0003_default_roles.py 7.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256
  1. # -*- coding: utf-8 -*-
  2. from __future__ import unicode_literals
  3. from django.db import migrations
  4. from django.utils.translation import ugettext as _
  5. from misago.core import serializer
  6. def pickle_permissions(role, permissions):
  7. role.pickled_permissions = serializer.dumps(permissions)
  8. def create_default_roles(apps, schema_editor):
  9. Role = apps.get_model('misago_acl', 'Role')
  10. role = Role(name=_("Member"), special_role='authenticated')
  11. pickle_permissions(
  12. role,
  13. {
  14. # account
  15. 'misago.users.permissions.account': {
  16. 'name_changes_allowed': 2,
  17. 'name_changes_expire': 180,
  18. 'can_have_signature': 0,
  19. 'allow_signature_links': 0,
  20. 'allow_signature_images': 0,
  21. },
  22. # profiles
  23. 'misago.users.permissions.profiles': {
  24. 'can_browse_users_list': 1,
  25. 'can_search_users': 1,
  26. 'can_follow_users': 1,
  27. 'can_be_blocked': 1,
  28. 'can_see_users_name_history': 0,
  29. 'can_see_users_emails': 0,
  30. 'can_see_users_ips': 0,
  31. 'can_see_hidden_users': 0,
  32. },
  33. # attachments
  34. 'misago.threads.permissions.attachments': {
  35. 'max_attachment_size': 4 * 1024,
  36. 'can_download_other_users_attachments': True,
  37. },
  38. # delete users
  39. 'misago.users.permissions.delete': {
  40. 'can_delete_users_newer_than': 0,
  41. 'can_delete_users_with_less_posts_than': 0,
  42. },
  43. })
  44. role.save()
  45. role = Role(name=_("Guest"), special_role='anonymous')
  46. pickle_permissions(
  47. role,
  48. {
  49. # account
  50. 'misago.users.permissions.account': {
  51. 'name_changes_allowed': 0,
  52. 'name_changes_expire': 0,
  53. 'can_have_signature': 0,
  54. 'allow_signature_links': 0,
  55. 'allow_signature_images': 0,
  56. },
  57. # profiles
  58. 'misago.users.permissions.profiles': {
  59. 'can_browse_users_list': 1,
  60. 'can_search_users': 1,
  61. 'can_see_users_name_history': 0,
  62. 'can_see_users_emails': 0,
  63. 'can_see_users_ips': 0,
  64. 'can_see_hidden_users': 0,
  65. },
  66. # attachments
  67. 'misago.threads.permissions.attachments': {
  68. 'can_download_other_users_attachments': True,
  69. },
  70. # delete users
  71. 'misago.users.permissions.delete': {
  72. 'can_delete_users_newer_than': 0,
  73. 'can_delete_users_with_less_posts_than': 0,
  74. },
  75. })
  76. role.save()
  77. role = Role(name=_("Moderator"))
  78. pickle_permissions(
  79. role,
  80. {
  81. # account
  82. 'misago.users.permissions.account': {
  83. 'name_changes_allowed': 5,
  84. 'name_changes_expire': 14,
  85. 'can_have_signature': 1,
  86. 'allow_signature_links': 1,
  87. 'allow_signature_images': 0,
  88. },
  89. # profiles
  90. 'misago.users.permissions.profiles': {
  91. 'can_browse_users_list': 1,
  92. 'can_search_users': 1,
  93. 'can_be_blocked': 0,
  94. 'can_see_users_name_history': 1,
  95. 'can_see_ban_details': 1,
  96. 'can_see_users_emails': 1,
  97. 'can_see_users_ips': 1,
  98. 'can_see_hidden_users': 1,
  99. },
  100. # warnings
  101. 'misago.users.permissions.warnings': {
  102. 'can_see_other_users_warnings': 1,
  103. 'can_warn_users': 1,
  104. 'can_cancel_warnings': 1,
  105. 'can_be_warned': 0,
  106. },
  107. # attachments
