CN108958870A - shortcut function setting method - Google Patents

shortcut function setting method Download PDF

Info

Publication number
CN108958870A
CN108958870A CN201810720004.5A CN201810720004A CN108958870A CN 108958870 A CN108958870 A CN 108958870A CN 201810720004 A CN201810720004 A CN 201810720004A CN 108958870 A CN108958870 A CN 108958870A
Authority
CN
China
Prior art keywords
role
newly
user
list
increased
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201810720004.5A
Other languages
Chinese (zh)
Other versions
CN108958870B (en
Inventor
陈达志
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Chengdu Morning Glory Information Technology Co Ltd
Original Assignee
Chengdu Morning Glory Information Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Chengdu Morning Glory Information Technology Co Ltd filed Critical Chengdu Morning Glory Information Technology Co Ltd
Publication of CN108958870A publication Critical patent/CN108958870A/en
Application granted granted Critical
Publication of CN108958870B publication Critical patent/CN108958870B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F9/00Arrangements for program control, e.g. control units
    • G06F9/06Arrangements for program control, e.g. control units using stored programs, i.e. using an internal store of processing equipment to receive or retain programs
    • G06F9/44Arrangements for executing specific programs
    • G06F9/451Execution arrangements for user interfaces
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/6218Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database
    • G06F21/6227Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database where protection concerns the structure of data, e.g. records, types, queries
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F3/00Input arrangements for transferring data to be processed into a form capable of being handled by the computer; Output arrangements for transferring data from processing unit to output unit, e.g. interface arrangements
    • G06F3/01Input arrangements or combined input and output arrangements for interaction between user and computer
    • G06F3/048Interaction techniques based on graphical user interfaces [GUI]
    • G06F3/0481Interaction techniques based on graphical user interfaces [GUI] based on specific properties of the displayed interaction object or a metaphor-based environment, e.g. interaction with desktop elements like windows or icons, or assisted by a cursor's changing behaviour or appearance
    • G06F3/0482Interaction with lists of selectable items, e.g. menus
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q10/00Administration; Management
    • G06Q10/10Office automation; Time management
    • G06Q10/105Human resources
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2141Access rights, e.g. capability lists, access control lists, access tables, access matrices

Abstract

The invention discloses a kind of shortcut function setting methods, including setting shortcut menu and quick newly-increased list, setting shortcut menu includes the steps that shortcut menu access procedures, setting shortcut menu step is arranged, shows shortcut menu by shortcut menu entrance, shows the shortcut menu chosen in step S2 by shortcut menu entrance;Any shortcut menu in step K1 is chosen as needed, shows the corresponding function interface of the shortcut menu.The present invention is convenient for that checking and operate, the newly-increased of list being rapidly completed for common menu is rapidly completed, and improves office efficiency;The same period, one role can only be associated with unique user, it only need to be by the user-association new role when the new registration of user or transfer-position, the corresponding common shortcut menu of the role can be obtained by shortcut menu entrance, the corresponding list for having newly-increased permission of the role can also be obtained by fast increasing forms input newly, increase substantially the rights management efficiency in system use.

