mirror of
https://github.com/stonith404/pingvin-share.git
synced 2024-11-11 02:10:14 +01:00
02cd98fa9c
* feat(auth): add OAuth2 login with GitHub and Google * chore(translations): add files for Japanese * fix(auth): fix link function for GitHub * feat(oauth): basic oidc implementation * feat(oauth): oauth guard * fix: disable image optimizations for logo to prevent caching issues with custom logos * fix: memory leak while downloading large files * chore(translations): update translations via Crowdin (#278) * New translations en-us.ts (Japanese) * New translations en-us.ts (Japanese) * New translations en-us.ts (Japanese) * release: 0.18.2 * doc(translations): Add Japanese README (#279) * Added Japanese README. * Added JAPANESE README link to README.md. * Updated Japanese README. * Updated Environment Variable Table. * updated zh-cn README. * feat(oauth): unlink account * refactor(oauth): make providers extensible * fix(oauth): fix discoveryUri error when toggle google-enabled * feat(oauth): add microsoft and discord as oauth provider * docs(oauth): update README.md * docs(oauth): update oauth2-guide.md * set password to null for new oauth users * New translations en-us.ts (Japanese) (#281) * chore(translations): add Polish files * fix(oauth): fix random username and password * feat(oauth): add totp * fix(oauth): fix totp throttle * fix(oauth): fix qrcode and remove comment * feat(oauth): add error page * fix(oauth): i18n of error page * feat(auth): add OAuth2 login * fix(auth): fix link function for GitHub * feat(oauth): basic oidc implementation * feat(oauth): oauth guard * feat(oauth): unlink account * refactor(oauth): make providers extensible * fix(oauth): fix discoveryUri error when toggle google-enabled * feat(oauth): add microsoft and discord as oauth provider * docs(oauth): update README.md * docs(oauth): update oauth2-guide.md * set password to null for new oauth users * fix(oauth): fix random username and password * feat(oauth): add totp * fix(oauth): fix totp throttle * fix(oauth): fix qrcode and remove comment * feat(oauth): add error page * fix(oauth): i18n of error page * refactor: return null instead of `false` in `getIdOfCurrentUser` functiom * feat: show original oauth error if available * refactor: run formatter * refactor(oauth): error message i18n * refactor(oauth): make OAuth token available someone may use it (to revoke token or get other info etc.) also improved the i18n message * chore(oauth): remove unused import * chore: add database migration * fix: missing python installation for nanoid --------- Co-authored-by: Elias Schneider <login@eliasschneider.com> Co-authored-by: ふうせん <10260662+fusengum@users.noreply.github.com>
309 lines
7.0 KiB
TypeScript
309 lines
7.0 KiB
TypeScript
import { Prisma, PrismaClient } from "@prisma/client";
|
|
import * as crypto from "crypto";
|
|
|
|
const configVariables: ConfigVariables = {
|
|
internal: {
|
|
jwtSecret: {
|
|
type: "string",
|
|
defaultValue: crypto.randomBytes(256).toString("base64"),
|
|
locked: true,
|
|
},
|
|
},
|
|
general: {
|
|
appName: {
|
|
type: "string",
|
|
defaultValue: "Pingvin Share",
|
|
secret: false,
|
|
},
|
|
appUrl: {
|
|
type: "string",
|
|
defaultValue: "http://localhost:3000",
|
|
secret: false,
|
|
},
|
|
showHomePage: {
|
|
type: "boolean",
|
|
defaultValue: "true",
|
|
secret: false,
|
|
},
|
|
},
|
|
share: {
|
|
allowRegistration: {
|
|
type: "boolean",
|
|
defaultValue: "true",
|
|
secret: false,
|
|
},
|
|
allowUnauthenticatedShares: {
|
|
type: "boolean",
|
|
defaultValue: "false",
|
|
secret: false,
|
|
},
|
|
maxSize: {
|
|
type: "number",
|
|
defaultValue: "1000000000",
|
|
secret: false,
|
|
},
|
|
zipCompressionLevel: {
|
|
type: "number",
|
|
defaultValue: "9",
|
|
},
|
|
},
|
|
email: {
|
|
enableShareEmailRecipients: {
|
|
type: "boolean",
|
|
defaultValue: "false",
|
|
|
|
secret: false,
|
|
},
|
|
shareRecipientsSubject: {
|
|
type: "string",
|
|
defaultValue: "Files shared with you",
|
|
},
|
|
shareRecipientsMessage: {
|
|
type: "text",
|
|
defaultValue:
|
|
"Hey!\n\n{creator} shared some files with you, view or download the files with this link: {shareUrl}\n\nThe share will expire {expires}.\n\nNote: {desc}\n\nShared securely with Pingvin Share 🐧",
|
|
},
|
|
reverseShareSubject: {
|
|
type: "string",
|
|
defaultValue: "Reverse share link used",
|
|
},
|
|
reverseShareMessage: {
|
|
type: "text",
|
|
defaultValue:
|
|
"Hey!\n\nA share was just created with your reverse share link: {shareUrl}\n\nShared securely with Pingvin Share 🐧",
|
|
},
|
|
resetPasswordSubject: {
|
|
type: "string",
|
|
defaultValue: "Pingvin Share password reset",
|
|
},
|
|
resetPasswordMessage: {
|
|
type: "text",
|
|
defaultValue:
|
|
"Hey!\n\nYou requested a password reset. Click this link to reset your password: {url}\nThe link expires in a hour.\n\nPingvin Share 🐧",
|
|
},
|
|
inviteSubject: {
|
|
type: "string",
|
|
defaultValue: "Pingvin Share invite",
|
|
},
|
|
inviteMessage: {
|
|
type: "text",
|
|
defaultValue:
|
|
"Hey!\n\nYou were invited to Pingvin Share. Click this link to accept the invite: {url}\n\nYour password is: {password}\n\nPingvin Share 🐧",
|
|
},
|
|
},
|
|
smtp: {
|
|
enabled: {
|
|
type: "boolean",
|
|
defaultValue: "false",
|
|
secret: false,
|
|
},
|
|
host: {
|
|
type: "string",
|
|
defaultValue: "",
|
|
},
|
|
port: {
|
|
type: "number",
|
|
defaultValue: "0",
|
|
},
|
|
email: {
|
|
type: "string",
|
|
defaultValue: "",
|
|
},
|
|
username: {
|
|
type: "string",
|
|
defaultValue: "",
|
|
},
|
|
password: {
|
|
type: "string",
|
|
defaultValue: "",
|
|
obscured: true,
|
|
},
|
|
},
|
|
oauth: {
|
|
"allowRegistration": {
|
|
type: "boolean",
|
|
defaultValue: "true",
|
|
},
|
|
"ignoreTotp": {
|
|
type: "boolean",
|
|
defaultValue: "true",
|
|
},
|
|
"github-enabled": {
|
|
type: "boolean",
|
|
defaultValue: "false",
|
|
},
|
|
"github-clientId": {
|
|
type: "string",
|
|
defaultValue: "",
|
|
},
|
|
"github-clientSecret": {
|
|
type: "string",
|
|
defaultValue: "",
|
|
obscured: true,
|
|
},
|
|
"google-enabled": {
|
|
type: "boolean",
|
|
defaultValue: "false",
|
|
},
|
|
"google-clientId": {
|
|
type: "string",
|
|
defaultValue: "",
|
|
},
|
|
"google-clientSecret": {
|
|
type: "string",
|
|
defaultValue: "",
|
|
obscured: true,
|
|
},
|
|
"microsoft-enabled": {
|
|
type: "boolean",
|
|
defaultValue: "false",
|
|
},
|
|
"microsoft-tenant": {
|
|
type: "string",
|
|
defaultValue: "common",
|
|
},
|
|
"microsoft-clientId": {
|
|
type: "string",
|
|
defaultValue: "",
|
|
},
|
|
"microsoft-clientSecret": {
|
|
type: "string",
|
|
defaultValue: "",
|
|
obscured: true,
|
|
},
|
|
"discord-enabled": {
|
|
type: "boolean",
|
|
defaultValue: "false",
|
|
},
|
|
"discord-clientId": {
|
|
type: "string",
|
|
defaultValue: "",
|
|
},
|
|
"discord-clientSecret": {
|
|
type: "string",
|
|
defaultValue: "",
|
|
obscured: true,
|
|
},
|
|
"oidc-enabled": {
|
|
type: "boolean",
|
|
defaultValue: "false",
|
|
},
|
|
"oidc-discoveryUri": {
|
|
type: "string",
|
|
defaultValue: "",
|
|
},
|
|
"oidc-clientId": {
|
|
type: "string",
|
|
defaultValue: "",
|
|
},
|
|
"oidc-clientSecret": {
|
|
type: "string",
|
|
defaultValue: "",
|
|
obscured: true,
|
|
},
|
|
}
|
|
};
|
|
|
|
type ConfigVariables = {
|
|
[category: string]: {
|
|
[variable: string]: Omit<
|
|
Prisma.ConfigCreateInput,
|
|
"name" | "category" | "order"
|
|
>;
|
|
};
|
|
};
|
|
|
|
const prisma = new PrismaClient({
|
|
datasources: {
|
|
db: {
|
|
url:
|
|
process.env.DATABASE_URL ||
|
|
"file:../data/pingvin-share.db?connection_limit=1",
|
|
},
|
|
},
|
|
});
|
|
|
|
async function seedConfigVariables() {
|
|
for (const [category, configVariablesOfCategory] of Object.entries(
|
|
configVariables
|
|
)) {
|
|
let order = 0;
|
|
for (const [name, properties] of Object.entries(
|
|
configVariablesOfCategory
|
|
)) {
|
|
const existingConfigVariable = await prisma.config.findUnique({
|
|
where: { name_category: { name, category } },
|
|
});
|
|
|
|
// Create a new config variable if it doesn't exist
|
|
if (!existingConfigVariable) {
|
|
await prisma.config.create({
|
|
data: {
|
|
order,
|
|
name,
|
|
...properties,
|
|
category,
|
|
},
|
|
});
|
|
}
|
|
order++;
|
|
}
|
|
}
|
|
}
|
|
|
|
async function migrateConfigVariables() {
|
|
const existingConfigVariables = await prisma.config.findMany();
|
|
|
|
for (const existingConfigVariable of existingConfigVariables) {
|
|
const configVariable =
|
|
configVariables[existingConfigVariable.category]?.[
|
|
existingConfigVariable.name
|
|
];
|
|
if (!configVariable) {
|
|
await prisma.config.delete({
|
|
where: {
|
|
name_category: {
|
|
name: existingConfigVariable.name,
|
|
category: existingConfigVariable.category,
|
|
},
|
|
},
|
|
});
|
|
|
|
// Update the config variable if the metadata changed
|
|
} else if (
|
|
JSON.stringify({
|
|
...configVariable,
|
|
name: existingConfigVariable.name,
|
|
category: existingConfigVariable.category,
|
|
value: existingConfigVariable.value,
|
|
}) != JSON.stringify(existingConfigVariable)
|
|
) {
|
|
await prisma.config.update({
|
|
where: {
|
|
name_category: {
|
|
name: existingConfigVariable.name,
|
|
category: existingConfigVariable.category,
|
|
},
|
|
},
|
|
data: {
|
|
...configVariable,
|
|
name: existingConfigVariable.name,
|
|
category: existingConfigVariable.category,
|
|
value: existingConfigVariable.value,
|
|
},
|
|
});
|
|
}
|
|
}
|
|
}
|
|
|
|
seedConfigVariables()
|
|
.then(() => migrateConfigVariables())
|
|
.then(async () => {
|
|
await prisma.$disconnect();
|
|
})
|
|
.catch(async (e) => {
|
|
console.error(e);
|
|
await prisma.$disconnect();
|
|
process.exit(1);
|
|
});
|