feat(notifications): event bus architecture with Telegram and SMTP subscribers (#5326)

* feat(notifications): event bus architecture with Telegram and SMTP subscribers

- Event bus core with buffered channel, fan-out, panic recovery
- Telegram subscriber with HTML formatting and rate limiting
- Email subscriber with SMTP/TLS/STARTTLS support and stage diagnostics
- 5 event types: outbound.down/up, xray.crash, cpu.high, login.attempt
- CPU threshold checks per subscriber (tgCpu for TG, smtpCpu for Email)
- SystemMetricData struct for raw metric values in events
- i18n keys for en-US, ru-RU, and English defaults for other locales

* fix

* fix(notifications): repair crash/CPU alerts, harden secrets, add node alerts

Bug fixes:
- Xray crash notifications were permanently suppressed after the first crash:
  XrayStateTracker latched state="down" with no reset and no recovery event,
  so only the first crash per process lifetime ever notified. Removed the
  tracker; the existing 1/min rate limiter already dedupes crash-loop spam.
- Email CPU alerts could never fire unless Telegram was also enabled, because
  the CPU job was registered only inside the tgbot block. Register it whenever
  either Telegram or SMTP wants cpu.high (new cpuAlarmWanted gate) and relax
  the cadence to @every 1m (cpu.Percent already samples over a full minute).
- SMTP password (and, pre-existing, all other secrets) were shipped to the
  browser in plaintext: GetAllSettingView was dead code and /setting/all
  returned the raw model. Wire getAllSetting -> GetAllSettingView, redact
  smtpPassword with a hasSmtpPassword presence flag, and preserve it on blank
  save. Closes the leak for tgBotToken/ldapPassword/2FA token too.

Polish:
- email Send: use nil SMTP auth when no credentials (Go refuses PlainAuth over
  the unencrypted "none" transport).
- Remove unused EventClientDepleted; fix inaccurate bus.go doc comments; drop
  stale tgBotLoginNotify from the frontend schema; gofmt alignment.

Feature - node online/offline alerts:
- Emit node.down/node.up from the heartbeat job on a real status transition
  (with a startup-spam guard), reusing NodeHealthData. Formatted by both the
  Telegram and email subscribers and selectable in the settings UI.

Regenerated frontend types (hasSmtpPassword). New i18n keys added to en-US;
other locales fall back to English (bundle default) until translated.

* fix(settings): use antd Space orientation instead of deprecated direction

Ant Design 6 deprecated Space's `direction` prop in favor of `orientation`,
which logged a console warning from the Telegram/Email notification tabs. Brings
these two tabs in line with the rest of the codebase, which already uses
`orientation`.

* i18n(notifications): translate the notification feature into all locales

The notifications PR shipped ~99 new strings (SMTP settings, event labels,
Telegram/email message templates) as English placeholders in every non-English
locale. Translate them — plus the node-alert keys added during this review —
into all 12 locales: Arabic, Spanish, Persian, Indonesian, Japanese,
Portuguese-BR, Russian, Turkish, Ukrainian, Vietnamese, and Simplified/
Traditional Chinese.

Go-template placeholders ({{ .Tag }}, {{ .Name }}, etc.) are preserved exactly;
tgbot message values carry no leading status emoji (the bot/email code adds
those, so an emoji in the value would duplicate it); product/protocol names
(SMTP, STARTTLS, TLS, CPU, Xray, Telegram) are kept as-is.

---------

Co-authored-by: Sanaei <ho3ein.sanaei@gmail.com>
This commit is contained in:
Sentiago
2026-06-15 22:03:41 +03:00
committed by GitHub
parent 7fe082a7f1
commit eec030f86f
48 changed files with 3854 additions and 141 deletions
+127 -2
View File
@@ -1200,7 +1200,69 @@
"userPassMustBeNotEmpty": "اسم المستخدم والباسورد الجديدين فاضيين",
"getOutboundTrafficError": "خطأ في الحصول على حركات المرور الصادرة",
"resetOutboundTrafficError": "خطأ في إعادة تعيين حركات المرور الصادرة"
}
},
"emailNotifications": "الإشعارات",
"emailSettings": "البريد الإلكتروني",
"eventCPUHigh": "ارتفاع استخدام المعالج (%)",
"eventGroupOutbound": "الصادر",
"eventGroupSecurity": "الأمان",
"eventGroupSystem": "النظام",
"eventGroupXray": "نواة Xray",
"eventLoginAttempt": "محاولة تسجيل دخول",
"eventOutboundDown": "غير متصل",
"eventOutboundUp": "متصل",
"eventXrayCrash": "تعطّل",
"requestFailed": "فشل الطلب",
"smtpEnable": "تفعيل إشعارات البريد الإلكتروني",
"smtpEnableDesc": "تفعيل إشعارات البريد الإلكتروني عبر SMTP",
"smtpEncryption": "التشفير",
"smtpEncryptionDesc": "طريقة تشفير اتصال SMTP",
"smtpEncryptionNone": "بدون (نص عادي)",
"smtpEncryptionStartTLS": "STARTTLS",
"smtpEncryptionTLS": "TLS (ضمني)",
"smtpEventBusNotify": "إشعارات الأحداث بالبريد الإلكتروني",
"smtpEventBusNotifyDesc": "اختر الأحداث التي تُطلق إشعارات البريد الإلكتروني",
"smtpHost": "خادم SMTP",
"smtpHostDesc": "اسم مضيف خادم SMTP (مثال: smtp.gmail.com)",
"smtpHostNotConfigured": "خادم SMTP غير مهيأ",
"smtpNoRecipients": "لا يوجد مستلمون مهيؤون",
"smtpNotInitialized": "لم تتم تهيئة SMTP",
"smtpPassword": "كلمة مرور SMTP",
"smtpPasswordDesc": "كلمة المرور للمصادقة على SMTP",
"smtpPort": "منفذ SMTP",
"smtpPortDesc": "منفذ خادم SMTP (الافتراضي: 587)",
"smtpSettings": "إعدادات SMTP",
"smtpStageAuth": "المصادقة",
"smtpStageConnect": "الاتصال",
"smtpStageSend": "الإرسال",
"smtpTestSuccess": "تم إرسال البريد التجريبي بنجاح",
"smtpTo": "المستلمون",
"smtpToDesc": "عناوين البريد الإلكتروني للمستلمين مفصولة بفواصل",
"smtpUsername": "اسم مستخدم SMTP",
"smtpUsernameDesc": "اسم المستخدم للمصادقة على SMTP",
"telegramTokenConfigured": "مهيأ؛ اتركه فارغاً للاحتفاظ بالتوكن الحالي.",
"telegramTokenPlaceholder": "مهيأ — أدخل توكن جديد لاستبداله",
"testSmtp": "إرسال بريد تجريبي",
"testTgBot": "إرسال رسالة تجريبية",
"tgBotNotEnabled": "بوت Telegram غير مفعّل",
"tgBotNotRunning": "بوت Telegram لا يعمل",
"tgEventBusNotify": "إشعارات الأحداث عبر Telegram",
"tgEventBusNotifyDesc": "اختر الأحداث التي تُطلق إشعارات Telegram",
"tgTestFailed": "فشل اختبار Telegram",
"tgTestSuccess": "تم إرسال رسالة تجريبية إلى Telegram",
"smtpErrorAuth": "فشلت المصادقة — تحقق من اسم المستخدم وكلمة المرور",
"smtpErrorStarttls": "الخادم يتطلب STARTTLS — غيّر نوع التشفير",
"smtpErrorTls": "الخادم يتطلب TLS — غيّر نوع التشفير",
"smtpErrorRefused": "تم رفض الاتصال — تحقق من الخادم والمنفذ",
"smtpErrorTimeout": "انتهت مهلة الاتصال — تعذّر الوصول إلى الخادم",
"smtpErrorRelay": "الخادم يرفض الإرسال من هذا العنوان",
"smtpErrorEof": "تم إغلاق الاتصال من قبل الخادم",
"smtpErrorUnknown": "خطأ SMTP: {{ .Error }}",
"eventGroupNode": "العقد",
"eventNodeDown": "غير متصلة",
"eventNodeUp": "متصلة",
"smtpPasswordConfigured": "مهيأة؛ اتركها فارغة للاحتفاظ بكلمة المرور الحالية.",
"smtpPasswordPlaceholder": "مهيأة — أدخل كلمة مرور جديدة لاستبدالها"
},
"xray": {
"title": "إعدادات Xray",
@@ -1703,7 +1765,18 @@
"AreYouSure": "إنت متأكد؟ 🤔",
"SuccessResetTraffic": "📧 البريد الإلكتروني: {{ .ClientEmail }}\n🏁 النتيجة: ✅ تم بنجاح",
"FailedResetTraffic": "📧 البريد الإلكتروني: {{ .ClientEmail }}\n🏁 النتيجة: ❌ فشل \n\n🛠️ الخطأ: [ {{ .ErrorMessage }} ]",
"FinishProcess": "🔚 عملية إعادة ضبط الترافيك خلصت لكل العملاء."
"FinishProcess": "🔚 عملية إعادة ضبط الترافيك خلصت لكل العملاء.",
"eventCPUHigh": "ارتفاع استخدام المعالج",
"eventCPUHighDetail": "المعالج: {{ .Detail }}",
"eventDelayDetail": "التأخير: {{ .Delay }} مللي ثانية",
"eventErrorDetail": "الخطأ: {{ .Error }}",
"eventLoginFallback": "فشل تسجيل الدخول من {{ .Source }}",
"eventOutboundDown": "الصادر {{ .Tag }} غير متصل",
"eventOutboundUp": "الصادر {{ .Tag }} متصل",
"eventXrayCrash": "تعطّل Xray",
"eventXrayCrashError": "الخطأ: {{ .Error }}",
"eventNodeDown": "العقدة {{ .Name }} غير متصلة",
"eventNodeUp": "العقدة {{ .Name }} متصلة"
},
"buttons": {
"closeKeyboard": "❌ اقفل الكيبورد",
@@ -1773,5 +1846,57 @@
"chooseClient": "اختار عميل للإدخال {{ .Inbound }}",
"chooseInbound": "اختار الإدخال"
}
},
"email": {
"labelDelay": "التأخير",
"labelDetail": "التفاصيل",
"labelError": "الخطأ",
"labelIP": "IP",
"labelOutbound": "الصادر",
"labelReason": "السبب",
"labelSource": "المصدر",
"labelStatus": "الحالة",
"labelTime": "الوقت",
"labelUsername": "اسم المستخدم",
"statusBanned": "BANNED",
"statusCrashed": "متعطّل",
"statusDown": "غير متصل",
"statusFailed": "فشل",
"statusFull": "FULL",
"statusHigh": "مرتفع",
"statusOffline": "OFFLINE",
"statusOnline": "ONLINE",
"statusRunning": "يعمل",
"statusSuccess": "نجاح",
"statusUp": "متصل",
"statusXrayDown": "Xray DOWN",
"statusXrayUp": "Xray UP",
"subjectCPUHigh": "ارتفاع استخدام المعالج",
"subjectDiskFull": "Disk full",
"subjectIPBanned": "IP banned: {{ .IP }}",
"subjectLoginFailed": "فشل تسجيل الدخول",
"subjectLoginSuccess": "نجح تسجيل الدخول",
"subjectNodeOffline": "Node {{ .Node }} is OFFLINE",
"subjectNodeOnline": "Node {{ .Node }} is ONLINE",
"subjectNodeXrayDown": "Node {{ .Node }} Xray is DOWN",
"subjectNodeXrayUp": "Node {{ .Node }} Xray is UP",
"subjectOutboundDown": "الصادر {{ .Tag }} غير متصل",
"subjectOutboundUp": "الصادر {{ .Tag }} متصل",
"subjectXrayCrash": "تعطّل Xray",
"subjectXrayUp": "Xray is UP",
"titleCPUHigh": "ارتفاع استخدام المعالج",
"titleDiskFull": "Disk full",
"titleIPBanned": "IP banned",
"titleLoginFailed": "فشل تسجيل الدخول",
"titleLoginSuccess": "نجح تسجيل الدخول",
"titleNodeOffline": "Node OFFLINE",
"titleNodeOnline": "Node ONLINE",
"titleNodeXrayDown": "Node Xray DOWN",
"titleNodeXrayUp": "Node Xray UP",
"titleOutboundDown": "الصادر غير متصل",
"titleOutboundUp": "الصادر متصل",
"titleXrayCrash": "تعطّل Xray",
"titleXrayUp": "Xray UP",
"labelNode": "العقدة"
}
}