Summary of the invention
Problem at can't the remote access network management system in the correlation technique the invention provides a kind of remote network management system and method for operating traffic thereof thereof, to address the above problem at least.
According to an aspect of the present invention, the method for operating traffic thereof of a kind of remote network management system is provided, this remote network management system comprises: the service server of the acting server that links to each other with network, the name server of preserving registration content and execution webmaster business, and this method comprises: acting server receives the service request that professional webmaster sends by network; Above-mentioned acting server obtains the service server identification information according to above-mentioned service request to name server; Above-mentioned acting server carries out business operation by above-mentioned service server identification information corresponding service server.
Above-mentioned remote network management system can also comprise: the management server that links to each other with above-mentioned network; Acting server receives before the service request of professional webmaster transmission by network, said method also comprises: management server receives the log-on message that the webmaster office terminal sends by web browser, wherein, this log-on message carries the registration content of professional webmaster, acting server and service server; Above-mentioned professional webmaster, acting server and service server are at least one; Above-mentioned management server sends to name server with above-mentioned log-on message; After this name server receives above-mentioned log-on message, preserve and arrange this registration content.
Said method can also comprise: above-mentioned management server receives the log-on message modification message that above-mentioned webmaster office terminal sends by above-mentioned web browser, and wherein, this log-on message is revised message and carried the modification indication; Above-mentioned management server should be revised indication and be notified to above-mentioned name server; This name server is revised corresponding registration content according to above-mentioned modification indication.
Above-mentioned acting server obtains the service server identification information according to above-mentioned service request to name server and can comprise: above-mentioned acting server sends to name server with above-mentioned service request; After this name server receives above-mentioned service request, determine the corresponding service server according to this service request; The service server identification information of the above-mentioned service server that above-mentioned name server will be determined sends to above-mentioned acting server.
Above-mentioned acting server carries out business operation by above-mentioned service server identification information corresponding service server and can comprise: above-mentioned acting server sends the business operation request to above-mentioned service server identification information corresponding service server, wherein, this business operation request is the message based on safety shell protocol (Secure Shell abbreviates SSH as); After above-mentioned service server receives above-mentioned business operation request, resolve above-mentioned business operation request by above-mentioned SSH, carry out this business operation request corresponding service operation, and the result of this business operation is fed back to above-mentioned acting server.
Above-mentioned business operation request can comprise above-mentioned service server request access hardware resource and/or software resource.
The corresponding authority levels of each teleaction service webmaster; Above-mentioned service server is carried out the operation of above-mentioned business operation request corresponding service and can be comprised: this service server is according to the authority levels of above-mentioned teleaction service webmaster, determines that this business webmaster visits the authority of above-mentioned service server; Above-mentioned service server is carried out above-mentioned business operation request corresponding service operation according to the authority of this service server.
Above-mentioned service server can comprise a plurality of, each above-mentioned service server moves a business process in the above-mentioned remote network management system, above-mentioned business process is by general unique identifier (Universally Unique Identifier abbreviates UUID as) order name.
According to a further aspect in the invention, a kind of remote network management system is provided, this system comprises acting server, the name server of preserving registration content that links to each other with network and the service server of carrying out the webmaster business, above-mentioned acting server comprises: the service request receiver module is used for receiving the service request that professional webmaster sends by network; The information acquisition module is used for obtaining the service server identification information according to the above-mentioned service request that above-mentioned service request receiver module receives to above-mentioned name server; Service operation module, the above-mentioned service server identification information corresponding service server that is used for obtaining by above-mentioned information acquisition module carries out business operation.
Said system also comprises the management server that links to each other with above-mentioned network; This management server can comprise: the log-on message receiver module, be used for receiving the log-on message that the webmaster office terminal sends by web browser, wherein, this log-on message carries the registration content of professional webmaster, acting server and service server, and above-mentioned professional webmaster, above-mentioned acting server and above-mentioned service server are at least one; The log-on message sending module is used for the above-mentioned log-on message that above-mentioned log-on message receiver module receives is sent to name server; Above-mentioned name server can comprise: processing module, after being used for receiving the above-mentioned log-on message of above-mentioned management server transmission, preserve and arrange above-mentioned registration content.
Above-mentioned management server can also comprise: revise the message sink module, be used for receiving the log-on message modification message that above-mentioned webmaster office terminal sends by above-mentioned web browser, wherein, above-mentioned log-on message modification message carries revises indication; Notification module is used for above-mentioned modification indication is notified to above-mentioned name server; Above-mentioned name server also comprises: modified module is used for revising corresponding registration content according to the above-mentioned modification indication of above-mentioned management server notification.
Above-mentioned service operation module can comprise: request transmitting unit, be used for sending the business operation request to above-mentioned service server identification information corresponding service server, and wherein, this business operation request is the message based on SSH; Above-mentioned service server can comprise: performance element, after being used for receiving the above-mentioned business operation request of above-mentioned acting server transmission, resolve above-mentioned business operation request by above-mentioned SSH, and carry out this business operation request corresponding service operation; Feedback unit feeds back to above-mentioned acting server for the result who above-mentioned performance element is carried out above-mentioned business operation.
Above-mentioned performance element can comprise: authority is determined subelement, is used for the authority levels according to above-mentioned teleaction service webmaster, determines that above-mentioned professional webmaster visits the authority of above-mentioned service server, wherein, and the corresponding authority levels of each teleaction service webmaster; Carry out subelement, carry out above-mentioned business operation request corresponding service operation for the authority of determining the above-mentioned service server that subelement is determined according to above-mentioned authority.
By the present invention, the service request that acting server sends according to professional webmaster, obtain the service server identification information to name server, above-mentioned acting server carries out business operation by above-mentioned service server identification information corresponding service server then, solved in the correlation technique can't the remote access network management system problem, remove network management system and can only enlarge the range of application of network management system in the restriction of local operation.
Embodiment
Hereinafter will describe the present invention with reference to the accompanying drawings and in conjunction with the embodiments in detail.Need to prove that under the situation of not conflicting, embodiment and the feature among the embodiment among the application can make up mutually.
The embodiment of the invention provides a kind of remote network management system and method for operating traffic thereof thereof.
Framework corresponding to above-mentioned remote network management system, present embodiment provides the method for operating traffic thereof of a kind of remote network management system, this method can realize that this remote network management system comprises in above-mentioned remote network management system: the acting server that links to each other with network, the name server of preserving registration content, the service server of carrying out the webmaster business and the management server that links to each other with above-mentioned network.Fig. 1 is the method for operating traffic thereof flow chart according to the remote network management system of the embodiment of the invention, and this method may further comprise the steps (step S102-step S106):
Step S102, acting server receives the service request that professional webmaster sends by network;
Step S104, above-mentioned acting server obtains the service server identification information according to above-mentioned service request to name server;
Step S106, above-mentioned acting server carries out business operation by above-mentioned service server identification information corresponding service server.
Pass through said method, the service request that acting server sends according to professional webmaster, obtain the service server identification information to name server, above-mentioned acting server carries out business operation by above-mentioned service server identification information corresponding service server then, solved in the correlation technique can't the remote access network management system problem, remove network management system and can only enlarge the range of application of network management system in the restriction of local operation.
The registration content of preserving on the name server can be to preserve when making up this system, also can choose registration opportunity as required.Personnel register for the ease of webmaster, the system of present embodiment also comprises management server, based on this, before above-mentioned steps S102, be that acting server receives before the service request of professional webmaster transmission by network, the webmaster office terminal needs to register at management server earlier, and this registration comprises the registration of the registration of above-mentioned professional webmaster, above-mentioned acting server and the registration of above-mentioned service server.Management server receives after the log-on message of webmaster office terminal, and this log-on message is sent to name server, and the registration content that comprises in this log-on message is preserved and arranged to name server.This logon mode is more convenient flexibly, is easy to realize.
For above-mentioned logon mode, present embodiment provides a kind of preferred implementation, be that acting server receives before the service request of professional webmaster transmission by network, management server receives the log-on message that the webmaster office terminal sends by web browser, wherein, this log-on message carries the registration content of professional webmaster, acting server and service server, and above-mentioned professional webmaster, acting server and service server are at least one; Above-mentioned management server sends to name server with above-mentioned log-on message, after above-mentioned name server receives above-mentioned log-on message, preserves and arrange this registration content.By this mode, finished acting server in the remote network management system and the registration of service server, also finished the registration of professional webmaster, for carrying out the teleaction service operation to this system, the follow-up business webmaster provides condition and basis.
According to actual needs, above-mentioned webmaster office terminal also can send log-on message to management server and revise information, this log-on message modification information carries revises indication, name server has been described in order to preserve and to arrange log-on message in the front, therefore after management server receives and revises indication, should revise indication and be notified to name server, name server is revised indication according to this and is revised corresponding registration content then.Above-mentioned modification indication can be a node that is used to refer to increase, reduces or revise distribution type network management system, not only to notify other distributed nodes that carry out communication with this node this moment, the management interface that will provide by name server also, add in the distribution type network management system, remove and revise this node, namely add, remove or revise the running example of a functional module.
For above-mentioned alter mode, present embodiment provides a kind of preferred implementation, be that above-mentioned management server receives the log-on message modification message that above-mentioned webmaster office terminal sends by above-mentioned web browser, wherein, this log-on message is revised message and is carried the modification indication, above-mentioned management server should be revised indication and be notified to above-mentioned name server, and above-mentioned name server is revised indication according to this and revised corresponding registration content then.Aforesaid way can be adjusted the running example in the functional module in the above-mentioned network management system in good time, improves the network management system performance.
After the registration of each server of finishing above-mentioned network management system, execution in step S102, being acting server receives the service request that professional webmaster sends by network, execution in step S104 then, and namely acting server obtains the service server identification information according to service request to name server.For step S104, its concrete operating process is: acting server sends to name server with above-mentioned service request, after name server receives this service request, determine the corresponding service server according to this service request, name server sends to acting server with the service server identification information of definite service server.Like this, acting server can be known above-mentioned service server identification information corresponding service server, carry out business operation by above-mentioned service server then, by the way, the service request that the teleaction service webmaster sends is set up corresponding mandate relation with service server, can guarantee the fail safe of visiting, save resource simultaneously.
After acting server gets access to the service server identification information, execution in step S106, be that above-mentioned acting server carries out business operation by above-mentioned service server identification information corresponding service server, idiographic flow comprises: above-mentioned acting server sends the business operation request to above-mentioned service server identification information corresponding service server, wherein, this business operation request is based on safety shell protocol (Secure Shell, abbreviate SSH as) message, after above-mentioned service server receives this business operation request, resolve above-mentioned business operation request by above-mentioned SSH, carry out this business operation request corresponding service operation, and the result of this business operation is fed back to above-mentioned acting server.
SSH is the shell program of a safety, by SSL security protocol visit remote network management module node.Distribution type network management system of the prior art needs all embedded programs that access services externally is provided of each program, just can provide remote access approach.SSH can visit all programs on the remote computer node, realizes webmaster modular program and resource on any remote node server of far call.Therefore, present embodiment uses the different nodes in the SSH realization far call distribution type network management system.Remote network management system in the present embodiment is a general distribution type network management system, and this system is not simple distributed map-reduce system, neither supercomputer, and neither distributed memory system.But this system can comprise the repertoire of above-mentioned map-reduce system, supercomputer and distributed memory system simultaneously.Only need write several shell scripts or program, send to acting server then, this remote network management system just can realize any distributed function of distributed network management.
In the remote network management system based on SSH of present embodiment, SSH can the synchronized transmission order, also can the asynchronous transmission order.SSH can wait for that always up to the Host return results, the synch command of SSH just can be returned after Host (main frame) sends synch command.SSH returns after Host sends asynchronous command immediately, can not wait for the execution result of Host, and Host issues SSH with the result after executing order after a while.SSH send same order can be simultaneously for a plurality of Host, and all behind the return results, SSH is the return command execution result just for all Host by the time.SSH sends the synch command that need repeatedly return also can for a Host, sending back SSH can wait for always, Host whenever executes a particular step all can return intermediate object program to SSH, up to Host all results is all returned, and the synch command of SSH just can be returned.SSH sends many orders can also for a Host in batches, and these orders can be synchronous, also can be asynchronous.
When SSH sent a plurality of orders (send many orders in batches for a Host such as SSH, send same order perhaps for simultaneously a plurality of Host), these orders can use different user names to login and send.For example SSH sends three orders A, B, C to a Host, uses user a when sending A, uses user b when sending B, uses user c when sending C.SSH sends same order D for three Host for another example, uses user d when sending D to Host1, uses user e when sending D to Host2, uses user f when sending D to Host3.
The return results of SSH order is not only character string, can also return binary message (as the message packet of local network management system and Upper NM Station system interaction), perhaps backspace file (as network management performance data file, configuration backup file etc.).
Above-mentioned remote network management system can be divided into a plurality of modules, such as configuration, alarm, performance, version, instrument etc. according to the difference that service is provided.Each module has one or more examples, and distributed deployment moves at different server nodes.All modules of whole network management system all are clusters, can the hot plug arbitrary nodes, there is not the problem of single point failure.Each module is to go operation as a process on node separately.Above-mentioned acting server sends the business operation request to service server identification information corresponding service server, and this business operation request can comprise above-mentioned service server request access hardware resource and/or software resource.Can be situations such as the utilization rate of central processing unit (Central Processing Unit abbreviates CPU as) and memory usage such as hardware resource, software resource can be the top program on the main frame etc.
Aforesaid way has solved that network management system can only could realize by remote access approach is provided separately in the prior art.Present embodiment does not need network management system to realize safe remote access separately.Distributed each node is the not only externally service that provides of granted access webmaster module itself also, and extraneous node also can be visited each software and hardware resources of this node place server.
The corresponding authority levels of above-mentioned each teleaction service webmaster, above-mentioned remote network management system has the operating system entitlement management module, this module is combined the rights management of webmaster with the rights management of operating system, webmaster can use the user authorization mechanism of Linux, namely use the username and password login webmaster of Linux, resource and authority that control different user (being above-mentioned teleaction service webmaster) uses, because SSH also is to use the user of operating system to login, so SSH can directly login its module of having the right to visit of webmaster node visit.Resource and authority that Linux control different user uses, during with different user (being above-mentioned teleaction service webmaster) login webmaster, the module of manipulable webmaster also is different with function.Resource and the authority that Linux distributes for each user and use this user to login exercisable webmaster module behind the webmaster, function and resource to be one to one, to realize fine-grained management with this.
SSH uses user's login of operating system, so just can use the subscriber authorisation of operating system itself to realize authorizing arbitrarily.SSH user can have the home file of oneself, and interior poke, the hard disk number of user's use and the number of processes that can create etc. can be set.Above-mentioned mechanism does not allow to visit alternative document in addition simultaneously, does not allow to move other users' plurality of advantages such as program.For example the teleaction service webmaster initiates to start a performance queries cli order of webmaster by acting server, this order belongs to a function that performance module provides in the service server, when acting server uses SSH to initiate this cli order of request execution to Host (main frame), above-mentioned teleaction service webmaster is authorized to can only access performance module process and the performance data files of appointment, can not visit other any processes and other files.
Has the SSH command processing module in the above-mentioned module on the running example of each module, the various command request that energy treatment S SH initiates.For example acting server can use SSH to initiate request to certain main frame and carry out the cli order, and the performance data of inquiry network element, the performance module process on this main frame can be handled this SSH and ask to carry out this cli order.
Based on above-mentioned licensing scheme, present embodiment provides a kind of preferred implementation, be that above-mentioned service server is carried out the operation of above-mentioned business operation request corresponding service and comprised: this service server is according to the authority levels of above-mentioned teleaction service webmaster, determine that this business webmaster visits the authority of above-mentioned service server, this service server is carried out above-mentioned business operation request corresponding service operation according to the authority of above-mentioned service server.In this way, make visit more safe and reliable, avoid interference the operation of other processes simultaneously.
Above-mentioned service server can have a plurality of, and each service server moves a business process in the above-mentioned remote network management system, and this business process is by general unique identifier (Universally Unique Identifier abbreviates UUID as) order name.In the distributed remote network management system, this name is unduplicated.Module instance of a node operation, each module goes to move as process again, on the node except operation webmaster module, some service processes that also can move webmaster are secure file transportation protocol (Secure File Transfer Protocol for example, abbreviate SFTP as), Tomcat etc., process that also can the operation monitoring program.
Owing to these processes can be because break down, upgrade, reconfigure etc. and restart, therefore need to give the unique name of process in order to be used for " the once operation " of a process of unique identification.Process of each startup, this process should be endowed a unique name, and is all different with the name of current all processes of moving.Moreover, it should be all different with all names that once occurred, even the name of the process that has stopped also cannot be used when follow-up name again.For each process naming has very big practical significance in the distributed remote network management system, particularly when considering failover (the automatic retry of connection failure), because the new process after a process is restarted and the state before it are different usually, other processes that every and this process are come into contacts with want to become by the name of this process to judge that this program restarts, thereby can take necessary disaster relief measure immediately, prevent from taking improper remark.
Be the description of process naming for above-mentioned, present embodiment can be by UUID order name.This naming method is: carry out the UUID order and return the name that a globally unique character string is come a process of unique identification.This mode has proved in theory that name is impossible repeat.UUID is wide use in numerous application programs such as database, NET also.
Present embodiment can be set up a structure, indicates a process, and this structure is as follows:
Then, set up a hashtable:(char*moduleName, struct Process*processes) such key, value structure, the running example of a corresponding module on each node.So just can find all processes of all modules in the remote network management system.
The configuration diagram of remote network management system shown in Figure 2, this remote network management system comprises: the acting server that links to each other with network, preserve the name server of registration content and the service server of execution webmaster business, wherein, the number of these servers can be one or more, when being a plurality of, can represent with the form of trooping, as shown in Figure 2, wherein, Proxy Cluster (acting server is trooped, and is that example describes below with the acting server) provides network interface, in order to the service request that sends by the professional webmaster of network receiving remote, simultaneously, acting server can provide web browser, makes things convenient for the teleaction service webmaster to send service request.After receiving above-mentioned service request, (name server is trooped to use Naming server Cluster, be that example describes below with the name server) api that provides service, search suitable Server Cluster (service server is trooped, and is that example describes below with the service server).
Name server is the brain of whole system, and it has preserved the information of Servers-all during acting server is trooped and service server is trooped.Acting server must could use to the name server registration.The data of name server are kept in the data-base cluster.Name server is stateless server cluster, uses memcached cluster cache data, and memcached is high performance distributed memory object caching system, thereby improves the performance of name server.Name server provides openAPI with http protocol, i.e. Kai Fang application programming interface (Application Programming Interface abbreviates API as) is in order to outwards to provide service.
After name server finds suitable service server, acting server carries out business operation by the service server that finds, it is trooping of real execution work that service server is trooped, service server has multiple function, the respectively corresponding node of each functional module, service server has also been installed the SSH server, and acting server and name server can be visited it like this.Acting server uses the SSH server to initiate operating load to service server, and name server is carried out tasks such as configuration, management and monitoring to service server.
Above-mentioned remote network management system also comprises: the Manager Cluster that links to each other with described network (troop by management server, be that example describes below with the management server), the webmaster office terminal can be detected operation conditions, trade mark agency server, cancel register, modification registration content, granted access of above-mentioned remote network management system etc. by management server.Therefore, management server can provide web browser, makes things convenient for the webmaster office terminal to send log-on message or modification indication etc.
Fig. 3 is the schematic diagram according to the operating process of the remote network management system of the embodiment of the invention, present embodiment mainly is described the flow process that service server carries out business operation, as shown in Figure 3, this remote network management system comprises Naming server (name server), Host (main frame) and worker Cluster (being the general designation of All hosts in the above-mentioned remote network management system).
Worker Cluster is each node Host of webmaster distributed system, a running example of corresponding certain module of webmaster of each Host.The registration interface of the Web form that provides by Naming Server, the webmaster office terminal can be added in the remote network management system or be removed Host, namely adds or remove a running example of a module.Naming Server visits each Host by ssh.Each Host has one or more processes, such as the Host that has configuration process, Monitor (monitoring) process, Sftp process is arranged, and the Host that has has alarm process and Monitor process, enumerates no longer one by one at this.Regularly carry out the top program on the Host then, check CPU usage and the memory usage of system, thereby obtain the real-time pressure of each Host, and with the deposit data that gets access in database and memcached.Business module is exactly a process in Host.By checking the resource utilization of business module process, just can know the occupation condition of webmaster module.
The teleaction service webmaster initiate to require a service of visit webmaster by acting server, and which Host acting server inquiry to the Naming Server should use.For example the user initiates to require a cli who starts webmaster to order by acting server, the performance data of inquiry network element A.At first acting server is inquired about to Naming Server, and the performance data that inquires the A network element is managed by Host1, and acting server uses SSH to initiate request execution cli to Host1 and orders the performance data of inquiry A network element then.
Monitor is the monitoring program of a Host internal operation, owing to be internal processes, so not shown among Fig. 3.Can know the resource operating position of inner each process of Host by Monitor.Naming Server just can obtain the ruuning situation of inner each process of Host by SSH like this, know whether the operating system at Host place is moved normally, and whether each service moves normal.Some services of Host inside are very crucial, such as SSH, and the server (such as sftp, Tomcat etc.) that also has network management system to start.Naming Server can learn above-mentioned situation by Monitor.
Method for operating traffic thereof corresponding to above-mentioned remote network management system, present embodiment provides a kind of remote network management system, this system comprises: the service server 60 of the acting server 40 that links to each other with network, the name server 50 of preserving registration content and execution webmaster business, this system is used for realizing above-described embodiment.Fig. 4 is the structured flowchart according to the remote network management system of the embodiment of the invention, and as shown in Figure 4, the acting server 40 in this system comprises: service request receiver module 42, information acquisition module 44 and service operation module 46.Below this structure is described.
Service request receiver module 42 is used for receiving the service request that professional webmaster sends by network;
Information acquisition module 44 is connected to service request receiver module 42, is used for obtaining the service server identification information according to the above-mentioned service request that service request receiver module 42 receives to above-mentioned name server;
Service operation module 46 is connected to information acquisition module 44, and the above-mentioned service server identification information corresponding service server that is used for obtaining by information acquisition module 44 carries out business operation.
Pass through said system, the service request that information acquisition module 44 sends according to professional webmaster, obtain the service server identification information to name server, service operation module 46 is carried out business operation by above-mentioned service server identification information corresponding service server then, solved in the correlation technique can't the remote access network management system problem, remove network management system and can only enlarge the range of application of network management system in the restriction of local operation.
Receive by network at service request receiver module 42 before the service request of professional webmaster transmission, the webmaster office terminal need be registered earlier, therefore, present embodiment provides a kind of preferred implementation, the concrete structure block diagram according to the remote network management system of the embodiment of the invention as shown in Figure 5, said system each module in comprising Fig. 4, also comprise the management server 70 that links to each other with above-mentioned network, management server 70 is connected with above-mentioned service server 60.
Management server 70 comprises: log-on message receiver module 72, be used for receiving the log-on message that the webmaster office terminal sends by web browser, wherein, this log-on message carries the registration content of professional webmaster, acting server and service server, and above-mentioned professional webmaster, above-mentioned acting server and above-mentioned service server are at least one; Log-on message sending module 74 is connected to log-on message receiver module 72, is used for the above-mentioned log-on message that log-on message receiver module 72 receives is sent to name server;
Name server 50 comprises: processing module 52, after being used for receiving the above-mentioned log-on message of management server 70 transmissions, preserve and arrange above-mentioned registration content.
By said system, finished acting server in the remote network management system and the registration of service server, also finished the registration of professional webmaster, for carrying out the teleaction service operation to this system, the follow-up business webmaster provides condition and basis.
Above-mentioned webmaster office terminal sends log-on message to management server, this log-on message also can be that log-on message is revised information, therefore, above-mentioned management server 70 can also comprise: revise the message sink module, be used for receiving the log-on message modification message that above-mentioned webmaster office terminal sends by above-mentioned web browser, wherein, this log-on message is revised message and is carried the modification indication; Notification module is used for above-mentioned modification indication is notified to name server 50; Name server 50 can also comprise: modified module is used for revising corresponding registration content according to the above-mentioned modification indication of management server 70 notices.The front has been described in detail revising indication, repeats no more herein.
Information acquisition module 44 obtains the service server identification information according to the above-mentioned service request that service request receiver module 42 receives to above-mentioned name server, below its idiographic flow is described, information acquisition module 44 can comprise: the service request transmitting element is used for above-mentioned service request is sent to name server; Name server 50 can also comprise: determination module, after being used for receiving the above-mentioned service request of above-mentioned service request transmitting element transmission, determine the corresponding service server according to this service request; Information sending module, the service server identification information that is used for the above-mentioned service server that above-mentioned determination module is definite sends to acting server 40.The service request that the teleaction service webmaster can be sent is set up corresponding mandate relation with service server like this, guarantees the fail safe of visit, saves resource simultaneously.
After information acquisition module 44 gets access to the service server identification information, service operation module 46 is carried out business operation by the above-mentioned service server identification information corresponding service server that information acquisition module 44 obtains, below its idiographic flow is described, service operation module 46 comprises: request transmitting unit, be used for sending the business operation request to above-mentioned service server identification information corresponding service server, wherein, this business operation request is the message based on SSH.Above-mentioned service server comprises: performance element, after being used for receiving the above-mentioned business operation request of acting server 40 transmissions, resolve above-mentioned business operation request by above-mentioned SSH, and carry out this business operation request corresponding service operation; Feedback unit feeds back to acting server 40 for the result who above-mentioned performance element is carried out above-mentioned business operation.
The corresponding authority levels of above-mentioned each teleaction service webmaster, above-mentioned remote network management system has the operating system entitlement management module, this module is combined the rights management of webmaster with the rights management of operating system, webmaster can use the user authorization mechanism of Linux, the front is described licensing scheme, does not repeat them here.Based on above-mentioned licensing scheme, present embodiment provides a kind of preferred implementation, be that performance element can comprise: authority is determined subelement, be used for the authority levels according to above-mentioned teleaction service webmaster, determine the authority of above-mentioned professional webmaster access service server 60, wherein, corresponding authority levels of each teleaction service webmaster; Carry out subelement, carry out above-mentioned business operation request corresponding service operation for the authority of determining the service server 60 that subelement is determined according to above-mentioned authority.Can make visit more safe and reliable like this, avoid interference the operation of other processes simultaneously.
Above-mentioned business operation request comprises service server 60 request access hardware resource and/or software resources.Service server 60 comprises a plurality of, a business process in the above-mentioned remote network management of each the service server 60 operation system, and this business process is by UUID order name.Concrete UUID naming method front is described, and does not repeat them here.
As can be seen from the above description, remote network management system in the embodiment of the invention is based on the SSH realization, use SSH can the far call distribution type network management system in program and the resource on the service server arbitrarily, having removed network management system can only be in the restriction of local operation, enlarge the range of application of network management system, thereby constructed simple, a safe and effective remote network management system.
Obviously, those skilled in the art should be understood that, above-mentioned each module of the present invention or each step can realize with the general calculation device, they can concentrate on the single calculation element, perhaps be distributed on the network that a plurality of calculation elements form, alternatively, they can be realized with the executable program code of calculation element, thereby, they can be stored in the storage device and be carried out by calculation element, and in some cases, can carry out step shown or that describe with the order that is different from herein, perhaps they are made into each integrated circuit modules respectively, perhaps a plurality of modules in them or step are made into the single integrated circuit module and realize.Like this, the present invention is not restricted to any specific hardware and software combination.
The above is the preferred embodiments of the present invention only, is not limited to the present invention, and for a person skilled in the art, the present invention can have various changes and variation.Within the spirit and principles in the present invention all, any modification of doing, be equal to replacement, improvement etc., all should be included within protection scope of the present invention.