Files
bakery-ia/gateway/app/routes/tenant.py

375 lines
20 KiB
Python
Raw Normal View History

2025-07-26 18:46:52 +02:00
# gateway/app/routes/tenant.py - COMPLETELY UPDATED
2025-07-17 19:46:41 +02:00
"""
2025-07-26 18:46:52 +02:00
Tenant routes for API Gateway - Handles all tenant-scoped endpoints
2025-07-17 19:46:41 +02:00
"""
2025-07-26 18:46:52 +02:00
from fastapi import APIRouter, Request, Response, HTTPException, Path
2025-07-17 19:46:41 +02:00
from fastapi.responses import JSONResponse
import httpx
import logging
2025-07-26 18:46:52 +02:00
from typing import Optional
2025-07-17 19:46:41 +02:00
from app.core.config import settings
logger = logging.getLogger(__name__)
router = APIRouter()
2025-07-26 18:46:52 +02:00
# ================================================================
# TENANT MANAGEMENT ENDPOINTS
# ================================================================
2025-07-20 23:15:57 +02:00
@router.post("/register")
2025-07-17 19:46:41 +02:00
async def create_tenant(request: Request):
"""Proxy tenant creation to tenant service"""
2025-07-26 18:46:52 +02:00
return await _proxy_to_tenant_service(request, "/api/v1/tenants/register")
2025-07-17 19:46:41 +02:00
2025-07-26 18:46:52 +02:00
@router.get("/{tenant_id}")
async def get_tenant(request: Request, tenant_id: str = Path(...)):
"""Get specific tenant details"""
return await _proxy_to_tenant_service(request, f"/api/v1/tenants/{tenant_id}")
@router.put("/{tenant_id}")
async def update_tenant(request: Request, tenant_id: str = Path(...)):
"""Update tenant details"""
return await _proxy_to_tenant_service(request, f"/api/v1/tenants/{tenant_id}")
@router.get("/{tenant_id}/members")
async def get_tenant_members(request: Request, tenant_id: str = Path(...)):
"""Get tenant members"""
return await _proxy_to_tenant_service(request, f"/api/v1/tenants/{tenant_id}/members")
2025-08-02 18:38:14 +02:00
@router.get("/user/{user_id}")
async def get_user_tenants(request: Request, user_id: str = Path(...)):
"""Get all tenant memberships for a user (admin only)"""
2025-09-12 19:31:24 +02:00
return await _proxy_to_tenant_service(request, f"/api/v1/tenants/users/{user_id}")
2025-08-02 18:38:14 +02:00
2025-08-15 22:40:19 +02:00
@router.get("/user/{user_id}/owned")
async def get_user_owned_tenants(request: Request, user_id: str = Path(...)):
"""Get all tenants owned by a user"""
return await _proxy_to_tenant_service(request, f"/api/v1/tenants/user/{user_id}/owned")
2025-08-03 14:42:33 +02:00
@router.delete("/user/{user_id}/memberships")
async def delete_user_tenants(request: Request, user_id: str = Path(...)):
"""Get all tenant memberships for a user (admin only)"""
return await _proxy_to_tenant_service(request, f"/api/v1/tenants/user/{user_id}/memberships")
2025-07-26 18:46:52 +02:00
# ================================================================
# TENANT-SCOPED DATA SERVICE ENDPOINTS
# ================================================================
2025-07-26 21:10:54 +02:00
@router.api_route("/{tenant_id}/sales{path:path}", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
async def proxy_all_tenant_sales_alternative(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy all tenant sales requests - handles both base and sub-paths"""
base_path = f"/api/v1/tenants/{tenant_id}/sales"
# If path is empty or just "/", use base path
if not path or path == "/" or path == "":
target_path = base_path
else:
# Ensure path starts with "/"
if not path.startswith("/"):
path = "/" + path
target_path = base_path + path
2025-08-12 18:17:30 +02:00
return await _proxy_to_sales_service(request, target_path)
2025-07-26 18:46:52 +02:00
@router.api_route("/{tenant_id}/weather/{path:path}", methods=["GET", "POST", "OPTIONS"])
async def proxy_tenant_weather(request: Request, tenant_id: str = Path(...), path: str = ""):
2025-08-12 18:17:30 +02:00
"""Proxy tenant weather requests to external service"""
2025-07-26 18:46:52 +02:00
target_path = f"/api/v1/tenants/{tenant_id}/weather/{path}".rstrip("/")
2025-08-12 18:17:30 +02:00
return await _proxy_to_external_service(request, target_path)
2025-07-26 18:46:52 +02:00
2025-07-27 22:58:18 +02:00
@router.api_route("/{tenant_id}/traffic/{path:path}", methods=["GET", "POST", "OPTIONS"])
async def proxy_tenant_traffic(request: Request, tenant_id: str = Path(...), path: str = ""):
2025-08-12 18:17:30 +02:00
"""Proxy tenant traffic requests to external service"""
2025-07-27 22:58:18 +02:00
target_path = f"/api/v1/tenants/{tenant_id}/traffic/{path}".rstrip("/")
2025-08-12 18:17:30 +02:00
return await _proxy_to_external_service(request, target_path)
2025-07-27 22:58:18 +02:00
2025-07-26 18:46:52 +02:00
@router.api_route("/{tenant_id}/analytics/{path:path}", methods=["GET", "POST", "OPTIONS"])
async def proxy_tenant_analytics(request: Request, tenant_id: str = Path(...), path: str = ""):
2025-08-12 18:17:30 +02:00
"""Proxy tenant analytics requests to sales service"""
2025-07-26 18:46:52 +02:00
target_path = f"/api/v1/tenants/{tenant_id}/analytics/{path}".rstrip("/")
2025-08-12 18:17:30 +02:00
return await _proxy_to_sales_service(request, target_path)
2025-07-26 18:46:52 +02:00
@router.api_route("/{tenant_id}/onboarding/{path:path}", methods=["GET", "POST", "OPTIONS"])
async def proxy_tenant_analytics(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy tenant analytics requests to sales service"""
target_path = f"/api/v1/tenants/{tenant_id}/onboarding/{path}".rstrip("/")
return await _proxy_to_sales_service(request, target_path)
2025-07-26 18:46:52 +02:00
# ================================================================
# TENANT-SCOPED TRAINING SERVICE ENDPOINTS
# ================================================================
@router.api_route("/{tenant_id}/training/{path:path}", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
async def proxy_tenant_training(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy tenant training requests to training service"""
target_path = f"/api/v1/tenants/{tenant_id}/training/{path}".rstrip("/")
return await _proxy_to_training_service(request, target_path, tenant_id=tenant_id)
2025-07-26 18:46:52 +02:00
@router.api_route("/{tenant_id}/models/{path:path}", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
async def proxy_tenant_models(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy tenant model requests to training service"""
target_path = f"/api/v1/tenants/{tenant_id}/models/{path}".rstrip("/")
return await _proxy_to_training_service(request, target_path, tenant_id=tenant_id)
2025-07-26 18:46:52 +02:00
# ================================================================
# TENANT-SCOPED FORECASTING SERVICE ENDPOINTS
# ================================================================
@router.api_route("/{tenant_id}/forecasts/{path:path}", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
async def proxy_tenant_forecasts(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy tenant forecast requests to forecasting service"""
target_path = f"/api/v1/tenants/{tenant_id}/forecasts/{path}".rstrip("/")
2025-08-15 23:11:53 +02:00
return await _proxy_to_forecasting_service(request, target_path, tenant_id=tenant_id)
2025-07-26 18:46:52 +02:00
@router.api_route("/{tenant_id}/predictions/{path:path}", methods=["GET", "POST", "OPTIONS"])
async def proxy_tenant_predictions(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy tenant prediction requests to forecasting service"""
target_path = f"/api/v1/tenants/{tenant_id}/predictions/{path}".rstrip("/")
return await _proxy_to_forecasting_service(request, target_path)
# ================================================================
# TENANT-SCOPED NOTIFICATION SERVICE ENDPOINTS
# ================================================================
@router.api_route("/{tenant_id}/notifications/{path:path}", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
async def proxy_tenant_notifications(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy tenant notification requests to notification service"""
target_path = f"/api/v1/tenants/{tenant_id}/notifications/{path}".rstrip("/")
return await _proxy_to_notification_service(request, target_path)
2025-07-20 23:43:42 +02:00
2025-08-14 13:26:59 +02:00
# ================================================================
# TENANT-SCOPED INVENTORY SERVICE ENDPOINTS
# ================================================================
@router.api_route("/{tenant_id}/alerts{path:path}", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
