api_request.go 16 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548
  1. package channel
  2. import (
  3. "context"
  4. "errors"
  5. "fmt"
  6. "io"
  7. "net/http"
  8. "regexp"
  9. "strings"
  10. "sync"
  11. "time"
  12. common2 "github.com/QuantumNous/new-api/common"
  13. "github.com/QuantumNous/new-api/logger"
  14. "github.com/QuantumNous/new-api/relay/common"
  15. "github.com/QuantumNous/new-api/relay/constant"
  16. "github.com/QuantumNous/new-api/relay/helper"
  17. "github.com/QuantumNous/new-api/service"
  18. "github.com/QuantumNous/new-api/setting/operation_setting"
  19. "github.com/QuantumNous/new-api/types"
  20. "github.com/bytedance/gopkg/util/gopool"
  21. "github.com/gin-gonic/gin"
  22. "github.com/gorilla/websocket"
  23. )
  24. func SetupApiRequestHeader(info *common.RelayInfo, c *gin.Context, req *http.Header) {
  25. if info.RelayMode == constant.RelayModeAudioTranscription || info.RelayMode == constant.RelayModeAudioTranslation {
  26. // multipart/form-data
  27. } else if info.RelayMode == constant.RelayModeRealtime {
  28. // websocket
  29. } else {
  30. req.Set("Content-Type", c.Request.Header.Get("Content-Type"))
  31. req.Set("Accept", c.Request.Header.Get("Accept"))
  32. if info.IsStream && c.Request.Header.Get("Accept") == "" {
  33. req.Set("Accept", "text/event-stream")
  34. }
  35. }
  36. }
  37. const clientHeaderPlaceholderPrefix = "{client_header:"
  38. const (
  39. headerPassthroughAllKey = "*"
  40. headerPassthroughRegexPrefix = "re:"
  41. headerPassthroughRegexPrefixV2 = "regex:"
  42. )
  43. var passthroughSkipHeaderNamesLower = map[string]struct{}{
  44. // RFC 7230 hop-by-hop headers.
  45. "connection": {},
  46. "keep-alive": {},
  47. "proxy-authenticate": {},
  48. "proxy-authorization": {},
  49. "te": {},
  50. "trailer": {},
  51. "transfer-encoding": {},
  52. "upgrade": {},
  53. "cookie": {},
  54. // Additional headers that should not be forwarded by name-matching passthrough rules.
  55. "host": {},
  56. "content-length": {},
  57. "accept-encoding": {},
  58. // Do not passthrough credentials by wildcard/regex.
  59. "authorization": {},
  60. "x-api-key": {},
  61. "x-goog-api-key": {},
  62. // WebSocket handshake headers are generated by the client/dialer.
  63. "sec-websocket-key": {},
  64. "sec-websocket-version": {},
  65. "sec-websocket-extensions": {},
  66. }
  67. var headerPassthroughRegexCache sync.Map // map[string]*regexp.Regexp
  68. func getHeaderPassthroughRegex(pattern string) (*regexp.Regexp, error) {
  69. pattern = strings.TrimSpace(pattern)
  70. if pattern == "" {
  71. return nil, errors.New("empty regex pattern")
  72. }
  73. if v, ok := headerPassthroughRegexCache.Load(pattern); ok {
  74. if re, ok := v.(*regexp.Regexp); ok {
  75. return re, nil
  76. }
  77. headerPassthroughRegexCache.Delete(pattern)
  78. }
  79. compiled, err := regexp.Compile(pattern)
  80. if err != nil {
  81. return nil, err
  82. }
  83. actual, _ := headerPassthroughRegexCache.LoadOrStore(pattern, compiled)
  84. if re, ok := actual.(*regexp.Regexp); ok {
  85. return re, nil
  86. }
  87. return compiled, nil
  88. }
  89. func isHeaderPassthroughRuleKey(key string) bool {
  90. key = strings.TrimSpace(key)
  91. if key == "" {
  92. return false
  93. }
  94. if key == headerPassthroughAllKey {
  95. return true
  96. }
  97. lower := strings.ToLower(key)
  98. return strings.HasPrefix(lower, headerPassthroughRegexPrefix) || strings.HasPrefix(lower, headerPassthroughRegexPrefixV2)
  99. }
  100. func shouldSkipPassthroughHeader(name string) bool {
  101. name = strings.TrimSpace(name)
  102. if name == "" {
  103. return true
  104. }
  105. lower := strings.ToLower(name)
