index.js 7.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261
  1. const fs = require('fs');
  2. const https = require('https');
  3. const seedrandom = require('seedrandom');
  4. const express = require('express');
  5. const app = express();
  6. const options = {
  7. key: fs.readFileSync("ssl/private.key"),
  8. cert: fs.readFileSync("ssl/certificate.crt"),
  9. ca: [fs.readFileSync('ssl/ca_bundle.crt')]
  10. };
  11. const server = https.createServer(options, app);
  12. const io = require('socket.io')(server);
  13. var port = 443;
  14. var admins = {}
  15. fs.readFile("config/admins.json", "utf8", (err, data) => {
  16. if (!err && data) {
  17. admins = JSON.parse(data);
  18. }
  19. })
  20. var users = [];
  21. var bannedIps = [];
  22. fs.readFile("config/ban.json", "utf8", (err, data) => {
  23. if (!err && data) {
  24. bannedIps = JSON.parse(data);
  25. }
  26. })
  27. var randomColors = [
  28. '#c42020',
  29. '#de801e',
  30. '#f6c60b',
  31. '#19ce19',
  32. '#129696',
  33. '#2c53e3',
  34. '#6f23e3',
  35. '#883f88',
  36. ];
  37. var historySize = 50;
  38. var history = [];
  39. fs.readFile("config/config.json", "utf8", (err, data) => {
  40. if (!err) {
  41. const config = JSON.parse(data);
  42. if (config.port) port = config.port;
  43. if (config.historySize) historySize = config.historySize;
  44. if (config.randomColors) randomColors = config.randomColors;
  45. }
  46. })
  47. app.use(express.static(__dirname + '/www'));
  48. app.use('/node_modules', express.static(__dirname + '/node_modules'));
  49. app.get('/img/ava/:username', (req, res) => {
  50. var file = '';
  51. if (fs.existsSync(__dirname + '/www/img/ava/' + req.params.username + '.png')) {
  52. file = __dirname + '/www/img/ava/' + req.params.username + '.png';
  53. } else {
  54. const files = fs.readdirSync(__dirname + '/www/img/ava/random/').filter((f) => f.toLowerCase().endsWith('.png'));
  55. const seededRandom = seedrandom(req.params.username)();
  56. const randomFile = files[Math.floor(seededRandom * files.length)];
  57. file = __dirname + '/www/img/ava/random/' + randomFile;
  58. }
  59. res.sendFile(file);
  60. });
  61. io.on('connection', (socket) => {
  62. const ip = socket.handshake.address;
  63. log('- New user joined the server:', ip);
  64. for (const bannedItem of bannedIps) {
  65. if (bannedItem.ip == ip) {
  66. log('- User blacklisted, kicking:', ip)
  67. socket.emit('serverKick');
  68. socket.disconnect();
  69. break;
  70. }
  71. }
  72. socket.emit('serverHandshake');
  73. const user = {ip: ip, socket: socket};
  74. users.push(user);
  75. socket.on('login', (username, password) => {
  76. if (!username) {
  77. socket.emit('usernameInvalid');
  78. return;
  79. }
  80. for (let user of users) {
  81. if (user.name == username) {
  82. socket.emit('usernameTaken');
  83. return;
  84. }
  85. }
  86. if (admins && admins[username]) {
  87. if (!password) {
  88. log('- Attempted login as admin without password.', username, '(' + ip + ')');
  89. socket.emit('passwordRequired');
  90. return;
  91. } else if (admins[username] != password) {
  92. log('- Attempted login as admin with wrong password.', username, '(' + ip + ')');
  93. socket.emit('passwordWrong');
  94. return;
  95. }
  96. log('- Admin "' + username + '" login successful');
  97. user.admin = true;
  98. socket.on('requestKick', (userToBeKicked) => {
  99. log('- Admin "' + username + '" requested kick of User "' + userToBeKicked.name + '"');
  100. kickUser(userToBeKicked);
  101. });
  102. socket.on('requestLiftBan', (ip) => {
