-
Notifications
You must be signed in to change notification settings - Fork 4
/
index.js
151 lines (124 loc) · 4.08 KB
/
index.js
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
require('dotenv').config();
const express = require('express');
const session = require('express-session');
const app = express();
const expressWs = require('express-ws')(app);
const rateLimit = require('express-rate-limit');
const minifyHTML = require('express-minify-html');
const fs = require('fs');
const passport = require('passport');
const ejs = require('ejs');
const path = require('path');
const axios = require('axios');
const ipaddr = require('ipaddr.js');
const requestIp = require('request-ip');
const cache = new Map();
const db = require('./handlers/db');
// Add admin users
if (!process.env.ADMIN_USERS) {
console.warn('No admin users defined. Skipping admin user creation.');
} else {
let admins = process.env.ADMIN_USERS.split(',');
for (let i = 0; i < admins.length; i++) {
db.set(`admin-${admins[i]}`, true);
}
}
// Setup ejs as the view engine
app.set('view engine', 'ejs');
app.set('views', path.join(__dirname, '/resources'));
app.set('trust proxy', 1);
// Setup rateLimit
app.use(rateLimit({
windowMs: 15 * 60 * 1000,
max: 100,
handler: function (req, res) {
res.status(429).json({
error: 'Too many requests, please try again later.'
});
}
}));
// Parsing query data
app.use(express.json());
app.use(express.urlencoded({ extended: true }));
// Setup session middleware
app.use(session({
secret: process.env.SESSION_SECRET,
resave: false,
saveUninitialized: true
}));
// Initialize passport
app.use(passport.initialize());
app.use(passport.session());
// IP middleware
app.use(requestIp.mw());
// Optimization
app.set('view cache', true);
app.use(minifyHTML({
override: true,
exception_url: false,
htmlMinifier: {
removeComments: true,
collapseWhitespace: true,
collapseBooleanAttributes: true,
removeAttributeQuotes: true,
removeEmptyAttributes: true,
minifyJS: true,
minifyCSS: true
}
}));
// Custom Header
app.use((req, res, next) => {
res.setHeader("X-Powered-By", "6th Gen Palladium || 1th Gen Fixed-Palladium");
next();
});
// VPN detection middleware
app.use(async (req, res, next) => {
if (process.env.PROXYCHECK_KEY && process.env.PROXYCHECK_KEY !== "0000000000000000000000000000") {
try {
const ipAddress = req.clientIp;
if (!ipaddr.isValid(ipAddress)) {
console.error(`Invalid IP Address: ${ipAddress}`);
return res.status(400).json('Invalid IP address format.');
}
const userIp = ipaddr.process(ipAddress).toString();
if (userIp === '127.0.0.1' || userIp.startsWith('192.168') || userIp.startsWith('10.')) {
return next();
}
if (cache.has(userIp)) {
const proxyData = cache.get(userIp);
if (proxyData.proxy === 'yes') {
return res.status(403).json('It seems we have detected a proxy/VPN enabled on your end, please turn it off to continue.');
}
return next();
}
const proxycheck_key = process.env.PROXYCHECK_KEY;
const proxyResponse = await axios.get(`http://proxycheck.io/v2/${userIp}?key=${proxycheck_key}`);
const proxyData = proxyResponse.data[userIp];
cache.set(userIp, proxyData);
setTimeout(() => cache.delete(userIp), 600000);
if (proxyData.proxy === 'yes') {
return res.status(403).json('It seems we have detected a proxy/VPN enabled on your end, please turn it off to continue.');
}
next();
} catch (error) {
console.error('Error in IP check middleware:', error);
res.status(500).json('Internal server error.');
}
} else {
next();
}});
// Require the routes
let allRoutes = fs.readdirSync('./app');
for (let i = 0; i < allRoutes.length; i++) {
let route = require(`./app/${allRoutes[i]}`);
expressWs.applyTo(route);
app.use('/', route);
}
// Serve static files (after VPN detection)
app.use(express.static(path.join(__dirname, 'public'), {
maxAge: '1d' // Cache static assets for 1 day
}));
// Start the server
app.listen(process.env.APP_PORT || 3000, () => {
console.log(`Fixed-Palladium has been started on ${process.env.APP_URL} !`);
});