Authentication system, control device, and computer program

The authentication system improves convenience by authenticating mobile devices based on authority information distribution and user hierarchy, preventing unauthorized access and reducing manual intervention in shared systems.

JP7698524B2Active Publication Date: 2025-06-25KK TOKAI RIKA DENKI SEISAKUSHO
View PDF 5 Cites 0 Cited by

Patent Information

Application Number
JP2021142407
Authority / Receiving Office
JP · JP
Patent Type
Patents
Current Assignee / Owner
Filing Date
2021-09-01
Publication Date
2025-06-25
Estimated Expiration
2041-09-01

AI Technical Summary

Technical Problem

Existing authentication systems using mobile devices for vehicle access are inconvenient, particularly when multiple users share the system and require manual intervention for granting authority information.

Method used

An authentication system that uses a control device to authenticate mobile devices via wireless communication, determining authority information distribution and storage based on received data, allowing or denying access to vehicle functions based on user hierarchy and authority levels.

Benefits of technology

Enhances convenience by eliminating the need for users to visit facilities to grant authority, preventing unauthorized access, and reflecting user hierarchies, especially in shared systems.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure 0007698524000001
    Figure 0007698524000001
  • Figure 0007698524000002
    Figure 0007698524000002
  • Figure 0007698524000003
    Figure 0007698524000003
Patent Text Reader

Abstract

To increase the convenience of an authentication system using a mobile device.SOLUTION: A communication device 11 performs a radio communication with a mobile device that can be carried by a user. A control unit 12 controls the operation of a locking / unlocking device 21 based on a series of authentication processing to authenticate the mobile device. A storage unit 13 stores authentication information used for the authentication processing. The control unit 12 is configured to acquire a piece of authority information representing the authority of the mobile device to the locking / unlocking device 21 delivered to the mobile device via the communication device 11 to determine whether the authentication information can be stored in the storage unit 13 based on the authority information.SELECTED DRAWING: Figure 1
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to an authentication system using a mobile device that can be carried by a user. The present invention also relates to a control device that can form part of the authentication system and a computer program executable by a processing unit mounted on the control device.

Background Art

[0002] Patent Document 1 discloses an authentication system mounted on a vehicle as an example of a moving body. In the system, authentication is performed through radio communication between a control device that controls the operation of a door locking / unlocking device of the vehicle and a mobile device carried by a user. When authentication is successful with the user touching a touch sensor provided on the door handle, the control device is permitted to control the operation of the locking / unlocking device.

Prior Art Documents

Patent Documents

[0003]

Patent Document 1

Summary of the Invention

Problems to be Solved by the Invention

[0004] An object of the present invention is to improve the convenience of an authentication system using a mobile device.

Means for Solving the Problems

[0005] One aspect for achieving the above object is an authentication system, comprising: a communication device that performs wireless communication with a mobile device that can be carried by a user; a control device that controls the operation of a controlled device based on an authentication process for authenticating the mobile device; a storage device that stores authentication information used in the authentication process; and The control device acquires, through the communication device, authority information indicating the authority of the mobile device over the controlled device distributed to the mobile device, and determines whether the authentication information can be stored in the storage device based on the authority information.

[0006] One aspect for achieving the above object is a control device that controls the operation of a controlled device based on an authentication process for authenticating a mobile device that can be carried by a user, a reception unit that receives, through a communication device capable of wireless communication with the mobile device, authority information indicating the authority of the mobile device over the controlled device distributed to the mobile device, a processing unit that determines whether the authentication information used in the authentication process can be stored in a storage device based on the authority information, and includes.

[0007] One aspect for achieving the above object is a computer program executable by a processing unit mounted on a control device that controls the operation of a controlled device based on an authentication process for authenticating a mobile device that can be carried by a user, when executed, the control device receives, through a communication device capable of wireless communication with the mobile device, authority information indicating the authority of the mobile device over the controlled device distributed to the mobile device, and determines whether the authentication information used in the authentication process can be stored in a storage device based on the authority information.

[0008] According to the configuration according to each of the above aspects, the operation control of the controlled device by the control device is performed through the mobile device authenticated using the authentication information stored in the storage device. Whether the authentication information can be stored in the storage device is determined based on the authority information distributed by the control device to the mobile device. Thereby, while the use of the controlled device by a mobile device not granted appropriate authority can be prohibited, the need for the user to visit a facility that possesses a dedicated tool to grant the authority information to the mobile device can be eliminated. This effect becomes more prominent as the number of mobile devices sharing the authentication system increases. Therefore, the convenience of the authentication system using mobile devices can be enhanced.

Brief Description of the Drawings

[0009]

Figure 1

Figure 2

Figure 3

Embodiments for Carrying Out the Invention

[0010] While referring to the accompanying drawings, examples of the embodiments will be described in detail below. In each figure, the scale is appropriately changed in order to make each illustrated element recognizable in size.

[0011] FIG. 1 illustrates the configuration of an authentication system 10 according to one embodiment. The authentication system 10 can be used to permit the use of a vehicle 20 by a user carrying the mobile device by authenticating the mobile device that can be carried by the user. The shape of the vehicle 20 is merely illustrative. The vehicle 20 is an example of a moving body.

[0012] The authentication system 10 includes a communication device 11. In this example, the communication device 11 is mounted at an appropriate position in the vehicle 20. The communication device 11 is provided with an antenna capable of performing short-range wireless communication with a mobile device.

[0013] As used herein, the term "short-range wireless communication" means contactless communication performed using radio waves while conforming to the standard specifications of IEEE802.15 or IEEE802.11. Examples of technologies capable of performing short-range wireless communication include Bluetooth (registered trademark), Bluetooth Low Energy (registered trademark), Ultra Wide Band (UWB), ZigBee (registered trademark), Wi-Fi (registered trademark), etc. "Short-range wireless communication" in this specification is distinguished from "proximity wireless communication", which is contactless communication that transmits information through electromagnetic induction coupling. Examples of technologies capable of performing proximity wireless communication include NFC (Near Field Communication) and RF-ID.

[0014] As used herein, the expression "transmit a signal by radio waves" means wirelessly transmitting a signal using radio waves of a frequency or frequency band defined in the above short-range wireless communication standard.

[0015] The authentication system 10 includes a control device 12. In this example, the control device 12 is mounted in the vehicle 20.

[0016] The control device 12 is configured to control the operation of the locking and unlocking device 21 mounted on the vehicle 20 based on an authentication process for authenticating a mobile device. The locking and unlocking device 21 is a device that locks and unlocks a door 22 that opens and closes the vehicle compartment. The locking and unlocking device 21 is an example of a controlled device.

[0017] The authentication system 10 is configured to be shared by a first mobile device 41 carried by a first user 31 and a second mobile device 42 carried by a second user 32. That is, each of the first mobile device 41 and the second mobile device 42 is provided with an antenna capable of performing short-range wireless communication.

[0018] The first mobile device 41 is configured to be able to obtain first authentication information TE1 and first authority information TO1 distributed from an external server device 60 via a wireless communication network 50. The second mobile device 42 is configured to be able to obtain second authentication information TE2 and second authority information TO2 distributed from the external server device 60 via the wireless communication network 50.

[0019] The first authentication information TE1 is information that identifies at least one of the first user 31 and the first mobile device 41. The second authentication information TE2 is information that identifies at least one of the second user 32 and the second mobile device 42.

[0020] The first authority information TO1 is information indicating the authority of the first mobile device 41 with respect to the unlocking / locking device 21. The second authority information TO2 is information indicating the authority of the second mobile device 42 with respect to the unlocking / locking device 21.

[0021] As used herein, the expression "the authority of the mobile device with respect to the unlocking / locking device" means the degree of freedom of instructions permitted to the mobile device regarding the operation control and setting change of the unlocking / locking device 21 mounted on the vehicle 20, and the length of the available period.

[0022] As illustrated in FIG. 2, the first mobile device 41 is configured to transmit a first response signal RS1 when the received radio wave intensity of the trigger signal TR transmitted from the communication device 11 exceeds a threshold value. Similarly, the second mobile device 42 is configured to transmit a second response signal RS2 when the received radio wave intensity of the trigger signal TR transmitted from the communication device 11 exceeds a threshold value. Each of the first response signal RS1 and the second response signal RS2 may be an analog signal or a digital signal.

[0023] The control device 12 includes a reception unit 121. The reception unit 121 is configured as an interface capable of receiving the first response signal RS1 and the second response signal RS2 through the communication device 11. When each of the first response signal RS1 and the second response signal RS2 is an analog signal, the reception unit 121 includes an appropriate conversion circuit including an A / D converter.

[0024] The control device 12 includes a processing unit 122 and an output unit 123. When the first response signal RS1 is received by the reception unit 121 as a response to the trigger signal TR, the processing unit 122 determines that a communication link has been established between the communication device 11 and the first mobile device 41, and is configured to output a request signal RQ from the output unit 123. Similarly, when the second response signal RS2 is received by the reception unit 121 as a response to the trigger signal TR, the processing unit 122 determines that a communication link has been established between the communication device 11 and the second mobile device 42, and is configured to output a request signal RQ from the output unit 123. The request signal RQ is a signal that requests information necessary for registration of the mobile device. The request signal RQ may be an analog signal or a digital signal.

[0025] Therefore, the output unit 123 is configured as an interface for outputting the request signal RQ to the communication device 11. When the request signal RQ is an analog signal, the output unit 123 includes an appropriate conversion circuit including a D / A converter.

[0026] The first mobile device 41 is configured to transmit the first authentication information TE1 and the first authority information TO1 by radio waves as a response to the request signal RQ. Similarly, the second mobile device 42 is configured to transmit the second authentication information TE2 and the second authority information TO2 by radio waves as a response to the request signal RQ. Each of the first authentication information TE1, the first authority information TO1, the second authentication information TE2, and the second authority information TO2 may be in the form of analog data or digital data.

[0027] Therefore, the reception unit 121 of the control device 12 is configured as an interface capable of receiving the first authentication information TE1, the first authority information TO1, the second authentication information TE2, and the second authority information TO2 through the communication device 11. When each of the first authentication information TE1, the first authority information TO1, the second authentication information TE2, and the second authority information TO2 is in the form of analog data, the reception unit 121 includes an appropriate conversion circuit including an A / D converter.

[0028] The processing unit 122 is configured to determine whether the first authority information TO1 received by the reception unit 121 is appropriate. For example, when the first authority information TO1 includes information indicating the available period, it is determined whether the current time is within the available period. When the processing unit 122 determines that the first authority information TO1 is not appropriate, it is configured to prohibit the use of the locking / unlocking device 21 by the first mobile device 41. The same applies when the first authority information TO1 cannot be obtained.

[0029] The authentication system 10 includes a storage device 13. As illustrated in FIG. 1, the storage device 13 is mounted on the vehicle 20. The storage device 13 is configured to store the authentication information used for authenticating the mobile device together with the authority information associated with the authentication information. The storage device 13 can be realized by a semiconductor memory or a hard disk device.

[0030] When the processing unit 122 of the control device 12 determines that the first authority information TO1 received by the reception unit 121 is appropriate, it is configured to determine whether the first authority information TO1 and the first authentication information TE1 associated with each other are stored in the storage device 13.

[0031] When it is determined that the first authority information TO1 and the first authentication information TE1 are not stored in the storage device 13, the processing unit 122 is configured to store the first authority information TO1 and the first authentication information TE1 received by the reception unit 121 in the storage device 13. Thereby, the first mobile device 41 is registered as a mobile device capable of controlling the operation of the locking / unlocking device 21.

[0032] When the first authority information TO1 and the first authentication information TE1 are stored in the storage device 13, it means that the first mobile device 41 has been registered as a mobile device that allows the operation control of the locking / unlocking device 21. The processing unit 122 authenticates the first mobile device 41 using the first authentication information TE1 received by the reception unit 121.

[0033] Similarly, the processing unit 122 of the control device 12 is configured to determine whether the second authority information TO2 received by the reception unit 121 is appropriate. For example, when the second authority information TO2 includes information indicating the available period, it is determined whether the current time is within the available period. When the processing unit 122 determines that the second authority information TO2 is not appropriate, it is configured to prohibit the use of the locking / unlocking device 21 by the second mobile device 42. The same applies when the second authority information TO2 cannot be obtained.

[0034] When the processing unit 122 of the control device 12 determines that the second authority information TO2 received by the reception unit 121 is appropriate, it is configured to determine whether the second authority information TO2 and the second authentication information TE2 associated with each other are stored in the storage device 13.

[0035] When it is determined that the second authority information TO2 and the second authentication information TE2 are not stored in the storage device 13, the processing unit 122 is configured to store the second authority information TO2 and the second authentication information TE2 received by the reception unit 121 in the storage device 13. Thereby, the second mobile device 42 is registered as a mobile device capable of controlling the operation of the locking / unlocking device 21.

[0036] When the second authority information TO2 and the second authentication information TE2 are stored in the storage device 13, it means that the second mobile device 42 has been registered as a mobile device that permits the operation control of the locking / unlocking device 21. The processing unit 122 authenticates the second mobile device 42 using the second authentication information TE2 received by the reception unit 121.

[0037] When the authentication process is successful, the processing unit 122 is configured to output a notification signal NT from the output unit 123. The notification signal NT is a signal that notifies the mobile device that transmitted the authentication information that the authentication process has been successful. The notification signal NT may be an analog signal or a digital signal.

[0038] Therefore, the output unit 123 is configured as an interface for outputting the notification signal NT to the communication device 11. When the notification signal NT is an analog signal, the output unit 123 includes an appropriate conversion circuit including a D / A converter.

[0039] When the first mobile device 41 receives the notification signal NT, it is set to a state where it can transmit an unlocking signal LK for instructing the unlocking operation to the unlocking device 21. When the first user 31 performs a predetermined operation on the first mobile device 41, the unlocking signal LK is transmitted to the communication device 11 by radio waves. The unlocking signal LK may be an analog signal or a digital signal.

[0040] Similarly, when the second mobile device 42 receives the notification signal NT, it is set to a state where it can transmit an unlocking signal LK that instructs the unlocking device 21 to perform an unlocking operation. When the second user 32 performs a predetermined operation on the second mobile device 42, the unlocking signal LK is transmitted to the communication device 11 by radio waves. The unlocking signal LK may be an analog signal or a digital signal.

[0041] Therefore, the reception unit 121 of the control device 12 is configured as an interface capable of receiving the unlocking signal LK through the communication device 11. When the unlocking signal LK is an analog signal, the reception unit 121 includes an appropriate conversion circuit including an A / D converter.

[0042] When the unlocking signal LK is received by the reception unit 121, the processing unit 122 is configured to output a control signal CT from the output unit 123. The control signal CT is a signal for causing the unlocking device 21 to perform an unlocking operation. The control signal CT may be an analog signal or a digital signal. When the control signal CT is an analog signal, the output unit 123 includes an appropriate conversion circuit including a D / A converter.

[0043] The unlocking device 21 is configured to execute locking or unlocking of the door 22 based on the control signal CT.

[0044] FIG. 3 illustrates the flow of the registration process of the mobile device executed by the processing unit 122 of the control device 12 configured as described above. A case where the first user 31 shown in FIG. 1 registers the first mobile device 41 will be described as an example.

[0045] First, the processing unit 122 causes the communication device 11 to transmit a trigger signal TR by radio waves (STEP1).

[0046] Subsequently, the processing unit 122 determines whether a response signal has been received from any of the mobile devices in response to the trigger signal TR (STEP2). Specifically, it determines whether the reception unit 121 has received a response signal through the communication device 11. This process is repeated until it is determined that the reception unit 121 has received a response signal (NO in STEP2).

[0047] When it is determined that the reception unit 121 has received a response signal (YES in STEP2), the processing unit 122 transmits a request signal RQ by radio wave through the communication device 11 (STEP3). In this example, since the first response signal RS1 is transmitted from the first mobile device 41, the request signal RQ is transmitted to the first mobile device 41.

[0048] Subsequently, the processing unit 122 acquires authentication information and authority information transmitted from the mobile device as a response to the request signal RQ (STEP4). In this example, the first authentication information TE1 and the first authority information TO1 transmitted from the first mobile device 41 are acquired.

[0049] Subsequently, the processing unit 122 determines whether the first authority information TO1 acquired in STEP4 is appropriate (STEP5). If it is determined that the first authority information TO1 is not appropriate (NO in STEP5), the operation control of the locking / unlocking device 21 by the first mobile device 41 is not permitted and the process ends. The processing unit 122 may notify the first mobile device 41 that an appropriate authority has not been granted.

[0050] If it is determined that the first authority information TO1 is appropriate (YES in STEP5), the processing unit 122 determines whether the first authority information TO1 and the first authentication information TE1 that are associated with each other are stored in the storage device 13 (STEP6).

[0051] When it is determined that the first authority information TO1 and the first authentication information TE1 are not stored in the storage device 13 (NO in STEP6), the processing unit 122 stores the first authority information TO1 and the first authentication information TE1 in the storage device 13 (STEP7). Thereby, the first mobile device 41 is registered as a mobile device capable of controlling the operation of the locking / unlocking device 21.

[0052] When it is determined that the first authority information TO1 and the first authentication information TE1 are stored in the storage device 13 (YES in STEP6), the processing unit 122 ends the registration process and proceeds to the authentication process of the registered mobile device.

[0053] According to the above configuration, the operation control of the locking / unlocking device 21 by the control device 12 is performed through the mobile device authenticated using the authentication information stored in the storage device 13. Whether the authentication information can be stored in the storage device 13 is determined based on the authority information distributed by the control device 12 to the mobile device. Thereby, while the use of the locking / unlocking device 21 by a mobile device without appropriate authority can be prohibited, the trouble for the user to visit a facility that holds a dedicated tool to grant authority information to the mobile device can be eliminated. This effect becomes more prominent as the number of mobile devices sharing the authentication system 10 increases. Therefore, the convenience of the authentication system 10 using mobile devices can be enhanced.

[0054] The authority information distributed from the external server device 60 to the mobile device may include information related to the hierarchical relationship among users. For example, the second authority granted to a mobile device owned by a family member, friend, car-sharing partner, etc. of the owner of the vehicle 20 is restricted compared to the first authority granted to the mobile device owned by the owner of the vehicle 20. That is, the authority information distributed from the external server device 60 to the mobile device may include information on at least which of the first authority and the second authority is granted.

[0055] In this case, when the authentication information for authenticating the mobile device to which the above first authority is granted is not stored in the storage device 13, the processing unit 122 of the control device 12 is configured not to permit the storage of the authentication information for authenticating the mobile device to which the above second authority is granted in the storage device 13.

[0056] Regarding the flow of the registration process of the mobile device executed by the processing unit 122 configured as described above, take the case where the first user 31 shown in FIG. 1 is the owner of the vehicle 20 and has not completed the registration of the first mobile device 41, and the second user 32 who is the car-sharing partner of the owner attempts to register the second mobile device 42 as an example for explanation.

[0057] That is, the first authority information TO1 includes information indicating that the first authority is granted to the first mobile device 41. The second authority information TO2 includes information indicating that the restricted second authority is granted to the second mobile device 42.

[0058] The processing unit 122 causes the communication device 11 to transmit a trigger signal TR by radio wave (STEP1 in FIG. 3). The second mobile device 42 transmits a second response signal RS2 by radio wave as a response to the trigger signal TR. The second response signal RS2 is received by the reception unit 121 of the control device 12 (YES in STEP2).

[0059] Therefore, the processing unit 122 transmits a request signal RQ to the second mobile device 42 by radio wave (STEP3). The second mobile device 42 transmits the second authentication information TE2 and the second authority information TO2 by radio wave as a response to the request signal RQ. The second authentication information TE2 and the second authority information TO2 are received by the reception unit 121 of the control device 12 (STEP4).

[0060] Subsequently, the processing unit 122 determines whether the second authority information TO2 is appropriate (STEP5). Specifically, in addition to determining the appropriateness regarding the available period and the like, the appropriateness regarding the relationship between the first authority and the second authority is determined. That is, when the authority associated with the second authority information TO2 is a restricted second authority, it is determined whether the authentication information for authenticating the mobile device to which a less restricted first authority is granted is stored in the storage device 13.

[0061] In this example, since the first authentication information TE1 for authenticating the first mobile device 41 to which the first authority is granted is not stored in the storage device 13, it is determined that the second authority information TO2 is not appropriate (NO in STEP5). Therefore, the storage of the second authentication information TE2 in the storage device 13 is not permitted, and the operation control of the locking / unlocking device 21 cannot be performed using the second mobile device 42.

[0062] According to such a configuration, when the authentication system 10 is shared by a plurality of users, the hierarchical relationship between the users can be reflected in the authentication system 10. That is, in a situation where a user in a higher position in the hierarchical relationship cannot use the locking / unlocking device 21, the use of the locking / unlocking device 21 by a user in a lower position in the hierarchical relationship can be prohibited.

[0063] The processing unit 122 of the control device 12 having the various functions described so far can be realized by a general-purpose microprocessor that operates in cooperation with a general-purpose memory. Examples of the general-purpose microprocessor can include a CPU, an MPU, and a GPU. Examples of the general-purpose memory can include a ROM and a RAM. In this case, a computer program for executing the above-described processing can be stored in the ROM. The ROM is an example of a non-transitory computer-readable medium storing a computer program. The storage device 13 may be used as the general-purpose memory. The general-purpose microprocessor designates at least a part of the computer program stored on the ROM and expands it onto the RAM, and executes the above-described processing in cooperation with the RAM. The above computer program may be pre-installed in the general-purpose memory, or may be downloaded from an external server device 60 via the wireless communication network 50 and then installed in the general-purpose memory. In this case, the external server device 60 is an example of a non-transitory computer-readable medium storing a computer program.

[0064] The processing unit 122 may also be realized by an application-specific integrated circuit capable of executing the above computer program, such as a microcontroller, an ASIC, or an FPGA. In this case, the above computer program is pre-installed in a storage element included in the application-specific integrated circuit. The storage element is an example of a non-transitory computer-readable medium storing a computer program. The storage element may be used as the storage device 13. Each processor can also be realized by a combination of a general-purpose microprocessor and an application-specific integrated circuit.

[0065] Each of the above embodiments is merely an exemplification for facilitating the understanding of the present invention. The configurations according to each of the above embodiments can be appropriately changed and improved without departing from the gist of the present invention.

[0066] In FIG. 1, the communication device 11, the control device 12, and the storage device 13 are illustrated as a plurality of devices independently mounted at separate positions in the vehicle 20. However, at least one of the communication device 11 and the storage device 13 may be provided as part of the control device 12.

[0067] At least a part of the authentication process performed by the processing unit 122 of the control device 12 may be performed in the external server device 60 illustrated in FIG. 1. Therefore, the storage device 13 may be mounted in the external server device 60.

[0068] The controlled device controlled by the control device 12 as a result of the authentication process is not limited to the locking / unlocking device 21. Examples of other controlled devices include the ignition power source, engine, air conditioner, audio-visual equipment, lighting device, and position adjustment mechanisms for seats and steering wheels mounted on the vehicle 20. Therefore, the authority information distributed to the mobile device may include information related to the type of controlled device capable of operation control. The number of ranks among users distinguished by the authority information may be three or more.

[0069] The authentication system 10 can also be applied to moving bodies other than the vehicle 20. Examples of other moving bodies include railways, airplanes, and ships. The moving body may not require a driver.

[0070] The opening / closing body unlocked / locked by the locking / unlocking device 21 is not limited to the door of the moving body. Doors and windows in houses and facilities can also be an example of the opening / closing body. Also, various facilities in houses and facilities can also be an example of the controlled device. That is, the communication device 11, the control device 12, and the storage device 13 do not have to be mounted on the moving body.

Description of Reference Numerals

[0071] 10: Authentication system, 11: Communication device, 12: Control device, 121: Reception unit, 122: Processing unit, 13: Storage device, 20: Vehicle, 21: Locking and unlocking device, 22: Door, 31: First user, 32: Second user, 41: First mobile device, 42: Second mobile device, TE1: First authentication information, TE2: Second authentication information, TO1: First authorization information, TO2: Second authorization information

Claims

1. A communication device that performs wireless communication with a mobile device that can be carried by a user, A control device that controls the operation of a controlled device based on an authentication process for authenticating the mobile device, A storage device that stores authentication information used in the authentication process, Comprising, The control device acquires, through the communication device, authority information indicating the authority of the mobile device with respect to the controlled device distributed to the mobile device, and determines whether the authentication information can be stored in the storage device based on the authority information. The authority information includes information indicating which of a first authority and a second authority more restricted than the first authority is granted. When the authentication information for authenticating the first mobile device to which the first authority is granted is not stored in the storage device, the control device does not permit the storage of the authentication information for authenticating the second mobile device to which the second authority is granted in the storage device. An authentication system.

2. The controlled device is a locking and unlocking device that locks and unlocks an opening and closing body. The authentication system according to claim 1.

3. The communication device and the control device are mounted on a moving body. The authentication system according to claim 1 or 2.

4. A control device that controls the operation of a controlled device based on an authentication process for authenticating a mobile device that can be carried by a user, A reception unit that receives, through a communication device capable of wireless communication with the mobile device, authority information indicating the authority of the mobile device with respect to the controlled device distributed to the mobile device, A processing unit that determines whether the authentication information used in the authentication process can be stored in a storage device based on the authority information, Comprising, The authority information includes information indicating which of a first authority and a second authority more restricted than the first authority is granted. When the authentication information for authenticating the first mobile device to which the first authority is granted is not stored in the storage device, the processing unit does not permit the storage of the authentication information for authenticating the second mobile device to which the second authority is granted in the storage device. A control device.

5. A computer program executable by a processing unit mounted on a control device that controls the operation of a controlled device based on an authentication process for authenticating a mobile device that can be carried by a user. When executed, the control device Receive, through a communication device capable of wireless communication with the mobile device, authority information indicating the authority of the mobile device over the controlled device distributed to the mobile device. Based on the authority information, determine whether the authentication information used in the authentication process can be stored in the storage device. The authority information includes information indicating which of a first authority and a second authority more restricted than the first authority is granted. When authentication information for authenticating a first mobile device to which the first authority is granted is not stored in the storage device, the control device does not permit the storage of authentication information for authenticating a second mobile device to which the second authority is granted in the storage device. Computer program.

Citation Information

Patent Citations

  • Automobile lock management system

    JP2002330468A

  • Vehicle key system, vehicle side key device and electronic key

    JP2003064920A

  • Identification code registration update system, identification code registration update method, and identification code registration update program

    JP2004088338A

  • Mobile terminal additional registration system

    JP2016133969A

  • Smart entry system

    JP2016211334A