Image forming device

The image forming apparatus addresses security and operational issues in remote operations by using IP address-based authentication to automate remote screen display approval, enhancing security and efficiency.

JP2025111612APending Publication Date: 2025-07-30BROTHER KOGYO KK
View PDF 8 Cites 0 Cited by

Patent Information

Application Number
JP2025071041
Authority / Receiving Office
JP · JP
Patent Type
Applications
Current Assignee / Owner
Filing Date
2025-04-23
Publication Date
2025-07-30

AI Technical Summary

Technical Problem

Existing image forming apparatuses face security risks and operational annoyance when allowing remote operations without adequate authentication measures.

Method used

An image forming apparatus with a controller that approves remote screen display based on specific IP address conditions, allowing secure remote operations without requiring manual approval screens.

Benefits of technology

Enhances security and reduces operational annoyance by enabling secure remote operations through automated IP address-based authentication, ensuring seamless and efficient remote control.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure 2025111612000001_ABST
    Figure 2025111612000001_ABST
Patent Text Reader

Abstract

To provide an image forming device that can receive remote operation by an information processing device, the device suppressing cumbersomeness of operation at the time of starting the remote operation while securing necessary security.SOLUTION: A controller 11, when display of a remote screen by approval processing is approved, executes transmission processing for transmitting data on the remote screen to a PC 30. The controller 11, when receiving an instruction to indicate that virtual operation using the remote screen is performed, through a communication interface, from the PC 30, after executing the transmission processing, executes remote display control by which predetermined processing is executed in accordance with the instruction. In approval processing that is executed by the controller 11, when it is determined that an address for communication satisfies a specific condition, the remote screen is approved to be displayed on the PC 30, without making the approved screen to be displayed on a user IF17.SELECTED DRAWING: Figure 1
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] It relates to the technology of an image forming apparatus capable of receiving a remote operation from an information processing apparatus.

Background Art

[0002] Patent Document 1 describes a technique for remotely operating an image forming apparatus in response to an operation on a remote screen by displaying a remote screen that virtually shows a user interface of the image forming apparatus on a remote information processing apparatus.

Prior Art Documents

Patent Documents

[0003]

Patent Document 1

Summary of the Invention

Problems to be Solved by the Invention

[0004] The inventor is considering a configuration in which the display of the remote screen is permitted to the information processing apparatus on the condition that an approval operation is received via the user interface of the image forming apparatus in order to improve the security of the remote screen.

Means for Solving the Problems

[0005] An image forming apparatus disclosed as an embodiment to solve the above problems includes a user interface, a communication interface, and a controller. When the controller receives a first request from a device connected via the communication interface, it displays an approval screen on the user interface. When an approval operation for the approval screen is received via the user interface, the controller can execute an approval process to approve the display of the remote screen. The first request is a request to display a remote screen, and the remote screen is a screen that is displayed on the device that is the source of the first request and virtually reproduces the user interface. When the display of the remote screen by the approval process is approved, the controller executes a transmission process of transmitting remote screen data to the device that is the source of the first request. The remote screen data is data for causing the device that is the source of the first request to display the remote screen. After the transmission process, when the controller receives an instruction via the communication interface indicating that a virtual operation using the remote screen has been performed from the device that is the source of the first request, the controller executes a predetermined process according to the instruction. In the approval process, it is determined whether the communication address satisfies a specific condition. The communication address is an IP address used for communication with the device that is the source of the first request. In the approval process, when it is determined that the communication address satisfies the specific condition, the display of the remote screen is approved for the device that is the source of the first request without displaying the approval screen on the user interface.

[0006] In the above configuration, when the controller of the image forming apparatus receives an instruction to display a remote screen, it displays an approval screen on the user interface, and when it determines that it has received an approval operation for the approval screen, it executes an approval process to approve the display of the remote screen for the requesting device. On the other hand, in the approval process, when it is determined that the communication address, which is the IP address used for communication with the requesting device of the first request, satisfies a specific condition, it approves the display of the remote screen for the requesting device of the first request without displaying the approval screen. When the display of the remote screen by the approval process is approved, the controller transmits the remote screen data to the requesting device of the first request, and after transmitting the remote screen data, when it receives an instruction indicating that a virtual operation using the remote screen has been performed from the requesting device of the first request via the communication interface, it executes a predetermined process according to the instruction. As a result, when the IP address used for communication with the requesting device of the first request satisfies a specific condition, the remote screen is displayed for the requesting device of the first request without displaying the approval screen on the user interface, so there is no need to perform an approval operation on the user interface of the image forming apparatus. As a result, it is possible to suppress a decrease in security for remote operations using the remote screen while suppressing the annoyance of operations when starting a remote operation.

Brief Description of Drawings

[0007]

Figure 1

Figure 2

Figure 3

Figure 4

Figure 5

Figure 6

Figure 7

Figure 8

Figure 9

Embodiments for Carrying Out the Invention

[0008] (First Embodiment) The image forming system 100 according to this embodiment will be described with reference to the drawings. The image forming system 100 shown in FIG. 1 includes an MFP 10 and PCs 30, 50, 51. MFP is an abbreviation for multifunction peripheral. The MFP 10 and the PCs 30, 50, 51 are connected to a network 200 and can communicate through the network 200. The network 200 is a LAN or the Internet. In this embodiment, the MFP 100 is an example of an image forming apparatus. The PCs 30, 50, 51 are examples of information processing apparatuses. Note that the MFP 10 and the PCs 30, 50, 51 are connected to the same LAN.

[0009] Next, the configuration of the MFP 10 will be described. The MFP 100 includes a controller 11, a memory 12, a printer 13, a scanner 14, a FAX-IF 15, a communication IF 16, a user IF 17, and a bus 18. IF is an abbreviation for interface.

[0010] The communication IF 16 connects the MFP 10 to the network 200 in accordance with a predetermined communication protocol. The user IF 17 is an interface interposed between a user who directly operates the MFP 10 and the controller 11, and has a touch panel 171 and operation keys 172 which are physical keys.

[0011] Printer 13 performs a printing operation to print an image on a recording medium such as a sheet or a disk. As the recording method of printer 13, an inkjet method, an electrophotographic method, or the like can be adopted. Scanner 14 performs a scanning operation to read an image recorded on a document and generate image data. FAX-IF 15 performs a FAX operation to transmit and receive image data in a manner compliant with the FAX protocol. Further, MFP 10 may be capable of performing a composite operation combining a plurality of operations. A copy operation combining the print operation by printer 13 and the scan operation by scanner 14 is an example of a composite operation.

[0012] Controller 11 is composed of a CPU, an ASIC (abbreviation for Application Specific Integrated Circuit), etc., and controls the operations of printer 13, scanner 14, FAX-IF 15, communication IF 16, and user IF 17. Memory 12 has a data storage area. The data storage area is an area for storing data necessary for executing programs and the like. Memory 12 is configured by combining a RAM, a ROM, an SSD, an HDD, etc. A buffer provided in controller 11 used when executing various programs may also be regarded as a part of memory 12. Note that memory 12 may be a storage medium readable by controller 11. A storage medium readable by controller 11 is a non-transitory medium. Non-transitory media include recording media such as CD-ROMs and DVD-ROMs in addition to the above examples. Further, non-transitory media are also tangible media. On the other hand, an electrical signal that conveys a program downloaded from a server on the Internet or the like is a computer-readable signal medium, which is a kind of computer-readable medium, but is not included in non-transitory computer-readable storage media.

[0013] In the memory 12, firmware 20 is stored as a program executable by the controller 11. In the following description, the controller 11 that executes the program may sometimes be described simply by the program name. For example, the description "the firmware" is used to mean "the controller 11 that executes the firmware 20". In this embodiment, mainly, the processing of the controller 11 according to the instructions described in the program is shown. That is, the processing such as "judgment", "extraction", "selection", "calculation", "decision", "specification", "acquisition", "reception", "control", etc. in the following description represents the processing of the controller 11. Note that "acquisition" is used in a concept that does not require a request. That is, the process of the controller 11 receiving data without requesting it is also included in the concept of "the controller 11 acquiring data". Also, the "data" in this specification is represented by a bit string readable by the controller. And data having the same substantial meaning content but different formats shall be treated as the same data. The same applies to the "information" in this specification.

[0014] The firmware 20 also functions as a web server for causing the PC 30 to display a predetermined web page. Further, the firmware 20 can provide remote screen control for the PC 30. The remote screen control is a function of causing the PC 30 to display a remote screen that pseudo-represents the input IF 17 of the MFP 10 and remotely operating the MFP 10 by operating on this remote screen. The firmware 20 can cause the browser 41 (to be described later) of the PC 30 to display a remote screen by transmitting web page data for displaying the remote screen to the PC 30.

[0015] In the data storage area of the memory 12, management information 25 is stored. In the management information 25, a login name and a password, which are authentication information, are recorded in association with the PCs that can access the MFP 10.

[0016] Next, the configuration of the PC 30 will be described. The PC 30 includes a communication IF 31, a memory 32, a controller 33, a display 34, and a user IF 35. Each of the components 31, 32, 33, 35 included in the PC 30 has the same configuration as the controller 11, the memory 12, the communication IF 16, and the user IF 17 included in the MFP 30, and the description thereof will be omitted.

[0017] The memory 32 stores an OS 40 and a browser 41. The browser 41 is a program that causes the controller 33 to display an image corresponding to the Web page data transmitted from the MFP 10 on the display 34. Note that the PCs 50 and 51 have the same configuration as the PC 30, and the description thereof will be omitted.

[0018] Next, the procedure of the process when the PC 30 executes remote screen control will be described with reference to FIG. 2. The MFP 10 displays an operation screen on the user IF 17, and changes the display of the operation screen according to the operation via the user IF 17, the operation status of the MFP 10, and the like. The process of changing the operation screen is executed in parallel with the process of FIG. 2. The operation screen includes an in-progress screen indicating that printing, scanning, etc. are in progress, an instruction screen for receiving execution instructions such as copying and scanning, a setting screen for changing various settings, a status screen indicating the status of the MFP 10, a standby screen for waiting for display instructions such as an execution instruction screen and a setting screen, and the like.

