Hierarchical authority management component adaptive to management information system of multi-type organization

A technology for managing information systems and hierarchical rights, applied in the field of hierarchical rights management components, which can solve the problems of low system scalability and easy maintenance, high requirements for skills and business familiarity, and complex implementation of rights configuration and control. , to achieve the effect of high maintainability and scalability, reduced workload, and convenient use

Inactive Publication Date: 2019-10-01
CHINA THREE GORGES CORPORATION +1
View PDF3 Cites 9 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

Specifically, when it comes to the realization of data-level permissions for different business function modules of the system, configuration and code need to be modified. Once the data of each business function module involves different types of organizations, the realization of system permission configuration and control is even more complicated.
In the development phase, the requirements for developers’ skills and business familiarity are high; in the system operation and maintenance phase, the administrator’s authorization configuration is also more complicated
Using the current technical methods to realize data-level rights management requires a large cost in terms of manpower, time, and quality assurance costs. In addition, it will also result in low scalability and easy maintenance of the system.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Hierarchical authority management component adaptive to management information system of multi-type organization
  • Hierarchical authority management component adaptive to management information system of multi-type organization

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0032] As shown in Figure 1, the entities of this embodiment include: ①application, ②filter condition, ③role, ④user organization relationship, the relationship between entities is ①application and ②filter condition is a one-to-many configuration relationship, ③role and ①Application is a many-to-many grant relationship, ③role and ②filter condition is a many-to-many grant relationship, ③role and ④user organization relationship is a many-to-many distribution relationship.

Embodiment 2

[0034] The specific steps of the implementation method of user data permission control are as follows:

[0035] Step 1: The currently logged-in user of the system accesses application A, and the initial filter condition SQL is "" start;

[0036] Step 2: Obtain the role granted by the user to application A;

[0037] Step 3: Determine whether the number of roles granted by the user is 0, if yes, go to the next step, if otherwise, go to step 5;

[0038] Step 4: Set the filter condition SQL to "1!=1", and go to step 16;

[0039] Step 5: Query the application A granted by the relevant role and its configured filter conditions;

[0040] Step 6: Obtain the i-th (i=1,...,M[the number of roles that the user is assigned to and own the role of application A]) application A granted by the role and its configured filter conditions;

[0041] Step 7: Determine whether the current role is granted the filtering conditions of application A, if otherwise, go to the next step, if yes, go to step 9;

[0042] S...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a hierarchical authority management component adaptive to a management information system of a multi-type organization. The component comprises: application program filtering condition configuration, used for defining the conditions which should be met by data which can be checked when a current login user enters an application program, the condition definition being in a parameterization mode, and the data table attribute value being expressed as the condition that the data line can be checked within a certain type of data permission range of the current login user orunder the condition that an intersection exists; and user data permission hierarchical configuration used for allocating users to specified roles and granting corresponding organizations, and the roles being associated with application program conditions and also associated with the users. And the user data authority control is used for controlling the current system login user to check the data range in the specific application program. Through the function module, filtering conditions configured by an application program where a current system login user is located and roles and organizations of user data permission hierarchical configuration can be obtained. According to the hierarchical authority management component, the overall construction cost of the management information system can be reduced, and the development efficiency and the construction quality are improved.

Description

Technical field [0001] The invention relates to the technical field of management information system security, in particular to a hierarchical authority management component adapted to a management information system of multiple types of organizations. Background technique [0002] Authority management is the basic functional module of the management information system, and also the security guarantee of the management information system. It plays an indispensable role in the system. However, in terms of data-level permissions, the current permissions configuration and control have not been very ideal. The technical methods used are generally hard-coded combined with data rules, and there is no universal and easy-to-use permission management component. [0003] The realization of data-level authority is a technical difficulty in the construction of management information systems. Specific to the realization of the data-level authority of different business function modules of the ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06F21/62G06F21/45
CPCG06F21/45G06F21/6227
Inventor 周竞亮朱强赵丽娟谭业贵郭晓松周益龙裴宇锋李喜邦
Owner CHINA THREE GORGES CORPORATION
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products