X-Git-Url: https://git.harvie.cz/?a=blobdiff_plain;f=wwwroot%2Fbackend%2Fmysql%2Fpermissions.inc;fp=wwwroot%2Fbackend%2Fmysql%2Fpermissions.inc;h=ace0e60a911f4d36b279cdf4d06afbda466f7b5b;hb=57dd552c75ca1484ab8f1a8ce349a66e632427cd;hp=6ef959610a41be99105e7433cf45730f8461abf2;hpb=ec19a17db8589bb3df26bcbc56347b3f71bb44f3;p=mirrors%2FKyberia-bloodline.git diff --git a/wwwroot/backend/mysql/permissions.inc b/wwwroot/backend/mysql/permissions.inc index 6ef9596..ace0e60 100644 --- a/wwwroot/backend/mysql/permissions.inc +++ b/wwwroot/backend/mysql/permissions.inc @@ -2,6 +2,36 @@ class permissions { +// XXX not checked + +function isHierarch($node) { + + global $db; + if (IsSet($_SESSION['user_id'])) { + $user_id=$_SESSION['user_id']; + } else { + $user_id=0; + } + if (!$user_id) return false; + + $node_vector=chunk_split($node['node_vector'],VECTOR_CHARS,';'); + $hierarchy=explode(';',$node_vector); + foreach ($hierarchy as $hierarch) { + $hierarch=ltrim($hierarch,0); + $q="select nodes.node_creator,node_access.node_permission from nodes left join node_access on nodes.node_id=node_access.node_id and node_access.user_id='".$user_id."' where nodes.node_id='$hierarch'"; + $result=$db->query($q); + $result->next(); + if ($result->getString('node_creator')==$user_id) + return true; + if ($result->getString('node_permission')=='master') + return true; + if ($result->getString('node_creator')=='operator') + return true; + } + return false; + +} + //trillion lights to Hierarchy! //$node input parameter can be a numeric node_id of a node-to-be-checked or a hash containing node_id,node_vector public static function checkPerms($node) {