|
|
|
|
|
|
|
'use strict';
|
|
|
|
|
|
|
|
var async = require('async'),
|
|
|
|
|
|
|
|
meta = require('../meta'),
|
|
|
|
user = require('../user'),
|
|
|
|
groups = require('../groups'),
|
|
|
|
categories = require('../categories');
|
|
|
|
|
|
|
|
var helpers = {};
|
|
|
|
|
|
|
|
helpers.some = function(tasks, callback) {
|
|
|
|
async.some(tasks, function(task, next) {
|
|
|
|
task(function(err, result) {
|
|
|
|
next(!err && result);
|
|
|
|
});
|
|
|
|
}, function(result) {
|
|
|
|
callback(null, result);
|
|
|
|
});
|
|
|
|
};
|
|
|
|
|
|
|
|
helpers.allowedTo = function(privilege, uid, cid, callback) {
|
|
|
|
categories.getCategoryField(cid, 'disabled', function(err, disabled) {
|
|
|
|
if (err) {
|
|
|
|
return callback(err);
|
|
|
|
}
|
|
|
|
|
|
|
|
if (parseInt(disabled, 10) === 1) {
|
|
|
|
return callback(null, false);
|
|
|
|
}
|
|
|
|
|
|
|
|
// Guests handling
|
|
|
|
if (parseInt(uid, 10) === 0) {
|
|
|
|
return async.parallel([
|
|
|
|
function(next) {
|
|
|
|
groups.exists('cid:' + cid + ':privileges:' + privilege, function(err, exists) {
|
|
|
|
next(err, !err ? !exists : false);
|
|
|
|
});
|
|
|
|
},
|
|
|
|
function(next) {
|
|
|
|
helpers.isMember(groups.isMember, 'cid:' + cid + ':privileges:groups:' + privilege, 'guests', function(err, isMember) {
|
|
|
|
next(err, privilege !== 'find' && privilege !== 'read' ? isMember === true : isMember !== false);
|
|
|
|
});
|
|
|
|
}
|
|
|
|
], function(err, results) {
|
|
|
|
callback(err, results[0] && (results[1] || results[1] === null));
|
|
|
|
});
|
|
|
|
}
|
|
|
|
|
|
|
|
async.parallel({
|
|
|
|
hasUserPrivilege: function(next) {
|
|
|
|
helpers.isMember(groups.isMember, 'cid:' + cid + ':privileges:' + privilege, uid, next);
|
|
|
|
},
|
|
|
|
hasGroupPrivilege: function(next) {
|
|
|
|
helpers.isMember(groups.isMemberOfGroupList, 'cid:' + cid + ':privileges:groups:' + privilege, uid, next);
|
|
|
|
}
|
|
|
|
}, function(err, results) {
|
|
|
|
if (err) {
|
|
|
|
return callback(err);
|
|
|
|
}
|
|
|
|
|
|
|
|
callback(null, (results.hasUserPrivilege === null && results.hasGroupPrivilege === null) || results.hasUserPrivilege || results.hasGroupPrivilege);
|
|
|
|
});
|
|
|
|
});
|
|
|
|
};
|
|
|
|
|
|
|
|
helpers.isMember = function(method, group, uid, callback) {
|
|
|
|
groups.exists(group, function(err, exists) {
|
|
|
|
if (err) {
|
|
|
|
return callback(err);
|
|
|
|
}
|
|
|
|
|
|
|
|
if (!exists) {
|
|
|
|
return callback(null, null);
|
|
|
|
}
|
|
|
|
|
|
|
|
method(uid, group, callback);
|
|
|
|
});
|
|
|
|
}
|
|
|
|
|
|
|
|
helpers.hasEnoughReputationFor = function(privilege, uid, callback) {
|
|
|
|
if (parseInt(meta.config['privileges:disabled'], 10)) {
|
|
|
|
return callback(null, false);
|
|
|
|
}
|
|
|
|
|
|
|
|
user.getUserField(uid, 'reputation', function(err, reputation) {
|
|
|
|
if (err) {
|
|
|
|
return callback(null, false);
|
|
|
|
}
|
|
|
|
callback(null, parseInt(reputation, 10) >= parseInt(meta.config[privilege], 10));
|
|
|
|
});
|
|
|
|
};
|
|
|
|
|
|
|
|
module.exports = helpers;
|