CN116069894B - Data storage and searching method and device based on organization isolated data authority - Google Patents
Data storage and searching method and device based on organization isolated data authority Download PDFInfo
- Publication number
- CN116069894B CN116069894B CN202211644442.0A CN202211644442A CN116069894B CN 116069894 B CN116069894 B CN 116069894B CN 202211644442 A CN202211644442 A CN 202211644442A CN 116069894 B CN116069894 B CN 116069894B
- Authority
- CN
- China
- Prior art keywords
- organization
- identity
- data
- dictionary
- vocabulary
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
- 230000008520 organization Effects 0.000 title claims abstract description 194
- 238000000034 method Methods 0.000 title claims abstract description 34
- 238000013500 data storage Methods 0.000 title abstract description 19
- 238000013507 mapping Methods 0.000 claims abstract description 44
- 230000008859 change Effects 0.000 claims abstract description 15
- 238000010276 construction Methods 0.000 claims description 3
- 238000007726 management method Methods 0.000 description 5
- 230000008569 process Effects 0.000 description 4
- 230000008878 coupling Effects 0.000 description 2
- 238000010168 coupling process Methods 0.000 description 2
- 238000005859 coupling reaction Methods 0.000 description 2
- 238000010586 diagram Methods 0.000 description 2
- 238000005516 engineering process Methods 0.000 description 2
- 238000002955 isolation Methods 0.000 description 2
- 238000004891 communication Methods 0.000 description 1
- 230000010485 coping Effects 0.000 description 1
- 230000006870 function Effects 0.000 description 1
- 238000012986 modification Methods 0.000 description 1
- 230000004048 modification Effects 0.000 description 1
- 230000003287 optical effect Effects 0.000 description 1
- 230000008092 positive effect Effects 0.000 description 1
- 238000012545 processing Methods 0.000 description 1
- 238000006467 substitution reaction Methods 0.000 description 1
- 230000001960 triggered effect Effects 0.000 description 1
Classifications
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F16/00—Information retrieval; Database structures therefor; File system structures therefor
- G06F16/30—Information retrieval; Database structures therefor; File system structures therefor of unstructured textual data
- G06F16/31—Indexing; Data structures therefor; Storage structures
- G06F16/316—Indexing structures
- G06F16/322—Trees
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F16/00—Information retrieval; Database structures therefor; File system structures therefor
- G06F16/30—Information retrieval; Database structures therefor; File system structures therefor of unstructured textual data
- G06F16/33—Querying
- G06F16/332—Query formulation
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F40/00—Handling natural language data
- G06F40/20—Natural language analysis
- G06F40/237—Lexical tools
- G06F40/242—Dictionaries
-
- Y—GENERAL TAGGING OF NEW TECHNOLOGICAL DEVELOPMENTS; GENERAL TAGGING OF CROSS-SECTIONAL TECHNOLOGIES SPANNING OVER SEVERAL SECTIONS OF THE IPC; TECHNICAL SUBJECTS COVERED BY FORMER USPC CROSS-REFERENCE ART COLLECTIONS [XRACs] AND DIGESTS
- Y02—TECHNOLOGIES OR APPLICATIONS FOR MITIGATION OR ADAPTATION AGAINST CLIMATE CHANGE
- Y02D—CLIMATE CHANGE MITIGATION TECHNOLOGIES IN INFORMATION AND COMMUNICATION TECHNOLOGIES [ICT], I.E. INFORMATION AND COMMUNICATION TECHNOLOGIES AIMING AT THE REDUCTION OF THEIR OWN ENERGY USE
- Y02D10/00—Energy efficient computing, e.g. low power processors, power management or thermal management
Landscapes
- Engineering & Computer Science (AREA)
- Theoretical Computer Science (AREA)
- Physics & Mathematics (AREA)
- General Engineering & Computer Science (AREA)
- General Physics & Mathematics (AREA)
- Computational Linguistics (AREA)
- Data Mining & Analysis (AREA)
- Databases & Information Systems (AREA)
- Mathematical Physics (AREA)
- Software Systems (AREA)
- Health & Medical Sciences (AREA)
- Artificial Intelligence (AREA)
- Audiology, Speech & Language Pathology (AREA)
- General Health & Medical Sciences (AREA)
- Storage Device Security (AREA)
- Information Retrieval, Db Structures And Fs Structures Therefor (AREA)
Abstract
The invention provides a data storage and searching method and device based on organization isolated data authority, which build an organization tree based on an organization architecture of an enterprise; establishing a first term dictionary of each organization based on the hierarchical relationship of the organization tree; establishing a second vocabulary dictionary for each organization in the organization architecture; establishing a mapping relation between a first identity mark in a first vocabulary term dictionary and a second identity mark in a second vocabulary term dictionary; and storing the mapping relation in a database, and correspondingly storing data corresponding to each organization and the second identity thereof. When searching, the suffix wildcard is adopted for searching, so that the search performance is good, and after the first vocabulary item dictionary is positioned, the real data of the second vocabulary item dictionary mapping is obtained rapidly through the mapping from the first vocabulary item dictionary to the second vocabulary item dictionary, so that the high search performance is ensured. The invention can reduce the length and efficiency problems of the execution statement in searching and does not need to modify data in organization change.
Description
Technical Field
The present invention relates to the field of data rights technologies, and in particular, to a method and apparatus for data storage and search based on organization isolated data rights.
Background
In enterprise applications, employees are often distributed to individual organizations. Each employee has rights to data affiliated to the organization according to the rights of the owned organization architecture. For example, as shown in FIG. 1, there are 3 employees, X, Y, Z, respectively, in an enterprise. X manages organization b and subordinate organizations thereof; y manages node c and subordinate organizations thereof; z manages organization o. After the data of various enterprises are respectively corresponding to each organization, X, Y, Z needs to respectively check the data with authority in the enterprise application, and cannot check the data without authority.
At the data level, each datum needs to preserve the relationship of the datum and the organization so that it can be filtered according to the organization at the time of query. Each organization is assigned a unique identity at the time of creation. All data under the organization has the organization ID stored. When a user searches, the organization ID list for the user congestion is filtered in the query statement, and only the data which the user has permission to view can be returned.
However, since the enterprise management layer often manages a plurality of organizations at the same time, the number may be several tens to several thousands. The search criteria will additionally have an operation of querying the data range, i.e. in operation in the database, and the list in can be in the order of thousands. In almost all execution engines, whether databases or search engines, this is an expensive operation and the efficiency of parsing and execution is very low. Even in some execution engines, the length limitation of the statement may be triggered such that the search cannot be performed.
Disclosure of Invention
In view of the above, the present invention provides a data storage and searching method and apparatus based on organization isolated data authority, so as to reduce the length of an execution statement during searching and meet the requirement of searching efficiency.
For this purpose, the invention provides the following technical scheme:
in one aspect, the present invention provides a data storage method based on organization isolated data rights, which is characterized in that the method includes:
establishing an organization tree based on an organization architecture of an enterprise; the organization architecture comprises a plurality of organizations;
establishing a first term dictionary of an organization based on the hierarchical relationship of the organization tree; the first term dictionary includes: a plurality of first identity identifications capable of reflecting a hierarchical relationship;
establishing a second vocabulary dictionary for each organization in the organization architecture; the second term dictionary includes: a second identity of each organization node;
establishing a mapping relation between a first identity mark in the first vocabulary item dictionary and a second identity mark in the second vocabulary item dictionary;
and storing the mapping relation in a database, and correspondingly storing data corresponding to each organization and the second identity thereof.
Further, the first identity of the organization comprises: the identity and serial number of the upper level organization of the organization.
Further, the serial number is composed of 2-bit letters and/or numbers.
Further, the authority-limiting operation of the organizational tree is specified with a suffix wildcard.
Further, when the organization architecture is changed, mapping relations among the vocabulary index, the first vocabulary dictionary and the second vocabulary dictionary of the change organization are updated.
In yet another aspect, the present invention further provides a data searching method based on data authority isolation of an organization tree, where the method includes:
acquiring a data search request of a user, wherein the data search request comprises a term index and a suffix wild card;
determining a first identity identifier according to a term index and a suffix wild card in the data search request;
determining a second identity corresponding to the first identity according to the mapping relation between the first identity and the second identity;
and determining an organization according to the second identity, and returning data corresponding to the organization to the user.
In yet another aspect, the present invention further provides a data storage device based on organizing isolated data rights, the device comprising:
an organization tree construction unit for constructing an organization tree based on the organization architecture of the enterprise; the organization architecture comprises a plurality of organizations;
a first vocabulary dictionary constructing unit for constructing a first vocabulary dictionary for each organization based on the hierarchical relationship of the organization tree; the first term dictionary includes: a plurality of first identity identifications capable of reflecting a hierarchical relationship;
a second vocabulary dictionary constructing unit for establishing a second vocabulary dictionary for each organization in the organization architecture; the second term dictionary includes: a second identity of each organization node;
the mapping establishing unit is used for establishing a mapping relation between a first identity mark in the first vocabulary term dictionary and a second identity mark in the second vocabulary term dictionary;
and the storage unit is used for storing the mapping relation in the database and correspondingly storing the data corresponding to each organization and the second identity mark thereof.
Further, the apparatus further comprises: and the updating unit is used for updating the mapping relation among the vocabulary index, the first vocabulary dictionary and the second vocabulary dictionary of the change organization when the organization structure is changed.
In yet another aspect, the present invention further provides a data searching apparatus based on organization isolated data rights, the apparatus comprising:
the request acquisition unit is used for acquiring a data search request of a user, wherein the data search request comprises a term index and a suffix wild card;
the first positioning unit is used for determining a first identity according to the term index and the suffix wildcard in the data search request acquired by the request acquisition unit;
the second positioning unit is used for determining a second identity corresponding to the first identity determined by the first positioning unit according to the mapping relation between the first identity and the second identity;
and the data return unit is used for determining an organization according to the second identity mark determined by the second positioning unit and returning the data corresponding to the organization to the user.
The invention has the advantages and positive effects that: the invention can reduce the length and efficiency problems of the execution statement in searching and does not need to modify data in organization change. The organization and search method is efficient in running and capable of agilely coping with the data isolation requirements related to organization architecture in enterprise application.
Drawings
In order to more clearly illustrate the embodiments of the present invention or the technical solutions in the prior art, the drawings that are required in the embodiments or the description of the prior art will be briefly described, and it is obvious that the drawings in the following description are some embodiments of the present invention, and other drawings may be obtained according to the drawings without inventive effort to a person skilled in the art.
FIG. 1 is an exemplary diagram of an organization management architecture in an enterprise application;
FIG. 2 is a flow chart of a data storage method based on organizing isolated data rights in an embodiment of the invention;
FIG. 3 is a diagram of an exemplary data storage based on organizing isolated data rights in accordance with an embodiment of the present invention;
FIG. 4 is a flowchart of a data searching method based on organizing isolated data rights in an embodiment of the present invention;
FIG. 5 is a flow chart of a data storage device based on organizing isolated data rights in an embodiment of the present invention;
fig. 6 is a flowchart of a data searching apparatus based on organization isolated data rights in an embodiment of the present invention.
Detailed Description
In order that those skilled in the art will better understand the present invention, a technical solution in the embodiments of the present invention will be clearly and completely described below with reference to the accompanying drawings in which it is apparent that the described embodiments are only some embodiments of the present invention, not all embodiments. All other embodiments, which can be made by those skilled in the art based on the embodiments of the present invention without making any inventive effort, shall fall within the scope of the present invention.
It should be noted that the terms "first," "second," and the like in the description and the claims of the present invention and the above figures are used for distinguishing between similar objects and not necessarily for describing a particular sequential or chronological order. It is to be understood that the data so used may be interchanged where appropriate such that the embodiments of the invention described herein may be implemented in sequences other than those illustrated or otherwise described herein. Furthermore, the terms "comprises," "comprising," and "having," and any variations thereof, are intended to cover a non-exclusive inclusion, such that a process, method, system, article, or apparatus that comprises a list of steps or elements is not necessarily limited to those steps or elements expressly listed but may include other steps or elements not expressly listed or inherent to such process, method, article, or apparatus.
As shown in fig. 2, a data storage method based on organization isolated data authority in an embodiment of the present invention specifically includes the following steps:
s101, establishing an organization tree based on an organization architecture of an enterprise;
each enterprise includes at least one organization, and each organization has a hierarchical relationship, that is, an organization architecture, according to which an organization tree can be formed, where each organization is a node in the organization tree, more specifically, the uppermost organization is a root node of the organization tree, and other organizations are leaf nodes of the organization tree.
S102, establishing a first term dictionary of each organization based on hierarchical relations of the organization tree;
the first term dictionary (TermDirectory 1, TD 1) includes: a plurality of first identity identifiers (id_1) constructed based on the hierarchical relationship of the organization tree, id_1 being IDs related to the hierarchical relationship, capable of reflecting the hierarchical relationship, for example, id_1 (a) =01 as shown in table 1 for the organization architecture in fig. 1; id_1 (b) =0101; id_1 (c) =0102; id_1 (g) = 010103; id_1 (o) = 01030302. The organization id_1 consists of his superordinate organization id_1 and a serial number. The serial number may take a variety of forms, for example, it may be composed of 2-bit letters and/or numbers, one bit being any of the capital letters a-Z and the other bit being any of the numbers 0-9, which may be expressed as: [ A-Z0-9] {2}, which can make up to 1296 child nodes per node. As another example, one bit is any of the lower case letters a-Z, the upper case letters a-Z, and another bit is any of the digits 0-9, which may be expressed as: [ a-zA-Z0-9] {2}, which can increase the number of word nodes to 3844.
TABLE 1
An administrator of an enterprise typically manages one or more organizational trees, so that in most scenarios, the authority-limiting operation of an organizational tree may be specified with a suffix wild card. Such as: x management organization b and its subordinate organizations: 0101; y management node c and its subordinate organizations: 0102; z management organization o:01030302. during searching, the wildcards can greatly reduce the length of search sentences, and the suffix wildcards can increase the searching efficiency.
S103, establishing a second term dictionary for each organization in the organization architecture;
the second term dictionary (TermDirectory 2, TD 2) includes: a fixed second identity for each organization. The ID is generated at the time of organization creation and does not change with changes in organization architecture. Random numbers may generally be used, with all tissue-related data, keeping a fixed ID of the tissue for association with the tissue. Since the fixed ID of the organization is maintained on the data, the second vocabulary dictionary is stable.
S104, establishing a mapping relation between a first identity mark in the first vocabulary term dictionary and a second identity mark in the second vocabulary term dictionary;
each organization has two IDs, namely a first identity identifier and a second identity identifier, the two IDs have a mapping relationship, as shown in fig. 3, each organization in the organization structure has its own Term index (Term index), for example, 01 and 02 … …, the organization structure is divided into four levels, TD1 includes a plurality of ids_1, for example, 01, 0101 …,0103 …, 010303 and 01030302 … …, id_1 in TD1 can reflect the level of the organization, for example, 01 corresponds to a first layer, 0103 corresponds to a second layer … … governed by the first layer, TD2 includes a plurality of ids_2, for example, werjr, safder, sdfcxv … …, id_1 in TD1 corresponds to id_2 in TD2 one-to-one, and id_2 in TD2 corresponds to data under the authority of the organization data one-to-one.
S105, storing the mapping relation in a database, and correspondingly storing data corresponding to each organization and the second identity thereof.
In another embodiment, when a change occurs to the organization architecture, a mapping relationship between the vocabulary index, the first vocabulary dictionary, and the second vocabulary dictionary of the change organization is updated.
When the organization changes, the mappings of the terminal index, TD1, and TD1 and TD2 of the organization are updated, and if the organization c is changed to the organization of the same level as the organization a on the basis of the organization architecture shown in fig. 1, only the id_1 of the organization c in the TD1 and the mappings of the corresponding id_1 and di_2 need to be updated, and the updated TD1 is thickened as shown in table 2.
TABLE 2
This is a very fast process, since the amount of data that needs to be updated is small. Even in large enterprises with large data volume, the organization architecture can be flexibly changed, and the method is suitable for implementation in scenes with large data volume.
Corresponding to the data storage method based on the data authority isolated by the organization tree, as shown in fig. 4, the embodiment of the invention provides a data search method based on the data authority isolated by the organization tree, which specifically comprises the following steps:
s201, acquiring a data search request of a user, wherein the data search request comprises a term index and a suffix wild card;
the user may initiate a data search request to the database to query the data corresponding to the organization managed by the user and the subordinate organizations thereof. When searching, a suffix wild card is used to define an organization scope, which can optimize the length of a search statement and greatly optimize the efficiency of interpretation execution.
S202, determining a first identity according to a term index and a suffix wild card in the data search request in S201;
s203, determining a second identity corresponding to the first identity determined in S202 according to the mapping relation between the first identity and the second identity;
s204, determining an organization according to the second identity mark determined in S203, and returning data corresponding to the organization to the user.
A term index termindex, term mapping termmaging, term dictionary termdictionary and skip list based on FST (Finite State Transducer) are constructed to optimize the data searching performance.
When searching, the FST-based termindex provides good searching performance for the suffix wildcard, and after locating to TD1, the real data of TD2 mapping is obtained rapidly through the mapping from TD1 to TD2, so that high searching performance is ensured.
As shown in fig. 5, corresponding to a data storage method based on organization isolated data rights in the foregoing embodiment, the present invention further provides a data storage device based on organization isolated data rights, including:
an organization tree construction unit 100 for constructing an organization tree based on an organization architecture of an enterprise; each enterprise includes at least one organization, and each organization has a hierarchical relationship, that is, an organization architecture, according to which an organization tree can be formed, where each organization is a node in the organization tree, more specifically, the uppermost organization is a root node of the organization tree, and other organizations are leaf nodes of the organization tree.
A first vocabulary item dictionary constructing unit 200 for establishing a first vocabulary item dictionary for each organization based on the hierarchical relationship of the organization tree constructed by the organization tree constructing unit 100; the first term dictionary (TermDirectory 1, TD 1) includes: the first identity identifications (ID_1) constructed based on the hierarchical relationship of the organization tree, ID_1 being the ID related to the hierarchical relationship, ID_1 of the organization consisting of its upper organization ID_1 and a serial number.
A second vocabulary dictionary constructing unit 300 for establishing a second vocabulary dictionary based on each organization node in the organization architecture; the second term dictionary (TermDirectory 2, TD 2) includes: a fixed second identity for each organization. The ID is generated at the time of organization creation and does not change with changes in organization architecture. Random numbers may generally be used, with all tissue-related data, keeping a fixed ID of the tissue for association with the tissue. Since the fixed ID of the organization is maintained on the data, the second vocabulary dictionary is stable.
A mapping establishing unit 400, configured to establish a mapping relationship between the first identity identifier in the first vocabulary item dictionary established by the first vocabulary item dictionary establishing unit 200 and the second identity identifier in the second vocabulary item dictionary established by the second vocabulary item dictionary establishing unit 300; each organization has two IDs, namely a first identity and a second identity, and the two IDs have a mapping relation.
The storage unit 500 is configured to store the mapping relationship established by the mapping establishment unit 400 in a database, and store the data corresponding to each organization and the second identity thereof correspondingly.
In another embodiment, the data storage device based on the organization isolated data authority further comprises, in addition to the above units: the updating unit 600 is configured to update, when the organization structure changes, a mapping relationship among the vocabulary item index, the first vocabulary item dictionary, and the second vocabulary item dictionary of the change organization.
This is a very fast process, since the amount of data that needs to be updated is small. Even in large enterprises with large data volume, the organization architecture can be flexibly changed, and the method is suitable for implementation in scenes with large data volume.
For a data storage device based on organization isolated data rights according to an embodiment of the present invention, since the data storage device corresponds to a data storage method based on organization isolated data rights in the above embodiment, the description is relatively simple, and regarding the similarity, please refer to the description of a data storage method based on organization isolated data rights in the above embodiment, which will not be described in detail herein.
As shown in fig. 6, corresponding to a data searching method based on organization isolated data rights in the foregoing embodiment, the present invention further provides a data searching device based on organization isolated data rights, including:
a request obtaining unit 700, configured to obtain a data search request of a user, where the data search request includes a term index and a suffix wild card; the user may initiate a data search request to the database to query the data corresponding to the organization managed by the user and the subordinate organizations thereof. When searching, a suffix wild card is used to define an organization scope, which can optimize the length of a search statement and greatly optimize the efficiency of interpretation execution.
A first positioning unit 800, configured to determine a first identity according to the term index and the suffix wildcard in the data search request acquired by the request acquisition unit 700;
the second positioning unit 900 is configured to determine, according to a mapping relationship between the first identity and the second identity, a second identity corresponding to the first identity determined by the first positioning unit 800;
the data returning unit 1000 is configured to determine an organization according to the second identity determined by the first positioning unit 800, and return data corresponding to the organization to the user.
A term index terminax, term mapping termmating, term dictionary termdictionary and skip list based on FST (Finite State Transducer) are constructed to optimize the data searching performance.
When searching, the FST-based termindex provides good searching performance for the suffix wildcard, and after locating to TD1, the real data of TD2 mapping is obtained rapidly through the mapping from TD1 to TD2, so that high searching performance is ensured.
Since the data searching apparatus based on the organization isolated data right according to the embodiment of the present invention corresponds to a data searching method based on the organization isolated data right in the above embodiment, the description is relatively simple, and the relevant similarities refer to the description of a data searching method based on the organization isolated data right in the above embodiment, which is not described in detail herein.
In the several embodiments provided in the present invention, it should be understood that the disclosed technology may be implemented in other manners. The above-described embodiments of the apparatus are merely exemplary, and the division of the units, for example, may be a logic function division, and may be implemented in another manner, for example, a plurality of units or components may be combined or may be integrated into another system, or some features may be omitted, or not performed. Alternatively, the coupling or direct coupling or communication connection shown or discussed with each other may be through some interfaces, units or modules, or may be in electrical or other forms.
The units described as separate parts may or may not be physically separate, and parts displayed as units may or may not be physical units, may be located in one place, or may be distributed on a plurality of units. Some or all of the units may be selected according to actual needs to achieve the purpose of the solution of this embodiment.
In addition, each functional unit in the embodiments of the present invention may be integrated in one processing unit, or each unit may exist alone physically, or two or more units may be integrated in one unit. The integrated units may be implemented in hardware or in software functional units.
The integrated units, if implemented in the form of software functional units and sold or used as stand-alone products, may be stored in a computer readable storage medium. Based on such understanding, the technical solution of the present invention may be embodied essentially or in part or all of the technical solution or in part in the form of a software product stored in a storage medium, including instructions for causing a computer device (which may be a personal computer, a server, or a network device, etc.) to perform all or part of the steps of the method according to the embodiments of the present invention. And the aforementioned storage medium includes: a U-disk, a Read-Only Memory (ROM), a random access Memory (RAM, random Access Memory), a removable hard disk, a magnetic disk, or an optical disk, or other various media capable of storing program codes.
Finally, it should be noted that: the above embodiments are only for illustrating the technical solution of the present invention, and not for limiting the same; although the invention has been described in detail with reference to the foregoing embodiments, it will be understood by those of ordinary skill in the art that: the technical scheme described in the foregoing embodiments can be modified or some or all of the technical features thereof can be replaced by equivalents; such modifications and substitutions do not depart from the spirit of the invention.
Claims (4)
1. The data searching method based on the organization isolated data authority is characterized by constructing a term index termindex, a term mapping terminapplying, a term dictionary termdictionary and a skip list based on a finite state transducer FST to optimize the data searching performance; the authority limiting operation of the organization tree is specified by a suffix wildcard; the data is stored in the following manner, including:
establishing an organization tree based on an organization architecture of an enterprise; the organization architecture comprises a plurality of organizations;
establishing a first term dictionary of each organization based on the hierarchical relationship of the organization tree; the first term dictionary includes: a plurality of first identity identifications capable of reflecting a hierarchical relationship;
establishing a second vocabulary dictionary for each organization in the organization architecture; the second term dictionary includes: a second identity of each organization node; the second identity mark is generated when the organization is created and cannot change along with the change of organization architecture;
establishing a mapping relation between a first identity mark in the first vocabulary item dictionary and a second identity mark in the second vocabulary item dictionary;
storing the mapping relation in a database, and correspondingly storing data corresponding to each organization and a second identity thereof;
the data searching method comprises the following steps:
acquiring a data search request of a user, wherein the data search request comprises a term index and a suffix wild card;
determining a first identity identifier according to a term index and a suffix wild card in the data search request;
determining a second identity corresponding to the first identity according to the mapping relation between the first identity and the second identity;
determining an organization according to the second identity, and returning data corresponding to the organization to a user;
when the organization architecture is changed, the mapping relation among the vocabulary index, the first vocabulary dictionary and the second vocabulary dictionary of the change organization is updated.
2. The method for searching for data based on organization isolated data rights of claim 1, wherein the first identity of the organization comprises: the identity and serial number of the upper level organization of the organization.
3. A data search method based on organizing isolated data rights according to claim 2, characterized in that the serial number is composed of 2-bit letters and/or numbers.
4. The data searching device based on the organization isolated data authority is characterized by constructing a term index termindex, a term mapping terminapplying, a term dictionary termdictionary and a skip list based on a finite state transducer FST to optimize the data searching performance; the authority limiting operation of the organization tree is specified by a suffix wildcard; the data is stored according to a storage device comprising:
an organization tree construction unit for constructing an organization tree based on the organization architecture of the enterprise; the organization architecture comprises a plurality of organizations;
a first vocabulary dictionary constructing unit for constructing a first vocabulary dictionary for each organization based on the hierarchical relationship of the organization tree; the first term dictionary includes: a plurality of first identity identifications capable of reflecting a hierarchical relationship;
a second vocabulary dictionary constructing unit for establishing a second vocabulary dictionary for each organization in the organization architecture; the second term dictionary includes: a second identity of each organization node; the second identity mark is generated when the organization is created and cannot change along with the change of organization architecture;
the mapping establishing unit is used for establishing a mapping relation between a first identity mark in the first vocabulary term dictionary and a second identity mark in the second vocabulary term dictionary;
the storage unit is used for storing the mapping relation in a database and correspondingly storing data corresponding to each organization and a second identity mark thereof;
the search device includes:
the request acquisition unit is used for acquiring a data search request of a user, wherein the data search request comprises a term index and a suffix wild card;
the first positioning unit is used for determining a first identity according to the term index and the suffix wildcard in the data search request acquired by the request acquisition unit;
the second positioning unit is used for determining a second identity corresponding to the first identity determined by the first positioning unit according to the mapping relation between the first identity and the second identity;
the data return unit is used for determining an organization according to the second identity mark determined by the second positioning unit and returning the data corresponding to the organization to the user; and the updating unit is used for updating the mapping relation among the vocabulary index, the first vocabulary dictionary and the second vocabulary dictionary of the change organization when the organization structure is changed.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN202211644442.0A CN116069894B (en) | 2022-12-20 | 2022-12-20 | Data storage and searching method and device based on organization isolated data authority |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN202211644442.0A CN116069894B (en) | 2022-12-20 | 2022-12-20 | Data storage and searching method and device based on organization isolated data authority |
Publications (2)
Publication Number | Publication Date |
---|---|
CN116069894A CN116069894A (en) | 2023-05-05 |
CN116069894B true CN116069894B (en) | 2024-01-26 |
Family
ID=86176003
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN202211644442.0A Active CN116069894B (en) | 2022-12-20 | 2022-12-20 | Data storage and searching method and device based on organization isolated data authority |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN116069894B (en) |
Citations (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN108197313A (en) * | 2018-02-01 | 2018-06-22 | 中国计量大学 | The dictionary index method of space optimization is realized by 16 Trie trees |
CN110619066A (en) * | 2019-08-30 | 2019-12-27 | 视联动力信息技术股份有限公司 | Information acquisition method and device based on directory tree |
CN112612845A (en) * | 2020-12-22 | 2021-04-06 | 中国建设银行股份有限公司 | Method and device for realizing organization mechanism view, electronic equipment and readable storage medium |
-
2022
- 2022-12-20 CN CN202211644442.0A patent/CN116069894B/en active Active
Patent Citations (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN108197313A (en) * | 2018-02-01 | 2018-06-22 | 中国计量大学 | The dictionary index method of space optimization is realized by 16 Trie trees |
CN110619066A (en) * | 2019-08-30 | 2019-12-27 | 视联动力信息技术股份有限公司 | Information acquisition method and device based on directory tree |
CN112612845A (en) * | 2020-12-22 | 2021-04-06 | 中国建设银行股份有限公司 | Method and device for realizing organization mechanism view, electronic equipment and readable storage medium |
Also Published As
Publication number | Publication date |
---|---|
CN116069894A (en) | 2023-05-05 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
US11995124B2 (en) | Query language interoperability in a graph database | |
US9361346B2 (en) | Mapping information stored in a LDAP tree structure to a relational database structure | |
US7562087B2 (en) | Method and system for processing directory operations | |
US8495007B2 (en) | Systems and methods for hierarchical aggregation of multi-dimensional data sources | |
CN102638584B (en) | Data distributing and caching method and data distributing and caching system | |
CN107491487B (en) | Full-text database architecture and bitmap index creation and data query method, server and medium | |
CN103020078B (en) | Distributing real-time data bank data hierarchy indexing means | |
CN105138592A (en) | Distributed framework-based log data storing and retrieving method | |
CN114116716A (en) | Hierarchical data retrieval method, device and equipment | |
CN104794123A (en) | Method and device for establishing NoSQL database index for semi-structured data | |
CN108829880B (en) | Method for configuration management of optical network terminal equipment | |
CN106407303A (en) | Data storage method and apparatus, and data query method and apparatus | |
US8015195B2 (en) | Modifying entry names in directory server | |
US6286010B1 (en) | Methods and apparatuses for interaction between schemata | |
CN109542861B (en) | File management method, device and system | |
CN106503214A (en) | A kind of complex rule matching process based on Redis memory databases | |
CN104391908B (en) | Multiple key indexing means based on local sensitivity Hash on a kind of figure | |
CN108984626B (en) | Data processing method and device and server | |
CN104091228A (en) | Systems for resource management, resource registering, resource inquiry and resource semantic corpus management of internet of things | |
CN102521375A (en) | Directory service data retrieval method and directory service data retrieval system | |
US7200608B2 (en) | Application programming interface for centralized storage of principal data | |
CN114840487A (en) | Metadata management method and device for distributed file system | |
US11531666B1 (en) | Indexing partitions using distributed bloom filters | |
CN106131115A (en) | Address book data based on high in the clouds address list is issued and renewal system automatically | |
CN110134698A (en) | Data managing method and Related product |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PB01 | Publication | ||
PB01 | Publication | ||
SE01 | Entry into force of request for substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
GR01 | Patent grant | ||
GR01 | Patent grant |