Information Processing System, Information Processing Method, and Storage Medium
By registering a storage device in the information processing system and using different communication paths to obtain and prompt specific information, the problem of reducing information security in NAS is solved, and the balance between information security and management costs is achieved.
Patent Information
- Application Number
- CN202111607958.3
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- Priority Date
- 2020-12-28
- Filing Date
- 2021-12-21
- Publication Date
- 2025-07-01
- Estimated Expiration
- 2041-12-21
AI Technical Summary
In the prior art, due to the open router port, the security of the information stored in the NAS is reduced, and in order to improve security, complex security countermeasures must be carried out to increase management costs.
In the information processing system, the setting processing unit acquires the setting information from the storage device based on the first communication path, registers the storage device as a storage device that can prompt specific information, and acquires specific information corresponding to the request of the user terminal through the second communication path, and prompts the user terminal for the information.
This achieves the implementation of ensuring the security of stored information, and simply prompting user terminals for specific information, avoiding the increase in management costs caused by the opening of router ports and the use of security software.
Smart Images

Figure CN114692196B_ABST
Abstract
Description
Technical Field
[0001] The present invention relates to an information processing system, an information processing method, and a storage medium. Background Art
[0002] There is a known system that performs data communication with user terminals such as NAS (storage devices), personal computers (PCs), and smartphones connected to a network such as a LAN via the Internet. For example, the system includes a router that relays the NAS and the user terminal, and opens a port of the router to perform the data communication.
[0003] However, in the prior art, since the port of the router is opened, the security of the information stored in the NAS is reduced. In addition, in order to improve security, it is necessary to install security software permanently or set the port numbers for permitted access, etc., which results in an increase in management costs. Summary of the Invention
[0004] An object of the present invention is to provide an information processing system, an information processing method, and a storage medium that can ensure the security of specific information stored in a storage device with a simple structure and can present the specific information to a user terminal.
[0005] An information processing system according to an aspect of the present invention presents specific information stored in a storage device to a user terminal, and includes: a setting processing unit that registers the storage device as a storage device capable of presenting the specific information to the user terminal based on setting information acquired from the storage device via a first communication path; an acquisition processing unit that, when the storage device is registered by the setting processing unit, acquires the specific information corresponding to a request acquired from the user terminal via a second communication path different from the first communication path; and a presentation processing unit that presents the specific information acquired by the acquisition processing unit to the user terminal.
[0006] An information processing method according to another aspect of the present invention presents specific information stored in a storage device to a user terminal, and one or more processors perform the following steps: a setting step of registering the storage device as a storage device capable of presenting the specific information to the user terminal based on setting information acquired from the storage device via a first communication path; an acquisition step of acquiring the specific information corresponding to a request acquired from the user terminal via a second communication path different from the first communication path when the storage device is registered by the setting step; and a presentation step of presenting the specific information acquired by the acquisition step to the user terminal.
[0007] Another aspect of the present invention relates to a storage medium storing an information processing program for prompting a user terminal with specific information stored in a storage device. The information processing program stored in the storage medium is configured to be executed by one or more processors to perform the following steps: a setting step of registering the storage device as a storage device capable of prompting the user terminal with the specific information based on setting information obtained from the storage device via a first communication path; an obtaining step of obtaining the specific information corresponding to a request received from the user terminal via a second communication path different from the first communication path when the storage device is registered in the setting step; and a prompting step of prompting the user terminal with the specific information obtained in the obtaining step.
[0008] According to the present invention, an information processing system, an information processing method, and a storage medium are provided, which can prompt a user terminal with specific information stored in a storage device while ensuring the security of the specific information through a simple configuration.
[0009] This specification is introduced by appropriately referring to the drawings and simplifying the content that summarizes the concepts described in the following detailed description. The intention of this specification is not to limit the important features and essential features of the subject matter recited in the claims, nor is it to limit the scope of the subject matter recited in the claims. In addition, the subject matter recited in the claims is not limited to the embodiments that solve some or all of the disadvantages described in any part of the present invention. BRIEF DESCRIPTION OF THE DRAWINGS
[0010] Figure 1 is a diagram showing a schematic configuration of an information processing system according to an embodiment of the present invention.
[0011] Figure 2 is a functional block diagram showing the configuration of an information processing system according to an embodiment of the present invention.
[0012] Figure 3 is a diagram showing an example of a display screen of a user terminal according to an embodiment of the present invention.
[0013] Figure 4 is a diagram showing an example of a display screen of a user terminal according to an embodiment of the present invention.
[0014] Figure 5 is a diagram showing an example of a display screen of a user terminal according to an embodiment of the present invention.
[0015] Figure 6 is a diagram showing an example of a display screen of a user terminal according to an embodiment of the present invention.
[0016] Figure 7This is a diagram showing an example of the display screen of a user terminal according to an embodiment of the present invention.
[0017] Figure 8 This is a diagram showing an example of the display screen of a user terminal according to an embodiment of the present invention.
[0018] Figure 9 This is a diagram showing an example of the display screen of a user terminal according to an embodiment of the present invention.
[0019] Figure 10 This is a diagram showing an example of the display screen of a user terminal according to an embodiment of the present invention.
[0020] Figure 11 This is a diagram showing an example of the display screen of a user terminal according to an embodiment of the present invention.
[0021] Figure 12 This is a diagram showing an example of the display screen of a user terminal according to an embodiment of the present invention.
[0022] Figure 13 This is a flowchart showing an example of the steps of the setting process executed by the information processing system according to an embodiment of the present invention.
[0023] Figure 14 This is a flowchart showing an example of the steps of the information prompting process executed by the information processing system according to an embodiment of the present invention. Detailed Embodiments
[0024] Hereinafter, embodiments of the present invention will be described with reference to the accompanying drawings. In addition, the following embodiments are an example of embodying the present invention and do not have the nature of limiting the technical scope of the present invention.
[0025] [Information Processing System 100]
[0026] Figure 1 This is a diagram showing a schematic configuration of an information processing system 100 according to an embodiment of the present invention. The information processing system 100 includes a cloud server 1, a NAS (Network Attached Storage) 2, and a user terminal 3.
[0027] The cloud server 1 is constructed by, for example, one or more servers (virtual servers). The NAS 2 is a data server (file server) connected to a network (LAN). The user terminal 3 is a terminal device such as a personal computer or a smartphone. In Figure 1 two user terminals 3 are illustrated. The cloud server 1 is an example of the server of the present invention, and the NAS 2 is an example of the storage device of the present invention.
[0028] The cloud server 1, the NAS 2, and the user terminal 3 are interconnected via the network N1. The network N1 is a communication network such as the Internet.
[0029] The information processing system 100 is a system that presents specific information (file data, search results, etc.) stored in the NAS 2 to the user terminal 3. Specifically, the cloud server 1 constructs a secure communication path (e.g., a Websocket communication path) between itself and the NAS 2, obtains the specific information corresponding to the user's request from the NAS 2, and sends it to the user terminal 3. The cloud server 1 provides a service for presenting the above-mentioned specific information to the user. The user can utilize the above service by installing an application corresponding to the above service on the user terminal 3. Therefore, the information processing system 100 can ensure the security of the specific information stored in the NAS 2 and present the specific information to the user terminal 3.
[0030] [Cloud server 1]
[0031] As Figure 2 shown, the cloud server 1 includes a control unit 11, a storage unit 12, an HTTP communication unit 13, a Websocket communication unit 14, etc. The cloud server 1 is one or more virtual servers. In addition, the server of the present invention is not limited to a cloud server and may also be one or more physical servers.
[0032] The HTTP communication unit 13 is a communication interface for connecting the cloud server 1 to the network N1 via wire or wirelessly and performing data communication between the cloud server 1 and the NAS 2 according to the HTTP communication protocol. The HTTP communication unit 13 of the cloud server 1 is connected to the HTTP communication unit 224 of the NAS 2, and an HTTP communication path is constructed between the cloud server 1 and the NAS 2.
[0033] The Websocket communication unit 14 is a communication interface for connecting the cloud server 1 to the network N1 via wire or wirelessly and performing data communication in accordance with the Websocket communication protocol between the cloud server 1 and the NAS 2 via the network N1. The Websocket communication unit 14 of the cloud server 1 is connected to the Websocket communication unit 225 of the NAS 2, and a Websocket communication path is constructed between the cloud server 1 and the NAS 2. Generally, the Websocket communication path is a more secure communication path than the HTTP communication path. The HTTP communication path is an example of the first communication path of the present invention, and the Websocket communication path is an example of the second communication path of the present invention.
[0034] The storage unit 12 is a non-volatile storage unit such as an HDD (Hard Disk Drive), an SSD (Solid State Drive), or a flash memory that stores various types of information. Stored in the storage unit 12 are control programs for causing the control unit 11 to execute setting processes (refer to Figure 13 ) and information presentation processes (refer to Figure 14 ). For example, the control program is non-temporarily recorded on a computer-readable storage medium such as a CD or a DVD, and is read by a reading device (not shown) such as a CD drive or a DVD drive included in the cloud server 1 and stored in the storage unit 12. Additionally, the control program may also be distributed from another server and stored in the storage unit 12.
