Commit Graph
4 Commits
Author SHA1 Message Date
Damien Bouvy a9a4863034 [FIX] website: improve ACL support
The dashboard must be visible for non-'group system' users, hence
the sudo call + only display the link to modify the client id
if the user has sufficient access rights.

Small visual correction for live users counter in the dashboard.
2016-09-16 15:48:48 +02:00
Damien Bouvy 904f06f070 [IMP] website: make the website dashboard ACL aware
The Website Admin dashboard displays graphs for sales, analytics,etc.
using a (somewhat easily) extensible js framework.

Unfortunately, this framework is ACL unaware, meaning that it will
completely and silently crash if you are missing any of the required
access rights.

To solve this, extensions must now specify not just a graph name
but a necessary group for it and set the value for this group in
the extension of the backend controller.

This commit also
- make the icon visible for the group 'Website Designer and Editor'
  (not juste the Settings group, which is extremely restrictive)
- make the button to set the Google API key only visible to people
  with sufficient access rights
2016-09-16 11:46:39 +02:00
Ravi Gadhia fd09ddb6f3 [MIG] website: migration to new api
Migration of website module to new API.
The tricky phase is ir_http.py : we need to use `request.env`
only when the authenfication phase is done. Normally by
calling `super` of `_dispatch` method, but website module
required it to be done before. This is important since
`env`is a lazy property of `request` object.

Some hack were kept since this commit is a migration ('RequestUID'
in ir.http, ...)

Some docstrings were added.
2016-08-04 12:02:14 +02:00
Martin Geubelle 42c82d57de [ADD] website, website_sale, website_crm: new dashboard 2016-03-10 13:41:10 +01:00