WO2022193494A1 - Procédé de commande de permission, serveur, terminal, support de stockage et programme d'ordinateur - Google Patents

Procédé de commande de permission, serveur, terminal, support de stockage et programme d'ordinateur Download PDF

Info

Publication number
WO2022193494A1
WO2022193494A1 PCT/CN2021/105569 CN2021105569W WO2022193494A1 WO 2022193494 A1 WO2022193494 A1 WO 2022193494A1 CN 2021105569 W CN2021105569 W CN 2021105569W WO 2022193494 A1 WO2022193494 A1 WO 2022193494A1
Authority
WO
WIPO (PCT)
Prior art keywords
token
file
server
path
terminal device
Prior art date
Application number
PCT/CN2021/105569
Other languages
English (en)
Chinese (zh)
Inventor
王之龙
郑猛猛
杨子骁
徐伟伟
Original Assignee
上海商汤智能科技有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 上海商汤智能科技有限公司 filed Critical 上海商汤智能科技有限公司
Priority to KR1020227014600A priority Critical patent/KR20220130088A/ko
Publication of WO2022193494A1 publication Critical patent/WO2022193494A1/fr

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/6218Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • G06F21/33User authentication using certificates
    • G06F21/335User authentication using certificates for accessing specific resources, e.g. using Kerberos tickets
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/45Structures or tools for the administration of authentication
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/64Protecting data integrity, e.g. using checksums, certificates or signatures
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0807Network architectures or network communication protocols for network security for authentication of entities using tickets, e.g. Kerberos

Landscapes

  • Engineering & Computer Science (AREA)
  • Theoretical Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Hardware Design (AREA)
  • General Engineering & Computer Science (AREA)
  • General Physics & Mathematics (AREA)
  • Software Systems (AREA)
  • Physics & Mathematics (AREA)
  • Health & Medical Sciences (AREA)
  • Bioethics (AREA)
  • General Health & Medical Sciences (AREA)
  • Databases & Information Systems (AREA)
  • Signal Processing (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Computing Systems (AREA)
  • Storage Device Security (AREA)

Abstract

Des modes de réalisation de la présente demande concernent un procédé de commande de permission, un serveur, un terminal, un support de stockage et un programme d'ordinateur. Le procédé consiste : à recevoir, par le serveur, une première demande d'opération de fichier provenant d'un dispositif terminal, la première demande d'opération de fichier servant à demander d'effectuer une première opération sur un fichier d'un premier chemin, la première demande d'opération de fichier contenant un premier jeton, le premier jeton comprenant un second chemin et un premier ensemble d'opérations, le premier ensemble d'opérations comprenant au moins une opération, et le premier chemin et le second chemin étant tous deux des chemins dans un système de gestion de fichiers exploité par le serveur ; lorsque la première demande d'opération de fichier répond à des premières conditions, à effectuer, par le serveur, la première opération sur le fichier, les premières conditions comprenant la réussite de la vérification de validité du premier jeton par le serveur, la présence de la première opération dans le premier ensemble d'opérations, et l'inclusion du premier chemin dans le second chemin. Une permission d'un utilisateur peut être vérifiée plus rapidement.
PCT/CN2021/105569 2021-03-15 2021-07-09 Procédé de commande de permission, serveur, terminal, support de stockage et programme d'ordinateur WO2022193494A1 (fr)

Priority Applications (1)

Application Number Priority Date Filing Date Title
KR1020227014600A KR20220130088A (ko) 2021-03-15 2021-07-09 권한 제어 방법 및 서버, 단말, 저장 매체와 컴퓨터 프로그램

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN202110274535.8A CN113051611B (zh) 2021-03-15 2021-03-15 在线文件的权限控制方法和相关产品
CN202110274535.8 2021-03-15

Publications (1)

Publication Number Publication Date
WO2022193494A1 true WO2022193494A1 (fr) 2022-09-22

Family

ID=76512268

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2021/105569 WO2022193494A1 (fr) 2021-03-15 2021-07-09 Procédé de commande de permission, serveur, terminal, support de stockage et programme d'ordinateur

Country Status (3)

Country Link
KR (1) KR20220130088A (fr)
CN (1) CN113051611B (fr)
WO (1) WO2022193494A1 (fr)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN113051611B (zh) * 2021-03-15 2022-04-29 上海商汤智能科技有限公司 在线文件的权限控制方法和相关产品

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110601832A (zh) * 2019-09-27 2019-12-20 中煤航测遥感集团有限公司 一种数据访问方法及装置
CN111093197A (zh) * 2019-12-31 2020-05-01 北大方正集团有限公司 权限认证方法、权限认证系统和计算机可读存储介质
CN111756753A (zh) * 2020-06-28 2020-10-09 中国平安财产保险股份有限公司 一种权限验证方法及系统
US20200336310A1 (en) * 2017-05-19 2020-10-22 Intuit Inc. Coordinating access authorization across multiple systems at different mutual trust levels
CN113051611A (zh) * 2021-03-15 2021-06-29 上海商汤智能科技有限公司 在线文件的权限控制方法和相关产品

Family Cites Families (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103488791B (zh) * 2013-09-30 2018-03-27 华为技术有限公司 数据访问方法、系统及数据仓库
JP2019508763A (ja) * 2016-01-29 2019-03-28 グーグル エルエルシー ローカルデバイス認証
CN107613005B (zh) * 2017-09-20 2021-04-13 携程旅游信息技术(上海)有限公司 反向代理方法及装置、电子设备、存储介质
CN109657481B (zh) * 2017-10-12 2020-12-22 北京京东尚科信息技术有限公司 数据管理方法及装置
CN110909373B (zh) * 2018-09-18 2023-06-20 阿里巴巴集团控股有限公司 一种访问控制方法、设备、系统及存储介质
CN110363026B (zh) * 2019-07-19 2021-06-25 深圳前海微众银行股份有限公司 文件操作方法、装置、设备、系统及计算机可读存储介质
CN110855672A (zh) * 2019-11-15 2020-02-28 无锡家校邦网络科技有限公司 一种基于jwt的可手动撤销的授权方法
CN112487450A (zh) * 2020-11-30 2021-03-12 银盛支付服务股份有限公司 一种文件服务器访问分级方法

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20200336310A1 (en) * 2017-05-19 2020-10-22 Intuit Inc. Coordinating access authorization across multiple systems at different mutual trust levels
CN110601832A (zh) * 2019-09-27 2019-12-20 中煤航测遥感集团有限公司 一种数据访问方法及装置
CN111093197A (zh) * 2019-12-31 2020-05-01 北大方正集团有限公司 权限认证方法、权限认证系统和计算机可读存储介质
CN111756753A (zh) * 2020-06-28 2020-10-09 中国平安财产保险股份有限公司 一种权限验证方法及系统
CN113051611A (zh) * 2021-03-15 2021-06-29 上海商汤智能科技有限公司 在线文件的权限控制方法和相关产品

Also Published As

Publication number Publication date
CN113051611B (zh) 2022-04-29
CN113051611A (zh) 2021-06-29
KR20220130088A (ko) 2022-09-26

Similar Documents

Publication Publication Date Title
CN111488598B (zh) 访问控制方法、装置、计算机设备和存储介质
WO2022262078A1 (fr) Procédé de commande d'accès sur la base de la sécurité à vérification systématique, dispositif, et support de stockage
US20200204530A1 (en) Self-encrypting key management system
US20220078017A1 (en) Authorized Data Sharing Using Smart Contracts
US11829502B2 (en) Data sharing via distributed ledgers
WO2021184755A1 (fr) Procédé et appareil d'accès à une application, ainsi que dispositif électronique et support de stockage
US20200067694A1 (en) Techniques for key provisioning in a trusted execution environment
US11757640B2 (en) Non-fungible token authentication
US10516653B2 (en) Public key pinning for private networks
JP2019220238A (ja) レガシー統合のためのコンピュータ読み取り可能な記憶媒体ならびにそれを使用するための方法およびシステム
US11757877B1 (en) Decentralized application authentication
US11663318B2 (en) Decentralized password vault
EP3794485B1 (fr) Procédé et noeud de réseau permettant de gérer l'accès à une chaîne de blocs
JP2022534677A (ja) ブロックチェーンを使用するオンラインアプリケーションおよびウェブページの保護
WO2022193494A1 (fr) Procédé de commande de permission, serveur, terminal, support de stockage et programme d'ordinateur
JP2023539168A (ja) 自己認証識別子及びそのためのアプリケーション
US20230362018A1 (en) System and Method for Secure Internet Communications
US20190065725A1 (en) Distributed profile and key management
TWI778319B (zh) 跨平台授權存取資源方法及授權存取系統
US20230231724A1 (en) Blockchain based certificate pinning
CN107276965B (zh) 服务发现组件的权限控制方法及装置
GB2590520A (en) Data sharing via distributed ledgers
CN115150831A (zh) 入网请求的处理方法、装置、服务器及介质
Bhausaheb et al. Security for Cloud Data Using Combined Technique Identity Authentication and Encryption

Legal Events

Date Code Title Description
ENP Entry into the national phase

Ref document number: 2022523588

Country of ref document: JP

Kind code of ref document: A

121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 21931076

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 21931076

Country of ref document: EP

Kind code of ref document: A1