Description

Shortcut function setting method
Technical field
The present invention relates to a kind of method for managing user right of the management software systems such as ERP, more particularly to a kind of quick Function setting method.
Background technique
Access control based roles (RBAC) are a kind of data base authority pipes the most studied in recent years, that thought is most mature Reason mechanism, it is considered as the ideal candidates of the traditional forced symmetric centralization (MAC) and self contained navigation (DAC) of substitution.Base In the basic thought of the access control (RBAC) of role be divided according to functional post different in business organization's view it is different The access authority of database resource is encapsulated in role by role, and user is by being endowed different roles come dereference number According to base resource.
A large amount of table and view are often all had in large-scale application system, this makes management to database resource and awards Adaptability in tactics obtains sufficiently complex.The access and receiving and grant for permission that database resource is directly managed by user are very difficult, its needs User is very thorough to the understanding of database structure, and is familiar with the use of sql like language, once and application system structure or peace Full demand is changed, and will carry out large amount of complex and cumbersome authorization changes, and is very easy to occur some unexpected award Security breaches caused by power fault.Therefore, for large-scale applied system design one kind is simple, efficient right management method has become For the common requirements of system and system user.
The mechanism of authorization control of based role can carry out simple, efficient management to the access authority of system, greatly The burden and cost of System right management are reduced, and System right management is made to be more in line with the service management of application system Specification.
However, the method for managing user right of traditional based role is all made of the association machine of " role is one-to-many to user " System, " role " are group/class property, i.e. a role can correspond to simultaneously/be associated with multiple users, and role is similar to post/duty The concepts such as position/work post are divided into following three kinds of forms to the authorization of user right under this relation mechanism substantially: 1, as shown in Figure 1, Directly user is authorized, the disadvantage is that heavy workload, frequent operation and trouble;2, as shown in Fig. 2, to role's (class/group/post/work Kind property) (role can be associated with multiple users) is authorized, user obtains permission by role;3, as shown in figure 3, with Upper two ways combines.
In above statement, 2,3 are required to authorize class/group property role, and pass through class/group/post/work post The mode that the role of property is authorized has the disadvantage that: 1, operation when user right changes is difficult: using in actual system In the process, often because need to be adjusted the permission of user during operation, such as: in processing employee's permission variation When, the permission of some employee of role association changes, we cannot change whole because of the variation of individual employee's permissions The permission of a role, because the role is also associated with the unchanged employee of other permissions.Therefore in order to cope with this kind of situation or wound It builds new role and (is detached from angle to meet the changed employee of the permission or directly authorize to the employee according to permission demand Color).Both the above processing mode, in the case where role-security is more, to role authorization, not only required time is long, but also is easy It makes a mistake, user operates cumbersome and bothers, and is also easy the loss caused to system user that malfunctions.
2, to remember that the concrete power limit that role includes is difficult for a long time: if the privilege feature point of role is relatively more, for a long time, very Difficulty remembers the concrete power limit of role, it more difficult to the permission difference between role similar in permission is remembered, to be associated with new user, nothing How method accurate judgement, which should select, is associated with.
3, because user right changes, it will cause roles to create more and more (if not creating new role, can substantially increase Add the authorization directly to user), it more difficult to distinguish the specific difference of each role-security.
4, when transfer-position, to other several users will be given to undertake by many a authority distributions of transfer-position user, then when handling It must will be distinguished by these permissions of transfer-position user, create role again respectively to be associated with other several users, such behaviour Make not only complicated and time consumption, but also mistake also easily occurs.
In existing management mode, as middle layer and corporate executive, need to check or handle various, number Measure many menus, list.
The menu that user is authorized to may be even more multistage comprising level-one, second level, three-level, and every further menu may have more A, all menu quantity that user is authorized to are likely to be breached hundreds and thousands of or even thousands of, but common menu may be no more than two Ten, if obtained by way of searching step by step for common menu every time, like " billow is washed the sand ", heavy workload and numerous It is trivial, waste a large amount of unnecessary times.
For list, newly-increased button is typically found in the corresponding function interface of the list, and user is if necessary It increases the list newly, then must first find the corresponding function interface of the list step by step, which could be increased newly.Such as: it uses Family needs to create one " client's list ", then needs to find " CRM ", " client ", " customer account management " step by step, then can just see visitor Family increases corresponding operating function newly.For the personnel for needing frequent operation to increase list newly, such as contact staff after sale is often answered One service calls after sale requires newly-increased one request list after sale, and to search step by step every time could increase request list after sale newly, Heavy workload and cumbersome.
Summary of the invention
It is an object of the invention to overcome the deficiencies of the prior art and provide a kind of shortcut function setting methods, convenient for quick Checking and operate, the newly-increased of list being rapidly completed for common menu is completed, office efficiency is improved;The same period, one role could only It is associated with unique user, which only need to can be passed through shortcut menu entrance by when new registration of user or transfer-position The corresponding common shortcut menu of the role is obtained, it is corresponding common quick the role can also to be obtained by fast newly-increased forms input Newly-increased list can also obtain the corresponding list for having newly-increased permission of the role by fast increasing forms input newly, increase substantially Rights management efficiency in system use, keeps dynamic authorization simpler, is more convenient, apparent, clear, improves the effect of priority assignation Rate and reliability.
The purpose of the present invention is achieved through the following technical solutions: shortcut function setting method, including setting is quick Menu entries step, passes through the step of shortcut menu entrance shows shortcut menu at setting shortcut menu step, is provided with quick Menu entries step and setting shortcut menu step are in no particular order, specific as follows: setting shortcut menu access procedures: setting is quick Menu entries, for showing and menu swift to operate;Shortcut menu step: S1 is arranged: the active user for obtaining login system works as The all of preceding associated role have the menu for checking permission, and each role is independent individual, rather than group/class, same One role of period can only be associated with unique user, and a user-association one or more role;S2: user as needed from With choosing one or more as shortcut menu in the menu for checking permission;Shortcut menu is shown by shortcut menu entrance The step of: the shortcut menu chosen in step S2 K1: is shown by shortcut menu entrance;K2: it chooses in step K1 as needed Any shortcut menu shows the corresponding function interface of the shortcut menu.
When user loses when checking permission of a certain menu, if the menu is the shortcut menu that the user has chosen, this Shortcut menu is not shown.
Shortcut function setting method, including setting fast increase forms input step newly, quick newly-increased list step are arranged, is logical The step of fast newly-increased forms input shows fast newly-increased list is crossed, it is fast to be provided with fast newly-increased forms input step and setting In no particular order, specific as follows: setting fast increases forms input step newly to the newly-increased list step of victory: fast newly-increased list enters for setting Mouthful, for showing and newly-increased list swift to operate;Fast newly-increased list step is set: P1: obtaining the active user of login system All lists with newly-increased permission of current associated role, each role is independent individual, rather than group/class, together One role of period one can only be associated with unique user, and a user-association one or more role;P2: user is as needed One or more is chosen from the list with newly-increased permission as fast newly-increased list;It is aobvious by fast increasing forms input newly The step of showing quick newly-increased list: the quick newly-increased list chosen in step P2 L1: is shown by fast increasing forms input newly; L2: any fast newly-increased list in step L1 is chosen as needed, shows the fast newly-increased corresponding newly-increased interface of list.
Shortcut function setting method, comprising the following steps: W1: setting fast increases forms input: W2: by fast increasing newly newly Forms input shows all lists with newly-increased permission of the current associated role of the active user of login system, Mei Gesuo Stating role is independent individual, rather than group/class, and one role of same period can only be associated with unique user, and a user is closed Join one or more roles;W3: the list of any display in step W2 is chosen as needed, shows the corresponding newly-increased boundary of the list Face.
The role belongs to department, and the role is unique under the department, according to the action of role to role It is authorized.
Shortcut function setting method further includes the trans-departmental transfer-position management process of a user, specifically includes: (1) cancelling and using Family is associated with the role's in former department;(2) user and the role in new department are associated.
The user is defined the competence by it with being associated with for role.
The composition of the role are as follows: numbered in the name+hilllock of post.
The role includes that role name and role number, unique under the department that the role name is selected when role creates, Role's number is unique in systems.
When user loses the newly-increased permission of a certain list, if the list is the quick newly-increased list that the user has chosen, Then this fast increases list newly and does not show.
The beneficial effects of the present invention are: 1) a kind of shortcut function setting method is provided, convenient for common menu is rapidly completed Check and operate, the newly-increased of list is rapidly completed, improve office efficiency;The same period, one role can only be associated with uniquely The user-association new role only need to can be obtained the role by user, when new registration of user or transfer-position by shortcut menu entrance Corresponding common shortcut menu (because shortcut menu has been given to the role), can also be obtained by fast increasing forms input newly The corresponding common fast newly-increased list (because quick newly-increased list has been given to the role) of the role is obtained, it can also be by fast The newly-increased forms input of victory obtains the corresponding list for having newly-increased permission of the role (because of when carrying out regular Authorisation to role, The authorization that list increases permission newly has been carried out to role), the rights management efficiency in system use is greatly improved, awards dynamic Power is simpler, is more convenient, apparent, clear, improves the efficiency and reliability of priority assignation.
In existing management mode, as middle layer and corporate executive, need to check or handle various, number Measure many menus, list.
The menu that user is authorized to may be even more multistage comprising level-one, second level, three-level, and every further menu may have more A, all menu quantity that user is authorized to are likely to be breached hundreds and thousands of or even thousands of, but common menu may be no more than two Ten (these common lists often account for 80% or more of user job total amount), if for common menu every time by step by step The mode of lookup obtains, and like " billow is washed the sand ", heavy workload and cumbersome wastes a large amount of unnecessary times.The application is logical Checking and operating for common menu can be rapidly completed by crossing setting shortcut menu entrance, greatly improved working efficiency, reduced Workload.
For list, newly-increased button is typically found in the corresponding function interface of the list, and user is if necessary It increases the list newly, then must first find the corresponding function interface of the list step by step, which could be increased newly.Such as: it uses Family needs to create one " client's list ", then needs to find " CRM ", " client ", " customer account management " step by step, then can just see visitor Family increases corresponding operating function newly.For the personnel for needing frequent operation to increase list newly, such as contact staff after sale is often answered One service calls after sale requires newly-increased one request list after sale, and to search step by step every time could increase request list after sale newly, Heavy workload and cumbersome.The newly-increased of list can be rapidly completed by the quick newly-increased forms input of setting in the application, improve table Single newly-increased efficiency of management, reduces the workload of the newly-increased operation of list.
2) the application role is one-to-one relationship to user, and the same period, one role can only be associated with unique user, One user-association one or more role, the advantage of doing so is that, as long as associating a user to role can be obtained permission (i.e. User obtains the permission of associated role), and the permission modification of role is fewer than the user right change in traditional mechanism Much.Role's quantity variation of independent volume property (post number/station property) is small, although employee turnover is big, post number/work The variation of position number is small (or even not changing within certain period, i.e., role does not change), will greatly simplify user in this way Rights management, reduce the expense of system.
3) simple to operate, high-efficient, the high reliablity of dynamic management, registration transfer-position etc.: registration/leaving office/transfer-position exists Application in rights management is simple, does not have to reset permission when employee/user changes, user only need to cancel or be associated with Role: the user for the role that no longer holds a post just cancels the role association, user-association post of the catcher tenure role Number role, the user for being associated with the role just obtains the inter-related task and operating right of the role automatically, without to role into Row authorizes again, greatly improves efficiency, the safety and reliability of system setting.
Citing: because reasons, the Zhang San such as Zhang San user's leaving office or transfer-position no longer do the work of " purchasing agent 3 " this role, then Zhang San is cancelled and is associated with " purchasing agent 3 ";In addition Li Si's catcher does the work of " purchasing agent 3 " this role, only need to be by Li Si It is associated with the role, then Li Si has automatically obtained the shortcut menu of " purchasing agent 3 " this role and fast increased list newly.
For menu and list, application scheme is used, if associated user is already provided with the role before certain role Shortcut menu or fast increase newly list, then after the associated direct use of user, do not need to reset, if there is change It is dynamic, simple modification need to be only made on the original basis, it is simple to operate.
4) it is one-to-many to user that role definition is properties, the roles such as group, work post, class by traditional rights management mechanism Relationship, in actual system use process, because being frequently necessary to be adjusted the permission of user during operation, than Such as: when handling the variation of employee's permission, the permission of some employee of role association changes, we cannot be individual because of this The variation of employee's permission and the permission for changing entire role, because the role is also associated with the unchanged employee of other permissions.Therefore Meet the changed employee of the permission or to the employee according to power to cope with this kind of situation or creation new role Limit demand directly authorizes and (is detached from role).Both the above processing mode, not to role authorization in the case where role-security is more Long the time required to only, and be easy to make a mistake, user operates cumbersome and trouble, and being also easy error causes to system user Loss.
But under the present processes, because role is an independent individual, then it can choose and change role-security i.e. It can reach purpose.The present processes while it seem that will increase workload in system initialization, but can pass through duplication etc. Method makes it create the efficiency of role or authorization higher than traditional group/class property role, because not having to consideration group/class property angle Intercommunity of the color when meeting association user, application scheme can allow priority assignation clear, be illustrated;Especially one is used in system After the section time (user/role-security dynamic change), this application scheme can increase substantially in system use for system user Rights management efficiency, keep dynamic authorization simpler, be more convenient, it is apparent, clear, improve the efficiency of priority assignation and reliable Property.
5) traditional group/class property role authorization method is easy error, and the application method significantly reduces authorization error Probability because the application method need to only be considered as the role of independent individual, and does not have to consider to be associated with this group of property under conventional method Which intercommunity multiple users of matter role have.That user for being associated with the role is only influenced authorizing error, and Tradition then will affect all users for being associated with the role with the role of group property.Even if there is permission grant mistake, the application Modification method is simple, the time is short, and tradition needs consideration to be associated with the role's with the role of group property when correcting mistake The permission intercommunity of all users, not only modification trouble, complicated in the case where more than the function point, is very easy to error, and very much In the case of can only newly create role and just can solve.
