diff options
Diffstat (limited to 'web-server/opendc/models')
| -rw-r--r-- | web-server/opendc/models/experiment.py | 15 |
1 files changed, 15 insertions, 0 deletions
diff --git a/web-server/opendc/models/experiment.py b/web-server/opendc/models/experiment.py new file mode 100644 index 00000000..dd7aa4f8 --- /dev/null +++ b/web-server/opendc/models/experiment.py @@ -0,0 +1,15 @@ +from opendc.models.model import Model +from opendc.models.user import User +from opendc.util.exceptions import ClientError +from opendc.util.rest import Response + + +class Experiment(Model): + collection_name = 'experiments' + + def check_user_access(self, google_id, edit_access): + user = User.from_google_id(google_id) + authorizations = list( + filter(lambda x: str(x['simulationId']) == str(self.obj['simulationId']), user.obj['authorizations'])) + if len(authorizations) == 0 or (edit_access and authorizations[0]['authorizationLevel'] == 'VIEW'): + raise ClientError(Response(403, "Forbidden from retrieving/editing experiment.")) |
