2016-12-29 00:49:51 +02:00
|
|
|
import * as Limiter from 'ratelimiter';
|
2021-08-19 15:55:45 +03:00
|
|
|
import { redisClient } from '../../db/redis';
|
|
|
|
import { IEndpoint } from './endpoints';
|
2021-11-11 19:02:25 +02:00
|
|
|
import * as Acct from 'misskey-js/built/acct';
|
2021-08-19 15:55:45 +03:00
|
|
|
import { User } from '@/models/entities/user';
|
|
|
|
import Logger from '@/services/logger';
|
2016-12-29 00:49:51 +02:00
|
|
|
|
2019-02-03 09:45:13 +02:00
|
|
|
const logger = new Logger('limiter');
|
2017-01-23 11:25:52 +02:00
|
|
|
|
2021-03-24 04:05:37 +02:00
|
|
|
export default (endpoint: IEndpoint, user: User) => new Promise<void>((ok, reject) => {
|
2019-04-12 19:43:22 +03:00
|
|
|
const limitation = endpoint.meta.limit!;
|
2017-03-01 15:33:43 +02:00
|
|
|
|
2021-11-12 03:52:10 +02:00
|
|
|
const key = Object.prototype.hasOwnProperty.call(limitation, 'key')
|
2017-03-01 15:33:43 +02:00
|
|
|
? limitation.key
|
2016-12-29 00:49:51 +02:00
|
|
|
: endpoint.name;
|
|
|
|
|
2017-03-01 15:33:43 +02:00
|
|
|
const hasShortTermLimit =
|
2021-11-12 03:52:10 +02:00
|
|
|
Object.prototype.hasOwnProperty.call(limitation, 'minInterval');
|
2016-12-29 00:49:51 +02:00
|
|
|
|
2017-03-01 15:33:43 +02:00
|
|
|
const hasLongTermLimit =
|
2021-11-12 03:52:10 +02:00
|
|
|
Object.prototype.hasOwnProperty.call(limitation, 'duration') &&
|
|
|
|
Object.prototype.hasOwnProperty.call(limitation, 'max');
|
2016-12-29 00:49:51 +02:00
|
|
|
|
2017-03-01 15:33:43 +02:00
|
|
|
if (hasShortTermLimit) {
|
2016-12-29 00:49:51 +02:00
|
|
|
min();
|
2017-03-01 15:33:43 +02:00
|
|
|
} else if (hasLongTermLimit) {
|
2016-12-29 00:49:51 +02:00
|
|
|
max();
|
|
|
|
} else {
|
|
|
|
ok();
|
|
|
|
}
|
|
|
|
|
|
|
|
// Short-term limit
|
2017-01-23 11:25:52 +02:00
|
|
|
function min() {
|
2016-12-29 00:49:51 +02:00
|
|
|
const minIntervalLimiter = new Limiter({
|
2019-04-07 15:50:36 +03:00
|
|
|
id: `${user.id}:${key}:min`,
|
2017-03-01 15:33:43 +02:00
|
|
|
duration: limitation.minInterval,
|
2016-12-29 00:49:51 +02:00
|
|
|
max: 1,
|
2021-12-09 16:58:30 +02:00
|
|
|
db: redisClient,
|
2016-12-29 00:49:51 +02:00
|
|
|
});
|
|
|
|
|
2017-01-23 11:25:52 +02:00
|
|
|
minIntervalLimiter.get((err, info) => {
|
|
|
|
if (err) {
|
|
|
|
return reject('ERR');
|
|
|
|
}
|
|
|
|
|
2021-11-11 19:02:25 +02:00
|
|
|
logger.debug(`@${Acct.toString(user)} ${endpoint.name} min remaining: ${info.remaining}`);
|
2017-01-23 11:25:52 +02:00
|
|
|
|
|
|
|
if (info.remaining === 0) {
|
2016-12-29 00:49:51 +02:00
|
|
|
reject('BRIEF_REQUEST_INTERVAL');
|
|
|
|
} else {
|
2017-03-01 15:33:43 +02:00
|
|
|
if (hasLongTermLimit) {
|
2016-12-29 00:49:51 +02:00
|
|
|
max();
|
|
|
|
} else {
|
|
|
|
ok();
|
|
|
|
}
|
|
|
|
}
|
|
|
|
});
|
|
|
|
}
|
|
|
|
|
|
|
|
// Long term limit
|
2017-01-23 11:25:52 +02:00
|
|
|
function max() {
|
2016-12-29 00:49:51 +02:00
|
|
|
const limiter = new Limiter({
|
2019-04-07 15:50:36 +03:00
|
|
|
id: `${user.id}:${key}`,
|
2017-03-01 15:33:43 +02:00
|
|
|
duration: limitation.duration,
|
|
|
|
max: limitation.max,
|
2021-12-09 16:58:30 +02:00
|
|
|
db: redisClient,
|
2016-12-29 00:49:51 +02:00
|
|
|
});
|
|
|
|
|
2017-01-23 11:25:52 +02:00
|
|
|
limiter.get((err, info) => {
|
|
|
|
if (err) {
|
|
|
|
return reject('ERR');
|
|
|
|
}
|
|
|
|
|
2021-11-11 19:02:25 +02:00
|
|
|
logger.debug(`@${Acct.toString(user)} ${endpoint.name} max remaining: ${info.remaining}`);
|
2017-01-23 11:25:52 +02:00
|
|
|
|
|
|
|
if (info.remaining === 0) {
|
2016-12-29 00:49:51 +02:00
|
|
|
reject('RATE_LIMIT_EXCEEDED');
|
|
|
|
} else {
|
|
|
|
ok();
|
|
|
|
}
|
|
|
|
});
|
|
|
|
}
|
|
|
|
});
|