[0035] The control unit 11 includes control devices such as a CPU, a ROM, and a RAM. The CPU is a processor that executes various arithmetic processes. The above ROM stores in advance control programs such as a BIOS and an OS for causing the above CPU to execute various processes. The above RAM stores various types of information and is used as a temporary storage (working area) for various processes executed by the above CPU. And, the control unit 11 controls the cloud server 1 by causing the CPU to execute various control programs pre-stored in the ROM or the storage unit 12.
[0036] Specifically, the control unit 11 includes various processing units such as a setting processing unit 111, a communication processing unit 112, an authentication processing unit 113, an acquisition processing unit 114, and a presentation processing unit 115. In addition, the control unit 11 functions as the various processing units by executing various processes according to the control program. Additionally, a part or all of the processing units included in the control unit 11 may also be constituted by an electronic circuit. Furthermore, the control program may also be a program for causing a plurality of processors to function as the various processing units.
[0037] The setting processing unit 111 registers the NAS2 as a device (storage device) capable of presenting the specific information to the user terminal 3 based on the setting information acquired from the NAS2 via the HTTP communication path. Specifically, the setting processing unit 111 opens one tenant corresponding to one NAS2, and acquires the setting information using the HTTP communication path, thereby executing a registration process of registering the NAS2 to the tenant. The setting information includes, for example, a PIN code for registering the NAS2 to the tenant. A specific example of the registration process will be described later. The setting processing unit 111 is an example of the setting processing unit of the present invention.
[0038] When the communication processing unit 112 registers the NAS 2 through the setting processing unit 111, it constructs a Websocket communication path. Specifically, when the communication processing unit 112 registers the NAS 2 through the setting processing unit 111, it issues a token unique to the NAS 2 (the first authentication information of the present invention), and then obtains a request for constructing a Websocket communication path from the NAS 2. When the token corresponding to the construction request is consistent with the issued token, it constructs a Websocket communication path. A specific example of the method for constructing a Websocket communication path will be described later. The communication processing unit 112 is an example of the communication processing unit of the present invention.
[0039] When the Websocket communication path is constructed, the setting processing unit 111 registers device information (NAS information) related to the NAS 2 in the storage unit 12. The above NAS information includes, for example, information such as product name, name, IP address, IP address for retrieval, MAC address, S / N, installation location, connection status, etc. (refer to Figure 7 ). If the Websocket communication path is constructed and the NAS information is registered, the cloud server 1 enables the NAS 2 to be used in the service.
[0040] The authentication processing unit 113 performs authentication processing on the user of the user terminal 3. The user registers in advance a service ID for using the service provided by the cloud server 1 in the process of constructing a Websocket communication path. In addition, the user registers in advance a password for using the service. The service ID and the password are stored in the storage unit 12. When the user inputs the service ID and the password in the user terminal 3 when using the service, the authentication processing unit 113 compares the service ID and the password. When the input service ID and password are consistent with the service ID and password stored in the storage unit 12, the authentication processing unit 113 authenticates the user and permits the use of the service.
[0041] When the setting processing unit 111 registers the NAS 2, the acquisition processing unit 114 acquires specific information corresponding to a request obtained from the user terminal 3 via the Websocket communication path. Specifically, when the user is authenticated by the authentication processing unit 113, the acquisition processing unit 114 acquires the specific information via the Websocket communication path. In this way, the acquisition processing unit 114 uses the Websocket communication path instead of the HTTP communication path to acquire the above specific information.
[0042] The prompt processing unit 115 prompts the user terminal 3 with the above-mentioned determination information obtained by the acquisition processing unit 114. For example, when the user selects the file retrieval service among the services, the acquisition processing unit 114 obtains the retrieval result from the NAS 2, and the prompt processing unit 115 sends the data of the retrieval result page to the user terminal 3. Additionally, for example, when the user selects the open folder (remote) service among the services (by clicking on the "Open Folder" icon on the service list page P5 shown in Figure 11 ), the acquisition processing unit 114 obtains the list of shared folders from the NAS 2, and the prompt processing unit 115 sends the list of shared folders to the user terminal 3. Furthermore, for example, after executing the service, when the service of obtaining the list of folders / files in the shared folder is selected, the acquisition processing unit 114 obtains the list of folders / files in the shared folder from the NAS 2, and the prompt processing unit 115 sends the list of folders / files in the shared folder to the user terminal 3. Additionally, for example, after executing the service, when the upload service of folders / files is selected, the acquisition processing unit 114 obtains the file / folder data from the NAS 2, and the prompt processing unit 115 sends the file / folder data to the user terminal 3. Also, for example, when the upload service of files / folders is selected, the acquisition processing unit 114 obtains the file / folder data from the user terminal 3, sends the file / folder data to the NAS 2, and the prompt processing unit 115 sends the transmission result to the user terminal 3. Moreover, for example, when the service of deleting files / folders is selected, the NAS 2 deletes the file / folder data, and the prompt processing unit 115 sends the execution result of the service to the user terminal 3. Also, for example, the user can move / reproduce the file / folder data in the same manner as the service. The above-mentioned retrieval result and the above-mentioned file / folder data are an example of the specific information of the present invention.
