token.go 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511
  1. package model
  2. import (
  3. "errors"
  4. "fmt"
  5. "strings"
  6. "github.com/QuantumNous/new-api/common"
  7. "github.com/QuantumNous/new-api/setting/operation_setting"
  8. "github.com/bytedance/gopkg/util/gopool"
  9. "gorm.io/gorm"
  10. )
  11. type Token struct {
  12. Id int `json:"id"`
  13. UserId int `json:"user_id" gorm:"index"`
  14. Key string `json:"key" gorm:"type:varchar(128);uniqueIndex"`
  15. Status int `json:"status" gorm:"default:1"`
  16. Name string `json:"name" gorm:"index" `
  17. CreatedTime int64 `json:"created_time" gorm:"bigint"`
  18. AccessedTime int64 `json:"accessed_time" gorm:"bigint"`
  19. ExpiredTime int64 `json:"expired_time" gorm:"bigint;default:-1"` // -1 means never expired
  20. RemainQuota int `json:"remain_quota" gorm:"default:0"`
  21. UnlimitedQuota bool `json:"unlimited_quota"`
  22. ModelLimitsEnabled bool `json:"model_limits_enabled"`
  23. ModelLimits string `json:"model_limits" gorm:"type:text"`
  24. AllowIps *string `json:"allow_ips" gorm:"default:''"`
  25. UsedQuota int `json:"used_quota" gorm:"default:0"` // used quota
  26. Group string `json:"group" gorm:"default:''"`
  27. CrossGroupRetry bool `json:"cross_group_retry"` // 跨分组重试,仅auto分组有效
  28. DeletedAt gorm.DeletedAt `gorm:"index"`
  29. }
  30. func (token *Token) Clean() {
  31. token.Key = ""
  32. }
  33. func MaskTokenKey(key string) string {
  34. if key == "" {
  35. return ""
  36. }
  37. if len(key) <= 4 {
  38. return strings.Repeat("*", len(key))
  39. }
  40. if len(key) <= 8 {
  41. return key[:2] + "****" + key[len(key)-2:]
  42. }
  43. return key[:4] + "**********" + key[len(key)-4:]
  44. }
  45. func (token *Token) GetFullKey() string {
  46. return token.Key
  47. }
  48. func (token *Token) GetMaskedKey() string {
  49. return MaskTokenKey(token.Key)
  50. }
  51. func (token *Token) GetIpLimits() []string {
  52. // delete empty spaces
  53. //split with \n
  54. ipLimits := make([]string, 0)
  55. if token.AllowIps == nil {
  56. return ipLimits
  57. }
  58. cleanIps := strings.ReplaceAll(*token.AllowIps, " ", "")
  59. if cleanIps == "" {
  60. return ipLimits
  61. }
  62. ips := strings.Split(cleanIps, "\n")
  63. for _, ip := range ips {
  64. ip = strings.TrimSpace(ip)
  65. ip = strings.ReplaceAll(ip, ",", "")
  66. if ip != "" {
  67. ipLimits = append(ipLimits, ip)
  68. }
  69. }
  70. return ipLimits
  71. }
  72. func GetAllUserTokens(userId int, startIdx int, num int) ([]*Token, error) {
  73. var tokens []*Token
  74. var err error
  75. err = DB.Where("user_id = ?", userId).Order("id desc").Limit(num).Offset(startIdx).Find(&tokens).Error
  76. return tokens, err
  77. }
  78. // sanitizeLikePattern 校验并清洗用户输入的 LIKE 搜索模式。
  79. // 规则:
  80. // 1. 转义 ! 和 _(使用 ! 作为 ESCAPE 字符,兼容 MySQL/PostgreSQL/SQLite)
  81. // 2. 连续的 % 合并为单个 %
  82. // 3. 最多允许 2 个 %
  83. // 4. 含 % 时(模糊搜索),去掉 % 后关键词长度必须 >= 2
  84. // 5. 不含 % 时按精确匹配
  85. func sanitizeLikePattern(input string) (string, error) {
  86. // 1. 先转义 ESCAPE 字符 ! 自身,再转义 _
  87. // 使用 ! 而非 \ 作为 ESCAPE 字符,避免 MySQL 中反斜杠的字符串转义问题
  88. input = strings.ReplaceAll(input, "!", "!!")
