main.py 3.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133
  1. import logging
  2. import uuid
  3. from logging.handlers import RotatingFileHandler
  4. from fastapi import FastAPI, Request, Response, status
  5. from typing import Optional, Set
  6. # 导入FastAPI及相关模块
  7. import os
  8. import uvicorn
  9. from fastapi.staticfiles import StaticFiles
  10. from agent.cdss.capbility import CDSSCapability
  11. from router.knowledge_dify import dify_kb_router
  12. from router.knowledge_saas import saas_kb_router
  13. from router.text_search import text_search_router
  14. from router.graph_router import graph_router
  15. from router.knowledge_nodes_api import knowledge_nodes_api_router
  16. # 配置日志
  17. logging.basicConfig(
  18. level=logging.ERROR,
  19. format='%(asctime)s - %(name)s - %(levelname)s - %(message)s',
  20. handlers=[
  21. logging.StreamHandler(),
  22. RotatingFileHandler('app.log', maxBytes=10485760, backupCount=5, encoding='utf-8')
  23. ]
  24. )
  25. logger = logging.getLogger(__name__)
  26. logger.propagate = True
  27. # 创建FastAPI应用
  28. app = FastAPI(title="知识图谱")
  29. app.include_router(dify_kb_router)
  30. app.include_router(saas_kb_router)
  31. app.include_router(text_search_router)
  32. app.include_router(graph_router)
  33. app.include_router(knowledge_nodes_api_router)
  34. # 挂载静态文件目录,将/books路径映射到本地books文件夹
  35. app.mount("/books", StaticFiles(directory="books"), name="books")
  36. # 需要拦截的 URL 列表(支持通配符)
  37. INTERCEPT_URLS = {
  38. "/v1/knowledge/*"
  39. }
  40. # 白名单 URL(不需要拦截的路径)
  41. WHITE_LIST = {
  42. "/api/public",
  43. "/admin/login"
  44. }
  45. async def verify_token(authorization: str) -> Optional[dict]:
  46. """
  47. 验证 token 有效性
  48. 返回:验证成功返回用户信息字典,失败返回 None
  49. """
  50. if not authorization.startswith("Bearer "):
  51. return None
  52. token = authorization[7:]
  53. # 这里添加实际的 token 验证逻辑
  54. # 示例:简单验证 token 是否等于 secret-token
  55. if token == "secret-token":
  56. return {"id": 1, "username": "admin", "role": "admin"}
  57. return None
  58. def should_intercept(path: str) -> bool:
  59. """
  60. 判断是否需要拦截当前路径
  61. """
  62. if path in WHITE_LIST:
  63. return False
  64. for pattern in INTERCEPT_URLS:
  65. # 处理通配符匹配
  66. if pattern.endswith("/*"):
  67. if path.startswith(pattern[:-1]):
  68. return True
  69. # 精确匹配
  70. elif path == pattern:
  71. return True
  72. return False
  73. @app.middleware("http")
  74. async def interceptor_middleware(request: Request, call_next):
  75. path = request.url.path
  76. if not should_intercept(path):
  77. return await call_next(request)
  78. # 权限校验
  79. auth_header = request.headers.get("Authorization")
  80. if not auth_header:
  81. return Response(
  82. content="Missing Authorization header",
  83. status_code=status.HTTP_401_UNAUTHORIZED
  84. )
  85. user_info = await verify_token(auth_header)
  86. if not user_info:
  87. return Response(
  88. content="Invalid token",
  89. status_code=status.HTTP_401_UNAUTHORIZED
  90. )
  91. # 初始化操作:将用户信息添加到请求状态中
  92. request.state.user = user_info
  93. # 添加请求上下文(示例)
  94. request.state.context = {
  95. "request_id": request.headers.get("request-id", str(uuid.uuid4())),
  96. "client_ip": request.client.host
  97. }
  98. # 继续处理请求
  99. response = await call_next(request)
  100. # 可以在返回前添加统一响应处理(如添加头信息)
  101. response.headers["request-id"]=request.state.context["request_id"]
  102. return response
  103. #capability = CDSSCapability()
  104. if __name__ == "__main__":
  105. logger.info('Starting uvicorn server...2222')
  106. #uvicorn main:app --host 0.0.0.0 --port 8000 --reload
  107. uvicorn.run("main:app", host="0.0.0.0", port=8001, reload=False)