  103. log('- Admin "' + username + '" requested to lift ban for ip "' + ip + '"');
  104. liftBan(ip);
  105. });
  106. }
  107. log('- New user logged in:', username, '(' + ip + ')');
  108. user.name = username;
  109. user.color = getRandomColor(username);
  110. socket.emit('serverLogin', getCleanUser(user), history);
  111. io.emit('userJoined', username);
  112. updateUsers();
  113. updateBanned();
  114. socket.on('disconnect', () => {
  115. log('- User joined the server:', ip);
  116. users = users.filter((listUser) => listUser !== user);
  117. io.emit('userLeft', username);
  118. updateUsers();
  119. });
  120. socket.on('message', (msg) => {
  121. if (msg) {
  122. if (!user.admin) {
  123. const regex = /(&nbsp;|<([^>]+)>)/ig;
  124. msg = msg.replace(regex, "");
  125. }
  126. msg = msg.replace(/(?<!(href|src)=")(\b[\w]+:\/\/[\w-?&;#~=\.\/\@%]+[\w\/])/g, (url) => {
  127. try {
  128. const urlObj = new URL(url);
  129. const urlWithoutParams = urlObj.origin + urlObj.pathname;
  130. if (urlWithoutParams.toLowerCase().endsWith('.jpg')
  131. || urlWithoutParams.toLowerCase().endsWith('.gif')
  132. || urlWithoutParams.toLowerCase().endsWith('.png')) {
  133. return '<a href="' + url + '"><img src="' + url + '" alt="" /></a>';
  134. }
  135. } catch (e) {}
  136. var faviconUrl;
  137. try {
  138. faviconUrl = new URL(url).origin + '/favicon.ico';
  139. } catch (e) {
  140. log('Error getting favicon for "' + url + '"');
  141. }
  142. return '<a href="' + url + '"><img class="favicon" src="' + faviconUrl + '" alt="" />' + url + '</a>';
  143. });
  144. for (const u of users) {
  145. while (msg.indexOf('@' + u.name) > -1) {
  146. msg = msg.replace('@' + u.name, '<span class="mention" style="color: ' + u.color + '">' + u.name + '</span>');
  147. }
  148. }
  149. log(user.name + ':', msg, '(' + user.ip + ')');
  150. if (history.length >= historySize) {
  151. history = history.slice(1);
  152. }
  153. history.push({msg: msg, user: getCleanUser(user), timestamp: Date.now()});
  154. io.emit('message', msg, getCleanUser(user), Date.now());
  155. }
  156. });
  157. });
  158. });
  159. function updateUsers() {
  160. io.emit('usersUpdated', users.filter((user) => user.name != null).map(getCleanUser));
  161. }
  162. function getCleanUser(user) {
  163. return {
  164. name: user.name,
  165. admin: user.admin,
  166. color: user.color
  167. }
  168. }
  169. function kickUser(user) {
  170. let ip;
  171. for (const exUser of users) {
  172. if (exUser.name == user.name) {
  173. ip = exUser.ip;
  174. break;
  175. }
  176. }
  177. bannedIps.push({ip: ip, user: user});
  178. updateBanned();
  179. for (const exUser of users) {
  180. if (exUser.ip == ip) {
  181. exUser.socket.emit('serverKick');
  182. exUser.socket.disconnect();
  183. }
  184. }
  185. }
  186. function liftBan(ip) {
  187. bannedIps = bannedIps.filter((listItem) => listItem.ip != ip);
  188. updateBanned();
  189. }
  190. function updateBanned() {
  191. fs.writeFile('config/ban.json', JSON.stringify(bannedIps), (e) => {
  192. });
  193. io.emit('bannedUpdated', bannedIps);
  194. }
  195. function getRandomColor(seed) {
  196. return randomColors[Math.floor(seedrandom(seed)() * randomColors.length)];
  197. }
  198. function log(...inputs) {
  199. var output = '[' + new Date().toISOString().substr(0, 19).replace('T', ', ') + '] ';
  200. for (const i of inputs) {
  201. output += i + ' ';
  202. }
  203. console.log(output);
  204. fs.appendFile('log.txt', '' + output + '\n', (e) => {
  205. });
  206. }
  207. server.listen(port, () => {
  208. log('- Server up and running at port ' + port);
  209. });