Image formation control method, device, system and storage medium

By verifying the user's identity on the image forming device and locking the device or account when it is not operated, combined with functional permission binding and number of times, the problem of illegal operation is solved, and the security and data protection of the image forming device are improved.

CN115866145BActive Publication Date: 2025-08-19ZHUHAI PANTUM ELECTRONICS CO LTD
View PDF 3 Cites 0 Cited by

Patent Information

Application Number
CN202111124210.8
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2021-09-24
Publication Date
2025-08-19
Estimated Expiration
2041-09-24

AI Technical Summary

Technical Problem

The existing image forming device is still in an unlocked state when the user has passed the authentication due to special reasons or emergency situations, resulting in unauthorized users being able to perform illegal operations, resulting in the leakage of user information, historical print data and security information.

Method used

By verifying the user's identity information and locking the device or user account after the preset time is not operated, functional permissions are restricted, the binding relationship between user's identity information and functional permissions is set, and functional permissions are reduced or prohibited when the verification fails to reach a certain number of times.

Benefits of technology

Effectively prevent illegal operations by unauthorized users, enhance the security protection of image forming devices, protect user information and data security, and prevent information leakage.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN115866145B_ABST
    Figure CN115866145B_ABST
Patent Text Reader

Abstract

The present application provides an image formation control method, device, system, and storage medium, relating to the field of image formation technology. The image formation control method includes: verifying the user identity information of an image forming device; after the user identity information is successfully verified, if the image forming device has not been operated for a preset time, locking the image forming device or locking the user account currently using the image forming device. When the image forming device has not been operated for a period of time, by locking the image forming device or locking the user account currently using the image forming device, the problem of unauthorized users illegally operating the image forming device is avoided, thereby enhancing the security protection measures of the image forming device and improving the security of the image forming device.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to the field of image forming technology, and in particular to an image forming control method, device, system and storage medium. Background Art

[0002] With the advancement of electronic science and technology, image forming apparatuses have become increasingly mature. As a widely used computer peripheral, they are now widely used. Currently, many applications where image forming apparatuses are used require their security. For example, some operations contain confidential information. If printed or copied using an image forming apparatus and then removed from a secure location, the confidential information could be leaked.

[0003] Therefore, security management and control of image forming devices is extremely important, especially for applications requiring high confidentiality. In existing technologies, image forming devices authenticate users, allowing them to use the device once they have passed authentication. However, sometimes, after authentication, a user leaves the device for special reasons or emergencies. During this time, the device remains unlocked, allowing anyone to operate the device in the user's name. This can easily lead to unauthorized users illegally operating the device. Consequently, the security measures in these image forming devices are insufficient, making it easy for user information, historical print data, and security information to be leaked. Summary of the Invention

[0004] In order to solve the problem in the prior art that the security protection measures of the image forming device are insufficient, which causes unauthorized users to illegally operate the image forming device, resulting in the leakage of user information, historical printing data and security information of the image forming device.

[0005] The present application provides an image formation control method, comprising:

[0006] verifying user identity information of the image forming device;

[0007] After the user identity information is successfully verified, if the image forming device is not operated for a preset time, the image forming device is locked or the user account currently using the image forming device is locked.

[0008] In one embodiment, the user identity information is bound to the functional authority of the image forming device; if the user identity information verification fails and the remaining verification times reach a first predetermined number, the functional authority of the image forming device is reduced.

[0009] In one embodiment, the first predetermined number of times includes at least one number threshold;

[0010] The functional authority of the image forming device is reduced, including reducing the functional authority of at least one of the image forming devices;

[0011] If the user identity information verification fails and the remaining verification times reach a first threshold of the first predetermined times, the functional authority of at least one of the image forming devices is reduced.

[0012] In one embodiment, when the remaining number of verifications reaches a second predetermined number, the user is prohibited from using the functional authority of the image forming apparatus and / or the user identity information is deleted.

[0013] In one embodiment, the user identity information verification failure is a continuous verification failure.

[0014] In one embodiment, if the user identity information is successfully verified and the user has the lock function permission, the image forming device can be remotely locked; if the user identity information is successfully verified and the user has the unlock function permission, the image forming device can be remotely unlocked.

[0015] The present application also provides an image forming device, comprising:

[0016] a verification unit, configured to verify identity information of a user of the image forming device;

[0017] The control unit controls to lock the image forming device or lock the user account currently using the image forming device when the image forming device has not been operated for a preset time after the user identity information is successfully verified.

[0018] In one embodiment, the storage unit is configured to store a binding relationship between user identity information and functional permissions of the image forming apparatus;

[0019] The control unit controls to reduce the functional authority of the image forming apparatus when the user identity information verification fails and the remaining verification times reach a first predetermined number.

[0020] In one embodiment, the first predetermined number of times includes at least one number threshold;

[0021] The functional authority of the image forming device is reduced, including reducing the functional authority of at least one of the image forming devices;

[0022] The control unit controls to reduce the functional authority of at least one of the image forming devices if the user identity information verification fails and the remaining number of verification times reaches a first threshold of the first predetermined number when the verification unit verifies the user identity information.

[0023] In one embodiment, when the verification unit verifies the user identity information, if the remaining verification times reach a second predetermined number, the control unit prohibits the user from using the functional authority of the image forming apparatus and / or deletes the user identity information.

[0024] In one embodiment, the user identity information verification failure is a continuous verification failure.

[0025] In one embodiment, the remote locking unit can remotely lock the image forming device when the user identity information is successfully verified and the user has the locking function permission; the remote unlocking unit can remotely unlock the image forming device when the user identity information is successfully verified and the user has the unlocking function permission.

[0026] The present application provides an image forming system, comprising:

[0027] A mobile device, configured to send an instruction to control the image forming device to the server according to a user instruction;

[0028] The server is configured to verify user identity information and, upon successful verification, control the image forming device according to the user's instructions;

[0029] The image forming apparatus unlocks or locks the image forming apparatus body according to an instruction from the server.

[0030] In one embodiment, the server is configured to store a binding relationship between the user identity information and the functional permissions of the image forming device.

