apimain.go 9.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357
  1. package main
  2. import (
  3. "fmt"
  4. "os"
  5. "strconv"
  6. "time"
  7. "github.com/go-redis/redis/v8"
  8. "github.com/lejianwen/rustdesk-api/v2/config"
  9. "github.com/lejianwen/rustdesk-api/v2/global"
  10. "github.com/lejianwen/rustdesk-api/v2/http"
  11. "github.com/lejianwen/rustdesk-api/v2/lib/cache"
  12. "github.com/lejianwen/rustdesk-api/v2/lib/jwt"
  13. "github.com/lejianwen/rustdesk-api/v2/lib/lock"
  14. "github.com/lejianwen/rustdesk-api/v2/lib/logger"
  15. "github.com/lejianwen/rustdesk-api/v2/lib/orm"
  16. "github.com/lejianwen/rustdesk-api/v2/lib/upload"
  17. "github.com/lejianwen/rustdesk-api/v2/model"
  18. "github.com/lejianwen/rustdesk-api/v2/service"
  19. "github.com/lejianwen/rustdesk-api/v2/utils"
  20. "github.com/nicksnyder/go-i18n/v2/i18n"
  21. "github.com/spf13/cobra"
  22. )
  23. const DatabaseVersion = 265
  24. // @title 管理系统API
  25. // @version 1.0
  26. // @description 接口
  27. // @basePath /api
  28. // @securityDefinitions.apikey token
  29. // @in header
  30. // @name api-token
  31. // @securitydefinitions.apikey BearerAuth
  32. // @in header
  33. // @name Authorization
  34. var rootCmd = &cobra.Command{
  35. Use: "apimain",
  36. Short: "RUSTDESK API SERVER",
  37. PersistentPreRun: func(cmd *cobra.Command, args []string) {
  38. InitGlobal()
  39. },
  40. Run: func(cmd *cobra.Command, args []string) {
  41. global.Logger.Info("API SERVER START")
  42. http.ApiInit()
  43. },
  44. }
  45. var resetPwdCmd = &cobra.Command{
  46. Use: "reset-admin-pwd [pwd]",
  47. Example: "reset-admin-pwd 123456",
  48. Short: "Reset Admin Password",
  49. Args: cobra.ExactArgs(1),
  50. Run: func(cmd *cobra.Command, args []string) {
  51. pwd := args[0]
  52. admin := service.AllService.UserService.InfoById(1)
  53. if admin.Id == 0 {
  54. global.Logger.Warn("user not found! ")
  55. return
  56. }
  57. err := service.AllService.UserService.UpdatePassword(admin, pwd)
  58. if err != nil {
  59. global.Logger.Error("reset password fail! ", err)
  60. return
  61. }
  62. global.Logger.Info("reset password success! ")
  63. },
  64. }
  65. var resetUserPwdCmd = &cobra.Command{
  66. Use: "reset-pwd [userId] [pwd]",
  67. Example: "reset-pwd 2 123456",
  68. Short: "Reset User Password",
  69. Args: cobra.ExactArgs(2),
  70. Run: func(cmd *cobra.Command, args []string) {
  71. userId := args[0]
  72. pwd := args[1]
  73. uid, err := strconv.Atoi(userId)
  74. if err != nil {
  75. global.Logger.Warn("userId must be int!")
  76. return
  77. }
  78. if uid <= 0 {
  79. global.Logger.Warn("userId must be greater than 0! ")
  80. return
  81. }
  82. u := service.AllService.UserService.InfoById(uint(uid))
  83. if u.Id == 0 {
  84. global.Logger.Warn("user not found! ")
  85. return
  86. }
  87. err = service.AllService.UserService.UpdatePassword(u, pwd)
  88. if err != nil {
  89. global.Logger.Warn("reset password fail! ", err)
  90. return
  91. }
  92. global.Logger.Info("reset password success!")
