diff --git a/equipment.php b/equipment.php index e52af6d..99faeb1 100644 --- a/equipment.php +++ b/equipment.php @@ -461,13 +461,13 @@ $shipto_id = explode("-",$partner_data->shipto) ?? ''; $partner_users_id = ($shipto_id[0] != '')? $shipto_id[0] : (($soldto_id[0] != '')? $soldto_id[0] : 1); $view_communication = ''; -if ($partner_users_id != 1 && ($_SESSION['authorization']['permission'] == 3 || $_SESSION['authorization']['permission'] == 4)){ +if ($partner_users_id != 1 && (isAllowed('communications',$_SESSION['authorization']['permissions'],$_SESSION['authorization']['permission'],'R') === 1){ $view_communication = ' '.$button_partner_assigned_communication.''; } //DISPLAY RELATED USERS $view_users =''; -if ($partner_users_id != 1 && ($_SESSION['authorization']['permission'] == 3 || $_SESSION['authorization']['permission'] == 4)){ +if ($partner_users_id != 1 && (isAllowed('users',$_SESSION['authorization']['permissions'],$_SESSION['authorization']['permission'],'R') === 1)){ $view_users = ' '.$button_partner_assigned_users.''; } diff --git a/equipments_mass_update.php b/equipments_mass_update.php index 1bbc639..146818b 100644 --- a/equipments_mass_update.php +++ b/equipments_mass_update.php @@ -202,7 +202,9 @@ $view .='
'; // SHOW SALESID and SOLDTO ONLY TO ADMIN -if ($_SESSION['authorization']['permission'] == 3 || $_SESSION['authorization']['permission'] == 4){ +$hierarchyLevel = getHierarchyLevel(json_decode($_SESSION['authorization']['partnerhierarchy'])); + +if ($hierarchyLevel == 0 || $hierarchyLevel == 1){ $view .='
'.$salesid_dropdown.' @@ -227,7 +229,7 @@ $view .='
'; -if ($_SESSION['authorization']['permission'] == 3 || $_SESSION['authorization']['permission'] == 4 ){ +if ($hierarchyLevel == 0 || $hierarchyLevel == 1){ $view .= ' '; } @@ -171,7 +173,7 @@ $view .= '
$view .= '
'; -if ($_SESSION['authorization']['permission'] == 3 || $_SESSION['authorization']['permission'] == 4){ +if ($hierarchyLevel == 0 || $hierarchyLevel == 1){ $view .= ''; $view .= $salesid_dropdown; } diff --git a/user.php b/user.php index 99f621d..54c12d3 100644 --- a/user.php +++ b/user.php @@ -13,6 +13,8 @@ include_once './settings/settings_redirector.php'; //SET ORIGIN FOR NAVIGATION $_SESSION['prev_origin_user'] = $_SERVER['REQUEST_URI']; +$hierarchyLevel = getHierarchyLevel(json_decode($_SESSION['authorization']['partnerhierarchy'])); + $page = 'user'; //Check if allowed if (isAllowed($page,$_SESSION['authorization']['permissions'],$_SESSION['authorization']['permission'],'R') === 0){ @@ -437,10 +439,10 @@ $view .= ' '; -if ($_SESSION['authorization']['permission'] == 3){ +if ($hierarchyLevel == 1){ $view .= ''; } -if ($_SESSION['authorization']['permission'] == 4){ +if ($hierarchyLevel == 0){ $view .= ' '; } @@ -453,7 +455,8 @@ $view .= ' '.($user->settings ?? '-').''; -if ($_SESSION['authorization']['permission'] == 3 || $_SESSION['authorization']['permission'] == 4){ + +if ($hierarchyLevel == 0 || $hierarchyLevel == 1){ $view .= ''; } else { $view .= '';