Merge pull request #786 from conory/pr/permission

module.xml <action>에 permission 속성 추가
This commit is contained in:
CONORY 2017-04-10 15:43:08 +09:00 committed by GitHub
commit 44d6c8f63f
33 changed files with 341 additions and 505 deletions

View file

@ -556,13 +556,14 @@ class ModuleHandler extends Handler
} }
$forward = NULL; $forward = NULL;
// 1. Look for the module with action name // 1. Look for the module with action name
if(preg_match('/^([a-z]+)([A-Z])([a-z0-9\_]+)(.*)$/', $this->act, $matches)) if(preg_match('/^([a-z]+)([A-Z])([a-z0-9\_]+)(.*)$/', $this->act, $matches))
{ {
$module = strtolower($matches[2] . $matches[3]); $module = strtolower($matches[2] . $matches[3]);
$xml_info = $oModuleModel->getModuleActionXml($module); $xml_info = $oModuleModel->getModuleActionXml($module);
if($xml_info->action->{$this->act} && ((stripos($this->act, 'admin') !== FALSE) || $xml_info->action->{$this->act}->standalone != 'false')) if($xml_info->action->{$this->act} && ($this->module == 'admin' || $xml_info->action->{$this->act}->standalone != 'false'))
{ {
$forward = new stdClass(); $forward = new stdClass();
$forward->module = $module; $forward->module = $module;
@ -597,6 +598,21 @@ class ModuleHandler extends Handler
$xml_info = $oModuleModel->getModuleActionXml($forward->module); $xml_info = $oModuleModel->getModuleActionXml($forward->module);
// Protect admin action
if(($this->module == 'admin' || $kind == 'admin') && !$oModuleModel->getGrant($forward, $logged_info)->root)
{
if($this->module == 'admin' || empty($xml_info->permission->{$this->act}))
{
self::_setInputErrorToContext();
$this->error = 'admin.msg_is_not_administrator';
$oMessageObject = self::getModuleInstance('message', $display_mode);
$oMessageObject->setError(-1);
$oMessageObject->setMessage($this->error);
$oMessageObject->dispMessage();
return $oMessageObject;
}
}
// SECISSUE also check foward act method // SECISSUE also check foward act method
// check REQUEST_METHOD in controller // check REQUEST_METHOD in controller
if($type == 'controller') if($type == 'controller')
@ -670,21 +686,6 @@ class ModuleHandler extends Handler
return $oMessageObject; return $oMessageObject;
} }
// Protect admin action
if(($this->module == 'admin' || $kind == 'admin') && !$oModuleModel->getGrant($forward, $logged_info)->root)
{
if($this->module == 'admin' || strpos($xml_info->permission->{$this->act}, 'manager') === false)
{
self::_setInputErrorToContext();
$this->error = 'admin.msg_is_not_administrator';
$oMessageObject = self::getModuleInstance('message', $display_mode);
$oMessageObject->setError(-1);
$oMessageObject->setMessage($this->error);
$oMessageObject->dispMessage();
return $oMessageObject;
}
}
// Admin page layout // Admin page layout
if($this->module == 'admin' && $type == 'view' && $this->act != 'dispLayoutAdminLayoutModify') if($this->module == 'admin' && $type == 'view' && $this->act != 'dispLayoutAdminLayoutModify')
{ {

View file

@ -221,8 +221,9 @@ class ModuleObject extends Object
} }
// Check permission // Check permission
if($this->checkPermission($grant, false) !== true) if($this->checkPermission($grant) !== true)
{ {
$this->stop('msg_not_permitted_act');
return false; return false;
} }
} }
@ -238,6 +239,7 @@ class ModuleObject extends Object
// Check permission // Check permission
if($this->checkPermission($grant) !== true) if($this->checkPermission($grant) !== true)
{ {
$this->stop('msg_not_permitted_act');
return false; return false;
} }
} }
@ -252,11 +254,10 @@ class ModuleObject extends Object
/** /**
* Check permission * Check permission
* @param object $grant privileges(granted) information of user * @param object $grant privileges(granted) information of user
* @param object $find if user doesn't have privilege(granted), find more privilege of the user
* @param object $member_info member information * @param object $member_info member information
* @return boolean success : true, fail : false * @return boolean success : true, fail : false
* */ * */
function checkPermission($grant = null, $find = true, $member_info = null) function checkPermission($grant = null, $member_info = null)
{ {
// Get logged-in member information // Get logged-in member information
if(!$member_info) if(!$member_info)
@ -279,57 +280,76 @@ class ModuleObject extends Object
// Get permission types(guest, member, manager, root) of the currently requested action // Get permission types(guest, member, manager, root) of the currently requested action
$permission = $this->xml_info->permission->{$this->act}; $permission = $this->xml_info->permission->{$this->act};
// If admin action, default permission // If admin action, set default permission
if(!$permission && stripos($this->act, 'admin') !== false) if(empty($permission) && stripos($this->act, 'admin') !== false)
{ {
$permission = 'root'; $permission = 'root';
} }
// If 'act' have permission, but user does not have privilege(granted), error // If permission is not or 'guest', Pass
if($permission) if(empty($permission) || $permission == 'guest')
{ {
// If permission is 'member', check logged-in return true;
if($permission == 'member' && !Context::get('is_logged')) }
// If permission is 'member', check logged-in
else if($permission == 'member')
{
if(Context::get('is_logged'))
{ {
$this->stop('msg_not_permitted_act'); return true;
return false;
}
// If permission is 'manager', check 'is user have manager privilege(granted)'
else if(strpos($permission, 'manager') !== false && !$grant->manager)
{
// If permission is '*-managers', search modules to find manager privilege of the member
if(Context::get('is_logged') && $find && preg_match('/^([a-z0-9\_]+)-managers$/', $permission, $type) && $type[1])
{
// Manager privilege of the member is found by search all modules, Pass
if($type[1] == 'all' && getModel('module')->findManagerPrivilege($member_info) !== false)
{
return true;
}
// Manager privilege of the member is found by search same module as this module, Pass
else if($type[1] == 'same' && getModel('module')->findManagerPrivilege($member_info, $this->module) !== false)
{
return true;
}
// Manager privilege of the member is found by search same module as the module, Pass
else if(getModel('module')->findManagerPrivilege($member_info, $type[1]) !== false)
{
return true;
}
}
$this->stop('admin.msg_is_not_administrator');
return false;
}
// If permission is 'root', Error!
// Because an administrator who have root privilege(granted) was passed already
else if($permission == 'root')
{
$this->stop('admin.msg_is_not_administrator');
return false;
} }
} }
// If permission is 'manager', check 'is user have manager privilege(granted)'
else if(preg_match('/^(manager|([a-z0-9\_]+)-managers)$/', $permission, $type))
{
if($grant->manager)
{
return true;
}
return true; // If permission is '*-managers', search modules to find manager privilege of the member
if(Context::get('is_logged') && isset($type[2]))
{
// Manager privilege of the member is found by search all modules, Pass
if($type[2] == 'all' && getModel('module')->findManagerPrivilege($member_info) !== false)
{
return true;
}
// Manager privilege of the member is found by search same module as this module, Pass
else if($type[2] == 'same' && getModel('module')->findManagerPrivilege($member_info, $this->module) !== false)
{
return true;
}
// Manager privilege of the member is found by search same module as the module, Pass
else if(getModel('module')->findManagerPrivilege($member_info, $type[2]) !== false)
{
return true;
}
}
}
// If permission is 'root', false
// Because an administrator who have root privilege(granted) was passed already
else if($permission == 'root')
{
return false;
}
// If grant name, check the privilege(granted) of the user
else if($grant_names = explode(',', $permission))
{
$privilege_list = array_keys((array) $this->xml_info->grant);
foreach($grant_names as $name)
{
if(!in_array($name, $privilege_list) || !$grant->$name)
{
return false;
}
}
return true;
}
return false;
} }
/** /**

View file

@ -1,7 +1,6 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions />
<actions> <actions>
<action name="dispAddonAdminIndex" type="view" admin_index="true" menu_name="installedAddon" menu_index="true" /> <action name="dispAddonAdminIndex" type="view" admin_index="true" menu_name="installedAddon" menu_index="true" />
<action name="dispAddonAdminInfo" type="view" /> <action name="dispAddonAdminInfo" type="view" />

View file

@ -1,11 +1,8 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions>
<permission action="getSiteAllList" target="root" />
</permissions>
<actions> <actions>
<action name="getSiteAllList" type="model" /> <action name="getSiteAllList" type="model" permission="root" />
<action name="dispAdminIndex" type="view" index="true" /> <action name="dispAdminIndex" type="view" index="true" />
<action name="dispAdminConfigGeneral" type="view" menu_name="adminConfigurationGeneral" menu_index="true" /> <action name="dispAdminConfigGeneral" type="view" menu_name="adminConfigurationGeneral" menu_index="true" />

View file

@ -1,7 +1,6 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions />
<actions> <actions>
</actions> </actions>
</module> </module>

View file

@ -1,7 +1,6 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions />
<actions> <actions>
<action name="dispAdvanced_mailerAdminConfig" type="view" admin_index="true" menu_name="advanced_mailer" /> <action name="dispAdvanced_mailerAdminConfig" type="view" admin_index="true" menu_name="advanced_mailer" />
<action name="dispAdvanced_mailerAdminExceptions" type="view" /> <action name="dispAdvanced_mailerAdminExceptions" type="view" />

View file

@ -1,7 +1,6 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions />
<actions> <actions>
<action name="dispAutoinstallAdminIndex" type="view" admin_index="true" menu_name="easyInstall" menu_index="true" /> <action name="dispAutoinstallAdminIndex" type="view" admin_index="true" menu_name="easyInstall" menu_index="true" />
<action name="dispAutoinstallAdminInstall" type="view" menu_name="easyInstall" /> <action name="dispAutoinstallAdminInstall" type="view" menu_name="easyInstall" />

