Information processing apparatus, control method, and storage medium

The image management device addresses the challenge of granting appropriate permissions post-upgrade by determining and notifying users of necessary authorities, improving application usability and functionality.

JP2026014550AActive Publication Date: 2026-01-29CANON KK
View PDF 6 Cites 0 Cited by

Patent Information

Application Number
JP2024115713
Authority / Receiving Office
JP · JP
Patent Type
Applications
Current Assignee / Owner
Filing Date
2024-07-19
Publication Date
2026-01-29
Estimated Expiration
2044-07-19

AI Technical Summary

Technical Problem

Users face challenges in granting appropriate permissions to applications after upgrades, as they may not know if additional privileges are needed, and existing methods like OAuth 2.0 do not address this issue effectively.

Method used

An image management device that includes an acquisition means to determine the scope of authority granted to an application before upgrade and a notification means to inform users of necessary permissions, ensuring proper functionality post-upgrade.

Benefits of technology

This approach reduces the burden on users by ensuring that applications receive the required permissions for new features, enhancing the usability and functionality of upgraded applications.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure 2026014550000001_ABST
    Figure 2026014550000001_ABST
Patent Text Reader

Abstract

To reduce a burden on a user due to version upgrade of an application cooperating with a resource server.SOLUTION: The image management apparatus includes an acquisition unit configured to acquire information indicating a range of the authority given to the application before the application is upgraded, and a notification unit configured to give a predetermined notification to a user in a case where the authority to use the resource server that has been linked, which is necessary for the user to use a function added due to the upgrade of the application, is not included in the range.SELECTED DRAWING: Figure 10
Need to check novelty before this filing date? Find Prior Art

Description

[Technical Field]

[0001] The present disclosure relates to a method for managing images. [Background technology]

[0002] There are resource servers that provide external services such as managing image files through cloud computing. There are also client devices on which applications authorized to use the resource server run. By linking such client devices with the resource server, it becomes possible to manage image files processed by the client device on the resource server. In this case, the application running on the client device is granted authorization to use the resource server within a set range. A technology called OAuth 2.0 is widely used as an authentication method used to grant authorization to applications.

[0003] Patent Document 1 proposes a method for determining the range of resources of an external storage service that can be used by an application that performs processing in cooperation with the external storage service. [Prior art documents] [Patent documents]

[0004] [Patent Document 1] Japanese Patent Application Laid-Open No. 2017-59219 Summary of the Invention [Problem to be solved by the invention]

[0005] Applications running on client devices are repeatedly upgraded to fix problems or improve functionality. Therefore, even if an older version of an application was granted permission to use a resource server, the granted permission may be insufficient for a newer version of the application, and additional permission may need to be granted.

[0006] However, a user cannot easily know whether an application needs to be granted additional privileges when the application is upgraded. Furthermore, a user may not know how to grant additional privileges to an application. Patent Document 1 also does not describe a method for granting additional privileges to an application. For this reason, after an application is upgraded, there is a risk that the user will not properly perform the operations required to enable the added functions. [Means for solving the problem]

[0007] The image management device disclosed herein is an image management device that operates using an application that has been granted authority to use a linked resource server, and is characterized by having an acquisition means that acquires information representing the scope of the authority granted to the application before the application is upgraded, and a notification means that gives a predetermined notification to the user if the authority to use the linked resource server that is necessary for the user to use functions that have been added as a result of the application being upgraded is not included in the scope. [Effects of the Invention]

[0008] According to the technology of the present disclosure, it is possible to reduce the burden on users caused by the version upgrade of an application that cooperates with a resource server. [Brief explanation of the drawings]

[0009] [Figure 1]FIG. 1 illustrates an example of a configuration of an image management system. [Figure 2] FIG. 2 illustrates an example of a hardware configuration of an image management apparatus. [Figure 3] FIG. 1 is a diagram for explaining a transfer function provided by an application. [Figure 4] FIG. 10 is a diagram showing an example of a screen when an application and a resource server are linked together. [Figure 5] FIG. 2 illustrates an example of a functional configuration of an application of an image management apparatus. [Figure 6] FIG. 10 is a diagram illustrating an example of a collaboration setting screen. [Figure 7] FIG. 10 is a diagram showing an example of a data structure for managing authorization information. [Figure 8] FIG. 10 is a diagram illustrating an example of a data structure for managing policies of a resource server. [Figure 9] FIG. 10 is a diagram showing an example of a data structure for managing messages to be presented to a user. [Figure 10] 10 is a flowchart illustrating an example of a process for displaying a message. [Figure 11] FIG. 10 is a diagram illustrating an example of a message screen. [Figure 12] 10 is a flowchart illustrating a process after a message is displayed. DETAILED DESCRIPTION OF THE INVENTION

[0010] Embodiments of the technology of the present disclosure will be described with reference to the drawings. The components described in the following embodiments are merely examples, and are not intended to limit the scope of the technology of the present disclosure to only the following embodiments. The technology of the present disclosure is not limited to the following embodiments, and various forms within the scope that do not deviate from the gist of the technology of the present disclosure are also included in the technology of the present disclosure. Parts of the following embodiments may be combined as appropriate.

[0011] <Embodiment 1> [System Configuration] 1 is a diagram showing an example of the configuration of an image management system according to this embodiment. The image management system includes an image management device 100, a user terminal 102, and resource servers 101a to 101e.

[0012] The image management device 100 is an information processing device that provides services such as receiving image data sent from a camera or terminal of a user who has an account (described later) and saving the received image data. The service provided by the image management device 100 is, for example, a cloud service that uploads and saves images taken with a digital camera in real time using a network such as Wi-Fi. Various functions are provided to the user by an application 110 that runs on the image management device 100. The functions provided by the application 110 will be described later. The image management device 100 is connected to one or more resource servers 101 and one or more user terminals 102 via a network.

[0013] In this embodiment, a user is a user who has an account for a service provided by an application 110 running on the image management device 100 and uses the service provided by the application 110. A user can create an account via a user terminal 102 owned by the user and connected to a network. The user terminal 102 may be a PC, tablet, smartphone, camera, or the like. The user terminal 102 may be the same terminal as the terminal that uploads images to the image management device 100.

[0014] An application 110 running on the image management device 100 can display a screen on the user terminal 102. A user can issue various instructions to the application 110 running on the image management device 100 via the screen. For example, a user can view the user's images managed by the image management device 100, delete images, and so on. A user can also change settings related to services provided by an application running on the image management device 100 via the screen.

[0015] The resource servers 101a to 101e are information processing devices that provide services such as a storage service, an editing service, and a microblog service, respectively. The services provided by the resource servers 101a to 101e are sometimes referred to as external services to distinguish them from services provided by the application 110 running on the image management device 100. The image management system will be described as including various resource servers 101a to 101e that each provide an external service, but the number of resource servers 101a to 101e is not limited. Hereinafter, when the term "resource server" is used, it also refers to the external service operated by the resource server. Furthermore, when referring to any of the resource servers 101a to 101e, it may be simply referred to as the resource server 101.

[0016] The network is, for example, a LAN (Local Area Network), the Internet, etc. The image management device 100, the resource servers 101a to 101e, and the user terminal 102 are connected via the network, and are configured to enable mutual communication between these devices.

[0017] [Hardware configuration] FIG. 2 is a diagram showing an example of the hardware configuration of the image management device 100, which is an information processing device according to this embodiment.

[0018] The CPU 201 performs calculations for each process and controls each unit. The image management device 100 may be configured to have one or more dedicated hardware components different from the CPU 201 and to execute at least some of the processes performed by the CPU 201. Examples of dedicated hardware components include processors used for image processing and control, ASICs (application-specific integrated circuits), FPGAs (field-programmable gate arrays), and DSPs (digital signal processors).

[0019] The RAM 202 functions as the main memory of the CPU 201, and is a memory used as an area where execution programs are loaded and as a data area.

[0020] ROM 203 is a memory that stores the operation processing procedures of CPU 201. For example, ROM 203 includes an area in which operating system (OS), which is a system program that controls the image management device 100, is stored, and an area in which information necessary for operating the system is stored. The data stored in ROM 203 may also be stored in HDD 209, which will be described later. The image management device 100 may also include a storage unit such as a NAND flash memory, an SD card, or a solid-state drive (SSD) instead of or in addition to HDD 209. In this case, the data stored in ROM 203 described above may also be stored in these storage units.

[0021] The NET I / F 204 is a network interface that communicates with the resource server 101 and the user terminal 102 via the network.

[0022] Based on instructions from the CPU 201, the VRAM 205 performs display control to display a screen indicating the operating status of the image management device 100 on the display unit 206. The display unit 206 is, for example, a display device such as a monitor.

[0023] The input / output controller 207 controls input signals from an external input unit 208. The external input unit 208 is a device that accepts operations performed by an operator. The external input unit 208 is, for example, an input device such as a keyboard, a pointing device such as a mouse, or a touch panel display.

[0024] The HDD 209 is a storage unit used as a storage area for applications and various data.

[0025] The external storage device 210 is a device that reads out the storage medium 211. For example, the external storage device 210 is a removable disk such as a floppy disk drive, a CD-ROM drive, or an SD card. The storage medium 211 is a storage medium 211 that can be read by the external storage device 210. For example, the storage medium 211 is a removable data recording device (removable media) such as a magnetic recording medium such as a floppy disk, an optical recording medium (e.g., a CD-ROM), a magneto-optical recording medium (e.g., an MO), or a semiconductor recording medium (e.g., an SD card).

[0026] The external storage device 210 is used to read the applications and data stored in the HDD 209 from the storage medium 211. Alternatively, the applications and data may be received from a device connected to the network via the NET I / F 204.

[0027] The transmission bus 212 is a path for exchanging data between the devices. Data is transmitted between the CPU 201, RAM 202, ROM 203, NET I / F 204, VRAM 205, input / output controller 207, HDD 209, and external storage device 210 via the transmission bus 212.

[0028] In this embodiment, for convenience of explanation, the image management device 100 is described as a single device, but the image management device 100 may be a system in which a plurality of information processing devices behave as a single image management device 100.

[0029] [Functions provided to users by application 110] The application 110 running on the image management device 100 may be upgraded, and functions that the user can use may be added in accordance with the upgrade. In this embodiment, the application 110 may be described as having an old version and a new version that is an upgraded version from the old version.

[0030] Fig. 3 is a diagram for explaining the functions provided by the application 110. Fig. 3(a) is a diagram for explaining the functions provided by the old version of the application. Fig. 3(b) is a diagram for explaining the functions provided by the new version of the application 110.

[0031] The old version of application 110 has a normal transfer function that saves the user's images, which are uploaded by the user to image management device 100 and managed by application 110 of image management device 100, in a predetermined location on the linked resource server. As shown in FIG. 3(a), the predetermined location is, for example, a root folder.

[0032] A linked resource server is a resource server for which the user has an account and which the user has permitted the application 110 to access. In the description of FIG. 3, the linked resource server is assumed to be resource server 101a among resource servers 101a to 101e, but any of resource servers 101a to 101e can be a linked resource server. The linked resource server differs depending on the user. There may be multiple linked resource servers.

[0033] The new version of the application 110 is assumed to have added a sorting function and a sorting transfer function (also called a sorting image transfer function) to the functions provided by the old version of the application 110.

[0034] The sorting function is a function in which the application 110 selects images that match registered sorting conditions from among images of a specific user managed by the application 110. For example, if a sorting condition for sorting images that include cats is registered, images that include cats are selected from among images of the specific user managed by the application 110. The process of selecting images that match the sorting conditions is also called "sorting" or "sorting process." Multiple sorting conditions may be registered, in which case a sorting process is performed for each registered sorting condition. The sorted images are managed in association with an identifier that indicates the sorting condition that they matched.

[0035] The sorting and forwarding function is a function by which the application 110 creates an album for each sorting condition registered in the linked resource server 101a. If the linked resource server 101a has an album function, the user can enable the sorting and forwarding function of the application 110. If there are multiple linked resource servers, the user can enable the sorting and forwarding function for each linked resource server.

[0036] An album refers to a container for managing image files collectively. In other words, a folder containing image files that meet certain sorting conditions is also an album. The resource server 101a will be described as having an album function. The user can display a list of images belonging to an album.

[0037] For example, suppose that sorting condition 1 for sorting images containing boats and sorting condition 2 for sorting images containing fish are registered in application 110. In this case, the sorting function of application 110 sorts images containing boats and images containing fish from among a group of images of a specific user managed by application 110.

[0038] Then, if the sorting image function is enabled, the application 110 executes sorting transfer. In sorting transfer, the application 110 transfers sorted images so that an album is generated for each image that matches each sorting condition in the linked resource server 101a. For example, the application 110 generates two empty albums in the linked resource server 101a, and transfers images that match sorting condition 1 to one album and images that match sorting condition 2 to the other album. If albums have already been generated in the linked resource server 101a, the application 110 transfers images that match the sorting conditions to the album corresponding to the sorting conditions.

[0039] In this way, in the linked resource server 101a, an album 1 storing images including fish and an album 2 storing images including boats are generated (updated) by the application 110. Therefore, to enable the sorting and forwarding function, not only must the linked resource server 101a have an album function, but the application 110 must also be granted the authority to generate albums in the linked resource server 101a.

[0040] [Regarding delegation of authority] The granting of authority to use resources of the resource server 101a, which is held by a user in the linked resource server 101a, to the application 110 is also referred to as delegation of authority to the application 110. In other words, the delegation of authority to the application 110 means that the application 110 is permitted to use a predetermined range of resources from among the resources of the resource server 101a.

[0041] The user's authority to use the resource server 101a (the range of available resources) includes, for example, saving data to the linked resource server 101a, creating a new album (folder) in the linked resource server 101a, etc. The authority is delegated when the application 110 is permitted to link with the resource server.

[0042] 4 is a diagram showing an example of a confirmation screen displayed on the user terminal 102 for confirming whether the user permits the pre-collaboration resource server to collaborate with the application 110. For example, when the resource server 101a collaborates with the application 110, the confirmation screens 400 and 410 also display in an area 402 the scope of authority to be delegated (granted) to the application 110. When the user presses an Allow button 401 on the confirmation screens 400 and 410, the resource server 101a becomes a resource server that has already collaborated. Furthermore, the authority displayed in the area 402 of the confirmation screen 400 is delegated to the application 110 in the user's account.

[0043] Of the user's authority held by the account of the linked resource server 101a, it is preferable that the scope of authority delegated to the application 110 be the necessary scope. In other words, the authority required to execute the functions of the current version of the application 110 is delegated to the application 110.

[0044] For example, when a new function is added to an application due to a version upgrade, the system administrator of image management device 100 refers to a manual for developers issued by the resource server to check the authority that should be granted to application 110. Then, the type of authority required for each resource server is managed using a table or the like.

[0045] For example, when an old version of the application 110 cooperates with the pre-cooperation resource server 101a, the authority required for the application 110 to perform normal transfer is delegated. Specifically, as shown in area 402 in Fig. 4(a), the authority delegated from the user to the old version of the application 110 is the authority to save image data in the resource server 101a, but does not include the authority to generate an album.

[0046] In this embodiment, a sorting and transfer function has been added to the new version of the application 110. Therefore, in order for a user to use the sorting and transfer function of the application 110, the application 110 needs to be granted the authority to create an album in addition to the authority to save images in the resource server 101a.

[0047] 4(b) is a confirmation screen displayed when the user links with the resource server 101a using a new version of the application 110. As shown in area 402 in FIG. 4(b), when linking with the new version of the application 110, the authority to generate an album is included in the authority delegated to the application 110. Therefore, when linking with the resource server 101a for the first time using a new version of the application, appropriate authority is delegated to the application 110.

[0048] However, when an older version of an application has already been linked with a resource server, the method for delegating additional authority to the application 110 differs depending on the resource server. In this embodiment, a method for preventing the user from failing to perform a required operation by notifying the user so that the additional authority is appropriately delegated to the application 110 will be described.

[0049] [Function Configuration] 5 is a diagram showing an example of the functional configuration of the application 110 executed in the image management device 100. In this embodiment, as shown in FIG. 5, the application 110 of the image management device 100 has processing modules 501 to 515.

[0050] After automatic startup or when an instruction is input by an operator via the external input unit 208, the instruction is transmitted to the CPU 201. The CPU 201 retrieves a program corresponding to one of the processing modules 501 to 515 according to the received instruction from the ROM 203, HDD 209, external storage device 210, RAM 202, etc., and loads the program into the RAM 202 to execute the processing. The CPU 201 writes the calculation results into the RAM 202, HDD 209, external storage device 210, etc. The CPU 201 also functions as a display control unit that displays the calculation results on the display unit 206 via the VRAM 205 as needed. By operating as described above, processing corresponding to the processing modules 501 to 515 is performed. In this way, the processing modules 501 to 515 operate as part of an application or program used by the CPU 201. Note that some or all of the functions of the processing modules 501 to 515 may be implemented by hardware such as an ASIC or electronic circuit.

[0051] The collaboration unit 501 performs collaboration processing with the resource server 101 for which the user has an account. When the application 110 collaborates with a certain resource server 101 using the user's account, the user authenticates the application 110 from the user's own account on the resource server 101 with which the application 110 wants to collaborate. That is, the user authorizes collaboration with the application 110 from the confirmation screens 400 and 410 shown in FIG. 4 . If, during collaboration, authority to use the resources of the collaborated resource server 101 is delegated to the application 110, the resource server 101 issues authorization information indicating the scope of the delegated authority, etc. The authorization information is managed in the application 110 by an authorization information management unit 502, which will be described later.

[0052] The authorization information management unit 502 manages authorization information by associating it with the user ID and the resource server that issued the authorization information. The data structure for managing authorization information will be described later.

[0053] If the operation instructed by the user is an operation instructing the start of processing to be performed in cooperation with the resource server 101, the authority determination unit 504 determines, based on the authorization information managed by the authorization information management unit 502, whether the authority required for the processing has been delegated by the user.

[0054] The resource server policy management unit 505 manages the policies of the resource server. The policies include the range of permissions that can be delegated to the application 110 in the resource server 101, the operation when adding permissions, and whether or not an API for adding permissions is provided. Since the policies defined for each resource server 101 are different, the resource server policy management unit 505 manages the policies for each resource server 101. The method for managing policies will be described later. The processing module of the application can refer to the policies and execute processing according to the policies.

[0055] The message management unit 506 manages messages to be presented to the user. The method for managing messages will be described later.

[0056] A message determination unit 507 determines a message based on the determination result of the authority determination unit 504 and the policy of the resource server 101 managed by the resource server policy management unit 505 from among the messages managed by the message management unit 506 .

[0057] The message presentation unit 508 generates a message screen 1100 (see FIG. 11) based on the message determined by the message determination unit 507, and controls the display of the message screen 1100 on the user terminal 102. The message screen 1100 will be described in detail later.

[0058] The cooperation setting screen presentation unit 509 generates a cooperation setting screen 600 (see FIG. 6) that allows the user to configure settings related to cooperation with the resource server 101, and controls the display of the cooperation setting screen 600 on the user terminal 102. The cooperation setting screen 600 will be described in detail later.

[0059] The cooperation setting reception unit 510 receives the contents of instructions given by the user via the cooperation setting screen 600. Details will be described later.

[0060] After the message presentation unit 508 presents the message, the processing decision unit 511 decides the processing required to add the authority based on the policy of the resource server 101 managed by the resource server policy management unit 505 .

[0061] The cooperation cancellation unit 512 cancels cooperation with the cooperated resource server 101. As a cancellation method, the cooperation with the cooperated resource server 101 is cancelled by deleting the authorization information of the cooperated resource server managed by the authorization information management unit 502.

[0062] When the processing determination unit 511 determines to add authority, the additional authorization unit 513 executes the additional authorization API of the resource server 101 to request the resource server 101 to delegate additional authority. As a result, the authorization information managed by the authorization information management unit 502 is updated.

[0063] The image management unit 514 manages images uploaded from a specific user's imaging device or the like in association with the user ID of the specific user. For example, the user's images are stored and managed in the HDD 209 or the external storage device 210.

[0064] The sorting unit 515 performs a sorting process to select images that match registered sorting conditions from among images of a specific user managed by the image management unit 514. The sorting unit 515 is included in the new version of the application 110.

[0065] The transfer unit 503 uses the authorization information managed by the authorization information management unit 502 to transfer images of a specific user managed by the image management unit 514 to the linked resource server 101. If the sorting and transfer function is enabled, the new version of the transfer unit 503 performs the sorting and transfer described above.

[0066] [About the link setting screen presented to users] 6 is a diagram showing an example of a collaboration setting screen 600 on which a user makes settings related to collaboration with the resource server 101. The collaboration setting screen presentation unit 509 transmits information for displaying the collaboration setting screen 600 of FIGS. 6(a) to 6(c) to the user terminal 102, and the collaboration setting screen 600 is displayed on the display unit of the user terminal 102.

[0067] The collaboration setting screens 600 in Figures 6(a) to 6(c) are all collaboration setting screens presented by the collaboration setting screen presentation unit 509 of the new version of the application 110. The collaboration setting screen 600 will be described using Figure 6(a). The resource server name display area 604 is an area where the name (resource server name) of the resource server (referred to as the target resource server) to be configured on the collaboration setting screen 600 is displayed. Figure 6 will be described assuming that the target resource server is resource server 101a. The resource server name is, for example, the name of an external service provided by the target resource server.

[0068] The cooperation status display area 601 is an area that displays the cooperation status between the application 110 and the target resource server 101a in the user's account. Either "Cooperated" or "Not Cooperated" is displayed as the cooperation status.

[0069] The buttons 602 and 612 are buttons that the user uses to instruct the application 110 whether to establish or terminate collaboration with the target resource server 101a in the user's account. Depending on the collaboration status displayed in the collaboration status display area 601, the labels displayed on the buttons 602 and 612 are switched to "Link" or "Cancel collaboration." Furthermore, the operation of the application 110 when the buttons 602 and 612 are pressed is switched depending on the labels displayed on the buttons 602 and 612. When the collaboration button 612 is labeled "Link," if pressed by the user, the collaboration unit 501 establishes collaboration with the target resource server 101a in the user's account. When the collaboration cancellation button 602 is labeled "Cancel collaboration," if pressed by the user, the collaboration cancellation unit 512 cancels collaboration with the target resource server 101a in the user's account.

[0070] The sorting and forwarding selection area 603 is an area for selecting whether to enable sorting and forwarding to the target resource server 101a for the user's account. Radio buttons corresponding to "Perform" or "Do not perform" are provided, and the user selects either "Perform" or "Do not perform" by pressing one of the radio buttons. When "Linked" is displayed in the collaboration status display area 601, the radio button becomes selectable. After collaboration with the target resource server 101a, the sorting and forwarding selection area 603 displays the collaboration setting screen 600 by default with the "Do not perform" radio button selected. The sorting and forwarding selection area 603 is a setting item that was newly added when the application 110 was updated to a new version and a sorting and forwarding function was added.

[0071] 6(b) is a diagram showing an example of the link setting screen 600 that is displayed when the application 110 has not yet linked with the target resource server 101a in the user's account. Therefore, the link status display area 601 displays "Not Linked," indicating that there is no link, and the label of the link button 612 is "Link." Furthermore, when "Not Linked" is displayed in the link status display area 601, the radio button is displayed in a grayed-out state, indicating that it cannot be selected, and cannot be pressed.

[0072] [Regarding Certification Information] 7 is a diagram showing an authorization information management table 700, which is an example of the data structure of information managed by the authorization information management unit 502. The authorization information management unit 502 will be described as managing authorization information and information related to the authorization information in a table format, as an example, but the format of the data structure for managing authorization information is not limited to the table format.

[0073] A column 701 of the authorization information management table 700 holds a user ID value that uniquely identifies a user.

[0074] Column 702 holds the resource server name described above as information for identifying the linked resource server that the user indicated by the user ID held in column 701 of the same row has authorized to link with application 110. The resource server name held in column 702 is the same as the resource server name managed in a data structure for managing policies, which will be described later.

[0075] Column 703 holds authorization information issued by the resource server 101, whose name is held in column 702 of the same row, when the user, whose user ID is held in column 701 of the same row, delegates authority to the application 110. The application 110 can obtain the contents of the authority contained in the authorization information by sending the authorization information to the resource server 101 and making an inquiry. Using the authority contained in this authorization information, the application 110 transfers images to the resource server 101 and creates an album.

[0076] 7, column 703 of row 711 holds authorization information issued by the already-linked "resource server A." Also, column 703 of row 712 of Fig. 7 holds authorization information issued by the already-linked "resource server C." Therefore, it can be seen that the user with user ID "1" in column 701 of Fig. 7 has permitted the application 110 to link with "resource server A" and "resource server C" and has delegated the user's authority to the application 110.

[0077] Column 704 holds a setting value (assortment transfer setting value) indicating whether to perform assortment transfer to the resource server 101 whose name is held in column 702 of the same row. The assortment transfer setting value is either ON, OFF, or a NULL value. A blank cell in column 704 indicates a NULL value.

[0078] Sorting and forwarding is a function added in the new version of application 110. Assume that application 110, while in the old version, collaborates with resource server A, and after application 110 is updated to the new version, sorting and forwarding settings have not yet been made for resource server A on the collaboration setting screen 600. In this case, a NULL value is held in column 704 of row 711, which holds information about resource server A.

[0079] The sorting transfer setting value ON indicates a state in which sorting transfer is enabled, whereas the sorting transfer setting value OFF indicates a state in which the authority to create albums has been delegated but sorting transfer is not enabled.

[0080] In this way, the name of the linked resource server 101 that the user has permitted to link with the application 110 and the user ID indicating the user who permitted the link are associated and managed in the authorization information management table 700. Furthermore, the authorization information issued by the linked resource server 101 is associated and managed with the resource server that issued the authorization information.

[0081] 7 may be changed in accordance with newly added functions when the application 110 is upgraded. For example, the authorization information management table 700 in the old version of the application does not have the column 704, but the authorization information management table 700 in the new version of the application has the column 704 added.

[0082] The relationship between the collaboration setting screen 600 in Fig. 6 and the authorization information management table 700 in Fig. 7 will be described. For example, assume that a user 1 with a user ID of "1" instructs the application 110 to display a collaboration setting screen for configuring the resource server A.

[0083] Assume that user 1 permitted collaboration with resource server A when application 110 was an older version. Therefore, authorization information is stored in column 703 of row 711 in Fig. 7. Therefore, as shown in Fig. 6(a), the collaboration status display area 601 on the collaboration setting screen 600 displays "Collaborated," and a collaboration cancellation button 602 labeled "Cancel collaboration" is displayed.

[0084] Furthermore, assume that after the application 110 is updated to the new version, user 1 has not yet configured the sorting transfer setting for resource server A on the collaboration setting screen 600. In this case, a NULL value is held as the sorting transfer setting value, as shown in column 704 of row 711 in FIG. 7. When the sorting transfer setting value is a NULL value, the radio button in the sorting transfer selection area 603 is displayed with "Do not perform" selected, as shown in FIG. 6(a). In other words, when the sorting transfer setting value held in column 704 is a NULL value, the collaboration setting screen 600 in FIG. 6(a) is displayed.

[0085] On the other hand, user 2, whose user ID is "2", has not permitted collaboration with resource server A under his / her account. In this case, the user's authority on resource server A has not been delegated to application 110. Also, in this case, as shown in FIG. 7, information on resource server A for user 2 is not registered in the authorization information management table 700. When user 2 instructs application 110 to display the collaboration setting screen 600 for resource server A, the collaboration setting screen 600 shown in FIG. 6(b) is displayed.

[0086] Assume that user 2 presses the link button 612 on the link setting screen 600 shown in FIG. 6(b) to link with resource server A using the new version of the application 110. In this case, a new row is added to the authorization information management table 700 in FIG. 7, with "2" stored in column 701, "resource server A" stored in column 702, authorization information stored in column 703, and "OFF" stored in column 704. In this way, when the new version of the application 110 links with the resource server, column 704 of the row storing the information about the resource server stores "OFF" as the initial value of the sorting and forwarding setting value. For example, in FIG. 7, for "resource server C" in row 712, the sorting and forwarding setting value is "OFF." Therefore, the link has been performed using the new version of the application 110.

[0087] When the sorting and forwarding setting value stored in column 704 of the authorization information management table 700 is set to OFF, the linkage setting screen 600 of FIG. 6(a) is displayed, just as when a NULL value is stored as the sorting and forwarding setting value. Therefore, when the sorting and forwarding setting value stored in column 704 is set to NULL or OFF, the same linkage setting screen 600 of FIG. 6(a) is displayed. However, when the "Execute" radio button in the sorting and forwarding selection area 603 in FIG. 6(a) is selected, the processing is different. By checking the sorting and forwarding setting value stored in column 704 of the authorization information management table 700 of FIG. 7, it is possible to determine whether the linkage was performed using the old version or the new version, and therefore the processing can be switched. Details will be described later.

[0088] [Policy for services provided by resource servers] 8 is a diagram showing a policy management table 800, which is an example of the data structure of information managed by the resource server policy management unit 505. As an example, the resource server policy management unit 505 will be described as managing resource server policies in a table format, but the policy management format is not limited to the table format.

[0089] A column 801 of the policy management table 800 holds the resource server names of all resource servers with which the application 110 of the image management device 100 can cooperate.

[0090] Column 802 holds the value of an album flag indicating whether the resource server 101 whose name is held in column 801 of the same row has an album function. A resource server 101 associated with an album flag value of "TRUE" has the album function. A resource server 101 associated with an album flag value of "FALSE" does not have the album function.

[0091] Column 803 holds the policy content when additional authority is delegated to the application 110 in the resource server 101 whose name is held in column 801 of the same row. Column 803 holds either "re-associate," "add," or a NULL value. "Re-associate" indicates that when additional authority is delegated to the application 110, the current association must be released and then re-associated. "Add" indicates that when additional authority is to be delegated to the application 110, it is permitted to add it to the current authority. If the value of the album flag in column 802 is "FALSE," column 803 of the same row holds a NULL value.

[0092] If "add" is stored in column 803 in the same row, column 804 stores information about the URL of an API for adding authority to the application 110. The information stored in column 804 is an API published by the resource server 101. By executing this API, the application 110 can re-acquire authorization information to which authority to create an album has been added. If "re-link" is stored in column 803 for the resource server 101, a NULL value is stored in column 804 in the same row.

[0093] Column 805 holds a message ID for uniquely identifying the message to be displayed when the user selects to add a sorting and forwarding function to the resource server 101 whose name is held in column 801 in the same row.

[0094] 9 is a diagram showing a message management table 900, which is an example of a data structure for managing messages corresponding to message IDs. A column 901 of the message management table 900 holds the message IDs described above.

[0095] A column 902 holds a message indicated by the message ID held in the same row in column 901. In column 902, a message that matches the policy of the resource server 101 is registered in advance.

[0096] The data held in the policy management table 800 and the message management table 900 is registered in advance by the system administrator of the image management device 100 in accordance with new functions added in a new version of the application 110. The system administrator edits the data held in the policy management table 800 and the message management table 900 as needed. For example, when adding a new resource server 101, deleting a registered resource server 101, or when there is a change in the policy of a resource server, the system administrator edits each table.

[0097] [flowchart] Fig. 10 is a flowchart for explaining the process of enabling sorting transfer. In the process according to the flowchart of Fig. 10, program code stored in ROM 203, HDD 209, or external storage device 210 is loaded into RAM 202 and executed by CPU 201. Alternatively, some or all of the functions of the steps in Fig. 10 may be realized by hardware such as an ASIC or electronic circuit. The symbol "S" in the description of each process indicates a step in the flowchart, and the same applies to subsequent flowcharts.

[0098] The flowchart in Fig. 10 starts when the linkage setting screen 600 in Fig. 6(a) is displayed on the user terminal 102. In the explanation of the flowchart in Fig. 10, unless otherwise specified, the target resource server will be described as resource server 101a whose resource server name is resource server A. Furthermore, the application 110 is a new version of the application 110.

[0099] When configuring settings related to collaboration with the target resource server 101a, the user selects the target resource server from a screen presented by the application 110 displayed on the user terminal 102. The application 110 extracts a row from the authorization information management table 700 in FIG. 7 that stores the user's user ID and the name of the target resource server 101a selected by the user, and obtains the sorting and forwarding setting value in column 704 of the extracted row. If the sorting and forwarding setting value is a NULL value or OFF, the collaboration setting screen 600 shown in FIG. 6(a) is displayed on the user terminal 102, with the "Do not execute" radio button selected by default in the sorting and forwarding selection area 603.

[0100] In S1001, the collaboration setting reception unit 510 determines whether the state in which the "Do not execute" radio button in the sorting and forwarding selection area 603 on the collaboration setting screen 600 in Fig. 6(a) is selected has been changed to the state in which the "Execute" radio button has been selected. If the collaboration setting reception unit 510 determines that the user has changed the state in which the "Execute" radio button has been selected, the process proceeds to S1002.

[0101] In S1002, the message determination unit 507 searches column 801 of the policy management table 800 in Fig. 8 for a row that holds the name of the target resource server 101a. The value of the album flag and the message ID are obtained from columns 802 and 805 of the row found as a result of the search and associated with the information of the target resource server 101a. In the case of resource server A, "TRUE" is obtained as the value of the album flag and "1" is obtained as the message ID.

[0102] In S1003, the message determination unit 507 determines whether the target resource server 101a has an album function based on the value of the album flag acquired in S1002. If the acquired value of the album flag is "TRUE," the message determination unit 507 determines that the resource server 101a has the album function (YES in S1003) and proceeds to S1004. If the album flag is FALSE, the message determination unit 507 determines that the resource server 101a does not have the album function (NO in S1003), and ends this flowchart. If the resource server 101a does not have the album function, as described above, the application 110 cannot perform sorting and forwarding to the target resource server. Therefore, the application 110 cannot accept the selection of the "Execute" radio button in the sorting and forwarding selection area 603. Therefore, the flowchart ends. Therefore, the message determination unit 507 may control the user terminal 102 to display a message indicating that sorting and forwarding cannot be enabled for the target resource server.

[0103] In S1004, the authority determination unit 504 extracts a row from the authorization information management table 700 in FIG. 7 that holds the user ID of the user and the name of the target resource server 101a, and obtains the authorization information held in column 703 in the extracted row.

[0104] The authority determination unit 504 transmits the obtained authorization information to the target resource server 101a and inquires about the scope of authority delegated to the application 110. Based on the inquiry result, the authority determination unit 504 determines whether the scope of authority granted to the application 110 includes the authority to generate an album.

[0105] As described above, if the sorting and transfer setting value is a NULL value, the application 110 of the old version has already linked with the target resource server 101a, and therefore only the authority to save images has been delegated to the application 110. In other words, the application 110 has not been granted the authority to create an album. Therefore, in principle, if the sorting and transfer setting value is a NULL value, it is determined that the authority to create an album is not included. If the authority determination unit 504 determines that the application 110 has not been granted the authority to create an album (NO in S1004), the process proceeds to S1005.

[0106] On the other hand, if NO is held as the sorting and transfer setting value, it means that the new version of the application 110 has already linked with the target resource server 101a, but sorting and transfer has not been enabled. Normally, when the new version of the application 110 links, the authority to generate an album in the target resource server 101a is delegated to the application 110. Therefore, in principle, if NO is held as the sorting and transfer setting value, it is determined that the application 110 has the authority to generate an album. If the authority determination unit 504 determines that the application 110 has been granted the authority to generate an album (YES in S1004), the process proceeds to S1007. S1007 will be described later.

[0107] In S1005, the message determination unit 507 acquires the message corresponding to the message ID acquired in S1002 from the message management table 900 in FIG.

[0108] In S1006, the message presentation unit 508 generates information for displaying a message screen 1100 (see FIG. 11) that includes the message acquired in S1005, and transmits the generated information to the user terminal 102. The message screen 1100 is displayed on the user terminal 102. The flowchart in FIG. 10 then ends. The collaboration setting screen 600 is also closed.

[0109] 11A and 11B are diagrams showing an example of a message screen displayed on the user terminal 102 as a result of S1006. Fig. 11A shows an example of a message screen 1100 when the policy for adding authority to the target resource server 101a is "re-linkage." Fig. 11B shows an example of a message screen 1100 displayed when the policy for adding authority stored in column 803 of the target resource server is "addition."

[0110] The system administrator of the image management device 100 prepares a message template for when the policy for adding permissions is "re-linkage" and a message template for when the policy for adding permissions is "addition." Message management table 900 in FIG. 9 holds messages generated from templates corresponding to the policy for adding permissions for each resource server 101. Therefore, in S1006, a message according to the policy for adding permissions for the target resource server is displayed. In this way, by displaying a message according to the policy for the target resource server, it is possible to prompt the user to take the necessary action.

[0111] FIG. 12 is a flowchart showing an example of processing after the message screen 1100 is displayed on the user terminal 102.

[0112] In this embodiment, the message screen 1100 includes an OK button 1101, and when the OK button 1101 is pressed, the flowchart in Fig. 12 starts. When an operation to close the message screen 1100 is performed, the flowchart in Fig. 12 may also start.

[0113] The OK button 1101 does not have to be included in the message screen 1100. In this case, for example, when the message screen 1100 is displayed, the flowchart of Fig. 12 may be started.

[0114] 11(c), the message screen 1100 may include a cancel button 1102. When the cancel button 1102 is pressed, the results of the processing in the flowchart of FIG. 10 may be canceled, and the "Do not execute" radio button in the sorting and forwarding selection area 603 on the collaboration setting screen 600 may be returned to the selected state.

[0115] In S1201, the processing determination unit 511 searches column 801 of the policy management table 800 in Fig. 8 for a row that holds the name of the target resource server. The processing determination unit 511 obtains the policy for adding authority from column 803 of the row found as a result of the search and associated with the information of the target resource server. If "add" is held in column 803, the processing unit 511 also obtains "addition authorization API" from column 804. If the target resource server is resource server A, which is the resource server 101a, the processing unit 511 obtains "re-linkage".

[0116] In S1202, the process determining unit 511 switches the process depending on the content of the policy at the time of adding authority acquired in S1201. If the value of the policy at the time of adding authority is "add", the process proceeds to S1203.

[0117] In S1203, the additional authorization unit 513 performs processing to additionally authorize album generation authority from the target resource server. First, the additional authorization unit 513 executes the API for additional authorization of the target resource server acquired in S1201. As a result of executing the API, the additional authorization unit 513 acquires authorization information from the target resource server. The additional authorization unit 513 updates the authorization information held in the row in the authorization information management table 700 in FIG. 7 that holds the user ID of the corresponding user and the name of the target resource server. The additional authorization unit 513 also changes the sorting transfer setting value in the same row to ON. Then, the flowchart in FIG. 12 ends.

[0118] For example, suppose the user ID of the user is 3 and the name of the target resource server is resource server B. In this case, the authorization information held in column 703 of row 715 in authorization information management table 700 in Fig. 7 is updated to authorization information including authority to generate an album. Also, the sorting and transfer setting value held in column 704 of row 715 is changed to ON.

[0119] If the value of the policy at the time of adding the authority is "re-association," the processing determining unit 511 advances the processing to S1204. The description will be given assuming that the target resource server is the resource server 101a.

[0120] In S1204, the cooperation cancellation unit 512 cancels cooperation with the target resource server 101a. For example, the cooperation cancellation unit 512 deletes a row in the authorization information management table 700 of FIG. 7 that stores the user ID of the corresponding user and the name of the target resource server.

[0121] For example, if the user ID of the user is 1 and the name of the target resource server is resource server A, row 711 is deleted from the authorization information management table 700 in FIG.

[0122] The reason for canceling the link is that in a resource server whose policy for adding permissions is re-linking, the permissions delegated to the application 110 can only be changed when linked with the resource server. Therefore, in order to enable sorting and forwarding in the target resource server 101a, and to delegate the album generation permissions to the application 110, it is necessary to cancel the link with the target resource server 101a once.

[0123] In S1205, the cooperation setting screen presentation unit 509 displays the cooperation setting screen 600 of FIG. 6B on the user terminal 102 to prompt re-cooperation with the target resource server 101a.

[0124] When the user presses the link button 612 on the link setting screen 600 of Fig. 6(b) on the user terminal 102, a link request is sent from the new version of the application 110 to the target resource server 101a. Upon receiving the request, the target resource server 101a displays the confirmation screen 410 of Fig. 4(b) on the user terminal 102. As described above, when linking with the new version of the application 110, the authority to create an album is included in the authority to be delegated.

[0125] In S1206, when the Allow button 401 is pressed on the confirmation screen 410 in FIG. 4(b), the authorization information management unit 502 updates the authorization information management table 700 in FIG. 7 because the target resource server 101a becomes a linked resource server again. Specifically, the authorization information management unit 502 adds a row to the authorization information management table 700 in FIG. 7, in which the user ID of the corresponding user and resource server A, which is the name of the target resource server 101a, are held. Column 703 of the added row holds authorization information including authority to generate an album. Furthermore, column 704 of the added row holds OFF as the initial value of the sorting and transfer setting value.

[0126] In S1207, the collaboration setting screen presentation unit 509 causes the collaboration setting screen 600 in Fig. 6(a) for setting the target resource server 101a to be displayed again on the user terminal 102. Then, the flowchart in Fig. 12 ends, and the flowchart in Fig. 10 starts again.

[0127] In the flowchart of FIG. 10, it is determined in step S1004 that the user has the authority to create an album (YES in step S1004), and the process proceeds to step S1007.

[0128] In S1007, the authorization information management unit 502 changes the sorting transfer setting value stored in the column 704 of the row storing the user ID of the corresponding user and the name of the target resource server 101a in the authorization information management table 700 in Fig. 7 to ON. On the collaboration setting screen 600, the "Execute" radio button is selected as shown in Fig. 6(c).

[0129] As described above, in this embodiment, when adding permissions, control is performed so that a message according to the policy of the target resource server is displayed to the user in step S1006. For example, if the policy for adding permissions to the target resource server 101a is "re-integration," the integration with the target resource server 101a is temporarily terminated. The user must then instruct the application 110 to integrate with the target resource server 101a via the integration setting screen 600 of FIG. 6(b). If the integration with the target resource server 101a is terminated without the message screen 1100 of FIG. 11 being displayed, the user may not understand why the integration with the target resource server 101a was terminated. This may result in the user not appropriately performing the next operation. For example, if the message screen 1100 of FIG. 11(a) is not displayed, the user may close the screen without pressing the integration button 612 on the integration setting screen 600 of FIG. 6(b) after the integration with the target resource server 101a is terminated.

[0130] In this embodiment, a message screen 1100 such as that shown in FIG. 11A is displayed. Therefore, after the link with the target resource server 101a is terminated, the user can press the link button 612 on the link setting screen 600 in FIG. 6B to notify the user that re-linking is necessary. Therefore, after the link with the target resource server 101a is terminated, re-linking with the target resource server 101a is performed smoothly. Therefore, the sorting and forwarding function of the application 110 can be appropriately enabled even for a resource server 101a whose policy at the time of adding permissions is "re-linking." Therefore, when a user uploads images to the image management device 100, sorting is automatically performed, and the corresponding images can be transferred to an album on the resource server 101a.

[0131] 10 will not be displayed unless the user selects the "Execute" radio button in the sorting and transfer selection area 603 on the collaboration setting screen 600 in Fig. 6(a). Even before selecting the "Execute" radio button for the target resource server 101a, the user can continue to use the normal transfer that transfers all images.

[0132] Furthermore, if the target resource server does not have an album function, control is exercised so that the message screen 1100 in Fig. 11 is not displayed on the user terminal 102 and the processing in the flowchart in Fig. 12 is not performed. In sorting transfer to a resource server that does not have an album function, the application 110 performs normal transfer with the delegated authority.

[0133] As described above, according to this embodiment, a message according to the policy of the resource server 101 can be displayed to a user who is linked with an older version of the application 110, urging the user to delegate authority to the application 110.

[0134] <Other embodiments> The present disclosure can also be realized by providing a program that realizes one or more functions of the above-described embodiments to a system or device via a network or a storage medium, and having one or more processors in the computer of the system or device read and execute the program. It can also be realized by a circuit (e.g., ASIC) that realizes one or more functions. The program may also be provided by recording it on a computer-readable storage medium.

[0135] The techniques disclosed in the above-described embodiments include the following configurations.

[0136] (Configuration 1) An image management device that operates by an application that is authorized to use a linked resource server, an acquisition means for acquiring information indicating the scope of the authority granted to the application before the application is upgraded; a notification means for notifying a user when the authority to use the linked resource server, which is necessary for the user to use a function added as a result of the version upgrade of the application, is not included in the scope; and An image management device comprising:

[0137] (Configuration 2) a sorting means for sorting images that meet a sorting condition from among images of a specific user; a transfer means for transferring the image of the specific user to the linked resource server, the added function is a function in which the transfer unit transfers images that match the sorting conditions to a corresponding album in the linked resource server; The authority required to use the added function is the authority to generate the album in the linked resource server. 2. The image management device according to configuration 1.

[0138] (Configuration 3) The album is a function for managing image files as a group. 3. The image management device according to configuration 2.

[0139] (Configuration 4) The application program further includes an authorization information management unit that manages authorization information issued by the resource server in association with a value indicating the resource server when the application program is granted the authorization to use the resource server, The acquisition unit acquires the authorization information associated with the linked resource server, and transmits the acquired authorization information to the linked resource server, thereby acquiring information representing the range. 4. The image management device according to any one of configurations 1 to 3.

[0140] (Configuration 5) The notification means If the authorization information associated with the linked resource server is authorization information that was issued when the application was linked with the linked resource server before the application was upgraded, the predetermined notification is sent to the user. 5. The image management device according to configuration 4.

[0141] (Configuration 6) The resource server further includes a policy management unit for managing a policy when granting additional privileges to the application. 6. The image management device according to any one of configurations 1 to 5.

[0142] (Configuration 7) The policy includes a re-association in which additional authority is granted to the application by canceling the association and then re-establishing association, and an additional authorization in which additional authority is granted to the application without canceling the association. 7. The image management device according to configuration 6.

[0143] (Configuration 8) The notification means If the policy of the resource server that has already been linked is the re-linking, a message including a message indicating that the link with the resource server that has already been linked will be released is notified. 8. The image management device according to configuration 7.

[0144] (Configuration 9) a canceling means for canceling the cooperation with the resource server after the message is notified; and a linking means for re-linking with the resource server from which the link has been released so that the authority required to use the added function is granted after the link with the resource server has been released. 9. The image management device according to configuration 8.

[0145] (Configuration 10) The method further includes an additional authorization means for requesting the linked resource server to add authority required to use the added function when the policy of the linked resource server is the additional authorization. 9. The image management device according to configuration 7 or 8.

[0146] (Configuration 11) The notification means performs the predetermined notification by displaying a message on the user's terminal. 11. The image management device according to any one of configurations 1 to 10.

[0147] (Configuration 12) The method further includes a message management unit for managing messages generated in accordance with the policy of the resource server, The notification means obtains a message associated with the linked resource server from among the messages managed by the message management means, and displays the obtained message on the user's terminal, thereby performing the predetermined notification. 7. The image management device according to configuration 6.

[0148] (Configuration 13) a screen presenting means for presenting a setting screen for linking with the resource server to a user; and a receiving unit for receiving the content of the operation performed by the user on the setting screen. The notification means issues the predetermined notification when the user instructs to enable the added function via the setting screen. 13. The image management device according to any one of configurations 1 to 12.

[0149] (Configuration 14) The transfer means If the resource server does not have a function for creating an album, or if the user does not make a setting to enable the added function, the images of the specific user are transferred to a predetermined location on the linked resource server. 3. The image management device according to configuration 2.

[0150] (Configuration 15) A method for controlling an image management device that is operated by an application that is authorized to use a linked resource server, comprising: an acquisition step of acquiring information indicating the scope of the authority granted to the application before the application is upgraded; a notification step of notifying the user when the authority to use the linked resource server, which is necessary for the user to use a function added as a result of the version upgrade of the application, is not included in the scope; A control method comprising:

[0151] (Configuration 16) 15. A program for causing a computer to execute each of the means of the image management device according to any one of configurations 1 to 14. [Explanation of symbols]

[0152] 502 Authorization Information Management Department 508 Message presentation section

Claims

1. An image management device that operates by an application that is authorized to use a linked resource server, an acquisition means for acquiring information indicating the scope of the authority granted to the application before the application is upgraded; a notification means for notifying a user when the authority to use the linked resource server, which is necessary for the user to use a function added as a result of the version upgrade of the application, is not included in the scope; and An image management device comprising:

2. a sorting means for sorting images that meet a sorting condition from among images of a specific user; a transfer means for transferring the image of the specific user to the linked resource server, the added function is a function in which the transfer unit transfers images that match the sorting conditions to a corresponding album in the linked resource server; The authority required to use the added function is the authority to generate the album in the linked resource server.

2. The image management device according to claim 1.

3. The album is a function for managing image files as a group.

3. The image management device according to claim 2.

4. The system further includes an authorization information management unit that, when the application is granted the authority to use a resource server, manages authorization information issued by the resource server in association with a value indicating the resource server, The acquisition unit acquires the authorization information associated with the linked resource server, and transmits the acquired authorization information to the linked resource server, thereby acquiring information representing the range.

2. The image management device according to claim 1.

5. The notification means If the authorization information associated with the linked resource server is authorization information that was issued when the application was linked with the linked resource server before the application was upgraded, the predetermined notification is sent to the user.

5. The image management device according to claim 4.

6. The resource server further includes a policy management unit for managing a policy when granting additional privileges to the application.

2. The image management device according to claim 1.

7. The policy includes a re-association in which additional authority is granted to the application by canceling the association and then re-establishing association, and an additional authorization in which additional authority is granted to the application without canceling the association.

7. The image management device according to claim 6.

8. The notification means If the policy of the resource server that has already been linked is the re-linking, a message including a message indicating that the link with the resource server that has already been linked will be released is notified.

8. The image management device according to claim 7.

9. a canceling means for canceling the cooperation with the resource server after the message is notified; and a linking means for re-linking with the resource server from which the link has been released so that the authority required to use the added function is granted after the link with the resource server has been released.

9. The image management device according to claim 8.

10. The method further includes an additional authorization means for requesting the linked resource server to add authority required to use the added function when the policy of the linked resource server is the additional authorization.

8. The image management device according to claim 7.

11. The notification means performs the predetermined notification by displaying a message on the user's terminal.

2. The image management device according to claim 1.

12. The method further includes a message management unit for managing messages generated in accordance with the policy of the resource server, The notification means obtains a message associated with the linked resource server from among the messages managed by the message management means, and displays the obtained message on the user's terminal, thereby performing the predetermined notification.

7. The image management device according to claim 6.

13. a screen presenting means for presenting a setting screen for linking with the resource server to a user; and a receiving unit for receiving the content of the operation performed by the user on the setting screen. The notification means issues the predetermined notification when the user instructs to enable the added function via the setting screen.

2. The image management device according to claim 1.

14. The transfer means If the resource server does not have a function for creating an album, or if the user does not make a setting to enable the added function, the images of the specific user are transferred to a predetermined location on the linked resource server.

3. The image management device according to claim 2.

15. A method for controlling an image management device that is operated by an application that is authorized to use a linked resource server, comprising: an acquisition step of acquiring information indicating the scope of the authority granted to the application before the application is upgraded; a notification step of notifying the user when the authority to use the linked resource server, which is necessary for the user to use a function added as a result of the version upgrade of the application, is not included in the scope; A control method comprising:

16. A program for causing a computer to execute each of the means of the image management apparatus according to any one of claims 1 to 14.

Citation Information

Patent Citations

  • Application permission dynamic control method, device and equipment and storage medium

    CN112214752A

  • Image generation apparatus and control method of the same

    JP2016167714A

  • Information processing device, information processing system, and program

    JP2018136909A

  • Application program and information processing device

    JP2019161445A

  • Communication system, control method, and program

    JP2021013051A