Data forwarding method of information system

By determining the account level permissions before data forwarding and verifying through verification code, data leakage problems caused by data forwarding by account without level permissions are solved, improving the security of data forwarding.

CN120185889APending Publication Date: 2025-06-20XIAN YIRUIOU ELECTRONIC TECH CO LTD
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
CN202510343028.3
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2025-03-21
Publication Date
2025-06-20

AI Technical Summary

Technical Problem

In existing data forwarding technology, accounts without level permissions can also forward data, resulting in the risk of data leakage.

Method used

Before forwarding data, by calling the account to log in to the temporary storage information and the cloud database, the level permissions of the current login account are determined. Data forwarding is performed only when the level permissions are appropriate, and verification is performed by generating a verification code and sending it to the mobile number of the login account.

Benefits of technology

Improve the security of data forwarding through double judgment, avoid data forwarding by accounts without level permissions, and reduce the risk of data leakage.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure HDA0005323715800000011
    Figure HDA0005323715800000011
Patent Text Reader

Abstract

The invention discloses a data forwarding method of an information system, which belongs to the technical field of data forwarding, and comprises the following steps: S1, clicking an information forwarding button, S2, calling an account to log in temporary storage information, S3, calling a cloud database to compare the temporary storage information, S4, displaying different prompts according to a comparison result, and S5, forwarding information data. According to the method, the level authority of the current login account is judged before data forwarding, whether the information of the current login account is consistent with the information stored in the database is judged, the verification code can be sent out according to the stored mobile phone number after the judgment is finished, and the information data is forwarded after the verification code is input. Through double judgment, the security of data forwarding is effectively improved, and data leakage caused by data forwarding of an account without level permission is avoided.
Need to check novelty before this filing date? Find Prior Art

Description

[0001] The present invention relates to the technical field of data forwarding, and more specifically, to a data forwarding method for an information system. Background Art

[0002] Information system data refers to various data stored and processed in a computer system or an information system. If a system involves functions such as web page storage, caching, and indexing, then the content of the web page, metadata, and related log information can all be regarded as part of the system data.

[0003] In the existing data forwarding technology, most determine whether to perform data forwarding by sending verification codes. Before sending the verification code and performing data forwarding, the level permissions of the account that needs to perform data forwarding currently are not determined, so that accounts without level permissions can also perform data forwarding, which is likely to cause data leakage. Summary of the Invention

[0004] The present invention mainly provides a data forwarding method for an information system, which can solve the problem that accounts without level permissions can also perform data forwarding and then cause data leakage proposed in the above background art.

[0005] To achieve the above object, the present invention provides the following technical solution: A data forwarding method for an information system, including the following steps:

[0006] S1. Click the information forwarding button: After the required information is selected, the user clicks the forwarding button;

[0007] S2. Call the temporarily stored information of the logged-in account: The system calls the temporarily stored information of the account logged in by the user to obtain the basic information of the current account user, the login status information, and the level information;

[0008] S3. Call the cloud database to compare the temporarily stored information: After the temporarily stored information is called, the system establishes a connection with the cloud database and constructs a query statement according to the logged-in temporarily stored information to obtain the corresponding record from the cloud database, and extracts the field information to be compared from the query result and compares it with the logged-in temporarily stored information one by one;

[0009] S4. Display different prompts according to the comparison result: According to the comparison result, the system displays the corresponding error prompt to the user;

[0010] S5. Information data forwarding: If all the comparison information matches and the currently logged-in account has the forwarding permission, the system generates a verification code and sends the verification code to the mobile phone number corresponding to the logged-in cache information. After entering the verification code, the information data is forwarded.

[0011] Further, the forwarding button in S1 is available to and can be clicked by user accounts of all levels. Only by clicking the forwarding button can subsequent comparisons be performed, and after the comparison is completed, a prompt message will be popped up according to the comparison result.

[0012] Further, in S2, when temporarily storing information and making a call, it is first ensured that the user has clicked the forwarding button, and then the login information is called through sessionStorage in the browser's ontology storage to obtain the user's basic information, login status information, and level information in the login account. And the data in sessionStorage will be cleared after the browser is closed.

[0013] Further, in S3, a request is sent to the server through the XMLHttpRequest object or fetch API in JavaScript to obtain the data in the cloud database. The server will return the data in the database in JSON format to obtain the user's basic information, login status information, and level information of the currently logged-in account in the cloud database.

[0014] Further, the JSON data returned from the cloud database is usually in string format, and the JSON data needs to be parsed through the JSON.parse() method for subsequent operations.

