Authentication system and authentication device
By introducing a first and a second authentication device into the authentication system, after the user authenticates themselves using the first authentication device, the second authentication device automatically updates the biometric information, solving the problem of requiring on-site photography and operator collaboration in the prior art, and realizing a simple biometric information update.
Patent Information
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- MITSUBISHI ELECTRIC CORP
- Filing Date
- 2022-09-08
- Publication Date
- 2026-05-22
Smart Images

Figure CN117313065B_ABST
Abstract
Description
Technical Field
[0001] This disclosure relates to authentication systems and authentication devices. Background Technology
[0002] Patent Document 1 describes a system for identity verification using a card. In the system described in Patent Document 1, information stored on the card is compared with information captured by a camera, and a similarity score is calculated. If the calculated similarity score is above a threshold, the identity verification of the card user is completed.
[0003] Furthermore, in the system described in Patent Document 1, it is determined whether the information stored on the card needs to be updated. When it is determined that the information stored on the card needs to be updated, the card user takes a picture of themselves using the camera of the update processing unit. This obtains the information to be newly stored on the card.
[0004] Existing technical documents
[0005] Patent documents
[0006] Patent Document 1: Japanese Patent Application Publication No. 2003-337926 Summary of the Invention
[0007] The problem the invention aims to solve
[0008] In the system described in Patent Document 1, when it is determined that the information stored on the card needs to be updated, the card user must immediately move in front of the camera of the update processing unit to take a picture. Furthermore, operator assistance is required during the taking process. Therefore, the system described in Patent Document 1 suffers from poor convenience.
[0009] This disclosure was made to solve the aforementioned problems. The object of this disclosure is to provide an authentication system that allows for easy updating of registered biological information when updates are required, thereby reducing the burden on users. Another object of this disclosure is to provide an authentication device usable in such an authentication system.
[0010] means for solving problems
[0011] The authentication system disclosed herein includes a first authentication device and a second authentication device capable of communicating with the first authentication device. The first authentication device includes: a first storage unit storing a user's first registered biometric information; a first acquisition unit acquiring verification biometric information; a first authentication unit verifying the user's identity by comparing the verification biometric information acquired by the first acquisition unit with the first registered biometric information; a determination unit determining whether the first registered biometric information needs to be updated; and an update unit. The second authentication device includes: a second storage unit storing the user's registration identification information; a second acquisition unit acquiring verification identification information; a third acquisition unit acquiring biometric information of the same type as the first registered biometric information; a second authentication unit verifying the user's identity by comparing the verification identification information acquired by the second acquisition unit with the registration identification information; and a registration unit that, if the user authentication performed by the second authentication unit is successful, and if biometric information is acquired by the third acquisition unit while the verification identification information is being acquired by the second acquisition unit, then the registration unit associates the biometric information with the registration identification information and stores it as second registered biometric information in the second storage unit. When the determination unit determines that the first registered biometric information needs to be updated, the update unit updates the first registered biometric information based on the second registered biometric information.
[0012] The authentication device disclosed herein is capable of communicating with other authentication devices, which include: a first storage unit storing a user's first registered biometric information; a determination unit determining whether the first registered biometric information needs to be updated; and an update unit sending an information request when the determination unit determines that the first registered biometric information needs to be updated. This authentication device includes: a second storage unit storing user registration identification information; a first acquisition unit acquiring verification identification information; a second acquisition unit acquiring biometric information of the same type as the first registered biometric information; an authentication unit verifying the verification identification information acquired by the first acquisition unit against the registration identification information to perform personal authentication; a registration unit, if the personal authentication performed by the authentication unit is successful, and if the second acquisition unit acquires biometric information while the first acquisition unit has acquired verification identification information, then the biometric information is associated with the registration identification information and stored as second registered biometric information in the second storage unit; and an update control unit sending the second registered biometric information to other authentication devices as a response to an information request, causing the update unit to update the first registered biometric information based on the second registered biometric information.
[0013] The effects of the invention
[0014] According to this disclosure, in the authentication system, when it is necessary to update the registered organism information, it can be easily updated, which can reduce the burden on users. Attached Figure Description
[0015] Figure 1 This is a diagram illustrating an example of the authentication system in Implementation 1.
[0016] Figure 2 This is a flowchart illustrating an example of the operation of an authentication device.
[0017] Figure 3 This is a flowchart illustrating an example of the operation of an authentication device.
[0018] Figure 4 This is a flowchart illustrating another example of the operation of the authentication device.
[0019] Figure 5 This is a diagram illustrating an example of the hardware resources of an authentication device.
[0020] Figure 6 This is another example of the hardware resources of an authentication device.
[0021] Explanation of reference numerals in the attached figures
[0022] 1. Authentication system; 2. Authentication device; 3. Authentication device; 20. Camera; 21. Storage unit; 22. Acquisition unit; 23. Authentication unit; 24. Judgment unit; 25. Update unit; 30. Card reader; 31. Camera; 32. Storage unit; 33. Acquisition unit; 34. Acquisition unit; 35. Authentication unit; 36. Registration unit; 37. Update control unit; 40. Processing circuit; 41. Processor; 42. Memory; 43. Dedicated hardware. Detailed Implementation
[0023] The following is a detailed description with reference to the accompanying drawings. Repetitive descriptions have been simplified or omitted where appropriate. In the drawings, the same reference numerals denote the same or equivalent parts.
[0024] Implementation method 1.
[0025] Figure 1 This is a diagram illustrating an example of authentication system 1 in implementation 1. Figure 1 The authentication system 1 shown includes authentication device 2 and authentication device 3. Authentication device 2 and authentication device 3 are capable of communicating with each other. As an example, authentication device 3 is installed in an external system such as a system for managing access to the room. As another example, authentication device 3 can also utilize the facial recognition function of a smartphone or the like.
[0026] The authentication device 2 is a device for authenticating a person using biometric information. As an example, the authentication device 2 uses information related to a person's face as biometric information. Hereinafter, information related to a person's face will be simply referred to as facial information. The authentication device 2 may also use information related to fingerprints, veins, or bones as biometric information. The authentication device 2 may also use other types of information as biometric information. When the authentication device 2 uses facial information as biometric information, a camera 20 is provided in the authentication device 2.
[0027] As an example, authentication device 2 is installed in a facial authentication system capable of acquiring and updating facial information from an external system. When authentication device 2 is installed in the facial authentication system, authentication device 3 is preferably installed in a system managing access to the room. This system managing access to the room may also include an authentication terminal with a camera or a camera system for system collaboration.
[0028] The authentication device 2 includes a storage unit 21, an acquisition unit 22, an authentication unit 23, a determination unit 24, and an update unit 25.
[0029] The storage unit 21 stores registered biometric information B. Registered biometric information B is biometric information pre-registered by the user in the authentication device 2 for personal authentication. For example, if user A is someone who needs to authenticate themselves through the authentication device 2, user A's registered biometric information B is stored in the storage unit 21. The storage unit 21 stores the registered biometric information B of each user. Hereinafter, user A's registered biometric information will be labeled with the number B1 to distinguish this registered biometric information B1 from other registered biometric information B stored in the storage unit 21.
[0030] The authentication device 3 is a device used for personal authentication using information for identifying an individual. Hereinafter, this information will also be referred to as identification information. As an example, a user who needs to authenticate themselves through the authentication device 3 holds a card. Each card contains a card ID for identifying the user. The authentication device 3 uses the card ID as identification information. When the authentication device 3 uses the card ID as identification information, a card reader 30 is provided in the authentication device 3. The authentication device 3 can also use other information as identification information. The authentication device 3 can also use biometric information as identification information. Biometric information is an example of identification information.
[0031] The authentication device 3 includes a storage unit 32, an acquisition unit 33, an acquisition unit 34, an authentication unit 35, a registration unit 36, and an update control unit 37. Furthermore, the authentication device 3 includes a device for acquiring biometric information of the same type as the biometric information used for personal authentication in the authentication device 2. When facial information is used for personal authentication in the authentication device 2, the authentication device 3 includes a camera 31.
[0032] Registration identification information C is stored in storage unit 32. Registration identification information C is identification information that a user pre-registers in the authentication device 3 for personal authentication. For example, if user A is someone who needs to authenticate themselves through the authentication device 3, user A's registration identification information C is stored in storage unit 32. Storage unit 32 stores registration identification information C for each user. Hereinafter, user A's registration identification information will be labeled C1 to distinguish it from other registration identification information C stored in storage unit 32.
[0033] Furthermore, in storage unit 32, registered biometric information D is stored in association with registration identification information C. Registered biometric information D is biometric information of the same type as registered biometric information B stored in storage unit 21 of authentication device 2. If facial information is stored as registered biometric information B in storage unit 21 of authentication device 2, then facial information is also stored as registered biometric information D in storage unit 32 of authentication device 3. For example, in storage unit 32, user A's registered biometric information D is stored in association with user A's registration identification information C1. Hereinafter, user A's registered biometric information will be labeled with the number D1 to distinguish this registered biometric information D1 from other registered biometric information D stored in storage unit 32.
[0034] The following also refers to Figures 2 to 4 The operation of authentication system 1 is explained in detail. Figure 2 This is a flowchart illustrating an example of the operation of authentication device 2.
[0035] In authentication device 2, it is determined whether a verification operation has been performed (S101). The verification operation is preset. For example, it is determined to be "yes" in S101 when the user presses a specific button. It is also determined to be "yes" in S101 when the user brings their face close to the front of camera 20. It is also determined to be "yes" in S101 when the user performs other operations.
[0036] When the determination is "yes" in S101, the acquisition unit 22 acquires the verification biometric information (S102). The verification biometric information is biometric information used for comparison with the registered biometric information B. If the registered biometric information B is facial information, then the verification biometric information is also facial information. For example, when the determination is "yes" in S101, the user's face is photographed by the camera 20. The acquisition unit 22 acquires the verification biometric information based on the image of the face photographed by the camera 20.
[0037] When the biometric information is obtained in S102, the authentication unit 23 performs personal authentication (S103). In S103, the authentication unit 23 compares the biometric information obtained by the acquisition unit 22 in S102 with the registered biometric information B stored in the storage unit 21. If the biometric information obtained in S102 matches any of the registered biometric information B stored in the storage unit 21, personal authentication is successful, and the user is identified. If the biometric information obtained in S102 does not match any of the registered biometric information B stored in the storage unit 21, personal authentication fails. If personal authentication fails in S103, the processing of the authentication device 2 ends. Furthermore, the conditions for whether the biometric information matches the registered biometric information B are preset.
[0038] Consider a specific example E1 where user A performs a verification operation on authentication device 2 and camera 20 captures user A's face. As described above, user A's registered biometric information B1 is stored in storage unit 21. Therefore, when the verification biometric information obtained in S102 matches the registered biometric information B1, user authentication is successful. Upon successful user authentication in S103, an authentication action is performed (S104). As an authentication action, any device can also be unlocked. As an authentication action, authentication information indicating successful user authentication can also be sent to other devices. In such cases, the other device receiving the authentication information performs a specific authorized action for user A. However, authentication actions are not limited to these examples.
[0039] Furthermore, when the identity verification is successful in S103, the determination unit 24 determines whether the registered biometric information B needs to be updated (S105). In the specific example E1 above, the identity verification was successful by using the registered biometric information B1, therefore, the determination unit 24 determines in S105 whether the registered biometric information B1 needs to be updated.
[0040] The conditions for determining that the registered biological information B needs to be updated are preset. Hereinafter, these conditions will also be referred to as update conditions. For example, the update condition is met if the registered biological information B of the subject has not been updated for a certain period of time. This certain period of time is preset. Another example is that the update condition is met if the consistency rate of the verification during successful self-authentication in S103 is lower than a threshold. This threshold is preset. If the update condition is not met, it is determined as "No" in S105. When it is determined as "No" in S105, the processing of authentication device 2 ends.
[0041] When the update condition is met, it is determined to be "yes" in S105. When it is determined to be "yes" in S105, the update unit 25 sends an information request to the authentication device 3 (S106). The information request is a signal used to request the information required to update the registered organism information B, which is the target. According to the above specific example E1, in S106, the update unit 25 requests the information required to update the registered organism information B1 from the authentication device 3.
[0042] The information request includes information for identifying an individual. For example, the information request may include information identical to the registered identification information C. According to the specific example E1 above, the information request includes information identical to the registered identification information C1. As another example, the information request may include biometric verification information used in the personal authentication performed by the authentication department 23, i.e., biometric verification information obtained by the acquisition department 22 in S102.
[0043] Figure 3 This is a flowchart illustrating an example of the operation of the authentication device 3.
[0044] In the authentication device 3, it is determined whether a verification operation has been performed (S201). The verification operation is preset. For example, it may be determined as "yes" in S201 by the user pressing a specific button. Alternatively, it may be determined as "yes" in S201 by the user bringing their card close to the card reader 30. Alternatively, it may be determined as "yes" in S201 by the user bringing their face close to the front of the camera 31. Alternatively, it may be determined as "yes" in S201 by the user performing other operations.
[0045] When the determination is "yes" in S201, the acquisition unit 33 acquires the verification identification information (S202). The verification identification information is identification information used for comparison with the registered identification information C. If the registered identification information C is a card ID, then the verification identification information is also a card ID. For example, when the determination is "yes" in S201, the card ID is read from the user's card by the card reader 30. The acquisition unit 33 acquires the verification identification information based on the card ID read by the card reader 30.
[0046] Furthermore, if the determination in S201 is "yes", the authentication device 3 determines whether biometric information has been obtained (S203). The acquisition unit 34 acquires the biometric information. The biometric information acquired by the acquisition unit 34 is the same type of biometric information as the registered biometric information B stored in the storage unit 21 of the authentication device 2. If facial information is stored in the storage unit 21 as registered biometric information B, the acquisition unit 34 acquires the facial information.
[0047] For example, the user's face is captured by camera 31. The acquisition unit 34 acquires biometric information based on the image of the face captured by camera 31. If the acquisition unit 34 acquires biometric information when the verification identification information is acquired by acquisition unit 33, then in S203, it is determined to be "yes". If the acquisition unit 34 does not acquire biometric information when the verification identification information is acquired by acquisition unit 33, then in S203, it is determined to be "no". Furthermore, regarding "when the verification identification information is acquired by acquisition unit 33", it may not be performed simultaneously with the acquisition of the verification identification information. The acquisition of biometric information by acquisition unit 34 may be performed before or after the acquisition of the verification identification information.
[0048] If the result in S203 is "No", the authentication unit 35 performs personal authentication (S204). In S204, the authentication unit 35 compares the verification identification information obtained by the acquisition unit 33 in S202 with the registration identification information C stored in the storage unit 32. If the verification identification information obtained in S202 matches any of the registration identification information C stored in the storage unit 32, personal authentication is successful, and the user is identified. If the verification identification information obtained in S202 does not match any of the registration identification information C stored in the storage unit 32, personal authentication fails. If personal authentication fails in S204, the processing of the authentication device 3 ends. Furthermore, the conditions for whether the verification identification information matches the registration identification information C are preset.
[0049] Consider a specific example E2 where user A performs a verification operation on authentication device 3 and the card ID is read from user A's card by card reader 30. As described above, user A's registration identification information C1 is stored in storage unit 32. Therefore, when the verification identification information obtained in S202 matches the registration identification information C1, user authentication is successful. When user authentication is successful in S204, an authentication action is performed (S207). As an authentication action, any device can also be unlocked. As an authentication action, authentication information indicating successful user authentication can also be sent to other devices. In such cases, the other device that receives the authentication information performs a specific authorized action for user A. However, authentication actions are not limited to these examples.
[0050] On the other hand, if the determination in S203 is "yes", the authentication unit 35 performs personal authentication (S205). The process shown in S205 is the same as the process shown in S204. That is, in S205, the authentication unit 35 compares the verification identification information obtained by the acquisition unit 33 in S202 with the registration identification information C stored in the storage unit 32. If personal authentication fails in S205, the processing of the authentication device 3 ends.
[0051] When user authentication is successful in S205, the registration unit 36 processes the registration of the user's biometric information in the storage unit 32 (S206). The successful authentication in S205 differs from the successful authentication in S204, as the user's biometric information was obtained in S203. In this case, the registration unit 36 associates the biometric information obtained in S203 with the user's registration identification information C and stores it in the storage unit 32 as registered biometric information D. According to the specific example E2 above, the user A's biometric information obtained in S203 is associated with the registration identification information C1 and stored in the storage unit 32 as registered biometric information D1.
[0052] In addition, when the user successfully authenticates in S205, the authentication action is performed (S207).
[0053] Figure 4 This is a flowchart illustrating another example of the operation of the authentication device 3. Figure 4 The illustrated action flow and Figure 3 The actions shown are performed in parallel.
[0054] In authentication device 3, update control unit 37 determines whether an information request has been received (S301). When authentication device 3 receives an information request sent by update unit 25 in S106, it determines "yes" in S301. When it determines "yes" in S301, update control unit 37 sends the registered organism information D stored in storage unit 32 as a response to the information request to authentication device 2 based on the received information request (S302). If an information request was sent in the above specific example E1, update control unit 37 sends the registered organism information D1 stored in storage unit 32 to authentication device 2.
[0055] For example, if the information request contains information identical to the registration identification information C, the update control unit 37 determines the registration biometric information D to be sent to the authentication device 2 based on that information. As another example, if the information request contains verification biometric information obtained by the acquisition unit 22 in S102, the update control unit 37 determines the registration biometric information D to be sent to the authentication device 2 based on that verification biometric information. In this case, the update control unit 37 compares the verification biometric information with the registration biometric information D stored in the storage unit 32. The update control unit 37 sends the registration biometric information D with a matching rate exceeding a threshold to the authentication device 2 as a response to the information request.
[0056] In authentication device 2, when an information request is sent to authentication device 3 in S106, it is determined whether a response to the information request has been received from authentication device 3 (S107). When authentication device 2 receives the registered organism information D sent by update control unit 37 in S302 as a response to the information request sent in S106, it is determined to be "yes" in S107. When it is determined to be "yes" in S107, update unit 25 updates the registered organism information B stored in storage unit 21 based on the received registered organism information D (S108).
[0057] The update in S108 can also be performed by rewriting the currently stored registered organism information B in storage unit 21 with the received registered organism information D. As another example, the update in S108 can also be performed by adding the received registered organism information D as the latest registered organism information B to storage unit 21.
[0058] In the example shown in this embodiment, when the determination unit 24 determines that the registered biometric information B stored in the storage unit 21 needs to be updated, the update unit 25 updates the registered biometric information B based on the registered biometric information D from the authentication device 3. At this time, the user does not need to take a picture on the spot using the camera 20 or request the operator's cooperation. Therefore, according to the example shown in this embodiment, updating the registered biometric information B can be performed simply, reducing the burden on the user.
[0059] In this embodiment, the following example is described: When the identity authentication is successful in S103, the determination unit 24 determines whether the registered biometric information B needs to be updated. As another example, the determination unit 24 may determine whether the registered biometric information B needs to be updated regardless of whether the identity authentication is successful. For example, the determination unit 24 may perform this determination periodically. In such a case, if the identity authentication performed by the authentication unit 23 fails for a certain period of time for a specific registered biometric information B, the determination unit 24 determines that the registered biometric information B needs to be updated. This certain period of time is preset.
[0060] In this embodiment, the following example is described: when the user successfully authenticates in the authentication device 3, the authentication action is performed in S207. Alternatively, the authentication device 3 may not perform the authentication action in S207; instead, only the processing in S206 is performed when the user successfully authenticates. In this case, the processing in S204 and S207 is not performed in the authentication device 3. In S203, it is determined whether biometric information has been obtained, until the determination is "yes".
[0061] Alternatively, the authentication device 3 can communicate with multiple authentication devices 2 and receive information requests from each authentication device 2. When the authentication device 3 receives an information request from a certain authentication device 2, it sends the registered organism information D stored in the storage unit 32 as a response to the information request to that authentication device 2.
[0062] Figure 5 This diagram illustrates an example of the hardware resources of the authentication device 3. As hardware resources, the authentication device 3 includes a processing circuit 40 comprising a processor 41 and a memory 42. The processing circuit 40 may also include multiple processors 41. The processing circuit 40 may also include multiple memories 42.
[0063] In this embodiment, the parts indicated by reference numerals 32 to 37 represent the functions of the authentication device 3. The functions of the storage unit 32 are implemented by the memory 42. The functions of the parts indicated by reference numerals 33 to 37 are implemented by software, firmware, or a combination of software and firmware described in the form of a program. This program is stored in the memory 42. The authentication device 3 implements the functions of the parts indicated by reference numerals 33 to 37 by the processor 41 (computer) executing the program stored in the memory 42.
[0064] The processor 41 is also known as a CPU (Central Processing Unit), central processing unit, processing unit, arithmetic unit, microprocessor, microcomputer, or DSP. The memory 42 can also be a semiconductor memory, disk, floppy disk, optical disk, high-density disk, mini-disk, or DVD. Suitable semiconductor memories include RAM, ROM, flash memory, EPROM, and EEPROM.
[0065] Figure 6 This is another example of the hardware resources of authentication device 3. In Figure 6 In the example shown, the authentication device 3 has a processing circuit 40 that includes a processor 41, a memory 42, and dedicated hardware 43. Figure 6 An example is shown where a portion of the functions of the authentication device 3 are implemented by dedicated hardware 43. All the functions of the authentication device 3 can also be implemented by dedicated hardware 43. The dedicated hardware 43 can be a single circuit, a composite circuit, a programmable processor, a parallel programmable processor, an ASIC, an FPGA, or a combination thereof.
[0066] The hardware resources of authentication device 2 and Figure 5 or Figure 6 The example shown is the same. As a hardware resource, the authentication device 2 includes processing circuitry comprising a processor and memory. The authentication device 2 implements the functions of the parts shown in reference numerals 22-25 by executing a program stored in memory using a processor (computer). Furthermore, the functions of the storage unit 21 are implemented by the memory. As a hardware resource, the authentication device 2 may also include processing circuitry comprising a processor, memory, and dedicated hardware. Some or all of the functions of the authentication device 2 may also be implemented by dedicated hardware.
[0067] The following examples of schemes that may be included in this disclosure are explicitly described as appendices.
[0068] [Postscript 1]
[0069] An authentication system, wherein,
[0070] The authentication system has the following features:
[0071] The first authentication device; and
[0072] The second authentication device is capable of communicating with the first authentication device.
[0073] The first authentication device includes:
[0074] The first storage unit stores the user's first registered biological information;
[0075] The first acquisition department obtains and verifies biological information;
[0076] The first authentication department verifies the verification organism information obtained by the first acquisition department against the first registered organism information to perform personal authentication;
[0077] The determination unit determines whether the information of the first registered organism needs to be updated; and
[0078] Update Department
[0079] The second authentication device includes:
[0080] The second storage unit stores the user's registration identification information;
[0081] The second acquisition unit obtains and verifies identification information;
[0082] The third acquisition unit acquires biological information of the same type as the first registered biological information;
[0083] The second authentication department verifies the verification identification information obtained by the second acquisition department against the registration identification information to perform personal authentication; and
[0084] If, in the case of successful personal authentication by the second authentication department, biometric information is obtained by the third acquisition department while the verification identification information has been obtained by the second acquisition department, the registration department associates this biometric information with the registration identification information and stores it as second registered biometric information in the second storage department.
[0085] When the determination unit determines that the information of the first registered organism needs to be updated, the updating unit updates the information of the first registered organism based on the information of the second registered organism.
[0086] [Postscript 2]
[0087] According to the authentication system described in Appendix 1, in which,
[0088] The second authentication device also includes an update control unit.
[0089] When the determination unit determines that the information of the first registered organism needs to be updated, the updating unit sends an information request to the second authentication device.
[0090] Based on the information request, the update control unit sends the information of the second registered organism to the first authentication device.
[0091] The updating unit updates the information of the first registered organism based on the information of the second registered organism received in response to the information request.
[0092] [Postscript 3]
[0093] According to the authentication system described in Appendix 2, in which,
[0094] The information request includes information identical to the registration and identification information.
[0095] The update control unit sends the information of the second registered organism based on the information contained in the information request.
[0096] [Postscript 4]
[0097] According to the authentication system described in Appendix 2, in which,
[0098] When the authentication performed by the first authentication department is successful, the determination unit determines whether it is necessary to update the first registered organism information.
[0099] The information request includes the biometric information used in the personal authentication performed at the first authentication department.
[0100] The update control unit sends the second registered organism information based on the verification organism information included in the information request.
[0101] [Postscript 5]
[0102] According to the authentication system described in any of the appendices 1 to 3, wherein,
[0103] When the authentication performed by the first authentication department is successful, the determination department determines whether the information of the first registered organism needs to be updated.
[0104] [Postscript 6]
[0105] According to the authentication system described in any of the appendices 1 to 5, wherein,
[0106] If the information of the first registered organism is not updated for a certain period of time, the determination unit determines that the information of the first registered organism needs to be updated.
[0107] [Postscript 7]
[0108] According to the authentication system described in any of the appendices 1 to 3, wherein,
[0109] If the personal authentication performed by the first authentication department fails for a certain period of time, the determination department determines that the first registered organism information needs to be updated.
[0110] [Postscript 8]
[0111] According to the authentication system described in any of the appendices 1 to 7, wherein,
[0112] The first authentication device is equipped with a camera.
[0113] The first acquisition unit acquires the verification organism information based on the facial image captured by the camera.
Claims
1. An authentication system, wherein, The authentication system has the following features: The first authentication device; and The second authentication device is capable of communicating with the first authentication device. The first authentication device includes: The first storage unit stores the user's first registered biological information; The first acquisition department obtains and verifies biological information; The first authentication department verifies the verification organism information obtained by the first acquisition department against the first registered organism information to perform personal authentication; The determination unit determines whether the information of the first registered organism needs to be updated; and Update Department The second authentication device includes: The second storage unit stores the user's registration identification information; The second acquisition unit obtains and verifies identification information; The third acquisition unit acquires biological information of the same type as the first registered biological information; The second authentication department verifies the verification identification information obtained by the second acquisition department against the registration identification information to perform personal authentication; In the case of successful personal authentication by the second authentication department, if biometric information is obtained by the third acquisition department while the verification identification information is obtained by the second acquisition department, the registration department associates the biometric information with the registration identification information and stores it as second registered biometric information in the second storage department; and Update the control unit. When the determination unit determines that the information of the first registered organism needs to be updated, the updating unit sends an information request to the second authentication device. Based on the information request, the update control unit sends the information of the second registered organism to the first authentication device. The updating unit updates the information of the first registered organism based on the information of the second registered organism received in response to the information request.
2. The authentication system according to claim 1, wherein, The information request includes information identical to the registration and identification information. The update control unit sends the information of the second registered organism based on the information contained in the information request.
3. The authentication system according to claim 1, wherein, When the authentication performed by the first authentication department is successful, the determination unit determines whether it is necessary to update the first registered organism information. The information request includes the biometric information used in the personal authentication performed at the first authentication department. The update control unit sends the second registered organism information based on the verification organism information included in the information request.
4. The authentication system according to claim 1 or 2, wherein, When the authentication performed by the first authentication department is successful, the determination department determines whether the information of the first registered organism needs to be updated.
5. The authentication system according to any one of claims 1 to 3, wherein, If the information of the first registered organism is not updated for a certain period of time, the determination unit determines that the information of the first registered organism needs to be updated.
6. The authentication system according to claim 1 or 2, wherein, If the personal authentication performed by the first authentication department fails for a certain period of time, the determination department determines that the first registered organism information needs to be updated.
7. The authentication system according to any one of claims 1 to 3, wherein, The first authentication device is equipped with a camera. The first acquisition unit acquires the verification organism information based on the facial image captured by the camera.
8. An authentication device capable of communicating with other authentication devices. This other authentication device has the following features: The first storage unit stores the user's first registered biological information; The determination unit determines whether the information of the first registered organism needs to be updated; and The updating unit sends an information request when the determination unit determines that the information of the first registered organism needs to be updated. The authentication device includes: The second storage unit stores the user's registration identification information; The first acquisition unit obtains and verifies identification information; The second acquisition unit acquires biological information of the same type as the first registered biological information; The authentication department verifies the verification identification information obtained by the first acquisition department against the registration identification information to perform personal authentication; In the registration department, if the identity verification performed by the authentication department is successful, and if the biometric information is obtained by the second acquisition department while the verification identification information is obtained by the first acquisition department, then the biometric information is associated with the registration identification information and stored as second registered biometric information in the second storage department; and The update control unit sends the second registered organism information to the other authentication devices as a response to the information request, causing the update unit to update the first registered organism information based on the second registered organism information.
9. The authentication device according to claim 8, wherein, The authentication device also includes a camera. The second acquisition unit acquires biological information based on facial images captured by the camera.