0003_default_roles.py 7.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270
  1. # -*- coding: utf-8 -*-
  2. from __future__ import unicode_literals
  3. from django.db import migrations
  4. from django.utils.translation import ugettext as _
  5. from misago.core import serializer
  6. def pickle_permissions(role, permissions):
  7. role.pickled_permissions = serializer.dumps(permissions)
  8. def create_default_roles(apps, schema_editor):
  9. Role = apps.get_model('misago_acl', 'Role')
  10. role = Role(name=_("Member"), special_role='authenticated')
  11. pickle_permissions(
  12. role,
  13. {
  14. # account
  15. 'misago.users.permissions.account': {
  16. 'name_changes_allowed': 2,
  17. 'name_changes_expire': 180,
  18. 'can_have_signature': 0,
  19. 'allow_signature_links': 0,
  20. 'allow_signature_images': 0,
  21. },
  22. # profiles
  23. 'misago.users.permissions.profiles': {
  24. 'can_browse_users_list': 1,
  25. 'can_search_users': 1,
  26. 'can_follow_users': 1,
  27. 'can_be_blocked': 1,
  28. 'can_see_users_name_history': 0,
  29. 'can_see_users_emails': 0,
  30. 'can_see_users_ips': 0,
  31. 'can_see_hidden_users': 0,
  32. },
  33. # attachments
  34. 'misago.threads.permissions.attachments': {
  35. 'max_attachment_size': 4 * 1024,
  36. 'can_download_other_users_attachments': True,
  37. },
  38. # polls
  39. 'misago.threads.permissions.polls': {
  40. 'can_start_polls': 1,
  41. 'can_edit_polls': 1
  42. },
  43. # delete users
  44. 'misago.users.permissions.delete': {
  45. 'can_delete_users_newer_than': 0,
  46. 'can_delete_users_with_less_posts_than': 0,
  47. },
  48. })
  49. role.save()
  50. role = Role(name=_("Guest"), special_role='anonymous')
  51. pickle_permissions(
  52. role,
  53. {
  54. # account
  55. 'misago.users.permissions.account': {
  56. 'name_changes_allowed': 0,
  57. 'name_changes_expire': 0,
  58. 'can_have_signature': 0,
  59. 'allow_signature_links': 0,
  60. 'allow_signature_images': 0,
  61. },
  62. # profiles
  63. 'misago.users.permissions.profiles': {
  64. 'can_browse_users_list': 1,
  65. 'can_search_users': 1,
  66. 'can_see_users_name_history': 0,
  67. 'can_see_users_emails': 0,
  68. 'can_see_users_ips': 0,
  69. 'can_see_hidden_users': 0,
  70. },
  71. # attachments
  72. 'misago.threads.permissions.attachments': {
  73. 'can_download_other_users_attachments': True,
  74. },
  75. # delete users
  76. 'misago.users.permissions.delete': {
  77. 'can_delete_users_newer_than': 0,
  78. 'can_delete_users_with_less_posts_than': 0,
  79. },
  80. })
  81. role.save()
  82. role = Role(name=_("Moderator"))
  83. pickle_permissions(
  84. role,
  85. {
  86. # account
  87. 'misago.users.permissions.account': {
  88. 'name_changes_allowed': 5,
  89. 'name_changes_expire': 14,
  90. 'can_have_signature': 1,
  91. 'allow_signature_links': 1,
  92. 'allow_signature_images': 0,
  93. },
  94. # profiles
  95. 'misago.users.permissions.profiles': {
  96. 'can_browse_users_list': 1,
  97. 'can_search_users': 1,
  98. 'can_be_blocked': 0,
  99. 'can_see_users_name_history': 1,
  100. 'can_see_ban_details': 1,
  101. 'can_see_users_emails': 1,
  102. 'can_see_users_ips': 1,
  103. 'can_see_hidden_users': 1,
  104. },
  105. # warnings
  106. 'misago.users.permissions.warnings': {
  107. 'can_see_other_users_warnings': 1,
  108. 'can_warn_users': 1,
  109. 'can_cancel_warnings': 1,
  110. 'can_be_warned': 0,
  111. },
  112. # attachments
  113. 'misago.threads.permissions.attachments': {
