Server device, and control method and program for server device

A server device using biometric authentication verifies users at a facility to ensure eligible customers receive privileges, addressing the challenge of identifying matching service users in settings like restaurants.

JP2025110643APending Publication Date: 2025-07-29NEC CORP
View PDF 1 Cites 0 Cited by

Patent Information

Application Number
JP2024004589
Authority / Receiving Office
JP · JP
Patent Type
Applications
Current Assignee / Owner
Filing Date
2024-01-16
Publication Date
2025-07-29

AI Technical Summary

Technical Problem

In settings like restaurants, it is difficult to immediately determine whether a customer is a user of a matching service for marriage support, making it challenging to smoothly grant privileges to eligible users.

Method used

A server device that stores biometric information of users and performs authentication using biometric data from an authentication terminal to verify the identity of users visiting a facility at the same timing, enabling accurate determination of eligible customers for privilege granting.

Benefits of technology

Enhances user convenience by allowing immediate and accurate identification of eligible customers, ensuring that privileges are granted smoothly and efficiently.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure 2025110643000001_ABST
    Figure 2025110643000001_ABST
Patent Text Reader

Abstract

To provide a server device that contributes to improving convenience for users who visit a restaurant or other establishment at substantially the same timing.SOLUTION: A server device comprises storage means and authentication means. The storage means stores biometric information for each of a plurality of users who visits a prescribed facility at substantially the same timing. The authentication means receives an authentication request including biometric information for each of a plurality of people to be authenticated from an authentication terminal installed in the prescribed facility. The authentication means executes authentication processing using the biometric information for each of the plurality of people to be authenticated included in the authentication request and the stored biometric information for each of the plurality of users.SELECTED DRAWING: Figure 1
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to a server device, a control method for the server device, and a program.

Background Art

[0002] There are technologies related to user authentication.

[0003] For example, Patent Document 1 describes providing a product after performing authentication without much effort on the part of the user in a product providing device such as a vending machine. In Patent Document 1, authentication is performed based on a face image captured by a vending machine. Although the authentication accuracy of authentication using a face image is not 100%, even if by chance a wrong user is identified by face image authentication, product information is transmitted from a management device to the mobile communication terminal possessed by the user himself / herself. As a result, it becomes possible to surely confirm the intention of the user who purchases the product.

Prior Art Documents

Patent Documents

[0004]

Patent Document 1

Summary of the Invention

Problems to be Solved by the Invention

[0005] In recent years, matching services that support meetings between men and women for the purpose of marriage have become widespread. As part of the services in such matching services, when users (two parties involved in marriage hunting) visit the same restaurant or the like, discounts on fees or the like may be provided. However, in a restaurant or the like, it is difficult to immediately determine whether a customer who has come to the store is a user of the matching service and is a target for privilege granting. As a result, privileges are not smoothly granted to users of the matching service.

[0006] The main object of the present invention is to provide a server device, a control method of the server device, and a program that contribute to improving the convenience of users who visit a restaurant or the like at substantially the same timing.

Means for Solving the Problems

[0007] According to a first aspect of the present invention, there is provided a server device including: a storage means for storing biometric information of each of a plurality of users who visit a predetermined facility at substantially the same timing; and an authentication means for receiving an authentication request including biometric information of each of a plurality of authenticatees from an authentication terminal installed in the predetermined facility, and performing an authentication process using the biometric information of each of the plurality of authenticatees included in the authentication request and the biometric information of each of the plurality of users stored.

[0008] According to a second aspect of the present invention, there is provided a control method of a server device, in which the server device stores biometric information of each of a plurality of users who visit a predetermined facility at substantially the same timing, receives an authentication request including biometric information of each of a plurality of authenticatees from an authentication terminal installed in the predetermined facility, and performs an authentication process using the biometric information of each of the plurality of authenticatees included in the authentication request and the biometric information of each of the plurality of users stored.

[0009] According to a third aspect of the present invention, there is provided a program for causing a computer mounted on a server device to execute a process of storing biometric information of each of a plurality of users who visit a predetermined facility at substantially the same timing in the server device, and a process of receiving an authentication request including biometric information of each of a plurality of authenticatees from an authentication terminal installed in the predetermined facility, and performing an authentication process using the biometric information of each of the plurality of authenticatees included in the authentication request and the biometric information of each of the plurality of users stored.

Effects of the Invention

[0010] According to each aspect of the present invention, a server device, a control method of the server device, and a program are provided that contribute to improving the convenience of users who visit a restaurant or the like at substantially the same timing. Note that the effects of the present invention are not limited to the above. Instead of or together with the above effects, other effects may be achieved by the present invention.

Brief Description of the Drawings

[0011]

Figure 1

Figure 2

Figure 3

Figure 4

Figure 5

Figure 6

Figure 7

Figure 8

Figure 9

Figure 10

Figure 11

Figure 12

Figure 13

Figure 14

Figure 15

Figure 16

Figure 17

Figure 18

Figure 19

Figure 20

Figure 21

Figure 22

Figure 23

DETAILED DESCRIPTION OF THE INVENTION

[0012] First, an overview of an embodiment will be described. Note that the reference numerals in the drawings appended to this overview are for convenience of each element as an example to assist understanding, and the description of this overview is not intended to be limiting in any way. Also, unless otherwise specified, the blocks described in each drawing represent a configuration of functional units, not a configuration of hardware units. The connection lines between the blocks in each figure include both bidirectional and unidirectional ones. The one-way arrow schematically shows the flow of the main signal (data) and does not exclude bidirectionality. In this specification and the drawings, for elements that can be similarly described, duplicate descriptions may be omitted by assigning the same reference numerals.

[0013] The server device 100 according to an embodiment includes a storage means 101 and an authentication means 102 (see FIG. 1). The storage means 101 stores the biometric information of each of a plurality of users who visit a predetermined facility at substantially the same timing (step S1 in FIG. 2). The authentication means 102 receives an authentication request including the biometric information of each of a plurality of authenticatees from an authentication terminal installed in a predetermined facility (step S2). The authentication means 102 executes an authentication process using the biometric information of each of the plurality of authenticatees included in the authentication request and the biometric information of each of the plurality of users stored (step S3).

[0014] The server device 100 stores the biometric information of each of a plurality of users combined by a matching service or the like, who visit a restaurant or the like at substantially the same timing. When the plurality of users visit a store or the like, the server device 100 executes an authentication process using the pre-stored biometric information and the biometric information of the plurality of users (biometric information of the person to be authenticated) who visited the restaurant or the like. When the server device 100 determines that the plurality of users are visiting a restaurant or the like at substantially the same timing, it determines that the authentication is successful. The server device 100 notifies the authentication result to the authentication terminal installed in the restaurant or the like. In the restaurant, a privilege is given to the user (for example, two marriage-seeking parties using a matching service) for whom the authentication is determined to be successful. In this way, since the employees of the restaurant or the like can easily determine whether the customer who visited the store is the target of privilege granting, they can smoothly grant the privilege to the customer. As a result, the convenience of the users who visit a restaurant or the like at substantially the same timing is improved.

[0015] Specific embodiments will be described in more detail below with reference to the drawings.

[0016] [First Embodiment] The first embodiment will be described in more detail with reference to the drawings.

[0017] [Configuration of System] As shown in FIG. 3, the information processing system according to the first embodiment includes at least one or more certificate issuers and a plurality of service providers.

[0018] The certificate issuer is a body that issues a certificate to a user. Specifically, the certificate issuer is an organization or the like that has the authority to issue a certificate that proves the "qualification" of the user. For example, the certificate issuer issues a certificate that proves the identity of the user, a certificate that proves the affiliation (or past affiliation) of the user, a certificate that proves the ability of the user, and the like.

[0019] For example, a public institution that issues identity certificates such as a driver's license, a passport, or a My Number card corresponds to a certificate issuer. Alternatively, a company that issues an employment certificate to its employees or former employees, or an educational institution such as a university or vocational school that issues a graduation certificate to graduating students corresponds to a certificate issuer. Alternatively, an organization, association, etc. that issues a certificate to prove qualifications, language proficiency, etc. required for a prescribed business corresponds to a certificate issuer.

[0020] Each certificate issuer has a certificate issuance server 10. The certificate issuance server 10 is a server that performs processes and operations necessary to carry out the business of the certificate issuer. The certificate issuance server 10 may be managed and operated by the certificate issuer, or the management and operation may be entrusted to other operators, etc. The certificate issuance server 10 may be installed inside the building of the certificate issuer, or may be installed on the network (in the cloud).

[0021] The certificate issuer issues a certificate in response to a request from a user. For example, a company issues an employment certificate (certificate of employment, work certificate) in response to a request from an employee.

[0022] A service provider is a business operator that provides services to users. For example, a business operator that provides a matching service to support the meeting of men and women for the purpose of marriage is exemplified as a service provider. Alternatively, a restaurant, an operator of a theme park or amusement park, an operator of a movie theater, etc. are exemplified as service providers.

[0023] An operator ID is assigned to each service provider included in the system. The operator ID is an ID that uniquely identifies each service provider.

[0024] In the following description, a business operator that provides a matching service is referred to as a "matching service provider", and a business operator that provides services other than the matching service is referred to as a "normal service provider". When simply referred to as a service provider, it includes both the matching service provider and the normal service provider.

