Key management device

The key management device facilitates independent user access to keys with pre-approved administrator permissions and time-based settings, addressing the inconvenience of requiring constant administrator verification.

JP7717937B2Active Publication Date: 2025-08-04GLORY LTD
View PDF 10 Cites 0 Cited by

Patent Information

Application Number
JP2024165627
Authority / Receiving Office
JP · JP
Patent Type
Patents
Current Assignee / Owner
Filing Date
2024-09-24
Publication Date
2025-08-04
Estimated Expiration
2039-10-18

AI Technical Summary

Technical Problem

Existing key management systems require administrator authentication in addition to user authentication, leading to inconvenience when the administrator is absent.

Method used

A key management device that allows pre-approval by an administrator, enabling users to take out keys based on stored information without real-time administrator verification, with options for single-user authentication and time-based permissions.

Benefits of technology

Enables convenient key management by allowing users to access keys independently under certain conditions, improving usability and flexibility.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure 0007717937000001
    Figure 0007717937000001
  • Figure 0007717937000002
    Figure 0007717937000002
  • Figure 0007717937000003
    Figure 0007717937000003
Patent Text Reader

Abstract

To allow administrators to manage keys without compromising convenience of users.SOLUTION: A key management device, which manages keys connected to a storage member, includes a storage part that locks the stored storage member and unlocks the same to allow removal of the storage member when a user is authenticated and an administrator approves, a memory unit that stores information indicating that the administrator has approved beforehand removal of the storage member by the user, and a control unit that allows removal of the storage member from the storage part without renewed approval by the administrator when information indicating prior approval by the administrator is saved in the memory unit at the time of authentication of the user requesting removal of the storage member.SELECTED DRAWING: Figure 1
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] This invention relates to a key management device for managing keys.

Background Art

[0002] Conventionally, key management devices capable of managing multiple keys have been used. For example, in the stores of financial institutions and retail stores, multiple keys including keys for operating devices installed in the store and keys for opening and closing the doors of locations managed within the store are used. The key management device can restrict the extraction of each key from the device.

[0003] For example, Patent Document 1 discloses a key management device that performs authentication processing for two persons: a key user and an administrator who approves the use of the key. This device locks and manages each key housed in the device so that it cannot be removed from the device. The device performs biometric authentication of the user and the administrator, and unlocks the lock so that the user can take out the key only when both are properly authenticated. Thereby, the administrator can strictly manage the keys using the key management device.

Prior Art Documents

Patent Documents

[0004]

Patent Document 1

Summary of the Invention

Problems to be Solved by the Invention

[0005] However, in the above prior art, in addition to the authentication process of the user, it is necessary to perform the authentication process of the administrator. Therefore, when the administrator is absent, the user cannot take out the key from the device, and there is a problem that the convenience is impaired.

[0006] The present invention has been made in view of the problems of the above prior art, and an object thereof is to provide a key management device that enables a manager to manage keys without impairing the convenience of users.

Means for Solving the Problems

[0007] The present invention is a key management device for managing keys connected to a housing member, which locks the housed housing member and unlocks the lock when user authentication and administrator approval are performed, enabling the housing member to be taken out, and a storage unit that stores information indicating that the administrator has pre-approved the user's taking out of the housing member, and when the storage unit stores the information indicating the pre-approval by the administrator at the time of authenticating the user who requests the taking out of the housing member, a control unit that enables the housing member to be taken out of the housing unit without new approval by the administrator.

[0008] Further, the present invention further includes an operation unit that receives input of information in the above invention, and the information indicating the pre-approval by the administrator is stored in the storage unit based on the operation performed by the administrator on the operation unit.

[0009] Further, the present invention is characterized in that, in the above invention, the information indicating the pre-approval by the administrator is stored in the storage unit based on the operation performed by the administrator on the terminal device connected to the key management device.

[0010] Further, the present invention is characterized in that, in the above invention, the storage unit stores conditions for determining whether to approve the user's taking out of the housing member based on the pre-approval by the administrator, and when the control unit determines that the conditions are satisfied, the control unit enables the housing member to be taken out of the housing unit.

[0011] Further, the present invention is characterized in that, in the above invention, the condition is a time zone in which the user's taking out of the housing member is approved based on the pre-approval by the administrator.

[0012] Further, in the present invention, in the above invention, a display unit for displaying information is further provided, and the control unit displays, on the display unit, information indicating whether or not the user can take out the storage member based on prior approval by the administrator.

[0013] Further, in the present invention, in the above invention, a storage unit that locks the stored storage member and unlocks the lock to enable the storage member to be taken out when the user is authenticated is further provided, and the control unit, when the user is authenticated, requests both the user authentication and the administrator approval for unlocking the lock if the storage unit stores the information indicating the prior approval by the administrator, and enables the storage member to be taken out from each storage unit by both the storage unit that requests both the user authentication and the administrator approval for unlocking the lock and the storage unit that requests only the user authentication for unlocking the lock.

[0014] Further, in the present invention, in the above invention, a display unit having different display modes is further provided for the storage unit provided corresponding to each storage unit, where one storage unit requests both the user authentication and the administrator approval for unlocking the lock, and the other storage unit requests only the user authentication for unlocking the lock.

Advantages of the Invention

[0015] The key management device according to the present invention can manage keys that require administrator approval for use without impairing the convenience of the user.

Brief Description of the Drawings

[0016]

Figure 1

Figure 2

Figure 3

Figure 4

Figure 5

Figure 6

Figure 7

Figure 8

Figure 9

Figure 10

DETAILED DESCRIPTION OF THE INVENTION

[0017] Hereinafter, with reference to the accompanying drawings, preferred embodiments of the key management device according to the present invention will be described in detail.

EXAMPLE

[0018] <Outline of the key management device according to Example 1> First, the outline of the key management device according to Example 1 will be described. FIG. 1 is a diagram for explaining the outline of the key management device 10 according to Example 1. In the stores of financial institutions and retail stores, a plurality of keys are used. The plurality of keys include a key for operating equipment installed in the store and a key for opening and closing the doors of locations managed in the store. The key management device 10 is installed and used in the store and manages one or more key holders connected to the keys. One key holder can connect one or more keys. The number of key holders managed by the key management device 10 and the number of keys attached to each key holder are not particularly limited.

