diff options
| author | Georgios Andreadis <info@gandreadis.com> | 2020-07-08 16:21:29 +0200 |
|---|---|---|
| committer | Fabian Mastenbroek <mail.fabianm@gmail.com> | 2020-08-24 19:47:59 +0200 |
| commit | 37da1e52419075889ccd8e37279a32578462112a (patch) | |
| tree | 6d73342f03ffb9f192b791d269f53f946029c43f /web-server/opendc/models/scenario.py | |
| parent | 5d2ddb814da1fc299792fde2e09a04f600b25dd7 (diff) | |
| parent | 0a1579e749663e872a53e25fa9fd26e209a9e019 (diff) | |
Merge pull request #7 from atlarge-research/feature/portfolio-scenario-endpoints
Portfolio and scenario endpoints
Diffstat (limited to 'web-server/opendc/models/scenario.py')
| -rw-r--r-- | web-server/opendc/models/scenario.py | 26 |
1 files changed, 26 insertions, 0 deletions
diff --git a/web-server/opendc/models/scenario.py b/web-server/opendc/models/scenario.py new file mode 100644 index 00000000..d7d959ca --- /dev/null +++ b/web-server/opendc/models/scenario.py @@ -0,0 +1,26 @@ +from opendc.models.model import Model +from opendc.models.portfolio import Portfolio +from opendc.models.user import User +from opendc.util.exceptions import ClientError +from opendc.util.rest import Response + + +class Scenario(Model): + """Model representing a Scenario.""" + + collection_name = 'scenarios' + + def check_user_access(self, google_id, edit_access): + """Raises an error if the user with given [google_id] has insufficient access. + + Checks access on the parent project. + + :param google_id: The Google ID of the user. + :param edit_access: True when edit access should be checked, otherwise view access. + """ + portfolio = Portfolio.from_id(self.obj['portfolioId']) + user = User.from_google_id(google_id) + authorizations = list( + filter(lambda x: str(x['projectId']) == str(portfolio.get_id()), user.obj['authorizations'])) + if len(authorizations) == 0 or (edit_access and authorizations[0]['authorizationLevel'] == 'VIEW'): + raise ClientError(Response(403, 'Forbidden from retrieving/editing scenario.')) |
