mirror of
https://github.com/xlorepdarkhelm/numinar-coding-project.git
synced 2026-09-06 00:08:25 -04:00
80 lines
4.0 KiB
Markdown
80 lines
4.0 KiB
Markdown
# Online Booking Application
|
|
|
|
## Cliff Hill's Coding Project
|
|
|
|
This is a full-stack application simulating an online booking system for conference rooms.
|
|
|
|
### Security concerns
|
|
|
|
There is no login or security in place with this project. However if set up with zero trust, an example scenario could use OpenID or similar login security, encrypted JWTs, secure connections could be established to the database as well as all traffic being moved to https rather than http, locking everything down to ensure that those who communicate with any part of this system are authenticated and have only the access that they are authorized. Each endpoint would need to be able to check that the user is authenticated and has a valid token that has not expired in order to be used.
|
|
|
|
There already is several pieces for helping secure the application on the backend, using the HyperModern Python cookiecutter and the tools it brings into play, however additional systems could be tied into github to help check things further (like New Relic).
|
|
|
|
### AI Use
|
|
|
|
I used AI to stub out a couple of files:
|
|
|
|
- The backend/Dockerfile and frontend/Dockerfile - to speed up the process of getting docker loaded efficiently for the project.
|
|
- The compose.yml file - getting the different images gathered together quickly.
|
|
- The compose.dev.yml file - used to get a further understanding of how to hook up an extension to the previous file.
|
|
- The mermaid diagrams used in this file.
|
|
- I have the CodeGPT plugin in VSCode, and it has helped with docstrings, logging messages, and sometimes reducing the time it takes me to write out the code.
|
|
|
|
### Running for production
|
|
|
|
The standard docker compose file is used to set up the project in the production environment, and can be run from the following command:
|
|
|
|
```bash
|
|
docker compose up
|
|
```
|
|
|
|
In this mode, only one port is exposed in docker - the port 3000, which is the frontend. Postgres and the backend ports are hidden.
|
|
|
|
### Local running
|
|
|
|
There is an alternative compose file specifically designed for running this project locally which allows for real-time editing and updating of either the frontend or backend components. The command ro tun everything locally is:
|
|
|
|
```bash
|
|
docker compose -f compose.dev.yml up
|
|
```
|
|
|
|
This compose file extends the standard compose file, adding in the necessary pieces to make the application usable in a local dev environment. In this configuration, the frontend is accessable from port 3000 like normal, the backend is accessable from port 8000, and postgres DB from 5432. The way this is set up, that command can easily be run in a separate terminal window during development for rapid testing of the piece(s) being worked on. Logging is at Debug level, and SQLAlchemy is set to echo mode, so queries are also logged. Realtime changes are reflected in the application as the code is run, and commands can be run locally from your terminal (like alembic) without needing to shell into the docker image.
|
|
|
|
### Diagrams
|
|
|
|
Docker Compose Components:
|
|
|
|
```mermaid
|
|
graph TD
|
|
subgraph Docker_Network
|
|
B[Frontend] -->|HTTP/REST: Port 8000| C[Backend]
|
|
C -->|SQL: Port 5432| D[PostgreSQL]
|
|
end
|
|
A[World] -->|HTTP: Port 3000| B
|
|
```
|
|
|
|
Backend Request Data Path:
|
|
|
|
```mermaid
|
|
sequenceDiagram
|
|
participant Frontend
|
|
participant FastAPI_Router as FastAPI Router
|
|
participant API_Endpoint as API Endpoint
|
|
participant Pydantic_Schema as Pydantic Schema
|
|
participant Service_Layer as Service Layer
|
|
participant Model
|
|
participant Database
|
|
|
|
Frontend->>FastAPI_Router: HTTP Request
|
|
FastAPI_Router->>API_Endpoint: Matches Route
|
|
API_Endpoint->>Pydantic_Schema: Validate Input
|
|
Pydantic_Schema-->>API_Endpoint: Validated Data
|
|
API_Endpoint->>Service_Layer: Pass Validated Data
|
|
Service_Layer->>Model: Apply Business Logic
|
|
Model->>Database: Perform DB Operations
|
|
Database-->>Model: Return Query Result
|
|
Model-->>Service_Layer: Return Processed Data
|
|
Service_Layer-->>API_Endpoint: Return Response Data
|
|
API_Endpoint-->>Frontend: HTTP Response
|
|
```
|