View file

@ -21,12 +21,6 @@
<title xml:lang="zh-TW">檢視</title> <title xml:lang="zh-TW">檢視</title>
<title xml:lang="tr">görüş</title> <title xml:lang="tr">görüş</title>
</grant> </grant>
<grant name="update_view" default="guest">
<title xml:lang="ko">수정내역 조회</title>
</grant>
<grant name="vote_log_view" default="guest">
<title xml:lang="ko">추천인 조회</title>
</grant>
<grant name="write_document" default="guest"> <grant name="write_document" default="guest">
<title xml:lang="ko">글 작성</title> <title xml:lang="ko">글 작성</title>
<title xml:lang="zh-CN">发表新主题</title> <title xml:lang="zh-CN">发表新主题</title>
@ -47,73 +41,69 @@
<title xml:lang="zh-TW">發表評論</title> <title xml:lang="zh-TW">發表評論</title>
<title xml:lang="es">yorum yaz</title> <title xml:lang="es">yorum yaz</title>
</grant> </grant>
<grant name="vote_log_view" default="guest">
<title xml:lang="ko">추천인 보기</title>
<title xml:lang="en">view recommender</title>
</grant>
<grant name="update_view" default="guest">
<title xml:lang="ko">수정 내역 보기</title>
<title xml:lang="en">view update history</title>
</grant>
<grant name="consultation_read" default="manager"> <grant name="consultation_read" default="manager">
<title xml:lang="ko">상담글 조회</title> <title xml:lang="ko">상담글 열람</title>
<title xml:lang="en">Consultation Document Read</title> <title xml:lang="en">view consultation document</title>
<title xml:lang="jp">相談文照会</title> <title xml:lang="jp">相談文照会</title>
</grant> </grant>
</grants> </grants>
<permissions>
<permission action="dispBoardAdminBoardInfo" target="manager" />
<permission action="dispBoardAdminCategoryInfo" target="manager" />
<permission action="dispBoardAdminExtraVars" target="manager" />
<permission action="dispBoardAdminGrantInfo" target="manager" />
<permission action="dispBoardAdminBoardAdditionSetup" target="manager" />
<permission action="dispBoardAdminSkinInfo" target="manager" />
<permission action="dispBoardAdminMobileSkinInfo" target="manager" />
<permission action="procBoardAdminInsertBoard" target="manager" check_var="module_srl" />
<permission action="procBoardAdminSaveCategorySettings" target="manager" check_var="module_srl" />
</permissions>
<actions> <actions>
<action name="dispBoardContent" type="view" standalone="false" index="true" /> <action name="dispBoardContent" type="view" permission="list" standalone="false" index="true" />
<action name="dispBoardWrite" type="view" standalone="false" /> <action name="dispBoardWrite" type="view" permission="write_document" standalone="false" />
<action name="dispBoardDelete" type="view" standalone="false" /> <action name="dispBoardDelete" type="view" permission="write_document" standalone="false" />
<action name="dispBoardWriteComment" type="view" standalone="false" /> <action name="dispBoardWriteComment" type="view" permission="write_comment" standalone="false" />
<action name="dispBoardReplyComment" type="view" standalone="false" /> <action name="dispBoardReplyComment" type="view" permission="write_comment" standalone="false" />
<action name="dispBoardModifyComment" type="view" standalone="false" /> <action name="dispBoardModifyComment" type="view" permission="write_comment" standalone="false" />
<action name="dispBoardDeleteComment" type="view" standalone="false" /> <action name="dispBoardDeleteComment" type="view" permission="write_comment" standalone="false" />
<action name="dispBoardDeleteTrackback" type="view" standalone="false" /> <action name="dispBoardDeleteTrackback" type="view" permission="list,view" standalone="false" />
<action name="dispBoardContentList" type="view" standalone="false" /> <action name="dispBoardContentList" type="view" permission="list" standalone="false" />
<action name="dispBoardContentView" type="view" standalone="false" /> <action name="dispBoardContentView" type="view" permission="view" standalone="false" />
<action name="dispBoardUpdateLog" type="view" standalone="false" /> <action name="dispBoardUpdateLog" type="view" permission="update_view" standalone="false" />
<action name="dispBoardUpdateLogView" type="view" standalone="false" /> <action name="dispBoardUpdateLogView" type="view" permission="update_view" standalone="false" />
<action name="dispBoardVoteLog" type="view" standalone="false" /> <action name="dispBoardVoteLog" type="view" permission="vote_log_view" standalone="false" />
<action name="dispBoardNoticeList" type="view" standalone="false" /> <action name="dispBoardNoticeList" type="view" permission="list" standalone="false" />
<action name="dispBoardCategoryList" type="view" standalone="false" /> <action name="dispBoardCategoryList" type="view" permission="list" standalone="false" />
<action name="dispBoardContentCommentList" type="view" standalone="false" /> <action name="dispBoardContentCommentList" type="view" permission="view" standalone="false" />
<action name="dispBoardContentFileList" type="view" standalone="false" /> <action name="dispBoardContentFileList" type="view" permission="view" standalone="false" />
<action name="dispBoardTagList" type="view" standalone="false" /> <action name="dispBoardTagList" type="view" permission="list" standalone="false" />
<action name="dispBoardCategory" type="mobile" standalone="false" /> <action name="dispBoardCategory" type="mobile" permission="list" standalone="false" />
<action name="getBoardCommentPage" type="mobile" standalone="false" /> <action name="getBoardCommentPage" type="mobile" permission="view" standalone="false" />
<action name="procBoardInsertDocument" type="controller" ruleset="insertDocument" standalone="false" /> <action name="procBoardInsertDocument" type="controller" permission="write_document" standalone="false" ruleset="insertDocument" />
<action name="procBoardDeleteDocument" type="controller" standalone="false" /> <action name="procBoardDeleteDocument" type="controller" permission="write_document" standalone="false" />
<action name="procBoardRevertDocument" type="controller" standalone="false" /> <action name="procBoardRevertDocument" type="controller" permission="update_view" standalone="false" />
<action name="procBoardInsertComment" type="controller" standalone="false" /> <action name="procBoardInsertComment" type="controller" permission="write_comment" standalone="false" />
<action name="procBoardDeleteComment" type="controller" standalone="false" /> <action name="procBoardDeleteComment" type="controller" permission="write_comment" standalone="false" />
<action name="procBoardDeleteTrackback" type="controller" standalone="false" /> <action name="procBoardDeleteTrackback" type="controller" permission="list,view" standalone="false" />
<action name="procBoardVerificationPassword" type="controller" standalone="false" /> <action name="procBoardVerificationPassword" type="controller" permission="view" standalone="false" />
<action name="procBoardVoteDocument" type="controller" standalone="false" /> <action name="procBoardVoteDocument" type="controller" permission="view" standalone="false" />
<action name="dispBoardAdminContent" type="view" admin_index="true" menu_name="board" menu_index="true" /> <action name="dispBoardAdminContent" type="view" admin_index="true" menu_name="board" menu_index="true" />
<action name="dispBoardAdminInsertBoard" type="view" setup_index="true" menu_name="board" /> <action name="dispBoardAdminInsertBoard" type="view" setup_index="true" menu_name="board" />
<action name="dispBoardAdminDeleteBoard" type="view" menu_name="board" /> <action name="dispBoardAdminDeleteBoard" type="view" menu_name="board" />
<action name="dispBoardAdminBoardInfo" type="view" menu_name="board" /> <action name="dispBoardAdminBoardInfo" type="view" permission="manager" menu_name="board" />
<action name="dispBoardAdminCategoryInfo" type="view" menu_name="board" /> <action name="dispBoardAdminCategoryInfo" type="view" permission="manager" menu_name="board" />
<action name="dispBoardAdminExtraVars" type="view" menu_name="board" /> <action name="dispBoardAdminExtraVars" type="view" permission="manager" menu_name="board" />
<action name="dispBoardAdminGrantInfo" type="view" menu_name="board" /> <action name="dispBoardAdminGrantInfo" type="view" permission="manager" menu_name="board" />
<action name="dispBoardAdminBoardAdditionSetup" type="view" menu_name="board" /> <action name="dispBoardAdminBoardAdditionSetup" type="view" permission="manager" menu_name="board" />
<action name="dispBoardAdminSkinInfo" type="view" menu_name="board" /> <action name="dispBoardAdminSkinInfo" type="view" permission="manager" menu_name="board" />
<action name="dispBoardAdminMobileSkinInfo" type="view" menu_name="board" /> <action name="dispBoardAdminMobileSkinInfo" type="view" permission="manager" menu_name="board" />
<action name="getBoardAdminSimpleSetup" type="model" simple_setup_index="true" /> <action name="getBoardAdminSimpleSetup" type="model" simple_setup_index="true" />
<action name="procBoardAdminInsertBoard" type="controller" ruleset="insertBoard" /> <action name="procBoardAdminInsertBoard" type="controller" permission="manager" check_var="module_srl" ruleset="insertBoard" />
<action name="procBoardAdminDeleteBoard" type="controller" /> <action name="procBoardAdminDeleteBoard" type="controller" />
<action name="procBoardAdminUpdateBoardFroBasic" type="controller" ruleset="insertBoardForBasic" /> <action name="procBoardAdminUpdateBoardFroBasic" type="controller" ruleset="insertBoardForBasic" />
<action name="procBoardAdminSaveCategorySettings" type="controller" ruleset="saveCategorySettings" /> <action name="procBoardAdminSaveCategorySettings" type="controller" permission="manager" check_var="module_srl" ruleset="saveCategorySettings" />
</actions> </actions>
<menus> <menus>
<menu name="board" type="all"> <menu name="board" type="all">

