[go: up one dir, main page]
More Web Proxy on the site http://driver.im/

CN118157997B - User authority management method - Google Patents

User authority management method Download PDF

Info

Publication number
CN118157997B
CN118157997B CN202410578955.9A CN202410578955A CN118157997B CN 118157997 B CN118157997 B CN 118157997B CN 202410578955 A CN202410578955 A CN 202410578955A CN 118157997 B CN118157997 B CN 118157997B
Authority
CN
China
Prior art keywords
user
wolf
condition
page
identity
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN202410578955.9A
Other languages
Chinese (zh)
Other versions
CN118157997A (en
Inventor
贾家琛
武臻
张锦民
王英豪
刘晓雨
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Bidding Branch Of China Huaneng Group Co ltd
Huaneng Information Technology Co Ltd
Original Assignee
Beijing Bidding Branch Of China Huaneng Group Co ltd
Huaneng Information Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Bidding Branch Of China Huaneng Group Co ltd, Huaneng Information Technology Co Ltd filed Critical Beijing Bidding Branch Of China Huaneng Group Co ltd
Priority to CN202410578955.9A priority Critical patent/CN118157997B/en
Publication of CN118157997A publication Critical patent/CN118157997A/en
Application granted granted Critical
Publication of CN118157997B publication Critical patent/CN118157997B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/107Network architectures or network communication protocols for network security for controlling access to devices or network resources wherein the security policies are location-dependent, e.g. entities privileges depend on current location or allowing specific operations only from locally connected terminals
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06NCOMPUTING ARRANGEMENTS BASED ON SPECIFIC COMPUTATIONAL MODELS
    • G06N3/00Computing arrangements based on biological models
    • G06N3/004Artificial life, i.e. computing arrangements simulating life
    • G06N3/006Artificial life, i.e. computing arrangements simulating life based on simulated virtual individual or collective life forms, e.g. social simulations or particle swarm optimisation [PSO]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/102Entity profiles
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/40Network security protocols

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Signal Processing (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • General Engineering & Computer Science (AREA)
  • Computing Systems (AREA)
  • Physics & Mathematics (AREA)
  • Computer Hardware Design (AREA)
  • Theoretical Computer Science (AREA)
  • General Health & Medical Sciences (AREA)
  • Software Systems (AREA)
  • Molecular Biology (AREA)
  • Data Mining & Analysis (AREA)
  • Computational Linguistics (AREA)
  • General Physics & Mathematics (AREA)
  • Mathematical Physics (AREA)
  • Evolutionary Computation (AREA)
  • Biophysics (AREA)
  • Biomedical Technology (AREA)
  • Artificial Intelligence (AREA)
  • Life Sciences & Earth Sciences (AREA)
  • Health & Medical Sciences (AREA)
  • Storage Device Security (AREA)

Abstract

The invention provides a user authority management method, which relates to the technical field of authority management, and comprises the steps of classifying initial identities of users by combining a wolf group management mode; setting the same page to be accessed, carrying out region distribution on a first page interface and a residual management interface according to the wolf's group field distribution condition, and carrying out executable task setting on the corresponding region according to the region distribution condition and the initial identity classification result; creating a user information database, calculating the matching degree of the user information in the wolf group identity structure, and determining the position condition of the corresponding user in the wolf group distribution structure according to the matching degree and the corresponding initial identity; and obtaining the distribution state of the user according to the position condition, and judging the distribution state to be consistent with the task setting condition of the corresponding area, so that the automation and the intellectualization of the user management are realized, the safety of websites or applications is improved, and the user authority is managed more finely by referring to the wolf group management mode.

