2018-10-13 17:44:01 +02:00
|
|
|
from django.contrib.auth.models import Permission, Group, User
|
2020-02-05 15:31:01 +01:00
|
|
|
from startup_script_utils import load_yaml
|
2018-12-19 14:25:58 +01:00
|
|
|
import sys
|
2018-02-16 10:25:26 +01:00
|
|
|
|
2020-02-05 15:31:01 +01:00
|
|
|
groups = load_yaml('/opt/netbox/initializers/groups.yml')
|
|
|
|
if groups is None:
|
2018-12-19 14:25:58 +01:00
|
|
|
sys.exit()
|
|
|
|
|
2020-02-05 15:31:01 +01:00
|
|
|
for groupname, group_details in groups.items():
|
|
|
|
group, created = Group.objects.get_or_create(name=groupname)
|
|
|
|
|
|
|
|
if created:
|
|
|
|
print("👥 Created group", groupname)
|
|
|
|
|
|
|
|
for username in group_details.get('users', []):
|
|
|
|
user = User.objects.get(username=username)
|
|
|
|
|
|
|
|
if user:
|
|
|
|
user.groups.add(group)
|
|
|
|
|
|
|
|
yaml_permissions = group_details.get('permissions', [])
|
|
|
|
if yaml_permissions:
|
|
|
|
subject = group.permissions
|
|
|
|
subject.clear()
|
|
|
|
for yaml_permission in yaml_permissions:
|
|
|
|
if '*' in yaml_permission:
|
|
|
|
permission_filter = '^' + yaml_permission.replace('*','.*') + '$'
|
|
|
|
permissions = Permission.objects.filter(codename__iregex=permission_filter)
|
|
|
|
print(" ⚿ Granting", permissions.count(), "permissions matching '" + yaml_permission + "'")
|
|
|
|
else:
|
|
|
|
permissions = Permission.objects.filter(codename=yaml_permission)
|
|
|
|
print(" ⚿ Granting permission", yaml_permission)
|
|
|
|
|
|
|
|
for permission in permissions:
|
|
|
|
subject.add(permission)
|