Method and device for controlling permission

A technology of authority control and authority, applied in computer security devices, instruments, digital data authentication, etc., can solve the problems of tediousness, display data business, inability to provide protection for processes, complicated authority control, etc., to achieve simple authority control and extended application scope. Effect
CN102339367AInactive Publication Date: 2012-02-01ZTE CORP

Patent Information

Authority / Receiving Office
CN ยท China
Patent Type
Applications(China)
Current Assignee / Owner
ZTE CORP
Publication Date
2012-02-01
Estimated Expiration
Not applicable ยท inactive patent

Smart Images

  • Figure 1
    Figure 1
  • Figure 2
    Figure 2
  • Figure 3
    Figure 3
Patent Text Reader

Abstract

The invention provides a method and device for controlling the permission. The method for controlling the permission comprises the following steps of: acquiring a role of a user from a set first corresponding relation between the user and the role; acquiring an application permission corresponding to the role of the user from a set second corresponding relation between the role and the user; receiving an operation request of the user entering the application, querying whether the acquired application permission comprises corresponding operations of the operation request or not; if so, allowing to execute the operation; and otherwise, refusing to execute the operation. According to the method and device disclosed by the invention, the permission control becomes simpler and more flexible and the application range of the permission control is wider.
Need to check novelty before this filing date? Find Prior Art

Description

technical field

[0001] The invention relates to the field of authority control, in particular to an authority control method and device. Background technique

[0002] With the development of the IT industry, enterprise applications and e-commerce have higher requirements for authority control: not only require authority control to have relatively high security, but also require authority control to be easy to expand, easy to manage, and more flexible , so as to meet all kinds of complex business. Traditional access control methods such as Discretionary Access Control (DAC) and Mandatory Access Control (MAC) cannot meet the demands of increasingly complex and flexible e-commerce applications and enterprise environment applications. In view of the above reasons, the US National Institute of Standards and Technology (NIST) proposed a role-based access control (Role-Based Access Control, RBAC) model in the early 1990s.

[0003] refer to figure 1 , the basic principle of permi...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More