Nevar pievienot vairāk kā 25 tēmas Tēmai ir jāsākas ar burtu vai ciparu, tā var saturēt domu zīmes ('-') un var būt līdz 35 simboliem gara.

user_app.py 11KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315
  1. #
  2. # Copyright 2024 The InfiniFlow Authors. All Rights Reserved.
  3. #
  4. # Licensed under the Apache License, Version 2.0 (the "License");
  5. # you may not use this file except in compliance with the License.
  6. # You may obtain a copy of the License at
  7. #
  8. # http://www.apache.org/licenses/LICENSE-2.0
  9. #
  10. # Unless required by applicable law or agreed to in writing, software
  11. # distributed under the License is distributed on an "AS IS" BASIS,
  12. # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  13. # See the License for the specific language governing permissions and
  14. # limitations under the License.
  15. #
  16. import re
  17. from datetime import datetime
  18. from flask import request, session, redirect
  19. from werkzeug.security import generate_password_hash, check_password_hash
  20. from flask_login import login_required, current_user, login_user, logout_user
  21. from api.db.db_models import TenantLLM
  22. from api.db.services.llm_service import TenantLLMService, LLMService
  23. from api.utils.api_utils import server_error_response, validate_request
  24. from api.utils import get_uuid, get_format_time, decrypt, download_img, current_timestamp, datetime_format
  25. from api.db import UserTenantRole, LLMType
  26. from api.settings import RetCode, GITHUB_OAUTH, CHAT_MDL, EMBEDDING_MDL, ASR_MDL, IMAGE2TEXT_MDL, PARSERS, API_KEY, \
  27. LLM_FACTORY, LLM_BASE_URL
  28. from api.db.services.user_service import UserService, TenantService, UserTenantService
  29. from api.db.services.file_service import FileService
  30. from api.settings import stat_logger
  31. from api.utils.api_utils import get_json_result, cors_reponse
  32. @manager.route('/login', methods=['POST', 'GET'])
  33. def login():
  34. login_channel = "password"
  35. if not request.json:
  36. return get_json_result(data=False, retcode=RetCode.AUTHENTICATION_ERROR,
  37. retmsg='Unautherized!')
  38. email = request.json.get('email', "")
  39. users = UserService.query(email=email)
  40. if not users:
  41. return get_json_result(
  42. data=False, retcode=RetCode.AUTHENTICATION_ERROR, retmsg=f'This Email is not registered!')
  43. password = request.json.get('password')
  44. try:
  45. password = decrypt(password)
  46. except BaseException:
  47. return get_json_result(
  48. data=False, retcode=RetCode.SERVER_ERROR, retmsg='Fail to crypt password')
  49. user = UserService.query_user(email, password)
  50. if user:
  51. response_data = user.to_json()
  52. user.access_token = get_uuid()
  53. login_user(user)
  54. user.update_time = current_timestamp(),
  55. user.update_date = datetime_format(datetime.now()),
  56. user.save()
  57. msg = "Welcome back!"
  58. return cors_reponse(data=response_data, auth=user.get_id(), retmsg=msg)
  59. else:
  60. return get_json_result(data=False, retcode=RetCode.AUTHENTICATION_ERROR,
  61. retmsg='Email and Password do not match!')
