rate-limit.go 3.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113
  1. package middleware
  2. import (
  3. "context"
  4. "fmt"
  5. "github.com/gin-gonic/gin"
  6. "net/http"
  7. "one-api/common"
  8. "time"
  9. )
  10. var timeFormat = "2006-01-02T15:04:05.000Z"
  11. var inMemoryRateLimiter common.InMemoryRateLimiter
  12. var defNext = func(c *gin.Context) {
  13. c.Next()
  14. }
  15. func redisRateLimiter(c *gin.Context, maxRequestNum int, duration int64, mark string) {
  16. ctx := context.Background()
  17. rdb := common.RDB
  18. key := "rateLimit:" + mark + c.ClientIP()
  19. listLength, err := rdb.LLen(ctx, key).Result()
  20. if err != nil {
  21. fmt.Println(err.Error())
  22. c.Status(http.StatusInternalServerError)
  23. c.Abort()
  24. return
  25. }
  26. if listLength < int64(maxRequestNum) {
  27. rdb.LPush(ctx, key, time.Now().Format(timeFormat))
  28. rdb.Expire(ctx, key, common.RateLimitKeyExpirationDuration)
  29. } else {
  30. oldTimeStr, _ := rdb.LIndex(ctx, key, -1).Result()
  31. oldTime, err := time.Parse(timeFormat, oldTimeStr)
  32. if err != nil {
  33. fmt.Println(err)
  34. c.Status(http.StatusInternalServerError)
  35. c.Abort()
  36. return
  37. }
  38. nowTimeStr := time.Now().Format(timeFormat)
  39. nowTime, err := time.Parse(timeFormat, nowTimeStr)
  40. if err != nil {
  41. fmt.Println(err)
  42. c.Status(http.StatusInternalServerError)
  43. c.Abort()
  44. return
  45. }
  46. // time.Since will return negative number!
  47. // See: https://stackoverflow.com/questions/50970900/why-is-time-since-returning-negative-durations-on-windows
  48. if int64(nowTime.Sub(oldTime).Seconds()) < duration {
  49. rdb.Expire(ctx, key, common.RateLimitKeyExpirationDuration)
  50. c.Status(http.StatusTooManyRequests)
  51. c.Abort()
  52. return
  53. } else {
  54. rdb.LPush(ctx, key, time.Now().Format(timeFormat))
  55. rdb.LTrim(ctx, key, 0, int64(maxRequestNum-1))
  56. rdb.Expire(ctx, key, common.RateLimitKeyExpirationDuration)
  57. }
  58. }
  59. }
  60. func memoryRateLimiter(c *gin.Context, maxRequestNum int, duration int64, mark string) {
  61. key := mark + c.ClientIP()
  62. if !inMemoryRateLimiter.Request(key, maxRequestNum, duration) {
  63. c.Status(http.StatusTooManyRequests)
  64. c.Abort()
  65. return
  66. }
  67. }
  68. func rateLimitFactory(maxRequestNum int, duration int64, mark string) func(c *gin.Context) {
  69. if common.RedisEnabled {
  70. return func(c *gin.Context) {
  71. redisRateLimiter(c, maxRequestNum, duration, mark)
  72. }
  73. } else {
  74. // It's safe to call multi times.
  75. inMemoryRateLimiter.Init(common.RateLimitKeyExpirationDuration)
  76. return func(c *gin.Context) {
  77. memoryRateLimiter(c, maxRequestNum, duration, mark)
  78. }
  79. }
  80. }
  81. func GlobalWebRateLimit() func(c *gin.Context) {
  82. if common.GlobalWebRateLimitEnable {
  83. return rateLimitFactory(common.GlobalWebRateLimitNum, common.GlobalWebRateLimitDuration, "GW")
  84. }
  85. return defNext
  86. }
  87. func GlobalAPIRateLimit() func(c *gin.Context) {
  88. if common.GlobalApiRateLimitEnable {
  89. return rateLimitFactory(common.GlobalApiRateLimitNum, common.GlobalApiRateLimitDuration, "GA")
  90. }
  91. return defNext
  92. }
  93. func CriticalRateLimit() func(c *gin.Context) {
  94. return rateLimitFactory(common.CriticalRateLimitNum, common.CriticalRateLimitDuration, "CT")
  95. }
  96. func DownloadRateLimit() func(c *gin.Context) {
  97. return rateLimitFactory(common.DownloadRateLimitNum, common.DownloadRateLimitDuration, "DW")
  98. }
  99. func UploadRateLimit() func(c *gin.Context) {
  100. return rateLimitFactory(common.UploadRateLimitNum, common.UploadRateLimitDuration, "UP")
  101. }