micro_srv.go 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431
  1. package micro_srv
  2. import (
  3. "context"
  4. "dashoo.cn/opms_libary/dynamic"
  5. "dashoo.cn/opms_libary/multipart"
  6. "encoding/json"
  7. "errors"
  8. "github.com/gogf/gf/util/gconv"
  9. "io/ioutil"
  10. "net"
  11. "os"
  12. "path"
  13. "strconv"
  14. "strings"
  15. "time"
  16. "dashoo.cn/common_definition/comm_def"
  17. "dashoo.cn/opms_libary/gtoken"
  18. "dashoo.cn/opms_libary/myerrors"
  19. "dashoo.cn/opms_libary/request"
  20. "github.com/gogf/gf/encoding/gbase64"
  21. "github.com/gogf/gf/encoding/gjson"
  22. "github.com/gogf/gf/errors/gerror"
  23. "github.com/gogf/gf/frame/g"
  24. "github.com/gogf/gf/net/ghttp"
  25. "github.com/gogf/gf/text/gstr"
  26. "github.com/rcrowley/go-metrics"
  27. consulclient "github.com/rpcxio/rpcx-consul/client"
  28. "github.com/rpcxio/rpcx-consul/serverplugin"
  29. "github.com/smallnest/rpcx/client"
  30. "github.com/smallnest/rpcx/protocol"
  31. "github.com/smallnest/rpcx/server"
  32. "github.com/smallnest/rpcx/share"
  33. )
  34. // InitMicroSrvClient 获取微服务客户端,arg为可选参数,若有必须是两个,分别是:reg string, serverAddr string
  35. func InitMicroSrvClient(serviceName, key string, args ...string) (c client.XClient) {
  36. reg := g.Config().GetString("service_registry.registry")
  37. etcdAddr := g.Config().GetString("service_registry.server-addr")
  38. if len(args) == 2 {
  39. reg = args[0]
  40. etcdAddr = args[1]
  41. }
  42. config := g.Config().GetString(key)
  43. arr := strings.Split(config, ",")
  44. srvName := arr[0]
  45. if len(arr) == 2 { // 点对点 直连
  46. d, _ := client.NewPeer2PeerDiscovery("tcp@"+arr[1], "")
  47. c = client.NewXClient(serviceName, client.Failtry, client.RandomSelect, d, client.DefaultOption)
  48. return c
  49. } else {
  50. if reg == "consul" { // 服务发现使用consul
  51. //d, _ := etcd_client.NewEtcdV3Discovery(srvName, serviceName, []string{etcdAddr}, nil)
  52. d, _ := consulclient.NewConsulDiscovery(srvName, serviceName, []string{etcdAddr}, nil)
  53. //d, _ := client.NewConsulDiscovery(srvName, serviceName, []string{etcdAddr}, nil)
  54. c = client.NewXClient(serviceName, client.Failover, client.RoundRobin, d, client.DefaultOption)
  55. return c
  56. }
  57. }
  58. return nil
  59. }
  60. func CreateAndInitService(basePath string) *server.Server {
  61. srvAddr := g.Config().GetString("setting.bind-addr")
  62. fileAddr := g.Config().GetString("setting.bind-mutipart-addr")
  63. etcdAddr := g.Config().GetString("service_registry.server-addr")
  64. s := server.NewServer()
  65. advertiseAddr := srvAddr
  66. if g.Config().GetBool("setting.need-advertise-addr") {
  67. advertiseAddr = g.Config().GetString("setting.advertise-addr")
  68. }
  69. g.Log().Infof("服务启动, basePath: %v, MicorSrv: %v", basePath, srvAddr)
  70. reg := g.Config().GetString("service_registry.registry")
  71. //if reg == "etcd" {
  72. // addEtcdRegistryPlugin(s, basePath, advertiseAddr, etcdAddr)
  73. //}
  74. if reg == "consul" {
  75. addConsulRegistryPlugin(s, basePath, advertiseAddr, etcdAddr)
  76. }
  77. if fileAddr != "" {
  78. p := server.NewStreamService(fileAddr, streamHandler, nil, 1000)
  79. s.EnableStreamService(share.StreamServiceName, p)
  80. }
  81. return s
  82. }
  83. func addConsulRegistryPlugin(s *server.Server, basePath, srvAddr, consulAddr string) {
  84. r := &serverplugin.ConsulRegisterPlugin{
  85. ServiceAddress: "tcp@" + srvAddr,
  86. ConsulServers: []string{consulAddr},
  87. BasePath: basePath,
  88. Metrics: metrics.NewRegistry(),
  89. UpdateInterval: time.Minute,
  90. }
  91. err := r.Start()
  92. if err != nil {
  93. g.Log().Fatal(err)
  94. }
  95. g.Log().Infof("注册到Consul: %v, basePath: %v, MicorSrv: %v", consulAddr, basePath, srvAddr)
  96. s.Plugins.Add(r)
  97. }
  98. func streamHandler(conn net.Conn, args *share.StreamServiceArgs) {
  99. defer conn.Close()
  100. ctx := context.Background()
  101. ctx = context.WithValue(ctx, share.ReqMetaDataKey, args.Meta)
  102. token, err := GetToken(ctx)
  103. if err != nil {
  104. result, _ := handError(err)
  105. conn.Write(result)
  106. return
  107. }
  108. resp := validToken(ctx, token)
  109. if resp.Code != 0 {
  110. result, _ := handError(myerrors.AuthError())
  111. conn.Write(result)
  112. return
  113. }
  114. args.Meta["userInfo"] = resp.DataString()
  115. ctx = context.WithValue(ctx, share.ReqMetaDataKey, args.Meta)
  116. var form = new(multipart.Form)
  117. for key, value := range args.Meta {
  118. form.Value[key][0] = value
  119. }
  120. fileNum := gconv.Int(args.Meta["fileNum"])
  121. if fileNum > 0 {
  122. for {
  123. // 读取文件名长度
  124. buf := make([]byte, 3)
  125. conn.Read(buf)
  126. length, _ := strconv.Atoi(strings.TrimSpace(string(buf)))
  127. // 读取文件名
  128. fileHeader := make([]byte, length)
  129. _, err = conn.Read(fileHeader)
  130. headers := strings.Split(string(fileHeader), " ")
  131. paramName := headers[0]
  132. fileName := headers[1]
  133. fileSize := headers[2]
  134. //获取文件后缀
  135. suffix := path.Ext(fileName)
  136. tmpFile, err := ioutil.TempFile(os.TempDir(), "multipart-*"+suffix)
  137. if err != nil {
  138. g.Log().Error(err)
  139. return
  140. }
  141. defer os.Remove(tmpFile.Name())
  142. size, _ := strconv.Atoi(fileSize)
  143. buf = make([]byte, size)
  144. conn.Read(buf)
  145. tmpFile.Write(buf)
  146. form.File[paramName][0] = &multipart.FileHeader{FileName: fileName, FileSize: int64(size), File: tmpFile}
  147. // 判断是否结束
  148. isEnd := make([]byte, 1)
  149. _, err = conn.Read(isEnd)
  150. if err != nil || isEnd[0] == '1' {
  151. continue
  152. }
  153. if isEnd[0] == '2' {
  154. break
  155. }
  156. }
  157. }
  158. result := make([]byte, 0)
  159. className, _ := args.Meta["reqService"]
  160. methodName, _ := args.Meta["reqMethod"]
  161. message := new(dynamic.Message)
  162. message.ClassName = className
  163. message.MethodName = methodName
  164. message.Metadata = args.Meta
  165. message.Payload = form
  166. rsp, err := dynamic.Invoker.HandleInvoker(ctx, message)
  167. if err != nil {
  168. resp := make(map[string]interface{})
  169. resp["code"] = 500
  170. resp["data"] = err.Error()
  171. result, _ = json.Marshal(resp)
  172. } else {
  173. result, _ = json.Marshal(rsp.Payload)
  174. }
  175. conn.Write(result)
  176. conn.Close()
  177. }
  178. func getTenant(msg *protocol.Message) string {
  179. var tenant string
  180. if msg.Metadata != nil {
  181. tenant = msg.Metadata["tenant"]
  182. }
  183. return tenant
  184. }
  185. // HandleAuth 处理Auth认证
  186. func HandleAuth(ctx context.Context, req *protocol.Message, token string, authExcludePaths []string) error {
  187. reqPath := "/" + req.ServicePath + "/" + req.ServiceMethod
  188. tenant := getTenant(req)
  189. g.Log().Info("Received " + reqPath + " request @ " + tenant)
  190. if authPath(reqPath, authExcludePaths) {
  191. req.Metadata["authExclude"] = "false"
  192. var rsp gtoken.Resp
  193. notAuthSrv := ctx.Value("NotAuthSrv")
  194. if notAuthSrv != nil && notAuthSrv.(bool) {
  195. rsp = gtoken.GFToken.ValidToken(token)
  196. } else {
  197. ctx = context.WithValue(ctx, share.ReqMetaDataKey, map[string]string{"tenant": tenant})
  198. rsp = validToken(ctx, token)
  199. }
  200. if rsp.Code != 0 && rsp.Code != 200 {
  201. return myerrors.AuthError()
  202. }
  203. if req.Metadata != nil {
  204. req.Metadata["userInfo"] = rsp.DataString()
  205. }
  206. return nil
  207. }
  208. return nil
  209. }
  210. // 判断路径是否需要进行认证拦截
  211. // return true 需要认证
  212. func authPath(urlPath string, authExcludePaths []string) bool {
  213. // 去除后斜杠
  214. if strings.HasSuffix(urlPath, "/") {
  215. urlPath = gstr.SubStr(urlPath, 0, len(urlPath)-1)
  216. }
  217. // 排除路径处理,到这里nextFlag为true
  218. for _, excludePath := range authExcludePaths {
  219. tmpPath := excludePath
  220. // 前缀匹配
  221. if strings.HasSuffix(tmpPath, "/*") {
  222. tmpPath = gstr.SubStr(tmpPath, 0, len(tmpPath)-2)
  223. if gstr.HasPrefix(urlPath, tmpPath) {
  224. // 前缀匹配不拦截
  225. return false
  226. }
  227. } else {
  228. // 全路径匹配
  229. if strings.HasSuffix(tmpPath, "/") {
  230. tmpPath = gstr.SubStr(tmpPath, 0, len(tmpPath)-1)
  231. }
  232. if urlPath == tmpPath {
  233. // 全路径匹配不拦截
  234. return false
  235. }
  236. }
  237. }
  238. return true
  239. }
  240. // 验证token
  241. func validToken(ctx context.Context, token string) gtoken.Resp {
  242. grsp := gtoken.Resp{}
  243. if token == "" {
  244. grsp.Code = 401
  245. grsp.Msg = "valid token empty"
  246. return grsp
  247. }
  248. authService := InitMicroSrvClient("Auth", "micro_srv.auth")
  249. defer authService.Close()
  250. rsp := &comm_def.CommonMsg{}
  251. err := authService.Call(ctx, "ValidToken", token, rsp)
  252. if err != nil {
  253. g.Log().Error(err)
  254. grsp.Code = 401
  255. return grsp
  256. }
  257. grsp.Code = int(rsp.Code)
  258. grsp.Msg = rsp.Msg
  259. grsp.Data = rsp.Data
  260. return grsp
  261. }
  262. // IsAuthExclude 是否进行auth验证
  263. func IsAuthExclude(ctx context.Context) bool {
  264. reqMeta := ctx.Value(share.ReqMetaDataKey).(map[string]string)
  265. flag, ok := reqMeta["authExclude"]
  266. if !ok || flag == "true" {
  267. return true
  268. }
  269. return false
  270. }
  271. // GetUserInfo 从context中获取UserInfo
  272. func GetUserInfo(ctx context.Context) (request.UserInfo, error) {
  273. reqMeta := ctx.Value(share.ReqMetaDataKey).(map[string]string)
  274. userStr, ok := reqMeta["userInfo"]
  275. if !ok {
  276. return request.UserInfo{}, errors.New("用户信息获取失败,请重新登录。")
  277. }
  278. userInfo, err := getUserInfoDataString(userStr)
  279. if err != nil {
  280. return request.UserInfo{}, errors.New("用户信息解码失败。")
  281. }
  282. return userInfo, nil
  283. }
  284. // GetTenant 从context中获取租户码
  285. func GetTenant(ctx context.Context) (string, error) {
  286. reqMeta := ctx.Value(share.ReqMetaDataKey).(map[string]string)
  287. tenant, ok := reqMeta["tenant"]
  288. if !ok {
  289. return "", errors.New("不存在租户码")
  290. }
  291. return tenant, nil
  292. }
  293. // GetReqMethod 从context中获取请求方式
  294. func GetReqMethod(ctx context.Context) (string, error) {
  295. reqMeta := ctx.Value(share.ReqMetaDataKey).(map[string]string)
  296. reqMethod, ok := reqMeta["reqMethod"]
  297. if !ok {
  298. return "", errors.New("获取请求方式异常")
  299. }
  300. return reqMethod, nil
  301. }
  302. // GetToken 从context中获取Token
  303. func GetToken(ctx context.Context) (string, error) {
  304. reqMeta := ctx.Value(share.ReqMetaDataKey).(map[string]string)
  305. token, ok := reqMeta["__AUTH"]
  306. if !ok {
  307. return "", errors.New("token获取失败")
  308. }
  309. return token, nil
  310. }
  311. // GetBrowserInfo 从context中获取ClientIP和UserAgent
  312. func GetBrowserInfo(ctx context.Context) (clientIP string, userAgent string, err error) {
  313. reqMeta := ctx.Value(share.ReqMetaDataKey).(map[string]string)
  314. clientIP, ok := reqMeta["clientIP"]
  315. if !ok {
  316. return "", "", errors.New("BrowserInfo获取失败")
  317. }
  318. userAgent, ok = reqMeta["userAgent"]
  319. if !ok {
  320. return "", "", errors.New("BrowserInfo获取失败")
  321. }
  322. userAgent, err = gbase64.DecodeToString(userAgent)
  323. return
  324. }
  325. // getUserInfoDataString 从userInfo字符串转换成对象
  326. func getUserInfoDataString(userInfoString string) (request.UserInfo, error) {
  327. var userInfo request.UserInfo
  328. //uuid := ""
  329. if j, err := gjson.DecodeToJson([]byte(userInfoString)); err != nil {
  330. g.Log().Error(err)
  331. return userInfo, err
  332. } else {
  333. j.SetViolenceCheck(true)
  334. err = j.GetStruct("data", &userInfo)
  335. if err != nil {
  336. g.Log().Error(err)
  337. return userInfo, err
  338. }
  339. }
  340. return userInfo, nil
  341. }
  342. // SetTenant 设置租户码(传统WebAPI调用使用)
  343. func SetTenant(tenant string) context.Context {
  344. metadata := map[string]string{"tenant": tenant}
  345. return context.WithValue(context.Background(), share.ReqMetaDataKey, metadata)
  346. }
  347. // SetTenantAndAuth 设置租户码和认证信息(传统WebAPI调用使用)
  348. func SetTenantAndAuth(r *ghttp.Request, client client.XClient) context.Context {
  349. // 处理Auth
  350. token := getRequestToken(r)
  351. if token != "" {
  352. client.Auth(token)
  353. }
  354. // 处理租户码
  355. tenant := request.GetTenant(r)
  356. metadata := map[string]string{"tenant": tenant}
  357. return context.WithValue(context.Background(), share.ReqMetaDataKey, metadata)
  358. }
  359. // 解析token,若无,返回空
  360. func getRequestToken(r *ghttp.Request) string {
  361. authHeader := r.Header.Get("Authorization")
  362. if authHeader != "" {
  363. parts := strings.SplitN(authHeader, " ", 2)
  364. if !(len(parts) == 2 && parts[0] == "Bearer") {
  365. return ""
  366. } else if parts[1] == "" {
  367. return ""
  368. }
  369. return parts[1]
  370. }
  371. return ""
  372. }
  373. func handError(err error) ([]byte, error) {
  374. resp := make(map[string]interface{})
  375. resp["code"] = gerror.Code(err).Code()
  376. resp["data"] = gerror.Code(err).Message()
  377. return json.Marshal(resp)
  378. }