growi-to-slack.ts 12 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344
  1. import { type BlockKitRequest, REQUEST_TIMEOUT_FOR_PTOG } from '@growi/slack';
  2. import { verifyGrowiToSlackRequest } from '@growi/slack/dist/middlewares';
  3. import { getConnectionStatuses, getConnectionStatus } from '@growi/slack/dist/utils/check-communicable';
  4. import { generateWebClient } from '@growi/slack/dist/utils/webclient-factory';
  5. import { ErrorCode, WebAPICallResult } from '@slack/web-api';
  6. import {
  7. Controller, Get, Post, Inject, Req, Res, UseBefore, PathParams, Put, QueryParams,
  8. } from '@tsed/common';
  9. import axios from 'axios';
  10. import { addHours } from 'date-fns/addHours';
  11. import createError from 'http-errors';
  12. import { GrowiReq } from '~/interfaces/growi-to-slack/growi-req';
  13. import { WebclientRes, AddWebclientResponseToRes } from '~/middlewares/growi-to-slack/add-webclient-response-to-res';
  14. import { InstallationRepository } from '~/repositories/installation';
  15. import { OrderRepository } from '~/repositories/order';
  16. import { RelationRepository } from '~/repositories/relation';
  17. import { InstallerService } from '~/services/InstallerService';
  18. import { ActionsBlockPayloadDelegator } from '~/services/growi-uri-injector/ActionsBlockPayloadDelegator';
  19. import { SectionBlockPayloadDelegator } from '~/services/growi-uri-injector/SectionBlockPayloadDelegator';
  20. import { ViewInteractionPayloadDelegator } from '~/services/growi-uri-injector/ViewInteractionPayloadDelegator';
  21. import loggerFactory from '~/utils/logger';
  22. const logger = loggerFactory('slackbot-proxy:controllers:growi-to-slack');
  23. export type RespondReqFromGrowi = Req & BlockKitRequest & {
  24. // appended by GROWI
  25. headers:{ 'x-growi-app-site-url'?: string },
  26. // will be extracted from header
  27. appSiteUrl: string,
  28. }
  29. @Controller('/g2s')
  30. export class GrowiToSlackCtrl {
  31. @Inject()
  32. installerService: InstallerService;
  33. @Inject()
  34. installationRepository: InstallationRepository;
  35. @Inject()
  36. relationRepository: RelationRepository;
  37. @Inject()
  38. orderRepository: OrderRepository;
  39. @Inject()
  40. viewInteractionPayloadDelegator: ViewInteractionPayloadDelegator;
  41. @Inject()
  42. actionsBlockPayloadDelegator: ActionsBlockPayloadDelegator;
  43. @Inject()
  44. sectionBlockPayloadDelegator: SectionBlockPayloadDelegator;
  45. async urlVerificationRequestToGrowi(growiUrl:string, tokenPtoG:string):Promise<void> {
  46. const url = new URL('/_api/v3/slack-integration/proxied/verify', growiUrl);
  47. await axios.post(url.toString(), {
  48. type: 'url_verification',
  49. challenge: 'this_is_my_challenge_token',
  50. },
  51. {
  52. headers: {
  53. 'x-growi-ptog-tokens': tokenPtoG,
  54. },
  55. timeout: REQUEST_TIMEOUT_FOR_PTOG,
  56. });
  57. }
  58. @Get('/connection-status')
  59. @UseBefore(verifyGrowiToSlackRequest)
  60. async getConnectionStatuses(@Req() req: GrowiReq, @Res() res: Res): Promise<void|string|Res|WebAPICallResult> {
  61. // asserted (tokenGtoPs.length > 0) by verifyGrowiToSlackRequest
  62. const { tokenGtoPs } = req;
  63. // retrieve Relation with Installation
  64. const relations = await this.relationRepository.createQueryBuilder('relation')
  65. .where('relation.tokenGtoP IN (:...tokens)', { tokens: tokenGtoPs })
  66. .leftJoinAndSelect('relation.installation', 'installation')
  67. .getMany();
  68. logger.debug(`${relations.length} relations found`, relations);
  69. // key: tokenGtoP, value: botToken
  70. const botTokenResolverMapping: {[tokenGtoP:string]:string} = {};
  71. relations.forEach((relation) => {
  72. const botToken = relation.installation?.data?.bot?.token;
  73. if (botToken != null) {
  74. botTokenResolverMapping[relation.tokenGtoP] = botToken;
  75. }
  76. });
  77. const connectionStatuses = await getConnectionStatuses(Object.keys(botTokenResolverMapping), (tokenGtoP:string) => botTokenResolverMapping[tokenGtoP]);
  78. return res.send({ connectionStatuses });
  79. }
  80. @Put('/supported-commands')
  81. @UseBefore(verifyGrowiToSlackRequest)
  82. async putSupportedCommands(@Req() req: GrowiReq, @Res() res: Res): Promise<void|string|Res|WebAPICallResult> {
