webapp.py 30 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884
  1. #!/usr/bin/env python
  2. '''
  3. searx is free software: you can redistribute it and/or modify
  4. it under the terms of the GNU Affero General Public License as published by
  5. the Free Software Foundation, either version 3 of the License, or
  6. (at your option) any later version.
  7. searx is distributed in the hope that it will be useful,
  8. but WITHOUT ANY WARRANTY; without even the implied warranty of
  9. MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  10. GNU Affero General Public License for more details.
  11. You should have received a copy of the GNU Affero General Public License
  12. along with searx. If not, see < http://www.gnu.org/licenses/ >.
  13. (C) 2013- by Adam Tauber, <asciimoo@gmail.com>
  14. '''
  15. if __name__ == '__main__':
  16. from sys import path
  17. from os.path import realpath, dirname
  18. path.append(realpath(dirname(realpath(__file__)) + '/../'))
  19. import hashlib
  20. import hmac
  21. import json
  22. import os
  23. import sys
  24. import requests
  25. from searx import logger
  26. logger = logger.getChild('webapp')
  27. try:
  28. from pygments import highlight
  29. from pygments.lexers import get_lexer_by_name
  30. from pygments.formatters import HtmlFormatter
  31. except:
  32. logger.critical("cannot import dependency: pygments")
  33. from sys import exit
  34. exit(1)
  35. from cgi import escape
  36. from datetime import datetime, timedelta
  37. from werkzeug.contrib.fixers import ProxyFix
  38. from flask import (
  39. Flask, request, render_template, url_for, Response, make_response,
  40. redirect, send_from_directory
  41. )
  42. from flask_babel import Babel, gettext, format_date, format_decimal
  43. from flask.json import jsonify
  44. from searx import settings, searx_dir, searx_debug
  45. from searx.exceptions import SearxParameterException
  46. from searx.engines import (
  47. categories, engines, engine_shortcuts, get_engines_stats, initialize_engines
  48. )
  49. from searx.utils import (
  50. UnicodeWriter, highlight_content, html_to_text, get_themes,
  51. get_static_files, get_result_templates, gen_useragent, dict_subset,
  52. prettify_url
  53. )
  54. from searx.version import VERSION_STRING
  55. from searx.languages import language_codes
  56. from searx.search import SearchWithPlugins, get_search_query_from_webapp
  57. from searx.query import RawTextQuery
  58. from searx.autocomplete import searx_bang, backends as autocomplete_backends
  59. from searx.plugins import plugins
  60. from searx.preferences import Preferences, ValidationException
  61. from searx.answerers import answerers
  62. from searx.url_utils import urlencode, urlparse, urljoin
  63. # check if the pyopenssl package is installed.
  64. # It is needed for SSL connection without trouble, see #298
  65. try:
  66. import OpenSSL.SSL # NOQA
  67. except ImportError:
  68. logger.critical("The pyopenssl package has to be installed.\n"
  69. "Some HTTPS connections will fail")
  70. try:
  71. from cStringIO import StringIO
  72. except:
  73. from io import StringIO
  74. if sys.version_info[0] == 3:
  75. unicode = str
  76. # serve pages with HTTP/1.1
  77. from werkzeug.serving import WSGIRequestHandler
  78. WSGIRequestHandler.protocol_version = "HTTP/{}".format(settings['server'].get('http_protocol_version', '1.0'))
  79. static_path, templates_path, themes =\
  80. get_themes(settings['ui']['themes_path']
  81. if settings['ui']['themes_path']
  82. else searx_dir)
  83. default_theme = settings['ui']['default_theme']
  84. static_files = get_static_files(searx_dir)
  85. result_templates = get_result_templates(searx_dir)
  86. app = Flask(
  87. __name__,
  88. static_folder=static_path,
  89. template_folder=templates_path
  90. )
  91. app.jinja_env.trim_blocks = True
  92. app.jinja_env.lstrip_blocks = True
  93. app.secret_key = settings['server']['secret_key']
  94. if not searx_debug or os.environ.get("WERKZEUG_RUN_MAIN") == "true":
  95. initialize_engines(settings['engines'])
  96. babel = Babel(app)
  97. rtl_locales = ['ar', 'arc', 'bcc', 'bqi', 'ckb', 'dv', 'fa', 'glk', 'he',
  98. 'ku', 'mzn', 'pnb'', ''ps', 'sd', 'ug', 'ur', 'yi']
  99. global_favicons = []
  100. for indice, theme in enumerate(themes):
  101. global_favicons.append([])
  102. theme_img_path = searx_dir + "/static/themes/" + theme + "/img/icons/"
  103. for (dirpath, dirnames, filenames) in os.walk(theme_img_path):
  104. global_favicons[indice].extend(filenames)
  105. # used when translating category names
  106. _category_names = (gettext('files'),
  107. gettext('general'),
  108. gettext('music'),
  109. gettext('social media'),
  110. gettext('images'),
  111. gettext('videos'),
  112. gettext('it'),
  113. gettext('news'),
  114. gettext('map'),
  115. gettext('science'))
  116. outgoing_proxies = settings['outgoing'].get('proxies', None)
  117. @babel.localeselector
  118. def get_locale():
  119. locale = request.accept_languages.best_match(settings['locales'].keys())
  120. if request.preferences.get_value('locale') != '':
  121. locale = request.preferences.get_value('locale')
  122. if 'locale' in request.args\
  123. and request.args['locale'] in settings['locales']:
  124. locale = request.args['locale']
  125. if 'locale' in request.form\
  126. and request.form['locale'] in settings['locales']:
  127. locale = request.form['locale']
  128. return locale
  129. # code-highlighter
  130. @app.template_filter('code_highlighter')
  131. def code_highlighter(codelines, language=None):
  132. if not language:
  133. language = 'text'
  134. try:
  135. # find lexer by programing language
  136. lexer = get_lexer_by_name(language, stripall=True)
  137. except:
  138. # if lexer is not found, using default one
  139. logger.debug('highlighter cannot find lexer for {0}'.format(language))
  140. lexer = get_lexer_by_name('text', stripall=True)
  141. html_code = ''
  142. tmp_code = ''
  143. last_line = None
  144. # parse lines
  145. for line, code in codelines:
  146. if not last_line:
  147. line_code_start = line
  148. # new codeblock is detected
  149. if last_line is not None and\
  150. last_line + 1 != line:
  151. # highlight last codepart
  152. formatter = HtmlFormatter(linenos='inline',
  153. linenostart=line_code_start)
  154. html_code = html_code + highlight(tmp_code, lexer, formatter)
  155. # reset conditions for next codepart
  156. tmp_code = ''
  157. line_code_start = line
  158. # add codepart
  159. tmp_code += code + '\n'
  160. # update line
  161. last_line = line
  162. # highlight last codepart
  163. formatter = HtmlFormatter(linenos='inline', linenostart=line_code_start)
  164. html_code = html_code + highlight(tmp_code, lexer, formatter)
  165. return html_code
  166. # Extract domain from url
  167. @app.template_filter('extract_domain')
  168. def extract_domain(url):
  169. return urlparse(url)[1]
  170. def get_base_url():
  171. if settings['server']['base_url']:
  172. hostname = settings['server']['base_url']
  173. else:
  174. scheme = 'http'
  175. if request.is_secure:
  176. scheme = 'https'
  177. hostname = url_for('index', _external=True, _scheme=scheme)
  178. return hostname
  179. def get_current_theme_name(override=None):
  180. """Returns theme name.
  181. Checks in this order:
  182. 1. override
  183. 2. cookies
  184. 3. settings"""
  185. if override and (override in themes or override == '__common__'):
  186. return override
  187. theme_name = request.args.get('theme', request.preferences.get_value('theme'))
  188. if theme_name not in themes:
  189. theme_name = default_theme
  190. return theme_name
  191. def get_result_template(theme, template_name):
  192. themed_path = theme + '/result_templates/' + template_name
  193. if themed_path in result_templates:
  194. return themed_path
  195. return 'result_templates/' + template_name
  196. def url_for_theme(endpoint, override_theme=None, **values):
  197. if endpoint == 'static' and values.get('filename'):
  198. theme_name = get_current_theme_name(override=override_theme)
  199. filename_with_theme = "themes/{}/{}".format(theme_name, values['filename'])
  200. if filename_with_theme in static_files:
  201. values['filename'] = filename_with_theme
  202. return url_for(endpoint, **values)
  203. def proxify(url):
  204. if url.startswith('//'):
  205. url = 'https:' + url
  206. if not settings.get('result_proxy'):
  207. return url
  208. url_params = dict(mortyurl=url.encode('utf-8'))
  209. if settings['result_proxy'].get('key'):
  210. url_params['mortyhash'] = hmac.new(settings['result_proxy']['key'],
  211. url.encode('utf-8'),
  212. hashlib.sha256).hexdigest()
  213. return '{0}?{1}'.format(settings['result_proxy']['url'],
  214. urlencode(url_params))
  215. def image_proxify(url):
  216. if url.startswith('//'):
  217. url = 'https:' + url
  218. if not request.preferences.get_value('image_proxy'):
  219. return url
  220. if settings.get('result_proxy'):
  221. return proxify(url)
  222. h = hmac.new(settings['server']['secret_key'], url.encode('utf-8'), hashlib.sha256).hexdigest()
  223. return '{0}?{1}'.format(url_for('image_proxy'),
  224. urlencode(dict(url=url.encode('utf-8'), h=h)))
  225. def render(template_name, override_theme=None, **kwargs):
  226. disabled_engines = request.preferences.engines.get_disabled()
  227. enabled_categories = set(category for engine_name in engines
  228. for category in engines[engine_name].categories
  229. if (engine_name, category) not in disabled_engines)
  230. if 'categories' not in kwargs:
  231. kwargs['categories'] = ['general']
  232. kwargs['categories'].extend(x for x in
  233. sorted(categories.keys())
  234. if x != 'general'
  235. and x in enabled_categories)
  236. if 'all_categories' not in kwargs:
  237. kwargs['all_categories'] = ['general']
  238. kwargs['all_categories'].extend(x for x in
  239. sorted(categories.keys())
  240. if x != 'general')
  241. if 'selected_categories' not in kwargs:
  242. kwargs['selected_categories'] = []
  243. for arg in request.args:
  244. if arg.startswith('category_'):
  245. c = arg.split('_', 1)[1]
  246. if c in categories:
  247. kwargs['selected_categories'].append(c)
  248. if not kwargs['selected_categories']:
  249. cookie_categories = request.preferences.get_value('categories')
  250. for ccateg in cookie_categories:
  251. kwargs['selected_categories'].append(ccateg)
  252. if not kwargs['selected_categories']:
  253. kwargs['selected_categories'] = ['general']
  254. if 'autocomplete' not in kwargs:
  255. kwargs['autocomplete'] = request.preferences.get_value('autocomplete')
  256. if get_locale() in rtl_locales and 'rtl' not in kwargs:
  257. kwargs['rtl'] = True
  258. kwargs['searx_version'] = VERSION_STRING
  259. kwargs['method'] = request.preferences.get_value('method')
  260. kwargs['safesearch'] = str(request.preferences.get_value('safesearch'))
  261. kwargs['language_codes'] = language_codes
  262. if 'current_language' not in kwargs:
  263. kwargs['current_language'] = request.preferences.get_value('language')
  264. # override url_for function in templates
  265. kwargs['url_for'] = url_for_theme
  266. kwargs['image_proxify'] = image_proxify
  267. kwargs['proxify'] = proxify if settings.get('result_proxy') else None
  268. kwargs['get_result_template'] = get_result_template
  269. kwargs['theme'] = get_current_theme_name(override=override_theme)
  270. kwargs['template_name'] = template_name
  271. kwargs['cookies'] = request.cookies
  272. kwargs['errors'] = request.errors
  273. kwargs['instance_name'] = settings['general']['instance_name']
  274. kwargs['results_on_new_tab'] = request.preferences.get_value('results_on_new_tab')
  275. kwargs['unicode'] = unicode
  276. kwargs['scripts'] = set()
  277. for plugin in request.user_plugins:
  278. for script in plugin.js_dependencies:
  279. kwargs['scripts'].add(script)
  280. kwargs['styles'] = set()
  281. for plugin in request.user_plugins:
  282. for css in plugin.css_dependencies:
  283. kwargs['styles'].add(css)
  284. return render_template(
  285. '{}/{}'.format(kwargs['theme'], template_name), **kwargs)
  286. @app.before_request
  287. def pre_request():
  288. request.errors = []
  289. preferences = Preferences(themes, list(categories.keys()), engines, plugins)
  290. request.preferences = preferences
  291. try:
  292. preferences.parse_cookies(request.cookies)
  293. except:
  294. request.errors.append(gettext('Invalid settings, please edit your preferences'))
  295. # merge GET, POST vars
  296. # request.form
  297. request.form = dict(request.form.items())
  298. for k, v in request.args.items():
  299. if k not in request.form:
  300. request.form[k] = v
  301. # request.user_plugins
  302. request.user_plugins = []
  303. allowed_plugins = preferences.plugins.get_enabled()
  304. disabled_plugins = preferences.plugins.get_disabled()
  305. for plugin in plugins:
  306. if ((plugin.default_on and plugin.id not in disabled_plugins)
  307. or plugin.id in allowed_plugins):
  308. request.user_plugins.append(plugin)
  309. def index_error(output_format, error_message):
  310. if output_format == 'json':
  311. return Response(json.dumps({'error': error_message}),
  312. mimetype='application/json')
  313. elif output_format == 'csv':
  314. response = Response('', mimetype='application/csv')
  315. cont_disp = 'attachment;Filename=searx.csv'
  316. response.headers.add('Content-Disposition', cont_disp)
  317. return response
  318. elif output_format == 'rss':
  319. response_rss = render(
  320. 'opensearch_response_rss.xml',
  321. results=[],
  322. q=request.form['q'] if 'q' in request.form else '',
  323. number_of_results=0,
  324. base_url=get_base_url(),
  325. error_message=error_message
  326. )
  327. return Response(response_rss, mimetype='text/xml')
  328. else:
  329. # html
  330. request.errors.append(gettext('search error'))
  331. return render(
  332. 'index.html',
  333. )
  334. @app.route('/search', methods=['GET', 'POST'])
  335. @app.route('/', methods=['GET', 'POST'])
  336. def index():
  337. """Render index page.
  338. Supported outputs: html, json, csv, rss.
  339. """
  340. # output_format
  341. output_format = request.form.get('format', 'html')
  342. if output_format not in ['html', 'csv', 'json', 'rss']:
  343. output_format = 'html'
  344. # check if there is query
  345. if request.form.get('q') is None:
  346. if output_format == 'html':
  347. return render(
  348. 'index.html',
  349. )
  350. else:
  351. return index_error(output_format, 'No query'), 400
  352. # search
  353. search_query = None
  354. result_container = None
  355. try:
  356. search_query = get_search_query_from_webapp(request.preferences, request.form)
  357. # search = Search(search_query) # without plugins
  358. search = SearchWithPlugins(search_query, request.user_plugins, request)
  359. result_container = search.search()
  360. except Exception as e:
  361. # log exception
  362. logger.exception('search error')
  363. # is it an invalid input parameter or something else ?
  364. if (issubclass(e.__class__, SearxParameterException)):
  365. return index_error(output_format, e.message), 400
  366. else:
  367. return index_error(output_format, gettext('search error')), 500
  368. # results
  369. results = result_container.get_ordered_results()
  370. number_of_results = result_container.results_number()
  371. if number_of_results < result_container.results_length():
  372. number_of_results = 0
  373. # UI
  374. advanced_search = request.form.get('advanced_search', None)
  375. # output
  376. for result in results:
  377. if output_format == 'html':
  378. if 'content' in result and result['content']:
  379. result['content'] = highlight_content(escape(result['content'][:1024]), search_query.query)
  380. result['title'] = highlight_content(escape(result['title'] or u''), search_query.query)
  381. else:
  382. if result.get('content'):
  383. result['content'] = html_to_text(result['content']).strip()
  384. # removing html content and whitespace duplications
  385. result['title'] = ' '.join(html_to_text(result['title']).strip().split())
  386. result['pretty_url'] = prettify_url(result['url'])
  387. # TODO, check if timezone is calculated right
  388. if 'publishedDate' in result:
  389. try: # test if publishedDate >= 1900 (datetime module bug)
  390. result['pubdate'] = result['publishedDate'].strftime('%Y-%m-%d %H:%M:%S%z')
  391. except ValueError:
  392. result['publishedDate'] = None
  393. else:
  394. if result['publishedDate'].replace(tzinfo=None) >= datetime.now() - timedelta(days=1):
  395. timedifference = datetime.now() - result['publishedDate'].replace(tzinfo=None)
  396. minutes = int((timedifference.seconds / 60) % 60)
  397. hours = int(timedifference.seconds / 60 / 60)
  398. if hours == 0:
  399. result['publishedDate'] = gettext(u'{minutes} minute(s) ago').format(minutes=minutes)
  400. else:
  401. result['publishedDate'] = gettext(u'{hours} hour(s), {minutes} minute(s) ago').format(hours=hours, minutes=minutes) # noqa
  402. else:
  403. result['publishedDate'] = format_date(result['publishedDate'])
  404. if output_format == 'json':
  405. return Response(json.dumps({'query': search_query.query.decode('utf-8'),
  406. 'number_of_results': number_of_results,
  407. 'results': results,
  408. 'answers': list(result_container.answers),
  409. 'corrections': list(result_container.corrections),
  410. 'infoboxes': result_container.infoboxes,
  411. 'suggestions': list(result_container.suggestions)}),
  412. mimetype='application/json')
  413. elif output_format == 'csv':
  414. csv = UnicodeWriter(StringIO())
  415. keys = ('title', 'url', 'content', 'host', 'engine', 'score')
  416. csv.writerow(keys)
  417. for row in results:
  418. row['host'] = row['parsed_url'].netloc
  419. csv.writerow([row.get(key, '') for key in keys])
  420. csv.stream.seek(0)
  421. response = Response(csv.stream.read(), mimetype='application/csv')
  422. cont_disp = 'attachment;Filename=searx_-_{0}.csv'.format(search_query.query)
  423. response.headers.add('Content-Disposition', cont_disp)
  424. return response
  425. elif output_format == 'rss':
  426. response_rss = render(
  427. 'opensearch_response_rss.xml',
  428. results=results,
  429. q=request.form['q'],
  430. number_of_results=number_of_results,
  431. base_url=get_base_url(),
  432. override_theme='__common__',
  433. )
  434. return Response(response_rss, mimetype='text/xml')
  435. return render(
  436. 'results.html',
  437. results=results,
  438. q=request.form['q'],
  439. selected_categories=search_query.categories,
  440. pageno=search_query.pageno,
  441. time_range=search_query.time_range,
  442. number_of_results=format_decimal(number_of_results),
  443. advanced_search=advanced_search,
  444. suggestions=result_container.suggestions,
  445. answers=result_container.answers,
  446. corrections=result_container.corrections,
  447. infoboxes=result_container.infoboxes,
  448. paging=result_container.paging,
  449. current_language=search_query.lang,
  450. base_url=get_base_url(),
  451. theme=get_current_theme_name(),
  452. favicons=global_favicons[themes.index(get_current_theme_name())]
  453. )
  454. @app.route('/about', methods=['GET'])
  455. def about():
  456. """Render about page"""
  457. return render(
  458. 'about.html',
  459. )
  460. @app.route('/autocompleter', methods=['GET', 'POST'])
  461. def autocompleter():
  462. """Return autocompleter results"""
  463. # set blocked engines
  464. disabled_engines = request.preferences.engines.get_disabled()
  465. # parse query
  466. raw_text_query = RawTextQuery(request.form.get('q', u'').encode('utf-8'), disabled_engines)
  467. raw_text_query.parse_query()
  468. # check if search query is set
  469. if not raw_text_query.getSearchQuery():
  470. return '', 400
  471. # run autocompleter
  472. completer = autocomplete_backends.get(request.preferences.get_value('autocomplete'))
  473. # parse searx specific autocompleter results like !bang
  474. raw_results = searx_bang(raw_text_query)
  475. # normal autocompletion results only appear if max 3 inner results returned
  476. if len(raw_results) <= 3 and completer:
  477. # get language from cookie
  478. language = request.preferences.get_value('language')
  479. if not language or language == 'all':
  480. language = 'en'
  481. else:
  482. language = language.split('-')[0]
  483. # run autocompletion
  484. raw_results.extend(completer(raw_text_query.getSearchQuery(), language))
  485. # parse results (write :language and !engine back to result string)
  486. results = []
  487. for result in raw_results:
  488. raw_text_query.changeSearchQuery(result)
  489. # add parsed result
  490. results.append(raw_text_query.getFullQuery())
  491. # return autocompleter results
  492. if request.form.get('format') == 'x-suggestions':