[0015] Further, in S4, different prompts are displayed according to the comparison result. The information obtained in S2 and S3 is compared to determine whether the currently logged-in account has level information. If so, the next step will be continued; if not, a message prompt will be popped up to remind the user that they have no permission to forward the data.

[0016] Further, in S5, for information data forwarding, the mobile phone number is obtained from sessionStorage and the verification code is sent to the corresponding place of the mobile phone number. After the user enters the verification code, the information data forwarding is successful.

[0017] The beneficial effects of the data forwarding method of the information system of the present invention are as follows:

[0018] By determining the level permissions of the currently logged-in account before data forwarding, determining whether the information of the currently logged-in account is consistent with the information stored in the database, the verification code can be sent according to the stored mobile phone number only after the judgment is completed, and the information data is forwarded after the verification code is entered. Through double determination, the security of data forwarding is effectively improved, and accounts without level permissions are prevented from forwarding data, thereby avoiding data leakage. BRIEF DESCRIPTION OF THE DRAWINGS

[0019] The present invention will be further described in detail below with reference to the drawings and specific implementation methods.

[0020] Figure 1 Schematic flowchart of a data forwarding method for an information system according to the present invention. Detailed implementation manners

[0021] To make the technical solutions of the present invention clearer, the present invention will be further described in detail below with reference to the accompanying drawings and specific embodiments.

[0022] Embodiment 1

[0023] As Figure 1 shown, according to one aspect of the present invention, a technical solution is provided: a data forwarding method for an information system, including the following steps:

[0024] Step 1, click the information forwarding button: After the required information is selected, the user clicks the forwarding button.

[0025] Step 2, call the account login temporary information: The system calls the temporary information of the account logged in by the user to obtain information such as the basic information of the current account user, the login status information, and the level. When calling the web page cache data, userData is the data stored in the web page cache (in actual development, it may be other letter combinations). Then we define a variable (the variable can be any combination of numbers and letters, here it is defined as storedData), storedData is a defined variable, and storedData has the same data as userData. Use the sessionStorage.getItem() method to obtain the data stored in sessionStorage. The following code is only for simulated call:

[0026] const storedData = sessionStorage.getItem('userData');

[0027] Step 3: Call the cloud database to compare the temporarily stored information. After the temporarily stored information is called, the system establishes a connection with the cloud database and constructs a query statement based on the logged-in temporarily stored information to obtain the corresponding records from the cloud database, and extracts the field information to be compared from the query results for one-by-one comparison with the logged-in temporarily stored information. Since the JSON data returned by the database is generally presented in string form, although sessionStorage also stores strings, when performing data comparison, operations and other interactions, it usually needs to be converted into the form of a JavaScript object or array so that its properties and elements can be accessed and processed conveniently. Therefore, in order to better combine with sessionStorage data, the JSON string returned by the database needs to be parsed. For this purpose, we can define a database variable (defined as parsedData here), and databaseData is the JSON data simulated to be obtained from the database. The following code is the code for simulating the parsing of the JSON data returned by the database:

[0028] const parsedData = JSON.parse(databaseData);

[0029] The data in the defined parsedData is to convert the data obtained from the database into a JavaScript object or array using the JSON.parse() method. The parsedData data is the same as the databaseData data, which is convenient for subsequent comparison of parsedData with storedData.

[0030] Assume that level (which can be other combinations of numbers or letters in actual development) is the level in the sessionStorage cache, and requiredLevel (which can be other combinations of numbers or letters in actual development) is the level in the database. Since we have obtained the sessionStorage data and database data we need as described above, we can use the following simulated code to determine whether the levels in sessionStorage and the database are the same:

[0031] storedData.level === parsedData.requiredLevel,

[0032] In the above code, storedData.level represents the level information cached in sessionStorage, and parsedData.requiredLevel represents the level information in the database. === represents strict equality, ensuring that the two values being compared are exactly the same in terms of type and value.

[0033] Step 4. Display different prompts according to the comparison result: According to the comparison result, the system will display corresponding error prompts to the user. As we have learned above the level information in sessionStorage and the level information in the database. If the level information in sessionStorage is the same as that in the database, then a verification code will be sent to the mobile phone according to the number information in sessionStorage. At the same time, since the verification code is a 6-digit random number combination and the SMS sending needs to rely on a third-party SMS service provider, we can simulate the generation of the verification code through the following code:

[0034] function generateVerificationCode(length === 6){

[0035] const characters = '0123456789';

[0036] let code = "";

[0037] for(let i = 0; i < 6; i++){

[0038] const'verificationCodeDisplay' = Math.floor(Math.random() * characters.length);

[0039] code += characters.charAt('verificationCodeDisplay');

[0040] }

[0041] return code;

[0042] }。

[0043] In the above code, generateVerificationCode defined represents the received 6-digit verification code, characters is the included numbers, code is an empty string used to store the generated verification code, and verificationCodeDisplay is the generated 6-digit random verification code.

