Image forming apparatus, control method thereof, and program
Patent Information
- Application Number
- JP2025016995
- Authority / Receiving Office
- JP · JP
- Patent Type
- Applications
- Current Assignee / Owner
- Filing Date
- 2025-02-04
- Publication Date
- 2025-10-22
AI Technical Summary
Existing information processing devices, such as image forming devices, face challenges in maintaining security without compromising user convenience, especially when security measures like department ID management are already in place.
The implementation of a mechanism that allows for restricted access settings to be made without requiring redundant authentication processes. This involves a control system that requests authentication only when necessary, based on pre-set security and access settings.
This approach effectively maintains the security of information processing devices while enhancing user convenience by eliminating the need for redundant authentication processes when appropriate security measures are already implemented.
Smart Images

Figure 00000000_0000_ABST
Abstract
Description
[Technical field]
[0001] The present invention relates to an information processing device accessible from an external device. [Background technology]
[0002] In recent years, as image forming devices have become more sophisticated, even low-priced image forming devices are now equipped with network functionality as standard. As a result, there are increasing opportunities for image forming devices to be connected to a network not only in large offices but also in small offices and ordinary homes.
[0003] It is now possible to check the status and settings of an image forming device connected to a network, via the network, using a Web browser running on a personal computer (PC). The user interface (UI) installed on the image forming device is called the local UI (LUI), and in contrast, the UI displayed on a Web browser is called the remote UI (RUI).
[0004] In large offices, network administrators are assigned and security measures are taken, but in small offices and homes, security measures may be insufficient. If an image forming device without security measures is connected to a network, the RUI may be accessible from outside, which may lead to problems such as the leakage of confidential information.
[0005] Patent Document 1 discloses a method for enhancing security by performing secondary authentication in addition to normal authentication for accounts that have not been logged into for a long period of time (for example, accounts of employees who are absent due to an extended business trip or who have already left the company). [Prior art documents] [Patent documents]
[0006] [Patent Document 1] JP 2006-178830 A Summary of the Invention [Problem to be solved by the invention]
[0007] Conventionally, image forming apparatuses have been able to set a PIN number for authentication against external access via a network. Some image forming apparatuses also have a mode for setting a department ID and a PIN number to identify the department that is accessing the image forming apparatus, and have a function for access management. In the mode for managing department IDs, in addition to identifying the department that is accessing the image forming apparatus, it is possible to restrict the execution authority for specific functions (such as copying and faxing) for each department ID, and to count the number of pages output or transmitted when a function is executed.
[0008] Here, if the department ID management mode is set, the image forming apparatus can be judged to have security measures in place, and in this state, it is redundant to have to perform authentication processing for access from outside, which reduces user convenience. Note that this problem is not limited to image forming apparatuses, but exists in various information processing apparatuses that can communicate with external devices.
[0009] The present invention has been made to solve the above problems, and an object of the present invention is to provide a mechanism for maintaining the security of an information processing device, such as an image forming device, that can communicate with an external device, without impairing user convenience. [Means for solving the problem]
[0010] The present invention is an information processing device accessible from an external device, comprising: a first setting means for making a first setting that enables restriction of the access; a control means for, when the first setting has been made, requesting authentication regarding the first setting from the external device and controlling the access based on the result of the authentication; and a second setting means for making a second setting, which is a security setting different from the first setting; wherein, when the second setting has been made, the control means requests authentication regarding the second setting from the external device without requesting authentication regarding the first setting, and controls the access based on the result of the authentication. Effect of the Invention
[0011] According to the present invention, it is possible to maintain the security of an information processing device capable of communicating with an external device without impairing user convenience. [Brief description of the drawings]
[0012] [Figure 1] Hardware configuration diagram of the image forming apparatus according to the present embodiment [Diagram 2] RUI screen transition diagram during normal authentication in Example 1 [Diagram 3] Screen transition diagram of RUI for RUI access PIN in Example 1 [Figure 4] RUI screen transition diagram when setting department ID management in Example 1 [Diagram 5] 1 is a flowchart illustrating an example of an RUI authentication screen display process according to the first embodiment; [Figure 6] Relationship between settings of image forming device and authentication screen of RUI in embodiment 1 [Figure 7] FIG. 13 is a diagram illustrating a setting screen in the first embodiment; [Figure 8] 11 is a flowchart illustrating an example of an RUI authentication screen display process according to the second embodiment. [Figure 9] Relationship between the settings of the image forming device and the authentication screen of the RUI in the second embodiment DETAILED DESCRIPTION OF THE PREFERRED EMBODIMENTS
[0013] Hereinafter, an embodiment of the present invention will be described with reference to the drawings. EXAMPLES
[0014] 1 is a block diagram showing the hardware configuration of an image forming apparatus 100 according to an embodiment of the present invention. Each block represents a module, and arrows between blocks represent the flow of data or instructions.
[0015] As shown in FIG. 1, image forming apparatus 100 is a multifunction peripheral (MFP) having a printing unit 107, a reading unit 109, an operation panel 110, a line I / F 112, and a controller unit 101 that controls these. Note that image forming apparatus 100 is not limited to a multifunction peripheral, and may be a printer, a scanner, a facsimile, or the like.
