Control Method, Device, and Server of a Server
By separating business and asset management with cloud-based business management servers and on-premises asset management servers, the system addresses high costs and data security issues in ABS asset securitization, achieving cost reduction and enhanced data privacy through protocol conversion and encryption.
Patent Information
- Application Number
- CN202110921155.9
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- Filing Date
- 2021-08-11
- Publication Date
- 2025-07-15
- Estimated Expiration
- 2041-08-11
AI Technical Summary
The existing ABS asset securitization management system has problems such as high construction and operation and maintenance costs and the inability to ensure data security.
Separate business management and asset management, deploy business management servers in the cloud, and asset management servers in the local area. Through the interaction between the business management server and the asset management server, the business logic is controlled in the cloud, use the target protocol for data transmission, and ensure data security through identity identification and encryption mechanisms.
It reduces the construction and operation and maintenance costs of the asset party, improves the privacy and data security of asset information, and reduces the risk of data leakage.
Smart Images

Figure CN113641494B_ABST
Abstract
Description
Technical Field
[0001] The present invention relates to the technical field of data processing, and in particular, to a control method for a server, a control device for a server, a control method for a server, a control device for a server, a service management server, an asset management server, a service management system, and a readable storage medium. Background Art
[0002] The existing ABS asset securitization management systems mainly have two deployment schemes. One scheme is that the asset side conducts ABS business by itself and manages internal assets; the other scheme is to connect the ABS business of other enterprises to the local and conduct business.
[0003] Those skilled in the art have found the following drawbacks in the above two ABS asset securitization management systems:
[0004] For the first method, the asset side's own ABS business and management of internal assets require a large amount of manpower and material resources, and the construction and operation and maintenance costs are relatively high; for the second method, the asset side needs to submit asset information to an enterprise with ABS business, and this method will disclose the information of the asset side, and data security cannot be guaranteed. Summary of the Invention
[0005] The present invention aims to at least solve one of the technical problems existing in the prior art or related technologies.
[0006] To this end, the first aspect of the present invention is to provide a control method for a server.
[0007] The second aspect of the present invention is to provide a control device for a server.
[0008] The third aspect of the present invention is to provide a control method for a server.
[0009] The fourth aspect of the present invention is to provide a control device for a server.
[0010] The fifth aspect of the present invention is to provide an asset management server.
[0011] The sixth aspect of the present invention is to provide an asset management server.
[0012] The seventh aspect of the present invention is to provide a service management system.
[0013] The eighth aspect of the present invention is to provide a readable storage medium.
[0014] In view of this, according to the first aspect of the present invention, the present invention provides one of the control methods of a server. The business management server interacts with at least one asset management server. The control method of the business management server includes: based on the triggering of the business of the target user, sending business data to the asset management server corresponding to the target user, so that the asset management server corresponding to the target user calls the asset information and performs business operations on the asset information according to the business data.
[0015] The technical solution of this application aims to solve the problems existing in the existing ABS asset securitization management system, such as the relatively high construction and operation and maintenance costs and the inability to guarantee data security. A solution of separating business management and asset management is proposed.
[0016] Specifically, the asset information is managed by the asset management server, while the triggering and operation of the business are managed by the business management server. For the asset side, only by constructing the asset management server can the ABS asset securitization management be realized. Therefore, it avoids the need for the asset side to have a large amount of manpower and material resources for its own ABS business and internal asset management, and reduces the construction and operation and maintenance costs.
[0017] In addition, the asset management server corresponding to the target user calls the asset information and performs operations on the asset information according to the business data. This is achieved by using the business management server to trigger the business and sending the business data to the asset management server corresponding to the target user. The business management server does not involve the content of the asset information. Therefore, it can improve the privacy of the asset information of the asset side, reduce the probability of its leakage, and ensure data security.
[0018] In any of the above technical solutions, the business management server is deployed in the cloud, and the asset management server is deployed on the ground. Through the above solution, the business logic is controlled by the cloud, the command is sent to the ground, and the ground controls the assets and performs actual asset operations.
[0019] In addition, according to the above control method of the server of the present invention, it may also have the following technical features:
[0020] In the above technical solution, sending the business data to the asset management server corresponding to the target user specifically includes: obtaining the sending protocol of the business management server; based on the inconsistency between the sending protocol and the target protocol, performing protocol conversion on the business data represented by the sending protocol; and sending the business data represented by the target protocol to the asset management server corresponding to the target user.
[0021] In this technical solution, considering that the protocols between the business management server and the asset management server may be different, and in the case of different protocols, the sending of business data may fail.
[0022] To avoid the above situation, the technical solution of the present application specifically defines that the protocol used for data transmission between the service management server and the asset management server is the target protocol, so as to standardize the data transmission between the service management server and the asset management server and ensure the stable progress of data transmission.
[0023] In one of the technical solutions, the service management server has a service forwarding application for protocol conversion. Similarly, the asset management server has a service forwarding application also for protocol conversion. The forwarding protocol between the service management server and the asset management server is implemented through the corresponding service forwarding applications, that is, the target protocol is used for transmission between the service forwarding applications.
[0024] In this process, according to the communication situation between the service management server and different users (asset management servers), since the service management server has different protocols for multiple ground terminals, that is, multiple asset parties, the service forwarding application must be able to handle multi-protocol conversion to ensure the stable transmission of data.
[0025] In any of the above technical solutions, before sending service data to the asset management server corresponding to the target user, it further includes: obtaining the unique identity identification of the target user; performing a hash calculation on the unique identity identification to obtain the first identity identification information; encrypting the service content using the public key corresponding to the target user to obtain the encrypted service content; and using the encrypted service content and the first identity identification information as service data.
[0026] In this technical solution, the content included in the service data is specifically defined. By defining that the service data includes the first identity identification information, after the service management server sends the service data to the asset management server, the asset management server can compare the second identity identification information calculated by it with the received first identity identification information, thereby realizing the verification of the service data. Only when the first identity identification information and the second identity identification information are consistent, the service content is processed.
[0027] In addition, by obtaining the unique identity identification of the target user and performing a hash calculation on the unique identity identification to obtain the first identity identification information, the unique identity identification of the target user is hidden, reducing the probability of its leakage.
[0028] By defining that the service content is encrypted using the public key corresponding to the target user to obtain the encrypted service content, only when the first identity identification information and the second identity identification information are consistent, the private key corresponding to the user of the asset management server is used to decrypt the encrypted service content to obtain the service content, so as to improve the confidentiality of the service content and reduce the risk of its leakage.
