CN107292198A - Shortcut function method to set up - Google Patents

Shortcut function method to set up Download PDF

Info

Publication number
CN107292198A
CN107292198A CN201710553954.9A CN201710553954A CN107292198A CN 107292198 A CN107292198 A CN 107292198A CN 201710553954 A CN201710553954 A CN 201710553954A CN 107292198 A CN107292198 A CN 107292198A
Authority
CN
China
Prior art keywords
role
newly
user
increased
list
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201710553954.9A
Other languages
Chinese (zh)
Inventor
陈达志
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Chengdu Morning Glory Information Technology Co Ltd
Chengdu Qianniucao Information Technology Co Ltd
Original Assignee
Chengdu Morning Glory Information Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Chengdu Morning Glory Information Technology Co Ltd filed Critical Chengdu Morning Glory Information Technology Co Ltd
Priority to CN201710553954.9A priority Critical patent/CN107292198A/en
Publication of CN107292198A publication Critical patent/CN107292198A/en
Priority to PCT/CN2018/094322 priority patent/WO2019011162A1/en
Priority to CN201810720004.5A priority patent/CN108958870B/en
Pending legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F9/00Arrangements for program control, e.g. control units
    • G06F9/06Arrangements for program control, e.g. control units using stored programs, i.e. using an internal store of processing equipment to receive or retain programs
    • G06F9/44Arrangements for executing specific programs
    • G06F9/451Execution arrangements for user interfaces
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/6218Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database
    • G06F21/6227Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database where protection concerns the structure of data, e.g. records, types, queries
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F3/00Input arrangements for transferring data to be processed into a form capable of being handled by the computer; Output arrangements for transferring data from processing unit to output unit, e.g. interface arrangements
    • G06F3/01Input arrangements or combined input and output arrangements for interaction between user and computer
    • G06F3/048Interaction techniques based on graphical user interfaces [GUI]
    • G06F3/0481Interaction techniques based on graphical user interfaces [GUI] based on specific properties of the displayed interaction object or a metaphor-based environment, e.g. interaction with desktop elements like windows or icons, or assisted by a cursor's changing behaviour or appearance
    • G06F3/0482Interaction with lists of selectable items, e.g. menus
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q10/00Administration; Management
    • G06Q10/10Office automation; Time management
    • G06Q10/105Human resources
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2141Access rights, e.g. capability lists, access control lists, access tables, access matrices

Landscapes

  • Engineering & Computer Science (AREA)
  • Theoretical Computer Science (AREA)
  • Business, Economics & Management (AREA)
  • Physics & Mathematics (AREA)
  • Human Resources & Organizations (AREA)
  • General Physics & Mathematics (AREA)
  • Software Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Entrepreneurship & Innovation (AREA)
  • Strategic Management (AREA)
  • General Business, Economics & Management (AREA)
  • Databases & Information Systems (AREA)
  • Quality & Reliability (AREA)
  • Operations Research (AREA)
  • Marketing (AREA)
  • Economics (AREA)
  • Human Computer Interaction (AREA)
  • Tourism & Hospitality (AREA)
  • Health & Medical Sciences (AREA)
  • Bioethics (AREA)
  • General Health & Medical Sciences (AREA)
  • Computer Hardware Design (AREA)
  • Computer Security & Cryptography (AREA)
  • Data Mining & Analysis (AREA)
  • User Interface Of Digital Computer (AREA)
  • Storage Device Security (AREA)

Abstract

The invention discloses a kind of shortcut function method to set up, including setting shortcut menu and fast newly-increased list, the step of shortcut menu includes setting shortcut menu access procedures, sets shortcut menu step, shows shortcut menu by shortcut menu entrance is set, passes through the shortcut menu chosen in shortcut menu entrance step display S2;Any shortcut menu in step K1 is chosen as needed, the corresponding function interface of the shortcut menu is shown.The present invention is easy to be rapidly completed checking and operate, being rapidly completed the newly-increased of list for conventional menu, improves office efficiency;Same one role of period can only associate unique user, only need to be by the user-association new role when the new registration of user or transfer-position, the corresponding conventional shortcut menu of the role can be obtained by shortcut menu entrance, also the corresponding list for having a newly-increased authority of the role can be obtained by fast increasing forms input newly, increases substantially the rights management efficiency in system use.