[0043] In addition, in the storage unit 12, the setting page P1 for registering the NAS 2 is stored (refer to Figure 3 , Figure 6 ), the registration page P2 (refer to Figure 4 , Figure 5 ), the management page P3 ( Figure 7 Figure 9 ). In addition, in the storage unit 12, the registration page P4 for using the service is stored (refer to Figure 10 ), the service list page P5 prompted to the user in the service (refer to Figure 11 ), the linked device page P6 (refer to Figure 12 ), and the specific information page (not shown). The control unit 11 sends the data of various pages stored in the storage unit 12 to the user terminal 3 and displays them on the user terminal 3.
[0044] [NAS2]
[0045] As Figure 2 shown, NAS2 has a system area 21 (also referred to as the control unit 21). In the system area 21, it includes a main body control unit 211, a main body storage unit 212, a main body communication unit 213, a virtual machine 22, etc. The main body control unit 211 comprehensively controls the main body storage unit 212 and the main body communication unit 213. In addition, in the virtual machine 22, it includes a virtual control unit 221, a virtual storage unit 222, a virtual authentication unit 223, an HTTP communication unit 224, a Websocket communication unit 225, etc. The virtual control unit 221 comprehensively controls the virtual storage unit 222, the virtual authentication unit 223, the HTTP communication unit 224, and the Websocket communication unit 225.
[0046] The main body communication unit 213 is a communication interface for connecting NAS2 to the network N1 through wired or wireless means and performing data communication in accordance with a specified communication protocol between the NAS2 and an external device (such as a user terminal 3) via the network N1.
[0047] The main body storage unit 212 stores device information (NAS information) related to NAS2, NAS user names and NAS passwords, and the specific information (retrieval data, file data, etc.).
[0048] The HTTP communication unit 224 is a communication interface for connecting NAS2 to the network N1 through wired or wireless means and performing data communication based on the HTTP communication protocol between the NAS2 and the cloud server 1 via the network N1. The HTTP communication unit 224 of NAS2 is connected to the HTTP communication unit 13 of the cloud server 1 to establish an HTTP communication path between the cloud server 1 and NAS2. The TTP communication unit 224 is an example of the first communication unit of the present invention.
[0049] The Websocket communication unit 225 is a communication interface for connecting NAS2 to the network N1 through wired or wireless means and performing data communication in accordance with the Websocket communication protocol between the NAS2 and the cloud server 1 via the network N1. The Websocket communication unit 225 of NAS2 is connected to the Websocket communication unit 14 of the cloud server 1 to establish a Websocket communication path between the cloud server 1 and NAS2. The Websocket communication unit 225 is an example of the second communication unit of the present invention.
[0050] The virtual storage unit 222 stores a token (the first authentication information of the present invention) obtained from the cloud server 1.
[0051] The virtual control unit 221 sends a request to build a Websocket communication path to the cloud server 1. Specifically, when the token is obtained from the virtual storage unit 222, the virtual control unit 221 sends a build request including the token to the cloud server 1 using an HTTP communication path.
[0052] The main body control unit 211 sends the NAS information to the cloud server 1. Specifically, when the NAS information is obtained from the main body storage unit 212, the main body control unit 211 sends the NAS information to the cloud server 1 using an HTTP communication path.
[0053] In addition, the virtual control unit 221 sends the specific information corresponding to the user's request to the cloud server 1 using a Websocket communication path. Specifically, for example, if the main body control unit 211 obtains a retrieval request from the cloud server 1, data (retrieval result) corresponding to the retrieval request is obtained from the main body storage unit 212. The virtual control unit 221 sends the data of the retrieval result to the cloud server 1 using a Websocket communication path.
[0054] The virtual authentication unit 223 authenticates the user terminal 3 when the user selects to open the folder (remote) service (for example, clicks on the Figure 11 icon of "Open Folder" on the service list page P5 shown). The user registers in advance the NAS username for using the service. In addition, the user registers in advance the NAS password for using the service. The NAS username and NAS password are stored in the main body storage unit 212. When the user uses the service and inputs the NAS username and the NAS password in the user terminal 3, the token corresponding to the input NAS username and the NAS password are sent to the NAS2 through a Websocket communication path. The virtual authentication unit 223 sends the sent token to the cloud server 1 through an HTTP communication path. The cloud server 1 sends the NAS username corresponding to the sent token to the NAS2. The virtual authentication unit 223 authenticates the user and allows the use of the service when the NAS username and the NAS password are consistent with the NAS username and the NAS password stored in the main body storage unit 212.
[0055] In this way, the NAS2 sends the setting information to the cloud server 1 through an HTTP communication path connected to the HTTP communication unit 224 in the virtual machine 22. In addition, the NAS2 has a virtual machine 22 and sends the specific information stored in the system area 21 to the cloud server 1 using a Websocket communication path connected to the Websocket communication unit 225 in the virtual machine 22. Therefore, leakage of the specific information can be prevented and security can be improved.
[0056] [User terminal 3]
[0057] like Figure 2 As shown in FIG. 1 , the user terminal 3 includes a control unit 31, a storage unit 32, an operation display unit 33, a communication unit 34, and the like. Figure 2 In the embodiment, two user terminals 3 are illustrated, but in the present invention, there is no limitation on the number of user terminals 3. In addition, the user terminal 3 may have a known structure.
[0058] The communication unit 34 is a communication interface for connecting the user terminal 3 to the network N1 by wire or wirelessly, and performing data communication with other devices (eg, the cloud server 1 , NAS 2 , etc.) via the network N1 in accordance with a predetermined communication protocol.
[0059] The operation display unit 33 is a user interface including a display unit such as a liquid crystal display or an organic EL display that displays various information and an operation unit such as a mouse, keyboard, or touch panel that receives operations. The operation display unit 33 receives operations from the user of the user terminal 3, for example. In addition, the operation display unit 33 displays various pages (setting page P1 (refer to Figure 3 , Figure 6 )、Registration page P2 (refer to Figure 4 , Figure 5 )、Management page P3( Figure 7 Figure 9 )、Login page P4 (refer to Figure 10 )、Service List Page P5 (refer to Figure 11 )、Linked device page P6 (refer to Figure 12 ), specific information page (not shown), etc.).
[0060] The storage unit 32 is a non-volatile storage unit such as a HDD, SSD, or flash memory that stores various information. The storage unit 32 stores a control program for executing various control processes in the control unit 31. For example, the control program is non-temporarily recorded on a computer-readable storage medium such as a CD or a DVD, and is read by a reading device (not shown) such as a CD drive or a DVD drive provided in the user terminal 3 and stored in the storage unit 32. In addition, the control program can also be distributed from the cloud server 1 and stored in the storage unit 32.
[0061] In this embodiment, the application corresponding to the service is installed in the user terminal 3 and stored in the storage unit 32. In addition, as another embodiment, the application can be stored in the cloud server 1, and the cloud server 1 provides a website for the service. In this case, the user terminal 3 can access the website and use the application.
[0062] The control unit 31 includes control devices such as a CPU, a ROM, and a RAM. The CPU is a processor that executes various arithmetic processes. The ROM stores in advance control programs such as a BIOS and an OS for causing the CPU to execute various processes. The RAM stores various information and is used as a temporary memory (working area) for various processes executed by the CPU. Further, the control unit 31 controls the user terminal 3 by causing the CPU to execute various control programs stored in advance in the ROM or the storage unit 32.
[0063] Specifically, the control unit 31 displays various information on the operation display unit 33 or accepts various user operations.
[0064] For example, the control unit 31 causes the operation display unit 33 to display a setting page P1 (see Figure 3 , Figure 6 ), a registration page P2 (see Figure 4 , Figure 5 ), a management page P3 ( Figures 7 - 9 ), and the like. Further, the control unit 31 accepts user operations on the setting page P1, the registration page P2, and the management page P3.
[0065] In addition, for example, the control unit 31 causes the operation display unit 33 to display a login page P4 (see Figure 10 ) and receives a login operation of the user. Further, for example, the control unit 31 causes the operation display unit 33 to display a service list page P5 (see Figure 11 ) and receives a selection operation of a desired service from the user. Further, for example, the control unit 31 causes a linkage device page P6 (see Figure 12 ) to be displayed on the operation display unit 33 and displays NAS information such as the connection status of the NAS2. Further, for example, the control unit 31 causes the operation display unit 33 to display a specific information page such as a search result page for a search request.
[0066] A user who has set and registered the NAS2 is given the right to use the NAS2. The user can use the service that obtains the specific information of the NAS2 by using the user terminal 3.
[0067] [Setting Process]
[0068] Hereinafter, an example of the process of the setting process executed in the information processing system 100 will be described with reference to Figure 13 .
[0069] In addition, the present invention can be understood as an invention of a setting method (an example of the information processing method of the present invention) that executes one or more steps included in the above-described setting process. One or more steps included in the above-described setting process can be appropriately omitted. In addition, the execution order of each step in the above-described setting process can also be different within the range where the same effect is produced. Furthermore, in this example, the control unit 11 of the cloud server 1, the control unit 21 of the NAS 2 (the main body control unit 211 and the virtual control unit 221), and the control unit 31 of the user terminal 3 execute each step in the above-described setting process. However, in other embodiments, one or more processors may also execute each step in the above-described setting process in a distributed manner.
[0070] In step S1, when the user starts the registration operation of the NAS 2, the control unit 11 of the cloud server 1 opens a tenant corresponding to one NAS 2. When opening a tenant, the control unit 11 sends a PIN code for registering the NAS 2 to the user terminal 3. In step S2, the control unit 31 of the user terminal 3 obtains the PIN code from the cloud server 1.
[0071] In step S3, when the user selects the registration page of the NAS 2 on the setting page P1 (refer to Figure 3 ), the control unit 31 of the user terminal 3 requests the data of the registration page P2 from the NAS 2. In step S4, the control unit 21 of the NAS 2 sends the data of the registration page P2 to the user terminal 3. As a result, the registration page P2 (refer to Figure 4 ) is displayed on the user terminal 3.
[0072] In step S5, the user inputs the PIN code into the registration page P2 on the user terminal 3. If the PIN code is obtained from the user terminal 3 (S6), the control unit 11 of the cloud server 1 determines whether the PIN code obtained from the user terminal 3 is consistent with the PIN code that the control unit 11 sent to the user terminal 3 in step S1 (S7).
[0073] When the PIN codes are consistent (S7: Yes), the control unit 11 registers the NAS 2 to the tenant (S8), and sends the determination result (consistent) of step S7 and an inherent token (the first authentication information of the present invention) to the NAS 2 (S9). On the other hand, when the above PIN codes are inconsistent (S7: No), the control unit 11 sends the determination result (inconsistent) of step S7 to the NAS 2 (S9). Step S8 is an example of the setting step of the present invention.
[0074] In step S10, the control unit 21 of NAS2 determines whether the registration of NAS2 is successful based on the determination result obtained from the cloud server 1. In the case where the registration of NAS2 fails (S10: No), the control unit 21 notifies the user terminal 3 of the registration failure information. After obtaining the notification of the registration failure, the control unit 31 of the user terminal 3 displays the registration failure information on the user terminal 3 (S11).
[0075] In the case where the registration of NAS2 is successful (S10: Yes), the control unit 21 of NAS2 notifies the user terminal 3 of the registration success information (S12). In addition, the control unit 21 saves the token obtained from the cloud server 1 in the virtual storage unit 222 (S12). After obtaining the notification of the registration success, the control unit 31 of the user terminal 3 displays the registration success information on the user terminal 3, such as Figure 5 the registration page P2 shown (S13).
[0076] In step S14, when the user selects the management page of NAS2 in the setting page P1 (refer to Figure 6 ), the control unit 31 of the user terminal 3 requests the data of the management page P3 from NAS2. In step S15, the control unit 21 of NAS2 sends the data of the management page P3 to the user terminal 3. Thus, the management page P3 is displayed on the user terminal 3 (refer to Figure 7 ).
[0077] In Figure 7 the management page P3 shown, when the user performs an operation on the login service ID, the management page P3 shown in Figure 8 is displayed on the user terminal 3. The user inputs the service ID in the management page P3 shown in Figure 8 . When the user inputs the service ID, the management page P3 shown in Figure 9 is displayed on the user terminal 3. In the management page P3 shown in Figure 9 , the service ID and the NAS user name corresponding to the service ID are displayed. The control unit 31 of the user terminal 3 sends the input service ID and NAS user name to the cloud server 1 (S16).
[0078] If the service ID and the NAS user name are obtained from the user terminal 3, the control unit 11 of the cloud server 1 saves them in the storage unit 12 (S17).
[0079] In step S18, the control unit 21 of NAS2 uses the token obtained from the cloud server 1 to send a request to the cloud server 1 to establish a Websocket communication path between the cloud server 1 and NAS2.
[0080] In step S19, the control unit 11 of the cloud server 1 compares the token included in the construction request with the token issued by the control unit 11 to the NAS 2 in step S9. When the two tokens match, the control unit 11 constructs a Websocket communication path (S20).
[0081] In step S21, the control unit 21 of the NAS 2 starts the Websocket communication. In addition, in step S22, the control unit 21 sends the NAS information to the cloud server 1. In step S23, if the NAS information is obtained from the NAS 2, the control unit 11 of the cloud server 1 stores it in the storage unit 12.
[0082] If the above setting process is completed, the user can use the service in the user terminal 3 to receive the supply of information stored in the NAS 2.
[0083] [Information Prompting Process]
[0084] Hereinafter, reference will be made to Figure 14 Describe an example of the process of the information prompting process executed in the information processing system 100.
[0085] In addition, the present invention can be understood as an invention of an information prompting method (an example of the information processing method of the present invention) that executes one or more steps included in the information prompting process. In addition, one or more steps included in the above information prompting process described herein can be appropriately omitted. In addition, the execution order of each step in the information prompting process can also be different within the range of producing the same effect. Furthermore, here, an example in which the control unit 11 of the cloud server 1, the control unit 21 of the NAS 2 (the main control unit 221, the virtual control unit 221), and the control unit 31 of the user terminal 3 execute each step in the information prompting process is described, but in other embodiments, one or more processors can also execute each step in the information prompting process dispersedly.
[0086] In step S31, the user starts the application of the above service in the user terminal 3. In step S32, the user inputs the service ID and password in the login page P4 displayed on the user terminal 3. If the control unit 31 of the user terminal 3 obtains the service ID and password, it sends them to the cloud server 1.
[0087] If the service ID and password are obtained from the user terminal 3, the control unit 11 of the cloud server 1 performs the comparison of the service ID and password (S33), and sends the comparison result to the user terminal 3 (S34).
[0088] In step S35, the control unit 31 of the user terminal 3 determines whether the login is successful based on the comparison result obtained from the cloud server 1. In the case of a failed login (S35: No), the control unit 31 displays the login failure information on the user terminal 3 (S36). On the other hand, in the case of a successful login (S35: Yes), the control unit 31 displays the service list page P5 (refer to Figure 11 ) on the user terminal 3 (S37).
[0089] In step S38, the user selects a desired service on the service list page P5. Here, it is assumed that the user selects "Full-text file search". In step S39, the control unit 31 obtains the search conditions input by the user in the search condition page (not shown) and sends them to the cloud server 1.
[0090] If the search conditions are obtained from the user terminal 3 (S40), the control unit 11 of the cloud server 1 sends the search conditions to the NAS2 (S41).
[0091] When the control unit 21 of the NAS2 obtains the search conditions from the cloud server 1 (S42), it performs a search process based on the search conditions (S43). Specifically, the control unit 21 extracts the search data that meets the search conditions from the search data stored in the main storage unit 212. The control unit 21 sends the search data (search result) extracted from the main storage unit 212 to the cloud server 1 using the Websocket communication path (S44).
[0092] If the control unit 11 of the cloud server 1 obtains the search result from the NAS2 (S45), it sends the search result to the user terminal 3 (S46). Step S45 is an example of the acquisition step of the present invention, and step S46 is an example of the presentation step of the present invention.
[0093] In step S47, when the control unit 31 of the user terminal 3 obtains the search result from the cloud server 1, it displays the search result page on the user terminal 3.
[0094] As described above, the user terminal 3 can obtain the information stored in the NAS2 using a secure Websocket communication path.
[0095] As described above, the information processing system 100 according to this embodiment registers the NAS 2 as a device that allows specific information to be presented to the user terminal 3 based on the setting information obtained from the NAS 2 through the first communication path (e.g., HTTP communication path). In addition, when the NAS 2 is registered, the information processing system 100 obtains the specific information corresponding to the request obtained from the user terminal 3 through a second communication path different from the first communication path (e.g., Websocket communication path), and presents the obtained specific information to the user terminal 3.
[0096] According to the above structure, when the user registers the NAS 2 with the tenant, a Websocket communication path is automatically established between the NAS 2 and the cloud server 1. Thus, secure communication can be performed without performing environment construction such as opening the router port and importing security software. For example, if a file retrieval is received from the user, the cloud server 1 obtains the file data from the NAS 2 via the Websocket communication path and displays the file data on the user terminal 3.
[0097] In this way, according to the information processing system 100, it is not necessary to use devices such as routers, and it is not necessary to take security measures such as security software. Therefore, it is possible to prevent cost increases, and ensure the security of the information (file data, etc.) stored in the NAS 2 and present it to the user terminal 3.
[0098] Here, when the user selects "Linked Device" on the service list page P5, the control unit 31 of the user terminal 3 sends a request for information (NAS information) of the linked device (here, the NAS 2) to the cloud server 1.
[0099] If the control unit 11 of the cloud server 1 obtains the above NAS information request from the user terminal 3, it sends the request to the NAS 2. When the control unit 21 of the NAS 2 obtains the request from the cloud server 1, it sends the NAS information stored in the main storage unit 212 to the cloud server 1 using the Websocket communication path.
[0100] If the control unit 11 of the cloud server 1 obtains the NAS information from the NAS 2, it sends the NAS information to the user terminal 3. When the control unit 31 of the user terminal 3 obtains the NAS information from the cloud server 1, it displays the collaboration device page P6 (refer to Figure 12 ) including the NAS information on the user terminal 3. When the NAS 2 is in a state where normal data communication is possible, "○" is displayed in the "Connection Status" of the linked device page P6. When the NAS 2 is disconnected from the network or the power is turned off, "×" is displayed in the "Connection Status" of the linked device page P6.
[0101] In the above-described embodiment, the information processing system 100 corresponds to the information processing system of the present invention, but the information processing system of the present invention is not limited thereto. For example, the information processing system of the present invention may also be constituted by a single cloud server 1.
[0102] The scope of the present invention is not limited to the above, but is defined by the claims. Therefore, it can be considered that the embodiments described in this specification are merely illustrative and not restrictive. Accordingly, all modifications that do not depart from the scope and boundaries of the claims, and those equivalent to the scope and boundaries of the claims, are included within the scope of the claims.
Claims
1. An information processing system that presents specific information stored in a storage device to a user terminal, characterized in that Comprising: A setting processing unit that registers the storage device as a storage device capable of prompting the specific information to the user terminal based on setting information acquired from the storage device via a first communication path; A communication processing unit that, when the storage device is registered by the setting processing unit, issues first authentication information to the storage device, and then, when a user inputs a specified password and a construction request for a second communication path different from the first communication path is acquired from the storage device, constructs the second communication path when the authentication information corresponding to the construction request matches the first authentication information; An acquisition processing unit that, when the second communication path is constructed by the communication processing unit, acquires the specific information corresponding to a request acquired from the user terminal via the second communication path; A prompting processing unit that prompts the user terminal with the specific information acquired by the acquisition processing unit.
2. The information processing system according to claim 1, characterized in that: It further comprises an authentication processing unit that authenticates the user of the user terminal, and the acquisition processing unit acquires the specific information via the second communication path when the user is authenticated by the authentication processing unit.
3. The information processing system according to claim 1 or 2, characterized in that: It further comprises a server connected to the storage device, wherein the storage device comprises: a system area including a storage unit for storing the setting information and the specific information; and a virtual machine including a first communication unit connected to the first communication path and a second communication unit connected to the second communication path, and the storage device sends the setting information from the first communication unit to the server via the first communication path and sends the specific information from the second communication unit to the server via the second communication path.
4. The information processing system according to claim 3, characterized in that: The virtual machine further comprises a storage unit that stores the authentication information, i.e., the first authentication information, issued by the server when constructing the second communication path.
5. The information processing system according to claim 1 or 2, characterized in that: The first communication path is a communication path corresponding to the HTTP communication protocol, and the second communication path is a communication path corresponding to the Websocket communication protocol.
6. The information processing system according to claim 1 or 2, characterized in that: The storage device is a Network Attached Storage (NAS).
7. An information processing method for prompting a user terminal with specific information stored in a storage device, characterized in that, In the information processing method, one or more processors perform the following steps: A setting step of registering the storage device as a storage device capable of prompting the specific information to the user terminal based on setting information acquired from the storage device via a first communication path; A communication step, which, when the storage device is registered in the setting step, issues first authentication information to the storage device, and then, when a user inputs a specified password, obtains a request for constructing a second communication path different from the first communication path from the storage device, and constructs the second communication path when the authentication information corresponding to the construction request is consistent with the first authentication information; An obtaining step, which, when the second communication path is constructed in the communication step, obtains the specific information corresponding to the request obtained from the user terminal via the second communication path; A prompting step, which prompts the user terminal with the specific information obtained in the obtaining step.
8. A storage medium stores an information processing program for prompting a user terminal with specific information stored in a storage device, characterized in that, The information processing program is used to execute the following steps by one or more processors: A setting step, which registers the storage device as a storage device capable of prompting the specific information to the user terminal based on the setting information obtained from the storage device via the first communication path; A communication step, which, when the storage device is registered in the setting step, issues first authentication information to the storage device, and then, when a user inputs a specified password, obtains a request for constructing a second communication path different from the first communication path from the storage device, and constructs the second communication path when the authentication information corresponding to the construction request is consistent with the first authentication information; An obtaining step, which, when the second communication path is constructed in the communication step, obtains the specific information corresponding to the request obtained from the user terminal via the second communication path; A prompting step, which prompts the user terminal with the specific information obtained in the obtaining step.
Citation Information
Patent Citations
Cloud computing system
CN103782302A
Efficient communication within hybrid cloud system
US20170099362A1