TWI468947B - Data managing system of thin client - Google Patents
Data managing system of thin client Download PDFInfo
- Publication number
- TWI468947B TWI468947B TW98118744A TW98118744A TWI468947B TW I468947 B TWI468947 B TW I468947B TW 98118744 A TW98118744 A TW 98118744A TW 98118744 A TW98118744 A TW 98118744A TW I468947 B TWI468947 B TW I468947B
- Authority
- TW
- Taiwan
- Prior art keywords
- client
- data
- server
- module
- management module
- Prior art date
Links
Landscapes
- Storage Device Security (AREA)
Description
本發明涉及一種客戶端管理系統,尤指一種可使客戶端於與服務端斷開連接時仍能對資料進行處理之客戶端管理系統。 The present invention relates to a client management system, and more particularly to a client management system that enables a client to process data while disconnected from the server.
為降低成本、提高安全以及方便管理,一般會採用客戶端之形式對多台電腦進行管理。傳統之客戶端電腦係沒有應用程式其僅將滑鼠、鍵盤等輸入傳送到服務端處理,服務端再將處理結果返回給客戶端顯示。 In order to reduce costs, improve security, and facilitate management, multiple computers are generally managed in the form of a client. Traditional client computers do not have an application. They only send input such as mouse and keyboard to the server for processing, and the server returns the processing result to the client for display.
然而,由於傳統之客戶端係藉由網路與服務端進行資料處理,因此,當該網路出現故障或其他原因時,該客戶端由於與該服務端斷開連接而不能再對該服務端上之資料進行處理。 However, since the traditional client performs data processing through the network and the server, when the network fails or other reasons, the client cannot disconnect the server due to disconnection from the server. The above information is processed.
鑒於以上內容,有必要提供一種可使客戶端於與服務端斷開連接之情況下仍能對資料進行處理以及確保該資料安全之客戶端管理系統。 In view of the above, it is necessary to provide a client management system that enables the client to process the data and secure the data if the client is disconnected from the server.
一種客戶端管理系統,包括有服務端及與該服務端通訊連接之客戶端,該客戶端包括有存儲裝置及安全管理模組,該存儲裝置可用以存儲從該服務端導出到該客戶端之資料,該客戶端可於與該服務端斷開通訊連接之情況下對該導出資料進行處理,該安全管理模組對該導出資料進行安全管理。 A client management system includes a server and a client connected to the server, the client includes a storage device and a security management module, and the storage device can be used to store the server from the server to the client. The data can be processed by the client in the case of disconnecting the communication connection with the server, and the security management module securely manages the exported data.
優選地,該服務端包括有用戶管理模組,該用戶管理模組可允許該客戶端從該服務端導出該資料。 Preferably, the server includes a user management module, and the user management module can allow the client to derive the data from the server.
優選地,該用戶管理模組可用以設定該導出資料被導出之時間,該安全管理模組於該導出資料被導出之時間超出該設定之導出時間時將該客戶端中之導出資料刪除。 Preferably, the user management module can be configured to set a time when the exported data is exported, and the security management module deletes the exported data in the client when the time when the exported data is exported exceeds the set export time.
優選地,該服務端包括有標記模組,該標記模組可對該服務端中被該客戶端導出之資料進行標記。 Preferably, the server includes a marking module, and the marking module can mark the data exported by the client in the server.
優選地,該客戶端之安全管理模組包括有標記子模組,該標記子模組可對從該服務端中被導出到該客戶端之資料進行標記。 Preferably, the security management module of the client includes a tag sub-module, and the tag sub-module can mark the data that is exported from the server to the client.
優選地,該客戶端之安全管理模組還包括有資料控制子模組,該客戶端之安全管理模組係藉由該資料控制子模組判斷該資料被導出之時間是否超出該設定之時間。 Preferably, the security management module of the client further includes a data control sub-module, wherein the security management module of the client determines whether the time when the data is exported exceeds the set time by the data control sub-module .
優選地,該客戶端之安全管理模組係藉由該資料控制子模組對該導出資料進行刪除。 Preferably, the security management module of the client deletes the exported data by using the data control submodule.
優選地,該客戶端之安全管理模組包括有I/O控制子模組,該安全管理模組可藉由該I/O控制子模組來限制該導出資料藉由該客戶端之I/O介面複製到其他外部存儲裝置中。 Preferably, the security management module of the client includes an I/O control sub-module, and the security management module can limit the exported data by the I/O control sub-module by the client I/ The O interface is copied to other external storage devices.
優選地,該服務端包括有密碼設定模組,該密碼設定模組可用以設定用戶訪問服務端之用戶名稱、用戶密碼及解除用戶密碼。 Preferably, the server includes a password setting module, and the password setting module can be used to set a user name, a user password, and a user password for the user to access the server.
優選地,該服務端包括有ID管理模組,該ID管理模組可用以對連接該服務端之客戶端分配ID。 Preferably, the server includes an ID management module, and the ID management module can be used to assign an ID to a client connected to the server.
與習知技術相比,本發明客戶端管理系統藉由將服務端之資料導 出到客戶端之存儲裝置中,從而可實現今客戶端與服務端斷開連接時客戶端仍可對資料進行處理,並藉由該安全管理模組來確保該導出資料之安全。 Compared with the prior art, the client management system of the present invention guides the data of the server The storage device is sent out to the client, so that the client can still process the data when the client and the server are disconnected, and the security management module ensures the security of the exported data.
100‧‧‧客戶端管理系統 100‧‧‧Client Management System
10‧‧‧服務端 10‧‧‧ server
11‧‧‧存儲訪問管理模組 11‧‧‧Storage Access Management Module
13‧‧‧用戶管理模組 13‧‧‧User Management Module
15‧‧‧密碼設定模組 15‧‧‧ password setting module
17‧‧‧ID管理模組 17‧‧‧ID Management Module
19‧‧‧標記模組 19‧‧‧Marking module
30‧‧‧客戶端 30‧‧‧Client
301‧‧‧存儲裝置 301‧‧‧Storage device
303‧‧‧安全管理模組 303‧‧‧Security Management Module
31‧‧‧標記子模組 31‧‧‧Marking submodules
33‧‧‧資料控制子模組 33‧‧‧Data Control Sub-module
35‧‧‧I/O控制子模組 35‧‧‧I/O Control Submodule
50‧‧‧網路 50‧‧‧Network
圖1係本發明客戶端管理系統之較佳實施方式之硬體組成圖。 1 is a hardware composition diagram of a preferred embodiment of the client management system of the present invention.
圖2係本發明客戶端管理系統之一使用流程圖。 2 is a flow chart showing the use of one of the client management systems of the present invention.
請參閱圖1,本發明客戶端管理系統100之較佳實施方式包括有服務端10及可藉由網路50與該服務端10通訊連接之客戶端30。 Referring to FIG. 1, a preferred embodiment of the client management system 100 of the present invention includes a server 10 and a client 30 communicably connected to the server 10 via a network 50.
該服務端10包括有存儲訪問管理模組11、用戶管理模組13、密碼設定模組15、ID(IDENTIFICATION)管理模組17、及標記模組19。 The server 10 includes a storage access management module 11, a user management module 13, a password setting module 15, an ID (IDENTIFICATION) management module 17, and a marking module 19.
該存儲訪問管理模組11可用以設定允許或不允許該客戶端30訪問存儲於該服務端10中資料,比如存儲於硬碟機中某個分區中之資料,或者存儲於硬碟機中某個分區中某個檔案夾中之資料。 The storage access management module 11 can be configured to allow or prohibit the client 30 from accessing data stored in the server 10, such as data stored in a partition of the hard disk drive, or stored in a hard disk drive. The data in a folder in a partition.
該用戶管理模組13可用以設定該客戶端30之訪問類型,包括導出(CHECK OUT)及導入(CHECK IN),並可用以設定被該客戶端30 CHECK OUT資料之時間(PERIOD)。於該CHECK OUT狀態下,該服務端10允許客戶將服務端10上之資料CHECK OUT到該客戶端30,該客戶端30因此可對該CHECK OUT資料進行增添、修改、刪除等處理。於該設定之CHECK OUT時間內,該被CHECK OUT到該客戶端30之資料於進行處理後或未被處理過之情況下均可被CHECK IN到該服務端10,而於超出所設定之CHECK OUT時間後,該被 CHECK OUT到該客戶端30之資料則不能再被CHECK IN到該服務端10;而在於該CHECK IN狀態下,該用戶不允許CHECK OUT該服務端10中之資料,但於該客戶端30創建、編輯等處理之資料均可被CHECK IN到該服務端10。該密碼設定模組15可用以設定用戶訪問服務端10之用戶名稱、用戶密碼及解除用戶密碼。該ID管理模組17可用以對連接該服務端10之客戶端30分配ID,該ID包括IP(INTERNET PROTOCOL)地址等。該標記模組19可用以對該服務端10中被該客戶端30 CHECK OUT之資料進行標記、並對該客戶端30之資訊進行登記、以及對該被CHECK OUT資料之處理歷史。該客戶端30之資訊包括客戶端30之ID、用戶名稱、資料被CHECK OUT之時間等。該處理歷史包括對資料進行增加、刪除、修改等處理,以及進行上述處理之時間等。 The user management module 13 can be used to set the access type of the client 30, including CHECK OUT and CHECK IN, and can be used to set the time (PERIOD) of the CHECK OUT data by the client 30. In the CHECK OUT state, the server 10 allows the client to CHECK OUT the data on the server 10 to the client 30, and the client 30 can therefore add, modify, delete, etc. the CHECK OUT data. During the set CHECK OUT time, the data that is CHECK OUT to the client 30 can be CHECK IN to the server 10 after being processed or not processed, and exceeds the set CHECK. After the OUT time, the The data of CHECK OUT to the client 30 can no longer be CHECK IN to the server 10; but in the CHECK IN state, the user does not allow CHECK OUT to the data in the server 10, but is created at the client 30. The data processed by the editor, etc. can be CHECK IN to the server 10. The password setting module 15 can be used to set a user name, a user password, and a user password for the user to access the server 10. The ID management module 17 can be used to assign an ID to the client 30 connected to the server 10, the ID including an IP (INTERNET PROTOCOL) address and the like. The tagging module 19 can be used to tag the data of the client 30 CHECK OUT in the server 10, register the information of the client 30, and process the history of the CHECK OUT data. The information of the client 30 includes the ID of the client 30, the user name, the time when the data is CHECK OUT, and the like. The processing history includes processing such as adding, deleting, and modifying data, and the time of performing the above processing.
該客戶端30包括有存儲裝置301及安全管理模組303,該存儲裝置301可用以存儲自該服務端10導出到該客戶端30中之資料。該安全管理模組303包括有標記子模組31、資料控制子模組33及I/O控制子模組35。該標記子模組31可用以對該客戶端30中從該服務端10中CHECK OUT出來之資料進行標記。該資料控制子模組33可用以判斷該資料被CHECK OUT之時間是否有超出該設定之CHECK OUT時間,並可於該資料被CHECK OUT之時間超出該設定之時間時,將該客戶端30中被該標記子模組31標記之資料刪除。該I/O控制子模組35可用以限制該客戶端30中被標記之資料藉由該客戶端之I/O介面複製到其他外部存儲裝置中,從而確保被CHECK OUT到該客戶端30之資料之安全。 The client 30 includes a storage device 301 and a security management module 303, which can be used to store data exported from the server 10 to the client 30. The security management module 303 includes a tag sub-module 31, a data control sub-module 33, and an I/O control sub-module 35. The tag sub-module 31 can be used to tag the data from the client 30 from the CHECK OUT in the server 10. The data control sub-module 33 can be used to determine whether the time when the data is CHECK OUT exceeds the set CHECK OUT time, and the client 30 can be used when the data is exceeded by the set time by the CHECK OUT time. The data marked by the tag sub-module 31 is deleted. The I/O control sub-module 35 can be used to restrict the marked data in the client 30 from being copied to other external storage devices by the I/O interface of the client, thereby ensuring that the CHECK OUT is queried to the client 30. The security of the information.
請一併參閱圖1及圖2,使用時,該客戶端30藉由網路50向該服務 端10發出訪問請求。該服務端10於接收到該客戶端30之訪問請求後,該ID管理模組17分配ID給該客戶端30。該存儲訪問管理模組11設定允許/不允許該客戶端30訪問之資料。該密碼設定模組15於當該客戶端30訪問該服務端10需要密碼時設定該客戶端30之用戶名稱及訪問密碼。該用戶管理模組13設定該客戶端30之訪問類型。該客戶端30根據所分配之ID連接到該服務端10,並藉由該用戶名稱及訪問密碼登錄該服務端10,從而可於該設定之訪問類型下對該服務端10之資料進行訪問。 Please refer to FIG. 1 and FIG. 2 together. In use, the client 30 provides the service through the network 50. End 10 issues an access request. After receiving the access request from the client 30, the server 10 assigns an ID to the client 30. The storage access management module 11 sets the data that allows/disallows access by the client 30. The password setting module 15 sets the user name and access password of the client 30 when the client 30 needs to access the server 10 for a password. The user management module 13 sets the access type of the client 30. The client 30 connects to the server 10 according to the assigned ID, and logs in to the server 10 by using the user name and the access password, so that the data of the server 10 can be accessed under the set access type.
當該用戶管理模組13設定之訪問類型為CHECK OUT時,用戶可將該存儲訪問管理模組11設定之可被訪問之資料CHECK OUT到該客戶端30並存儲於該存儲裝置301中,此時,該服務端10之標記模組19及客戶端30之標記子模組31分別對該資料進行標記,該用戶管理模組13設定CHECK OUT時間。該被CHECK OUT到客戶端30之資料可於該客戶端30上進行處理,即使此時斷開該客戶端30與該服務端10之網路連接。該客戶端30之資料控制子模組33判斷該資料被CHECK OUT之時間是否有超出該設定之CHECK OUT時間;如果沒有超出該設定之CHECK OUT時間,用戶可將該處理過之被CHECK OUT之資料CHECK IN到該服務端10中;如果有超出該設定之CHECK OUT時間,該被CHECK OUT之資料就不能再CHECK IN到該服務端10中,並且該客戶端30之資料控制子模組33會將該被CHECK OUT到客戶端30之資料進行刪除。當該用戶管理模組13設定之訪問類型為CHECK IN時,用戶可於該客戶端30創建、編輯等處理之資料,並將該資料CHECK IN到該服務端10。 When the access type set by the user management module 13 is CHECK OUT, the user can store the accessible data CHECK OUT set by the storage access management module 11 to the client 30 and store it in the storage device 301. At this time, the tag module 19 of the server 10 and the tag sub-module 31 of the client 30 respectively mark the data, and the user management module 13 sets the CHECK OUT time. The data that is CHECK OUT to the client 30 can be processed on the client 30 even if the client 30 is disconnected from the server 10 at this time. The data control sub-module 33 of the client 30 determines whether the data is CHECK OUT time exceeds the set CHECK OUT time; if the CHECK OUT time is not exceeded, the user can process the CHECK OUT The data CHECK IN is sent to the server 10; if there is a CHECK OUT time exceeding the setting, the data of the CHECK OUT can no longer be CHECK IN to the server 10, and the data control sub-module 33 of the client 30 The data that is CHECK OUT to the client 30 will be deleted. When the access type set by the user management module 13 is CHECK IN, the user can create, edit, and the like at the client 30, and CHECK IN the data to the server 10.
此外,於該資料被CHECK OUT到該客戶端30時,該I/O控制子模組 35會控制該客戶端30之I/O介面,使該被CHECK OUT到該客戶端30之資料不能藉由該I/O介面被複製到其他存儲裝置中。 In addition, when the data is CHECK OUT to the client 30, the I/O control submodule 35 will control the I/O interface of the client 30 so that the data that is CHECK OUT to the client 30 cannot be copied to other storage devices through the I/O interface.
綜上所述,本創作確已符合發明專利要求,爰依法提出專利申請。惟,以上所述者僅為本創作之較佳實施例,舉凡熟悉本創作技藝之人士,爰依本創作之精神所作之等效修飾或變化,皆應涵蓋於以下之申請專利範圍內。 In summary, this creation has indeed met the requirements of the invention patent, and has filed a patent application in accordance with the law. However, the above description is only a preferred embodiment of the present invention, and equivalent modifications or variations made by those skilled in the art of the present invention should be included in the following claims.
100‧‧‧客戶端管理系統 100‧‧‧Client Management System
10‧‧‧服務端 10‧‧‧ server
11‧‧‧存儲訪問管理模組 11‧‧‧Storage Access Management Module
13‧‧‧用戶管理模組 13‧‧‧User Management Module
15‧‧‧密碼設定模組 15‧‧‧ password setting module
17‧‧‧ID管理模組 17‧‧‧ID Management Module
19‧‧‧標記模組 19‧‧‧Marking module
30‧‧‧客戶端 30‧‧‧Client
301‧‧‧存儲裝置 301‧‧‧Storage device
303‧‧‧安全管理模組 303‧‧‧Security Management Module
31‧‧‧標記子模組 31‧‧‧Marking submodules
33‧‧‧資料控制子模組 33‧‧‧Data Control Sub-module
35‧‧‧I/O控制子模組 35‧‧‧I/O Control Submodule
50‧‧‧網路 50‧‧‧Network
Claims (8)
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
TW98118744A TWI468947B (en) | 2009-06-05 | 2009-06-05 | Data managing system of thin client |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
TW98118744A TWI468947B (en) | 2009-06-05 | 2009-06-05 | Data managing system of thin client |
Publications (2)
Publication Number | Publication Date |
---|---|
TW201044182A TW201044182A (en) | 2010-12-16 |
TWI468947B true TWI468947B (en) | 2015-01-11 |
Family
ID=45001244
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
TW98118744A TWI468947B (en) | 2009-06-05 | 2009-06-05 | Data managing system of thin client |
Country Status (1)
Country | Link |
---|---|
TW (1) | TWI468947B (en) |
Citations (8)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US20040088540A1 (en) * | 2002-10-30 | 2004-05-06 | Lawrence Marturano | Community creation between communication devices by identification of member credentials |
TWI220609B (en) * | 2002-05-10 | 2004-08-21 | Gwan-Hwan Hwang | System and process for roaming thin clients in a wide area network with transparent working environment |
TW200710673A (en) * | 2005-06-30 | 2007-03-16 | Ibm | Method, system and computer program for controlling access to resources in web applications |
TWI285486B (en) * | 2002-12-11 | 2007-08-11 | Inst Information Industry | Method for synchronizing client end's data |
TW200731088A (en) * | 2005-12-01 | 2007-08-16 | Advanced Micro Devices Inc | Low complexity, multi-purpose communications device and information client |
CN100367708C (en) * | 2005-02-04 | 2008-02-06 | 联想(北京)有限公司 | Method for issuing application software to network computer by server |
US20080141378A1 (en) * | 2006-12-12 | 2008-06-12 | Mclean Ivan Hugh | Method and apparatus for creating licenses in a mobile digital rights management network |
CN100473070C (en) * | 2005-03-04 | 2009-03-25 | 联想(北京)有限公司 | Mapping method for USB apparatus with storage function on network computer |
-
2009
- 2009-06-05 TW TW98118744A patent/TWI468947B/en not_active IP Right Cessation
Patent Citations (8)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
TWI220609B (en) * | 2002-05-10 | 2004-08-21 | Gwan-Hwan Hwang | System and process for roaming thin clients in a wide area network with transparent working environment |
US20040088540A1 (en) * | 2002-10-30 | 2004-05-06 | Lawrence Marturano | Community creation between communication devices by identification of member credentials |
TWI285486B (en) * | 2002-12-11 | 2007-08-11 | Inst Information Industry | Method for synchronizing client end's data |
CN100367708C (en) * | 2005-02-04 | 2008-02-06 | 联想(北京)有限公司 | Method for issuing application software to network computer by server |
CN100473070C (en) * | 2005-03-04 | 2009-03-25 | 联想(北京)有限公司 | Mapping method for USB apparatus with storage function on network computer |
TW200710673A (en) * | 2005-06-30 | 2007-03-16 | Ibm | Method, system and computer program for controlling access to resources in web applications |
TW200731088A (en) * | 2005-12-01 | 2007-08-16 | Advanced Micro Devices Inc | Low complexity, multi-purpose communications device and information client |
US20080141378A1 (en) * | 2006-12-12 | 2008-06-12 | Mclean Ivan Hugh | Method and apparatus for creating licenses in a mobile digital rights management network |
Also Published As
Publication number | Publication date |
---|---|
TW201044182A (en) | 2010-12-16 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
US8769269B2 (en) | Cloud data management | |
US20180145924A1 (en) | Enrolling a mobile device with an enterprise mobile device management environment | |
US8356105B2 (en) | Enterprise device policy management | |
US20140344571A1 (en) | Data Protection For Organizations On Computing Devices | |
US20070011136A1 (en) | Employing an identifier for an account of one domain in another domain to facilitate access of data on shared storage media | |
JP2013521587A (en) | Information protection using zones | |
US20150081635A1 (en) | Document management systems and methods | |
US20170214714A1 (en) | Compromise free cloud data encryption and security | |
US10891386B2 (en) | Dynamically provisioning virtual machines | |
WO2015103794A1 (en) | Method and device for controlling access authority of file | |
US9996686B2 (en) | Password retrieval system and method involving token usage without prior knowledge of the password | |
US9430490B1 (en) | Multi-tenant secure data deduplication using data association tables | |
US9009287B2 (en) | Storage system, information processing apparatus, and connection method | |
KR102037656B1 (en) | Data files protection | |
US20150381629A1 (en) | Crowd Sourced Access Approvals | |
CN101894094A (en) | Client management system | |
TW201835776A (en) | Shared memory controller, shared memory module, and memory sharing system | |
US8396969B1 (en) | Domain name buckets in a hosted storage system | |
US20160373421A1 (en) | Virtual content repository | |
TW201502848A (en) | Method and system for controlling access permissions of users | |
CN103019847A (en) | Method and system for migrating data of virtual machine | |
US20150356108A1 (en) | Storage system and storage system control method | |
US20160014138A1 (en) | Encoding ldap role and domain information in a fixed format | |
US20110113474A1 (en) | Network system security managment | |
TWI468947B (en) | Data managing system of thin client |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
MM4A | Annulment or lapse of patent due to non-payment of fees |