Data access control method, electronic device, and storage medium

By implementing a whitelist routing strategy and user legitimacy verification between the application layer and the data layer, the problem of insufficient granularity in data access permission management in existing technologies is solved, achieving low-cost multi-layer security and minimizing data access permissions.

CN122419945APending Publication Date: 2026-07-17BAIRONG ZHIXIN (BEIJING) TECH CO LTD
View PDF 0 Cites 0 Cited by

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
BAIRONG ZHIXIN (BEIJING) TECH CO LTD
Filing Date
2026-05-26
Publication Date
2026-07-17

AI Technical Summary

Technical Problem

Existing data encryption solutions cannot effectively implement granular management of data access permissions. Unauthorized teams or individuals can still access data copies, and hardware solutions are costly and lack flexibility.

Method used

A four-layer security mechanism is implemented through whitelist routing policies and user legitimacy verification between the application layer and the data layer proxy service. This includes a first whitelist routing policy, a second whitelist routing policy, data layer user legitimacy verification, and permission verification, ensuring that only authorized users can access the target data.

Benefits of technology

It implements the principle of minimizing data access permissions, avoids the risk of data unauthorization, provides multi-layered security protection, and does not rely on expensive professional encryption hardware equipment, thus having a lower cost.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN122419945A_ABST
    Figure CN122419945A_ABST
Patent Text Reader

Abstract

本发明实施例公开了一种数据访问控制方法、电子设备及存储介质,方法包括:由应用层接收客户端发送的数据访问请求,并将数据访问请求发送至数据层代理服务;由数据层代理服务基于第一白名单路由策略验证应用层是否具有访问权限;在确定具有访问权限时,由数据层代理服务将数据访问请求发送至数据层;由数据层基于第二白名单路由策略验证数据层代理服务是否具有访问权限,并在确定具有访问权限时,基于数据访问请求验证当前用户是否为合法用户且是否具有对目标数据的访问权限;在确定当前用户为合法用户且具有对目标数据的访问权限时,由数据层按照数据访问请求对目标数据进行对应操作。可以有效实现数据访问权限的最小化原则,规避数据越权风险。
Need to check novelty before this filing date? Find Prior Art