webapp.py 30 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888
  1. #!/usr/bin/env python
  2. '''
  3. searx is free software: you can redistribute it and/or modify
  4. it under the terms of the GNU Affero General Public License as published by
  5. the Free Software Foundation, either version 3 of the License, or
  6. (at your option) any later version.
  7. searx is distributed in the hope that it will be useful,
  8. but WITHOUT ANY WARRANTY; without even the implied warranty of
  9. MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  10. GNU Affero General Public License for more details.
  11. You should have received a copy of the GNU Affero General Public License
  12. along with searx. If not, see < http://www.gnu.org/licenses/ >.
  13. (C) 2013- by Adam Tauber, <asciimoo@gmail.com>
  14. '''
  15. if __name__ == '__main__':
  16. from sys import path
  17. from os.path import realpath, dirname
  18. path.append(realpath(dirname(realpath(__file__)) + '/../'))
  19. import hashlib
  20. import hmac
  21. import json
  22. import os
  23. import sys
  24. import requests
  25. from searx import logger
  26. logger = logger.getChild('webapp')
  27. try:
  28. from pygments import highlight
  29. from pygments.lexers import get_lexer_by_name
  30. from pygments.formatters import HtmlFormatter
  31. except:
  32. logger.critical("cannot import dependency: pygments")
  33. from sys import exit
  34. exit(1)
  35. from cgi import escape
  36. from datetime import datetime, timedelta
  37. from werkzeug.contrib.fixers import ProxyFix
  38. from flask import (
  39. Flask, request, render_template, url_for, Response, make_response,
  40. redirect, send_from_directory
  41. )
  42. from flask_babel import Babel, gettext, format_date, format_decimal
  43. from flask.json import jsonify
  44. from searx import settings, searx_dir, searx_debug
  45. from searx.exceptions import SearxParameterException
  46. from searx.engines import (
  47. categories, engines, engine_shortcuts, get_engines_stats, initialize_engines
  48. )
  49. from searx.utils import (
  50. UnicodeWriter, highlight_content, html_to_text, get_resources_directory,
  51. get_static_files, get_result_templates, get_themes, gen_useragent,
  52. dict_subset, prettify_url
  53. )
  54. from searx.version import VERSION_STRING
  55. from searx.languages import language_codes
  56. from searx.search import SearchWithPlugins, get_search_query_from_webapp
  57. from searx.query import RawTextQuery
  58. from searx.autocomplete import searx_bang, backends as autocomplete_backends
  59. from searx.plugins import plugins
  60. from searx.preferences import Preferences, ValidationException
  61. from searx.answerers import answerers
  62. from searx.url_utils import urlencode, urlparse, urljoin
  63. # check if the pyopenssl package is installed.
  64. # It is needed for SSL connection without trouble, see #298
  65. try:
  66. import OpenSSL.SSL # NOQA
  67. except ImportError:
  68. logger.critical("The pyopenssl package has to be installed.\n"
  69. "Some HTTPS connections will fail")
  70. try:
  71. from cStringIO import StringIO
  72. except:
  73. from io import StringIO
  74. if sys.version_info[0] == 3:
  75. unicode = str
  76. # serve pages with HTTP/1.1
  77. from werkzeug.serving import WSGIRequestHandler
  78. WSGIRequestHandler.protocol_version = "HTTP/{}".format(settings['server'].get('http_protocol_version', '1.0'))
  79. # about static
  80. static_path = get_resources_directory(searx_dir, 'static', settings['ui']['static_path'])
  81. logger.debug('static directory is %s', static_path)
  82. static_files = get_static_files(static_path)
  83. # about templates
  84. default_theme = settings['ui']['default_theme']
  85. templates_path = get_resources_directory(searx_dir, 'templates', settings['ui']['templates_path'])
  86. logger.debug('templates directory is %s', templates_path)
  87. themes = get_themes(templates_path)
  88. result_templates = get_result_templates(templates_path)
  89. global_favicons = []
  90. for indice, theme in enumerate(themes):
  91. global_favicons.append([])
  92. theme_img_path = os.path.join(static_path, 'themes', theme, 'img', 'icons')
  93. for (dirpath, dirnames, filenames) in os.walk(theme_img_path):
  94. global_favicons[indice].extend(filenames)
  95. # Flask app
  96. app = Flask(
  97. __name__,
  98. static_folder=static_path,
  99. template_folder=templates_path
  100. )
  101. app.jinja_env.trim_blocks = True
  102. app.jinja_env.lstrip_blocks = True
  103. app.secret_key = settings['server']['secret_key']
  104. if not searx_debug \
  105. or os.environ.get("WERKZEUG_RUN_MAIN") == "true" \
  106. or os.environ.get('UWSGI_ORIGINAL_PROC_NAME') is not None:
  107. initialize_engines(settings['engines'])
  108. babel = Babel(app)
  109. rtl_locales = ['ar', 'arc', 'bcc', 'bqi', 'ckb', 'dv', 'fa', 'glk', 'he',
  110. 'ku', 'mzn', 'pnb'', ''ps', 'sd', 'ug', 'ur', 'yi']
  111. # used when translating category names
  112. _category_names = (gettext('files'),
  113. gettext('general'),
  114. gettext('music'),
  115. gettext('social media'),
  116. gettext('images'),
  117. gettext('videos'),
  118. gettext('it'),
  119. gettext('news'),
  120. gettext('map'),
  121. gettext('science'))
  122. outgoing_proxies = settings['outgoing'].get('proxies', None)
  123. @babel.localeselector
  124. def get_locale():
  125. locale = request.accept_languages.best_match(settings['locales'].keys())
  126. if request.preferences.get_value('locale') != '':
  127. locale = request.preferences.get_value('locale')
  128. if 'locale' in request.args\
  129. and request.args['locale'] in settings['locales']:
  130. locale = request.args['locale']
  131. if 'locale' in request.form\
  132. and request.form['locale'] in settings['locales']:
  133. locale = request.form['locale']
  134. return locale
  135. # code-highlighter
  136. @app.template_filter('code_highlighter')
  137. def code_highlighter(codelines, language=None):
  138. if not language:
  139. language = 'text'
  140. try:
  141. # find lexer by programing language
  142. lexer = get_lexer_by_name(language, stripall=True)
  143. except:
  144. # if lexer is not found, using default one
  145. logger.debug('highlighter cannot find lexer for {0}'.format(language))
  146. lexer = get_lexer_by_name('text', stripall=True)
  147. html_code = ''
  148. tmp_code = ''
  149. last_line = None
  150. # parse lines
  151. for line, code in codelines:
  152. if not last_line:
  153. line_code_start = line
  154. # new codeblock is detected
  155. if last_line is not None and\
  156. last_line + 1 != line:
  157. # highlight last codepart
  158. formatter = HtmlFormatter(linenos='inline',
  159. linenostart=line_code_start)
  160. html_code = html_code + highlight(tmp_code, lexer, formatter)
  161. # reset conditions for next codepart
  162. tmp_code = ''
  163. line_code_start = line
  164. # add codepart
  165. tmp_code += code + '\n'
  166. # update line
  167. last_line = line
  168. # highlight last codepart
  169. formatter = HtmlFormatter(linenos='inline', linenostart=line_code_start)
  170. html_code = html_code + highlight(tmp_code, lexer, formatter)
  171. return html_code
  172. # Extract domain from url
  173. @app.template_filter('extract_domain')
  174. def extract_domain(url):
  175. return urlparse(url)[1]
  176. def get_base_url():
  177. if settings['server']['base_url']:
  178. hostname = settings['server']['base_url']
  179. else:
  180. scheme = 'http'
  181. if request.is_secure:
  182. scheme = 'https'
  183. hostname = url_for('index', _external=True, _scheme=scheme)
  184. return hostname
  185. def get_current_theme_name(override=None):
  186. """Returns theme name.
