Mercurial > p > roundup > code
comparison scripts/add-issue @ 4781:6e9b9743de89
Implementation for:
http://issues.roundup-tracker.org/issue2550731
Add mechanism for the detectors to be able to tell the source of the
data changes.
Support for tx_Source property on database handle. Can be
used by detectors to find out the source of a change in an auditor to
block changes arriving by unauthenticated mechanisms (e.g. plain email
where headers can be faked). The property db.tx_Source has the
following values:
* None - Default value set to None. May be valid if it's a script
that is created by the user. Otherwise it's an error and indicates
that some code path is not properly setting the tx_Source property.
* "cli" - this string value is set when using roundup-admin and
supplied scripts.
* "web" - this string value is set when using any web based
technique: html interface, xmlrpc ....
* "email" - this string value is set when using an unauthenticated
email based technique.
* "email-sig-openpgp" - this string value is set when email with a
valid pgp signature is used. (*NOTE* the testing for this mode
is incomplete. If you have a pgp infrastructure you should test
and verify that this is properly set.)
This also includes some (possibly incomplete) tests cases for the
modes above and an example of using ts_Source in the customization.txt
document.
| author | John Rouillard <rouilj@ieee.org> |
|---|---|
| date | Tue, 23 Apr 2013 23:06:09 -0400 |
| parents | 6e3e4f24c753 |
| children | c75defc1c2f0 |
comparison
equal
deleted
inserted
replaced
| 4774:3adff0fb0207 | 4781:6e9b9743de89 |
|---|---|
| 26 message_text = sys.stdin.read().strip() | 26 message_text = sys.stdin.read().strip() |
| 27 | 27 |
| 28 # open the tracker | 28 # open the tracker |
| 29 tracker = instance.open(tracker_home) | 29 tracker = instance.open(tracker_home) |
| 30 db = tracker.open('admin') | 30 db = tracker.open('admin') |
| 31 db.tx_Source = "cli" | |
| 31 uid = db.user.lookup('admin') | 32 uid = db.user.lookup('admin') |
| 32 try: | 33 try: |
| 33 # try to open the tracker as the current user | 34 # try to open the tracker as the current user |
| 34 uid = db.user.lookup(username) | 35 uid = db.user.lookup(username) |
| 35 db.close() | 36 db.close() |
