X-Git-Url: http://wagnertech.de/git?a=blobdiff_plain;f=projects.php;h=d206fe8c2fc180ea1e202f6d5b9f281b1d01d704;hb=b027028b5322fcbfb6de53e7a74529cbac7931de;hp=1d5f7e2e49ddad197a6839b6517ac5116f6e3ad0;hpb=75ef763b9bd7f515280a6d130e5ad81720d72156;p=timetracker.git diff --git a/projects.php b/projects.php index 1d5f7e2e..d206fe8c 100644 --- a/projects.php +++ b/projects.php @@ -31,8 +31,7 @@ import('form.Form'); import('ttTeamHelper'); // Access checks. -// TODO: introduce view_projects right to keep access checks simple. -if (!(ttAccessAllowed('track_own_time') || ttAccessAllowed('track_time') || ttAccessAllowed('manage_projects'))) { +if (!(ttAccessAllowed('view_own_projects') || ttAccessAllowed('manage_projects'))) { header('Location: access_denied.php'); exit(); } @@ -43,8 +42,8 @@ if (MODE_PROJECTS != $user->tracking_mode && MODE_PROJECTS_AND_TASKS != $user->t // End of access checks. if($user->can('manage_projects')) { - $active_projects = ttTeamHelper::getActiveProjects($user->team_id); - $inactive_projects = ttTeamHelper::getInactiveProjects($user->team_id); + $active_projects = ttTeamHelper::getActiveProjects($user->group_id); + $inactive_projects = ttTeamHelper::getInactiveProjects($user->group_id); } else $active_projects = $user->getAssignedProjects();