001/*
002 * (C) Copyright 2006-2008 Nuxeo SAS (http://nuxeo.com/) and contributors.
003 *
004 * All rights reserved. This program and the accompanying materials
005 * are made available under the terms of the GNU Lesser General Public License
006 * (LGPL) version 2.1 which accompanies this distribution, and is available at
007 * http://www.gnu.org/licenses/lgpl.html
008 *
009 * This library is distributed in the hope that it will be useful,
010 * but WITHOUT ANY WARRANTY; without even the implied warranty of
011 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
012 * Lesser General Public License for more details.
013 *
014 * Contributors:
015 *     Alexandre Russel
016 *
017 * $Id$
018 */
019
020package org.nuxeo.ecm.platform.annotations.repository;
021
022import java.net.URI;
023
024import org.nuxeo.ecm.core.api.CoreInstance;
025import org.nuxeo.ecm.core.api.CoreSession;
026import org.nuxeo.ecm.core.api.DocumentModel;
027import org.nuxeo.ecm.core.api.NuxeoPrincipal;
028import org.nuxeo.ecm.platform.annotations.repository.service.AnnotationsRepositoryService;
029import org.nuxeo.ecm.platform.annotations.service.PermissionManager;
030import org.nuxeo.ecm.platform.url.api.DocumentView;
031import org.nuxeo.runtime.api.Framework;
032
033/**
034 * @author Alexandre Russel
035 */
036public class DefaultNuxeoPermissionManager implements PermissionManager {
037
038    private AnnotationsRepositoryService service;
039
040    private final URNDocumentViewTranslator translator = new URNDocumentViewTranslator();
041
042    public DefaultNuxeoPermissionManager() {
043        service = Framework.getService(AnnotationsRepositoryService.class);
044    }
045
046    public boolean check(NuxeoPrincipal user, String permission, URI uri) {
047        DocumentView view = translator.getDocumentViewFromUri(uri);
048        try (CoreSession session = CoreInstance.openCoreSession(null)) {
049            DocumentModel model = session.getDocument(view.getDocumentLocation().getDocRef());
050            return service.check(user, permission, model);
051        }
052    }
053
054}