Important item management apparatus

The valuable item management device addresses security issues by setting user inactivity periods and restricting access for inactive users, enhancing security through user management and operation control.

JP2026006324APending Publication Date: 2026-01-16LAUREL PRECISION CO LTD
View PDF 1 Cites 0 Cited by

Patent Information

Application Number
JP2024105213
Authority / Receiving Office
JP · JP
Patent Type
Applications
Current Assignee / Owner
Filing Date
2024-06-28
Publication Date
2026-01-16

AI Technical Summary

Technical Problem

Conventional valuable item management devices lack security measures to prevent unauthorized access by users who have been registered but are no longer active, posing a security risk.

Method used

The device includes a setting unit to set a period for identifying authentication information of long-term users and a control unit to restrict operations based on operation history, limiting access for users who have not used the device for a specified period, with features like unlocking restrictions, warnings, and user re-registration.

Benefits of technology

Enhances security by preventing unauthorized access from long-term inactive users, ensuring secure operation and management of valuable items.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure 2026006324000001_ABST
    Figure 2026006324000001_ABST
Patent Text Reader

Abstract

To provide an important object management device capable of improving security.SOLUTION: An important object management device 11 for managing an important object includes a setting unit 42,65 that sets a period for identifying authentication information of a long-term non-user of the important object management device 11, and a control unit 65 that identifies, from an operation history of the important object management device 11, authentication information of a long-term non-user who has not operated the important object management device 11 during the period set by the setting unit 42,65, and restricts an operation based on the authentication information of the long-term non-user.SELECTED DRAWING: Figure 4
Need to check novelty before this filing date? Find Prior Art

Description

[Technical Field]

[0001] The present invention relates to a valuable item management device. [Background technology]

[0002] BACKGROUND ART Conventionally, there is a valuable item management device for managing valuable items such as various keys used in financial institutions, distribution institutions, etc. (see, for example, Patent Document 1). [Prior art documents] [Patent documents]

[0003] [Patent Document 1] Japanese Patent Publication No. 2023-069725 Summary of the Invention [Problem to be solved by the invention]

[0004] In the above-mentioned valuables management device, each user is registered before use, but once a user is registered, the registration remains until it is deleted. Therefore, even if a user is absent, if the user does not delete the registration, the device can be operated, which poses a security issue.

[0005] An object of the present invention is to provide a valuable item management device that can improve security. [Means for solving the problem]

[0006] A first aspect of the present invention is an important item management device that manages the important items, characterized in that it has a setting unit that sets a period for identifying authentication information of a long-term user of the important item management device, and a control unit that identifies authentication information of a long-term user who has not operated the important item management device for the period set by the setting unit from the operation history of the important item management device, and restricts operations based on the authentication information of the long-term user.

[0007] In a second aspect of the present invention, the control unit limits an authentication operation for authenticating the authentication information of the long-term unused user.

[0008] A third aspect of the present invention is a key having a key body and a key holder to which the key body is attached, wherein the key holder is attached so as to be able to lock and unlock, and the key is managed.

[0009] In a fourth aspect of the present invention, the control unit restricts unlocking of the key holder based on authentication information of the long-term unused user.

[0010] In a fifth aspect of the present invention, the control unit restricts unlocking of the key holder of a predetermined important key based on authentication information of the long-term unused user.

[0011] In a sixth aspect of the present invention, the control unit can release the restriction on operations based on the authentication information of the long-term unused user by an operation based on the authentication information of an administrator who has the authority to release the restriction.

[0012] In a seventh aspect of the present invention, the control unit removes restrictions on operations of the long-term unused user by clearing the authentication information of the long-term unused user through an operation based on the authentication information of the administrator.

[0013] In an eighth aspect of the present invention, the control unit re-registers the authentication information of the long-term unused user based on an operation by the administrator.

[0014] In a ninth aspect of the present invention, the control unit issues a warning in advance by a warning means when it is estimated that the authentication information of the administrator will become authentication information of the long-term unused user.

[0015] In a tenth aspect of the present invention, the control unit is capable of setting the period for each piece of authentication information of a user or for each piece of key holder.

[0016] In an eleventh aspect of the present invention, the control unit restricts the authentication operation by deleting authentication information of the long-term unused user.

[0017] In a twelfth aspect of the present invention, the control unit is capable of displaying information about the long-term non-user on a display unit.

[0018] In a thirteenth aspect of the present invention, the control unit is capable of printing information about the long-term unused user by a printing unit. [Effects of the Invention]

[0019] According to the present invention, it is possible to provide a valuable item management device that can improve security. [Brief explanation of the drawings]

[0020] [Figure 1] 1 is a perspective view of an important item management device according to an embodiment of the present invention; [Figure 2] 1 is a front view showing an important item management device according to an embodiment of the present invention with a front cover open. [Figure 3] 1 is a perspective view showing a key and storage unit of an important item management device according to an embodiment of the present invention; [Figure 4] 1 is a block diagram of a main part of an important item management device according to an embodiment of the present invention; [Figure 5] 10 is a diagram showing an example of a flow of a long-term non-user restriction process performed by the important item management device according to an embodiment of the present invention. [Figure 6] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 7] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 8] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 9] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 10] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 11] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 12] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 13] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 14] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 15] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 16] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 17] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 18] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 19] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 20] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 21] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 22] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 23] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 24] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 25] 1 is a front view showing an example of printing by a printer of an important item management device according to an embodiment of the present invention; [Figure 26]1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 27] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; [Figure 28] 1 is a front view showing a display example of an operation display unit of an important item management device according to an embodiment of the present invention; DETAILED DESCRIPTION OF THE INVENTION

[0021] An important item management device according to one embodiment of the present invention will be described below with reference to the drawings. In the following description, "front" refers to the front side in the front-to-rear direction, i.e., the front side as seen from the user, "rear" refers to the rear side in the front-to-rear direction, i.e., the back side as seen from the user, "left" refers to the left side as seen from the user, and "right" refers to the right side as seen from the user.

[0022] The important item management device 11 of this embodiment is used in, for example, the branches of financial institutions such as banks, and as shown in Fig. 1, is made up of a main unit 12 and a sub-unit 13. The sub-unit 13 is disposed on the right side of the main unit 12 and is fixed to the main unit 12. The main unit 12 has a unit body 21 and a front cover 22 that opens and closes the front side of the unit body 21.

[0023] As shown in FIG. 2, the lower front portion of the unit main body 21 constitutes an opening / closing section 31 that is opened and closed by the front cover 22. The portion of the unit main body 21 above the opening / closing section 31 constitutes an upper front surface component 32 that is not opened or closed by the front cover 22 and is always exposed, and the portion to the right of the opening / closing section 31 constitutes a right front surface component 33 that is not opened or closed by the front cover 22 and is always exposed. One end of the front cover 22 is rotatably connected to the unit main body 21 via a hinge 34 provided on the left edge of the unit main body 21, and opens and closes the front of the opening / closing section 31. A handle 35 for carrying is provided on the top surface of the unit main body 21, making the important item management device 11 portable.

[0024] The unit body 21 is provided with an IC card reader 41 on the left side of the upper front face component 32, which reads data (authentication information) from the IC chip of an IC card. The unit body 21 is provided with an operation display unit 42 (setting unit, display unit, warning means) on the right side of the upper front face component 32, which accepts operation inputs from the user and displays information to the user. The operation display unit 42 is a touch-panel liquid crystal display, and displays the date and time, operation status, alarm information, guidance, etc. The unit body 21 is provided with an audio output unit 43 on the right side of the operation display unit 42 on the upper front face component 32, which outputs audio to the outside. The unit body 21 is provided with a magnetic card reader 45 on the right front face component 33, which reads data (authentication information) from a magnetic card.

[0025] The subunit 13 is provided with a biometric reader 51 at its top that reads the user's biometric information. In this embodiment, finger vein information (authentication information) is read as the user's biometric information. The subunit 13 is provided with a printer unit 56 (printing unit) at its vertically middle portion that prints necessary information on paper and discharges it from a paper discharge port 55. The IC card and magnetic card are individually prepared for each person authorized to use the valuables management device 11, and store a user ID (authentication information) or other information that is individual user identification information for identification and authentication from others. In the following, an example will be described in which the important item management device 11 manages the key 61, but the important item management device 11 does not have to manage the key 61.

[0026] The opening / closing section 31, which is opened and closed by the front cover 22 of the unit main body 21, is provided at its front position with a plurality of storage sections 62 for storing keys 61 shown in Fig. 3, which are items to be managed, so that they can be taken out and returned. As shown in Fig. 2, the storage sections 62 are arranged in multiple positions in the left-right direction, specifically ten positions, and these ten storage sections 62 are arranged in multiple rows, specifically three rows, in the vertical direction.

[0027] The unit main body 21 is provided with a control unit 65 (setting unit) shown in Figure 4 that controls the IC card reader 41, operation display unit 42, audio output unit 43, magnetic card reader 45, biometric reader 51, printer unit 56 and multiple storage units 62, and a memory unit 66 that stores various information.

[0028] As shown in FIG. 3, the key 61 has a key body 71 that is inserted into an object to be unlocked or locked to lock or unlock it, and a key holder 72 (valued item holder) that holds at least one key body 71. The key holder 72 is composed of a detachable member 75 and a connecting member 76 that connects the key body 71 to the detachable member 75. Each detachable member 75 has a different shape from the other detachable members 75. In other words, each key holder 72 has a different shape from the other key holders 72. The storage unit 62 detachably supports the key holders 72 that correspond to each other one-to-one. The storage unit 62 holds the detachable member 75 of the corresponding key holder 72 in a locked state so that it cannot be removed.

[0029] Here, the uses of key body 71 are for opening and closing the door of a conference room, for opening and closing the door of a safe installed in a financial institution, for opening and closing the door of a cash processing machine, for opening and closing the door of a cash storage cabinet inside the door of a cash processing machine, for opening and closing the door of a collection cabinet inside the door of a cash processing machine, for switching on and off the main power supply of the cash processing machine, etc. Storage unit 62 holds key holders 72, i.e., keys 61, as storage target items (in other words, managed items).

[0030] The unit body 21 is provided with an electromagnetically driven cover lock mechanism 81 (see FIG. 2) on the right end side of the opening / closing unit 31. The cover lock mechanism 81 locks an engagement portion (not shown) of the front cover 22 when the front cover 22 is in the closed state (see FIG. 1). The cover lock mechanism 81 is controlled by the control unit 65 (see FIG. 4). The unit body 21 is provided with a full-closure detection sensor 82 (see FIG. 4) that detects whether the front cover 22 is in the fully closed state by detecting a detection portion (not shown) of the front cover 22 when the front cover 22 is in the closed state (see FIG. 1). The cover lock mechanism 81 locks (engages) the front cover 22 (cannot be opened), for example, by locking (engaging) with an engagement portion (not shown) of the front cover 22. When the control unit 65 releases the locked state of the cover lock mechanism 81, the lock on the engagement portion of the front cover 22 by the cover lock mechanism 81 is released. As a result, the front cover 22 can be opened from the unit body 21 (see FIG. 2). In this embodiment, the spring mechanism keeps the front cover 22 in a locked state at all times except when the control unit 65 releases the locked state of the cover lock mechanism 81. Therefore, except when the control unit 65 releases the locked state of the cover lock mechanism 81, the cover lock mechanism 81 locks the engaging portion of the front cover 22, and as a result, the front cover 22 is locked to the unit body 21 in a closed state as shown in FIG.

[0031] As shown in FIG. 3 , each of the storage units 62 has an individual insertion hole 85 into which the detachable member 75 of the key holder 72 connected to the key body 71 is inserted and removed. The detachable member 75 is detachably attached to the storage unit 62 and locked in the attached state. Each of the storage units 62 has an electromagnetically driven key lock mechanism 86 (shown in FIG. 4 ) that detects when the detachable member 75 is inserted into the insertion hole 85 to a predetermined attachment position, automatically locks and supports the detachable member 75, and can also unlock the detachable member 75. Each of the insertion holes 85 is shaped so that only the corresponding detachable member 75 can be inserted to the predetermined attachment position. Therefore, even if a detachable member 75 other than the corresponding detachable member 75 is inserted, the insertion hole 85 restricts the insertion and stops the detachable member 75 short of the predetermined attachment position. That is, only the insertion holes 85 and the detachable members 75 that correspond one to one can be inserted mechanically up to a predetermined mounting position (a position that can be locked by the key lock mechanism 86).

[0032] As shown in FIG. 3 , each of the storage units 62 has an operation button 91 with an integrated indicator lamp. The operation button 91 with lamp is positioned vertically adjacent to the insertion hole 85 of the same storage unit 62 and aligned with the insertion hole 85 in the left-right direction. The operation button 91 with lamp is an operation button that is pressed to release the lock by the key lock mechanism 86 shown in FIG. 4 that also constitutes the same storage unit 62. The operation button 91 with lamp guides operations by, for example, the color and lighting state of the lamp. Here, the lighting state of the lamp includes the lamp being off, on, and flashing. For example, the operation button 91 with lamp can be lit or flashing in blue, yellow, light blue, or white. The color of the lamp of the operation button 91 with lamp is not limited to the above. As a result, multiple operations can be guided by the color and lighting state of the lamp of the operation button 91 with lamp. In the storage unit 62, for example, when an operation button 91 with a lamp that is lit in a specific color is pressed, the control unit 65 unlocks the key lock mechanism 86 of the storage unit 62 in which the operation button 91 with a lamp is provided, allowing the key holder 72 to be removed from the storage unit 62.

[0033] As shown in FIG. 3 , each of the storage units 62 has a display unit 95 that displays the storage unit identification information of the storage unit 62. The display unit 95 is provided above the lamp-equipped operation button 91 and the insertion hole 85, and is aligned with the insertion hole 85 of the same storage unit 62 in the left-right direction. The display unit 95 may be a recess for attaching a sticker that displays the identification information of the key 61, for example. Here, instead of displaying the identification information of the key 61 on the display unit 95, the identification information may be displayed on the surface of the lamp-equipped operation button 91. As a method for displaying the identification information on the surface of the lamp-equipped operation button 91, for example, a sticker that displays the identification information may be attached to the surface of the lamp-equipped operation button 91. The identification information may be, for example, a number as shown in the figure, or may be, for example, a name.

[0034] In the lamp-equipped operation button 91 of this embodiment, identification information (in the illustrated example, an identification number) is displayed on the surface, and the part of the lamp-equipped operation button 91 that lights up and flashes is arranged in a frame shape surrounding the lamp-equipped operation button 91. Each of the multiple storage units 62 has a sensor (not shown) that detects whether the detachable member 75 is present or absent in a predetermined attachment position and detects the removal and return of the key holder 72, i.e., the key 61. The important item management device 11 manages the removal and return of the key 61 as an item to be managed based on the detection of the sensor (not shown). That is, in one storage unit 62, when the sensor (not shown) changes from a state of detecting the detachable member 75 corresponding to this storage unit 62 one-to-one to a state of not detecting this detachable member 75, it detects that the key 61 to be stored that corresponds one-to-one to this storage unit 62 has been removed from the important item management device 11. Furthermore, in this storage unit 62, when the sensor (not shown) changes from this state to a state of detecting the detachable member 75 corresponding to this storage unit 62 one-to-one, it detects that the key 61 to be stored that corresponds one-to-one to this storage unit 62 has been returned to the important item management device 11.

[0035] The control unit 65 controls the retrieval of the key 61 from the storage unit 62 and the return of the key 61 to the storage unit 62. The control unit 65 also performs a retrieval process in which related information is stored in the memory unit 66 when the key 61 is retrieved from the storage unit 62, and a return process in which related information is stored in the memory unit 66 when the key 61 is returned to the storage unit 62.

[0036] Next, the main operation of the important item management device 11 will be described.

[0037] When the important item management device 11 is in a standby state, the control unit 65 displays a standby screen on the operation and display unit 42. In this embodiment, the standby screen is an authentication screen shown in FIG. 6 for performing authentication processing using a pre-set authentication method. The important item management device 11 can perform authentication using a combination of a password and at least one of an IC card user ID, a magnetic card user ID, finger vein information (biometric information), and an input number, as authentication information, by setting the authentication information based on an operation on the operation and display unit 42. It is also possible to set the password so that it is not necessary to input it. Authentication can also be performed using a combination of at least one of an IC card user ID, a magnetic card user ID, and an input number, and finger vein information (biometric information). The following description will be given taking as an example a case where authentication is performed using a combination of a number and a password as authentication information.

[0038] In this embodiment, the authentication screen displayed as the standby screen is the number input screen 300. When a number is input by touching the numeric input display unit 303 on the number input screen 300, the control unit 65 causes the input number display unit 304 to display the input number. The control unit 65 reads out an individual user ID corresponding to the input number for distinguishing the user from other users. The control unit 65 compares the read-out user ID with a list of user IDs that can use the important item management device 11, which is pre-stored in the storage unit 66. If the read-out user ID is not included in the list of user IDs that can use the important item management device 11, the authentication fails. The control unit 65 then causes the operation display unit 42 to display a message indicating that the important item management device 11 cannot be used and causes the audio output unit 43 to emit an alarm for a predetermined period of time, thereby terminating the authentication process and returning the important item management device 11 to the standby state. When authentication is performed using an IC card or a magnetic card as authentication information, a guide screen (authentication screen) that prompts the user to bring the card (IC card or magnetic card) close to the IC card reader 41 or the magnetic card reader 45 may be displayed as a standby screen on the operation display unit 42. When authentication is performed using finger vein information as authentication information, a vein input screen that guides the user to input finger vein information may be displayed as a standby screen on the operation display unit 42.

[0039] If the read user ID is found in the user ID list, the control unit 65 displays a password entry screen on the operation / display unit 42 for accepting entry of a password (authentication information). While not shown, the password entry screen may include a numeric entry display unit 303 and an entry number display unit 304, similar to the number entry screen 300. If authentication is performed using finger vein information instead of password entry, a vein entry screen for guiding the user to enter finger vein information may be displayed. When a password is entered on the password entry screen, if the entered password corresponds one-to-one to a user ID stored in the storage unit 66, the control unit 65 authenticates the account of the user ID and password as valid, resulting in a successful authentication state. The control unit 65 stores the user ID and authentication date / time information, which is date and time information at that time, in the storage unit 66. The date information included in the authentication date / time information is the date of the last operation of the user ID at this point in time. If the entered password does not correspond one-to-one to the user ID stored in the storage unit 66, the account authentication fails, and the control unit 65 displays a password re-entry screen on the operation display unit 42 to prompt the user to re-enter the password. If an incorrect password is entered a predetermined number of times, the control unit 65 displays a message on the operation display unit 42 indicating that the important item management device 11 is unusable, and causes the audio output unit 43 to emit an alarm sound for a predetermined period of time, thereby terminating the authentication process and returning the important item management device 11 to a standby state. In this authentication failure state, the control unit 65 does not store authentication date and time information in the storage unit 66, and does not update the last operation date of the user ID. Note that there may be no limit on the number of times an incorrect password can be entered, and in this case, the important item management device 11 does not need to be unusable due to the entry of an incorrect password.

[0040] If the user ID authenticated as valid in the authentication process is a user ID capable of performing the storage unit usage process, the control unit 65 may display, as a storage unit usage process screen, a screen including a "Holder Retrieval / Return" button that is selected when performing either the retrieval process or the return process of the key 61 to the storage unit 62. When the "Holder Retrieval / Return" button is selected by touch operation on this storage unit usage process screen, the control unit 65 starts the storage unit usage process. If the only process that the authenticated user ID is capable of at the time of authentication is either the holder retrieval process or the return process, the screen including the Holder Retrieval / Return button does not need to be displayed. Note that the user IDs and the processes that each user ID is capable of are associated and stored in the memory unit.

[0041] In the storage unit use process, the control unit 65 unlocks the cover lock mechanism 81 to enable opening of the front cover 22, and reads from the memory unit 66 the storage unit identification information of the storage unit 62 that is permitted to be used in the storage unit use process for the user ID that was authenticated as valid in the authentication process at the start of the storage unit use process. At the same time, the control unit 65 displays on the operation display unit 42 a screen prompting the user to input whether to perform the process of retrieving the key 61 from the storage unit 62 or the process of returning the key 61 to the storage unit 62, and waits for the selection input. If the authenticated user ID is only capable of performing either the holder retrieval process or the return process, the screen including the holder retrieval / return button is not displayed, and the control unit 65 does not have to wait for the selection input. In this embodiment, the screen displayed during the storage unit use process (storage unit use display screen) includes a "Take Out" button that is touched when selecting the take-out process, and a "Return" button that is touched when selecting the return process. Here, this storage unit use display screen also includes a "Back" button. When the "Back" button is selected by touch on the storage unit use display screen, the control unit 65 displays the previous screen, the standby screen described above, on the operation display unit 42, and enters a state of waiting for authentication. Furthermore, when the "Home" button is touched on the operation display unit 42 while this storage unit use display screen is displayed, the control unit 65 cancels the authentication success state at that point and returns the important item management device 11 to a standby state in which the standby screen is displayed on the operation display unit 42.

[0042] In addition, for all display screens displayed on the operation display unit 42, if there is a previous screen on that screen, when the ``Back'' button is selected by touch operation, the control unit 65 will display the previous screen, and if there is a next screen, when the ``Next'' button is selected by touch operation, if there is an input on that screen, the next screen will be displayed while remembering that input, and if the ``Home'' button is touched, the authentication success state will be canceled at that point and the important item management device 11 will return to the standby state.

[0043] [Removal process] The take-out operation is an operation that the user performs on the important item management device 11 when taking-out processing is performed. On the storage unit usage display screen, the "Remove" button is selected by touch operation. The control unit 65 then performs the removal process. If the only process available to the authenticated user ID is the holder removal process, the screen including the remove button does not need to be displayed, and the removal process may be performed without touching the "Remove" button. In the removal process, when the full-closure detection sensor 82 detects that the front cover 22 has been opened, the control unit 65 causes the lamp-equipped operation button 91 of the storage unit 62 having storage unit identification information that is authorized for use by the user ID authenticated as valid in the authentication process at the start of the removal process to flash. Then, when the lamp-equipped operation button 91 of the storage unit 62 with the key 61, among the flashing lamp-equipped operation buttons 91 of the storage units 62 authorized for use, is pressed, the control unit 65 activates the key lock mechanism 86 of the storage unit 62 to unlock it. Of course, even if the operation button with lamp 91 is pressed while it is turned off, the control unit 65 will not unlock the key lock mechanism 86 of the storage unit 62 to which the operation button with lamp 91 is provided.

[0044] In addition, in the removal process, if the only process that the authenticated user ID can perform is the holder removal process, the control unit 65 will drive the key lock mechanism 86 of the storage unit 62 to unlock it when the flashing operation button 91 with lamp of the storage unit 62 that has the key 61 is pressed among the operation buttons with lamps 91 of the storage units 62 that are permitted to be used, even if the ``Remove'' button on the storage unit usage display screen is not touched.

[0045] When a sensor (not shown) detects that the key holder 72, i.e., the key 61, has been removed from the storage unit 62, the control unit 65 associates operation name information indicating that a removal operation has been input, the user ID and authentication date and time information authenticated as valid in the authentication process performed at the start of the removal process, authentication identification information indicating the authentication method, and the storage unit identification information of the storage unit 62, and stores these in the storage unit 66 as removal history information, which is information related to the current removal process. The control unit 65 stores the removal history information in the storage unit 66 as operation history, device information, and user information. The operation history is information on an operation unit basis that cumulatively records the details of each operation, and is a chronological record of the operation details. The device information is a history on an object unit basis that records the last operator and the last date and time of use for each object, such as a holder or cover. The user information is information that manages the operation authority and the last date and time of the last operation for each user. Here, when the keys 61 are retrieved from the multiple storage units 62 in one retrieval process, the control unit 65 stores the retrieval history information for each of the multiple storage units 62 in the storage unit 66 .

[0046] After storing the removal history information in the memory unit 66, when the full-closure detection sensor 82 detects that the front cover 22 has been closed, the control unit 65 cancels the authentication success state, turns off the blinking operation button 91 with lamp, and drives the cover lock mechanism 81 to lock the front cover 22 in the closed position, ending the removal process and returning the important item management device 11 to the standby state. Even during the removal process, if the "Home" button on the storage unit usage display screen is touched, the control unit 65 cancels the authentication success state at that point, turns off the blinking operation button 91 with lamp, and ends the removal process. Thereafter, when the full-closure detection sensor 82 detects that the front cover 22 has been closed, the control unit 65 drives the cover lock mechanism 81 to lock the front cover 22 in the closed position and returns the important item management device 11 to the standby state. The control unit 65 may cancel the authentication success state, for example, after a certain period of time has elapsed or by a cancel operation such as pressing the "back" button, turn off the flashing operation button 91 with lamp, and drive the cover lock mechanism 81 to lock the front cover 22 in the closed position, thereby ending the removal process and returning the important item management device 11 to the standby state.

[0047] [Return Processing] The return operation is an operation that the user performs on the important item management device 11 when the return process is performed. On the storage unit usage display screen, the "Return" button is selected by touch operation. Then, the control unit 65 performs the return process. If the return process is the only process available to the authenticated user ID, the screen including the return button does not need to be displayed, and the removal process may be performed without touching the "Remove" button. During the return process, when the full-closure detection sensor 82 detects that the front cover 22 has been opened, the control unit 65 causes the lamp-equipped operation button 91 of the storage unit 62 having the storage unit identification information of the storage unit 62 that is authorized for use by the user ID authenticated as valid in the authentication process at the start of the return process to flash. When the control unit 65 detects that a key holder 72 for a key 61 has been inserted into a storage unit 62 that does not contain a key 61 and that is permitted for use and has an operation button 91 with a lamp flashing, by a sensor (not shown) detecting the detachable member 75 of the key holder 72, the control unit 65 drives the key lock mechanism 86 of the storage unit 62 to lock the key holder 72.

[0048] In addition, when the only process that the authenticated user ID can perform is the return process, even if the ``Return'' button on the storage unit usage display screen is not touched, when a sensor (not shown) of a storage unit 62 that does not have a key 61 and is permitted to be used and has an operation button with a lamp 91 flashing detects the detachable member 75 of the key holder 72, the control unit 65 drives the key lock mechanism 86 of this storage unit 62 to lock the key holder 72.

[0049] Then, the control unit 65 associates the operation name information indicating that a return operation has been input, the user ID and authentication time information authenticated as correct in the authentication process at the start of this return process, the authentication identification information indicating the authentication method, and the storage unit identification information of this storage unit 62, and stores this together with the removal history information of a series of removal processes performed on the same storage unit 62 (storage unit identification information) as this return process as return history information, which is information related to the current return process, in the memory unit 66. Here, when keys 61 are returned to multiple storage units 62 in a single return process, the control unit 65 stores the return history information for each of the multiple storage units 62 in the memory unit 66.

[0050] Furthermore, even if an attempt is made to insert the detachable member 75 of the key holder 72 into an incompatible insertion hole 85 of the storage section 62, the insertion is mechanically prevented, and the control section 65 will not lock the key holder 72 to this storage section 62.

[0051] After storing the return history information in the memory unit 66, when the full-closure detection sensor 82 detects that the front cover 22 has been closed, the control unit 65 cancels the authentication success state, turns off the flashing operation button 91 with lamp, and drives the cover lock mechanism 81 to lock the front cover 22 in the closed position, ending the return process and returning the important item management device 11 to the standby state. Even during the return process, if the "Home" button on the display screen is touched, the control unit 65 cancels the authentication success state at that point, turns off the flashing operation button 91 with lamp, and ends the return process. Thereafter, when the full-closure detection sensor 82 detects that the front cover 22 has been closed, the control unit 65 drives the cover lock mechanism 81 to lock the front cover 22 in the closed position and returns the important item management device 11 to the standby state. The control unit 65 may cancel the authentication success state, for example, after a certain period of time has elapsed or by a cancel operation such as pressing the "back" button, turn off the flashing operation button 91 with lamp, and drive the cover lock mechanism 81 to lock the front cover 22 in the closed position, thereby ending the removal process and returning the important item management device 11 to the standby state.

[0052] When the "Check Status" button 302 is selected on the standby screen shown in FIG. 6, the control unit 65 causes the operation and display unit 42 to display a "Check Status" screen 320 as shown in FIG. 8. On the "Check Status" screen 320, when the identification number of the key 61 whose status is to be checked is selected by inputting information into the check target input unit 321, the control unit 65 causes the operation and display unit 42 to display a status display screen showing the status of the key 61 corresponding to the selected identification number. Although the status display screen is not shown, the status display screen may include, for example, an indication of whether the key 61 corresponding to the selected identification number is in a removed state. The status display screen may also display, for example, the removal and return history of the key 61 corresponding to the selected identification number.

[0053] As described above, the important item management device 11 is configured so that the key holder 72 of the key 61, which has a key body 71 and a key holder 72 to which the key body 71 is attached, can be locked and unlocked, and manages the removal and return of the key 61.

[0054] The important item management device 11 can identify a long-term unused user and perform a long-term unused user restriction process to restrict the operations of the long-term unused user.

[0055] Based on input to the operation display unit 42, a period for identifying long-term users of the important item management device 11 is set. Based on user information including the authentication processing operation history for each user, the control unit 65 identifies long-term users who have not operated the important item management device 11 for the period set by input to the operation display unit 42, thereby enabling long-term user restriction processing to restrict operations by long-term users. The diagram shown in Figure 5 shows an example of the flow of long-term user restriction processing. Here, an example will be described in which the control unit 65 performs account locking, which restricts authentication processing for an account consisting of a user ID and password, as long-term user restriction processing. An account consisting of a locked user ID and password will not be in the authentication success state. In the important item management device 11, processes that are not possible unless an account consisting of a user ID and password is successfully authenticated include unlocking the front cover 22 by the cover lock mechanism 81, i.e., opening the front cover 22, unlocking the storage unit 62 by the key lock mechanism 86, i.e., removing the key holder 72 from the storage unit 62, locking the storage unit 62 by the key lock mechanism 86, i.e., returning the key holder 72 to the storage unit 62, unlocking the operation lock, error reset (with authentication), management mode operations (registration operations, setting, printing, history display, operation lock, forced cover closure, power OFF), etc. Operations that do not require a successful authentication state include locking by the cover lock mechanism 81 when the open front cover 22 is closed, i.e., normally closing the cover, returning the holder (without authentication), changing the password, registering the finger vein, checking the status, error reset (without authentication), etc.

[0056] [Long term unused period setting] First, referring to FIG. 5, the "long-term non-user period" setting performed on Jan. 1, 20XX will be described. When setting a period to identify the user ID of a person who has not used the important item management device 11 for a long time, the following process is possible when the user ID classification is a classification that allows for setting a long-term unused period, such as the ``administrator'' classification.

[0057] When the account consisting of the user ID and password is authenticated as valid in the above authentication process and the authentication is successful, the control unit 65 stores this user ID and authentication date and time information, which is the date and time information at that time, in the storage unit 66. The date included in this authentication date and time information is the date of the last operation for this user ID at that time.

[0058] When the "Submenu" button 301 on the standby screen shown in FIG. 6 is selected and the "Administration Mode" button 311 is touched, i.e., selected, from among the operable items on the "Submenu" screen 310 shown in FIG. 7, the control unit 65 displays an authentication screen and performs authentication processing using a predetermined method. Although the authentication screen is not shown, the authentication processing may be performed using the same method as when using the storage unit, or a different method. The control unit 65 checks the user ID read by the authentication processing against an administrator ID list of user IDs that can use the "Administration Mode" stored in advance in the storage unit 66. If the administrator ID list does not contain a user ID that matches the read user ID, authentication fails. The control unit 65 then displays on the operation and display unit 42 a message indicating that the "Administration Mode" is unavailable and terminates the authentication processing. If the administrator ID list contains a user ID that matches the read user ID, the control unit 65 displays the "Administration Mode Main Menu" screen 100, as shown in FIG. 9, on the operation and display unit 42. Each screen, including the "Management Mode Main Menu" screen 100, displays a "Back" button R and a "Home" button H, which are the functions described above. When a "Various Settings" button 101 is touched, i.e., selected, on the "Management Mode Main Menu" screen 100 of the operation display unit 42, the control unit 65 causes the operation display unit 42 to display a "Various Settings" screen 110 as shown in FIG. 10. When an "Alarm Settings" button 111 is touched, i.e., selected, on the "Various Settings" screen 110 of the operation display unit 42, the control unit 65 causes the operation display unit 42 to display an "Alarm Settings" screen 120 as shown in FIG. 11. When a "Long-Term Inactive User Limit" button 121 is touched, i.e., selected, on the "Alarm Settings" screen 120 of the operation display unit 42, the control unit 65 causes the operation display unit 42 to display a first "Long-Term Inactive User Limit" screen 130 as shown in FIG. 12.

[0059] On the first screen 130 for "Long-Term Inactive User Restriction," if there is a long-term unused ID that is the user ID of a long-term inactive user, a selection display is displayed indicating whether or not to perform account locking, which restricts the operation of the authentication process, which is the long-term inactive user restriction process. This selection display allows selection of "Lock" or "Do not lock." When the "circle" 131 to the left of "Lock" is touched, i.e., selected, the control unit 65 displays a "●" within this "circle" 131, as shown in FIG. 12, to indicate that "Lock" has been selected. Note that, to set the account not to be locked, the "circle" 132 to the left of "Do not lock" is touched, i.e., selected, and the control unit 65 displays a "●" within this "circle" 132 to indicate that "Do not lock" has been selected. As shown in FIG. 12 , when a “●” is displayed within a “◯” 131 and a “Next” button 133 is touched, i.e., selected, on the first screen 130 for “Long-Term Non-User Restriction,” the control unit 65 causes the operation display unit 42 to display a second screen 140 for “Long-Term Non-User Restriction” as shown in FIG. 13 . On the second screen 140 for “Long-Term Non-User Restriction,” when a numeric input display unit 141 including a numeric keypad is touched, i.e., input, to input a set period (number of days), the control unit 65 causes the input set period (number of days) to be displayed on the input period display unit 142. At this time, the control unit 65 limits the set period (number of days) that can be input to a preset range, for example, 1 to 366, 1 to 999, etc. Here, a case will be described in which “10” is input as the set period by operating the numeric input display unit 141, and “10” days are displayed on the input period display unit 142.

[0060] When the "Next" button 143 is touched, i.e., selected, on the second screen 140 for "Long-Term Non-User Restriction" with the input period (number of days) displayed in the input period display section 142, the control unit 65 causes the operation display unit 42 to display the third screen 150 for "Long-Term Non-User Restriction" as shown in FIG. 14. On the third screen 150 for "Long-Term Non-User Restriction", the validity display section 151 displays that the "Long-Term Non-User Restriction" processing is "enabled", and the period display section 152 displays the period, i.e., the number of days until lockout, which is "10 days". When the "Complete" button 153 is touched, i.e., selected, on the third screen 150 for "Long-Term Non-User Restriction", the control unit 65 causes the operation display unit 42 to display the fourth screen 160 for "Long-Term Non-User Restriction" as shown in FIG. 15, which indicates that the settings have been completed. When the "OK" button 161 is operated in response to the explanation that the settings have been completed on the fourth screen 160 for "Long-Term Inactive User Restriction," the control unit 65 sets the period displayed in the period display unit 152 at the time the "Complete" button on the third screen 150 for "Long-Term Inactive User Restriction" was touched, i.e., selected, as the set period for the long-term inactive period and stores it in the memory unit 66, and also enables the long-term inactive user restriction process. Then, the "Alarm Setting" screen 120 is displayed on the operation display unit 42. Here, the enable / disable of the long-term inactive user restriction process is set uniformly for all user IDs. Furthermore, the set period for the long-term inactive period is set uniformly for all user IDs.

[0061] The set period of this long unused period is the number of days that have passed, not including the date of the last operation. For example, if the set period of this long unused period is "10 days," and the authentication date and time information for the last operation date, when the user ID was authenticated as valid in the authentication process and the authentication was successful, is January 1st, from January 2nd to January 12th, which is beyond the set period of 10 days of the long unused period, the control unit 65 will lock the account for this user ID and make authentication operations impossible.

[0062] In this way, the control unit 65 sets the period for identifying a user who has not used the important item management device 11 for a long time by operating the operation display unit 42 based on the user ID for which setting is permitted.

[0063] [Long-term non-use restriction processing] An example of the flow of the long-term inactive user restriction process when the long-term inactive user restriction process is enabled will be described with reference to FIG. In the example shown in Figure 5, the long-term unused period described above was set on January 1, 20XX using the user ID "111," and the set period for the long-term unused period was changed to "10 days." The control unit 65 then updates the last operation date for the user ID "111" to January 1, 20XX, which is the authentication date and time information when the long-term unused period was set, and stores it in the storage unit 66. Furthermore, if a key holder 72 with a key holder ID of "001" is removed on January 1, 20XX using the user ID "222," the control unit 65 updates the last operation date for the user ID "222" to January 1, 20XX, which is the authentication date and time information at that time, and stores it in the storage unit 66.

[0064] When the date changes, the control unit 65 counts the number of days elapsed from the last operation date recorded as user information for all users to the current day. In the example shown in Fig. 5, for example, when it becomes January 5, 20XX, the number of days elapsed since the last operation date (January 1, 20XX) for user ID "111" becomes "4 days," which is within the set period of "10 days" for the long-term unused period, so account locking, which is a long-term unused user restriction process, is not performed for user ID "111." Furthermore, the number of days elapsed since the last operation date (January 1, 20XX) for user ID "222" also becomes "4 days," which is within the set period of "10 days" for the long-term unused period, so account locking is not performed for user ID "222."

[0065] In the example shown in Figure 5, on January 5, 20XX, the removal process of key holder 72 with key holder ID "002" was performed by user ID "111". In this case, the control unit 65 updates and stores in the memory unit 66 the last operation date of user ID "111" as January 5, 20XX, which is the authentication date and time information at that time.

[0066] Then, when the date changes and it becomes, for example, January 10, 20XX, the control unit 65 does not perform account locking, which is a long-term unused user restriction process, on user ID "111" because the number of days that have passed since the last operation date for user ID "111" (January 5, 20XX) is "5 days," which is within the set period of "10 days" for the long-term unused period. Also, the number of days that have passed since the last operation date for user ID "222" (January 1, 20XX) is "9 days," which is within the set period of "10 days" for the long-term unused period, so it does not perform account locking on user ID "222."

[0067] If the date changes further, for example, to January 12, 20XX, the control unit 65 will not perform account locking, which is a long-term unused user restriction process, on user ID "111" because the number of days that have passed since the last operation date for user ID "111" (January 5, 20XX) is "7 days," which is within the set period of "10 days" for the long-term unused period. On the other hand, the number of days that have passed since the last operation date for user ID "222" (January 1, 20XX) is "11 days," which exceeds the set period of "10 days" for the long-term unused period. Therefore, the control unit 65 stores user ID "222" in the storage unit 66 as a long-term unused user ID and performs account locking, which is a long-term unused user restriction process, on this long-term unused user ID. That is, the control unit 65 enters a state in which it will not accept authentication operations for the user ID "222," and when the user ID "222" is entered during authentication processing, the operation display unit 42 displays a message that the user ID is a long-term inactive user ID and that the account is locked, and the audio output unit 43 generates an alarm, and password entry is not accepted. For example, when the IC card reader 41 reads a locked user ID from an IC card, the control unit 65 displays a message that the user ID is a long-term inactive user ID and that the account is locked, and the audio output unit 43 generates an alarm, disabling password entry. Note that when a user ID is account-locked, the important item management device 11 can be used again by clearing and resetting the password for that user ID.

[0068] In this way, the control unit 65 identifies the user ID of a long-term non-user who has not operated the important item management device 11, specifically the authentication operation history, during the set period of the long-term non-use period set as described above, specifically the user ID of a long-term non-user who has not performed an operation that would result in successful authentication, and restricts operations based on the user ID of the long-term non-user, specifically the authentication operation that authenticates the authentication information of the long-term non-user, in other words, restricts the entry into the authentication success state.

[0069] [Registered data display process] Here, in the important item management device 11, registered data (user information) including the name, classification, and last operation date for each user ID can be displayed on the operation display unit 42 for all user IDs.

[0070] That is, when displaying registered data, if the authentication is successful in the above-mentioned authentication process using an account that is permitted to display registered data, for example, an account consisting of a user ID and password in the "administrator" category, the control unit 65 stores in the memory unit 66 the user ID and the authentication date and time information at that time, which is the date and time of the last operation at that time.

[0071] When "Administration Mode" is touched, i.e., selected, from the "Submenu" on the standby screen, the control unit 65 displays an authentication screen and performs authentication processing using a predetermined method. If the same user ID as the read user ID is found in the administrator ID list, the control unit 65 displays an "Administration Mode Main Menu" screen 100 as shown in FIG. 9 on the operation display unit 42. When the "Register / Delete" button 102 is touched, i.e., selected, while the "Administration Mode Main Menu" screen 100 shown in FIG. 9 is displayed on the operation display unit 42, the control unit 65 displays a "Register / Delete" screen 170 as shown in FIG. 16 on the operation display unit 42. When the "Confirm Registered Data" button 171 is touched, i.e., selected, on the "Register / Delete" screen 170, the control unit 65 displays a first "Confirm Registered Data" screen 180 as shown in FIG. 17 on the operation display unit 42. The first screen 180 for "Registered Data Confirmation" displays the user ID, the user name, the classification such as "Administrator" or "General" that are all associated with this user ID, whether the card is registered, whether the password is permitted or not, and the password expiration date. The example shown in FIG. 17 corresponds to the example shown in FIG. 5, and shows that the user ID is

[0111] , the name is "Yama Hanako," the classification is "Administrator," whether the card is registered is "Registered," the password is permitted, and the password expiration date is "August 31, 20XX." If the card registration status, password permission, and password expiration date have not been set, they are not displayed.

[0072] When the "▽" button 181 for displaying the next page screen is touched, i.e., selected, on the first screen 180 for "Registered Data Confirmation" shown in FIG. 17, the control unit 65 causes the operation display unit 42 to display the second screen 190 for "Registered Data Confirmation" as shown in FIG. 18. The second screen 190 for "Registered Data Confirmation" displays the user ID and the date of the last operation performed by this user ID. The example shown in FIG. 18 corresponds to the example shown in FIG. 5, and indicates that the user ID is

[0111] and that the date of the last operation is "January 12, 20XX," which is the date of the current operation. When the "△" button 191 for displaying the previous page screen is touched, i.e., selected, on the second screen 190 for "Registered Data Confirmation," the control unit 65 causes the operation display unit 42 to display the first screen 180 for "Registered Data Confirmation" shown in FIG. 17.

[0073] 17, when the "Previous ID" button 182 is touched, i.e., selected, on the first screen 14 of "Registered Data Confirmation," the control unit 65 causes the operation and display unit 42 to display the first screen 180 of "Registered Data Confirmation," which shows similar information for the user ID immediately before the user ID that was displayed up until then. When the "Next ID" button 183 is touched, i.e., selected, on the first screen 14 of "Registered Data Confirmation," the control unit 65 causes the operation and display unit 42 to display the first screen 180 of "Registered Data Confirmation," which shows similar information for the user ID immediately after the user ID that was displayed up until then. Also, when the "Specify ID" button 184 is touched, i.e., selected, on the first screen 14 of "Registered Data Confirmation," the control unit 65 causes the operation and display unit 42 to display a screen for inputting a user ID. When a user ID is entered into this pop-up screen, the control unit 65 causes the operation and display unit 42 to display the first screen 180 of "Registered Data Confirmation," which shows similar information for the entered user ID.

[0074] Also, in the second screen 190 of "Confirm Registration Data" shown in FIG. 18, when the "Previous ID" button 182, the "Next ID" button 183, or the "Specify ID" button 184 is touched, i.e., selected, the control unit 65 will cause the operation display unit 42 to display the second screen 190 of "Confirm Registration Data" including information on other user IDs corresponding to the operation, just as in the case of the first screen 180 of "Confirm Registration Data" shown in FIG. 17.

[0075] In this way, the control unit 65 displays the registration data for all user IDs, including the name, category, and last operation date, on the operation display unit 42. If there is a lock date, the lock date may be included in the displayed registration data. This registration data can also be confirmed by other devices, such as an external personal computer or mobile terminal, by performing a predetermined authentication operation.

[0076] [Long-term non-user confirmation data display processing] In addition, the important item management device 11 is capable of displaying long-term user confirmation data, including the name, last operation date, and lock date for each long-term user ID, on the operation display unit 42 for all long-term user IDs.

[0077] That is, when displaying long-term non-user confirmation data, if the authentication is successful in the above-mentioned authentication process using an account that is permitted to display long-term non-user confirmation data, for example, an account consisting of a user ID and password in the "administrator" category, the control unit 65 stores this user ID and the authentication date and time information at that time, which is the date and time of the last operation at that time, in the memory unit 66.

[0078] When the "Long-term user confirmation" button 172 is touched, i.e., selected, while the "Register / Delete" screen 170 shown in Fig. 16 is displayed on the operation display unit 42, and is displayed when the user ID classification at the time of authentication processing is, for example, "Administrator," and confirmation of the long-term user confirmation data is permitted, the control unit 65 causes the first "Long-term user confirmation" screen 200 shown in Fig. 19 to be displayed on the operation display unit 42. The first "Long-term user confirmation" screen 200 displays the long-term user ID, the user name associated with this long-term user ID, the classification such as "Administrator" or "General," whether the card is registered, whether password use is permitted or not, and the password expiration date, which is the expiration date of the password. The example shown in Figure 19 corresponds to the example shown in Figure 5, and indicates that the long-term non-user ID is

[0222] , the name is "△da Taro", the category is "general", whether or not the card is registered is "registered", the password usage permission is "permitted", and the password expiration date is "August 31, 20XX". If the whether or not the card is registered, the password usage permission, and the password expiration date have not been set, they will not be displayed.

[0079] When the "▽" button 201 for displaying the next page is touched, i.e., selected, on the first screen 200 for "Long-Term User Confirmation" shown in FIG. 19, the control unit 65 causes the operation / display unit 42 to display the second screen 210 for "Long-Term User Confirmation" as shown in FIG. 20. The second screen 210 for "Long-Term User Confirmation" displays the long-term user ID, the last operation date, and the date on which the account became a long-term user ID, both of which are associated with the long-term user ID. The example shown in FIG. 20 corresponds to the example shown in FIG. 5, and shows that the long-term user ID is

[0222] , the last operation date is "January 1, 20XX," and the lock date of the account lock is "January 12, 20XX." Note that the lock date does not need to be displayed. When the "△" button 201 for displaying the previous page screen is touched, i.e., selected, on the second screen 210 of "Confirmation of Long-Term Non-Users," the control unit 65 causes the first screen 200 of "Confirmation of Long-Term Non-Users" shown in Figure 19 to be displayed on the operation display unit 42.

[0080] 19, when the "Previous ID" button 202 is touched, i.e., selected, the control unit 65 causes the operation display unit 42 to display the first "Long-Term User Confirmation" screen 200 showing similar information for the long-term user ID immediately preceding the long-term user ID that was previously displayed. When the "Next ID" button 203 is touched, i.e., selected, the control unit 65 causes the operation display unit 42 to display the first "Long-Term User Confirmation" screen 200 showing similar information for the long-term user ID immediately following the long-term user ID that was previously displayed. When the "Specify ID" button 204 is touched, i.e., selected, on the first "Long-Term User Confirmation" screen 200, the control unit 65 causes the operation display unit 42 to display a pop-up screen for inputting a long-term user ID. When a long-term user ID is entered into this pop-up screen, the control unit 65 causes the operation display unit 42 to display the first "Long-Term User Confirmation" screen 200 showing similar information for the long-term user ID that was entered.

[0081] Also, in the second screen 210 of "Confirm long-term user" shown in FIG. 20, when the "Previous ID" button 202, the "Next ID" button 203, or the "Specify ID" button 204 is touched, i.e., selected, the control unit 65 will cause the operation display unit 42 to display the second screen 210 of "Confirm long-term user" including information on other long-term user IDs corresponding to the operation, just as in the case of the first screen 200 of "Confirm long-term user" shown in FIG. 19.

[0082] In this way, the control unit 65 displays long-term user confirmation data, including the name, last operation date, and lock date for each long-term user ID, for all long-term user IDs on the operation display unit 42. Note that the lock date does not have to be displayed.

[0083] [Long-term non-use confirmation data printing process] In the important item management device 11, the printer unit 56 can print long-term user confirmation data including the name, last operation date, and lock date for each long-term user ID.

[0084] That is, when printing long-term user confirmation data, if the authentication process described above is successful using an account that is permitted to print long-term user confirmation data, for example, an account consisting of a user ID and password in the "administrator" category, the control unit 65 stores this user ID and the authentication date and time information at that time, which is the date and time of the last operation at that time, in the memory unit 66.

[0085] When the "Print" button 103 is touched, i.e., selected, while the "Administration Mode Main Menu" screen 100 shown in Fig. 9 is displayed on the operation display unit 42, the screen is displayed when the user ID classification during authentication processing is, for example, "Administrator," and printing of long-term user confirmation data is permitted. When the "Print" button 103 is touched, i.e., selected, on the "Print" screen 220, the control unit 65 displays a "Print" screen 220 as shown in Fig. 21 on the operation display unit 42. When the "Confirmation Print" button 221 on the "Print" screen 220 is touched, i.e., selected, the control unit 65 displays a "Confirmation Print" screen 230 as shown in Fig. 22 on the operation display unit 42. When the "Long-Term User Confirmation Print" button 231 on the "Confirmation Print" screen 230 is touched, i.e., selected, the control unit 65 displays a first "Long-Term User Confirmation Print" screen 240 as shown in Fig. 23 on the operation display unit 42. When the "Yes" button 241 is touched, i.e., selected, to confirm printing on the first screen 240 for "Long-term user confirmation printing," the control unit 65 causes the printer unit 56 to print information including information such as the user ID of the long-term user as shown in Fig. 25. For example, as shown in Fig. 25, the "Long-term user confirmation" information prints the operation date and time information for the long-term user confirmation operation, the operation ID which is the user ID of the operator who operated the long-term user confirmation operation, the name of the operator, the set store number, and the set machine number of the important item management device 11, and the "Long-term user" information prints the set period of the long-term unused period for identifying the long-term user, the ID which is the user ID of the long-term user, the name of the operator, the last operation date, and the lock date.In the print example shown in Fig. 25, the information for "long-term user confirmation" corresponds to the example shown in Fig. 5 and is printed with the following: operation date and time information for the long-term user confirmation operation is "January 12, 20XX," the operation ID which is the user ID of the operator of the long-term user confirmation operation is "111," the name of the operator is "Hanako Oyama," the set store number is "1234567," and the set machine number of the important item management device 11 is "000001," and the information for "long-term user" is that the set period of long-term non-use for identifying a long-term user is "10 days," the user ID of the long-term user is "222," the name of the operator is "Taro △da," the last operation date is "January 1, 20XX," and the lock date is "January 12, 20XX." Note that the lock date does not have to be printed.

[0086] When the printer unit 56 completes the printing, the control unit 65 causes the operation display unit 42 to display a second screen 250 for "long-term user confirmation printing" as shown in Fig. 24. When the "OK" button 251 is touched, i.e., selected, in response to the display indicating that printing has been completed on the second screen 250 for "long-term user confirmation printing," the control unit 65 causes the operation display unit 42 to display a "confirmation printing" screen 230.

[0087] In this way, the control unit 65 displays a list of all long-term non-user IDs, including the name, last operation date, and lock date for each long-term non-user ID, and causes the printer unit 56 to print the list on paper. Note that the lock date does not have to be printed.

[0088] [Registered data printing process] If the user ID classification during authentication processing is "administrator" who is authorized to print registered data, the control unit 65 can print a list of registered data for all user IDs on paper using the printer unit 56 based on operations on the operation display unit 42.

[0089] That is, when printing registered data, if the authentication is successful in the above-mentioned authentication process using an account that is permitted to print registered data, for example, an account consisting of a user ID and password in the "administrator" category, the control unit 65 stores in the memory unit 66 the user ID and the authentication date and time information at that time, which is the date and time of the last operation at that time.

[0090] When the "Print" button 103 is touched, i.e., selected, while the "Administration Mode Main Menu" screen 100 shown in Fig. 9 is displayed on the operation display unit 42, the screen is displayed when the user ID classification during authentication processing is, for example, "administrator," and printing of registered data is permitted. When the "Print" button 103 is touched, i.e., selected, on the "Print" screen 220, the control unit 65 displays a "Print" screen 220 as shown in Fig. 21 on the operation display unit 42. When the "Confirmation Print" button 221 on the "Print" screen 220 is touched, i.e., selected, the control unit 65 displays a "Confirmation Print" screen 230 as shown in Fig. 22 on the operation display unit 42. When the "Registered Data Confirmation Print" button 232 on the "Confirmation Print" screen 230 is touched, i.e., selected, the control unit 65 enables the printer unit 56 to print on paper a list of registered data similar to the content displayed in the registration data display processing for all user IDs.

[0091] The list of long-term non-users and registered data can also be printed from other devices such as an external personal computer by performing a predetermined login operation.

[0092] [Long-term non-use restriction removal process] When a long-term unused user ID is locked as part of the long-term unused user restriction process, it must be unlocked. To do so, the necessary process is performed: clearing the password for the long-term unused user ID, clearing the vein, or allowing password use. Here, we will explain the process using an example of clearing the password for a long-term unused user ID, as shown in Figure 5 for "January 12, 20XX."

[0093] That is, when clearing the password of a user ID, if the above-mentioned authentication process is successful using an account for which password clearing is permitted, for example, an account consisting of a user ID and password in the "administrator" category, the control unit 65 stores the user ID and the authentication date and time information at that time, which is the date and time of the last operation at that time, in the memory unit 66.

[0094] For example, in the example shown in FIG. 5 , if the user ID

[0111] is the user who performed the authentication operation to clear the password on January 12, 20XX, the last operation date for the user ID

[0111] is January 12, 20XX. Then, when the user ID classification at the time of authentication processing is permitted to clear the password, for example, "administrator," and the "Register / Delete" screen 170 shown in FIG. 16 is displayed on the operation display unit 42, and the "Clear Password" button 173 is touched, the control unit 65 causes the operation display unit 42 to display the first "Clear Password" screen 260 shown in FIG. 26. On the first "Clear Password" screen 260, when the numeric input display unit 261 including the numeric keypad is touched, i.e., input, to enter a user ID, the control unit 65 causes the input user ID display unit 262 to display the entered user ID. Here, in the example shown in FIG. 5 , the user ID whose account is locked and whose password needs to be cleared is

[0222] , and this user ID is entered. When clearing veins instead of clearing passwords, a "clear veins" button 174 is touched on the "registration / deletion" screen 170 shown in Fig. 16. When permitting password use instead of clearing passwords, a "permit password use" button 175 is touched on the "registration / deletion" screen 170.

[0095] Then, when the "Next" button 263 is touched, i.e., input-operated, in a state where the user ID that needs to clear the password is input on the first screen 260 of "Password Clear" shown in FIG. 26, the control unit 65 displays the second screen 270 of "Password Clear" as shown in FIG. 27. On this second screen 270 of "Password Clear", the input user ID to be cleared of the password, the user name associated with this user ID, and classifications such as "Administrator", "General", etc. are displayed. The example shown in FIG. 27 corresponds to the example shown in FIG. 5, indicating that the user ID that needs to clear the password because the account is locked is

[0222] , the name is "△ Taro Tan", and the classification is "General".

[0096] When the "Execute" button 271 is touched, i.e., input-operated, on the second screen 270 of "Password Clear", the control unit 65 clears the password of this user ID stored in the storage unit 66. When the "Execute" button 271 is input-operated, the control unit 65 displays the third screen 280 of "Password Clear" as shown in FIG. 28. On this third screen 280 of "Password Clear", the "OK" button 281 is operated for the explanation that the password clear is completed. Thereby, the account lock is released. Then, the "Registration / Deletion" screen 170 is displayed on the operation display unit 42.

[0097] Note that when the user ID has not been used for a long time and the account is in a locked state, the control unit 65 may restrict the authentication operation of the long-term unused user ID by automatically clearing the password, i.e., deleting the authentication information immediately or after the set period has elapsed, without clearing the password by an account of the "Administrator" classification.

[0098] When resetting a password, if the user ID is authenticated as valid and the password is cleared in the authentication process described above, the control unit 65 resets the password for that user ID based on the operation input on the password reset screen displayed on the operation / display unit 42, and stores the reset password in the storage unit 66 along with authentication date and time information, which is the date and time information at that time. The date included in the authentication date and time information is the last operation date for that user ID at that time. For example, corresponding to the example shown in FIG. 5, if the user ID

[0222] resets the password on January 12, 20XX, the last operation date for the user ID

[0222] is January 12, 20XX, and the number of days since the last operation date is zero. Note that the password reset operation is possible when authenticating a user ID classified as "general" and when authenticating a user ID classified as "administrator." However, it may be possible to reset the password only when authenticating a user ID classified as "administrator."

[0099] Note that the account lock may be disabled, and a re-operation may require re-registration of the user ID and password account. For example, when re-registering a user ID and password, if the user ID and password for the "administrator" category are authenticated as valid in the authentication process described above and authentication is successful, the control unit 65 stores the user ID and authentication date and time information, which is the date and time information at that time, in the storage unit 66. The date included in the authentication date and time information becomes the date of the last operation for the user ID at that time. Then, when the "Register / Delete" screen 170 shown in FIG. 16, which is displayed when the user ID is classified as "administrator," is displayed on the operation display unit 42, if the "Delete" button 176 is touched, the control unit 65 displays a "User ID" input screen on the operation display unit 42. If the "User ID" input screen is touched, i.e., if a user ID is entered by inputting the user ID, a confirmation screen (not shown) for the user ID to be deleted is displayed on the operation display unit 42. When the "Execute" button is touched, i.e., an input operation is performed, on the confirmation screen for the user ID to be deleted, the control unit 65 deletes the account of the entered user ID and password. When a long-term inactive user ID becomes an account locked state, the account of the long-term inactive user ID may be deleted immediately or automatically after a set period has elapsed, without the need for operation using an account in the "administrator" category.

[0100] Next, when the "New Registration" button 177 is touched while the "Register / Delete" screen 170 shown in FIG. 16 is displayed on the operation display unit 42 in the same manner, the control unit 65 displays a "User ID" input screen on the operation display unit 42. When the "User ID" input screen is touched, i.e., an input operation is performed, and the account consisting of the deleted user ID is re-entered as described above, the control unit 65 newly registers the account consisting of the entered user ID. This re-registers the account consisting of the user ID that was once deleted. After the account consisting of the user ID is re-registered, the password is reset.

[0101] As a result, the control unit 65 can lift the restrictions on operations by a long-term unused user based on the operation of an administrator with predetermined authority. At that time, the control unit 65 clears the authentication information of the long-term unused user based on the operation of the administrator, thereby enabling the authentication information of the long-term unused user to be re-registered. Then, the control unit 65 lifts the restrictions on operations by the long-term unused user by re-registering the authentication information of the long-term unused user.

[0102] In addition, in the above, if the setting of the long-term unused period is changed during the operation of performing the long-term unused user restriction processing, user IDs that have already exceeded the set period of the long-term unused period will remain in the exceeded period, i.e., long-term unused IDs, regardless of the changed value.

[0103] In the important item management device 11 of the embodiment described above, when the control unit 65 sets a period for identifying authentication information (an appropriate combination of user ID, finger vein information, and password) of a long-term user of the important item management device 11 based on operation input to the operation display unit 42, the control unit 65 identifies the authentication information of a long-term user who has not operated the important item management device 11 during the period set by the operation display unit 42 and the control unit 65 from the operation history of the important item management device 11, and performs long-term user restriction processing to restrict operations based on the authentication information of the long-term user. Therefore, it is possible to prevent an absent user from being able to operate the important item management device 11 without erasing it, thereby improving security.

[0104] In the important item management device 11, the control unit 65 restricts the authentication operation for authenticating the authentication information of a long-term unused user as a long-term unused user restriction process, so that a long-term unused user can immediately recognize that their operation of the important item management device 11 is restricted. Note that the control unit 65 may also restrict the authentication operation by automatically deleting the authentication information of a long-term unused user as a long-term unused user restriction process. In this case, the operation for deleting the authentication information of a long-term unused user ID is not required, improving usability. Note that, for example, a plurality of user IDs of long-term unused users whose authentication information is to be deleted may be selected from the user IDs of long-term unused users displayed in the long-term unused user list, and the selected user IDs of long-term unused users may be deleted all at once.

[0105] The important item management device 11 improves security by enabling the control unit 65 to cancel the long-term inactive user restriction process, which restricts operations based on the authentication information of long-term inactive users, through operations based on the authentication information of an administrator who has the authority to cancel the process.

[0106] In the important item management device 11, the control unit 65 clears the authentication information of a long-term unused user, such as a password, through an operation based on the authentication information of an administrator with cancellation authority, thereby allowing the password, which is the authentication information of the long-term unused user, to be re-registered, and by re-registering the password, which is the authentication information of the long-term unused user, the long-term unused user restriction process that restricts the operations of the long-term unused user is canceled, thereby improving security and reducing the burden on the administrator. Note that the password, which is the authentication information of a long-term unused user, may be cleared through an operation based on the administrator's authentication information, allowing the password, which is the authentication information of the long-term unused user, to be re-registered, and by re-registering the authentication information of the long-term unused user through an operation based on the administrator's authentication information, the long-term unused user restriction process that restricts the operations of the long-term unused user may be canceled, thereby further improving security.

[0107] In the important item management device 11, the control unit 65 can display information about long-term unused users on the operation display unit 42, so that information about long-term unused users can be easily grasped.

[0108] In the important item management device 11, the control unit 65 can print information about long-term unused users using the printer unit 56, so that information about long-term unused users can be easily obtained.

[0109] The above embodiment can also be modified as in the following Modifications 1 to 6. <Variation 1> In the important item management device 11, account locking, a long-term inactive user restriction process, requires successful authentication using the administrator's authentication information (an appropriate combination of user ID, finger vein information, and password) to be unlocked. Therefore, when the estimated date approaches on which all administrators' authentication information will become long-term inactive users' authentication information and the accounts will be locked, the control unit 65 issues a warning a predetermined number of days before the estimated date that all administrators' authentication information will become long-term inactive users' authentication information and the accounts will be locked. This warning is displayed on the operation display unit 42 or sent to the administrator's mobile device. That is, when the control unit 65 estimates that the administrator's authentication information will become long-term inactive users' authentication information, it issues a warning in advance using the warning means. Note that, when all administrators' authentication information becomes long-term inactive users' authentication information and the accounts are locked, the control unit 65 may be configured to unlock the accounts even if authentication is not successful using the administrator's authentication information, or may automatically unlock the accounts and allow successful authentication for the administrator's authentication information even if the administrator's authentication information becomes long-term inactive users' authentication information.

[0110] <Variation 2-1> The control unit 65 may restrict operations based on the identification information of a long-term inactive user by restricting the above-mentioned removal process, i.e., unlocking of the key holder 72 by the key lock mechanism 86, instead of locking the account (disabling authentication operations), as a long-term inactive user restriction process.

[0111] <Variation 2-2> In variant 2-1, the control unit 65 may restrict operations based on the identification information of a long-term unused user by not restricting the above-mentioned retrieval process of a general key, i.e., unlocking the key holder 72 using the key lock mechanism 86, but restricting the above-mentioned retrieval process of a predetermined important key that is more important than a general key, i.e., unlocking the key holder 72 using the key lock mechanism 86. This allows the general key to be retrieved even through operations based on the authentication information of a long-term unused user, improving usability. An example of an important key is a key that requires successful authentication of the user IDs of two people.

[0112] <Variation 3> The setting period of the long-term unused period does not have to be set uniformly for all user authentication information at once, but may be set individually for each user's authentication information, i.e., for each user. Also, the setting period of the long-term unused period may be set individually for each key holder 72. In other words, the control unit 65 may be able to set the setting period of the long-term unused period for each user's authentication information or for each key holder 72.

[0113] <Variation 4> The enable / disable of the long-term inactive user restriction process is not limited to being set uniformly for all user authentication information, but can also be set individually for each user authentication information, i.e., for each user. For example, it is possible to enable the long-term inactive user restriction process for authentication information in the "general" category, and disable it for authentication information in the "administrator" category, which is higher than general.

[0114] <Variation 5> When a long-term inactive user restriction process such as account locking is executed, the fact that the long-term inactive user restriction process is being executed may be notified to an external party, including information about the long-term inactive user. Specific examples of notification destinations include an external personal computer (such as a central system) and a security signal board. [Explanation of symbols]

[0115] 11...Important item management device, 42...Operation display unit (setting unit, display unit, warning means), 56...Printer unit (printing unit), 61...Key, 65...Control unit (setting unit), 71...Key body, 72...Key holder.

Claims

1. An important item management device that manages important items, a setting unit for setting a period for identifying authentication information of a user who has not used the important item management device for a long time; a control unit that identifies authentication information of a long-term user who has not operated the important item management device for the period set by the setting unit from the operation history of the important item management device, and restricts operations based on the authentication information of the long-term user; An important item management device comprising:

2. The important item management device according to claim 1 , wherein the control unit restricts an authentication operation for authenticating the authentication information of the long-term unused user.

3. 2. A valuables management device according to claim 1, wherein the key holder of a key having a key body and a key holder to which the key body is attached is attached so as to be capable of locking and unlocking, and manages the key.

4. The important item management device according to claim 3 , wherein the control unit restricts unlocking of the key holder based on authentication information of the long-term unused user.

5. 5. The important item management device according to claim 4, wherein the control unit restricts unlocking of the key holder of a predetermined important key based on authentication information of the long-term unused user.

6. 2. The important item management device according to claim 1, wherein the control unit enables the restriction on operations based on the authentication information of the long-term unused user to be lifted by an operation based on the authentication information of an administrator who has the right to lift the restriction.

7. 7. The important item management device according to claim 6, wherein the control unit removes restrictions on operations by the long-term unused user by clearing the authentication information of the long-term unused user through an operation based on the authentication information of the administrator.

8. 8. The important item management device according to claim 7, wherein the control unit re-registers the authentication information of the long-term unused user based on an operation by the administrator.

9. 7. The important item management device according to claim 6, wherein said control unit issues a warning in advance by a warning means when it is estimated that the authentication information of said manager will become authentication information of said long-term unused user.

10. 4. The important item management device according to claim 3, wherein the control unit is capable of setting the period for each user's authentication information or for each key holder.

11. The important item management device according to claim 2 , wherein the control unit restricts the authentication operation by deleting authentication information of the long-term unused user.

12. 2. The important item management device according to claim 1, wherein the control unit is capable of displaying information about the long-term unused user on a display unit.

13. 2. The important item management device according to claim 1, wherein the control unit is capable of printing information about the long-term unused user by means of a printing unit.

Citation Information

Patent Citations

  • Article management device

    JP2023069725A