Application service access method and device and electronic equipment
By connecting the ontological application services with third-party services and generating service tokens, the problem of customers needing to register multiple accounts in different service locations is solved, and the effect of simplifying operational processes and improving information security is achieved.
Patent Information
- Application Number
- CN202510004436.6
- Authority / Receiving Office
- CN · China
- Patent Type
- Applications(China)
- Current Assignee / Owner
- Filing Date
- 2025-01-02
- Publication Date
- 2025-07-25
AI Technical Summary
Customers need to register and manage multiple accounts at different service locations, resulting in increased memory burden and information security risks.
By pre-connecting the ontological application services with third-party services, third-party services are enabled as an open service of ontological application services, generating service tokens and verifying permissions, and unified access to ontological application services and third-party services is achieved.
Simplifies the operation process of customers accessing multiple services, reduces operational complexity, and improves information security.
Smart Images

Figure CN120378486A_ABST
Abstract
Description
Technical Field
[0001] The present invention relates to the technical field of application service access, and particularly to an application service access method, apparatus, and electronic device. Background Art
[0002] In the current digital service environment, customers often need to access multiple application services or third-party services to meet their diverse needs. In this process, a significant problem is that customers usually need to register separately at different services to obtain the corresponding service permissions. This means that customers may need to remember and manage multiple accounts and passwords, which not only increases the memory burden on customers but also may lead to information security risks caused by poor account management.
[0003] Therefore, finding an application service access method that can effectively integrate and manage multiple services within the customer's permissions has become a current research hotspot. Summary of the Invention
[0004] The present invention provides an application service access method, apparatus, and electronic device, which can effectively integrate and manage multiple services within the customer's permissions, simplify the operation process for customers to access different services, and reduce the operation complexity.
[0005] The present invention provides an application service access method, which includes: pre-processing the service connection between the ontology application service and the third-party service so that the third-party service serves as an open service of the ontology application service; obtaining a service access request from a user, where the service access request is an access request for accessing the ontology application service and / or the third-party service; and when the service access request passes the permission verification of the ontology application service, accessing the ontology application service and / or the third-party service based on the service access request.
[0006] According to the application service access method provided by the present invention, when the service access request is for accessing the ontology application service, the step of accessing the ontology application service based on the service access request when the service access request passes the permission verification of the ontology application service specifically includes: when the service access request passes the permission verification of the ontology application service, generating a first service token for the ontology application service based on the service access request; and accessing the ontology application service based on the first service token.
[0007] According to an application service access method provided by the present invention, when the service access request is for accessing the third-party service, and when the service access request passes the permission verification of the ontology application service, based on the service access request, access to the third-party service is performed, specifically including: when the service access request passes the permission verification of the ontology application service, generating a first service token of the ontology application service; obtaining the application service identifier of the ontology application service; based on the first service token and the application service identifier, sending a third-party service access request to the third-party service; after the third-party service receives the third-party service access request, sending the first service token and the application service identifier to the ontology application service, so that the ontology application service verifies the third-party service access request; when the third-party service access request is verified to be passed, generating a second service token of the third-party service; and accessing the third-party service based on the second service token.
[0008] According to an application service access method provided by the present invention, the verification of the third-party service access request being passed is achieved in the following manner: based on the first service token and / or the application service identifier, determining a target ontology application service corresponding to the first service token and / or the application service identifier; when the target ontology application service matches the ontology application service in a service connection state with the third-party service, determining that the third-party service access request is verified to be passed.
[0009] According to an application service access method provided by the present invention, when the service access request is for accessing the third-party service and the ontology application service, the method further includes: accessing the ontology application service based on the first service token.
[0010] According to an application service access method provided by the present invention, before accessing the ontology application service based on the first service token, the method further includes: determining a first generation time when the first service token is generated; based on the current time and the first generation time, determining the elapsed time since the first service token was generated; the accessing the ontology application service based on the first service token specifically includes: when the elapsed time since the first service token was generated is less than or equal to a preset time, accessing the ontology application service based on the first service token.