  106. if _, ok := passthroughSkipHeaderNamesLower[lower]; ok {
  107. return true
  108. }
  109. return false
  110. }
  111. func applyHeaderOverridePlaceholders(template string, c *gin.Context, apiKey string) (string, bool, error) {
  112. trimmed := strings.TrimSpace(template)
  113. if strings.HasPrefix(trimmed, clientHeaderPlaceholderPrefix) {
  114. afterPrefix := trimmed[len(clientHeaderPlaceholderPrefix):]
  115. end := strings.Index(afterPrefix, "}")
  116. if end < 0 || end != len(afterPrefix)-1 {
  117. return "", false, fmt.Errorf("client_header placeholder must be the full value: %q", template)
  118. }
  119. name := strings.TrimSpace(afterPrefix[:end])
  120. if name == "" {
  121. return "", false, fmt.Errorf("client_header placeholder name is empty: %q", template)
  122. }
  123. if c == nil || c.Request == nil {
  124. return "", false, fmt.Errorf("missing request context for client_header placeholder")
  125. }
  126. clientHeaderValue := c.Request.Header.Get(name)
  127. if strings.TrimSpace(clientHeaderValue) == "" {
  128. return "", false, nil
  129. }
  130. // Do not interpolate {api_key} inside client-supplied content.
  131. return clientHeaderValue, true, nil
  132. }
  133. if strings.Contains(template, "{api_key}") {
  134. template = strings.ReplaceAll(template, "{api_key}", apiKey)
  135. }
  136. if strings.TrimSpace(template) == "" {
  137. return "", false, nil
  138. }
  139. return template, true, nil
  140. }
  141. // processHeaderOverride applies channel header overrides, with placeholder substitution.
  142. // Supported placeholders:
  143. // - {api_key}: resolved to the channel API key
  144. // - {client_header:<name>}: resolved to the incoming request header value
  145. //
  146. // Header passthrough rules (keys only; values are ignored):
  147. // - "*": passthrough all incoming headers by name (excluding unsafe headers)
  148. // - "re:<regex>" / "regex:<regex>": passthrough headers whose names match the regex (Go regexp)
  149. //
  150. // Passthrough rules are applied first, then normal overrides are applied, so explicit overrides win.
  151. func processHeaderOverride(info *common.RelayInfo, c *gin.Context) (map[string]string, error) {
  152. headerOverride := make(map[string]string)
  153. if info == nil {
  154. return headerOverride, nil
  155. }
  156. headerOverrideSource := common.GetEffectiveHeaderOverride(info)
  157. passAll := false
  158. var passthroughRegex []*regexp.Regexp
  159. if !info.IsChannelTest {
  160. for k := range headerOverrideSource {
  161. key := strings.TrimSpace(k)
  162. if key == "" {
  163. continue
  164. }
  165. if key == headerPassthroughAllKey {
  166. passAll = true
  167. continue
  168. }
  169. lower := strings.ToLower(key)
  170. var pattern string
  171. switch {
  172. case strings.HasPrefix(lower, headerPassthroughRegexPrefix):
  173. pattern = strings.TrimSpace(key[len(headerPassthroughRegexPrefix):])
  174. case strings.HasPrefix(lower, headerPassthroughRegexPrefixV2):
  175. pattern = strings.TrimSpace(key[len(headerPassthroughRegexPrefixV2):])
  176. default:
  177. continue
  178. }
  179. if pattern == "" {
  180. return nil, types.NewError(fmt.Errorf("header passthrough regex pattern is empty: %q", k), types.ErrorCodeChannelHeaderOverrideInvalid)
  181. }
  182. compiled, err := getHeaderPassthroughRegex(pattern)
  183. if err != nil {
  184. return nil, types.NewError(err, types.ErrorCodeChannelHeaderOverrideInvalid)
  185. }
  186. passthroughRegex = append(passthroughRegex, compiled)
  187. }
  188. }
  189. if passAll || len(passthroughRegex) > 0 {
  190. if c == nil || c.Request == nil {
  191. return nil, types.NewError(fmt.Errorf("missing request context for header passthrough"), types.ErrorCodeChannelHeaderOverrideInvalid)
  192. }
  193. for name := range c.Request.Header {
  194. if shouldSkipPassthroughHeader(name) {
  195. continue
  196. }
  197. if !passAll {
  198. matched := false
  199. for _, re := range passthroughRegex {
  200. if re.MatchString(name) {
  201. matched = true
  202. break
  203. }
  204. }
  205. if !matched {
  206. continue
  207. }
  208. }
  209. value := strings.TrimSpace(c.Request.Header.Get(name))
  210. if value == "" {
  211. continue
  212. }
  213. headerOverride[name] = value
  214. }
  215. }
  216. for k, v := range headerOverrideSource {
  217. if isHeaderPassthroughRuleKey(k) {
  218. continue
  219. }
  220. key := strings.TrimSpace(k)
  221. if key == "" {
  222. continue
  223. }
  224. str, ok := v.(string)
  225. if !ok {
  226. return nil, types.NewError(nil, types.ErrorCodeChannelHeaderOverrideInvalid)
  227. }
  228. if info.IsChannelTest && strings.HasPrefix(strings.TrimSpace(str), clientHeaderPlaceholderPrefix) {
  229. continue
  230. }
  231. value, include, err := applyHeaderOverridePlaceholders(str, c, info.ApiKey)
  232. if err != nil {
  233. return nil, types.NewError(err, types.ErrorCodeChannelHeaderOverrideInvalid)
  234. }
  235. if !include {
  236. continue
  237. }
  238. headerOverride[key] = value
  239. }
  240. return headerOverride, nil
  241. }
  242. func applyHeaderOverrideToRequest(req *http.Request, headerOverride map[string]string) {
  243. if req == nil {
  244. return
  245. }
  246. for key, value := range headerOverride {
  247. req.Header.Set(key, value)
  248. // set Host in req
  249. if strings.EqualFold(key, "Host") {
  250. req.Host = value
  251. }
  252. }
  253. }
  254. func DoApiRequest(a Adaptor, c *gin.Context, info *common.RelayInfo, requestBody io.Reader) (*http.Response, error) {
  255. fullRequestURL, err := a.GetRequestURL(info)
  256. if err != nil {
  257. return nil, fmt.Errorf("get request url failed: %w", err)
  258. }
  259. if common2.DebugEnabled {
  260. println("fullRequestURL:", fullRequestURL)
  261. }
  262. req, err := http.NewRequest(c.Request.Method, fullRequestURL, requestBody)
  263. if err != nil {
  264. return nil, fmt.Errorf("new request failed: %w", err)
  265. }
  266. headers := req.Header
  267. err = a.SetupRequestHeader(c, &headers, info)
  268. if err != nil {
  269. return nil, fmt.Errorf("setup request header failed: %w", err)
  270. }
  271. // 在 SetupRequestHeader 之后应用 Header Override,确保用户设置优先级最高
  272. // 这样可以覆盖默认的 Authorization header 设置
  273. headerOverride, err := processHeaderOverride(info, c)
  274. if err != nil {
  275. return nil, err
  276. }
  277. applyHeaderOverrideToRequest(req, headerOverride)
  278. resp, err := doRequest(c, req, info)
  279. if err != nil {
  280. return nil, fmt.Errorf("do request failed: %w", err)
  281. }
  282. return resp, nil
  283. }
  284. func DoFormRequest(a Adaptor, c *gin.Context, info *common.RelayInfo, requestBody io.Reader) (*http.Response, error) {
  285. fullRequestURL, err := a.GetRequestURL(info)
  286. if err != nil {
  287. return nil, fmt.Errorf("get request url failed: %w", err)
  288. }
  289. if common2.DebugEnabled {
  290. println("fullRequestURL:", fullRequestURL)
  291. }
  292. req, err := http.NewRequest(c.Request.Method, fullRequestURL, requestBody)
  293. if err != nil {
  294. return nil, fmt.Errorf("new request failed: %w", err)
  295. }
  296. // set form data
  297. req.Header.Set("Content-Type", c.Request.Header.Get("Content-Type"))
  298. headers := req.Header
  299. err = a.SetupRequestHeader(c, &headers, info)
  300. if err != nil {
  301. return nil, fmt.Errorf("setup request header failed: %w", err)
  302. }
  303. // 在 SetupRequestHeader 之后应用 Header Override,确保用户设置优先级最高
  304. // 这样可以覆盖默认的 Authorization header 设置
  305. headerOverride, err := processHeaderOverride(info, c)
  306. if err != nil {
  307. return nil, err
  308. }
  309. applyHeaderOverrideToRequest(req, headerOverride)
  310. resp, err := doRequest(c, req, info)
  311. if err != nil {
  312. return nil, fmt.Errorf("do request failed: %w", err)
  313. }
  314. return resp, nil
  315. }
  316. func DoWssRequest(a Adaptor, c *gin.Context, info *common.RelayInfo, requestBody io.Reader) (*websocket.Conn, error) {
  317. fullRequestURL, err := a.GetRequestURL(info)
  318. if err != nil {
  319. return nil, fmt.Errorf("get request url failed: %w", err)
  320. }
  321. targetHeader := http.Header{}
  322. err = a.SetupRequestHeader(c, &targetHeader, info)
  323. if err != nil {
  324. return nil, fmt.Errorf("setup request header failed: %w", err)
  325. }
  326. // 在 SetupRequestHeader 之后应用 Header Override,确保用户设置优先级最高
  327. // 这样可以覆盖默认的 Authorization header 设置
  328. headerOverride, err := processHeaderOverride(info, c)
  329. if err != nil {
  330. return nil, err
  331. }
  332. for key, value := range headerOverride {
  333. targetHeader.Set(key, value)
  334. }
  335. targetHeader.Set("Content-Type", c.Request.Header.Get("Content-Type"))
  336. targetConn, _, err := websocket.DefaultDialer.Dial(fullRequestURL, targetHeader)
  337. if err != nil {
  338. return nil, fmt.Errorf("dial failed to %s: %w", fullRequestURL, err)
  339. }
  340. // send request body
  341. //all, err := io.ReadAll(requestBody)
  342. //err = service.WssString(c, targetConn, string(all))
  343. return targetConn, nil
  344. }
  345. func startPingKeepAlive(c *gin.Context, pingInterval time.Duration) context.CancelFunc {
  346. pingerCtx, stopPinger := context.WithCancel(context.Background())
  347. gopool.Go(func() {
  348. defer func() {
  349. // 增加panic恢复处理
  350. if r := recover(); r != nil {
  351. if common2.DebugEnabled {
  352. println("SSE ping goroutine panic recovered:", fmt.Sprintf("%v", r))
  353. }
  354. }
  355. if common2.DebugEnabled {
  356. println("SSE ping goroutine stopped.")
  357. }
  358. }()
  359. if pingInterval <= 0 {
  360. pingInterval = helper.DefaultPingInterval
  361. }
  362. ticker := time.NewTicker(pingInterval)
  363. // 确保在任何情况下都清理ticker
  364. defer func() {
  365. ticker.Stop()
  366. if common2.DebugEnabled {
  367. println("SSE ping ticker stopped")
  368. }
  369. }()
  370. var pingMutex sync.Mutex
  371. if common2.DebugEnabled {
  372. println("SSE ping goroutine started")
  373. }
  374. // 增加超时控制,防止goroutine长时间运行
  375. maxPingDuration := 120 * time.Minute // 最大ping持续时间
  376. pingTimeout := time.NewTimer(maxPingDuration)
  377. defer pingTimeout.Stop()
  378. for {
  379. select {
  380. // 发送 ping 数据
  381. case <-ticker.C:
  382. if err := sendPingData(c, &pingMutex); err != nil {
  383. if common2.DebugEnabled {
  384. println("SSE ping error, stopping goroutine:", err.Error())
  385. }
  386. return
  387. }
  388. // 收到退出信号
  389. case <-pingerCtx.Done():
  390. return
  391. // request 结束
  392. case <-c.Request.Context().Done():
  393. return
  394. // 超时保护,防止goroutine无限运行
  395. case <-pingTimeout.C:
  396. if common2.DebugEnabled {
  397. println("SSE ping goroutine timeout, stopping")
  398. }
  399. return
  400. }
  401. }
  402. })
  403. return stopPinger
  404. }
  405. func sendPingData(c *gin.Context, mutex *sync.Mutex) error {
  406. // 增加超时控制,防止锁死等待
  407. done := make(chan error, 1)
  408. go func() {
  409. mutex.Lock()
  410. defer mutex.Unlock()
  411. err := helper.PingData(c)
  412. if err != nil {
  413. logger.LogError(c, "SSE ping error: "+err.Error())
  414. done <- err
  415. return
  416. }
  417. if common2.DebugEnabled {
  418. println("SSE ping data sent.")
