Client Server Authority Certification Using Local Memory
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing user authority certification methods in SCADA and EMS systems are unreliable as they require continuous communication with an authority service server, leading to operational disruptions when the server is shut down or the network is disabled, preventing users from performing engineering operations.
Innovation Solution
A method where a client server requests and compares authority information with the authority service server, downloads updates when necessary, and performs user authority certification using both the authority service server and local memory, ensuring continuous operation even without network communication.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Device complexity
If the system uses centralized authority service server for all certification operations, then authority management is simplified and centralized, but the system becomes unreliable when the server is shut down or network is disabled
Solution Approach 1:
The patent divides the centralized authority certification function into two segments: the authority service server that manages authority information, and the client server that performs local certification operations. By segmenting the certification process, the system maintains centralized management while enabling distributed execution, thus improving reliability when the server is unavailable.
Solution Approach 2:
The client server downloads and stores authority information in advance in its local memory before the authority service server becomes unavailable. This preliminary action ensures that the client server has the necessary certification data ready, allowing it to continue performing certification operations even when the server is shut down or the network is disabled.
2Loss of information
If the client server continuously communicates with the authority service server for certification, then authority information is always up-to-date, but engineering operations are disrupted when communication fails
Solution Approach 1:
The client server performs preliminary downloads of authority information from the authority service server and stores it in local memory. This advance preparation ensures that the client server has current authority information available locally, eliminating the need for continuous communication during engineering operations and ensuring operational continuity even when communication fails.
Solution Approach 2:
The client server creates a local copy of the authority information from the authority service server. This copy resides in the client server's memory and can be used for certification operations without requiring real-time communication with the server, thus maintaining productivity even when the network is disabled or the server is unavailable.
3Reliability
If the system requires server authentication for every operation, then security is maintained, but system stability is compromised when the server is unavailable
Solution Approach 1:
The patent segments the security certification function so that the client server can independently perform certification operations using locally stored authority information. This segmentation allows the system to maintain security certification capabilities without requiring continuous server availability, thus improving operational stability while preserving security.
Solution Approach 2:
The client server is equipped with the capability to perform self-service certification operations using the authority information stored in its local memory. This self-service functionality enables the client server to authenticate operations independently without requiring real-time server involvement, maintaining both security and system stability when the server is unavailable.
Data Source
AI summary
Embodiments of a method for providing user authority information management service are provided. In some embodiments, the method includes a client server sending a request for authority information to an authority service server, the client server receiving the authority information from the authority service server and comparing the received authority information with authority information maintained in a client server memory, determining whether or not to download the authority information based on a result of the comparison between the received authority information and the maintained authority information, updating the client server memory according to whether the authority information is downloaded, and the client server performing user authority certification for each process operation to be performed by the client server.


