2016-06-12 22:41:46 -07:00
|
|
|
import * as express from 'express';
|
|
|
|
import * as graphql from 'graphql';
|
2016-06-14 12:03:53 -07:00
|
|
|
import { runQuery } from '../core/runQuery';
|
2016-06-12 22:41:46 -07:00
|
|
|
|
2016-07-04 22:03:59 -07:00
|
|
|
import ApolloOptions from './apolloOptions';
|
2016-06-18 10:19:51 -07:00
|
|
|
import * as GraphiQL from '../modules/renderGraphiQL';
|
2016-06-15 20:35:48 -07:00
|
|
|
|
2016-06-24 16:57:52 -04:00
|
|
|
export interface ExpressApolloOptionsFunction {
|
2016-07-04 22:03:59 -07:00
|
|
|
(req?: express.Request): ApolloOptions | Promise<ApolloOptions>;
|
2016-06-24 16:57:52 -04:00
|
|
|
}
|
|
|
|
|
|
|
|
// Design principles:
|
|
|
|
// - there is just one way allowed: POST request with JSON body. Nothing else.
|
|
|
|
// - simple, fast and secure
|
|
|
|
//
|
2016-06-24 17:12:04 -04:00
|
|
|
|
2016-06-18 10:19:51 -07:00
|
|
|
export interface ExpressHandler {
|
|
|
|
(req: express.Request, res: express.Response, next): void;
|
|
|
|
}
|
|
|
|
|
2016-07-06 11:45:20 -07:00
|
|
|
export function apolloExpress(options: ApolloOptions | ExpressApolloOptionsFunction): ExpressHandler {
|
2016-06-12 22:41:46 -07:00
|
|
|
if (!options) {
|
2016-06-24 16:57:52 -04:00
|
|
|
throw new Error('Apollo Server requires options.');
|
2016-06-12 22:41:46 -07:00
|
|
|
}
|
2016-06-14 12:03:53 -07:00
|
|
|
|
2016-06-12 22:41:46 -07:00
|
|
|
if (arguments.length > 1) {
|
2016-06-24 16:57:52 -04:00
|
|
|
// TODO: test this
|
|
|
|
throw new Error(`Apollo Server expects exactly one argument, got ${arguments.length + 1}`);
|
2016-06-12 22:41:46 -07:00
|
|
|
}
|
2016-06-14 12:03:53 -07:00
|
|
|
|
2016-06-27 22:19:57 -04:00
|
|
|
return async (req: express.Request, res: express.Response, next) => {
|
2016-07-04 22:03:59 -07:00
|
|
|
let optionsObject: ApolloOptions;
|
2016-06-24 16:57:52 -04:00
|
|
|
if (isOptionsFunction(options)) {
|
2016-07-05 14:19:14 -07:00
|
|
|
try {
|
|
|
|
optionsObject = await options(req);
|
|
|
|
} catch (e) {
|
|
|
|
res.status(500);
|
|
|
|
res.send(`Invalid options provided to ApolloServer: ${e.message}`);
|
|
|
|
}
|
2016-06-24 16:57:52 -04:00
|
|
|
} else {
|
|
|
|
optionsObject = options;
|
|
|
|
}
|
|
|
|
|
2016-06-28 21:11:57 -04:00
|
|
|
const formatErrorFn = optionsObject.formatError || graphql.formatError;
|
|
|
|
|
2016-06-24 16:57:52 -04:00
|
|
|
if (req.method !== 'POST') {
|
|
|
|
res.setHeader('Allow', 'POST');
|
2016-06-27 22:19:57 -04:00
|
|
|
res.status(405);
|
|
|
|
res.send('Apollo Server supports only POST requests.');
|
|
|
|
return;
|
2016-06-27 18:06:15 -04:00
|
|
|
}
|
|
|
|
|
|
|
|
if (!req.body) {
|
2016-06-27 22:19:57 -04:00
|
|
|
res.status(500);
|
|
|
|
res.send('POST body missing. Did you forget "app.use(bodyParser.json())"?');
|
|
|
|
return;
|
2016-06-24 16:57:52 -04:00
|
|
|
}
|
|
|
|
|
2016-06-28 00:15:11 -04:00
|
|
|
let b = req.body;
|
|
|
|
let isBatch = true;
|
2016-06-27 21:58:22 -04:00
|
|
|
// TODO: do something different here if the body is an array.
|
|
|
|
// Throw an error if body isn't either array or object.