  114. 'max_attachment_size': 8 * 1024,
  115. 'can_download_other_users_attachments': True,
  116. 'can_delete_other_users_attachments': True,
  117. },
  118. # polls
  119. 'misago.threads.permissions.polls': {
  120. 'can_start_polls': 2,
  121. 'can_edit_polls': 2,
  122. 'can_delete_polls': 2,
  123. 'can_always_see_poll_voters': 1
  124. },
  125. # moderation
  126. 'misago.threads.permissions.threads': {
  127. 'can_see_unapproved_content_lists': True,
  128. 'can_see_reported_content_lists': True,
  129. 'can_omit_flood_protection': True,
  130. },
  131. 'misago.users.permissions.moderation': {
  132. 'can_warn_users': 1,
  133. 'can_moderate_avatars': 1,
  134. 'can_moderate_signatures': 1,
  135. },
  136. # delete users
  137. 'misago.users.permissions.delete': {
  138. 'can_delete_users_newer_than': 0,
  139. 'can_delete_users_with_less_posts_than': 0,
  140. },
  141. })
  142. role.save()
  143. role = Role(name=_("See warnings"))
  144. pickle_permissions(
  145. role,
  146. {
  147. # warnings
  148. 'misago.users.permissions.warnings': {
  149. 'can_see_other_users_warnings': 1,
  150. },
  151. })
  152. role.save()
  153. role = Role(name=_("Renaming users"))
  154. pickle_permissions(
  155. role,
  156. {
  157. # rename users
  158. 'misago.users.permissions.moderation': {
  159. 'can_rename_users': 1,
  160. },
  161. })
  162. role.save()
  163. role = Role(name=_("Banning users"))
  164. pickle_permissions(
  165. role,
  166. {
  167. # ban users
  168. 'misago.users.permissions.profiles': {
  169. 'can_see_ban_details': 1,
  170. },
  171. 'misago.users.permissions.moderation': {
  172. 'can_ban_users': 1,
  173. 'max_ban_length': 14,
  174. 'can_lift_bans': 1,
  175. 'max_lifted_ban_length': 14,
  176. },
  177. })
  178. role.save()
  179. role = Role(name=_("Deleting users"))
  180. pickle_permissions(
  181. role,
  182. {
  183. # delete users
  184. 'misago.users.permissions.delete': {
  185. 'can_delete_users_newer_than': 3,
  186. 'can_delete_users_with_less_posts_than': 7,
  187. },
  188. })
  189. role.save()
  190. role = Role(name=_("Can't be blocked"))
  191. pickle_permissions(
  192. role,
  193. {
  194. # profiles
  195. 'misago.users.permissions.profiles': {
  196. 'can_be_blocked': 0,
  197. },
  198. })
  199. role.save()
  200. role = Role(name=_("Private threads"))
  201. pickle_permissions(
  202. role,
  203. {
  204. # private threads
  205. 'misago.threads.permissions.privatethreads': {
  206. 'can_use_private_threads': 1,
  207. 'can_start_private_threads': 1,
  208. 'max_private_thread_participants': 3,
  209. 'can_add_everyone_to_private_threads': 0,
  210. 'can_report_private_threads': 1,
  211. 'can_moderate_private_threads': 0,
  212. },
  213. })
  214. role.save()
  215. role = Role(name=_("Private threads moderator"))
  216. pickle_permissions(
  217. role,
  218. {
  219. # private threads
  220. 'misago.threads.permissions.privatethreads': {
  221. 'can_use_private_threads': 1,
  222. 'can_start_private_threads': 1,
  223. 'max_private_thread_participants': 15,
  224. 'can_add_everyone_to_private_threads': 1,
  225. 'can_report_private_threads': 1,
  226. 'can_moderate_private_threads': 1,
  227. },
  228. })
  229. role.save()
  230. class Migration(migrations.Migration):
  231. dependencies = [
  232. ('misago_acl', '0002_acl_version_tracker'),
  233. ]
  234. operations = [
  235. migrations.RunPython(create_default_roles),
  236. ]