Distributed dual-license and access control method and system

An access control and distributed technology, applied in the transmission system, electrical components, etc., can solve the problems of uncontrollable resources or services, authorization methods that cannot meet the requirements, and increase the workload of system administrators, etc., so as to facilitate expansion , Improve flexibility, reduce the effect of coupling

Inactive Publication Date: 2010-01-20
INST OF GEOGRAPHICAL SCI & NATURAL RESOURCE RES CAS
View PDF1 Cites 42 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

On the one hand, the excessive concentration of permissions cannot meet the requirements; on the other hand, it increases the complexity of authorization logic and greatly increases the workload of system administrators. The granularity of authorized objects is often less considered. Therefore, for distributed networks The permission control in the environment needs to consider different application requirements and realize it from different angles
[0005] Simple hierarchical user authorization can solve general resource authorization and access control problems, but because it belongs to a one-dimensional authorization model, it cannot cope with complex situations. When resources or services exist at multiple levels, multiple limiting factors are required , the one-dimensional authorization method cannot meet the requirements, that is to say, if the permission control granularity is only set to a certain category or a coarser granularity, it is impossible to control more granular resources or services

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Distributed dual-license and access control method and system
  • Distributed dual-license and access control method and system
  • Distributed dual-license and access control method and system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0038] The technical solutions of the present invention will be further described below in conjunction with the drawings and specific embodiments, but the present invention is not limited to the following embodiments.

[0039] The distributed dual authorization and access control method provided by the present invention is applied to a control system that includes a general authentication authorization server and multiple different types of application systems. The main idea is that the dual authorization scheme is used for coarse-grained and fine-grained resources or The service performs permission control. By classifying users, the coarse-grained resources are controlled according to the agreement with the corresponding user classification; coarse-grained resources or services can correspond to some global applications. For fine-grained resources or services, further pass The local authorization and verification method of the application system is used to complete the distribute...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a distributed dual-license and access control method and a system, the method is applied in the control system including a universal certificate licensing sensor and a plurality of different types of application systems, and the method comprises the grade authority control step which is used for setting the grade of a user through the universal certificate licensing sensor, transferring grade information of the user to the application systems and deciding the access authority of the user to resources or services by verifying the matching relationship between the grade of the user and the grade of coarse-grained resources or services of the application systems; and the group authority control step which is used for respectively carrying out grouping setting on the user and the resources / services through the application systems and deciding the access authority of the user to the coarse-grained resources or the services by verifying the intersection relationship between user grouping and data service grouping.

Description

Technical field [0001] The invention relates to a user's authorization and access control technology for distributed resources or services in a distributed network environment, in particular to a distributed hierarchical grouping dual authorization and access control method and system. Background technique [0002] Enterprise internal information facilities are often composed of heterogeneous distributed application systems. The integration of these application systems is the future development trend. Not only that, the structure of large-scale application systems also has the characteristics of distributed integration. By combining different modules Integration to achieve the purpose of a certain application. Different information systems, especially Web application systems, need to realize unified management and authentication of users for their integration. On this basis, in order to further control information system and resource access, it is necessary to realize the authori...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06
Inventor 刘润达诸云强杜佳
Owner INST OF GEOGRAPHICAL SCI & NATURAL RESOURCE RES CAS
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products