Commit cf6dcbac authored by shajiaiming's avatar shajiaiming

fix

parent 54eabb63
...@@ -3,6 +3,7 @@ ...@@ -3,6 +3,7 @@
namespace wallet\controllers; namespace wallet\controllers;
use common\models\pwallet\Notice; use common\models\pwallet\Notice;
use common\models\User;
use Yii; use Yii;
use yii\data\Pagination; use yii\data\Pagination;
use wallet\base\BaseController; use wallet\base\BaseController;
...@@ -18,13 +19,14 @@ class NoticeController extends BaseController ...@@ -18,13 +19,14 @@ class NoticeController extends BaseController
$page = Yii::$app->request->get('page', 1); $page = Yii::$app->request->get('page', 1);
$size = Yii::$app->request->get('size', 10); $size = Yii::$app->request->get('size', 10);
$group = Yii::$app->request->getGroup(); $group = Yii::$app->request->getGroup();
if ('administrator' == $group) {
$platform_id = Yii::$app->request->get('platform_id', Yii::$app->request->getPlatformId()); if (Yii::$app->request->isPost) {
if (User::AUTH_SUPER == $group) {
$platform_id = Yii::$app->request->post('platform_id', Yii::$app->request->getPlatformId());
} else { } else {
$platform_id = Yii::$app->request->getPlatformId(); $platform_id = Yii::$app->request->getPlatformId();
} }
if (Yii::$app->request->isPost) {
$model = new Notice(); $model = new Notice();
$model->setScenario(Notice::SCENARIOS_CREATE); $model->setScenario(Notice::SCENARIOS_CREATE);
$params = Yii::$app->request->post(); $params = Yii::$app->request->post();
...@@ -74,11 +76,7 @@ class NoticeController extends BaseController ...@@ -74,11 +76,7 @@ class NoticeController extends BaseController
$code = 0; $code = 0;
$data = null; $data = null;
$group = Yii::$app->request->getGroup(); $group = Yii::$app->request->getGroup();
if ('administrator' == $group) {
$platform_id = Yii::$app->request->get('platform_id', Yii::$app->request->getPlatformId());
} else {
$platform_id = Yii::$app->request->getPlatformId(); $platform_id = Yii::$app->request->getPlatformId();
}
if (Yii::$app->request->isGet) { if (Yii::$app->request->isGet) {
$id = Yii::$app->request->get('id'); $id = Yii::$app->request->get('id');
...@@ -100,7 +98,7 @@ class NoticeController extends BaseController ...@@ -100,7 +98,7 @@ class NoticeController extends BaseController
$code = -1; $code = -1;
goto doEnd; goto doEnd;
} }
if ('administrator' != $group && $platform_id != $model->platform_id){ if (User::AUTH_SUPER != $group && $platform_id != $model->platform_id){
$msg = '无权操作'; $msg = '无权操作';
$code = -1; $code = -1;
goto doEnd; goto doEnd;
...@@ -134,7 +132,7 @@ class NoticeController extends BaseController ...@@ -134,7 +132,7 @@ class NoticeController extends BaseController
} }
if (Yii::$app->request->isDelete) { if (Yii::$app->request->isDelete) {
$model = Notice::findOne($id); $model = Notice::findOne($id);
if ('administrator' != $group && $platform_id != $model->platform_id){ if (User::AUTH_SUPER != $group && $platform_id != $model->platform_id){
$msg = '无权删除'; $msg = '无权删除';
$code = -1; $code = -1;
goto doEnd; goto doEnd;
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment