auth.py 2.6 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485
  1. from rest_framework import serializers
  2. from django.contrib.auth import get_user_model
  3. from django.urls import reverse
  4. from misago.acl import serialize_acl
  5. from .user import UserSerializer
  6. UserModel = get_user_model()
  7. __all__ = [
  8. 'AuthenticatedUserSerializer',
  9. 'AnonymousUserSerializer',
  10. ]
  11. class AuthFlags(object):
  12. def get_is_authenticated(self, obj):
  13. return bool(obj.is_authenticated)
  14. def get_is_anonymous(self, obj):
  15. return bool(obj.is_anonymous)
  16. class AuthenticatedUserSerializer(UserSerializer, AuthFlags):
  17. email = serializers.SerializerMethodField()
  18. is_authenticated = serializers.SerializerMethodField()
  19. is_anonymous = serializers.SerializerMethodField()
  20. class Meta:
  21. model = UserModel
  22. fields = UserSerializer.Meta.fields + [
  23. 'has_usable_password',
  24. 'is_hiding_presence',
  25. 'limits_private_thread_invites_to',
  26. 'unread_private_threads',
  27. 'subscribe_to_started_threads',
  28. 'subscribe_to_replied_threads',
  29. 'is_authenticated',
  30. 'is_anonymous',
  31. ]
  32. def get_acl(self, obj):
  33. return serialize_acl(obj)
  34. def get_email(self, obj):
  35. return obj.email
  36. def get_api(self, obj):
  37. return {
  38. 'avatar': reverse('misago:api:user-avatar', kwargs={'pk': obj.pk}),
  39. 'details': reverse('misago:api:user-details', kwargs={'pk': obj.pk}),
  40. 'change_email': reverse('misago:api:user-change-email', kwargs={'pk': obj.pk}),
  41. 'change_password': reverse('misago:api:user-change-password', kwargs={'pk': obj.pk}),
  42. 'edit_details': reverse('misago:api:user-edit-details', kwargs={'pk': obj.pk}),
  43. 'options': reverse('misago:api:user-forum-options', kwargs={'pk': obj.pk}),
  44. 'username': reverse('misago:api:user-username', kwargs={'pk': obj.pk}),
  45. 'delete': reverse('misago:api:user-delete-own-account', kwargs={'pk': obj.pk}),
  46. }
  47. AuthenticatedUserSerializer = AuthenticatedUserSerializer.exclude_fields(
  48. 'is_avatar_locked',
  49. 'is_blocked',
  50. 'is_followed',
  51. 'is_signature_locked',
  52. 'meta',
  53. 'signature',
  54. 'status',
  55. )
  56. class AnonymousUserSerializer(serializers.Serializer, AuthFlags):
  57. id = serializers.ReadOnlyField()
  58. acl = serializers.SerializerMethodField()
  59. is_authenticated = serializers.SerializerMethodField()
  60. is_anonymous = serializers.SerializerMethodField()
  61. def get_acl(self, obj):
  62. if hasattr(obj, 'acl_cache'):
  63. return serialize_acl(obj)
  64. else:
  65. return {}