server.go 2.0 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071
  1. // Copyright 2018 Frédéric Guillot. All rights reserved.
  2. // Use of this source code is governed by the Apache 2.0
  3. // license that can be found in the LICENSE file.
  4. package daemon
  5. import (
  6. "crypto/tls"
  7. "net/http"
  8. "time"
  9. "github.com/miniflux/miniflux/config"
  10. "github.com/miniflux/miniflux/locale"
  11. "github.com/miniflux/miniflux/logger"
  12. "github.com/miniflux/miniflux/reader/feed"
  13. "github.com/miniflux/miniflux/scheduler"
  14. "github.com/miniflux/miniflux/storage"
  15. "golang.org/x/crypto/acme/autocert"
  16. )
  17. func newServer(cfg *config.Config, store *storage.Storage, pool *scheduler.WorkerPool, feedHandler *feed.Handler, translator *locale.Translator) *http.Server {
  18. certFile := cfg.CertFile()
  19. keyFile := cfg.KeyFile()
  20. certDomain := cfg.CertDomain()
  21. certCache := cfg.CertCache()
  22. server := &http.Server{
  23. ReadTimeout: 30 * time.Second,
  24. WriteTimeout: 30 * time.Second,
  25. IdleTimeout: 60 * time.Second,
  26. Addr: cfg.ListenAddr(),
  27. Handler: routes(cfg, store, feedHandler, pool, translator),
  28. }
  29. if certDomain != "" && certCache != "" {
  30. cfg.IsHTTPS = true
  31. server.Addr = ":https"
  32. certManager := autocert.Manager{
  33. Cache: autocert.DirCache(certCache),
  34. Prompt: autocert.AcceptTOS,
  35. HostPolicy: autocert.HostWhitelist(certDomain),
  36. }
  37. // Handle http-01 challenge.
  38. s := &http.Server{
  39. Handler: certManager.HTTPHandler(nil),
  40. Addr: ":http",
  41. }
  42. go s.ListenAndServe()
  43. go func() {
  44. logger.Info(`Listening on "%s" by using auto-configured certificate for "%s"`, server.Addr, certDomain)
  45. logger.Fatal(server.Serve(certManager.Listener()).Error())
  46. }()
  47. } else if certFile != "" && keyFile != "" {
  48. server.TLSConfig = &tls.Config{MinVersion: tls.VersionTLS12}
  49. cfg.IsHTTPS = true
  50. go func() {
  51. logger.Info(`Listening on "%s" by using certificate "%s" and key "%s"`, server.Addr, certFile, keyFile)
  52. logger.Fatal(server.ListenAndServeTLS(certFile, keyFile).Error())
  53. }()
  54. } else {
  55. go func() {
  56. logger.Info(`Listening on "%s" without TLS`, server.Addr)
  57. logger.Fatal(server.ListenAndServe().Error())
  58. }()
  59. }
  60. return server
  61. }