CN116055106A - Method and system for unified management of login rights - Google Patents

Method and system for unified management of login rights Download PDF

Info

Publication number
CN116055106A
CN116055106A CN202211581503.3A CN202211581503A CN116055106A CN 116055106 A CN116055106 A CN 116055106A CN 202211581503 A CN202211581503 A CN 202211581503A CN 116055106 A CN116055106 A CN 116055106A
Authority
CN
China
Prior art keywords
identity
record
software
parameters
operation interface
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN202211581503.3A
Other languages
Chinese (zh)
Inventor
张之刚
杨杰
王方玉
张思源
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Zhongnan Electric Power Test and Research Institute of China Datang Group Science and Technology Research Institute Co Ltd
Original Assignee
Zhongnan Electric Power Test and Research Institute of China Datang Group Science and Technology Research Institute Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Zhongnan Electric Power Test and Research Institute of China Datang Group Science and Technology Research Institute Co Ltd filed Critical Zhongnan Electric Power Test and Research Institute of China Datang Group Science and Technology Research Institute Co Ltd
Priority to CN202211581503.3A priority Critical patent/CN116055106A/en
Publication of CN116055106A publication Critical patent/CN116055106A/en
Pending legal-status Critical Current

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/20Network architectures or network communication protocols for network security for managing network security; network security policies in general
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/2866Architectures; Arrangements
    • H04L67/30Profiles

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Storage Device Security (AREA)

Abstract

The invention relates to the technical field of login management of Internet application equipment, discloses a method and a system for uniformly managing login rights, and solves the technical problem that different login operations are required to be carried out on different software of the current electronic equipment to bring inconvenient login operation for users, and the method comprises the following steps: an identity record server and an identity management client; the identity management client is used for issuing a record operation interface to the corresponding user side identity record software and issuing an authority operation interface to the corresponding user side software, wherein the authority operation interface comprises an identity verification interface; and the identity record server is used for executing the operation authority control of the authority operation interface when the user side software is successfully checked according to the identity record parameters. According to the technical scheme, the invention uses the initial identity record of the user side identity record software, and then passes the identity verification of other user side software once and directly logs in for use.

Description

Method and system for unified management of login rights
Technical Field
The invention relates to the technical field of login management of Internet application equipment, in particular to a method and a system for uniformly managing login rights.
Background
Currently, many electronic devices need to log in software, that is, a user has a certain operation right for a certain software. For example, the user may download and use some shopping software (jindong, panning), friend-making software (strange, weChat), office software (nailing), entertainment software (fighting land owner), and so forth. For each piece of software, the software has different operation rights before login and after login, such as: the naughty device can shop after logging in, and can only browse commodities before logging in.
At present, different software has a registration/login method and a login operation interface, however, for an electronic device, an operator is the same natural person, when the operator downloads different software for use, registration, login identity verification and the like are required for each piece of software, and each piece of software needs to be developed for an identity verification system and a registration account system so as to be used for login of a user.
Therefore, as described above, different software needs to perform different login operations, which not only brings inconvenience to the user in login, but also requires a large amount of development work for the software developer to put into the authentication system and the registered account system, so how to uniformly manage the login authority, facilitate the operator to log in, reduce the workload of the software developer, and is an improvement.
Disclosure of Invention
Aiming at the technical problem that different login operations are required to be carried out on different software of electronic equipment provided in the background technology, the invention brings inconvenience to the user in login operation.
In order to achieve the above purpose, the present invention provides a first technical scheme as follows:
a method for unified management of login rights is based on a system composed of an identity record server and an identity management client; the method comprises the following steps:
the identity management client issues a recording operation interface to the corresponding user side identity recording software, and the identity management client issues an authority operation interface to the corresponding user side software, wherein the authority operation interface comprises an identity verification interface;
when the user side identity filing software calls a filing operation interface, the identity management client side sends identity filing parameters to the identity filing server; the identity record parameters comprise locally preset parameters and parameters input by a user in an interface function of a record operation interface;
when the user side software invokes the authority operation interface, the identity management client side also sends the identity record parameters to the identity record server for verification;
and the identity record server executes the operation authority control of the authority operation interface when the verification of the user side software is successful according to the identity record parameters.
The method comprises the following steps: the parameters input by the user in the interface function of the record operation interface can be: real name identity information parameters or fixed virtual identity information parameters.
The method comprises the following steps: the real-name identity information parameters comprise an identity card number, a name and a face image; the fixed virtual identity information parameters comprise user names and security questions.
The method comprises the following steps: the locally preset parameters comprise: and performing assignment on the plaintext and ciphertext read from the local configuration file according to the function name of the interface function of the record operation interface called by the user.
The method comprises the following steps: the method for checking the line identity of the user software by the identity record server according to the identity record parameters comprises the following steps:
preprocessing the authority operation interface sent by the identity management client to the user software, namely limiting the authority operation interface sent by the identity management client to the user software to have an identity verification interface;
after clicking the identity verification interface by a user to carry out identity verification, carrying out matching verification according to the identity record parameters which are sent by the identity record software of the user terminal and the identity record parameters of the database of the identity record server;
if the identity record parameters are matched in the database, the identity verification is successful; if the identity record parameters cannot be matched in the database, the identity verification fails.
In order to achieve the above purpose, the present invention provides a second technical scheme as follows:
a system for unified management of login rights, the system comprising: an identity record server and an identity management client; wherein, the liquid crystal display device comprises a liquid crystal display device,
the identity management client is used for issuing a record operation interface to the corresponding user side identity record software and issuing an authority operation interface to the corresponding user side software, wherein the authority operation interface comprises an identity verification interface;
the identity record server is used for executing the operation authority control of the authority operation interface when the user side software is successfully checked according to the identity record parameters;
the identity record server is specifically configured to store the identity record parameters and call an identity verification interface at the user side software to perform matching verification, and after verification is successful, the identity management client issues an authority operation interface to the corresponding user side software, and the identity record server is configured to execute operation authority control of the authority operation interface.
In the above system: the parameters input by the user in the interface function of the record operation interface can be: real name identity information parameters or fixed virtual identity information parameters.
In the above system: the real-name identity information parameters comprise an identity card number, a name and a face image; the fixed virtual identity information parameters comprise user names and security questions.
In the above system: the locally preset parameters comprise: and performing assignment on the plaintext and ciphertext read from the local configuration file according to the function name of the interface function of the record operation interface called by the user.
In the above system: the user side identity record software is original identity record software, and the user side software is practical software downloaded by a plurality of user sides.
In summary, the invention has the following beneficial effects:
after the user side has the user side identity record software and is subjected to initial identity verification, when the user side uses other downloaded user side software, after the user side only needs to click an identity verification interface to carry out identity verification, the user side identity record software can be used for carrying out matching verification on the latest transmitted identity record parameters and the identity record parameters of the identity record server database, and the user side software identity verification is used for logging in directly once, so that different user side software does not need to carry out different logging operations, convenience in logging is brought to a user, and meanwhile, the workload is reduced for a large amount of development work input by a software developer on an identity verification system and a registered account system.
Drawings
FIG. 1 is a schematic diagram of a system for implementing unified management of login rights according to a preferred embodiment of the present invention;
fig. 2 is a flow chart of a preferred embodiment of the method for implementing unified management of login rights according to the present invention.
Reference numerals:
an identity record server;
2. and the identity management client.
Detailed Description
The present invention will be described in further detail with reference to examples and drawings, but embodiments of the present invention are not limited thereto.
The basic idea of the invention is based on a system composed of an identity record server 1 and an identity management client 2; the identity management client 2 issues a recording operation interface to the corresponding user side identity recording software, and the identity management client 2 issues an authority operation interface to the corresponding user side software, wherein the authority operation interface comprises an identity verification interface; when the user side identity filing software calls a filing operation interface, the identity management client side 2 sends identity filing parameters to the identity filing server 1; when the user side software calls the identity verification interface, the identity management client side 2 also sends the identity record parameters to the identity record server 1 for verification; when the user side software calls the authority operation interface, when the identity record server 1 checks the user side software successfully according to the previous identity record parameters, the operation authority control of the authority operation interface is executed.
The invention provides a system for uniformly managing login rights, as shown in FIG. 1, which comprises: an identity proposal server 1 and an identity management client 2.
Based on the above system, the present invention also provides a method for unified management of login rights, as shown in fig. 2, and the preferred embodiment includes the following steps:
step 01: the identity management client 2 issues a filing operation interface to the corresponding user identity filing software.
Specifically, in order to enable a user (equipment operator) to perform identity initial record through pre-installed user side identity record software on the electronic equipment, a record operation interface between the identity record server 1 and the user side identity record software needs to be set in the identity management client side 2, through which the user can input and send user-defined identity record parameters to the identity record server 1 through an interface function of the record operation interface, and the user can store the user-defined identity record parameters by the identity record server 1 for later matching verification. The parameters input by the user in the interface function of the record operation interface can be: real name identity information parameters or fixed virtual identity information parameters.
The real-name identity information parameters comprise parameters such as an identity card number ID number, a name full name, a face image and the like; the fixed virtual identity information parameters include parameters such as a user name username, a security question security question and the like. Therefore, the identity record server 1 can bind the equipment and the identity record parameters, and is convenient for carrying out unified authority login on other user side software in the later period, so that sharing is realized.
In the preferred embodiment, the interface function of the docket operation is copy permission ().
Step 02: the identity management client 2 issues a permission operation interface to the corresponding user software.
Specifically, in order to enable a user to quickly log in the user side software downloaded after use on the electronic device, an authority operation interface between the identity record server 1 and the user side software needs to be set in the identity management client side 2, and through the authority operation interface, the user can use the function of the software in the login authority, namely, operate through the authority operation interface.
Wherein the rights operation interface comprises an authentication interface. The authentication interface refers to that before formally using the function of the user side software authority operation interface, a one-key authentication login is needed in the authentication interface of the user side software. Therefore, when the user side uses other downloaded user side software, after the user side only needs to click the identity verification interface to carry out identity verification, the latest transmitted identity record parameters and the identity record parameters of the database of the identity record server 1 can be matched and verified by the user side identity record software, and the user side software can be directly logged in for use once through the identity verification of the user side software, so that different login operations are not needed by different user side software.
In the preferred embodiment, the interface function of the authentication interface is checkPermission (). The interface function of the authority operation interface is selected according to different authority operation functions.
Step 03: the user identity record software calls the record operation interface. When the user side identity filing software calls a filing operation interface, the identity management client side 2 sends identity filing parameters to the identity filing server 1 and stores the parameters; the identity record parameters comprise locally preset parameters and parameters input by a user in an interface function of the record operation interface.
Specifically, after the user side identity filing software invokes the filing operation interface, the identity management client side 2 reads parameters from a local configuration file, wherein the parameters comprise a plaintext product line and a ciphertext Accesskey, the plaintext product line refers to a real-name identity information parameter or a fixed virtual identity information parameter, so that the plaintext product line and the ciphertext Accesskey are used for identifying a fixed identity, and the fixed identity is bound with the electronic equipment; the configuration file may be pre-configured by the user into the identity management client 2.
Meanwhile, the identity management client 2 automatically assigns a preset execution parameter action according to the function name of the interface function of the record operation interface called by the user, and the parameter value of the execution parameter action is the function name; the parameter value of the execution parameter action indicates that the user side identity proposal software needs to request the operation executed by the identity proposal server 1. For example, the user side identity recording software calls an interface function copy permission () of the recording operation interface, and then the identity management client side 2 automatically assigns a value to the execution parameter action according to the function name copy permission () to obtain action= "copy permission ()".
The identity management client 2 extracts the identity record parameters input by a user from an interface function of the record operation interface, generates identity verification parameters according to the extracted identity record parameters, the parameters read from the configuration file and the automatically assigned execution parameters, and sends the identity verification parameters to the identity record server 1 in a post mode according to the URL of the preset identity record server 1; the authentication parameters include: the plaintext production line, ciphertext Accesskey, execution parameter action, ID number, name full name and face image, user name and security question security question are stored in the server.
Step 04: the user software invokes the authentication interface and the rights operation interface.
When the user software calls the identity verification interface, the identity management client 2 sends the latest record identity record parameters to the identity record server 1 once again, and performs matching verification.
Specifically, after the user software invokes the authentication interface, the identity management client 2 reads the identity record parameter from the local configuration file, where the parameter includes a plaintext product line and a ciphertext access key, where the plaintext product line refers to a real-name identity information parameter or a fixed virtual identity information parameter, so that the plaintext product line and the ciphertext access key are used to identify a fixed identity, and the fixed identity is bound with the electronic device.
Meanwhile, the identity management client 2 automatically assigns a preset execution parameter action according to the function name of an interface function of the identity verification interface called by the user, and the parameter value of the execution parameter action is the function name; the parameter value of the execution parameter action indicates that the user software needs to request the operation executed by the identity record server 1. For example, when the user software calls an interface function checkPermission () of the authentication interface, the identity management client 2 automatically assigns a value to the execution parameter action according to the function name checkPermission () to obtain action= "checkPermission ()".
The identity management client 2 extracts the identity record parameters input by the user from the interface function of the identity verification interface, verifies the identity record parameters with the identity record parameters stored by the identity record server 1, and when verification is successful, the user can call the authority operation interface, and when verification is failed, the user does not have authority to call the authority operation interface.
Step 05: and the identity record server 1 executes the operation authority control of the authority operation interface when the verification of the user side software is successful according to the identity record parameters.
Specifically, the operation authority of the execution authority operation interface is the function after login by using the user side software.
The above description is only a preferred embodiment of the present invention, and the protection scope of the present invention is not limited to the above examples, and all technical solutions belonging to the concept of the present invention belong to the protection scope of the present invention. It should be noted that modifications and adaptations to the present invention may occur to one skilled in the art without departing from the principles of the present invention and are intended to be within the scope of the present invention.

Claims (10)

1. A method for uniformly managing login rights is characterized by comprising a system formed by an identity record server and an identity management client; the method comprises the following steps:
the identity management client issues a recording operation interface to the corresponding user side identity recording software, and the identity management client issues an authority operation interface to the corresponding user side software, wherein the authority operation interface comprises an identity verification interface;
when the user side identity filing software calls a filing operation interface, the identity management client side sends identity filing parameters to the identity filing server; the identity record parameters comprise locally preset parameters and parameters input by a user in an interface function of a record operation interface;
when the user side software invokes the authority operation interface, the identity management client side also sends the identity record parameters to the identity record server for verification;
and the identity record server executes the operation authority control of the authority operation interface when the verification of the user side software is successful according to the identity record parameters.
2. The method for unified management of login rights according to claim 1, wherein: the parameters input by the user in the interface function of the record operation interface can be: real name identity information parameters or fixed virtual identity information parameters.
3. A method for unified management of login rights according to claim 2, wherein: the real-name identity information parameters comprise an identity card number, a name and a face image; the fixed virtual identity information parameters comprise user names and security questions.
4. The method for unified management of login rights according to claim 1, wherein: the locally preset parameters comprise: and performing valued execution parameters according to the function names of the interface functions of the record operation interface called by the user.
5. The method for unified management of login rights according to claim 1, wherein: the method for checking the line identity of the user software by the identity record server according to the identity record parameters comprises the following steps:
preprocessing the authority operation interface sent by the identity management client to the user software, namely limiting the authority operation interface sent by the identity management client to the user software to have an identity verification interface;
after clicking the identity verification interface by a user to carry out identity verification, carrying out matching verification according to the identity record parameters which are sent by the identity record software of the user terminal and the identity record parameters of the database of the identity record server;
if the identity record parameters are matched in the database, the identity verification is successful; if the identity record parameters cannot be matched in the database, the identity verification fails.
6. A system for unified management of login rights, the system comprising: an identity record server and an identity management client; wherein, the liquid crystal display device comprises a liquid crystal display device,
the identity management client is used for issuing a record operation interface to the corresponding user side identity record software and issuing an authority operation interface to the corresponding user side software, wherein the authority operation interface comprises an identity verification interface;
the identity record server is used for executing the operation authority control of the authority operation interface when the user side software is successfully checked according to the identity record parameters;
the identity record server is specifically configured to store the identity record parameters and call an identity verification interface at the user side software to perform matching verification, and after verification is successful, the identity management client issues an authority operation interface to the corresponding user side software, and the identity record server is configured to execute operation authority control of the authority operation interface.
7. The system for unified management of login rights according to claim 6, wherein: the parameters input by the user in the interface function of the record operation interface can be: real name identity information parameters or fixed virtual identity information parameters.
8. The system for unified management of login rights according to claim 7, wherein: the real-name identity information parameters comprise an identity card number, a name and a face image; the fixed virtual identity information parameters comprise user names and security questions.
9. The system for unified management of login rights according to claim 6, wherein: the locally preset parameters comprise: and performing valued execution parameters according to the function names of the interface functions of the record operation interface called by the user.
10. The system for unified management of login rights according to claim 6, wherein: the user side identity record software is original identity record software, and the user side software is practical software downloaded by a plurality of user sides.
CN202211581503.3A 2022-12-08 2022-12-08 Method and system for unified management of login rights Pending CN116055106A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN202211581503.3A CN116055106A (en) 2022-12-08 2022-12-08 Method and system for unified management of login rights

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN202211581503.3A CN116055106A (en) 2022-12-08 2022-12-08 Method and system for unified management of login rights

Publications (1)

Publication Number Publication Date
CN116055106A true CN116055106A (en) 2023-05-02

Family

ID=86117183

Family Applications (1)

Application Number Title Priority Date Filing Date
CN202211581503.3A Pending CN116055106A (en) 2022-12-08 2022-12-08 Method and system for unified management of login rights

Country Status (1)

Country Link
CN (1) CN116055106A (en)

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR100665277B1 (en) * 2005-08-23 2007-01-16 주식회사 시스네트 Real name confirmation system and the method which use a virtual residence registration number, and the store device which records a method
CN101083527A (en) * 2006-06-02 2007-12-05 鸿富锦精密工业(深圳)有限公司 User operation authority centralized management system and method
CN101458804A (en) * 2008-11-19 2009-06-17 北京携友聚信信息技术有限公司 Object trading management system and method
CN103870727A (en) * 2012-12-17 2014-06-18 百度在线网络技术(北京)有限公司 Unified authority management method and system
CN108259431A (en) * 2016-12-29 2018-07-06 航天信息股份有限公司 The method, apparatus and system of account information are shared between applying more

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR100665277B1 (en) * 2005-08-23 2007-01-16 주식회사 시스네트 Real name confirmation system and the method which use a virtual residence registration number, and the store device which records a method
CN101083527A (en) * 2006-06-02 2007-12-05 鸿富锦精密工业(深圳)有限公司 User operation authority centralized management system and method
CN101458804A (en) * 2008-11-19 2009-06-17 北京携友聚信信息技术有限公司 Object trading management system and method
CN103870727A (en) * 2012-12-17 2014-06-18 百度在线网络技术(北京)有限公司 Unified authority management method and system
CN108259431A (en) * 2016-12-29 2018-07-06 航天信息股份有限公司 The method, apparatus and system of account information are shared between applying more

Similar Documents

Publication Publication Date Title
US6615353B1 (en) User authentication method and user authentication system
CN101841537B (en) Method and system for realizing file sharing access control based on protocol proxy
US20090125991A1 (en) Secure management of authentication information
JP2005505051A (en) Distributed program execution method based on file type relationship in client-server network
CN110912893B (en) Account number merging method
CN110636057B (en) Application access method and device and computer readable storage medium
CN111586021B (en) Remote office business authorization method, terminal and system
CN112910904B (en) Login method and device of multi-service system
CN113110902A (en) Cloud desktop intelligent management system and method
CN108289074B (en) User account login method and device
CN110221949A (en) Automate operation management method, apparatus, equipment and readable storage medium storing program for executing
CN113992408B (en) Multi-system unified login information processing method and system
CN101527646B (en) System and method for WEB network management
CN105681291B (en) A kind of realization multi-client uniform authentication method and system
CN112836186A (en) Page control method and device
CN115941782A (en) Message pushing method and system based on RPA and chat robot
CN112448909A (en) Electronic lock management method, device, system and storage medium
CN115776548A (en) Double recording system
CN106778193B (en) Client and UI interaction method
CN116055106A (en) Method and system for unified management of login rights
CN113949587A (en) Intelligent password implementation method and device, electronic equipment and computer readable medium
Varadharajan Design and Management of a Secure Networked Administration System: A Practical Approach
CN108933678A (en) O&M auditing system
CN110808943B (en) Client connection emergency management method, client and computer readable storage medium
CN111526140A (en) Network security system based on virtualization technology

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination