CN108566412B - Data service method and data service device - Google Patents

Data service method and data service device Download PDF

Info

Publication number
CN108566412B
CN108566412B CN201810149479.3A CN201810149479A CN108566412B CN 108566412 B CN108566412 B CN 108566412B CN 201810149479 A CN201810149479 A CN 201810149479A CN 108566412 B CN108566412 B CN 108566412B
Authority
CN
China
Prior art keywords
data
service
tenant account
virtual
information
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201810149479.3A
Other languages
Chinese (zh)
Other versions
CN108566412A (en
Inventor
张威
张江武
尧彬
郑凯匀
宾伟
杨彬
文呈盼
钟超尔
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Shenzhen Taiji Shuzhi Technology Co.,Ltd.
Original Assignee
Shenzhen Taiji Yun Soft Technology Co ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Shenzhen Taiji Yun Soft Technology Co ltd filed Critical Shenzhen Taiji Yun Soft Technology Co ltd
Priority to CN201810149479.3A priority Critical patent/CN108566412B/en
Publication of CN108566412A publication Critical patent/CN108566412A/en
Application granted granted Critical
Publication of CN108566412B publication Critical patent/CN108566412B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/10Protocols in which an application is distributed across nodes in the network
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0272Virtual private networks
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources

Abstract

The invention is suitable for the technical field of data exchange, and provides a data service method and a data service device, wherein the data service method comprises the following steps: creating a plurality of service field identifications in a data interaction system according to configuration information, and creating a tenant account corresponding to each service field identification; establishing a virtual gateway node associated with the tenant account according to the tenant account information; and forming the virtual gateway nodes into a data transmission network so as to share or exchange data corresponding to the service field identification. By providing the virtual network to the tenant accounts corresponding to the service field identifiers according to the needs, the cloud data interaction of multiple fields and multiple tenants based on the cloud service mode is realized, and the data interaction efficiency among the multiple fields and the multiple tenants and the efficiency of unified management of a data interaction system are improved.

