0003_default_roles.py 7.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268
  1. # -*- coding: utf-8 -*-
  2. from __future__ import unicode_literals
  3. from django.db import migrations
  4. from django.utils.translation import ugettext as _
  5. from misago.core import serializer
  6. def pickle_permissions(role, permissions):
  7. role.pickled_permissions = serializer.dumps(permissions)
  8. def create_default_roles(apps, schema_editor):
  9. Role = apps.get_model('misago_acl', 'Role')
  10. role = Role(name=_("Member"), special_role='authenticated')
  11. pickle_permissions(
  12. role,
  13. {
  14. # account
  15. 'misago.users.permissions.account': {
  16. 'name_changes_allowed': 2,
  17. 'name_changes_expire': 180,
  18. 'can_have_signature': 0,
  19. 'allow_signature_links': 0,
  20. 'allow_signature_images': 0,
  21. },
  22. # profiles
  23. 'misago.users.permissions.profiles': {
  24. 'can_browse_users_list': 1,
  25. 'can_search_users': 1,
  26. 'can_follow_users': 1,
  27. 'can_be_blocked': 1,
  28. 'can_see_users_name_history': 0,
  29. 'can_see_users_emails': 0,
  30. 'can_see_users_ips': 0,
  31. 'can_see_hidden_users': 0,
  32. },
  33. # attachments
  34. 'misago.threads.permissions.attachments': {
  35. 'max_attachment_size': 4 * 1024,
  36. 'can_download_other_users_attachments': True,
  37. },
  38. # polls
  39. 'misago.threads.permissions.polls': {
  40. 'can_start_polls': 1,
  41. 'can_edit_polls': 1
  42. },
  43. # search
  44. 'misago.search.permissions': {
  45. 'can_search': 1,
  46. },
  47. })
  48. role.save()
  49. role = Role(name=_("Guest"), special_role='anonymous')
  50. pickle_permissions(
  51. role,
  52. {
  53. # account
  54. 'misago.users.permissions.account': {
  55. 'name_changes_allowed': 0,
  56. 'name_changes_expire': 0,
  57. 'can_have_signature': 0,
  58. 'allow_signature_links': 0,
  59. 'allow_signature_images': 0,
  60. },
  61. # profiles
  62. 'misago.users.permissions.profiles': {
  63. 'can_browse_users_list': 1,
  64. 'can_search_users': 1,
  65. 'can_see_users_name_history': 0,
  66. 'can_see_users_emails': 0,
  67. 'can_see_users_ips': 0,
  68. 'can_see_hidden_users': 0,
  69. },
  70. # attachments
  71. 'misago.threads.permissions.attachments': {
  72. 'can_download_other_users_attachments': True,
  73. },
  74. # search
  75. 'misago.search.permissions': {
  76. 'can_search': 1,
  77. },
  78. })
  79. role.save()
  80. role = Role(name=_("Moderator"))
  81. pickle_permissions(
  82. role,
  83. {
  84. # account
  85. 'misago.users.permissions.account': {
  86. 'name_changes_allowed': 5,
  87. 'name_changes_expire': 14,
  88. 'can_have_signature': 1,
  89. 'allow_signature_links': 1,
  90. 'allow_signature_images': 0,
  91. },
  92. # profiles
  93. 'misago.users.permissions.profiles': {
  94. 'can_browse_users_list': 1,
  95. 'can_search_users': 1,
  96. 'can_be_blocked': 0,
  97. 'can_see_users_name_history': 1,
  98. 'can_see_ban_details': 1,
  99. 'can_see_users_emails': 1,
  100. 'can_see_users_ips': 1,
  101. 'can_see_hidden_users': 1,
  102. },
  103. # warnings
  104. 'misago.users.permissions.warnings': {
  105. 'can_see_other_users_warnings': 1,
  106. 'can_warn_users': 1,
  107. 'can_cancel_warnings': 1,
  108. 'can_be_warned': 0,
  109. },
  110. # attachments
  111. 'misago.threads.permissions.attachments': {
  112. 'max_attachment_size': 8 * 1024,
