Multi-tenant authority control method and system

A permission control and multi-tenant technology, applied in the computer field, can solve problems such as potential safety hazards, redundant role table data, single authentication method, etc., to achieve the effect of reducing data redundancy, improving security, and preventing unauthorized operations

Pending Publication Date: 2022-04-08
HANGXIAO STEEL STRUCTURE
View PDF7 Cites 1 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] Usually, for general business systems, the permission model generally adopts the traditional RBAC (Role-Based Access Control, role-based access control) model, while for multi-tenant industrial systems, the permission system designed by the traditional RBAC model It will make the role table data redundant, and the scope of data isolation is limited, so it is impossible to realize the data isolation of the same user in different tenants
However, the existing industrial system only authenticates the user's authority through the server
This authentication method is too simple, easy to be operated by unauthorized persons, and has potential security risks

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Multi-tenant authority control method and system
  • Multi-tenant authority control method and system
  • Multi-tenant authority control method and system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0045]The implementation mode of the present invention is illustrated by specific specific examples below, and those who are familiar with this technology can easily understand other advantages and effects of the present invention from the contents disclosed in this description. Obviously, the described embodiments are a part of the present invention. , but not all examples. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without making creative efforts belong to the protection scope of the present invention.

[0046] Compared with the prior art, the multi-tenant authority control method in the embodiment of the present application adds the concept of tenant on the basis of the original RBAC model. The data isolation between tenants is strengthened, the data redundancy of the database is reduced, and the authority control process is added. User operations are double-checked on the client and server to pr...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The embodiment of the invention discloses a multi-tenant authority control method and system, and the method comprises the steps: judging a user type of a user according to user account information sent by a client, and sending a user type token and user information to the client, so that the user carries out the operation according to the user information; according to a user operation request sent by the client, calling a multi-tenant authority control model to judge whether the role of the user and the tenant relationship identifier have the authority of operating the identifier in a database, and returning a judgment result to the client; and according to a data calling request sent by the client, calling a multi-tenant authority control model to judge whether the role of the user and the tenant relationship identifier have the authority of the data identifier in a database, and if so, calling corresponding data and returning the data to the client. The client and the server can perform multi-permission inspection on user requirements, so that unauthorized operation is prevented, and data redundancy of a database is reduced while security is improved.

Description

technical field [0001] The embodiments of the present application relate to the field of computer technology, and in particular to a multi-tenant authority control method and system. Background technique [0002] With the development of industrial informatization, authority control and user access security issues are becoming more and more important. [0003] Usually, for general business systems, the permission model generally adopts the traditional RBAC (Role-Based Access Control, role-based access control) model, while for multi-tenant industrial systems, the permission system designed by the traditional RBAC model It will make the role table data redundant, and the scope of data isolation is limited, so it is impossible to realize the data isolation of the same user in different tenants. However, the existing industrial system only authenticates the user's authority through the server. This kind of authentication method is too single, and it is easy to be operated by u...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L9/40H04L9/32
Inventor 张智超王振众张哲王泽群陈勇达
Owner HANGXIAO STEEL STRUCTURE
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products