2 from django.db import models
3 from core.models import PlCoreBase
4 from core.models import Tag
5 from django.contrib.contenttypes import generic
6 from geoposition.fields import GeopositionField
7 from core.acl import AccessControlList
9 class Site(PlCoreBase):
11 A logical grouping of Nodes that are co-located at the same geographic location, which also typically corresponds to the Nodes' location in the physical network.
13 name = models.CharField(max_length=200, help_text="Name for this Site")
14 site_url = models.URLField(null=True, blank=True, max_length=512, help_text="Site's Home URL Page")
15 enabled = models.BooleanField(default=True, help_text="Status for this Site")
16 location = GeopositionField()
17 longitude = models.FloatField(null=True, blank=True)
18 latitude = models.FloatField(null=True, blank=True)
19 login_base = models.CharField(max_length=50, unique=True, help_text="Prefix for Slices associated with this Site")
20 is_public = models.BooleanField(default=True, help_text="Indicates the visibility of this site to other members")
21 abbreviated_name = models.CharField(max_length=80)
23 #deployments = models.ManyToManyField('Deployment', blank=True, related_name='sites')
24 deployments = models.ManyToManyField('Deployment', through='SiteDeployments', blank=True)
25 tags = generic.GenericRelation(Tag)
27 def __unicode__(self): return u'%s' % (self.name)
29 def can_update(self, user):
34 site_privs = SitePrivilege.objects.filter(user=user, site=self)
35 for site_priv in site_privs:
36 if site_priv.role.role == 'pi':
41 def select_by_user(user):
43 qs = Site.objects.all()
45 site_ids = [sp.site.id for sp in SitePrivilege.objects.filter(user=user)]
46 site_ids.append(user.site.id)
47 qs = Site.objects.filter(id__in=site_ids)
51 class SiteRole(PlCoreBase):
53 ROLE_CHOICES = (('admin','Admin'),('pi','PI'),('tech','Tech'),('billing','Billing'))
54 role = models.CharField(choices=ROLE_CHOICES, unique=True, max_length=30)
56 def __unicode__(self): return u'%s' % (self.role)
58 class SitePrivilege(PlCoreBase):
60 user = models.ForeignKey('User', related_name='site_privileges')
61 site = models.ForeignKey('Site', related_name='site_privileges')
62 role = models.ForeignKey('SiteRole')
64 def __unicode__(self): return u'%s %s %s' % (self.site, self.user, self.role)
66 def save(self, *args, **kwds):
67 super(SitePrivilege, self).save(*args, **kwds)
69 def delete(self, *args, **kwds):
70 super(SitePrivilege, self).delete(*args, **kwds)
72 def can_update(self, user):
73 return self.site.can_update(user)
76 def select_by_user(user):
78 qs = SitePrivilege.objects.all()
80 sp_ids = [sp.id for sp in SitePrivilege.objects.filter(user=user)]
81 qs = SitePrivilege.objects.filter(id__in=sp_ids)
84 class Deployment(PlCoreBase):
85 name = models.CharField(max_length=200, unique=True, help_text="Name of the Deployment")
86 admin_user = models.CharField(max_length=200, null=True, blank=True, help_text="Username of an admin user at this deployment")
87 admin_password = models.CharField(max_length=200, null=True, blank=True, help_text="Password of theadmin user at this deployment")
\r
88 admin_tenant = models.CharField(max_length=200, null=True, blank=True, help_text="Name of the tenant the admin user belongs to")
\r
89 auth_url = models.CharField(max_length=200, null=True, blank=True, help_text="Auth url for the deployment")
91 # smbaker: the default of 'allow all' is intended for evolutions of existing
92 # deployments. When new deployments are created via the GUI, they are
93 # given a default of 'allow site <site_of_creator>'
94 accessControl = models.TextField(max_length=200, blank=False, null=False, default="allow all",
95 help_text="Access control list that specifies which sites/users may use nodes in this deployment")
98 return AccessControlList(self.accessControl)
100 def test_acl(self, slice=None, user=None):
104 potential_users.append(user)
107 potential_users.append(slice.creator)
108 for priv in slice.slice_privileges.all():
109 if priv.user not in potential_users:
110 potential_users.append(priv.user)
113 for user in potential_users:
114 if acl.test(user) == "allow":
120 def select_by_acl(user):
122 for deployment in Deployment.objects.all():
123 acl = deployment.get_acl()
124 if acl.test(user) == "allow":
125 ids.append(deployment.id)
127 return Deployment.objects.filter(id__in=ids)
129 def __unicode__(self): return u'%s' % (self.name)
132 def select_by_user(user):
133 return Deployment.objects.all()
135 class DeploymentRole(PlCoreBase):
137 ROLE_CHOICES = (('admin','Admin'),)
138 role = models.CharField(choices=ROLE_CHOICES, unique=True, max_length=30)
140 def __unicode__(self): return u'%s' % (self.role)
142 class DeploymentPrivilege(PlCoreBase):
144 user = models.ForeignKey('User', related_name='deployment_privileges')
145 deployment = models.ForeignKey('Deployment', related_name='deployment_privileges')
146 role = models.ForeignKey('DeploymentRole')
148 def __unicode__(self): return u'%s %s %s' % (self.deployment, self.user, self.role)
150 def can_update(self, user):
155 dprivs = DeploymentPrivilege.objects.filter(user=user)
157 if dpriv.role.role == 'admin':
162 def select_by_user(user):
164 qs = DeploymentPrivilege.objects.all()
166 dpriv_ids = [dp.id for dp in DeploymentPrivilege.objects.filter(user=user)]
167 qs = DeploymentPrivilege.objects.filter(id__in=dpriv_ids)
170 class SiteDeployments(PlCoreBase):
171 site = models.ForeignKey(Site)
172 deployment = models.ForeignKey(Deployment)
173 tenant_id = models.CharField(null=True, blank=True, max_length=200, help_text="Keystone tenant id")
176 def select_by_user(user):
177 return SiteDeployments.objects.all()
180 # db_table = 'core_site_deployments'
181 # #auto_created = Site