6) in tradition using group as under the role authorization method of property, if the privilege feature point of role is relatively more, for a long time, It is difficult to remember the concrete power limit of role, it more difficult to remember the permission difference between role similar in permission, to be associated with new user, How be unable to judge accurately should select to be associated with.The role of the application method inherently has post number/station number property, choosing It is very clear to select.
7) when transfer-position, to other several users will be given to undertake by many a authority distributions of transfer-position user, then when handling It must will be distinguished by these permissions of transfer-position user, create role again respectively to be associated with other several users, such behaviour Make not only complicated and time consumption, but also mistake also easily occurs.
The application method is then are as follows: by the several roles of transfer-position user-association, in transfer-position, cancels user and former department first The association (these roles being cancelled can be associated with again to other users) of interior role, then by user and new department Interior role is associated.It is easy to operate, it will not malfunction.
Detailed description of the invention
Fig. 1 is the schematic diagram that system directly authorizes user in background technique;
Fig. 2 is the schematic diagram that system authorizes group/class property role in background technique;
Fig. 3 is the schematic diagram that system directly authorizes user and combines to group/class property role authorization in background technique;
Fig. 4 is the schematic diagram that present system authorizes user by independent individual property role;
Fig. 5 is 1 flow chart of the embodiment of the present invention;
Fig. 6 is 2 flow chart of the embodiment of the present invention;
Fig. 7 is 3 flow chart of the embodiment of the present invention.
Specific embodiment
Technical solution of the present invention is described in further detail with reference to the accompanying drawing, but protection scope of the present invention is not limited to It is as described below.
[embodiment 1] as shown in figure 5, in the present embodiment, shortcut function setting method, including setting shortcut menu entrance are walked Suddenly, the step of shortcut menu step is arranged, shows shortcut menu by shortcut menu entrance, is provided with shortcut menu entrance step Rapid and setting shortcut menu step is in no particular order, specific as follows: setting shortcut menu access procedures: setting shortcut menu entrance, For showing and menu swift to operate;Shortcut menu step: S1 is set: obtaining the active user of login system currently associated angle The all of color have the menu for checking permission, and each role is independent individual, rather than group/class, one angle of same period Color can only be associated with unique user, and a user-association one or more role;S2: user is as needed from the power of checking One or more is chosen in the menu of limit as shortcut menu, and (then the shortcut menu is given to the user either user Current associated role);The step of showing shortcut menu by shortcut menu entrance: it K1: is shown and is walked by shortcut menu entrance The shortcut menu chosen in rapid S2;K2: any shortcut menu in step K1 is chosen as needed, shows that the shortcut menu is corresponding Function interface.
When user loses when checking permission of a certain menu, if the menu is the shortcut menu that the user has chosen, this Shortcut menu is not shown.For example, " client's statistics " menu setting is before shortcut menu by user Zhang San, when Zhang San loses When checking " client's statistics " this permission of menu, the shortcut menu " client's statistics " being arranged before him is automatically from his shortcut menu Middle disappearance, i.e., no longer show.
This application provides a kind of shortcut function setting methods to mention convenient for checking and operating for common menu is rapidly completed High office efficiency;One role of same period can only be associated with unique user, and when new registration of user or transfer-position only need to be by the use Family is associated with new role, and the corresponding common shortcut menu of the role can be obtained by shortcut menu entrance (because of shortcut menu quilt It has been given to the role), the rights management efficiency in system use is greatly improved.
In existing management mode, as middle layer and corporate executive, need to check or handle various, number Measure many menus.
The menu that user is authorized to may be even more multistage comprising level-one, second level, three-level, and every further menu may have more A, all menu quantity that user is authorized to are likely to be breached hundreds and thousands of or even thousands of, but common menu may be no more than two Ten (these common lists often account for 80% or more of user job total amount), if for common menu every time by step by step The mode of lookup obtains, and like " billow is washed the sand ", heavy workload and cumbersome wastes a large amount of unnecessary times.The application is logical Checking and operating for common menu can be rapidly completed by crossing setting shortcut menu entrance, greatly improved working efficiency, reduced Workload.
As shown in figure 4, each role is independent individual, rather than group/class in the present embodiment, the same period one Role can only be associated with unique user, and a user-association one or more role.The role belongs to department, and should Role is unique under the department, is authorized according to the action of role to role.
Shortcut function setting method further includes the trans-departmental transfer-position management process of a user, specifically includes: (1) cancelling and using Family is associated with the role's in former department;(2) user and the role in new department are associated.
The role includes that role name and role number, unique under the department that the role name is selected when role creates, Role's number is unique in systems.The user is defined the competence by it with being associated with for role.Specifically, the role Composition are as follows: in the name+hilllock of post number.
The advantage having by independent individual property role to user's progress permission grant mode is analyzed below: User determines that (acquisition) permission is possessed if to modify the permission of user by adjusting role with being associated with for role by it Permission with achieve the purpose that change be associated with the role user permission.After user-association role, which is just gathered around There are all permissions of the role.
Role is that one-to-one (role and when a user-association, other users cannot be then associated with again to the relationship of user The role;If the role by user-association, can not selected to be associated with by other users;The i.e. same period, role can and It can only be by a user-association).User is one-to-many (user can be associated with multiple roles simultaneously) to the relationship of role.
The definition of role: role does not have a properties such as group/class/classification/post/position/work post, but non-set Property, role have uniqueness, and role is self-existent independent individual;Post number is equivalent in enterprises and institutions' application (the non-post in post number herein, a post may have multiple employees simultaneously, and one post number of same period can only correspond to one A employee).
Citing: following role: general manager, vice general manager 1, vice general manager 2, Beijing sale can be created in some Corporation system One manager, Beijing sell two manager, Beijing sell three managers, Shanghai sales engineer 1, Shanghai sales engineer 2, on The incidence relation of extra large sales engineer 3, Shanghai sales engineer 4, Shanghai sales engineer 5 ... user and role: if the public affairs Department employee Zhang San holds a post the said firm vice general manager 2, while a manager is sold in Beijing of holding a post, then Zhang San needs the associated role to be A manager is sold in vice general manager 2 and Beijing, and Zhang San has the permission of the two roles.
The concept of traditional role is group/class/post/position/work post property, and a role can correspond to multiple users.And The concept of the application " role " is equivalent to post number/station number, the role being also analogous in movie and television play: a role is in same a period of time Section (childhood, juvenile, middle age ...) can only be played by a performer, and a performer may divide decorations polygonal.
After creating role, can during creating user association role, can also user create after the completion of It is associated at any time.The incidence relation with role can be released after user-association role at any time, can also establish at any time and other The incidence relation of role.
The composition of the role are as follows: numbered in the name+hilllock of post.Such as: Workshop Production worker 1, Workshop Production worker 2, vehicle Between direct labor 3 ... role be independent individual, be equivalent to the concept in post number, station number, be different from traditional rights management body Role in system, the concept of role is the group/class property of post/position/work post etc. in traditional system.
After citing employee Zhang San enters certain company below, the relationship between employee, user and role are as follows: 1, new registration: member The new registration of work directly selects the role of corresponding post number/station number to be associated, example: Zhang San for the user (employee) Registration company (company is that Zhang San is assigned with a Zhang San user), action is to be responsible for Beijing Area's refrigerator in sale one The sale (corresponding role is sale one subordinate " sales engineer 5 " this role) of product, then Zhang San user directly selects " sales engineer 5 " this role association.
2, increase position: after a period of work, company also arranges Zhang San to be responsible for the pin of Beijing Area's tv product to Zhang San It sells (corresponding role is sale one subordinate " sales engineer 8 " this role) and holds a concurrent post portion supervisor (corresponding portion after sale after sale Be responsible for 1 this role), then Zhang San user be further added by association sale one subordinate " sales engineer 8 " and after sale subordinate " after sale Portion is responsible for 1 " the two roles and respectively sells the " sales engineer of a subordinate at this point, Zhang San employee is associated with three roles 5 ", " the portion supervisor 1 after sale " of " sales engineer 8 " and subordinate after sale, Zhang San user then has the permission of these three roles.
3, position is reduced: and a period of time has been spent, company determines that Zhang San's tenure portion after sale is allowed to handle (corresponding subordinate after sale " portion manager after sale " this role), and no longer hold a concurrent post other work.Then Zhang San's user-association subordinate after sale " portion manager after sale " this A role, while cancelling associated three roles before this and (" sales engineer 5 " of one subordinate of sale, " sales engineer 8 " and selling " portion supervisor 1 after sale " under rear portion), at this point, Zhang San user only possesses the permission of subordinate " portion manager after sale " this role after sale.
4, the adjustment (for the adjustment for the permission that role itself is possessed) of role-security: as company determines to increase portion after sale The permission of manager then need to only increase the authorization that this role is handled to portion after sale, then Zhang San user is because portion handles after sale The permission of this role increases, and the permission of Zhang San user also increases.
5, leave office: after 1 year, Zhang San leaves office, then cancels Zhang San user and subordinate " portion manager after sale " this role after sale Association.
Citing: company is in dynamic manage, and the registration of office worker, leaving office often persistently occurs, but post number/station Number variation it is considerably less (or even not changing over a period to come).
Classical authorization method: in the case where more than the system function point, being authorized with traditional group/class property role, Heavy workload is not only authorized, it is many and diverse, and error-prone, or even malfunctioned and be all not easy to find in a short time, easy pair System user causes damages.
The application authorization method: the application is authorized to post number/station property role, user-association role And determine (acquisition) permission, then it to the control of user right, is realized, is given the authority to by the incidence relation of simple user-role Limit control becomes simple, easy to operate, clear, and authorization efficiency and authorization reliability is greatly improved.
[embodiment 2] is as shown in fig. 6, shortcut function setting method, including setting fast increase forms input step, setting newly It fast increases list step newly, by fast increasing the step of forms input shows fast newly-increased list newly, is provided with fast newly-increased Fast newly-increased list step is in no particular order, specific as follows for forms input step and setting: fast newly-increased forms input step is set: Setting fast increases forms input newly, for display and newly-increased list swift to operate;Setting fast increases list step: P1 newly: obtaining Currently all of associated role have the lists for increasing permission newly to the active user of login system, and each role is independent Individual, rather than group/class, one role of same period can only be associated with unique user, and a user-association one or more angle Color;P2: user chooses one or more from the list with newly-increased permission as needed (then should as fast newly-increased list Fast newly-increased list is given to the user either user currently associated role);It is aobvious by fast increasing forms input newly The step of showing quick newly-increased list: the quick newly-increased list chosen in step P2 L1: is shown by fast increasing forms input newly; L2: any fast newly-increased list in step L1 is chosen as needed, shows the fast newly-increased corresponding newly-increased interface of list.
This application provides a kind of shortcut function setting methods to improve office effect convenient for the newly-increased of list is rapidly completed Rate;One role of same period can only be associated with unique user, and when new registration of user or transfer-position only need to be by the new angle of the user-association Color can obtain the corresponding common fast newly-increased list of the role (because fast increasing list newly by fast increasing forms input newly It has been given to the role), the list being greatly improved in system use increases operating efficiency newly.
In existing management mode, as middle layer and corporate executive, need to check or handle various, number Measure many lists.For list, newly-increased button is typically found in the corresponding function interface of the list, if user It needs to increase newly the list, then must first find the corresponding function interface of the list step by step, which could be increased newly.Example Such as: user needs one " client's list " newly-built (that is: creating a client), then needs to find " CRM ", " client ", " visitor step by step Family management ", then can just see that client increases corresponding operating function newly.For need frequent operation increase newly list personnel and Speech, such as contact staff after sale, often answering one, to require newly-increased one request after sale single for service calls after sale, every time will be step by step Lookup, which could increase, requests after sale singly, heavy workload and cumbersome.Fast newly-increased forms input can be quick by setting by the application The newly-increased of list is completed, list is improved and increases the efficiency of management newly, reduces the workload of the newly-increased operation of list.
[embodiment 3] is as shown in fig. 7, shortcut function setting method, comprising the following steps: W1: setting fast increases list newly Entrance: W2: by fast increasing forms input newly, show the current associated role of the active user of login system it is all have it is new Increase the list of permission, each role is independent individual, rather than group/class, and the same period, one role can only be associated with uniquely User, an and user-association one or more role;W3: choosing the list of any display in step W2 as needed, shows Show the corresponding newly-increased interface of the list.
When user loses the newly-increased permission of a certain list, if the list is the quick newly-increased list that the user has chosen, Then this fast increases list newly and does not show.List is similar with menu, therefore no longer citing is illustrated.
This application provides a kind of shortcut function setting methods to improve office effect convenient for the newly-increased of list is rapidly completed Rate;One role of same period can only be associated with unique user, and when new registration of user or transfer-position only need to be by the new angle of the user-association Color can obtain the corresponding list for having newly-increased permission of the association role by fast increasing forms input newly, be greatly improved List Authorized operation efficiency in system use.
In existing management mode, as middle layer and corporate executive, need to check or handle various, number Measure many lists.
For list, newly-increased button is typically found in the corresponding function interface of the list, and user is if necessary Increase the list newly, then first (menu step by step must be passed through) step by step and find the corresponding function interface of the list, could to the list into Row is newly-increased.Such as: user needs newly-built one " client's list " (that is: creating a client), then need to find step by step " CRM ", " client ", " customer account management " then can just see that client increases corresponding operating function newly.For needing frequent operation to increase list newly Personnel for, such as contact staff after sale, often answering one, to require newly-increased one request after sale single for service calls after sale, every time It will search that could to increase request after sale newly single step by step, heavy workload and cumbersome.The application fast increases forms input newly by setting The newly-increased of list can be rapidly completed, improve list and increase the efficiency of management newly, reduce the workload of the newly-increased operation of list.
The above is only a preferred embodiment of the present invention, it should be understood that the present invention is not limited to described herein Form should not be regarded as an exclusion of other examples, and can be used for other combinations, modifications, and environments, and can be at this In the text contemplated scope, modifications can be made through the above teachings or related fields of technology or knowledge.And those skilled in the art institute into Capable modifications and changes do not depart from the spirit and scope of the present invention, then all should be in the protection scope of appended claims of the present invention It is interior.

Claims (10)

1. shortcut function setting method, which is characterized in that including setting shortcut menu access procedures, setting shortcut menu step, The step of showing shortcut menu by shortcut menu entrance is provided with shortcut menu access procedures and setting shortcut menu step In no particular order, specific as follows:
Shortcut menu access procedures are set: setting shortcut menu entrance, for showing and menu swift to operate;
Shortcut menu step is set:
S1: obtaining all of the current associated role of the active user of login system has a menu for checking permission, each described Role is independent individual, rather than group/class, and one role of same period can only be associated with unique user, and a user-association One or more roles;
S2: user chooses one or more as shortcut menu from the menu for checking permission as needed;
The step of showing shortcut menu by shortcut menu entrance:
K1: the shortcut menu chosen in step S2 is shown by shortcut menu entrance;
K2: any shortcut menu in step K1 is chosen as needed, shows the corresponding function interface of the shortcut menu.
2. shortcut function setting method according to claim 1, it is characterised in that: when user loses checking for a certain menu When permission, if the menu is the shortcut menu that the user has chosen, which is not shown.
3. shortcut function setting method, it is characterised in that: including fast newly-increased forms input step, setting fast newly-increased table is arranged Single stage shows the step of fast increasing list newly by fast increasing forms input newly, is provided with fast newly-increased forms input step Fast newly-increased list step is in no particular order, specific as follows for rapid and setting:
Setting fast increases forms input step newly: the quick newly-increased forms input of setting, for display and newly-increased list swift to operate;
Setting fast increases list step newly:
P1: obtaining all lists with newly-increased permission of the current associated role of the active user of login system, each described Role is independent individual, rather than group/class, and one role of same period can only be associated with unique user, and a user-association One or more roles;
P2: user chooses one or more as fast newly-increased list from the list with newly-increased permission as needed;
By fast increasing the step of forms input shows fast newly-increased list newly:
L1: the quick newly-increased list chosen in step P2 is shown by fast increasing forms input newly;
L2: any fast newly-increased list in step L1 is chosen as needed, shows the fast newly-increased corresponding newly-increased interface of list.
4. shortcut function setting method, it is characterised in that: the following steps are included:
W1: setting fast increases forms input newly:
W2: by fast increasing forms input newly, show the current associated role of the active user of login system it is all have it is new Increase the list of permission, each role is independent individual, rather than group/class, and the same period, one role can only be associated with uniquely User, an and user-association one or more role;
W3: the list of any display in step W2 is chosen as needed, shows the corresponding newly-increased interface of the list.
5. shortcut function setting method according to claim 4, it is characterised in that: the role belongs to department, and The role is unique under the department, is authorized according to the action of role to role.
6. shortcut function setting method according to claim 5, it is characterised in that: further include the trans-departmental transfer-position of user Management process specifically includes:
(1) cancel user to be associated with the role in original department;
(2) user and the role in new department are associated.
7. shortcut function setting method according to claim 4, it is characterised in that: the user is by it with role's Association defines the competence.
8. shortcut function setting method according to claim 4, it is characterised in that: the composition of the role are as follows: post name+ It is numbered in hilllock.
9. shortcut function setting method according to claim 4, it is characterised in that: the role includes role name and role It numbers, unique under the department that the role name is selected when role creates, role's number is unique in systems.
10. shortcut function setting method according to claim 4, it is characterised in that: when user loses the new of a certain list When increasing permission, if the list is the quick newly-increased list that the user has chosen, fast newly-increased list is not shown for this.
CN201810720004.5A 2017-07-09 2018-07-03 Shortcut function setting method Active CN108958870B (en)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201710553954.9A CN107292198A (en) 2017-07-09 2017-07-09 Shortcut function method to set up
CN2017105539549 2017-07-09

Publications (2)

Publication Number Publication Date
CN108958870A true CN108958870A (en) 2018-12-07
CN108958870B CN108958870B (en) 2021-12-07

Family

ID=60101359

Family Applications (2)

Application Number Title Priority Date Filing Date
CN201710553954.9A Pending CN107292198A (en) 2017-07-09 2017-07-09 Shortcut function method to set up
CN201810720004.5A Active CN108958870B (en) 2017-07-09 2018-07-03 Shortcut function setting method

Family Applications Before (1)

Application Number Title Priority Date Filing Date
CN201710553954.9A Pending CN107292198A (en) 2017-07-09 2017-07-09 Shortcut function method to set up

Country Status (2)

Country Link
CN (2) CN107292198A (en)
WO (1) WO2019011162A1 (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109766158A (en) * 2018-12-27 2019-05-17 益萃网络科技(中国)有限公司 Methods of exhibiting, device, computer equipment and the storage medium of user interface

Families Citing this family (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107292198A (en) * 2017-07-09 2017-10-24 成都牵牛草信息技术有限公司 Shortcut function method to set up
CN110427750A (en) * 2019-07-23 2019-11-08 武汉宏途科技有限公司 A kind of method and system carrying out the control of list permission by permission combination
CN114139139A (en) * 2022-02-07 2022-03-04 树根互联股份有限公司 Authority management and control method and device for service and application and electronic equipment

Citations (14)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20040107249A1 (en) * 2002-12-02 2004-06-03 Martin Moser Establishing a collaboration environment
CN1635439A (en) * 2003-12-26 2005-07-06 华为技术有限公司 A user right management method
CN1773413A (en) * 2004-11-10 2006-05-17 中国人民解放军国防科学技术大学 Character constant weight method
CN101042627A (en) * 2006-03-24 2007-09-26 乐金电子(中国)研究开发中心有限公司 Method for rapid turning back to displaying menu in displaying bar
US20080289036A1 (en) * 2007-05-19 2008-11-20 Madhusudanan Kandasamy Time-based control of user access in a data processing system incorporating a role-based access control model
CN101441688A (en) * 2007-11-20 2009-05-27 阿里巴巴集团控股有限公司 User authority allocation method and user authority control method
CN102043931A (en) * 2010-01-19 2011-05-04 中国人民解放军第二军医大学东方肝胆外科医院 Private data access control method based on role permission dynamic conversion
CN102567675A (en) * 2012-02-15 2012-07-11 合一网络技术(北京)有限公司 User authority management method and system in business system
CN102696011A (en) * 2009-12-08 2012-09-26 赛贝斯股份有限公司 Thin analytics for enterprise mobile users
US20130332540A1 (en) * 2012-06-12 2013-12-12 International Business Machines Corporation Structural Presentation and Smart Alerts for Instant Messaging Contacts
CN103927167A (en) * 2014-03-31 2014-07-16 国网山东省电力公司 Functional-granularity highly-customizable system integration method
CN104951527A (en) * 2015-06-12 2015-09-30 深圳互娱网络科技有限公司 System and method for rapid configuration of database management background
CN105373726A (en) * 2014-08-18 2016-03-02 南京普爱射线影像设备有限公司 User authority management system
CN106293354A (en) * 2015-05-28 2017-01-04 上海亿账通互联网科技有限公司 Shortcut menu self adaptation display control method, server and portable terminal

Family Cites Families (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101373527A (en) * 2007-08-24 2009-02-25 上海全成通信技术有限公司 Human authority control method engaged with system
CN102468971A (en) * 2010-11-04 2012-05-23 北京北方微电子基地设备工艺研究中心有限责任公司 Authority management method and device, and authority control method and device
CN102354356B (en) * 2011-09-29 2014-06-04 用友软件股份有限公司 Data authority management device and method
CN105930330A (en) * 2015-12-28 2016-09-07 中国银联股份有限公司 Portal system page display method and apparatus
CN107292198A (en) * 2017-07-09 2017-10-24 成都牵牛草信息技术有限公司 Shortcut function method to set up

Patent Citations (14)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20040107249A1 (en) * 2002-12-02 2004-06-03 Martin Moser Establishing a collaboration environment
CN1635439A (en) * 2003-12-26 2005-07-06 华为技术有限公司 A user right management method
CN1773413A (en) * 2004-11-10 2006-05-17 中国人民解放军国防科学技术大学 Character constant weight method
CN101042627A (en) * 2006-03-24 2007-09-26 乐金电子(中国)研究开发中心有限公司 Method for rapid turning back to displaying menu in displaying bar
US20080289036A1 (en) * 2007-05-19 2008-11-20 Madhusudanan Kandasamy Time-based control of user access in a data processing system incorporating a role-based access control model
CN101441688A (en) * 2007-11-20 2009-05-27 阿里巴巴集团控股有限公司 User authority allocation method and user authority control method
CN102696011A (en) * 2009-12-08 2012-09-26 赛贝斯股份有限公司 Thin analytics for enterprise mobile users
CN102043931A (en) * 2010-01-19 2011-05-04 中国人民解放军第二军医大学东方肝胆外科医院 Private data access control method based on role permission dynamic conversion
CN102567675A (en) * 2012-02-15 2012-07-11 合一网络技术(北京)有限公司 User authority management method and system in business system
US20130332540A1 (en) * 2012-06-12 2013-12-12 International Business Machines Corporation Structural Presentation and Smart Alerts for Instant Messaging Contacts
CN103927167A (en) * 2014-03-31 2014-07-16 国网山东省电力公司 Functional-granularity highly-customizable system integration method
CN105373726A (en) * 2014-08-18 2016-03-02 南京普爱射线影像设备有限公司 User authority management system
CN106293354A (en) * 2015-05-28 2017-01-04 上海亿账通互联网科技有限公司 Shortcut menu self adaptation display control method, server and portable terminal
CN104951527A (en) * 2015-06-12 2015-09-30 深圳互娱网络科技有限公司 System and method for rapid configuration of database management background

Non-Patent Citations (2)

* Cited by examiner, † Cited by third party
Title
RAYMOND K. WONG: "RBAC support in object-oriented role databases", 《HTTPS://DOI.ORG/10.1145/266741.266765》 *
韩若飞 等: "基于任务-角色的访问控制模型研究", 《计算机工程与设计》 *

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109766158A (en) * 2018-12-27 2019-05-17 益萃网络科技(中国)有限公司 Methods of exhibiting, device, computer equipment and the storage medium of user interface

Also Published As

Publication number Publication date
CN107292198A (en) 2017-10-24
WO2019011162A1 (en) 2019-01-17
CN108958870B (en) 2021-12-07

Similar Documents

Publication Publication Date Title
CN109214150A (en) The list operating right authorization method of based role
CN108920915A (en) Form field values operating right authorization method
CN108717620A (en) Based role is to the one-to-one Work-flow control method and system of user
CN108958870A (en) shortcut function setting method
CN107464098A (en) The checking method of form data operation
CN108984715A (en) Based on the method according to field setting approval process
CN108764833A (en) The method that workflow approval node examines role by Department formation
CN109032458A (en) The authorization method for the form data that based role obtains
CN109165524A (en) Examination & approval task based on modified RBAC mechanism of authorization control delivers method
CN108932610A (en) A kind of system work dispatching method
CN108921520A (en) Count list operation permission grant method
CN108876313A (en) Setting method of the user in the permission of information interchange unit in system
CN109064138A (en) Show the authorization method of all system user current entitlement states
CN108898317A (en) The method that list operating right is authorized respectively according to form field values
CN107103228A (en) Man-to-man permission grant method and system of the based role to user
CN109032459A (en) A kind of form data operating right authorization method
CN109102253A (en) Approver is directed to the method that examination & approval task consults advisory opinion
CN108804948A (en) A kind of related information authorization method of list
CN109104425A (en) The setting method of permission is checked in operation note based on the period
CN108898693A (en) A kind of attendance setting method of system
CN108985659A (en) The method that approval process and its approval node authorization are carried out to user
CN108875391A (en) Employee logs in the permission display methods after its account in system
CN108629022A (en) Based role is generated to the one-to-one organization chart of user and application process
CN109033861A (en) The method that authorised operator is authorized in system
CN109086418A (en) The method that statistics list operation permission is authorized respectively based on train value

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant