jumpserver/apps/users/models.py

161 lines
5.8 KiB
Python
Raw Normal View History

2016-08-13 16:40:21 +00:00
# ~*~ coding: utf-8 ~*~
2016-08-08 16:43:11 +00:00
from __future__ import unicode_literals
2016-08-14 09:21:04 +00:00
import datetime
2016-08-20 10:33:18 +00:00
2016-08-20 17:16:30 +00:00
from django.contrib.auth.hashers import make_password
2016-08-18 17:39:08 +00:00
from django.utils import timezone
2016-08-08 16:43:11 +00:00
from django.db import models
2016-08-14 09:21:04 +00:00
from django.contrib.auth.models import AbstractUser, Permission
2016-08-08 16:43:11 +00:00
2016-08-09 17:30:19 +00:00
2016-08-20 17:16:30 +00:00
class Role(models.Model):
name = models.CharField('name', max_length=80, unique=True)
permissions = models.ManyToManyField(
Permission,
verbose_name='permissions',
blank=True,
)
date_added = models.DateTimeField(auto_now_add=True)
created_by = models.CharField(max_length=100)
2016-08-09 17:30:19 +00:00
comment = models.CharField(max_length=80, blank=True)
2016-08-13 16:40:21 +00:00
def __unicode__(self):
return self.name
2016-08-09 17:30:19 +00:00
2016-08-13 16:40:21 +00:00
class Meta:
db_table = 'role'
2016-08-14 09:21:04 +00:00
@classmethod
def init(cls):
roles = {
'Administrator': {'permissions': Permission.objects.all(), 'comment': '管理员'},
'User': {'permissions': [], 'comment': '用户'},
'Auditor': {'permissions': Permission.objects.filter(content_type__app_label='audits'),
'comment': '审计员'},
}
for role_name, props in roles.items():
2016-08-20 17:16:30 +00:00
if not cls.objects.filter(name=role_name):
role = cls.objects.create(name=role_name, comment=props.get('comment', ''), created_by='System')
if props.get('permissions'):
role.permissions = props.get('permissions')
2016-08-14 09:21:04 +00:00
2016-08-13 16:40:21 +00:00
class UserGroup(models.Model):
2016-08-14 09:21:04 +00:00
name = models.CharField(max_length=100, unique=True, verbose_name='组名称')
comment = models.TextField(blank=True, verbose_name='描述')
2016-08-13 16:40:21 +00:00
date_added = models.DateTimeField(auto_now_add=True)
created_by = models.CharField(max_length=100)
2016-08-09 17:30:19 +00:00
2016-08-13 16:40:21 +00:00
def __unicode__(self):
return self.name
class Meta:
db_table = 'usergroup'
@classmethod
def init(cls):
if not cls.objects.all():
2016-08-20 17:16:30 +00:00
group = cls(name='ALL', comment='Default usergroup for all user', created_by='System')
group.save()
2016-08-18 17:39:08 +00:00
@classmethod
def generate_fake(cls, count=100):
from random import seed, randint, choice
import forgery_py
from django.db import IntegrityError
seed()
for i in range(count):
group = cls(name=forgery_py.name.full_name(),
comment=forgery_py.lorem_ipsum.sentence(),
created_by=choice(User.objects.all()).username
)
try:
group.save()
except IntegrityError:
print('Error continue')
continue
2016-08-13 16:40:21 +00:00
2016-08-20 17:16:30 +00:00
def date_expired_default():
return timezone.now() + timezone.timedelta(days=365 * 70)
2016-08-13 16:40:21 +00:00
class User(AbstractUser):
2016-08-19 16:42:50 +00:00
username = models.CharField(max_length=20, unique=True, verbose_name='用户名')
name = models.CharField(max_length=20, verbose_name='姓名', help_text='* required')
email = models.EmailField(max_length=30, unique=True, verbose_name='邮件', help_text='* required')
2016-08-17 16:47:34 +00:00
groups = models.ManyToManyField(UserGroup, verbose_name='用户组', help_text='* required')
2016-08-17 14:17:16 +00:00
avatar = models.ImageField(upload_to="avatar", verbose_name='头像')
2016-08-14 09:21:04 +00:00
wechat = models.CharField(max_length=30, blank=True, verbose_name='微信')
phone = models.CharField(max_length=20, blank=True, verbose_name='手机号')
2016-08-20 17:16:30 +00:00
enable_otp = models.BooleanField(default=False, verbose_name='启用二次验证')
secret_key_otp = models.CharField(max_length=16, blank=True)
2016-08-14 09:21:04 +00:00
role = models.ForeignKey(Role, on_delete=models.PROTECT, verbose_name='角色')
private_key = models.CharField(max_length=5000, blank=True, verbose_name='ssh私钥') # ssh key max length 4096 bit
public_key = models.CharField(max_length=1000, blank=True, verbose_name='公钥')
comment = models.TextField(max_length=200, blank=True, verbose_name='描述')
2016-08-20 17:16:30 +00:00
date_expired = models.DateTimeField(default=date_expired_default, verbose_name='有效期')
2016-08-14 09:21:04 +00:00
created_by = models.CharField(max_length=30, default='')
2016-08-09 17:30:19 +00:00
class Meta:
db_table = 'user'
2016-08-18 17:39:08 +00:00
2016-08-20 17:16:30 +00:00
def is_expired(self):
if self.date_expired > timezone.now():
return False
else:
return True
@classmethod
def init(cls):
user = cls(username='admin',
email='admin@jumpserver.org',
name='Administrator',
password=make_password('admin'),
role=Role.objects.get(name='Administrator'),
comment='Administrator is the super user of system',
created_by='System')
user.save()
user.groups.add(UserGroup.objects.get(name='ALL'))
2016-08-18 17:39:08 +00:00
@classmethod
def generate_fake(cls, count=100):
2016-08-20 17:16:30 +00:00
from random import seed, choice
2016-08-18 17:39:08 +00:00
import forgery_py
from django.db import IntegrityError
seed()
for i in range(count):
user = cls(username=forgery_py.internet.user_name(True),
email=forgery_py.internet.email_address(),
name=forgery_py.name.full_name(),
password=make_password(forgery_py.lorem_ipsum.word()),
role=choice(Role.objects.all()),
wechat=forgery_py.internet.user_name(True),
comment=forgery_py.lorem_ipsum.sentence(),
created_by=choice(cls.objects.all()).username,
)
try:
user.save()
except IntegrityError:
print('Error continue')
continue
user.groups.add(choice(UserGroup.objects.all()))
user.save()
2016-08-20 17:16:30 +00:00
def init_all_models():
for model in (Role, UserGroup, User):
if hasattr(model, 'init'):
model.init()
2016-08-18 17:39:08 +00:00
2016-08-20 17:16:30 +00:00
def generate_fake():
for model in (Role, UserGroup, User):
if hasattr(model, 'generate_fake'):
model.generate_fake()