api_request.go 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537
  1. package channel
  2. import (
  3. "context"
  4. "errors"
  5. "fmt"
  6. "io"
  7. "net/http"
  8. "regexp"
  9. "strings"
  10. "sync"
  11. "time"
  12. common2 "github.com/QuantumNous/new-api/common"
  13. "github.com/QuantumNous/new-api/logger"
  14. "github.com/QuantumNous/new-api/relay/common"
  15. "github.com/QuantumNous/new-api/relay/constant"
  16. "github.com/QuantumNous/new-api/relay/helper"
  17. "github.com/QuantumNous/new-api/service"
  18. "github.com/QuantumNous/new-api/setting/operation_setting"
  19. "github.com/QuantumNous/new-api/types"
  20. "github.com/bytedance/gopkg/util/gopool"
  21. "github.com/gin-gonic/gin"
  22. "github.com/gorilla/websocket"
  23. )
  24. func SetupApiRequestHeader(info *common.RelayInfo, c *gin.Context, req *http.Header) {
  25. if info.RelayMode == constant.RelayModeAudioTranscription || info.RelayMode == constant.RelayModeAudioTranslation {
  26. // multipart/form-data
  27. } else if info.RelayMode == constant.RelayModeRealtime {
  28. // websocket
  29. } else {
  30. req.Set("Content-Type", c.Request.Header.Get("Content-Type"))
  31. req.Set("Accept", c.Request.Header.Get("Accept"))
  32. if info.IsStream && c.Request.Header.Get("Accept") == "" {
  33. req.Set("Accept", "text/event-stream")
  34. }
  35. }
  36. }
  37. const clientHeaderPlaceholderPrefix = "{client_header:"
  38. const (
  39. headerPassthroughAllKey = "*"
  40. headerPassthroughRegexPrefix = "re:"
  41. headerPassthroughRegexPrefixV2 = "regex:"
  42. )
  43. var passthroughSkipHeaderNamesLower = map[string]struct{}{
  44. // RFC 7230 hop-by-hop headers.
  45. "connection": {},
  46. "keep-alive": {},
  47. "proxy-authenticate": {},
  48. "proxy-authorization": {},
  49. "te": {},
  50. "trailer": {},
  51. "transfer-encoding": {},
  52. "upgrade": {},
  53. "cookie": {},
  54. // Additional headers that should not be forwarded by name-matching passthrough rules.
  55. "host": {},
  56. "content-length": {},
  57. // Do not passthrough credentials by wildcard/regex.
  58. "authorization": {},
  59. "x-api-key": {},
  60. "x-goog-api-key": {},
  61. // WebSocket handshake headers are generated by the client/dialer.
  62. "sec-websocket-key": {},
  63. "sec-websocket-version": {},
  64. "sec-websocket-extensions": {},
  65. }
  66. var headerPassthroughRegexCache sync.Map // map[string]*regexp.Regexp
  67. func getHeaderPassthroughRegex(pattern string) (*regexp.Regexp, error) {
  68. pattern = strings.TrimSpace(pattern)
  69. if pattern == "" {
  70. return nil, errors.New("empty regex pattern")
  71. }
  72. if v, ok := headerPassthroughRegexCache.Load(pattern); ok {
  73. if re, ok := v.(*regexp.Regexp); ok {
  74. return re, nil
  75. }
  76. headerPassthroughRegexCache.Delete(pattern)
  77. }
  78. compiled, err := regexp.Compile(pattern)
  79. if err != nil {
  80. return nil, err
  81. }
  82. actual, _ := headerPassthroughRegexCache.LoadOrStore(pattern, compiled)
  83. if re, ok := actual.(*regexp.Regexp); ok {
  84. return re, nil
  85. }
  86. return compiled, nil
  87. }
  88. func isHeaderPassthroughRuleKey(key string) bool {
  89. key = strings.TrimSpace(key)
  90. if key == "" {
  91. return false
  92. }
  93. if key == headerPassthroughAllKey {
  94. return true
  95. }
  96. lower := strings.ToLower(key)
  97. return strings.HasPrefix(lower, headerPassthroughRegexPrefix) || strings.HasPrefix(lower, headerPassthroughRegexPrefixV2)
  98. }
  99. func shouldSkipPassthroughHeader(name string) bool {
  100. name = strings.TrimSpace(name)
  101. if name == "" {
  102. return true
  103. }
  104. lower := strings.ToLower(name)
  105. if _, ok := passthroughSkipHeaderNamesLower[lower]; ok {
  106. return true
  107. }
  108. return false
  109. }
  110. func applyHeaderOverridePlaceholders(template string, c *gin.Context, apiKey string) (string, bool, error) {
  111. trimmed := strings.TrimSpace(template)
  112. if strings.HasPrefix(trimmed, clientHeaderPlaceholderPrefix) {
  113. afterPrefix := trimmed[len(clientHeaderPlaceholderPrefix):]
  114. end := strings.Index(afterPrefix, "}")
  115. if end < 0 || end != len(afterPrefix)-1 {
  116. return "", false, fmt.Errorf("client_header placeholder must be the full value: %q", template)
  117. }
  118. name := strings.TrimSpace(afterPrefix[:end])
  119. if name == "" {
  120. return "", false, fmt.Errorf("client_header placeholder name is empty: %q", template)
  121. }
  122. if c == nil || c.Request == nil {
  123. return "", false, fmt.Errorf("missing request context for client_header placeholder")
  124. }
  125. clientHeaderValue := c.Request.Header.Get(name)
  126. if strings.TrimSpace(clientHeaderValue) == "" {
  127. return "", false, nil
  128. }
  129. // Do not interpolate {api_key} inside client-supplied content.
  130. return clientHeaderValue, true, nil
  131. }
  132. if strings.Contains(template, "{api_key}") {
  133. template = strings.ReplaceAll(template, "{api_key}", apiKey)
  134. }
  135. if strings.TrimSpace(template) == "" {
  136. return "", false, nil
  137. }
  138. return template, true, nil
  139. }
  140. // processHeaderOverride applies channel header overrides, with placeholder substitution.
  141. // Supported placeholders:
  142. // - {api_key}: resolved to the channel API key
  143. // - {client_header:<name>}: resolved to the incoming request header value
  144. //
  145. // Header passthrough rules (keys only; values are ignored):
  146. // - "*": passthrough all incoming headers by name (excluding unsafe headers)
  147. // - "re:<regex>" / "regex:<regex>": passthrough headers whose names match the regex (Go regexp)
  148. //
  149. // Passthrough rules are applied first, then normal overrides are applied, so explicit overrides win.
  150. func processHeaderOverride(info *common.RelayInfo, c *gin.Context) (map[string]string, error) {
  151. headerOverride := make(map[string]string)
  152. passAll := false
  153. var passthroughRegex []*regexp.Regexp
  154. for k := range info.HeadersOverride {
  155. key := strings.TrimSpace(k)
  156. if key == "" {
  157. continue
  158. }
  159. if key == headerPassthroughAllKey {
  160. passAll = true
  161. continue
  162. }
  163. lower := strings.ToLower(key)
  164. var pattern string
  165. switch {
  166. case strings.HasPrefix(lower, headerPassthroughRegexPrefix):
  167. pattern = strings.TrimSpace(key[len(headerPassthroughRegexPrefix):])
  168. case strings.HasPrefix(lower, headerPassthroughRegexPrefixV2):
  169. pattern = strings.TrimSpace(key[len(headerPassthroughRegexPrefixV2):])
  170. default:
  171. continue
  172. }
  173. if pattern == "" {
  174. return nil, types.NewError(fmt.Errorf("header passthrough regex pattern is empty: %q", k), types.ErrorCodeChannelHeaderOverrideInvalid)
  175. }
  176. compiled, err := getHeaderPassthroughRegex(pattern)
  177. if err != nil {
  178. return nil, types.NewError(err, types.ErrorCodeChannelHeaderOverrideInvalid)
  179. }
  180. passthroughRegex = append(passthroughRegex, compiled)
  181. }
  182. if passAll || len(passthroughRegex) > 0 {
  183. if c == nil || c.Request == nil {
  184. return nil, types.NewError(fmt.Errorf("missing request context for header passthrough"), types.ErrorCodeChannelHeaderOverrideInvalid)
  185. }
  186. for name := range c.Request.Header {
  187. if shouldSkipPassthroughHeader(name) {
  188. continue
  189. }
  190. if !passAll {
  191. matched := false
  192. for _, re := range passthroughRegex {
  193. if re.MatchString(name) {
  194. matched = true
  195. break
  196. }
  197. }
  198. if !matched {
  199. continue
  200. }
  201. }
  202. value := strings.TrimSpace(c.Request.Header.Get(name))
  203. if value == "" {
  204. continue
  205. }
  206. headerOverride[name] = value
  207. }
  208. }
  209. for k, v := range info.HeadersOverride {
  210. if isHeaderPassthroughRuleKey(k) {
  211. continue
  212. }
  213. key := strings.TrimSpace(k)
  214. if key == "" {
  215. continue
  216. }
  217. str, ok := v.(string)
  218. if !ok {
  219. return nil, types.NewError(nil, types.ErrorCodeChannelHeaderOverrideInvalid)
  220. }
  221. value, include, err := applyHeaderOverridePlaceholders(str, c, info.ApiKey)
  222. if err != nil {
  223. return nil, types.NewError(err, types.ErrorCodeChannelHeaderOverrideInvalid)
  224. }
  225. if !include {
  226. continue
  227. }
  228. headerOverride[key] = value
  229. }
  230. return headerOverride, nil
  231. }
  232. func applyHeaderOverrideToRequest(req *http.Request, headerOverride map[string]string) {
  233. if req == nil {
  234. return
  235. }
  236. for key, value := range headerOverride {
  237. req.Header.Set(key, value)
  238. // set Host in req
  239. if strings.EqualFold(key, "Host") {
  240. req.Host = value
  241. }
  242. }
  243. }
  244. func DoApiRequest(a Adaptor, c *gin.Context, info *common.RelayInfo, requestBody io.Reader) (*http.Response, error) {
  245. fullRequestURL, err := a.GetRequestURL(info)
  246. if err != nil {
  247. return nil, fmt.Errorf("get request url failed: %w", err)
  248. }
  249. if common2.DebugEnabled {
  250. println("fullRequestURL:", fullRequestURL)
  251. }
  252. req, err := http.NewRequest(c.Request.Method, fullRequestURL, requestBody)
  253. if err != nil {
  254. return nil, fmt.Errorf("new request failed: %w", err)
  255. }
  256. headers := req.Header
  257. err = a.SetupRequestHeader(c, &headers, info)
  258. if err != nil {
  259. return nil, fmt.Errorf("setup request header failed: %w", err)
  260. }
  261. // 在 SetupRequestHeader 之后应用 Header Override,确保用户设置优先级最高
  262. // 这样可以覆盖默认的 Authorization header 设置
  263. headerOverride, err := processHeaderOverride(info, c)
  264. if err != nil {
  265. return nil, err
  266. }
  267. applyHeaderOverrideToRequest(req, headerOverride)
  268. resp, err := doRequest(c, req, info)
  269. if err != nil {
  270. return nil, fmt.Errorf("do request failed: %w", err)
  271. }
  272. return resp, nil
  273. }
  274. func DoFormRequest(a Adaptor, c *gin.Context, info *common.RelayInfo, requestBody io.Reader) (*http.Response, error) {
  275. fullRequestURL, err := a.GetRequestURL(info)
  276. if err != nil {
  277. return nil, fmt.Errorf("get request url failed: %w", err)
  278. }
  279. if common2.DebugEnabled {
  280. println("fullRequestURL:", fullRequestURL)
  281. }
  282. req, err := http.NewRequest(c.Request.Method, fullRequestURL, requestBody)
  283. if err != nil {
  284. return nil, fmt.Errorf("new request failed: %w", err)
  285. }
  286. // set form data
  287. req.Header.Set("Content-Type", c.Request.Header.Get("Content-Type"))
  288. headers := req.Header
  289. err = a.SetupRequestHeader(c, &headers, info)
  290. if err != nil {
  291. return nil, fmt.Errorf("setup request header failed: %w", err)
  292. }
  293. // 在 SetupRequestHeader 之后应用 Header Override,确保用户设置优先级最高
  294. // 这样可以覆盖默认的 Authorization header 设置
  295. headerOverride, err := processHeaderOverride(info, c)
  296. if err != nil {
  297. return nil, err
  298. }
  299. applyHeaderOverrideToRequest(req, headerOverride)
  300. resp, err := doRequest(c, req, info)
  301. if err != nil {
  302. return nil, fmt.Errorf("do request failed: %w", err)
  303. }
  304. return resp, nil
  305. }
  306. func DoWssRequest(a Adaptor, c *gin.Context, info *common.RelayInfo, requestBody io.Reader) (*websocket.Conn, error) {
  307. fullRequestURL, err := a.GetRequestURL(info)
  308. if err != nil {
  309. return nil, fmt.Errorf("get request url failed: %w", err)
  310. }
  311. targetHeader := http.Header{}
  312. err = a.SetupRequestHeader(c, &targetHeader, info)
  313. if err != nil {
  314. return nil, fmt.Errorf("setup request header failed: %w", err)
  315. }
  316. // 在 SetupRequestHeader 之后应用 Header Override,确保用户设置优先级最高
  317. // 这样可以覆盖默认的 Authorization header 设置
  318. headerOverride, err := processHeaderOverride(info, c)
  319. if err != nil {
  320. return nil, err
  321. }
  322. for key, value := range headerOverride {
  323. targetHeader.Set(key, value)
  324. }
  325. targetHeader.Set("Content-Type", c.Request.Header.Get("Content-Type"))
  326. targetConn, _, err := websocket.DefaultDialer.Dial(fullRequestURL, targetHeader)
  327. if err != nil {
  328. return nil, fmt.Errorf("dial failed to %s: %w", fullRequestURL, err)
  329. }
  330. // send request body
  331. //all, err := io.ReadAll(requestBody)
  332. //err = service.WssString(c, targetConn, string(all))
  333. return targetConn, nil
  334. }
  335. func startPingKeepAlive(c *gin.Context, pingInterval time.Duration) context.CancelFunc {
  336. pingerCtx, stopPinger := context.WithCancel(context.Background())
  337. gopool.Go(func() {
  338. defer func() {
  339. // 增加panic恢复处理
  340. if r := recover(); r != nil {
  341. if common2.DebugEnabled {
  342. println("SSE ping goroutine panic recovered:", fmt.Sprintf("%v", r))
  343. }
  344. }
  345. if common2.DebugEnabled {
  346. println("SSE ping goroutine stopped.")
  347. }
  348. }()
  349. if pingInterval <= 0 {
  350. pingInterval = helper.DefaultPingInterval
  351. }
  352. ticker := time.NewTicker(pingInterval)
  353. // 确保在任何情况下都清理ticker
  354. defer func() {
  355. ticker.Stop()
  356. if common2.DebugEnabled {
  357. println("SSE ping ticker stopped")
  358. }
  359. }()
  360. var pingMutex sync.Mutex
  361. if common2.DebugEnabled {
  362. println("SSE ping goroutine started")
  363. }
  364. // 增加超时控制,防止goroutine长时间运行
  365. maxPingDuration := 120 * time.Minute // 最大ping持续时间
  366. pingTimeout := time.NewTimer(maxPingDuration)
  367. defer pingTimeout.Stop()
  368. for {
  369. select {
  370. // 发送 ping 数据
  371. case <-ticker.C:
  372. if err := sendPingData(c, &pingMutex); err != nil {
  373. if common2.DebugEnabled {
  374. println("SSE ping error, stopping goroutine:", err.Error())
  375. }
  376. return
  377. }
  378. // 收到退出信号
  379. case <-pingerCtx.Done():
  380. return
  381. // request 结束
  382. case <-c.Request.Context().Done():
  383. return
  384. // 超时保护,防止goroutine无限运行
  385. case <-pingTimeout.C:
  386. if common2.DebugEnabled {
  387. println("SSE ping goroutine timeout, stopping")
  388. }
  389. return
  390. }
  391. }
  392. })
  393. return stopPinger
  394. }
  395. func sendPingData(c *gin.Context, mutex *sync.Mutex) error {
  396. // 增加超时控制,防止锁死等待
  397. done := make(chan error, 1)
  398. go func() {
  399. mutex.Lock()
  400. defer mutex.Unlock()
  401. err := helper.PingData(c)
  402. if err != nil {
  403. logger.LogError(c, "SSE ping error: "+err.Error())
  404. done <- err
  405. return
  406. }
  407. if common2.DebugEnabled {
  408. println("SSE ping data sent.")
  409. }
  410. done <- nil
  411. }()
  412. // 设置发送ping数据的超时时间
  413. select {
  414. case err := <-done:
  415. return err
  416. case <-time.After(10 * time.Second):
  417. return errors.New("SSE ping data send timeout")
  418. case <-c.Request.Context().Done():
  419. return errors.New("request context cancelled during ping")
  420. }
  421. }
  422. func DoRequest(c *gin.Context, req *http.Request, info *common.RelayInfo) (*http.Response, error) {
  423. return doRequest(c, req, info)
  424. }
  425. func doRequest(c *gin.Context, req *http.Request, info *common.RelayInfo) (*http.Response, error) {
  426. var client *http.Client
  427. var err error
  428. if info.ChannelSetting.Proxy != "" {
  429. client, err = service.NewProxyHttpClient(info.ChannelSetting.Proxy)
  430. if err != nil {
  431. return nil, fmt.Errorf("new proxy http client failed: %w", err)
  432. }
  433. } else {
  434. client = service.GetHttpClient()
  435. }
  436. var stopPinger context.CancelFunc
  437. if info.IsStream {
  438. helper.SetEventStreamHeaders(c)
  439. // 处理流式请求的 ping 保活
  440. generalSettings := operation_setting.GetGeneralSetting()
  441. if generalSettings.PingIntervalEnabled && !info.DisablePing {
  442. pingInterval := time.Duration(generalSettings.PingIntervalSeconds) * time.Second
  443. stopPinger = startPingKeepAlive(c, pingInterval)
  444. // 使用defer确保在任何情况下都能停止ping goroutine
  445. defer func() {
  446. if stopPinger != nil {
  447. stopPinger()
  448. if common2.DebugEnabled {
  449. println("SSE ping goroutine stopped by defer")
  450. }
  451. }
  452. }()
  453. }
  454. }
  455. resp, err := client.Do(req)
  456. if err != nil {
  457. logger.LogError(c, "do request failed: "+err.Error())
  458. return nil, types.NewError(err, types.ErrorCodeDoRequestFailed, types.ErrOptionWithHideErrMsg("upstream error: do request failed"))
  459. }
  460. if resp == nil {
  461. return nil, errors.New("resp is nil")
  462. }
  463. _ = req.Body.Close()
  464. _ = c.Request.Body.Close()
  465. return resp, nil
  466. }
  467. func DoTaskApiRequest(a TaskAdaptor, c *gin.Context, info *common.RelayInfo, requestBody io.Reader) (*http.Response, error) {
  468. fullRequestURL, err := a.BuildRequestURL(info)
  469. if err != nil {
  470. return nil, err
  471. }
  472. req, err := http.NewRequest(c.Request.Method, fullRequestURL, requestBody)
  473. if err != nil {
  474. return nil, fmt.Errorf("new request failed: %w", err)
  475. }
  476. req.GetBody = func() (io.ReadCloser, error) {
  477. return io.NopCloser(requestBody), nil
  478. }
  479. err = a.BuildRequestHeader(c, req, info)
  480. if err != nil {
  481. return nil, fmt.Errorf("setup request header failed: %w", err)
  482. }
  483. resp, err := doRequest(c, req, info)
  484. if err != nil {
  485. return nil, fmt.Errorf("do request failed: %w", err)
  486. }
  487. return resp, nil
  488. }