Automated procedure system, automated procedure device, and automated procedure method
A dual authentication system in automatic procedure devices uses user and device-side biometric verification to improve security, ensuring only authorized users can transact without physical items, addressing security risks in conventional systems.
Patent Information
- Application Number
- PCT/JP2025/032162
- Authority / Receiving Office
- WO · WO
- Patent Type
- Applications
- Current Assignee / Owner
- Priority Date
- 2024-10-24
- Filing Date
- 2025-09-11
- Publication Date
- 2026-04-30
AI Technical Summary
Conventional automatic procedure devices that allow transactions without physical items like cash cards based on biometric authentication face security risks due to the potential acceptance of unauthorized biometric information.
A dual authentication system involving a user terminal and an automated procedure device, where the user terminal acquires and registers biometric information for a first authentication, and the device performs a second authentication, allowing or restricting procedures based on both authentication results, enhancing security without requiring physical items.
Enhances security in automatic procedure devices by ensuring that only authorized users can perform transactions, reducing the risk of unauthorized access through biometric authentication.
Smart Images

Figure JP2025032162_30042026_PF_FP_ABST
Abstract
Description
Automatic Procedure System, Automatic Procedure Device, and Automatic Procedure Method
[0001] The present invention relates to an automatic procedure system, an automatic procedure device, and an automatic procedure method.
[0002] There are various automatic procedure devices that automatically perform procedures, such as cash dispensers (ATMs (Automatic Teller Machines)), counter terminals, entrance / exit gates, check-in counters, automatic ticket vending machines, etc. In order to improve the convenience of such automatic procedure devices, for example, a technology has been devised that enables transactions to be carried out by performing biometric authentication based on the biometric information of the user even without bringing items such as cash cards (see, for example, Patent Document 1).
[0003] Also, when it can be confirmed that the authentication result obtained by authenticating the user based on biometric information in a mobile communication terminal is valid in an automatic teller machine, a technology has been devised that enables the handling limit amount of cash to be changed even without bringing items such as cash cards (see, for example, Patent Document 2).
[0004] Japanese Patent No. 6078985, Japanese Patent No. 4783660
[0005] However, in the above-mentioned conventional technology, since transactions without bringing items such as cash cards are made possible only by a single biometric authentication, there is still a concern about the security risk due to acceptance of others' biometric authentication.
[0006] The present invention has been made in consideration of such circumstances, and one of its purposes is to improve the security of procedures in an automatic procedure device without bringing items such as cards or identity certificates.
[0007] As one embodiment for solving the above problem, an automated procedure system comprising a user terminal possessed by a user and an automated procedure device with which a predetermined wireless communication linkage is established between the user terminal, wherein the user terminal includes a terminal-side acquisition unit that acquires biometric information from the user, a registration unit that registers the biometric information acquired by the terminal-side acquisition unit as matching biometric information in a storage unit before a first authentication process for authenticating the user, and the first authentication process that is performed at the time of the first authentication process based on the biometric information acquired by the terminal-side acquisition unit and the matching biometric information, and The automated procedure device comprises a terminal-side authentication unit that transmits a first authentication result and the matching biometric information to the automated procedure device, the automated procedure device comprising a device-side acquisition unit that acquires biometric information from the user, a device-side authentication unit that performs a second authentication process for the user based on the biometric information acquired by the device-side acquisition unit and the matching biometric information received from the user terminal, and a procedure processing unit that permits or restricts the processing of a procedure in the automated procedure device based on the first authentication result received from the user terminal and the second authentication result from the second authentication process.
[0008] According to the present invention, for example, the security of procedures at automated procedure devices can be improved without requiring the user to bring physical items such as cards or identification documents.
[0009] A diagram showing the configuration of the automated cash trading system according to Embodiment 1. A sequence diagram showing the automated cash trading process according to Embodiment 1. A sequence diagram showing the automated cash trading process according to Embodiment 1. A sequence diagram showing the automated cash trading process according to Embodiment 1. A sequence diagram showing the automated cash trading process according to Embodiment 1. An explanatory diagram of the connection between a user terminal using UWB and an automated cash trading device according to Embodiment 1. A diagram showing the authentication completion screen on the user terminal according to Embodiment 1. A diagram showing various screens related to the continuous authentication mode on the user terminal according to Embodiment 1. A diagram showing the automated cash trading device search screen on the user terminal and the cash user terminal search screen on the automated cash trading device according to Embodiment 1. A diagram showing the hands-free trading mode screen on the automated cash trading device according to Embodiment 1. A diagram showing the hands-free trading mode unavailable screen on the automated cash trading device according to Embodiment 1. A diagram showing the communication detection screen during trading on the automated cash trading device according to Embodiment 1. A diagram showing the trading warning screen during communication on the automated cash trading device according to Embodiment 1. A diagram showing the trading screen with a third-party authentication request displayed on the automated cash trading device according to Embodiment 1. A diagram showing the third-party companion detection screen on the automated cash trading device according to Embodiment 1. A diagram showing the third-party approval request screen in the automated cash transaction device according to Embodiment 1. A diagram showing the third-party approval acquisition screen in the automated cash transaction device according to Embodiment 1. A diagram showing the operation pre-registration process in the cash transaction device according to Embodiment 1. A diagram showing the configuration of the automated cash transaction system according to Embodiment 2. A diagram showing the entry process in the entry / exit gate system according to Embodiment 3.
[0010] Embodiments of the present invention will be described in detail below with reference to the drawings. In the following embodiments, an automated teller machine (ATM) system, in which the procedure involves cash transactions, will be used as an example. However, the present invention can be applied to terminals used by an unspecified number of users, in addition to automated teller machines. Specifically, the present invention can be applied to various automated procedure systems such as entrance / exit gate systems, automated check-in systems, reception systems, and payment management systems.
[0011] [Embodiment 1] (Configuration of the automated cash transaction system S according to Embodiment 1) Figure 1 is a diagram showing the configuration of the automated cash transaction system S according to Embodiment 1. The automated cash transaction system S is composed of a user terminal 1, an automated cash transaction device 2, a third-party terminal 3, and a beacon device 4. The automated cash transaction device 2 is an example of an automated transaction device. In this Embodiment 1, a beacon device is used in addition to the short-range wireless communication unit 24 of the automated cash transaction device 2, but security at the automated cash transaction device 2 can be improved without using the beacon device 4, allowing users to use the device without carrying cards, identification documents, or other items.
[0012] User terminal 1 is a mobile communication terminal owned by user h, such as a smartphone, that is capable of mobile communication via a base station NE. User terminal 1 also receives beacon signals transmitted from a beacon device 4 or a short-range wireless communication unit 24 using UWB (Ultra Wide Band) communication, BLE (Bluetooth® Low Energy), or wireless LAN communication standards. The beacon device 4 may be a wireless LAN access point.
[0013] User terminal 1 has a predetermined application (hereinafter referred to as the "authentication application") installed that corresponds to transactions with financial institutions using the automated cash transaction device 2. User terminal 1 has a control unit 11, memory 12, storage unit 13, short-range wireless communication unit 14, mobile communication unit 15, input / output unit 16, and biometric information acquisition unit 17.
[0014] The control unit 11 is a processor that, through program execution, realizes the cooperation processing unit 11a, registration unit 11b, authentication unit 11c, motion detection unit 11d, communication detection unit 11e, and operation pre-registration unit 11f. The memory 12 executes the program in cooperation with the control unit 11.
[0015] The coordinating processing unit 11a establishes UWB communication cooperation with the ATM 2. Note that the communication connection method between the user terminal 1 and the ATM 2 is not limited to UWB; other communication methods such as Bluetooth®, Wi-Fi®, and NFC (Near Field Communication) may also be used.
[0016] The registration unit 11b accepts the user h's account information 13a during the initial setup of the user terminal 1 and registers it in the storage unit 13. The registration unit 11b also registers the user h's biometric information obtained via the biometric information acquisition unit 17 in the storage unit 13 as verification biometric information 13b. The registration unit 11b also registers the personal information of a third party h1 trusted by user h in the storage unit 13 as third-party information 13c. In addition, depending on the automated cash transaction machine 2 selected by user h, the registration unit 11b registers a device identification information list 13d in the storage unit 13 that stores the identification information and / or location information of the selected automated cash transaction machine 2.
[0017] The authentication unit 11c authenticates user h based on the biometric information of user h acquired by the biometric information acquisition unit 17 during authentication and the matching biometric information 13b. The authentication unit 11c then registers the authentication result (authentication OK) and the identification information of user h, who has been authenticated OK, as user authentication information 13e in the storage unit 13.
[0018] The motion detection unit 11d detects that someone other than user h is possessing the user terminal 1 based on the movement (including tilt and vibration) of the user terminal 1 acquired by the camera (e.g., the biometric information acquisition unit 17).
[0019] The communication detection unit 11e detects incoming and outgoing mobile communications performed by the mobile communication unit 15. The operation pre-registration unit 11f receives in advance the operations that user h will perform with the ATM 2 during a transaction, at a location away from the ATM 2, and registers them in the storage unit 13 as operation pre-registration information 13f.
[0020] The memory unit 13 is a non-volatile storage device that stores account information 13a, biometric information for verification 13b, third-party information 13c, device identification information list 13d, personal authentication information 13e, and operation pre-registration information 13f.
[0021] The short-range wireless communication unit 14 is a communication device for the user terminal 1 to communicate with the ATM 2 using UWB. The communication method between the user terminal 1 and the ATM 2 is not limited to UWB; other wireless communication methods may also be used. To establish a one-to-one connection between the user terminal 1 and the ATM 2, it is more preferable to use a short-range wireless communication method with a communication range equivalent to UWB or BLE. If the communication range is only a few centimeters, it would be necessary to move the user terminal 1 closer to the ATM 2. However, by using UWB communication or Bluetooth® communication, it becomes possible to complete the procedure without operating the user terminal 1 in front of the ATM 2.
[0022] The short-range wireless communication unit 14 also receives beacon signals transmitted from the beacon device 4.
[0023] The mobile communication unit 15 is a communication device that enables the user terminal 1 to communicate with other mobile phone terminals and computers via the base station NE and the network. The input / output unit 16 includes an input device such as a touch panel and an output device such as a display.
[0024] The biometric information acquisition unit 17 acquires the biometric information of user h. In this embodiment, the biometric information is a facial image, and the biometric information acquisition unit 17 is a camera that acquires the facial image. However, the biometric information is not limited to the face; it may also be other biometric information such as finger veins, palm veins, palm print, iris, auricle, voiceprint, fingerprint, etc. In this case, the biometric information acquisition unit 17 becomes a device corresponding to each type of biometric information.
[0025] The automated cash transaction device 2 includes a control unit 21, a memory 22, a storage unit 23, a short-range wireless communication unit 24, a communication unit 25, an input / output unit 26, and a biometric information acquisition unit 27. The automated cash transaction device 2 also has mechanisms for processing banknotes, coins, passbooks, certificates, cash cards, etc., but these are omitted in this embodiment.
[0026] The control unit 21 is a processor that implements the cooperation processing unit 21a, authentication unit 21b, transaction processing unit 21c, face detection unit 21d, and third-party approval detection unit 21e through program execution. The memory 22 is a storage device that executes programs in cooperation with the control unit 21.
[0027] The authentication unit 21b authenticates user h when the automated cash transaction device 2 is used, based on the biometric information of user h acquired by the biometric information acquisition unit 17 and the verification biometric information 13b received from the user terminal 1.
[0028] The transaction processing unit 21c processes transactions between the ATM 2 and user h, and sends and receives data related to cash transactions with user h to and from the financial institution's accounting host (not shown) connected via the accounting network (not shown).
[0029] The face detection unit 21d acquires facial images of people present in front of or near the ATM 2 via the biometric information acquisition unit 27 and identifies facial images to be matched with the matching biometric information 23b. If the acquired image contains multiple faces, the unit identifies the user h closest to the ATM 2 among the users h of the multiple user terminals 1 based on the size of the faces in the acquired image, the position of the faces in the acquired image, etc., and preferentially matches the identified facial image with the matching biometric information 23b. For example, it is preferable to identify the largest face in the acquired image or the face located in the center of the field of view as the user closest to the ATM 2. Furthermore, since face size is thought to correlate with height, it is even more preferable to select facial images to be matched preferentially based on the relative magnitudes of the values obtained by multiplying the face size by a height coefficient estimated using the acquired image.
[0030] Furthermore, the face detection unit 21d detects the face of a user other than user h by comparing the acquired face image with the matching biometric information 23b. When the transaction processing unit 21c detects that the face of a person in the ATM 2, which is constantly monitored by the face detection unit 21d, is different from that of user h (low degree of match), it restricts the processing of the transaction in the ATM 2.
[0031] The third-party approval detection unit 21e detects whether a trusted third party h1 is accompanying user h based on the user h's facial image acquired via the biometric information acquisition unit 27. The third-party approval detection unit 21e also detects when third party h1 requests approval of user h's transaction via a third-party terminal 3 held by third party h1, and receives the transaction approval entered by third party h1 from the third-party terminal 3.
[0032] The memory unit 23 is a non-volatile storage device that stores device identification information 23a, biometric information for verification 23b, third-party information 23c, and user authentication information 23e.
[0033] The short-range wireless communication unit 24 is a communication device for the ATM 2 to communicate with the user terminal 1 using UWB. As described above, the communication method between the user terminal 1 and the ATM 2 is not limited to UWB; other wireless communication methods such as BLE, NFC, and Wi-Fi may also be used. The communication unit 25 is a communication device for the ATM 2 to communicate with computer devices and the like via the network N. The input / output unit 26 includes an input device such as a touch panel and an output device such as a display.
[0034] The biometric information acquisition unit 27 acquires the biometric information of user h who conducts transactions with the automated cash transaction device 2. The biometric information acquired by the biometric information acquisition unit 27 is the same as the biometric information acquired by the user terminal 1, and in this embodiment, it is a facial image.
[0035] Third-party terminal 3 is a smartphone, tablet, or similar device capable of mobile communication via base station NE, just like user terminal 1. Installation of an authentication application is not required for third-party terminal 3.
[0036] (Automated cash transaction processing according to Embodiment 1) Figures 2A to 2D are sequence diagrams showing the automated cash transaction processing according to Embodiment 1.
[0037] Steps S101 to S104 in Figure 2A represent the pre-registration process for user h before using the ATM 2 at user terminal 1. At the time of execution of the pre-registration process, the authentication application is already installed on user terminal 1. The pre-registration process is executed after the authentication application is launched, following the guidance of the authentication application.
[0038] First, in step S101, the registration unit 11b of the user terminal 1 registers account information 13a, including the name of user h, account number, password, PIN, etc., which has been input by user h via the input / output unit 16, into the storage unit 13.
[0039] Next, in step S102, the registration unit 11b of the user terminal 1 acquires the user h's facial image via the biometric information acquisition unit 17 and registers it in the storage unit 13 as matching biometric information 13b. Next, in step S103, the registration unit 11b of the user terminal 1 registers third-party information 13c in the storage unit 13, which includes the facial image of a third party h1 trusted by user h, the identification information of the third-party terminal 3 possessed by the third party h1, and contact information, etc., input by user h via the input / output unit 16. Contact information includes telephone number, email address, social media (SNS) ID, etc. If the user does not wish to have the approval of a trusted third party at the time of the transaction, steps S103, steps S213 to S215 and steps S119 to S120 described later can be omitted.
[0040] Next, in step S104, the registration unit 11b of the user terminal 1 registers the identification information and / or location information of the ATM 2 selected by user h via the input / output unit 16, in the storage unit 13 as an ATM identification information list 13d. For example, based on the location information of the user terminal 1, the ATM 2 installed at that location is considered to be an ATM 2 that is frequently used, and is registered as an ATM identification information list 13d.
[0041] Note that the identification information, location information, etc. of the cash dispenser 2 listed in the device identification information list 13d are not limited to those selected by the user h, and may also be those sent by a beacon signal from the beacon device 4 associated with the cash dispenser 2. Instead of the beacon device 4, a sensor capable of detecting the user terminal 1 or a Wi-Fi (registered trademark) communication device may be used.
[0042] The next steps S105 to S107 are the authentication process of the user h when using the cash dispenser 2 in the user terminal 1.
[0043] In step S105, the authentication unit 11c of the user terminal 1 acquires the biometric information of the user h via the biometric information acquisition unit 17, and executes user authentication of the user h based on the coincidence between the acquired biometric information and the reference biometric information 13b. Note that in this specification, "coincidence" at the time of user authentication means that the coincidence rate is a predetermined value or more. Next, in step S106, when the authentication unit 11c of the user terminal 1 determines that the authentication result of the user authentication in step S105 is an authentication OK in which the biometric information and the reference biometric information 13b coincide (step S106 YES), the process proceeds to step S107. On the other hand, when the authentication unit 11c of the user terminal 1 determines that the authentication result of the user authentication in step S105 is an authentication NG in which the biometric information and the reference biometric information 13b do not coincide (step S106 NO), the process returns to step S105.
[0044] In step S107, the authentication unit 11c of the user terminal 1 shifts to a continuous authentication mode in which the personal authentication information 13e indicating authentication OK of the user authentication in step S105 is continuously transmitted from the user terminal 1 to the cash dispenser 2. The shift to the continuous authentication mode is triggered, for example, when it is determined that a certain proximity state is maintained with the user h based on the location information after it is determined that the authentication is OK in step S106, such as when the user terminal 1 is stored in the pocket of the user h's clothes.
[0045] The next steps S108 to S111 are the continuous authentication process when using the cash dispenser 2 in the user terminal 1. Steps S108 to S111 are repeatedly executed until the authentication application is terminated thereafter.
[0046] First, in step S108, the authentication unit 11c of the user terminal 1 determines whether continuous authentication is successful. Continuous authentication being successful means that it is detected that a certain proximity state with the user h is maintained, and no behavior of a person other than the user h is detected by the motion detection unit 11d. The motion detection unit 11d monitors the behavior of the person holding the user terminal 1 based on the movement of the user terminal, and detects behavior different from that of the user h who is the original holder of the user terminal 1. The authentication unit 11c of the user terminal 1 repeats step S108 when continuous authentication is successful (step S108 YES), and transfers the process to step S109 when continuous authentication fails (step S108 NO). In the case of continuous authentication failure, instead of transferring the process to step S109, control such as restricting the transaction may be performed.
[0047] In step S109, the authentication unit 11c of the user terminal 1 releases the continuous authentication mode and outputs a warning or a display prompting user authentication via the input / output unit 16. Also, when there is a cash automatic transaction device 2 in which the cooperation of short-range wireless communication is established, the authentication unit 11c of the user terminal 1 transmits continuous authentication failure to the cash automatic transaction device 2. When the cash automatic transaction device 2 receives authentication failure from the user terminal 1, it cancels the transaction with the user h for whom continuous authentication has failed.
[0048] Next, in step S110, the authentication unit 11c of the user terminal 1 performs user authentication (user re-authentication) in the same manner as in step S105. Next, in step S111, the authentication unit 11c of the user terminal 1 transfers the process to step S108 when the biometric information acquired in step S110 matches the biometric information 13b for verification (step S110 YES), in the same manner as in step S106. On the other hand, the authentication unit 11c of the user terminal 1 returns the process to step S110 when the biometric information acquired in step S110 does not match the biometric information 13b for verification (step S111 NO).
[0049] Steps S112 and later in Figure 2B are executed in parallel with steps S108 to S111. In step S112, the cooperation processing unit 11a of the user terminal 1 searches for whether an automated teller machine 2 exists within a predetermined range from which the short-range wireless communication unit 14 can cooperate. Meanwhile, in step S201, the cooperation processing unit 21a of the automated teller machine 2 determines whether a user terminal 1 in continuous authentication mode exists within a predetermined range from which the short-range wireless communication unit 24 can cooperate. If a user terminal 1 in continuous authentication mode exists within the predetermined range (step S201 YES), the cooperation processing unit 21a of the automated teller machine 2 moves to step S202. If there are multiple user terminals 1 in continuous authentication mode within the predetermined range from which the short-range wireless communication unit 24 can cooperate, the user terminal 1 closest to the automated teller machine 2 or a pre-set location is connected first. Meanwhile, the linkage processing unit 21a of the automated cash transaction device 2 repeats step S201 if there is no user terminal 1 in continuous authentication mode within a predetermined range (step S201NO).
[0050] Next, in step S202, the linkage processing unit 21a of the ATM 2 initiates short-range wireless communication with the linkage processing unit 11a of the user terminal 1, which was determined to exist in step S201. Next, in step S203, the linkage processing unit 21a of the ATM 2 transmits the identification information and / or location information of the ATM 2 to the user terminal 1 with which it initiated short-range wireless communication in step S202.
[0051] Next, in step S113, the cooperation processing unit 11a of the user terminal 1 checks the identification information and / or location information of the ATM 2 received from the ATM 2. That is, it determines whether the received identification information and / or location information is stored in the device identification information list 13d.
[0052] The linkage processing unit 11a of the user terminal 1 moves to step S114 if the received identification information and location information are stored in the device identification information list 13d (step S113 YES). On the other hand, if step S113 NO, the linkage processing unit 11a of the user terminal 1 moves to perform a normal transaction with the ATM 2 instead of a cash cardless transaction using the user terminal 1. A cash cardless transaction is a transaction with the ATM 2 that is completed with only the user terminal 1, without bringing any cash cards or other items necessary for the transaction with the ATM 2.
[0053] In addition, step S113 may involve the transmission of the device identification information list 13d from the user terminal 1 to the automated cash transaction device 2, and the automated cash transaction device 2 may then verify whether the identification information and / or location information of the automated cash transaction device 2 are stored in the device identification information list 13d.
[0054] In step S114, the linkage processing unit 11a of the user terminal 1 transmits the user h's biometric information 13b, third-party information 13c, and personal authentication information 13e, which are stored in the storage unit 13, to the ATM 2. When the ATM 2 receives the biometric information 13b, third-party information 13c, and personal authentication information 13e transmitted from the user terminal 1 in step S114, it stores them in the storage unit 23 as biometric information 23b, third-party information 23c, and personal authentication information 23e, respectively.
[0055] Next, in step S204, the authentication unit 21b of the ATM 2 acquires the user h's biometric information via the biometric information acquisition unit 27 and performs user authentication of user h by comparing the acquired biometric information with the matching biometric information 13b transmitted from the user terminal 1. If a face image is used as the biometric information and the acquired biometric information (image) contains multiple faces, the face detection unit 21d identifies the face image to be matched preferentially. In step S205, which will be described later, if authentication is determined to be NG, the user authentication is performed by comparing the other face images included in the acquired biometric information (image) with the matching biometric information 13b. If all the face images included in the acquired biometric information (image) do not match the matching biometric information 13b, the transaction is canceled.
[0056] Next, in step S205, the authentication unit 21b of the ATM 2 determines the user authentication result from step S204. That is, if the authentication unit 21b of the ATM 2 determines that the biometric information acquired in step S204 matches the matching biometric information 13b and that user h is a genuine user, and therefore authentication is OK (step S205 YES), it proceeds to step S206. On the other hand, if the authentication unit 21b of the ATM 2 determines that the biometric information acquired in step S204 does not match the matching biometric information 13b and that user h is not a genuine user, and therefore authentication is NG (step S205 NO), it cancels the transaction with user h.
[0057] In step S206, the authentication unit 21b of the ATM 2 switches to a cash cardless transaction mode, which allows cash cardless transactions as long as it receives continuous authentication information OK from the user terminal 1 that initiated short-range wireless communication.
[0058] Next, in step S207 of Figure 2C, the transaction processing unit 21c of the ATM 2 receives a transaction request (for example, a bank transfer in this embodiment) via the input / output unit 26. Next, in step S208, the transaction processing unit 21c of the ATM 2 requests the user terminal 1 to transmit the user authentication information 13e. Next, in step S115, the authentication unit 11c of the user terminal 1 reads the user's user authentication information 13e requested from the ATM 2 from the storage unit 13 and transmits it.
[0059] Next, in step S116, the communication detection unit 11e of the user terminal 1 determines whether it has detected an incoming call or communication such as a phone call, email, or chat, or an action related to communication such as phonebook operation (communication preparation) on the user terminal 1. If the communication detection unit 11e of the user terminal 1 detects an incoming call, communication, or communication preparation, it moves the process to step S117. On the other hand, if the communication detection unit 11e of the user terminal 1 does not detect any incoming calls, communication, or communication preparation (step S116NO), it moves the process to step S118. In detecting communication or actions related to communication in step S116, it is also possible to detect only incoming calls or communication or actions related to communication from unregistered phone numbers or email addresses, and not detect incoming calls or communication from pre-registered phone numbers or email addresses.
[0060] Step S116 is executed repeatedly in parallel with other processes after the execution of step S115 until the transaction with the ATM 2 is completed. Step S116 may also be executed only if the transfer received in step S207 is a transfer of a predetermined amount or more.
[0061] In step S117, the communication detection unit 11e of the user terminal 1 sends a communication detection notification to the ATM 2 indicating that it has detected an incoming call, communication, or communication preparation as detected in step S116.
[0062] Next, in step S209, when the transaction processing unit 21c of the automated cash transaction device 2 receives a communication detection notification from the user terminal 1, it outputs a warning from the input / output unit 26. Next, in step S210, the transaction processing unit 21c of the automated cash transaction device 2 determines whether the warning displayed in step S209 has been displayed for a certain period of time. If the warning has been displayed for a certain period of time (step S210 YES), the transaction processing unit 21c of the automated cash transaction device 2 cancels the transaction in question. On the other hand, if the warning display has not reached the required period of time (step S210 NO), the transaction processing unit 21c of the automated cash transaction device 2 repeats step S211.
[0063] The warning output may also be a screen display or voice guidance. In this embodiment, an example is shown in which a transaction is canceled when a warning is displayed for a certain period of time. However, if the ATM 2 receives a communication detection notification from the user terminal indicating that it has detected an incoming call, communication, or communication preparation as detected in step S116, it may also be configured to cancel the transaction, notify the staff of the ATM 2, or present additional conditions for continuing the transaction, instead of issuing a warning.
[0064] Meanwhile, in step S118, the communication detection unit 11e of the user terminal 1 sends a communication non-detection notification to the ATM 2 indicating that it has not detected any incoming call, communication, or communication preparation in the mobile communication unit 15.
[0065] Next, in step S211, the transaction processing unit 21c of the automated cash transaction device 2 determines whether the warning display shown on the input / output unit 26 in step S209 is still being displayed. If the warning display is still being displayed (step S211 YES), the transaction processing unit 21c of the automated cash transaction device 2 moves to step S212. On the other hand, if the warning display has been cleared from the input / output unit 26 (step S211 NO), the transaction processing unit 21c of the automated cash transaction device 2 moves to step S213 in Figure 2D.
[0066] Next, in step S213 of Figure 2D, the transaction processing unit 21c of the ATM 2 determines whether the transfer received in step S207 is a transfer of a predetermined amount (for example, 100,000 yen) or more. A transfer of 100,000 yen is an example of a high-value transaction. If the transfer is of a predetermined amount or more (step S213 YES), the transaction processing unit 21c of the ATM 2 moves the process to step S214. On the other hand, if the transfer is less than the predetermined amount (step S213 NO), the transaction processing unit 21c of the ATM 2 switches the process to perform a normal transaction that is not a cash cardless transaction, and then moves the process to step S121.
[0067] In step S214, the third-party authorization detection unit 21e of the ATM 2 determines whether a third party h1, who is registered in the trusted third-party information 13c of the ATM 2, is accompanying user h. The third-party authorization detection unit 21e determines that user h is accompanied by a third party h1 if a third party terminal 3 corresponding to the identification information contained in the third party information 13c received from user terminal 1 in step S113 is within a predetermined range of the ATM 2. Alternatively, the third-party authorization detection unit 21e acquires a facial image of a person near user h using a camera (biometric information acquisition unit 27) and determines that user h is accompanied by a third party h1 if it matches the facial image of third party h1 contained in the third party information 13c.
[0068] The third-party authorization detection unit 21e of the ATM 2 transitions to a normal transaction if a third party h1 is present (step S214 YES), and then proceeds to step S121. On the other hand, if the third party h1 is not present (step S214 NO), the third-party authorization detection unit 21e of the ATM 2 proceeds to step S215.
[0069] In step S215, the third-party approval detection unit 21e of the automated cash transaction machine 2 sends a third-party approval request transmission request to the user terminal 1, requesting the third party h1 to send a transaction approval request from user h in the automated cash transaction machine 2. When sending the third-party approval request transmission request, the automated cash transaction machine 2 may also transmit an image (for example, the image taken in S214) taken by a camera installed in the automated cash transaction machine, showing the operator of the automated transaction machine or the operator and their surroundings. The received image is sent when the user terminal 1 sends the third-party approval request to the third-party terminal 3 in step S119, which will be described later, so that the third party can check the appearance and status of the operator of the automated transaction machine when approving the transaction.
[0070] Next, in step S119, the cooperation processing unit 11a of the user terminal 1 sends a third-party approval request to the third-party terminal 3, requesting third-party h1 to approve the transaction of user h in the ATM 2, based on the third-party approval request received from the ATM 2. The means by which the user terminal 1 sends the third-party approval request to the third-party terminal 3 may be an authentication application, or various existing communication means such as SMS (Short Message Service) or SNS (Social Networking Service).
[0071] In this embodiment 1, we showed an example where a third-party approval request is required in step S212 when the transfer amount exceeds a predetermined amount. However, it is also possible to require a third-party approval request not only for high-value transactions, but also for any transactions designated by the user, a trusted third party set up by the user, and the financial institution.
[0072] Next, in step S301, the cooperation processing unit 11a of the third-party terminal 3 transmits to the user terminal 1 whether the third party h1 has approved (third-party approval OK) or disapproved (third-party approval NG) the transaction of user h, based on the third-party approval request received from the user terminal 1. The means by which the third-party terminal 3 transmits third-party approval OK and third-party approval NG to the user terminal 1 may be an authentication application or various existing communication means such as SMS or SNS.
[0073] Next, in step S120, the linkage processing unit 11a of the user terminal 1 determines whether it has received a third-party approval OK from the third-party terminal 3. If the linkage processing unit 11a of the user terminal 1 has received a third-party approval OK (step S120 YES), it proceeds to step S121. On the other hand, if the linkage processing unit 11a of the user terminal 1 has received a third-party approval NG (step S120 YES), it cancels the transaction with user h.
[0074] One method to suppress fraudulent transactions is to detect the operation of the user terminal using images captured by a camera installed in the ATM 2. However, there are cases where the user terminal 1 cannot be detected, such as when making a hands-free call using earphones. The invention according to Embodiment 1 can detect the call status of the user terminal 1 even when making a hands-free call.
[0075] In step S121, the linkage processing unit 11a of the user terminal 1 reads account information 13a, including a PIN, from the storage unit 13 and transmits it to the ATM 2.
[0076] Next, in step S216, the transaction processing unit 21c of the ATM 2 executes transaction processing (a transfer in this embodiment) based on the account information transmitted from the user terminal 1 or the account information directly entered into the ATM 2 by the user.
[0077] Furthermore, the restrictions on transaction processing at the automated cash transaction machine 2 in the above-mentioned automated cash transaction processing are not limited to the cancellation of the transaction at the automated cash transaction machine 2, but also include warning displays and voice guidance output at the automated cash transaction machine 2, notification to the staff of the automated cash transaction machine 2, presentation of additional conditions for continuing the transaction, and transition to a normal transaction using a cash card.
[0078] (Connection between user terminal 1 and automated cash transaction device 2 using UWB according to Embodiment 1) Figure 3 is an explanatory diagram of the connection between user terminal 1 and automated cash transaction device 2 using UWB according to Embodiment 1.
[0079] In this embodiment, UWB is used for communication between the user terminal 1 and the ATM 2, and the connection distance of UWB communication is limited. Furthermore, only user terminals 1 with an authentication application installed that corresponds to transactions with financial institutions using the ATM 2 can connect to the ATM 2. In other words, the ATM 2 communicates with user terminals 1 that are within a predetermined range from the ATM 2 and have a predetermined application.
[0080] Specifically, one or more user terminals 1 located within a connection range R1 at a certain distance from the automated cash transaction machine 2 can authenticate the user who possesses the user terminal 1, but cannot operate the automated cash transaction machine 2. Users who possess user terminals 1 located within the connection range R1 are users waiting in line to use the automated cash transaction machine 2.
[0081] On the other hand, a single user terminal 1 located within the usage range R2, which is closer to the ATM 2 than the connection range R1, can authenticate the user who possesses the user terminal 1, and if authentication is successful, it can operate the ATM 2.
[0082] (Authentication completion screen 16D1 according to Embodiment 1) Figure 4 is a diagram showing the authentication completion screen 16D1 on the user terminal 1 according to Embodiment 1. The authentication completion screen 16D1 is displayed on the display of the input / output unit 16 of the automated cash transaction processing. The authentication completion screen 16D1 indicates that user h has been authenticated OK (step S106 YES) after inputting account information, biometric information, third-party information, and identification information of the automated cash transaction device 2 in steps S101 to S105 (Figure 2A), and user authentication based on the input information.
[0083] (Various screens of the continuous authentication mode according to Embodiment 1) Figure 5 is a diagram showing various screens related to the continuous authentication mode in the user terminal 1 according to Embodiment 1. Figure 5(a) is the continuous authentication mode screen 16D2 that is displayed on the display of the input / output unit 16 of the user terminal 1 after the user's identity has been authenticated at the user terminal 1 until the user h arrives at the installation corner of the ATM 2. When the system transitions to the continuous authentication mode triggered by step S107 (Figure 2A), the continuous authentication mode screen 16D2 is displayed on the display of the input / output unit 16 of the user terminal 1.
[0084] Figure 5(b) shows the continuous authentication mode deactivation warning screen 16D3 that is displayed on the display of the input / output unit 16 of the user terminal 1 when the continuous authentication mode is deactivated following step S109 (Figure 2A). As long as the continuous authentication mode deactivation warning screen 16D3 is displayed on the display of the input / output unit 16 of the user terminal 1, the user h possessing the user terminal 1 cannot perform transactions with the ATM 2.
[0085] Figure 5(c) shows the user re-authentication request screen 16D4 displayed on the input / output unit 16 of the user terminal 1, triggered by step S110 (Figure 2A), which requests user h to re-authenticate. When user re-authentication is successful, the display on the input / output unit 16 of the user terminal 1 transitions from the user re-authentication request screen 16D4 to the continuous authentication mode screen 16D2.
[0086] (Screen 16D5 and User Terminal Search Screen for Automated Cash Transaction Device in Embodiment 1) Figure 6 shows the screen 16D5 for searching for an automated cash transaction device in user terminal 1 and the screen 26D1 for searching for a user terminal in automated cash transaction device 2 in Embodiment 1. The screen 16D5 for searching for an automated cash transaction device in user terminal 1 is displayed on the display of the input / output unit 16 of user terminal 1 in step S112 (Figure 2B) while user terminal 1 is searching for an automated cash transaction device 2 that can communicate via UWB communication. The screen 26D1 for searching for a user terminal 1 that can communicate via UWB communication in step S201 (Figure 2B) while automated cash transaction device 2 is searching for a user terminal 1 that can communicate via UWB communication.
[0087] (Cash cardless transaction mode screen 26D2 in the ATM 2 according to Embodiment 1) Figure 7 shows the cash cardless transaction mode screen 26D2 in the ATM 2 according to Embodiment 1. The cash cardless transaction mode screen 26D2 is displayed on the display of the input / output unit 26 of the ATM 2 when the ATM 2 switches to cash cardless transaction mode via UWB communication in step S206 (Figure 2B).
[0088] (Screen 26D3 for Cashless Transaction Mode Disabled in Automated Cash Transaction Device According to Embodiment 1) Figure 8 shows the screen 26D3 for Cashless Transaction Mode Disabled in Automated Cash Transaction Device 2 According to Embodiment 1. The screen 26D3 for Cashless Transaction Mode Disabled is displayed on the display of the input / output unit 26 of the Automated Cash Transaction Device 2 when step S205NO (Figure 2B) is performed.
[0089] (Transaction Communication Detection Screen 26D4 according to Embodiment 1) Figure 9 shows the transaction communication detection screen 26D4 in the automated cash transaction device 2 according to Embodiment 1. The transaction communication detection screen 26D4 is displayed on the display of the input / output unit 26 of the automated cash transaction device 2 in step S209 (Figure 2C) in response to the detection of communication in the user terminal 1 in step S117 (Figure 2C).
[0090] (Communication in Progress Transaction Warning Screen 26D5 according to Embodiment 1) Figure 10 shows the communication in progress transaction warning screen 26D5 in the automated cash transaction device 2 according to Embodiment 1. The communication in progress transaction warning screen 26D5 is a transaction screen transitioned from the transaction communication detection screen 26D4 (Figure 9), and is displayed as a warning on the display of the input / output unit 26 of the automated cash transaction device 2 because the user h continues the transaction despite communication being detected.
[0091] (Transaction screen 26D6 according to Embodiment 1) Figure 11 shows the transaction screen 26D6 in the automated cash transaction device 2 according to Embodiment 1. The transaction screen 26D6 is displayed on the display of the input / output unit 26 of the automated cash transaction device 2, and the automated cash transaction device 2 accepts transaction operations (transfers in this embodiment) by user h. When a specific transaction requiring third-party approval (a transfer of 100,000 yen or more in this embodiment) is detected in step S213 (Figure 2D), the following message is added to the transaction screen 26D6: "If you are making a large transfer by yourself, approval from a trusted third party is required."
[0092] (Third-party accompaniment detection screen 26D7 according to Embodiment 1) Figure 12 shows the third-party accompaniment detection screen 26D7 in the automated cash transaction device 2 according to Embodiment 1. The third-party accompaniment detection screen 26D7 is displayed on the display of the input / output unit 26 of the automated cash transaction device 2 when the accompaniment or approval of a third party h1 is detected by user h in a specific transaction (step S214 YES (Figure 2D)). The third-party accompaniment detection screen 26D7 is displayed after transitioning from the transaction screen 26D6 (Figure 11).
[0093] (Third-party approval request screen 26D8 according to Embodiment 1) Figure 13 shows the third-party approval request screen 26D8 in the ATM 2 according to Embodiment 1. The third-party approval request screen 26D8 is displayed on the display of the input / output unit 26 of the ATM 2 when the presence or approval of a third party h1 is not detected in a transaction that requires the presence or approval of a third party h1 (step S214NO (Figure 2D)). The third-party approval request screen 26D8 is displayed after transitioning from the transaction screen 26D6 (Figure 11). The third-party approval request screen 26D8 indicates to the user h that approval is requested from the third party h1, whose third-party information 13c has been registered in the storage unit 13 of the user terminal 1.
[0094] (Third-party approval acquisition screen 26D9 according to Embodiment 1) Figure 14 shows the third-party approval acquisition screen 26D9 in the automated cash transaction device 2 according to Embodiment 1. The third-party approval acquisition screen 26D9 is displayed on the display of the input / output unit 26 of the automated cash transaction device 2, transitioning from the third-party approval request screen 26D8 (Figure 13) when approval from a third party h1 is requested and approval is obtained from the third party h1 (step S120 YES (Figure 2D)). The third-party approval acquisition screen 26D9 indicates to the user h that approval has been obtained from the third party h1.
[0095] (Pre-registration process for operations in the automated cash transaction device 2 according to Embodiment 1) Figure 15 shows the pre-registration process for operations in the automated cash transaction device 2 according to Embodiment 1. First, in step S401, the user terminal 1 receives the pre-setting of operations that user h will perform on the automated cash transaction device 2. Specifically, the pre-registration unit 11f of the user terminal 1 receives the operation details such as withdrawal, withdrawal amount, fee display, and confirmation button after user h has logged into the authentication application with their user account, account number, and PIN. The pre-registration unit 11f of the user terminal 1 then registers the received operation details as pre-registration information 13f in the storage unit 13. Step S401 is performed between steps S106 and S107 (Figure 2A).
[0096] Next, in step S402, the ATM 2 performs user authentication. Specifically, the authentication unit 21b of the ATM 2 acquires an image of the face brought close to the biometric information acquisition unit 27 to authenticate the user, and if user authentication is successful, accepts the input of a PIN via the touch keyboard of the input / output unit 26. Step S402 corresponds to step S204 (Figure 2B).
[0097] Next, in step S403, the transaction processing unit 21c of the automated cash transaction device 2 automatically executes operations according to the pre-registered operation information 13f entered in step S401. The transaction processing unit 21c of the automated cash transaction device 2 requests confirmation from the user h for each process, accepts the input of the confirmation result, and executes the transaction. Step S403 corresponds to step S216 (Figure 2D).
[0098] (Modification of Embodiment 1) 1. Automatic ATM 2 capable of cash cardless transactions In Embodiment 1, an automatic ATM 2 in which identification information and / or location information is registered in the device identification information list 13d enables the above-mentioned cash cardless transactions. However, an automatic ATM 2 capable of cash cardless transactions is not limited to an automatic ATM 2 in which identification information and / or location information is registered in the device identification information list 13d.
[0099] The identification information and / or location information of ATMs 2 frequently used by user h, who possesses user terminal 1, is stored based on the connection history between user terminal 1 and wireless LAN access points installed around ATM 2. Alternatively, the identification information and / or location information of ATMs 2 frequently used by user h, who possesses user terminal 1, is stored based on the location information history of user terminal 1 when using ATM 2. User h may be permitted to make cashless transactions at ATMs 2 for which the identification information and / or location information is stored in this manner, and not permitted at ATMs 2 for which the identification information and / or location information is not stored.
[0100] 2. Conditions for enabling cashless transactions In Embodiment 1, the system transitions to the continuous authentication mode, which is a prerequisite for cashless transactions, on the condition that user authentication in step S105 (Figure 2A) is successful. However, the conditions for transitioning to the continuous authentication mode are not limited to user authentication in step S105 being successful. In addition to or instead of this condition, the system may transition to the continuous authentication mode based on an action that only user h can perform. An action that only user h can perform is, for example, user h connecting to a wireless LAN access point at home. In this case, the system may transition to the continuous authentication mode if the transaction is with the ATM 2 within a predetermined time since the last connection.
[0101] (Effects of Embodiment 1) In Embodiment 1 described above, the ATM 2 permits or restricts the processing of a transaction based on the first authentication result received from the user terminal 1 and the second authentication result in the ATM 2. As a result, user h can conduct cashless transactions with the ATM 2 without possessing a cash card, etc., provided that user h possesses the user terminal 1.
[0102] Furthermore, in the above-described embodiment 1, if the behavior of a person other than user h is detected based on the actions detected by user terminal 1, the first authentication process is re-executed based on the newly acquired biometric information and matching biometric information. This prevents the unauthorized use of the ATM 2 by the other person using user terminal 1, even if user h, who possesses user terminal 1, is handed over to another person after authentication.
[0103] Furthermore, in the above-described embodiment 1, if multiple user terminals 1 exist within a predetermined range of the automated cash exchange device 2, a user terminal 1 is selected based on its distance from the automated cash exchange device 2, and a connection is established with the selected user terminal 1. This distinguishes between the user terminal 1 of user h who is conducting a transaction with the automated cash exchange device 2 and the user terminal 1 of user h who is waiting in line to conduct a transaction with the automated cash exchange device 2, allowing only one user h to conduct a transaction with the automated cash exchange device 2.
[0104] Furthermore, in the above-described embodiment 1, a facial image of user h possessing user terminal 1 is acquired, and based on the acquired facial image, the user terminal 1 closest to the ATM 2 is selected, and a connection is established with the selected user terminal 1. This distinguishes between user terminal 1 of user h who is conducting a transaction with the ATM 2 and user terminal 1 of user h who is waiting in line to conduct a transaction with the ATM 2, allowing only one user h to conduct a transaction with the ATM 2.
[0105] Furthermore, in the above-described embodiment 1, when a user h requests a transaction exceeding a predetermined amount, the transaction processing unit 21c of the automated cash transaction device 2 permits the processing of the transaction if the third-party approval detection unit 21e receives approval from a third party h1. This allows transactions exceeding a predetermined amount to be safely carried out based on the approval of the third party h1.
[0106] Furthermore, in the above-described embodiment 1, if the location information and / or identification information of the ATM 2 on which user h conducts a transaction is included in the device identification information list 13d of the location information and / or identification information of the ATM 2 on which transactions are permitted, a link is established between the user terminal 1 and the ATM 2, and the transaction processing is permitted or restricted. As a result, user h can safely conduct transactions only with ATM 2 on which transactions are permitted.
[0107] Furthermore, in the above-described embodiment 1, if, as a result of determining the location information and / or identification information of the ATM 2 based on the device identification information list 13d, a linkage with the user terminal cannot be established, the transaction processing in the ATM 2 is restricted. This allows user h to avoid unauthorized transactions in the ATM 2.
[0108] Furthermore, in the above-described embodiment 1, the registration of the location information and / or identification information of the ATM 2 in the device identification information list 13d is performed based on the beacon signal received from the beacon device 4 corresponding to the ATM 2. This reduces the effort required to register the location information and / or identification information, and eliminates incorrect or fraudulent registrations.
[0109] Furthermore, in the above-described embodiment 1, if the face detection unit 21d detects the face of a user other than the user after permission has been granted to process the transaction, the processing of the transaction is restricted. This prevents unauthorized viewing by others and substitution of the user h conducting the transaction with the automated cash transaction device 2 by another person.
[0110] Furthermore, in the above-described embodiment 1, when the transaction processing unit 21c of the automated cash transaction device 2 authorizes a transaction by user h, it processes the transaction according to the pre-registered operation information 13f that has been registered in advance on the user terminal 1. This makes user h's transactions in the automated cash transaction device 2 more efficient and allows them to be completed quickly.
[0111] [Embodiment 2] In the following description of Embodiment 2, we will focus on the differences from Embodiment 1 and omit the explanation of any overlapping parts.
[0112] (Configuration of the automated cash transaction system 2S according to Embodiment 2) Figure 16 shows the configuration of the automated cash transaction system 2S according to Embodiment 2. The automated cash transaction system 2S differs from the automated cash transaction system S according to Embodiment 1 in that it has an authentication server 5 and / or an account verification server 6, and is otherwise the same as Embodiment 1.
[0113] The authentication server 5 is a computer capable of communicating with at least the ATM 2 and the third-party terminal 3. The account verification server 6 is a computer capable of communicating with at least the user terminal 1.
[0114] In Embodiment 2, the account information 13a of user h entered from the user terminal 1 in step S101 (Figure 2A) and the third-party information 13c entered from the user terminal 1 in step S103 are stored in the authentication server 5 instead of the user terminal 1.
[0115] Furthermore, the destination of the third-party authorization request in step S215 (Figure 2D) is the authentication server 5, not the user terminal 1. The authentication server 5 receives the third-party authorization request from the ATM 2 via communication over the network N.
[0116] When the authentication server 5 receives a request for third-party authorization, it transmits the request to the third-party terminal 3 via communication with the network N and base station NE over the mobile communication network. The means by which the authentication server 5 transmits the request to the third-party terminal 3 may be an authentication application or various existing communication methods, including SMS and SNS.
[0117] When the third-party terminal 3 receives a third-party approval request, it sends either "Third-party approval OK" or "Third-party approval NG" entered by the third party to the authentication server 5. The method by which the third-party terminal 3 sends "Third-party approval OK" or "Third-party approval NG" to the authentication server 5 may be an authentication application or various existing communication methods such as SMS or SNS.
[0118] When the authentication server 5 receives OK from the third-party terminal 3, it sends account information 13a to the automated cash transaction device 2. On the other hand, when the authentication server 5 receives NG from the third-party terminal 3, it does not send account information 13a to the automated cash transaction device 2 and cancels the transaction.
[0119] In Embodiment 2, after step S113 (Figure 2B), the user terminal 1 sends the user account information of user h in the authentication application to the account verification server 6 for verification of whether the user account is authentic. The account verification server 6 verifies the received user account and sends the result of the verification of whether the user account is authentic or not to the user terminal 1. When the user terminal 1 receives a verification result from the account verification server 6 indicating that the user account is authentic, it moves to step S114. On the other hand, when the user terminal 1 receives a verification result from the account verification server 6 indicating that the user account is invalid, it cancels the transaction in the ATM 2.
[0120] [Embodiment 3] In addition to the embodiments shown in Embodiments 1 and 2, the present invention can also be applied to an entrance / exit gate system 3S having an entrance gate device 2C instead of the automated cash transaction device 2 in Embodiment 1.
[0121] Figure 17 shows the entry process in the entry / exit gate system 3S according to Embodiment 3. First, in step S501C, the user terminal 1 performs user authentication of user h and transmits the user authentication result to the entry gate device 2C. Specifically, the user terminal 1 acquires the biometric information of user h, registers it in the terminal as biometric information for verification, and then performs user authentication of user h based on the biometric information acquired during user authentication and the biometric information for verification. The user terminal 1 then transmits the user account, user authentication result, and biometric information for verification to the entry gate device 2C.
[0122] Next, in step S502, the entrance gate device 2C checks the registered user account information and confirms whether the user account received from the user terminal 1 is registered. Next, in step S503, the entrance gate device 2C performs user authentication of user h based on the biometric information acquired by the entrance gate device 2C and the verification biometric information received from the user terminal 1. If the entrance gate device 2C determines in step S502 that the user account is registered, and the user authentication result received from the user terminal 1 is OK, and the user authentication result in step S503 is OK, the entrance gate device 2C opens the gate and allows user h to enter.
[0123] [Other Application Examples] The present invention is not limited to Embodiment 3 described above, but has various application examples. For example, there is an automated check-in system that has an automated check-in machine installed in the airport lobby instead of the automated cash transaction device 2 in Embodiment 1. The automated check-in machine can perform the check-in procedure for user h even if user h does not have an airline ticket, etc., assuming that user h has a user terminal 1 that has been authenticated in advance. During the check-in procedure, the automated check-in machine can detect wanted criminals based on, for example, the facial images of registered wanted criminals, the facial image of user h acquired by the check-in machine, and the biometric information (facial image) for matching transmitted from user terminal 1.
[0124] Alternatively, instead of the automated cash transaction device 2 in Embodiment 1, there is a reception system that has a reception machine installed in a facility with a counter. The reception machine, like the automated cash transaction device 2, authenticates the user h who possesses the user terminal 1, thereby preventing the system from mistakenly directing a visitor impersonating someone else to the counter as the legitimate user. Furthermore, when the reception machine receives a user h possessing the user terminal 1, it notifies the counter terminal that user h has arrived, and when user h approaches the counter, it transmits information necessary for counter procedures, such as personal information pre-entered in the user terminal 1, to the counter terminal. This makes counter operations more efficient.
[0125] Alternatively, instead of the ATM 2 in Embodiment 1, there is a payment management system that includes a reception machine and a payment machine installed in a hospital. The authentication application running on the user terminal 1 held by user h is linked to user h's medical card and payment information such as credit card information. The reception machine, like the ATM 2, accepts the patient's (user h's) arrival by authenticating user h who is holding the user terminal 1. Similarly, the payment machine, like the ATM 2, can accept payment of medical fees by user h based on the payment information linked to the authentication application by authenticating user h who is holding the user terminal 1.
[0126] The embodiments described above are explained in detail for the purpose of clearly illustrating the present invention, and are not necessarily limited to those having all the configurations described. It is also possible to replace a part of the configuration of one embodiment with the configuration of another embodiment, and it is also possible to add the configuration of another embodiment to the configuration of one embodiment. Furthermore, it is possible to add, delete, or replace parts of the configuration of each embodiment with other configurations. Some or all of the above configurations, functions, processing units, processing means, etc., may be implemented in hardware, for example, by designing them as integrated circuits. Alternatively, the above configurations, functions, etc., may be implemented in software by having a processor interpret and execute a program that realizes each function. Furthermore, information such as programs, tables, files, etc., that realize each configuration can be stored in memory, a recording device such as a hard disk or SSD (Solid State Drive), or a recording medium such as an IC card, SD card, or DVD.
[0127] S, 2S, 3S: Automated Cash Transaction System, 1: User Terminal, 2: Automated Cash Transaction Device, 3: Third-Party Terminal
Claims
1. An automated procedure system comprising a user terminal possessed by a user and an automated procedure device with which a predetermined wireless communication linkage is established between the user terminal, wherein the user terminal includes: a terminal-side acquisition unit that acquires biometric information from the user; a registration unit that registers the biometric information acquired by the terminal-side acquisition unit before a first authentication process for authenticating the user as matching biometric information in a storage unit; a terminal-side authentication unit that performs a first authentication process based on the biometric information acquired by the terminal-side acquisition unit and the matching biometric information during the first authentication process, and transmits the first authentication result and the matching biometric information from the first authentication process to the automated procedure device, wherein the automated procedure device includes: a device-side acquisition unit that acquires biometric information from the user; and a device-side authentication unit that performs a second authentication process for the user based on the biometric information acquired by the device-side acquisition unit and the matching biometric information received from the user terminal, An automated procedure system characterized by having a procedure processing unit that permits or restricts the processing of a procedure in the automated procedure device based on the first authentication result received from the user terminal and the second authentication result obtained from the second authentication process.
2. An automated procedure system according to claim 1, wherein the user terminal has an action detection unit that detects the movement of the user terminal, and the terminal-side authentication unit of the user terminal continuously performs identity verification based on the movement of the user terminal detected by the action detection unit, and re-executes the first authentication process according to the result of the identity verification.
3. An automated procedure system according to claim 1, wherein the user terminal has an action detection unit that detects the movement of the user terminal, the terminal-side authentication unit of the user terminal continuously performs identity verification based on the movement of the user terminal detected by the action detection unit and transmits the result of the identity verification to the automated procedure device, and the procedure processing unit of the automated procedure device restricts the processing of the procedure according to the result of the identity verification.
4. An automated procedure system according to claim 1, wherein the automated procedure device detects a user terminal having a predetermined application within a predetermined range of the automated procedure device, and receives the first authentication result and the matching biometric information from the detected user terminal by predetermined wireless communication.
5. An automated procedure system according to claim 4, wherein the automated procedure device selects a user terminal based on the distance from the automated procedure device when a plurality of user terminals are present within a predetermined range of the automated procedure device, and establishes the cooperation with the selected user terminal.
6. An automated procedure system according to claim 4, wherein the automated procedure device acquires a facial image of a person present near the automated procedure device using the device-side acquisition unit, and the device-side authentication unit, if the acquired facial image includes multiple faces, uses the acquired facial image to identify the facial image of the person closest to the automated procedure device, and preferentially compares the identified facial image with the matching biometric information.
7. An automated procedure system according to claim 1, wherein the automated procedure device is an automated cash transaction device, and the procedure is a transaction in the automated cash transaction device.
8. An automated procedure system according to claim 7, wherein the automated procedure device has a third-party approval detection unit that transmits an approval request to a terminal held by a predetermined user different from the user, requesting the predetermined user's approval for a transaction with the automated procedure device, and receives approval for the approval request entered by the predetermined user from the terminal, and the procedure processing unit of the automated procedure device permits processing of the transaction when the user requests the transaction exceeding a predetermined amount and the approval is received by the third-party approval detection unit.
9. An automated procedure system according to claim 7, wherein a list is stored in a storage unit for storing location information and / or identification information of the automated procedure device on which the user is permitted to perform the transaction; the system determines whether the location information and / or identification information of the automated procedure device on which the user performs the transaction is included in the list; if the location information and / or identification information is included in the list, the system establishes the cooperation between the user terminal and the automated procedure device; and the procedure processing unit of the automated procedure device permits or restricts the processing of the transaction in the automated procedure device based on the first authentication result and the second authentication result received from the user terminal on which the cooperation has been established.
10. An automated procedure system according to claim 9, wherein the procedure processing unit of the automated procedure device restricts the processing of the transaction in the automated procedure device when, as a result of the determination based on the list, the cooperation between the user terminal and the automated procedure device is not established.
11. An automated procedure system according to claim 9, comprising a beacon that transmits the location information and / or identification information of the automated procedure device, wherein the user terminal stores the location information and / or identification information received from the beacon in the list.
12. An automated procedure system according to claim 7, wherein the automated procedure device has a face detection unit that detects the face of a person present near the automated procedure device, and the procedure processing unit of the automated procedure device restricts the processing of the transaction if the face detection unit detects the face of a user other than the user after permission has been granted to process the transaction.
13. An automated procedure system according to claim 7, wherein the user terminal has an operation pre-registration unit that accepts pre-registration of operation details related to the transaction performed by the user in the automated procedure device, the terminal-side authentication unit of the user terminal transmits the operation details accepted by the operation pre-registration unit to the automated procedure device along with the first authentication result and the matching biometric information, and the procedure processing unit of the automated procedure device processes the transaction according to the operation details when it authorizes the user's transaction in the automated procedure device based on the first authentication result and the matching biometric information.
14. An automated procedure device that establishes a predetermined wireless communication link with a user terminal held by a user, comprising: a communication unit that receives from the user terminal a first authentication result of a first authentication process of the user executed by the user terminal and matching biometric information registered on the user terminal; a device-side acquisition unit that acquires biometric information from the user; a device-side authentication unit that executes a second authentication process of the user based on the biometric information acquired by the device-side acquisition unit and the matching biometric information received from the user terminal; and a procedure processing unit that permits or restricts the processing of a procedure in the automated procedure device based on the first authentication result received from the user terminal and the second authentication result of the second authentication process.
15. An automated procedure method to be performed by an automated procedure system comprising a user terminal possessed by a user and an automated procedure device with which a predetermined wireless communication linkage is established between the user terminal, wherein the user terminal has the processes of: acquiring biometric information from the user; registering the biometric information acquired before a first authentication process for authenticating the user as matching biometric information in a storage unit; executing the first authentication process based on the biometric information acquired during the first authentication process and the matching biometric information; and transmitting the first authentication result and the matching biometric information from the first authentication process to the automated procedure device; and the automated procedure device has the processes of: acquiring biometric information from the user; executing a second authentication process for the user based on the acquired biometric information and the matching biometric information received from the user terminal; and permitting or restricting the processing of a procedure in the automated procedure device based on the first authentication result received from the user terminal and the second authentication result from the second authentication process.
Citation Information
Patent Citations
Transaction system allowing reception of a plurality of biological authentication devices, portable terminal and transaction terminal
JP2006227766A
Personal authentication system, server, server program, transaction device and device program
JP2022058211A