23 |
23 |
LDAP_DEACTIVATION_REASON_NOT_PRESENT,
|
24 |
24 |
LDAP_DEACTIVATION_REASON_OLD_SOURCE,
|
25 |
25 |
)
|
|
26 |
from authentic2.custom_user.models import DeletedUser
|
26 |
27 |
from authentic2.journal_event_types import EventTypeWithService, get_attributes_label
|
27 |
28 |
from django_rbac.utils import get_role_model
|
28 |
29 |
|
... | ... | |
30 |
31 |
Role = get_role_model()
|
31 |
32 |
|
32 |
33 |
|
|
34 |
def user_to_str(user):
|
|
35 |
if hasattr(user, 'get_full_name'):
|
|
36 |
return user.get_full_name()
|
|
37 |
return str(user)
|
|
38 |
|
|
39 |
|
33 |
40 |
class ManagerUserCreation(EventTypeDefinition):
|
34 |
41 |
name = 'manager.user.creation'
|
35 |
42 |
label = _('user creation')
|
... | ... | |
40 |
47 |
|
41 |
48 |
@classmethod
|
42 |
49 |
def get_message(cls, event, context):
|
43 |
|
(user,) = event.get_typed_references(User)
|
|
50 |
(user,) = event.get_typed_references((DeletedUser, User))
|
44 |
51 |
# user journal page
|
45 |
52 |
if context and context == user:
|
46 |
53 |
return _('creation by administrator')
|
47 |
54 |
elif user:
|
48 |
55 |
# manager gloabal journal page
|
49 |
|
return _('creation of user "%s"') % user.get_full_name()
|
|
56 |
return _('creation of user "%s"') % user_to_str(user)
|
50 |
57 |
return super().get_message(event, context)
|
51 |
58 |
|
52 |
59 |
|
... | ... | |
60 |
67 |
|
61 |
68 |
@classmethod
|
62 |
69 |
def get_message(cls, event, context):
|
63 |
|
(user,) = event.get_typed_references(User)
|
|
70 |
(user,) = event.get_typed_references((DeletedUser, User))
|
64 |
71 |
new = event.get_data('new') or {}
|
65 |
72 |
edited_attributes = ', '.join(get_attributes_label(new)) or ''
|
66 |
73 |
if context and context == user:
|
67 |
74 |
return _('edit by administrator (%s)') % edited_attributes
|
68 |
75 |
elif user:
|
69 |
|
user_full_name = user.get_full_name()
|
|
76 |
user_full_name = user_to_str(user)
|
70 |
77 |
return _('edit of user "{0}" ({1})').format(user_full_name, edited_attributes)
|
71 |
78 |
return super().get_message(event, context)
|
72 |
79 |
|
... | ... | |
85 |
92 |
|
86 |
93 |
@classmethod
|
87 |
94 |
def get_message(cls, event, context):
|
88 |
|
(user,) = event.get_typed_references(User)
|
|
95 |
(user,) = event.get_typed_references((DeletedUser, User))
|
89 |
96 |
new_email = event.get_data('email')
|
90 |
97 |
if context and context == user:
|
91 |
98 |
return _('email change for email address "%s" requested by administrator') % new_email
|
92 |
99 |
elif user:
|
93 |
|
user_full_name = user.get_full_name()
|
|
100 |
user_full_name = user_to_str(user)
|
94 |
101 |
return _('email change of user "{0}" for email address "{1}"').format(user_full_name, new_email)
|
95 |
102 |
return super().get_message(event, context)
|
96 |
103 |
|
... | ... | |
109 |
116 |
|
110 |
117 |
@classmethod
|
111 |
118 |
def get_message(cls, event, context):
|
112 |
|
(user,) = event.get_typed_references(User)
|
|
119 |
(user,) = event.get_typed_references((DeletedUser, User))
|
113 |
120 |
send_mail = event.get_data('send_mail')
|
114 |
121 |
if context and context == user:
|
115 |
122 |
if send_mail:
|
... | ... | |
117 |
124 |
else:
|
118 |
125 |
return _('password change by administrator')
|
119 |
126 |
elif user:
|
120 |
|
user_full_name = user.get_full_name()
|
|
127 |
user_full_name = user_to_str(user)
|
121 |
128 |
if send_mail:
|
122 |
129 |
return _('password change of user "%s" and notification by mail') % user_full_name
|
123 |
130 |
else:
|
... | ... | |
137 |
144 |
|
138 |
145 |
@classmethod
|
139 |
146 |
def get_message(cls, event, context):
|
140 |
|
(user,) = event.get_typed_references(User)
|
|
147 |
(user,) = event.get_typed_references((DeletedUser, User))
|
141 |
148 |
email = event.get_data('email')
|
142 |
149 |
if context and context == user:
|
143 |
150 |
return _('password reset request by administrator sent to "%s"') % email
|
144 |
151 |
elif user:
|
145 |
|
return _('password reset request of "{0}" sent to "{1}"').format(user.get_full_name(), email)
|
|
152 |
return _('password reset request of "{0}" sent to "{1}"').format(user_to_str(user), email)
|
146 |
153 |
return super().get_message(event, context)
|
147 |
154 |
|
148 |
155 |
|
... | ... | |
156 |
163 |
|
157 |
164 |
@classmethod
|
158 |
165 |
def get_message(cls, event, context):
|
159 |
|
(user,) = event.get_typed_references(User)
|
|
166 |
(user,) = event.get_typed_references((DeletedUser, User))
|
160 |
167 |
if context and context == user:
|
161 |
168 |
return _('mandatory password change at next login set by administrator')
|
162 |
169 |
elif user:
|
163 |
|
return _('mandatory password change at next login set for user "%s"') % user.get_full_name()
|
|
170 |
return _('mandatory password change at next login set for user "%s"') % user_to_str(user)
|
164 |
171 |
return super().get_message(event, context)
|
165 |
172 |
|
166 |
173 |
|
... | ... | |
174 |
181 |
|
175 |
182 |
@classmethod
|
176 |
183 |
def get_message(cls, event, context):
|
177 |
|
(user,) = event.get_typed_references(User)
|
|
184 |
(user,) = event.get_typed_references((DeletedUser, User))
|
178 |
185 |
if context and context == user:
|
179 |
186 |
return _('mandatory password change at next login unset by administrator')
|
180 |
187 |
elif user:
|
181 |
|
return _('mandatory password change at next login unset for user "%s"') % user.get_full_name()
|
|
188 |
return _('mandatory password change at next login unset for user "%s"') % user_to_str(user)
|
182 |
189 |
return super().get_message(event, context)
|
183 |
190 |
|
184 |
191 |
|
... | ... | |
192 |
199 |
|
193 |
200 |
@classmethod
|
194 |
201 |
def get_message(cls, event, context):
|
195 |
|
(user,) = event.get_typed_references(User)
|
|
202 |
(user,) = event.get_typed_references((DeletedUser, User))
|
196 |
203 |
if context and context == user:
|
197 |
204 |
return _('activation by administrator')
|
198 |
205 |
elif user:
|
199 |
|
return _('activation of user "%s"') % user.get_full_name()
|
|
206 |
return _('activation of user "%s"') % user_to_str(user)
|
200 |
207 |
return super().get_message(event, context)
|
201 |
208 |
|
202 |
209 |
|
... | ... | |
211 |
218 |
|
212 |
219 |
@classmethod
|
213 |
220 |
def get_message(cls, event, context):
|
214 |
|
(user,) = event.get_typed_references(User)
|
|
221 |
(user,) = event.get_typed_references((DeletedUser, User))
|
215 |
222 |
reason = event.get_data('reason')
|
216 |
223 |
if context and context == user:
|
217 |
224 |
if reason == LDAP_DEACTIVATION_REASON_NOT_PRESENT:
|
... | ... | |
226 |
233 |
_(
|
227 |
234 |
'automatic deactivation of user "%s" because the associated LDAP account does not exist anymore'
|
228 |
235 |
)
|
229 |
|
% user.get_full_name()
|
|
236 |
% user_to_str(user)
|
230 |
237 |
)
|
231 |
238 |
elif reason == LDAP_DEACTIVATION_REASON_OLD_SOURCE:
|
232 |
239 |
return (
|
233 |
240 |
_(
|
234 |
241 |
'automatic deactivation of user "%s" because the associated LDAP source has been deleted'
|
235 |
242 |
)
|
236 |
|
% user.get_full_name()
|
|
243 |
% user_to_str(user)
|
237 |
244 |
)
|
238 |
245 |
else:
|
239 |
|
return _('deactivation of user "%s"') % user.get_full_name()
|
|
246 |
return _('deactivation of user "%s"') % user_to_str(user)
|
240 |
247 |
return super().get_message(event, context)
|
241 |
248 |
|
242 |
249 |
|
... | ... | |
250 |
257 |
|
251 |
258 |
@classmethod
|
252 |
259 |
def get_message(cls, event, context):
|
253 |
|
(user,) = event.get_typed_references(User)
|
|
260 |
(user,) = event.get_typed_references((DeletedUser, User))
|
254 |
261 |
if context and context == user:
|
255 |
262 |
return _('deletion by administrator')
|
256 |
263 |
elif user:
|
257 |
|
return _('deletion of user "%s"') % user.get_full_name()
|
|
264 |
return _('deletion of user "%s"') % user_to_str(user)
|
258 |
265 |
return super().get_message(event, context)
|
259 |
266 |
|
260 |
267 |
|
... | ... | |
269 |
276 |
@classmethod
|
270 |
277 |
def get_message(cls, event, context):
|
271 |
278 |
# first reference is to the service
|
272 |
|
__, user = event.get_typed_references(None, User)
|
|
279 |
__, user = event.get_typed_references(None, (DeletedUser, User))
|
273 |
280 |
service_name = cls.get_service_name(event)
|
274 |
281 |
if context and context == user:
|
275 |
282 |
return _('deletion of authorization of single sign on with "{service}" by administrator').format(
|
... | ... | |
278 |
285 |
elif user:
|
279 |
286 |
return _('deletion of authorization of single sign on with "{service}" of user "{user}"').format(
|
280 |
287 |
service=service_name,
|
281 |
|
user=user.get_full_name(),
|
|
288 |
user=user_to_str(user),
|
282 |
289 |
)
|
283 |
290 |
return super().get_message(event, context)
|
284 |
291 |
|
... | ... | |
357 |
364 |
|
358 |
365 |
@classmethod
|
359 |
366 |
def get_message(cls, event, context):
|
360 |
|
role, member = event.get_typed_references(Role, User)
|
|
367 |
role, member = event.get_typed_references(Role, (DeletedUser, User))
|
361 |
368 |
role = role or event.get_data('role_name')
|
362 |
369 |
member = member or event.get_data('member_name')
|
363 |
370 |
if context == member:
|
... | ... | |
379 |
386 |
|
380 |
387 |
@classmethod
|
381 |
388 |
def get_message(cls, event, context):
|
382 |
|
role, member = event.get_typed_references(Role, User)
|
|
389 |
role, member = event.get_typed_references(Role, (DeletedUser, User))
|
383 |
390 |
role = role or event.get_data('role_name')
|
384 |
391 |
member = member or event.get_data('member_name')
|
385 |
392 |
if context == member:
|
... | ... | |
491 |
498 |
@classmethod
|
492 |
499 |
def record(cls, user, session, role, admin_user):
|
493 |
500 |
data = {
|
494 |
|
'admin_user_name': admin_user.get_full_name(),
|
|
501 |
'admin_user_name': user_to_str(admin_user),
|
495 |
502 |
'admin_user_uuid': admin_user.uuid,
|
496 |
503 |
}
|
497 |
504 |
super().record(user=user, session=session, role=role, references=[admin_user], data=data)
|
498 |
505 |
|
499 |
506 |
@classmethod
|
500 |
507 |
def get_message(cls, event, context):
|
501 |
|
role, admin_user = event.get_typed_references(Role, User)
|
|
508 |
role, admin_user = event.get_typed_references(Role, (DeletedUser, User))
|
502 |
509 |
role = role or event.get_data('role_name')
|
503 |
510 |
admin_user = admin_user or event.get_data('admin_user_name')
|
504 |
511 |
if context == role:
|
... | ... | |
517 |
524 |
|
518 |
525 |
@classmethod
|
519 |
526 |
def get_message(cls, event, context):
|
520 |
|
role, admin_user = event.get_typed_references(Role, User)
|
|
527 |
role, admin_user = event.get_typed_references(Role, (DeletedUser, User))
|
521 |
528 |
role = role or event.get_data('role_name')
|
522 |
529 |
admin_user = admin_user or event.get_data('admin_user_name')
|
523 |
530 |
if context == role:
|