1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47
<?php
/*-----8<--------------------------------------------------------------------
*
* BEdita - a semantic content management framework
*
* Copyright 2009-2015 ChannelWeb Srl, Chialab Srl
*
* This file is part of BEdita: you can redistribute it and/or modify
* it under the terms of the GNU Lesser General Public License as published
* by the Free Software Foundation, either version 3 of the License, or
* (at your option) any later version.
* BEdita is distributed WITHOUT ANY WARRANTY; without even the implied
* warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.
* See the GNU Lesser General Public License for more details.
* You should have received a copy of the GNU Lesser General Public License
* version 3 along with BEdita (see LICENSE.LGPL).
* If not, see <http://gnu.org/licenses/lgpl-3.0.html>.
*
*------------------------------------------------------------------->8-----
*/
/**
* Permission helper
*/
class PermsHelper extends AppHelper {
/**
* Check if user has permission on an action reading $config['actionPermission']
*
* @param array $authUser,
* user data with groups (like $BEAuthuser)
* @param string $action,
* action to check in the form 'ControllerName.actionName'
* @return boolean, true if user has access permissions, false otherwise
*/
public function userActionAccess($authUser, $action) {
$actionPerms = Configure::read('actionPermissions');
$c = array_intersect($authUser['groups'], $actionPerms[$action]);
if (!empty($actionPerms[$action]) && !empty($c)) {
return true;
} else {
return false;
}
}
}