System

The system addresses the burden of frequent password entry by using a first electronic certificate for initial verification and a second, simpler method for subsequent entries, improving user convenience and efficiency in facility access.

JP7715217B2Active Publication Date: 2025-07-30NEC CORP
View PDF 3 Cites 0 Cited by

Patent Information

Application Number
JP2023576591
Authority / Receiving Office
JP · JP
Patent Type
Patents
Current Assignee / Owner
Filing Date
2022-01-31
Publication Date
2025-07-30
Estimated Expiration
2042-01-31

AI Technical Summary

Technical Problem

Existing admission management systems for facilities like casinos require users to input lengthy passwords for electronic certificate verification each time they enter, causing a significant burden.

Method used

A system that utilizes a first electronic certificate for initial verification and a second electronic certificate with fewer digits or biometric authentication for subsequent verifications, reducing the user's burden by associating first and second identification information for streamlined identity checks.

Benefits of technology

Reduces the user's burden by minimizing the need for lengthy password inputs during multiple entries, enhancing the efficiency and convenience of facility access.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure 0007715217000001
    Figure 0007715217000001
  • Figure 0007715217000002
    Figure 0007715217000002
  • Figure 0007715217000003
    Figure 0007715217000003
Patent Text Reader

Abstract

Provided is a system that reduces the burden on a user when the user enters a facility such a casino. When first user identification confirmation, which is required before a user enters a facility, is carried out, a facility server sends, to a first PF server, a first electronic certificate stored in an identification card of the user. When a second or subsequent user identification confirmation, which is required when the user enters the facility, is carried out, the facility server sends, to the first PF server, a second electronic certificate stored in the identification card of the user. The first PF server associates and stores first identification information of the first electronic certificate and second identification information of the second electronic certificate. The first PF server extracts the second identification information from the second electronic certificate at a time of the second or subsequent identity confirmation. The first PF server uses at least the first identification information corresponding to the extracted second identification information to perform processing related to the second or subsequent identity confirmation.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to a system, a server device, a control method of the server device, and a storage medium.

Background Art

[0002] There is an admission management system for managing admission to a gaming facility such as a casino.

[0003] For example, Patent Document 1 describes appropriately managing admission to a gaming facility. The admission management system of Patent Document 1 includes a face authentication means, a user determination means, an admission times determination means, and an admission permission determination means. The face authentication means performs face authentication based on the face image of a user entering the facility and the face image obtained from the user's identity card. The user determination means determines whether the user is a user who requires admission management to the facility based on the type of identity card of the identity card. The admission times determination means determines whether the number of times the user has entered the facility exceeds the admission times limit of the facility when the user is a user who requires admission management to the facility. The admission permission determination means determines whether the user can enter the facility based on the result of the face authentication and the determination result of the admission times limit. Further, Patent Document 1 describes that it is necessary to confirm the identity and the number of times for entering a casino facility (see paragraphs

[0051] to

[0058] of the same document).

[0004] Patent Document 2 describes that it improves the efficiency of access control to a casino facility. In Patent Document 2, in a casino facility, a user, as pre-registration, causes a my number card to be read via an operation terminal, inputs various passwords, pays an entrance fee, and causes their biometric information to be read. The information processing device executes an authentication process for the person, a confirmation process for the access limit, and a collection process for the entrance fee, and stores the confirmation results of each process in a confirmation result database in association with the user's biometric information. When a user who has completed pre-registration arrives at the entrance gate and causes their biometric information to be read via the operation terminal, the information processing device refers to the confirmation results stored in the confirmation result database, and if the confirmation results associated with the read biometric information are "person authenticated", "access limit OK", and "entrance fee collected", it permits entry to the casino facility.

Prior Art Documents

Patent Documents

[0005]

Patent Document 1

Patent Document 2

Summary of the Invention

Problems to be Solved by the Invention

[0006] As disclosed in Patent Document 1 and Patent Document 2, when entering a facility such as a casino, it is necessary to confirm the person and the number of times of entry. In this regard, Patent Document 1 requires a user to input a 6-digit to 16-digit password for reading an electronic certificate for signature every time the person is confirmed. However, it is a heavy burden for the user to input a password with a large number of digits every time they enter the casino facility.

[0007] The main object of the present invention is to provide a system, a server device, a control method for the server device, and a storage medium that contribute to reducing the burden on users when entering a facility such as a casino.

Means for Solving the Problems

[0008] According to a first aspect of the present invention, there is provided a system including a facility server that controls the entry of a user into a facility, and a first platform server that performs an authentication procedure using an electronic certificate stored in an identity certificate. The facility server transmits a first electronic certificate stored in the identity certificate to the first platform server at the first identity verification required before the user enters the facility, and transmits a second electronic certificate stored in the identity certificate to the first platform server at the second and subsequent identity verifications required when the user enters the facility. The first platform server stores the first identification information of the first electronic certificate and the second identification information of the second electronic certificate in association with each other, extracts the second identification information from the second electronic certificate at the second and subsequent identity verifications, and performs processing related to the second and subsequent identity verifications using at least the first identification information corresponding to the extracted second identification information.

[0009] According to a second aspect of the present invention, there is provided a server device including an identity verification processing unit that transmits a first electronic certificate stored in an identity certificate to a first platform server that performs an authentication procedure using the electronic certificate stored in the identity certificate at the first identity verification required before the user enters the facility, and an entry verification processing unit that transmits a second electronic certificate stored in the identity certificate to the first platform server at the second and subsequent identity verifications required when the user enters the facility.

[0010] According to a third aspect of the present invention, there is provided a control method for a server device that transmits a first electronic certificate stored in an identity certificate to a first platform server that performs an authentication procedure using the electronic certificate stored in the identity certificate at the first identity verification required before the user enters the facility, and transmits a second electronic certificate stored in the identity certificate to the first platform server at the second and subsequent identity verifications required when the user enters the facility.

[0011] According to a fourth aspect of the present invention, a computer mounted on a server device is caused to perform a process of transmitting a first electronic certificate stored in an identity certificate to a first platform server that performs an authentication procedure using the electronic certificate stored in the identity certificate at the first identity verification necessary before a user enters a facility, and a process of transmitting a second electronic certificate stored in the identity certificate to the first platform server at the second and subsequent identity verifications necessary when the user enters the facility. A computer-readable storage medium storing a program for causing the computer to execute the process is provided.

Effect of the Invention

[0012] According to each aspect of the present invention, there are provided a system, a server device, a control method of the server device, and a storage medium that contribute to reducing the burden on a user when entering a facility such as a casino. Note that the effects of the present invention are not limited to the above. Instead of or together with the above effects, other effects may be achieved by the present invention.

Brief Description of the Drawings

[0013]

Figure 1

Figure 2

Figure 3

Figure 4

Figure 5

Figure 6

Figure 7

Figure 8

Figure 9

Figure 10

Figure 11

Figure 12

Figure 13

Figure 14

Figure 15

Figure 16

Figure 17

Figure 18

Figure 19

Figure 20

Figure 21

Figure 22

Figure 23

Figure 24

Figure 25

Figure 26

MODE FOR CARRYING OUT THE INVENTION

[0014] First, an overview of an embodiment will be described. The reference numerals in the drawings appended to this overview are for convenience of each element as an example for assisting understanding, and the description of this overview is not intended to be limiting in any way. Also, unless otherwise specified, the blocks described in each drawing represent a configuration of a functional unit, not a configuration of a hardware unit. The connection lines between the blocks in each figure include both bidirectional and unidirectional ones. The one-way arrow schematically shows the flow of the main signal (data) and does not exclude bidirectionality. In the present specification and drawings, for elements that can be similarly described, duplicate description may be omitted by assigning the same reference numerals.

[0015] A system according to an embodiment includes a facility server 101 and a first platform server 102 (see FIG. 1). The facility server 101 controls the entry of users into the facility. The first platform server 102 performs an authentication procedure using an electronic certificate stored in an identity certificate. Before the first identity verification required before a user enters the facility, the facility server 101 transmits a first electronic certificate stored in the identity certificate to the first platform server 102 (step S1 in FIG. 2). Further, when performing the second and subsequent identity verifications required when a user enters the facility, the facility server 101 transmits a second electronic certificate stored in the identity certificate to the first platform server 102 (step S2). The first platform server 102 stores the first identification information of the first electronic certificate and the second identification information of the second electronic certificate in association with each other. When performing the second and subsequent identity verifications, the first platform server 102 extracts the second identification information from the second electronic certificate. The first platform server 102 performs processing related to the second and subsequent identity verifications using at least the first identification information corresponding to the extracted second identification information (execution of the identity verification process; step S3).

[0016] In order to enter a facility (e.g., a casino), identity verification may be required. In that case, for example, identity verification using a first electronic certificate (e.g., an electronic signature certificate stored in a My Number card) is required. Here, if the user is required to input a long password every time they enter the facility to read the first electronic certificate, the burden on the user increases. Therefore, in the above system, the first identity verification is performed using the first electronic certificate, and the second and subsequent identity verifications are performed using a second electronic certificate (e.g., an electronic certificate for user identification) associated with the first electronic certificate. Since the second electronic certificate can be read by a password with fewer digits or biometric authentication, the burden on the user is reduced. In this way, the system according to an embodiment can reduce the burden on users when entering a facility such as a casino.

[0017] Specific embodiments will be described in more detail below with reference to the drawings.

