source: main/waeup.sirp/trunk/src/waeup/sirp/permissions.txt @ 7323

Last change on this file since 7323 was 7321, checked in by Henrik Bettermann, 13 years ago

Replace the term 'WAeUP' by SIRP which is a WAeUP product.

File size: 2.2 KB
Line 
1SIRP permissions and roles
2**************************
3
4Permissions and roles used in a SIRP portal.
5
6.. :doctest:
7.. :layer: waeup.sirp.testing.SIRPUnitTestLayer
8
9Convenience functions
10=====================
11
12:mod:`waeup.sirp` offers some convenience functions to handle security
13roles.
14
15:func:`get_all_roles`
16---------------------
17
18Gives us all roles defined in SIRP. We get tuples of
19kind
20
21  ``(<ROLE-NAME>, <ROLE>)``
22
23where ``<ROLE-NAME>`` is the name under which a role was registered
24with the ZCA (a string) and ``<ROLE>`` is the real role object.
25
26    >>> from waeup.sirp.permissions import get_all_roles
27    >>> get_all_roles()
28    <generator object...at 0x...>
29
30    >>> sorted(list(get_all_roles()))
31    [(u'waeup.ACManager', <waeup.sirp.permissions.ACManager object at 0x...]
32
33:func:`get_waeup_roles`
34-----------------------
35
36Gives us all roles, except the SIRP specific roles. We can get a list
37with or without local roles:
38
39    >>> from waeup.sirp.permissions import get_waeup_roles
40    >>> len(list(get_waeup_roles()))
41    10
42
43    >>> len(list(get_waeup_roles(also_local=True)))
44    16
45
46
47:func:`get_waeup_role_names`
48----------------------------
49
50We can get all role names defined in SIRP (except 'local'
51roles that are meant not to be assigned globally):
52
53    >>> from waeup.sirp.permissions import get_waeup_role_names
54    >>> list(get_waeup_role_names())
55    [u'waeup.ACManager', u'waeup.AcademicsOfficer',
56     u'waeup.AccommodationOfficer', u'waeup.Applicant',
57     u'waeup.ApplicationsOfficer',
58     u'waeup.PortalManager', u'waeup.Student',
59     u'waeup.StudentsClearanceOfficer', u'waeup.StudentsManager',
60     u'waeup.StudentsOfficer']
61
62:func:`get_users_with_local_roles`
63----------------------------------
64
65We can get all users and their roles for a certain context
66object. This even works for objects that cannot have local roles as
67they are not stored in the ZODB:
68
69    >>> from waeup.sirp.permissions import get_users_with_local_roles
70    >>> mycontext = object()
71    >>> people_and_roles = get_users_with_local_roles(mycontext)
72    >>> people_and_roles
73    <generator object...at 0x...>
74
75In this case, the result is empty:
76
77    >>> people_and_roles = list(people_and_roles)
78    >>> people_and_roles
79    []
Note: See TracBrowser for help on using the repository browser.