|
2016-06-28 00:15:11 -04:00
|
|
|
if (!Array.isArray(b)) {
|
|
|
|
isBatch = false;
|
|
|
|
b = [b];
|
2016-06-26 21:06:37 -04:00
|
|
|
}
|
2016-06-24 16:57:52 -04:00
|
|
|
|
2016-06-28 00:15:11 -04:00
|
|
|
let responses: Array<graphql.GraphQLResult> = [];
|
|
|
|
for (let requestParams of b) {
|
2016-06-28 21:11:57 -04:00
|
|
|
try {
|
|
|
|
const query = requestParams.query;
|
|
|
|
const operationName = requestParams.operationName;
|
|
|
|
let variables = requestParams.variables;
|
|
|
|
|
|
|
|
if (typeof variables === 'string') {
|
|
|
|
// TODO: catch errors
|
|
|
|
variables = JSON.parse(variables);
|
|
|
|
}
|
|
|
|
|
|
|
|
let params = {
|
|
|
|
schema: optionsObject.schema,
|
|
|
|
query: query,
|
|
|
|
variables: variables,
|
2016-07-17 17:51:41 -07:00
|
|
|
context: optionsObject.context,
|
2016-06-28 21:11:57 -04:00
|
|
|
rootValue: optionsObject.rootValue,
|
|
|
|
operationName: operationName,
|
|
|
|
logFunction: optionsObject.logFunction,
|
|
|
|
validationRules: optionsObject.validationRules,
|
|
|
|
formatError: formatErrorFn,
|
|
|
|
formatResponse: optionsObject.formatResponse,
|
|
|
|
};
|
|
|
|
|
2016-06-29 15:42:32 -04:00
|
|
|
if (optionsObject.formatParams) {
|
|
|
|
params = optionsObject.formatParams(params);
|
2016-06-28 21:11:57 -04:00
|
|
|
}
|
|
|
|
|
|
|
|
responses.push(await runQuery(params));
|
|
|
|
} catch (e) {
|
|
|
|
responses.push({ errors: [formatErrorFn(e)] });
|
2016-06-28 00:15:11 -04:00
|
|
|
}
|
2016-06-27 18:06:15 -04:00
|
|
|
}
|
|
|
|
|
2016-06-28 00:15:11 -04:00
|
|
|
res.set('Content-Type', 'application/json');
|
|
|
|
if (isBatch) {
|
|
|
|
res.send(JSON.stringify(responses));
|
|
|
|
} else {
|
|
|
|
const gqlResponse = responses[0];
|
2016-06-27 18:06:15 -04:00
|
|
|
if (gqlResponse.errors && typeof gqlResponse.data === 'undefined') {
|
2016-06-24 16:57:52 -04:00
|
|
|
res.status(400);
|
|
|
|
}
|
2016-06-27 21:58:22 -04:00
|
|
|
res.send(JSON.stringify(gqlResponse));
|
2016-06-28 00:15:11 -04:00
|
|
|
}
|
|
|
|
|
2016-06-15 20:35:48 -07:00
|
|
|
};
|
|
|
|
}
|
|
|
|
|
2016-07-04 22:03:59 -07:00
|
|
|
function isOptionsFunction(arg: ApolloOptions | ExpressApolloOptionsFunction): arg is ExpressApolloOptionsFunction {
|
2016-06-24 16:57:52 -04:00
|
|
|
return typeof arg === 'function';
|
2016-06-17 15:45:35 -07:00
|
|
|
}
|
|
|
|
|
2016-06-29 15:33:24 -04:00
|
|
|
/* This middleware returns the html for the GraphiQL interactive query UI
|
|
|
|
*
|
|
|
|
* GraphiQLData arguments
|
|
|
|
*
|
|
|
|
* - endpointURL: the relative or absolute URL for the endpoint which GraphiQL will make queries to
|
|
|
|
* - (optional) query: the GraphQL query to pre-fill in the GraphiQL UI
|
|
|
|
* - (optional) variables: a JS object of variables to pre-fill in the GraphiQL UI
|
|
|
|
* - (optional) operationName: the operationName to pre-fill in the GraphiQL UI
|
|
|
|
* - (optional) result: the result of the query to pre-fill in the GraphiQL UI
|
|
|
|
*/
|
2016-06-29 15:42:32 -04:00
|
|
|
|
2016-07-06 11:45:20 -07:00
|
|
|
export function graphiqlExpress(options: GraphiQL.GraphiQLData) {
|
2016-06-15 20:35:48 -07:00
|
|
|
return (req: express.Request, res: express.Response, next) => {
|
2016-06-26 15:59:15 -04:00
|
|
|
|
2016-06-27 18:06:15 -04:00
|
|
|
const q = req.query || {};
|
2016-06-27 16:14:49 -04:00
|
|
|
const query = q.query || '';
|
|
|
|
const variables = q.variables || '{}';
|
|
|
|
const operationName = q.operationName || '';
|
2016-06-26 15:59:15 -04:00
|
|
|
|
|
|
|
|
2016-06-18 10:19:51 -07:00
|
|
|
const graphiQLString = GraphiQL.renderGraphiQL({
|
2016-06-29 13:57:21 -04:00
|
|
|
endpointURL: options.endpointURL,
|
2016-06-26 15:59:15 -04:00
|
|
|
query: query || options.query,
|
|
|
|
variables: JSON.parse(variables) || options.variables,
|
|
|
|
operationName: operationName || options.operationName,
|
2016-06-14 12:03:53 -07:00
|
|
|
});
|
2016-06-15 20:35:48 -07:00
|
|
|
res.set('Content-Type', 'text/html');
|
|
|
|
res.send(graphiQLString);
|
2016-06-14 12:03:53 -07:00
|
|
|
};
|
2016-06-12 22:41:46 -07:00
|
|
|
}
|