Authentication information generation system and person authentication method

The authentication information generation system addresses the security risk of easily guessable authentication by using a physical medium to generate and manage authentication information, ensuring secure and user-friendly access for diverse user groups.

JP7854231B1Active Publication Date: 2026-05-01D-ATTEND CO LTD
View PDF 7 Cites 0 Cited by

Patent Information

Authority / Receiving Office
JP · JP
Patent Type
Patents
Current Assignee / Owner
D-ATTEND CO LTD
Filing Date
2025-07-23
Publication Date
2026-05-01

AI Technical Summary

Technical Problem

Existing authentication systems pose a security risk due to the ease of guessing complex authentication information, particularly affecting individuals such as the elderly, disabled, and children, leading to a decrease in security levels and barriers to service use.

Method used

An authentication information generation system that uses a physical medium to generate and manage authentication information based on possession and personal information, employing a combination of secret and personal identification information, with varying levels of security based on the authentication process requirements.

Benefits of technology

Enhances security by generating robust authentication information that is easy to use, reducing the burden on users and ensuring secure access to services without the need for complex memorization.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure 0007854231000001_ABST
    Figure 0007854231000001_ABST
Patent Text Reader

Abstract

We provide a system for generating authentication information that enables a robust level of security. [Solution] The generation system 10 includes: a reception unit 11 that receives possession information stored in a physical medium 50 possessed by a person H who wishes to generate authentication information, and person information relating to person H; a first generation unit 12 that generates secret information for personal authentication in accordance with a predetermined first rule based on the possession information received by the reception unit 11; a second generation unit 13 that generates personal identification information in accordance with a predetermined second rule based on at least one of the received information, which is either the possession information received by the reception unit 11 or the unique information specific to each person H among the person information received by the reception unit 11; and an authentication information DB 16 that stores the secret information generated by the first generation unit 12 and the personal identification information generated by the second generation unit 13 in association with each other.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present disclosure relates to an authentication information generation system and a person authentication method.

Background Art

[0002] Patent Document 1 describes "providing a service use key issuance method, a service use key use method, a server, and a program that can provide a specific service to a user while preventing unauthorized use in addition to reducing the burden on a specific user such as a disabled person."

Prior Art Documents

Patent Documents

[0003]

Patent Document 1

Summary of the Invention

Problems to be Solved by the Invention

[0004] When managing personal information, confidential information, etc., it is important from a security perspective to set complex authentication information (such as passwords) that is difficult for others to guess. On the other hand, creating and memorizing complex authentication information and correctly entering it is not an easy task. As a result, leaving the setting of authentication information to the user may lead to a decrease in security level by using authentication information that can be easily guessed by others, or may become a barrier to service use. This problem is particularly prominent in the case of the elderly, disabled people, children, etc.

[0005] The invention described in Patent Document 1 is a service that provides service access keys for persons with disabilities, etc. In the invention described in Patent Document 1, the service access key used by the user and the user's telephone number are associated and stored (paragraph 0035). The service key referred to here is, for example, a key that grants the user the right to preferential treatment according to the user's attributes (paragraphs 0022, 0024). However, the process of providing this service key is premised on the user entering a pre-set PIN (authentication information) (paragraph 0023). Therefore, as described above, it is easy to use authentication information that can be easily guessed, and the security level is easily lowered.

[0006] The problem that this disclosure aims to solve is to provide a system for generating authentication information and a method for authenticating individuals that can achieve a robust level of security. [Means for solving the problem]

[0007] The authentication information generation system of this disclosure includes: a reception unit that receives possession information stored in a physical medium possessed by a person who wishes to generate authentication information, and person information relating to said person; a first generation unit that generates confidential information for personal authentication in accordance with a predetermined first rule based on the possession information received by the reception unit; a second generation unit that generates personal identification information in accordance with a predetermined second rule based on at least one of the received information, which is either the possession information received by the reception unit or the specific information unique to said person among the person information received by the reception unit; and an authentication information database that stores the confidential information generated by the first generation unit and the personal identification information generated by the second generation unit in association with each other. A user unit compares at least one of the generated information, either the secret information generated by the first generation unit from the possession information entered by the person through the reception unit, or the personal identification information generated by the second generation unit from the reception information entered by the person through the reception unit, with the stored information corresponding to the generated information stored in the authentication information database, and if they match, performs authentication processing using the generated information. Equipped with The user unit then compares one or both of the generated information according to the predetermined level of authentication security required for the authentication process. Other solutions will be described later in the descriptions of embodiments for carrying out the invention. [Effects of the Invention]

[0008] This disclosure provides a system for generating authentication information and a method for authenticating individuals that can achieve a robust level of security. [Brief explanation of the drawing]

[0009] [Figure 1] This is a block diagram of the authentication information generation system in this disclosure. [Figure 2] This is a front view of the physical medium possessed by the person who wishes to generate authentication information. [Figure 3] This diagram illustrates the possession information stored in the possession information database. [Figure 4] This diagram illustrates the information stored in the authentication information database. [Figure 5] This figure illustrates the information stored in the authentication information database in another embodiment. [Figure 6] This flowchart shows the method for generating the authentication information in this disclosure. [Modes for carrying out the invention]

[0010] The following describes embodiments (referred to as "models") for implementing the present disclosure, with reference to the drawings. The following content is merely one example of how to implement the invention related to the present disclosure, and the present disclosure is not limited in any way to the following example. Within the description of one embodiment below, other embodiments applicable to that embodiment will also be described as appropriate. The present disclosure is not limited to the following embodiment, and different embodiments can be combined or modified as appropriate without significantly impairing the effects of the present disclosure. In addition, the same reference numerals will be used for the same components, and redundant explanations will be omitted. Furthermore, components having the same function will be given the same name. The illustrations are purely schematic, and for illustrative purposes, the actual configuration may be changed or some components may be omitted or modified between drawings without significantly impairing the effects of the present disclosure. Also, the same embodiment does not necessarily need to have all the components.

[0011] Figure 1 is a block diagram of the authentication information generation system 10 of this disclosure (hereinafter, as may be simply referred to as "generation system 10"). Generation system 10 is a system that generates authentication information for use by a person H who is a user of a service that requires authentication (a service on the web). The authentication information includes, for example, personal identification information (e.g., ID) that identifies that person H is the person using the service, and secret information for personal authentication (e.g., password, PIN) that authenticates that person H is the person using the service.

[0012] Furthermore, as will be detailed later, it is also possible to use the authentication information generated by the generation system 10 to undergo authentication (identity verification) when using the service. Therefore, the generation system 10 can also be called an authentication support system. Normally, person H who wishes to generate authentication information wishes to undergo authentication when using the service using the generated authentication information. In this case, the generation system 10 inputs the authentication information to be used for authentication into the service, so that person H can undergo authentication without having to input the authentication information itself.

[0013] For example, by using a physical medium 50 distributed to each person H and an appropriate information and communication terminal 60, the generation system 10 can input authentication information into the service on behalf of person H (the person themselves). This reduces the effort required to authenticate person H and allows for authentication in a simple manner. Furthermore, because authentication can be done in a simple manner, it can be used by people H of a wide range of generations. The physical medium 50, as will be described later with reference to Figure 2, is, for example, a card with a 2D barcode printed on it.

[0014] Person H is, for example, an elderly person, a person with a disability, or a child, who has difficulty remembering the authentication information used for authentication. However, a person H who can easily remember the authentication information, such as a typical adult, may also use the generation system 10. Generally, it is easy to set authentication information that can be easily guessed by others as the authentication information used for authentication. For this reason, the generation system 10 can be preferably used by various people H.

[0015] The generation system 10 can be used when conducting online transactions (services) that use authentication information, such as logging in to an authentication website, making purchases on a website, etc. The generation system 10 can also be used for services such as accepting the attendance confirmation of person H.

[0016] The generation system 10 includes a reception unit 11, a first generation unit 12, a second generation unit 13, a registration processing unit 14, a usage unit 15, an authentication information DB 16, and a possession information DB 17. Note that DB is an abbreviation for database, and this notation is the same hereinafter.

[0017] The reception unit 11 is a functional unit that receives person information. The person information is information regarding person H who wishes to generate authentication information. The person information is, for example, information input by person H and information (stored information) memorized by person H. The stored information is, for example, an arbitrary character string (hiragana, katakana, Chinese characters, alphabet, numbers, symbols, etc.). The input to the reception unit 11 can be executed, for example, by person H using an input device (not shown) such as a keyboard, numeric keypad, touch panel, mouse, etc. The input device is connected to the reception unit 11.

[0018] The person information is not limited to this, but can include, for example, unique information (unique information) for each person H, that is, information that does not overlap with other person Hs. Such person information is, for example, a unique number (character string) for each person H, such as the phone number of the mobile phone owned by person H (mobile phone number), my number, etc. Among them, as the person information, it can be the mobile phone number that person H usually remembers firmly.

[0019] However, the personal information does not necessarily have to be unique to each person H, and may include information that can overlap with other persons H (non-unique information). Examples of information that can overlap with other persons H include, for example, the birthday of person H himself / herself, the birthdays of family members (e.g., the birthdays of person H's mother, father, children, etc.), the birthday of a pet, the place of birth, the home phone number (which may overlap with cohabiting family members, etc.). Information that can overlap with other persons H can be input to person H, for example, as "secret questions", and the input information is received by the reception unit 11.

[0020] The reception unit 11 is also a functional unit for receiving the possessed information. The possessed information is information stored in the physical medium 50 possessed by person H, and is, for example, an arbitrary character string (hiragana, katakana, Chinese characters, alphabet, numbers, symbols, etc.). The physical medium 50 is a physical medium having a certain physical shape, such as, for example, a card with arbitrary items described (e.g., printed, handwritten, etc.), a card equipped with an NFC chip, an NFC tag, a keyholder with an NFC chip, a sticker with an NFC chip. For example, the card may have a character string or the like directly indicating the possessed information described thereon, or may have a barcode storing physical information (e.g., a one-dimensional barcode, a two-dimensional barcode such as a QR code (registered trademark), etc.), or an arbitrary character string associated with the possessed information described thereon. The input to the reception unit 11 can also be executed, for example, when person H uses an input device (not shown) such as a camera or an NFC reader to read the possessed information stored in the physical medium 50.

[0021] In addition, although details will be described later, the reception unit 11 also receives the identifier (terminal identifier) of the information communication terminal 60 possessed (used) by person H and the biometric authentication information of person H.

[0022] FIG. 2 is a front view of the physical medium 50 possessed by person H who wishes to generate authentication information. By person H inputting the possessed information stored in the physical medium 50 to the reception unit 11 (FIG. 1), the generation system 10 generates the authentication information of person H.

[0023] In the example shown in Figure 2, the physical medium 50 is a card made of, for example, plastic or paper, on which possession information is printed on the surface of the card body 51. The physical medium 50 is made of a size (dimensions, thickness, etc.) similar to that of a credit card, for example, so that it is easy for person H to carry. The physical medium 50 is distributed to person H as appropriate during generation, or person H may use a physical medium 50 that he already possesses before the generation of authentication information (before using the generation system 10). For example, the distributed physical medium 50 has encrypted authentication information, such as key 3, which will be described in detail later, stored in it beforehand.

[0024] The physical medium 50 is provided with a field 52 for writing the nickname of the person who possesses the physical medium 50 (person H). For example, the nickname of person H is written in field 52 using an oil-based marker pen or the like. By writing a nickname, even if the physical medium 50 is lost, it is possible to prevent the actual name from being known to others. However, the person's actual name may also be written in field 52.

[0025] The physical medium 50 displays (for example, prints) the reception code 53. The reception code 53 is a two-dimensional barcode (not shown), such as a QR code (registered trademark). The reception code 53 is printed on the card body 51 and is exposed to the outside. Therefore, the reception code 53 is visible to anyone.

[0026] Here, a camera for scanning the reception code 53 and the login code 541 (described later) is installed in the facility used by person H, for example. The camera is an example of an input device and is connected to the reception unit 11 (Figure 1). When person H visits the facility, they scan the reception code 53 with an input device such as a camera (not shown), and the possession information stored in the reception code 53 (keys 1 and 2, details of which will be described later) is entered into the reception unit 11. As a result, information indicating person H's visit is entered into the reception unit 11. Then, as will be described in detail later, the generation system 10 generates personal identification information, etc., and verifies that the person is who they claim to be by comparing it with information (stored information) that has been pre-registered in the authentication information DB 16 (Figure 1), for example. If it is verified that the person is indeed person H, information indicating that they have visited is recorded in the entry / exit DB (not shown), for example.

[0027] Other examples of such facilities include those used by local communities where elderly people gather, and facilities where events are held. The organizers of these events can install tablets (information and communication devices) equipped with the camera in the facility, and elderly people can register and input information by reading the reception code 53, login code 541, etc. Furthermore, it can also be used for individual visits to check on the well-being of person H, provide support for daily life, etc. Specifically, for example, a visitor to a facility such as person H's home can carry a tablet (information and communication device) equipped with the camera and read the reception code 53, login code 541, etc. of the elderly person at the facility, thereby recording information about person H.

[0028] The login code 541 is displayed (e.g., printed) on the physical medium 50. The login code 541 is, for example, a two-dimensional barcode (not shown). A cover 54, such as a sticker, is attached to the card body 51 so as to cover the login code 541. Therefore, the login code 541 is not visible to others. However, the administrator of the generation system 10, person H himself, etc., can remove the cover 54 to make the login code 541 visible.

[0029] When person H holds the login code 541 over an input device (not shown), such as a camera, the possession information stored in the login code 541 (key 3, details of which will be described later) is input to the reception unit 11. This allows the registration processing unit 14, details of which will be described later, to register the authentication information in the authentication information DB 16. The login code 541 is also used to support authentication that requires a relatively high level of authentication security (for example, purchasing).

[0030] As described above, the reception code 53 and login code 541, which indicate the possession information, are displayed on the surface of the physical medium 50 (the surface of the card body 51). The possession information includes possession information (first information) indicating keys 1 and 2, as described later with reference to Figure 3, and possession information (second information) indicating key 3, as described later. The first information corresponds to the reception code 53 and is therefore displayed in a way that is visible to a person. On the other hand, the second information corresponds to the login code 541 and is therefore displayed in a way that is not visible to a person by covering it with the cover 54. The second information is used when a higher level of authentication security than that of the first information is required, for example, when registering authentication information in the authentication information DB 16. In this way, the first information, which has little impact even if visible (for example, information that is merely for reception), can be easily authenticated by displaying it in a visible state. On the other hand, the second information, which is considered to pose an authentication security problem if visible (for example, viewing or editing personal information), can be covered with the cover. This reduces the risk of information leakage.

[0031] However, if the physical medium 50 is, for example, an IC card equipped with an NFC chip, RFID, etc., and the possession information is not exposed on the surface, then keys 1, 2, and 3 are all invisible. For this reason, some of these keys 1, 2, and 3 may be shared, and specifically, for example, key 1 and key 3, or key 2 and key 3, may be made into a common string (shared).

[0032] "Authentication security" refers to the security required for authentication processing to prevent unauthorized access or tampering with information by anyone other than person H. The required level of authentication security varies depending on the content of the information being protected. For example, for extremely simple information and operations, such as person H simply entering (registering) their entry and exit, a relatively low (loose) level of authentication security is required. Therefore, person H can input this information in a relatively simple way. On the other hand, for operations involving the output or viewing of person H's personal information, family information, preferences, etc., or operations involving the movement of money, such as purchases and payments, the impact of unauthorized operations by third parties is extremely large. Therefore, when person H performs these operations, a strict method should be required, even if it may be relatively cumbersome for person H. For this reason, in the example of this disclosure, while it is assumed that authentication will be supported in the simplest possible way when the generated authentication success is used, additional predetermined operations will be required of person H depending on the required level of authentication security.

[0033] Returning to Figure 1, the first generation unit 12 is a functional unit that generates secret information for user authentication according to a predetermined first rule, based on the possession information received by the reception unit 11 (possession information entered through the reception unit 11). The possession information used by the first generation unit 12 includes, for example, keys 1 and 2 stored in the reception code 53 (Figure 2), as well as key 3 stored in the login code 541 (Figure 2). The flow of authentication information generation and keys 1, 2, 3, and 4 will be explained further with reference to Figure 3.

[0034] Figure 3 is a diagram illustrating the possession information stored in the possession information DB 17. The possession information DB 17 stores possession information including, for example, keys 1, 2, and 4. Therefore, keys 1, 2, and 4 are possession information that the generation system 10 has prior knowledge of, as they are recorded in the possession information DB 17. On the other hand, key 3 is not stored in the possession information DB 17. Multiple pairs, each linking key 1, key 2, and key 4, are stored in the possession information DB 17.

[0035] Key 1 is, for example, a unique string for each physical medium 50. Key 1 is, for example, a different, sequential number for each physical medium 50. For example, the first physical medium 50 (e.g., an IC card) could be assigned the number 1001, the second physical medium 50 the number 1002, and so on. Key 2 is, for example, a random string (a string that cannot be guessed by a third party) and is used to determine the authenticity of the physical medium 50. Therefore, if the receiving unit 11 finds that the combination of the received key 1 and key 2 exists in the possession information DB 17, it determines that the physical medium 50 with the received keys 1 and 2 is an authentic physical medium 50 (the real physical medium 50).

[0036] Key 4 is, for example, a random string and is used, for example, together with Key 3 above to generate authentication information by the first generation unit 12. Key 3 is stored in the login code 541 read as described above and is Key 3 received by the reception unit 11. Key 3 contains, for example, a random string (for example, consists of a random string).

[0037] For example, when authentication information is first registered in the authentication information DB16, the first generation unit 12 uses keys 1, 2, 3, and 4 to generate secret information (e.g., a password) for user authentication in accordance with the predetermined first rule described above. The secret information is usually known only to person H and the administrator of the generation system 10. The first generation unit 12 refers to the possession information DB17 and obtains key 4, which is associated with the received keys 1 and 2. In the example of this disclosure, the obtained key 4 is used to generate the secret information.

[0038] As will be explained in detail later, authentication information is generated each time the generation system 10 is used, not only when the authentication information is initially registered in the authentication information DB 16, but also when assisting with authentication after registration. In this generation, which possessed information is used is determined according to the required level of authentication security. Specifically, keys 1 and 2, which are examples of possessed information, are used when the required level of authentication security is the lowest. For example, if the authentication information has already been registered in the authentication information DB 16 (Figure 1) and it is simply a matter of receiving the information, authentication information is generated using only keys 1 and 2. For this reason, key 3, which is an example of possessed information, is not used when the required level of authentication security is the lowest (although it may be used). On the other hand, when the required level of authentication security is the highest, for example, when the authentication information of person H is initially registered in the authentication information DB 16, if it is for viewing or editing person H's personal information, authentication information is generated using keys 3 and 4 in addition to keys 1 and 2.

[0039] The first rule described above is predetermined and, for example, it is a rule that performs encryption processing (using keys 3 and 4) on the possession information (e.g., key 3) received by the reception unit 11 and predetermined key information (e.g., key 4). In this way, authentication information can be generated by using both the information on the physical medium 50 and the information on the generation system 10. Therefore, since authentication information cannot be generated with information from only one side, authentication security can be improved.

[0040] The specific encryption method is arbitrary; for example, key 3 can be encrypted using key 4 (private key and IV) with AES encryption, and the resulting value can be used as authentication information. Therefore, key 3 can also be considered encrypted authentication information.

[0041] In another embodiment, the first rule is a rule that extracts at least a portion of the random string contained in key 3 and uses it as authentication information. By using such a rule, secret information can be easily generated. The string to be extracted may be a portion of key 3 or the entirety of it. If the entire string is extracted, the first generation unit 12 generates the string of key 3 itself as secret information. If only a portion of the string is extracted, the part of the string to be extracted (for example, extracting the string between the second character from the beginning and the third character from the end) can be determined in advance.

[0042] Returning to Figure 1, if the secret information generated by the first generation unit 12 has not yet been registered in the authentication information DB 16, it is registered in the authentication information DB 16 as an initial registration, for example, by the registration processing unit 14 described later. If the generated secret information has already been registered (stored) in the authentication information DB 16, the secret information generated by the first generation unit 12 is compared (queried) with the secret information registered in the authentication information DB 16. If the comparison results in a match, the authentication process is performed using the generated secret information (which may also be the secret information registered in the authentication information DB 16). Note that the secret information may differ for each person H, for example. When the required level of authentication security is low, only the secret information (if the secret information differs for each person H), or only the personal identification information described later, is used for comparison. In these cases, it can be presumed that the person H who registered the secret information etc. in the authentication information DB 16 is requesting the authentication process.

[0043] Furthermore, it is possible to check whether the secret information newly generated in accordance with Rule 1 is duplicated in the authentication information DB 16 (i.e., whether it has already been used as secret information by another person). If it is duplicated, the system can alert person H by issuing an error, for example. This check can be performed, for example, by the registration processing unit 14. Therefore, the secret information may be information (string) unique to person H, or it may be information (string) that is duplicated with other person H. If the secret information is unique, person H can be authenticated as the person in question using the secret information as a clue. On the other hand, if the secret information is duplicated, person H can be authenticated as the person in question using personal identification information rather than the secret information as a clue.

[0044] The second generation unit 13 is a functional unit that generates personal identification information (e.g., ID) in accordance with a predetermined second rule based on the reception information received by the reception unit 11. The reception information is at least one (or both) of the following: possession information received by the reception unit 11, or unique information specific to each person H from the person information received by the reception unit 11.

[0045] Whether the received personal information is unique information, that is, whether it is unique to person H, can be determined, for example, based on a third rule pre-set in the second generation unit 13. For example, the third rule is a rule that assigns the classification of the entered mobile phone number of person H as unique information, and a rule that assigns the classification of the entered birthday of person H as non-unique information. As a result, if a mobile phone number is received, that mobile phone number can be used as unique information, but if a family member's birthday is entered, the birthday cannot be used as unique information.

[0046] Furthermore, to determine "what kind of information" the information entered through the reception unit 11 is, for example, by displaying a question such as "What is your mobile phone number?" on the display screen (not shown), the system can recognize and accept the answer to that display as "mobile phone number".

[0047] The second rule described above is, for example, a rule to extract at least a portion of the reception information consisting of a string, or to encrypt at least a portion of the string of said reception information. However, it is preferable to check whether the personal identification information newly generated according to the second rule is duplicated in the authentication information DB16 (i.e., whether it has already been used as personal identification information for another person). If it is duplicated, the person H can be alerted by issuing an error, for example. The check can be performed, for example, by the registration processing unit 14. Therefore, the personal identification information is information (a string) unique to person H.

[0048] A simple second rule is to use, for example, if the reception information is possession information, to use Key 1 (a unique string of characters for each physical medium 50), which is an example of possession information, as personal identification information. Alternatively, if the reception information is, for example, the mobile phone number owned by person H, then, as mentioned above, that mobile phone number is unique information specific to person H. Therefore, as a simple second rule, it is also possible to use the string of characters that constitutes the unique information (mobile phone number) as personal identification information.

[0049] The authentication information DB16 is a database that stores the secret information generated by the first generation unit 12 and the personal identification information generated by the second generation unit 13 in association with each other.

[0050] Figure 4 is a diagram illustrating the information stored in the authentication information DB16. As an example, Figure 4 shows a case where the person information is information specific to person H (specific information). For example, the person information is the phone number of the mobile phone owned by person H (mobile phone number), and the possession information is key 1 of the possession information stored in the physical medium 50 owned by person H. In the example in Figure 4, the personal identification information is the possession information itself, but it may also be the person information (which may also be specific information) itself, or a string combining the possession information and the person information (for example, a string formed by concatenating each string).

[0051] For example, when the reception code 53 (Figure 2) is read from the physical medium 50 held by person H, key 1 is entered into the reception unit 11 (Figure 1). This allows the authentication information DB 16 to reference (match) the personal identification information and secret information corresponding to key 1. Therefore, the secret information generated by the first generation unit 12 (Figure 1) using key 1, and the personal identification information created by the second generation unit 13 using key 1 can be matched with the personal identification information and secret information corresponding to key 1 in the authentication information DB 16.

[0052] Furthermore, to enhance authentication security, the person H who has read the reception code 53 may be asked to additionally enter their mobile phone number (or other personal information such as unique or non-unique information). If the additionally entered mobile phone number is stored in the authentication information DB 16 and associated with the information stored in the reception code 53, the likelihood that person H is the person in question increases. Therefore, the person may be asked to enter their mobile phone number again, and after confirming that the entered mobile phone number matches the mobile phone number recorded in the authentication information DB 16, the generated authentication information may be used to complete the authentication. In this case, biometric authentication information may be used in conjunction with, or instead of, the input of a mobile phone number. Biometric authentication information is information obtained by at least one of the following: facial recognition, fingerprint recognition, voice recognition, iris recognition, vein recognition, etc.

[0053] Figure 5 illustrates the information stored in the authentication information DB16 in another embodiment. In the example of Figure 5, unlike the example in Figure 4, the person information is not specific to person H, but rather information that may overlap with other people (non-specific information), such as person H's place of origin.

[0054] In this case, the only unique information is the possession information, which is key 1. Therefore, the string of key 1 can be used as the personal identification information. Also, in this case as well, similar to the example in Figure 4 above, from the perspective of enhancing authentication security, person H who has read the reception code 53 may be asked to additionally enter their place of origin (an example of a secret question or personal information). Furthermore, after being asked to enter their place of origin and confirming that the entered place of origin matches the place of origin recorded in the authentication information DB 16, the generated authentication information may be used to complete the personal authentication.

[0055] The example in Figure 4 and the example in Figure 5 above may be combined. That is, for example, in the authentication information DB16 shown in Figure 5, further personal information specific to person H (such as a mobile phone number) may be linked. In this way, for example, even when personal identification information is used as key 1, the user may be required to input a mobile phone number when performing authentication that requires particularly high authentication security, or to input their place of origin when performing authentication that requires relatively low authentication security. By confirming that the input information matches the information registered in the authentication information DB16, authentication processing corresponding to different authentication security levels can be performed.

[0056] Returning to Figure 1, the registration processing unit 14 is a functional unit that associates the secret information generated by the first generation unit 12 with the personal identification information generated by the second generation unit 13 and registers it in the authentication information DB 16. By including the registration processing unit 14, it is possible to construct an authentication information DB 16 that includes authentication information (personal identification information and secret information) used for authentication such as login. The registration processing unit 14 may also record personal information such as the name, address, and date of birth of person H in the authentication information DB 16 by further linking it to the authentication information. An example of registering authentication information (personal identification information and secret information) and specific information (an example of person information) linked together is shown in Figure 4 above.

[0057] Furthermore, the registration processing unit 14 may register not only unique information but also non-unique information (such as place of origin) from among the person information or possession information, in addition to unique information, by linking it to the unique information and authentication information. An example of registering authentication information (personal identification information and confidential information) linked to person information (place of origin) from among the non-unique information is shown in Figure 5 above.

[0058] In another embodiment, the physical medium 50 includes an information and communication terminal owned by person H, such as a mobile phone, smartphone, tablet, or personal computer. Therefore, in this embodiment, for example, the physical medium 50 such as the card and the physical medium 50 such as a mobile phone are used in combination. The possession information includes an identifier (terminal identifier) ​​for identifying the information and communication terminal, such as the MAC address of the network card.

[0059] The registration processing unit 14 associates (links) the generated authentication information (at least one of personal identification information or confidential information) with an identifier and registers it in the authentication information DB 16. This allows authentication to be performed by using whether or not the identifier is registered in the authentication information DB 16 when, for example, the reception unit 11 (generation system 10) is accessed using an information communication terminal that has an identifier registered in the authentication information DB 16.

[0060] However, in cases where particularly high authentication security is required, authentication may be further requested, such as input of possession information, specific information, non-specific information, or a secret question, only when access is made from an information and communication terminal with a registered identifier. In this case, if access is made from an information and communication terminal whose identifier is not registered in the authentication information DB16, authentication can be rejected outright.

[0061] Furthermore, person H can choose whether or not to register the identifier in the authentication information DB 16. That is, a mobile phone owned by person H can be considered a physical medium 50, but for example, a shared computer installed in an open space is not an information and communication terminal owned by person H and may be used by someone other than person H. Therefore, person H, who uses the shared computer, can choose whether or not to register the identifier. However, in actual operation, the generation system 10 cannot determine whether or not the information and communication terminal used for access is a physical medium 50 owned by person H (used only by person H). For this reason, if access is made with an information and communication terminal that has an identifier not registered in the authentication information DB 16, it is preferable to allow person H to choose whether or not to register the identifier in the authentication information DB 16.

[0062] In yet another embodiment, the registration processing unit 14 registers the biometric authentication information of person H in the authentication information DB 16, linked to the generated authentication information (at least one of personal identification information or confidential information). The biometric authentication information is, for example, the information described in the explanation of the reception code 53 above.

[0063] The user unit 15 is a functional unit that compares the generated information generated by the first generation unit 12 and the second generation unit 13 with the corresponding stored information stored in the authentication information DB 16, and performs authentication processing using the generated information if they match. The generated information is at least one of either confidential information or personal identification information. Confidential information is information generated by the first generation unit 12 from possession information entered by person H through the reception unit 11, as described above. Personal identification information is information generated by the second generation unit 13 from reception information entered by person H through the reception unit 11, as described above. Reception information includes, for example, person information, biometric authentication information, identifiers, etc. Strictly speaking, possession information can also be considered reception information because it is received by the reception unit 11, but in this disclosure, possession information and reception information are treated as different concepts. By providing the user unit 15, authentication processing can be performed without person H having to input authentication information, thus supporting complex authentication processing.

[0064] For example, the user unit 15 compares the generated personal identification information with personal identification information that is part of the stored information in the authentication information DB 16. The user unit 15 also compares the generated secret information with secret information that is part of the stored information in the authentication information DB 16. For example, during these comparisons, the user unit 15 typically searches for the generated personal identification information in the authentication information DB 16 and compares whether the secret information associated with the personal identification information found in the authentication information DB 16 matches the generated secret information. Therefore, the user unit 15 uses the personal identification information as a clue to check for a match in the secret information. However, it is also possible to search for the secret information as a clue and then check for a match in the personal identification information.

[0065] The authentication process is performed, as described above, for example, to register a person H who has come to a desired location online, log in to a desired website, make a purchase on the desired website, and access personal information about person H stored on server S. Access to personal information may be, for example, by inputting information about person H into server S, or by inputting and outputting information about person H to and from server S. These can be performed by the user unit 15 connecting to the desired server S via the network 70.

[0066] As described above, the user unit 15 generates personal identification information and confidential information each time person H uses the generation system 10. The user unit 15 then uses the authentication information DB 16 to verify that the generated personal identification information and confidential information are correct and performs authentication processing using them. However, verification does not necessarily have to be performed on both the personal identification information and the confidential information. That is, if the security required for authentication is low, it is highly likely that person H is the person in question if verification of only one of them confirms that they match. On the other hand, if the security required for authentication is high, it is preferable to verify both and confirm that they match to provide stronger verification of the person's identity.

[0067] Therefore, the user unit 15 compares one or both of the generated personal identification information and confidential information according to the predetermined level of authentication security required for the authentication process. This reduces the effort required for comparison and alleviates the computational load.

[0068] The user unit 15 verifies both generated pieces of information when the authentication security is relatively high, and verifies only one of the generated pieces of information when the authentication security is relatively low. This makes it possible to achieve both ease of verification and reliability of the authentication process.

[0069] Specifically, for example, as described above, in cases where, for instance, only the registration of person H visiting the facility and the writing of person H's lifestyle information (preferences, health status, habits, etc.) to server S are performed without viewing, the authentication security is predetermined to be low. Therefore, in these cases, the user unit 15 uses only one of either the personal identification information or the confidential information (for example, only the personal identification information) for verification. In this case, if the generated personal identification information (for example, an ID) exists in the authentication information DB 16, person H can be treated as the person in question without verifying the confidential information.

[0070] On the other hand, when accessing, reading, or writing information about person H stored on server S, for example, or when viewing or editing personal information, a high level of authentication security is predetermined. In these cases, the user unit 15 uses both the personal identification information and the secret information for verification. In this case, if the personal identification information (ID) exists in the authentication information DB 16 and the secret information (e.g., password) associated with the existing personal identification information matches, person H can be treated as the person in question.

[0071] Furthermore, especially in cases of high authentication security, the user unit 15 may verify and confirm a match between the personal identification information and the secret information, as well as other information. This other information may be, as mentioned above, biometric authentication information, identifiers, etc. In addition, the user may be required to input at least one of the following: a login code 541 (Figure 2), personal information specific to person H (personal information among the specific information), or personal information that may overlap with other people (information among the personal information that is not specific; non-specific information). This can also enhance authentication security.

[0072] In another embodiment, possession information includes physical information unique to each authentication card (e.g., key 1 above) stored on the authentication card as the physical medium 50, and an identifier unique to the information communication terminal 60 as the physical medium 50 (terminal identifier). The identifier is then associated with at least one (e.g., both) of personal identification information or confidential information and stored in the authentication information DB 16.

[0073] In this embodiment, the user unit 15 is accessed from an information communication terminal 60 having an identifier stored in the authentication information DB 16, and when the generated information matches the stored information, it performs authentication processing using the generated information. In this way, authentication security can be made particularly strong. The generated information is, as described above, at least one of the following: confidential information or personal identification information. The stored information is, as described above, the information stored in the authentication information DB 16.

[0074] In yet another embodiment, the authentication information DB16 stores the biometric authentication information of person H in association with at least one (for example, both) of the personal identification information or the confidential information. In this embodiment, when person H, whose biometric authentication information is registered in the authentication information DB16, attempts authentication, the user unit 15 performs authentication by lowering the authentication accuracy of the biometric authentication to obtain the biometric authentication information from the standard authentication accuracy.

[0075] For example, using at least one of the personal identification information or confidential information as a clue, the corresponding biometric authentication information (biometric authentication information to be matched) can be identified in the authentication information DB16. Then, the user unit 15 performs the authentication process using the generated information if the biometric authentication is successful and the generated information matches the stored information. In this way, authentication security can be made particularly strong. In addition, although biometric authentication information may change due to, for example, aging, authentication can be passed even if there is some change by lowering the authentication standard. Thus, it is possible to achieve both strong authentication security and an authentication process that is easy to pass.

[0076] In biometric authentication, authentication is performed using the agreement rate (the ratio of matching feature points) between the correct data (data registered in the authentication information DB16) and the acquired data (data obtained when generating the generated information). For example, if the agreement rate is above a predetermined threshold, the user is authenticated as the person in question; if the agreement rate is below that threshold, authentication is rejected. If the threshold is simply set high to ensure a high level of security, there is a possibility that the user may be mistakenly rejected even though they are the rightful user. Therefore, as disclosed herein, by authenticating the generated information and the biometric authentication information, the agreement rate threshold can be lowered, for example to 10%, thereby enabling authentication at a higher security level while reducing the risk of false rejection or false acceptance.

[0077] To explain in more detail, for example, if biometric authentication is fingerprint authentication, facial recognition, etc., the person can be authenticated as such when the number of matching feature points is equal to or greater than, for example, 0.9 times (10% reduction) the number in the standard state (i.e., the threshold).

[0078] Furthermore, in the authentication information DB16, for example, biometric authentication information linked to authentication information may be updated at a predetermined frequency. For example, when performing biometric authentication with a physical medium 50, if the physical medium 50 is genuine and person H is considered to be the person in question, the biometric authentication information can be updated using the result of the biometric authentication.

[0079] The generation system 10 is comprised of components not shown in the diagram, such as a CPU (Central Processing Unit), RAM (Random Access Memory), ROM (Read Only Memory), I / F (Interface), and a bus. The CPU, RAM, ROM, and I / F are connected, for example, via a bus. The generation system 10 is realized when a predetermined control program (for example, a program that executes the authentication support method of this disclosure and the authentication method of person H of this disclosure) stored in ROM is loaded into RAM and executed by the CPU. The exchange of signals and information between the generation system 10 and various devices (input devices, server S, etc.) is carried out in hardware terms through the I / F.

[0080] Furthermore, the various functional units constituting the generation system 10 may all be integrated to form the generation system 10 as a generation device and authentication support device, and some of the functional units may be stored in a server S located in a remote location. Also, for example, the input devices for possession information and person information are, in the above example, a camera, a keypad, etc., but these may also be, for example, a camera, a keypad, a reader, etc., provided on an information communication terminal 60 possessed by person H.

[0081] Input can also be performed, for example, via an application installed on the information and communication terminal 60. For example, person H uses their own information and communication terminal 60 (a mobile communication terminal such as a mobile phone) to input, for example, their mobile phone number, into an application (for example, a registration application) installed on the information and communication terminal 60. As a result, the entered mobile phone number can be input to the reception unit 11, which is connected to the information and communication terminal 60, for example, by wired or wireless connection.

[0082] Figure 6 is a flowchart of the authentication method for person H in this disclosure (hereinafter, as appropriate, simply referred to as "the authentication method of this disclosure"). The authentication method of this disclosure can be executed by the generation system 10 described above. Therefore, the above matters (meaning of terms, etc.) described for the generation system 10 can also be applied to the generation method of this disclosure described below. Furthermore, the following explanation will be given with reference to Figure 1 as appropriate.

[0083] Prior to the authentication method of this disclosure (before the reception step S1), the registration processing unit 14 records confidential information and personal identification information for each person H in the authentication information DB 16. This recording can also be called the step of storing confidential information and personal identification information in the authentication information DB 16. The confidential information and personal identification information stored (i.e., generated) here can be created, for example, by the first generation unit 12 and the second generation unit 13 described above. The authentication method of this disclosure is a method used by person H who has, so to speak, "registered as a user" in the authentication information DB 16 (person H who wishes to generate authentication information and has already registered as a user). However, confidential information and personal identification information are also generated in the authentication method of this disclosure. Therefore, the authentication method of this disclosure can also be called a method for generating authentication information.

[0084] The authentication method of this disclosure includes an acceptance step S1, a first generation step S2, a second generation step S3, and a usage step S4.

[0085] The reception step S1 is a step in which possession information stored in the physical medium 50 possessed by person H and person information related to person H are received. Person H is a person who has already registered confidential information and personal identification information in the authentication information DB 16. As described above, the authentication information DB 16 is a database that stores confidential information for personal authentication and personal identification information associated with each person. The reception step S1 can be executed by the reception unit 11 (Figure 1) described above.

[0086] The first generation step S2 is a step in which the above-mentioned secret information is generated in accordance with a predetermined first rule based on the possession information received in the reception step S1. The first generation step S2 can be performed by the first generation unit 12 described above.

[0087] The second generation step S3 is a step in which the above-mentioned personal identification information is generated based on the received information in accordance with the predetermined second rule. The received information is at least one of the following: the possession information received in the reception step S1, or the specific information unique to person H among the person information received in the reception step S1. The second generation step S3 can be executed by the second generation unit 13 described above.

[0088] The usage step S4 is a step in which the generated information is compared with the corresponding stored information stored in the authentication information DB 16, and if they match, authentication processing is performed using the generated information. The generated information is at least one (for example, both) of the secret information generated in the first generation step S2, or the personal identification information generated in the second generation step S3. The usage step S4 can be executed by the usage unit 15 described above. [Explanation of Symbols]

[0089] 10 Generation System 11 Reception Department 12 1st generation part 13 Second generation part 14. Registration Processing Unit 15 Used part 16 Authentication Information Database 17. Possession Information Database 50 Physical Media 51 Card body Column 52 53 Reception Code 54 Cover 541 Login code 60 Information and communication terminals 70 Networks H person S Server S1 Registration Step S2 First generation step S3 Second generation step S4 Usage Steps

Claims

1. A reception unit that receives possession information stored on a physical medium held by a person who wishes to generate authentication information, and personal information about the said person, A first generation unit generates confidential information for personal authentication in accordance with a predetermined first rule, based on the possession information received by the reception unit. A second generation unit generates personal identification information in accordance with a predetermined second rule, based on at least one of the received information, which is either the possession information received by the reception unit or the specific information unique to each individual among the person information received by the reception unit. An authentication information database that stores the secret information generated by the first generation unit and the personal identification information generated by the second generation unit in association with each other, The system includes a user unit that compares at least one of the generated information, either the secret information generated by the first generation unit from the possession information entered by the person through the reception unit, or the personal identification information generated by the second generation unit from the reception information entered by the person through the reception unit, with the stored information corresponding to the generated information stored in the authentication information database, and performs authentication processing using the generated information if they match. The aforementioned user unit verifies one or both of the generated information according to the predetermined level of authentication security required for the authentication process. A system for generating authentication information characterized by the following features.

2. A system for generating authentication information according to claim 1, The system further includes a registration processing unit that associates the secret information generated by the first generation unit with the personal identification information generated by the second generation unit and registers them in the authentication information database. A system for generating authentication information characterized by the following features.

3. A system for generating authentication information according to claim 1, The aforementioned part is, If the authentication security is relatively high, both of the generated pieces of information are compared. If the authentication security is relatively low, only one of the generated pieces of information will be verified. A system for generating authentication information characterized by the following features.

4. A reception unit that receives possession information stored in a physical medium possessed by a person who wishes to generate authentication information, and person information relating to the said person, A first generation unit generates confidential information for personal authentication in accordance with a predetermined first rule, based on the possession information received by the reception unit. A second generation unit generates personal identification information in accordance with a predetermined second rule, based on at least one of the received information, which is either the possession information received by the reception unit or the specific information unique to each individual among the person information received by the reception unit. An authentication information database that stores the secret information generated by the first generation unit and the personal identification information generated by the second generation unit in association with each other, The system includes a user unit that compares at least one of the generated information, either the secret information generated by the first generation unit from the possession information entered by the person through the reception unit, or the personal identification information generated by the second generation unit from the reception information entered by the person through the reception unit, with the stored information corresponding to the generated information stored in the authentication information database, and performs authentication processing using the generated information if they match. The possession information includes a terminal identifier unique to the information communication terminal as a physical medium, and the terminal identifier is stored in the authentication information database in association with at least one of the personal identification information or the confidential information. The aforementioned user unit is accessed by an information communication terminal having the terminal identifier stored in the authentication information database, and performs authentication processing using the generated information when the generated information matches the stored information. A system for generating authentication information characterized by the following features.

5. A reception unit that receives possession information stored in a physical medium possessed by a person who wishes to generate authentication information, and person information relating to the said person, A first generation unit generates confidential information for personal authentication in accordance with a predetermined first rule, based on the possession information received by the reception unit. A second generation unit generates personal identification information in accordance with a predetermined second rule, based on at least one of the received information, which is either the possession information received by the reception unit or the specific information unique to each individual among the person information received by the reception unit. An authentication information database that stores the secret information generated by the first generation unit and the personal identification information generated by the second generation unit in association with each other, The system includes a user unit that compares at least one of the generated information, either the secret information generated by the first generation unit from the possession information entered by the person through the reception unit, or the personal identification information generated by the second generation unit from the reception information entered by the person through the reception unit, with the stored information corresponding to the generated information stored in the authentication information database, and performs authentication processing using the generated information if they match. The authentication information database stores biometric authentication information of the person in association with at least one of the personal identification information or the confidential information. The aforementioned part is, When the person corresponding to the biometric authentication information registered in the authentication information database attempts the authentication process, If the biometric authentication is performed with a lower authentication accuracy than the standard authentication accuracy to obtain the aforementioned biometric authentication information, and the authentication by the biometric authentication is successful, and the generated information matches the stored information, the authentication process is performed using the generated information. A system for generating authentication information characterized by the following features.

6. A system for generating authentication information according to claim 1 or 2, The first rule is a rule that performs encryption processing on the possession information received by the reception unit and predetermined key information. A system for generating authentication information characterized by the following features.

7. A reception step that receives information stored on a physical medium possessed by a person who has already registered the confidential information and the personal identification information in an authentication information database that stores confidential information for personal authentication and personal identification information associated with each person, and person information relating to the person. A first generation step in which, based on the possession information received in the reception step, the secret information is generated in accordance with a predetermined first rule, A second generation step in which, based on at least one of the received information, which is either the possessed information received in the reception step or the specific information unique to the person among the person information received in the reception step, the person identification information is generated in accordance with a predetermined second rule, The process includes a usage step of comparing the generated information, at least one of the secret information generated in the first generation step or the personal identification information generated in the second generation step, with the stored information corresponding to the generated information stored in the authentication information database, and if they match, performing authentication processing using the generated information, In the aforementioned usage step, one or both of the generated information are compared according to the predetermined level of authentication security required for the authentication process. A method for authenticating a person, characterized by the following features.

8. A reception step that receives, in an authentication information database which stores confidential information for personal authentication and personal identification information associated with each person, possession information stored on a physical medium possessed by a person who has already registered the confidential information and the personal identification information, and person information relating to the person, A first generation step in which, based on the possession information received in the reception step, the secret information is generated in accordance with a predetermined first rule, A second generation step in which, based on at least one of the received information, which is either the possessed information received in the reception step or the specific information unique to the person among the person information received in the reception step, the person identification information is generated in accordance with a predetermined second rule, The process includes a usage step of comparing the generated information, at least one of the secret information generated in the first generation step or the personal identification information generated in the second generation step, with the stored information corresponding to the generated information stored in the authentication information database, and if they match, performing authentication processing using the generated information, The possession information includes a terminal identifier unique to the information communication terminal as a physical medium, and the terminal identifier is stored in the authentication information database in association with at least one of the personal identification information or the confidential information. In the usage step, if the information communication terminal having the terminal identifier stored in the authentication information database is accessed and the generated information matches the stored information, the generated information is used to perform authentication processing. A method for authenticating a person, characterized by the following features.

9. A reception step that receives, in an authentication information database which stores confidential information for personal authentication and personal identification information associated with each person, possession information stored on a physical medium possessed by a person who has already registered the confidential information and the personal identification information, and person information relating to the person, A first generation step in which, based on the possession information received in the reception step, the secret information is generated in accordance with a predetermined first rule, A second generation step in which, based on at least one of the received information, which is either the possessed information received in the reception step or the specific information unique to the person among the person information received in the reception step, the person identification information is generated in accordance with a predetermined second rule, The process includes a usage step of comparing the generated information, at least one of the secret information generated in the first generation step or the personal identification information generated in the second generation step, with the stored information corresponding to the generated information stored in the authentication information database, and if they match, performing authentication processing using the generated information, The authentication information database stores biometric authentication information of the person in association with at least one of the personal identification information or the confidential information. In the aforementioned usage step, When the person corresponding to the biometric authentication information registered in the authentication information database attempts the authentication process, If the biometric authentication is performed with a lower authentication accuracy than the standard authentication accuracy to obtain the aforementioned biometric authentication information, and the authentication by the biometric authentication is successful, and the generated information matches the stored information, the authentication process is performed using the generated information. A method for authenticating a person, characterized by the following features.

Citation Information

Patent Citations

  • Personal authentication system

    JP2006209488A

  • Driver authentication device and operation management system

    JP2020035151A

  • Destination floor registration system and method for controlling the destination floor registration system

    JP7452731B1

  • Apparatus for identifying person

    WO1994023390A1

  • Detection device, learning device, detection method, and storage medium

    WO2022003982A1