Files
Genarrative/deploy/pingora/nginx-route-parity.matrix.json
T
kdletters 38eb5b69ed
Project CI / AI game creator shell Rust crates (push) Successful in 1m24s
Project CI / AI game creator shell Rust smoke (push) Successful in 1m58s
Project CI / AI game creator shell Rust lane 2/2 (push) Has been cancelled
Project CI / Frontend tests (push) Has been cancelled
Project CI / Repository checks (push) Has been cancelled
Project CI / Backend tests (push) Has been cancelled
Project CI / AI game creator shell web tests (push) Has been cancelled
Project CI / AI game creator shell Rust lane 1/2 (push) Has been cancelled
Project CI / Native shell tests (push) Has been cancelled
给路由 parity 门禁补反向覆盖,模板里的 location 必须被矩阵声明
- check-pingora-route-parity 新增 validateNginxLocationsAreCovered:两份 Nginx 模板里出现的每条 location 都必须被矩阵某条用例的 nginx 片段(location 前缀)声明,否则判红
- 这条针对的正是 2026-09-29 发行网关路由那类漂移:此前只做正向检查(矩阵片段必须存在于模板),模板单方面加路由时门禁一直是绿的
- 矩阵新增 web_root_spa(samplePath=/ → static/web/spa_fallback,片段 location = / + try_files /index.html =404;)并把三个新 id 列入必查清单;Pingora 试点文档补根路径回退与反向覆盖说明
- 验证:check:pingora-route-parity OK(24 路由)、check:nginx-spa-routes OK(12 路由 / 3 模板)、cargo test -p pingora-gateway 39 passed、check:production-ops、prettier / eslint / encoding / doc-index / diff 全绿;变异验证:往生产模板插一条无矩阵声明的 location → 只有反向覆盖报「production 模板的 location 没有被矩阵覆盖」
2026-09-29 07:29:41 +08:00

427 lines
12 KiB
JSON

{
"version": 1,
"description": "Pingora shadow gateway routes that must stay aligned with the current Genarrative Nginx production/development templates before any public cutover.",
"routes": [
{
"id": "acme_challenge",
"samplePath": "/.well-known/acme-challenge/token",
"expect": {
"kind": "static",
"root": "acme",
"mode": "exact"
},
"nginx": {
"production": [
"location /.well-known/acme-challenge/",
"root /var/www/html;"
]
},
"docs": ["`/.well-known/acme-challenge/*`"]
},
{
"id": "shadow_probe",
"samplePath": "/__genarrative_pingora/healthz",
"expect": {
"kind": "shadow_probe"
},
"docs": ["`/__genarrative_pingora/healthz`"]
},
{
"id": "admin_redirect",
"samplePath": "/admin",
"expect": {
"kind": "redirect_permanent",
"location": "/admin/"
},
"nginx": {
"production": ["location = /admin", "return 301 /admin/;"],
"development": ["location = /admin", "return 301 /admin/;"]
},
"docs": ["`/admin`", "301 到 `/admin/`"]
},
{
"id": "admin_api_proxy",
"samplePath": "/admin/api/users",
"expect": {
"kind": "proxy",
"target": "api",
"bodyLimit": null,
"protectionClass": "admin_api"
},
"nginx": {
"production": [
"location ^~ /admin/api/",
"proxy_pass http://genarrative_api/admin/api/;",
"limit_conn genarrative_api_conn 64;",
"limit_req zone=genarrative_admin_rps burst=16 nodelay;"
],
"development": [
"location ^~ /admin/api/",
"proxy_pass http://genarrative_api/admin/api/;",
"limit_conn genarrative_api_conn 64;",
"limit_req zone=genarrative_admin_rps burst=16 nodelay;"
]
},
"docs": ["`/admin/api/*`"]
},
{
"id": "admin_assets",
"samplePath": "/admin/assets/index.js",
"expect": {
"kind": "static",
"root": "web",
"mode": "exact"
},
"nginx": {
"production": ["location ^~ /admin/assets/", "try_files $uri =404;"],
"development": ["location ^~ /admin/assets/", "try_files $uri =404;"]
},
"docs": ["`/admin/assets/*`"]
},
{
"id": "admin_spa_fallback",
"samplePath": "/admin/settings",
"expect": {
"kind": "static",
"root": "web",
"mode": "spa_fallback"
},
"nginx": {
"production": [
"location ^~ /admin/",
"try_files $uri $uri/ /admin/index.html;"
],
"development": [
"location ^~ /admin/",
