models.py 5.46 KB
Newer Older
1
from itertools import chain
2 3
from logging import getLogger

4
from django.conf import settings
5
from django.contrib.auth.models import User, Group
6
from django.contrib.auth.signals import user_logged_in
7
from django.db.models import (
8 9
    Model, ForeignKey, OneToOneField, CharField, IntegerField, TextField,
    DateTimeField,
10
)
11 12 13 14 15 16
from django.template.loader import render_to_string
from django.utils.translation import ugettext_lazy as _, override

from model_utils.models import TimeStampedModel
from model_utils.fields import StatusField
from model_utils import Choices
17 18

from vm.models import Instance
19
from acl.models import AclBase
20

21 22
logger = getLogger(__name__)

23

24 25 26
class Favourite(Model):
    instance = ForeignKey(Instance)
    user = ForeignKey(User)
27 28


29 30 31 32 33 34 35 36 37
class Notification(TimeStampedModel):
    STATUS = Choices(('new', _('new')),
                     ('delivered', _('delivered')),
                     ('read', _('read')))

    status = StatusField()
    to = ForeignKey(User)
    subject = CharField(max_length=128)
    message = TextField()
38
    valid_until = DateTimeField(null=True, default=None)
39 40 41 42 43

    class Meta:
        ordering = ['-created']

    @classmethod
44
    def send(cls, user, subject, template, context={}, valid_until=None):
45 46 47 48 49 50 51 52
        try:
            language = user.profile.preferred_language
        except:
            language = None
        with override(language):
            context['user'] = user
            rendered = render_to_string(template, context)
            subject = unicode(subject)
53 54
        return cls.objects.create(to=user, subject=subject, message=rendered,
                                  valid_until=valid_until)
55 56


57 58 59 60 61 62 63 64 65
class Profile(Model):
    user = OneToOneField(User)
    preferred_language = CharField(verbose_name=_('preferred language'),
                                   choices=settings.LANGUAGES,
                                   max_length=32,
                                   default=settings.LANGUAGE_CODE, blank=False)
    org_id = CharField(  # may be populated from eduPersonOrgId field
        unique=True, blank=True, null=True, max_length=64,
        help_text=_('Unique identifier of the person, e.g. a student number.'))
66
    instance_limit = IntegerField(default=5)
67

68 69 70
    def notify(self, subject, template, context={}, valid_until=None):
        return Notification.send(self.user, subject, template, context,
                                 valid_until)
71

72

73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93
class GroupProfile(AclBase):
    ACL_LEVELS = (
        ('operator', _('operator')),
        ('owner', _('owner')),
    )

    group = OneToOneField(Group)
    org_id = CharField(
        unique=True, blank=True, null=True, max_length=64,
        help_text=_('Unique identifier of the group at the organization.'))
    description = TextField()

    @classmethod
    def search(cls, name):
        try:
            return cls.objects.get(org_id=name).group
        except cls.DoesNotExist:
            return Group.objects.get(name=name)


def get_or_create_profile(self):
94
    obj, created = GroupProfile.objects.get_or_create(group_id=self.pk)
95 96 97 98 99
    return obj

Group.profile = property(get_or_create_profile)


100
def create_profile(sender, user, request, **kwargs):
101 102
    if not user.pk:
        return False
103 104 105 106 107
    profile, created = Profile.objects.get_or_create(user=user)
    return created

user_logged_in.connect(create_profile)

108
if hasattr(settings, 'SAML_ORG_ID_ATTRIBUTE'):
109
    logger.debug("Register save_org_id to djangosaml2 pre_user_save")
110 111
    from djangosaml2.signals import pre_user_save

112
    def save_org_id(sender, **kwargs):
113
        logger.debug("save_org_id called by %s", sender.username)
114
        attributes = kwargs.pop('attributes')
115
        atr = settings.SAML_ORG_ID_ATTRIBUTE
116 117 118 119 120 121
        try:
            value = attributes[atr][0]
        except Exception as e:
            value = None
            logger.info("save_org_id couldn't find attribute. %s", unicode(e))

122 123 124 125
        if sender.pk is None:
            sender.save()
            logger.debug("save_org_id saved user %s", unicode(sender))

126 127
        profile, created = Profile.objects.get_or_create(user=sender)
        if created or profile.org_id != value:
128 129
            logger.info("org_id of %s added to user %s's profile",
                        value, sender.username)
130 131
            profile.org_id = value
            profile.save()
132 133 134
        else:
            logger.debug("org_id of %s already added to user %s's profile",
                         value, sender.username)
135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157
        memberatrs = getattr(settings, 'SAML_GROUP_ATTRIBUTES', [])
        for group in chain(*[attributes[i] for i in memberatrs]):
            try:
                g = GroupProfile.search(group)
            except Group.DoesNotExist:
                logger.debug('cant find membergroup %s', group)
            else:
                logger.debug('could find membergroup %s (%s)',
                             group, unicode(g))
                g.user_set.add(sender)

        owneratrs = getattr(settings, 'SAML_GROUP_OWNER_ATTRIBUTES', [])
        for group in chain(*[attributes[i] for i in owneratrs]):
            try:
                g = GroupProfile.search(group)
            except Group.DoesNotExist:
                logger.debug('cant find ownergroup %s', group)
            else:
                logger.debug('could find ownergroup %s (%s)',
                             group, unicode(g))
                g.profile.set_level(sender, 'owner')

        return False  # User did not change
158

159 160
    pre_user_save.connect(save_org_id)

161 162
else:
    logger.debug("Do not register save_org_id to djangosaml2 pre_user_save")