Information processing system and information processing device
The information processing system addresses security vulnerabilities in conventional user authentication by managing distinct authentication methods for internal and external users, ensuring secure temporary access through direct communication, thereby enhancing system security.
Patent Information
- Authority / Receiving Office
- JP · JP
- Patent Type
- Applications
- Current Assignee / Owner
- OKI ELECTRIC INDUSTRY CO LTD
- Filing Date
- 2024-12-10
- Publication Date
- 2026-06-22
AI Technical Summary
Conventional user authentication methods using IDs and passwords are vulnerable to fraudulent access, particularly when allowing temporary use by external users, posing a security risk.
An information processing system that manages separate authentication information for internal and external users, utilizing both possession and knowledge-based authentication, with secure direct communication between terminals to transmit and verify authentication data, ensuring secure temporary access without compromising security.
Enhances security by preventing unauthorized access during temporary user authentication, even when external users are involved, thus maintaining system integrity.
Smart Images

Figure 2026101069000001_ABST
Abstract
Description
Technical Field
[0001] The present invention relates to an information processing system and an information processing apparatus, and for example, relates to a system involving authentication of a user who temporarily uses an information processing apparatus.
Background Art
[0002] Conventionally, as a method of limiting the users of information devices (such as printers, multifunction devices, etc.) owned by an organization (such as a company or a group), the administrator of the information device registers the users within the organization in the device in advance, contacts each user with identification information such as an ID and a password, and the user uses the information device after inputting the identification information and receiving authentication. Such a mechanism is known.
[0003] However, in conventional information devices, when a user who is not registered in advance (for example, a user outside the organization) uses the device temporarily with permission, the administrator of the information device has to issue identification information to the information device temporarily, which imposes a heavy burden on the administrator of the information device.
[0004] Conventionally, as a method of managing users who are permitted to use an information device in advance (hereinafter referred to as "internal users") and users who are temporarily permitted to use the device other than internal users (hereinafter referred to as "external users") in an information device, there is the technique described in Patent Document 1.
[0005] In the technique described in Patent Document 1, when an external user uses the information device, an internal user issues and permits a user ID that can be used temporarily to the external user on behalf of the administrator.
Prior Art Documents
Patent Documents
[0006]
Patent Document 1
Summary of the Invention
Problems to be Solved by the Invention
[0007] However, unlike conventional information devices, user authentication using only an ID and password carries the risk of being bypassed through fraudulent means. For example, there is a high possibility that a third party could use the information device by illegally obtaining the ID and password through eavesdropping.
[0008] In light of the above issues, it is desirable to prevent a decrease in security even when allowing users other than those who have been registered in advance to temporarily use information processing equipment (for example, information devices such as printers and multifunction devices). [Means for solving the problem]
[0009] The first aspect of the present invention relates to an information processing system comprising: an information processing device; a first information terminal used by a first user authorized to use the information processing device; and a second information terminal used by a second user other than the first user who is temporarily authorized to use the information processing device, wherein the information processing device manages first authentication information and second authentication information corresponding to the second user, and performs authentication processing to authorize the second information terminal to use the device using the first authentication information and the second authentication information; an authentication information communication unit which transmits the first authentication information to the first information terminal used by the first user and receives the first authentication information from the second information terminal; and an authentication information output unit which outputs the second authentication information corresponding to the first authentication information transmitted by the authentication processing unit. The authentication processing unit includes a holding unit that holds the second authentication information received from the second user during authentication processing using the second information terminal; the first information terminal includes a first terminal-side authentication information communication unit and a first terminal-side authentication processing unit that receives and holds the first authentication information from the information processing device via the first terminal-side authentication information communication unit and transmits the held first authentication information to the second information terminal via the first terminal-side authentication information communication unit; and the second information terminal includes a second terminal-side authentication information communication unit and a second terminal-side authentication processing unit that receives and holds the first authentication information from the first information terminal via the second terminal-side authentication information communication unit and transmits the held first authentication information to the information processing device via the second terminal-side authentication information communication unit when requesting authentication processing from the information processing device.
[0010] The second aspect of the present invention relates to an information processing device that performs authentication using a first information terminal used by a first user authorized to use the information processing device and a second information terminal used by a second user temporarily authorized to use the information processing device, the device comprising: an authentication processing unit that manages first authentication information and second authentication information corresponding to the second user and performs authentication processing to authorize the second information terminal to use the device using the first authentication information and the second authentication information; an authentication information communication unit that transmits the first authentication information to the first information terminal used by the first user and receives the first authentication information from the second information terminal by the authentication processing unit; an authentication information output unit that outputs the second authentication information corresponding to the first authentication information transmitted by the authentication processing unit; and a holding unit that holds the second authentication information received from the second user during authentication processing using the second information terminal by the authentication processing unit. [Effects of the Invention]
[0011] According to this invention, even when users other than those previously registered are allowed to temporarily use the information processing device, it is possible to prevent a decrease in security. [Brief explanation of the drawing]
[0012] [Figure 1] This is a block diagram showing the overall configuration of the information processing system according to the embodiment (including the functional configuration of the information processing device). [Figure 2] This figure shows an example configuration of an external user management database according to the embodiment. [Figure 3] This is a block diagram showing an example of the internal configuration of an information terminal according to the embodiment. [Figure 4] This diagram illustrates examples of the usage of information terminals (internal information terminals, external information terminals, and third-party terminals) according to the embodiment. [Figure 5] This figure shows an example of the configuration of authentication information held in the storage unit of an information terminal according to the embodiment. [Figure 6]It is a sequence diagram showing the operation when an external user is registered in the information processing apparatus according to the embodiment. [Figure 7] In the sequence diagram of FIG. 6, it is a diagram showing a configuration example of an operation screen (GUI screen) displayed on the display unit of the information processing apparatus according to the embodiment. [Figure 8] In the sequence of FIG. 6, it is a diagram showing a configuration example of an operation screen (GUI screen) displayed on the display unit of the internal information terminal according to the embodiment. [Figure 9] It is a sequence diagram showing the process of transmitting authentication data from the internal information terminal according to the embodiment to the external information terminal. [Figure 10] In the sequence of FIG. 9, it is a diagram showing a configuration example of an operation screen (GUI screen) displayed on the display unit of the internal information terminal according to the embodiment. [Figure 11] In the sequence of FIG. 9, it is a diagram showing a configuration example of an operation screen (GUI screen) displayed on the display unit of the external information terminal according to the embodiment. [Figure 12] It is a sequence diagram showing the process when the information processing apparatus according to the embodiment accepts the first authentication for an external user. [Figure 13] In the sequence of FIG. 12, it is a diagram showing an example of an operation screen displayed on the display unit of the information processing apparatus according to the embodiment. [Figure 14] It is a sequence diagram showing the process when the information processing apparatus according to the embodiment accepts authentication for an external user after the second time. [Figure 15] In the information processing system according to the embodiment, it is a diagram showing the difference in information that can be obtained or used by an internal user, an external user, and a third party.
Embodiments for Carrying Out the Invention
[0013] (A) Main Embodiment Hereinafter, an embodiment of an information processing system and an information processing apparatus according to the present invention will be described in detail with reference to the drawings.
