server.ts 3.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102
  1. import 'reflect-metadata'
  2. import * as busboy from 'connect-busboy'
  3. import '../src/Infra/InversifyExpress/AnnotatedHealthCheckController'
  4. import '../src/Infra/InversifyExpress/AnnotatedFilesController'
  5. import '../src/Infra/InversifyExpress/AnnotatedSharedVaultFilesController'
  6. import helmet from 'helmet'
  7. import * as cors from 'cors'
  8. import { urlencoded, json, raw, Request, Response, NextFunction } from 'express'
  9. import * as winston from 'winston'
  10. // eslint-disable-next-line @typescript-eslint/no-var-requires
  11. const robots = require('express-robots-txt')
  12. import { InversifyExpressServer } from 'inversify-express-utils'
  13. import { ContainerConfigLoader } from '../src/Bootstrap/Container'
  14. import TYPES from '../src/Bootstrap/Types'
  15. import { Env } from '../src/Bootstrap/Env'
  16. import { OpenTelemetrySDKInterface } from '@standardnotes/domain-events-infra'
  17. const container = new ContainerConfigLoader()
  18. void container.load().then((container) => {
  19. const env: Env = new Env()
  20. env.load()
  21. const server = new InversifyExpressServer(container)
  22. server.setConfig((app) => {
  23. app.use((_request: Request, response: Response, next: NextFunction) => {
  24. response.setHeader('X-Files-Version', container.get(TYPES.Files_VERSION))
  25. next()
  26. })
  27. app.use(
  28. busboy({
  29. highWaterMark: 2 * 1024 * 1024,
  30. }),
  31. )
  32. /* eslint-disable */
  33. app.use(helmet({
  34. contentSecurityPolicy: {
  35. directives: {
  36. defaultSrc: ["https: 'self'"],
  37. baseUri: ["'self'"],
  38. childSrc: ["*", "blob:"],
  39. connectSrc: ["*"],
  40. fontSrc: ["*", "'self'"],
  41. formAction: ["'self'"],
  42. frameAncestors: ["*", "*.standardnotes.org", "*.standardnotes.com"],
  43. frameSrc: ["*", "blob:"],
  44. imgSrc: ["'self'", "*", "data:"],
  45. manifestSrc: ["'self'"],
  46. mediaSrc: ["'self'"],
  47. objectSrc: ["'self'"],
  48. scriptSrc: ["'self'"],
  49. styleSrc: ["'self'"]
  50. }
  51. }
  52. }))
  53. /* eslint-enable */
  54. app.use(json({ limit: '50mb' }))
  55. app.use(raw({ limit: '50mb', type: 'application/octet-stream' }))
  56. app.use(urlencoded({ extended: true, limit: '50mb' }))
  57. app.use(
  58. cors({
  59. exposedHeaders: ['Content-Range', 'Accept-Ranges'],
  60. }),
  61. )
  62. app.use(
  63. robots({
  64. UserAgent: '*',
  65. Disallow: '/',
  66. }),
  67. )
  68. })
  69. const logger: winston.Logger = container.get(TYPES.Files_Logger)
  70. server.setErrorConfig((app) => {
  71. app.use((error: Record<string, unknown>, _request: Request, response: Response, _next: NextFunction) => {
  72. logger.error(error.stack)
  73. response.status(500).send({
  74. error: {
  75. message:
  76. "Unfortunately, we couldn't handle your request. Please try again or contact our support if the error persists.",
  77. },
  78. })
  79. })
  80. })
  81. const serverInstance = server.build()
  82. if (!container.get<boolean>(TYPES.Files_IS_CONFIGURED_FOR_HOME_SERVER_OR_SELF_HOSTING)) {
  83. const openTelemetrySDK = container.get<OpenTelemetrySDKInterface>(TYPES.Files_OpenTelemetrySDK)
  84. openTelemetrySDK.start()
  85. }
  86. serverInstance.listen(env.get('PORT'))
  87. logger.info(`Server started on port ${process.env.PORT}`)
  88. })