[0025] The matching service provider and the regular service provider have entered into a specific contract. Specifically, the contract stipulates that when multiple users of the matching service (for example, matched men and women) visit the regular service provider, the regular service provider will grant benefits to those multiple users. In other words, the regular service provider will grant benefits to the users of the matching service in return for receiving customers from the matching service provider.

[0026] The matching service provider requires the user to present at least one certificate appropriate to the matching service. For example, the matching service provider may require the service user to submit an employment certificate, a graduation certificate, etc.

[0027] The matching service provider is provided with a service server 20 for providing services to users. The service server 20 is a server device that provides matching services to users via a website or the like.

[0028] When providing a service to a user, the service server 20 verifies at least one certificate presented by the user. By verifying the certificate, the service server 20 confirms that the certificate, which is the basis for providing the matching service to the user, has not been tampered with and that it has been issued by a legitimate issuer. If the certificate verification is successful, the matching service is provided to the user.

[0029] A normal service provider such as a restaurant is provided with an authentication terminal 21. The authentication terminal 21 may be a terminal such as a personal computer, a tablet terminal, a POS (Point of Sale) terminal, or a signage terminal. The authentication terminal 21 authenticates users who visit a store or the like of the normal service provider.

[0030] The user possesses the terminal 30. For example, the user operates the terminal 30 to request (require) the certificate issuer to issue a certificate. Also, the user uses the terminal 30 to provide the certificate (e.g., employment certificate, graduation certificate) required by the matching service provider to the matching service provider.

[0031] Each device shown in FIG. 3 is connected to the network. Specifically, the certificate issuance server 10, the service server 20, the authentication terminal 21, and the terminal 30 are connected to the network by wired or wireless communication means.

[0032] The configuration of the information processing system shown in FIG. 3 is an example and is not intended to limit the configuration. For example, a plurality of certificate issuance servers 10 may be included in each certificate issuer. Load distribution and redundancy may be performed by the plurality of certificate issuance servers 10. Similarly, a plurality of service servers 20 may be included in the matching service provider. A plurality of authentication terminals 21 may be included in each normal service provider.

[0033] [Schematic Operation] Subsequently, the schematic operation of the information processing system according to the first embodiment will be described.

[0034] [Preparation of Digital Wallet] The user's terminal 30 is equipped with a digital wallet function. The digital wallet is an electronic information storage service that ensures information security such as data integrity, reliability, and availability.

[0035] The user installs an application for realizing the digital wallet on the possessed terminal 30. By opening the digital wallet on the terminal 30, the user can store electronic money, student ID cards, identity certificates such as passports and driver's licenses, various ticket information such as airline tickets and boarding passes, and various digital contents such as vaccination certificates on the terminal 30.

[0036] For example, the user's terminal 30 stores digital content as shown in FIG. 4. Among the digital content stored in the terminal 30, there are public identity certificates such as passports and driver's licenses, as well as employment certificates and graduation certificates issued by companies and universities.

[0037] When the digital wallet application is launched for the first time, the terminal 30 verifies the identity of the user using an identity certificate issued by a public agency such as an administrative agency. The terminal 30 verifies the identity of the user when the digital wallet is opened.

[0038] For example, the terminal 30 verifies the identity of the user using an identity certificate on which the biometric information of the named person, such as a My Number card or a passport, is described. The terminal 30 uses the My Number card or passport as a Root of Trust.

[0039] Note that examples of biometric information include data (feature quantities) calculated from personal physical characteristics unique to an individual, such as a face, fingerprint, voiceprint, vein, retina, or iris pattern of the pupil. Alternatively, the biometric information may be image data such as a face image or a fingerprint image. The biometric information only needs to include the user's physical characteristics as information. In the present disclosure, the case of using biometric information (a face image or a feature quantity generated from a face image) related to a person's "face" will be described.

[0040] The terminal 30 obtains information about the named person (the person to whom the identity certificate is issued) from the user's identity certificate. For example, the terminal 30 obtains information about the named person of the My Number card from the IC (Integrated Circuit) of the My Number card.

[0041] Specifically, the terminal 30 obtains the basic information of the named person of the My Number card (so-called basic four information: name, gender, date of birth, address) and the biometric information (face image) of the named person. The terminal 30 internally stores the basic information and biometric information read from the My Number card.

[0042] Furthermore, the terminal 30 acquires the biometric information of the user (the person who opens the digital wallet). For example, the terminal 30 acquires and stores a face image by photographing the user.

[0043] The terminal 30 performs a collation process (authentication process) using the biometric information obtained from the identity certificate and the biometric information of the user. When the authentication process (one-to-one authentication) is successful, the terminal 30 opens a digital wallet. The terminal 30 confirms that the person in whose name the identity certificate was issued and the user who uses the digital wallet of the terminal 30 are the same person through a collation process (authentication process) using biometric information.

[0044] <Issuance of Certificate> The user acquires digital content to be stored in the digital wallet. For example, the user operates the terminal 30 to request the certificate issuer to issue a certificate. For example, the user requests (demands) the issuance of an employment certificate from the company where the user works or the company from which the user has retired.

[0045] Specifically, the digital wallet application requests the company, which is the certificate issuer, to issue an employment certificate. The certificate issuer issues verifiable credentials (VCs) that can be verified online as a certificate. In the following description, VCs are referred to as "credential certificates".

[0046] Prior to the request for the issuance of the credential certificate, the terminal 30 of the user generates a pair of public and private keys. In addition, the terminal 30 generates a decentralized identifier (DID). The terminal 30 registers the generated DID (user ID; holder ID) and the public key in the blockchain (step S01 in FIG. 5).

[0047] Furthermore, while presenting the user ID, the user's terminal 30 requests the certificate issuer (certificate issuance server 10) to issue a credential certificate. Specifically, the terminal 30 sends a "certificate issuance request" including information about the certificate for which issuance is requested, information identifying the user (e.g., employee number, student ID number, etc.), and the user ID, etc. to the certificate issuance server 10 of the certificate issuer (step S02).

[0048] Note that the certificate issuance server 10 generates, in advance, the DID (issuer ID), private key, and public key of the issuer and stores them.

[0049] Upon receiving the certificate issuance request, the certificate issuer determines whether the user who requests the issuance of the credential certificate (VCs) is eligible to receive the issuance of the said certificate. For example, the certificate issuance server 10 determines whether a user who wishes to obtain an employment certificate is currently employed by the company (whether they were employed by the company).

[0050] If the user is eligible to receive the issuance of the credential certificate, the certificate issuance server 10 generates a credential certificate (VCs) including the issuer ID and the user ID.

[0051] Specifically, the certificate issuance server 10 generates a credential certificate (VCs) including metadata such as the type of the credential certificate, the name of the issuing organization, the issue date and time, etc., the qualification information body, and the public key information of the issuer, electronic signature, etc. Note that the specific information to be certified by the issuer (e.g., information regarding the employment of an employee) is described in the qualification information body.

[0052] The certificate issuance server 10 sends the generated credential certificate to the terminal 30 of the user (the user who will become the holder of the certificate; the requester of the certificate issuance) (certificate issuance; step S03).

[0053] Furthermore, the certificate issuance server 10 registers the issuer ID and the generated public key, etc. on the blockchain (step S04).

[0054] The terminal 30 stores the received credential certificates (VCs) in the digital wallet. For example, when the terminal 30 requests the employer company to issue an employment certificate, it stores the credential certificates (VCs) related to its own employment in the digital wallet.

[0055] <Matching service> The operation of the information processing system when the user receives the matching service will be described below.

[0056] <Member registration> First, the user performs user registration (member registration) to receive the matching service. The user operates the terminal 30 to access the service server 20 of the matching service provider.

[0057] When the user wishes to receive the matching service, the service server 20 verifies the identity of the user and obtains the certificates required for providing the matching service.

[0058] Specifically, the service server 20 obtains the biometric information (face image) stored in the terminal 30 and the biometric information (face image) of the operator operating the terminal 30. For example, the service server 20 sends a "biometric information provision request" to the terminal 30 (step S11 in FIG. 6).

[0059] Upon receiving the biometric information provision request, the terminal 30 captures the operator operating the device to obtain biometric information (face image). The terminal 30 sends the obtained biometric information and the pre-registered biometric information (face image used for identity verification) to the service server 20 (step S12).

[0060] The service server 20 verifies the identity of the user by performing one-to-one authentication using the two pieces of biometric information obtained. When the identity verification is successful (when the one-to-one authentication is successful), the service server 20 requests the terminal 30 to provide the information (certificates) required for providing the matching service. For example, the service server 20 requests the submission of an employment certificate, graduation certificate, etc.

[0061] Specifically, the service server 20 sends a "certificate provision request" to the terminal 30 (step S13). The certificate provision request describes information about at least one or more certificates necessary for the matching service provider to provide the service. For example, the certificate provision request describes the type of certificate that the matching service provider requests.

[0062] In response to receiving the certificate provision request, the terminal 30 sends the credential certificates (VCs) stored in the digital wallet to the service server 20. Specifically, the terminal 30 selects a specified credential certificate from among the plurality of credential certificates stored in the digital wallet. Then, the terminal 30 signs the selected credential certificate using the private key corresponding to the user's DID (user ID). The terminal 30 sends at least one or more signed credential certificates to the service server 20 (step S14).

[0063] The service server 20 obtains the issuer ID and user ID included in the received credential certificate. Further, the service server 20 obtains the public key corresponding to the obtained issuer ID and the public key corresponding to the obtained user ID from the blockchain (step S15).

[0064] Thereafter, the service server 20 verifies at least one or more credential certificates received from the terminal 30. Specifically, the service server 20 verifies the signature of the holder and the signature of the issuer attached to the credential certificate. By verifying these signatures, the service server 20 confirms that the credential certificate obtained from the user (holder of the credential certificate) has not been tampered with and that it is a certificate issued by a trustworthy issuer.

[0065] When the service server 20 successfully verifies the obtained credential certificate (e.g., employment certificate, graduation certificate, etc.), it generates a user account.

[0066] Specifically, the service server 20 acquires information such as login information (login ID, password), name, gender, date of birth, address, phone number, email address, and information about hobbies (hobby information) from the user.

[0067] When the service server 20 acquires the user's name and the like, it associates the login information, name, gender, date of birth, address, phone number, email address, hobby information, biometric information, educational background, work history, etc., and stores them in the user management database. Details of the user management database will be described later.

[0068] In addition, the service server 20 stores the biometric information used for user authentication in the user management database. Also, the service server 20 acquires the user's educational background, work history, etc. from the credential certificates (employment certificate, graduation certificate, etc.) obtained from the terminal 30.

[0069] <Matching process> The service server 20 determines other members (introduced persons) to introduce to the user in response to a request from the user (a member who has completed membership registration). The service server 20 executes a matching process using the information of each of the person who hopes for introduction and other members (for example, educational background, work history, hobby information, etc.). The service server 20 selects the most suitable member as the introduced person for the person who hopes for introduction.

[0070] The service server 20 transmits the information of the introduction partner to each of the members (the person who hopes for introduction, the introduced person) whose combination has been determined by the matching process. Specifically, the service server 20 inquires each member (the person who hopes for introduction, the introduced person) whether they agree to meet with the introduction partner at a determined date and time.

[0071] The service server 20 transmits a "request for confirmation of introduction partner" including the information of the introduction partner to the terminal 30 of each of the person who hopes for introduction and the introduced person (the email address that the terminal 30 can receive) (see Fig. 7).

[0072] Upon receiving a request to confirm the introduction partner, the terminal 30 displays information such as the introduction partner's information and obtains whether the user agrees to meet the introduced partner. The terminal 30 sends the obtained confirmation result (agreement or non - agreement to meet the introduction partner) to the service server 20. At that time, the terminal 30 also notifies the service server 20 of the user's schedule (the date and time when it is possible to meet the introduction partner).

[0073] When both the person wishing for introduction and the person to be introduced agree to meet the introduction partner, the service server 20 generates a plan (date plan) for the two parties (dating parties) to act together.

[0074] For example, the service server 20 generates a date plan including a restaurant, amusement park, etc. that the two parties will visit together. The service server 20 generates a date plan consisting of a combination of the normal service providers (such as restaurants, amusement parks, etc.) that the two parties will visit and the visit date and time. The service server 20 generates a date plan consisting of at least one combination (normal service provider, visit date and time).

[0075] The service server 20 notifies the two parties of the generated date plan. Specifically, the service server 20 sends a "date plan notification" including the generated date plan to the terminals 30 owned by the two parties respectively (see Figure 8). The terminal 30 that receives the date plan notification presents the obtained date plan to the user.

[0076] The service server 20 associates and stores the information of the normal service providers included in the generated date plan with the biometric information of each of the two parties. Specifically, the service server 20 stores the normal service provider, the date and time when the two parties visit, and the biometric information of each of the two parties in the business operator management database prepared for each normal service provider. Details of the business operator management database will be described later.

[0077] <Biometric authentication> Two parties visit the store of the date plan proposed by the matching service provider (usually the service provider).

[0078] As described above, an authentication terminal 21 is installed in the store of the normal service provider and the like.

[0079] The authentication terminal 21 takes pictures of the two parties who visited the store according to the operation of the store employees and the like. The authentication terminal 21 transmits the image data obtained by the photographing to the service server 20. Specifically, the authentication terminal 21 takes pictures of the two parties and transmits an "authentication request" including the image data showing the faces of the two parties and the business operator ID to the service server 20 (see FIG. 9).

[0080] The service server 20 identifies the normal service provider visited by the authenticators (two parties) based on the business operator ID. The service server 20 performs biometric authentication using the biometric information stored in the business operator management database corresponding to the identified normal service provider and the biometric information of the two parties included in the authentication request.

[0081] The service server 20 determines that the authentication is successful if the two parties to whom the date plan was proposed visit the normal service provider (restaurant or amusement park) proposed at substantially the same timing. On the other hand, the service server 20 determines that the authentication has failed when a user other than the party visits the normal service provider or when the two parties do not visit the normal service provider at the same time.

[0082] The service server 20 notifies the authentication terminal 21 of the authentication result (authentication success, authentication failure).

[0083] In the case of successful authentication, the normal service provider (authentication terminal 21) grants a predetermined privilege to the two parties who visited the store according to the date plan. For example, the normal service provider gives a privilege such as a discount on the price.

[0084] In addition, when a user other than the two parties or only one of the two parties visits the normal service provider, it is determined that the authentication has failed, and thus no privileges are granted to these users.

[0085] Next, details of each device included in the information processing system according to the first embodiment will be described.

[0086] [Terminal] FIG. 10 is a diagram showing an example of the processing configuration (processing modules) of the terminal 30 according to the embodiment disclosed in the present application. Referring to FIG. 10, the terminal 30 includes a communication control unit 201, an identity verification unit 202, an acquisition control unit 203, a usage control unit 204, a service usage control unit 205, and a storage unit 206.

[0087] The communication control unit 201 is a means for controlling communication with other devices. For example, the communication control unit 201 receives data (packets) from the certificate issuing server 10. Also, the communication control unit 201 transmits data to the certificate issuing server 10. The communication control unit 201 delivers the data received from other devices to other processing modules. The communication control unit 201 transmits the data acquired from other processing modules to other devices. In this way, other processing modules perform data transmission and reception with other devices via the communication control unit 201. The communication control unit 201 has a function as a receiving unit for receiving data from other devices and a function as a transmitting unit for transmitting data to other devices.

[0088] Note that the communication control unit 201 also supports short-range wireless communication such as Bluetooth (registered trademark). The communication control unit 201 communicates with the authentication terminal 21 using short-range wireless communication.

[0089] The digital wallet application is realized by each of the modules of the identity verification unit 202, the acquisition control unit 203, and the usage control unit 204. Note that a detailed description of the installation of the digital wallet application is omitted. This is because the installation of the digital wallet application is obvious to those skilled in the art.

[0090] The personal authentication unit 202 is a means for authenticating the identity of the issuer of the digital wallet. The personal authentication unit 202 authenticates the identity of the issuer of the digital wallet by using the biometric information obtained from the identity certificate and the biometric information of the issuer who opens the digital wallet. More specifically, the personal authentication unit 202 confirms that the issuer of the digital wallet and the person in whose name the identity certificate is issued by a public institution (the person to whom the certificate is issued) are the same.

[0091] FIG. 11 is a flowchart showing an example of the operation of the personal authentication unit 202. The operation of the personal authentication unit 202 will be described while referring to FIG. 11.

[0092] When the digital wallet is opened (at the first startup), the personal authentication unit 202 acquires information about the person in whose name the identity certificate is held from the identity certificate held by the user. For example, the personal authentication unit 202 acquires the basic information and biometric information of the person in whose name the identity certificate is issued from the IC (Integrated Circuit) chip mounted on the My Number card or passport (step S101).

[0093] For example, when the My Number card is used as the identity certificate, the personal authentication unit 202 acquires the PIN for the electronic certificate for user authentication using a GUI (Graphical User Interface) or the like. Alternatively, when the passport is used as the identity certificate, the personal authentication unit 202 acquires the information described in the MRZ (Machine Readable Zone) described on the face of the passport using OCR (Optical Character Recognition) technology.

[0094] The personal verification unit 202 reads information from the IC chip using the obtained PIN (a 4-digit number) or the information described in the MRZ as a password. The personal verification unit 202 stores the basic information (name, gender, date of birth, address) and biometric information (face information, face image) regarding the person named in the identity document in the storage unit 206 (step S102).

[0095] Furthermore, the personal verification unit 202 acquires the biometric information of the user (the user of the terminal 30; the issuer of the digital wallet) (step S103). For example, the personal verification unit 202 prompts the user to take a picture of their face using a GUI or the like (acquires a face image by so-called self-shot).

[0096] When the personal verification unit 202 acquires the biometric information from the identity document and the biometric information of the user operating the own device, the personal verification unit 202 executes a matching process using the biometric information obtained from the identity document and the biometric information of the user (step S104). The personal verification unit 202 determines whether or not the two biometric information substantially match.

[0097] Specifically, the personal verification unit 202 generates feature amounts from each of the two biometric information (for example, face images).

[0098] Regarding the generation process of the feature amounts, existing technologies can be used, so detailed description thereof is omitted. For example, the personal verification unit 202 extracts eyes, nose, mouth, etc. as feature points from the face image. Thereafter, the personal verification unit 202 calculates the positions of each feature point and the distances between the feature points as feature amounts (generates a feature vector composed of a plurality of feature amounts).

[0099] Next, the personal verification unit 202 executes a matching process (authentication process) using the two generated feature amounts. Specifically, the personal verification unit 202 calculates the similarity between the corresponding face images using the two feature amounts. The personal verification unit 202 determines whether the two images are face images of the same person based on the result of the threshold process for the calculated similarity. Note that, as the similarity, a chi-square distance, a Euclidean distance, or the like can be used. The farther the distance, the lower the similarity, and the closer the distance, the higher the similarity.

[0100] If the similarity is greater than a predetermined value (if the distance is shorter than a predetermined value), the personal verification unit 202 determines that the matching process has succeeded. If the similarity is equal to or less than the predetermined value, the personal verification unit 202 determines that the matching process has failed.

[0101] When the matching process succeeds (step S105, Yes branch), the personal verification unit 202 permits the user to use the digital wallet (permission to use; step S106). That is, when the authentication process (one-to-one authentication) succeeds, the personal verification unit 202 opens a digital wallet.

[0102] When the personal verification unit 202 succeeds in the matching process (authentication process) using biometric information, it treats that the person named in the issued identity certificate and the user of the terminal 30 are the same person. At the first startup of the digital wallet, it is determined whether the person named in the identity certificate and the user of the terminal 30 are the same person. If the person named in the identity certificate and the person who opens the digital wallet are the same person, the terminal 30 enables the use of the digital wallet application.

[0103] When the matching process fails (step S105, No branch), the personal verification unit 202 does not permit the user to use the digital wallet (denial of use; step S107). That is, when the authentication process (one-to-one authentication) fails, the user cannot use the digital wallet (cannot open the digital wallet).

[0104] In this way, when the identity verification unit 202 succeeds in the authentication process using the biometric information obtained from the identity certificate and the biometric information of the account opener who opens the digital wallet, it determines that the identity verification has succeeded. When the identity verification is successful, a digital wallet is opened.

[0105] The acquisition control unit 203 is a means for controlling the acquisition of credential certificates (VCs). The acquisition control unit 203 requests the certificate issuer to issue the certificate selected by the user, and stores the certificate obtained from the certificate issuer in the digital wallet.

[0106] FIG. 12 is a flowchart showing an example of the operation of the acquisition control unit 203. While referring to FIG. 12, the operation of the acquisition control unit 203 according to the embodiment disclosed in the present application will be described.

[0107] When the user who has opened the digital wallet activates the digital wallet application and performs a predetermined operation (for example, pressing a certificate issuance button), the acquisition control unit 203 controls the acquisition of the credential certificate desired by the user.

[0108] First, the acquisition control unit 203 generates a pair of a public key and a private key, and a user ID (the user's DID), which is a distributed identifier. The acquisition control unit 203 registers the generated user ID and public key in the blockchain (registering the public key, etc.; step S201).

[0109] Subsequently, the acquisition control unit 203 acquires the information necessary for the certificate issuance request using a GUI or the like (acquisition of necessary information; step S202).

[0110] Specifically, the acquisition control unit 203 acquires information on the certificate issuer who has the right to issue the credential certificate desired by the user, the type of the desired certificate, and the like. Alternatively, the acquisition control unit 203 acquires information (for example, employee number, student ID number, etc.) for the certificate issuer to identify the user as needed.

[0111] The acquisition control unit 203 notifies the certificate issuer of the acquired necessary information and the user ID. Specifically, the acquisition control unit 203 notifies the certificate issuer of the type of credential certificate, information for identifying the certificate recipient (e.g., employee number or student ID number), and the user ID. The acquisition control unit 203 transmits a "certificate issuance request" including the type of credential certificate, information for identifying the recipient, the user ID, etc. to the certificate issuance server 10 of the certificate issuer selected by the user (step S203).

[0112] Note that the acquisition control unit 203 may sign the information included in the certificate issuance request using the private key corresponding to the public key registered in the blockchain.

[0113] The acquisition control unit 203 receives a response (positive response or negative response) to the certificate issuance request from the certificate issuance server 10 (step S204).

[0114] When receiving a negative response indicating that the issuance of the certificate has failed (step S205, No branch), the acquisition control unit 203 notifies the user of the fact that the credential certificate has not been issued (notifies non-issuance; step S206).

[0115] When receiving a positive response indicating that the issuance of the certificate has been successful (step S205, Yes branch), the acquisition control unit 203 stores the credential certificate received from the certificate issuer in the digital wallet (step S207). At that time, the acquisition control unit 203 may notify the user of the fact that the credential certificate has been issued.

[0116] The acquisition control unit 203 may verify the signature attached to the credential certificate obtained from the certificate issuer. In this case, the acquisition control unit 203 obtains the public key corresponding to the issuer ID described in the credential certificate from the blockchain. The acquisition control unit 203 verifies the signature attached to the credential certificate using the obtained public key, and if the verification is successful, may store the credential certificate in the digital wallet.

[0117] In this way, the acquisition control unit 203 acquires a credential certificate from the certificate issuer and stores the acquired credential certificate in the digital wallet. At this time, when the acquisition control unit 203 succeeds in verifying the signature of the acquired credential certificate, it may store the acquired credential certificate in the digital wallet.

[0118] The usage control unit 204 is a means for controlling the usage of digital content (credential certificate) stored in the digital wallet. For example, the usage control unit 204 provides at least the biometric information stored in the terminal 30 and the certificate stored in the digital wallet and specified by the matching service provider to the matching service provider.

[0119] Specifically, the usage control unit 204 processes the biometric information provision request and the certificate provision request received from the service server 20 of the matching service provider.

[0120] When receiving a biometric information provision request, the usage control unit 204 acquires the biometric information (e.g., face image) of the operator of its own device using a GUI or the like. The usage control unit 204 captures the face of the operator by so-called self-photography.

[0121] The usage control unit 204 transmits the acquired biometric information and the biometric information used for identity verification at the time of opening the digital wallet to the device of the service provider. Note that the biometric information used for identity verification at the time of opening the digital wallet may be biometric information obtained from an identity certificate or biometric information obtained by photographing the user.

[0122] When the above two biometric information can be acquired, the usage control unit 204 transmits an affirmative response including the two biometric information to the service server 20. When at least one of the above two biometric information cannot be acquired, the usage control unit 204 transmits a negative response indicating that the biometric information cannot be provided to the service server 20.

[0123] In this way, in response to a request from the matching service provider, the usage control unit 204 provides the biometric information obtained from the identity certificate or the biometric information of the account opener who opens the digital wallet, and the biometric information of the operator who operates the own device, to the matching service provider.

[0124] Upon receiving a certificate providing request, the usage control unit 204 selects the credential certificate designated by the matching service provider from among the plurality of credential certificates stored in the digital wallet. Then, the usage control unit 204 signs the selected credential certificate using the private key corresponding to the user's DID (user ID).

[0125] Note that the usage control unit 204 signs the credential certificate to be submitted to the service provider using the private key (private key corresponding to the user ID) generated at the time of issuing the credential certificate requested to be provided by the matching service provider. For example, when a request is made to provide an employment certificate, the usage control unit 204 signs the employment certificate (credential employment certificate) using the private key corresponding to the user ID transmitted to the certificate issuing server 10 of the employer company. Alternatively, when a request is made to provide a graduation certificate, the usage control unit 204 signs the graduation certificate (credential graduation certificate) using the private key corresponding to the user ID transmitted to the certificate issuing server 10 of the graduating university.

[0126] If the credential certificate designated by the matching service provider is available, the usage control unit 204 transmits an affirmative response including the signed credential certificate (at least one or more credential certificates) to the service server 20. If the credential certificate designated by the matching service provider cannot be provided, the usage control unit 204 transmits a negative response indicating that the credential certificate cannot be provided to the service server 20.

[0127] The service usage control unit 205 is a means for performing control and the like regarding the use of the matching service.

[0128] The service usage control unit 205 processes the introduction partner confirmation request and the date plan notification sent from the service server 20.

[0129] When receiving the introduction partner confirmation request, the service usage control unit 205 displays a GUI as shown in FIG. 13. While displaying the information about the introduction partner included in the introduction partner confirmation request, the service usage control unit 205 acquires whether the user has the intention to meet the introduction partner.

[0130] If the user has no intention to meet the introduction partner, the service usage control unit 205 sends a negative response indicating that the user does not consent to meeting the introduction partner to the service server 20.

[0131] If the user has the intention to meet the introduction partner, the service usage control unit 205 acquires the schedule of the user (the date and time when the user can meet the introduction partner) using a GUI or the like. The service usage control unit 205 sends an affirmative response including the acquired schedule to the service server 20. The affirmative response indicates that the user consents to meeting the introduction partner (consents to meeting at the determined schedule).

[0132] When receiving the date plan notification, the service usage control unit 205 presents the date plan included in the date plan notification to the user. For example, the service usage control unit 205 displays a GUI as shown in FIG. 14.

[0133] The service usage control unit 205 stores the received date plan. The service usage control unit 205 displays the stored date plan according to the user's operation.

[0134] When the service usage control unit 205 receives a notification indicating non - establishment of matching described later from the service server 20, it notifies the user that the matching has not been established.

[0135] The storage unit 206 is a means for storing information necessary for the operation of the terminal 30. The storage unit 206 stores the biometric information of the user acquired at the time of opening the digital wallet, and also stores the certificate issued by the certificate issuer in the digital wallet. Further, the storage unit 206 stores information of each certificate issuer (name of the certificate issuer, address of the certificate issuance server 10, etc.).

[0136] [Certificate Issuance Server] FIG. 15 is a diagram showing an example of the processing configuration (processing modules) of the certificate issuance server 10 according to the embodiment disclosed in the present application. Referring to FIG. 15, the certificate issuance server 10 includes a communication control unit 301, a certificate issuance unit 302, and a storage unit 303.

[0137] The communication control unit 301 is a means for controlling communication with other devices. For example, the communication control unit 301 receives data (packets) from the terminal 30. Also, the communication control unit 301 transmits data to the terminal 30. The communication control unit 301 delivers the data received from other devices to other processing modules. The communication control unit 301 transmits the data acquired from other processing modules to other devices. In this way, other processing modules perform data transmission and reception with other devices via the communication control unit 301. The communication control unit 301 has a function as a receiving unit for receiving data from other devices and a function as a transmitting unit for transmitting data to other devices.

[0138] The certificate issuance unit 302 is a means for issuing a credential certificate to the user. The certificate issuance unit 302 processes the "certificate issuance request" received from the terminal 30.

[0139] Upon receiving the certificate issuance request, the certificate issuance unit 302 searches a database (not shown in FIG. 15 etc.) that stores user information using, as a key, information (for example, employee number or student ID number) for identifying the certificate subject included in the certificate issuance request.

[0140] If the above search fails (i.e., the corresponding user is not registered in the database), the certificate issuing department 302 sends a negative response indicating certificate issuance failure to the terminal 30.

[0141] If the above search is successful, the certificate issuing department 302 determines whether it is possible to issue a credential certificate to the user based on the information stored in the database and the type of credential certificate that the user included in the certificate issuance request wishes to issue. That is, the certificate issuing department 302 determines whether the user who wishes to issue a credential certificate is eligible to receive the issuance of the certificate.

[0142] For example, if the issuance of an employment certificate is desired and the issuance request period of the employment certificate is appropriate, the certificate issuing department 302 determines that the issuance of the employment certificate is possible. On the contrary, if the user recorded in the database has passed a predetermined period since leaving the company, the certificate issuing department 302 determines that the issuance of the employment certificate is not possible.

[0143] Note that a more detailed explanation regarding the issuance of individual credential certificates (e.g., graduation certificates, language proficiency certificates, etc.) is omitted. This is because the detailed explanation regarding the issuance of individual certificates is different from the gist of the present application disclosure.

[0144] If it is not possible to issue a credential certificate to the user, the certificate issuing department 302 sends a negative response indicating certificate issuance failure (certificate issuance not possible) to the terminal 30.

[0145] If it is possible to issue a credential certificate to the user, the certificate issuing department 302 generates a certificate (credential certificate; VCs) to be issued to the user. The certificate issuing department 302 generates a credential certificate including an issuer ID and a user ID (DID of the certificate recipient; user ID included in the certificate issuance request).

[0146] Specifically, the certificate issuing unit 302 generates a credential certificate (VCs) that includes metadata such as the type of the credential certificate, the name of the issuing organization, the issue date and time, etc., the qualification information body, and the public key information and electronic signature of the issuer. Note that the electronic signature attached to the credential certificate is performed using the private key corresponding to the pre-generated issuer ID.

[0147] The certificate issuing unit 302 transmits the generated credential certificate to the terminal 30. Further, the certificate issuing unit 302 registers the pre-generated issuer ID, public key, etc. on the blockchain.

[0148] The storage unit 303 is a means for storing information necessary for the operation of the certificate issuing server 10. A database for storing information necessary for issuing a credential certificate (for example, an employee number, a department affiliation, a date of joining the company, etc. of an employee) is constructed in the storage unit 303.

[0149] [Service Server] FIG. 16 is a diagram showing an example of a processing configuration (processing module) of the service server 20 according to the embodiment disclosed in the present application. Referring to FIG. 16, the service server 20 includes a communication control unit 401, a service provision control unit 402, an authentication unit 403, and a storage unit 404.

[0150] The communication control unit 401 is a means for controlling communication with other devices. For example, the communication control unit 401 receives data (packets) from the terminal 30. Also, the communication control unit 401 transmits data to the terminal 30. The communication control unit 401 delivers the data received from other devices to other processing modules. The communication control unit 401 transmits the data acquired from other processing modules to other devices. In this way, other processing modules perform data transmission and reception with other devices via the communication control unit 401. The communication control unit 401 has a function as a receiving unit for receiving data from other devices and a function as a transmitting unit for transmitting data to other devices.

[0151] The service provision control unit 402 is a means for executing control regarding the matching service provided to the user.

[0152] When the user accesses a predetermined web page or the like and requests the provision of the matching service (requests membership registration), the service provision control unit 402 performs authentication of the user and acquisition of a credential certificate necessary for the provision of the service.

[0153] With reference to FIG. 17, the operation of the service provision control unit 402 for user authentication and acquisition of the credential certificate will be described.

[0154] The service provision control unit 402 transmits a biometric information provision request to the user's terminal 30 (step S301). That is, the service provision control unit 402 requests the provision of biometric information (biometric information used for user authentication; biometric information at the time of opening the digital wallet) stored in the terminal 30.

[0155] When a negative response (inability to provide biometric information) is received from the terminal 30 (step S302, No branch), the service provision control unit 402 notifies the user that the matching service cannot be provided because user authentication has failed (step S303).

[0156] When a positive response (response including two biometric information) is received from the terminal 30 (step S302, Yes branch), the service provision control unit 402 performs user authentication (step S304). The service provision control unit 402 determines whether the two biometric information substantially match and performs user authentication.

[0157] Note that the process of user authentication by the service provision control unit 402 can be the same as the process of the user authentication unit 202 of the terminal 30, so the description is omitted.

[0158] When user authentication fails (step S305, No branch), the service provision control unit 402 notifies the user that the matching service cannot be provided because user authentication has failed (step S303).

[0159] When the personal confirmation is successful (branch of Yes in step S305), the service provision control unit 402 acquires information (certificates) necessary for providing the matching service to the user. For example, the service provision control unit 402 acquires an employment certificate, a graduation certificate, certificates regarding various qualifications, and the like.

[0160] Specifically, the service provision control unit 402 transmits a "certificate provision request" to the terminal 30 (step S306). The service provision control unit 402 transmits a certificate provision request including information regarding at least one or more certificates necessary for providing the matching service (for example, the type of certificate) to the terminal 30.

[0161] When a negative response (inability to provide a certificate) is received from the terminal 30 (branch of No in step S307), the service provision control unit 402 notifies the user that the matching service cannot be provided because the necessary information cannot be acquired (step S303).

[0162] When an affirmative response (response including a credential certificate) is received from the terminal 30 (branch of Yes in step S307), the service provision control unit 402 verifies the credential certificate included in the affirmative response (step S308).

[0163] Specifically, the service provision control unit 402 acquires the issuer ID and the user ID described in the credential certificate. The service provision control unit 402 acquires the public key corresponding to the acquired issuer ID from the blockchain. Similarly, the service provision control unit 402 acquires the public key corresponding to the acquired user ID from the blockchain.

[0164] The service provision control unit 402 verifies the signature of the holder (user who wishes to receive the service) and the signature of the issuer attached to the credential certificate. When a plurality of credential certificates are acquired from the terminal 30, the service provision control unit 402 verifies the signatures of the holder and the issuer for each of the plurality of credential certificates.

[0165] If the verification of the credential certificate fails (branch at step S309, No), the service provision control unit 402 notifies the user that it is unable to provide the matching service because it cannot acquire the necessary information (step S303).

[0166] If the verification of the credential certificate is successful (branch at step S309, Yes), the service provision control unit 402 determines that it is possible to provide the matching service to the user and generates an account for the user (step S310).

[0167] Specifically, the service provision control unit 402 uses a GUI or the like to acquire login information (login ID, password), name, gender, date of birth, address, telephone number, email address, hobby information, etc.

[0168] When acquiring information such as the user's name, the service provision control unit 402 generates a feature amount from the user's biometric information (face image). After generating the feature amount, the service provision control unit 402 associates the login information, name, gender, date of birth, address, telephone number, email address, hobby information, biometric information (face image, feature amount), educational background, work history, etc. and stores them in the user management database (see FIG. 18).

[0169] The user management database shown in FIG. 18 is an example and is not intended to limit the items to be stored. For example, the membership registration date or the like may be registered in the user management database.

[0170] Note that the service provision control unit 402 acquires the user's educational background, work history, etc. from the credential certificate (employment certificate, graduation certificate, etc.).

[0171] The service provision control unit 402 executes matching processing between users (members) and controls related to the matching processing. Referring to FIG. 19, the operation of the service provision control unit 402 related to the matching processing and the like will be described.

[0172] The service provision control unit 402 receives a referral request for other members from a user who has logged in to its own account.

[0173] In response to the request, the service provision control unit 402 selects another member (a member of a different gender from the person seeking introduction; the person to be introduced) to introduce to the person seeking introduction (select the person to be introduced; step S401). Specifically, the service provision control unit 402 executes matching processing using the information (educational background, work experience, hobby information, etc.) of each of the person seeking introduction and other members. For example, the service provision control unit 402 uses a learning model obtained by machine learning to select the most suitable member for the person seeking introduction as the person to be introduced.

[0174] Note that the learning model is obtained by machine learning using a large amount of teacher data in which labels (compatibility degrees) are assigned to combinations of the information (educational background, work experience, hobby information, etc.) of each of the two users. Any algorithm such as a support vector machine, boosting, or neural network can be used to generate the learning model. Since algorithms such as the support vector machine use known technologies, their descriptions are omitted.

[0175] The service provision control unit 402 inputs the information of the person seeking introduction and each member (a member of a different gender from the person seeking introduction) into the learning model, and identifies the member with the highest compatibility degree as the person to be introduced.

[0176] The service provision control unit 402 transmits the information of the introduction partner to each of the users (the person hoping for introduction, the person to be introduced) whose combination has been determined by the matching process. Specifically, the service provision control unit 402 transmits a "confirmation request for introduction partner" including the information of the introduction partner to the terminals 30 (email addresses that the terminals 30 can receive) of the person hoping for introduction and the person to be introduced respectively (step S402).

[0177] Note that the information of the introduction partner includes, for example, information such as the name, age, biometric information (face photo), and occupation of the introduction partner.

[0178] The service provision control unit 402 receives the confirmation results from the terminals 30 of the person hoping for introduction and the person to be introduced respectively. When the service provision control unit 402 receives an affirmative response from the terminal 30, it determines that the user has agreed to meet the introduction partner. When the service provision control unit 402 receives a negative response from the terminal 30, it determines that the user has refused to meet the introduction partner.

[0179] If either user refuses to meet the introduction partner (step S403, No branch), the service provision control unit 402 notifies the user who has agreed to meet the introduction partner at least of the non - establishment of the matching (notification of non - establishment; step S404). Specifically, the service provision control unit 402 transmits a notification indicating the non - establishment of the matching to either the terminal 30 of the person hoping for introduction or the person to be introduced.

[0180] [[ID=**********]] If both users agree to meet the introduction partner (step S403, Yes branch), the service provision control unit 402 generates a date plan to be presented to the two parties (step S405).

[0181] For example, the service provision control unit 402 determines the day when the two parties meet based on the schedules of the two parties. Further, the service provision control unit 402 determines the normal service providers (such as restaurants, amusement parks, etc.) that the two parties visit. For example, when the service provision control unit 402 inputs the attribute information (such as age and occupation) of the two parties, it generates a date plan using a learning model that outputs the most suitable store, etc. for the two parties.

[0182] The service provision control unit 402 generates a date plan consisting of a combination of the normal service providers (such as restaurants, amusement parks, etc.) that the two parties visit and the visit date and time.

[0183] The service provision control unit 402 notifies the two parties of the generated date plan. Specifically, the service provision control unit 402 transmits a "date plan notification" including the generated date plan to each of the terminals 30 of the two parties (step S406).

[0184] Before and after transmitting the date plan notification, the service provision control unit 402 stores, in the business operator management database prepared for each normal service provider, the normal service provider, the date and time when the two parties visit, and the feature amounts of each of the two parties (see FIG. 20). Note that FIG. 20 shows an example of the business operator management database of restaurant A.

[0185] The authentication unit 403 is a means for processing the authentication request received from the authentication terminal 21. The authentication unit 403 receives an authentication request including the biometric information of each of a plurality of authenticators from the authentication terminal 21 installed in a predetermined facility (such as the store of a normal service provider). The authentication unit 403 executes an authentication process using the biometric information of each of the plurality of authenticators included in the authentication request and the biometric information of each of the plurality of users stored in the business operator management database.

[0186] FIG. 21 is a flowchart showing an example of the operation of the authentication unit 403 according to the embodiment disclosed in the present application. Referring to FIG. 21, the operation of the authentication unit 403 will be described.

[0187] The authentication unit 403 identifies the authentication target person based on the business operator ID included in the authentication request received from the authentication terminal 21 and the reception date and time of the authentication request (step S501).

[0188] Specifically, the authentication unit 403 identifies the normal service provider visited by the persons to be authenticated (two parties) based on the business operator ID. Further, the authentication unit 403 identifies, based on the reception date and time of the authentication request, an entry in the business operator management database corresponding to the identified normal service provider and corresponding to the time period when the two matched parties visited.

[0189] For example, when two parties visit Restaurant A (business operator ID = sID01) at 11:30 on December 16, 2023, the first entry in the business operator management database shown in FIG. 20 is identified.

[0190] The authentication unit 403 executes an authentication process using the biometric information of the two persons included in the authentication request and the biometric information of the identified authentication target person.

[0191] Specifically, the authentication unit 403 attempts to extract the face images of the two persons from the image data included in the authentication request (step S502).

[0192] Since existing technologies can be used for the face image extraction process by the authentication unit 403, detailed descriptions are omitted. For example, the authentication unit 403 may extract a face image (face region) from the image data using a learning model learned by a CNN (Convolutional Neural Network). Alternatively, the authentication unit 403 may extract a face image using a method such as template matching.

[0193] When two face images cannot be extracted from the image data (step S503, No branch), the authentication unit 403 sets authentication failure in the authentication result (step S504).

[0194] When two face images can be extracted from the image data (branch to Yes in step S503), the authentication unit 403 generates feature amounts from each of the two face images (step S505).

[0195] The authentication unit 403 executes a collation process using the biometric information of the first person (the first feature amount) and the biometric information (feature amount) of the authentication target person specified by the business operator ID and the reception date and time of the authentication request (step S506).

[0196] The authentication unit 403 sets the feature amount generated from the image data as the collation target, and performs a collation process (one-to-N collation; N is a positive integer, the same hereinafter) with the feature amount of the authentication target person. Usually, since there are two authentication target persons, the above N is "2".

[0197] The authentication unit 403 calculates the similarity between the feature amount of the collation target and each of the plurality of feature amounts on the registration side.

[0198] If there is no feature amount whose similarity with the feature amount of the collation target among the plurality of feature amounts of the authentication target person is equal to or more than a predetermined value, the authentication unit 403 determines that the collation process has failed.

[0199] If there is a feature amount whose similarity with the feature amount of the collation target among the plurality of feature amounts of the authentication target person is equal to or more than a predetermined value, the authentication unit 403 determines that the collation process has succeeded.

[0200] When the collation process fails (branch to No in step S507), the authentication unit 403 sets authentication failure in the authentication result (step S504).

[0201] When the collation process succeeds (branch to Yes in step S507), the authentication unit 403 executes a collation process using the biometric information of the second person (the second feature amount) and the biometric information (feature amount) of the authentication target person specified by the business operator ID and the reception date and time of the authentication request (step S508).

[0202] At that time, the authentication unit 403 may execute the second collation process using biometric information (feature amounts) of an authentication target person different from the biometric information of the authentication target person determined to be successfully authenticated in the first authentication. Alternatively, the authentication unit 403 may execute the collation process in the same manner as the first authentication.

[0203] When the collation process fails (branch at step S509, No branch), the authentication unit 403 sets authentication failure in the authentication result (step S504).

[0204] When the collation process succeeds (branch at step S509, Yes branch), the authentication unit 403 sets authentication success in the authentication result (step S510).

[0205] The authentication unit 403 transmits the authentication result (authentication success, authentication failure) to the authentication terminal 21 (step S511). In the case of authentication success, the authentication unit 403 transmits an affirmative response indicating that fact to the authentication terminal 21. In the case of authentication failure, the authentication unit 403 transmits a negative response indicating that fact to the authentication terminal 21.

[0206] Note that different combinations of two parties may visit the same normal service provider in the same time zone. For example, the service server 20 may generate the same dating plan (a part of the plan) for each of the matchmaking parties of user A and user B and the matchmaking parties of user C and user D.

[0207] In this case, for the first authentication, the authentication unit 403 sets the biometric information of each of a plurality of authentication target persons spanning a plurality of entries determined from the business operator ID and the reception date and time of the authentication request on the registration side and executes the collation process. When the first authentication succeeds, the authentication unit 403 sets the biometric information of the second person set in the first entry on the registration side and executes the collation process.

[0208] In this way, when the biometric information of each of a plurality of users who visit a predetermined facility at substantially the same timing is stored (stored in the operator management database) as the biometric information of each of a plurality of authenticators, the authentication unit 403 determines that the authentication is successful. On the other hand, when the biometric information of the authenticator included in the authentication request is not included in the plurality of biometric information in which the biometric information of the authenticator is stored, the authentication unit 403 determines that the authentication has failed.

[0209] The storage unit 404 is a means for storing information necessary for the operation of the service server 20. The storage unit 404 stores the biometric information of each of a plurality of users who visit a predetermined facility (such as a store of a normal service provider, etc.) at substantially the same timing using the operator management database. The storage unit 404 stores the biometric information of users (authentication target persons) of a matching service that supports the meeting of men and women for the purpose of marriage.

[0210] [Authentication Terminal] FIG. 22 is a diagram showing an example of the processing configuration (processing module) of the authentication terminal 21 according to the embodiment disclosed in the present application. Referring to FIG. 22, the authentication terminal 21 includes a communication control unit 501, a biometric information acquisition unit 502, an authentication control unit 503, and a storage unit 504.

[0211] The communication control unit 501 is a means for controlling communication with other devices. For example, the communication control unit 501 receives data (packets) from the service server 20. Also, the communication control unit 501 transmits data to the service server 20. The communication control unit 501 delivers the data received from other devices to other processing modules. The communication control unit 501 transmits the data acquired from other processing modules to other devices. In this way, other processing modules perform data transmission and reception with other devices via the communication control unit 501. The communication control unit 501 has a function as a receiving unit for receiving data from other devices and a function as a transmitting unit for transmitting data to other devices.

[0212] The biometric information acquisition unit 502 is a means for controlling a camera or the like to acquire biometric information (e.g., a face image) of the person to be authenticated. The biometric information acquisition unit 502 captures an image of the user (person to be authenticated) in front according to the operation of an employee of a normal service provider or the like. When a plurality of users visit a store or the like, the employee or the like captures an image so that the plurality of users are captured at the same time. The biometric information acquisition unit 502 delivers the image data obtained by the capture to the authentication control unit 503.

[0213] Alternatively, the biometric information acquisition unit 502 may automatically capture the person to be authenticated. The biometric information acquisition unit 502 images the front of its own device at regular intervals or at a predetermined timing. The biometric information acquisition unit 502 determines whether a human face image is included in the acquired image, and if a face image is included, delivers the acquired image data to the authentication control unit 503.

[0214] The authentication control unit 503 is a means for performing control related to the authentication of the person to be authenticated (two parties participating in matchmaking).

[0215] Specifically, the authentication control unit 503 transmits an authentication request including the image data of the person to be authenticated (the user in front of the authentication terminal 21) and the business operator ID to the service server 20.

[0216] The authentication control unit 503 receives an authentication result (authentication success, authentication failure) from the service server 20. The authentication control unit 503 notifies the authentication result to an employee of a normal service provider or the like.

[0217] In the case of authentication success, an employee or the like confers a predetermined privilege on the two parties who visited the store or the like according to the date plan. For example, privileges such as a discount on the price are given to the two parties.

[0218] Subsequently, a modification according to the first embodiment will be described.

[0219] <Modification 1> When the authentication unit 403 of the service server 20 succeeds in the authentication process in response to the reception of an authentication request, it may instruct the operator (ordinary service provider) who manages the authentication terminal 21 to grant privileges to a plurality of authenticatees.

[0220] For example, when the authentication is successful, the authentication unit 403 may transmit an affirmative response including the details of the specific privileges to be given to a plurality of authenticatees (two matchmaking parties who visited the store of the ordinary service provider etc. according to the dating plan) to the authentication terminal 21.

[0221] For example, the authentication unit 403 may transmit an affirmative response including the details of the specific privileges such as the discount amount or discount rate to the authentication terminal 21. The authentication terminal 21 notifies the employees of the ordinary service provider etc. of the specific details of the obtained privileges.

[0222] <Modification Example 2> The service server 20 may select a plurality of men and women as matchmaking parties instead of one man and one woman each. The service provision control unit 402 may generate a dating plan in which a plurality of men and a plurality of women meet simultaneously in response to a request from the user. In this case, three or more biometric informations are stored in the operator management database. When the authentication unit 403 determines that the matched plurality of users visit the ordinary service provider at substantially the same timing and at the date and time determined by the dating plan, it determines that the authentication process has succeeded.

[0223] <Modification Example 3> In the above embodiment, the case where the service server 20 authenticates the user has been described. The user authentication may be performed on the user's terminal 30.

[0224] For example, the service server 20 transmits a certificate provision request to the terminal 30 without transmitting a biometric information provision request. When receiving the certificate provision request, the terminal 30 photographs the user (the holder of the terminal 30). The terminal 30 performs user authentication (one-to-one authentication) using the biometric information obtained by photographing and the biometric information obtained at the time of opening the digital wallet.

[0225] When the personal confirmation is successful, the terminal 30 reads out the credential certificate specified by the service provider from the digital wallet, and transmits the read-out credential certificate to the service server 20.

[0226] As described above, the service server 20 according to the first embodiment generates a date plan to be presented to users who use the matching service. The service server 20 determines, by biometric authentication, whether or not two matchmaking parties who have received the proposal of the date plan have visited the proposed store or the like at the same time (substantially at the same time). When the two matchmaking parties visit the store or the like at the same time, the authentication terminal 21 is notified of the successful authentication. Since the employee of the store or the like can easily determine whether or not the customer who has visited the store is eligible for the privilege based on the authentication result notified from the authentication terminal 21, smooth customer service can be provided to the customer. As a result, the convenience of two matchmaking parties who visit a restaurant or the like at substantially the same timing is improved.

[0227] Subsequently, the hardware of each device constituting the information processing system will be described. FIG. 23 is a diagram showing an example of the hardware configuration of the service server 20.

[0228] The service server 20 can be configured by an information processing device (so-called computer) and has the configuration illustrated in FIG. 23. For example, the service server 20 includes a processor 311, a memory 312, an input / output interface 313, a communication interface 314, and the like. The components such as the processor 311 are connected by an internal bus or the like and are configured to be able to communicate with each other.

[0229] However, the configuration shown in FIG. 23 is not intended to limit the hardware configuration of the service server 20. The service server 20 may include hardware not shown, or may not include the input / output interface 313 if necessary. Also, the number of processors 311 and the like included in the service server 20 is not intended to be limited to the example shown in FIG. 23. For example, a plurality of processors 311 may be included in the service server 20.

[0230] The processor 311 is a programmable device such as a CPU (Central Processing Unit), MPU (Micro Processing Unit), or DSP (Digital Signal Processor). Alternatively, the processor 311 may be a device such as an FPGA (Field Programmable Gate Array) or ASIC (Application Specific Integrated Circuit). The processor 311 executes various programs including an operating system (OS; Operating System).

[0231] The memory 312 is a RAM (Random Access Memory), ROM (Read Only Memory), HDD (Hard Disk Drive), SSD (Solid State Drive), or the like. The memory 312 stores an OS program, application programs, and various data.

[0232] The input / output interface 313 is an interface for a display device and an input device (not shown). The display device is, for example, a liquid crystal display or the like. The input device is a device that receives user operations such as a keyboard and a mouse.

[0233] The communication interface 314 is a circuit, module, or the like that communicates with other devices. For example, the communication interface 314 includes a NIC (Network Interface Card) or the like.

[0234] The functions of the service server 20 are realized by various processing modules. The processing modules are realized, for example, by the processor 311 executing a program stored in the memory 312. Also, the program can be recorded on a computer-readable storage medium. The storage medium can be non-transitory such as a semiconductor memory, a hard disk, a magnetic recording medium, an optical recording medium, etc. That is, the present invention can also be embodied as a computer program product. Also, the above program can be downloaded via a network or updated using a storage medium storing the program. Further, the above processing module may be realized by a semiconductor chip.

[0235] Note that the certificate issuance server 10, the authentication terminal 21, the terminal 30, etc. can also be configured by an information processing apparatus in the same manner as the service server 20, and the basic hardware configuration is the same as that of the service server 20, so the description is omitted.

[0236] The service server 20, which is an information processing apparatus, is equipped with a computer, and the functions of the service server 20 can be realized by causing the computer to execute a program. Also, the service server 20 executes a control method of the service server 20 according to the program. Similarly, the terminal 30 is equipped with a computer, and the functions of the terminal 30 can be realized by causing the computer to execute a program. Also, the terminal 30 executes a control method of the terminal 30 according to the program.

[0237] [Modification Example] Note that the configuration, operation, etc. of the information processing system described in the above embodiment are examples and are not intended to limit the configuration of the system.

[0238] In the above embodiment, the authentication terminal 21 has been described in the case of transmitting an authentication request including one image data in which a plurality of authenticators are captured to the service server 20. The authentication terminal 21 may transmit an authentication request including two image data in which one authenticator is captured to the service server 20 for the image data. That is, the authentication terminal 21 captures the first authenticator, subsequently captures the second authenticator, and acquires two image data. The authentication terminal 21 may transmit an authentication request including the two image data and the business operator ID to the service server 20. In this case, the authentication unit 403 may extract a face image from each of the two image data and execute the authentication process in the same manner as described above.

[0239] The service server 20 may provide a matching service different from the marriage hunting. For example, the service server 20 may provide a matching service for students and employment staff of companies.

[0240] The service server 20 may request a user to provide a plurality of biometric information at the time of user registration (member registration). For example, when the terminal 30 is performing identity verification using a plurality of types of biometric information (for example, a face image and a fingerprint image) at the time of opening a digital wallet, the service server 20 may request the terminal 30 to provide the plurality of types of biometric information. The service server 20 may execute multimodal authentication using a plurality of biometric information and provide a matching service to the user when the multimodal authentication is successful.

[0241] When the service server 20 receives a negative response to the introduction partner confirmation request from the terminal 30 (the user refuses to meet the introduction partner), the service server 20 may execute a new matching process. The service server 20 may transmit an introduction partner confirmation request to the terminals 30 possessed by the two users matched by the new matching process.

[0242] In the above embodiment, the certificate issuing server 10 of the certificate issuer has been described for the case of issuing a credential certificate that does not require a certification authority for certificate verification. However, the certificate issuing server 10 may issue a certificate that requires a certification authority (a certificate based on a public key infrastructure).

[0243] The service server 20 may simultaneously request the submission of biometric information and a certificate. Specifically, the service server 20 does not send a biometric information providing request, but first sends a certificate providing request. The terminal 30 that has received the certificate providing request sends the biometric information required by the service provider for identity verification and the designated credential certificate to the service server 20.

[0244] In the above embodiment, the case where identity verification (verifying the coincidence between the name of the identity certificate and the digital wallet opener) is performed using biometric information obtained from the identity certificate has been described. However, the identity verification may be performed using the electronic certificate stored in the identity certificate. Specifically, the terminal 30 acquires an electronic certificate (electronic signature certificate, user authentication electronic certificate) from the My Number card possessed by the user. The terminal 30 sends the acquired electronic signature certificate to the certification authority (J-LIS; Japan Agency for Local Authority Information Systems) and requests the certification authority to verify the validity of the electronic certificate. If the electronic certificate is valid, the terminal 30 determines that the identity verification has been successful.

[0245] Some functions of the service server 20 may be implemented in another device, device, etc. More specifically, it is sufficient if any device included in the system implements the above-described "service provision control unit (service provision control means)", etc.

[0246] The form of data transmission and reception between each device (for example, the certificate issuance server 10 and the terminal 30) is not particularly limited, but the data transmitted and received between these devices may be encrypted. Between these devices, personal information of users and the like is transmitted and received, and in order to appropriately protect this information, it is desirable that encrypted data is transmitted and received.

[0247] In the flowcharts (flowcharts, sequence diagrams) used in the above description, a plurality of steps (processes) are described in order, but the execution order of the steps executed in the embodiment is not limited to the described order. In the embodiment, for example, each process can be executed in parallel, and the order of the illustrated steps can be changed within a range that does not substantially affect the content.

[0248] The above embodiments have been described in detail for the purpose of facilitating understanding of the present disclosure, and it is not intended that all the configurations described above are necessary. Also, when a plurality of embodiments are described, each embodiment may be used alone or in combination. For example, it is also possible to replace a part of the configuration of an embodiment with the configuration of another embodiment, or to add the configuration of another embodiment to the configuration of an embodiment. Furthermore, it is possible to add, delete, or replace other configurations for a part of the configuration of an embodiment.

[0249] From the above description, the industrial applicability of the present invention is clear, but the present invention is suitably applicable to an information processing system including a service provider that provides services to users using a certificate stored in a digital wallet.

[0250] Some or all of the above embodiments may be described as follows in the appended claims, but are not limited thereto. [Appended Claim 1] Storage means for storing biometric information of each of a plurality of users who visit a predetermined facility at substantially the same timing; Receive an authentication request including biometric information of each of a plurality of authenticatees from an authentication terminal installed in the predetermined facility, and execute an authentication process using the biometric information of each of the plurality of authenticatees included in the authentication request and the biometric information of each of the plurality of users stored therein, an authentication means; A server device comprising: [Appendix 2] The authentication means according to Appendix 1, wherein when the biometric information of each of the plurality of authenticatees is stored as the biometric information of each of the plurality of users who visit the predetermined facility at substantially the same timing, it is determined that the authentication is successful. [Appendix 3] The server device according to Appendix 2, wherein the authentication means determines that the authentication has failed when the biometric information of the authenticatee included in the authentication request is not included in the plurality of stored biometric information. [Appendix 4] The server device according to any one of Appendices 1 to 3, wherein the authentication means notifies the authentication result to the authentication terminal. [Appendix 5] The server device according to Appendix 4, wherein when the authentication process is successful, the authentication means instructs an operator who manages the authentication terminal to grant privileges to the plurality of authenticatees. [Appendix 6] The server device according to any one of Appendices 1 to 3, wherein the plurality of users are users of a matching service that supports meetings between men and women for the purpose of marriage. [Appendix 7] Further comprising control means for executing control related to the matching service, The server device according to any one of Appendices 1 to 3, wherein the control means generates a date plan to be provided to the matched marriage seekers. [Appendix 8] In a server device, Store the biometric information of each of the plurality of users who visit the predetermined facility at substantially the same timing, A control method for a server device that receives an authentication request including biometric information of each of a plurality of authentication subjects from an authentication terminal installed in the predetermined facility, and executes an authentication process using the biometric information of each of the plurality of authentication subjects included in the authentication request and the biometric information of each of the plurality of users stored therein. [Appendix 9] On a computer mounted on a server device In the server device A process of storing biometric information of each of a plurality of users who visit a predetermined facility at substantially the same timing, and A process of receiving an authentication request including biometric information of each of a plurality of authentication subjects from an authentication terminal installed in the predetermined facility, and executing an authentication process using the biometric information of each of the plurality of authentication subjects included in the authentication request and the biometric information of each of the plurality of users stored therein. A program for causing the above to be executed.

[0251] Also, part or all of the configurations described in Appendices 2 to 7 subordinate to Appendix 1 described above may be subordinate to Appendices 8 and 9 in the same subordinate relationship as Appendices 2 to 7. Furthermore, not limited to Appendices 1, 8, and 9, part or all of the configurations described as appendices can be similarly made subordinate to various hardware, software, various recording means for recording software, or systems without departing from the scope of the above-described embodiments.

[0252] It should be noted that each disclosure of the above-cited prior art documents is incorporated herein by reference. As described above, the embodiments of the present invention have been described, but the present invention is not limited to these embodiments. It will be understood by those skilled in the art that these embodiments are merely illustrative and that various modifications can be made without departing from the scope and spirit of the present invention. That is, the present invention naturally includes various modifications and corrections that can be made by those skilled in the art in accordance with the entire disclosure including the claims and the technical idea.

Explanation of Reference Numerals

[0253] 10 Certificate Issuing Server 20 Service Server 21 Authentication Terminal 30 Terminal 100 Server Device 101 Memory Means 102 Authentication Means 201 Communication Control Unit 202 Identity Verification Unit 203 Acquisition Control Unit 204 Utilization Control Unit 205 Service Utilization Control Unit 206 Memory Unit 301 Communication Control Unit 302 Certificate Issuing Unit 303 Memory Unit 311 Processor 312 Memory 313 Input / Output Interface 314 Communication Interface 401 Communication Control Unit 402 Service Provision Control Unit 403 Authentication Unit 404 Memory Unit 501 Communication Control Unit 502 Biometric Information Acquisition Unit 503 Authentication Control Unit 504 Memory Unit

Claims

1. Storage means for storing biometric information of each of a plurality of users who visit a predetermined facility at substantially the same timing; Authentication means for receiving an authentication request including biometric information of each of a plurality of authenticatees from an authentication terminal installed in the predetermined facility, and performing authentication processing using the biometric information of each of the plurality of authenticatees included in the authentication request and the biometric information of each of the plurality of users stored; A server device comprising the above.

2. The server device according to claim 1, wherein the authentication means determines authentication success when the biometric information of each of the plurality of authenticatees is stored as the biometric information of each of the plurality of users who visit the predetermined facility at substantially the same timing.

3. The server device according to claim 2, wherein the authentication means determines authentication failure when the biometric information of the authenticatee included in the authentication request is not included in the plurality of stored biometric information.

4. The server device according to any one of claims 1 to 3, wherein the authentication means notifies the authentication terminal of the authentication result.

5. The server device according to claim 4, wherein when the authentication processing is successful, the authentication means instructs the operator who manages the authentication terminal to grant privileges to the plurality of authenticatees.

6. The server device according to any one of claims 1 to 3, wherein the plurality of users are users of a matching service that supports meetings between men and women for the purpose of marriage.

7. Further comprising control means for executing control related to the matching service, The server device according to any one of claims 1 to 3, wherein the control means generates a date plan to be provided to the matched marriage seekers.

8. In a server device, Storing biometric information of each of a plurality of users who visit a predetermined facility at substantially the same timing, Receiving an authentication request including biometric information of each of a plurality of authenticatees from an authentication terminal installed in the predetermined facility, and performing authentication processing using the biometric information of each of the plurality of authenticatees included in the authentication request and the biometric information of each of the plurality of users stored, a control method of a server device.

9. On a computer installed in a server device, In a server device, A process of storing biometric information of each of a plurality of users who visit a predetermined facility at substantially the same timing, and Receiving an authentication request including biometric information of each of a plurality of authentication subjects from an authentication terminal installed in the predetermined facility, and performing an authentication process using the biometric information of each of the plurality of authentication subjects included in the authentication request and the biometric information of each of the plurality of stored users; A program for causing the above to be executed.

Citation Information

Patent Citations

  • Management device and commodity providing system

    JP2017162191A