[0016] The controller unit 101 includes a CPU 102, a RAM 103, a ROM 104, a printing unit I / F 106, a reading unit I / F 108, a MODEM 111, a USB-D I / F 115, a network I / F 118, and a USB-H I / F 122, and each block is connected via a system bus 105.
[0017] CPU 102 generally controls each of the above-mentioned blocks by executing various control programs. The various control programs are executed by CPU 102 reading out the control programs stored in the program area of ROM 104. Alternatively, the various control programs are executed by CPU 102 expanding and developing compressed data stored in the program area of ROM 104 into RAM 103. Also, the various control programs may be stored in a hard disk drive (HDD) (not shown) in a compressed / uncompressed state.
[0018] The network I / F 118 performs communication processing with a host computer 121 via a network (LAN) 120 or the like. The host computer 121 is written as a PC in the figure, and will hereinafter be referred to as a PC. The network I / F 118 and the network 120 are connected by a communication cable such as a LAN cable 119. The PC 121 can also be connected to the image forming apparatus 100 by a USB-D I / F 115 via a USB cable 116. The network 120 may be a wireless network.
[0019] A web browser 121a can be operated in the PC 121, and the image forming apparatus 100 can be accessed from the PC 121 using the web browser 121a or the like. The PC 121 is not limited to a personal computer, and may be a tablet computer, a smartphone, or the like. Also, instead of the web browser 121a, another client program may be used to enable the PC 121 to access the image forming apparatus 100. In this embodiment, a configuration in which the image forming apparatus 100 is accessed from the PC 121 using the web browser 121a will be described, but the present invention is not limited to this.
[0020] The modem 111 is connected to a public line network 114 via a line I / F 112, and performs communication processing with other image forming apparatuses, facsimile machines, telephone sets, etc. (not shown). The line I / F 112 and the public line network 114 are generally connected via a telephone line 113 or the like. The USB-H I / F 122 is directly connected to the external memory 123 .
[0021] The printing unit I / F 106 serves as an interface for outputting an image signal to the printing unit 107 (printer engine). The reading unit I / F 108 serves as an interface for inputting a read image signal from the reading unit 109 (scanner engine). The CPU 102 processes the image signal input from the reading unit I / F 108 and outputs it to the printing unit I / F 106 as a recording image signal.
[0022] CPU 102 uses font information stored in a font area of ROM 104 to display characters and symbols on the display unit of operation panel 110, and receives instruction information from operation panel 110 that has received instructions from the user.
[0023] Further, in the data area of ROM 104, device information of image forming apparatus 100, user telephone directory information, department management information, etc. are stored by CPU 102, and are read out and updated as necessary by CPU 102. In this block diagram, the reading unit 109 and the printing unit 107 are configured to be inside the image forming apparatus 100, but each or both of them may be configured to be external.
[0024] Image forming apparatus 100 can provide a user interface (remote user interface; RUI) that can be used from an external device such as PC 121. Image forming apparatus 100 can be accessed from PC 121's web browser 121a via a network or the like, and the settings of image forming apparatus 100 can be viewed / changed, etc. from the RUI of image forming apparatus 100.
[0025] 2 to 4, the screen transition of the RUI in the first embodiment will be illustrated below. Here, an authentication screen when the RUI access PIN and department ID management are not set will be called a normal authentication screen 202.
[0026] FIG. 2 is a diagram illustrating a screen transition of the RUI during normal authentication in the first embodiment. If the RUI access PIN and department ID management have not been set, when the image forming apparatus 100 is accessed from the PC 121, a normal authentication screen 202 is displayed on the display of the PC 121. The user 201 selects a radio button 202a on the normal authentication screen 202 displayed on the display of the PC 121 by the web browser 121a of the PC 121 or the like to determine whether to log in in the administrator mode or the general user mode, and presses a login button 202d.
[0027] If the login mode selected by radio button 202a is the administrator mode, the administrator ID and administrator PIN must be correctly entered in administrator ID input field 202b and administrator PIN input field 202c. On the other hand, if the login mode is the general user mode, no authentication process is performed, so there is no need to enter the administrator ID and administrator PIN in administrator ID input field 202b and administrator PIN input field 202c. If authentication processing is properly performed on the normal authentication screen 202, the RUI top screen 203 is displayed (screen transition occurs), and RUI access becomes possible.
[0028] 3 is a diagram illustrating screen transitions of the RUI when an RUI access PIN code is set in the embodiment 1. Note that the same reference numerals are used to denote the same elements as in FIG. When external access is restricted, when image forming apparatus 100 is accessed from PC 121, RUI access PIN input screen 301 is displayed on the display of PC 121. RUI access PIN input screen 301 is a screen for performing authentication using an RUI access PIN (RUI access authentication screen).