async def proxy_tenant_alerts(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy tenant alerts requests to inventory service"""
target_path = f"/api/v1/tenants/{tenant_id}/alerts{path}".rstrip("/")
return await _proxy_to_inventory_service(request, target_path, tenant_id=tenant_id)
2025-08-14 13:26:59 +02:00
@router.api_route("/{tenant_id}/inventory/{path:path}", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
async def proxy_tenant_inventory(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy tenant inventory requests to inventory service"""
# The inventory service expects /api/v1/tenants/{tenant_id}/inventory/{path}
# Keep the full path structure for inventory service
target_path = f"/api/v1/tenants/{tenant_id}/inventory/{path}".rstrip("/")
2025-08-15 23:11:53 +02:00
return await _proxy_to_inventory_service(request, target_path, tenant_id=tenant_id)
2025-08-14 13:26:59 +02:00
2025-09-15 15:31:27 +02:00
# Specific route for ingredients without additional path
@router.api_route("/{tenant_id}/ingredients", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
async def proxy_tenant_ingredients_base(request: Request, tenant_id: str = Path(...)):
"""Proxy tenant ingredient requests to inventory service (base path)"""
target_path = f"/api/v1/tenants/{tenant_id}/ingredients"
return await _proxy_to_inventory_service(request, target_path, tenant_id=tenant_id)
2025-09-09 21:39:12 +02:00
@router.api_route("/{tenant_id}/ingredients/{path:path}", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
2025-09-15 15:31:27 +02:00
async def proxy_tenant_ingredients_with_path(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy tenant ingredient requests to inventory service (with additional path)"""
2025-08-14 13:26:59 +02:00
# The inventory service ingredient endpoints are now tenant-scoped: /api/v1/tenants/{tenant_id}/ingredients/{path}
# Keep the full tenant path structure
2025-09-09 21:39:12 +02:00
target_path = f"/api/v1/tenants/{tenant_id}/ingredients/{path}".rstrip("/")
return await _proxy_to_inventory_service(request, target_path, tenant_id=tenant_id)
@router.api_route("/{tenant_id}/stock/{path:path}", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
async def proxy_tenant_stock(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy tenant stock requests to inventory service"""
# The inventory service stock endpoints are now tenant-scoped: /api/v1/tenants/{tenant_id}/stock/{path}
target_path = f"/api/v1/tenants/{tenant_id}/stock/{path}".rstrip("/")
2025-08-15 23:11:53 +02:00
return await _proxy_to_inventory_service(request, target_path, tenant_id=tenant_id)
2025-08-14 13:26:59 +02:00
2025-09-09 22:27:52 +02:00
@router.api_route("/{tenant_id}/dashboard/{path:path}", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
async def proxy_tenant_dashboard(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy tenant dashboard requests to inventory service"""
# The inventory service dashboard endpoints are tenant-scoped: /api/v1/tenants/{tenant_id}/dashboard/{path}
target_path = f"/api/v1/tenants/{tenant_id}/dashboard/{path}".rstrip("/")
return await _proxy_to_inventory_service(request, target_path, tenant_id=tenant_id)
2025-08-23 16:30:45 +02:00
# ================================================================
# TENANT-SCOPED PRODUCTION SERVICE ENDPOINTS
# ================================================================
@router.api_route("/{tenant_id}/production/{path:path}", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
async def proxy_tenant_production(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy tenant production requests to production service"""
target_path = f"/api/v1/tenants/{tenant_id}/production/{path}".rstrip("/")
return await _proxy_to_production_service(request, target_path, tenant_id=tenant_id)
# ================================================================
# TENANT-SCOPED ORDERS SERVICE ENDPOINTS
# ================================================================
@router.api_route("/{tenant_id}/orders/{path:path}", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
async def proxy_tenant_orders(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy tenant orders requests to orders service"""
target_path = f"/api/v1/tenants/{tenant_id}/orders/{path}".rstrip("/")
return await _proxy_to_orders_service(request, target_path, tenant_id=tenant_id)
@router.api_route("/{tenant_id}/customers/{path:path}", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
async def proxy_tenant_customers(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy tenant customers requests to orders service"""
target_path = f"/api/v1/tenants/{tenant_id}/customers/{path}".rstrip("/")
return await _proxy_to_orders_service(request, target_path, tenant_id=tenant_id)
@router.api_route("/{tenant_id}/procurement/{path:path}", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
async def proxy_tenant_procurement(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy tenant procurement requests to orders service"""
target_path = f"/api/v1/tenants/{tenant_id}/procurement/{path}".rstrip("/")
return await _proxy_to_orders_service(request, target_path, tenant_id=tenant_id)
# ================================================================
# TENANT-SCOPED SUPPLIER SERVICE ENDPOINTS
# ================================================================
@router.api_route("/{tenant_id}/suppliers/{path:path}", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
@router.api_route("/{tenant_id}/suppliers", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
async def proxy_tenant_suppliers(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy tenant supplier requests to suppliers service"""
if path:
target_path = f"/api/v1/tenants/{tenant_id}/suppliers/{path}".rstrip("/")
else:
target_path = f"/api/v1/tenants/{tenant_id}/suppliers"
return await _proxy_to_suppliers_service(request, target_path, tenant_id=tenant_id)
@router.api_route("/{tenant_id}/purchase-orders{path:path}", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
async def proxy_tenant_purchase_orders(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy tenant purchase order requests to suppliers service"""
target_path = f"/api/v1/tenants/{tenant_id}/purchase-orders{path}".rstrip("/")
return await _proxy_to_suppliers_service(request, target_path, tenant_id=tenant_id)
@router.api_route("/{tenant_id}/deliveries{path:path}", methods=["GET", "POST", "PUT", "DELETE", "OPTIONS"])
async def proxy_tenant_deliveries(request: Request, tenant_id: str = Path(...), path: str = ""):
"""Proxy tenant delivery requests to suppliers service"""
target_path = f"/api/v1/tenants/{tenant_id}/deliveries{path}".rstrip("/")
return await _proxy_to_suppliers_service(request, target_path, tenant_id=tenant_id)
2025-07-26 18:46:52 +02:00
# ================================================================
# PROXY HELPER FUNCTIONS
# ================================================================
async def _proxy_to_tenant_service(request: Request, target_path: str):
"""Proxy request to tenant service"""
return await _proxy_request(request, target_path, settings.TENANT_SERVICE_URL)
2025-08-12 18:17:30 +02:00
async def _proxy_to_sales_service(request: Request, target_path: str):
"""Proxy request to sales service"""
return await _proxy_request(request, target_path, settings.SALES_SERVICE_URL)
async def _proxy_to_external_service(request: Request, target_path: str):
"""Proxy request to external service"""
return await _proxy_request(request, target_path, settings.EXTERNAL_SERVICE_URL)
2025-07-26 18:46:52 +02:00
async def _proxy_to_training_service(request: Request, target_path: str, tenant_id: str = None):
2025-07-26 18:46:52 +02:00
"""Proxy request to training service"""
return await _proxy_request(request, target_path, settings.TRAINING_SERVICE_URL, tenant_id=tenant_id)
2025-07-26 18:46:52 +02:00
2025-08-15 23:11:53 +02:00
async def _proxy_to_forecasting_service(request: Request, target_path: str, tenant_id: str = None):
2025-07-26 18:46:52 +02:00
"""Proxy request to forecasting service"""
2025-08-15 23:11:53 +02:00
return await _proxy_request(request, target_path, settings.FORECASTING_SERVICE_URL, tenant_id=tenant_id)
2025-07-26 18:46:52 +02:00
async def _proxy_to_notification_service(request: Request, target_path: str):
"""Proxy request to notification service"""
return await _proxy_request(request, target_path, settings.NOTIFICATION_SERVICE_URL)
2025-08-15 23:11:53 +02:00
async def _proxy_to_inventory_service(request: Request, target_path: str, tenant_id: str = None):
2025-08-14 13:26:59 +02:00
"""Proxy request to inventory service"""
2025-08-15 23:11:53 +02:00
return await _proxy_request(request, target_path, settings.INVENTORY_SERVICE_URL, tenant_id=tenant_id)
2025-08-14 13:26:59 +02:00
2025-08-23 16:30:45 +02:00
async def _proxy_to_production_service(request: Request, target_path: str, tenant_id: str = None):
"""Proxy request to production service"""
return await _proxy_request(request, target_path, settings.PRODUCTION_SERVICE_URL, tenant_id=tenant_id)
async def _proxy_to_orders_service(request: Request, target_path: str, tenant_id: str = None):
"""Proxy request to orders service"""
return await _proxy_request(request, target_path, settings.ORDERS_SERVICE_URL, tenant_id=tenant_id)
async def _proxy_to_suppliers_service(request: Request, target_path: str, tenant_id: str = None):
"""Proxy request to suppliers service"""
return await _proxy_request(request, target_path, settings.SUPPLIERS_SERVICE_URL, tenant_id=tenant_id)
2025-08-15 23:11:53 +02:00
async def _proxy_request(request: Request, target_path: str, service_url: str, tenant_id: str = None):
2025-07-26 18:46:52 +02:00
"""Generic proxy function with enhanced error handling"""
# Handle OPTIONS requests directly for CORS
if request.method == "OPTIONS":
return Response(
status_code=200,
headers={
"Access-Control-Allow-Origin": settings.CORS_ORIGINS_LIST,
"Access-Control-Allow-Methods": "GET, POST, PUT, DELETE, OPTIONS",
"Access-Control-Allow-Headers": "Content-Type, Authorization, X-Tenant-ID",
"Access-Control-Allow-Credentials": "true",
"Access-Control-Max-Age": "86400"
}
)
2025-07-20 23:43:42 +02:00
try:
2025-07-26 18:46:52 +02:00
url = f"{service_url}{target_path}"
2025-07-20 23:43:42 +02:00
2025-07-26 18:46:52 +02:00
# Forward headers and add user/tenant context
2025-07-20 23:43:42 +02:00
headers = dict(request.headers)
headers.pop("host", None)
2025-08-15 23:11:53 +02:00
# Add tenant ID header if provided
if tenant_id:
headers["X-Tenant-ID"] = tenant_id
# Add user context headers if available
if hasattr(request.state, 'user') and request.state.user:
user = request.state.user
headers["x-user-id"] = str(user.get('user_id', ''))
headers["x-user-email"] = str(user.get('email', ''))
headers["x-user-role"] = str(user.get('role', 'user'))
headers["x-user-full-name"] = str(user.get('full_name', ''))
headers["x-tenant-id"] = tenant_id or str(user.get('tenant_id', ''))
# Debug logging
logger.info(f"Forwarding request to {url} with user context: user_id={user.get('user_id')}, email={user.get('email')}, tenant_id={tenant_id}")
else:
# Debug logging when no user context available
logger.warning(f"No user context available when forwarding request to {url}. request.state.user: {getattr(request.state, 'user', 'NOT_SET')}")
2025-07-20 23:43:42 +02:00
# Get request body if present
body = None
2025-07-26 18:46:52 +02:00
if request.method in ["POST", "PUT", "PATCH"]:
2025-07-20 23:43:42 +02:00
body = await request.body()
2025-07-26 18:46:52 +02:00
# Add query parameters
params = dict(request.query_params)
2025-07-29 12:45:39 +02:00
timeout_config = httpx.Timeout(
connect=30.0, # Connection timeout
read=600.0, # Read timeout: 10 minutes (was 30s)
write=30.0, # Write timeout
pool=30.0 # Pool timeout
)
async with httpx.AsyncClient(timeout=timeout_config) as client:
2025-07-20 23:43:42 +02:00
response = await client.request(
2025-07-26 18:46:52 +02:00
method=request.method,
2025-07-20 23:43:42 +02:00
url=url,
headers=headers,
content=body,
2025-07-26 18:46:52 +02:00
params=params
2025-07-17 19:46:41 +02:00
)
2025-07-26 18:46:52 +02:00
# Handle different response types
if response.headers.get("content-type", "").startswith("application/json"):
try:
content = response.json()
except:
content = {"message": "Invalid JSON response from service"}
else:
content = response.text
2025-07-17 19:46:41 +02:00
return JSONResponse(
status_code=response.status_code,
2025-07-26 18:46:52 +02:00
content=content
2025-07-17 19:46:41 +02:00
)
2025-07-26 18:46:52 +02:00
except Exception as e:
logger.error(f"Unexpected error proxying to {service_url}{target_path}: {e}")
raise HTTPException(
status_code=500,
detail="Internal gateway error"
2025-07-17 19:46:41 +02:00
)