auth.py 2.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687
  1. from rest_framework import serializers
  2. from django.contrib.auth import get_user_model
  3. from django.urls import reverse
  4. from misago.acl import serialize_acl
  5. from .user import UserSerializer
  6. UserModel = get_user_model()
  7. __all__ = [
  8. 'AuthenticatedUserSerializer',
  9. 'AnonymousUserSerializer',
  10. ]
  11. class AuthFlags(object):
  12. def get_is_authenticated(self, obj):
  13. return bool(obj.is_authenticated)
  14. def get_is_anonymous(self, obj):
  15. return bool(obj.is_anonymous)
  16. class AuthenticatedUserSerializer(UserSerializer, AuthFlags):
  17. email = serializers.SerializerMethodField()
  18. is_authenticated = serializers.SerializerMethodField()
  19. is_anonymous = serializers.SerializerMethodField()
  20. class Meta:
  21. model = UserModel
  22. fields = UserSerializer.Meta.fields + [
  23. 'has_usable_password',
  24. 'is_hiding_presence',
  25. 'limits_private_thread_invites_to',
  26. 'unread_private_threads',
  27. 'subscribe_to_started_threads',
  28. 'subscribe_to_replied_threads',
  29. 'is_authenticated',
  30. 'is_anonymous',
  31. ]
  32. def get_acl(self, obj):
  33. return serialize_acl(obj)
  34. def get_email(self, obj):
  35. return obj.email
  36. def get_api(self, obj):
  37. return {
  38. 'avatar': reverse('misago:api:user-avatar', kwargs={'pk': obj.pk}),
  39. 'data_downloads': reverse('misago:api:user-data-downloads', kwargs={'pk': obj.pk}),
  40. 'details': reverse('misago:api:user-details', kwargs={'pk': obj.pk}),
  41. 'change_email': reverse('misago:api:user-change-email', kwargs={'pk': obj.pk}),
  42. 'change_password': reverse('misago:api:user-change-password', kwargs={'pk': obj.pk}),
  43. 'edit_details': reverse('misago:api:user-edit-details', kwargs={'pk': obj.pk}),
  44. 'options': reverse('misago:api:user-forum-options', kwargs={'pk': obj.pk}),
  45. 'request_data_download': reverse('misago:api:user-request-data-download', kwargs={'pk': obj.pk}),
  46. 'username': reverse('misago:api:user-username', kwargs={'pk': obj.pk}),
  47. 'delete': reverse('misago:api:user-delete-own-account', kwargs={'pk': obj.pk}),
  48. }
  49. AuthenticatedUserSerializer = AuthenticatedUserSerializer.exclude_fields(
  50. 'is_avatar_locked',
  51. 'is_blocked',
  52. 'is_followed',
  53. 'is_signature_locked',
  54. 'meta',
  55. 'signature',
  56. 'status',
  57. )
  58. class AnonymousUserSerializer(serializers.Serializer, AuthFlags):
  59. id = serializers.ReadOnlyField()
  60. acl = serializers.SerializerMethodField()
  61. is_authenticated = serializers.SerializerMethodField()
  62. is_anonymous = serializers.SerializerMethodField()
  63. def get_acl(self, obj):
  64. if hasattr(obj, 'acl_cache'):
  65. return serialize_acl(obj)
  66. else:
  67. return {}