source: remit/mit/__init__.py @ 3e372da

client
Last change on this file since 3e372da was 213c1e0, checked in by Alex Dehnert <adehnert@…>, 15 years ago

Give autocreated users a fake password (Trac: #38)

  • Property mode set to 100644
File size: 1.7 KB
Line 
1from django.contrib.auth.middleware import RemoteUserMiddleware
2from django.contrib.auth.backends import RemoteUserBackend
3from django.contrib import auth
4from django.core.exceptions import ObjectDoesNotExist
5
6def zephyr(msg, clas='remit', instance='log', rcpt='adehnert',):
7    import os
8    os.system("zwrite -d -c '%s' -i '%s' '%s' -m '%s'" % (clas, instance, rcpt, msg, ))
9
10class ScriptsRemoteUserMiddleware(RemoteUserMiddleware):
11    header = 'SSL_CLIENT_S_DN_Email'
12
13class ScriptsRemoteUserBackend(RemoteUserBackend):
14    def clean_username(self, username, ):
15        if '@' in username:
16            name, domain = username.split('@')
17            assert domain.upper() == 'MIT.EDU'
18            return name
19        else:
20            return username
21    def configure_user(self, user, ):
22        username = user.username
23        user.password = "ScriptsSSLAuth"
24        import ldap
25        con = ldap.open('ldap.mit.edu')
26        con.simple_bind_s("", "")
27        dn = "dc=mit,dc=edu"
28        fields = ['cn', 'sn', 'givenName', 'mail', ]
29        result = con.search_s('dc=mit,dc=edu', ldap.SCOPE_SUBTREE, 'uid=%s'%username, fields)
30        if len(result) == 1:
31            user.first_name = result[0][1]['givenName'][0]
32            user.last_name = result[0][1]['sn'][0]
33            user.email = result[0][1]['mail'][0]
34            try:
35                user.groups.add(auth.models.Group.objects.get(name='mit'))
36            except ObjectDoesNotExist:
37                print "Failed to retrieve mit group"
38        try:
39            user.groups.add(auth.models.Group.objects.get(name='autocreated'))
40        except ObjectDoesNotExist:
41            print "Failed to retrieve autocreated group"
42        user.save()
43        return user
Note: See TracBrowser for help on using the repository browser.