]> git.immae.eu Git - github/Chocobozzz/PeerTube.git/blame - server/controllers/api/config.ts
Fix runner api rate limit bypass
[github/Chocobozzz/PeerTube.git] / server / controllers / api / config.ts
CommitLineData
41fb13c3 1import express from 'express'
4a8d113b 2import { remove, writeJSON } from 'fs-extra'
09209296 3import { snakeCase } from 'lodash'
4a8d113b 4import validator from 'validator'
4c7e60bc 5import { ServerConfigManager } from '@server/lib/server-config-manager'
d17c7b4e 6import { About, CustomConfig, UserRight } from '@shared/models'
993cef4b 7import { auditLoggerFactory, CustomConfigAuditView, getAuditIdFromRes } from '../../helpers/audit-logger'
a4101923 8import { objectConverter } from '../../helpers/core-utils'
22820226 9import { CONFIG, reloadConfig } from '../../initializers/config'
4a8d113b 10import { ClientHtml } from '../../lib/client-html'
e915cde3 11import { apiRateLimiter, asyncMiddleware, authenticate, ensureUserHasRight, openapiOperationDoc } from '../../middlewares'
8d8a037e 12import { customConfigUpdateValidator, ensureConfigIsEditable } from '../../middlewares/validators/config'
65fcc311
C
13
14const configRouter = express.Router()
15
e915cde3
C
16configRouter.use(apiRateLimiter)
17
80e36cd9
AB
18const auditLogger = auditLoggerFactory('config')
19
eb080476 20configRouter.get('/',
1333ab1f 21 openapiOperationDoc({ operationId: 'getConfig' }),
eb080476
C
22 asyncMiddleware(getConfig)
23)
36f9424f 24
1333ab1f
RK
25configRouter.get('/about',
26 openapiOperationDoc({ operationId: 'getAbout' }),
27 getAbout
28)
29
fd206f0b 30configRouter.get('/custom',
1333ab1f 31 openapiOperationDoc({ operationId: 'getCustomConfig' }),
fd206f0b
C
32 authenticate,
33 ensureUserHasRight(UserRight.MANAGE_CONFIGURATION),
a1587156 34 getCustomConfig
fd206f0b 35)
c158a5fa 36
fd206f0b 37configRouter.put('/custom',
1333ab1f 38 openapiOperationDoc({ operationId: 'putCustomConfig' }),
fd206f0b
C
39 authenticate,
40 ensureUserHasRight(UserRight.MANAGE_CONFIGURATION),
8d8a037e 41 ensureConfigIsEditable,
a1587156 42 customConfigUpdateValidator,
fd206f0b
C
43 asyncMiddleware(updateCustomConfig)
44)
c158a5fa 45
fd206f0b 46configRouter.delete('/custom',
1333ab1f 47 openapiOperationDoc({ operationId: 'delCustomConfig' }),
fd206f0b
C
48 authenticate,
49 ensureUserHasRight(UserRight.MANAGE_CONFIGURATION),
8d8a037e 50 ensureConfigIsEditable,
fd206f0b
C
51 asyncMiddleware(deleteCustomConfig)
52)
65fcc311 53
1b5e2d72 54async function getConfig (req: express.Request, res: express.Response) {
2539932e 55 const json = await ServerConfigManager.Instance.getServerConfig(req.ip)
6a84aafd 56
eb080476 57 return res.json(json)