Description

Shortcut function method to set up
Technical field
It is more particularly to a kind of quick the present invention relates to a kind of method for managing user right of the management software systems such as ERP Function setting method.
Background technology
Access control based roles(RBAC)Be Recent study at most, a kind of thought most ripe data base authority pipe Reason mechanism, it is considered as to substitute traditional forced symmetric centralization(MAC)And self contained navigation(DAC)Ideal candidates.Base In the access control of role(RBAC)Basic thought be to divide different according to different functional post in business organization's view Role, the access rights of database resource are encapsulated in role, and the user role different by being endowed is come dereference number According to base resource.
Substantial amounts of table and view are often all had in large-scale application system, this causes management to database resource and awarded Adaptability in tactics obtains sufficiently complex.The access and receiving and grant for authority that database resource is directly managed by user are very difficult, and it needs Understanding of the user to database structure is very thorough, and is familiar with the use of sql like language, once and application system structure or peace Full demand has changed, and will carry out large amount of complex and cumbersome mandate changes, and is very easy to occur some and unexpected awards Security breaches caused by power error.Therefore, be that large-scale applied system design one kind is simple, efficient right management method into For system and the common requirements of system user.
The mechanism of authorization control of based role can carry out simple, efficient management to the access rights of system, greatly The burden and cost of System right management are reduced, and causes System right management to more conform to the service management of application system Specification.
However, the method for managing user right of traditional based role uses the association machine of " role is one-to-many to user " System, its " role " is that group/role of class property, i.e., one can correspond to/associate multiple users simultaneously, and role is similar to post/duty Following three kinds of forms are divided into substantially to the mandate of user right under the concepts such as position/work post, this relation mechanism:
1st, as shown in figure 1, directly being authorized to user, big workload, frequent operation and trouble are had the disadvantage;
2nd, as shown in Fig. 2 to role(Class/group/post/work post property)Authorized(One role can associate multiple use Family), user obtains authority by role;
3rd, as shown in figure 3, both the above mode is combined.
In statement above, 2,3 are required to authorize the role of class/group property, and pass through class/group/post/work post The mode that the role of property is authorized has the disadvantage that:
1st, operation when user right changes is difficult:During actual system use, often because being needed during operation Authority to user is adjusted, such as:When the change of employee's authority is handled, the authority hair of some employee of role association Changing, we can not change the authority of whole role because of the change of indivedual employee's authorities, because the role is also associated with The unchanged employee of other authorities.Therefore in order to tackle this kind of situation, otherwise create what new role changed to meet the authority Employee, otherwise the employee is directly authorized according to authority demand(Depart from role).Both the above processing mode, role-security compared with To role authorization, not only required time is grown in the case of many, and easily makes a mistake, and user operates cumbersome and bothered, and also holds It is error-prone to cause the loss to system user.
2nd, to remember that the concrete power limit that role includes is difficult for a long time:If the privilege feature point of role is relatively more, the time one is grown, very Difficulty remembers the concrete power limit of role, it more difficult to remember the authority difference between the close role of authority, to associate new user, nothing Method accurately judges association how should be selected.
3rd, because user right changes, then role can be caused to create more and more(If not creating new role, can significantly it increase Plus the mandate directly to user), it more difficult to distinguish the specific difference of each role-security.
4th, during transfer-position, to by many authority distributions of transfer-position user other several users will be given to undertake, then when handling It must will be made a distinction by these authorities of transfer-position user, create role again respectively to associate other several users, such behaviour Make not only complicated and time consumption, and also easily making a mistake.
In existing management mode, as middle level and corporate executive, it is necessary to check or handle various, number The many menus of amount, list.
The menu that user is authorized to may may have many comprising one-level, two grades, three-level even more stages per further menu Individual, all menu quantity that user is authorized to are likely to be breached hundreds and thousands of or even thousands of, but conventional menu may be no more than two Ten, if obtained for conventional menu by way of searching step by step every time, just as " billow is washed the sand ", workload is big and numerous It is trivial, waste a large amount of unnecessary times.
For list, its newly-increased button is typically found in the corresponding function interface of the list, and user is if desired Increase the list newly, then first must find the corresponding function interface of the list step by step, the list could be increased newly.For example:With Family needs newly-built one " client's list ", then needs to find " CRM ", " client ", " customer account management " step by step, then can just see visitor Family increases corresponding operating function newly.For needing the personnel that frequent operation increases list newly, such as contact staff after sale often answers One service calls after sale is required for newly-increased one to ask single after sale, to search to increase newly step by step every time and ask single after sale, Workload is big and cumbersome.
The content of the invention
It is an object of the invention to overcome the deficiencies of the prior art and provide a kind of shortcut function method to set up, it is easy to quick Checking and operate, being rapidly completed the newly-increased of list for conventional menu is completed, office efficiency is improved;Same one role of period can only Unique user is associated, only need to be by the user-association new role when the new registration of user or transfer-position, you can pass through shortcut menu entrance The corresponding conventional shortcut menu of the role is obtained, it is corresponding conventional quick also can to obtain the role by fast newly-increased forms input Newly-increased list, also can obtain the corresponding list for having a newly-increased authority of the role by fast increasing forms input newly, increase substantially Rights management efficiency in system use, makes dynamic authorization simpler, is more convenient, apparent, clear, improves the effect of priority assignation Rate and reliability.
The purpose of the present invention is achieved through the following technical solutions:Shortcut function method to set up, including set quick Menu entries step, the step of shortcut menu step is set, shortcut menu is shown by shortcut menu entrance, it is provided with quick Menu entries step and setting shortcut menu step are in no particular order, specific as follows:
Shortcut menu access procedures are set:Shortcut menu entrance is set, for showing and menu swift to operate;
Shortcut menu step is set:
S1:The role's that the active user of acquisition login system currently associates is all with the menu for checking authority, each described Role is independent individual, rather than group/class, and same one role of period can only associate unique user, and a user-association One or more roles;
S2:User is as needed from choosing one or more as shortcut menu in the menu for checking authority;
The step of shortcut menu is shown by shortcut menu entrance:
K1:Pass through the shortcut menu chosen in shortcut menu entrance step display S2;
K2:Any shortcut menu in step K1 is chosen as needed, the corresponding function interface of the shortcut menu is shown.
When user loses when checking authority of a certain menu, if the menu is the shortcut menu that the user has chosen, it is somebody's turn to do Shortcut menu is not shown.
Shortcut function method to set up, including quick newly-increased forms input step is set, quick newly-increased list step is set, led to The step of fast newly-increased forms input shows fast newly-increased list is crossed, is provided with fast increasing forms input step newly and sets fast The newly-increased list step of victory is in no particular order, specific as follows:
Fast newly-increased forms input step is set:Fast newly-increased forms input is set, for showing and newly-increased list swift to operate;
Fast newly-increased list step is set:
P1:All lists with newly-increased authority for the role that the active user of acquisition login system currently associates, it is each described Role is independent individual, rather than group/class, and same one role of period can only associate unique user, and a user-association One or more roles;
P2:User chooses one or more as quick newly-increased list from the list with newly-increased authority as needed;
By fast increasing the step of forms input shows fast newly-increased list newly:
L1:The fast newly-increased list chosen by fast increasing newly in forms input step display P2;
L2:Any fast newly-increased list in step L1 is chosen as needed, shows the fast newly-increased corresponding newly-increased interface of list.
Shortcut function method to set up, comprises the following steps:
W1:Fast newly-increased forms input is set:
W2:By fast increasing forms input newly, all of role that the active user of display login system currently associates have newly Increase the list of authority, each role is independent individual, rather than group/class, same one role of period can only associate uniquely User, and one or more roles of user-association;
W3:The list of any display in step W2 is chosen as needed, shows the corresponding newly-increased interface of the list.
Described role must select a department when creating, role role if after creating belongs to the department, And the role is unique under the department, and role is authorized according to the action of role.
Shortcut function method to set up, in addition to the trans-departmental transfer-position management process of a user, are specifically included:
(1)Cancellation user associates with the role's in former department;
(2)User is associated with the role in new department.
Described user can and can only be defined the competence by it with associating for role.
The composition of the role is:Numbered in the name+hilllock of post.
The role includes role name and role numbers, unique under the department that the role name is selected when role creates, Role's numbering is unique in systems.
When user loses the newly-increased authority of a certain list, if the fast newly-increased list that the list, which is the user, have been chosen, Then this fast increases list newly and not shown.
The beneficial effects of the invention are as follows:
1)There is provided a kind of shortcut function method to set up, it is easy to be rapidly completed checking and operate, being rapidly completed table for conventional menu Single is newly-increased, improves office efficiency;Same one role of period can only associate unique user, when the new registration of user or transfer-position Only need to be by the user-association new role, you can the corresponding conventional shortcut menu of the role is obtained by shortcut menu entrance, also may be used The corresponding conventional fast newly-increased list of the role is obtained by fast increasing forms input newly, also can be by fast increasing forms input newly The corresponding list for having a newly-increased authority of the role is obtained, the rights management efficiency in system use is greatly improved, makes dynamic Authorize simpler, be more convenient, it is apparent, clear, improve the efficiency and reliability of priority assignation.
In existing management mode, as middle level and corporate executive, it is necessary to check or handle various, number The many menus of amount, list.
The menu that user is authorized to may may have many comprising one-level, two grades, three-level even more stages per further menu Individual, all menu quantity that user is authorized to are likely to be breached hundreds and thousands of or even thousands of, but conventional menu may be no more than two Ten(These conventional lists often account for more than the 80% of user job total amount)If, for conventional menu every time by step by step The mode of lookup is obtained, just as " billow is washed the sand ", and workload is big and cumbersome, wastes a large amount of unnecessary times.The application is led to Checking and operating for conventional menu can be rapidly completed by crossing setting shortcut menu entrance, greatly improved operating efficiency, reduced Workload.
For list, its newly-increased button is typically found in the corresponding function interface of the list, and user is if desired Increase the list newly, then first must find the corresponding function interface of the list step by step, the list could be increased newly.For example:With Family needs newly-built one " client's list ", then needs to find " CRM ", " client ", " customer account management " step by step, then can just see visitor Family increases corresponding operating function newly.For needing the personnel that frequent operation increases list newly, such as contact staff after sale often answers One service calls after sale is required for newly-increased one to ask single after sale, to search to increase newly step by step every time and ask single after sale, Workload is big and cumbersome.The application improves table by setting quick newly-increased forms input to be rapidly completed the newly-increased of list Single newly-increased efficiency of management, reduces the workload of the newly-increased operation of list.
2)The application role is man-to-man relation to user, and same one role of period can only associate unique user, One one or more role of user-association, advantage of this is that, all no longer need to be allocated when creating user every time The operation of authority, if associate a user to role, and role permission modification than the user right in traditional mechanism Much less is wanted in change.Independent volume property(Post number/station property)Role's number change it is small, although employee turnover is big, but The change of post number/station number is small(Do not change within certain period even, i.e., role does not change), so will be very big Simplify the rights management of user, reduce the expense of system.
3)Simple to operate, the efficiency high of dynamic management, registration transfer-position etc., reliability is high:Registration/leaving office/transfer-position exists Application in rights management is simple, and when employee/user changes without resetting authority, user only need to cancel or associate Role:The user of the role of no longer holding a post just cancels the role association, and catcher is held a post user-association post of the role Number role, associate the role user just obtain automatically the role inter-related task and operating right, without to role Again authorized, drastically increase efficiency, the safety and reliability of system setting.
Citing:Because Zhang San user leaves office or the reason such as transfer-position, Zhang San no longer do " work of this role of purchasing agent 3 ", then By Zhang San cancel with " purchasing agent's 3 " associates;Other Li Si's catcher does that " work of this role of purchasing agent 3 ", only need to be by Li Si The role is associated, then Li Si has automatically obtained " shortcut menu of this role of purchasing agent 3 " and fast newly-increased list.
For menu and list, application scheme is used, if the user associated before certain role is already provided with the role Shortcut menu or fast increase newly list, then after association the direct use of user, it is not necessary to reset, if there is change It is dynamic, simple modification need to be only made on the original basis, it is simple to operate.
4)Role definition is the properties such as group, work post, class by traditional rights management mechanism, and role is one-to-many to user Relation, during actual system use, because being frequently necessary to be adjusted the authority of user during operation, than Such as:When the change of employee's authority is handled, the authority of some employee of role association changes, and we can not be indivedual because of this The change of employee's authority and the authority for changing whole role, because the role is also associated with the unchanged employee of other authorities.Therefore In order to tackle this kind of situation, otherwise new role is created to meet the employee that the authority changes, or to the employee according to power Limit demand is directly authorized(Depart from role).Both the above processing mode, in the case where role-security is more to role authorization not Long the time required to only, and easily make a mistake, user operates cumbersome and trouble, and also easily error causes to system user Loss.
But under the present processes, because role is an independent individual, then it can select to change role-security i.e. It can reach purpose.The present processes, although seem that workload can be increased in system initialization, but duplication etc. can be passed through Method, makes it create role or role of the efficiency higher than traditional group/class property of mandate, because without consideration group/class property angle Intercommunity of the color when meeting association user, application scheme can allow priority assignation clear, understand;Especially one is used in system After the section time(User/role-security dynamic change), this application scheme can be that system user is increased substantially in system use Rights management efficiency, make dynamic authorization simpler, be more convenient, it is apparent, clear, improve the efficiency of priority assignation and reliable Property.
5)The role authorization method of traditional group/class property easily malfunctions, and the application method, which is significantly reduced, authorizes error Probability, because the application method need to only be considered as the role of independent individual, and without considering to associate this group of property under conventional method Which intercommunity multiple users of matter role have.Even if error is authorized, also only influence is associated with that user of the role, and Tradition can then influence to be associated with all users of the role with the role of group property.Even if there is permission grant mistake, the application Modification method is simple, the time is short, and tradition with role's repairing lookup error of group property when need to consider to be associated with the role's The authority intercommunity of all users, not only changes trouble, complicated, very easy error in the case of more than function point, and a lot In the case of can only newly create role and could solve.
6)Under role authorization method of the tradition using group as property, if the privilege feature point of role is relatively more, the time one is grown, It is difficult to remember the concrete power limit of role, it more difficult to remember the authority difference between the close role of authority, to associate new user, It can not accurately judge association how should be selected.The role of the application method inherently has the property of post number/station number, choosing Select very clear.
7)During transfer-position, to by many authority distributions of transfer-position user other several users will be given to undertake, then when handling It must will be made a distinction by these authorities of transfer-position user, create role again respectively to associate other several users, such behaviour Make not only complicated and time consumption, and also easily making a mistake.
The application method is then:Several roles by transfer-position user-association, in transfer-position, cancel user and former department first The association of interior role(These roles being cancelled can be associated to other users again), then by user and new department Interior role is associated.It is simple to operate, it will not malfunction.
Brief description of the drawings
Fig. 1 is the direct schematic diagram authorized to user of system in background technology;
The schematic diagram that Fig. 2 is authorized for system in background technology to group/class property role;
Fig. 3 is system of users directly mandate and the schematic diagram being combined to group/class property role authorization in background technology;
Fig. 4 is the schematic diagram that present system is authorized by independent individual property role to user;
Fig. 5 is the flow chart of the embodiment of the present invention 1;
Fig. 6 is the flow chart of the embodiment of the present invention 2;
Fig. 7 is the flow chart of the embodiment of the present invention 3.
Embodiment
Technical scheme is described in further detail below in conjunction with the accompanying drawings, but protection scope of the present invention is not limited to It is as described below.
【Embodiment 1】As shown in figure 5, in the present embodiment, shortcut function method to set up, including shortcut menu entrance step is set Suddenly the step of, setting shortcut menu step, show shortcut menu by shortcut menu entrance, is provided with shortcut menu entrance step Rapid and setting shortcut menu step is in no particular order, specific as follows:
Shortcut menu access procedures are set:Shortcut menu entrance is set, for showing and menu swift to operate;
Shortcut menu step is set:
S1:The role's that the active user of acquisition login system currently associates is all with the menu for checking authority, each described Role is independent individual, rather than group/class, and same one role of period can only associate unique user, and a user-association One or more roles;
S2:User is as needed from choosing one or more as shortcut menu in the menu for checking authority;
The step of shortcut menu is shown by shortcut menu entrance:
K1:Pass through the shortcut menu chosen in shortcut menu entrance step display S2;
K2:Any shortcut menu in step K1 is chosen as needed, the corresponding function interface of the shortcut menu is shown.
When user loses when checking authority of a certain menu, if the menu is the shortcut menu that the user has chosen, it is somebody's turn to do Shortcut menu is not shown.Such as, before user Zhang San by " client's statistics " menu setting be shortcut menu, when Zhang San loses When checking " client's statistics " this authority of menu, the shortcut menu " client's statistics " set before him is automatic from his shortcut menu It is middle to disappear, i.e., no longer show.
This application provides a kind of shortcut function method to set up, it is easy to be rapidly completed checking and operating for conventional menu, carries High office efficiency;Same one role of period can only associate unique user, need to only be used this when the new registration of user or transfer-position Family associates new role, you can obtain the corresponding conventional shortcut menu of the role by shortcut menu entrance, is greatly improved and is Rights management efficiency in system use.
In existing management mode, as middle level and corporate executive, it is necessary to check or handle various, number The many menus of amount.
The menu that user is authorized to may may have many comprising one-level, two grades, three-level even more stages per further menu Individual, all menu quantity that user is authorized to are likely to be breached hundreds and thousands of or even thousands of, but conventional menu may be no more than two Ten(These conventional lists often account for more than the 80% of user job total amount)If, for conventional menu every time by step by step The mode of lookup is obtained, just as " billow is washed the sand ", and workload is big and cumbersome, wastes a large amount of unnecessary times.The application is led to Checking and operating for conventional menu can be rapidly completed by crossing setting shortcut menu entrance, greatly improved operating efficiency, reduced Workload.
As shown in figure 4, in the present embodiment, each role is independent individual, rather than group/class, the same period one Role can only associate unique user, and the one or more roles of user-association.Described role must select when creating One department, role role if after creating belongs to the department, and the role is unique under the department, according to role's Action is authorized to role.
Shortcut function method to set up, in addition to the trans-departmental transfer-position management process of a user, are specifically included:
(1)Cancellation user associates with the role's in former department;
(2)User is associated with the role in new department.
The role includes role name and role numbers, unique under the department that the role name is selected when role creates, Role's numbering is unique in systems.Described user can and can only be defined the competence by it with associating for role.Specifically, The composition of the role is:Numbered in the name+hilllock of post.
Below to being analyzed by independent individual property role the advantage that user's progress permission grant mode possesses:
User can only be defined the competence by it with associating for role, if to change the authority of user, be gathered around by adjusting role Some authorities are to reach that change is associated with the purpose of the authority of the user of the role.User is not authorized directly, but passes through it Associated role authorizes to user, and once after user-association role, the user just has all permissions of the role.
Role is one-to-one to the relation of user(When the role is with a user-association, other users can not then be associated again The role;If the role is not by user-association, it can be selected to associate by other users;The i.e. same period, role can and Can only be by a user-association).User is one-to-many to the relation of role(One user can associate multiple roles simultaneously).
The definition of role:Role is without the property such as group/class/classification/post/position/work post, but non-set Property, role has uniqueness, and role is self-existent independent individual;Equivalent to post number in enterprises and institutions apply (The non-post in post number herein a, post may have multiple employees simultaneously, and one post number of same period can only correspond to one Individual employee).
Citing:Following role can be created in some Corporation system:General manager, vice general manager 1, vice general manager 2, Beijing sale One manager, Beijing sell two managers, Beijing sell three managers, Shanghai sales engineer 1, Shanghai sales engineer 2, on Extra large sales engineer 3, Shanghai sales engineer 4, Shanghai sales engineer 5 ...
User and the incidence relation of role:The said firm vice general manager 2 if the said firm employee Zhang San holds a post, while Beijing sale of holding a post One manager, the then role that Zhang San's needs are associated is that a manager is sold in vice general manager 2 and Beijing, and Zhang San has the two angles The authority of color.
The concept of traditional role is group/class/post/position/work post property, and a role can correspond to multiple users.And The concept of the application " role " is also analogous to the role in movie and television play equivalent to post number/station number:One role is with for the moment Section(Childhood, juvenile, middle age ...)It can only be played by a performer, and a performer may divide decorations polygonal.
Create role after, can create user during association role, can also user create after the completion of It is associated at any time.The incidence relation with role can be released after user-association role at any time, can also be set up at any time and other The incidence relation of role.
The composition of the role is:Numbered in the name+hilllock of post.For example:Workshop Production workman 1, Workshop Production workman 2, car Between direct labor 3 ... role be independent individual, equivalent to post number, the concept of station number, different from traditional rights management body The concept of role is group/class property of post/position/work post etc. in role in system, traditional system.
Citing employee Zhang San enters after certain company below, and the relation between employee, user and role is:
1st, new registration:The new registration of employee, is directly the user(Employee)The role of corresponding post number/station number is selected to be closed Connection, example:Zhang San's registration company(Company is that Zhang San is assigned with a Zhang San user), action is, in sale one, to bear Blame the sale of Beijing Area's refrigerator product(Corresponding role is sale one subordinate " this role of sales engineer 5 "), then open Three users directly select " this role association of sales engineer 5 ".
2nd, position is increased:Zhang San worked after a period of time, and company also arranges Zhang San to be responsible for the pin of Beijing Area's tv product Sell(Corresponding role is sale one subordinate " this role of sales engineer 8 ")And hold a concurrent post portion supervisor after sale(Correspondence portion after sale It is responsible for 1 this role), then Zhang San user be further added by association sale one subordinate " sales engineer 8 " and after sale subordinate " after sale Portion is responsible for 1 " the two roles, and now, Zhang San employee is associated with three roles, respectively sells the " sales engineer of a subordinate 5 ", " sales engineer 8 " and after sale subordinate " after sale portion supervisor 1 ", Zhang San user then has the authority of these three roles.
3rd, position is reduced:A period of time has been spent again, and company determines to allow Zhang San's tenure portion after sale to handle(Correspondence subordinate after sale " portion manager after sale " this role), and no longer hold a concurrent post other work.Then Zhang San's user-association subordinate after sale " portion manager after sale " this Individual role, while cancelling three roles associated before this(Sell " sales engineer 5 ", " sales engineer 8 " and selling for a subordinate Under rear portion " after sale portion supervisor 1 "), now, Zhang San user only possesses the authority of subordinate " portion manager after sale " this role after sale.
4th, the adjustment of role-security(The adjustment of the authority possessed for role in itself):As company determines increase portion after sale The authority of manager, then need to only increase the mandate that this role is handled to portion after sale, then Zhang San user is because portion is handled after sale The authority of this role is added, and the authority of Zhang San user is also increased.
5th, leave office:After 1 year, Zhang San leaves office, then cancels Zhang San user and subordinate " portion manager after sale " this role after sale Association.
Citing:Company is in dynamic manage, and registration, the leaving office of office worker often persistently occur, but post number/station Number change it is considerably less (or even not changing over a period to come).
Classical authorization method:In the case of more than systemic-function point, authorized with the role of traditional group/class property, Not only authorize workload big, it is numerous and diverse, and error-prone, or even malfunctioned and be all not easy to find in a short time, it is easily right System user causes damage.
The application authorization method:The application is that the role of post number/station property is authorized, user-association role And define the competence, then to the control of user right, realized simply by the incidence relation of simple user-role, allow authority Control becomes simple, easy to operate, clear, and mandate efficiency is greatly improved and reliability is authorized.
【Embodiment 2】As shown in fig. 6, shortcut function method to set up, including fast newly-increased forms input step, setting are set Fast increase list step newly, by fast increasing the step of forms input shows fast newly-increased list newly, be provided with quick increase newly Fast newly-increased list step is in no particular order, specific as follows for forms input step and setting:
Fast newly-increased forms input step is set:Fast newly-increased forms input is set, for showing and newly-increased list swift to operate;
Fast newly-increased list step is set:
P1:All lists with newly-increased authority for the role that the active user of acquisition login system currently associates, it is each described Role is independent individual, rather than group/class, and same one role of period can only associate unique user, and a user-association One or more roles;
P2:User chooses one or more as quick newly-increased list from the list with newly-increased authority as needed;
By fast increasing the step of forms input shows fast newly-increased list newly:
L1:The fast newly-increased list chosen by fast increasing newly in forms input step display P2;
L2:Any fast newly-increased list in step L1 is chosen as needed, shows the fast newly-increased corresponding newly-increased interface of list.
This application provides a kind of shortcut function method to set up, it is easy to be rapidly completed the newly-increased of list, improves office effect Rate;Same one role of period can only associate unique user, only need to be by the new angle of the user-association when the new registration of user or transfer-position Color, you can obtain the corresponding conventional fast newly-increased list of the role by fast increasing forms input newly, system is greatly improved List in use increases operating efficiency newly.
In existing management mode, as middle level and corporate executive, it is necessary to check or handle various, number The many lists of amount.For list, its newly-increased button is typically found in the corresponding function interface of the list, if user Need to increase the list newly, then first must find the corresponding function interface of the list step by step, the list could be increased newly.Example Such as:User needs newly-built one " client's list ", then needs to find " CRM ", " client ", " customer account management " step by step, then could See that client increases corresponding operating function newly.For needing the personnel that frequent operation increases list newly, such as contact staff after sale, Often answering a service calls after sale is required for newly-increased one to ask single after sale, to search to increase newly step by step every time and after sale please Ask single, workload is big and cumbersome.The application is improved by setting quick newly-increased forms input to be rapidly completed the newly-increased of list List increases the efficiency of management newly, reduces the workload of the newly-increased operation of list.
【Embodiment 3】As shown in fig. 7, shortcut function method to set up, comprises the following steps:
W1:Fast newly-increased forms input is set:
W2:By fast increasing forms input newly, all of role that the active user of display login system currently associates have newly Increase the list of authority, each role is independent individual, rather than group/class, same one role of period can only associate uniquely User, and one or more roles of user-association;
W3:The list of any display in step W2 is chosen as needed, shows the corresponding newly-increased interface of the list.
When user loses the newly-increased authority of a certain list, if the fast newly-increased list that the list, which is the user, have been chosen, Then this fast increases list newly and not shown.List is similar with menu, therefore no longer citing is illustrated.
This application provides a kind of shortcut function method to set up, it is easy to be rapidly completed the newly-increased of list, improves office effect Rate;Same one role of period can only associate unique user, only need to be by the new angle of the user-association when the new registration of user or transfer-position Color, you can obtain the corresponding list for having a newly-increased authority of the association role by fast increasing forms input newly, be greatly improved List Authorized operation efficiency in system use.
In existing management mode, as middle level and corporate executive, it is necessary to check or handle various, number The many lists of amount.
For list, its newly-increased button is typically found in the corresponding function interface of the list, and user is if desired Increase the list newly, then first must find the corresponding function interface of the list step by step, the list could be increased newly.For example:With Family needs newly-built one " client's list ", then needs to find " CRM ", " client ", " customer account management " step by step, then can just see visitor Family increases corresponding operating function newly.For needing the personnel that frequent operation increases list newly, such as contact staff after sale often answers One service calls after sale is required for newly-increased one to ask single after sale, to search to increase newly step by step every time and ask single after sale, Workload is big and cumbersome.The application improves table by setting quick newly-increased forms input to be rapidly completed the newly-increased of list Single newly-increased efficiency of management, reduces the workload of the newly-increased operation of list.
Described above is only the preferred embodiment of the present invention, it should be understood that the present invention is not limited to described herein Form, is not to be taken as the exclusion to other embodiment, and available for various other combinations, modification and environment, and can be at this In the text contemplated scope, it is modified by the technology or knowledge of above-mentioned teaching or association area.And those skilled in the art are entered Capable change and change does not depart from the spirit and scope of the present invention, then all should appended claims of the present invention protection domain It is interior.

Claims (10)

1. shortcut function method to set up, it is characterised in that including set shortcut menu access procedures, set shortcut menu step, The step of showing shortcut menu by shortcut menu entrance, is provided with shortcut menu access procedures and sets shortcut menu step In no particular order, it is specific as follows:
Shortcut menu access procedures are set:Shortcut menu entrance is set, for showing and menu swift to operate;
Shortcut menu step is set:
S1:The role's that the active user of acquisition login system currently associates is all with the menu for checking authority, each described Role is independent individual, rather than group/class, and same one role of period can only associate unique user, and a user-association One or more roles;
S2:User is as needed from choosing one or more as shortcut menu in the menu for checking authority;
The step of shortcut menu is shown by shortcut menu entrance:
K1:Pass through the shortcut menu chosen in shortcut menu entrance step display S2;
K2:Any shortcut menu in step K1 is chosen as needed, the corresponding function interface of the shortcut menu is shown.
2. shortcut function method to set up according to claim 1, it is characterised in that:When user loses checking for a certain menu During authority, if the menu is the shortcut menu that the user has chosen, the shortcut menu is not shown.
3. shortcut function method to set up, it is characterised in that:Including setting fast newly-increased forms input step, setting fast newly-increased table Single stage, by fast increasing the step of forms input show fast newly-increased list newly, be provided with fast increasing forms input newly and walk Fast newly-increased list step is in no particular order, specific as follows for rapid and setting:
Fast newly-increased forms input step is set:Fast newly-increased forms input is set, for showing and newly-increased list swift to operate;
Fast newly-increased list step is set:
P1:All lists with newly-increased authority for the role that the active user of acquisition login system currently associates, it is each described Role is independent individual, rather than group/class, and same one role of period can only associate unique user, and a user-association One or more roles;
P2:User chooses one or more as quick newly-increased list from the list with newly-increased authority as needed;
By fast increasing the step of forms input shows fast newly-increased list newly:
L1:The fast newly-increased list chosen by fast increasing newly in forms input step display P2;
L2:Any fast newly-increased list in step L1 is chosen as needed, shows the fast newly-increased corresponding newly-increased interface of list.
4. shortcut function method to set up, it is characterised in that:Comprise the following steps:
W1:Fast newly-increased forms input is set:
W2:By fast increasing forms input newly, all of role that the active user of display login system currently associates have newly Increase the list of authority, each role is independent individual, rather than group/class, same one role of period can only associate uniquely User, and one or more roles of user-association;
W3:The list of any display in step W2 is chosen as needed, shows the corresponding newly-increased interface of the list.
5. shortcut function method to set up according to claim 4, it is characterised in that:Described role must select when creating One department, role role if after creating belongs to the department, and the role is unique under the department, according to role's Action is authorized to role.
6. shortcut function method to set up according to claim 5, it is characterised in that:Also include a trans-departmental transfer-position of user Management process, is specifically included:
(1)Cancellation user associates with the role's in former department;
(2)User is associated with the role in new department.
7. shortcut function method to set up according to claim 4, it is characterised in that:Described user can and can only be by it Defined the competence with associating for role.
8. shortcut function method to set up according to claim 4, it is characterised in that:The composition of the role is:Post name+ Numbered in hilllock.
9. shortcut function method to set up according to claim 4, it is characterised in that:The role includes role name and role Unique under numbering, the department that the role name is selected when role creates, role's numbering is unique in systems.
10. shortcut function method to set up according to claim 4, it is characterised in that:When user loses the new of a certain list When increasing authority, if the fast newly-increased list that the list, which is the user, have been chosen, the quick newly-increased list is not shown.
CN201710553954.9A 2017-07-09 2017-07-09 Shortcut function method to set up Pending CN107292198A (en)

Priority Applications (3)

Application Number Priority Date Filing Date Title
CN201710553954.9A CN107292198A (en) 2017-07-09 2017-07-09 Shortcut function method to set up
PCT/CN2018/094322 WO2019011162A1 (en) 2017-07-09 2018-07-03 Shortcut function setting method
CN201810720004.5A CN108958870B (en) 2017-07-09 2018-07-03 Shortcut function setting method

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201710553954.9A CN107292198A (en) 2017-07-09 2017-07-09 Shortcut function method to set up

Publications (1)

Publication Number Publication Date
CN107292198A true CN107292198A (en) 2017-10-24

Family

ID=60101359

Family Applications (2)

Application Number Title Priority Date Filing Date
CN201710553954.9A Pending CN107292198A (en) 2017-07-09 2017-07-09 Shortcut function method to set up
CN201810720004.5A Active CN108958870B (en) 2017-07-09 2018-07-03 Shortcut function setting method

Family Applications After (1)

Application Number Title Priority Date Filing Date
CN201810720004.5A Active CN108958870B (en) 2017-07-09 2018-07-03 Shortcut function setting method

Country Status (2)

Country Link
CN (2) CN107292198A (en)
WO (1) WO2019011162A1 (en)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2019011162A1 (en) * 2017-07-09 2019-01-17 成都牵牛草信息技术有限公司 Shortcut function setting method
CN110427750A (en) * 2019-07-23 2019-11-08 武汉宏途科技有限公司 A kind of method and system carrying out the control of list permission by permission combination

Families Citing this family (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109766158A (en) * 2018-12-27 2019-05-17 益萃网络科技(中国)有限公司 Methods of exhibiting, device, computer equipment and the storage medium of user interface
CN114139139A (en) * 2022-02-07 2022-03-04 树根互联股份有限公司 Authority management and control method and device for service and application and electronic equipment

Family Cites Families (18)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7676542B2 (en) * 2002-12-02 2010-03-09 Sap Ag Establishing a collaboration environment
CN100381964C (en) * 2003-12-26 2008-04-16 华为技术有限公司 A user right management method
CN1773413B (en) * 2004-11-10 2010-04-14 中国人民解放军国防科学技术大学 Character constant weight method
CN101042627A (en) * 2006-03-24 2007-09-26 乐金电子(中国)研究开发中心有限公司 Method for rapid turning back to displaying menu in displaying bar
US20080289036A1 (en) * 2007-05-19 2008-11-20 Madhusudanan Kandasamy Time-based control of user access in a data processing system incorporating a role-based access control model
CN101373527A (en) * 2007-08-24 2009-02-25 上海全成通信技术有限公司 Human authority control method engaged with system
CN101441688B (en) * 2007-11-20 2015-08-19 阿里巴巴集团控股有限公司 A kind of user right distribution method and a kind of user authority control method
CN102043931B (en) * 2010-01-19 2013-02-13 中国人民解放军第二军医大学东方肝胆外科医院 Private data access control method based on role permission dynamic conversion
CN102468971A (en) * 2010-11-04 2012-05-23 北京北方微电子基地设备工艺研究中心有限责任公司 Authority management method and device, and authority control method and device
CN102354356B (en) * 2011-09-29 2014-06-04 用友软件股份有限公司 Data authority management device and method
CN102567675B (en) * 2012-02-15 2015-09-30 合一网络技术(北京)有限公司 Method for managing user right under a kind of operation system and system
US20130332540A1 (en) * 2012-06-12 2013-12-12 International Business Machines Corporation Structural Presentation and Smart Alerts for Instant Messaging Contacts
CN103927167B (en) * 2014-03-31 2017-02-15 国网山东省电力公司 Functional-granularity highly-customizable system integration method
CN105373726A (en) * 2014-08-18 2016-03-02 南京普爱射线影像设备有限公司 User authority management system
CN106293354B (en) * 2015-05-28 2020-03-10 深圳壹账通智能科技有限公司 Shortcut menu self-adaptive display control method, server and portable terminal
CN104951527A (en) * 2015-06-12 2015-09-30 深圳互娱网络科技有限公司 System and method for rapid configuration of database management background
CN105930330A (en) * 2015-12-28 2016-09-07 ***股份有限公司 Portal system page display method and apparatus
CN107292198A (en) * 2017-07-09 2017-10-24 成都牵牛草信息技术有限公司 Shortcut function method to set up

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2019011162A1 (en) * 2017-07-09 2019-01-17 成都牵牛草信息技术有限公司 Shortcut function setting method
CN110427750A (en) * 2019-07-23 2019-11-08 武汉宏途科技有限公司 A kind of method and system carrying out the control of list permission by permission combination

Also Published As

Publication number Publication date
WO2019011162A1 (en) 2019-01-17
CN108958870A (en) 2018-12-07
CN108958870B (en) 2021-12-07

Similar Documents

Publication Publication Date Title
CN107315931A (en) Form field values operating right authorization method
CN107301335A (en) The list operating right authorization method of based role
CN107180334A (en) Based role is to the man-to-man Work-flow control method and system of user
CN107203870A (en) The method that workflow approval node is examined role by Department formation
CN107045675A (en) The method that workflow approval node is set examination & approval role by role
CN108805532A (en) The efficient measures and procedures for the examination and approval of workflow approval node
CN107103228A (en) Man-to-man permission grant method and system of the based role to user
CN107480512A (en) Examination & approval task based on modified RBAC mechanism of authorization control delivers method
CN107480544A (en) Count list operation permission grant method
CN107302540A (en) The management method of instant messaging account in management system
CN107368968A (en) A kind of system work dispatching method
CN107292198A (en) Shortcut function method to set up
CN109032458A (en) The authorization method for the form data that based role obtains
CN107292588A (en) The method authorized respectively to list operating right according to form field values
CN108550029A (en) The method that workflow approval node examines role by department's rank setting
CN107480948A (en) Approver is directed to the method that examination & approval task seeks the opinion of advisory opinion
CN107330307A (en) A kind of form data operating right authorization method
CN107480557A (en) Show the authorization method of all system user current entitlement states
CN107370748A (en) The method to set up of authority is checked in operation note based on the period
CN107292580A (en) The commission of examination and approval workflow and its recommit method
CN107527392A (en) A kind of work attendance method to set up of system
CN107392499A (en) Approval process and its method for approval node mandate are carried out to user
CN109087001A (en) The method for supervising review operation, Authorized operation and list operation
CN107256361A (en) Employee logs in the authority display methods after its account in system
CN107169074A (en) Man-to-man organization chart generation and application process of the based role to user

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
WD01 Invention patent application deemed withdrawn after publication
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20171024