  419. }
  420. done <- nil
  421. }()
  422. // 设置发送ping数据的超时时间
  423. select {
  424. case err := <-done:
  425. return err
  426. case <-time.After(10 * time.Second):
  427. return errors.New("SSE ping data send timeout")
  428. case <-c.Request.Context().Done():
  429. return errors.New("request context cancelled during ping")
  430. }
  431. }
  432. func DoRequest(c *gin.Context, req *http.Request, info *common.RelayInfo) (*http.Response, error) {
  433. return doRequest(c, req, info)
  434. }
  435. func doRequest(c *gin.Context, req *http.Request, info *common.RelayInfo) (*http.Response, error) {
  436. var client *http.Client
  437. var err error
  438. if info.ChannelSetting.Proxy != "" {
  439. client, err = service.NewProxyHttpClient(info.ChannelSetting.Proxy)
  440. if err != nil {
  441. return nil, fmt.Errorf("new proxy http client failed: %w", err)
  442. }
  443. } else {
  444. client = service.GetHttpClient()
  445. }
  446. var stopPinger context.CancelFunc
  447. if info.IsStream {
  448. helper.SetEventStreamHeaders(c)
  449. // 处理流式请求的 ping 保活
  450. generalSettings := operation_setting.GetGeneralSetting()
  451. if generalSettings.PingIntervalEnabled && !info.DisablePing {
  452. pingInterval := time.Duration(generalSettings.PingIntervalSeconds) * time.Second
  453. stopPinger = startPingKeepAlive(c, pingInterval)
  454. // 使用defer确保在任何情况下都能停止ping goroutine
  455. defer func() {
  456. if stopPinger != nil {
  457. stopPinger()
  458. if common2.DebugEnabled {
  459. println("SSE ping goroutine stopped by defer")
  460. }
  461. }
  462. }()
  463. }
  464. }
  465. resp, err := client.Do(req)
  466. if err != nil {
  467. logger.LogError(c, "do request failed: "+err.Error())
  468. return nil, types.NewError(err, types.ErrorCodeDoRequestFailed, types.ErrOptionWithHideErrMsg("upstream error: do request failed"))
  469. }
  470. if resp == nil {
  471. return nil, errors.New("resp is nil")
  472. }
  473. _ = req.Body.Close()
  474. _ = c.Request.Body.Close()
  475. return resp, nil
  476. }
  477. func DoTaskApiRequest(a TaskAdaptor, c *gin.Context, info *common.RelayInfo, requestBody io.Reader) (*http.Response, error) {
  478. fullRequestURL, err := a.BuildRequestURL(info)
  479. if err != nil {
  480. return nil, err
  481. }
  482. req, err := http.NewRequest(c.Request.Method, fullRequestURL, requestBody)
  483. if err != nil {
  484. return nil, fmt.Errorf("new request failed: %w", err)
  485. }
  486. req.GetBody = func() (io.ReadCloser, error) {
  487. return io.NopCloser(requestBody), nil
  488. }
  489. err = a.BuildRequestHeader(c, req, info)
  490. if err != nil {
  491. return nil, fmt.Errorf("setup request header failed: %w", err)
  492. }
  493. resp, err := doRequest(c, req, info)
  494. if err != nil {
  495. return nil, fmt.Errorf("do request failed: %w", err)
  496. }
  497. return resp, nil
  498. }