  187. Checks in this order:
  188. 1. override
  189. 2. cookies
  190. 3. settings"""
  191. if override and (override in themes or override == '__common__'):
  192. return override
  193. theme_name = request.args.get('theme', request.preferences.get_value('theme'))
  194. if theme_name not in themes:
  195. theme_name = default_theme
  196. return theme_name
  197. def get_result_template(theme, template_name):
  198. themed_path = theme + '/result_templates/' + template_name
  199. if themed_path in result_templates:
  200. return themed_path
  201. return 'result_templates/' + template_name
  202. def url_for_theme(endpoint, override_theme=None, **values):
  203. if endpoint == 'static' and values.get('filename'):
  204. theme_name = get_current_theme_name(override=override_theme)
  205. filename_with_theme = "themes/{}/{}".format(theme_name, values['filename'])
  206. if filename_with_theme in static_files:
  207. values['filename'] = filename_with_theme
  208. return url_for(endpoint, **values)
  209. def proxify(url):
  210. if url.startswith('//'):
  211. url = 'https:' + url
  212. if not settings.get('result_proxy'):
  213. return url
  214. url_params = dict(mortyurl=url.encode('utf-8'))
  215. if settings['result_proxy'].get('key'):
  216. url_params['mortyhash'] = hmac.new(settings['result_proxy']['key'],
  217. url.encode('utf-8'),
  218. hashlib.sha256).hexdigest()
  219. return '{0}?{1}'.format(settings['result_proxy']['url'],
  220. urlencode(url_params))
  221. def image_proxify(url):
  222. if url.startswith('//'):
  223. url = 'https:' + url
  224. if not request.preferences.get_value('image_proxy'):
  225. return url
  226. if settings.get('result_proxy'):
  227. return proxify(url)
  228. h = hmac.new(settings['server']['secret_key'], url.encode('utf-8'), hashlib.sha256).hexdigest()
  229. return '{0}?{1}'.format(url_for('image_proxy'),
  230. urlencode(dict(url=url.encode('utf-8'), h=h)))
  231. def render(template_name, override_theme=None, **kwargs):
  232. disabled_engines = request.preferences.engines.get_disabled()
  233. enabled_categories = set(category for engine_name in engines
  234. for category in engines[engine_name].categories
  235. if (engine_name, category) not in disabled_engines)
  236. if 'categories' not in kwargs:
  237. kwargs['categories'] = ['general']
  238. kwargs['categories'].extend(x for x in
  239. sorted(categories.keys())
  240. if x != 'general'
  241. and x in enabled_categories)
  242. if 'all_categories' not in kwargs:
  243. kwargs['all_categories'] = ['general']
  244. kwargs['all_categories'].extend(x for x in
  245. sorted(categories.keys())
  246. if x != 'general')
  247. if 'selected_categories' not in kwargs:
  248. kwargs['selected_categories'] = []
  249. for arg in request.args:
  250. if arg.startswith('category_'):
  251. c = arg.split('_', 1)[1]
  252. if c in categories:
  253. kwargs['selected_categories'].append(c)
  254. if not kwargs['selected_categories']:
  255. cookie_categories = request.preferences.get_value('categories')
  256. for ccateg in cookie_categories:
  257. kwargs['selected_categories'].append(ccateg)
  258. if not kwargs['selected_categories']:
  259. kwargs['selected_categories'] = ['general']
  260. if 'autocomplete' not in kwargs:
  261. kwargs['autocomplete'] = request.preferences.get_value('autocomplete')
  262. if get_locale() in rtl_locales and 'rtl' not in kwargs:
  263. kwargs['rtl'] = True
  264. kwargs['searx_version'] = VERSION_STRING
  265. kwargs['method'] = request.preferences.get_value('method')
  266. kwargs['safesearch'] = str(request.preferences.get_value('safesearch'))
  267. kwargs['language_codes'] = language_codes
  268. if 'current_language' not in kwargs:
  269. kwargs['current_language'] = request.preferences.get_value('language')
  270. # override url_for function in templates
  271. kwargs['url_for'] = url_for_theme
  272. kwargs['image_proxify'] = image_proxify
  273. kwargs['proxify'] = proxify if settings.get('result_proxy') else None
  274. kwargs['get_result_template'] = get_result_template
  275. kwargs['theme'] = get_current_theme_name(override=override_theme)
  276. kwargs['template_name'] = template_name
  277. kwargs['cookies'] = request.cookies
  278. kwargs['errors'] = request.errors
  279. kwargs['instance_name'] = settings['general']['instance_name']
  280. kwargs['results_on_new_tab'] = request.preferences.get_value('results_on_new_tab')
  281. kwargs['unicode'] = unicode
  282. kwargs['scripts'] = set()
  283. for plugin in request.user_plugins:
  284. for script in plugin.js_dependencies:
  285. kwargs['scripts'].add(script)
  286. kwargs['styles'] = set()
  287. for plugin in request.user_plugins:
  288. for css in plugin.css_dependencies:
  289. kwargs['styles'].add(css)
  290. return render_template(
  291. '{}/{}'.format(kwargs['theme'], template_name), **kwargs)
  292. @app.before_request
  293. def pre_request():
  294. request.errors = []
  295. preferences = Preferences(themes, list(categories.keys()), engines, plugins)
  296. request.preferences = preferences
  297. try:
  298. preferences.parse_cookies(request.cookies)
  299. except:
  300. request.errors.append(gettext('Invalid settings, please edit your preferences'))
  301. # merge GET, POST vars
  302. # request.form
  303. request.form = dict(request.form.items())
  304. for k, v in request.args.items():
  305. if k not in request.form:
  306. request.form[k] = v
  307. # request.user_plugins
  308. request.user_plugins = []
  309. allowed_plugins = preferences.plugins.get_enabled()
  310. disabled_plugins = preferences.plugins.get_disabled()
  311. for plugin in plugins:
  312. if ((plugin.default_on and plugin.id not in disabled_plugins)
  313. or plugin.id in allowed_plugins):
  314. request.user_plugins.append(plugin)
  315. def index_error(output_format, error_message):
  316. if output_format == 'json':
  317. return Response(json.dumps({'error': error_message}),
  318. mimetype='application/json')
  319. elif output_format == 'csv':
  320. response = Response('', mimetype='application/csv')
  321. cont_disp = 'attachment;Filename=searx.csv'
  322. response.headers.add('Content-Disposition', cont_disp)
  323. return response
  324. elif output_format == 'rss':
  325. response_rss = render(
  326. 'opensearch_response_rss.xml',
  327. results=[],
  328. q=request.form['q'] if 'q' in request.form else '',
  329. number_of_results=0,
  330. base_url=get_base_url(),
  331. error_message=error_message,
  332. override_theme='__common__',
  333. )
  334. return Response(response_rss, mimetype='text/xml')
  335. else:
  336. # html
  337. request.errors.append(gettext('search error'))
  338. return render(
  339. 'index.html',
  340. )
  341. @app.route('/search', methods=['GET', 'POST'])
  342. @app.route('/', methods=['GET', 'POST'])
  343. def index():
  344. """Render index page.
  345. Supported outputs: html, json, csv, rss.
  346. """
  347. # output_format
  348. output_format = request.form.get('format', 'html')
  349. if output_format not in ['html', 'csv', 'json', 'rss']:
  350. output_format = 'html'
  351. # check if there is query
  352. if request.form.get('q') is None:
  353. if output_format == 'html':
  354. return render(
  355. 'index.html',
  356. )
  357. else:
  358. return index_error(output_format, 'No query'), 400
  359. # search
  360. search_query = None
  361. result_container = None
  362. try:
  363. search_query = get_search_query_from_webapp(request.preferences, request.form)
  364. # search = Search(search_query) # without plugins
  365. search = SearchWithPlugins(search_query, request.user_plugins, request)
  366. result_container = search.search()
  367. except Exception as e:
  368. # log exception
  369. logger.exception('search error')
  370. # is it an invalid input parameter or something else ?
  371. if (issubclass(e.__class__, SearxParameterException)):
  372. return index_error(output_format, e.message), 400
  373. else:
  374. return index_error(output_format, gettext('search error')), 500
  375. # results
  376. results = result_container.get_ordered_results()
  377. number_of_results = result_container.results_number()
  378. if number_of_results < result_container.results_length():
  379. number_of_results = 0
  380. # UI
  381. advanced_search = request.form.get('advanced_search', None)
  382. # output
  383. for result in results:
  384. if output_format == 'html':
  385. if 'content' in result and result['content']:
  386. result['content'] = highlight_content(escape(result['content'][:1024]), search_query.query)
  387. result['title'] = highlight_content(escape(result['title'] or u''), search_query.query)
  388. else:
  389. if result.get('content'):
  390. result['content'] = html_to_text(result['content']).strip()
  391. # removing html content and whitespace duplications
  392. result['title'] = ' '.join(html_to_text(result['title']).strip().split())
  393. result['pretty_url'] = prettify_url(result['url'])
  394. # TODO, check if timezone is calculated right
  395. if 'publishedDate' in result:
  396. try: # test if publishedDate >= 1900 (datetime module bug)
