B
    CVvg!                 @   s   d dl mZ d dlmZ d dlmZmZmZ e ZG dd dZ	G dd de	Z
G dd	 d	e
ZG d
d de
ZG dd deZdS )    )get_user_model)
Permission)ExistsOuterRefQc               @   sD   e Zd Zdd Zdd ZdddZddd	Zdd
dZdddZdS )BaseBackendc             K   s   d S )N )selfrequestkwargsr   r   @/tmp/pip-install-o3oxmrkh/Django/django/contrib/auth/backends.pyauthenticate	   s    zBaseBackend.authenticatec             C   s   d S )Nr   )r	   user_idr   r   r   get_user   s    zBaseBackend.get_userNc             C   s   t  S )N)set)r	   user_objobjr   r   r   get_user_permissions   s    z BaseBackend.get_user_permissionsc             C   s   t  S )N)r   )r	   r   r   r   r   r   get_group_permissions   s    z!BaseBackend.get_group_permissionsc             C   s   | j ||d| j||dS )N)r   )r   r   )r	   r   r   r   r   r   get_all_permissions   s    zBaseBackend.get_all_permissionsc             C   s   || j ||dkS )N)r   )r   )r	   r   permr   r   r   r   has_perm   s    zBaseBackend.has_perm)N)N)N)N)	__name__
__module____qualname__r   r   r   r   r   r   r   r   r   r   r      s   


r   c                   s   e Zd ZdZdddZdd Zdd Zd	d
 Zdd ZdddZ	dddZ
d fdd	Zd  fdd	Zdd Zd!ddZdd Z  ZS )"ModelBackendz9
    Authenticates against settings.AUTH_USER_MODEL.
    Nc             K   sx   |d kr| tj}|d ks$|d kr(d S ytj|}W n" tjk
rZ   t | Y nX ||rt| |rt|S d S )N)	get	UserModelUSERNAME_FIELD_default_managerget_by_natural_keyDoesNotExistZset_passwordZcheck_passworduser_can_authenticate)r	   r
   usernamepasswordr   userr   r   r   r   $   s    zModelBackend.authenticatec             C   s   t |dd}|p|dkS )z{
        Reject users with is_active=False. Custom user models that don't have
        that attribute are allowed.
        	is_activeN)getattr)r	   r%   r&   r   r   r   r"   3   s    z"ModelBackend.user_can_authenticatec             C   s
   |j  S )N)Zuser_permissionsall)r	   r   r   r   r   _get_user_permissions;   s    z"ModelBackend._get_user_permissionsc             C   s,   t  jd}d|  }tjjf ||iS )Ngroupsz	group__%s)r   Z_meta	get_fieldZrelated_query_namer   objectsfilter)r	   r   Zuser_groups_fieldZuser_groups_queryr   r   r   _get_group_permissions>   s    z#ModelBackend._get_group_permissionsc             C   s   |j r|js|dk	rt S d| }t||sv|jr>tj }nt| d| |}|	dd
 }t||dd |D  t||S )z
        Return the permissions of `user_obj` from `from_name`. `from_name` can
        be either "group" or "user" to return permissions from
        `_get_group_permissions` or `_get_user_permissions` respectively.
        Nz_%s_perm_cachez_get_%s_permissionscontent_type__app_labelcodenamec             S   s   h | ]\}}d ||f qS )z%s.%sr   ).0ctnamer   r   r   	<setcomp>S   s    z0ModelBackend._get_permissions.<locals>.<setcomp>)r&   is_anonymousr   hasattris_superuserr   r,   r(   r'   Zvalues_listZorder_bysetattr)r	   r   r   	from_nameZperm_cache_nameZpermsr   r   r   _get_permissionsC   s    
zModelBackend._get_permissionsc             C   s   |  ||dS )zs
        Return a set of permission strings the user `user_obj` has from their
        `user_permissions`.
        r%   )r:   )r	   r   r   r   r   r   r   V   s    z!ModelBackend.get_user_permissionsc             C   s   |  ||dS )zq
        Return a set of permission strings the user `user_obj` has from the
        groups they belong.
        group)r:   )r	   r   r   r   r   r   r   ]   s    z"ModelBackend.get_group_permissionsc                s8   |j r|js|d k	rt S t|ds2t ||_|jS )N_perm_cache)r&   r5   r   r6   superr   r<   )r	   r   r   )	__class__r   r   r   d   s
    
z ModelBackend.get_all_permissionsc                s   |j ot j|||dS )N)r   )r&   r=   r   )r	   r   r   r   )r>   r   r   r   k   s    zModelBackend.has_permc                s"   |j o t fdd| |D S )zU
        Return True if user_obj has any permissions in the given app_label.
        c             3   s$   | ]}|d | d  kV  qd S )N.)index)r1   r   )	app_labelr   r   	<genexpr>s   s   z0ModelBackend.has_module_perms.<locals>.<genexpr>)r&   anyr   )r	   r   rA   r   )rA   r   has_module_permsn   s    
zModelBackend.has_module_permsTc       
      C   s   t |tr<y|d\}}W qN tk
r8   tdY qNX nt |tsNtdt }|dk	rf|j S t	t
ddt	t
ddB }t |tr|t	|jdM }n|t	||d	M }ttj|}	|r|	t	d
dO }	|dk	r|	t	|dM }	|j|	S )z
        Return users that have permission "perm". By default, filter out
        inactive users and include superusers.
        r?   zDPermission name should be in the form app_label.permission_codename.z>The `perm` argument must be a string or a permission instance.Npk)Zgroup__user)r%   )rE   )r0   r/   T)r7   )r&   )
isinstancestrsplit
ValueErrorr   	TypeErrorr   r   noner   r   rE   r   r,   r-   )
r	   r   r&   Zinclude_superusersr   rA   r0   r   Zpermission_qZuser_qr   r   r   	with_permw   s,    



zModelBackend.with_permc             C   s<   yt jj|d}W n t jk
r(   d S X | |r8|S d S )N)rE   )r   r   r   r!   r"   )r	   r   r%   r   r   r   r      s
    zModelBackend.get_user)NN)N)N)N)N)TTN)r   r   r   __doc__r   r"   r)   r.   r:   r   r   r   r   rD   rL   r   __classcell__r   r   )r>   r   r      s   


	
$r   c               @   s   e Zd Zdd ZdS )AllowAllUsersModelBackendc             C   s   dS )NTr   )r	   r%   r   r   r   r"      s    z/AllowAllUsersModelBackend.user_can_authenticateN)r   r   r   r"   r   r   r   r   rO      s   rO   c               @   s,   e Zd ZdZdZdd Zdd Zdd Zd	S )
RemoteUserBackenda  
    This backend is to be used in conjunction with the ``RemoteUserMiddleware``
    found in the middleware module of this package, and is used when the server
    is handling authentication outside of Django.

    By default, the ``authenticate`` method creates ``User`` objects for
    usernames that don't already exist in the database.  Subclasses can disable
    this behavior by setting the ``create_unknown_user`` attribute to
    ``False``.
    Tc             C   s   |sdS d}|  |}| jrFtjjf tj|i\}}|rn| ||}n(ytj|}W n tjk
rl   Y nX | 	|r||S dS )ai  
        The username passed as ``remote_user`` is considered trusted. Return
        the ``User`` object with the given username. Create a new ``User``
        object if ``create_unknown_user`` is ``True``.

        Return None if ``create_unknown_user`` is ``False`` and a ``User``
        object with the given username is not found in the database.
        N)
clean_usernamecreate_unknown_userr   r   Zget_or_creater   configure_userr    r!   r"   )r	   r
   Zremote_userr%   r#   createdr   r   r   r      s    	
zRemoteUserBackend.authenticatec             C   s   |S )z
        Perform any cleaning on the "username" prior to using it to get or
        create the user object.  Return the cleaned username.

        By default, return the username unchanged.
        r   )r	   r#   r   r   r   rQ      s    z RemoteUserBackend.clean_usernamec             C   s   |S )z
        Configure a user after creation and return the updated user.

        By default, return the user unmodified.
        r   )r	   r
   r%   r   r   r   rS      s    z RemoteUserBackend.configure_userN)r   r   r   rM   rR   r   rQ   rS   r   r   r   r   rP      s
   
	rP   c               @   s   e Zd Zdd ZdS )AllowAllUsersRemoteUserBackendc             C   s   dS )NTr   )r	   r%   r   r   r   r"      s    z4AllowAllUsersRemoteUserBackend.user_can_authenticateN)r   r   r   r"   r   r   r   r   rU      s   rU   N)Zdjango.contrib.authr   Zdjango.contrib.auth.modelsr   Zdjango.db.modelsr   r   r   r   r   r   rO   rP   rU   r   r   r   r   <module>   s    ?