为了降低北京大学各院系等基层单位的信息化门槛,深化学校信息化建设,根据学校院系管理的需求特点,提出了一种SaaS云服务环境下的管理信息系统方案.探讨了方案的多层次可扩展的应用架构,并且重点研究了其中的3个关键技术:多层次数据存储模型,基于IAAA的多租户访问控制策略MTIAAA,以及面向多租户的可配置方法和运行机制.
In order to improve the information construction of Peking University and facilitate the steps of each department,this paper presents a multitenantoriented SaaS solution by analyzing the requirements. It discusses the extendable multilayer application framework and focuses on three key technologies, which are multilayer data storage model, multitenantoriented IAAA access control strategy and configuration/deployment methodology.
[1]CHONG F, CARRARO G. Architecture strategies for catching the long tail[R]. MSDN Library, Microsoft Corporation, 2006: 910.
[2]KANG S,MYUNG J,YEON J,et al. A general maturity model and reference architecture for saas service[C]//Proceedings of the 15th International Conference on Database Systems for Advanced Applications,2010:337346.
[3]周学权,战德臣,聂兰顺,等.面向多租户的多层次可伸缩 SaaS 软件架构研究[J]. 华中科技大学学报 :自然科学版, 2013,41(增刊Ⅱ):131136.
[4]李晓娜,李庆忠,孔兰菊,等.基于共享模式的SaaS多租户数据划分机制研究[J].通信学报,2012(9):110119.
[5]WEISSMAN C D, AND BOBROWSKI S.The design of the force.com multitenant internet application development platform[C]//Proceedings of the ACM SIGMOD International Conference on Management of Data,2009:889896.
[6]马旭.一种基于SaaS的云计算安全模型(英)[J].宁夏师范学院学报:自然科学版,2011,32(6):3945.
[7]LI DC, LIU C, WEI Q, et al.RBACBased Access Control for SaaS Systems[C]//Proceedings of 2nd International Conference on InformationEngineering and Computer Science,ICIECS,2010:14.
[8]史玉良,栾帅,李庆忠,等.基于 TLA 的 SaaS 业务流程定制及验证机制研究[J].计算机学报,2010,33(11):20562067.
[9]张一川,张斌,刘莹.支持多租约个性化业务租约模型的SaaS业务租约模型[J].东北大学学报,2012,33(5):636640.
[10]CHONG F, CARRARO G, WOLTER R. Multitenant data architecture[EB/OL]. MSDN Library, Microsoft Corporation, 2006[20150417].http://msdn.microsoft.com/enus/library/aa479086.aspx.
[11]欧阳荣彬,王倩宜,李丽,等. 基于属性规则的用户授权模型的研究与实现[J]. 中山大学学报, 2009,48(增刊):277279.
[12]欧阳荣彬,王倩宜,李丽,等. 基于属性规则的数据权限模型的研究与实现[J]. 大连海事大学学报, 2010, 36(2):8183.