Patrick Cool 16 years ago
parent 7096baf31f
commit f27b7b2b33
  1. 2
      main/mySpace/myStudents.php
  2. 2
      main/tracking/courseLog.php

@ -217,7 +217,7 @@ if (!empty ($_GET['student'])) {
// infos about user
$info_user = UserManager :: get_user_info_by_id($student_id);
if ($_user['status'] == DRH && $info_user['hr_dept_id'] != $_user['user_id']) {
if($_user['status']==DRH && $a_infosUser['hr_dept_id']!=$_user['user_id'] && !api_is_platform_admin()) {
api_not_allowed();
}

@ -35,7 +35,7 @@ if (isset($_GET['from']) && $_GET['from'] == 'myspace') {
}
// access restrictions
$is_allowedToTrack = $is_courseAdmin || $is_platformAdmin || $is_courseCoach || $is_sessionAdmin;
$is_allowedToTrack = api_is_course_admin() || api_is_platform_admin() || api_is_course_coach() || $is_sessionAdmin;
if (!$is_allowedToTrack) {
Display :: display_header(null);

Loading…
Cancel
Save