运行两个舱
复制品 1 - > 2. 此服务不会运行@ scheduled work 并绑定任何独有的 NATS 耐用, 所以 a 第二舱没有重复 —— 这是无国籍的请求服务, 唯一保持它保持 一个复制品是,没有任何东西能增加这个数字。 在一次复制中,Surge隐藏了清洁部署时的暴露,没有其他地点:OOM杀死,a 失败的活性探测...
API- key 表面用于客户 PBX 的实时呼叫事件
与 Voip Recording Upload 控制器同步, 并刻意分开 VOIP CALL EVENTS 范围:在事实发生后上传一段录音并制作 现在有人的电话铃声 不同的能力,一个管理员 为一方发放钥匙不应默默地给予另一方。 这个案例取自X-Phone-Server-Id头条,从未取自尸体 -- API 密钥可以证...
转发/api/电子邮件/oaut/召回电子邮件服务
Google的OAuth重定向目标. 与电子邮件的形状相同并会见提供者 它旁边的呼唤: 公共和无会话, 因为弹出 降落在这个上面 网关的源头没有租户会话,Org在州里旅行。 准确的路径比图案特异性上的 /api/email/**通配符要高,所以 自动调取的调取器向前跑 而不是普通的调取器.
将跟踪信标转发到 Media Service
克隆前行PublicWebinar 而不是一般前行(:该方法) 打印每个 URI 、 头图和身体长度到没有关卡的 stdout,以及 a 访客信标携带IP和裁判. 这里的API密钥是限速和滥用控制,而不是租界. 一个 营销舱为每个www.*主机提供一台公用钥匙,所以钥匙的Org是 总是平台 org —— 追踪代码自己...
点到 YugabyteDB 并使用 PostgreSQLdialect
CockroachDB被尤加比特DB所取代. 连接字符串从 蟑螂db-公用:26257到yb-tserver-service:5433,并使用希伯来语方言 从QQ到PostgreSQLDialect.
强制租户进入网关的规则
此过滤器自被写入以来一直是惰性. 解析 OrgId 读取 org: 域: “ host” 从雷迪斯,从来没有写过钥匙, 无效的返回掉下来允许; 地理分支是一个空的如果块, 并有一个评论延后到安全服务, 也没有执行。 每一个请求都通过。 它现在读了判决 安全服务缓存 并要求服务 一个错,所以 政策生活在一个地方,而不是...
路由会议提供者 OAuth 回调
缩放和微软在 Org 授权后将浏览器重定向到此网关 卡莫的应用. 跳水者在这里降落,没有租户会议。 状态——所以回调需要无会话, 认证字符串通过 电子邮件提供者已使用回调, 而非普通的 / api/ meet/ ** 转发 .
代理公共 AI - > 人类交接路线
添加 POST 键 代理媒体服务 和它创立的支持会议兄弟。 没有这个, 交接功能在到达时就死了: MediaService的终点 硬要求X-内奥特,X-公-查特-奥尔格-伊德和X-公-查特-克-哈什, 只有这个网关注射, 所以部件的POST 404'在这里,从来没有 到达它。 配备与创建后卫会议相同的有条件 ***...
路线 / api/ 电子邮件 + / api/ 通过 api 主机支持
(电子邮件服务)和支助(媒体服务,上游与/api/media相同) ——404号. 添加转发并修正电子邮件 。 来自本地主机的服务.url 默认为集群服务。 转发 () 只通过呼叫者的会话 头( X- ***- Token) – 没有注入 X- 内部- Auth – 所以内部端点 保留保护,只有会话指定功能被曝光.
获取/api/公共聊天/bootstrap网关路由
添加重用已存在的代理代理端点WithAuth 管道 (关键验证+选入源+公共 CHAT范围+费率限制+). X-Public-Chat-Key-Hash),并代指"媒体服务"(MediaService birdstrap)的终点.
代理给媒体服务
支持会话代理已经转发了原始正文, 所以合并的部件 首选的代理MenistryId 到达媒体服务未触及。 添加存在代理 借款人门户网站可查询其指定的贷款官员是否在线.
电子邮件 OAuth 提供者的公开回调
前进 将 Email Servicce 无序会话 (strips auth,没有方向跟踪),镜像环中OAuth召回. 这是在微软/Google/Zoho注册的固定公转URI.
公共程序电子签名API网关(API SIGNATURE范围)
添加 /api/ public/ sign/ ** 到 PublicApi 控制器: 验证 org API 密钥, 要求 API SIGNATURE 范围、 费率限制, 并转发到 EsigService 的 内部信封 API (/api/esig/Internal/**) 有 X-Internal-Auth + X-O...
Proxy support-message translate endpoint
Adds a passthrough route for the new MediaService endpoint that translates a single support-chat message into the visitor's URL locale. The marketing-side chat ...
用于 kamo- asterisk- support 上传的 Voip Recording Upload 控制器
POST/api/voip/记录/上载接受来自kamo-asterisk-support的多部分机构 在 FreePBX 主机上运行 。 验证 X- Api- Key 的新 VOIP RECORDING UBLOADS 范围(重新使用 QQ 验证缓存),然后 转发多段有效载荷+元数据头(X-Phone-Server...
Add Stripe webhook forwarding and billing API gateway routing
- POST /api/billing/webhooks/stripe receives Stripe webhooks and forwards to BillingService with Stripe-Signature header preserved - /api/billing/** gateway r...
Forward locale param to SecurityService on public subscription catalog endpoint
Add public lead intake endpoint for 3rd-party lead submission
Adds LeadIntakePublicController at /api/public/lead-intake/{token} that accepts lead data in any format (JSON, form-urlencoded) from 3rd-party vendors and forwa...
Add /api/esig/** gateway routing to ESigService
Route all /api/esig/** requests through the existing API gateway to the dedicated ESigService (kamowsesig-service) instead of the non-existent proxy target. Add...
Expose changelog webhook through APIService with secret key auth
Adds POST /api/changelog/webhook route that validates *** header before forwarding to SecurityService. Secret configured via CHANGELOG_WEBHOOK_SECRET env var / ...
Enforce PUBLIC_WEBINAR scope on public webinar endpoints
Adds scope validation check before forwarding public webinar requests to MediaService, returning 403 if the API key lacks PUBLIC_WEBINAR scope.
Add webinar gateway routes for authenticated and public endpoints
Routes /api/webinar/** to MediaService for authenticated webinar operations and /api/public/webinar/** with API key validation for public scheduling and cancell...
Add commerce webhook forwarding endpoint for retail provider integrations
Add /api/media/** route mapping to MediaService for public chat key management
Add public chat gateway with API key validation, rate limiting, and WebSocket proxy
Adds public chat endpoints at /api/public-chat/** for anonymous website chat. Includes API key validation (SHA-256 hashed, Redis-cached), per-key and per-IP rat...
Route /api/notes to KBService instead of SecurityService
Notes management has been moved from SecurityService to KBService.
Add access enforcement filter for IP-based access control
Redis-backed servlet filter that evaluates whitelist/blacklist/temp-block rules on every inbound request. Adds spring-boot-starter-data-redis dependency and Red...
Add OAuth callback forwarding with no-redirect RestTemplate
- Add noRedirectRestTemplate bean (HttpClient.Redirect.NEVER) so the 302 from VOIPService's OAuth callback is passed through to the browser instead of being...
Add proxyDav route, fix forward() body guard for DAV methods, add email service URL
Add gateway routes for KB and RAG services
- /api/kb/** routes to kamowskb-service - /api/rag/** routes to kamowsrag-service - Updated application.yml and k8s configmap with service URLs
Add /wopi/** route forwarding to DocsService
Docs needs to reach WOPI endpoints via api.kamocrm.com.