CN101325603A - Network memory structure for special certificate management system - Google Patents
Network memory structure for special certificate management system Download PDFInfo
- Publication number
- CN101325603A CN101325603A CNA2008100409713A CN200810040971A CN101325603A CN 101325603 A CN101325603 A CN 101325603A CN A2008100409713 A CNA2008100409713 A CN A2008100409713A CN 200810040971 A CN200810040971 A CN 200810040971A CN 101325603 A CN101325603 A CN 101325603A
- Authority
- CN
- China
- Prior art keywords
- server
- disk array
- group
- management system
- memory structure
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Pending
Links
Images
Landscapes
- Information Retrieval, Db Structures And Fs Structures Therefor (AREA)
Abstract
The invention discloses a network storage organization of a special certificate management system, which comprises: a first server group used as data server group, a second server group used as application server group connected to the first server group through a LAN, a group of switching exchanges each of which is connected to every server in the first and second server group, a tape library connected to every server in the first and second server group, and a local disk array each of which is connected to every server in the first and second server group. Using the organization provided in the invention, an extensible, manageable network storage environment for unpredictable storage demand is established.
Description
Technical field
The present invention relates to authentication and administrative skill, relate in particular to network memory structure at the special-purpose certificate management system of a certain special purpose.
Background technology
When holding special large-scale activity, for the factor of the each side that improves tissue, service, management, security, it is a crucial incident that the related personnel is carried out Identity Management.
China's Shanghai World's Fair in 2010 is the international economic distinguished gathering that integrates exhibition, meeting, commerce, performing active that a time span is long, the participation number is many, the mobilization scope is wide, influence surface is big.The during calendar 184 days distinguished gathering master time of the meeting from May 1 to October 31 in 2010 this time, comprise build, arrange exhibits, try exhibition early stage so that extend then whole World Expo tissue after the meeting, establish, the service time will reach the time more than 3 years.For run current World Expo well, will have comprise World Expo organization, service organization, exhibiter, engineering construction merchant, medium etc. nearly the staff of 50-80 ten thousand participate in Expo construction, management and service work.About more than 10 ten thousand automobiles must be World Expo passenger traffic, shipping and administrative organization's work service after passes for access are obtained in 3.28 square kilometres of fence zones, 5.28 square kilometres control area.The road vehicle traffic is current in addition will expand actual influence and the radiation scope that produces to whole Shanghai City and even Yangtze River Delta Area with the security control field.Therefore, for the tissue that guarantees World Expo, establish, run work safety, carry out in order, must implement management to all personnel, vehicles that pass in and out Expo Site and relevant range certificate of coming in and going out.Simultaneously, must build the certificate management information system, guarantee World Expo certificate management work in order, efficiently, reliably carry out.
For the certificate management work of huge data volume, safe and reliable memory device is absolutely necessary.
Summary of the invention
The network memory structure that the purpose of this invention is to provide a kind of special-purpose certificate management system, realize one can expansion, manageability, can adapt to the network storage environment of unpredictalbe storage needs neatly.
The solution of the present invention is achieved as follows:
A kind of network memory structure of special-purpose certificate management system comprises:
First server zone, first server zone are the database server group;
Second server group, second server group are application server cluster, and first server zone links to each other by local area network (LAN) with the second server group;
In one group of switch, one group of switch each links to each other with each server among the second server group with first server zone respectively;
Tape library links to each other with each server among the second server group with first server zone;
The local disk array, each local disk in the local disk array is connected to each switch in one group of switch.
This first server zone is the two-node cluster hot backup configuration, and a database server is a main frame, and a database server is a standby host.
This second server group is the multimachine assembly environment, comprises two or more application services device.
The network memory structure of this special-purpose certificate management system also comprises remote disk array, and remote disk array is corresponding with the local disk array, as the backup of local disk array.
Described switch is a fibre channel media, and being connected between switch and first server zone, the second server group adopts optical fiber to realize, the optical fiber realization is also adopted in being connected between switch and local disk array, the remote disk array.
The distance of the physical location of the physical location of remote disk array and local disk array is not less than 20km, be connected to switch by optical fiber with two redundant fashions, and for crucial application data, real-time synchronization replication is to remote disk array when being kept at the local disk array.
Adopted technical scheme of the present invention, set up one can expansion, manageability, can adapt to the network storage environment of unpredictalbe storage needs neatly.
Description of drawings
Fig. 1 is the structure chart of the network memory structure of special-purpose certificate management system of the present invention.
Embodiment
With reference to shown in Figure 1, the present invention has disclosed a kind of network memory structure 10 of special-purpose certificate management system, comprising:
First server zone, 11, the first server zones are the database server group.The guarantee of database function, performance, reliability and upgrading, success or failure concern for whole system.Current comparatively popular several large-scale relevant database has Oracle, Sybase, Informix, SQL Server etc., they are at standardized program, performance, parallel processing capability, all satisfy the demands to aspects such as the support of distributed system, supporting developing instrument, applicable cases, reliabilities, and can set up data warehouse as required.For the large-scale activity of similar World Expo, during runing, Database Systems will need to satisfy simultaneously the demand of certificate application to get, certificates checking, certificate management.Hundreds thousand of service providers, exhibiter, medium personnel, administrative staff will be arranged every day; Tens thousand of vehicles discrepancy garden.Need handle business such as tens thousand of applications to get, audit, certificate Status Change, cancellation every day; Millions of examinations are professional.The examination data will be handled millions of inferior data interactions with checking system ground every day and handle if import central server in real time.For high-performance and the high reliability that guarantees the certificate management information system, adopt the two-node cluster hot backup mode for the database server in first server zone 11.Need to prove, though in Fig. 1, be to use single frame 11 expressions first server zone 11, but this does not limit the quantity of database server in first server zone 11, usually, 2 station servers need, to realize the configuration of two-node cluster hot backup, be understandable that the server that uses greater number also is fully passable.In one embodiment, adopt Oracle10G as background data base, 2 of the Unix minicomputer servers more than hardware using 4CPU, the 16GB internal memory.The oracle database Software deployment is on two two-shippers, and a machine is a main frame simultaneously, and one is standby host.Carrying out the two-shipper switching when breaking down normally moves to ensure the certificate management information system.
Continuation is with reference to figure 1, and this network memory structure 10 also comprises second server group 12, and second server group 12 is an application server cluster, and first server zone 11 and second server group 12 link to each other by local area network (LAN).Second server group 12 is an application server cluster, such as the intermediate layer application server.Use affair device layer and mainly be responsible for business logic processing, the connection processing of user's request and the connection processing of database side or other application systems, and the Business Processing process realizes.Multi-tier systematic structure requires application server and Web server physics independently, consider that application server all is much higher than the data presentation layer to the requirement of disposal ability, the stability of a system, in one embodiment, the application layer services device adopts 2CPU, the PC server of the Unix server of the above internal memory of 4GB or support Windows 2003 Server.In one embodiment, second server group 12 is the multimachine assembly environment, comprises two or more application services device.Application server system software is the core and the support platform of three layers of software configuration, and needs adopt opening, maturation, meet industrywide standard, take into full account the product of practical application present situation, and meet the J2EE framework of WebService technology.Measure and concentrate concurrency to consider from the large user, in one embodiment, use IBM WebSPhere 6 load balancing versions.IBM WebSphere application server is the core of IBM e-business application architecture.The WebSphere application server is strictly followed generally popular open standard, resembles HTTP, HTML, JSP, JNDI and IIOP.Thereby support popular very widely platform.Equally, though be to use single frame 12 expression second server groups 12 in Fig. 2, this does not limit the quantity of database server among the second server group 12, usually, 2 station servers need, and are understandable that, the server that uses greater number also is fully passable.
Get back to Fig. 1, this network memory structure 10 also comprises one group of switch 13, and this group each switch in switch 13 links to each other with each server among the second server group 12 with first server zone 11 respectively.For brevity, in Fig. 1, only show 2 switches 13, but it will be appreciated that, can use the switch 13 of greater number.In one embodiment, switch 13 is a fibre channel media, and switch 13 is realized with the employing optical fiber that is connected between first server zone 11, the second server group 12.
This network memory structure 10 also comprises tape library 14, links to each other with each server among the second server group 12 with first server zone 11.The main application of tape library 14 is to realize long-term backup because and do not require and implement backup, tape library 14 is main, and what consider is capacity and cost, speed is not primary factor.So tape library 14 and being connected of first server zone 11 and second server group 12 can not used optical fiber.
Local disk array 15, each local disk in the local disk array 15 is connected to each switch in one group of switch 13.Local disk array 15 is memory devices main in the network memory structure 10, considers that network memory structure 10 will realize the fast access of googol according to amount, and 15 requirements of local disk array can realize the access of data with very fast speed.Therefore each switch in should group switch 13 all is connected with local disk array 15 by optical fiber, all is connected with in the local disk array 15 each by optical fiber such as each switch in the switch 13.The quantity of local disk can be arbitrarily in the local disk array 15, though only show 2 local disks in Fig. 1, can use the local disk of greater number.
For disaster-tolerant backup is provided, present networks storage organization 10 also comprises remote disk array 16, and remote disk array 16 is corresponding with local disk array 15, as the backup of local disk array 15.Because remote disk array 16 need be as the backing up in realtime of local disk array 15, so being connected between each switch in remote disk array 16 and this group switch 13 also adopt the optical fiber realization.For the layout of remote disk array 16, consider the needs of long-distance disaster, the distance of the physical location of the physical location of remote disk array 16 and local disk array 15 is not less than 20km.Remote disk array 16 is connected to switch 13 by optical fiber with two redundant fashions.For crucial application data, real-time synchronization replication is to remote disk array 16 when being kept at local disk array 15.
Above-mentioned network memory structure 10 provides the Information Access and the share service of network information system, has following characteristics: super large memory capacity, high data transmission rate and high system availability.
Server and storage for the certificate management information system have following advantage:
Data centralization: the interlock that storage and management centralization this pattern help between every business is handled, and helps realizing grading authorized, tightens control and supervises, and improves the intensive management level.
Service integrationization: the service integration processing is combined closely into miscellaneous service as a whole exactly, makes information sharing between each system to eliminate information island, to be data mining and Analysis of Policy Making establish a firm foundation.
Guaranteeing data security property: integrated service processing system is as the system of data high concentration, and the safety of data is primary.Must set up the tight safeguard of a cover from aspects such as network, operating system, database, memory devices, guarantee that 100% of enterprise, user and business datum can be used.
Raise the efficiency and reduce cost: traditional data are owing to relatively disperse, and management and backup be suitable difficulty all, cause easily to damage or lose, and fail safe is very low.Under integrated service processing system, the data high concentration, management and backup are all very convenient, have improved operating efficiency and have also reduced system cost simultaneously.
Improve compatibility and extensibility:, need favorable compatibility and extensibility because the application system that integrated service processing system is contained is a lot.Can strengthen the specific aim and the accuracy of work to the analysis-by-synthesis of different user data information.Along with the expansion of business, the increase of data volume, the extensibility of storage system is particularly important, and good autgmentability can guarantee professional continuity.
Data backup: along with constantly improving and continuous service of operation system, business datum and application system all press for effective data security protecting measure.In the case, must take the efficient data backup means, guarantee the high safety of network system, application system, set up automation, cross-platform network backup management system help after the demand for development of system.
The teledata disaster tolerance: disaster tolerance comprises data disaster tolerance and uses disaster tolerance two classes.Data disaster tolerance is meant the data system of setting up a strange land, and this system is that of local crucial application data duplicates in real time.When disaster appearred in local data and whole application system, system preserved the data of a available key business at least in the strange land.Using disaster tolerance is on the basis of data disaster tolerance, sets up the complete back-up application system suitable with local production system (can be to backup each other) of a cover in the strange land.It is relatively complicated setting up such system, not only needs a available data to duplicate, and also resources such as the network of comprising, main frame, application even IP will be arranged, and the good coordination between each resource.
In scheme shown in Figure 1, use fibre channel media, local disk array, tape library and remote disaster tolerance disk array to form the system of SAN framework, its high extendible capacity will make enterprise can have very high storage capacity in the future, for xenogenesis operating system and disk system provide support, for disaster-tolerant backup provides seamless support, and existing investment and long-term storage solution can be combined, set up one can expansion, manageability, can adapt to the network storage environment of unpredictalbe storage needs neatly.The disaster tolerance place of place remote data disaster tolerance scheme is chosen in distance this locality and is not less than in the scope of 20km, adopt the configuration identical with the local disk array, be linked in the system of SAN framework with two redundant fashions by optical fiber, realize the real-time synchronization replication of local crucial application data.When disaster appearred in local data and whole application system, system preserved the mirror image data of a available key business at least in the strange land.These data are copies fully in real time of local creation data.
Adopted technical scheme of the present invention, set up one can expansion, manageability, can adapt to the network storage environment of unpredictalbe storage needs neatly.
Claims (8)
1. the network memory structure of a special-purpose certificate management system is characterized in that, comprising:
First server zone, described first server zone is the database server group;
The second server group, described second server group is an application server cluster, described first server zone links to each other by local area network (LAN) with the second server group;
One group of switch, each in described one group of switch link to each other with each server among the second server group with described first server zone respectively;
Tape library links to each other with each server among the second server group with described first server zone;
Local disk array, each local disk in the described local disk array are connected to each switch in described one group of switch.
2. the network memory structure of special-purpose certificate management system as claimed in claim 1 is characterized in that, described first server zone is the two-node cluster hot backup configuration, and a database server is a main frame, and a database server is a standby host.
3. the network memory structure of special-purpose certificate management system as claimed in claim 1 is characterized in that, described second server group is the multimachine assembly environment, comprises two or more application services device.
4. the network memory structure of special-purpose certificate management system as claimed in claim 1 is characterized in that, also comprises:
Remote disk array, described remote disk array is corresponding with described local disk array, as the backup of local disk array.
5. the network memory structure of special-purpose certificate management system as claimed in claim 4, it is characterized in that, described switch is a fibre channel media, being connected between described switch and first server zone, the second server group adopts optical fiber to realize, the optical fiber realization is also adopted in being connected between described switch and local disk array, the remote disk array.
6. the network memory structure of special-purpose certificate management system as claimed in claim 5 is characterized in that, the distance of the physical location of the physical location of described remote disk array and local disk array is not less than 20km.
7. the network memory structure of special-purpose certificate management system as claimed in claim 6 is characterized in that, described remote disk array is connected to described switch by optical fiber with two redundant fashions.
8. the network memory structure of special-purpose certificate management system as claimed in claim 7 is characterized in that, for crucial application data, real-time synchronization replication is to described remote disk array when being kept at the local disk array.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CNA2008100409713A CN101325603A (en) | 2008-07-24 | 2008-07-24 | Network memory structure for special certificate management system |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CNA2008100409713A CN101325603A (en) | 2008-07-24 | 2008-07-24 | Network memory structure for special certificate management system |
Publications (1)
Publication Number | Publication Date |
---|---|
CN101325603A true CN101325603A (en) | 2008-12-17 |
Family
ID=40188926
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CNA2008100409713A Pending CN101325603A (en) | 2008-07-24 | 2008-07-24 | Network memory structure for special certificate management system |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN101325603A (en) |
Cited By (6)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101923497A (en) * | 2009-06-11 | 2010-12-22 | 升东网络科技发展(上海)有限公司 | Enterprise-level database backup system and method |
CN104038556A (en) * | 2014-06-26 | 2014-09-10 | 浪潮(北京)电子信息产业有限公司 | Method and system for configuring storage resources in Sybase IQ database cluster |
CN104239164A (en) * | 2013-06-19 | 2014-12-24 | 国家电网公司 | Cloud storage based disaster recovery backup switching system |
WO2015169112A1 (en) * | 2014-05-04 | 2015-11-12 | 华为技术有限公司 | Network storage device |
CN105303124A (en) * | 2015-11-26 | 2016-02-03 | 浪潮电子信息产业股份有限公司 | Mother and child key encryption method for physical tape library |
CN105391740A (en) * | 2015-12-16 | 2016-03-09 | 浪潮(北京)电子信息产业有限公司 | Remote disaster recovery encryption method and device |
Citations (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN1543135A (en) * | 2003-11-07 | 2004-11-03 | 清华大学 | Asynchronous remote mirror image method based on load selfadaption in SAN system |
CN101021910A (en) * | 2006-02-13 | 2007-08-22 | 中山市人民医院 | Large scale integrated hospital information system and equipment thereof |
-
2008
- 2008-07-24 CN CNA2008100409713A patent/CN101325603A/en active Pending
Patent Citations (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN1543135A (en) * | 2003-11-07 | 2004-11-03 | 清华大学 | Asynchronous remote mirror image method based on load selfadaption in SAN system |
CN101021910A (en) * | 2006-02-13 | 2007-08-22 | 中山市人民医院 | Large scale integrated hospital information system and equipment thereof |
Cited By (8)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101923497A (en) * | 2009-06-11 | 2010-12-22 | 升东网络科技发展(上海)有限公司 | Enterprise-level database backup system and method |
CN104239164A (en) * | 2013-06-19 | 2014-12-24 | 国家电网公司 | Cloud storage based disaster recovery backup switching system |
WO2015169112A1 (en) * | 2014-05-04 | 2015-11-12 | 华为技术有限公司 | Network storage device |
US9947369B2 (en) | 2014-05-04 | 2018-04-17 | Huawei Technologies Co., Ltd. | Network storage device |
CN104038556A (en) * | 2014-06-26 | 2014-09-10 | 浪潮(北京)电子信息产业有限公司 | Method and system for configuring storage resources in Sybase IQ database cluster |
CN104038556B (en) * | 2014-06-26 | 2017-11-17 | 浪潮(北京)电子信息产业有限公司 | Storage resource collocation method and system in a kind of Sybase I/Q datas storehouse cluster |
CN105303124A (en) * | 2015-11-26 | 2016-02-03 | 浪潮电子信息产业股份有限公司 | Mother and child key encryption method for physical tape library |
CN105391740A (en) * | 2015-12-16 | 2016-03-09 | 浪潮(北京)电子信息产业有限公司 | Remote disaster recovery encryption method and device |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN101325603A (en) | Network memory structure for special certificate management system | |
CN109831529B (en) | Cloud chain number integrated system structure | |
CN113515499B (en) | Database service method and system | |
CN110083662A (en) | A kind of dual-active architecture construction method based on plateform system | |
CN100568664C (en) | Power monitoring information security access device | |
CN111429322A (en) | Academic degree certificate credible management system based on alliance chain | |
CN107124317A (en) | A kind of disaster tolerance system | |
CN104699760A (en) | Data synchronization method used for heterogeneous system and based on safety isolation | |
CN104243195A (en) | Remote disaster recovery processing method and device | |
CN113034857A (en) | Urban natural disaster monitoring emergency management scheduling platform based on block chain | |
CN110348826A (en) | Strange land disaster recovery method, system, equipment and readable storage medium storing program for executing mostly living | |
CN107357689A (en) | The fault handling method and distributed memory system of a kind of memory node | |
CN103036952B (en) | A kind of enterprise-level isomery merges storage management system | |
CN111427869A (en) | Log system based on block chain | |
CN101014044A (en) | Network GIS system and data transmitting method thereof | |
CN101923497A (en) | Enterprise-level database backup system and method | |
CN110009295A (en) | A kind of enterprise management informatization system construction method based on private clound | |
CN116974816A (en) | Disaster backup system for remote double-node service | |
CN101021919A (en) | Certificate information fidelity inquiry system and inquiry method | |
Zou et al. | Application of blockchain technology in credit management for credit bank system | |
CN112633706B (en) | Data processing method and system for terminal of Internet of things based on layered multi-chain | |
CN103679615A (en) | High-availability logistics information management system based on distributed system architecture | |
CN103034570A (en) | Application resource acquisition based on failover | |
Cocchiara et al. | Data center topologies for mission-critical business systems | |
CN107423107A (en) | A kind of construction method of moving distributing data center |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
C12 | Rejection of a patent application after its publication | ||
RJ01 | Rejection of invention patent application after publication |
Application publication date: 20081217 |