Nevar pievienot vairāk kā 25 tēmas Tēmai ir jāsākas ar burtu vai ciparu, tā var saturēt domu zīmes ('-') un var būt līdz 35 simboliem gara.

user_app.py 10KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273
  1. #
  2. # Copyright 2024 The InfiniFlow Authors. All Rights Reserved.
  3. #
  4. # Licensed under the Apache License, Version 2.0 (the "License");
  5. # you may not use this file except in compliance with the License.
  6. # You may obtain a copy of the License at
  7. #
  8. # http://www.apache.org/licenses/LICENSE-2.0
  9. #
  10. # Unless required by applicable law or agreed to in writing, software
  11. # distributed under the License is distributed on an "AS IS" BASIS,
  12. # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  13. # See the License for the specific language governing permissions and
  14. # limitations under the License.
  15. #
  16. import re
  17. from flask import request, session, redirect, url_for
  18. from werkzeug.security import generate_password_hash, check_password_hash
  19. from flask_login import login_required, current_user, login_user, logout_user
  20. from api.db.db_models import TenantLLM
  21. from api.db.services.llm_service import TenantLLMService, LLMService
  22. from api.utils.api_utils import server_error_response, validate_request
  23. from api.utils import get_uuid, get_format_time, decrypt, download_img
  24. from api.db import UserTenantRole, LLMType
  25. from api.settings import RetCode, GITHUB_OAUTH, CHAT_MDL, EMBEDDING_MDL, ASR_MDL, IMAGE2TEXT_MDL, PARSERS
  26. from api.db.services.user_service import UserService, TenantService, UserTenantService
  27. from api.settings import stat_logger
  28. from api.utils.api_utils import get_json_result, cors_reponse
  29. @manager.route('/login', methods=['POST', 'GET'])
  30. def login():
  31. userinfo = None
  32. login_channel = "password"
  33. if session.get("access_token"):
  34. login_channel = session["access_token_from"]
  35. if session["access_token_from"] == "github":
  36. userinfo = user_info_from_github(session["access_token"])
  37. elif not request.json:
  38. return get_json_result(data=False, retcode=RetCode.AUTHENTICATION_ERROR,
  39. retmsg='Unautherized!')
  40. email = request.json.get('email') if not userinfo else userinfo["email"]
  41. users = UserService.query(email=email)
  42. if not users:
  43. if request.json is not None:
  44. return get_json_result(data=False, retcode=RetCode.AUTHENTICATION_ERROR, retmsg=f'This Email is not registered!')
  45. avatar = ""
  46. try:
  47. avatar = download_img(userinfo["avatar_url"])
  48. except Exception as e:
  49. stat_logger.exception(e)
  50. user_id = get_uuid()
  51. try:
  52. users = user_register(user_id, {
  53. "access_token": session["access_token"],
  54. "email": userinfo["email"],
  55. "avatar": avatar,
  56. "nickname": userinfo["login"],
  57. "login_channel": login_channel,
  58. "last_login_time": get_format_time(),
  59. "is_superuser": False,
  60. })
  61. if not users: raise Exception('Register user failure.')
  62. if len(users) > 1: raise Exception('Same E-mail exist!')
  63. user = users[0]
  64. login_user(user)
  65. return cors_reponse(data=user.to_json(), auth=user.get_id(), retmsg="Welcome back!")
  66. except Exception as e:
  67. rollback_user_registration(user_id)
  68. stat_logger.exception(e)
  69. return server_error_response(e)
  70. elif not request.json:
  71. login_user(users[0])
  72. return cors_reponse(data=users[0].to_json(), auth=users[0].get_id(), retmsg="Welcome back!")
  73. password = request.json.get('password')
  74. try:
  75. password = decrypt(password)
  76. except:
  77. return get_json_result(data=False, retcode=RetCode.SERVER_ERROR, retmsg='Fail to crypt password')
  78. user = UserService.query_user(email, password)
  79. if user:
  80. response_data = user.to_json()
  81. user.access_token = get_uuid()
  82. login_user(user)
  83. user.save()
  84. msg = "Welcome back!"
  85. return cors_reponse(data=response_data, auth=user.get_id(), retmsg=msg)
  86. else:
  87. return get_json_result(data=False, retcode=RetCode.AUTHENTICATION_ERROR, retmsg='Email and Password do not match!')
  88. @manager.route('/github_callback', methods=['GET'])
  89. def github_callback():
  90. try:
  91. import requests
  92. res = requests.post(GITHUB_OAUTH.get("url"), data={
  93. "client_id": GITHUB_OAUTH.get("client_id"),
  94. "client_secret": GITHUB_OAUTH.get("secret_key"),
  95. "code": request.args.get('code')
  96. },headers={"Accept": "application/json"})
  97. res = res.json()
  98. if "error" in res:
  99. return get_json_result(data=False, retcode=RetCode.AUTHENTICATION_ERROR,
  100. retmsg=res["error_description"])
  101. if "user:email" not in res["scope"].split(","):
  102. return get_json_result(data=False, retcode=RetCode.AUTHENTICATION_ERROR, retmsg='user:email not in scope')
  103. session["access_token"] = res["access_token"]
  104. session["access_token_from"] = "github"
  105. return redirect(url_for("user.login"), code=307)
  106. except Exception as e:
  107. stat_logger.exception(e)
  108. return server_error_response(e)
  109. def user_info_from_github(access_token):
  110. import requests
  111. headers = {"Accept": "application/json", 'Authorization': f"token {access_token}"}
  112. res = requests.get(f"https://api.github.com/user?access_token={access_token}", headers=headers)
  113. user_info = res.json()
  114. email_info = requests.get(f"https://api.github.com/user/emails?access_token={access_token}", headers=headers).json()
  115. user_info["email"] = next((email for email in email_info if email['primary'] == True), None)["email"]
  116. return user_info
  117. @manager.route("/logout", methods=['GET'])
  118. @login_required
  119. def log_out():
  120. current_user.access_token = ""
  121. current_user.save()
  122. logout_user()
  123. return get_json_result(data=True)
  124. @manager.route("/setting", methods=["POST"])
  125. @login_required
  126. def setting_user():
  127. update_dict = {}
  128. request_data = request.json
  129. if request_data.get("password"):
  130. new_password = request_data.get("new_password")
  131. if not check_password_hash(current_user.password, decrypt(request_data["password"])):
  132. return get_json_result(data=False, retcode=RetCode.AUTHENTICATION_ERROR, retmsg='Password error!')
  133. if new_password: update_dict["password"] = generate_password_hash(decrypt(new_password))
  134. for k in request_data.keys():
  135. if k in ["password", "new_password"]:continue
  136. update_dict[k] = request_data[k]
  137. try:
  138. UserService.update_by_id(current_user.id, update_dict)
  139. return get_json_result(data=True)
  140. except Exception as e:
  141. stat_logger.exception(e)
  142. return get_json_result(data=False, retmsg='Update failure!', retcode=RetCode.EXCEPTION_ERROR)
  143. @manager.route("/info", methods=["GET"])
  144. @login_required
  145. def user_info():
  146. return get_json_result(data=current_user.to_dict())
  147. def rollback_user_registration(user_id):
  148. try:
  149. TenantService.delete_by_id(user_id)
  150. except Exception as e:
  151. pass
  152. try:
  153. u = UserTenantService.query(tenant_id=user_id)
  154. if u:
  155. UserTenantService.delete_by_id(u[0].id)
  156. except Exception as e:
  157. pass
  158. try:
  159. TenantLLM.delete().where(TenantLLM.tenant_id==user_id).excute()
  160. except Exception as e:
  161. pass
  162. def user_register(user_id, user):
  163. user["id"] = user_id
  164. tenant = {
  165. "id": user_id,
  166. "name": user["nickname"] + "‘s Kingdom",
  167. "llm_id": CHAT_MDL,
  168. "embd_id": EMBEDDING_MDL,
  169. "asr_id": ASR_MDL,
  170. "parser_ids": PARSERS,
  171. "img2txt_id": IMAGE2TEXT_MDL
  172. }
  173. usr_tenant = {
  174. "tenant_id": user_id,
  175. "user_id": user_id,
  176. "invited_by": user_id,
  177. "role": UserTenantRole.OWNER
  178. }
  179. tenant_llm = []
  180. for llm in LLMService.query(fid="Infiniflow"):
  181. tenant_llm.append({"tenant_id": user_id, "llm_factory": "Infiniflow", "llm_name": llm.llm_name, "model_type":llm.model_type, "api_key": "infiniflow API Key"})
  182. if not UserService.save(**user):return
  183. TenantService.save(**tenant)
  184. UserTenantService.save(**usr_tenant)
  185. TenantLLMService.insert_many(tenant_llm)
  186. return UserService.query(email=user["email"])
  187. @manager.route("/register", methods=["POST"])
  188. @validate_request("nickname", "email", "password")
  189. def user_add():
  190. req = request.json
  191. if UserService.query(email=req["email"]):
  192. return get_json_result(data=False, retmsg=f'Email: {req["email"]} has already registered!', retcode=RetCode.OPERATING_ERROR)
  193. if not re.match(r"^[\w\._-]+@([\w_-]+\.)+[\w-]{2,4}$", req["email"]):
  194. return get_json_result(data=False, retmsg=f'Invaliad e-mail: {req["email"]}!',
  195. retcode=RetCode.OPERATING_ERROR)
  196. user_dict = {
  197. "access_token": get_uuid(),
  198. "email": req["email"],
  199. "nickname": req["nickname"],
  200. "password": decrypt(req["password"]),
  201. "login_channel": "password",
  202. "last_login_time": get_format_time(),
  203. "is_superuser": False,
  204. }
  205. user_id = get_uuid()
  206. try:
  207. users = user_register(user_id, user_dict)
  208. if not users: raise Exception('Register user failure.')
  209. if len(users) > 1: raise Exception('Same E-mail exist!')
  210. user = users[0]
  211. login_user(user)
  212. return cors_reponse(data=user.to_json(), auth=user.get_id(), retmsg="Welcome aboard!")
  213. except Exception as e:
  214. rollback_user_registration(user_id)
  215. stat_logger.exception(e)
  216. return get_json_result(data=False, retmsg='User registration failure!', retcode=RetCode.EXCEPTION_ERROR)
  217. @manager.route("/tenant_info", methods=["GET"])
  218. @login_required
  219. def tenant_info():
  220. try:
  221. tenants = TenantService.get_by_user_id(current_user.id)[0]
  222. return get_json_result(data=tenants)
  223. except Exception as e:
  224. return server_error_response(e)
  225. @manager.route("/set_tenant_info", methods=["POST"])
  226. @login_required
  227. @validate_request("tenant_id", "asr_id", "embd_id", "img2txt_id", "llm_id")
  228. def set_tenant_info():
  229. req = request.json
  230. try:
  231. tid = req["tenant_id"]
  232. del req["tenant_id"]
  233. TenantService.update_by_id(tid, req)
  234. return get_json_result(data=True)
  235. except Exception as e:
  236. return server_error_response(e)