answers.py 9.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291
  1. from django import forms
  2. from django.core.exceptions import PermissionDenied
  3. from django.utils import timezone
  4. from django.utils.translation import ugettext_lazy as _, ungettext
  5. from misago.acl import algebra
  6. from misago.acl.decorators import return_boolean
  7. from misago.categories.models import Category, CategoryRole
  8. from misago.categories.permissions import get_categories_roles
  9. from misago.core.forms import YesNoSwitch
  10. from misago.threads.models import Post
  11. __all__nope = [
  12. 'allow_select_answer',
  13. 'can_select_answer',
  14. 'allow_remove_answer',
  15. 'can_remove_answer',
  16. ]
  17. class CategoryPermissionsForm(forms.Form):
  18. legend = _("Answers")
  19. can_set_answers = forms.TypedChoiceField(
  20. label=_("Can set answers"),
  21. coerce=int,
  22. initial=0,
  23. choices=[
  24. (0, _("No")),
  25. (1, _("Own threads")),
  26. (2, _("All threads")),
  27. ],
  28. )
  29. can_change_answers = forms.TypedChoiceField(
  30. label=_("Can change answers"),
  31. coerce=int,
  32. initial=0,
  33. choices=[
  34. (0, _("No")),
  35. (1, _("Own threads")),
  36. (2, _("All threads")),
  37. ],
  38. )
  39. answer_change_time = forms.IntegerField(
  40. label=_("Time limit for owned thread answer change, in minutes"),
  41. help_text=_("Enter 0 to don't limit time for changing own thread answer."),
  42. initial=0,
  43. min_value=0,
  44. )
  45. def change_permissions_form(role):
  46. if isinstance(role, CategoryRole):
  47. return CategoryPermissionsForm
  48. else:
  49. return None
  50. def build_acl(acl, roles, key_name):
  51. categories_roles = get_categories_roles(roles)
  52. categories = list(Category.objects.all_categories(include_root=True))
  53. for category in categories:
  54. category_acl = acl['categories'].get(category.pk, {'can_browse': 0})
  55. if category_acl['can_browse']:
  56. category_acl = acl['categories'][category.pk] = build_category_acl(
  57. category_acl, category, categories_roles, key_name
  58. )
  59. return acl
  60. def build_category_acl(acl, category, categories_roles, key_name):
  61. category_roles = categories_roles.get(category.pk, [])
  62. final_acl = {
  63. 'can_set_answers': 0,
  64. 'can_change_answers': 0,
  65. 'answer_change_time': 0,
  66. }
  67. final_acl.update(acl)
  68. algebra.sum_acls(
  69. final_acl,
  70. roles=category_roles,
  71. key=key_name,
  72. can_set_answers=algebra.greater,
  73. can_change_answers=algebra.greater,
  74. answer_change_time=algebra.greater_or_zero,
  75. )
  76. return final_acl
  77. def add_acl_to_post(user, post):
  78. post.acl.update({
  79. 'can_set_answer': can_set_answer(user, post),
  80. 'can_unset_answer': can_unset_answer(user, post),
  81. })
  82. def register_with(registry):
  83. registry.acl_annotator(Post, add_acl_to_post)
  84. def allow_set_answer(user, target):
  85. if user.is_anonymous:
  86. raise PermissionDenied(_("You have to sign in to set posts as answers."))
  87. if target.is_event:
  88. raise PermissionDenied(_("Events can't be set as answers."))
  89. category_acl = user.acl_cache['categories'].get(
  90. target.category_id, {
  91. 'can_set_answers': 0,
  92. }
  93. )
  94. if not category_acl['can_set_answers']:
  95. raise PermissionDenied(
  96. _(
  97. 'You don\'t have permission to set answers in the "%(category)s" category.'
  98. ) % {
  99. 'category': target.category,
  100. }
  101. )
  102. if category_acl['can_set_answers'] == 1 and target.thread.starter != user:
  103. raise PermissionDenied(
  104. _(
  105. "You dont't have permission to set this post as an answer "
  106. "because you are not the thread starter."
  107. )
  108. )
  109. if target.is_first_post:
  110. raise PermissionDenied(_("First post in a thread can't be set as an answer."))
  111. if target.is_hidden:
  112. raise PermissionDenied(_("Hidden posts can't be set as answers."))
  113. if target.is_unapproved:
  114. raise PermissionDenied(_("Unapproved posts can't be set as answers."))
  115. if target.is_answer:
  116. raise PermissionDenied(_("This post is already set as an answer."))
  117. if target.thread.answer_id:
  118. if not category_acl['can_change_answers']:
  119. raise PermissionDenied(_("You don't have permission to change selected answer."))
  120. if category_acl['can_change_answers'] == 1 and not has_time_to_change_answer(user, target):
  121. raise PermissionDenied(
  122. ungettext(
  123. (
  124. "You don't have permission to change thread's answer that was set "
  125. "for more than %(minutes)s minute."),
  126. (
  127. "You don't have permission to change thread's answer that was set "
  128. "for more than %(minutes)s minutes."),
  129. category_acl['answer_change_time'],
  130. ) % {
  131. 'minutes': category_acl['answer_change_time'],
  132. }
  133. )
  134. if target.thread.answer_is_protected and not category_acl['can_protect_posts']:
  135. raise PermissionDenied(
  136. _(
  137. "You don't have permission to change this thread's answer because moderator "
  138. "has protected it."
  139. )
  140. )
  141. if not category_acl['can_close_threads']:
  142. if target.category.is_closed:
  143. raise PermissionDenied(
  144. _(
  145. 'You can\'t sets this post as an answer because it\'s category '
  146. '"%(category)s" is closed.'
  147. ) % {
  148. 'category': target.category,
  149. }
  150. )
  151. if target.thread.is_closed:
  152. raise PermissionDenied(
  153. _(
  154. "You can't set this post as an answer because it's thread is closed and you "
  155. "don't have permission to open it."
  156. )
  157. )
  158. if target.is_protected and not category_acl['can_protect_posts']:
  159. raise PermissionDenied(
  160. _("You can't sets this post as an answer because moderator has protected it.")
  161. )
  162. can_set_answer = return_boolean(allow_set_answer)
  163. def allow_unset_answer(user, target):
  164. if user.is_anonymous:
  165. raise PermissionDenied(_("You have to sign in to unset threads answers."))
  166. category_acl = user.acl_cache['categories'].get(
  167. target.category_id, {
  168. 'can_change_answers': 0,
  169. }
  170. )
  171. if not category_acl['can_change_answers']:
  172. raise PermissionDenied(
  173. _(
  174. 'You don\'t have permission to unset threads answers in the "%(category)s" '
  175. 'category.'
  176. ) % {
  177. 'category': target.category,
  178. }
  179. )
  180. if not target.is_answer:
  181. raise PermissionDenied(
  182. _(
  183. "You can't unset."
  184. )
  185. )
  186. if category_acl['can_change_answers'] == 1:
  187. if target.thread.starter != user:
  188. raise PermissionDenied(
  189. _(
  190. "You dont't have permission to unset this answer because "
  191. "you are not a thread starter."
  192. )
  193. )
  194. if not has_time_to_change_answer(user, target):
  195. raise PermissionDenied(
  196. ungettext(
  197. (
  198. "You don't have permission to change thread's answer that was set "
  199. "for more than %(minutes)s minute."),
  200. (
  201. "You don't have permission to change thread's answer that was set "
  202. "for more than %(minutes)s minutes."),
  203. category_acl['answer_change_time'],
  204. ) % {
  205. 'minutes': category_acl['answer_change_time'],
  206. }
  207. )
  208. if not category_acl['can_close_threads']:
  209. if target.category.is_closed:
  210. raise PermissionDenied(
  211. _(
  212. 'You can\'t unset this answer because it\'s scategory "%(category)s" is closed.'
  213. ) % {
  214. 'category': target.category,
  215. }
  216. )
  217. if target.thread.is_closed:
  218. raise PermissionDenied(
  219. _(
  220. "You don't have permission to unset this answer because it's thread is closed "
  221. "and you don't have permission to open it."
  222. )
  223. )
  224. if target.is_protected and not category_acl['can_protect_posts']:
  225. raise PermissionDenied(
  226. _(
  227. "You don't have permission to unset this thread's answer because moderator has "
  228. "protected it."
  229. )
  230. )
  231. can_unset_answer = return_boolean(allow_unset_answer)
  232. def has_time_to_change_answer(user, target):
  233. category_acl = user.acl_cache['categories'].get(target.category_id, {})
  234. change_time = category_acl.get('answer_change_time', 0)
  235. if change_time:
  236. diff = timezone.now() - target.thread.answer_set_on
  237. diff_minutes = int(diff.total_seconds() / 60)
  238. return diff_minutes < change_time
  239. else:
  240. return True