Organization application permission management method and service system based on tree-shaped organization model

A technology for application rights and management methods, applied in the field of application rights management methods and service systems based on a tree-shaped organization model, can solve the problems that static rights management cannot be satisfied, and the authorization management technology is not applied by using the tree-shaped organization model, and achieves enhanced The effect of security and diversity, avoiding repetitive operations, meeting the needs of different access rights

Active Publication Date: 2018-07-24
INST OF INFORMATION ENG CAS
View PDF7 Cites 14 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

In this case, different login statuses of users should correspond to different permission levels, and role-based static permission management cannot meet their needs.
[0005] So far, there is still no...

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Organization application permission management method and service system based on tree-shaped organization model
  • Organization application permission management method and service system based on tree-shaped organization model
  • Organization application permission management method and service system based on tree-shaped organization model

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0028] In order to make the purpose, technical solution and advantages of the present invention more clear, the present invention will be further described in detail through examples below.

[0029] Such as figure 1 As shown, in the tree organization model, each institution has an institution ID as a unique identifier in the model. In addition, the organization also has a subordinate path, which is used to indicate the position of the organization on the tree model, that is, its subordinate relationship. The number in the subordinate path indicates the ID of the institution to reach the node from the root node, and different institution IDs are separated by a separator (the separator in the example is "."). Because each institution's ID is unique, each institution's subordinate path is also unique. Through the subordinate path, all the superior nodes of an organization can be traced back. The sum of the subordinate paths of all institutional nodes forms a complete instituti...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses an organization application permission management method and service system based on a tree-shaped organization model. The method comprises the steps of: establishing the tree-shaped organization model among organizations, i.e., an organization tree, wherein each organization corresponds to one node in the organization tree; setting applications and personnel for the organizations, and according to the organizations to which the personnel belongs, setting public application access permissions of the organizations to which the personnel belongs for the corresponding personnel; and setting a corresponding attribute level for each personnel, and for each application, according to an attribute level of a user, respectively setting a corresponding access strategy, wherein each organization has a unique organization ID and a subordinate path, and the subordinate path of each organization represents positions of the organization on the organization tree, i.e., the organization IDs which need to be passed through from a root node of the organization tree to the node corresponding to the organization. According to the invention, a subordinate relationship among different hierarchies of organizations, subordinate personnel and the applications is managed by the tree-shaped organization model, and when the application permission management operation is simplified,the requirement for the access permission difference is met.

Description

technical field [0001] The invention belongs to the fields of computer technology and information security technology, and relates to an application authority management method and a service system based on a tree organization model. It is suitable for the use case of managing application access permissions of subordinate personnel in a multi-level organizational structure. Background technique [0002] The organizational model is to model the organizational structure of an enterprise (or institution). It is a series of relationships constructed using abstract models or elements to express the hierarchy and affiliation among entities in the enterprise organization. The vast majority of organizational structures are based on a tree-like hierarchical structure: the organizational structure of an enterprise is composed of a series of hierarchical organizational units. Each organizational unit belongs to a certain level and has management responsibilities and duties for the orga...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L29/06G06F21/60G06F21/62
CPCG06F21/604G06F21/62H04L63/105
Inventor 荆继武孙荣辛蔡权伟赵宇航王琼霄王平建林璟锵
Owner INST OF INFORMATION ENG CAS
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products