Commit Graph
143 Commits
Author SHA1 Message Date
Antony Lesuisse ccf606e026 [ADD] website_project: Portal access to Projects
Split project to move portal features to a new module named website_project.

Portal users may now access their projects and tasks throught the
website_portal My account page. The Backend portal menuitem is removed.

Simplify the privacy settings of project, to be visible to portal users the
project must be in 'portal' mode.

Original authors: Vipul Bhatt, Florian Wintjens
2016-07-06 01:17:43 +02:00
Gaurav Panchal 40fa74e3f5 [MIG] project: migration to new api except project.py 2016-06-30 14:41:21 +02:00
Yannick Tivisse 9e57185449 [IMP] base,sales_team: Move res_groups and menuitems to sales_team
Purpose:
Having the res_group defined in base and sales_team auto installed
with mail doens't make sense.

- Move the empty res_config class and the related view from
  base_setup to sales_team (base_setup only contains the 'General Settings'
  model and views
- Move the 'sale' related content from product to sale module (Access rights,
  menuitems,...)
- Set sales_team at autoinstall False. The module is installed when needed by
  crm or sale for example
- Set sales_team as a dependency of voip. (Access rights defined for configuration
  purpose)
- Set sales_team ad a dependency of subscription (Access rights issue too)

[FIX] account: move some ir.model.access to sale module
[FIX] payment: Move some ir.rule to website_sale
[FIX] stock: move some ir.model.access rule to sale_stock
[FIX] project: Move some ir.model.access rules to crm_project_issue
[FIX] mrp: Move some ir.model.access rules to sale_mrp
[FIX] calendar: move some ir.model.access rules to crm

Rename xmlids accordingly. Example: 'base.group_sale_manager' becomes
sales_team.group_sale_manager.

[ADD] sales_team: See own documents => See only his sales team
Moved the "User: Own Leads Only", "User: All Leads" and "Manager" groups from sale and crm
into sales_team module. Add the record rules so that user can see only his Own Sales Team
if "See Own Leads" is sales right and can see all sales teams if he is having sales rights
of "See All Leads" or manager.
2016-06-09 16:05:25 +02:00
Yannick Tivisse ccdb5cbfc0 Revert "[IMP] base,sales_team: Move res_groups and menuitems to sales_team"
This branch need more testing instead of doing 10 fixes. A lot of issues are occuring
when installing modules in different orders.

This reverts commit fa6e415cdb.
2016-06-06 17:26:30 +02:00
Yannick Tivisse fa6e415cdb [IMP] base,sales_team: Move res_groups and menuitems to sales_team
Purpose:
Having the res_group defined in base and sales_team auto installed
with mail doens't make sense.

- Move the empty res_config class and the related view from
  base_setup to sales_team (base_setup only contains the 'General Settings'
  model and views
- Move the 'sale' related content from product to sale module (Access rights,
  menuitems,...)
- Set sales_team at autoinstall False. The module is installed when needed by
  crm or sale for example
- Set sales_team as a dependency of voip. (Access rights defined for configuration
  purpose)
- Set sales_team ad a dependency of subscription (Access rights issue too)

Rename xmlids accordingly. Example: 'base.group_sale_manager' becomes
sales_team.group_sale_manager.
2016-06-06 15:46:52 +02:00
Tanguy Charlier 16bf40f7c4 [IMP] hr_timesheet: Timesheet entries are now related to projects
- Hide account_id field and add a required project_id field on timesheet entries
- Remove is_timesheet field: as project_id is only required for timesheet entries and not for other analytic lines, it can be used to determine wether a line is a timeheet entry or not.
- Remove project_timesheet module as all its functionalities are moved to hr_timesheet
- Replace timesheets on contract option on products by timesheets on project
- Small fixes and improvements in timesheets and projects views and groups
2016-02-18 01:25:55 +01:00
Yannick Tivisse 1ecba213f4 [IMP] Newly created users get all manager access right
Coming from a bug in web_settings_dashboard. Invited user didn't have any rights
when created from the dashboard, which was leading to an error.

This bug leaded to a new discussion. Better to have basic employee having user
rights for all main applications. For bigger entreprises there is an admin that
will carefully remove extra rights, if necessary. The target is small businesses,
it makes sense that every way to create a user gives the same result.

