (req, res) => {
  170. app.routerUtils.onApiRequest(req, res);
  171. let data = await MediaService.fetchOne(app, req.params.md5sum, req.sessionObj?.accessList, 0);
  172. if (!data)
  173. return app.routerUtils.onPageNotFound(res);
  174. try {
  175. let thumbnail = null;
  176. req.body = req.body || {};
  177. req.body.w = parseInt(req.body.w || 0);
  178. req.body.h = parseInt(req.body.h || 0);
  179. req.body.q = parseInt(req.body.q || 6);
  180. try {
  181. thumbnail = await (await app.libraryManager.findMedia(data.path))?.createThumbnail(req.body.w, req.body.h, req.body.q);
  182. } catch (err) {
  183. return app.routerUtils.apiError(res);
  184. }
  185. if (!thumbnail)
  186. return app.routerUtils.onPageNotFound(res);
  187. res.setHeader("Content-Type", "image/jpeg");
  188. res.setHeader("Content-Length", fs.statSync(thumbnail.name)?.size || undefined);
  189. res.setHeader("Cache-Control", "private, max-age=2630000"); // 1 month cache
  190. let rd = fs.createReadStream(thumbnail.name);
  191. rd.once('end', () => thumbnail.removeCallback());
  192. rd.pipe(res);
  193. }
  194. catch (err) {
  195. console.error(err);
  196. app.routerUtils.onPageNotFound(res);
  197. }
  198. });
  199. app.router.get("/api/media/original/:md5sum", async (req, res) => {
  200. app.routerUtils.onApiRequest(req, res);
  201. let data = await MediaService.fetchOne(app, req.params.md5sum, req.sessionObj?.accessList, 0);
  202. if (!data)
  203. return app.routerUtils.onPageNotFound(res);
  204. const fileName = Path.basename(data.path);
  205. res.setHeader("Cache-Control", "private, max-age=2630000"); // 1 month cache
  206. if (data.accessType === ACCESS_GRANT.readNoMeta || req.body?.trim !== undefined) {
  207. console.log("remove meta");//-> trim metadata
  208. }
  209. res.setHeader("Content-Disposition", `attachment; filename="${fileName}"`);
  210. res.setHeader("Content-Type", mime.lookup(data.path));
  211. res.setHeader("Content-Length", fs.statSync(data.path)?.size || undefined);
  212. fs.createReadStream(data.path).pipe(res);
  213. });
  214. }};