Information Processing Method, Apparatus, Computer Device, and Storage Medium

By obtaining and utilizing pre-configured parameter files, the information in the microservice system is uniformly reviewed, which solves the problem of inconsistent audit methods in the microservice system, and improves the efficiency of information audit and system stability.

CN115567595BActive Publication Date: 2025-07-18CHINA PING AN PROPERTY INSURANCE CO LTD
View PDF 1 Cites 0 Cited by

Patent Information

Application Number
CN202211164087.7
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2022-09-23
Publication Date
2025-07-18
Estimated Expiration
2042-09-23

AI Technical Summary

Technical Problem

In the microservice system, the audit content and methods of each microservice are not unified, resulting in inefficient information auditing and serious waste of resources, which affects the efficiency of interface calls.

Method used

By obtaining pre-configured parameter files, including interface parameters, microservice parameters and audit parameters, determine whether the information needs to be filtered and processed, and call the target audit microservices for unified auditing to realize asynchronous auditing and desensitization.

Benefits of technology

It improves the efficiency of information audit, reduces duplicate coding, saves system resources, improves the stability of the microservice system and the coding efficiency of developers, and realizes the decoupling of business services and audit services.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN115567595B_ABST
    Figure CN115567595B_ABST
Patent Text Reader

Abstract

This application relates to the field of operation and maintenance process optimization, solves the problem of inconsistent review methods in the prior art, and can effectively improve the efficiency of information review. It relates to an information processing method, device, computer device, and storage medium. The method includes: when receiving the initial information to be processed, obtaining the pre-configured parameter file; determining whether the initial information needs to be filtered according to the interface parameters, and when it is determined that the initial information needs to be filtered, determining the target business microservice and the target review microservice corresponding to the initial information according to the microservice parameters; sending the initial information to the target business microservice, and calling the target review microservice based on the review parameters to review the initial information to obtain the first review result; when sensitive information exists in the first review result, notifying the target business microservice to perform desensitization processing on the received initial information. In addition, this application also relates to blockchain technology, and the parameter file can be stored in the blockchain.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] This application relates to the field of operation and maintenance process optimization, and particularly to an information processing method, apparatus, computer device, and storage medium. Background Art

[0002] During the development process of application programs in the client, due to regulatory reasons, information platforms will review user-generated content (UGC). For example, information platforms in the fields of finance, healthcare, etc. need to review user-generated content. If the amount of user-generated content generated by the client, such as posts, comments, nicknames, avatars, etc., is huge, it is very difficult to conduct the review solely by manual labor. Therefore, it is necessary to connect the review services for sensitive words and sensitive pictures to each application program.

[0003] However, in a microservices system, each microservice may be involved in information review, and the review content and review methods of each microservice will inevitably be different. If developers implement it by hard coding on their own, due to different implementation methods, it is not convenient to manage, resulting in serious waste in terms of both resources and efficiency, and affecting the efficiency of interface calls, greatly reducing the efficiency of information review.

[0004] Therefore, how to improve the efficiency of information review has become an urgent problem to be solved. Summary of the Invention

[0005] This application provides an information processing method, apparatus, computer device, and storage medium. By implementing unified review of information according to the interface parameters, microservice parameters, and review parameters in the parameter file, the problem of inconsistent review methods in the prior art is solved, and the efficiency of information review can be effectively improved.

[0006] In a first aspect, this application provides an information processing method, and the method includes:

[0007] When receiving initial information to be processed, obtain a pre-configured parameter file, where the parameter file includes interface parameters, microservice parameters, and review parameters;

[0008] Determine whether the initial information needs to be filtered according to the interface parameters, and when it is determined that the initial information needs to be filtered, determine the target business microservice and the target review microservice corresponding to the initial information according to the microservice parameters;

[0009] Send the initial information to the target business microservice, and call the target review microservice to review the initial information based on the review parameters to obtain a first review result;

[0010] When there is sensitive information in the first audit result, notify the target business microservice to desensitize the received initial information.

[0011] In a second aspect, the present application also provides an information processing device, which includes:

[0012] A parameter file acquisition module, configured to acquire a preset parameter file when receiving initial information to be processed, where the parameter file includes interface parameters, microservice parameters, and audit parameters;

[0013] A microservice determination module, configured to determine whether the initial information needs to be filtered according to the interface parameters, and when it is determined that the initial information needs to be filtered, determine the target business microservice and the target audit microservice corresponding to the initial information according to the microservice parameters;

[0014] An information audit module, configured to send the initial information to the target business microservice, and call the target audit microservice to audit the initial information based on the audit parameters to obtain a first audit result;

[0015] A desensitization processing module, configured to notify the target business microservice to desensitize the received initial information when there is sensitive information in the first audit result.

[0016] In a third aspect, the present application also provides a computer device, which includes a memory and a processor;

[0017] The memory is used to store a computer program;

[0018] The processor is configured to execute the computer program and implement the information processing method as described above when executing the computer program.