[0029] In any of the above technical solutions, the business includes at least one of the following: packaged assets, revolving purchase, daily repayment and refund.
[0030] According to the second aspect of the present invention, the present invention provides one of the control devices of a server. The business management server interacts with at least one asset management server. The control device of the server includes: a sending unit, configured to send business data to the asset management server corresponding to the target user based on the triggering of the business of the target user, so that the asset management server corresponding to the target tenant calls the asset information and performs business operations on the asset information according to the business data.
[0031] The technical solution of the present application aims to solve the problems existing in the existing ABS asset securitization management system, such as high construction and operation and maintenance costs and inability to guarantee data security, and proposes a solution to separate business management and asset management.
[0032] Specifically, the asset information is managed by the asset management server, while the triggering and operation of the business are managed by the business management server. For the asset side, only by constructing the asset management server can the ABS asset securitization management be realized. Therefore, it avoids the need for the asset side to have its own ABS business and manage internal assets, which requires a large amount of manpower and material resources, and reduces the construction and operation and maintenance costs.
[0033] In addition, the asset management server corresponding to the target user calls the asset information and performs business operations on the asset information according to the business data. This is achieved by using the business management server to trigger the business and sending the business data to the asset management server corresponding to the target user. The business management server does not involve the content of the asset information. Therefore, the privacy of the asset information of the asset side can be improved, the probability of its leakage is reduced, and the data security is guaranteed.
[0034] In any of the above technical solutions, the business management server is deployed in the cloud, and the asset management server is deployed at the asset side. Through the above solution, the business logic is controlled by the cloud, and the commands are sent to the ground end, and the ground end controls the assets and performs actual asset operations.
[0035] In addition, according to one of the above control devices of the server of the present invention, the following technical features may also be provided:
[0036] In the above technical solution, the sending unit is specifically configured to: obtain the sending protocol of the business management server; perform protocol conversion on the business data represented by the sending protocol based on the inconsistency between the sending protocol and the target protocol; and send the business data represented by the target protocol to the asset management server corresponding to the target user.
[0037] In this technical solution, considering that the protocols between the service management server and the asset management server may be different, and in the case of different protocols, the sending of service data may not be successful.
[0038] To avoid the above situation, the technical solution of this application specifically defines that the protocol used for data transmission between the service management server and the asset management server is the target protocol, so as to standardize the data transmission between the service management server and the asset management server and ensure the stable progress of data transmission.
[0039] In one of the technical solutions, the service management server has a service forwarding application for protocol conversion. Similarly, the asset management server has a service forwarding application for protocol conversion. The forwarding protocol between the service management server and the asset management server is implemented through the corresponding service forwarding applications, that is, the target protocol is used for transmission between the service forwarding applications.
[0040] In this process, according to the communication situation between the service management server and different users (asset management servers), since the service management server has different protocols for multiple ground ends, that is, multiple asset parties, the service forwarding application must be able to handle multi-protocol conversion to ensure the stable transmission of data.
[0041] In any of the above technical solutions, the sending unit is further configured to: obtain the unique identity identification of the target user; perform a hash calculation on the unique identity identification to obtain the first identity identification information; encrypt the service content using the public key corresponding to the target user to obtain the encrypted service content; and use the encrypted service content and the first identity identification information as service data.
[0042] In this technical solution, the content included in the service data is specifically defined. By defining that the service data includes the first identity identification information, after the service management server sends the service data to the asset management server, the asset management server can compare the second identity identification information calculated by it with the received first identity identification information, thereby realizing the verification of the service data. Only when the first identity identification information and the second identity identification information are consistent, the service content is processed.
[0043] In addition, by obtaining the unique identity identification of the target user and performing a hash calculation on the unique identity identification to obtain the first identity identification information, the unique identity identification of the target user is hidden, reducing the probability of its leakage.
[0044] By limiting the use of the public key corresponding to the target user to encrypt the service content to obtain the encrypted service content, and only when the first identity identification information and the second identity identification information are consistent, the private key of the user corresponding to the asset management server is used to decrypt the encrypted service content to obtain the service content, so as to improve the secrecy of the service content and reduce the risk of its leakage.
[0045] In any of the above technical solutions, the service includes at least one of the following: packaged assets, cyclic purchase, daily repayment and refund.
[0046] According to the third aspect of the present invention, the present invention provides a second control method for a server. The asset management server interacts with the service management server. The control method of the server includes: receiving service data from the service management server; invoking asset information and performing service operations on the asset information according to the service data.
[0047] The technical solution of this application is to solve the problems of high construction and operation and maintenance costs and inability to guarantee data security existing in the existing ABS asset securitization management system, and proposes a solution to separate service management and asset management.
[0048] Specifically, the asset information is managed by the asset management server, while the triggering and operation of the service are managed by the service management server. For the asset side, only the asset management server needs to be constructed to realize the ABS asset securitization management. Therefore, it avoids the need for the asset side to have its own ABS business and manage internal assets, which requires a large amount of manpower and material resources, and reduces the construction and operation and maintenance costs. In addition, the asset management server corresponding to the target user invokes the asset information and performs service operations on the asset information according to the service data, which is realized by using the service management server to trigger the service and sending the service data to the asset management server corresponding to the target user. The service management server does not involve the content related to the asset information. Therefore, the privacy of the asset information of the asset side can be improved, the probability of its leakage is reduced, and the data security is guaranteed.
[0049] In any of the above technical solutions, the service management server is deployed in the cloud, and the asset management server is deployed at the asset side. Through the above solution, the service logic is controlled by the cloud, the command is sent to the ground end, and the ground end controls the assets to perform actual asset operations.
[0050] In addition, according to the above control method of the server of the present invention, the following technical features may also be included:
[0051] In the above technical solution, receiving business data from the business management server specifically includes: obtaining the receiving protocol of the asset management server; based on the receiving protocol being inconsistent with the target protocol, performing protocol conversion on the business data represented by the target protocol to obtain the business data represented by the receiving protocol.
[0052] In this technical solution, considering that the protocols between the business management server and the asset management server may be different, and in the case of different protocols, the sending of business data may fail.
[0053] To avoid the above situation, the technical solution of this application specifically defines that the protocol used for data transmission between the business management server and the asset management server is the target protocol, so as to standardize the data transmission between the business management server and the asset management server and ensure the stable progress of data transmission.
[0054] In one of the technical solutions, the business management server has a service forwarding application for performing protocol conversion. Similarly, the asset management server has a service forwarding application also for performing protocol conversion. The forwarding protocol between the business management server and the asset management server is implemented through the corresponding service forwarding applications, that is, the target protocol is used for transmission between the service forwarding applications.
[0055] During this process, according to the communication situation between the business management server and different users (asset management servers), since the business management server has different protocols for multiple endpoints, that is, multiple asset parties, the service forwarding application must be able to handle multi-protocol conversion to ensure the stable transmission of data.
[0056] In any of the above technical solutions, calling the asset information and performing business operations on the asset information according to the business data includes: parsing the business data to obtain the first identity identification information and the encrypted business content; obtaining the unique identity identification of the user corresponding to the asset management server; performing a hash calculation on the unique identity identification of the user corresponding to the asset management server to obtain the second identity identification information; based on the second identity identification information being consistent with the first identity identification information, decrypting the encrypted business content using the private key of the user corresponding to the asset management server to obtain the business content; calling the asset information and performing business operations according to the business content.
[0057] In this technical solution, the content included in the service data is specifically defined. By defining that the service data includes the first identity identification information, after the service management server sends the service data to the asset management server, the asset management server can compare the second identity identification information calculated by it with the received first identity identification information, thereby realizing the verification of the service data. Only when the first identity identification information and the second identity identification information are consistent, the processing of the service content is executed.
[0058] In addition, the unique identity identification of the target user is obtained; and the unique identity identification is subjected to a hash calculation to obtain the first identity identification information, so as to hide the unique identity identification of the target user and reduce the probability of its leakage.
[0059] By defining that the public key corresponding to the target user is used to encrypt the service content to obtain the encrypted service content, only when the first identity identification information and the second identity identification information are consistent, the private key of the user corresponding to the asset management server is used to decrypt the encrypted service content to obtain the service content, so as to improve the secrecy of the service content and reduce the risk of its leakage.
[0060] In any of the above technical solutions, the service includes at least one of the following: packaged assets, recurring purchases, and daily repayment and refund.
[0061] According to the fourth aspect of the present invention, the present invention provides a second control device for a server. The asset management server interacts with the service management server. The control device of the server includes: a receiving unit for receiving service data from the service management server; and an execution unit for calling asset information and performing a service operation on the asset information according to the service data.
[0062] The technical solution of this application is to solve the problems of high construction and operation and maintenance costs and inability to guarantee data security existing in the existing ABS asset securitization management system, and proposes a solution to separate service management and asset management.
[0063] Specifically, asset information is managed by the asset management server, while the triggering and operation of the business are managed by the business management server. For the asset side, only by constructing the asset management server can the ABS asset securitization management be realized. Therefore, it avoids the need for the asset side to have its own ABS business and manage internal assets, which requires a large amount of manpower and material resources, and reduces the construction and operation and maintenance costs. In addition, the asset management server corresponding to the target user calls the asset information and performs business operations on the asset information according to the business data. It is realized by using the business management server to trigger the business and sending the business data to the asset management server corresponding to the target user. The business management server does not involve the content of the asset information. Therefore, it can improve the privacy of the asset information of the asset side, reduce the probability of leakage, and ensure data security.
[0064] In any of the above technical solutions, the business management server is deployed in the cloud, and the asset management server is deployed at the asset side. Through the above solution, the business logic is controlled by the cloud, the command is sent to the local end, and the local end controls the assets for actual asset operations.
[0065] In addition, according to the control device of the above server of the present invention, it may further have the following technical features:
[0066] In the above technical solution, the receiving unit is specifically used for: obtaining the receiving protocol of the asset management server; based on the receiving protocol being inconsistent with the target protocol, performing protocol conversion on the business data represented by the target protocol to obtain the business data represented by the receiving protocol.
[0067] In this technical solution, it is considered that the protocols between the business management server and the asset management server may be different, and in the case of different protocols, the sending of business data may fail.
[0068] To avoid the above situation, the technical solution of the present application specifically defines the protocol used for data transmission between the business management server and the asset management server as the target protocol, so as to standardize the data transmission between the business management server and the asset management server and ensure the stable progress of data transmission.
[0069] In one of the technical solutions, the business management server has a service forwarding application for protocol conversion. Similarly, the asset management server has a service forwarding application for protocol conversion. The forwarding protocol between the business management server and the asset management server is implemented through the corresponding service forwarding application, that is, the target protocol is used for transmission between the service forwarding applications.
[0070] In this process, according to the communication situation between the service management server and different users (asset management servers), since the service management server needs to communicate with multiple ground terminals, that is, multiple asset parties, and the protocols are different, the service forwarding application should be able to handle multi-protocol conversion to ensure the stable transmission of data.
[0071] In any of the above technical solutions, the execution unit is specifically configured to: parse the service data to obtain the first identity identification information and the encrypted service content; obtain the unique identity identification of the user corresponding to the asset management server; perform a hash calculation on the unique identity identification of the user corresponding to the asset management server to obtain the second identity identification information; based on the consistency between the second identity identification information and the first identity identification information, use the private key of the user corresponding to the asset management server to decrypt the encrypted service content to obtain the service content; call the asset information and perform service operations according to the service content.
[0072] In this technical solution, the content included in the service data is specifically defined. By defining that the service data includes the first identity identification information, after the service management server sends the service data to the asset management server, the asset management server can compare the second identity identification information calculated by it with the received first identity identification information, thereby realizing the verification of the service data. Only when the first identity identification information and the second identity identification information are consistent, the service content is processed.
[0073] In addition, by obtaining the unique identity identification of the target user; and performing a hash calculation on the unique identity identification to obtain the first identity identification information, the unique identity identification of the target user is hidden, reducing the probability of its leakage.
[0074] By defining that the public key corresponding to the target user is used to encrypt the service content to obtain the encrypted service content, and only when the first identity identification information and the second identity identification information are consistent, the private key of the user corresponding to the asset management server is used to decrypt the encrypted service content to obtain the service content, so as to improve the confidentiality of the service content and reduce the risk of its leakage.
[0075] In any of the above technical solutions, the service includes at least one of the following: packaging assets, cyclic purchase, daily repayment and refund.
[0076] According to the fifth aspect of the present invention, the present invention provides a service management server, including: a first memory, the first memory stores a computer program; a first controller, the first controller executes the computer program to implement the steps of the control method of the server in any one of the above.
[0077] The technical solution of this application proposes a service management server, which includes a first memory and a first controller. Among them, the first controller executes a computer program to implement the steps of the server control method as described in any one of the above, and therefore has all the beneficial technical effects of the server control method described in any one of the above. Here, it will not be elaborated further.
[0078] According to the sixth aspect of the present invention, the present invention provides an asset management server, including: a second memory, and the second memory stores a computer program; a second controller, and the second controller executes the computer program to implement the steps of the server control method as described in any one of the above.
[0079] The technical solution of this application proposes an asset management server, which includes a second memory and a second controller. Among them, the second controller executes a computer program to implement the steps of the server control method as described in any one of the above, and therefore has all the beneficial technical effects of the server control method described in any one of the above. Here, it will not be elaborated further.
[0080] According to the seventh aspect of the present invention, the present invention provides a service management system, including: the service management server as described above; the asset management server as described above.
[0081] In any of the above technical solutions, the service management system is an ABS asset securitization management system.
[0082] According to the eighth aspect of the present invention, the present invention provides a readable storage medium, characterized in that a program or instruction is stored on the readable storage medium, and when the program or instruction is executed by a processor, it implements the steps of the server control method for the service management server as described in any one of the above or the steps of the server control method for the asset management server as described in any one of the above.
[0083] The additional aspects and advantages of the present invention will be partially given in the following description, partially become obvious from the following description, or be understood through the practice of the present invention. BRIEF DESCRIPTION OF THE DRAWINGS
[0084] The above and / or additional aspects and advantages of the present invention will become obvious and easy to understand from the description of the embodiments in conjunction with the following drawings, where:
[0085] Figure 1 It shows a schematic flowchart of the server control method for the service management server in the embodiment of the present invention;
[0086] Figure 2 It shows a schematic flowchart of sending service data to the asset management server corresponding to the target user in the embodiment of the present invention;
[0087] Figure 3Shows an interaction schematic diagram between a service management server and an asset management server in an embodiment of the present invention;
[0088] Figure 4 Shows a flowchart of a control method for a server for a service management server in an embodiment of the present invention;
[0089] Figure 5 Shows a schematic block diagram of a control device for a server for a service management server in an embodiment of the present invention;
[0090] Figure 6 Shows a flowchart of a control method for a server for an asset management server in an embodiment of the present invention;
[0091] Figure 7 Shows a flowchart of receiving service data from a service management server in an embodiment of the present invention;
[0092] Figure 8 Shows a flowchart of invoking asset information and performing a service operation on the asset information according to service data in an embodiment of the present invention;
[0093] Figure 9 Shows a schematic block diagram of a control device for a server for an asset management server in an embodiment of the present invention;
[0094] Figure 10 Shows a schematic block diagram of a service management server in an embodiment of the present invention;
[0095] Figure 11 Shows a schematic block diagram of an asset management server in an embodiment of the present invention;
[0096] Figure 12 Shows a schematic block diagram of a service management system in an embodiment of the present invention. Detailed implementation manners
[0097] In order to be able to more clearly understand the above aspects, features and advantages of the present invention, the present invention will be further described in detail below in conjunction with the drawings and specific implementation manners. It should be noted that, without conflict, the embodiments of the present application and the features in the embodiments may be combined with each other.
[0098] In the following description, many specific details are set forth in order to fully understand the present invention. However, the present invention may also be implemented in other ways different from those described herein. Therefore, the protection scope of the present invention is not limited by the specific embodiments disclosed below.
[0099] Such as Figure 1As shown, according to the first aspect of the present invention, the present invention provides a control method for a server, which is used for a service management server. Among them, the service management server interacts with at least one asset management server. The control method of the server includes:
[0100] Step 102, based on the triggering of the service of the target user, send service data to the asset management server corresponding to the target user, so that the asset management server corresponding to the target user calls the asset information and performs service operations on the asset information according to the service data.
[0101] Embodiments of the present application are proposed to separate service management and asset management in order to solve the problems of high construction and operation and maintenance costs and unguaranteed data security existing in the existing ABS asset securitization management system.
[0102] Specifically, the asset information is managed by the asset management server, while the triggering and operation of the service are managed by the service management server. For the asset side, only by constructing the asset management server can the ABS asset securitization management be realized. Therefore, it avoids the need for the asset side to have its own ABS business and manage internal assets, which requires a large amount of manpower and material resources, and reduces the construction and operation and maintenance costs.
[0103] In addition, the asset management server corresponding to the target user calls the asset information and performs service operations on the asset information according to the service data. This is achieved by using the service management server to trigger the service and send the service data to the asset management server corresponding to the target user. The service management server does not involve the content of the asset information. Therefore, it can improve the privacy of the asset information of the asset side, reduce the probability of its leakage, and ensure data security.
[0104] In any of the above embodiments, the service management server is deployed in the cloud, and the asset management server is deployed on the ground. Through the above solution, the service logic is controlled by the cloud, the command is sent to the ground, and the ground controls the assets to perform actual asset operations.
[0105] In the above embodiment, as Figure 2 shown, sending service data to the asset management server corresponding to the target user specifically includes:
[0106] Step 202, obtain the sending protocol of the service management server;
[0107] Step 204, based on the inconsistency between the sending protocol and the target protocol, perform protocol conversion on the service data represented by the sending protocol;
[0108] Step 206, send the service data represented by the target protocol to the asset management server corresponding to the target user.
[0109] In this embodiment, considering that the protocols between the service management server and the asset management server may be different, and in the case of different protocols, the sending of service data may not be successful.
[0110] To avoid the above situation, the embodiment of the present application specifically defines the protocol used for data transmission between the service management server and the asset management server as the target protocol, so as to standardize the data transmission between the service management server and the asset management server and ensure the stable progress of data transmission.
[0111] In one of the embodiments, as Figure 3 shown, the service management server has a service forwarding application for protocol conversion. Similarly, the asset management servers corresponding to User A, User B, and User C each have a service forwarding application, which is also used for protocol conversion. The forwarding protocol between the service management server and the asset management server is implemented through the corresponding service forwarding applications, that is, the target protocol is used for transmission between the service forwarding applications.
[0112] For example, if the service management server is Protocol A and the service forwarding application corresponding to the asset management server is also Protocol A, but the asset management server is Protocol B, then the service forwarding application corresponding to the asset management server performs a conversion; if the service forwarding application corresponding to the asset management server is Protocol C, then the service management server converts Protocol A to Protocol C and sends it to the service forwarding application corresponding to the asset management server.
[0113] In this process, according to the communication situation between the service management server and different users (asset management servers), since the service management server communicates with multiple ground terminals, that is, multiple asset parties, and the protocols are not the same, the service forwarding application must be able to handle multi-protocol conversion to ensure the stable transmission of data.
[0114] In any of the above embodiments, the target protocol may be external network https. The service management server and the corresponding service forwarding application use protocols such as rpc and internal network http. By limiting the conversion of service data transmitted in an interactive manner such as rpc and internal network http to an external network https interactive manner, the stable progress of data transmission is ensured.
[0115] In any of the above embodiments, as Figure 4 shown, before sending service data to the asset management server corresponding to the target user, it further includes:
[0116] Step 402, obtaining the unique identity identification of the target user;
[0117] Step 404: Calculate the hash of the unique identity identifier to obtain the first identity identification information;
[0118] Step 406: Encrypt the service content using the public key corresponding to the target user to obtain the encrypted service content;
[0119] Step 408: Use the encrypted service content and the first identity identification information as service data.
[0120] In this embodiment, the content included in the service data is specifically defined. By defining that the service data includes the first identity identification information, after the service management server sends the service data to the asset management server, the asset management server can compare the second identity identification information calculated by it with the received first identity identification information, thereby realizing the verification of the service data. Only when the first identity identification information and the second identity identification information are consistent, the service content is processed.
[0121] In addition, by obtaining the unique identity identifier of the target user; and calculating the hash of the unique identity identifier to obtain the first identity identification information, the unique identity identifier of the target user is hidden, reducing the probability of its leakage.
[0122] By defining that the service content is encrypted using the public key corresponding to the target user to obtain the encrypted service content, only when the first identity identification information and the second identity identification information are consistent, the private key corresponding to the user of the asset management server is used to decrypt the encrypted service content to obtain the service content, so as to improve the confidentiality of the service content and reduce the risk of its leakage.
[0123] For example, the unique identity identifier of user A is id_A. After calculating its hash, hash(tenant_id_A) is obtained. The public key corresponding to user A is A_pub_key encrypt(msg). Combining the service content package, the encrypted service content decrypt(msg) and hash(tenant_id_A)_rec hash(tenant_id_A)_self are sent to the asset management server corresponding to the target user.
[0124] In any of the above embodiments, the service operation includes at least one of the following: packaging assets, cyclic purchase, and daily repayment and refund.
[0125] In one of the embodiments, such as Figure 5As shown, a control device 500 for a service management server is provided for the service management server. Among them, the service management server interacts with at least one asset management server. The control device 500 of the service management server includes: a sending unit 502, configured to send service data to the asset management server corresponding to the target user based on the triggering of the service of the target user, so that the asset management server corresponding to the target user calls asset information and performs a service operation on the asset information according to the service data.
[0126] The embodiments of the present application are proposed to separate service management and asset management in order to solve the problems of high construction and operation and maintenance costs and inability to guarantee data security existing in the existing ABS asset securitization management system.
[0127] Specifically, asset information is managed by the asset management server, while the triggering and operation of services are managed by the service management server. For the asset side, only by constructing the asset management server can the ABS asset securitization management be realized. Therefore, it avoids the need for the asset side to have a large amount of manpower and material resources for its own ABS business and internal asset management, and reduces the construction and operation and maintenance costs.
[0128] In addition, the asset management server corresponding to the target user calls asset information and performs a service operation on the asset information according to the service data. This is achieved by using the service management server to trigger the service and sending the service data to the asset management server corresponding to the target user. The service management server does not involve the content of asset information. Therefore, it can improve the privacy of the asset information of the asset side, reduce the probability of leakage, and ensure data security.
[0129] In any of the above embodiments, the service management server is deployed in the cloud, and the asset management server is deployed at the asset side. Through the above solution, the service logic is controlled by the cloud, the command is sent to the ground end, and the ground end controls the assets for actual asset operations.
[0130] In the above embodiment, the sending unit 502 is specifically configured to: obtain the sending protocol of the service management server; perform protocol conversion on the service data represented by the sending protocol based on the inconsistency between the sending protocol and the target protocol; and send the service data represented by the target protocol to the asset management server corresponding to the target user.
[0131] In this embodiment, considering that the protocols between the service management server and the asset management server may be different, and in the case of different protocols, the sending of service data may fail.
[0132] To avoid the above situation, embodiments of the present application specifically define the protocol used for data transmission between the service management server and the asset management server as the target protocol, so as to standardize the data transmission between the service management server and the asset management server and ensure the stable progress of data transmission.
[0133] In one embodiment, the service management server has a service forwarding application for protocol conversion. Similarly, the asset management server has a service forwarding application for protocol conversion. The forwarding protocol between the service management server and the asset management server is implemented through the corresponding service forwarding applications, that is, the target protocol is used for transmission between the service forwarding applications.
[0134] For example, if the service management server is protocol A and the corresponding service forwarding application of the asset management server is also protocol A, but the asset management server is protocol B, then the corresponding service forwarding application of the asset management server performs a conversion; if the corresponding service forwarding application of the asset management server is protocol C, then the service management server converts protocol A into protocol C and sends it to the corresponding service forwarding application of the asset management server.
[0135] In this process, according to the communication situation between the service management server and different users (asset management servers), since the service management server needs to communicate with multiple endpoints, that is, multiple asset parties, and the protocols are different, the service forwarding application must be able to handle multi-protocol conversion to ensure the stable transmission of data.
[0136] In any of the above embodiments, the target protocol may be external network https. The service management server and the corresponding service forwarding application use protocols such as rpc and internal network http. By limiting the conversion of service data transmitted in interactive modes such as rpc and internal network http into external network https interactive mode, the stable progress of data transmission is ensured.
[0137] In any of the above embodiments, the sending unit 502 is further configured to: obtain the unique identity identification of the target user; perform a hash calculation on the unique identity identification to obtain the first identity identification information; encrypt the service content using the public key corresponding to the target user to obtain the encrypted service content; and use the encrypted service content and the first identity identification information as service data.
[0138] In this embodiment, the content included in the service data is specifically defined. By defining that the service data includes the first identity identification information, after the service management server sends the service data to the asset management server, the asset management server can compare the calculated second identity identification information with the received first identity identification information, thereby realizing the verification of the service data. Only when the first identity identification information and the second identity identification information are consistent, the processing of the service content is executed.
[0139] In addition, obtain the unique identity identification of the target user; and perform a hash calculation on the unique identity identification to obtain the first identity identification information, so as to hide the unique identity identification of the target user and reduce the probability of its leakage.
[0140] By defining that the public key corresponding to the target user is used to encrypt the service content to obtain the encrypted service content, only when the first identity identification information and the second identity identification information are consistent, the private key of the user corresponding to the asset management server is used to decrypt the encrypted service content to obtain the service content, so as to improve the secrecy of the service content and reduce the risk of its leakage.
[0141] In any of the above embodiments, the service operation includes at least one of the following: packaging assets, cyclic purchase, and daily repayment refund.
[0142] In any of the above embodiments, as Figure 6 shown, the present invention provides a control method for a server, which is used for an asset management server. Among them, the asset management server interacts with the service management server, and the control method of the asset management server includes:
[0143] Step 602, receive service data from the service management server;
[0144] Step 604, call asset information and perform a service operation on the asset information according to the service data.
[0145] The embodiments of the present application are proposed to solve the problems of high construction and operation and maintenance costs and inability to guarantee data security existing in the existing ABS asset securitization management system, and propose a solution to separate service management and asset management.
[0146] Specifically, asset information is managed by the asset management server, while the triggering and operation of the business are managed by the business management server. For the asset side, only by constructing the asset management server can the ABS asset securitization management be realized. Therefore, it avoids the need for the asset side to have its own ABS business and manage internal assets, which requires a large amount of manpower and material resources, and reduces the construction and operation and maintenance costs. In addition, the asset management server corresponding to the target user calls the asset information and performs business operations on the asset information according to the business data. It is achieved by using the business management server to trigger the business and sending the business data to the asset management server corresponding to the target user. The business management server does not involve the content related to asset information. Therefore, it can improve the privacy of the asset information of the asset side, reduce the probability of leakage, and ensure data security.
[0147] In any of the above embodiments, the business management server is deployed in the cloud, and the asset management server is deployed on the ground. Through the above solution, the business logic is controlled by the cloud, the command is sent to the ground, and the ground controls the assets to perform actual asset operations.
[0148] In the above embodiment, as Figure 7 shown, receiving business data from the business management server specifically includes:
[0149] Step 702, obtain the receiving protocol of the asset management server;
[0150] Step 704, based on the receiving protocol being inconsistent with the target protocol, perform protocol conversion on the business data represented by the target protocol to obtain the business data represented by the receiving protocol.
[0151] In this embodiment, considering that the protocols between the business management server and the asset management server may be different, and in the case of different protocols, the sending of business data may fail.
[0152] To avoid the above situation, the embodiments of the present application specifically define the protocol used for data transmission between the business management server and the asset management server as the target protocol, so as to standardize the data transmission between the business management server and the asset management server and ensure the stable progress of data transmission.
[0153] In one of the embodiments, the business management server has a service forwarding application for performing protocol conversion. Similarly, the asset management server has a service forwarding application for performing protocol conversion. The forwarding protocol between the business management server and the asset management server is implemented through the corresponding service forwarding application, that is, the target protocol is used for transmission between the service forwarding applications.
[0154] For example, if the business management server uses Protocol A and the service forwarding application provided to the asset management server also uses Protocol A, but the asset management server uses Protocol B, then the service forwarding application corresponding to the asset management server performs a conversion. If the service forwarding application corresponding to the asset management server uses Protocol C, then the business management server converts Protocol A into Protocol C and sends it to the service forwarding application corresponding to the asset management server.
[0155] In this process, according to the communication between the business management server and different users (asset management servers), since the business management server communicates with multiple endpoints, that is, multiple asset parties, and the protocols are different, the service forwarding application must be able to handle multi-protocol conversion to ensure stable data transmission.
[0156] In any of the above embodiments, the target protocol can be external network https. The business management server and the corresponding service forwarding application use protocols such as rpc and internal network http. By restricting the conversion of service data transmitted in rpc, internal network http and other interaction methods into external network https interaction methods, the stable progress of data transmission is ensured.
[0157] In any of the above embodiments, as Figure 8 shown, call the asset information and perform business operations on the asset information according to the service data, including:
[0158] Step 802, parse the service data to obtain the first identity identification information and the encrypted service content;
[0159] Step 804, obtain the unique identity identification of the user corresponding to the asset management server;
[0160] Step 806, perform a hash calculation on the unique identity identification of the user corresponding to the asset management server to obtain the second identity identification information;
[0161] Step 808, based on the consistency between the second identity identification information and the first identity identification information, use the private key of the user corresponding to the asset management server to decrypt the encrypted service content to obtain the service content;
[0162] Step 810, call the asset information and perform business operations according to the service content.
[0163] In this embodiment, the content included in the service data is specifically defined. By defining that the service data includes the first identity identification information, after the service management server sends the service data to the asset management server, the asset management server can compare the calculated second identity identification information with the received first identity identification information, thereby realizing the verification of the service data. Only when the first identity identification information and the second identity identification information are consistent, the processing of the service content is executed.
[0164] In addition, the unique identity identification of the target user is obtained; and the unique identity identification is subjected to a hash calculation to obtain the first identity identification information, so as to hide the unique identity identification of the target user and reduce the probability of its leakage.
[0165] By defining that the public key corresponding to the target user is used to encrypt the service content to obtain the encrypted service content, only when the first identity identification information and the second identity identification information are consistent, the private key of the user corresponding to the asset management server is used to decrypt the encrypted service content to obtain the service content, so as to improve the secrecy of the service content and reduce the risk of its leakage.
[0166] In any of the above embodiments, the service operation includes at least one of the following: packaging assets, cyclic purchase, and daily repayment and refund.
[0167] In an embodiment of the present invention, as Figure 9 shown, a control device 900 of a server is provided for an asset management server. The asset management server interacts with a service management server. The control device 900 of the server includes: a receiving unit 902, configured to receive service data from the service management server; and an execution unit 904, configured to call asset information and perform a service operation on the asset information according to the service data.
[0168] The embodiments of the present application are proposed to separate service management and asset management in order to solve the problems of high construction and operation and maintenance costs and inability to guarantee data security existing in the existing ABS asset securitization management system.
[0169] Specifically, the asset information is managed by the asset management server, while the triggering and operation of the business are managed by the business management server. For the asset side, only by constructing the asset management server can the ABS asset securitization management be realized. Therefore, it avoids the need for the asset side to have its own ABS business and manage internal assets, which requires a large amount of manpower and material resources, and reduces the construction and operation and maintenance costs. In addition, the asset management server corresponding to the target user calls the asset information and performs business operations on the asset information according to the business data. It is realized by using the business management server to trigger the business and sending the business data to the asset management server corresponding to the target user. The business management server does not involve the content related to the asset information. Therefore, it can improve the privacy of the asset information of the asset side, reduce the probability of its leakage, and ensure data security.
[0170] In any of the above embodiments, the business management server is deployed in the cloud, and the asset management server is deployed at the asset side. Through the above solution, the business logic is controlled by the cloud, the command is sent to the ground end, and the ground end controls the assets for actual asset operations.
[0171] In the above embodiment, the receiving unit 902 is specifically configured to: obtain the receiving protocol of the asset management server; based on the receiving protocol being inconsistent with the target protocol, perform protocol conversion on the business data represented by the target protocol to obtain the business data represented by the receiving protocol.
[0172] In this embodiment, considering that the protocols between the business management server and the asset management server may be different, and in the case of different protocols, the sending of business data may fail.
[0173] To avoid the above situation, the embodiment of the present application specifically defines that the protocol used for data transmission between the business management server and the asset management server is the target protocol, so as to standardize the data transmission between the business management server and the asset management server and ensure the stable progress of data transmission.
[0174] In one of the embodiments, the business management server has a service forwarding application for protocol conversion. Similarly, the asset management server has a service forwarding application for protocol conversion. The forwarding protocol between the business management server and the asset management server is implemented through the corresponding service forwarding application, that is, the target protocol is used for transmission between the service forwarding applications.
[0175] For example, if the service management server uses Protocol A and the service forwarding application corresponding to the asset management server also uses Protocol A, but the asset management server uses Protocol B, then the service forwarding application corresponding to the asset management server performs a conversion. If the service forwarding application corresponding to the asset management server uses Protocol C, then the service management server converts Protocol A into Protocol C and sends it to the service forwarding application corresponding to the asset management server.
[0176] In this process, according to the communication between the service management server and different users (asset management servers), since the service management server needs to communicate with multiple endpoints, that is, multiple asset parties, and the protocols are different, the service forwarding application must be able to handle multi-protocol conversion to ensure stable data transmission.
[0177] In any of the above embodiments, the target protocol can be external network https. The service management server and the corresponding service forwarding application use protocols such as rpc and internal network http. By restricting the conversion of service data transmitted in interactive ways such as rpc and internal network http into external network https interactive ways, the stable progress of data transmission is ensured.
[0178] In any of the above embodiments, the execution unit 904 is specifically configured to: parse the service data to obtain the first identity identification information and the encrypted service content; obtain the unique identity identification of the user corresponding to the asset management server; perform a hash calculation on the unique identity identification of the user corresponding to the asset management server to obtain the second identity identification information; based on the consistency between the second identity identification information and the first identity identification information, use the private key of the user corresponding to the asset management server to decrypt the encrypted service content to obtain the service content; call the asset information and perform service operations according to the service content.
[0179] In this embodiment, the content included in the service data is specifically defined. By defining that the service data includes the first identity identification information, after the service management server sends the service data to the asset management server, the asset management server can compare the second identity identification information calculated by it with the received first identity identification information, thereby realizing the verification of the service data. Only when the first identity identification information and the second identity identification information are consistent, the service content is processed.
[0180] In addition, by obtaining the unique identity identification of the target user; and performing a hash calculation on the unique identity identification to obtain the first identity identification information, the unique identity identification of the target user is hidden, reducing the probability of its leakage.
[0181] By limiting the use of the public key corresponding to the target user to encrypt the service content to obtain the encrypted service content, and only when the first identity identification information and the second identity identification information are consistent, the private key of the user corresponding to the asset management server is used to decrypt the encrypted service content to obtain the service content, so as to improve the secrecy of the service content and reduce the risk of its leakage.
[0182] In any of the above embodiments, the service operation includes at least one of the following: packaging assets, cyclic purchase, daily repayment and refund.
[0183] In an embodiment of the present invention, as Figure 10 shown, a service management server 1000 is proposed, including: a first memory 1002, and the first memory 1002 stores a computer program; a first controller 1004, and the first controller 1004 executes the computer program to implement the steps of the control method of the server for the service management server 1000 as described in any of the above.
[0184] An embodiment of the present application proposes a service management server 1000, which includes a first memory 1002 and a first controller 1004. Among them, the first controller 1004 executes the computer program to implement the steps of the control method of the server for the service management server 1000 as described in any of the above. Therefore, it has all the beneficial technical effects of any of the above control methods of the server for the service management server 1000, and will not be elaborated here.
[0185] In an embodiment of the present invention, as Figure 11 shown, an asset management server 1100 is provided, including: a second memory 1102, and the second memory 1102 stores a computer program; a second controller 1104, and the second controller 1104 executes the computer program to implement the steps of the control method of the server for the asset management server 1100 as described in any of the above.
[0186] An embodiment of the present application proposes an asset management server 1100, which includes a second memory 1102 and a second controller 1104. Among them, the second controller 1104 executes the computer program to implement the steps of the control method of the server for the asset management server 1100 as described in any of the above. Therefore, it has all the beneficial technical effects of any of the above control methods of the server for the asset management server 1100, and will not be elaborated here.
[0187] In an embodiment of the present invention, as Figure 12 shown, the present invention provides a service management system 1200, including: the service management server 1000 as described above; the asset management server 1100 as described above.
[0188] In any of the above embodiments, the service management system 1200 is an ABS asset securitization management system.
[0189] In an embodiment of the present invention, a readable storage medium is provided, characterized in that a program or instruction is stored on the readable storage medium, and when the program or instruction is executed by a processor, the steps of the control method for the server of the service management server as described in any of the above or the steps of the control method for the server of the asset management server as described in any of the above are implemented.
[0190] In the description of the present invention, the term "a plurality" refers to two or more, unless otherwise clearly defined. The orientation or positional relationship indicated by terms such as "upper", "lower", etc. is based on the orientation or positional relationship shown in the drawings, and is only for the convenience of describing the present invention and simplifying the description, rather than indicating or implying that the device or element referred to must have a specific orientation, be constructed and operated in a specific orientation, and therefore should not be construed as a limitation of the present invention; the terms "connection", "installation", "fixation", etc. should all be understood in a broad sense. For example, "connection" can be a fixed connection, a detachable connection, or an integral connection; it can be directly connected, or indirectly connected through an intermediate medium. For those of ordinary skill in the art, the specific meanings of the above terms in the present invention can be understood according to specific circumstances.
[0191] In the description of the present invention, the description of terms such as "an embodiment", "some embodiments", "specific embodiments", etc. means that the specific features, structures, materials, or characteristics described in connection with the embodiment or example are included in at least one embodiment or example of the present invention. In the present invention, the schematic expressions of the above terms do not necessarily refer to the same embodiment or instance. Moreover, the specific features, structures, materials, or characteristics described can be combined in a suitable manner in any one or more embodiments or examples.
[0192] The above are only the preferred embodiments of the present invention and are not used to limit the present invention. For those skilled in the art, the present invention can have various changes and modifications. Any modification, equivalent replacement, improvement, etc. made within the spirit and principle of the present invention shall be included in the protection scope of the present invention.
Claims
1. A control method for a server, applied to a business management server, the business management server interacting with at least one asset management server, and applied to the internal management of enterprise assets, characterized in that, The method includes: Receiving a trigger of the target user's business, and sending the service data to the asset management server corresponding to the target user, so that the asset management server corresponding to the target user calls the asset information and performs a business operation on the asset information according to the service data; Among them, the service management server does not involve the asset information. The service management server controls the service logic, and the service logic is used to perform actual asset operations. The asset management server is constructed by the corresponding target user.
2. The control method of the server according to claim 1, characterized in that The sending the service data to the asset management server corresponding to the target user specifically includes: Obtaining the sending protocol of the service management server; Based on the sending protocol being inconsistent with the target protocol, performing protocol conversion on the service data represented by the sending protocol; Sending the service data represented by the target protocol to the asset management server corresponding to the target user.
3. The control method of the server according to claim 1 or 2, characterized in that, Before sending the service data to the asset management server corresponding to the target user, it further includes: Obtaining the unique identity identification of the target user; Performing a hash calculation on the unique identity identification to obtain the first identity identification information; Encrypting the service content using the public key corresponding to the target user to obtain the encrypted service content; Taking the encrypted service content and the first identity identification information as the service data.
4. The control method of the server according to claim 3, characterized in that The service includes at least one of the following: Packet assets, cyclic purchase, repayment and refund.
5. A control device for a server, applied to a service management server, the service management server interacting with at least one asset management server, and applied to the internal management of enterprise assets, characterized in that, The control device of the service management server includes: A sending unit, configured to receive a trigger of the target user's business, and send the service data to the asset management server corresponding to the target user, so that the asset management server corresponding to the target user calls the asset information and performs a business operation on the asset information according to the service data; Among them, the service management server does not involve the asset information. The service management server controls the service logic, and the service logic is used to perform actual asset operations. The asset management server is constructed by the corresponding target user.
6. A control method for a server, applied to an asset management server, the asset management server interacting with a business management server and applied to the internal management of enterprise assets, characterized in that, The method includes: After the service management server receives a trigger of the target user's business, receiving the service data from the service management server; Calling the asset information and performing a business operation on the asset information according to the service data; Among them, the service management server does not involve the asset information. The service management server controls the service logic, and the service logic is used to perform actual asset operations. The asset management server is constructed by the corresponding target user.
7. The control method of the server according to claim 6, characterized in that, The receiving the service data from the service management server specifically includes: Obtaining the receiving protocol of the asset management server; Based on the receiving protocol being inconsistent with the target protocol, performing protocol conversion on the service data represented by the target protocol to obtain the service data represented by the receiving protocol.
8. The control method of the server according to claim 6 or 7, characterized in that, Invoking the asset information and performing a business operation on the asset information according to the business data includes: Parsing the business data to obtain first identity identification information and encrypted business content; Obtaining the unique identity identification of the user corresponding to the asset management server; Performing a hash calculation on the unique identity identification of the user corresponding to the asset management server to obtain second identity identification information; Based on the consistency between the second identity identification information and the first identity identification information, decrypting the encrypted business content with the private key of the user corresponding to the asset management server to obtain the business content; Invoking the asset information and performing a business operation according to the business content.
9. The control method of the server according to claim 8, wherein The business operation includes at least one of the following: Packaging assets, cyclic purchase, daily repayment and refund.
10. A control device for a server, applied to an asset management server, the asset management server interacts with a business management server, and is applied to the internal management of enterprise assets, characterized in that, The control device of the server includes: A receiving unit, configured to receive business data from the business management server after the business management server receives the trigger of the business of the target user by the target user; An execution unit, configured to invoke asset information and perform a business operation on the asset information according to the business data; Wherein, the business management server is not related to the asset information, the business management server controls the business logic, the business logic is used to perform actual asset operations, and the asset management server is constructed by the corresponding target user.
11. A service management server, characterized in that, Including: A first memory, the first memory stores a computer program; A first controller, the first controller executes the computer program to implement the steps of the server control method described in any one of claims 1 to 4.
12. An asset management server, characterized in that, Including: A second memory, the second memory stores a computer program; A second controller, the second controller executes the computer program to implement the steps of the server control method described in any one of claims 6 to 9.
13. A service management system, characterized in that, Including: The business management server described in claim 11; The asset management server described in claim 12.
14. The service management system according to claim 13, wherein The business management system is an ABS asset securitization management system.
15. A readable storage medium, characterized in that, The program or instruction is stored on the readable storage medium, and when the program or instruction is executed by a processor, it implements the steps of the server control method for the business management server described in any one of claims 1 to 4 or The steps of the server control method for the asset management server described in any one of claims 6 to 9.
Citation Information
Patent Citations
Service processing system, user identity identification method and related devices
CN102377759A
Business processing method and device and comprehensive business service system
CN111769941A
Business processing method, device, apparatus and system
CN112200585A
Data transmission method and device of heterogeneous system, computer equipment and storage medium
CN112291298A