ERP5Site.py 99.8 KB
Newer Older
1
# -*- coding: utf-8 -*-
2
##############################################################################
Jean-Paul Smets's avatar
Jean-Paul Smets committed
3 4 5 6 7 8 9 10 11 12 13
#
# Copyright (c) 2001 Zope Corporation and Contributors. All Rights Reserved.
#
# This software is subject to the provisions of the Zope Public License,
# Version 2.0 (ZPL).  A copy of the ZPL should accompany this distribution.
# THIS SOFTWARE IS PROVIDED "AS IS" AND ANY AND ALL EXPRESS OR IMPLIED
# WARRANTIES ARE DISCLAIMED, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED
# WARRANTIES OF TITLE, MERCHANTABILITY, AGAINST INFRINGEMENT, AND FITNESS
# FOR A PARTICULAR PURPOSE
#
##############################################################################
14 15
"""
  Portal class
Jean-Paul Smets's avatar
Jean-Paul Smets committed
16
"""
17
from __future__ import absolute_import
Jean-Paul Smets's avatar
Jean-Paul Smets committed
18

19
import base64
20
from DateTime import DateTime
21
from six.moves import map
22 23
import six
import _thread, threading
24
from weakref import ref as weakref
25
from OFS.Application import Application, AppInitializer
26 27
from Products.ERP5Type import Globals
from Products.ERP5Type.Globals import package_home
28

29
from Products.SiteErrorLog.SiteErrorLog import manage_addErrorLog
30
from ZPublisher import BeforeTraverse
31
from ZPublisher.BaseRequest import RequestContainer
Jean-Paul Smets's avatar
Jean-Paul Smets committed
32
from AccessControl import ClassSecurityInfo
33
from Products.CMFCore.PortalObject import PortalObjectBase
34
from Products.ERP5Type import Permissions
Jean-Paul Smets's avatar
Jean-Paul Smets committed
35
from Products.ERP5Type.Core.Folder import FolderMixIn
36
from Acquisition import aq_base
37
from Products.ERP5Security import _setUserNameForAccessLog
38 39
from Products.ERP5Type.Accessor.Constant import PropertyGetter as ConstantGetter
from Products.ERP5Type.Cache import caching_instance_method
40
from Products.ERP5Type.Cache import CachingMethod, CacheCookieMixin
41
from Products.ERP5Type.ERP5Type import ERP5TypeInformation
42
from Products.ERP5Type.patches.CMFCoreSkinnable import SKINDATA, skinResolve
43
from Products.CMFActivity.Errors import ActivityPendingError
44
from . import ERP5Defaults
45 46
from Products.ERP5Type.TransactionalVariable import \
  getTransactionalVariable, TransactionalResource
Nicolas Dumazet's avatar
Nicolas Dumazet committed
47
from Products.ERP5Type.dynamic.portal_type_class import synchronizeDynamicModules
48
from Products.ERP5Type.mixin.response_header_generator import ResponseHeaderGenerator
Jean-Paul Smets's avatar
Jean-Paul Smets committed
49

50
from zLOG import LOG, INFO, WARNING, ERROR
51
from zExceptions import BadRequest
52
import os
53
import warnings
54
import transaction
Romain Courteaud's avatar
Romain Courteaud committed
55
from App.config import getConfiguration
56 57
MARKER = []

58 59 60 61
ERP5_AUTHORISATION_EXTRACTOR_MARKER_NAME = '__enable_authorisation_extractor'
ERP5_AUTHORISATION_EXTRACTOR_MARKER_VALUE = '1'
ERP5_AUTHORISATION_EXTRACTOR_USERNAME_NAME = 'username'
ERP5_AUTHORISATION_EXTRACTOR_PASSWORD_NAME = 'password'
62

Jean-Paul Smets's avatar
Jean-Paul Smets committed
63
# Site Creation DTML
64 65 66 67 68 69 70 71 72
manage_addERP5SiteFormDtml = Globals.HTMLFile('dtml/addERP5Site', globals())

def manage_addERP5SiteForm(*args, **kw):
  """
    Make getCatalogStorageList available from inside the dtml.
  """
  kw['getCatalogStorageList'] = getCatalogStorageList
  return manage_addERP5SiteFormDtml(*args, **kw)

73 74
default_sql_connection_string = 'test test'

Jean-Paul Smets's avatar
Jean-Paul Smets committed
75
# ERP5Site Constructor
76 77 78
def manage_addERP5Site(self,
                       id,
                       title='ERP5',
79 80
                       description='',
                       create_userfolder=1,
81
                       create_activities=True,
82 83 84
                       email_from_address='postmaster@localhost',
                       email_from_name='Portal Administrator',
                       validate_email=0,
85
                       erp5_catalog_storage='erp5_mysql_innodb_catalog',
86 87
                       erp5_sql_connection_string=default_sql_connection_string,
                       cmf_activity_sql_connection_string=default_sql_connection_string,
88 89
                       bt5_repository_url='',
                       bt5='',
90
                       id_store_interval='',
91
                       cloudooo_url='',
92 93
                       light_install=0,
                       reindex=1,
94
                       sql_reset=0,
95 96 97 98
                       RESPONSE=None):
  '''
  Adds a portal instance.
  '''
99
  gen = ERP5Generator()
100
  id = str(id).strip()
101 102
  p = gen.create(self,
                 id,
103
                 create_userfolder,
104
                 erp5_catalog_storage,
105 106
                 erp5_sql_connection_string,
                 cmf_activity_sql_connection_string,
107 108
                 bt5_repository_url,
                 bt5,
109
                 id_store_interval,
110
                 cloudooo_url,
111 112
                 create_activities=create_activities,
                 light_install=light_install,
113 114
                 reindex=reindex,
                 sql_reset=sql_reset)
115 116
  gen.setupDefaultProperties(p,
                             title,
117
                             description,
118
                             email_from_address,
119 120
                             email_from_name,
                             validate_email)
121
  if RESPONSE is not None:
122 123
    RESPONSE.redirect(p.absolute_url())

124 125 126 127 128 129 130 131 132 133
def getCatalogStorageList(*args, **kw):
  """
    Returns the list of business templates available at install which can be
    used to setup a catalog storage.
  """
  result = []
  bootstrap_dir = getBootstrapDirectory()
  for item in os.listdir(bootstrap_dir):
    if item == '.svn':
      continue
134
    if item.endswith('.bt5') and os.path.isfile(item):
135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155
      # Simple heuristic to make it faster than extracting the whole bt
      if item.endswith('_catalog.bt5'):
        result.append((item, item))
    elif os.path.isdir(os.path.join(bootstrap_dir, item)):
      # Find if the business temlate provides erp5_catalog
      try:
        provides_file = open(os.path.join(bootstrap_dir, item, 'bt', 'provision_list'), 'r')
        provides_list = provides_file.readlines()
        provides_file.close()
      except IOError:
        provides_list = []
      if 'erp5_catalog' in provides_list:
        # Get a nice title (the first line of the description).
        try:
          title_file = open(os.path.join(bootstrap_dir, item, 'bt', 'description'), 'r')
          title = title_file.readline()
          title_file.close()
        except IOError:
          title = item
        result.append((item, title))
  return result
156

157 158 159 160 161 162 163 164
def addERP5Tool(portal, id, portal_type):
  if portal.hasObject(id):
    return
  import erp5.portal_type
  klass = getattr(erp5.portal_type, portal_type)
  obj = klass()
  portal._setObject(id, obj)

165 166 167 168 169 170 171 172 173 174 175 176 177 178
class ReferCheckerBeforeTraverseHook:
  """This before traverse hook checks the HTTP_REFERER argument in the request
  and refuses access to anything else that portal_url.

  This is enabled by calling the method enableRefererCheck on the portal.
  """
  handle = '_erp5_referer_check'

  def __call__(self, container, request):
    """Checks the request contains a valid referrer.
    """
    response = request.RESPONSE
    http_url = request.get('ACTUAL_URL', '').strip()
    http_referer = request.get('HTTP_REFERER', '').strip()
179

180 181 182 183 184 185 186
    user_password = request._authUserPW()
    if user_password:
      user = container.acl_users.getUserById(user_password[0]) or\
              container.aq_parent.acl_users.getUserById(user_password[0])
      # Manager can do anything
      if user is not None and 'Manager' in user.getRoles():
        return
187

188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206
    portal_url = container.portal_url.getPortalObject().absolute_url()
    if http_referer != '':
      # if HTTP_REFERER is set, user can acces the object if referer is ok
      if http_referer.startswith(portal_url):
        return
      LOG('HTTP_REFERER_CHECK : BAD REFERER !', INFO,
          'request : "%s", referer : "%s"' % (http_url, http_referer))
      response.unauthorized()
    else:
      # no HTTP_REFERER, we only allow to reach portal_url
      for i in ('/', '/index_html', '/login_form', '/view'):
        if http_url.endswith(i):
          http_url = http_url[:-len(i)]
          break
      if len(http_url) == 0 or not portal_url.startswith(http_url):
        LOG('HTTP_REFERER_CHECK : NO REFERER !', INFO,
            'request : "%s"' % http_url)
        response.unauthorized()

207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256
class AutorisationExtractorBeforeTraverseHook(object):
  """
  Extract login and password from the request and fake an Authorization header.

  Our user folder is not the only user folder: there is also Zope's root user
  folder. The former handles fancy authentication mechanisms, while the latter
  only understands the HTTP "Basic" authentication.
  Which means that, to use such root user (which is required on any freshly
  created ERP5 instance) one would have to use their browser's basic
  authentication support (/manage_main, then input login and password).
  As problem of basic authentication is that the action of logging out is both
  non-straightforward (get asked a login & password and cancel the request)
  and non-integred with ERP5's logout procedure.
  So, to stop using basic authentication while still being able to use these
  root users, there needs to be a way to convert a POST request payload into
  an Authorization header with "Basic" scheme.
  This cannot be done at the level of a PAS extractor plugin because
  ZPublisher.BaseRequest.BaseRequest.traverse caches its _auth property
  (which holds the content of Authorization header) after traversal and before
  querying the user folders available from the object being published.
  Which means it needs to be done one step earlier: during trversal.

  Avoid fancy configurable (and potentially conflicting) prefixes on the fields
  being extracted by using a separate marker field (which should be more
  convenient to tweak in case of conflicts than a pair of prefixes).
  """
  handle = '_erp5_authorisation_extractor'
  def __call__(self, container, request):
    form_dict = request.form
    if (
      # Do nothing if request already has any Authorization header
      not request._auth and
      # Do nothing on non-POST requests
      request.method == 'POST' and
      # Do nothing if our dedicated marker argument does not have the expected
      # value.
      form_dict.get(
        ERP5_AUTHORISATION_EXTRACTOR_MARKER_NAME,
      ) == ERP5_AUTHORISATION_EXTRACTOR_MARKER_VALUE and
      # Do nothing if username or password is missing
      ERP5_AUTHORISATION_EXTRACTOR_USERNAME_NAME in form_dict and
      ERP5_AUTHORISATION_EXTRACTOR_PASSWORD_NAME in form_dict
    ):
      username = form_dict[ERP5_AUTHORISATION_EXTRACTOR_USERNAME_NAME]
      request._auth = 'Basic ' + base64.b64encode('%s:%s' % (
        username,
        form_dict[ERP5_AUTHORISATION_EXTRACTOR_PASSWORD_NAME],
      ))
      request.response._auth = 1
      _setUserNameForAccessLog(username, request)
257 258 259 260 261 262 263 264 265 266

class _site(threading.local):
  """Class for getting and setting the site in the thread global namespace
  """
  site = ()

  def __new__(cls):
    self = threading.local.__new__(cls)
    return self.__get, self.__set

267
  def __get(self, REQUEST=None):
268
    """Returns the currently processed site, optionally wrapped in a request
269
    """
270 271 272
    while True:
      app, site_id = self.site[-1]
      app = app()
273
      if app._p_jar.opened:
274 275 276 277
        if REQUEST is None:
          return getattr(app, site_id)
        return getattr(app.__of__(RequestContainer(REQUEST=REQUEST)), site_id)
      del self.site[-1]
278 279 280 281 282 283 284 285 286 287 288 289 290

  def __set(self, site):
    app = aq_base(site.aq_parent)
    self.site = [x for x in self.site if x[0]() is not app]
    # Use weak references for automatic cleanup. In practice, this is probably
    # useless, because there is no reason a thread reopen the database.
    self.site.append((weakref(app, self.__del), site.id))

  def __del(self, app):
    self.site = [x for x in self.site if x[0] is not app]

getSite, setSite = _site()

291
_missing_tools_registered = None
292

293
class ERP5Site(ResponseHeaderGenerator, FolderMixIn, PortalObjectBase, CacheCookieMixin):
294
  """
295 296
  The *only* function this class should have is to help in the setup
  of a new ERP5.  It should not assist in the functionality at all.
297
  """
298
  meta_type = 'ERP5 Site'
299
  portal_type = 'ERP5 Site'
300
  constructors = (('addERP5Site', manage_addERP5SiteForm), manage_addERP5Site, )
301 302 303
  uid = 0
  last_id = 0
  icon = 'portal.gif'
304 305
  # Default value, prevents error during upgrade
  isIndexable = ConstantGetter('isIndexable', value=True)
306 307 308 309
  # There can remain a lot a activities to be processed once all BT5 are
  # installed, and scalability tests want a reliable way to know when the site
  # is ready to be tortured.
  isPortalBeingCreated = ConstantGetter('isPortalBeingCreated', value=False)
310 311

  _properties = (
312
      { 'id':'title',
313
        'type':'string'},
314
      { 'id':'description',
315
        'type':'text'},
316 317 318 319 320 321 322 323 324 325
      # setProperty cannot be used for this property as it is a property
      # pointing to _version_priority_list and valid_property_id doesn't
      # accept property name starting with '_'. The property getter always
      # returns at least erp5 version.
      #
      # Also, it must not be a local property as it is stored in ZODB and
      # would not be displayed 'Properties' tab with old sites, thus could not
      # be edited.
      { 'id': 'version_priority_list',
        'type': 'lines' }
326
      )
327 328 329 330 331 332 333
  title = ''
  description = ''

  # Declarative security
  security = ClassSecurityInfo()
  security.declareObjectProtected(Permissions.AccessContentsInformation)

334 335 336 337
  def __init__(self, id):
    PortalObjectBase.__init__(self, id)
    self.creation_date = DateTime()

338
  security.declarePublic('getCoreBusinessTemplateList')
339
  def getCoreBusinessTemplateList(self):
340 341 342 343
    # Return the list of business templates expected to be installed when this
    # class is instanciated. Allows including these business templates in the
    # list of business templates to upgrade (ex: in upgrade unit tests) without
    # duplicating this list.
344 345 346 347 348 349 350 351
    return [
      'erp5_property_sheets',
      'erp5_core',
      self.erp5_catalog_storage,
      'erp5_jquery',
      'erp5_xhtml_style',
    ]

352 353 354 355 356
  security.declarePrivate('reindexObject')
  def reindexObject(self, idxs=[]):
    """from Products.CMFDefault.Portal"""
    pass

357 358 359 360 361 362 363 364 365 366 367
  security.declarePublic('isSubtreeIndexable')
  def isSubtreeIndexable(self):
    """
    Allow a container to preempt indexability of its content, without having
    to set "isIndexable = False" on (at minimum) its immediate children.

    The meaning of calling this method on an instance where
    isAncestryIndexable returns False is undefined.
    """
    return self.isIndexable

368 369 370 371
  def __before_publishing_traverse__(self, self2, request):
    request.RESPONSE.realm = None
    return super(ERP5Site, self).__before_publishing_traverse__(self2, request)

372 373 374
  def _getTypesTool(self):
    return self.portal_types

375 376 377 378 379 380 381 382 383 384 385 386 387 388 389 390
  def _initSystemPreference(self, cloudooo_url):
    """
    Post-addERP5Site code to make sure that cloudoo is configured,
    which is often required by the configurator.
    """
    preference_tool = self.portal_preferences
    id = 'default_system_preference'
    portal_type = 'System Preference'
    for pref in preference_tool.objectValues(portal_type=portal_type):
      if pref.getPreferenceState() == 'global':
        break
    else:
      from Products.ERP5Form.PreferenceTool import Priority
      pref = preference_tool.newContent(id, portal_type,
        priority=Priority.SITE, title='Default ' + portal_type)
      pref.enable()
391 392
    cloudooo_url = cloudooo_url.split(',')
    pref.setPreferredDocumentConversionServerUrlList(cloudooo_url)
393

394 395 396 397 398 399 400 401 402 403 404 405 406 407 408 409 410 411 412
  def _createInitialSiteManager(self):
    # This section of code is inspired by
    # Products.CMFDefault.upgrade.to21.upgrade_root_site_manager(),
    # specificallythe 'except ComponentLookupError:' clause, and also
    # by Products.CMFDefault.PortalObjectBase.__init__
    from zope.component.globalregistry import base
    from five.localsitemanager import (PersistentComponents,
                                       find_next_sitemanager)
    next = find_next_sitemanager(self)
    if next is None:
      next = base
    name = '++etc++site'
    sm = PersistentComponents(name, (next,))
    sm.__parent__ = aq_base(self)
    self.setSiteManager(sm)
    LOG('ERP5Site', 0, "Site manager '%s' added." % name)

  def _doTranslationDomainRegistration(self):
    from zope.i18n.interfaces import ITranslationDomain
413
    from Products.Localizer.MessageCatalog import (
414 415
      message_catalog_alias_sources
    )
416
    sm = self._components
417 418 419 420 421 422 423 424 425
    for message_catalog in self.Localizer.objectValues():
      sm.registerUtility(message_catalog,
                         provided=ITranslationDomain,
                         name=message_catalog.getId())
      for alias in message_catalog_alias_sources.get(message_catalog.getId()):
        sm.registerUtility(message_catalog,
                           provided=ITranslationDomain,
                           name=alias)

426
  _registry_tool_id_list = 'caching_policy_manager',
427 428 429
  def _registerMissingTools(self):
    tool_id_list = ("portal_skins", "portal_types", "portal_membership",
                    "portal_url", "portal_workflow")
430
    if (None in [self.get(tool_id) for tool_id in tool_id_list] or not
431 432
        TransactionalResource.registerOnce(__name__, 'site_manager', self.id)):
      return
433
    self._registerTools(tool_id_list + self._registry_tool_id_list)
434 435 436 437
    def markRegistered(txn):
      global _missing_tools_registered
      _missing_tools_registered = self.id
    TransactionalResource(tpc_finish=markRegistered)
438

439 440 441 442 443 444 445 446 447 448 449 450 451
  def _registerTools(self, tool_id_list):
    from Products.CMFCore import interfaces, utils
    sm = self._components
    for tool_id in tool_id_list:
      tool = self.get(tool_id, None)
      if tool:
        tool_interface = utils._tool_interface_registry.get(tool_id)
        if tool_interface is not None:
          # Note: already registered tools will be either:
          # - updated
          # - registered again after being unregistered
          sm.registerUtility(aq_base(tool), tool_interface)

452 453 454 455 456 457 458 459 460 461 462 463 464 465 466
  # backward compatibility auto-migration
  def getSiteManager(self):
    # NOTE: do not add a docstring! This method is private by virtue of
    # not having it.

    # XXX-Leo: Consider moving this method and all methods that it calls
    # into a monkeypatch of an optional product. This product could have
    # its own tests for migration without actually cluttering the original
    # source code and would only need to be installed in sites needing
    # migration from Zope 2.8

    # This code is an alteration of
    # OFS.ObjectManager.ObjectManager.getSiteManager(), and is exactly
    # as cheap as it is on the case that self._components is already
    # set.
467 468 469

    if self.id == _missing_tools_registered:
      return self._components # fast path
470
    _components = self._components
471 472 473 474 475 476 477 478 479 480 481 482 483 484 485 486 487 488 489
    if _components is None:
      # only create _components
      self._createInitialSiteManager()
      _components = self._components
      # Now that we have a sitemanager, se can do things that require
      # one. Including setting up ZTK style utilities and adapters. We
      # can even call setSite(self), as long as we roll back that later,
      # since we are actually in the middle of a setSite() call.
      from zope.site.hooks import getSite, setSite
      old_site = getSite()
      try:
        setSite(self)
        self._doTranslationDomainRegistration()
        self._registerMissingTools()
      finally:
        setSite(old_site)
    else:
      self._registerMissingTools()
    return _components
490

491 492
  security.declareProtected(Permissions.View, 'view')
  def view(self):
493 494 495 496 497
    """
      Returns the default view.
      Implemented for consistency
    """
    return self.index_html()
498

499
  def __of__(self, parent):
500
    self = PortalObjectBase.__of__(self, parent)
501 502 503
    # Use a transactional variable for performance reason,
    # since ERP5Site.__of__ is called quite often.
    tv = getTransactionalVariable()
504 505 506
    # Check 'parent' is the root because some objects like '_components'
    # store the site in '__parent__'.
    if 'ERP5Site.__of__' not in tv and type(parent) is Application:
507 508
      tv['ERP5Site.__of__'] = None
      setSite(self)
509 510

      try:
Arnaud Fontaine's avatar
Arnaud Fontaine committed
511
        component_tool = self.portal_components
512
      except AttributeError:
Arnaud Fontaine's avatar
Arnaud Fontaine committed
513 514 515
        # This should only happen before erp5_core is installed
        synchronizeDynamicModules(self)
      else:
516 517 518 519
        if not component_tool.reset():
          # Portal Types may have been reset even if Components haven't
          # (change of Interaction Workflow...)
          synchronizeDynamicModules(self)
520

521 522
    return self

523 524 525
  security.declareProtected(Permissions.AccessContentsInformation, 'skinSuper')
  def skinSuper(self, skin, id):
    if id[:1] != '_' and id[:3] != 'aq_':
526
      skin_info = SKINDATA.get(_thread.get_ident())
527 528 529 530 531 532 533 534 535 536
      if skin_info is not None:
        _, skin_selection_name, _, _ = skin_info
        skin_value = skinResolve(self, (skin_selection_name, skin), id)
        if skin_value is not None:
          # Wrap at the portal to set the owner of the executing script.
          # This mimics the usual way to get an object from skin folders,
          # and it's required when 'skin_value' is a script with proxy roles.
          return skin_value.__of__(self)
    raise AttributeError(id)

537 538 539 540 541
  security.declareProtected(Permissions.AccessContentsInformation,
                            'isDeletable')
  def isDeletable(self, check_relation):
    return False

542
  security.declarePrivate('manage_beforeDelete')
543
  def manage_beforeDelete(self, item, container):
544
    # skin is setup during __before_publishing_traverse__, which
545 546
    # doesn't happen when the object is being deleted from the management
    # interface, but we need it to be set for portal_activities when we're
547
    # being deleted.
548 549 550 551 552
    self.setupCurrentSkin(self.REQUEST)
    return ERP5Site.inheritedAttribute('manage_beforeDelete')(self,
                                                              item,
                                                              container)

553 554 555 556 557 558 559 560 561 562 563 564 565 566 567 568
  security.declareProtected( Permissions.ModifyPortalContent, 'manage_renameObject' )
  def manage_renameObject(self, id=None, new_id=None, REQUEST=None):
    """manage renaming an object while keeping coherency for contained
    and linked to objects inside the renamed object.

    XXX this is nearly a copy-and-paste from CopySupport.

    XXX this is not good enough when the module or the objects inside
    the module are referred to by outer objects. But addressing this problem
    requires a full traversal of the object tree, and the current
    implementation is not efficient enough for this.
    """
    ob = self.restrictedTraverse(id)
    if getattr(aq_base(ob), '_updateInternalRelatedContent', None) is not None:
      # Make sure there is no activities pending on that object
      try:
569
        portal_activities = self.portal_activities
570
      except AttributeError:
571 572
        pass
      else:
573
        if portal_activities.countMessage(path=ob.getPath())>0:
574 575
          raise ActivityPendingError(
            'Sorry, pending activities prevent changing id at this current stage')
576 577 578 579 580 581 582 583

      # Search for categories that have to be updated in sub objects.
      ob._recursiveSetActivityAfterTag(ob)
      path_item_list = ob.getRelativeUrl().split('/')
      ob._updateInternalRelatedContent(object=ob,
                                       path_item_list=path_item_list,
                                       new_id=new_id)
    # Rename the object
584
    return PortalObjectBase.manage_renameObject(self, id=id, new_id=new_id,
585 586
                                       REQUEST=REQUEST)

587

588 589 590 591 592 593 594
  def _getAcquireLocalRoles(self):
    """
      Prevent local roles from being acquired outside of Portal object.
      See ERP5Security/__init__.py:mergedLocalRoles .
    """
    return False

595 596 597 598 599 600 601
  security.declareProtected(Permissions.ManagePortal, 'enableRefererCheck')
  def enableRefererCheck(self):
    """Enable a ReferCheckerBeforeTraverseHook to check users have valid
    HTTP_REFERER
    """
    BeforeTraverse.registerBeforeTraverse(self,
                                        ReferCheckerBeforeTraverseHook(),
602 603 604
                                        ReferCheckerBeforeTraverseHook.handle,
                             # we want to be registered _after_ CookieCrumbler
                                        100)
605

606 607 608 609
  def _disableRefererCheck(self):
    """Disable the HTTP_REFERER check."""
    BeforeTraverse.unregisterBeforeTraverse(self,
                                        ReferCheckerBeforeTraverseHook.handle)
610

611 612 613 614 615 616 617 618 619 620 621 622 623 624 625 626 627 628 629 630 631
  security.declareProtected(Permissions.ManagePortal, 'enableAuthorisationExtractor')
  def enableAuthorisationExtractor(self):
    """
    Enable AutorisationExtractorBeforeTraverseHook.
    """
    BeforeTraverse.registerBeforeTraverse(
      self,
      AutorisationExtractorBeforeTraverseHook(),
      AutorisationExtractorBeforeTraverseHook.handle,
    )

  security.declareProtected(Permissions.ManagePortal, 'isAuthorisationExtractorEnabled')
  def isAuthorisationExtractorEnabled(self):
    """
    Returns whether AutorisationExtractorBeforeTraverseHook is enabled.
    """
    return bool(BeforeTraverse.queryBeforeTraverse(
      self,
      AutorisationExtractorBeforeTraverseHook.handle,
    ))

632
  def hasObject(self, id):
633
    """
634
    Check if the portal has an id.
Jean-Paul Smets's avatar
Jean-Paul Smets committed
635
    """
636
    return id in self.objectIds()
637

638
  security.declareProtected(Permissions.AccessContentsInformation,
639
                            'getPortalObject')
640 641
  def getPortalObject(self):
    return self
Jean-Paul Smets's avatar
Jean-Paul Smets committed
642

643 644 645 646 647
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalType')
  def getPortalType(self):
    return self.portal_type

648
  security.declareProtected(Permissions.AccessContentsInformation,
649
                            'getTitle')
650 651 652 653 654
  def getTitle(self):
    """
      Return the title.
    """
    return self.title
655

656
  security.declareProtected(Permissions.AccessContentsInformation,
657 658
                            'getVersionPriorityList')
  def getVersionPriorityList(self):
Arnaud Fontaine's avatar
Arnaud Fontaine committed
659
    """
660
    Return the Component version priorities defined on the site in descending
661
    order. Whatever happens, erp5 version must always be returned otherwise it
662
    may render the site unusable when all Products will have been migrated
Arnaud Fontaine's avatar
Arnaud Fontaine committed
663
    """
664
    return getattr(self, '_version_priority_list', None) or ('erp5 | 0.0',)
665 666

  security.declareProtected(Permissions.ModifyPortalContent,
667
                            'setVersionPriorityList' )
668
  def setVersionPriorityList(self, version_priority_tuple):
669
    """
670 671 672
    Set Version Priority List and make sure that erp5 version is always
    defined whatever the given value is

673 674
    XXX-arnau: must be written through an interaction workflow when ERP5Site
               will become a real ERP5 object...
675
    """
676 677 678 679 680 681 682 683 684 685
    if not isinstance(version_priority_tuple, tuple):
      version_priority_tuple = tuple(version_priority_tuple)

    # erp5 version must always be present, thus add it at the end if it's not
    # already there
    for version_priority in version_priority_tuple:
      if version_priority.split('|')[0].strip() == 'erp5':
        break
    else:
      version_priority_tuple = version_priority_tuple + ('erp5 | 0.0',)
686

687
    self._version_priority_list = version_priority_tuple
688

689 690 691 692 693 694
    # Reset cached value of getVersionPriorityNameList() if present
    try:
      del self._v_version_priority_name_list
    except AttributeError:
      pass

695
    # Make sure that reset is not performed when creating a new site
696
    if not getattr(self, '_v_bootstrapping', False):
697 698 699 700 701
      try:
        self.portal_components.resetOnceAtTransactionBoundary()
      except AttributeError:
        # This should only happen before erp5_core is installed
        pass
702

703 704
  version_priority_list = property(getVersionPriorityList,
                                   setVersionPriorityList)
705

706 707
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getVersionPriorityNameList')
708
  def getVersionPriorityNameList(self):
709 710 711 712 713 714 715 716 717
    """
    Get only the version names ordered by priority and cache it as it is used
    very often in Component import hooks
    """
    if getattr(self, '_v_version_priority_name_list', None) is None:
      self._v_version_priority_name_list = \
          [name.split('|')[0].strip() for name in self.getVersionPriorityList()]

    return self._v_version_priority_name_list
718

719 720 721 722
  # Make sure ERP5Site follow same API as Products.ERP5Type.Base

  # _getProperty is missing, but since there are no protected properties
  # on an ERP5 Site, we can just use getProperty instead.
723
  _getProperty = PortalObjectBase.getProperty
724

725 726 727 728 729 730
  security.declareProtected(Permissions.AccessContentsInformation, 'getUid')
  def getUid(self):
    """
      Returns the UID of the object. Eventually reindexes
      the object in order to make sure there is a UID
      (useful for import / export).
Jean-Paul Smets's avatar
Jean-Paul Smets committed
731

732 733 734
      WARNING : must be updates for circular references issues
    """
    return getattr(self, 'uid', 0)
Jean-Paul Smets's avatar
Jean-Paul Smets committed
735

736
  security.declareProtected(Permissions.AccessContentsInformation,
737
                            'getParentUid')
738 739 740 741 742
  def getParentUid(self):
    """
      A portal has no parent
    """
    return self.getUid()
Jean-Paul Smets's avatar
Jean-Paul Smets committed
743

744 745 746 747
  # Required to allow content creation outside folders
  security.declareProtected(Permissions.View, 'getIdGroup')
  def getIdGroup(self):
    return None
Jean-Paul Smets's avatar
Jean-Paul Smets committed
748

749 750 751 752
  # Required to allow content creation outside folders
  security.declareProtected(Permissions.ModifyPortalContent, 'setLastId')
  def setLastId(self, id):
    self.last_id = id
Jean-Paul Smets's avatar
Jean-Paul Smets committed
753

754 755
  security.declareProtected(Permissions.AccessContentsInformation, 'getUrl')
  def getUrl(self, REQUEST=None):
756 757 758
    """
      Returns the absolute path of an object
    """
759
    return '/'.join(self.getPhysicalPath())
Sebastien Robin's avatar
Sebastien Robin committed
760

761 762 763 764 765 766 767
  security.declareProtected(Permissions.AccessContentsInformation, 'getRelativeUrl')
  def getRelativeUrl(self):
    """
      Returns the url of an object relative to the portal site.
    """
    return self.getPortalObject().portal_url.getRelativeUrl(self)

768 769 770 771
  # Old name - for compatibility
  security.declareProtected(Permissions.AccessContentsInformation, 'getPath')
  getPath = getUrl

772 773 774 775 776 777
  security.declareProtected(Permissions.AccessContentsInformation, 'opaqueValues')
  def opaqueValues(self, *args, **kw):
    # XXX nonsense of inheriting from CMFSite that calls __before_traversal__
    # and tries to load subobjects of the portal too early
    return []

778
  security.declareProtected(Permissions.AccessContentsInformation, 'searchFolder')
779 780 781 782 783
  def searchFolder(self, **kw):
    """
      Search the content of a folder by calling
      the portal_catalog.
    """
784
    if 'parent_uid' not in kw:
785
      kw['parent_uid'] = self.uid
786
    return self.portal_catalog.searchResults(**kw)
787 788 789 790 791 792 793

  security.declareProtected(Permissions.AccessContentsInformation, 'countFolder')
  def countFolder(self, **kw):
    """
      Count the content of a folder by calling
      the portal_catalog.
    """
794
    if 'parent_uid' not in kw:
795
      kw['parent_uid'] = self.uid
796
    return self.portal_catalog.countResults(**kw)
797 798 799 800 801 802 803 804

  # Proxy methods for security reasons
  def getOwnerInfo(self):
    return self.owner_info()

  security.declarePublic('getOrderedGlobalActionList')
  def getOrderedGlobalActionList(self, action_list):
    """
805 806
    Returns a dictionnary of actions, sorted by type of object

807
    This should absolutely be rewritten by using clean
808
    concepts to separate worklists XXX
809 810 811 812 813 814
    """
    sorted_workflow_actions = {}
    sorted_global_actions = []
    other_global_actions = []
    for action in action_list:
      action['disabled'] = 0
Kazuhiko Shiozaki's avatar
Kazuhiko Shiozaki committed
815 816
      workflow_title = action.get('workflow_title', None)
      if workflow_title is not None:
817
        if workflow_title not in sorted_workflow_actions:
Kazuhiko Shiozaki's avatar
Kazuhiko Shiozaki committed
818 819 820 821 822 823 824
          sorted_workflow_actions[workflow_title] = [
            {'title':workflow_title,
             'disabled':1,
             'workflow_id':action['workflow_id']
             }
            ]
        sorted_workflow_actions[workflow_title].append(action)
825 826
      else:
        other_global_actions.append(action)
827
    for key in sorted(sorted_workflow_actions):
828 829 830 831 832 833
      sorted_global_actions.extend(sorted_workflow_actions[key])
    sorted_global_actions.append({'title': 'Others', 'disabled': 1})
    sorted_global_actions.extend(other_global_actions)
    return sorted_global_actions

  def setupDefaultProperties(self, p, title, description,
834 835 836
                             email_from_address, email_from_name,
                             validate_email
                             ):
837
    PortalObjectBase.setupDefaultProperties(self, p, title, description,
838 839
                           email_from_address, email_from_name,
                           validate_email)
840

841 842 843
  # Portal methods are based on the concept of having portal-specific
  # parameters for customization. In the past, we used global parameters,
  # but it was not very good because it was very difficult
844
  # to customize the settings for each portal site.
845 846
  def _getPortalConfiguration(self, id):
    """
847
    Get a portal-specific configuration.
848

849 850
    Current implementation is using properties in a portal object.
    If not found, try to get a default value for backward compatibility.
851

852 853
    This implementation can be improved by gathering information
    from appropriate places, such as portal_types, portal_categories
854
    and portal_workflow.
855 856 857
    """
    if self.hasProperty(id):
      return self.getProperty(id)
858

859 860
    # Fall back to the default.
    return getattr(ERP5Defaults, id, None)
861

Romain Courteaud's avatar
Romain Courteaud committed
862 863 864 865 866 867 868 869 870 871 872 873 874 875 876 877 878 879 880 881
  security.declareProtected(Permissions.ManagePortal, 'getPromiseParameter')
  def getPromiseParameter(self, section, option):
    """
    Read external promise parameters.

    The parameters should be provided by an external configuration file.
    Location of this configuration file is defined in the zope configuration
    file in a product_config named as the path of the ERP5 site.
    Example if the site id is erp5:
      <product-config /erp5>
        promise_path /tmp/promise.cfg
      </product-config>

    The promise configuration is a simple ConfigParser readable file (a list of
    section containing a list of string parameters.

    getPromiseParameter returns None if the parameter isn't found.
    """
    config = getConfiguration()
    if getattr(config, 'product_config', None) is not None:
882
      parameter_dict = config.product_config.get(self.getPath(), {})
Romain Courteaud's avatar
Romain Courteaud committed
883 884
      if 'promise_path' in parameter_dict:
        promise_path = parameter_dict['promise_path']
885 886
        from six.moves import configparser
        configuration = configparser.ConfigParser()
Romain Courteaud's avatar
Romain Courteaud committed
887 888 889
        configuration.read(promise_path)
        try:
          return configuration.get(section, option)
890
        except (configparser.NoOptionError, configparser.NoSectionError):
Romain Courteaud's avatar
Romain Courteaud committed
891 892 893
          pass
    return None

894
  def _getPortalGroupedTypeList(self, group, enable_sort=True):
895
    """
896
    Return a list of portal types classified to a specific group.
897 898
    The result is sorted by language (using the user language
    as default)
899 900 901

    Enable_sort parameter was added in order to allows looking groups
    of portal type without sorting. This is better for performance
902 903 904
    """
    def getTypeList(group):
      type_list = []
Sebastien Robin's avatar
Sebastien Robin committed
905
      for pt in self.portal_types.listTypeInfo():
906 907
        if group in getattr(pt, 'group_list', ()):
          type_list.append(pt.getId())
908

909 910 911 912
      if enable_sort and len(type_list) >= 2:
        # XXX (Seb), this code must be moved in another place.
        # It is inefficient to always sort here for some particular
        # needs of the user interface
Kazuhiko Shiozaki's avatar
Kazuhiko Shiozaki committed
913 914
        translate = localizer_tool.translate
        type_list.sort(key=lambda x:translate('ui', x))
915 916
      return tuple(type_list)

917 918
    if enable_sort:
      # language should be cached in Transaction Cache if performance issue
919
      localizer_tool = self.Localizer
920 921 922
      language = localizer_tool.get_selected_language()
    else:
      localizer_tool = language = None
923

924
    getTypeList = CachingMethod(getTypeList,
925 926 927 928
                                id=(('_getPortalGroupedTypeList', language), group,
                                    enable_sort),
                                cache_factory='erp5_content_medium',
                                )
929 930 931

    return getTypeList(group) # Although this method is called get*List, it
                              # returns a tuple - renaming to be considered
932

933 934 935 936 937 938 939 940 941
  @caching_instance_method(id='ERP5Site._getPortalGroupedTypeSet',
     cache_factory='erp5_content_long')
  def _getPortalGroupedTypeSet(self, group):
    """
    Same as _getPortalGroupedTypeList, but returns a set, better for
    performance when looking for matching portal types
    """
    return set(self._getPortalGroupedTypeList(group, enable_sort=False))

942
  def _getPortalGroupedCategoryList(self, group):
943
    """
944
    Return a list of base categories classified to a specific group.
945 946 947 948 949 950 951 952
    """
    def getCategoryList(group):
      category_list = []
      for bc in self.portal_categories.objectValues():
        if group in bc.getCategoryTypeList():
          category_list.append(bc.getId())
      return tuple(category_list)

953 954
    getCategoryList = CachingMethod(
                            getCategoryList,
955
                            id=('_getPortalGroupedCategoryList', group),
Aurel's avatar
Aurel committed
956
                            cache_factory='erp5_content_medium')
957 958 959
    return getCategoryList(group)

  def _getPortalGroupedStateList(self, group):
960
    """
961
    Return a list of workflow states classified to a specific group.
962 963
    """
    def getStateList(group):
964
      state_set = set()
965
      for wf in self.portal_workflow.objectValues():
966 967 968 969
        for state in wf.getStateValueList():
          if group in state.getStateTypeList():
            state_set.add(state.getReference())
      return tuple(state_set)
970

971
    getStateList = CachingMethod(getStateList,
972
                                 id=('_getPortalGroupedStateList', group),
Aurel's avatar
Aurel committed
973
                                 cache_factory='erp5_content_medium')
974 975
    return getStateList(group)

976 977
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalDefaultSectionCategory')
978 979
  def getPortalDefaultSectionCategory(self):
    """
980
    Return a default section category. This method is deprecated.
981 982 983 984
    """
    LOG('ERP5Site', 0, 'getPortalDefaultSectionCategory is deprecated;'+
        ' use portal_preferences.getPreferredSectionCategory instead.')
    section_category = self.portal_preferences.getPreferredSectionCategory()
985

986 987 988 989
    # XXX This is only for backward-compatibility.
    if not section_category:
      section_category = self._getPortalConfiguration(
                                'portal_default_section_category')
990

991
    return section_category
992

993 994 995 996 997 998
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalResourceTypeList')
  def getPortalResourceTypeList(self):
    """
      Return resource types.
    """
999 1000 1001
    return self._getPortalGroupedTypeList('resource') or \
           self._getPortalConfiguration('portal_resource_type_list')

1002 1003 1004 1005 1006 1007 1008
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalSubVariationTypeList')
  def getPortalSubVariationTypeList(self):
    """
      Return resource types.
    """
    return self._getPortalGroupedTypeList('sub_variation')
1009

1010 1011 1012 1013 1014 1015 1016
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalSubVariationBaseCategoryList')
  def getPortalSubVariationBaseCategoryList(self):
    """
      Return variation base categories.
    """
    return self._getPortalGroupedCategoryList('sub_variation')
1017

1018 1019 1020 1021 1022 1023 1024 1025 1026 1027 1028 1029 1030 1031 1032 1033
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalSourceArrowBaseCategoryList')
  def getPortalSourceArrowBaseCategoryList(self):
    """
      Return source arrow base categories.
    """
    return self._getPortalGroupedCategoryList('source_arrow')

  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalDestinationArrowBaseCategoryList')
  def getPortalDestinationArrowBaseCategoryList(self):
    """
      Return destination arrow base categories.
    """
    return self._getPortalGroupedCategoryList('destination_arrow')

1034 1035 1036 1037 1038 1039
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalVariationTypeList')
  def getPortalVariationTypeList(self):
    """
      Return variation types.
    """
1040 1041 1042
    return self._getPortalGroupedTypeList('variation') or \
           self._getPortalConfiguration('portal_variation_type_list')

1043 1044 1045 1046 1047 1048
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalNodeTypeList')
  def getPortalNodeTypeList(self):
    """
      Return node types.
    """
1049 1050 1051
    return self._getPortalGroupedTypeList('node') or \
           self._getPortalConfiguration('portal_node_type_list')

1052 1053 1054 1055 1056 1057
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalPaymentNodeTypeList')
  def getPortalPaymentNodeTypeList(self):
    """
      Return payment node types.
    """
1058 1059 1060
    return self._getPortalGroupedTypeList('payment_node') or \
           self._getPortalConfiguration('portal_payment_node_type_list')

1061 1062 1063 1064 1065 1066
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalInvoiceTypeList')
  def getPortalInvoiceTypeList(self):
    """
      Return invoice types.
    """
1067 1068 1069
    return self._getPortalGroupedTypeList('invoice') or \
           self._getPortalConfiguration('portal_invoice_type_list')

1070 1071 1072 1073 1074 1075
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalOrderTypeList')
  def getPortalOrderTypeList(self):
    """
      Return order types.
    """
1076 1077 1078
    return self._getPortalGroupedTypeList('order') or \
           self._getPortalConfiguration('portal_order_type_list')

1079 1080 1081 1082 1083 1084 1085 1086 1087
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalOpenOrderTypeList')
  def getPortalOpenOrderTypeList(self):
    """
      Return open order types.
    """
    return self._getPortalGroupedTypeList('open_order') or \
           self._getPortalConfiguration('portal_open_order_type_list')

1088 1089 1090 1091 1092 1093
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalDeliveryTypeList')
  def getPortalDeliveryTypeList(self):
    """
      Return delivery types.
    """
1094 1095 1096
    return self._getPortalGroupedTypeList('delivery') or \
           self._getPortalConfiguration('portal_delivery_type_list')

1097 1098 1099 1100 1101 1102
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalTransformationTypeList')
  def getPortalTransformationTypeList(self):
    """
      Return transformation types.
    """
1103 1104 1105
    return self._getPortalGroupedTypeList('transformation') or \
           self._getPortalConfiguration('portal_transformation_type_list')

1106 1107 1108 1109 1110 1111 1112 1113 1114
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalModelPathTypeList')
  def getPortalModelPathTypeList(self):
    """
      Return model_path types.
    """
    return self._getPortalGroupedTypeList('model_path') or \
           self._getPortalConfiguration('portal_model_path_type_list')

1115 1116 1117 1118 1119 1120
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalVariationBaseCategoryList')
  def getPortalVariationBaseCategoryList(self):
    """
      Return variation base categories.
    """
1121 1122 1123
    return self._getPortalGroupedCategoryList('variation') or \
           self._getPortalConfiguration('portal_variation_base_category_list')

1124 1125 1126 1127 1128 1129
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalOptionBaseCategoryList')
  def getPortalOptionBaseCategoryList(self):
    """
      Return option base categories.
    """
1130 1131 1132
    return self._getPortalGroupedCategoryList('option') or \
           self._getPortalConfiguration('portal_option_base_category_list')

1133 1134 1135 1136 1137 1138
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalInvoiceMovementTypeList')
  def getPortalInvoiceMovementTypeList(self):
    """
      Return invoice movement types.
    """
1139 1140 1141
    return self._getPortalGroupedTypeList('invoice_movement') or \
           self._getPortalConfiguration('portal_invoice_movement_type_list')

1142 1143 1144 1145 1146 1147 1148 1149 1150 1151
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalTaxMovementTypeList')
  def getPortalTaxMovementTypeList(self):
    """
      Return tax movement types.
    """
    return self._getPortalGroupedTypeList('tax_movement') or \
           self._getPortalConfiguration('portal_tax_movement_type_list')


1152 1153 1154 1155 1156 1157
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalOrderMovementTypeList')
  def getPortalOrderMovementTypeList(self):
    """
      Return order movement types.
    """
1158 1159 1160
    return self._getPortalGroupedTypeList('order_movement') or \
           self._getPortalConfiguration('portal_order_movement_type_list')

1161 1162 1163 1164 1165 1166
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalDeliveryMovementTypeList')
  def getPortalDeliveryMovementTypeList(self):
    """
      Return delivery movement types.
    """
1167 1168 1169
    return self._getPortalGroupedTypeList('delivery_movement') or \
           self._getPortalConfiguration('portal_delivery_movement_type_list')

1170
  security.declareProtected(Permissions.AccessContentsInformation,
1171
                            'getPortalSupplyTypeList')
1172 1173 1174 1175
  def getPortalSupplyTypeList(self):
    """
      Return supply types.
    """
1176 1177 1178
    return self._getPortalGroupedTypeList('supply') or \
           self._getPortalConfiguration('portal_supply_type_list')

1179 1180 1181 1182
  security.declareProtected(Permissions.AccessContentsInformation,
                              'getPortalConstraintTypeList')
  def getPortalConstraintTypeList(self):
    """
1183
      Return constraint types.
1184 1185 1186
    """
    return self._getPortalGroupedTypeList('constraint')

1187 1188 1189 1190 1191 1192 1193 1194
  security.declareProtected(Permissions.AccessContentsInformation,
                              'getPortalPropertyTypeList')
  def getPortalPropertyTypeList(self):
    """
      Return property types.
    """
    return self._getPortalGroupedTypeList('property')

1195 1196 1197 1198 1199 1200 1201 1202
  security.declareProtected(Permissions.AccessContentsInformation,
                              'getPortalRuleTypeList')
  def getPortalRuleTypeList(self):
    """
      Return rule types.
    """
    return self._getPortalGroupedTypeList('rule')

Jean-Paul Smets's avatar
Jean-Paul Smets committed
1203 1204 1205 1206
  security.declareProtected(Permissions.AccessContentsInformation,
                              'getPortalProjectTypeList')
  def getPortalProjectTypeList(self):
    """
1207
      Return project types.
Jean-Paul Smets's avatar
Jean-Paul Smets committed
1208 1209 1210
    """
    return self._getPortalGroupedTypeList('project')

1211
  security.declareProtected(Permissions.AccessContentsInformation,
1212 1213 1214 1215 1216
                              'getPortalDocumentTypeList')
  def getPortalDocumentTypeList(self):
    """
      Return document types.
    """
1217
    return self._getPortalGroupedTypeList('document')
1218

1219 1220 1221 1222 1223 1224 1225 1226
  security.declareProtected(Permissions.AccessContentsInformation,
                              'getPortalEmbeddedDocumentTypeList')
  def getPortalEmbeddedDocumentTypeList(self):
    """
      Return embedded document types.
    """
    return self._getPortalGroupedTypeList('embedded_document')

1227 1228 1229 1230 1231 1232 1233 1234
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalWebDocumentTypeList')
  def getPortalWebDocumentTypeList(self):
    """
      Return web page types.
    """
    return self._getPortalGroupedTypeList('web_document')

1235 1236 1237 1238
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalFileDocumentTypeList')
  def getPortalFileDocumentTypeList(self):
    """
1239
      Return file document types.
1240 1241 1242 1243 1244 1245 1246
    """
    return self._getPortalGroupedTypeList('file_document')

  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalRecentDocumentTypeList')
  def getPortalRecentDocumentTypeList(self):
    """
1247
      Return recent document types.
1248 1249 1250 1251 1252 1253 1254
    """
    return self._getPortalGroupedTypeList('recent_document')

  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalTemplateDocumentTypeList')
  def getPortalTemplateDocumentTypeList(self):
    """
1255
      Return template document types.
1256 1257 1258 1259 1260 1261 1262
    """
    return self._getPortalGroupedTypeList('template_document')

  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalMyDocumentTypeList')
  def getPortalMyDocumentTypeList(self):
    """
1263
      Return my document types.
1264 1265 1266
    """
    return self._getPortalGroupedTypeList('my_document')

1267 1268 1269 1270
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalCrawlerIndexTypeList')
  def getPortalCrawlerIndexTypeList(self):
    """
1271
      Return crawler index types.
1272 1273 1274
    """
    return self._getPortalGroupedTypeList('crawler_index')

1275 1276 1277 1278 1279 1280 1281 1282
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalBudgetVariationTypeList')
  def getPortalBudgetVariationTypeList(self):
    """
      Return budget variation types.
    """
    return self._getPortalGroupedTypeList('budget_variation')

1283
  security.declareProtected(Permissions.AccessContentsInformation,
1284
                            'getPortalSupplyPathTypeList')
1285 1286
  def getPortalSupplyPathTypeList(self):
    """
1287
      Return supply path types.
1288
    """
1289 1290 1291
    return self._getPortalGroupedTypeList('supply_path') or \
           self._getPortalConfiguration('portal_supply_path_type_list')

1292 1293 1294 1295 1296 1297
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalAcquisitionMovementTypeList')
  def getPortalAcquisitionMovementTypeList(self):
    """
      Return acquisition movement types.
    """
1298 1299 1300 1301 1302
    r = list(self.getPortalOrderMovementTypeList())
    r += self.getPortalDeliveryMovementTypeList()
    r += self.getPortalTaxMovementTypeList()
    r += self.getPortalInvoiceMovementTypeList()
    return tuple(r)
1303

1304 1305 1306 1307 1308 1309
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalMovementTypeList')
  def getPortalMovementTypeList(self):
    """
      Return movement types.
    """
1310 1311 1312 1313 1314 1315 1316
    r = list(self.getPortalOrderMovementTypeList())
    r += self.getPortalDeliveryMovementTypeList()
    r += self.getPortalInvoiceMovementTypeList()
    r += self.getPortalTaxMovementTypeList()
    r += self.getPortalAccountingMovementTypeList()
    r.append('Simulation Movement')
    return tuple(r)
1317

1318 1319 1320 1321 1322 1323
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalSimulatedMovementTypeList')
  def getPortalSimulatedMovementTypeList(self):
    """
      Return simulated movement types.
    """
1324 1325 1326
    r = set(self.getPortalMovementTypeList())
    r.difference_update(self.getPortalContainerTypeList())
    return tuple(r)
1327

1328 1329 1330 1331 1332 1333
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalContainerTypeList')
  def getPortalContainerTypeList(self):
    """
      Return container types.
    """
1334 1335 1336
    return self._getPortalGroupedTypeList('container') or \
           self._getPortalConfiguration('portal_container_type_list')

1337 1338 1339 1340 1341 1342
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalContainerLineTypeList')
  def getPortalContainerLineTypeList(self):
    """
      Return container line types.
    """
1343 1344 1345
    return self._getPortalGroupedTypeList('container_line') or \
           self._getPortalConfiguration('portal_container_line_type_list')

1346 1347 1348 1349 1350 1351
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalItemTypeList')
  def getPortalItemTypeList(self):
    """
      Return item types.
    """
1352 1353 1354
    return self._getPortalGroupedTypeList('item') or \
           self._getPortalConfiguration('portal_item_type_list')

1355 1356 1357 1358 1359 1360
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalDiscountTypeList')
  def getPortalDiscountTypeList(self):
    """
      Return discount types.
    """
1361 1362 1363
    return self._getPortalGroupedTypeList('discount') or \
           self._getPortalConfiguration('portal_discount_type_list')

1364 1365 1366 1367 1368 1369 1370 1371 1372 1373 1374 1375 1376 1377 1378 1379 1380 1381
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalProductTypeList')
  def getPortalProductTypeList(self):
    """
      Return physical goods types.
    """
    return self._getPortalGroupedTypeList('product') or \
           self._getPortalConfiguration('portal_product_type_list')

  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalServiceTypeList')
  def getPortalServiceTypeList(self):
    """
      Return immaterial services types.
    """
    return self._getPortalGroupedTypeList('service') or \
           self._getPortalConfiguration('portal_service_type_list')

1382 1383 1384 1385 1386 1387 1388 1389 1390 1391 1392 1393 1394 1395 1396 1397 1398 1399 1400 1401 1402 1403 1404 1405
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalSaleTypeList')
  def getPortalSaleTypeList(self):
    """
    Return sale types.
    """
    return self._getPortalGroupedTypeList('sale')

  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalPurchaseTypeList')
  def getPortalPurchaseTypeList(self):
    """
    Return purchase types.
    """
    return self._getPortalGroupedTypeList('purchase')

  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalInternalTypeList')
  def getPortalInternalTypeList(self):
    """
    Return internal types.
    """
    return self._getPortalGroupedTypeList('internal')

1406 1407 1408 1409 1410 1411
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalAlarmTypeList')
  def getPortalAlarmTypeList(self):
    """
      Return alarm types.
    """
1412 1413 1414
    return self._getPortalGroupedTypeList('alarm') or \
           self._getPortalConfiguration('portal_alarm_type_list')

1415 1416 1417 1418 1419 1420
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalPaymentConditionTypeList')
  def getPortalPaymentConditionTypeList(self):
    """
      Return payment condition types.
    """
1421 1422 1423
    return self._getPortalGroupedTypeList('payment_condition') or \
           self._getPortalConfiguration('portal_payment_condition_type_list')

1424 1425 1426 1427 1428 1429
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalBalanceTransactionLineTypeList')
  def getPortalBalanceTransactionLineTypeList(self):
    """
      Return balance transaction line types.
    """
1430
    return self._getPortalGroupedTypeList('balance_transaction_line') or \
1431 1432
           self._getPortalConfiguration(
                  'portal_balance_transaction_line_type_list')
1433

1434 1435 1436 1437 1438 1439 1440 1441
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalDomainTypeList')
  def getPortalDomainTypeList(self):
    """
      Return domain types.
    """
    return self._getPortalGroupedTypeList('domain')

1442 1443 1444 1445 1446 1447 1448 1449
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalPostTypeList')
  def getPortalPostTypeList(self):
    """
      Return post types.
    """
    return self._getPortalGroupedTypeList('post')

1450 1451 1452 1453 1454 1455
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalCurrentInventoryStateList')
  def getPortalCurrentInventoryStateList(self):
    """
      Return current inventory states.
    """
1456 1457 1458
    return self._getPortalGroupedStateList('current_inventory') or \
           self._getPortalConfiguration('portal_current_inventory_state_list')

1459 1460 1461 1462 1463 1464 1465 1466 1467
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalTransitInventoryStateList')
  def getPortalTransitInventoryStateList(self):
    """
      Return transit inventory states.
    """
    return self._getPortalGroupedStateList('transit_inventory') or \
           self._getPortalConfiguration('portal_transit_inventory_state_list')

1468 1469 1470 1471 1472 1473
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalDraftOrderStateList')
  def getPortalDraftOrderStateList(self):
    """
      Return draft order states.
    """
1474 1475 1476
    return self._getPortalGroupedStateList('draft_order') or \
           self._getPortalConfiguration('portal_draft_order_state_list')

1477 1478 1479 1480 1481 1482
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalPlannedOrderStateList')
  def getPortalPlannedOrderStateList(self):
    """
      Return planned order states.
    """
1483 1484 1485
    return self._getPortalGroupedStateList('planned_order') or \
           self._getPortalConfiguration('portal_planned_order_state_list')

1486 1487 1488 1489 1490 1491
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalReservedInventoryStateList')
  def getPortalReservedInventoryStateList(self):
    """
      Return reserved inventory states.
    """
1492
    return self._getPortalGroupedStateList('reserved_inventory') or \
1493
        self._getPortalConfiguration('portal_reserved_inventory_state_list')
1494

1495 1496 1497 1498 1499 1500
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalFutureInventoryStateList')
  def getPortalFutureInventoryStateList(self):
    """
      Return future inventory states.
    """
1501 1502 1503
    return self._getPortalGroupedStateList('future_inventory') or \
           self._getPortalConfiguration('portal_future_inventory_state_list')

1504
  security.declareProtected(Permissions.AccessContentsInformation,
1505
                          'getPortalUpdatableAmortisationTransactionStateList')
1506 1507
  def getPortalUpdatableAmortisationTransactionStateList(self):
    """
1508
      Return states when Amortisation Transaction can be updated
1509
      by amortisation_transaction_builder.
1510
    """
1511 1512
    return self._getPortalConfiguration(
        'portal_updatable_amortisation_transaction_state_list')
1513

1514 1515 1516 1517 1518 1519 1520
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalGroupedSimulationStateList')
  def getPortalGroupedSimulationStateList(self):
    """
      Return all states which is related to simulation state workflow and state type
    """
    def getStateList():
1521
      state_set = set()
1522
      for wf in self.portal_workflow.objectValues():
1523 1524 1525 1526 1527
        if wf.getStateVariable() == 'simulation_state':
          for state in wf.getStateValueList():
            if state.getStateTypeList():
              state_set.add(state.getReference())
      return tuple(sorted(state_set))
1528 1529 1530 1531 1532 1533

    getStateList = CachingMethod(getStateList,
                                 id=('getPortalGroupedSimulationStateList'),
                                 cache_factory='erp5_content_medium')
    return getStateList()

1534 1535 1536 1537 1538 1539
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalColumnBaseCategoryList')
  def getPortalColumnBaseCategoryList(self):
    """
      Return column base categories.
    """
1540 1541 1542
    return self._getPortalGroupedCategoryList('column') or \
           self._getPortalConfiguration('portal_column_base_category_list')

1543 1544 1545 1546 1547 1548
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalLineBaseCategoryList')
  def getPortalLineBaseCategoryList(self):
    """
      Return line base categories.
    """
1549 1550 1551
    return self._getPortalGroupedCategoryList('line') or \
           self._getPortalConfiguration('portal_line_base_category_list')

1552 1553 1554 1555 1556 1557
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalTabBaseCategoryList')
  def getPortalTabBaseCategoryList(self):
    """
      Return tab base categories.
    """
1558 1559 1560
    return self._getPortalGroupedCategoryList('tab') or \
           self._getPortalConfiguration('portal_tab_base_category_list')

1561 1562 1563 1564
  def getPortalDefaultGapRoot(self):
    """
      Return the Accounting Plan to use by default (return the root node)
    """
1565
    LOG('ERP5Site', 0,
1566 1567 1568
        'getPortalDefaultGapRoot is deprecated; ' \
        'use portal_preferences.getPreferredAccountingTransactionGap instead.')

1569 1570
    return self.portal_preferences.getPreferredAccountingTransactionGap() or \
           self._getPortalConfiguration('portal_default_gap_root')
1571

1572 1573 1574 1575
  def getPortalAccountingMovementTypeList(self) :
    """
      Return accounting movement type list.
    """
1576
    return self._getPortalGroupedTypeList('accounting_movement') or \
1577
        self._getPortalConfiguration('portal_accounting_movement_type_list')
1578

1579 1580 1581 1582
  def getPortalAccountingTransactionTypeList(self) :
    """
      Return accounting transaction movement type list.
    """
1583
    return self._getPortalGroupedTypeList('accounting_transaction') or \
1584
      self._getPortalConfiguration('portal_accounting_transaction_type_list')
1585

1586 1587 1588 1589
  def getPortalAssignmentBaseCategoryList(self):
    """
      Return List of category values to generate security groups.
    """
1590
    return self._getPortalGroupedCategoryList('assignment') or \
1591
        self._getPortalConfiguration('portal_assignment_base_category_list')
1592

1593 1594 1595 1596 1597 1598 1599 1600 1601 1602 1603 1604 1605 1606 1607 1608 1609 1610 1611 1612 1613 1614 1615 1616 1617
  def getPortalSecurityCategoryMapping(self):
    """
      Returns a list of pairs composed of a script id and a list of base
      category ids to use for computing security groups.

      This is used during indexation, so involved scripts must not rely on
      catalog at any point in their execution.

      Example:
        (
          ('script_1', ['base_category_1', 'base_category_2', ...]),
          ('script_2', ['base_category_1', 'base_category_3', ...])
        )
    """
    return getattr(
      self,
      'ERP5Type_getSecurityCategoryMapping',
      lambda: ( # BBB
        (
          'ERP5Type_getSecurityCategoryFromAssignment',
          self.getPortalAssignmentBaseCategoryList(),
        ),
      ),
    )()

1618 1619
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalTicketTypeList')
1620 1621 1622 1623 1624
  def getPortalTicketTypeList(self):
    """
    Return ticket types.
    """
    return self._getPortalGroupedTypeList('ticket')
1625

1626 1627
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalEventTypeList')
1628 1629 1630 1631 1632
  def getPortalEventTypeList(self):
    """
    Return event types.
    """
    return self._getPortalGroupedTypeList('event')
1633

1634 1635 1636 1637 1638 1639 1640 1641
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalInterfacePostTypeList')
  def getPortalInterfacePostTypeList(self):
    """
    Return interface_post types.
    """
    return self._getPortalGroupedTypeList('interface_post')

1642 1643 1644 1645 1646 1647 1648 1649
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalDivergenceTesterTypeList')
  def getPortalDivergenceTesterTypeList(self):
    """
    Return divergence tester types.
    """
    return self._getPortalGroupedTypeList('divergence_tester')

1650 1651 1652 1653 1654 1655 1656 1657
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalTargetSolverTypeList')
  def getPortalTargetSolverTypeList(self):
    """
    Return target solver types.
    """
    return self._getPortalGroupedTypeList('target_solver')

Sebastien Robin's avatar
Sebastien Robin committed
1658 1659 1660 1661 1662 1663 1664 1665
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalTargetSolverTypeList')
  def getPortalDeliverySolverTypeList(self):
    """
    Return delivery solver types.
    """
    return self._getPortalGroupedTypeList('delivery_solver')

1666 1667 1668 1669 1670 1671 1672 1673 1674 1675 1676 1677 1678 1679 1680 1681 1682 1683 1684 1685 1686 1687 1688 1689
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalAmountGeneratorTypeList')
  def getPortalAmountGeneratorTypeList(self):
    """
    Return amount generator types.
    """
    return self._getPortalGroupedTypeList('amount_generator')

  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalAmountGeneratorLineTypeList')
  def getPortalAmountGeneratorLineTypeList(self):
    """
    Return amount generator line types.
    """
    return self._getPortalGroupedTypeList('amount_generator_line')

  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalAmountGeneratorCellTypeList')
  def getPortalAmountGeneratorCellTypeList(self):
    """
    Return amount generator cell types.
    """
    return self._getPortalGroupedTypeList('amount_generator_cell')

1690 1691 1692 1693 1694 1695 1696 1697 1698 1699 1700 1701 1702 1703
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalAmountGeneratorAllTypeList')
  def getPortalAmountGeneratorAllTypeList(self, transformation):
    """
    Return amount generator types, including lines & cells,
    but only or without those related to transformations.
    """
    result = list(self.getPortalAmountGeneratorTypeList())
    result += self.getPortalAmountGeneratorLineTypeList()
    result += self.getPortalAmountGeneratorCellTypeList()
    if transformation:
      return tuple(x for x in result if x.startswith('Transformation'))
    return tuple(x for x in result if not x.startswith('Transformation'))

Jean-Paul Smets's avatar
Jean-Paul Smets committed
1704 1705 1706 1707 1708 1709 1710 1711
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalBusinessProcessTypeList')
  def getPortalBusinessProcessTypeList(self):
    """
    Return amount generator types.
    """
    return self._getPortalGroupedTypeList('business_process')

1712

Jean-Paul Smets's avatar
Jean-Paul Smets committed
1713
  security.declareProtected(Permissions.AccessContentsInformation,
1714 1715
                            'getPortalBusinessLinkTypeList')
  def getPortalBusinessLinkTypeList(self):
Jean-Paul Smets's avatar
Jean-Paul Smets committed
1716
    """
1717 1718 1719 1720 1721 1722 1723 1724 1725
      Return business link types.
    """
    return self._getPortalGroupedTypeList('business_link')

  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalTradeModelPathTypeList')
  def getPortalTradeModelPathTypeList(self):
    """
      Return trade model path types.
Jean-Paul Smets's avatar
Jean-Paul Smets committed
1726
    """
1727
    return self._getPortalGroupedTypeList('trade_model_path')
Jean-Paul Smets's avatar
Jean-Paul Smets committed
1728

1729 1730 1731 1732 1733 1734 1735 1736
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalCalendarTypeList')
  def getPortalCalendarTypeList(self):
    """
    Return calendar types.
    """
    return self._getPortalGroupedTypeList('calendar')

1737 1738 1739 1740 1741 1742 1743 1744
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalCalendarPeriodTypeList')
  def getPortalCalendarPeriodTypeList(self):
    """
    Return calendar period types.
    """
    return self._getPortalGroupedTypeList('calendar_period')

Jean-Paul Smets's avatar
Jean-Paul Smets committed
1745 1746 1747 1748 1749 1750 1751 1752
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalModuleTypeList')
  def getPortalModuleTypeList(self):
    """
    Return module types.
    """
    return self._getPortalGroupedTypeList('module')

1753 1754 1755 1756 1757 1758 1759 1760
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalPersonalItemTypeList')
  def getPortalPersonalItemTypeList(self) :
    """
      Return personal item types.
    """
    return self._getPortalGroupedTypeList('personal_item')

1761 1762 1763 1764 1765 1766 1767 1768
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalInventoryMovementTypeList')
  def getPortalInventoryMovementTypeList(self):
    """
    Return inventory movement types.
    """
    return self._getPortalGroupedTypeList('inventory_movement')

Sebastien Robin's avatar
Sebastien Robin committed
1769 1770 1771 1772 1773 1774 1775 1776
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalInventoryTypeList')
  def getPortalInventoryTypeList(self):
    """
    Return inventory types.
    """
    return self._getPortalGroupedTypeList('inventory')

1777 1778 1779 1780 1781 1782 1783 1784
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalMovementGroupTypeList')
  def getPortalMovementGroupTypeList(self):
    """
    Return movement group types.
    """
    return self._getPortalGroupedTypeList('movement_group')

1785 1786 1787 1788 1789 1790 1791 1792 1793
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalEntityTypeList')
  def getPortalEntityTypeList(self):
    """
    Returns Entity types.
    """
    return self._getPortalGroupedTypeList('entity') or\
           self._getPortalConfiguration('portal_entity_type_list')

1794 1795 1796 1797 1798 1799 1800 1801
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalLoginTypeList')
  def getPortalLoginTypeList(self):
    """
    Returns Login types.
    """
    return self._getPortalGroupedTypeList('login')

1802 1803 1804 1805 1806 1807 1808 1809 1810
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalDataDescriptorTypeList')
  def getPortalDataDescriptorTypeList(self):
    """
    Returns Data Descriptor types.
    """
    return self._getPortalGroupedTypeList('data_descriptor') or\
           self._getPortalConfiguration('portal_data_descriptor_type_list')

Klaus Wölfel's avatar
Klaus Wölfel committed
1811 1812 1813 1814
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalDataSinkTypeList')
  def getPortalDataSinkTypeList(self):
    """
1815
    Returns Data Sink types.
Klaus Wölfel's avatar
Klaus Wölfel committed
1816 1817 1818 1819
    """
    return self._getPortalGroupedTypeList('data_sink') or\
           self._getPortalConfiguration('portal_data_sink_type_list')

1820 1821 1822 1823 1824 1825 1826 1827 1828 1829 1830 1831 1832 1833 1834 1835
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalDeviceTypeList')
  def getPortalDeviceTypeList(self):
    """
    Returns Device types.
    """
    return self._getPortalGroupedTypeList('device') or\
           self._getPortalConfiguration('portal_device_type_list')

  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalDeviceConfigurationTypeList')
  def getPortalDeviceConfigurationTypeList(self):
    """
    Returns Device Configuration types.
    """
    return self._getPortalGroupedTypeList('device_configuration') or\
1836
           self._getPortalConfiguration('portal_device_configuration_type_list')
1837

1838 1839 1840 1841 1842 1843 1844 1845
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalPaymentRequestTypeList')
  def getPortalPaymentRequestTypeList(self):
    """
    Returns Payment Request types.
    """
    return self._getPortalGroupedTypeList('payment_request')

1846 1847 1848 1849 1850 1851
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getPortalDataConfigurationTypeList')
  def getPortalDataConfigurationTypeList(self):
    """
    Returns Data Configuration types.
    """
1852
    return self._getPortalGroupedTypeList('data_configuration')
1853

1854 1855
  security.declareProtected(Permissions.AccessContentsInformation,
                            'getDefaultModuleId')
1856
  def getDefaultModuleId(self, portal_type, default=MARKER, only_visible=False):
1857
    """
Romain Courteaud's avatar
Romain Courteaud committed
1858 1859
    Return default module id where a object with portal_type can
    be created.
1860
    """
1861
    try:
1862
      module = self.getDefaultModuleValue(portal_type, only_visible=only_visible)
1863 1864 1865 1866
    except ValueError:
      if default is MARKER:
        raise ValueError('Unable to find module for portal_type: ' + portal_type)
      return default
1867
    else:
1868
      return module.getId()
1869

1870
  security.declareProtected(Permissions.AccessContentsInformation,
1871 1872 1873 1874 1875 1876 1877 1878 1879 1880 1881 1882 1883 1884 1885 1886 1887 1888 1889 1890 1891 1892 1893 1894
                            'getDefaultModuleValue')
  def getDefaultModuleValue(self, portal_type, default=MARKER, only_visible=False):
    """
    Return default module where a object with portal_type can be created
    portal_type (str)
      Module or top-level document portal type.
    default (anything)
      Value to return if no module can be found from given portal type.
      If not given and module is not found, ValueError is raised.
    only_visible (bool)
      When true, check that given portal type is part of module's visible
      content types, else return default.
    """
    # first try to find by naming convention
    expected_module_id = portal_type.lower().replace(' ','_')
    module = self._getOb(expected_module_id, None)
    if module is not None:
      return module
    if only_visible:
      allowed = lambda x: (
        x is not None and
        portal_type in x.getVisibleAllowedContentTypeList()
      )
    else:
1895
      getTypeInfo = self.portal_types.getTypeInfo
1896 1897
      allowed = lambda x: (
        x is not None and
1898
        portal_type in getTypeInfo(x).getTypeAllowedContentTypeList()
1899 1900 1901 1902 1903 1904 1905 1906 1907 1908 1909 1910 1911 1912 1913 1914 1915 1916 1917
      )
    expected_module_id += '_module'
    module = self._getOb(expected_module_id, None)
    if allowed(module):
      return module
    # then look for module where the type is allowed
    for expected_module_id in self.objectIds(('ERP5 Folder',)):
      module = self._getOb(expected_module_id, None)
      if allowed(module):
        return module
    if default is MARKER:
      raise ValueError('Unable to find module for portal_type: ' + portal_type)
    return default

  # BBB
  security.declareProtected(
    Permissions.AccessContentsInformation,
    'getDefaultModule',
  )
1918
  def getDefaultModule(self, portal_type, default=MARKER):
1919
    """
1920 1921
    For backward-compatibility.
    Use getDefaultModuleValue (beware of slight "default" semantic change !).
1922
    """
1923 1924 1925
    module_id = self.getDefaultModuleId(portal_type, default)
    if module_id:
      return getattr(self, module_id, None)
1926

1927 1928 1929 1930 1931 1932
  security.declarePublic('getVisibleAllowedContentTypeList')
  def getVisibleAllowedContentTypeList(self):
    """Users cannot add anything in an ERP5Site using standard interface.
    """
    return ()

1933 1934 1935
  def log(self, *args, **kw):
    """Put a log message

1936
    See the warning in erp5.component.module.Log.log
1937 1938
    Catchall parameters also make this method not publishable to avoid DoS.
    """
1939
    warnings.warn("The usage of ERP5Site.log is deprecated.\n"
1940
                  "Please use erp5.component.module.Log.log instead.",
1941
                  DeprecationWarning)
1942
    from erp5.component.module.Log import log as unrestrictedLog
1943
    unrestrictedLog(*args, **kw)
1944

1945 1946 1947 1948 1949
  security.declarePublic('setPlacelessDefaultReindexParameters')
  def setPlacelessDefaultReindexParameters(self, **kw):
    # This method sets the default keyword parameters to reindex. This is useful
    # when you need to specify special parameters implicitly (e.g. to reindexObject).
    # Those parameters will affect all reindex calls, not just ones on self.
1950
    tv = getTransactionalVariable()
1951 1952 1953 1954 1955 1956 1957
    key = ('default_reindex_parameter', )
    tv[key] = kw

  security.declarePublic('getPlacelessDefaultReindexParameters')
  def getPlacelessDefaultReindexParameters(self):
    # This method returns default reindex parameters to self.
    # The result can be either a dict object or None.
1958
    tv = getTransactionalVariable()
1959 1960 1961
    key = ('default_reindex_parameter', )
    return tv.get(key)

1962 1963 1964
  security.declareProtected(Permissions.ManagePortal,
                            'migrateToPortalTypeClass')
  def migrateToPortalTypeClass(self):
1965 1966 1967 1968
    # PickleUpdater() will load objects from ZODB, but any objects created
    # before must have been committed (otherwise POSKeyError is raised)
    transaction.savepoint(optimistic=True)

1969 1970 1971 1972 1973 1974
    from Products.ERP5Type.dynamic.persistent_migration import PickleUpdater
    from Products.ERP5Type.Tool.BaseTool import BaseTool
    PickleUpdater(self)
    for tool in self.objectValues():
      if isinstance(tool, BaseTool):
        tool_id = tool.id
1975
        if tool_id not in ('portal_property_sheets', 'portal_components'):
1976 1977 1978 1979
          if tool_id in ('portal_categories', ):
            tool = tool.activate()
          tool.migrateToPortalTypeClass(tool_id not in (
            'portal_activities', 'portal_simulation', 'portal_templates',
1980 1981
            'portal_trash', 'portal_catalog'))
          if tool_id in ('portal_trash', 'portal_catalog'):
1982 1983
            for obj in tool.objectValues():
              obj.migrateToPortalTypeClass()
1984

1985 1986 1987 1988 1989 1990
  security.declarePublic('isTempObject')
  def isTempObject(self):
    """Return true if self is an instance of a temporary document class.
    """
    return 0

Jean-Paul Smets's avatar
Jean-Paul Smets committed
1991 1992
Globals.InitializeClass(ERP5Site)

1993 1994 1995 1996 1997 1998 1999
def getBootstrapDirectory():
  """
    Return the name of the bootstrap directory
  """
  product_path = package_home(globals())
  return os.path.join(product_path, 'bootstrap')

2000 2001 2002 2003 2004 2005 2006 2007
def getBootstrapBusinessTemplateUrl(bt_title):
  """
    Return the path to download the given bootstrap business template
  """
  path = os.path.join(getBootstrapDirectory(), bt_title)
  if not os.path.exists(path):
    path += '.bt5'
  return path
2008 2009 2010 2011 2012 2013 2014 2015 2016 2017

# This PortalGenerator class was copied wholesale from CMF 1.5 which is
# identical to the one on 1.6, and hasn't been used by CMF itself since even
# 1.5, as they already used CMFSetup by then (later replaced by GenericSetup).


factory_type_information = () # No original CMF portal_types installed by default

class PortalGenerator:

2018
    klass = PortalObjectBase
2019 2020 2021 2022 2023 2024 2025 2026

    def setupTools(self, p):
        """Set up initial tools"""

        addCMFCoreTool = p.manage_addProduct['CMFCore'].manage_addTool
        addCMFCoreTool('CMF Actions Tool', None)
        addCMFCoreTool('CMF Catalog', None)
        addCMFCoreTool('CMF Member Data Tool', None)
2027 2028
        addCMFCoreTool('CMF Membership Tool', None)
        addCMFCoreTool('CMF Registration Tool', None)
2029 2030 2031
        addCMFCoreTool('CMF Skins Tool', None)
        addCMFCoreTool('CMF Undo Tool', None)
        addCMFCoreTool('CMF URL Tool', None)
2032
        addERP5Tool(p, 'portal_workflow', 'Workflow Tool')
2033 2034 2035 2036 2037 2038 2039 2040 2041 2042 2043 2044 2045 2046 2047 2048 2049 2050 2051 2052 2053 2054 2055 2056 2057 2058 2059 2060 2061 2062 2063 2064 2065 2066 2067 2068 2069 2070 2071 2072 2073 2074 2075 2076 2077 2078 2079 2080 2081 2082 2083 2084

    def setupMailHost(self, p):
        p.manage_addProduct['MailHost'].manage_addMailHost(
            'MailHost', smtp_host='localhost')

    def setupUserFolder(self, p):
        p.manage_addProduct['OFSP'].manage_addUserFolder()

    def setupCookieAuth(self, p):
        p.manage_addProduct['CMFCore'].manage_addCC(
            id='cookie_authentication')

    def setupRoles(self, p):
        # Set up the suggested roles.
        p.__ac_roles__ = ('Member', 'Reviewer',)

    def setupMimetypes(self, p):
        p.manage_addProduct[ 'CMFCore' ].manage_addRegistry()
        reg = p.content_type_registry

        reg.addPredicate( 'link', 'extension' )
        reg.getPredicate( 'link' ).edit( extensions="url, link" )
        reg.assignTypeName( 'link', 'Link' )

        reg.addPredicate( 'news', 'extension' )
        reg.getPredicate( 'news' ).edit( extensions="news" )
        reg.assignTypeName( 'news', 'News Item' )

        reg.addPredicate( 'document', 'major_minor' )
        reg.getPredicate( 'document' ).edit( major="text", minor="" )
        reg.assignTypeName( 'document', 'Document' )

        reg.addPredicate( 'image', 'major_minor' )
        reg.getPredicate( 'image' ).edit( major="image", minor="" )
        reg.assignTypeName( 'image', 'Image' )

        reg.addPredicate( 'file', 'major_minor' )
        reg.getPredicate( 'file' ).edit( major="application", minor="" )
        reg.assignTypeName( 'file', 'File' )

    def setupDefaultProperties(self, p, title, description,
                               email_from_address, email_from_name,
                               validate_email, default_charset=''):
        p._setProperty('email_from_address', email_from_address, 'string')
        p._setProperty('email_from_name', email_from_name, 'string')
        p._setProperty('validate_email', validate_email and 1 or 0, 'boolean')
        p._setProperty('default_charset', default_charset, 'string')
        p._setProperty('enable_permalink', 0, 'boolean')
        p.title = title
        p.description = description


Jean-Paul Smets's avatar
Jean-Paul Smets committed
2085 2086
class ERP5Generator(PortalGenerator):

2087
  klass = ERP5Site
2088

2089 2090 2091
  def create(self,
             parent,
             id,
2092
             create_userfolder,
2093
             erp5_catalog_storage,
2094 2095
             erp5_sql_connection_string,
             cmf_activity_sql_connection_string,
2096 2097
             bt5_repository_url,
             bt5,
2098
             id_store_interval,
2099
             cloudooo_url,
2100
             create_activities=True,
2101 2102
             reindex=1,
             **kw):
2103 2104
    id = str(id)
    portal = self.klass(id=id)
2105 2106
    # Make sure reindex will not be called until business templates
    # will be installed
2107
    setattr(portal, 'isIndexable', ConstantGetter('isIndexable', value=False))
2108 2109 2110 2111 2112 2113 2114

    # This is only used to refine log level.
    # Has no functional use, and should never have any:
    # if you use it for something else than a logging-oriented hint,
    # trolls *will* chase you and haunt you in your dreams
    portal._v_bootstrapping = True

2115 2116 2117
    parent._setObject(id, portal)
    # Return the fully wrapped object.
    p = parent.this()._getOb(id)
2118 2119

    erp5_sql_deferred_connection_string = erp5_sql_connection_string
2120 2121
    p._setProperty('erp5_catalog_storage',
                   erp5_catalog_storage, 'string')
2122
    p._setProperty('erp5_sql_connection_string',
2123
                   erp5_sql_connection_string, 'string')
2124
    p._setProperty('erp5_sql_deferred_connection_string',
2125
                   erp5_sql_deferred_connection_string, 'string')
2126
    p._setProperty('cmf_activity_sql_connection_string',
2127
                   cmf_activity_sql_connection_string, 'string')
2128
    p._setProperty('management_page_charset', 'UTF-8', 'string')
2129 2130
    self.setup(p, create_userfolder, create_activities=create_activities,
        reindex=reindex, **kw)
2131 2132 2133

    p._v_bootstrapping = False

2134 2135 2136
    reindex_all_tag = 'ERP5Site_reindexAll'
    upgrade_tag = 'updgradeSite'
    preference_tag = 'initSystemPreference'
2137
    if bt5_repository_url:
2138
      p.portal_templates.repository_dict = dict.fromkeys(bt5_repository_url.split())
2139
      if bt5:
2140 2141 2142 2143 2144
        p.portal_templates.activate(
          # XXX: Is it useful to wait for indexing ?
          after_tag=reindex_all_tag,
          tag=upgrade_tag,
        ).upgradeSite(bt5.split(), update_catalog=True)
2145 2146 2147 2148 2149 2150
        # XXX: workaround for the above BT installation not using the upgrader,
        # and hence not triggering post-install constraints.
        if 'erp5_oauth2_authorisation' in bt5:
          p.portal_templates.activate(
            after_tag=upgrade_tag,
          ).ERP5Site_checkOAuth2AuthorisationServerPostUpgradeConsistency(fixit=True)
2151 2152 2153 2154 2155 2156 2157 2158 2159 2160
    if id_store_interval != '':
      id_store_interval = int(id_store_interval)
      if id_store_interval < 0:
        raise TypeError('id_store_interval must be a positive integer')
      ob = p.portal_ids._getLatestGeneratorValue(
          'mysql_non_continuous_increasing')
      if id_store_interval:
        ob._setStoreInterval(id_store_interval)
      else:
        ob._setStoredInZodb(0)
2161
    if cloudooo_url:
2162 2163 2164 2165 2166
      p.portal_activities.activateObject(
        p,
        after_tag=(reindex_all_tag, upgrade_tag),
        tag=preference_tag,
      )._initSystemPreference(cloudooo_url=cloudooo_url)
2167 2168
    id_ = 'isPortalBeingCreated'
    setattr(p, id_, ConstantGetter(id_, value=True))
2169 2170 2171 2172
    p.portal_activities.activateObject(
      p,
      after_tag=(reindex_all_tag, upgrade_tag, preference_tag),
    )._delPropValue(id_)
2173 2174
    return p

2175
  @classmethod
2176
  def bootstrap(cls, context, bt_name, item_name, content_path_list):
2177 2178 2179 2180 2181
    bt_path = getBootstrapBusinessTemplateUrl(bt_name)
    from Products.ERP5.Document.BusinessTemplate import quote
    traverse = context.unrestrictedTraverse
    top = os.path.join(bt_path, item_name, context.id)
    prefix_len = len(os.path.join(top, ''))
2182 2183 2184
    def onerror(error):
      raise error
    for root, dirs, files in os.walk(top, onerror=onerror):
2185
      container_path = root[prefix_len:]
2186 2187
      container_obj = traverse(container_path)
      load = container_obj._importObjectFromFile
2188
      if container_path:
2189
        id_set = {x[:-4] for x in files if x[-4:] == '.xml'}
2190
      else:
2191 2192 2193 2194 2195 2196
        id_set = set()
        for content_path in content_path_list:
          try:
            traverse(content_path)
          except (KeyError, AttributeError):
            id_set.add(quote(content_path.split('/', 1)[0]))
2197
      dirs[:] = id_set.intersection(dirs)
2198 2199 2200 2201
      for id_ in id_set:
        if not container_obj.hasObject(id_):
          load(os.path.join(root, id_ + '.xml'),
               verify=False, set_owner=False, suppress_events=True)
2202

2203 2204 2205 2206 2207 2208 2209 2210
  @staticmethod
  def bootstrap_allow_type(types_tool, portal_type):
    from xml.etree.cElementTree import parse
    bt_path = getBootstrapBusinessTemplateUrl('erp5_core')
    types_tool[portal_type].allowed_content_types = [x.text for x in parse(
      os.path.join(bt_path, 'PortalTypeAllowedContentTypeTemplateItem', 'allowed_content_types.xml')
      ).iterfind("portal_type[@id='%s']/*" % portal_type)]

2211 2212
  def setupTemplateTool(self, p, **kw):
    """
2213
    Setup the Template Tool. Security must be set strictly.
2214
    """
2215
    addERP5Tool(p, 'portal_templates', 'Template Tool')
2216 2217 2218 2219 2220 2221 2222
    context = p.portal_templates
    permission_list = context.possible_permissions()
    for permission in permission_list:
      context.manage_permission(permission, ['Manager'], 0)

  def setupTools(self, p,**kw):
    """
2223
    Set up initial tools.
2224 2225 2226 2227
    """
    if not 'portal_actions' in p.objectIds():
      PortalGenerator.setupTools(self, p)

2228
    # It is better to remove portal_catalog
2229
    # which is ZCatalog as soon as possible,
2230
    # because the API is not the completely same as ERP5Catalog,
2231
    # and ZCatalog is useless for ERP5 after all.
2232
    update = kw.get('update', 0)
2233 2234 2235 2236 2237
    try:
      if p.portal_catalog.meta_type != 'ZSQLCatalog' and not update:
        p._delObject('portal_catalog')
    except AttributeError:
      pass
2238 2239 2240

    # Add CMF Report Tool
    if not p.hasObject('portal_report'):
2241 2242 2243 2244 2245
      try:
        addTool = p.manage_addProduct['CMFReportTool'].manage_addTool
        addTool('CMF Report Tool', None)
      except AttributeError:
        pass
2246 2247

    # Add ERP5 Tools
2248
    addERP5Tool(p, 'portal_categories', 'Category Tool')
2249 2250
    if not p.hasObject('portal_templates'):
      self.setupTemplateTool(p)
2251 2252
    addERP5Tool(p, 'portal_trash', 'Trash Tool')
    addERP5Tool(p, 'portal_alarms', 'Alarm Tool')
Aurel's avatar
Aurel committed
2253

2254
    # Add ERP5Type Tool
2255 2256
    addERP5Tool(p, 'portal_caches', 'Cache Tool')
    addERP5Tool(p, 'portal_memcached', 'Memcached Tool')
2257

2258 2259
    # Add erp5 catalog tool
    addERP5Tool(p, 'portal_catalog', 'Catalog Tool')
Aurel's avatar
Aurel committed
2260

2261 2262 2263 2264 2265
    sql_reset = kw.get('sql_reset', 0)
    def addSQLConnection(id, title, **kw):
      if p.hasObject(id):
        return
      # Warning : The transactionless connection is created with
2266 2267 2268 2269
      # the activity connection string and not the catalog's because
      # it's not compatible with the hot reindexing feature.
      # Though, it has nothing to do with activities.
      # The only difference compared to activity connection is the
Vincent Pelletier's avatar
Vincent Pelletier committed
2270
      # minus prepended to the connection string.
2271 2272 2273 2274 2275 2276 2277 2278 2279 2280 2281 2282 2283 2284 2285 2286 2287 2288 2289 2290 2291
      if id == 'erp5_sql_transactionless_connection':
        connection_string = '-' + p.cmf_activity_sql_connection_string
      else:
        connection_string = getattr(p, id + '_string')
      manage_add(id, title, connection_string, **kw)
      if not sql_reset and p[id]().tables():
        raise Exception("Database %r is not empty." % connection_string)

    # Add Z MySQL Connections
    manage_add = p.manage_addProduct['ZMySQLDA'].manage_addZMySQLConnection
    addSQLConnection('erp5_sql_connection',
                     'ERP5 SQL Server Connection')
    addSQLConnection('erp5_sql_deferred_connection',
                     'ERP5 SQL Server Deferred Connection',
                     deferred=True)
    addSQLConnection('erp5_sql_transactionless_connection',
                     'ERP5 Transactionless SQL Server Connection')
    # Add Activity SQL Connections
    manage_add = p.manage_addProduct['CMFActivity'].manage_addActivityConnection
    addSQLConnection('cmf_activity_sql_connection',
                     'CMF Activity SQL Server Connection')
2292

2293
    # Add ERP5Form Tools
2294 2295
    addERP5Tool(p, 'portal_selections', 'Selection Tool')
    addERP5Tool(p, 'portal_preferences', 'Preference Tool')
2296 2297 2298 2299 2300

    # Add Message Catalog
    if not 'Localizer' in p.objectIds():
      addLocalizer = p.manage_addProduct['Localizer'].manage_addLocalizer
      addLocalizer('', ('en',))
2301
    localizer = p.Localizer
2302 2303
    addMessageCatalog = localizer.manage_addProduct['Localizer']\
                                      .manage_addMessageCatalog
2304 2305 2306
    if 'erp5_ui' not in localizer.objectIds():
      if 'default' in localizer.objectIds():
        localizer.manage_delObjects('default')
2307 2308 2309
      addMessageCatalog('default', 'ERP5 Localized Messages', ('en',))
      addMessageCatalog('erp5_ui', 'ERP5 Localized Interface', ('en',))
      addMessageCatalog('erp5_content', 'ERP5 Localized Content', ('en',))
2310

2311 2312 2313
    # Add an error_log
    if 'error_log' not in p.objectIds():
      manage_addErrorLog(p)
2314 2315 2316 2317
      p.error_log.setProperties(keep_entries=20,
                                copy_to_zlog=True,
                                ignored_exceptions=('NotFound', 'Redirect'))

2318 2319 2320

    # Remove unused default actions
    def removeActionsFromTool(tool, remove_list):
2321 2322 2323 2324 2325
      from Products.CMFCore.interfaces import IActionProvider
      if not IActionProvider.providedBy(tool):
        # On CMF 2.x, some tools (portal_membership)
        # are no longer action providers
        return
2326 2327 2328 2329 2330 2331 2332 2333 2334 2335 2336 2337 2338 2339 2340 2341 2342
      action_id_list = [i.id for i in tool.listActions()]
      remove_index_list = []
      for i in remove_list:
        if i in action_id_list:
          remove_index_list.append(action_id_list.index(i))
      if remove_index_list:
        tool.deleteActions(remove_index_list)
    # membership tool
    removeActionsFromTool(p.portal_membership,
                          ('addFavorite', 'mystuff', 'favorites', 'logged_in',
                           'manage_members'))
    # actions tool
    removeActionsFromTool(p.portal_actions, ('folderContents',))
    # remove unused action providers
    for i in ('portal_registration', 'portal_discussion', 'portal_syndication'):
      p.portal_actions.deleteActionProvider(i)

2343 2344
  def setupMembersFolder(self, p):
    """
2345
    ERP5 is not a CMS
2346 2347 2348 2349
    """
    pass

  def setupDefaultSkins(self, p):
2350
    ps = p.portal_skins
2351 2352
    ps.manage_addProduct['OFSP'].manage_addFolder(id='external_method')
    ps.manage_addProduct['OFSP'].manage_addFolder(id='custom')
2353
    # Set the 'custom' layer a high priority, so it remains the first
2354 2355
    #   layer when installing new business templates.
    ps['custom'].manage_addProperty("business_template_skin_layer_priority", 100.0, "float")
2356
    skin_folders = ', '.join(('custom', 'external_method'))
2357 2358 2359 2360 2361 2362 2363 2364 2365 2366 2367 2368
    ps.addSkinSelection( 'View'
                       , skin_folders
                       , make_default = 1
                       )
    ps.addSkinSelection( 'Print'
                       , skin_folders
                       , make_default = 0
                       )
    ps.addSkinSelection( 'CSV'
                       , skin_folders
                       , make_default = 0
                       )
2369 2370 2371 2372
    p.setupCurrentSkin()

  def setupWorkflow(self, p):
    """
2373
    Set up workflows for business templates
2374
    """
2375 2376
    workflow_list = ['business_template_building_workflow',
                     'business_template_installation_workflow']
2377
    tool = p.portal_workflow
2378 2379 2380 2381
    try:
      tool.manage_delObjects([x for x in workflow_list if tool.hasObject(x) ])
    except BadRequest:
      pass
2382
    self.bootstrap(tool, 'erp5_core', 'WorkflowTemplateItem', workflow_list)
2383
    getattr(p.portal_types, 'Business Template').setTypeWorkflowList(workflow_list)
2384 2385 2386

  def setupIndex(self, p, **kw):
    # Make sure all tools and folders have been indexed
2387
    if kw.get('reindex', 1):
2388
      delattr(p, 'isIndexable')
2389 2390
      # Clear portal ids sql table, like this we do not take
      # ids for a previously created web site
Sebastien Robin's avatar
Sebastien Robin committed
2391
      p.portal_ids.clearGenerator(all=True)
2392 2393 2394 2395 2396 2397
      # Calling ERP5Site_reindexAll is important, as some needed indexation
      # activities may have been skipped (not spawned) while portal was tagged
      # as non-indexable. Maybe not spawning these activities is a bug, in
      # which case some bootstrap tricks are needed until portal_activities
      # becomes available.
      p.ERP5Site_reindexAll(clear_catalog=True)
2398

2399 2400 2401
  def setupUserFolder(self, p):
      # Use Pluggable Auth Service instead of the standard acl_users.
      p.manage_addProduct['PluggableAuthService'].addPluggableAuthService()
2402
      pas_dispatcher = p.acl_users.manage_addProduct['PluggableAuthService']
2403
      # Add legacy ZODB support
2404 2405 2406
      pas_dispatcher.addZODBUserManager('zodb_users')
      pas_dispatcher.addZODBGroupManager('zodb_groups')
      pas_dispatcher.addZODBRoleManager('zodb_roles')
2407 2408 2409 2410
      # Add CMF Portal Roles
      p.acl_users.zodb_roles.addRole('Member')
      p.acl_users.zodb_roles.addRole('Reviewer')
      # Register ZODB Interface
2411 2412 2413 2414 2415 2416 2417 2418 2419 2420 2421
      p.acl_users.zodb_users.manage_activateInterfaces(
                                       ('IAuthenticationPlugin',
                                        'IUserEnumerationPlugin',
                                        'IUserAdderPlugin'))
      p.acl_users.zodb_groups.manage_activateInterfaces(
                                       ('IGroupsPlugin',
                                       'IGroupEnumerationPlugin'))
      p.acl_users.zodb_roles.manage_activateInterfaces(
                                       ('IRoleEnumerationPlugin',
                                        'IRolesPlugin',
                                        'IRoleAssignerPlugin'))
2422
      # Add ERP5UserManager
2423
      erp5security_dispatcher = p.acl_users.manage_addProduct['ERP5Security']
2424
      erp5security_dispatcher.addERP5LoginUserManager('erp5_login_users')
2425 2426 2427
      erp5security_dispatcher.addERP5GroupManager('erp5_groups')
      erp5security_dispatcher.addERP5RoleManager('erp5_roles')
      erp5security_dispatcher.addERP5UserFactory('erp5_user_factory')
2428 2429
      erp5security_dispatcher.addERP5DumbHTTPExtractionPlugin(
                                        'erp5_dumb_http_extraction')
2430 2431 2432
      erp5security_dispatcher.addERP5OAuth2ResourceServerPlugin(
        id='erp5_oauth2_resource',
      )
2433
      # Register ERP5UserManager Interface
2434
      p.acl_users.erp5_login_users.manage_activateInterfaces(
2435 2436
                                        ('IAuthenticationPlugin',
                                        'IUserEnumerationPlugin',))
2437 2438
      p.acl_users.erp5_groups.manage_activateInterfaces(('IGroupsPlugin',))
      p.acl_users.erp5_roles.manage_activateInterfaces(('IRolesPlugin',))
2439 2440
      p.acl_users.erp5_user_factory.manage_activateInterfaces(
                                        ('IUserFactoryPlugin',))
2441 2442
      p.acl_users.erp5_dumb_http_extraction.manage_activateInterfaces(
                                        ('IExtractionPlugin',))
2443 2444 2445 2446 2447 2448 2449 2450

  def setupPermissions(self, p):
    permission_dict = {
      'Access Transient Objects'     : ('Manager', 'Anonymous'),
      'Access contents information'  : ('Manager', 'Member', 'Anonymous'),
      'Access future portal content' : ('Manager', 'Reviewer'),
      'Access session data'          : ('Manager', 'Anonymous'),
      'AccessContentsInformation'    : ('Manager', 'Member'),
2451
      'Change local roles'           : ('Manager', ),
2452 2453 2454 2455 2456 2457
      'Add portal content'           : ('Manager', 'Owner'),
      'Add portal folders'           : ('Manager', 'Owner'),
      'Delete objects'               : ('Manager', 'Owner'),
      'FTP access'                   : ('Manager', 'Owner'),
      'List folder contents'         : ('Manager', 'Member'),
      'List portal members'          : ('Manager', 'Member'),
2458
      'List undoable changes'        : ('Manager', ),
2459 2460 2461 2462 2463
      'Manage properties'            : ('Manager', 'Owner'),
      'Modify portal content'        : ('Manager', 'Owner'),
      'Reply to item'                : ('Manager', 'Member'),
      'Review portal content'        : ('Manager', 'Reviewer'),
      'Search ZCatalog'              : ('Manager', 'Member'),
2464
      'Set own password'             : ('Manager', ),
2465
      'Set own properties'           : ('Manager', 'Member'),
2466
      'Use mailhost services'        : ('Manager', 'Member'),
2467
      'Undo changes'                 : ('Manager', 'Owner'),
2468
      'View'                         : ('Manager', 'Member',
2469
                                        'Owner', 'Anonymous'),
2470 2471 2472 2473 2474 2475 2476 2477 2478 2479 2480
      'View management screens'      : ('Manager', 'Owner')
    }

    for permission in p.ac_inherited_permissions(1):
      name = permission[0]
      role_list = permission_dict.get(name, ('Manager',))
      p.manage_permission(name, roles=role_list, acquire=0)

  def setup(self, p, create_userfolder, **kw):
    update = kw.get('update', 0)

2481 2482 2483
    if getattr(p, 'setDefaultSorting', None) is not None:
      p.setDefaultSorting('id', 0)

2484 2485 2486 2487 2488
    self.setupTools(p, **kw)

    if not p.hasObject('MailHost'):
      self.setupMailHost(p)

Jérome Perrin's avatar
Jérome Perrin committed
2489 2490
    if create_userfolder and not p.hasObject('acl_users'):
      self.setupUserFolder(p)
2491 2492 2493 2494

    if not p.hasObject('cookie_authentication'):
      self.setupCookieAuth(p)

2495 2496 2497 2498 2499 2500 2501
    if not p.isAuthorisationExtractorEnabled():
      # Authorisation extractor, intended to supersede CookieCrumbler's without
      # its forced authentication cookie. Dependency of oauth2 authentication,
      # and only active when a quite restrictive set of condition is matched,
      # which should eliminate undesired triggering.
      p.enableAuthorisationExtractor()

2502 2503 2504 2505 2506
    if 'Member' not in getattr(p, '__ac_roles__', ()):
      self.setupRoles(p)
    if not update:
      self.setupPermissions(p)
      self.setupDefaultSkins(p)
2507 2508 2509
      assert not p.hasObject('portal_activities')
      addERP5Tool(p, 'portal_activities', 'Activity Tool')
      # Initialize Activities
2510
      p.portal_activities.manageClearActivities()
2511 2512 2513 2514 2515 2516
      # Reindex already existing tools
      for e in p.objectValues():
        try:
          e.reindexObject()
        except TypeError:
          pass
2517 2518 2519 2520 2521

    if not p.hasObject('content_type_registry'):
      self.setupMimetypes(p)

    if not update:
2522
      self.setupWorkflow(p)
2523
      self.setupERP5Core(p,**kw)
2524
      self.setupERP5Promise(p,**kw)
2525

2526 2527 2528
    # Make sure the cache is initialized
    p.portal_caches.updateCache()

2529 2530 2531 2532 2533
    # Make sure tools are cleanly indexed with a uid before creating children
    # XXX for some strange reason, member was indexed 5 times
    if not update:
      self.setupIndex(p, **kw)

2534
  def setupERP5Core(self,p,**kw):
2535
    """
2536
    Install the core part of ERP5
2537
    """
2538
    template_tool = p.portal_templates
2539
    if template_tool.getInstalledBusinessTemplate('erp5_core') is None:
2540
      for bt in p.getCoreBusinessTemplateList():
2541 2542
        if not bt:
          continue
2543 2544 2545
        url = getBootstrapBusinessTemplateUrl(bt)
        bt = template_tool.download(url)
        bt.install(**kw)
2546 2547 2548 2549 2550 2551 2552 2553 2554

  def setupERP5Promise(self,p,**kw):
    """
    Install the ERP5 promise configurator
    """
    template_tool = p.portal_templates
    # Configure the bt5 repository
    repository = p.getPromiseParameter('portal_templates', 'repository')
    if repository is not None:
Łukasz Nowak's avatar
Łukasz Nowak committed
2555
      template_tool.updateRepositoryBusinessTemplateList(repository.split())
2556 2557
      template_tool.installBusinessTemplateListFromRepository(
          ['erp5_promise'], activate=True, install_dependency=True)
2558 2559 2560


# Zope offers no mechanism to extend AppInitializer so let's monkey-patch.
2561
AppInitializer_initialize = six.get_unbound_function(AppInitializer.initialize)
2562 2563 2564 2565 2566 2567 2568 2569 2570 2571 2572
def initialize(self):
  AppInitializer.initialize = AppInitializer_initialize
  self.initialize()
  try:
    kw = getConfiguration().product_config['initsite']
  except KeyError:
    return
  meta_type = ERP5Site.meta_type
  for _ in self.getApp().objectIds(meta_type):
    return

2573
  # We defer the call to manage_addERP5Site via TimerService because:
2574
  # - we use ZPublisher so that get_request() works
2575
  #   (see Localizer patch)
2576 2577
  # - we want errors to be logged correctly
  #   (see Zope2.zpublisher_exception_hook in Zope2.App.startup)
2578
  import inspect, sys, time
2579
  from AccessControl.SecurityManagement import newSecurityManager
2580
  from App.ZApplication import ZApplicationWrapper
2581
  from Products.ZMySQLDA.db import DB, OperationalError
2582
  def addERP5Site(REQUEST):
2583 2584 2585 2586 2587 2588 2589 2590 2591 2592 2593 2594 2595 2596 2597 2598 2599 2600
    default_kw = inspect.getcallargs(manage_addERP5Site, None, '')
    db = (kw.get('erp5_sql_connection_string') or
      default_kw['erp5_sql_connection_string'])
    # The lock is to avoid that multiple zopes try to create a site when
    # they're started at the same time, because this is a quite long operation
    # (-> high probably of conflict with a lot of wasted CPU).
    # Theoretically, the same precaution should be taken for previous initial
    # commits, but they're small operations. At worst, SlapOS restarts zopes
    # automatically.
    # A ZODB lock would be better but unless we extend ZODB, this is only
    # possible with NEO, by voting a change to oid 0 in a parallel transaction
    # (and abort at the end): thanks to locking at object-level, this would not
    # block the main transaction.
    app = last = None
    while 1:
      try:
        with DB(db).lock():
          transaction.begin()
2601 2602 2603 2604
          app = REQUEST['PARENTS'][0]
          if isinstance(app, ZApplicationWrapper):
            # BBB: With ZServer, it is not loaded yet.
            app = REQUEST['PARENTS'][0] = app()
2605 2606 2607 2608 2609
          for _ in app.objectIds(meta_type):
            return
          uf = app.acl_users
          user = uf.getUser(kw['owner'])
          if not user.has_role('Manager'):
2610
            REQUEST.RESPONSE.unauthorized()
2611
          newSecurityManager(None, user.__of__(uf))
2612
          manage_addERP5Site(app.__of__(RequestContainer(REQUEST=REQUEST)),
2613
            **{k: kw.get(k, v) for k, v in six.iteritems(default_kw)
2614 2615 2616 2617 2618 2619 2620 2621 2622 2623 2624 2625 2626 2627 2628
                               if isinstance(v, str)})
          transaction.get().note('Created ' + meta_type)
          transaction.commit()
          break
      except OperationalError as e:
        if app is not None:
          raise
        # MySQL server not ready (down or user not created).
        e = str(e)
        if last != e:
          last = e
          LOG('ERP5Site', WARNING,
              'MySQL error while trying to create ERP5 site. Retrying...',
              error=1)
        time.sleep(5)
2629
  from Products.TimerService.timerserver.TimerServer import TimerRequest
2630 2631 2632 2633
  def traverse(*args, **kw):
    del TimerRequest.traverse
    return addERP5Site
  TimerRequest.traverse = traverse
2634 2635

AppInitializer.initialize = initialize