[0031] In one embodiment, the binding relationship between the user identity information and the functional permissions of the image forming device includes:

[0032] The user identity information, the unique identification information of the image forming device, and the functional rights authorized to use the image forming device.

[0033] The present application also provides a computer-readable storage medium, which includes a stored program, wherein when the program is executed, the device where the computer-readable storage medium is located is controlled to execute any of the above methods.

[0034] The image formation control method, device, system and storage medium of the present application can conveniently and efficiently control the unlocking and locking of the image forming device, avoid the problem of unauthorized users performing illegal operations on the image forming device, thereby enhancing the security protection measures of the image forming device and improving the security of the image forming device; when the user identity information verification error reaches a predetermined number of times, the user's use of the functional permissions of the image forming device is restricted, forming a security protection mechanism for the image forming device, which can prevent illegal persons from maliciously using the image forming device, avoid the problem of data information leakage, and protect the security of the output information of the image forming device. BRIEF DESCRIPTION OF THE DRAWINGS

[0035] In order to more clearly illustrate the embodiments of the present application or the technical solutions of the prior art, the following is a brief introduction to the drawings required for use in the embodiments or the description of the prior art. Obviously, the drawings described below are only some embodiments of the present application. For ordinary technicians in this field, other drawings can be obtained based on these drawings without any creative work.

[0036] Figure 1 This is a schematic diagram of an image formation control method in one embodiment of the present application;

[0037] Figure 2 This is a schematic diagram of the connection between the image forming apparatus and the host device in one embodiment of the present application;

[0038] Figure 3 This is a flow chart of an image formation control method according to an embodiment of the present application;

[0039] Figure 4A This is a schematic structural diagram of an image forming device in one embodiment of the present application;

[0040] Figure 4B Schematic diagram of another image forming device in one embodiment of the present application;

[0041] Figure 5 Schematic diagram of the image forming system structure in one embodiment of the present application. DETAILED DESCRIPTION

[0042] To facilitate understanding of the present application, a more comprehensive description of the present application will be provided below with reference to the accompanying drawings. The accompanying drawings illustrate preferred embodiments of the present application. However, the present application can be implemented in many different forms and is not limited to the embodiments described herein. Rather, these embodiments are provided to provide a more thorough and comprehensive understanding of the disclosure of the present application.

[0043] Unless otherwise defined, all technical and scientific terms used herein have the same meaning as those commonly understood by those skilled in the art to which this application pertains. The terms used herein in the specification of this application are only for the purpose of describing specific embodiments and are not intended to limit this application.

[0044] The following describes some embodiments of the present application in detail with reference to the accompanying drawings. The following embodiments and features thereof may be combined with each other unless there is any conflict.

[0045] In the prior art, an image forming device performs identity authentication on a user, and the user can use the image forming device after passing the authentication. However, sometimes after authentication, the user leaves the image forming device due to special reasons or emergencies. At this time, the image forming device is still in an unlocked state, and anyone can operate the image forming device in the name of the user, which can easily cause unauthorized users to illegally operate the image forming device.

[0046] Therefore, the present application provides an image formation control method, device, system and storage medium, which can prevent unauthorized users from illegally operating the image forming device by locking the image forming device or locking the user account currently using the image forming device when the user has not operated the image forming device for a period of time, thereby enhancing the security protection measures of the image forming device and improving the security of the image forming device.

[0047] Please refer to Figure 1 , Figure 1 This is a schematic diagram of an image formation control method according to an embodiment of the present application, comprising:

[0048] S101: Verifying user identity information of the image forming device;

[0049] User identity information can be verified through the image forming device's operation panel or a connected external device. The external device can be a combination of a smartphone, mobile device, computer, server, radio frequency authentication device, biometric authentication device, or the like. The connection method can be wired or wireless. For example, a user can enter their user ID and password on the operation panel, or an external device can perform radio frequency (RF) authentication or authenticate the user's biometric information (fingerprint, iris, facial recognition, etc.).

[0050] In one possible implementation, user identity information can also be verified by verifying external device identification information. For example, using a mobile device as an example, user identity information is bound to the mobile device identification information. The mobile device identification information can be information that uniquely identifies the mobile device, such as the mobile device serial number. For example, if user X binds mobile device A and mobile device B, and user X uses mobile device B to operate an image forming device, then user X can be found and his identity information verified by simply obtaining mobile device B's identification information.

[0051] The image forming apparatus includes, but is not limited to, a printer, a copier, a fax machine, a scanner, and a multi-function peripheral that performs the above functions in a single device.

[0052] S102: After the user identity information is successfully verified, if the image forming apparatus is not operated for a preset time, the image forming apparatus is locked or the user account currently using the image forming apparatus is locked.

[0053] Specifically, after the user identity information of the image forming device is successfully verified, sometimes the user leaves the image forming device due to special reasons or emergencies. At this time, the image forming device is still unlocked, and anyone can operate the image forming device in the name of the user, which can easily cause unauthorized users to illegally operate the image forming device. Therefore, a preset time can be set. When the user does not operate the image forming device within the preset time, the image forming device is locked or the user account currently using the image forming device is locked. If the user wants to perform image forming operations again, the user identity information needs to be verified again. Only after the verification is passed can the image forming operation be performed again. Among them, locking the image forming device means that the image forming device is locked and cannot be used by everyone; locking the user account currently using the image forming device means that the user account currently using the image forming device is locked, but other users can still operate the image forming device after successful verification.

[0054] The image formation control method of the present application can prevent unauthorized users from illegally operating the image forming device, thereby enhancing the security protection measures of the image forming device and improving the security of the image forming device.

[0055] In one possible implementation, after identity verification is passed, the image forming device or the user account currently using the image forming device can be remotely unlocked or locked via a mobile device or server, enabling convenient and efficient control. When the image forming device or the user account currently using the image forming device is locked, it can be unlocked promptly. This can better prevent malicious use of the image forming device by unauthorized persons, thereby enhancing the security of the image forming device.

[0056] In addition, the image forming device only has a simple function of authenticating the user's identity. The image forming device can be used after the authentication is passed. Such identity authentication includes entering the user ID and password, wireless radio frequency (RF) authentication, and authentication of the user's biometric information (fingerprint, iris, face recognition, etc.). There is no limit on the number of identity authentications. If a cracking program is used to make multiple attempts, it will be easily cracked within a certain period of time. Therefore, unauthorized users can also illegally use the image forming device through the cracking program. The security protection measures of the image forming device are insufficient, resulting in the leakage of user information, historical printing data, and security information of the image forming device.

[0057] In one implementation of the present application, an image formation control method includes: binding user identity information to functional permissions of an image forming device; if user identity information verification fails and the remaining number of verifications reaches a first predetermined number, the functional permissions of the image forming device are reduced.

[0058] When the image forming device is first powered on, a system administrator is set up. After the password is forcibly changed, the system administrator sets functional permissions for the image forming device for multiple users. Each user's identity information is bound to at least one functional permission for the image forming device. When the image forming device is subsequently used, the image forming device obtains the binding relationship between the user's identity information and the functional permissions of the image forming device based on the user's identity information input, and provides functions corresponding to the functional permissions. For example, an interface corresponding to the functional permissions is provided on a display panel, and a driver provides functions supported by the corresponding functional permissions. The user identity information may include a password.

[0059] In one possible implementation, each user identity information is bound to the functional permissions of at least one image forming device and the unique identification information of the image forming device. The image forming device bound to each user identity information can be one or more, and this application does not limit this.

[0060] Therefore, in the embodiment of the present application, the functional permissions of the image forming device are bound to the user's identity information. If the user's identity information verification fails and the remaining verification times reach a first predetermined number, the functional permissions of the user's image forming device are reduced. This enhances the security protection measures of the image forming device and avoids the leakage of user information, historical printing data, and security information.

[0061] refer to Figure 2 , Figure 2Schematic diagram of the connection between the image forming device 200 and the host-side devices 201 and 202 in the image formation control method of the embodiment of the present application. The image forming device 200 is connected to the host-side device via a wired network, a wireless network or a USB connection. The host-side device is an external device connected to the image forming device. After the user establishes a connection between his host-side device and the image forming device 200, the user identity information is successfully verified, and the image forming device 200 is used according to the functional authority of the user. Specifically, for example, when the user has the printing function authority, the print driver installed in the host-side device can output the file to be printed to the image forming device to realize the image formation operation. The host-side device can be one or more (such as 201, 202), which can be connected to an image forming device 200 at the same time, that is, one or more users can use an image forming device 200 at the same time. The present application does not limit the number of host-side devices. The image formation control method of the embodiment of the present application can be implemented on the image forming device, or it can be implemented through software, external links, hardware, etc.

[0062] Please refer to Figure 3 , Figure 3 This is a flow chart of the image formation control method according to an embodiment of the present application. Step S301: Verify the user identity information of the image forming device. If the user identity information verification fails, the process jumps to step S302. Step S302: If the user identity information verification fails and the remaining verification times reach a first predetermined number, the process jumps to step S303. S303: Reduce the user's functional permissions for at least one image forming device. In step S301: Verify the user identity information of the image forming device. If the user identity information verification succeeds, the process jumps to step S304. S304: If the user identity information verification succeeds, the image forming device is used according to the functional permissions. That is, based on the user identity information input by the user, the image forming device will provide functions corresponding to the functional permissions, for example: providing an interface for the corresponding functional permissions on the display panel, and driving functions that provide support for the corresponding functional permissions.

[0063] Specifically, the functional permissions of the image forming device include, but are not limited to:

[0064] Basic functions: printing, copying, scanning, faxing, wired transmission (such as USB, etc.), wireless transmission (such as network, Wi-Fi, etc.)

[0065] Security features: data security, transmission security, panel lock;

[0066] Device management functions: firmware version information viewing, log query, firmware update;

[0067] User management functions: user data query, modification, permission setting, restriction and removal of restrictions, unlocking and locking, user addition and deletion.

[0068] In one possible implementation, user identity information may include user level. For example, the highest user level (i.e., system administrator) has full permissions on the image forming device; higher user levels (i.e., general administrators) have permissions other than user management functions; and general user levels (i.e., ordinary users) have permissions for security functions and basic functions, or only have permissions for one or more basic functions. If a user performs an unauthorized operation on the image forming device, that is, performs an operation outside the user's functional permissions, the image forming device will prompt the user that the functional permissions are not met and generate an audit log warning for the unauthorized operation. For example, a user's functional permissions only include printing, and the user initiates a scan.

[0069] In one possible implementation, the first predetermined number of times may be set to at least one number threshold, and when the remaining number of verifications reaches a number threshold, the user's permission to use at least one function of the image forming device is reduced. For example, when the identity information verification of a higher-level user (i.e., a general administrator) fails, and the remaining number of verifications reaches the first number threshold of the first predetermined number of times, the first number threshold may be set to 5 times, reducing the user's permission to use the device management function in the image forming device, that is, restricting the user from using the device management function, including firmware version information viewing, log query, and firmware update; subsequently, the second number threshold of the first predetermined number of times is set to 3 times, the higher-level user identity information verification still fails, and the remaining number of verifications reaches the first predetermined number of times again, that is, the remaining number of verifications is 3 times, at which point the user's permission to use the security function in the image forming device is further reduced. Of course, the first predetermined number of times and the initial remaining number of verifications can be flexibly set according to security requirements at the beginning, and the first predetermined number of times can be set to at least one or more number thresholds.

[0070] Among them, the restrictions on user use include but are not limited to the following situations: it can be restricted to the current time, that is, it can be restricted for a short period of time, such as a restriction of 1 hour; it can also be restricted to the same day, that is, it can be restricted to the day of operation, such as restricting it before 24:00 on the natural day, and the restriction will be automatically lifted at 0:00 the next day; it can also be restricted to a predetermined time period, such as restricting it for 24 hours starting from the time the image forming device was operated. Assuming that the image forming device was operated at 8:00 am on the 19th, the restriction will be automatically lifted at 8:00 am on the 20th; it can also be set to restrict the user from using the device after that operation. Restrictions on user use can be adjusted according to actual needs.

