Security Systems and Control Devices
The security system employs dual authentication through a mobile terminal to verify the identity of operators, addressing vulnerabilities in existing systems by ensuring only authorized personnel can activate or deactivate security measures.
Patent Information
- Application Number
- JP2021110370
- Authority / Receiving Office
- JP · JP
- Patent Type
- Patents
- Current Assignee / Owner
- Filing Date
- 2021-07-01
- Publication Date
- 2025-10-14
- Estimated Expiration
- 2041-07-01
AI Technical Summary
Existing security systems are vulnerable to unauthorized deactivation due to the potential misuse of security operation keys or PIN numbers, posing a security risk.
A security system with a control device and management device that performs dual authentication using a mobile terminal to verify the identity of the operator, ensuring only authorized personnel can activate or deactivate security measures.
Enhances security by authenticating that a designated person is operating the security system, preventing unauthorized changes to the security status.
Smart Images

Figure 0007752981000001 
Figure 0007752981000002 
Figure 0007752981000003
Abstract
Description
[Technical Field]
[0001] The present invention relates to a security system and a control device. [Background technology]
[0002] Conventionally, security systems have been commonly used, in which various sensors are installed in individual buildings to detect intrusions into buildings at night or on holidays, fires, etc. When the last person to leave the building sets the security status to security on using a security control device at the building's entrance and leaves the building, the security system starts mechanical security using various sensors. The security status can be set to off by the next person entering the building, such as the first person to arrive at work, by operating the security control device.
[0003] Anyone with a security operation key can disable the security using a security controller. For this reason, there is a technology that enhances security by combining a PIN number with the security operation key. In the field of automated transaction systems that perform cash withdrawals, etc., a technology has been disclosed that reduces damage caused by fraudulent card use. The disclosed technology involves sending a message notifying the customer of the account involved of a transaction when a transaction occurs to the customer's email address, and if a message prohibiting the transaction is received from the mobile terminal that received the message, the transaction for that account is prohibited (see Patent Document 1). [Prior art documents] [Patent documents]
[0004] [Patent Document 1] Japanese Patent Application Laid-Open No. 2006-285812 Summary of the Invention [Problem to be solved by the invention]
[0005] However, if someone obtains the security operation key or the PIN number, it becomes more likely that someone other than the designated person can deactivate the security using the security operation device, which poses a security risk.
[0006] The present invention has been made in consideration of the above, and aims to provide a security system and control device that can authenticate that a designated person is operating a security operating device. [Means for solving the problem]
[0007] In order to solve the above-mentioned problems and achieve the object, the present invention provides a security system including a control device and a management device connected to the control device via a communication network, the security system including a management unit that manages mobile terminal information of registered users, a first authentication unit that performs first authentication of an operator using authentication information input to the control device, a reception unit that receives information from a mobile terminal of the mobile terminal information registered in the management unit, and a second authentication unit that performs second authentication to determine whether the operator is a designated operator based on the information received from the mobile terminal, When the information is received as a reservation for security operation, the second authentication unit performs second authentication based on the information received as a reservation for security operation to determine whether the operator is a designated operator; The control device is characterized in that it controls the security state when the first authentication and the second authentication are established. [Effects of the Invention]
[0008] The present invention has the effect of being able to authenticate that a designated person is operating a security operating device. [Brief explanation of the drawings]
[0009] [Figure 1] FIG. 1 is a diagram showing an example of a security model according to the present embodiment. [Figure 2] FIG. 2 is a diagram illustrating an example of a hardware configuration of the security system according to the present embodiment. [Figure 3] FIG. 3 is a diagram showing an example of the external configuration of the operation panel. [Figure 4] FIG. 4 illustrates an example of a hardware configuration of the management apparatus. [Figure 5] FIG. 5 is a diagram showing an example of the configuration of the management table T. [Figure 6] FIG. 6 is a diagram illustrating an example of a functional block configuration of the security system. [Figure 7] FIG. 7 is a diagram showing an example of an authentication sequence for the entire security system. [Figure 8] FIG. 8 is a diagram showing an example of a screen that prompts the user of the mobile terminal to input authentication information. [Figure 9] FIG. 9 is a diagram illustrating an example of the configuration of a security system according to the first modification. [Figure 10] FIG. 10 is an explanatory diagram of location authentication. [Figure 11] FIG. 11 is a diagram showing an example of a content confirmation screen that is later displayed on the mobile terminal using a dedicated app or the like. [Figure 12] FIG. 12 is a diagram showing an example of an authentication sequence of the entire security system according to the second modification. [Figure 13] FIG. 13 is a diagram showing an example of a screen that prompts the user of the mobile terminal to input authentication information. [Figure 14] FIG. 14 is a diagram showing an example of an authentication input screen according to the third modification. [Figure 15] FIG. 15 is a diagram showing an example of an authentication sequence of the entire security system according to the fourth modification. [Figure 16] FIG. 16 is a diagram illustrating an example of a configuration of a control device according to the second embodiment. [Figure 17] FIG. 17 is a diagram illustrating an example of an authentication sequence in the control device. DETAILED DESCRIPTION OF THE INVENTION
[0010] DETAILED DESCRIPTION OF THE PREFERRED EMBODIMENTS A security system and a control device according to an embodiment of the present invention will be described in detail below with reference to the accompanying drawings. Note that the present embodiment is merely an example and does not limit the present invention.
[0011] (First embodiment) FIG. 1 is a diagram showing an example of a security model according to this embodiment. FIG. 1 shows a security model for tenant A. Tenant A has a security controller 50 installed at the entrance to employee entrance A1. The security controller 50 includes an operation panel for controlling the security status of tenant A, and a control device. The security controller 50 accepts operations such as starting or canceling security from an operator P, such as an employee, via the operation panel, and, if authentication is successful, controls the security status according to the operation.
[0012] Within Tenant A, five security sensors 10 are installed on the ceiling. Each security sensor 10 is, for example, an image sensor, and is installed at a distance so that different areas within Tenant A can be sensed. A speaker 30 for issuing warnings and the like is also installed on the ceiling of Tenant A. An opening / closing sensor 20 is installed on the door to Tenant A's customer entrance A2. In addition, opening / closing sensors are installed on each of Tenant A's windows A3. In other words, in Tenant A, mechanical security using various sensors is initiated when the last person to leave locks the door and sets the security controller 50 to start security. If an intruder is detected after mechanical security has started, the various sensors detect the intruder, and a detection signal is sent from the security controller 50 to the monitoring center. If an employee or other person wishes to enter the room after mechanical security has started, they must first deactivate security using the security controller 50.
[0013] The types and locations of the sensors are merely examples and are not limiting. The types and locations of the sensors may be changed as appropriate depending on the object of security.
[0014] A lock may be provided on the employee entrance A1 door as appropriate. When a lock is provided, a physical key may be used, or an electronic lock that operates in conjunction with the security controller 50 may be used. A smart lock may also be used.
[0015] Furthermore, the tenant is one example. Mechanical security equipment may be installed in the building, facility, or residence where the contractor resides.
[0016] The number and arrangement of the security operating devices 50 are merely examples and are not limited to these. The security operating devices 50 may be installed at any suitable location, such as at the entrances and exits of a building or on each floor of a building.
[0017] Next, the hardware configuration of the security system according to this embodiment will be described with reference to Fig. 2 to Fig. 4. Fig. 2 is a diagram showing an example of the hardware configuration of the security system according to this embodiment. The security system 1 shown in Fig. 2 includes a security operating device 50, a monitoring center 60, and a management device 80.
[0018] The security controller 50 includes an operation panel 50a and a control device 50b. The operation panel 50a and the control device 50b are connected for communication. Here, the operation panel 50a and the control device 50b are shown as separate entities, but the operation panel 50a and the control device 50b may of course be integrated. Furthermore, a configuration in which multiple operation panels 50a are connected for communication to one control device 50b may also be used.
[0019] As shown in FIG. 2, the control device 50b includes a control unit 501, a storage unit 502, an input / output control unit 503, a wireless communication control unit 504, a communication control unit 505, and a timer 506.
[0020] The control unit 501 is configured by a computer having, for example, a CPU (Central Processing Unit), a ROM (Read Only Memory) that stores a control program, and a RAM (Random Access Memory) that is used by the CPU as a work area. The control unit 501 performs a control function of receiving security operations from the operation panel 50a and controlling each unit by the CPU executing a control program stored in the ROM or the like. The control function also includes a function of authenticating the operator P who operates the operation panel 50a. Note that some or all of these functions may be realized by software, or may be realized by hardware such as an ASIC (Application Specific Integrated Circuit).
[0021] Timer 506 counts a predetermined time in response to an instruction from control unit 501. For example, timer 506 counts a predetermined time from the security operation to the start of security.
[0022] The storage unit 502 is, for example, a Flash ROM, and stores management information for various devices connected to the control device 50b.
[0023] The input / output control unit 503 controls input / output of signals or data between the control unit 501 and connected devices such as the open / close sensor 20 and the speaker 30 .
[0024] The wireless communication control unit 504 connects to the security sensor 10 via wireless communication using a wireless method such as wireless LAN or Bluetooth, and controls the security sensor 10 .
[0025] The communication control unit 505 connects to the communication network 71 and communicates with the monitoring center 60 and the management device 80 .
[0026] The open / close sensor 20 is a sensor that detects whether a door or window is open or closed. For example, a magnet sensor or the like is used as the open / close sensor 20.
[0027] The speaker 30 outputs audio information, warning sounds, etc. For example, the speaker 30 outputs a call from a monitor from the monitoring center 60.
[0028] Although the configuration shown here is one in which the open / close sensor 20 and the speaker 30 are connected to the input / output control unit 503 by wire, they may also be connected by wireless communication. Also, although the security sensor 10 is configured for wireless communication connection, it may of course be connected by wire.
[0029] Fig. 3 is a diagram showing an example of the external configuration of operation panel 50a. As shown in Fig. 3, operation panel 50a has a liquid crystal display unit 142, a security start button 143, a security release button 144, a door lock confirmation button 145, a numeric keypad 146 which is an input pad, a cancel button 147, a decision button 148, and a touch unit 149. Each of these is connected to a control circuit built into operation panel 50a.
[0030] The LCD display 142 displays various messages. The security start button 143 is an operation button for declaring the start of security. The security release button 144 is an operation button for declaring the release of security. The door lock confirmation button 145 is a button for checking the status of the open / close sensor 20, security sensor 10, etc. The numeric keypad 146 is an input button for inputting a PIN number from 0 to 9. The cancel button 147 is a button for canceling the input PIN number. The decide button 148 is a button for deciding the input PIN number.
[0031] 3, an LED 143a that lights up when the security mode is set to security start is provided above the security start button 143. An LED 144a that lights up when the security mode is set to security release is provided above the security release button 144. An LED 145a that lights up depending on the status of the open / close sensor 20, security sensor 10, etc. is provided above the lock confirmation button 145.
[0032] The touch unit 149 has a built-in reader that reads security operation key information from the security operation key without contact. The security operation key is, for example, a security card such as an IC card, or a security key. The reader may be provided integrally with the operation panel 50a, or may be provided separately from the operation panel 50a so as to communicate with the control device 50b.
[0033] When an operator P presses the security start button 143 or the security release button 144, the operation panel 50a requests the operator P to enter authentication information by displaying a message or flashing an LED, for example. For example, the operation panel 50a requests the operator P to enter a PIN number using the numeric keypad 146 or touch a security operation key on the touch section 149 by displaying a message on the liquid crystal display section 142 or flashing an LED, for example. When the operator P enters a PIN number on the numeric keypad 146 and presses the decision button 148, or when the touch section 149 reads a security operation key, the input information is sent to the control device 50b. When the control device 50b authenticates the input information, the operation panel 50a displays a message indicating that authentication has been successful.
[0034] 2, the control device 50b is connected to a monitoring center 60 and a management device 80 via a communication network 71. The communication network 71 is a LAN (Local Area Network) or a VPN (Virtual Private Network), for example.
[0035] Fig. 4 is a diagram showing an example of the hardware configuration of the management device 80. The management device 80 is composed of one or more information processing devices. Here, an example of the hardware configuration of one information processing device is shown. The information processing device shown in Fig. 4 includes a CPU 801, a ROM 802, a RAM 803, an HDD (hard disk drive) 804, and a communication unit 805. Each of these communicates via a bus 806. In addition, an input unit such as a keyboard and a display unit such as a liquid crystal display may be provided as a user interface.
[0036] The management device 80 functions as a management server for the electronic security contractor to manage and authenticate security operation key information, employee information, etc. As an example, it is provided with a management unit, a reception unit, and an authentication unit. The management unit manages information such as security operation keys and employees. The reception unit receives information for authenticating whether the operator P of the operation panel 50a is a designated person. The authentication unit authenticates whether the operator P is a designated person.
[0037] The CPU 801 loads corresponding programs stored in the HDD 804 or the like into the RAM 803 and executes them to fulfill the functions of the reception unit, management unit, authentication unit, etc. The ROM 802 stores fixed programs. The RAM 803 is used by the CPU 801 as a work area. The HDD 804 stores corresponding programs for the reception unit, management unit, and authentication unit, various screen information used by the reception unit to receive information, data in a management table T managed by the management unit, etc. The communication unit 805 has a communication interface for connecting to various networks.
[0038] The reception unit, management unit, and authentication unit may be realized by hardware such as an ASIC, with some or all of the functional units being implemented.
[0039] The reception unit, management unit, and authentication unit may be implemented by a single information processing device, or each function may be distributed among a plurality of information processing devices so as to cooperate with each other.
[0040] The monitoring center 60 shown in Figure 2 communicates with control devices 50b installed in each customer's building, tenant, etc. via a communication network 71, and remotely monitors intruders and fires in the customer's security area by receiving detection signals from each control device 50b.
[0041] The monitoring center 60 is equipped with multiple operation terminals for monitors. When a detection signal is received from the control device 50b, the monitor remotely controls the control device 50b from the operation terminal, acquires images of the area to be guarded from the security sensors 10, and, if an intruder is detected, calls out to the intruder into a microphone. The monitor's voice is transmitted from the operation terminal to the control device 50b and output from the speaker 30 in the area to be guarded. In addition, a reporting system is also provided that allows the monitor to instruct a security guard on standby to head to the area where an abnormality has been reported, and to report to relevant authorities such as the police or fire department as necessary.
[0042] FIG. 5 shows an example of the configuration of management table T. Management table T is a table for managing information about employees and the like, including mobile device information for mobile terminals 90. The mobile device information may be, but is not limited to, the mobile device information for the mobile device 90 owned by the operator of the security controller. Mobile device information for individuals other than the operator who can authorize security operations by other employees may also be registered. In other words, confirmation of security operations is requested using the mobile device information of the registered individuals. FIG. 5 shows an example of the configuration of multiple tables. FIG. 5(a) shows a security operation key information table t1, FIG. 5(b) shows a PIN information table t2, FIG. 5(c) shows an employee information table t3, and FIG. 5(d) shows an employee contact information table t4. FIG. 5(e) shows an employee identification information table t5. FIG. 5(f) shows a work schedule table t10.
[0043] The security operation key information table t1 and the PIN information table t2 are management tables for uniquely identifying the identification information transmitted from the control device 50b. The control device 50b also transmits identification information in the same correspondence as the security operation key information table t1 and the PIN information table t2.
[0044] The employee information table t3 is a management table for managing employees of Tenant A. The employee contact information table t4 is a management table for managing the contact information of each employee registered in the employee information table t3. In this example, email addresses are registered as contact information. Information that uniquely identifies the mobile terminal 90 in association with the contact information, such as a MAC (Media Access Control) address, is also registered. The employee identification information table t5 is a table for managing identification information that can be used for each employee. From these tables t3 to t5, employee information and employee contact information for the corresponding employee ID can be extracted using the identification information.
[0045] In this embodiment, a work schedule table t10 is provided as an example. The work schedule table t10 is a table for managing employee work schedules. In this embodiment, the work schedule table t10 is used in combination to specify who can operate the operation panel 50a.
[0046] FIG. 6 is a diagram showing an example of the functional block configuration of the security system 1. The configuration shown here mainly relates to authentication processing. The mobile terminal 90 has an information setting unit 91. The operation panel 50a has an input / output unit 51. The control device 50b has a control unit 501 including a security status control unit 52 and a first authentication unit 53. The management device 80 has a reception unit 81, a management unit 82, and a second authentication unit 83.
[0047] Here, the mobile terminal 90 is an information processing terminal such as a personally owned smartphone, mobile phone, or tablet terminal. A personally owned mobile terminal 90 may be included in the security system 1. The information setting unit 91 sets information for authenticating whether the operator P of the operation panel 50a is a designated person using a communication app such as email or SMS (Short Message Service) provided in the mobile terminal 90 or a communication app for connecting to the Internet, and transmits the information to the management device 80.
[0048] The input / output unit 51 performs input and output on the operation panel 50a. When a security operation is declared by, for example, pressing the security start button 143 or the security release button 144, the input / output unit 51 accepts input of a PIN number or security operation key information by displaying a message on the liquid crystal display unit 142 or controlling the lighting of an LED, and outputs security operation information d1 and input information d2 indicating the type of security operation that has been declared to the security status control unit 52.
[0049] The security state control unit 52 controls the security state of the control device 50b based on the security operation information d1 and input information d2 transmitted from the input / output unit 51. It also controls the display state of the operation panel 50a as necessary.
[0050] For example, suppose that the security status control unit 52 receives a declaration of the start of security by security operation information d1. In this case, the security status control unit 52 performs authentication by using input information d2 that was input as authentication information at the time of the declaration, and if the authentication is successful, controls the security status to start security.
[0051] Specifically, the security status control unit 52 sets a timer 506 and starts mechanical security after a predetermined time has passed. After starting mechanical security, the security status control unit 52 performs mechanical security of the target area using the security sensor 10 and the open / close sensor 20. When the security status control unit 52 detects an abnormality using the security sensor 10 or the open / close sensor 20, it transmits a detection signal to the monitoring center 60 via the communication control unit 505. Furthermore, the security status control unit 52 transmits images acquired by the security sensor 10 to the monitoring center 60 via the communication control unit 505, and outputs the voice of the monitor transmitted from the monitoring center 60 to the speaker 30.
[0052] Furthermore, it is assumed that the security status control unit 52 receives a declaration of security release based on security operation information d1. In this case, the security status control unit 52 performs authentication based on input information d2 that was input as authentication information at the time of this declaration, and if authentication is successful, releases the mechanical security.
[0053] The authentication includes at least the following first and second authentications: The first authentication verifies whether the operator P is entering registered authentication information into the operation panel 50a, and the second authentication verifies whether the operator P using the registered authentication information is the person designated for security operations at that time.
[0054] In this embodiment, the security status control unit 52 performs a first authentication using the first authentication unit 53, and if the first authentication is successful, requests a second authentication from the management device 80, which then performs the second authentication. If the first authentication and the second authentication are successful, the security status control unit 52 controls the security status to start or cancel the declared security.
[0055] The first authentication unit 53 performs authentication (first authentication) using input information d2 transmitted from the input / output unit 51. For example, if the input information d2 is a personal identification number, the first authentication unit 53 performs authentication based on whether the input information d2 matches a pre-registered personal identification number. If the input information d2 is a security operation key, the first authentication unit 53 performs authentication based on whether the input information d2 matches pre-registered security operation key information. Note that the types of authentication information are not limited to these, and other pre-registered authentication information may be used. Furthermore, the first authentication may be performed using a plurality of these pieces of authentication information. Furthermore, the first authentication unit 53 may be performed on the operation panel 50a side instead of the control device 50b. In this case, the operation panel 50a transmits the authentication result and the input information d2 to the control device 50b. Instead of the input information d2, identification information that can uniquely identify the input information d2 may be transmitted.
[0056] When the second authentication unit 83 receives a request for second authentication from the security state control unit 52, it performs the second authentication based on information transmitted from the specified mobile terminal 90. For example, the second authentication unit 83 performs the second authentication using identification information d3 included in the request and information received by the reception unit 81 from the specified mobile terminal 90. The identification information d3 is identification information corresponding to the authentication information authenticated in the first authentication. The second authentication unit 83 returns the authentication result to the requestor. Note that the information used in the second authentication is not limited to the mobile terminal 90, and may be information transmitted from a fixed terminal.
[0057] The reception unit 81 receives information from the mobile terminal 90. When the reception unit 81 receives a request from the second authentication unit 83, it acquires target contact information from the management unit 82 and sends confirmation request information to the target contact. Any target contact may be specified, and multiple contacts may be specified, as long as they are people who can confirm that the specified person is performing the operation. In this embodiment, as an example, the work schedule table t10 is referenced, and the contact information of the employee who is on duty during the time period when the operation panel 50a was performed is specified based on the time. The contact information may be, for example, the phone number or email address of the mobile terminal 90. The reception unit 81 sends the confirmation request information to the contact using a function such as SMS or email. The management device 80 and the mobile terminal 90 may communicate with each other via a communication network 72 such as a public network. In this case, the reception unit 81 receives information from the mobile terminal 90 via the public network.
[0058] Accepting unit 81 may transmit the confirmation request information including a designated URL. The website provided at the designated URL is accessed from mobile terminal 90, and the input for authentication is accepted at that website. By including the designated URL in this way, it is also possible to accept the input for authentication in response to the confirmation request at the website provided at the designated URL.
[0059] 7 is a diagram showing an example of an authentication sequence for the entire security system 1. As an example, the authentication sequence is shown when performing an operation to disable security. The authentication sequence can be similarly performed when security is started, and the control of the security state after authentication is the start of security.
[0060] As shown in FIG. 7, when an operator P declares that security is off (S1), the operation panel 50a accepts input of authentication information from the operator P by entering a PIN number or reading a security operation key (S2), and outputs the input information to the control device 50b (S3).
[0061] The control device 50b performs a first authentication using input information d2 input via the operation panel 50a (S4). When the first authentication is successful, the control device 50b transmits identification information d3 corresponding to this authentication information to the management device 80 (S5). The identification information d3 is information unique to the authentication information, and is also registered in advance in the management device 80.
[0062] The management device 80 performs second authentication for the identification information d3 using the second authentication unit 83. The second authentication unit 83 queries the reception unit 81 (S6), acquires information from the specified mobile terminal 90 (S7), and performs second authentication using the acquired information (S8).
[0063] In step S7, the reception unit 81 acquires mobile terminal information related to the identification information d3 from the management unit 82 (S71), notifies the contact information of the mobile terminal 90 specified in the mobile terminal information of a confirmation request (S72), and receives the confirmation information from the mobile terminal 90 (S73). The second authentication unit 83 performs second authentication using the confirmation information received from the mobile terminal 90 (S8). Note that if the operator P of the operation panel 50a is a person specified by the management device 80, the confirmation request is notified to the mobile terminal 90 carried by the operator P, and the operator P himself / herself authenticates. If the operator P of the operation panel 50a is a person not specified by the management device 80, the confirmation request is notified to the mobile terminal 90 carried by the actually designated person, and the designated person enters confirmation information, or if the operation is unintended, no confirmation information is entered.
[0064] After the second authentication, the second authentication unit 83 responds with the result of the second authentication to the requesting control device 50b (S9). If the authentication result returned from the management device 80 is authentication OK, that is, if authentication is successful, the control device 50b determines that the declaration of the security release operation on the operation panel 50a is valid and outputs a signal to the operation panel 50a indicating that the security operation is valid (S10). The operation panel 50a validates security release based on the output from the control device 50b (S11). For example, the operation panel 50a lights the LED 144a of the security release button to indicate that the security status is released, or displays a message on the LCD display unit 142.
[0065] Thereafter, the control device 50b cancels the mechanical security (S12).
[0066] 8 is a diagram showing an example of a screen that prompts the user of the mobile terminal 90 to input authentication information. When the operator P performs an operation to disable security on the operation panel 50a, confirmation request information is notified to the designated mobile terminal 90 by SMS, email, or the like, and authentication input is accepted from the user of the mobile terminal 90 based on the confirmation request information.
[0067] 8(a) is an example of a display when confirmation request information is displayed on the screen of the mobile terminal 90 via an application such as SMS or email. In this example, the notification includes URL link information 901 to prompt the user to enter authentication information. When the user designates the link 901 displayed on the screen of the mobile terminal 90 by touching the screen or the like, the mobile terminal 90 launches a web application and logs in to the management device 80 designated by the URL. After logging in, the user enters authentication information on the authentication screen provided by the management device 80 from the mobile terminal 90, specifying whether to validate or invalidate the operation (in this example, disabling security) performed by the operator P on the operation panel 50a.
[0068] Fig. 8(b) is a diagram showing an example of the configuration of an authentication screen provided by the management device 80. The authentication screen in Fig. 8(b) accepts whether to validate or invalidate an operation performed by the operator P on the operation panel 50a by the user of the mobile terminal 90 by selectively pressing a "Yes" button B2 or a "No" button B1. When the "Yes" button B2 is touched on the mobile terminal 90, the management device 80 provides the mobile terminal 90 with the next authentication screen and authenticates whether the user of the mobile terminal 90 is the specified person.
[0069] FIG. 8(c) is a diagram showing another example of the authentication screen. The authentication screen of FIG. 8(c) accepts input of an authentication number from the user of the mobile terminal 90 and an instruction as to whether to validate the operation performed by the operator P on the operation panel 50a (in this example, execution of security deactivation). The authentication number is a number known only to the user of the mobile terminal 90. The user inputs the authentication number in the authentication number input area B3 on the authentication screen of the mobile terminal 90 and touches the deactivation operation execution button B4. The management device 80 checks whether the authentication number input on the authentication screen matches the registered authentication number, and if they match and the touch of the deactivation operation execution button B4 is accepted, the management device 80 authenticates the operator P as the designated person to perform the deactivation operation.
[0070] It should be noted that authentication of the user of the mobile terminal 90 may be performed by inputting personal information on the authentication screen instead of an authentication number. The personal information may be employee information registered in the management device 80, or the like. The management device 80 performs identity verification based on the pre-registered personal information and the personal information input on the authentication screen. This makes it possible to prevent replies from being sent by anyone other than the user of the mobile terminal 90. The personal information may also be input on the authentication screen of FIG. 8(a). The configurations of these authentication screens are merely examples, and may be modified or combined as appropriate.
[0071] As described above, by performing the second authentication based on information transmitted from the designated mobile terminal 90, it is possible to authenticate that the designated person is operating the security controller. The security release operation performed by operator P when an unfamiliar confirmation request is sent to the designated person's mobile terminal 90 can be invalidated, leading to stronger verification by the security operator and preventing unintended persons from changing the security status. Furthermore, in a nationwide chain store or the like, security operations may be performed by multiple people according to work schedules, and security may be released by an unspecified number of people using rotational PINs or security operation keys. However, the second authentication can be performed by the user of the mobile terminal 90 at the time according to the work schedule. This makes it possible to limit the ability to release security so that only those authorized to enter the store at that time can do so.
[0072] Furthermore, by combining it with smart locks, it is possible to prevent unauthorized entry without distributing physical building keys to individuals.
[0073] (Variation 1) The second authentication may be performed using location information from the mobile terminal 90. For example, a dedicated application may be distributed to the mobile terminal 90, and the location information of the mobile terminal 90 may be sent back to the management device 80 by the dedicated application.
[0074] Fig. 9 is a diagram showing an example of the configuration of a security system according to Modification 1. As shown in Fig. 9, a mobile terminal 90 includes a dedicated application 92 and a location information acquisition unit 93. The location information acquisition unit 93 may measure the location of the mobile terminal 90 by including hardware such as a GPS (Global Positioning System) device in the mobile terminal 90, or may receive location information from surrounding devices via wireless communication.
[0075] When the dedicated app 92 receives the confirmation request information notified from the management device 80, it replies with the location information of the mobile terminal 90 to the management device 80. The reply may be made by a reply operation by the user of the mobile terminal 90, or the reply may be made automatically by the dedicated app 92.
[0076] The management device 80 includes a position correspondence table t6 that associates identification information with position information of the operation panel 50a in the management table T. When the management device 80 receives the identification information d3 from the control device 50b, it compares the position information of the mobile terminal 90 with the position information of the operation panel 50a associated with the identification information d3, and estimates whether the operator P is the designated person from the positional relationship between them to authenticate the operator P.
[0077] FIG. 10 is an explanatory diagram of location authentication. FIG. 10(a) is a table configuration diagram of a location correspondence table t6 included in the management table T. As shown in FIG. 10(a), identification information and location information are associated in the location correspondence table t6. The location information may be set as the coordinates of a single reference point (e.g., the installation position of the operation panel 50a), or range information indicating an allowable range (e.g., coordinates indicating the range around the operation panel 50a). When setting the coordinates of a single reference point, a threshold indicating an allowable range from the reference is set. In this case, if the location information of the mobile terminal 90 is within a range less than the threshold, the second authentication unit 83 authenticates the operator P as the designated person because the designated person is within the allowable range. Furthermore, if range information of the allowable range is set, the second authentication unit 83 authenticates the operator P as the designated person if the location information of the mobile terminal 90 is within the allowable range.
[0078] FIG. 10(b) is an explanatory diagram of the location information set in the location correspondence table t6. In the planar map shown in FIG. 10(b), building k1 is the building targeted for mechanical security among buildings k1 to k6. In this example, the operation panel 50a is installed at the entrance of building k1. Since security operations by operator P are performed using the operation panel 50a, the coordinate information of the operation panel 50a at the entrance is set in the location correspondence table t6. Note that an allowable range is set because location information may be obtained from equipment within or near target building k1. In this example, a predetermined range surrounded by a dotted line that includes target building k1 is set as the allowable range m, and coordinates 1 and 2 are set. If the location information from the mobile terminal 90 is included within the rectangle determined by coordinates 1 and 2, operator P is authenticated as the designated person.
[0079] In the first modification, when confirmation request information is notified to the designated mobile terminal 90, the dedicated application 92 of the mobile terminal 90 can automatically return the location information. In this case, the user of the mobile terminal 90 may be able to check the history of the replies later.
[0080] 11 is a diagram showing an example of a content confirmation screen that the mobile terminal 90 later displays using the dedicated app 92. This content is saved as history information in the mobile terminal 90, and the user of the mobile terminal 90 can confirm from the reply history in the dedicated app 92 that the mobile terminal 90 has automatically sent a reply.
[0081] Of course, when confirmation request information arrives at the mobile terminal 90, the dedicated application 92 may be configured to display a content confirmation screen and return confirmation information via email or SMS from the content confirmation screen.
[0082] Furthermore, authentication based on the location information of the mobile terminal 90 may be incorporated into other second authentication.
[0083] As described above, if authentication is performed using the location information of the mobile terminal 90, the designated person can perform the second authentication simply by being in the target building with the mobile terminal 90, which simplifies the authentication operation.
[0084] (Variation 2) It may also be possible to configure the system so that those present during security operations can also be authenticated. For example, when entering a bank vault after disabling security, a confirmation request is sent to the mobile terminal of the present person, and all present persons are required to be authenticated.
[0085] Fig. 12 is a diagram showing an example of an authentication sequence for the entire security system 1. Fig. 12 shows, as an example, an authentication sequence in which authentication is performed by two people, a designated person and an attendant. This authentication sequence is the same as the authentication sequence shown in the embodiment (see Fig. 7), with S720 and S75 to S77 added.
[0086] In S71, the reception unit 81 acquires the mobile terminal information of the designated person from the contact information in the management table T, and in S72, transmits confirmation request information to the mobile terminal 90 (in this example, the first mobile terminal 90-1).
[0087] Then, the user of the first mobile terminal 90-1 inputs authentication for the confirmation request information (S720) and transmits the confirmation information to the management device 80 (S73). At this time, the first mobile terminal 90-1 accepts the input of the confirmation information in S720 as well as the setting of an attendee, and transmits the attendee information to the management device 80 in S73.
[0088] When the reception unit 81 receives confirmation information from the first mobile terminal 90-1, it obtains the attendee's contact information from the contacts in the management table T based on the attendee information set in the first mobile terminal 90-1 (S75), and sends confirmation request information to that mobile terminal 90 (in this example, the second mobile terminal 90-2) (S76).
[0089] When the user of the second mobile terminal 90-2 receives the confirmation request information, the user inputs confirmation information in response to the confirmation request information and transmits the confirmation information to the management device 80 (S77).
[0090] The second authentication unit performs second authentication using the confirmation information received from the first portable terminal 90-1 and the second portable terminal 90-2 (S8). That is, the second authentication is considered successful when authentication is performed not only by the user of the first portable terminal 90-1 but also by the user of the second portable terminal 90-2 designated by the user of the first portable terminal 90-1. Alternatively, the second authentication may be performed when confirmation information is received from the first portable terminal 90-1, and if authentication is not successful, confirmation request information may not be sent to the second portable terminal.
[0091] Fig. 13 is a diagram showing an example of a screen that prompts the user of the mobile terminal 90 to input authentication information. Fig. 13(a) is a display example when confirmation request information is displayed on the screen of the first mobile terminal 90-1. Note that Fig. 13(a) has already been explained in Fig. 8(a), so explanation here will be omitted.
[0092] Fig. 13(b) is a diagram showing an example of the configuration of an authentication screen provided by the management device 80. The authentication screen in Fig. 13(b) accepts whether to validate or invalidate the operation performed by the operator P on the operation panel 50a by the user of the first mobile terminal 90-1 by selectively pressing a "Yes" button B2 or a "No" button B1. Fig. 13(b) has already been described in Fig. 8(b), so its description will be omitted here.
[0093] FIG. 13(c) is a diagram showing an example of an attendant setting screen to which the authentication screen is transitioned. The setting screen of FIG. 13(c) accepts attendant settings from the user of the first mobile terminal 90-1. The user operates the selection box B11 on the setting screen of the first mobile terminal 90-1 to display a pull-down list, and arbitrarily selects an attendant from the list display. Then, the user touches the security operation request button B12 on the setting screen to request the management device 80 to authenticate the security operation request for the set attendant.
[0094] Fig. 13(d) is an example of the display of the confirmation request information notified from the management device 80 on the screen of the second mobile terminal 90-2. In Fig. 13(d), part of the display in Fig. 13(a) has been changed from "for two people" to "from Mr. A," but the rest of the content is the same as Fig. 13(a). The user of the second mobile terminal 90-2 also enters the same confirmation information as the first mobile terminal 90-1 on the authentication screen of the URL specified in the confirmation request information.
[0095] 13, authentication may be performed to determine whether the user of the mobile terminal 90 is the user himself / herself by inputting an authentication number or personal information on the authentication screen. In this case, the management device 80 performs identity verification based on pre-registered personal information and personal information input on the authentication screen. Furthermore, the configuration of these authentication screens is merely an example, and may be implemented by appropriately modifying or combining them.
[0096] In addition, the location information of the witness's second mobile terminal 90-2 can be obtained, and authentication can be permitted if the distance from the location information of the requester's first mobile terminal 90-1 is within a specified range (for example, within ○○ meters).
[0097] In the second modification, an example was shown in which authentication is requested from a person present, but this mechanism is not limited to a person present, and can be applied when a person who has been notified of confirmation request information requests authentication from another person. For example, this mechanism can be applied when a person who has been notified of confirmation request information is not present at the location and designates another person who is at work to perform authentication on their behalf. Also, as an example, a method for authenticating up to two people has been described, but this is not limited to this, and three or more people may also be used. For example, a person who has been notified of confirmation request information may arbitrarily set multiple people and request authentication, or a person who has been requested to be authenticated may further designate a next person and request authentication.
[0098] (Variation 3) When the last person to leave the store enters confirmation information on the mobile terminal 90 during the security start operation, the person may also enter a checklist for leaving the store and request final authentication from the owner. For example, when security start is set, the system may be modified so that the last person to leave the store is identified from a shift schedule or the like, and each status, such as closing the cash register, locking the doors, and checking for fire, is approved by a store owner in a remote location. Alternatively, the system may be modified so that the final checklist is sent to the smartphone of the last person to leave the store.
[0099] 14A and 14B are diagrams showing examples of a screen for authentication input by a user. Fig. 14A shows a display example of confirmation request information notified to the mobile terminal 90 (corresponding to the first mobile terminal 90-1) of the last person to leave the room. Touch the displayed URL link information 901 to log in to the management device 80.
[0100] The last person to leave the room sets a checklist for leaving the room on the authentication screen provided by the management device 80 from the first mobile terminal 90-1. FIG. 14(b) is a diagram showing an example of the checklist screen. The user scrolls the screen to set the checklist in FIG. 14(b). In this example, the checklist items include locking the doors and turning on the gas main valve. When each item has been confirmed, the user operates the check buttons B21 and B22 on the screen.
[0101] FIG. 14(c) shows an example of an approver setting screen that is displayed by scrolling down the checklist screen. For example, by flicking a finger from top to bottom on the screen of FIG. 14(b), the screen of FIG. 14(c) is scrolled and displayed. The user operates the selection box B23 on the approver setting screen to display a pull-down list, and selects an approver from the list. Then, the user touches the final exit confirmation request button B24 on the setting screen to request the management device 80 to authenticate the security operation request for the set approver.
[0102] 14(d) is an example of the display of confirmation request information notified from management device 80 on the screen of mobile terminal 90 (corresponding to second mobile terminal 90-2). The approver touches URL link information 901 displayed in FIG. 14(d) to log in to management device 80 and enters confirmation information on the authentication screen. When entering information on the authentication screen on second mobile terminal 90-2, the approver may obtain from management device 80 the checklist set by the last person to leave the room and display it on the screen.
[0103] The overall operation, including the authentication sequence, is almost the same as in Modification 2, so further explanation will be omitted.
[0104] (Variation 4) A reservation for a security operation may be made in advance in the management table T before operating the operation panel 50a. For example, the first person to arrive at work who is scheduled to release security the following day registers a reservation in advance in the management device 80 that security will be released during a specified time period the following day. The reservation is made on a reservation screen provided by the management device 80. The person's personal information, the time period for releasing security, etc. are transmitted on the reservation screen. When the reservation is made, the management device 80 authenticates whether the reservation is made by a designated person based on the work schedule, etc., and registers the reservation information if the authentication is successful. Because authentication has been completed in advance, it is possible to omit the need to enter authentication information on the designated mobile terminal 90 on the day.
[0105] Specifically, when receiving a request from second authentication unit 83, reception unit 81 acquires corresponding reservation information from management unit 82, and if there is pre-registered reservation information, returns the reservation information to the second authentication unit. In this way, it is possible to omit a confirmation request to mobile terminal 90 when operating operation panel 50a.
[0106] Fig. 15 is a diagram showing an example of an authentication sequence for the entire security system 1. The authentication sequence in Fig. 15 is obtained by adding a pre-registration process to the authentication sequence shown in the embodiment (see Fig. 7).
[0107] First, the mobile terminal 90 accesses the reception unit 81, sets reservation information on a reservation screen, and transmits the information to the reception unit 81 (S21). The reception unit 81 requests the management unit 82 to register the reservation information received from the mobile terminal 90 (S22). The management unit 82 verifies whether the user of the mobile terminal 90 is scheduled to work during the specified reservation time period, for example by referring to a work schedule table, and if the authentication is successful, registers the reservation information in the reservation table of the management table T (S23). Thereafter, the procedure is repeated from S1, and in S7, the reception unit 81 requests information related to the identification information d3 from the management unit 82 (S71). If the reservation information exists in the management unit 82, the reception unit 81 returns the reservation information to the second authentication unit 83 (S79). In other words, the notification of the confirmation request information in S72 is omitted, and second authentication is performed using the reservation information (S8).
[0108] (Second embodiment) In the first embodiment, the configuration has been described in which the control device 50b requests the management device 80 to perform the second authentication, but the control device 50b may also perform the second authentication. For example, a dedicated app may be distributed to the mobile terminal 90, and the control device 50b may be configured to receive authentication information from the mobile terminal 90 held by the operator P via short-range wireless communication. The following describes an example in which a short-range wireless communication unit 50c is connected to the control unit 501. Note that the short-range wireless communication unit is not limited to this, and may be modified as appropriate as long as the configuration allows the control device 50b to receive authentication information from the mobile terminal 90 via the short-range wireless communication unit.
[0109] Fig. 16 is a diagram showing an example of the configuration of a control device 50b according to the second embodiment. As shown in Fig. 16, the control device 50b according to the second embodiment includes a short-range wireless communication unit 50c that performs short-range wireless communication such as Bluetooth (registered trademark). Furthermore, the control device 50b also includes the functions of a second authentication unit 83 and a management unit 82 that are included in the management device 80 (see Fig. 6) according to the first embodiment. Below, descriptions of parts that are common to the first embodiment will be omitted as appropriate, and differences will be mainly described.
[0110] In the second embodiment, the security status control unit 52 performs the first authentication using the first authentication unit 53 and the second authentication using the second authentication unit 83. When the first authentication and the second authentication are established, the security status control unit 52 controls the security status to start or cancel the declared security.
[0111] When the second authentication unit 83 receives a request for second authentication from the security state control unit 52, it receives authentication information from a designated mobile terminal 90 located on the periphery of the operation panel 50a via the short-range wireless communication unit 50c and performs the second authentication. That is, it receives authentication information from the mobile terminal 90 carried by the operator P via the short-range wireless communication unit 50c and performs the second authentication.
[0112] Specifically, the second authentication unit 83 establishes communication with a mobile terminal 90 located in the periphery of the operation panel 50a via the short-range wireless communication unit 50c, and notifies the dedicated app 92 of the mobile terminal 90 of confirmation request information. In response to this notification, the user launches the dedicated app 92 on the mobile terminal 90 and performs authentication operations on the authentication screen of the dedicated app 92. The authentication screen may have the same configuration as the authentication screens shown as examples in the first embodiment and each modified example. Authentication information is transmitted from the dedicated app 92 to the second authentication unit 83.
[0113] Then, the second authentication unit 83 performs second authentication by comparing the information transmitted from the dedicated app with the registered information of the management unit 82. The registered information of the management unit 82 may use information in the management table T managed by the management unit 82 of the management device 80 shown in the first embodiment. For example, the control device 50b and the management device 80 communicate with each other at any timing, and the information in the management table T registered in the management device 80 is copied to the control device 50b.
[0114] With this configuration, even if a communication failure occurs between the control device 50b and the management device 80 on the communication network 71, the control device 50b can perform authentication offline.
[0115] 17 is a diagram showing an example of an authentication sequence in the control device 50b. As an example, the authentication sequence when performing an operation to disable security is shown. The authentication sequence can be similarly performed when security is started, and the control of the security state after authentication is the start of security.
[0116] As shown in FIG. 17, when an operator P performs an operation to declare that security is deactivated (S31), the operation panel 50a accepts input of authentication information from the operator P by entering a PIN number or reading a security operation key (S32), and outputs the input information to the control device 50b (S33).
[0117] The control device 50b performs the first authentication using the input information d2 input through the operation panel 50a (S34). If the first authentication is successful, the control device 50b performs the second authentication using the second authentication unit 83 as follows.
[0118] First, the control device 50b acquires information from the designated mobile terminal 90 via the short-range wireless communication unit 50c (S35-1, S35-2), and performs second authentication using the acquired information (S36).
[0119] If the first and second authentications are successful, that is, if the authentication is successful, the control device 50b determines that the security release operation on the operation panel 50a is valid and outputs a signal to the operation panel 50a indicating that the security operation is valid (S37). The operation panel 50a validates security release based on the output from the control device 50b (S38). The control device 50b then releases the mechanical security (S39).
[0120] In addition, each program executed by the security system of this embodiment may be provided as a file in an installable or executable format recorded on a computer-readable recording medium such as a CD-ROM, a flexible disk (FD), a CD-R, or a DVD (Digital Versatile Disc).
[0121] The programs executed by the security system of this embodiment may be stored on a computer connected to a network such as the Internet and provided by being downloaded via the network.The programs executed by the security system of this embodiment may also be provided or distributed via a network such as the Internet.
[0122] Although several embodiments and modifications of the present invention have been described, these are presented as examples and are not intended to limit the scope of the invention. These may be combined as appropriate. Furthermore, these novel embodiments can be embodied in various other forms, and various omissions, substitutions, and modifications can be made without departing from the spirit of the invention. These embodiments and modifications are included within the scope and spirit of the invention, and are also included in the inventions and their equivalents as defined in the claims. [Explanation of symbols]
[0123] 1. Security System 50 Security control device 50a Operation panel 50b Control device 51 Input / output section 52 Security status control unit 53 First Certification Section 60 Monitoring Center 80 Management device 81 Reception 82 Management Department 83 Second Certification Section 90 Mobile Devices 91 Information setting section
Claims
1. A security system including a control device and a management device connected to the control device via a communication network, a management unit that manages mobile device information of registrants; a first authentication unit that performs first authentication of an operator based on authentication information input to the control device; a reception unit that receives information from the mobile terminal of the mobile terminal information registered in the management unit; a second authentication unit that performs second authentication to determine whether the operator is a designated operator based on the information received from the mobile terminal; and When the information is received as a reservation for a security operation, the second authentication unit performs second authentication based on the information received as a reservation for the security operation to determine whether the operator is a designated operator; The control device controlling a security state when the first authentication and the second authentication are established; Security system.
2. The reception unit receiving information from the mobile terminal of the designated operator by notifying a confirmation request to a contact point of the mobile terminal information of the designated operator among the mobile terminal information registered in the management unit; The security system according to claim 1 .
3. When the confirmation request is notified, the mobile terminal replies with location information of the mobile terminal as the information; the second authentication unit performs the second authentication to determine whether the operator is a designated operator based on whether the location information is included in a predetermined range. The security system according to claim 2.
4. The control device controls the security state to start security or to cancel security in response to an operation by the operator. A security system according to any one of claims 1 to 3.
5. the receiving unit receives the information from a plurality of designated mobile terminals; the second authentication unit performs the second authentication to determine whether the operator is a designated operator based on the information received from each of the designated plurality of mobile terminals. A security system according to any one of claims 1 to 4.
6. a management unit that manages mobile device information of registrants; a first authentication unit that performs first authentication of the operator based on the input authentication information; a reception unit that receives information from the mobile terminal of the mobile terminal information registered in the management unit; a second authentication unit that performs second authentication to determine whether the operator is a designated operator based on the information received from the mobile terminal; a control unit that controls a security state when the first authentication and the second authentication are established; and When the information is accepted as a reservation for security operation, the second authentication unit performs second authentication to determine whether the operator is a designated operator based on the information accepted as a reservation for security operation. Control device.
Citation Information
Patent Citations
Automatic transaction system and automatic transaction device
JP2006285812A
Security system, security device, personal identification number management method, personal identification number management program, and program recording medium
JP2008112241A
Intrusion Security Device With SMS Based Notification and Control
US20170061713A1