CN1741464A - Network user management system and method thereof - Google Patents

Network user management system and method thereof Download PDF

Info

Publication number
CN1741464A
CN1741464A CN 200410075094 CN200410075094A CN1741464A CN 1741464 A CN1741464 A CN 1741464A CN 200410075094 CN200410075094 CN 200410075094 CN 200410075094 A CN200410075094 A CN 200410075094A CN 1741464 A CN1741464 A CN 1741464A
Authority
CN
China
Prior art keywords
virtual domain
keeper
role
network user
information
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN 200410075094
Other languages
Chinese (zh)
Inventor
陈有琨
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Technologies Co Ltd
Original Assignee
Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co Ltd filed Critical Huawei Technologies Co Ltd
Priority to CN 200410075094 priority Critical patent/CN1741464A/en
Publication of CN1741464A publication Critical patent/CN1741464A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Storage Device Security (AREA)

Abstract

A management system of network user comprises two levels of virtual domains as each virtual domain being used to manage a group of network users with network user group being subset managed by one level up grade virtual domain or being subset of network user in whole system ; each virtual domain including at least on supervisor being used to manage its attribution virtual domain and branch virtual domain of it ; information management subsystem for storing and managing attribution father domain of virtual domain , network user attribution virtual domain information , supervisor attribution virtual domain and right information .

Description

Network user management system and method thereof
Technical field
The present invention relates to the network user's management, the particularly network user's management in the large corporation.
Background technology
Present broadband access network and internetworking agreement (Internet Protocol, abbreviation " IP ") telephone service is more and more universal, every profession and trade is in order to realize informationization and office automation, and provide better network service for people, all dropped into a large amount of funds, how the user to these networks manages, and becomes the thorny problem of network operation, and the scheme that the network user is managed will obtain application more and more widely.Especially in departments such as enterprises and institutions, community, school, the solution that the network user is managed has application space very widely.
In existing supervising the network user's the technical scheme, the Internet user's of all accesses management is finished by the keeper with certain authority all in a management system.Wherein, keeper's authority is that system configures, for example authority such as inquiring user bill, modification user profile.
Super keeper is the keeper that system default provides, and has all authorities.Super keeper is responsible for creating the role, perhaps creates the safety officer earlier, and authorizes the safety officer with associated rights, is responsible for creating the role by the safety officer then.The technical staff who is familiar with field of the present invention can know that the keeper that can create the role must be (that is to say the safety officer of the final father field that must be all territories) of global field.As described below as the step 1 that manages in the existing technical scheme.
At first safety officer or super keeper are assigned to the role with authority, and the operation permission of for example will entering an item of expenditure in the accounts and charge operation permission are assigned to accounting management person's role; Super then keeper or safety officer create each keeper, for example create accounting management keeper etc.; Just created the keeper, the keeper operates without any authority, and then safety officer or the super keeper role that will comprise some authority is assigned to each keeper; At last, each keeper bookkeeping of being correlated with.
For example, use integrated access management server (Comprehensive Access ManagementServer, be called for short " CAMS ") as the Service Management Center in the network, different affiliated institutions or zone are managed respectively the Internet user in this scope, finish authentication, mandate, charging to the network user, realize managing, can runing of network, guarantee the safety of network and user profile.
Existing supervising the network user's technical scheme relatively adapts to for small-sized or medium-sized mechanism.But generally speaking, large corporation, as large-scale community, large enterprise etc., the network user's quantity is huger, for more effective each zone or subsidiary to its subordinate carries out the network user's management, just needs the pressure in the Decentralization.Common way can be considered each zone or subsidiary are divided into different distinct area, and each zone adopts a cover technical scheme to manage separately respectively separately.
In actual applications, there is following problem in such scheme: the solution incompatibility large corporation of existing network users management, if adopt a cover solution to carry out the network user's management, management difficulty is bigger, on the safety certain hidden danger is arranged simultaneously; Buy many cover solutions if think the pressure in the Decentralization, can cause fund, safeguard the waste of manpower etc.
Cause the main cause of this situation to be, large corporation is if adopt a cover solution to carry out the network user's management, because numerous network user's unified managements, therefore management difficulty is bigger, the keeper who has certain authority simultaneously can manage whole users of large corporation, thus the potential safety hazard of causing; If buy many cover solutions, then need more fund and more attendant, cause fund, safeguard the waste of manpower etc.
Summary of the invention
In view of this, main purpose of the present invention is to provide a kind of network user management system and method thereof, makes that the network user's management is more convenient and safe in the large corporation.
For achieving the above object, the invention provides a kind of network user management system, comprise
At least two other virtual Domain of level, each virtual Domain is used to manage a group network user, and this group network user is the subclass of the network user in other virtual Domain of upper level or the whole system;
Each virtual Domain also comprises at least one keeper, is used for the subordinate's virtual Domain according to its ownership virtual Domain of its rights management and described ownership virtual Domain;
Information management subsystem is used to store and manage the ownership father field information of described virtual Domain, the described network user's ownership virtual Domain information and described keeper's ownership virtual Domain and authority information.
Wherein, have at least other described virtual Domain of a level to have a plurality of.
Belong between different subordinate's virtual Domain of same described virtual Domain, do not have the network user's common factor.
Described keeper's authority comprises:
Create, revise, delete the described network user's information; Create, revise, delete the information of subordinate's virtual Domain; Create, revise, delete the keeper's of subordinate's virtual Domain information.
The information storage of described virtual Domain is in the virtual Domain information table of described database, and described virtual Domain information table comprises following list item: virtual Domain identifier, virtual Domain title and ownership father field.
Described information management subsystem is a database;
The information that in described database, also comprises the role, described role's authority is set by the keeper that the role definition authority is arranged in the top layer virtual Domain, and the keeper's of described virtual Domain authority is by the pairing role's decision of this keeper.
In the Role Information table and role-security mapping table of described role's information storage in described database, described Role Information table comprises following list item: role identifiers, role's title; Described role-security mapping table comprises following list item: role identifiers, authority identifier.
In keeper's Basic Information Table and administrator right table of the information storage of keeper described in the virtual Domain in described database, described keeper's Basic Information Table comprises following list item: keeper's identifier, ownership virtual Domain identifier, admin name; Described administrator right table comprises following list item: keeper's identifier, role identifiers.
The described network user needs in the mechanism to surf the Internet or dials the user of internetworking protocol phone.
The present invention also provides a kind of network user management method, comprises following steps:
There is the keeper of role definition authority to define role and each role's authority in the top layer virtual Domain of A;
It also is that virtual Domain is specified father field that B has keeper managing virtual territory in its range of management of creating the subdomain authority;
The keeper that C has creative management person's authority manages other keepers and specifies described role and ownership virtual Domain for described other keepers in its range of management;
D is in charge of keeper supervising the network user in its range of management of the network user;
Among described step B, C, the D, described keeper's range of management is described keeper's ownership virtual Domain and subordinate's virtual Domain of this virtual Domain.
By relatively finding, technical scheme difference with the prior art of the present invention is that the present invention program is not with all-network user centralized management, and adopts the scheme of virtual Domain, large corporation is divided into different zones, carries out the management of subregion, classification, fraction.
Difference on this technical scheme, brought comparatively significantly beneficial effect, promptly because the present invention program will carry out subregion to the network user of large corporation, classification, the management of fraction, therefore management is more flexible, the difficulty of general headquarters of large corporation management maintenance reduces greatly, and because keeper's range of management is restricted, therefore the fail safe of system improves greatly, simultaneously can be still by general headquarters' unified management for some information of overall importance, improved the management of general headquarters, maintenance efficiency, last owing to district management in accounting management, so financial management is also convenient.
Description of drawings
Fig. 1 is the schematic diagram that concerns according to virtual Domain in the realization virtual Domain Managed Solution of a preferred embodiment of the present invention;
Fig. 2 is according to defining virtual territory of the method for the realization virtual Domain of a preferred embodiment of the present invention management and keeper's flow chart.
Embodiment
For making the purpose, technical solutions and advantages of the present invention clearer, the present invention is described in further detail below in conjunction with accompanying drawing.
The present invention program adopts the virtual Domain management, be about to the authority classification decentralized management, a large-scale mechanism is divided into each zone, the network user in the network user of one's respective area and the subordinate zone under the one's respective area is carried out related management by the keeper with associated rights in each zone.The network user of the Admin Administration one's respective area with associated rights in each zone, such as the network user's establishment, cancellation, charge, enter an item of expenditure in the accounts, Information Statistics etc.; General headquarters of mechanism are provided with the information of system maintenance class, are provided with or the like as charging policy.When general headquarters of large corporation are managed concentratedly critical information, alleviated managerial pressure again.When specific implementation, the present invention program writes some data that need dispose in the database table, realizes dividing region, management such as the appointment of authority by database table.
It is pointed out that strictly speaking, the database of being mentioned among the present invention is actually information management subsystem, this subsystem has information stores and management (for example inserting, look into, delete, change function) function.This information management subsystem can have various ways of realization, both comprised general large database (for example SqlServer, Oracle etc.), also comprise the database (for example MySql, Paradox etc.) that adopts document form, also comprise data management system design voluntarily, that use document form (can be one or more files) storage relevant information.
Below in conjunction with a specific embodiment of the present invention the present invention program is described.
System according to the management of the realization virtual Domain of a preferred embodiment of the present invention comprises: comprise the network user and keeper's the virtual Domain that network constituted, be used for the database of storing virtual domain information, network user's information, Administrator Info and Role Information.Wherein, the special virtual Domain of the top layer of a system that realizes the virtual Domain management is called global field, and global field is that system specifies automatically, and Unsupervised member creates.
Except global field, other all virtual Domain each have the father field of an ownership, need to prove, a virtual Domain has only a father field, but a plurality of subdomains can be arranged.For convenience of description, we call the virtual Domain such as subdomain of the subdomain of virtual Domain and subdomain thereof subordinate's virtual Domain of this virtual Domain.
The keeper is according to its rights management ownership virtual Domain and subordinate's virtual Domain thereof.For example, accounting management keeper with accounting management authority can be to the virtual Domain of his ownership and the operation that all users of subordinate's virtual Domain carry out accounting management thereof, have open an account, cancellation, establishment subdomain and the user management keeper that creates new management person's authority can set up the ownership virtual Domain that belongs to this keeper and the new virtual Domain of subordinate's virtual Domain and create new management person for new virtual Domain.Need to prove that super keeper belongs to global field and has all authorities, super keeper can carry out any operation in any virtual Domain.
Those of ordinary skill in the art are appreciated that by virtual Domain under setting the keeper will improve the fail safe of system and the simplicity of management to limit keeper's range of management.
In a preferred embodiment of the present invention, the relation of virtual Domain as shown in Figure 1, the father field of the current virtual Domain of arrow points.The accounting management operator of global field can manage the user's of all virtual Domain account, the accounting management operator of virtual Domain 1 can managing virtual territory 1 and all users' of virtual Domain 3 account, the user's that the accounting management operator of virtual Domain 3 then can only managing virtual territory 3 account; Have the operator who creates the virtual Domain authority and can in its home domain, create virtual Domain, specify the father field of virtual Domain, the operator who belongs to certain territory with and authority information can specify by the operator who has administrative operator's authority of global field, also can specify by the operator who has administrative operator's authority in its higher level territory, the usefulness of virtual Domain 1 has the operator who creates the virtual Domain authority then can only create virtual Domain as the subdomain of virtual Domain 1, for example creates virtual Domain 3.
In database, virtual Domain information is stored by the virtual Domain information table; Network user's information is stored by network user's information table; The Administrator Info is stored by keeper's Basic Information Table and administrator right table; Role Information is stored by Role Information table and role-security mapping table.
Having the keeper who creates the territory authority can the managing virtual domain information table, carries out the operations such as increase, modification, deletion, inquiry of virtual Domain.The virtual Domain information table comprises list items such as virtual Domain ID, virtual Domain Name and ownership father field.In a preferred embodiment of the present invention, subsidiary 1 and 2 ownership general headquarters, subsidiary 3 belongs to subsidiary 1, for managerial convenience, also creates virtual Domain according to this relation, and the virtual Domain information table is as shown in table 1 below.
Virtual Domain ID Virtual Domain Name The ownership father field
0 Global field
1 Subsidiary 1 0
2 Subsidiary 2 0
3 Subsidiary 3 1
…… …… ……
Table 1
To the relation of virtual Domain that should the virtual Domain information table as shown in Figure 1.Wherein, arrow points is the father field of current virtual Domain.
In a preferred embodiment of the present invention, virtual Domain 1 and virtual Domain 2 can only be created or deletion by the keeper with establishment territory authority of global field or by super keeper, 3 of virtual Domain can be created or be deleted by keeper or the super keeper that having of global field created the territory authority, also can be created by the keeper that having of virtual Domain 1 created the territory authority or deletion.
Super keeper in the global field or safety officer can role of manager's information table and role-security mapping tables, carry out the operations such as interpolation, deletion, modification, inquiry of Role Information, realize the management of authority.Wherein, the Role Information table comprises role ID and role's title list item, and the role-security mapping table comprises role ID and permission ID list item.Authority is that system has reserved, and in rights management, certain already present authority can be composed to certain role.Those of ordinary skill in the art are appreciated that Role Information table and role-security mapping table can only be for the purpose of safety by the super keeper in the global field or safety officer's management.
Role Information table in a preferred embodiment of the present invention in the system of realization virtual Domain management is as shown in table 2 below.
Role ID Role's title
1 The accounting management role
2 System information is safeguarded the role
3 The user management role
…… ……
Table 2
The role-security mapping table of realizing the system that virtual Domain is managed in a preferred embodiment of the present invention is as shown in table 3 below.
Role ID Permission ID
1 1 (entering an item of expenditure in the accounts by hand)
1 2 (charges)
3 3 (open an account, cancellation)
3 4 (create subdomain and create new management person)
2 5 (system maintenances)
…… ……
Table 3
By creating the certain authority of different roles and type ascribed role, just realized the management of authority.
When those of ordinary skill in the art are appreciated that creative management person specific role being composed to the keeper to make the keeper have the authority of this specific role.
The keeper who has creative management person and authorization privilege can an operation manager's Basic Information Table and administrator right table, increases, operation such as deletion, modification, searching and managing person's information.Wherein, keeper's Basic Information Table comprises list items such as keeper ID, ownership virtual Domain ID and admin name, and the administrator right table comprises keeper ID and role ID list item.
Need to prove, the keeper who belongs to certain virtual Domain with and authority information, can specify by the keeper who has creative management person's authority and authorization privilege in its higher level territory; The keeper who has creative management person's authority and authorization privilege can not specify the keeper of its ownership virtual Domain and ownership virtual Domain subordinate's virtual Domain virtual Domain in addition.
Keeper's Basic Information Table in a preferred embodiment of the present invention in the system of realization virtual Domain management is as shown in table 4 below.
Keeper ID Ownership virtual Domain ID The admin name
1 1 (subsidiary 1) Keeper 1 (accounting management operator+customer administrator)
2 0 (gamut) Keeper 2 (accounting management operator)
3 2 (subsidiaries 2) Keeper 3 (user management operator)
4 3 (subsidiaries 3) Keeper 4 (accounting management operator)
5 0 Keeper 5 (system maintenance person)
…… …… ……
Table 4
Administrator right table in a preferred embodiment of the present invention in the system of realization virtual Domain management is as shown in table 5 below.
Keeper ID Role ID
1 (accounting management operator) 1 (accounting management role)
2 (accounting management operators) 1 (accounting management role)
1 (user management operator) 3 (user management roles)
3 (user management operators) 3 (user management roles)
4 (accounting management operators) 1 (accounting management role)
5 (system maintenance persons) 2 (system maintenance roles)
…… ……
Table 5
From the data of each table of a top preferred embodiment of the present invention, we can see: keeper 1 can carry out the accounting management operation to virtual Domain 1 and 3; Keeper 1 can carry out the user management operation to virtual Domain 1 and 3, comprises and opens an account, creates subdomain; Keeper 2 can carry out the accounting management operation to whole virtual Domain; Keeper 3 can carry out the user management operation to virtual Domain 2, comprises and opens an account, creates subdomain; Keeper 4 can carry out the accounting management operation to virtual Domain 3; Keeper 5 can be provided with system maintenance information.
Need to prove that belong to the customer administrator of different virtual Domain, when the Internet user was opened an account, in general this Internet user only belonged to keeper's corresponding virtual territory.For example, after the customer administrator of virtual Domain 2 opened an account to the user, this user belonged to virtual Domain 2 automatically.After but the customer administrator of virtual Domain 1 opened an account to the user, needing designated user was to belong to virtual Domain 1 or belong to virtual Domain 3.Equally, after the customer administrator of global field opens an account to the user, need designated user to belong to virtual Domain 1 or virtual Domain 2 or virtual Domain 3.Need to prove that when opening an account for the user, the information in user's corresponding virtual territory leaves in the subscriber's meter.
Those of ordinary skill in the art are readily appreciated that, in a preferred embodiment of the invention described above, it is as shown in table 6 below that each keeper carries out operation permission to the user of each virtual Domain.
Virtual Domain 1 user Virtual Domain 2 users Virtual Domain 3 users
The account operation User's operation Creative management person The account operation User's operation Creative management person The account operation User's operation Creative management person
The keeper 1 Can Can Can / / / Can Can Can
The keeper 2 Can / / Can / / Can / /
The keeper 3 / / / / Can / / / /
The keeper 4 / / / / / / Can / /
Super keeper Can Can Can Can Can Can Can Can Can
Table 6
Those of ordinary skill in the art are appreciated that for some information of overall importance, as critical operations such as data maintenance, rate information are provided with, can be managed by the keeper who belongs to global field, i.e. these operations of overall importance are still undertaken by general headquarters.
The flow process that realizes defining virtual territory of method of virtual Domain management and keeper according to preferred embodiment of the present invention as shown in Figure 2.
At first enter step 110, have the keeper who creates role-security and carry out role definition, behind the definition role, the corresponding relation of definition role and authority.Wherein, the corresponding relation record format of role definition and role and authority is shown in table 2 Role Information table and table 3 role-security mapping table.
Then enter step 120, have the information that the keeper who creates the virtual Domain authority and belong to global field is provided with virtual Domain 1, virtual Domain 2.Wherein, the recording of information form of set virtual Domain is shown in table 1 virtual Domain information table.
Then enter step 130, have creative management person and the keeper that gives keeper's authorization privilege and belong to global field defines keeper 1,2,3,5 information and authorizes respectively.The database of record table that forms is shown in table 4 keeper Basic Information Table and table 5 administrator right table.
Then enter step 140, keeper 1 is provided with the information of virtual Domain 3, and creative management person 4 also authorizes.Wherein, as previously mentioned, keeper 1 is the customer administrator who belongs to virtual Domain 1, has the authority of creating subdomain and creating new management person, and therefore, keeper 1 can create the subdomain virtual Domain 3 of virtual Domain 1 and create the keeper who belongs to virtual Domain 3.
Need to prove that among the step 110-140, all operations can be finished by super keeper, because super keeper belongs to global field and has all authorities.
So just realize the definition of virtual Domain and keeper's relevant information and generated the corresponding database table.
Those of ordinary skill in the art are appreciated that and the system of the present invention program and similar CAMS can be combined, and human-computer interaction interface is provided, and form the solution of network users management.When signing in to CAMS configuration management platform, the identity with certain keeper operates, during such as operations such as charge, report form statistics, system verifies at first whether login username and password that this keeper provides be correct, verify the territory of this keeper's ownership then and verify the authority that this keeper has, final system according to territory that the keeper belonged to and the authority that has, make this keeper can see and operate the relevant information in the next stage territory of the territory at own place and self ownership virtual Domain.
Though by reference some preferred embodiment of the present invention, the present invention is illustrated and describes, but those of ordinary skill in the art should be understood that, can do various changes to it in the form and details, and the spirit and scope of the present invention that do not depart from appended claims and limited.

Claims (10)

1. a network user management system is characterized in that, comprises
At least two other virtual Domain of level, each virtual Domain is used to manage a group network user, this group network user be that the other virtual Domain of upper level is managed or whole system in the network user's subclass;
Each virtual Domain also comprises at least one keeper, is used for the subordinate's virtual Domain according to its ownership virtual Domain of its rights management and described ownership virtual Domain;
Information management subsystem is used to store and manage the ownership father field information of described virtual Domain, the described network user's ownership virtual Domain information and described keeper's ownership virtual Domain and authority information.
2. network user management system according to claim 1 is characterized in that, has at least other described virtual Domain of a level to have a plurality of.
3. network user management system according to claim 2 is characterized in that, belongs between different subordinate's virtual Domain of same described virtual Domain, does not have the network user's common factor.
4. network user management system according to claim 1 is characterized in that, described keeper's authority comprises:
Create, revise, delete the described network user's information; Create, revise, delete the information of subordinate's virtual Domain; Create, revise, delete the keeper's of subordinate's virtual Domain information.
5. network user management system according to claim 1, it is characterized in that, the information storage of described virtual Domain is in the virtual Domain information table of described database, and described virtual Domain information table comprises following list item: virtual Domain identifier, virtual Domain title and ownership father field.
6. network user management system according to claim 1 is characterized in that,
Described information management subsystem is a database;
The information that in described database, also comprises the role, described role's authority is set by the keeper that the role definition authority is arranged in the top layer virtual Domain, and the keeper's of described virtual Domain authority is by the pairing role's decision of this keeper.
7. network user management system according to claim 6, it is characterized in that, in the Role Information table and role-security mapping table of described role's information storage in described database, described Role Information table comprises following list item: role identifiers, role's title; Described role-security mapping table comprises following list item: role identifiers, authority identifier.
8. network user management system according to claim 6, it is characterized in that, in keeper's Basic Information Table and administrator right table of the information storage of keeper described in the virtual Domain in described database, described keeper's Basic Information Table comprises following list item: keeper's identifier, ownership virtual Domain identifier, the admin name; Described administrator right table comprises following list item: keeper's identifier, role identifiers.
9. according to any described network user management system in the claim 1 to 8, it is characterized in that the described network user needs in the mechanism to surf the Internet or dials the user of internetworking protocol phone.
10. a network user management method is characterized in that, comprises following steps:
There is the keeper of role definition authority to define role and each role's authority in the top layer virtual Domain of A;
It also is that virtual Domain is specified father field that B has keeper managing virtual territory in its range of management of creating the subdomain authority;
The keeper that C has creative management person's authority manages other keepers and specifies described role and ownership virtual Domain for described other keepers in its range of management;
D is in charge of keeper supervising the network user in its range of management of the network user;
Among described step B, C, the D, described keeper's range of management is described keeper's ownership virtual Domain and subordinate's virtual Domain of this virtual Domain.
CN 200410075094 2004-08-27 2004-08-27 Network user management system and method thereof Pending CN1741464A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN 200410075094 CN1741464A (en) 2004-08-27 2004-08-27 Network user management system and method thereof

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN 200410075094 CN1741464A (en) 2004-08-27 2004-08-27 Network user management system and method thereof

Publications (1)

Publication Number Publication Date
CN1741464A true CN1741464A (en) 2006-03-01

Family

ID=36093689

Family Applications (1)

Application Number Title Priority Date Filing Date
CN 200410075094 Pending CN1741464A (en) 2004-08-27 2004-08-27 Network user management system and method thereof

Country Status (1)

Country Link
CN (1) CN1741464A (en)

Cited By (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102075357A (en) * 2010-12-31 2011-05-25 武汉日电光通信工业有限公司 Multi-domain security management method for network management system
CN104363306A (en) * 2014-12-04 2015-02-18 厦门大学 Private cloud management control method for enterprise
CN105224645A (en) * 2015-09-28 2016-01-06 浪潮(北京)电子信息产业有限公司 A kind of polygonal look net disc system based on cloud platform
CN107196795A (en) * 2017-05-18 2017-09-22 上海耐相智能科技有限公司 A kind of efficient Internet user's management system
US9983965B1 (en) * 2013-12-13 2018-05-29 Innovative Defense Technologies, LLC Method and system for implementing virtual users for automated test and retest procedures
CN109962805A (en) * 2017-12-26 2019-07-02 中移(杭州)信息技术有限公司 A kind of multi-platform cut-in method and equipment based on Authority and Domain Based Management
CN109981552A (en) * 2017-12-28 2019-07-05 中移(杭州)信息技术有限公司 A kind of authority distributing method and device
CN110881064A (en) * 2018-09-06 2020-03-13 阿里巴巴集团控股有限公司 Domain name configuration method and device
CN115129216A (en) * 2022-06-29 2022-09-30 北京达美盛软件股份有限公司 Cross-organization data configuration management method and system

Cited By (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102075357A (en) * 2010-12-31 2011-05-25 武汉日电光通信工业有限公司 Multi-domain security management method for network management system
CN102075357B (en) * 2010-12-31 2013-05-08 武汉日电光通信工业有限公司 Multi-domain security management method for network management system
US9983965B1 (en) * 2013-12-13 2018-05-29 Innovative Defense Technologies, LLC Method and system for implementing virtual users for automated test and retest procedures
CN104363306A (en) * 2014-12-04 2015-02-18 厦门大学 Private cloud management control method for enterprise
CN105224645A (en) * 2015-09-28 2016-01-06 浪潮(北京)电子信息产业有限公司 A kind of polygonal look net disc system based on cloud platform
CN107196795A (en) * 2017-05-18 2017-09-22 上海耐相智能科技有限公司 A kind of efficient Internet user's management system
CN109962805A (en) * 2017-12-26 2019-07-02 中移(杭州)信息技术有限公司 A kind of multi-platform cut-in method and equipment based on Authority and Domain Based Management
CN109981552A (en) * 2017-12-28 2019-07-05 中移(杭州)信息技术有限公司 A kind of authority distributing method and device
CN109981552B (en) * 2017-12-28 2021-08-17 中移(杭州)信息技术有限公司 Authority distribution method and device
CN110881064A (en) * 2018-09-06 2020-03-13 阿里巴巴集团控股有限公司 Domain name configuration method and device
CN110881064B (en) * 2018-09-06 2022-08-02 阿里巴巴集团控股有限公司 Domain name configuration method and device
CN115129216A (en) * 2022-06-29 2022-09-30 北京达美盛软件股份有限公司 Cross-organization data configuration management method and system

Similar Documents

Publication Publication Date Title
CN109643242B (en) Security design and architecture for multi-tenant HADOOP clusters
EP2405607B1 (en) Privilege management system and method based on object
US7865959B1 (en) Method and system for management of access information
US7062563B1 (en) Method and system for implementing current user links
US9047462B2 (en) Computer account management system and realizing method thereof
CN100337229C (en) Network verifying, authorizing and accounting system and method
CN1967560A (en) Controlling method of business operations competence and generating method of relational database
CN1304109A (en) System and method for effectively collecting aranging and access to withdrew table of certificate
US8095963B2 (en) Securing resource stores with claims-based security
CN1787528A (en) Method for realizing information grading authorized access in presenting service system
WO2005022367A1 (en) System and method for managing access entitlements in a computing network
CA2267004A1 (en) System and method for restricting database access to managed object information using a permissions table that specifies access rights corresponding to user access rights to the managed objects
CN101951377A (en) Hierarchical authorization management method and device
CN1863211A (en) Content filtering system and method thereof
CN1695361A (en) Device and method for centralized data management and access control to databases in a telecommunication network
CN1741464A (en) Network user management system and method thereof
CN1946203A (en) Method for realizing user identifying module service and application for specific group users
CN100586123C (en) A safe audit method based on role management and system thereof
CN1353836A (en) Method and system for file management in distributed environment
CN113067871A (en) Digital file management method based on block chain technology
CN101057455A (en) Apparatus and method for managing integrated authentication for personal mobility in wired/wireless integrated service network
CN1859301A (en) IPTV system and multicast method
CN1617510A (en) Method for realizing management authorization in network management system
CN101051934A (en) Power control method in network managing system
CN1187691C (en) New method for veriying citizenship

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C12 Rejection of a patent application after its publication
RJ01 Rejection of invention patent application after publication