-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathserver.js
69 lines (54 loc) · 2.06 KB
/
server.js
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
var express = require('express');
var helmet = require('helmet');
var bodyParser = require('body-parser');
var path = require('path');
require("dotenv").config();
var config = require('./config/protected');
var server = express();
server.use(helmet.contentSecurityPolicy({
directives: {
defaultSrc: config.getNodeEnv() === 'development' ? ["'self'", "'unsafe-eval'"] : ["'self'"],
styleSrc: ["'self'", "'unsafe-inline'", 'http://cdnjs.cloudflare.com', 'https://fonts.googleapis.com'],
fontSrc: ["'self'", 'data:', 'https://cdnjs.cloudflare.com', 'https://fonts.gstatic.com'],
imgSrc: ["'self'", 'data:'],
connectSrc: ["'self'"]
},
loose: true
}));
server.use(helmet.dnsPrefetchControl());
server.use(helmet.frameguard());
server.use(helmet.hidePoweredBy());
server.use(helmet.ieNoOpen());
server.use(helmet.noSniff());
server.use(helmet.xssFilter());
server.use(bodyParser.json({limit: '10mb'}));
server.use(bodyParser.urlencoded({limit: '10mb', extended: true}));
server.use(function (req, res, next) {
res.setHeader('Access-Control-Allow-Origin', `http://localhost:${config.getPort()}`);
res.setHeader('Access-Control-Allow-Headers', 'Content-type, Authorization');
res.setHeader('Access-Control-Allow-Methods', 'GET, POST, PUT, OPTIONS, DELETE');
//res.setHeader('Acess-Control-Allow-Credentials', 'true');
next();
});
server.use('/arangodb', require('./backend/routes/arangodb'));
var publicDir = path.join(__dirname, 'public');
if (config.getNodeEnv() === 'development') {
var webpack = require('webpack');
var webpackConfig = require('./webpack.config');
var compiler = webpack(webpackConfig);
server.use(require('webpack-dev-middleware')(compiler, {
hot: true,
stats: {
colors: true
}
}));
server.use(require('webpack-hot-middleware')(compiler));
} else {
server.use(express.static(publicDir));
}
server.get('*', function(req, res) {
res.sendFile(path.join(publicDir, 'index.html'));
});
server.listen(config.getPort(), '0.0.0.0', function() {
console.log('Express server listening on ' + config.getPort() + '...');
});