CN102055763A - Rights management method and system - Google Patents

Rights management method and system Download PDF

Info

Publication number
CN102055763A
CN102055763A CN2010105880550A CN201010588055A CN102055763A CN 102055763 A CN102055763 A CN 102055763A CN 2010105880550 A CN2010105880550 A CN 2010105880550A CN 201010588055 A CN201010588055 A CN 201010588055A CN 102055763 A CN102055763 A CN 102055763A
Authority
CN
China
Prior art keywords
permissions
login
bundle
user
attribute
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN2010105880550A
Other languages
Chinese (zh)
Other versions
CN102055763B (en
Inventor
邓晓爱
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
CVIC Software Engineering Co Ltd
Original Assignee
CVIC Software Engineering Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by CVIC Software Engineering Co Ltd filed Critical CVIC Software Engineering Co Ltd
Priority to CN 201010588055 priority Critical patent/CN102055763B/en
Publication of CN102055763A publication Critical patent/CN102055763A/en
Application granted granted Critical
Publication of CN102055763B publication Critical patent/CN102055763B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Storage Device Security (AREA)

Abstract

The invention discloses a rights management method, which comprises the following steps of: configuring a rights template, and generating a layout rights group according to the rights template, wherein the rights group comprises user rights; and configuring a user login attribute, and when a user logs in, acquiring user rights corresponding to the login attribute in the rights group according to the login attribute. In the rights management method, the rights template is configured, the rights group of layout is generated, and a direct association relation between the rights group and the layout is dynamically established; and the user login attribute is configured, and when the user logs in, the user rights corresponding to the login attribute is selected. The rights management method and the rights management system realize the dynamic management and allocation of rights, and simplify the user rights configuration process.