[0011] According to an application service access method provided by the present invention, before the access to the third-party service based on the second service token, the method also includes: determining a second generation time of generating the second service token; determining, based on the current time and the second generation time, how long the second service token has been generated; the access to the third-party service based on the second service token specifically includes: when the second service token has been generated for less than or equal to a preset time, accessing the third-party service based on the second service token.
[0012] According to an application service access method provided by the present invention, the service access request also includes user login identity information; the service access request passes the permission verification of the ontology application service, which is implemented in the following manner: when the user login identity information in the service access request matches the allowed login identity information stored in the ontology application service, it is determined that the service access request passes the permission verification of the ontology application service.
[0013] The present invention also provides an application service access device, which includes: a connection module, which is used to pre-connect the service of the main body application service with the third-party service, so that the third-party service can be used as an open service of the main body application service; an acquisition module, which is used to obtain the user's service access request, wherein the service access request is an access request for accessing the main body application service and / or the third-party service; an access module, which is used to access the main body application service and / or the third-party service based on the service access request when the service access request passes the permission verification of the main body application service.
[0014] The present invention also provides an electronic device, comprising a memory, a processor, and a computer program stored in the memory and executable on the processor, wherein when the processor executes the computer program, any of the above-mentioned application service access methods is implemented.
[0015] The present invention also provides a non-transitory computer-readable storage medium on which a computer program is stored. When the computer program is executed by a processor, the application service access method described in any one of the above is implemented.
[0016] The present invention also provides a computer program product, comprising a computer program, wherein when the computer program is executed by a processor, the computer program implements any of the above-mentioned application service access methods.
[0017] The application service access method, device, and electronic device provided by the present invention, the method includes: pre-processing the service connection between the ontology application service and the third-party service in advance, so that the third-party service serves as the open service of the ontology application service; obtaining a service access request from a user, where the service access request is an access request for accessing the ontology application service and / or the third-party service; when the service access request passes the permission verification of the ontology application service, based on the service access request, access the ontology application service and / or the third-party service. It can effectively integrate and manage the ontology application service and the third-party service within the user's permission range, simplify the operation process of the user accessing the ontology application service and the third-party service, and reduce the operation complexity. BRIEF DESCRIPTION OF THE DRAWINGS
[0018] In order to more clearly illustrate the technical solutions in the present invention or the prior art, the following will briefly introduce the drawings required for the description of the embodiments or the prior art. Obviously, the drawings in the following description are some embodiments of the present invention. For those of ordinary skill in the art, other drawings can be obtained based on these drawings without creative efforts.
[0019] Figure 1 It is a schematic flowchart of the application service access method provided by the present invention.
[0020] Figure 2 It is a schematic flowchart of accessing the ontology application service based on the service access request provided by the present invention.
[0021] Figure 3 It is a schematic flowchart of accessing the third-party service based on the service access request provided by the present invention.
[0022] Figure 4 It is a schematic flowchart of accessing the ontology application service based on the first service token provided by the present invention.
[0023] Figure 5 It is a schematic flowchart of accessing the third-party service based on the second service token provided by the present invention.
[0024] Figure 6 It is a schematic structural diagram of the application service access device provided by the present invention.
[0025] Figure 7 It is a schematic structural diagram of the electronic device provided by the present invention. DETAILED DESCRIPTION OF THE EMBODIMENTS
[0026] To make the objectives, technical solutions, and advantages of the present invention clearer, the following will clearly and completely describe the technical solutions in the present invention in conjunction with the accompanying drawings in the present invention. Obviously, the described embodiments are some, but not all, of the embodiments of the present invention. All other embodiments obtained by those of ordinary skill in the art based on the embodiments in the present invention without creative efforts fall within the scope of protection of the present invention.
[0027] The application service access method provided by the present invention can obtain all services within its authorized scope through a service platform, improving information security while reducing the operational complexity of a same customer accessing different service platforms using different accounts.
[0028] For ease of explanation, in the present invention, the ontology application service will be taken as application service A, the third-party service as third-party service T, and the user as customer C for illustration.
[0029] Figure 1 It is a schematic flowchart of the application service access method provided by the present invention.
[0030] The following will be combined with Figure 1 to illustrate the process of the application service access method provided by the present invention.
[0031] In an exemplary embodiment of the present invention, in combination with Figure 1 it can be seen that the application service access method may include steps 110 to 130, and each step will be introduced separately below.
[0032] In step 110, the ontology application service and the third-party service are pre-processed for service integration so that the third-party service serves as an open service of the ontology application service.
[0033] In one embodiment, the ontology application service and the third-party service can be pre-processed for service integration so that the third-party service serves as an open service of the ontology application service. Among them, the third-party service serving as an open service of the ontology application service means that the third-party service can be obtained based on the ontology application service. In another example, application service A and third-party service T can be integrated to clarify the services directly provided by third-party service T to application service A.
[0034] In yet another embodiment, the application service A carries the name of this service and the required third-party service information, and submits a service application to the third-party service T. It is determined whether the applied service is within the pre-agreed scope. The purpose is that the third-party service T only provides services within the agreed scope. For example, for the function "data backup" of the third-party service T, if it is not set specifically, it will not be opened to the application service. If the conditions are met, it will pass the review, and the service information applied by the application service A will be provided to the application service A as an open service, and at the same time, the service authorization information will be stored. The service authorization information stored by the third-party service T includes the application service name and the open service information provided to the application service A. The service information stored by the application service A includes the third-party service identifier and the open services provided by the third-party service. An application service can apply for services from multiple third-party services.
[0035] In step 120, a service access request of the user is obtained, where the service access request is an access request for accessing the ontology application service and / or the third-party service.
[0036] In step 130, in the case where the service access request passes the permission verification of the ontology application service, based on the service access request, the ontology application service and / or the third-party service is accessed.
[0037] In one embodiment, a service access request of the user can be obtained, where the service access request is an access request for accessing the ontology application service and / or the third-party service. Further, in the case where the service access request passes the permission verification of the ontology application service, based on the service access request, the ontology application service and / or the third-party service can be accessed. In other words, the customer C can use the account and password to send a service request to the application service A, and the application service A performs permission authentication. After the authentication passes, the application service A and / or the third-party service T can be provided uniformly, otherwise, the task service is refused to be provided.
[0038] In yet another exemplary embodiment of the present invention, continuing with the embodiment described above Figure 1 as an example for illustration, the service access request may further include user login identity information; where the service access request passes the permission verification of the ontology application service (corresponding to step 130), and can be implemented in the following manner: In the case where the user login identity information in the service access request matches the allowed login identity information stored in the ontology application service, it is determined that the service access request passes the permission verification of the ontology application service.
[0039] In one embodiment, the user login identity information may include the account and password of the customer C. When the user login identity information matches the allowed login identity information stored in the ontology application service, it indicates that the service access request passes the permission verification of the ontology application service.
[0040] In yet another embodiment, customer C can submit identity information (corresponding to user login identity information) and permission information to the registration center of application service A. The identity information includes, but is not limited to, account, password, and biometric information. The permission information mainly includes services that customer C wants to obtain, such as the application service itself, specific third-party services, etc. Application service A conducts compliance reviews on the registration information submitted by the customer, such as account / mobile phone number / ID number, password / biometric information, etc., to avoid frequent malicious registrations. If the review passes, the customer information is stored and returned to the customer. Among them, the customer information can include customer login information. For example, if the customer registers through a mobile phone number, the automatically generated account, password, and permission information are feedback to the customer. The customer login information is stored in ciphertext, and the encryption methods include, but are not limited to, DES, AES, RSA, hash functions, digital signatures, etc.
[0041] Figure 2 It is a schematic flowchart of accessing the ontology application service based on the service access request provided by the present invention.
[0042] The following will be combined with Figure 2 to describe the process of accessing the ontology application service based on the service access request.
[0043] In an exemplary embodiment of the present invention, when the service access request is for accessing the ontology application service, and when the service access request passes the permission verification of the ontology application service, accessing the ontology application service based on the service access request can include step 210 and step 220. Each step will be introduced separately below.
[0044] In step 210, when the service access request passes the permission verification of the ontology application service, a first service token of the ontology application service is generated based on the service access request.
[0045] In step 220, the ontology application service is accessed based on the first service token.
[0046] In one embodiment, when the service access request passes the permission verification of the ontology application service, a first service token of the ontology application service can be generated based on the access request for accessing the ontology application service. During the application process, the ontology application service can be accessed based on the first service token.
[0047] In yet another embodiment, customer C can obtain services when passing the permission verification of application service A. Among them, the service modes include but are not limited to Web access mode and H5 mode. During the application process, customer C can use the login information. Among them, the login information is formed into ciphertext locally in a pre-agreed encryption method and transmitted on the communication channel to send a login request to application service A. Among them, except for the login information, the login request does not include other data, and this login request is used to generate a service token. Application service A receives the login information sent by customer C and compares it with the stored customer information. If the comparison is successful, a service token is generated, and the customer permissions are analyzed in combination with the permission storage module. Application service A can send the service token and customer permissions to customer C. Customer C stores the received service token and customer permissions and requests services from application service A based on the permission scope and carrying the service token. In this embodiment, based on the verification of application service A, service access to application service A can be realized.
[0048] Figure 3 It is a schematic flow diagram of accessing the third-party service based on the service access request provided by the present invention.
[0049] Next, in conjunction with Figure 3 The process of accessing the third-party service based on the service access request will be described.
[0050] In yet another exemplary embodiment of the present invention, when the service access request is for accessing the third-party service, among them, when the service access request passes the permission verification of the ontology application service, accessing the third-party service based on the service access request may include steps 310 to 360, and each step will be introduced separately below.
[0051] In step 310, when the service access request passes the permission verification of the ontology application service, a first service token of the ontology application service is generated.
[0052] In step 320, the application service identifier of the ontology application service is obtained.
[0053] In one embodiment, when the service access request passes the permission verification of the ontology application service, it is explained that the logged-in customer is a pre-registered user. In this scenario, a first service token for the ontology application service can be generated. And obtain the application service identifier of the ontology application service. Among them, the application service identifier can uniquely identify the ontology application service.
[0054] In step 330, based on the first service token and the application service identifier, a third-party service access request is initiated to the third-party service.
[0055] In step 340, after the third-party service receives a third-party service access request, it sends the first service token and the application service identifier to the ontology application service so that the ontology application service can verify the third-party service access request.
[0056] In yet another embodiment, a third-party service access request can be initiated to the third-party service based on the first service token and the application service identifier. Among them, the third-party service access request can be considered as a request to access the third-party service. After the third-party service receives the third-party service access request, it can send the first service token and the application service identifier to the ontology application service so that the ontology application service can verify the third-party service access request based on the first service token and the application service identifier.
[0057] It should be noted that how to verify the third-party service access request based on the first service token and the application service identifier will be introduced below and will not be elaborated in this embodiment.
[0058] In step 350, when the third-party service access request is verified successfully, a second service token for the third-party service is generated.
[0059] In step 360, access to the third-party service is performed based on the second service token.
[0060] In yet another embodiment, the second service token for the third-party service can be generated when the ontology application service verifies the third-party service access request successfully. Further, access to the third-party service is performed based on the second service token. Through this embodiment, it is possible to effectively integrate and manage the ontology application service and the third-party service within the customer's authority, simplify the operation process for the customer to access the ontology application service and the third-party service, and reduce the operation complexity. In other words, during the process of accessing the third-party service, the authority verification can be directly performed through the ontology application service, thus avoiding the inconvenience of management caused by the user registering multiple login accounts.
[0061] In another embodiment, client C can carry a service token (corresponding to the first service token of the main application service) and send a login request to a third-party service T, wherein the login request includes the identification of application service A in addition to the service token. After receiving the login request sent by client C, third-party service T verifies the legitimacy of client C with application service A; if the verification is successful, application service A sends the client authority to third-party service T. At this point, third-party service T generates a service token for client C. Third-party service T sends the third-party token and client authority to client C. Client C stores the received third-party token and third-party authority, and requests services from third-party service T based on the scope of authority and carrying the third-party token (corresponding to the second service token of the third-party service). It should be noted that the authority described in this embodiment can be considered as the scope of services that users can obtain.
[0062] In another embodiment, for third-party services that can be integrated into application services, data is directly shared, analyzed, and processed between the application services and the third-party services to achieve functions that cannot be achieved when the application services and the third-party services are independent, and the processing results are returned to the customer, providing the customer with a "1+1>2" service.
[0063] In another exemplary embodiment of the present invention, continuing with the above Figure 3 Taking the above embodiment as an example, the third-party service access request verification is passed (corresponding to step 350), which can be implemented in the following manner: Based on the first service token and / or the application service identifier, determine the target ontology application service corresponding to the first service token and / or the application service identifier; When the target ontology application service matches the ontology application service in a service-connected state with the third-party service, it is determined that the third-party service access request verification is successful.
[0064] In one embodiment, the target ontology application service that matches the first service token and / or application service identifier sent by the third-party service can be determined. When it is detected that the target ontology application service matches the ontology application service (corresponding to the application service A in the previous text) in a service-connected state with the third-party service, it can be determined that the third-party service access request has been verified. This means that access to the third-party service can be achieved through the login account of the application service A. In this embodiment, the customer logs in once at the application service A, and after being verified by the application service A, the service of the third-party service T can be directly obtained without verification again.
[0065] In another exemplary embodiment of the present invention, continuing with the above Figure 3Taking the described embodiment as an example, in the case where the service access request is for accessing a third-party service and an ontology application service, the application service access method may further include the following steps: Access the ontology application service based on the first service token.
[0066] In this embodiment, the customer logs in once at application service A. After being verified and passed by application service A, the customer can directly obtain the service of third-party service T without further verification, and can also directly obtain the service of application service A based on the first service token.
[0067] Figure 4 FIG. [FIGURE NUMBER] is a schematic flow chart of accessing the ontology application service based on the first service token provided by the present invention.
[0068] Next, in conjunction with Figure 4 the process of accessing the ontology application service based on the first service token will be described.
[0069] In an exemplary embodiment of the present invention, in conjunction with Figure 4 it can be seen that accessing the ontology application service based on the first service token may include steps 410 to 430. Each step will be introduced separately below.
[0070] In step 410, determine the first generation time when the first service token is generated.
[0071] In step 420, based on the current time and the first generation time, determine the elapsed time since the first service token was generated.
[0072] In step 430, when the elapsed time since the first service token was generated is less than or equal to a preset time, access the ontology application service based on the first service token.
[0073] In one embodiment, the first generation time when the first service token is generated can be determined, and then based on the current time and the first generation time, the elapsed time since the first service token was generated can be determined. If it is determined that the elapsed time since the first service token was generated is less than or equal to the preset time, it means that the service access is within the protection range, and the ontology application service can be directly accessed based on the first service token. Through this embodiment, application service A periodically verifies the customer's identity information, realizes token renewal or identity confirmation, avoids sudden termination of the service for the customer, and illegal access caused by changes in customer information.
[0074] Figure 5 FIG. [FIGURE NUMBER] is a schematic flow chart of accessing the third-party service based on the second service token provided by the present invention.
[0075] Next, in conjunction with Figure 5 Please note that the FIGURE NUMBER in and needs to be filled with the actual figure number.Describe the process of accessing the third-party service based on the second service token.
[0076] In an exemplary embodiment of the present invention, in combination with Figure 5 it can be seen that accessing the third-party service based on the second service token may include steps 510 to 530, and each step will be introduced separately below.
[0077] In step 510, determine the second generation time when the second service token is generated.
[0078] In step 520, based on the current time and the second generation time, determine the duration since the second service token was generated.
[0079] In step 530, when the duration since the second service token was generated is less than or equal to the preset duration, access the third-party service based on the second service token.
[0080] In one embodiment, the second generation time when the second service token is generated can be determined, and then based on the current time and the second generation time, the duration since the second service token was generated can be determined. If it is determined that the duration since the second service token was generated is less than or equal to the preset duration, it means that the service access is within the protection range, and the third-party service can be directly accessed based on the second service token. Through this embodiment, application service A periodically verifies the identity information of the customer, realizes token renewal or identity confirmation, avoids sudden termination of the service for the customer, and illegal access caused by changes in customer information.
[0081] According to the foregoing description, for the application service access method provided by the present invention, after a customer logs in to the application service once, the customer can obtain services of multiple third-party services, reducing the operation complexity of obtaining different services and the risk of customer password leakage; for third-party services that can be integrated into the application service, through data open sharing between the application service and the third-party service, more functions and better services can be provided for the customer; and the application service periodically verifies the identity information of the customer to realize token renewal and avoid sudden termination of the service for the customer; the application service periodically confirms the customer's identity to avoid illegal access after changes in customer information.
[0082] Next, describe the application service access device provided by the present invention. The application service access device described below can be correspondingly referred to the application service access method described above.
[0083] Figure 6 is a schematic structural diagram of the application service access device provided by the present invention.
[0084] Next, in combination with Figure 6 describe the structure of the application service access device provided by the present invention.
[0085] In an exemplary embodiment of the present invention, Figure 6 It can be known that the application service access device may include a connection module 610, an acquisition module 620, and an access module 630, and each module will be introduced below.
[0086] The connection module 610 may be configured to perform service connection processing between the main application service and the third-party service in advance, so that the third-party service can be used as an open service of the main application service; The acquisition module 620 may be configured to acquire a service access request of a user, wherein the service access request is an access request for accessing the ontology application service and / or the third-party service; The access module 630 may be configured to access the ontology application service and / or the third-party service based on the service access request when the service access request passes the authority verification of the ontology application service.
[0087] In an exemplary embodiment of the present invention, when the service access request is about accessing the ontology application service, the access module 630 may implement access to the ontology application service based on the service access request in the following manner when the service access request passes the authority verification of the ontology application service: In the case where the service access request passes the authority verification of the ontology application service, generating a first service token of the ontology application service based on the service access request; The ontology application service is accessed based on the first service token.
[0088] In an exemplary embodiment of the present invention, when the service access request is about accessing the third-party service, the access module 630 may implement access to the ontology application service based on the service access request in the following manner when the service access request passes the authority verification of the ontology application service: In the case where the service access request passes the authority verification of the ontology application service, generating a first service token of the ontology application service; Obtaining an application service identifier of the entity application service; Initiate a third-party service access request to the third-party service based on the first service token and the application service identifier; After the third-party service receives the third-party service access request, the first service token and the application service identifier are sent to the ontology application service, so that the ontology application service verifies the third-party service access request; When the verification of the third-party service access request passes, generate a second service token for the third-party service; Access the third-party service based on the second service token.
[0089] In an exemplary embodiment of the present invention, the access module 630 may determine that the verification of the third-party service access request passes in the following manner: Based on the first service token and / or the application service identifier, determine a target ontology application service corresponding to the first service token and / or the application service identifier; When the target ontology application service matches the ontology application service in a service connection state with the third-party service, determine that the verification of the third-party service access request passes.
[0090] In an exemplary embodiment of the present invention, when the service access request is for accessing the third-party service and the ontology application service, the access module 630 may further be configured to: Access the ontology application service based on the first service token.
[0091] In an exemplary embodiment of the present invention, the access module 630 may further be configured to: Determine a first generation time when the first service token is generated; Based on the current time and the first generation time, determine the duration since the first service token was generated; The access module 630 may access the ontology application service based on the first service token in the following manner: When the duration since the first service token was generated is less than or equal to a preset duration, access the ontology application service based on the first service token.
[0092] In an exemplary embodiment of the present invention, the access module 630 may further be configured to: Determine a second generation time when the second service token is generated; Based on the current time and the second generation time, determine the duration since the second service token was generated; The access module 630 may access the third-party service based on the second service token in the following manner: When the duration since the second service token was generated is less than or equal to a preset duration, access the third-party service based on the second service token.
[0093] In an exemplary embodiment of the present invention, the service access request further includes user login identity information; the access module 630 may determine that the service access request passes the permission verification of the ontology application service in the following manner: When the user login identity information in the service access request matches the allowed login identity information stored in the ontology application service, it is determined that the service access request passes the permission verification of the ontology application service.
[0094] Figure 7 An entity structure diagram of an electronic device is exemplified, as Figure 7 shown. The electronic device may include: a processor 710, a communication interface 720, a memory 730, and a communication bus 740. Among them, the processor 710, the communication interface 720, and the memory 730 communicate with each other through the communication bus 740. The processor 710 may call the logical instructions in the memory 730 to execute an application service access method, which includes: pre-processing the ontology application service and the third-party service to enable the third-party service to be an open service of the ontology application service; obtaining a service access request of a user, where the service access request is an access request for accessing the ontology application service and / or the third-party service; when the service access request passes the permission verification of the ontology application service, accessing the ontology application service and / or the third-party service based on the service access request.
[0095] In addition, when the logical instructions in the above-mentioned memory 730 are implemented in the form of a software functional unit and sold or used as an independent product, they may be stored in a computer-readable storage medium. Based on such an understanding, the technical solution of the present invention, in essence, or the part that contributes to the prior art, or a part of this technical solution, may be embodied in the form of a software product. The computer software product is stored in a storage medium and includes several instructions for causing a computer device (which may be a personal computer, a server, or a network device, etc.) to execute all or part of the steps of the methods described in various embodiments of the present invention. The foregoing storage medium includes: various media such as a USB flash drive, a mobile hard disk, a read-only memory (ROM, Read-Only Memory), a random access memory (RAM, Random Access Memory), a magnetic disk, or an optical disc that can store program codes.
[0096] On the other hand, the present invention also provides a computer program product, which includes a computer program that can be stored on a non-transitory computer-readable storage medium. When the computer program is executed by a processor, the computer can execute the application service access method provided by each of the above methods. The method includes: pre-processing the service connection between the ontology application service and the third-party service so that the third-party service serves as an open service of the ontology application service; obtaining a service access request of a user, where the service access request is an access request for accessing the ontology application service and / or the third-party service; and when the service access request passes the permission verification of the ontology application service, accessing the ontology application service and / or the third-party service based on the service access request.
[0097] In another aspect, the present invention also provides a non-transitory computer-readable storage medium, on which a computer program is stored. When the computer program is executed by a processor, it is configured to execute the application service access method provided by each of the above methods. The method includes: pre-processing the service connection between the ontology application service and the third-party service so that the third-party service serves as an open service of the ontology application service; obtaining a service access request of a user, where the service access request is an access request for accessing the ontology application service and / or the third-party service; and when the service access request passes the permission verification of the ontology application service, accessing the ontology application service and / or the third-party service based on the service access request.
[0098] The device embodiments described above are merely illustrative. The units described as separate components may or may not be physically separated, and the components shown as units may or may not be physical units, that is, they may be located in one place or distributed to multiple network units. Some or all of the modules can be selected according to actual needs to achieve the purpose of the solution of this embodiment. A person of ordinary skill in the art can understand and implement it without creative efforts.
[0099] Through the description of the above embodiments, those skilled in the art can clearly understand that each embodiment can be implemented by means of software plus a necessary general hardware platform, and of course, it can also be implemented by hardware. Based on such an understanding, the essence of the above technical solution, or the part that contributes to the prior art, can be embodied in the form of a software product. The computer software product can be stored in a computer-readable storage medium, such as ROM / RAM, magnetic disk, optical disk, etc., and includes several instructions for causing a computer device (which can be a personal computer, a server, or a network device, etc.) to execute the methods described in each embodiment or some parts of the embodiments.
[0100] Finally, it should be noted that the above embodiments are only used to illustrate the technical solutions of the present invention and are not intended to limit them. Although the present invention has been described in detail with reference to the foregoing embodiments, those of ordinary skill in the art should understand that they can still modify the technical solutions described in the foregoing embodiments, or perform equivalent replacements for some of the technical features. These modifications or replacements do not cause the essence of the corresponding technical solutions to deviate from the spirit and scope of the technical solutions of the embodiments of the present invention.
Claims
1. A method for accessing an application service, characterized in that, The method includes: Previously, the ontology application service and the third-party service are processed to connect the services, so that the third-party service serves as the open service of the ontology application service; Obtain a service access request from a user, where the service access request is an access request for accessing the ontology application service and / or the third-party service; When the service access request passes the permission verification of the ontology application service, access the ontology application service and / or the third-party service based on the service access request.
2. The application service access method according to claim 1, wherein When the service access request is for accessing the ontology application service, the step of accessing the ontology application service based on the service access request when the service access request passes the permission verification of the ontology application service specifically includes: When the service access request passes the permission verification of the ontology application service, generate a first service token for the ontology application service based on the service access request; Access the ontology application service based on the first service token.
3. The application service access method according to claim 1, characterized in that, When the service access request is for accessing the third-party service, the step of accessing the third-party service based on the service access request when the service access request passes the permission verification of the ontology application service specifically includes: When the service access request passes the permission verification of the ontology application service, generate a first service token for the ontology application service; Obtain the application service identifier of the ontology application service; Based on the first service token and the application service identifier, initiate a third-party service access request to the third-party service; After the third-party service receives the third-party service access request, send the first service token and the application service identifier to the ontology application service, so that the ontology application service verifies the third-party service access request; When the third-party service access request passes the verification, generate a second service token for the third-party service; Access the third-party service based on the second service token.
4. The application service access method according to claim 3, wherein The verification of the third-party service access request is achieved in the following manner: Based on the first service token and / or the application service identifier, determine the target ontology application service corresponding to the first service token and / or the application service identifier; When the target ontology application service matches the ontology application service in a service-connected state with the third-party service, determine that the third-party service access request passes the verification.
5. The application service access method according to claim 3, wherein When the service access request is for accessing the third-party service and the ontology application service, the method further includes: Access the ontology application service based on the first service token.
6. The application service access method according to claim 2, wherein Before accessing the ontology application service based on the first service token, the method further includes: Determine the first generation time when the first service token is generated; Based on the current time and the first generation time, determine the duration since the first service token was generated; The accessing the ontology application service based on the first service token specifically includes: In a case where the first service token has been generated for a time period that is less than or equal to a preset time period, the ontology application service is accessed based on the first service token.
7. The application service access method according to claim 3, wherein Before accessing the third-party service based on the second service token, the method further includes: Determining a second generation time for generating the second service token; Determine, based on the current time and the second generation time, how long the second service token has been generated; The accessing the third-party service based on the second service token specifically includes: In a case where the time period during which the second service token has been generated is less than or equal to a preset time period, the third-party service is accessed based on the second service token.
8. The application service access method according to any one of claims 1 to 7, characterized in that, The service access request also includes user login identity information; the service access request is verified by the authority of the ontology application service, and is implemented in the following manner: In a case where the user login identity information in the service access request matches the allowed login identity information stored in the ontology application service, it is determined that the service access request passes the authority verification of the ontology application service.
9. An application service access device, characterized in that, The device comprises: A connection module is used to connect the main application service with the third-party service in advance, so that the third-party service can be used as an open service of the main application service; An acquisition module, used to acquire a service access request of a user, wherein the service access request is an access request for accessing the entity application service and / or the third-party service; The access module is used to access the ontology application service and / or the third-party service based on the service access request when the service access request passes the authority verification of the ontology application service.
10. An electronic device, comprising a memory, a processor, and a computer program stored on the memory and executable on the processor, characterized in that, When the processor executes the computer program, the application service access method according to any one of claims 1 to 8 is implemented.