  89. input = strings.ReplaceAll(input, `_`, `!_`)
  90. // 2. 连续的 % 直接拒绝
  91. if strings.Contains(input, "%%") {
  92. return "", errors.New("搜索模式中不允许包含连续的 % 通配符")
  93. }
  94. // 3. 统计 % 数量,不得超过 2
  95. count := strings.Count(input, "%")
  96. if count > 2 {
  97. return "", errors.New("搜索模式中最多允许包含 2 个 % 通配符")
  98. }
  99. // 4. 含 % 时,去掉 % 后关键词长度必须 >= 2
  100. if count > 0 {
  101. stripped := strings.ReplaceAll(input, "%", "")
  102. if len(stripped) < 2 {
  103. return "", errors.New("使用模糊搜索时,关键词长度至少为 2 个字符")
  104. }
  105. return input, nil
  106. }
  107. // 5. 无 % 时,精确全匹配
  108. return input, nil
  109. }
  110. const searchHardLimit = 100
  111. func SearchUserTokens(userId int, keyword string, token string, offset int, limit int) (tokens []*Token, total int64, err error) {
  112. // model 层强制截断
  113. if limit <= 0 || limit > searchHardLimit {
  114. limit = searchHardLimit
  115. }
  116. if offset < 0 {
  117. offset = 0
  118. }
  119. if token != "" {
  120. token = strings.TrimPrefix(token, "sk-")
  121. }
  122. // 超量用户(令牌数超过上限)只允许精确搜索,禁止模糊搜索
  123. maxTokens := operation_setting.GetMaxUserTokens()
  124. hasFuzzy := strings.Contains(keyword, "%") || strings.Contains(token, "%")
  125. if hasFuzzy {
  126. count, err := CountUserTokens(userId)
  127. if err != nil {
  128. common.SysLog("failed to count user tokens: " + err.Error())
  129. return nil, 0, errors.New("获取令牌数量失败")
  130. }
  131. if int(count) > maxTokens {
  132. return nil, 0, errors.New("令牌数量超过上限,仅允许精确搜索,请勿使用 % 通配符")
  133. }
  134. }
  135. baseQuery := DB.Model(&Token{}).Where("user_id = ?", userId)
  136. // 非空才加 LIKE 条件,空则跳过(不过滤该字段)
  137. if keyword != "" {
  138. keywordPattern, err := sanitizeLikePattern(keyword)
  139. if err != nil {
  140. return nil, 0, err
  141. }
  142. baseQuery = baseQuery.Where("name LIKE ? ESCAPE '!'", keywordPattern)
  143. }
  144. if token != "" {
  145. tokenPattern, err := sanitizeLikePattern(token)
  146. if err != nil {
  147. return nil, 0, err
  148. }
  149. baseQuery = baseQuery.Where(commonKeyCol+" LIKE ? ESCAPE '!'", tokenPattern)
  150. }
  151. // 先查匹配总数(用于分页,受 maxTokens 上限保护,避免全表 COUNT)
  152. err = baseQuery.Limit(maxTokens).Count(&total).Error
  153. if err != nil {
  154. common.SysError("failed to count search tokens: " + err.Error())
  155. return nil, 0, errors.New("搜索令牌失败")
  156. }
  157. // 再分页查数据
  158. err = baseQuery.Order("id desc").Offset(offset).Limit(limit).Find(&tokens).Error
  159. if err != nil {
  160. common.SysError("failed to search tokens: " + err.Error())
  161. return nil, 0, errors.New("搜索令牌失败")
  162. }
  163. return tokens, total, nil
  164. }
  165. func ValidateUserToken(key string) (token *Token, err error) {
  166. if key == "" {
  167. return nil, ErrTokenNotProvided
  168. }
  169. token, err = GetTokenByKey(key, false)
  170. if err == nil {
  171. if token.Status == common.TokenStatusExhausted ||
  172. token.Status == common.TokenStatusExpired ||
  173. token.Status != common.TokenStatusEnabled {
  174. return token, ErrTokenInvalid
  175. }
  176. if token.ExpiredTime != -1 && token.ExpiredTime < common.GetTimestamp() {
  177. if !common.RedisEnabled {
  178. token.Status = common.TokenStatusExpired
  179. err := token.SelectUpdate()
  180. if err != nil {
  181. common.SysLog("failed to update token status" + err.Error())
  182. }
  183. }
  184. return token, ErrTokenInvalid
  185. }
  186. if !token.UnlimitedQuota && token.RemainQuota <= 0 {
  187. if !common.RedisEnabled {
  188. token.Status = common.TokenStatusExhausted
  189. err := token.SelectUpdate()
  190. if err != nil {
  191. common.SysLog("failed to update token status" + err.Error())
  192. }
  193. }
  194. return token, ErrTokenInvalid
  195. }
  196. return token, nil
  197. }
  198. common.SysLog("ValidateUserToken: failed to get token: " + err.Error())
  199. if errors.Is(err, gorm.ErrRecordNotFound) {
  200. return nil, ErrTokenInvalid
  201. }
  202. return nil, fmt.Errorf("%w: %v", ErrDatabase, err)
  203. }
  204. func GetTokenByIds(id int, userId int) (*Token, error) {
  205. if id == 0 || userId == 0 {
  206. return nil, errors.New("id 或 userId 为空!")
  207. }
  208. token := Token{Id: id, UserId: userId}
  209. var err error = nil
  210. err = DB.First(&token, "id = ? and user_id = ?", id, userId).Error
  211. return &token, err
  212. }
  213. func GetTokenById(id int) (*Token, error) {
  214. if id == 0 {
  215. return nil, errors.New("id 为空!")
  216. }
  217. token := Token{Id: id}
  218. var err error = nil
  219. err = DB.First(&token, "id = ?", id).Error
  220. if shouldUpdateRedis(true, err) {
  221. gopool.Go(func() {
  222. if err := cacheSetToken(token); err != nil {
  223. common.SysLog("failed to update user status cache: " + err.Error())
  224. }
  225. })
  226. }
  227. return &token, err
  228. }
  229. func GetTokenByKey(key string, fromDB bool) (token *Token, err error) {
  230. defer func() {
  231. // Update Redis cache asynchronously on successful DB read
  232. if shouldUpdateRedis(fromDB, err) && token != nil {
  233. gopool.Go(func() {
  234. if err := cacheSetToken(*token); err != nil {
  235. common.SysLog("failed to update user status cache: " + err.Error())
  236. }
  237. })
  238. }
  239. }()
  240. if !fromDB && common.RedisEnabled {
  241. // Try Redis first
  242. token, err := cacheGetTokenByKey(key)
  243. if err == nil {
  244. return token, nil
  245. }
  246. // Don't return error - fall through to DB
  247. }
  248. fromDB = true
  249. err = DB.Where(commonKeyCol+" = ?", key).First(&token).Error
  250. return token, err
  251. }
  252. func (token *Token) Insert() error {
  253. var err error
  254. err = DB.Create(token).Error
  255. return err
  256. }
  257. // Update Make sure your token's fields is completed, because this will update non-zero values
  258. func (token *Token) Update() (err error) {
  259. defer func() {
  260. if shouldUpdateRedis(true, err) {
  261. gopool.Go(func() {
  262. err := cacheSetToken(*token)
  263. if err != nil {
  264. common.SysLog("failed to update token cache: " + err.Error())
  265. }
  266. })
  267. }
  268. }()
  269. err = DB.Model(token).Select("name", "status", "expired_time", "remain_quota", "unlimited_quota",
  270. "model_limits_enabled", "model_limits", "allow_ips", "group", "cross_group_retry").Updates(token).Error
  271. return err
  272. }
  273. func (token *Token) SelectUpdate() (err error) {
  274. defer func() {
  275. if shouldUpdateRedis(true, err) {
  276. gopool.Go(func() {
  277. err := cacheSetToken(*token)
  278. if err != nil {
  279. common.SysLog("failed to update token cache: " + err.Error())
  280. }
  281. })
  282. }
  283. }()
  284. // This can update zero values
  285. return DB.Model(token).Select("accessed_time", "status").Updates(token).Error
  286. }
  287. func (token *Token) Delete() (err error) {
  288. defer func() {
  289. if shouldUpdateRedis(true, err) {
  290. gopool.Go(func() {
  291. err := cacheDeleteToken(token.Key)
  292. if err != nil {
  293. common.SysLog("failed to delete token cache: " + err.Error())
  294. }
  295. })
  296. }
  297. }()
  298. err = DB.Delete(token).Error
  299. return err
  300. }
  301. func (token *Token) IsModelLimitsEnabled() bool {
  302. return token.ModelLimitsEnabled
  303. }
  304. func (token *Token) GetModelLimits() []string {
  305. if token.ModelLimits == "" {
  306. return []string{}
  307. }
  308. return strings.Split(token.ModelLimits, ",")
  309. }
  310. func (token *Token) GetModelLimitsMap() map[string]bool {
  311. limits := token.GetModelLimits()
  312. limitsMap := make(map[string]bool)
  313. for _, limit := range limits {
  314. limitsMap[limit] = true
  315. }
  316. return limitsMap
  317. }
  318. func DisableModelLimits(tokenId int) error {
  319. token, err := GetTokenById(tokenId)
  320. if err != nil {
  321. return err
  322. }
  323. token.ModelLimitsEnabled = false
  324. token.ModelLimits = ""
  325. return token.Update()
  326. }
  327. func DeleteTokenById(id int, userId int) (err error) {
  328. // Why we need userId here? In case user want to delete other's token.
  329. if id == 0 || userId == 0 {
  330. return errors.New("id 或 userId 为空!")
  331. }
  332. token := Token{Id: id, UserId: userId}
  333. err = DB.Where(token).First(&token).Error
  334. if err != nil {
  335. return err
  336. }
  337. return token.Delete()
  338. }
  339. func IncreaseTokenQuota(tokenId int, key string, quota int) (err error) {
  340. if quota < 0 {
  341. return errors.New("quota 不能为负数!")