"try_files $uri $uri/ /admin/index.html;"
]
},
"docs": ["`/admin/*`"]
},
{
"id": "web_assets",
"samplePath": "/assets/app.js",
"expect": {
"kind": "static",
"root": "web",
"mode": "exact"
},
"nginx": {
"production": ["location ^~ /assets/", "try_files $uri =404;"],
"development": ["location ^~ /assets/", "try_files $uri =404;"]
},
"docs": ["`/assets/*`"]
},
{
"id": "generic_api_proxy",
"samplePath": "/api/assets/history",
"expect": {
"kind": "proxy",
"target": "api",
"bodyLimit": "default",
"protectionClass": "api"
},
"nginx": {
"production": [
"location ~ ^/api(?:/|$)",
"client_max_body_size 210m;",
"limit_conn genarrative_api_conn 64;",
"limit_req zone=genarrative_api_rps burst=64 nodelay;",
"add_header X-Accel-Buffering no always;"
],
"development": [
"location ~ ^/api(?:/|$)",
"client_max_body_size 210m;",
"limit_conn genarrative_api_conn 64;",
"limit_req zone=genarrative_api_rps burst=64 nodelay;",
"add_header X-Accel-Buffering no always;"
]
},
"docs": ["`/api`、`/api/*`"]
},
{
"id": "spacetime_subscribe",
"samplePath": "/v1/database/genarrative/subscribe",
"expect": {
"kind": "proxy",
"target": "spacetime",
"bodyLimit": null,
"protectionClass": "spacetime"
},
"nginx": {
"production": [
"location ~ ^/v1/database/[^/]+/subscribe$",
"proxy_pass http://127.0.0.1:3101;",
"proxy_set_header Upgrade $http_upgrade;",
"proxy_set_header Connection \"Upgrade\";",
"proxy_read_timeout 3600s;"
],
"development": [
"location ~ ^/v1/database/[^/]+/subscribe$",
"proxy_pass http://127.0.0.1:3101;",
"proxy_set_header Upgrade $http_upgrade;",
"proxy_set_header Connection \"Upgrade\";",
"proxy_read_timeout 3600s;"
]
},
"docs": ["`/v1/database/{db}/subscribe`"]
},
{
"id": "spacetime_identity",
"samplePath": "/v1/identity",
"expect": {
"kind": "proxy",
"target": "spacetime",
"bodyLimit": null,
"protectionClass": "spacetime"
},
"nginx": {
"production": [
"location ^~ /v1/identity",
"proxy_pass http://127.0.0.1:3101;",
"proxy_set_header Upgrade $http_upgrade;",
"proxy_set_header Connection \"Upgrade\";"
],
"development": [
"location ^~ /v1/identity",
"proxy_pass http://127.0.0.1:3101;",
"proxy_set_header Upgrade $http_upgrade;",
"proxy_set_header Connection \"Upgrade\";"
]
},
"docs": ["`/v1/identity*`"]
},
{
"id": "v1_forbidden",
"samplePath": "/v1/ping",
"expect": {
"kind": "not_found"
},
"nginx": {
"production": ["location ^~ /v1/", "return 404;"],
"development": ["location ^~ /v1/", "return 404;"]
},
"docs": ["`/v1/*`"]
},
{
"id": "healthz_forbidden",
"samplePath": "/healthz",
"expect": {
"kind": "not_found"
},
"nginx": {
"production": [
"location ~ ^/(generated-|healthz|readyz)",
"return 404;"
],
"development": [
"location ~ ^/(generated-|healthz|readyz)",
"return 404;"
]
},
"docs": ["`/healthz*`"]
},
{
"id": "readyz_forbidden",
"samplePath": "/readyz",
"expect": {
"kind": "not_found"
},
"nginx": {
"production": [
"location ~ ^/(generated-|healthz|readyz)",
"return 404;"
],
"development": [
"location ~ ^/(generated-|healthz|readyz)",
"return 404;"
]
},
"docs": ["`/readyz*`"]
},
{
"id": "generated_assets_forbidden",
"samplePath": "/generated-puzzle-assets/foo.webp",
"expect": {
"kind": "not_found"
},
"nginx": {
"production": [
"location ~ ^/(generated-|healthz|readyz)",
"return 404;"
],
"development": [
"location ~ ^/(generated-|healthz|readyz)",
"return 404;"
]
},
"docs": ["`/generated-*`"]
},
{
"id": "web_root_spa",
"samplePath": "/",
"expect": {
"kind": "static",
"root": "web",
"mode": "spa_fallback"
},
"nginx": {
"production": ["location = /", "try_files /index.html =404;"],
"development": ["location = /", "try_files /index.html =404;"]
},
"docs": ["主站 SPA allowlist", "根路径 `/` 精确回退 `/index.html`"]
},
{
"id": "web_spa_fallback",
"samplePath": "/project",
"expect": {
"kind": "static",
"root": "web",
"mode": "spa_fallback"
},
"nginx": {
"production": [
"# BEGIN GENARRATIVE MAIN SPA ROUTES",
"try_files $uri /index.html =404;"
],
"development": [
"# BEGIN GENARRATIVE MAIN SPA ROUTES",
"try_files $uri /index.html =404;"
]
},
"docs": ["主站 SPA allowlist", "失败回退 `/index.html`"]
},
{
"id": "profile_spa_fallback",
"samplePath": "/profile",
"expect": {
"kind": "static",
"root": "web",
"mode": "spa_fallback"
},
"nginx": {
"production": [
"# BEGIN GENARRATIVE MAIN SPA ROUTES",
"try_files $uri /index.html =404;"
],
"development": [
"# BEGIN GENARRATIVE MAIN SPA ROUTES",
"try_files $uri /index.html =404;"
]
},
"docs": ["主站 SPA allowlist", "失败回退 `/index.html`"]
},
{
"id": "games_spa_fallback",
"samplePath": "/games/detail",
"expect": {
"kind": "static",
"root": "web",
"mode": "spa_fallback"
},
"nginx": {
"production": [
"# BEGIN GENARRATIVE MAIN SPA ROUTES",
"try_files $uri /index.html =404;"
],
"development": [
"# BEGIN GENARRATIVE MAIN SPA ROUTES",
"try_files $uri /index.html =404;"
]
},
"docs": ["主站 SPA allowlist", "游戏目录 / 详情 / 游玩 / 我的 / 发布深链"]
},
{
"id": "games_release_gateway",
"samplePath": "/games/game_0123456789abcdef0123456789abcdef/index.html",
"expect": {
"kind": "release_gateway",
"upstreamPath": "/api/game-distribution/releases/game_0123456789abcdef0123456789abcdef/index.html"
},
"nginx": {
"production": [
"location ~ \"^/games/(?<game_id>game_[0-9a-f]{32})(?<game_path>/.*)?$\"",
"proxy_set_header Cookie \"\";",
"proxy_pass http://genarrative_api/api/game-distribution/releases/$game_id$game_path;"
],
"development": [
"location ~ \"^/games/(?<game_id>game_[0-9a-f]{32})(?<game_path>/.*)?$\"",
"proxy_set_header Cookie \"\";",
"proxy_pass http://genarrative_api/api/game-distribution/releases/$game_id$game_path;"
]
},
"docs": ["/games/game_<32 位十六进制 id>/…", "平台同源发行入口"]
},
{
"id": "web_spa_case_trailing_slash",
"samplePath": "/PROJECT/",
"expect": {
"kind": "static",
"root": "web",
"mode": "spa_fallback"
},
"nginx": {
"production": ["location ~*", "try_files $uri /index.html =404;"],
"development": ["location ~*", "try_files $uri /index.html =404;"]
},
"docs": ["大小写不敏感", "一个尾部斜杠"]
},
{
"id": "web_unknown_path_exact",
"samplePath": "/some/spa/path",
"expect": {
"kind": "static",
"root": "web",
"mode": "exact"
},
"nginx": {
"production": ["location /", "try_files $uri $uri/ =404;"],
"development": ["location /", "try_files $uri $uri/ =404;"]
},
"docs": ["其它 Web 路径", "缺失时返回真实 404"]
},
{
"id": "creation_unknown_path_exact",
"samplePath": "/creation/not-exist",
"expect": {
"kind": "static",
"root": "web",
"mode": "exact"
},
"nginx": {
"production": ["try_files $uri $uri/ =404;"],
"development": ["try_files $uri $uri/ =404;"]
},
"docs": ["`/creation/not-exist`"]
},
{
"id": "runtime_unknown_path_exact",
"samplePath": "/runtime/not-exist",
"expect": {
"kind": "static",
"root": "web",
"mode": "exact"
},
"nginx": {
"production": ["try_files $uri $uri/ =404;"],
"development": ["try_files $uri $uri/ =404;"]
},
"docs": ["`/runtime/not-exist`"]
},
{
"id": "puzzle_unknown_path_exact",
"samplePath": "/puzzle/not-exist",
"expect": {
"kind": "static",
"root": "web",
"mode": "exact"
},
"nginx": {
"production": ["try_files $uri $uri/ =404;"],
"development": ["try_files $uri $uri/ =404;"]
},
"docs": ["`/puzzle/not-exist`"]
}
]
}