1 <%# Copyright (C) The Arvados Authors. All rights reserved.
3 SPDX-License-Identifier: AGPL-3.0 %>
9 This page enables you to <a href="https://doc.arvados.org/master/admin/user-management.html">manage users</a>.
13 This button sets up a user. After setup, they will be able use
14 Arvados. This dialog box also allows you to optionally set up a
15 shell account for this user. The login name is automatically
16 generated from the user's e-mail address.
19 <%= link_to "Setup account #{'for ' if @object.full_name.present?} #{@object.full_name}", setup_popup_user_url(id: @object.uuid), {class: 'btn btn-primary', :remote => true, 'data-toggle' => "modal", 'data-target' => '#user-setup-modal-window'} %>
21 <p style="margin-top: 3em">
22 As an admin, you can deactivate and reset this user. This will
23 remove all repository/VM permissions for the user. If you
24 "setup" the user again, the user will have to sign the user
25 agreement again. You may also want to <a href="https://doc.arvados.org/master/admin/reassign-ownership.html">reassign data ownership</a>.
28 <%= button_to "Deactivate #{@object.full_name}", unsetup_user_url(id: @object.uuid), class: 'btn btn-primary', data: {confirm: "Are you sure you want to deactivate #{@object.full_name}?"} %>
30 <p style="margin-top: 3em">
31 As an admin, you can log in as this user. When you’ve
32 finished, you will need to log out and log in again with your
36 <%= button_to "Log in as #{@object.full_name}", sudo_user_url(id: @object.uuid), class: 'btn btn-primary' %>
38 <div class="col-md-6">
39 <div class="panel panel-default">
40 <div class="panel-heading">
43 <div class="pull-right">
44 <%= link_to raw('<i class="fa fa-plus"></i> Add new group'), "#",
45 {class: 'btn btn-xs btn-primary', 'data-toggle' => "modal",
46 'data-target' => '#add-group-modal'} %>
49 <div class="panel-body">
50 <div class="alert alert-info">
51 <b>Tip:</b> in most cases, you want <i>both permissions at once</i> for a given group.
53 The user→group permission is can_manage.
55 The group→user permission is can_read.
58 <% permitted_group_perms = {}
60 ['tail_uuid', '=', @object.uuid],
61 ['head_uuid', 'is_a', 'arvados#group'],
62 ['link_class', '=', 'permission'],
64 permitted_group_perms[perm.head_uuid] = perm.uuid
66 <% member_group_perms = {}
67 Link.permissions_for(@object).each do |perm|
68 member_group_perms[perm.tail_uuid] = perm.uuid
70 <% Group.order(['name']).where(group_class: 'role').each do |group| %>
72 <label class="checkbox-inline" data-toggle-permission="true" data-permission-tail="<%= @object.uuid %>" data-permission-name="can_manage">
76 permitted_group_perms[group.uuid],
77 disabled: (group.owner_uuid == @object.uuid),
79 permission_head: group.uuid,
80 permission_uuid: permitted_group_perms[group.uuid] || 'x'}) %>
81 <small>user→group</small>
83 <label class="checkbox-inline" data-toggle-permission="true" data-permission-head="<%= @object.uuid %>" data-permission-name="can_read">
87 member_group_perms[group.uuid],
88 disabled: (group.owner_uuid == @object.uuid),
90 permission_tail: group.uuid,
91 permission_uuid: member_group_perms[group.uuid] || 'x'}) %>
92 <small>group→user</small>
94 <label class="checkbox-inline">
95 <%= group.name || '(unnamed)' %> <span class="deemphasize">(owned by <%= User.find?(group.owner_uuid).andand.full_name %>)</span>
98 <% end.empty? and begin %>
105 <div class="panel-footer">
106 These groups (roles) can also be managed from the command line. For example:
108 <li><code>arv group create \<br/>--group '{"group_class":"role","name":"New group"}'</code></li>
109 <li><code>arv group list \<br/>--filters '[["group_class","=","role"]]' \<br/>--select '["uuid","name"]'</code></li>
110 <li><code>arv edit <i>uuid</i></code></li>
117 <div id="user-setup-modal-window" class="modal fade" role="dialog" aria-labelledby="myModalLabel" aria-hidden="true"></div>
118 <%= render partial: "add_group_modal" %>