[0019] The key holder is housed in a housing portion provided in the key management device 10. The key holder functions as a housing member that houses the key in a connected state in the housing portion. The key management device 10 manages the key holder housed in the housing portion by locking it so that it cannot be taken out of the housing portion. Specifically, when the user inserts the key holder into the hole of the housing portion, the key management device 10 locks the key holder so that it cannot be removed from the housing portion. The key holder and the housing portion are associated with each other on a one-to-one basis, and only one key holder corresponding to each housing portion can be housed in each of the plurality of housing portions.

[0020] The key management device 10 has a door that closes a key storage portion provided with a plurality of housing portions. This door is normally locked. The key management device 10 executes an authentication process for the user to confirm that the user has the authority to take out the key holder from the key management device 10. When the authority can be confirmed, the key management device 10 unlocks the door of the key storage portion and releases the lock of the key holder that the user can take out. As a result, the user can take out the target key holder from the housing portion of the key management device 10. After taking out the key holder from the key management device 10 and using the key, the user returns the key to the key management device 10 by returning the key holder to the housing portion.

[0021] The processing content of the authentication process for taking out the key holder can be set for each housing portion, that is, for each key holder. For example, for a key holder to which an important key is connected, it can be set to require approval from the administrator when taking it out from the key management device 10. Specifically, in addition to the authentication process of the user himself / herself, it can be set so that the key holder cannot be taken out from the housing portion unless the authentication process of the administrator who approves the use of the key is performed.

[0022] In a store, there may be cases where multiple users use the same key. For example, while requiring administrator approval for users who use the key occasionally, there may be cases where administrator approval is omitted for users who frequently use the same key. The key management device 10 is capable of coping with such usage modes.

[0023] Specifically, in the key management device 10, for each user permitted to take out a key holder that requires administrator approval, it is possible to set the presence or absence of single authentication authority and the single authentication available time. A user without single authentication authority cannot take out a key holder that requires administrator approval from the storage unit unless the user himself / herself authentication process and the administrator authentication process are performed. A user with single authentication authority can perform the authentication process alone by the user and take out a key holder that requires administrator approval from the storage unit.

[0024] In addition, in the key management device 10, for each user with single authentication authority, it is possible to set the single authentication available time. Thereby, it is possible to limit the time period during which a key holder that requires administrator approval can be taken out by the single authentication process of the user alone. The single authentication available time can be set by specifying a time period, for example, from 5 o'clock to 6 o'clock, or for 1 hour from 5 o'clock. When the single authentication available time is set, even a user with single authentication authority cannot take out a key holder that requires administrator approval from the storage unit alone outside the set time period. In this case, the user, like a user without single authentication authority, cannot take out the key holder unless two-factor authentication of the user and the administrator is performed.

[0025] Note that the setting of the single authentication authority is not limited to the mode set for each user, and may also be in a mode set for each storage unit, that is, for each key holder. Also, regarding the setting of the single authentication available time, it is not limited to the mode set for each user with single authentication authority, and may also be in a mode set for each storage unit, that is, for each key holder.

[0026] As shown in FIG. 1, the key management device 10 has an operation display unit 13 and a card reader / writer (hereinafter referred to as "R / W unit") 14. The key management device 10 also manages accommodation unit information. The accommodation unit information includes information on the key holders accommodated in each accommodation unit, that is, information on the users who have the right to use the keys connected to the key holders. The accommodation unit information also includes information indicating that approval from the administrator is required for the use of important keys. Furthermore, the accommodation unit information includes information on single authentication authority and single authentication available time. In the accommodation unit information, each piece of information is managed for each accommodation unit.

[0027] When taking out a key holder from an accommodation unit set to require administrator approval, as shown in FIG. 1, user A without single authentication authority needs to take out the key holder from the key management device 10 together with administrator X. When user A and administrator X each hold their cards over the R / W unit 14, the R / W unit 14 reads the user information recorded on each card (step S1). The user information includes information for identifying the card holder. The key management device 10 performs authentication processing for user A based on the user information read from user A's card and performs authentication processing for the administrator based on the user information read from administrator X's card (step S2). When user A is authenticated, the key management device 10 unlocks the door of the key storage unit (step S3).

[0028] The key management device 10 compares the user information of user A with the accommodation unit information to identify the key holders that user A can take out from the key management device 10 (step S4). The key holders that user A can take out include key holders that do not require administrator approval and key holders that require administrator approval. Among these, when user A is authenticated, the removal of key holders that do not require administrator approval is permitted. When administrator X is authenticated, the removal of key holders that require administrator approval is also permitted. The key management device 10 identifies the key holders that can be permitted for user A to take out by the authentication processing of administrator X. As a result, in addition to key holders that do not require administrator approval, user A can take out key holders that require administrator approval.

[0029] When a key holder that can be taken out by user A is determined by the authentication process of user A and the authentication process of administrator X, the key management device 10 unlocks the storage unit 16 of the key holder that can be taken out. In addition, the key management device 10 notifies user A of the position of this storage unit 16 (step S5). In the notification process, for example, the holder lamp of each storage unit that notifies the position lights up. Also, for example, information indicating the position of the storage unit from which the key holder can be taken out is displayed on the screen of the operation display unit 13. As a result, user A can confirm the position of the storage unit 16 in which the target key holder is stored and take out the key holder from this storage unit 16 (step S6).

[0030] A user with individual authentication authority can, as shown in FIG. 1, perform the authentication process alone and take out the key holder from the key management device 10. When user B, who has individual authentication authority, alone holds the card over the R / W unit 14, the R / W unit 14 reads the user information from the card (step S1'). The key management device 10 performs the authentication process of user B based on the user information of the card (step S2'). When user B is authenticated, the key management device 10 unlocks the door of the key storage unit (step S3').

[0031] The key management device 10 collates the user information of user B with the storage unit information to identify the key holder that user B can take out from the key management device 10 (step S4). The key holders that user B can take out include key holders that do not require administrator approval and key holders that require administrator approval. Since user B has individual authentication authority, in addition to key holders that do not require administrator approval, the taking out of key holders that require administrator approval is also permitted.

[0032] When a key holder that can be taken out by User B is identified through the authentication process of User B alone, the key management device 10 unlocks the storage section 16 of the key holder that can be taken out and notifies User B of the position of this storage section 16 (step S5). Thereby, User B can take out the target key holder from the storage section (step S6).

[0033] In addition, when a single authentication available time is set, a key holder that requires administrator approval can be taken out only within the set time. When User B executes the authentication process outside the set time of the single authentication available time, the key management device 10 displays, on the operation display section 13, information indicating that a key holder that requires administrator approval cannot be taken out because it is outside the time.

[0034] For example, when the business hours of the store are set as the single authentication available time, User B cannot take out a key holder that requires administrator approval from the key management device 10 alone before the store opens and after it closes. By setting that a key holder cannot be taken out by a single authentication process even for a user with single authentication authority during the off-peak hours with few people, the key can be strictly managed.

[0035] Also, for example, when the off-peak hours are set as the single authentication available time, User B cannot take out a key holder that requires administrator approval from the key management device 10 alone during business hours. When the administrator is in the store during business hours and absent after business hours, by setting it this way, User B can take out the key holder alone even after business hours when the administrator is absent, improving convenience.

[0036] As described above, in the key management device 10 according to the first embodiment, for each user who is given the right to take out the key holder from the storage unit set to require administrator approval, it is possible to set whether or not there is a single authentication right. As a result, a user with a single authentication right can independently take out the key holder from the storage unit of the key management device 10, improving the convenience of the key management device 10. Further, in the key management device 10, for each user with a single authentication right, it is possible to set a single authentication available time during which the key holder can be taken out by a single authentication process.

[0037] <External Configuration of Key Management Device 10> Next, the appearance of the key management device 10 will be described. FIG. 2 is a perspective view showing the appearance of the key management device 10 shown in FIG. 1. As shown in FIG. 2, the key management device 10 includes an operation display unit 13, an R / W unit 14, a storage unit 16, a holder lamp 15, a key storage unit 18 provided with a plurality of storage units 16, and a door locking unit 12.

[0038] The operation display unit 13 is, for example, a touch panel type display. The operation display unit 13 functions as an operation unit that receives input of various information by the user. Further, the operation display unit 13 functions as a display unit that displays various information on the screen.

[0039] The R / W unit 14 reads the user information recorded on the card carried by the user. Further, the R / W unit 14 can also write data to the card. For example, the R / W unit 14 reads the user information stored in the internal memory from a non-contact type IC card using non-contact communication technology. However, the type of the card is not particularly limited, and a reader / writer device corresponding to the type of the card is used as the R / W unit 14. For example, a mode using a contact type IC card may be used, or a mode using a magnetic card that magnetically records information may be used.

[0040] The key storage unit 18 is provided with a plurality of storage units 16. The key storage unit 18 is provided with a door for closing the key storage unit 18 so that the key holder cannot be taken out. The door locking unit 12 locks and unlocks this door. For example, an electromagnetic lock mechanism is used as the door locking unit 12.

[0041] Each storage unit 16 removably stores, for example, a key holder connected to a key by a ring. Each storage unit 16 is provided with a lock mechanism (not shown) so that the removal of the key holder can be permitted or prohibited. The key management device 10 permits or prohibits the removal of the key holder by controlling the lock mechanisms of the respective storage units 16.

[0042] A holder lamp 15 is provided near each storage unit 16. The key management device 10 notifies the position of the storage unit 16 from which the user can take out the key holder by lighting the holder lamp 15.

[0043] For example, LEDs that can emit light in a plurality of different colors are used as the holder lamp 15. The key management device 10 can light or blink each holder lamp 15 in a plurality of different colors. The key management device 10 can notify the difference in the types of key holders stored in each storage unit 16, that is, the difference in the keys connected to the key holders, by changing the combination of the emission color and emission mode of the holder lamp 15. For example, by changing at least one of the emission color and emission mode of the holder lamp 15, the storage unit 16 for the key holder that does not require administrator approval for removal and the storage unit 16 for the key holder that requires administrator approval are notified separately.

[0044] <Internal Configuration of Key Management Device 10> Next, the internal configuration of the key management device 10 will be described. FIG. 3 is a functional block diagram showing the internal configuration of the key management device 10 shown in FIG. 1. As shown in FIG. 3, the key management device 10 includes a key management control unit 11, a door locking unit 12, an operation display unit 13, an R / W unit 14, a holder lamp 15, a storage unit 16, and a storage unit 17. The storage unit 17 stores storage unit information. For example, a hard disk or a non-volatile memory is used as the storage unit 17.

[0045] The key management control unit 11 controls each part of the key management device 10. Through this control, the functions and operations of the key management device 10 described in the first embodiment are realized. The key management control unit 11 includes a reception unit 11a, a registration unit 11b, an authentication unit 11c, a determination unit 11d, and a notification unit 11e. Actually, programs corresponding to these functional units are stored in a ROM or a non-volatile memory (not shown), and these programs are loaded into the CPU and executed. As a result, processes corresponding to the reception unit 11a, the registration unit 11b, the authentication unit 11c, the determination unit 11d, and the notification unit 11e are executed respectively.

[0046] The reception unit 11a receives a registration instruction for the storage unit 16 input by the administrator from the operation display unit 13, and notifies the registration instruction to the registration unit 11b. When receiving the registration instruction, the registration unit 11b registers the information input by the administrator from the operation display unit 13 in the storage unit information of the storage unit 17. Thereby, the administrator can set the single authentication authority and the single authentication available time.

[0047] The authentication unit 11c executes an authentication process based on the user information read by the R / W unit 14 from the card. In the authentication process, it is determined whether the user has the authority to take out the key holder. Also, it is determined whether the administrator has the authority to approve the taking out of the key holder. Note that the method of the authentication process is not limited to the mode performed based on the user information recorded on the card. For example, the authentication process may be performed in a mode where a preset code is input to the operation display unit 13. Also, for example, the authentication process may be performed by biometric authentication using biometric identification information such as face, fingerprint, and palmprint.

[0048] Based on the user information read by the R / W unit 14, the determination unit 11d determines whether a setting requiring administrator approval is made for the storage unit 16 from which the user can take out the key holder. If a setting requiring administrator approval is made, subsequently, the determination unit 11d determines whether the user has a single authentication privilege and whether it is within the single authentication available time. Thereby, it is determined whether the user can take out the key holder that requires administrator approval from the storage unit 16 alone. Based on the determination result, the determination unit 11d unlocks the key holder in the storage unit 16 from which the user can take out the key holder.

[0049] Based on the determination result of the determination unit 11d, the notification unit 11e notifies the position of the storage unit 16 from which the user can take out the key holder. The notification is performed by lighting the holder lamp 15 of the corresponding storage unit 16. The notification unit 11e lights the holder lamps 15 of the storage units 16 from which the key holder can be taken out without administrator approval and the holder lamps 15 of the storage units 16 from which the key holder cannot be taken out without administrator approval in different colors.

[0050] <User Information and Storage Unit Information> Next, the user information and the storage unit information will be described. FIG. 4 is a diagram showing an example of the user information and the storage unit information used in the key management device 10 shown in FIG. 1. FIG. 4(a) shows an example of the user information stored in the IC card held by User A. The user information read from the IC card by the R / W unit 14 includes a user item and an administrator item. In the user item, information for identifying the holder of the IC card is registered. In the administrator item, information for identifying the administrator who approves the taking out of the key holder is registered. FIG. 4(a) shows that the IC card storing this user information is held by User A, and when User A takes out the key holder that requires administrator approval, it is necessary to obtain the approval of Administrator X.

[0051] As shown in FIG. 4(b), the storage unit information stored in the storage unit 17 of the key management device 10 includes items such as storage unit number, administrator approval setting, user, individual authentication authority, and individual authentication available time. In the example of FIG. 4(b), for the storage unit 16 with the storage unit number "1", since approval from the administrator is required to take out the key holder, the item of the administrator approval setting is set to "yes".

[0052] Regarding the storage unit 16 with the storage unit number "1", since two users, User A and User B, have the authority to take out the key holder, the user item is set to "User A" and "User B". Since User A does not have the individual authentication authority, the individual authentication authority is set to "no". Therefore, when taking out the key holder from the storage unit 16 with the storage unit number "1", User A needs to perform the take-out operation together with Administrator X as described in FIG. 1. After the authentication process confirms that it is User A, based on the user information shown in FIG. 4(a), on the condition that Administrator X has performed the authentication process, User A can take out the key holder from the storage unit 16 with the storage unit number "1".

[0053] On the other hand, since User B has the individual authentication authority, as shown in FIG. 4(b), the item of the individual authentication authority is set to "yes". Therefore, User B can, as described in FIG. 1, perform the authentication process alone and, after confirming that it is User B, can take out the key holder from the storage unit 16 with the storage unit number "1".

[0054] In the example shown in FIG. 4(b), for User B, the item of the individual authentication available time is set to "8:00~18:00". Therefore, the time period during which User B can perform the individual authentication process and take out the key holder from the storage unit 16 with the storage unit number "1" is restricted to from 8:00 to 18:00. If User B takes out the key holder from the storage unit 16 with the storage unit number "1" after 18:00 until 8:00 the next morning, User B needs to have the administrator perform the authentication process. For example, if the administrator who approves the take-out of the key holder in User B's user information is set to Administrator X, User B will perform the take-out operation together with Administrator X, similar to User A.

[0055] In the example shown in FIG. 4(b), in the storage unit 16 with the storage unit number "2", since the extraction of the key holder does not require the approval of the administrator, the item of the administrator approval setting is set to "none". Regarding this storage unit 16, since user A has the authority to extract the key holder, the item of the user is set to "user A". In this storage unit 16, since the extraction of the key holder does not require administrator approval, whether user A performs the authentication process alone or together with administrator X, user A can extract the key holder from the storage unit 16 with the storage unit number "2".

[0056] In the example of FIG. 4, for example, when user A performs the authentication process alone, the holder lamp 15 lights up in the storage unit 16 with the storage unit number "2". On the other hand, when user A performs the authentication process together with administrator X, the holder lamp 15 lights up in the storage unit 16 with the storage unit number "1" and the storage unit 16 with the storage unit number "2". At this time, the holder lamp 15 of the storage unit 16 with the storage unit number "2" that does not require administrator approval for the extraction of the key holder and the holder lamp 15 of the storage unit 16 with the storage unit number "1" that requires administrator approval light up in different colors.

[0057] <Processing Procedure for Key Extraction> Next, the processing procedure for extracting the key holder from the key management device 10 will be described. FIG. 5 is a flowchart showing the processing procedure for extracting the key holder from the key management device 10 shown in FIG. 1. FIG. 5 shows the flow of the process performed after the authentication process of the user and the administrator, or the authentication process of the user alone is completed.

[0058] When the authentication process is completed, the determination unit 11d collates the user information and the storage unit information, and determines whether the authenticated user has the authority to extract the key holder from the storage unit 16 (step S101). If the authenticated user is not registered in the user item of the storage unit information (step S102; No), the determination unit 11d displays on the operation display unit 13 that there is no storage unit 16 from which the key holder can be extracted (step S103), and ends this process.

[0059] When an authenticated user is registered in the storage unit information (step S102; Yes), the determination unit 11d determines whether or not a setting that requires administrator approval is set for the storage unit 16 from which the user can take out the key holder (step S104). When there is no storage unit 16 that requires administrator approval (step S104; No), the notification unit 11e turns on the holder lamp 15 to notify the position of the storage unit 16 from which the key holder can be taken out (step S107). Further, the determination unit 11d releases the lock of the storage unit 16 from which the key holder can be taken out (step S107), and this process ends.

[0060] In this case, for all the storage units 16 in which the authenticated user is registered in the user item of the storage unit information, the lock of the key holder is released and the holder lamp 15 is turned on. At this time, the storage unit 16 where the holder lamp 15 is turned on does not include the storage unit 16 that requires administrator approval to take out the key holder.

[0061] When there is a storage unit 16 with a setting that requires administrator approval (step S104; Yes), the determination unit 11d determines whether or not an administrator has been authenticated in addition to the user (step S105). When the administrator is approved (step S105; Yes), the notification unit 11e turns on the holder lamp 15 to notify the position of the storage unit 16 from which the key holder can be taken out (step S107). Further, the determination unit 11d releases the lock of the storage unit 16 from which the key holder can be taken out (step S107), and this process ends.

[0062] Also in this case, for all the storage units 16 in which the authenticated user is registered in the user item of the storage unit information, the lock of the key holder is released and the holder lamp 15 is turned on. However, the storage unit 16 where the holder lamp 15 is turned on includes the storage unit 16 that requires administrator approval to take out the key holder and the storage unit 16 that does not require administrator approval. The notification unit 11e turns on the holder lamp 15 of the storage unit 16 that requires administrator approval and the holder lamp 15 of the storage unit 16 that does not require administrator approval in different colors.

[0063] If the approval of the administrator has not been obtained (step S105; No), the determination unit 11d determines whether the authenticated user has a single authentication authority and whether the authentication time is included in the time zone set as the single authentication possible time (step S106). If the authenticated user has a single authentication authority and the authentication time is included in the single authentication possible time (step S106; Yes), the notification unit 11e lights the holder lamp 15 to notify the position of the accommodation unit 16 from which the key holder can be taken out (step S107). Further, the determination unit 11d releases the lock of the accommodation unit 16 from which the key holder can be taken out (step S107), and this process ends.

[0064] The holder lamp 15 lights up in all the accommodation units 16 in which the authenticated user is registered in the user item of the accommodation unit information. The accommodation units 16 in which the holder lamp 15 lights up include the accommodation units 16 that require administrator approval to take out the key holder and the accommodation units 16 that do not require administrator approval. The notification unit 11e lights the holder lamp 15 of the accommodation unit 16 that requires administrator approval and the holder lamp 15 of the accommodation unit 16 that does not require administrator approval in different colors. At this time, in order to indicate that the extraction of the key holder is permitted by the single authentication authority, it is also possible to set the holder lamp 15 of the accommodation unit 16 that requires administrator approval to blink. Thereby, it is possible to distinguish between the case where the administrator's authentication process is performed and the extraction of the key holder is permitted (step S105; Yes) and the case where the extraction of the key holder is permitted by the single authentication authority (step S106; Yes).

[0065] When the authenticated user does not have the single authentication authority, or when the authentication time is not included in the time period set as the single authentication possible time (step S106; No), the notification unit 11e lights the holder lamp 15 to notify the position of the accommodation unit 16 from which the key holder can be taken out (step S107). Further, the determination unit 11d releases the lock of the accommodation unit 16 from which the key holder can be taken out (step S107), and this process ends. In this case, among the accommodation units 16 registered in the user item of the accommodation unit information by the authenticated user, only the holder lamp 15 of the accommodation unit 16 that does not require administrator approval lights up.

[0066] As described above, in the key management device 10 of the first embodiment, when the user has the authority to take out the key holder that requires administrator approval from the accommodation unit 16, it is determined whether or not this user has the single authentication authority. A user without the single authentication authority needs to perform two-factor authentication of himself / herself and the administrator in order to take out the key holder, but a user with the single authentication authority can perform the authentication process alone and take out the key holder that requires administrator approval from the accommodation unit 16.

[0067] Further, in the key management device 10, when the user has the single authentication authority, it is determined whether or not the authentication time is included in the time period set as the single authentication possible time. By setting the single authentication possible time, it is possible to limit the time period during which the user can perform the authentication process alone and take out the key holder from the accommodation unit 16.

[0068] In the present embodiment, the mode of managing the key based on the setting in the accommodation unit information in the key management device 10 has been shown, but the key management device 10 can also operate in cooperation with other devices. For example, the key management device 10 is connected to and used with a management device used for schedule management in a store. The key management device 10 can acquire the information on the business hours of the store managed by the management device and use this information to set the single authentication possible time based on the business hours as described above.

[0069] Further, for example, an administrator can operate the management device to set at least one of the single authentication authority and the single authentication available time. When the administrator performs a setting operation on the management device, the key management device 10 manages keys based on the content set by the administrator on the management device. By reflecting the content set on the management device in the accommodation unit information of the key management device 10, the key management device 10 can manage keys as described above.

Embodiment

[0070] In the first embodiment, by setting the single authentication authority and the single authentication available time, a key management device 10 is shown in which a user having the single authentication authority can independently take out a key holder that requires administrator approval from the accommodation unit 16. In the second embodiment, a key management device 20 will be described in which a user without the single authentication authority can independently take out a key holder that requires administrator approval from the accommodation unit 16.

[0071] <Overview of the key management system according to the second embodiment> First, the overview of the key management system according to the second embodiment will be described. FIG. 6 is a diagram for explaining the overview of the key management system according to the second embodiment. As shown in FIG. 6, the present key management system includes a key management device 20 and a terminal device 30 communicably connected to the key management device 20 via a network N. The key management device 20 has all the functions of the key management device 10 described in the first embodiment.

[0072] As shown in FIG. 6, prior to user A without the single authentication authority taking out a key holder from the key management device 20, administrator X operates the terminal device 30 to reserve administrator approval for user A (step S11). The terminal device 30 transmits the approval reservation information created in response to the operation of administrator X to the key management device 20 (step S12). The key management device 20 registers the approval reservation information received from the terminal device 30 in the accommodation unit information (step S13).

[0073] When user A, who has no individual authentication authority, alone holds the card over the R / W unit 14, the R / W unit 14 reads user information from the card (step S14). The key management device 10 authenticates user A based on the user information of the card and determines whether user A has the authority to take out the key holder (step S15). If user A has the authority to take out the key holder, the door of the key storage section (not shown) is unlocked and the door can be opened (step S16).

[0074] Next, the key management device 20 collates the user information with the storage section information (step S17) and identifies the storage section from which user A can take out the key holder. At this time, since approval reservation information is registered in the storage section information, the storage section from which user A can take out the key holder is identified in the same way as when user A performs the authentication process together with administrator X. As a result, similar to the case when the authentication process of administrator X is performed, user A is permitted to take out the key holder that requires administrator approval. The key management device 20 unlocks the storage section 16 of the key holder that user A can take out and notifies the position of this storage section 16 by the holder lamp (step S18). Thereby, user A can take out the target key holder from the storage section (step S19).

[0075] As described above, in the key management system according to the second embodiment, the administrator can specify the time zone in advance and reserve approval for a user who has no individual authentication authority. Thereby, it becomes possible for a user who has no individual authentication authority to alone take out the key holder that requires administrator approval from the key management device 20.

[0076] <Internal Configuration of Key Management Device 20> Next, the internal configuration of the key management device 20 will be described. FIG. 7 is a functional block diagram showing the internal configuration of the key management device 20 shown in FIG. 6. As shown in FIG. 7, the key management device 20 includes a key management control unit 21, a door locking unit 12, an operation display unit 13, an R / W unit 14, a holder lamp 15, a storage unit 16, a storage unit 17, and a communication unit 22. Since the door locking unit 12, the operation display unit 13, the R / W unit 14, the holder lamp 15, the storage unit 16, and the storage unit 17 are the same as those in the first embodiment, the description thereof will be omitted.

