Data resource authorization method and device, equipment, medium and program product
By abstracting the common features of data columns into the same dimension and formulating unified matching rules, the problem that the data resource permission control method in the prior art cannot be applied to all business data, and more efficient and general data resource authorization is achieved.
Patent Information
- Application Number
- CN202510149220.9
- Authority / Receiving Office
- CN · China
- Patent Type
- Applications(China)
- Current Assignee / Owner
- Filing Date
- 2025-02-11
- Publication Date
- 2025-06-27
AI Technical Summary
Existing data resource permission control methods cannot be applied to all business data, resulting in reduced efficiency and universality.
Unified data resource authorization is achieved by abstracting the common features of all fields in the data column into the same dimension and formulating the same matching rules for the same dimension.
Improves the efficiency, versatility and ease of use of data resource authorization, making it suitable for different user or business data.
Smart Images

Figure CN120217401A_ABST
Abstract
Description
Technical Field
[0001] The present invention relates to the technical field of data permissions, and in particular, to a data resource authorization method, device, equipment, medium and program product. Background Art
[0002] Data permissions are a permission system established by an enterprise information management system to ensure the integrity and security of data. Only users who meet specific conditions can access specific data.
[0003] Currently, the data resource permission control methods mainly include the following two: one is to form query conditions through fixed logical judgments based on specific attributes or specific parameters of users, and screen and integrate data according to the query conditions; the other is to distinguish through separate authorizations on different front-ends. However, both of the above two data resource permission control methods have limitations in the use process. They can only be used for a certain user or business, and cannot be applied to all business data, thus reducing the efficiency and versatility of data resource permission control. Summary of the Invention
[0004] The present invention provides a data resource authorization method, device, equipment, medium and program product, which is used to solve the defect that the existing data resource permission control method cannot be applied to all business data, and realizes abstracting the common features of all fields of a data column into the same dimension, and then formulating the same matching rules for the same dimension. When dealing with different users or business data, the authorized data can be determined with a unified dimension and matching rules, thereby improving the efficiency, versatility and usability of data resource authorization.
[0005] The present invention provides a data resource authorization method, including: Determine at least one data column in a data table in a business system; the business system is used to authorize users to query corresponding business data; For each of the data columns, map the data column to obtain a dimension corresponding to the data column; the dimension is used to represent the common features of all fields in the data column; Based on each of the data columns, the dimensions corresponding to the data columns and matching rules, determine authorized data from the business data in the business system.
[0006] According to the data resource authorization method provided by the present invention, the mapping of the data column to obtain the dimension corresponding to the data column includes: determining the feature information corresponding to each field in the data column; based on the feature information, determining the common features corresponding to all fields in the data column; based on the common features, mapping the data column to obtain the dimension corresponding to the data column.
[0007] A data resource authorization method provided by the present invention, the mapping of the data column to obtain the dimension corresponding to the data column includes: inputting the data column into a dimension determination model to obtain the dimension corresponding to the data column; the dimension determination model is trained based on sample data columns and the dimension labels corresponding to the sample data columns.
[0008] A data resource authorization method provided by the present invention, the determining of the authorized data from the business data in the business system based on each data column, the dimension corresponding to each data column, and the matching rule includes: determining target data columns from each data column based on the data column permissions authorized by the administrator of the business system; determining target dimensions from each dimension based on the dimension permissions authorized by the administrator of the business system; determining target matching rules from each matching rule based on the matching rule permissions authorized by the administrator of the business system; when a user triggers a query operation, determining whether the dimension input by the user is consistent with the target dimension; when the dimension input by the user is consistent with the target dimension, generating a query semantics based on the target dimension, the target data column, and the target matching rule; and determining the authorized data from the business data in the business system based on the query semantics.
[0009] A data resource authorization method provided by the present invention, the determining of the authorized data from the business data in the business system based on the query semantics includes: converting the query semantics into a structured script based on a software development kit; and determining the authorized data from the business data in the business system based on the structured script.
[0010] A data resource authorization method provided by the present invention, the determining of at least one data column in the data table of the business system includes: performing a structured process on the data table in the business system to obtain the structured data corresponding to the data table in the business system; and determining at least one data column in the data table based on the structured data.