  83. // asserted (tokenGtoPs.length > 0) by verifyGrowiToSlackRequest
  84. const { tokenGtoPs } = req;
  85. const { permissionsForBroadcastUseCommands, permissionsForSingleUseCommands } = req.body;
  86. if (tokenGtoPs.length !== 1) {
  87. throw createError(400, 'installation is invalid');
  88. }
  89. const tokenGtoP = tokenGtoPs[0];
  90. const relation = await this.relationRepository.update(
  91. { tokenGtoP }, { permissionsForBroadcastUseCommands, permissionsForSingleUseCommands },
  92. );
  93. return res.send({ relation });
  94. }
  95. @Post('/relation-test')
  96. @UseBefore(verifyGrowiToSlackRequest)
  97. async postRelation(@Req() req: GrowiReq, @Res() res: Res): Promise<void|string|Res|WebAPICallResult> {
  98. const { tokenGtoPs } = req;
  99. if (tokenGtoPs.length !== 1) {
  100. throw createError(400, 'installation is invalid');
  101. }
  102. const tokenGtoP = tokenGtoPs[0];
  103. // retrieve relation with Installation
  104. const relation = await this.relationRepository.createQueryBuilder('relation')
  105. .where('tokenGtoP = :token', { token: tokenGtoP })
  106. .leftJoinAndSelect('relation.installation', 'installation')
  107. .getOne();
  108. // Returns the result of the test if it already exists
  109. if (relation != null) {
  110. logger.debug('relation found', relation);
  111. const token = relation.installation.data.bot?.token;
  112. if (token == null) {
  113. throw createError(400, 'installation is invalid');
  114. }
  115. try {
  116. await this.urlVerificationRequestToGrowi(relation.growiUri, relation.tokenPtoG);
  117. }
  118. catch (err) {
  119. logger.error(err);
  120. throw createError(400, `failed to request to GROWI. err: ${err.message}`);
  121. }
  122. const status = await getConnectionStatus(token);
  123. if (status.error != null) {
  124. throw createError(400, `failed to get connection. err: ${status.error}`);
  125. }
  126. return res.send({ relation, slackBotToken: token });
  127. }
  128. // retrieve latest Order with Installation
  129. const order = await this.orderRepository.createQueryBuilder('order')
  130. .orderBy('order.createdAt', 'DESC')
  131. .where('tokenGtoP = :token', { token: tokenGtoP })
  132. .leftJoinAndSelect('order.installation', 'installation')
  133. .getOne();
  134. if (order == null || order.isExpired()) {
  135. throw createError(400, 'order has expired or does not exist.');
  136. }
  137. // Access the GROWI URL saved in the Order record and check if the GtoP token is valid.
  138. try {
  139. await this.urlVerificationRequestToGrowi(order.growiUrl, order.tokenPtoG);
  140. }
  141. catch (err) {
  142. logger.error(err);
  143. throw createError(400, `failed to request to GROWI. err: ${err.message}`);
  144. }
  145. logger.debug('order found', order);
  146. const token = order.installation.data.bot?.token;
  147. if (token == null) {
  148. throw createError(400, 'installation is invalid');
  149. }
  150. const status = await getConnectionStatus(token);
  151. if (status.error != null) {
  152. throw createError(400, `failed to get connection. err: ${status.error}`);
  153. }
  154. logger.debug('relation test is success', order);
  155. // temporary cache for 48 hours
  156. const expiredAtCommands = addHours(new Date(), 48);
  157. const response = await this.relationRepository.createQueryBuilder('relation')
  158. .insert()
  159. .values({
  160. installation: order.installation,
  161. tokenGtoP: order.tokenGtoP,
  162. tokenPtoG: order.tokenPtoG,
  163. growiUri: order.growiUrl,
  164. permissionsForBroadcastUseCommands: req.body.permissionsForBroadcastUseCommands,
  165. permissionsForSingleUseCommands: req.body.permissionsForSingleUseCommands,
  166. expiredAtCommands,
  167. })
  168. // https://github.com/typeorm/typeorm/issues/1090#issuecomment-634391487
  169. .orUpdate({
  170. conflict_target: ['installation', 'growiUri'],
  171. overwrite: ['tokenGtoP', 'tokenPtoG', 'permissionsForBroadcastUseCommands', 'permissionsForSingleUseCommands'],
  172. })
  173. .execute();
  174. const generatedRelation = await this.relationRepository.findOne({ id: response.identifiers[0].id });
  175. return res.send({ relation: generatedRelation, slackBotToken: token });