[0077] The key management control unit 21 controls each part of the key management device 20. Through this control, the functions and operations of the key management device 20 described in the second embodiment are realized. The key management control unit 21 includes a reception unit 11a, a registration unit 11b, an authentication unit 11c, a determination unit 11d, a notification unit 11e, and an approval reservation unit 23. Actually, programs corresponding to these functional units are stored in a ROM or a non-volatile memory (not shown), and these programs are loaded into the CPU and executed. As a result, processes corresponding to the reception unit 11a, the registration unit 11b, the authentication unit 11c, the determination unit 11d, the notification unit 11e, and the approval reservation unit 23 are executed. Since each functional unit other than the approval reservation unit 23 is the same as that in the first embodiment, the description thereof will be omitted.

[0078] The approval reservation unit 23 registers the approval reservation information received from the terminal device 30 in the storage unit information of the storage unit 17. The approval reservation unit 23 functions as a reservation unit that receives an approval reservation related to the extraction of the key holder from outside the device. The communication unit 22 is an interface unit for communicating with the terminal device 30 via the network N.

[0079] <Internal Configuration of Terminal Device 30> Next, the internal configuration of the terminal device 30 will be described. FIG. 8 is a functional block diagram showing the internal configuration of the terminal device 30 shown in FIG. 6. As shown in FIG. 8, the terminal device 30 includes a control unit 31, an input unit 32, a display unit 33, a communication unit 34, and a storage unit 35.

[0080] The control unit 31 controls each part of the terminal device 30. Through this control, the functions and operations of the terminal device 30 described in the second embodiment are realized. The control unit 31 includes an approval reservation management unit 31a and an approval reservation notification unit 31b. Actually, programs corresponding to these functional units are stored in a ROM or a non-volatile memory (not shown), and these programs are loaded into the CPU and executed. As a result, processes corresponding to the approval reservation management unit 31a and the approval reservation notification unit 31b are executed respectively.

[0081] The approval reservation management unit 31a stores and manages the approval reservation information input from the input unit 32 in the storage unit 35. The approval reservation notification unit 31b transmits the approval reservation information to the key management device 20 via the communication unit 34.

[0082] The input unit 32 is used to input information to the terminal device 30. For example, a keyboard and a mouse are used as the input unit 32. The display unit 33 is used for the terminal device 30 to display information. For example, a liquid crystal display device is used as the display unit 33.

[0083] The communication unit 34 is a communication interface for communicating with the key management device 20. The storage unit 35 stores the approval reservation information. A hard disk or a non-volatile memory is used as the storage unit 35.

[0084] <Example of user information and storage unit information> Next, the user information and the storage unit information will be described. FIG. 9 is a diagram showing an example of the user information and the storage unit information used in the key management system shown in FIG. 6. FIG. 9(a) shows the user information stored in the IC card held by user A. The user information includes user items and administrator items. FIG. 9(a) shows that the IC card storing this user information is held by user A, and when user A takes out a key holder that requires administrator approval, it is necessary to obtain the approval of administrator X.

[0085] As shown in FIG. 9(b), the storage unit information stored in the storage unit 35 of the key management device 20 includes items such as storage unit number, administrator approval setting, user, individual authentication authority, individual authentication available time, and approval reservation information. In the example of FIG. 9(b), in the storage unit 16 with the storage unit number "1", since the approval of the administrator is required to take out the key holder, the item of the administrator approval setting is set to "yes".

[0086] Regarding the storage unit 16 with the storage unit number "1", since two users, A and B, have the authority to take out the key holder, the items of the users are set to "User A" and "User B". Since User A does not have the individual authentication authority, the item of the individual authentication authority is set to "no". Therefore, when taking out the key holder from the storage unit 16 with the storage unit number "1", usually, User A needs to perform the take-out operation together with the administrator X. However, only within the time period reserved by the approval reservation information, User A can perform the authentication process alone and take out the key holder.

[0087] In the example of FIG. 9(b), the item of the approval reservation information of User A is set to "August 1, 2019, 8:00~9:00". Therefore, User A can perform the authentication process alone and take out the key holder from the storage unit 16 with the storage unit number "1" only within this time period.

[0088] <Processing Procedure for Taking out the Key> Next, the processing procedure for taking out the key holder from the key management device 20 will be described. FIG. 10 is a flowchart showing the processing procedure for taking out the key holder from the key management device 20 shown in FIG. 6. FIG. 10 shows the flow of the process performed after the authentication process of the user and the administrator, or the authentication process of the user alone is completed.

[0089] When the authentication process is completed, the determination unit 11d collates the user information and the storage unit information, and determines whether the authenticated user has the authority to take out the key holder from the storage unit 16 (step S201). If the authenticated user is not registered in the user item of the storage unit information (step S202; No), the determination unit 11d displays on the operation display unit 13 that there is no storage unit 16 from which the key holder can be taken out (step S203), and ends this process.

[0090] When the authenticated user is registered in the storage unit information (step S202; Yes), the determination unit 11d determines whether a setting that requires administrator approval is set for the storage unit 16 from which this user can take out the key holder (step S204). When there is no storage unit 16 that requires administrator approval (step S204; No), the notification unit 11e lights the holder lamp 15 to notify the position of the storage unit 16 from which the key holder can be taken out (step S208). Also, the determination unit 11d releases the lock of the storage unit 16 from which the key holder can be taken out (step S208), and this process ends.

[0091] In this case, for all the storage units 16 in which the authenticated user is registered in the user item of the storage unit information, the lock of the key holder is released and the holder lamp 15 is lit. At this time, the storage unit 16 where the holder lamp 15 is lit does not include the storage unit 16 that requires administrator approval for taking out the key holder.

[0092] When there is a storage unit 16 with a setting that requires administrator approval (step S204; Yes), the determination unit 11d determines whether the administrator has been authenticated in addition to the user (step S205). When the administrator is approved (step S205; Yes), the notification unit 11e lights the holder lamp 15 to notify the position of the storage unit 16 from which the key holder can be taken out (step S208). Also, the determination unit 11d releases the lock of the storage unit 16 from which the key holder can be taken out (step S208), and this process ends.

[0093] Also in this case, for all the accommodation units 16 in which the authenticated user is registered in the user item of the accommodation unit information, the lock of the key holder is released and the holder lamp 15 lights up. However, the accommodation units 16 in which the holder lamp 15 lights up include accommodation units 16 that require administrator approval to remove the key holder and accommodation units 16 that do not require administrator approval. The notification unit 11e lights up the holder lamps 15 of the accommodation units 16 that require administrator approval and the holder lamps 15 of the accommodation units 16 that do not require administrator approval in different colors.

[0094] When the administrator's approval has not been obtained (step S205; No), the determination unit 11d determines whether the authenticated user has a single authentication right and whether the authentication time is included in the time zone set as the single authentication possible time (step S206). When the authenticated user has a single authentication right and the authentication time is included in the single authentication possible time (step S206; Yes), the notification unit 11e lights up the holder lamp 15 to notify the position of the accommodation unit 16 from which the key holder can be taken out (step S208). Also, the determination unit 11d releases the lock of the accommodation unit 16 from which the key holder can be taken out (step S208), and this process ends.

[0095] For all the accommodation units 16 in which the authenticated user is registered in the user item of the accommodation unit information, the lock of the key holder is released and the holder lamp 15 lights up. The accommodation units 16 in which the holder lamp 15 lights up include accommodation units 16 that require administrator approval to remove the key holder and accommodation units 16 that do not require administrator approval. The notification unit 11e lights up the holder lamps 15 of the accommodation units 16 that require administrator approval and the holder lamps 15 of the accommodation units 16 that do not require administrator approval in different colors. At this time, in order to indicate that the removal of the key holder is permitted by the single authentication right, it is also possible to set the holder lamp 15 of the accommodation unit 16 that requires administrator approval to blink. Thereby, it is possible to distinguish between the case where the administrator's authentication process is performed and the removal of the key holder is permitted (step S205; Yes) and the case where the removal of the key holder is permitted by the single authentication right (step S206; Yes).

[0096] When the authenticated user does not have the single authentication authority, or when the authentication time is not included in the time zone set as the single authentication possible time (step S206; No), the determination unit 11d determines whether the approval conditions set in the approval reservation information are satisfied (step S207). When approval reservation information is set for the user and the authentication time is included in the time zone set in the approval reservation information (step S207; Yes), the notification unit 11e lights the holder lamp 15 and notifies the position of the accommodation unit 16 from which the key holder can be taken out (step S208). Further, the determination unit 11d releases the lock of the accommodation unit 16 from which the key holder can be taken out (step S208), and this process ends.

[0097] In this case, the lock of the key holder is released and the holder lamp 15 is lit for the accommodation unit 16 that does not require administrator approval for taking out the key holder and the accommodation unit 16 that requires administrator approval and is approved by the approval reservation information. The notification unit 11e lights the holder lamp 15 of the accommodation unit 16 that requires administrator approval and the holder lamp 15 of the accommodation unit 16 that does not require administrator approval in different colors. At this time, in order to indicate that taking out the key holder is permitted based on the approval reservation information, the holder lamp 15 of the accommodation unit 16 that requires administrator approval can also be set to blink. Also, the blinking speed can be set to a speed different from the blinking speed when taking out the key holder is permitted by the single authentication authority. Thereby, when the administrator's authentication process is performed and taking out the key holder is permitted (step S205; Yes), when taking out the key holder is permitted by the single authentication authority (step S206; Yes), and when taking out the key holder is permitted by the approval reservation information (step S207; Yes) can be distinguished from each other.

[0098] When approval reservation information is not set for the user, or when the approval reservation information is set but the authentication time is not included in the time zone set in the approval reservation information (step S207; No), the notification unit 11e turns on the holder lamp 15 to notify the position of the accommodation unit 16 from which the key holder can be taken out (step S208). Further, the determination unit 11d releases the lock of the accommodation unit 16 from which the key holder can be taken out (step S208), and this process ends. In this case, among the accommodation units 16 registered in the user item of the accommodation unit information for the authenticated user, only the holder lamp 15 of the accommodation unit 16 that does not require administrator approval lights up.

[0099] Note that the configuration of the key management system shown in the second embodiment is a schematic of functions, and does not necessarily have the physically illustrated configuration. The form of distribution and integration of each device constituting the key management system is not limited to the example described above, and all or part of them can be functionally or physically distributed and integrated in arbitrary units according to various loads and usage situations.

[0100] As described above, in the key management device 20 of the second embodiment, when the user has the authority to take out the key holder that requires administrator approval from the accommodation unit 16, it is determined whether this user has the single authentication authority. A user without single authentication authority needs to perform two-factor authentication of the user himself / herself and the administrator to take out the key holder, but a user with single authentication authority can perform the authentication process alone and take out the key holder that requires administrator approval from the accommodation unit 16.

[0101] Further, in the key management device 20, when the user has the single authentication authority, it is determined whether the authentication time is included in the time zone set as the single authentication possible time. By setting the single authentication possible time, it is possible to limit the time zone in which the user can perform the authentication process alone and take out the key holder from the accommodation unit 16.

[0102] Furthermore, in the key management device 20, when a user does not have the single authentication authority, it is determined whether or not an administrator has previously reserved the approval for key holder extraction by designating a time zone for this user. If the administrator has reserved the approval in advance, only within the time zone designated by the administrator, a user without the single authentication authority can also perform the authentication process alone and take out the key holder that requires administrator approval from the storage unit 16.

[0103] In this embodiment, the user and the administrator are taken as examples for explanation, but these are merely illustrative. For example, the target person for whom the key management devices 10 and 20 require the authentication process when taking out the key holder from the storage unit 16 is not limited to the mode of requiring the authentication process for these two persons with the user as the first user and the administrator as the second user as described above. It may also be a mode of requiring the authentication process for two users who are not in the position of the administrator as the first user and the second user. Further, it may also be a mode of requiring the authentication process for two administrators as the first user and the second user. The types of multiple target persons for whom the authentication process is required are not particularly limited. Also, for example, the person who sets the storage unit information including the single authentication authority is not limited to the administrator, and it may also be a mode in which a user who is not in the position of the administrator sets the storage unit information. The type of operator who performs the setting operation is not particularly limited.

[0104] In this embodiment, an example is shown in which the administrator registers the permission information including the single authentication authority for permitting the user to take out the key holder from the storage unit 16 in advance in the storage unit information of the storage unit 17. Alternatively, it may be a mode in which permission information is input to the key management devices 10 and 20 when taking out the key holder. Specifically, the administrator operates a predetermined terminal to generate the permission information and transmits it to the portable communication terminal held by the user. The user inputs the permission information received by the communication terminal to the key management devices 10 and 20. The key management devices 10 and 20 that recognize the permission information control the storage unit 16 so that the user can take out the key holder that requires administrator approval by executing the authentication process alone.

[0105] For example, the permission information includes administrator information that identifies the administrator who issued the permission information, device information that identifies the key management devices 10 and 20 and the storage unit 16 for which the extraction of the key holder is permitted, user information that identifies the user to whom the extraction is permitted, and period information that identifies the extractable period. The permission information is encoded into a graphic code and transmitted and received. For example, the permission information is encoded into a QR code (registered trademark) and transmitted using e-mail. The key management devices 10 and 20 use a graphic code reader to read the graphic code displayed on the operation display unit of the user's mobile communication terminal. For example, the user uses a smartphone to display the QR code received by e-mail on the screen and have the key management devices 10 and 20 read it. The key management devices 10 and 20 acquire the permission information from the graphic code and store it in the storage unit 17. The key management devices 10 and 20 control the storage unit 16 based on each piece of information included in the permission information so that the user can perform an authentication process alone and take out the key holder that requires administrator approval. The period during which the user can take out the key holder alone is restricted based on the period information included in the permission information. The user cannot take out the key holder from the storage unit 16 unless it is within the period set in the period information. Thereby, even when a failure occurs in the network, for example, by the administrator transmitting the permission information to the user's mobile communication terminal, the user can take out the key holder that requires administrator approval.

[0106] The key management devices 10 and 20 according to this embodiment are also capable of performing processes based on a business start operation and a business end operation by an administrator. The business start operation is an operation performed by the administrator to start the business of the store. The business end process is an operation performed by the administrator to end the business of the store. The key management devices 10 and 20 manage the key holders in all the storage units 16 as described above from the time the business start operation is performed until the business end operation is performed. After the business end operation is performed, the key management devices 10 and 20 manage the key holders as described above only in some of the preset storage units 16. The administrator can continue to specify the storage unit 16 that enables the key holder to be taken out as described above even after the business ends. After the administrator performs the business end operation, the key holder cannot be taken out from the storage units 16 other than the some storage units 16 specified by the administrator.

[0107] For example, when the administrator performs a business start operation on the key management devices 10 and 20 or the terminal device 30, the user can take out the key holder from the storage unit 16 of the key management devices 10 and 20 as described above and prepare for the opening of the store. After the business of the store ends, when the administrator performs a business end operation on the key management devices 10 and 20 or the terminal device 30, the key management devices 10 and 20 continue to manage the key holders only in some of the storage units 16 specified by the administrator in advance, and control the other storage units 16 so that the key holder cannot be taken out. When all the functions of the key management devices 10 and 20 are stopped by the business end operation, the key holder cannot be taken out from all the storage units 16, but the key management devices 10 and 20 continue to manage the key holders in some of the storage units 16 even after the business end operation. Thereby, for example, in the case of an emergency, some key holders can be taken out from the key management devices 10 and 20 without waiting for the administrator to arrive at the store. Thereby, the key management devices 10 and 20 can flexibly respond to various key usage methods.

Industrial Applicability

[0108] The key management device according to the present invention is useful for an administrator to manage keys without impairing the convenience of the user.

Explanation of Signs

[0109] 10, 20 Key Management Device 11, 21 Key Management Control Unit 12 Door Locking Unit 13 Operation Display Unit 14 R / W Unit 15 Holder Lamp 16 Storage Unit 17 Memory Unit 18 Key Storage Unit 22 Communication Unit 30 Terminal Device 31 Control Unit 32 Input Unit 33 Display Unit 34 Communication Unit 35 Memory Unit

Claims

1. A key management device for managing keys connected to a storage member, comprising: a storage unit that locks the stored storage member and unlocks it to enable the storage member to be taken out when user authentication and administrator approval are performed; a storage unit that stores information indicating that the administrator has pre-approved the user's taking out of the storage member; a control unit that enables the storage member to be taken out of the storage unit without new approval from the administrator when the storage unit stores the information indicating the pre-approval by the administrator at the time of authenticating the user who requests to take out the storage member. A key management device characterized by comprising the above.

2. An operation unit that receives input of information further comprising: Based on an operation performed by the administrator on the operation unit, the information indicating the pre-approval by the administrator is stored in the storage unit. The key management device according to claim 1, characterized by the above.

3. Based on an operation performed by the administrator on a terminal device connected to the key management device, the information indicating the pre-approval by the administrator is stored in the storage unit. The key management device according to claim 1, characterized by the above.

4. The storage unit stores conditions for determining whether to approve the user's taking out of the storage member based on the administrator's pre-approval. When the control unit determines that the conditions are satisfied, the control unit enables the storage member to be taken out of the storage unit. The key management device according to any one of claims 1 to 3, characterized by the above.

5. The condition is a time period during which the user's taking out of the storage member is approved based on the administrator's pre-approval. The key management device according to claim 4, characterized by the above.

6. A display unit that displays information further comprising: The control unit displays on the display unit information indicating whether the user can take out the storage member based on the administrator's pre-approval. The key management device according to any one of claims 1 to 3, characterized by the above.

7. A storage unit that locks the stored storage member and unlocks it to enable the storage member to be taken out when user authentication is performed. further comprising: When authenticating the user, if the storage unit stores the information indicating prior approval by the administrator in the storage unit, the control unit enables the removal of the storage member from each storage unit in both the storage unit that requires authentication of the user and approval of the administrator for unlocking, and the storage unit that requires only authentication of the user for unlocking. The key management device according to any one of claims 1 to 3, characterized in that.

8. A display unit provided corresponding to each storage unit, with different display modes for the storage unit that requires authentication of the user and approval of the administrator for unlocking, and the storage unit that requires only authentication of the user for unlocking. The key management device according to claim 6, further comprising.

Citation Information

Patent Citations

  • Security object control server

    JP2007332650A

  • Key management device and key management system using biometric authentication

    JP2010275778A

  • Article storage device

    JP2012036592A

  • Key management machine

    JP2013104254A

  • Key management machine

    JP2013127196A