settings.py 37 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785
  1. import json
  2. from pydantic import BaseModel, Field, ValidationInfo, field_validator
  3. from backend.app.schemas.print_queue import TriState
  4. # Outbound service URLs validated on save, so a bad value is rejected at
  5. # configuration time with a clear message rather than failing opaquely at
  6. # request time. Every one of these services is commonly self-hosted on the same
  7. # host or LAN as Bambuddy, so the LAN-service policy applies: loopback and
  8. # RFC-1918 stay permitted, while cloud-metadata endpoints, numeric-encoded IPs,
  9. # IPv4-mapped IPv6 and non-HTTP schemes are rejected. See
  10. # ``_url_safety.assert_safe_lan_service_url``.
  11. #
  12. # Module-level rather than a class attribute so the CI backstop in
  13. # tests/unit/test_outbound_url_ssrf_guards.py can import the real list and
  14. # cannot drift from it. Any new outbound-URL setting belongs here (or, if it
  15. # must be reachable on the public internet, on the stricter OIDC guard).
  16. LAN_SERVICE_URL_SETTINGS = ("ha_url", "obico_ml_url", "orcaslicer_api_url", "bambu_studio_api_url")
  17. class AppSettings(BaseModel):
  18. """Application settings schema."""
  19. auto_archive: bool = Field(default=True, description="Automatically archive prints when completed")
  20. save_thumbnails: bool = Field(default=True, description="Extract and save preview images from 3MF files")
  21. capture_finish_photo: bool = Field(
  22. default=True,
  23. description=(
  24. "Capture photo from printer camera when print completes. Bambuddy records a "
  25. "brief timelapse during the print so the photo can be sourced from the moment "
  26. "before the bed drops; the timelapse file is kept if you enabled timelapse for "
  27. "this print, otherwise it is deleted automatically after the photo is captured."
  28. ),
  29. )
  30. finish_photo_restore_plate: bool = Field(
  31. default=True,
  32. description=(
  33. "Raise the build plate back into camera framing before taking the finish photo. "
  34. "Bambu's end G-code drops the plate ~100mm as the last thing it does, leaving the "
  35. "finished print far below the camera's natural framing. Bambuddy moves it back to "
  36. "just above the last printed layer, takes the photo, then lowers it again. Skipped "
  37. "when the print height is unknown or another job is queued for the printer."
  38. ),
  39. )
  40. default_filament_cost: float = Field(default=25.0, description="Default filament cost per kg")
  41. currency: str = Field(default="USD", description="Currency for cost tracking")
  42. energy_cost_per_kwh: float = Field(default=0.15, description="Electricity cost per kWh for energy tracking")
  43. energy_tracking_mode: str = Field(
  44. default="total",
  45. description="Energy display mode on stats: 'print' shows sum of per-print energy, 'total' shows lifetime plug consumption",
  46. )
  47. # Spoolman integration
  48. spoolman_enabled: bool = Field(default=False, description="Enable Spoolman integration for filament tracking")
  49. spoolman_url: str = Field(default="", description="Spoolman server URL (e.g., http://localhost:7912)")
  50. spoolman_sync_mode: str = Field(
  51. default="auto", description="Sync mode: 'auto' syncs immediately, 'manual' requires button press"
  52. )
  53. spoolman_disable_weight_sync: bool = Field(
  54. default=False,
  55. description="Disable remaining_weight sync. When enabled, only location is updated for existing spools.",
  56. )
  57. spoolman_report_partial_usage: bool = Field(
  58. default=True,
  59. description="Report Partial Usage for Failed Prints. When a print fails or is cancelled, report the estimated filament used up to that point based on layer progress.",
  60. )
  61. auto_add_unknown_rfid: bool = Field(
  62. default=True,
  63. description="Automatically add spools with unknown RFID tags to inventory. Disable if you pre-create inventory entries manually to avoid duplicates.",
  64. )
  65. disable_filament_warnings: bool = Field(
  66. default=False,
  67. description="Disable insufficient filament warnings when printing or queueing prints",
  68. )
  69. prefer_lowest_filament: bool = Field(
  70. default=False,
  71. description="When multiple AMS spools match, prefer the one with lowest remaining filament",
  72. )
  73. # Updates
  74. check_updates: bool = Field(default=True, description="Automatically check for updates on startup")
  75. check_printer_firmware: bool = Field(default=True, description="Check for printer firmware updates from Bambu Lab")
  76. include_beta_updates: bool = Field(default=False, description="Include beta/prerelease versions in update checks")
  77. # Language
  78. language: str = Field(default="en", description="UI language (en, de, fr, ja, it, pt-BR)")
  79. notification_language: str = Field(default="en", description="Language for push notifications (en, de)")
  80. # Bed cooled notification threshold
  81. bed_cooled_threshold: float = Field(
  82. default=35.0, description="Bed temperature threshold for cooled notification (°C)"
  83. )
  84. # AMS threshold settings for humidity and temperature coloring
  85. ams_humidity_good: int = Field(default=40, description="Humidity threshold for good (green): <= this value")
  86. ams_humidity_fair: int = Field(
  87. default=60, description="Humidity threshold for fair (orange): <= this value, > is red"
  88. )
  89. ams_temp_good: float = Field(default=28.0, description="Temperature threshold for good (blue): <= this value")
  90. ams_temp_fair: float = Field(
  91. default=35.0, description="Temperature threshold for fair (orange): <= this value, > is red"
  92. )
  93. ams_history_retention_days: int = Field(default=30, description="Number of days to keep AMS sensor history data")
  94. printer_sensor_history_retention_days: int = Field(
  95. default=30, description="Number of days to keep printer heater history data (nozzle / bed / chamber)"
  96. )
  97. # Queue auto-drying settings
  98. queue_drying_enabled: bool = Field(
  99. default=False, description="Automatically dry AMS filament between queued prints"
  100. )
  101. queue_drying_block: bool = Field(
  102. default=False,
  103. description="Block queue until drying completes (when disabled, prints take priority over drying)",
  104. )
  105. ambient_drying_enabled: bool = Field(
  106. default=False,
  107. description="Automatically dry AMS filament on idle printers when humidity exceeds threshold, regardless of queue",
  108. )
  109. print_drying_enabled: bool = Field(
  110. default=False,
  111. description=(
  112. "Allow auto-drying to also fire on a printer that is currently printing, "
  113. "when its model+firmware supports concurrent drying (H2D 01.03.00.00+, "
  114. "H2C/H2S/P2S/H2D Pro 01.02.00.00+, X2D/A2L 01.01.00.00+, X1C 01.11.02.00+). "
  115. "Drying temperature is automatically capped 5 degC below the idle preset "
  116. "(floor 40 degC) to protect spools during print."
  117. ),
  118. )
  119. drying_presets: str = Field(
  120. default="",
  121. description="JSON blob of drying presets per filament type (empty = use built-in defaults)",
  122. )
  123. ams_humidity_thresholds: str = Field(
  124. default="",
  125. description=(
  126. "JSON blob of per-filament-type humidity trigger thresholds for auto-drying and alarms. "
  127. 'Shape: {"default": int, "PLA": int, "ASA": int, ...}. '
  128. "Empty = fall back to ams_humidity_fair for all types."
  129. ),
  130. )
  131. # Auto-print G-code injection (#422)
  132. gcode_snippets: str = Field(
  133. default="",
  134. description="JSON: per-model G-code injection snippets {model: {start_gcode, end_gcode}}",
  135. )
  136. # Scheduled local backup (#884)
  137. local_backup_enabled: bool = Field(default=False, description="Enable scheduled local backups")
  138. local_backup_schedule: str = Field(default="daily", description="Backup frequency: hourly, daily, weekly")
  139. local_backup_time: str = Field(default="03:00", description="Time of day for daily/weekly backups (HH:MM, 24h)")
  140. local_backup_retention: int = Field(default=5, description="Number of backup files to keep (1-100)")
  141. local_backup_path: str = Field(default="", description="Backup output directory (empty = DATA_DIR/backups)")
  142. # Print modal settings
  143. per_printer_mapping_expanded: bool = Field(
  144. default=False, description="Expand custom filament mapping by default in print modal"
  145. )
  146. # Date/time display format
  147. date_format: str = Field(default="system", description="Date format: system, us, eu, iso")
  148. time_format: str = Field(default="system", description="Time format: system, 12h, 24h")
  149. # Default printer for operations
  150. default_printer_id: int | None = Field(default=None, description="Default printer ID for uploads, reprints, etc.")
  151. # Slicer Pipelines (#1425 PR C). Cap on the ``copies`` field in the
  152. # Run-with-pipeline modal — keeps a misclick from queueing 5000 prints.
  153. pipeline_max_copies: int = Field(
  154. default=50,
  155. ge=1,
  156. le=1000,
  157. description="Upper bound on the copies an operator can request when running a Slicer Pipeline. Larger fleets / production rigs can raise this; the hard ceiling at 1000 is a sanity guard against fat-fingered input.",
  158. )
  159. # Virtual Printer
  160. virtual_printer_enabled: bool = Field(default=False, description="Enable virtual printer for slicer uploads")
  161. virtual_printer_access_code: str = Field(default="", description="Access code for virtual printer authentication")
  162. virtual_printer_mode: str = Field(
  163. default="archive",
  164. description="Mode: 'archive' (archive now), 'review' (pending review), 'queue' (add to print queue), or 'proxy' (relay to real printer)",
  165. )
  166. virtual_printer_archive_name_source: str = Field(
  167. default="metadata",
  168. description="Source for the archive's display name on virtual-printer uploads: 'metadata' uses the 3MF's embedded print_name (default, matches Bambu's behavior), 'filename' uses the filename Bambu Studio sent over FTP (lets users rename via the slicer's 'send to printer' dialog).",
  169. )
  170. # Dark mode theme settings
  171. dark_style: str = Field(default="vibrant", description="Dark mode style: classic, glow, vibrant")
  172. dark_background: str = Field(
  173. default="cool", description="Dark mode background: neutral, warm, cool, oled, slate, forest"
  174. )
  175. dark_accent: str = Field(default="green", description="Dark mode accent: green, teal, blue, orange, purple, red")
  176. # Light mode theme settings
  177. light_style: str = Field(default="classic", description="Light mode style: classic, glow, vibrant")
  178. light_background: str = Field(default="neutral", description="Light mode background: neutral, warm, cool")
  179. light_accent: str = Field(default="green", description="Light mode accent: green, teal, blue, orange, purple, red")
  180. # FTP retry settings for unreliable WiFi connections
  181. ftp_retry_enabled: bool = Field(default=True, description="Enable automatic retry for FTP operations")
  182. ftp_retry_count: int = Field(default=3, description="Number of retry attempts for FTP operations (1-10)")
  183. ftp_retry_delay: int = Field(default=2, description="Seconds to wait between FTP retry attempts (1-30)")
  184. ftp_timeout: int = Field(default=30, description="FTP connection timeout in seconds (10-300)")
  185. # MQTT Relay settings for publishing events to external broker
  186. mqtt_enabled: bool = Field(default=False, description="Enable MQTT event publishing to external broker")
  187. mqtt_broker: str = Field(default="", description="MQTT broker hostname or IP address")
  188. mqtt_port: int = Field(default=1883, description="MQTT broker port (default 1883, TLS typically 8883)")
  189. mqtt_username: str = Field(default="", description="MQTT username for authentication (optional)")
  190. mqtt_password: str = Field(default="", description="MQTT password for authentication (optional)")
  191. mqtt_topic_prefix: str = Field(default="bambuddy", description="Topic prefix for all published messages")
  192. mqtt_use_tls: bool = Field(default=False, description="Use TLS/SSL encryption for MQTT connection")
  193. # External URL for notifications
  194. external_url: str = Field(
  195. default="", description="External URL where Bambuddy is accessible (for notification images)"
  196. )
  197. # Home Assistant integration for smart plug control
  198. ha_enabled: bool = Field(default=False, description="Enable Home Assistant integration for smart plug control")
  199. ha_url: str = Field(default="", description="Home Assistant URL (e.g., http://192.168.1.100:8123)")
  200. ha_token: str = Field(default="", description="Home Assistant Long-Lived Access Token")
  201. ha_url_from_env: bool = Field(default=False, description="Whether HA URL is set via HA_URL environment variable")
  202. ha_token_from_env: bool = Field(
  203. default=False, description="Whether HA token is set via HA_TOKEN environment variable"
  204. )
  205. ha_env_managed: bool = Field(
  206. default=False, description="Whether HA integration is fully managed by environment variables"
  207. )
  208. # File Manager / Library settings
  209. library_archive_mode: str = Field(
  210. default="ask",
  211. description="When printing from File Manager, create archive entry: 'always', 'never', or 'ask'",
  212. )
  213. library_disk_warning_gb: float = Field(
  214. default=5.0,
  215. description="Show warning when free disk space falls below this threshold (GB)",
  216. )
  217. # Camera view settings
  218. camera_view_mode: str = Field(
  219. default="window",
  220. description="Camera view mode: 'window' opens in new browser window, 'embedded' shows overlay on main screen",
  221. )
  222. # Preferred slicer application (server-side / API sidecar slicer)
  223. preferred_slicer: str = Field(
  224. default="bambu_studio",
  225. description="Slicer used for the server-side API / sidecar: 'bambu_studio' or 'orcaslicer'",
  226. )
  227. # "Open in Slicer" desktop URI handler — independent of the API slicer so
  228. # a user can slice via the Bambu Studio sidecar but open files locally in
  229. # OrcaSlicer, or vice versa (#1329). None falls back to ``preferred_slicer``
  230. # so existing installs behave identically until someone changes it.
  231. open_in_slicer: str | None = Field(
  232. default=None,
  233. description=(
  234. "Desktop slicer for the 'Open in Slicer' button: 'bambu_studio' or "
  235. "'orcaslicer'. None inherits from preferred_slicer."
  236. ),
  237. )
  238. # Slicer dispatch mode: when True, "Slice" actions open the in-app
  239. # SliceModal and call the slicer-API sidecar. When False (default), they
  240. # hand off to the user's local desktop slicer via URI scheme — preserving
  241. # the original Bambuddy behavior for users who don't run a sidecar.
  242. use_slicer_api: bool = Field(
  243. default=False,
  244. description="Use the slicer-API sidecar for slicing instead of the desktop slicer URI scheme",
  245. )
  246. # Slicer-API sidecar base URLs. Per-installation, configured via the
  247. # Settings UI (the "Slicer" card). Empty string means "fall back to the
  248. # SLICER_API_URL / BAMBU_STUDIO_API_URL env vars" — which themselves
  249. # default to the docker-compose ports in core/config.py.
  250. orcaslicer_api_url: str = Field(
  251. default="",
  252. description="OrcaSlicer sidecar URL (e.g. http://localhost:3003). Empty falls back to the SLICER_API_URL env var.",
  253. )
  254. bambu_studio_api_url: str = Field(
  255. default="",
  256. description="BambuStudio sidecar URL (e.g. http://localhost:3001). Empty falls back to the BAMBU_STUDIO_API_URL env var.",
  257. )
  258. # Prometheus metrics endpoint
  259. prometheus_enabled: bool = Field(default=False, description="Enable Prometheus metrics endpoint at /metrics")
  260. prometheus_token: str = Field(
  261. default="", description="Bearer token for Prometheus metrics authentication (optional)"
  262. )
  263. # Inventory low stock threshold
  264. low_stock_threshold: float = Field(
  265. default=20.0,
  266. ge=0.1,
  267. le=99.9,
  268. description="Low stock threshold percentage (%) for inventory filtering and display",
  269. )
  270. # Session policy (#1706) — admin-set ceiling for user session lifetime.
  271. # Default 24h preserves the M-2 audit reduction from 7 days. Max 720h
  272. # (30 days) bounds blast radius if an admin chooses a long session.
  273. session_max_hours: int = Field(
  274. default=24,
  275. ge=1,
  276. le=720,
  277. description=(
  278. "Maximum session lifetime in hours for user logins (default 24, max 720). "
  279. "Applies to new logins only; already-issued tokens keep their original expiry. "
  280. "Longer sessions reduce automatic logout protection."
  281. ),
  282. )
  283. # User email notifications (requires Advanced Authentication)
  284. user_notifications_enabled: bool = Field(
  285. default=True,
  286. description="Enable user email notifications for print job events (requires Advanced Authentication)",
  287. )
  288. # Default print options. bed_levelling / flow_cali / nozzle_offset_cali are
  289. # tri-state (off/on/auto), defaulting to "auto" per BambuStudio.
  290. default_bed_levelling: TriState = Field(default="auto", description="Default bed levelling option for new prints")
  291. default_flow_cali: TriState = Field(default="auto", description="Default flow calibration option for new prints")
  292. default_vibration_cali: bool = Field(
  293. default=True, description="Default vibration calibration option for new prints"
  294. )
  295. default_layer_inspect: bool = Field(
  296. default=False, description="Default first layer inspection option for new prints"
  297. )
  298. default_timelapse: bool = Field(default=False, description="Default timelapse option for new prints")
  299. default_nozzle_offset_cali: TriState = Field(
  300. default="auto",
  301. description="Default nozzle offset calibration option for new prints (dual-nozzle printers only)",
  302. )
  303. # Staggered batch start for multi-printer jobs
  304. stagger_group_size: int = Field(
  305. default=2, ge=1, le=50, description="Number of printers to start simultaneously in staggered mode"
  306. )
  307. stagger_interval_minutes: int = Field(
  308. default=5, ge=1, le=60, description="Minutes between staggered printer groups"
  309. )
  310. # Plate-clear confirmation for queue scheduling
  311. require_plate_clear: bool = Field(
  312. default=False,
  313. description="Require per-printer plate-clear confirmation before starting queued prints on finished printers",
  314. )
  315. queue_shortest_first: bool = Field(
  316. default=False,
  317. description="Shortest Job First — scheduler prioritizes shorter print jobs over longer ones",
  318. )
  319. queue_max_concurrent_uploads: int = Field(
  320. default=4,
  321. ge=1,
  322. le=16,
  323. description=(
  324. "How many printers the queue may upload to at the same time. Printers are independent "
  325. "machines, so raising this starts a multi-printer batch proportionally sooner; each "
  326. "concurrent upload costs one connection and one thread on the Bambuddy host."
  327. ),
  328. )
  329. # Preheat / heat-soak before queued prints (#1468). The scheduler stage runs
  330. # BEFORE FTP upload. Three hardware tiers behave differently:
  331. # - Chamber heater (H2C/H2D/H2DPro/H2S/X2D/X1E): M141 → wait for chamber
  332. # sensor to reach target → soak
  333. # - Chamber sensor only (X1C/P2S): M140 only → wait for radiant chamber
  334. # warm-up to reach target OR max-wait timeout → soak
  335. # - No chamber sensor (P1S/P1P/A1/A1 Mini): M140 only → fixed soak timer
  336. # (no way to verify chamber temp; relies entirely on max_wait + soak)
  337. # Chamber target derives per-print from the loaded AMS filament types via
  338. # preheat_filament_targets (max across loaded slots). A target of 0 skips
  339. # the chamber phase but keeps the bed phase + soak. Per-queue-item
  340. # `preheat_chamber_target_override` (nullable) bypasses the derivation.
  341. preheat_enabled: bool = Field(
  342. default=False,
  343. description="Master toggle / default for new queue items. Per-item preheat_override can flip the decision per print.",
  344. )
  345. preheat_filament_targets: str = Field(
  346. default="",
  347. description=(
  348. "JSON map of normalized filament type → chamber target °C. Empty = bundled defaults "
  349. "(PLA/PETG/TPU/PVA: 0, PETG-CF: 40, ABS/ASA: 45, PA/PC/PC-FR: 50, PA-CF: 55, default: 0). "
  350. "Scheduler picks max across loaded AMS slots; 0 disables chamber phase for that print."
  351. ),
  352. )
  353. preheat_max_wait_seconds: int = Field(
  354. default=900,
  355. ge=60,
  356. le=3600,
  357. description="Maximum time to wait for the chamber to reach the target before falling through to the soak phase (radiant heating on X1C/P2S can take 15-30 min).",
  358. )
  359. preheat_soak_seconds: int = Field(
  360. default=300,
  361. ge=0,
  362. le=1800,
  363. description="Additional hold time at temperature after the chamber reaches the target (or after max_wait_seconds elapses). 0 = no soak.",
  364. )
  365. # User-configurable presets for the printer-card temperature / fan-speed
  366. # popovers. Each is a JSON array of exactly 3 ints (the "Off" button is
  367. # rendered separately and is not configurable). Empty string = use built-in
  368. # defaults. Validators on AppSettingsUpdate enforce the shape on writes.
  369. nozzle_temp_presets: str = Field(
  370. default="",
  371. description="JSON array of 3 nozzle-temperature preset values in C (0-320). Empty = use defaults [120, 220, 260]",
  372. )
  373. bed_temp_presets: str = Field(
  374. default="",
  375. description="JSON array of 3 bed-temperature preset values in C (0-140). Empty = use defaults [55, 75, 90]",
  376. )
  377. chamber_temp_presets: str = Field(
  378. default="",
  379. description="JSON array of 3 chamber-temperature preset values in C (0-60). Empty = use defaults [35, 45, 60]",
  380. )
  381. fan_speed_presets: str = Field(
  382. default="",
  383. description="JSON array of 3 fan-speed preset values in % (0-100). Empty = use defaults [50, 75, 100]",
  384. )
  385. # Local login (#1589) — when False, /auth/login rejects username+password
  386. # credentials with HTTP 403 and the login page hides the credentials form,
  387. # leaving only the OIDC SSO provider buttons. LDAP is governed by its own
  388. # `ldap_enabled` toggle and is not affected. The env-var
  389. # ``BAMBUDDY_LOCAL_LOGIN=true`` bypasses this gate at the route level so a
  390. # server admin can recover an install whose SSO provider is unreachable
  391. # without editing the DB.
  392. local_login_enabled: bool = Field(
  393. default=True,
  394. description=(
  395. "Allow username + password login on /auth/login. Disable when only SSO should be usable. "
  396. "BAMBUDDY_LOCAL_LOGIN=true on the server overrides this to keep a recovery path open."
  397. ),
  398. )
  399. # LDAP authentication (#794)
  400. ldap_enabled: bool = Field(default=False, description="Enable LDAP authentication")
  401. ldap_server_url: str = Field(default="", description="LDAP server URL (e.g., ldap://ldap.example.com:389)")
  402. ldap_bind_dn: str = Field(default="", description="Bind DN for LDAP searches (e.g., cn=admin,dc=example,dc=com)")
  403. ldap_bind_password: str = Field(default="", description="Bind password for LDAP searches")
  404. ldap_search_base: str = Field(default="", description="Search base DN (e.g., ou=users,dc=example,dc=com)")
  405. ldap_user_filter: str = Field(
  406. default="(sAMAccountName={username})",
  407. description="LDAP user search filter. {username} is replaced with the login username",
  408. )
  409. ldap_security: str = Field(default="starttls", description="LDAP security: 'starttls' or 'ldaps'")
  410. ldap_group_mapping: str = Field(
  411. default="",
  412. description="JSON: LDAP group to BamBuddy group mapping {ldap_group_dn: bambuddy_group_name}",
  413. )
  414. ldap_auto_provision: bool = Field(
  415. default=False,
  416. description="Auto-create BamBuddy user on first successful LDAP login",
  417. )
  418. ldap_default_group: str = Field(
  419. default="",
  420. description="Fallback BamBuddy group name assigned when an LDAP user authenticates but has no mapped groups. Empty = no fallback.",
  421. )
  422. # Obico AI failure detection (#172)
  423. obico_enabled: bool = Field(default=False, description="Enable Obico AI print failure detection")
  424. obico_ml_url: str = Field(
  425. default="",
  426. description="Self-hosted Obico ML API base URL (e.g., http://192.168.1.10:3333)",
  427. )
  428. obico_sensitivity: str = Field(
  429. default="medium",
  430. description="Detection sensitivity: 'low', 'medium', or 'high' (adjusts LOW/HIGH thresholds)",
  431. )
  432. obico_action: str = Field(
  433. default="notify",
  434. description="Action on detected failure: 'notify', 'pause', or 'pause_and_off'",
  435. )
  436. obico_poll_interval: int = Field(
  437. default=10,
  438. ge=5,
  439. le=120,
  440. description="Seconds between detection checks while a print is running",
  441. )
  442. obico_enabled_printers: str = Field(
  443. default="",
  444. description="JSON array of printer IDs to monitor (empty = all connected printers)",
  445. )
  446. # Inventory forecasting
  447. forecast_global_lead_time_days: int = Field(
  448. default=0,
  449. ge=0,
  450. description="Global lead time floor (days) used in reorder point calculation for all SKUs",
  451. )
  452. # Default sidebar order (admin-set for all users)
  453. default_sidebar_order: str = Field(
  454. default="",
  455. description="JSON object with 'order' key containing array of sidebar item IDs (empty = no default)",
  456. )
  457. class AppSettingsUpdate(BaseModel):
  458. """Schema for updating settings (all fields optional)."""
  459. auto_archive: bool | None = None
  460. save_thumbnails: bool | None = None
  461. capture_finish_photo: bool | None = None
  462. finish_photo_restore_plate: bool | None = None
  463. default_filament_cost: float | None = None
  464. currency: str | None = None
  465. energy_cost_per_kwh: float | None = None
  466. energy_tracking_mode: str | None = None
  467. spoolman_enabled: bool | None = None
  468. spoolman_url: str | None = None
  469. spoolman_sync_mode: str | None = None
  470. spoolman_disable_weight_sync: bool | None = None
  471. spoolman_report_partial_usage: bool | None = None
  472. auto_add_unknown_rfid: bool | None = None
  473. disable_filament_warnings: bool | None = None
  474. prefer_lowest_filament: bool | None = None
  475. check_updates: bool | None = None
  476. check_printer_firmware: bool | None = None
  477. include_beta_updates: bool | None = None
  478. local_login_enabled: bool | None = None
  479. language: str | None = None
  480. notification_language: str | None = None
  481. bed_cooled_threshold: float | None = None
  482. ams_humidity_good: int | None = None
  483. ams_humidity_fair: int | None = None
  484. ams_temp_good: float | None = None
  485. ams_temp_fair: float | None = None
  486. ams_history_retention_days: int | None = None
  487. printer_sensor_history_retention_days: int | None = None
  488. queue_drying_enabled: bool | None = None
  489. queue_drying_block: bool | None = None
  490. ambient_drying_enabled: bool | None = None
  491. print_drying_enabled: bool | None = None
  492. drying_presets: str | None = None
  493. ams_humidity_thresholds: str | None = None
  494. per_printer_mapping_expanded: bool | None = None
  495. date_format: str | None = None
  496. time_format: str | None = None
  497. default_printer_id: int | None = None
  498. pipeline_max_copies: int | None = None
  499. virtual_printer_enabled: bool | None = None
  500. virtual_printer_access_code: str | None = None
  501. virtual_printer_mode: str | None = None
  502. virtual_printer_archive_name_source: str | None = None
  503. dark_style: str | None = None
  504. dark_background: str | None = None
  505. dark_accent: str | None = None
  506. light_style: str | None = None
  507. light_background: str | None = None
  508. light_accent: str | None = None
  509. ftp_retry_enabled: bool | None = None
  510. ftp_retry_count: int | None = None
  511. ftp_retry_delay: int | None = None
  512. ftp_timeout: int | None = None
  513. mqtt_enabled: bool | None = None
  514. mqtt_broker: str | None = None
  515. mqtt_port: int | None = None
  516. mqtt_username: str | None = None
  517. mqtt_password: str | None = None
  518. mqtt_topic_prefix: str | None = None
  519. mqtt_use_tls: bool | None = None
  520. external_url: str | None = None
  521. ha_enabled: bool | None = None
  522. ha_url: str | None = None
  523. ha_token: str | None = None
  524. library_archive_mode: str | None = None
  525. library_disk_warning_gb: float | None = None
  526. camera_view_mode: str | None = None
  527. preferred_slicer: str | None = None
  528. open_in_slicer: str | None = None
  529. use_slicer_api: bool | None = None
  530. orcaslicer_api_url: str | None = None
  531. bambu_studio_api_url: str | None = None
  532. prometheus_enabled: bool | None = None
  533. prometheus_token: str | None = None
  534. low_stock_threshold: float | None = Field(default=None, ge=0.1, le=99.9)
  535. session_max_hours: int | None = Field(default=None, ge=1, le=720)
  536. user_notifications_enabled: bool | None = None
  537. default_bed_levelling: TriState | None = None
  538. default_flow_cali: TriState | None = None
  539. default_vibration_cali: bool | None = None
  540. default_layer_inspect: bool | None = None
  541. default_timelapse: bool | None = None
  542. default_nozzle_offset_cali: TriState | None = None
  543. stagger_group_size: int | None = Field(default=None, ge=1, le=50)
  544. stagger_interval_minutes: int | None = Field(default=None, ge=1, le=60)
  545. require_plate_clear: bool | None = None
  546. queue_shortest_first: bool | None = None
  547. queue_max_concurrent_uploads: int | None = Field(default=None, ge=1, le=16)
  548. preheat_enabled: bool | None = None
  549. preheat_filament_targets: str | None = None
  550. preheat_max_wait_seconds: int | None = Field(default=None, ge=60, le=3600)
  551. preheat_soak_seconds: int | None = Field(default=None, ge=0, le=1800)
  552. nozzle_temp_presets: str | None = None
  553. bed_temp_presets: str | None = None
  554. chamber_temp_presets: str | None = None
  555. fan_speed_presets: str | None = None
  556. gcode_snippets: str | None = None
  557. local_backup_enabled: bool | None = None
  558. local_backup_schedule: str | None = None
  559. local_backup_time: str | None = None
  560. local_backup_retention: int | None = None
  561. local_backup_path: str | None = None
  562. ldap_enabled: bool | None = None
  563. ldap_server_url: str | None = None
  564. ldap_bind_dn: str | None = None
  565. ldap_bind_password: str | None = None
  566. ldap_search_base: str | None = None
  567. ldap_user_filter: str | None = None
  568. ldap_security: str | None = None
  569. ldap_group_mapping: str | None = None
  570. ldap_auto_provision: bool | None = None
  571. ldap_default_group: str | None = None
  572. obico_enabled: bool | None = None
  573. obico_ml_url: str | None = None
  574. obico_sensitivity: str | None = None
  575. obico_action: str | None = None
  576. obico_poll_interval: int | None = Field(default=None, ge=5, le=120)
  577. obico_enabled_printers: str | None = None
  578. default_sidebar_order: str | None = None
  579. forecast_global_lead_time_days: int | None = Field(default=None, ge=0)
  580. @field_validator(*LAN_SERVICE_URL_SETTINGS)
  581. @classmethod
  582. def validate_lan_service_url(cls, v: str | None, info: ValidationInfo) -> str | None:
  583. """Reject SSRF-unsafe outbound service URLs on save.
  584. Empty (and whitespace-only) is the documented "not configured / fall
  585. back to the env var" value for all four fields and must keep passing.
  586. Values that are not absolute URLs at all ("192.168.1.10:3333",
  587. "localhost:3333") are left alone rather than rejected. Two reasons:
  588. - They are inert. Every consumer of these four settings goes through
  589. httpx, which raises UnsupportedProtocol for a URL with no scheme, so
  590. no request is ever issued and there is nothing to guard against.
  591. - They were storable before this validator existed, and the settings
  592. UI is a plain text input with no scheme enforcement. Newly rejecting
  593. them would break saves that have nothing to do with the URL: the
  594. Obico panel, for one, sends obico_ml_url with every change and
  595. auto-saves, so one legacy value would block toggling detection on or
  596. off. A pre-existing misconfiguration should keep failing where it
  597. already failed (at request time), not spread to unrelated fields.
  598. ``urlparse`` is no help in telling the two apart — it reads
  599. "localhost:3333" as scheme "localhost" — so the test is the literal
  600. "://" that makes a string an absolute URL.
  601. """
  602. if v is None or not v.strip():
  603. return v
  604. candidate = v.strip()
  605. if "://" not in candidate:
  606. return v
  607. # Lazy-imported: schemas avoid top-level imports from api/routes,
  608. # matching the existing pattern in auth.py's _validate_icon_url.
  609. from backend.app.api.routes._url_safety import assert_safe_lan_service_url
  610. try:
  611. assert_safe_lan_service_url(candidate, label=info.field_name or "URL")
  612. except ValueError as exc:
  613. raise ValueError(str(exc)) from exc
  614. return v
  615. @field_validator("gcode_snippets")
  616. @classmethod
  617. def validate_gcode_snippets(cls, v: str | None) -> str | None:
  618. if v is None or v == "":
  619. return v
  620. try:
  621. parsed = json.loads(v)
  622. except json.JSONDecodeError:
  623. raise ValueError("gcode_snippets must be valid JSON or empty")
  624. if not isinstance(parsed, dict):
  625. raise ValueError("gcode_snippets must be a JSON object keyed by printer model")
  626. return v
  627. @field_validator("ldap_group_mapping")
  628. @classmethod
  629. def validate_ldap_group_mapping(cls, v: str | None) -> str | None:
  630. if v is None or v == "":
  631. return v
  632. try:
  633. parsed = json.loads(v)
  634. except json.JSONDecodeError:
  635. raise ValueError("ldap_group_mapping must be valid JSON or empty")
  636. if not isinstance(parsed, dict):
  637. raise ValueError("ldap_group_mapping must be a JSON object mapping LDAP group DNs to BamBuddy group names")
  638. return v
  639. @field_validator("obico_enabled_printers")
  640. @classmethod
  641. def validate_obico_enabled_printers(cls, v: str | None) -> str | None:
  642. if v is None or v == "":
  643. return v
  644. try:
  645. parsed = json.loads(v)
  646. except json.JSONDecodeError:
  647. raise ValueError("obico_enabled_printers must be valid JSON or empty")
  648. if not isinstance(parsed, list) or not all(isinstance(item, int) for item in parsed):
  649. raise ValueError("obico_enabled_printers must be a JSON array of printer IDs (integers)")
  650. return v
  651. @staticmethod
  652. def _validate_preset_triple(v: str | None, field_name: str, lo: int, hi: int) -> str | None:
  653. """Validate a JSON array of exactly 3 ints in [lo, hi]. Empty = defaults."""
  654. if v is None or v == "":
  655. return v
  656. try:
  657. parsed = json.loads(v)
  658. except json.JSONDecodeError:
  659. raise ValueError(f"{field_name} must be valid JSON or empty")
  660. if not isinstance(parsed, list) or len(parsed) != 3:
  661. raise ValueError(f"{field_name} must be a JSON array of exactly 3 integers")
  662. if not all(isinstance(item, int) and not isinstance(item, bool) for item in parsed):
  663. raise ValueError(f"{field_name} entries must all be integers")
  664. if not all(lo <= item <= hi for item in parsed):
  665. raise ValueError(f"{field_name} entries must each be in [{lo}, {hi}]")
  666. return v
  667. @field_validator("nozzle_temp_presets")
  668. @classmethod
  669. def validate_nozzle_temp_presets(cls, v: str | None) -> str | None:
  670. return cls._validate_preset_triple(v, "nozzle_temp_presets", 0, 320)
  671. @field_validator("bed_temp_presets")
  672. @classmethod
  673. def validate_bed_temp_presets(cls, v: str | None) -> str | None:
  674. return cls._validate_preset_triple(v, "bed_temp_presets", 0, 140)
  675. @field_validator("chamber_temp_presets")
  676. @classmethod
  677. def validate_chamber_temp_presets(cls, v: str | None) -> str | None:
  678. return cls._validate_preset_triple(v, "chamber_temp_presets", 0, 60)
  679. @field_validator("fan_speed_presets")
  680. @classmethod
  681. def validate_fan_speed_presets(cls, v: str | None) -> str | None:
  682. return cls._validate_preset_triple(v, "fan_speed_presets", 0, 100)
  683. @field_validator("obico_sensitivity")
  684. @classmethod
  685. def validate_obico_sensitivity(cls, v: str | None) -> str | None:
  686. if v is None:
  687. return v
  688. if v not in ("low", "medium", "high"):
  689. raise ValueError("obico_sensitivity must be 'low', 'medium', or 'high'")
  690. return v
  691. @field_validator("obico_action")
  692. @classmethod
  693. def validate_obico_action(cls, v: str | None) -> str | None:
  694. if v is None:
  695. return v
  696. if v not in ("notify", "pause", "pause_and_off"):
  697. raise ValueError("obico_action must be 'notify', 'pause', or 'pause_and_off'")
  698. return v
  699. @field_validator("default_sidebar_order")
  700. @classmethod
  701. def validate_default_sidebar_order(cls, v: str | None) -> str | None:
  702. if v is None or v == "":
  703. return v
  704. try:
  705. parsed = json.loads(v)
  706. except json.JSONDecodeError:
  707. raise ValueError("default_sidebar_order must be valid JSON or empty")
  708. if isinstance(parsed, dict):
  709. order = parsed.get("order")
  710. hidden_system_item_ids = parsed.get("hiddenSystemItemIds", [])
  711. if not isinstance(hidden_system_item_ids, list) or not all(
  712. isinstance(item, str) for item in hidden_system_item_ids
  713. ):
  714. raise ValueError("sidebar hidden system item IDs must be an array of strings")
  715. elif isinstance(parsed, list):
  716. order = parsed
  717. else:
  718. raise ValueError("default_sidebar_order must be a JSON object with 'order' key or a JSON array")
  719. if not isinstance(order, list) or not all(isinstance(item, str) for item in order):
  720. raise ValueError("sidebar order must be an array of strings")
  721. return v