WO2011032501A1 - 一种可扩展标记语言文档管理中转发文档内容的方法、设备和系统 - Google Patents

一种可扩展标记语言文档管理中转发文档内容的方法、设备和系统 Download PDF

Info

Publication number
WO2011032501A1
WO2011032501A1 PCT/CN2010/076987 CN2010076987W WO2011032501A1 WO 2011032501 A1 WO2011032501 A1 WO 2011032501A1 CN 2010076987 W CN2010076987 W CN 2010076987W WO 2011032501 A1 WO2011032501 A1 WO 2011032501A1
Authority
WO
WIPO (PCT)
Prior art keywords
forwarding
document
sender
user
content
Prior art date
Application number
PCT/CN2010/076987
Other languages
English (en)
French (fr)
Inventor
李小娟
宋悦
刘海涛
常新苗
张惠萍
Original Assignee
华为终端有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 华为终端有限公司 filed Critical 华为终端有限公司
Priority to EP10816705A priority Critical patent/EP2479682A1/en
Publication of WO2011032501A1 publication Critical patent/WO2011032501A1/zh
Priority to US13/422,469 priority patent/US8880643B2/en
Priority to US14/498,636 priority patent/US9690951B2/en

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/6218Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/10Protecting distributed programs or content, e.g. vending or licensing of copyrighted material ; Digital rights management [DRM]
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F16/00Information retrieval; Database structures therefor; File system structures therefor
    • G06F16/80Information retrieval; Database structures therefor; File system structures therefor of semi-structured data, e.g. markup language structured data such as SGML, XML or HTML
    • G06F16/83Querying
    • G06F16/838Presentation of query results
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/606Protecting data by securing the transmission between two devices or processes
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/64Hybrid switching systems
    • H04L12/6418Hybrid transport
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/66Arrangements for connecting between networks having differing types of switching systems, e.g. gateways
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/10Protocols in which an application is distributed across nodes in the network
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L69/00Network arrangements, protocols or services independent of the application payload and not provided for in the other groups of this subclass
    • H04L69/30Definitions, standards or architectural aspects of layered protocol stacks
    • H04L69/32Architecture of open systems interconnection [OSI] 7-layer type protocol stacks, e.g. the interfaces between the data link level and the physical level
    • H04L69/322Intralayer communication protocols among peer entities or protocol data unit [PDU] definitions
    • H04L69/329Intralayer communication protocols among peer entities or protocol data unit [PDU] definitions in the application layer [OSI layer 7]

