Why Gemfury? Push, build, and install  RubyGems npm packages Python packages Maven artifacts PHP packages Go Modules Debian packages RPM packages NuGet packages

Repository URL to install this package:

Details    
python3-dmapi / usr / lib / python3.6 / site-packages / dmapi / __pycache__ / context.cpython-36.opt-1.pyc
Size: Mime:
3

kÉÛc9ã@s.dZddlZddlmZddlmZddlmZddl	m
Z
ddlmZddl
mZdd	lmZddlZdd
lmZddlmZddlmZdd
lmZejeƒZeƒZeƒZGdd„dejƒZ ej!Gdd„de
j"ƒƒZ"dd„Z#d%dd„Z$dd„Z%dd„Z&dd„Z'dd„Z(dd „Z)ia*d!d"„Z+ed#d$„ƒZ,dS)&zGRequestContext: context for requests that persist through all of dmapi.éN)Úcontextmanager)Úservice_catalog)Úplugin)Úcontext)Úenginefacade)Úlog)Ú	timeutils)Ú	exception)Ú_)Úpolicy)Úutilscs2eZdZdZ‡fdd„Zdd„Zd	dd„Z‡ZS)
Ú_ContextAuthPluginzñA keystoneauth auth plugin that uses the values from the Context.

    Ideally we would use the plugin provided by auth_token middleware however
    this plugin isn't serialized yet so we construct one from the serialized
    auth data.
    cs$tt|ƒjƒ||_tj|ƒ|_dS)N)Úsuperr
Ú__init__Ú
auth_tokenÚksa_service_catalogZServiceCatalogV2r)ÚselfrZsc)Ú	__class__©ú/usr/lib/python3.6/context.pyr)sz_ContextAuthPlugin.__init__cOs|jS)N)r)rÚargsÚkwargsrrrÚ	get_token/sz_ContextAuthPlugin.get_tokenNcKs|jj||||dS)N)Úservice_typeÚservice_nameÚ	interfaceÚregion_name)rZurl_for)rZsessionrrrrrrrrÚget_endpoint2sz_ContextAuthPlugin.get_endpoint)NNNN)Ú__name__Ú
__module__Ú__qualname__Ú__doc__rrrÚ
__classcell__rr)rrr
!s
r
c
s’eZdZdZd‡fdd„	Zdd„Zd	d
„Zdd„Zd
d„Ze	eeeƒZ
‡fdd„Ze‡fdd„ƒZ
ddd„Zddd„Z‡fdd„Zdd„Z‡ZS)ÚRequestContextzpSecurity context and request information.

    Represents the user taking a given action within the system.
    NÚnoFcsº|r||d<|r||d<|jddƒtt|ƒjfd|i|—Ž||_||_|sVtjƒ}t|t	j
ƒrltj|ƒ}||_|rˆdd„|Dƒ|_
ng|_
|	|_||_|
|_|jdkr¶tj|ƒ|_dS)aÉ:param read_deleted: 'no' indicates deleted records are hidden,
                'yes' indicates deleted records are visible,
                'only' indicates that *only* deleted records are visible.

           :param overwrite: Set to False to ensure that the greenthread local
                copy of the index is not overwritten.

           :param user_auth_plugin: The auth plugin for the current request's
                authentication data.
        ÚuserÚ
project_idZtenantNÚis_adminc
Ssg|]}|jdƒdkr|‘qS)	ÚtypeÚimageú
block-storageÚvolumev2Úvolumev3úkey-managerÚ	placementÚnetwork)r)r*r+r,r-r.r/)Úget)Ú.0Úsrrrú
<listcomp>dsz+RequestContext.__init__.<locals>.<listcomp>)Úpoprr#rÚread_deletedÚremote_addressrZutcnowÚ
isinstanceÚsixZstring_typesZ
parse_strtimeÚ	timestamprÚinstance_lock_checkedÚquota_classÚuser_auth_pluginr'rZcheck_is_admin)rÚuser_idr&r'r5r6r9r;rr:r<r)rrrr@s*

zRequestContext.__init__cCs|jr|jSt|j|jƒSdS)N)r<r
rr)rrrrÚget_auth_pluginwszRequestContext.get_auth_plugincCs|jS)N)Ú
_read_deleted)rrrrÚ_get_read_deleted}sz RequestContext._get_read_deletedcCs"|dkrttdƒ|ƒ‚||_dS)Nr$ÚyesÚonlyz=read_deleted can only be one of 'no', 'yes' or 'only', not %r)r$rArB)Ú
ValueErrorr
r?)rr5rrrÚ_set_read_deleted€sz RequestContext._set_read_deletedcCs|`dS)N)r?)rrrrÚ_del_read_deleted†sz RequestContext._del_read_deletedcsºtt|ƒjƒ}|jt|ddƒt|ddƒt|ddƒt|ddƒt|ddƒt|dƒrZtj|jƒndt|ddƒt|d	dƒt|d
dƒt|ddƒt|ddƒt|d
dƒdœƒ|jdt|ddƒiƒ|S)Nr=r&r'r5r$r6r9Ú
request_idr;Ú	user_namerÚproject_namer:F)r=r&r'r5r6r9rFr;rGrrHr:Zis_admin_projectT)	rr#Úto_dictÚupdateÚgetattrÚhasattrrZstrtimer9)rÚvalues)rrrrIŒs&









zRequestContext.to_dictcsVtt|ƒj||jdƒ|jdƒ|jddƒ|jdƒ|jdƒ|jdƒ|jdƒ|jd	d
ƒd	S)Nr=r&r5r$r6r9r;rr:F)r=r&r5r6r9r;rr:)rr#Ú	from_dictr0)ÚclsrM)rrrrNªs

zRequestContext.from_dictcCsFtj|ƒ}tj|jƒ|_d|_d|jkr4|jjdƒ|dk	rB||_|S)z5Return a version of this context with admin flag set.TZadminN)ÚcopyÚdeepcopyZrolesr'Úappendr5)rr5rrrrÚelevated»s

zRequestContext.elevatedTcCsF|dkr|j|jdœ}ytj|||ƒStjk
r@|r<‚dSXdS)aRVerifies that the given action is valid on the target in this context.

        :param action: string representing the action to be checked.
        :param target: dictionary representing the object of the action
            for object creation this should be a dictionary representing the
            location of the object e.g. ``{'project_id': context.project_id}``.
            If None, then this default target will be considered:
            {'project_id': self.project_id, 'user_id': self.user_id}
        :param fatal: if False, will return False when an exception.Forbidden
           occurs.

        :raises dmapi.exception.Forbidden: if verification fails and fatal is
            True.

        :return: returns a non-False value (not necessarily "True") if
            authorized and False if not authorized and fatal is False.
        N)r&r=F)r&r=rZ	authorizer	Ú	Forbidden)rÚactionÚtargetZfatalrrrÚcanËs
zRequestContext.cancstt|ƒjƒ}|j|d<|S)Nr')rr#Úto_policy_valuesr')rr)rrrrXès
zRequestContext.to_policy_valuescCsd|jƒS)Nz<Context %s>)rI)rrrrÚ__str__íszRequestContext.__str__)
NNNr$NNNNFN)N)NT)rrr r!rr>r@rDrEÚpropertyr5rIÚclassmethodrNrSrWrXrYr"rr)rrr#:s"4

r#cCstdddddS)z·A helper method to get a blank context.

    Note that overwrite is False here so this context will not update the
    greenthread-local stored context that is used when logging.
    NF)r=r&r'Ú	overwrite)r#rrrrÚget_contextñsr]r$cCstddd|ddS)NTF)r=r&r'r5r\)r#)r5rrrÚget_admin_contextýs
r^cCs*|sdS|jrdS|js"|jr&dSdS)z2Indicates if the request context is a normal user.FT)r'r=r&)rrrrÚis_user_contextsr_cCs|jrt|ƒrtjƒ‚dS)zRRaise exception.Forbidden() if context is not a user or an
    admin context.
    N)r'r_r	rT)ZctxtrrrÚrequire_contextsr`cCs.t|ƒr*|jstjƒ‚n|j|kr*tjƒ‚dS)z=Ensures a request has permission to access the given project.N)r_r&r	rT)rr&rrrÚauthorize_project_contexts


racCs.t|ƒr*|jstjƒ‚n|j|kr*tjƒ‚dS)z:Ensures a request has permission to access the given user.N)r_r=r	rT)rr=rrrÚauthorize_user_context's


rbcCs.t|ƒr*|jstjƒ‚n|j|kr*tjƒ‚dS)zAEnsures a request has permission to access the given quota class.N)r_r;r	rT)rÚ
class_namerrrÚauthorize_quota_class_context0s


rdcsVˆdk	rFddlm‰ddlm‰tjˆjƒ‡‡‡‡fdd„ƒ}|ƒndˆ_dˆ_dS)a¯Adds database connection information to the context
    for communicating with the given target_cell.

    This is used for permanently targeting a cell in a context.
    Use this when you want all subsequent code to target a cell.

    Passing None for cell_mapping will untarget the context.

    :param context: The RequestContext to add connection information
    :param cell_mapping: An objects.CellMapping object or None
    Nr)Údb)Úrpccszytˆj}WnRtk
r`ˆj}ˆj|ƒˆ_ˆjjdƒsJˆjˆjƒˆ_	ˆjˆj	ftˆj<YnX|dˆ_|dˆ_	dS)NZnoneré)
Ú
CELL_CACHEÚuuidÚKeyErrorZdatabase_connectionZcreate_context_managerÚ
db_connectionZ
transport_urlÚ
startswithZcreate_transportÚ
mq_connection)Z
cell_tupleZdb_connection_string)Úcell_mappingrrerfrrÚ*get_or_set_cached_cell_and_set_connectionsMs

zCset_target_cell.<locals>.get_or_set_cached_cell_and_set_connections)ÚdmapirerfrZsynchronizedrirkrm)rrnror)rnrrerfrÚset_target_cell:s
rqccs"tj|jƒƒ}t||ƒ|VdS)a¡Yields a new context with connection information for a specific cell.

    This function yields a copy of the provided context, which is targeted to
    the referenced cell for MQ and DB connections.

    Passing None for cell_mapping will yield an untargetd copy of the context.

    :param context: The RequestContext to add connection information
    :param cell_mapping: An objects.CellMapping object or None
    N)r#rNrIrq)rrnZcctxtrrrÚtarget_cellds
rr)r$)-r!rPÚ
contextlibrZkeystoneauth1.accessrrZ
keystoneauth1rZoslo_contextrZoslo_db.sqlalchemyrZoslo_logrZloggingZ
oslo_utilsrr8rpr	Z
dmapi.i18nr
rrZ	getLoggerrZLOGÚobjectZdid_not_respond_sentinelZraised_exception_sentinelZBaseAuthPluginr
Ztransaction_context_providerr#r]r^r_r`rarbrdrhrqrrrrrrÚ<module>s<

7
			*