  93. },
  94. }
  95. func init() {
  96. rootCmd.PersistentFlags().StringVarP(&global.ConfigPath, "config", "c", "./conf/config.yaml", "choose config file")
  97. rootCmd.AddCommand(resetPwdCmd, resetUserPwdCmd)
  98. }
  99. func main() {
  100. if err := rootCmd.Execute(); err != nil {
  101. global.Logger.Error(err)
  102. os.Exit(1)
  103. }
  104. }
  105. func InitGlobal() {
  106. //配置解析
  107. global.Viper = config.Init(&global.Config, global.ConfigPath)
  108. //日志
  109. global.Logger = logger.New(&logger.Config{
  110. Path: global.Config.Logger.Path,
  111. Level: global.Config.Logger.Level,
  112. ReportCaller: global.Config.Logger.ReportCaller,
  113. })
  114. global.InitI18n()
  115. //redis
  116. global.Redis = redis.NewClient(&redis.Options{
  117. Addr: global.Config.Redis.Addr,
  118. Password: global.Config.Redis.Password,
  119. DB: global.Config.Redis.Db,
  120. })
  121. //cache
  122. if global.Config.Cache.Type == cache.TypeFile {
  123. fc := cache.NewFileCache()
  124. fc.SetDir(global.Config.Cache.FileDir)
  125. global.Cache = fc
  126. } else if global.Config.Cache.Type == cache.TypeRedis {
  127. global.Cache = cache.NewRedis(&redis.Options{
  128. Addr: global.Config.Cache.RedisAddr,
  129. Password: global.Config.Cache.RedisPwd,
  130. DB: global.Config.Cache.RedisDb,
  131. })
  132. }
  133. //gorm
  134. if global.Config.Gorm.Type == config.TypeMysql {
  135. dsn := fmt.Sprintf("%s:%s@(%s)/%s?charset=utf8mb4&parseTime=True&loc=Local",
  136. global.Config.Mysql.Username,
  137. global.Config.Mysql.Password,
  138. global.Config.Mysql.Addr,
  139. global.Config.Mysql.Dbname,
  140. )
  141. global.DB = orm.NewMysql(&orm.MysqlConfig{
  142. Dsn: dsn,
  143. MaxIdleConns: global.Config.Gorm.MaxIdleConns,
  144. MaxOpenConns: global.Config.Gorm.MaxOpenConns,
  145. }, global.Logger)
  146. } else if global.Config.Gorm.Type == config.TypePostgresql {
  147. dsn := fmt.Sprintf("host=%s port=%s user=%s password=%s dbname=%s sslmode=%s TimeZone=%s",
  148. global.Config.Postgresql.Host,
  149. global.Config.Postgresql.Port,
  150. global.Config.Postgresql.User,
  151. global.Config.Postgresql.Password,
  152. global.Config.Postgresql.Dbname,
  153. global.Config.Postgresql.Sslmode,
  154. global.Config.Postgresql.TimeZone,
  155. )
  156. global.DB = orm.NewPostgresql(&orm.PostgresqlConfig{
  157. Dsn: dsn,
  158. MaxIdleConns: global.Config.Gorm.MaxIdleConns,
  159. MaxOpenConns: global.Config.Gorm.MaxOpenConns,
  160. }, global.Logger)
  161. } else {
  162. //sqlite
  163. global.DB = orm.NewSqlite(&orm.SqliteConfig{
  164. MaxIdleConns: global.Config.Gorm.MaxIdleConns,
  165. MaxOpenConns: global.Config.Gorm.MaxOpenConns,
  166. }, global.Logger)
  167. }
  168. //validator
  169. global.ApiInitValidator()
  170. //oss
  171. global.Oss = &upload.Oss{
  172. AccessKeyId: global.Config.Oss.AccessKeyId,
  173. AccessKeySecret: global.Config.Oss.AccessKeySecret,
  174. Host: global.Config.Oss.Host,
  175. CallbackUrl: global.Config.Oss.CallbackUrl,
  176. ExpireTime: global.Config.Oss.ExpireTime,
  177. MaxByte: global.Config.Oss.MaxByte,
  178. }
  179. //jwt
  180. //fmt.Println(global.Config.Jwt.PrivateKey)
  181. global.Jwt = jwt.NewJwt(global.Config.Jwt.Key, global.Config.Jwt.ExpireDuration)
  182. //locker
  183. global.Lock = lock.NewLocal()
  184. //service
  185. service.New(&global.Config, global.DB, global.Logger, global.Jwt, global.Lock)
  186. global.LoginLimiter = utils.NewLoginLimiter(utils.SecurityPolicy{
  187. CaptchaThreshold: global.Config.App.CaptchaThreshold,
  188. BanThreshold: global.Config.App.BanThreshold,
  189. AttemptsWindow: 10 * time.Minute,
  190. BanDuration: 30 * time.Minute,
  191. })
  192. global.LoginLimiter.RegisterProvider(utils.B64StringCaptchaProvider{})
  193. DatabaseAutoUpdate()
  194. }
  195. func DatabaseAutoUpdate() {
  196. version := DatabaseVersion
  197. db := global.DB
  198. if global.Config.Gorm.Type == config.TypeMysql {
  199. //检查存不存在数据库,不存在则创建
  200. dbName := db.Migrator().CurrentDatabase()
  201. if dbName == "" {
  202. dbName = global.Config.Mysql.Dbname
  203. // 移除 DSN 中的数据库名称,以便初始连接时不指定数据库
  204. dsnWithoutDB := fmt.Sprintf("%s:%s@(%s)/%s?charset=utf8mb4&parseTime=True&loc=Local",
  205. global.Config.Mysql.Username,
  206. global.Config.Mysql.Password,
  207. global.Config.Mysql.Addr,
  208. "",
  209. )
  210. //新链接
  211. dbWithoutDB := orm.NewMysql(&orm.MysqlConfig{
  212. Dsn: dsnWithoutDB,
  213. }, global.Logger)
  214. // 获取底层的 *sql.DB 对象,并确保在程序退出时关闭连接
  215. sqlDBWithoutDB, err := dbWithoutDB.DB()
  216. if err != nil {
  217. global.Logger.Errorf("获取底层 *sql.DB 对象失败: %v", err)
  218. return
  219. }
  220. defer func() {
  221. if err := sqlDBWithoutDB.Close(); err != nil {
  222. global.Logger.Errorf("关闭连接失败: %v", err)
  223. }
  224. }()
  225. err = dbWithoutDB.Exec("CREATE DATABASE IF NOT EXISTS " + dbName + " DEFAULT CHARSET utf8mb4").Error
  226. if err != nil {
  227. global.Logger.Error(err)
  228. return
  229. }
  230. }
  231. }
  232. if !db.Migrator().HasTable(&model.Version{}) {
  233. Migrate(uint(version))
  234. } else {
  235. //查找最后一个version
  236. var v model.Version
  237. db.Last(&v)
  238. if v.Version < uint(version) {
  239. Migrate(uint(version))
  240. }
  241. // 245迁移
  242. if v.Version < 245 {
  243. //oauths 表的 oauth_type 字段设置为 op同样的值
  244. db.Exec("update oauths set oauth_type = op")
  245. db.Exec("update oauths set issuer = 'https://accounts.google.com' where op = 'google'")
  246. db.Exec("update user_thirds set oauth_type = third_type, op = third_type")
  247. //通过email迁移旧的google授权
  248. uts := make([]model.UserThird, 0)
  249. db.Where("oauth_type = ?", "google").Find(&uts)
  250. for _, ut := range uts {
  251. if ut.UserId > 0 {
  252. db.Model(&model.User{}).Where("id = ?", ut.UserId).Update("email", ut.OpenId)
  253. }
  254. }
  255. }
  256. if v.Version < 246 {
  257. db.Exec("update oauths set issuer = 'https://accounts.google.com' where op = 'google' and issuer is null")
  258. }
  259. }
  260. }
  261. func Migrate(version uint) {
  262. global.Logger.Info("Migrating....", version)
  263. err := global.DB.AutoMigrate(
  264. &model.Version{},
  265. &model.User{},
  266. &model.UserToken{},
  267. &model.Tag{},
  268. &model.AddressBook{},
  269. &model.Peer{},
  270. &model.Group{},
  271. &model.UserThird{},
  272. &model.Oauth{},
  273. &model.LoginLog{},
  274. &model.ShareRecord{},
  275. &model.AuditConn{},
  276. &model.AuditFile{},
  277. &model.AddressBookCollection{},
  278. &model.AddressBookCollectionRule{},
  279. &model.ServerCmd{},
  280. &model.DeviceGroup{},
  281. )
  282. if err != nil {
  283. global.Logger.Error("migrate err :=>", err)
  284. }
  285. global.DB.Create(&model.Version{Version: version})
  286. //如果是初次则创建一个默认用户
  287. var vc int64
  288. global.DB.Model(&model.Version{}).Count(&vc)
  289. if vc == 1 {
  290. localizer := global.Localizer("")
  291. defaultGroup, _ := localizer.LocalizeMessage(&i18n.Message{
  292. ID: "DefaultGroup",
  293. })
  294. group := &model.Group{
  295. Name: defaultGroup,
  296. Type: model.GroupTypeDefault,
  297. }
  298. service.AllService.GroupService.Create(group)
  299. shareGroup, _ := localizer.LocalizeMessage(&i18n.Message{
  300. ID: "ShareGroup",
  301. })
  302. groupShare := &model.Group{
  303. Name: shareGroup,
  304. Type: model.GroupTypeShare,
  305. }
  306. service.AllService.GroupService.Create(groupShare)
  307. //是true
  308. is_admin := true
  309. admin := &model.User{
  310. Username: "admin",
  311. Nickname: "Admin",
  312. Status: model.COMMON_STATUS_ENABLE,
  313. IsAdmin: &is_admin,
  314. GroupId: 1,
  315. }
  316. // 生成随机密码
  317. pwd := utils.RandomString(8)
  318. global.Logger.Info("Admin Password Is: ", pwd)
  319. var err error
  320. admin.Password, err = utils.EncryptPassword(pwd)
  321. if err != nil {
  322. global.Logger.Fatalf("failed to generate admin password: %v", err)
  323. }
  324. global.DB.Create(admin)
  325. }
  326. }