[0011] The present invention also provides a data resource authorization device, including the following modules: A first determination module, configured to determine at least one data column in the data table of the business system; the business system is used to authorize a user to query corresponding business data; A second determination module, configured to map each data column to obtain the dimension corresponding to the data column; the dimension is used to characterize the common features of all fields in the data column; A third determination module, configured to determine authorized data from the business data in the business system based on each data column, the dimension corresponding to each data column, and the matching rule.
[0012] The present invention also provides an electronic device, including a memory, a processor, and a computer program stored on the memory and executable on the processor. When the processor executes the computer program, the data resource authorization method described in any one of the above is implemented.
[0013] The present invention also provides a non-transitory computer-readable storage medium, on which a computer program is stored. When the computer program is executed by a processor, the data resource authorization method described in any one of the above is implemented.
[0014] The present invention also provides a computer program product, including a computer program. When the computer program is executed by a processor, the data resource authorization method described in any one of the above is implemented.
[0015] The data resource authorization method, device, equipment, medium, and program product provided by the present invention determine at least one data column in a data table in a business system, the dimension corresponding to each data column, and at least one matching rule corresponding to the dimension in advance. Among them, the dimension is used to characterize the common features of all fields in the data column. Under the authorization of the management personnel, the authorized data is determined from the data table in the business system by using the data column, dimension, and matching rule. In this way, the common features of all fields of the data column are abstracted into the same dimension, and the same matching rule is formulated for the same dimension. When dealing with different users or business data, the authorized data can be determined by using the unified dimension and matching rule, thereby improving the efficiency, generality, and usability of data resource authorization. BRIEF DESCRIPTION OF THE DRAWINGS
[0016] In order to more clearly illustrate the technical solutions in the present invention or the prior art, the following will briefly introduce the drawings required for the description of the embodiments or the prior art. Obviously, the drawings in the following description are some embodiments of the present invention. For those of ordinary skill in the art, other drawings can be obtained based on these drawings without creative efforts.
[0017] Figure 1 is a flowchart of the data resource authorization method provided by the present invention.
[0018] Figure 2 is a structural diagram of the data resource authorization device provided by the present invention.
[0019] Figure 3 is a structural diagram of the electronic device provided by the present invention. DETAILED DESCRIPTION OF THE EMBODIMENTS
[0020] To make the objectives, technical solutions, and advantages of the present invention clearer, the technical solutions in the present invention will be clearly and completely described below with reference to the accompanying drawings in the present invention. Apparently, the described embodiments are some, but not all, of the embodiments of the present invention. All other embodiments obtained by those of ordinary skill in the art based on the embodiments in the present invention without creative efforts shall fall within the protection scope of the present invention.
[0021] Currently, user permissions in information systems are usually managed in two dimensions: front-end resources and data permissions. There are the following scenarios. For the same business and the same front-end resource authorization, different data displays are provided for different users. Generally, data resource permission control is usually completed by forming query conditions through fixed logical judgments based on certain attributes (which may be specific attributes of users or specific parameters), and then screening and integrating data. Or it is distinguished by different front-end functions.
[0022] However, using inherent attributes will result in fixed logic, which is not conducive to expansion; differentiating through separate authorizations for different front-end resources will result in duplicate development and functional redundancy. Therefore, existing data resource permission control methods have limitations in the usage process, can only be used for a certain user or business, and cannot be applied to all business data, thus reducing the efficiency and versatility of data resource permission control.
[0023] In view of the above problems, the present invention proposes a data resource authorization method. By pre-determining at least one data column in the data table of the business system, the dimension corresponding to each data column, and at least one matching rule corresponding to the dimension, where the dimension is used to represent the common characteristics of all fields in the data column. Under the condition of manager authorization, the authorized data is determined from the data table in the business system using the data column, dimension, and matching rule. In this way, the common characteristics of all fields in the data column are abstracted into the same dimension, and the same matching rule is formulated for the same dimension. When dealing with different users or business data, the authorized data can be determined using the unified dimension and matching rule, thereby improving the efficiency, versatility, and usability of data resource authorization.
[0024] The following combines Figure 1 to describe the data resource authorization method of the present invention. This method is applicable to data resource authorization in the business systems of any organization or enterprise. The execution subject of this method can be an electronic device or a data resource authorization method set in the electronic device. This data resource authorization device can be implemented through software, hardware, or a combination of both.
[0025] Figure 1 is a schematic flowchart of the data resource authorization method provided by the present invention. As Figure 1 shown, this method includes the following: Step 101: Determine at least one data column in the data table in the business system.
[0026] Among them, the business system is used to authorize users to query corresponding business data.
[0027] Here, the business system can be a data resource management system of any institution or enterprise, and the data table in the business system is the data resource. For example, the order table in the order business, the sales data in different regions under the institution, etc.
[0028] Here, a data column can contain multiple fields, and a field is a field in each group of data in the data table.
[0029] Here, the method for determining the data column can be any suitable method. For example, the data column is obtained after structuring the data; or for another example, a script or programming language is used to extract the data column.
[0030] In one embodiment, the determining at least one data column in the data table in the business system includes: performing a structuring process on the data table in the business system to obtain the structured data corresponding to the data table in the business system; and determining at least one data column in the data table based on the structured data.
[0031] Here, the structuring process refers to converting the data format in the data table into the corresponding data format of the database.
[0032] Exemplarily, after a developer obtains the order table of an enterprise, it is necessary to define a data resource storage structure for the order data so that the order table is stored in the storage structure. Here, the storage structure can be the storage structure corresponding to the Structured Query Language (MySQL) database. Storing the data table in the database, each column of data represents a data column.
[0033] In the embodiment of the present invention, by structurally storing the business table in the business system, it is beneficial to define corresponding data columns for each column in the business data table, improve the matching degree between the data column and each column of data in the data table, and thus improve the efficiency, generality, and usability of data resource authorization.
[0034] Step 102: For each of the data columns, perform mapping on the data column to obtain the dimension corresponding to the data column.
[0035] Among them, the dimension is used to characterize the common feature of all fields in the data column.
[0036] Here, mapping can be understood as an abstraction process, mapping the data column to a dimension.
[0037] It should be noted that the data column includes multiple fields. Multiple fields are abstracted into one dimension. For example, the data column includes multiple email addresses, and most email addresses contain mobile phone numbers. Therefore, the data column containing email accounts can be abstracted into mobile phone numbers. Another example is that the data column contains multiple order creators, and each order creator has its own corresponding work number. Therefore, the data category containing order creators can be abstracted into work numbers. In addition, in the sold order table, the order creator is abstracted into a work number, and in the bought order table, the order recipient is abstracted into a work number. In this way, both the order creator and the order recipient are abstracted into work numbers, and later only authorization for the dimension of the work number is required, without the need to authorize a specific user separately.
[0038] In one embodiment, the mapping of the data column to obtain the dimension corresponding to the data column includes: determining the feature information corresponding to each field in the data column; based on the feature information, determining the common feature corresponding to all fields in the data column; based on the common feature, mapping the data column to obtain the dimension corresponding to the data column.
[0039] It should be noted that different fields correspond to different feature information, and the feature information can represent the detailed content of the field, which is beneficial to accurately abstract the data column.
[0040] Here, the common feature can be determined by using the similarity between feature information. Among them, the higher the similarity, the higher the possibility of becoming a common feature; the lower the similarity, the lower the possibility of becoming a common feature.
[0041] In the embodiment of the present invention, after determining the corresponding data column from the business data, determine the feature information corresponding to each field in the data column; determine the common feature according to the feature information, and then generalize or map the common feature to obtain the dimension.
[0042] In the embodiment of the present invention, by abstracting data resources to form a common object, a common and general authorization can be achieved after one time, avoiding the past fixed rule logic based on specific attributes, and improving the generality and usability.
[0043] In another embodiment, the mapping of the data column to obtain the dimension corresponding to the data column includes: inputting the data column into a dimension determination model to obtain the dimension corresponding to the data column; the dimension determination model is trained based on sample data columns and the dimension labels corresponding to the sample data columns.
[0044] Here, the training process of the dimension determination model includes: inputting sample data instances into the initial dimension determination model to obtain predicted dimensions; determining the difference between the dimension labels and the predicted dimensions according to the loss function; continuously training the initial dimension determination model according to the difference until the optimization condition is met to obtain the dimension determination model. Among them, the optimization condition can be that the value of the loss function converges or the maximum number of iterations is reached.
[0045] In the embodiment of the present invention, the dimension corresponding to the data column can be directly and quickly obtained through the dimension determination model, shortening the system response time and further improving the efficiency of data resource authorization.
[0046] Step 103: Determine authorized data from the business data in the business system based on each of the data columns, the dimensions corresponding to each of the data columns, and the matching rules.
[0047] Here, the matching rule can be to match oneself, or to match all or other specified users, etc.
[0048] It should be noted that the matching rules can be continuously expanded according to the business data.
[0049] It should be noted that after developers define data resources, data columns, dimensions, and matching rules in the early stage, in the later stage, managers authorize data resources and specify data columns, dimensions, and corresponding matching rules in the business system.
[0050] In one embodiment, the determining authorized data from the business data in the business system based on each of the data columns, the dimensions corresponding to each of the data columns, and the matching rules includes: determining target data columns from each of the data columns based on the data column permissions authorized by the manager of the business system; determining target dimensions from each of the dimensions based on the dimension permissions authorized by the manager of the business system; determining target matching rules from each of the matching rules based on the matching rule permissions authorized by the manager of the business system; when a user triggers a query operation, determining whether the dimension input by the user is consistent with the target dimension; when the dimension input by the user is consistent with the target dimension, generating a query semantics based on the target dimension, the target data column, and the target matching rule; and determining authorized data from the business data in the business system based on the query semantics.
[0051] Here, the target data columns, target dimensions, and matching rules can be selected by the manager, or can be selected by the business system according to data or institutions.
[0052] Here, the query semantics can be SQL filtering conditions or screening conditions.
[0053] In the embodiment of the present invention, for the same function, due to different selected target dimensions, target data columns, and target matching rules, data can be isolated to different degrees according to authorization during implementation.
[0054] In one embodiment, determining authorization data from business data in the business system based on the query semantics includes: converting the query semantics into a structured script based on a software development kit; and determining authorization data from business data in the business system based on the structured script.
[0055] Here, the Software Development Kit (SDK) is a software package that includes programming tools, code examples, technical documentation, debugging and testing tools, etc.
[0056] Here, the structured script refers to a structured query statement script corresponding to a specific database structure.
[0057] In the embodiment of the present invention, after abstracting the underlying structure data, it is mapped to a specific structure. At the same time, multiple authorization rules are preset, and the administrator authorizes the user. Then, a corresponding query structured statement script is generated according to its specific structure to realize the display of different business data for the user.
[0058] In an embodiment of the present invention, by predetermining at least one data column in a data table in a business system, a dimension corresponding to each data column, and at least one matching rule corresponding to the dimension, wherein the dimension is used to characterize the common characteristics of all fields in the data column, and with the authorization of the management personnel, the data column, the dimension, and the matching rule are used to determine the authorized data from the data table in the business system. In this way, the common characteristics of all fields in the data column are abstracted into the same dimension, and then the same matching rule is formulated for the same dimension. When targeting different users or business data, the unified dimension and matching rule can be used to determine the authorized data, thereby improving the efficiency, versatility, and ease of use of data resource authorization.
[0059] The following are application scenarios of the data resource authorization method provided by the present invention.
[0060] This application scenario takes the order business as an example and stores the order business data in the MySQL database.
[0061] For the order table, each field corresponds to different business feature information. An abstract definition can be made for each field. For example, for the order creator, according to its attributes, it can be abstracted as an employee number, which is character data. The authorization rule can be to match the person himself, or match all, or match specified other users. After authorization, a clear semantics can be formed. For example, it can be authorized that the creator matches specified other data. The abstraction formed in this way is general. For other fields such as the order consignee, the same authorization can be performed. By associating with the abstract definition of the employee number and using the same logic during authorization, the authorization that the order consignee matches himself can be obtained.
[0062] The data resource authorization device provided by the present invention will be described below. The data resource authorization device described below can be correspondingly referred to the data resource authorization method described above.
[0063] Figure 2 is a schematic structural diagram of the data resource authorization device provided by the present invention, as Figure 2 shown, the data resource authorization device 200 includes: A first determination module 201, configured to determine at least one data column in a data table in a service system; the service system is used to authorize a user to query corresponding service data; A second determination module 202, configured to map each of the data columns to obtain a dimension corresponding to the data column; the dimension is used to represent a common feature of all fields in the data column; A third determination module 203, configured to determine authorized data from the service data in the service system based on each of the data columns, the dimension corresponding to each of the data columns, and a matching rule.
[0064] In some embodiments, the second determination module 202 is specifically configured to: determine feature information corresponding to each field in the data column; based on the feature information, determine a common feature corresponding to all fields in the data column; based on the common feature, map the data column to obtain a dimension corresponding to the data column.
[0065] In some embodiments, the second determination module 202 is further specifically configured to: input the data column into a dimension determination model to obtain a dimension corresponding to the data column; the dimension determination model is trained based on sample data columns and dimension labels corresponding to the sample data columns.
[0066] In some embodiments, the third determination module 203 is specifically configured to: determine authorized data from the service data in the service system based on each of the data columns, the dimensions corresponding to each of the data columns, and the matching rules, including: determining target data columns from each of the data columns based on the data column permissions authorized by the managers of the service system; determining target dimensions from each of the dimensions based on the dimension permissions authorized by the managers of the service system; determining target matching rules from each of the matching rules based on the matching rule permissions authorized by the managers of the service system; determining whether the dimension input by the user is consistent with the target dimension when the user triggers a query operation; generating a query semantics based on the target dimension, the target data columns, and the target matching rule when the dimension input by the user is consistent with the target dimension; and determining authorized data from the service data in the service system based on the query semantics.
[0067] In some embodiments, the third determination module 203 is further specifically configured to: convert the query semantics into a structured script based on a software development kit; and determine authorized data from the service data in the service system based on the structured script.
[0068] In some embodiments, the first determination module 201 is specifically configured to: perform a structuring process on the data tables in the service system to obtain the structured data corresponding to the data tables in the service system; and determine at least one data column in the data tables based on the structured data.
[0069] Figure 3 is a schematic structural diagram of an electronic device provided by the present invention. As Figure 3 shown, the electronic device may include: a processor 310, a communication interface 320, a memory 330, and a communication bus 340. Among them, the processor 310, the communication interface 320, and the memory 330 communicate with each other through the communication bus 340. The processor 310 may call the logical instructions in the memory 330 to execute a data resource authorization method, and the method includes: determining at least one data column in the data tables in the service system; the service system is used to authorize users to query corresponding service data; for each of the data columns, mapping the data column to obtain the dimension corresponding to the data column; the dimension is used to represent the common feature of all fields in the data column; and determining authorized data from the service data in the service system based on each of the data columns, the dimensions corresponding to each of the data columns, and the matching rules.
[0070] In addition, when the logical instructions in the above-mentioned memory 330 can be implemented in the form of software functional units and sold or used as independent products, they can be stored in a computer-readable storage medium. Based on such an understanding, the technical solution of the present invention, in essence, or the part that contributes to the prior art, or a part of this technical solution, can be embodied in the form of a software product. This computer software product is stored in a storage medium and includes several instructions for causing a computer device (which may be a personal computer, a server, or a network device, etc.) to execute all or part of the steps of the methods described in various embodiments of the present invention. The aforementioned storage medium includes: various media such as USB flash drives, mobile hard disks, read-only memories (ROM, Read-Only Memory), random access memories (RAM, Random Access Memory), magnetic disks, or optical discs that can store program codes.
[0071] On the other hand, the present invention also provides a computer program product. The computer program product includes a computer program that can be stored on a non-transitory computer-readable storage medium. When the computer program is executed by a processor, the computer can execute the data resource authorization method provided by the above-mentioned various methods. The method includes: determining at least one data column in a data table in a service system; the service system is used to authorize a user to query corresponding service data; for each of the data columns, mapping the data column to obtain the dimension corresponding to the data column; the dimension is used to represent the common characteristics of all fields in the data column; based on each of the data columns, the dimensions corresponding to each of the data columns, and a matching rule, determining authorized data from the service data in the service system.
[0072] In yet another aspect, the present invention also provides a non-transitory computer-readable storage medium, on which a computer program is stored. When the computer program is executed by a processor, it is implemented to execute the data resource authorization method provided by the above-mentioned various methods. The method includes: determining at least one data column in a data table in a service system; the service system is used to authorize a user to query corresponding service data; for each of the data columns, mapping the data column to obtain the dimension corresponding to the data column; the dimension is used to represent the common characteristics of all fields in the data column; based on each of the data columns, the dimensions corresponding to each of the data columns, and a matching rule, determining authorized data from the service data in the service system.
[0073] The device embodiments described above are merely illustrative. The units described as separate components may or may not be physically separated, and the components shown as units may or may not be physical units, that is, they may be located in one place or distributed to multiple network units. Some or all of the modules can be selected according to actual needs to achieve the purpose of the solution of this embodiment. Those of ordinary skill in the art can understand and implement it without creative work.
[0074] Through the description of the above embodiments, those skilled in the art can clearly understand that each embodiment can be implemented by means of software plus a necessary general hardware platform, and of course, it can also be implemented by hardware. Based on this understanding, the essence of the above technical solution, or the part that contributes to the prior art, can be embodied in the form of a software product. The computer software product can be stored in a computer-readable storage medium, such as ROM / RAM, magnetic disk, optical disk, etc., and includes several instructions for causing a computer device (which can be a personal computer, a server, or a network device, etc.) to execute the methods described in each embodiment or some parts of the embodiments.
[0075] Finally, it should be noted that the above embodiments are only used to illustrate the technical solutions of the present invention, rather than to limit them; although the present invention has been described in detail with reference to the foregoing embodiments, those of ordinary skill in the art should understand that they can still modify the technical solutions recorded in the foregoing embodiments, or perform equivalent replacements for some of the technical features; and these modifications or replacements do not make the essence of the corresponding technical solutions deviate from the spirit and scope of the technical solutions of the embodiments of the present invention.
Claims
1. A data resource authorization method, characterized in that: include: Determine at least one data column in a data table in the business system; The business system is used to authorize users to query corresponding business data; For each of the data columns, mapping the data column to obtain a dimension corresponding to the data column; The dimension is used to characterize the common features of all fields in the data column; Authorization data is determined from the business data in the business system based on the data columns, the dimensions corresponding to the data columns and the matching rules.
2. The data resource authorization method according to claim 1, characterized in that: Mapping the data column to obtain the dimension corresponding to the data column includes: Determine characteristic information corresponding to each field in the data column; Based on the characteristic information, determining common characteristics corresponding to all fields in the data column; Based on the common features, the data columns are mapped to obtain dimensions corresponding to the data columns.
3. The data resource authorization method according to claim 1, characterized in that: Mapping the data column to obtain the dimension corresponding to the data column includes: The data column is input into a dimension determination model to obtain the dimension corresponding to the data column; the dimension determination model is trained based on the sample data column and the dimension labels corresponding to the sample data column.
4. The data resource authorization method according to any one of claims 1 to 3, characterized in that: The determining the authorization data from the business data in the business system based on the data columns, the dimensions corresponding to the data columns, and the matching rules includes: Based on the data column permissions authorized by the administrator of the business system, determining a target data column from each of the data columns; Determining a target dimension from each of the dimensions based on the dimension authority authorized by the administrator of the business system; Determining a target matching rule from each of the matching rules based on the matching rule authority authorized by the administrator of the business system; When a user triggers a query operation, determining whether the dimension input by the user is consistent with the target dimension; In a case where the dimension input by the user is consistent with the target dimension, generating query semantics based on the target dimension, the target data column and the target matching rule; Based on the query semantics, authorization data is determined from business data in the business system.
5. The data resource authorization method according to claim 4, characterized in that: The determining the authorization data from the business data in the business system based on the query semantics includes: Based on a software development kit, convert the query semantics into a structured script; Authorization data is determined from business data in the business system based on the structured script.
6. The data resource authorization method according to any one of claims 1 to 3, characterized in that: The determining at least one data column in a data table in the business system includes: Performing structured processing on the data table in the business system to obtain structured data corresponding to the data table in the business system; At least one data column in the data table is determined based on the structured data.
7. A data resource authorization device, characterized in that: include: A first determination module, used to determine at least one data column in a data table in a business system; The business system is used to authorize users to query corresponding business data; A second determination module is used to map the data columns for each of the data columns to obtain a dimension corresponding to the data column; The dimension is used to characterize the common features of all fields in the data column; The third determination module is used to determine the authorization data from the business data in the business system based on each of the data columns, the dimensions corresponding to each of the data columns, and the matching rules.
8. An electronic device comprising a memory, a processor, and a computer program stored in the memory and running on the processor, characterized in that: When the processor executes the computer program, the data resource authorization method according to any one of claims 1 to 6 is implemented.
9. A non-transitory computer-readable storage medium having a computer program stored thereon, characterized in that: When the computer program is executed by a processor, the data resource authorization method according to any one of claims 1 to 6 is implemented.
10. A computer program product, comprising a computer program, characterized in that When the computer program is executed by a processor, the data resource authorization method according to any one of claims 1 to 6 is implemented.