mirror of
https://github.com/danny-avila/LibreChat.git
synced 2025-09-21 21:50:49 +02:00

* 🔧 Overhauled caching feature:
- Refactored caching logic.
- Fixed redis prefix, namespace, tls, ttl, and cluster.
- Added REDIS_KEY_PREFIX_VAR
* # refactor: Rename redisCache to standardCache
* # Add Redis pinging mechanism to maintain connection.
* # docs: Add warning about Keyv Redis client prefix support
35 lines
1,020 B
JavaScript
35 lines
1,020 B
JavaScript
const rateLimit = require('express-rate-limit');
|
|
const { ViolationTypes } = require('librechat-data-provider');
|
|
const { removePorts } = require('~/server/utils');
|
|
const { limiterCache } = require('~/cache/cacheFactory');
|
|
const { logViolation } = require('~/cache');
|
|
|
|
const { LOGIN_WINDOW = 5, LOGIN_MAX = 7, LOGIN_VIOLATION_SCORE: score } = process.env;
|
|
const windowMs = LOGIN_WINDOW * 60 * 1000;
|
|
const max = LOGIN_MAX;
|
|
const windowInMinutes = windowMs / 60000;
|
|
const message = `Too many login attempts, please try again after ${windowInMinutes} minutes.`;
|
|
|
|
const handler = async (req, res) => {
|
|
const type = ViolationTypes.LOGINS;
|
|
const errorMessage = {
|
|
type,
|
|
max,
|
|
windowInMinutes,
|
|
};
|
|
|
|
await logViolation(req, res, type, errorMessage, score);
|
|
return res.status(429).json({ message });
|
|
};
|
|
|
|
const limiterOptions = {
|
|
windowMs,
|
|
max,
|
|
handler,
|
|
keyGenerator: removePorts,
|
|
store: limiterCache('login_limiter'),
|
|
};
|
|
|
|
const loginLimiter = rateLimit(limiterOptions);
|
|
|
|
module.exports = loginLimiter;
|