those who can grant all permissions should have all of them

This commit is contained in:
Laura Klünder 2017-12-20 21:06:26 +01:00
parent 245c101eb0
commit 544b3dae2e

View file

@ -34,8 +34,6 @@ class AccessRestriction(TitledMixin, models.Model):
@classmethod
def q_for_request(cls, request):
if request.user.is_authenticated and request.user.is_superuser:
return Q()
return Q(pk__in=AccessPermission.get_for_request(request))
@ -158,6 +156,14 @@ class AccessPermission(models.Model):
if not request.user.is_authenticated:
return set()
if request.user_permissions.grant_all_access:
cache_key = 'all_access_restrictions:%s' % MapUpdate.current_cache_key()
access_restriction_ids = cache.get(cache_key, None)
if access_restriction_ids is None:
access_restriction_ids = set(AccessRestriction.objects.values_list('pk', flat=True))
cache.set(cache_key, access_restriction_ids, 300)
return access_restriction_ids
cache_key = cls.user_access_permission_key(request.user.pk)
access_restriction_ids = cache.get(cache_key, None)
if access_restriction_ids is None: