Fixed permissions, seeders and security
This commit is contained in:
@@ -22,6 +22,7 @@ class PermissionSeeder extends Seeder
|
||||
"user.show" => "Shows another user profile.",
|
||||
"user.edit" => "Allows editing of other users.",
|
||||
"user.delete" => "Allows deleting of other users.",
|
||||
"ownuser.edit" => "Allows editing of your own user",
|
||||
|
||||
/**
|
||||
* The CALENDAR specific permissions
|
||||
|
||||
@@ -48,6 +48,7 @@ class RoleSeeder extends Seeder
|
||||
$brugerPermissions->add(\Spatie\Permission\Models\Permission::query()->where("name", "=", "washing.machine.reservation.create")->first());
|
||||
$brugerPermissions->add(\Spatie\Permission\Models\Permission::query()->where("name", "=", "washing.machine.reservation.delete")->first());
|
||||
$brugerPermissions->add(\Spatie\Permission\Models\Permission::query()->where("name", "=", "washing.machine.reservation.list")->first());
|
||||
$brugerPermissions->add(\Spatie\Permission\Models\Permission::query()->where("name", "=", "ownuser.edit")->first());
|
||||
|
||||
//Give permissions to Bruger (id: 2)
|
||||
foreach ($brugerPermissions as $permission) {
|
||||
|
||||
Reference in New Issue
Block a user