[0071] In addition, in one possible implementation, restricting a user from using the device may also include restricting the image forming device from being used, that is, when the user identity information verification fails, the image forming device is restricted from being used by the user and other users. In other words, the present application includes: 1. When a single user identity information verification fails, the image forming device functional permissions of the single user are restricted, while other users can continue to use the image forming device after the identity information verification succeeds; 2. When a single user identity information verification fails, the image forming device is directly restricted from being used by the user and other users. Restricting users from using the device can be adjusted according to actual needs.

[0072] In one possible implementation, the initial remaining verification times can be set based on the user level. A higher user level indicates a more secure user, with a lower probability of illegally using the image forming device. Therefore, the highest user level (i.e., system administrator) is assigned the largest initial remaining verification times. A general user level (i.e., ordinary user) indicates a higher probability of illegally using the image forming device, and therefore has a lower initial remaining verification times. Of course, the initial remaining verification times can also be adjusted based on actual circumstances.

[0073] In another possible implementation, reducing the user's functional permissions within the image forming device can also be configured based on actual needs. For example, when the remaining number of verification attempts reaches a first predetermined number, i.e., a first threshold for the first predetermined number of attempts, the user's firmware update permission within the device management functional permissions is reduced. Subsequently, when the remaining number of verification attempts reaches the first predetermined number of attempts again, i.e., a second threshold for the first predetermined number of attempts, the log query permission within the device management functional permissions is further reduced. The first predetermined number of attempts can be configured with at least one or more thresholds, and reducing the user's functional permissions within the image forming device can also reduce one or more functional permissions.

[0074] Specifically, in step S304, if the user identity information is successfully verified, the image forming device is used according to the functional permissions. That is, based on the user identity information entered by the user, the functional permissions of at least one image forming device bound to the user identity information are obtained. The image forming device will provide functions corresponding to the functional permissions, including but not limited to: providing an option interface for the corresponding functional permissions on the display panel; driving functions supported by the corresponding functional permissions; and functions that do not fall within the user's functional permissions will be disabled or grayed out, making them impossible for the user to click normally.

[0075] In addition, in steps S301-S303: when the user identity information verification fails and the user's functional permissions to use at least one image forming device are reduced, step S305 further determines whether the remaining number of verifications has reached a second predetermined number; when it is determined that the remaining number of verifications has reached the second predetermined number, the process jumps to step S306: prohibiting the user from using the functional permissions of the image forming device and / or deleting the user identity information. For example, if the second predetermined number is set to 0, when the user's remaining number of verifications is 0, a higher user level (i.e., a general administrator) can be prohibited from using the functional permissions of the image forming device; and for a general user level (i.e., an ordinary user), when the remaining number of verifications is 0, the user's functional permissions to use the image forming device can be revoked and the user identity information can be deleted.

[0076] In a possible implementation, when the verification time of the user identity information exceeds a second preset time, it can be regarded as a user identity information verification failure, and the user's functional authority to use at least one image forming device is reduced.

[0077] In one possible implementation, the failure of user identity information verification can be set as continuous verification failure, that is, in the implementation of the above embodiment, only when the user identity information fails to be verified continuously will it be determined whether the remaining number of verifications reaches the first predetermined number and the second predetermined number, and the protective measures of the above implementation will be taken.

[0078] In one possible implementation, user identity verification failure may include the following situations:

[0079] 1. If the user identity information exists but verification fails, the above protection measures can be implemented. For example, the system administrator has set up a user identity information binding function permissions. The user identity information already exists, but the user fails to enter the password during verification.

[0080] 2. The user identity information does not exist at all. For example, the system administrator has not set the user identity information, and the user identity information does not exist at all.

[0081] For the second scenario, the image formation control method of the embodiment of the present application can lock or restrict all functions of the image forming device until the highest user level (i.e., system administrator) unlocks them or a user with permission to remove restrictions removes the restrictions. An audit log warning message is generated for this illegal operation. For example, in the case of an illegal operation, the user identity information does not exist.

[0082] In addition, when the number of remaining verification attempts at the highest user level is too few, restricting their access to the image forming device or disabling all functions of the image forming device, the restriction can be lifted by verifying another highest user level, restoring the remaining number of verification attempts. Alternatively, when all permissions at the highest user level are restricted or prohibited, the image forming device can send a warning message to the image forming device manufacturer's server or notify the user through a panel display to contact the image forming device manufacturer, allowing the image forming device manufacturer's operations and maintenance personnel to promptly address the issue and remove the restriction on-site or remotely. Remote removal methods include, but are not limited to, mobile devices and cloud servers.

[0083] Similarly, when a higher-level or general user has too few remaining authentication attempts, limiting their access to the image forming device or disabling all functions of the image forming device, the system can be configured to allow authentication by the highest-level user (i.e., system administrator) to remove the restriction and restore their remaining authentication attempts. Of course, higher-level users can also be granted the ability to remove restrictions based on actual needs.

[0084] The image formation control method provided by the present application binds the functional permissions of the image forming device through the user identity information. When the verification of the user identity information fails and the remaining verification times reaches a first predetermined number, the functional permissions of the image forming device of the user are reduced, thereby restricting the user from using the functional permissions of the image forming device, forming a security protection mechanism for the image forming device, and being able to prevent illegal persons from maliciously using the image forming device and causing data information leakage, thereby enhancing the self-protection security of the image forming device and protecting the security of the information output by the image forming device.

[0085] refer to Figure 4A In a specific implementation, the present application further provides an image forming device 400, comprising: a verification unit 401, for verifying the user identity information of the image forming device 400; a control unit 402, which, after the user identity information is successfully verified, controls the locking of the image forming device 400 or the locking of the user account currently using the image forming device 400 when the image forming device 400 has not been operated for a preset time.