View file

@ -1,35 +1,19 @@
<?xml version="1.0" encoding="UTF-8"?> <?xml version="1.0" encoding="UTF-8"?>
<module> <module>
<grants /> <grants />
<permissions>
<permission action="dispCommentDeclare" target="member" />
<permission action="getCommentVotedMemberList" target="root" />
<permission action="procCommentVoteUp" target="member" />
<permission action="procCommentVoteUpCancel" target="member" />
<permission action="procCommentVoteDown" target="member" />
<permission action="procCommentVoteDownCancel" target="member" />
<permission action="procCommentDeclare" target="member" />
<permission action="procCommentGetList" target="manager" check_type="comment" check_var="comment_srls" />
<permission action="procCommentInsertModuleConfig" target="manager" check_var="target_module_srl" />
<permission action="procCommentAdminAddCart" target="manager" check_type="comment" check_var="comment_srl" />
<permission action="procCommentAdminDeleteChecked" target="manager" check_type="comment" check_var="cart" />
<permission action="procCommentAdminMoveToTrash" target="manager" check_type="comment" check_var="comment_srl" />
</permissions>
<actions> <actions>
<action name="dispCommentDeclare" type="view" /> <action name="dispCommentDeclare" type="view" permission="manager" />
<action name="getCommentMenu" type="model" /> <action name="getCommentMenu" type="model" />
<action name="getCommentVotedMemberList" type="model" /> <action name="getCommentVotedMemberList" type="model" permission="root" />
<action name="procCommentVoteUp" type="controller" /> <action name="procCommentVoteUp" type="controller" permission="member" />
<action name="procCommentVoteUpCancel" type="controller" /> <action name="procCommentVoteUpCancel" type="controller" permission="member" />
<action name="procCommentVoteDown" type="controller" /> <action name="procCommentVoteDown" type="controller" permission="member" />
<action name="procCommentVoteDownCancel" type="controller" /> <action name="procCommentVoteDownCancel" type="controller" permission="member" />
<action name="procCommentDeclare" type="controller" /> <action name="procCommentDeclare" type="controller" permission="member" />
<action name="procCommentGetList" type="controller" /> <action name="procCommentGetList" type="controller" permission="manager" check_type="comment" check_var="comment_srls" />
<action name="procCommentInsertModuleConfig" type="controller" ruleset="insertCommentModuleConfig" /> <action name="procCommentInsertModuleConfig" type="controller" permission="manager" check_var="target_module_srl" ruleset="insertCommentModuleConfig" />
<action name="dispCommentAdminList" type="view" admin_index="true" menu_name="comment" menu_index="true" /> <action name="dispCommentAdminList" type="view" admin_index="true" menu_name="comment" menu_index="true" />
<action name="dispCommentAdminDeclared" type="view" menu_name="comment" /> <action name="dispCommentAdminDeclared" type="view" menu_name="comment" />
@ -38,9 +22,9 @@
<action name="procCommentAdminChangeStatus" type="controller"/> <action name="procCommentAdminChangeStatus" type="controller"/>
<action name="procCommentAdminChangePublishedStatusChecked" type="controller" /> <action name="procCommentAdminChangePublishedStatusChecked" type="controller" />
<action name="procCommentAdminCancelDeclare" type="controller" /> <action name="procCommentAdminCancelDeclare" type="controller" />
<action name="procCommentAdminAddCart" type="controller" /> <action name="procCommentAdminAddCart" type="controller" permission="manager" check_type="comment" check_var="comment_srl" />
<action name="procCommentAdminDeleteChecked" type="controller" ruleset="deleteChecked" /> <action name="procCommentAdminDeleteChecked" type="controller" permission="manager" check_type="comment" check_var="cart" ruleset="deleteChecked" />
<action name="procCommentAdminMoveToTrash" type="controller" /> <action name="procCommentAdminMoveToTrash" type="controller" permission="manager" check_type="comment" check_var="comment_srl" />
</actions> </actions>
<menus> <menus>
<menu name="comment"> <menu name="comment">

View file

@ -1,47 +1,26 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions>
<permission action="dispCommunicationMessages" target="member" />
<permission action="dispCommunicationSendMessage" target="member" />
<permission action="dispCommunicationNewMessage" target="member" />
<permission action="dispCommunicationFriend" target="member" />
<permission action="dispCommunicationAddFriend" target="member" />
<permission action="dispCommunicationAddFriendGroup" target="member" />
<permission action="dispCommunicationMessageBoxList" target="member" />
<permission action="procCommunicationUpdateAllowMessage" target="member" />
<permission action="procCommunicationSendMessage" target="member" />
<permission action="procCommunicationStoreMessage" target="member" />
<permission action="procCommunicationDeleteMessage" target="member" />
<permission action="procCommunicationDeleteMessages" target="member" />
<permission action="procCommunicationAddFriend" target="member" />
<permission action="procCommunicationAddFriendGroup" target="member" />
<permission action="procCommunicationMoveFriend" target="member" />
<permission action="procCommunicationDeleteFriend" target="member" />
<permission action="procCommunicationDeleteFriendGroup" target="member" />
<permission action="procCommunicationRenameFriendGroup" target="member" />
</permissions>
<actions> <actions>
<action name="dispCommunicationMessages" type="view" /> <action name="dispCommunicationMessages" type="view" permission="member" />
<action name="dispCommunicationSendMessage" type="view" /> <action name="dispCommunicationSendMessage" type="view" permission="member" />
<action name="dispCommunicationNewMessage" type="view" /> <action name="dispCommunicationNewMessage" type="view" permission="member" />
<action name="dispCommunicationFriend" type="view" /> <action name="dispCommunicationFriend" type="view" permission="member" />
<action name="dispCommunicationAddFriend" type="view" /> <action name="dispCommunicationAddFriend" type="view" permission="member" />
<action name="dispCommunicationAddFriendGroup" type="view" /> <action name="dispCommunicationAddFriendGroup" type="view" permission="member" />
<action name="dispCommunicationMessageBoxList" type="mobile" /> <action name="dispCommunicationMessageBoxList" type="mobile" permission="member" />
<action name="procCommunicationUpdateAllowMessage" type="controller" /> <action name="procCommunicationUpdateAllowMessage" type="controller" permission="member" />
<action name="procCommunicationSendMessage" type="controller" ruleset="sendMessage" /> <action name="procCommunicationSendMessage" type="controller" permission="member" ruleset="sendMessage" />
<action name="procCommunicationStoreMessage" type="controller" /> <action name="procCommunicationStoreMessage" type="controller" permission="member" />
<action name="procCommunicationDeleteMessage" type="controller" /> <action name="procCommunicationDeleteMessage" type="controller" permission="member" />
<action name="procCommunicationDeleteMessages" type="controller" /> <action name="procCommunicationDeleteMessages" type="controller" permission="member" />
<action name="procCommunicationAddFriend" type="controller" ruleset="addFriend" /> <action name="procCommunicationAddFriend" type="controller" permission="member" ruleset="addFriend" />
<action name="procCommunicationAddFriendGroup" type="controller" ruleset="addFriendGroup" /> <action name="procCommunicationAddFriendGroup" type="controller" permission="member" ruleset="addFriendGroup" />
<action name="procCommunicationMoveFriend" type="controller" ruleset="deleteCheckedFriend" /> <action name="procCommunicationMoveFriend" type="controller" permission="member" ruleset="deleteCheckedFriend" />
<action name="procCommunicationDeleteFriend" type="controller" ruleset="deleteCheckedFriend" /> <action name="procCommunicationDeleteFriend" type="controller" permission="member" ruleset="deleteCheckedFriend" />
<action name="procCommunicationDeleteFriendGroup" type="controller" /> <action name="procCommunicationDeleteFriendGroup" type="controller" permission="member" />
<action name="procCommunicationRenameFriendGroup" type="controller" /> <action name="procCommunicationRenameFriendGroup" type="controller" permission="member" />
<action name="dispCommunicationAdminConfig" type="view" admin_index="true" /> <action name="dispCommunicationAdminConfig" type="view" admin_index="true" />
<action name="getCommunicationAdminColorset" type="model" /> <action name="getCommunicationAdminColorset" type="model" />

View file

@ -1,13 +1,10 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions>
<permission action="getWeeklyUniqueVisitor" target="root" />
<permission action="getWeeklyPageView" target="root" />
</permissions>
<actions> <actions>
<action name="getWeeklyPageView" type="model" permission="root" />
<action name="getWeeklyUniqueVisitor" type="model" permission="root" />
<action name="dispCounterAdminIndex" type="view" admin_index="true" /> <action name="dispCounterAdminIndex" type="view" admin_index="true" />
<action name="getWeeklyUniqueVisitor" type="model" />
<action name="getWeeklyPageView" type="model" />
</actions> </actions>
</module> </module>

