apimain.go 9.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354
  1. package main
  2. import (
  3. "fmt"
  4. "github.com/go-redis/redis/v8"
  5. "github.com/lejianwen/rustdesk-api/v2/config"
  6. "github.com/lejianwen/rustdesk-api/v2/global"
  7. "github.com/lejianwen/rustdesk-api/v2/http"
  8. "github.com/lejianwen/rustdesk-api/v2/lib/cache"
  9. "github.com/lejianwen/rustdesk-api/v2/lib/jwt"
  10. "github.com/lejianwen/rustdesk-api/v2/lib/lock"
  11. "github.com/lejianwen/rustdesk-api/v2/lib/logger"
  12. "github.com/lejianwen/rustdesk-api/v2/lib/orm"
  13. "github.com/lejianwen/rustdesk-api/v2/lib/upload"
  14. "github.com/lejianwen/rustdesk-api/v2/model"
  15. "github.com/lejianwen/rustdesk-api/v2/service"
  16. "github.com/lejianwen/rustdesk-api/v2/utils"
  17. "github.com/nicksnyder/go-i18n/v2/i18n"
  18. "github.com/spf13/cobra"
  19. "os"
  20. "strconv"
  21. "time"
  22. )
  23. // @title 管理系统API
  24. // @version 1.0
  25. // @description 接口
  26. // @basePath /api
  27. // @securityDefinitions.apikey token
  28. // @in header
  29. // @name api-token
  30. // @securitydefinitions.apikey BearerAuth
  31. // @in header
  32. // @name Authorization
  33. var rootCmd = &cobra.Command{
  34. Use: "apimain",
  35. Short: "RUSTDESK API SERVER",
  36. PersistentPreRun: func(cmd *cobra.Command, args []string) {
  37. InitGlobal()
  38. },
  39. Run: func(cmd *cobra.Command, args []string) {
  40. global.Logger.Info("API SERVER START")
  41. http.ApiInit()
  42. },
  43. }
  44. var resetPwdCmd = &cobra.Command{
  45. Use: "reset-admin-pwd [pwd]",
  46. Example: "reset-admin-pwd 123456",
  47. Short: "Reset Admin Password",
  48. Args: cobra.ExactArgs(1),
  49. Run: func(cmd *cobra.Command, args []string) {
  50. pwd := args[0]
  51. admin := service.AllService.UserService.InfoById(1)
  52. if admin.Id == 0 {
  53. global.Logger.Warn("user not found! ")
  54. return
  55. }
  56. err := service.AllService.UserService.UpdatePassword(admin, pwd)
  57. if err != nil {
  58. global.Logger.Error("reset password fail! ", err)
  59. return
  60. }
  61. global.Logger.Info("reset password success! ")
  62. },
  63. }
  64. var resetUserPwdCmd = &cobra.Command{
  65. Use: "reset-pwd [userId] [pwd]",
  66. Example: "reset-pwd 2 123456",
  67. Short: "Reset User Password",
  68. Args: cobra.ExactArgs(2),
  69. Run: func(cmd *cobra.Command, args []string) {
  70. userId := args[0]
  71. pwd := args[1]
  72. uid, err := strconv.Atoi(userId)
  73. if err != nil {
  74. global.Logger.Warn("userId must be int!")
  75. return
  76. }
  77. if uid <= 0 {
  78. global.Logger.Warn("userId must be greater than 0! ")
  79. return
  80. }
  81. u := service.AllService.UserService.InfoById(uint(uid))
  82. if u.Id == 0 {
  83. global.Logger.Warn("user not found! ")
  84. return
  85. }
  86. err = service.AllService.UserService.UpdatePassword(u, pwd)
  87. if err != nil {
  88. global.Logger.Warn("reset password fail! ", err)
  89. return
  90. }
  91. global.Logger.Info("reset password success!")
  92. },
  93. }
  94. func init() {
  95. rootCmd.PersistentFlags().StringVarP(&global.ConfigPath, "config", "c", "./conf/config.yaml", "choose config file")
  96. rootCmd.AddCommand(resetPwdCmd, resetUserPwdCmd)
  97. }
  98. func main() {
  99. if err := rootCmd.Execute(); err != nil {
  100. global.Logger.Error(err)
  101. os.Exit(1)
  102. }
  103. }
  104. func InitGlobal() {
  105. //配置解析
  106. global.Viper = config.Init(&global.Config, global.ConfigPath)
  107. //日志
  108. global.Logger = logger.New(&logger.Config{
  109. Path: global.Config.Logger.Path,
  110. Level: global.Config.Logger.Level,
  111. ReportCaller: global.Config.Logger.ReportCaller,
  112. })
  113. global.InitI18n()
  114. //redis
  115. global.Redis = redis.NewClient(&redis.Options{
  116. Addr: global.Config.Redis.Addr,
  117. Password: global.Config.Redis.Password,
  118. DB: global.Config.Redis.Db,
  119. })
  120. //cache
  121. if global.Config.Cache.Type == cache.TypeFile {
  122. fc := cache.NewFileCache()
  123. fc.SetDir(global.Config.Cache.FileDir)
  124. global.Cache = fc
  125. } else if global.Config.Cache.Type == cache.TypeRedis {
  126. global.Cache = cache.NewRedis(&redis.Options{
  127. Addr: global.Config.Cache.RedisAddr,
  128. Password: global.Config.Cache.RedisPwd,
  129. DB: global.Config.Cache.RedisDb,
  130. })
  131. }
  132. //gorm
  133. if global.Config.Gorm.Type == config.TypeMysql {
  134. dsn := fmt.Sprintf("%s:%s@(%s)/%s?charset=utf8mb4&parseTime=True&loc=Local",
  135. global.Config.Mysql.Username,
  136. global.Config.Mysql.Password,
  137. global.Config.Mysql.Addr,
  138. global.Config.Mysql.Dbname,
  139. )
  140. global.DB = orm.NewMysql(&orm.MysqlConfig{
  141. Dsn: dsn,
  142. MaxIdleConns: global.Config.Gorm.MaxIdleConns,
  143. MaxOpenConns: global.Config.Gorm.MaxOpenConns,
  144. }, global.Logger)
  145. } else if global.Config.Gorm.Type == config.TypePostgresql {
  146. dsn := fmt.Sprintf("host=%s port=%s user=%s password=%s dbname=%s sslmode=%s TimeZone=%s",
  147. global.Config.Postgresql.Host,
  148. global.Config.Postgresql.Port,
  149. global.Config.Postgresql.User,
  150. global.Config.Postgresql.Password,
  151. global.Config.Postgresql.Dbname,
  152. global.Config.Postgresql.Sslmode,
  153. global.Config.Postgresql.TimeZone,
  154. )
  155. global.DB = orm.NewPostgresql(&orm.PostgresqlConfig{
  156. Dsn: dsn,
  157. MaxIdleConns: global.Config.Gorm.MaxIdleConns,
  158. MaxOpenConns: global.Config.Gorm.MaxOpenConns,
  159. }, global.Logger)
  160. } else {
  161. //sqlite
  162. global.DB = orm.NewSqlite(&orm.SqliteConfig{
  163. MaxIdleConns: global.Config.Gorm.MaxIdleConns,
  164. MaxOpenConns: global.Config.Gorm.MaxOpenConns,
  165. }, global.Logger)
  166. }
  167. //validator
  168. global.ApiInitValidator()
  169. //oss
  170. global.Oss = &upload.Oss{
  171. AccessKeyId: global.Config.Oss.AccessKeyId,
  172. AccessKeySecret: global.Config.Oss.AccessKeySecret,
  173. Host: global.Config.Oss.Host,
  174. CallbackUrl: global.Config.Oss.CallbackUrl,
  175. ExpireTime: global.Config.Oss.ExpireTime,
  176. MaxByte: global.Config.Oss.MaxByte,
  177. }
  178. //jwt
  179. //fmt.Println(global.Config.Jwt.PrivateKey)
  180. global.Jwt = jwt.NewJwt(global.Config.Jwt.Key, global.Config.Jwt.ExpireDuration)
  181. //locker
  182. global.Lock = lock.NewLocal()
  183. //service
  184. service.New(&global.Config, global.DB, global.Logger, global.Jwt, global.Lock)
  185. global.LoginLimiter = utils.NewLoginLimiter(utils.SecurityPolicy{
  186. CaptchaThreshold: global.Config.App.CaptchaThreshold,
  187. BanThreshold: global.Config.App.BanThreshold,
  188. AttemptsWindow: 10 * time.Minute,
  189. BanDuration: 30 * time.Minute,
  190. })
  191. global.LoginLimiter.RegisterProvider(utils.B64StringCaptchaProvider{})
  192. DatabaseAutoUpdate()
  193. }
  194. func DatabaseAutoUpdate() {
  195. version := 262
  196. db := global.DB
  197. if global.Config.Gorm.Type == config.TypeMysql {
  198. //检查存不存在数据库,不存在则创建
  199. dbName := db.Migrator().CurrentDatabase()
  200. if dbName == "" {
  201. dbName = global.Config.Mysql.Dbname
  202. // 移除 DSN 中的数据库名称,以便初始连接时不指定数据库
  203. dsnWithoutDB := fmt.Sprintf("%s:%s@(%s)/%s?charset=utf8mb4&parseTime=True&loc=Local",
  204. global.Config.Mysql.Username,
  205. global.Config.Mysql.Password,
  206. global.Config.Mysql.Addr,
  207. "",
  208. )
  209. //新链接
  210. dbWithoutDB := orm.NewMysql(&orm.MysqlConfig{
  211. Dsn: dsnWithoutDB,
  212. }, global.Logger)
  213. // 获取底层的 *sql.DB 对象,并确保在程序退出时关闭连接
  214. sqlDBWithoutDB, err := dbWithoutDB.DB()
  215. if err != nil {
  216. global.Logger.Errorf("获取底层 *sql.DB 对象失败: %v", err)
  217. return
  218. }
  219. defer func() {
  220. if err := sqlDBWithoutDB.Close(); err != nil {
  221. global.Logger.Errorf("关闭连接失败: %v", err)
  222. }
  223. }()
  224. err = dbWithoutDB.Exec("CREATE DATABASE IF NOT EXISTS " + dbName + " DEFAULT CHARSET utf8mb4").Error
  225. if err != nil {
  226. global.Logger.Error(err)
  227. return
  228. }
  229. }
  230. }
  231. if !db.Migrator().HasTable(&model.Version{}) {
  232. Migrate(uint(version))
  233. } else {
  234. //查找最后一个version
  235. var v model.Version
  236. db.Last(&v)
  237. if v.Version < uint(version) {
  238. Migrate(uint(version))
  239. }
  240. // 245迁移
  241. if v.Version < 245 {
  242. //oauths 表的 oauth_type 字段设置为 op同样的值
  243. db.Exec("update oauths set oauth_type = op")
  244. db.Exec("update oauths set issuer = 'https://accounts.google.com' where op = 'google'")
  245. db.Exec("update user_thirds set oauth_type = third_type, op = third_type")
  246. //通过email迁移旧的google授权
  247. uts := make([]model.UserThird, 0)
  248. db.Where("oauth_type = ?", "google").Find(&uts)
  249. for _, ut := range uts {
  250. if ut.UserId > 0 {
  251. db.Model(&model.User{}).Where("id = ?", ut.UserId).Update("email", ut.OpenId)
  252. }
  253. }
  254. }
  255. if v.Version < 246 {
  256. db.Exec("update oauths set issuer = 'https://accounts.google.com' where op = 'google' and issuer is null")
  257. }
  258. }
  259. }
  260. func Migrate(version uint) {
  261. global.Logger.Info("Migrating....", version)
  262. err := global.DB.AutoMigrate(
  263. &model.Version{},
  264. &model.User{},
  265. &model.UserToken{},
  266. &model.Tag{},
  267. &model.AddressBook{},
  268. &model.Peer{},
  269. &model.Group{},
  270. &model.UserThird{},
  271. &model.Oauth{},
  272. &model.LoginLog{},
  273. &model.ShareRecord{},
  274. &model.AuditConn{},
  275. &model.AuditFile{},
  276. &model.AddressBookCollection{},
  277. &model.AddressBookCollectionRule{},
  278. &model.ServerCmd{},
  279. &model.DeviceGroup{},
  280. )
  281. if err != nil {
  282. global.Logger.Error("migrate err :=>", err)
  283. }
  284. global.DB.Create(&model.Version{Version: version})
  285. //如果是初次则创建一个默认用户
  286. var vc int64
  287. global.DB.Model(&model.Version{}).Count(&vc)
  288. if vc == 1 {
  289. localizer := global.Localizer("")
  290. defaultGroup, _ := localizer.LocalizeMessage(&i18n.Message{
  291. ID: "DefaultGroup",
  292. })
  293. group := &model.Group{
  294. Name: defaultGroup,
  295. Type: model.GroupTypeDefault,
  296. }
  297. service.AllService.GroupService.Create(group)
  298. shareGroup, _ := localizer.LocalizeMessage(&i18n.Message{
  299. ID: "ShareGroup",
  300. })
  301. groupShare := &model.Group{
  302. Name: shareGroup,
  303. Type: model.GroupTypeShare,
  304. }
  305. service.AllService.GroupService.Create(groupShare)
  306. //是true
  307. is_admin := true
  308. admin := &model.User{
  309. Username: "admin",
  310. Nickname: "Admin",
  311. Status: model.COMMON_STATUS_ENABLE,
  312. IsAdmin: &is_admin,
  313. GroupId: 1,
  314. }
  315. // 生成随机密码
  316. pwd := utils.RandomString(8)
  317. global.Logger.Info("Admin Password Is: ", pwd)
  318. var err error
  319. admin.Password, err = utils.EncryptPassword(pwd)
  320. if err != nil {
  321. global.Logger.Fatalf("failed to generate admin password: %v", err)
  322. }
  323. global.DB.Create(admin)
  324. }
  325. }