CN111708588A - Cloud platform resource processing method and device, computer equipment and storage medium - Google Patents

Cloud platform resource processing method and device, computer equipment and storage medium Download PDF

Info

Publication number
CN111708588A
CN111708588A CN202010540969.3A CN202010540969A CN111708588A CN 111708588 A CN111708588 A CN 111708588A CN 202010540969 A CN202010540969 A CN 202010540969A CN 111708588 A CN111708588 A CN 111708588A
Authority
CN
China
Prior art keywords
information
data center
target
tenant
cloud platform
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN202010540969.3A
Other languages
Chinese (zh)
Other versions
CN111708588B (en
Inventor
张志江
于伟
劳作媚
吕敏
季统凯
谭思敏
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Cloud Computing Center of CAS
Original Assignee
Cloud Computing Center of CAS
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Cloud Computing Center of CAS filed Critical Cloud Computing Center of CAS
Priority to CN202010540969.3A priority Critical patent/CN111708588B/en
Publication of CN111708588A publication Critical patent/CN111708588A/en
Application granted granted Critical
Publication of CN111708588B publication Critical patent/CN111708588B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F9/00Arrangements for program control, e.g. control units
    • G06F9/06Arrangements for program control, e.g. control units using stored programs, i.e. using an internal store of processing equipment to receive or retain programs
    • G06F9/44Arrangements for executing specific programs
    • G06F9/448Execution paradigms, e.g. implementations of programming paradigms
    • G06F9/4482Procedural
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F9/00Arrangements for program control, e.g. control units
    • G06F9/06Arrangements for program control, e.g. control units using stored programs, i.e. using an internal store of processing equipment to receive or retain programs
    • G06F9/44Arrangements for executing specific programs
    • G06F9/445Program loading or initiating
    • G06F9/44521Dynamic linking or loading; Link editing at or after load time, e.g. Java class loading
    • G06F9/44526Plug-ins; Add-ons

Abstract

The application relates to a cloud platform resource processing method and device, computer equipment and a storage medium. The method comprises the following steps: determining management domain information corresponding to cloud platform configuration; determining selected target object information from object information configured corresponding to the management domain information; the object information comprises data center information of at least one data center and tenant information of at least one tenant under the cloud platform; determining at least one target data center information from the configured data center information according to the selected target object information, and determining at least one target tenant information from the configured tenant information; determining a selected target service component from at least one service component corresponding to the target data center information configuration; and calling a corresponding interface of the target data center information in the target data center corresponding to the cloud platform through the target service component, and correspondingly processing the resource information of the target tenant corresponding to the target tenant information. By adopting the method, the multi-tenant resources can be conveniently processed.

Description

Cloud platform resource processing method and device, computer equipment and storage medium
Technical Field
The present application relates to the field of computer technologies and cloud computing, and in particular, to a cloud platform resource processing method and apparatus, a computer device, and a storage medium.
Background
With the development of cloud computing technology, the cloud requirement of enterprise applications is increasing, and enterprises need to process a large amount of resources on a cloud platform. For example, the same enterprise has multiple tenants (i.e., multiple accounts) on one cloud platform, and thus, resources of the multiple tenants on the cloud platform need to be processed, which results in a very large processing amount. Therefore, how to conveniently process the resources of the enterprise on the cloud platform becomes very important.
In the conventional technology, resources of a single tenant are generally processed, so that when an enterprise has multiple tenants on the same cloud platform, the resources of each tenant need to be processed separately, and thus, it is difficult to process the resources of the multiple tenants on the cloud platform conveniently.
Disclosure of Invention
In view of the foregoing, it is necessary to provide a cloud platform resource processing method, apparatus, computer device and storage medium capable of conveniently processing multi-tenant resources.
A cloud platform resource processing method, the method comprising:
determining administrative domain information corresponding to the cloud platform configuration;
determining selected target object information from object information configured corresponding to the management domain information; object information configured corresponding to the management domain information comprises data center information of at least one data center and tenant information of at least one tenant under the cloud platform;
according to the selected target object information, determining target data center information from the configured data center information and determining target tenant information from the configured tenant information; the target tenant information and the target data center information are at least one;
determining a selected target service component from at least one service component configured corresponding to the target data center information;
and calling a corresponding interface of the target data center information in a target data center corresponding to the cloud platform through the target service component, and correspondingly processing the resource information of the target tenant corresponding to the target tenant information.
In one embodiment, the determining target data center information from the configured data center information and target tenant information from the configured tenant information according to the selected target object information includes:
when the target object information is selected data center information, then
Taking the selected data center information as target data center information;
determining target tenant information from at least one of the tenant information associated with the target data center information; the target tenant information is part or all of the associated tenant information.
In one embodiment, the determining target data center information from the configured data center information and target tenant information from the configured tenant information according to the selected target object information includes:
when the target object information is selected tenant information, then
Taking the selected tenant information as target tenant information;
determining target data center information from at least one data center information associated with the target tenant information; the target data center information is part or all of the associated data center information.
In one embodiment, the invoking, by the target service component, a corresponding interface of the target data center information in a target data center corresponding to the cloud platform, and the correspondingly processing the resource information of the target tenant corresponding to the target tenant information includes:
calling an interface of a resource list corresponding to the target tenant information in a target data center corresponding to the target data center information through the target service component;
acquiring and displaying the resource list through an interface of the resource list;
detecting an operation process for a resource item in the resource list;
and calling an operation processing interface corresponding to the operation processing in the target data center through the target service component, and correspondingly processing the resource information corresponding to the resource item.
In one embodiment, the determining the regulatory domain information corresponding to the cloud platform configuration comprises:
acquiring a cloud platform list; the cloud platform list comprises options of a plurality of cloud platforms;
acquiring an option of a cloud platform selected from the cloud platform list;
and determining the management domain corresponding to the selected option, and searching the management domain information corresponding to the determined management domain from a management domain expansion table.
In one embodiment, the method further comprises:
taking the cloud platform user authentication information of the cloud platform to be configured as management domain information of a corresponding management domain; the number of the cloud platforms to be configured is at least one;
recording the information of each management domain in the management domain expansion table in sequence;
and encrypting the management domain expansion table and storing the management domain expansion table in a database.
In one embodiment, the data center information is a region number of the data center; the tenant information is authorization information of the tenant; the method further comprises the following steps:
for each management domain, determining a data center to be configured and tenants to be configured under the cloud platform corresponding to the management domain;
correspondingly configuring the area number of the data center to be configured and the management domain information corresponding to the management domain;
correspondingly configuring the authorization information of the tenant to be configured and the management domain information corresponding to the management domain;
and associating the area number of the data center and the authorization information of the tenant, which are configured corresponding to the same management domain information, according to the association relationship between the corresponding data center and the tenant.
A cloud platform resource processing apparatus, the apparatus comprising:
the management domain information determining module is used for determining management domain information corresponding to the cloud platform configuration;
the target object information selection module is used for determining selected target object information from object information configured corresponding to the management domain information; object information configured corresponding to the management domain information comprises data center information of at least one data center and tenant information of at least one tenant under the cloud platform;
the target object information determining module is used for determining target data center information from the configured data center information and target tenant information from the configured tenant information according to the selected target object information; the target tenant information and the target data center information are at least one;
a target service component determination module for determining a selected target service component from at least one service component configured corresponding to the target data center information;
and the resource processing module is used for calling a corresponding interface of the target data center information in a target data center corresponding to the cloud platform through the target service component, and correspondingly processing the resource information of the target tenant corresponding to the target tenant information.
A computer device comprising a memory and a processor, the memory having stored therein a computer program, which when executed by the processor, causes the processor to perform the steps of the cloud platform resource processing method according to embodiments of the present application.
A computer-readable storage medium, having a computer program stored thereon, which, when executed by a processor, causes the processor to perform the steps of the cloud platform resource processing method according to the embodiments of the present application.
The cloud platform resource processing method, the cloud platform resource processing device, the computer equipment and the storage medium are characterized in that management domain information corresponding to cloud platform configuration is determined, then selected target object information is determined from object information corresponding to the management domain information configuration, at least one target data center information is determined from configured data center information according to the selected target object information, at least one target tenant information is determined from configured tenant information, a selected target service component is determined from at least one service component corresponding to the target data center information configuration, finally a corresponding interface of the target data center information in a target data center corresponding to the cloud platform is called through the target service component, and corresponding processing is carried out on the resource information of the target tenant corresponding to the target tenant information. By correspondingly configuring the object information to the management domain information, at least one target data center information and at least one target tenant information can be conveniently determined, and the resource information of the target tenant corresponding to the target tenant information on the cloud platform is processed, so that the multi-tenant resource can be conveniently processed.
Drawings
FIG. 1 is a diagram of an application environment of a method for cloud platform resource processing in one embodiment;
FIG. 2 is a schematic flow chart illustrating a method for cloud platform resource processing according to an embodiment;
FIG. 3 is a schematic configuration diagram of a cloud platform resource processing method in one embodiment;
FIG. 4 is a schematic overall flowchart of a cloud platform resource processing method in one embodiment;
FIG. 5 is a block diagram of a cloud platform resource processing apparatus according to an embodiment;
FIG. 6 is a block diagram of a cloud platform resource processing apparatus according to another embodiment;
FIG. 7 is a diagram illustrating an internal structure of a computer device according to an embodiment.
Detailed Description
In order to make the objects, technical solutions and advantages of the present application more apparent, the present application is described in further detail below with reference to the accompanying drawings and embodiments. It should be understood that the specific embodiments described herein are merely illustrative of the present application and are not intended to limit the present application.
The cloud platform resource processing method provided by the application can be applied to the application environment shown in fig. 1. Wherein the computer device 102 communicates with the cloud platform 104 over a network. The computer device 102 processes the corresponding resource information on the cloud platform 104 by calling the interface. The computer device 102 may be a terminal or a server, or a system of a terminal and a server, and is implemented by interaction between the terminal and the server. Cloud platform 104 (i.e., a cloud computing platform) refers to a service platform based on hardware resources and software resources, which may provide computing, networking, and storage services.
In one embodiment, as shown in fig. 2, a cloud platform resource processing method is provided, which is described by taking the method as an example applied to the computer device in fig. 1, and includes the following steps:
s202, management domain information corresponding to the cloud platform configuration is determined.
The cloud platform (i.e., a cloud computing platform or a cloud vendor) refers to a service platform based on hardware resources and software resources, and may provide computing, networking and storage services. And the management domain is used for configuring the information under the cloud platform and the incidence relation between the information. One management domain corresponds to one cloud platform. The management domain information is information corresponding to a management domain.
In an embodiment, the management domain information may be cloud platform user authentication information of a user on a cloud platform corresponding to the management domain. The cloud platform user authentication information is information used for performing identity authentication on a user when a cloud platform interface is called. For example, one piece of regulatory domain information may be "key 1: userName, value 1: test, key 2: password, value 2: test123 ".
In one embodiment, a plurality of management domains may be configured in advance for a plurality of cloud platforms. The management domain corresponds to the cloud platform one to one. In one embodiment, the administrative domain information for multiple administrative domains may be configured in the form of an administrative domain expansion table.
In one embodiment, the computer device may determine, according to the cloud platform selected by the user, management domain information of a management domain configured corresponding to the selected cloud platform.
S204, determining selected target object information from the object information configured corresponding to the management domain information; the object information configured corresponding to the management domain information comprises data center information of at least one data center under the cloud platform and tenant information of at least one tenant.
The data center is a data center under a cloud platform. A cloud platform includes at least one data center. One cloud platform can be divided into a plurality of data centers (such as south China data center and north China data center) according to different regions. The data center information is information corresponding to the data center. In one embodiment, the data center information may include a Region number (Region ID) of the data center.
And the tenant is an account registered on the cloud platform by the user. It is to be appreciated that a user can register one or more accounts on a cloud platform, i.e., a user can have one or more tenants on a cloud platform. And the tenant information is account information. In one embodiment, the tenant information may be authorization information of the tenant (for example, information such as an account and a password registered by the tenant on the cloud platform).
In one embodiment, the computer device may display an option of an object corresponding to object information of the management domain information configuration, that is, the computer device may display an option of a data center corresponding to data center information of the management domain information configuration and an option of a tenant corresponding to tenant information of the management domain information configuration, and then the user selects a target object according to the option of the object, and the computer device determines corresponding target object information according to the option of the target object selected by the user.
In one embodiment, a user may select at least one of data center information and tenant information corresponding to the administrative domain information configuration. That is, the user may select at least one data center without selecting a tenant. The user may also select at least one tenant instead of the data center. The user may also select both at least one data center and at least one tenant.
S206, according to the selected target object information, determining target data center information from the configured data center information and determining target tenant information from the configured tenant information; the target tenant information and the target data center information are at least one.
The configured data center information is data center information configured in advance corresponding to the management domain information. The target data center information is information of the target data center. And the target data center is used for providing an interface so as to process the resource information of the target tenant corresponding to the target tenant information. It is to be understood that the target data center information is at least one of the configured data center information. The configured tenant information is tenant information configured in advance corresponding to the management domain information. And the target tenant information is the tenant information of the target tenant. And the target tenant is a tenant needing to process the corresponding resource information. That is, the resource information of the target tenant needs to be processed. It is understood that the target tenant information is at least one of the configured tenant information.
Specifically, the target object information may be at least one of data center information and tenant information configured corresponding to the management domain information.
In one embodiment, when the selected target object information is at least one data center information, the computer device may use the selected data center information as the target data center information, and determine the target tenant information from the configured tenant information according to the target data center information.
In one embodiment, when the selected target object information is at least one tenant information, the computer device may take the selected tenant information as target tenant information and determine the target data center information from the configured data center information according to the target tenant information.
In one embodiment, when the selected target object information is at least one of data center information and tenant information, the computer device may take the selected data center information as the target data center information and the selected tenant information as the target tenant information.
And S208, determining the selected target service component from at least one service component configured corresponding to the target data center information.
The service component is provided by the cloud platform and used for performing adaptive conversion on a data format transmitted between the computer equipment and an interface between the cloud platform. The same cloud platform may provide at least one service component. Different service components, such as resilient computing services and load balancing services, may implement different functions.
In one embodiment, a computer device may present options for at least one service component of a configuration from which a user may select a service component, the computer device targeting the service component selected by the user.
It can be understood that the data center of the cloud platform may provide at least one service component, and the user may configure at least one of the service components provided by the data center and data center information corresponding to the data center according to actual requirements. That is, all or part of the service components provided by the respective data centers may be configured corresponding to the data center information. As shown in fig. 3, for data center information corresponding to the south china data center, service components of elastic computing services and service components of load balancing services are correspondingly configured. And the service components of the elastic computing service are correspondingly configured aiming at the data center information corresponding to the North China data center.
And S210, calling a corresponding interface of the target data center information in the target data center corresponding to the cloud platform through the target service component, and correspondingly processing the resource information of the target tenant corresponding to the target tenant information.
The resource information is information of resources stored in a data center of the cloud platform by the tenant.
Specifically, the computer device may determine, according to the management domain information, the target data center information, the target service component, and the target tenant, a corresponding interface of the target data center information in the target data center corresponding to the cloud platform, and perform corresponding processing on the resource information of the target tenant corresponding to the target tenant information by calling the interface.
The cloud platform resource processing method comprises the steps of firstly determining management domain information corresponding to cloud platform configuration, then determining selected target object information from object information corresponding to the management domain information configuration, determining at least one target data center information from the configured data center information and at least one target tenant information from the configured tenant information according to the selected target object information, determining a selected target service component from at least one service component corresponding to the target data center information configuration, and finally calling a corresponding interface of the target data center information in a target data center corresponding to the cloud platform through the target service component to correspondingly process resource information of the target tenant corresponding to the target tenant information. By correspondingly configuring the object information to the management domain information, at least one target data center information and at least one target tenant information can be conveniently determined, and the resource information of the target tenant corresponding to the target tenant information on the cloud platform is processed, so that multi-tenant resources can be conveniently processed without independently processing resources of a single tenant. In addition, the service components can be flexibly and conveniently selected according to actual requirements.
In one embodiment, the step S206 of determining target data center information from the configured data center information and determining target tenant information from the configured tenant information according to the selected target object information specifically includes the following steps: when the target object information is the selected data center information, the selected data center information is used as the target data center information; determining target tenant information from at least one tenant information associated with the target data center information; the target tenant information is part or all of the associated tenant information.
In one embodiment, when the target object information is the selected data center information, the computer device takes the selected data center information as the target data center information and takes all of the at least one tenant information associated with the target data center information as the target tenant information.
In another embodiment, when the target object information is the selected data center information, the computer device uses the selected data center information as the target data center information and displays the option of the tenant corresponding to the at least one tenant information associated with the target data center information, the user can select the option of the at least one tenant according to actual requirements, and the computer device can use the tenant information corresponding to the option of the tenant selected by the user as the target tenant information.
In this embodiment, when the target object information is the selected data center information, the computer device may conveniently determine the target data center information and the target tenant information, thereby implementing convenient processing of the cloud platform resource information corresponding to the plurality of data centers and the plurality of tenants.
In one embodiment, the step S206 of determining target data center information from the configured data center information and determining target tenant information from the configured tenant information according to the selected target object information specifically includes the following steps: when the target object information is the selected tenant information, the selected tenant information is used as the target tenant information; determining target data center information from at least one data center information associated with the target tenant information; the target data center information is part or all of the associated data center information.
In one embodiment, when the target object information is the selected tenant information, the computer device takes the selected tenant information as the target tenant information and takes at least one data center information associated with the target tenant information as the target data center information.
In another embodiment, when the target object information is the selected tenant information, the computer device uses the selected tenant information as the target tenant information and displays the option of the data center corresponding to the at least one data center information associated with the target tenant information, the user can select the option of the at least one data center according to actual requirements, and the computer device can use the data center information corresponding to the option of the data center selected by the user as the target data center information.
In this embodiment, when the target object information is the selected tenant information, the computer device may conveniently determine the target tenant information and the target data center information, thereby implementing convenient processing of the cloud platform resource information corresponding to the multiple data centers and the multiple tenants.
In an embodiment, the step S210 calls, through the target service component, a corresponding interface of the target data center information in the target data center corresponding to the cloud platform, and performs corresponding processing on the resource information of the target tenant corresponding to the target tenant information, specifically includes the following steps: calling a resource list interface corresponding to target tenant information in a target data center corresponding to the target data center information through a target service component; acquiring and displaying a resource list through an interface of the resource list; detecting an operation processing for a resource item in a resource list; and calling an operation processing interface corresponding to operation processing in the target data center through the target service component, and correspondingly processing the resource information corresponding to the targeted resource item.
The interface of the resource list is used for acquiring the resource list from the cloud platform. The resource list is a list for showing brief information of resources stored on the cloud platform. A resource item is an item in a resource list. Each resource item corresponds to one resource information. The operation processing is an operation performed on a resource item in the resource list. The operation processing interface is an interface used for carrying out corresponding processing on corresponding resource information according to the operation processing on the resource items.
Specifically, the computer device may call, through the target service component, an interface of a resource list corresponding to target tenant information in a target data center corresponding to the target data center information, and then obtain and display the resource list through the interface of the resource list. The user can perform operation processing (such as operations of deletion, editing, moving and the like) on the resource items in the resource list, the computer device can detect the operation processing of the user on the resource items in the resource list, and then call an operation processing interface corresponding to the operation processing in the target data center through the target service component (for example, an interface corresponding to the deletion operation is a deletion interface), and perform corresponding processing on the resource information corresponding to the targeted resource items (for example, when the operation processing is deletion, the deletion interface is called, and the deletion processing is performed on the resource information corresponding to the resource items).
In this embodiment, the computer device obtains the resource list by calling the resource list interface, detects the operation processing for the resource items in the resource list, calls the interface corresponding to the operation processing, performs corresponding processing on the resource information corresponding to the resource items, and can conveniently perform various types of processing on the resource information on the cloud platform.
In an embodiment, the step of determining the management domain information corresponding to the cloud platform configuration in step S202 specifically includes the following steps: acquiring a cloud platform list; the cloud platform list comprises options of a plurality of cloud platforms; acquiring an option of a cloud platform selected from a cloud platform list; and determining the management domain corresponding to the selected option, and searching the management domain information corresponding to the determined management domain from the management domain expansion table.
The cloud platform list is a list used for showing options of the cloud platform to be selected. The cloud platforms in the cloud platform list are cloud platforms in which management domain information of corresponding management domains is pre-configured. The management domain expansion table is used for recording management domain information.
Specifically, the computer device may obtain and display a cloud platform list, and the user may select an option of a cloud platform in the cloud platform list. And the computer equipment determines the management domain corresponding to the option of the cloud platform according to the selected option of the cloud platform, and then searches the management domain information corresponding to the determined management domain from the management domain expansion table.
In this embodiment, the computer device may display the cloud platform list, and the user may select from options of a plurality of cloud platforms, so that the resource information on the plurality of cloud platforms can be processed conveniently.
In one embodiment, the method further comprises the steps of: taking the cloud platform user authentication information of the cloud platform to be configured as management domain information of a corresponding management domain; at least one cloud platform to be configured; sequentially recording the information of each management domain in a management domain expansion table; and encrypting the management domain expansion table and storing the management domain expansion table in a database.
The cloud platform user authentication information is information used for performing identity authentication on a user when a cloud platform interface is called.
In one embodiment, the cloud platform user authentication information may include information such as a user name and a password.
Specifically, the computer device records each piece of management domain information in the management domain expansion table in sequence, and the management domain information of each management domain corresponds to one piece of information in the management domain expansion table.
In one embodiment, the computer device may encrypt the information configured in the management domain expansion table by using RSA encryption algorithm (rsaallgorithm, which is an asymmetric encryption algorithm) and store the encrypted information in the database. In one embodiment, the management domain expansion table may record the configuration item information in a Key-Value pair (Key-Value) manner, and encrypt the configuration item Value in an RSA encryption manner.
For example, one piece of information in the management domain expansion table may be: "key 1: userName, value 1: test, key 2: password, value 2: test123 ".
In this embodiment, the management domain information of each management domain is recorded in the form of a management domain expansion table, and each piece of information in the expansion table can be set according to actual requirements, so that the cloud platform user authentication information of multiple cloud platforms can be compatible. In addition, a plurality of cloud platforms can be configured, so that the resource information on the cloud platforms can be conveniently processed.
In one embodiment, the data center information is a zone number of the data center. The tenant information is authorization information of the tenant. The method also includes the steps of: for each management domain, determining a data center to be configured and tenants to be configured under the cloud platform corresponding to the management domain; correspondingly configuring the area number of the data center to be configured and management domain information corresponding to the management domain; correspondingly configuring the authorization information of the tenant to be configured and the management domain information corresponding to the management domain; and associating the area number of the data center and the authorization information of the tenant, which are configured corresponding to the same management domain information, according to the association relationship between the corresponding data center and the tenant.
The Region number (Region ID) is a number corresponding to a data center of each different Region in the cloud platform. And the authorization information of the tenant is the authentication information of the account of the tenant logging in the cloud platform.
In one embodiment, the authorization information of the tenant may include information such as an account and a password of the tenant.
It can be understood that each cloud platform corresponds to at least one data center and at least one tenant, and the data center to be configured and the tenant to be configured corresponding to the cloud platform can be determined from the at least one data center and the at least one tenant corresponding to the cloud platform according to actual needs of users. The data center to be configured and the tenants to be configured are at least one.
It can be understood that data centers and tenants corresponding to the same cloud platform have an association relationship. Such as: the cloud platform comprises a data center A, a data center B, a tenant a and a tenant B, wherein the tenant a stores resources on the data center B, the tenant B stores resources on the data center A and the data center B, an association relationship exists between the data center B and the tenant a, and the data center A and the data center B have an association relationship with the tenant B. And the computer equipment associates the area number of the data center and the authorization information of the tenant, which are configured corresponding to the same management domain information, according to the association relationship between the corresponding data center and the tenant.
Fig. 3 is a schematic diagram of object information correspondingly configured in one management domain. The management domain in fig. 3 is configured corresponding to a certain cloud (it can be understood that a certain cloud is the name of a certain cloud platform), and the south china data center and the north china data center are two data centers under a certain cloud, and data center information of the two data centers is configured corresponding to management domain information. Tenant user1, tenant user2, and tenant user3 are three accounts (i.e., tenants) of a user in a certain cloud, and the tenant information of the three tenants is configured corresponding to the management domain information. Because resources are stored on south china data center by tenant user1 and tenant user2 in the cloud platform, tenant information of tenant user1 and tenant user2 are respectively associated with data center information of south china data center. Tenant user1, tenant user2, and tenant user3 all store resources on north-china data center, and thus, the tenant information of tenant user1, tenant user2, and tenant user3 are respectively associated with the data center information of north-china data center.
In one embodiment, the computer device may record authorization information of the tenant to be configured in JSON format (i.e., JavaScript Object Notation, which is a lightweight data exchange format). For example, the authorization information of the tenant may be recorded as:
{"accessKeyID":"xxxxxx","accessKeySecret":"xxxxxx"}
the accessKeyID represents an account of the tenant, and a colon corresponding to the accessKeyID is followed by a value of the account of the corresponding tenant. The accessKeySecret represents the password of the tenant, and the corresponding colon is the value of the password of the tenant later.
In one embodiment, the computer device may encrypt the tenant's authorization information via an RSA encryption algorithm (RSA algorithm, an asymmetric encryption algorithm) and store it in the database.
In this embodiment, the area number of the data center and the authorization information of the tenant are configured corresponding to the management domain information, and the area number of the data center corresponding to the same management domain information and the authorization information of the tenant are associated according to the association relationship, so that the data center information and the tenant information only need to be configured and associated once, and the same data center information or the same tenant information does not need to be configured for multiple times. In addition, because the same management domain information can be correspondingly configured with a plurality of data center information and a plurality of tenant information, the cloud platform resource information corresponding to a plurality of data centers and a plurality of tenants can be conveniently processed. In addition, the authorization information of the tenant to be configured is recorded in the JSON format, and the method can be suitable for different types of authorization information.
Fig. 4 is a schematic overall flow chart of the cloud platform resource processing method. The method comprises the steps of firstly configuring a management domain corresponding to a cloud platform, then configuring data center information corresponding to the management domain information of the management domain, then configuring service component information corresponding to the data center information, then configuring tenant information corresponding to the management domain information, then associating the data center information with the tenant information, and after configuration is finished, calling a corresponding interface through the configuration information to correspondingly process corresponding resource information on the cloud platform.
It should be understood that, although the steps in the flowchart of fig. 2 are shown in order as indicated by the arrows, the steps are not necessarily performed in order as indicated by the arrows. The steps are not performed in the exact order shown and described, and may be performed in other orders, unless explicitly stated otherwise. Moreover, at least a portion of the steps in fig. 2 may include multiple steps or multiple stages, which are not necessarily performed at the same time, but may be performed at different times, which are not necessarily performed in sequence, but may be performed in turn or alternately with other steps or at least a portion of the other steps or stages.
In one embodiment, as shown in fig. 5, there is provided a cloud platform resource processing apparatus 500, including: a regulatory domain information determination module 502, a target object information selection module 504, a target object information determination module 506, a target service component determination module 508, and a resource processing module 510, wherein:
a management domain information determining module 502, configured to determine management domain information corresponding to the cloud platform configuration.
A target object information selection module 504 for determining selected target object information from object information configured corresponding to the management domain information; the object information configured corresponding to the management domain information comprises data center information of at least one data center under the cloud platform and tenant information of at least one tenant.
A target object information determining module 506, configured to determine target data center information from the configured data center information and target tenant information from the configured tenant information according to the selected target object information; the target tenant information and the target data center information are at least one.
A target service component determination module 508, configured to determine the selected target service component from the at least one service component configured corresponding to the target data center information.
The resource processing module 510 is configured to call, through the target service component, a corresponding interface of the target data center information in a target data center corresponding to the cloud platform, and perform corresponding processing on the resource information of the target tenant corresponding to the target tenant information.
In one embodiment, the target object information determining module 506 is further configured to, when the target object information is the selected data center information, take the selected data center information as the target data center information; determining target tenant information from at least one tenant information associated with the target data center information; the target tenant information is part or all of the associated tenant information.
In one embodiment, the target object information determining module 506 is further configured to, when the target object information is the selected tenant information, take the selected tenant information as the target tenant information; determining target data center information from at least one data center information associated with the target tenant information; the target data center information is part or all of the associated data center information.
In one embodiment, the resource processing module 510 is further configured to invoke, through the target service component, an interface of a resource list corresponding to target tenant information in a target data center corresponding to the target data center information; acquiring and displaying a resource list through an interface of the resource list; detecting an operation processing for a resource item in a resource list; and calling an operation processing interface corresponding to operation processing in the target data center through the target service component, and correspondingly processing the resource information corresponding to the targeted resource item.
In one embodiment, the management domain information determining module 502 is further configured to obtain a cloud platform list; the cloud platform list comprises options of a plurality of cloud platforms; acquiring an option of a cloud platform selected from a cloud platform list; and determining the management domain corresponding to the selected option, and searching the management domain information corresponding to the determined management domain from the management domain expansion table.
In one embodiment, as shown in fig. 6, the cloud platform resource processing apparatus 500 further includes:
a configuration module 512, configured to use the cloud platform user authentication information of the cloud platform to be configured as management domain information of a corresponding management domain; at least one cloud platform to be configured; sequentially recording the information of each management domain in a management domain expansion table; and encrypting the management domain expansion table and storing the management domain expansion table in a database.
In one embodiment, the data center information is a zone number of the data center. The tenant information is authorization information of the tenant. The configuration module 512 is further configured to determine, for each management domain, a data center to be configured and tenants to be configured under the cloud platform corresponding to the management domain; correspondingly configuring the area number of the data center to be configured and management domain information corresponding to the management domain; correspondingly configuring the authorization information of the tenant to be configured and the management domain information corresponding to the management domain; and associating the area number of the data center and the authorization information of the tenant, which are configured corresponding to the same management domain information, according to the association relationship between the corresponding data center and the tenant.
In the cloud platform resource processing device, firstly, management domain information corresponding to cloud platform configuration is determined, then, selected target object information is determined from object information corresponding to the management domain information configuration, at least one target data center information is determined from configured data center information according to the selected target object information, at least one target tenant information is determined from configured tenant information, a selected target service component is determined from at least one service component corresponding to the target data center information configuration, and finally, a corresponding interface of the target data center information in a target data center corresponding to the cloud platform is called through the target service component, and corresponding processing is performed on resource information of the target tenant corresponding to the target tenant information. By correspondingly configuring the object information to the management domain information, at least one target data center information and at least one target tenant information can be conveniently determined, and the resource information of the target tenant corresponding to the target tenant information on the cloud platform is processed, so that multi-tenant resources can be conveniently processed without independently processing resources of a single tenant. In addition, the service components can be flexibly and conveniently selected according to actual requirements.
For specific limitations of the cloud platform resource processing apparatus, reference may be made to the above limitations of the cloud platform resource processing method, which is not described herein again. The modules in the cloud platform resource processing device may be wholly or partially implemented by software, hardware and a combination thereof. The modules can be embedded in a hardware form or independent from a processor in the computer device, and can also be stored in a memory in the computer device in a software form, so that the processor can call and execute operations corresponding to the modules.
In one embodiment, a computer device is provided, which may be a terminal, and its internal structure diagram may be as shown in fig. 7. The computer device includes a processor, a memory, a communication interface, a display screen, and an input device connected by a system bus. Wherein the processor of the computer device is configured to provide computing and control capabilities. The memory of the computer device comprises a nonvolatile storage medium and an internal memory. The non-volatile storage medium stores an operating system and a computer program. The internal memory provides an environment for the operation of an operating system and computer programs in the non-volatile storage medium. The communication interface of the computer device is used for carrying out wired or wireless communication with an external terminal, and the wireless communication can be realized through WIFI, an operator network, NFC (near field communication) or other technologies. The computer program is executed by a processor to implement a cloud platform resource processing method. The display screen of the computer equipment can be a liquid crystal display screen or an electronic ink display screen, and the input device of the computer equipment can be a touch layer covered on the display screen, a key, a track ball or a touch pad arranged on the shell of the computer equipment, an external keyboard, a touch pad or a mouse and the like.
Those skilled in the art will appreciate that the architecture shown in fig. 7 is merely a block diagram of some of the structures associated with the disclosed aspects and is not intended to limit the computing devices to which the disclosed aspects apply, as particular computing devices may include more or less components than those shown, or may combine certain components, or have a different arrangement of components.
In one embodiment, a computer device is further provided, which includes a memory and a processor, the memory stores a computer program, and the processor implements the steps of the above method embodiments when executing the computer program.
In an embodiment, a computer-readable storage medium is provided, on which a computer program is stored which, when being executed by a processor, carries out the steps of the above-mentioned method embodiments.
It will be understood by those skilled in the art that all or part of the processes of the methods of the embodiments described above can be implemented by hardware instructions of a computer program, which can be stored in a non-volatile computer-readable storage medium, and when executed, can include the processes of the embodiments of the methods described above. Any reference to memory, storage, database or other medium used in the embodiments provided herein can include at least one of non-volatile and volatile memory. Non-volatile Memory may include Read-Only Memory (ROM), magnetic tape, floppy disk, flash Memory, optical storage, or the like. Volatile Memory can include Random Access Memory (RAM) or external cache Memory. By way of illustration and not limitation, RAM can take many forms, such as Static Random Access Memory (SRAM) or Dynamic Random Access Memory (DRAM), among others.
The technical features of the above embodiments can be arbitrarily combined, and for the sake of brevity, all possible combinations of the technical features in the above embodiments are not described, but should be considered as the scope of the present specification as long as there is no contradiction between the combinations of the technical features.
The above-mentioned embodiments only express several embodiments of the present application, and the description thereof is more specific and detailed, but not construed as limiting the scope of the invention. It should be noted that, for a person skilled in the art, several variations and modifications can be made without departing from the concept of the present application, which falls within the scope of protection of the present application. Therefore, the protection scope of the present patent shall be subject to the appended claims.

Claims (10)

1. A cloud platform resource processing method is characterized by comprising the following steps:
determining administrative domain information corresponding to the cloud platform configuration;
determining selected target object information from object information configured corresponding to the management domain information; object information configured corresponding to the management domain information comprises data center information of at least one data center and tenant information of at least one tenant under the cloud platform;
according to the selected target object information, determining target data center information from the configured data center information and determining target tenant information from the configured tenant information; the target tenant information and the target data center information are at least one;
determining a selected target service component from at least one service component configured corresponding to the target data center information;
and calling a corresponding interface of the target data center information in a target data center corresponding to the cloud platform through the target service component, and correspondingly processing the resource information of the target tenant corresponding to the target tenant information.
2. The method of claim 1, wherein determining target data center information from the configured data center information and target tenant information from the configured tenant information according to the selected target object information comprises:
when the target object information is selected data center information, then
Taking the selected data center information as target data center information;
determining target tenant information from at least one of the tenant information associated with the target data center information; the target tenant information is part or all of the associated tenant information.
3. The method of claim 1, wherein determining target data center information from the configured data center information and target tenant information from the configured tenant information according to the selected target object information comprises:
when the target object information is selected tenant information, then
Taking the selected tenant information as target tenant information;
determining target data center information from at least one data center information associated with the target tenant information; the target data center information is part or all of the associated data center information.
4. The method according to claim 1, wherein the invoking, by the target service component, a corresponding interface of the target data center information in a target data center corresponding to the cloud platform, and the corresponding processing of the resource information of the target tenant corresponding to the target tenant information includes:
calling an interface of a resource list corresponding to the target tenant information in a target data center corresponding to the target data center information through the target service component;
acquiring and displaying the resource list through an interface of the resource list;
detecting an operation process for a resource item in the resource list;
and calling an operation processing interface corresponding to the operation processing in the target data center through the target service component, and correspondingly processing the resource information corresponding to the resource item.
5. The method of claim 1, wherein determining administrative domain information corresponding to a cloud platform configuration comprises:
acquiring a cloud platform list; the cloud platform list comprises options of a plurality of cloud platforms;
acquiring an option of a cloud platform selected from the cloud platform list;
and determining the management domain corresponding to the selected option, and searching the management domain information corresponding to the determined management domain from a management domain expansion table.
6. The method of claim 5, further comprising:
taking the cloud platform user authentication information of the cloud platform to be configured as management domain information of a corresponding management domain; the number of the cloud platforms to be configured is at least one;
recording the information of each management domain in the management domain expansion table in sequence;
and encrypting the management domain expansion table and storing the management domain expansion table in a database.
7. The method of claim 6, wherein the data center information is a regional number of the data center; the tenant information is authorization information of the tenant; the method further comprises the following steps:
for each management domain, determining a data center to be configured and tenants to be configured under the cloud platform corresponding to the management domain;
correspondingly configuring the area number of the data center to be configured and the management domain information corresponding to the management domain;
correspondingly configuring the authorization information of the tenant to be configured and the management domain information corresponding to the management domain;
and associating the area number of the data center and the authorization information of the tenant, which are configured corresponding to the same management domain information, according to the association relationship between the corresponding data center and the tenant.
8. A cloud platform resource processing apparatus, the apparatus comprising:
the management domain information determining module is used for determining management domain information corresponding to the cloud platform configuration;
the target object information selection module is used for determining selected target object information from object information configured corresponding to the management domain information; object information configured corresponding to the management domain information comprises data center information of at least one data center and tenant information of at least one tenant under the cloud platform;
the target object information determining module is used for determining target data center information from the configured data center information and target tenant information from the configured tenant information according to the selected target object information; the target tenant information and the target data center information are at least one;
a target service component determination module for determining a selected target service component from at least one service component configured corresponding to the target data center information;
and the resource processing module is used for calling a corresponding interface of the target data center information in a target data center corresponding to the cloud platform through the target service component, and correspondingly processing the resource information of the target tenant corresponding to the target tenant information.
9. A computer device comprising a memory and a processor, the memory storing a computer program, characterized in that the processor, when executing the computer program, implements the steps of the method of any of claims 1 to 7.
10. A computer-readable storage medium, on which a computer program is stored, which, when being executed by a processor, carries out the steps of the method of any one of claims 1 to 7.
CN202010540969.3A 2020-06-15 2020-06-15 Cloud platform resource processing method and device, computer equipment and storage medium Active CN111708588B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN202010540969.3A CN111708588B (en) 2020-06-15 2020-06-15 Cloud platform resource processing method and device, computer equipment and storage medium

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN202010540969.3A CN111708588B (en) 2020-06-15 2020-06-15 Cloud platform resource processing method and device, computer equipment and storage medium

Publications (2)

Publication Number Publication Date
CN111708588A true CN111708588A (en) 2020-09-25
CN111708588B CN111708588B (en) 2023-03-21

Family

ID=72540357

Family Applications (1)

Application Number Title Priority Date Filing Date
CN202010540969.3A Active CN111708588B (en) 2020-06-15 2020-06-15 Cloud platform resource processing method and device, computer equipment and storage medium

Country Status (1)

Country Link
CN (1) CN111708588B (en)

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104717094A (en) * 2013-12-16 2015-06-17 株式会社日立制作所 Management server and control method for management server
CN108132775A (en) * 2016-11-30 2018-06-08 新华三技术有限公司 A kind of tenant manages system and method
US20180181434A1 (en) * 2016-12-22 2018-06-28 Vmware, Inc. Remote operation authorization between pairs of sites with pre-established trust
CN109729071A (en) * 2018-11-28 2019-05-07 国云科技股份有限公司 A kind of vmware multi-tenant management method suitable for cloudy management
CN111279314A (en) * 2017-09-30 2020-06-12 甲骨文国际公司 Providing tenant isolation in a multi-tenant API gateway using micro-service containers

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104717094A (en) * 2013-12-16 2015-06-17 株式会社日立制作所 Management server and control method for management server
CN108132775A (en) * 2016-11-30 2018-06-08 新华三技术有限公司 A kind of tenant manages system and method
US20180181434A1 (en) * 2016-12-22 2018-06-28 Vmware, Inc. Remote operation authorization between pairs of sites with pre-established trust
CN111279314A (en) * 2017-09-30 2020-06-12 甲骨文国际公司 Providing tenant isolation in a multi-tenant API gateway using micro-service containers
CN109729071A (en) * 2018-11-28 2019-05-07 国云科技股份有限公司 A kind of vmware multi-tenant management method suitable for cloudy management

Also Published As

Publication number Publication date
CN111708588B (en) 2023-03-21

Similar Documents

Publication Publication Date Title
US10587591B2 (en) Generating a password
JP6898297B2 (en) Service processing methods, devices, and servers
US9871662B2 (en) Systems and methods for digital certificate and encryption key management
US8831570B2 (en) Systems and methods for providing location-based application authentication using location token service
US9055060B2 (en) Cloud service system based on enhanced security function and method for supporting the same
US7571473B1 (en) Identity management system and method
CN107645486B (en) login authentication method and device
US9576147B1 (en) Security policy application through data tagging
US8544072B1 (en) Single sign-on service
US10127317B2 (en) Private cloud API
US9372987B1 (en) Apparatus and method for masking a real user controlling synthetic identities
US20150278504A1 (en) User authentication based on established network activity
US11681824B2 (en) Consent-driven privacy disclosure control processing
US11592966B2 (en) Systems and methods for SaaS overlays using embedded browser
US9438598B2 (en) Securely updating information identifying services accessible via keys
CN105516059A (en) Resource access control method and device
CN103036852B (en) A kind of method and device realizing network entry
US20190318108A1 (en) Service for users to voluntarily self-identify in over the top (ott) messaging
CN106304022A (en) Mobile terminal and the processing method to log-on message thereof
US10230564B1 (en) Automatic account management and device registration
CN111708588B (en) Cloud platform resource processing method and device, computer equipment and storage medium
CN111597564A (en) Data access and permission configuration method, device, terminal and storage medium
US11784996B2 (en) Runtime credential requirement identification for incident response
US20200053166A1 (en) Global sign-out on shared devices
JP6163170B2 (en) Service cooperation system, service cooperation apparatus, terminal device, service cooperation method, and service cooperation program

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant