Service collaboration system, server, and service collaboration method
A relay server system allows the number on a recording medium to be shared across multiple services, simplifying the integration and use of the medium by facilitating communication and registration between management servers, thereby eliminating the need for physical transfer.
Patent Information
- Application Number
- JP2021137117
- Authority / Receiving Office
- JP · JP
- Patent Type
- Patents
- Current Assignee / Owner
- Filing Date
- 2021-08-25
- Publication Date
- 2025-08-08
- Estimated Expiration
- 2041-08-25
AI Technical Summary
Existing technologies do not allow a number recorded on a recording medium to be shared among multiple service systems, requiring cumbersome physical transfer and registration of the medium to enable its use across different services.
A relay server facilitates the sharing of a number recorded on a recording medium by communicating with management servers of different services, acquiring and transmitting the number, and registering it in a database associated with user identification, enabling seamless integration and use across various service systems.
Enables easy registration and use of a recording medium across multiple services, eliminating the need for physical transfer and simplifying the process of sharing and accessing associated services.
Smart Images

Figure 0007720743000001 
Figure 0007720743000002 
Figure 0007720743000003
Abstract
Description
[Technical Field]
[0001] The present invention relates to a technique for sharing a number recorded on a recording medium among a plurality of service systems. [Background technology]
[0002] A technology for linking multiple services is known. For example, Patent Document 1 discloses a technology in which, in response to a request from a user, if a first account for using a first service and a second account for using a second service are valid, the accounts for the first service and the second service are stored in an intermediary device in association with each other as a user account that can use an integrated service that links the first service and the second service, and when the user uses the integrated service, the intermediary device is inquired about the use of the integrated service to control the use of the service. [Prior art documents] [Patent documents]
[0003] [Patent Document 1] Patent No. 6097953 Summary of the Invention [Problem to be solved by the invention]
[0004] The technology described in Patent Document 1 does not allow a number recorded on a recording medium to be shared among a plurality of service systems. In response to this, the present invention provides a technique for sharing a number recorded on a recording medium among a plurality of service systems. [Means for solving the problem]
[0005] One aspect of the present disclosure is a system including a relay server that communicates with a first server that is a management server of a first service that uses a recording medium, and a second server that is a management server of a second service that is different from the first service, wherein the relay server includes: a number acquisition means that acquires a first number input in a user terminal via an input screen that accepts input of a first number that corresponds to the recording medium and is disclosed to a user in the first service; a delivery request means that transmits a delivery request including the first number received by the number acquisition means to the first server; a response receiving means that receives, from the first server as a response to the delivery request, number information including at least one of the encrypted first number, a second number that corresponds to the first number and is unique to the recording medium, and a third number that corresponds to the first number and is given in the first service; and a message receiving means that receives the number information. report and a registration request means for transmitting a registration request including the number information and the user's identification information to a management server of the second service, wherein the second server has registration means for registering the number information in a record corresponding to the user's identification information in a database related to the second service in response to the registration request from the relay server.
[0006] The second service may be an access management platform service, the service collaboration system may have a third server that provides a third service on the platform service, the third server may have a screen transmission means that transmits a screen to the user terminal to display the input screen on the user terminal, and the number acquisition means may acquire the first number from the third server.
[0007] The relay server may have a screen transmission means for transmitting a screen for displaying the input screen on the user terminal to the user terminal, and the number acquisition means may acquire the first number from the user terminal.
[0008] In the response, at least one of the second number and the third number may be hashed.
[0009] The delivery request may be an API request, and the response may be an API response.
[0010] The relay server may have an information receiving means for receiving, from the first server, stop information indicating that a specific recording medium has been stopped from use, and a notification means for notifying the second server, upon receiving the stop information, that use of the recording medium has been stopped, and in the second server, the registration means may, in response to the notification, write a flag indicating that the recording medium is in a stopped state into a database related to the second service.
[0011] The database regarding the second service may include, for each of a plurality of users, the number of recording media allocated to that user, and when a request is made to register a new recording medium for that user that exceeds the number of recording media allocated to that user, the registration means may write, to the database regarding the second service, information for invalidating at least one recording medium that is already recorded in correspondence with that user in the database regarding the second service, and at least one of the second number and the third number corresponding to the new recording medium.
[0012] Another aspect of the present disclosure relates to a first service that uses a recording medium, comprising: a number acquisition means in a user terminal that acquires a first number that corresponds to the recording medium and is disclosed to a user in the first service, the first number being input via an input screen that accepts input of the first number; a delivery request means that transmits a delivery request including the first number received by the number acquisition means to a management server of the first service; a response receiving means that receives from the management server, as a response to the delivery request, number information including at least one of the encrypted first number, a second number that corresponds to the first number and is unique to the recording medium, and a third number that corresponds to the first number and is given in the first service; Number information andThe server includes a registration request means for transmitting a registration request including the user's identification information to a management server of a second service different from the first service.
[0013] Yet another aspect of the present disclosure is a method for manufacturing a semiconductor device comprising: A service collaboration method in a system having a relay server that communicates with a first server that is a management server of a first service that uses a recording medium, and a second server that is a management server of a second service that is different from the first service, the relay server comprising: a step of acquiring, in a user terminal, a first number corresponding to the recording medium and disclosed to a user in the first service, the first number being input via an input screen that accepts input of the first number; The aforementioned a step of a relay server transmitting a delivery request including the first number to a management server of the first service; a step of receiving number information including at least one of the encrypted first number, a second number corresponding to the first number and unique to the recording medium, and a third number corresponding to the first number and given in the first service from the management server as a response to the delivery request; Number information and User identification information News sending a registration request including the second service ID to a management server of the second service; The aforementioned A management server of the second service responds to the registration request from the relay server, Number Information and registering the user's identification information in a record corresponding to the user's identification information in a database related to the second service. [Effects of the Invention]
[0014] According to the present invention, the number recorded on the recording medium can be shared among a plurality of service systems. [Brief explanation of the drawings]
[0015] [Figure 1] 1 is a diagram showing an overview of a service collaboration system 1 according to an embodiment. [Figure 2] FIG. 1 is a diagram illustrating an example of the functional configuration of a service collaboration system 1. [Figure 3] FIG. 2 is a diagram illustrating an example of the hardware configuration of the server 10. [Figure 4] FIG. 2 is a diagram illustrating an example of the hardware configuration of a user terminal 90. [Figure 5] FIG. 2 is a diagram illustrating data recorded in a medium database 211. [Figure 6] 4 is a sequence chart showing the operation of the service collaboration system 1. [Figure 7] FIG. 3 is a diagram illustrating data recorded in a database 311. [Figure 8] FIG. 10 is a diagram illustrating an example of an input screen for entry and exit management information. [Figure 9] FIG. 10 is a diagram illustrating an example of an input screen for a hotel reservation. [Figure 10] FIG. 10 is a diagram illustrating an example of an input screen for adding or changing a recording medium. [Figure 11] FIG. 10 is a diagram illustrating an example of an input screen for adding or changing a recording medium. DETAILED DESCRIPTION OF THE INVENTION
[0016] 1. Configuration FIG. 1 is a diagram illustrating an overview of a service collaboration system 1 according to an embodiment. The service collaboration system 1 is a system for providing a service (hereinafter referred to as an "integrated service") that collaborates among service systems 2, 3, and 4. "Collaborating" these service systems refers to sharing user data, particularly user identification numbers, among the multiple service systems. The service systems 2, 3, and 4 are systems that provide different services to users. The service systems 2, 3, and 4 are operated by different businesses. In one example, the service system 2 is a system that provides a service (first service) that uses a recording medium, the service system 3 is a system that provides an access management platform service (second service) that manages access to places or objects with different security levels (hereinafter referred to as "access objects"; in this embodiment, the access objects are physical objects or places, and simple data is not included in the access objects), and the service system 4 is a system that provides a service (third service) to end users on the platform service provided by the service system 3.
[0017] In one example, the first service is a fare payment service using a transportation IC card, and the second service is a platform service for access control using the cloud. The third service may be any service that uses the platform of the second service. Conventionally, registering a transportation IC card used in the first service so that it can be used in the third service required the second service or the operator of the third service to physically take possession of the transportation IC card and register the data, which was cumbersome. Service collaboration system 1 addresses this problem. Specifically, service collaboration system 1 allows a user to easily register a transportation IC card used in the first service in the second service, thereby enabling the transportation IC card to be easily used in the third service provided on the platform of the second service.
[0018] The third service uses a media reader (not shown) for reading data from a recording medium. In one example, the recording medium and the media reader are a so-called contactless IC card and its card reader (more specifically, an IC card and card reader that communicate in accordance with standards such as NFC Type-F, Type-A, Type-B, or ISO / IEC 15693). That is, a user can access an object to be accessed by holding a registered recording medium over the card reader. The service system 4 has a management terminal (not shown) that communicates with the card reader. The management terminal is a computer device connected to the card reader and controls the card reader. The management terminal has a function for communicating with other devices, such as the server 30, via a network such as the Internet. One management terminal may control multiple card readers. Alternatively, the card reader and the management terminal may be integrated.
[0019] Each of service collaboration system 1, service system 2, service system 3, and service system 4 has at least a server. The servers of service collaboration system 1, service system 2, service system 3, and service system 4 are referred to as server 10 (an example of a relay server), server 20 (an example of a first server), server 30 (an example of a second server), and server 40 (an example of a third server), respectively. Server 10, server 20, server 30, and server 40 are connected via the Internet or a dedicated line, etc. Users of these services can access each service system from a user terminal 90.
[0020] Server 20 is a server for providing a first service, server 30 is a server for providing a second service, and server 40 is a server for providing a third service. Server 10 is a relay server that relays data between server 20 and server 30.
[0021] 2 is a diagram illustrating an example of the functional configuration of the service collaboration system 1. The service collaboration system 1 includes a storage unit 11, a screen transmission unit 12, a number acquisition unit 13, a delivery request unit 14, a response reception unit 15, a registration request unit 16, an information reception unit 17, a notification unit 18, a control unit 19, a storage unit 21, a screen transmission unit 22, a notification unit 23, a control unit 29, a storage unit 31, a reception unit 32, a registration unit 33, a screen transmission unit 34, a number transmission unit 35, a control unit 39, a storage unit 41, a screen transmission unit 42, a number transmission unit 43, a control unit 49, a storage unit 91, a reception unit 92, a UI unit 93, a transmission unit 94, and a control unit 99. In this example, the storage means 11, screen transmission means 12, number acquisition means 13, delivery request means 14, response receiving means 15, registration request means 16, information receiving means 17, notification means 18, and control means 19 are implemented in the server 10, the storage means 21, notification means 23, and control means 29 are implemented in the server 20, the storage means 31, receiving means 32, registration means 33, screen transmission means 34, number transmission means 35, and control means 39 are implemented in the server 30, the storage means 41, screen transmission means 42, number transmission means 43, and control means 49 are implemented in the server 40, and the storage means 91, receiving means 92, UI means 93, transmission means 94, and control means 99 are implemented in the user terminal 90.
[0022] In the server 10, the storage means 11 stores various data and programs. In this example, the data stored in the storage means 11 includes a management database 111. The management database 111 is a database that stores, for each of a plurality of recording media, the first number of the recording media and the identification information of the second service that sent the registration request, in association with each other. The number acquisition means 13 acquires the first number entered via an input screen on the user terminal 90. This input screen is sent to the user terminal 90 from a server that provides the service (e.g., server 30 or server 40).
[0023] The delivery request means 14 transmits a delivery request including the first number received by the number acquisition means 13 to the management server of the first service (i.e., server 20). The response receiving means 15 receives a response to the delivery request from the management server. This response includes number information. The number information includes either (1) or (2) below. (1) Encrypted first number. (2) A number corresponding to the first number, which is at least one of a second number unique to the recording medium and a third number given in the first service. The term "encryption" as used herein is a concept that includes not only a process of reversibly converting information using an encryption key, but also a process of irreversibly converting information, such as hashing. The registration request means 16 transmits a registration request including the number information included in the response to the delivery request and the user's identification information to the management server of the second service (i.e., server 30). The control means 19 performs various controls.
[0024] The information receiving means 17 receives stop information indicating that the use of a specific recording medium has been stopped from the management server of the first service. Upon receiving the stop information, the notifying means 18 notifies the management server of the second service, which is recorded in the management database in association with the recording medium, that the use of the recording medium has been stopped.
[0025] In the server 20, the storage means 21 stores various data and programs. In this example, the data stored in the storage means 21 includes a media database 211. The media database 211 is a database that records information about recording media used in the service system 2. The control means 29 performs various controls.
[0026] In the server 30, the storage means 31 stores various data and programs. In this example, the data stored in the storage means 31 includes a database 311. The database 311 is a database that records the correspondence between users of the second service and recording media. The receiving means 32 receives various information from other devices. In this example, the information received by the receiving means 32 includes a registration request from the relay server. In response to the registration request from the relay server, the registration means 33 registers at least one of the second number and the third number in a record corresponding to the user's identification information in the database related to the second service.
[0027] In this example, the server 30 not only provides platform services to other businesses but also provides services on this platform to end users. The following functions of the screen transmission means 34 and number transmission means 35 are functions related to the services provided on this platform. The screen transmission means 34 transmits data to the user terminal 90 for displaying an input screen that accepts input of the first number disclosed to the user in the first service. The number transmission means 35 transmits the first number entered via this input screen on the user terminal 90 to the server 10. The control means 39 performs various controls.
[0028] In the server 40, the storage means 41 stores various data and programs. In this example, the data stored in the storage means 41 includes a database (not shown) that records the attributes of users of the third service and objects to be accessed. The screen transmission means 42 transmits data to the user terminal 90 for displaying an input screen that accepts input of the first number. The number transmission means 43 transmits the first number entered via this input screen in the user terminal 90 to the server 10. The control means 49 performs various controls.
[0029] In the user terminal 90, storage means 91 stores various data and programs. Reception means 92 receives information from other devices. UI means 93 presents information to the user and accepts instructions or information input from the user. Transmission means 94 transmits information to other devices.
[0030] 3 is a diagram illustrating an example of the hardware configuration of the server 10. The server 10 is a computer device having a CPU (Central Processing Unit) 101, a memory 102, a storage 103, and a communication IF 104. The CPU 101 is a processing device that performs various calculations according to a program. The memory 102 is a main storage device that functions as a work area when the CPU 101 executes a program, and includes, for example, a RAM (Random Access Memory). The storage 103 is an auxiliary storage device that stores various data and programs, and includes, for example, an HDD (Hard Disc Drive) or an SSD (Solid State Drive). The communication IF (Interface) 104 is a device that communicates according to a predetermined communication standard (for example, Ethernet (registered trademark)), and includes, for example, a NIC (Network Interface Card).
[0031] In this example, the programs stored in the storage 103 include a program (hereinafter referred to as a "relay server program") that causes the computer device to function as the server 10 of the service collaboration system 1. When the CPU 101 is executing the relay server program, at least one of the memory 102 and the storage 103 is an example of storage means 11. The communication IF 104 is an example of screen transmission means 12, number acquisition means 13, response reception means 15, information reception means 17, and notification means 18. The CPU 101 is an example of delivery request means 14, registration request means 16, and control means 19.
[0032] Server 20, server 30, and server 40 also have the same hardware configuration as server 10. In Fig. 3, the reference numerals of the elements of server 20, server 30, and server 40 are shown in parentheses.
[0033] In the server 20, the programs stored in the storage 203 include a program (hereinafter referred to as the "first server program") that causes the computer device to function as the server 20 of the service collaboration system 1. When the CPU 201 is executing the first server program, at least one of the memory 202 and the storage 203 is an example of the storage means 21. The CPU 101 is an example of the notification means 23 and the control means 29. The communication IF 104 is an example of the screen transmission means 22.
[0034] In the server 30, the programs stored in the storage 303 include a program (hereinafter referred to as a "second server program") that causes the computer device to function as the server 30 of the service collaboration system 1. When the CPU 301 is executing the second server program, at least one of the memory 302 and the storage 303 is an example of the storage means 31. The communication IF 304 is an example of the receiving means 32 and the screen transmission means 34. The CPU 301 is an example of the registration means 33 and the control means 39.
[0035] In the server 40, the programs stored in the storage 403 include a program (hereinafter referred to as a "third server program") for causing the computer device to function as the server 40 of the service collaboration system 1. When the CPU 401 is executing the third server program, at least one of the memory 402 and the storage 403 is an example of the storage means 41. The CPU 401 is an example of the control means 49. The communication IF 404 is an example of the screen transmission means 42.
[0036] FIG. 4 is a diagram illustrating an example of the hardware configuration of a user terminal 90. The user terminal 90 is a computer device, such as a smartphone or personal computer, having a CPU 901, memory 902, storage 903, a communication IF 904, a display 905, and an input device 906. The CPU 901 is a processing device that performs various calculations according to a program. The memory 902 is a main storage device that functions as a work area when the CPU 901 executes a program, and includes, for example, a RAM. The storage 903 is an auxiliary storage device that stores various data and programs, and includes, for example, an SSD or HDD. The communication IF 104 is a device that communicates according to a predetermined communication standard (e.g., LTE (registered trademark), 5G, WiFi, etc.), and includes, for example, an LTE chip and an antenna. The display 905 is a device that displays information, and includes, for example, an LCD or an organic EL display. The input device 906 is a device for inputting instructions or information to the user terminal 90, and includes, for example, at least one of a touch screen, a keyboard, and a pointing device.
[0037] In this example, the programs stored in the storage 903 include a program (hereinafter referred to as a "client program") for causing a computer device to function as a user terminal 90 of the service collaboration system 1. The client program is a dedicated application program or a general-purpose web browser. When the CPU 901 is executing the client program, at least one of the memory 902 and the storage 903 is an example of storage means 91. The communication IF 904 is an example of receiving means 92 and transmitting means 94. The display 905 and the input device 906 are an example of UI means 93. The CPU 901 is an example of control means 99.
[0038] 2. Operation 2-1.Basic operation First, we will explain the basic operation of the service collaboration system 1. In the following, functional elements such as the delivery request means 14 may be described as the subject of processing, which means that a hardware element such as the CPU 101 executing a program executes processing in cooperation with other hardware elements.
[0039] Here, a certain user (hereinafter referred to as "user X") is assumed. Before the start of the processing described below, user X is using the first service and possesses an issued recording medium (e.g., an IC card). User X is attempting to register information about the recording medium he owns in the service collaboration system 1 in order to receive other services, such as the third service. That is, before the start of the sequence of FIG. 6, user X is registered as a user in the service system 2. Specifically, in the server 20, information about the recording medium issued to user X is recorded in the medium database 211.
[0040] The term "recording medium" as used herein refers to a medium on which data such as identification information is electromagnetically recorded, and in one example refers to a medium from which data can be read via contactless communication or near-field wireless communication. This recording medium may be, for example, in the shape of a card (a so-called contactless IC card). Alternatively, this recording medium may be a computer device such as a smartphone or wearable device on which an application program is installed to function as a recording medium for the first service.
[0041] 5 is a diagram illustrating an example of data recorded in the media database 211. The media database 211 includes a plurality of records. Each record includes, as information related to a recording medium, user identification information, a first number, a second number, and a third number.
[0042] The user identification information is information for uniquely identifying a user of the first service, and may be, for example, an email address, a user number, or an account name. The user identification information may be specified by the user or may be automatically generated by the service system 2.
[0043] The first number is an identification number uniquely assigned to the recording medium. The first number is assigned, for example, by a provider of the first service. The first number is visually displayed on the recording medium. In this respect, the first number can be said to be a number disclosed to the user. Specifically, for example, if the recording medium is a contactless IC card, the first number is issued in a form linked to the contactless IC card. In one example, the first number is printed on the front or back of the card. Alternatively, if the recording medium is a smartphone with an application program installed, the first number is displayed on the screen of the application. Note that the method of disclosing the first number to the user is not limited to these. For example, the first number may not be printed on the card, but may be notified to the user by another medium (e.g., email or written document). Since the first number is a number uniquely assigned to the recording medium, it may be updated to a new number, for example, in the following cases: If your contactless IC card is reissued. -When switching from contactless IC cards to smartphone applications. - If you change your smartphone device (so-called model change).
[0044] The second number is an identification number uniquely assigned to the recording medium. The second number is assigned, for example, by the manufacturer of the recording medium. In that sense, the second number can be said to be the serial number of the recording medium. The second number and the first number are independent and are assigned according to different rules. In one example, the second number is recorded on an IC chip when the recording medium is manufactured and cannot be rewritten after the recording medium is distributed. In another example, when a smartphone or a wearable device (e.g., a smartwatch) is used as the recording medium, the second number may be written on the IC chip after the smartphone or wearable device is manufactured. Unlike the first number, the second number is not actively disclosed to the user (although it may be disclosed).
[0045] The third number is an identification number assigned to a user of the first service. The third number is assigned, for example, by a provider of the first service. In this example, the third number is a value obtained by inputting the first number into a predetermined conversion formula, and has a one-to-one correspondence with the first number. The first number can be obtained by inputting the third number into the inverse function of this conversion formula. In this example, the third number is recorded in an encrypted area on the recording medium, and the third number itself cannot be read externally from the recording medium without the encryption key corresponding to this encrypted area.
[0046] 6 is a sequence chart showing the operation of one embodiment of the service collaboration system 1. In step S101, the number acquisition means 13 of the server 10 acquires the first number to be registered. In this example, there are at least four routes by which the number acquisition means 13 acquires the first number. That is, the route by which the first number is acquired directly from the user (without going through another server), the route by which the first number is acquired from the server 20, the route by which the first number is acquired from the server 30, and the route by which the first number is acquired from the server 40. In this example, the number acquisition means 13 may acquire the first number from any of these four routes. Here, an example in which the server 10 acquires the first number directly from the user will first be described.
[0047] Details of step S101 are as follows: User X accesses the server 40 from his / her own user terminal 90. Upon receiving access from the user terminal 90, the server 40 transmits data for displaying a menu screen for the third service to the user terminal 90. The user terminal 90 displays the menu screen for the third service according to this data. This menu screen includes a UI object (e.g., a "Register" button) for newly registering, in the third service, a recording medium that has already been registered in the first service but has not yet been registered in the linked service. When user X operates this UI object, the connection destination is redirected to the server 10 (step S1011). The user terminal 90 accesses the server 10, which is the redirect destination (step S1012). Upon receiving access from the user terminal 90, the screen transmission means 12 in the server 10 transmits data of an input screen for accepting input of the first number to the user terminal 90 (step S1013). At this time, the screen transmission means 12 transmits data of the input screen according to the redirect source. The method for changing the connection destination of the user terminal 90 from the server 40 to the server 10 is not limited to redirection, and a method for presenting a hyperlink to the server 10 on the user terminal 90 may also be used.
[0048] In the user terminal 90, the receiving means 92 receives the data of this input screen. The UI means 93 displays this input screen (step S1014). The UI means 93 accepts the input of the first number and the specification of additional information related to this recording medium (e.g., information related to the corresponding service) through user operation on this input screen (step S1015). When an instruction is input via the UI object for sending a registration request for the first number (e.g., when the registration button is pressed), the sending means 94 sends a registration request for the input first number to the server 10 (step S1016). This registration request includes the input first number and additional information of the target service. In this way, the number obtaining means 13 obtains the first number (step S102).
[0049] When the number obtaining means 13 receives the registration request, the delivery request means 14 transmits the delivery request to the server 20 (step S103). This delivery request includes the first number included in the registration request. In one example, the delivery request means 14 transmits this delivery request as an API (Application Programming Interface) request.
[0050] When a delivery request is received from the server 10, the control means 29 in the server 20 determines whether a record including the first number included in the delivery request is recorded in the media database 211 stored in the storage means 21. If it is determined that a record including the first number included in the delivery request is recorded, the control means 29 extracts information from this record (step S104). In one example, the extracted information includes the first number. In another example, the extracted information includes at least one of the second number and the third number. The control means 29 converts the extracted number information into another value (step S105). In one example, the control means 29 hashes the extracted number information. The hash function used for hashing here is the same as the hash function used to hash the number read by the reader / writer, which will be described later. Note that if it is determined that a record including the first number included in the delivery request is not recorded, the control means 29 performs error processing.
[0051] The control means 29 transmits a delivery response including the hashed number information to the server 10 that is the sender of the delivery request (step S106). In one example, the control means 29 transmits this delivery response as an API response.
[0052] In the server 10, the response receiving means 15 receives the delivery response (step S107). When the response receiving means 15 receives the delivery response from the server 10, the control means 19 writes the hashed number information included in the delivery response to the record corresponding to the user X in the management database 111. Note that the process of writing this data to the management database 111 may be omitted.
[0053] When the response receiving means 15 in the server 10 receives the delivery response from the server 20, the registration request means 16 transmits a registration request to the server 30 (step S107). This registration request includes hashed number information, identification information of the user X, and identification information of the target service. The identification information of the user X is identification information of the user in the linked service. The identification information of the user X is identified, for example, by a login process. The identification information of the target service is included in the registration request received in step S102.
[0054] In the server 30, the receiving means 32 receives the registration request from the server 10. The registration means 33 writes the hashed number information and the identification information of the target service included in the registration request into the record corresponding to the identification information of the user X in the management database 311 (step S108).
[0055] FIG. 7 is a diagram illustrating an example of data recorded in database 311. Database 311 includes multiple data sets. Each data set includes user identification information, service identification information, access object identification information, recording medium identification information, and access conditions. The access object is, for example, an electric lock. In this example, multiple services can be registered for one user. One or more access objects are registered for each service. One or more recording media are registered for each access object. Access conditions are registered for each recording media. The access conditions indicate conditions (e.g., date, day of the week, and / or time period) under which access to the access object is permitted. In other words, it can be said that database 311 records, for each user, the correspondence between services, access objects, recording media, and access conditions.
[0056] For example, the example in Figure 7 shows that a user with identification information "1234567" has registered a recording medium in "Service A." This user has registered access objects with identification numbers "501" and "726." The access object with identification number "501" has registered a recording medium with the first number "AB12345678912345." The condition "from 3:00 PM on July 8, 2021 to 10:00 AM on July 9, 2021" has been registered as an access condition for the recording medium with the first number "AB12345678912345." The access object with identification number "726" has registered a recording medium with the first number "AB12345678912345" and a recording medium with the first number "AB98765432198765." The condition registered as the access condition for these two recording media is "from 3:00 PM on July 24, 2021 to 9:00 AM on July 27, 2021." As will be described later, in database 311, the identification information of each recording medium includes hashed number information. In database 311, the hashed number information does not need to include all of the first number, second number, and third number, and may include only a part of them (for example, only the first number).
[0057] The service system 4 can perform access management using the recording medium registered in the database 311 in the service system 3. Access to the object to be accessed is performed, for example, as follows.
[0058] (1) Access example 1 When a user holds a recording medium they own over a card reader (not shown) corresponding to the object to be accessed, the card reader reads the third number from the recording medium. The card reader inputs the read third number into a predetermined conversion formula to obtain the first number. This conversion formula is the same as the conversion formula used to generate the third number to be recorded on the recording medium. The card reader then hashes the first number obtained by the conversion. The hash function used by the card reader to hash the first number is the same as the hash function used by the server 20 to hash the number information. The card reader then transmits an authentication request to a management terminal (not shown) that includes the hashed first number and identification information of the electric lock corresponding to the card reader. The management terminal is a computer device installed in a physical area (e.g., in the same building) that includes the object to be accessed and connected to the card reader. The management terminal communicates with the server 30 via a network such as the Internet. The management terminal transmits the authentication request received from the card reader to the server 30.
[0059] Upon receiving an authentication request, the server 30 refers to the database 311 to determine whether to authenticate the authentication request. The database 311 stores the identification information of the electric lock, the hashed first number of the registered recording medium, and the corresponding access conditions. The server 30 compares the authentication request with the database 311. If a record containing data identical to the pair of hashed first number and electric lock identification information included in the authentication request is stored in the database 311 and the authentication request satisfies the access conditions, the server 30 acknowledges the authentication request. If a record containing data identical to the pair of hashed first number and electric lock identification information included in the authentication request is not stored in the database 311, or if the access conditions are not met, the server 30 denies the authentication request. The server 30 sends an authentication response indicating the authentication result to the management terminal that sent the authentication request.
[0060] When the management terminal receives an authentication response from the server 30, it outputs a signal according to the authentication result to the card reader. If the authentication is confirmed, the management terminal outputs an unlock signal to the card reader. If the authentication is denied, the management terminal outputs an error signal to the card reader. When the card reader receives an unlock signal from the management terminal, it outputs an unlock signal to the corresponding electric lock. When the unlock signal is received, the electric lock unlocks. When the card reader receives an error signal from the management terminal, it performs error processing (for example, by outputting a beep).
[0061] In the above example, the server 30 determines whether to authenticate the authentication request, but as another example, the management terminal or the electric lock may perform the authentication (without querying the server 30). In this case, the management terminal or the electric lock has a whitelist (i.e., a list of numbers that are permitted for authentication) and refers to this whitelist to determine whether to authenticate.
[0062] (2) Access example 2 When a user holds a recording medium they own over a card reader corresponding to the object to be accessed, the card reader reads the second number from the recording medium. The card reader hashes the read second number. The hash function used by the card reader to hash the second number is the same as the hash function used by server 20 to hash number information. The card reader sends an authentication request including the hashed second number and identification information of the electric lock corresponding to the card reader to a management terminal (not shown). The management terminal sends the authentication request received from the card reader to server 30.
[0063] Upon receiving an authentication request, the server 30 refers to the database 311 to determine whether to authenticate the authentication request. The database 311 stores the identification information of the electric lock, the hashed second number of the registered recording medium, and the corresponding access conditions. The server 30 compares the authentication request with the database 311. If a record containing data identical to the pair of the hashed second number and the identification information of the electric lock included in the authentication request is stored in the database 311 and the authentication request satisfies the access conditions, the server 30 acknowledges the authentication request. If a record containing data identical to the pair of the hashed second number and the identification information of the electric lock included in the authentication request is not stored in the database 311, or if the access conditions are not met, the server 30 denies the authentication request. The server 30 sends an authentication response indicating the authentication result to the management terminal that sent the authentication request.
[0064] When the management terminal receives an authentication response from the server 30, it outputs a signal according to the authentication result to the card reader. If the authentication is confirmed, the management terminal outputs an unlock signal to the card reader. If the authentication is denied, the management terminal outputs an error signal to the card reader. When the card reader receives an unlock signal from the management terminal, it outputs an unlock signal to the corresponding electric lock. When the unlock signal is received, the electric lock unlocks. When the card reader receives an error signal from the management terminal, it performs error processing (for example, by outputting a beep).
[0065] The number information used for authentication differs between access example 1 and access example 2. The number information used for authentication only needs to be recorded in database 311. Which number information is used for authentication is determined, for example, depending on the service or the reader / writer being used.
[0066] 2-2. Usage example Below, some specific examples of access to the access object will be explained.
[0067] 2-2-1.Entry and exit control system First, we will explain an example of a service in the service system 3. In this example, the service system 3 is a building entrance / exit (or access) management service, and the objects to be accessed are areas with different security levels, more specifically, gates installed at the boundaries of these areas.
[0068] User X is an employee of an organization (for example, a company or a hospital) that uses the service system 3. In the database 311, identification information of an electric lock of a gate installed at the boundary of an area separated by security is recorded as an object. User X has already registered as a user in the service system 3 in order to use this entry / exit management system. User X accesses the server 30 from a user terminal 90. The server 30 transmits data to the user terminal 90 for displaying an input screen for inputting entry / exit management information.
[0069] FIG. 8 is a diagram illustrating an example of an input screen for entry / exit management information. This input screen includes an input field 991, an input field 992, and a register button 993. The input field 991 is an area for inputting information specifying access restrictions. In this example, an organization using the service system 3 is a hospital. In this example, security levels within the hospital are categorized according to the attributes of visitors, such as "visitors," "nurses," and "doctors." For example, it is defined that doctors can enter and exit all areas at any time, nurses can enter and exit only their assigned wards and examination rooms, and visitors can enter and exit inpatient wards with time restrictions. The input field 992 is a UI object for entering a first number. The register button 993 is a UI object for issuing a reservation request related to the information entered in the input field 991.
[0070] In this example, User X is the receptionist at the inpatient ward. A family member (i.e., a visitor) who wishes to visit an inpatient presents his or her transportation IC card to User X at the reception of the inpatient ward. At this time, User X may request the visitor to enter the visitor's name and contact information, as well as the name of the inpatient. User X enters the first number and other information of the presented transportation IC card on the input screen of FIG. 8.
[0071] When the registration button 993 is pressed, the server 30 transmits a registration request for the recording medium to the server 10. This registration request includes the first number and additional information entered in the input field 992. The additional information includes identification information indicating the security level (e.g., "visitor"). The server 30 stores a database (not shown) that records the correspondence between the security level and the identification information of the electric lock for this organization. The server 30 refers to this database to identify the electric lock that corresponds to the specified security level.
[0072] Upon receiving this registration request, the server 10 acquires hashed number information of the recording medium corresponding to this first number from the server 20 as described in Fig. 6. The server 10 transmits a registration request for the acquired hashed number information to the server 30. This registration request includes a security level as additional information corresponding to this first number.
[0073] The server 30 registers the following items A to C in the database 311 in a record corresponding to the identifier of the electric lock included in the registration request. a) User identification information (for visitors who are not employees of the organization, User X may register the name he or she obtains from the visitor, or a common identification such as "visitor" may be used) a) First number of the recording medium, hashed number information C) Security level d) Contact details of external users who use the recording medium E) If there is a time limit, the period When the registration of the data regarding this visitor is complete, the server 30 notifies the user terminal 90, i.e., the user X, that the data registration is complete. The server 30 may also notify the visitor that the data registration is complete. For example, the server 30 sends an email containing a message to the visitor who has completed adding the recording medium that the addition is complete.
[0074] In this example, regular hospital employees, as well as non-regular employees such as temporary staff and part-timers, can be given time-limited access rights. Visitors to hospitalized patients can also be given access rights to only the areas that they are permitted to access using their transportation IC cards. By installing an electric lock for each patient room and defining access restrictions, access control for each patient room is also possible.
[0075] While the example described here is entrance / exit management for a hospital, entrance / exit management for corporate visitors can be performed in a similar manner. Furthermore, the reception desk may be unmanned and visitors or guests may operate the user terminal 90 themselves and register their own transportation IC card when entering the building.
[0076] 2-2-2.Hotel reservation management Next, an example of a service in the service system 4 will be described. In this example, the service system 4 is a hotel reservation management service, and the object to be accessed is the electric lock of a guest room. The database 311 records the identification information of the electric lock of the hotel's guest room as the object. User X has already registered as a user in the service system 4 to make a reservation for accommodation at this hotel. User X accesses the server 40 from a user terminal 90. The server 40 transmits data to the user terminal 90 for displaying an input screen for inputting a reservation.
[0077] FIG. 9 is a diagram illustrating an input screen for hotel reservations. This input screen includes an input field 994, an input field 995, and a register button 993. The input field 994 is a UI object for inputting information for reserving a hotel room (in this example, the room type, number of guests, number of nights, check-in time, and check-out time). The input field 995 is a UI object for inputting a first number. In the input field 995, first numbers of recording media can be input up to the same number as the number of guests (for example, if two people are staying, first numbers of two recording media can be input). The register button 993 is a UI object for issuing a reservation request related to the information input in the input field 994. User X inputs, for example, the first number of a transportation IC card he or she owns into the input field 994.
[0078] When the registration button 993 is pressed, the server 40 determines whether a room can be allocated in response to this accommodation reservation request. The server 40 stores a database (not shown) in which guest rooms and their reservation statuses are recorded. The server 40 refers to this database to determine whether a room can be allocated in response to this accommodation reservation request.
[0079] If it is determined that a room can be allocated in response to this room reservation request, the server 40 transmits a registration request for the recording medium to the server 10. This registration request includes the first number entered in the input field 992 and additional information for the room reservation service. In this example, the additional information includes the identification information of the user who made the room reservation, the identification information of the electronic lock corresponding to the reserved room, and the check-in time and check-out time. The server 40 stores a database (not shown) that records the correspondence between the identification information of the room and the identification information of the electronic lock. The server 40 refers to this database to identify the electronic lock corresponding to the reserved room.
[0080] Upon receiving this registration request, the server 10 acquires hashed number information of the recording medium corresponding to this first number from the server 20 as described in Fig. 6. The server 10 transmits a registration request for the acquired hashed number information to the server 30. This registration request includes additional information of the accommodation reservation service corresponding to this first number.
[0081] The server 30 registers the following items A to C in the database 311 in a record corresponding to the identifier of the electric lock included in the registration request. a) User identification information a) First number of the recording medium, hashed number information C) Check-in and check-out times When the registration of the data relating to this reservation is completed, server 30 notifies server 40, which is the sender of the registration request, that the data registration has been completed.
[0082] When the server 30 receives a notification that the data registration has been completed, the server 40 notifies the user terminal 90 that the reservation has been completed. This notification includes, for example, the room number. After the registered check-in time has passed, the user can enter the room using the registered recording medium.
[0083] When user X holds his / her transportation IC card over a card reader (not shown) corresponding to the electronic lock in the guest room, the card reader reads the second number from the transportation IC card. The card reader hashes the read second number. The hash function used by the card reader to hash the second number is the same as the hash function used by server 20 to hash the second number. The card reader sends an authentication request including the hashed second number and identification information of the electronic lock corresponding to the card reader to a management terminal (not shown). The management terminal is a computer device installed in the hotel and connected to the card reader. The management terminal communicates with server 30 via a network such as the Internet. The management terminal sends the authentication request received from the card reader to server 30.
[0084] Upon receiving an authentication request, the server 30 refers to the database 311 to determine whether to authenticate the authentication request. The database 311 stores the identification information of the electric lock, the hashed second number of the registered recording medium, and the corresponding access conditions. The server 30 compares the authentication request with the database 311. If a record containing the same data as the combination of the hashed second number and the electric lock identification information included in the authentication request is stored in the database 311, and the authentication request satisfies the access conditions (for example, the time of the authentication request is between the check-in time and the check-out time), the server 30 acknowledges the authentication request. If a record containing the same data as the combination of the hashed second number and the electric lock identification information included in the authentication request is not stored in the database 311, or if the access conditions are not met, the server 30 denies the authentication request. The server 30 sends an authentication response indicating the authentication result to the management terminal that sent the authentication request.
[0085] When the management terminal receives an authentication response from the server 30, it outputs a signal according to the authentication result to the card reader. If the authentication is confirmed, the management terminal outputs an unlock signal to the card reader. If the authentication is denied, the management terminal outputs an error signal to the card reader. When the card reader receives an unlock signal from the management terminal, it outputs an unlock signal to the corresponding electric lock. When the unlock signal is received, the electric lock unlocks. When the card reader receives an error signal from the management terminal, it performs error processing (for example, by outputting a beep).
[0086] Conventionally, in order to enable user X to unlock the electronic lock of the guest room with his or her transportation IC card, the hotel operator had to obtain and manage the number information of user X's transportation IC card, which made the process complicated and raised security concerns. However, with this example, the hotel does not need to obtain and manage the number information of user X's transportation IC card. Furthermore, with this example, the hotel operator can reduce personnel and material costs by eliminating the need for guest check-in and check-out procedures at the reception counter (e.g., issuing and collecting card keys).
[0087] 2-2-3. Residential apartment keys In this example, the service system 4 is an entry management service for a residential apartment building, and the object to be accessed is the electric lock of each unit. The database 311 records the identification information of the electric lock of each unit in this apartment building as the object. Each unit is assigned a maximum number of recording media that can be registered. User X is a resident of this apartment building, and has already registered as a user in the service system 4 in order to lock / unlock his / her home with his / her own transportation IC card. User X accesses the server 40 from a user terminal 90. The server 40 transmits data to the user terminal 90 to display an input screen for inputting addition / change of recording media.
[0088] FIG. 10 is a diagram illustrating an input screen for adding or changing a recording medium. This input screen includes an input field 996, an input field 997, and a register button 993. The input field 996 is a UI object for inputting the type of use (temporary use or permanent use) of the recording medium to be added or changed and, if temporary use, the period of use. The input field 997 is a UI object for inputting a first number. Note that in this example, the input field 997 is part of the input field 996. In this example, a pet name and the corresponding external user's contact information can be recorded for each recording medium, and the input field 995 also includes input fields for the pet name and contact information. The register button 993 is a UI object for issuing a request to add or change a recording medium related to the information entered in the input field 991. For example, User X enters the first number of a transportation IC card held by a family member or friend who lives separately into the input field 992 so that the family member or friend can temporarily enter his or her home when User X is not at home.
[0089] When the registration button 993 is pressed, the server 40 transmits a registration request for the recording medium to the server 10. This registration request includes the first number and additional information about the residence entered in the input field 996. In this example, the additional information includes the type of use, pet name, contact information, and, in the case of temporary use, the period of use. The server 40 stores a database (not shown) that records the correspondence between the identification information of each household and the identification information of the electric lock. The server 40 refers to this database to identify the electric lock corresponding to the specified residence. Here, the "electric lock corresponding to the specified residence" may include the electric lock on the front door of the residence as well as the electric locks of common spaces (e.g., the entrance to the apartment building, the garbage disposal area, the meeting place, the bicycle parking area, and the parking lot). Alternatively, whether or not to include the electric locks of these common spaces may be individually selected on the input screen of FIG. 10.
[0090] Upon receiving this registration request, the server 10 acquires the hashed number information of the recording medium corresponding to this first number from the server 20 as described in Fig. 6. The server 10 transmits a registration request for the acquired hashed number information to the server 30. This registration request includes additional information about the residence corresponding to this first number.
[0091] The server 30 registers the following items A to C in the database 311 in a record corresponding to the identifier of the electric lock included in the registration request. a) User identification information a) First number of the recording medium, hashed number information C) Type of use d) Contact details of external users who use the recording medium E) In the case of temporary use, the period When the registration of the data relating to the residence is completed, the server 30 notifies the server 40, which is the sender of the registration request, that the data registration has been completed.
[0092] When the server 30 receives a notification that the data registration has been completed, the server 40 notifies the user terminal 90 that the reservation has been completed. The server 40 may notify the user terminal 90 that sent the registration request, as well as the contact information of the external user corresponding to the newly added or changed recording medium, that the recording medium has been registered. For example, the server 40 sends an email containing a message that the addition has been completed to the external user who has completed adding the recording medium.
[0093] When an external user who possesses a recording medium registered by User X visits User X's apartment and holds his or her transportation IC card over a card reader (not shown) corresponding to the electric lock at the entrance or the card reader corresponding to the electric lock on the front door of User X's residence, the card reader reads the second number from the transportation IC card. The card reader hashes the read second number. The hash function used by the card reader to hash the second number is the same as the hash function used by Server 20 to hash the second number. The card reader transmits an authentication request including the hashed second number and identification information of the electric lock corresponding to the card reader to a management terminal (not shown). The management terminal is a computer device installed in the apartment and connected to the card reader. The management terminal communicates with Server 30 via a network such as the Internet. The management terminal transmits the authentication request received from the card reader to Server 30. The following processing for this authentication request is the same as that described in 2-2-1.
[0094] Previously, in order to allow a family member or friend of User X to unlock the electronic lock of an apartment building with a transportation IC card held by that person, the apartment building management company had to obtain and manage the number information of the external user's transportation IC card, which made the process complicated and raised security concerns. However, with this example, the apartment building management company does not need to obtain or manage the number information of User X's transportation IC card.
[0095] 2-2-4.Key management for rental properties In this example, the service system 4 is a key management service for rental housing, and the object to be accessed is an electric lock installed on the front door of the rental property. The database 311 records the identification information of the electric lock of the rental property as the object. User X is the owner of this rental property, and has already registered as a user in the service system 4 so that a management company or real estate agent can lock / unlock the property when managing or viewing the property. User X accesses the server 40 from a user terminal 90. The server 40 sends data to the user terminal 90 to display an input screen for inputting additions and changes to recording media.
[0096] FIG. 11 is a diagram illustrating an input screen for adding or changing a recording medium. This input screen includes an input field 998, an input field 999, and a register button 993. The input field 998 is a UI object for inputting the type of use (temporary use or permanent use) of the recording medium to be added or changed and, in the case of temporary use, the period of use. The input field 999 is a UI object for inputting a first number. Note that in this example, the input field 999 is part of the input field 998. In this example, it is possible to record contact information for an external user for each recording medium, and the input field 997 includes a contact information input field. The register button 993 is a UI object for issuing a request to add or change a recording medium related to the information entered in the input field 998. For example, user X enters the first number of a transportation IC card held by a real estate agent into the input field 999 so that the real estate agent can guide (or show) prospective tenants to the property.
[0097] When the registration button 993 is pressed, the server 40 transmits a request to register the recording medium to the server 10. This registration request includes the first number entered in the input field 996 and additional information about the property. In this example, the additional information includes the type of use, contact information, and, in the case of temporary use, the period of use. The server 40 stores a database (not shown) that records the correspondence between the identification information of the property and the identification information of the electric lock. The server 40 refers to this database to identify the electric lock corresponding to the specified property. Here, the "electric lock corresponding to the specified property" may include not only the electric lock on the front door of the property, but also the electric locks of common spaces (e.g., the entrance to the apartment building, the garbage disposal area, the meeting place, the bicycle parking area, and the parking lot) if the property is an apartment building. Alternatively, whether or not to include the electric locks of these common spaces may be selected individually on the input screen of FIG. 11.
[0098] Upon receiving this registration request, the server 10 acquires hashed number information of the recording medium corresponding to this first number from the server 20 as described in Fig. 6. The server 10 transmits a registration request for the acquired hashed number information to the server 30. This registration request includes additional information of the property corresponding to this first number.
[0099] The server 30 registers the following items A to C in the database 311 in a record corresponding to the identifier of the electric lock included in the registration request. a) User identification information a) First number of the recording medium, hashed number information C) Type of use d) Contact details of external users who use the recording medium E) In the case of temporary use, the period When the registration of the data relating to this property is completed, server 30 notifies server 40, which is the sender of the registration request, that the data registration has been completed.
[0100] When the server 30 receives a notification that the data registration has been completed, the server 40 notifies the user terminal 90 that the registration has been completed. The server 40 may notify the user terminal 90 that sent the registration request, as well as the contact information of the external user corresponding to the newly added or changed recording medium, that the recording medium has been registered. For example, the server 40 sends an email containing a message that the addition has been completed to the external user (e.g., a real estate agent) who has completed the addition of the recording medium.
[0101] When an external user possessing a recording medium registered by User X visits User X's rental property and holds his / her transportation IC card over a card reader (not shown) corresponding to the electric lock on the front door or a card reader corresponding to the electric lock on the front door of User X's residence, the card reader reads the second number from the transportation IC card. The card reader hashes the read second number. The hash function used by the card reader to hash the second number is the same as the hash function used by Server 20 to hash the second number. The card reader transmits an authentication request including the hashed second number and identification information of the electric lock corresponding to the card reader to a management terminal (not shown). The management terminal is a computer device installed in the property and connected to the card reader. The management terminal communicates with Server 30 via a network such as the Internet. The management terminal transmits the authentication request received from the card reader to Server 30. The following processing for this authentication request is the same as that described in 2-2-1.
[0102] Previously, in order to enable the electronic lock of an apartment building to be unlocked with a transportation IC card held by a real estate agent or management company, the property owner (or a person entrusted with management by the owner) had to obtain and manage the number information of the transportation IC card of the external user, which made the process complicated and raised security concerns. However, with this example, the property owner does not need to obtain or manage the number information of the transportation IC card of the real estate agent or management company.
[0103] The external user may be a resident of the property. Alternatively, an external user who has received permission from the property owner may access the server 40 and register his / her own recording medium on behalf of the property owner. In this case, the owner may register, for example, the account of the person who is authorized to register the recording medium in the service system 4.
[0104] 3. Variations The present invention is not limited to the above-described embodiment, and various modifications are possible. Some modifications will be described below. Two or more of the features described in the modifications below may be used in combination.
[0105] 3-1. Access authentication In the embodiment, an example has been described in which a hashed second number is used for access authentication to an access target object, but the information used for access authentication is not limited to this. Either Access Example 1 or Access Example 2 may be used for access authentication. Alternatively, both the hashed second number and the hashed third number may be used. Furthermore, as a further alternative, the card reader may output at least one of the second number and the third number without hashing, and access authentication may be performed using the unhashed second number or the unhashed third number.
[0106] Furthermore, the server 10 does not need to transmit number information that is not used for access authentication to the management server of the second service. For example, the server 10 has a database (not shown) that records the identification information of the management server of the service and the type of number (second number or third number) used for access authentication in that service. The server 10 refers to this database to determine whether to transmit the hashed second number or the hashed third number.
[0107] 3-2. Sending the input screen The device that transmits the screen for inputting the first number to the user terminal 90 is not limited to the server 10. Instead of the server 10, the server 20 (i.e., the first server) may transmit the screen for inputting the first number to the user terminal 90. In this case, this input screen includes a UI object for inputting information specifying the service to which the recording medium is to be registered. In this case, the server 10 acquires the first number from the server 20. In an example in which the server 10 acquires the first number from the server 20 or directly from the user terminal 90, the first number can be handled without going through another service such as the second service, and security can be improved compared to when the first number is transmitted via another service.
[0108] It should be noted that multiple servers among server 10, server 20, server 30, and server 40 may all have a screen transmission means. In this case, the server accessed by user terminal 90 (e.g., server 40) determines which server will transmit the input screen depending on the type of recording medium (specifically, for example, the issuer of the recording medium). In this case, for example, server 40 accepts input of information indicating the type of recording medium. If this information indicates that the recording medium is issued by a specific issuer, server 40 sets server 10 as the redirect destination, and otherwise sets server 20 as the redirect destination.
[0109] 3-3. How to enter the first number The method of inputting the first number of the recording medium in the user terminal 90 is not limited to the example given in the embodiment. For example, the user terminal 90 may take a picture of the first number printed on the surface of the recording medium with a camera (not shown) and read the first number from the image. The first number on the surface of the recording medium may be represented by an image code such as a QR code (registered trademark) instead of a character string. If the user terminal 90 and the recording medium are integrated (for example, if the recording medium is a contactless IC card chip of a smartphone), the user terminal 90 may automatically obtain the first number using an application program that reads data from the contactless IC card chip.
[0110] 3-4.Notification of discontinuation of use of recording media In this example, the service system 2 manages the issuance or validation of recording media. A user who wishes to stop using a recording medium or who has lost a recording medium contacts the service system 2 to stop using the recording medium. Upon receiving notification from the user that they will stop using the recording medium, the server 20 rewrites the information indicating the usage status of the recording medium in the media database 211, specifically, for example, the value of the valid / invalid flag, to "invalid." If the value of this flag is "invalid," the server 20 does not transmit the second number and the third number in response to a delivery request from the server 30 or the server 40.
[0111] Furthermore, in this example, the notification means 23 of the service system 2 notifies the server 10 of the identification information (e.g., the first number) of the recording medium whose flag value has been rewritten to "invalid." The information receiving means 17 of the server 10 receives this notification. When the information receiving means 17 receives this notification, the notification means 18 transmits a notification to the management server of the access management platform service (i.e., the server 30) that the recording medium will be put into a suspended state. This notification includes the identification information (e.g., the first number) of the recording medium.
[0112] Upon receiving this notification, the registration means 33 of the server 30 writes a flag indicating that the recording medium is in a disabled state into the database 311. When the server 30 receives an authentication request for the recording medium whose flag indicates that the recording medium is in a disabled state, the server 30 denies the authentication request. In other words, a recording medium that is registered as being in a disabled state in the service system 2 can also be disabled in other service systems such as the service system 3 and the service system 4 provided on the platform of the service system 3.
[0113] 3-5. Write the disable flag The server 30 may write a flag indicating a suspended state in the database 311 without receiving a notification from the server 20. In this example, the database 311 records the number of recording media allocated to each user. When a request is made to register a new recording medium that exceeds the number of allocated recording media, the registration means 33 writes information to invalidate at least one recording medium already recorded in the database 311 for that user (rewrites the usage status flag to "invalid"). Furthermore, the registration means 33 writes a hashed second number and a hashed third number corresponding to the new recording medium in the database 311.
[0114] 3-6.Multiple Platform Services In the above embodiment, an example has been described in which a platform service for access management using a recording medium is provided by a single system (service system 3). However, the platform service for access management using a recording medium may be provided by multiple different systems. In this case, server 10 transmits a registration request for the recording medium to the servers of these multiple systems. Alternatively, server 10 may have a database (not shown) in which the correspondence between services and platforms is recorded, and may refer to this database to select a server for the access management platform service to which to transmit the registration request. For example, when server 10 receives a registration request for a recording medium for "service A" from server 40, server 10 transmits the registration request for the recording medium to the server of the platform service that is shown to correspond to service A in the database.
[0115] 3-7. Other Modifications The structures of the various input screens and databases described in the embodiments are merely examples, and the present invention is not limited to these. For example, the server 10 does not need to have the management database 111.
[0116] The hardware configuration of the devices constituting each system, such as the service collaboration system 1, is not limited to that exemplified in the embodiments. For example, each server may be a physical server or a virtual server (e.g., a so-called cloud). Furthermore, the functional configuration of each system, such as the service collaboration system 1, is not limited to that exemplified in the embodiments. At least some of the functional elements of each system may be omitted. Furthermore, the correspondence between the functional elements and the hardware elements in each system, such as the service collaboration system, is not limited to that exemplified in the embodiments. For example, various databases may be stored in a device separate from the server that performs processing by referencing the database. Alternatively, some of the functions described in the embodiments as being implemented in a single server device may be implemented in another server device or a user terminal.
[0117] The program executed by a processor such as the CPU 101 may be downloaded via a network such as the Internet, or may be provided in a state recorded on a non-transitory recording medium such as a CD-ROM. [Explanation of symbols]
[0118] 1...service collaboration system, 2...service system, 3...service system, 4...service system, 10...server, 11...storage means, 12...screen transmission means, 13...number acquisition means, 14...delivery request means, 15...response receiving means, 16...registration request means, 17...information receiving means, 18...notification means, 19...control means, 20...server, 21...storage means, 22...screen transmission means, 23...notification means, 29...control means, 30...server, 31...storage means, 32...receiving means, 33...registration means, 34...screen transmission means, 35...number transmission means, 39...control means, 40...server, 41...storage means, 42...screen transmission means, 43...number transmission means, 49...control means, 90...user terminal, 91...storage means Stage, 92...receiving means, 93...UI means, 94...transmitting means, 99...control means, 101...CPU, 102...memory, 103...storage, 111...management database, 201...CPU, 202...memory, 203...storage, 211...media database, 301...CPU, 302...memory, 303...storage, 311...management database, 401...CPU, 402...memory, 403...storage, 901...CPU, 902...memory, 903...storage, 905...display, 906...input device, 991...input field, 992...input field, 993...registration button, 994...input field, 995...input field, 996...input field, 997...input field, 998...input field, 999...input field.
Claims
1. a relay server that communicates with a first server that is a management server for a first service that uses a recording medium; a second server that is a management server for a second service different from the first service; and The relay server a number acquiring means in the user terminal for acquiring a first number input via an input screen that accepts input of a first number that corresponds to the recording medium and is disclosed to the user in the first service; a delivery request means for transmitting a delivery request including the first number received by the number acquisition means to the first server; a response receiving means for receiving, from the first server, number information including at least one of the encrypted first number, a second number corresponding to the first number and unique to the recording medium, and a third number corresponding to the first number and given in the first service, as a response to the delivery request; a registration request means for transmitting a registration request including the number information and the user's identification information to a management server of the second service; and The second server, a registration means for registering the number information in a record corresponding to the user's identification information in a database relating to the second service in response to the registration request from the relay server; have Service collaboration system.
2. the first server has a screen transmission means for transmitting a screen for displaying the input screen on the user terminal to the user terminal, The number acquisition means acquires the first number from the first server. The service collaboration system according to claim 1 .
3. the second service is an access management platform service; the service collaboration system includes a third server that provides a third service on the platform service; The third server, screen transmission means for transmitting to the user terminal a screen for displaying the input screen on the user terminal; and The number acquisition means acquires the first number from the third server. The service collaboration system according to claim 1 .
4. the relay server has a screen transmission means for transmitting to the user terminal a screen for displaying the input screen on the user terminal, The number acquisition means acquires the first number from the user terminal. The service collaboration system according to claim 1 .
5. In the response, at least one of the second number and the third number is encrypted. The service collaboration system according to any one of claims 1 to 3.
6. The relay server an information receiving means for receiving, from the first server, suspension information indicating that the use of a specific recording medium has been suspended; a notification means for notifying the second server, upon receiving the stop information, that use of the recording medium has been stopped; and In the second server, the registration means writes information indicating that the recording medium is in a disabled state into a database related to the second service in response to the notification. The service collaboration system according to any one of claims 1 to 5.
7. the database relating to the second service includes, for each of a plurality of users, the number of recording media allocated to that user; When a request for registration of a new recording medium that exceeds the number of allocated recording media is made to the user, the registration means writes information for invalidating at least one recording medium that has already been recorded in the database related to the second service in association with the user, and at least one of the second number and the third number corresponding to the new recording medium, into the database related to the second service. The service collaboration system according to any one of claims 1 to 6.
8. a number acquisition means for acquiring, in a user terminal, a first number corresponding to the recording medium and disclosed to a user in the first service, the first number being input via an input screen that accepts input of the first number; a delivery request means for transmitting a delivery request including the first number received by the number acquisition means to a management server of the first service; a response receiving means for receiving, from the management server, as a response to the delivery request, number information including at least one of the encrypted first number, a second number corresponding to the first number and unique to the recording medium, and a third number corresponding to the first number and given in the first service; a registration request means for transmitting a registration request including the number information and the user's identification information to a management server of a second service different from the first service; A server having:
9. A service collaboration method in a system having a relay server that communicates with a first server that is a management server for a first service that uses a recording medium, and a second server that is a management server for a second service different from the first service, comprising: a step in which the relay server acquires, in relation to a first service using a recording medium, a first number that is input via an input screen in a user terminal, the first number corresponding to the recording medium and disclosed to the user in the first service; the relay server sending a delivery request including the first number to a management server of the first service; a step of receiving, from the management server, number information including at least one of the encrypted first number, a second number corresponding to the first number and unique to the recording medium, and a third number corresponding to the first number and given in the first service, as a response to the delivery request by the relay server; the relay server transmitting a registration request including the number information and user identification information to a management server of the second service; a step in which the management server of the second service registers the number information in a record corresponding to the user's identification information in a database related to the second service in response to the registration request from the relay server; A service collaboration method having the above.
Citation Information
Patent Citations
Production of diacyl peroxide
JP1985097953A
Facility use management system
JP2013008392A
Expanded office assisting system
JP2021051522A
Storage area dividing method for portable device
WO2001077920A1