PeerTube/server/middlewares/validators/feeds.ts

134 lines
4.4 KiB
TypeScript
Raw Normal View History

2021-08-27 07:32:44 -05:00
import express from 'express'
2019-07-25 09:23:44 -05:00
import { param, query } from 'express-validator'
2021-07-16 03:42:24 -05:00
import { HttpStatusCode } from '../../../shared/models/http/http-error-codes'
import { isValidRSSFeed } from '../../helpers/custom-validators/feeds'
import { exists, isIdOrUUIDValid, isIdValid, toCompleteUUID } from '../../helpers/custom-validators/misc'
2020-11-25 04:04:18 -06:00
import { logger } from '../../helpers/logger'
2019-07-23 03:40:39 -05:00
import {
areValidationErrors,
2022-06-22 02:44:08 -05:00
checkCanSeeVideo,
2019-07-23 03:40:39 -05:00
doesAccountIdExist,
doesAccountNameWithHostExist,
2020-11-25 04:04:18 -06:00
doesUserFeedTokenCorrespond,
2019-07-23 03:40:39 -05:00
doesVideoChannelIdExist,
doesVideoChannelNameWithHostExist,
doesVideoExist
} from './shared'
const feedsFormatValidator = [
param('format').optional().custom(isValidRSSFeed).withMessage('Should have a valid format (rss, atom, json)'),
query('format').optional().custom(isValidRSSFeed).withMessage('Should have a valid format (rss, atom, json)')
]
function setFeedFormatContentType (req: express.Request, res: express.Response, next: express.NextFunction) {
const format = req.query.format || req.params.format || 'rss'
let acceptableContentTypes: string[]
if (format === 'atom' || format === 'atom1') {
2020-01-31 09:56:52 -06:00
acceptableContentTypes = [ 'application/atom+xml', 'application/xml', 'text/xml' ]
} else if (format === 'json' || format === 'json1') {
2020-01-31 09:56:52 -06:00
acceptableContentTypes = [ 'application/json' ]
} else if (format === 'rss' || format === 'rss2') {
2020-01-31 09:56:52 -06:00
acceptableContentTypes = [ 'application/rss+xml', 'application/xml', 'text/xml' ]
} else {
2020-01-31 09:56:52 -06:00
acceptableContentTypes = [ 'application/xml', 'text/xml' ]
}
if (req.accepts(acceptableContentTypes)) {
res.set('Content-Type', req.accepts(acceptableContentTypes) as string)
} else {
return res.fail({
status: HttpStatusCode.NOT_ACCEPTABLE_406,
message: `You should accept at least one of the following content-types: ${acceptableContentTypes.join(', ')}`
})
}
return next()
}
const videoFeedsValidator = [
2020-11-25 04:04:18 -06:00
query('accountId')
.optional()
.custom(isIdValid)
.withMessage('Should have a valid account id'),
query('accountName')
.optional(),
query('videoChannelId')
.optional()
.custom(isIdValid)
.withMessage('Should have a valid channel id'),
query('videoChannelName')
.optional(),
async (req: express.Request, res: express.Response, next: express.NextFunction) => {
logger.debug('Checking feeds parameters', { parameters: req.query })
if (areValidationErrors(req, res)) return
2019-03-19 03:26:50 -05:00
if (req.query.accountId && !await doesAccountIdExist(req.query.accountId, res)) return
if (req.query.videoChannelId && !await doesVideoChannelIdExist(req.query.videoChannelId, res)) return
if (req.query.accountName && !await doesAccountNameWithHostExist(req.query.accountName, res)) return
if (req.query.videoChannelName && !await doesVideoChannelNameWithHostExist(req.query.videoChannelName, res)) return
return next()
}
]
2020-11-25 04:04:18 -06:00
const videoSubscriptionFeedsValidator = [
query('accountId')
.custom(isIdValid)
.withMessage('Should have a valid account id'),
query('token')
.custom(exists)
.withMessage('Should have a token'),
async (req: express.Request, res: express.Response, next: express.NextFunction) => {
2020-11-25 04:04:18 -06:00
logger.debug('Checking subscription feeds parameters', { parameters: req.query })
if (areValidationErrors(req, res)) return
2020-11-25 04:04:18 -06:00
if (!await doesAccountIdExist(req.query.accountId, res)) return
if (!await doesUserFeedTokenCorrespond(res.locals.account.userId, req.query.token, res)) return
return next()
}
]
2018-06-08 13:34:37 -05:00
const videoCommentsFeedsValidator = [
query('videoId')
.customSanitizer(toCompleteUUID)
.optional()
.custom(isIdOrUUIDValid),
2018-06-08 13:34:37 -05:00
async (req: express.Request, res: express.Response, next: express.NextFunction) => {
logger.debug('Checking feeds parameters', { parameters: req.query })
if (areValidationErrors(req, res)) return
if (req.query.videoId && (req.query.videoChannelId || req.query.videoChannelName)) {
return res.fail({ message: 'videoId cannot be mixed with a channel filter' })
}
2022-06-22 02:44:08 -05:00
if (req.query.videoId) {
if (!await doesVideoExist(req.query.videoId, res)) return
if (!await checkCanSeeVideo({ req, res, paramId: req.query.videoId, video: res.locals.videoAll })) return
}
2018-06-08 13:34:37 -05:00
return next()
}
]
// ---------------------------------------------------------------------------
export {
feedsFormatValidator,
setFeedFormatContentType,
2018-06-08 13:34:37 -05:00
videoFeedsValidator,
2020-11-25 04:04:18 -06:00
videoSubscriptionFeedsValidator,
2018-06-08 13:34:37 -05:00
videoCommentsFeedsValidator
}