  397. result['pubdate'] = result['publishedDate'].strftime('%Y-%m-%d %H:%M:%S%z')
  398. except ValueError:
  399. result['publishedDate'] = None
  400. else:
  401. if result['publishedDate'].replace(tzinfo=None) >= datetime.now() - timedelta(days=1):
  402. timedifference = datetime.now() - result['publishedDate'].replace(tzinfo=None)
  403. minutes = int((timedifference.seconds / 60) % 60)
  404. hours = int(timedifference.seconds / 60 / 60)
  405. if hours == 0:
  406. result['publishedDate'] = gettext(u'{minutes} minute(s) ago').format(minutes=minutes)
  407. else:
  408. result['publishedDate'] = gettext(u'{hours} hour(s), {minutes} minute(s) ago').format(hours=hours, minutes=minutes) # noqa
  409. else:
  410. result['publishedDate'] = format_date(result['publishedDate'])
  411. if output_format == 'json':
  412. return Response(json.dumps({'query': search_query.query.decode('utf-8'),
  413. 'number_of_results': number_of_results,
  414. 'results': results,
  415. 'answers': list(result_container.answers),
  416. 'corrections': list(result_container.corrections),
  417. 'infoboxes': result_container.infoboxes,
  418. 'suggestions': list(result_container.suggestions)}),
  419. mimetype='application/json')
  420. elif output_format == 'csv':
  421. csv = UnicodeWriter(StringIO())
  422. keys = ('title', 'url', 'content', 'host', 'engine', 'score')
  423. csv.writerow(keys)
  424. for row in results:
  425. row['host'] = row['parsed_url'].netloc
  426. csv.writerow([row.get(key, '') for key in keys])
  427. csv.stream.seek(0)
  428. response = Response(csv.stream.read(), mimetype='application/csv')
  429. cont_disp = 'attachment;Filename=searx_-_{0}.csv'.format(search_query.query)
  430. response.headers.add('Content-Disposition', cont_disp)
  431. return response
  432. elif output_format == 'rss':
  433. response_rss = render(
  434. 'opensearch_response_rss.xml',
  435. results=results,
  436. q=request.form['q'],
  437. number_of_results=number_of_results,
  438. base_url=get_base_url(),
  439. override_theme='__common__',
  440. )
  441. return Response(response_rss, mimetype='text/xml')
  442. return render(
  443. 'results.html',
  444. results=results,
  445. q=request.form['q'],
  446. selected_categories=search_query.categories,
  447. pageno=search_query.pageno,
  448. time_range=search_query.time_range,
  449. number_of_results=format_decimal(number_of_results),
  450. advanced_search=advanced_search,
  451. suggestions=result_container.suggestions,
  452. answers=result_container.answers,
  453. corrections=result_container.corrections,
  454. infoboxes=result_container.infoboxes,
  455. paging=result_container.paging,
  456. current_language=search_query.lang,
  457. base_url=get_base_url(),
  458. theme=get_current_theme_name(),
  459. favicons=global_favicons[themes.index(get_current_theme_name())]
  460. )
  461. @app.route('/about', methods=['GET'])
  462. def about():
  463. """Render about page"""
  464. return render(
  465. 'about.html',
  466. )
  467. @app.route('/autocompleter', methods=['GET', 'POST'])
  468. def autocompleter():
  469. """Return autocompleter results"""
  470. # set blocked engines
  471. disabled_engines = request.preferences.engines.get_disabled()
  472. # parse query
  473. raw_text_query = RawTextQuery(request.form.get('q', u'').encode('utf-8'), disabled_engines)
  474. raw_text_query.parse_query()
  475. # check if search query is set
  476. if not raw_text_query.getSearchQuery():
  477. return '', 400
  478. # run autocompleter
  479. completer = autocomplete_backends.get(request.preferences.get_value('autocomplete'))
  480. # parse searx specific autocompleter results like !bang
  481. raw_results = searx_bang(raw_text_query)
  482. # normal autocompletion results only appear if max 3 inner results returned
  483. if len(raw_results) <= 3 and completer:
  484. # get language from cookie
  485. language = request.preferences.get_value('language')
  486. if not language or language == 'all':
  487. language = 'en'
  488. else:
  489. language = language.split('-')[0]
  490. # run autocompletion
  491. raw_results.extend(completer(raw_text_query.getSearchQuery(), language))
  492. # parse results (write :language and !engine back to result string)
  493. results = []
  494. for result in raw_results:
  495. raw_text_query.changeSearchQuery(result)
  496. # add parsed result
  497. results.append(raw_text_query.getFullQuery())
  498. # return autocompleter results
  499. if request.form.get('format') == 'x-suggestions':
  500. return Response(json.dumps([raw_text_query.query, results]),
  501. mimetype='application/json')
  502. return Response(json.dumps(results),
  503. mimetype='application/json')
  504. @app.route('/preferences', methods=['GET', 'POST'])
  505. def preferences():
  506. """Render preferences page && save user preferences"""
  507. # save preferences
  508. if request.method == 'POST':
  509. resp = make_response(redirect(urljoin(settings['server']['base_url'], url_for('index'))))
  510. try:
  511. request.preferences.parse_form(request.form)
  512. except ValidationException:
  513. request.errors.append(gettext('Invalid settings, please edit your preferences'))
  514. return resp
  515. return request.preferences.save(resp)
  516. # render preferences
  517. image_proxy = request.preferences.get_value('image_proxy')
  518. lang = request.preferences.get_value('language')
  519. disabled_engines = request.preferences.engines.get_disabled()
  520. allowed_plugins = request.preferences.plugins.get_enabled()
  521. # stats for preferences page
  522. stats = {}
  523. for c in categories:
  524. for e in categories[c]:
  525. stats[e.name] = {'time': None,
  526. 'warn_timeout': False,
  527. 'warn_time': False}
  528. if e.timeout > settings['outgoing']['request_timeout']:
  529. stats[e.name]['warn_timeout'] = True
  530. # get first element [0], the engine time,
  531. # and then the second element [1] : the time (the first one is the label)
  532. for engine_stat in get_engines_stats()[0][1]:
  533. stats[engine_stat.get('name')]['time'] = round(engine_stat.get('avg'), 3)
  534. if engine_stat.get('avg') > settings['outgoing']['request_timeout']:
  535. stats[engine_stat.get('name')]['warn_time'] = True
  536. # end of stats
  537. return render('preferences.html',
  538. locales=settings['locales'],
  539. current_locale=get_locale(),
  540. image_proxy=image_proxy,
  541. engines_by_category=categories,
  542. stats=stats,
  543. answerers=[{'info': a.self_info(), 'keywords': a.keywords} for a in answerers],
  544. disabled_engines=disabled_engines,
  545. autocomplete_backends=autocomplete_backends,
  546. shortcuts={y: x for x, y in engine_shortcuts.items()},
  547. themes=themes,
  548. plugins=plugins,
  549. allowed_plugins=allowed_plugins,
  550. theme=get_current_theme_name(),
  551. preferences=True)
  552. @app.route('/image_proxy', methods=['GET'])
  553. def image_proxy():
  554. url = request.args.get('url').encode('utf-8')
  555. if not url:
  556. return '', 400
  557. h = hmac.new(settings['server']['secret_key'], url, hashlib.sha256).hexdigest()
  558. if h != request.args.get('h'):
  559. return '', 400
  560. headers = dict_subset(request.headers, {'If-Modified-Since', 'If-None-Match'})
  561. headers['User-Agent'] = gen_useragent()
  562. resp = requests.get(url,
  563. stream=True,
  564. timeout=settings['outgoing']['request_timeout'],
  565. headers=headers,
  566. proxies=outgoing_proxies)
  567. if resp.status_code == 304:
  568. return '', resp.status_code
  569. if resp.status_code != 200:
  570. logger.debug('image-proxy: wrong response code: {0}'.format(resp.status_code))
  571. if resp.status_code >= 400:
  572. return '', resp.status_code
  573. return '', 400
  574. if not resp.headers.get('content-type', '').startswith('image/'):
  575. logger.debug('image-proxy: wrong content-type: {0}'.format(resp.headers.get('content-type')))
  576. return '', 400
  577. img = ''
  578. chunk_counter = 0
  579. for chunk in resp.iter_content(1024 * 1024):
  580. chunk_counter += 1
  581. if chunk_counter > 5:
  582. return '', 502 # Bad gateway - file is too big (>5M)
  583. img += chunk
  584. headers = dict_subset(resp.headers, {'Content-Length', 'Length', 'Date', 'Last-Modified', 'Expires', 'Etag'})
  585. return Response(img, mimetype=resp.headers['content-type'], headers=headers)
  586. @app.route('/stats', methods=['GET'])
  587. def stats():
  588. """Render engine statistics page."""
  589. stats = get_engines_stats()
  590. return render(
  591. 'stats.html',
  592. stats=stats,
  593. )
  594. @app.route('/robots.txt', methods=['GET'])
  595. def robots():
  596. return Response("""User-agent: *
  597. Allow: /
  598. Allow: /about
  599. Disallow: /stats
  600. Disallow: /preferences
  601. Disallow: /*?*q=*
  602. """, mimetype='text/plain')
  603. @app.route('/opensearch.xml', methods=['GET'])
  604. def opensearch():
  605. method = 'post'
  606. if request.preferences.get_value('method') == 'GET':
  607. method = 'get'
  608. # chrome/chromium only supports HTTP GET....
  609. if request.headers.get('User-Agent', '').lower().find('webkit') >= 0:
  610. method = 'get'
  611. ret = render('opensearch.xml',
  612. opensearch_method=method,
  613. host=get_base_url(),
  614. urljoin=urljoin,
  615. override_theme='__common__')
  616. resp = Response(response=ret,
  617. status=200,
  618. mimetype="text/xml")
  619. return resp
  620. @app.route('/favicon.ico')
  621. def favicon():
  622. return send_from_directory(os.path.join(app.root_path,
  623. 'static/themes',
  624. get_current_theme_name(),
  625. 'img'),
  626. 'favicon.png',
  627. mimetype='image/vnd.microsoft.icon')
  628. @app.route('/clear_cookies')
  629. def clear_cookies():
  630. resp = make_response(redirect(urljoin(settings['server']['base_url'], url_for('index'))))
  631. for cookie_name in request.cookies:
  632. resp.delete_cookie(cookie_name)
  633. return resp
  634. @app.route('/config')
  635. def config():
  636. return jsonify({'categories': categories.keys(),
  637. 'engines': [{'name': engine_name,
  638. 'categories': engine.categories,
  639. 'shortcut': engine.shortcut,
  640. 'enabled': not engine.disabled,
  641. 'paging': engine.paging,
  642. 'language_support': engine.language_support,
  643. 'supported_languages':
  644. engine.supported_languages.keys()
  645. if isinstance(engine.supported_languages, dict)
  646. else engine.supported_languages,
  647. 'safesearch': engine.safesearch,
  648. 'time_range_support': engine.time_range_support,
  649. 'timeout': engine.timeout}
  650. for engine_name, engine in engines.items()],
  651. 'plugins': [{'name': plugin.name,
  652. 'enabled': plugin.default_on}
  653. for plugin in plugins],
  654. 'instance_name': settings['general']['instance_name'],
  655. 'locales': settings['locales'],
  656. 'default_locale': settings['ui']['default_locale'],
  657. 'autocomplete': settings['search']['autocomplete'],
  658. 'safe_search': settings['search']['safe_search'],
  659. 'default_theme': settings['ui']['default_theme'],
  660. 'version': VERSION_STRING})
  661. @app.errorhandler(404)
  662. def page_not_found(e):
  663. return render('404.html'), 404
  664. def run():
  665. logger.debug('starting webserver on %s:%s', settings['server']['port'], settings['server']['bind_address'])
  666. app.run(
  667. debug=searx_debug,
  668. use_debugger=searx_debug,
  669. port=settings['server']['port'],
  670. host=settings['server']['bind_address'],
  671. threaded=True
  672. )
  673. class ReverseProxyPathFix(object):
  674. '''Wrap the application in this middleware and configure the
  675. front-end server to add these headers, to let you quietly bind
  676. this to a URL other than / and to an HTTP scheme that is
  677. different than what is used locally.
  678. http://flask.pocoo.org/snippets/35/
  679. In nginx:
  680. location /myprefix {
  681. proxy_pass http://127.0.0.1:8000;
  682. proxy_set_header Host $host;
  683. proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
  684. proxy_set_header X-Scheme $scheme;
  685. proxy_set_header X-Script-Name /myprefix;
  686. }
  687. :param app: the WSGI application
  688. '''
  689. def __init__(self, app):
  690. self.app = app
  691. def __call__(self, environ, start_response):
  692. script_name = environ.get('HTTP_X_SCRIPT_NAME', '')
  693. if script_name:
  694. environ['SCRIPT_NAME'] = script_name
  695. path_info = environ['PATH_INFO']
  696. if path_info.startswith(script_name):
  697. environ['PATH_INFO'] = path_info[len(script_name):]
  698. scheme = environ.get('HTTP_X_SCHEME', '')
  699. if scheme:
  700. environ['wsgi.url_scheme'] = scheme
  701. return self.app(environ, start_response)
  702. application = app
  703. # patch app to handle non root url-s behind proxy & wsgi
  704. app.wsgi_app = ReverseProxyPathFix(ProxyFix(application.wsgi_app))
  705. if __name__ == "__main__":
  706. run()