65fcc311
C
58}
59
f8802489 60function getAbout (req: express.Request, res: express.Response) {
36f9424f
C
61 const about: About = {
62 instance: {
63 name: CONFIG.INSTANCE.NAME,
2e3a0215 64 shortDescription: CONFIG.INSTANCE.SHORT_DESCRIPTION,
36f9424f 65 description: CONFIG.INSTANCE.DESCRIPTION,
ccc00cb2
C
66 terms: CONFIG.INSTANCE.TERMS,
67 codeOfConduct: CONFIG.INSTANCE.CODE_OF_CONDUCT,
68
be04c6fd
C
69 hardwareInformation: CONFIG.INSTANCE.HARDWARE_INFORMATION,
70
8ae03c37 71 creationReason: CONFIG.INSTANCE.CREATION_REASON,
ccc00cb2
C
72 moderationInformation: CONFIG.INSTANCE.MODERATION_INFORMATION,
73 administrator: CONFIG.INSTANCE.ADMINISTRATOR,
74 maintenanceLifetime: CONFIG.INSTANCE.MAINTENANCE_LIFETIME,
75 businessModel: CONFIG.INSTANCE.BUSINESS_MODEL,
76
77 languages: CONFIG.INSTANCE.LANGUAGES,
78 categories: CONFIG.INSTANCE.CATEGORIES
36f9424f
C
79 }
80 }
81
c158a5fa 82 return res.json(about)
36f9424f
C
83}
84
a1587156 85function getCustomConfig (req: express.Request, res: express.Response) {
fd206f0b
C
86 const data = customConfig()
87
c158a5fa 88 return res.json(data)
fd206f0b
C
89}
90
f8802489 91async function deleteCustomConfig (req: express.Request, res: express.Response) {
62689b94 92 await remove(CONFIG.CUSTOM_FILE)
fd206f0b 93
993cef4b 94 auditLogger.delete(getAuditIdFromRes(res), new CustomConfigAuditView(customConfig()))
80e36cd9 95
fd206f0b 96 reloadConfig()
e032aec9 97 ClientHtml.invalidCache()
fd206f0b
C
98
99 const data = customConfig()
100
c6c0fa6c 101 return res.json(data)
fd206f0b
C
102}
103
f8802489 104async function updateCustomConfig (req: express.Request, res: express.Response) {
80e36cd9 105 const oldCustomConfigAuditKeys = new CustomConfigAuditView(customConfig())
fd206f0b 106
a4101923
C
107 // camelCase to snake_case key + Force number conversion
108 const toUpdateJSON = convertCustomConfigBody(req.body)
fd206f0b 109
62689b94 110 await writeJSON(CONFIG.CUSTOM_FILE, toUpdateJSON, { spaces: 2 })
fd206f0b
C
111
112 reloadConfig()
e032aec9 113 ClientHtml.invalidCache()
fd206f0b
C
114
115 const data = customConfig()
80e36cd9
AB
116
117 auditLogger.update(
993cef4b 118 getAuditIdFromRes(res),
80e36cd9
AB
119 new CustomConfigAuditView(data),
120 oldCustomConfigAuditKeys
121 )
122
c6c0fa6c 123 return res.json(data)
fd206f0b
C
124}
125
65fcc311
C
126// ---------------------------------------------------------------------------
127
128export {
22820226 129 configRouter
65fcc311 130}
fd206f0b
C
131
132// ---------------------------------------------------------------------------
133
134function customConfig (): CustomConfig {
135 return {
66b16caf
C
136 instance: {
137 name: CONFIG.INSTANCE.NAME,
2e3a0215 138 shortDescription: CONFIG.INSTANCE.SHORT_DESCRIPTION,
66b16caf 139 description: CONFIG.INSTANCE.DESCRIPTION,
00b5556c 140 terms: CONFIG.INSTANCE.TERMS,
ccc00cb2
C
141 codeOfConduct: CONFIG.INSTANCE.CODE_OF_CONDUCT,
142
8ae03c37 143 creationReason: CONFIG.INSTANCE.CREATION_REASON,
ccc00cb2
C
144 moderationInformation: CONFIG.INSTANCE.MODERATION_INFORMATION,
145 administrator: CONFIG.INSTANCE.ADMINISTRATOR,
146 maintenanceLifetime: CONFIG.INSTANCE.MAINTENANCE_LIFETIME,
147 businessModel: CONFIG.INSTANCE.BUSINESS_MODEL,
be04c6fd 148 hardwareInformation: CONFIG.INSTANCE.HARDWARE_INFORMATION,
ccc00cb2
C
149
150 languages: CONFIG.INSTANCE.LANGUAGES,
151 categories: CONFIG.INSTANCE.CATEGORIES,
152
f8802489 153 isNSFW: CONFIG.INSTANCE.IS_NSFW,
0883b324 154 defaultNSFWPolicy: CONFIG.INSTANCE.DEFAULT_NSFW_POLICY,
3da68f0a
RK
155
156 defaultClientRoute: CONFIG.INSTANCE.DEFAULT_CLIENT_ROUTE,
3da68f0a 157
00b5556c
C
158 customizations: {
159 css: CONFIG.INSTANCE.CUSTOMIZATIONS.CSS,
160 javascript: CONFIG.INSTANCE.CUSTOMIZATIONS.JAVASCRIPT
161 }
66b16caf 162 },
7cd4d2ba
C
163 theme: {
164 default: CONFIG.THEME.DEFAULT
165 },
8be1afa1
C
166 services: {
167 twitter: {
168 username: CONFIG.SERVICES.TWITTER.USERNAME,
169 whitelisted: CONFIG.SERVICES.TWITTER.WHITELISTED
170 }
171 },
0bc53e20
C
172 client: {
173 videos: {
174 miniature: {
175 preferAuthorDisplayName: CONFIG.CLIENT.VIDEOS.MINIATURE.PREFER_AUTHOR_DISPLAY_NAME
176 }
177 },
178 menu: {
179 login: {
180 redirectOnSingleExternalAuth: CONFIG.CLIENT.MENU.LOGIN.REDIRECT_ON_SINGLE_EXTERNAL_AUTH
181 }
182 }
183 },
fd206f0b
C
184 cache: {
185 previews: {
186 size: CONFIG.CACHE.PREVIEWS.SIZE
40e87e9e
C
187 },
188 captions: {
189 size: CONFIG.CACHE.VIDEO_CAPTIONS.SIZE
b3d5cb92
C
190 },
191 torrents: {
192 size: CONFIG.CACHE.TORRENTS.SIZE
fd206f0b
C
193 }
194 },
195 signup: {
196 enabled: CONFIG.SIGNUP.ENABLED,
d9eaee39 197 limit: CONFIG.SIGNUP.LIMIT,
e364e31e 198 requiresApproval: CONFIG.SIGNUP.REQUIRES_APPROVAL,
1f256e7d
P
199 requiresEmailVerification: CONFIG.SIGNUP.REQUIRES_EMAIL_VERIFICATION,
200 minimumAge: CONFIG.SIGNUP.MINIMUM_AGE
fd206f0b
C
201 },
202 admin: {
203 email: CONFIG.ADMIN.EMAIL
204 },
a4101923
C
205 contactForm: {
206 enabled: CONFIG.CONTACT_FORM.ENABLED
207 },
fd206f0b 208 user: {
b302c80d
W
209 history: {
210 videos: {
211 enabled: CONFIG.USER.HISTORY.VIDEOS.ENABLED
212 }
213 },
bee0abff
FA
214 videoQuota: CONFIG.USER.VIDEO_QUOTA,
215 videoQuotaDaily: CONFIG.USER.VIDEO_QUOTA_DAILY
fd206f0b 216 },
754b6f5f
FC
217 videoChannels: {
218 maxPerUser: CONFIG.VIDEO_CHANNELS.MAX_PER_USER
219 },
fd206f0b
C
220 transcoding: {
221 enabled: CONFIG.TRANSCODING.ENABLED,
0c9668f7
C
222 remoteRunners: {
223 enabled: CONFIG.TRANSCODING.REMOTE_RUNNERS.ENABLED
224 },
14e2014a 225 allowAdditionalExtensions: CONFIG.TRANSCODING.ALLOW_ADDITIONAL_EXTENSIONS,
536598cf 226 allowAudioFiles: CONFIG.TRANSCODING.ALLOW_AUDIO_FILES,
fd206f0b 227 threads: CONFIG.TRANSCODING.THREADS,
9129b769 228 concurrency: CONFIG.TRANSCODING.CONCURRENCY,
1896bca0 229 profile: CONFIG.TRANSCODING.PROFILE,
fd206f0b 230 resolutions: {
a1587156 231 '0p': CONFIG.TRANSCODING.RESOLUTIONS['0p'],
8dd754c7 232 '144p': CONFIG.TRANSCODING.RESOLUTIONS['144p'],
a1587156
C
233 '240p': CONFIG.TRANSCODING.RESOLUTIONS['240p'],
234 '360p': CONFIG.TRANSCODING.RESOLUTIONS['360p'],
235 '480p': CONFIG.TRANSCODING.RESOLUTIONS['480p'],
236 '720p': CONFIG.TRANSCODING.RESOLUTIONS['720p'],
237 '1080p': CONFIG.TRANSCODING.RESOLUTIONS['1080p'],
b7085c71 238 '1440p': CONFIG.TRANSCODING.RESOLUTIONS['1440p'],
a1587156 239 '2160p': CONFIG.TRANSCODING.RESOLUTIONS['2160p']
09209296 240 },
84cae54e 241 alwaysTranscodeOriginalResolution: CONFIG.TRANSCODING.ALWAYS_TRANSCODE_ORIGINAL_RESOLUTION,
d7a25329
C
242 webtorrent: {
243 enabled: CONFIG.TRANSCODING.WEBTORRENT.ENABLED
244 },
09209296
C
245 hls: {
246 enabled: CONFIG.TRANSCODING.HLS.ENABLED
fd206f0b 247 }
5d08a6a7 248 },
c6c0fa6c
C
249 live: {
250 enabled: CONFIG.LIVE.ENABLED,
fb719404 251 allowReplay: CONFIG.LIVE.ALLOW_REPLAY,
f443a746
C
252 latencySetting: {
253 enabled: CONFIG.LIVE.LATENCY_SETTING.ENABLED
254 },
fb719404 255 maxDuration: CONFIG.LIVE.MAX_DURATION,
a056ca48
C
256 maxInstanceLives: CONFIG.LIVE.MAX_INSTANCE_LIVES,
257 maxUserLives: CONFIG.LIVE.MAX_USER_LIVES,
c6c0fa6c
C
258 transcoding: {
259 enabled: CONFIG.LIVE.TRANSCODING.ENABLED,
0c9668f7
C
260 remoteRunners: {
261 enabled: CONFIG.LIVE.TRANSCODING.REMOTE_RUNNERS.ENABLED
262 },
c6c0fa6c 263 threads: CONFIG.LIVE.TRANSCODING.THREADS,
1896bca0 264 profile: CONFIG.LIVE.TRANSCODING.PROFILE,
c6c0fa6c 265 resolutions: {
8dd754c7 266 '144p': CONFIG.LIVE.TRANSCODING.RESOLUTIONS['144p'],
c6c0fa6c
C
267 '240p': CONFIG.LIVE.TRANSCODING.RESOLUTIONS['240p'],
268 '360p': CONFIG.LIVE.TRANSCODING.RESOLUTIONS['360p'],
269 '480p': CONFIG.LIVE.TRANSCODING.RESOLUTIONS['480p'],
270 '720p': CONFIG.LIVE.TRANSCODING.RESOLUTIONS['720p'],
271 '1080p': CONFIG.LIVE.TRANSCODING.RESOLUTIONS['1080p'],
b7085c71 272 '1440p': CONFIG.LIVE.TRANSCODING.RESOLUTIONS['1440p'],
c6c0fa6c 273 '2160p': CONFIG.LIVE.TRANSCODING.RESOLUTIONS['2160p']
84cae54e
C
274 },
275 alwaysTranscodeOriginalResolution: CONFIG.LIVE.TRANSCODING.ALWAYS_TRANSCODE_ORIGINAL_RESOLUTION
c6c0fa6c
C
276 }
277 },
92e66e04 278 videoStudio: {
5e47f6ab
C
279 enabled: CONFIG.VIDEO_STUDIO.ENABLED,
280 remoteRunners: {
281 enabled: CONFIG.VIDEO_STUDIO.REMOTE_RUNNERS.ENABLED
282 }
c729caf6 283 },
5d08a6a7
C
284 import: {
285 videos: {
9129b769 286 concurrency: CONFIG.IMPORT.VIDEOS.CONCURRENCY,
5d08a6a7
C
287 http: {
288 enabled: CONFIG.IMPORT.VIDEOS.HTTP.ENABLED
a84b8fa5
C
289 },
290 torrent: {
291 enabled: CONFIG.IMPORT.VIDEOS.TORRENT.ENABLED
5d08a6a7 292 }
2a491182
F
293 },
294 videoChannelSynchronization: {
295 enabled: CONFIG.IMPORT.VIDEO_CHANNEL_SYNCHRONIZATION.ENABLED,
296 maxPerUser: CONFIG.IMPORT.VIDEO_CHANNEL_SYNCHRONIZATION.MAX_PER_USER
5d08a6a7 297 }
7ccddd7b 298 },
ba5d4a84
RK
299 trending: {
300 videos: {
301 algorithms: {
302 enabled: CONFIG.TRENDING.VIDEOS.ALGORITHMS.ENABLED,
303 default: CONFIG.TRENDING.VIDEOS.ALGORITHMS.DEFAULT
304 }
305 }
306 },
7ccddd7b
JM
307 autoBlacklist: {
308 videos: {
309 ofUsers: {
310 enabled: CONFIG.AUTO_BLACKLIST.VIDEOS.OF_USERS.ENABLED
311 }
312 }
5b9c965d
C
313 },
314 followers: {
315 instance: {
14893eb7
C
316 enabled: CONFIG.FOLLOWERS.INSTANCE.ENABLED,
317 manualApproval: CONFIG.FOLLOWERS.INSTANCE.MANUAL_APPROVAL
5b9c965d 318 }
8424c402
C
319 },
320 followings: {
321 instance: {
322 autoFollowBack: {
323 enabled: CONFIG.FOLLOWINGS.INSTANCE.AUTO_FOLLOW_BACK.ENABLED
324 },
325
326 autoFollowIndex: {
327 enabled: CONFIG.FOLLOWINGS.INSTANCE.AUTO_FOLLOW_INDEX.ENABLED,
328 indexUrl: CONFIG.FOLLOWINGS.INSTANCE.AUTO_FOLLOW_INDEX.INDEX_URL
329 }
330 }
72c33e71
C
331 },
332 broadcastMessage: {
333 enabled: CONFIG.BROADCAST_MESSAGE.ENABLED,
334 message: CONFIG.BROADCAST_MESSAGE.MESSAGE,
335 level: CONFIG.BROADCAST_MESSAGE.LEVEL,
336 dismissable: CONFIG.BROADCAST_MESSAGE.DISMISSABLE
5fb2e288
C
337 },
338 search: {
339 remoteUri: {
340 users: CONFIG.SEARCH.REMOTE_URI.USERS,
341 anonymous: CONFIG.SEARCH.REMOTE_URI.ANONYMOUS
342 },
343 searchIndex: {
344 enabled: CONFIG.SEARCH.SEARCH_INDEX.ENABLED,
345 url: CONFIG.SEARCH.SEARCH_INDEX.URL,
346 disableLocalSearch: CONFIG.SEARCH.SEARCH_INDEX.DISABLE_LOCAL_SEARCH,
347 isDefaultSearch: CONFIG.SEARCH.SEARCH_INDEX.IS_DEFAULT_SEARCH
348 }
3521ab8f 349 }
fd206f0b
C
350 }
351}
a4101923
C
352
353function convertCustomConfigBody (body: CustomConfig) {
354 function keyConverter (k: string) {
355 // Transcoding resolutions exception
356 if (/^\d{3,4}p$/.exec(k)) return k
3a149e9f 357 if (k === '0p') return k
a4101923
C
358
359 return snakeCase(k)
360 }
361
362 function valueConverter (v: any) {
7cde3b9c 363 if (validator.isNumeric(v + '')) return parseInt('' + v, 10)
a4101923
C
364
365 return v
366 }
367
368 return objectConverter(body, keyConverter, valueConverter)
369}