[0044] Finally, we can obtain the following simulation code for judging whether the sessionStorage and database level data are the same based on the above:

[0045] if(storedData.level === parsedData.requiredLevel){

[0046] / / The levels are the same, generate a verification code

[0047] const verificationCode = generateVerificationCode();

[0048] const displayElement =

[0049] document.getElementById('verificationCodeDisplay');

[0050] sendVerificationCodeToPhone(storedData.phone, verificationCode);

[0051] } else {

[0052] / / The levels are different, pop up a prompt box

[0053] alert('Your level does not meet the requirements. Please try again after upgrading your level.');

[0054] }

[0055] Among them, the generateVerificationCode function is used to generate a 6 - digit random verification code, which contains letters (both uppercase and lowercase) and numbers; the sendVerificationCodeToPhone function: simulates the operation of sending a verification code to the user's mobile phone. In actual development, it is necessary to call the API of a third - party SMS service provider to implement the real SMS sending function; among them, the if statement can be used to compare the level in sessionStorage with the specified level in JSON. If the levels are the same, generate a verification code and call the sendVerificationCodeToPhone function to send the verification code to the user's mobile phone. If the levels are different, pop up a prompt box to inform the user that the levels do not match. In the code, storedData.phone is the mobile phone number cached in sessionStorage

[0056] Step 5: Information data forwarding: If all the comparison information matches and the currently logged - in account has the forwarding permission, the system generates a verification code and sends the verification code to the mobile phone number corresponding to the logged - in cached information. After entering the verification code, the information data is forwarded.

[0057] The above-described embodiments merely represent several implementation manners of the present invention. The description thereof is relatively specific and detailed, but it should not be construed as a limitation on the scope of the patent for the present invention. It should be noted that for those of ordinary skill in the art, without departing from the concept of the present invention, several modifications and improvements can still be made, and these all fall within the protection scope of the present invention. Therefore, the protection scope of the patent for the present invention shall be subject to the appended claims.

Claims

1. A data forwarding method for an information system, characterized in that: The following steps are involved: S1. Click the information forwarding button: After checking the required information, the user clicks the forwarding button; S2. Calling the temporarily stored account login information: The system calls the temporarily stored account information logged in by the user to obtain the basic information, login status information, and level information of the current account user; S3. Call the cloud database to compare the temporary information: When the temporary information is called, the system establishes a connection with the cloud database and constructs a query statement based on the logged temporary information to obtain the corresponding records from the cloud database, and extracts the field information to be compared from the query results, and compares it with the logged temporary information one by one; S4. Display different prompts according to the comparison results: the system displays corresponding error prompts to the user according to the comparison results; S5. Information data forwarding: If the compared information matches and the current login account has forwarding authority, the system generates a verification code and sends the verification code to the mobile phone number corresponding to the login cache information. After the verification code is entered, the information data is forwarded.

2. The data forwarding method of an information system according to claim 1, characterized in that: The forwarding button in S1 is owned by user accounts of all levels and can be clicked. Only by clicking the forwarding button can the subsequent comparison be performed and a prompt message will pop up according to the comparison result after the comparison is completed.

3. The data forwarding method of an information system according to claim 1, characterized in that: The temporary information call in S2 first ensures that the user has clicked the forward button, and then calls the login information through the sessionStorage in the browser body storage to obtain the user's basic information, login status information, and level information in the login account. After closing the browser, the data in the sessionStorage will be cleared.

4. The data forwarding method of an information system according to claim 1, characterized in that: In the S3, a request is sent to the server through the XMLHttpRequest object or fetch API in JavaScript to obtain the data in the cloud database. The server returns the data in the database in JSON format to obtain the basic user information, login status information, and level information of the current login account in the cloud database.

5. The data forwarding method of an information system according to claim 4, characterized in that: The JSON data returned from the cloud database is usually in string format, and the JSON data needs to be parsed using the JSON.parse() method for subsequent operations.

6. The data forwarding method of an information system according to claim 1, characterized in that: S4 displays different prompts according to the comparison results, compares the information obtained in S2 and S3 and determines whether the current login account has level information. If yes, proceed to the next step. If no, a message pops up to remind the user that he has no authority to forward the data.

7. The data forwarding method of an information system according to claim 3, characterized in that: The S5 information data forwarding obtains the mobile phone number from sessionStorage and sends the verification code to the location corresponding to the mobile phone number. After the user enters the verification code, the information data is forwarded successfully.