[0019] In FIG. 2, in step 10 (hereinafter, steps will be simply described as "S") in the browser 41 of the PC 30, a request for Web page data is transmitted to the MFP 10. The Web page data requested in S10 is Web page data for displaying a home screen when the firmware 20 functions as a Web server. The browser 41 transmits a request to the firmware 20, for example, when the user inputs a URL specifying the firmware 20. The communication between the browser 41 and the firmware 20 is executed according to the http(s) protocol.

[0020] In S11, the firmware 20 transmits web page data to the PC 30. When the browser 41 receives the web page data in S12, it causes the browser 41 to display the web page indicated by the received web page data on the display 34. In the present embodiment, the browser 41 causes the home screen to be displayed on the display 34 by receiving the web page data.

[0021] When a login operation to the MFP 10 is performed on the home screen, the browser 41 transmits a login password or the like to the firmware 20. When a response of login permission is obtained from the EWS, the browser 41 causes the administrator screen 300 shown in FIG. 3 to be displayed on the display 34 of the PC 30. The administrator screen 300 includes an item display area 301 and a function display area 302.

[0022] When a selection operation of the item 303 of "remote screen control" included in the item display area 301 is received via the user IF 35, the browser 41 requests the MFP 10 to start remote screen control in S13. When the firmware 20 receives the request to start remote screen control, it transmits web page data for updating the web page in S14. This web page data includes an executable program interpretable by the browser 41. The executable program is a script program, for example, JavaScript.

[0023] The browser 41 requests the MFP 10 for the current usage status of remote screen control in S15 by executing the executable program. The usage status of remote screen control is information indicating whether remote screen control for another device such as the PC 50 has already been executed. In the present embodiment, it is information indicating either "in execution" or "not executed". When information indicating a permission state is stored in the memory 12, the firmware 20 returns information indicating "in execution", and otherwise returns information indicating "not executed".

[0024] In S16, the firmware 20 returns the usage status of the remote screen control to the PC 30. In S17, the browser 41 determines the usage status returned from the firmware 20. Specifically, when the browser 41 determines that the usage status of the remote screen control indicates "in execution" (NO in S17), it issues an error notification and ends the process shown in FIG. 2. In this case, the execution of the remote screen control is not permitted. For example, on the web page, a text image indicating that currently, remote screen control for another device is in execution and the remote screen control for the own device cannot be executed is displayed. In this case, the browser 41 continues to display the home screen in S12.

[0025] On the other hand, when the browser 41 determines that the information indicating the usage status of the remote screen control indicates "not executed" (YES in S17), in S18, it requests the MFP 10 to issue a token. The token is information for authenticating the device that executes the remote screen control, and in this embodiment, it is a one-time token created based on the authentication information. When the firmware 20 receives the token issuance request, in S19, it requests the PC 30 for authentication information. Specifically, the firmware 20 transmits data for displaying a login form for receiving the input of authentication information to the browser 41. The browser 41 displays an administrator screen 300 superimposed with the login form 310 shown in FIG. 4 based on the transmitted data. In S20, the browser 41 transmits the authentication information (i.e., username and password) input via the login form 310 to the MFP 10.

[0026] When the firmware 20 receives the authentication information, in S21, it performs an authentication process for determining whether the user indicated by the received authentication information is a user permitted to execute the remote screen control. In the authentication process, it is determined whether the authentication information of the user (e.g., administrator) stored in the management information 25 stored in the memory 12 matches the authentication information transmitted from the browser 41. If the authentication information does not match, the browser 41 is responded with a rejection of the token transmission, and the process shown in FIG. 2 ends.

[0027] If the authentication is successful, the firmware 20 issues a token to the PC 30 at S22. At this time, if the information indicating that the token has been issued is stored in the memory 12, the firmware 20 determines that the token has not been issued yet and does not need to send the token. When the browser 41 receives the token issued by the MFP 10, at S23, it requests the display of the remote screen together with the issued token. When the firmware 20 receives the request for displaying the remote screen from the browser 41, at S24, it performs an approval process. In this embodiment, the request for displaying the remote screen sent by the browser 41 at S23 is an example of the first request.

[0028] FIG. 5 is a flowchart for explaining the approval process executed at S24, and the main body is the firmware 20. At S30, it is determined whether the token sent together with the request for displaying the remote screen from the PC 30 is correct. Specifically, the firmware 20 determines that the token is incorrect when the token is a token that has passed too much time since the issuance time, or when the token is a forged token. If the firmware 20 determines that the sent token is incorrect, it proceeds to S43 and sets the permission state to "rejected". After ending S43, it proceeds to S25 in FIG. 2.

[0029] On the other hand, if the firmware 20 determines that the token sent from the PC 30 is correct, it makes an affirmative determination at S30 and proceeds to S31, where it sets the permission state to "being confirmed".

[0030] In S32, it is determined whether automatic determination is enabled. Automatic determination is a process for determining whether to permit PC 30 to display a remote screen using an IP address used in communication between MFP 10 and PC 30. Specifically, the MFP 10 determines whether automatic determination is enabled or disabled and whether the determination results of automatic determination are enabled or disabled by referencing the setting items in setting file 26 stored in memory 12. The setting items in setting file 26 can be updated by a process for updating setting file 26, which will be described later.

[0031] The following describes the process of updating the setting file 26 that stores various setting items for automatic determination. Fig. 6 shows the process that is executed by the controller 11 when a user issues an instruction to update setting items in the approval process on the administrator screen 300, which is a web page displayed on the PC 51. The PC 51 is a PC that is managed by an administrator, similar to the PC 30.

[0032] In S60, the web page data is transmitted to PC 51, causing PC 51 to display setting screen 450 shown in Fig. 7. Specifically, when firmware 20 of MFP 10 receives, via communication IF 16, an instruction that a selection operation for "approval setting" included in item display area 301 on administrator screen 300 shown in Fig. 3 displayed on PC 51 has been received, firmware 20 causes PC 51 to transmit the web page data. In this case, authentication similar to that in S19 to S21 is performed between firmware 20 of MFP 10 and browser 41 of PC 51, and if the authentication in S21 is successful, firmware 20 transmits web page data related to the approval setting.

[0033] The setting screen 450 included in the administrator screen 300 is a screen for setting whether an item is enabled or disabled for automatic determination and for specifying whether an item is enabled or disabled for each determination content. The setting screen 450 includes check boxes 452, 453, and 454, an address form 455, and a setting reflection button 456.

[0034] When the checkbox 452 is checked, it means that the configuration file 26 has received an instruction to enable the automatic determination setting item. In this case, the checkboxes 453 and 454 can be checked. If the checkbox 452 is not checked, the checks for the checkboxes 453 and 454 are not accepted. If only the checkbox 453 is checked, it means that the configuration file 26 has received an instruction to enable the setting item of "determination by the IP address of the local machine". If only the checkbox 454 is checked, it means that the configuration file 26 has received an instruction to enable the setting item of "determination by the IP address of the request source".

[0035] In this embodiment, when the checkbox 452 is checked, one of the checkboxes 453 and 454 must be checked. Specifically, when only the checkbox 453 is checked, a check cancellation operation for the received checkbox 453 is not accepted. When only the checkbox 454 is checked, a check cancellation operation for the received checkbox 454 is not accepted. In addition, when a check cancellation operation is received via the user IF17 in a state where either of the checkboxes 453 and 454 is checked, it may be configured to automatically check the unchecked checkboxes 453 and 454.

[0036] When the checkbox 454 is checked and the setting item of "determination by the IP address of the request source" is enabled, the IP address can be input into the address form 455 by the received operation.

[0037] In S61, it is determined whether a setting reflection request is received from the PC51 via the communication IF16. Specifically, in the setting screen 450 displayed on the PC51, when the setting reflection button 456 is operated, the PC51 transmits the setting reflection request to the MFP10. At this time, the PC51 transmits, via the communication IF16 to the PC10, an instruction for the setting item corresponding to the operation received on the setting screen 450 together with the setting reflection request. If the determination in S61 is affirmative, the process proceeds to S62.

[0038] In S62, in accordance with the instruction for the setting item transmitted from the PC51 together with the setting reflection request, each setting item of the setting file 26 is updated. When a valid instruction for automatic determination is received by checking the checkbox 452, the setting item of automatic determination stored in the setting file 26 is set to "valid". When a valid instruction for "determination by the IP address of this machine" which is the determination content is received by checking the checkbox 453, the setting item of "determination by the IP address of this machine" stored in the setting file 26 is set to "valid". When a valid instruction for "determination by the IP address of the request source" is received by checking the checkbox 454, the setting item of "determination by the IP address of the request source" stored in the setting file 26 is set to "valid".

[0039] The update of the setting items of the setting file 26 can also be executed by an operation on the user IF17 of the MFP10. Specifically, the controller 11 of the MFP10 causes the user IF17 to display the setting screen shown in FIG. 7 in accordance with the operation on the user IF17. In this case, the firmware 20 of the MFP10 updates the setting file 26 based on the instruction for the setting item of automatic determination received on the setting screen. Specifically, the firmware 20 receives instructions for the setting of validity / invalidity, the determination content, and the IP address to be registered, which are the setting items of automatic determination.

[0040] In addition, when the firmware 20 of the MFP 10 receives an update instruction for the setting items of the setting file 26 from the PCs 30, 50, and 51 connected to the network 200 via the communication IF 16, the setting file 26 may be updated according to the received update instruction.

[0041] Returning to FIG. 5, if automatic determination is enabled on the setting file 26 and the determination at S32 is affirmative, the process proceeds to S33, where it is determined whether to perform the determination using both the IP addresses of the PC 30, which is the source device, and the MFP 10, which is the destination device, with reference to the setting file 26.

