[880] | 1 | from AccessControl import ClassSecurityInfo |
---|
| 2 | from ExtensionClass import Base |
---|
| 3 | from Acquisition import Implicit |
---|
| 4 | from Acquisition import aq_base, aq_parent, aq_inner |
---|
| 5 | |
---|
| 6 | security = ClassSecurityInfo() |
---|
| 7 | |
---|
| 8 | security.declarePublic('getRolesInContext') |
---|
| 9 | def getRolesInContext(self, object): |
---|
[881] | 10 | """Get the list of roles assigned to the user. |
---|
| 11 | This includes local roles assigned in the context of |
---|
| 12 | the passed in object. |
---|
| 13 | Knows about local roles blocking (roles starting with '-'). |
---|
| 14 | """ |
---|
[880] | 15 | name = self.getUserName() |
---|
| 16 | roles = self.getRoles() |
---|
[881] | 17 | # deal with groups |
---|
| 18 | groups = self.getComputedGroups() |
---|
| 19 | # end groups |
---|
[880] | 20 | local = {} |
---|
| 21 | stop_loop = 0 |
---|
[881] | 22 | real_object = object |
---|
[880] | 23 | object = aq_inner(object) |
---|
| 24 | while 1: |
---|
| 25 | # Collect all roles info |
---|
| 26 | lrd = {} |
---|
| 27 | local_roles = getattr(object, '__ac_local_roles__', None) |
---|
| 28 | if local_roles: |
---|
| 29 | if callable(local_roles): |
---|
| 30 | local_roles = local_roles() or {} |
---|
| 31 | for r in local_roles.get(name, ()): |
---|
| 32 | if r: |
---|
| 33 | lrd[r] = None |
---|
| 34 | local_group_roles = getattr(object, '__ac_local_group_roles__', None) |
---|
| 35 | if local_group_roles: |
---|
| 36 | if callable(local_group_roles): |
---|
| 37 | local_group_roles = local_group_roles() or {} |
---|
| 38 | for g in groups: |
---|
| 39 | for r in local_group_roles.get(g, ()): |
---|
| 40 | if r: |
---|
| 41 | lrd[r] = None |
---|
| 42 | lr = lrd.keys() |
---|
| 43 | # Positive role assertions |
---|
| 44 | for r in lr: |
---|
| 45 | if r[0] != '-': |
---|
| 46 | if not local.has_key(r): |
---|
| 47 | local[r] = 1 # acquired role |
---|
| 48 | # Negative (blocking) role assertions |
---|
| 49 | for r in lr: |
---|
| 50 | if r[0] == '-': |
---|
| 51 | r = r[1:] |
---|
| 52 | if not r: |
---|
| 53 | # role '-' blocks all acquisition |
---|
| 54 | stop_loop = 1 |
---|
| 55 | break |
---|
| 56 | if not local.has_key(r): |
---|
| 57 | local[r] = 0 # blocked role |
---|
| 58 | if stop_loop: |
---|
| 59 | break |
---|
[881] | 60 | if hasattr(object, 'aq_parent'): |
---|
| 61 | object = aq_inner(object.aq_parent) |
---|
[880] | 62 | continue |
---|
| 63 | if hasattr(object, 'im_self'): |
---|
[881] | 64 | object = aq_inner(object.im_self) |
---|
[880] | 65 | continue |
---|
| 66 | break |
---|
| 67 | roles = list(roles) |
---|
| 68 | for r, v in local.items(): |
---|
| 69 | if v: # only if not blocked |
---|
| 70 | roles.append(r) |
---|
| 71 | ## patch to assign dynamic roles for WAeUP |
---|
| 72 | while 1: |
---|
[1035] | 73 | if callable(real_object) and hasattr(real_object,'im_self'): |
---|
| 74 | real_object = real_object.im_self |
---|
| 75 | if hasattr(real_object,'portal_type') and\ |
---|
| 76 | real_object.portal_type not in ("Student","StudentClearance"): |
---|
[880] | 77 | break |
---|
[902] | 78 | sc = getattr(real_object,'study_course',None) |
---|
| 79 | if sc is None: |
---|
| 80 | break |
---|
[1471] | 81 | sc_obj = sc.getContent() |
---|
| 82 | res_sc = self.portal_catalog(portal_type="Certificate", |
---|
| 83 | id = sc_obj.study_course) |
---|
| 84 | if len(res_sc) != 1: |
---|
| 85 | break |
---|
| 86 | cert_path = res_sc[0].getPath().split('/') |
---|
| 87 | fac_id = cert_path[-4] |
---|
| 88 | dep_id = cert_path[-3] |
---|
| 89 | |
---|
| 90 | |
---|
| 91 | # temporary sel-healing function |
---|
| 92 | # deprecated after reindexing the students_catalog |
---|
[1076] | 93 | student_id = self.getStudentId() |
---|
| 94 | res = self.students_catalog(id=student_id) |
---|
[1066] | 95 | if len(res) != 1: |
---|
| 96 | break |
---|
[1471] | 97 | self.students_catalog.modifyRecord(id = student_id, |
---|
| 98 | faculty = fac_id, |
---|
| 99 | department = dep_id, |
---|
| 100 | ) |
---|
| 101 | |
---|
| 102 | |
---|
[881] | 103 | res = self.portal_catalog(portal_type="Department",id=dep_id) |
---|
[880] | 104 | if len(res) != 1: |
---|
[1471] | 105 | break |
---|
[880] | 106 | dynamic_roles = self.getRolesInContext(res[0].getObject()) |
---|
[1066] | 107 | for dr in ('ClearanceOfficer','CourseAdviser', 'SectionManager'): |
---|
[880] | 108 | if dr in dynamic_roles: |
---|
| 109 | roles.append(dr) |
---|
| 110 | break |
---|
| 111 | return roles |
---|
| 112 | |
---|
[881] | 113 | from Products.CPSUserFolder.CPSUserFolder import CPSUser |
---|
| 114 | CPSUser.getRolesInContext = getRolesInContext |
---|