[0018] [First Embodiment] The first embodiment will be described in more detail with reference to the drawings.

[0019] [Configuration of the System] FIG. 3 is a diagram showing an example of the schematic configuration of an admission management system (information processing system) according to the first embodiment. The admission management system according to the first embodiment performs admission management for facilities within an integrated resort (IR; Integrated Resort). Also, as shown in FIG. 3, the admission management system includes a plurality of server devices.

[0020] The integrated resort includes an international conference hall, exhibition facilities, hotels, commercial facilities, restaurants, theaters, cinemas, amusement parks, sports facilities, hot spring facilities, casino areas, and the like.

[0021] In the first embodiment, the "casino area" is taken as an example of the facility where the user enters. However, it goes without saying that the facility where the user enters may be other facilities.

[0022] A user who enters the casino area (hereinafter simply referred to as the casino facility or casino) for the first time needs to undergo identity verification in advance. Specifically, the user (the person wishing to enter) undergoes identity verification using the reception terminal 10 (kiosk terminal) installed at a corner of the integrated resort facility. Note that the first identity verification needs to be completed before entering the casino facility.

[0023] Identity verification is performed using an identity certificate issued by a public institution. Specifically, an IC (Integrated Circuit) card storing an electronic certificate is used for identity verification. In the present disclosure, the my number card is taken as an example of the IC card (identity certificate) storing the electronic certificate for description.

[0024] The user operates the reception terminal 10 to perform procedures for the first identity verification. When the first identity verification is completed, the user can enter the casino facility by passing through the entrance terminal 20.

[0025] When the user enters the casino facility, at the entrance terminal 20, identity verification (subsequent identity verifications after the first time) and frequency verification of the person entering the facility are performed. However, for foreign nationals who do not have a residence in Japan, such identity verification and frequency verification are not required.

[0026] The frequency verification is a verification regarding whether the entry restrictions to the casino facility set by laws and the like are exceeded. For example, the frequency verification is a verification regarding whether it conflicts with restrictions such as a short-term frequency restriction of "the number of entries within consecutive 7 days is up to 3 times" or a long-term frequency restriction of "the number of entries within consecutive 28 days is up to 10 times".

[0027] Users who have successfully passed the identity verification and frequency verification at the entrance terminal 20 can enter the casino facility by passing through the gate.

[0028] As shown in FIG. 3, the entrance management system includes a plurality of server devices. Specifically, the entrance management system includes a casino server 30, a first platform (PF) server 40, a management server 50, a second platform server 60, and a certification authority server 70.

[0029] The casino server 30 is a server device managed by a casino operator or the like. The casino server 30 manages casino users and the like. The casino server 30 controls for the user to enter the casino facility. The casino server 30 corresponds to the above-mentioned facility server 101.

[0030] The first PF server 40 is a server device managed by an authentication provider that performs authentication services for electronic certificates. The first PF server 40 performs an authentication procedure using the electronic certificate stored in the identity certificate. More specifically, the first PF server 40 is a device that executes the authentication service for the electronic certificate requested by the casino operator.

[0031] The management server 50 is a server device managed by the casino management committee (an administrative agency that creates rules regarding casino use and manages casino business activities by casino operators). The management server 50 manages the usage status of the casino facility. More specifically, the management server 50 checks the number of times of casino users and manages (stores) the identities of casino users. Note that the management server 50 manages the usage status not only for one casino facility but for each casino facility (multiple casino facilities) conducting business activities in the country. That is, the management server 50 performs a count check, etc. not only for the casino facility where the user is trying to enter but also for other casino facilities existing in the country (performs the short-term and long-term count checks described above).

[0032] The second PF server 60 is a server device managed by an authentication provider that performs authentication services for electronic certificates. The second PF server 60 performs an authentication procedure using the electronic certificate stored in the identity certificate. More specifically, the second PF server 60 is a device that executes the authentication service for the electronic certificate requested by the casino management committee.

[0033] The certification authority server 70 is a server device managed by a corporation jointly operated by the national and local public entities called J-LIS (Japan Agency for Local Authority Information Systems). The certification authority server 70 verifies the validity of the electronic certificate. More specifically, the certification authority server 70 is a device that provides a personal authentication service using the electronic certificate.

[0034] [Schematic Operation] Subsequently, the schematic operation of the admission management system according to the first embodiment will be described.

[0035] <Initial identity verification> Referring to FIG. 4, the schematic operation of the access control system for the initial identity verification will be described.

[0036] Users who first enter the casino facility undergo initial identity verification at the reception terminal 10. The reception terminal 10 obtains an electronic certificate for signature from the My Number card held by the user, and transmits an identity verification request including the obtained electronic certificate for signature to the casino server 30 (step S01).

[0037] Note that the electronic certificate for signature is an electronic certificate for signing documents submitted to public institutions or the like, and is a certificate including personal information of the user (so-called basic four information: name, date of birth, gender, address).

[0038] The casino server 30 requests the first PF server 40 to verify the identity of the user. Specifically, the casino server 30 transmits an identity verification request including the electronic certificate for signature obtained from the reception terminal 10 to the first PF server 40 (step S02).

[0039] In response to receiving the identity verification request, the first PF server 40 requests the certification authority server 70 to verify the validity of the electronic certificate for signature. Specifically, the first PF server 40 transmits a verification request including the issue number of the electronic certificate for signature to the certification authority server 70 (step S03).

[0040] The certification authority server 70 verifies the electronic certificate for signature, and transmits the verification result of the electronic certificate for signature (the electronic certificate for signature is valid, the electronic certificate for signature is invalid) to the first PF server 40 (step S04). At this time, if the verification of the electronic certificate for signature is successful, the certification authority server 70 also transmits the issue number of the electronic certificate for user certification linked to the electronic certificate for signature to the first PF server 40.

[0041] When the electronic signature certificate is valid, the first PF server 40 generates an account for the user (the user who enters the casino facility for the first time). The first PF server 40 stores, in the account, an ID for identifying the user (hereinafter referred to as the user ID), the issue number of the electronic signature certificate, the issue number of the electronic certificate for user authentication, and personal identification information in association with each other.

[0042] Note that the personal identification information is information consisting of at least one or a combination of name, date of birth, gender, and address. For example, a name or a combination of a name and a date of birth corresponds to the personal identification information. Of course, a combination of name, date of birth, gender, and address may be the personal identification information.

[0043] Thereafter, the first PF server 40 transmits the confirmation result (successful user authentication, failed user authentication) for the user authentication request to the casino server 30 (step S05). When the user authentication is successful, the first PF server 40 also transmits the user ID and the personal identification information to the casino server 30.

[0044] In response to the confirmation result received from the first PF server 40, the casino server 30 transmits a response (successful user authentication, failed user authentication) to the reception terminal 10 for the user authentication request (step S06). The casino server 30 also stores the user ID and the like received from the first PF server 40.

[0045] The reception terminal 10 notifies the user of the result of the user authentication.

[0046] In this way, when the casino server 30 conducts the first identity verification necessary before a user enters the casino facility, it sends the first electronic certificate (electronic signature certificate) stored in the identity certificate (My Number card) to the first PF server 40. The first PF server 40 sends the first identification information (issuance number of the electronic signature certificate) of the first electronic certificate to the certification authority server 70. The certification authority server 70 verifies the validity of the first electronic certificate based on the first identification information, and if the verification is successful, it sends the second identification information (issuance number of the user certification electronic certificate) corresponding to the first identification information to the first PF server 40. The first PF server 40 stores the first identification information of the first electronic certificate (electronic signature certificate) and the second identification information of the second electronic certificate (user certification electronic certificate) in association with each other.

[0047] <Second and subsequent identity verifications and visit count verifications when entering the casino facility> As described above, in order to enter the casino facility, it is necessary to verify the user's identity and visit count. The identity verification and visit count verification are performed via the entry terminal 20 (a terminal installed at the entrance of the casino facility).

[0048] The entry terminal 20 acquires the user certification electronic certificate from the My Number card held by the user. The entry terminal 20 sends an entry confirmation request including the acquired user certification electronic certificate to the casino server 30 (step S11 in FIG. 5).

[0049] Note that the user certification electronic certificate is an electronic certificate used as a means of authenticating the identity of the user, and it is a certificate that does not include the personal information (so-called basic four information: name, date of birth, gender, address) of the user (a resident to whom a My Number card has been issued).

[0050] The entry management system performs identity verification and visit count verification. Although the identity verification and visit count verification are performed in parallel, for the sake of convenience, the identity verification and visit count verification will be described separately.

[0051] First, with reference to the personal verification flow shown in the lower part of FIG. 6, the general operation of the admission management system for personal verification at the time of entering a casino facility will be described.

[0052] When the admission terminal 20 acquires the electronic certificate for user identification, the casino server 30 requests the first PF server 40 to verify the identity of the person wishing to enter. Specifically, the casino server 30 transmits an identity verification request including the electronic certificate for user identification acquired from the admission terminal 20 to the first PF server 40 (step S21).

[0053] The first PF server 40 determines whether the first identity verification of the person wishing to enter the casino facility has been completed. Specifically, the first PF server 40 determines whether the account of the person wishing to enter has been created using the issuance number of the electronic certificate for user identification.

[0054] If the account has been created, the first PF server 40 requests the certification authority server 70 to verify the validity of the electronic signature certificate and the electronic certificate for user identification. Specifically, the first PF server 40 transmits a verification request including the issuance number of the electronic signature certificate and the issuance number of the electronic certificate for user identification to the certification authority server 70 (step S22).

[0055] The certification authority server 70 verifies the electronic signature certificate and the electronic certificate for user identification. The certification authority server 70 transmits the verification results of the electronic signature certificate and the electronic certificate for user identification (the certificate is valid, the certificate is invalid) to the first PF server 40 (step S23).

[0056] According to the verification results obtained from the certification authority server 70, the first PF server 40 transmits the verification results (identity verification successful, identity verification failed) for the identity verification request received from the casino server 30 to the casino server 30 (step S24). If the identity verification is successful, the first PF server 40 notifies the casino server 30 of the user ID and personal identification information of the person wishing to enter.

[0057] The casino server 30 stores the confirmation results (successful identity verification, failed identity verification) for those who wish to enter the casino facility.

[0058] Subsequently, referring to the frequency confirmation flow shown in the upper part of FIG. 6, the schematic operation of the admission management system regarding the frequency confirmation at the time of entering the casino facility will be described.

[0059] When the casino server 30 obtains the electronic certificate for user identification from the admission terminal 20, the casino server 30 requests the management server 50 to confirm the frequency of the person wishing to enter. Specifically, the casino server 30 transmits a frequency confirmation request including the electronic certificate for user identification read from the My Number card to the management server 50 (step S31).

[0060] The management server 50 requests the second PF server 60 to identify the person entering. Specifically, the management server 50 transmits a person identification request including the electronic certificate for user identification obtained from the casino server 30 to the second PF server 60 (step S32).

[0061] In response to receiving the person identification request, the second PF server 60 requests the certification authority server 70 to verify the validity of the electronic certificate for user identification. Specifically, the second PF server 60 transmits a verification request including the issuance number of the electronic certificate for user identification to the certification authority server 70 (step S33).

[0062] The certification authority server 70 verifies the electronic certificate for user identification. The certification authority server 70 transmits the verification result of the electronic certificate for user identification (the electronic certificate for user identification is valid, the electronic certificate for user identification is invalid) to the second PF server 60 (step S34).

[0063] When the electronic certificate for user identification is valid, the second PF server 60 creates an account for the person entering. The second PF server 60 stores the ID for identifying the person entering (hereinafter referred to as the admission person ID) in association with the issuance number of the electronic certificate for user identification of the person entering.

[0064] The second PF server 60 transmits to the management server 50 a response (the entrant is identified, the entrant is not identified) to the entrant identification request received from the management server 50 (step S35). When the entrant is identified, the second PF server 60 also transmits the entrant ID of the identified entrant (scheduled entrant) to the management server 50.

[0065] The management server 50 identifies the users who are the targets of entry confirmation (frequency confirmation) based on the entrant ID, and performs a frequency check on the use of the casino facility by the identified users. The management server 50 transmits the result of the frequency check (the user is allowed to use the casino facility, the user is not allowed to use the casino facility) to the casino server 30 (step S36).

[0066] The casino server 30 stores the result of the frequency check.

[0067] The casino server 30 determines whether the user can enter the casino facility at the timing when the results of the identity confirmation and the frequency check match. The casino server 30 transmits a response to the entry confirmation request (entry to the casino facility is allowed, entry to the casino facility is not allowed) to the entry terminal 20 (step S12 in FIG. 5).

[0068] The entry terminal 20 controls the gate according to the response to the entry confirmation request (the user is allowed to enter the casino facility, the user is not allowed to enter the casino facility).

[0069] In this way, the casino server 30 performs processing related to the frequency check of the casino facility in parallel with the identity confirmation after the second time. Also, when performing the identity confirmation after the second time that is required when the user enters the casino facility, the casino server 30 transmits the second electronic certificate (electronic certificate for user certification) stored in the my number card to the first PF server 40. The first PF server 40 extracts the second identification information (issue number) from the second electronic certificate at the time of identity confirmation after the second time, and performs processing related to the identity confirmation after the second time using at least the first identification information (issue number of the electronic certificate for signature) corresponding to the extracted issue number.

[0070] Furthermore, regarding the confirmation of the number of times, the casino server 30 transmits a second electronic certificate to the management server 50. The management server 50 requests the second PF server 60 to identify the person who intends to enter the casino facility by transmitting the second electronic certificate to the second PF server 60. When the second electronic certificate is valid, the second PF server 60 transmits the entrant ID of the person seeking entry to the management server 50. The management server 50 permits the person seeking entry to enter the casino facility if the casino usage history of the user corresponding to the entrant ID does not violate the limit on the number of times of using the casino facility.

[0071] Subsequently, details of each device included in the entry management system according to the first embodiment will be described.

[0072] [Reception Terminal] FIG. 7 is a diagram showing an example of the processing configuration (processing modules) of the reception terminal 10 according to the first embodiment. Referring to FIG. 7, the reception terminal 10 includes a communication control unit 201, a personal identification control unit 202, and a storage unit 203.

[0073] The communication control unit 201 is means for controlling communication with other devices. For example, the communication control unit 201 receives data (packets) from the casino server 30. Also, the communication control unit 201 transmits data to the casino server 30. The communication control unit 201 delivers the data received from other devices to other processing modules. The communication control unit 201 transmits the data acquired from other processing modules to other devices. In this way, other processing modules perform data transmission and reception with other devices via the communication control unit 201. The communication control unit 201 has a function as a receiving unit for receiving data from other devices and a function as a transmitting unit for transmitting data to other devices.

[0074] The personal identification control unit 202 is means for controlling the personal identification of a person who wishes to enter the casino facility. More specifically, the personal identification control unit 202 performs control regarding the first personal identification of the person who wishes to enter.

[0075] The personal authentication control unit 202 acquires the desire of the user (the person who wishes to enter) to enter the casino facility using a GUI (Graphical User Interface) or the like. When the user wishes to enter the casino facility, the personal authentication control unit 202 acquires the electronic certificate for signature from the My Number card held by the user.

[0076] For example, the personal authentication control unit 202 displays a GUI as shown in FIG. 8 and recognizes that the My Number card has been inserted into the IC (Integrated Circuit) card reader. Thereafter, the personal authentication control unit 202 reads the electronic certificate for signature from the My Number card.

[0077] At that time, since it is necessary to input a PIN (password) corresponding to the electronic certificate for signature, the personal authentication control unit 202 displays a GUI as shown in FIG. 9 and acquires the PIN (a character string in which 6 to 16 alphanumeric characters are mixed).

[0078] The personal authentication control unit 202 attempts to read the electronic certificate for signature from the My Number card using the acquired PIN. If the correct PIN is input, the personal authentication control unit 202 can read the electronic certificate for signature.

[0079] The personal authentication control unit 202 transmits a personal authentication request including the read electronic certificate for signature to the casino server 30.

[0080] The personal authentication control unit 202 receives a response (positive response, negative response) to the personal authentication request from the casino server 30.

[0081] The personal authentication control unit 202 displays a message or the like according to the personal authentication result. When the personal authentication is successful (when a positive response is received), the personal authentication control unit 202 notifies the user that the "first personal authentication" has been successful. When the personal authentication fails (when a negative response is received), the personal authentication control unit 202 notifies the user that the "first personal authentication" has failed.

[0082] For example, when the identity verification is successful, the identity verification control unit 202 performs a display as shown in FIG. 10A and notifies the user that they can enter the casino facility. When the identity verification fails, the identity verification control unit 202 performs a display as shown in FIG. 10B and notifies the user that they cannot enter the casino facility.

[0083] The storage unit 203 is a means for storing information necessary for the operation of the reception terminal 10.

[0084] [Entrance Terminal] FIG. 11 is a diagram showing an example of the processing configuration (processing modules) of the entrance terminal 20 according to the first embodiment. Referring to FIG. 11, the entrance terminal 20 includes a communication control unit 301, an entrance control unit 302, a gate control unit 303, and a storage unit 304.

[0085] The communication control unit 301 is a means for controlling communication with other devices. For example, the communication control unit 301 receives data (packets) from the casino server 30. Also, the communication control unit 301 transmits data toward the casino server 30. The communication control unit 301 delivers the data received from other devices to other processing modules. The communication control unit 301 transmits the data acquired from other processing modules toward other devices. In this way, other processing modules perform data transmission and reception with other devices via the communication control unit 301. The communication control unit 301 has a function as a receiving unit for receiving data from other devices and a function as a transmitting unit for transmitting data toward other devices.

[0086] The entrance control unit 302 is a means for controlling the entrance confirmation for those who wish to enter the casino facility. When the entrance control unit 302 detects a user in front of its own device (in front of the entrance terminal 20) using a human sensor or the like, it acquires an electronic certificate for user authentication from the My Number card held by the user.

[0087] For example, the admission control unit 302 displays a GUI as shown in FIG. 12 and recognizes that the my number card has been inserted into the IC card reader. After that, the admission control unit 302 reads the electronic certificate for user identification from the my number card.

[0088] At that time, since a password corresponding to the electronic certificate for user identification or biometric information of the user (person wishing to enter) is required, the admission control unit 302 displays a GUI as shown in FIG. 13 and acquires the password (a 4-digit number sequence) or biometric information (face image).

[0089] Note that when the "Shooting Button" shown in FIG. 13 is pressed, the admission control unit 302 controls a camera (not shown) to acquire a face image of the person wishing to enter.

[0090] The admission control unit 302 attempts to read the electronic certificate for user identification from the my number card using the acquired password. If the correct password is entered, the admission control unit 302 can read the electronic certificate for user identification.

[0091] Alternatively, when the face image (face information) described on the my number card and the face image (face information) obtained by photographing the user substantially match, the admission control unit 302 can read the electronic certificate for user identification.

[0092] The admission control unit 302 transmits an admission confirmation request including the read electronic certificate for user identification to the casino server 30.

[0093] The admission control unit 302 receives a response (positive response, negative response) to the admission confirmation request from the casino server 30.

[0094] The admission control unit 302 displays a message or the like according to the admission confirmation result. When the admission confirmation is successful (when an affirmative response is received), the admission control unit 302 notifies the user that they can enter the casino facility. When the admission confirmation fails (when a negative response is received), the admission control unit 302 notifies the user that they cannot enter the casino facility.

[0095] Also, the admission control unit 302 delivers the confirmation result (admission permitted, admission not permitted) for the admission confirmation request to the gate control unit 303.

[0096] The gate control unit 303 is a means for controlling the gate. The gate control unit 303 controls the gate that restricts the passage of the user according to the confirmation result obtained from the admission control unit 302.

[0097] When receiving the result of not being able to enter the casino facility, the gate control unit 303 closes the gate and rejects the passage of the user.

[0098] When receiving the result of being able to enter the casino facility, the gate control unit 303 opens the gate and permits the passage of the user. At that time, the gate control unit 303 uses a human presence sensor or the like installed in the admission terminal 20 to detect the user's passage through the gate.

[0099] When detecting the user's passage through the gate within a predetermined period after opening the gate, the gate control unit 303 notifies the casino server 30 to that effect. Specifically, the gate control unit 303 sends a "Casino Admission Notice" to the casino server 30.

[0100] When unable to detect the user's passage through the gate within a predetermined period after opening the gate, the gate control unit 303 closes the gate.

[0101] The storage unit 304 is a means for storing information necessary for the operation of the admission terminal 20.

[0102] [Casino Server] FIG. 14 is a diagram showing an example of the processing configuration (processing modules) of the casino server 30 according to the first embodiment. Referring to FIG. 14, the casino server 30 includes a communication control unit 401, an identity verification processing unit 402, an admission verification processing unit 403, an admission notification unit 404, and a storage unit 405.

[0103] The communication control unit 401 is a means for controlling communication with other devices. For example, the communication control unit 401 receives data (packets) from the reception terminal 10. Also, the communication control unit 401 transmits data to the reception terminal 10. The communication control unit 401 delivers the data received from other devices to other processing modules. The communication control unit 401 transmits the data acquired from other processing modules to other devices. In this way, other processing modules perform data transmission and reception with other devices via the communication control unit 401. The communication control unit 401 has a function as a reception unit for receiving data from other devices and a function as a transmission unit for transmitting data to other devices.

[0104] The identity verification processing unit 402 is a means for processing the identity verification request received from the reception terminal 10. The identity verification processing unit 402 requests the first PF server 40 to perform identity verification on the person who wishes to enter the casino facility. Specifically, the identity verification processing unit 402 extracts the electronic certificate for signature included in the identity verification request and transmits an identity verification request including the electronic certificate for signature to the first PF server 40.

[0105] The identity verification processing unit 402 receives a response (positive response, negative response) to the identity verification request from the first PF server 40.

[0106] If the identity verification fails (when a negative response is received), the identity verification processing unit 402 notifies the reception terminal 10 that the identity verification has failed. Specifically, the identity verification processing unit 402 transmits a negative response to the identity verification request to the reception terminal 10.

[0107] When the personal verification is successful (when an affirmative response is received), the personal verification processing unit 402 notifies the receiving terminal 10 that the personal verification has been successful. Specifically, the personal verification processing unit 402 transmits an affirmative response to the personal verification request to the receiving terminal 10.

[0108] Here, the affirmative response transmitted by the first PF server 40 (the response transmitted when the verification of the signature electronic certificate is successful) includes the user ID and personal identification items.

[0109] The personal verification processing unit 402 stores the user ID and personal identification items included in the affirmative response in the user information database in association with each other (see FIG. 15). Note that the user information database shown in FIG. 15 is an example and is not intended to limit the items to be stored. For example, the processing date and time of the personal verification request may be registered in the user information database. In addition, the applicant field shown in FIG. 15 will be described later.

[0110] The admission confirmation processing unit 403 is a means for processing the admission confirmation request received from the admission terminal 20. The admission confirmation processing unit 403 receives an admission confirmation request including an electronic certificate for user authentication of a casino admission applicant.

[0111] In response to receiving the admission confirmation request, the admission confirmation processing unit 403 executes processes related to the personal verification and the number confirmation of the casino admission applicant in parallel. While referring to FIG. 16, the operation of the admission confirmation processing unit 403 will be described.

[0112] [[ID=‘19]] When receiving the admission confirmation request, the admission confirmation processing unit 403 generates identification information for managing (identifying) the inquiry corresponding to the admission confirmation request (step S101). Specifically, the admission confirmation processing unit 403 generates an inquiry ID in response to receiving the admission confirmation request. For example, the admission confirmation processing unit 403 generates an inquiry ID (inquiry number) by calculating a hash value such as the reception date and time of the admission confirmation request.

[0113] The admission confirmation processing unit 403 requests the first PF server 40 to confirm the identity of the person who wishes to enter. The admission confirmation processing unit 403 also requests the management server 50 to confirm the number of times the person who wishes to enter has entered.

[0114] Regarding the identity confirmation of the person who wishes to enter, the admission confirmation processing unit 403 transmits an identity confirmation request including the electronic certificate for user identification obtained from the admission terminal 20 to the first PF server 40 (step S102).

[0115] The admission confirmation processing unit 403 receives a response (positive response, negative response) to the identity confirmation request from the first PF server 40. The positive response includes the user ID of the person who wishes to enter and personal identification information.

[0116] If the identity confirmation fails (when a negative response is received), the admission confirmation processing unit 403 stores the fact that the identity confirmation of the person who wishes to enter has failed. Specifically, the admission confirmation processing unit 403 stores (manages) the inquiry ID in association with the fact that the identity confirmation has failed.

[0117] If the identity confirmation is successful (when a positive response is received), the admission confirmation processing unit 403 stores the fact that the identity confirmation of the person who wishes to enter has been successful. Specifically, the admission confirmation processing unit 403 stores (manages) the inquiry ID, the fact that the identity confirmation has been successful, the user ID, and the personal identification information in association with each other.

[0118] In this way, the admission confirmation processing unit 403 stores the result of the identity confirmation in association with the inquiry ID (step S103).

[0119] Regarding the confirmation of the number of times the person who wishes to enter has entered, the admission confirmation processing unit 403 transmits a request for confirmation of the number of times including the inquiry ID and the electronic certificate for user identification obtained from the admission terminal 20 to the management server 50 (step S104).

[0120] The admission confirmation processing unit 403 receives a response (positive response, negative response) to the frequency confirmation request from the management server 50. The response (positive response, negative response) received from the management server 50 includes an inquiry ID. Furthermore, the positive response includes the admission ID of the person wishing to enter.

[0121] When the user cannot use the casino facility (when a negative response is received), the admission confirmation processing unit 403 stores the fact that the frequency confirmation for the person wishing to enter has failed. Specifically, the admission confirmation processing unit 403 stores (manages) the inquiry ID in association with the fact that the frequency confirmation has failed.

[0122] When the user can use the casino facility (when a positive response is received), the admission confirmation processing unit 403 stores the fact that the frequency confirmation for the person wishing to enter has succeeded. Specifically, the admission confirmation processing unit 403 stores (manages) the inquiry ID, the admission ID, and the fact that the frequency confirmation has succeeded in association with each other.

[0123] In this way, the admission confirmation processing unit 403 stores the result of the frequency confirmation in association with the inquiry ID (step S105).

[0124] When the identity confirmation of the person wishing to enter and the result of the frequency confirmation are both available, the admission confirmation processing unit 403 determines whether the person wishing to enter can enter the casino facility (admission determination; step S106).

[0125] When the identity confirmation is successful and the casino facility is available for use, the admission confirmation processing unit 403 determines that the person wishing to enter the casino facility can enter the casino facility.

[0126] When the identity confirmation fails or the casino facility is not available for use, the admission confirmation processing unit 403 determines that the user cannot enter the casino facility.

[0127] The admission confirmation processing unit 403 transmits a response (confirmation result) to the admission confirmation request to the admission terminal 20 (step S107).

[0128] Specifically, when it is determined that the person wishing to enter is allowed to enter the casino facility, the entry confirmation processing unit 403 transmits an affirmative response indicating so to the entry terminal 20.

[0129] At this time, the entry confirmation processing unit 403 searches the user information database using the user ID stored in association with the inquiry ID as a key, and identifies the corresponding entry. The entry confirmation processing unit 403 sets a flag in the entry applicant field of the identified entry (see, for example, the first row of FIG. 15).

[0130] When it is determined that the person wishing to enter is not allowed to enter the casino facility, the entry confirmation processing unit 403 transmits a negative response indicating so to the entry terminal 20.

[0131] The entry notification unit 404 is a means for notifying the management server 50 of the fact that a user (a person wishing to enter the casino facility) has entered the casino facility. The entry notification unit 404 processes the "casino entry notification" transmitted by the entry terminal 20.

[0132] When receiving the casino entry notification from the entry terminal 20, the entry notification unit 404 identifies an entry in which a flag is set in the entry applicant field among each entry included in the user information database. The entry notification unit 404 transmits a "user entry notification" including the user's gate passing date and time, the personal identification items of the identified entry, and the entry person ID to the management server 50.

[0133] In the example shown in FIG. 15, a user entry notification including "NM01" as the name and "female" as the gender is transmitted to the management server 50. Note that the user's gate passing date and time can be the date and time when the casino entry notification is received. Also, the entry person ID is an ID stored in association with the inquiry ID.

[0134] After transmitting the user entry notification, the entry notification unit 404 clears the flag set in the entry applicant field. Also, when a predetermined period has elapsed since the flag was set in the entry applicant field, the entry notification unit 404 clears the flag.

[0135] The memory unit 405 is a means for storing information necessary for the operation of the casino server 30.

[0136] [First PF Server] The first PF server 40 is a server that processes the personal identification request transmitted from the casino server 30. The first PF server 40 requests the certification authority server 70 to verify the electronic certificates (electronic certificates for signature, electronic certificates for user certification) resulting from the first personal identification and subsequent personal identifications. Furthermore, the first PF server 40 performs control regarding the ID (user ID) of the user to be subject to personal identification.

[0137] FIG. 17 is a diagram showing an example of the processing configuration (processing modules) of the first PF server 40 according to the first embodiment. Referring to FIG. 17, the first PF server 40 includes a communication control unit 501, a verification control unit 502, and a memory unit 503.

[0138] The communication control unit 501 is a means for controlling communication with other devices. For example, the communication control unit 501 receives data (packets) from the casino server 30. Also, the communication control unit 501 transmits data toward the casino server 30. The communication control unit 501 delivers the data received from other devices to other processing modules. The communication control unit 501 transmits the data acquired from other processing modules toward other devices. In this way, other processing modules perform data transmission and reception with other devices via the communication control unit 501. The communication control unit 501 has a function as a receiving unit for receiving data from other devices and a function as a transmitting unit for transmitting data toward other devices.

[0139] The verification control unit 502 is a means for performing control regarding the validity verification of electronic certificates. The verification control unit 502 processes the personal identification request received from the casino server 30.

[0140] The identity verification request for the initial identity verification of the user includes an electronic certificate for signature. The verification control unit 502 extracts the issuance number from the electronic certificate for signature and transmits a verification request including the extracted issuance number to the certification authority server 70.

[0141] The verification control unit 502 receives a response (positive response, negative response) to the verification request from the certification authority server 70.

[0142] When receiving a negative response (the electronic certificate for signature is invalid), the verification control unit 502 notifies the casino server 30 that the identity verification has failed. The verification control unit 502 transmits a negative response indicating that to the casino server 30.

[0143] When receiving a positive response (the electronic certificate for signature is valid), the verification control unit 502 generates an account for the corresponding user.

[0144] Specifically, the verification control unit 502 generates a user ID for the applicant who wishes to enter the venue and is the subject of the processing. Also, the verification control unit 502 extracts the issuance number of the electronic certificate for user certification from the positive response received from the certification authority server 70. Furthermore, the verification control unit 502 acquires the personal identification information from the electronic certificate for signature determined to be valid.

[0145] The verification control unit 502 stores the generated user ID, the personal identification information, the issuance number of the electronic certificate for signature, and the issuance number of the electronic certificate for user certification in the user management database (see Figure 18). Note that the user management database shown in Figure 18 is an example and is not intended to limit the items to be stored.

[0146] When generating an account for the person to be processed, the verification control unit 502 notifies the casino server 30 that the identity verification has been successful. At that time, the verification control unit 502 notifies the casino server 30 of the generated user ID and the corresponding personal identification information together. Specifically, the verification control unit 502 transmits a positive response including the user ID and the personal identification information to the casino server 30.

[0147] The identity verification request (identity verification request at the time of the second and subsequent identity verifications) for the user to enter the casino facility includes an electronic certificate for user identification. The verification control unit 502 extracts the issuance number from the electronic certificate for user identification.

[0148] The verification control unit 502 searches the user management database using the issuance number extracted from the electronic certificate for user identification included in the identity verification request resulting from the second and subsequent identity verifications performed at the entrance terminal 20, and attempts to identify the corresponding entry.

[0149] If the corresponding entry (issuance number) does not exist in the user management database, the verification control unit 502 determines that the person wishing to enter has not completed the "first identity verification (verification of the validity of the electronic signature certificate)", and sets the identity verification for the user as a failure.

[0150] If the corresponding entry (issuance number) exists in the user management database, the verification control unit 502 sends a verification request including the issuance number of the electronic certificate for user identification and the issuance number of the electronic signature certificate stored in the identified entry to the certification authority server 70.

[0151] The verification control unit 502 receives a response (positive response, negative response) to the verification request from the certification authority server 70.

[0152] When a negative response (at least one of the electronic signature certificate and the electronic certificate for user identification is invalid) is received, the verification control unit 502 sets the user's identity verification as a failure.

[0153] When a positive response (the electronic signature certificate and the electronic certificate for user identification are valid) is received, the verification control unit 502 sets the user's identity verification as a success.

[0154] The verification control unit 502 notifies the casino server 30 of the result of the identity verification (identity verification success, identity verification failure).

[0155] When the personal verification is successful, the verification control unit 502 transmits an affirmative response indicating so to the casino server 30. At this time, the verification control unit 502 transmits an affirmative response including the user ID and personal identification items regarding the user (the person to be verified) to the casino server 30.

[0156] When the personal verification fails, the verification control unit 502 transmits a negative response indicating so to the casino server 30.

[0157] The storage unit 503 is a means for storing information necessary for the operation of the first PF server 40.

[0158] [Management Server] FIG. 19 is a diagram showing an example of the processing configuration (processing modules) of the management server 50 according to the first embodiment. Referring to FIG. 19, the management server 50 includes a communication control unit 601, a count confirmation processing unit 602, an entry / exit control unit 603, and a storage unit 604.

[0159] The communication control unit 601 is a means for controlling communication with other devices. For example, the communication control unit 601 receives data (packets) from the casino server 30. Also, the communication control unit 601 transmits data toward the casino server 30. The communication control unit 601 delivers the data received from other devices to other processing modules. The communication control unit 601 transmits the data acquired from other processing modules toward other devices. In this way, other processing modules perform data transmission and reception with other devices via the communication control unit 601. The communication control unit 601 has a function as a receiving unit for receiving data from other devices and a function as a transmitting unit for transmitting data toward other devices.

[0160] The count confirmation processing unit 602 is a means for processing the count confirmation request received from the casino server 30. The count confirmation processing unit 602 requests the second PF server 60 to identify the person entering the casino (the person who wishes to enter the casino facility).

[0161] The number confirmation request includes an inquiry ID and an electronic certificate for user authentication. The number confirmation processing unit 602 transmits an admission person identification request including the electronic certificate for user authentication to the second PF server 60.

[0162] The number confirmation processing unit 602 receives a response (positive response, negative response) to the admission person identification request from the second PF server 60.

[0163] When the admission person is not identified (when a negative response is received), the number confirmation processing unit 602 notifies the casino server 30 that the number confirmation has failed. Specifically, the number confirmation processing unit 602 transmits a negative response (unable to use the casino facility) to the number confirmation request to the casino server 30. At that time, the number confirmation processing unit 602 transmits a negative response including the inquiry ID acquired from the casino server 30 to the casino server 30.

[0164] When the admission person is identified (when a positive response is received), the number confirmation processing unit 602 performs a number confirmation for the person wishing to enter. The positive response transmitted by the second PF server 60 includes the admission person ID of the person wishing to enter. The number confirmation processing unit 602 performs the number confirmation using the admission person ID.

[0165] The number confirmation is performed using the admission person information database. FIG. 20 is a diagram showing an example of the admission person information database according to the first embodiment. As shown in FIG. 20, the admission person information database stores the admission person ID, personal identification items, and casino usage history (entry history, exit history) in association with each other.

[0166] The number confirmation processing unit 602 searches the admission person information database using the admission person ID acquired from the second PF server 60 and checks for the presence of a corresponding entry.

[0167] If the corresponding entry (admission person ID) does not exist in the admission person information database, the number confirmation processing unit 602 creates a new entry and registers the received admission person ID in the admission person information database.

[0168] Also, if there is no corresponding visitor ID, the visit count confirmation processing unit 602 determines that the person wishing to enter is using the casino facility for the first time, and sets "Casino facility use permitted" in the result of the visit count confirmation for the person wishing to enter.

[0169] If there is a corresponding entry (visitor ID), the visit count confirmation processing unit 602 performs a visit count confirmation using the casino usage history of the corresponding person wishing to enter. Specifically, the visit count confirmation processing unit 602 determines whether the casino usage history of the person wishing to enter violates the above short-term visit count limit (the number of visits within 7 consecutive days is up to 3 times) or the long-term visit count limit (the number of visits within 28 consecutive days is up to 10 times).

[0170] [[ID=⑨]]If the visit count confirmation processing unit 602 determines that the casino facility usage history of the person wishing to enter violates the visit count limit, it sets "Casino facility use not permitted" in the result of the visit count confirmation.

[0171] If the visit count confirmation processing unit 602 determines that the casino facility usage history of the person wishing to enter does not violate the visit count limit, it sets "Casino facility use permitted" in the result of the visit count confirmation.

[0172] The visit count confirmation processing unit 602 notifies the casino server 30 of the result of the visit count confirmation.

[0173] If the result of the visit count confirmation is "Casino facility use not permitted", the visit count confirmation processing unit 602 sends a negative response indicating that to the casino server 30. At that time, the visit count confirmation processing unit 602 sends a negative response including the inquiry ID obtained from the casino server 30 to the casino server 30.

[0174] If the result of the visit count confirmation is "Casino facility use permitted", the visit count confirmation processing unit 602 sends an affirmative response indicating that to the casino server 30. At that time, the visit count confirmation processing unit 602 sends an affirmative response including the inquiry ID obtained from the casino server 30 and the visitor ID of the person wishing to enter to the casino server 30.

[0175] The entry / exit control unit 603 is a means for controlling the entry and exit of casino facility users.

[0176] When the entry / exit control unit 603 receives a "user entry notice" from the casino server 30, it searches the entry user information database using the entry user ID included in the notice as a key to identify the corresponding entry. The entry / exit control unit 603 updates the personal identification item field and the entry history field of the identified entry using the personal identification items and the gate passage date and time included in the user entry notice.

[0177] If information is already set in the personal identification item field of the entry user information database, the entry / exit control unit 603 may or may not update the field.

[0178] Note that the entry / exit control unit 603 also performs control when a casino user exits the casino facility. Since the control related to exiting the casino facility is different from the gist of the present disclosure, a detailed description thereof is omitted. The entry / exit control unit 603 may receive the entry user ID and the exit history from an exit terminal (not shown in FIG. 3 etc.) installed at the exit of the casino facility and reflect the exit history in the entry user information database.

[0179] The storage unit 604 is a means for storing information necessary for the operation of the management server 50.

[0180] [Second PF Server] The second PF server 60 is a server that processes an entry user identification request transmitted from the management server 50. The second PF server 60 requests the certification authority server 70 to verify the electronic certificate for user certification due to the confirmation of the number of times of use of the user. Further, the second PF server 60 performs control regarding the ID (entry user ID) of the user subject to the number of times confirmation.

[0181] FIG. 21 is a diagram showing an example of the processing configuration (processing module) of the second PF server 60 according to the first embodiment. Referring to FIG. 21, the second PF server 60 includes a communication control unit 701, a verification control unit 702, and a storage unit 703.

[0182] The communication control unit 701 is a means for controlling communication with other devices. For example, the communication control unit 701 receives data (packets) from the management server 50. Also, the communication control unit 701 transmits data to the management server 50. The communication control unit 701 delivers the data received from other devices to other processing modules. The communication control unit 701 transmits the data acquired from other processing modules to other devices. In this way, other processing modules perform data transmission and reception with other devices via the communication control unit 701. The communication control unit 701 has a function as a receiving unit for receiving data from other devices and a function as a transmitting unit for transmitting data to other devices.

[0183] The verification control unit 702 is a means for performing control related to the validity verification of electronic certificates. The verification control unit 702 processes the admission applicant identification request received from the management server 50.

[0184] The admission applicant identification request transmitted from the management server 50 includes an electronic certificate for user authentication. The verification control unit 702 extracts the issuance number from the electronic certificate for user authentication and transmits a verification request including the extracted issuance number to the certification authority server 70.

[0185] The verification control unit 702 receives a response (positive response, negative response) to the verification request from the certification authority server 70.

[0186] When a negative response (the electronic certificate for user authentication is invalid) is received, the verification control unit 702 notifies the management server 50 that the admission applicant cannot be identified. Specifically, the verification control unit 702 transmits a negative response indicating that to the management server 50.

[0187] When a positive response (the electronic certificate for user authentication is valid) is received, the verification control unit 702 generates an account for the admission applicant. When a positive response is received, the verification control unit 702 searches the admission applicant management database using the issuance number of the electronic certificate for user authentication determined to be valid as a key.

[0188] The visitor management database is a database that stores by associating a visitor ID with the issuance number of an electronic certificate for user authentication (see Fig. 22). Note that the visitor management database shown in Fig. 22 is an example and is not intended to limit the items to be stored or the like.

[0189] If there is an entry corresponding to the issuance number of the electronic certificate for user authentication, the verification control unit 702 does not perform any special operation.

[0190] If there is no entry corresponding to the issuance number of the electronic certificate for user authentication, the verification control unit 702 generates a visitor ID for the person wishing to enter. Further, the verification control unit 702 stores the generated visitor ID and the issuance number of the electronic certificate for user authentication in the visitor management database.

[0191] Furthermore, when a positive response is received, the verification control unit 702 notifies the management server 50 that the person wishing to enter has been identified. Specifically, the verification control unit 702 transmits a positive response indicating that fact to the management server 50. At that time, the verification control unit 702 transmits a positive response including the visitor ID of the person wishing to enter to the management server 50.

[0192] The storage unit 703 is a means for storing information necessary for the operation of the second PF server 60.

[0193] [Certificate Authority Server] Fig. 23 is a diagram showing an example of the processing configuration (processing modules) of the certificate authority server 70 according to the first embodiment. Referring to Fig. 23, the certificate authority server 70 includes a communication control unit 801, a verification unit 802, and a storage unit 803.

[0194] The communication control unit 801 is a means for controlling communication with other devices. For example, the communication control unit 801 receives data (packets) from the first PF server 40. Also, the communication control unit 801 transmits data to the first PF server 40. The communication control unit 801 delivers the data received from other devices to other processing modules. The communication control unit 801 transmits the data acquired from other processing modules to other devices. In this way, other processing modules perform data transmission and reception with other devices via the communication control unit 801. The communication control unit 801 has a function as a receiving unit for receiving data from other devices and a function as a transmitting unit for transmitting data to other devices.

[0195] The verification unit 802 is a means for performing validity verification of electronic certificates. The verification unit 802 processes verification requests received from the first PF server 40 and the second PF server 60.

[0196] The verification unit 802 refers to a database that stores the issuance numbers of signature electronic certificates, the issuance numbers of user certification electronic certificates, the expiration periods of each certificate, etc., and performs validity verification of the signature electronic certificate and the user certification electronic certificate.

[0197] When a verification request is received from the first PF server 40 and the issuance number of the signature electronic certificate is included in the verification request, the verification unit 802 performs validity verification of the signature electronic certificate using the issuance number.

[0198] The verification unit 802 notifies the first PF server 40 of the verification result. When the signature electronic certificate is valid, the verification unit 802 transmits an affirmative response indicating that to the first PF server 40. At that time, the verification unit 802 transmits an affirmative response including the issuance number of the user certification electronic certificate stored in association with the issuance number of the signature electronic certificate to the first PF server 40.

[0199] When the signature electronic certificate is invalid, the verification unit 802 transmits a negative response indicating that to the first PF server 40.

[0200] When the verification request is received from the first PF server 40 and the issuance numbers of the electronic certificate for signature and the electronic certificate for user authentication are included in the verification request, the verification unit 802 verifies the validity of the two electronic certificates using these issuance numbers.

[0201] When both of the two electronic certificates (electronic certificate for signature, electronic certificate for user authentication) are valid, the verification unit 802 notifies the first PF server 40 that the two electronic certificates are valid. Specifically, the verification unit 802 transmits an affirmative response indicating that the two electronic certificates are valid to the first PF server 40.

[0202] When at least one of the two electronic certificates (electronic certificate for signature, electronic certificate for user authentication) is invalid, the verification unit 802 notifies the first PF server 40 that the electronic certificate is invalid. Specifically, the verification unit 802 transmits a negative response indicating that the electronic certificate is invalid to the first PF server 40.

[0203] When the verification request is received from the second PF server 60, the verification unit 802 verifies the validity of the electronic certificate for user authentication using the issuance number of the electronic certificate for user authentication included in the verification request.

[0204] The verification unit 802 notifies the second PF server 60 of the verification result. When the electronic certificate for user authentication is valid, the verification unit 802 transmits an affirmative response indicating that fact to the second PF server 60.

[0205] When the electronic certificate for user authentication is invalid, the verification unit 802 transmits a negative response indicating that fact to the second PF server 60.

[0206] The storage unit 803 is a means for storing information necessary for the operation of the certification authority server 70.

[0207] [System Operation] Next, the operation of the admission management system according to the first embodiment will be described. FIG. 24 is a sequence diagram showing an example of the operation of the admission management system according to the first embodiment. While referring to FIG. 24, the operation of the admission management system regarding the first personal verification will be described.

[0208] The reception terminal 10 reads out the signature electronic certificate from the user's My Number card and transmits a personal verification request including the signature electronic certificate to the casino server 30 (step S41).

[0209] The casino server 30 requests the first PF server 40 to perform personal verification using the signature electronic certificate. The casino server 30 transmits a personal verification request including the signature electronic certificate to the first PF server 40 (step S42).

[0210] The first PF server 40 requests the certification authority server 70 to verify the validity of the signature electronic certificate. The first PF server 40 transmits a verification request including the issue number of the signature electronic certificate to the certification authority server 70 (step S43).

[0211] The certification authority server 70 verifies the signature electronic certificate (step S44) and transmits the result to the first PF server 40 (step S45). If the signature electronic certificate is valid, the issue number of the user certification electronic certificate corresponding to the signature electronic certificate is notified to the first PF server 40.

[0212] The first PF server 40 transmits the result of the personal verification to the casino server 30 (step S46).

[0213] The casino server 30 transmits the result of the process regarding the personal verification request to the reception terminal 10 (step S47).

[0214] The reception terminal 10 notifies the user of the process result for the personal verification request (notifying the personal verification result; step S48). The reception terminal 10 outputs a message or the like according to the process result.

[0215] Next, while referring to FIG. 25, the operation of the admission management system for admission confirmation (personal confirmation and count confirmation after the second time) will be described.

[0216] The admission terminal 20 reads out the electronic certificate for user identification from the user's My Number card, and transmits an admission confirmation request including the electronic certificate for user identification to the casino server 30 (step S51).

[0217] The casino server 30 requests the first PF server 40 to perform personal confirmation using the electronic certificate for user identification. The casino server 30 transmits a personal confirmation request including the electronic certificate for user identification to the first PF server 40 (step S52).

[0218] Before and after transmitting the personal confirmation request, the casino server 30 transmits a count confirmation request including the electronic certificate for user identification to the management server 50 (step S53).

[0219] In response to receiving the personal confirmation request, the first PF server 40 executes processing related to verification of the electronic certificate (step S54). Specifically, the first PF server 40 transmits a verification request including the issue number of each of the two electronic certificates to the certification authority server 70.

[0220] In response to receiving the count confirmation request, the management server 50 executes processing related to identifying the admitted person (step S55). Specifically, the management server 50 transmits an admitted person identification request including the electronic certificate for user identification to the second PF server 60.

[0221] In response to the response from the certification authority server 70, the first PF server 40 generates a result for the personal confirmation request and transmits the confirmation result to the casino server 30 (step S56).

[0222] In response to the response from the second PF server 60, the management server 50 generates a result for the count confirmation request and transmits the confirmation result to the casino server 30 (step S57).

[0223] When the casino server 30 obtains the result of the identity verification request and the result of the count verification, it generates a result for the admission verification request and transmits it to the admission terminal 20 (step S58).

[0224] The admission terminal 20 notifies the user of the processing result for the admission verification request (step S59). The admission terminal 20 outputs a message or the like according to the processing result.

[0225] In this way, when the casino server 30 receives the electronic certificate for signature from the reception terminal 10 installed outside the casino facility, it starts the processing related to the first identity verification. Also, when the casino server 30 receives the electronic certificate for user identification from the admission terminal 20 installed at the entrance of the casino facility, it starts the processing for the second and subsequent identity verifications and count verifications. The casino server 30 permits an entrant who intends to enter the casino facility to enter the casino facility when the first PF server 40 succeeds in the identity verification and the management server 50 permits the entry of the entrant who intends to enter the casino facility.

[0226] As described above, in the admission management system according to the first embodiment, the identity verification and the count verification when entering the casino facility are performed in parallel. At that time, the identity verification and the count verification are performed using the electronic certificate for user identification obtained from the My Number card, so the user does not need to input a complex password (a 6- to 16-digit password) into the admission terminal 20. The user can enter the casino facility by a simple password (a 4-digit password) or face authentication. That is, for the user, the procedure for identity verification is simplified, so the convenience of the user is improved. Also, in the first embodiment, in the second and subsequent identity verifications, the identity verification using the electronic certificate for signature is automatically executed by the system, so there is no such thing as a reduction in the strength of the identity verification.

[0227] Subsequently, the hardware of each device constituting the admission management system will be described. FIG. 26 is a diagram showing an example of the hardware configuration of the casino server 30.

[0228] The casino server 30 can be configured by an information processing apparatus (so-called computer) and has a configuration exemplified in FIG. 26. For example, the casino server 30 includes a processor 311, a memory 312, an input / output interface 313, a communication interface 314, and the like. The components such as the processor 311 are connected by an internal bus or the like and are configured to be communicable with each other.

[0229] However, the configuration shown in FIG. 26 is not intended to limit the hardware configuration of the casino server 30. The casino server 30 may include hardware not shown, and may not include the input / output interface 313 if necessary. Also, the number of components such as the processor 311 included in the casino server 30 is not intended to be limited to the example shown in FIG. 26. For example, a plurality of processors 311 may be included in the casino server 30.

[0230] The processor 311 is a programmable device such as a CPU (Central Processing Unit), an MPU (Micro Processing Unit), or a DSP (Digital Signal Processor), for example. Alternatively, the processor 311 may be a device such as an FPGA (Field Programmable Gate Array) or an ASIC (Application Specific Integrated Circuit). The processor 311 executes various programs including an operating system (OS).

[0231] The memory 312 is a RAM (Random Access Memory), a ROM (Read Only Memory), an HDD (Hard Disk Drive), an SSD (Solid State Drive), or the like. The memory 312 stores an OS program, an application program, and various data.

[0232] The input / output interface 313 is an interface for a display device and an input device (not shown). The display device is, for example, a liquid crystal display or the like. The input device is a device that receives user operations such as a keyboard and a mouse.

[0233] The communication interface 314 is a circuit, a module, etc. that communicate with other devices. For example, the communication interface 314 includes a NIC (Network Interface Card) or the like.

[0234] The functions of the casino server 30 are realized by various processing modules. The processing modules are realized, for example, by the processor 311 executing a program stored in the memory 312. Further, the program can be recorded on a computer-readable storage medium. The storage medium can be a non-transitory one such as a semiconductor memory, a hard disk, a magnetic recording medium, and an optical recording medium. That is, the present invention can also be embodied as a computer program product. Also, the above program can be downloaded via a network or updated using a storage medium storing the program. Furthermore, the above processing module may be realized by a semiconductor chip.

[0235] Note that the first PF server 40, the management server 50, the second PF server 60, the certification authority server 70, etc. can also be configured by an information processing device in the same manner as the casino server 30, and the basic hardware configuration is not different from that of the casino server 30, so the description is omitted.

[0236] The casino server 30, which is an information processing device, is equipped with a computer, and the functions of the casino server 30 can be realized by causing the computer to execute a program. Also, the casino server 30 executes a control method of the casino server 30 according to the program.

[0237] [Modification Example] Note that the configuration, operation, etc. of the admission management system described in the above embodiments are examples, and are not intended to limit the configuration of the system.

[0238] In the above embodiment, it was described that the user undergoes the first identity verification using the reception terminal 10. However, the first identity verification may be performed by a terminal such as a smartphone possessed by the user. The user's terminal may read the signature electronic certificate from the My Number card and transmit an identity verification request including the read signature electronic certificate to the casino server 30.

[0239] In the above embodiment, it was described that the admission verification (second and subsequent identity verifications and count verification) when entering the casino facility is performed by the admission terminal 20. However, the admission verification may be performed by the reception terminal 10 installed outside the casino facility. In this case, the admission terminal 20 may hold the biometric information of the user whose admission has been permitted for a predetermined period (for example, 30 minutes) and permit the user who has succeeded in biometric authentication during the predetermined period to pass through the gate. Note that the admission terminal 20 may acquire the biometric information of the user whose admission has been permitted directly from the reception terminal 10 or indirectly via the casino server 30. With such a measure, the procedure for the user to have the admission terminal 20 read the user authentication electronic certificate of the My Number card becomes unnecessary. That is, the admission terminal 20 can acquire biometric information without acquiring the user authentication electronic certificate from the My Number card and control the passage of the user by biometric authentication (1-to-N authentication) using the biometric information. In other words, in the present disclosure, the function related to admission verification provided in the admission terminal 20 may be provided in the reception terminal 10 (kiosk terminal), and the admission terminal 20 may have a gate function for controlling the passage of the user.

[0240] The casino server 30 may store the biometric information (face image) of users who have successfully completed the initial identity verification or subsequent identity verifications. Further, the casino server 30 may store the face image of the user together with personal identification details (such as name, date of birth, etc.). The casino server 30 may use the stored biometric information to identify users who have visited the casino or IR facility and utilize it for various services. For example, the casino server 30 may identify a user through biometric authentication at the time of entry verification and output a message regarding the identified user from the entry terminal 20. For example, the casino server 30 may output a message welcoming the user to the casino (such as a message like "Thank you for visiting, Mr. / Ms. A").

[0241] When notifying the user of permission or non - permission to enter the casino, the entry terminal 20 may also notify the user of the casino usage status, etc. For example, the entry terminal 20 may notify information such as "how many times the user has entered in 7 days" or "the number of times the user can enter in the next 7 days". Alternatively, when notifying the user that entry to the casino is not permitted, the entry terminal 20 may notify the user of the period until the entry limit (short - term or long - term entry limits of 7 days or 28 days) is lifted (for example, the period after 3 days when the user can re - enter the casino facility). In this case, the management server 50 may generate the above - mentioned casino usage status information and notify the entry terminal 20 of the casino usage status information via the casino server 30.

[0242] When determining whether a user can enter the casino facility, the casino server 30 and the management server 50 may verify the existence of a sworn statement (such as a sworn statement stating that the user does not belong to anti - social forces, etc.) made by the user.

[0243] In the above embodiment, in the personal verification during the admission verification, it has been described that the first PF server 40 transmits a verification request including the issuance number of the electronic certificate for signature and the issuance number of the electronic certificate for user verification to the certification authority server 70. However, the first PF server 40 may transmit a verification request including the issuance number of the electronic certificate for signature and a verification request including the issuance number of the electronic certificate for user verification to the certification authority server 70 respectively. The certification authority server 70 may verify each verification request and transmit the verification result to the first PF server 40.

[0244] Alternatively, the first PF server 40 may not request the certification authority server 70 to verify the validity of the electronic certificate for user verification during the second and subsequent personal verifications.

[0245] In the above embodiment, the case where the inquiry ID is transmitted to the management server 50 when the casino server 30 requests the management server 50 for the number confirmation has been described. The casino server 30 may also transmit the inquiry ID to the first PF server 40 when requesting the first PF server 40 for personal verification.

[0246] In the above embodiment, it has been described that the casino server 30 transmits the electronic certificate to the first PF server 40 and the management server 50 transmits the electronic certificate to the second PF server 60. That is, the casino server 30 and the management server 50 transmit the electronic certificate to different platform servers and request the authentication procedure. However, the casino server 30 and the management server 50 may request the authentication procedure to the same platform server. In other words, the functions of the first PF server 40 and the second PF server 60 may be integrated and a single platform server may provide the authentication service.

[0247] In the above-described embodiment, the case where various databases are configured inside each server has been described. However, the database may be constructed in an external database server or the like. That is, some functions of each server or the like may be implemented in another server. More specifically, as long as the "identity verification processing unit (identity verification processing means)", "admission verification processing unit (admission verification processing means)", etc. described above are implemented in any device included in the system.

[0248] The form of data transmission and reception between each device (reception terminal 10, admission terminal 20, casino server 30, etc.) is not particularly limited. However, the data transmitted and received between these devices may be encrypted. Between these devices, electronic certificates and the like are transmitted and received. In order to appropriately protect the information of the electronic certificate, it is desirable that encrypted data is transmitted and received.

[0249] In the flowcharts (flowcharts, sequence diagrams) used in the above description, a plurality of steps (processes) are described in order. However, the execution order of the steps executed in the embodiment is not limited to the described order. In the embodiment, for example, the order of the illustrated steps can be changed within a range that does not affect the content, such as executing each process in parallel.

[0250] The above-described embodiment has been described in detail to facilitate the understanding of the disclosure of the present application, and it is not intended that all the configurations described above are necessary. Further, when a plurality of embodiments are described, each embodiment may be used alone or in combination. For example, it is also possible to replace a part of the configuration of an embodiment with the configuration of another embodiment, or to add the configuration of another embodiment to the configuration of an embodiment. Furthermore, it is possible to add, delete, or replace other configurations for a part of the configuration of the embodiment.

[0251] From the above description, the industrial applicability of the present invention is clear. However, the present invention is suitably applicable to an admission management system that manages the entry and exit of a casino facility.

[0252] Some or all of the above embodiments may be described as follows in the appended claims, but are not limited thereto. [Appendix 1] A facility server that controls the entry of users into the facility, and A first platform server that performs an authentication procedure using an electronic certificate stored in an identity certificate, including The facility server When performing the first identity verification required before the user enters the facility, transmits the first electronic certificate stored in the identity certificate to the first platform server, When performing the subsequent identity verifications required when the user enters the facility, transmits the second electronic certificate stored in the identity certificate to the first platform server, The first platform server Stores the first identification information of the first electronic certificate and the second identification information of the second electronic certificate in association with each other, At the time of the subsequent identity verifications, extracts the second identification information from the second electronic certificate, and performs processing related to the subsequent identity verifications using at least the first identification information corresponding to the extracted second identification information. A system. [Appendix 2] Further includes a certification authority server that verifies the validity of the first and second electronic certificates, The first platform server transmits the first identification information to the certification authority server, The certification authority server verifies the validity of the first electronic certificate based on the first identification information, and when the verification is successful, transmits the second identification information corresponding to the first identification information to the first platform server. The system according to Appendix 1. [Appendix 3] The facility server performs processing related to the frequency confirmation of the facility in parallel with the subsequent identity verifications. The system according to Appendix 1 or 2. [Appendix 4] A management server that manages the usage status of the facility, A second platform server that performs an authentication procedure using the electronic certificate stored in the identity certificate, and further includes The facility server transmits the second electronic certificate to the management server. The management server requests the second platform server to identify an entrant who attempts to enter the facility by transmitting the second electronic certificate. When the second electronic certificate is valid, the second platform server transmits the entrant ID of the entrant to the management server. The management server permits an entrant who attempts to enter the facility to enter the facility when the usage history corresponding to the entrant ID does not violate the usage limit regarding the facility, according to the system described in Supplementary Note 3. [Supplementary Note 5] The facility server When the first platform server succeeds in the identity verification and the management server permits an entrant who attempts to enter the facility to enter the facility, the facility server permits an entrant who attempts to enter the facility to enter the facility, according to the system described in Supplementary Note 4. [Supplementary Note 6] When the facility server receives the second electronic certificate from an entrance terminal installed at the entrance of the facility, the facility server starts the processing for the second and subsequent identity verifications and the usage limit verification, according to the system described in Supplementary Note 4 or 5. [Supplementary Note 7] The entrance terminal acquires a password or biometric information for reading the second electronic certificate, according to the system described in Supplementary Note 6. [Supplementary Note 8] When the facility server receives the first electronic certificate from a reception terminal installed outside the facility, the facility server starts the processing related to the first identity verification, according to the system described in any one of Supplementary Notes 1 to 7. [Supplementary Note 9] The reception terminal acquires a password for reading the first electronic certificate, according to the system described in Supplementary Note 8. [Supplementary Note 10] The system according to any one of appendices 1 to 9, wherein the identification card is a My Number Card. [Appendix 11] The system described in Appendix 10, wherein the first electronic certificate is a signature electronic certificate and the second electronic certificate is a user authentication electronic certificate. [Appendix 12] an identity verification processing unit that transmits a first electronic certificate stored in the identification card to a first platform server that performs an authentication procedure using the electronic certificate stored in the identification card at the time of initial identity verification required before the user enters a facility; an entrance confirmation processing unit that transmits a second electronic certificate stored in the identification card to the first platform server at the second or subsequent identity confirmation required when the user enters the facility; A server device comprising: [Appendix 13] In the server device, At the time of initial identity verification required before the user enters the facility, a first electronic certificate stored in the identification card is transmitted to a first platform server that performs an authentication procedure using the electronic certificate stored in the identification card; A method for controlling a server device, which transmits a second electronic certificate stored in the identification card to the first platform server when the user is required to enter the facility for the second or subsequent identity verification. [Appendix 14] The computer installed in the server device a process of transmitting a first electronic certificate stored in the identification card to a first platform server that performs an authentication procedure using the electronic certificate stored in the identification card at the time of initial identity verification required before the user enters a facility; a process of transmitting a second electronic certificate stored in the identification card to the first platform server at the second or subsequent identity verification required when the user enters the facility; A computer-readable storage medium that stores a program for executing the above.

[0253] Note that each disclosure of the above-cited prior art documents is incorporated herein by reference. Although the embodiments of the present invention have been described above, the present invention is not limited to these embodiments. It will be understood by those skilled in the art that these embodiments are merely illustrative and that various modifications can be made without departing from the scope and spirit of the present invention. That is, the present invention naturally includes all disclosures including the claims, various modifications and corrections that can be made by those skilled in the art according to the technical idea.

Explanation of Signs

[0254] 10 Reception Terminal 20 Entrance Terminal 30 Casino Server 40 First PF Server 50 Management Server 60 Second PF Server 70 Certification Authority Server 101 Facility Server 102 First Platform Server 201 Communication Control Unit<� 202 Identity Verification Control Unit 203 Storage Unit 301 Communication Control Unit 302 Entrance Control Unit 303 Gate Control Unit 304 Storage Unit 311 Processor 312 Memory 313 Input / Output Interface 314 Communication Interface 401 Communication Control Unit 402 Identity Verification Processing Unit 403 Entrance Verification Processing Unit 404 Entrance Notification Unit 405 Storage Unit 501 Communication Control Unit 502 Verification Control Unit 503 Storage Unit 601 Communication Control Unit 602 Number Confirmation Processing Unit 603 Entry / Exit Control Unit 604 Memory Unit 701 Communication Control Unit 702 Verification Control Unit 703 Memory Unit 801 Communication Control Unit 802 Verification Unit 803 Memory Unit

Claims

【Claim 1】 A facility server that controls the admission of users to a facility, A platform server that performs an authentication procedure using first and second electronic certificates stored in an identity certificate, A certification authority server, Including, The facility server, When performing the first identity verification required before the user enters the facility, transmits the first electronic certificate to the platform server, The platform server transmits the first identification information of the received first electronic certificate to the certification authority server, When the certification authority server succeeds in verifying the validity of the first electronic certificate based on the received first identification information, transmits the second identification information of the second electronic certificate to the platform server, The platform server stores the first identification information transmitted to the certification authority server in association with the second identification information received from the certification authority server, The facility server transmits the second electronic certificate to the platform server when performing subsequent identity verifications required when the user enters the facility, The platform server extracts the second identification information from the second electronic certificate during subsequent identity verifications, and performs processing related to subsequent identity verifications using at least the first identification information corresponding to the extracted second identification information. A system.

Citation Information

Patent Citations

  • Information provision program, information processing device and information provision method

    JP2019133224A

  • Information processing system, method, device and program

    JP2021135813A

  • Entry management system, entry management device, entry management method, and computer program

    JP2021144757A