CN106294537A - A kind of information sharing method of cloud computing platform - Google Patents

A kind of information sharing method of cloud computing platform Download PDF

Info

Publication number
CN106294537A
CN106294537A CN201610577981.5A CN201610577981A CN106294537A CN 106294537 A CN106294537 A CN 106294537A CN 201610577981 A CN201610577981 A CN 201610577981A CN 106294537 A CN106294537 A CN 106294537A
Authority
CN
China
Prior art keywords
information
cloud computing
service
computing platform
fault
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Withdrawn
Application number
CN201610577981.5A
Other languages
Chinese (zh)
Inventor
不公告发明人
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Individual
Original Assignee
Individual
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Individual filed Critical Individual
Priority to CN201610577981.5A priority Critical patent/CN106294537A/en
Publication of CN106294537A publication Critical patent/CN106294537A/en
Withdrawn legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F16/00Information retrieval; Database structures therefor; File system structures therefor
    • G06F16/10File systems; File servers
    • G06F16/17Details of further file system functions
    • G06F16/176Support for shared access to files; File sharing support
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • G06F21/32User authentication using biometric data, e.g. fingerprints, iris scans or voiceprints
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/6218Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2141Access rights, e.g. capability lists, access control lists, access tables, access matrices

Abstract

The information sharing method of a kind of cloud computing platform of the present invention, including cloud computing platform fault-tolerant configuration and information service, wherein, cloud computing platform fault-tolerant configuration is realized by the following method: the information during operation of (1) cloud computing platform fault-tolerant configuration system acquisition cloud computing platform, the software architecture when carrier of information is for running during operation;(2) cloud computing platform fault-tolerant configuration system selects a fault tolerant mechanism according to user's request with information during current operation from fault tolerant mechanism storehouse;(3) the software architecture during operation of this cloud computing platform is configured by cloud computing platform fault-tolerant configuration system according to the fault tolerant mechanism selected;(4) cloud computing platform management system will (3) configure during operation time the Partial synchronization that changes of software architecture in this cloud computing platform.

Description

A kind of information sharing method of cloud computing platform
Technical field
The present invention relates to field of cloud computer technology, be specifically related to the information sharing method of a kind of cloud computing platform.
Background technology
Along with the development of information technology and popularizing of the Internet, data are explosive growth, the most social The fast development of network makes data sharp increase.The proposition of cloud computing technology and the process developing into data open new road Footpath.Cloud computing platform can provide a user with powerful calculating service, and user only just can carry out by Web browser calculating service Application, then uploads data, finally by platform feedback data result.The information sharing side of rarer cloud computing platform at present Specializing in of method, it is difficult to meet information sharing demand.
Summary of the invention
For the problems referred to above, the present invention provides the information sharing method of a kind of cloud computing platform.
The purpose of the present invention realizes by the following technical solutions:
The information sharing method of a kind of cloud computing platform, including cloud computing platform fault-tolerant configuration and information service, wherein, cloud Calculate platform fault-tolerant configuration to be realized by the following method:
(1) the information during operation of cloud computing platform fault-tolerant configuration system acquisition cloud computing platform, the carrier of information during operation Software architecture during for running;
(2) cloud computing platform fault-tolerant configuration system is selected with information during current operation according to user's request from fault tolerant mechanism storehouse Select a fault tolerant mechanism;
(3) cloud computing platform fault-tolerant configuration system according to the fault tolerant mechanism selected to software during the operation of this cloud computing platform Architecture configures;
(4) part that when cloud computing platform management system is run during (3) being configured, software architecture changes It is synchronized in this cloud computing platform.
Preferably, during described operation, information includes: cluster information, stores information, host information, virtual machine information, application Information, and leader information.
Preferably, information when software architecture gathers the operation of this cloud computing platform when running by one;Described operation Time software architecture software time the meta-model of information and safeguards described operation when including a setting and store described operation Access Model Tong Bu between architecture with this cloud computing platform.
The invention have the benefit that
1, configuration information sharing service platform, efficiently solves the pressure concentration that centralized service management causes, takes in a large number Business is difficult to the problems such as management;
2, configuration information memory module, it uses cloud storage system to be encrypted the storage of rear data, it is not necessary to understand tool The storing device information of body, it is not necessary to consider the problem such as data backup and redundancy, saved time cost and carrying cost;
3, arrange classification of service management module, by create service catalogue, solve conventional retrieval rate low and expend The problem of time length;
4, service-seeking retrieval module is set, uses vector index algorithm, improve retrieval accuracy, it is achieved that Service name Claim the retrieval matched with service function;
Data are encrypted place by data safe processing layer and data service layer by 5, configuration information safety service platform Reason, improves information security degree;
6, access safety control module is set in Platform deployment layer, substantially increases the big data management system of information security Safety.
Accompanying drawing explanation
The invention will be further described to utilize accompanying drawing, but the embodiment in accompanying drawing does not constitute any limit to the present invention System, for those of ordinary skill in the art, on the premise of not paying creative work, it is also possible to obtain according to the following drawings Other accompanying drawing.
Fig. 1 is the fault-tolerant configuration structure connection diagram of the present invention.
Fig. 2 is the information service connection diagram of the present invention.
Reference: platform interface layer-10;Platform management layer 20;Platform deployment layer 30;Data safe processing layer 40;Number According to service layer 50;Information storage module 21;Classification of service module 22;Service-seeking retrieval module 23;Access safety control module 31。
Detailed description of the invention
The invention will be further described with the following Examples.
Embodiment 1
See Fig. 1, Fig. 2, the information sharing method of a kind of cloud computing platform of the present embodiment, fault-tolerant including cloud computing platform Configuration and information service, wherein, cloud computing platform fault-tolerant configuration is realized by the following method:
(1) the information during operation of cloud computing platform fault-tolerant configuration system acquisition cloud computing platform, the carrier of information during operation Software architecture during for running;
(2) cloud computing platform fault-tolerant configuration system is selected with information during current operation according to user's request from fault tolerant mechanism storehouse Select a fault tolerant mechanism;
(3) cloud computing platform fault-tolerant configuration system according to the fault tolerant mechanism selected to software during the operation of this cloud computing platform Architecture configures;
(4) part that when cloud computing platform management system is run during (3) being configured, software architecture changes It is synchronized in this cloud computing platform.
Preferably, during described operation, information includes: cluster information, stores information, host information, virtual machine information, application Information, and leader information.
Preferably, information when software architecture gathers the operation of this cloud computing platform when running by one;Described operation Time software architecture software time the meta-model of information and safeguards described operation when including a setting and store described operation Access Model Tong Bu between architecture with this cloud computing platform.
Preferably, information service includes that information sharing service platform builds and information security services platform construction, described letter Breath sharing service platform includes platform interface layer 10, platform management layer 20 and platform deployment tier 30, and described information security services is put down Platform includes data safe processing layer 40 and data service layer 50;
Described platform interface layer 10 is by externally providing unified interface, it is achieved user carry out the issue of data, inquiry and Obtain;
Described platform management layer 20 is for managing by the data after data safe processing resume module, including be sequentially connected with Information storage module 21, classification of service management module 22 and service query and search module 23:
(1) information storage module 21, it uses cloud storage system to be encrypted the storage of rear data, forms virtual storage Resource pool also coordinates configuration storage resource;
(2) classification of service management module 22, for the service with similar features being classified and forming service catalogue, The algorithm used is:
It is provided with services set F={f1,…,fn, m the attribute of each service in services set describes, then have fi= (fi1,…,fim), fi∈Rm, wherein, R represents real number, and the span of m is [4,8], i=1 ..., n;
Step1 determines cluster number k, randomly chooses k object { t1,…,tkAs cluster centre, then there is tj= (tj1,…,tjm), tj∈Rm, wherein, j=1 ..., k;
Step2 is for each service fi, calculate its corresponding classification:
c i = arg m a x j Σ l = 1 m ( f i l × t j l ) Σ l = 1 m f i l 2 × Σ l = 1 m t i l 2
In formula, ciRepresent service fiThe class closest with k apoplexy due to endogenous wind, as the c meeting conditioniMore than one, then service fi The most corresponding multiple classification;
Step3, for each cluster j, recalculates such cluster centre:
When the service contained in cluster j is all pertaining only to a class, then have:
t j : = Σ i = 1 n 1 { c i = j } f i Σ i = 1 n 1 { c i = j }
When cluster j has service to belong simultaneously to w classification, then have:
t j : = Σ i = 1 n 1 { c i = j } f i - Σ i = 1 n w - 1 w { c i = j w } f i Σ i = 1 n 1 { c i = j }
In formula, { ci=j} represents the service corresponding to clustering j, { ci=jwExpression service is simultaneously corresponding to w cluster, its In 2≤w≤k;
Step4 repeats step2 and step3, front and back distance d=of twice cluster centre | | tAfter j-tBefore j| |, tAfter jAfter for once Cluster centre, tBefore jFor a front cluster centre, according to actual application settings threshold value T, when meeting d < T, stop cluster;
Utilize above-mentioned algorithm, in service class, continue cluster can refine classification of service, shape on the basis of first class catalogue Become multistage catalogue;
(3) service-seeking retrieval module 23, for being exactly found the information of needs in magnanimity information, thus completes information Retrieval, the algorithm of employing is:
Step1 is for the service f in services setiIf comprising Feature Words C1,…,Cq, determine individual features word weights δ1,…,δq,tCqRepresent Feature Words CqAt service fiThe number of times of middle appearance, n is the clothes comprised in services set Business sum, nqRepresent in services set and comprise Feature Words CqService number, then service vector is represented by:
f i → = ( δ 1 , ... , δ q )
Step2 is for retrieval request AiIn comprise represent service Feature Words C1,…,Cs, and determine individual features word weights σ1,…,σs,tCsRepresent Feature Words CsAt service fiThe number of times of middle appearance, maxtCsRepresent Feature Words Cs The maximum of the number of times occurred in all services, n is the service sum comprised in services set, nsRepresent in services set and comprise spy Levy word CsService number, then retrieval request vector is represented by:
A i → = ( σ 1 , ... , σ s )
Step3 determines feature word space Feature Words number d, will service and retrieval request vector standardization, to service and inspection The Feature Words not having in rope request, its corresponding weights are 0, now have AskWithEuclidean distance, provides services to user according to order from small to large;
Described Platform deployment layer 30 is used for setting up service management center, on-premise network server, uses the webserver pair Information on services preserves, and provides client to use;
Described data safe processing layer 40, connecting platform interface layer and platform management level, for using in platform interface layer Carry out backing up and be uploaded to described platform management layer after the data set key encryption of the data separate self-generating that family is issued, carry simultaneously Take, upload the metamessage of data, and be sent to described number after utilizing the metamessage encryption that the metamessage double secret key of self-generating extracts According to service layer, utilize data set key described in master key encryption and described metamessage key after be sent to described data service layer;
Described data service layer 50, connects data safe processing layer and platform deployment tier, is used for storing described data safety Process metamessage and key information that layer encryption is uploaded, and provide data set access to support by Platform deployment layer, and ciphertext Retrieval and the data service for checking credentials are supported.
Further, described Platform deployment layer 30 includes accessing safety control module 31, described access safety control module 31 include that access privilege control unit, data access flow control unit, data access transmission control unit and sensitive information are visited Ask control unit;Described data access authority control unit is for controlling the access rights of user, described data access flow control Unit processed is for controlling the flow of user accesses data, and described data access transmission control unit is for adding data transmission Close and safety certification controls, and described sensitive information access control unit is for being monitored the behavior accessing sensitive information and give With alarm, and the operation for abnormal access limits.
Wherein, in described data access transmission control unit, for safety certification control, mouth is added including based on iris identification The safety certification of order and safety certification based on fingerprint recognition encrypting key.
Wherein, described cloud information includes data set name, data set size and data set key word.
The present embodiment configuration information sharing service platform, efficiently solves the pressure concentration that centralized service management causes, A large amount of services are difficult to the problems such as management;Configuration information memory module, it uses cloud storage system to be encrypted the storage of rear data, Need not understand concrete storing device information, it is not necessary to consider the problem such as data backup and redundancy, saved time cost and Carrying cost;Data are encrypted place by data safe processing layer and data service layer by configuration information safety service platform Reason, improves information security degree;Access safety control module is set in Platform deployment layer, substantially increases the big number of information security Safety according to management system;Classification of service management module is set, by creating service catalogue, solves conventional retrieval rate The low problem with consuming time length, and service-seeking retrieval module is set, use vector index algorithm, improve retrieval accurate Degree, it is achieved that the retrieval that service name and service function match, wherein the attribute number m describing each service in services set Value is 4, and retrieval rate improves 0.4% relatively, and efficiency improves 0.5% relatively.
Embodiment 2
See Fig. 1, Fig. 2, the information sharing method of a kind of cloud computing platform of the present embodiment, fault-tolerant including cloud computing platform Configuration and information service, wherein, cloud computing platform fault-tolerant configuration is realized by the following method:
(1) the information during operation of cloud computing platform fault-tolerant configuration system acquisition cloud computing platform, the carrier of information during operation Software architecture during for running;
(2) cloud computing platform fault-tolerant configuration system is selected with information during current operation according to user's request from fault tolerant mechanism storehouse Select a fault tolerant mechanism;
(3) cloud computing platform fault-tolerant configuration system according to the fault tolerant mechanism selected to software during the operation of this cloud computing platform Architecture configures;
(4) part that when cloud computing platform management system is run during (3) being configured, software architecture changes It is synchronized in this cloud computing platform.
Preferably, during described operation, information includes: cluster information, stores information, host information, virtual machine information, application Information, and leader information.
Preferably, information when software architecture gathers the operation of this cloud computing platform when running by one;Described operation Time software architecture software time the meta-model of information and safeguards described operation when including a setting and store described operation Access Model Tong Bu between architecture with this cloud computing platform.
Preferably, information service includes that information sharing service platform builds and information security services platform construction, described letter Breath sharing service platform includes platform interface layer 10, platform management layer 20 and platform deployment tier 30, and described information security services is put down Platform includes data safe processing layer 40 and data service layer 50;
Described platform interface layer 10 is by externally providing unified interface, it is achieved user carry out the issue of data, inquiry and Obtain;
Described platform management layer 20 is for managing by the data after data safe processing resume module, including be sequentially connected with Information storage module 21, classification of service management module 22 and service query and search module 23:
(1) information storage module 21, it uses cloud storage system to be encrypted the storage of rear data, forms virtual storage Resource pool also coordinates configuration storage resource;
(2) classification of service management module 22, for the service with similar features being classified and forming service catalogue, The algorithm used is:
It is provided with services set F={f1,…,fn, m the attribute of each service in services set describes, then have fi= (fi1,…,fim), fi∈Rm, wherein, R represents real number, and the span of m is [4,8], i=1 ..., n;
Step1 determines cluster number k, randomly chooses k object { t1,…,tkAs cluster centre, then there is tj= (tj1,…,tjm), tj∈Rm, wherein, j=1 ..., k;
Step2 is for each service fi, calculate its corresponding classification:
c i = arg m a x j Σ l = 1 m ( f i l × t j l ) Σ l = 1 m f i l 2 × Σ l = 1 m t i l 2
In formula, ciRepresent service fiThe class closest with k apoplexy due to endogenous wind, as the c meeting conditioniMore than one, then service fi The most corresponding multiple classification;
Step3, for each cluster j, recalculates such cluster centre:
When the service contained in cluster j is all pertaining only to a class, then have:
t j : = Σ i = 1 n 1 { c i = j } f i Σ i = 1 n 1 { c i = j }
When cluster j has service to belong simultaneously to w classification, then have:
t j : = Σ i = 1 n 1 { c i = j } f i - Σ i = 1 n w - 1 w { c i = j w } f i Σ i = 1 n 1 { c i = j }
In formula, { ci=j} represents the service corresponding to clustering j, { ci=jwExpression service is simultaneously corresponding to w cluster, its In 2≤w≤k;
Step4 repeats step2 and step3, front and back distance d=of twice cluster centre | | tAfter j-tBefore j| |, tAfter jAfter for once Cluster centre, tBefore jFor a front cluster centre, according to actual application settings threshold value T, when meeting d < T, stop cluster;
Utilize above-mentioned algorithm, in service class, continue cluster can refine classification of service, shape on the basis of first class catalogue Become multistage catalogue;
(3) service-seeking retrieval module 23, for being exactly found the information of needs in magnanimity information, thus completes information Retrieval, the algorithm of employing is:
Step1 is for the service f in services setiIf comprising Feature Words C1,…,Cq, determine individual features word weights δ1,…,δq,tCqRepresent Feature Words CqAt service fiThe number of times of middle appearance, n is the clothes comprised in services set Business sum, nqRepresent in services set and comprise Feature Words CqService number, then service vector is represented by:
f i → = ( δ 1 , ... , δ q )
Step2 is for retrieval request AiIn comprise represent service Feature Words C1,…,Cs, and determine individual features word weights σ1,…,σs,tCsRepresent Feature Words CsAt service fiThe number of times of middle appearance, maxtCsRepresent Feature Words Cs The maximum of the number of times occurred in all services, n is the service sum comprised in services set, nsRepresent in services set and comprise spy Levy word CsService number, then retrieval request vector is represented by:
A i → = ( σ 1 , ... , σ s )
Step3 determines feature word space Feature Words number d, will service and retrieval request vector standardization, to service and inspection The Feature Words not having in rope request, its corresponding weights are 0, now have AskWithEuclidean distance, provides services to user according to order from small to large;
Described Platform deployment layer 30 is used for setting up service management center, on-premise network server, uses the webserver pair Information on services preserves, and provides client to use;
Described data safe processing layer 40, connecting platform interface layer and platform management level, for using in platform interface layer Carry out backing up and be uploaded to described platform management layer after the data set key encryption of the data separate self-generating that family is issued, carry simultaneously Take, upload the metamessage of data, and be sent to described number after utilizing the metamessage encryption that the metamessage double secret key of self-generating extracts According to service layer, utilize data set key described in master key encryption and described metamessage key after be sent to described data service layer;
Described data service layer 50, connects data safe processing layer and platform deployment tier, is used for storing described data safety Process metamessage and key information that layer encryption is uploaded, and provide data set access to support by Platform deployment layer, and ciphertext Retrieval and the data service for checking credentials are supported.
Further, described Platform deployment layer 30 includes accessing safety control module 31, described access safety control module 31 include that access privilege control unit, data access flow control unit, data access transmission control unit and sensitive information are visited Ask control unit;Described data access authority control unit is for controlling the access rights of user, described data access flow control Unit processed is for controlling the flow of user accesses data, and described data access transmission control unit is for adding data transmission Close and safety certification controls, and described sensitive information access control unit is for being monitored the behavior accessing sensitive information and give With alarm, and the operation for abnormal access limits.
Wherein, in described data access transmission control unit, for safety certification control, mouth is added including based on iris identification The safety certification of order and safety certification based on fingerprint recognition encrypting key.
Wherein, described cloud information includes data set name, data set size and data set key word.
The present embodiment configuration information sharing service platform, efficiently solves the pressure concentration that centralized service management causes, A large amount of services are difficult to the problems such as management;Configuration information memory module, it uses cloud storage system to be encrypted the storage of rear data, Need not understand concrete storing device information, it is not necessary to consider the problem such as data backup and redundancy, saved time cost and Carrying cost;Data are encrypted place by data safe processing layer and data service layer by configuration information safety service platform Reason, improves information security degree;Access safety control module is set in Platform deployment layer, substantially increases the big number of information security Safety according to management system;Classification of service management module is set, by creating service catalogue, solves conventional retrieval rate The low problem with consuming time length, and service-seeking retrieval module is set, use vector index algorithm, improve retrieval accurate Degree, it is achieved that the retrieval that service name and service function match, wherein the attribute number m describing each service in services set Value is 5, and retrieval rate improves 0.45% relatively, and efficiency improves 0.4% relatively.
Embodiment 3
See Fig. 1, Fig. 2, the information sharing method of a kind of cloud computing platform of the present embodiment, fault-tolerant including cloud computing platform Configuration and information service, wherein, cloud computing platform fault-tolerant configuration is realized by the following method:
(1) the information during operation of cloud computing platform fault-tolerant configuration system acquisition cloud computing platform, the carrier of information during operation Software architecture during for running;
(2) cloud computing platform fault-tolerant configuration system is selected with information during current operation according to user's request from fault tolerant mechanism storehouse Select a fault tolerant mechanism;
(3) cloud computing platform fault-tolerant configuration system according to the fault tolerant mechanism selected to software during the operation of this cloud computing platform Architecture configures;
(4) part that when cloud computing platform management system is run during (3) being configured, software architecture changes It is synchronized in this cloud computing platform.
Preferably, during described operation, information includes: cluster information, stores information, host information, virtual machine information, application Information, and leader information.
Preferably, information when software architecture gathers the operation of this cloud computing platform when running by one;Described operation Time software architecture software time the meta-model of information and safeguards described operation when including a setting and store described operation Access Model Tong Bu between architecture with this cloud computing platform.
Preferably, information service includes that information sharing service platform builds and information security services platform construction, described letter Breath sharing service platform includes platform interface layer 10, platform management layer 20 and platform deployment tier 30, and described information security services is put down Platform includes data safe processing layer 40 and data service layer 50;
Described platform interface layer 10 is by externally providing unified interface, it is achieved user carry out the issue of data, inquiry and Obtain;
Described platform management layer 20 is for managing by the data after data safe processing resume module, including be sequentially connected with Information storage module 21, classification of service management module 22 and service query and search module 23:
(1) information storage module 21, it uses cloud storage system to be encrypted the storage of rear data, forms virtual storage Resource pool also coordinates configuration storage resource;
(2) classification of service management module 22, for the service with similar features being classified and forming service catalogue, The algorithm used is:
It is provided with services set F={f1,…,fn, m the attribute of each service in services set describes, then have fi= (fi1,…,fim), fi∈Rm, wherein, R represents real number, and the span of m is [4,8], i=1 ..., n;
Step1 determines cluster number k, randomly chooses k object { t1,…,tkAs cluster centre, then there is tj= (tj1,…,tjm), tj∈Rm, wherein, j=1 ..., k;
Step2 is for each service fi, calculate its corresponding classification:
c i = arg m a x j Σ l = 1 m ( f i l × t j l ) Σ l = 1 m f i l 2 × Σ l = 1 m t i l 2
In formula, ciRepresent service fiThe class closest with k apoplexy due to endogenous wind, as the c meeting conditioniMore than one, then service fi The most corresponding multiple classification;
Step3, for each cluster j, recalculates such cluster centre:
When the service contained in cluster j is all pertaining only to a class, then have:
t j : = Σ i = 1 n 1 { c i = j } f i Σ i = 1 n 1 { c i = j }
When cluster j has service to belong simultaneously to w classification, then have:
t j : = Σ i = 1 n 1 { c i = j } f i - Σ i = 1 n w - 1 w { c i = j w } f i Σ i = 1 n 1 { c i = j }
In formula, { ci=j} represents the service corresponding to clustering j, { ci=jwExpression service is simultaneously corresponding to w cluster, its In 2≤w≤k;
Step4 repeats step2 and step3, front and back distance d=of twice cluster centre | | tAfter j-tBefore j| |, tAfter jAfter for once Cluster centre, tBefore jFor a front cluster centre, according to actual application settings threshold value T, when meeting d < T, stop cluster;
Utilize above-mentioned algorithm, in service class, continue cluster can refine classification of service, shape on the basis of first class catalogue Become multistage catalogue;
(3) service-seeking retrieval module 23, for being exactly found the information of needs in magnanimity information, thus completes information Retrieval, the algorithm of employing is:
Step1 is for the service f in services setiIf comprising Feature Words C1,…,Cq, determine individual features word weights δ1,…,δq,tCqRepresent Feature Words CqAt service fiThe number of times of middle appearance, n is the clothes comprised in services set Business sum, nqRepresent in services set and comprise Feature Words CqService number, then service vector is represented by:
f i → = ( δ 1 , ... , δ q )
Step2 is for retrieval request AiIn comprise represent service Feature Words C1,…,Cs, and determine individual features word weights σ1,…,σs,tCsRepresent Feature Words CsAt service fiThe number of times of middle appearance, maxtCsRepresent Feature Words Cs The maximum of the number of times occurred in all services, n is the service sum comprised in services set, nsRepresent in services set and comprise spy Levy word CsService number, then retrieval request vector is represented by:
A i → = ( σ 1 , ... , σ s )
Step3 determines feature word space Feature Words number d, will service and retrieval request vector standardization, to service and inspection The Feature Words not having in rope request, its corresponding weights are 0, now have AskWithEuclidean distance, provides services to user according to order from small to large;
Described Platform deployment layer 30 is used for setting up service management center, on-premise network server, uses the webserver pair Information on services preserves, and provides client to use;
Described data safe processing layer 40, connecting platform interface layer and platform management level, for using in platform interface layer Carry out backing up and be uploaded to described platform management layer after the data set key encryption of the data separate self-generating that family is issued, carry simultaneously Take, upload the metamessage of data, and be sent to described number after utilizing the metamessage encryption that the metamessage double secret key of self-generating extracts According to service layer, utilize data set key described in master key encryption and described metamessage key after be sent to described data service layer;
Described data service layer 50, connects data safe processing layer and platform deployment tier, is used for storing described data safety Process metamessage and key information that layer encryption is uploaded, and provide data set access to support by Platform deployment layer, and ciphertext Retrieval and the data service for checking credentials are supported.
Further, described Platform deployment layer 30 includes accessing safety control module 31, described access safety control module 31 include that access privilege control unit, data access flow control unit, data access transmission control unit and sensitive information are visited Ask control unit;Described data access authority control unit is for controlling the access rights of user, described data access flow control Unit processed is for controlling the flow of user accesses data, and described data access transmission control unit is for adding data transmission Close and safety certification controls, and described sensitive information access control unit is for being monitored the behavior accessing sensitive information and give With alarm, and the operation for abnormal access limits.
Wherein, in described data access transmission control unit, for safety certification control, mouth is added including based on iris identification The safety certification of order and safety certification based on fingerprint recognition encrypting key.
Wherein, described cloud information includes data set name, data set size and data set key word.
The present embodiment configuration information sharing service platform, efficiently solves the pressure concentration that centralized service management causes, A large amount of services are difficult to the problems such as management;Configuration information memory module, it uses cloud storage system to be encrypted the storage of rear data, Need not understand concrete storing device information, it is not necessary to consider the problem such as data backup and redundancy, saved time cost and Carrying cost;Data are encrypted place by data safe processing layer and data service layer by configuration information safety service platform Reason, improves information security degree;Access safety control module is set in Platform deployment layer, substantially increases the big number of information security Safety according to management system;Classification of service management module is set, by creating service catalogue, solves conventional retrieval rate The low problem with consuming time length, and service-seeking retrieval module is set, use vector index algorithm, improve retrieval accurate Degree, it is achieved that the retrieval that service name and service function match, wherein the attribute number m describing each service in services set Value is 6, and retrieval rate improves 0.6% relatively, and efficiency improves 0.35% relatively.
Embodiment 4
See Fig. 1, Fig. 2, the information sharing method of a kind of cloud computing platform of the present embodiment, fault-tolerant including cloud computing platform Configuration and information service, wherein, cloud computing platform fault-tolerant configuration is realized by the following method:
(1) the information during operation of cloud computing platform fault-tolerant configuration system acquisition cloud computing platform, the carrier of information during operation Software architecture during for running;
(2) cloud computing platform fault-tolerant configuration system is selected with information during current operation according to user's request from fault tolerant mechanism storehouse Select a fault tolerant mechanism;
(3) cloud computing platform fault-tolerant configuration system according to the fault tolerant mechanism selected to software during the operation of this cloud computing platform Architecture configures;
(4) part that when cloud computing platform management system is run during (3) being configured, software architecture changes It is synchronized in this cloud computing platform.
Preferably, during described operation, information includes: cluster information, stores information, host information, virtual machine information, application Information, and leader information.
Preferably, information when software architecture gathers the operation of this cloud computing platform when running by one;Described operation Time software architecture software time the meta-model of information and safeguards described operation when including a setting and store described operation Access Model Tong Bu between architecture with this cloud computing platform.
Preferably, information service includes that information sharing service platform builds and information security services platform construction, described letter Breath sharing service platform includes platform interface layer 10, platform management layer 20 and platform deployment tier 30, and described information security services is put down Platform includes data safe processing layer 40 and data service layer 50;
Described platform interface layer 10 is by externally providing unified interface, it is achieved user carry out the issue of data, inquiry and Obtain;
Described platform management layer 20 is for managing by the data after data safe processing resume module, including be sequentially connected with Information storage module 21, classification of service management module 22 and service query and search module 23:
(1) information storage module 21, it uses cloud storage system to be encrypted the storage of rear data, forms virtual storage Resource pool also coordinates configuration storage resource;
(2) classification of service management module 22, for the service with similar features being classified and forming service catalogue, The algorithm used is:
It is provided with services set F={f1,…,fn, m the attribute of each service in services set describes, then have fi= (fi1,…,fim), fi∈Rm, wherein, R represents real number, and the span of m is [4,8], i=1 ..., n;
Step1 determines cluster number k, randomly chooses k object { t1,…,tkAs cluster centre, then there is tj= (tj1,…,tjm), tj∈Rm, wherein, j=1 ..., k;
Step2 is for each service fi, calculate its corresponding classification:
c i = arg m a x j Σ l = 1 m ( f i l × t j l ) Σ l = 1 m f i l 2 × Σ l = 1 m t i l 2
In formula, ciRepresent service fiThe class closest with k apoplexy due to endogenous wind, as the c meeting conditioniMore than one, then service fi The most corresponding multiple classification;
Step3, for each cluster j, recalculates such cluster centre:
When the service contained in cluster j is all pertaining only to a class, then have:
t j : = Σ i = 1 n 1 { c i = j } f i Σ i = 1 n 1 { c i = j }
When cluster j has service to belong simultaneously to w classification, then have:
t j : = Σ i = 1 n 1 { c i = j } f i - Σ i = 1 n w - 1 w { c i = j w } f i Σ i = 1 n 1 { c i = j }
In formula, { ci=j} represents the service corresponding to clustering j, { ci=jwExpression service is simultaneously corresponding to w cluster, its In 2≤w≤k;
Step4 repeats step2 and step3, front and back distance d=of twice cluster centre | | tAfter j-tBefore j| |, tAfter jAfter for once Cluster centre, tBefore jFor a front cluster centre, according to actual application settings threshold value T, when meeting d < T, stop cluster;
Utilize above-mentioned algorithm, in service class, continue cluster can refine classification of service, shape on the basis of first class catalogue Become multistage catalogue;
(3) service-seeking retrieval module 23, for being exactly found the information of needs in magnanimity information, thus completes information Retrieval, the algorithm of employing is:
Step1 is for the service f in services setiIf comprising Feature Words C1,…,Cq, determine individual features word weights δ1,…,δq,tCqRepresent Feature Words CqAt service fiThe number of times of middle appearance, n is the clothes comprised in services set Business sum, nqRepresent in services set and comprise Feature Words CqService number, then service vector is represented by:
f i → = ( δ 1 , ... , δ q )
Step2 is for retrieval request AiIn comprise represent service Feature Words C1,…,Cs, and determine individual features word weights
σ1,…,σs,tCsRepresent Feature Words CsAt service fiThe number of times of middle appearance, maxtCsRepresent Feature Words CsThe maximum of the number of times occurred in all services, n is the service sum comprised in services set, nsRepresent services set In comprise Feature Words CsService number, then retrieval request vector is represented by:
A i → = ( σ 1 , ... , σ s )
Step3 determines feature word space Feature Words number d, will service and retrieval request vector standardization, to service and inspection The Feature Words not having in rope request, its corresponding weights are 0, now have AskWithEuclidean distance, provides services to user according to order from small to large;
Described Platform deployment layer 30 is used for setting up service management center, on-premise network server, uses the webserver pair Information on services preserves, and provides client to use;
Described data safe processing layer 40, connecting platform interface layer and platform management level, for using in platform interface layer Carry out backing up and be uploaded to described platform management layer after the data set key encryption of the data separate self-generating that family is issued, carry simultaneously Take, upload the metamessage of data, and be sent to described number after utilizing the metamessage encryption that the metamessage double secret key of self-generating extracts According to service layer, utilize data set key described in master key encryption and described metamessage key after be sent to described data service layer;
Described data service layer 50, connects data safe processing layer and platform deployment tier, is used for storing described data safety Process metamessage and key information that layer encryption is uploaded, and provide data set access to support by Platform deployment layer, and ciphertext Retrieval and the data service for checking credentials are supported.
Further, described Platform deployment layer 30 includes accessing safety control module 31, described access safety control module 31 include that access privilege control unit, data access flow control unit, data access transmission control unit and sensitive information are visited Ask control unit;Described data access authority control unit is for controlling the access rights of user, described data access flow control Unit processed is for controlling the flow of user accesses data, and described data access transmission control unit is for adding data transmission Close and safety certification controls, and described sensitive information access control unit is for being monitored the behavior accessing sensitive information and give With alarm, and the operation for abnormal access limits.
Wherein, in described data access transmission control unit, for safety certification control, mouth is added including based on iris identification The safety certification of order and safety certification based on fingerprint recognition encrypting key.
Wherein, described cloud information includes data set name, data set size and data set key word.
The present embodiment configuration information sharing service platform, efficiently solves the pressure concentration that centralized service management causes, A large amount of services are difficult to the problems such as management;Configuration information memory module, it uses cloud storage system to be encrypted the storage of rear data, Need not understand concrete storing device information, it is not necessary to consider the problem such as data backup and redundancy, saved time cost and Carrying cost;Data are encrypted place by data safe processing layer and data service layer by configuration information safety service platform Reason, improves information security degree;Access safety control module is set in Platform deployment layer, substantially increases the big number of information security Safety according to management system;Classification of service management module is set, by creating service catalogue, solves conventional retrieval rate The low problem with consuming time length, and service-seeking retrieval module is set, use vector index algorithm, improve retrieval accurate Degree, it is achieved that the retrieval that service name and service function match, wherein the attribute number m describing each service in services set Value is 7, and retrieval rate improves 0.7% relatively, and efficiency improves 0.32% relatively.
Embodiment 5
See Fig. 1, Fig. 2, the information sharing method of a kind of cloud computing platform of the present embodiment, fault-tolerant including cloud computing platform Configuration and information service, wherein, cloud computing platform fault-tolerant configuration is realized by the following method:
(1) the information during operation of cloud computing platform fault-tolerant configuration system acquisition cloud computing platform, the carrier of information during operation Software architecture during for running;
(2) cloud computing platform fault-tolerant configuration system is selected with information during current operation according to user's request from fault tolerant mechanism storehouse Select a fault tolerant mechanism;
(3) cloud computing platform fault-tolerant configuration system according to the fault tolerant mechanism selected to software during the operation of this cloud computing platform Architecture configures;
(4) part that when cloud computing platform management system is run during (3) being configured, software architecture changes It is synchronized in this cloud computing platform.
Preferably, during described operation, information includes: cluster information, stores information, host information, virtual machine information, application Information, and leader information.
Preferably, information when software architecture gathers the operation of this cloud computing platform when running by one;Described operation Time software architecture software time the meta-model of information and safeguards described operation when including a setting and store described operation Access Model Tong Bu between architecture with this cloud computing platform.
Preferably, information service includes that information sharing service platform builds and information security services platform construction, described letter Breath sharing service platform includes platform interface layer 10, platform management layer 20 and platform deployment tier 30, and described information security services is put down Platform includes data safe processing layer 40 and data service layer 50;
Described platform interface layer 10 is by externally providing unified interface, it is achieved user carry out the issue of data, inquiry and Obtain;
Described platform management layer 20 is for managing by the data after data safe processing resume module, including be sequentially connected with Information storage module 21, classification of service management module 22 and service query and search module 23:
(1) information storage module 21, it uses cloud storage system to be encrypted the storage of rear data, forms virtual storage Resource pool also coordinates configuration storage resource;
(2) classification of service management module 22, for the service with similar features being classified and forming service catalogue, The algorithm used is:
It is provided with services set F={f1,…,fn, m the attribute of each service in services set describes, then have fi= (fi1,…,fim), fi∈Rm, wherein, R represents real number, and the span of m is [4,8], i=1 ..., n;
Step1 determines cluster number k, randomly chooses k object { t1,…,tkAs cluster centre, then there is tj= (tj1,…,tjm), tj∈Rm, wherein, j=1 ..., k;
Step2 is for each service fi, calculate its corresponding classification:
c i = arg m a x j Σ l = 1 m ( f i l × t j l ) Σ l = 1 m f i l 2 × Σ l = 1 m t i l 2
In formula, ciRepresent service fiThe class closest with k apoplexy due to endogenous wind, as the c meeting conditioniMore than one, then service fi The most corresponding multiple classification;
Step3, for each cluster j, recalculates such cluster centre:
When the service contained in cluster j is all pertaining only to a class, then have:
t j : = Σ i = 1 n 1 { c i = j } f i Σ i = 1 n 1 { c i = j }
When cluster j has service to belong simultaneously to w classification, then have:
t j : = Σ i = 1 n 1 { c i = j } f i - Σ i = 1 n w - 1 w { c i = j w } f i Σ i = 1 n 1 { c i = j }
In formula, { ci=j} represents the service corresponding to clustering j, { ci=jwExpression service is simultaneously corresponding to w cluster, its In 2≤w≤k;
Step4 repeats step2 and step3, front and back distance d=of twice cluster centre | | tAfter j-tBefore j| |, tAfter jAfter for once Cluster centre, tBefore jFor a front cluster centre, according to actual application settings threshold value T, when meeting d < T, stop cluster;
Utilize above-mentioned algorithm, in service class, continue cluster can refine classification of service, shape on the basis of first class catalogue Become multistage catalogue;
(3) service-seeking retrieval module 23, for being exactly found the information of needs in magnanimity information, thus completes information Retrieval, the algorithm of employing is:
Step1 is for the service f in services setiIf comprising Feature Words C1,…,Cq, determine individual features word weights δ1,…,δq,tCqRepresent Feature Words CqAt service fiThe number of times of middle appearance, n is the clothes comprised in services set Business sum, nqRepresent in services set and comprise Feature Words CqService number, then service vector is represented by:
f i → = ( δ 1 , ... , δ q )
Step2 is for retrieval request AiIn comprise represent service Feature Words C1,…,Cs, and determine individual features word weights σ1,…,σs,tCsRepresent Feature Words CsAt service fiThe number of times of middle appearance, maxtCsRepresent Feature Words Cs The maximum of the number of times occurred in all services, n is the service sum comprised in services set, nsRepresent in services set and comprise spy Levy word CsService number, then retrieval request vector is represented by:
A i → = ( σ 1 , ... , σ s )
Step3 determines feature word space Feature Words number d, will service and retrieval request vector standardization, to service and inspection The Feature Words not having in rope request, its corresponding weights are 0, now have AskWithEuclidean distance, provides services to user according to order from small to large;
Described Platform deployment layer 30 is used for setting up service management center, on-premise network server, uses the webserver pair Information on services preserves, and provides client to use;
Described data safe processing layer 40, connecting platform interface layer and platform management level, for using in platform interface layer Carry out backing up and be uploaded to described platform management layer after the data set key encryption of the data separate self-generating that family is issued, carry simultaneously Take, upload the metamessage of data, and be sent to described number after utilizing the metamessage encryption that the metamessage double secret key of self-generating extracts According to service layer, utilize data set key described in master key encryption and described metamessage key after be sent to described data service layer;
Described data service layer 50, connects data safe processing layer and platform deployment tier, is used for storing described data safety Process metamessage and key information that layer encryption is uploaded, and provide data set access to support by Platform deployment layer, and ciphertext Retrieval and the data service for checking credentials are supported.
Further, described Platform deployment layer 30 includes accessing safety control module 31, described access safety control module 31 include that access privilege control unit, data access flow control unit, data access transmission control unit and sensitive information are visited Ask control unit;Described data access authority control unit is for controlling the access rights of user, described data access flow control Unit processed is for controlling the flow of user accesses data, and described data access transmission control unit is for adding data transmission Close and safety certification controls, and described sensitive information access control unit is for being monitored the behavior accessing sensitive information and give With alarm, and the operation for abnormal access limits.
Wherein, in described data access transmission control unit, for safety certification control, mouth is added including based on iris identification The safety certification of order and safety certification based on fingerprint recognition encrypting key.
Wherein, described cloud information includes data set name, data set size and data set key word.
The present embodiment configuration information sharing service platform, efficiently solves the pressure concentration that centralized service management causes, A large amount of services are difficult to the problems such as management;Configuration information memory module, it uses cloud storage system to be encrypted the storage of rear data, Need not understand concrete storing device information, it is not necessary to consider the problem such as data backup and redundancy, saved time cost and Carrying cost;Data are encrypted place by data safe processing layer and data service layer by configuration information safety service platform Reason, improves information security degree;Access safety control module is set in Platform deployment layer, substantially increases the big number of information security Safety according to management system;Classification of service management module is set, by creating service catalogue, solves conventional retrieval rate The low problem with consuming time length, and service-seeking retrieval module is set, use vector index algorithm, improve retrieval accurate Degree, it is achieved that the retrieval that service name and service function match, wherein the attribute number m describing each service in services set Value is 8, and retrieval rate improves 0.9% relatively, and efficiency improves 0.3% relatively.
Last it should be noted that, above example is only in order to illustrate technical scheme, rather than the present invention is protected Protecting the restriction of scope, although having made to explain to the present invention with reference to preferred embodiment, those of ordinary skill in the art should Work as understanding, technical scheme can be modified or equivalent, without deviating from the reality of technical solution of the present invention Matter and scope.

Claims (3)

1. an information sharing method for cloud computing platform, including cloud computing platform fault-tolerant configuration and information service, wherein, cloud meter Calculate platform fault-tolerant configuration to be realized by the following method:
(1) the information during operation of cloud computing platform fault-tolerant configuration system acquisition cloud computing platform, during operation, the carrier of information is fortune Software architecture during row;
(2) cloud computing platform fault-tolerant configuration system selects one according to user's request with information during current operation from fault tolerant mechanism storehouse Fault tolerant mechanism;
(3) cloud computing platform fault-tolerant configuration system according to the fault tolerant mechanism selected to software architecture during the operation of this cloud computing platform Structure configures;
(4) Partial synchronization that when cloud computing platform management system is run during (3) being configured, software architecture changes In this cloud computing platform.
The information sharing method of a kind of cloud computing platform the most according to claim 1, is characterized in that, information during described operation Including: cluster information, store information, host information, virtual machine information, application message, and leader information.
The information sharing method of a kind of cloud computing platform the most according to claim 2, is characterized in that, soft when running by one Information when part architecture gathers the operation of this cloud computing platform;During described operation, software architecture includes a setting and stores Described Tong Bu between software architecture and this cloud computing platform time the meta-model of information and safeguards described operation when running Access Model.
CN201610577981.5A 2016-07-20 2016-07-20 A kind of information sharing method of cloud computing platform Withdrawn CN106294537A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201610577981.5A CN106294537A (en) 2016-07-20 2016-07-20 A kind of information sharing method of cloud computing platform

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201610577981.5A CN106294537A (en) 2016-07-20 2016-07-20 A kind of information sharing method of cloud computing platform

Publications (1)

Publication Number Publication Date
CN106294537A true CN106294537A (en) 2017-01-04

Family

ID=57651948

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201610577981.5A Withdrawn CN106294537A (en) 2016-07-20 2016-07-20 A kind of information sharing method of cloud computing platform

Country Status (1)

Country Link
CN (1) CN106294537A (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107168799A (en) * 2017-05-16 2017-09-15 成都四象联创科技有限公司 Data-optimized processing method based on cloud computing framework

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107168799A (en) * 2017-05-16 2017-09-15 成都四象联创科技有限公司 Data-optimized processing method based on cloud computing framework

Similar Documents

Publication Publication Date Title
Yang et al. A survey on blockchain-based internet service architecture: requirements, challenges, trends, and future
CN106209821B (en) Information security big data management system based on credible cloud computing
ES2808274T3 (en) Service processing method and apparatus
US9386033B1 (en) Security recommendation engine
US10785033B2 (en) Method for storing an object on a plurality of storage nodes
US11328073B1 (en) Robust data tagging
CN104580349B (en) Secure cloud administration agent
US11171774B2 (en) System for synchronizing a cryptographic key state through a blockchain
CN106230790A (en) The method building information service platform based on cloud computing
US10592873B2 (en) Edit transactions for blockchains
CN107315776A (en) A kind of data management system based on cloud computing
Wu et al. FedBC: blockchain-based decentralized federated learning
CN110855648B (en) Early warning control method and device for network attack
CN103795530B (en) A kind of method, device and the main frame of cross-domain controller certification
US20210263667A1 (en) Multi-cloud orchestration as-a-service
CN112035879B (en) Information processing method and system for improving confidentiality of automatic logistics of cell
CN105874464A (en) Systems and methods for introducing variation in sub-system output signals to prevent device fingerprinting
Zhang et al. LedgerGuard: Improving blockchain ledger dependability
CN107231370A (en) A kind of data monitoring method based on cloud computing
US10922304B1 (en) Distributed data protection management in multi-cloud computing environment
Bian et al. PABC: A patent application system based on blockchain
CN106294537A (en) A kind of information sharing method of cloud computing platform
Chang et al. Assessment of in-cloud enterprise resource planning system performed in a virtual cluster
US20130117245A1 (en) Method and system for identification of asset records in a version managed datastore
US20200106602A1 (en) Blockchain system having multiple parity levels and multiple layers for improved data security

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C04 Withdrawal of patent application after publication (patent law 2001)
WW01 Invention patent application withdrawn after publication

Application publication date: 20170104