Information conversion apparatus, information conversion system, information conversion method, and recording medium
By designing an information conversion device to extract and convert communication destination information from emails into readable information, the problem of inaccessibility to restricted communication network terminals in existing technologies is solved, enabling users to conveniently access communication destination information and reducing security risks.
Patent Information
- Application Number
- CN202080048584.3
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- Priority Date
- 2019-09-24
- Filing Date
- 2020-08-27
- Publication Date
- 2025-12-12
- Estimated Expiration
- 2040-08-27
AI Technical Summary
In the existing technology, the communication destination information included in emails cannot be converted into two-dimensional barcodes, making it difficult for users to easily access the communication destination information in terminals with restricted network connections.
An information conversion device has been designed, including an extraction device and an output device, which can extract email-related information from received emails and convert communication destination information into read information, allowing terminals not connected to the network to read the information through non-network methods.
This allows users to easily access communication destination information included in emails, solving the problem that users cannot directly communicate with terminals that have restricted network connections, and reducing the risk of computer virus infection and information leakage.
Smart Images

Figure CN114080606B_ABST
Abstract
Description
TECHNICAL FIELD
[0001] The present application relates to an information conversion apparatus, an information conversion system, an information conversion method, and a recording medium. BACKGROUND
[0002] The use of the Internet is very convenient, but there is a risk of becoming a route of infection of a computer virus or a risk of information leakage due to infection of a virus.
[0003] Therefore, in a task of handling confidential information such as personal information, a network in which a measure for prohibiting communication with another network (hereinafter referred to as "first network") is adopted (hereinafter referred to as "second network") can be used.
[0004] Under such circumstances, a terminal connected to the second network can not be able to communicate with a communication destination indicated by a uniform resource locator (URL), a telephone number, or the like (hereinafter referred to as "communication destination information") included in a mail.
[0005] The reason will be described.
[0006] Suppose a case where a mail server used in a task of handling confidential information such as personal information transmits and receives a mail to and from the first network, but communication between the mail server and the first network is not allowed except for transmission and reception of the mail.
[0007] Also suppose a case where, in order to protect the confidential information, only a terminal connected to the second network can access (refer to) a mail of the mail server. Also suppose a case where a terminal not connected to the second network cannot access the mail server via the first network.
[0008] In this case, the second terminal connected to the second network can read the mail of the mail server. On the other hand, since communication with the first network is prohibited in the second network, the second terminal cannot communicate with a communication destination included in the first network.
[0009] Therefore, when accessing information of a communication destination indicated by communication destination information (URL or the like) included in a mail transmitted to a second terminal connected to the second network, a user needs to input the communication destination information to a first terminal connectable to the first network. With the input of the user, the first terminal communicates with the communication destination indicated by the communication destination information.
[0010] As described above, since the second terminal connected to the second network cannot communicate with a communication destination included in the first network, the user needs to input the communication destination information to the first terminal connected to the first network.
[0011] As shown in the above-described method, when communicating with a communication destination indicated by the communication destination information in a first terminal different from a second terminal to which the mail is sent, communication with the communication destination is not easy.
[0012] On the other hand, in the method described in Patent Literature 1, the server device generates a URL for communication based on a media access control address (MAC address) and an Internet protocol address (IP address) assigned to the server device. Further, the server device outputs a two-dimensional bar code associated with the communication URL, and displays the communication URL and the two-dimensional bar code on a screen of a predetermined terminal.
[0013] Then, the remote terminal reads the two-dimensional bar code displayed on the predetermined terminal. Therefore, the remote terminal can communicate with the server device by communicating with the communication URL associated with the read two-dimensional bar code.
[0014] In the method described in Patent Literature 2, a service host converts a URL of an authentication host into a QR code (registered trademark). Then, the service host transmits screen data for displaying an image of the QR code (registered trademark) on a display of a user personal computer (PC) to the user PC.
[0015] Further, the user captures an image of the QR code (registered trademark) displayed on the display of the user PC with a mobile terminal. With the user's operation, the mobile terminal decodes the QR code (registered trademark) into the URL. This enables the mobile terminal to communicate with the authentication host.
[0016] As described above, in the methods described in Patent Literature 1 and Patent Literature 2, the server device converts a URL for communication with a specific device into a two-dimensional bar code and displays the two-dimensional bar code on a screen, and the user captures an image of the two-dimensional bar code with the user's terminal. This enables the user's terminal to communicate with a communication destination indicated by the URL without the user inputting the URL.
[0017] Bibliographic List
[0018] Patent Literature
[0019] Patent Literature 1: JP 2009-146306 A
[0020] Patent Literature 2: JP 2008-146363 A SUMMARY
[0021] TECHNICAL PROBLEM
[0022] However, in the methods described in Patent Literature 1 and Patent Literature 2, a system including a predetermined server device creates communication destination information for communication with the predetermined server device, and converts the created communication destination information into two-dimensional information. Therefore, in these methods, the server device cannot convert communication destination information about various communication destinations into two-dimensional bar codes.
[0023] For example, assume that a mail including communication destination information is sent to a terminal that is restricted from communicating with a first network as described above.
[0024] In this case, the methods described in Patent Literature 1 and Patent Literature 2 can only convert communication destination information indicating a predetermined server device included in a system into a two-dimensional bar code. Therefore, communication destination information indicating various communication destinations included in a mail cannot be converted into a two-dimensional bar code.
[0025] Therefore, in the methods described in Patent Literature 1 and Patent Literature 2, there is a problem that a user cannot easily access information of a communication destination indicated by communication destination information that is included in a mail sent to a terminal connected to a network that is restricted from communicating with other networks.
[0026] An object of the present application is to provide an information conversion apparatus, a system, a method, and a recording medium that enable a user to easily access information held by a communication destination with respect to mail-related information included in a mail that is sent to a terminal connected to a network that is restricted from communicating with other networks.
[0027] Solution to the problem
[0028] In one aspect of the present application, an information conversion apparatus includes extraction means configured to extract predetermined mail-related information from a received mail, and output means configured to convert communication destination information of a communication destination related to the mail-related information into read information that allows the communication destination information to be read by a first terminal not connected to a network to which a second terminal that receives the mail is connected, by a method other than via the network, and output the mail to which the read information is added to the second terminal.
[0029] In another aspect of the present application, an information conversion method includes extracting predetermined mail-related information from a received mail, and converting communication destination information of a communication destination related to the mail-related information into read information that allows the communication destination information to be read by a first terminal not connected to a network to which a second terminal that receives the mail is connected, by a method other than via the network, and outputting the mail to which the read information is added to the second terminal.
[0030] In another aspect of the present application, the information conversion program recorded in the computer-readable recording medium causes a computer to realize: an extraction function that extracts predetermined mail-related information from a received mail; and an output function that converts communication-destination information of a communication destination related to the mail-related information into read information that allows the communication-destination information to be read by a first terminal not connected to a network to which a second terminal connected to which the mail is received is connected, without passing through the network, and outputs the mail to which the read information is added to the second terminal.
[0031] Advantages of the Invention
[0032] According to the information conversion apparatus, system, method, and recording medium of the present application, a user can easily inquire information held by a communication destination related to mail-related information included in a mail that is sent to a terminal connected to a network that restricts communication with other networks. BRIEF DESCRIPTION OF DRAWINGS
[0033] Figure 1 FIG. 1 is a diagram showing a configuration example of an information conversion apparatus of a first example embodiment of the present application.
[0034] Figure 2 FIG. 2 is a flowchart showing an operation example of the information conversion apparatus of the first example embodiment of the present application.
[0035] Figure 3 FIG. 6 is a diagram showing a configuration example of an information conversion system of a second example embodiment of the present application.
[0036] Figure 4 FIG. 7 is a flowchart showing an operation example of the information conversion apparatus of the second example embodiment of the present application.
[0037] Figure 5 FIG. 8 is a diagram showing an operation example of the information conversion system of the second example embodiment of the present application.
[0038] Figure 6 FIG. 11 is a diagram showing a configuration example of an information conversion apparatus of a third example embodiment of the present application.
[0039] Figure 7 FIG. 12 is a flowchart showing an operation example of the information conversion apparatus of the third example embodiment of the present application.
[0040] Figure 8 FIG. 15 is a diagram showing a configuration example of an information conversion system of a fourth example embodiment of the present application.
[0041] Figure 9FIG. 1 is a diagram showing an operation example of an information conversion system according to a first example embodiment of the present application.
[0042] Figure 10 FIG. 2 is a diagram showing a configuration example of an information conversion system according to a second example embodiment of the present application.
[0043] Figure 11 FIG. 3 is a flowchart showing an operation example of an information conversion device according to the second example embodiment of the present application.
[0044] Figure 12 FIG. 4 is a diagram showing an operation example of the information conversion system according to the second example embodiment of the present application.
[0045] Figure 13 FIG. 5 is a diagram showing a configuration example of an information conversion system according to a third example embodiment of the present application.
[0046] Figure 14 FIG. 6 is a flowchart showing an operation example of an information conversion device according to the third example embodiment of the present application.
[0047] Figure 15 FIG. 7 is a diagram showing an operation example of the information conversion system according to the third example embodiment of the present application.
[0048] Figure 16 FIG. 8 is a diagram showing a hardware configuration example of each example embodiment of the present application. DETAILED DESCRIPTION
[0049] [First Example Embodiment]
[0050] A first example embodiment of the present application will be described.
[0051] Figure 1 FIG. 1 is a block diagram showing a configuration example of an information conversion device 1 according to the present example embodiment. The information conversion device 1 according to the present example embodiment includes an extraction unit 11 and an output unit 12.
[0052] The extraction unit 11 extracts predetermined mail-related information from a received mail.
[0053] The output unit 12 converts communication destination information of a communication destination related to the mail-related information into read information that allows the communication destination information to be read by a first terminal not connected to a network to which a second terminal receiving the mail is connected, by a method not via the network. Then, the output unit 12 outputs the mail to which the read information is added to the second terminal.
[0054] By configuring the information conversion device 1 in this way, the information conversion device 1 extracts the mail-related information from the received mail. The information conversion device 1 also converts the communication-destination information of the communication destination related to the mail-related information into read information, and outputs the mail to which the read information that the first terminal can read is added to the second terminal.
[0055] Therefore, the first terminal that is not connected to the network to which the second terminal is connected can read the read information included in the mail that is the mail sent to the second terminal connected to the network. Further, the first terminal can perform communication with the communication destination indicated by the communication-destination information based on the read information.
[0056] Therefore, the user can easily access the information held by the communication destination with respect to the mail-related information included in the mail that is the mail sent to the terminal connected to the network that restricts communication with other networks.
[0057] Next, Figure 2 An operation example of the information conversion device 1 of the present example embodiment is shown.
[0058] The extraction unit 11 extracts predetermined mail-related information from the received mail (step S101).
[0059] The output unit 12 converts the communication-destination information of the communication destination related to the mail-related information into read information that can be read by the first terminal that is not connected to the network to which the second terminal that received the mail is connected by a method that does not pass through the network. Further, the output unit 12 outputs the mail to which the read information is added (step S102).
[0060] By operating in this way, the information conversion device 1 extracts predetermined mail-related information from the received mail. Further, the information conversion device 1 converts the communication-destination information of the communication destination related to the mail-related information into read information that can be read by the first terminal, and outputs the mail to which the read information is added to the second terminal.
[0061] Therefore, the first terminal that is not connected to the network to which the second terminal is connected can read the read information included in the mail that is the mail sent to the second terminal connected to the network. Further, the first terminal can perform communication with the communication destination indicated by the communication-destination information based on the read information.
[0062] Therefore, the user can easily access the information held by the communication destination with respect to the mail-related information included in the mail that is the mail sent to the terminal connected to the network that restricts communication with other networks.
[0063] [Second Example Embodiment]
[0064] Next, the information conversion device 1 according to the second example embodiment of the present application will be described in detail. In the present example embodiment, a case where the mail-related information extracted by the information conversion device 1 from the mail is the communication destination information indicating the communication destination will be described.
[0065] Figure 3 A configuration example of the information conversion system of the present example embodiment is shown. The information conversion system of the present example embodiment includes a first network N, a second network M, the information conversion device 1, a mail server 2, a first terminal 3, and a second terminal 4. The number of each of the first terminal 3 and the second terminal 4 is one or any one of two or more.
[0066] In the present example embodiment, it is assumed that the first network N is a network that cannot communicate with the second network M.
[0067] It is assumed that the second network M is a network that cannot communicate with the first network N.
[0068] The mail server 2 is a server that accesses a mail by the second terminal 4. The mail server 2 stores a mail received via the second network M or the first network N and sent to a terminal connected to the second network M.
[0069] The second terminal 4 is connected to the second network M. The second terminal 4 cannot communicate with the first network N.
[0070] The second terminal 4 includes an output unit 41. The output unit 41 outputs the read information added to the mail received from the mail server 2 according to the operation of the user. For example, the output unit 41 displays the read information.
[0071] The read information is information including the communication destination information indicating the communication destination. The output form of the read information is, for example, a one-dimensional barcode, a two-dimensional barcode, a flicker of light or audio information, infrared communication data, or other forms that can be read by the first terminal 3 without going through the second network M.
[0072] The first terminal 3 is connected to the first network N. The first terminal 3 includes an information reading unit 31 and an output unit 32.
[0073] The information reading unit 31 reads the read information that can be read by a method that does not go through the second network M. For example, when the read information is a one-dimensional barcode, a two-dimensional barcode, or a flicker of light, the information reading unit 31 can be an imaging unit of a camera. When the read information is audio information or infrared communication data, the information reading unit 31 can be a sensor that can read the read information.
[0074] Further, the information reading unit 31 restores the read information that has been read to the communication destination information. The first terminal 3 can include an application that can restore the communication destination information.
[0075] The information reading unit 31 can cause the output unit 32 to output the communication destination information recovered from the read information.
[0076] The output unit 32 outputs information about communication with the communication destination indicated by the recovered communication destination information, for example, information obtained from the communication destination.
[0077] Next, the information conversion device 1 of the present example embodiment will be described. The information conversion device 1 includes the extraction unit 11 and the output unit 12. The information conversion device 1 receives a mail addressed to a terminal connected to the second network M (for example, addressed to the second terminal 4) from a terminal of a mail sending source via the second network M or the first network N.
[0078] The extraction unit 11 extracts predetermined mail-related information from the mail received from the terminal of the mail sending source.
[0079] The mail-related information is information related to the mail, and is information predetermined as an object to be extracted from the mail. The mail-related information is, for example, communication destination information indicating a communication destination included in a mail body, or a file attached to the mail.
[0080] In the present example embodiment, the mail-related information is assumed to be communication destination information indicating a communication destination outside the second network M (that is, a communication destination connected to a network other than the second network M). The communication destination information is information about a communication destination indicated by a URL, a telephone number, or the like included in the mail. In the present example embodiment, it is assumed that this communication destination cannot communicate with the second network M, but can communicate with the first network N.
[0081] In the present example embodiment, the extraction unit 11 receives a mail addressed to a terminal connected to the second network M, and extracts the mail-related information from the received mail when predetermined mail-related information (communication destination information indicating a communication destination other than the second network M) is included in the mail.
[0082] The output unit 12 converts the communication destination information of the communication destination related to the mail-related information into read information that can be read by the first terminal 3 by a method other than via the second network M, and outputs the mail to which the read information is added to the mail server 2. In the case of the present example embodiment, since the mail-related information is the communication destination information, the output unit 12 converts the communication destination information extracted from the mail into the read information. The output unit 12 can delete the mail-related information included in the mail.
[0083] The deletion of the mail-related information can be performed by the extraction unit 11 or the output unit 12. In a case where the read information is added to the mail, the output unit 12 can embed the read information in the original mail body or attach the read information to the original mail as an attachment.
[0084] The output unit 12 outputs, to the mail server 2, the mail that does not include the mail-related information at the time of reception and the mail to which the read information is added.
[0085] Figure 3 The illustrated example of the configuration of the information conversion system is one example. The information conversion apparatus 1 can include a plurality of extraction units 11 and a plurality of output units 12 to distribute the processing of the mail.
[0086] By configuring the information conversion apparatus 1 in this way, the information conversion apparatus 1 extracts the predetermined mail-related information from the received mail. Further, the information conversion apparatus 1 converts the communication destination information of the communication destination related to the mail-related information into the read information and outputs the mail to which the read information is added to the second terminal 4 via the mail server 2.
[0087] Therefore, the first terminal 3 that is not connected to the second network M can read the read information included in the mail that is sent to the second terminal 4 connected to the second network M. Further, the first terminal 3 can communicate with the communication destination indicated by the communication destination information based on the read information.
[0088] Therefore, the user can easily access the information held by the communication destination with respect to the mail-related information included in the mail that is sent to the terminal connected to the network that restricts communication with other networks.
[0089] As described above, the information conversion apparatus 1 of the present example embodiment can delete the predetermined mail-related information from the received mail. Therefore, it is possible to prevent the communication destination information of the communication destination with which the second terminal 4 cannot communicate from being included in the mail accessed by the second terminal 4.
[0090] The output unit 32 of the first terminal 3 can output the communication destination information recovered from the read information. This enables the user to check the communication destination information. Therefore, the user can visually check the reliability of the communication destination information.
[0091] Next, an example of the operation of the information conversion apparatus 1 of the present example embodiment will be described using Figure 4
[0092] Extraction unit 11 receives emails destined for terminals connected to the second network M (step S201), and when the email includes email-related information ("Yes" in step S202), extracts the predetermined email-related information from the received email (step S203). Extraction unit 11 outputs the email-related information to output unit 12.
[0093] When the email does not contain email-related information ("No" in step S202), the extraction unit 11 does not perform the operation in step S203. The output unit 12 does not perform the operations in steps S204 and S205.
[0094] In this embodiment, since the email-related information is communication destination information, the output unit 12 converts the communication destination information into read information that can be read by the first terminal 3 without going through the second network M (step S204).
[0095] Furthermore, output unit 12 adds the read information to the email (step S205). Output unit 12 then outputs the email with the read information added to it to mail server 2 (step S206). Output unit 12 also outputs emails that do not include email-related information received at the time of receipt to mail server 2.
[0096] The output unit 12 can delete email-related information included in the original email during any operation from steps S203 to S206.
[0097] Next, we will use Figure 5 This describes an operational example in the case where the first terminal 3 performs communication with the communication destination indicated by the communication destination information. Figure 5 The solid arrow shown indicates that the second terminal 4 reads emails via the second network M. Figure 5 The dashed line shown indicates that the first terminal 3 reads the information without going through the second network M.
[0098] The second terminal 4 is connected to the second network M. Furthermore, the second terminal 4 reads emails stored in the mail server 2 according to user actions (step S301).
[0099] Furthermore, the output unit 41 of the second terminal 4 outputs reading information of the emails received from the mail server 2 according to the user's operation (step S302). For example, the output unit 41 displays the reading information (two-dimensional barcode, etc.).
[0100] The first terminal 3 is connected to the first network N.
[0101] The information reading unit 31 of the first terminal 3 reads the read information output by the second terminal 4 according to the user's operation by a method that does not pass through the second network M (step S303). For example, the information reading unit 31 has an image capturing function such as a camera function, and reads the read information (two-dimensional bar code or the like) displayed on the second terminal 4 by the image capturing function.
[0102] Further, the information reading unit 31 restores the read information that has been read to the communication destination information (step S304). The output unit 32 of the first terminal 3 can output (display, audio output, or the like) the restored communication destination information.
[0103] Based on the restored communication destination information, the first terminal 3 communicates with the communication destination indicated by the communication destination information according to the user's operation via the first network N (step S305).
[0104] The output unit 32 of the first terminal 3 outputs information about the communication with the communication destination indicated by the restored communication destination information, such as information obtained from the communication destination (step S306).
[0105] By operating in this way, the information conversion apparatus 1 extracts predetermined mail-related information from the received mail. Further, the information conversion apparatus 1 converts the communication destination information of the communication destination related to the mail-related information to read information, and outputs the mail to which the read information is added.
[0106] Therefore, the first terminal 3, which is not connected to the second network M, can read the read information included in the mail that is a mail transmitted to the second terminal 4 connected to the second network M. Further, the first terminal 3 can communicate with the communication destination indicated by the communication destination information based on the read information.
[0107] Therefore, the user can easily access information held by the communication destination about the mail-related information included in the mail that is a mail transmitted to a terminal connected to a network that restricts communication with other networks.
[0108] As described above, in the second example embodiment of the present application, the information conversion apparatus 1 extracts predetermined mail-related information from the received mail. Further, the information conversion apparatus 1 converts the communication destination information of the communication destination related to the mail-related information to read information, and outputs the mail to which the read information is added.
[0109] Therefore, the first terminal 3, which is not connected to the second network M, can read the read information included in the mail that is a mail transmitted to the second terminal 4 connected to the second network M. Further, the first terminal 3 can communicate with the communication destination indicated by the communication destination information based on the read information.
[0110] Thus, the user can easily access information held by the communication destination with respect to the mail-related information included in the mail sent to the terminal connected to the network that restricts communication with other networks.
[0111] As described above, the information conversion apparatus 1 of the present example embodiment can delete the mail-related information from the received mail. Thus, it is possible to prevent the mail from including the communication-destination information of the communication destination with which the second terminal 4 cannot communicate.
[0112] The output unit 32 of the first terminal 3 can output the communication-destination information recovered from the read information. This enables the user to check the communication-destination information.
[0113] [Third Example Embodiment]
[0114] Next, the information conversion apparatus 5 according to the third example embodiment of the present application will be described in detail. The information conversion apparatus 5 of the present example embodiment verifies the security of communication with the communication destination indicated by the communication-destination information.
[0115] In the present example embodiment, the mail-related information is assumed to be the communication-destination information.
[0116] Figure 6 is a block diagram showing a configuration example of the information conversion apparatus 5 of the present example embodiment. The configuration example of the information conversion system of the present example embodiment is obtained by changing the information conversion apparatus 1 of the configuration example of Figure 3 to the information conversion apparatus 5 of Figure 6 .
[0117] In the present example embodiment, in the case of a secure communication destination, the terminal connected to the second network M can communicate with the communication destination not included in the second network M.
[0118] The information conversion apparatus 5 of the present example embodiment includes an extraction unit 51, a verification unit 52, and an output unit 53.
[0119] The extraction unit 51 extracts predetermined mail-related information from the received mail. The extraction unit 51 of the present example embodiment receives the mail sent to the terminal connected to the second network M, and extracts predetermined mail-related information from the received mail when the mail includes the mail-related information. In the case of the present example embodiment, since the mail-related information is the communication-destination information, the extraction unit 51 extracts the communication-destination information from the mail.
[0120] When the extraction unit 51 has extracted the communication-destination information, the verification unit 52 verifies the security of communication with the communication destination indicated by the extracted communication-destination information.
[0121] As the security verification method, for example, any of the following methods can be considered.
[0122] (1) The information conversion device 5 stores a collation list, which is a list of communication destination information of a communication destination other than the second network M that is allowed to communicate with the second network M. Then, the verification unit 52 collates the collation list with the communication destination information extracted by the extraction unit 51.
