implementing lecturer registration feature
[cascardo/ema.git] / eventos / views.py
index a5735cb..b5ab128 100644 (file)
 from django.http import HttpResponseRedirect, HttpResponseForbidden
 from django.contrib import auth
 from django.contrib.auth.forms import AuthenticationForm
+from django.contrib.auth.models import User, Group
 from django.newforms import form_for_instance, form_for_model
 from django.shortcuts import render_to_response, get_object_or_404
 from django.template import RequestContext, Context, loader
 from eventos.models import Palestrante, Trabalho
+from eventos.forms import RegisterLecturer
+
+forbidden = \
+    HttpResponseForbidden('<h2>You are not allowed to do this action.<h2>')
 
 def login(request):
     """This is a function that will be used as a front-end to the
@@ -56,17 +61,49 @@ def logout(request):
     auth.logout(request)
     return HttpResponseRedirect('/')
 
+def lecturer_add(request):
+    """Adds a new lecturer to the system.
+    """
+    uform = RegisterLecturer(request.POST or None)
+
+    FormKlass = form_for_model(Palestrante)
+    form = FormKlass(request.POST or None)
+    del form.fields['usuario']
+
+    if request.POST and form.is_valid() and uform.is_valid():
+        cd = uform.cleaned_data
+        group = Group.objects.get_or_create(name='palestrantes')[0]
+
+        # creating the user that will be set as the user of the
+        # lecturer.
+        user = User(username=cd['username'])
+        user.set_password(cd['password1'])
+        user.is_active = True
+        user.save()
+        user.groups.add(group)
+
+        # this commit=False is to avoid IntegritErrors, because at
+        # this point, the lecturer doesn't have an user associated
+        # with it.
+        instance = form.save(commit=False)
+        instance.usuario = user
+        instance.save()
+        return HttpResponseRedirect('/')
+
+    c = {'form': form, 'uform': uform}
+    return render_to_response('eventos/lecturer-add.html', Context(c),
+                              context_instance=RequestContext(request))
+
 def lecturer_details(request, lid):
     """Shows a simple form containing all editable fields of a
     lecturer and gives the lecturer the possibility to save them =)
     """
+    if not hasattr(request.user, 'palestrante_set'):
+        return forbidden
+
     entity = request.user.palestrante_set.get()
-    # avoiding problems if some other user tries to edit the lecturer
-    # info.
     if entity.id != int(lid):
-        return HttpResponseForbidden('<h2>You are not '
-                                     'allowed to edit '
-                                     'this info.<h2>')
+        return forbidden
 
     FormKlass = form_for_instance(entity)
     del FormKlass.base_fields['usuario']
@@ -83,9 +120,15 @@ def lecturer_talks(request, lid):
     """Lists all talks of a lecturer (based on lecturer id -- lid
     parameter).
     """
-    lecturer = get_object_or_404(Palestrante, pk=lid)
-    talks = Trabalho.objects.filter(palestrante=lecturer)
-    c = {'lecturer': lecturer, 'talks': talks}
+    if not hasattr(request.user, 'palestrante_set'):
+        return forbidden
+
+    entity = request.user.palestrante_set.get()
+    if entity.id != int(lid):
+        return forbidden
+
+    talks = Trabalho.objects.filter(palestrante=entity)
+    c = {'lecturer': entity, 'talks': talks}
     return render_to_response('eventos/talk-list.html', Context(c),
                               context_instance=RequestContext(request))
 
@@ -105,25 +148,38 @@ def talk_details(request, tid):
 def talk_delete(request, tid):
     """Drops a talk but only if the logged in user is its owner.
     """
-    entity = get_object_or_404(Trabalho, pk=tid)
-    palestrante = request.user.palestrante_set.get()
-    owner = Trabalho.objects.filter(pk=tid, palestrante=palestrante)
-    if not owner:
-        return HttpResponseForbidden('<h2>You are not '
-                                     'allowed to edit '
-                                     'this info.<h2>')
-    entity.delete()
-    return HttpResponseRedirect('/lecturer/%d/talks/' % palestrante.id)
+    if not hasattr(request.user, 'palestrante_set'):
+        return forbidden
+
+    entity = request.user.palestrante_set.get()
+    talk = Trabalho.objects.filter(pk=tid, palestrante=entity)
+    if not talk:
+        return forbidden
+
+    talk.delete()
+    return HttpResponseRedirect('/lecturer/%d/talks/' % entity.id)
 
 def talk_add(request):
     """Shows a form to the lecturer send a talk
     """
-    palestrante = request.user.palestrante_set.get()
+    if not hasattr(request.user, 'palestrante_set'):
+        return forbidden
+
+    entity = request.user.palestrante_set.get()
     FormKlass = form_for_model(Trabalho)
-    form = FormKlass(request.POST or None)
+    form = FormKlass(request.POST or None,
+                     initial={'palestrante': entity.id})
+
+    # This field should not be shown to the user.
+    form.fields['palestrante'].widget = HiddenInput()
+
+    # hidding the owner in the other lecturers list
+    other = Palestrante.objects.exclude(pk=entity.id)
+    form.fields['outros_palestrantes']._set_queryset(other)
+
     if request.POST and form.is_valid():
-        form.save()
-        return HttpResponseRedirect('/lecturer/%d/talks/' % palestrante.id)
+        instance = form.save()
+        return HttpResponseRedirect('/lecturer/%d/talks/' % entity.id)
 
     c = {'form': form}
     return render_to_response('eventos/talk-add.html', Context(c),