001/* 002 * (C) Copyright 2006-2010 Nuxeo SA (http://nuxeo.com/) and others. 003 * 004 * Licensed under the Apache License, Version 2.0 (the "License"); 005 * you may not use this file except in compliance with the License. 006 * You may obtain a copy of the License at 007 * 008 * http://www.apache.org/licenses/LICENSE-2.0 009 * 010 * Unless required by applicable law or agreed to in writing, software 011 * distributed under the License is distributed on an "AS IS" BASIS, 012 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. 013 * See the License for the specific language governing permissions and 014 * limitations under the License. 015 * 016 * Contributors: 017 * Thierry Delprat 018 */ 019package org.nuxeo.apidoc.browse; 020 021import org.nuxeo.apidoc.security.SecurityConstants; 022import org.nuxeo.ecm.core.api.NuxeoPrincipal; 023import org.nuxeo.ecm.webengine.model.WebContext; 024 025public class SecurityHelper { 026 027 public static boolean canEditDocumentation(WebContext ctx) { 028 NuxeoPrincipal principal = (NuxeoPrincipal) ctx.getPrincipal(); 029 return canEditDocumentation(principal); 030 } 031 032 public static boolean canEditDocumentation(NuxeoPrincipal principal) { 033 034 if (principal.isAdministrator()) { 035 return true; 036 } 037 if (principal.isAnonymous()) { 038 return false; 039 } 040 return principal.getAllGroups().contains(SecurityConstants.Write_Group); 041 042 } 043 044}