Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

151 results about "Authority control" patented technology

In library science, authority control is a process that organizes bibliographic information, for example in library catalogs by using a single, distinct spelling of a name (heading) or a numeric identifier for each topic. The word authority in authority control derives from the idea that the names of people, places, things, and concepts are authorized, i.e., they are established in one particular form. These one-of-a-kind headings or identifiers are applied consistently throughout catalogs which make use of the respective authority file, and are applied for other methods of organizing data such as linkages and cross references. Each controlled entry is described in an authority record in terms of its scope and usage, and this organization helps the library staff maintain the catalog and make it user-friendly for researchers.

Data asset classification and dynamic authority management system

The invention relates to the technical field of data security, in particular to a data asset classification and grading and authority dynamic management system, which comprises an asset parameter acquisition module, a classification feature judgment module, a grading weight calculation module and an authority dynamic adaptation module. According to the method, metadata and path parameters are automatically collected through a distributed crawler in combination with a regular expression, naming parameters and content feature parameters are separated to generate a structured parameter set, field naming similarity is quantized through a Levenshtein distance, content character distribution features are verified through chi-square verification, and a naming similarity and distribution feature dual verification mechanism is constructed. According to the method, sensitivity, access frequency and data volume weight are dynamically distributed through an entropy weight method, grading parameters are generated through linear superposition, an RBAC model is combined with a Dijkstra algorithm to verify access path topology legality, unauthorized access is blocked, and the heterogeneous data classification grading and authority control dynamic adaptive capacity is improved.
Owner:国义招标股份有限公司

Intelligent agent collaborative question-answering method and system based on context awareness and authority control

The invention provides an agent collaborative question-answering method and system based on context awareness and authority control, and belongs to the technical field of artificial intelligence. The method comprises the following steps: acquiring user query, and triggering a user context manager to generate a session state user context object containing a permission label and preference; the central scheduler performs task decomposition based on the query intention and the context, dynamically selects an intelligent agent through a multi-dimensional scoring model and binds a knowledge source; the authority-aware agent execution engine executes triple authority verification and intermediate result desensitization processing in the whole process, and supports agent fault tolerance and audit log recording. The method realizes unification of knowledge security and access flexibility, supports multi-scene adaptive question and answer, and has good expandability and fault-tolerant capability.
Owner:NANJING SHENYE INTELLIGENT SYST ENG

Multi-account safety management method and system based on mobile energy storage charging pile

The invention relates to a multi-account security management method and system based on a mobile energy storage charging pile. According to the method, a multi-level user account system and a dynamic authority management mechanism are established, a dynamic token carrying authority attributes is generated through encryption verification to achieve access control, user operation is captured in real time to generate log data with an identity label, the log data are synchronized with a cloud end, and an equipment control instruction is generated in combination with Internet of Things data collection and authority verification. Meanwhile, authority rules are dynamically updated, whole-course tracing of operation behaviors of the charging pile system, real-time effectiveness of authority change and linkage management and control of equipment states and user authorities are achieved, and the problem that potential safety hazards are caused by extensive authority control, difficult operation tracing and authority strategy lagging of a traditional charging pile management system is effectively solved.
Owner:ZHONGDE CENTURY (TIANJIN) NEW ENERGY TECHNOLOGY CO LTD +2

Operation and maintenance right control system based on Bluetooth

The invention relates to the technical field of authority control, in particular to a Bluetooth-based operation and maintenance authority control system, which comprises a Bluetooth link identification module, a task risk assessment module, an authority adaptation decision module, a task path verification module and an execution consistency verification module. By acquiring the Bluetooth communication address and the channel number and combining the hopping frequency and the stability, the link security state identification is realized, the communication legality judgment precision is improved, the task risk is evaluated by introducing the equipment performance and the communication parameters, the bearing capacity judgment precision is improved, the permission level, the execution frequency and the historical success rate are combined, and the reliability of the system is improved. The permission matching state is dynamically verified, and the task success rate is optimized. Relay node addresses are compared with declaration path structure consistency, accurate and reliable paths are ensured, execution environments are verified according to device roles and instruction contents, instruction execution feasibility judgment is enhanced, all links are compared based on real-time data and structures, task whole-process closed-loop control is formed, and operation safety and decision accuracy are improved.
Owner:XIAMEN JINMING ENERGY SAVING TECH

Sensitive information identification and authority control method based on large model

The invention relates to a sensitive information identification and authority control method based on a large model, which utilizes a large language model and combines context analysis and prompt engineering to realize automatic identification and classification of sensitive information in a complex document. Combining the user behavior log and the multi-dimensional attribute data to construct a dynamic permission decision model; permission configuration with a file as the minimum unit is supported through a visual interface, and setting of access timeliness is supported; and constructing a self-learning mechanism, and continuously optimizing a sensitive information identification model and an authority strategy library. According to the scheme, the problems that when a traditional sensitive information recognition and authority control method faces increasingly complex service scenes and the continuously increasing data volume, sensitive information recognition and screening are difficult, and personnel authority is flexibly deployed are solved. The whole process from sensitive information identification to permission allocation is automatic and intelligent.
Owner:SHANGHAI MECHANICAL & ELECTRICAL EQUIP TENDERING CO LTD

Network data security protection method and system based on multi-dimensional right control

The invention relates to the related technical field of zero-trust networks, in particular to a network data security protection method and system based on multi-protection right control, and the method comprises the steps: connecting a terminal and a protection center, setting a primary authorization mechanism, starting hierarchical authorization of a right group, evaluating the risk in real time, interrupting the access if the risk does not accord with the threshold, and carrying out the threat sharing. The technical problems that the authority is allocated only according to a fixed role, the enterprise business scene change and the user actual demand change cannot be adapted, the access of the user to the isolated data area resource is lack of fine-grained control, the situation of excessive authority granting or insufficient authority granting is easy to occur, and the data leakage risk is increased are solved; according to the invention, dynamic hierarchical management of the authority is realized by constructing a primary authorization authentication mechanism and a hierarchical authorization authentication mechanism, the authority is minimized to a single service instance, and fine-grained partitioning is carried out on resources, so that data access control is more accurate, illegal data access and attack diffusion are effectively blocked, and data access efficiency is improved. And the safety of the isolated data area is ensured.
Owner:SHICHUAN DIGITAL TECH (SHENZHEN) CO LTD

Authority control method, system and equipment for fine-grained multi-dimensional configuration and medium

The invention provides a fine-grained multi-dimensional configuration permission control method and system, electronic equipment and a storage medium, and aims to solve the problem that permission division cannot meet fine-grained permission control requirements, the method comprises the following steps: on the basis of an RBAC model, adding organization elements, and adding an organization structure hierarchical relationship, the relationship between the organization structure and the content of each part in the model is obtained; a dynamic role allocation and role inheritance mechanism is introduced, the inheritance relation between roles is specified when the roles are defined, so that the child-class roles can inherit the permission set of the parent-class roles, and permission expansion is carried out; performing permission configuration, performing cross organization on the function permission and the data permission, then distributing the function permission and the data permission to corresponding organization roles, ensuring that each organization role has the basic permission, and expanding private permissions for the organization roles according to different business requirements; the organization roles are distributed to the users, so that authority distribution of the users is realized. According to the invention, validity and timeliness of authority management can be ensured.
Owner:CHINA UNITED NETWORK COMM GRP CO LTD +2

Cloud side-end cooperation-oriented network management platform hierarchical authority control method and platform

The invention discloses a hierarchical authority control method and platform for a network management platform oriented to cloud side-end collaboration. The method comprises the following steps: constructing a topological structure by collecting equipment resources, user identities and authority level information of all levels of platforms; based on a task scheduling and resource management algorithm and an edge-cloud collaboration model, factors such as task types and resource loads are comprehensively considered, and initial allocation and dynamic adjustment of tasks between cloud edge ends are achieved; verifying a user request by using the permission level information, recycling resources after a task is completed, and feeding back a result; and regularly collecting and analyzing data, and optimizing an algorithm, a model and an authority control strategy. The platform comprises a resource information acquisition unit, a task initial allocation unit, a task cooperative processing unit, an authority verification unit, a resource recovery feedback unit, a strategy optimization unit and the like, and the units are mutually connected and cooperated. According to the method, efficient task scheduling, accurate authority control and reasonable resource utilization of the cloud side-end collaborative network are realized, and stable operation of a network management platform is guaranteed.
Owner:STATE GRID QINGHAI ELECTRIC POWER COMPANY

Digital management system and method for science and technology project archives

The invention discloses a science and technology project archive digital management system and method, and belongs to the field of science and technology project archive management, and the system comprises an archive authority evaluation marking module, an analysis storage module, a registration login and authentication and encryption module; a right evaluation value is obtained by analyzing association complexity, updating frequency and the like of the archive, and an access right level is evaluated and stored in a hierarchical manner; an access key is generated and monitored during registration and login; performing three-level encryption on the file title, and displaying special characters when the file title is not decrypted; the method comprises the steps of authority level evaluation, file hierarchical storage, registration and login authentication and title encryption. The problems that in the prior art, file authority management is not fine, the encryption means is single, the login authentication process is tedious, and effective monitoring is lacked are solved, accurate authority management and control, title multi-level encryption and abnormal access monitoring are achieved, and the safety and efficiency of file management are improved.
Owner:杭州珺毅科技有限公司

Large model metadata authority management method and system based on RBAC-ABAC fusion model

The invention relates to the technical field of big data management, in particular to a big model metadata authority management method and system based on an RBAC-ABAC fusion model, and the method comprises metadata annotation, data product release, big model and user access, semantic perception, dynamic authority adjustment, row-level authority control and authority life cycle management. The method has the beneficial effects that by fusing the advantages of the RBAC model and the ABAC model, the defects of a single authority management model are overcome, the efficient, dynamic and fine-grained authority management of the large model metadata is realized, the security of the large model metadata is improved, and the authority management requirement of the large model for accessing the dynamic business data is met.
Owner:SHANDONG LANGCHAO YUNTOU INFORMATION TECH CO LTD

File sharing permission control method and system applied to file hosting management system

The invention provides an archive sharing authority control method and system applied to an archive hosting management system, and relates to the technical field of archive hosting management. The method comprises the following steps: firstly, calling a scene dependency relationship set (including upstream, downstream and parallel scene dependency sub-relationships) of an archive to be shared and behavior influence degree data (including influence records on each scene) of a sharing application user from a system, and then constructing a scene dependency chain and sorting according to association strength; analyzing the user behavior influence record and the scene dependency chain corresponding hierarchy to generate an influence degree conduction result, extracting the authority adaptation demand and scene influence weight of each hierarchy scene, and finally generating a dynamic sharing authority scheme through a multi-scene authority association algorithm of a dynamic authority derivation rule base. And a permission execution link is imported to realize user access permission configuration, so that the accuracy and flexibility of file sharing permission control are effectively improved.
Owner:CHENGDU ZHENGHUI INFORMATION TECH CO LTD

Dynamic authority control method and system based on user behavior characteristics

The embodiment of the invention relates to a dynamic permission control method and system based on user behavior characteristics, and the method comprises the steps: obtaining a basic access permission and a historical behavior baseline of a current user in response to a login operation; collecting current operation behavior characteristics of a current user, wherein the current operation behavior characteristics comprise a current access path and a current data query quantity; acquiring context environment information of the current user under the current operation; determining the current operation deviation degree of the current user by using a multi-dimensional scoring mechanism based on the historical behavior baseline, the current operation behavior characteristics and the context environment information; determining a risk level corresponding to the current operation based on the deviation degree of the current operation; and based on the determined risk level, performing risk control processing on the current user according to a preset risk control strategy. According to the embodiment of the invention, the abnormal behavior of the current user can be sensed in time and the response is made according to the preset risk control strategy to prevent data leakage.
Owner:XIAN WANXIANG ELECTRONICS TECH CO LTD

Authority control method and device based on fine granularity

The embodiment of the invention provides an authority control method and device based on fine granularity, and the method comprises the steps: carrying out the node relation extraction of a mapping database, obtaining a role node and a product node, and introducing a user node and a context node; the method comprises the following steps: constructing a hyperedge structure, performing hyperedge linking on role nodes, product nodes, user nodes and service context nodes, determining a corresponding hyperedge relationship, performing dynamic weight endowing on the hyperedge relationship according to a time decay factor and a context risk coefficient, determining a dynamic graph structure, and constructing a directed acyclic graph based on the role inheritance relationship. Fusing the dynamic graph structure and the directed acyclic graph according to a graph algorithm, and determining a corresponding product permission layer graph database; the method comprises the steps of receiving a user operation instruction, performing context-aware query based on the operation instruction according to a graph traversal algorithm, determining a user permission, and performing permission control on a user according to the user permission. The method can improve the efficiency and the refinement degree of permission allocation.
Owner:BEIJING HUAHANG WEISHI IND SOFTWARE TECH CO LTD

Power enterprise intelligent office knowledge authority management method based on ABAC

The invention discloses an ABAC-based power enterprise intelligent office knowledge authority management method, which comprises the following steps of: designing user attributes, knowledge attributes and an access mechanism by adopting an ABAC authority control framework, and constructing authority control models of companies, departments, organizations and personal documents; obtaining the authority control model, constructing an access control strategy library, and performing authority control on large model question and answer content through a question and answer control technology in document vectorization; establishing an authority control performance optimization strategy according to the authority control, and reducing the occupation of authority control check resources; according to the scheme, the strict safety control requirement of a power enterprise can be met, the requirements of knowledge sharing and intelligentization in the enterprise can be met, the consistency and real-time performance of user attribute data are ensured, the effectiveness of authority management is ensured, authority management and control of knowledge ontology and large model questions and answers are realized, knowledge safety is ensured, occupation of authority control check resources is reduced, and the enterprise experience is improved. And the system response speed is improved.
Owner:GUANGZHOU POWER SUPPLY BUREAU GUANGDONG POWER GRID CO LTD

Self-adaptive authority control method and device, equipment and storage medium

The embodiment of the invention provides an adaptive permission control method and device, equipment and a storage medium, and relates to the technical field of information security. The method comprises the steps of generating an object permission vector and an object query vector corresponding to a query request, obtaining a dynamic attribute of a target object according to a current query rule, determining an authentication mode according to a rule attribute dependency relationship corresponding to the current query rule, obtaining a candidate data set corresponding to the dynamic attribute in a vector database, and sending the candidate data set to the target object. Calculating a comprehensive score corresponding to the joint vector according to the object query vector, the object permission vector, the data feature vector and the data permission vector, and determining target data corresponding to the query request from the initial data based on the comprehensive score. The query request of the target object is responded in real time in a mode of obtaining the dynamic attribute, so that the requirements of real-time access control and flexibility are met. The comprehensive score is used as fine-grained permission evaluation information, dynamic permission fuzzy processing is realized, the information leakage risk is reduced, and the security is improved.
Owner:PENG CHENG LAB

Authority control method and device based on knowledge base, equipment and medium

The invention relates to the technical field of computers, and discloses a knowledge base-based authority control method, device and equipment and a medium, and the method comprises the steps: obtaining a to-be-accessed target knowledge base and a user identity information set, and carrying out the grading processing of the knowledge content in the target knowledge base through a natural language model, and obtaining a plurality of knowledge categories; determining an initial user identifier corresponding to each piece of initial user identity information in the user identity information set, and establishing a corresponding relationship between each initial user identifier and the knowledge category; receiving an access request of a target knowledge base, determining a target user identifier from the user token information in the access request, and determining an authorized target knowledge category from the corresponding relationship according to the target user identifier; and performing legality verification on the access request, and if the verification is passed, allowing the access request to access the knowledge content corresponding to the target knowledge category. The method can be applied to financial science and technology and medical care service program systems, and fine-grained permission allocation and access verification can be achieved.
Owner:CHINA PING AN PROPERTY INSURANCE CO LTD

Authority management method and system based on user behaviors

The invention discloses an authority management method and system based on user behaviors, and belongs to the field of artificial intelligence, and the method comprises the following steps: S1, obtaining behavior data of a power user, and carrying out the preliminary data cleaning of the data; s2, performing multi-dimensional feature extraction on the cleaned behavior data, and generating a user behavior portrait in combination with a user identity tag; s3, inputting the user behavior portrait into a behavior scoring model, and outputting a behavior score and a risk coefficient; and S4, dynamically configuring an authority level by an authority control engine according to a scoring risk mapping rule. By introducing a dynamic permission adjustment mechanism based on the user behavior score and risk assessment, the behavior mode of the user can be monitored and analyzed in real time, the permission level of the user can be dynamically adjusted according to the real-time demand and risk level of the user, the permission demand of the user can be judged according to the actual operation behavior of the user, and the user experience is improved. Excessive or insufficient authority authorization is avoided, and intelligence and dynamics of authority management are improved.
Owner:GANSU SHINING SCI & TECH

Authority control method, system and equipment under front-end code monorepo warehouse management and medium

The invention relates to the technical field of software version control and code security management, in particular to an authority control method, system and device under front-end code monorepo warehouse management and a medium. The method supports file-level, directory-level and extended-name-level multi-dimensional authority rules, fills the blank of Git native capability, and realizes fine-grained control; the method is realized completely based on a Git hook, does not need additional services or middleware, is compatible with any Git hosting platform, and realizes zero external dependence; permission file modification is ensured to be authorized by an administrator through digital signature, so that a developer is prevented from relaying permission rules privately; the signature verification process is completed at the local hook, an external certificate server does not need to be connected, the security and the offline availability are both considered, and the tamper-resistant capability is enhanced.
Owner:CHINA COMM SERVICE APPL & SOLUTION TECH CO LTD

Cloud disk data access control and authority management method and system based on zero-trust architecture

The invention provides a cloud disk data access control and authority management method and system based on a zero-trust architecture, and relates to the technical field of cloud computing, and the method comprises the steps: generating a real-time risk score through calculating a user access behavior deviation degree, a geographic position and a device fingerprint; reading the distributed permission strategy library in parallel by adopting a consistent Hash algorithm, and obtaining dynamic permission configuration; based on an attribute access control strategy, constructing a multi-dimensional permission decision matrix in combination with a data sensitivity label and an access environment context; and finally executing fine-grained access control and recording a verification process. According to the method, dynamic and continuous identity verification and refined authority control are realized, and the cloud disk data access security is remarkably improved.
Owner:BEIJING XINXUN XINAN TECH CO LTD

Workflow authority control method and system based on quantum encryption mechanism

The invention discloses a workflow permission control method and system based on a quantum encryption mechanism. The method comprises the following steps: in response to a submitted application, obtaining a first quantum process key and a first quantum group key; performing encryption processing on the applied service data according to the first quantum process key; performing encryption processing on the applied permission data according to the first quantum group key; in response to an approval request for the application, decrypting the permission data according to the first quantum group key, and determining an approval permission of an approval request object; and decrypting the service data by using the first quantum process key according to the approval authority. Thus, during examination and approval, the authority data is decrypted through the first quantum group key to verify the authority, then the service data is decrypted by using the first quantum process key as required, and the preposed authority protection is constructed, so that the situation that a non-approver obtains information beyond the authority can be effectively intercepted, and the problem that the non-approver tends to be the approver to divulge is solved to a certain extent; and the confidentiality of the application information is ensured.
Owner:中电信量子信息科技集团有限公司

Data authority control system based on data entity low decoupling

The invention relates to the field of data information, in particular to a data authority control system based on data entity low decoupling, which comprises a data authority management server used for processing data authority rules and generating new SQL (Structured Query Language) conditions, the authority controllers are used for being injected into a service system needing to be subjected to authority management based on the data entity to enable the service system to have data authority control capability, and data interaction is carried out between the data authority management server and the authority controllers through a data transmission unit. The data permission control system established by adopting the JAVA + Spring framework can manage data permissions of multiple dimensions, solves the problem of high coupling of a service system and a data permission function by adopting a low-coupling design mode, also avoids the development cost that new and old systems need the data permission function, and improves the development efficiency. And the development cost and the integration difficulty required by the data permission are greatly reduced.
Owner:CHONGQING TELECOM SYST INTEGRATION CO LTD

Office authority transfer management system for mobile office

The invention relates to the technical field of computer authority management, and discloses an office authority transfer management system for mobile office, which comprises an authority abstraction layer module used for converting original authority representation of each terminal platform into unified and standardized intermediate state representation; the permission authorization service module is used for supporting permission verification, granting and revocation operations in an offline state; the scene sensing module is used for constructing a multi-dimensional scene feature space and identifying key features related to safety in a current scene through a multi-head attention network; the permission adjusting module is used for realizing a continuous permission control strategy from strict limitation to high freedom; the behavior monitoring module is used for recording permission use behaviors in an offline state and detecting potential abnormal operations; according to the method, the working continuity and the user experience in a mobile office environment are improved, and meanwhile, the enterprise data security is effectively guaranteed through a permission progressive release mechanism and a permission re-evaluation mechanism triggered by environment change.
Owner:JILIN BODA INFORMATION TECHNOLOGY CO LTD

Front-end-oriented multi-tenant security isolation and authority control method and system

The invention discloses a front-end-oriented multi-tenant security isolation and authority control method and system, and relates to the technical field of front-end security. Comprising the steps of 1, deploying a dynamic isolation route and a sandboxed UI environment, 2, fusing RBAC and ABAC to carry out fine-grained authority control, 3, carrying out safety management on a request link, 4, deploying a lightweight authentication gateway and carrying out behavior auditing, and 5, carrying out behavior auditing. According to the invention, through dynamic routing isolation, component-level authority control and a sandbox operation environment, security isolation and fine-grained access control of different tenants in front-end applications are realized.
Owner:INSPUR COMM TECH CO LTD

Intelligent agent tool calling authority control system based on terminal user identity

The invention relates to the technical field of identity verification, and particularly discloses a terminal user identity-based agent tool calling permission control system, which comprises a receiving module for receiving a tool calling request initiated by a terminal user; the processing module is used for acquiring real-time user attributes from the user attribute service based on the user identity identification; the user identity identification and the real-time user attribute are combined to form a dynamic permission context; the matching module is used for establishing an authority strategy database based on original strategy data collected from a plurality of strategy data sources, inputting the dynamic authority context into the authority strategy database for rule matching, and outputting an authority judgment result; and the control module is used for executing corresponding tool calling control operation according to the permission judgment result. According to the method, the calling process of the agent tool is safer and more transparent and has dynamic adaptive capacity, and the compliance and risk prevention and control capacity of an enterprise in a sensitive business scene are remarkably improved.
Owner:GUANGXI BEITOU XINCHUANG TECH INVESTMENT GRP CO LTD

User authority control method of business financial management system

The invention discloses a user authority control method of a financial management system, and relates to the technical field of financial management systems. The method is realized based on a management system, and the management system comprises a user management module which is used for managing a user account; the role management module is used for carrying out classification processing on the user accounts based on a preset rule; and the permission distribution module is used for performing permission distribution based on a preset rule. A behavior mode scoring module is set, and behavior mode scores are intelligently evaluated and dynamically adjusted according to user operation behaviors, so that user authority management is more flexible and close to actual performance, positive behaviors are encouraged, and negative operations are inhibited; the basic weight, the behavior pattern score, the level score, the evaluation score, the business contribution degree score and the knowledge sharing score are comprehensively considered in the calculation of the account weight, and standardization processing is performed through the reference coefficient, so that the reasonability of weight distribution is ensured, and the improvement of the enthusiasm and the contribution degree of the user is promoted.
Owner:TENGHU (HANGZHOU) NETWORK TECHNOLOGY CO LTD

Method and system for establishing, managing and inquiring relational network, storing and managing digital contents of uploading person and owner based on relation and controlling access authority based on relation

The invention discloses a method and a system for establishing, managing and inquiring a relational network, storing and managing digital contents of an uploader and an owner based on a relation and controlling access authority based on the relation, and relates to an internet information technology, in particular to a method and a system for firstly establishing the relational network and then storing and managing the digital contents of the uploader and the owner based on the relation. A system that then stores digital content as members belonging to a relational network and determines access permissions according to relationships includes creating and expanding the relational network, storing digital information as belonging to members, and setting relationship-based access permissions, inviting new users corresponding to the members, and determining the access permissions according to the relationships. Judging whether the relationship between the member corresponding to any user and any member meets the set relationship-based access permission of the target digital content of the member or not, and supporting the access of the member under the condition that the relationship between the member and any member meets the set relationship-based access permission of the target digital content of the member; meanwhile, query of member groups based on specific relation modes (such as paternal lines, maternal lines, ancestors, offspring and the like) is supported.
Owner:冯佳骊

Workflow permission control method and system based on quantum encryption mechanism

ActiveCN121150950BConfidentialityEngineering
The application discloses a kind of workflow authority control method and system based on quantum encryption mechanism.Method includes: in response to the application submitted, obtain first quantum flow key and first quantum group key;According to the first quantum flow key, the business data of application is encrypted;According to the first quantum group key, the authority data of application is encrypted;In response to the approval request of application, according to the first quantum group key, the authority data is decrypted, and the approval authority of the approval request object is determined;According to the approval authority, the business data is decrypted with the first quantum flow key.In this way, when approving, first decrypt the authority data through the first quantum group key to verify the authority, then decrypt the business data as needed with the first quantum flow key, build pre-authorization protection, which can effectively intercept unauthorized access to information by non-approval person, to some extent solve the problem of non-approval person impersonating approval person to leak information, and protect the confidentiality of application information.
Owner:中电信量子信息科技集团有限公司

API (Application Program Interface) execution method and device for dynamic authority control and storage medium

The invention relates to a dynamic authority control API execution method and device and a storage medium, and the method comprises the steps: receiving an API request sent by a user, and carrying out the authority verification of the API request; evaluating the risk of the API request in response to the fact that the permission verification is not passed; issuing a dynamic temporary permission in response to the risk assessment result meeting a threshold value; and completing the API request according to the dynamic temporary permission.
Owner:CHINA EASTERN AIRLINES CO LTD +2

Distributed database data access method and related equipment

The invention provides a distributed database data access method and related equipment, and relates to the technical field of computers. The method comprises the following steps: acquiring a data access request initiated by a user, wherein the data access request is a request based on an SQL statement; analyzing the SQL statement to obtain a to-be-accessed data table; determining a permission label of the to-be-accessed data table, wherein the permission label comprises at least one of a table permission label, a column permission label and a row permission label; performing permission verification on the user based on the permission label of the to-be-accessed data table; and if the permission verification is passed, executing the SQL statement to query the distributed database to obtain a data access result, and returning the data access result to the user. The authority control granularity can be refined, an authority strategy does not need to be independently configured for the data table, and the operation and maintenance difficulty is reduced.
Owner:XIAN TONGXING HENGYAO INFORMATION TECHNOLOGY CO LTD

Authority control method and device, data management system, equipment and storage medium

The invention relates to an authority control method and device, a data management system, equipment and a storage medium. The method comprises the following steps: collecting fingerprint data corresponding to each touch operation from the first detection of the touch operation for a main operation interface of a system; according to the fingerprint data collected this time and fingerprint data collected before this time, determining a user state corresponding to the touch operation this time; under the condition of determining that the user state corresponding to the touch operation is a user change state, determining an authority level corresponding to the fingerprint data collected at the time; according to the permission level corresponding to the fingerprint data collected this time and the permission level corresponding to the fingerprint data collected before this time, a permission system corresponding to the touch operation this time is regulated and controlled. In the operation process, the user is dynamically identified, the permission level of the user is dynamically matched, and the permission system is adjusted, so that the purpose of adjusting the operation permission along with the change of the identity of the user in the operation process is achieved, and the data security is improved.
Owner:GREE ELECTRIC APPLIANCE INC OF ZHUHAI