[0123] (2) A device other than the information conversion device 5 includes the above-mentioned collation list, and the verification unit 52 collates the collation list with the communication destination information extracted by the extraction unit 51.
[0124] (3) The verification unit 52 communicates with the communication destination indicated by the communication destination information extracted by the extraction unit 51 and verifies the security.
[0125] In addition to these methods, any method can be used as the security verification method. The collation list can be a list of communication destination information of a communication destination other than the second network M that is not allowed (prohibited) to communicate with the second network M. In this case, when the communication destination information extracted by the extraction unit 51 is not included in the collation list, the verification unit 52 determines that the communication with the communication destination information is secure.
[0126] It is assumed that the verification unit 52 of the present example embodiment verifies the security by collating the collation list stored in the information conversion device 5 with the communication destination information extracted by the extraction unit 51 (method (1)). Other methods (methods (2) and (3)) will be described later (fourth example embodiment).
[0127] It is assumed that the information conversion device 5 of the present example embodiment stores a collation list in a storage unit in the device in advance. The collation list can be set by an administrator or the like of the information conversion device 5.
[0128] When the communication with the communication destination indicated by the communication destination information extracted by the extraction unit 51 is secure, the verification unit 52 of the present example embodiment outputs a mail including the communication destination information to the output unit 53 without converting the communication destination information into the read information.
[0129] When the communication with the communication destination indicated by the communication destination information extracted by the extraction unit 51 is not secure, the verification unit 52 outputs the received mail and the extracted communication destination information to the output unit 53.
[0130] When receiving the mail received by the extraction unit 51 and the extracted communication destination information from the verification unit 52, the output unit 53 converts the communication destination information into read information that can be read by the first terminal 3 through a method that does not pass through the second network M. Further, the output unit 53 outputs the mail to which the read information is added to the mail server 2. The output unit 53 also outputs to the mail server 2 the mail that does not include the mail-related information at the time of reception by the extraction unit 51, and the mail that includes the secure communication destination information as the mail-related information.
[0131] By configuring the information conversion apparatus 5 in this way, the information conversion apparatus 5 extracts predetermined mail-related information from the received mail. Further, the information conversion apparatus 5 converts the communication destination information of the communication destination related to the mail-related information into read information, and outputs the mail to which the read information is added.
[0132] Accordingly, the first terminal 3 that is not connected to the second network M can read the read information included in the mail that is sent to the second terminal 4 connected to the second network M. Further, the first terminal 3 can communicate with the communication destination indicated by the communication destination information based on the read information.
[0133] Accordingly, the user can easily access the information held by the communication destination with respect to the mail-related information included in the mail that is sent to the terminal connected to the network that restricts communication with other networks.
[0134] As described above, when the communication with the communication destination indicated by the communication destination information is not secure, the information conversion apparatus 5 of the present example embodiment does not store the communication destination information but the mail including the read information of the communication destination information in the mail server. Further, when the information conversion apparatus 5 deletes the mail-related information from the received mail, the second terminal 4 cannot use the communication destination information to communicate with the communication destination. Accordingly, it is possible to reduce the risk that the second terminal 4 becomes a route of computer virus infection or information leakage due to infection of a virus.
[0135] When the communication with the communication destination indicated by the communication destination information is secure, the information conversion apparatus 5 of the present example embodiment stores the mail including the communication destination information in the mail server 2. Accordingly, when the communication with the communication destination indicated by the communication destination information is secure, the second terminal 4 can use the communication destination information included in the mail to communicate with the communication destination without using the first terminal 3. Accordingly, the user can more easily communicate with the communication destination indicated by the communication destination information.
[0136] Next, an example of the operation of the information conversion apparatus 5 of the present example embodiment will be described using Figure 7 the flowchart of Fig. 6.
[0137] The extraction unit 51 receives a mail addressed to a terminal connected to the second network M (step S401), and when mail-related information is included in the mail (YES in step S402), extracts predetermined mail-related information from the received mail. In the present example embodiment, the mail-related information is communication-destination information. The extraction unit 51 outputs the communication-destination information as the mail-related information and the mail to the verification unit 52 (step S403).
[0138] When the mail does not include mail-related information (NO in step S402), the extraction unit 51 does not perform the operation of step S403, and the verification unit 52 does not perform the operation of step S404. The output unit 53 does not perform the operations of step S405 and step S406. In this case, the extraction unit 51 outputs the received mail to the output unit 53.
[0139] The verification unit 52 verifies the security of communication with the communication destination indicated by the communication-destination information extracted by the extraction unit 51 by collating whether the communication-destination information extracted by the extraction unit 51 is included in a collation list set in the information conversion device 5.
[0140] When it is determined that the communication with the communication destination indicated by the communication-destination information is secure (YES in step S404), the verification unit 52 outputs the mail including the communication-destination information to the output unit 53.
[0141] When the verification unit 52 determines that the communication with the communication destination indicated by the communication-destination information is secure, the output unit 53 does not convert the communication-destination information into read information.
[0142] When the verification unit 52 determines that the communication with the communication destination indicated by the communication-destination information is not secure (NO in step S404), the output unit 53 converts the communication-destination information into read information that can be read by the first terminal 3 by a method other than via the second network M (step S405). The output unit 53 adds the read information to the mail (step S406). Further, the output unit 53 outputs the mail to which the read information is added to the mail server 2 (step S407). The output unit 53 also outputs a mail that does not include mail-related information at the time of reception by the extraction unit 51, and a mail including communication-destination information indicating a secure communication destination as mail-related information.
[0143] By operating in this way, the information conversion device 5 extracts predetermined mail-related information from the received mail. Further, the information conversion device 5 converts the communication-destination information of the communication destination related to the mail-related information into read information, and outputs the mail to which the read information is added.
[0144] Thus, the first terminal 3 not connected to the second network M can read the read information included in the mail, which is the mail sent to the second terminal 4 connected to the second network M. Further, the first terminal 3 can communicate with the communication destination indicated by the communication destination information based on the read information.
[0145] Thus, the user can easily access the information held by the communication destination with respect to the mail-related information included in the mail, which is the mail sent to the terminal connected to the network that restricts communication with other networks.
[0146] As described above, in the third example embodiment of the present application, the information conversion device 5 extracts predetermined mail-related information from the received mail. Further, the information conversion device 5 converts the communication destination information of the communication destination related to the mail-related information into read information, and outputs the mail to which the read information is added.
[0147] Thus, the first terminal 3 not connected to the second network M can read the read information included in the mail, which is the mail sent to the second terminal 4 connected to the second network M. Further, the first terminal 3 can communicate with the communication destination indicated by the communication destination information based on the read information.
[0148] Thus, the user can easily access the information held by the communication destination with respect to the mail-related information included in the mail, which is the mail sent to the terminal connected to the network that restricts communication with other networks.
[0149] When the communication with the communication destination indicated by the communication destination information is safe, the information conversion device 5 of the present example embodiment does not convert the communication destination information included in the mail into read information. Thus, when the communication destination indicated by the communication destination information included in the mail is safe, the second terminal 4 connected to the second network M that has received the mail can directly communicate with the communication destination indicated by the communication destination information.
[0150] When the communication with the communication destination indicated by the communication destination information is not safe, the information conversion device 5 of the present example embodiment does not store the communication destination information but stores the mail including the read information of the communication destination information in the mail server 2. Thus, when the communication destination indicated by the communication destination information is not safe, the first terminal 3 can communicate with the communication destination indicated by the communication destination information based on the read information. Thus, the user can easily access the information of the communication destination indicated by the communication destination information included in the mail.
[0151] [Fourth Example Embodiment]
[0152] Next, an information conversion system according to a fourth example embodiment of the present application will be described in detail. As in the third example embodiment, the information conversion device 5 of the present example embodiment verifies the security of communication with the communication destination indicated by the communication destination information, and converts the communication destination information into the reading information based on the verification result.
[0153] In the third example embodiment, the method (1) of verifying the security based on the collation list set in the information conversion device 5 has been described, but in the present example embodiment, other methods (2) and (3) will be described.
[0154] In the present example embodiment, mail-related information is assumed to be the communication destination information.
[0155] Figure 8 A configuration example of the information conversion system of the present example embodiment is shown. The information conversion system of the present embodiment includes the first network N, the second network M, the information conversion device 5, the mail server 2, the first terminal 3, the second terminal 4, and the collation server 6.
[0156] In the present example embodiment, the first network N is assumed to be a network that cannot communicate with the second network M.
[0157] In the present example embodiment, the second network M is assumed to be a network that cannot communicate with the communication destination indicated by the communication destination information not included in the collation list stored in the storage unit 62 of the collation server 6.
[0158] When the terminal connected to the second network M desires to communicate with the communication destination outside the second network M, the collation server 6 performs collation on whether communication with the communication destination is possible based on the collation list. The collation server 6 includes the collation unit 61 and the storage unit 62.
[0159] The collation unit 61 collates the communication destination information included in the collation list with the communication destination information of the communication destination with which the second terminal 4 connected to the second network M communicates. Then, as a result of the collation, when the communication destination information of the communication destination with which the second terminal 4 communicates is included in the collation list, the second terminal 4 is allowed to communicate with the communication destination.
[0160] The storage unit 62 stores the collation list. The collation list is a list of the communication destination information of the communication destination outside the second network M that is allowed to communicate with the second network M. The collation list can be a list of the communication destination information of the communication destination that is not allowed (prohibited) to communicate with the second network M. In this case, when the communication destination information of the communication destination with which the second terminal 4 communicates is not included in the collation list, the collation unit 61 allows the second terminal 4 to communicate with the communication destination.
[0161] Next, the information conversion device 5 of the present example embodiment will be described. The information conversion device 5 includes an extraction unit 51, a verification unit 52, and an output unit 53.
[0162] The extraction unit 51 extracts predetermined mail-related information from a received mail. The extraction unit 51 of the present example embodiment receives a mail addressed to a terminal connected to the second network M, and extracts predetermined mail-related information from the received mail when the mail includes the predetermined mail-related information. In the case of the present example embodiment, since the mail-related information is the communication destination information, the extraction unit 51 extracts the communication destination information from the mail.
[0163] When the extraction unit 51 has extracted the communication destination information, the verification unit 52 verifies the security of the communication with the communication destination indicated by the communication destination information.
[0164] In the present example embodiment, the verification unit 52 verifies the security by the method (2) or the method (3) among the security verification methods described in the third example embodiment.
[0165] First, the case where the security is verified by the method (2) will be described.
[0166] The method (2) is a method in which a device other than the information conversion device 5 includes a collation list, and the verification unit 52 collates the collation list with the communication destination information extracted by the extraction unit 51.
[0167] The collation list is a list of communication destination information of a communication destination other than the second network M that is allowed to communicate with the second network M. In the present example embodiment, it is assumed that the collation server 6 includes the collation list. The collation list can be a list of communication destination information of a communication destination other than the second network M that is not allowed (prohibited) to communicate with the second network M.
[0168] The verification unit 52 collates the communication destination information included in the collation list stored in the storage unit 62 of the collation server 6 with the communication destination information extracted by the extraction unit 51.
[0169] When the communication destination information extracted by the extraction unit 51 is included in the collation list, that is, when the communication with the communication destination indicated by the communication destination information extracted by the extraction unit 51 is allowed, the verification unit 52 outputs the mail to the output unit 53 without converting the communication destination information into the read information.
[0170] When the communication destination indicated by the communication destination information is not included in the collation list, that is, when communication with the communication destination indicated by the communication destination information extracted by the extraction unit 51 is not allowed, the verification unit 52 outputs the received mail and the extracted communication destination information to the output unit 53.