Description

User authority management method
Technical Field
The invention relates to the technical field of rights management, in particular to a user rights management method.
Background
The core of the user authority management is how to coordinate and manage the access authority of the user in the network so as to protect the security and privacy of network resources and ensure the use requirement of the user. Traditional user rights management methods are generally simple, fixed and lack of flexibility, and often cannot meet the complex and changeable network environment and user requirements today.
Accordingly, the present invention provides a user rights management method.
Disclosure of Invention
The invention provides a user authority management method, which classifies users in a wolf group management mode, performs regional distribution on pages to be accessed according to the wolf group field distribution condition and sets executable tasks, then determines user authority management and the position of the users in a wolf group distribution structure, calculates the matching degree of user information in a wolf group identity structure, and determines the position of the users in the wolf group distribution structure by combining initial identities, so that user authority management is performed according to the position condition, each user is ensured to complete the executable tasks according to the identity and authority of each user, automation and intellectualization of user management are realized, the safety of websites or applications is improved, and the user authority is managed more finely and flexibly by referring to the wolf group management mode.
The invention provides a user authority management method, which comprises the following steps:
Step 1: carrying out initial identity classification on the user by combining a wolf group management mode;
step 2: setting the same page to be accessed, carrying out region distribution on a first page interface and a residual management interface according to the wolf's group field distribution condition, and carrying out executable task setting on the corresponding region according to the region distribution condition and the initial identity classification result;
step 3: creating a user information database, calculating the matching degree of user information in the wolf group identity structure, and determining the position condition of a corresponding user in the wolf group distribution structure according to the matching degree and the corresponding initial identity;
step 4: and obtaining the distribution state of the user according to the position condition, and judging the coincidence of the distribution state and the task setting condition of the corresponding area so as to carry out user authority management.
The invention provides a user authority management method, which combines a wolf group management mode to classify the initial identity of a user, and comprises the following steps:
Identity definition is carried out on all users of the page to be accessed according to all wolf character types contained in the wolf group management mode;
determining initial authority and initial responsibility according to the page attribute of the page to be accessed;
And creating a user account for each user to perform initial identity classification according to the identity definition result, the initial authority and the initial responsibility, wherein the initial identity comprises a super manager user and an audit manager user.
The invention provides a user authority management method, which is used for carrying out regional distribution on a front page interface and a residual management interface according to the distribution condition of the wolf group field, and comprises the following steps:
Acquiring wolf group basic information and wolf group field distribution conditions, and constructing an initial distribution table of the wolf group field;
Taking the number of the wolves of each active area in the initial distribution table as a first setting condition, taking the frequency of the wolves of the corresponding active area as a second setting condition, and taking the main active time of the wolves of the corresponding active area as a third setting condition;
Setting a home page interface according to the first setting condition, the second setting condition and the third setting condition serving as home page area characteristics of a page to be accessed and the home page area characteristics;
Taking the activity history of each active area in the initial distribution table as a fourth setting condition, taking the wolf group propagation condition of the corresponding active area as a fifth setting condition, and taking the wolf group detailed information of the corresponding active area as a sixth setting condition;
Setting a residual management interface according to the residual area characteristics according to the fourth setting condition, the fifth setting condition and the sixth setting condition serving as the residual area characteristics of the page to be accessed;
And determining the regional distribution condition of the page to be accessed by combining the home page interface and the rest management interface.
The invention provides a user authority management method, which is used for carrying out executable task setting on corresponding areas according to area distribution conditions and combining initial identity classification results, and comprises the following steps:
performing basic structure setting on the area distribution condition according to the related information of the wolf-group active areas, and determining the corresponding number of the initial identity types of each area to be accessed by combining the basic structure setting;
Determining a first page executable task corresponding to a first page area based on the initial identity type number and the first page area characteristics of the page to be accessed;
Determining executable tasks of the residual pages corresponding to the residual areas based on the initial identity variety number and the residual area characteristics of the pages to be accessed;
and setting task update frequency of the corresponding page according to the related information of the wolf pack active area to update the related executable task.
The invention provides a user authority management method, which sets the task update frequency of a corresponding page according to the related information of a wolf group active area, and comprises the following steps:
Analyzing the dynamic rules of the related information of the wolf group active area, and selecting the usable dynamic rules of the wolf group active area in a period of time according to standard variation conditions;
and setting task updating frequency for the corresponding page to be accessed according to the usable dynamic rule.
The invention provides a user authority management method, which creates a user information database and calculates the matching degree of user information in a wolf group identity structure, and comprises the following steps:
Acquiring basic information and behavior information of users, performing data processing on the basic information and the behavior information, and determining user characteristics of each user;
comparing and quantifying the user characteristics with the wolf group identity structure containing the wolf group identity characteristic points, and calculating the matching degree of the user identities and the wolf group identities according to the quantifying result:
; wherein, Representing the matching degree of the user and the wolf group identity; Representing a user identity quantization function; representing a wolf group identity quantization function; The representation is based on Intersection analysis functions of (a); The representation is based on A union analysis function of (2); the analysis ratio is represented, and the value range is (0, 1); The representation is based on Is a quantized variance function of (2); The representation is based on Is a quantized mean difference function of (2); respectively representing role function weight coefficients, behavior function weight coefficients and feedback function weight coefficients of the user; Respectively representing a role function, a behavior function and a feedback function of the ith user; the weight coefficient of the character function, the weight coefficient of the behavior function and the weight coefficient of the feedback function of the wolf group are represented; Respectively representing the role function, the behavior function and the feedback function of the j-th wolf in the wolf group.
The invention provides a user authority management method, which is used for determining the position condition of a corresponding user in a wolf group distribution structure according to the matching degree and corresponding initial identity, and comprises the following steps:
The wolf group identity with the highest matching degree with the user and the initial identity of the corresponding user are subjected to distance judgment, if the judgment distance exceeds the set maximum distance, the wolf group identity corresponding to the second high matching degree is subjected to distance judgment until the judgment distance is lower than the set maximum distance, and the judgment distance meeting the set condition is obtained, wherein the position corresponding to the judgment distance meeting the condition is larger than the distance threshold value and is used as a first adapting position, and the position corresponding to the remaining distance is used as a standby adapting position;
counting the number of the first adaptive positions;
If the first adapting position has the overflow condition of the quantity, the position condition of the corresponding user is taken as a standby adapting position;
And determining the position condition of the user in the wolf group distribution structure according to the first adapting position and the standby adapting position.
The invention provides a user authority management method, which obtains the distribution state of a user according to the position condition, and judges the coincidence of the distribution state and the task setting condition of a corresponding area, and comprises the following steps:
Acquiring historical group behaviors of user groups corresponding to initial identity types based on position conditions, and analyzing the behaviors to determine the behavior mode of the corresponding user groups;
Acquiring historical activity conditions of corresponding user groups in the same type of webpages of the webpages to be accessed;
Determining the distribution state of user groups in the webpage to be accessed according to the behavior mode and the historical activity condition;
Judging whether the task setting condition of the corresponding area of the page to be accessed accords with the distribution state of the user or not;
and if not, carrying out layout adjustment and function resetting on the page to be accessed.
Compared with the prior art, the application has the following beneficial effects: classifying users in a wolf group management mode, carrying out regional distribution on pages to be accessed according to the wolf group field distribution condition, setting executable tasks, then determining user authority management and the position of the users in a wolf group distribution structure, calculating the matching degree of user information in a wolf group identity structure, determining the position of the users in the wolf group distribution structure by combining initial identities, carrying out user authority management according to the position condition, ensuring that each user can finish the executable tasks according to the identities and authorities of the users, realizing the automation and the intellectualization of the user management, improving the safety of websites or applications, and carrying out finer and more flexible management on the user authorities by referring to the wolf group management mode.
Drawings
In order to more clearly illustrate the invention or the technical solutions of the prior art, the following description will briefly explain the drawings used in the embodiments or the description of the prior art, and it is obvious that the drawings in the following description are some embodiments of the invention, and other drawings can be obtained according to the drawings without inventive effort for a person skilled in the art.
Fig. 1 is a flow chart of a user rights management method according to an embodiment of the present invention.
Detailed Description
For the purpose of making the objects, technical solutions and advantages of the present invention more apparent, the technical solutions of the present invention will be clearly and completely described below with reference to the accompanying drawings, and it is apparent that the described embodiments are some embodiments of the present invention, not all embodiments. All other embodiments, which can be made by those skilled in the art based on the embodiments of the invention without making any inventive effort, are intended to be within the scope of the invention.
Example 1:
an embodiment of the present invention provides a user authority management method, as shown in fig. 1, including:
Step 1: carrying out initial identity classification on the user by combining a wolf group management mode;
step 2: setting the same page to be accessed, carrying out region distribution on a first page interface and a residual management interface according to the wolf's group field distribution condition, and carrying out executable task setting on the corresponding region according to the region distribution condition and the initial identity classification result;
step 3: creating a user information database, calculating the matching degree of user information in the wolf group identity structure, and determining the position condition of a corresponding user in the wolf group distribution structure according to the matching degree and the corresponding initial identity;
step 4: and obtaining the distribution state of the user according to the position condition, and judging the coincidence of the distribution state and the task setting condition of the corresponding area so as to carry out user authority management.
In this embodiment, the result of the initial classification is a supermanager and an audit manager.
In the embodiment, the area distribution process is to construct an initial distribution table of wolf clusters, determine setting conditions for a first page area and a remaining management area, obtain first page area features and remaining management area features corresponding to the first page and the remaining area, set corresponding interfaces, and determine an area distribution condition of an interface to be accessed according to the first page interface and the remaining management interface, wherein the first page area is distributed as a main content partition of the first page, and is set by interface layout, function configuration and the like, and the features of the first page area generally comprise interface layout easy to access and operate, visual navigation menus, quick access of common functions and the like; the residual management area is distributed as modules of a user personal center, data management, system configuration, content distribution, community interaction and the like, and the characteristics comprise detailed and complex functional classification, an advanced data query and management interface, a special information distribution and auditing tool and the like.
In this embodiment, the corresponding interface design and functional layout are determined according to the area distribution, for example, the homepage needs to provide visual information presentation and navigation, and the remaining management area may need to provide a more detailed and complex operation interface; and determining an interface to be accessed: based on the user's behavior and needs, the system will determine which interface the user needs to access next, such as from browsing merchandise information to viewing shopping carts, reading articles to participating in reviews, and so forth.
In this embodiment, the wolf group management mode is a management model imitating the behavior characteristics of the wolf group, wherein the roles and behavior patterns in the wolf group are applied in the organization or system management, in the wolf group, each wolf has its determined roles, such as a leader, a hunter, a caretaker, etc., each role has its specific responsibilities and behavior patterns.
In this embodiment, the wolf group field distribution is the distribution of the activity areas of all wolves in the wolf group and the activity time, the activity number and the activity frequency of the corresponding activity areas.
In this embodiment, the user information database includes basic information, behavior information, social information, and credit information of the user.
In this embodiment, the executable task setting is to perform infrastructure setting on the wolf's group and the corresponding active area, and determine the difference between the front page executable task in the front page area and the executable task in the remaining area, where the front page executable task and the executable task in the remaining area include different rights control, content management, system maintenance and data analysis, such as rights control, the user's task may mainly involve some basic system monitoring and management tasks, and in the remaining area, the user may need to perform deep management on the user's behavior, including rights setting, role allocation, data access control, and so on.
In this embodiment, the location conditions include order hierarchy, activity areas, operational rights, and functional roles such as functional role supervisors, audit administrators, etc. that may be located differently in the wolf pack structure, e.g., supervisors may be involved in all activity areas, while audit administrators may be more focused on data and behavioral reviews, etc.
In this embodiment, the coincidence judgment is a judgment of a comparison result between a preset task amount which corresponds to an actual distribution situation of the user and a task setting situation of a corresponding area, that is, if the preset task amount is greater than or equal to the actual task setting situation and not greater than two more tasks are required, the operation can be performed, and if the preset task amount is smaller than the task amount, the distribution situation of the user needs to be adjusted.
The working principle and the beneficial effects of the technical scheme are as follows: classifying users in a wolf group management mode, carrying out regional distribution on pages to be accessed according to the wolf group field distribution condition and setting executable tasks, then determining user authority management and the position of the users in a wolf group distribution structure, calculating the matching degree of user information in a wolf group identity structure, determining the position of the users in the wolf group distribution structure by combining initial identities, carrying out user authority management according to the position condition, ensuring that each user can finish the executable tasks according to the identities and authorities of the users, realizing the automation and the intellectualization of the user management, improving the safety of websites or applications, and carrying out finer management on the user authorities by referring to the wolf group management mode.
Example 2:
the embodiment of the invention provides a user authority management method, which is used for carrying out initial identity classification on users by combining a wolf group management mode, and comprises the following steps:
Identity definition is carried out on all users of the page to be accessed according to all wolf character types contained in the wolf group management mode;
determining initial authority and initial responsibility according to the page attribute of the page to be accessed;
And creating a user account for each user to perform initial identity classification according to the identity definition result, the initial authority and the initial responsibility, wherein the initial identity comprises a super manager user and an audit manager user.
In this embodiment, in the wolf group, each wolf has a certain position in the group according to its role and responsibility, and likewise, the system page to be accessed classifies all users according to their respective identities and responsibilities, so as to form a hierarchical management mode similar to the wolf group.
In this embodiment, the page attributes include whether sensitive information is contained, whether special permissions are required, and so forth.
In this embodiment, users are classified into different initial identity categories, e.g., a user may be classified as a super administrator user, possessing the highest rights and responsibilities; while another user may be classified as an audit administrator user whose responsibility is to periodically check and audit the security status of the system.
The working principle and the beneficial effects of the technical scheme are as follows: the identity of the user is defined in a wolf group management mode, the corresponding initial authority and initial responsibility are determined, and the safety and the functional integrity of the system are ensured through refined user classification and authority management, meanwhile, the complexity of authority management is reduced, and the efficiency is improved.
Example 3:
The embodiment of the invention provides a user authority management method, which is used for carrying out regional distribution on a home page interface and a residual management interface according to the field distribution condition of wolf clusters and comprises the following steps:
Acquiring wolf group basic information and wolf group field distribution conditions, and constructing an initial distribution table of the wolf group field;
Taking the number of the wolves of each active area in the initial distribution table as a first setting condition, taking the frequency of the wolves of the corresponding active area as a second setting condition, and taking the main active time of the wolves of the corresponding active area as a third setting condition;
Setting a home page interface according to the first setting condition, the second setting condition and the third setting condition serving as home page area characteristics of a page to be accessed and the home page area characteristics;
Taking the activity history of each active area in the initial distribution table as a fourth setting condition, taking the wolf group propagation condition of the corresponding active area as a fifth setting condition, and taking the wolf group detailed information of the corresponding active area as a sixth setting condition;
Setting a residual management interface according to the residual area characteristics according to the fourth setting condition, the fifth setting condition and the sixth setting condition serving as the residual area characteristics of the page to be accessed;
And determining the regional distribution condition of the page to be accessed by combining the home page interface and the rest management interface.
In this embodiment, the wolf group basic information includes the situation of the characters such as the leader and the hunter in the wolf group, the number of corresponding characters, and the area to which the corresponding characters belong.
In this embodiment, the first setting condition is the number of wolves per active area in the initial distribution table, and in the actual user authority management, the maximum allowable number of users per specific system function area or the number of users of a specific role is represented.
In this embodiment, the second setting condition is a wolf group activity frequency corresponding to an activity area, and in the user authority management, the access frequency or the behavior frequency of each user or a user with a specific role in a certain system function area is indicated, for example, an administrator may need to frequently access a management panel, and a general user accesses a foreground application more often.
In this embodiment, the third setting condition is a main activity time of the wolf group corresponding to the activity area, and in the user authority management, the maximum access amount that the system function area can accept in a certain period of time, such as an operation period or a non-operation period, or the main activity time of a certain character is represented.
In this embodiment, the fourth setting condition, the activity history may include information such as the time of frequent occurrence of the last wolf group in the specific activity area, the route, the activity heat, etc.
In this embodiment, the fifth setting condition may include the reproduction period, number, health condition, etc. of the wolves.
In this embodiment, the sixth setting condition, the wolf group detailed information may include age, sex, behavioral characteristics, etc. of each wolf.
The working principle and the beneficial effects of the technical scheme are as follows: and the initial distribution table of the wolf group is used for determining the setting conditions of the home page area and the residual management area, further determining the features of the home page area and the features of the residual management area, setting corresponding interfaces, and determining the area distribution condition of the interface to be accessed according to the home page interface and the residual management interface, so that the complexity of authority management is reduced, and the efficiency is improved.
Example 4:
The embodiment of the invention provides a user authority management method, which is used for carrying out executable task setting on corresponding areas according to area distribution conditions and combining initial identity classification results, and comprises the following steps:
performing basic structure setting on the area distribution condition according to the related information of the wolf-group active areas, and determining the corresponding number of the initial identity types of each area to be accessed by combining the basic structure setting;
Determining a first page executable task corresponding to a first page area based on the initial identity type number and the first page area characteristics of the page to be accessed;
Determining executable tasks of the residual pages corresponding to the residual areas based on the initial identity variety number and the residual area characteristics of the pages to be accessed;
and setting task update frequency of the corresponding page according to the related information of the wolf pack active area to update the related executable task.
In this embodiment, the base structure is configured to set the size and position of each region according to the distribution of the wolves, and to set the color and pattern of the region according to the activity heat of the wolves, and so on.
In this embodiment, for the home page area, according to the rights of the super administrator, its executable tasks include system profile view, user management, system settings, etc.; the audit administrator is to view audit logs, process pending tasks, etc.
In the embodiment, for the remaining area, tasks corresponding to the super administrator are tasks such as statistics and analysis, security policy setting, resource allocation and the like; the audit manager performs tasks such as deep audit and trace audit.
The working principle and the beneficial effects of the technical scheme are as follows: by setting the basic structure of the wolf group and the active area, corresponding residual page executable tasks of the residual area of the first page executable tasks of the first page area are determined, and the update frequency is set, so that the page access mechanism is optimized, and the page access efficiency is improved.
Example 5:
The embodiment of the invention provides a user authority management method, which sets task update frequency of a corresponding page according to related information of a wolf group active area, and comprises the following steps:
Analyzing the dynamic rules of the related information of the wolf group active area, and selecting the usable dynamic rules of the wolf group active area in a period of time according to standard variation conditions;
and setting task updating frequency for the corresponding page to be accessed according to the usable dynamic rule.
In this embodiment, the dynamic regular distribution is a regular pattern of behavior or trend that is obtained by observing and analyzing the active area of the wolves over a certain time frame.
In this embodiment, the specific process of setting is based on the activity dynamic rule of the wolf's range, for example, if the activity range of the wolf's range is extended in the morning and evening, the two time periods are selected as the main time of task update frequency, otherwise, if the activity range of the wolf's range is reduced in the noon, the time is set as low-frequency update time.
In this embodiment, the standard variation conditions include a change in the boundary of the region, a change in the number of species, and a change in the time period.
The working principle and the beneficial effects of the technical scheme are as follows: the dynamic information of the wolf group activity is analyzed, the dynamic rule of the wolf group is determined, the dynamic rule of the wolf group is screened according to standard variation conditions, the task update frequency of the page to be accessed is set, the task permission is updated in time, and the page access efficiency is improved.
Example 6:
The embodiment of the invention provides a user authority management method, which comprises the steps of creating a user information database, and calculating the matching degree of user information in a wolf group identity structure, wherein the method comprises the following steps:
Acquiring basic information and behavior information of users, performing data processing on the basic information and the behavior information, and determining user characteristics of each user;
comparing and quantifying the user characteristics with the wolf group identity structure containing the wolf group identity characteristic points, and calculating the matching degree of the user identities and the wolf group identities according to the quantifying result:
; wherein, Representing the matching degree of the user and the wolf group identity; Representing a user identity quantization function; representing a wolf group identity quantization function; The representation is based on Intersection analysis functions of (a); The representation is based on A union analysis function of (2); the analysis ratio is represented, and the value range is (0, 1); The representation is based on Is a quantized variance function of (2); The representation is based on Is a quantized mean difference function of (2); respectively representing role function weight coefficients, behavior function weight coefficients and feedback function weight coefficients of the user; Respectively representing a role function, a behavior function and a feedback function of the ith user; the weight coefficient of the character function, the weight coefficient of the behavior function and the weight coefficient of the feedback function of the wolf group are represented; Respectively representing the role function, the behavior function and the feedback function of the j-th wolf in the wolf group.
In this embodiment, the user characteristics include character characteristics, behavior characteristics and feedback characteristics,
In this embodiment, the wolf group identity structure containing the wolf group identity feature points is a leader, a secondary leader, a soldier, a common member, and if corresponding to the user, is an administrator and a senior user, a secondary administrator and a senior user, a privileged active user, a common user.
The working principle and the beneficial effects of the technical scheme are as follows: the user characteristics of the user are obtained to be determined and compared with the wolf group identity characteristics of the wolf group, and the result is quantized to determine the matching degree of the user identity and the wolf group identity, so that the user permission is efficiently and finely managed.
Example 7:
the embodiment of the invention provides a user authority management method, which is used for determining the position condition of a corresponding user in a wolf group distribution structure according to the matching degree and corresponding initial identity, and comprises the following steps:
The wolf group identity with the highest matching degree with the user and the initial identity of the corresponding user are subjected to distance judgment, if the judgment distance exceeds the set maximum distance, the wolf group identity corresponding to the second high matching degree is subjected to distance judgment until the judgment distance is lower than the set maximum distance, and the judgment distance meeting the set condition is obtained, wherein the position corresponding to the judgment distance meeting the condition is larger than the distance threshold value and is used as a first adapting position, and the position corresponding to the remaining distance is used as a standby adapting position;
counting the number of the first adaptive positions;
If the first adapting position has the overflow condition of the quantity, the position condition of the corresponding user is taken as a standby adapting position;
And determining the position condition of the user in the wolf group distribution structure according to the first adapting position and the standby adapting position.
In this embodiment, the maximum distance is a threshold value, which is used to determine whether the matching degree between the user and the wolf group meets the preset requirement, and is a parameter that needs to be set according to the actual situation depending on the calculation mode of the matching degree and the scene requirement. For example, if the matching degree is determined by calculating the euclidean distance, the maximum distance may be set to 1.0, representing the maximum allowable distance between the user feature vector and the wolf-group identity feature vector; if this distance is exceeded, the degree of matching is deemed insufficient and a higher degree of matching identity needs to be found.
In this embodiment, the first adaptation position is the optimal position corresponding to the user, and the standby adaptation position is the adaptation position for standby use in the case where the number of optimal positions has been satisfied.
In this embodiment, the location condition determining process refers to determining the actual location of the user in the wolf group distribution structure according to the matching degree of the user with the identity of each wolf group.
The working principle and the beneficial effects of the technical scheme are as follows: and the distance judgment is sequentially carried out through the sequencing result of the user matching degree, so that the adaptation position of the user and the wolf group is determined, the position condition of the user in the wolf group distribution structure is determined, and the user authority is efficiently and finely managed.
Example 8:
The embodiment of the invention provides a user authority management method, which obtains the distribution state of a user according to the position condition, and judges the coincidence of the distribution state and the task setting condition of a corresponding area, and comprises the following steps:
Acquiring historical group behaviors of user groups corresponding to initial identity types based on position conditions, and analyzing the behaviors to determine the behavior mode of the corresponding user groups;
Acquiring historical activity conditions of corresponding user groups in the same type of webpages of the webpages to be accessed;
Determining the distribution state of user groups in the webpage to be accessed according to the behavior mode and the historical activity condition;
Judging whether the task setting condition of the corresponding area of the page to be accessed accords with the distribution state of the user or not;
and if not, carrying out layout adjustment and function resetting on the page to be accessed.
In this embodiment, the behavior patterns are typical behavior habits and trends of the user or group of users in a particular environment, including access patterns, browsing patterns, interaction patterns, and content participation patterns.
In this embodiment, the historical activity scenarios include page access records, user behavior, interaction behavior, event departure behavior, errors, and questions.
In this embodiment, the layout adjustment of the web page includes the adjustment of the navigation bar reset and the content layout and function blocks, such as the navigation bar reset, and the most frequently accessed area or page link of the user is placed at a conspicuous position, such as the front of the navigation bar, according to the historical activity condition of the user.
In this embodiment, the function resetting includes function addition and reduction, function optimization, and personalized function setting, such as a super administrator can set content screening rules, and the like.
The working principle and the beneficial effects of the technical scheme are as follows: and determining the behavior mode of the user group by combining the position condition with the historical group behavior of the corresponding user, determining the distribution state of the corresponding user on the webpage to be accessed by combining the behavior mode with the historical activity condition of the corresponding user on the same type of webpage, and judging the matching of the task setting condition and the distribution state, so that the layout and the function of the webpage to be accessed are optimized, and the operation efficiency of the user on the webpage is improved.
Finally, it should be noted that: the above embodiments are only for illustrating the technical solution of the present invention, and are not limiting; although the invention has been described in detail with reference to the foregoing embodiments, it will be understood by those of ordinary skill in the art that: the technical scheme described in the foregoing embodiments can be modified or some technical features thereof can be replaced by equivalents; such modifications and substitutions do not depart from the spirit and scope of the technical solutions of the embodiments of the present invention.

Claims (5)

1. A user rights management method, comprising:
Step 1: carrying out initial identity classification on the user by combining a wolf group management mode;
step 2: setting the same page to be accessed, carrying out region distribution on a first page interface and a residual management interface according to the wolf's group field distribution condition, and carrying out executable task setting on the corresponding region according to the region distribution condition and the initial identity classification result;
step 3: creating a user information database, calculating the matching degree of user information in the wolf group identity structure, and determining the position condition of a corresponding user in the wolf group distribution structure according to the matching degree and the corresponding initial identity;
step 4: obtaining a distribution state of a user according to the position condition, and judging the coincidence of the distribution state and the task setting condition of a corresponding area so as to manage user permission;
Creating a user information database, and calculating the matching degree of the user information in the wolf group identity structure, wherein the method comprises the following steps:
Acquiring basic information and behavior information of users, performing data processing on the basic information and the behavior information, and determining user characteristics of each user;
comparing and quantifying the user characteristics with the wolf group identity structure containing the wolf group identity characteristic points, and calculating the matching degree of the user identities and the wolf group identities according to the quantifying result:
; wherein, Representing the matching degree of the user and the wolf group identity; Representing a user identity quantization function; representing a wolf group identity quantization function; The representation is based on Intersection analysis functions of (a); The representation is based on A union analysis function of (2); the analysis ratio is represented, and the value range is (0, 1); The representation is based on Is a quantized variance function of (2); The representation is based on Is a quantized mean difference function of (2); respectively representing role function weight coefficients, behavior function weight coefficients and feedback function weight coefficients of the user; Respectively representing a role function, a behavior function and a feedback function of the ith user; the weight coefficient of the character function, the weight coefficient of the behavior function and the weight coefficient of the feedback function of the wolf group are represented; Respectively representing a role function, a behavior function and a feedback function of the j-th wolf in the wolf group;
Determining the position condition of the corresponding user in the wolf group distribution structure according to the matching degree and the corresponding initial identity, wherein the method comprises the following steps:
The wolf group identity with the highest matching degree with the user and the initial identity of the corresponding user are subjected to distance judgment, if the judgment distance exceeds the set maximum distance, the wolf group identity corresponding to the second high matching degree is subjected to distance judgment until the judgment distance is lower than the set maximum distance, and the judgment distance meeting the set condition is obtained, wherein the position corresponding to the judgment distance meeting the condition is larger than the distance threshold value and is used as a first adapting position, and the position corresponding to the remaining distance is used as a standby adapting position;
counting the number of the first adaptive positions;
If the first adapting position has the overflow condition of the quantity, the position condition of the corresponding user is taken as a standby adapting position;
determining the position condition of a user in the wolf group distribution structure according to the first adapting position and the standby adapting position;
Obtaining a distribution state of a user according to the position condition, and judging the coincidence of the distribution state and the task setting condition of the corresponding area, wherein the method comprises the following steps:
Acquiring historical group behaviors of user groups corresponding to initial identity types based on position conditions, and analyzing the behaviors to determine the behavior mode of the corresponding user groups;
Acquiring historical activity conditions of corresponding user groups in the same type of webpages of the webpages to be accessed;
Determining the distribution state of user groups in the webpage to be accessed according to the behavior mode and the historical activity condition;
Judging whether the task setting condition of the corresponding area of the page to be accessed accords with the distribution state of the user or not;
and if not, carrying out layout adjustment and function resetting on the page to be accessed.
2. The method for managing user rights according to claim 1, wherein the step of classifying the user's initial identity in combination with the wolf's group management comprises:
Identity definition is carried out on all users of the page to be accessed according to all wolf character types contained in the wolf group management mode;
determining initial authority and initial responsibility according to the page attribute of the page to be accessed;
And creating a user account for each user to perform initial identity classification according to the identity definition result, the initial authority and the initial responsibility, wherein the initial identity comprises a super manager user and an audit manager user.
3. The method for managing user rights according to claim 1, wherein the area distribution of the front page interface and the remaining management interface according to the wolf's group domain distribution condition comprises:
Acquiring wolf group basic information and wolf group field distribution conditions, and constructing an initial distribution table of the wolf group field;
Taking the number of the wolves of each active area in the initial distribution table as a first setting condition, taking the frequency of the wolves of the corresponding active area as a second setting condition, and taking the main active time of the wolves of the corresponding active area as a third setting condition;
Setting a home page interface according to the first setting condition, the second setting condition and the third setting condition serving as home page area characteristics of a page to be accessed and the home page area characteristics;
Taking the activity history of each active area in the initial distribution table as a fourth setting condition, taking the wolf group propagation condition of the corresponding active area as a fifth setting condition, and taking the wolf group detailed information of the corresponding active area as a sixth setting condition;
Setting a residual management interface according to the residual area characteristics according to the fourth setting condition, the fifth setting condition and the sixth setting condition serving as the residual area characteristics of the page to be accessed;
And determining the regional distribution condition of the page to be accessed by combining the home page interface and the rest management interface.
4. A method of managing user rights according to claim 3, wherein performing executable task setting on the corresponding region in combination with the initial identity classification result according to the region distribution condition comprises:
performing basic structure setting on the area distribution condition according to the related information of the wolf-group active areas, and determining the corresponding number of the initial identity types of each area to be accessed by combining the basic structure setting;
Determining a first page executable task corresponding to a first page area based on the initial identity type number and the first page area characteristics of the page to be accessed;
Determining executable tasks of the residual pages corresponding to the residual areas based on the initial identity variety number and the residual area characteristics of the pages to be accessed;
and setting task update frequency of the corresponding page according to the related information of the wolf pack active area to update the related executable task.
5. The method for managing user rights according to claim 4, wherein setting the task update frequency of the corresponding page according to the wolf's group activity area related information comprises:
Analyzing the dynamic rules of the related information of the wolf group active area, and selecting the usable dynamic rules of the wolf group active area in a period of time according to standard variation conditions;
and setting task updating frequency for the corresponding page to be accessed according to the usable dynamic rule.
CN202410578955.9A 2024-05-11 2024-05-11 User authority management method Active CN118157997B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN202410578955.9A CN118157997B (en) 2024-05-11 2024-05-11 User authority management method

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN202410578955.9A CN118157997B (en) 2024-05-11 2024-05-11 User authority management method

Publications (2)

Publication Number Publication Date
CN118157997A CN118157997A (en) 2024-06-07
CN118157997B true CN118157997B (en) 2024-09-20

Family

ID=91298917

Family Applications (1)

Application Number Title Priority Date Filing Date
CN202410578955.9A Active CN118157997B (en) 2024-05-11 2024-05-11 User authority management method

Country Status (1)

Country Link
CN (1) CN118157997B (en)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN118503933B (en) * 2024-07-17 2024-11-05 华能信息技术有限公司 Application distribution system based on authority control

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109800593A (en) * 2018-12-07 2019-05-24 上海益政网络科技发展有限公司 A kind of information matching method and system
CN111428256A (en) * 2020-03-30 2020-07-17 北京东方金信科技有限公司 Big data platform multi-tenant management system

Family Cites Families (16)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8826407B2 (en) * 2010-11-24 2014-09-02 Skai, Inc. System and method for access control and identity management
US11388155B2 (en) * 2017-05-16 2022-07-12 Softex, Inc. Integrated cybersecurity system and method for providing restricted client access to a website
CN108776795A (en) * 2018-06-20 2018-11-09 邯郸学院 Method for identifying ID, device and terminal device
CN110569652B (en) * 2019-08-29 2024-02-02 武汉大学 Dynamic access control method based on user role adjustment
CN113536261B (en) * 2020-04-14 2024-09-17 三赢科技(深圳)有限公司 Rights management method, rights management device, computer device, and storage medium
CN113434839A (en) * 2021-06-29 2021-09-24 青岛海尔科技有限公司 Front-end page access method and device, storage medium and electronic device
CN113468577B (en) * 2021-07-23 2023-06-30 福建天晴在线互动科技有限公司 Authority management method and system based on web architecture
CN114329299A (en) * 2021-12-31 2022-04-12 安徽江淮汽车集团股份有限公司 Vehicle internet service management website architecture
CN115019359A (en) * 2022-04-12 2022-09-06 重庆邮电大学 Cloud user identity recognition task allocation and parallel processing method
CN116029876B (en) * 2023-03-21 2023-06-23 浙江之科智慧科技有限公司 Intelligent campus integrated management device and method
CN116956252A (en) * 2023-08-01 2023-10-27 北京赛博云睿智能科技有限公司 Self-adaptive management method and system for platform multi-user renting
CN116975842A (en) * 2023-08-08 2023-10-31 北京中睿天下信息技术有限公司 User authority access control method and system based on cloud center
CN117421715A (en) * 2023-10-16 2024-01-19 青岛中科方德软件有限公司 Authority management method, device, electronic equipment and storage medium
CN117390608A (en) * 2023-10-27 2024-01-12 云南星晟电力技术有限公司 Security authentication method and system for file management
CN117540404A (en) * 2023-11-30 2024-02-09 中电云科信息技术有限公司 Management authority matching method, device and system
CN118018274A (en) * 2024-02-01 2024-05-10 徐州好一家科技有限公司 Internet access method and system

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109800593A (en) * 2018-12-07 2019-05-24 上海益政网络科技发展有限公司 A kind of information matching method and system
CN111428256A (en) * 2020-03-30 2020-07-17 北京东方金信科技有限公司 Big data platform multi-tenant management system

Also Published As

Publication number Publication date
CN118157997A (en) 2024-06-07

Similar Documents

Publication Publication Date Title
US11695828B2 (en) System and method for peer group detection, visualization and analysis in identity management artificial intelligence systems using cluster based analysis of network identity graphs
US12041056B2 (en) System and method for role mining in identity management artificial intelligence systems using cluster based analysis of network identity graphs
US11811833B2 (en) System and method for predictive modeling for entitlement diffusion and role evolution in identity management artificial intelligence systems using network identity graphs
US10789384B2 (en) Differentially private database permissions system
EP3690677B1 (en) Differentially private query budget refunding
US20180248895A1 (en) Intelligent security management
Qi et al. Using the Internet of Things E‐Government Platform to Optimize the Administrative Management Mode
EP0991005A2 (en) Privacy-enhanced database
EP0990972A1 (en) System and method for managing data privacy in a database management system
CN118157997B (en) User authority management method
CN113821777B (en) Authority control method and device, computer equipment and storage medium
CN111598360B (en) Service policy determination method and device and electronic equipment
US20240073216A1 (en) System and method for determination of common or unique access items in identity management artificial intelligence systems
CN106878325A (en) A kind of method and device for determining access privilege
CN110348238A (en) A kind of application oriented secret protection stage division and device
Yan et al. Differential private spatial decomposition and location publishing based on unbalanced quadtree partition algorithm
Bennink et al. Micro–macro multilevel latent class models with multiple discrete individual-level variables
CN102902614A (en) Dynamic monitoring and intelligent guide method
CN117390648A (en) Resource access authority management method, device, equipment and storage medium
CN117609968A (en) Data sharing method and system based on identity recognition
CN114282591B (en) Dynamic security level real-time division method, terminal equipment and storage medium
CN118504009A (en) Dynamic data isolation method and system based on multiple data sources
CN113868692A (en) Grading method, grading device, grading equipment and storage medium of data interface
CN115577378A (en) Multi-dimensional data model authority management method and device, electronic equipment and storage medium
Dipple Modeling Complex Human Behavior in Socio-Economic Networks

Legal Events

Date Code Title Description
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant