001/*
002 * (C) Copyright 2006-2010 Nuxeo SA (http://nuxeo.com/) and contributors.
003 *
004 * All rights reserved. This program and the accompanying materials
005 * are made available under the terms of the GNU Lesser General Public License
006 * (LGPL) version 2.1 which accompanies this distribution, and is available at
007 * http://www.gnu.org/licenses/lgpl.html
008 *
009 * This library is distributed in the hope that it will be useful,
010 * but WITHOUT ANY WARRANTY; without even the implied warranty of
011 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
012 * Lesser General Public License for more details.
013 *
014 * Contributors:
015 *     Thierry Delprat
016 */
017package org.nuxeo.apidoc.browse;
018
019import org.nuxeo.apidoc.security.SecurityConstants;
020import org.nuxeo.ecm.core.api.NuxeoPrincipal;
021import org.nuxeo.ecm.webengine.model.WebContext;
022
023public class SecurityHelper {
024
025    public static boolean canEditDocumentation(WebContext ctx) {
026        NuxeoPrincipal principal = (NuxeoPrincipal) ctx.getPrincipal();
027        return canEditDocumentation(principal);
028    }
029
030    public static boolean canEditDocumentation(NuxeoPrincipal principal) {
031
032        if (principal.isAdministrator()) {
033            return true;
034        }
035        if (principal.isAnonymous()) {
036            return false;
037        }
038        return principal.getAllGroups().contains(SecurityConstants.Write_Group);
039
040    }
041
042}