[0019] In a fourth aspect, the present application also provides a computer-readable storage medium, which stores a computer program, and when the computer program is executed by a processor, the processor is caused to implement the information processing method as described above.

[0020] The present application discloses an information processing method, apparatus, computer device, and storage medium. When receiving initial information to be processed, a pre-configured parameter file can be obtained, and parameters such as interface parameters, microservice parameters, and audit parameters can be obtained. Subsequently, the information can be uniformly audited according to the interface parameters, microservice parameters, and audit parameters, solving the problem of inconsistent audit methods in the prior art. At the same time, there is no need to code each microservice separately, improving the coding efficiency of developers and reducing duplicate coding in the system, saving system resources. By determining whether the initial information needs to be filtered according to the interface parameters, and when it is determined that the initial information needs to be filtered, determining the target business microservice and target audit microservice corresponding to the initial information according to the microservice parameters, it is possible to perform entry filtering on the initial information according to the interface parameters, and at the same time, the business service and audit service can be separated to achieve decoupling of business code and audit code. By sending the initial information to the target business microservice and calling the target audit microservice to audit the initial information according to the audit parameters, it is possible to perform asynchronous audit on the initial information, avoiding affecting the efficiency of the interface and avoiding the gateway crashing due to a sharp increase in the interface response time, improving the stability of the microservice system. By notifying the target business microservice to perform desensitization processing on the received initial information when it is determined that the first audit result contains sensitive information, it is possible to mask the sensitive information in the initial information. BRIEF DESCRIPTION OF THE DRAWINGS

[0021] In order to more clearly illustrate the technical solutions of the embodiments of the present application, the accompanying drawings required for the description of the embodiments will be briefly introduced below. Obviously, the accompanying drawings in the following description are some embodiments of the present application. For those of ordinary skill in the art, other drawings can be obtained based on these drawings without creative efforts.

[0022] Figure 1 is a schematic diagram of a microservice system provided by an embodiment of the present application;

[0023] Figure 2 is a schematic flowchart of an information processing method provided by an embodiment of the present application;

[0024] Figure 3 is a schematic flowchart of an exit filtering provided by an embodiment of the present application;

[0025] Figure 4 is a schematic block diagram of an information processing apparatus provided by an embodiment of the present application;

[0026] Figure 5 is a schematic block diagram of the structure of a computer device provided by an embodiment of the present application. DETAILED DESCRIPTION OF THE EMBODIMENTS

[0027] Next, the technical solutions in the embodiments of the present application will be clearly and completely described in conjunction with the accompanying drawings in the embodiments of the present application. Obviously, the described embodiments are part of the embodiments of the present application, rather than all the embodiments. All other embodiments obtained by those of ordinary skill in the art based on the embodiments in the present application without creative efforts shall fall within the protection scope of the present application.

[0028] The flowchart shown in the accompanying drawings is only an example, and does not necessarily include all the contents and operations / steps, nor does it necessarily need to be executed in the described order. For example, some operations / steps can also be decomposed, combined, or partially merged. Therefore, the actual execution order may be changed according to the actual situation.

[0029] It should be understood that the terms used in the specification of the present application are only for the purpose of describing specific embodiments and are not intended to limit the present application. As used in the specification of the present application and the appended claims, unless the context clearly indicates otherwise, the singular forms "a", "an", and "the" are intended to include the plural forms.

[0030] It should also be understood that the term "and / or" used in the specification of the present application and the appended claims refers to any combination and all possible combinations of one or more of the related listed items, and includes these combinations.

[0031] Embodiments of the present application provide an information processing method, apparatus, computer device, and storage medium. Among them, the information processing method can be applied to a gateway server in a microservice cluster, and by implementing unified auditing of information according to interface parameters, microservice parameters, and auditing parameters in a parameter file, the efficiency of information auditing can be effectively improved.

[0032] Please refer to Figure 1 , Figure 1 which is a schematic diagram of a microservice system provided by an embodiment of the present application. As Figure 1 shown, the microservice cluster may include a gateway filter, a first database, a second database, a business microservice, and an auditing microservice. Among them, the gateway filter can be deployed on the gateway server, the first database and the second database can be deployed on the database server, or can also be deployed on the gateway server, the business microservice can be deployed on the business server, and the auditing microservice can be deployed on the auditing server. It should be noted that the microservice system may include multiple servers.

[0033] Among them, the gateway server, the database server, the business server, and the audit server can be independent servers or cloud servers that provide basic cloud computing services such as cloud services, cloud databases, cloud computing, cloud functions, cloud storage, network services, cloud communications, middleware services, domain name services, security services, content delivery networks (CDNs), and big data and artificial intelligence platforms.

[0034] Exemplarily, the gateway filter may include at least one interface for receiving initial information sent by the client and sending the queried target information to the client. Among them, the client may be an electronic device such as a smart phone, a tablet computer, a laptop computer, and a desktop computer.

[0035] Exemplarily, the first database is a temporary database, and the second database is a persistent database. For example, the first database may be a Redis database for temporarily storing data; the second database may be a local database in the gateway server.

[0036] The following will describe in detail some embodiments of the present application with reference to the attached drawings. Without conflict, the following embodiments and the features in the embodiments can be combined with each other.

[0037] As Figure 2 shown, the information processing method includes steps S10 to S40.

[0038] Step S10: When receiving the initial information to be processed, obtain a pre-configured parameter file, where the parameter file includes interface parameters, microservice parameters, and audit parameters.

[0039] Exemplarily, when receiving the initial information sent by the client through the interface in the gateway filter, obtain a pre-configured parameter file. Among them, the initial information may be user-generated content generated by an application program on the client.

[0040] Exemplarily, the parameter file may include parameters such as interface parameters, microservice parameters, audit parameters, user identification codes, and effective storage time. Among them, the interface parameters may include interface name, interface address, interface type, and filtering identifier. The filtering identifier is used to determine whether the interface needs to be filtered, and the interface type is used to represent the information processing method. For example, "add" represents an add interface, "update" represents an update interface, and "query" represents a query interface. The microservice parameters may include microservice name and the microservices required for each business scenario, which are used to determine business microservices and audit microservices. The audit parameters may include business scenarios, audit modes, audit field names, audit contents, etc.; the business scenarios may include user information scenarios, user comment scenarios, etc., which are used to determine the audit mode. Among them, "userinfo" represents the user information scenario, and "usercomment" represents the user comment scenario; the audit modes may include synchronous audit mode and asynchronous audit mode. The user identification code is used to identify the client and the user. The effective storage time refers to the effective time for the first database to store data. After the effective time, the data in the first database will be deleted.

[0041] In the embodiment of the present application, parameter configuration can be performed in advance according to actual needs to obtain a configured parameter file. By obtaining the parameter file through parameter configuration, information can be uniformly audited based on the parameter file subsequently, which solves the problem of inconsistent audit methods in the prior art. At the same time, only by modifying the parameter file can the audit policy be adjusted, which is more convenient to maintain, without the need to maintain a large amount of code, and reduces resource waste.

[0042] Exemplarily, after obtaining the configured parameter file, the parameter file can be stored in the first database and can also be stored in the second database. Among them, the first database is a temporary database, and the second database is a persistent database. It should be noted that since the reading speed of the first database is fast, by storing the parameter file in the first database, when the parameter file needs to be read, the parameter file stored in the first database can be preferentially read to improve the reading efficiency.

[0043] In the embodiment of the present application, to further ensure the privacy and security of the above parameter file, the above parameter file can be stored in a node of a blockchain.

[0044] In some embodiments, obtaining a pre-configured parameter file includes: if the parameter file is not queried in the first database, query it in the second database to obtain the parameter file, and store the parameter file in the first database.

[0045] Exemplarily, it is possible to first query in the first database whether there is a parameter file; if the parameter file is not found in the first database, then query in the second database to obtain the parameter file. It can be understood that since the first database is used to temporarily store data, the parameter file in the first database may be deleted due to timeout.

[0046] Exemplarily, after obtaining the parameter file, the parameter file can also be stored in the first database. By storing the parameter file in the first database, the parameter file can be directly read from the first database next time, improving efficiency.

[0047] By obtaining the pre-configured parameter file when receiving the initial information to be processed, parameters such as interface parameters, microservice parameters, and audit parameters can be obtained. Subsequently, the information can be uniformly audited according to the interface parameters, microservice parameters, and audit parameters, solving the problem of inconsistent audit methods in the prior art; at the same time, there is no need to code each microservice separately, improving the coding efficiency of developers and reducing duplicate coding in the system, saving system resources.

[0048] Step S20: Determine whether the initial information needs to be filtered according to the interface parameters, and when it is determined that the initial information needs to be filtered, determine the target business microservice and the target audit microservice corresponding to the initial information according to the microservice parameters.

[0049] It should be noted that the filtering process refers to filtering information such as sensitive text or sensitive pictures in the initial information. In the embodiments of the present application, when it is determined that the initial information needs to be filtered, the audit microservice can be called to audit the initial information to determine whether there is sensitive information in the initial information, that is, whether the initial information needs to be desensitized.

[0050] Exemplarily, when determining whether the initial information needs to be filtered according to the interface parameters, it is possible to query whether there is a filtering identifier corresponding to the interface for receiving the initial information in the parameter file based on the interface name and / or interface address, and determine whether the initial information needs to be filtered according to the query result.

[0051] For example, when the parameter file has a filtering identifier corresponding to the interface for receiving the initial information, it can be determined that the initial information needs to be filtered. When the parameter file does not have a filtering identifier corresponding to the interface for receiving the initial information, it can be determined that the initial information does not need to be filtered.

[0052] In the embodiments of the present application, the interfaces that need to be filtered can be pre-marked. For example, in the parameter file, filtering identifiers can be added to the interfaces that need to be filtered. Of course, other methods can also be used to distinguish whether an interface needs to be filtered.

[0053] By determining whether the initial information needs to be filtered according to the interface parameters, it is possible to implement the entry filtering of the initial information according to the interface parameters.

[0054] In some embodiments, when it is determined that the initial information needs to be filtered, the target business microservice and the target audit microservice corresponding to the initial information are determined according to the microservice parameters.

[0055] Exemplarily, the target business microservice can be determined according to the microservice name and the microservices required for each business scenario. For example, in the user information scenario, the target business microservice can be the account microservice; in the user comment scenario, the target business microservice can be the comment microservice. It should be noted that for different business scenarios, different microservices are required.

[0056] Exemplarily, the target audit microservice can be determined according to the microservice name. It should be noted that the target audit microservice can be the general audit microservice in the microservice system or an external third-party audit microservice.

[0057] By determining the target business microservice and the target audit microservice corresponding to the initial information according to the microservice parameters, the business service and the audit service can be separated, the decoupling of the business code and the audit code can be realized, making the code easier to maintain and more readable, and increasing the robustness of the code.

[0058] Step S30: Send the initial information to the target business microservice, and call the target audit microservice according to the audit parameters to audit the initial information to obtain a first audit result.

[0059] In the embodiments of the present application, taking the initial information as the user information generated by the user and the interface as the new content interface addUserInfo as an example, how to audit the initial information is described.

[0060] Exemplarily, the initial information can be audited according to the audit mode in the audit parameters. Among them, the audit mode can include a synchronous audit mode and an asynchronous audit mode. It should be noted that the asynchronous audit mode means that the initial information is first sent to the target business microservice, and at the same time, the target audit microservice is called to audit the initial information, and then the initial information received by the target business microservice is updated according to the audit result. The synchronous audit mode means that the target audit microservice is first called to audit the initial information, and then the initial information is updated according to the audit result and sent to the target business microservice.

[0061] In some embodiments, based on the asynchronous audit mode, the initial information can be sent to the target business microservice, and the target audit microservice can be called according to the audit parameters to audit the initial information to obtain a first audit result.

[0062] Exemplarily, an asynchronous thread can be used to call a target audit microservice according to audit parameters to audit the initial information, and a first audit result can be obtained. Among them, the audit parameters can be used not only to determine the audit mode, but also to determine the audit field name, audit content, etc. The target audit microservice can audit the initial information according to the audit field name and audit content. For example, when the initial information is user information, the nickname, avatar, and personalized signature in the initial information can be audited. Among them, the specific audit process is not limited here.

[0063] In some other embodiments, it is also possible to call the target audit microservice to audit the initial information based on the synchronous audit mode, and obtain the first audit result.

[0064] Exemplarily, the first audit result can be that there is sensitive information or there is no sensitive information.

[0065] By sending the initial information to the target business microservice and calling the target audit microservice to audit the initial information according to the audit parameters, asynchronous auditing of the initial information can be realized, avoiding affecting the efficiency of the interface, and at the same time avoiding the gateway from crashing due to a sharp increase in the interface's time consumption, improving the stability of the microservice system.

[0066] Step S40, when there is sensitive information in the first audit result, notify the target business microservice to perform desensitization processing on the received initial information.

[0067] In some embodiments, when there is sensitive information in the first audit result, a desensitization instruction can be sent to the target business microservice to notify the target business microservice to perform desensitization processing on the received initial information.

[0068] Exemplarily, the target business microservice can perform desensitization processing on the initial information according to the desensitization rules. Among them, the desensitization rules can be implemented using regular expressions. For example, the first field is whether to fully mask, and the second field is the masking symbol, such as * masking and garbled masking. Of course, other fields can also be included, which are not limited here.

[0069] By notifying the target business microservice to perform desensitization processing on the received initial information when it is determined that there is sensitive information in the first audit result, the sensitive information in the initial information can be masked.

[0070] In some embodiments, when it is determined that the initial information has sensitive information, calculate the hash value of the primary key corresponding to the initial information, and store the corresponding hash value in a preset bitmap file.

[0071] It should be noted that each piece of information stored in the database will have a corresponding primary key. For example, the primary key of user information is user_id, which is a 32-bit uuid. The bitmap file BitMap represents the value or status corresponding to a certain element through a single bit, and the key therein is the corresponding element itself.

[0072] Exemplarily, a hash algorithm can be adopted to calculate the hash value of the primary key corresponding to the initial information and store the corresponding hash value in a preset bitmap file. Among them, the hash algorithm (Secure Hash Algorithm) can include but is not limited to SHA-1, SHA-224, SHA-256, SHA-384, and SHA-512, etc., and there is no unique limitation here. The bitmap file can be stored in the first database, and of course, it can also be stored in the second database.

[0073] It should be noted that in the embodiments of the present application, by calculating the hash value of the primary key corresponding to the initial information and storing the corresponding hash value in a preset bitmap file, the problem of massive storage can be solved.

[0074] By calculating the hash value of the primary key corresponding to the initial information and storing the corresponding hash value in a preset bitmap file, when querying the target information, by comparing the hash value corresponding to the target information with the hash value in the bitmap file, it can be conveniently and quickly determined whether the target information contains sensitive information, improving the query efficiency and reducing the usage rate of the first database.

[0075] In some embodiments, the information processing method provided by the embodiments of the present application may further include: storing the initial information in the first database according to the effective storage time.

[0076] Exemplarily, when the effective storage time is 1 day, the initial information stored in the first database will be deleted after more than 1 day. Among them, the initial information can be desensitized information or information that has not been desensitized.

[0077] By storing the initial information in the first database, when querying the same information later, it can be preferentially read from the first database, improving the query efficiency.

[0078] In the embodiments of the present application, the target business microservice may desensitize the received initial information or may not desensitize the received initial information. When the target business microservice does not desensitize the received initial information, subsequent export filtering can be performed, that is, desensitization processing is performed when the client queries information.

[0079] In the embodiments of the present application, how to perform export filtering will be described in detail. Please refer to Figure 3 ,Figure 3 FIG. Figure 3 is a schematic flowchart of an export filter provided by an embodiment of the present application, which may specifically include the following steps S50 to S80.

[0080] Step S50: When an information query request from a client is received, according to the parameter file, query the target information corresponding to the information query request in the first database.

[0081] Exemplarily, when an information query request from a client is received through a gateway filter, according to the parameter file, query the target information corresponding to the information query request in the first database.

[0082] For example, according to the user identification code in the parameter file, query the target information corresponding to the information query request in the first database. It should be noted that the information query request may carry a user identification code.

[0083] By preferentially querying the target information corresponding to the information query request in the first database according to the parameter file, since the reading speed of the first database is fast, the query efficiency can be improved.

[0084] Step S60: If the target information is not queried, determine the target business microservice corresponding to the information query request according to the microservice parameter, and call the target business microservice to query and return the target information to the client.

[0085] It should be noted that since the first database is a temporary database, the information stored in the first database may be deleted due to timeout.

[0086] In some embodiments, if the target information is not queried in the first database, determine the target business microservice corresponding to the information query request according to the microservice parameter.

[0087] Exemplarily, the target business microservice corresponding to the information query request may be determined according to the microservice name and the microservices required for each business scenario. For example, in the user information scenario, the target business microservice may be determined as the account microservice.

[0088] Exemplarily, the target business microservice may be called to query and return the target information to the client. For example, when querying user information, the target business microservice may be directly called to obtain the user information, and then the user information is returned to the client.

[0089] In the embodiment of the present application, if the target information is not queried in the first database, after calling the target business microservice to query and return the target information to the client, the target information may also be stored in the first database for directly returning from the first database when the same target information is queried next time, thereby improving the query efficiency.

[0090] In some embodiments, after invoking the target business microservice to query and return the target information to the client, the method provided by the embodiments of the present application further includes: auditing the target information based on the audit parameters to obtain a second audit result; when it is determined according to the second audit result that the target information contains sensitive information, performing desensitization processing on the target content to obtain the desensitized target information; storing the desensitized target information in a first database according to the effective storage time, and storing the desensitized target information in a second database, where the first database is a temporary database and the second database is a persistent database.

[0091] Exemplarily, an asynchronous thread can be used to invoke the target audit microservice to audit the target information according to the audit parameters to obtain a second audit result. Among them, the target audit microservice can audit the initial information according to the audit field name and audit content. The specific audit process is not limited herein.

[0092] Exemplarily, the second audit result can be that there is sensitive information or there is no sensitive information.

[0093] In some embodiments, when it is determined according to the second audit result that the target information contains sensitive information, perform desensitization processing on the target information to obtain the desensitized target information. Exemplarily, the target information can be desensitized according to the desensitization rules. Among them, the desensitization rules can be implemented using regular expressions. For example, the first field is whether to fully mask, the second field is the masking symbol, such as * masking and garbled masking. Of course, other fields can also be included, which are not limited herein.

[0094] Exemplarily, after obtaining the desensitized target information, the desensitized target information can be stored in the first database according to the effective storage time.

[0095] For example, when the effective storage time is 2 days, the target information stored in the first database will be deleted after more than 2 days.

[0096] For another example, when the effective storage time is 7 days, the target information stored in the first database will be deleted after more than 7 days.

[0097] By performing desensitization processing on the target content when it is determined according to the second audit result that the target information contains sensitive information, and storing the desensitized target information in the first database, it can be achieved that when the user queries or refreshes next time, the desensitized target information is displayed on the client.

[0098] It should be noted that in the embodiments of the present application, after calling the target business microservice to query and return the target information to the client, desensitizing the target information can enable the client to display the un-desensitized information only once. When the user queries or refreshes again, the returned desensitized information is displayed.

[0099] Step S70: If the target information is queried, determine whether the target information needs to be filtered.

[0100] In some embodiments, determining whether the target information needs to be filtered may include: according to the interface parameters, determining whether the interface receiving the information query request is a filtering interface; if the interface is a filtering interface, determining that the target information needs to be filtered; if the interface is a non-filtering interface, determining that the target information does not need to be filtered.

[0101] Exemplarily, it can be queried in the parameter file whether there is a filtering flag for the interface receiving the information query request. For example, when there is a filtering flag, it is determined that the interface is a filtering interface. For another example, when there is no filtering flag, it is determined that the interface is a non-filtering interface.

[0102] By determining whether the interface receiving the information query request is a filtering interface, filtering of the target information can be achieved at the exit.

[0103] Step S80: When it is determined that the target information needs to be filtered and there is sensitive information, desensitize the target information and return the desensitized target information to the client.

[0104] In the embodiments of the present application, after determining that the target information needs to be filtered, it is also necessary to determine whether there is sensitive information in the target information.

[0105] In some embodiments, determining whether there is sensitive information in the target information may include: performing a hash calculation on the primary key corresponding to the target information to obtain a corresponding target hash value; if it is queried that there is a hash value in the preset bitmap file that matches the target hash value, determining that there is sensitive information in the target information.

[0106] Exemplarily, a hash algorithm can be used to calculate the hash value of the primary key corresponding to the target information to obtain the target hash value corresponding to the target information; then, the target hash value is compared with the hash values in the bitmap file. When there is a hash value in the bitmap file that matches the target hash value, it is determined that there is sensitive information in the target information. When there is no hash value in the bitmap file that matches the target hash value, it is determined that there is no sensitive information in the target information.

[0107] By performing a hash calculation on the primary key corresponding to the target information to obtain the corresponding target hash value, the efficiency of querying for sensitive information can be improved when querying for the target information based on the target hash value.

[0108] Exemplarily, the target information can be desensitized according to the desensitization rule, and the desensitized target information can be returned to the client for the client to display the desensitized target information. Among them, the desensitization rule can be implemented using a regular expression. For example, the first field is whether to fully mask, and the second field is the masking symbol, such as * masking and garbled masking. Of course, other fields can also be included, which are not limited here.

[0109] The information processing method provided by the above embodiment, when receiving the initial information to be processed, obtains the pre-configured parameter file, and can obtain parameters such as interface parameters, microservice parameters, and audit parameters. Subsequently, the information can be uniformly audited according to the interface parameters, microservice parameters, and audit parameters, solving the problem of inconsistent audit methods in the prior art; at the same time, there is no need to code each microservice separately, improving the coding efficiency of developers and reducing duplicate coding in the system, saving system resources; by determining whether the initial information needs to be filtered according to the interface parameters, it is possible to perform entry filtering on the initial information according to the interface parameters; by determining the target business microservice and the target audit microservice corresponding to the initial information according to the microservice parameters, the business service and the audit service can be separated, realizing the decoupling of the business code and the audit code, making the code easier to maintain and more readable, and increasing the robustness of the code; by sending the initial information to the target business microservice and calling the target audit microservice to audit the initial information according to the audit parameters, it is possible to perform asynchronous audit on the initial information, avoiding affecting the efficiency of the interface, and at the same time avoiding the gateway from crashing due to a sharp increase in the interface's time consumption, improving the stability of the microservice system; by notifying the target business microservice to desensitize the received initial information when it is determined that the first audit result contains sensitive information, it is possible to mask the sensitive information in the initial information; by calculating the hash value of the primary key corresponding to the initial information and storing the corresponding hash value in a preset bitmap file, when querying the target information, it is possible to compare the hash value corresponding to the target information with the hash value in the bitmap file, conveniently and quickly determining whether the target information contains sensitive information, improving the query efficiency and reducing the usage rate of the first database.

[0110] Please refer to Figure 4 , Figure 4 FIG. is a schematic block diagram of an information processing apparatus 1000 provided by an embodiment of the present application. The information processing apparatus is used to execute the foregoing information processing method. Among them, the information processing apparatus can be configured in a gateway server.

[0111] AsFigure 4 As shown in Figure 4 , the information processing device 1000 includes: a parameter file acquisition module 1001, a microservice determination module 1002, an information review module 1003, and a desensitization processing module 1004.

[0112] The parameter file acquisition module 1001 is configured to acquire a pre-configured parameter file when receiving initial information to be processed, where the parameter file includes interface parameters, microservice parameters, and review parameters.

[0113] The microservice determination module 1002 is configured to determine whether the initial information needs to be filtered according to the interface parameters, and when it is determined that the initial information needs to be filtered, determine the target business microservice and the target review microservice corresponding to the initial information according to the microservice parameters.

[0114] The information review module 1003 is configured to send the initial information to the target business microservice, and call the target review microservice to review the initial information based on the review parameters to obtain a first review result.

[0115] The desensitization processing module 1004 is configured to, when the first review result indicates the existence of sensitive information, notify the target business microservice to perform desensitization processing on the received initial information.

[0116] It should be noted that those skilled in the art can clearly understand that for the convenience and brevity of description, the specific working processes of the above-described device and each module can refer to the corresponding processes in the foregoing method embodiments, and will not be elaborated herein.

[0117] The above device can be implemented in the form of a computer program, and this computer program can run on a computer device as shown in Figure 5 .

[0118] Please refer to Figure 5 . Figure 5 It is a schematic block diagram of the structure of a computer device provided by an embodiment of the present application.

[0119] Please refer to Figure 5 . This computer device includes a processor and a memory connected by a system bus. Among them, the memory can include a storage medium and an internal memory. Among them, the storage medium can be a non-volatile storage medium or a volatile storage medium.

[0120] The processor is used to provide computing and control capabilities to support the operation of the entire computer device.

[0121] The internal memory provides an environment for the operation of the computer program in the storage medium. When this computer program is executed by the processor, the processor can execute any information processing method.

[0122] It should be understood that the processor may be a Central Processing Unit (CPU), and the processor may also be other general-purpose processors, Digital Signal Processors (DSPs), Application Specific Integrated Circuits (ASICs), Field-Programmable Gate Arrays (FPGAs), or other programmable logic devices, discrete gate or transistor logic devices, discrete hardware components, etc. Among them, the general-purpose processor may be a microprocessor or the processor may also be any conventional processor, etc.

[0123] Among them, in one embodiment, the processor is used to run a computer program stored in the memory to implement the following steps:

[0124] When receiving the initial information to be processed, obtain a pre-configured parameter file, where the parameter file includes interface parameters, microservice parameters, and audit parameters; determine whether the initial information needs to be filtered according to the interface parameters, and when it is determined that the initial information needs to be filtered, determine the target business microservice and the target audit microservice corresponding to the initial information according to the microservice parameters; send the initial information to the target business microservice, and call the target audit microservice to audit the initial information according to the audit parameters to obtain a first audit result; when there is sensitive information in the first audit result, notify the target business microservice to perform desensitization processing on the received initial information.

[0125] In one embodiment, when the processor implements obtaining the pre-configured parameter file, it is used to implement:

[0126] If the parameter file is not queried in the first database, query it in the second database, obtain the parameter file, and store the parameter file in the first database, where the first database is a temporary database and the second database is a persistent database.

[0127] In one embodiment, the processor is further used to implement:

[0128] When it is determined that the initial information has sensitive information, calculate the hash value of the primary key corresponding to the initial information, and store the corresponding hash value in a preset bitmap file.

[0129] In one embodiment, the processor is further used to implement:

[0130] When receiving an information query request from a client, query the target information corresponding to the information query request in the first database according to the parameter file; if the target information is not found, determine the target business microservice corresponding to the information query request according to the microservice parameters, call the target business microservice to query and return the target information to the client; if the target information is found, determine whether the target information needs to be filtered; when it is determined that the target information needs to be filtered and there is sensitive information, desensitize the target information, and return the desensitized target information to the client.

[0131] In one embodiment, the parameter file further includes an effective storage time; after the processor implements calling the target business microservice to query and return the target information to the client, it is further used to implement:

[0132] Based on the audit parameters, audit the target information to obtain a second audit result; when it is determined according to the second audit result that the target information has sensitive information, desensitize the target content to obtain the desensitized target information; according to the effective storage time, store the desensitized target information in the first database and store the desensitized target information in the second database, where the first database is a temporary database and the second database is a persistent database.

[0133] In one embodiment, when the processor implements determining whether the target information needs to be filtered, it is used to implement:

[0134] According to the interface parameters, determine whether the interface for receiving the information query request is a filtering interface; if the interface is a filtering interface, determine that the target information needs to be filtered; if the interface is a non-filtering interface, determine that the target information does not need to be filtered.

[0135] In one embodiment, the processor is further used to implement:

[0136] Perform a hash calculation on the primary key corresponding to the target information to obtain a corresponding target hash value; if a hash value matching the target hash value is found in the preset bitmap file, determine that the target information has sensitive information.

[0137] An embodiment of the present application also provides a computer-readable storage medium, which stores a computer program. The computer program includes program instructions, and the processor executes the program instructions to implement any information processing method provided by the embodiments of the present application.

[0138] For example, when the program is loaded by the processor, the following steps can be executed:

[0139] When receiving initial information to be processed, obtain a pre-configured parameter file, where the parameter file includes interface parameters, microservice parameters, and audit parameters; determine whether the initial information needs to be filtered according to the interface parameters, and when it is determined that the initial information needs to be filtered, determine the target business microservice and the target audit microservice corresponding to the initial information according to the microservice parameters; send the initial information to the target business microservice, and call the target audit microservice according to the audit parameters to audit the initial information to obtain a first audit result; when there is sensitive information in the first audit result, notify the target business microservice to perform desensitization processing on the received initial information.

[0140] Among them, the computer-readable storage medium may be an internal storage unit of the computer device described in the foregoing embodiment, such as the hard disk or memory of the computer device. The computer-readable storage medium may also be an external storage device of the computer device, such as a plug-in hard disk equipped on the computer device, a Smart Media Card (SMC), a Secure Digital Card (SD Card), a Flash Card, etc.

[0141] Further, the computer-readable storage medium may mainly include a storage program area and a storage data area. Among them, the storage program area may store an operating system, application programs required for at least one function, etc.; the storage data area may store data created according to the use of the blockchain node.

[0142] The blockchain referred to in this application is a new application mode of computer technologies such as distributed data storage, peer-to-peer transmission, consensus mechanism, and encryption algorithm. Blockchain, in essence, is a decentralized database, a string of data blocks generated by using cryptographic methods, and each data block contains information about a batch of network transactions, which is used to verify the validity (anti-counterfeiting) of the information and generate the next block. The blockchain may include a blockchain underlying platform, a platform product service layer, an application service layer, etc.

[0143] The above is only the specific implementation manner of this application, but the protection scope of this application is not limited thereto. Any person skilled in the art within the technical scope disclosed in this application can easily think of various equivalent modifications or replacements, and these modifications or replacements should be covered within the protection scope of this application. Therefore, the protection scope of this application should be subject to the protection scope of the claims.

Claims

1. An information processing method, characterized in that, Including: When receiving initial information to be processed, obtain a pre-configured parameter file, where the parameter file includes interface parameters, microservice parameters, and audit parameters; Determine whether the initial information needs to be filtered according to the interface parameters, and when it is determined that the initial information needs to be filtered, determine the target business microservice and target audit microservice corresponding to the initial information according to the microservice parameters; Send the initial information to the target business microservice, and call the target audit microservice according to the audit parameters to audit the initial information to obtain a first audit result; When there is sensitive information in the first audit result, notify the target business microservice to perform desensitization processing on the received initial information.

2. The information processing method according to claim 1, wherein The obtaining of the pre-configured parameter file includes: If the parameter file is not found in the first database, query it in the second database to obtain the parameter file, and store the parameter file in the first database, where the first database is a temporary database and the second database is a persistent database.

3. The information processing method according to claim 1, wherein The method further includes: When it is determined that the initial information has sensitive information, calculate the hash value of the primary key corresponding to the initial information, and store the corresponding hash value in a preset bitmap file.

4. The information processing method according to claim 1, wherein The method further includes: When receiving an information query request from a client, query the target information corresponding to the information query request in the first database according to the parameter file; If the target information is not found, determine the target business microservice corresponding to the information query request according to the microservice parameters, call the target business microservice to query and return the target information to the client; If the target information is found, determine whether the target information needs to be filtered; When it is determined that the target information needs to be filtered and there is sensitive information, perform desensitization processing on the target information, and return the desensitized target information to the client.

5. The information processing method according to claim 4, wherein The parameter file further includes an effective storage time; After the step of calling the target business microservice to query and return the target information to the client, the method further includes: Based on the audit parameters, audit the target information to obtain a second audit result; When it is determined that the target information has sensitive information according to the second audit result, perform desensitization processing on the target information to obtain the desensitized target information; According to the effective storage time, store the desensitized target information in the first database and store the desensitized target information in the second database, where the first database is a temporary database and the second database is a persistent database.

6. The information processing method according to claim 4, wherein The determining whether the target information needs to be filtered includes: According to the interface parameters, determine whether the interface receiving the information query request is a filtering interface; If the interface is a filtering interface, determine that the target information needs to be filtered; If the interface is a non-filtering interface, determine that the target information does not need to be filtered.

7. The information processing method according to claim 4, wherein The method further includes: Perform a hash calculation on the primary key corresponding to the target information to obtain a corresponding target hash value; When it is queried that there is a hash value in the preset bitmap file that matches the target hash value, it is determined that the target information contains sensitive information.

8. An information processing apparatus, characterized in that, Including: A parameter file acquisition module, configured to acquire a pre-configured parameter file when receiving initial information to be processed, where the parameter file includes interface parameters, microservice parameters, and audit parameters; A microservice determination module, configured to determine whether the initial information needs to be filtered according to the interface parameters, and when it is determined that the initial information needs to be filtered, determine the target business microservice and the target audit microservice corresponding to the initial information according to the microservice parameters; An information audit module, configured to send the initial information to the target business microservice, and call the target audit microservice to audit the initial information based on the audit parameters to obtain a first audit result; A desensitization processing module, configured to, when the first audit result contains sensitive information, notify the target business microservice to perform desensitization processing on the received initial information.

9. A computer device, characterized in that, The computer device includes a memory and a processor; The memory is used to store a computer program; The processor is configured to execute the computer program and, when executing the computer program, implement the information processing method according to any one of claims 1 to 7.

10. A computer-readable storage medium, characterized in that The computer-readable storage medium stores a computer program, and when the computer program is executed by the processor, the processor is caused to implement the information processing method according to any one of claims 1 to 7.

Citation Information

Patent Citations

  • Security auditing method, device and system, electronic equipment and readable storage medium

    CN114157580A