-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathapp.js
153 lines (127 loc) · 4.51 KB
/
app.js
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
var express = require('express');
var path = require('path');
var favicon = require('serve-favicon');
var logger = require('morgan');
var cookieParser = require('cookie-parser');
var bodyParser = require('body-parser');
var stylus = require('stylus');
var nib = require('nib');
var passport = require('passport');
var HttpStrategy = require('passport-http');
var LocalStrategy = require('passport-local').Strategy;
var expressSession = require('express-session');
var md5 = require('md5');
var sql = require('mssql')
var flash = require('connect-flash');
var routes = require('./routes/index');
var templates = require('./routes/templates');
var publicApisRoutes = require('./routes/publicApis');
var authedApisRoutes = require('./routes/authedApis');
var app = express();
var db = require('mongoskin').db('mongodb://192.168.0.56/TestDB', { native_parser: true })
// view engine setup
app.set('views', path.join(__dirname, 'views'));
app.set('view engine', 'jade');
//--------------------------------------------------------------------------------------------------------------
app.use(expressSession({ secret: 'mySecretKey' }));
app.use(passport.initialize());
app.use(passport.session());
app.use(flash());
function compile(str, path) {
return stylus(str)
.set('filename', path)
.use(nib());
}
app.use(stylus.middleware({ src: __dirname + '/public/', compile: compile }));
// uncomment after placing your favicon in /public
//app.use(favicon(path.join(__dirname, 'public', 'favicon.ico')));
app.use(logger('dev'));
app.use(bodyParser.json());
app.use(bodyParser.urlencoded({ extended: false }));
app.use(cookieParser());
app.use(express.static(path.join(__dirname, 'public')));
app.use(express.static(path.join(__dirname, 'bower_components')));
var sqlconfig = {
user: 'Nodejs',
password: 'Nodejs',
server: 'frosh',
database: 'UM',
}
app.use(function (req, res, next) {
req.db = db
req.sqlconfig = sqlconfig;
next();
});
passport.serializeUser(function (user, done) {
done(null, user.UserId);
});
passport.deserializeUser(function (id, done) {
var sqlconnection = new sql.Connection(sqlconfig, function (err) {
var request = new sql.Request(sqlconnection);
request.query('SELECT TOP 1 * FROM dbo.Users WHERE UserId = ' + id, function (err, recordset) {
if (recordset)
return done(err, recordset[0]);
});
});
});
passport.use('local', new LocalStrategy({ passReqToCallback: true },
function (req, username, password, done) {
var sqlconnection = new sql.Connection(sqlconfig, function (err) {
var request = new sql.Request(sqlconnection);
request.query('SELECT TOP 1 * FROM dbo.Users WHERE UserId = ' + username, function (err, recordset) {
if (recordset.length == 1) {
var userRec = recordset[0];
var hashPass = md5(password);
if (userRec.PasswordText.toLowerCase() == hashPass.toLowerCase()) {
//success
var request2 = new sql.Request(sqlconnection);
request2.input('ID', sql.NVarChar(50), username)
request2.execute('dbo.spTest', function (err, records) {
req.session.user = recordset[0];
req.session.employee = records[0][0];
return done(null, recordset[0]);
})
}
else
return done(null, false, req.flash('loginMessage', 'کلمه عبور صحیح نیست.'));
}
else
return done(err, false, req.flash('loginMessage', 'کد پرسنلی صحیح نیست یا در مرکز سعیدآباد مشغول نیست.'));
});
});
}));
//--------------------------------------------------------------------------------------------------------------
app.use('/tmpl', templates);
app.use('/papi', publicApisRoutes);
app.use('/api', authedApisRoutes(passport));
app.all('/*', routes(passport));
passport.authenticate('local', function (req, res, next) {
})
// catch 404 and forward to error handler
app.use(function (req, res, next) {
var err = new Error('Not Found');
err.status = 404;
next(err);
});
// error handlers
// development error handler
// will print stacktrace
if (app.get('env') === 'development') {
app.use(function (err, req, res, next) {
res.status(err.status || 500);
res.render('error', {
message: err.message,
error: err
});
});
}
// production error handler
// no stacktraces leaked to user
app.use(function (err, req, res, next) {
res.status(err.status || 500);
res.render('error', {
message: err.message,
error: {}
});
});
module.exports = app;