[0014] (A-1) Configuration of the Embodiment FIG. 1 is a block diagram showing the overall configuration of the information processing system 1 according to this embodiment (including the functional configuration of the information processing apparatus 10).
[0015] As shown in FIG. 1, in the information processing system 1, one information processing apparatus 10 and a plurality of information terminals 20 (internal information terminal 20-1, external information terminal 20-2, third-party terminal 20-3, etc.) are arranged. Note that the number of information processing apparatuses 10 and the number of information terminals 20 arranged in the information processing system 1 are not limited.
[0016] The information processing apparatus 10 is an information device that can be used by the users of the information terminals 20. The information processing apparatus 10 corresponds to, for example, information devices such as a printer or a multifunction peripheral. In this embodiment, the information processing apparatus 10 will be described as a printer, but it may be other information devices.
[0017] The information terminal 20 is a terminal possessed (used) by users such as the users of the information processing apparatus 10. The information terminal 20 corresponds to, for example, portable information terminals such as a smartphone, a tablet PC, or a mobile PC. The information terminal is, for example, a terminal used by a user (hereinafter referred to as an "internal user") registered in the information processing apparatus 10 in advance and a user (hereinafter referred to as an "external user") who is temporarily permitted to use the information processing apparatus 10 other than the internal user. In the information processing apparatus 10 of this embodiment, the external user is registered according to the operation of the internal user.
[0018] Next, the internal configuration of the information processing apparatus 10 will be described using FIG. 1.
[0019] The information processing apparatus 10 includes an information processing unit 11, a storage unit 12, a display unit 13, an operation unit 14, an authentication information communication unit 15, a processing unit 16, a functional unit 17, and a network communication unit 18.
[0020] The information processing unit 11 is responsible for performing various information processing functions and includes at least an authentication processing unit 111. The information processing unit 11 may be configured entirely using hardware (e.g., a dedicated chip), or it may be configured partially or entirely using software. For example, the information processing unit 11 may be configured by installing a program (including program 1 corresponding to the authentication processing unit 111 according to the embodiment) on a computer equipped with a processor, memory, etc. (not shown).
[0021] The authentication processing unit 111 is responsible for functions such as authentication processing for the information terminal 20 within the information processing unit 11. Details of the authentication processing performed by the authentication processing unit 111 will be described later.
[0022] The storage unit 12 is a storage means (secondary storage means) that stores information necessary for the information processing performed by the information processing unit 11. The storage unit 12 stores an internal user management database 121 for managing information about internal users, an external user management database 122 for managing information about external users, and a history information database 123 for managing information about the usage history of the function unit 17 by each user (for example, information including the date and time of printing and the number of pages printed for each user).
[0023] In this embodiment, authentication for internal users is described as being performed internally by the information processing device 10 itself, but authentication for internal users may also be performed by an external system not shown (for example, authentication processing by an external system such as LDAP (Lightweight Directory Access Protocol) or Active Directory). If authentication for internal users is performed outside the information processing device 10, it is not necessary for the information processing device 10 (storage unit 12) to manage the internal user management database 121.
[0024] Figure 2 shows an example configuration of the external user management database 122.
[0025] In the external user management database 122 shown in Figure 2, at least the user ID, password, authentication data, registered internal user, expiration date, and password change flag are registered for each external user. The password is either a password issued to the external user upon initial registration (hereinafter referred to as the "temporary password") or a password arbitrarily set by the external user (hereinafter referred to as the "arbitrary password"). The authentication data is the data used to authenticate the external user. The expiration date indicates the period during which the external user ID can be used. Furthermore, in the external user management database 122, restrictions on the temporary use of external users may be imposed using other methods (for example, the number of pages printed or the number of prints) along with the expiration date using logical conditions such as AND or OR conditions, or restrictions may be imposed using other methods instead of the expiration date. In Figure 2, for illustrative purposes, "AD1"..."ADn" is displayed as the authentication data identifier corresponding to user IDs: EU1...EUn, but in reality, the authentication data itself or the path (link destination) of the file in which the authentication data is stored may be set. The registered internal user is the user ID of the internal user who registered the external user. The password change flag stores a flag indicating "Not changed" when the password in management database 122 is a "temporary password," and stores a flag indicating "Changed" when the "temporary password" is changed to an "arbitrary password." In Figure 2, the password change flag is "Not changed" for the data with user ID "EU1," and "Changed" for the data with user ID "EUn." In this case, the external user with user ID "EU1" has not had their password changed (the password is a "temporary password"), and the external user with user ID "EUn" has had their password changed (the password is an "arbitrary password"). The password change flag for the data with user ID "EU1" will also change to "Changed" after the password is changed.In addition, the external user management database 122 may be configured to omit the password change flag shown in Figure 2, and instead determine whether the password has been changed (whether the temporary password has been overwritten with an arbitrary password) based on whether valid information is stored in the password change date and time information.
[0026] In the information processing device 10, a hardware-based user interface is configured by a display unit 13 and an operation unit 14. The display unit 13 is responsible for displaying information to the user. The display unit 13 can be configured by, for example, various types of displays. The operation unit 14 can be configured by, for example, a keyboard with multiple hardware keys or various pointing devices. Alternatively, the information processing device 10 may also configure a hardware-based user interface using an input / output device such as a touch panel display (a device in which the display unit 13 and the operation unit 14 are integrated).
[0027] The authentication information communication unit 15 is responsible for the function of communicating directly (direct wireless communication or direct wired communication) with the information terminal 20 when it is brought close to it. The authentication information communication unit 15 can be configured with a device that supports the NFC (Near Field Communication) communication method (for example, an NFC-compatible wireless tag). Hereinafter, the wireless communication path configured by the authentication information communication unit 15 will also be referred to as the "direct wireless communication path".
[0028] Furthermore, direct communication by the authentication information communication unit 15 may be performed using "direct wired communication," which involves placing the information terminal 20 close to the reach of a signal cable such as USB (Universal Serial Bus) and directly connecting it, instead of using the "direct wireless communication channel."
[0029] The functional unit 17 is hardware that corresponds to the various functions that the information processing device 10 has as an information device. For example, if the information processing device 10 is a printer, the functional unit 17 is hardware that includes a printing mechanism (image forming mechanism) that prints (forms an image) on printing paper (medium). Also, for example, if the information processing device 10 is a multifunction device, the functional unit 17 is hardware that includes a scanner for reading documents in addition to the printing mechanism (image forming mechanism).
[0030] The processing unit 16 is responsible for controlling each part, including the functional unit 17. For example, if the information processing device 10 is a printer, the processing unit 16 performs processing to control the functional unit 17 so that it prints an image based on the supplied image data (for example, image data supplied from the information processing unit 11) onto the printing paper.
[0031] The network communication unit 18 is responsible for connecting the information processing device 10 to a network via wired or wireless connection. The network communication unit 18 can utilize a network interface such as a wired or wireless LAN (Local Area Network).
[0032] Next, an example of the internal configuration of the information terminal 20 will be explained using Figure 3.
