Image forming apparatus
The image forming apparatus addresses overlapping use issues by implementing secure function locking and interface restrictions, ensuring secure and convenient image formation through user authentication.
Patent Information
- Application Number
- JP2023219599
- Authority / Receiving Office
- JP · JP
- Patent Type
- Applications
- Current Assignee / Owner
- Filing Date
- 2023-12-26
- Publication Date
- 2025-07-08
AI Technical Summary
Existing image forming apparatuses face issues with overlapping use by multiple users when instructions are issued from an information processing apparatus, leading to potential problems such as sheet misplacement or unauthorized use during image formation.
The image forming apparatus includes a user interface, scanner, and controller that allows for secure function locking, enabling the apparatus to execute image formation based on instructions from either the information processing apparatus or the image forming apparatus itself, with a user interface restriction mechanism to prevent unauthorized use.
This solution effectively prevents unauthorized use and sheet misplacement by restricting operations on the user interface until authentication is completed, ensuring secure and convenient image formation.
Smart Images

Figure 2025102262000001_ABST
Abstract
Description
Technical Field
[0001] The present invention relates to an image forming apparatus that executes image formation.
Background Art
[0002] Patent Document 1 describes a reading apparatus capable of executing pull scanning that causes a scanner to read a document according to an execution instruction from an information processing apparatus. In the reading apparatus, in advance, a list of users who are permitted to execute pull scanning is registered, and when an execution instruction for pull scanning is received, it is authenticated whether the user who gave the execution instruction matches the registered user. Then, if the authentication is successful, the reading apparatus starts pull scanning.
Prior Art Documents
Patent Documents
[0003]
Patent Document 1
Summary of the Invention
Problems to be Solved by the Invention
[0004] In the above-described pull scanning, even if a user checks that no one is using the reading apparatus and then operates it, there is a possibility that a problem may occur because another user tries to use the reading apparatus while moving from the reading apparatus to the information processing apparatus and issuing an instruction to the reading apparatus. Thus, when an image forming apparatus such as a reading apparatus is used away from the apparatus, it becomes a problem that a problem occurs due to overlapping use by users.
[0005] The present invention has been made in view of the above problems, and an object thereof is to provide an image forming apparatus capable of suppressing use by other users when a user issues an instruction from an information processing apparatus.
Means for Solving the Problems
[0006] To solve the above problems, the reading device disclosed in this embodiment is an image forming apparatus including a user interface, a scanner, a communication interface, a placement unit, and a controller, and is capable of communicating with an information processing apparatus having a user interface via the communication interface. The placement unit is capable of placing a sheet to be subjected to image formation, and when an image is formed by the scanner, the placed sheet is in a state where it is difficult to visually recognize from outside the image forming apparatus. The controller is configured to be capable of executing, as image formation, a scan according to an instruction from the information processing apparatus and a scan according to an instruction from the image forming apparatus. In the scan according to the instruction of the information processing apparatus, the controller is configured to scan the sheet placed on the placement unit by the scanner according to the instruction of the information processing apparatus received from the information processing apparatus based on an operation on the user interface provided in the information processing apparatus, generate image data, and transmit the generated image data to the information processing apparatus. In the scan according to the instruction of the image forming apparatus, the controller is configured to scan the sheet placed on the placement unit by the scanner according to the instruction of the image forming apparatus received from the information processing apparatus based on an operation for instructing the image forming apparatus on the user interface provided in the image forming apparatus, generate image data, and transmit the generated image data to the information processing apparatus. When the controller receives a restriction instruction operation including an operation for designating authentication information via the user interface provided in the image forming apparatus, the controller displays a screen indicating that operations via the user interface provided in the image forming apparatus are restricted on the user interface provided in the image forming apparatus, and executes a user interface restriction for restricting an operation for instructing image formation on the user interface provided in the image forming apparatus. In a state where the user interface restriction is executed, the controller is configured to execute a scan according to the instruction of the information processing apparatus in response to receiving the instruction of the information processing apparatus from the information processing apparatus. In a state where the user interface restriction is executed, when the controller receives an operation involving input of the authentication information indicating cancellation of the user interface restriction via the user interface provided in the image forming apparatus, the controller is configured to cancel the user interface restriction.
[0007] When it is possible to perform image formation according to an image forming apparatus instruction and image formation according to an information processing apparatus instruction, after an arbitrary user places a sheet on the placement unit and attempts to perform image formation according to the information processing apparatus instruction, and then moves to the information processing apparatus to issue an information processing apparatus instruction, there is a risk that another user may perform image formation according to the image forming apparatus instruction. If another user touches the placement unit, problems such as the position of the placed sheet shifting may occur. Furthermore, when the placed sheet is difficult to visually recognize from the outside, it is difficult for another user to notice that image formation according to the information processing apparatus instruction is being performed, and the above-mentioned problems are likely to occur.
[0008] Therefore, when the controller receives a restricted operation instruction to specify authentication information via the user interface provided in the image forming apparatus, it displays a screen for restricting the operation and restricts the operation for instructing image formation. Thereby, it is possible to restrict the operations by other users and make other users recognize that image formation according to the information processing apparatus instruction is scheduled to be executed or is in progress. The occurrence of the above-mentioned problems can be suppressed. In addition, the controller releases the above-mentioned user interface restriction in response to the input of authentication information. Thereby, after starting image formation according to the information processing apparatus instruction, the user can release the user interface restriction at a desired timing. It is possible to achieve both user convenience and suppression of the occurrence of problems.
Effect of the Invention
[0009] According to the present invention, when a user issues an instruction from an information processing apparatus to an image forming apparatus, it is possible to suppress other users from using the image forming apparatus.
Brief Description of the Drawings
[0010]
Figure 1
Figure 2
Figure 3
Figure 4
Figure 5
Figure 6
Figure 7
Figure 8
Embodiments for Carrying Out the Invention
[0011] Embodiments of the image forming apparatus will be described using an MFP (abbreviation for Multi Function Peripheral). As shown in FIG. 1, the MFP 10 includes a controller 11, a memory 12, a printer 13, a FAX IF 14, a scanner 15, a user IF 16, a USB IF 17, and a communication IF 18. These components are connected to be communicable with each other via a bus 1. The MFP 10 is an example of the image forming apparatus in this specification.
[0012] Printer 13 prints an image on a recording medium such as a sheet or a disk. The sheet is, for example, paper or an OHP sheet. As the printing method of printer 13, an inkjet method, an electrophotographic method, or the like can be adopted. Scanner 15 is, for example, a so-called flatbed scanner, and has a platen glass on which an original is placed, a top plate that covers the upper part of the platen glass on which the original is placed, and a reading sensor such as a CCD or a CIS, and generates image data corresponding to the reading of the original. When the original is placed on the platen glass and the top plate is lowered, scanner 15 is in a state where the original placed on the platen glass cannot be seen from outside MFP 10. The platen glass is an example of the placement portion in this specification. Note that scanner 15 is not limited to a structure in which the original cannot be seen at all when the top plate is lowered, and may have a structure in which it is difficult to visually recognize the original, such that a part of the original sandwiched between the platen glass and the top plate can be seen. Further, scanner 15 may be configured to include an ADF for conveying the original. Scanner 15 and printer 13 are examples of the image forming unit in this specification.
[0013] User IF 16 is an interface capable of receiving various operations on MFP 10. User IF 16 is an example of the user interface included in the image forming apparatus in this specification. User IF 16 includes a touch panel including a liquid crystal display, various switches, and the like. USB IF 17 can detachably connect a storage medium or the like conforming to the USB standard, and can read and write data by communication conforming to the USB standard. The storage medium conforming to the USB standard is, for example, a USB memory or the like. MFP 10 is connected to a network via communication IF 18, and communicates with PC 40 via the network according to a predetermined protocol (such as TCP / IP). As communication IF 18, a wired LAN interface, a wireless LAN interface, or the like can be adopted. Communication IF 18 is an example of the communication interface in this specification.
[0014] The controller 11 is a processing device including, for example, a CPU or the like. The memory 12 is configured by combining a volatile memory such as a RAM, a non-volatile memory such as an NVRAM, a ROM, and the like. As the non-volatile memory, an SSD, an HDD, or the like may be used. A buffer included in the controller 11 used when executing various programs may also be regarded as a part of the memory 12. Note that the memory 12 may be a storage medium readable by the controller 11. A storage medium readable by the controller 11 is a non-transitory medium. Non-transitory media include, in addition to the above examples, recording media such as CD-ROMs and DVD-ROMs. Also, non-transitory media are tangible media. On the other hand, an electrical signal that conveys a program downloaded from a server on the Internet or the like is a computer-readable signal medium, which is a kind of computer-readable medium, but is not included in non-transitory computer-readable storage media.
[0015] Stored in the memory 12 as a program executable by the controller 11 is a control program 2. The control program 2 is, for example, firmware that comprehensively controls each unit of the MFP 10. The controller 11 controls each device connected to the bus 1 by executing the control program 2. In the present embodiment, mainly, the processing of the controller 11 according to the instructions described in the program is shown. That is, the processing such as "judgment", "specification", "acquisition", "reception", "control", etc. in the following description represents the processing of the controller 11. Note that "acquisition" is used as a concept that does not require a request. That is, the processing of receiving data without the controller 11 making a request is also included in the concept of "the controller 11 acquires data". Also, the "data" in this specification is represented by a bit string readable by the controller 11. And data having substantially the same meaning content but different formats shall be treated as the same data. The same applies to the "information" in this specification.
[0016] In addition, the control program 2 includes, for example, an EWS (Embedded Web Server) program that functions as a Web server. By executing the EWS program, the controller 11 can cause the MFP 10 to function as a Web server. The Web server that functions in the MFP 10 is also referred to as EWS. The controller 11 can cause a predetermined Web page to be displayed on a browser 44 (to be described later) of the PC 40 by transmitting Web page data for displaying the Web page to the PC 40. Transmitting the Web page data is also described as providing a Web page.
[0017] Next, the configuration of the PC 40 will be described. The PC 40 is an example of the information processing apparatus in this specification. Note that the information processing apparatus is not limited to the PC 40, and other apparatuses that can transmit an instruction to execute pull scanning (to be described later) to the MFP 10, such as mobile terminals such as smartphones and tablets, may also be used. In addition to the user IF 42, the PC 40 includes a communication IF (not shown), a memory, a controller, and a display. The user IF 42 is, for example, a keyboard or a mouse. The user IF 42 is an example of the user interface included in the information processing apparatus in this specification. Note that the user IF 42 may be another type of user interface such as a touch panel. The memory of the PC 40 stores an OS and a browser 44. The browser 44 can cause a Web page corresponding to the Web page data transmitted from the MFP 10 to be displayed on the display.
[0018] Next, the "Secure Function Lock" function will be described. The MFP10 of this embodiment has a "Secure Function Lock" function (hereinafter sometimes referred to as the SFL function). The SFL function is a function that sets whether to permit or not permit each function of the MFP10 for each user and restricts the execution of functions that are set not to be permitted. Setting not to permit each function of the MFP10 is also described as restricting. The controller 11 receives, for example, settings such as the enable / disable of the SFL function, user registration, password registration, and setting values related to function restriction for each user via the EWS. The setting value related to function restriction can also be said to be a setting value related to permission. Specifically, it is a setting value indicating whether to permit or not permit each function. The received information is registered in the SFL database 19 of the memory 12. Note that the method of receiving each setting value is not limited to the method of receiving via the EWS, and a method of receiving via the user IF16 may also be used.
[0019] FIG. 2 shows a restriction setting screen 30 for receiving functions restricted for each user. The controller 11 provides a web page to the browser 44 of the PC 40 by accessing the EWS, for example. When an administrator login operation is performed on the provided web page, the controller 11 provides the PC 40 with a web page for setting the enable / disable of the SFL function and a web page showing the restriction setting screen 30 shown in FIG. 2.
[0020] The restriction setting screen 30 has a restriction specification field 31 that accepts the specification of users and functions to be restricted in the SFL function. The restriction specification field 31 has a user specification field 32 (32A, 32B) that specifies the users to be restricted, and a function specification field 33 that specifies whether to permit or not permit each function. There are a plurality of user specification fields 32. Among the user specification fields 32, the "Public Mode" 32A is a field indicating that the target of the SFL function is the state of not being logged in (hereinafter sometimes referred to as the logged-out state). It can also be said that it is a field indicating setting restrictions without specifying a user. The individual user field 32B is a field for entering the user name indicating the user targeted by the SFL function. That is, it can also be said that it is a field indicating setting restrictions for a specific user. To the right of each of the plurality of user specification fields 32, there is a function specification field 33. The function specification field 33 to the right of each individual user specification field 32 is a field indicating whether to permit or not permit each individual function corresponding to the user indicated by the user specification field 32.
[0021] The function specification field 33 is also a field that accepts the specification of functions to be restricted by the SFL function. The function specification field 33 has check boxes indicating the presence or absence of restriction settings for each of the functions of "Printing", "Copying", "Scanning", "FAX", "USB", and "Web Connection" of the MFP 10. Note that the function "Scanning" corresponds to the push scanning described later. In the function specification field 33, the functions with a check are the functions for which it is specified that no restriction is set, that is, the execution of the functions is permitted, and the functions without a check are the functions for which it is specified that a restriction is set, that is, the execution of the functions is not permitted. Also, the function "FAX" includes individual functions of "FAX transmission" and "FAX reception", and there are check boxes for each individual function. The function "USB" includes individual functions of "USB direct printing" and "Scan to USB", and there are check boxes for each individual function. "Web Connection" includes individual functions of "Upload" and "Download", and there are check boxes for each individual function. Note that the types of restriction items shown in FIG. 2 are just examples.
[0022] In the example shown in FIG. 2, in the function designation column 33 of “Public Mode” 32A, the check is not made only for the function “Scan”, and the checks are made for other functions. In this case, in the logged-out state where no one is logged in to the MFP 10, the execution of the function “Scan” is restricted, and the execution of other functions is not restricted. Similarly, for “User A” and “User B” in the individual user column 32B, each function is restricted or not restricted according to the check items. For the sake of convenience, “restricted or not restricted” may be abbreviated as “restricted”. The controller 11 restricts functions based on the set values of the logged-in user in a state where the SFL function is valid and any user is logged in (hereinafter sometimes referred to as the logged-in state). Also, when the instruction from the PC 40 requires authentication, the controller 11 restricts functions based on the set values of the authenticated user. When the controller 11 is operated with a decision button (not shown), it updates each set value in the SFL database 19 based on the input to the restriction setting screen 30.
[0023] Note that the controller 11 stores and uses various set values not only in the SFL database 19 but also in the memory 12. For the sake of convenience, storing the set value in the memory 12 may be described as “setting” or the like. For the sake of convenience, the fact that the set value is stored in the memory 12 may be described as “set”, “set value”, “set state”, etc.
[0024] Next, the standby screen display process (including the panel lock process) executed by the controller 11 will be described with reference to FIGS. 3 to 8. For example, after the power of the MFP 10 is turned on and the control program 2 is executed to start the system, the controller 11 starts the standby screen display process shown in FIGS. 3 and 4. Note that the conditions for starting the processes in FIGS. 3 and 4 are not limited to the conditions for starting the system. For example, the controller 11 may start the processes shown in FIGS. 3 and 4 on the condition that the user IF 16 is made non-displayable in the power saving mode for suppressing power consumption and the user IF 16 is displayed when returning from the power saving mode. By executing the processes in FIGS. 3 and 4, the controller 11 displays a screen indicating that operations via the user IF 16 are restricted, and executes a process for restricting an operation for instructing image formation to the user IF 16 (hereinafter sometimes referred to as panel lock or panel lock process). In the following description, the controller 11 may simply be described as "displaying a screen" when causing the user IF 16 to display a screen.
[0025] First, a first example of panel locking in a logged-in state with the SFL function enabled will be described. FIG. 5 shows the screen transition of the user IF 16 when a login operation is performed and the panel is locked with the SFL function enabled. In step 1, the controller 11 determines whether the SFL function is enabled. Hereinafter, the steps will be described as "S". In the first example, the controller 11 determines that the SFL function is enabled (S1: YES), and determines whether an arbitrary user is logged in to the MFP 10 (S2). In the first example, the controller 11 determines that the user is in the logged-in state (S2: YES), and displays the standby screen 41C in the logged-in state in the state where the SFL function is enabled (see FIG. 5(c)) on the user IF 16 (S3). Note that when the controller 11 is in the logged-out state (S2: NO), the controller 11 displays the standby screen 41A in the logged-out state in the state where the SFL function is enabled, that is, "Public Mode" (see FIG. 5(a)) on the user IF 16 (S4). Further, in the MFP 10 of the present embodiment, when the SFL function is enabled, it is possible to enter the logged-in state by a login operation via the user IF 16.
[0026] Also, after executing S3, the controller 11 determines whether the user has executed a logout operation to log out (S6). If the logout operation has been executed (S6: YES), the controller 11 executes S4 to display the standby screen 41A. If the logout operation has not been executed (S6: NO), the controller 11 executes S8. Further, after executing S4, the controller 11 determines whether the user has executed a login operation to log in and has succeeded in login authentication (S7). If the login operation has been executed and the login authentication has succeeded (S7: YES), the controller 11 executes S3 to display the standby screen 41C. Also, if the login authentication fails or the login operation has not been executed (S7: NO), the controller 11 executes S8.
[0027] In the MFP 10 of this embodiment, as methods for a user to perform a login operation, there are two methods: a method of performing a login operation from a state where no one is logged in, and a method of performing a login operation (changing the logged-in user) while an arbitrary user is logged in. First, the method of performing a login operation from a state where no one is logged in will be described. When the SFL function is enabled and the device is in a logged-out state (S1: YES, S2: NO), the controller 11 displays the standby screen 41A shown in Fig. 5(a) on the user IF 16. The standby screen 41A includes a plurality of icons 43 for instructing the execution of each function such as FAX, copy, scan, and settings. The instruction for image formation based on the operation of the icons 43 for instructing the execution of the FAX, copy, and scan functions is an example of the instruction for an image forming apparatus in this specification. Since the SFL function is enabled and the device is in a logged-out state, the controller 11 executes restrictions based on the setting value of "Public Mode" 32A in the SFL database 19. In the example shown in Fig. 2, when the controller 11 receives an operation on the FAX and copy icons 43, it executes processes for realizing the FAX function and the copy function. For example, it performs FAX transmission and copies the original document. Even if an operation on the scan icon 43 is received, the process for realizing the push scan function is restricted. For example, it does not read the original document. Note that for functions indicated by the values in the SFL database 19 to be restricted, the controller 11 may be configured not to display the icon 43 on the standby screen 41A.
[0028] In addition, the standby screen 41A includes an information column 45 for displaying the logged-in user name and the like. When the information column 45 is touched, the controller 11 displays the selection screen 41B in Fig. 5(b). The selection screen 41B includes a user change button 47 and a panel lock button 48.
[0029] Although illustration is omitted, when the user change button 47 is operated, the controller 11 displays a user selection screen for selecting a user and accepts the selection of the user to log in. The controller 11 displays the user names registered in the SFL database 19 (in FIG. 2, user A and user B) on the user selection screen. When a user is selected on the user selection screen, the controller 11 displays a password input screen for accepting a login password for login authentication. When the login password is input and the OK button on the password input screen is operated, the controller 11 executes login authentication (S7). When the combination of the login password input on the password input screen and the user selected on the user selection screen matches the combination of the login password and the user name registered in the SFL database 19, the controller 11 determines that the login authentication has succeeded (S7: YES), and if they do not match, determines that the login authentication has failed (S7: NO). When the controller 11 determines that the authentication has failed, it displays the standby screen 41A again.
[0030] When the controller 11 determines that the login authentication has succeeded (S7: YES), it displays the standby screen 41C in FIG. 5(c) (S3). Also, when the logged-in state is maintained (S2: YES), the controller 11 displays the standby screen 41C (S3). The controller 11 displays the user name selected on the user selection screen, that is, the logged-in user name, in the information field 45 of the standby screen 41C (in the illustrated example, "user A"). In the logged-in state where the standby screen 41C is displayed, the controller 11 executes restrictions based on the set values in the individual user field 32B of the SFL database 19, specifically, restrictions based on the set values corresponding to the logged-in user. In the example shown in FIG. 2 (where the logged-in user is "user A"), when the controller 11 accepts an operation on the FAX and copy icons 43, it executes processing to implement the FAX function and the copy function. The controller 11 restricts the processing to implement the push scan function based on an operation on the scan icon 43.
[0031] Next, a method of performing a login operation while any user is logged in will be described. When the information field 45 of the standby screen 41C is operated, the controller 11 displays the selection screen 41D in FIG. 5(d). The selection screen 41D includes a logout button 51, a panel lock button 52, a user change button 53, and a password change button 54. When the logout button 51 is operated (S6: YES), the controller 11 enters the logout state and displays the standby screen 41A (S4). Also, when the user change button 53 is operated, the controller 11 displays a user selection screen in the same manner as when the above-described user change button 47 is operated. When a user is selected on the user selection screen, the controller 11 accepts the login password and performs login authentication. When the login authentication is successful (S7: YES), the controller 11 changes the logged-in user, displays the standby screen 41C, and displays the name of the changed logged-in user in the information field 45 of the standby screen 41C.
[0032] In addition, when the password change button 54 is operated, the controller 11 accepts the change of the login password of the logged-in user. Also, the method of accepting a login operation is not limited to the two methods described above. For example, the controller 11 may perform login authentication when the power of the MFP 10 is turned on and the control program 2 is executed to start the system.
[0033] In S8, the controller 11 determines whether an operation requesting panel lock is executed. When there is no request for panel lock (S8: NO), the controller 11 executes the process from S1 again. Therefore, the controller 11 displays the standby screen 41A in the logout state with the SFL function enabled, and displays the standby screen 41C in the login state with the SFL function enabled.
[0034] When an operation requesting panel lock is performed (S8: YES), specifically, when the panel lock button 52 in Fig. 5(d) is operated, the controller 11 determines whether it is in the login state (S9). In the first example, since it is in the login state, the controller 11 makes an affirmative determination in S9 (S9: YES) and sets the login username as the locked username (S10). The login username is the username specified by the login operation when the login state is entered.
[0035] As shown in Fig. 4, after executing S10, the controller 11 executes S12 and receives, via the user IF 16, the period for maintaining the panel lock (hereinafter referred to as the lock period) (S12). Specifically, the controller 11 displays the selection screen 41E in Fig. 5(e) and receives the lock period (S12).
[0036] The controller 11 displays a plurality of time selection buttons 55 on the selection screen 41E and displays different times on each of the plurality of time selection buttons 55. In the example shown in Fig. 5(e), time selection buttons 55 with the characters 1MIN (minute), 3MIN, 5MIN, and 10MIN displayed are shown. When any of the time selection buttons 55 is selected, the controller 11 sets the time of the selected time selection button 55 as the lock period (S12). Note that the controller 11 may also set the lock period based on the number input by the user.
[0037] When the time selection button 55 in Fig. 5(e) is selected and the lock period is set, the controller 11 displays the input screen 41F in Fig. 5(f) (S13). The input screen 41F includes an unlock password input section 56 for inputting an unlock password and a message input section 57 for inputting a message. The unlock password is a password for unlocking the panel lock. The unlock password is an example of the authentication information in this specification. The operation of specifying the unlock password is an example of the restriction instruction operation in this specification. The message is a message to be displayed on the lock screen 41G (see Fig. 5(g)) during the lock period. When the unlock password and the message are input (S13) and a decision button (not shown) on the user IF 16 is operated, the controller 11 stores the unlock password and the message in the memory 12. That is, the unlock password and the message used for the panel lock are set. Then, by displaying the lock screen 41G in Fig. 5(g) (S15), the panel is locked (S15). For convenience, the series of operations from the operation requesting the panel lock to the operation of the decision button described in S8 to S15 may be described as a panel lock operation, an operation of locking the panel, etc. In addition, when the controller 11 does not complete the above-described operation of locking the panel, for example, when an operation of canceling the panel lock operation is performed, the standby screen 41C may be displayed.
[0038] In addition, the method of receiving the message is not limited to the method of receiving the input of the character string indicating the message. For example, the controller 11 may receive the selection of the message to be displayed from a plurality of preset messages (during locking, during plus scan, during PC printing, etc.). Therefore, the "operation of specifying the message" in this specification is not limited to the operation of receiving the input of the character string of the message.
[0039] Moreover, the method of receiving an instruction for panel lock is not limited to the method described above. For example, when the SFL function is valid and the controller 11 receives an instruction for panel lock in the logged-in state, the login password may be set as the unlock password. That is, the controller 11 may receive an instruction for panel lock and execute panel lock without requiring an operation of specifying an unlock password in the execution of panel lock. Specifically, for example, when the panel lock button 52 is operated on the selection screen 41D in FIG. 5(d), the controller 11 displays the selection screen 41E. When the lock period is selected by the time selection button 55, the controller 11 displays an input screen 41F having only the message input section 57 without the unlock password input section 56. The controller 11 receives a message on the input screen 41F and, when a decision button (not shown) is operated, displays a lock screen 41G and locks the panel. Then, when the controller 11 receives an operation to release the panel lock while the lock screen 41G is being displayed, if the login password of the already logged-in user is input to the unlock reception section 64 described later as the unlock password, the controller 11 may release the panel lock.