Definitions

  • the present invention relates to the field of communications, and in particular, to a method, device and system for forwarding document content in an XDM.
  • XDM Extensible Markup Language Document Management
  • Presence Presence
  • PoC Push to talk Over Cellular
  • IM Instant Messaging
  • XML Extensible Markup Language
  • Documents accessed and processed by XDM's XCAP are stored in a logical repository XDMS (XML Document Management Server) in the network.
  • XDMS XML Document Management Server
  • Different users have different access rights to a document.
  • the access rights owned by these users are managed by the administrator.
  • the administrator is a special user who is authorized and can modify the access rights of a document. The user can set up according to the administrator. Access rights, access to the entire document or part of the document in the XDMS.
  • the rights of the forwarding receiver are not set, so that the forwarding sender can forward the document arbitrarily after having the forwarding authority, and the forwarding receiver can not only see the document content after receiving the document sent by the sender. And has the same permissions as the document management user, making the document management user unable to manage the document safely and effectively, contrary to the will of the document management user.
  • the sender selectively forwards the document content to the forwarding recipient according to the permission setting in the access permission document stored in the XDMS, thereby avoiding the forwarding of the document to the forwarding sender after having the forwarding permission, and ensuring the document creation.
  • the embodiment of the present invention provides a method, a device, and a system for forwarding a document content in an X picture. The solution is as follows: The embodiment of the present invention provides an extensible markup language document management X picture. A method for forwarding content of a document, the method comprising:
  • the document content is forwarded to the forwarding recipient when the forwarding sender has the forwarding rights and the forwarding recipient owns the access rights.
  • the embodiment of the present invention further provides an extensible markup language document management XDM server device, where the device includes:
  • a receiving module configured to receive a forwarding request sent by the forwarding sender, where the forwarding request is used to forward the content of the document to the forwarding recipient; and - ' , _ . . , , - , forwarding permission of the content, and the forwarding recipient Whether the access right of the document content is owned; the forwarding module is configured to forward the document content to the forwarding recipient when the forwarding sender has the forwarding right and the forwarding recipient has the access right.
  • the embodiment of the present invention further provides a system for forwarding document content in an XDM, and the system includes: an XDM server and an XDM client, where
  • the XDM server is configured to receive a forwarding request sent by a forwarding sender, where the forwarding request is used to forward the content of the document to the forwarding recipient; and according to the permission document, determine the access authority of the forwarding sender; Forwarding the sender to the forwarding recipient when the forwarding sender has the forwarding authority and the forwarding recipient has the access authority;
  • the XDM client is configured to send a forwarding request to the XDM server, where the forwarding request is used to forward the content of the document to a forwarding recipient.
  • the method provided by the embodiment of the present invention when setting the forwarding permission of the forwarding sender by the XDMS, simultaneously sets the forwarding receiver or receives the forwarding request, and then queries the document manager for the forwarding authority of the forwarding sender and the access authority of the forwarding recipient.
  • the forwarding sender selectively forwards the document content to the forwarding recipient according to the permission setting in the access right document stored in the XDMS, thereby avoiding the forwarding of the document by the forwarding sender after having the forwarding authority, and also ensuring the document.
  • Embodiment 1 is a schematic flow chart of a method provided by Embodiment 1 of the present invention.
  • Embodiment 2 is a schematic flow chart of a method provided by Embodiment 2 of the present invention.
  • Embodiment 3 is a schematic flow chart of a method provided by Embodiment 3 of the present invention.
  • FIG. 4 is a schematic flow chart of a method according to Embodiment 4 of the present invention
  • FIG. 5 is a schematic flowchart of a method according to Embodiment 5 of the present invention
  • FIG. 4 is a schematic flow chart of a method according to Embodiment 4 of the present invention
  • FIG. 5 is a schematic flowchart of a method according to Embodiment 5 of the present invention
  • Embodiment 6 is a schematic flow chart of a method provided by Embodiment 6 of the present invention.
  • Figure ⁇ is a schematic flowchart of a method provided by an embodiment of the present invention.
  • Embodiment 8 is a schematic structural diagram of a device according to Embodiment 8 of the present invention.
  • FIG. 9 is a schematic structural diagram of a system according to Embodiment 9 of the present invention. detailed description
  • An embodiment of the present invention provides a method for forwarding document content in an X-drawn document management X-picture. Referring to FIG. 1, the method includes:
  • the method further includes:
  • the method when the method includes setting a forwarding right of the forwarding sender in the permission document, and setting a forwarding recipient list of the forwarding sender, setting a forwarding recipient list of the forwarding sender, specifically:
  • An extension sub-element is used under the forwarding operation element (corresponding to the ⁇ al low-forwarding> element in the permission document) in the action element (corresponding to the ⁇ & ions> element in the rights document), and the extension sub-element is used to set the forwarding recipient List; or,
  • the forwarding sender list and the forwarding receiver list are separately set; or The forwarding sender list and the forwarding receiver list are respectively set under different condition elements, and the forwarding sender and the forwarding receiver are associated.
  • setting the prohibition of forwarding the recipient list includes:
  • the extended sub-element under the forwarding operation element (corresponding to the ⁇ al low-forwarding> element in the rights document) in the action element (corresponding to the ⁇ & ions> element in the rights document) is used to set the prohibition of forwarding the recipient list; or ,
  • the forwarding sender list and the forwarding forwarding recipient list are set separately; or,
  • the forwarding sender list and the forwarding forwarding receiver list are respectively set under different condition elements, and the forwarding sender and the prohibition forwarding receiver are associated.
  • the method includes setting a forwarding right of the forwarding sender in the permission document, and setting a forwarding recipient list of the forwarding sender,
  • Setting the content of the document that forwards the sender to have the forwarding authority, and setting the content of the receiving document of the forwarding recipient, and receiving the content of the document includes forwarding part of the document content or the entire document content that the sender has the forwarding authority;
  • the method includes setting the forwarding right of the forwarding sender in the rights document, and setting the forwarding sender's prohibition forwarding recipient list,
  • the access permission of the content according to the right ownership includes: ⁇ , ,
  • the forwarding sender When the forwarding sender has the forwarding right, sending an inquiry request to the XDM client of the document management user, asking whether the forwarding recipient has the access right of the document content; Receiving the result of the inquiry returned by the XDM client of the document management user, when the inquiry result is yes, the forwarding recipient has the access right of the document content.
  • the forwarding sender determines whether the forwarding right of the document content and whether the forwarding recipient has the access right of the document content, and the following:
  • the forwarding authority of the forwarding sender After receiving the forwarding request sent by the sender, the forwarding authority of the forwarding sender is obtained in the permission document. If the forwarding authority of the sender is not forwarded in the permission document, an inquiry request is sent to the XDM client of the document management user, and the forwarding sender is inquired. Whether it has the forwarding right of the document content and whether the forwarding recipient has access to the document content;
  • the method provided by the embodiment of the present invention when setting the forwarding permission of the forwarding sender by the XDMS, simultaneously sets the forwarding receiver or receives the forwarding request, and then queries the document manager for the forwarding authority of the forwarding sender and the access authority of the forwarding recipient.
  • the forwarding sender selectively forwards the document content to the forwarding recipient according to the permission setting in the access right document stored in the XDMS, thereby avoiding the forwarding of the document by the forwarding sender after having the forwarding authority, and also ensuring the document.
  • the sender selectively forwards the document content to the forwarding recipient according to the permission setting in the access permission document stored in the XDMS, thereby avoiding the forwarding of the document to the forwarding sender after having the forwarding permission, and ensuring the document creation.
  • the present invention provides a method for forwarding document content in XDM, and the specific content is as follows:
  • a method for selectively forwarding content to a forwarding receiver in an XDM wherein two methods may be used for selective forwarding: one is for forwarding with forwarding rights in the access right.
  • the URI of the user is sent to the XDMS, and the XDMS verifies in the access permission document whether the URI has the right to access the content of the document, wherein the user A is the document management user, the user B is the forwarding sender, and the user C is the forwarding receiver.
  • the specific process is as follows:
  • User B sends a request to the XDMS, requesting to forward part of the document content of User A to User C in the XDMS directory;
  • user A is a document management user
  • user B is a forwarder
  • user C is a forwarder
  • user B requests to forward part of the document content of user A to user C in the XDMS directory
  • user A As a document management user, it can be the creator of the XML document, or a special user who is authorized to modify the access rights of the document. Other users can access the entire document in the XDMS according to the access rights set by the administrator user A. Or part of the document;
  • User B is located in XDMC (Extensible Markup Language Document Management Client, Extensible Markup Language Document Management Client), sends a request to XDMS, requests to forward part of the document content of User A to User C in the XDMS directory, or may be the entire document content of User A, but must be User B When you have permission to forward the contents of the entire document, you can request User A to forward the entire document content to User C.
  • XDMC Extensible Markup Language Document Management Client, Extensible Markup Language Document Management Client
  • the XDMS After receiving the request, the XDMS obtains the permission document of the user A, and determines whether the user B has the forwarding authority and the authority for determining whether the user C has the content of the document; if the user B has the forwarding authority and the user C has the civilized content. Permission, go to step 204; otherwise, go to step 203;
  • the XDMS After receiving the request, the XDMS first obtains the access permission document of the user A in the XDMS, and checks whether the user B has the forwarding authority in the access permission document. Secondly, when the user B has the access permission, can the user B obtain The content of the document with the privilege is forwarded to the user C, wherein the forwarding process is to forward the content of the user A that the user B can access in the XDMS to the path of the user C in the XDMS, instead of forwarding to the XDM user C owned by the user C. ;
  • the forwarding recipient that the user B can forward is also set; if the forwarding document of the user A in the user A does not include the user C, the XDMS Step 203; If the user A's rights in the user's permission document includes the user C, the XDMS performs step 204;
  • the number of forwardings of the user B may be set to limit the user B; and the forwarding content of the user B may be set, that is, the user B has the document forwarding permission, but may only have the document.
  • the forwarding right of part of the content so that user B can only forward the part of the content that has the forwarding authority; similarly, the receiving content of user C can also be set, and the receiving content can be part of the document content that user B has the forwarding right, or can be the user.
  • B has the entire document content for forwarding permissions.
  • the forwarding operation P ⁇ allow-forwarding>it is used to increase the number of elements ⁇ receipt>, which is used to indicate the recipients that are allowed to forward.
  • the forwarding operation P ⁇ allow-forwarding>it is under the force element ⁇ non-receipt>, which is used to indicate that the recipient is forbidden
  • ⁇ 3> Define the recipient of the forwarding and the forwarding of the forwarding under a condition ⁇ conditions> element. Describe the sender of the forwarding and the recipient of the forwarding.
  • the forwarding receiver and the forwarding sender are defined under different condition ⁇ conditions> elements, and the forwarding sender and the forwarding receiver are associated. That is defined under a 01 ⁇ 01 8;
  • ⁇ sender> defines ⁇ receipt> under another ⁇ 1 (1 ⁇ 01 8>.
  • the forwarding receiver and the forwarding sender are defined under different condition ⁇ conditions> elements, and the forwarding sender and the forwarding receiver are associated. That is defined under a 01 ⁇ 01 8;
  • ⁇ sender> in another ⁇ . 01 (1 ⁇ 01 8> defines ⁇ non-receipt> (this element is used to indicate the Principal that is prohibited from receiving.)
  • There are two methods for forwarding the sender and forwarding the receiver one using ⁇ 13 ⁇ 4 ⁇ >
  • the attribute value id is associated. If the id value is the same, it is proved to be the forward sender and the forward receiver under the same forwarding operation.
  • the other method is: when the forward sender is defined under the ⁇ 001 ⁇ 01 8> element, The forwarding recipient is associated.
  • Jppadou/ssevce/sub ecvth irlitritv A "- ⁇ gpadou/ssevce/sth irlitrilit-v ⁇ "
  • Jppadou/ssevce/sub ecvth irlitritv A "- ⁇ gpadou/ssevce/sth irlitrilit-v ⁇ "
  • User B sets the forwarding receiver, but since the forwarding of the document content in the XDM is performed in the XDMS, when the user B sends the forwarding request, the XDMS can obtain in the permission document whether the forwarding recipient C has the right to access the The content of the document, that is, the recipient of the forwarding is regarded as the acquirer of the document; if the user C has, the content of the document is forwarded to the user C; if not, the XDMS returns a 409 error response to the user B; if the user A's permission document
  • the forwarding sender list does not include the user C, then the XDMS performs step 203; if the forwarding sender list in the rights document of the user A includes the user C, the XDMS performs step 204;
  • the XDMS returns a 200 OK response to the user B, and the user B is allowed to forward the content of the user A to the user C, and step 205 is performed;
  • the XDMS forwards the content of the user B in the user A's document to the user C to the content of the user C in the XDMS.
  • the content of the access rights of the user B may be set to include the content of the forwarding and the content of the access rights of the user C, that is, the user B has the right to forward the document, but may only have the forwarding right of the part of the document, so that the user B can only forward the content.
  • the part of the content that has forwarding rights If the content of the document with access rights in the permission document is different, then XDMS "Permissions in User A"
  • the method provided by the embodiment of the present invention when setting the forwarding permission of the forwarding sender by the XDMS, simultaneously sets the forwarding receiver that can be forwarded by the XDMS or the XDMS obtains the forwarding receiver first when receiving the forwarding request from the forwarding sender. Whether there is permission to access the content of the document, and the forwarding sender is selectively forwarded to the forwarding recipient according to the permission setting in the access permission document stored in the XDMS, thereby preventing the forwarding sender from having the forwarding right after
  • the arbitrary forwarding of the document also ensures the confidentiality of the document by the document creator.
  • the sender selectively forwards the document content to the forwarding recipient according to the permission setting in the access permission document stored in the XDMS, and avoids forwarding the sender to any forwarding of the document after having the forwarding permission, thereby ensuring that the document creator is correct.
  • the confidentiality of the document the embodiment of the present invention provides a method for forwarding the content of the document in the XDM, and the specific content is as follows:
  • the user A is the document management user
  • the user B is the forwarding sender
  • the user C is the forwarding receiver.
  • the user B forwards the document content that the user A (the document content is stored in the XDMS) has the authority to forward.
  • User C (the forwarding content is stored in the XDMS), so the user B located in the XDMC sends a request to the XDMS, and according to the forwarding recipient set in the user A permission document, whether to allow the user C to access the document, if the user C has the permission,
  • the server forwards the content to user C. See Figure 3, the specific steps are as follows:
  • User B at XDMC sends a GET request to XDMS requesting that User B be The content of the document with forwarding rights in the document of user A is forwarded to user C;
  • User B sends a GET request to the XDMS.
  • the GET request here only represents the action. It is a parallel operation with modification, deletion, and creation, and does not process the content.
  • User B is located in XDMC, and user A's document.
  • the content is stored in the XDMS;
  • User A as the document management user, can be the creator of the XML document, or a special user who is authorized to modify the access rights of the document, and other users can access according to the administrator user A. Permission to access the entire document or part of the document in the XDMS;
  • User B sends a request to the XDMS, requesting that the content of the document that User B has the forwarding right in the document of User A is forwarded to the user C in the XDMS directory.
  • the user B may also A requests to forward the entire document content to the user C; in addition, the user B may also forward part of the content of the document content that the user B has the forwarding authority in the document of the user A to the user C.
  • the XDMS After receiving the request sent by the user B, the XDMS obtains the access right owned by the user B in the permission file of the user A, and determines whether the user B has the forwarding right. If yes, go to step 303; otherwise, go to step 306;
  • the XDMS determines in the permission file of the user A whether the user C is in the forwarding receiver list of the user B, if yes, step 304 is performed; otherwise, step 306 is performed;
  • the forwarding receiver list is established, and all the users that can be forwarded are placed. In the list.
  • the XDMS returns a 200 OK response to the user B, notifying the user A that the user B is allowed to forward the content of the document that the user B has in the document of the user A to the user C, and step 305 is performed;
  • the XDMS forwards the content of the document that the user B has the forwarding permission in the permission document of the user A to the user C;
  • the XDMS returns a 409 User Conflict response to User B, notifying User A that the content of the document is prohibited from being forwarded to User c.
  • the user B when setting the forwarding receiver that can be forwarded by the user B, the user B can also be set to limit the number of times of the user B.
  • the user B's access rights content including the forwarding content and the user C, can also be set.
  • the content of the access rights that is, user B has the right to forward documents, but may only have the forwarding rights of part of the content of the document, so that user B can only forward the part of the content that has the forwarding authority. If the content of the document that User B has the forwarding right in User A's permission document is different from the document content that User C has access to in User B's forwarding recipient list, then XDMS will have both User B's rights document in User A's permission document. The content of the document that forwards the permission and the user C has the access right is sent to the user C.
  • the method provided by the embodiment of the present invention sets the forwarding receiver that can be forwarded by the XDMS when setting the forwarding authority of the forwarding sender, and realizes that the forwarding sender has the document content according to the permission setting in the access permission document stored in the XDMS. Selectively forwarded to the forwarding receiver, thereby avoiding the forwarding of the document to the forwarding sender after having the forwarding authority, and ensuring the document creation The maintainer's confidentiality of the document.
  • the sender selectively forwards the document content to the forwarding recipient according to the permission setting in the access permission document stored in the XDMS, and avoids forwarding the sender to any forwarding of the document after having the forwarding permission, thereby ensuring that the document creator is correct.
  • the confidentiality of the document the embodiment of the present invention provides a method for forwarding the content of the document in the XDM, and the specific content is as follows:
  • the user A is the document management user
  • the user B is the forwarding sender
  • the user C is the forwarding receiver.
  • the user B forwards the document content that the user A (the document content is stored in the XDMS) has the authority to forward.
  • User C (the forwarding content is stored in the XDMS), so User B at the XDMC sends a request to the XDMS.
  • the user C in the permission document of the user A, the user C has the right to access the document, so that the user B can be forwarded to the user C. Referring to FIG. 4, the specific steps are as follows:
  • the user B located in the XDMC sends a GET request to the XDMS, and requests the user A whether the user B has the forwarding right and whether the user C has the right to access the content of the document;
  • the XDMC user B sends a GET request to the XDMS.
  • the GET request here only represents the action, and it is a parallel operation with modification, deletion, and creation, and does not process the content;
  • the content of the user A is stored in the XDMS, and the user A, as the document management user, may be the creator of the XML document, or a special user who is authorized to modify the access rights of the document, and other users may be based on the administrator.
  • User B sends a request to the XDMS, requesting that the content of the document that User B has the forwarding right in the document of User A is forwarded to the user C in the XDMS directory.
  • the user B may also A requests to forward the entire document content to the user C; in addition, the user B may also forward part of the content of the document content that the user B has the forwarding authority in the document of the user A to the user C.
  • the XDMS After receiving the GET request of user B, the XDMS forwards the forwarding right of the sender B and the access authority of the user C to the right of the user A;
  • the XDMS After receiving the request sent by the user B, the XDMS obtains the permission file of the user A, and determines whether the user B has the forwarding authority according to the permission document of the user A. When the user B has the forwarding permission, the forwarding permission is not set in the permission document.
  • the user's right to forward the recipient, and the recipient that is, if the rights forwarding sender includes the lRI that forwards the recipient C, the forwarding may be performed, but if the rights forwarding sender does not include the URI of the forwarding recipient C , you cannot forward it;
  • the XDMS obtains the permission file of the user A, and determines that the user B does not have the forwarding right in the permission document. If the URI of the recipient C is not included in the rights forwarding sender, a 409 user Conflict response is returned to the user B, and the user A is notified to prohibit the forwarding of the document content to the user C.
  • user C has the right to access the document, that is, has the right to be forwarded, and the XDMS returns a 200 OK response to the XDMC, and the response may include the forwarded document content.
  • User B sends a GET request to the XDMS requesting that part of the document content be forwarded to the user.
  • the XDMS After receiving the request, the XDMS continues to determine whether it can be forwarded to the user according to the permission document of the user A.
  • the XDMS After receiving the request, the XDMS continues to determine whether the user C has the access right in the rights document of the user A according to the rights document of the user A, that is, whether the URI of the recipient C is forwarded in the rights forwarding sender, and the judgment result is Forward.
  • the XDMS forwards the content of the document that User B has the forwarding right in User A's document to User C.
  • the number of times that user B is forwarded can also be set to limit user B.
  • the content of the access rights of the user B may be set to include the content of the forwarding and the content of the access rights of the user C, that is, the user B has the right to forward the document, but may only have the forwarding right of the part of the document, so that the user B can only forward the content.
  • the part of the content that has forwarding rights If the content of the document that User B has the forwarding right in the rights document of User A is different from the content of the document that User C has access to in the Rights Document of User A located in the XDMS, the XDMS will be in User A's permission document.
  • the content of the document that has the forwarding authority and the user C has the access right is sent to the user C.
  • the content of the document includes 1, 2, 3, and the content of the document that User B has the forwarding permission in User A's permission document is 1, 2, and the content of the document that User C has access to in User A's permission document is 1.
  • the XDMS forwards the document content 1 to the user C after the user B has the forwarding right and the user C has the access right according to the permission file of the user A.
  • the content of the document that the user B has the forwarding permission is 1, 2, Since the content of the document that the user C has the access right in the permission document of the user A is only 1, the XDMS can only forward the document content 1 to the user C;
  • the document content includes 1, 2, and 3 parts, and the content of the document that user B has the forwarding permission in the permission document of user A is 2, and the content of the document that user C has the access permission in the permission document of user A is 2. 3, the XDMS forwards the document content 2 to the user C after the user B has the forwarding right and the user C has the access right according to the permission document of the user A, although the content of the document with the access authority of the user C is 2, 3, However, since the content of the document that user B has the forwarding authority is only 2, the XDMS can only forward the document content 2 to the user C;
  • the document content includes 1, 2, 3 and 3, and User B is in User A's permission document.
  • the content of the document with forwarding rights is 1, 2, 3, and the content of the document that user C has access rights in the permission document of user A is 3.
  • the XDMS determines that user B has the forwarding authority and user C according to the permission document of user A. After having access rights, the document content 3 is forwarded to the user C.
  • the content of the document that the user B has the forwarding authority is 1, 2, 3, the content of the document having the access authority of the user C in the user's permission document is only 3 Therefore, XDMS can only forward document content 3 to user C.
  • the method provided by the embodiment of the present invention obtains, by the XDMS, whether the forwarding sender has the right to access the document when the forwarding sender sends the forwarding request to the rights file, and obtains whether the forwarding receiver has the right to access the document content.
  • the sender selectively forwards the document content to the forwarding recipient according to the permission setting in the access right document stored in the XDMS, thereby avoiding the forwarding of the document to the forwarding sender after having the forwarding right, and ensuring the document creator Confidentiality of the document.
  • the sender selectively forwards the document content to the forwarding recipient according to the permission setting in the access permission document stored in the XDMS, and avoids forwarding the sender to any forwarding of the document after having the forwarding permission, thereby ensuring that the document creator is correct.
  • the confidentiality of the document the embodiment of the present invention provides a method for forwarding the content of the document in the XDM, and the specific content is as follows:
  • the user A is the document management user
  • the user B is the forwarding sender
  • the user C is the forwarding receiver.
  • the user B forwards the document content that the user A (the document content is stored in the XDMS) has the authority to forward.
  • To user C the forwarding content is all or part of the document content, stored in the XDMS), so user B located in the XDMC sends a request to the XDMS.
  • the forwarding recipient authority is not set in the rights document of the user A.
  • the XDMS requires the user having the forwarding authority to forward the document content
  • the document management user A needs to be inquired, and the forwarding recipient is asked whether There is permission to receive the content of the document. If there is permission, it will be sent. If there is no permission, it will return an error to the forwarder B. It is forbidden to send. See Figure 5, the specific steps are as follows:
  • User B located in XDMC sends a GET request to XDMS, and asks user A whether user B can forward the content of the document to user C;
  • the XDMC user B sends a GET request to the XDMS.
  • the GET request here only represents the action, and it is a parallel operation with modification, deletion, and creation, and does not process the content;
  • the content of the user A is stored in the XDMS, and the user A, as the document management user, may be the creator of the XML document, or a special user who is authorized to modify the access rights of the document, and other users may be based on the administrator.
  • User B sends a request to the XDMS, requesting that the content of the document that User B has the forwarding right in the document of User A is forwarded to the user C in the XDMS directory.
  • the user B may also A requests to forward the entire document content to user C;
  • the user B may also forward part of the content of the document content that the user B has the forwarding authority in the document of the user A to the user C.
  • the XDMS After receiving the GET request of the user B, the XDMS obtains the forwarding permission of the user B in the permission document of the user A;
  • the XDMS After receiving the request sent by the user B, the XDMS obtains the permission document of the user A, and determines whether the user B has the forwarding authority according to the permission document of the user A. When the user B has the forwarding permission, step 503 is performed;
  • the XDMS obtains the permission document of the user A. If it is determined in the permission document that the user B does not have the forwarding authority, the user B returns a 409 user conflict response, and the user A is notified to prohibit the content of the document from being forwarded to the user C.
  • the XDMS asks the user A located in the XDMC whether the document content that the user B has the forwarding authority can be forwarded to the user C;
  • the user A's permission document does not have the forwarding recipient permission set.
  • the XDMS requires the user who has the forwarding authority to forward the document content
  • the document management user A needs to be inquired, and the forwarding receiver C is asked whether to receive the document. Permissions for content.
  • the XDMS returns a 200 OK to the user B, and the notification B can forward the content of the document that the user B has the forwarding right to the user C;
  • the XDMS forwards the content of the document that User B has the forwarding authority to User C.
  • the number of times that user B is forwarded can also be set to limit user B.
  • the content of the access rights of the user B may be set to include the forwarding content and the content of the access rights of the user C in the user A of the XDMC, that is, the user B has the document forwarding permission, but may only have the forwarding right of the partial content of the document. In this way, User B can only forward the part of the content that has forwarding rights. If the content of the document that User B has the forwarding right in User A's permission document is different from the document content of User C's access rights in User A located in XDMC, then XDMS will be owned by User B in the rights document of User A located in XDMS. The document content of the right-transferred document content and the user C's access rights in the user A located in the XDMC is sent to the user C.
  • the content of the document includes 1, 2, 3, and the content of the document that User B has the forwarding permission in User A's permission document is 1, 2, and the content of the user's C access permission in User A of XDMC is 1.
  • the XDMS forwards the document content 1 to the user C after the user A having the forwarding authority and the user A in the XDMC determines that the user C has the access authority according to the permission file of the user A, although the user B has the document content of the forwarding authority. For 1, 2, but due to the user The document content of the access permission of C in user A located in XDMC is only 1, so XDMS can only forward document content 1 to user C;
  • the document content includes 1, 2, and 3 parts, and the content of the document that user B has the forwarding authority in the permission document of user A is 2, and the content of the document of the access authority of user C in user A located in XDMC is 2 3, the XDMS forwards the document content 2 to the user C after the user A has the forwarding authority according to the user A's permission document and the user A located in the XDMC determines that the user C has the access right, although the user C is in the user located in the XDMC.
  • the document content of the access permission in A is 2, 3, but since the content of the document that user B has the forwarding right is only 2, the XDMS can only forward the document content 2 to the user C;
  • the document content includes 1, 2, and 3 parts, and the content of the document that user B has the forwarding authority in the permission document of user A is 1, 2, 3, and the access authority of user C in user A located in XDMC. If the content of the document is 3, the XDMS forwards the document content 3 to the user C after the user A of the XDMC determines that the user B has the forwarding authority according to the permission document of the user A, and the user A of the XDMC has the access authority, although the user B has the forwarding authority.
  • the content of the document is 1, 2, 3, but since the content of the user C's access rights in the user A of the XDMC is only 3, the XDMS can only forward the document content 3 to the user C.
  • the method provided by the embodiment of the present invention obtains the forwarding right of the forwarding sender when the forwarding sender sends the forwarding request by the XDM server, and queries the document manager whether the forwarding recipient has the right to access the document content, and implements the forwarding sender.
  • the document content is selectively forwarded to the forwarding recipient according to the permission setting in the access permission document stored in the XDM server, thereby avoiding the forwarding of the document to the forwarding sender after having the forwarding permission, and ensuring the document creator The confidentiality of the document.
  • the sender selectively forwards the document content to the forwarding recipient according to the permission setting in the access permission document stored in the XDMS, and avoids forwarding the sender to any forwarding of the document after having the forwarding permission, thereby ensuring that the document creator is correct.
  • the confidentiality of the document the embodiment of the present invention provides a method for forwarding the content of the document in the XDM, and the specific content is as follows:
  • the user A is the document management user
  • the user B is the forwarding sender
  • the user C is the forwarding receiver.
  • the user B forwards the document content that the user A (the document content is stored in the XDMS) has the authority to forward.
  • User C forwarding content is stored in XDMS
  • user B located in XDMC sends a request to XDMS to determine whether user C is prohibited from accessing the content of the document according to the forbidden recipient set in the A permission document. If user C is prohibited, The server will not forward the contents of the document to User C and will return an error response to User B.
  • the recipient the number of times of forwarding, and the content to be forwarded are prohibited. See Figure 6, the specific steps are as follows:
  • User B located in the XDMC sends a GET request to the XDMS, requesting that the content of the document that the user B has the forwarding right in the document of the user A is forwarded to the user C; User B sends a GET request to the XDMS.
  • the GET request here only represents the action. It is a parallel operation with modification, deletion, and creation, and does not process the content.
  • User B is located in XDMC, and user A's document. The content is stored in the XDMS;
  • User A as the document management user, can be the creator of the XML document, or a special user who is authorized to modify the access rights of the document, and other users can access according to the administrator user A. Permission to access the entire document or part of the document in the XDMS;
  • User B sends a request to the XDMS, requesting that the content of the document that User B has the forwarding right in the document of User A is forwarded to the user C in the XDMS directory.
  • the user B may also A requests to forward the entire document content to the user C; in addition, the user B may also forward part of the content of the document content that the user B has the forwarding authority in the document of the user A to the user C.
  • the XDMS After receiving the request sent by the user B, the XDMS obtains the access right owned by the user B in the permission document of the user A, and determines whether the user B has the forwarding authority;
  • the XDMS returns a 409 user Conflict response to the user B when the XDMS determines that the user B does not have the forwarding right in the permission file of the user A, and notifies the user A that the content of the document is prohibited from being forwarded to the user C.
  • the XDMS determines in user A's permission document whether user C is in user B's prohibited forwarding recipient list
  • the forwarding forwarding recipient list is prohibited, and all users who are prohibited from forwarding are set. Put it in the list.
  • the XDMS determines in user A's permission document that user C is in user B's list of forbidden forwarding recipients, and XDMS returns 409 user conflict response to user B, notifying user A that forwarding of the document content to user C is prohibited.
  • the XDMS determines in the permission file of the user A that the user C is not in the prohibition forwarding recipient list of the user B, and the XDMS returns a 200 OK response to the user B, and notifies the user A to allow the user B to have the user B have the permission in the user A's document.
  • the content of the document is forwarded to the user C;
  • the XDMS forwards the content of the document that the user B has the forwarding right in the permission document of the user A to the user C.
  • the user B can also be set to limit the number of times that the user B can forward the forwarding B.
  • the user B can also set the content of the access rights of the user B, that is, the user B owns the document. Forwarding permissions.
  • the method provided by the embodiment of the present invention sets the forwarding of the sender to be forwarded by the XDMS, and implements the forwarding of the sender.
  • the forwarding is forwarded to the forwarding receiver, thereby avoiding the forwarding of the document by the forwarding sender after having the forwarding authority, and also ensuring the confidentiality of the document by the document creator.
  • the sender selectively forwards the document content to the forwarding recipient according to the permission setting in the access permission document stored in the XDMS, and avoids forwarding the sender to any forwarding of the document after having the forwarding permission, thereby ensuring that the document creator is correct.
  • the confidentiality of the document the embodiment of the present invention provides a method for forwarding the content of the document in the XDM, and the specific content is as follows:
  • the user is the document management user
  • the user B is the forwarding sender
  • the user C is the forwarding receiver.
  • the user B forwards the document content that the user A (the document content is stored in the XDMS) has permission to forward.
  • User C (the forwarding content is stored in the XDMS), so the user B located in the XDMC sends a request to the XDMS.
  • neither the authority of forwarding the sender nor the setting of the forwarding recipient is set in the rights document of the user A.
  • User B located in XDMC sends a GET request to XDMS, and asks user A whether user B can forward the content of the document to user C;
  • the XDMC user B sends a GET request to the XDMS.
  • the GET request here only represents the action, and it is a parallel operation with modification, deletion, and creation, and does not process the content;
  • the content of the user A is stored in the XDMS, and the user A, as the document management user, may be the creator of the XML document, or a special user who is authorized to modify the access rights of the document, and other users may be based on the administrator.
  • User B sends a request to the XDMS, requesting that the content of the document that User B has the forwarding right in the document of User A is forwarded to the user C in the XDMS directory.
  • the user B may also A requests to forward the entire document content to the user C; in addition, the user B may also forward part of the content of the document content that the user B has the forwarding authority in the document of the user A to the user C.
  • step 702 After receiving the GET request of the user B, the XDMS obtains the forwarding permission of the user B and the receiving permission of the user C in the permission document of the user A. If the forwarding document has neither the forwarding and sending permission nor the forwarding receiving permission, Then step 703 is performed;
  • the XDMS After receiving the request sent by the user B, the XDMS obtains the permission file of the user A, and determines whether the permission file of the user A has the forwarding permission of the user B and the receiving permission of the user C. If the permission document does not set the forwarding and sending permission, If the forwarding receiving permission is not set, step 703 is performed;
  • the XDMS asks the user A located in the XDMC whether the user B has forwarded the transmission and whether the user C has the forwarding and receiving permission.
  • the user A's permission document does not set the forwarding sender's permission or the forwarding recipient permission.
  • the XDMS is required to query the document management user A, ask whether the user B has the forwarding authority, and whether the forwarding recipient C has received the document content. permission.
  • the result is returned to the XDMS.
  • the XDMS After receiving the determination result, the XDMS returns the user 409 to the user B. In response, the user A is notified to prohibit the forwarding of the document content to the user C.
  • the XDMS returns 200 OK to the user B, which indicates that the user can forward the content of the document having the forwarding right to the user C;
  • the XDMS forwards the content of the document that User B has the forwarding authority to User C.
  • the content of the access rights of the user B may be set to include the forwarding content, that is, the user B has the document forwarding permission, but may only have the forwarding right of the partial content of the document, so that the user B can only forward the part of the content that has the forwarding authority. .
  • the method provided by the embodiment of the present invention sends an inquiry request to the document manager after receiving the forwarding request of the forwarding sender by the XDMS, and asks whether the forwarding sender has the forwarding right and whether the forwarding recipient has the access right, and the forwarding sender is implemented.
  • the content of the document is selectively forwarded to the forwarding recipient, thereby avoiding the forwarding of the document by the forwarding sender after having the forwarding right, and also ensuring the confidentiality of the document by the document creator.
  • An embodiment of the present invention provides an extensible markup language document management XDM server device.
  • the device includes:
  • the receiving module 801 is configured to receive a forwarding request sent by the forwarding sender, and forward the request to forward the content of the document to the forwarding receiver.
  • the determining module 802 is configured to determine, according to the rights document, whether the forwarding sender has the forwarding right of the document content and whether the forwarding recipient has the access right of the document content;
  • the forwarding module 803 is configured to forward the content of the document to the forwarding recipient when the forwarding sender has the forwarding right and the forwarding recipient has the access right.
  • the device further includes at least one of the following modules:
  • the first setting module is configured to set a forwarding sender forwarding permission in the rights document, and set a forwarding receiver list for the forwarding sender.
  • a second setting module configured to set a forwarding sender forwarding permission in the permission document, and set a forwarding recipient access right in the permission document;
  • a third setting module configured to set a forwarding sender forwarding permission in the permission document
  • the fourth setting module is configured to set a forwarding permission of the forwarding sender in the permission document, and set a forwarding forwarding recipient list of the forwarding sender. Further, if the device includes the first setting module, the first setting module further includes: a first setting unit, configured to set a document content that forwards the sender to have forwarding rights, and set a forwarding receiver to receive the document content, and receive the document content as a forwarding The sender has a portion of the document content or the entire document content of the forwarding authority; the forwarding module 803 forwards the received document content to the forwarding recipient.
  • the determining module 802 specifically includes:
  • the first determining forwarding unit is configured to obtain, from the rights document, the forwarding right of the sender to the content of the document, and determine whether the forwarding sender has the right to forward the content of the document;
  • the first determining access unit is configured to: when the forwarding sender has the forwarding right, determine whether the forwarding receiver is forwarding the sender's forwarding recipient list, and if yes, forwarding the recipient to have the access right of the document content.
  • the second setting module further includes:
  • a second setting unit configured to set a document content that forwards the sender to have the forwarding right, and set a document content that the forwarding recipient has the access right; the forwarding module 803 forwards the document content that the sender has the forwarding right and the forwarding recipient has the access right Forward the recipient.
  • the determining module 802 specifically includes:
  • a second forwarding judging unit configured to obtain, from the rights document, a second access judging unit that forwards the sender to the content of the document, and is configured to determine whether to set the forwarding receiver in the permission document when forwarding the sender to “3” forwarding rights Access rights, if yes, forward recipients who have access to the content of the document.
  • the third setting module further includes:
  • the third setting unit is configured to set the content of the document that forwards the sender to have the forwarding right.
  • the determining module 802 specifically includes:
  • a third forwarding determining unit configured to obtain, from the rights document, a third access determining unit that forwards the sender to the content of the document, and is configured to send an inquiry to the XDM client of the document management user when forwarding the sender to forward the permission
  • the request asks whether the forwarding recipient has the access right of the document content; receives the inquiry result returned by the XDM client of the document management user, and when the inquiry result is yes, the forwarding recipient has the access right of the document content.
  • the fourth setting module further includes:
  • the fourth setting unit is configured to set the content of the document that forwards the sender to have the forwarding right.
  • the forwarding module wherein the determining module 802 further includes:
  • a determining unit configured to: after receiving the forwarding request sent by the receiving module 801, obtain the forwarding right of the forwarding sender in the permission document, if the forwarding document does not have the forwarding authority of the forwarding sender, the document
  • the XDM client that manages the user sends an inquiry request, asks whether the forwarding sender has the forwarding right of the document content, and whether the forwarding recipient has access to the document content. Permission; receiving the query result returned by the XDM client of the document management user;
  • the forwarding module 803 further includes:
  • a forwarding unit configured to: when the query result returned by the determining unit is that the forwarding sender has the forwarding right of the document content and the forwarding recipient has the access right of the document content, the forwarding sender forwards the document content having the forwarding authority to the Forward the recipient.
  • the device provided by the embodiment of the present invention when setting the forwarding permission of the forwarding sender through the XDM server, simultaneously sets the forwarding receiver or the XDM server to query the document management user for the forwarding authority of the forwarding sender when receiving the forwarding request from the forwarding sender and Forwarding the recipient's access rights forwards the sender's arbitrary forwarding of the document after having the forwarding rights, and also ensures the confidentiality of the document by the document creator.
  • An embodiment of the present invention provides a system for forwarding document content in an X markup document management X-picture.
  • the system includes: an X-paint server 901 and an X-paint client 902, where
  • the X-picture server 901 is configured to receive a forwarding request sent by the forwarding sender, and the forwarding request is to forward the document content to the forwarding recipient. According to the rights document, determine whether the forwarding sender has the forwarding right of the document content and whether the forwarding recipient has the document. Access rights of the content; when the forwarding sender has forwarding rights and the forwarding recipient has access rights, the document content is forwarded to the forwarding recipient;
  • the XDM client 902 is configured to send a forwarding request to the XDM server 901, and forward the request to forward the content of the document to the forwarding recipient.
  • the XDM server 901 is further configured to set a forwarding permission for the forwarding sender in the rights document, and set a forwarding receiver list for the forwarding sender, where the forwarding recipient list includes all users who can receive the content of the document forwarded by the sender. .
  • the XDM server 901 is specifically configured to:
  • the forwarder When the forwarder has the forwarding right, it is judged whether the forwarding recipient is forwarding the sender's forwarding recipient list, and if so, the recipient has the access authority to the document content.
  • the XDM server 901 is further configured to set a document content having forwarding rights for the forwarding sender and set the receiving document content for the forwarding recipient, and receive the document content as a part or the entire document content of the forwarding sender having the forwarding authority.
  • the XDM server 901 is configured to forward the received document content to the forwarding recipient.
  • the XDM server 901 is further configured to set forwarding rights for the forwarding sender in the rights document, and set access rights for the forwarding receiver in the rights document.
  • the XDM server 901 is specifically configured to:
  • the XDM server 901 is further configured to set the document content having the forwarding authority for the forwarding sender and the document content having the access authority for the forwarding recipient.
  • the XDM server 901 is configured to forward the document content that the forwarding sender has the forwarding right and the forwarding receiver has the access right to the forwarding recipient.
  • the XDM server 901 is further configured to set forwarding rights for the forwarding sender in the rights document.
  • the XDM server 901 is specifically configured to:
  • the inquiry result returned by the XDM client 902 of the document management user is received, and when the inquiry result is YES, the forwarding recipient has the access right of the document content.
  • the XDM server 901 is further configured to set the document content with forwarding rights for the forwarding sender.
  • the XDM server 901 is configured to forward the content of the document that the forwarding sender has the forwarding right to the forwarding recipient.
  • the XDM server 901 is further configured to set a forwarding right of the forwarding sender in the permission document, and set a forwarding forwarding recipient list of the forwarding sender;
  • the XDM server 901 is further configured to set a text for which the forwarding sender has the forwarding authority.
  • the XDM server 901 is further configured to: after receiving the forwarding request sent by the receiving module, send an inquiry request to the XDM client of the document management user.
  • the system Inquiring whether the forwarding sender has the forwarding right of the document content and whether the forwarding recipient has the access right of the document content; receiving the inquiry result returned by the XDM client of the document management user; when the judgment unit returns the inquiry result is the forwarding sender owning the document content
  • the system sets the forwarding receiver or the XDM server to send the forwarding sender when the forwarding authority of the forwarding sender is set by the XDM server.
  • the storage medium includes: a read only memory (ROM), a random access memory (RAM), a magnetic disk, or an optical disk, and the like, which can store program code.

Landscapes

  • Engineering & Computer Science (AREA)
  • Theoretical Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Software Systems (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Computer Hardware Design (AREA)
  • Health & Medical Sciences (AREA)
  • Bioethics (AREA)
  • General Health & Medical Sciences (AREA)
  • Databases & Information Systems (AREA)
  • Technology Law (AREA)
  • Multimedia (AREA)
  • Data Mining & Analysis (AREA)
  • Computing Systems (AREA)
  • Storage Device Security (AREA)
  • Information Transfer Between Computers (AREA)

Description

一种可扩展标记语言文档管理中转发文档内容的方法、 设备
和系统 本申请要求于 2009年 9月 16日提交中国专利局、申请号为 200910093226.X、 发明名称为"一种 XDM中转发文档内容的方法、 设备和系统"的中国专利申 请的优先权, 其全部内容通过引用结合在本申请中。 技术领域
本发明涉及通信领域, 特别涉及一种 XDM中转发文档内容的方法、 设 备和系统。
背景技术
XDM ( Extensible Markup Language Document Management, 可扩展标己 语言文档管理), 为一种产生用户特定业务如 Presence (呈现)、 PoC ( Push to talk Over Cellular, 一键通)、 IM ( Instant Message, 即时消息)等相关信息的 通用机制, 这些特定业务信息被存储在网络侧, 可以被授权的用户访问和处 理。 其中, XDM 中详细说明了这些特定业务信息如何被定义成 XML ( Extensible Markup Language, 可扩展标 i己语言)文档以及访问、 处理这些 XML文档的通用协议。
通过 XDM的 XCAP ( XML Configuration Protocol, XML设置接入协议 ) 访问和处理的文档存储在网络中的一个逻辑的储存库 XDMS ( XML Document Management Server, XML文档管理服务器)中。 不同的用户对一个 文档拥有不同的访问权限, 这些用户所拥有的访问权限由管理者来管理, 其 中管理者是一个被授权且可以修改一个文档的访问权限的特殊用户, 用户可 以根据管理者设定的访问权限, 访问 XDMS中的整个文档或者部分文档。
现有的 XDM中没有对转发接收者的权限进行设置, 使得转发发送者在 拥有转发权限之后可以对文档任意转发, 转发接收者接收到转发发送者发送 的文档后,不仅可以看到文档内容,并且拥有同该文档管理用户相同的权限, 使得文档管理用户无法对文档进行安全有效的管理, 违背了文档管理用户的 意愿。
发明内容
为了实现转发发送者根据 XDMS 中存储的访问权限文档中的权限设置 将文档内容有选择性地转发给转发接收者, 从而避免了转发发送者在拥有转 发权限之后对文档的任意转发, 保证文档创建者对文档的保密性, 本发明实 施例提供了一种 X画中转发文档内容的方法、 设备和系统, 所述方案如下: 本发明实施例提供了一种可扩展标记语言文档管理 X画中转发文档内容 的方法, 所述方法包括:
接收转发发送者发送的转发请求, 所述转发请求用于将文档内容转发给 转发接收者; 以及所述转发接收者是否拥有所述文档内容的访问权限;
当所述转发发送者拥有所述转发权限且所述转发接收者拥有所述访问权 限时, 将所述文档内容转发给所述转发接收者。
本发明实施例还提供了一种可扩展标记语言文档管理 XDM 服务器设 备, 所述设备包括:
接收模块, 用于接收转发发送者发送的转发请求, 所述转发请求用于将 文档内容转发给转发接收者; 、 - ' 、_ . . 、 、- 、 容的转发权限以及所述转发接收者是否拥有所述文档内容的访问权限; 转发模块, 用于当转发发送者拥有转发权限且转发接收者拥有访问权限 时, 将文档内容转发给转发接收者。
本发明实施例还提供了一种可扩展标记语言文档管理 XDM中转发文档 内容的系统, 所述系统包括: XDM服务器和 XDM客户端, 其中,
所述 XDM服务器, 用于接收转发发送者发送的转发请求, 所述转发请 求用于将文档内容转发给转发接收者; 根据权限文档, 判断所述转发发送者 容的访问权限; 当'所述转发发送者拥有所述转发权限且所述转发接收者^有 所述访问权限时, 将所述文档内容转发给所述转发接收者;
所述 XDM客户端, 用于向所述 XDM服务器发送转发请求, 所述转发 请求用于将所述文档内容转发给转发接收者。
本发明实施例的有益效果是:
本发明实施例提供的方法,通过 XDMS在设置转发发送者的转发权限时 同时设置转发接收者或者收到转发请求后向文档管理者询问转发发送者的转 发权限以及转发接收者的访问权限,实现了转发发送者根据 XDMS中存储的 访问权限文档中的权限设置将文档内容有选择性地转发给转发接收者, 从而 避免了转发发送者在拥有转发权限之后对文档的任意转发, 也保证了文档创 建者对文档的保密性。 附图说明
为了更清楚地说明本发明实施例或现有技术中的技术方案, 下面将对实 施例或现有技术描述中所需要使用的附图作简单地介绍, 显而易见地, 下面 描述中的附图仅仅是本发明的一些实施例, 对于本领域普通技术人员来讲, 在不付出创造性劳动性的前提下, 还可以根据这些附图获得其他的附图。
图 1是本发明实施例 1提供的方法流程示意图;
图 2是本发明实施例 2提供的方法流程示意图;
图 3是本发明实施例 3提供的方法流程示意图;
图 4是本发明实施例 4提供的方法流程示意图; 图 5是本发明实施例 5提供的方法流程示意图;
图 6是本发明实施例 6提供的方法流程示意图;
图 Ί是本发明实施例 Ί提供的方法流程示意图;
图 8是本发明实施例 8提供的设备结构示意图;
图 9是本发明实施例 9提供的系统结构示意图。 具体实施方式
为使本发明的目的、 技术方案和优点更加清楚, 下面将结合附图对本发 明实施方式作进一步地详细描述。 实施例 1
本发明实施例提供了一种可扩展标记语言文档管理 X画中转发文档内容 的方法, 参见图 1, 该方法包括:
1 01:接收转发发送者发送的转发请求,转发请求用于将文档内容转发给 转发接收者; 、 ^ ^ ,: . . 、 、 、 - 转发接收者是否拥有文档内容的访问权限;
1 03: 当转发发送者拥有转发权限且转发接收者拥有访问权限时,将文档 内容转发给转发接收者。
其中, 接收转发发送者发送的转发请求之前, 还包括:
在权限文档中设置转发发送者的转发权限, 并设置转发发送者的转发接 收者列表; 或者,
在权限文档中设置转发发送者的转发权限, 并在权限文档中设置转发接 收者访问权限。 或者,
接收转发发送者发送的转发请求之前, 还包括:
在权限文档中设置转发发送者的转发权限; 或者,
在权限文档中设置转发发送者的转发权限, 并设置转发发送者的禁止转 发接收者列表。
其中, 当方法包括在权限文档中设置转发发送者的转发权限, 并设置转 发发送者的转发接收者列表时, 设置转发发送者的转发接收者列表, 具体包 括:
在动作元素(对应于权限文档中的<& ions>元素)中的转发操作元素(对 应于权限文档中的 <a l low-forwarding>元素) 下扩展子元素, 扩展子元素用 于设置转发接收者列表; 或者,
在一个条件元素 (对应于权限文档中的<001 (^ 1 ions> L^T ) 下分另 ll设置 转发发送者列表和转发接收者列表; 或者, 在不同的条件元素下分别设置转发发送者列表和转发接收者列表, 并将 转发发送者和转发接收者关联起来。 当方法包括在权限文档中设置转发发送者的转发权限, 并设置转发发送 者的禁止转发接收者列表时, 设置禁止转发接收者列表, 具体包括:
在动作元素(对应于权限文档中的<& ions>元素)中的转发操作元素(对 应于权限文档中的 <a l low-forwarding>元素 ) 下扩展子元素用于设置禁止转 发接收者列表; 或者,
在一个条件元素 (对应于权限文档中的<001 (^ 1 ions> L^T ) 下分另 ll设置 转发发送者列表和禁止转发接收者列表; 或者,
在不同的条件元素下分别设置转发发送者列表和禁止转发接收者列表, 并将转发发送者和禁止转发接收者关联起来。 其中, 当方法包括在权限文档中设置转发发送者的转发权限, 并设置转 发发送者的转发接收者列表时,
在权限文档中设置转发发送者的转发权限时, 还包括:
设置转发发送者拥有转发权限的文档内容, 并设置转发接收者的接收文 档内容, 接收文档内容包括转发发送者拥有转发权限的部分文档内容或整个 文档内容;
当方法包括在权限文档中设置转发发送者的转发权限, 并在权限文档中 设置转发接收者访问权限时,
在权限文档中为转发发送者设置转发权限时, 还包括:
设置转发发送者拥有转发权限的文档内容以及设置转发接收者拥有访问 权限的文档内容;
当方法包括在权限文档中设置转发发送者的转发权限时,
在权限文档中为转发发送者设置转发权限时, 还包括:
为转发发送者设置拥有转发权限的文档内容;
当方法包括在权限文档中设置转发发送者的转发权限, 并设置转发发送 者的禁止转发接收者列表时,
在权限文档中设置转发发送者的转发权限时, 还包括:
设置转发发送者拥有转发权限的文档内容。
其中, 当方法包括在权限文档中设置转发发送者的转发权限时, 根据权 拥有 档内容的访问权限, 具体包括: ^ 、 、
从权限文档中获取转发发送者对文档内容的访问权限, 并判断转发发送 者是否拥有对文档内容的转发权限;
当转发发送者拥有转发权限时, 向文档管理用户的 XDM客户端发送询 问请求, 询问转发接收者是否拥有文档内容的访问权限; 接收文档管理用户的 XDM客户端返回的询问结果,当询问结果为是时, 转发接收者拥有文档内容的访问权限。
其中, 根据权限文档, 判断转发发送者是否拥有文档内容的转发权限以 及转发接收者是否拥有文档内容的访问权限, 还包括:
接收转发发送者发送的转发请求之后, 在权限文档中获取转发发送者的 转发权限, 如果权限文档中没有转发发送者的转发权限, 向文档管理用户的 XDM客户端发送询问请求, 询问转发发送者是否拥有文档内容的转发权限 以及转发接收者是否拥有文档内容的访问权限;
接收文档管理用户的 XDM客户端返回的询问结果。
本发明实施例提供的方法,通过 XDMS在设置转发发送者的转发权限时 同时设置转发接收者或者收到转发请求后向文档管理者询问转发发送者的转 发权限以及转发接收者的访问权限,实现了转发发送者根据 XDMS中存储的 访问权限文档中的权限设置将文档内容有选择性地转发给转发接收者, 从而 避免了转发发送者在拥有转发权限之后对文档的任意转发, 也保证了文档创 建者对文档的保密性。 实施例 2
为了实现转发发送者根据 XDMS 中存储的访问权限文档中的权限设置 将文档内容有选择性地转发给转发接收者, 从而避免了转发发送者在拥有转 发权限之后对文档的任意转发, 保证文档创建者对文档的保密性, 本发明实 施例提供了一种 XDM中转发文档内容的方法, 具体内容如下:
本发明实施例提出的在 XDM中实现内容选择性地转发给转发接收者的 方法, 其中, 对于有选择性的转发可以采用两种方法: 一种为在访问权限中 为有转发权限的转发发送者设置其可以转发的转发接收者的 URI ( Uniform Resource Identifier, 统一资源标示符), 同时也可以设置转发的次数; 另一种 为如果拥有转发权限的转发发送者在转发文档时,将转发接收者的 URI发送 给 XDMS, XDMS到访问权限文档中验证该 URI是否拥有访问该文档内容的 权限, 其中以用户 A为文档管理用户, 用户 B为转发发送者, 用户 C为转 发接收者为例, 参见图 2, 具体流程如下:
201 : 用户 B向 XDMS发送请求, 请求将用户 A的部分文档内容转发给 用户 C在 XDMS的目录下;
其中, 本发明实施例中用户 A为文档管理用户, 用户 B为转发发送者, 用户 C为转发接收者, 用户 B请求将用户 A的部分文档内容转发给用户 C 在 XDMS的目录下;用户 A作为文档管理用户,可以是 XML文档的创建者, 也可以是一个被授权且可以修改文档的访问权限的特殊用户, 其他用户可以 根据管理者用户 A设定的访问权限, 访问 XDMS中的整个文档或者文档的 部分内容;
用户 B位于 XDMC ( Extensible Markup Language Document Management Client, 可扩展标记语言文档管理客户端), 向 XDMS发送请求, 请求将用户 A的部分文档内容转发给用户 C在 XDMS的目录下, 也可以是将用户 A的 整个文档内容, 但必须用户 B拥有转发整个文档内容的权限时, 才可以向用 户 A请求将整个文档内容转发给用户 C。
202: XDMS接收到请求后, 获取用户 A的权限文档, 并判断用户 B是 否有转发权限以及判断用户 C是否有该文档内容的权限;如果用户 B有转发 权限且用户 C有该文明当内容的权限, 执行步骤 204; 否则, 执行步骤 203; 具体如下:
其中, XDMS在接收到请求后, 首先在 XDMS中获取用户 A的访问权 限文档, 在访问权限文档中查看用户 B是否有转发的权限; 其次, 当用户 B 拥有访问权限时, 获取用户 B能否将其拥有权限的文档内容转发给用户 C, 其中该转发过程是将 XDMS 中用户 B 能够访问的用户 A 的内容转发到 XDMS中用户 C的路径下, 而不是转发到用户 C拥有的 XDM用户 C;
其中,对于用户 A的访问权限文档中用户 B的转发权限的存储和设置以 及用户 B能否转发给用户 C具体有两种存储和设置方法:
( 1 )用户 A的权限文档中设置用户 B拥有转发权限时, 也设置用户 B 可以转发的转发接收者;如果用户 A的权限文档中对于用户 B的转发接收者 中不包括用户 C, 则 XDMS执行步骤 203; 如果用户 A的权限文档中对于用 户 B的转发接收者中包括用户 C, 则 XDMS执行步骤 204;
其中,在设置用户 B可以转发的转发接收者时还可以设置用户 B的转发 的次数对用户 B进行限制;还可以设置用户 B的转发内容, 即用户 B拥有文 档转发权限, 但可能只有文档的部分内容的转发权限, 这样用户 B只能转发 其拥有转发权限的那部分内容; 同样, 还可以设置用户 C的接收内容, 该接 收内容可以是用户 B拥有转发权限的部分文档内容也可以是用户 B拥有转发 权限的整个文档内容。
其中, 转发接收者在访问权限文档中设置的方法有以下六种,
〈一〉、在动作 <actions〉元素中的转发操P^<allow-forwarding〉it素下增力口 子元素 <receipt〉, 用来表示允许转发的接收者。
如: <document-mle path="/group 1 ">
<cp:ruleset>
<cp:rule cp:id="al ">
<cp:conditions>
<is-member/>
<paths>
<path id="group/listservice/list"/>
<path id="group/listservice/subj ect"/>
<path id="group/listservice/schedule"/>
</paths> </cp:conditions>
<cp:actions>
<allow-forwarding attribute="true">
<receipt>
<identity>
<one uri="sip:bob@example"/>
<one uri="sip:alice@example"/>
</ identity>
</receipt>
</allow-forwarding>
</cp:actions>
</cp:rule>
</cp:ruleset>
</document-rule>
<二〉、在动作 <actions〉元素中的转发操P^<allow-forwarding〉it素下 力口子元素 <non-receipt〉, 用来表示禁止接收者
如: <document-mle path="/group 1 ">
<cp:ruleset>
<cp:rule cp:id="al ">
<cp:conditions>
<is-member/>
<paths>
<path id="group/listservice/list"/>
<path id="group/listservice/subj ect"/>
<path id="group/listservice/schedule"/>
</paths>
</cp:conditions>
<cp:actions>
<allow-forwarding attribute="true">
<non-receipt>
<identity>
<one uri="sip:david@example"/>
<one uri="sip:tom@example"/>
</ identity>
</non-receipt>
</allow-forwarding>
</cp:actions>
</cp:rule> </cp:ruleset>
</document-rule>
〈三 >、 在一个条件 <conditions〉元素下定义转发的接收者和转发的发送 描述转发的发送者和转发的接收者。
如:
<document-rule path= "/group 1">
<cp:ruleset>
<cp:rule cp:id="al ">
<cp:conditions>
<sender>
<is-member/>
</sender>
<receipt>
<identity>
<one uri="bob@example.com"/>
<one uri="alice@example.com"/>
</identity>
</receipt>
<paths>
<path id="group/listservice/list"/>
<path id="group/listservice/subj ect"/>
<path id="group/listservice/schedule"/>
</paths>
</cp:conditions>
<cp:actions>
<allow-forwarding>true</allow-forwarding>
</cp:actions>
</cp:rule>
</cp:ruleset>
</document-rule>
<四〉、 在一个条件<001^^01 8〉元素下定义禁止的接收者和允许的发送 用来描述允许的发送者和禁止的接收者。 '、
如:
<document-rule path= "/group 1">
<cp:ruleset>
<cp:rule cp:id="al "> <cp:conditions>
<sender>
<is-member/>
</sender>
<non-receipt>
<identity>
<one uri="david@example.com"/>
<one uri="tom@example.com"/>
</identity>
</non-receipt>
<paths>
<path id="group/listservice/list"/>
<path id="group/listservice/subj ect"/>
<path id="group/listservice/schedule"/>
</paths>
</cp:conditions>
<cp:actions>
<allow-forwarding>true</allow-forwarding>
</cp:actions>
</cp:rule>
</cp:ruleset>
</document-rule>
<五〉、 在不同的条件 <conditions〉元素下定义转发接收者和转发发送者, 并且将转发发送者和转发接收者进行关联。 即在一个 01^ 01 8;>下定义
<sender> , 在另一个<∞1 (1^01 8〉下定义 <receipt〉。 其中, 转发发送者和转发 接收者关联的方法有两种, 一种用 <mle^々属性值 id进行关联, 如果 id值相 同,则证明为同一个转发操作下的转发发送者和转发接收者; 另一种方法为: 在<001^^01 8〉元素下定义转发发送者时, 将转发接收者进行关联
如例 1 :
<document-rule path= "/group 1 ">
<cp:ruleset>
<cp:rule cp:id="al ">
<cp:conditions>
<sender>
<is-member/>
</sender>
<paths>
<path id="group/listservice/list"/> ϋ OAVποζ/s/uiz-ososld z-
Figure imgf000012_0001
μ一 p> Λ¾Ιοuoo:cb
P/¾V <U3S <path id="group/listservice/list"/>
<path id="group/listservice/subj ect"/>
<path id="group/listservice/schedule"/>
</paths>
</cp:conditions>
<cp:actions>
<allow-forwarding>true</allow-forwarding>
</cp:actions>
</cp:rule>
<cp:rule cp:id="a2">
<cp:conditions>
<receipt>
<identity>
<one uri="bob@example.com"/>
<one uri="alice@example.com"/>
</identity>
</receipt>
<paths>
<path id="group/listservice/list"/>
<path id="group/listservice/subj ect"/>
<path id="group/listservice/schedule"/>
</paths>
</cp:conditions>
<cp:actions>
<allow-forwarding>true</allow-forwarding>
</cp:actions>
</cp:rule>
</cp:ruleset>
</document-rule>
<六〉、 在不同的条件 <conditions〉元素下定义转发接收者和转发发送者, 并且将转发发送者和转发接收者进行关联。 即在一个 01^ 01 8;>下定义
<sender> , 在另一个<。01 (1^01 8〉下定义 <non-receipt〉(该元素用来表示禁止 接收的 Principal )。 其中, 转发发送者和转发接收者关联的方法有两种, 一种 用<1¾^〉的属性值 id进行关联, 如果 id值相同, 则证明为同一个转发操作下 的转发发送者和转发接收者; 另一种方法为: 在<001^^01 8〉元素下定义转发 发送者时, 将转发接收者进行关联。
如例 1 :
<document-rule path= "/group 1"> pgpdocueueaoumntrlthtl>v A-="
^: 2
/docueuemntrlv <- p/c:ueserltv <
p/c:uerlv < ggaowowadue/aowowadllfrrintrllfrrinvv <<-- pc: acostin> V <
P/C : codosnitin- V A
p/asthv <
ρgpadou/ssevce/scedueth irlitrihl-v Λ="
jρgpadou/ssevce/sub ecvth irlitrit-v Λ="- ρgpadou/ssevce/sth irlitrilit-v Λ="
pasthv A
p/oecennritv <- y/deintitv <
@poe uoeae.co/nritmxmlmv <=""
@p2e udavdeae.co/1riixmlmv <=""
ydeintitv A
poecennritv <- ppc:ue c:darlil>v <=""
p/c:uerlv < ggaowowadue/aowowadllfrrintrllfrrinvv <<-- pc: acostin> V <
P/C : codosnitin- V A
p/asthv Λ
ρgpadou/ssevce/scedueth irlitrihl-v Λ="
jpgpadou/ssevce/sub ecvth irlitritv A="- ρgpadou/ssevce/sth irlitrilit-v Λ="
pasth>v <
/sedenrv <
sebe/immrv <- sedenrv A ppc:ue c:darlilv <="" pc:ueserltv < /docueuemntrlv <- p/c:ueserltv <
p/c:uerlv < ggaowowadue/aowowadllfrrintrllfrrinvv <<-- pc: acostin> V <
P/C : codosnitin- V A
p/asthv <
ρgpadou/ssevce/scedueth irlitrihl-v Λ="
jρgpadou/ssevce/sub ecvth irlitrit-v Λ="- ρgpadou/ssevce/sth irlitrilit-v Λ="
pasthv A
p/oecennritv <- y/deintitv <
@poe ueae.co/nrixmlmv <"
@p2e udavdeae.co/1riixmlmv <=""
ydeintitv A
poecennritv <- ppc:ue C:darli2>v <=""
p/c:uerlv < ggaowowadue/aowowadllfrrintrllfrrinvv <<-- pc: acostin> V <
P/C : codosnitin- V A
p/asthv <
ρgpadou/ssevce/scedueth irlitrihl-v Λ="
jpgpadou/ssevce/sub ecvth irlitritv A="- ρgpadou/ssevce/sth irlitrilit-v Λ="
pasth>v <
p@oece eea/ueda/nnritxtmlrli2v <-==""
/sedenrv <
sebe/immrv <- sedenrv A ppc:ue c:darlilv <="" pc:ueserltv < 用户 B设置转发接收者,但因为在 XDM中文档内容的转发都是在 XDMS中 进行的, 所以在用户 B发送转发请求时, XDMS可以到权限文档中获取该转 发接收者 C是否有权限访问该文档内容, 即将转发接收者看作是文档的获取 方; 如果用户 C有, 则将该文档内容转发给用户 C; 如果没有, 则 XDMS 向用户 B返回 409错误响应;如果用户 A的权限文档中的转发发送者列表中 不包括用户 C, 则 XDMS执行步骤 203 ; 如果用户 A的权限文档中的转发发 送者列表中包括用户 C, 则 XDMS执行步骤 204;
203: XDMS向用户 B返回 409用户 Conflict错误响应;
204: XDMS向用户 B返回 200 OK响应, 允许用户 B将用户 A的部分 文档内容转发给用户 C, 并执行步骤 205;
205: XDMS将用户 A的文档中用户 B有权限转发给用户 C的内容转发 到 XDMS中用户 C的路径下。
上述处理过程中,还可以设置用户 B的访问权限内容包括转发内容以及 用户 C的访问权限内容, 即用户 B拥有文档转发权限,但可能只有文档的部 分内容的转发权限, 这样用户 B只能转发其拥有转发权限的那部分内容。 如 的权限文档中拥有访问权限的文档内容不同, 则 XDMS "在用户 A的权限
G。 '― ' 、 '
本发明实施例提供的方法,通过 XDMS在设置转发发送者的转发权限时 同时设置其可以转发的转发接收者或者 XDMS 在收到转发发送者发送转发 请求时先到权限文档中获取该转发接收者是否有权限访问该文档内容, 解决 了转发发送者根据 XDMS 中存储的访问权限文档中的权限设置将文档内容 有选择性地转发给转发接收者, 从而避免了转发发送者在拥有转发权限之后 对文档的任意转发, 也保证了文档创建者对文档的保密性。 实施例 3
为了实现转发发送者根据 XDMS 中存储的访问权限文档中的权限设置 将文档内容有选择性地转发给转发接收者, 避免转发发送者在拥有转发权限 之后对文档的任意转发, 保证文档创建者对文档的保密性, 本发明实施例提 供了一种 XDM中转发文档内容的方法, 具体内容如下:
本发明实施例中以用户 A为文档管理用户, 用户 B为转发发送者, 用户 C为转发接收者为例, 用户 B将在用户 A (文档内容存储在 XDMS ) 中有权 限转发的文档内容转发给用户 C(转发内容存储在 XDMS ),所以位于 XDMC 的用户 B向 XDMS发送请求, 根据用户 A权限文档中设置的转发接收者来 判断是否允许用户 C访问该文档, 如果用户 C有权限的话,服务器将该内容 转发给用户 C。 参见图 3, 具体步骤如下:
301 : 位于 XDMC的用户 B向 XDMS发送 GET请求, 请求将用户 B在 用户 A的文档中拥有转发权限的文档内容转发给用户 C;
其中,用户 B向 XDMS发送 GET请求,这里的 GET请求仅代表获取这 个动作, 它与修改、 删除、 创建是并列的操作, 并不对内容进行处理过程; 其中, 用户 B位于 XDMC, 用户 A的文档内容存放在 XDMS中; 用户 A作为文档管理用户, 可以是 XML文档的创建者, 也可以是一个被授权且 可以修改文档的访问权限的特殊用户,其他用户可以根据管理者用户 A设定 的访问权限, 访问 XDMS中的整个文档或者文档的部分内容;
用户 B向 XDMS发送请求中, 请求将用户 B在用户 A的文档中拥有转 发权限的文档内容转发给用户 C在 XDMS的目录下, 当用户 B拥有转发整 个文档内容的权限时, 也可以向用户 A请求将整个文档内容转发给用户 C; 另外, 用户 B也可以将用户 B在用户 A的文档中拥有转发权限的文档内容 中的部分内容转发给用户 C。
302: XDMS在接收到用户 B发送的请求后, 获取用户 A的权限文档中 对于用户 B拥有的访问权限, 判断用户 B是否有转发权限, 如果是, 执行步 骤 303; 否则, 执行步骤 306;
303: XDMS在用户 A的权限文档中判断用户 C是否在用户 B的转发接 收者列表中, 如果是, 则执行步骤 304; 否则, 执行步骤 306;
其中,本发明实施例中用户 A的权限文档中如果允许某个用户拥有转发 权限转发文档内容时, 需设置其对应的转发接收者, 建立转发接收者列表, 将所有可以转发的用户都放在该列表中。
304: XDMS向用户 B返回 200 OK响应, 通知用户 A允许用户 B将用 户 B在用户 A的文档中拥有权限的文档内容转发给用户 C,并执行步骤 305;
305: XDMS将用户 B在用户 A的权限文档中拥有转发权限的文档内容 转发给用户 C;
306: XDMS向用户 B返回 409用户 Conflict响应, 通知用户 A禁止将 文档内容转发给用户 c。
另夕卜,在设置用户 B可以转发的转发接收者时还可以设置用户 B的转发 的次数对用户 B进行限制; 上述处理过程中, 还可以设置用户 B的访问权限 内容包括转发内容以及用户 C的访问权限内容,即用户 B拥有文档转发权限, 但可能只有文档的部分内容的转发权限, 这样用户 B只能转发其拥有转发权 限的那部分内容。如果用户 B在用户 A的权限文档中拥有转发权限的文档内 容与用户 C在用户 B的转发接收者列表中拥有访问权限的文档内容不同,则 XDMS将在用户 A的权限文档中用户 B既拥有转发权限且用户 C拥有访问 权限的文档内容发送给用户 C。
本发明实施例提供的方法,通过 XDMS在设置转发发送者的转发权限时 同时设置其可以转发的转发接收者,实现了转发发送者根据 XDMS中存储的 访问权限文档中的权限设置将文档内容有选择性地转发给转发接收者, 从而 避免了转发发送者在拥有转发权限之后对文档的任意转发, 也保证了文档创 建者对文档的保密性。 实施例 4
为了实现转发发送者根据 XDMS 中存储的访问权限文档中的权限设置 将文档内容有选择性地转发给转发接收者, 避免转发发送者在拥有转发权限 之后对文档的任意转发, 保证文档创建者对文档的保密性, 本发明实施例提 供了一种 XDM中转发文档内容的方法, 具体内容如下:
本发明实施例中以用户 A为文档管理用户, 用户 B为转发发送者, 用户 C为转发接收者为例, 用户 B将在用户 A (文档内容存储在 XDMS ) 中有权 限转发的文档内容转发给用户 C(转发内容存储在 XDMS ),所以位于 XDMC 的用户 B向 XDMS发送请求。 在本发明实施例中用户 A的权限文档中没有 户 C是否有权限访问该文档',从而判断用户 B、能否转发给用户 C,参见图 4, 具体步骤如下:
401 : 位于 XDMC的用户 B向 XDMS发送 GET请求, 向用户 A请求用 户 B是否有转发权限以及用户 C是否有访问该文档内容的权限;
其中, 位于 XDMC用户 B向 XDMS发送 GET请求, 这里的 GET请求 仅代表获取这个动作, 它与修改、 删除、 创建是并列的操作, 并不对内容进 行处理过程;
其中, 用户 A的文档内容存放在 XDMS中, 用户 A作为文档管理用户, 可以是 XML文档的创建者, 也可以是一个被授权且可以修改文档的访问权 限的特殊用户,其他用户可以根据管理者用户 A设定的访问权限,访问 XDMS 中的整个文档或者文档的部分内容;
用户 B向 XDMS发送请求中, 请求将用户 B在用户 A的文档中拥有转 发权限的文档内容转发给用户 C在 XDMS的目录下, 当用户 B拥有转发整 个文档内容的权限时, 也可以向用户 A请求将整个文档内容转发给用户 C; 另外, 用户 B也可以将用户 B在用户 A的文档中拥有转发权限的文档内容 中的部分内容转发给用户 C。
402: XDMS接收到用户 B的 GET请求后,到用户 A的权限转发发送者 B的转发权限以及用户 C的访问权限;
其中, XDMS接收到用户 B发送的请求后, 获取用户 A的权限文档, 根据用户 A的权限文档判断用户 B是否有转发权限, 当用户 B有转发权限 时, 由于权限文档中没有设置拥有转发权限的用户的转发接收者的权限, 而 收者, 即如果在权限转发发送者中包括转发接收者 C的 lRI, 则可以进行转 发, 但是若在权限转发发送者中不包括转发接收者 C的 URI, 则不可以进行 转发;
XDMS获取用户 A的权限文档, 在权限文档中判断用户 B没有转发权 限或者在权限转发发送者中不包括转发接收者 C的 URI, 则向用户 B返回 409用户 Conflict响应, 通知用户 A禁止将文档内容转发给用户 C。
403: 当 XDMS判断用户 B有转发的权限并且用户 C也拥有访问该文档 的权限, 则向 XDMC返回 200 OK响应;
其中, 用户 C拥有访问该文档的权限即拥有被转发的权限, XDMS 向 XDMC返回 200 OK响应, 在该响应中可以包括转发的文档内容。
404: 用户 B向 XDMS发送 GET请求,请求将部分文档内容转发给用户
C;
405: XDMS接收到该请求后, 继续根据用户 A的权限文档判断可否转 发给用户 判断结果为可以转发;
其中, XDMS接收到该请求后, 继续根据用户 A的权限文档判断用户 C 在用户 A的权限文档是否拥有访问权限, 即在权限转发发送者中是否包括转 发接收者 C的 URI, 判断结果为可以进行转发。
406: XDMS将用户 B在用户 A的文档中拥有转发权限的文档内容转发 给用户 C。
另外,在设置用户 B的转发权限时还可以设置用户 B的转发的次数对用 户 B进行限制。
上述处理过程中,还可以设置用户 B的访问权限内容包括转发内容以及 用户 C的访问权限内容, 即用户 B拥有文档转发权限,但可能只有文档的部 分内容的转发权限, 这样用户 B只能转发其拥有转发权限的那部分内容。 如 果用户 B在用户 A的权限文档中拥有转发权限的文档内容与用户 C在位于 XDMS的用户 A的权限文档中拥有访问权限的文档内容不同, 则 XDMS将 在用户 A的权限文档中用户 B既拥有转发权限且用户 C拥有访问权限的文 档内容发送给用户 C。
例如: 文档内容包括 1、 2、 3三部分, 而用户 B在用户 A的权限文档中 拥有转发权限的文档内容为 1、 2, 用户 C在用户 A的权限文档中拥有访问 权限的文档内容为 1, 则 XDMS在根据用户 A的权限文档中判断用户 B有 转发权限且用户 C拥有访问权限后, 将文档内容 1转发给用户 C, 虽然用户 B拥有转发权限的文档内容为 1、 2, 但由于用户 C在用户 A的权限文档中 拥有访问权限的文档内容仅为 1, 所以 XDMS只能将文档内容 1转发给用户 C;
又如: 文档内容包括 1、 2、 3三部分, 而用户 B在用户 A的权限文档中 拥有转发权限的文档内容为 2, 用户 C在用户 A的权限文档中拥有访问权限 的文档内容为 2、 3, 则 XDMS在根据用户 A的权限文档中判断用户 B有转 发权限且用户 C拥有访问权限后, 将文档内容 2转发给用户 C, 虽然用户 C 拥有访问权限的文档内容为 2、 3,但由于用户 B拥有转发权限的文档内容仅 为 2, 所以 XDMS只能将文档内容 2转发给用户 C;
再如: 文档内容包括 1、 2、 3三部分, 而用户 B在用户 A的权限文档中 拥有转发权限的文档内容为 1、 2、 3, 用户 C在用户 A的权限文档中拥有访 问权限的文档内容为 3, 则 XDMS在根据用户 A的权限文档中判断用户 B 有转发权限且用户 C拥有访问权限后, 将文档内容 3转发给用户 C, 虽然用 户 B拥有转发权限的文档内容为 1、 2、 3, 但由于用户 C在用户 A的权限文 档中拥有访问权限的文档内容仅为 3, 所以 XDMS只能将文档内容 3转发给 用户 C。
本发明实施例提供的方法,通过 XDMS在收到转发发送者发送转发请求 时到权限文档中获取转发发送者是否拥有转发权限时同时获取该转发接收者 是否有权限访问该文档内容,实现了转发发送者根据 XDMS中存储的访问权 限文档中的权限设置将文档内容有选择性地转发给转发接收者, 从而避免了 转发发送者在拥有转发权限之后对文档的任意转发, 也保证了文档创建者对 文档的保密性。 实施例 5
为了实现转发发送者根据 XDMS 中存储的访问权限文档中的权限设置 将文档内容有选择性地转发给转发接收者, 避免转发发送者在拥有转发权限 之后对文档的任意转发, 保证文档创建者对文档的保密性, 本发明实施例提 供了一种 XDM中转发文档内容的方法, 具体内容如下:
本发明实施例中以用户 A为文档管理用户, 用户 B为转发发送者, 用户 C为转发接收者为例, 用户 B将在用户 A (文档内容存储在 XDMS ) 中有权 限转发的文档内容转发给用户 C(转发内容为文档内容中的全部或者一部分, 存储在 XDMS ), 所以位于 XDMC的用户 B向 XDMS发送请求。 在本发明 实施例中用户 A的权限文档中没有设置转发接收者权限, 但是在 XDMS要 求对于拥有转发权限的用户在要转发文档内容时,需要向文档管理用户 A进 行询问, 询问转发接收者是否有接收文档内容的权限, 如果有权限则发送, 没有权限则向转发发送者 B返回错误, 禁止发送。 参见图 5, 具体步骤如下:
501 : 位于 XDMC的用户 B向 XDMS发送 GET请求, 向用户 A询问用 户 B是否可以将文档内容转发给用户 C;
其中, 位于 XDMC用户 B向 XDMS发送 GET请求, 这里的 GET请求 仅代表获取这个动作, 它与修改、 删除、 创建是并列的操作, 并不对内容进 行处理过程;
其中, 用户 A的文档内容存放在 XDMS中, 用户 A作为文档管理用户, 可以是 XML文档的创建者, 也可以是一个被授权且可以修改文档的访问权 限的特殊用户,其他用户可以根据管理者用户 A设定的访问权限,访问 XDMS 中的整个文档或者文档的部分内容;
用户 B向 XDMS发送请求中, 请求将用户 B在用户 A的文档中拥有转 发权限的文档内容转发给用户 C在 XDMS的目录下, 当用户 B拥有转发整 个文档内容的权限时, 也可以向用户 A请求将整个文档内容转发给用户 C; 另外, 用户 B也可以将用户 B在用户 A的文档中拥有转发权限的文档内容 中的部分内容转发给用户 C。
502: XDMS接收到用户 B的 GET请求后,到用户 A的权限文档中获取 用户 B的转发权限;
其中, XDMS接收到用户 B发送的请求后, 获取用户 A的权限文档, 根据用户 A的权限文档判断用户 B是否有转发权限, 当用户 B有转发权限 时执行步骤 503;
XDMS获取用户 A的权限文档, 如果在权限文档中判断用户 B没有转 发权限, 则向用户 B返回 409用户 Conflict响应, 通知用户 A禁止将文档内 容转发给用户 C。
503: 当用户 B在用户 A的权限文档中有转发权限时, XDMS 向位于 XDMC的用户 A询问是否可以将用户 B拥有转发权限的文档内容转发给用 户 C;
其中, 用户 A的权限文档中没有设置转发接收者权限, 但是在 XDMS 要求对于拥有转发权限的用户在要转发文档内容时, 需要向文档管理用户 A 进行询问, 询问转发接收者 C是否有接收文档内容的权限。
504: XDMC的用户 A判断可以转发, 并将结果返回给 XDMS;
、 、 其中, XDMC的用户 A接 到 XDMC发送的询 J3]^求时, 判断是否可 果有权限则可以转发, 没有权限则向转发发送者 B返回错误, 禁止发送。
505: XDMS向用户 B返回 200 OK, 通知 B可以将用户 B拥有转发权 限的文档内容转发给用户 C;
506: XDMS将用户 B拥有转发权限的文档内容转发给用户 C。
另外,在设置用户 B的转发权限时还可以设置用户 B的转发的次数对用 户 B进行限制。
上述处理过程中,还可以设置用户 B的访问权限内容包括转发内容以及 位于 XDMC的用户 A中用户 C的访问权限内容, 即用户 B拥有文档转发权 限, 但可能只有文档的部分内容的转发权限, 这样用户 B只能转发其拥有转 发权限的那部分内容。如果用户 B在用户 A的权限文档中拥有转发权限的文 档内容与用户 C在位于 XDMC的用户 A中的访问权限的文档内容不同, 则 XDMS将在位于 XDMS的用户 A的权限文档中用户 B拥有转发权限的文档 内容且用户 C在位于 XDMC的用户 A中的访问权限的文档内容发送给用户 C。
例如: 文档内容包括 1、 2、 3三部分, 而用户 B在用户 A的权限文档中 拥有转发权限的文档内容为 1、 2, 用户 C在位于 XDMC的用户 A中的访问 权限的文档内容为 1, 则 XDMS在根据用户 A的权限文档中判断用户 B有 转发权限且位于 XDMC的用户 A判断用户 C拥有访问权限后, 将文档内容 1转发给用户 C, 虽然用户 B拥有转发权限的文档内容为 1、 2, 但由于用户 C在位于 XDMC的用户 A中的访问权限的文档内容仅为 1, 所以 XDMS只 能将文档内容 1转发给用户 C;
又如: 文档内容包括 1、 2、 3三部分, 而用户 B在用户 A的权限文档中 拥有转发权限的文档内容为 2, 用户 C在位于 XDMC的用户 A中的访问权 限的文档内容为 2、 3, 则 XDMS在根据用户 A的权限文档中判断用户 B有 转发权限且位于 XDMC的用户 A判断用户 C拥有访问权限后, 将文档内容 2转发给用户 C, 虽然用户 C在位于 XDMC的用户 A中的访问权限的文档 内容为 2、 3, 但由于用户 B拥有转发权限的文档内容仅为 2, 所以 XDMS 只能将文档内容 2转发给用户 C;
再如: 文档内容包括 1、 2、 3三部分, 而用户 B在用户 A的权限文档中 拥有转发权限的文档内容为 1、 2、 3, 用户 C在位于 XDMC的用户 A中的 访问权限的文档内容为 3,则 XDMS在根据用户 A的权限文档中判断用户 B 有转发权限且位于 XDMC的用户 A判断用户 C拥有访问权限后, 将文档内 容 3转发给用户 C, 虽然用户 B拥有转发权限的文档内容为 1、 2、 3, 但由 于用户 C在位于 XDMC 的用户 A 中的访问权限的文档内容仅为 3, 所以 XDMS只能将文档内容 3转发给用户 C。
本发明实施例提供的方法, 通过 XDM服务器在收到转发发送者发送转 发请求时获取转发发送者的转发权限并向文档管理者询问转发接收者是否有 权限访问该文档内容, 实现了转发发送者根据 XDM服务器中存储的访问权 限文档中的权限设置将文档内容有选择性地转发给转发接收者, 从而避免了 转发发送者在拥有转发权限之后对文档的任意转发, 也保证了文档创建者对 文档的保密性。 实施例 6
为了实现转发发送者根据 XDMS 中存储的访问权限文档中的权限设置 将文档内容有选择性地转发给转发接收者, 避免转发发送者在拥有转发权限 之后对文档的任意转发, 保证文档创建者对文档的保密性, 本发明实施例提 供了一种 XDM中转发文档内容的方法, 具体内容如下:
本发明实施例中以用户 A为文档管理用户, 用户 B为转发发送者, 用户 C为转发接收者为例, 用户 B将在用户 A (文档内容存储在 XDMS ) 中有权 限转发的文档内容转发给用户 C(转发内容存储在 XDMS ),所以位于 XDMC 的用户 B向 XDMS发送请求, 根据 A权限文档中设置的禁止接收者来判断 用户 C是否被禁止访问该文档内容, 如果用户 C被禁止,服务器将不会转发 该文档内容给用户 C, 并且向用户 B返回错误响应。 该实施例中要求用户 A 的权限文档中如果允许某一用户转发文档内容时, 需设置转发时禁止的接收 者, 转发次数, 转发的内容。 参见图 6, 具体步骤如下:
601 : 位于 XDMC的用户 B向 XDMS发送 GET请求, 请求将用户 B在 用户 A的文档中拥有转发权限的文档内容转发给用户 C; 其中,用户 B向 XDMS发送 GET请求,这里的 GET请求仅代表获取这 个动作, 它与修改、 删除、 创建是并列的操作, 并不对内容进行处理过程; 其中, 用户 B位于 XDMC, 用户 A的文档内容存放在 XDMS中; 用户 A作为文档管理用户, 可以是 XML文档的创建者, 也可以是一个被授权且 可以修改文档的访问权限的特殊用户,其他用户可以根据管理者用户 A设定 的访问权限, 访问 XDMS中的整个文档或者文档的部分内容;
用户 B向 XDMS发送请求中, 请求将用户 B在用户 A的文档中拥有转 发权限的文档内容转发给用户 C在 XDMS的目录下, 当用户 B拥有转发整 个文档内容的权限时, 也可以向用户 A请求将整个文档内容转发给用户 C; 另外, 用户 B也可以将用户 B在用户 A的文档中拥有转发权限的文档内容 中的部分内容转发给用户 C。
602: XDMS在接收到用户 B发送的请求后, 获取用户 A的权限文档中 对于用户 B拥有的访问权限, 判断用户 B是否有转发权限;
其中, XDMS在用户 A的权限文档中判断判断用户 B没有转发权限时, XDMS向用户 B返回 409用户 Conflict响应,通知用户 A禁止将文档内容转 发给用户 C。
603: 当用户 B有转发权限时, XDMS在用户 A的权限文档中判断用户 C是否在用户 B的禁止转发接收者列表中;
其中,本发明实施例中用户 A的权限文档中如果允许某个用户拥有转发 权限转发文档内容时, 需设置其对应的禁止转发接收者, 建立禁止转发接收 者列表, 将所有禁止转发的用户都放在该列表中。
XDMS在用户 A的权限文档中判断用户 C在用户 B的禁止转发接收者 列表中, XDMS向用户 B返回 409用户 Conflict响应, 通知用户 A禁止将文 档内容转发给用户 C。
604: XDMS在用户 A的权限文档中判断用户 C不在用户 B的禁止转发 接收者列表中, XDMS向用户 B返回 200 OK响应, 通知用户 A允许用户 B 将用户 B在用户 A的文档中拥有权限的文档内容转发给用户 C;
605: XDMS将用户 B在用户 A的权限文档中拥有转发权限的文档内容 转发给用户 C。
其中,在设置用户 B禁止转发的转发接收者时还可以设置用户 B的转发 的次数对用户 B进行限制; 上述处理过程中, 还可以设置用户 B的访问权限 内容包括转发内容即用户 B拥有文档转发权限。
本发明实施例提供的方法,通过 XDMS在设置转发发送者的转发权限时 同时设置其禁止转发的接收者,实现了转发发送者根据 XDMS中存储的访问 权限文档中的权限设置将文档内容有选择性地转发给转发接收者, 从而避免 了转发发送者在拥有转发权限之后对文档的任意转发, 也保证了文档创建者 对文档的保密性。 实施例 Ί
为了实现转发发送者根据 XDMS 中存储的访问权限文档中的权限设置 将文档内容有选择性地转发给转发接收者, 避免转发发送者在拥有转发权限 之后对文档的任意转发, 保证文档创建者对文档的保密性, 本发明实施例提 供了一种 XDM中转发文档内容的方法, 具体内容如下:
本发明实施例中以用户 Α为文档管理用户, 用户 B为转发发送者, 用户 C为转发接收者为例, 用户 B将在用户 A (文档内容存储在 XDMS ) 中有权 限转发的文档内容转发给用户 C(转发内容存储在 XDMS ),所以位于 XDMC 的用户 B向 XDMS发送请求, 在该实施例中用户 A的权限文档中既没有设 置转发发送者的权限, 也没有设置转发接收者权限, 但是当某一用户在向 XDMS发送请求, 请求转发某部分文档内容时, 需要向文档创建者或者文档 管理者进行询问, 询问转发发送者是否可以转发某部分文档内容, 并且询问 转发接收者是否有接收文档内容的权限, 如果两者都有权限则发送, 如果任 意一方没有权限则像文档获取方返回错误, 禁止发送。 参见图 7, 具体步骤 ^口下:
701 : 位于 XDMC的用户 B向 XDMS发送 GET请求, 向用户 A询问用 户 B是否可以将文档内容转发给用户 C;
其中, 位于 XDMC用户 B向 XDMS发送 GET请求, 这里的 GET请求 仅代表获取这个动作, 它与修改、 删除、 创建是并列的操作, 并不对内容进 行处理过程;
其中, 用户 A的文档内容存放在 XDMS中, 用户 A作为文档管理用户, 可以是 XML文档的创建者, 也可以是一个被授权且可以修改文档的访问权 限的特殊用户,其他用户可以根据管理者用户 A设定的访问权限,访问 XDMS 中的整个文档或者文档的部分内容;
用户 B向 XDMS发送请求中, 请求将用户 B在用户 A的文档中拥有转 发权限的文档内容转发给用户 C在 XDMS的目录下, 当用户 B拥有转发整 个文档内容的权限时, 也可以向用户 A请求将整个文档内容转发给用户 C; 另外, 用户 B也可以将用户 B在用户 A的文档中拥有转发权限的文档内容 中的部分内容转发给用户 C。
702: XDMS接收到用户 B的 GET请求后,到用户 A的权限文档中获取 用户 B的转发权限和用户 C的接收权限,如果权限文档中既没有设置转发发 送权限, 也没有设置转发接收权限, 则执行步骤 703 ;
其中, XDMS接收到用户 B发送的请求后, 获取用户 A的权限文档, 判断用户 A的权限文档是否有用户 B的转发权限和用户 C的接收权限, 如 果权限文档中既没有设置转发发送权限, 也没有设置转发接收权限, 则执行 步骤 703;
703: XDMS向位于 XDMC的用户 A询问用户 B是否有转发发送以及 用户 C是否有转发接收权限; 其中,用户 A的权限文档中没有设置转发发送者的权限也没有设置转发 接收者权限, 需要 XDMS向文档管理用户 A进行询问, 询问用户 B是否拥 有转发权限以及转发接收者 C是否有接收文档内容的权限。
704: 当用户 A判断得出用户 B可以转发, 并且用户 C可以接收用户 B 拥有转发权限的文档内容, 则向 XDMS返回判断结果;
其中, 当用户 A判断用户 B不能转发, 或者用户 C不能接收用户 B拥 有转发权限的文档内容时, 则也向 XDMS返回判断结果, XDMS收到该判 断结果后, 向向用户 B返回 409用户 Conflict响应, 通知用户 A禁止将文档 内容转发给用户 C。
705: XDMS向用户 B返回 200 OK, 即表明用户 Β可以将拥有转发权限 的文档内容转发给用户 C;
706: XDMS将用户 B拥有转发权限的文档内容转发给用户 C。
上述处理过程中,还可以设置用户 B的访问权限内容包括转发内容即用 户 B拥有文档转发权限, 但可能只有文档的部分内容的转发权限, 这样用户 B只能转发其拥有转发权限的那部分内容。
本发明实施例提供的方法,通过 XDMS在收到转发发送者的转发请求后 向文档管理者发送询问请求, 询问转发发送者是否拥有转发权限以及转发接 收者是否拥有访问权限, 实现了转发发送者将文档内容有选择性地转发给转 发接收者, 从而避免了转发发送者在拥有转发权限之后对文档的任意转发, 也保证了文档创建者对文档的保密性。 实施例 8
本发明实施例提供了一种可扩展标记语言文档管理 XDM服务器设备, 参见图 8, 该设备包括:
接收模块 801, 用于接收转发发送者发送的转发请求, 转发请求为将文 档内容转发给转发接收者;
判断模块 802, 用于根据权限文档, 判断转发发送者是否拥有文档内容 的转发权限以及转发接收者是否拥有文档内容的访问权限;
转发模块 803, 用于当转发发送者拥有转发权限且转发接收者拥有访问 权限时, 将文档内容转发给转发接收者。
其中, 所述设备至少还包括以下任一种模块:
第一设置模块, 用于在权限文档中设置转发发送者转发权限, 并为转发 发送者设置转发接收者列表。
第二设置模块, 用于在权限文档中设置转发发送者转发权限, 并在权限 文档中设置转发接收者访问权限;
第三设置模块, 用于在权限文档中设置转发发送者转发权限;
第四设置模块, 用于在权限文档中设置转发发送者的转发权限, 并设置 转发发送者的禁止转发接收者列表。 进一步地, 若设备包括第一设置模块, 则第一设置模块还包括: 第一设置单元, 用于设置转发发送者拥有转发权限的文档内容以及设置 转发接收者接收文档内容, 接收文档内容为转发发送者拥有转发权限的部分 文档内容或整个文档内容;转发模块 803将接收文档内容转发给转发接收者。
相应地, 判断模块 802具体包括:
第一判断转发单元, 用于从权限文档中获取转发发送者对文档内容的访 问权限, 判断转发发送者是否拥有对文档内容的转发权限;
第一判断访问单元, 用于当转发发送者拥有转发权限时, 判断转发接收 者是否在转发发送者的转发接收者列表中, 如果是, 则转发接收者拥有文档 内容的访问权限。
若设备包括第二设置模块, 则第二设置模块还包括:
第二设置单元, 用于设置转发发送者拥有转发权限的文档内容以及设置 转发接收者拥有访问权限的文档内容; 转发模块 803将转发发送者拥有转发 权限且转发接收者拥有访问权限的文档内容转发给转发接收者。
相应地, 判断模块 802, 具体包括:
第二转发判断单元, 用于从权限文档中获取转发发送者对文档内容的访 第二访问判断单元, 用于当转发发送者拥 ¾ "转发权限时, 判断在权限文 档中是否设置转发接收者的访问权限, 如果是, 转发接收者拥有文档内容的 访问权限。
若设备包括第三设置模块, 则第三设置模块还包括:
第三设置单元, 用于设置转发发送者拥有转发权限的文档内容。 转发模 相应地, 判断模块 802, 具体包括:
第三转发判断单元, 用于从权限文档中获取转发发送者对文档内容的访 第三访问判断单元, 用于当转发发送者拥 ¾■转发权限时, 向文档管理用 户的 XDM客户端发送询问请求, 询问转发接收者是否拥有文档内容的访问 权限; 接收文档管理用户的 XDM客户端返回的询问结果, 当询问结果为是 时, 转发接收者拥有文档内容的访问权限。
若设备包括第四设置模块, 则第四设置模块还包括:
第四设置单元, 用于设置转发发送者拥有转发权限的文档内容。 转发模 其中, 判断模块 802, 还包括:
判断单元, 用于收到接收模块 801发送的转发请求后, 在所述权限文档 中获取所述转发发送者的转发权限, 如果所述权限文档中没有所述转发发送 者的转发权限, 向文档管理用户的 XDM客户端发送询问请求, 询问转发发 送者是否拥有文档内容的转发权限以及转发接收者是否拥有文档内容的访问 权限; 接收文档管理用户的 XDM客户端返回的询问结果;
相应地, 转发模块 803, 还包括:
转发单元, 用于当判断单元返回的询问结果为转发发送者拥有文档内容 的转发权限且转发接收者拥有文档内容的访问权限时, 所述转发发送者将拥 有转发权限的文档内容转发给所述转发接收者。
本发明实施例提供的设备, 通过 XDM服务器在设置转发发送者的转发 权限时同时设置转发接收者或者 XDM服务器在收到转发发送者发送转发请 求时向文档管理用户询问转发发送者的转发权限以及转发接收者的访问权 了转发发送者在拥有转发权限之后对文档的任意转发, 也保证了文档创建者 对文档的保密性。 实施例 9
本发明实施例提供了一种可扩展标记语言文档管理 X画中转发文档内容 的系统, 参见图 7, 该系统包括: X画服务器 901和 X画客户端 902, 其中,
X画服务器 901,用于接收转发发送者发送的转发请求,转发请求为将文 档内容转发给转发接收者; 根据权限文档, 判断转发发送者是否拥有文档内 容的转发权限以及转发接收者是否拥有文档内容的访问权限; 当转发发送者 拥有转发权限且转发接收者拥有访问权限时,将文档内容转发给转发接收者;
XDM客户端 902, 用于向 XDM服务器 901发送转发请求, 转发请求为 将文档内容转发给转发接收者。
其中, XDM服务器 901,还用于在权限文档中为转发发送者设置转发权 限, 并为转发发送者设置转发接收者列表, 转发接收者列表中包括所有能够 接收转发发送者转发的文档内容的用户。
进一步地, XDM服务器 901具体用于:
从权限文档中获取转发发送者对文档内容的访问权限, 判断转发发送者 是否拥有对文档内容的转发权限;
当转发发送者拥有转发权限时, 判断转发接收者是否在转发发送者的转 发接收者列表中, 如果是, 则转发接收者拥有文档内容的访问权限。
进一步地, XDM服务器 901, 还用于为转发发送者设置拥有转发权限的 文档内容以及为转发接收者设置接收文档内容, 接收文档内容为转发发送者 拥有转发权限的部分或整个文档内容。
进一步地, XDM服务器 901用于将接收文档内容转发给转发接收者。 其中, XDM服务器 901还用于在权限文档中为转发发送者设置转发权 限, 并在权限文档中为转发接收者设置访问权限。
进一步地, XDM服务器 901具体用于:
从权限文档中获取转发发送者对文档内容的访问权限, 并判断转发发送 者是否拥有对文档内容的转发权限; 当转发发送者拥有转发权限时, 判断在权限文档中是否设置转发接收者 的访问权限, 如果是, 转发接收者拥有文档内容的访问权限。
进一步地, XDM服务器 901还用于为转发发送者设置拥有转发权限的 文档内容以及为转发接收者设置拥有访问权限的文档内容。
进一步地, XDM服务器 901用于将转发发送者拥有转发权限且转发接 收者拥有访问权限的文档内容转发给转发接收者。
其中, XDM服务器 901还用于在权限文档中为转发发送者设置转发权 限。
进一步地, XDM服务器 901具体用于:
从权限文档中获取转发发送者对文档内容的访问权限, 并判断转发发送 者是否拥有对文档内容的转发权限;
当转发发送者拥有转发权限时, 向文档管理用户的 XDM客户端 902发 送询问请求, 询问转发接收者是否拥有文档内容的访问权限;
接收文档管理用户的 XDM客户端 902返回的询问结果, 当询问结果为 是时, 转发接收者拥有文档内容的访问权限。
进一步地, XDM服务器 901还用于为转发发送者设置拥有转发权限的 文档内容。
进一步地, XDM服务器 901用于将转发发送者拥有转发权限的文档内 容转发给转发接收者。
其中, XDM服务器 901还用于在权限文档中设置转发发送者的转发权 限, 并设置转发发送者的禁止转发接收者列表;
' 进一步地, - XDM服务器 901还用于设置转发发送者拥有转发权限的文 其中, XDM服务器 901还用于接收到接收模块发送的转发请求后, 向 文档管理用户的 XDM客户端发送询问请求, 询问转发发送者是否拥有文档 内容的转发权限以及转发接收者是否拥有文档内容的访问权限; 接收文档管 理用户的 XDM客户端返回的询问结果; 当判断单元返回的询问结果为转发 发送者拥有文档内容的转发权限且转发接收者拥有文档内容的访问权限时, 本发明实施例提供的系统, 通过 XDM服务器在设置转发发送者的转发 权限时同时设置转发接收者或者 XDM服务器在收到转发发送者发送转发请 求时获取该转发接收者是否有权限访问该文档内容, 实现了转发发送者根据 XDM服务器中存储的访问权限文档中的权限设置将文档内容有选择性地转 发给转发接收者, 从而避免了转发发送者在拥有转发权限之后对文档的任意 转发, 也保证了文档创建者对文档的保密性。
本领域普通技术人员可以理解: 实现上述方法实施例的全部或部分步骤 可以通过程序指令相关的硬件来完成, 前述的程序可以存储于一计算机可读 取存储介质中, 该程序在执行时, 执行包括上述方法实施例的步骤; 而前述 的存储介质包括: 只读存储器 (ROM )、 随机存取器 (RAM )、 磁碟或者光 盘等各种可以存储程序代码的介质。
以上所述仅为本发明的较佳实施例, 并不用以限制本发明, 凡在本发明 的精神和原则之内, 所作的任何修改、 等同替换、 改进等, 均应包含在本发 明的保护范围之内。

Claims

权 利 要 求
1、 一种可扩展标记语言文档管理 XDM中转发文档内容的方法, 其特征 在于, 所述方法包括:
接收转发发送者的转发请求, 所述转发请求用于将文档内容转发给转发 接收者; 、 、-、 、' 、 - 以及所述转发接收者是否拥有所述文档内容的访问权限;
当所述转发发送者拥有所述转发权限且所述转发接收者拥有所述访问权 限时, 将所述文档内容转发给所述转发接收者。
2、如权利要求 1所述的方法, 其特征在于, 所述接收转发发送者发送的 转发请求之前, 还包括:
在所述权限文档中设置所述转发发送者的转发权限, 并设置所述转发发 送者的转发接收者列表; 或者,
在所述权限文档中设置所述转发发送者的转发权限, 并在所述权限文档 中设置所述转发接收者访问权限。
3、如权利要求 1所述的方法, 其特征在于, 所述接收转发发送者发送的 转发请求之前, 还包括:
在所述权限文档中设置所述转发发送者的转发权限; 或者,
在所述权限文档中设置所述转发发送者的转发权限, 并设置所述转发发 送者的禁止转发接收者列表。
4、 如权利要求 2所述的方法, 其特征在于,
当所述方法包括在所述权限文档中设置所述转发发送者的转发权限, 并 设置所述转发发送者的转发接收者列表时, 所述设置所述转发发送者的转发 接收者列表, 具体包括:
在动作元素中的转发操作元素下扩展子元素, 所述扩展子元素用于设置 所述转发接收者列表;
或者,
在一个条件元素下分别设置转发发送者列表和所述转发接收者列表; 或者,
在不同的条件元素下分别设置转发发送者列表和所述转发接收者列表, 并将所述转发发送者和所述转发接收者关联起来。
5、 如权利要求 3所述的方法, 其特征在于,
当所述方法包括在所述权限文档中设置所述转发发送者的转发权限, 并 设置所述转发发送者的禁止转发接收者列表时, 所述设置禁止转发接收者列 表, 具体包括:
在动作元素中的转发操作元素下扩展子元素用于设置所述禁止转发接收 者列表;
或者,
在一个条件元素下分别设置转发发送者列表和所述禁止转发接收者列 表 或者
在不同的条件元素下分别设置转发发送者列表和所述禁止转发接收者列 表, 并将所述转发发送者和禁止转发接收者关联起来。
6、 如权利要求 2或 3所述的方法, 其特征在于,
当所述方法包括在所述权限文档中设置所述转发发送者的转发权限, 并 设置所述转发发送者的转发接收者列表时,
在所述权限文档中设置所述转发发送者的转发权限时, 还包括: 设置所述转发发送者拥有转发权限的文档内容, 并设置所述转发接收者 的接收文档内容, 所述接收文档内容包括所述转发发送者拥有转发权限的部 分文档内容或整个文档内容; 当所述方法包括在所述权限文档中设置所述转发发送者的转发权限, 并 在所述权限文档中设置所述转发接收者访问权限时,
在所述权限文档中为所述转发发送者设置转发权限时, 还包括: 设置所述转发发送者拥有转发权限的文档内容以及设置所述转发接收者 拥有访问权限的文档内容; 当所述方法包括在所述权限文档中设置所述转发发送者的转发权限时, 在所述权限文档中为所述转发发送者设置转发权限时, 还包括: 为所述转发发送者设置拥有转发权限的文档内容; 当所述方法包括在所述权限文档中设置所述转发发送者的转发权限, 并 设置所述转发发送者的禁止转发接收者列表时,
在所述权限文档中设置所述转发发送者的转发权限时, 还包括: 设置所述转发发送者拥有转发权限的文档内容。
7、 如权利要求 6所述的方法, 其特征在于,
当所述方法包括在所述权限文档中设置所述转发发送者的转发权限时, 权限以及所述转发接收者是否拥有所述文档内容的访问权限, 具体包括: 从所述权限文档中获取所述转发发送者对所述文档内容的访问权限, 并 当所述转发发送者拥有所述转发权限时, 向文档管理用户的 XDM客户 端发送询问请求, 询问所述转发接收者是否拥有所述文档内容的访问权限; 接收所述文档管理用户的 XDM客户端返回的询问结果, 当询问结果为 是时, 所述转发接收者拥有所述文档内容的访问权限。
8、如权利要求 1至 3任一所述的方法,其特征在于,所述根据权限文档, 是否拥有所述文档内容的访问权限, 包括:、 、
接收所述接收转发发送者发送的转发请求之后, 在所述权限文档中获取 所述转发发送者的转发权限, 如果所述权限文档中没有所述转发发送者的转 发权限, 向文档管理用户的 XDM客户端发送询问请求, 询问所述转发发送 内容的访问权限; ' ' 接收所述文档管理用户的 XDM客户端返回的询问结果。
9、 一种可扩展标记语言文档管理 XDM服务器设备, 其特征在于, 所述 设备包括:
接收模块, 用于接收转发发送者发送的转发请求, 所述转发请求用于将 文档内容转发给转发接收者; 、 - ' 、_ . . 、 、- 、 容的转发权限以及所述转发接收者是否拥有所述文档内容的访问权限;
转发模块, 用于当转发发送者拥有转发权限且转发接收者拥有访问权限 时, 将文档内容转发给转发接收者。
10、 如权利要求 9所述的设备, 其特征在于, 所述设备至少还包括以下 任一种模块:
第一设置模块, 用于在所述权限文档中设置所述转发发送者转发权限, 并为所述转发发送者设置转发接收者列表;
第二设置模块, 用于在所述权限文档中设置所述转发发送者转发权限, 并在所述权限文档中设置所述转发接收者访问权限;
第三设置模块, 用于在所述权限文档中设置所述转发发送者转发权限; 第四设置模块,用于在所述权限文档中设置所述转发发送者的转发权限, 并设置所述转发发送者的禁止转发接收者列表。
11、 如权利要求 10所述的设备, 其特征在于,
若所述设备包括第一设置模块, 则所述第一设置模块还包括:
第一设置单元, 用于设置所述转发发送者拥有转发权限的文档内容以及 设置所述转发接收者接收文档内容, 所述接收文档内容为所述转发发送者拥 有转发权限的部分文档内容或整个文档内容;
若所述设备包括第二设置模块, 则所述第二设置模块还包括: 第二设置单元, 用于设置所述转发发送者拥有转发权限的文档内容以及 设置所述转发接收者拥有访问权限的文档内容;
若所述设备包括第三设置模块, 则所述第三设置模块还包括: 第三设置单元, 用于设置所述转发发送者拥有转发权限的文档内容; 若所述设备包括第四设置模块, 则所述第四设置模块还包括: 第四设置单元, 用于设置所述转发发送者拥有转发权限的文档内容。
12、 如权利要求 9所述的设备, 其特征在于, 所述判断模块, 还包括: 判断单元, 用于接收到所述接收模块发送的转发请求后, 在所述权限文 档中获取所述转发发送者的转发权限, 如果所述权限文档中没有所述转发发 送者的转发权限, 向文档管理用户的 XDM客户端发送询问请求, 询问所述 所述文档内容的访问权限; ^收所述文档管理用户的 XDM客户端返回的询 问结果;
相应地, 所述转发模块, 还包括:
转发单元, 用于当所述判断单元返回的询问结果为所述转发发送者拥有 所述文^内容的 发权限且所述转发接史者拥、有所述文档、内容的访问权限
13、 一种可扩展标记语言文档管理 XDM中转发文档内容的系统, 其特 征在于, 所述系统包括: XDM服务器和 XDM客户端, 其中,
所述 XDM服务器, 用于接收转发发送者发送的转发请求, 所述转发请 求用于将文档内容转发给转发接收者; 根据权限文档, 判断所述转发发送者 容的访问权限; 当'所述转发发送者拥有所述转发权限且所述转发接收者^有 所述访问权限时, 将所述文档内容转发给所述转发接收者;
所述 XDM客户端, 用于向所述 XDM服务器发送转发请求, 所述转发 请求用于将所述文档内容转发给转发接收者。
PCT/CN2010/076987 2009-09-16 2010-09-16 一种可扩展标记语言文档管理中转发文档内容的方法、设备和系统 WO2011032501A1 (zh)

Priority Applications (3)

Application Number Priority Date Filing Date Title
EP10816705A EP2479682A1 (en) 2009-09-16 2010-09-16 Method, device and system for forwarding document content in extensible markup language document management
US13/422,469 US8880643B2 (en) 2009-09-16 2012-03-16 Method, device and system for forwarding document content in extensible markup language document management
US14/498,636 US9690951B2 (en) 2009-09-16 2014-09-26 Method, device and system for forwarding document content in extensible markup language document management

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN200910093226XA CN102025493B (zh) 2009-09-16 2009-09-16 一种xdm中转发文档内容的方法、设备和系统
CN200910093226.X 2009-09-16

Related Child Applications (1)

Application Number Title Priority Date Filing Date
US13/422,469 Continuation US8880643B2 (en) 2009-09-16 2012-03-16 Method, device and system for forwarding document content in extensible markup language document management

Publications (1)

Publication Number Publication Date
WO2011032501A1 true WO2011032501A1 (zh) 2011-03-24

Family

ID=43758115

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2010/076987 WO2011032501A1 (zh) 2009-09-16 2010-09-16 一种可扩展标记语言文档管理中转发文档内容的方法、设备和系统

Country Status (4)

Country Link
US (2) US8880643B2 (zh)
EP (1) EP2479682A1 (zh)
CN (1) CN102025493B (zh)
WO (1) WO2011032501A1 (zh)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8880643B2 (en) 2009-09-16 2014-11-04 Huawei Device Co., Ltd. Method, device and system for forwarding document content in extensible markup language document management

Families Citing this family (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US9183514B2 (en) 2011-02-25 2015-11-10 Avaya Inc. Advanced user interface and control paradigm including contextual collaboration for multiple service operator extended functionality offers
US9021607B2 (en) * 2011-02-25 2015-04-28 Avaya Inc. Advanced user interface and control paradigm including digital rights management features for multiple service operator extended functionality offers
US9672200B1 (en) * 2013-11-06 2017-06-06 Apttex Corporation Spreadsheet with dynamic cell dimensions generated by a spreadsheet template based on remote application values
CN106790048A (zh) * 2016-12-19 2017-05-31 深圳天珑无线科技有限公司 信息传输方法、系统及相关设备
US20220321570A1 (en) * 2021-04-06 2022-10-06 International Business Machines Corporation Shared content privilege modification
CN115828289B (zh) * 2023-02-16 2023-05-30 中信天津金融科技服务有限公司 一种数字化档案的加密方法和系统

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101026493A (zh) * 2007-02-02 2007-08-29 华为技术有限公司 一种用户权限控制方法及xml文档管理服务器
CN101051937A (zh) * 2006-05-10 2007-10-10 华为技术有限公司 一种基于xml的用户权限管理方法及系统
US20090193483A1 (en) * 2008-01-25 2009-07-30 Samsung Electronics Co., Ltd. Method and apparatus for providing metadata of content, and method and apparatus for limiting content usage authority
CN101506799A (zh) * 2006-08-16 2009-08-12 三星电子株式会社 用于转发文档的可扩展标记语言文档管理系统方法

Family Cites Families (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1102263C (zh) 2000-10-18 2003-02-26 北京北大天正科技发展有限公司 一种电子邮件的传递方法
US7373330B1 (en) 2003-07-08 2008-05-13 Copyright Clearance Center, Inc. Method and apparatus for tracking and controlling e-mail forwarding of encrypted documents
KR101192036B1 (ko) * 2005-10-26 2012-10-17 삼성전자주식회사 프레젼스 구독과 함께 접속 리스트 엔트리들을 전송하는시스템 및 방법
CN100505704C (zh) * 2005-12-17 2009-06-24 华为技术有限公司 查询用户信息的方法
US20070255714A1 (en) * 2006-05-01 2007-11-01 Nokia Corporation XML document permission control with delegation and multiple user identifications
CA2765957C (en) * 2009-06-19 2015-08-04 Research In Motion Limited Methods and apparatus to forward documents in a communication network
CN102474479B (zh) * 2009-07-22 2016-01-20 阿瓦尔有限公司 改进的数据包检测器
US20110214051A1 (en) * 2009-09-04 2011-09-01 Dejan Petronijevic Methods and apparatus to subscribe for change notifications in a document management system
CN102025493B (zh) 2009-09-16 2013-09-11 华为终端有限公司 一种xdm中转发文档内容的方法、设备和系统
US9237126B2 (en) * 2010-09-09 2016-01-12 Gerald R. McEvoy One-way bus bridge

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101051937A (zh) * 2006-05-10 2007-10-10 华为技术有限公司 一种基于xml的用户权限管理方法及系统
CN101506799A (zh) * 2006-08-16 2009-08-12 三星电子株式会社 用于转发文档的可扩展标记语言文档管理系统方法
CN101026493A (zh) * 2007-02-02 2007-08-29 华为技术有限公司 一种用户权限控制方法及xml文档管理服务器
US20090193483A1 (en) * 2008-01-25 2009-07-30 Samsung Electronics Co., Ltd. Method and apparatus for providing metadata of content, and method and apparatus for limiting content usage authority

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8880643B2 (en) 2009-09-16 2014-11-04 Huawei Device Co., Ltd. Method, device and system for forwarding document content in extensible markup language document management
US9690951B2 (en) 2009-09-16 2017-06-27 Huawei Device Co., Ltd. Method, device and system for forwarding document content in extensible markup language document management

Also Published As

Publication number Publication date
US20150013020A1 (en) 2015-01-08
US9690951B2 (en) 2017-06-27
EP2479682A4 (en) 2012-07-25
CN102025493B (zh) 2013-09-11
US8880643B2 (en) 2014-11-04
US20120179759A1 (en) 2012-07-12
EP2479682A1 (en) 2012-07-25
CN102025493A (zh) 2011-04-20

Similar Documents

Publication Publication Date Title
US9208336B2 (en) Extensible markup language document management method and system
WO2011032501A1 (zh) 一种可扩展标记语言文档管理中转发文档内容的方法、设备和系统
US10469471B2 (en) Custom messaging systems
JP5230622B2 (ja) プレゼンス属性に基づくプレゼンス通知システム及び方法
EP3293925B1 (en) A network storage system and a control method for accessing the network storage content
US7899873B2 (en) System and method of controlling a messaging system
JP5847579B2 (ja) ユーザが、少なくとも1人の他のユーザによって提供される少なくとも1つのサービスにアクセスするための方法およびシステム
RU2477014C2 (ru) Способ группового оповещения в службе обмена сообщениями на основе протокола инициации сеанса связи &#34;sip&#34;
WO2007033590A1 (fr) Procede, appareil et systeme d&#39;adhesion d&#39;un membre a un groupe
WO2007109962A1 (fr) Procédé et système de réalisation d&#39;un service de présence, dispositif de traitement d&#39;information de présence et client de corps de présence
JP5447882B2 (ja) 端末データを保護するための方法及び装置
Saint-Andre RFC 6121: extensible messaging and presence protocol (XMPP): instant messaging and presence
WO2014201931A1 (zh) 资源处理方法和站点服务器
GB2436412A (en) Authentication of network usage for use with message modifying apparatus
EP2540028B1 (en) Protecting account security settings using strong proofs
KR101922985B1 (ko) 연락처 정보의 구독을 초대하는 장치 및 방법
WO2014094483A1 (zh) WiFi设备的访问控制方法及WiFi设备
KR100842868B1 (ko) 콜백 단문 메세지를 이용한 스팸 단문 메세지 차단 시스템및 그 방법
JP5036723B2 (ja) プレゼンスサブスクリプションと共に接続リストエントリを送信するシステム及び方法
WO2013052365A1 (en) System for contact subscription invitations in a cross-domain converged address book system
JP2015133087A (ja) ファイル管理装置、ファイル管理システム及びプログラム
KR20120090612A (ko) 문서 공유에 따른 권한 설정 장치 및 방법
WO2010003341A1 (zh) 实现相对条件评估的方法、系统及服务器、客户端
Toyoda et al. SMTP and MIME Extensions for Content Conversion
WO2013185527A1 (zh) 一种传播社交网络信息的方法、装置及通讯终端

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 10816705

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

REEP Request for entry into the european phase

Ref document number: 2010816705

Country of ref document: EP

WWE Wipo information: entry into national phase

Ref document number: 2010816705

Country of ref document: EP