1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105
|
<?php
/**
* This program is free software; you can redistribute it and/or modify
* it under the terms of the GNU General Public License as published by
* the Free Software Foundation; either version 2 of the License, or
* (at your option) any later version.
*
* This program is distributed in the hope that it will be useful,
* but WITHOUT ANY WARRANTY; without even the implied warranty of
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
* GNU General Public License for more details.
*
* You should have received a copy of the GNU General Public License along
* with this program; if not, write to the Free Software Foundation, Inc.,
* 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA.
* http://www.gnu.org/copyleft/gpl.html
*
* @file
*/
namespace MediaWiki\EditPage\Constraint;
use MediaWiki\Permissions\PermissionManager;
use MediaWiki\Title\Title;
use MediaWiki\User\User;
use StatusValue;
/**
* Verify user permissions:
* Must have edit rights
*
* @since 1.36
* @internal
* @author DannyS712
*/
class EditRightConstraint implements IEditConstraint {
private User $performer;
private PermissionManager $permManager;
private Title $title;
private string $result;
private bool $new;
/**
* @param User $performer
* @param PermissionManager $permManager
* @param Title $title
* @param bool $new
*/
public function __construct(
User $performer,
PermissionManager $permManager,
Title $title,
bool $new
) {
$this->performer = $performer;
$this->permManager = $permManager;
$this->title = $title;
$this->new = $new;
}
public function checkConstraint(): string {
if ( $this->new ) {
// Check isn't simple enough to just repeat when getting the status
if ( !$this->performer->authorizeWrite( 'create', $this->title ) ) {
$this->result = (string)self::AS_NO_CREATE_PERMISSION;
return self::CONSTRAINT_FAILED;
}
}
// Check isn't simple enough to just repeat when getting the status
// Prior to 1.41 this checked if the user had edit rights in general
// instead of for the specific page in question.
if ( !$this->permManager->userCan(
'edit',
$this->performer,
$this->title
) ) {
$this->result = self::CONSTRAINT_FAILED;
return self::CONSTRAINT_FAILED;
}
$this->result = self::CONSTRAINT_PASSED;
return self::CONSTRAINT_PASSED;
}
public function getLegacyStatus(): StatusValue {
$statusValue = StatusValue::newGood();
if ( $this->result === self::CONSTRAINT_FAILED ) {
if ( !$this->performer->isRegistered() ) {
$statusValue->setResult( false, self::AS_READ_ONLY_PAGE_ANON );
} else {
$statusValue->fatal( 'readonlytext' );
$statusValue->value = self::AS_READ_ONLY_PAGE_LOGGED;
}
} elseif ( $this->result === (string)self::AS_NO_CREATE_PERMISSION ) {
$statusValue->fatal( 'nocreatetext' );
$statusValue->value = self::AS_NO_CREATE_PERMISSION;
}
return $statusValue;
}
}
|