View file

@ -1,57 +1,32 @@
<?xml version="1.0" encoding="UTF-8"?> <?xml version="1.0" encoding="UTF-8"?>
<module> <module>
<grants /> <grants />
<permissions>
<permission action="dispTempSavedList" target="member" />
<permission action="dispDocumentDeclare" target="member" />
<permission action="dispDocumentManageDocument" target="all-managers" />
<permission action="getDocumentCategories" target="all-managers" />
<permission action="getDocumentCategoryTplInfo" target="manager" check_var="module_srl" />
<permission action="getDocumentVotedMemberList" target="root" />
<permission action="procDocumentTempSave" target="member" />
<permission action="procDocumentDeclare" target="member" />
<permission action="procDocumentGetList" target="manager" check_type="document" check_var="document_srls" />
<permission action="procDocumentAddCart" target="manager" check_type="document" check_var="srls" />
<permission action="procDocumentManageCheckedDocument" target="manager" check_type="document" check_var="cart" />
<permission action="procDocumentInsertModuleConfig" target="manager" check_var="target_module_srl" />
<permission action="procDocumentInsertCategory" target="manager" check_var="module_srl" />
<permission action="procDocumentDeleteCategory" target="manager" check_var="module_srl" />
<permission action="procDocumentMoveCategory" target="manager" check_var="module_srl" />
<permission action="procDocumentMakeXmlFile" target="manager" check_var="module_srl" />
<permission action="procDocumentAdminMoveToTrash" target="manager" check_type="document" check_var="document_srl" />
<permission action="procDocumentAdminInsertExtraVar" target="manager" check_var="module_srl" />
<permission action="procDocumentAdminDeleteExtraVar" target="manager" check_var="module_srl" />
<permission action="procDocumentAdminMoveExtraVar" target="manager" check_var="module_srl" />
</permissions>
<actions> <actions>
<action name="dispDocumentPrint" type="view" /> <action name="dispDocumentPrint" type="view" />
<action name="dispDocumentPreview" type="view" /> <action name="dispDocumentPreview" type="view" />
<action name="dispTempSavedList" type="view" /> <action name="dispTempSavedList" type="view" permission="member" />
<action name="dispDocumentDeclare" type="view" /> <action name="dispDocumentDeclare" type="view" permission="member" />
<action name="dispDocumentManageDocument" type="view" /> <action name="dispDocumentManageDocument" type="view" permission="all-managers" />
<action name="getDocumentMenu" type="model" /> <action name="getDocumentMenu" type="model" />
<action name="getDocumentCategories" type="model" /> <action name="getDocumentCategories" type="model" permission="all-managers" />
<action name="getDocumentCategoryTplInfo" type="model" /> <action name="getDocumentCategoryTplInfo" type="model" permission="manager" check_var="module_srl" />
<action name="getDocumentVotedMemberList" type="model" /> <action name="getDocumentVotedMemberList" type="model" permission="root" />
<action name="procDocumentVoteUp" type="controller" /> <action name="procDocumentVoteUp" type="controller" />
<action name="procDocumentVoteUpCancel" type="controller" />. <action name="procDocumentVoteUpCancel" type="controller" />
<action name="procDocumentVoteDown" type="controller" /> <action name="procDocumentVoteDown" type="controller" />
<action name="procDocumentVoteDownCancel" type="controller" /> <action name="procDocumentVoteDownCancel" type="controller" />
<action name="procDocumentTempSave" type="controller" /> <action name="procDocumentTempSave" type="controller" permission="member" />
<action name="procDocumentDeclare" type="controller" /> <action name="procDocumentDeclare" type="controller" permission="member" />
<action name="procDocumentGetList" type="controller" /> <action name="procDocumentGetList" type="controller" permission="manager" check_type="document" check_var="document_srls" />
<action name="procDocumentAddCart" type="controller" /> <action name="procDocumentAddCart" type="controller" permission="manager" check_type="document" check_var="srls" />
<action name="procDocumentManageCheckedDocument" type="controller" /> <action name="procDocumentManageCheckedDocument" type="controller" permission="manager" check_type="document" check_var="cart" />
<action name="procDocumentInsertModuleConfig" type="controller" /> <action name="procDocumentInsertModuleConfig" type="controller" permission="manager" check_var="target_module_srl" />
<action name="procDocumentInsertCategory" type="controller" ruleset="insertCategory" /> <action name="procDocumentInsertCategory" type="controller" permission="manager" check_var="module_srl" ruleset="insertCategory" />
<action name="procDocumentDeleteCategory" type="controller" /> <action name="procDocumentDeleteCategory" type="controller" permission="manager" check_var="module_srl" />
<action name="procDocumentMoveCategory" type="controller" /> <action name="procDocumentMoveCategory" type="controller" permission="manager" check_var="module_srl" />
<action name="procDocumentMakeXmlFile" type="controller" /> <action name="procDocumentMakeXmlFile" type="controller" permission="manager" check_var="module_srl" />
<action name="dispDocumentAdminList" type="view" admin_index="true" menu_name="document" menu_index="true" /> <action name="dispDocumentAdminList" type="view" admin_index="true" menu_name="document" menu_index="true" />
<action name="dispDocumentAdminConfig" type="view" menu_name="document" /> <action name="dispDocumentAdminConfig" type="view" menu_name="document" />
@ -66,11 +41,11 @@
<action name="procDocumentAdminCancelDeclare" type="controller" /> <action name="procDocumentAdminCancelDeclare" type="controller" />
<action name="procDocumentAdminInsertAlias" type="controller" ruleset="insertAlias" /> <action name="procDocumentAdminInsertAlias" type="controller" ruleset="insertAlias" />
<action name="procDocumentAdminDeleteAlias" type="controller" ruleset="deleteAlias" /> <action name="procDocumentAdminDeleteAlias" type="controller" ruleset="deleteAlias" />
<action name="procDocumentAdminMoveToTrash" type="controller" /> <action name="procDocumentAdminMoveToTrash" type="controller" permission="manager" check_type="document" check_var="document_srl" />
<action name="procDocumentAdminRestoreTrash" type="controller" /> <action name="procDocumentAdminRestoreTrash" type="controller" />
<action name="procDocumentAdminInsertExtraVar" type="controller" ruleset="insertExtraVar" /> <action name="procDocumentAdminInsertExtraVar" type="controller" permission="manager" check_var="module_srl" ruleset="insertExtraVar" />
<action name="procDocumentAdminDeleteExtraVar" type="controller" /> <action name="procDocumentAdminDeleteExtraVar" type="controller" permission="manager" check_var="module_srl" />
<action name="procDocumentAdminMoveExtraVar" type="controller" /> <action name="procDocumentAdminMoveExtraVar" type="controller" permission="manager" check_var="module_srl" />
</actions> </actions>
<menus> <menus>
<menu name="document"> <menu name="document">

View file

@ -1,24 +1,18 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions>
<permission action="dispEditorSkinColorset" target="root" />
<permission action="dispEditorConfigPreview" target="root" />
<permission action="procEditorInsertModuleConfig" target="manager" check_var="target_module_srl" />
</permissions>
<actions> <actions>
<action name="dispEditorComponentInfo" type="view" /> <action name="dispEditorComponentInfo" type="view" />
<action name="dispEditorPopup" type="view" /> <action name="dispEditorPopup" type="view" />
<action name="dispEditorPreview" type="view" /> <action name="dispEditorPreview" type="view" />
<action name="dispEditorSkinColorset" type="view" /> <action name="dispEditorSkinColorset" type="view" permission="root" />
<action name="dispEditorConfigPreview" type="view" /> <action name="dispEditorConfigPreview" type="view" permission="root" />
<action name="procEditorCall" type="controller" /> <action name="procEditorCall" type="controller" />
<action name="procEditorSaveDoc" type="controller" /> <action name="procEditorSaveDoc" type="controller" />
<action name="procEditorRemoveSavedDoc" type="controller" /> <action name="procEditorRemoveSavedDoc" type="controller" />
<action name="procEditorLoadSavedDocument" type="controller" /> <action name="procEditorLoadSavedDocument" type="controller" />
<action name="procEditorInsertModuleConfig" type="controller" /> <action name="procEditorInsertModuleConfig" type="controller" permission="manager" check_var="target_module_srl" />
<action name="dispEditorAdminIndex" type="view" menu_name="editor" menu_index="true" admin_index="true" /> <action name="dispEditorAdminIndex" type="view" menu_name="editor" menu_index="true" admin_index="true" />
<action name="dispEditorAdminSetupComponent" type="view" menu_name="editor" /> <action name="dispEditorAdminSetupComponent" type="view" menu_name="editor" />

View file

@ -1,10 +1,6 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions>
<permission action="procFileGetList" target="root" />
<permission action="procFileAdminInsertModuleConfig" target="manager" check_var="target_module_srl" />
</permissions>
<actions> <actions>
<action name="getFileList" type="model" /> <action name="getFileList" type="model" />
@ -15,7 +11,7 @@
<action name="procFileSetCoverImage" type="controller" /> <action name="procFileSetCoverImage" type="controller" />
<action name="procFileDownload" type="controller" method="GET|POST" /> <action name="procFileDownload" type="controller" method="GET|POST" />
<action name="procFileOutput" type="controller" method="GET|POST" /> <action name="procFileOutput" type="controller" method="GET|POST" />
<action name="procFileGetList" type="controller" /> <action name="procFileGetList" type="controller" permission="root" />
<action name="dispFileAdminList" type="view" admin_index="true" menu_name="file" menu_index="true" /> <action name="dispFileAdminList" type="view" admin_index="true" menu_name="file" menu_index="true" />
<action name="dispFileAdminConfig" type="view" menu_name="fileUpload" menu_index="true" /> <action name="dispFileAdminConfig" type="view" menu_name="fileUpload" menu_index="true" />
@ -23,7 +19,7 @@
<action name="procFileAdminAddCart" type="controller" /> <action name="procFileAdminAddCart" type="controller" />
<action name="procFileAdminDeleteChecked" type="controller" ruleset="deleteChecked" /> <action name="procFileAdminDeleteChecked" type="controller" ruleset="deleteChecked" />
<action name="procFileAdminInsertConfig" type="controller" ruleset="insertConfig" /> <action name="procFileAdminInsertConfig" type="controller" ruleset="insertConfig" />
<action name="procFileAdminInsertModuleConfig" type="controller" ruleset="fileModuleConfig" /> <action name="procFileAdminInsertModuleConfig" type="controller" permission="manager" check_var="target_module_srl" ruleset="fileModuleConfig" />
</actions> </actions>
<menus> <menus>
<menu name="file"> <menu name="file">

View file

@ -1,7 +1,6 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions />
<actions> <actions>
<action name="dispImporterAdminImportForm" type="view" admin_index="true" menu_name="importer" menu_index="true" /> <action name="dispImporterAdminImportForm" type="view" admin_index="true" menu_name="importer" menu_index="true" />

View file

@ -1,16 +1,13 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions>
<permission action="getInstallFTPList" target="root" />
</permissions>
<actions> <actions>
<action name="dispInstallIndex" type="view" index="true" /> <action name="dispInstallIndex" type="view" index="true" />
<action name="dispInstallCheckEnv" type="view" /> <action name="dispInstallCheckEnv" type="view" />
<action name="dispInstallDBConfig" type="view" /> <action name="dispInstallDBConfig" type="view" />
<action name="dispInstallOtherConfig" type="view" /> <action name="dispInstallOtherConfig" type="view" />
<action name="getInstallFTPList" type="model" /> <action name="getInstallFTPList" type="model" permission="root" />
<action name="procInstallLicenseAgreement" type="controller" /> <action name="procInstallLicenseAgreement" type="controller" />
<action name="procDBConfig" type="controller" /> <action name="procDBConfig" type="controller" />

View file

@ -1,7 +1,6 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions />
<actions> <actions>
<action name="IS" type="view" /> <action name="IS" type="view" />

View file

@ -1,7 +1,6 @@
<?xml version="1.0" encoding="UTF-8"?> <?xml version="1.0" encoding="UTF-8"?>
<module> <module>
<grants /> <grants />
<permissions />
<actions> <actions>
<action name="dispKrzipSearchForm" type="view" /> <action name="dispKrzipSearchForm" type="view" />
<action name="getKrzipCodeList" type="model" /> <action name="getKrzipCodeList" type="model" />

View file

@ -1,15 +1,10 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions>
<permission action="dispLayoutPreview" target="root" />
<permission action="dispLayoutPreviewWithModule" target="root" />
<permission action="getLayoutInstanceListForJSONP" target="root" />
</permissions>
<actions> <actions>
<action name="dispLayoutPreview" type="view" /> <action name="dispLayoutPreview" type="view" permission="root" />
<action name="dispLayoutPreviewWithModule" type="view" /> <action name="dispLayoutPreviewWithModule" type="view" permission="root" />
<action name="getLayoutInstanceListForJSONP" type="model" /> <action name="getLayoutInstanceListForJSONP" type="model" permission="root" />
<action name="dispLayoutAdminInstalledList" type="view" admin_index="true" menu_name="installedLayout" menu_index="true" /> <action name="dispLayoutAdminInstalledList" type="view" admin_index="true" menu_name="installedLayout" menu_index="true" />
<action name="dispLayoutAdminAllInstanceList" type="view" menu_name="installedLayout" /> <action name="dispLayoutAdminAllInstanceList" type="view" menu_name="installedLayout" />

View file

@ -1,66 +1,28 @@
<?xml version="1.0" encoding="UTF-8"?> <?xml version="1.0" encoding="UTF-8"?>
<module> <module>
<grants /> <grants />
<permissions>
<permission action="dispMemberInfo" target="member" />
<permission action="dispMemberModifyInfo" target="member" />
<permission action="dispMemberModifyPassword" target="member" />
<permission action="dispMemberModifyEmailAddress" target="member" />
<permission action="dispMemberLeave" target="member" />
<permission action="dispMemberScrappedDocument" target="member" />
<permission action="dispMemberSavedDocument" target="member" />
<permission action="dispMemberOwnDocument" target="member" />
<permission action="dispMemberOwnComment" target="member" />
<permission action="dispMemberActiveLogins" target="member" />
<permission action="dispMemberModifyNicknameLog" target="member" />
<permission action="dispMemberLogout" target="member" />
<permission action="dispMemberSpammer" target="manager" check_var="module_srl" />
<permission action="getApiGroups" target="root" />
<permission action="procMemberModifyInfoBefore" target="member" />
<permission action="procMemberModifyInfo" target="member" />
<permission action="procMemberModifyPassword" target="member" />
<permission action="procMemberModifyEmailAddress" target="member" />
<permission action="procMemberLeave" target="member" />
<permission action="procMemberInsertProfileImage" target="member" />
<permission action="procMemberDeleteProfileImage" target="member" />
<permission action="procMemberInsertImageName" target="member" />
<permission action="procMemberDeleteImageName" target="member" />
<permission action="procMemberInsertImageMark" target="member" />
<permission action="procMemberDeleteImageMark" target="member" />
<permission action="procMemberScrapDocument" target="member" />
<permission action="procMemberDeleteScrap" target="member" />
<permission action="procMemberSaveDocument" target="member" />
<permission action="procMemberDeleteSavedDocument" target="member" />
<permission action="procMemberDeleteAutologin" target="member" />
<permission action="procMemberSiteSignUp" target="member" />
<permission action="procMemberSiteLeave" target="member" />
<permission action="procMemberLogout" target="member" />
<permission action="procMemberSpammerManage" target="manager" check_var="module_srl" />
</permissions>
<actions> <actions>
<action name="dispMemberSignUpForm" type="view" /> <action name="dispMemberSignUpForm" type="view" />
<action name="dispMemberLoginForm" type="view" /> <action name="dispMemberLoginForm" type="view" />
<action name="dispMemberFindAccount" type="view" /> <action name="dispMemberFindAccount" type="view" />
<action name="dispMemberResendAuthMail" type="view" /> <action name="dispMemberResendAuthMail" type="view" />
<action name="dispMemberGetTempPassword" type="view" /> <action name="dispMemberGetTempPassword" type="view" />
<action name="dispMemberInfo" type="view" /> <action name="dispMemberInfo" type="view" permission="member" />
<action name="dispMemberModifyInfo" type="view" /> <action name="dispMemberModifyInfo" type="view" permission="member" />
<action name="dispMemberModifyPassword" type="view" /> <action name="dispMemberModifyPassword" type="view" permission="member" />
<action name="dispMemberModifyEmailAddress" type="view" /> <action name="dispMemberModifyEmailAddress" type="view" permission="member" />
<action name="dispMemberLeave" type="view" /> <action name="dispMemberLeave" type="view" permission="member" />
<action name="dispMemberScrappedDocument" type="view" /> <action name="dispMemberScrappedDocument" type="view" permission="member" />
<action name="dispMemberSavedDocument" type="view" /> <action name="dispMemberSavedDocument" type="view" permission="member" />
<action name="dispMemberOwnDocument" type="view" /> <action name="dispMemberOwnDocument" type="view" permission="member" />
<action name="dispMemberOwnComment" type="view" /> <action name="dispMemberOwnComment" type="view" permission="member" />
<action name="dispMemberActiveLogins" type="view" /> <action name="dispMemberActiveLogins" type="view" permission="member" />
<action name="dispMemberModifyNicknameLog" type="view" /> <action name="dispMemberModifyNicknameLog" type="view" permission="member" />
<action name="dispMemberLogout" type="view" /> <action name="dispMemberLogout" type="view" permission="member" />
<action name="dispMemberSpammer" type="view" /> <action name="dispMemberSpammer" type="view" permission="manager" check_var="module_srl" />
<action name="getMemberMenu" type="model" /> <action name="getMemberMenu" type="model" />
<action name="getApiGroups" type="model" /> <action name="getApiGroups" type="model" permission="root" />
<action name="procMemberInsert" type="controller" ruleset="@insertMember" /> <action name="procMemberInsert" type="controller" ruleset="@insertMember" />
<action name="procMemberCheckValue" type="controller" /> <action name="procMemberCheckValue" type="controller" />
@ -71,26 +33,26 @@
<action name="procMemberAuthEmailAddress" type="controller" method="GET|POST" /> <action name="procMemberAuthEmailAddress" type="controller" method="GET|POST" />
<action name="procMemberResendAuthMail" type="controller" ruleset="resendAuthMail" /> <action name="procMemberResendAuthMail" type="controller" ruleset="resendAuthMail" />
<action name="procMemberResetAuthMail" type="controller" ruleset="resetAuthMail" /> <action name="procMemberResetAuthMail" type="controller" ruleset="resetAuthMail" />
<action name="procMemberModifyInfoBefore" type="controller" ruleset="recheckedPassword" /> <action name="procMemberModifyInfoBefore" type="controller" permission="member" ruleset="recheckedPassword" />
<action name="procMemberModifyInfo" type="controller" ruleset="@insertMember" /> <action name="procMemberModifyInfo" type="controller" permission="member" ruleset="@insertMember" />
<action name="procMemberModifyPassword" type="controller" ruleset="modifyPassword" /> <action name="procMemberModifyPassword" type="controller" permission="member" ruleset="modifyPassword" />
<action name="procMemberModifyEmailAddress" type="controller" ruleset="modifyEmailAddress" /> <action name="procMemberModifyEmailAddress" type="controller" permission="member" ruleset="modifyEmailAddress" />
<action name="procMemberLeave" type="controller" ruleset="leaveMember" /> <action name="procMemberLeave" type="controller" permission="member" ruleset="leaveMember" />
<action name="procMemberInsertProfileImage" type="controller" ruleset="insertProfileImage" /> <action name="procMemberInsertProfileImage" type="controller" permission="member" ruleset="insertProfileImage" />
<action name="procMemberDeleteProfileImage" type="controller" /> <action name="procMemberDeleteProfileImage" type="controller" permission="member" />
<action name="procMemberInsertImageName" type="controller" ruleset="insertImageName" /> <action name="procMemberInsertImageName" type="controller" permission="member" ruleset="insertImageName" />
<action name="procMemberDeleteImageName" type="controller" /> <action name="procMemberDeleteImageName" type="controller" permission="member" />
<action name="procMemberInsertImageMark" type="controller" ruleset="insertImageMark" /> <action name="procMemberInsertImageMark" type="controller" permission="member" ruleset="insertImageMark" />
<action name="procMemberDeleteImageMark" type="controller" /> <action name="procMemberDeleteImageMark" type="controller" permission="member" />
<action name="procMemberScrapDocument" type="controller" /> <action name="procMemberScrapDocument" type="controller" permission="member" />
<action name="procMemberDeleteScrap" type="controller" /> <action name="procMemberDeleteScrap" type="controller" permission="member" />
<action name="procMemberSaveDocument" type="controller" /> <action name="procMemberSaveDocument" type="controller" permission="member" />
<action name="procMemberDeleteSavedDocument" type="controller" /> <action name="procMemberDeleteSavedDocument" type="controller" permission="member" />
<action name="procMemberDeleteAutologin" type="controller" /> <action name="procMemberDeleteAutologin" type="controller" permission="member" />
<action name="procMemberSiteSignUp" type="controller" /> <action name="procMemberSiteSignUp" type="controller" permission="member" />
<action name="procMemberSiteLeave" type="controller" /> <action name="procMemberSiteLeave" type="controller" permission="member" />
<action name="procMemberLogout" type="controller" /> <action name="procMemberLogout" type="controller" permission="member" />
<action name="procMemberSpammerManage" type="controller" /> <action name="procMemberSpammerManage" type="controller" permission="manager" check_var="module_srl" />
<action name="dispMemberAdminList" type="view" index="true" admin_index="true" menu_name="userList" menu_index="true"/> <action name="dispMemberAdminList" type="view" index="true" admin_index="true" menu_name="userList" menu_index="true"/>
<action name="dispMemberAdminInfo" type="view" menu_name="userList" /> <action name="dispMemberAdminInfo" type="view" menu_name="userList" />

View file

@ -1,7 +1,6 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions />
<actions> <actions>
<action name="dispMenuMenu" type="mobile" /> <action name="dispMenuMenu" type="mobile" />

View file

@ -1,7 +1,6 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions />
<actions> <actions>
<action name="dispMessage" type="view" index="true" /> <action name="dispMessage" type="view" index="true" />

View file

@ -1,45 +1,21 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions>
<permission action="dispModuleSelectList" target="root" />
<permission action="dispModuleSkinInfo" target="all-managers" />
<permission action="dispModuleFileBox" target="root" />
<permission action="dispModuleFileBoxAdd" target="root" />
<permission action="getModuleSkinInfoList" target="root" />
<permission action="getFileBoxListHtml" target="root" />
<permission action="getModuleInfoByMenuItemSrl" target="root" />
<permission action="getLangListByLangcodeForAutoComplete" target="manager" />
<permission action="procModuleFileBoxAdd" target="root" />
<permission action="procModuleFileBoxDelete" target="root" />
<permission action="getModuleAdminLangCode" target="manager" />
<permission action="getModuleAdminLangListByName" target="manager" />
<permission action="getModuleAdminLangListByValue" target="manager" />
<permission action="getModuleAdminMultilingualHtml" target="manager" />
<permission action="getModuleAdminLangListHtml" target="manager" />
<permission action="procModuleAdminInsertGrant" target="manager" check_var="module_srl" />
<permission action="procModuleAdminUpdateSkinInfo" target="manager" check_var="module_srl" />
<permission action="procModuleAdminInsertLang" target="manager" />
</permissions>
<actions> <actions>
<action name="dispModuleSelectList" type="view" /> <action name="dispModuleSelectList" type="view" permission="root" />
<action name="dispModuleSkinInfo" type="view" /> <action name="dispModuleSkinInfo" type="view" permission="all-managers" />
<action name="dispModuleFileBox" type="view" /> <action name="dispModuleFileBox" type="view" permission="root" />
<action name="dispModuleFileBoxAdd" type="view" /> <action name="dispModuleFileBoxAdd" type="view" permission="root" />
<action name="dispModuleChangeLang" type="mobile" /> <action name="dispModuleChangeLang" type="mobile" />
<action name="getModuleSkinInfoList" type="model" /> <action name="getModuleSkinInfoList" type="model" permission="root" />
<action name="getFileBoxListHtml" type="model" /> <action name="getFileBoxListHtml" type="model" permission="root" />
<action name="getModuleInfoByMenuItemSrl" type="model" /> <action name="getModuleInfoByMenuItemSrl" type="model" permission="root" />
<action name="getLangListByLangcodeForAutoComplete" type="model" /> <action name="getLangListByLangcodeForAutoComplete" type="model" permission="manager" />
<action name="getLangByLangcode" type="model" /> <action name="getLangByLangcode" type="model" />
<action name="procModuleFileBoxAdd" type="controller" /> <action name="procModuleFileBoxAdd" type="controller" permission="root" />
<action name="procModuleFileBoxDelete" type="controller" /> <action name="procModuleFileBoxDelete" type="controller" permission="root" />
<action name="dispModuleAdminContent" type="view" menu_name="installedModule" menu_index="true" admin_index="true" /> <action name="dispModuleAdminContent" type="view" menu_name="installedModule" menu_index="true" admin_index="true" />
<action name="dispModuleAdminCategory" type="view" menu_name="installedModule" /> <action name="dispModuleAdminCategory" type="view" menu_name="installedModule" />
@ -54,12 +30,12 @@
<action name="getModuleAdminModuleList" type="model" /> <action name="getModuleAdminModuleList" type="model" />
<action name="getModuleAdminModuleInfo" type="model" /> <action name="getModuleAdminModuleInfo" type="model" />
<action name="getModuleAdminGrant" type="model" /> <action name="getModuleAdminGrant" type="model" />
<action name="getModuleAdminLangCode" type="model" /> <action name="getModuleAdminLangCode" type="model" permission="manager" />
<action name="getModuleAdminLangListByName" type="model" /> <action name="getModuleAdminLangListByName" type="model" permission="manager" />
<action name="getModuleAdminLangListByValue" type="model" /> <action name="getModuleAdminLangListByValue" type="model" permission="manager" />
<action name="getModuleAdminModuleSearcherHtml" type="model" /> <action name="getModuleAdminModuleSearcherHtml" type="model" />
<action name="getModuleAdminMultilingualHtml" type="model" /> <action name="getModuleAdminMultilingualHtml" type="model" permission="manager" />
<action name="getModuleAdminLangListHtml" type="model" /> <action name="getModuleAdminLangListHtml" type="model" permission="manager" />
<action name="procModuleAdminInsertCategory" type="controller" ruleset="insertCategory" /> <action name="procModuleAdminInsertCategory" type="controller" ruleset="insertCategory" />
<action name="procModuleAdminUpdateCategory" type="controller" ruleset="updateCategory" /> <action name="procModuleAdminUpdateCategory" type="controller" ruleset="updateCategory" />
@ -67,9 +43,9 @@
<action name="procModuleAdminModuleSetup" type="controller" ruleset="insertModuleSetup" /> <action name="procModuleAdminModuleSetup" type="controller" ruleset="insertModuleSetup" />
<action name="procModuleAdminModuleGrantSetup" type="controller" ruleset="insertModulesGrant" /> <action name="procModuleAdminModuleGrantSetup" type="controller" ruleset="insertModulesGrant" />
<action name="procModuleAdminCopyModule" type="controller" ruleset="copyModule" /> <action name="procModuleAdminCopyModule" type="controller" ruleset="copyModule" />
<action name="procModuleAdminInsertGrant" type="controller" /> <action name="procModuleAdminInsertGrant" type="controller" permission="manager" check_var="module_srl" />
<action name="procModuleAdminUpdateSkinInfo" type="controller" /> <action name="procModuleAdminUpdateSkinInfo" type="controller" permission="manager" check_var="module_srl" />
<action name="procModuleAdminInsertLang" type="controller" /> <action name="procModuleAdminInsertLang" type="controller" permission="manager" />
<action name="procModuleAdminDeleteLang" type="controller" /> <action name="procModuleAdminDeleteLang" type="controller" />
<action name="procModuleAdminGetList" type="controller" /> <action name="procModuleAdminGetList" type="controller" />
<action name="procModuleAdminSetDesignInfo" type="controller" /> <action name="procModuleAdminSetDesignInfo" type="controller" />

View file

@ -850,20 +850,27 @@ class moduleModel extends module
else $permission_list[] = $permissions; else $permission_list[] = $permissions;
$buff[] = '$info->permission = new stdClass;'; $buff[] = '$info->permission = new stdClass;';
$buff[] = '$info->permission_check = new stdClass;';
$info->permission = new stdClass;
$info->permission_check = new stdClass;
$info->permission = new stdClass();
foreach($permission_list as $permission) foreach($permission_list as $permission)
{ {
$action = $permission->attrs->action; $action = $permission->attrs->action;
$target = $permission->attrs->target; $target = $permission->attrs->target;
$info->permission->{$action} = $target; $info->permission->$action = $target;
$info->permission_check->{$action}->key = $permission->attrs->check_var ?: '';
$info->permission_check->{$action}->type = $permission->attrs->check_type ?: '';
$buff[] = sprintf('$info->permission->%s = \'%s\';', $action, $target); $buff[] = sprintf('$info->permission->%s = \'%s\';', $action, $target);
$buff[] = sprintf('$info->permission_check->%s->key = \'%s\';', $action, $info->permission_check->{$action}->key);
$buff[] = sprintf('$info->permission_check->%s->type = \'%s\';', $action, $info->permission_check->{$action}->type); $info->permission_check->$action = new stdClass;
$info->permission_check->$action->key = $permission->attrs->check_var ?: '';
$info->permission_check->$action->type = $permission->attrs->check_type ?: '';
$buff[] = sprintf('$info->permission_check->%s = new stdClass;', $action);
$buff[] = sprintf('$info->permission_check->%s->key = \'%s\';', $action, $info->permission_check->$action->key);
$buff[] = sprintf('$info->permission_check->%s->type = \'%s\';', $action, $info->permission_check->$action->type);
} }
} }
// for admin menus // for admin menus
@ -874,6 +881,7 @@ class moduleModel extends module
$buff[] = '$info->menu = new stdClass;'; $buff[] = '$info->menu = new stdClass;';
$info->menu = new stdClass(); $info->menu = new stdClass();
foreach($menu_list as $menu) foreach($menu_list as $menu)
{ {
$menu_name = $menu->attrs->name; $menu_name = $menu->attrs->name;
@ -897,12 +905,38 @@ class moduleModel extends module
if(is_array($actions)) $action_list = $actions; if(is_array($actions)) $action_list = $actions;
else $action_list[] = $actions; else $action_list[] = $actions;
if(!isset($info->permission))
{
$buff[] = '$info->permission = new stdClass;';
$buff[] = '$info->permission_check = new stdClass;';
$info->permission = new stdClass;
$info->permission_check = new stdClass;
}
$buff[] = '$info->action = new stdClass;'; $buff[] = '$info->action = new stdClass;';
$info->action = new stdClass(); $info->action = new stdClass();
foreach($action_list as $action) foreach($action_list as $action)
{ {
$name = $action->attrs->name; $name = $action->attrs->name;
// <action permission="...">
if($action->attrs->permission)
{
$info->permission->$name = $action->attrs->permission;
$buff[] = sprintf('$info->permission->%s = \'%s\';', $name, $info->permission->$name);
$info->permission_check->$name = new stdClass;
$info->permission_check->$name->key = $action->attrs->check_var ?: '';
$info->permission_check->$name->type = $action->attrs->check_type ?: '';
$buff[] = sprintf('$info->permission_check->%s = new stdClass;', $name);
$buff[] = sprintf('$info->permission_check->%s->key = \'%s\';', $name, $info->permission_check->$name->key);
$buff[] = sprintf('$info->permission_check->%s->type = \'%s\';', $name, $info->permission_check->$name->type);
}
$type = $action->attrs->type; $type = $action->attrs->type;
$grant = $action->attrs->grant?$action->attrs->grant:'guest'; $grant = $action->attrs->grant?$action->attrs->grant:'guest';
$standalone = $action->attrs->standalone=='false'?'false':'true'; $standalone = $action->attrs->standalone=='false'?'false':'true';
@ -1951,7 +1985,7 @@ class moduleModel extends module
$privilege_list = array_keys((array) $xml_info->grant); $privilege_list = array_keys((array) $xml_info->grant);
// Prepend default 'privilege name' // Prepend default 'privilege name'
// is_admin, manager, is_site_admin not distinguish because of compatibility. // manager, is_site_admin not distinguish because of compatibility.
array_unshift($privilege_list, 'access', 'is_admin', 'manager', 'is_site_admin', 'root'); array_unshift($privilege_list, 'access', 'is_admin', 'manager', 'is_site_admin', 'root');
// Unique // Unique
@ -1965,8 +1999,8 @@ class moduleModel extends module
{ {
$grant->{$val} = true; $grant->{$val} = true;
} }
// If a module manager, grant all (except 'root') // If a module manager, grant all (except 'root', 'is_admin')
else if($is_module_admin === true && $val !== 'root') else if($is_module_admin === true && $val !== 'root' && $val !== 'is_admin')
{ {
$grant->{$val} = true; $grant->{$val} = true;
} }

View file

@ -1,27 +1,16 @@
<?xml version="1.0" encoding="UTF-8"?> <?xml version="1.0" encoding="UTF-8"?>
<module> <module>
<grants /> <grants />
<permissions>
<permission action="dispNcenterliteNotifyList" target="member" />
<permission action="dispNcenterliteUserConfig" target="member" />
<permission action="getColorsetList" target="root" />
<permission action="getMyNotifyListTpl" target="member" />
<permission action="procNcenterliteUserConfig" target="member" />
<permission action="procNcenterliteNotifyReadAll" target="member" />
<permission action="procNcenterliteRedirect" target="member" />
</permissions>
<actions> <actions>
<action name="dispNcenterliteNotifyList" type="view" /> <action name="dispNcenterliteNotifyList" type="view" permission="member" />
<action name="dispNcenterliteUserConfig" type="view" /> <action name="dispNcenterliteUserConfig" type="view" permission="member" />
<action name="getColorsetList" type="model" /> <action name="getColorsetList" type="model" permission="root" />
<action name="getMyNotifyListTpl" type="model" /> <action name="getMyNotifyListTpl" type="model" permission="member" />
<action name="procNcenterliteUserConfig" type="controller" /> <action name="procNcenterliteUserConfig" type="controller" permission="member" />
<action name="procNcenterliteNotifyReadAll" type="controller" /> <action name="procNcenterliteNotifyReadAll" type="controller" permission="member" />
<action name="procNcenterliteRedirect" type="controller" method="GET|POST" /> <action name="procNcenterliteRedirect" type="controller" permission="member" method="GET|POST" />
<action name="dispNcenterliteAdminConfig" type="view" admin_index="true" menu_name="ncenterlite" menu_index="true" /> <action name="dispNcenterliteAdminConfig" type="view" admin_index="true" menu_name="ncenterlite" menu_index="true" />
<action name="dispNcenterliteAdminAdvancedconfig" type="view" menu_name="ncenterlite" /> <action name="dispNcenterliteAdminAdvancedconfig" type="view" menu_name="ncenterlite" />

View file

@ -1,42 +1,32 @@
<?xml version="1.0" encoding="UTF-8"?> <?xml version="1.0" encoding="UTF-8"?>
<module> <module>
<grants /> <grants>
<permissions> <grant name="modify" default="manager">
<permission action="dispPageAdminInfo" target="manager" check_var="module_srl" /> <title xml:lang="ko">페이지 수정</title>
<permission action="dispPageAdminPageAdditionSetup" target="manager" check_var="module_srl" /> <title xml:lang="en">page modify</title>
<permission action="dispPageAdminGrantInfo" target="manager" check_var="module_srl" /> </grant>
<permission action="dispPageAdminSkinInfo" target="manager" check_var="module_srl" /> </grants>
<permission action="dispPageAdminMobileSkinInfo" target="manager" check_var="module_srl" />
<permission action="dispPageAdminContentModify" target="manager" />
<permission action="dispPageAdminMobileContent" target="manager" />
<permission action="dispPageAdminMobileContentModify" target="manager" />
<permission action="procPageAdminUpdate" target="manager" check_var="module_srl" />
<permission action="procPageAdminInsertContent" target="manager" check_var="module_srl" />
<permission action="procPageAdminArticleDocumentInsert" target="manager" />
<permission action="procPageAdminRemoveWidgetCache" target="manager" check_var="module_srl" />
</permissions>
<actions> <actions>
<action name="dispPageIndex" type="view" standalone="false" index="true" /> <action name="dispPageIndex" type="view" standalone="false" index="true" />
<action name="dispPageAdminContent" type="view" admin_index="true" menu_name="page" menu_index="true" /> <action name="dispPageAdminContent" type="view" admin_index="true" menu_name="page" menu_index="true" />
<action name="dispPageAdminDelete" type="view" menu_name="page" /> <action name="dispPageAdminDelete" type="view" menu_name="page" />
<action name="dispPageAdminInfo" type="view" setup_index="true" menu_name="page" /> <action name="dispPageAdminInfo" type="view" permission="manager" check_var="module_srl" setup_index="true" menu_name="page" />
<action name="dispPageAdminPageAdditionSetup" type="view" menu_name="page" /> <action name="dispPageAdminPageAdditionSetup" type="view" permission="manager" check_var="module_srl" menu_name="page" />
<action name="dispPageAdminGrantInfo" type="view" menu_name="page" /> <action name="dispPageAdminGrantInfo" type="view" permission="manager" check_var="module_srl" menu_name="page" />
<action name="dispPageAdminSkinInfo" type="view" menu_name="page" /> <action name="dispPageAdminSkinInfo" type="view" permission="manager" check_var="module_srl" menu_name="page" />
<action name="dispPageAdminMobileSkinInfo" type="view" menu_name="page" /> <action name="dispPageAdminMobileSkinInfo" type="view" permission="manager" check_var="module_srl" menu_name="page" />
<action name="dispPageAdminContentModify" type="view" /> <action name="dispPageAdminContentModify" type="view" permission="modify" standalone="false" />
<action name="dispPageAdminMobileContent" type="view" /> <action name="dispPageAdminMobileContent" type="view" permission="modify" standalone="false" />
<action name="dispPageAdminMobileContentModify" type="view" /> <action name="dispPageAdminMobileContentModify" type="view" permission="modify" standalone="false" />
<action name="procPageAdminInsert" type="controller" ruleset="insertPage" /> <action name="procPageAdminInsert" type="controller" ruleset="insertPage" />
<action name="procPageAdminUpdate" type="controller" ruleset="updatePage" /> <action name="procPageAdminUpdate" type="controller" permission="manager" check_var="module_srl" ruleset="updatePage" />
<action name="procPageAdminDelete" type="controller" ruleset="deletePage" /> <action name="procPageAdminDelete" type="controller" ruleset="deletePage" />
<action name="procPageAdminInsertConfig" type="controller" /> <action name="procPageAdminInsertConfig" type="controller" />
<action name="procPageAdminInsertContent" type="controller" /> <action name="procPageAdminInsertContent" type="controller" permission="modify" check_var="module_srl" standalone="false" />
<action name="procPageAdminArticleDocumentInsert" type="controller" /> <action name="procPageAdminArticleDocumentInsert" type="controller" permission="modify" standalone="false" />
<action name="procPageAdminRemoveWidgetCache" type="controller" /> <action name="procPageAdminRemoveWidgetCache" type="controller" permission="modify" check_var="module_srl" />
</actions> </actions>
<menus> <menus>
<menu name="page" type="all"> <menu name="page" type="all">

View file

@ -1,12 +1,8 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions>
<permission action="getMembersPointInfo" target="member" />
<permission action="procPointAdminInsertPointModuleConfig" target="manager" check_var="target_module_srl" />
</permissions>
<actions> <actions>
<action name="getMembersPointInfo" type="model" /> <action name="getMembersPointInfo" type="model" permission="member" />
<action name="dispPointAdminConfig" type="view" admin_index="true" menu_name="point" menu_index="true" /> <action name="dispPointAdminConfig" type="view" admin_index="true" menu_name="point" menu_index="true" />
<action name="dispPointAdminModuleConfig" type="view" menu_name="point" /> <action name="dispPointAdminModuleConfig" type="view" menu_name="point" />
@ -15,7 +11,7 @@
<action name="procPointAdminInsertConfig" type="controller" ruleset="insertConfig" /> <action name="procPointAdminInsertConfig" type="controller" ruleset="insertConfig" />
<action name="procPointAdminInsertModuleConfig" type="controller" /> <action name="procPointAdminInsertModuleConfig" type="controller" />
<action name="procPointAdminUpdatePoint" type="controller" ruleset="updatePoint" /> <action name="procPointAdminUpdatePoint" type="controller" ruleset="updatePoint" />
<action name="procPointAdminInsertPointModuleConfig" type="controller" /> <action name="procPointAdminInsertPointModuleConfig" type="controller" permission="manager" check_var="target_module_srl" />
<action name="procPointAdminReCal" type="controller" /> <action name="procPointAdminReCal" type="controller" />
<action name="procPointAdminApplyPoint" type="controller" /> <action name="procPointAdminApplyPoint" type="controller" />
<action name="procPointAdminReset" type="controller" /> <action name="procPointAdminReset" type="controller" />

View file

@ -1,11 +1,6 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions>
<permission action="procPollInsertItem" target="member" />
<permission action="procPollDeleteItem" target="member" />
<permission action="procPollGetList" target="root" />
</permissions>
<actions> <actions>
<action name="getPollstatus" type="model" /> <action name="getPollstatus" type="model" />
<action name="getPollinfo" type="model" /> <action name="getPollinfo" type="model" />
@ -13,11 +8,11 @@
<action name="getPollGetColorsetList" type="model" /> <action name="getPollGetColorsetList" type="model" />
<action name="procPollInsert" type="controller" /> <action name="procPollInsert" type="controller" />
<action name="procPollInsertItem" type="controller" /> <action name="procPollInsertItem" type="controller" permission="member" />
<action name="procPollDeleteItem" type="controller" /> <action name="procPollDeleteItem" type="controller" permission="member" />
<action name="procPoll" type="controller" ruleset="poll" /> <action name="procPoll" type="controller" ruleset="poll" />
<action name="procPollViewResult" type="controller" /> <action name="procPollViewResult" type="controller" />
<action name="procPollGetList" type="controller" /> <action name="procPollGetList" type="controller" permission="root" />
<action name="dispPollAdminList" type="view" admin_index="true" menu_name="poll" menu_index="true" /> <action name="dispPollAdminList" type="view" admin_index="true" menu_name="poll" menu_index="true" />
<action name="dispPollAdminResult" type="view" /> <action name="dispPollAdminResult" type="view" />

View file

@ -1,9 +1,6 @@
<?xml version="1.0" encoding="UTF-8"?> <?xml version="1.0" encoding="UTF-8"?>
<module> <module>
<grants /> <grants />
<permissions>
<permission action="procRssAdminInsertModuleConfig" target="manager" check_var="target_module_srl" />
</permissions>
<actions> <actions>
<action name="rss" type="view" /> <action name="rss" type="view" />
<action name="atom" type="view" /> <action name="atom" type="view" />
@ -11,7 +8,7 @@
<action name="dispRssAdminIndex" type="view" index="true" admin_index="true" menu_name="rss" menu_index="true" /> <action name="dispRssAdminIndex" type="view" index="true" admin_index="true" menu_name="rss" menu_index="true" />
<action name="procRssAdminInsertConfig" type="controller" ruleset="insertRssConfig" /> <action name="procRssAdminInsertConfig" type="controller" ruleset="insertRssConfig" />
<action name="procRssAdminDeleteFeedImage" type="controller" /> <action name="procRssAdminDeleteFeedImage" type="controller" />
<action name="procRssAdminInsertModuleConfig" type="controller" /> <action name="procRssAdminInsertModuleConfig" type="controller" permission="manager" check_var="target_module_srl" />
</actions> </actions>
<menus> <menus>
<menu name="rss"> <menu name="rss">

View file

@ -1,7 +1,6 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions />
<actions> <actions>
<action name="dispSessionAdminIndex" type="view" admin_index="true" /> <action name="dispSessionAdminIndex" type="view" admin_index="true" />
<action name="procSessionAdminClear" type="controller" /> <action name="procSessionAdminClear" type="controller" />

View file

@ -1,7 +1,6 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions />
<actions> <actions>
<action name="dispSpamfilterAdminDeniedIPList" type="view" admin_index="true" menu_name="spamFilter" menu_index="true" /> <action name="dispSpamfilterAdminDeniedIPList" type="view" admin_index="true" menu_name="spamFilter" menu_index="true" />
<action name="dispSpamfilterAdminDeniedWordList" type="view" menu_name="spamFilter" /> <action name="dispSpamfilterAdminDeniedWordList" type="view" menu_name="spamFilter" />

View file

@ -1,7 +1,6 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions />
<actions> <actions>
<action name="dispTrashAdminList" type="view" admin_index="true" menu_name="trash" menu_index="true" /> <action name="dispTrashAdminList" type="view" admin_index="true" menu_name="trash" menu_index="true" />
<action name="dispTrashAdminView" type="view" menu_name="trash" /> <action name="dispTrashAdminView" type="view" menu_name="trash" />

View file

@ -1,39 +1,23 @@
<?xml version="1.0" encoding="utf-8"?> <?xml version="1.0" encoding="utf-8"?>
<module> <module>
<grants /> <grants />
<permissions>
<permission action="dispWidgetInfo" target="all-managers" />
<permission action="dispWidgetGenerateCode" target="root" />
<permission action="dispWidgetGenerateCodeInPage" target="all-managers" />
<permission action="dispWidgetStyleGenerateCodeInPage" target="all-managers" />
<permission action="procWidgetGenerateCode" target="root" />
<permission action="procWidgetGenerateCodeInPage" target="all-managers" />
<permission action="procWidgetInsertDocument" target="manager" check_var="module_srl" />
<permission action="procWidgetDeleteDocument" target="manager" check_type="document" check_var="document_srl" />
<permission action="procWidgetCopyDocument" target="manager" check_type="document" check_var="document_srl" />
<permission action="procWidgetGetColorsetList" target="all-managers" />
<permission action="procWidgetStyleExtraImageUpload" target="all-managers" />
<permission action="dispWidgetAdminAddContent" target="manager" check_var="module_srl" />
</permissions>
<actions> <actions>
<action name="dispWidgetInfo" type="view" /> <action name="dispWidgetInfo" type="view" permission="all-managers" />
<action name="dispWidgetGenerateCode" type="view" /> <action name="dispWidgetGenerateCode" type="view" permission="root" />
<action name="dispWidgetGenerateCodeInPage" type="view" /> <action name="dispWidgetGenerateCodeInPage" type="view" permission="all-managers" />
<action name="dispWidgetStyleGenerateCodeInPage" type="view" /> <action name="dispWidgetStyleGenerateCodeInPage" type="view" permission="all-managers" />
<action name="procWidgetGenerateCode" type="controller" /> <action name="procWidgetGenerateCode" type="controller" permission="root" />
<action name="procWidgetGenerateCodeInPage" type="controller" ruleset="generateCodeInPage" /> <action name="procWidgetGenerateCodeInPage" type="controller" permission="all-managers" ruleset="generateCodeInPage" />
<action name="procWidgetInsertDocument" type="controller" /> <action name="procWidgetInsertDocument" type="controller" permission="manager" check_var="module_srl" />
<action name="procWidgetDeleteDocument" type="controller" /> <action name="procWidgetDeleteDocument" type="controller" permission="manager" check_type="document" check_var="document_srl" />
<action name="procWidgetCopyDocument" type="controller" /> <action name="procWidgetCopyDocument" type="controller" permission="manager" check_type="document" check_var="document_srl" />
<action name="procWidgetGetColorsetList" type="controller" /> <action name="procWidgetGetColorsetList" type="controller" permission="all-managers" />
<action name="procWidgetStyleExtraImageUpload" type="controller" /> <action name="procWidgetStyleExtraImageUpload" type="controller" permission="all-managers" />
<action name="dispWidgetAdminDownloadedList" type="view" admin_index="true" menu_name="installedWidget" menu_index="true" /> <action name="dispWidgetAdminDownloadedList" type="view" admin_index="true" menu_name="installedWidget" menu_index="true" />
<action name="dispWidgetAdminGenerateCode" type="view" menu_name="installedWidget" /> <action name="dispWidgetAdminGenerateCode" type="view" menu_name="installedWidget" />
<action name="dispWidgetAdminAddContent" type="view" /> <action name="dispWidgetAdminAddContent" type="view" permission="manager" check_var="module_srl" />
</actions> </actions>
<menus> <menus>
<menu name="installedWidget"> <menu name="installedWidget">