[0033] Figure 3 is a block diagram showing an example of the internal configuration of the information terminal 20.
[0034] In this embodiment, each information terminal 20 (20-1, 20-2, 20-3...) is assumed to have a configuration that can be shown using Figure 3. The configuration of each terminal is assigned -1 for information terminal 20-1, -2 for information terminal 20-2, and -3 for information terminal 20-3. When providing a common explanation, the part after the hyphen (-) is omitted.
[0035] As shown in Figure 3, each information terminal 20 (20-1, 20-2, 20-3...) includes a display unit 21 (21-1, 21-2, 21-3...), an operation unit 22 (22-1, 22-2, 22-3...), an authentication information communication unit 23 (23-1, 23-2, 23-3...), an information processing unit 24 (24-1, 24-2, 24-3...), a storage unit 25 (25-1, 25-2, 25-3...), and a network communication unit 26 (26-1, 26-2, 26-3...).
[0036] Furthermore, various smartphones and tablet PCs equipped with the function of directly communicating wirelessly (NFC communication in this embodiment) or directly connecting via wired connection (i.e., a device corresponding to the authentication information communication unit 23) with the information processing device 10 (and between each information terminal) can be used as information terminals 20 (20-1, 20-2, 20-3...).
[0037] In the information terminal 20, the hardware user interface is configured by a display unit 21 and an operation unit 22. The display unit 21 is responsible for displaying information to the user. The display unit 21 can be configured by, for example, various displays. The operation unit 22 can be configured by, for example, a keyboard with multiple hardware keys or various pointing devices. In addition, the information terminal 20 may also configure the hardware user interface by an input / output device such as a touch panel display (a device in which the display unit 21 and the operation unit 22 are integrated).
[0038] The authentication information communication unit 23 is responsible for the function of directly communicating wirelessly with the information processing device 10 (authentication information communication unit 15) and other information terminals 20 (authentication information communication unit 23) (in this embodiment, the NFC communication function). The authentication information communication unit 23 can be configured by a device equipped with various NFC communication functions (for example, an NFC-compatible wireless tag).
[0039] The information processing unit 24 is responsible for performing various information processing functions. For example, the information processing unit 24 can be configured using a computer equipped with a processor, memory, etc. (not shown). In this embodiment, the information processing unit 24 is assumed to have an application 241 installed, which acts as an authentication processing unit that performs authentication processing for the information processing device 10. The application 241 is assumed to be able to perform various processes by communicating with the information processing system 1 and other information terminals 20 via the authentication information communication unit 23.
[0040] The information processing unit 24 is responsible for performing various information processing functions, and although an example has been shown that it has at least an application 241, the information processing unit 24 may be configured entirely using hardware (for example, a dedicated chip), or it may be configured partially or entirely using software.
[0041] The memory unit 25 is a storage means (secondary storage means) that stores information necessary for information processing performed by the information processing unit 24. At least the authentication information 251 processed by the application 241 is stored in the memory unit 25. The authentication information 251 is set (reserved) on the memory unit 25 when the application 241 is installed.
[0042] The network communication unit 26 is responsible for connecting the information terminal 20 to the network by wire and / or wireless means. The network communication unit 26 can, for example, be a wireless LAN interface or a network interface that connects to a mobile communication network of a communication carrier.
[0043] Furthermore, it is desirable that the authentication information communication unit 23 operates only when the network communication unit 26 is disabled. In other words, when the authentication information communication unit 23 communicates on the information terminal 20, it is desirable that the network communication unit 26 be disabled.
[0044] Next, we will explain the overview of the authentication process between the information processing device 10 and the information terminal 20 (hereinafter referred to as the "user authentication process").
[0045] Figure 4 shows an example of the usage of information terminals 20-1, 20-2, and 20-3 in this embodiment.
[0046] As shown in Figure 4, here we assume that information terminal 20-1 is owned by an internal user with user ID "IU1", information terminal 20-2 is owned by an external user with user ID "EU1", and information terminal 20-3 is owned by a third party who is not authorized to use the information processing device 10 (i.e., neither an internal nor an external user). Hereafter, information terminal 20-1 used by the internal user will also be referred to as the "internal information terminal". Furthermore, information terminal 20-2 used by the external user will also be referred to as the "external information terminal". In addition, information terminal 20-3 used by the third party will also be referred to as the "third-party terminal". Hereafter, the user ID "EU1" of the external user will be described as being registered in the information processing device 10 (external user management database 122) by an operation of the internal user with user ID "IU1".
[0047] Figure 5 shows an example of the configuration of authentication information 251 held in the storage unit 25 of the information terminal 20.
[0048] As shown in Figure 5, the authentication information 251 (251-1, 251-2, 251-3...) can be broadly divided into possession authentication information 31 (31-1, 31-2, 31-3...) and knowledge authentication information 32 (32-1, 32-2, 32-3...).
[0049] The possessed authentication information 31 includes authentication data used during the authentication process for the information processing device 10. Figure 5 shows an example where one authentication data AD is set in the possessed authentication information 31. It is desirable that the authentication data be data generated based on, for example, random numbers that are difficult to predict (e.g., text data or binary data). It is also desirable that the authentication data be as large as possible within the data size range that can be communicated using the authentication information communication unit 23. In other words, it is desirable that the authentication data be generated in a way and size that makes it difficult for third parties to guess the generation method and the generated data. In this embodiment, the authentication data is issued (generated) by the authentication processing unit 111 of the information processing device 10 and transmitted via the authentication information communication unit 15 only to the information terminal 20 used by the internal user (here, internal information terminal 20-1). Furthermore, in this embodiment, authentication data communicated directly by the information processing device 10 to the internal information terminal 20-1 can be transmitted and received once between the information terminals 20 (between the internal information terminal 20-1 and the external information terminal 20-2) through processing by the application 241 (authentication data transmitted and received once between the information terminals 20 is managed by a flag or the like (not shown) to restrict further transmission and reception between information terminals). Moreover, in this embodiment, the information terminal 20 can only transmit and receive (transfer) authentication data via the authentication information communication unit 23 under the control of the application 241. In other words, in this embodiment, authentication data set on the external information terminal 20-2 is supplied from the information processing device 10 to the external information terminal 20-2 via the internal information terminal 20-1. And in this embodiment, when authentication data is transmitted between devices, in order to ensure security, it is always done using direct communication at a location where the destination of transmission and reception on the internal information terminal 20-1 operated by the internal user can be visually confirmed, for example, using a direct wireless communication channel (NFC in this embodiment).
[0050] The knowledge authentication information 32 includes a password used during the authentication process for the information processing device 10. The knowledge authentication information 32 shown in Figure 5 is an example in which a temporary password TP, which can only be used during the initial authentication to the information processing device 10, and an arbitrary password AP, which is a password consisting of any string set by the user (a password that can be used for subsequent authentications), are set. The knowledge authentication information 32 may also include a user ID used for authentication. In this embodiment, the knowledge authentication information 32 (password) is transmitted between the internal information terminal 20-1 and the external information terminal 20-2 without using a direct wireless communication channel (for example, it is displayed on the display unit 21-1 of the internal information terminal 20-1, transmitted directly as knowledge between users, and input from the operation unit 22-2 of the external information terminal 20-2).