  113. 'can_download_other_users_attachments': True,
  114. 'can_delete_other_users_attachments': True,
  115. },
  116. # polls
  117. 'misago.threads.permissions.polls': {
  118. 'can_start_polls': 2,
  119. 'can_edit_polls': 2,
  120. 'can_delete_polls': 2,
  121. 'can_always_see_poll_voters': 1
  122. },
  123. # moderation
  124. 'misago.threads.permissions.threads': {
  125. 'can_see_unapproved_content_lists': True,
  126. 'can_see_reported_content_lists': True,
  127. 'can_omit_flood_protection': True,
  128. },
  129. 'misago.users.permissions.moderation': {
  130. 'can_warn_users': 1,
  131. 'can_moderate_avatars': 1,
  132. 'can_moderate_signatures': 1,
  133. },
  134. # delete users
  135. 'misago.users.permissions.delete': {
  136. 'can_delete_users_newer_than': 0,
  137. 'can_delete_users_with_less_posts_than': 0,
  138. },
  139. })
  140. role.save()
  141. role = Role(name=_("See warnings"))
  142. pickle_permissions(
  143. role,
  144. {
  145. # warnings
  146. 'misago.users.permissions.warnings': {
  147. 'can_see_other_users_warnings': 1,
  148. },
  149. })
  150. role.save()
  151. role = Role(name=_("Renaming users"))
  152. pickle_permissions(
  153. role,
  154. {
  155. # rename users
  156. 'misago.users.permissions.moderation': {
  157. 'can_rename_users': 1,
  158. },
  159. })
  160. role.save()
  161. role = Role(name=_("Banning users"))
  162. pickle_permissions(
  163. role,
  164. {
  165. # ban users
  166. 'misago.users.permissions.profiles': {
  167. 'can_see_ban_details': 1,
  168. },
  169. 'misago.users.permissions.moderation': {
  170. 'can_ban_users': 1,
  171. 'max_ban_length': 14,
  172. 'can_lift_bans': 1,
  173. 'max_lifted_ban_length': 14,
  174. },
  175. })
  176. role.save()
  177. role = Role(name=_("Deleting users"))
  178. pickle_permissions(
  179. role,
  180. {
  181. # delete users
  182. 'misago.users.permissions.delete': {
  183. 'can_delete_users_newer_than': 3,
  184. 'can_delete_users_with_less_posts_than': 7,
  185. },
  186. })
  187. role.save()
  188. role = Role(name=_("Can't be blocked"))
  189. pickle_permissions(
  190. role,
  191. {
  192. # profiles
  193. 'misago.users.permissions.profiles': {
  194. 'can_be_blocked': 0,
  195. },
  196. })
  197. role.save()
  198. role = Role(name=_("Private threads"))
  199. pickle_permissions(
  200. role,
  201. {
  202. # private threads
  203. 'misago.threads.permissions.privatethreads': {
  204. 'can_use_private_threads': 1,
  205. 'can_start_private_threads': 1,
  206. 'max_private_thread_participants': 3,
  207. 'can_add_everyone_to_private_threads': 0,
  208. 'can_report_private_threads': 1,
  209. 'can_moderate_private_threads': 0,
  210. },
  211. })
  212. role.save()
  213. role = Role(name=_("Private threads moderator"))
  214. pickle_permissions(
  215. role,
  216. {
  217. # private threads
  218. 'misago.threads.permissions.privatethreads': {
  219. 'can_use_private_threads': 1,
  220. 'can_start_private_threads': 1,
  221. 'max_private_thread_participants': 15,
  222. 'can_add_everyone_to_private_threads': 1,
  223. 'can_report_private_threads': 1,
  224. 'can_moderate_private_threads': 1,
  225. },
  226. })
  227. role.save()
  228. class Migration(migrations.Migration):
  229. dependencies = [
  230. ('misago_acl', '0002_acl_version_tracker'),
  231. ]
  232. operations = [
  233. migrations.RunPython(create_default_roles),
  234. ]