diff options
| author | michael pereira | 2011-04-11 01:33:18 +0200 |
|---|---|---|
| committer | michael pereira | 2011-04-11 01:33:18 +0200 |
| commit | 0329c68bf7d33e8acdcdcd3e06f9d676cd776025 (patch) | |
| tree | 13e6c4ecae43a6ad091c501053d6760959f77134 /application/modules/user/controllers/ConfigController.php | |
| parent | Merge branch 'master' of openslx.org:lsfks/master-teamprojekt/pbs2 (diff) | |
| download | pbs2-0329c68bf7d33e8acdcdcd3e06f9d676cd776025.tar.gz pbs2-0329c68bf7d33e8acdcdcd3e06f9d676cd776025.tar.xz pbs2-0329c68bf7d33e8acdcdcd3e06f9d676cd776025.zip | |
Bootmenu User/Admin View
Diffstat (limited to 'application/modules/user/controllers/ConfigController.php')
| -rw-r--r-- | application/modules/user/controllers/ConfigController.php | 7 |
1 files changed, 2 insertions, 5 deletions
diff --git a/application/modules/user/controllers/ConfigController.php b/application/modules/user/controllers/ConfigController.php index df32385..6f5497a 100644 --- a/application/modules/user/controllers/ConfigController.php +++ b/application/modules/user/controllers/ConfigController.php @@ -26,10 +26,7 @@ class user_ConfigController extends Zend_Controller_Action $this->db = Zend_Db_Table::getDefaultAdapter(); - $this->type = $this->_request->getParam('type'); - - } else { $this->_helper->redirector('login', 'auth'); } @@ -155,10 +152,10 @@ class user_ConfigController extends Zend_Controller_Action $this->configMapper->find($configID, $config); if($config->getMembershipID() != null){ - if($this->membership->getID() != $config->getMembershipID()) + if($this->membership->getID() != $config->getMembershipID() || !Pbs_Acl::checkRight('ceo')) $this->_redirect('/user/config/index/type/'.$this->type.'/page/'.$this->page.'/modifyresult/forbidden'); }else{ - if($this->membership->getGroupID() != $config->getGroupID()) + if($this->membership->getGroupID() != $config->getGroupID() || (!Pbs_Acl::checkRight('ce') && !Pbs_Acl::checkRight('cem'))) $this->_redirect('/user/config/index/type/'.$this->type.'/page/'.$this->page.'/modifyresult/forbidden'); } |
