@@ 83-87 (lines=5) @@ | ||
80 | { |
|
81 | $user = App::$User->identity(); |
|
82 | // user is not authed ? |
|
83 | if ($user === null || !App::$User->isAuth()) { |
|
84 | $redirectUrl = App::$Alias->scriptUrl . '/user/login'; |
|
85 | App::$Response->redirect($redirectUrl, true); |
|
86 | exit(); |
|
87 | } |
|
88 | ||
89 | $permission = env_name . '/' . App::$Request->getController() . '/' . App::$Request->getAction(); |
|
90 | ||
@@ 92-98 (lines=7) @@ | ||
89 | $permission = env_name . '/' . App::$Request->getController() . '/' . App::$Request->getAction(); |
|
90 | ||
91 | // doesn't have permission? get the f*ck out |
|
92 | if (!$user->getRole()->can($permission)) { |
|
93 | App::$Session->invalidate(); |
|
94 | ||
95 | $redirectUrl = App::$Alias->scriptUrl . '/user/login'; |
|
96 | App::$Response->redirect($redirectUrl, true); |
|
97 | exit(); |
|
98 | } |
|
99 | } |
|
100 | ||
101 | /** |