Description

Data service method and data service device
Technical Field
The present invention belongs to the field of data exchange technology, and particularly relates to a data service method and a data service apparatus.
Background
The data sharing exchange platform is constructed in a traditional mode in a construction mode, and the data exchange platform is deployed on the virtualization cloud computing platform. The cloud platform realizes Infrastructure as a Service (IaaS) layer multi-tenant and virtualization, and a multi-domain tenant mode is not provided in the Service and technical layer of the data sharing and exchanging platform.
The existing data exchange platform is dispersedly built according to different business requirements, and along with the continuous expansion of business fields, the continuous increase of data exchange requirements and the interaction influence among multiple business fields, the efficiency of data transmission and management on the original data exchange platform is lower and lower.
Disclosure of Invention
In view of this, embodiments of the present invention provide a data service method and a data service apparatus, so as to solve the problem in the prior art that the efficiency of data transmission and management on the original data exchange platform is lower and lower.
A first aspect of an embodiment of the present invention provides a data service method, including:
creating a plurality of service field identifications in a data interaction system according to configuration information, and creating a tenant account corresponding to each service field identification; the configuration information comprises service field requirement information and tenant account information corresponding to each service field identifier;
establishing a virtual gateway node associated with the tenant account according to the tenant account information;
forming the virtual gateway nodes into a data transmission network; and the data transmission network is used for sharing or exchanging the data corresponding to the service field identification.
A second aspect of an embodiment of the present invention provides a data service apparatus, including:
the account creating unit is used for creating a plurality of service field identifications in the data interaction system according to the configuration information and creating a tenant account corresponding to each service field identification; the configuration information comprises service field requirement information and tenant account information corresponding to each service field identifier;
the gateway creating unit is used for creating a virtual gateway node associated with the tenant account according to the tenant account information;
the network establishing unit is used for forming the virtual gateway nodes into a data transmission network; and the data transmission network is used for sharing or exchanging the data corresponding to the service field identification.
A third aspect of an embodiment of the present invention provides a data service apparatus, including: the device comprises a processor, an input device, an output device and a memory, wherein the processor, the input device, the output device and the memory are connected with each other, the memory is used for storing a computer program for supporting an apparatus to execute the method, the computer program comprises program instructions, and the processor is configured to call the program instructions to execute the method of the first aspect.
A fourth aspect of embodiments of the present invention provides a computer-readable storage medium having stored thereon a computer program comprising program instructions which, when executed by a processor, cause the processor to perform the method of the first aspect described above.
Compared with the prior art, the embodiment of the invention has the following beneficial effects: according to the scheme, a plurality of service field identifications are created in a data interaction system according to configuration information, and a tenant account corresponding to each service field identification is created; establishing a virtual gateway node associated with the tenant account according to the tenant account information; and forming the virtual gateway nodes into a data transmission network so as to share or exchange data corresponding to the service field identification. By providing the virtual network to the tenant accounts corresponding to the service field identifiers according to the needs, the cloud data interaction of multiple fields and multiple tenants based on the cloud service mode is realized, and the data interaction efficiency among the multiple fields and the multiple tenants and the efficiency of unified management of a data interaction system are improved.
Drawings
In order to more clearly illustrate the technical solutions in the embodiments of the present invention, the drawings needed to be used in the embodiments or the prior art descriptions will be briefly described below, and it is obvious that the drawings in the following description are only some embodiments of the present invention, and it is obvious for those skilled in the art to obtain other drawings based on these drawings without inventive exercise.
FIG. 1 is a flow chart of a data service method provided by an embodiment of the invention;
FIG. 2 is a flow chart of a data service method provided by another embodiment of the present invention;
FIG. 3 is a schematic diagram of a data service apparatus provided by an embodiment of the present invention;
FIG. 4 is a diagram of a data service device according to another embodiment of the present invention;
fig. 5 is a schematic diagram of a data service device according to an embodiment of the present invention.
Detailed Description
In the following description, for purposes of explanation and not limitation, specific details are set forth, such as particular system structures, techniques, etc. in order to provide a thorough understanding of the embodiments of the invention. It will be apparent, however, to one skilled in the art that the present invention may be practiced in other embodiments that depart from these specific details. In other instances, detailed descriptions of well-known systems, devices, circuits, and methods are omitted so as not to obscure the description of the present invention with unnecessary detail.
For explaining the technical solution of the present invention, the following description is made by referring to fig. 1 through a specific embodiment, and fig. 1 is a flowchart of a data service method provided by the embodiment of the present invention. The main execution body of the data service method in this embodiment is a device for providing data services, and the device includes, but is not limited to, a server. The data service method as shown in fig. 1 may include the steps of:
s101: creating a plurality of service field identifications in a data interaction system according to configuration information, and creating a tenant account corresponding to each service field identification; the configuration information comprises service field requirement information and tenant account information corresponding to each service field identifier.
Due to the development of the cloud computing topic, many enterprises providing data services share the same system or program component under the environment of multiple tenants through a software architecture based on the multi-tenant technology or the multi-lease technology, so that the tenants can acquire data stored in a server, and the isolation of the data among the tenants can be still ensured.
Illustratively, in the government affair system, a government affair data sharing exchange platform is established to realize a government affair information resource sharing solution based on a government affair information resource directory system and an exchange system. The government affair data sharing exchange platform is mainly composed of a platform front layer, a sharing exchange layer, a platform supporting layer and a basic resource layer. The method provides a mode of combining horizontal data sharing exchange and vertical data sharing exchange for the planning and construction of government information departments, realizes the sharing and opening of government affair information resources, innovates social management and service modes, and improves the social management capability and the public service level under the informatization condition.
However, the traditional data exchange platform is constructed dispersedly according to different business requirements, and with the continuous expansion of business fields and the continuous increase of data exchange requirements. Generally, there are two data exchange platform construction modes, one is to expand the original platform, which makes the data exchange platform management more and more complex, and the interaction among multiple service domains is easily affected; another situation is to re-plan and build the data exchange platform, which results in more and more data exchange platforms being operated, higher and higher maintenance and management costs, and serious repeated construction situations. Therefore, the scheme provides a method for realizing data sharing and exchange among the tenants in multiple fields.
And creating a plurality of service field identifications in the data interaction system according to the configuration information, and correspondingly constructing a data exchange master control example, a cloud service bus example and a cloud resource directory example in each service field identification. The examples are all composition templates or subsystems of the data sharing exchange system, wherein the data exchange master control example is responsible for configuration management and control of data sharing exchange; the cloud service bus instance is responsible for integration and treatment of data sharing services; the cloud resource catalog instance is responsible for the carding and cataloging of the data resources. Each instance corresponds to a tenant account, each tenant account corresponds to a service field identifier, and the unified management of the tenant accounts corresponding to the service field identifiers in the data interaction system is realized through the mode. The configuration information may include hardware configuration information of the data interaction system, such as a total storage space, a storage space of each business domain; and software configuration information such as methods of online storage, interaction rules between business domains, and the like. The configuration information may be determined at the time of creating the data interaction system or prior to creating the plurality of business segment identifiers.
Specifically, the configuration information includes requirement information of each service field, and the requirement information may be determined according to a plan of the service field. For example, in the government affairs field, the configuration information may include the requirement of the data volume size of the government affairs field, and may also include information of each department belonging to the government affairs field, and the like.
It should be noted that the configuration information is specifically determined according to the situation of the data interaction system or the specific situation of each service field, and is not limited herein.
And creating a plurality of service field identifications in a data interaction system according to the configuration information, and creating a tenant account corresponding to each service field identification. The service domain identifier is a name or a code of each service domain, and is used for distinguishing a corresponding data storage area of each service domain in the data interaction system. The business field may include government affairs field, medical field, traffic field, etc. The tenant account is an account of each department in each business field, and in the government affairs field, the tenant account may be, for example, a tenant account corresponding to each administrative department such as an education account, a public security account, and a financial account. By creating the service field identification and the corresponding tenant account according to the configuration information, the unified management of the service field and the tenant account can be realized, and the management efficiency of the data interaction system is improved.
S102: and establishing a virtual gateway node associated with the tenant account according to the tenant account information.
After a plurality of business field area identifications and corresponding tenant accounts are created, virtual gateway nodes related to the tenant accounts are established in the cloud service gateway according to the tenant account information, so that data interaction can be carried out between the tenant accounts through the virtual gateway nodes.
Optionally, a plurality of virtualized gateway nodes are created in the cloud service gateway through the virtualized gateway environment creator, and then the gateway virtual nodes are allocated to different tenants in each service field according to configuration.
Illustratively, a plurality of tenants are constructed based on cloud computer technology to allocate resources to virtual instances in each business domain; each entity gateway device is provided with a virtual gateway environment creator; the virtualized gateway environment creator automatically creates virtual switched gateway node instances from multiple tenants within multiple service domains as needed from the configuration.
According to the method, the virtual gateway node associated with the tenant account is established according to the tenant account information, so that each tenant account in the data interaction system can have the corresponding virtual gateway node for acquiring data in the system, or the data is uploaded based on the virtual gateway node, and the efficiency of acquiring the tenant account data corresponding to each service field identifier is improved by the mode of establishing the virtual exchange gateway according to the requirement.
S103: forming the virtual gateway nodes into a data transmission network; and the data transmission network is used for sharing or exchanging the data corresponding to the service field identification.
And after the virtual gateway nodes associated with the tenant accounts are established, the virtual gateway nodes form a data transmission network. So that the data request end can acquire the data in the corresponding tenant account in the service field through the data transmission network.
The data request end includes a device having a function of acquiring data, such as a mobile phone, a computer, a tablet computer, and the like, which is not limited herein.
Illustratively, a plurality of data transmission networks are formed by connecting the virtualized master control instance and a plurality of gateway node instances in each service domain according to the virtual gateway nodes, wherein the data transmission networks are used for sharing or exchanging data corresponding to the service domain identifiers.
According to the scheme, a plurality of service field identifications are created in a data interaction system according to configuration information, and a tenant account corresponding to each service field identification is created; establishing a virtual gateway node associated with the tenant account according to the tenant account information; and forming the virtual gateway nodes into a data transmission network so as to share or exchange data corresponding to the service field identification. By providing the virtual network to the tenant accounts corresponding to the service field identifiers according to the needs, the cloud data interaction of multiple fields and multiple tenants based on the cloud service mode is realized, and the data interaction efficiency among the multiple fields and the multiple tenants and the efficiency of unified management of a data interaction system are improved.
Referring to fig. 2, fig. 2 is a flowchart of a data service method according to an embodiment of the present invention. The main execution body of the data service method in the embodiment is a server. The data service method as shown in fig. 2 may include the steps of:
s201: creating a plurality of service field identifications in a data interaction system according to configuration information, and creating a tenant account corresponding to each service field identification; the configuration information comprises service field requirement information and tenant account information corresponding to each service field identifier.
The method comprises the steps of creating a plurality of service field identifications by acquiring service field demand information and tenant account information corresponding to each service field identification, and creating a tenant account corresponding to each service field identification. The creating of the multiple service domain identifiers may be simultaneous creating, or creating when a user needs to create a certain service domain identifier.
The time of creating the tenant account corresponding to each service field identifier may be that after the service field identifier is created, the tenant account corresponding to the service field identifier is created under the service field identifier, and the service field identifier is absent; or creating a tenant account corresponding to a certain service domain identifier, and then butting the tenant account into the range of the service domain identifier. By the mode of establishing the tenant account, a user can conveniently and flexibly control the data interaction system, and the efficiency of managing the data interaction system is improved.
Specifically, the service field requirement information includes government affair service field requirement information, education service field requirement information, or medical service field requirement information. The scheme is used for cloud and cloud interaction, cloud and intelligent terminal interaction, non-cloud and cloud application interaction, is suitable for providing safe and exclusive virtual sharing and exchanging environments for various tenants in various business fields such as government affairs, education, medical treatment and the like, and meets the requirement of massive application data exchange sharing intensive construction.
In addition, the service field requirement information may further include traffic service field requirement information, economic service field requirement information, and the like. In the scheme, the service field identifier can be created at any time according to the configuration information of the data interaction system or the requirement of the user, so that the method is not particularly limited.
Through a data interaction system constructed by a computer network, information or data is transmitted and shared among a plurality of service field identifications, the utilization rate of information resources is improved, the data interaction system becomes a basic target for information construction, interconnection and intercommunication among distributed heterogeneous systems are ensured, a central database is established, data extraction, concentration, loading and display are completed, and unified data processing and exchange are constructed.
S202: and establishing a virtual gateway node associated with each tenant account according to the network resource demand information.
In this embodiment, each service domain identifier corresponds to different data information, data volume, or access requirements of a tenant account for data in the service domain identifier, so that different access requirements or network load requirements correspond to different service domain identifiers, and a network requirement of the tenant account when sharing data is used as network resource requirement information.
The network resource requirement information further includes information such as the amount of data in each service field identifier, network bandwidth requirement information, and data stream transmission rate. The network resource demand information is specifically set according to the condition of the tenant account, and is not limited herein.
And establishing a virtual gateway node associated with each tenant account according to the network resource demand information. Therefore, the tenant account with a large requirement on the network resources can acquire more network resources or acquire the virtual network nodes with fast data transmission.
For example, in the family members in the administrative business field, the stored data includes identity information data, and since the identity information data needs to be applied in many business fields, the data needs network resources with better performance when being transmitted, so as to transmit the identity information data to the data request terminal quickly. Therefore, according to the network resource requirement of the identity information data, a virtual gateway node associated with a tenant account storing the identity information data in the administrative business field is established, and the virtual gateway node is allocated with higher network bandwidth or authority. By redefining and dividing the network resources according to the network resource demand information, dynamic allocation, flexible scheduling and cross-domain sharing of the network resources can be realized, the utilization rate of the network resources is improved, the network resources can really become social infrastructure, and flexible and changeable application demands in various industry fields are met.
S203: forming the virtual gateway nodes into a data transmission network; and the data transmission network is used for sharing or exchanging the data corresponding to the service field identification.
In this embodiment, the implementation manner of S203 is completely the same as that of S103 in the embodiment corresponding to fig. 1, and reference may be specifically made to the related description of S103 in the embodiment corresponding to fig. 1, which is not repeated herein.
S204: and dividing the data transmission network into at least two virtual transmission networks according to the resource configuration information, and allocating the virtual transmission networks to each service field identifier.
After the virtual gateway nodes form a data transmission network, the data transmission network is divided into at least two virtual transmission networks according to the resource configuration information, and the virtual transmission network is allocated to each service field identifier, so that the purpose of allocating the virtual layer data transmission network to the virtualization sharing switching environment of each service field identifier according to configuration is achieved. The resource configuration information includes data resource configuration information or data transmission configuration information corresponding to each service field identifier.
Illustratively, a Virtual Network partitioning controller is designed in a data interaction system, a Virtual Network Generic Routing Encapsulation (NVGRE) standard is adopted to partition a data transmission Network into a plurality of Virtual networks, and then a Virtual layer data transmission Network is allocated to each virtualized shared switching environment in each service field according to configuration. NVGRE uses the lower 24 bits of the Generic Routing Encapsulation (GRE) header as a tenant network identifier, which like Virtual Extensible LAN (VXLAN) can support 1600 ten thousand Virtual networks. In order to provide flows that describe the granularity of bandwidth utilization, the transport network needs to use GRE headers. NVGRE has the advantage of not relying on Internet Protocol (IP) multicasting for learning for flooding and internetworking, but rather for broadcasting in a more flexible manner. Furthermore, NVGRE supports reducing the maximum transmission unit of small packets to reduce the size of internal virtual network packets, without requiring the transport network to support transmission of large frames. Further, the NVGRE gateway may also serve as a network address translation component to publish application servers onto the network, although these services are actually located in virtual servers in the software defined network. This allows the virtual machines in the software defined network to act as public World Wide Web (Web) servers or provide other network-oriented services.
Further, after creating a plurality of service domain identifiers and their respective corresponding tenant accounts and dividing the virtual transmission network corresponding to each tenant account, the method further includes:
obtaining a data service request from the tenant account;
and determining the authority of the tenant account according to the data service request and the authority information of the tenant account.
And the data request terminal sends a data service request to the server through the tenant account. After acquiring a data service request from a tenant account, a server identifies authority information of the tenant account, and if the authority information meets data in the data service request from the tenant account, the server opens the authority for acquiring the data in the data service request to the tenant account. And the data request terminal acquires the required data through the tenant account. The data request end is limited to acquire data from the data interaction system by the method for limiting the authority of the data request end, and the data request end which does not acquire the data authority is limited to acquire corresponding data, so that the security and the privacy of the data in the data interaction system are ensured.
According to the scheme, a plurality of service field identifications are created in a data interaction system according to configuration information, and a tenant account corresponding to each service field identification is created; and establishing a virtual gateway node associated with each tenant account according to the network resource demand information. And forming the virtual gateway nodes into a data transmission network so as to share or exchange data corresponding to the service field identification. And dividing the data transmission network into at least two virtual transmission networks according to the resource configuration information, and allocating the virtual transmission networks to each service field identifier. The data transmission network is divided into a plurality of virtual transmission networks, the virtual transmission networks are distributed to each virtualized shared exchange environment in each service field according to configuration, the data transmission efficiency in the data interaction system is improved, and the efficiency and the quality of unified management of the data interaction system are improved by creating a plurality of service field identifications and corresponding tenant accounts in the data interaction system according to configuration information.
Referring to fig. 3, fig. 3 is a schematic diagram of a data service device according to an embodiment of the present invention. The data service apparatus 300 of the present embodiment includes units for performing the steps in the embodiment corresponding to fig. 1, please refer to fig. 1 and the related description in the embodiment corresponding to fig. 1 for details, which are not repeated herein. The data service apparatus 300 of the present embodiment includes an account creation unit 301, a gateway creation unit 302, and a network establishment unit 303.
An account creating unit 301, configured to create a plurality of service field identifiers in a data interaction system according to configuration information, and create a tenant account corresponding to each service field identifier; the configuration information comprises service field requirement information and tenant account information corresponding to each service field identifier;
a gateway creating unit 302, configured to establish a virtual gateway node associated with the tenant account according to the tenant account information;
a network establishing unit 303, configured to form a data transmission network from the virtual gateway nodes; and the data transmission network is used for sharing or exchanging the data corresponding to the service field identification.
According to the scheme, a plurality of service field identifications are created in a data interaction system according to configuration information, and a tenant account corresponding to each service field identification is created; establishing a virtual gateway node associated with the tenant account according to the tenant account information; and forming the virtual gateway nodes into a data transmission network so as to share or exchange data corresponding to the service field identification. By providing the virtual network to the tenant accounts corresponding to the service field identifiers according to the needs, the cloud data interaction of multiple fields and multiple tenants based on the cloud service mode is realized, and the data interaction efficiency among the multiple fields and the multiple tenants and the efficiency of unified management of a data interaction system are improved.
Referring to fig. 4, fig. 4 is a schematic diagram of a data service apparatus according to an embodiment of the present invention. The data service apparatus 400 of the present embodiment includes units for performing the steps in the embodiment corresponding to fig. 2, please refer to fig. 2 and the related description in the embodiment corresponding to fig. 2, which are not repeated herein. The data service apparatus 400 of the present embodiment includes an account creation unit 301, a gateway creation unit 302, a network establishment unit 303, and a virtual network creation unit 404.
An account creating unit 301, configured to create a plurality of service field identifiers in a data interaction system according to configuration information, and create a tenant account corresponding to each service field identifier; the configuration information comprises service field requirement information and tenant account information corresponding to each service field identifier;
a gateway creating unit 302, configured to establish a virtual gateway node associated with each tenant account according to the network resource demand information;
a network establishing unit 303, configured to form a data transmission network from the virtual gateway nodes; and the data transmission network is used for sharing or exchanging the data corresponding to the service field identification.
A virtual network creating unit 404, configured to divide the data transmission network into at least two virtual transmission networks according to the resource configuration information, and allocate the virtual transmission network to each service domain identifier.
The service field requirement information comprises government affair service field requirement information, education service field requirement information or medical service field requirement information.
Further, the data service device further includes:
a service request acquisition unit, configured to acquire a data service request from the tenant account;
and the permission determining unit is used for determining the permission of the tenant account according to the data service request and the permission information of the tenant account.
According to the scheme, a plurality of service field identifications are created in a data interaction system according to configuration information, and a tenant account corresponding to each service field identification is created; and establishing a virtual gateway node associated with each tenant account according to the network resource demand information. And forming the virtual gateway nodes into a data transmission network so as to share or exchange data corresponding to the service field identification. And dividing the data transmission network into at least two virtual transmission networks according to the resource configuration information, and allocating the virtual transmission networks to each service field identifier. The data transmission network is divided into a plurality of virtual transmission networks, the virtual transmission networks are distributed to each virtualized shared exchange environment in each service field according to configuration, the data transmission efficiency in the data interaction system is improved, and the efficiency and the quality of unified management of the data interaction system are improved by creating a plurality of service field identifications and corresponding tenant accounts in the data interaction system according to configuration information.
It should be understood that, the sequence numbers of the steps in the foregoing embodiments do not imply an execution sequence, and the execution sequence of each process should be determined by its function and inherent logic, and should not constitute any limitation to the implementation process of the embodiments of the present invention.
Referring to fig. 5, fig. 5 is a schematic diagram of a data service apparatus according to still another embodiment of the present invention. The data service apparatus 500 in the present embodiment as shown in fig. 5 may include: a processor 501, a memory 502, and a computer program 503 stored in the memory 502 and operable on the processor 501. The steps described above for the data service method embodiments are implemented when the computer program 503 is executed by the processor 501. The memory 502 is used to store a computer program comprising program instructions. The processor 501 is configured to execute program instructions stored in the memory 502. Wherein the processor 501 is configured to call the program instruction to perform the following operations:
the processor 501 is configured to create a plurality of service domain identifiers in the data interaction system according to the configuration information, and create a tenant account corresponding to each service domain identifier; the configuration information comprises service field requirement information and tenant account information corresponding to each service field identifier;
the processor 501 is further configured to establish a virtual gateway node associated with the tenant account according to the tenant account information;
the processor 501 is further configured to form the virtual gateway nodes into a data transmission network; and the data transmission network is used for sharing or exchanging the data corresponding to the service field identification.
The processor 501 is specifically configured to divide the data transmission network into at least two virtual transmission networks according to the resource configuration information, and allocate the virtual transmission network to each service domain identifier.
The processor 501 is specifically configured to establish a virtual gateway node associated with each tenant account according to the network resource demand information.
The service field requirement information comprises government affair service field requirement information, education service field requirement information or medical service field requirement information.
The processor 501 is specifically configured to obtain a data service request from the tenant account;
the processor 501 is specifically configured to determine the authority of the tenant account according to the data service request and the authority information of the tenant account.
According to the scheme, a plurality of service field identifications are created in a data interaction system according to configuration information, and a tenant account corresponding to each service field identification is created; and establishing a virtual gateway node associated with each tenant account according to the network resource demand information. And forming the virtual gateway nodes into a data transmission network so as to share or exchange data corresponding to the service field identification. And dividing the data transmission network into at least two virtual transmission networks according to the resource configuration information, and allocating the virtual transmission networks to each service field identifier. The data transmission network is divided into a plurality of virtual transmission networks, the virtual transmission networks are distributed to each virtualized shared exchange environment in each service field according to configuration, the data transmission efficiency in the data interaction system is improved, and the efficiency and the quality of unified management of the data interaction system are improved by creating a plurality of service field identifications and corresponding tenant accounts in the data interaction system according to configuration information.
It should be understood that, in the embodiment of the present invention, the Processor 501 may be a Central Processing Unit (CPU), and the Processor may also be other general-purpose processors, Digital Signal Processors (DSPs), Application Specific Integrated Circuits (ASICs), Field Programmable Gate Arrays (FPGAs) or other Programmable logic devices, discrete Gate or transistor logic devices, discrete hardware components, and the like. A general purpose processor may be a microprocessor or the processor may be any conventional processor or the like.
The memory 502 may include both read-only memory and random access memory, and provides instructions and data to the processor 501. A portion of the memory 502 may also include non-volatile random access memory. For example, the memory 502 may also store device type information.
In specific implementation, the processor 501, the memory 502, and the computer program 503 described in this embodiment of the present invention may execute the implementation manners described in the first embodiment and the second embodiment of the data service method provided in this embodiment of the present invention, and may also execute the implementation manner of the data service apparatus described in this embodiment of the present invention, which is not described herein again.
In another embodiment of the present invention, a computer-readable storage medium is provided, the computer-readable storage medium storing a computer program comprising program instructions that when executed by a processor implement:
creating a plurality of service field identifications in a data interaction system according to configuration information, and creating a tenant account corresponding to each service field identification; the configuration information comprises service field requirement information and tenant account information corresponding to each service field identifier;
establishing a virtual gateway node associated with the tenant account according to the tenant account information;
forming the virtual gateway nodes into a data transmission network; and the data transmission network is used for sharing or exchanging the data corresponding to the service field identification.
Further, the computer program when executed by the processor further implements:
and dividing the data transmission network into at least two virtual transmission networks according to the resource configuration information, and allocating the virtual transmission networks to each service field identifier.
Further, the computer program when executed by the processor further implements:
and establishing a virtual gateway node associated with each tenant account according to the network resource demand information.
The service field requirement information comprises government affair service field requirement information, education service field requirement information or medical service field requirement information.
Further, the computer program when executed by the processor further implements:
obtaining a data service request from the tenant account;
and determining the authority of the tenant account according to the data service request and the authority information of the tenant account.
According to the scheme, a plurality of service field identifications are created in a data interaction system according to configuration information, and a tenant account corresponding to each service field identification is created; and establishing a virtual gateway node associated with each tenant account according to the network resource demand information. And forming the virtual gateway nodes into a data transmission network so as to share or exchange data corresponding to the service field identification. And dividing the data transmission network into at least two virtual transmission networks according to the resource configuration information, and allocating the virtual transmission networks to each service field identifier. The data transmission network is divided into a plurality of virtual transmission networks, the virtual transmission networks are distributed to each virtualized shared exchange environment in each service field according to configuration, the data transmission efficiency in the data interaction system is improved, and the efficiency and the quality of unified management of the data interaction system are improved by creating a plurality of service field identifications and corresponding tenant accounts in the data interaction system according to configuration information.
The computer readable storage medium may be an internal storage unit, such as a hard disk or a memory, of the data service device according to any of the foregoing embodiments. The computer readable storage medium may also be an external storage device of the data service apparatus, such as a plug-in hard disk, a Smart Media Card (SMC), a Secure Digital (SD) Card, a Flash memory Card (Flash Card), and the like, provided on the data service apparatus. Further, the computer readable storage medium may also include both an internal storage unit and an external storage device of the data service apparatus. The computer-readable storage medium is used for storing the computer program and other programs and data required by the data service device. The computer readable storage medium may also be used to temporarily store data that has been output or is to be output.
Those of ordinary skill in the art will appreciate that the elements and algorithm steps of the examples described in connection with the embodiments disclosed herein may be embodied in electronic hardware, computer software, or combinations of both, and that the components and steps of the examples have been described in a functional general in the foregoing description for the purpose of illustrating clearly the interchangeability of hardware and software. Whether such functionality is implemented as hardware or software depends upon the particular application and design constraints imposed on the implementation. Skilled artisans may implement the described functionality in varying ways for each particular application, but such implementation decisions should not be interpreted as causing a departure from the scope of the present invention.
It is clear to those skilled in the art that, for convenience and brevity of description, the specific working processes of the above-described apparatuses and units may refer to the corresponding processes in the foregoing method embodiments, and are not described herein again.
In the several embodiments provided in the present application, it should be understood that the disclosed apparatus and method may be implemented in other ways. For example, the above-described apparatus embodiments are merely illustrative, and for example, the division of the units is only one logical division, and other divisions may be realized in practice, for example, a plurality of units or components may be combined or integrated into another system, or some features may be omitted, or not executed. In addition, the shown or discussed mutual coupling or direct coupling or communication connection may be an indirect coupling or communication connection through some interfaces, devices or units, and may also be an electric, mechanical or other form of connection.
The units described as separate parts may or may not be physically separate, and parts displayed as units may or may not be physical units, may be located in one place, or may be distributed on a plurality of network units. Some or all of the units can be selected according to actual needs to achieve the purpose of the solution of the embodiment of the present invention.
In addition, functional units in the embodiments of the present invention may be integrated into one processing unit, or each unit may exist alone physically, or two or more units are integrated into one unit. The integrated unit can be realized in a form of hardware, and can also be realized in a form of a software functional unit.
The integrated unit, if implemented in the form of a software functional unit and sold or used as a stand-alone product, may be stored in a computer readable storage medium. Based on such understanding, the technical solution of the present invention essentially or partially contributes to the prior art, or all or part of the technical solution can be embodied in the form of a software product stored in a storage medium and including instructions for causing a computer device (which may be a personal computer, a server, or a network device) to execute all or part of the steps of the method according to the embodiments of the present invention. And the aforementioned storage medium includes: various media capable of storing program codes, such as a usb disk, a removable hard disk, a Read-Only Memory (ROM), a Random Access Memory (RAM), a magnetic disk, or an optical disk.
While the invention has been described with reference to specific embodiments, the invention is not limited thereto, and various equivalent modifications and substitutions can be easily made by those skilled in the art within the technical scope of the invention. Therefore, the protection scope of the present invention shall be subject to the protection scope of the claims.

Claims (8)

1. A data service method, comprising:
creating a plurality of service field identifications in a data interaction system according to configuration information, and creating a tenant account corresponding to each service field identification; the configuration information comprises service field requirement information and tenant account information corresponding to each service field identifier;
establishing a virtual gateway node associated with the tenant account according to the tenant account information;
forming the virtual gateway nodes into a data transmission network; the data transmission network is used for sharing or exchanging data corresponding to the service field identification;
the configuration information includes resource configuration information, and after the virtual gateway nodes form a data transmission network, the method further includes:
and dividing the data transmission network into at least two virtual transmission networks according to the resource configuration information, and allocating the virtual transmission networks to each service field identifier, wherein a virtual network division controller is designed in the data interaction system, the data transmission network is divided into a plurality of virtual networks by adopting a virtual network general routing encapsulation standard, and then the virtual layer data transmission network is allocated to each virtualization sharing switching environment in each service field according to configuration.
2. The data service method of claim 1, wherein the tenant account information includes network resource demand information of the tenant account, and the establishing a virtual gateway node corresponding to the tenant account according to the tenant account information includes:
and establishing a virtual gateway node associated with each tenant account according to the network resource demand information.
3. The data service method of claim 1, wherein the business field requirement information comprises government business field requirement information, education business field requirement information, or medical business field requirement information.
4. The data service method of claim 1 or 2, wherein the tenant account information includes authority information of the tenant account; the method further comprises the following steps:
obtaining a data service request from the tenant account;
and determining the data access authority of the tenant account according to the data service request and the authority information of the tenant account.
5. A data service apparatus, comprising:
the account creating unit is used for creating a plurality of service field identifications in the data interaction system according to the configuration information and creating a tenant account corresponding to each service field identification; the configuration information comprises service field requirement information and tenant account information corresponding to each service field identifier;
the gateway creating unit is used for creating a virtual gateway node associated with the tenant account according to the tenant account information;
the network establishing unit is used for forming the virtual gateway nodes into a data transmission network; the data transmission network is used for sharing or exchanging data corresponding to the service field identification;
the configuration information includes resource configuration information, and further includes:
and the virtual network creating unit is used for dividing the data transmission network into at least two virtual transmission networks according to the resource configuration information and allocating the virtual transmission networks to each service field identifier, wherein a virtual network division controller is designed in the data interaction system, the data transmission network is divided into a plurality of virtual networks by adopting a virtual network general routing encapsulation standard, and then the virtual layer data transmission network is allocated to each virtualized shared switching environment in each service field according to configuration.
6. The data service apparatus of claim 5, wherein the tenant account information includes authority information of the tenant account; the device further comprises:
a request acquisition unit, configured to acquire a data service request from the tenant account;
and the permission determining unit is used for determining the permission of the tenant account according to the data service request and the permission information of the tenant account.
7. A data service device comprising a memory, a processor and a computer program stored in the memory and executable on the processor, characterized in that the steps of the method according to any of claims 1 to 4 are implemented when the computer program is executed by the processor.
8. A computer-readable storage medium, in which a computer program is stored which, when being executed by a processor, carries out the steps of the method according to any one of claims 1 to 4.
CN201810149479.3A 2018-02-13 2018-02-13 Data service method and data service device Active CN108566412B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201810149479.3A CN108566412B (en) 2018-02-13 2018-02-13 Data service method and data service device

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201810149479.3A CN108566412B (en) 2018-02-13 2018-02-13 Data service method and data service device

Publications (2)

Publication Number Publication Date
CN108566412A CN108566412A (en) 2018-09-21
CN108566412B true CN108566412B (en) 2021-02-09

Family

ID=63532239

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201810149479.3A Active CN108566412B (en) 2018-02-13 2018-02-13 Data service method and data service device

Country Status (1)

Country Link
CN (1) CN108566412B (en)

Families Citing this family (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109992416B (en) * 2019-03-20 2022-03-18 跬云(上海)信息科技有限公司 Multi-tenant service method and device based on pre-calculation OLAP model
CN112748920B (en) * 2019-10-29 2023-09-15 福建天泉教育科技有限公司 Method and storage medium for tenant product components
CN112269562B (en) * 2020-09-27 2023-09-12 福建天泉教育科技有限公司 Tenant isolation method and terminal in componentized product
CN114710502A (en) * 2021-12-28 2022-07-05 南京中孚信息技术有限公司 Virtualization-based data security exchange method and system

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN204926097U (en) * 2015-06-01 2015-12-30 北京圆通慧达管理软件开发有限公司 Memory system is kept apart to data
CN105824625A (en) * 2016-03-14 2016-08-03 北京中电普华信息技术有限公司 Business application construction device and method based on cloud environment
CN106897337A (en) * 2016-07-01 2017-06-27 阿里巴巴集团控股有限公司 The acquisition methods and device of Internet resources, the acquisition methods of finance product
CN107342895A (en) * 2017-06-26 2017-11-10 网宿科技股份有限公司 A kind of network optimized approach of multi-tenant, system, computing device and storage medium

Family Cites Families (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104935616A (en) * 2014-03-18 2015-09-23 华为技术有限公司 Data processing method, device and ESB system

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN204926097U (en) * 2015-06-01 2015-12-30 北京圆通慧达管理软件开发有限公司 Memory system is kept apart to data
CN105824625A (en) * 2016-03-14 2016-08-03 北京中电普华信息技术有限公司 Business application construction device and method based on cloud environment
CN106897337A (en) * 2016-07-01 2017-06-27 阿里巴巴集团控股有限公司 The acquisition methods and device of Internet resources, the acquisition methods of finance product
CN107342895A (en) * 2017-06-26 2017-11-10 网宿科技股份有限公司 A kind of network optimized approach of multi-tenant, system, computing device and storage medium

Also Published As

Publication number Publication date
CN108566412A (en) 2018-09-21

Similar Documents

Publication Publication Date Title
CN108566412B (en) Data service method and data service device
US8954992B2 (en) Distributed and scaled-out network switch and packet processing
CN105981331B (en) Entity handling registry for supporting traffic policy enforcement
CN111224821B (en) Security service deployment system, method and device
US20160080477A1 (en) Crowd-sourced cloud computing
US20190097940A1 (en) Network system and method for cross region virtual private network peering
US10534631B2 (en) Scalable policy assignment in an edge virtual bridging (EVB) environment
US9471351B2 (en) Scalable policy management in an edge virtual bridging (EVB) environment
CN111585887B (en) Communication method and device based on multiple networks, electronic equipment and storage medium
EP3821589B1 (en) Session management in a forwarding plane
CN111030912A (en) Method for intercommunication between virtual private cloud VPCs
CN112312061B (en) Video conference method and device, electronic equipment and storage medium
CN110225146B (en) Intranet and extranet mapping method and device, electronic equipment, medium and video conference system
WO2016150139A1 (en) Method and apparatus for establishing network service instance
CN114745724A (en) Access processing method and device, electronic equipment and computer readable medium
US10785056B1 (en) Sharing a subnet of a logically isolated network between client accounts of a provider network
CN110636149B (en) Remote access method, device, router and storage medium
CN111932239B (en) Service processing method, device, node equipment and storage medium
CN111262771B (en) Virtual private cloud communication system, system configuration method and controller
CN105991633B (en) Session log processing method and processing device
CN109819064A (en) Method, operating system module and the meeting plate of intermodule communication
CN105939242B (en) Realize the method and device of virtual system
CN114661465A (en) Resource management method, device, storage medium and electronic equipment
WO2021057150A1 (en) Port sharing method and apparatus, storage medium and electronic apparatus
CN114237914A (en) Management scheduling system based on hybrid cloud

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
CB02 Change of applicant information
CB02 Change of applicant information

Address after: 518000 Two 26G Baihua Apartments on Baihua Erlu, Futian District, Shenzhen City, Guangdong Province

Applicant after: Shenzhen Taiji Yun Soft Technology Co.,Ltd.

Address before: 518000 Two 26G Baihua Apartments on Baihua Erlu, Futian District, Shenzhen City, Guangdong Province

Applicant before: SHENZHEN TYKY TECHNOLOGY CO.,LTD.

GR01 Patent grant
GR01 Patent grant
PE01 Entry into force of the registration of the contract for pledge of patent right
PE01 Entry into force of the registration of the contract for pledge of patent right

Denomination of invention: A data service method and data service device

Effective date of registration: 20210810

Granted publication date: 20210209

Pledgee: Shenzhen hi tech investment small loan Co.,Ltd.

Pledgor: Shenzhen Taiji Yun Soft Technology Co.,Ltd.

Registration number: Y2021980007466

CP03 Change of name, title or address
CP03 Change of name, title or address

Address after: 518000 1402, building 3, Shenzhen new generation industrial park, No. 136, Zhongkang Road, Meidu community, Meilin street, Futian District, Shenzhen, Guangdong Province

Patentee after: Shenzhen Taiji Shuzhi Technology Co.,Ltd.

Address before: 518000 Two 26G Baihua Apartments on Baihua Erlu, Futian District, Shenzhen City, Guangdong Province

Patentee before: Shenzhen Taiji Yun Soft Technology Co.,Ltd.

PC01 Cancellation of the registration of the contract for pledge of patent right
PC01 Cancellation of the registration of the contract for pledge of patent right

Date of cancellation: 20221107

Granted publication date: 20210209

Pledgee: Shenzhen hi tech investment small loan Co.,Ltd.

Pledgor: Shenzhen Taiji Yun Soft Technology Co.,Ltd.

Registration number: Y2021980007466