Description

A kind of right management method and system
Technical field
The present invention relates to the network application field, particularly relate to a kind of dynamic rights management method and system based on jforum.
Background technology
Jforum is a powerful system of forum, and the function of back-stage management is very powerful, and wherein, rights management is adopted user right to give one or more bundle of permissions and obtained authority.So the configuration of the bundle of permissions of rights management is important step of rights management process.
The inventor passes through discovering the authority application process of existing jforum, in the existing jforum rights management process, when the user needs the authority of certain space of a whole page, need to add the bundle of permissions of this space of a whole page, and edit the attribute of this bundle of permissions, and then give the user with bundle of permissions; The process of this user right configuration is loaded down with trivial details, needs could make up authority for the user through complicated configuration.
Summary of the invention
For solving the problems of the technologies described above, the embodiment of the invention provides a kind of dynamic rights management method and system based on jforum, can make rights management be more prone to operation dynamically for the user makes up authority.
Technical scheme is as follows:
A kind of right management method comprises:
The configuration permission template generates space of a whole page bundle of permissions according to described permission template, and described bundle of permissions comprises user right;
Configure user login attribute when the user logins, obtains in the described bundle of permissions and the corresponding user right of described login attribute according to described login attribute.
Above-mentioned method, preferred, the title of described bundle of permissions comprises: space of a whole page ID, special separator and authority name.
Above-mentioned method, preferred, described configuration permission template also is specially according to the process that permission template generates space of a whole page bundle of permissions:
Formulate and configuration permission template file;
Resolve described permission template file, obtain permissions data;
Generate the bundle of permissions of the space of a whole page according to described permissions data.
Above-mentioned method, preferred, described login attribute comprises anonymous login attribute and sharing users login attribute.
Above-mentioned method, preferred, when the user logined, the detailed process of obtaining in the described bundle of permissions with the corresponding user right of described login attribute according to described login attribute was:
Judge login user login identity;
When if login user is anonymous, the described anonymous login of foundation attribute obtains in the described bundle of permissions logins the corresponding user right of attribute with described anonymous;
When if login user is non-anonymous, obtain in the described bundle of permissions and described anonymous login attribute, sharing users login attribute and the corresponding user right of user login information according to described anonymous login attribute, sharing users login attribute and user login information.
A kind of Rights Management System comprises:
First dispensing unit, generation unit, second dispensing unit and acquiring unit;
Wherein:
Described first dispensing unit is used to dispose permission template;
Described generation unit is used for generating space of a whole page bundle of permissions according to the permission template of described first dispensing unit configuration; Described space of a whole page bundle of permissions comprises user right;
Described second dispensing unit is used for configure user login attribute;
Described acquiring unit is used for when the user logins, and obtains in the bundle of permissions that described generation unit generates and the corresponding user right of described login attribute according to the login attribute of described second dispensing unit configuration.
Above-mentioned system, preferred, described first dispensing unit comprises: first handles subelement, resolves subelement and generates subelement;
Described first handles subelement is used for formulating and disposing the permission template file;
Described parsing subelement is used to resolve described permission template file, obtains permissions data;
The permissions data that described generation subelement is used for obtaining according to described parsing subelement generates the bundle of permissions of the space of a whole page.
The technical scheme that provides by the above embodiment of the invention as seen, right management method disclosed by the invention and system by the configuration permission template, generate the bundle of permissions of the space of a whole page, have dynamically set up the direct correlation relation of bundle of permissions with the space of a whole page; Configure user login attribute when the user logins, is selected and the corresponding user right of described login attribute.Right management method disclosed by the invention and system have realized the dynamic management and the distribution of authority, have simplified the user right layoutprocedure.
Description of drawings
In order to be illustrated more clearly in the embodiment of the invention or technical scheme of the prior art, to do to introduce simply to the accompanying drawing of required use in embodiment or the description of the Prior Art below, apparently, the accompanying drawing that describes below only is some embodiment that put down in writing among the present invention, for those of ordinary skills, under the prerequisite of not paying creative work, can also obtain other accompanying drawing according to these accompanying drawings.
Fig. 1 is the method flow diagram of the disclosed rights management of the embodiment of the invention;
Fig. 2 is disclosed configuration permission template of the embodiment of the invention and the process flow diagram that generates space of a whole page bundle of permissions according to permission template;
Fig. 3 is the process flow diagram that the disclosed initial space of a whole page authority of the embodiment of the invention generates;
Fig. 4 is a detail flowchart of the disclosed authority loading procedure of the embodiment of the invention;
Fig. 5 is the structural representation of the open Rights Management System of the embodiment of the invention;
Fig. 6 is a detailed structure schematic diagram of the disclosed Rights Management System of the embodiment of the invention.
Embodiment
In order to make those skilled in the art person understand the present invention program better.Below in conjunction with the accompanying drawing in the embodiment of the invention, the technical scheme in the embodiment of the invention is clearly and completely described, obviously, described embodiment only is the present invention's part embodiment, rather than whole embodiment.Based on the embodiment among the present invention, those of ordinary skills should belong to the scope of protection of the invention not making the every other embodiment that is obtained under the creative work prerequisite.
The method flow diagram of embodiment of the invention realization rights management comprises as shown in Figure 1:
Step S101: the configuration permission template, generate space of a whole page bundle of permissions according to described permission template, described bundle of permissions comprises user right;
The create right group also identifies described bundle of permissions.Dispose a plurality of permission template of work, be used to generate one or more bundle of permissions of a space of a whole page; The title of bundle of permissions adopts the mode of space of a whole page ID, special separator and the combination of authority name, as the unique identification of bundle of permissions.
Step S102: configure user login attribute, when the user logins, obtain in the described bundle of permissions and the corresponding user right of described login attribute according to described login attribute.
Disclosed configuration permission template of the embodiment of the invention and the process flow diagram that generates space of a whole page bundle of permissions according to permission template comprise as shown in Figure 2:
Step S201: formulate and configuration permission template file;
Step S202: resolve described permission template file, obtain permissions data;
Step S203: the bundle of permissions that generates the space of a whole page according to described permissions data.
The process flow diagram that the disclosed initial space of a whole page authority of the embodiment of the present application generates comprises as shown in Figure 3:
Step S301: definition permission template;
Formulate and the configuration template file, a plurality of character data of the general space of a whole page are as domestic consumer, edition owner user etc.;
Step S302: resolve permission template;
Resolve the permission template file, preserve resolution data to system cache, be convenient to reuse these data;
Step S303: create the space of a whole page and generate space of a whole page permissions data by remote interface;
By the remote service interface, call and create space of a whole page interface, create the space of a whole page and according to permissions data, for the current space of a whole page generates the associated rights group of the space of a whole page therewith, the corresponding bundle of permissions of role;
Step S304: preserve in the space of a whole page data to data storehouse;
The space of a whole page permissions data of the space of a whole page and generation is saved in the database.
One detail flowchart of the disclosed authority loading procedure of the embodiment of the present application comprises as shown in Figure 4:
Step S401: definition anonymous ID and sharing users ID;
Configuration anonymous ID and sharing users ID, the user of these two user ID correspondences is set to the state that can not land;
Step S402: judge whether the active user is that anonymity is landed; If, execution in step S403; Otherwise, execution in step S404;
Step S403: read the anonymous authority; Execution in step S405 then
According to anonymous ID, the authority of inquiry anonymous from system cache and database;
Step S404: the authority that reads anonymous, sharing users and current sessions user;
According to anonymous ID, sharing users ID and current sessions user profile, from system cache and database, inquire about anonymous, sharing users and current sessions user's authority;
Step S405: the record authority information is related with current sessions;
The authority information that reads is stored in the system cache related with the current sessions sign.Because it is more time taking reading authority, the buffer memory permissions data is convenient to the repeated use of permissions data like this.
For aforesaid method embodiment, for simple description, so it all is expressed as a series of combination of actions, but those skilled in the art should know, the present invention is not subjected to the restriction of described sequence of movement, because according to the present invention, some step can adopt other orders or carry out simultaneously.Secondly, those skilled in the art also should know, the embodiment described in the specification all belongs to preferred embodiment, and related action and module might not be that the present invention is necessary.
At above method embodiment, the application also provides the corresponding Rights Management System with described method embodiment, and its structural representation comprises as shown in Figure 5:
First dispensing unit 501, generation unit 502, second dispensing unit 503 and acquiring unit 504;
Wherein:
First dispensing unit 501 is used to dispose permission template;
Generation unit 502 is used for generating space of a whole page bundle of permissions according to the permission template of described first dispensing unit 501 configurations; Described space of a whole page bundle of permissions comprises user right;
Second dispensing unit 503 is used for configure user login attribute;
Acquiring unit 504 is used for when the user logins, and obtains in the bundle of permissions that described generation unit 502 generates and the corresponding user right of described login attribute according to the login attribute of described second dispensing unit 503 configuration.
One detailed structure schematic diagram of the disclosed Rights Management System of the embodiment of the present application as shown in Figure 6, first dispensing unit 501 comprises: first handles subelement 601, resolves subelement 602 and generates subelement 603;
First handles subelement 601 is used for formulating and disposing the permission template file;
Resolve subelement 602 and be used to resolve described permission template file, obtain permissions data;
Generate the bundle of permissions that subelement 603 is used for generating according to the permissions data that described parsing subelement 602 obtains the space of a whole page.
Comprehensive above method embodiment and system embodiment, the present invention provides the approach easily and effectively of a management jforum forum for the keeper.Be convenient to dispose space of a whole page initial rights; Be convenient to manage overall user right; Be convenient to the authority of the configure user visit space of a whole page.In addition, by a few modifications of jfourm program, the user can carry out content-browsing separately in a column, can be only with regard to this space of a whole page search for article, check information about firms, statistical information, online information etc.; The dynamic management and the distribution of authority have been realized.
Each embodiment in this specification all adopts the mode of going forward one by one to describe, and identical similar part is mutually referring to getting final product between each embodiment, and each embodiment stresses all is difference with other embodiment.The above only is the specific embodiment of the present invention; should be pointed out that for those skilled in the art, under the prerequisite that does not break away from the principle of the invention; can also make some improvements and modifications, these improvements and modifications also should be considered as protection scope of the present invention.

Claims (7)

1. a right management method is characterized in that, comprising:
The configuration permission template generates space of a whole page bundle of permissions according to described permission template, and described bundle of permissions comprises user right;
Configure user login attribute when the user logins, obtains in the described bundle of permissions and the corresponding user right of described login attribute according to described login attribute.
2. method according to claim 1 is characterized in that, the title of described bundle of permissions comprises: space of a whole page ID, special separator and authority name.
3. method according to claim 1 is characterized in that, described configuration permission template also is specially according to the process that permission template generates space of a whole page bundle of permissions:
Formulate and configuration permission template file;
Resolve described permission template file, obtain permissions data;
Generate the bundle of permissions of the space of a whole page according to described permissions data.
4. method according to claim 1 is characterized in that, described login attribute comprises anonymous login attribute and sharing users login attribute.
5. method according to claim 4 is characterized in that, when the user logined, the detailed process of obtaining in the described bundle of permissions with the corresponding user right of described login attribute according to described login attribute was:
Judge login user login identity;
When if login user is anonymous, the described anonymous login of foundation attribute obtains in the described bundle of permissions logins the corresponding user right of attribute with described anonymous;
When if login user is non-anonymous, obtain in the described bundle of permissions and described anonymous login attribute, sharing users login attribute and the corresponding user right of user login information according to described anonymous login attribute, sharing users login attribute and user login information.
6. a Rights Management System is characterized in that, comprising:
First dispensing unit, generation unit, second dispensing unit and acquiring unit;
Wherein:
Described first dispensing unit is used to dispose permission template;
Described generation unit is used for generating space of a whole page bundle of permissions according to the permission template of described first dispensing unit configuration; Described space of a whole page bundle of permissions comprises user right;
Described second dispensing unit is used for configure user login attribute;
Described acquiring unit is used for when the user logins, and obtains in the bundle of permissions that described generation unit generates and the corresponding user right of described login attribute according to the login attribute of described second dispensing unit configuration.
7. system according to claim 6 is characterized in that, described first dispensing unit comprises: first handles subelement, resolves subelement and generates subelement;
Described first handles subelement is used for formulating and disposing the permission template file;
Described parsing subelement is used to resolve described permission template file, obtains permissions data;
The permissions data that described generation subelement is used for obtaining according to described parsing subelement generates the bundle of permissions of the space of a whole page.
CN 201010588055 2010-12-14 2010-12-14 Rights management method and system Active CN102055763B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN 201010588055 CN102055763B (en) 2010-12-14 2010-12-14 Rights management method and system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN 201010588055 CN102055763B (en) 2010-12-14 2010-12-14 Rights management method and system

Publications (2)

Publication Number Publication Date
CN102055763A true CN102055763A (en) 2011-05-11
CN102055763B CN102055763B (en) 2013-04-03

Family

ID=43959689

Family Applications (1)

Application Number Title Priority Date Filing Date
CN 201010588055 Active CN102055763B (en) 2010-12-14 2010-12-14 Rights management method and system

Country Status (1)

Country Link
CN (1) CN102055763B (en)

Cited By (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102710660A (en) * 2012-06-26 2012-10-03 苏州微逸浪科技有限公司 Access control method of next generation data protection system
CN103593374A (en) * 2012-08-17 2014-02-19 腾讯科技(深圳)有限公司 Generation method and generation system for front-end interface of commodity information on e-commerce platform
CN105787614A (en) * 2014-12-22 2016-07-20 北京北方微电子基地设备工艺研究中心有限责任公司 Management method and management device for technical formula in semiconductor device
CN105979293A (en) * 2015-11-10 2016-09-28 乐视致新电子科技(天津)有限公司 User authority processing method and device
CN106056365A (en) * 2016-07-07 2016-10-26 珠海佳米科技有限公司 Enterprise address book visibility authority control method and apparatus
CN106411866A (en) * 2016-09-18 2017-02-15 珠海格力电器股份有限公司 Privacy information sending method and device
CN110245499A (en) * 2019-05-08 2019-09-17 深圳丝路天地电子商务有限公司 Web application rights management method and system
CN111091899A (en) * 2019-11-22 2020-05-01 泰康保险集团股份有限公司 Authority distribution method and device, electronic equipment and computer readable storage medium
CN112906029A (en) * 2021-03-08 2021-06-04 国家工业信息安全发展研究中心 Method and system for controlling user authority through identification analysis

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20020138738A1 (en) * 2001-03-20 2002-09-26 Sames David L. Method and apparatus for securely and dynamically managing user attributes in a distributed system
CN101051937A (en) * 2006-05-10 2007-10-10 华为技术有限公司 User's power managing method and system based on XML
CN101414253A (en) * 2007-10-17 2009-04-22 华为技术有限公司 Method and system for managing authority
CN101621518A (en) * 2009-07-20 2010-01-06 厦门敏讯信息技术股份有限公司 Method for managing permission

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20020138738A1 (en) * 2001-03-20 2002-09-26 Sames David L. Method and apparatus for securely and dynamically managing user attributes in a distributed system
CN101051937A (en) * 2006-05-10 2007-10-10 华为技术有限公司 User's power managing method and system based on XML
CN101414253A (en) * 2007-10-17 2009-04-22 华为技术有限公司 Method and system for managing authority
CN101621518A (en) * 2009-07-20 2010-01-06 厦门敏讯信息技术股份有限公司 Method for managing permission

