* feat: add the ui for configuring the third-party standard OAuth2.0/OIDC. - update SystemSetting.js - add setup ui - add configuration * feat: add the ui for "allow the OAuth 2.0 to login" - update SystemSetting.js * feat: add OAuth 2.0 web ui and its process functions - update common.js - update AuthLogin.js - update config.js * fix: missing "Userinfo" endpoint configuration entry, used by OAuth clients to request user information from the IdP. - update config.js - update SystemSetting.js * feat: updated the icons for Lark and OIDC to match the style of the icons for WeChat, EMail, GitHub. - update lark.svg - new oidc.svg * refactor: Changing OAuth 2.0 to OIDC * feat: add OIDC login method * feat: Add support for OIDC login to the backend * fix: Change the AppId and AppSecret on the Web UI to the standard usage: ClientId, ClientSecret. * feat: Support quick configuration of OIDC through Well-Known Discovery Endpoint * feat: Standardize terminology, add well-known configuration - Change the AppId and AppSecret on the Server End to the standard usage: ClientId, ClientSecret. - add Well-Known configuration to store in database, no actual use in server end but store and display in web ui only
122 lines
5.4 KiB
Go
122 lines
5.4 KiB
Go
package router
|
|
|
|
import (
|
|
"github.com/songquanpeng/one-api/controller"
|
|
"github.com/songquanpeng/one-api/controller/auth"
|
|
"github.com/songquanpeng/one-api/middleware"
|
|
|
|
"github.com/gin-contrib/gzip"
|
|
"github.com/gin-gonic/gin"
|
|
)
|
|
|
|
func SetApiRouter(router *gin.Engine) {
|
|
apiRouter := router.Group("/api")
|
|
apiRouter.Use(gzip.Gzip(gzip.DefaultCompression))
|
|
apiRouter.Use(middleware.GlobalAPIRateLimit())
|
|
{
|
|
apiRouter.GET("/status", controller.GetStatus)
|
|
apiRouter.GET("/models", middleware.UserAuth(), controller.DashboardListModels)
|
|
apiRouter.GET("/notice", controller.GetNotice)
|
|
apiRouter.GET("/about", controller.GetAbout)
|
|
apiRouter.GET("/home_page_content", controller.GetHomePageContent)
|
|
apiRouter.GET("/verification", middleware.CriticalRateLimit(), middleware.TurnstileCheck(), controller.SendEmailVerification)
|
|
apiRouter.GET("/reset_password", middleware.CriticalRateLimit(), middleware.TurnstileCheck(), controller.SendPasswordResetEmail)
|
|
apiRouter.POST("/user/reset", middleware.CriticalRateLimit(), controller.ResetPassword)
|
|
apiRouter.GET("/oauth/github", middleware.CriticalRateLimit(), auth.GitHubOAuth)
|
|
apiRouter.GET("/oauth/oidc", middleware.CriticalRateLimit(), auth.OidcAuth)
|
|
apiRouter.GET("/oauth/lark", middleware.CriticalRateLimit(), auth.LarkOAuth)
|
|
apiRouter.GET("/oauth/state", middleware.CriticalRateLimit(), auth.GenerateOAuthCode)
|
|
apiRouter.GET("/oauth/wechat", middleware.CriticalRateLimit(), auth.WeChatAuth)
|
|
apiRouter.GET("/oauth/wechat/bind", middleware.CriticalRateLimit(), middleware.UserAuth(), auth.WeChatBind)
|
|
apiRouter.GET("/oauth/email/bind", middleware.CriticalRateLimit(), middleware.UserAuth(), controller.EmailBind)
|
|
apiRouter.POST("/topup", middleware.AdminAuth(), controller.AdminTopUp)
|
|
|
|
userRoute := apiRouter.Group("/user")
|
|
{
|
|
userRoute.POST("/register", middleware.CriticalRateLimit(), middleware.TurnstileCheck(), controller.Register)
|
|
userRoute.POST("/login", middleware.CriticalRateLimit(), controller.Login)
|
|
userRoute.GET("/logout", controller.Logout)
|
|
|
|
selfRoute := userRoute.Group("/")
|
|
selfRoute.Use(middleware.UserAuth())
|
|
{
|
|
selfRoute.GET("/dashboard", controller.GetUserDashboard)
|
|
selfRoute.GET("/self", controller.GetSelf)
|
|
selfRoute.PUT("/self", controller.UpdateSelf)
|
|
selfRoute.DELETE("/self", controller.DeleteSelf)
|
|
selfRoute.GET("/token", controller.GenerateAccessToken)
|
|
selfRoute.GET("/aff", controller.GetAffCode)
|
|
selfRoute.POST("/topup", controller.TopUp)
|
|
selfRoute.GET("/available_models", controller.GetUserAvailableModels)
|
|
}
|
|
|
|
adminRoute := userRoute.Group("/")
|
|
adminRoute.Use(middleware.AdminAuth())
|
|
{
|
|
adminRoute.GET("/", controller.GetAllUsers)
|
|
adminRoute.GET("/search", controller.SearchUsers)
|
|
adminRoute.GET("/:id", controller.GetUser)
|
|
adminRoute.POST("/", controller.CreateUser)
|
|
adminRoute.POST("/manage", controller.ManageUser)
|
|
adminRoute.PUT("/", controller.UpdateUser)
|
|
adminRoute.DELETE("/:id", controller.DeleteUser)
|
|
}
|
|
}
|
|
optionRoute := apiRouter.Group("/option")
|
|
optionRoute.Use(middleware.RootAuth())
|
|
{
|
|
optionRoute.GET("/", controller.GetOptions)
|
|
optionRoute.PUT("/", controller.UpdateOption)
|
|
}
|
|
channelRoute := apiRouter.Group("/channel")
|
|
channelRoute.Use(middleware.AdminAuth())
|
|
{
|
|
channelRoute.GET("/", controller.GetAllChannels)
|
|
channelRoute.GET("/search", controller.SearchChannels)
|
|
channelRoute.GET("/models", controller.ListAllModels)
|
|
channelRoute.GET("/:id", controller.GetChannel)
|
|
channelRoute.GET("/test", controller.TestChannels)
|
|
channelRoute.GET("/test/:id", controller.TestChannel)
|
|
channelRoute.GET("/update_balance", controller.UpdateAllChannelsBalance)
|
|
channelRoute.GET("/update_balance/:id", controller.UpdateChannelBalance)
|
|
channelRoute.POST("/", controller.AddChannel)
|
|
channelRoute.PUT("/", controller.UpdateChannel)
|
|
channelRoute.DELETE("/disabled", controller.DeleteDisabledChannel)
|
|
channelRoute.DELETE("/:id", controller.DeleteChannel)
|
|
}
|
|
tokenRoute := apiRouter.Group("/token")
|
|
tokenRoute.Use(middleware.UserAuth())
|
|
{
|
|
tokenRoute.GET("/", controller.GetAllTokens)
|
|
tokenRoute.GET("/search", controller.SearchTokens)
|
|
tokenRoute.GET("/:id", controller.GetToken)
|
|
tokenRoute.POST("/", controller.AddToken)
|
|
tokenRoute.PUT("/", controller.UpdateToken)
|
|
tokenRoute.DELETE("/:id", controller.DeleteToken)
|
|
}
|
|
redemptionRoute := apiRouter.Group("/redemption")
|
|
redemptionRoute.Use(middleware.AdminAuth())
|
|
{
|
|
redemptionRoute.GET("/", controller.GetAllRedemptions)
|
|
redemptionRoute.GET("/search", controller.SearchRedemptions)
|
|
redemptionRoute.GET("/:id", controller.GetRedemption)
|
|
redemptionRoute.POST("/", controller.AddRedemption)
|
|
redemptionRoute.PUT("/", controller.UpdateRedemption)
|
|
redemptionRoute.DELETE("/:id", controller.DeleteRedemption)
|
|
}
|
|
logRoute := apiRouter.Group("/log")
|
|
logRoute.GET("/", middleware.AdminAuth(), controller.GetAllLogs)
|
|
logRoute.DELETE("/", middleware.AdminAuth(), controller.DeleteHistoryLogs)
|
|
logRoute.GET("/stat", middleware.AdminAuth(), controller.GetLogsStat)
|
|
logRoute.GET("/self/stat", middleware.UserAuth(), controller.GetLogsSelfStat)
|
|
logRoute.GET("/search", middleware.AdminAuth(), controller.SearchAllLogs)
|
|
logRoute.GET("/self", middleware.UserAuth(), controller.GetUserLogs)
|
|
logRoute.GET("/self/search", middleware.UserAuth(), controller.SearchUserLogs)
|
|
groupRoute := apiRouter.Group("/group")
|
|
groupRoute.Use(middleware.AdminAuth())
|
|
{
|
|
groupRoute.GET("/", controller.GetGroups)
|
|
}
|
|
}
|
|
}
|