  62. @manager.route('/github_callback', methods=['GET'])
  63. def github_callback():
  64. import requests
  65. res = requests.post(GITHUB_OAUTH.get("url"), data={
  66. "client_id": GITHUB_OAUTH.get("client_id"),
  67. "client_secret": GITHUB_OAUTH.get("secret_key"),
  68. "code": request.args.get('code')
  69. }, headers={"Accept": "application/json"})
  70. res = res.json()
  71. if "error" in res:
  72. return redirect("/?error=%s" % res["error_description"])
  73. if "user:email" not in res["scope"].split(","):
  74. return redirect("/?error=user:email not in scope")
  75. session["access_token"] = res["access_token"]
  76. session["access_token_from"] = "github"
  77. userinfo = user_info_from_github(session["access_token"])
  78. users = UserService.query(email=userinfo["email"])
  79. user_id = get_uuid()
  80. if not users:
  81. try:
  82. try:
  83. avatar = download_img(userinfo["avatar_url"])
  84. except Exception as e:
  85. stat_logger.exception(e)
  86. avatar = ""
  87. users = user_register(user_id, {
  88. "access_token": session["access_token"],
  89. "email": userinfo["email"],
  90. "avatar": avatar,
  91. "nickname": userinfo["login"],
  92. "login_channel": "github",
  93. "last_login_time": get_format_time(),
  94. "is_superuser": False,
  95. })
  96. if not users:
  97. raise Exception('Register user failure.')
  98. if len(users) > 1:
  99. raise Exception('Same E-mail exist!')
  100. user = users[0]
  101. login_user(user)
  102. return redirect("/?auth=%s" % user.get_id())
  103. except Exception as e:
  104. rollback_user_registration(user_id)
  105. stat_logger.exception(e)
  106. return redirect("/?error=%s" % str(e))
  107. user = users[0]
  108. user.access_token = get_uuid()
  109. login_user(user)
  110. user.save()
  111. return redirect("/?auth=%s" % user.get_id())
  112. def user_info_from_github(access_token):
  113. import requests
  114. headers = {"Accept": "application/json",
  115. 'Authorization': f"token {access_token}"}
  116. res = requests.get(
  117. f"https://api.github.com/user?access_token={access_token}",
  118. headers=headers)
  119. user_info = res.json()
  120. email_info = requests.get(
  121. f"https://api.github.com/user/emails?access_token={access_token}",
  122. headers=headers).json()
  123. user_info["email"] = next(
  124. (email for email in email_info if email['primary'] == True),
  125. None)["email"]
  126. return user_info
  127. @manager.route("/logout", methods=['GET'])
  128. @login_required
  129. def log_out():
  130. current_user.access_token = ""
  131. current_user.save()
  132. logout_user()
  133. return get_json_result(data=True)
  134. @manager.route("/setting", methods=["POST"])
  135. @login_required
  136. def setting_user():
  137. update_dict = {}
  138. request_data = request.json
  139. if request_data.get("password"):
  140. new_password = request_data.get("new_password")
  141. if not check_password_hash(
  142. current_user.password, decrypt(request_data["password"])):
  143. return get_json_result(
  144. data=False, retcode=RetCode.AUTHENTICATION_ERROR, retmsg='Password error!')
  145. if new_password:
  146. update_dict["password"] = generate_password_hash(
  147. decrypt(new_password))
  148. for k in request_data.keys():
  149. if k in ["password", "new_password"]:
  150. continue
  151. update_dict[k] = request_data[k]
  152. try:
  153. UserService.update_by_id(current_user.id, update_dict)
  154. return get_json_result(data=True)
  155. except Exception as e:
  156. stat_logger.exception(e)
  157. return get_json_result(
  158. data=False, retmsg='Update failure!', retcode=RetCode.EXCEPTION_ERROR)
  159. @manager.route("/info", methods=["GET"])
  160. @login_required
  161. def user_info():
  162. return get_json_result(data=current_user.to_dict())
  163. def rollback_user_registration(user_id):
  164. try:
  165. UserService.delete_by_id(user_id)
  166. except Exception as e:
  167. pass
  168. try:
  169. TenantService.delete_by_id(user_id)
  170. except Exception as e:
  171. pass
  172. try:
  173. u = UserTenantService.query(tenant_id=user_id)
  174. if u:
  175. UserTenantService.delete_by_id(u[0].id)
  176. except Exception as e:
  177. pass
  178. try:
  179. TenantLLM.delete().where(TenantLLM.tenant_id == user_id).excute()
  180. except Exception as e:
  181. pass
  182. def user_register(user_id, user):
  183. user["id"] = user_id
  184. tenant = {
  185. "id": user_id,
  186. "name": user["nickname"] + "‘s Kingdom",
  187. "llm_id": CHAT_MDL,
  188. "embd_id": EMBEDDING_MDL,
  189. "asr_id": ASR_MDL,
  190. "parser_ids": PARSERS,
  191. "img2txt_id": IMAGE2TEXT_MDL
  192. }
  193. usr_tenant = {
  194. "tenant_id": user_id,
  195. "user_id": user_id,
  196. "invited_by": user_id,
  197. "role": UserTenantRole.OWNER
  198. }
  199. file_id = get_uuid()
  200. file = {
  201. "id": file_id,
  202. "parent_id": file_id,
  203. "tenant_id": user_id,
  204. "created_by": user_id,
  205. "name": "/",
  206. "type": FileType.FOLDER,
  207. "size": 0,
  208. "location": "",
  209. }
  210. tenant_llm = []
  211. for llm in LLMService.query(fid=LLM_FACTORY):
  212. tenant_llm.append({"tenant_id": user_id,
  213. "llm_factory": LLM_FACTORY,
  214. "llm_name": llm.llm_name,
  215. "model_type": llm.model_type,
  216. "api_key": API_KEY,
  217. "api_base": LLM_BASE_URL
  218. })
  219. if not UserService.save(**user):
  220. return
  221. TenantService.insert(**tenant)
  222. UserTenantService.insert(**usr_tenant)
  223. TenantLLMService.insert_many(tenant_llm)
  224. FileService.insert(file)
  225. return UserService.query(email=user["email"])
  226. @manager.route("/register", methods=["POST"])
  227. @validate_request("nickname", "email", "password")
  228. def user_add():
  229. req = request.json
  230. if UserService.query(email=req["email"]):
  231. return get_json_result(
  232. data=False, retmsg=f'Email: {req["email"]} has already registered!', retcode=RetCode.OPERATING_ERROR)
  233. if not re.match(r"^[\w\._-]+@([\w_-]+\.)+[\w-]{2,4}$", req["email"]):
  234. return get_json_result(data=False, retmsg=f'Invaliad e-mail: {req["email"]}!',
  235. retcode=RetCode.OPERATING_ERROR)
  236. user_dict = {
  237. "access_token": get_uuid(),
  238. "email": req["email"],
  239. "nickname": req["nickname"],
  240. "password": decrypt(req["password"]),
  241. "login_channel": "password",
  242. "last_login_time": get_format_time(),
  243. "is_superuser": False,
  244. }
  245. user_id = get_uuid()
  246. try:
  247. users = user_register(user_id, user_dict)
  248. if not users:
  249. raise Exception('Register user failure.')
  250. if len(users) > 1:
  251. raise Exception('Same E-mail exist!')
  252. user = users[0]
  253. login_user(user)
  254. return cors_reponse(data=user.to_json(),
  255. auth=user.get_id(), retmsg="Welcome aboard!")
  256. except Exception as e:
  257. rollback_user_registration(user_id)
  258. stat_logger.exception(e)
  259. return get_json_result(
  260. data=False, retmsg='User registration failure!', retcode=RetCode.EXCEPTION_ERROR)
  261. @manager.route("/tenant_info", methods=["GET"])
  262. @login_required
  263. def tenant_info():
  264. try:
  265. tenants = TenantService.get_by_user_id(current_user.id)[0]
  266. return get_json_result(data=tenants)
  267. except Exception as e:
  268. return server_error_response(e)
  269. @manager.route("/set_tenant_info", methods=["POST"])
  270. @login_required
  271. @validate_request("tenant_id", "asr_id", "embd_id", "img2txt_id", "llm_id")
  272. def set_tenant_info():
  273. req = request.json
  274. try:
  275. tid = req["tenant_id"]
  276. del req["tenant_id"]
  277. TenantService.update_by_id(tid, req)
  278. return get_json_result(data=True)
  279. except Exception as e:
  280. return server_error_response(e)