[0042] If the determination at S33 is affirmative, the process proceeds to S34, where it is determined whether the IP address of the own machine is a private IP address. Specifically, the IP address of the own machine is the IP address of the MFP 10 that is used as the destination address of the request from the source device. The IP address of the MFP 10 that is used as the destination address of the request from the source device is an example of the IP address used for communication. If the address of the own machine is a private IP address, since it is an access within the LAN, even if the display of the remote screen is permitted, the possibility of a security reduction is low. In the present embodiment, the fact that the IP address of the own machine is a private IP address is an example of a specific condition.

[0043] If an affirmative determination is made in S34, the process proceeds to S35, where it is determined whether the IP address of the requesting device is the registered address. The IP address of the requesting device is the IP address used as the source address when the requesting device transmits data to the MFP 10. The IP address of the requesting device is the IP address used as the destination address when the MFP 10 transmits data to the requesting device. That is, the IP address of the requesting device is an example of the IP address used for communication. The registered address is the IP address pre-registered in the setting file 26 stored in the memory 12. If it is the IP address pre-registered in the setting file 26, even if the display of the remote screen is permitted, the possibility of security degradation is low. In the present embodiment, the fact that the IP address of the requesting device is the registered address is an example of a specific condition.

[0044] If an affirmative determination is made in S35, the process proceeds to S42, where the permission state is set to "permitted". Specifically, the firmware 20 stores information indicating the permission state in the memory 12. The information indicating the permission state is information indicating either "permitted" or "denied". On the other hand, if a negative determination is made in S34 or S35, the process proceeds to S43, where the permission state is set to "denied". Note that the firmware 20 deletes the information (permitted, denied) indicating the permission state stored in the memory 12 at the end of the remote screen control.

[0045] In S33, if the determination content of the automatic determination is not set on the setting file 26 for both addresses, the process proceeds to S36, where it is determined whether "determination by the IP address of the own machine" is set on the setting file 26 as the determination content of the automatic determination. If "determination by the IP address of the own machine" is set on the setting file 26, an affirmative determination is made in S36.

[0046] If an affirmative determination is made in S36, the process proceeds to S37, where the same determination as in S34 is made. If an affirmative determination is made in S37, the process proceeds to S42, where the permission state is set to "permitted". On the other hand, if a negative determination is made in S37, the process proceeds to S44, where the permission state is set to "denied".

[0047] As the determination content of the automatic determination, if "determination by the IP address of the own machine" is not set on the setting file 26 and S36 is negatively determined, the process proceeds to S38. In S38, it is determined whether "determination by the IP address of the requesting device" is set on the setting file 26 as the determination content of the automatic determination. If S38 is affirmatively determined, the process proceeds to S39, and the same determination as in S35 is made. If S39 is affirmatively determined, the process proceeds to S42, and the permission state is set to "permitted". On the other hand, if S38 or S39 is negatively determined, the process proceeds to S43, and the permission state is set to "denied". In S31 to S39 and S42, S43, the approval performed by the firmware 20 using the communication IP address is an example of the first approval process.

[0048] In S32, if the automatic determination is set to invalid on the setting file 26, the process proceeds to S40. In S40, approval using the approval screen 400 is performed. The approval using the approval screen 400 is a process of approving the display of the remote screen when an approval operation on the approval screen displayed on the user IF17 is received.

[0049] As shown in FIG. 8, the approval screen 400 includes a text image 401, a permission button 402, and a rejection button 403. The text image 401 is an image that displays text prompting an approval operation to the user near the MFP10 because there is a request to display the remote screen.

[0050] When the user near the MFP10 operates the permission button 402 as an approval operation, S41 is affirmatively determined, and the process proceeds to S42. In S42, the permission state is set to "permitted". On the other hand, when the user near the MFP10 operates the rejection button 403 as an approval operation, S41 is negatively determined, and the process proceeds to S43. In S43, the permission state is set to "denied". In addition, if no approval operation is performed even after a predetermined period has elapsed after the display of the approval screen 400 in S40, the process may proceed to S43 and the permission state may be set to "denied". In the present embodiment, in S40 to S43, the approval performed by the firmware 20 using the approval screen is an example of the second approval process.

[0051] Returning to FIG. 2, when the permission state is set to "Denied", at S25, the firmware 20 responds to the PC 30 by rejecting the transmission of the remote screen. When the browser 41 receives the rejection response from the MFP 10, it may display a prohibited screen on the administrator screen 300. Thereby, the user of the PC 30 can determine that the transmission of the remote screen is prohibited by the MFP 10 by viewing the text image displayed on the display 34.

[0052] When the permission state is set to "Permitted", at S26, the firmware 20 responds to the PC 30 by permitting the transmission of the remote screen. At S27, the firmware 20 transmits remote screen data for displaying the remote screen to the browser 41 to the PC 30. In the present embodiment, the remote screen data is data including data indicating the operation screen currently displayed on the user IF 17. Specifically, the remote screen data includes, in addition to the data indicating the operation screen, data indicating the operation keys that are the physical keys of the user IF 17 and data indicating the end button (reference numeral 333 in FIG. 4) described later. The firmware 20 creates the remote screen data and transmits the created remote screen data to the browser 41. The browser 41 interprets the remote screen data by the execution program included in the remote screen data and displays the remote screen on the display 34. In the present embodiment, the process executed by the firmware 20 at S27 is an example of the transmission process. Note that the browser 41 that has received the permission response for the display at S26 may make a new request for the remote screen data to the MFP 10, and when the firmware 20 receives this request, it may transmit the remote screen data to the PC 30 at S27.

[0053] FIG. 9 is a diagram showing an example in which a standby screen is displayed within a remote screen when the standby screen is displayed on the user IF 17. The remote screen 330 is displayed in the function display area 302 on the administrator screen 300. The remote screen 330 includes a screen display area 331 and an operation key display area 332. The same screen as the operation screen currently displayed on the user IF 17 of the MFP 10 is displayed in the screen display area 331. In FIG. 7, as an example, a standby screen is displayed in the screen display area 331. Icon images imitating the operation keys, which are physical keys provided on the user IF 17, are displayed in the operation key display area 332. Information indicating that a virtual operation has been performed on the remote screen 330 to the user IF 17 is interpreted by an execution program included in the remote screen data and notified to the MFP 10. The MFP 10 that has received the information indicating that a virtual operation has been performed executes processing according to the operation in the same manner as when the operation screen displayed on the user IF 17 is operated. For example, when the MFP 10 receives information indicating an operation on the Copy button, the MFP 10 executes a copy process including displaying a copy execution in-progress screen. For example, when the MFP 10 receives information indicating an operation on the setting button, the MFP 10 executes a process for setting the parameters of the MFP 10 including displaying a setting screen.

[0054] The data indicating the operation screen, operation keys, and end button included in the remote screen data for displaying the remote screen 330 may be in the same data format such as raster data, or may be in other data formats. The data indicating the operation screen, operation keys, and end button may be in separate data formats. Also, the firmware 20 may transmit only the data indicating the operation screen as remote screen data to the browser 41, and the browser 41 may display the remote screen by superimposing the data indicating the operation keys and end button on the remote screen data by interpreting the execution program. In addition to the above, the firmware 20 may transmit the data indicating the operation screen and operation keys as remote screen data to the browser 41, and the browser 41 may superimpose the data indicating the end button on the remote screen data by interpreting the execution program. Furthermore, instead of transmitting the remote screen data to the browser 41, the firmware 20 may transmit the web page data for displaying the entire administrator screen including the remote screen data to the browser 41.

[0055] The browser 41 requests the firmware 20 for remote screen data for periodically displaying the remote screen by executing the execution program, and reflects the screen currently displayed on the user IF17 on the remote screen. For example, when the browser 41 receives an operation input on the remote screen 330 via the user IF 35, it transmits a request corresponding to the received operation input to the firmware 20 by executing the execution program. At this time, the browser 41 transmits the token issued by the firmware 20 together with the request corresponding to the operation input. For example, when the operation input on the remote screen 330 is an operation related to screen update, the browser 41 requests the firmware 20 for the remote screen data for displaying the updated remote screen together with the token. When the firmware 20 receives the request for the remote screen data, it creates the remote screen data for displaying the updated remote screen 330 on the condition that the token is correct, and transmits it to the browser 41.

[0056] The remote screen 330 displayed on the display 34 of the PC 30 is also updated when the user IF 17 of the MFP 10 is operated. In this case, when the firmware 20 receives a screen change operation via the user IF 17, it may transmit the remote screen data related to the updated remote screen to the browser 41 without waiting for a request from the execution program.

[0057] Also, the remote screen 330 includes an end button 333. When receiving an operation input by the user for the end button 333, the firmware 20 makes a request to end the remote screen control together with a token. When the firmware 20 receives an end request from the PC, it ends the remote screen control on the condition that the token is correct. The firmware 20 ends the remote screen control. The process of ending the remote screen control includes deleting various information such as information indicating the usage status of the remote screen control stored in the memory 12, information indicating that the token has been issued, and information indicating the permission status of the remote screen control. The firmware 20 may delete this information and then end the remote screen control, or another program may delete this information triggered by the end of the remote screen control. If there is no access from the browser 41 that executes the execution program for a certain period of time after the remote screen control is started, the firmware 20 also ends the remote screen control in the same way as when the end button is pressed.

[0058] In the present embodiment described above, the following effects can be achieved. When the controller 11 of the MFP 10 determines in the approval process that the IP address satisfies specific conditions, it approves the display of the remote screen 330 to the PC 30 without displaying an approval screen on the user IF 17. As a result, it becomes possible to start remote display control without performing an approval operation on the user IF 17. As a result, it is possible to suppress the decrease in security for remote operations using the remote screen 330 and suppress the annoyance of operations when starting remote operations.

[0059] If the IP address of the MFP 10 used for communication with the requesting device is a private address, the controller 11 can approve the remote screen data without performing approval using an approval screen. Communication using a private address is communication with a device within the LAN to which the MFP 10 is connected, and since security can be expected to be ensured by the LAN administrator, it may be possible to omit the approval using the approval screen.

[0060] If the IP address of the PC 30 matches the IP address registered in the MFP 10, the controller 11 determines that specific conditions are met. It may be possible to perform an operation of automatically approving the transmission of remote screen data for a request from a requesting device having a reliable IP address pre-registered in the MFP 10 by the administrator.

[0061] The controller 11 can accept the specification of the IP address for which approval is permitted via the user IF 17. That is, the usability of the approval process can be improved.

[0062] If the IP address of the MFP 10 and the IP address of the PC 30 are addresses on the same LAN, the controller can approve the transmission of remote screen data without performing approval using an approval screen. If the MFP 10 and the PC 30 are connected to the same LAN and are devices managed by the same administrator who manages the LAN, since security can be expected to be ensured by the administrator, it may be possible to omit the approval using the approval screen.

[0063] Based on the operation received via the user IF 17, the controller 11 performs a setting regarding the validity of the approval process using automatic determination for the MFP 10. As a result, the presence or absence of the approval process using automatic determination can be changed by an operation via the user IF 17. That is, a suitable approval process can be executed according to the scene in which the MFP 10 is used.

[0064] (Modification Example of the First Embodiment) In the first embodiment, in S32 of FIG. 5, when the automatic determination is invalid, the process proceeds to S40 and approval is performed using the approval screen 400. Alternatively, when the automatic determination is invalid, the process may proceed to S43 and the permission state may be set to "rejected". That is, in this embodiment, when the firmware 20 determines that the IP address used for communication satisfies the specific conditions, it approves the display of the remote screen for the PC 30, and when it determines that the IP address used for communication does not satisfy the specific conditions, it does not approve the display of the remote screen for the PC 30. In this case, the processes of S40 and S41 are omitted.

[0065] In the first embodiment, in the automatic determination, when both IP addresses used for communication are private IP addresses (YES in S34) and the IP address of the requesting device is a registered address (YES in S35), the process proceeds to S42, and the permission state is set to permitted. Alternatively, when both IP addresses used for communication are private addresses (YES in S34), the controller 11 may proceed to S42 and set the permission state to "permitted". That is, after the process of S34, the determination as to whether it is a registered address is not made. In this case, the process of S35 is omitted. When both IP addresses used for communication are not private IP addresses (NO in S34), the process proceeds to S35, and it may be determined whether both IP addresses are registered addresses. In this case, if the IP address of the requesting device is a registered address, S35 is determined affirmatively, the process proceeds to S42, and the permission state is set to permitted. On the other hand, if the IP address of the requesting device is not a registered address, S35 is determined negatively, and the process proceeds to S43, and the permission state is set to denied. Also, the order of the determination as to whether it is a private IP address in S34 and the determination as to whether it is a registered address in S35 may be swapped. In this case, if the IP address of the requesting device is a registered address in S35 (YES in S35), the process proceeds to S34, and it is determined whether the IP address of the requesting device is a private IP address. Then, when S34 is determined affirmatively, the process proceeds to S42, and when S34 is determined negatively, the process proceeds to S43. When the determination of S34 and the determination of S35 are swapped, when S35 is determined affirmatively, the process may proceed to S42, and when S35 is determined negatively, the process may proceed to S43. In this case, the process of S34 may be omitted.

[0066] (Other Embodiments) The image forming apparatus is not limited to the above-described embodiment, and various changes are possible without departing from the gist thereof. As an example of the image forming apparatus, the MFP 10 has been described as an example, but the image forming apparatus may be a printer, a scanner, or a copier. As an example of the information processing apparatus, the PC has been described as an example, but the image forming apparatus may be a mobile terminal such as a smartphone.

Description of Symbols

[0067] 10…MFC, 11…Controller, 16…Communication IF, 17…User IF, 30, 50, 51…PC, 100…Image forming system

Claims

1. a user interface, a communication interface, and a controller, wherein the controller when receiving a first request from a device connected via the communication interface, displays an approval screen on the user interface, and when receiving an approval operation for the approval screen via the user interface, executes an approval process for approving the display of a remote screen, the first request is a request for displaying the remote screen, the remote screen is a screen to be displayed on the device that is the source of the first request and is a screen that virtually reproduces the user interface, wherein the controller when the display of the remote screen by the approval process is approved, executes a transmission process of transmitting remote screen data to the device that is the source of the first request, and the remote screen data is data for causing the device that is the source of the first request to display the remote screen, wherein the controller, after the transmission process, when receiving an instruction indicating that a virtual operation using the remote screen has been performed from the device that is the source of the first request via the communication interface, executes a predetermined process according to the instruction, in the approval process, determines whether a communication address satisfies a specific condition, the communication address is an IP address used for communication with the device that is the source of the first request, and in the approval process, when it is determined that the communication address satisfies the specific condition, approves the display of the remote screen for the device that is the source of the first request without displaying the approval screen on the user interface, an image forming apparatus.

2. a user interface, a communication interface, and a controller, wherein the controller when receiving a first request from a device connected via the communication interface, is capable of executing an approval process for approving the display of a remote screen for the device that is the source of the first request, the first request is a request for displaying the remote screen, the remote screen is a screen to be displayed on the device that is the source of the first request and is a screen that virtually reproduces the user interface, When the display of the remote screen by the approval process is approved, the controller executes a transmission process of transmitting remote screen data, and the remote screen data is data for displaying the remote screen on the requesting device of the first request. After the transmission process, when the controller receives, via the communication interface, an instruction indicating that a virtual operation using the remote screen has been performed from the requesting device of the first request, the controller executes a predetermined process according to the instruction. In the approval process, it is determined whether the communication address satisfies a specific condition. When it is determined that the communication address satisfies the specific condition, the display of the remote screen is approved for the requesting device of the first request. When it is determined that the communication address does not satisfy the specific condition, the display of the remote screen is not approved for the requesting device of the first request. The communication address is an IP address used for communication with the requesting device of the first request. Image forming apparatus.

3. Comprising a Web server, When the controller receives a display request for a Web page related to the image forming apparatus, the Web server is caused to transmit Web page data to the device that has made the display request for the Web page. The Web page data is data for causing the device that has made the display request for the Web page to display the Web page. The image forming apparatus according to claim 1 or 2, wherein after transmitting the Web page data, when the controller receives the first request via the Web page from the device that is the transmission destination of the Web page data, the approval process is executed using the IP address used for communication with the requesting device of the first request.

4. The image forming apparatus according to any one of claims 1 to 3, wherein in the approval process, the IP address of the image forming apparatus is used as the communication address, and if the IP address of the image forming apparatus is a private IP address, it is determined that the specific condition is satisfied.

5. It is possible to register an IP address for which approval is to be permitted in the image forming apparatus. In the approval process, if the IP address of the requesting device of the first request is used as the communication address and the communication address matches the IP address registered in the image forming apparatus, it is determined that the specific condition is satisfied. The image forming apparatus according to any one of claims 1 to 4.

6. When the controller receives an operation for designating an IP address to be permitted for approval via the user interface, the IP address received via the user interface is registered in the image forming apparatus as the IP address to be permitted for approval. The image forming apparatus according to claim 5.

7. Comprising a Web server, When the controller receives a display request for a registration page from a device connected via the communication interface, the controller transmits Web page data for displaying the registration page to the device that has made the display request for the registration page. The registration page is a Web page that accepts a registration operation of an IP address to be permitted for approval. When the controller receives a registration instruction for an IP address to be permitted for approval from the device that is the transmission destination of the Web page data via the communication interface, the controller registers the IP address corresponding to the registration instruction. Authentication by an administrator is required for registration of the IP address. The image forming apparatus according to claim 5.

8. In the approval process, the IP address of the image forming apparatus and the IP address of the requesting device of the first request are used as the communication address. If the IP address of the image forming apparatus and the IP address of the requesting device of the first request are addresses on the same LAN, it is determined that the specific condition is satisfied. The image forming apparatus according to any one of claims 1 to 7.

9. When it is set in the image forming apparatus that the first approval process is not valid and the first request is received from the requesting device of the first request, as the approval process, the controller executes a second approval process. The first approval process is a process of approving the display of the remote screen to the requesting device of the first request without displaying the approval screen on the user interface when it is determined that the communication address satisfies the specific condition. The second approval process is a process of approving the display of the remote screen when an approval operation for the approval screen is received via the user interface. The image forming apparatus according to claim 1, wherein the controller performs a setting regarding the validity of the first approval process on the image forming apparatus based on an operation received via the user interface. [

10. ] Comprising a Web server, When it is set in the image forming apparatus that the first approval process is not valid and an instruction to display the remote screen is received from the requesting device of the first request, as the approval process, the controller executes a second approval process. The first approval process is a process of approving the display of the remote screen to the requesting device of the first request without displaying the approval screen on the user interface when it is determined that the communication address satisfies the specific condition. The second approval process is a process of approving the display of the remote screen when an approval operation for the approval screen is received via the user interface. When the controller receives a request to display a Web page regarding the approval process from a device connected via the communication interface, the Web server causes the device that has requested the display of the Web page to transmit Web page data. The Web page data is data for causing the device that is the transmission destination of the Web page data to display a Web page showing a screen for receiving an operation regarding the setting of the validity of the first approval process. The image forming apparatus according to claim 1, wherein after transmitting the Web page data, the controller performs a setting regarding the validity of the first approval process on the image forming apparatus based on an instruction regarding the setting of the validity of the first approval process from the device that is the transmission destination of the Web page data.

Citation Information

Patent Citations

  • Image processing apparatus, information processing apparatus, remote control method, and program

    JP2006042309A

  • Information processing apparatus, method for controlling the same, and control program

    JP2013117834A

  • Image forming apparatus, control method of remote control, computer program, and storage medium

    JP2016045867A

  • Authentication system, electronic device, authentication method and authentication program

    JP2016218521A

  • Printer and computer program

    JP2017121761A