[0029] User 201 inputs the set PIN into RUI access PIN input 301a on RUI access PIN input screen 301 displayed on the display of PC 121 by Web browser 121a of PC 121 or the like, and presses OK button 301b. If the input RUI access PIN is correct, normal authentication screen 202 is displayed (screen transition), and thereafter RUI top screen 203 is displayed in the same manner as in the procedure shown in Fig. 2, enabling RUI access.
[0030] 4 is a diagram showing screen transitions of the RUI when department ID management is set in the first embodiment of the present invention. Note that the same reference numerals are used to denote the same elements as in FIG. In the case where the department ID management is set, when the image forming apparatus 100 is accessed from the PC 121, the department ID management authentication screen 401 is displayed on the display of the PC 121.
[0031] User 201 inputs the department ID / department password of the department in which the user is registered into department ID input field 401a / department password input field 401b on department ID management authentication screen 401 displayed on the display of PC 121 by web browser 121a of PC 121 or the like, and presses login button 401c. If the input department ID / department password are correct, RUI top screen 203 is displayed (screen transition occurs), and RUI access is possible.
[0032] 5 is a diagram showing a flowchart illustrating an RUI authentication screen display process in Example 1. Note that each step of this flowchart is realized by the CPU 102 reading and executing a program stored in the ROM 104 or the like.
[0033] When the image forming apparatus 100 receives a remote access request transmitted from the Web browser 121a running on the PC 121, the CPU 102 starts the process of this flowchart. In addition, in this flowchart, any process not specifically designated as a process subject is assumed to be executed by the CPU 102.
[0034] First, in step S501, CPU 102 checks whether or not use of the RUI itself is permitted. If it is determined in S501 that use of the RUI is not permitted (RUI use setting shown in Figs. 6 and 7 described later is OFF) (No in S501), CPU 102 advances the process to S502.
[0035] In S502, CPU 102 performs control so as to display an RUI unusable screen (a screen indicating that use of an RUI (not shown) is not permitted (prohibited)). That is, CPU 102 transmits display data for the RUI unusable screen to Web browser 121a operating on PC 121. Upon receiving the display data, Web browser 121a displays normal authentication screen 202 on the display of PC 121 based on the display data. Upon completing the processing of S502 above, CPU 102 ends the processing of this flowchart.
[0036] On the other hand, in the above S501, if it is determined that use of the RUI is permitted (RUI use setting is ON) (Yes in S501), the CPU 102 advances the process to S503. In S503, the CPU 102 determines whether or not department ID management is set. If it is determined that department ID management is not set (department ID management setting shown in Figs. 6 and 7 described later is OFF) (No in S503), the CPU 102 advances the process to S504.
[0037] In S504, CPU 102 determines whether or not an RUI access PIN is set. If it is determined that an RUI access PIN is set (the RUI access PIN setting shown in Figs. 6 and 7 described later is ON) (Yes in S504), CPU 102 advances the process to S505.
[0038] In S505, CPU 102 performs control to display RUI access PIN input screen 301. That is, CPU 102 transmits display data for RUI access PIN input screen 301 to Web browser 121a running on PC 121. Upon receiving the display data, Web browser 121a displays RUI access PIN input screen 301 on the display of PC 121 based on the display data.
[0039] Then, when CPU 102 receives the RUI access PIN entered by user 201 on RUI access PIN entry screen 301 from web browser 121a running on PC 121, CPU 102 advances the process to S506. In S506, CPU 102 determines whether or not the RUI access PIN entered by user 201 is correct (matches the registered RUI access PIN). That is, CPU 102 performs authentication processing using the RUI access PIN and determines the result of the authentication.
[0040] If it is determined that the RUI access PIN entered by user 201 is incorrect (No in S506), CPU 102 controls so as to display RUI access PIN entry screen 301 again (S505).
[0041] On the other hand, in the above S506, if it is determined that the RUI access PIN entered by the user 201 is correct (Yes in S506), the CPU 102 shifts the process to S507.
[0042] In S507, the CPU 102 performs control to display the normal authentication screen 202. That is, the CPU 102 transmits display data of the normal authentication screen 202 to the Web browser 121a operating on the PC 121. Upon receiving the display data, the Web browser 121a displays the normal authentication screen 202 on the display of the PC 121 based on the display data.
[0043] Also, in the above S504, if it is determined that the RUI access PIN has not been set (the RUI access PIN setting is OFF) (No in S504), CPU 102 also controls to display normal authentication screen 202 (S507).
[0044] Then, when the CPU 102 receives information on the login mode selected by the user 201 on the normal authentication screen 202 from the Web browser 121a running on the PC 121, the process proceeds to S508. In S508, the CPU 102 determines whether the login mode selected by the user 201 is the administrator mode (login in administrator mode) or not.
[0045] If it is determined that the login mode selected by the user 201 is the administrator mode (login in administrator mode) (Yes in S508), the CPU 102 advances the process to S509. In S509, the CPU 102 performs authentication processing in the administrator mode based on the administrator ID and administrator authentication number received together with the login mode information, and determines the result of the authentication.
[0046] If it is determined that the authentication process has failed (No in S509), the CPU 102 controls the display to display the normal authentication screen 202 again (S507). On the other hand, if it is determined that the authentication process was successful (authentication process OK) (Yes in S509), CPU 102 performs control to display RUI top screen 203. That is, CPU 102 transmits display data for RUI top screen 203 to Web browser 121a running on PC 121. Upon receiving the display data, Web browser 121a displays RUI top screen 203 on the display of PC 121 based on the display data.
[0047] Furthermore, in S508 above, if it is determined that the login mode selected by the user 201 is the general user mode (No in S508), the CPU 102 performs control to display the RUI top screen 203 without performing authentication processing (S510).
[0048] Furthermore, in the above S503, if it is determined that the department ID management setting is set (the department ID management setting is ON) (Yes in S503), the CPU 102 advances the process to S511. In S511, the CPU 102 performs control to display the department ID management authentication screen 401. That is, the CPU 102 transmits display data of the department ID management authentication screen 401 to the Web browser 121a operating on the PC 121. Upon receiving the display data, the Web browser 121a displays the department ID management authentication screen 401 on the display of the PC 121 based on the display data.
[0049] Then, when the CPU 102 receives the department ID and password entered by the user 201 on the department ID management authentication screen 401 from the Web browser 121a running on the PC 121, the process proceeds to step S512. In S512, the CPU 102 performs authentication processing using the department ID and password input by the user 201, and determines the result of the authentication.
[0050] If it is determined that the authentication process has failed (No in S512), the CPU 102 controls the display to display the department ID management authentication screen 401 again (S511). On the other hand, if it is determined that the authentication process has been successful (authentication process OK) (Yes in S512), CPU 102 performs control to display RUI top screen 203 (S510). Upon completing the process of S510, CPU 102 ends the process of this flowchart.
[0051] FIG. 6 is a table illustrating the relationship between the settings of the image forming apparatus and the authentication screen displayed on the RUI in the first embodiment.
[0052] FIG. 7 is a diagram illustrating an example of a setting screen for RUI usage permission, department ID management, and RUI access PIN in the first embodiment. On the RUI usage permission setting screen 700, it is possible to set whether or not to permit use of the RUI by selecting a radio button (ON / OFF) 700a. In the department ID management setting screen 701, a setting as to whether or not to manage department IDs (department ID management setting) can be performed by selecting a radio button (ON / OFF) 701a. When the department ID management setting is set, the CPU 102 authenticates and manages the use (access) of the image forming apparatus 100 for each department (i.e., user group).
[0053] In security setting screen 702, whether or not to restrict RUI access can be set by selecting a radio button (ON / OFF) 702a. When restricting RUI access is set in security setting screen 702, an RUI access PIN can be set in RUI access PIN input field 702b. In this way, in security setting screen 702, a setting can be made that enables restriction of RUI use by PIN information (RUI access PIN set in 702a).
[0054] It should be noted that the settings made on the RUI usage permission setting screen 700, the department ID management setting screen 701, and the security setting screen 702 are stored in the data ROM of the ROM 104 under the control of the CPU 102. The ROM 104 is made up of a flash ROM, and data can be rewritten.
[0055] It should be noted that RUI usage permission setting screen 700, department ID management setting screen 701, and security setting screen 702 are displayed on the display unit of operation panel 110 under the control of CPU 102. Also, in the example shown in Fig. 7, RUI usage permission setting screen 700, department ID management setting screen 701, and security setting screen 702 use radio buttons (700a, 701a, 702a) to select whether or not to permit, restrict, or manage, but other means such as a drop-down list may also be used.
[0056] As shown in Figure 6, when the RUI usage permission setting is OFF, regardless of (without taking into consideration) the ON / OFF status of the department ID management setting and the RUI access PIN setting, an RUI access prohibition screen is displayed on the display of PC121, and access from PC121 is prohibited. In addition, when the RUI usage permission setting is ON and the department ID management setting is ON, regardless of (without taking into consideration) whether the RUI access PIN setting is ON or OFF, the department ID management authentication screen 401 is displayed on the display of PC 121, and access from PC 121 is permitted and controlled by authentication using the department ID and department PIN.
[0057] In addition, if the RUI usage permission setting is ON, the department ID management setting is ON, and the RUI access PIN setting is ON, an RUI access PIN input screen 301 is displayed on the display of PC 121, and access from PC 121 is permitted or controlled by authentication using the RUI access PIN. Furthermore, if the RUI usage permission setting is ON, the department ID management setting is OFF, and the RUI access PIN setting is OFF, a normal authentication screen 202 is displayed on the display of the PC 121 .
[0058] 6, when department ID management is set to ON in department ID management setting screen 701, according to this embodiment, RUI access PIN entry screen 301 is not displayed when a remote access request is made, regardless of the RUI access restriction setting. Therefore, when department ID management is ON, setting the RUI access restriction on security setting screen 702 and entering the RUI access PIN are meaningless, so in one embodiment, under the control of CPU 102, the RUI access restriction setting and the RUI access PIN entry items are grayed out to prevent entry. In addition, even if the RUI usage permission is set to OFF on the RUI usage permission setting screen 700, the RUI access restriction setting and RUI access PIN input items may be grayed out under the control of CPU 102 to prevent input.
[0059] As described above, according to the first embodiment, in an image forming apparatus that allows access via a network by authentication using an external access PIN when an external access PIN (RUI access PIN) is set, when the image forming apparatus is set to a department ID managed mode (when department ID management is ON), regardless of whether an external access PIN is set or not, access via a network is allowed by authentication using a department ID and department PIN registered in department ID management without authentication using an external access PIN. With this configuration, when a security measure other than authentication using an external access PIN (here, department ID management setting) is implemented, it is not necessary to force a user to perform a redundant operation such as further authentication using an external access PIN in this state. Therefore, it is possible to provide an image forming apparatus that can maintain security without impairing user convenience. EXAMPLES
[0060] In the above-mentioned first embodiment, in the case where department ID management is not performed in the image forming apparatus 100, whether or not to restrict access to the RUI is managed by whether or not an RUI access PIN number is set. Note that if the system administrator has set it correctly, even if the RUI is accessed with user mode authority, it is considered that there is little problem because the settings of the image forming apparatus 100 cannot be changed, so it is also possible to configure so that whether or not to restrict access to the RUI is controlled by whether or not the system administrator has set it. This configuration will be described below in the second embodiment. Note that in the second embodiment, only the differences from the first embodiment will be described.
[0061] 8 is a diagram showing a flowchart illustrating an example of an RUI authentication screen display process in Example 2. Note that each step of this flowchart is realized by the CPU 102 reading and executing a program stored in the ROM 104 or the like. When the image forming apparatus 100 receives a remote access request transmitted from the Web browser 121a running on the PC 121, the CPU 102 starts the process of this flowchart. In addition, in this flowchart, any process not specifically designated as a process subject is assumed to be executed by the CPU 102.
[0062] First, steps S801 to S803 and S809 to S810 are the same as the processes in steps S501 to S503 and S511 to S512 in FIG. 5, and therefore a description thereof will be omitted. It should be noted that, in step S803, if it is determined that department ID management setting has not been performed (No in step S803), the CPU 102 advances the process to step S804.
[0063] In S804, the CPU 102 determines whether or not a system administrator has been set. The system administrator setting is a setting for setting a specific user or department (user group) as the administrator of the image forming apparatus 100 and granting the administrator authority of the image forming apparatus 100. The administrator authority is, for example, an authority that allows all accesses to the image forming apparatus 100.
[0064] Then, if it is determined that a system administrator has not been set (system administrator setting shown in FIG. 9, which will be described later, is OFF) (No in S804), CPU 102 performs control in S802 to display an RUI unusable screen (a screen indicating that use of an RUI, not shown, is not permitted). Note that S802 is the same as the processing of S502 in FIG. 5, and therefore details will be omitted.
[0065] On the other hand, if it is determined in S804 above that a system administrator is set (system administrator setting is ON) (Yes in S804), the CPU 102 executes the processes of S805 to S808. Since S805 to S808 are the same as the processes of S507 to S510 in FIG. 5, a description thereof will be omitted.
[0066] 9 is a table illustrating the relationship between the settings of the image forming apparatus and the authentication screen displayed by the RUI in the embodiment 2. Only the points different from FIG. 6 shown in the embodiment 1 will be described. When the RUI usage permission setting is OFF, and when the RUI usage permission setting is ON and the department ID management setting is ON, the operations are the same as in the first embodiment, and therefore the explanation will be omitted.
[0067] When the RUI usage permission setting is ON, the department ID management setting is OFF, and the system administrator setting is ON, a normal authentication screen 202 is displayed on the display of the PC 121 . In addition, if the RUI usage permission setting is ON, the department ID management setting is OFF, and the system administrator setting is OFF, an RUI access prohibition screen is displayed on the display of PC 121, and access from PC 121 is prohibited.
[0068] As described above, according to the second embodiment, in an image forming apparatus in which access via the network (RUI) is possible when a system administrator is set and access via the network (RUI) is not possible when a system administrator is not set, when the image forming apparatus is set in a department ID managed mode (when department ID management is ON), regardless of whether the system administrator setting is ON or OFF, access via the network is possible by authentication using the department ID and department PIN registered in the department ID management without authentication using the system administrator's administrator ID and administrator PIN. With this configuration, when security measures other than authentication using the administrator ID (here, department ID management setting) are implemented, it is not necessary to force the user to perform redundant operations such as further authentication using the administrator ID and administrator PIN in this state. Thus, an image forming apparatus capable of maintaining security without impairing user convenience is provided. It is possible.
[0069] Note that, as a security measure other than the authentication using the RUI access PIN in the above embodiment 1 or the authentication using the administrator authentication information in the above embodiment 2, a case has been described in which settings for authenticating and managing access to the image forming apparatus 100 for each user group (department ID management settings) have been configured. However, security measures other than authentication using the RUI access PIN or authentication using the administrator authentication information are not limited to this.
[0070] For example, a setting (user ID management setting) for authenticating and managing the use (access) of the image forming apparatus 100 for each user may be performed. When an RUI access request is received from the PC 121 in a state where the user ID management setting is performed, the CPU 102 performs control so as to display a user ID management authentication screen that requests authentication using a user ID and a user ID password. That is, the CPU 102 transmits display data of the user ID management authentication screen to the Web browser 121a running on the PC 121. When the Web browser 121a receives the display data, it displays the user ID management authentication screen on the display of the PC 121 based on the display data. Then, when the CPU 102 receives the user ID and password input by the user from the user ID management authentication screen, it performs authentication processing using the user ID and password. When it is determined that the authentication processing has failed, the CPU 102 performs control so as to display the user ID management authentication screen again. On the other hand, if it is determined that the authentication process has been successful (authentication process OK), CPU 102 performs control so as to display RUI top screen 203.
[0071] In each of the above embodiments, the RUI of the image forming apparatus 100 may be configured to be available from the PC 121 via the network 120, or may be configured to be available from the PC 121 via an interface other than the network, such as the USB cable 116.
[0072] In addition, in the image forming apparatus 100 of each of the above embodiments, the control for providing a user interface (RUI) that can be used from an external device such as PC 121 has been described, but the control may be for access other than the RUI, and any access control may be used as long as it is access to a function that the image forming apparatus 100 can provide.
[0073] Furthermore, although the image forming device accessible from an external device such as PC 121 has been described, the present invention is not limited to the image forming device and may be an information processing device other than the image forming device. For example, the present invention may be applied to an information processing device that can provide a function accessible from an external device.
[0074] As described above, when security measures other than authentication using an access PIN or administrator authentication information are implemented, the user is not forced to perform a redundant operation of further authenticating using an access PIN or administrator authentication information in this state, so that it is possible to provide an information processing device such as an image forming device that can maintain security without impairing user convenience. Therefore, according to the present invention, it is possible to maintain the security of an information processing apparatus, such as an image forming apparatus, that can be accessed via a network, without impairing user convenience.
[0075] It goes without saying that the configurations and contents of the various data described above are not limited to those described above, and the data may have various configurations and contents depending on the application and purpose. Although one embodiment has been described above, the present invention can be embodied, for example, as a system, an apparatus, a method, a program, a storage medium, etc. Specifically, the present invention may be applied to a system composed of multiple devices, or may be applied to an apparatus composed of a single device. Furthermore, any combination of the above embodiments is also included in the present invention.
[0076] (Other Examples) The present invention can also be realized by executing the following process: That is, software (programs) that realize the functions of the above-described embodiments are supplied to a system or device via a network or various storage media, and the computer (or CPU, MPU, etc.) of the system or device reads and executes the programs. Furthermore, the present invention may be applied to a system made up of a plurality of devices, or to an apparatus made up of a single device. The present invention is not limited to the above-mentioned embodiments, and various modifications (including organic combinations of the embodiments) are possible based on the spirit of the present invention, and are not excluded from the scope of the present invention. In other words, the present invention includes all configurations that combine the above-mentioned embodiments and their modifications. [Explanation of symbols]
[0077] 100 Image forming device 120 Network 121 Personal Computer (PC)
Claims
1. The image forming apparatus is capable of displaying a screen relating to print settings of the image forming apparatus on an external device, a means for displaying a first authentication screen on a web browser of the external device and performing user authentication based on a combination of a user ID and a user password entered on the first authentication screen; a means for displaying a second authentication screen on the web browser of the external device and performing access authentication based on an access password input on the second authentication screen; and means for setting an authentication setting for performing the access authentication, the image forming apparatus is configured to display the screen on the external device when the user authentication and the access authentication are performed in a state where the authentication setting is set; When the user authentication is performed in a state where the authentication setting is not set, the image forming apparatus is capable of displaying the screen on the external device without performing the access authentication; the screen includes information about remaining amounts of toner of at least four colors in the image forming device; An image forming apparatus characterized by:
2. The image forming apparatus is capable of displaying a screen relating to print settings of the image forming apparatus on an external device, a means for displaying a first authentication screen on a web browser of the external device and performing user authentication based on a combination of a user ID and a user password entered on the first authentication screen; a means for displaying a second authentication screen on the web browser of the external device and performing access authentication based on an access password input on the second authentication screen; and means for setting an authentication setting for performing the access authentication, the image forming apparatus is configured to display the screen on the external device when the user authentication and the access authentication are performed in a state where the authentication setting is set; When the user authentication is performed in a state where the authentication setting is not set, the image forming apparatus is capable of displaying the screen on the external device without performing the access authentication; The screen includes information regarding paper feeding of the image forming apparatus. An image forming apparatus characterized by:
3. The image forming apparatus is capable of displaying a screen relating to print settings of the image forming apparatus on an external device, a means for displaying a first authentication screen on a web browser of the external device and performing user authentication based on a combination of a user ID and a user password entered on the first authentication screen; a means for displaying a second authentication screen on the web browser of the external device and performing access authentication based on an access password input on the second authentication screen; a setting means for setting one of a plurality of settings including a first setting that requires the access authentication to display the screen and a second setting that does not require the access authentication to display the screen, the image forming apparatus is configured to display the screen on the external device when the user authentication and the access authentication are performed in a state in which the first setting is set by the setting unit, when the user authentication is performed in a state in which the second setting is set by the setting unit, the image forming apparatus is capable of displaying the screen on the external device without performing the access authentication; the screen includes information about remaining amounts of toner of at least four colors in the image forming device; An image forming apparatus characterized by:
4. The image forming apparatus is capable of displaying a screen relating to print settings of the image forming apparatus on an external device, a means for displaying a first authentication screen on a web browser of the external device and performing user authentication based on a user ID and a user password entered on the first authentication screen; a means for displaying a second authentication screen on the web browser of the external device and performing access authentication based on an access password input on the second authentication screen; a setting means for setting one of a plurality of settings including a first setting that requires the access authentication to display the screen and a second setting that does not require the access authentication to display the screen, the image forming apparatus is configured to display the screen on the external device when the user authentication and the access authentication are performed in a state in which the first setting is set by the setting unit, when the user authentication is performed in a state in which the second setting is set by the setting unit, the image forming apparatus is capable of displaying the screen on the external device without performing the access authentication; The screen includes information regarding paper feeding of the image forming apparatus. An image forming apparatus characterized by:
5. 5. The image forming apparatus according to claim 1, further comprising a means for outputting the screen to the external device.
6. When the authentication setting is not set, the second authentication screen is not output to the web browser of the external device, When the authentication setting is set, the second authentication screen is output to the web browser of the external device.
3. The image forming apparatus according to claim 1, wherein the image forming apparatus is a recording medium.
7. 7. The image forming apparatus according to claim 1, wherein the user ID is information associated with an execution authority of a function provided in the image forming apparatus, and includes an administrator user ID.
8. the plurality of settings further include a third setting in which the screen is not displayed; The image forming apparatus further includes a means for outputting screen information for causing the external device to display an error screen when the external device requests the image forming apparatus to access the screen while the third setting is set by the setting means.
5. The image forming apparatus according to claim 3, wherein the image forming apparatus is a recording medium.
9. 9. The image forming apparatus according to claim 1, wherein the screen further includes information about the status of the image forming apparatus.
10. 10. The image forming apparatus according to claim 1, wherein the screen further includes information regarding an error in the image forming apparatus.
11. a display unit that displays information; 11. The image forming apparatus according to claim 1, further comprising: a display unit that displays a screen for registering the access password on the display unit.
12. 12. The image forming apparatus according to claim 1, wherein the first authentication screen allows user authentication by inputting a combination of an administrator ID and an administrator password.
13. the image forming apparatus further comprises a means for displaying a third authentication screen on the web browser of the external apparatus, and performing department authentication based on a department user ID and a department password entered on the displayed third authentication screen; the plurality of settings further includes a third setting for performing authentication by inputting a department ID and a department password; 5. The image forming apparatus according to claim 3, wherein when the department authentication is performed while the third setting is set by the setting means, the screen is displayed on the external device without performing the user authentication and the access authentication.
14. 14. The image forming apparatus according to claim 1, further comprising a printer engine that performs printing in accordance with the print settings.
15. the external device includes a PC; 15. The image forming apparatus according to claim 1, wherein the image forming apparatus is a recording medium.
16. A control method for an image forming apparatus capable of displaying a screen relating to print settings of the image forming apparatus on an external device, comprising: a step of displaying a first authentication screen on a web browser of the external device and performing user authentication based on a combination of a user ID and a user password entered on the first authentication screen; a step of displaying a second authentication screen on the web browser of the external device and performing access authentication based on an access password input on the second authentication screen that is displayed; and setting an authentication setting for performing the access authentication, the image forming apparatus, when the user authentication and the access authentication are performed in a state in which the authentication setting is set, enables the screen to be displayed on the external device; When the authentication setting is not set and the user authentication is performed, control is performed so that the screen can be displayed on the external device without performing the access authentication; the screen includes information about remaining amounts of toner of at least four colors in the image forming device; 2. A method for controlling an image forming apparatus comprising:
17. A control method for an image forming apparatus capable of displaying a screen relating to print settings of the image forming apparatus on an external device, comprising: a step of displaying a first authentication screen on a web browser of the external device and performing user authentication based on a combination of a user ID and a user password entered on the first authentication screen; a step of displaying a second authentication screen on the web browser of the external device and performing access authentication based on an access password input on the second authentication screen that is displayed; and setting an authentication setting for performing the access authentication, the image forming apparatus, when the user authentication and the access authentication are performed in a state in which the authentication setting is set, enables the screen to be displayed on the external device; When the authentication setting is not set and the user authentication is performed, control is performed so that the screen can be displayed on the external device without performing the access authentication; The screen includes information regarding paper feeding of the image forming apparatus.
2. A method for controlling an image forming apparatus comprising:
18. A control method for an image forming apparatus capable of displaying a screen relating to print settings of the image forming apparatus on an external device, comprising: a step of displaying a first authentication screen on a web browser of the external device and performing user authentication based on a combination of a user ID and a user password entered on the first authentication screen; a step of displaying a second authentication screen on the web browser of the external device and performing access authentication based on an access password input on the second authentication screen that is displayed; a setting step of setting one of a plurality of settings including a first setting that requires the access authentication to display the screen and a second setting that does not require the access authentication to display the screen, the image forming apparatus is configured to display the screen on the external device when the user authentication and the access authentication are performed in a state in which the first setting is set by the setting unit, When the user authentication is performed in a state in which the second setting is set by the setting unit, the image forming apparatus controls the external device so that the screen can be displayed on the external device without performing the access authentication; the screen includes information about remaining amounts of toner of at least four colors in the image forming device; 2. A method for controlling an image forming apparatus comprising:
19. A method for controlling an image forming apparatus capable of displaying a screen relating to print settings of the image forming apparatus on an external device, comprising: a step of displaying a first authentication screen on a web browser of the external device and performing user authentication based on a user ID and a user password input on the first authentication screen that is displayed; a step of displaying a second authentication screen on the web browser of the external device and performing access authentication based on an access password input on the second authentication screen that is displayed; a setting step of setting one of a plurality of settings including a first setting that requires the access authentication to display the screen and a second setting that does not require the access authentication to display the screen, the image forming apparatus is configured to display the screen on the external device when the user authentication and the access authentication are performed in a state in which the first setting is set by the setting unit, When the user authentication is performed in a state in which the second setting is set by the setting unit, the image forming apparatus controls the external device so that the screen can be displayed on the external device without performing the access authentication; The screen includes information regarding paper feeding of the image forming apparatus.
2. A method for controlling an image forming apparatus comprising:
20. A program for causing a computer to execute a control method for an image forming apparatus capable of displaying a screen relating to print settings of the image forming apparatus on an external device, comprising: The control method includes: a step of displaying a first authentication screen on a web browser of the external device and performing user authentication based on a combination of a user ID and a user password entered on the first authentication screen; a step of displaying a second authentication screen on the web browser of the external device and performing access authentication based on an access password input on the second authentication screen that is displayed; and setting an authentication setting for performing the access authentication, the image forming apparatus, when the user authentication and the access authentication are performed in a state in which the authentication setting is set, enables the screen to be displayed on the external device; When the authentication setting is not set and the user authentication is performed, control is performed so that the screen can be displayed on the external device without performing the access authentication; the screen includes information about remaining amounts of toner of at least four colors in the image forming device; A program characterized by:
21. A program for causing a computer to execute a control method for an image forming apparatus capable of displaying a screen relating to print settings of the image forming apparatus on an external device, comprising: The control method includes: a step of displaying a first authentication screen on a web browser of the external device and performing user authentication based on a combination of a user ID and a user password entered on the first authentication screen; a step of displaying a second authentication screen on the web browser of the external device and performing access authentication based on an access password input on the second authentication screen that is displayed; and setting an authentication setting for performing the access authentication, the image forming apparatus, when the user authentication and the access authentication are performed in a state in which the authentication setting is set, enables the screen to be displayed on the external device; When the authentication setting is not set and the user authentication is performed, control is performed so that the screen can be displayed on the external device without performing the access authentication; The screen includes information regarding paper feeding of the image forming apparatus. A program characterized by:
22. A program for causing a computer to execute a control method for an image forming apparatus capable of displaying a screen relating to print settings of the image forming apparatus on an external device, comprising: The control method includes: a step of displaying a first authentication screen on a web browser of the external device and performing user authentication based on a combination of a user ID and a user password entered on the first authentication screen; a step of displaying a second authentication screen on the web browser of the external device and performing access authentication based on an access password input on the second authentication screen that is displayed; a setting step of setting one of a plurality of settings including a first setting that requires the access authentication to display the screen and a second setting that does not require the access authentication to display the screen, the image forming apparatus is configured to display the screen on the external device when the user authentication and the access authentication are performed in a state in which the first setting is set by the setting unit, When the user authentication is performed in a state in which the second setting is set by the setting unit, the image forming apparatus controls the external device so that the screen can be displayed on the external device without performing the access authentication; the screen includes information about remaining amounts of toner of at least four colors in the image forming device; A program characterized by:
23. A program for causing a computer to execute a control method for an image forming apparatus capable of displaying a screen relating to print settings of the image forming apparatus on an external device, comprising: The control method includes: a step of displaying a first authentication screen on a web browser of the external device and performing user authentication based on a user ID and a user password input on the first authentication screen that is displayed; a step of displaying a second authentication screen on the web browser of the external device and performing access authentication based on an access password input on the second authentication screen that is displayed; a setting step of setting one of a plurality of settings including a first setting that requires the access authentication to display the screen and a second setting that does not require the access authentication to display the screen, the image forming apparatus is configured to display the screen on the external device when the user authentication and the access authentication are performed in a state in which the first setting is set by the setting unit, When the user authentication is performed in a state in which the second setting is set by the setting unit, the image forming apparatus controls the external device so that the screen can be displayed on the external device without performing the access authentication; The screen includes information regarding paper feeding of the image forming apparatus. A program characterized by: