Information processing system, information processing method, and program

The system facilitates efficient tenant-to-tenant device access by automating approval requests, reducing administrative effort in multi-tenant environments.

JP7797865B2Active Publication Date: 2026-01-14RICOH CO LTD
View PDF 3 Cites 0 Cited by

Patent Information

Application Number
JP2021211117
Authority / Receiving Office
JP · JP
Patent Type
Patents
Current Assignee / Owner
Filing Date
2021-12-24
Publication Date
2026-01-14
Estimated Expiration
2041-12-24

AI Technical Summary

Technical Problem

Switching between tenants for different departments within the same organization is inefficient, requiring separate invitations and administrative efforts when users want to access devices associated with another tenant.

Method used

An information processing system that allows a user from one tenant to request access to a device of another tenant, prompting the tenant administrator to approve or deny the request through an email notification, minimizing administrative effort.

Benefits of technology

Enables seamless access to devices across different tenants with minimal administrative workload by automating the approval process for user invitations.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure 0007797865000008
    Figure 0007797865000008
  • Figure 0007797865000009
    Figure 0007797865000009
  • Figure 0007797865000010
    Figure 0007797865000010
Patent Text Reader

Abstract

To provide an information processing system, method, and program for enabling use of an apparatus of another tenant while minimizing labors of a tenant manager in the case that a user of the different belonging tenant applies to the tenant manager for use.SOLUTION: A workflow service includes: a storage part for storing user information to be used for identifying a user belonging to a tenant and apparatus information to be used for identifying an apparatus belonging to the tenant, in association with tenant information defining the tenant for defining a service providing range; and a control part for displaying that a use application apparatus cannot be used in the case that a user shown by user information to be associated with tenant information other than the tenant information associated with the apparatus information of the use application apparatus undergoing the use application performs a log-in operation, on the use application apparatus, and promoting a terminal device of the tenant manager of the tenant shown by the tenant information associated with the apparatus information of the use application apparatus to invite the user performing the log-in operation.SELECTED DRAWING: Figure 5
Need to check novelty before this filing date? Find Prior Art

Description

[Technical Field]

[0001] The present invention relates to an information processing system, an information processing method, and a program. [Background technology]

[0002] By dividing each organization into units called tenants and purchasing applications for business purposes through contracts on a tenant-by-tenant basis, applications can be customized to suit each organization's budget and circumstances. Also, when using an application on a certain device, it is known to link it to that tenant. Summary of the Invention [Problem to be solved by the invention]

[0003] However, when a device is already being used in conjunction with a tenant for one department, and another department on the same floor also wants to use it, switching between the two tenants is inefficient, so there are cases where users want to invite additional users to the tenant already associated with it. Furthermore, tenants are created as a concept that compiles users when providing services, allowing for different contracts, settings, and operations at the company or organizational level. Therefore, when a user belonging to a specific tenant receives an invitation from another tenant, the inviting tenant must also invite the user, so a separate request for a tenant invitation must be made to the administrator.

[0004] The present invention has been made in consideration of the above, and aims to provide an information processing system, an information processing method, and a program that, when a user belonging to a different tenant applies for use to the tenant administrator, allows the tenant administrator to use equipment of another tenant while minimizing the effort required of the tenant administrator. [Means for solving the problem]

[0005] In order to solve the above-mentioned problems and achieve the object, the present invention provides a storage unit that stores user information associated with tenant information defining tenants for dividing a service provision range, the user information being used to identify users belonging to the tenant indicated by the tenant information, and device information being used to identify devices belonging to the tenant indicated by the tenant information; and when a user indicated by the user information associated with tenant information other than the tenant information associated with the device information of a usage-application device for which a usage application has been made performs a login operation on the usage-application device, the device displays a message on the usage-application device indicating that the usage-application device cannot be used, and prompts a terminal device of a tenant administrator of the tenant indicated by the tenant information associated with the device information of the usage-application device to invite the user who performed the login operation. When the tenant administrator performs an operation on the terminal device to invite the user who has logged in to the usage application device, the tenant administrator approves the invited user's use of the usage application device, and sends an email to the usage application device indicating the approval result of the invited user's use of the usage application device, depending on whether the tenant administrator has accepted or rejected the user's invitation on the terminal device. A control unit is provided. [Effects of the Invention]

[0006] According to the present invention, when a user belonging to a different tenant makes a usage request to a tenant administrator, the user can use a device belonging to another tenant while minimizing the work required by the tenant administrator. [Brief explanation of the drawings]

[0007] [Figure 1] FIG. 1 is a diagram illustrating an example of a process for inviting a user to a new tenant in an information processing system according to the present embodiment. [Figure 2] FIG. 2 is a diagram showing an example of a network arrangement of the information processing system according to the present embodiment. [Figure 3] FIG. 3 is a hardware configuration diagram of the workflow service (server) and PC included in the information processing system according to this embodiment. [Figure 4] FIG. 4 is a diagram showing the hardware configuration of the MFP according to this embodiment. [Figure 5] FIG. 5 is a block diagram showing an example of the functional configuration of the workflow service of the information processing system according to the present embodiment. [Figure 6] FIG. 6 is a flowchart showing an example of the flow of processing executed when a login operation is performed on the MFP in the information processing system according to this embodiment. [Figure 7] FIG. 7 is a diagram showing an example of an application use screen displayed on the MFP in the information processing system according to the present embodiment. [Figure 8] FIG. 8 is a flowchart showing an example of the flow of processing executed when a tenant administrator operates the use application management screen in the information processing system according to this embodiment. [Figure 9] FIG. 9 is a diagram showing an example of an invitation acceptance screen displayed on the PC of the tenant administrator in the information processing system according to the present embodiment. DETAILED DESCRIPTION OF THE INVENTION

[0008] Hereinafter, embodiments of an information processing system, an information processing method, and a program will be described in detail with reference to the accompanying drawings.

[0009] Fig. 1 is a diagram for explaining an example of a process for inviting a user to a new tenant in an information processing system according to this embodiment. Specifically, Fig. 1 is a diagram conceptually illustrating a flow in which, when a user of tenant A wants to operate an MFP (Multi-Function Peripheral) 9 belonging to tenant B, the user makes a request to an administrator of tenant B (tenant administrator) via the MFP 9, and the user of tenant A operates the MFP 9. Here, tenants A and B represent boundaries of service provision ranges (hereinafter referred to as service provision ranges).

[0010] First, when a user of Tenant A performs an invitation request operation on a screen of an MFP9 belonging to Tenant B (step S1), the MFP9 identifies the tenant administrator of Tenant B and sends an approval request email to the identified tenant administrator M (step S2).

[0011] Next, upon receiving the approval request email, the tenant administrator of Tenant B approves the operation of the MFP 9 of Tenant B by the user of Tenant A and notifies the user of Tenant A that approval has been granted (step S3). Thereafter, the user of Tenant A is invited to Tenant B (step S4) and is able to use the MFP 9 belonging to Tenant B (step S5).

[0012] Fig. 2 is a diagram showing an example of a network arrangement of an information processing system according to this embodiment. As shown in Fig. 2, the information processing system according to this embodiment includes a PC (Personal Computer) 5, which is an example of a terminal device of a tenant administrator, a workflow service 300, and an MFP 9, which is an example of a device. In this embodiment, the workflow service 300 is arranged on the cloud. Furthermore, the tenant administrator's PC 5 and MFP 9 are directly operated by a user.

[0013] 3 is a hardware configuration diagram of the workflow service (server) and PC included in the information processing system according to this embodiment. Here, the hardware configuration of PC 5 will be described, but workflow service 300 also has a similar hardware configuration.

[0014] As shown in FIG. 3, PC 5 is constructed by a computer, and as shown in FIG. 3, it includes a CPU (Central Processing Unit) 501, a ROM (Read Only Memory) 502, a RAM (Random Access Memory) 503, a HD (Hard Disk) 504, a HDD (Hard Disk Drive) controller 505, a display 506, an external device connection I / F (Interface) 508, a network I / F 509, a data bus 510, a keyboard 511, a pointing device 512, a DVD-RW (Digital Versatile Disk Rewritable) drive 514, and a media I / F 516.

[0015] Of these, the CPU 501 controls the overall operation of the PC 5. The ROM 502 stores programs, such as an IPL, used to drive the CPU 501. The RAM 503 is used as a work area for the CPU 501. The HD 504 stores various data, such as programs. The HDD controller 505 controls the reading and writing of various data from and to the HD 504 under the control of the CPU 501. The display 506 displays various information, such as a cursor, menus, windows, characters, or images. The external device connection I / F 508 is an interface for connecting various external devices. In this case, the external devices are, for example, USB (Universal Serial Bus) memories or printers. The network I / F 509 is an interface for data communication using the communication network 100. The data bus 510 is an address bus, a data bus, or the like, for electrically connecting the components, such as the CPU 501, shown in FIG. 5.

[0016] The keyboard 511 is a type of input means having multiple keys for inputting characters, numbers, various instructions, etc. The pointing device 512 is a type of input means for selecting and executing various instructions, selecting a processing target, moving a cursor, etc. The DVD-RW drive 514 controls reading and writing of various data from a DVD-RW 513, which is an example of a removable recording medium. Note that this is not limited to a DVD-RW, and may be a DVD-R, etc. The media I / F 516 controls reading and writing (storing) of data from a recording medium 515, such as a flash memory.

[0017] 4 is a hardware configuration diagram of an MFP according to this embodiment. As shown in FIG. 4, an MFP (Multi-function Peripheral / Product / Printer) 9 includes a controller 910, a short-range communication circuit 920, an engine control unit 930, an operation panel 940, and a network I / F 950.

[0018] Of these, the controller 910 has a CPU 901, which is the main part of the computer, a system memory (MEM-P) 902, a north bridge (NB) 903, a south bridge (SB) 904, an ASIC (Application Specific Integrated Circuit) 906, a local memory (MEM-C) 907, which is a storage unit, an HDD controller 908, and an HD 909, which is also a storage unit, and is configured such that the NB 903 and the ASIC 906 are connected by an AGP (Accelerated Graphics Port) bus 921.

[0019] Of these, the CPU 901 is a control unit that performs overall control of the MFP 9. The NB 903 is a bridge that connects the CPU 901 with the MEM-P 902, the SB 904, and the AGP bus 921, and includes a memory controller that controls reading and writing to and from the MEM-P 902, a PCI (Peripheral Component Interconnect) master, and an AGP target.

[0020] The MEM-P902 has a ROM 902a, which is memory for storing programs and data that realize the functions of the controller 910, and a RAM 902b, which is used for expanding the programs and data and as a drawing memory during memory printing. The programs stored in the RAM 902b may be provided by being recorded in an installable or executable file format on a computer-readable recording medium such as a CD-ROM, CD-R, or DVD.

[0021] The SB 904 is a bridge for connecting the NB 903 with PCI devices and peripheral devices. The ASIC 906 is an integrated circuit (IC) for image processing applications that has hardware elements for image processing and serves as a bridge connecting the AGP bus 921, PCI bus 922, HDD 908, and MEM-C 907. The ASIC 906 includes a PCI target and AGP master, an arbiter (ARB) that forms the core of the ASIC 906, a memory controller that controls the MEM-C 907, multiple direct memory access controllers (DMACs) that perform image data rotation and other operations using hardware logic, and a PCI unit that transfers data between the scanner unit 931 and printer unit 932 via the PCI bus 922. A USB (Universal Serial Bus) interface or an IEEE 1394 (Institute of Electrical and Electronics Engineers) interface may also be connected to the ASIC 906.

[0022] The MEM-C907 is a local memory used as an image buffer for copying and a code buffer. The HD909 is a storage device for storing image data, font data used during printing, and forms. The HD909 controls the reading and writing of data from and to the HD909 under the control of the CPU901. The AGP bus 921 is a bus interface for a graphics accelerator card proposed to speed up graphics processing, and direct high-throughput access to the MEM-P902 enables the graphics accelerator card to operate at high speed.

[0023] Further, the short-distance communication circuit 920 includes a short-distance communication circuit 920a. The short-distance communication circuit 920 is a communication circuit such as NFC or Bluetooth (registered trademark).

[0024] Furthermore, the engine control unit 930 is made up of a scanner unit 931 and a printer unit 932. The operation panel 940 is equipped with a panel display unit 940a, such as a touch panel, that displays current setting values ​​and selection screens and receives inputs from the operator, and an operation panel 940b that has a numeric keypad that receives setting values ​​for image formation conditions such as density setting conditions and a start key that receives a copy start instruction. The controller 910 controls the entire MFP 9, and controls, for example, drawing, communication, and inputs from the operation panel 940. The scanner unit 931 or the printer unit 932 includes an image processing unit that performs error diffusion, gamma conversion, and the like.

[0025] The MFP 9 can sequentially switch among the document box function, copy function, printer function, and facsimile function using the application switching key on the operation panel 940. When the document box function is selected, the MFP 9 enters document box mode, when the copy function is selected, the MFP 9 enters copy mode, when the printer function is selected, the MFP 9 enters printer mode, and when the facsimile mode is selected, the MFP 9 enters facsimile mode.

[0026] The network I / F 950 is an interface for performing data communication using the communication network 100. The short-range communication circuit 920 and the network I / F 950 are electrically connected to the ASIC 906 via a PCI bus 922.

[0027] 5 is a block diagram showing an example of the functional configuration of the workflow service of the information processing system according to this embodiment. In this embodiment, the information processing system has a control unit 525 and a storage unit 526.

[0028] The memory unit 526 is an example of a memory unit that stores user information used to identify users who belong to the tenant indicated by the tenant information, and device information used to identify MFP9 (an example of a device) that belongs to the tenant indicated by the tenant information, linked to tenant information that defines tenants for dividing the service provision range.

[0029] In this embodiment, the storage unit 526 stores a tenant table 521, a user table 522, an MFP table 523, and a usage application table 524.

[0030] The tenant table 521 associates tenant IDs with tenant names as shown in Table 1 below. Here, the tenant ID is identification information of a tenant. The tenant name is the name of a tenant. The tenant ID and tenant name are examples of tenant information. [Table 1]

[0031] As shown in Table 2 below, the user table 522 associates a user ID, a tenant ID, a user name, an email address, a password, and a role. Here, the user ID is identification information of the user. The tenant ID is the tenant ID of the tenant to which the user belongs. The user name is the name of the user. The email address is the email address of the user. The password is the password used by the user to log in when using the MFP9. The role indicates the user's job title (e.g., tenant administrator). The tenant to which the user belongs is determined by the tenant ID. The tenant ID is linked to the tenant ID column of the tenant table 521. The user ID, user name, email address, role, etc. are examples of user information. [Table 2]

[0032] As shown in Table 3 below, the MFP table 523 associates an MFP ID, a tenant ID, a machine number, and a name. Here, the MFP ID is identification information for the MFP 9. The tenant ID is the tenant ID of the tenant to which the MFP 9 belongs. The machine number is the model number of the MFP 9. The name is the name of the MFP 9. The tenant to which the MFP 9 belongs is determined by the tenant ID. The tenant ID is linked to the tenant ID column in the tenant table 521. The MFP ID, machine number, name, etc. are examples of device information. [Table 3]

[0033] The usage application table 524 is an example of a data table showing the status of a user's application to use the MFP 9 (hereinafter referred to as the usage application status). In this embodiment, the usage application table 524 associates a usage application ID, a source user ID, a destination tenant ID, a destination guest user ID, and a usage application status, as shown in Table 4 below. Here, the usage application ID is identification information of a user's application to use the MFP 9. The source user ID is the user ID of the user who made the application to use the MFP 9. It is assumed that the user who made the application to use the MFP 9 has logged in from the MFP 9, and therefore is identified by the user ID at the time of login (source user ID).

[0034] The destination tenant ID is the tenant ID of the tenant to which the MFP 9 for which usage has been requested belongs. Specifically, the destination tenant ID is the tenant ID of the tenant to which the MFP 9 operated by the user who has requested to use the MFP 9 belongs. The destination guest user ID is user identification information assigned to the user who has requested to use the MFP 9. The usage application status is the status of the usage application for the MFP 9 (for example, requesting, approved, or denied). The usage application status is initially requesting, and the status can be changed to either approved or denied by the tenant administrator's operation. The destination guest user will be described later. [Table 4]

[0035] For example, when the tenant administrator approves a user's application to use the MFP 9, the workflow service 300 stores the user ID (source user ID: 3) of the user whose application has been approved in the user table 522, as shown in Table 5 below. At that time, the workflow service 300 changes the application status of the application associated with the source user ID added to the user table 522 in the application application table 524 from "application pending" to "approved," as shown in Table 5 below. [Table 5]

[0036] Also, for example, when the tenant administrator approves a user's application to use the MFP9, the workflow service 300 adds user A-2 as a guest to the role associated with the user ID of the user whose application for use has been approved (for example, the user ID of user A-2 added to the tenant) in user table 522, as shown in the following Table 6. Furthermore, the workflow service 300 obtains the user name, email address, and password of user A-2 from user table 522 based on the user ID of the user who made the application for use, and stores them in association with user ID:7, as shown in the following Table 6. [Table 6]

[0037] Also, for example, if the tenant administrator M rejects a user's application to use the MFP9, the workflow service 300 changes the application status associated with the source user ID in the application table 524 from pending to rejected, as shown in Table 7 below. [Table 7]

[0038] When a user indicated by user information linked to tenant information other than the tenant information linked to the device information of the requested-to-use device, which is the MFP 9 for which a usage request has been made, performs a login operation to the requested-to-use device, the control unit 525 displays on the requested-to-use device (for example, the operation panel 940 of the requested-to-use device) that the requested-to-use device cannot be used. Furthermore, the control unit 525 prompts the PC 5 of the tenant administrator of the tenant indicated by the tenant information linked to the device information of the requested-to-use device to invite the user who performed the login operation.

[0039] As a result, when the MFP 9 and the login user belong to different tenants, a screen on the MFP 9 on which a usage request can be made is displayed, the usage request is notified to the tenant administrator of the tenant to which the MFP 9 belongs, and permission to use the MFP 9 is given to the user of the other tenant, so that the user and the tenant administrator can permit or deny the use of the MFP 9 by a simple operation. As a result, when a user belonging to a different tenant makes a usage request to the tenant administrator, the device of the other tenant can be used with minimal effort on the part of the tenant administrator.

[0040] In this embodiment, the control unit 525 identifies all tenant administrators of the tenant indicated by the tenant information linked to the device information of the device that has requested use, and prompts the PCs 5 of all the identified tenant administrators to invite the user who has logged in. For example, the control unit 525 may send an email to the PCs 5 of the tenant administrators of the tenant indicated by the tenant information linked to the device information of the device that has requested use, prompting them to invite the user who has logged in.

[0041] When the tenant administrator performs an operation on PC 5 to invite the user who has logged in to MFP 9, the control unit 525 approves the invited user's use of the device for which use has been requested. The control unit 525 also sends an email to the device for which use has been requested, indicating the approval result for the invited user's use of the device for which use has been requested, in accordance with whether the tenant administrator's PC 5 has accepted or rejected the user's invitation.

[0042] 6 is a flowchart showing an example of the flow of processing executed when a login operation is performed on an MFP in the information processing system according to this embodiment. When a user operates the MFP 9 to request access to the workflow service 300, the control unit 525 of the workflow service 300 displays a login screen on the operation panel 940 of the MFP 9 (step S601). Here, the login screen is a screen on which the user performing the login operation can input the user ID, email address, password, model number of the MFP 9, etc.

[0043] Next, when the user performs a login operation on the login screen displayed on the operation panel 940 of the MFP 9 (step S602), the MFP 9 transmits the model number of the MFP 9, the user ID, email address, password, etc. of the user who performed the login operation to the workflow service 300. In this embodiment, the MFP 9 transmits the model number entered on the login screen to the workflow service 300, but it may also automatically transmit the model number of the MFP 9 itself to the workflow service.

[0044] The control unit 525 of the workflow service 300 receives, from the MFP 9, the model number of the MFP 9, the email address and password of the user who performed the login operation, etc. (step S603). Then, the control unit 525 executes authentication processing for the user who performed the login operation using the user ID who performed the login operation and the received password, etc. (step S604).

[0045] If user authentication fails (step S604: No), control unit 525 displays a login screen including a message indicating that user authentication failed on operation panel 940 of MFP 9 (step S605). On the other hand, if user authentication succeeds (step S604: Yes), control unit 525 determines whether the tenant to which MFP 9 belongs is different from the tenant to which the logged-in user belongs, or whether the logged-in user does not have permission to use MFP 9 (step S606).

[0046] If the tenant to which the MFP9 belongs is the same as the tenant to which the logged-in user belongs, or if the logged-in user has permission to use the MFP9 (step S606: No), the control unit 525 displays an app usage screen on the operation panel 940 of the MFP9 that allows the MFP9 to be used (step S607).

[0047] On the other hand, if the tenant to which the MFP 9 belongs is different from the tenant to which the logged-in user belongs, or if the logged-in user does not have permission to use the MFP 9 (step S606: Yes), the control unit 525 displays, on the operation panel 940 of the MFP 9, a usage request screen on which a request to use the MFP 9 can be made (step S608). As a result, the control unit 525 displays on the MFP 9 that the requested device cannot be used.

[0048] 7 is a diagram showing an example of an application usage screen displayed on the MFP in the information processing system according to the present embodiment. In the present embodiment, control unit 525 displays, on operation panel 940 of MFP 9, a usage request screen including a button B1 for instructing to request use of MFP 9 and a button B2 for instructing not to request use of MFP 9, as shown in FIG.

[0049] 6, when the user subsequently applies to use the MFP 9 on the use application screen displayed on the operation panel 940 of the MFP 9 (step S609), the control unit 525 creates use application data (step S610). Next, the control unit 525 transmits the created use application data to the PC 5 of the tenant administrator of the tenant to which the MFP 9 belongs (step S611).

[0050] 8 is a flowchart showing an example of the flow of processing executed when a tenant administrator operates the use application management screen in the information processing system according to the present embodiment. When the tenant administrator's PC 5 receives use application data from the workflow service 300, it displays on the display 506 an invitation approval screen on which the logged-in user can input whether or not to approve the use application (step S801).

[0051] 9 is a diagram showing an example of an invitation approval screen displayed on the tenant administrator's PC in the information processing system according to this embodiment. In this embodiment, the tenant administrator's PC 200 displays on the display 506, as shown in FIG. 9, an invitation approval screen including a button B3 for instructing to approve the use request by the logged-in user and a button B4 for instructing to reject the use request by the logged-in user.

[0052] 8, the tenant administrator then inputs on the usage application screen whether or not to permit the usage application by the logged-in user. If it is input on the usage application screen that the usage application by the logged-in user is permitted (step S802: Yes), the tenant administrator's PC 5 creates a guest user ID and sends the created guest user ID to the workflow service 300 (step S803).

[0053] Next, the control unit 525 of the workflow service 300 changes the use application status associated with the source user ID (user ID of the logged-in user) in the use application table 524 to "permitted" (step S804). That is, when the tenant administrator performs an operation on the PC 5 to invite the user who has logged in to the device for which use has been requested, the control unit 525 approves the invited user's use of the device for which use has been requested. Furthermore, the control unit 525 transmits an email to the MFP 9 into which the guest user (logged-in user) has logged in, indicating that use of the MFP 9 has been permitted (step S805). That is, the control unit 525 transmits an email to the device for which use has been requested, indicating that the invitation of the user on the PC 5 of the tenant administrator has been permitted.

[0054] On the other hand, if an input to reject the use request by the login user is made on the use request screen (step S802: No), the tenant administrator's PC 5 notifies the workflow service 300 that the use request for the MFP 9 has been rejected. Upon being notified that the use request for the MFP 9 has been rejected, the control unit 525 of the workflow service 300 changes the use request status associated with the source user ID in the use request table 524 to "rejected" (step S806). Furthermore, the control unit 525 transmits an email to the MFP 9 into which the login user (requesting user) has logged in, indicating that use of the MFP 9 has been rejected (step S807). That is, the control unit 525 transmits an email to the use request device indicating that the user's invitation on the tenant administrator's PC 5 has been rejected.

[0055] As described above, according to the information processing system of the present embodiment, when the MFP 9 and the login user belong to different tenants, a screen on which a use request can be made is displayed on the MFP 9, the use request is notified to the tenant administrator of the tenant to which the MFP 9 belongs, and permission to use the MFP 9 is given to the user of the other tenant, so that the user and the tenant administrator can permit or deny the other tenant's use of the MFP 9 with a simple operation. As a result, when a user belonging to a different tenant makes a use request to the tenant administrator, the device of the other tenant can be used with minimal effort on the part of the tenant administrator.

[0056] Each function of the above-described embodiments can be realized by one or more processing circuits. Here, the term "processing circuit" in this specification includes a processor programmed to perform each function by software, such as a processor implemented by an electronic circuit, as well as devices such as an ASIC (Application Specific Integrated Circuit), a DSP (Digital Signal Processor), an FPGA (Field Programmable Gate Array), and conventional circuit modules designed to perform each of the above-described functions.

[0057] The devices described in the example are merely illustrative of one of several computing environments for implementing the embodiments disclosed herein. In one embodiment, workflow service 300 includes multiple computing devices, such as a server cluster, configured to communicate with each other via any type of communication link, including a network, shared memory, etc., to perform the processes disclosed herein. Similarly, PC 5 may include multiple computing devices configured to communicate with each other.

[0058] Furthermore, the workflow service 300 and the PC5 can be configured to share the disclosed processing steps, e.g., FIG. 5, in various combinations. For example, the processes performed by the workflow service 300 can be performed by the PC5. Similarly, the functions of the PC5 can be performed by the workflow service 300. Furthermore, the elements of the workflow service 300 and the PC5 can be integrated into a single server device or separated into multiple devices.

[0059] It should be noted that devices such as the MFP 9 are not limited to image forming devices as long as they have a communication function. The devices may be, for example, a PJ (Projector), an IWB (Interactive White Board: a white board with an electronic blackboard function that allows mutual communication), an output device such as digital signage, a HUD (Head Up Display) device, industrial machinery, an imaging device, a sound collection device, a medical device, a network home appliance, an automobile (Connected Car), a notebook PC (Personal Computer), a mobile phone, a smartphone, a tablet terminal, a game console, a PDA (Personal Digital Assistant), a digital camera, a wearable PC, a desktop PC, or the like.

[0060] The programs executed by workflow service 300 of this embodiment are provided by being pre-installed in ROM 502 or the like. The programs executed by workflow service 300 of this embodiment may also be provided by being recorded in an installable or executable format on a computer-readable recording medium such as a CD-ROM, a flexible disk (FD), a CD-R, or a digital versatile disk (DVD).

[0061] Furthermore, the program executed by workflow service 300 of this embodiment may be configured to be stored on a computer connected to a network such as the Internet and provided by being downloaded via the network. Also, the program executed by workflow service 300 of this embodiment may be configured to be provided or distributed via a network such as the Internet.

[0062] The program executed by the workflow service 300 of this embodiment has a modular structure including the above-mentioned units (control unit 525), and in terms of actual hardware, the CPU 501 (an example of a processor) reads and executes the program from the ROM 502, thereby loading the above-mentioned units onto the main memory device and generating the control unit 525 on the main memory device. [Explanation of symbols]

[0063] 5 PC 9 MFP 300 Workflow Services 501 CPU 502 ROM 503 RAM 940 Operation Panel 521 Tenant Table 522 User Table 523 MFP Table 524 Usage Application Table 525 Control Unit 526 Storage section [Prior art documents] [Patent documents]

[0064] [Patent Document 1] Japanese Patent Application Publication No. 2019-036141

Claims

1. a storage unit that stores user information used to identify users belonging to the tenant indicated by the tenant information, the user information being associated with tenant information defining tenants for dividing a service provision range, and device information being used to identify devices belonging to the tenant indicated by the tenant information; a control unit that, when a user indicated by the user information linked to tenant information other than the tenant information linked to the device information of the application-for-use device, which is the device for which a usage application has been made, performs a login operation to the application-for-use device, displays on the application-for-use device that the application-for-use device cannot be used, and prompts a terminal device of a tenant administrator of the tenant indicated by the tenant information linked to the device information of the application-for-use device to invite the user who performed the login operation, and when the tenant administrator performs an operation on the terminal device to invite the user who performed the login operation to the application-for-use device, approves the invited user's use of the application-for-use device, and sends to the application-for-use device an email indicating the approval result of the invited user's use of the application-for-use device in accordance with the acceptance or rejection of the user invitation on the terminal device of the tenant administrator; An information processing system comprising:

2. The information processing system of claim 1, wherein the control unit identifies all tenant administrators of the tenant indicated by the tenant information linked to the device information of the device requested for use, and prompts the terminal devices of all identified tenant administrators to invite the user who logged in to the device requested for use.

3. The information processing system according to claim 1 or 2, wherein the control unit sends an email to the terminal device of the tenant administrator of the tenant indicated by the tenant information linked to the device information of the device that has applied for use, prompting the user who has performed the login operation to invite the user.

4. An information processing method executed in an information processing system having a storage unit that stores user information used to identify users belonging to the tenant indicated by the tenant information, the user information being linked to tenant information that defines tenants for dividing a service provision range, and device information being used to identify devices belonging to the tenant indicated by the tenant information, the method comprising: a step of displaying on the application-for-use device that the application-for-use device cannot be used when a user indicated by the user information linked to tenant information other than the tenant information linked to the device information of the application-for-use device, which is the device for which a usage application has been made, performs a login operation to the application-for-use device; a step of prompting a terminal device of a tenant administrator of the tenant indicated by the tenant information linked to the device information of the usage application device to invite the user who has performed a login operation, and when the tenant administrator performs an operation on the terminal device to invite the user who has performed a login operation to the usage application device, approving the invited user's use of the usage application device by the usage application device, and sending an email to the usage application device indicating the approval result of the invited user's use of the usage application device in accordance with whether the user's invitation on the terminal device of the tenant administrator has been accepted or rejected; An information processing method including:

5. Computer, a control unit configured to: when a user indicated by the user information associated with tenant information other than the tenant information associated with the device information of a usage-application device for which a usage application has been made logs in to the usage-application device, the control unit displays on the usage-application device a message indicating that the usage-application device cannot be used; and when the tenant administrator performs an operation on the terminal device to invite the user who has logged in to the usage-application device, the control unit approves the invited user's use of the usage-application device, and when the tenant administrator performs an operation on the terminal device to invite the user who has logged in to the usage-application device, the control unit sends an email to the usage-application device indicating the approval result of the invited user's use of the usage-application device, in accordance with whether the user's invitation on the terminal device of the tenant administrator has been approved; A program to function as a

Citation Information

Patent Citations

  • Information processing device

    JP2019036141A

  • Service system, cloud service, user registration method, and program

    JP2020112886A

  • Information processing device, information processing system, information processing method, and program

    JP2021064063A