OK I found it:

I had to remove the beforeFilter from my post controller
and needed to change my isAuthorized function within the post
controllere to this:

public function isAuthorized($user) {
        if (parent::isAuthorized($user)) {
            return true;
        }

        if (in_array($this->action, array('edit', 'delete'))) {
            $postId = $this->request->params['pass'][0];
            return $this->Post->isOwnedBy($postId, $user['id']);
        }

        return false;
    }

Now everything look like working :-)

-- 
Our newest site for the community: CakePHP Video Tutorials 
http://tv.cakephp.org 
Check out the new CakePHP Questions site http://ask.cakephp.org and help others 
with their CakePHP related questions.


To unsubscribe from this group, send email to
[email protected] For more options, visit this group at 
http://groups.google.com/group/cake-php

Reply via email to