[0051] Furthermore, the information processing device 10 and the internal information terminal 20-1, or the information processing device 10 and the external information terminal 20-2, may be transmitted using a direct wireless communication channel, or they may be output by other means (methods) (for example, by displaying the output on the display unit 13 of the information processing device 10 and directly transmitting it as knowledge between users).
[0052] Furthermore, in this embodiment, the information processing device 10 (authentication processing unit 111) may receive the knowledge authentication information 32 (password) directly from the operation unit 14 (direct input by an external user). In this embodiment, if the external information terminal 20-2 does not need to transmit a password to the information processing device 10 (for example, by transmitting it directly using a wireless communication channel), the knowledge authentication information 32 does not need to be stored in the storage unit 25 (authentication information 251).
[0053] As described above, the information processing device 10 (authentication processing unit 111) shall perform authentication processing using both authentication data and a password when performing authentication processing for an external user.
[0054] Furthermore, the authentication method for internal users may be the same as that for external users (i.e., an authentication method using authentication data and passwords), or other authentication methods may be applied. In this embodiment, the application 241 installed on the internal information terminal 20-1 and the application 241 installed on the external information terminal 20-2 are the same program (software), and the operating mode changes depending on the settings for internal and external users. However, it is also possible to prepare and install separate applications (an application for internal users and an application for external users).
[0055] (A-2) Operation of the embodiment Next, the operation of the information processing system 1 of this embodiment will be described.
[0056] Figure 6 is a sequence diagram showing the operation when an external user (ID: EU1) is registered in the information processing device 10.
[0057] Figure 7 shows an example of the configuration of the operation screen (GUI screen) displayed on the display unit 13 of the information processing device 10 in the sequence shown in Figure 6.
[0058] Figure 8 shows an example of the configuration of the operation screen (GUI screen) displayed on the display unit 21 of the internal information terminal 20-1 in the sequence shown in Figure 6.
[0059] Here, we assume that an internal user with the user ID "IU1" is already registered in the internal user management database 121 of the information processing device 10. Furthermore, we assume that application 241 is already installed on the internal information terminal 20-1 and is operating in an internal user-specific mode.
[0060] First, the information processing device 10 (authentication processing unit 111) accepts authentication of the internal user (IU1) in response to an operation by the internal user (IU1) (for example, an operation via a menu screen not shown) (S101).
[0061] At this time, the information processing device 10 (authentication processing unit 111) performs authentication processing as an internal user by predetermined authentication processing as described above. For example, at this time, the information processing device 10 (authentication processing unit 111) may accept input of information necessary for authentication (e.g., user ID and password, etc.) from the internal user (IU1) via the operation unit 22 and perform authentication processing. Alternatively, for example, at this time, the information processing device 10 (authentication processing unit 111) may perform authentication by accepting transmission of authentication data and password from the application 241 of the internal information terminal 20-1 via the authentication information communication unit 23.
[0062] Next, the authentication processing unit 111 of the information processing device 10 performs authentication processing (for example, verification of a password, etc.) on the received internal user (IU1) and determines that authentication is successful (S102).
[0063] Next, the authentication processing unit 111 of the information processing device 10 registers a new external user in response to an operation by an internal user (IU1) via the operation unit 22 (for example, an operation via a menu screen not shown) and accepts the issuance of information necessary for authentication for that external user (authentication data and a temporary password) (S103). Note that the authentication processing unit 111 only allows the registration of a new external user for internal users and does not accept it even if the external user has successfully authenticated (for example, the system is configured so that such a menu selection is not available to external users).
[0064] Next, the authentication processing unit 111 of the information processing device 10 issues a user ID, temporary password, and authentication data for the new external user (S104), and registers the data of the external user in the external user management database 122 (S105).
[0065] The User ID issued to the external user at this time is assumed to be "EU1". At this time, the data shown in Figure 2 is assumed to be registered in the external user management database 122. At this time, as shown in Figure 2, the data for User ID: EU1 in the external user management database 122 is assumed to be as follows: Password: "P4SS_TEMP_KN0WN" (temporary password), Authentication data: "AD1", Password changed flag: "Not changed", Registered internal user: "IU1", Expiration date: "2024 / 12 / 1 0:00~2024 / 12 / 31 0:00".
[0066] In this case, the information processing device 10 (authentication processing unit 111) may display an operation screen 500 as shown in Figure 7(a) on the display unit 13 to accept input of a password and expiration date from an internal user (IU1) and store it as information for an external user (EU1). The operation screen 500 in Figure 7(a) has a text box 501 for accepting input of a temporary password, text boxes 502-1 and 502-2 for accepting input of the expiration date (start and end dates), a button 503 for accepting random generation of a temporary password, a button 504 for accepting input completion (input OK), and a button 505 for returning to the previous screen. Also, as shown in Figure 7(a), the information processing device 10 (authentication processing unit 111) may accept input of any string for the temporary password, or it may accept input of a random string based on a random number or the like (for example, by pressing the button 503 labeled "Random Generation" in Figure 7(a) to accept input of a random string). Then, when a temporary password is registered using any method, the password change flag is set to "Not Changed".
[0067] Next, the information processing device 10 (authentication processing unit 111) displays the password (temporary password) of the newly registered external user (ID: EU1) on the display unit 13 (S106). At this time, the information processing device 10 (authentication processing unit 111) may also display the external user's user ID (EU1) along with the password. At this time, the internal user (IU1) is prompted to record the displayed content and is shown an OK selection button for confirmation, to which the user is asked to select it, thereby confirming that the information has been recorded (for example, by writing it on paper, taking a picture with a camera, or by the internal user storing it in their memory; the means of recording are not limited).
[0068] Next, the information processing device 10 (authentication processing unit 111) instructs the internal information terminal 20-1 to activate its authentication information communication unit 23 and bring it closer to the information processing device 10 (authentication information communication unit 15) in order to transfer the newly issued authentication data AD1 (for example, by instructing it to display a message prompting the internal user to take this action) (S107).
[0069] In this case, the information processing device 10 (authentication processing unit 111) may be configured to display an operation screen 510 as shown in Figure 7(b) on the display unit 13 and display instructions to the internal user (IU1). The operation screen 510 in Figure 7(b) has a button 505 for returning to the previous screen.
[0070] Next, an internal user (IU1) sees the instructions on the information processing device 10 (display unit 13) and operates the internal information terminal 20-1 to activate the authentication information communication unit 23 (NFC function in this embodiment) and bring it closer to the information processing device 10 (authentication information communication unit 15; in this embodiment, the part with the NFC tag) (S108).
[0071] Here, when an internal user (IU1) who sees the screen in Figure 7(b) operates the internal information terminal 20-1 to launch application 241, the initial menu screen 530 shown in Figure 8(a) is displayed on the display unit 21. The initial menu screen shown in Figure 8(a) has a button 531 (labeled "Receive Guest Authentication Data" in Figure 8(a)) for starting the process of receiving authentication data for external users (hereinafter referred to as the "authentication data reception process"), a button 532 (labeled "Send Authentication Data" in Figure 8(a)) for starting the process of transferring and sending authentication data to the external information terminal 20-2 (hereinafter referred to as the "authentication data transmission process"), and a button 533 (labeled "Display Authentication Data" in Figure 8(a)) for displaying a list of held authentication data (hereinafter referred to as the "authentication data display process"). Here, it is assumed that the internal user (IU1) presses a button (a button labeled "Receive Guest Authentication Data") from the initial menu screen 530 shown in Figure 8(a) to start the authentication data reception process. Alternatively, the internal information terminal 20-1 may automatically activate the authentication information communication unit 23 when application 241 is launched. When the internal information terminal 20-1 (application 241) receives the request to start the authentication data reception process, it displays an operation screen 540, as shown in Figure 8(b), on the display unit 21, instructing the internal user (IU1) to bring the internal information terminal 20-1 closer to the information processing device 10 (authentication information communication unit 15). The operation screen 510 in Figure 8(b) includes a button 541 for returning to the previous screen.
[0072] Through the above process, a direct wireless communication channel (in this embodiment, a communication channel using NFC) is established between the internal information terminal 20-1 (authentication information communication unit 23) and the information processing device 10 (authentication information communication unit 15) (S109).
[0073] Next, when the information processing device 10 (authentication processing unit 111) detects that it can communicate with the internal information terminal 20-1 via the authentication information communication unit 15, it transmits authentication data AD1 to the internal information terminal 20-1 via the authentication information communication unit 15 (S110).
[0074] Next, the internal information terminal 20-1 (application 241) stores the received authentication data AD1 in the storage unit 25 (possessed authentication information 31) (S111).
[0075] At this time, the information processing device 10 (authentication processing unit 111) may display an operation screen 520 as shown in Figure 7(c) on the display unit 13 to notify the internal user (IU1) that the reception of authentication data has been completed. The operation screen 520 in Figure 7(c) has a button 521 for accepting confirmation of completion of processing.
[0076] Furthermore, at this time, the internal information terminal 20-1 (application 241) may display an operation screen 550, as shown in Figure 8(c), on the display unit 21 to notify the internal user (IU1) that the reception of authentication data has been completed. The operation screen 550 in Figure 8(c) includes a field 551 that displays authentication data information (including identifier and expiration date), a field 552 that displays a temporary password, and a button 553 for accepting completion of the process.
[0077] In this case, if the internal information terminal 20-1 receives a temporary password along with the authentication data AD1, or if the temporary password is stored in the knowledge authentication information 32-1, the temporary password may be displayed to prompt the user to record or save it outside the terminal, and then deleted from the knowledge authentication information 32-1 when the OK button is selected.
[0078] As described above, the information processing device 10 (authentication processing unit 111) registers a new external user (EU1) and passes a temporary password and authentication data to the internal user.
[0079] Figure 9 is a sequence diagram showing the process of sending authentication data from an internal information terminal 20-1 to an external information terminal 20-2.
[0080] Figure 10 shows an example of the configuration of the operation screen (GUI screen) displayed on the display unit 21 of the internal information terminal 20-1 in the sequence shown in Figure 9.
[0081] Figure 11 shows an example of the configuration of the operation screen (GUI screen) displayed on the display unit 21 of the external information terminal 20-2 in the sequence shown in Figure 9.
[0082] First, as a premise, we assume that a temporary password has been transmitted from an internal user (IU1) to an external user (EU1) (S201). The method of transmission is not limited and may include email, document, or verbal communication.
[0083] Then, the internal user (IU1) and the external user (EU1) meet in person, bringing their internal information terminal 20-1 and external information terminal 20-2 together, and bring the internal information terminal 20-1 and external information terminal 20-2 close together in order to exchange authentication data (S202).
[0084] At this time, the internal information terminal 20-1 is configured to start application 241 in internal user mode at the operation of the internal user (IU1), display the initial menu screen 530 shown in Figure 10(a) (the same initial menu screen 530 as in Figure 8(a)), and the internal user (IU1) presses button 532 (a button labeled "Send Authentication Data") to start the authentication data transmission process. Here, application 241 of the internal information terminal 20-1 may also be configured to automatically activate the authentication information communication unit 23 when it starts up. Next, the internal information terminal 20-1 (application 241) may display an operation screen 570 (hereinafter referred to as the "authentication data selection screen") as shown in Figure 10(b) on the display unit 21, accept a selection (operation) of whether to send one or more authentication data, and prepare to send the selected authentication data. In the authentication data selection screen shown in Figure 10(b), buttons 571, 572, and 573 corresponding to each of the three authentication data are displayed, and the authentication data corresponding to the button pressed is selected. The authentication data selection screen also has a button 574 for returning to the previous screen. Here, we assume that button 571 (the button labeled AD1) corresponding to authentication data AD1 is selected. Next, the internal information terminal 20-1 (application 241) displays an operation screen as shown in Figure 10(c) on the display unit 21, instructing the internal user (IU1) to bring the internal information terminal 20-1 and the external information terminal 20-2 closer together. In the operation screen shown in Figure 10(c), a button 584 for returning to the previous screen is provided.
[0085] On the other hand, on the external information terminal 20-2, the application 241 is launched in external user mode by an operation of the external user (EU1), and the initial menu screen 610 shown in Figure 11(a) is displayed. The initial menu screen 610 shown in Figure 11(a) has a button 611 for starting the authentication data reception process (the button labeled "Receive Authentication Data" in Figure 11(a)) and a button 612 for starting the authentication data display process (the button labeled "Display Authentication Data" in Figure 11(a)). Here, it is assumed that the external user (EU1) pressed the button 611 (the button labeled "Receive Authentication Data") from the initial menu screen 610 shown in Figure 11(a). Here, the application 241 on the external information terminal 20-2 may be configured to automatically activate the authentication information communication unit 23 when it is launched. Next, the external information terminal 20-2 (application 241) displays an operation screen 620, as shown in Figure 11(b), on the display unit 21, instructing the external user (EU1) to bring the internal information terminal 20-1 and the external information terminal 20-2 closer together. The operation screen 620 in Figure 11(b) includes a button 621 for returning to the previous screen.
[0086] As described above, by bringing the internal information terminal 20-1 and the external information terminal 20-2 closer together, a direct wireless communication channel (in this embodiment, a communication channel using NFC), which is direct communication using the authentication information communication unit 23, is established between the internal information terminal 20-1 and the external information terminal 20-2 (S203).
[0087] When the internal information terminal 20-1 (application 241) detects that a direct wireless communication channel has been established with the external information terminal 20-2 via the authentication information communication unit 23, it transmits the authentication data AD held in the storage unit 25 to the external information terminal 20-2 via the direct wireless communication channel (S204).
[0088] After sending the authentication data AD, the external information terminal 20-2 (application 241) may display an operation screen like the one shown in Figure 11(b) on the display unit 21 to notify the external user (EU1) that the authentication data has been received.
[0089] Next, the external information terminal 20-2 (application 241) stores the received authentication data AD in the storage unit 25 (possessed authentication information 31) (S205).
[0090] Next, the external information terminal 20-2 (application 241) sends a notification to the internal information terminal 20-1 via the wireless communication channel indicating that it has completed receiving the authentication data AD (S206).
[0091] At this time, the external information terminal 20-2 (application 241) may display an operation screen 630 as shown in Figure 11(c) on the display unit 21 to notify the external user (user ID: EU1) that the reception of authentication data has been completed. The operation screen 630 in Figure 11(c) has a field 631 that displays information about the authentication data (including identifier and expiration date) and a button 632 for accepting completion of the process.
[0092] When the internal information terminal 20-1 (application 241) receives a notification that the authentication data AD has been received (confirms that the transmission is complete), it deletes the authentication data AD (the authentication data that has been transmitted) from the storage unit 25 (S207).
[0093] At this time, the internal information terminal 20-1 (application 241) may display an operation screen 590 as shown in Figure 10(d) on the display unit 21 to notify the internal user (IU1) that the transmission of authentication data has been completed and the authentication data held in the storage unit 12 has been deleted. The operation screen 590 in Figure 10(d) has a field 591 that displays information about the authentication data (including an identifier and expiration date), a field 552 that displays a temporary password, and a button 592 for accepting completion of the process.
[0094] As a result, when the authentication data selection screen is subsequently displayed on the internal information terminal 20-1 (application 241), the button corresponding to the deleted authentication data will be grayed out and cannot be selected (operated), as shown in Figure 10(e). In the operation screen 600 of Figure 10(e), buttons 601, 602, and 603 corresponding to each of the three authentication data are arranged, and the authentication data corresponding to the button pressed is selected. In addition, the operation screen 600 of Figure 10(e) also has a button 604 for returning to the previous screen. Furthermore, in the operation screen 600 of Figure 10(e), button 601 corresponding to authentication data AD1 is grayed out, indicating that it cannot be selected (operated). Through the above process, the authentication data AD (possessed authentication information) is set on the external information terminal 20-2 (storage unit 25) used by the external user (EU1).
[0095] Figure 12 is a sequence diagram showing the process by which the information processing device 10 accepts initial authentication for an external user.
[0096] Figure 13 shows an example of the operation screen displayed on the display unit 13 of the information processing device 10 in the sequence shown in Figure 12.
[0097] Here, first, an external user (EU1) operates the operation unit 14 of the information processing device 10 (for example, by operating a menu screen not shown), calling the authentication process for the external user, and the authentication processing unit 111 starts the authentication process for the external user (S301).
[0098] Next, the information processing device 10 (authentication processing unit 111) displays a password (temporary password) input screen on the display unit 13 and accepts the input of a password (temporary password) via the operation unit 14 (S302).
[0099] Here, we assume that an external user (EU1) has entered a temporary password corresponding to user ID:EU1 (the password obtained by the external user (EU1) in step S201 above) into the information processing device 10. At this time, the information processing device 10 (authentication processing unit 111) may accept the input of the password (temporary password) through an operation screen 640, which is arranged with a display prompting for password input, a text box 641 in which the characters or * displayed advance as the password is entered, and a button 642 to accept confirmation that the password has been entered, as shown in Figure 13(a).
[0100] When a password is entered, the information processing device 10 (authentication processing device 111) displays a screen on the display unit 13 instructing the external user (EU1) to transfer authentication data to the information processing device 10 (S303).
[0101] In this case, the information processing device 10 (authentication processing unit 111) may, for example, display an operation screen 650 on the display unit 13, which contains instructions to launch application 241 (activate the authentication information communication unit 23 of the external information terminal 20-2) and bring the user closer to the information processing device 10 (authentication information communication unit 15), as shown in Figure 13(b), and a button 650 that transitions to a screen where authentication has not been performed.
[0102] Next, an external user (EU1) viewing an operation screen as shown in Figure 13(b) operates the external information terminal 20-2 to launch application 241 and instructs the authentication information communication unit 23 to send authentication data AD (S304). The above communication instruction may also be an operation such as the external user (EU1) bringing the authentication information communication unit 23 of the external information terminal 20-2 (while application 241 is running) closer to the authentication information communication unit 15 of the information processing device 10.
[0103] As described above, by bringing the information processing device 10 and the external information terminal 20-2 into close proximity, a direct wireless communication channel (in this embodiment, a communication channel using NFC) is established between the information processing device 10 and the external information terminal 20-2 (S305).
[0104] When the external information terminal 20-2 (application 241) detects that a direct wireless communication channel has been established with the information processing device 10 via the authentication information communication unit 23, it transmits the authentication data AD held in the storage unit 25 to the information processing device 10 using the communication channel (S306).
[0105] The information processing device 10 (authentication processing unit 111) verifies whether the received authentication data AD and the entered temporary password are legitimately issued authentication information (by comparing them with the data held in the external user management database 122), and performs authentication processing according to the verification result (S307). For example, the information processing device 10 (authentication processing unit 111) may perform authentication processing by verifying whether there is a matching combination of the entered password and authentication data among the external users registered in the external user management database 122. Here, it is assumed that the authentication by the information processing device 10 (authentication processing unit 111) was successful. If authentication fails, a message such as "Authentication failed. Please try again" may be displayed to prompt the user to re-enter the password.
[0106] If authentication is successful, the information processing device 10 (authentication processing unit 111) displays an operation screen on the display unit 13 to accept the input of a new password (arbitrary password), and accepts the password input (input of an arbitrary password) (S308).
[0107] In this case, the information processing device 10 (authentication processing device 111) may accept the input of a password (arbitrary password) through an operation screen 660, which includes, for example, a display prompting the user to enter a new password twice in the first and second rows, a first-row text box 661 where the characters or * displayed advance as the password is entered in the first row, a second-row text box 662 where the characters or * displayed advance as the password is entered in the second row, and a button 663 to confirm that the password has been entered. Alternatively, the operation screen 660 may also display a button 664 that transitions to a screen where authentication has not been performed, as shown in Figure 13(c).
[0108] Next, when a password (arbitrary password) is entered, the information processing device 10 (authentication processing device 111) replaces the password corresponding to the external user (EU1) registered in the external user management database 122 with the newly entered password (arbitrary password) and stores it (S309). Note that if the first and second passwords are different in the input on the operation screen 660, the information processing device 10 (authentication processing device 111) may display a message such as "The first and second passwords do not match. Please try again" prompting the user to re-enter the arbitrary password and return to S308.
[0109] Next, the information processing device 10 (authentication processing unit 111) displays an operation screen on the display unit 13 that notifies the user that the change to an arbitrary password has been completed (S310).
[0110] At this time, the information processing device 10 (authentication processing unit 111) may, for example, display an operation screen 670 that shows information indicating that the password has been changed to an arbitrary password, as shown in Figure 13(d). The operation screen shown in Figure 13(d) also includes an operation button 671 for accepting completion of the current process. At this time, the information processing device 10 (authentication processing unit 111) proceeds to the next process when the operation screen 670 shown in Figure 13(d) is operated (for example, the button 671 that displays OK as shown in Figure 13(d) is operated).
[0111] Next, the information processing device 10 (authentication processing unit 111) displays a screen on the display unit 13 indicating that the information processing device 10 has become available (S311), and then terminates the initial authentication process.
[0112] As a result, external users (EU1) will be able to use the information processing device 10, and authentication using a temporary password will no longer be possible.
[0113] Furthermore, after receiving the authentication start of the external user in S301, the display and operation input in S302 to S310 may be performed by establishing communication between the information processing device 10 and the external information terminal 20-2, and using the display unit 21-2 and operation unit 22-2 of the external information terminal instead of the display unit 13 and operation unit 14 of the information processing device 10 to perform display input equivalent to Figure 13(a),(c), and(d).
[0114] Figure 14 is a sequence diagram showing the process by which the information processing device 10 accepts authentication from an external user for the second time or later.
[0115] In other words, Figure 14 shows the authentication process for an external user (EU1) after an arbitrary password has been set (from the second time onward) in the information processing device 10 (external user management database 122).
[0116] Here, we assume that first, an external user (EU1) operates the operation unit 14 of the information processing device 10, calling the authentication process for the external user, and the authentication processing unit 111 starts the authentication process for the external user (S401).
[0117] Next, the information processing device 10 (authentication processing unit 111) displays a password (arbitrary password) input screen (for example, an operation screen similar to that in Figure 13(a) above) on the display unit 13 and accepts the input of a password (arbitrary password) via the operation unit 14 (S402).
[0118] When a password is entered, the information processing device 10 (authentication processing device 111) displays an operation screen on the display unit 13 instructing the external user (EU1) to transfer authentication data to the information processing device 10 (for example, an operation screen similar to that shown in Figure 13(b) above) (S403).
[0119] Next, an external user (EU1) operates the external information terminal 20-2 to launch application 241, and the authentication information communication unit 23 is instructed to send authentication data AD (the information processing device 10 and the external information terminal 20-2 are in close proximity) (S404).
[0120] As described above, by bringing the information processing device 10 and the external information terminal 20-2 into close proximity, a direct wireless communication channel (in this embodiment, a communication channel using NFC) is established between the information processing device 10 and the external information terminal 20-2 (S405).
[0121] When the external information terminal 20-2 (application 241) detects that a direct wireless communication channel has been established with the information processing device 10 via the authentication information communication unit 23, it transmits the authentication data AD held in the storage unit 25 to the information processing device 10 using the direct wireless communication channel (S406).
[0122] The information processing device 10 (authentication processing unit 111) verifies whether the received authentication data AD and the entered temporary password are legitimately issued authentication information, and performs authentication processing according to the verification result (S407). Here, the authentication by the information processing device 10 (authentication processing unit 111) is assumed to be successful.
[0123] If authentication is successful, the information processing device 10 (authentication processing unit 111) displays a screen notifying that the information processing device 10 is now available (S408), and terminates the authentication process.
[0124] This will enable external users (EU1) to use the information processing device 10.
[0125] Next, we will explain the security features of Information Processing System 1 using Figure 15.
[0126] Figure 15 illustrates the differences in information that can be obtained or used by internal users (IU1), external users (EU1), and third parties.
[0127] Figure 15 shows the configuration of possessed authentication information 31 (authentication data) and knowledge authentication information 32 (password) held on the internal information terminal 20-1 used by the internal user (IU1), the external information terminal 20-2 used by the external user (EU1), and the third-party terminal 20-3 used by the third party.
[0128] In this embodiment, it is extremely difficult for a third party using the information terminal 20-3 to illegally obtain the authentication data AD without the knowledge of the internal user (IU1) and the external user (EU1). Furthermore, it is difficult for a third party to know either the temporary password TP or the arbitrary password AP. Even if a third party were to obtain the temporary password TP or the arbitrary password AP through an attack, they would not possess the authentication information 31 (authentication data AD), and therefore would not be able to successfully authenticate the information processing device 10 (authentication processing unit 111) through the authentication process (steps S307, S407). On the other hand, the internal user (IU1) temporarily possesses the authentication data AD as possessed authentication information 31 and obtains the temporary password TP as known authentication information 32. However, the authentication data AD temporarily possessed by the internal user (IU1) is deleted after being moved to the external user (EU1) (step S207). Furthermore, when the information processing device 10 transmits a temporary password TP along with authentication data AD and stores it in the knowledge authentication information 32-1 on the internal information terminal 20-1, it is displayed on the internal information terminal with communication with the outside restricted to prompt the internal user to remember it, and the information is erased (all or at least part of the knowledge information is erased) before communication with an external network other than the information processing device 10 begins.
[0129] Therefore, after the internal user (IU1) transmits the authentication data AD to the external user (EU1) via direct communication between the internal and external terminals, the internal user (IU1) loses the authentication information 31 it possesses. On the other hand, the external information terminal 20-2 used by the external user (EU1) possesses the authentication data AD as authentication information. In addition, as knowledge authentication information 32, the temporary password TP obtained by the external user through verbal communication or the exchange of printed materials or emails via the internal user, or an arbitrary password AP changed by the external user, may be possessed by displaying a screen equivalent to Figure 13(a),(c),(d) on the external information terminal 20-2 and having the external user input it into the external information terminal. Furthermore, since the arbitrary password AP is set by the external user (EU1) themselves, it is difficult for both the internal user (IU1) and the third party 30 to know it. As a result, only the external user (EU1) possesses the authentication information 31 and the knowledge authentication information 32, so only the external user (EU1) can use the information processing device 10 using authentication information intended for external users. Furthermore, when storing knowledge information on an external information terminal 20-2 of an external user (EU1), the storage may be restricted to communications other than direct communication with the authentication information processing device 10 (for example, communication via an external network), and the information may be erased (all or at least part of the knowledge information) before communication with an external network other than the information processing device 10 begins.
[0130] (A-3) Effects of the Embodiment This embodiment can achieve the following effects.
[0131] In this embodiment of the information processing system 1, ultimately only the external user possesses the authentication data (possessed authentication information 31) and password (knowledgeable authentication information 32). Therefore, in this embodiment, only the external user can perform authentication using the authentication information for that external user, making it difficult for someone other than the external user to impersonate the external user and use the information processing device 10.
[0132] Furthermore, in this embodiment, the information processing device 10 (authentication processing unit 111) performs authentication using two elements: possessed authentication information 31 and knowledge authentication information 32. This makes it difficult for a third party 30 to bypass authentication through brute-force attacks or the like. In other words, in this embodiment, the information processing system 1 generates a temporary password and authentication data required when an external user uses the information processing device 10 in response to an internal user's operation, and transmits information (password and authentication data) from the internal user to the external user through multiple different means and routes, thereby enabling authentication that is highly resistant to eavesdropping and attacks.
[0133] As described above, the information processing system 1 offers improved security in the use of the information processing device 10 compared to conventional systems.
[0134] (B) Other embodiments The present invention is not limited to the embodiments described above, and modified embodiments such as those exemplified below can also be cited.
[0135] (B-1) In the above embodiment, the authentication information communication unit 15 of the information processing device 10 and the authentication information communication unit 23 of each information terminal 20 were described as NFC, but other communication methods (for example, wireless communication methods such as Bluetooth (especially low-power short-range such as Class 3) or infrared communication) are acceptable as long as security is ensured so that the authentication data AD cannot be illegally obtained by a third party.
[0136] (B-2) In the above embodiment, the temporary password may be transmitted directly from the information processing device 10 to the internal information terminal 20-1 via a wireless communication channel. Also, in the above embodiment, the temporary password may be transmitted directly from the internal information terminal 20-1 to the external information terminal 20-2 via a wireless communication channel.
[0137] (B-3) In the above embodiment, the password (temporary password and arbitrary password) was directly input to the information processing device 10 (operation unit 14). However, it is also possible to configure the device to receive the password (an arbitrary string or a random string based on random numbers, etc.) via an operation screen (GUI) on an internal information terminal 20-1 or an external information terminal 20-2, and transmit it to the information processing device 10 via the authentication information communication unit 23 or other communication means. In that case, the information processing device 10 in the above embodiment may be configured without a display unit 13 or an operation unit 14, or both.
[0138] (B-4) In the above embodiment, the authentication information communication unit 23 of each information terminal 20 may be configured to operate even when the network communication unit 26 is not disabled. In this case, it is desirable for the processing unit 16 of the information processing device 10 to provide an appropriate waiting time between each process of sequence S301 to S311.
[0139] (B-5) In the above embodiment, the internal user and the external user may be the same person, provided that permission is granted by the administrator of the information processing device 10. For example, consider a case where the internal information terminal 20-1 is a personal computer owned by the internal user, and the external information terminal 20-2 is a smartphone (mobile phone terminal) also owned by the same internal user. In this case, the information processing device 10 is capable of communicating with the internal information terminal 20-1 (personal computer) and the external information terminal 20-2 (smartphone) via a network or cloud. In this case, the internal user can use the internal information terminal 20-1 to issue temporary authentication information as an internal user, have the internal information terminal 20-1 send the authentication data to their external information terminal 20-2 (smartphone), and use it as temporary authentication information along with a temporary password for authentication by the information processing device 10 (authentication as an external user). This reduces the risk of the internal user's authentication information being leaked because the internal user does not use their authentication information in public places. Furthermore, the internal user can perform highly secure authentication as an external user using their possessed authentication information (authentication data) and knowledge-based authentication information (password). [Explanation of Symbols]
[0140] 1…Information processing system, 10…Information processing device, 11…Information processing unit, 12…Storage unit, 13…Display unit, 14…Operation unit, 15…Authentication information communication unit, 16…Processing unit, 17…Functional unit, 18…Network communication unit, 20(20-1, 20-2, 20-3,…)…Information terminal, 20-1…Internal information terminal, 20-2…External information terminal, 20-3…Third-party terminal, 21…Display unit, 22…Operation unit, 23…Authentication information communication unit, 24…Information processing unit, 25…Storage unit, 26…Network communication unit, 30…Third party, 31…Possessed authentication information, 32…Knowledge authentication information, 111…Authentication processing unit, 121…Internal user management database, 122…External user management database, 123…History information database, 241…Application, 251…Authentication information
Claims
1. An information processing system comprising an information processing device, a first information terminal used by a first user authorized to use the information processing device, and a second information terminal used by a second user other than the first user who is temporarily authorized to use the information processing device, The aforementioned information processing device is An authentication processing unit manages first authentication information and second authentication information corresponding to the second user, and performs authentication processing when authorizing the second information terminal to use the device using the first authentication information and the second authentication information. The authentication processing unit transmits the first authentication information to the first information terminal used by the first user, and the authentication information communication unit receives the first authentication information from the second information terminal. The authentication processing unit includes an authentication information output unit that outputs the second authentication information corresponding to the first authentication information to be transmitted, The authentication processing unit includes a holding unit that holds the second authentication information received from the second user during the authentication process using the second information terminal, The first information terminal is, The first terminal side authentication information communication unit, The system includes a first terminal-side authentication processing unit that receives and holds the first authentication information from the information processing device via the first terminal-side authentication information communication unit, and transmits the held first authentication information to the second information terminal via the first terminal-side authentication information communication unit. The aforementioned second information terminal is, The second terminal side authentication information communication unit, The system includes a second terminal-side authentication processing unit that receives and stores the first authentication information from the first information terminal via the second terminal-side authentication information communication unit, and when requesting authentication processing from the information processing unit, transmits the stored first authentication information to the information processing unit via the second terminal-side authentication information communication unit. An information processing system characterized by the following:
2. The aforementioned information processing device is It further includes a display unit that displays and outputs information, The authentication information output unit outputs the second authentication information from the display unit. The information processing system according to feature 1.
3. The aforementioned information processing device is It is further equipped with an operating section that can accept information input, During the authentication process for the second information terminal, the second authentication information is accepted via the operation unit through the operation of the second user. The information processing system according to feature 2.
4. The information processing system according to claim 1, characterized in that the first terminal-side authentication processing unit transmits the first authentication information it has held to the second information terminal via the first terminal-side authentication information communication unit, and then erases the first authentication information it has held.
5. The first information terminal holds the second authentication information output by the authentication information output unit of the information processing device, displays the held second authentication information on the display unit of the first information terminal to prompt the first user to record it, and when a selection corresponding to deletion is made from the input unit of the first information terminal, the second authentication information is deleted from the first information terminal. The information processing system according to feature 4.
6. The first information terminal, while holding the second authentication information output by the authentication information output unit of the information processing device, restricts communication with external devices. When the second authentication information is deleted from the first information terminal, the communication restriction with the external device is lifted. The information processing system according to feature 5.
7. The second information terminal holds the second authentication information entered by the second user from the operation unit of the second information terminal, and when requesting authentication processing from the information processing device, it transmits the second authentication information, along with the first authentication information it holds, to the information processing device via the second terminal's authentication information communication unit. The information processing system according to feature 1.
8. When the second information terminal is holding the second authentication information entered by the second user from the operation unit of the second information terminal, it restricts communication with external devices other than the information processing device. When the second authentication information is deleted from the second information terminal, the communication restriction with the external device is lifted. The information processing system according to feature 1.
9. The information processing system according to claim 1, characterized in that the predetermined communication method used between the authentication information communication unit, the first terminal-side authentication information communication unit, and the second terminal-side authentication information communication unit is NFC.
10. In an information processing device that performs authentication using a first information terminal used by a first user authorized to use the information processing device, and a second information terminal used by a second user temporarily authorized to use the information processing device, An authentication processing unit manages first authentication information and second authentication information corresponding to the second user, and performs authentication processing when authorizing the second information terminal to use the device using the first authentication information and the second authentication information. The authentication processing unit transmits the first authentication information to the first information terminal used by the first user, and the authentication information communication unit receives the first authentication information from the second information terminal. The authentication processing unit includes an authentication information output unit that outputs the second authentication information corresponding to the first authentication information to be transmitted, The authentication processing unit includes a holding unit that holds the second authentication information received from the second user during the authentication process using the second information terminal. An information processing device characterized by the following: