API recieves full set of permissions names on create of user

invite. This is instead of mapping from permission groups to individual
permissions on user creation.
This commit is contained in:
Adam Shimali
2016-06-06 12:37:06 +01:00
parent 37a3c27124
commit 63c29a3a3d
4 changed files with 26 additions and 38 deletions

View File

@@ -26,12 +26,13 @@ from app.dao.services_dao import (
from app.dao.provider_statistics_dao import get_fragment_count
from app.dao.users_dao import get_model_users
from app.models import ApiKey
from app.schemas import (
service_schema,
api_key_schema,
user_schema,
from_to_date_schema
from_to_date_schema,
permission_schema
)
from app.errors import register_errors
@@ -150,10 +151,9 @@ def add_user_to_service(service_id, user_id):
return jsonify(result='error',
message='User id: {} already part of service id: {}'.format(user_id, service_id)), 400
permissions_json = request.get_json().get('permissions', [])
permissions = _process_permissions(user, service, permissions_json)
dao_add_user_to_service(service, user, permissions)
permissions, errors = permission_schema.load(request.get_json(), many=True)
dao_add_user_to_service(service, user, permissions)
data, errors = service_schema.dump(service)
return jsonify(data=data), 201