CN114666159B - Cloud service system, method, device, equipment and medium - Google Patents
Cloud service system, method, device, equipment and medium Download PDFInfo
- Publication number
- CN114666159B CN114666159B CN202210417787.6A CN202210417787A CN114666159B CN 114666159 B CN114666159 B CN 114666159B CN 202210417787 A CN202210417787 A CN 202210417787A CN 114666159 B CN114666159 B CN 114666159B
- Authority
- CN
- China
- Prior art keywords
- target
- data
- identification information
- cloud server
- database
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
- 238000000034 method Methods 0.000 title claims abstract description 40
- 238000012795 verification Methods 0.000 claims abstract description 19
- 238000012545 processing Methods 0.000 claims description 36
- 230000007246 mechanism Effects 0.000 claims description 26
- 230000004048 modification Effects 0.000 claims description 17
- 238000012986 modification Methods 0.000 claims description 17
- 238000004590 computer program Methods 0.000 claims description 14
- 238000004891 communication Methods 0.000 claims description 13
- 230000001360 synchronised effect Effects 0.000 claims description 12
- 238000000586 desensitisation Methods 0.000 claims description 8
- 230000000875 corresponding effect Effects 0.000 description 127
- 238000010586 diagram Methods 0.000 description 26
- 230000008569 process Effects 0.000 description 8
- 230000006870 function Effects 0.000 description 5
- 230000002093 peripheral effect Effects 0.000 description 2
- 238000012546 transfer Methods 0.000 description 2
- 230000004075 alteration Effects 0.000 description 1
- 238000003491 array Methods 0.000 description 1
- 230000005540 biological transmission Effects 0.000 description 1
- 235000019800 disodium phosphate Nutrition 0.000 description 1
- 230000000694 effects Effects 0.000 description 1
- 238000000802 evaporation-induced self-assembly Methods 0.000 description 1
- 238000004519 manufacturing process Methods 0.000 description 1
- 230000003287 optical effect Effects 0.000 description 1
- 230000008520 organization Effects 0.000 description 1
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/083—Network architectures or network communication protocols for network security for authentication of entities using passwords
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/01—Protocols
- H04L67/10—Protocols in which an application is distributed across nodes in the network
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/01—Protocols
- H04L67/10—Protocols in which an application is distributed across nodes in the network
- H04L67/1095—Replication or mirroring of data, e.g. scheduling or transport for data synchronisation between network nodes
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/14—Session management
- H04L67/146—Markers for unambiguous identification of a particular session, e.g. session cookie or URL-encoding
Landscapes
- Engineering & Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Hardware Design (AREA)
- Computer Security & Cryptography (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Information Transfer Between Computers (AREA)
- Management, Administration, Business Operations System, And Electronic Commerce (AREA)
Abstract
The application discloses a cloud service system, a method, a device, equipment and a medium, wherein a client in the system sends a login request to a central cloud server after receiving a target account number and a target password of a user; after receiving the login request, the central cloud server acquires target server identification information corresponding to the target account and sends the target server identification information to the client according to the corresponding relation between the pre-stored user account and the server identification information of the government cloud server after the password passes verification according to the target account and the target password carried in the login request; the client sends a service access request to the target government cloud server according to the received target server identification information, and receives service data corresponding to the target government cloud server according to the service access request; when the clients of the users access the service, the same government cloud server corresponds to the same client, so that the data consistency obtained by the same service access of the same client is ensured.
Description
Technical Field
The present application relates to the field of cloud services, and in particular, to a cloud service system, method, apparatus, device, and medium.
Background
The staff in the intelligent community serving the community owner is typically the staff of the property company, the gridding member of the street or the social staff. However, in existing old cells, open cells and semi-open cells, there is generally no corresponding property manager, but the community staff of the government provides basic property services.
Therefore, in the existing central cloud server and government cloud server, services related to property management need to be deployed, and meanwhile, both staff of a property company and community staff of a government street can access services through the government cloud server, wherein the government cloud server comprises a government cloud server established by a government and a government specified cloud server of an enterprise cloud providing government service.
Fig. 1 is a schematic diagram of a multi-cloud deployment scenario provided in the prior art, as shown in fig. 1, a client sends a request carrying an IP of the client itself in an external network to a central cloud server, where the central cloud server is a computer domain name system (hypertext transmission protocol Domain NAME SYSTEM, HTTPDNS) server adopting a hypertext transfer protocol, and the request is a target IP of a government cloud server for obtaining an accessible service in the external network; the center cloud server sends the IP carried in the request to an IP positioning server, determines target position information corresponding to the client, determines a target IP of a target government cloud server closest to the client according to the target position information and the pre-stored position information of each government cloud server providing the same service and the IP of the government cloud server in an external network, and sends the target IP to the client; and the client sends a service access request to a target government cloud server of the target IP according to the target IP.
However, in the prior art, after the position of the client is changed, the government cloud server closest to the client is different, and the data stored in the government cloud server is different, so that even if the same service access is performed, the data which can be accessed by the client is also different. Therefore, the data consistency obtained by the same service access to the same client cannot be ensured in the prior art.
Disclosure of Invention
The application provides a cloud service system, a cloud service method, cloud service device, cloud service equipment and cloud service medium, which are used for solving the problem that the overall control effect of a traffic trunk is poor in the prior art.
In a first aspect, the present application provides a cloud service system, the system comprising: the system comprises a client, a central cloud server and at least two government cloud servers, wherein the at least two government cloud servers comprise cloud servers of government clouds and cloud servers of enterprise clouds for providing government services;
the client is used for receiving a target account number and a target password of a user and sending a login request to the central cloud server, wherein the login request carries the target account number and the target password; receiving target server identification information returned by the center cloud server, sending a service access request to a corresponding target government cloud server according to the target server identification information, and receiving service data returned by the target government cloud server;
The central cloud server is used for receiving the login request, acquiring target server identification information corresponding to a target account number according to the corresponding relation between the pre-stored user account number and the server identification information of the government cloud server after the password passes verification according to the target account number and the target password carried in the login request, and sending the target server identification information to the client;
The target government cloud server is used for receiving the service access request sent by the client and returning the service data corresponding to the service access request to the client.
Further, the central cloud server is further configured to send a data synchronization request to any one of the at least two government cloud servers, where the data synchronization request carries target enterprise identification information corresponding to the central cloud server and target database identification information of a target database to be synchronized, receive first target data returned by the any one government cloud server, and perform data synchronization in the target database;
The cloud server is configured to receive the data synchronization request, determine a target authority of the target database identification information corresponding to the target enterprise identification information according to the target enterprise identification information and the target database identification information carried in the data synchronization request and a corresponding relation between prestored enterprise identification information and authority of each database identification information, obtain first target data corresponding to the target authority in data identified by the target database identification information, and send the first target data to the central cloud server, where the authority includes a full-database authority, a database table field authority and a database table field desensitization authority.
Further, the central cloud server is specifically configured to store, if the data conflict processing mechanism is reserved for both data sources, corresponding target user identification information of each piece of data in the target database according to the target user identification information corresponding to each piece of data in the first target data, and identify the data source.
Further, the central cloud server is specifically configured to, for each piece of data in the first target data, according to target user identification information corresponding to the piece of data if the data conflict processing mechanism is based on the data of the government cloud server, replace the piece of data with second target data corresponding to the target user identification information in the target database if the target user identification information exists in the target database, identify a data source and set a data modification permission to not allow modification; if the target database does not contain the corresponding target user identification information, the piece of data and the target user identification information are correspondingly stored in the target database and the data source is identified.
In a second aspect, the present application provides a cloud service method, the method including:
receiving a login request sent by a client;
And according to the target account number and the target password carried in the login request, after password verification is passed, obtaining target server identification information corresponding to the target account number according to the corresponding relation between the pre-stored user account number and the server identification information of the government cloud server, and sending the target server identification information to the client.
Further, the method further comprises:
A data synchronization request is sent to any one of at least two government cloud servers, wherein the data synchronization request carries target enterprise identification information corresponding to the center cloud server and target database identification information of a target database to be synchronized;
And receiving the first target data returned by any government cloud server, and performing data synchronization in the target database.
Further, the performing data synchronization in the target database includes:
If the data conflict processing mechanism is reserved for the data sources on both sides, storing and identifying the data sources in the target database according to the target user identification information corresponding to each piece of data in the first target data.
Further, the performing data synchronization in the target database includes:
if the data conflict processing mechanism is based on the data of the government cloud server, aiming at each piece of data in the first target data, according to the target user identification information corresponding to the piece of data, if the target user identification information exists in the target database, replacing the piece of data with second target data corresponding to the target user identification information in the target database, identifying a data source and setting the data modification permission to be not allowed to be modified; if the target database does not contain the corresponding target user identification information, the piece of data and the target user identification information are correspondingly stored in the target database and the data source is identified.
In a third aspect, the present application provides a cloud service apparatus, the apparatus comprising:
The receiving module is used for receiving a login request sent by the client;
And the processing module is used for acquiring target server identification information corresponding to the target account number according to the corresponding relation between the pre-stored user account number and the server identification information of the government cloud server after the password verification is passed and transmitting the target server identification information to the client.
Further, the apparatus further comprises: the system comprises a data synchronization module, a data synchronization module and a data synchronization module, wherein the data synchronization module is used for sending a data synchronization request to any one of at least two government cloud servers, and the data synchronization request carries target enterprise identification information corresponding to a center cloud server and target database identification information of a target database to be synchronized; and receiving the first target data returned by any government cloud server, and performing data synchronization in the target database.
Further, the data synchronization module is specifically configured to store, if the data conflict processing mechanism is reserved for both data sources, the target user identification information corresponding to each piece of data in the target database according to the target user identification information corresponding to each piece of data in the first target data, and identify the data source.
Further, the data synchronization module is specifically further configured to, if the data conflict processing mechanism is based on the data of the government cloud server, identify a data source and set a data modification authority to be not allowed to be modified for each piece of data in the first target data according to the target user identification information corresponding to the piece of data, and if the target user identification information exists in the target database, replace the piece of data with the second target data corresponding to the target user identification information in the target database; if the target database does not contain the corresponding target user identification information, the piece of data and the target user identification information are correspondingly stored in the target database and the data source is identified.
In a fourth aspect, the present application provides an electronic device comprising a processor and a memory, the memory being for storing program instructions, the processor being for implementing the steps of any one of the cloud service methods described above when executing a computer program stored in the memory.
In a fifth aspect, the present application provides a computer readable storage medium storing a computer program which when executed by a processor implements the steps of any of the methods of cloud service described above.
The application provides a cloud service system, a method, a device, equipment and a medium, wherein a client in the system sends a login request to a central cloud server after receiving a target account number and a target password of a user; after receiving the login request, the central cloud server acquires target server identification information corresponding to the target account and sends the target server identification information to the client according to the corresponding relation between the pre-stored user account and the server identification information of the government cloud server after the password passes verification according to the target account and the target password carried in the login request; the client sends a service access request to the target government cloud server according to the received target server identification information, and receives service data corresponding to the target government cloud server according to the service access request; when the clients of the users access the service, the same government cloud server corresponds to the same client, so that the data consistency obtained by the same service access of the same client is ensured.
Drawings
In order to more clearly illustrate the technical solutions of the present application, the drawings that are needed in the description of the embodiments will be briefly described below, it being obvious that the drawings in the following description are only some embodiments of the present application, and that other drawings may be obtained according to these drawings without inventive effort for a person skilled in the art.
FIG. 1 is a schematic diagram of a multi-cloud deployment scenario provided in the prior art;
Fig. 2 is a schematic structural diagram of a cloud service system provided by the present application;
Fig. 3 is an overall architecture diagram of a cloud service system during data synchronization provided by the present application;
Fig. 4 is a schematic diagram of a framework of a cloud server system provided by the present application;
Fig. 5 is an overall architecture diagram of a cloud service system provided by the present application;
fig. 6 is a schematic process diagram of a cloud service method provided by the present application;
FIG. 7 is a schematic diagram of a data synchronization method according to the present application;
FIG. 8 is a schematic diagram illustrating a data collision resolution method according to the present application;
Fig. 9 is a schematic structural diagram of a cloud service device provided by the present application;
fig. 10 is a schematic structural diagram of an electronic device according to the present application.
Detailed Description
In order to make the objects, technical solutions and advantages of the present application more apparent, the present application will be described in further detail below with reference to the accompanying drawings, and it is apparent that the described embodiments are only some embodiments of the present application, not all embodiments. All other embodiments, which can be made by those skilled in the art based on the embodiments of the application without making any inventive effort, are intended to be within the scope of the application.
In order to ensure the consistency of data obtained by the same business access of the same client, the application provides a cloud service system, a cloud service method, a cloud service device, cloud service equipment and a cloud service medium.
Fig. 2 is a schematic structural diagram of a cloud service system according to the present application, as shown in fig. 2, the cloud service system 200 includes: the system comprises a client 201, a central cloud server 202 and at least two government cloud servers 203, wherein the at least two government cloud servers 203 comprise cloud servers of government clouds and cloud servers of enterprise clouds for providing government services;
The client 201 is configured to receive a target account number and a target password of a user, and send a login request to the central cloud server 202, where the login request carries the target account number and the target password; receiving target server identification information returned by the center cloud server 202, sending a service access request to a corresponding target government cloud server according to the target server identification information, and receiving service data returned by the target government cloud server;
The central cloud server 202 is configured to receive the login request, obtain target server identification information corresponding to a target account number according to a corresponding relationship between the pre-stored user account number and server identification information of a government cloud server after the password passes verification according to a target account number and a target password carried in the login request, and send the target server identification information to the client 201;
the target government cloud server is configured to receive the service access request sent by the client 201, and return the service data corresponding to the service access request to the client 201.
In order to ensure the consistency of data obtained by accessing the same service of the same client, in the embodiment of the present application, the cloud server system includes a client 201, a central cloud server 202 and at least two government cloud servers 203, where the client 201 includes intelligent terminal devices such as a business owner, a community staff, a mobile phone of a property staff, a notebook computer, a tablet computer, etc., the central cloud server 202 may be a HTTPDNS server adopting a hypertext transfer protocol or may be another type of server, and the at least two government cloud servers 203 may be cloud servers of government established government clouds or cloud servers of enterprise clouds specified by the government to provide government service.
The client 201 receives a target account number and a target password of a user, specifically, receives the target account number and the target password input by the user on an input device such as a display screen, a keyboard, etc., and in order to determine that the received target account number corresponds to a government cloud server that the user can access, the client 201 also sends a login request to the central cloud server 202, where the login request carries the target account number and the target password received by the client 201.
After receiving the login request, the central cloud server 202 performs verification according to the target account number and the target password carried in the login request, specifically, determines the user password corresponding to the user account number according to the corresponding relation between the user account number and the user password which are registered and stored in advance, compares the determined user password with the target password, determines that the password verification is passed if the determined user password is consistent with the target password, and determines that the password verification is not passed if the determined user password is inconsistent with the target password. After the password verification is passed, in order to determine that the user can access the government cloud server corresponding to the target account, the central cloud server 202 also pre-stores the corresponding relationship between the user account and the server identification information of the government cloud server, determines the target server identification information corresponding to the target account according to the target account carried in the login request and the pre-stored corresponding relationship between the user account and the server identification information of the government cloud server, and sends the target server identification information to the client 201.
The server identification information may be a government cloud domain name or a government cloud ip address of a government cloud server. Specifically, the central cloud server 202 obtains a corresponding government cloud domain name or government cloud ip address as the target server identification information according to the community id, the user id, the primary organization code and the like bound by the user account.
After receiving the target server identification information sent by the central cloud server 202, the client 201 sends a service access request to a target government cloud server corresponding to the target server identification information according to the target server identification information. The service method request carries the service type to be accessed, wherein the service type comprises a payment service, a query service and other services.
The target government affair cloud server receives the business access request sent by the client 201 and sends business data corresponding to the business access request to the client 201, and the target government affair cloud server determines the business data in a database corresponding to the business type according to the business type carried in the business access request; the database is configured with a user mobile phone number, a user name, a user id, a user type, a government cloud domain name, a government cloud ip, a service and a cell id.
The client 201 receives the service data returned by the target government cloud server, and displays the received service data on a display screen of the client itself.
In the application, after receiving the target account number and the target password of the user, a client in the cloud service system sends a login request to a central cloud server; after receiving the login request, the central cloud server acquires target server identification information corresponding to the target account and sends the target server identification information to the client according to the corresponding relation between the pre-stored user account and the server identification information of the government cloud server after the password passes verification according to the target account and the target password carried in the login request; the client sends a service access request to the target government cloud server according to the received target server identification information, and receives service data corresponding to the target government cloud server according to the service access request; when the clients of the users access the service, the same government cloud server corresponds to the same client, so that the data consistency obtained by the same service access of the same client is ensured.
In order to achieve data synchronization of the target database of the central cloud server, in the present application, the central cloud server 202 is further configured to send a data synchronization request to any one of the at least two government cloud servers 203, where the data synchronization request carries target enterprise identification information corresponding to the central cloud server and target database identification information of the target database to be synchronized, receive first target data returned by the any one government cloud server, and perform data synchronization in the target database;
The any government cloud server is configured to receive the data synchronization request, determine a target authority of the target database identification information corresponding to the target enterprise identification information according to the target enterprise identification information and the target database identification information carried in the data synchronization request, and a correspondence between prestored enterprise identification information and authority of each database identification information, obtain first target data corresponding to the target authority in data identified by the target database identification information, and send the first target data to the central cloud server 202, where the authority includes a full-library authority, a database table word section authority, and a database table word section desensitization authority.
In order to achieve data synchronization of the target databases of the central cloud server, in the present application, the central cloud server 202 sends a data synchronization request to any one of the at least two government cloud servers 203, wherein the data synchronization request includes a plurality of street databases in any one of the government cloud servers, for example, a street a database, a street B database, and a street C database in the government cloud servers; and the rights of the cloud servers of different enterprises as the central cloud servers in the government cloud servers are different, so that the data synchronization request carries the target enterprise identification information corresponding to the central cloud server 202 and the target database identification information of the target database to be synchronized.
The target enterprise identification information may be information such as an enterprise name and an enterprise address of a target enterprise, and the target database identification information may be information such as a target database name and a corresponding cell name of the target database.
Any government cloud server receives the data synchronization request, acquires target enterprise identification information and target database identification information carried in the data synchronization request, stores the corresponding relation between the enterprise identification information and the authority of each database identification information in advance in order to realize the data synchronization of the target database, determines the first authority of each database identification information corresponding to the target enterprise identification information according to the target enterprise identification information, the target database identification information and the corresponding relation stored in advance carried in the data synchronization request, and determines the target authority of the target database identification information from the first authority of each database identification information.
Any government cloud server acquires first target data corresponding to target authority from data identified by identification information of a self target database, the first target data is sent to the central cloud server 202, and the central cloud server 202 receives the first target data returned by any government cloud server and performs data synchronization in the target database.
When the target authority is the full-library authority, any government cloud server acquires target data in a database corresponding to the target database identification information; if the target authority is the database table authority, acquiring target data in a database table corresponding to the target database identification information and having the database table authority; if the target authority is the database table field authority, acquiring target data in a database table field which corresponds to the target database identification information and has the database table field authority; if the target authority is the database table field desensitization authority, acquiring field data in a database table field which corresponds to the target database identification information and has the database table field authority, and taking the field data as target data after data desensitization processing; wherein the data desensitizing of the field data comprises signing the field data using a signature algorithm.
In the following, the data synchronization of the present application is described by a specific embodiment, and fig. 3 is a diagram of an overall architecture of a cloud service system during the data synchronization provided by the present application, where, as shown in fig. 3, the cloud service system includes a central cloud server and a government cloud server, and a database, table, and field condition level synchronization service is implemented between the central cloud server and the government cloud server; the central cloud server comprises a street A database, a street B database and a street C database which are respectively used for intelligent street A business service, intelligent street B business service and intelligent street C business service. The government cloud server comprises all table fields in a database corresponding to the full-database permission, all data in a database table corresponding to the database table permission, field data in a database table corresponding to the database table field permission and the like.
In order to avoid data collision in the data synchronization process, in the present application, the central cloud server 202 is specifically configured to store and identify a data source corresponding to target user identification information in the target database according to target user identification information corresponding to each piece of data in the first target data if a data collision processing mechanism is reserved for both data sources.
In order to avoid data collision in data synchronization, in the present application, when a data collision processing mechanism is reserved for both data sources, the central cloud server 202 stores each piece of data in a target database of the central cloud server 202 according to target user identification information corresponding to each piece of data in the first target data returned by any one government cloud server, and identifies the data source of each piece of data, namely, identifies the server identification information of the government cloud server corresponding to each piece of data. The target user identification information can be an identity card number, a house property card, a license plate number and the like, and the modification permission of the data with the identification data source of the government cloud server is set to be not allowed to be modified.
Specifically, in the target database of the central cloud server 202, there may be target user identification information corresponding to some data and pre-existing corresponding data, or there may not be target user identification information corresponding to some data. When some target user identification information corresponding to data exists in the target database of the central cloud server 202, the central cloud server 202 adds the data corresponding to the target user identification information in the first target data into the data corresponding to the target user identification information pre-existing in the target database of the central cloud server 202, and identifies the data source of the data.
In order to avoid data collision in the data synchronization process, in the present application, the central cloud server 202 is specifically configured to, for each piece of data in the first target data, according to the target user identification information corresponding to the piece of data, if the target user identification information exists in the target database, replace the piece of data with the second target data corresponding to the target user identification information in the target database, identify the data source and set the data modification authority to be not allowed to be modified, if the data collision processing mechanism is based on the data of the government cloud server; if the target database does not contain the corresponding target user identification information, the piece of data and the target user identification information are correspondingly stored in the target database and the data source is identified.
In order to avoid data collision in the data synchronization process, in the present application, when the data collision processing mechanism is the data of the government service cloud server, the central cloud server 202 determines, for each piece of data in the first target data, whether there is target user identification information corresponding to each piece of data in the central cloud server, because the government service and the data in the server are used as references.
And for each piece of data in the first target data, searching in the target database according to the target user identification information corresponding to the piece of data, determining whether the target user identification information exists in the target database, if the target user identification information exists in the target database, replacing the piece of data with the second target data corresponding to the target user identification information in the target database, identifying a data source corresponding to the piece of data, and setting the data modification authority to be not allowed to be modified.
If the target database does not contain the target user identification information, the data and the target user identification information are correspondingly stored in the target database, and the data are identified as data sources, namely the server identification information of the government cloud server corresponding to the data is identified.
In the following, a specific embodiment is used to describe a cloud service system of the present application, fig. 4 is a schematic diagram of a framework of a cloud server system provided by the present application, and as shown in fig. 4, a client may be a PC end of a property worker, a PC end of a community worker, or a cell owner's mobile phone end, where the cell owner's mobile phone end is provided with an owner APP, and PC ends of the property worker and the community worker are provided with a property APP; the cloud servers comprise a central cloud server, an enterprise cloud server and a government affair cloud server, wherein the enterprise cloud server serves as the government affair cloud server and provides government affair services.
The central cloud server, the enterprise cloud server and the government cloud service all adopt a hybrid cloud cross-cloud service scheduling framework and global load balancing (Global Server Load Balance, GSLB), and the global load balancing GSLB is used for realizing the service routing function of routing to different government clouds and enterprise clouds according to different target account numbers. The system comprises a central cloud server, a public cluster module, a street object management cluster module and a cross-cloud data synchronization module, wherein the public cluster module, the street object management cluster module and the cross-cloud data synchronization module are also arranged in the central cloud server, the street object management cluster module, the cross-cloud data synchronization module and the intelligent street supervision system module are arranged in the government cloud server, data synchronization is realized among the data synchronization module of the central cloud server, the data synchronization module of the enterprise cloud server and the data synchronization module of the government cloud server, and the street object management cluster module of the central cloud server is respectively associated with the street object management cluster module of the enterprise cloud and the street object management cluster module of the government cloud server.
Fig. 5 is an overall architecture diagram of a cloud service system provided by the present application, where, as shown in fig. 5, a client receives a target account number and a target password that are input by a user login, and sends a login request to a password verification module of a central cloud server; the central cloud server returns unique identification information of a user corresponding to the target account after verifying the target account and the target password carried in the login request; the client receives unique identification information of a user and sends the unique identification information to a global load balancing module of the central cloud server, determines that target server identification information of a target government cloud server corresponding to the user is sent to the client, and sends a service access request to the corresponding target government cloud server according to the target server identification information.
Fig. 6 is a schematic process diagram of a cloud service method provided by the present application, as shown in fig. 6, the process includes the following steps:
s601: and receiving a login request sent by the client.
S602: and according to the target account number and the target password carried in the login request, after password verification is passed, obtaining target server identification information corresponding to the target account number according to the corresponding relation between the pre-stored user account number and the server identification information of the government cloud server, and sending the target server identification information to the client.
Further, the method further comprises:
A data synchronization request is sent to any one of at least two government cloud servers, wherein the data synchronization request carries target enterprise identification information corresponding to the center cloud server and target database identification information of a target database to be synchronized;
And receiving the first target data returned by any government cloud server, and performing data synchronization in the target database.
Further, the performing data synchronization in the target database includes:
If the data conflict processing mechanism is reserved for the data sources on both sides, storing and identifying the data sources in the target database according to the target user identification information corresponding to each piece of data in the first target data.
Further, the performing data synchronization in the target database includes:
if the data conflict processing mechanism is based on the data of the government cloud server, aiming at each piece of data in the first target data, according to the target user identification information corresponding to the piece of data, if the target user identification information exists in the target database, replacing the piece of data with second target data corresponding to the target user identification information in the target database, identifying a data source and setting the data modification permission to be not allowed to be modified; if the target database does not contain the corresponding target user identification information, the piece of data and the target user identification information are correspondingly stored in the target database and the data source is identified.
The data synchronization method of the present application is described below by way of a specific embodiment, and fig. 7 is a schematic diagram of a data synchronization method provided by the present application, as shown in fig. 7, and the method includes the following steps:
S701: the authority service center of the government cloud server pre-generates authorities corresponding to each enterprise identification information, and a database, a database table field and field data after desensitization in the database table field which can be accessed are correspondingly stored for each authority.
S702: and respectively performing S703, S704, S705 and S706 on different target authorities based on different target database identification information corresponding to the target enterprise identification information sent by the central cloud server.
S703: and if the target authority is Quan Ku of the database corresponding to the street A, acquiring target data in the database corresponding to the street A, and performing S707.
S704: if the target authority is the database table authority corresponding to the database of street B, the target data in the database table corresponding to street B is obtained, and S707 is performed.
S705: if the target authority is the database table field authority corresponding to the database of street C, the target data in the database table field corresponding to street C is obtained, and S707 is performed.
S706: if the target authority is the database table field desensitization authority, acquiring field data in a database table field corresponding to the target database identification information and having the database table field authority, and taking the field data as target data after data desensitization processing, wherein the target data is sensitive information such as a mobile phone number, an identity card number and the like, and performing S707.
S707: and sending the target data to the central cloud server, and writing the target data into a target database of the central cloud server after processing of the conflict processing mechanism.
The data collision resolution method of the present application is described below by way of a specific embodiment, and fig. 8 is a schematic process diagram of a data collision resolution method provided by the present application, as shown in fig. 8, and the method includes the following steps:
S801: firstly, acquiring a data conflict processing mechanism, and determining whether the data conflict processing mechanism is reserved for data sources on two sides or takes data of a government cloud server as a reference.
S802: if the data conflict processing mechanism is reserved for the data sources on both sides, storing and identifying the data sources in the target database according to the target user identification information corresponding to each piece of data in the first target data.
S803: if the data conflict processing mechanism is based on the data of the government cloud server, for each piece of data in the first target data, according to the target user identification information corresponding to the piece of data, if the marked user identification information exists in the target database, replacing the piece of data with the second target data corresponding to the target user identification information in the target database and identifying a data source; if the target database does not contain the corresponding target user identification information, the data and the target user identification information are correspondingly stored in the target database and the data source is identified.
S804: and if the data source in the target database is the data of the government cloud server, setting the data modification authority to be not allowed to be modified.
On the basis of the foregoing embodiment, fig. 9 is a schematic structural diagram of a cloud service apparatus provided by the present application, where the apparatus includes:
A receiving module 901, configured to receive a login request sent by a client;
And the processing module 902 is configured to obtain, according to a target account number and a target password carried in the login request, after the password passes verification, target server identification information corresponding to the target account number according to a pre-stored correspondence between a user account number and server identification information of a government cloud server, and send the target server identification information to the client.
Further, the apparatus further comprises: the system comprises a data synchronization module, a data synchronization module and a data synchronization module, wherein the data synchronization module is used for sending a data synchronization request to any one of at least two government cloud servers, and the data synchronization request carries target enterprise identification information corresponding to a center cloud server and target database identification information of a target database to be synchronized; and receiving the first target data returned by any government cloud server, and performing data synchronization in the target database.
Further, the data synchronization module is specifically configured to store, if the data conflict processing mechanism is reserved for both data sources, the target user identification information corresponding to each piece of data in the target database according to the target user identification information corresponding to each piece of data in the first target data, and identify the data source.
Further, the data synchronization module is specifically further configured to, if the data conflict processing mechanism is based on the data of the government cloud server, identify a data source and set a data modification authority to be not allowed to be modified for each piece of data in the first target data according to the target user identification information corresponding to the piece of data, and if the target user identification information exists in the target database, replace the piece of data with the second target data corresponding to the target user identification information in the target database; if the target database does not contain the corresponding target user identification information, the piece of data and the target user identification information are correspondingly stored in the target database and the data source is identified.
Fig. 10 is a schematic structural diagram of an electronic device according to the present application, and on the basis of the foregoing embodiments, an embodiment of the present application further provides an electronic device, as shown in fig. 10, including: processor 1001, communication interface 1002, memory 1003 and communication bus 1004, wherein processor 1001, communication interface 502, memory 1003 accomplish each other's communication through communication bus 1004.
The memory 1003 stores a computer program which, when executed by the processor 1001, causes the processor 1001 to perform the steps of:
receiving a login request sent by a client;
And according to the target account number and the target password carried in the login request, after password verification is passed, obtaining target server identification information corresponding to the target account number according to the corresponding relation between the pre-stored user account number and the server identification information of the government cloud server, and sending the target server identification information to the client.
Further, the processor 1001 is further configured to send a data synchronization request to any one of at least two government cloud servers, where the data synchronization request carries target enterprise identification information corresponding to the central cloud server and target database identification information of a target database to be synchronized;
And receiving the first target data returned by any government cloud server, and performing data synchronization in the target database.
Further, the processor 1001 is specifically configured to store, if the data conflict handling mechanism is reserved for both data sources, the target user identification information corresponding to each piece of data in the target database according to the target user identification information corresponding to each piece of data in the first target data, and identify the data source.
Further, the processor 1001 is specifically configured to, for each piece of data in the first target data, according to the target user identification information corresponding to the piece of data if the data conflict processing mechanism is based on the data of the government cloud server, replace the piece of data with the second target data corresponding to the target user identification information in the target database if the target user identification information exists in the target database, identify a data source and set a data modification authority to not allow modification; if the target database does not contain the corresponding target user identification information, the piece of data and the target user identification information are correspondingly stored in the target database and the data source is identified.
The communication bus mentioned above for the electronic device may be a peripheral component interconnect standard (PERIPHERAL COMPONENT INTERCONNECT, PCI) bus or an extended industry standard architecture (Extended Industry Standard Architecture, EISA) bus, etc. The communication bus may be classified as an address bus, a data bus, a control bus, or the like. For ease of illustration, the figures are shown with only one bold line, but not with only one bus or one type of bus.
The communication interface 1002 is used for communication between the above-described electronic device and other devices.
The Memory may include random access Memory (Random Access Memory, RAM) or may include Non-Volatile Memory (NVM), such as at least one disk Memory. Optionally, the memory may also be at least one memory device located remotely from the aforementioned processor.
The processor may be a general-purpose processor, including a central processing unit, a network processor (Network Processor, NP), etc.; but also digital instruction processors (DIGITAL SIGNAL Processing units, DSPs), application specific integrated circuits, field programmable gate arrays or other programmable logic devices, discrete gate or transistor logic devices, discrete hardware components, etc.
On the basis of the above embodiments, the embodiments of the present invention further provide a computer readable storage medium having stored therein a computer program executable by a processor, which when run on the processor, causes the processor to perform the steps of:
receiving a login request sent by a client;
And according to the target account number and the target password carried in the login request, after password verification is passed, obtaining target server identification information corresponding to the target account number according to the corresponding relation between the pre-stored user account number and the server identification information of the government cloud server, and sending the target server identification information to the client.
Further, the method further comprises:
A data synchronization request is sent to any one of at least two government cloud servers, wherein the data synchronization request carries target enterprise identification information corresponding to the center cloud server and target database identification information of a target database to be synchronized;
And receiving the first target data returned by any government cloud server, and performing data synchronization in the target database.
Further, the performing data synchronization in the target database includes:
If the data conflict processing mechanism is reserved for the data sources on both sides, storing and identifying the data sources in the target database according to the target user identification information corresponding to each piece of data in the first target data.
Further, the performing data synchronization in the target database includes:
if the data conflict processing mechanism is based on the data of the government cloud server, aiming at each piece of data in the first target data, according to the target user identification information corresponding to the piece of data, if the target user identification information exists in the target database, replacing the piece of data with second target data corresponding to the target user identification information in the target database, identifying a data source and setting the data modification permission to be not allowed to be modified; if the target database does not contain the corresponding target user identification information, the piece of data and the target user identification information are correspondingly stored in the target database and the data source is identified.
It will be appreciated by those skilled in the art that embodiments of the present application may be provided as a method, system, or computer program product. Accordingly, the present application may take the form of an entirely hardware embodiment, an entirely software embodiment or an embodiment combining software and hardware aspects. Furthermore, the present application may take the form of a computer program product embodied on one or more computer-usable storage media (including, but not limited to, disk storage, CD-ROM, optical storage, and the like) having computer-usable program code embodied therein.
The present application is described with reference to flowchart illustrations and/or block diagrams of methods, apparatus (systems) and computer program products according to the application. It will be understood that each flow and/or block of the flowchart illustrations and/or block diagrams, and combinations of flows and/or blocks in the flowchart illustrations and/or block diagrams, can be implemented by computer program instructions. These computer program instructions may be provided to a processor of a general purpose computer, special purpose computer, embedded processor, or other programmable data processing apparatus to produce a machine, such that the instructions, which execute via the processor of the computer or other programmable data processing apparatus, create means for implementing the functions specified in the flowchart flow or flows and/or block diagram block or blocks.
These computer program instructions may also be stored in a computer-readable memory that can direct a computer or other programmable data processing apparatus to function in a particular manner, such that the instructions stored in the computer-readable memory produce an article of manufacture including instruction means which implement the function specified in the flowchart flow or flows and/or block diagram block or blocks.
These computer program instructions may also be loaded onto a computer or other programmable data processing apparatus to cause a series of operational steps to be performed on the computer or other programmable apparatus to produce a computer implemented process such that the instructions which execute on the computer or other programmable apparatus provide steps for implementing the functions specified in the flowchart flow or flows and/or block diagram block or blocks.
It will be apparent to those skilled in the art that various modifications and variations can be made to the present application without departing from the spirit or scope of the application. Thus, it is intended that the present application also include such modifications and alterations insofar as they come within the scope of the appended claims or the equivalents thereof.
Claims (8)
1. A cloud service system, the system comprising: the system comprises a client, a central cloud server and at least two government cloud servers, wherein the at least two government cloud servers comprise cloud servers of government clouds and cloud servers of enterprise clouds for providing government services;
the client is used for receiving a target account number and a target password of a user and sending a login request to the central cloud server, wherein the login request carries the target account number and the target password; receiving target server identification information returned by the center cloud server, sending a service access request to a corresponding target government cloud server according to the target server identification information, and receiving service data returned by the target government cloud server;
The central cloud server is used for receiving the login request, acquiring target server identification information corresponding to a target account number according to the corresponding relation between the pre-stored user account number and the server identification information of the government cloud server after the password passes verification according to the target account number and the target password carried in the login request, and sending the target server identification information to the client;
The target government cloud server is used for receiving the service access request sent by the client and returning the service data corresponding to the service access request to the client;
The central cloud server is further configured to send a data synchronization request to any one of the at least two government cloud servers, where the data synchronization request carries target enterprise identification information corresponding to the central cloud server and target database identification information of a target database to be synchronized, receive first target data returned by the any one government cloud server, and perform data synchronization in the target database;
The cloud server is configured to receive the data synchronization request, determine a target authority of the target database identification information corresponding to the target enterprise identification information according to the target enterprise identification information and the target database identification information carried in the data synchronization request and a corresponding relation between prestored enterprise identification information and authority of each database identification information, obtain first target data corresponding to the target authority in data identified by the target database identification information, and send the first target data to the central cloud server, where the authority includes a full-database authority, a database table field authority and a database table field desensitization authority.
2. The system of claim 1, wherein the central cloud server is specifically configured to store and identify a data source corresponding to target user identification information in the target database for each piece of data according to target user identification information corresponding to each piece of data in the first target data if the data collision handling mechanism is reserved for both data sources.
3. The system according to claim 1, wherein the central cloud server is specifically configured to, for each piece of data in the first target data, according to target user identification information corresponding to the piece of data, if the target user identification information exists in the target database, replace a second target data corresponding to the target user identification information in the target database, identify a data source and set a data modification authority to disallow modification, if the data conflict processing mechanism is based on data of the government cloud server; if the target database does not contain the corresponding target user identification information, the piece of data and the target user identification information are correspondingly stored in the target database and the data source is identified.
4. A cloud service method, applied to a central cloud server, the method comprising:
receiving a login request sent by a client;
according to a target account number and a target password carried in the login request, after password verification is passed, obtaining target server identification information corresponding to the target account number according to a pre-stored corresponding relation between a user account number and server identification information of a government cloud server, and sending the target server identification information to the client;
A data synchronization request is sent to any one of at least two government cloud servers, wherein the data synchronization request carries target enterprise identification information corresponding to the center cloud server and target database identification information of a target database to be synchronized;
And receiving the first target data returned by any government cloud server, and performing data synchronization in the target database.
5. The method of claim 4, wherein said synchronizing data in said target database comprises:
If the data conflict processing mechanism is reserved for the data sources on both sides, storing and identifying the data sources in the target database according to the target user identification information corresponding to each piece of data in the first target data.
6. A cloud service apparatus, the apparatus comprising:
The receiving module is used for receiving a login request sent by the client;
the processing module is used for acquiring target server identification information corresponding to the target account number according to the corresponding relation between the pre-stored user account number and the server identification information of the government cloud server after the password verification is passed and sending the target server identification information to the client;
The system comprises a data synchronization module, a data synchronization module and a data synchronization module, wherein the data synchronization module is used for sending a data synchronization request to any one of at least two government cloud servers, and the data synchronization request carries target enterprise identification information corresponding to a center cloud server and target database identification information of a target database to be synchronized; and receiving the first target data returned by any government cloud server, and performing data synchronization in the target database.
7. An electronic device, comprising: the device comprises a processor, a communication interface, a memory and a communication bus, wherein the processor, the communication interface and the memory are communicated with each other through the communication bus;
The memory has stored therein a computer program which, when executed by the processor, causes the processor to execute the computer program stored in the memory to carry out the steps of the cloud service method according to any of claims 4-5.
8. A computer readable storage medium, characterized in that it stores a computer program which, when executed by a processor, implements the steps of the cloud service method according to any of claims 4-5.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN202210417787.6A CN114666159B (en) | 2022-04-20 | 2022-04-20 | Cloud service system, method, device, equipment and medium |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN202210417787.6A CN114666159B (en) | 2022-04-20 | 2022-04-20 | Cloud service system, method, device, equipment and medium |
Publications (2)
Publication Number | Publication Date |
---|---|
CN114666159A CN114666159A (en) | 2022-06-24 |
CN114666159B true CN114666159B (en) | 2024-04-30 |
Family
ID=82036902
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN202210417787.6A Active CN114666159B (en) | 2022-04-20 | 2022-04-20 | Cloud service system, method, device, equipment and medium |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN114666159B (en) |
Families Citing this family (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN115277827A (en) * | 2022-07-26 | 2022-11-01 | 中国电信股份有限公司 | Cloud resource configuration method, system, device, equipment and storage medium |
CN115379009B (en) * | 2022-08-18 | 2024-04-26 | 中国建设银行股份有限公司 | Data processing method, device, equipment and medium |
CN115150467B (en) * | 2022-09-01 | 2022-12-06 | 武汉绿色网络信息服务有限责任公司 | Data access method and device and electronic equipment |
CN117118742B (en) * | 2023-10-16 | 2024-01-12 | 思创数码科技股份有限公司 | Government affair data operation method and system based on access frequency monitoring |
Citations (8)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN103795690A (en) * | 2012-10-31 | 2014-05-14 | 华为技术有限公司 | Cloud access control method, proxy server, and cloud access control system |
CN105516368A (en) * | 2016-02-03 | 2016-04-20 | 浪潮软件股份有限公司 | Cloud desktop client, server and method and system for implementing cloud desktop |
CN109309728A (en) * | 2018-10-26 | 2019-02-05 | 金蝶软件(中国)有限公司 | A kind of data processing method and relevant apparatus |
CN110311899A (en) * | 2019-06-17 | 2019-10-08 | 平安医疗健康管理股份有限公司 | Multiservice system access method, device and server |
CN111277628A (en) * | 2020-01-10 | 2020-06-12 | 腾讯科技(深圳)有限公司 | Server configuration method and device and service server |
CN112738805A (en) * | 2020-12-30 | 2021-04-30 | 青岛海尔科技有限公司 | Device control method and apparatus, storage medium, and electronic device |
CN113704503A (en) * | 2021-08-06 | 2021-11-26 | 中科恒运股份有限公司 | Government affair system data cleaning method and government affair fusion system |
CN114117532A (en) * | 2021-11-29 | 2022-03-01 | 深圳壹账通智能科技有限公司 | Cloud server access method and device, electronic equipment and storage medium |
Family Cites Families (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
DE102012110544B4 (en) * | 2012-11-05 | 2014-12-31 | OMS Software GMBH | Method and system for accessing data in a distributed network system |
CN103595809A (en) * | 2013-11-22 | 2014-02-19 | 乐视致新电子科技(天津)有限公司 | Account information management method and device in intelligent television |
-
2022
- 2022-04-20 CN CN202210417787.6A patent/CN114666159B/en active Active
Patent Citations (8)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN103795690A (en) * | 2012-10-31 | 2014-05-14 | 华为技术有限公司 | Cloud access control method, proxy server, and cloud access control system |
CN105516368A (en) * | 2016-02-03 | 2016-04-20 | 浪潮软件股份有限公司 | Cloud desktop client, server and method and system for implementing cloud desktop |
CN109309728A (en) * | 2018-10-26 | 2019-02-05 | 金蝶软件(中国)有限公司 | A kind of data processing method and relevant apparatus |
CN110311899A (en) * | 2019-06-17 | 2019-10-08 | 平安医疗健康管理股份有限公司 | Multiservice system access method, device and server |
CN111277628A (en) * | 2020-01-10 | 2020-06-12 | 腾讯科技(深圳)有限公司 | Server configuration method and device and service server |
CN112738805A (en) * | 2020-12-30 | 2021-04-30 | 青岛海尔科技有限公司 | Device control method and apparatus, storage medium, and electronic device |
CN113704503A (en) * | 2021-08-06 | 2021-11-26 | 中科恒运股份有限公司 | Government affair system data cleaning method and government affair fusion system |
CN114117532A (en) * | 2021-11-29 | 2022-03-01 | 深圳壹账通智能科技有限公司 | Cloud server access method and device, electronic equipment and storage medium |
Also Published As
Publication number | Publication date |
---|---|
CN114666159A (en) | 2022-06-24 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN114666159B (en) | Cloud service system, method, device, equipment and medium | |
CN109981679B (en) | Method and apparatus for performing transactions in a blockchain network | |
CN108737325B (en) | Multi-tenant data isolation method, device and system | |
US10136281B2 (en) | Method for logging in to application, server, terminal, and nonvolatile computer readable storage medium | |
CN111709860B (en) | Method, device, equipment and storage medium for processing heritage | |
CN111292174A (en) | Tax payment information processing method and device and computer readable storage medium | |
CA3088147C (en) | Data isolation in distributed hash chains | |
CN110599275A (en) | Data processing method and device based on block chain network and storage medium | |
CN111833507A (en) | Visitor authentication method, device, equipment and computer readable storage medium | |
WO2021084434A1 (en) | Authentication mechanism utilizing location corroboration | |
CN113852639A (en) | Data processing method and device, electronic equipment and computer readable storage medium | |
CN108280024B (en) | Flow distribution strategy testing method and device and electronic equipment | |
CN105391686A (en) | Data access method and data access device | |
CN112714042A (en) | Pressure testing method and device, electronic equipment and storage medium | |
CN115242433B (en) | Data processing method, system, electronic device and computer readable storage medium | |
CN116192457A (en) | Method and device for processing cross-chain request | |
CN113761503B (en) | Interface call processing method and device | |
CN114780807A (en) | Service detection method, device, computer system and readable storage medium | |
CN111383003B (en) | Method, device, computer equipment and storage medium for fast platform access | |
CN110602068B (en) | Data authority management method and related product | |
CN117040930B (en) | Resource processing method, device, product, equipment and medium of block chain network | |
CN116562884B (en) | Data element circulation method, device, electronic equipment and storage medium | |
US20240291649A1 (en) | Non-fungible token (nft) vehicle information | |
US20240202744A1 (en) | Using blockchain technology to determine authenticity of items | |
CN113641966B (en) | Application integration method, system, equipment and medium |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PB01 | Publication | ||
PB01 | Publication | ||
SE01 | Entry into force of request for substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
GR01 | Patent grant | ||
GR01 | Patent grant |