[0086] Verification unit 401 is used to verify the user identity information of image forming device 400. The user identity information can be verified through the operation panel of image forming device 400 or a connected external device. The external device can be a combination of one or more of a smartphone, a mobile device, a computer, a server, a radio frequency authentication device, a biometric information authentication device, etc. The connection method can be a wired connection or a wireless connection. For example, a user enters a user ID and password on the operation panel, or performs radio frequency (RF) authentication or authenticates the user's biometric information (fingerprint, iris, facial recognition, etc.) through an external device.

[0087] In one possible implementation, user identity information can also be verified by verifying external device identification information. For example, using a mobile device as an example, user identity information is bound to the mobile device identification information. The mobile device identification information can be information that uniquely identifies the mobile device, such as the mobile device serial number. For example, if user X binds mobile device A and mobile device B, and user X uses mobile device B to operate image forming apparatus 400, then user X can be found and his identity information verified by simply obtaining mobile device B's identification information.

[0088] The image forming apparatus 400 includes, but is not limited to, a printer, a copier, a fax machine, a scanner, and a multi-function peripheral that performs the above functions in a single device.

[0089] The control unit 402 controls, after the user identity information is successfully verified, to lock the image forming device 400 or the user account currently using the image forming device 400 if the image forming device 400 has not been operated for a preset time. Specifically, after the user identity information of the image forming device 400 is successfully verified, sometimes the user leaves the image forming device 400 for special reasons or emergencies. At this time, the image forming device 400 is still unlocked, and anyone can operate the image forming device 400 in the name of the user, which can easily cause unauthorized users to illegally operate the image forming device 400. Therefore, a preset time can be set, and when the user does not operate the image forming device 400 within the preset time, the image forming device 400 or the user account currently using the image forming device 400 is locked. If the user wants to perform image forming operations again, he needs to verify the user identity information again. Only after the verification is passed can the image forming operation be performed again. Among them, locking the image forming device 400 means that the image forming device 400 is locked and cannot be used by everyone; locking the user account currently using the image forming device 400, in other words, locking the user account currently using the image forming device 400, but other users can still operate the image forming device 400 after successful verification.

[0090] The image forming device of the present application can prevent unauthorized users from illegally operating the image forming device, thereby enhancing the security protection measures of the image forming device and improving the security of the image forming device.

[0091] In one possible implementation, after identity verification is passed, the image forming device 400 or the user account currently using the image forming device 400 can be remotely controlled to be unlocked or locked via a mobile device or server, enabling convenient and efficient control. When the image forming device or the user account currently using the image forming device is locked, it can be unlocked promptly. This can better prevent malicious use of the image forming device by unauthorized persons, thereby enhancing the security of the image forming device.

[0092] refer to Figure 4B In a possible implementation, the image forming apparatus 400 further includes a storage unit 403 .

[0093] The storage unit 403 is used to store the binding relationship between the user identity information and the functional permissions of the image forming device 400; the control unit 402 is also used to control the reduction of the functional permissions of the image forming device 400 when the user identity information verification fails and the remaining verification times reach the first predetermined times.

[0094] When the image forming device 400 is first powered on, a system administrator is assigned. After the password is forcibly changed, the system administrator then sets functional permissions for the image forming device 400 for multiple users. Each user's identity information is bound to at least one functional permission of the image forming device 400, and the binding relationship between the user identity information and the functional permissions of the image forming device 400 is stored in the storage unit. Subsequently, when the image forming device 400 is used, based on the user's identity information input by the user, the image forming device 400 retrieves the binding relationship between the user identity information and the functional permissions of the image forming device 400 from the storage unit 403 and provides functions corresponding to the functional permissions. For example, an interface for the corresponding functional permissions is provided on the display panel, and a driver provides functions supported by the corresponding functional permissions. The user identity information may include a password.

[0095] In one possible implementation, each user identity information is bound to at least one functional permission of an image forming device 400 and the unique identification information of the image forming device 400. The image forming device bound to each user identity information may be one or more, and this application does not impose any restrictions thereon.

[0096] Therefore, in the embodiment of the present application, storage unit 403 stores the binding relationship between user identity information and the functional permissions of image forming device 400. Control unit 402 controls the reduction of the functional permissions of image forming device 400 when user identity information verification fails and the remaining verification times reach a first predetermined number. This enhances the security protection measures of the image forming device, prevents unauthorized users from illegally operating the image forming device, and improves the security of the image forming device.

[0097] The storage unit 403 can also be used to store execution instructions of the controller. The storage unit 403 can be implemented by any type of volatile or non-volatile storage device or a combination thereof, such as a static random access memory cell (SRAM), an electrically erasable programmable read-only memory cell (EEPROM), an erasable programmable read-only memory cell (EPROM), a programmable read-only memory cell (PROM), a read-only memory cell (ROM), a magnetic storage cell, a flash storage cell, a magnetic disk or an optical disk.

[0098] Verification unit 401 includes an operation panel of the image forming apparatus or a connected external device to verify user identity information. The external device can be a combination of a smartphone, a mobile device, a computer, a server, a radio frequency authentication device, a biometric information authentication device, or the like. The connection method can be a wired connection or a wireless connection. For example, a user enters a user ID and password on the operation panel, or an external device performs radio frequency (RF) authentication or authenticates the user's biometric information (fingerprint, iris, facial recognition, etc.).

[0099] When the user identity information verification fails and the remaining number of verifications reaches a first predetermined number, the control unit 402 controls to reduce the functional permissions of the image forming device for the user. The control unit 402 can also use various interfaces and lines to connect various parts of the entire system, and execute or execute software programs and / or modules stored in the storage unit 403, and call data stored in the storage unit 403 to perform various functions and / or process data of the image forming device 400. The control unit 402 can be composed of an integrated circuit (IC), for example, a single packaged IC, or a plurality of packaged ICs with the same or different functions.

[0100] The image forming apparatus 400 may further include a communication unit (not shown) for establishing a communication channel so that the storage unit 403 can communicate with other devices and receive user data sent by other devices or send user data to other devices.

[0101] These components communicate via one or more buses. Those skilled in the art will appreciate that the structure of the image forming apparatus 400 shown in the figure does not limit the embodiments of the present invention. It may be a bus structure or a star structure, and may include more or fewer components than shown, or combine certain components, or arrange the components differently. When the execution instructions in the storage unit 403 are executed by the control unit 402, the image forming apparatus 400 is able to perform some or all of the steps in the above-described method embodiments.

[0102] When verification unit 401 verifies the user identity information of image forming device 400, if the user identity information verification fails and the remaining verification times reach a first predetermined number, control unit 402 controls to reduce at least one functional permission of image forming device 400. If the user identity information verification succeeds, image forming device 400 is used according to the functional permission. That is, based on the user identity information input by the user, image forming device 400 provides functions corresponding to the functional permission, for example, providing an interface corresponding to the functional permission on a display panel, and driving functions that provide support for the corresponding functional permission.

[0103] Specifically, the functional permissions of the image forming device 400 include, but are not limited to:

[0104] Basic functions: printing, copying, scanning, faxing, wired transmission (such as USB, etc.), wireless transmission (such as network, Wi-Fi, etc.);

[0105] Security features: data security, transmission security, panel lock;

[0106] Device management functions: firmware version information viewing, log query, firmware update;

[0107] User management functions: user data query, modification, permission setting, restriction removal, unlocking and locking, user addition and deletion.

[0108] In one possible implementation, user identity information may include user level. For example, the highest user level (i.e., system administrator) has full permissions on image forming device 400; higher user levels (i.e., general administrators) have permissions other than user management functions; and general user levels (i.e., ordinary users) have permissions for security functions and basic functions, or only have permissions for one or more basic functions. If a user performs an unauthorized operation on image forming device 400, that is, performs an operation outside the functional permissions of the user, image forming device 400 will prompt the user that the functional permissions are not met and generate an audit log warning for the unauthorized operation. For example, a user's functional permissions only include printing, and the user initiates a scan.

[0109] In one possible implementation, the first predetermined number of times may be set to at least one number threshold, and when the remaining number of verifications reaches a number threshold, the user's permission to use at least one function of the image forming device is reduced. For example, when the identity information of a higher-level user (i.e., a general administrator) fails to be verified by verification unit 401, and the remaining number of verifications reaches a first number threshold of the first predetermined number, the first number threshold may be set to 5 times, and control unit 402 controls to reduce the user's permission to use the device management function in image forming device 400, that is, restricting the user from using device management functions, including viewing firmware version information, log querying, and firmware updating; subsequently, the second number threshold of the first predetermined number of times is set to 3 times, and the higher-level user identity information verification still fails, and the remaining number of verifications again reaches the first predetermined number of times, that is, the remaining number of verifications is 3 times, at this time, the user's permission to use the security functions in image forming device 400 is further reduced. Of course, the first predetermined number of times and the initial remaining number of verifications can be flexibly set according to security requirements at the beginning, and the first predetermined number of times can be set to at least one or more number thresholds.

[0110] Among them, the restrictions on user use include but are not limited to the following situations: it can be restricted to the current time, that is, it can be restricted for a short period of time, such as a restriction of 1 hour; it can also be restricted to the same day, that is, it can be restricted to the day of operation, such as restricting it before 24:00 on the natural day, and the restriction will be automatically lifted at 0:00 the next day; it can also be restricted to a predetermined time period, such as restricting it for 24 hours starting from the time the image forming device was operated. Assuming that the image forming device was operated at 8:00 am on the 19th, the restriction will be automatically lifted at 8:00 am on the 20th; it can also be set to restrict the user from using the device after that operation. Restrictions on user use can be adjusted according to actual needs.

[0111] In addition, in one possible implementation, restricting a user from using the device may also include restricting the image forming device from being used, that is, when the user identity information verification fails, the image forming device is restricted from being used by the user and other users. In other words, the present application includes: 1. When a single user identity information verification fails, the image forming device functional permissions of the single user are restricted, while other users can continue to use the image forming device after the identity information verification succeeds; 2. When a single user identity information verification fails, the image forming device is directly restricted from being used by the user and other users. Restricting users from using the device can be adjusted according to actual needs.

[0112] In one possible implementation, the initial remaining verification times can be set based on the user level. A higher user level indicates a more secure user, with a lower probability of illegally using the image forming device. Therefore, the highest user level (i.e., system administrator) is assigned the largest initial remaining verification times. A general user level (i.e., ordinary user) indicates a higher probability of illegally using the image forming device, and therefore has a lower initial remaining verification times. Of course, the initial remaining verification times can also be adjusted based on actual circumstances.

[0113] In another possible implementation, reducing the user's functional permissions within image forming device 400 can also be configured based on actual needs. For example, when verification unit 401 fails to verify the user's identity information and the remaining verification times reach a first predetermined number of times for the first time, i.e., when the first predetermined number of times is reached, the control unit 402 reduces the user's firmware update permissions within the device management functional permissions. Subsequently, when the remaining verification times reach the first predetermined number of times again, i.e., when the second predetermined number of times is reached, the control unit 402 further reduces the log query permissions within the device management functional permissions. The first predetermined number of times can be configured with at least one or more thresholds, and reducing the user's functional permissions within image forming device 400 can also reduce one or more functional permissions.

[0114] Specifically, when the user identity information is successfully verified, the image forming device 400 is used according to the functional permissions. That is, based on the user identity information entered by the user, the functional permissions of at least one image forming device 400 bound to the user identity information are obtained, and the image forming device 400 will provide functions corresponding to the functional permissions, including but not limited to: providing an option interface for the corresponding functional permissions on the display panel, and driving functions supported by the corresponding functional permissions; functions that do not fall within the scope of the user's functional permissions will be disabled or grayed out, making them impossible for the user to click normally.

[0115] In addition, when the user identity information fails verification in verification unit 401 and the user's permission to use at least one image forming device function is reduced, verification unit 401 further determines whether the remaining number of verification attempts has reached a second predetermined number. When the remaining number of verification attempts reaches the second predetermined number, control unit 402 prohibits the user from using the image forming device 400's permission to use the function and / or deletes the user identity information. For example, if the second predetermined number is set to 0, when the user's remaining number of verification attempts is 0, the user of a higher user level (i.e., a general administrator) may be prohibited from using the image forming device 400's permission to use the function; and for a general user level (i.e., an ordinary user), when the remaining number of verification attempts is 0, the user's permission to use the image forming device 400's permission to use the function may be revoked and the user identity information may be deleted.

[0116] In a possible implementation, when the verification time of the user identity information in the verification unit 401 exceeds a second preset time, it can be regarded as a user identity information verification failure, and the control unit 402 controls to reduce the user's functional authority to use at least one image forming device.

[0117] In one possible implementation, the failure of user identity information verification can be set as continuous verification failure, that is, in the implementation of the above embodiment, only when the user identity information fails to be verified continuously will it be determined whether the remaining number of verifications reaches the first predetermined number and the second predetermined number, and the protective measures of the above implementation will be taken.

[0118] In one possible implementation, user identity verification failure may include the following situations:

[0119] 1. If the user identity information exists but verification fails, the above protection measures can be implemented. For example, the system administrator has set up a user identity information binding function permissions. The user identity information already exists, but the user fails to enter the password during verification.

[0120] 2. The user identity information does not exist at all. For example, the system administrator has not set the user identity information, and the user identity information does not exist at all.

[0121] For the second scenario, the image formation control method of the embodiment of the present application can lock or restrict all functions of the image forming device 400 until the highest user level (i.e., system administrator) unlocks them or a user with permission to remove restrictions removes the restrictions, and generates an audit log warning message for this illegal operation. For example, in the case of an illegal operation, the user identity information does not exist.

[0122] In addition, when the number of remaining verifications for the highest user level is too few, thereby restricting their permission to use the image forming device 400 or prohibiting the use of all functions of the image forming device 400, the restriction can be lifted by verifying another highest user level, restoring the remaining number of verifications. Alternatively, when all permissions of the highest user level are restricted or prohibited, the image forming device 400 can send a warning message to the image forming device manufacturer's server or notify the user through a panel display to contact the image forming device manufacturer, so that the image forming device manufacturer's operation and maintenance personnel can promptly handle the matter and remove the restrictions on-site or remotely. The methods for remotely removing restrictions include but are not limited to: mobile devices, cloud servers, etc.

[0123] Similarly, when a higher-level user or general user has too few remaining authentication attempts, restricting their access to the image forming device 400 or prohibiting all functions of the image forming device 400, the restriction can be lifted and the remaining authentication attempts restored by authentication at the highest user level (i.e., system administrator). Of course, higher user levels can also be granted the ability to lift restrictions based on actual needs.

[0124] The image forming device 400 provided in the present application is a binding relationship between the user identity information stored in the storage unit 403 and the functional permissions of the image forming device; the verification unit 401 verifies the user identity information; the control unit 402 controls to reduce the functional permissions of the image forming device 400 when the user identity information verification fails and the remaining number of verifications reaches a first predetermined number, thereby restricting the user from using the functional permissions of the image forming device 400, forming a security protection mechanism for the image forming device 400, and being able to prevent illegal persons from maliciously using the image forming device 400 and causing data information leakage, thereby enhancing the self-protection security of the image forming device 400 and protecting the security of the information output by the image forming device 400.

[0125] refer to Figure 5 The present application provides an image forming system comprising: a mobile device 501, a server 502, and an image forming apparatus 503. Mobile device 501 is configured to send instructions to server 502 for controlling image forming apparatus 503 in response to user instructions. Server 502 is configured to store a binding relationship between user identity information and functional permissions of image forming apparatus 503, verify the user identity information, and control image forming apparatus 503 in response to instructions if verification is successful. Image forming apparatus 503 is configured to unlock or lock the main body in response to instructions from server 502.

[0126] The binding relationship between the user identity information and the functional authority of the image forming device 503 includes: the user identity information (which may include a password), the unique identification information of the image forming device, and the functional authority of the image forming device 503 that the user is authorized to use.

[0127] Of course, the binding relationship between user identity information and the functional permissions of the image forming device 503 may also include mobile device identification information. The mobile device identification information may be information that uniquely identifies the mobile device, such as the mobile device IP address or serial number. Specifically, the user identity information may also be reflected through the mobile device identification information. The user identity information is bound to the mobile device identification information, and the server 502 may also store the binding relationship between the user identity information and the mobile device identification information. For example, if user X is bound to mobile device A and mobile device B, the server 502 may find the corresponding user X using the identification information of mobile devices A and B, and then determine the functional permissions of the image forming device 503 for user X based on the stored binding relationship between the user identity information and the functional permissions of the image forming device 503.

[0128] In addition, it can also be set to directly bind the mobile device identification information to the functional permissions of the image forming device 503 and store it in the server 502. In this way, there is no need to store user identity information, and it is directly determined whether the mobile device has the functional permissions of the image forming device 503 through the mobile device identification information. The specific implementation method is similar to binding the user identity information to the functional permissions of the image forming device 503. The user identity information will be used as an example for description below.

[0129] When the image forming device 503 is turned on for the first time, a system administrator is set. After the password is forcibly changed, the system administrator sets the functional permissions of the image forming device 503 for multiple users (or includes the initial password). Each user identity information is bound to at least one functional permission of the image forming device 503 and the unique identification information of the image forming device 503. The image forming device 503 bound to each user identity information can be one or more, and this application does not impose any restrictions here.

[0130] When a user wants to unlock or lock image forming device 503, they enter their user identity information (which may include a password) and an unlock or lock command on mobile device 501. After successfully verifying the user identity information based on the user identity information (which may include a password) entered by the user, server 502 obtains the binding relationship between the user identity information and the functional permissions of image forming device 503. If the user has the functional permissions to unlock or lock, server 502 controls image forming device 503 to unlock or lock according to the unlock or lock command. If server 502 fails to verify the user identity information based on the user identity information (which may include a password) entered by the user, it sends a message indicating that the user identity information failed to be verified to mobile device 501 and discards the unlock or lock command.

[0131] Through the image forming system of the present application, users can conveniently and efficiently remotely control the unlocking or locking of the image forming device, better prevent illegal persons from maliciously using the image forming device, and enhance the protection security of the image forming device.

[0132] In a specific implementation, the present application further provides a computer-readable storage medium, wherein the computer storage medium may store a program, and when the program is executed, the program may include some or all of the steps of each embodiment provided in the present application. The above-mentioned storage medium may be a magnetic disk, an optical disk, a read-only memory (ROM), or a random access memory (RAM).

[0133] In the embodiments of the present application, "at least one" refers to one or more, and "more" refers to two or more. "And / or" describes the association relationship of associated objects, indicating that three relationships may exist. For example, A and / or B can represent the existence of A alone, the existence of A and B at the same time, and the existence of B alone. Among them, A and B can be singular or plural. The character " / " generally indicates that the previous and next associated objects are in an "or" relationship. "At least one of the following" and similar expressions refer to any combination of these items, including any combination of single or plural items. For example, at least one of a, b and c can be represented by: a, b, c, ab, ac, bc, or abc, where a, b, c can be single or multiple.

[0134] Those skilled in the art will appreciate that the various units and algorithm steps described in the embodiments disclosed herein can be implemented using a combination of electronic hardware, computer software, and electronic hardware. Whether these functions are performed in hardware or software depends on the specific application and design constraints of the technical solution. Professionals and technicians can use different methods to implement the described functions for each specific application, but such implementation should not be considered beyond the scope of this application.

[0135] Those skilled in the art will clearly understand that, for the convenience and brevity of description, the specific working processes of the systems, devices and units described above can refer to the corresponding processes in the aforementioned method embodiments and will not be repeated here.

[0136] The above description is merely a specific embodiment of the present application. Any person skilled in the art may easily conceive of variations or substitutions within the technical scope disclosed in this application, and such variations or substitutions shall be within the scope of protection of this application. The scope of protection of this application shall be subject to the scope of protection of the claims.

Claims

1. An image formation control method, characterized in that: include: verifying user identity information of the image forming device; If the user identity information is successfully verified and the image forming device is not operated for more than a preset time, the image forming device is locked or the user account currently using the image forming device is locked; Among them, the image formation control method also includes: if the user identity information verification fails and the remaining verification times reach a first predetermined number, the functional authority of the image forming device is reduced; if the remaining verification times reach a second predetermined number, the user is prohibited from using the functional authority of the image forming device, and / or the user identity information is deleted.

2. The image formation control method according to claim 1, wherein: include: The user identity information is bound to the functional authority of the image forming device.

3. The image formation control method according to claim 2, wherein: include: The first predetermined number of times includes at least one number threshold; The functional authority of the image forming device is reduced, including reducing the functional authority of at least one of the image forming devices; If the user identity information verification fails and the remaining verification times reach a first threshold of the first predetermined times, the functional authority of at least one of the image forming devices is reduced.

4. The image formation control method according to any one of claims 2 to 3, characterized in that: The user identity information verification failure is a continuous verification failure.

5. The image formation control method according to claim 1, wherein: include: If the user identity information is successfully verified and the user has the lock function permission, the image forming device or the user account currently using the image forming device can be remotely locked; If the user identity information is successfully verified and the user has the unlocking function permission, the image forming device or the user account currently using the image forming device can be remotely unlocked.

6. An image forming apparatus, characterized in that: include: a verification unit, configured to verify identity information of a user of the image forming device; a control unit configured to lock the image forming device or the user account currently using the image forming device when the image forming device has not been operated for a preset time after the user identity information is successfully verified; Among them, when the verification unit fails to verify the user identity information, the control unit controls to reduce the functional permissions of the image forming device and the remaining number of verifications reaches a first predetermined number; when the verification unit verifies the user identity information, the remaining number of verifications reaches a second predetermined number, the control unit prohibits the user from using the functional permissions of the image forming device and / or deletes the user identity information.

7. The image forming apparatus according to claim 6, wherein: include: A storage unit is used to store the binding relationship between the user identity information and the functional authority of the image forming device.

8. The image forming apparatus according to claim 7, wherein: include: The first predetermined number of times includes at least one number threshold; The functional authority of the image forming device is reduced, including reducing the functional authority of at least one of the image forming devices; The control unit controls to reduce the functional authority of at least one of the image forming devices if the user identity information verification fails and the remaining number of verification times reaches a first threshold of the first predetermined number when the verification unit verifies the user identity information.

9. The image forming apparatus according to any one of claims 6 to 8, wherein: The user identity information verification failure is a continuous verification failure.

10. The image forming apparatus according to claim 6, wherein include: a remote locking unit, which can remotely lock the image forming device if the user identity information is successfully verified and the user has the locking function permission; The remote unlocking unit can remotely unlock the image forming device when the user identity information is successfully verified and the user has the unlocking function permission.

11. An image forming system, characterized in that: include: A mobile device, configured to send an instruction to control the image forming device to the server according to a user instruction; The server is configured to verify user identity information and, upon successful verification, control the image forming device according to the user's instructions; The image forming device unlocks or locks the image forming device body according to the instruction of the server, and executes the image formation control method according to any one of claims 1 to 5.

12. The image forming system according to claim 11, wherein: include: The server is used to store the binding relationship between the user identity information and the functional authority of the image forming device.

13. The image forming system according to claim 11, wherein: The binding relationship between the user identity information and the functional authority of the image forming device includes: The user identity information, the unique identification information of the image forming device, and the functional rights authorized to use the image forming device.

14. A computer-readable storage medium, characterized in that The computer-readable storage medium includes a stored program, wherein when the program is executed, the device where the computer-readable storage medium is located is controlled to execute the method according to any one of claims 1 to 5.

Citation Information

Patent Citations

  • Method for locking / unlocking computer screen based on Bluetooth

    CN105893802A

  • Security control system and authentication method of smart home Internet of Things

    CN106533861A

  • Control method of control panel for image forming device, and image forming device

    CN112506452A