From 5d92238198ba556e35e216181066720828d2e84c Mon Sep 17 00:00:00 2001 From: Ben Klang Date: Tue, 25 May 2010 14:01:47 -0400 Subject: [PATCH] Beatnik: Enforce security only at the domain level ... not at the per-record level --- beatnik/lib/Driver.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/beatnik/lib/Driver.php b/beatnik/lib/Driver.php index f3e4bf552..087d986ce 100644 --- a/beatnik/lib/Driver.php +++ b/beatnik/lib/Driver.php @@ -218,7 +218,7 @@ class Beatnik_Driver { throw new Beatnik_Exception(_('You do not have permssion to edit the SOA of this zone.')); } } else { - $node = 'beatnik:domains:' . $_SESSION['beatnik']['curdomain']['zonename'] . ':' . $info['id']; + $node = 'beatnik:domains:' . $_SESSION['beatnik']['curdomain']['zonename']; if (!Beatnik::hasPermission($node, Horde_Perms::EDIT, 2)) { throw new Beatnik_Exception(_('You do not have permssion to edit this record.')); } -- 2.11.0