  342. }
  343. if common.RedisEnabled {
  344. gopool.Go(func() {
  345. err := cacheIncrTokenQuota(key, int64(quota))
  346. if err != nil {
  347. common.SysLog("failed to increase token quota: " + err.Error())
  348. }
  349. })
  350. }
  351. if common.BatchUpdateEnabled {
  352. addNewRecord(BatchUpdateTypeTokenQuota, tokenId, quota)
  353. return nil
  354. }
  355. return increaseTokenQuota(tokenId, quota)
  356. }
  357. func increaseTokenQuota(id int, quota int) (err error) {
  358. err = DB.Model(&Token{}).Where("id = ?", id).Updates(
  359. map[string]interface{}{
  360. "remain_quota": gorm.Expr("remain_quota + ?", quota),
  361. "used_quota": gorm.Expr("used_quota - ?", quota),
  362. "accessed_time": common.GetTimestamp(),
  363. },
  364. ).Error
  365. return err
  366. }
  367. func DecreaseTokenQuota(id int, key string, quota int) (err error) {
  368. if quota < 0 {
  369. return errors.New("quota 不能为负数!")
  370. }
  371. if common.RedisEnabled {
  372. gopool.Go(func() {
  373. err := cacheDecrTokenQuota(key, int64(quota))
  374. if err != nil {
  375. common.SysLog("failed to decrease token quota: " + err.Error())
  376. }
  377. })
  378. }
  379. if common.BatchUpdateEnabled {
  380. addNewRecord(BatchUpdateTypeTokenQuota, id, -quota)
  381. return nil
  382. }
  383. return decreaseTokenQuota(id, quota)
  384. }
  385. func decreaseTokenQuota(id int, quota int) (err error) {
  386. err = DB.Model(&Token{}).Where("id = ?", id).Updates(
  387. map[string]interface{}{
  388. "remain_quota": gorm.Expr("remain_quota - ?", quota),
  389. "used_quota": gorm.Expr("used_quota + ?", quota),
  390. "accessed_time": common.GetTimestamp(),
  391. },
  392. ).Error
  393. return err
  394. }
  395. // CountUserTokens returns total number of tokens for the given user, used for pagination
  396. func CountUserTokens(userId int) (int64, error) {
  397. var total int64
  398. err := DB.Model(&Token{}).Where("user_id = ?", userId).Count(&total).Error
  399. return total, err
  400. }
  401. // BatchDeleteTokens 删除指定用户的一组令牌,返回成功删除数量
  402. func BatchDeleteTokens(ids []int, userId int) (int, error) {
  403. if len(ids) == 0 {
  404. return 0, errors.New("ids 不能为空!")
  405. }
  406. tx := DB.Begin()
  407. var tokens []Token
  408. if err := tx.Where("user_id = ? AND id IN (?)", userId, ids).Find(&tokens).Error; err != nil {
  409. tx.Rollback()
  410. return 0, err
  411. }
  412. if err := tx.Where("user_id = ? AND id IN (?)", userId, ids).Delete(&Token{}).Error; err != nil {
  413. tx.Rollback()
  414. return 0, err
  415. }
  416. if err := tx.Commit().Error; err != nil {
  417. return 0, err
  418. }
  419. if common.RedisEnabled {
  420. gopool.Go(func() {
  421. for _, t := range tokens {
  422. _ = cacheDeleteToken(t.Key)
  423. }
  424. })
  425. }
  426. return len(tokens), nil
  427. }
  428. func GetTokenKeysByIds(ids []int, userId int) ([]Token, error) {
  429. var tokens []Token
  430. err := DB.Select("id", commonKeyCol).
  431. Where("user_id = ? AND id IN (?)", userId, ids).
  432. Find(&tokens).Error
  433. return tokens, err
  434. }
  435. // InvalidateUserTokensCache 清理指定用户所有令牌在 Redis 中的缓存,
  436. // 配合 InvalidateUserCache 使用,可在用户被禁用/删除时立即阻断其令牌的请求。
  437. // 下一次请求将从数据库重新加载令牌及用户状态,从而立即识别出被禁用的用户。
  438. func InvalidateUserTokensCache(userId int) error {
  439. if !common.RedisEnabled {
  440. return nil
  441. }
  442. if userId <= 0 {
  443. return errors.New("userId 无效")
  444. }
  445. var tokens []Token
  446. if err := DB.Unscoped().
  447. Select("id", commonKeyCol).
  448. Where("user_id = ?", userId).
  449. Find(&tokens).Error; err != nil {
  450. return err
  451. }
  452. var firstErr error
  453. for _, t := range tokens {
  454. if t.Key == "" {
  455. continue
  456. }
  457. if err := cacheDeleteToken(t.Key); err != nil && firstErr == nil {
  458. firstErr = err
  459. }
  460. }
  461. return firstErr
  462. }