Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Device and method based on LDAP (lightweight directory access protocol) user authorization management

A technology of user rights and users, applied in the field of communication, can solve problems such as heavy system maintenance workload and heavy system maintenance tasks, and achieve the effect of reducing maintenance burden

Active Publication Date: 2013-07-24
NEW H3C TECH CO LTD
View PDF5 Cites 6 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

Whether it is individual user authorization or group authorization, the existing technology has the disadvantage of heavy system maintenance workload, and when user permissions change, corresponding permission adjustments need to be made in the application system, making the system maintenance tasks more onerous

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Device and method based on LDAP (lightweight directory access protocol) user authorization management
  • Device and method based on LDAP (lightweight directory access protocol) user authorization management
  • Device and method based on LDAP (lightweight directory access protocol) user authorization management

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0020] Aiming at the problems existing in the prior art, the present invention provides an LDAP-based user rights management device and method, which are applied to a server of an application system interacting with an LDAP server. Please refer to figure 1 with figure 2 , the device includes a configuration module, a synchronization module and an authorization module. When the device implements the present invention, it executes the following processing flow:

[0021] In step 101, the configuration module sets the range of directories to be synchronized by LDAP.

[0022] In the LDAP server, the LDAP directory stores data in a tree-like hierarchical structure. Similar to the DNS host name, the LDAP directory identification name (Distinguished Name, DN for short) is used to read a single record, that is, it can be understood that DN is a node in a tree structure, and the top of the LDAP directory tree is the root, which is the base DN , the base DN is usually represented by...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention provides a device and method based on LDAP (lightweight directory access protocol) user authorization management, which are applied to a server of an application system interacting with an LDAP server. The device comprises the following processing flows of A. setting the synchronized directory range of an LDAP; B, synchronizing organization units in the synchronized directory range of the LDAP into the application system, and synchronizing users in the organization units into each group corresponding to the organization units in the application system; and C, authorizing functions on the groups in the application system. By adopting the technical scheme, the problem of large workload of administrators of the application system of the prior art is effectively solved, and the experience of a user is improved.

Description

technical field [0001] The invention relates to the technical field of communication, in particular to a device and method for managing user rights based on LDAP. Background technique [0002] LDAP (Lightweight Directory Access Protocol, Lightweight Directory Access Protocol) is a protocol used to distribute directory information to many different application resources. LDAP is equivalent to a phone book, similar to the network directories we use such as NIS (Network Information Service, Network Information Service), DNS (Domain Name Service, Domain Name Service). LDAP is a storage concept with a higher level of abstraction than relational databases. Unlike general databases, LDAP optimizes queries. Compared with write performance, LDAP read performance is much better. Various types of data can be stored in an LDAP directory, such as email addresses, mail routing information, human resources data, public keys, contact lists, and more. [0003] At present, more and more ent...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Applications(China)
IPC IPC(8): H04L12/24H04L29/06H04L29/08
Inventor 许文雨
Owner NEW H3C TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products