  176. }
  177. injectGrowiUri(req: BlockKitRequest, growiUri: string): void {
  178. if (req.body.view == null && req.body.blocks == null) {
  179. return;
  180. }
  181. if (req.body.view != null) {
  182. const parsedElement = JSON.parse(req.body.view);
  183. // delegate to ViewInteractionPayloadDelegator
  184. if (this.viewInteractionPayloadDelegator.shouldHandleToInject(parsedElement)) {
  185. this.viewInteractionPayloadDelegator.inject(parsedElement, growiUri);
  186. req.body.view = JSON.stringify(parsedElement);
  187. }
  188. }
  189. else if (req.body.blocks != null) {
  190. const parsedElement = (typeof req.body.blocks === 'string') ? JSON.parse(req.body.blocks) : req.body.blocks;
  191. // delegate to ActionsBlockPayloadDelegator
  192. if (this.actionsBlockPayloadDelegator.shouldHandleToInject(parsedElement)) {
  193. this.actionsBlockPayloadDelegator.inject(parsedElement, growiUri);
  194. req.body.blocks = JSON.stringify(parsedElement);
  195. }
  196. // delegate to SectionBlockPayloadDelegator
  197. if (this.sectionBlockPayloadDelegator.shouldHandleToInject(parsedElement)) {
  198. this.sectionBlockPayloadDelegator.inject(parsedElement, growiUri);
  199. req.body.blocks = JSON.stringify(parsedElement);
  200. }
  201. }
  202. }
  203. @Post('/respond')
  204. async respondUsingResponseUrl(
  205. @QueryParams('response_url') responseUrl: string, @Req() req: RespondReqFromGrowi, @Res() res: WebclientRes,
  206. ): Promise<WebclientRes> {
  207. // get growi url from header
  208. const growiUri = req.headers['x-growi-app-site-url'];
  209. if (growiUri == null) {
  210. logger.error('Request to this endpoint requires the x-growi-app-site-url header.');
  211. return res.status(400).send('Failed to respond.');
  212. }
  213. try {
  214. this.injectGrowiUri(req, growiUri);
  215. }
  216. catch (err) {
  217. logger.error('Error occurred while injecting GROWI uri:\n', err);
  218. return res.status(400).send('Failed to respond.');
  219. }
  220. try {
  221. await axios.post(responseUrl, req.body);
  222. }
  223. catch (err) {
  224. logger.error('Error occurred while request via axios:', err);
  225. return res.status(502).send(err.message);
  226. }
  227. return res.send();
  228. }
  229. @Post('/:method')
  230. @UseBefore(AddWebclientResponseToRes, verifyGrowiToSlackRequest)
  231. async callSlackApi(
  232. @PathParams('method') method: string, @Req() req: GrowiReq, @Res() res: WebclientRes,
  233. ): Promise<WebclientRes> {
  234. const { tokenGtoPs } = req;
  235. logger.debug('Slack API called: ', { method });
  236. if (tokenGtoPs.length !== 1) {
  237. return res.simulateWebAPIPlatformError('tokenGtoPs is invalid', 'invalid_tokenGtoP');
  238. }
  239. const tokenGtoP = tokenGtoPs[0];
  240. // retrieve relation with Installation
  241. const relation = await this.relationRepository.createQueryBuilder('relation')
  242. .where('tokenGtoP = :token', { token: tokenGtoP })
  243. .leftJoinAndSelect('relation.installation', 'installation')
  244. .getOne();
  245. if (relation == null) {
  246. return res.simulateWebAPIPlatformError('relation is invalid', 'invalid_relation');
  247. }
  248. const token = relation.installation.data.bot?.token;
  249. if (token == null) {
  250. return res.simulateWebAPIPlatformError('installation is invalid', 'invalid_installation');
  251. }
  252. // generate WebClient with no retry because GROWI main side will do
  253. const client = generateWebClient(token, {
  254. retryConfig: { retries: 0 },
  255. });
  256. try {
  257. this.injectGrowiUri(req, relation.growiUri);
  258. const opt = req.body;
  259. opt.headers = req.headers;
  260. logger.debug({ method, opt });
  261. // !! DO NOT REMOVE `await ` or it does not enter catch block even when axios error occured !! -- 2021.08.22 Yuki Takei
  262. const result = await client.apiCall(method, opt);
  263. return res.send(result);
  264. }
  265. catch (err) {
  266. logger.error(err);
  267. if (err.code === ErrorCode.PlatformError) {
  268. return res.simulateWebAPIPlatformError(err.message, err.data.error);
  269. }
  270. return res.simulateWebAPIRequestError(err.message, err.response?.status);
  271. }
  272. }
  273. }