[0171] Next, a case where the security is verified by the method (3) will be described.
[0172] The method (3) is a method in which the verification unit 52 communicates with the communication destination indicated by the communication destination information extracted by the extraction unit 51 and verifies the security.
[0173] For example, when the verification unit 52 actually communicates with the communication destination indicated by the communication destination information extracted by the extraction unit 51 and detects an abnormal operation such as a virus infection, the verification unit 52 determines that the communication with the communication destination indicated by the communication destination information is not secure.
[0174] The following actions of the verification unit 52 can be restricted: communication with a file or a directory, communication with a communication destination other than the communication destination indicated by the communication destination information to be verified, execution of an operation, execution of a mail, and the like.
[0175] When it is determined that the communication with the communication destination indicated by the communication destination information is secure, the verification unit 52 requests the collation server 6 to add the communication destination information to the collation list.
[0176] The verification unit 52 can verify the security by combining any two or more of the verification method (1), the verification method (2), and the verification method (3).
[0177] Specifically, for example, in a case where the method (1) or the method (2) is combined with the method (3), the verification unit 52 first verifies whether the communication destination information extracted by the extraction unit 51 is included in the collation list. When the communication destination information is not included in the collation list, the verification unit 52 can perform communication with the communication destination indicated by the communication destination information and verify the security of the communication with the communication destination indicated by the communication destination information.
[0178] By configuring the information conversion apparatus 5 in this way, the information conversion apparatus 5 extracts predetermined mail-related information from the received mail. Further, the information conversion apparatus 5 converts the communication destination information of the communication destination related to the mail-related information into reading information and outputs the mail to which the reading information is added.
[0179] Thus, the first terminal 3 not connected to the second network M can read the read information included in the mail, which is a mail transmitted to the second terminal 4 connected to the second network M. Further, the first terminal 3 can communicate with the communication destination indicated by the communication destination information based on the read information.
[0180] Thus, the user can easily access the information held by the communication destination with respect to the mail-related information included in the mail, which is a mail transmitted to the terminal connected to the network that restricts communication with other networks.
[0181] As described above, when the security is verified by the method (3), the information conversion device 5 of the present example embodiment communicates with the communication destination indicated by the communication destination information extracted by the extraction unit 51 and verifies the security. Thus, even when the communication destination information extracted from the mail is not included in the collation list, the verification unit 52 can verify the security of the communication with the communication destination indicated by the communication destination information.
[0182] The information conversion device 5 of the present example embodiment can reflect the communication destination information of the communication destination verified as secure by the method (3) in the collation list. In this case, the collation server 6 can allow the communication between the communication destination verified as secure and the second terminal 4.
[0183] When the verification is performed by combining the method (1) or the method (2) with the method (3), the information conversion device 5 of the present example embodiment verifies the security of the communication with the communication destination indicated by the communication destination information not included in the collation list by the method (3). Then, when the communication with the communication destination indicated by the communication destination information is secure, the information conversion device 5 adds the communication destination information to the collation list of the collation server 6.
[0184] Thus, in the case where the security of the communication with the communication destination indicated by the communication destination information is verified again, the information conversion device 5 can perform the verification by the method (1) or (2). Thus, the information conversion device 5 does not need to perform the verification by the method (3). Thus, the verification can be efficiently performed.
[0185] Next, an operation example of the information conversion system of the present example embodiment will be described using Figure 9
[0186] The operation example of the information conversion system of the present example embodiment is an operation example in the case where the information conversion device 5 verifies the security by the above-described method (3). Figure 9 The operation example of the information conversion system of the present example embodiment (verification by the method (3)) is the same as the operation example of the information conversion system of the present example embodiment (verification by the method (1) or (2)).
[0187] Figure 7 The operation example of the information conversion device of the third example embodiment shown in FIG. 12 (verified by the method (1)) is different in the operation after the operation of the verification unit 52. Since the operations of steps S401 to S403 in the third example embodiment are similar to those in the third example embodiment, the description of the operations of steps S401 to S403 in the operation of the information conversion device 5 is omitted.
[0188] After the information conversion device 5 performs the series of operations from step S401 to step S403 in the operation example of the information conversion device 5 of the third embodiment (described above), Figure 7 ) of the information conversion system of the present embodiment performs Figure 9 the operation shown in FIG. 13. When Figure 7 the determination in step S404 is "No", the information conversion device 5 of the present example embodiment performs the operations of steps S405 to S407.
[0189] In the case where the communication destination information is included in the mail received by the extraction unit 51 as the mail-related information, the verification unit 52 of the information conversion device 5 performs verification. The verification unit 52 verifies the security of the communication with the communication destination indicated by the communication destination information extracted by the extraction unit 51 by communicating with the communication destination indicated by the communication destination information (step S501). This operation corresponds to the security verification of step S404 in Figure 7 .
[0190] When it is determined that the communication with the communication destination indicated by the communication destination information is secure, the verification unit 52 requests the collation server 6 to add the communication destination information of the communication destination with which the communication is verified to be secure to the collation list (step S502).
[0191] Based on the request from the verification unit 52, the collation server 6 adds the communication destination information of the communication destination with which the communication is verified to be secure to the collation list stored in the storage unit 62 (step S503).
[0192] When the communication destination information requested to be added to the collation list is already included in the collation list, the collation server 6 can not add the communication destination information to the collation list.
[0193] The verification unit 52 outputs the mail including the communication destination information to the output unit 53. The output unit 53 outputs the mail including the communication destination information to the mail server 2 (step S504).
[0194] The second terminal 4 reads the mail from the mail server 2 according to the user's operation (step S505). Further, the second terminal 4 requests the verification server 6 to communicate with the communication destination indicated by the communication destination information according to the user's operation (step S506).
[0195] When the communication with the communication destination outside the second network M is requested from the second terminal 4 connected to the second network M, the verification server 6 performs the verification. The verification server 6 verifies the communication destination information of the communication destination with which the second terminal 4 requests to communicate, and the communication destination information of the communication destination with which the communication is permitted to be included in the verification list (step S507).
[0196] When the result of the verification is that the communication destination information of the communication destination with which the second terminal 4 communicates is included in the verification list, the verification unit 61 permits the second terminal 4 to communicate with the communication destination outside the second network M.
[0197] When the communication is permitted, the second terminal 4 communicates with the communication destination indicated by the communication destination information via the first network N. The output unit 41 of the second terminal 4 outputs information on the communication with the communication destination indicated by the communication destination information, for example, information obtained from the communication destination (step S508).
[0198] By operating in this way, the information conversion device 5 extracts the predetermined mail-related information from the received mail. Further, the information conversion device 5 converts the communication destination information of the communication destination related to the mail-related information into the read information, and outputs the mail to which the read information is added.
[0199] Accordingly, the first terminal 3 not connected to the second network M can read the read information included in the mail sent to the second terminal 4 connected to the second network M. Further, the first terminal 3 can communicate with the communication destination indicated by the communication destination information based on the read information.
[0200] Accordingly, the user can easily access the information held by the communication destination on the mail-related information included in the mail sent to the terminal connected to the network that restricts the communication with other networks.
[0201] As described above, in the fourth example embodiment of the present application, the information conversion device 5 extracts the predetermined mail-related information from the received mail. Further, the information conversion device 5 converts the communication destination information of the communication destination related to the mail-related information into the read information, and outputs the mail to which the read information is added.
[0202] Thus, the first terminal 3 not connected to the second network M can read the read information included in the mail, which is a mail transmitted to the second terminal 4 connected to the second network M. Further, the first terminal 3 can communicate with the communication destination indicated by the communication destination information based on the read information.
[0203] Thus, the user can easily access the information held by the communication destination with respect to the mail related information included in the mail, which is a mail transmitted to the terminal connected to the network that restricts communication with other networks.
[0204] When the security is verified by the method (3), the information conversion device 5 of the present example embodiment communicates with the communication destination indicated by the communication destination information extracted by the extraction unit 51 and verifies the security. Thus, even when the communication destination information extracted from the mail is not included in the collation list, the verification unit 52 can verify the security of the communication with the communication destination indicated by the communication destination information.
[0205] The information conversion device 5 of the present example embodiment can reflect the communication destination information of the communication destination verified as secure by the method (3) in the collation list. In this case, the collation server 6 can allow the communication between the communication destination verified as secure and the second terminal 4.
[0206] When the verification is performed by combining the method (1) or the method (2) with the method (3), the information conversion device 5 of the present example embodiment verifies the security of the communication with the communication destination indicated by the communication destination information not included in the collation list by the method (3). Then, when the communication with the communication destination indicated by the communication destination information is secure, the information conversion device 5 adds the communication destination information to the collation list of the collation server 6.
[0207] Thus, in the case where the security of the communication with the communication destination indicated by the communication destination information is verified again, the information conversion device 5 can perform the verification by the method (1) or (2). Thus, the information conversion device 5 does not need to perform the verification by the method (3). Thus, the verification can be efficiently performed.
[0208] [Fifth Example Embodiment]
[0209] Next, the information conversion system according to the fifth example embodiment of the present application will be described in detail. The information conversion device 5 of the present example embodiment extracts an attachment as the mail related information.
[0210] In the present embodiment, the mail related information is an attachment. The communication destination information of the communication destination with respect to the mail related information indicates the storage destination of the attachment of the storage server 8 as the communication destination.
[0211] Figure 10 A configuration example of the information conversion system of the present example embodiment will be shown. The information conversion system of the present embodiment includes a first network N, a second network M, an information conversion device 7, a mail server 2, a first terminal 3, a second terminal 4, and a storage server 8.
[0212] In the present example embodiment, it is assumed that the first network N is a network that cannot communicate with the second network M.
[0213] It is assumed that the second network M is a network that cannot communicate with the first network N.
[0214] The storage server 8 is a storage destination of mail-related information. The storage server 8 stores mail-related information extracted from a mail addressed to a terminal connected to the second network M. The storage server 8 includes an input-output unit 81 and a storage unit 82.
[0215] The input-output unit 81 stores the mail-related information in a storage destination determined by the extraction unit 71 of the information conversion device 7. The extraction unit 71 designates the storage unit 82 of the storage server 8 as the storage destination. The extraction unit 71 can designate a predetermined area of the storage unit 82 as the storage destination. When the storage server 8 includes a plurality of storage units 82, the extraction unit 71 can designate any one of the storage units 82.
[0216] When reading of the mail-related information is requested from the first terminal 3, the input-output unit 81 outputs the mail-related information based on communication-destination information indicating the storage destination.
[0217] The storage unit 82 stores the mail-related information.
[0218] Next, the information conversion device 7 of the present example embodiment will be described. The information conversion device 7 includes an extraction unit 71 and an output unit 72.
[0219] The extraction unit 71 extracts predetermined mail-related information from a received mail. In the present example embodiment, the mail-related information is assumed to be an attachment included in the mail.
[0220] In the present example embodiment, the extraction unit 71 receives a mail addressed to a terminal connected to the second network M, and extracts predetermined mail-related information from the received mail when the mail-related information is included in the mail.
[0221] When the attachment has been extracted as the predetermined mail-related information, the extraction unit 71 of the present example embodiment deletes the attachment from the original mail.
[0222] Thus, the second terminal 4 receives the mail not including the attachment from the mail server 2. Thus, the second terminal 4 cannot access the attachment. Thus, it is possible to reduce the risk of infection of a virus due to the second terminal 4 accessing the mail-related information, thereby becoming a route of computer virus infection or information leakage.
[0223] Further, the extraction unit 71 determines the storage destination of the mail-related information stored in the storage unit 82 of the storage server 8, and creates communication destination information (URL or the like) indicating the storage destination. In the present example embodiment, the communication destination information of the communication destination related to the mail-related information is the communication destination information indicating the storage destination of the mail-related information.
[0224] Alternatively, the storage server 8 can determine the storage destination of the mail-related information, and the storage server 8 can output information indicating the storage destination to the extraction unit 71.
[0225] Further, the extraction unit 71 outputs the extracted mail-related information to the storage server 8.
[0226] In a case where a plurality of mail-related information (attachments) is attached to the mail, the extraction unit 71 can determine the storage destination of the mail-related information in units of mail, or can determine the storage destination of each mail-related information.
[0227] Further, when a plurality of mail-related information is stored in the same storage destination, the storage server 8 can store a list of the mail-related information together with the mail-related information. When the first terminal 3 communicates with the communication destination (storage destination) indicated by the communication destination information and the list of the mail-related information is included in the storage destination, the output unit 32 of the first terminal 3 can output the list of the mail-related information. The first terminal 3 can request the storage server 8 to read the mail-related information selected by the user.
[0228] The output unit 72 converts the communication destination information of the communication destination related to the mail-related information created by the extraction unit 71 into read information that can be read by the first terminal 3 not connected to the second network M to which the second terminal 4 receiving the mail is connected, by a method not via the second network M. Further, the output unit 72 outputs the mail to which the read information is added to the mail server 2. The output unit 72 also outputs the mail to which the mail-related information is not attached at the time of reception by the extraction unit 71 to the mail server 2.
[0229] By configuring the information conversion apparatus 7 in this way, the information conversion apparatus 7 extracts the predetermined mail-related information from the received mail. Further, the information conversion apparatus 7 converts the communication destination information of the communication destination related to the mail-related information into read information, and outputs the mail to which the read information is added.
[0230] Thus, the first terminal 3 not connected to the second network M can read the read information included in the mail, which is the mail sent to the second terminal 4 connected to the second network M. Further, the first terminal 3 can communicate with the communication destination indicated by the communication destination information based on the read information.
[0231] Thus, the user can easily access the information held by the communication destination with respect to the mail related information included in the mail, which is the mail sent to the terminal connected to the network that restricts communication with other networks.
[0232] As described above, the information conversion apparatus 7 of the present example embodiment stores the mail related information in the storage server 8, converts the communication destination information indicating the storage destination of the mail related information into the read information, and adds the read information to the mail. Thus, the first terminal 3 can access the mail related information without going through the second terminal 4.
[0233] The information conversion apparatus 7 of the present example embodiment deletes the attachment as the mail related information from the original mail. Thus, the second terminal 4 receives the mail not including the attachment from the mail server 2. Thus, the second terminal 4 cannot access the attachment included in the original mail.
[0234] Thus, it is possible to reduce the risk of becoming a route of computer virus infection or information leakage due to the second terminal 4 accessing the mail related information and thus being infected with a virus.
[0235] Next, an example of the operation of the information conversion apparatus 7 of the present example embodiment will be described using the flowchart of FIG. 8. Figure 11
[0236] The extraction unit 71 of the information conversion apparatus 7 receives the mail addressed to the terminal connected to the second network M (step S601), and when the mail includes the mail related information (YES in step S602), extracts the predetermined mail related information from the received mail (step S603). When the attachment as the predetermined mail related information has been extracted, the extraction unit 71 deletes the attachment from the original mail.
[0237] When the mail does not include the mail related information (NO in step S602), the extraction unit 71 does not perform the operations of steps S603 to S605. The output unit 72 does not perform the operations of steps S606 and S607.
[0238] Further, the extraction unit 71 determines the storage destination of the mail related information (attachment) stored in the storage server 8. The extraction unit 71 outputs the extracted mail related information and the information indicating the storage destination to the storage server 8 (step S604).
[0239] The extraction unit 71 creates communication destination information indicating the storage destination based on the information indicating the storage destination of the mail-related information output to the storage server 8 (step S605).
[0240] The communication destination information indicating the storage destination of the mail-related information can be a URL.
[0241] The input-output unit 81 of the storage server 8 stores the mail-related information in the storage unit 82 based on the information indicating the storage destination determined by the extraction unit 71. In the case of the present example embodiment, the mail-related information is an attachment, and the communication destination related to the mail-related information is the storage destination of the attachment.
[0242] The output unit 72 of the information conversion apparatus 7 converts the communication destination information created by the extraction unit 71 into read information that can be read by the first terminal 3 by a method that does not pass through the second network M (step S606).
[0243] Further, the output unit 72 adds the read information to the mail (step S607), and outputs the mail to the mail server 2 (step S608). The output unit 72 also outputs the mail not including the mail-related information at the time of reception by the extraction unit 71 to the mail server 2.
[0244] Next, an operation example in which the first terminal 3 uses the read information to communicate with the communication destination indicated by the communication destination information and access the mail-related information will be described using Figure 12 Figure 12 The solid arrow shown in FIG. 8 indicates that the second terminal 4 reads the mail via the second network M, or the first terminal 3 communicates with the storage server 8 via the first network N and reads the mail-related information. Figure 12 The dashed line shown in FIG. 8 indicates that the first terminal 3 reads the read information by a method that does not pass through the second network M.
[0245] Figure 12 The operation example of the information conversion system shown in FIG. 8 is different from the operation example of the information conversion system of the second example embodiment of Figure 5 in that the first terminal 3 communicates with the communication destination information indicating the storage destination of the mail-related information (steps S705 and S706). Unless otherwise specified, the other operations are similar to those of the second example embodiment.
[0246] The second terminal 4 is connected to the second network M. According to the operation of the user, the second terminal 4 reads the mail stored in the mail server 2 (step S701).
[0247] Further, the output unit 41 of the second terminal 4 outputs the read information added to the mail received from the mail server 2 according to the user's operation (step S702). The output unit 41 of the second terminal 4, for example, displays the read information.
[0248] The first terminal 3 is connected to the first network N.
[0249] The information read unit 31 of the first terminal 3 reads the read information output from the second terminal 4 by a method not via the second network M according to the user's operation (step S703).
[0250] Further, the information read unit 31 restores the read information that has been read to the communication destination information (step S704).
[0251] Based on the restored communication destination information, the first terminal 3 communicates with the storage server 8 that is the communication destination indicated by the communication destination information via the first network N according to the user's operation (step S705).
[0252] When receiving the communication from the first terminal 3, the input-output unit 81 of the storage server 8 reads the mail related information stored in the storage unit 82 that is the communication destination that has requested the communication (step S706).
[0253] When the list of mail related information is stored together with the mail related information in the storage destination that has requested the communication, the storage server 8 first outputs the information related to the list of mail related information to the first terminal 3. The output unit 32 of the first terminal 3 outputs the list of mail related information based on the information related to the list of mail related information, and allows the user to select the mail related information. The first terminal 3 requests the storage server 8 to communicate again, and reads the mail related information stored in the storage unit 82 and selected by the user.
[0254] The output unit 32 of the first terminal 3 outputs the information on the communication with the communication destination indicated by the restored communication destination information, for example, as an attachment of the mail related information stored in the storage server 8 (step S707).
[0255] By operating in this way, the information conversion device 7 extracts the predetermined mail related information from the received mail. Further, the information conversion device 7 converts the communication destination information of the communication destination related to the mail related information to the read information, and outputs the mail to which the read information is added.
[0256] Thus, the first terminal 3 not connected to the second network M can read the read information included in the mail, which is the mail sent to the second terminal 4 connected to the second network M. Further, the first terminal 3 can communicate with the communication destination indicated by the communication destination information based on the read information.
[0257] Thus, the user can easily access the information held by the communication destination with respect to the mail related information included in the mail, which is the mail sent to the terminal connected to the network that restricts communication with other networks.
[0258] As described above, in the fifth example embodiment of the present application, the information conversion device 7 extracts predetermined mail related information from the received mail. Further, the information conversion device 7 converts the communication destination information of the communication destination related to the mail related information into read information, and outputs the mail to which the read information is added.
[0259] Thus, the first terminal 3 not connected to the second network M can read the read information included in the mail, which is the mail sent to the second terminal 4 connected to the second network M. Further, the first terminal 3 can communicate with the communication destination indicated by the communication destination information based on the read information.
[0260] Thus, the user can easily access the information held by the communication destination with respect to the mail related information included in the mail, which is the mail sent to the terminal connected to the network that restricts communication with other networks.
[0261] As described above, the information conversion device 7 of the present example embodiment stores the mail related information in the storage server 8, converts the communication destination information indicating the storage destination of the mail related information into read information, and adds the read information to the mail. Thus, the first terminal 3 can access the mail related information without going through the second terminal 4.
[0262] When the attachment has been extracted as the mail related information, the information conversion device 7 of the present example embodiment deletes the attachment from the original mail. Thus, the second terminal 4 receives the mail not including the attachment from the mail server 2. Thus, the second terminal 4 cannot access the attachment included in the original mail.
[0263] Thus, it is possible to reduce the risk of becoming a route of computer virus infection or information leakage due to the second terminal 4 accessing the mail related information and being infected with a virus.
[0264] [Sixth Example Embodiment]
[0265] Next, the information conversion system according to the sixth example embodiment of the present application will be described in detail. The information conversion system of the present example embodiment authenticates the user when the first terminal 3 reads the mail related information.
[0266] In the present embodiment, the mail-related information is an attachment. The communication destination with respect to the mail-related information is assumed to be the storage destination of the attachment of the storage server 8.
[0267] Figure 13 A configuration example of the information conversion system of the present example embodiment is shown. The information conversion system of the present embodiment includes the first network N, the second network M, the information conversion device 7, the mail server 2, the first terminal 3, the second terminal 4, the storage server 8, and the authentication server 9.
[0268] The storage server 8 and the authentication server 9 can be configured as the same device.
[0269] There can be a plurality of first terminals 3 connected to the first network N in the information conversion system. There can also be a plurality of second terminals 4 connected to the second network M in the information conversion system.
[0270] In the present example embodiment, it is assumed that the first network N is a network that cannot communicate with the second network M.
[0271] It is assumed that the second network M is a network that cannot communicate with the first network N.
[0272] The information conversion system of the present example embodiment differs from the information conversion system of the fifth example embodiment in that the information conversion system includes the authentication server 9. Unless otherwise noted, the other configurations are similar to those of the fifth example embodiment.
[0273] First, the storage server 8 will be described.
[0274] The input-output unit 81 of the storage server 8 performs reading of the mail-related information stored in the storage unit 82 based on the communication destination of the first terminal 3 with respect to the first terminal 3 authenticated by the authentication server 9. The communication destination from which the first terminal 3 requests to communicate is the storage destination of the mail-related information.
[0275] The input-output unit 81 of the storage server 8 instructs the first terminal 3 that is not authenticated by the authentication server 9 to communicate with the authentication server 9.
[0276] Next, the authentication server 9 will be described.
[0277] When the first terminal 3 communicates with the storage server 8, the authentication server 9 determines whether to allow the first terminal to read the mail-related information of the storage server 8. The authentication server 9 includes an authentication unit 91 and a storage unit 92.
[0278] The authentication unit 91 authenticates the first terminal 3 that has communicated with the authentication server 9 based on the authentication information stored in the storage unit 92.
[0279] The authentication information is, for example, information used for authentication, such as a terminal unique identifier of the first terminal 3 or a password associated with the communication destination information indicating the storage destination.
[0280] The storage unit 92 stores the authentication information. The storage unit 92 can store the authentication information as an authentication list that is a list of the authentication information.
[0281] As the authentication method in the authentication server 9, for example, the following methods can be considered. The authentication method is not limited to the following methods.
[0282] (A) The authentication server 9 performs authentication based on a password generated for each mail and the communication destination information.
[0283] (B) The authentication server 9 performs authentication based on a password generated for each destination of the mail and the communication destination information.
[0284] (C) The authentication server 9 performs authentication based on a terminal unique identifier of the first terminal 3.
[0285] The authentication methods (A) to (C) will be described in detail below.
[0286] First, the authentication method (A) and the authentication method (B) will be described. Here, the different parts in the authentication method (A) and the authentication method (B) will be described first, and then the common parts will be described.
[0287] First, the part peculiar to the authentication method (A) will be described.
[0288] The extraction unit 71 of the information conversion apparatus 7 generates a password for each mail with respect to the created communication destination information (communication destination information indicating the storage destination). Then, the extraction unit 71 outputs the authentication information in which the communication destination information and the password are associated with each other to the authentication server 9. The authentication server 9 adds the authentication information output by the extraction unit 71 to the authentication list stored in the storage unit 92.
[0289] Instead of the information conversion apparatus 7, the authentication unit 91 of the authentication server 9 can generate a password and associate the communication destination information with the password. In this case, the authentication unit 91 stores the authentication information in which the communication destination information and the password are associated with each other in the storage unit 92. Further, the authentication unit 91 outputs the authentication information to the extraction unit 71 of the information conversion apparatus 7.
[0290] Next, the part peculiar to the authentication method (B) will be described.
[0291] In the authentication method (B), the authentication information includes the communication destination information and the password generated for each of the destination information. The storage unit 92 of the authentication server 9 stores an authentication list that is a list of the authentication information. Further, the storage unit 92 of the authentication server 9 stores the destination information and the password generated for each of the destination information.
[0292] The extraction unit 71 of the information conversion apparatus 7 extracts the destination information that is the mail delivery destination information from the received mail, and outputs the destination information and the communication destination information indicating the storage destination to the authentication server 9.
[0293] The authentication unit 91 of the authentication server 9 determines whether the destination information received from the extraction unit 71 is stored in the storage unit 92.
[0294] When the destination information received from the extraction unit 71 is stored in the storage unit 92, the authentication unit 91 of the authentication server 9 notifies the extraction unit 71 to add the password to the destination information.
[0295] The authentication unit 91 of the authentication server 9 adds the authentication information in which the communication destination information and the password added to the destination information are associated with each other to the authentication list stored in the storage unit 92.
[0296] When the destination information received from the extraction unit 71 is not stored in the storage unit 92, the authentication unit 91 of the authentication server 9 requests the extraction unit 71 to generate the password. The extraction unit 71 generates the password, and outputs the communication destination information, the destination information, and the password to the authentication server 9 in association with each other. The authentication unit 91 of the authentication server 9 stores the destination information and the password generated for each of the destination information in the storage unit 92 in association with each other. Further, the authentication unit 91 adds the authentication information in which the communication destination information received from the extraction unit 71 and the password generated for each of the destination information are associated with each other to the authentication list.
[0297] Instead of the information conversion apparatus 7, the authentication unit 91 of the authentication server 9 can generate the password for each of the destination information. In this case, the authentication unit 91 adds the authentication information in which the communication destination information and the generated password are associated with each other to the authentication list. The authentication unit 91 outputs the authentication information (the communication destination information and the password generated for each of the destination information) to the extraction unit 71.
[0298] When the authentication method (B) is used, the password is determined for each of the destination. If the password is notified to the user who has received the mail each time the mail is received, the information conversion apparatus 7 notifies the same password multiple times. Therefore, the information conversion apparatus 7 can notify the password to the user only when the password is generated, and not notify the password to the user thereafter.
[0299] As a method for notifying the user of the password, the information conversion device 7 can use any method. For example, the extraction unit 71 of the information conversion device 7 can add the password to a mail including mail-related information, or can create a mail for password notification.
[0300] The authentication server 9 can be configured as a web server, and can cause the user to determine or change the password associated with the destination information by a predetermined method.
[0301] Next, a part common to the authentication method (A) and the authentication method (B) will be described.
[0302] The authentication unit 91 performs the following authentication: whether a group of the communication destination information indicating the communication destination with which the first terminal 3 communicates and the password input according to the user's operation is included in the authentication list stored in the storage unit 92.
[0303] Then, when the group of the communication destination information indicating the communication destination with which the first terminal 3 communicates and the password input according to the user's operation is included in the authentication list stored in the storage unit 92, the authentication unit 91 allows the first terminal 3 to read the information of the storage server 8.
[0304] Finally, the authentication method (C) will be described.
[0305] The storage unit 92 of the authentication server 9 stores an authentication list in advance by a predetermined method. The authentication list is a list of unique identifiers (for example, MAC addresses) of terminals that are allowed to communicate with the storage server.
[0306] When the authentication method (C) is used, the authentication unit 91 performs the following authentication: whether the identifier of the first terminal 3 that has communicated with the storage server 8 as the communication destination information of the communication destination is included in the authentication list stored in the storage unit 92 of the authentication server 9. Then, when the identifier of the first terminal 3 is included in the authentication list, the authentication unit 91 allows the first terminal 3 to read the information of the storage server 8.
[0307] In addition to these methods, any method can be used as the authentication method.
[0308] In the present example embodiment, the authentication server 9 performs authentication by any one of the authentication method (A) to the authentication method (C).
[0309] Next, the first terminal 3 will be described.
[0310] When a method using a password such as authentication method (A) or authentication method (B) is used for authentication, the first terminal 3 communicates with the storage server 8 indicated as a communication destination from the communication destination information recovered from the read information. The storage server 8 instructs the first terminal 3, which is not authenticated by the authentication server 9, to communicate with the authentication server 9. The authentication unit 91 of the authentication server 9 requests the first terminal 3 to input a password by a predetermined method. When a group of the communication destination information indicating the communication destination with the first terminal 3 and the password input according to the user's operation is included in the authentication list stored in the storage unit 92, the authentication server 9 allows the first terminal 3 to read the information of the storage server 8. When the reading is allowed, the first terminal 3 communicates with the storage server 8. The first terminal 3 reads the mail-related information from the storage server 8 and outputs the mail-related information.
[0311] When a method using a terminal unique identifier such as authentication method (C) is used for authentication, the first terminal 3 communicates with the storage server 8 indicated as a communication destination from the communication destination information recovered from the read information. The storage server 8 instructs the first terminal 3, which is not authenticated by the authentication server 9, to communicate with the authentication server 9. When the identifier of the first terminal 3, which has been requested to communicate with the storage server 8, is included in the authentication list, the authentication unit 91 of the authentication server 9 allows the first terminal 3 to read the information of the storage server 8.
[0312] In authentication method (C), unlike authentication method (A) or authentication method (B), the authentication server 9 can authenticate the first terminal 3 without the user inputting a password.
[0313] Next, the information conversion device 7 of the present example embodiment will be described. The information conversion device 7 of the present example embodiment includes an extraction unit 71 and an output unit 72.
[0314] The extraction unit 71 extracts predetermined mail-related information from the received mail. The extraction unit 71 of the present example embodiment receives a mail addressed to a terminal connected to the second network M, and extracts predetermined mail-related information from the received mail when the mail-related information is included in the mail. In the case of the present example embodiment, since the mail-related information is an attachment, the extraction unit 71 extracts the attachment from the mail. The extraction unit 71 deletes the predetermined mail-related information from the original mail.
[0315] Further, the extraction unit 71 determines the storage destination of the mail-related information stored in the storage server 8. The extraction unit 71 outputs the information of the storage destination of the mail-related information and the mail-related information to the storage server 8.
[0316] The extraction unit 71 creates communication destination information indicating the storage destination of the mail-related information as the communication destination.
[0317] The output unit 72 converts the communication destination information of the communication destination related to the mail-related information into read information that can be read by the first terminal 3 not connected to the second network M to which the second terminal 4 receiving the mail is connected, by a method not via the second network M. In the case of the present example embodiment, the communication destination information of the communication destination with respect to the mail-related information is the communication destination information indicating the storage destination of the mail-related information created by the extraction unit 71.
[0318] When a password is used for authentication, the output unit 72 can add the read information and the password to the mail and output the mail to the mail server 2, or can create a new mail for transmitting the password and output the mail to the mail server 2.
[0319] The output unit 72 adds the read information to the mail and outputs the read information to the mail server 2. The output unit 72 outputs the mail to which the mail-related information is not attached when the extraction unit 71 receives the mail, to the mail server 2.
[0320] By configuring the information conversion apparatus 7 in this way, the information conversion apparatus 7 extracts predetermined mail-related information from the received mail. Further, the information conversion apparatus 7 converts the communication destination information of the communication destination related to the mail-related information into read information and outputs the mail to which the read information is added.
[0321] Accordingly, the first terminal 3 not connected to the second network M can read the read information included in the mail that is the mail transmitted to the second terminal 4 connected to the second network M. Further, the first terminal 3 can communicate with the communication destination indicated by the communication destination information based on the read information.
[0322] Accordingly, the user can easily access the information held by the communication destination with respect to the mail-related information included in the mail that is the mail transmitted to the terminal connected to the network that restricts communication with other networks.
[0323] As described above, the information conversion system of the present example embodiment authenticates the first terminal 3 that requests to read the storage server 8 that is the storage destination of the attachment. Accordingly, it is possible to prevent a user other than the user of the second terminal 4 that is the mail destination from accessing the attachment stored in the storage server 8 and the information held by the communication destination with respect to the mail-related information.
[0324] Next, the case where the information conversion apparatus 7 is applied to a mail server 2 will be described. Figure 14An operation example of the information conversion system according to the present example embodiment will be described.
[0325] Figure 14 An operation example of the information conversion system according to the present example embodiment will be described.
[0326] The extraction unit 71 receives a mail addressed to a terminal connected to the second network M (step S801). In a case where the mail includes mail-related information (YES in step S802), the extraction unit 71 extracts predetermined mail-related information from the received mail (step S803). When an attachment has been extracted as the predetermined mail-related information, the extraction unit 71 deletes the attachment from the original mail.
[0327] In a case where the mail does not include mail-related information (NO in step S802), the extraction unit 71 does not perform the operations of steps S803 to S808.
[0328] Further, the extraction unit 71 determines a storage destination in which the mail-related information is stored. The extraction unit 71 outputs the mail-related information and information indicating the storage destination of the mail-related information to the storage server 8 (step S804). The input-output unit 81 of the storage server 8 stores the mail-related information in the storage unit 82 on the basis of the information indicating the storage destination.
[0329] Further, the extraction unit 71 creates communication-destination information indicating the storage destination of the mail-related information as a communication destination on the basis of the information indicating the storage destination of the mail-related information, and generates a password for each mail with respect to the created communication-destination information (communication-destination information indicating the storage destination) (step S805).
[0330] The extraction unit 71 outputs authentication information in which the communication-destination information and the password are associated with each other to the authentication server 9 (step S806). The authentication unit 91 of the authentication server 9 stores the authentication information in the storage unit 92.
[0331] When the authentication method (C) is used for authentication, the extraction unit 71 can not perform the operations of generating a password and outputting authentication information.
[0332] The output unit 72 converts the communication-destination information created by the extraction unit 71 into read information that can be read by the first terminal 3 through a method other than the second network M (step S807).
[0333] Further, the output unit 72 adds the read information to the mail (step S808), and outputs the mail to the mail server 2 (step S809). The output unit 72 also outputs the mail not including the mail-related information at the time of reception by the extraction unit 71 to the mail server 2.
[0334] When the authentication server 9 performs authentication by a method using a password such as the authentication method (A) or the authentication method (B), the output unit 72 can add the password to the mail together with the read information. Alternatively, the output unit 72 can create a new mail to send the password.
[0335] Next, an operation example in which the first terminal 3 of the present example embodiment accesses the mail-related information will be described using Figure 15 The solid arrow shown in FIG. 8 indicates the transmission and reception of the information of the second terminal 4 via the second network M or the mail read by the second terminal 4 via the second network M. Figure 15 The dashed line shown in FIG. 8 indicates the read of the read information by the first terminal 3 by a method not via the second network M. Figure 15
[0336] The second terminal 4 is connected to the second network M. According to the operation of the user, the second terminal 4 reads the mail stored in the mail server 2 (step S901).
[0337] The output unit 41 of the second terminal 4 outputs the read information added to the received mail according to the operation of the user (step S902).
[0338] The first terminal 3 is connected to the first network N.
[0339] The information read unit 31 of the first terminal 3 reads the read information output to the second terminal 4 by a method not via the second network M according to the operation of the user (step S903).
[0340] Further, the information read unit 31 restores the read information that has been read to the communication destination information (step S904).
[0341] Based on the restored communication destination information, the first terminal 3 communicates with the storage server 8 that is the communication destination indicated by the communication destination information via the first network N (step S905).
[0342] The storage server 8 instructs the first terminal 3 that is not authenticated by the authentication server 9 to communicate with the authentication server 9 (step S906).
[0343] The first terminal 3 communicates with the authentication server 9 (step S907).
[0344] The authentication unit 91 of the authentication server 9 authenticates the first terminal 3 by a predetermined method (step S908). When the first terminal 3 satisfies a predetermined condition, the authentication unit 91 allows the first terminal 3 to communicate with the storage server 8 (step S909).
[0345] The first terminal 3 communicates with the storage server 8 as the communication destination indicated by the communication destination information (step S910), and reads the mail-related information associated with the communication destination information (step S911).
[0346] The output unit 32 of the first terminal 3 outputs information on communication with the communication destination indicated by the restored communication destination information, for example, as an attachment of the mail-related information stored in the storage server 8 (step S912).
[0347] By operating in this way, the information conversion device 7 extracts predetermined mail-related information from the received mail. Furthermore, the information conversion device 7 converts the communication destination information of the communication destination related to the mail-related information into read information, and outputs the mail to which the read information is added.
[0348] Accordingly, the first terminal 3 not connected to the second network M can read the read information included in the mail, which is a mail transmitted to the second terminal 4 connected to the second network M. Furthermore, the first terminal 3 can communicate with the communication destination indicated by the communication destination information on the basis of the read information.
[0349] Accordingly, the user can easily access information held by the communication destination on the mail-related information included in the mail, which is a mail transmitted to the terminal connected to the network that restricts communication with other networks.
[0350] As described above, in the sixth example embodiment of the present application, the information conversion device 7 extracts predetermined mail-related information from the received mail. Furthermore, the information conversion device 7 converts the communication destination information of the communication destination related to the mail-related information into read information, and outputs the mail to which the read information is added.
[0351] Accordingly, the first terminal 3 not connected to the second network M can read the read information included in the mail, which is a mail transmitted to the second terminal 4 connected to the second network M. Furthermore, the first terminal 3 can communicate with the communication destination indicated by the communication destination information on the basis of the read information.
[0352] Accordingly, the user can easily access information held by the communication destination on the mail-related information included in the mail, which is a mail transmitted to the terminal connected to the network that restricts communication with other networks.
[0353] As described above, when the attachment that is the mail-related information has been extracted, the information conversion device 7 of the present example embodiment deletes the attachment from the original mail. Therefore, the second terminal 4 receives the mail that does not include the attachment from the mail server 2. Therefore, the second terminal 4 cannot access the attachment included in the original mail.
[0354] Accordingly, it is possible to reduce the risk of infection of a virus by the second terminal 4 accessing the mail-related information, thereby becoming a route of computer virus infection or information leakage.
[0355] The information conversion system of the present example embodiment authenticates the first terminal 3 that requests to read the storage server 8 that is the storage destination of the attachment. Therefore, it is possible to prevent a user other than the mail transmission destination from accessing the attachment that is stored in the storage server 8 and is information held by the communication destination with respect to the mail-related information.
[0356] When the authentication server 9 has a function of being able to change the password stored in the authentication list according to the operation of the user, the user can manage the password at the time of authenticating the first terminal 3 that reads the mail-related information stored in the storage server 8.
[0357] [Hardware configuration example]
[0358] A configuration example of a hardware resource for implementing the information conversion device (1, 5, 7) according to each of the example embodiments of the present application by using one information processing device (computer) will be described. The information conversion device can be implemented physically or functionally by using at least two information processing devices. The information conversion device can be implemented as a dedicated device. A part of the functions of the information conversion device can be implemented by using an information processing device.
[0359] Figure 16 Fig. 1 is a diagram that schematically shows a hardware configuration example of an information processing device that can implement the information conversion device of each of the example embodiments of the present application. The information processing device 100 includes a communication interface 101, an input-output interface 102, a computing device 103, a storage device 104, a non-volatile storage device 105, and a drive device 106.
[0360] For example, Figure 1 The extraction unit 11 in Fig. 1 can be implemented by the computing device 103. The output unit 12 can be implemented by the computing device 103 and the input-output interface 102.
[0361] The communication interface 101 is a communication means configured to enable the information conversion device of each of the example embodiments to communicate with an external device by wired or / and wireless means. In a case where the information conversion device is implemented by using at least two information processing devices, the devices can be connected so as to be able to communicate with each other via the communication interface 101.
[0362] The input-output interface 102 is a human-machine interface, such as a keyboard as an example of an input device and a display as an output device.
[0363] The arithmetic device 103 is realized by an arithmetic processing device such as a general-purpose central processing unit (CPU) or a microprocessor, or a plurality of circuits. For example, the arithmetic device 103 can read various programs stored in the non-volatile storage device 105 into the storage device 104, and execute processing according to the read programs.
[0364] The storage device 104 is a storage device such as a random access memory (RAM) that can be accessed from the arithmetic device 103 and stores programs, various data, and the like. The storage device 104 can be a volatile storage device.
[0365] The non-volatile storage device 105 is, for example, a non-volatile storage device such as a read only memory (ROM), a flash memory, or the like, and can store various programs, data, and the like.
[0366] The drive device 106 is, for example, a device that reads or writes data to the recording medium 107 described later.
[0367] The recording medium 107 is, for example, any recording medium capable of recording data, such as an optical disc, a magneto-optical disc, a semiconductor flash memory, or the like.
[0368] Each of the example embodiments of the present application can be realized, for example, by configuring an information conversion device with the information processing device 100 shown in the drawing, and providing the information conversion device with a program capable of realizing the functions described in each of the example embodiments described above. Figure 16 The information conversion device can be configured by the information processing device 100 shown in the drawing, and the program capable of realizing the functions described in each of the example embodiments described above can be provided to the information conversion device.
[0369] In this case, the example embodiments can be realized by executing the program provided to the information conversion device by the arithmetic device 103. A part of the functions of the information conversion device can also be configured by the information processing device 100, instead of all.
[0370] The program can be recorded on the recording medium 107, and the program can be stored in the non-volatile storage device 105 as appropriate in the transportation stage, the operation stage, and the like of the information conversion device. In this case, as a method of providing the program, a method of installing the program in the information conversion device using a suitable jig can be employed in the manufacturing stage before transportation, the operation stage, and the like. As a method of providing the program, a general process such as downloading from the outside through a communication line such as the first network can be employed.
[0371] All or a part of the example embodiments disclosed above can be described as, but not limited to, the following supplementary notes.
[0372] (Supplementary note 1)
[0373] An information conversion apparatus comprising:
[0374] extraction means configured to extract predetermined mail-related information from a received mail; and
[0375] output means configured to convert communication-destination information of a communication destination related to the mail-related information into read information, and output the mail to which the read information is added to a second terminal that receives the mail, wherein the read information allows the communication-destination information to be read by a first terminal that is not connected to a network to which the second terminal is connected, by a method that does not pass through the network.
[0376] (Supplementary note 2)
[0377] The information conversion apparatus according to Supplementary note 1, wherein
[0378] the extraction means:
[0379] extracts the mail-related information when the mail-related information is included in the mail, and
[0380] does not extract the mail-related information when the mail-related information is not included in the mail.
[0381] (Supplementary note 3)
[0382] The information conversion apparatus according to Supplementary note 1 or Supplementary note 2, wherein
[0383] the extraction means deletes the mail-related information from the mail.
[0384] (Supplementary note 4)
[0385] The information conversion apparatus according to any one of Supplementary notes 1 to 3, wherein
[0386] the mail-related information is the communication-destination information.
[0387] (Supplementary note 5)
[0388] The information conversion apparatus according to Supplementary note 4, further comprising
[0389] verification means configured to perform verification of security of a communication with a communication destination indicated by the communication-destination information.
[0390] (Supplementary note 6)
[0391] The information conversion apparatus according to Supplementary note 5, wherein
[0392] The output device performs the conversion from the communication-destination information to the read information when it is verified that the communication with the communication destination indicated by the communication-destination information is not secure, and does not perform the conversion from the communication-destination information to the read information when it is verified that the communication with the communication destination indicated by the communication-destination information is secure.
[0393] (Supplementary Note 7)
[0394] The information conversion apparatus according to Supplementary Note 5 or Supplementary Note 6, wherein
[0395] The verification device performs the verification of the security of the communication with the communication destination indicated by the communication-destination information by performing the communication with the communication destination indicated by the communication-destination information.
[0396] (Supplementary Note 8)
[0397] The information conversion apparatus according to any one of Supplementary Notes 5 to 7, wherein
[0398] The verification device performs the verification based on a collation list that is a list of communication-destination information indicating communication destinations with which communication is allowed or prohibited.
[0399] (Supplementary Note 9)
[0400] The information conversion apparatus according to Supplementary Note 8, wherein
[0401] The verification device rewrites the collation list based on a result of the verification.
[0402] (Supplementary Note 10)
[0403] The information conversion apparatus according to Supplementary Note 1, wherein
[0404] The mail-related information is a file attached to the mail,
[0405] The extraction device determines a storage destination of the file and stores the file in the storage destination, and
[0406] The communication-destination information includes information indicating the storage destination of the file as information indicating the communication destination.
[0407] (Supplementary Note 11)
[0408] The information conversion apparatus according to Supplementary Note 10, wherein
[0409] The extraction device generates a password associated with the communication-destination information, and
[0410] The output device outputs the mail to which the password is added.
[0411] (Supplementary note 12)
[0412] An information conversion system includes:
[0413] The information conversion apparatus according to any one of Supplementary Note 1 to Supplementary Note 8;
[0414] A mail server receives the mail to which the read information is added from the information conversion apparatus;
[0415] The second terminal receives the mail to which the read information is added from the mail server and outputs the read information; and
[0416] The first terminal.
[0417] (Supplementary note 13)
[0418] An information conversion system includes:
[0419] The information conversion apparatus according to Supplementary Note 8 or Supplementary Note 9;
[0420] A mail server receives the mail to which the read information is added from the information conversion apparatus;
[0421] The second terminal receives the mail to which the read information is added from the mail server and outputs the read information;
[0422] The first terminal; and
[0423] A collation server allows or disallows communication of the second terminal based on the collation list.
[0424] (Supplementary note 14)
[0425] An information conversion system includes:
[0426] The information conversion apparatus according to Supplementary Note 10;
[0427] A mail server receives the mail to which the read information is added from the information conversion apparatus;
[0428] The second terminal receives the mail to which the read information is added from the mail server and outputs the read information;
[0429] The first terminal; and
[0430] A storage server stores the extracted file based on the communication destination information.
[0431] (Supplementary note 15)
[0432] An information conversion system including:
[0433] The information conversion apparatus according to Supplementary Note 10 or 11;
[0434] A mail server that receives the mail to which the read information is added from the information conversion apparatus;
[0435] The second terminal that receives the mail to which the read information is added from the mail server and outputs the read information;
[0436] The first terminal; and
[0437] An authentication server that authenticates the first terminal that reads the file stored in the storage destination.
[0438] (Supplementary note 16)
[0439] An information conversion method including:
[0440] extracting predetermined mail-related information from the received mail; and
[0441] converting communication-destination information of a communication destination related to the mail-related information into read information, and outputting the mail to which the read information is added to a second terminal that receives the mail, wherein the read information allows the communication-destination information to be read by a first terminal that is not connected to a network to which the second terminal is connected, by a method that does not pass through the network.
[0442] (Supplementary note 17)
[0443] The information conversion method according to Supplementary Note 16, wherein
[0444] the mail-related information is extracted when the mail-related information is included in the mail, and
[0445] the mail-related information is not extracted when the mail-related information is not included in the mail.
[0446] (Supplementary note 18)
[0447] The information conversion method according to Supplementary Note 16 or 17, wherein
[0448] the mail-related information is deleted from the mail.
[0449] (Supplementary note 19)
[0450] The information conversion method according to any one of Supplementary Note 16 to Supplementary Note 18, wherein
[0451] The mail-related information is the communication-destination information.
[0452] (Supplementary Note 20)
[0453] The information conversion method according to Supplementary Note 19, further comprising
[0454] performing verification of security of communication with a communication destination indicated by the communication-destination information.
[0455] (Supplementary Note 21)
[0456] The information conversion method according to Supplementary Note 20, wherein
[0457] when it is verified that the communication with the communication destination indicated by the communication-destination information is not secure, performing conversion from the communication-destination information to the read information, and
[0458] when it is verified that the communication with the communication destination indicated by the communication-destination information is secure, not performing conversion from the communication-destination information to the read information.
[0459] (Supplementary Note 22)
[0460] The information conversion method according to Supplementary Note 20 or Supplementary Note 21, wherein
[0461] the verification of security of communication with a communication destination indicated by the communication-destination information is performed by communication with the communication destination indicated by the communication-destination information.
[0462] (Supplementary Note 23)
[0463] The information conversion method according to any one of Supplementary Note 20 to Supplementary Note 22, wherein
[0464] the verification is performed based on a check list that is a list of communication-destination information indicating communication destinations with which communication is allowed or prohibited.
[0465] (Supplementary Note 24)
[0466] The information conversion method according to Supplementary Note 23, wherein
[0467] the check list is rewritten based on a result of the verification.
[0468] (Supplementary Note 25)
[0469] The information conversion method according to Supplementary Note 16, wherein
[0470] The mail-related information is a file attached to the mail,
[0471] The information conversion method includes determining a storage destination of the file and storing the file in the storage destination, and
[0472] The communication-destination information includes information indicating the storage destination of the file as the information indicating the communication destination.
[0473] (Supplementary Note 26)
[0474] The information conversion method according to Supplementary Note 25, further comprising
[0475] generating a password for authentication; and
[0476] outputting a mail to which the password is added.
[0477] (Supplementary Note 27)
[0478] A computer-readable recording medium that records an information conversion program for causing a computer to function as:
[0479] an extraction function that extracts predetermined mail-related information from a received mail; and
[0480] an output function that converts communication-destination information of a communication destination related to the mail-related information into read information, and outputs a mail to which the read information is added to a second terminal that receives the mail, wherein the read information allows the communication-destination information to be read by a first terminal that is not connected to a network to which the second terminal is connected, by a method that does not pass through the network.
[0481] (Supplementary Note 28)
[0482] The computer-readable recording medium that records the information conversion program according to Supplementary Note 27, wherein
[0483] the extraction function:
[0484] extracts the mail-related information when the mail-related information is included in the mail, and
[0485] does not extract the mail-related information when the mail-related information is not included in the mail.
[0486] (Supplementary Note 29)
[0487] The computer-readable recording medium that records the information conversion program according to Supplementary Note 27 or Supplementary Note 28, wherein
[0488] The extraction function deletes the mail-related information from the mail.
[0489] (Supplemental Explanation 30)
[0490] The computer-readable recording medium of the recording information conversion program according to any one of Supplemental Explanation 27 to Supplemental Explanation 29, wherein
[0491] The mail-related information is the communication destination information.
[0492] (Supplemental Explanation 31)
[0493] The computer-readable recording medium of the recording information conversion program according to Supplemental Explanation 30, further causes the computer to realize:
[0494] a verification function that verifies security of communication with a communication destination indicated by the communication destination information.
[0495] (Supplemental Explanation 32)
[0496] The computer-readable recording medium of the recording information conversion program according to Supplemental Explanation 31, wherein
[0497] The output function performs conversion from the communication destination information to the read information when it is verified that communication with a communication destination indicated by the communication destination information is not secure, and does not perform conversion from the communication destination information to the read information when it is verified that communication with a communication destination indicated by the communication destination information is secure.
[0498] (Supplemental Explanation 33)
[0499] The computer-readable recording medium of the recording information conversion program according to Supplemental Explanation 31 or Supplemental Explanation 32, wherein
[0500] The verification function performs verification of security of a communication destination indicated by the communication destination information by communicating with the communication destination indicated by the communication destination information.
[0501] (Supplemental Explanation 34)
[0502] The computer-readable recording medium of the recording information conversion program according to any one of Supplemental Explanation 31 to Supplemental Explanation 33, wherein
[0503] The verification function performs the verification based on a check list that is a list of communication destination information indicating communication destinations with which communication is permitted or prohibited.
[0504] (Supplementary note 35)
[0505] The computer-readable recording medium of the recording information conversion program according to Supplementary note 34, wherein
[0506] The verification function rewrites the check list based on a result of the verification.
[0507] (Supplementary note 36)
[0508] The computer-readable recording medium of the recording information conversion program according to Supplementary note 27, wherein
[0509] The mail-related information is a file attached to the mail,
[0510] The extraction function determines a storage destination of the file and stores the file in the storage destination, and
[0511] The communication-destination information includes information indicating the storage destination of the file as the information indicating the communication destination.
[0512] (Supplementary note 37)
[0513] The computer-readable recording medium of the recording information conversion program according to Supplementary note 36, wherein
[0514] The extraction function generates a password associated with the communication-destination information, and
[0515] The output function outputs the mail to which the password is added.
[0516] The application is not limited to the specific embodiments described and shown in reference to the example embodiments of the application, but can be modified in form and details within the scope of the application as defined by the claims. It will be understood by those of ordinary skill in the art that various changes in form and details can be made without departing from the spirit and scope of the application as defined by the following claims.
[0517] This application is based on and claims priority to Japanese Patent Application No. 2019-172806, filed September 24, 2019, the disclosure of which is incorporated by reference herein in its entirety.
[0518] [List of reference numerals]
[0519] 1, 5, 7 information conversion apparatus
[0520] 11, 51, 71 extraction unit
[0521] 12, 53, 72 output unit
[0522] 2 mail server
[0523] 3 first terminal
[0524] 31 information reading unit
[0525] 32 output unit
[0526] 4 second terminal
[0527] 41 output unit
[0528] 52 verification unit
[0529] 6 collation server
[0530] 61 collation unit
[0531] 62 storage unit
[0532] 8 storage server
[0533] 81 input-output unit
[0534] 82 storage unit
[0535] 9 authentication server
[0536] 91 authentication unit
[0537] 92 storage unit
[0538] 100 information processing apparatus
[0539] 101 communication interface
[0540] 102 input-output interface
[0541] 103 arithmetic apparatus
[0542] 104 storage apparatus
[0543] 105 nonvolatile storage apparatus
[0544] 106 drive apparatus
[0545] 107 recording medium
[0546] N first network
[0547] M second network
Claims
1. An information conversion apparatus comprising: extraction means configured to extract predetermined mail-related information from a received mail; and output means configured to: convert communication-destination information related to the mail-related information into read information in an output form that is at least one of a one-dimensional bar code, a two-dimensional bar code, flickering of light, audio information, and infrared communication data, which is readable by a first terminal without going through a first network and a second network, the first network being connected to the first terminal, the second network being connected to a second terminal, the first terminal not being connected to the second network to which the second terminal connected to receive the mail, add the read information to the mail, and output the mail to which the read information is added to the second terminal, wherein the communication destination indicated by the communication-destination information is not able to communicate with the second network but is able to communicate with the first network, the second terminal outputs the read information without going through the second network. 2.The information conversion apparatus according to claim 1, wherein the mail-related information is the communication-destination information. 3.The information conversion apparatus according to claim 2, further comprising: verification means configured to perform verification of security of communication with a communication destination indicated by the communication-destination information. 4.The information conversion apparatus according to claim 3, wherein the output means performs conversion from the communication-destination information to the read information when it is verified that communication with the communication destination indicated by the communication-destination information is not secure, and does not perform conversion from the communication-destination information to the read information when it is verified that communication with the communication destination indicated by the communication-destination information is secure. 5.The information conversion apparatus according to claim 3 or 4, wherein the verification means performs verification of security of communication with a communication destination indicated by the communication-destination information by communicating with the communication destination. 6.The information conversion apparatus according to claim 3 or 4, wherein the verification means performs the verification based on a check list that is a list of communication-destination information indicating a communication destination with which communication is allowed or prohibited. 7.The information conversion apparatus according to claim 1, wherein the mail-related information is a file attached to the mail, the extraction means determines a storage destination of the file and stores the file in the storage destination, and the communication-destination information includes information indicating the storage destination of the file as information indicating the communication destination. 8.An information conversion system comprising: the information conversion apparatus according to any one of claims 1 to 7; a mail server that receives the mail to which the read information is added from the information conversion apparatus; the second terminal that receives the mail to which the read information is added from the mail server and outputs the read information; and the first terminal. 9. An information conversion method comprising: extracting predetermined mail-related information from a received mail; converting communication-destination information related to the mail-related information into read information in an output form readable by a first terminal without going through a first network and a second network, the output form being at least one of a one-dimensional bar code, a two-dimensional bar code, flickering of light, audio information, and infrared communication data, the first network being connected to the first terminal, the second network being connected to a second terminal, the first terminal not being connected to the second network to which the second terminal receiving the mail is connected; adding the read information to the mail; and outputting the mail to which the read information is added to the second terminal, wherein the communication destination indicated by the communication-destination information is not able to communicate with the second network but is able to communicate with the first network, the second terminal outputs the read information without going through the second network.
10. A computer-readable recording medium recording an information conversion program for causing a computer to realize: and extracting a function of extracting predetermined mail-related information from the received mail; an output function of converting communication-destination information related to the mail-related information into read information in an output form readable by a first terminal without going through a first network and a second network, the output form being at least one of a one-dimensional bar code, a two-dimensional bar code, flickering of light, audio information, and infrared communication data, the first network being connected to the first terminal, the second network being connected to a second terminal, the first terminal not being connected to the second network to which the second terminal receiving the mail is connected; adding the read information to the mail; and outputting the mail to which the read information is added to the second terminal, wherein the communication destination indicated by the communication-destination information is not able to communicate with the second network but is able to communicate with the first network, the second terminal outputs the read information without going through the second network.
Citation Information
Patent Citations
Authentication method in computer network
JP2008146363A
Conjugated diene rubber
JP2019172806A
Intrusion detection methods, detection rule generation method, device and system
CN107347057A