Login System

A login system for manufacturing facilities uses time-limited passwords on ID tags with biometric identification to address inefficiencies and security issues, enhancing ease and security of device access.

JP7840472B1Active Publication Date: 2026-04-03CKD CORP
View PDF 7 Cites 0 Cited by

Patent Information

Authority / Receiving Office
JP · JP
Patent Type
Patents
Current Assignee / Owner
Filing Date
2025-10-01
Publication Date
2026-04-03

AI Technical Summary

Technical Problem

Existing login methods for devices in manufacturing facilities, such as those used in pharmaceutical and food production, are cumbersome and insecure, whether they require manual input of passwords or use ID cards, leading to inefficiencies and security risks.

Method used

A login system that generates time-limited passwords for users, stored on portable ID tags, which are read by devices, and includes biometric identification for secure issuance and management, with features to enhance security and convenience by limiting unauthorized use and facilitating easy login.

Benefits of technology

The system improves login ease and security by using time-limited passwords and biometric identification, reducing the likelihood of unauthorized access and enhancing user convenience while maintaining secure management of user privileges.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure 0007840472000001_ABST
    Figure 0007840472000001_ABST
Patent Text Reader

Abstract

We provide a login system that enhances the ease of login and improves security. [Solution] The login system 1 includes an identification information reading unit 12 capable of reading the user's identification information from the user, an ID tag issuing unit 13 capable of writing an expiration password from an account information storage unit 41 to an ID tag 60 relating to the user corresponding to the read identification information, a password storage ID tag issuing station 10 capable of issuing an ID tag 60 with the expiration password stored in it, and a device-side reading means provided for each device such as a PTP machine 101, capable of reading the expiration password from the ID tag 60. Based on the expiration password stored in the account information storage unit 41 and the expiration password of the ID tag 60 read by the device-side reading means, the system determines whether or not login to the device such as the PTP machine 101 is permitted.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to a login system that performs processing related to logging in to a device.

Background Art

[0002] Conventionally, in manufacturing plants for drugs, foods, etc., manufacturing, inspection, packaging, etc. are performed using various devices. For example, in a factory that manufactures and packages PTP sheets as drugs, a device (PTP machine) for manufacturing and inspecting PTP sheets, a device (stacking machine) for stacking the manufactured PTP sheets in predetermined numbers, a device (banding machine) for binding a plurality of stacked PTP sheets with a predetermined band, a device (pillow machine) for bagging (pillow packaging) PTP sheets, a device (boxing machine) for performing box-packing processing of PTP sheets, etc. are used.

[0003] By the way, from the viewpoints of preventing incorrect setting changes and appropriately managing information, etc., when performing setting changes, information viewing, etc. in the above-described devices, it is preferable to require a user to log in to the device.

[0004] Here, as a method for a user to log in to a device, there are known methods such as (1) a method of inputting information such as a password and a user ID by input means such as a keyboard or a touch panel, and (2) a method of causing a predetermined reading device to read information such as a password and a user ID stored in an ID card, etc. (for example, refer to Patent Document 1, etc.).

Prior Art Documents

Patent Documents

[0005]

Patent Document 1

Summary of the Invention

Problems to be Solved by the Invention

[0006] However, (1) with methods that involve inputting information via an input device, it is necessary to input information each time one attempts to log in to the device. Therefore, the login process (login operation) becomes cumbersome and time-consuming, potentially increasing the burden on the user. In addition, methods that generally use passwords raise security concerns.

[0007] On the other hand, (2) the method of having a reader read information stored on an ID card or the like allows login operations to be performed relatively easily compared to method (1), but like method (1), there are concerns in terms of security.

[0008] This invention has been made in view of the above circumstances, and its purpose is to provide a login system that can enhance the ease of login operations and security. [Means for solving the problem]

[0009] Below, we will describe, in separate sections, each means suitable for achieving the above objectives. Furthermore, we will add notes on the effects and benefits specific to each means as needed.

[0010] Means 1. A login system applied to a manufacturing facility that produces pharmaceuticals or food products using multiple production lines, each having one or more devices, and which performs processing related to logging into the devices, A password generation means that generates a time-limited password for each user that corresponds to that user and is valid only for a predetermined period, For each user, a user information storage means stores the user's time-limited password, which is generated by the password generation means. A portable ID tag having a password storage means on which the aforementioned time-limited password can be written, The ID tag comprises an identification information reading means capable of reading different identification information for each user, and a password writing means capable of writing the time-limited password stored in the user information storage means to the password storage means of the ID tag, relating to the user corresponding to the identification information read by the identification information reading means, and a password storage ID tag issuing means capable of issuing the ID tag in which the time-limited password is stored in the password storage means. Each of the aforementioned devices is provided with a device-side reading means capable of reading the time-limited password stored in the password storage means of the ID tag from the ID tag, The system includes a login permission determination means that determines whether or not login to the device is permitted based on the time-limited password stored in the user information storage means and the time-limited password read by the device-side reading means. 、 The identification information reading means is configured to read the user's biometric information as the identification information, The user information storage means stores, for each user, the user's biometric information and the time-limited password in association with each user. The password writing means is configured to write the time-limited password of the user information storage means, which is associated with the user corresponding to the biometric information read by the identification information reading means, to the password storage means in the ID tag. The password storage ID tag issuing means is installed in an external area located outside the production area where the production line is installed. A login system characterized by the following features.

[0011] Furthermore, "specified period" refers to a specified period of 24 hours or less, such as 8 hours or 10 hours, which corresponds to the prescribed working hours.

[0012] According to method 1 described above, the user can log in to the device by having the time-limited password stored in the ID tag read by the device-side reading means provided on the device. Therefore, compared to methods that require entering a user ID and password, the ease of login operations can be improved. In addition, because a time-limited password valid only for a predetermined period is used, the unauthorized use of the ID tag due to theft or loss can be made less likely. This improves security.

[0013] Furthermore, the system may also include a privilege storage means for storing user privileges for each user, and a privilege-corresponding expiration date setting means that can set the expiration date of the time-limited password according to the user privileges stored in the privilege storage means. In this case, the expiration date of the time-limited password can be changed according to the user's privileges. Therefore, for example, it becomes possible to set a relatively short expiration date for the time-limited password in an ID tag issued to a user with relatively high privileges. This enables more appropriate management of ID tags according to user privileges.

[0014] Furthermore, after the ID tag is issued by the password storage ID tag issuing means, the system may also include an expiration date change means that allows the expiration date of the time-limited password stored in the password storage means of the ID tag to be changed within a period of 24 hours. In this case, the expiration date of the time-limited password can be flexibly changed even after the ID tag has been issued. Therefore, user convenience can be further enhanced.

[0016] Also, The above means of transportation 1 According to the report, issuing ID tags requires the user's biometric information. Therefore, it is possible to more reliably prevent the information necessary for issuing ID tags from being leaked to external parties, thereby further improving security.

[0017] Furthermore, the identification information reading means for reading the user's biometric information only needs to be provided in the password storage ID tag issuing means, and each device only needs to be equipped with a device-side reading means (e.g., a reader device) for reading the information stored in the ID tag. Therefore, a login system can be implemented at a relatively low cost.

[0019] Also, The above means of transportation 1According to this, the password storage ID tag issuing means is installed in an external area located outside the production area (an area where users need to wear gloves, masks, etc., and an area where relatively loud noise can occur as the device operates). Therefore, before the user wears gloves, masks, etc., the biometric information of the user can be read by the identification information reading means in an environment with relatively low noise. As a result, the biometric information can be read more accurately by the identification information reading means, and it is possible to make it less likely to occur problems such as failure to issue the ID tag due to a reading error. Also, since the biometric information can be read more easily, the convenience of the user regarding the reading of biometric information can be enhanced.

[0020] means 2 . A login system applicable to a manufacturing facility that produces pharmaceuticals or food products using multiple production lines, each having one or more devices, and which performs processing related to logging into said devices, A password generation means that generates a time-limited password for each user that corresponds to that user and is valid only for a predetermined period, For each user, a user information storage means stores the user's time-limited password, which is generated by the password generation means. A portable ID tag having a password storage means on which the aforementioned time-limited password can be written, The ID tag comprises an identification information reading means capable of reading different identification information for each user, and a password writing means capable of writing the time-limited password stored in the user information storage means to the password storage means of the ID tag, relating to the user corresponding to the identification information read by the identification information reading means, and a password storage ID tag issuing means capable of issuing the ID tag in which the time-limited password is stored in the password storage means. Each of the aforementioned devices is provided with a device-side reading means capable of reading the time-limited password stored in the password storage means of the ID tag from the ID tag, The system includes a login permission determination means that determines whether or not login to the device is permitted based on the time-limited password stored in the user information storage means and the time-limited password read by the device-side reading means. The system includes a password erasure / invalidation means that erases or invalidates the time-limited password stored in the password storage means when certain conditions are met. The ID tag is equipped with a determination means for determining whether or not the predetermined conditions are met. The login system is characterized in that the password erasure / invalidation means is provided on the ID tag and is configured to erase or invalidate the time-limited password stored in the password storage means when the determination means determines that the predetermined conditions are met.

[0021] The above means 2 According to this, when a predetermined condition is satisfied, the time-limited password stored in the ID tag is erased or invalidated. That is, when a predetermined condition is satisfied, the ID tag becomes in a state where it cannot be used for logging in to the device. Therefore, even if the ID tag is lost or stolen, it is possible to more reliably prevent the unauthorized use of the ID tag. As a result, the security on the security side can be further enhanced.

[0022] The specified conditions include the following: the elapsed time since the time-limited password was stored has exceeded a predetermined time; the time has reached the scheduled deletion / deactivation time stored on the server, etc. (for example, the end of work); the ID tag has left the user's body; if the ID tag has a band that is worn on the user's arm, the band has been detected to have spread; the ID tag has left the production area; and the ID tag has been placed in a designated tag retrieval means.

[0023] Furthermore, the system may also include a permission storage means for storing user permissions for each user, and a permission-corresponding condition setting means that can set conditions according to the user permissions stored in the permission storage means as predetermined conditions. In this case, the conditions for erasing or invalidating time-limited passwords can be changed according to the user's permissions. This enables more appropriate management of ID tags according to user permissions.

[0025] Also, The above means of transportation 2 According to the documentation, the ID tag alone can delete or invalidate time-limited passwords. Therefore, security can be further enhanced.

[0026] means 3 . A login system applicable to a manufacturing facility that produces pharmaceuticals or food products using multiple production lines, each having one or more devices, and which performs processing related to logging into said devices, A password generation means that generates a time-limited password for each user that corresponds to that user and is valid only for a predetermined period, For each user, a user information storage means stores the user's time-limited password, which is generated by the password generation means. A portable ID tag having a password storage means on which the aforementioned time-limited password can be written, The ID tag comprises an identification information reading means capable of reading different identification information for each user, and a password writing means capable of writing the time-limited password stored in the user information storage means to the password storage means of the ID tag, relating to the user corresponding to the identification information read by the identification information reading means, and a password storage ID tag issuing means capable of issuing the ID tag in which the time-limited password is stored in the password storage means. Each of the aforementioned devices is provided with a device-side reading means capable of reading the time-limited password stored in the password storage means of the ID tag from the ID tag, The system includes a login permission determination means that determines whether or not login to the device is permitted based on the time-limited password stored in the user information storage means and the time-limited password read by the device-side reading means. An ID tag detection means is provided that corresponds to the exit through which a user passes when leaving the production area where the production line is installed, and is capable of detecting the ID tag. A login system characterized by comprising a notification means for notifying the user when the ID tag is detected by the ID tag detection means.

[0027] The above means of transportation 3 According to this, it becomes possible to more reliably prevent ID tags from being taken outside (for example, outside the production area). This further enhances security.

[0028] means 4 . A login system applicable to a manufacturing facility that produces pharmaceuticals or food products using multiple production lines, each having one or more devices, and which performs processing related to logging into said devices, A password generation means that generates a time-limited password for each user that corresponds to that user and is valid only for a predetermined period, For each user, a user information storage means stores the user's time-limited password, which is generated by the password generation means. A portable ID tag having a password storage means on which the aforementioned time-limited password can be written, The ID tag comprises an identification information reading means capable of reading different identification information for each user, and a password writing means capable of writing the time-limited password stored in the user information storage means to the password storage means of the ID tag, relating to the user corresponding to the identification information read by the identification information reading means, and a password storage ID tag issuing means capable of issuing the ID tag in which the time-limited password is stored in the password storage means. Each of the aforementioned devices is provided with a device-side reading means capable of reading the time-limited password stored in the password storage means of the ID tag from the ID tag, The system includes a login permission determination means that determines whether or not login to the device is permitted based on the time-limited password stored in the user information storage means and the time-limited password read by the device-side reading means. A tag retrieval means for retrieving the aforementioned ID tag, A means for determining whether or not an ID tag has not been collected by the tag collection means, A login system characterized by comprising: a usage restriction means that restricts the use of an ID tag if the uncollected ID tag determination means determines that there is an ID tag that has not been collected.

[0029] The above means of transportation 4 According to this, it is possible to restrict the use of ID tags that have not been recovered, i.e., ID tags that may have been taken outside the company (for example, by disabling their use). This can further enhance security.

[0030] Furthermore, the uncollected ID tag determination means may determine whether or not an ID tag has not been collected by comparing, for example, the unique information of an ID tag collected by the tag collection means (unique information for identifying an ID tag) with the unique information of an ID tag issued by the password-storing ID tag issuance means. Alternatively, the uncollected ID tag determination means may determine whether or not an ID tag has not been collected based on, for example, whether or not an ID tag has been detected by the ID tag detection means described above.

[0031] Furthermore, the system may also include a workwear retrieval means for retrieving workwear, provided in the external area, which is a changing area where users put on and take off designated workwear; a contamination determination means for determining whether or not the ID tag is mixed in with the workwear retrieved by the workwear retrieval means; and a contamination notification means for notifying the user if the contamination determination means determines that the ID tag is mixed in. In this case, when workwear with an ID tag still inside a pocket or the like is retrieved by the workwear retrieval means, the user can be notified that the ID tag is mixed in. This ensures that the ID tag is retrieved by the tag retrieval means more reliably.

[0032] means 5 Owner information storage means that stores the aforementioned ID tag in association with the user who read the identification information when issuing the ID tag using the password storage ID tag issuing means, The means is characterized by comprising: a user identification means capable of identifying the user associated with the ID tag in question, based on information stored in the owner information storage means, when the uncollected ID tag determination means determines that there is an ID tag that has not been collected. 4 The login system described above.

[0033] The above means of transportation 5 According to this method, if an ID tag has not been retrieved, the user who owns that ID tag can be identified. Therefore, it becomes easy to retrieve unretrieved ID tags from users. Means 6. A login system applied to a manufacturing facility that produces pharmaceuticals or food products using multiple production lines, each having one or more devices, and which performs processing related to logging into the devices, A password generation means that generates a time-limited password for each user that corresponds to that user and is valid only for a predetermined period of up to 24 hours, which corresponds to a predetermined working time, For each user, a user information storage means stores the user's time-limited password, which is generated by the password generation means. A portable ID tag having a password storage means on which the aforementioned time-limited password can be written, The ID tag comprises an identification information reading means capable of reading different identification information for each user, and a password writing means capable of writing the time-limited password stored in the user information storage means to the password storage means of the ID tag, relating to the user corresponding to the identification information read by the identification information reading means, and a password storage ID tag issuing means capable of issuing the ID tag in which the time-limited password is stored in the password storage means. Each of the aforementioned devices is provided with a device-side reading means capable of reading the time-limited password stored in the password storage means of the ID tag from the ID tag, A login system characterized by comprising a login permission determination means that determines whether or not login to the device is permitted based on the time-limited password stored in the user information storage means and the time-limited password read by the device-side reading means. Means 7. The identification information reading means is configured to read the user's biometric information as the identification information, The user information storage means stores, for each user, the user's biometric information and the time-limited password in association with each user. The login system according to any one of means 2 to 6, characterized in that the password writing means is configured to write the time-limited password of the user information storage means, which is associated with the user corresponding to the biometric information read by the identification information reading means, to the password storage means in the ID tag. Means 8. The login system according to means 7, characterized in that the password storage ID tag issuing means is installed in an external area located outside the production area where the production line is installed.

[0034] Furthermore, the technical aspects related to each of the above means may be combined as appropriate. 。 [Brief explanation of the drawing]

[0035] [Figure 1] This is a block diagram showing the general configuration of the login system and manufacturing equipment. [Figure 2] This is a perspective view of a PTP sheet. [Figure 3] This is a partially enlarged cross-sectional view of a PTP sheet. [Figure 4] This is a schematic diagram showing the general configuration of a PTP (Point-to-Pass) device. [Figure 5] This is an explanatory diagram illustrating that production lines are installed in the production area, and password storage ID tag issuance stations and other equipment are installed in the changing area. [Figure 6] This is a block diagram showing tag readers and touch panels for devices such as PTP machines. [Figure 7] This block shows the functional configuration of ID tags. [Figure 8] This is a block diagram showing the functional configuration of the ID tag retrieval device. [Figure 9] This is a diagram showing the functional configuration of the server control unit. [Figure 10] This is a table diagram showing an example of information such as user IDs stored in the account information storage unit. [Figure 11] This is a table diagram showing an example of information such as permission categories stored in the account information storage unit. [Figure 12] This is a table diagram showing an example of information related to issued ID tags stored in the ID tag information storage unit. [Figure 13] This is a block diagram showing the functional configuration of a touch panel for a device. [Figure 14] This is a flowchart showing the login process flow on a device's touch panel. [Figure 15]In another embodiment, this is a table diagram showing an example of information such as an ID tag issuance password stored in the account information storage unit. [Figure 16] This block diagram shows the functional configuration of an ID tag in another embodiment. [Figure 17] This block diagram shows the functional configuration of the server in another embodiment. [Figure 18] This block diagram shows the functional configuration of the server in another embodiment. [Figure 19] This is a block diagram showing the functional configuration of a work clothes collection device. [Figure 20] In another embodiment, this is an explanatory diagram illustrating the installation of a work clothes collection device in the changing area. [Modes for carrying out the invention]

[0036] An embodiment will be described below with reference to the drawings. As shown in Figure 1, the login system 1 is applied to a manufacturing facility 100 that produces pharmaceuticals, and is for performing login processing for multiple devices in the manufacturing facility 100. Before describing the login system 1, the manufacturing facility 100 will be described first.

[0037] The manufacturing facility 100 is equipped with multiple (for example, 10) production lines L, each production line L having multiple devices for manufacturing PTP sheets as "pharmaceuticals" and for packaging the PTP sheets. The PTP sheet 301 comprises a container film 303 having a pocket portion 302 in which contents 305 (for example, tablets or capsules) are contained, and a cover film 304 attached to the container film 303 so as to close the opening of the pocket portion 302 (see Figures 2 and 3).

[0038] In this embodiment, each production line L has all or some of the following "devices": a PTP machine 101, a stacking machine 102, a banding machine 103, a pillow machine 104, and a boxing machine 105. Each production line L is installed in production area A1 (see Figure 5). In production area A1, relatively loud noise may be generated when the devices (PTP machine 101, etc.) are in operation. In addition, for the sake of quality control of the PTP sheets 301 and ensuring user safety, users entering production area A1 are required to wear prescribed work clothes (e.g., dustproof clothing), gloves, masks, etc. The work clothes are provided with pockets for storing the ID tags 60, which will be described later.

[0039] The PTP machine 101 is a device for manufacturing PTP sheets 301. As shown in Figure 4, a raw material roll consisting of a strip of container film 303 wound up is provided at the upstream end of the PTP machine 101, and the container film 303 fed from here is transported along a predetermined path. Along the transport path of the container film 303, the PTP machine 101 is equipped with, in order from upstream, a preheating device 101a, a pocket forming device 101b, a first inspection device 101c, a filling device 101d, a second inspection device 101e, a sealing device 101f, a third inspection device 101g, a slit forming device 101h, an engraving device 101j, and a sheet punching device 101k.

[0040] The preheating device 101a preheats the container film 303. The pocket forming device 101b forms pockets 302 in the preheated container film 303 using a predetermined mold or the like.

[0041] The first inspection device 101c determines the quality of the container film 303 before filling the pocket portion 302 with contents 305. The quality determination is performed using a threshold (for example, an area value for quality determination) or image processing.

[0042] The filling device 101d fills the pockets 302 with contents 305. The second inspection device 101e primarily determines the quality of the contents 305, for example, whether the contents 305 are properly filled into each pocket 302, whether there are any abnormalities in the contents 305, and whether there are any foreign objects mixed into the pockets 302. The quality determination is performed using thresholds (for example, area values ​​for quality determination) or image processing, similar to the first inspection device 101c.

[0043] The sealing device 101f includes a heating roll 101f1 with a heating function and a film receiving roll 101f2 that continuously conveys the container film 303, and attaches the cover film 304 to the container film 303 by closing the openings of the pocket portions 302. More specifically, the strip-shaped cover film 304 is guided to the heating roll 101f1, and the two films 303 and 304 pass between the two rolls 101f1 and 101f2 in a heated and pressed state, thereby attaching the cover film 304 to the container film 303. By attaching the cover film 304 to the container film 303, a strip-shaped PTP film 306 is produced in which the contents 305 are contained in each pocket portion 302.

[0044] The third inspection device 101g performs quality control on the contents 305 and the attachment portions (sheet portions) of both films 303 and 304. The quality control is performed using thresholds (e.g., area values ​​for quality control) and image processing, similar to inspection devices 101c and 101e.

[0045] The slit-forming device 101h forms separation slits at predetermined positions on the PTP film 306. The marking device 101j marks the PTP film 306 at predetermined positions (e.g., the tag portion). Note that the separation slits and markings are not shown in Figure 2.

[0046] The sheet punching device 101k has the function of punching out the outer edge of the PTP film 306 into units of PTP sheets 301, that is, separating the PTP sheets 301 from the PTP film 306. The PTP sheets 301 obtained by the sheet punching device 101k are transported by the conveyor 101m and temporarily stored in the finished product hopper 101n. However, if any of the inspection devices 101c, 101e, or 101g determine that a sheet is defective, the PTP sheet 301 related to this defect determination is not sent to the finished product hopper 101n, but is instead discharged separately by a defective sheet discharge mechanism (not shown).

[0047] Meanwhile, the scrap portion remaining after punching out the PTP film 306 is cut to predetermined dimensions by the cutting device 101p and then stored in the scrap hopper 101q.

[0048] Furthermore, various settings such as the preheating temperature in the preheating device 101a, the pressure used when forming the pocket portion 302 by the pocket portion forming device 101b, numerical values ​​used for quality judgment such as thresholds, the temperature of the heating roll 101f1 (seal temperature), and the pressure when attaching both films 303 and 304 can be changed using the device touch panel 203 provided on the PTP machine 101, which will be described later. In addition, although details will be omitted, settings for the filling device 101d, slitting device 101h, marking device 101j, and sheet punching device 101k can also be changed using the device touch panel 203.

[0049] Returning to Figure 1, the stacking machine 102 is a device that stacks the manufactured PTP sheets 301 in predetermined numbers. The banding machine 103 is a device that bundles the stacked PTP sheets 301 together with predetermined bands. The pillow packaging machine 104 is a device that bags the PTP sheets 301 by performing pillow packaging. The boxing machine 105 is a device that boxes the PTP sheets 301. The settings for the stacking machine 102, banding machine 103, pillow packaging machine 104, and boxing machine 105 can be changed using the device touch panel 203 provided for each of these devices.

[0050] In each production line L, the line configuration (i.e., the equipment that makes up production line L) is appropriately set according to the final product to be obtained. For example, in a production line L that ultimately produces a product that does not require bundling or bagging of PTP sheets 301, a PTP machine 101, a stacking machine 102, and a boxing machine 105 are provided, while a banding machine 103 and a pillow machine 104 are not provided.

[0051] Furthermore, the PTP machine 101, stacking machine 102, banding machine 103, pillow machine 104, and boxing machine 105 are each equipped with a control device 201, a tag reader 202, and a device touch panel 203 (see Figure 6). In this embodiment, the tag reader 202 constitutes the "device-side reading means." The control device 201, tag reader 202, and device touch panel 203 will be described later.

[0052] Next, the login system 1 will be described. As shown in Figure 1, the login system 1 comprises a password storage ID tag issuing station 10, an ID tag retrieval device 20, a removal warning device 30, a server 40, and a number of PCs (four in this embodiment) 51, 52, 53, and 54, all of which are connected to each other in a communicative manner. In addition, the control device 201, tag reader 202, and device touch panel 203 function as components of the login system 1. In this embodiment, the password storage ID tag issuing station 10 constitutes the "password storage ID tag issuing means".

[0053] The password storage ID tag issuing station 10 is a system for issuing ID tags 60 used for logging into devices (such as the PTP machine 101). First, let's explain the ID tag 60.

[0054] The ID tag 60 is a card or sheet type and is easily portable. The ID tag 60 has a tag storage unit 61 made of a predetermined integrated circuit and a tag antenna 62 connected to the tag storage unit 61 (see Figure 7). In this embodiment, the tag storage unit 61 constitutes the "password storage means". The ID tag 60 may also be a band type or ring type that can be worn on the arm or finger.

[0055] The tag storage unit 61 is a storage medium capable of storing and erasing various types of information, including time-limited passwords set for each user. The tag storage unit 61 has pre-stored unique information for identifying the ID tags 60. This unique information is different for each ID tag 60.

[0056] The tag antenna 62 is provided to read information stored in the tag storage unit 61 and write information to the tag storage unit 61 from an external, contactless source. The tag antenna 62 has the function of receiving signals (radio waves) transmitted from the tag reader 202 and transmitting (transmitting) a predetermined response signal in response to said signals. The response signal includes information stored in the tag storage unit 61 (for example, a time-limited password).

[0057] The password storage ID tag issuing station 10 is located adjacent to production area A1 and outside production area A1 in changing area A2 (see Figure 5). In this embodiment, changing area A2 corresponds to the "external area". Changing area A2 is an area for users to put on and take off work clothes, gloves, masks, etc.

[0058] The password storage ID tag issuing station 10 comprises a station touch panel 11, an identification information reading unit 12, an ID tag issuing unit 13, and an ID tag issuing control unit 14. In this embodiment, the identification information reading unit 12 constitutes the "identification information reading means," and the ID tag issuing unit 13 constitutes the "password writing means."

[0059] The station touch panel 11 is used for inputting information to the password storage ID tag issuing station 10 and for displaying information stored in the password storage ID tag issuing station 10, the server 40, etc.

[0060] The identification information reading unit 12 is a device for reading identification information that differs for each user. In this embodiment, the identification information reading unit 12 reads the user's biometric information as "identification information". Biometric information is physical information that differs for each individual, and examples of biometric information include the iris, veins, three-dimensional shape of the face (3D face shape), fingerprints, and voiceprints. The identification information reading unit 12 can be composed of a camera capable of capturing the user's iris, a sensor capable of reading the user's veins and fingerprints, a 3D camera capable of acquiring the user's three-dimensional face shape, and a microphone capable of acquiring the user's voice.

[0061] The ID tag issuing unit 13 has the function of writing a time-limited password associated with the user corresponding to the identification information (biometric information) read by the identification information reading unit 12 to the tag storage unit 61 of the ID tag 60. The time-limited password is pre-generated for each user by the password generation unit 47a, which will be described later, and is different for each user. The time-limited password is valid only for a "predetermined period" and is stored in the account information storage unit 41, which will be described later. The "predetermined period" refers to a predetermined period of 24 hours or less, such as 8 hours or 10 hours, which corresponds to a predetermined working time, and is set to 10 hours, for example. The ID tag issuing unit 13 receives the time-limited password corresponding to the read identification information from the account information storage unit 41, which will be described later, and writes the received time-limited password to the tag storage unit 61.

[0062] Furthermore, the ID tag issuing unit 13 issues an ID tag 60 on which a time-limited password has been written (stored). The issuance of the ID tag 60 may be performed by ejecting the ID tag 60 on which the time-limited password has been written from a predetermined outlet, or by contactlessly writing the time-limited password to an initialized ID tag 60 placed in a predetermined location.

[0063] The ID tag issuance control unit 14 controls the operation of the identification information reading unit 12 and the ID tag issuance unit 13, thereby performing various controls related to the issuance of the ID tag 60.

[0064] The ID tag retrieval device 20 is installed in the changing area A2 and has functions such as retrieving ID tags 60 and sending information (unique information in this embodiment) to the server 40 to identify the retrieved ID tags 60. The ID tag retrieval device 20 includes a tag retrieval box 21, a retrieval antenna 22, and a tag retrieval control unit 23 (see Figure 8). In this embodiment, the tag retrieval box 21 constitutes the "tag retrieval means".

[0065] The tag collection box 21 is for collecting the ID tags 60 and contains the ID tags 60 that have been inserted.

[0066] The retrieval antenna 22 is used to read information (unique information) for identifying the retrieved ID tag 60 by communicating wirelessly with the ID tag 60 housed in the tag retrieval box 21. In this embodiment, the retrieval antenna 22 reads the unique information relating to the ID tag 60 from the tag storage unit 61 of the ID tag 60 housed in the tag retrieval box 21. The read unique information is sent to the tag retrieval control unit 23. In addition, to prevent communication between the retrieval antenna 22 and the ID tag 60 located outside the tag retrieval box 21, a shield for blocking radio waves may be provided on the tag retrieval box 21.

[0067] The tag retrieval control unit 23 performs various processes on the retrieved ID tag 60 and includes a password erasure / invalidation unit 23a. In this embodiment, the password erasure / invalidation unit 23a constitutes the "password erasure / invalidation means".

[0068] The password erasure / invalidation unit 23a erases or invalidates the time-limited password stored in the tag storage unit 61 when predetermined conditions are met. In this embodiment, when the predetermined condition "the ID tag 60 has been inserted (stored) in the tag collection box 21" is met, the password erasure / invalidation unit 23a erases the time-limited password stored in the tag storage unit 61 via the collection antenna 22. The fact that "the ID tag 60 has been inserted (stored) in the tag collection box 21" can be detected by the collection antenna 22.

[0069] Furthermore, the password erasure / invalidation unit 23a may also invalidate time-limited passwords stored in the tag storage unit 61. For example, the tag storage unit 61 may be provided with flag information indicating whether a time-limited password is valid or invalid, and the password erasure / invalidation unit 23a may be configured to change the flag information to indicate invalidity when certain conditions are met.

[0070] Furthermore, the tag retrieval control unit 23 has the function of sending the unique information of the ID tag 60 read by the retrieval antenna 22 to the server 40.

[0071] The removal warning device 30 is a device for preventing the removal of ID tags 60 to the outside (i.e., outside the production area A1 and changing area A2). The removal warning device 30 includes an ID tag detection unit 31 and a notification unit 32 (see Figure 5). In this embodiment, the ID tag detection unit 31 constitutes the "ID tag detection means," and the notification unit 32 constitutes the "notification means."

[0072] The ID tag detection unit 31 has the function of detecting the ID tag 60 using a predetermined antenna (not shown), and is installed corresponding to the exit (in this embodiment, the entrance and exit to the changing area A2) that the user passes through when leaving the production area A1. Therefore, when a user attempts to leave the changing area A2 while holding the ID tag 60, the ID tag detection unit 31 detects the ID tag 60. When the ID tag 60 is detected, the ID tag detection unit 31 sends information to the notification unit 32 indicating that it has been detected.

[0073] When the ID tag detection unit 31 detects the ID tag 60, the notification unit 32 notifies the outside that the ID tag 60 has been detected by emitting a warning sound, illuminating a warning lamp, or displaying warning information on a predetermined display means (e.g., a display). The type of information notified by the notification unit 32 may be different from the type of biometric information read by the identification information reading unit 12, so as not to interfere with the reading of biometric information by the identification information reading unit 12 due to the information notified by the notification unit 32. For example, when the identification information reading unit 12 reads visual information such as the iris or veins, the information notified to the outside by the notification unit 32 may be auditory information such as a warning sound. On the other hand, when the identification information reading unit 12 reads auditory information such as voiceprints, the information notified to the outside by the notification unit 32 may be visual information such as light.

[0074] Server 40 is connected to the password storage ID tag issuing station 10, the ID tag retrieval device 20, PCs 51-54, and various other devices (such as the PTP machine 101), and performs tasks such as sending and receiving various types of information between it and these devices, and managing the stored information. Server 40 is composed of a computer that includes a CPU (Central Processing Unit) for executing predetermined calculations, ROM (Read Only Memory) for storing various programs and fixed value data, and storage media for storing various types of information (for example, an HDD (Hard Disk Drive) or SSD (Solid State Drive)).

[0075] The server 40 is equipped with a storage area composed of the aforementioned storage medium, and this storage area includes an account information storage unit 41, a line configuration information storage unit 42, a driver / assistant driver information storage unit 43, an assignment information storage unit 44, an audit trail storage unit 45, and an ID tag information storage unit 46. In this embodiment, the account information storage unit 41 constitutes the "user information storage means," and the ID tag information storage unit 46 constitutes the "owner information storage means."

[0076] The account information storage unit 41 stores, for each user, a user ID for identifying the user, a permission category indicating the user's authority, previously acquired user identification information (e.g., biometric information such as right eye iris, left eye iris, etc.), and a time-limited password generated by the password generation unit 47a described later, as an associated user account (see Figure 10). The account information storage unit 41 also stores permission categories and permissions in association (see Figure 11). This manages the permissions for each user. Note that the permissions in Figure 11 are just an example, and the types of permissions may be changed as appropriate.

[0077] In this embodiment, there are a total of seven authority categories: "0: Manufacturer / Distributor", "1: System Administrator", "2: Maintenance Person", "3: Quality Manager", "4: Production Manager", "5: Driver", and "6: Driver Assistant". Within each authority category, permissions are further subdivided and set. For example, the authority category "3: Quality Manager" has permissions to view audit trails and settings. Also, for example, the authority category "5: Driver" has permissions to change and view user assignments to each production line L and equipment (PTP machine 101, etc.), change and view various information related to drivers and driver assistants (hereinafter sometimes referred to as "drivers, etc."), change settings of equipment (PTP machine 101, etc.), and operate the equipment.

[0078] Furthermore, the time-limited password stored in the account information storage unit 41 is automatically deleted or invalidated after a "predetermined period" has elapsed since the ID tag 60 was issued by the password storage ID tag issuing station 10. For example, after a "predetermined period" (e.g., 10 hours) has elapsed since the ID tag 60 containing the time-limited password was issued, the time-limited password stored in the account information storage unit 41 is deleted or invalidated. Therefore, the validity period of the time-limited password is the same as the "predetermined period".

[0079] The line configuration information storage unit 42 stores information about the components of each production line L, as well as the attributes of each production line L. The attributes of a production line L refer to matters that differ from a typical production line in terms of the contents 305 (tablets, capsules, etc.) handled. Examples of attributes include "hazardous chemicals" and "all-tablet management." "Hazardous chemicals" means that the production line manufactures PTP sheets using tablets that require careful handling. "All-tablet management" means that the production line requires appropriate management regarding the location of all tablets, etc.

[0080] The driver / assistant driver information storage unit 43 stores information about the driver and assistant driver who are primarily responsible for operating the equipment (such as the PTP machine 101). Unlike the assistant driver, the driver has authority over changes to user assignments to the production line L and equipment, as well as changes to equipment settings.

[0081] The assignment information storage unit 44 stores information regarding the assignment of users (especially drivers and assistant drivers) to each production line L and piece of equipment.

[0082] The audit trail storage unit 45 stores information such as the operation details on PCs 51-54 and the device touch panel 203, setting changes on the control device 201, and the issuance of ID tags 60, along with information to identify the user who performed the operation, setting change, or issuance (user ID in this embodiment), as an audit trail. In this embodiment, when an operation is performed on PCs 51-54 or the device touch panel 203, information such as the operation details and user ID is automatically sent from PCs 51-54 or the device (PTP machine 101, etc.) to the server 40, and this information is automatically stored in the audit trail storage unit 45. Also, when an ID tag 60 is issued, information related to the issuance (identification information, user ID, etc.) is automatically sent from the password storage ID tag issuance station 10 to the server 40, and this information is automatically stored in the audit trail storage unit 45. Note that the audit trail storage unit 45 may also store the information stored in the ID tag information storage unit 46, described below, as an audit trail.

[0083] The ID tag information storage unit 46 stores information relating to the ID tag 60 issued by the password storage ID tag issuance station 10. In this embodiment, the information relating to the ID tag 60 includes the ID tag number set for each ID tag 60, unique information for identifying the ID tag 60, the date and time of issuance of the ID tag 60, information for identifying the user who issued the ID tag 60 (user ID), and "information relating to whether the ID tag 60 is usable" (see Figure 12). Therefore, the ID tag information storage unit 46 stores the ID tag 60 (for example, the unique information of the ID tag 60) in association with the user who read the identification information when the password storage ID tag issuance station 10 issued the ID tag 60. "Information relating to whether the ID tag 60 is usable" refers to information indicating whether the ID tag 60 can be used to log in to a device (PTP machine 101, etc.). The ID tag information storage unit 46 may also store the elapsed time since the ID tag 60 was issued and the usage history of the ID tag 60.

[0084] Furthermore, when an ID tag 60 is issued by the password storage ID tag issuance station 10, additional information relating to the issued ID tag 60 is stored in the ID tag information storage unit 46.

[0085] Furthermore, the server 40 includes a server control unit 47 that performs various controls related to the generation of time-limited passwords and the retrieval of ID tags 60. The server control unit 47 includes a password generation unit 47a, an unrecovered status determination unit 47b, a usage restriction unit 47c, and a user identification unit 47d (see Figure 9). In this embodiment, the password generation unit 47a constitutes the "password generation means," the unrecovered status determination unit 47b constitutes the "unrecovered status determination means," the usage restriction unit 47c constitutes the "usage restriction means," and the user identification unit 47d constitutes the "user identification means."

[0086] The password generation unit 47a generates a time-limited password for each user. In this embodiment, the password generation unit 47a generates a new time-limited password each time a certain period of time (e.g., 24 hours) has elapsed. The timing of time-limited password generation may differ for each user, depending on the user's working hours, etc. The generated time-limited password is unique to each user and consists of a relatively large number (e.g., 16 or more) of letters, numbers, and symbols. The generated time-limited password is stored in the account information storage unit 41.

[0087] The uncollected ID tag determination unit 47b determines whether or not there are any ID tags 60 that have not been collected by the tag collection box 21. For example, when a predetermined time (e.g., 12 hours) has elapsed since the ID tag 60 was issued by the password storage ID tag issuance station 10, the uncollected ID tag determination unit 47b compares the unique information of the ID tag 60 stored in the ID tag information storage unit 46 with the unique information of the collected ID tag 60 sent from the ID tag collection device 20. The uncollected ID tag determination unit 47b then determines that there are no uncollected ID tags 60 if the unique information of the ID tag 60 stored in the ID tag information storage unit 46 matches the unique information of the collected ID tag 60. On the other hand, the uncollected ID tag determination unit 47b determines that there are ID tags 60 that have not been collected if the unique information of the ID tag 60 stored in the ID tag information storage unit 46 does not match the unique information of the collected ID tag 60.

[0088] Furthermore, the uncollected ID tag detection unit 47b may determine whether or not there are any uncollected ID tags 60 based on whether or not the ID tag detection unit 31 described above has detected an ID tag 60. Also, the timing of the determination by the uncollected ID tag detection unit 47b may be changed as appropriate. For example, the uncollected ID tag detection unit 47b may make a determination at a predetermined time, or it may make a determination when a user (for example, a system administrator) performs a predetermined operation on the server 40.

[0089] If the usage restriction unit 47c determines that there is an ID tag 60 that has not been recovered by the unrecovered ID tag determination unit 47b, it restricts the use of the ID tag 60 in question. More specifically, if the usage restriction unit 47c determines that there is an ID tag 60 that has not been recovered, it changes the "information regarding availability" in the information of the ID tag 60 in question, stored in the ID tag information storage unit 46, from "available" to "unavailable". As a result, logging into a device (such as the PTP machine 101) using an unrecovered ID tag 60 will not be possible, even if the time-limited password stored in the ID tag 60 is correct.

[0090] If the user identification unit 47d determines that there is an ID tag 60 that has not been recovered by the unrecovered ID tag determination unit 47b, it identifies the user associated with that ID tag 60 based on the information stored in the ID tag information storage unit 46. In other words, the user identification unit 47d identifies the user who issued the unrecovered ID tag 60. The information regarding the identified user is stored in the storage medium of the server 40, and the stored information can be viewed, for example, by a PC 51.

[0091] PCs 51-54 are used for modifying and viewing information stored on server 40. PCs 51-54 are composed of computers with a CPU, ROM, RAM, and storage media. PCs 51-54 are also equipped with input means for inputting various types of information (e.g., keyboards) and display means for displaying various types of information (e.g., liquid crystal displays).

[0092] PC51 is a terminal that can be used by multiple users, specifically the system administrator. By logging into PC51, the system administrator can view audit trails, view information about users identified by the user identification unit 47d, and modify information stored in the account information storage unit 41 and the ID tag information storage unit 46. Therefore, if the use of the ID tag 60 is restricted by the usage restriction unit 47c, the system administrator who logs into PC51 can change the "information regarding availability" in the ID tag information storage unit 46 to make the ID tag 60 usable again.

[0093] PC52 is a terminal that can be used exclusively by the production manager among multiple users. By logging into PC52, the production manager can view audit trails, information on drivers and driver assistants stored on server 40, and information on user assignments.

[0094] PC53 is a terminal that can only be used by maintenance personnel among multiple users. By logging into PC53, maintenance personnel can make changes to the equipment configuration of production line L.

[0095] PC54 is a terminal that can only be used by quality managers among multiple users. By logging into PC54, quality managers can view audit trails and information regarding the settings of equipment (such as the PTP machine 101).

[0096] Next, we will describe the control device 201, tag reader 202, and touch panel 203 for each device (such as the PTP machine 101).

[0097] The control device 201 stores various setting information (such as production speed for each product type and the temperature of the heating roll 101f1 (heater)) and operating programs, and controls the operation of the device (such as the PTP machine 101) based on this setting information and operating programs. When changing the settings of the device, the setting information stored in the control device 201 is changed.

[0098] The tag reader 202 is a device that can read information stored in the tag storage unit 61 without contact, for example, an RFID reader. The tag reader 202 reads from the ID tag 60 the time-limited password and other information stored in the tag storage unit 61 of the ID tag 60.

[0099] The device touch panel 203 is equipped with various processing functions and functions for displaying and inputting information, and is used for operating and changing settings of the corresponding device (such as the PTP machine 101), and for checking various information. The device touch panel 203 comprises a control unit having a CPU, ROM, RAM, storage medium, etc., and a panel unit for inputting information to the control unit and displaying information stored in the control unit, etc. The control unit may be integrated with the control device 201.

[0100] The device touch panel 203 is a terminal that can only be used by those who are authorized to operate the device (such as the PTP machine 101) among multiple users (manufacturers / distributors, maintenance personnel, production managers, drivers, and driver assistants). As shown in Figure 13, the device touch panel 203 includes an audit trail registration unit 203a, an assignment viewing unit 203b, a setting viewing unit 203c, a driver information viewing unit 203d, a line configuration information viewing unit 203e, an operation unit 203f, a setting change unit 203g, an assignment change unit 203h, a driver information change unit 203j, and a login eligibility determination unit 203k. In this embodiment, the login eligibility determination unit 203k corresponds to the "login eligibility determination means".

[0101] The audit trail registration unit 203a sends information regarding logins and logouts to the device touch panel 203 and, consequently, to the device (PTP machine 101, etc.), as well as information regarding operations performed using the device touch panel 203, to the server 40 as an audit trail. In this embodiment, PCs 51 to 54 are also provided with functions similar to those of the audit trail registration unit 203a.

[0102] The assignment viewing unit 203b displays information regarding the assignment of users (especially drivers and assistant drivers) to each production line L and piece of equipment (such as the PTP machine 101), which is stored in the assignment information storage unit 44 of the server 40, on the equipment touch panel 203. However, each function of the equipment touch panel 203, such as viewing and changing information, is only available when login to the equipment touch panel 203 is permitted. In particular, changing the settings of the equipment by the setting change unit 203g is only possible when login to the equipment touch panel 203 is permitted, and furthermore, when the user who has been granted permission to log in has a predetermined permission category (permission information) (in this embodiment, when the user is "5: Driver" or "4: Production Manager").

[0103] The setting viewing unit 203c displays setting information stored in the control unit 201 of the device (such as the PTP machine 101) on the device's touch panel 203. This information includes production speed for each product type, temperature of the heating roll 101f1 (heater), pressure for forming the pocket section 302 and attaching the two films 303 and 304, and inspection conditions.

[0104] The driver information viewing unit 203d displays information about the driver and driver assistant stored in the driver / driver assistant information storage unit 43 of the server 40 on the device's touch panel 203.

[0105] The line configuration information viewing unit 203e displays information about the components of production line L and the attributes of production line L, which are stored in the line configuration information storage unit 42 of server 40, on the device touch panel 203.

[0106] The operation unit 203f is a functional unit for operating devices (such as the PTP machine 101) that correspond to the device touch panel 203. However, the devices can only be operated using the device touch panel 203 corresponding to the device.

[0107] The setting change unit 203g is a functional unit for changing the settings of the device (setting information stored in the control device 201). However, setting changes in the device can only be performed using the device touch panel 203 corresponding to that device. For example, setting changes in PTP machine 101 can only be performed using the device touch panel 203 corresponding to that PTP machine 101, and cannot be performed using the device touch panel 203 corresponding to other PTP machines 101 or the integrator 102. Furthermore, setting changes in the device are only possible if the user authorized to log in to the device touch panel 203 has a predetermined permission category (permission information) (in this embodiment, if the user is "5: Driver" or "4: Production Manager").

[0108] The assignment change unit 203h is a functional unit for changing the user's assignment information for each production line L and piece of equipment, which is stored in the assignment information storage unit 44 of the server 40.

[0109] The driver information modification unit 203j is a functional unit for modifying information about drivers and driver assistants stored in the driver / driver assistant information storage unit 43 of the server 40.

[0110] The login eligibility determination unit 203k is responsible for the login process for the device touch panel 203 and, by extension, the device (PTP machine 101, etc.). More specifically, as shown in Figure 14, the login eligibility determination unit 203k first reads the unique information and time-limited password of the ID tag 60 held by the user using the tag reader 202 (step S21). Then, the login eligibility determination unit 203k sends the read unique information to the server 40 and requests the server 40 to perform a determination process to determine whether the ID tag 60 related to the input unique information is usable and to return the determination result. The determination of whether the ID tag 60 is usable is made based on the "information related to usability" stored in the ID tag information storage unit 46. If the login eligibility determination unit 203k receives a reply indicating that it is usable, it determines that the ID tag 60 is valid (step S22; Yes). On the other hand, if the login eligibility determination unit 203k receives a reply indicating that it is unusable, it determines that the ID tag 60 is unsuitable and cannot be used to log in to the device (Step S22; No).

[0111] If the ID tag 60 is valid, the login eligibility determination unit 203k sends the time-limited password read by the tag reader 202 to the server 40 and requests the server 40 to perform a determination process to determine whether the read time-limited password matches the time-limited password stored in the account information storage unit 41, and to return the determination result. If the login eligibility determination unit 203k receives a reply indicating that the time-limited passwords match, it determines that the user is legitimate (Step S23; Yes). On the other hand, if the login eligibility determination unit 203k receives a reply indicating that the time-limited passwords do not match, it determines that the user is not legitimate (Step S23; No).

[0112] Furthermore, if the time-limited password has expired, the account information storage unit 41 will delete or invalidate the time-limited password, and the server 40 will send a reply indicating that the time-limited password does not match. Therefore, the login eligibility determination unit 203k will determine that the user is not legitimate if the time-limited password has expired.

[0113] Furthermore, if the login eligibility determination unit 203k determines that the user is legitimate, it determines whether or not to allow login to the device touch panel 203 and, consequently, to the device (PTP machine 101, etc.) based on the user's authority category stored in the account information storage unit 41.

[0114] More specifically, the login permission determination unit 203k checks the user's permission category stored in the account information storage unit 41 (step S24). If the permission category returned from the server 40 is "0: Manufacturer / Distributor", "2: Maintenance Person", or "6: Operator Assistant", it grants permission to log in to the device touch panel 203 and, consequently, to the device (PTP machine 101, etc.) as a manufacturer / distributor, maintenance person, or operator assistant (step S25). Once login is permitted, various operations can be performed using the device touch panel 203 within the scope of the manufacturer / distributor, maintenance person, or operator assistant's permission.

[0115] Furthermore, if the login permission determination unit 203k receives a permission category from the server 40 that is "5: Driver" or "4: Production Manager", it grants permission to log in to the device touch panel 203 and, consequently, to the device (PTP machine 101, etc.) as a driver or production manager (step S26). Once login is permitted, various operations can be performed using the device touch panel 203 within the scope of the driver or production manager's authority.

[0116] On the other hand, if the login permission determination unit 203k finds that the returned permission category is not one of "0: Manufacturer / Seller", "2: Maintenance Person", "4: Production Manager", "5: Driver", or "6: Driver Assistant" (step S24; No), it denies login to the device touch panel 203 and, consequently, to the device (PTP machine 101, etc.). Then, the login permission determination unit 203k displays on the device touch panel 203 that the permission category associated with the user possessing the ID tag 60 does not match the permission category required to log in to the device (PTP machine 101, etc.) (step S27).

[0117] Furthermore, the login eligibility determination unit 203k may also have a function to inform the user of the remaining validity period of the time-limited password when logging into the device.

[0118] The login system 1 described above is used by the user in the following way. First, in the changing area A2, the user has their biometric information read by the identification information reading unit 12 before putting on gloves, a mask, etc. This allows the biometric information to be read easily and accurately. Then, upon reading the biometric information, an ID tag 60 with a time-limited password stored in it is issued.

[0119] Next, the user puts on work clothes and other attire and carries the ID tag 60 before entering production area A1. The ID tag 60 can be placed in a pocket of the work clothes. The user then performs various tasks related to the manufacturing of PTP sheets 301 in production area A1. If logging into the device (PTP machine 101) is required to perform the tasks, the user can log in by having the tag reader 202 read the time-limited password on the ID tag 60 that the user is carrying. However, if the time-limited password on the ID tag 60 has expired, it is not possible to log in to the device using that ID tag 60.

[0120] After completing their work, the user moves to changing area A2 and places the ID tag 60 into the tag collection box 21. This ensures that the ID tag 60 is properly collected. The user then changes clothes and leaves changing area A2. If the user is still carrying the ID tag 60 upon leaving, the ID tag detection unit 31 will detect the ID tag 60, and the notification unit 32 will notify the user that the ID tag 60 has been detected. This allows the user to realize if they have forgotten to return the ID tag 60.

[0121] As detailed above, according to this embodiment, users can log in to a device (such as a PTP machine 101) by having a tag reader 202 installed on the device read the time-limited password stored in the ID tag 60. Therefore, compared to methods that require users to enter a user ID and password, the ease of login operations can be improved. Furthermore, because a time-limited password valid only for a predetermined period is used, unauthorized use of the ID tag 60 due to theft or loss can be made less likely. This improves security.

[0122] Furthermore, in this embodiment, the user's biometric information is required to issue the ID tag 60. Therefore, it is possible to more reliably prevent the information necessary for issuing the ID tag 60 from being leaked to the outside, thereby further improving security.

[0123] Furthermore, the identification information reading unit 12 for reading the user's biometric information only needs to be provided in the password storage ID tag issuing station 10, and each device only needs to be equipped with a tag reader 202 for reading the information stored in the ID tag 60. Therefore, the login system 1 can be realized at a relatively low cost.

[0124] Furthermore, the password storage ID tag issuance station 10 is located in the changing area A2, which is outside the production area A1. Therefore, the user's biometric information can be read by the identification information reading unit 12 in a relatively quiet environment before the user puts on gloves, a mask, etc. This allows the identification information reading unit 12 to read the biometric information more accurately, making it less likely for problems such as failure to issue the ID tag 60 due to reading errors to occur. In addition, since the biometric information can be read more easily, the convenience for the user in reading biometric information can be improved.

[0125] In addition, if a predetermined condition is met (in this embodiment, "the ID tag 60 has been placed in the tag collection box 21"), the time-limited password stored in the ID tag 60 is erased or invalidated. In other words, if the predetermined condition is met, the ID tag 60 becomes unusable for logging into the device. Therefore, even if the ID tag 60 is lost or stolen, it can be made even more reliable in preventing its unauthorized use. This further enhances security.

[0126] Furthermore, because an ID tag detection unit 31 and a notification unit 32 are provided, it is possible to more reliably prevent the ID tag 60 from being taken outside (outside the production area A1 and changing area A2). This further enhances security.

[0127] In addition, the usage restriction unit 47c can restrict the use of ID tags 60 that have not been recovered, that is, ID tags 60 that may have been taken outside (for example, by making them unusable). This further enhances security.

[0128] Furthermore, if the ID tag 60 has not been recovered, the user identification unit 47d can identify the user who owns that ID tag 60. Therefore, it becomes easy to recover any unrecovered ID tags 60 from the user.

[0129] Furthermore, the embodiment is not limited to the description above, and may be implemented as follows, for example. Of course, other applications and modifications not exemplified below are also possible.

[0130] (a) In the above embodiment, the identification information reading unit 12 is configured to read the user's biometric information as "identification information," but the "identification information" only needs to be something that can identify the user. Therefore, the identification information reading unit 12 may, for example, read a user ID or password (for example, an ID tag issuance password) set for each user as "identification information." In this case, the ID tag issuance unit 13 receives a time-limited password corresponding to the read identification information (user ID or ID tag issuance password) from the account information storage unit 41 (see Figure 15), and writes the received time-limited password to the tag storage unit 61.

[0131] (b) In the above embodiment, the time-limited password is pre-generated by the password generation unit 47a and stored in the account information storage unit 41. Alternatively, the time-limited password may be generated by the password generation unit 47a in response to the reading of identification information by the identification information reading unit 12. The ID tag issuing unit 13 may then write the time-limited password generated in response to the reading of identification information to the tag storage unit 61. The generated time-limited password is stored in the account information storage unit 41, but the timing of its storage may be before or after the timing of writing the time-limited password to the tag storage unit 61, or it may be at the same time.

[0132] (c) In the above embodiment, the password erasure / deactivation unit 23a is provided in the ID tag retrieval device 20, but the password erasure / deactivation unit may be provided in a place other than the ID tag retrieval device 20.

[0133] Therefore, for example, as shown in Figure 16, a password erasure / invalidation unit 63 may be provided on the ID tag 60. In other words, the ID tag 60 may have a function to erase or invalidate the time-limited password stored on it. Alternatively, the ID tag 60 may be provided with a determination unit 64 for determining whether predetermined conditions (i.e., execution conditions for erasing time-limited passwords, etc.) are met, and if the determination unit 64 determines that the predetermined conditions are met, the password erasure / invalidation unit 63 may erase or invalidate the time-limited password stored in the tag storage unit 61. In this case, the ID tag 60 is provided with a control unit capable of performing various calculations necessary for the determination process by the determination unit 64.

[0134] With the configuration described above, the ID tag 60 alone can delete or invalidate time-limited passwords. Therefore, security can be further enhanced.

[0135] Furthermore, as a predetermined condition, for example, "the time indicated by the timer unit 65 provided on the ID tag 60 has reached a predetermined time set in advance" can be adopted.

[0136] (d) In the above embodiment, the validity period of the time-limited password is fixed, but the validity period may be different for each user. For example, as shown in Figure 17, the server 40 may be equipped with an authority-based expiration date setting unit 48 that can set the expiration date of the time-limited password according to the user's authority stored in the account information storage unit 41. In this case, the expiration date of the time-limited password can be changed according to the user's authority. For example, if the user's authority category is "5: Driver" and the user's authority is relatively high, the expiration date of the time-limited password in the ID tag 60 issued to the user can be set to a relatively short period. This allows for more appropriate management of the ID tag 60 according to the user's authority.

[0137] In this example, the account information storage unit 41 constitutes the "authority storage means," and the authority response deadline setting unit 48 constitutes the "authority response deadline setting means." Note that the authority response deadline setting unit 48 may be provided in a location other than the server 40.

[0138] (e) The system may also include an attribute storage unit that stores the attributes of the production line L to which the user is assigned, and an attribute-corresponding expiration date setting unit that can set the expiration date of the time-limited password according to the attributes stored in the attribute storage unit. In this case, the expiration date of the time-limited password related to the ID tag 60 issued to the user can be changed according to the attributes of the production line L to which the user is assigned. For example, if the attribute of the production line L to which the user is assigned is "hazardous chemicals", the expiration date of the time-limited password on the ID tag 60 issued to the user can be set to a relatively short period. This allows for more appropriate management of the ID tag 60 according to the production line L in charge of the user.

[0139] (f) The prescribed conditions (conditions relating to the deletion or invalidation of the time-limited password stored in the ID tag 60) are not limited to the examples given above, and the prescribed conditions may be changed as appropriate. Accordingly, the prescribed conditions may include the following: the elapsed time since the time-limited password was stored in the ID tag 60 has exceeded a predetermined time; the time has reached the scheduled deletion / invalidation time stored in the server 40, etc. (for example, the end of work time); the ID tag 60 has left the user's body; if the ID tag 60 has a band that is worn on the user's arm, the band has been detected to have spread; the ID tag 60 has left the production area A1 or the changing area A2 (for example, the ID tag 60 has been detected by the ID tag detection unit 31).

[0140] (g) As shown in Figure 18, the server 40 may be equipped with an authorization-based condition setting unit 49 that can set conditions according to the user's authorization stored in the account information storage unit 41 as predetermined conditions. When the set conditions are met, the time-limited password stored in the ID tag 60 may be erased or invalidated by the password erasure / invalidation units 23a, 63. For example, if the user's authorization category is "5: Driver" and the user's authorization is relatively high, the authorization-based condition setting unit 49 may set several conditions as predetermined conditions, such as "the ID tag 60 has been inserted (stored) in the tag collection box 21" and "the time indicated by the timer unit 65 provided on the ID tag 60 has reached a predetermined time that has been set in advance," and when at least one of these conditions is met, the time-limited password may be erased or invalidated.

[0141] By providing the permission-based condition setting unit 49, the conditions for deleting or disabling time-limited passwords can be changed according to the user's permissions. This allows for more appropriate management of ID tags 60 according to the user's permissions.

[0142] In this example, the account information storage unit 41 constitutes the "authority storage means," and the authority correspondence condition setting unit 49 constitutes the "authority correspondence condition setting means." Note that the authority correspondence condition setting unit 49 may be provided on a device other than the server 40.

[0143] (h) The system may also include an attribute storage unit that stores the attributes of the production line L to which the user is assigned, and an attribute-corresponding condition setting unit that can set conditions according to the attributes stored in the attribute storage unit as predetermined conditions. In this case, the conditions for erasing or invalidating the time-limited password of the ID tag 60 issued to the user can be changed according to the attributes of the production line L to which the user is assigned. For example, if the attribute of the production line L to which the user is assigned is "hazardous chemicals", multiple conditions can be set as predetermined conditions, and the time-limited password can be erased or invalidated if at least one of these multiple conditions is met. This allows for more appropriate management of the ID tag 60 according to the production line L in charge of the user.

[0144] (i) As shown in Figures 19 and 20, a work clothes collection device 70 may be provided in the changing area A2, comprising a work clothes collection box 71, a contamination detection unit 72, and a contamination notification unit 73. The work clothes collection box 71 is for storing and collecting used work clothes. The contamination detection unit 72 has an antenna that can wirelessly communicate with the ID tags 60 present in the work clothes collection box 71, and determines whether or not the ID tags 60 are mixed in with the work clothes in the work clothes collection box 71 according to the communication status of the antenna. The contamination notification unit 73 notifies the user if the contamination detection unit 72 determines that the ID tags 60 are mixed in. By providing the work clothes collection device 70, when work clothes with ID tags 60 still inside the pockets are collected by the work clothes collection box 71, the user can be notified that the ID tags 60 are mixed in. This makes the collection of ID tags 60 by the tag collection box 21 more reliable.

[0145] In this example, the work clothes collection box 71 constitutes the "work clothes collection means," the contamination detection unit 72 constitutes the "contamination detection means," and the contamination notification unit 73 constitutes the "contamination notification means."

[0146] (j) When issuing an ID tag 60, a pre-determination unit may be provided to determine in advance whether the time-limited password stored in the tag storage unit 61 is valid for logging into the device (PTP machine 101, etc.) based on the time-limited password stored in the account information storage unit 41. The pre-determination unit determines that if the time-limited password stored in the tag storage unit 61 of the ID tag 60 matches the time-limited password in the account information storage unit 41, the ID tag 60 is valid for logging into the device (PTP machine 101, etc.). On the other hand, if the two time-limited passwords do not match, the pre-determination unit determines that the ID tag 60 is not valid for logging into the device. By providing a pre-determination unit, the issuance of inappropriate ID tags 60 that cannot log into the device can be prevented more reliably. This can further enhance user convenience.

[0147] (k) In the above embodiment, the restriction on the use of ID tags 60 by the usage restriction unit 47c is achieved by preventing login to a device (PTP machine 101, etc.) that uses an uncollected ID tag 60. Alternatively, the restriction on the use of ID tags 60 by the usage restriction unit 47c may be achieved by configuring the ID tag issuing unit 13 so that ID tags 60 that were eventually collected but not collected at the appropriate time are not issued.

[0148] (l) After the ID tag 60 is issued by the password storage ID tag issuance station 10, the ID tag 60 may be provided with an expiration date change unit that can change the expiration date of the time-limited password stored in the tag storage unit 61 within a period of 24 hours. For example, the ID tag information storage unit 46 may be configured to store the expiration date of the time-limited password, and to erase or invalidate the time-limited password stored in the account information storage unit 41 according to that expiration date, and the expiration date of the time-limited password stored in the ID tag information storage unit 46 may be made changeable by a device touch panel 203 or PC 51 as an "expiration date change unit". If an expiration date change unit is provided, the expiration date of the time-limited password can be flexibly changed even after the ID tag 60 has been issued. Therefore, user convenience can be further enhanced.

[0149] (m) In the above embodiment, the removal warning device 30 is provided in the changing area A2, but the removal warning device 30 may also be provided in the production area A1. Accordingly, for example, the ID tag detection unit 31 may be provided corresponding to the exit of the production area A1.

[0150] (n) In the above embodiment, the login process for the device is performed on the device's touch panel 203, but the login process may be performed on the server 40.

[0151] (o) In the above embodiment, login to the device is ultimately permitted or denied depending on the user's authority, but the configuration may be one in which the user's authority is not taken into consideration when permitting or denying login. Therefore, the configuration may be such that login to the device is permitted if the time-limited password of the ID tag 60 is correct.

[0152] (p) In the above embodiment, a PTP sheet 301 is given as the pharmaceutical product, but the pharmaceutical product is not limited to a PTP sheet. Pharmaceutical products include, for example, tablets, capsules, powders, granules, oral solutions, topical medications, and containers containing these. Furthermore, the present technical concept may also be applied to equipment used for manufacturing and packaging food products.

[0153] (q) In the above embodiment, the PTP machine 101 corresponds to the "device," but the components of the PTP machine 101 (for example, the preheating device 101a and the sealing device 101f) may each correspond to the "device." In this case, a tag reader 202 and a device touch panel 203 may be provided for each component. [Explanation of symbols]

[0154] 1…Login system, 10…Password storage ID tag issuing station (password storage ID tag issuing means), 12…Identification information reading unit (identification information reading means), 13…ID tag issuing unit (password writing means), 21…Tag collection box (tag collection means), 23a, 63…Password erasure / invalidation unit (password erasure / invalidation means), 31…ID tag detection unit (ID tag detection means), 32…Notification unit (notification means), 41…Account information storage unit (user information storage means), 46…ID tag information storage unit (owner information storage means), 47a…Password generation unit (password generation means) ,47b...Uncollected item determination unit (uncollected item determination means),47c...Usage restriction unit (usage restriction means),47d...User identification unit (user identification means),60...ID tag,61...Tag storage unit (password storage means),64...Determination unit (determination means),100...Manufacturing equipment,101...PTP machine (device),102...Stacking machine (device),103...Banding machine (device),104...Pillow machine (device),105...Boxing machine (device),202...Tag reader (device-side reading means),203k...Login eligibility determination unit (login eligibility determination means),A1...Production area,A2...Changing area (external area),L...Production line.

Claims

1. A login system applicable to a manufacturing facility that produces pharmaceuticals or food products using multiple production lines, each having one or more devices, and which performs processing related to logging into said devices, A password generation means that generates a time-limited password for each user that corresponds to that user and is valid only for a predetermined period, For each user, a user information storage means stores the user's time-limited password, which is generated by the password generation means. A portable ID tag having a password storage means on which the aforementioned time-limited password can be written, The ID tag comprises an identification information reading means capable of reading different identification information for each user, and a password writing means capable of writing the time-limited password stored in the user information storage means to the password storage means of the ID tag, relating to the user corresponding to the identification information read by the identification information reading means, and a password storage ID tag issuing means capable of issuing the ID tag in which the time-limited password is stored in the password storage means, Each of the aforementioned devices is provided with a device-side reading means capable of reading the time-limited password stored in the password storage means of the ID tag from the ID tag, The system includes a login permission determination means that determines whether or not login to the device is permitted based on the time-limited password stored in the user information storage means and the time-limited password read by the device-side reading means. The identification information reading means is configured to read the user's biometric information as the identification information, The user information storage means stores, for each user, the user's biometric information and the time-limited password in association with each user. The password writing means is configured to write the time-limited password of the user information storage means, which is associated with the user corresponding to the biometric information read by the identification information reading means, to the password storage means in the ID tag. The login system is characterized in that the password storage ID tag issuing means is installed in an external area located outside the production area where the production line is installed.

2. A login system applicable to a manufacturing facility that produces pharmaceuticals or food products using multiple production lines, each having one or more devices, and which performs processing related to logging into said devices, A password generation means that generates a time-limited password for each user that corresponds to that user and is valid only for a predetermined period, For each user, a user information storage means stores the user's time-limited password, which is generated by the password generation means. A portable ID tag having a password storage means on which the aforementioned time-limited password can be written, The ID tag comprises an identification information reading means capable of reading different identification information for each user, and a password writing means capable of writing the time-limited password stored in the user information storage means to the password storage means of the ID tag, relating to the user corresponding to the identification information read by the identification information reading means, and a password storage ID tag issuing means capable of issuing the ID tag in which the time-limited password is stored in the password storage means, Each of the aforementioned devices is provided with a device-side reading means capable of reading the time-limited password stored in the password storage means of the ID tag from the ID tag, The system includes a login permission determination means that determines whether or not login to the device is permitted based on the time-limited password stored in the user information storage means and the time-limited password read by the device-side reading means. The system includes a password erasure / invalidation means that erases or invalidates the time-limited password stored in the password storage means when certain conditions are met. The ID tag is equipped with a determination means for determining whether or not the predetermined conditions are met. The login system is characterized in that the password deletion / invalidation means is provided on the ID tag and is configured to delete or invalidate the time-limited password stored in the password storage means when the determination means determines that the predetermined conditions are met.

3. A login system applicable to a manufacturing facility that produces pharmaceuticals or food products using multiple production lines, each having one or more devices, and which performs processing related to logging into said devices, A password generation means that generates a time-limited password for each user that corresponds to that user and is valid only for a predetermined period, For each user, a user information storage means stores the user's time-limited password, which is generated by the password generation means. A portable ID tag having a password storage means on which the aforementioned time-limited password can be written, The ID tag comprises an identification information reading means capable of reading different identification information for each user, and a password writing means capable of writing the time-limited password stored in the user information storage means to the password storage means of the ID tag, relating to the user corresponding to the identification information read by the identification information reading means, and a password storage ID tag issuing means capable of issuing the ID tag in which the time-limited password is stored in the password storage means, Each of the aforementioned devices is provided with a device-side reading means capable of reading the time-limited password stored in the password storage means of the ID tag from the ID tag, The system includes a login permission determination means that determines whether or not login to the device is permitted based on the time-limited password stored in the user information storage means and the time-limited password read by the device-side reading means. An ID tag detection means is provided that corresponds to the exit through which a user passes when leaving the production area where the production line is installed, and is capable of detecting the ID tag. A login system characterized by comprising a notification means for notifying the user when the ID tag is detected by the ID tag detection means.

4. A login system applicable to a manufacturing facility that produces pharmaceuticals or food products using multiple production lines, each having one or more devices, and which performs processing related to logging into said devices, A password generation means that generates a time-limited password for each user that corresponds to that user and is valid only for a predetermined period, For each user, a user information storage means stores the user's time-limited password, which is generated by the password generation means. A portable ID tag having a password storage means on which the aforementioned time-limited password can be written, The ID tag comprises an identification information reading means capable of reading different identification information for each user, and a password writing means capable of writing the time-limited password stored in the user information storage means to the password storage means of the ID tag, relating to the user corresponding to the identification information read by the identification information reading means, and a password storage ID tag issuing means capable of issuing the ID tag in which the time-limited password is stored in the password storage means, Each of the aforementioned devices is provided with a device-side reading means capable of reading the time-limited password stored in the password storage means of the ID tag from the ID tag, The system includes a login permission determination means that determines whether or not login to the device is permitted based on the time-limited password stored in the user information storage means and the time-limited password read by the device-side reading means. A tag retrieval means for retrieving the aforementioned ID tag, A means for determining whether or not an ID tag has not been collected by the tag collection means, A login system characterized by comprising: a usage restriction means that restricts the use of an ID tag if the uncollected ID tag determination means determines that there is an ID tag that has not been collected.

5. Owner information storage means that stores the aforementioned ID tag in association with the user who read the identification information when issuing the ID tag using the password storage ID tag issuing means, The login system according to claim 4, further comprising: a user identification means capable of identifying the user associated with the ID tag in question, based on information stored in the owner information storage means, when the uncollected status determination means determines that there is an ID tag that has not been collected.

6. A login system applicable to a manufacturing facility that produces pharmaceuticals or food products using multiple production lines, each having one or more devices, and which performs processing related to logging into said devices, A password generation means that generates a time-limited password for each user that corresponds to that user and is valid only for a predetermined period of up to 24 hours, which corresponds to a predetermined working time, For each user, a user information storage means stores the user's time-limited password, which is generated by the password generation means. A portable ID tag having a password storage means on which the aforementioned time-limited password can be written, The ID tag comprises an identification information reading means capable of reading different identification information for each user, and a password writing means capable of writing the time-limited password stored in the user information storage means to the password storage means of the ID tag, relating to the user corresponding to the identification information read by the identification information reading means, and a password storage ID tag issuing means capable of issuing the ID tag in which the time-limited password is stored in the password storage means, Each of the aforementioned devices is provided with a device-side reading means capable of reading the time-limited password stored in the password storage means of the ID tag from the ID tag, A login system characterized by comprising a login permission determination means that determines whether or not login to the device is permitted based on the time-limited password stored in the user information storage means and the time-limited password read by the device-side reading means.

7. The identification information reading means is configured to read the user's biometric information as the identification information, The user information storage means stores, for each user, the user's biometric information and the time-limited password in association with each user. The login system according to any one of claims 2 to 6, characterized in that the password writing means is configured to write the time-limited password of the user information storage means, which is associated with the user corresponding to the biometric information read by the identification information reading means, to the password storage means in the ID tag.

8. The login system according to claim 7, characterized in that the password storage ID tag issuing means is installed in an external area located outside the production area where the production line is installed.

Citation Information

Patent Citations

  • RFID-use type authentication control system, authentication control method and authentication control program

    JP2006190175A

  • Admission restricting device and admission restriction system

    JP2009150192A

  • Authentication device, authentication method, and program

    JP2009294906A

  • Authentication device

    JP2010244268A

  • Portable terminal

    JP2019173306A