  493. return Response(json.dumps([raw_text_query.query, results]),
  494. mimetype='application/json')
  495. return Response(json.dumps(results),
  496. mimetype='application/json')
  497. @app.route('/preferences', methods=['GET', 'POST'])
  498. def preferences():
  499. """Render preferences page && save user preferences"""
  500. # save preferences
  501. if request.method == 'POST':
  502. resp = make_response(redirect(urljoin(settings['server']['base_url'], url_for('index'))))
  503. try:
  504. request.preferences.parse_form(request.form)
  505. except ValidationException:
  506. request.errors.append(gettext('Invalid settings, please edit your preferences'))
  507. return resp
  508. return request.preferences.save(resp)
  509. # render preferences
  510. image_proxy = request.preferences.get_value('image_proxy')
  511. lang = request.preferences.get_value('language')
  512. disabled_engines = request.preferences.engines.get_disabled()
  513. allowed_plugins = request.preferences.plugins.get_enabled()
  514. # stats for preferences page
  515. stats = {}
  516. for c in categories:
  517. for e in categories[c]:
  518. stats[e.name] = {'time': None,
  519. 'warn_timeout': False,
  520. 'warn_time': False}
  521. if e.timeout > settings['outgoing']['request_timeout']:
  522. stats[e.name]['warn_timeout'] = True
  523. # get first element [0], the engine time,
  524. # and then the second element [1] : the time (the first one is the label)
  525. for engine_stat in get_engines_stats()[0][1]:
  526. stats[engine_stat.get('name')]['time'] = round(engine_stat.get('avg'), 3)
  527. if engine_stat.get('avg') > settings['outgoing']['request_timeout']:
  528. stats[engine_stat.get('name')]['warn_time'] = True
  529. # end of stats
  530. return render('preferences.html',
  531. locales=settings['locales'],
  532. current_locale=get_locale(),
  533. image_proxy=image_proxy,
  534. engines_by_category=categories,
  535. stats=stats,
  536. answerers=[{'info': a.self_info(), 'keywords': a.keywords} for a in answerers],
  537. disabled_engines=disabled_engines,
  538. autocomplete_backends=autocomplete_backends,
  539. shortcuts={y: x for x, y in engine_shortcuts.items()},
  540. themes=themes,
  541. plugins=plugins,
  542. allowed_plugins=allowed_plugins,
  543. theme=get_current_theme_name(),
  544. preferences=True)
  545. @app.route('/image_proxy', methods=['GET'])
  546. def image_proxy():
  547. url = request.args.get('url').encode('utf-8')
  548. if not url:
  549. return '', 400
  550. h = hmac.new(settings['server']['secret_key'], url, hashlib.sha256).hexdigest()
  551. if h != request.args.get('h'):
  552. return '', 400
  553. headers = dict_subset(request.headers, {'If-Modified-Since', 'If-None-Match'})
  554. headers['User-Agent'] = gen_useragent()
  555. resp = requests.get(url,
  556. stream=True,
  557. timeout=settings['outgoing']['request_timeout'],
  558. headers=headers,
  559. proxies=outgoing_proxies)
  560. if resp.status_code == 304:
  561. return '', resp.status_code
  562. if resp.status_code != 200:
  563. logger.debug('image-proxy: wrong response code: {0}'.format(resp.status_code))
  564. if resp.status_code >= 400:
  565. return '', resp.status_code
  566. return '', 400
  567. if not resp.headers.get('content-type', '').startswith('image/'):
  568. logger.debug('image-proxy: wrong content-type: {0}'.format(resp.headers.get('content-type')))
  569. return '', 400
  570. img = ''
  571. chunk_counter = 0
  572. for chunk in resp.iter_content(1024 * 1024):
  573. chunk_counter += 1
  574. if chunk_counter > 5:
  575. return '', 502 # Bad gateway - file is too big (>5M)
  576. img += chunk
  577. headers = dict_subset(resp.headers, {'Content-Length', 'Length', 'Date', 'Last-Modified', 'Expires', 'Etag'})
  578. return Response(img, mimetype=resp.headers['content-type'], headers=headers)
  579. @app.route('/stats', methods=['GET'])
  580. def stats():
  581. """Render engine statistics page."""
  582. stats = get_engines_stats()
  583. return render(
  584. 'stats.html',
  585. stats=stats,
  586. )
  587. @app.route('/robots.txt', methods=['GET'])
  588. def robots():
  589. return Response("""User-agent: *
  590. Allow: /
  591. Allow: /about
  592. Disallow: /stats
  593. Disallow: /preferences
  594. Disallow: /*?*q=*
  595. """, mimetype='text/plain')
  596. @app.route('/opensearch.xml', methods=['GET'])
  597. def opensearch():
  598. method = 'post'
  599. if request.preferences.get_value('method') == 'GET':
  600. method = 'get'
  601. # chrome/chromium only supports HTTP GET....
  602. if request.headers.get('User-Agent', '').lower().find('webkit') >= 0:
  603. method = 'get'
  604. ret = render('opensearch.xml',
  605. opensearch_method=method,
  606. host=get_base_url(),
  607. urljoin=urljoin,
  608. override_theme='__common__')
  609. resp = Response(response=ret,
  610. status=200,
  611. mimetype="text/xml")
  612. return resp
  613. @app.route('/favicon.ico')
  614. def favicon():
  615. return send_from_directory(os.path.join(app.root_path,
  616. 'static/themes',
  617. get_current_theme_name(),
  618. 'img'),
  619. 'favicon.png',
  620. mimetype='image/vnd.microsoft.icon')
  621. @app.route('/clear_cookies')
  622. def clear_cookies():
  623. resp = make_response(redirect(urljoin(settings['server']['base_url'], url_for('index'))))
  624. for cookie_name in request.cookies:
  625. resp.delete_cookie(cookie_name)
  626. return resp
  627. @app.route('/config')
  628. def config():
  629. return jsonify({'categories': categories.keys(),
  630. 'engines': [{'name': engine_name,
  631. 'categories': engine.categories,
  632. 'shortcut': engine.shortcut,
  633. 'enabled': not engine.disabled,
  634. 'paging': engine.paging,
  635. 'language_support': engine.language_support,
  636. 'supported_languages':
  637. engine.supported_languages.keys()
  638. if isinstance(engine.supported_languages, dict)
  639. else engine.supported_languages,
  640. 'safesearch': engine.safesearch,
  641. 'time_range_support': engine.time_range_support,
  642. 'timeout': engine.timeout}
  643. for engine_name, engine in engines.items()],
  644. 'plugins': [{'name': plugin.name,
  645. 'enabled': plugin.default_on}
  646. for plugin in plugins],
  647. 'instance_name': settings['general']['instance_name'],
  648. 'locales': settings['locales'],
  649. 'default_locale': settings['ui']['default_locale'],
  650. 'autocomplete': settings['search']['autocomplete'],
  651. 'safe_search': settings['search']['safe_search'],
  652. 'default_theme': settings['ui']['default_theme'],
  653. 'version': VERSION_STRING})
  654. @app.errorhandler(404)
  655. def page_not_found(e):
  656. return render('404.html'), 404
  657. def run():
  658. logger.debug('starting webserver on %s:%s', settings['server']['port'], settings['server']['bind_address'])
  659. app.run(
  660. debug=searx_debug,
  661. use_debugger=searx_debug,
  662. port=settings['server']['port'],
  663. host=settings['server']['bind_address'],
  664. threaded=True
  665. )
  666. class ReverseProxyPathFix(object):
  667. '''Wrap the application in this middleware and configure the
  668. front-end server to add these headers, to let you quietly bind
  669. this to a URL other than / and to an HTTP scheme that is
  670. different than what is used locally.
  671. http://flask.pocoo.org/snippets/35/
  672. In nginx:
  673. location /myprefix {
  674. proxy_pass http://127.0.0.1:8000;
  675. proxy_set_header Host $host;
  676. proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
  677. proxy_set_header X-Scheme $scheme;
  678. proxy_set_header X-Script-Name /myprefix;
  679. }
  680. :param app: the WSGI application
  681. '''
  682. def __init__(self, app):
  683. self.app = app
  684. def __call__(self, environ, start_response):
  685. script_name = environ.get('HTTP_X_SCRIPT_NAME', '')
  686. if script_name:
  687. environ['SCRIPT_NAME'] = script_name
  688. path_info = environ['PATH_INFO']
  689. if path_info.startswith(script_name):
  690. environ['PATH_INFO'] = path_info[len(script_name):]
  691. scheme = environ.get('HTTP_X_SCHEME', '')
  692. if scheme:
  693. environ['wsgi.url_scheme'] = scheme
  694. return self.app(environ, start_response)
  695. application = app
  696. # patch app to handle non root url-s behind proxy & wsgi
  697. app.wsgi_app = ReverseProxyPathFix(ProxyFix(application.wsgi_app))
  698. if __name__ == "__main__":
  699. run()