In conclusion, each new user has a full access to the applications by default

How is it implemented ?
We added an inactive default user which original access right to the groups
'base.group_user' and 'base.group_partner_manager' in base. Each
application will extend the default user's access right by adding the maximal
access right for this application.

On user creation, we will use by default the 'group_id' field from the default
user. We will in the same time remove the ugly 'default_groups_ref' key which
was passed sometimes in the context for some fields in some views, and sometimes
nothing.

So, the user can modify the access rights for the default user, but he should be
aware that removing project user access rights for a default user will prevent
a *created on the fly in a task* user will not be able to access the task.
2015-11-20 16:27:32 +01:00
Christophe Simonis d750206c49 [MERGE] forward port of branch saas-6 up to e9f1ee4 2015-10-01 15:16:59 +02:00
Denis Ledoux fa17b86a9f [FIX] project: multi-company security rules in Tasks Analysis
This change avoid to display the tasks
that a user is not permitted to see
in the reporting view 'Task analysis'

Closes #4399

Courtesy of jkei
https://github.com/jkei
2015-09-28 15:58:15 +02:00
Nicolas Martinelli 908f416573 [IMP] project*: adaptation due to the new Sale module
Major changes:
- New start and expiration dates
- Remove field Contract Status
- Simplified because use of sale_timesheet

Reason: complete rewrite of the Sale module.

Responsible: fp, dbo, nim
2015-08-27 18:15:24 +02:00
Thibault Delavallée 09c40cfae8 [FIX] project: task stage access right issue
Employees (base.group_user) can read tasks. However they miss the right to read
task stages (project.task.type). This causes issues when reading the form view
of a task. This commit fixes this issue.
2015-08-27 17:07:02 +02:00
Thibault Delavallée e6f038a821 [REF] mail: mail_thread: followers update
Followers can now be partners or channels. Partners following a document
will receive needaction, as previously. However people can follow documents
through channels. Members of a channel are able to listen to a stream
of messages using the channel. Those messages do not create needaction
messages. It is therefore possible to follow documents without receiving
too much notifications. For interesting documents subscribing with its
partner will create notification.

message_follower_ids fields is udpated. It is now a many2many to
mail.followers, not to res.partner anymore. A subscription can be either
a partner (partner_id) or a channel (channel_id).

Some access rules have been updated accordingly.
2015-08-21 12:11:56 +02:00
Damien Bouvy 8bd6074f03 [IMP] project,project_issue,project_timesheet,project_issue_sheet: project visibility and access rights modifications
[REM] portal_project: move ALL the things
- move portal access rights from portal_project  and website_project_issue to project and project_issue
- move portal menuitems back to their respective module
- remove public visibility of projects
- adapt demo data to have a 'Demo Portal' project
- add correct access rights for account.analytic.line for portal users
- small view tweak (do not display 'timesheet' tab if one can't see antyhing in it anyway)
2015-08-14 13:19:03 +02:00
Yannick Tivisse e485b6c5ee [IMP] Project : remove task delegation
Conflicts:
	addons/project/wizard/project_task_delegate.py
2015-07-08 15:39:02 +02:00
Yannick Tivisse d2dd78889d [FIX] Menu configuration in root menu 2015-07-06 14:02:00 +02:00
Pariket Trivedi 2b61f6f6b3 [IMP] project,project_issue,portal_project: code cleaning
- remove unnecessary copy() method from project/res_partner.py
- remove old methods on project.project
- progress is not used anymore on project.project
- use clickable statusbar for project states
- remove _resolve_project_id_from_context
- rename project.category becomes project.tag to be more explicit
- remove old methods on tasks
- issues: remove option fetchmail_issue
2015-05-12 16:31:43 +02:00
odoo-tac 14183ba2be [REF] Refactored hr_timesheet: Refactored the "timesheet" model in several modules. hr.analytic.timesheet is removed, and account.analytic.line is used directly to represent timesheets.
Also removed worklogs on tasks and replaced them by generic timesheets, i.e. account.analytic.line(s)
2015-04-28 10:31:18 +02:00
Martin Trigaux 0b2ee16885 [FIX] project: access rights and followers
For privacy_visibility 'followers' or 'portal', the user should be follower of the project (not the task).
Remove public access to portal task
Fixes #2372

If no project on the task (or other rule), an employee (not a portal) can access if is follower of the task.
Follower rule is not enough as a user creating a rule will subscribe to the rule but to subscribe to record, the user should have access to it in the first place.
To make sure the snake does not bit its tail, fallback to give access on task where the user is reponsible (user_id = user.id).
Fixes #139

Adapted the tests to the new behaviour (removed not relevant and added some on creation)
2014-11-18 18:52:46 +01:00
Martin Trigaux c22ed1390b [FIX] project: access task without project
Allow access to task without a project defined if the user is follower.
Fixes #3450
2014-11-06 18:05:28 +01:00
Christophe Simonis 562272d9a0 [MERGE] forward port of branch saas-3 up to c89d1a0 2014-10-23 13:08:44 +02:00
Martin Trigaux 118b5073e0 [FIX] project: read access for project user
Backport of 79bed94 (project user access to resource.calendar) and adding the access to resource.calendar.attendance.
It is needed to compute function fields such as day_open (present in form view of project.issue)
Fixes #3201
2014-10-21 16:56:08 +02:00
Martin Trigaux 2e2778c1b1 [IMP] project: convert file CRLF to Unix end of line 2014-10-21 16:54:56 +02:00
Denis Ledoux 79bed94271 [FIX] project_issue: project issue user must be able to read resource calendar
In order to be able to read the days_since_creation field
2014-08-19 17:57:48 +02:00
Antony Lesuisse 7e25b9ae55 [MERGE] saas-4 report_webkit missing dependency on report
bzr revid: al@openerp.com-20140501152604-4cobh5ui47dt4pem
bzr revid: al@openerp.com-20140501155633-gefnc3zqcsr2rhaz
bzr revid: al@openerp.com-20140501161156-4wbsvhh8gz4r22h3
2014-05-01 18:11:56 +02:00
Christophe Simonis d562249278 [FIX] project: force menu name
bzr revid: chs@openerp.com-20140425170357-iqcqqfe71mm2z0qg
2014-04-25 19:03:57 +02:00
ima-openerp 88d51c13b1 [MERGE]with latest.
bzr revid: ima@tinyerp.com-20131021113334-238vg9l2hzm2ijyc
2013-10-21 17:03:34 +05:30
ima-openerp 6259b475cd [IMP]added access rights for manager and user in hr_recruitement and project module.
bzr revid: ishwarmalvi13@gmail.com-20130912132859-lwxivwsrld9ccf2c
2013-09-12 18:58:59 +05:30
Martin Trigaux c48504fdba [MERGE] sync with trunk (state -> stage removed some test)
bzr revid: mat@openerp.com-20130911110755-zf3ytf9m27im6x9k
2013-09-11 13:07:55 +02:00
Thibault Delavallée 9b41f8fadc [TESTS] project: refactored tests. Moved surviving yml tests into unittest; added mailgateway test.
bzr revid: tde@openerp.com-20130710101508-62eh89gzq22qvpq5
2013-07-10 12:15:08 +02:00
sgo@tinyerp.com 6a3cdf718c [MERGE]sync with trunk
bzr revid: sgo@tinyerp.com-20130605071905-o2ldzc6vxqnoe099
2013-06-05 12:49:05 +05:30
Martin Trigaux 143b485baf [IMP]resource: avoid better permissions on calendar_leaves
bzr revid: mat@openerp.com-20130514134227-xnvyzjikwph8bp5k
2013-05-14 15:42:27 +02:00
Thibault Delavallée 8c31d9772a [FIX] project, task, issue, portal: fixed access rules for employees/portal users + added an help on privacy_visibility.
bzr revid: tde@openerp.com-20130426130259-35j0v7lg7unxhzzp
2013-04-26 15:02:59 +02:00
sgo@tinyerp.com d5451cf7f2 [MERGE]sync with trunk
bzr revid: sgo@tinyerp.com-20130417060441-6vnz2tiym5fawr2n
2013-04-17 11:34:41 +05:30
Thibault Delavallée 812c852fd0 [FORWARD] Merged 7.0 addons revisions until 9021
bzr revid: tde@openerp.com-20130415084302-hx7zxtpl5u6yphfg
bzr revid: tde@openerp.com-20130415153732-v4ols3t56rku92oz
2013-04-15 17:37:32 +02:00
Thibault Delavallée b6223ecb7f [FIX] [ADD] project, project_issue, portal_project, portal_project_issue: improved privacy_visibility selection of project.project; improved access rules; added tests to enforce them.
bzr revid: tde@openerp.com-20130412143719-ztjo06r900l024dm
2013-04-12 16:37:19 +02:00
sgo@tinyerp.com 15f6bea1e9 [IMP]improve yml for project and add access rights as needed
bzr revid: sgo@tinyerp.com-20130312112700-zamjzcjp5d9nv5n0
2013-03-12 16:57:00 +05:30
Ajay Chauhan (OpenERP) fb0d701ce5 [IMP] project: set mail alias rights to project_manager
bzr revid: cha@tinyerp.com-20130205070036-e1ghl2dufz83mwf8
2013-02-05 12:30:36 +05:30
Olivier Dony 3fe6987ce7 [MERGE] Harmonization of noupdate flag on security XML data, courtesy of Alexis de Lattre (Akretion)
ir.rule records are in noupdate data blocks to let the admin
alter them without fear of them being reset at next update.
Other records such as groups are in normal mode, so they
can be updated whenever necessary

bzr revid: odo@openerp.com-20121218232001-t425t4hi7qbmsip2
2012-12-19 00:20:01 +01:00
Arnaud Pineux 2fb7baa325 [IMP] demo for french users
bzr revid: api@openerp.com-20121211140346-bhh8o1rf5h57epcz
2012-12-11 15:03:46 +01:00
Ajay Chauhan (OpenERP) b5f940c04f [IMP] project: made little change in ir rule
bzr revid: cha@tinyerp.com-20121010083548-lt8oncuanvcfpqk2
2012-10-10 14:05:48 +05:30
Ajay Chauhan (OpenERP) 2d1cb5d05d [IMP] project: solved the issue of 'Followers Only' visibility for project
bzr revid: cha@tinyerp.com-20121008131720-v1573v9zitef1whp
2012-10-08 18:47:20 +05:30
Thibault Delavallée 41198901cd [FIX] Project: fixed a security rule based on follower_ids, that is now message_follower_ids.
bzr revid: tde@openerp.com-20120910075850-0b5sg1vljcc8gba9
2012-09-10 09:58:50 +02:00
Thibault Delavallée 6c109e7d7e [REM] project: removed custom 'followers' fields; security rule updated to use follower_ids.
bzr revid: tde@openerp.com-20120822074924-bbb5lc1w48dtebeb
2012-08-22 09:49:24 +02:00
Antonin Bourguignon 89a27bf5b6 [IMP] hr_recruitment, project: better access rules for categories
bzr revid: abo@openerp.com-20120816144403-4nd2bbiq5dfnwc2i
2012-08-16 16:44:03 +02:00
Alexis de Lattre 5101771cd9 Harmonize the noupdate flag on security XML files :
- ir.rule objects are noupdate="1"
- all other objects are noupdate="0"

bzr revid: alexis@via.ecp.fr-20120713170838-pjsysliyt6twazrc
2012-07-13 19:08:38 +02:00
Thibault Delavallée 4fad550d69 [MERGE] Merged with main addons.
bzr revid: tde@openerp.com-20120709081834-18pf4bol39s50uno
2012-07-09 10:18:34 +02:00
Fabien Pinckaers 2ed6acfea1 [MERGE] fix in access rights
bzr revid: fp@tinyerp.com-20120706150817-s01gbb4gga6dxybm
2012-07-06 17:08:17 +02:00
Thibault Delavallée 289dad87d4 [MERGE] Merged with addons/trunk.
bzr revid: tde@openerp.com-20120703122020-79rl9b03mygz5s0h
2012-07-03 14:20:20 +02:00
Dharti Ratani (OpenERP) 35f394ac16 [IMP]fixing sale application related access errors
bzr revid: dhr@tinyerp.com-20120702084420-4f5ouv9rrf0m7w01
2012-07-02 14:14:20 +05:30
Dharti Ratani (OpenERP) a1b98b37a9 [IMP]merge with latest trunk
bzr revid: dhr@tinyerp.com-20120702050506-5vfw6o0ahrbbof5g
2012-07-02 10:35:06 +05:30