  108. 'misago.threads.permissions.attachments': {
  109. 'max_attachment_size': 8 * 1024,
  110. 'can_download_other_users_attachments': True,
  111. 'can_delete_other_users_attachments': True,
  112. },
  113. # moderation
  114. 'misago.threads.permissions.threads': {
  115. 'can_see_unapproved_content_lists': True,
  116. 'can_see_reported_content_lists': True,
  117. 'can_omit_flood_protection': True,
  118. },
  119. 'misago.users.permissions.moderation': {
  120. 'can_warn_users': 1,
  121. 'can_moderate_avatars': 1,
  122. 'can_moderate_signatures': 1,
  123. },
  124. # delete users
  125. 'misago.users.permissions.delete': {
  126. 'can_delete_users_newer_than': 0,
  127. 'can_delete_users_with_less_posts_than': 0,
  128. },
  129. })
  130. role.save()
  131. role = Role(name=_("See warnings"))
  132. pickle_permissions(
  133. role,
  134. {
  135. # warnings
  136. 'misago.users.permissions.warnings': {
  137. 'can_see_other_users_warnings': 1,
  138. },
  139. })
  140. role.save()
  141. role = Role(name=_("Renaming users"))
  142. pickle_permissions(
  143. role,
  144. {
  145. # rename users
  146. 'misago.users.permissions.moderation': {
  147. 'can_rename_users': 1,
  148. },
  149. })
  150. role.save()
  151. role = Role(name=_("Banning users"))
  152. pickle_permissions(
  153. role,
  154. {
  155. # ban users
  156. 'misago.users.permissions.profiles': {
  157. 'can_see_ban_details': 1,
  158. },
  159. 'misago.users.permissions.moderation': {
  160. 'can_ban_users': 1,
  161. 'max_ban_length': 14,
  162. 'can_lift_bans': 1,
  163. 'max_lifted_ban_length': 14,
  164. },
  165. })
  166. role.save()
  167. role = Role(name=_("Deleting users"))
  168. pickle_permissions(
  169. role,
  170. {
  171. # delete users
  172. 'misago.users.permissions.delete': {
  173. 'can_delete_users_newer_than': 3,
  174. 'can_delete_users_with_less_posts_than': 7,
  175. },
  176. })
  177. role.save()
  178. role = Role(name=_("Can't be blocked"))
  179. pickle_permissions(
  180. role,
  181. {
  182. # profiles
  183. 'misago.users.permissions.profiles': {
  184. 'can_be_blocked': 0,
  185. },
  186. })
  187. role.save()
  188. role = Role(name=_("Private threads"))
  189. pickle_permissions(
  190. role,
  191. {
  192. # private threads
  193. 'misago.threads.permissions.privatethreads': {
  194. 'can_use_private_threads': 1,
  195. 'can_start_private_threads': 1,
  196. 'max_private_thread_participants': 3,
  197. 'can_add_everyone_to_private_threads': 0,
  198. 'can_report_private_threads': 1,
  199. 'can_moderate_private_threads': 0,
  200. },
  201. })
  202. role.save()
  203. role = Role(name=_("Private threads moderator"))
  204. pickle_permissions(
  205. role,
  206. {
  207. # private threads
  208. 'misago.threads.permissions.privatethreads': {
  209. 'can_use_private_threads': 1,
  210. 'can_start_private_threads': 1,
  211. 'max_private_thread_participants': 15,
  212. 'can_add_everyone_to_private_threads': 1,
  213. 'can_report_private_threads': 1,
  214. 'can_moderate_private_threads': 1,
  215. },
  216. })
  217. role.save()
  218. class Migration(migrations.Migration):
  219. dependencies = [
  220. ('misago_acl', '0002_acl_version_tracker'),
  221. ]
  222. operations = [
  223. migrations.RunPython(create_default_roles),
  224. ]