Image forming apparatus and control method
The image forming apparatus allows authentication of non-pre-set users by capturing and verifying user images, enhancing user flexibility and access control through terminal-based verification.
Patent Information
- Application Number
- JP2022047135
- Authority / Receiving Office
- JP · JP
- Patent Type
- Patents
- Current Assignee / Owner
- Filing Date
- 2022-03-23
- Publication Date
- 2025-09-11
- Estimated Expiration
- 2042-03-23
AI Technical Summary
Conventional image forming apparatuses can only authenticate pre-set users, preventing others from using the device, and do not allow flexible user authentication.
An image forming apparatus that captures a requesting user's image and transmits it to an authenticated user's terminal for manual verification, allowing the authenticated user to grant or deny access.
Enables authentication of users who were not pre-set, providing flexibility in user access control and allowing authorized users to determine the level of device usage.
Smart Images

Figure 0007737942000001 
Figure 0007737942000002 
Figure 0007737942000003
Abstract
Description
[Technical Field]
[0001] FIELD An embodiment of the present invention relates to an image forming apparatus and a control method. [Background technology]
[0002] Conventionally, there are techniques for authenticating a user when using an image forming apparatus. [Prior art documents] [Patent documents]
[0003] [Patent Document 1] Japanese Patent Application Publication No. 2019-209585 [Patent Document 2] Japanese Patent Application Publication No. 2019-080182 Summary of the Invention [Problem to be solved by the invention]
[0004] One such technology is a technology that performs face authentication of users using a camera installed in an image forming device. Users who can be authenticated using this technology are those who have been set as authentication targets in advance, and therefore users other than those users cannot use the image forming device.
[0005] Another technique allows an issuer to select whether to allow or deny private printing when a user other than the issuer executes a private printing command on an image forming device. In this technique, the other user is only permitted to perform private printing. In other words, the other user is not permitted to use the image forming device for purposes other than private printing.
[0006] As described above, the conventional user authentication in the image forming apparatus has a problem in that only users who have been set as targets for authentication in advance can be authenticated.
[0007] The problem to be solved by the present invention is to provide an image forming apparatus and a control method that can authenticate a user who has not been set as an authentication target in advance. [Means for solving the problem]
[0008] An image forming apparatus according to an embodiment includes an imaging unit, an image transmission unit, and an acquisition unit. The imaging unit captures an image of a requesting user requesting authentication to use the image forming apparatus. The image transmission unit transmits a requesting user image, which represents the requesting user and is captured by the imaging unit, to a terminal used by an authenticated user who authenticates the requesting user. The acquisition unit acquires an authentication result by the authenticated user from the terminal. [Brief explanation of the drawings]
[0009] [Figure 1] FIG. 1 is a diagram showing an example of the configuration of an authentication system according to an embodiment. [Figure 2] 1 is an external view showing an example of the overall configuration of an image forming apparatus according to an embodiment; [Figure 3] FIG. 2 is a block diagram showing the configuration of a system controller that is a control system of the image forming apparatus according to the embodiment. [Figure 4] FIG. 10 is a diagram showing an example of an authenticated user DB. [Figure 5] FIG. 10 is a diagram showing an example of a selection screen. [Figure 6] FIG. 10 is a diagram showing an example of an authentication screen. [Figure 7] FIG. 10 is a diagram showing an example of an authentication success / failure screen. [Figure 8] FIG. 10 is a diagram showing an example of an authentication OK screen. [Figure 9] FIG. 10 is a diagram showing an example of an authentication NG screen. [Figure 10] 4 is a flowchart showing a processing flow of the image forming apparatus. [Figure 11] 10 is a flowchart showing the flow of an authentication user PC. DETAILED DESCRIPTION OF THE INVENTION
[0010] DETAILED DESCRIPTION OF THE PREFERRED EMBODIMENTS An image forming apparatus and a control method according to an embodiment will be described below with reference to the accompanying drawings. The image forming apparatus according to the embodiment is capable of authenticating a user who has not been set as an authentication target in advance.
[0011] 1 is a diagram showing an example of the configuration of an authentication system 1000 including an image forming apparatus 100 according to an embodiment. The authentication system 1000 includes the image forming apparatus 100, an authentication user DB (Data Base) server 200, and authentication user PCs (Personal Computers) 300-1, ..., 300-n (n is an integer equal to or greater than 1). In the following description, when there is no need to distinguish between the authentication user PCs 300-1, ..., 300-n, they will be referred to as authentication user PCs 300. The authentication user PCs 300 are an example of terminals used by authentication users.
[0012] The image forming apparatus 100, the authentication user DB server 200, and the authentication user PC 300 can communicate with each other via the network NW. The authentication user DB server 200 is a server that stores the authentication user DB, as will be described later, but the authentication user DB may be stored in the image forming apparatus 100, in which case the authentication user DB server 200 is not necessary.
[0013] In the authentication system 1000, a requesting user who requests authentication to use the image forming device 100 is imaged. The requesting user image obtained by imaging the requesting user is sent to an authenticated user PC 300 used by an authenticated user who authenticates the requesting user. The requesting user image is displayed on the authenticated user PC 300. The authenticated user determines whether or not to authenticate the requesting user using the displayed requesting user image. The authenticated user inputs the authentication result to the authenticated user PC 300. The authenticated user PC 300 sends the authentication result to the image forming device 100. The image forming device 100 acquires the authentication result by the authenticated user. If the authentication result indicates that the requesting user has been authenticated, the image forming device 100 permits the requesting user to use the image forming device 100. If the authentication result indicates that authentication has been denied, the image forming device 100 does not permit the requesting user to use the image forming device 100.
[0014] 2 is an external view showing an example of the overall configuration of the image forming apparatus 100 according to the embodiment. The image forming apparatus 100 according to the embodiment is, for example, a multifunction peripheral, and has a copy function, a printer function, a scanner function, and a fax function.
[0015] The image forming apparatus 100 includes a control panel 12, a scanner 14, a printer 16, a camera 18, a sheet storage unit 140, and a system controller 1.
[0016] The printer 16 forms an image on a sheet using a developer such as toner. The sheet may be, for example, paper or label paper. The sheet may be any material on whose surface the image forming apparatus 100 can form an image.
[0017] The scanner 14 reads the image information of the object to be read as light and dark. The scanner 14 records the read image information in the main memory 4 of the system controller. The recorded image information may be transmitted to another information processing device via a network. The recorded image information may be formed into an image on a sheet by the printer 16.
[0018] Control panel 12 has a display and a plurality of buttons. The display is an image display device such as a liquid crystal display or an organic EL (Electro Luminescence) display. The display is provided with a touch panel. The display displays various information related to image forming apparatus 100. Control panel 12 accepts user operations.
[0019] The sheet storage section 140 stores sheets to be used for image formation in the printer 16 .
[0020] The printer 16 forms an image on a sheet based on image information generated by the scanner 14 or image information received via a communication path. The printer 16 forms an image by, for example, the following process: The image forming unit of the printer 16 forms an electrostatic latent image on a photosensitive drum based on the image information. The image forming unit of the printer 16 forms a visible image by attaching a developer to the electrostatic latent image. The transfer unit of the printer 16 transfers the visible image onto the sheet. The fixing unit of the printer 16 fixes the visible image onto the sheet by applying heat and pressure to the sheet. The sheet on which the image is formed may be a sheet stored in the sheet storage unit 140 or a manually fed sheet.
[0021] 3 is a block diagram showing the configuration of a system controller, which is a control system of an image forming apparatus 100 according to an embodiment. In FIG. 3, the system controller 1 includes a system LSI 2, an image processing unit 3, a main memory 4, an HDD 5, a ROM / RAM 6, and an imaging controller 7. The system controller 1 is also connected to a control panel 12, a camera 18, a scanner 14, and a printer 16.
[0022] The system LSI 2 is a chip called an SoC (System On Chip). The system LSI 2 includes an internal bus 51 capable of high-speed communication. A memory controller 9, a CPU 10, a control panel controller 11, and a SATA (Serial Advanced Technology Attachment) controller 13 are connected to the bus 51. Furthermore, I / O controllers 8, 17, and 20, and a PCIe (Peripheral Component Interconnect Express) controller 15 are connected to the bus 51.
[0023] CPU 10 controls the overall operation of image forming apparatus 100. Specifically, CPU 10 makes a control program stored in ROM / RAM 6 resident in main memory 4 and controls each unit based on the program content. Memory controller 9, in response to instructions from CPU 10, controls reading of the resident program from main memory 4, storing of image data in main memory 4, and reading of image data from main memory 4. Main memory 4 has an area capable of storing image information for multiple pages, and can store image information from scanner 14, for example, page by page.
[0024] The SATA controller 13 connects the system LSI 2 to the HDD 5. The HDD 5 compresses and stores image data read by the scanner 14. The I / O controller 8 connects the system LSI 2 to the ROM / RAM 6. The ROM 6 stores control programs and the like. The RAM 6 temporarily stores data.
[0025] The PCIe controller 15 connects the system LSI 2 and the image processing unit 3. The image processing unit 3 performs compression processing and the like on the image data output from the scanner 14. The image processing unit 3 also performs processing such as decompression on the image data and outputs it to the printer 16.
[0026] The control panel controller 11 connects the system LSI 2 and the control panel 12. The control panel controller 11 controls the control panel 12 in response to instructions from the CPU 10. The control panel controller 11 includes an I / O controller and an LCD controller. The control panel controller 11 displays various information on the control panel 12 and outputs user operation details to the CPU 10.
[0027] The I / O controller 17 connects the system LSI 2 and the imaging controller 7. The imaging controller 7 connects to the camera 18. The camera 18 is an example of an imaging unit. The imaging controller 7 controls the camera 18. Specifically, the imaging controller 7 instructs the camera 18 to capture an image of the face of an approaching user in response to an instruction from the CPU 10. In particular, in this embodiment, the camera 18 captures an image of a requesting user who requests authentication to use the image forming apparatus 100. Captured face data (e.g., a requesting user image) showing the captured face of the user is stored in the main memory 4 via the I / O controller 17, etc.
[0028] FIG. 4 is a diagram showing an example of an authenticated user DB stored in the authenticated user DB server 200. The authenticated user DB is a database that stores information about authenticated users who authenticate requesting users. The authenticated user DB is composed of identification information, usage authority, destination address, and status. The identification information is information that uniquely identifies an authenticated user. The usage authority (hereinafter sometimes simply referred to as "authority") indicates the authority granted to an authenticated user. Details of the authority will be described later. The destination address indicates information for connecting to the authenticated user's PC, such as an IP address.
[0029] The status indicates status information indicating whether the authenticated user is in a state where authentication is possible. In this embodiment, the statuses provided are "busy," "available," and "offline." "Busy" indicates that the authenticated user is currently busy with something and is difficult to authenticate. "available" indicates that authentication is currently possible. "Offline" indicates that the authenticated user's PC cannot be connected, in which case the authenticated user obviously cannot be authenticated. A status may also be provided with a period during which authentication is possible other than the above. The period during which authentication is possible is, for example, a period during which authentication is possible, such as "authentication is possible until 1:00 PM" or "authentication is possible from 3:00 PM to 5:00 PM," or a period during which authentication is not possible.
[0030] The above authorities will be explained. In this embodiment, the authorities that can be granted to an authenticated user include "scan execution," "copy execution," "print execution," and "user registration." "Scan execution" is the authority to execute the scanner function of the image forming apparatus 100. "Copy execution" is the authority to execute the copy function of the image forming apparatus 100. "Print execution" is the authority to execute the printer function of the image forming apparatus 100. "User registration" is the authority to register a new user who will use the image forming apparatus 100.
[0031] Therefore, a user who has been granted "scan execution" can use the scanner function. A user who has been granted "copy execution" can use the copy function. A user who has been granted "print execution" can use the print function. A user who has been granted "user registration" can register new users who will use the image forming device 100.
[0032] In the authentication user DB, the presence or absence of the above four privileges is indicated by four bits. If a privilege is granted, it is indicated by "1", and if a privilege is not granted, it is indicated by "0". The four bits will be explained in order from the least significant bit to the most significant bit. The first bit indicates whether "scan execution" is granted or not. The second bit indicates whether "print execution" is granted or not. The third bit indicates whether "copy execution" is granted or not. The fourth bit indicates whether "user registration" is granted or not.
[0033] In FIG. 4, for example, authenticated user A is granted the permissions of "scan" and "print," but not "copy" or "user registration." The permissions granted to such an authenticated user are related to the permissions granted to a requesting user authenticated by the authenticated user. Specifically, the usage permissions of image forming apparatus 100 granted when a requesting user is authenticated are within the usage permissions granted to the authenticated user who authenticated the requesting user. Therefore, the permissions granted to a requesting user authenticated by authenticated user A are either "scan" and "print," or only "scan," or only "print." Note that the presence or absence of permissions may be managed using a list of permissions rather than using bits.
[0034] Based on the above configuration, next, an example of a screen that image forming apparatus 100 displays on control panel 12 to a requesting user will be described. Fig. 5 is a diagram showing an example of a selection screen 500 that is displayed to a requesting user requesting authentication to use the image forming apparatus. When a request to display the selection screen is input by the requesting user, image forming apparatus 100 acquires the identification information, use authority, connection destination address, and status described in Fig. 4 from authenticated user DB server 200.
[0035] As shown in FIG. 5, image forming apparatus 100 displays multiple candidate authentication users based on the acquired information and displays a selection screen that allows the requesting user to select an authentication user from the displayed candidates. In the example of FIG. 5, image forming apparatus 100 displays three selectable authentication users, A, B, and C, based on the acquired identification information. Furthermore, image forming apparatus 100 displays the granted authority for each authenticated user in authority column 501 based on the acquired authority. Furthermore, image forming apparatus 100 displays the status for each authenticated user in status column 502 based on the acquired status. In this way, image forming apparatus 100 displays the candidate authentication users together with status information indicating whether the authenticated users are in a state where they can be authenticated.
[0036] For example, in FIG. 5, in the case of person C, the granted permissions are displayed as "scan execution," "print execution," and "user registration," and the status is displayed as "available for response."
[0037] As described above, the display 110 and the control panel 120 are configured as an integrated touch panel, so that the requesting user can touch the area where the desired authenticated user is displayed, and the image forming device 100 can identify the selected authenticated user.
[0038] When the requesting user selects an authenticated user, the image forming apparatus 100 displays an authentication in progress screen. FIG. 6 is a diagram showing an example authentication in progress screen 600. The authentication in progress screen 600 displays an authenticated user field 601, an authentication in progress display 602, and an authenticated user image 603. The authentication in progress screen 600 shows an example screen when the requesting user selects A as the authenticated user. The authenticated user field 601 allows the requesting user to confirm the authenticated user selected by the requesting user. The authentication in progress display 602 also allows the requesting user to confirm that the current authenticated user is being authenticated. The authenticated user image 603 may be an image of the authenticated user that has been prepared in advance, or may be an image of the current authenticated user captured by a camera provided in the authenticated user PC 300. When the back button is selected, a selection screen is displayed.
[0039] When a requesting user selects an authentication user on the selection screen, image forming apparatus 100 notifies the connection address of the authentication user of an authentication request indicating that authentication has been requested by the requesting user. Upon receiving the authentication request, authenticated user PC 300 displays an authentication success / failure screen. FIG. 7 is a diagram showing an example authentication success / failure screen 700 displayed on authenticated user PC 300. As shown in authentication success / failure screen 700, the authentication success / failure screen displays an authority list 701, a requesting user image 702, an authentication button 703, and a reject button 704.
[0040] The authorization list 701 is a list showing authorizations granted to the requesting user. By checking a checkbox, the authenticated user can grant the requesting user authorization within the authorizations granted to the authenticated user. The requesting user image 702 is an image of the requesting user. The requesting user image 702 is an image showing the current requesting user captured by the camera 18 of the image forming apparatus 100. The authenticated user PC 300 may display the requesting user image 702 in real time, or may update it at a predetermined interval (e.g., every 0.5 mm). Alternatively, the authenticated user PC 300 may receive a still image captured immediately before transmitting the authentication request and display this still image.
[0041] The authentication button 703 is a button that the authentication user presses when authenticating the requesting user. When the authentication button 703 is pressed, the authenticated user PC 300 notifies the image forming apparatus 100 that the authentication has been successful, indicating that the authentication result is OK. The rejection button 704 is a button that the authentication user presses when rejecting authentication of the requesting user. When the rejection button 704 is pressed, the authenticated user PC 300 notifies the image forming apparatus 100 that the authentication has been rejected, indicating that the authentication result is NG.
[0042] When the authentication result is acquired, the image forming apparatus 100 displays an authentication result screen corresponding to the authentication result. If the authentication result is OK, the authentication OK screen is displayed. Fig. 8 is a diagram showing an example authentication OK screen 800. As shown in the example authentication OK screen 800, the authentication OK screen displays an authenticated user field 801, an authentication result display 802, an authority field 803, an authenticated user image 804, and a login button 805.
[0043] The authentication OK screen example 800 shows an example screen when the requesting user selects A as the authenticated user. The authenticated user field 801 allows the requesting user to confirm the authenticated user selected by the requesting user. Furthermore, the authentication result display 802 displays "Authentication Successful," allowing the requesting user to confirm that they have been authenticated. The authority field 803 indicates the authority granted to the requesting user. The authenticated user image 804 may be a pre-prepared image of the authenticated user, or an image of the current authenticated user captured by a camera installed in the authenticated user PC 300. The login button 805 is a button used by the requesting user to log in to the image forming apparatus 100. When the back button is selected, a selection screen is displayed. When the login button 805 is pressed, the image forming apparatus 100 permits the requesting user to log in with the granted authority. This allows the requesting user to use the image forming apparatus 100.
[0044] If an NG authentication result is obtained, an authentication NG screen is displayed. Fig. 9 is a diagram showing an example authentication NG screen 900. As shown in the authentication NG screen example 900, the authentication NG screen displays an authenticated user field 901, an authentication result display 902, and an authenticated user image 804. Unlike the authentication OK screen, the authentication NG screen does not display an authority field or a login button.
[0045] An example authentication NG screen 900 shows an example screen when the requesting user selects A as the authenticated user. The authenticated user field 901 allows the requesting user to confirm the authenticated user they selected. Furthermore, the authentication result display 902 displays "Rejected" and the requesting user confirms that authentication has been rejected. The authenticated user image 904 may be an image of the authenticated user that has been prepared in advance, or may be an image of the current authenticated user captured by a camera installed in the authenticated user PC 300. When the back button is selected, a selection screen is displayed.
[0046] Fig. 10 is a flowchart showing the flow of processing in the image forming apparatus 100. The processing shown in Fig. 10 is executed by the system controller 1 of the image forming apparatus 100. In Fig. 10, when a requesting user inputs a request to display a selection screen, the image forming apparatus 100 displays the selection screen (see Fig. 5) (ACT101). When an authentication user is selected by the requesting user (ACT102: YES), the image forming apparatus 100 notifies the authentication request (ACT103). The notification destination is the authentication user PC 300 having the connection destination address corresponding to the selected authentication user.
[0047] The image forming apparatus 100 determines whether or not an authentication result of OK has been obtained (ACT104). If an authentication result of OK has been obtained (ACT104: YES), the image forming apparatus 100 displays an authentication OK screen (see FIG. 8) (ACT105) and ends the process. If an authentication result of OK has not been obtained (ACT104: NO), the image forming apparatus 100 determines whether or not an authentication result of NG has been obtained (ACT106). If an authentication result of NG has been obtained (ACT106: YES), the image forming apparatus 100 displays an authentication NG screen (see FIG. 9) (ACT105) and ends the process. If an authentication result of NG has not been obtained (ACT106: NO), the image forming apparatus 100 returns to ACT104.
[0048] Fig. 11 is a flowchart showing the processing flow of the authentication user PC 300. In Fig. 11, when the authentication user PC 300 receives an authentication request from the image forming apparatus 100 (ACT201), it displays the authentication success / failure screen (see Fig. 7) (ACT202). The authentication user PC 300 determines whether the authentication button 703 has been pressed (ACT203). If the authentication button 703 has been pressed (ACT203: YES), the authentication user PC 300 notifies the image forming apparatus 100 that has sent the authentication request that the authentication result is OK (ACT204) and ends the processing. The notification destination is the image forming apparatus 100 that sent the authentication request.
[0049] If the authentication button 703 has not been pressed (ACT203: NO), the authenticated user PC 300 determines whether the reject button 704 has been pressed (ACT205). If the reject button 704 has been pressed (ACT205: YES), the authenticated user PC 300 notifies the user that the authentication result is NG (ACT206) and ends the process. The notification is sent to the image forming apparatus 100 that sent the authentication request. If the reject button 704 has not been pressed (ACT205: NO), the authenticated user PC 300 returns to ACT203.
[0050] In the embodiment described above, an image of the requesting user is displayed on the authenticated user PC 300. However, instead of or in addition to this display, a voice call between the requesting user and the authenticated user may be possible. The image display and voice call enable more stringent authentication. Text input may also be accepted from the control panel 120. In this case, for example, the requesting user may be prompted to input attributes such as date of birth and affiliation, which are then sent to the authenticated user PC 300, allowing the authenticated user to confirm the input content and perform authentication. When authentication is performed using only text input, a camera is not required in the image forming device 100, thereby simplifying the configuration of the image forming device 100.
[0051] If there is only one authenticated user, the selection screen (see FIG. 5) may display only that authenticated user, but the authentication in progress screen (see FIG. 6) may be displayed without displaying the selection screen.
[0052] According to the embodiment described above, it is possible to authenticate a user who has not been set as an authentication target in advance.
[0053] Although several embodiments of the present invention have been described, these embodiments are presented as examples and are not intended to limit the scope of the invention. These embodiments can be implemented in various other forms, and various omissions, substitutions, and modifications can be made without departing from the spirit of the invention. These embodiments and their modifications are included within the scope and spirit of the invention, as well as within the scope of the invention described in the claims and their equivalents. [Explanation of symbols]
[0054] 1...system controller, 3...image processing unit, 4...main memory, 7...imaging controller, 18...camera, 100...image forming apparatus, 110...display, 120...control panel, 140...sheet storage unit, 200...authenticated user DB server, 500...selection screen example, 501...authority column, 502...status column, 600...authentication in progress screen example, 601...authenticated user column, 602...authentication in progress display, 603...authenticated user image, 700 ...Example of authentication success / failure screen, 701...Authorization list, 702...Requesting user image, 703...Authentication button, 704...Rejection button, 704...and Rejection button, 800...Example of authentication OK screen, 801...Authentication user field, 802...Authentication result display, 803...Authority field, 804...Authentication user image, 805...Login button, 900...Example of authentication NG screen, 901...Authentication user field, 902...Authentication result display, 904...Authentication user image, 1000...Authentication system
Claims
1. an imaging unit that captures an image of a requesting user requesting authentication to use the image forming apparatus; an image transmission unit that transmits a requesting user image, which indicates the requesting user and is obtained by capturing an image using the imaging unit, to a terminal used by an authenticated user who authenticates the requesting user; an acquisition unit that acquires an authentication result by the authenticated user from the terminal; a selection unit that displays a plurality of candidates for the authenticated user and allows the requesting user to select the authenticated user from the displayed candidates; Equipped with the image transmission unit transmits the request user image to the authenticated user selected by the selection unit; The image forming apparatus, wherein the selection unit displays the candidates for the authenticated users together with status information indicating whether the authenticated users are in a status where they can be authenticated.
2. 2. The image forming apparatus according to claim 1, wherein the authorization to use the image forming apparatus granted when the requesting user is authenticated is within the authorization to use granted to the authenticated user who authenticated the requesting user.
3. an imaging step of imaging a requesting user who requests authentication to use the image forming device; an image transmission step of transmitting a requesting user image showing the requesting user obtained by capturing an image in the capturing step to a terminal used by an authenticated user who authenticates the requesting user; an acquisition step of acquiring an authentication result by the authenticated user from the terminal; Equipped with A control method in which, in the image sending step, a plurality of candidates for the authentication user and status information indicating whether each authentication user is in a state where they can be authenticated are displayed, and the requested user image is sent to the authentication user selected by the requesting user from the displayed candidates.
Citation Information
Patent Citations
Authentication system, authentication control device, and program
JP2007206934A
Image formation apparatus, function expansion method, and user authentication system
JP2010218089A
Access management apparatus, multifunction device, access management method, and access management program
JP2016133815A
Document processing system
JP2019080182A
Image formation apparatus, control method and program of image formation apparatus
JP2019209585A