[0040] In the panel lock state, the controller 11 displays the lock screen 41G shown in FIG. 5(g) on the touch panel of the user IF16 and restricts operations on the user IF16. Before the standby screen 41C after login, the controller 11 displays, as the lock screen 41G, a screen with the lock display image 61 superimposed. The lock display image 61 is, for example, an image with a black image having transparency as the background, and the icon 43 can be seen through from behind. The controller 11 displays, for example, a lock display image 61 that covers all the icons 43 in terms of position and size, and also displays the lock display image 61 at a position shifted downward from the information bar 45 at the upper part of the screen.
[0041] In the first example, since the device is in the logged-in state, the controller 11 sets the logged-in username as the locked username (S9: YES, S10). That is, the controller 11 displays the logged-in username in the information field 45 of the lock screen 41G (S15). Therefore, before and after the display of the lock screen 41G, the display in the information field 45 is maintained with the logged-in username. Note that the controller 11 does not necessarily have to set the logged-in username as the locked username in S10. For example, the controller 11 may set the user ID or the group name to which the logged-in user belongs as the information of the panel-locked user and display it in the information field 45 of the lock screen 41G.
[0042] In addition, the lock display image 61 includes a current time field 62, a message field 63, an unlock reception section 64, a start time field 65, and a lock period field 66. The current time is displayed in the current time field 62. The message received on the input screen 41F in Fig. 5(f) (S13) is displayed in the message field 63. The unlock reception section 64 is an input section for receiving an unlock password. The unlock reception section 64 is an example of an object for receiving an operation involving the input of authentication information in this specification.
[0043] Also, the start time of the panel lock is displayed in the start time field 65. The start time of the panel lock is, for example, the time when the display of the lock screen 41G is started by the execution of S15. That is, it is the time when the restriction on the operation for the user IF16 is started. Further, the lock period selected on the selection screen 41E in Fig. 5(e) (S12) is displayed in the lock period field 66.
[0044] In the panel-locked state, the controller 11 does not accept operations on the user IF16 other than the input operation of the unlock password to the unlock reception section 64 and the determination operation after the input. That is, operations on icons 43 such as copy, scan, and FAX are disabled. Also, logout operations and user change operations that operate on the information field 45 are also disabled.
[0045] Still, the panel lock is an example of the interface restrictions in this specification. The interface restrictions in this specification are not limited to the content of the panel lock described above. For example, in the above-described panel lock, a lock display image 61 having transparency is superimposed in front of the icon 43 to make the icon 43 difficult to see, suggesting that the icon 43 cannot be operated. However, the controller 11 may, for example, as an interface restriction, display the lock display image 61 at a position where it does not overlap the icons 43 for copy and scan. And the controller 11 may limit the function by not executing scanning or copying even if the icon 43 is operated. Alternatively, the controller 11 may, as an interface restriction, display only the lock display image 61 on the lock screen 41G and not display the icons 43 such as for scan on the lock screen 41G. Also, the controller 11 may not display the lock display image 61 on the lock screen 41G, display the same screen as the standby screen 41C as the lock screen 41G, and invalidate the operation on the icon 43. And the controller 11 may display the unlock reception unit 64 on the lock screen 41G when the user IF16 is operated. Also, the controller 11 did not accept the logout operation or the user change operation by invalidating the operation on the information column 45. However, the controller 11 may not accept the logout operation or the change of the logged-in user by not displaying the information column 45 on the lock screen 41G. Also, the lock display image 61 may be superimposed and displayed on the information column 45 or the like.
[0046] Next, after displaying the lock screen 41G in S15, the controller 11 determines whether the set lock period has elapsed since S12 (S16). For example, if the time elapsed since the start of panel locking is equal to or greater than the time indicated by the lock period (of course, it may also be the case that the time indicated by the lock period has been exceeded), the controller 11 determines that the lock period has elapsed (S16: YES). In the first example, when the set lock period has elapsed (S16: YES), the controller 11 releases the locked state, displays the standby screen 41C in Fig. 5(c) (S19), and maintains the logged-in state.
[0047] Also, when the lock period has not elapsed (S16: NO), the controller 11 determines whether an unlock password has been input (S17). When no unlock password has been input to the unlock reception unit 64 on the lock screen 41G (S17: NO), the controller 11 executes S15, displays the lock screen 41G, and maintains the panel locked state.
[0048] Also, when an unlock password has been input to the unlock reception unit 64 (S17: YES), the controller 11 determines whether the input unlock password matches the unlock password set in S13 (S18). When the unlock passwords do not match (S18: NO), the controller 11 executes S15 and maintains the panel locked state.
[0049] On the other hand, when the time elapsed since the start of panel locking is equal to or greater than the lock period (S16: YES), or when the unlock passwords match (S18: YES), the controller 11 cancels the display of the lock screen 41G and displays the standby screen (S19). Therefore, the controller 11 maintains the display of the lock screen 41G until either the condition that the time elapsed since the start of panel locking is equal to or greater than the set lock period or the condition that the authentication of the unlock password is successful is satisfied.
[0050] For example, as shown in the lock screen 41H of FIG. 5(h), when an unlock password is input to the unlock reception unit 64 and the decision button of the user IF16 is operated, the controller 11 executes authentication of the input unlock password (S17: YES, S18). When the input unlock password matches the unlock password input on the input screen 41F of FIG. 5(f) (S18: YES), the controller 11 releases the locked state, displays the standby screen 41C (S19), and maintains the login state. Therefore, in S19, the controller 11 displays the standby screen that was being displayed before displaying the lock screen 41G. When executing S19, the controller 11 executes the processing from S1 in FIG. 3. As described above, when a panel lock request is received in the logged-out state and the login password is set as the unlock password, if the unlock password input to the unlock reception unit 64 matches the login password (S18: YES), the controller 11 releases the locked state (S19). In this case, after releasing the locked state, the controller 11 may display the standby screen 41A.
[0051] Next, the processing when an operation of displaying and scanning the lock screen 41G is performed in a state where the SFL function is enabled and in the logged-in state will be described. The MFP 10 of the present embodiment can execute "push scan" and "pull scan" as the function "scan". The controller 11 generates scan data using the image data output by the scanner 15 reading the document. Scan data is also a type of image data. "Push scan" is an example of scan (image formation) in response to an image forming apparatus instruction, and "pull scan" is an example of scan (image formation) in response to an information processing apparatus instruction.
[0052] "Push Scan" is a scan that generates scan data by causing the scanner 15 to read a document in response to an execution instruction (an example of an image forming apparatus instruction in this specification) according to an operation on the user IF16, and outputs the generated scan data to an output destination according to the execution instruction. For example, it transmits the scan data. The output destination of the data by Push Scan can be specified as a device connected to the PC 40 or the MFP 10, for example, a device connected via the USB IF17 or the communication IF18. For example, when the scan icon 43 on the standby screen 41A or the standby screen 41C is operated, the controller 11 transmits a Push Scan request to the information processing apparatus (in this embodiment, the PC 40). The information processing apparatus that has received the request returns an execution instruction for scanning to the MFP 10. When this reply is received, the controller 11 determines that it has received an execution instruction for Push Scan, executes the scan, and transmits the scan data (image data) generated by the scanner 15 to the information processing apparatus.
[0053] "Pull Scan" is a scan that generates scan data by causing the scanner 15 to read a document in response to an execution instruction (an example of an information processing apparatus instruction in this specification) transmitted from the information processing apparatus according to an operation on the information processing apparatus, and transmits the generated scan data to the apparatus that is the transmission source of the execution instruction. The user can transmit an execution instruction for Pull Scan to the MFP 10 by operating the user IF42 of the PC 40.
[0054] Figure 6 shows a sequence diagram when the SFL function is enabled and Pull Scan is executed in the logged-in state. For example, the administrator of the MFP 10 can access the EWS server and register User A in the SFL database 19, and as described above, can set the functions available to User A on the restriction setting screen 30 shown in FIG. 2 (S21). The above is the setting of the SFL function by the administrator.
[0055] In the MFP10 with the SFL function set by the administrator, user A can place the document on the platen glass of the scanner 15, perform the login operation as described above, and perform the panel lock operation (S22). Based on the panel lock operation by user A, as described above, the lock period, message, unlock password, etc. are set. When the panel lock operation is performed, the controller 11 displays the lock screen 41G (S23). Note that the document placement by user A may be performed after the panel lock operation.
[0056] When user A moves from the MFP10 to the PC40 and performs an operation to instruct the PC40 to perform a pull scan, the PC40 issues an execution instruction for the pull scan to the MFP10 (S25). This execution instruction for the pull scan is an example of the information processing device instruction in this specification. Here, while user A is operating the PC40, there is a possibility that another user B may try to instruct the MFP10 to perform a push scan. If user B opens the top plate of the scanner 15, there is a risk that the position of the document set by user A may shift before the start of the pull scan. Also, there is a possibility that user B may remove the document set by user A for the push scan. In contrast, as described above, the controller 11 of this embodiment locks the panel based on the panel lock operation in S22, that is, by displaying the lock screen 41G and displaying the user name, message, etc. of user A, it allows user B to recognize that user A is using the MFP10 for the pull scan, and can prevent user B from inadvertently opening the top plate or instructing a push scan (S27).
[0057] However, the risk that User B will perform actions that are undesirable for User A, i.e., the risk of inadvertently opening the top plate or instructing a push scan, continues until User A returns near the MFP 10. The controller 11 prevents actions by User B that are undesirable for User A by maintaining the display of the lock screen 41G until the scan execution screen is displayed in S45 described below. Also, the controller 11 prevents actions by User B that are undesirable for User A by displaying the scan execution screen following the display of the lock screen 41G.
[0058] When the controller 11 acquires an execution instruction for a pull scan from the PC 40 (S25), it determines whether the pull scan is set to be effective in the MFP 10. If it is set to be effective, it determines whether user authentication is required for the execution of the pull scan (S29). Note that the controller 11 determines that user authentication is required, for example, when the setting of the "Public Mode" scan in the SFL database 19 is "restricted". Note that when user authentication is not required, the pull scan is executed (S45, S47 to S51) without executing the processes related to user authentication (S31 to S39) as described below.
[0059] When it is determined that user authentication is required, the controller 11 requests authentication information from the PC 40 (S31). The PC 40 accepts the input of the user name and password (hereinafter referred to as the authentication password) by the operation of User A (S33), and transmits the received user name and authentication password to the MFP 10 as authentication information (S35). This user name and authentication password are an example of the user authentication information in this specification. The controller 11 determines whether the user name and authentication password acquired from the PC 40 match the information of User A (user name and login password) registered in the SFL database 19 (S37). If they match, it is determined that the authentication has succeeded, and the success of the authentication is notified to the PC 40 (S39). Also, when the user name and authentication password do not match, the controller 11 determines that the authentication has failed and does not permit the execution of the pull scan. For example, the controller 11 notifies the PC 40 of an error and does not start the pull scan. In addition, in the MFP 10, when the pull scan is not set to be valid (S29), the controller 11 also notifies the PC 40 of an error and does not start the pull scan.
[0060] In addition, in S37, the controller 11 may determine that the authentication has succeeded even if the user name and authentication password do not exactly match. For example, the controller 11 may determine that the authentication has succeeded when a part of the user name matches, or when the group to which the selected user belongs matches. Also, the user authentication method is not limited to the method described above. For example, in S35, the PC 40 may transmit the login user name and login password logged in to the PC 40 as authentication information. Also, the PC 40 may transmit the user name and authentication password preset in the printer driver as authentication information.
[0061] Also, in S37, the controller 11 determines whether the logged-in user, that is, user A who instructed the pull scan on the PC 40, has the authority to execute the pull scan. In this example, since user A has the authority to execute the pull scan, the execution is permitted. Note that if user A does not have the authority to execute the "scan" function, the controller 11 does not have to start the pull scan.
[0062] When the PC 40 obtains a notification indicating successful authentication (S39), it accepts an instruction to start the pull scan (S41). For example, the PC 40 displays a message indicating successful authentication and a scan start button on the user IF 42, and when the start button is operated, it sends a scan start instruction to the MFP 10 (S43). Note that the PC 40 may respond to the start of the scan to the MFP 10 based on the acquisition of the notification in S39 without confirming the transmission of the start instruction to the user.
[0063] On the other hand, when executing S39, the controller 11 changes the display of the screen of the user IF 16 from the lock screen 41G to a scan in progress screen indicating that the scan is in progress (S45). While the controller 11 is displaying this scan in progress screen, it does not accept any operations on the user IF 16. Therefore, the controller 11 invalidates all operations, including the input of the unlock password. Also, by not displaying the information bar 45, it prohibits logout operations and changes of the logged-in user. Note that the controller 11 may accept the input of the unlock password and may accept logout operations and changes of the logged-in user in response to a touch operation on the scan in progress screen. Also, the controller 11 may display the lock screen 41G even during the scan without displaying the scan in progress screen and lock the panel. Therefore, even during the execution of the scan, it may be possible to prohibit logout operations and the like while displaying the information bar 45.
[0064] Then, when the controller 11 acquires the instruction in S43, it controls the scanner 15 to execute scanning (S47). When the controller 11 reads the image of the document by the scanner 15 and generates scan data, it transmits the generated scan data to the PC 40 (S49). When the transmission of the scan data is completed, the controller 11 transmits a scan end notification to the PC 40 (S51). When the PC 40 acquires the end notification, it displays on the user IF 42 that the scanning has been completed (S53).
[0065] Also, when the controller 11 transmits the end notification in S51, it changes the display of the user IF 16 from the scanning execution screen to the lock screen 41G (S55). Note that the controller 11 may display a different message or the like on the lock screen 41G displayed in S55 after executing the scanning than before starting the scanning. For example, the controller 11 may display a message such as "Scanning completed, document recovery scheduled" on the lock screen 41G after scanning.
[0066] Also, after user A confirms the end of scanning in S53, user A can move from PC40 to MFP10, retrieve the original document, unlock the panel, and perform a logout operation (S57). Note that when scanning multiple original documents, user A may replace the original document without unlocking the panel. Also, when scanning multiple original documents, user A may notice, by looking at lock screen 41G, that the elapsed time since the start of locking is likely to exceed the lock period, and may perform the panel locking operation again. Further, the controller 11 prevents any undesirable actions by user B for user A even when re-pulling and scanning the original document that remains placed on MFP10, by displaying lock screen 41G after executing the scan (S55). The case of re-pulling and scanning the original document that remains placed on MFP10 is, for example, when there is a problem with the scan data acquired by PC40. In such a case, it is assumed that user A will instruct PC40 to re-pull and scan the original document that remains placed on MFP10. When the panel lock is released, the controller 11 displays standby screen 41C for the login state, and when the logout operation is performed, the controller 11 displays standby screen 41A (S59).
[0067] Next, a second example of panel locking with the SFL function disabled will be described. FIG. 7 shows the screen transition when panel locking is performed with the SFL function disabled. In the following description, the same components as those in FIG. 5 are denoted by the same reference numerals, and the description thereof will be omitted as appropriate.
[0068] As shown in FIG. 3, when the SFL function is disabled (S1: NO), the controller 11 displays standby screen 71A for when the SFL function is disabled (see FIG. 7(a)) on the user IF16 and executes S8. Therefore, when the SFL function is disabled, the controller 11 displays standby screen 71A until a panel locking request is made (S8: NO). When the SFL function is disabled, since no login operation or user change operation occurs, the controller 11 displays, for example, the current date and time in information field 45 of standby screen 71A.
[0069] When the controller 11 receives a panel lock request (S8: YES), if the SFL function is invalid, since it is in the same state as the aforementioned logout state (for convenience, hereinafter simply referred to as the logout state) (S9: NO), it receives the lock user name with the user IF 16 (S11). Specifically, as shown in FIG. 7, when the information field 45 of the standby screen 71A is operated, the controller 11 displays a selection screen 71B with only the panel lock button 48 arranged (FIG. 7(b)). When the panel lock button 48 is operated, the controller 11 displays the user name input screen 71C shown in FIG. 7(c) and receives the user name in the input field 73 of the user name input screen 71C (S11). When the decision button of the user IF 16 is operated with the user name entered in the user name input screen 71C, similar to the case where the SFL function shown in FIG. 5 is valid, the selection screen 41E in FIG. 7(d) and the input screen 41F in FIG. 7(e) are displayed in sequence, and the lock period, unlock password, and message are received (S12, S13).
[0070] After receiving the input, the controller 11 displays the lock screen 41G in Fig. 7(f) and sets the panel to the locked state (S15). The controller 11 displays the user name received on the user name input screen 71C in the information field 45 of the lock screen 41G. Therefore, in the second example, since the SFL function is invalid, the controller 11 receives the locked user name from the user and displays it on the lock screen 41G. Similar to the first example, when an unlock password is input (Fig. 7(g)), the controller 11 releases the panel lock and displays the standby screen 71A. Note that the controller 11 may receive the selection of the locked user instead of receiving the input of the locked user name on the user name input screen 71C. For example, the controller 11 may display the user names registered in the SFL database 19 on the user name input screen 71C so that they can be selected. In this case, the controller 11 may permit the execution of the panel lock only when the user name selected on the user name input screen 71C and the login password associated with it in the SFL database 19 are input as the lock password in the unlock password input section 56 of the input screen 41F.
[0071] Next, the processing when the lock screen 41G is displayed and a pull scan is executed in a state where the SFL function is invalid will be described with reference to Fig. 8. Note that in the following description, the same components as those in Fig. 6 are denoted by the same reference numerals, and the description thereof will be omitted as appropriate. As shown in Fig. 8, in the second example, since the SFL function is invalid, prior user registration in the SFL database 19 is not required. Also, user A does not need to perform a login operation in the panel lock operation of S22.
[0072] After moving to PC40, User A gives an instruction to start scanning (S41). Since the SFL function is disabled, the authentication requests, confirmations, etc. from S25 to S39 shown in FIG. 6 are not executed during the execution of the pull scan. User A confirms the completion of the pull scan (S53), moves back to MFP10, and can retrieve the original document and release the panel lock (S57). During this time, since the panel is locked, operations on User B's User IF16 are disabled, and by displaying the lock screen 41G, other users can be made aware to User B that it is in use.
[0073] Next, a third example of performing a pull scan with the SFL function enabled and the panel locked in the logged-out state will be described. In the case of the third example, since the SFL function is enabled (S1: YES) and the device is in the logged-out state (S2: NO), the controller 11 displays the standby screen 41A in FIG. 5(a) (S4). When the controller 11 receives a panel lock request (S8: YES), since it is in the logged-out state (S9: NO), it accepts the lock user name at the User IF16 (S11). Specifically, the user can lock the panel by operating the panel lock button 48 shown on the selection screen 41B in FIG. 5(b). After the panel lock button 48 is operated, the user name input screen 71C in FIG. 7(c) is displayed, and the processing is the same as when the SFL function is disabled. The controller 11 accepts the lock user name, etc. (S11, S12, S13), and displays the lock screen 41G to execute the panel lock (S15). Also, the processing in the operation of the pull scan is the same as the sequence shown in FIG. 8.
[0074] Next, the panel lock in image forming processes other than scanning will be described. As an example, printing by operating the user IF16 of the MFP10 and PC printing based on an execution instruction for printing from the PC40 to the MFP10 will be described. For example, when user A performs PC printing using a special sheet, the special sheet is set in the paper feed tray of the MFP10, and then the user moves to the PC40 to give a printing instruction. At this time, it is assumed that another user B may remove the special sheet set by user A in order to perform printing (copying, accumulation printing, etc.) by operating the user IF16. Also, it is assumed that if user B does not remove the special sheet set by user A and performs printing by operating the user IF16, the special sheet will be used and will no longer be available for printing according to the instruction of user A. Even in such a case, by performing the above-described panel lock, actions by user B that are not desirable for user A, that is, actions related to printing by user B such as removing the sheet and instructing printing, can be restricted. Regarding authentication in PC printing, similar to pull scanning, for example, if the SFL function is enabled, as shown in FIG. 6, user authentication information (user name and authentication password) is transmitted from the PC40, and the controller 11 authenticates and executes PC printing. Also, if the SFL function is disabled, as shown in FIG. 8, PC printing may be executed without performing authentication without transmitting user authentication information from the PC40.
[0075] Also, another example will be described regarding the panel lock in the image forming process of scanning that has already been described. While user A places the original document on the MFP10 and is away from the MFP10 to instruct pull scanning, there is a possibility that user B may try to instruct FAX transmission to the MFP10. If user B tries to place an original document for FAX transmission and opens the top plate of the scanner 15, there is a risk that the position of the original document set by user A may shift before the start of pull scanning. The controller 11 executes the panel lock that has already been described, thereby also preventing actions by user B that are not desirable for user A, that is, actions such as user B inadvertently opening the top plate or instructing FAX transmission.
[0076] Therefore, as the image formation in this specification, not limited to the generation of scan data by scanning, the formation of image data in printing or FAX may be adopted. Further, the sheet to be printed is stored in the paper feed tray, making it difficult or impossible to visually recognize from outside the MFP 10. For this reason, as the placement unit in this specification, not limited to the platen glass used for scanning, other sheets such as a paper feed tray used for printing or FAX that can place other sheets can be adopted.
[0077] In the embodiment described above, the following effects can be achieved. When the controller 11 of the MFP 10 receives an operation of specifying an unlock password via the user IF 16 (S13), it displays the lock display image 61 on the user IF 16 and locks the panel, thereby restricting the operation to the user IF 16 (S15). Thereby, the operation by other users can be restricted, and it can be made recognized by other users that a pull scan is scheduled to be executed or is being executed. Actions that are undesirable for the user in use by other users can be prevented beforehand.
[0078] Further, when the controller 11 receives an instruction for a pull scan in the panel locked state (S25), it executes the pull scan (S29 and subsequent steps). Then, when an unlock password is input to the unlock reception unit 64 of the lock screen 41G by the controller 11, the panel lock is released (S18: YES, S19). Thereby, after starting the pull scan, the user can release the panel lock at a timing desired by the user. While preventing undesirable actions of other users, the convenience of the user in use can be improved.
[0079] In addition, the controller 11 receives a message to be displayed on the lock screen 41G during panel locking, and displays the received message in the message field 63 of the lock screen 41G. Thereby, by displaying the message received from the user on the lock screen 41G, the purpose of panel locking, the function to be used, etc. can be recognized by other users. Other users can take more appropriate actions.
[0080] In addition, the controller 11 receives a lock period for panel locking, and displays the received lock period in the lock period field 66 of the lock screen 41G. Thereby, it is possible to make other users recognize how long the panel lock will continue. Other users can grasp when they can start using it.
[0081] In addition, after executing the panel lock, when the specified lock period has elapsed (S16: YES), the controller 11 releases the panel lock (S19). Thereby, when forgetting to release the panel lock, the panel lock can be released according to the elapse of the lock period. It is possible to suppress the unnecessary continuation of the panel lock and suppress the excessive restriction of the use by other users.
[0082] In addition, the controller 11 displays an unlock reception section 64 on the lock screen 41G, receives the input of an unlock password to the unlock reception section 64, and when the received unlock password matches the one specified at the time of panel locking (S18: YES), releases the panel lock. Thereby, by displaying the unlock reception section 64 on the lock screen 41G, it is possible to receive the input of the unlock password and smoothly execute the release of the panel lock.
[0083] Also, when the panel is not locked, the controller 11 displays an icon 43 for executing push scan or the like on the standby screen 41A. The controller 11 restricts the operation on the icon 43 by displaying the lock display image 61 on the lock screen 41G. When the unlock password matches and the panel lock is released, the controller 11 redisplays the standby screen 41A where the icon 43 can be operated, and accepts an execution instruction for push scan or the like. Thereby, the operation on the icon 43 for instructing push scan, copy, FAX, etc. can be restricted by displaying the lock screen 41G (lock display image 61). Also, if the panel lock is released, each function can be immediately used by operating the icon 43.
[0084] Also, when the controller 11 receives an execution instruction for push scan in the panel locked state, it displays the lock screen 41G or the scan in progress screen, and also executes the panel lock during the execution of push scan (see Fig. 6). Thereby, the restriction on the operation of the user IF16 is continued even during the execution of push scan. It is possible to suppress a mistake in the scan being executed when another user B touches the original document during push scan.
[0085] Also, in a state where the SFL function shown in Fig. 7 is invalid or in a logged-out state, when receiving an instruction for panel lock, the controller 11 accepts an operation for designating the user name of the user who executes the panel lock on the user name input screen 71C (S9: NO, S11). The controller 11 displays the designated user name as the lock user name in the information column 45 on the lock screen 41G. Thereby, when performing the panel lock, by accepting the user who performs the panel lock and displaying it on the lock screen 41G, other users can recognize who executed the panel lock.
[0086] Also, when the controller 11 receives a panel lock operation in the logged-in state (S9: YES), it displays the logged-in username as the locked username in the information column 45 of the lock screen 41G. As a result, by diverting the logged-in username as the locked username for the panel lock, the user who performs the panel lock does not need to input the username.
[0087] Also, when the controller 11 receives a panel lock operation in the logged-in state (S9: YES), it does not request an operation to specify the user who executes the panel lock. Also, in the logged-out state, the controller 11 receives the username of the user who executes the panel lock and displays it on the lock screen 41G. As a result, if it is in the logged-in state, the selection and input of the locked username can be omitted by diverting the logged-in username, and in the logged-out state, the locked username can be specified and displayed.
[0088] Also, when the controller 11 receives an execution instruction for a pull scan in the logged-in state, if the panel is locked, it displays the lock screen 41G and restricts the operation on the information column 45, thereby restricting the operation of changing the logged-in user. As a result, the logged-in user is not changed before the authentication of the pull scan, and if the username and authentication password received together with the execution instruction for the pull scan do not correspond to the user authentication information of the logged-in user at the time of receiving the execution instruction for the pull scan, the push scan cannot be started. Thereby, when the SFL function is effective, user authentication is required for the pull scan, and by restricting the change of the logged-in user during panel lock, only the logged-in user can be restricted to execute the pull scan.
[0089] Also, the controller 11 restricts the operation of changing the logged-in user by executing the panel lock in the logged-in state, and starts the scan only when the authentication of the pull scan is executed and the authentication is successful. Thereby, by restricting the change of the logged-in user during the panel lock in the logged-in state, when the SFL function is effective, only the logged-in user can be restricted to execute the pull scan.
[0090] Further, when the controller 11 starts a pulse scan in the panel locked state, it restricts the change of the logged-in user by displaying a screen during scan execution. Thereby, it is possible to suppress the change of the logged-in user during the pulse scan, and it is possible to suppress the occurrence of unexpected situations such as the logged-in user being changed and the panel lock being released.
[0091] Further, the controller 11 may set the login password as the unlock password. When the controller 11 receives an instruction to lock the panel in the logged-in state, it sets the login password of the logged-in user (an example of the login authentication information in this specification) as the unlock password and executes the panel lock without requiring an operation to specify the unlock password. Then, when the login password is input as the unlock password in the panel locked state, the controller 11 may release the panel lock. Thereby, in the logged-in state, the trouble of inputting the unlock password can be eliminated, and the usability can be improved. Also, in the logged-in state, it is possible to suppress the panel from being locked by a third party.
[0092] (Other Embodiments) The image forming apparatus is not limited to the above-described embodiments, and various changes are possible without departing from the gist thereof. The order, content, etc. of the processes shown in FIGS. 3 and 4 in the above-described embodiments are examples. For example, even in the logged-in state, the controller 11 may receive the name of the user to be locked for locking the panel and display it on the lock screen 41G. In the above-described embodiment, the MFP 10 had the SFL function and the functions could be restricted for each user. However, it is not necessary to provide the SFL function. In this case, for example, in the processes of FIGS. 3 and 4, the controller 11 omits S1 to S4, S6, and S7, executes S5, and then executes S8. In the case of a negative determination (S8: NO), S5 and S8 are repeatedly executed. Further, when the determination in S8 is affirmative (S8: YES), the controller 11 executes S11, S12, S13, S15, etc. without executing S9. Further, the controller 11 executes the processes shown in FIGS. 7 and 8.
[0093] In the above-described embodiment, the controller 11 used the SFL database 19 to perform authentication of the user name and authentication password and restriction of functions. However, authentication and function restriction may be performed using other information. For example, "Active Directory Authentication" or "LDAP Authentication" may be used. For example, when the controller 11 uses "Active Directory Authentication", the login authentication to the MFP 10 may be performed based on the authentication information stored in the Active Directory (registered trademark) server. Further, the controller 11 may perform restriction of functions such as the scan function using the restriction setting values for each user stored in the Active Directory server. Further, when the controller 11 uses "LDAP Authentication", the login authentication to the MFP 10 may be performed based on the authentication information stored in the LDAP (abbreviation for Lightweight Directory Access Protocol) server. Further, the controller 11 may perform restriction of functions using the restriction setting values stored in the LDAP server. Also, the above-described authentication and restriction methods may be used in combination or switched. Further, the authentication information and the restriction setting values may be stored in different storage units. For example, the controller 11 may perform the login authentication to the MFP 10 based on the authentication information stored in the server and store the restriction setting values in the SFL database 19 of the memory 12.
[0094] In the above embodiment, the restriction setting value for the function "SFL" is set using the web page transmitted from the controller 11 of the MFP 10. Alternatively, the restriction setting value for the function "SFL" may be set by operating the user IF 16 of the MFP 10. As an example of the image forming apparatus, the MFP 10 has been described, but the image forming apparatus may be an apparatus capable of executing only the function "scanner", an apparatus capable of executing only the function "print", an apparatus capable of executing only the function "FAX", or an apparatus capable of executing at least two functions among the functions "print", "copy", and "FAX".
Explanation of Reference Numerals
[0095] 10 MFC (image forming apparatus), 11 controller, 15 scanner, 16 user IF, 18 communication IF, 40 PC (information processing apparatus), 41G lock screen, 43 icon (object), 57 message input section, 63 message field, 64 unlock reception section (object), 66 lock period field.
Claims
1. a user interface, a scanner, a communication interface, a placement unit, a controller, An image forming apparatus comprising: communicable with an information processing apparatus having a user interface via the communication interface; The placement unit is capable of placing a sheet to be an object of image formation, and when image formation is performed by the scanner, the placed sheet is in a state where it is difficult to be visually recognized from outside the image forming apparatus; The controller is configured to be capable of executing, as image formation, a scan according to an information processing apparatus instruction and a scan according to an image forming apparatus instruction; The controller In the scan according to the information processing apparatus instruction, according to the information processing apparatus instruction received from the information processing apparatus based on an operation on the user interface provided in the information processing apparatus, the sheet placed on the placement unit is scanned by the scanner to generate image data, and the generated image data is transmitted to the information processing apparatus; The controller In the scan according to the image forming apparatus instruction, according to an operation for instructing the image forming apparatus instruction on the user interface provided in the image forming apparatus, the sheet placed on the placement unit is scanned by the scanner to generate image data, and the generated image data is transmitted to the information processing apparatus; The controller When a restriction instruction operation including an operation for designating authentication information is received via the user interface provided in the image forming apparatus, a screen indicating that operations via the user interface provided in the image forming apparatus are restricted is displayed on the user interface provided in the image forming apparatus, and operations for instructing image formation on the user interface provided in the image forming apparatus are restricted, and user interface restriction is executed; The controller is configured to execute a scan according to the information processing apparatus instruction in response to receiving the information processing apparatus instruction from the information processing apparatus in a state where the user interface restriction is executed; The controller An image forming apparatus configured to cancel the user interface restriction in response to receiving, via a user interface included in the image forming apparatus, an operation involving input of the authentication information indicating cancellation of the user interface restriction while the user interface restriction is being executed.
2. The controller is configured to receive, as the restriction instruction operation, an operation of specifying a message indicating restriction of an operation via a user interface included in the image forming apparatus, The controller is configured to display, as the user interface restriction, on the user interface included in the image forming apparatus, a screen including a message indicating restriction of an operation via the specified user interface included in the image forming apparatus, the image forming apparatus according to claim 1.
3. The controller is configured to receive, as the restriction instruction operation, an operation of specifying a period during which scanning according to the information processing apparatus instruction is to be executed, The controller is configured to display, as the user interface restriction, on the user interface included in the image forming apparatus, a screen indicating the specified period and indicating restriction of an operation via the user interface included in the image forming apparatus, the image forming apparatus according to claim 1 or claim 2.
4. The controller is configured to receive, as the restriction instruction operation, an operation of specifying a period during which scanning according to the information processing apparatus instruction is to be executed, The controller is configured to display, as the user interface restriction, on the user interface included in the image forming apparatus, a screen indicating the specified period and indicating restriction of an operation via the user interface included in the image forming apparatus, The controller is configured to cancel the user interface restriction in response to the elapse of the specified period while the user interface restriction is being executed, the image forming apparatus according to claim 1 or claim 2.
5. The controller is configured to In the user interface restriction, as a screen indicating restriction of operations via the user interface included in the image forming apparatus, a screen including an object for receiving an operation involving input of the authentication information is displayed on the user interface included in the image forming apparatus, and is configured as such. The controller is configured to receive input of the authentication information in response to receiving an operation on the object, and to release the user interface restriction in response to the received input information corresponding to the authentication information specified in the restriction instruction operation. The image forming apparatus according to claim 1 or claim 2.
6. The controller is configured to display, on the user interface included in the image forming apparatus, an object for instructing the image forming apparatus in a state where the user interface restriction is not being executed. The controller is configured to restrict an operation for instructing image formation using an object for instructing the image forming apparatus on the user interface included in the image forming apparatus by displaying, as a screen indicating restriction of operations via the user interface included in the image forming apparatus in the user interface restriction, a screen including an object for receiving an operation involving input of the authentication information on the user interface included in the image forming apparatus. The controller is configured to receive input of the authentication information in response to receiving an operation on the object for receiving an operation involving input of the authentication information, to release the user interface restriction in response to the received input information corresponding to the authentication information specified in the restriction instruction operation, and to display an object for instructing the image forming apparatus on the user interface included in the image forming apparatus. The image forming apparatus according to claim 1 or claim 2.
7. The controller When the information processing apparatus starts a scan in response to receiving the information processing apparatus instruction while the user interface restriction is being executed, the user interface restriction is also executed during the execution of the scan in response to the information processing apparatus instruction. The image forming apparatus according to claim 1 or claim 2, which is configured as described above.
8. The controller is configured to receive, as the restriction instruction operation, an operation for designating a user who executes the restriction instruction operation. The controller is configured to display, on the user interface provided in the image forming apparatus, a screen that indicates the designated user and indicates that operations via the user interface provided in the image forming apparatus are restricted, as the user interface restriction. The image forming apparatus according to claim 1 or claim 2, which is configured as described above.
9. The controller is configured to receive operations in a logged-in state when a login operation is received. The controller is configured to display, on the user interface provided in the image forming apparatus, a screen that indicates the logged-in user and indicates that operations via the user interface provided in the image forming apparatus are restricted, as the user interface restriction, when the restriction instruction operation is received in the logged-in state. The image forming apparatus according to claim 1 or claim 2, which is configured as described above.
10. The controller is configured to receive operations in a logged-in state when a login operation is received. The controller is when the restriction instruction operation is received in the logged-in state, does not require an operation for designating a user who executes the restriction instruction operation, configured to display, on the user interface provided in the image forming apparatus, a screen that indicates the logged-in user and indicates that operations via the user interface provided in the image forming apparatus are restricted, as the user interface restriction. The controller is when the restriction instruction operation is received in a non-logged-in state, receives an operation for designating a user who executes the restriction instruction operation. The image forming apparatus according to claim 1 or claim 2, configured such that, as the user interface restriction, a screen indicating a designated user and restricting an operation via the user interface provided in the image forming apparatus is displayed on the user interface provided in the image forming apparatus.
11. The controller is configured to accept operations in a logged-in state when a login operation is received. The controller is configured such that, in a logged-in state, in response to receiving the information processing apparatus instruction together with user authentication information, if the user authentication information received together with the information processing apparatus instruction corresponds to the user authentication information of the logged-in user, the scan corresponding to the information processing apparatus instruction is started, and if it does not correspond to the user authentication information of the logged-in user, the scan corresponding to the information processing apparatus instruction is not started. The controller is configured such that, in a logged-in state, when receiving the information processing apparatus instruction from the information processing apparatus, as the user interface restriction, by restricting an operation to change the logged-in user to the user interface provided in the image forming apparatus, if the user authentication information received together with the information processing apparatus instruction does not correspond to the user authentication information of the logged-in user at the time of receiving the information processing apparatus instruction, the scan corresponding to the information processing apparatus instruction is not started. The image forming apparatus according to claim 1 or claim 2.
12. The controller is configured to accept operations in a logged-in state when a login operation is received. The controller is configured such that, in a logged-in state, in response to receiving the information processing apparatus instruction together with user authentication information, if the user authentication information received together with the information processing apparatus instruction corresponds to the user authentication information of the logged-in user, the scan corresponding to the information processing apparatus instruction is started, and if it does not correspond to the user authentication information of the logged-in user, the scan corresponding to the information processing apparatus instruction is not started. The controller is In the logged-in state, by executing the user interface restriction, when the user authentication information received together with the information processing apparatus instruction corresponds to the user authentication information of the logged-in user in a state where the operation of changing the logged-in user to the user interface provided in the image forming apparatus is restricted, start scanning according to the information processing apparatus instruction, and if it does not correspond to the user authentication information of the logged-in user, do not start scanning according to the information processing apparatus instruction, the image forming apparatus according to claim 1 or claim 2, which is configured as described above.
13. The controller is In a state where the user interface restriction is executed, when receiving the information processing apparatus instruction from the information processing apparatus and starting scanning according to the information processing apparatus instruction, even during the execution of scanning according to the information processing apparatus instruction, the operation of changing the logged-in user to the user interface provided in the image forming apparatus is restricted, the image forming apparatus according to claim 1 or claim 2, which is configured as described above.
14. The controller is configured to receive operations in the logged-in state when receiving a login operation, The controller is When receiving an instruction to restrict the operation of the user interface provided in the information processing apparatus in the logged-in state, set the login authentication information used for the login authentication of the logged-in user as the authentication information, receive the restriction instruction operation without requiring an operation to specify the authentication information, and execute the user interface restriction, which is configured as described above. The controller is In a state where the user interface restriction is executed, receive an operation involving input of the authentication information indicating cancellation of the user interface restriction via the user interface provided in the image forming apparatus, and cancel the user interface restriction in response to the input of the login authentication information as the authentication information, the image forming apparatus according to claim 1 or claim 2, which is configured as described above.
15. A user interface, An image forming unit, A communication interface, A placement unit, A controller, An image forming apparatus comprising: communicable with an information processing apparatus having a user interface via the communication interface; The placement unit is capable of placing a sheet to be imaged, The controller is As image formation, it is configured to be capable of executing image formation according to an instruction from an information processing apparatus and image formation according to an instruction from an image forming apparatus. The controller is In the image formation according to the instruction from the information processing apparatus, in response to the instruction from the information processing apparatus received based on an operation on the user interface included in the information processing apparatus, image formation by the image forming unit is executed using the sheet placed on the placement unit. The controller is In the image formation according to the instruction from the image forming apparatus, in response to an operation for instructing the image forming apparatus on the user interface included in the image forming apparatus, image formation by the image forming unit is executed using the sheet placed on the placement unit. The controller is When a restriction instruction operation including an operation for designating authentication information is received via the user interface included in the image forming apparatus, a screen indicating that operations via the user interface included in the image forming apparatus are restricted is displayed on the user interface included in the image forming apparatus, and operations for instructing image formation on the user interface included in the image forming apparatus are restricted, and user interface restriction is executed. The controller is In a state where the user interface restriction is executed, in response to receiving the instruction from the information processing apparatus from the information processing apparatus, image formation according to the instruction from the information processing apparatus is executed. The controller is An image forming apparatus configured to release the user interface restriction in response to receiving an operation involving input of the authentication information indicating release of the user interface restriction via the user interface included in the image forming apparatus in a state where the user interface restriction is executed.
16. A user interface, An image forming unit, A communication interface, A placement unit, A controller, An image forming apparatus comprising: It is communicable with an information processing apparatus having a user interface via the communication interface. The placement unit is Capable of placing a sheet to be subjected to image formation. The controller is As image formation, it is configured to be capable of executing printing according to an instruction from an information processing apparatus and printing according to an instruction from an image forming apparatus. The controller is In printing according to the information processing apparatus instruction, printing is executed by the image forming unit using the sheet placed on the placement unit in accordance with the information processing apparatus instruction received from the information processing apparatus based on an operation on the user interface provided in the information processing apparatus. The controller is In printing according to the image forming apparatus instruction, printing is executed by the image forming unit using the sheet placed on the placement unit in accordance with an operation for giving the image forming apparatus instruction to the user interface provided in the image forming apparatus. The controller is When receiving a restriction instruction operation including an operation for designating authentication information via the user interface provided in the image forming apparatus, the controller displays, on the user interface provided in the image forming apparatus, a screen indicating restriction of operations via the user interface provided in the image forming apparatus, and restricts an operation for instructing image formation to the user interface provided in the image forming apparatus, and executes user interface restriction. The controller is In a state where the user interface restriction is executed, the controller executes printing according to the information processing apparatus instruction in response to receiving the information processing apparatus instruction from the information processing apparatus. The controller is An image forming apparatus configured to cancel the user interface restriction in response to receiving an operation involving input of the authentication information indicating cancellation of the user interface restriction via the user interface provided in the image forming apparatus in a state where the user interface restriction is executed.
Citation Information
Patent Citations
Device for producing high-purity distilled water
JP1991000182A