Server device, system, control method of server device, and program
The server device and system address the limitations of existing biometric authentication technologies by performing personal authentication and allowing users to select service providers, resulting in flexible user registration and enhanced service access.
Patent Information
- Application Number
- JP2025061680
- Authority / Receiving Office
- JP · JP
- Patent Type
- Applications
- Current Assignee / Owner
- Filing Date
- 2025-04-03
- Publication Date
- 2025-06-26
- Estimated Expiration
- 2042-12-07
AI Technical Summary
Existing biometric authentication technologies do not allow for flexible user registration options that cater to individual user preferences, limiting the ability to provide various services as desired by users.
A server device and system that perform personal authentication to differentiate between authenticated users and normal users, allowing users to select service providers and notifying them of original biometric information and user type for service registration.
Enables flexible user registration and service provision, allowing authenticated users to access more services while ensuring that users who do not undergo identity verification can still use biometric authentication for limited services.
Smart Images

Figure 2025096374000001_ABST
Abstract
Description
Technical Field
[0001] The present invention relates to a server device, a system, a control method for a server device, and a storage medium.
Background Art
[0002] There are technologies related to biometric authentication.
[0003] For example, Patent Document 1 describes automating the admission reception and reliably realizing personal authentication. The admission reception terminal of Patent Document 1 uses a personal identification card with an embedded IC chip to receive the admission of an outsider carrying the personal identification card. In the IC chip, an access permission number, personal information, and personal authentication information are stored in advance. The admission reception terminal includes an input means for receiving an input of the access permission number, a reading means for reading the personal information and personal authentication information stored in the IC chip from the personal identification card, an acquisition means for acquiring the biometric authentication information of the outsider, an authentication means, and an issuing means. The authentication means collates the read personal authentication information with the acquired biometric authentication information to perform personal authentication. The issuing means issues an admission permit when personal authentication is confirmed.
Prior Art Documents
Patent Documents
[0004]
Patent Document 1
Summary of the Invention
Problems to be Solved by the Invention
[0005] In recent years, the provision of various services using biometric authentication has started. For example, not only the access control to facilities as shown in Patent Document 1, but also the payment for purchased goods can be made by biometric authentication. Here, among the users, there are users who want to enjoy the maximum services by biometric authentication and users who want to easily enjoy the services by biometric authentication.
[0006] That is, it is required to realize various user registrations according to the wishes of the user. Note that this requirement cannot be realized even by applying the technology disclosed in Patent Document 1. Patent Document 1 is for disclosing a technology related to strengthening the personal authentication.
[0007] A main object of the present invention is to provide a server device, a system, a control method of the server device, and a storage medium that contribute to realizing various user registrations that satisfy the wishes of the user.
Means for Solving the Problems
[0008] According to a first aspect of the present invention, personal authentication is performed on a user who wishes to register with the system as an authenticated user who can receive more services than a normal user, the user type of the user who has succeeded in the personal authentication is managed as the authenticated user, and the user type of the user who has not succeeded in the personal authentication is managed as the normal user. There is provided a server device including: a personal authentication control means; a service selection control means capable of selecting a service provider that the user wishes to receive services from among a plurality of service providers that provide services using biometric authentication; and a user registration control means for notifying the service provider selected by the user of original biometric information that is the original of the authentication information used for biometric authentication and the user type.
[0009] According to a second aspect of the present invention, there is provided a system including a terminal possessed by a user, a plurality of service servers each managed by a plurality of service providers that provide services using biometric authentication, and a server device. The server device performs identity verification of a user who wishes to register with the system as an authenticated user who can receive more services than a normal user, manages the user type of the user who has successfully passed the identity verification as the authenticated user, and manages the user type of the user who has not successfully passed the identity verification as the normal user. The server device further includes identity verification control means, service selection control means for enabling the user to select a service provider from among the plurality of service providers for which the user wishes to receive services, and user registration control means for obtaining original biometric information that is the original of the authentication information used for biometric authentication from the user's terminal and transmitting a user registration request including the original biometric information and the user type to the service server of the service provider selected by the user.
[0010] According to a third aspect of the present invention, there is provided a control method for a server device that performs identity verification of a user who wishes to register with the system as an authenticated user who can receive more services than a normal user, manages the user type of the user who has successfully passed the identity verification as the authenticated user, and manages the user type of the user who has not successfully passed the identity verification as the normal user. The server device enables the user to select a service provider from among a plurality of service providers that provide services using biometric authentication, and notifies the selected service provider of the original biometric information that is the original of the authentication information used for biometric authentication and the user type.
[0011] According to a fourth aspect of the present invention, a computer mounted on a server device performs identity verification of a user who wishes to register the system as an authenticated user who can receive more services than a normal user, manages the user type of the user who has succeeded in the identity verification as the authenticated user, and manages the user type of the user who has not succeeded in the identity verification as the normal user, a process of enabling a user to select a service provider from among a plurality of service providers that provide services using biometric authentication and from which the user wishes to receive services, and a process of notifying the service provider selected by the user of original biometric information that is the original of authentication information used for biometric authentication and the user type. A computer-readable storage medium storing a program for executing the processes is provided.
Advantages of the Invention
[0012] According to each aspect of the present invention, a server device, a system, a control method of the server device, and a storage medium are provided that contribute to realizing various user registrations that satisfy the wishes of users. Note that the effects of the present invention are not limited to the above. Instead of or together with the above effects, other effects may be achieved by the present invention.
Brief Description of the Drawings
[0013]
Figure 1
Figure 2
Figure 3
Figure 4
Figure 5
Figure 6
Figure 7
Figure 8
Figure 9
Figure 10
Figure 11
Figure 12
Figure 13
Figure 14
Figure 15
Figure 16
Figure 17
Figure 18
Figure 19
Figure 20
Figure 21
Figure 22
Figure 23
Figure 24
Figure 25
Figure 26
Figure 27
Figure 28
DETAILED DESCRIPTION OF THE INVENTION
[0014] First, an overview of one embodiment will be described. Note that the reference numerals in the drawings appended to this overview are for convenience and are appended to each element as an example to assist understanding, and the description of this overview is not intended to be limiting in any way. Also, unless otherwise specified, the blocks shown in each drawing represent a configuration in terms of functional units, not hardware units. The connection lines between the blocks in each figure include both bidirectional and unidirectional ones. The one-way arrow schematically shows the flow of the main signal (data) and does not exclude bidirectionality. In this specification and the drawings, elements that can be similarly described may be given the same reference numerals so that redundant description can be omitted.
[0015] The server device 100 according to an embodiment includes an identity verification control means 101, a service selection control means 102, and a user registration control means 103 (see FIG. 1). The identity verification control means 101 verifies the identity of a user who wishes to register with the system as an authenticated user who can receive more services than ordinary users (step S1 in FIG. 2). The identity verification control means 101 manages the user type of the user who has successfully verified their identity as an authenticated user (step S2). Note that the identity verification control means 101 manages the user type of a user who has not successfully verified their identity as an ordinary user (the initial value of the user type is an ordinary user). The service selection control means 102 enables a user to select a service provider from among a plurality of service providers that provide services using biometric authentication for which the user wishes to receive the service (step S3). The user registration control means 103 notifies the service provider selected by the user of the original biometric information that is the original of the authentication information used for biometric authentication and the user type (step S4).
[0016] The server device 100 executes identity verification of a user who wishes to register with the system as an authenticated user, and manages the user who has successfully verified their identity as an authenticated user. On the other hand, the server device 100 manages users who do not wish to perform identity verification as ordinary users. The server device 100 notifies the service provider of the user type together with the original biometric information. The service provider uses the acquired original biometric information and user type to provide the user with a service using biometric authentication. At this time, the service provider changes the service provided according to the user type. As a result, many services using biometric authentication are provided to authenticated users, and limited services are provided to users who do not wish to perform identity verification and wish to easily receive services using biometric authentication. In this way, the server device 100 realizes various user registrations that satisfy the wishes of the users.
[0017] Specific embodiments will be described in more detail below with reference to the drawings.
[0018] [First Embodiment] The first embodiment will be described in more detail with reference to the drawings.
[0019] [Configuration of the System] FIG. 3 is a diagram showing an example of the schematic configuration of an authentication system (information processing system) according to the first embodiment. As shown in FIG. 3, the authentication system includes a plurality of service providers A to C and an authentication center.
[0020] A service provider is an operator that provides services to users using biometric authentication. The authentication system according to the present disclosure assumes that service providers belonging to various industries and sectors provide services using biometric authentication. Note that the services provided by the service provider may be either paid or free of charge.
[0021] For example, operators providing rental housing services such as condominiums, operators where employees work (the workplace of users), casino operators, operators providing events such as concerts, operators operating means of transportation such as airplanes, etc. are exemplified as service providers. Alternatively, operators providing accommodation services, operators such as retail stores, operators providing financial services, educational operators, etc. are also included in the service providers of the present disclosure. Further, the service provider is not limited to private operators. Public institutions such as local governments may be service providers.
[0022] The authentication center controls, manages, etc. the biometric authentication of each of the plurality of service providers. An operator (service provider) that provides services using biometric authentication to users (general consumers, local residents) needs to conclude a contract with the authentication center.
[0023] The authentication center includes a control server 10. The control server 10 realizes the main functions of the authentication center. The control server 10 may be installed inside the building of the authentication center or may be a server installed on a network (cloud).
[0024] As described above, the service provider provides the user with a service using biometric authentication. For example, biometric authentication is performed when the user goes to work at the office or returns home to the apartment, and a legitimate user (employee, resident) can enter the office or the like. Alternatively, the user can receive the issuance of documents such as a family register extract and a resident card from the local government by biometric authentication. Alternatively, biometric authentication is performed in ticket confirmation at an event venue or the like, check-in procedures at a hotel, immigration procedures at an airport, and the like. Even in such services (procedures), services are provided to users with legitimate qualifications. Alternatively, payment procedures at a retail store or the like are performed using biometric authentication.
[0025] As shown in FIG. 3, each service provider includes a service server 20 and at least one authentication terminal 30. Devices (service server 20, authentication terminal 30) provided by the service provider are connected to be communicable with each other. Specifically, the service server 20 and the authentication terminal 30 are connected by wired or wireless communication means.
[0026] The service server 20 is connected to the control server 10 via a network. The service server 20 may be installed in the building of the service provider or may be installed on the cloud.
[0027] The service server 20 stores information necessary for providing services to users. Specifically, the service server 20 stores business information necessary for each service provider to provide a service using biometric authentication and information necessary for biometric authentication. The service server 20 stores business information and information necessary for biometric authentication using a user management database. Details of the user management database will be described later.
[0028] For example, the service server 20 of the company where the user works stores information such as the user's (employee's) name, date of birth, employee number, department, work location, etc. as business information. Alternatively, the service server 20 of the local government stores information such as the name, address, date of birth, etc. of the residents as business information. Also, the service server 20 of the event company that hosts the event stores information related to the tickets purchased by the event participants as business information. Furthermore, the service server 20 of a retail store, etc. stores credit card information (payment information) necessary for payment settlement as business information.
[0029] The details of the information necessary for biometric authentication stored by the service server 20 will be described later.
[0030] The authentication terminal 30 is a device that serves as an interface for the user who receives the service. The authentication terminal 30 is installed at the service-providing location of each service provider. More specifically, the authentication terminal 30 is installed in a store or the like that the user actually visits. Note that the authentication terminal 30 may be installed by a business operator having a contractual relationship or the like with the service provider. For example, the authentication terminal 30 that serves as an interface when the user receives a service from the local government may be installed in a convenience store or the like.
[0031] The authentication terminal 30 has functions and forms corresponding to the type of business of the service provider, etc. For example, the authentication terminal 30 installed in a workplace or an event venue can be a gate device equipped with a gate that restricts the passage of the user (the person to be authenticated). Alternatively, the authentication terminal 30 installed in a city hall or the like is equipped with a touch panel that accepts the operation of the residents and a printer that prints resident certificates, etc. Also, a tablet-type terminal can be used for the authentication terminal 30 installed in a retail store.
[0032] Note that FIG. 3 is an illustration and is not intended to limit the configuration of the authentication system disclosed in the present application. For example, the authentication center may include two or more control servers 10. Also, at least one service provider may participate in the authentication system. Further, each service provider may be provided with at least one service server 20 and at least one authentication terminal 30.
[0033] [Schematic Operation] Subsequently, the schematic operation of the authentication system according to the first embodiment will be described.
[0034] [Account Generation] A user who wishes to receive services from a service provider needs to generate an account in the system. Specifically, the user operates the terminal 40 in his possession to access the control server 10 (see FIG. 4).
[0035] The user inputs login information (e.g., login ID, password), name, date of birth, etc. on a WEB (web) page provided by the control server 10. When the control server 10 acquires the login information, etc., it generates an ID for identifying the user. In the following description, the ID generated by the control server 10 is referred to as the "system ID". The control server 10 stores the generated system ID, login information, etc. in an account management database in association with each other. The details of the account management database will be described later.
[0036] [Biometric Information Registration] A user who wishes to receive services using biometric authentication needs to register his or her biometric information in the terminal 40.
[0037] Here, for the provision of services using biometric authentication, the authentication information generated from biometric information needs to be registered in advance with the service provider. For example, when a service is provided using face authentication, the feature amount (feature vector) generated from the face image needs to be registered in advance as authentication information. Alternatively, when a service is provided using fingerprint authentication, the feature amount generated from the fingerprint image needs to be registered in advance as authentication information.
[0038] In the following description, information that serves as the original (basis) for generating authentication information, such as a face image or a fingerprint image, is referred to as "original biometric information". Also, the feature amount generated from the original biometric information and registered in advance is referred to as "registered authentication information".
[0039] The user who has completed the generation of the system account needs to register the original biometric information (e.g., a face image) in the terminal 40 that holds it. The terminal 40 acquires the original biometric information using a GUI (Graphical User Interface) or the like. The terminal 40 stores the acquired original biometric information (e.g., a face image) internally. In this way, the terminal 40 stores the original biometric information that serves as the original of the authentication information used for biometric authentication.
[0040] <Identity verification> Here, there are two types of users in the authentication system.
[0041] The first type of user is a user who receives services from the service provider without undergoing identity verification by the system. In the following description, the first type of user is referred to as an "ordinary user".
[0042] The second type of user is a user who receives services from the service provider after undergoing identity verification by the system. In the following description, the second type of user is referred to as an "authenticated user". Authenticated users can receive more services than ordinary users.
[0043] The user can choose to create an account as a normal user or create an account as an authenticated user.
[0044] If the user wishes to create an account as an authenticated user, the control server 10 verifies the identity of the user. For example, when the control server 10 obtains the user's request (create an account as an authenticated user) using a GUI or the like, it executes control regarding the identity verification of the user.
[0045] The identity verification of the user is performed using a certificate issued by a public institution. Specifically, the control server 10 verifies the identity of the user using a certificate such as a My Number card, a driver's license, or a passport. In the first embodiment, the case where a My Number card is used as the identity verification document will be described. When performing identity verification using a driver's license or the like, the control server 10 may execute one-to-one authentication using the face image obtained from the driver's license or the like and the face image obtained by photographing.
[0046] When the user wishes to receive service as an authenticated user, the control server 10 requests the terminal 40 possessed by the user to provide information necessary for identity verification. Specifically, the control server 10 transmits a "request for providing identity verification information" to the terminal 40 (step S01 in FIG. 5).
[0047] In response to receiving the request for providing identity verification information, the terminal 40 reads information from the user's My Number card. Specifically, the terminal 40 acquires an electronic certificate (electronic certificate for signature, electronic certificate for user certification) stored in the IC (Integrated Circuit) chip of the My Number card.
[0048] At that time, the terminal 40 obtains a password (a 4-digit password or a 6- to 16-digit password) from the user to read the electronic certificate from the My Number card, and obtains the electronic certificate using the password. Hereinafter, the case where the terminal 40 obtains the electronic signature certificate from the My Number card will be described. In the following description, unless otherwise specified, the electronic certificate indicates the electronic signature certificate.
[0049] The terminal 40 transmits the obtained electronic certificate to the control server 10 as "personal identification information" (step S02).
[0050] The control server 10 transmits the obtained electronic certificate to the certification authority server 50 operated by the certification authority (J-LIS; Japan Agency for Local Authority Information Systems) (step S03). By transmitting the obtained electronic certificate, the control server 10 requests the certification authority server 50 to verify the electronic certificate.
[0051] The control server 10 receives the verification result of the electronic certificate from the certification authority server 50 (step S04). When the control server 10 receives a response from the certification authority server 50 that the electronic certificate is valid, it determines that the personal identification has been successful.
[0052] When the personal identification is successful, the control server 10 manages the user who has succeeded in the personal identification as an "authenticated user". Note that the control server 10 manages users who have not undergone personal identification as "ordinary users".
[0053] <Service Selection> A user who has performed system registration (system account creation) and original biometric information registration selects a service provider who wants to receive the biometric authentication service. The user selects a service provider who wants to receive the service from among a plurality of service providers participating in the authentication system (service providers that have contracted with the authentication center).
[0054] The control server 10 stores information on service providers participating in the authentication system. For example, the control server 10 stores the name, business type, location, etc. of the service providers. The control server 10 holds information on each of a plurality of service providers and enables a user to select a service provider.
[0055] When the user operates the terminal 40 to perform a predetermined operation on the portal site, the control server 10 displays on the terminal 40 a GUI or the like that enables the selection of a service (service provider) desired by the user. The control server 10 acquires the service (biometric authentication service) desired by the user using the GUI.
[0056] <User registration> When the control server 10 acquires the service provider selected by the user, it executes control regarding "user registration" that enables the selected service provider to provide the user with a service using biometric authentication.
[0057] Specifically, the control server 10 performs control for the selected service provider to acquire the original biometric information stored in the user's terminal 40. The service provider generates registration authentication information from the acquired original biometric information, and by associating the generated registration authentication information with business information, preparations are made to provide the user with a service.
[0058] The user operates the terminal 40 to access the control server 10 and logs in to the user's portal site. When the user performs a predetermined operation (for example, pressing a service provider selection button) on the portal site, the control server 10 displays on the terminal 40 a GUI including a list of service providers.
[0059] When a service provider is selected, the control server 10 requests the user to provide original biometric information. Specifically, the control server 10 transmits an "original provision request" to the user's terminal 40 (see step S11 in FIG. 6).
[0060] When the original submission request is received, the terminal 40 transmits the user's original biometric information (e.g., face image) to the control server 10 (step S12).
[0061] The control server 10 notifies the service provider selected by the user of the user's system ID, user type (ordinary user, authenticated user), the acquired original biometric information, personal identification information, etc. Note that personal identification information is information for identifying the user. Examples of personal identification information include the user's name or a combination of the name and date of birth.
[0062] The control server 10 transmits a "user registration request" including the system ID, user type, original biometric information, and personal identification information, etc. to the service server 20 of the service provider selected by the user (step S13).
[0063] The service server 20 that has received the user registration request searches the user management database using the acquired personal identification information to identify the user who wishes to register (provide services using biometric authentication). The service server 20 stores the registration authentication information (e.g., feature amount) obtained from the system ID, user type, and original biometric information in the entry of the identified user.
[0064] The service server 20 transmits a response including the result of user registration (success or failure of user registration) to the control server 10 (step S14).
[0065] Note that the control server 10 deletes the original biometric information (e.g., face image) obtained from the user at the timing when the user registration request is transmitted to the service server 20 or at the timing when the response to the request is received. Also, when the service server 20 generates registration authentication information (e.g., feature amount), it deletes the original biometric information obtained from the control server 10.
[0066] <Provision of Services> Users who have completed the selection of services visit the service provider to receive the services. For example, the user visits the facilities, stores, etc. of the service provider that provides the services selected by the user himself, such as an office, a city hall, a casino, an amusement park, an event venue, a retail store, etc.
[0067] The authentication terminal 30 acquires biometric information of the user (the person to be authenticated) who receives the service. For example, the authentication terminal 30 photographs the person to be authenticated and acquires biometric information (for example, a face image) corresponding to the original biometric information.
[0068] In addition, the authentication terminal 30 acquires information regarding the service that the user (the person to be authenticated) wishes to receive (hereinafter referred to as provided service information). For example, when the user enters an office, "facility entry" is acquired as the provided service information. Alternatively, when the user wishes to issue a family register certificate, "family register certificate issuance" is acquired as the provided service information.
[0069] The authentication terminal 30 may automatically determine the provided service information according to the type of service desired by the user, the form of its own device, etc., or may acquire the provided service information from the user using a GUI or the like. For example, in the above example, the authentication terminal 30 automatically acquires "facility entry". In addition, the authentication terminal 30 acquires "family register certificate issuance" according to the operation of the user.
[0070] The authentication terminal 30 transmits an authentication request including the acquired biometric information and provided service information to the service server 20 (see FIG. 7). Note that the authentication terminal 30 transmits information associated with the provided service information to the service server 20 as necessary. For example, when the provided service information related to "product purchase" is acquired, information such as the product name and the product price is transmitted to the service server 20 as the information associated with the provided service information together with the provided service information.
[0071] The service server 20 authenticates the user (the person to be authenticated) using the biometric information and provided service information included in the authentication request, the biometric information, user type, and business information registered in the user management database.
[0072] Here, the services that can be provided by the service provider to ordinary users are different from those provided to authenticated users. In addition to the services provided to ordinary users, authenticated users are also provided with services that originally require identity verification of users, etc. That is, the services provided to authenticated users include the services provided to ordinary users.
[0073] In the above example, the service related to "facility entry" to the office can be provided to the authenticated person regardless of the user type. On the other hand, the service related to "issuing a family register" can only be provided to authenticated users.
[0074] When receiving an authentication request, the service server 20 identifies the authenticated person registered in the user management database through a collation process using biometric information.
[0075] Specifically, the service server 20 generates authentication information for collation from the biometric information (for example, a face image) included in the authentication request. For example, the service server 20 generates feature amounts from the acquired face image. The service server 20 executes a collation process (1-to-N collation; N is a positive integer, the same hereinafter) using the generated authentication information for collation (hereinafter referred to as collation authentication information) and the registered authentication information registered in the user management database.
[0076] When the collation process fails, the service server 20 sets "authentication failed" in the authentication result. When the collation process succeeds, the service server 20 determines whether the service desired by the authenticated person can be provided to the authenticated person using the service information to be provided included in the authentication request and the user type of the authenticated person.
[0077] When the service server 20 determines that the service cannot be provided to the authenticated person using the service information to be provided and the user type, the service server 20 sets "authentication failed" in the authentication result. In this case, no service is provided to ordinary users. Note that the service server 20 determines whether the service can be provided to the authenticated user in subsequent processing.
[0078] When it is determined that a service can be provided to the authenticated person using the provided service information and the user type, the service server 20 determines whether the service can be provided to the user using the business information of the user identified by the collation process.
[0079] For example, consider the case where the provided service information is "facility entry". In this case, the service server 20 of the company where the employee works sets "authentication successful" in the authentication result if the authenticated person is an employee of the company and has the qualification to enter the office. On the other hand, if the authenticated person is an employee of the company but does not have the qualification to enter the office, the service server 20 sets "authentication failed" in the authentication result.
[0080] Alternatively, the service server 20 of the city hall that has received a request to issue a family register sets "authentication successful" in the authentication result if the family register of the authenticated person can be issued. On the other hand, if the family register of the authenticated person cannot be issued due to reasons such as having already transferred out, the service server 20 sets "authentication failed" in the authentication result.
[0081] The service server 20 transmits the authentication result (authentication successful, authentication failed) to the authentication terminal 30.
[0082] The authentication terminal 30 executes processing according to the authentication result. For example, when receiving authentication successful, the authentication terminal 30 installed in the office opens the gate and permits the passage of the authenticated person. Alternatively, when receiving authentication successful, the authentication terminal 30 installed in the city hall or the like issues a family register.
[0083] Subsequently, the details of each device included in the authentication system according to the first embodiment will be described.
[0084] [Control Server] FIG. 8 is a diagram showing an example of the processing configuration (processing modules) of the control server 10 according to the first embodiment. Referring to FIG. 8, the control server 10 includes a communication control unit 201, an account management unit 202, a service provider management unit 203, an identity verification control unit 204, a service selection control unit 205, a user registration control unit 206, and a storage unit 207.
[0085] The communication control unit 201 is a means for controlling communication with other devices. For example, the communication control unit 201 receives data (packets) from the service server 20. Also, the communication control unit 201 transmits data to the service server 20. The communication control unit 201 delivers the data received from other devices to other processing modules. The communication control unit 201 transmits the data acquired from other processing modules to other devices. In this way, other processing modules perform data transmission and reception with other devices via the communication control unit 201. The communication control unit 201 has a function as a receiving unit for receiving data from other devices and a function as a transmitting unit for transmitting data to other devices.
[0086] The account management unit 202 is a means for managing user accounts. When a user operates the terminal 40 to access a predetermined homepage or the like, the account management unit 202 acquires information necessary for generating the user's account.
[0087] Specifically, the account management unit 202 acquires personal information such as login information, name, and date of birth. After acquiring the login information and the like, the account management unit 202 generates a system ID for identifying the user. The system ID can be any information as long as it can uniquely identify the user. For example, the account management unit 202 may assign a unique value each time an account is generated and use it as the system ID.
[0088] In addition, the account management unit 202 obtains the preferences of the user regarding the user type (ordinary user, authenticated user) from the user. When the user wishes to create an account as an authenticated user, the account management unit 202 notifies the personal verification control unit 204 to that effect.
[0089] The account management unit 202 stores the generated system ID, login information, name, etc. in the account management database in association with each other (see Fig. 9). Note that the account management database shown in Fig. 9 is an example and is not intended to limit the items to be stored. For example, the account creation date and time, etc. may be stored in the account management database.
[0090] In addition, the account management unit 202 obtains the login information for the user to log in to the portal site from the user's terminal 40. The account management unit 202 performs authentication using the login information.
[0091] The service provider management unit 203 is a means for managing service providers (service businesses) participating in the authentication system. The service provider management unit 203 obtains the business information to be registered in the system (name of the service provider, business type, location, address of the service server 20, etc.) from the employees of each service provider.
[0092] For example, the service provider management unit 203 may provide each service provider with an interface for inputting business information, etc. Alternatively, each service provider may send a USB (Universal Serial Bus) memory, etc. storing the business information, etc. to the authentication center. The service provider management unit 203 may obtain the business information, etc. from the employees of the authentication center.
[0093] The service provider management unit 203 generates an ID (service provider ID) for the service provider that has obtained the business information, etc. The service provider management unit 203 stores the generated service provider ID, the obtained business information, etc. in association with each other.
[0094] The personal authentication control unit 204 is a means for controlling the user's personal authentication. The personal authentication control unit 204 performs the personal authentication of a user who wishes to register with the system as an authenticated user. The personal authentication control unit 204 manages the user type of a user who has successfully passed the personal authentication as "authenticated user". The personal authentication control unit 204 manages the user type of a user who has not successfully passed the personal authentication (a user who has not undergone personal authentication) as "ordinary user".
[0095] The personal authentication control unit 204 receives a notification from the account management unit 202 that the user wishes to generate an account as an authenticated user. Upon recognizing the user's wish (the wish regarding registration as an authenticated user) from the notification, the personal authentication control unit 204 transmits a "personal authentication information provision request" to the terminal 40 of the user.
[0096] The personal authentication control unit 204 receives a response (positive response, negative response) to the personal authentication information provision request.
[0097] When a negative response is received (when an electronic certificate as personal authentication information cannot be obtained), the personal authentication control unit 204 notifies the user that registration as an authenticated user is not possible.
[0098] When a positive response is received (when an electronic certificate as personal authentication information is obtained), the personal authentication control unit 204 transmits the electronic certificate read from the user's My Number card to the certification authority server 50.
[0099] The personal authentication control unit 204 receives the verification result of the electronic certificate from the certification authority server 50.
[0100] When verification failure (the electronic certificate is invalid) is received, the personal authentication control unit 204 notifies the user that registration as an authenticated user is not possible. In this case, the personal authentication control unit 204 notifies the user that the user is registered as an ordinary user and that there are restrictions on the services that can be received.
[0101] When receiving verification success (the electronic certificate is valid), the personal verification control unit 204 notifies the user that they are registered as an authenticated user. In this case, the personal verification control unit 204 notifies the user that they are registered as an authenticated user and can receive more services than ordinary users.
[0102] In addition, the personal verification control unit 204 manages users who have successfully passed personal verification as authenticated users. The personal verification control unit 204 registers users determined to have successfully passed personal verification as authenticated users in the account management database.
[0103] Note that the initial value of the user type stored in the account management database is "ordinary user".
[0104] In this way, the personal verification control unit 204 uses the electronic certificate obtained from the user's first certificate (My Number Card) to verify the identity of users who wish to register in the system as authenticated users.
[0105] The service selection control unit 205 is a means for controlling the selection of biometric authentication services (service providers) by the user. The service selection control unit 205 enables the user to select a service provider from among a plurality of service providers that provide services using biometric authentication for which the user wishes to receive the service.
[0106] When the user operates the terminal 40 to log in to the portal site and performs a predetermined operation on the portal site, the service selection control unit 205 displays, for example, a GUI as shown in FIG. 10 on the terminal 40.
[0107] When displaying the above GUI, the service selection control unit 205 performs a display that can distinguish between service providers that the user has already selected and service providers that have not been selected. In the example of FIG. 10, service providers with a check mark in the upper right corner of the icon indicating the service provider are service providers that have already been selected, and service providers without a check mark are service providers that have not been selected.
[0108] Note that the service selection control unit 205 uses the information registered in the operator information and account management database to display a GUI as shown in FIG. 10. Specifically, the service selection control unit 205 refers to the operator information and generates a list of service providers that have concluded contracts with the authentication center. In addition, the service selection control unit 205 refers to the selected service field of the account management database and acquires the service provider (the operator ID of the service provider) that the user has selected.
[0109] In addition, when displaying the list of service providers, the service selection control unit 205 may also provide the user with more detailed information about each service provider (for example, industry type, services provided, location of the store, etc.).
[0110] The service selection control unit 205 delivers the information of the service provider selected by the user (for example, the operator ID of the service provider for which user registration is desired) to the user registration control unit 206.
[0111] The user registration control unit 206 is a means for controlling "user registration" by the control server 10. The user registration control unit 206 controls "user registration" that enables the service provider selected by the user to provide the user with services using biometric authentication.
[0112] When the user selects a service provider, the user registration control unit 206 sends a "document original provision request" to the terminal 40 held by the user. The user registration control unit 206 receives the original biometric information (for example, face image) of the user from the terminal 40.
[0113] The user registration control unit 206 sends a user registration request including the user's system ID, user type, original biometric information, personal identification information, etc. to the service server 20 of the service provider corresponding to the service selected by the user.
[0114] Note that the user registration control unit 206 obtains the system ID, user type, and personal identification information (e.g., name or a combination of name and date of birth) from the account management database.
[0115] The user registration control unit 206 receives a response (positive response, negative response) to the user registration request.
[0116] When a positive response (successful user registration) is received, the user registration control unit 206 registers the business operator ID of the service provider selected by the user in the account management database. Also, when a positive response is received, the user registration control unit 206 notifies the user that the user registration for the selected service provider has been successful.
[0117] When a negative response (failed user registration) is received, the user registration control unit 206 notifies the user to that effect.
[0118] In this way, the user registration control unit 206 notifies the service provider selected by the user of the original biometric information that serves as the original of the authentication information used for biometric authentication and the user type. More specifically, the user registration control unit 206 obtains the original biometric information by requesting the user's terminal 40 to provide the original biometric information. The user registration control unit 206 transmits a user registration request including at least the obtained original biometric information and the user type to the service server 20 of the service provider selected by the user.
[0119] The storage unit 207 is a means for storing information necessary for the operation of the control server 10.
[0120] [Service Server] FIG. 11 is a diagram showing an example of the processing configuration (processing modules) of the service server 20 according to the first embodiment. Referring to FIG. 11, the service server 20 includes a communication control unit 301, a business information management unit 302, a user registration control unit 303, an authentication unit 304, and a storage unit 305.
[0121] The communication control unit 301 is a means for controlling communication with other devices. For example, the communication control unit 301 receives data (packets) from the control server 10. Also, the communication control unit 301 transmits data to the control server 10. The communication control unit 301 delivers the data received from other devices to other processing modules. The communication control unit 301 transmits the data acquired from other processing modules to other devices. In this way, other processing modules perform data transmission and reception with other devices via the communication control unit 301. The communication control unit 301 has a function as a receiving unit that receives data from other devices and a function as a transmitting unit that transmits data to other devices.
[0122] The business information management unit 302 is a means for managing and controlling business information necessary for a service provider to provide services.
[0123] The business information management unit 302 acquires business information necessary for the service provision of its own company or organization using any means. For example, the business information management unit 302 of the user's workplace company acquires information such as the name, date of birth, employee number, department affiliation, and work location of employees as business information.
[0124] The business information management unit 302 may acquire the above business information from employees of the service provider or the like, or may directly acquire business information from users using means such as a homepage.
[0125] The business information management unit 302 manages business information using a user management database.
[0126] Note that a more detailed description of the business information management unit 302 is omitted. This is because the details of business information in individual services and the method of acquiring it are different from the gist of the present application disclosure.
[0127] The user registration control unit 303 is a means for controlling user registration by a service provider. The user registration control unit 303 processes a user registration request received from the control server 10.
[0128] When receiving a user registration request, the user registration control unit 303 searches the user management database using the personal identification information (e.g., name) included in the user registration request as a key, and identifies the corresponding user (entry).
[0129] If the corresponding user is registered in the user management database, the user registration control unit 303 generates registration authentication information from the acquired original biometric information (e.g., face image). For example, when acquiring a face image, the user registration control unit 303 generates a feature amount (feature vector) corresponding to the face recognition algorithm adopted by the company as the registration authentication information.
[0130] Regarding the generation process of the feature amount, existing technologies can be used, so detailed description thereof is omitted. For example, the user registration control unit 303 extracts eyes, nose, mouth, etc. from the face image as feature points. Then, the user registration control unit 303 calculates the positions of each feature point and the distances between each feature point as feature amounts, and generates a feature vector (vector information characterizing the face image) composed of a plurality of feature amounts.
[0131] After generating the registration authentication information (e.g., feature amount), the user registration control unit 303 associates the system ID, the generated registration authentication information (feature amount), the user type, and the business information, and stores them in the user management database (see FIG. 12).
[0132] Note that the user management database shown in FIG. 12 is an example, and is not intended to limit the items to be stored. For example, the date and time of user registration etc. may be registered in the user management database.
[0133] When the user registration is successfully completed, the user registration control unit 303 sends an affirmative response indicating that the user registration has been successful to the control server 10. Note that when the user registration control unit 303 generates the registration authentication information (e.g., feature amount) and registers the generated registration authentication information in the user management database, it deletes the original biometric information acquired from the control server 10.
[0134] If the user registration does not end normally, the user registration control unit 303 sends a negative response indicating that the user registration has failed to the control server 10. For example, when the personal identification information (e.g., name) received from the control server 10 is not registered in the user management database, or when valid registration authentication information cannot be generated from the original biometric information, etc., a negative response is sent to the control server 10.
[0135] The authentication unit 304 is a means for performing biometric authentication of the person to be authenticated.
[0136] FIG. 13 is a flowchart showing an example of the operation of the authentication unit 304 according to the first embodiment. With reference to FIG. 13, the operation of the authentication unit 304 will be described.
[0137] When receiving an authentication request from the authentication terminal 30, the authentication unit 304 executes a collation process using biometric information (step S101).
[0138] Specifically, the authentication unit 304 generates collation authentication information from the biometric information included in the authentication request. For example, when acquiring a face image, the authentication unit 304 generates feature amounts corresponding to the face authentication algorithm adopted by the company. The authentication unit 304 executes a collation process using the generated collation authentication information (feature amounts) and the registration authentication information (feature amounts) registered in the user management database.
[0139] Specifically, the authentication unit 304 calculates the similarity between the feature amounts (feature vectors) to be collated and each of the plurality of feature amounts on the registration side. For the similarity, the chi-square distance, the Euclidean distance, etc. can be used. Note that the greater the distance, the lower the similarity, and the closer the distance, the higher the similarity.
[0140] If there is no feature quantity with a similarity equal to or higher than a predetermined value, the authentication unit 304 determines that the collation process has failed. If there is a feature quantity with a similarity equal to or higher than a predetermined value, the authentication unit 304 determines that the collation process has succeeded. When the collation process succeeds, among the plurality of entries registered in the user management database, the user of the entry having the feature quantity (registered authentication information) with the highest similarity is identified as the authenticated person.
[0141] When the collation process fails (branching to No in step S102), the authentication unit 304 ends the process. In this case, the authentication unit 304 may notify the authentication terminal 30 that the authentication has failed. Alternatively, the authentication unit 304 may store, as a log, the fact that the collation process has failed and the details of the collation process in order to confirm the soundness of the face authentication.
[0142] When the collation process succeeds (branching to Yes in step S102), the authentication unit 304 determines whether or not the service can be provided to the authenticated person by using the service information to be provided included in the authentication request and the user type of the authenticated person identified by the collation process. Note that the authentication unit 304 executes the determination by using the accompanying information of the service information to be provided as necessary. The authentication unit 304 determines whether or not the service can be provided according to the user type (step S103).
[0143] For example, the authentication unit 304 refers to table information in which it is stored whether or not registration as an authenticated user is required for each service.
[0144] If the service desired by the authenticated person is a service that can be provided to both normal users and authenticated users, the authentication unit 304 determines that the service can be provided.
[0145] If the service desired by the authenticated person is a service that can be provided only to authenticated users, the authentication unit 304 determines that the service can be provided when the user identified by the collation process is an authenticated user. On the other hand, when the user identified by the collation process is a normal user, the authentication unit 304 determines that the service cannot be provided. For example, with respect to a service such as "issue of a family register", the authentication unit 304 determines that the service can be provided only to authenticated users.
[0146] In this way, the authentication unit 304 determines whether the service desired by the person to be authenticated can be provided according to the user type (ordinary user, authenticated user) selected by the user.
[0147] When the service cannot be provided (branch at step S104, No), the authentication unit 304 sets "authentication failed" in the authentication result (step S105).
[0148] When the service can be provided (branch at step S104, Yes), the authentication unit 304 determines whether the service can be provided to the person to be authenticated by using the business information of the person to be authenticated identified by the collation process. The authentication unit 304 determines whether the service can be provided based on the business information (step S106).
[0149] For example, the authentication unit 304 of the service server 20 of the company where an employee works determines that the service can be provided if the person to be authenticated is an employee of the company and has the qualification to enter the office. Alternatively, the authentication unit 304 of the service server 20 of the city hall that has received a request for issuing a resident register determines that the service can be provided if the resident register of the person to be authenticated can be issued. Alternatively, the authentication unit 304 of the service server 20 of a retail store or the like determines that the service can be provided when the settlement of the product price using credit card information or the like is successful.
[0150] Note that a more detailed description of the authentication process using the business information in each service provider is omitted. This is because the processing specific to each service provider is different from the gist of the present disclosure.
[0151] When the service cannot be provided (branch at step S107, No), the authentication unit 304 sets "authentication failed" in the authentication result (step S105).
[0152] When the service can be provided (branch at step S107, Yes), the authentication unit 304 sets "authentication successful" in the authentication result (step S108).
[0153] The authentication unit 304 transmits the authentication result (authentication success, authentication failure) to the authentication terminal 30 (step S109).
[0154] In the case of authentication failure, the authentication unit 304 transmits a negative response indicating that to the authentication terminal 30.
[0155] In the case of authentication success, the authentication unit 304 transmits an affirmative response indicating that to the authentication terminal 30. At that time, the authentication unit 304 transmits an affirmative response including information necessary to provide services to the user to the authentication terminal 30 as needed. In the above example of issuing a family register, the information necessary to issue (print) the family register is transmitted to the authentication terminal 30.
[0156] The storage unit 305 is a means for storing information necessary for the operation of the service server 20.
[0157] [Authentication Terminal] FIG. 14 is a diagram showing an example of the processing configuration (processing modules) of the authentication terminal 30 according to the first embodiment. Referring to FIG. 14, the authentication terminal 30 includes a communication control unit 401, a provided service control unit 402, an authentication request unit 403, and a storage unit 404.
[0158] The communication control unit 401 is a means for controlling communication with other devices. For example, the communication control unit 401 receives data (packets) from the service server 20. Also, the communication control unit 401 transmits data to the service server 20. The communication control unit 401 delivers the data received from other devices to other processing modules. The communication control unit 401 transmits the data acquired from other processing modules to other devices. In this way, other processing modules perform data transmission and reception with other devices via the communication control unit 401. The communication control unit 401 has a function as a receiving unit for receiving data from other devices and a function as a transmitting unit for transmitting data to other devices.
[0159] The service providing control unit 402 is a means for executing control related to the services provided to the user. The service providing control unit 402 realizes the functions assigned to the authentication terminal 30.
[0160] When the user wishes to enjoy the service, the service providing control unit 402 acquires the biometric information (e.g., face image) of the user (the authenticated person). For example, the service providing control unit 402 images the front of its own device at regular intervals or at a predetermined timing. The service providing control unit 402 determines whether the acquired image contains a human face image, and if it does, extracts the face image from the acquired image data.
[0161] Note that since existing technologies can be used for the face image detection process and the face image extraction process by the service providing control unit 402, detailed explanations are omitted. For example, the service providing control unit 402 may extract a face image (face region) from the image data using a learning model learned by a CNN (Convolutional Neural Network). Alternatively, the service providing control unit 402 may extract a face image using a method such as template matching.
[0162] Furthermore, the service providing control unit 402 generates or acquires service providing information. The service providing control unit 402 acquires service providing information corresponding to the functions assigned to the authentication terminal 30, the services selected by the user, etc.
[0163] For example, when the service providing control unit 402 of the authentication terminal 30 installed at the entrance of an office detects a user in front of its own device, it generates "facility entry" as service providing information. Alternatively, when the service providing control unit 402 of the authentication terminal 30 installed at a city hall or the like recognizes that the user wishes to issue a family register using a GUI or the like, it generates "family register issuance" as service providing information.
[0164] The service providing control unit 402 delivers the acquired biometric information (e.g., face image) and service providing information to the authentication request unit 403.
[0165] The authentication request unit 403 is a means for requesting authentication of the person to be authenticated from the service server 20. When authentication of the person to be authenticated is required, the authentication request unit 403 transmits an authentication request including the biometric information of the person to be authenticated (the user in front of the authentication terminal 30) and service providing information to the service server 20.
[0166] The authentication request unit 403 receives an authentication result (authentication success, authentication failure) from the service server 20. The authentication request unit 403 delivers the received authentication result to the service providing control unit 402.
[0167] For example, when the service providing control unit 402 of the authentication terminal 30 installed at the user's workplace receives authentication success, it opens the gate and permits the person to be authenticated to enter. Alternatively, when the service providing control unit 402 of the authentication terminal 30 installed at the city hall receives an affirmative response as a response to an authentication request regarding "issuance of a family register certificate", it issues a family register certificate using the information included in the affirmative response (information for issuing a family register certificate).
[0168] In addition, by registering as an authenticated user in the system, the user can enter a facility that requires identity verification using a My Number card, such as a casino, by biometric authentication (so-called, enter by face pass).
[0169] When receiving authentication failure, the service providing control unit 402 may output a predetermined message or the like. For example, when the service providing control unit 402 of the authentication terminal 30 installed at the city hall receives authentication failure regarding issuance of a family register certificate, it may guide to a booth or the like where a staff member is waiting.
[0170] Note that a more detailed description of the service providing control unit 402 included in the authentication terminal 30 of each service provider is omitted. This is because the realization of the functions of the authentication terminal 30 by the service providing control unit 402 is different from the gist of the present disclosure.
[0171] The memory unit 404 is a means for storing information necessary for the operation of the authentication terminal 30.
[0172] [Terminal] FIG. 15 is a diagram showing an example of the processing configuration (processing modules) of the terminal 40 according to the first embodiment. Referring to FIG. 15, the terminal 40 includes a communication control unit 501, an account generation control unit 502, an original information acquisition unit 503, an identity verification control unit 504, a service selection unit 505, and a memory unit 506.
[0173] The communication control unit 501 is a means for controlling communication with other devices. For example, the communication control unit 501 receives data (packets) from the control server 10. Also, the communication control unit 501 transmits data to the control server 10. The communication control unit 501 delivers the data received from other devices to other processing modules. The communication control unit 501 transmits the data acquired from other processing modules to other devices. In this way, other processing modules perform data transmission and reception with other devices via the communication control unit 501. The communication control unit 501 has a function as a receiving unit for receiving data from other devices and a function as a transmitting unit for transmitting data to other devices.
[0174] The account generation control unit 502 is a means for controlling account generation by the user. The account generation control unit 502 accesses a predetermined web page or the like provided by the control server 10 in response to the user's operation.
[0175] The account generation control unit 502 inputs login information, name, date of birth, etc. to the web page in response to the user's operation. Also, the account generation control unit 502 inputs the user's preference regarding the user type (for example, account registration as an authenticated user) to the web page.
[0176] The original information acquisition unit 503 is a means for acquiring the user's biometric information (original biometric information). The original information acquisition unit 503 displays a GUI or the like for acquiring the original biometric information (for example, a face image) in response to the user's operation. For example, the original information acquisition unit 503 acquires the original biometric information using a GUI as shown in FIG. 16.
[0177] The original information acquisition unit 503 stores the acquired original biometric information (for example, a face image) in the storage unit 506. At that time, the original information acquisition unit 503 may perform encryption, coding, etc. on the acquired original biometric information and store the encrypted original biometric information in the storage unit 506. That is, the terminal 40 possessed by the user may hold the encrypted original biometric information. The encrypted original biometric information may be decrypted when the original biometric information is transmitted to the control server 10. Alternatively, information (for example, a common key) for decrypting the encrypted original biometric information may be shared between the terminal 40 and the control server 10, and the control server 10 may decrypt the encrypted original biometric information.
[0178] In principle, the terminal 40 does not delete the user's original biometric information (for example, a face image). That is, the terminal 40 does not delete the original biometric information stored in the storage unit 506 without a clear instruction from the user.
[0179] The identity verification control unit 504 is a means for executing control related to identity verification necessary for system registration as an authenticated user. The identity verification control unit 504 processes the "identity verification information provision request" received from the control server 10.
[0180] When receiving an identity verification information provision request from the control server 10, the identity verification control unit 504 acquires an electronic certificate from the user's My Number card. At that time, it is necessary to input a password corresponding to the electronic certificate. The identity verification control unit 504 displays a GUI as shown in FIG. 17 and acquires a password (a character string mixed with 6 to 16 alphanumeric characters).
[0181] The personal authentication control unit 504 attempts to read an electronic certificate (electronic signature certificate) from the IC chip of the My Number card using the obtained PIN. If the correct PIN is entered, the personal authentication control unit 504 can read the electronic certificate.
[0182] When the electronic certificate is successfully obtained, the personal authentication control unit 504 transmits an affirmative response containing the said electronic certificate as "personal authentication information" to the control server 10.
[0183] When the electronic certificate (personal authentication information) cannot be obtained, the personal authentication control unit 504 transmits a negative response indicating so to the control server 10.
[0184] The service selection unit 505 is a means that enables the user to select a biometric authentication service. The service selection unit 505 logs in to the portal site provided by the control server 10 according to the user's operation. The service selection unit 505 transmits the information of the service provider selected by the user to the control server 10 using the GUI provided by the control server 10.
[0185] The service selection unit 505 receives a request for original document provision from the control server 10. Upon receiving the request, the service selection unit 505 transmits the original biometric information stored in the storage unit 506 to the control server 10.
[0186] The storage unit 506 is a means for storing information necessary for the operation of the terminal 40.
[0187] [Certification Authority Server] Detailed descriptions regarding the configuration and operation of the certification authority server 50 are omitted. The certification authority server 50 only needs to determine the validity of the obtained electronic certificate and notify the control server 10 of the determination result (the electronic certificate is valid or invalid).
[0188] [System Operation] Next, the operation of the authentication system according to the first embodiment will be described. Note that the description of operations related to account generation and the like will be omitted. FIG. 18 is a sequence diagram showing an example of the operation of the authentication system according to the first embodiment.
[0189] The terminal 40 transmits information on the service selected by the user (information on the service provider for which the user wants to receive the biometric authentication service) to the control server 10 (transmit service information; step S21).
[0190] When the user selects the service to be received, the control server 10 transmits an original document provision request to the terminal 40 of the user (step S22).
[0191] In response to receiving the original document provision request, the terminal 40 transmits original biometric information (for example, a face image) to the control server 10 (step S23).
[0192] The control server 10 transmits a user registration request including the system ID, user type, acquired original biometric information, personal identification information, etc. to the service server 20 of the service provider selected by the user (step S24).
[0193] The service server 20 generates registration authentication information (registration authentication information) from the acquired original biometric information (step S25). The generated registration authentication information and the like are registered in the user management database.
[0194] Next, a modification example according to the first embodiment will be described.
[0195] <Modification Example 1 According to the First Embodiment> The user may select a service provider using a predetermined code. For example, an administrative code that enables the user to easily specify a service selector from among a large number of service providers may be used. For example, when the user selects a predetermined icon in the list of icons shown in FIG. 10, the control server 10 displays a GUI that requests input of an administrative code. The control server 10 treats the service provider corresponding to the administrative code input by the user as the service provider selected by the user.
[0196] Alternatively, the control server 10 may treat the administrative code input by the user like a password. Specifically, when the user selects a service provider, the control server 10 requests the user to input the administrative code of the selected service provider. The control server 10 may accept the user's selection of the service provider if the administrative code input by the user matches the predetermined administrative code of the selected service provider. In other words, the control server 10 rejects the user's selection of the service provider if the two administrative codes do not match.
[0197] <Modification Example 2 According to the First Embodiment> In the above embodiment, the case where the service provider (service server 20) identifies the user using personal identification information during user registration has been described. However, the selection of the user may be made using an ID (hereinafter referred to as an individual ID) by which the service provider manages the user (customer).
[0198] Specifically, when the user selects a service provider, the control server 10 transmits a redirect URL (Uniform Resource Locator) embedded with the user's system ID and user type to the terminal 40. The redirect URL is a URL for logging in to the portal site (account) of the service provider selected by the user.
[0199] When the user logs in to the service provider's login page according to the received redirect URL, the service server 20 acquires the user's individual ID (login ID), the system ID embedded in the redirect URL, and the user type.
[0200] The service server 20 searches the user management database using the acquired individual ID and identifies the corresponding entry (user). The service server 20 stores the system ID and the user type in the identified entry.
[0201] In this way, user registration may be realized by using a redirect URL embedded with the system ID and the user type.
[0202] <Modification Example 3 According to the First Embodiment> In the above embodiment, the case where the user selects the user type (ordinary user, authenticated user) at the time of generating the system account has been described. However, the user type may be changed after the generation of the system account.
[0203] In this case, when the user logs in to the system account and performs a predetermined operation (for example, pressing an authenticated user registration button), the control server 10 performs control regarding the authentication of the user. Specifically, the control server 10 (the authentication control unit 204) acquires the authentication information (electronic certificate) by transmitting a request for providing authentication information to the terminal 40.
[0204] If the acquired electronic certificate is valid, the authentication control unit 204 notifies each service provider for which user registration has been completed of the change in the user type regarding the user. Specifically, the authentication control unit 204 transmits a "user type change notification" including the system ID and the changed user type (authenticated user) to the service server 20 of each service provider set in the selected service field of the account management database.
[0205] The service server 20 (user registration control unit 303) searches the user management database using the acquired system ID as a key and identifies the corresponding entry. The user registration control unit 303 sets the authenticated user in the user type field of the identified entry.
[0206] When the user wishes to change the user type from an authenticated user to a normal user, the control server 10 may send a "user type change notification" including the system ID and the changed user type (normal user) to the service server 20 of each service provider selected by the user.
[0207] <Modification Example 4 according to the First Embodiment> The control server 10 or the terminal 40 may notify the user of the state of the user type by any means. That is, the terminal 40 possessed by the user may perform a display according to the user type of the user (normal user, authenticated user).
[0208] For example, when logging in to the system account, the control server 10 may display the state of the user type on the portal site of the user. For example, the control server 10 (account management unit 202) may perform a display as shown in FIG. 19 on the terminal 40. In FIG. 19, the user type is displayed in characters, but the control server 10 can display the user type by any method or mode. For example, the control server 10 may display and distinguish the user type by a graphic (icon), symbol, blinking of the icon, etc.
[0209] Alternatively, the terminal 40 acquires the user type from the control server 10 and stores the acquired user type. The terminal 40 may display an icon or the like corresponding to the user type on a standby screen, a menu screen, or the like.
[0210] <Modification Example 5 according to the First Embodiment> The control server 10 may perform identity verification using a certificate different from the My Number Card. For example, the control server 10 (identity verification control unit 204) may perform identity verification using a certificate with a face photo attached, such as a driver's license or a passport.
[0211] When the terminal 40 (identity verification control unit 504) receives a request for providing identity verification information from the control server 10, it acquires image data obtained by photographing the user (so-called self-photographing) and image data obtained by photographing a driver's license or the like. The terminal 40 transmits the two acquired image data to the control server 10 as identity verification information.
[0212] The control server 10 executes one-to-one authentication using the photographed face image of the user and the certificate face image described in the certificate. If the one-to-one authentication is successful, the control server 10 determines that the identity verification is successful. If the one-to-one authentication fails, the control server 10 determines that the identity verification fails.
[0213] When the identity verification is successful, the control server 10 treats the user as an authenticated user.
[0214] As described above, in the first embodiment, in an authentication system in which the user himself / herself manages the original biometric information (e.g., face image) necessary for providing a service using biometric authentication, the identity verification of the user is performed using a certificate such as a My Number Card. Authenticated users who have completed identity verification are treated differently from normal users who have not completed identity verification. Authenticated users can receive services beyond those provided to normal users. For example, authenticated users can enjoy services that originally require identity verification using a My Number Card or the like (services that require identity verification by staff, etc.) through biometric authentication. As a result, the convenience of the user (authenticated user) is improved, and the work efficiency of the service provider (the local government in the above example) is improved. In addition, services using biometric authentication are provided within a limited range even to users who are hesitant to perform identity verification using a My Number Card or the like.
[0215] [Second Embodiment] Next, the second embodiment will be described in detail with reference to the drawings.
[0216] In the second embodiment, a case will be described in which age information (date of birth) of an authenticated user is notified from the control server 10 to the service provider (service server 20) at the time of user registration. The service server 20 according to the second embodiment determines whether to provide a service based on the age of the authenticated user.
[0217] Note that since the configuration of the authentication system according to the second embodiment can be the same as that of the first embodiment, the description corresponding to FIG. 3 is omitted. Also, since the processing configuration of the control server 10 and the like according to the second embodiment can be the same as that of the first embodiment, the description thereof is omitted.
[0218] Hereinafter, the description will focus on the differences between the first embodiment and the second embodiment.
[0219] When the user wishes to enjoy the service as an authenticated user, the control server 10 (personal confirmation control unit 204) acquires the user's date of birth from the signature electronic certificate. Note that the signature electronic certificate includes so-called basic four information (name, gender, address, date of birth). The personal confirmation control unit 204 stores the acquired date of birth in the account management database.
[0220] The control server 10 (user registration control unit 206) transmits a "user registration request" including the system ID, user type, date of birth, original biometric information, and personal identification information, etc. to the service server 20 when registering the user for the service provider selected by the user.
[0221] The service server 20 (user registration control unit 303) stores the acquired system ID, user type, date of birth, etc. in the user management database.
[0222] The service server 20 (authentication unit 304) uses the date of birth (age) of the user (the person to be authenticated) when authenticating the user.
[0223] Figure 20 is a flowchart showing an example of the operation of the authentication unit 304 according to the second embodiment. For processes that can have the same processing content in FIGS. 13 and 20, the same reference numerals are given and the description thereof is omitted.
[0224] Here, among the services provided to users, there are services that require age verification. For example, there are age restrictions for purchasing goods such as alcohol and tobacco. The authentication unit 304 determines whether service provision to the user is possible based on the user's age (step S201).
[0225] For example, the authentication unit 304 refers to table information in which the presence or absence of age restrictions and the lower limit value of the age at which the service can be provided are described for each service.
[0226] If the service desired by the user is a service that does not require age verification, the authentication unit 304 determines that service provision is possible.
[0227] If the service desired by the user is a service that requires age verification, the authentication unit 304 calculates the age from the date of birth specified by the collation process, and determines whether the user's age has reached a predetermined age defined as a requirement for service provision.
[0228] If the age of the user (the person to be authenticated) has reached the predetermined age, the authentication unit 304 determines that service provision is possible. On the other hand, if the age of the user (the person to be authenticated) has not reached the predetermined age, the authentication unit 304 determines that service provision is not possible.
[0229] When it is determined that service provision is not possible based on the user's age (step S202, No branch), the authentication unit 304 sets authentication failure in the authentication result (step S105).
[0230] When it is determined that service provision is possible based on the user's age (step S202, Yes branch), the authentication unit 304 makes a determination based on business information (step S106).
[0231] Note that the service server 20 may utilize the age of the authenticated person at the time of service provision. If the authenticated person is of a predetermined age or older (for example, 60 years old or older), the service server 20 may provide a discount on the fee. That is, the service server 20 may implement a silver discount (senior discount) or the like using the age of the authenticated person.
[0232] As described above, when the control server 10 according to the second embodiment succeeds in authenticating the user, it acquires the date of birth from the electronic certificate of the authenticated user who has succeeded in the authentication. The control server 10 further notifies the service provider selected by the user of the acquired date of birth in addition to the system ID, user type, original biometric information, etc. Since the service provider can determine whether to provide a service with an age limit based on the age obtained from the My Number card (electronic certificate for signature), it can provide the service with confidence. In addition, the user can purchase alcohol, tobacco, etc. by biometric authentication without presenting a certificate such as a My Number card to a store clerk or the like for age confirmation. That is, the convenience of the user is improved. In addition, since a retail store or the like does not need to secure a store clerk for user authentication, the business efficiency is improved.
[0233] [Third Embodiment] Subsequently, the third embodiment will be described in detail with reference to the drawings.
[0234] In the third embodiment, a case will be described in which the user provides a second certificate other than the first certificate (for example, My Number card) for registration as an authenticated user to the system. The control server 10 according to the third embodiment notifies the service provider of attribute information such as the status, position, situation, state, skill, qualification, etc. of the user obtained from the second certificate. The service provider authenticates the user or provides a service based on the notified attribute information.
[0235] Note that since the configuration of the authentication system according to the third embodiment can be the same as that of the first embodiment, the description corresponding to FIG. 3 is omitted.
[0236] Hereinafter, the differences among the first to third embodiments will be mainly described.
[0237] When registering a user as an authenticated user, for example, at the time of account generation, the control server 10 acquires attribute information from a certificate different from the certificate (identity verification document; My Number Card) for registering the user. Specifically, the control server 10 acquires the attribute information from a certificate that proves the user's status, position, situation, state, skills, qualifications, etc.
[0238] For example, a student ID that proves the user is a student, a disability handbook that proves the user is a person with a disability, a driver's license that proves the user can drive a vehicle, etc., and an identity certificate that proves the user has a specific qualification (e.g., a doctor, etc.) correspond to the above-mentioned certificates. Alternatively, a health insurance card is also included in the above-mentioned certificates.
[0239] FIG. 21 is a diagram showing an example of the processing configuration (processing module) of the control server 10 according to the third embodiment. Referring to FIG. 21, an attribute information acquisition unit 208 is added to the configuration of the control server 10 according to the first embodiment.
[0240] The attribute information acquisition unit 208 is a means for acquiring attribute information from a second certificate different from the first certificate used for identity verification for authenticated user registration.
[0241] When the user wishes to register a student ID, a disability handbook, etc. on the portal site at the time of system account generation or after system account generation, the attribute information acquisition unit 208 acquires image data showing the student ID, etc. using a GUI or the like.
[0242] The attribute information acquisition unit 208 extracts information such as the name and date of birth described on a student ID card or the like from the acquired image data. For example, the attribute information acquisition unit 208 uses OCR (Optical Character Recognition) technology or the like to acquire the name, date of birth, etc. described on a student ID card or the like.
[0243] The attribute information acquisition unit 208 compares the name, date of birth, etc. obtained from the second certificate (student ID card, disability handbook, etc.) with the name, date of birth, etc. of the user (the authenticated user for whom identity verification has been completed), and determines that a legitimate certificate has been registered when the two match.
[0244] When it is determined that the certificate is legitimate, the attribute information acquisition unit 208 acquires attribute information such as the user's status, position, and situation from the second certificate (student ID card, disability handbook, etc.). For example, the attribute information acquisition unit 208 acquires the attribute information by inputting the image data in which the certificate appears into the learning model.
[0245] Note that the learning model is generated by performing machine learning using teacher data in which labels (status, position, situation, etc.) are assigned to the image data. Any algorithm such as a support vector machine, boosting, or a neural network can be used to generate the learning model. Since the algorithms such as the support vector machine use known technologies, their descriptions are omitted.
[0246] When acquiring the user's attribute information from the second certificate, the attribute information acquisition unit 208 stores the acquired attribute information in the account management database.
[0247] When registering a user regarding the service provider selected by the user, the control server 10 (user registration control unit 206) transmits a "user registration request" including a system ID, user type, attribute information, original biometric information, and personal identification information, etc. to the service server 20.
[0248] The service server 20 (user registration control unit 303) stores the acquired system ID, user type, and attribute information in the user management database.
[0249] The service server 20 (authentication unit 304) performs authentication processing or confers a predetermined privilege using the attribute information (status, position, situation, skills, qualifications, etc.) of the authenticated person registered in the user management database.
[0250] For example, if the authenticated person is a student, the service server 20 may sell a discounted monthly pass or the like to the authenticated person. Alternatively, if the authenticated person is a person with a disability, the service server 20 may discount the fares of buses, trains, etc. Alternatively, if the authenticated person has purchased a silver pass, the service server 20 may discount the fares of buses, trains, etc.
[0251] <Modification Example of the Third Embodiment> The control server 10 may acquire information from documents other than the certificate for acquiring the user's attribute information, and notify the acquired information to the service provider.
[0252] For example, the control server 10 may accept the registration of a medicine notebook from the user, and acquire information regarding the user's medication (medication information) from the medicine notebook. The control server 10 may notify the service provider of the medication information together with the original biometric information, etc. at the time of user registration.
[0253] The service provider (for example, a hospital, a pharmacy) may utilize the acquired medication information for the treatment, medication guidance, etc. of the user (patient).
[0254] As described above, the control server 10 according to the third embodiment acquires the attribute information of the user from the user's second certificate (for example, student ID card, disability certificate). The control server 10 further notifies the service provider selected by the user of the acquired attribute information in addition to the original biometric information, user type, etc. The service provider can authenticate the authenticated person or provide services based on the attribute information obtained from certificates such as student ID cards and disability certificates. The user does not need to present the certificate to the staff or clerks of the service provider in order to receive the benefits obtained by having the certificate. Therefore, the convenience of the user is improved. In addition, since the service provider does not need to secure personnel for certificate confirmation, the work efficiency is improved.
[0255] Subsequently, the hardware of each device constituting the authentication system will be described. FIG. 22 is a diagram showing an example of the hardware configuration of the control server 10.
[0256] The control server 10 can be configured by an information processing device (so-called computer) and has the configuration exemplified in FIG. 22. For example, the control server 10 includes a processor 311, a memory 312, an input / output interface 313, a communication interface 314, and the like. The components such as the processor 311 are connected by an internal bus or the like and are configured to communicate with each other.
[0257] However, the configuration shown in FIG. 22 is not intended to limit the hardware configuration of the control server 10. The control server 10 may include hardware not shown, or may not include the input / output interface 313 as necessary. Also, the number of components such as the processor 311 included in the control server 10 is not intended to be limited to the example shown in FIG. 22. For example, a plurality of processors 311 may be included in the control server 10.
[0258] The processor 311 is a programmable device such as a CPU (Central Processing Unit), MPU (Micro Processing Unit), DSP (Digital Signal Processor), etc. Alternatively, the processor 311 may be a device such as an FPGA (Field Programmable Gate Array), ASIC (Application Specific Integrated Circuit), etc. The processor 311 executes various programs including an operating system (OS; Operating System).
[0259] The memory 312 is a RAM (Random Access Memory), ROM (Read Only Memory), HDD (Hard Disk Drive), SSD (Solid State Drive), etc. The memory 312 stores an OS program, application programs, and various data.
[0260] The input / output interface 313 is an interface for a display device and an input device (not shown). The display device is, for example, a liquid crystal display, etc. The input device is a device that receives user operations such as a keyboard and a mouse, etc.
[0261] The communication interface 314 is a circuit, module, etc. that communicates with other devices. For example, the communication interface 314 includes a NIC (Network Interface Card), etc.
[0262] The functions of the control server 10 are realized by various processing modules. The processing modules are realized, for example, by the processor 311 executing a program stored in the memory 312. Further, the program can be recorded on a computer-readable storage medium. The storage medium can be a non-transitory one such as a semiconductor memory, a hard disk, a magnetic recording medium, an optical recording medium, etc. That is, the present invention can also be embodied as a computer program product. Further, the above program can be downloaded via a network or updated using a storage medium storing the program. Furthermore, the above processing module may be realized by a semiconductor chip.
[0263] Note that the service server 20, the authentication terminal 30, the terminal 40, etc. can also be configured by an information processing apparatus in the same manner as the control server 10, and the basic hardware configuration is the same as that of the control server 10, so the description thereof is omitted. For example, the authentication terminal 30 may be provided with a camera device for photographing an authenticator.
[0264] The control server 10, which is an information processing apparatus, is equipped with a computer, and the functions of the control server 10 can be realized by causing the computer to execute a program. Further, the control server 10 executes the control method of the control server 10 according to the program. Similarly, the terminal 40, which is an information processing apparatus, is equipped with a computer, and the functions of the terminal 40 can be realized by causing the computer to execute a program. Further, the terminal 40 executes the control method of the terminal 40 according to the program.
[0265] [Modification Example] Note that the configuration, operation, etc. of the authentication system described in the above embodiment are examples and are not intended to limit the configuration of the system.
[0266] In the above embodiment, the operation of the authentication system was described by taking a person's "face" as an example of biometric information. However, the authentication system disclosed in the present application can also use other types of biometric information. For example, data having physical characteristics unique to an individual, such as fingerprint, voiceprint, vein, retina, and iris pattern of the pupil, may be used. That is, the biometric information of the user may be any information that includes the physical characteristics of the user as information.
[0267] Each time the user terminal 40 receives a request for providing the original from the control server 10, the user terminal 40 may obtain consent from the user to transmit the original biometric information (for example, a face image) to the service provider. Specifically, when receiving the request for providing the original, the service selection unit 505 of the terminal 40 obtains whether or not to provide the original biometric information (for example, a face image) using a GUI or the like. When consent of the user regarding the provision of the original biometric information is obtained, the service selection unit 505 transmits the original biometric information stored therein to the control server 10.
[0268] When the user selects a service provider, the control server 10 may change the service providers that the user can select according to the user type. That is, if there is a service provider that provides services only to authenticated users among a plurality of service providers, the control server 10 may disable the selection of such service provider by ordinary users. In that case, the control server 10 notifies the user of the restrictions regarding the service provider (the existence of a service provider that can provide services only to authenticated users) using various interfaces. For example, as shown in FIG. 23, the control server 10 displays a message such as "Selectable only by authenticated users" on the icon of the service provider with the above restrictions. Alternatively, as shown in FIG. 24, the control server 10 may hide the service providers (icons of service providers) that cannot be selected by ordinary users. Alternatively, as shown in FIG. 25, the control server 10 may display the icons of service providers that cannot be selected by ordinary users as inactive (displayed by a dotted line in the example of FIG. 25). Alternatively, the control server 10 may display the icons of service providers that cannot be selected by ordinary users in a transparent manner. Also, when the control server 10 notifies the user of the existence of a service provider that cannot be selected by ordinary users, it may prepare an interface to prompt registration for authenticated users. For example, as shown in FIG. 26, the control server 10 may display an "Authenticated user registration button" near the icon of the above service provider. Alternatively, the control server 10 may display a message such as "This service is not available for ordinary users, but can be used after completion of authenticated user registration".
[0269] When the service server 20 authenticates the person to be authenticated, it may notify the user's terminal 40 of the details of the authentication. In that case, the service server 20 transmits an authentication execution notification including the authentication date and time, authentication location, details of the authentication process, user type, etc. to the terminal 40. The terminal 40 stores the information included in the authentication execution notification and generates an authentication history (see FIG. 27). Also, the terminal 40 displays the authentication history according to the user's operation. Alternatively, when the terminal 40 receives the authentication execution notification, it performs a pop-up display using the information included in the notification (see FIG. 28).
[0270] In the above embodiment, the case where the account management database is configured inside the control server 10 has been described. However, the database may be constructed in an external database server or the like. That is, some functions of the control server 10 may be implemented in another server. More specifically, as long as the "service selection control unit (service selection control means)" or the like described above is implemented in any device included in the system.
[0271] The form of data transmission and reception between each device (control server 10, service server 20, authentication terminal 30) is not particularly limited, but the data transmitted and received between these devices may be encrypted. Between these devices, biometric information and the like are transmitted and received. In order to appropriately protect this information, it is desirable that encrypted data is transmitted and received.
[0272] In the flowcharts (flowcharts, sequence diagrams) used in the above description, a plurality of steps (processes) are described in order. However, the execution order of the steps executed in the embodiment is not limited to the described order. In the embodiment, for example, each process can be executed in parallel, and the order of the illustrated steps can be changed within a range that does not affect the content.
[0273] The above embodiment has been described in detail to facilitate the understanding of the disclosure of the present application, and it is not intended that all the configurations described above are necessary. Also, when a plurality of embodiments are described, each embodiment may be used alone or in combination. For example, it is also possible to replace a part of the configuration of an embodiment with the configuration of another embodiment, or to add the configuration of another embodiment to the configuration of an embodiment. Furthermore, it is possible to add, delete, or replace a part of the configuration of an embodiment with another configuration.
[0274] From the above description, the industrial applicability of the present invention is clear. However, the present invention is suitably applicable to an information processing system that provides a biometric authentication service and the like.
[0275] Some or all of the above embodiments may be described as follows in the appended claims, but are not limited thereto. [Appendix 1] Identity verification means for verifying the identity of a user who wishes to register with the system as an authenticated user who can receive more services than ordinary users, managing the user type of the user who has succeeded in the identity verification as the authenticated user, and managing the user type of the user who has not succeeded in the identity verification as the ordinary user; Service selection control means for enabling a user to select a service provider from among a plurality of service providers that provide services using biometric authentication, from which the user wishes to receive services; User registration control means for notifying the service provider selected by the user of the original biometric information that is the original of the authentication information used for biometric authentication and the user type; A server device comprising the above. [Appendix 2] The server device according to Appendix 1, wherein the identity verification control means performs the identity verification using an electronic certificate obtained from a first certificate of the user. [Appendix 3] When the identity verification control means succeeds in the identity verification, it acquires the date of birth of the user, The server device according to Appendix 2, wherein the user registration control means further notifies the service provider selected by the user of the acquired date of birth. [Appendix 4] Further comprising attribute information acquisition means for acquiring attribute information of the user from a second certificate of the user, The server device according to Appendix 2, wherein the user registration control means further notifies the service provider selected by the user of the acquired attribute information. [Appendix 5] The user registration control means obtains the original biometric information by requesting the terminal possessed by the user to provide the original biometric information, and transmits a user registration request including at least the obtained original biometric information and the user type to the server of the service provider selected by the user, according to any one of Appendices 1 to 4. [Appendix 6] The user registration control means transmits, to the server, the user registration request including at least the system ID for managing the user in its own device, the obtained original biometric information, and the user type, according to Appendix 5. [Appendix 7] The original biometric information is a face image, according to Appendix 6. [Appendix 8] The first certificate is a My Number card, according to Appendix 2. [Appendix 9] A terminal possessed by the user, A plurality of service servers managed by each of a plurality of service providers that provide services using biometric authentication, A server device, including, The server device performs identity verification of a user who wishes to register in the system as an authenticated user who can receive more services than ordinary users, manages the user type of the user who has succeeded in the identity verification as the authenticated user, and manages the user type of the user who has not succeeded in the identity verification as the ordinary user, with identity verification control means; service selection control means for enabling the user to select a service provider from among the plurality of service providers for which the user wishes to receive services; user registration control means for obtaining original biometric information that is the original of the authentication information used for biometric authentication from the user's terminal and transmitting a user registration request including the original biometric information and the user type to the service server of the service provider selected by the user; A system comprising. [Appendix 10] Among the plurality of service servers, the service server that has received the user registration request determines whether the service desired by the authenticated person can be provided according to the user type, as described in Supplementary Note 9. [Supplementary Note 11] The terminal possessed by the user performs display according to the user type, as described in Supplementary Note 9 or 10. [Supplementary Note 12] In a server device Authenticate the identity of a user who wishes to register in the system as an authenticated user who can receive more services than a normal user, manage the user type of the user who has successfully authenticated as the authenticated user, and manage the user type of the user who has not successfully authenticated as the normal user. Enable a user to select a service provider from among a plurality of service providers that provide services using biometric authentication and from which the user wishes to receive services. A control method for a server device that notifies a service provider selected by the user of original biometric information that is the original of authentication information used for biometric authentication and the user type. [Supplementary Note 13] On a computer installed in a server device Authenticate the identity of a user who wishes to register in the system as an authenticated user who can receive more services than a normal user, manage the user type of the user who has successfully authenticated as the authenticated user, and manage the user type of the user who has not successfully authenticated as the normal user; Enable a user to select a service provider from among a plurality of service providers that provide services using biometric authentication and from which the user wishes to receive services; Notify a service provider selected by the user of original biometric information that is the original of authentication information used for biometric authentication and the user type; A computer-readable storage medium that stores a program for executing the above.
[0276] In addition, each disclosure of the above-cited prior art documents is hereby incorporated by reference into this document. Although the embodiments of the present invention have been described above, the present invention is not limited to these embodiments. It will be understood by those skilled in the art that these embodiments are merely illustrative and that various modifications can be made without departing from the scope and spirit of the present invention. That is, the present invention naturally includes all disclosures including the claims, as well as various modifications and corrections that can be made by those skilled in the art in accordance with the technical idea.
Explanation of Reference Numerals
[0277] 10 Control server 20 Service server 30 Authentication terminal 40 Terminal 50 Certification authority server 100 Server device 101 Identity verification control means 102 Service selection control means 103 User registration control means 201 Communication control section 202 Account management section 203 Operator management section 204 Identity verification control section 205 Service selection control section 206 User registration control section 207 Storage section 208 Attribute information acquisition section 301 Communication control section 302 Business information management section 303 User registration control section 304 Authentication section 305 Storage section 311 Processor 312 Memory 313 Input / output interface 314 Communication interface 401 Communication control section 402 Provided service control section 403 Authentication request section 404 Storage section 501 Communication control section 502 Account Generation Control Unit 503 Original Information Acquisition Unit 504 Identity Verification Control Unit 505 Service Selection Unit 506 Memory Unit
Claims
1. an identity verification control means for verifying the identity of a user, managing a user type of a user who has successfully verified the identity as an authenticated user, and managing a user type of a user who has not successfully verified the identity as a normal user; a user registration control means for notifying a service provider selected by the user from among a plurality of service providers providing services using biometric authentication of the biometric information of the user used for the biometric authentication and the user type; A server device comprising:
2. 2. The server device according to claim 1, wherein said identity verification control means performs said identity verification using an electronic certificate obtained from a first certificate of said user.
3. When the identity verification is successful, the identity verification control means obtains the user's date of birth, 3. The server device according to claim 2, wherein said user registration control means further notifies said acquired date of birth to a service provider selected by said user.
4. The method further includes: acquiring attribute information of the user from the second certificate of the user; 3. The server device according to claim 2, wherein said user registration control means further notifies said acquired attribute information to a service provider selected by said user.
5. The server device according to any one of claims 1 to 4, wherein the user registration control means acquires the biometric information by requesting the provision of the biometric information from a terminal carried by the user, and transmits a user registration request including at least the acquired biometric information and the user type to a server of a service provider selected by the user.
6. 6. The server device according to claim 5, wherein the user registration control means transmits the user registration request to the server, the user registration request including at least a system ID for managing the user in the server, the acquired biometric information, and the user type.
7. 5. The server device according to claim 1, further comprising a service selection control means for enabling the user to select a service provider from among a plurality of service providers that provide services using the biometric authentication.
8. A terminal owned by a user; A plurality of service servers that provide services using biometric authentication and are managed by a plurality of service providers, respectively; A server device; Including, The server device includes: an identity verification control means for verifying the identity of a user, managing a user type of a user who has successfully verified the identity as an authenticated user, and managing a user type of a user who has not successfully verified the identity as a normal user; a user registration control means for notifying a service server of a service provider selected by the user from among the plurality of service providers of the biometric information of the user to be used for the biometric authentication and the user type; A system comprising:
9. 9. The system according to claim 8, wherein a service server among the plurality of service servers to which the biometric information of the user and the user type have been notified determines whether or not to provide a service desired by the person to be authenticated, depending on the user type.
10. The system according to claim 8 or 9, wherein the terminal carried by the user displays information according to the user type.
11. In the server device, performing identity verification of a user, managing a user type of a user who has been successfully verified as an authenticated user, and managing a user type of a user who has not been successfully verified as a normal user; A method for controlling a server device, which notifies a service provider selected by the user from among a plurality of service providers that provide services using biometric authentication of the user's biometric information to be used for the biometric authentication and the user type.
12. A computer installed in the server device A process of performing identity verification of a user, managing the user type of a user who has been successfully verified as an authenticated user, and managing the user type of a user who has not been successfully verified as a normal user; a process of notifying a service provider selected by the user from among a plurality of service providers providing services using biometric authentication of the biometric information of the user to be used for the biometric authentication and the user type; A program for executing the above.
Citation Information
Patent Citations
Portable information equipment, device and system for authentication
JP2001167054A
Service providing system, information providing device and method, recording medium, and its program
JP2004029890A
Authentication system and authentication method
JP2007172431A
Information processor, information processing method and program
JP2011108148A
Server device, electronic commerce system, and electric commerce method
JP2020030783A