CN100391160C - Method for setting user's power in communication system - Google Patents

Method for setting user's power in communication system Download PDF

Info

Publication number
CN100391160C
CN100391160C CNB2005100280728A CN200510028072A CN100391160C CN 100391160 C CN100391160 C CN 100391160C CN B2005100280728 A CNB2005100280728 A CN B2005100280728A CN 200510028072 A CN200510028072 A CN 200510028072A CN 100391160 C CN100391160 C CN 100391160C
Authority
CN
China
Prior art keywords
group
command
user
command group
default
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CNB2005100280728A
Other languages
Chinese (zh)
Other versions
CN1859153A (en
Inventor
王政
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Shanghai Huawei Technologies Co Ltd
Original Assignee
Shanghai Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Shanghai Huawei Technologies Co Ltd filed Critical Shanghai Huawei Technologies Co Ltd
Priority to CNB2005100280728A priority Critical patent/CN100391160C/en
Publication of CN1859153A publication Critical patent/CN1859153A/en
Application granted granted Critical
Publication of CN100391160C publication Critical patent/CN100391160C/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Storage Device Security (AREA)

Abstract

The present invention relates to communication technology and discloses a user authority setting method in communication systems, which can rapidly and accurately set all system commands in users' authority. The arrangement of a command group is added in the present invention, and the command group corresponds to multiple system commands; each user group comprises at least one command group, and the collection of system commands in each command group are used as users' authority in the user group. In addition, all the system commands are put into a plurality of default command groups of which the command collection is mutually exclusive, and the collection of the command collection in the default command groups comprises all system commands. Each command group comprises a plurality of default command groups, and he collection of system commands in the default command groups is used as the command collection of the command groups to form five levels of system commands, default command groups, command groups, user groups and users from bottom to top.

Description

User right method to set up in the communication system
Technical field
The present invention relates to the communication technology, particularly the authority setting in the communication system.
Background technology
At present, along with improving constantly with universal of the communication technology, communication equipment is also more and more higher to the requirement of fail safe, except the safety requirements that communication is arranged, also require communication equipment to distribute different authorities, and require the right assignment must be more careful different plant maintenance personnel.Different telecom operators also are not quite similar to the requirement of authority, and what have requires authority easy and simple to handle, and are therefore thicker to the division of authority, have but privilege feature is divided very careful.
Therefore, before releasing a kind of communicating equipment product, except the difference that requires this equipment can satisfy each telecom operators requires,, also require to satisfy this equipment and can satisfy different requirements delineation of power for the rights management strategy.
Known schemes one: all system commands that system lists this system in detail and supported when the system manager need increase new user, are provided with new user's authority by the selective system order.For example, as shown in Figure 1, new user name is " zhangsan ", the authority that system has distributed system command 1, system command 2, system command 3, system command 4, system command 11 for this user, the authority of not distribution system order 5, system command 6, system command 7, system command 8, system command 9, system command 10, system command 12.For the interface operation mode is done some optimizations, can also increase some buttons, such as choosing all system commands, cancel all system commands or the like.Though this distribution method is very flexible, distribute very detailed authority can for a user, in actual applications, the result of use of this scheme is not good.Main cause is because the order that system has is very many, hundreds of bar system command even thousands of system commands are often arranged, and the keeper need select in so many system commands one by one in order to increase a user, operate very loaded down with trivial detailsly, and make mistakes easily.If there are 1000 orders in system, 100 users are arranged, each user has 300 of the order average out to of authority, and then the keeper joins authority in order to give each user, needs to carry out 30000 a thousand lis in theory and selects one operation, very trouble.
Known schemes two: be similar to the user management strategy in the WINDOWS NT system,, and authority be set for each user organizes for system sets up some user's groups.When the keeper increases a user newly, directly the user is increased in user's group, this user has just had all authorities of this user's group, as shown in Figure 2.In this manner, very convenient when the keeper Adds User, select a group to get final product directly for this user.This mode also can be created new user's group under the situation that existing user's group does not meet the demands simultaneously, has therefore also taken into account the requirement of flexibility.Though this scheme has had very big improvement compared with scheme one, under the situation that existing subscriber's group can satisfy condition, can directly give Adds User selects user's group, easy to operate, relatively is suitable for the server system of this class of WINDOWS.But in actual applications, there is following problem equally in this scheme: because needs distribute the order of authority a lot, when newly-increased user organizes, identical with scheme one, need in so many system commands, select one by one, operate very loaded down with trivial detailsly, and make mistakes easily.
Summary of the invention
In view of this, main purpose of the present invention is to provide user right method to set up in a kind of communication system, makes fast, accurately to set all system commands that the user has authority to use.
For achieving the above object, the invention provides user right method to set up in a kind of communication system, comprise following steps:
A is provided with at least one default command group, according to user's use habit, whole system commands is belonged to each default command group respectively;
B is provided with at least one command group, when each command group is set, selects at least one default command group as the default command group that this command group comprised, with the intersection of system command in selected each the default command group command set as this command group;
C is provided with at least one user's group, comprises at least one command group in each user's group;
D organizes for the user selects the user who is belonged to, and this user has the authority of use to all system commands in this user's group.
In this external described method, the command set in each default command group is mutual exclusion, and the intersection of command set has been included whole system commands in each default command group.
In this external described method, described default command group can be one of following or its combination in any:
Configuration querying group, configuration management group, alarm inquiry group, alarm management group, performance queries group, performance management group, maintenance function group, system command group, accent brake group and upgrading command group.
In this external described method, when described system increases new system command, comprise following steps:
Newly-increased system command is belonged in the existing default command group also corresponding this system command that has of the command group that comprises this default command group; Perhaps,
A newly-increased default command group also is included into newly-increased system command, selects for use when command group is set.
In this external described method, described each user is only to belong to user's group.
In this external described method, described each user can belong at least one user's group, and this user has the authority of use to the intersection of command set in each the user's group that is belonged to.
In this external described method, described system has increase, inquiry, revises and delete the function of user's group.
In this external described method, described system has increase, inquiry, revises and delete user's function.
In this external described method, described system has increase, inquiry, revises and delete the function of default command group.
In this external described method, described system has the function of increase, inquiry, modification and delete command group.
By relatively finding, the main distinction of technical scheme of the present invention and prior art is, increased the setting of default command group, incorporate all system commands into a plurality of default command group, when each command group is set, select at least one default command group as default command group that this command group comprised, with the intersection of system command in selected each default command group command set as this command group, in user's group, comprise at least one command group, user's authority in organizing as the user with the intersection of system command in each command group.Thereby form 5 levels from low to high: system command, default command group, command group, user's group, user.Each higher level can only be provided with the corresponding relation with next level, the setting of cannot bypassing the immediate leadership.
The plan of establishment commonly used of default command group in the communication system is proposed in addition.
Difference on this technical scheme, brought comparatively significantly beneficial effect, promptly each system command has been incorporated into each default command group, needed only the default command group that selection need comprise when command group is set because of prior use habit by the user, not only speed is fast, and is difficult for makeing mistakes.
During newly-increased system command,, just can comprise user's group of this command group, and belong to the user that this user organizes and all play effect comprising the command group of this default command group as long as this order is grouped into a default command group.And a default command group can be quoted by a plurality of command group, a command group can be quoted by a plurality of user's groups, user's group can have a plurality of users, so as long as once-through operation just can a newly-increased order setting give several, tens even may be hundreds and thousands of users, significantly reduced the workload of authority setting.
Description of drawings
Fig. 1 be known schemes one the user right schematic diagram is set;
Fig. 2 be known schemes two the user right schematic diagram is set;
Fig. 3 is the method flow diagram that user right is set according to first embodiment of the invention;
Fig. 4 is the method flow diagram that user right is set according to second embodiment of the invention.
Embodiment
For making the purpose, technical solutions and advantages of the present invention clearer, the present invention is described in further detail below in conjunction with accompanying drawing.
As shown in Figure 3, be according to the convenient, flexible method flow diagram that user right is set of first embodiment of the invention.In step 310, system is provided with command group, just defines the command group that several are made up of system command.For instance, if system is provided with a command group 1, defines this command group and be made up of system command 1, system command 3, system command 5, the command set in the command group 1 just comprises and only comprises system command 1, system command 3, system command 5 so.In like manner, also can definition command group 2, its command set is system command 2, system command 4, system command 6; Command group 3, its command set are system command 2, system command 3, system command 4, system command 5.That is to say between command group and the command group identical system command to be arranged, also can be different fully.Need to prove that the set command group of system comprises a system command at least, and system is provided with a command group at least.
After setting up command group, enter step 320, system is provided with user's group.Because command group was set, so as long as the command group that had been provided with for this user's group selection, this user organizes just had the rights of using of all system commands in the selected command group when system was provided with the user and organizes.At above-mentioned case, when the user being set organizing A, as long as be its select command group, for example, select command group 1, command group 3 have just been finished the setting that the user organizes A so, and this user's group has the authority of using system order 1,2,3,4,5.Need to prove that system is provided with user's group at least, each user's group will be selected a command group at least.
At last, enter step 330, organize for the user selects the user.In the time will authority being set, as long as select user's group for it for a user.In above-mentioned case, finished the setting of the user being organized A.At this moment, if add a user, this user should have the authority of using system order 1,2,3,4,5, organizes A as long as select the user for it so, just for this user is provided with authority, has finished this user's interpolation.Need to prove that a user can only select user's group in the present embodiment.
Present embodiment is by to the setting of command group, makes system when the user being set organizing, and a command group that only needs to select to pre-set gets final product.Because the number of command group is less than the number of system command greatly, so when the user being set organizing authority, can reduce the troublesome operation of selecting one by one to greatest extent in a large amount of order of system, not only speed is fast, and is difficult for makeing mistakes.When user right is set, also, therefore can set the rights of using of user fast and accurately to all system commands as long as organize for the user selects the user who has set.
The second embodiment of the present invention as shown in Figure 4.In step 410, system is provided with default command group.Just whole system commands is put into different categories according to user's use habit, system command with same classification belongs in the default command group then, the rest may be inferred, whole system commands can be belonged to respectively in each default command group, wherein the command set in each default command group is mutual exclusion, and the intersection of the command set in each default command group has been included whole system commands.For example, this system one has 20 system commands, and wherein system command the 1,3,5, the 7th, belongs to the order of configuration querying; System command the 2,4,6, the 8th belongs to the order of performance queries; System command the 9,10,11, the 12nd belongs to the order that function is safeguarded; System command the 13,14,15, the 16th belongs to the order of transferring brake; System command the 17,18,19, the 20th belongs to the order of performance management.So, can define 5 default command group: configuration querying command group, performance queries command group, function maintenance command group, accent brake command group and performance management command group.Command set in the wherein configuration querying command group is a system command 1,3,5,7; Command set in the performance queries command group is a system command 2,4,6,8; Command set in the function maintenance command group is a system command 9,10,11,12; Transferring the command set in the brake command group is system command 13,14,15,16; Command set in the performance management command group is a system command 17,18,19,20.Need to prove that system will be provided with a default command group at least, and system have increase, inquiry, revises and delete the function of default command group.
Then, enter step 420, command group is set, just select the required default command group that comprises of this command group, with the intersection of system command in selected each default command group command set as this command group for each command group.At above-mentioned case command group 1 can be set, this command group is made up of configuration querying command group and performance queries command group; Command group 2, this command group is by function maintenance command group and transfer the brake command group to form; Command group 3, this command group only do as one likes can the administration order group be formed.Need to prove that system will be provided with a command group at least, each command group will comprise a default command group at least, and system has the function of increase, inquiry, modification and delete command group.
Setting up after the command group, enter step 430, user's group is set, just is the command group that user's group selection is provided with in step 420.At above-mentioned case, can be client user's group selection command group 1, be function maintenance customer group selection command group 1,2, be System Management User group selection command group 1,2,3.So, client user's group just has utility command group 1, the authority of all system commands in configuration querying command group just and the performance queries command group; Function maintenance customer's group just has utility command group 1,2, configuration querying command group just, performance queries command group, function maintenance command group and the authority of transferring all system commands in the brake command group; The System Management User group just has the authority of using all system commands.Need to prove that system will be provided with user's group at least, comprise a command group at least in each user's group, and system has increase, inquiry, revises and delete the function that the user organizes.
At last, enter step 440, organize for the user selects the user.In the time will authority being set, as long as select user's group for it for a user.In above-mentioned case, if a keeper's authority is set, as long as be its selective system users, manage user groups.This administrator has just had the authority of using all system commands.Need to prove that a user can only select user's group and system to have increase, inquiry, modification and deletion user's function.
Present embodiment makes system when command group is set by to default command group setting, and the default command group that only needs to select to pre-set gets final product.Because the number of default command group is less than the number of system command greatly, the number of command group is still less in the number of default command group, so when the authority of user's group is set, can reduce the troublesome operation of in a large amount of order of system, selecting one by one to greatest extent, not only speed is fast, and is difficult for makeing mistakes.When user right is set, also, therefore can set the rights of using of user fast and accurately to all system commands as long as organize for the user selects the user who has set.
How flexible the third embodiment of the present invention is when there is newly-increased order in system, the setting of finishing user right.In fact, present embodiment is on the basis of second embodiment, just system has been provided with default command group, command group, user's group and for after the user selected the user to organize, when newly-increased system command is arranged, newly-increased system command is belonged in the existing default command group, the command group, user's group, the user that comprise this default command group are worked.At the case among second embodiment, if system has increased an order 21 newly, this order is used for query configuration, so just this system command can be belonged in the configuration querying command group, the command group 1 that comprises the configuration querying command group has just comprised newly-increased system command 21, selected client user's group, function maintenance customer's group and the System Management User group of command group 1 all to have the authority of using system order 21, the system manager in the System Management User group also just has the authority of using system order 21.
Present embodiment can be simplified greatly when there is newly-increased order in system, to the operation of user right modification.Such as, there are 100 users or user's group in system, when there is newly-increased order in system, as long as this system command is belonged in some default command group, rather than user or user's group of the rights of using of this newly-increased order of needs reset authority, just can finish the authority modification of these 100 users or user group.
The fourth embodiment of the present invention also is on the basis of second embodiment, and just system has been provided with default command group, command group, user's group and for after the user selected the user to organize, when newly-increased system command is arranged, and the how convenient, flexible user right that is provided with.At first, newly-increased default command group is given newly-increased default command group with newly-increased call allocation.Then, newly-increased default command group is assigned to command group, the user's group, the user that comprise this command group are worked.At the case among second embodiment, if system has increased an order 22 newly, this order is used for upgrade-system, can increase a default command group so newly: the upgrading command group will increase order 22 newly and distribute to the upgrading command group.Then, the command group of will upgrading again is assigned to command group 3.Like this, command group 3 just has the authority of using newly-increased order 22, and the System Management User group that comprises command group 3 just has the authority of using newly-increased order 22, and the system manager user in the System Management User group just has the authority of using newly-increased order 22.
The same with the 3rd embodiment, present embodiment can be simplified greatly when there is newly-increased order in system, to the operation of user right modification.
The fifth embodiment of the present invention and second embodiment are basic identical, difference only is that the user among second embodiment organizes to belong to a user only, and the user in the present embodiment can belong to a plurality of user's groups, and this user's authority is exactly the authority set of a plurality of user's groups under this user.Such as the user organizes the authority that A has all system commands in the utility command group 1, and the user organizes the authority that B has all system commands in the utility command group 2, and user C belongs to, and the user organizes A and the user organizes B.So, user C just has the authority of all system commands in utility command group 1 and the command group 2.
Though by with reference to some preferred embodiment of the present invention, the present invention is illustrated and describes, those of ordinary skill in the art should be understood that and can do various changes to it in the form and details, and without departing from the spirit and scope of the present invention.

Claims (10)

1. user right method to set up in the communication system is characterized in that, comprises following steps:
A is provided with at least one default command group, according to user's use habit, whole system commands is belonged to each default command group respectively;
B is provided with at least one command group, when each command group is set, selects at least one default command group as the default command group that this command group comprised, with the intersection of system command in selected each the default command group command set as this command group;
C is provided with at least one user's group, comprises at least one command group in each user's group;
D organizes for the user selects the user who is belonged to, and this user has the authority of use to all system commands in this user's group.
2. user right method to set up in the communication system according to claim 1 is characterized in that, in described steps A, the command set in each default command group is mutual exclusion, and the intersection of command set has been included whole system commands in each default command group.
3. user right method to set up in the communication system according to claim 1 is characterized in that, described default command group can be one of following or its combination in any:
Configuration querying group, configuration management group, alarm inquiry group, alarm management group, performance queries group, performance management group, maintenance function group, system command group, accent brake group and upgrading command group.
4. user right method to set up in the communication system according to claim 1 is characterized in that, when described system increases new system command, comprises following steps:
Newly-increased system command is belonged in the existing default command group also corresponding this system command that has of the command group that comprises this default command group; Perhaps,
A newly-increased default command group also is included into newly-increased system command, selects for use when command group is set.
5. according to user right method to set up in each described communication system in the claim 1 to 4, it is characterized in that described each user is only to belong to user's group.
6. according to user right method to set up in each described communication system in the claim 1 to 4, it is characterized in that, described each user can belong at least one user's group, and this user has the authority of use to the intersection of command set in each the user's group that is belonged to.
7. according to user right method to set up in each described communication system in the claim 1 to 4, it is characterized in that described system has increase, inquiry, revises and delete the function of user's group.
8. according to user right method to set up in each described communication system in the claim 1 to 4, it is characterized in that described system has increase, inquiry, revises and delete user's function.
9. according to user right method to set up in each described communication system in the claim 1 to 4, it is characterized in that described system has increase, inquiry, revises and delete the function of default command group.
10. according to user right method to set up in each described communication system in the claim 1 to 4, it is characterized in that described system has the function of increase, inquiry, modification and delete command group.
CNB2005100280728A 2005-07-22 2005-07-22 Method for setting user's power in communication system Expired - Fee Related CN100391160C (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CNB2005100280728A CN100391160C (en) 2005-07-22 2005-07-22 Method for setting user's power in communication system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CNB2005100280728A CN100391160C (en) 2005-07-22 2005-07-22 Method for setting user's power in communication system

Publications (2)

Publication Number Publication Date
CN1859153A CN1859153A (en) 2006-11-08
CN100391160C true CN100391160C (en) 2008-05-28

Family

ID=37298020

Family Applications (1)

Application Number Title Priority Date Filing Date
CNB2005100280728A Expired - Fee Related CN100391160C (en) 2005-07-22 2005-07-22 Method for setting user's power in communication system

Country Status (1)

Country Link
CN (1) CN100391160C (en)

Families Citing this family (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN100563176C (en) * 2007-08-23 2009-11-25 华为技术有限公司 A kind of generation of authority relation data and method of adjustment and management system
CN101399695B (en) * 2007-09-26 2011-06-01 阿里巴巴集团控股有限公司 Method and device for operating shared resource
CN101184214B (en) * 2007-12-07 2012-12-19 中兴通讯股份有限公司 Method of managing user authority in monitoring system
CN102273135B (en) * 2011-05-24 2014-05-07 华为技术有限公司 Method, device and system for processing domain user authority information
CN108259214B (en) * 2017-08-31 2021-03-23 新华三技术有限公司 Configuration command management method, device and machine-readable storage medium

Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1493995A (en) * 2002-11-02 2004-05-05 华为技术有限公司 Method of control system safety management

Patent Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1493995A (en) * 2002-11-02 2004-05-05 华为技术有限公司 Method of control system safety management

Non-Patent Citations (4)

* Cited by examiner, † Cited by third party
Title
UNIX设备驱动程序的剖析与实例. 彭寿全,宋杰,严海绵.电子科技大学学报,第27卷第1期. 1998
UNIX设备驱动程序的剖析与实例. 彭寿全,宋杰,严海绵.电子科技大学学报,第27卷第1期. 1998 *
网络组建、管理与安全. 张琳,李璇华,高徐娇,任晓娟等,193,195,人民邮电出版社. 2000
网络组建、管理与安全. 张琳,李璇华,高徐娇,任晓娟等,193,195,人民邮电出版社. 2000 *

Also Published As

Publication number Publication date
CN1859153A (en) 2006-11-08

Similar Documents

Publication Publication Date Title
US5586255A (en) Network management operation system and network management operation method
US5572652A (en) System and method for monitoring and controlling one or more computer sites
CN1318163B (en) System and method for selectively defining access to application features
CN100391160C (en) Method for setting user's power in communication system
EP1175753B1 (en) Telecommunications network resource handling arrangement and method
JPH04216158A (en) Method for realizing control of user access in distributed data processing system
CN1937658B (en) Quick query warning method for telecommunication management network
CN105894159A (en) Implementation method of cross-domain and cross-platform user unified management system
CN102143202A (en) Information integration method and information integration system for industrial production equipment
CN105989142A (en) Data query method and device
CA2257886A1 (en) Real-time pricing control system and methods regarding same
CN105809021A (en) Method and device for distributing user permissions
CN102075357B (en) Multi-domain security management method for network management system
CN105468619A (en) Resource distribution method and device used for database connection pool
CN107562547A (en) A kind of CTDB group systems and creation method, create system
CN107846297A (en) A kind of user's Explore of Unified Management Ideas for network platform exploitation
CN101808325A (en) Method and device for allocating frequency spectrum
CN100502298C (en) Method for realizing management authorization in network management system
CN108445853A (en) A kind of shared workshop of the production capacity based on cloud data
CN101026493A (en) User authority control method and XML file management server
CN107016278A (en) A kind of authority distributing method, device and background management system
CN110111203A (en) Batch process, device and the electronic equipment of business datum
CN100375442C (en) Communication network management and processing system and method
CN100386990C (en) Method for implementing intelligent network flexible authority management
Cisco Setting Up the ISM Environment

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20080528

Termination date: 20180722

CF01 Termination of patent right due to non-payment of annual fee