Cited By (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102710660A (en) * 2012-06-26 2012-10-03 苏州微逸浪科技有限公司 Access control method of next generation data protection system
CN103593374B (en) * 2012-08-17 2019-07-30 北京京东尚科信息技术有限公司 The front-end interface generation method and system of merchandise news on a kind of e-commerce platform
CN103593374A (en) * 2012-08-17 2014-02-19 腾讯科技(深圳)有限公司 Generation method and generation system for front-end interface of commodity information on e-commerce platform
CN105787614A (en) * 2014-12-22 2016-07-20 北京北方微电子基地设备工艺研究中心有限责任公司 Management method and management device for technical formula in semiconductor device
CN105787614B (en) * 2014-12-22 2021-10-15 北京北方华创微电子装备有限公司 Method and device for managing process recipe in semiconductor equipment
CN105979293A (en) * 2015-11-10 2016-09-28 乐视致新电子科技(天津)有限公司 User authority processing method and device
CN106056365A (en) * 2016-07-07 2016-10-26 珠海佳米科技有限公司 Enterprise address book visibility authority control method and apparatus
CN106411866B (en) * 2016-09-18 2019-07-09 珠海格力电器股份有限公司 A kind of privacy information sending method and device
CN106411866A (en) * 2016-09-18 2017-02-15 珠海格力电器股份有限公司 Privacy information sending method and device
CN110245499A (en) * 2019-05-08 2019-09-17 深圳丝路天地电子商务有限公司 Web application rights management method and system
CN111091899A (en) * 2019-11-22 2020-05-01 泰康保险集团股份有限公司 Authority distribution method and device, electronic equipment and computer readable storage medium
CN112906029A (en) * 2021-03-08 2021-06-04 国家工业信息安全发展研究中心 Method and system for controlling user authority through identification analysis
CN112906029B (en) * 2021-03-08 2021-09-07 国家工业信息安全发展研究中心 Method and system for controlling user authority through identification analysis

Also Published As

Publication number Publication date
CN102055763B (en) 2013-04-03

Similar Documents

Publication Publication Date Title
CN102055763B (en) Rights management method and system
CN102354356B (en) Data authority management device and method
CN107798038B (en) Data response method and data response equipment
CN112182619A (en) Service processing method and system based on user permission, electronic device and medium
CN103023933B (en) A kind of log-on message Integrated Processing System and method
CN103488791A (en) Data access method and system and data warehouse
Wang et al. Context-aware role mining for mobile service recommendation
CN102819766A (en) Method, device and enterprise system for checking forms
CN102012981A (en) Distributing and matching method and system of general permission grade
JP2016502172A (en) Feature information acquisition method, apparatus, network apparatus, program, and recording medium
CN104158889A (en) Business card information querying method and cloud server
CN104090901A (en) Method, device and server for processing data
CN102984260A (en) Internet account number and password information management method and system
CN104852965A (en) Method and system for user account project management
CN107566406B (en) Conference summary management system based on cloud storage
CN103984728B (en) Range query integrity verification method for outsourcing space database
CN102402544A (en) Attachment sharing method and device as well as business system
CN101576922A (en) Access system and access method
CN107003940A (en) System and method for providing improved delay in non-Unified Memory Architecture
CN102314425B (en) Data searching method and system
CN102469083A (en) User authentication method and apparatus thereof, and enterprise system
CN106776717A (en) A kind of interface configurations method and system based on HBase
Liu et al. Smart hardware hybrid secure searchable encryption in cloud with IoT privacy management for smart home system
CN103561113A (en) Web Service interface generating method and device
CN104268264A (en) Search condition building device and searching device

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
ASS Succession or assignment of patent right

Free format text: FORMER OWNER: CVIC SOFTWARE ENGINEERING CO., LTD.

Effective date: 20131227

C41 Transfer of patent application or patent right or utility model
TR01 Transfer of patent right

Effective date of registration: 20131227

Address after: 250014 Shandong city of Ji'nan Province - Shandong Lixia District Road No. 41-1

Patentee after: CVIC Software Engineering Co., Ltd.

Address before: 250014 No. 41-1 Shandong Road, Shandong, Ji'nan

Patentee before: Shandong CVIC Software Engineering Co., Ltd.

Patentee before: CVIC Software Engineering Co., Ltd.