CN103745298A - Statement user permission setting method and statement user permission setting device based on post system - Google Patents

Statement user permission setting method and statement user permission setting device based on post system Download PDF

Info

Publication number
CN103745298A
CN103745298A CN201310688085.2A CN201310688085A CN103745298A CN 103745298 A CN103745298 A CN 103745298A CN 201310688085 A CN201310688085 A CN 201310688085A CN 103745298 A CN103745298 A CN 103745298A
Authority
CN
China
Prior art keywords
post
user
authority
task
standard
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201310688085.2A
Other languages
Chinese (zh)
Inventor
郭鹏飞
刘梦欣
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Yuanguang Software Co Ltd
Original Assignee
Yuanguang Software Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Yuanguang Software Co Ltd filed Critical Yuanguang Software Co Ltd
Priority to CN201310688085.2A priority Critical patent/CN103745298A/en
Publication of CN103745298A publication Critical patent/CN103745298A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Storage Device Security (AREA)
  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)

Abstract

A statement user permission setting method based on a post system comprises the following steps: a step of standard post system establishing: an administration user establishes a unified standard post system, sets a statement task and the statement permission of a user of the post based on the standard post system and shares the standard post system and the statement task with a subordinate user; a step of standard post system refinement: the subordinate user carries out refinement setting on the standard post system and the statement task which are shared by the administration user, sets the statement permission of the user of the post under the standard post system and shares the statement task with a bottom-level user; a step of statement task refinement by the bottom-level user: the bottom-level user carries out refinement setting on the statement task shared by the subordinate user and sets the statement permission of the user of the post under the standard post system; and a step of statement task and statement permission storage: the statement task and the statement permission set by the administration user, the subordinate user and the bottom-level user are stored and recorded.

Description

Reports user's authority setting method and device based on post system
Technical field
The invention belongs to business financial information management system technical field, more particularly, relate to method and device that a kind of business system user arranges the user right of Reports module function, realize the access control to various operations in different form tasks and form.
Background technology
In enterprise, conventionally there are multiple departments, as sales department, Finance Department, engineering department etc., each department requires very high to the report messages secrecy of self, therefore need to conduct interviews authority isolation of the report data between department, comprise inquiry, input, setting, delete form etc., if form authority is not controlled, all departments are the addressable and operation that increases, delete, change all, and report data information is all likely revealed at any time.Because different users accesses and safeguards the mode that neither one is unified form, user's concern of data Information Security, causes service efficiency low at present.And, when operation user conducts interviews to form or operates, need to operate user uses client to send a request to service end, service end receives request, and obtains and in system, operate user profile, then filters output, after client, according to different demand configuration form authorities, when amount of user information is very large, the configuration information of exporting concrete user right can be very consuming time.
Summary of the invention
The object of this invention is to provide a kind of method to set up and device of reports user's authority, enterprise's demand to form access by unified rights management entrance control different user at any time, it is more reasonable in form authority and user management, convenient to make.
To achieve these goals, the present invention takes following technical solution:
Reports user's authority setting method based on post system, comprises the following steps:
Standard post Establishing step; Master subscriber sets up unified standard post system, and form task and post user's at the corresponding levels form authority is set based on standard post system, by standard post system and form task sharing to the user of subordinate;
Standard post system refinement step; The user of subordinate carries out refinement setting to the shared standard post system of master subscriber and form task, and the form authority to post user at the corresponding levels arranges under the system of standard post, by form task sharing to bottom user;
Bottom user form task refinement step; Bottom user carries out refinement setting to the shared form task of the user of subordinate, and the form authority to post user at the corresponding levels arranges under the system of standard post;
Form task and form authority are preserved step; Form task and form authority that master subscriber, the user of subordinate and bottom user are arranged are carried out keeping records.
Further, described standard post system comprises unit organization, business module, post and post user.
Further, described form task comprises classification of task, task definition, report form template.
Further, described form authority comprises the operating right that form is increased, inputs, deleted or checks, and the post user at the corresponding levels visible authority of report data within the scope of dimension at the appointed time.
Further, the setting steps of described post user's form authority is as follows:
Post attribute is set, and post attribute comprises business module and the permission type of post title, affiliated grouping, Share Permissions, correspondence;
Set up the relation between post user and post, according to regulatory requirement, post user and corresponding form authority are set;
Post user's form authority is set according to the business module in post.
Reports user's authority setting device based on post system, comprising:
Establishing unit, standard post; Set up unified standard post system for master subscriber, and form task and post user's at the corresponding levels form authority be set based on standard post system, by standard post system and form task sharing to the user of subordinate;
System refinement unit, standard post; The shared standard post system of master subscriber and form task are carried out to refinement setting for the user of subordinate, and the form authority to post user at the corresponding levels arranges under the system of standard post, by form task sharing to bottom user;
Bottom user form task refinement unit; For bottom user, the shared form task of the user of subordinate is carried out to refinement setting, and the form authority to post user at the corresponding levels arranges under the system of standard post;
Form task and form authority storage unit; For form task and form authority that master subscriber, the user of subordinate and bottom user are arranged, carry out keeping records.
From above technical scheme, the present invention is by setting up unified standard post system, reports user's authority in posies at different levels is set under the system of standard post, the standard in post is divided by group, the operator of constituent parts builds under post, make group's demand to form access by unified rights management entrance control different user at any time, make group of enterprises more reasonable in form authority and user management, convenient, guarantee the accuracy of user in access form task.
Accompanying drawing explanation
In order to be illustrated more clearly in the embodiment of the present invention, to the accompanying drawing of required use in embodiment or description of the Prior Art be done to simple introduction below, apparently, accompanying drawing in the following describes is only some embodiments of the present invention, for those of ordinary skills, do not paying under the prerequisite of creative work, can also obtain according to these accompanying drawings other accompanying drawing.
Fig. 1 is the process flow diagram of the inventive method;
Fig. 2 is post setting operation pages schematic diagram;
Fig. 3 is post user's setting operation page schematic diagram;
Fig. 4 is post user-specific authority setting operation page schematic diagram;
Fig. 5 is post user task authority setting operation page schematic diagram;
Fig. 6 is the process flow diagram that post user carries out Report Operations;
Fig. 7 is the structured flowchart of reports user's authority setting device of the embodiment of the present invention.
Embodiment
Below in conjunction with the accompanying drawing in the embodiment of the present invention; technical scheme in the embodiment of the present invention is clearly and completely described; obviously; described embodiment is only the present invention's part embodiment; rather than whole embodiment; based on the embodiment in the present invention, those of ordinary skills, not making the every other embodiment obtaining under creative work prerequisite, belong to the scope of protection of the invention.
With reference to Fig. 1, Fig. 1 is the process flow diagram of reports user's authority setting method of providing of the embodiment of the present invention, and the method comprises the following steps:
Standard post Establishing step; Master subscriber (group of enterprises) sets up unified standard post system, and form task and post user's at the corresponding levels form authority is set based on standard post system, then according to the relation of form task and form unit, standard post system and the issue of form task are shared to the user of subordinate (subset group);
The foundation of described standard post system comprises unit organization, business module, post and post user's setting; After the Establishing of standard post, master subscriber the form task to post user at the corresponding levels and form authority under the system of standard post arrange, wherein, form task comprises classification of task, task definition, report form template, and form task shares to the user of subordinate after setting completed; Form authority comprises the authority to operations such as form increase, inputs, deletes, checks, and the post user at the corresponding levels visible authority of report data within the scope of dimension at the appointed time, control thus post user and can only obtain the report data within the scope of fixed date;
Standard post system refinement step; The user of subordinate carries out refinement setting as required to the shared standard post system of master subscriber, the content of refinement comprises unit organization, post and post user, and under the system of standard post, form task is carried out to refinement, for example increase corresponding post and corresponding post user and corresponding form task; Post user's at the corresponding levels form authority is arranged simultaneously, comprise the setting that form is increased, inputs, deletes, checked etc. the authority of operation, and the post user at the corresponding levels visible authority of report data within the scope of dimension at the appointed time.
Bottom user form task refinement step; Bottom user (grass-roots unit) carries out refinement setting as required to the shared form task of the user of subordinate, post user's at the corresponding levels form authority is arranged simultaneously, comprise the setting that form is increased, inputs, deletes, checked the authority of operation, and the post user at the corresponding levels visible authority of report data within the scope of dimension at the appointed time.
Form task and form authority are preserved step; Form task and form authority that master subscriber, the user of subordinate and bottom user are arranged are carried out keeping records.
More specifically, take master subscriber in the Establishing step of standard post to the setting up procedure of post at the corresponding levels user's form authority as example, the setting of the form authority to post user is further described, step is as follows:
Master subscriber arranges post attribute in post setting, and post attribute comprises business module and the permission type of post title, affiliated grouping, Share Permissions, correspondence; As shown in Figure 2, in bit attribute on duty, can be to the multiple business modules of post setting, as Report Server Management, financial analysis, can share or unshared post setting, and business module is arranged to corresponding privilege feature.
Set up the relation between post user and post, according to regulatory requirement, post user and corresponding form authority are set.As shown in Figure 3.
According to the business module in post, post user's form authority is arranged, as shown in Figure 4 and Figure 5, described form authority comprises the concrete post user in Report Server Management business module is arranged to exclusive authority, exclusive authority comprise to form inquire about, input, the authority of the operation such as setting, data deletion, and the post user at the corresponding levels visible authority of report data within the scope of dimension at the appointed time.Further, form authority also comprises the task right corresponding with form task, and the setting of task right comprises the setting to task identification, task names and application model.
The setting up procedure of the form authority of other users at different levels to post user at the corresponding levels is basic identical.
With reference to Fig. 6, reports user's authority after setting completed, when after the post in concrete post user (being operator) login client, service end filters out this operator's concrete form task, form and form authority according to post user's authority, when post user need to inquire about, while inputting, arrange, deleting a certain form, post user's operation requests is sent to service end effect, and service end returns to the authority of post user-operable.
As shown in Figure 7, the present invention also provides a kind of reports user's authority setting device, comprising:
Establishing unit, standard post: for set up unified standard post system by master subscriber, and form task and post user's at the corresponding levels form authority is set based on standard post system, standard post system and the issue of form task are shared to the user of subordinate; Its Plays post system comprises unit organization, business module, post and post user, and form task comprises classification of task, task definition, report form template; Form authority comprises the authority that form is increased, inputs, deletes, checked etc. operation, and the post user at the corresponding levels visible authority of report data within the scope of dimension at the appointed time.
System refinement unit, standard post: for the shared standard post system of master subscriber being carried out to refinement setting as required by the user of subordinate, the content of refinement comprises unit organization, post and post user, and under the system of standard post, form task is carried out to refinement, post user's at the corresponding levels form authority is arranged simultaneously, comprise the setting that form is increased, inputs, deletes, checked the authority of operation, and the post user at the corresponding levels visible authority of report data within the scope of dimension at the appointed time.
Bottom user form task refinement unit: for the shared form task of the user of subordinate being carried out to refinement setting as required by bottom user, post user's at the corresponding levels form authority is arranged simultaneously, comprise the setting that form is increased, inputs, deletes, checked the authority of operation, and the post user at the corresponding levels visible authority of report data within the scope of dimension at the appointed time.
Form task and form authority storage unit: for form task and form authority that master subscriber, the user of subordinate and bottom user are arranged, carry out keeping records.
The present invention compared to the prior art, the standard post system that model of the present invention is unified and form task are also shared downwards, users at different levels arrange the reports user's in post authority separately under the system of standard post, for different posies and operator, corresponding authority is set, support to arrange in the vertical form post authority, support in the horizontal to distribute operator's inquiry in concrete post, input, arrange, delete the authority of form, the post system of master subscriber based on unified safeguarded form authority is unified, changed in the past and collected attended operation person and form authority data mode by manual type, maintenance workload is large, maintenance time is long, maintenance information is difficult to guarantee the situation of promptness, operator's authority and unit have been guaranteed, post, the ease for maintenance of form authority, promptness and security, improved the efficiency that group safeguards authority.And by the present invention, can realize real-time management group or constituent parts operator's form authority, through being set, the operator of authority logins inquiry, input, setting, the erase right that can obtain corresponding form task right and concrete form after client, thereby realize the authority isolation between form and unit, post, guaranteeing data security property.
It should be noted that, the contents such as information interaction between the each module/unit of said apparatus, implementation, owing to conceiving based on unified with the inventive method embodiment, its technique effect bringing is identical with the inventive method embodiment, particular content can, referring to the narration in the inventive method embodiment, repeat no more herein.
It will be appreciated by those skilled in the art that, unit and the algorithm steps of each example of describing in conjunction with embodiment disclosed herein, can realize with electronic hardware, computer software or the combination of the two, for the interchangeability of hardware and software is clearly described, composition and the step of each example described according to function in the above description in general manner.These functions are carried out with hardware or software mode actually, depend on application-specific and the design constraint of technical scheme.Professional and technical personnel can realize described function with distinct methods specifically should be used for time to each, but this realization should not thought and exceeds scope of the present invention.
The software module that the method for describing in conjunction with embodiment disclosed herein or the step of algorithm can directly use hardware, processor to carry out, or the combination of the two is implemented.Software module can be placed in random access memory (RAM), internal memory, ROM (read-only memory) (ROM), electrically programmable ROM, electrically erasable ROM, register, hard disk, moveable magnetic disc, CD-ROM or the known any other forms of storage medium of technical field.
To the above-mentioned explanation of the disclosed embodiments, make professional and technical personnel in the field can realize or use the present invention.To the multiple modification of previous embodiment, will be apparent for those skilled in the art, in the present invention, defined General Principle can, in the situation that not departing from the spirit or scope of the present invention, realize in other embodiments.Therefore, the present invention will can not be restricted to previous embodiment, but will meet the widest scope consistent with principles of this disclosure and features of novelty.

Claims (10)

1. the reports user's authority setting method based on post system, is characterized in that, comprises the following steps:
Standard post Establishing step; Master subscriber sets up unified standard post system, and form task and post user's at the corresponding levels form authority is set based on standard post system, by standard post system and form task sharing to the user of subordinate;
Standard post system refinement step; The user of subordinate carries out refinement setting to the shared standard post system of master subscriber and form task, and the form authority to post user at the corresponding levels arranges under the system of standard post, by form task sharing to bottom user;
Bottom user form task refinement step; Bottom user carries out refinement setting to the shared form task of the user of subordinate, and the form authority to post user at the corresponding levels arranges under the system of standard post;
Form task and form authority are preserved step; Form task and form authority that master subscriber, the user of subordinate and bottom user are arranged are carried out keeping records.
2. the reports user's authority setting method based on post system according to claim 1, is characterized in that: described standard post system comprises unit organization, business module, post and post user.
3. the reports user's authority setting method based on post system according to claim 1 and 2, is characterized in that: described form task comprises classification of task, task definition, report form template.
4. the reports user's authority setting method based on post system according to claim 1, it is characterized in that: described form authority comprises the operating right that form is increased, inputs, deleted or checks, and the post user at the corresponding levels visible authority of report data within the scope of dimension at the appointed time.
5. according to the reports user's authority setting method based on post system described in claim 1 or 2 or 4, it is characterized in that: the setting steps of described post user's form authority is as follows:
Post attribute is set, and post attribute comprises business module and the permission type of post title, affiliated grouping, Share Permissions, correspondence;
Set up the relation between post user and post, according to regulatory requirement, post user and corresponding form authority are set;
Post user's form authority is set according to the business module in post.
6. the reports user's authority setting device based on post system, is characterized in that, comprising:
Establishing unit, standard post; Set up unified standard post system for master subscriber, and form task and post user's at the corresponding levels form authority be set based on standard post system, by standard post system and form task sharing to the user of subordinate;
System refinement unit, standard post; The shared standard post system of master subscriber and form task are carried out to refinement setting for the user of subordinate, and the form authority to post user at the corresponding levels arranges under the system of standard post, by form task sharing to bottom user;
Bottom user form task refinement unit; For bottom user, the shared form task of the user of subordinate is carried out to refinement setting, and the form authority to post user at the corresponding levels arranges under the system of standard post;
Form task and form authority storage unit; For form task and form authority that master subscriber, the user of subordinate and bottom user are arranged, carry out keeping records.
7. the reports user's authority setting device based on post system according to claim 6, is characterized in that: described standard post system comprises unit organization, business module, post and post user.
8. according to the reports user's authority setting device based on post system described in claim 6 or 7, it is characterized in that: described form task comprises classification of task, task definition, report form template.
9. the reports user's authority setting device based on post system according to claim 6, it is characterized in that: described form authority comprises the operating right that form is increased, inputs, deleted or checks, and the post user at the corresponding levels visible authority of report data within the scope of dimension at the appointed time.
10. according to the reports user's authority setting device based on post system described in claim 6 or 7 or 9, it is characterized in that: the setting steps of described post user's form authority is as follows:
Post attribute is set, and post attribute comprises business module and the permission type of post title, affiliated grouping, Share Permissions, correspondence;
Set up the relation between post user and post, according to regulatory requirement, post user and corresponding form authority are set;
Post user's form authority is set according to the business module in post.
CN201310688085.2A 2013-12-16 2013-12-16 Statement user permission setting method and statement user permission setting device based on post system Pending CN103745298A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201310688085.2A CN103745298A (en) 2013-12-16 2013-12-16 Statement user permission setting method and statement user permission setting device based on post system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201310688085.2A CN103745298A (en) 2013-12-16 2013-12-16 Statement user permission setting method and statement user permission setting device based on post system

Publications (1)

Publication Number Publication Date
CN103745298A true CN103745298A (en) 2014-04-23

Family

ID=50502315

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201310688085.2A Pending CN103745298A (en) 2013-12-16 2013-12-16 Statement user permission setting method and statement user permission setting device based on post system

Country Status (1)

Country Link
CN (1) CN103745298A (en)

Cited By (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106296130A (en) * 2016-08-16 2017-01-04 山大地纬软件股份有限公司 A kind of intelligent automation social insurance business data processing method and system
CN110096854A (en) * 2019-03-25 2019-08-06 视联动力信息技术股份有限公司 Access authorization for resource sharing method, device and readable storage medium storing program for executing
CN112965977A (en) * 2021-03-05 2021-06-15 浙大城市学院 Report system supporting multi-cluster and multi-organization distribution
CN115017531A (en) * 2022-08-09 2022-09-06 威海海洋职业学院 Financial data sharing method and system

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101470861A (en) * 2007-12-27 2009-07-01 华迪计算机集团有限公司 Post model construction system and method based on GB/T19487
CN103426070A (en) * 2013-08-19 2013-12-04 远光软件股份有限公司 Compilation method and device of group combined financial statement
CN103440557A (en) * 2013-08-19 2013-12-11 远光软件股份有限公司 Generation method and system for group consolidated accounts and consolidated statements

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101470861A (en) * 2007-12-27 2009-07-01 华迪计算机集团有限公司 Post model construction system and method based on GB/T19487
CN103426070A (en) * 2013-08-19 2013-12-04 远光软件股份有限公司 Compilation method and device of group combined financial statement
CN103440557A (en) * 2013-08-19 2013-12-11 远光软件股份有限公司 Generation method and system for group consolidated accounts and consolidated statements

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
董俊祺: "信息化系统中的权限和岗位责任体系构建", 《产业与科技论坛》, vol. 11, no. 21, 15 November 2012 (2012-11-15), pages 96 - 98 *

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106296130A (en) * 2016-08-16 2017-01-04 山大地纬软件股份有限公司 A kind of intelligent automation social insurance business data processing method and system
CN110096854A (en) * 2019-03-25 2019-08-06 视联动力信息技术股份有限公司 Access authorization for resource sharing method, device and readable storage medium storing program for executing
CN110096854B (en) * 2019-03-25 2022-03-25 视联动力信息技术股份有限公司 Resource permission sharing method and device and readable storage medium
CN112965977A (en) * 2021-03-05 2021-06-15 浙大城市学院 Report system supporting multi-cluster and multi-organization distribution
CN115017531A (en) * 2022-08-09 2022-09-06 威海海洋职业学院 Financial data sharing method and system
CN115017531B (en) * 2022-08-09 2022-11-01 威海海洋职业学院 Financial data sharing method and system

Similar Documents

Publication Publication Date Title
EP2849098B1 (en) Cross system analytics for in memory data warehouse
DE112012005037B4 (en) Manage redundant immutable files using deduplications in storage clouds
CN103714123B (en) Enterprise's cloud memory partitioning object data de-duplication and restructuring version control method
CN105373726A (en) User authority management system
US7991838B2 (en) Apparatus and method for report sharing within an instant messaging framework
CN108681674B (en) Report module creating method and device, computer device and storage medium
WO2021239005A1 (en) Data processing method and data processing system based on multi-party privacy protection
AU2014208184A1 (en) Systems and methodologies for managing document access permissions
CN102880715A (en) Data pool management method and data pool management system on basis of cloud storage
CN103745298A (en) Statement user permission setting method and statement user permission setting device based on post system
CN111428257A (en) System and method for opening database metadata through automatic approval
CN113743955A (en) Food material traceability data security access control method based on intelligent contract
CN111177480A (en) Block chain directory file system
CN113452683A (en) Method and system for controlling row-column-level authority of database
CN103729582A (en) Safety storage management method and system based on checks and balances
CN107392560A (en) A kind of Excel list datas issue acquisition method and system based on internet
TW201502848A (en) Method and system for controlling access permissions of users
CN110928963A (en) Column-level authority knowledge graph construction method for operation and maintenance service data table
CN207148918U (en) A kind of efficient book management system
Turluev et al. Artificial Intelligence in Corporate Governance Systems
Lin [Retracted] Research on Enterprise Employee Performance Appraisal Management System Based on CS Architecture
Gibson et al. Research data management in a collaborative network
US11436349B2 (en) Method and system for implementing a cloud machine learning environment
CN105956833A (en) Road construction enterprise application cloud platform and use method
CN105956460A (en) Authority system for information security management

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication

Application publication date: 20140423

RJ01 Rejection of invention patent application after publication