Building gate management system, gate management method and program

The building gate management system addresses key account management for long-term residents and former residents by centralizing key information management, disabling unauthorized access, and simplifying the system by eliminating blacklist authentication.

JP7870131B2Active Publication Date: 2026-06-04MIWA LOCK COMPANY

Patent Information

Authority / Receiving Office
JP · JP
Patent Type
Patents
Current Assignee / Owner
MIWA LOCK COMPANY
Filing Date
2021-10-29
Publication Date
2026-06-04

AI Technical Summary

Technical Problem

Existing access control systems for buildings face challenges in managing key accounts for long-term residents and former residents, leading to increased complexity and information overload due to blacklists, and lack of centralized management for key information across multiple security zones.

Method used

A building gate management system that utilizes a communication terminal, authentication system, and a server for centralized management of key accounts, disabling key information upon loss of authority, and eliminating the need for blacklist authentication between terminals.

Benefits of technology

Enhances security by preventing unauthorized access for former residents and simplifying the system by managing key information centrally, reducing the need for blacklist authentication and minimizing recorded data across devices.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure 0007870131000001
    Figure 0007870131000001
  • Figure 0007870131000002
    Figure 0007870131000002
  • Figure 0007870131000003
    Figure 0007870131000003
Patent Text Reader

Abstract

To reduce burdens on mobile terminals and authentication systems by making it easy to determine validity of remote control of mobile terminals and eliminating needs for blacklist authentication between terminals.SOLUTION: A gate management system consists of a communication terminal 4 that records a key account A for opening and closing a gate 2, an authentication system 5 that collates the key account A with registered key information R and activates a lock device 3 of the gate 2, a network 6 to which the communication terminal 4 and the authentication system 5 are connected and a server 7 connected to the authentication system 5 over the network 6 and managing the key account A. The authentication system 5 can set the registered key information R to one of the states of change, prohibition of use and deletion. When the registered key information R becomes unusable, the communication terminal 4 transmits a control signal of the unavailability information of the key account A recorded to the server 7, and the server 7 records the unavailability information in a storage unit.SELECTED DRAWING: Figure 1
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to a building gate management system, a gate management method, and a program. In particular, it relates to a building gate management system, a gate management method, and a program that can disable the operation (such as unlocking, opening and closing, etc.) of locking devices such as the electric lock of a gate provided in a security zone, an automatic door opening and closing device, etc. using the key account recorded by a communication terminal (for example, prohibit the use of the key account).

Background Art

[0002] Patent Document 1 is an access management system proposed by the applicant. The communication unit 2 of the access management system outputs an inquiry signal to the central monitoring device 3 when it determines that the type of the read information is the first information storage medium 5a, and when it determines that the type of the read information is the second information storage medium 5b and determines that the information is normal, it outputs an unlocking control signal to the electric lock device 4. Then, when an inquiry signal is input to the central monitoring device 3 and it determines that the information determined to be the first information storage medium 5a is normal, it outputs an unlocking command to the communication unit 2. The communication unit 2 outputs an unlocking control signal to the electric lock device 4 when an unlocking command is input as a response to the inquiry signal from the central monitoring device 3. And the information storage medium is composed of, for example, a mobile phone with an IC card or an IC tag built in (paragraph 0022). The reference numerals are those of Patent Document 1.

[0003] Patent Document 2 is also an access management system and an access management method proposed by the applicant. The gate monitoring device (Figure 2) of this Patent Document 2 is close to the configuration of the authentication system of the present invention as a patent document. However, the mobile terminal is held by a key shop (vendor) for maintaining (for example, deleting or changing old key data) the key information recorded by the authentication system, and the mobile terminal does not belong to the building residents.

[0004] Patent Document 3 describes a system in which a user requests key data from a management server via a mobile device, and when the key distribution server receives notification from the management server that distribution is OK, it distributes a key account (authority to use an electronic key) that can be used with the access control system to the mobile device.

[0005] Patent Document 4 relates to an authentication device for an access control system, and describes an electric lock system having a lock control terminal that controls the unlocking of an electric lock and a portable terminal carried by a user of a facility where an electric lock is installed. The lock control terminal has an unlocking authentication means that authenticates that the portable terminal has the authority to unlock the electric lock using an electronic certificate and source terminal identification information received from the portable terminal, and an unlocking control means that controls the electric lock to be unlocked when the portable terminal is authenticated by the means to have the authority to unlock the electric lock. The unlocking authentication means confirms that the electronic certificate is an electronic certificate for the electric lock if the lock identification information read from the electronic certificate that has been verified as valid matches the lock identification information of the electric lock, and authenticates that the portable terminal has the authority to unlock the electric lock if the terminal identification information read from the confirmed electronic certificate matches the source terminal identification information.

[0006] Furthermore, claim 5 of Patent Document 4 states that "the lock control terminal (authentication system side) further has a storage unit that stores a blacklist in which terminal identification information of mobile terminals that prohibit unlocking the electric lock is registered, and when it receives the blacklist from the mobile terminal it updates the stored blacklist, and if the source terminal identification information matches the terminal identification information registered in the updated blacklist it does not authenticate that the mobile terminal has the authority to unlock the electric lock."

[0007] The invention described in claim 5 above has the effect of providing an electric lock system and a lock control terminal that can appropriately authenticate that a mobile terminal requesting unlocking has the authority to unlock the electric lock, even without the electric lock communicating with a management device that manages the authority to unlock the electric lock. However, since both the mobile terminal and the lock control terminal (authentication system side) record a blacklist containing the terminal identification information of the mobile terminal itself (including updating the blacklist), and the lock control terminal (authentication system side) always verifies the terminal identification information in the blacklist when a communication connection is established, there are problems such as an increase in the amount of recorded information between terminals, an increase in system complexity, and the retention of information recorded in the blacklist on the mobile terminal.

[0008] Finally, Patent Document 5 describes a system that allows, for example, a prospective homebuyer (visitor) to pass through (unlock) the gates of the common areas and private units of an apartment building using a communication terminal they possess. The configuration of this invention is characterized by the fact that, for example, the management terminal 12 is a terminal owned by the management company or owner that manages the gates of the apartment building; in order to obtain a key account, the management terminal 12 needs to receive a reservation from a visitor who wishes to temporarily enter the apartment building via a communication terminal 18; when the management terminal 12 receives a reservation from the communication terminal 18, it transmits a time-limited (including a one-time password) key account linked to the identification information of the common areas and private unit gates of the apartment building to the communication terminal 18; the gates of the common areas and private unit can be unlocked using the time-limited key account; and further, when a visitor leaves the apartment building after viewing the desired private unit, the management terminal 12, upon receiving notification that the key account for the private unit gate has been deleted, deletes the key account for the common area gate (the reference numerals are those of Patent Document 5).

[0009] However, the invention described in Patent Document 5 is intended for situations such as prospective homebuyers (visitors) temporarily visiting a condominium for viewing or inspecting the private areas, and is not intended for situations such as residents who have purchased a condominium, those who have entered into a lease agreement and live in the property for a long period of time, or those who have moved out of the property (vacant properties). Therefore, the key account is time-limited (including one-time passwords), and the unlock code for passing through the gates of the common areas and private areas of the apartment building is the same. [Prior art documents] [Patent Documents]

[0010] [Patent Document 1] Japanese Patent Publication No. 2012-36704 [Patent Document 2] Japanese Patent Publication No. 2015-161163 [Patent Document 3] Japanese Patent Publication No. 2016-188502 [Patent Document 4] Japanese Patent Publication No. 2019-173523 [Patent Document 5] Japanese Patent Publication No. 2021-110117 [Overview of the project] [Problems that the invention aims to solve]

[0011] The main objective of this invention is to address, preferably, residents who have purchased a condominium, tenants who have entered into a lease agreement for a house and live there for the contract period, and former residents who have moved out of the building. In particular, regarding key accounts registered in the memory of a communication terminal owned by a former resident who has moved out of the building, the invention aims to avoid recording blacklists on both the communication terminal and the lock control terminal (authentication system side). Instead, when the communication terminal loses the authority to use the key account, the authentication system located within the security zone disables the use of the registered key information stored in its memory. Preferably, the disabled registered key information is centrally managed by a server with a large memory capacity, and under the management of the server, the mobile terminal is unable to use the key account stored in its memory. This makes it easier to determine whether remote operation of the mobile terminal is legitimate or illegitimate, eliminates the need for blacklist authentication between terminals, and prevents an increase in the amount of recorded information between terminals. It is desirable that the disabled state be achieved by deleting the key account. The second objective is to disable the use of key information stored in the memory of all security zones when multiple security zones exist. As a typical example, if the security zone gates of an apartment building include resident rooms (private areas) and a common entrance (common areas), the key information stored in the memory of each authentication system installed in the private and common areas is disabled to prevent unauthorized unlocking of these gates.

[0012] Furthermore, depending on the embodiment, if there are multiple common areas, the key information recorded in the storage units of the security zones of all common areas can be disabled. As a specific embodiment, for example, if the gates of the security zone include gates such as entrances and elevators, the key information recorded in the storage units of each authentication system installed in the common areas can be disabled to prevent unauthorized unlocking of these gates. In addition, the system of the present invention can be used quickly and easily by using a communication terminal possessed by the building's residents to access the server and use the system of the present invention quickly. [Means for solving the problem]

[0013] First, the present invention provides a building gate management system comprising: a communication terminal that records key accounts for opening and closing gates installed in a security zone; an authentication system that compares the key accounts with registered key information and activates a gate locking device if the result of the comparison is valid; a network to which the communication terminal and the authentication system are connected; and a server that is connected to the authentication system via the network and manages the key accounts, wherein the authentication system is located within the security zone and, upon receiving a command signal from either an external device or a command operation unit that can change, prohibit, or delete the registered key information, determines that the registered key information corresponding to the key account recorded on the communication terminal of a former resident who has left the building has become unavailable, and, triggered by this determination, transmits information that the registered key information is unavailable to the server, and the server records the unavailable information in a storage unit for centralized management (Claim 1). This makes it easier to determine whether remote control of a mobile device is legitimate or illegitimate, eliminates the need for authentication of blacklists between devices, and prevents an increase in the amount of recorded information between devices (Claim 1).

[0014] The above configuration makes it possible to improve the security of people who will be living in the residence for a long period of time, rather than just temporarily.

[0015] Furthermore, in the building gate management system of claim 1, the security zone includes both a private area and a common area, and the authentication system includes both an authentication system for the private area and an authentication system for the common area, and a former resident who has moved out of the building has registered multiple key information in the authentication system, and the authentication system for the common area is controlled by either the external device or the command and control unit. When the command signal is received, it is determined that all of the registered key information has become unavailable, and this determination is made Triggered by this, the authentication systems of the dedicated unit and the shared unit transmit the information that the communication terminal has recorded regarding the unavailability of the key account to the server (Claim 2).

[0016] This allows the registered key information to be erased, for example, when the security zone includes both private and common areas, and furthermore, depending on the embodiment, when there are multiple gates in the common area, thereby reliably preventing unauthorized entry into the building. In the case of apartment buildings, the reason for using the erasure of common area information as a trigger is that, for security reasons, when a resident moves out, it is necessary to prevent the resident from entering the apartment building first. Therefore, it is generally preferable for the building manager to erase the key information from the authentication system for the common area.

[0017] Furthermore, in the building gate management system of claim 2, the server records the unavailable information in the storage unit and then transmits the unavailable key account information to the communication terminal of a former resident who has moved out of the building (claim 3). The reason for targeting "all" here is that, as will be explained later, the key accounts of the communication terminals of former residents who have moved out of the building differ depending on the identification information of each individual communication terminal, even if they are parent and child terminals.

[0018] Furthermore, the building gate management system according to claim 2 can encourage former residents to proactively delete the key accounts used in the system.

[0019] Next, the present invention relates to a building gate management method comprising: a communication terminal that records key accounts for opening and closing gates installed in a security zone; an authentication system that compares the key accounts with registered key information and activates a gate locking device if the result of the comparison is valid; a network to which the communication terminal and the authentication system are respectively connected; and a server that connects to the authentication system via the network and manages the key accounts, wherein the method comprises a first communication step (b) in which the communication terminal acquires a key account via either the authentication system or the network, and located within the security zone The present invention is characterized by comprising: a registered key information unavailability execution step (c) in which the authentication system renders the registered key information corresponding to the key account recorded in the communication terminal unavailable by input execution by either an external device or a command operation unit; a second communication step (d) in which, conditionally, the authentication system transmits information on the unavailability of the key account recorded in the communication terminal of a former resident who has moved out of the building to the server; and an unavailability information storage step (e) in which the server that has obtained the unavailability information registers the unavailability information in its storage unit based on the unavailability information and manages it collectively (Claim 4).

[0020] Furthermore, the program for causing a computer used in the gate management method for a building according to the present invention to run is a program for causing a computer used in the gate management method for a building comprising: a communication terminal that records key accounts for opening and closing gates provided in a security zone; an authentication system that compares the key accounts with registered key information and activates a gate locking device if the result of the comparison is valid; a network to which the communication terminal and the authentication system are respectively connected; and a server that connects to the authentication system via the network and manages the key accounts, wherein the program causes the computer to receive unavailable information from the authentication system indicating that the registered key information corresponding to the key account recorded in the communication terminal held by a former resident who has left the building is unavailable, and to record the unavailable information in a list of items prohibited from use in the storage unit for centralized management (Claim 5). The reason for specifying "via either the authentication system or the network" here is that it is also possible to obtain a key account from an authentication system located within the security zone via a means of communication (e.g., wireless).

[0021] Here, the "communication terminal" refers to a mobile terminal owned by a resident who purchases a house and lives in it for a long time, or a tenant who signs a lease contract and lives in the house for a long time, rather than a visitor who temporarily visits the house. In particular, it refers to a mobile terminal owned by a former resident who has left the house. Also, the "key account" here refers to an electronic key in which, for example, the identification information of the communication terminal, any one or more of the identification information of the gate, lock ID, and control unit on the authentication system side, and the identification information on the server side are linked. The key account preferably refers to an electronic key in which the identification information of the communication terminal, the identification information on the authentication system side, the identification information of the gate on the authentication system side, and the identification information on the server side are linked. When there are multiple former or new residents (such as father, mother, child, etc.) and each of them has their own communication terminal, the key accounts of the communication terminals are different according to the identification information of each communication terminal. Therefore, in such a case, there are also multiple registered key information of the authentication system corresponding to the key accounts of the individual communication terminals.

[0022] Also, the "security zone" refers to an occupied space divided based on the doors for entering the building site, automatic opening and closing doors for entering the entrance, automatic opening and closing doors for taking the elevator, and doors for entering the exclusive area. Therefore, the occupied space can be singular or plural.

[0023] Also, "gate" refers to an opening and closing body for shielding a building. Also, the "locking device" includes not only an electric lock equipped with a cylinder lock or a thumb turn lock in the lock body and capable of being mechanically and electrically locked and unlocked, but also a driving device including a driving motor, power transmission means, etc., and opening the shielding opening and closing body in the horizontal or vertical direction by the driving force of the driving motor. Therefore, the "operation" here includes the case where the shielding opening and closing body is in a stationary state and the locking state of the locking means for the so-called dead bolt is released, the case where the dead bolt moves in the unlocking direction, and the case where the shielding opening and closing body moves in the opening direction by the driving force of the driving motor. Also, generally, in the case of an apartment building, there are a gate for the common part used for the entrance and a gate for the exclusive part corresponding to the individual building ownership, so there are also a first authentication system for the gate for the common part and a second authentication system corresponding to the gate for the exclusive part. Further, the case of "when the registered key information cannot be used" generally refers to the case where the use of the key information is prohibited, such as when the key information with a usage period is not updated, when the use of the key information is stopped, when the key information is changed, or when the key information is erased. In a narrow sense, it refers to the case where the key information is erased.

Advantages of the Invention

[0024] When the communication terminal possessed by a former resident who has left the building loses the right to use the key account, preferably, the authentication system erases the registered key information registered in its storage unit, and the server collectively manages the erased information, so that the communication terminal cannot use the key account recorded in its storage unit.

[0025] In addition, the server records information about the unusable key accounts of communication terminals owned by former residents who have removed their devices from the building in a list of prohibited uses in its storage. For example, if a resident located away from the building remotely operates a communication terminal to answer visitors or allow delivery services to enter, and uses the server to instruct a common area's automatic door to open, or to instruct a private unit's lock to unlock, under the authority of their key account, the server can determine whether the communication terminal is legitimate or illegitimate. This also applies when the server distributes key accounts (keys) to communication terminals. Furthermore, by eliminating the need for blacklist authentication between terminals, the building's gate management system can be simplified. Moreover, if the security zone includes both private and common areas, and there are multiple security zones within the common areas, the key information recorded in the storage of all authentication systems installed in the common areas can be disabled, further preventing unauthorized use of the security zones in the common areas.

[0026] The invention of the method has the same effect as a building gate management system, and depending on its configuration, it can capture a two-dimensional code with the camera of a communication terminal carried by a building resident, allowing for easy and rapid access to the server and simple use of the system of the present invention. The invention of the program also has the same effect as a building gate management system. [Brief explanation of the drawing]

[0027] Figures 1 to 4 are explanatory diagrams showing the first embodiment of the present invention. Figure 5 is an example of the method of the present invention. [Figure 1] A conceptual diagram showing the overall structure of management system X. [Figure 2] A block diagram showing the configuration of communication terminal 4. [Figure 3] A schematic diagram showing the configuration of authentication system 5. [Figure 4] A schematic diagram showing the configuration of Server 7. [Figure 5] A simple step diagram of the invention of the method. [Figure 6] An explanatory diagram showing a third embodiment of the present invention. [Figure 7] A schematic diagram illustrating the technical concept of the present invention. [Modes for carrying out the invention]

[0028] Figures 1 to 4 are explanatory diagrams of the building gate management system X (hereinafter also referred to as "management system X") according to the first embodiment of the present invention. Figure 1 is a conceptual diagram showing the overall structure of management system X.

[0029] <Basic overall structure> In Figure 1, 1 is a security zone of one or more buildings, 2 is one or more gates installed in the security zone, 3 is a locking device for the gate (electric lock, automatic opening / closing door, automatic opening / closing shutter, etc.) installed on the gate itself or near the gate (door frame, wall), 4 is a communication terminal that records key accounts A for opening and closing the gate (e.g., authority to unlock an electric lock, authority to open an automatic opening / closing door, etc.), 5 is an authentication system that compares the key account with registered key information R and activates the locking device 3 for the gate when the registered key information R and key account A match, 6 is a network to which the communication terminal 4 and the authentication system 5 are connected, respectively, and 7 is a server that connects to the authentication system 5 via the network 6 and manages the key account A in its storage. In the first embodiment, the key account A managed by the server 7 can be distributed to the communication terminal 4 via the network 6.

[0030] <Configuration of communication terminal 4> Figure 2 is a block diagram showing the configuration of the communication terminal 4. The communication terminal 4 is a portable information processing terminal such as a smartphone or tablet that is carried by people passing through gate 2 of security zone 1 (for example, building residents, people who have been given a key account by residents, hotel guests, etc.) and used to operate the gate's locking device 3 (unlocking, locking, opening and closing).

[0031] Therefore, the communication terminal 4 includes a terminal control unit 10, a touch panel 11 as an operation unit and display unit, a storage unit 12, a registration unit 12a having a mode switching function for new registration, update registration, change registration, and deletion registration of key account A, a key account identification unit 15 for extracting a copy of the key account recorded in the storage unit, a plurality of communication units 13 (13a, 13b) for receiving and transmitting key accounts, various switches (not shown), a camera function, and the like. However, the terminal control unit 10 has a key account A (authority for the electronic key) for opening and closing the gate recorded in its storage unit 12. The first communication unit 13a of the communication unit 13 includes a key account receiving means 14 that obtains the key account A from the server 7 and passes the key account A to the registration unit 12a. On the other hand, the second communication unit 13b of the communication unit 13 includes a key account transmitting means (unlocking request means) 16 that uses the key account A, to which identification information such as gate identification information, automatic lock device identification information, control unit identification information for the automatic lock device, and server source identification information is appropriately linked via a key account identification unit 15, and requests the operation of the automatic lock device 3.

[0032] In addition, the terminal control unit 10 controls the operation of the communication terminal 4 based on a program, and the touch panel 11 displays numerous icons, etc. Touching each icon brings up various screens.

[0033] Therefore, in the embodiment of the present invention, the key account A for opening and closing the gate is downloaded from the server 7 via the network (e.g., the internet) 6 and written to the storage unit 12 via the registration unit 12a. The key account A can also be obtained by the communication terminal from the authentication system via communication means (wireless) (the invention of the method described later). For this reason, the communication method of the second communication unit 13b of the communication unit 13 is a short-range communication unit such as Bluetooth® or NFC. The communication terminal 4 is preferably a high-performance, multi-functional smartphone such as 4G or 5G.

[0034] <Configuration of the authentication system> Figure 3 is a schematic diagram showing the configuration of the authentication system. In Figure 3, 20 is the control unit, 21 is the key information registration unit as a storage unit, 22 is the key information deletion means for deleting key account A registered in the key information registration unit, 23 is the unlocking authentication means for verifying whether key account A and registered key information R match, 24 is the unlocking request means for requesting unlocking or opening / closing signals from the automatic locking device 3 for gate 2, 25 is the first communication unit that communicates with the server 7, 26 is the second communication unit that communicates key account A and deletion signals with the communication terminal 4, 27 is the input / output unit, and 28 is an external device (e.g., a laptop computer) for setting and deleting key information.

[0035] The external device 28 is used, for example, when a new resident moves into a private unit in an apartment building, which is an example of a building's security zone. Before the server distributes the key account to the communication terminal 4, the administrator or a qualified key maintenance contractor registers the new key information corresponding to the key account in the key information registration unit 21. Therefore, in this embodiment, when a contractor sets new key information in the key information registration unit 21 via the external device 28, the authentication system 5 notifies the server 7 from the first communication unit 25 that the new key information has been registered. When the server 7 receives the notification, it registers it in its storage unit 33, as will be described later.

[0036] Incidentally, if the external device 28 is, for example, a laptop computer or tablet terminal, it functions as an external command device for the authentication system 5. Therefore, although not specifically shown in the figures, it has various files in its external command storage unit, such as a registration file for registering new key information, a change file for changing a registered key account to another key account, a prohibition file for prohibiting the use of a registered key account, a deletion file for deleting a registered key account, and a key account distribution file. It also has an external command communication processing unit for communicating with the authentication system 5. Furthermore, it has a control unit that controls the operation of each component such as the external command storage unit and the external command communication processing unit, and also executes the transmission of various signals and information between each component. Therefore, for example, in an embodiment in which the authentication system 5 includes the external device 28, the authentication system 5 plays the role (function) of an information presentation device side communication device that presents information about key accounts to the server 7.

[0037] Therefore, the authentication system 5 comprises at least an automatic locking device 3 for gate 2, a verification unit (unlocking authentication means) 23 for determining whether a key account is available, a control unit 20 for controlling the automatic locking device 3, a key information registration unit 21 as a storage unit, a plurality of communication units (25, 26) for communicating with the communication terminal 4 and the server 7, and an input / output unit 23, and preferably also includes the external equipment 28.

[0038] Then, if the registered key information R recorded by the key information registration unit 21 is newly registered, updated, or deleted by an external device 28 for setting and deleting key information, the control unit 20 outputs an unavailable information signal (preferably a deletion signal) to the server 7 or to the communication terminal 4 indicating that key account A can no longer be used, at least at the time of the deletion registration (for example, when an occupant moves out, just before a new occupant moves in, or at an appropriate time between the time of departure and the time of arrival). In the first embodiment, the unavailable information is notified to the server 7 via the network from the first communication unit 25 of the authentication system 5.

[0039] Incidentally, when the unlocking authentication means 24 is set by the key account A from the communication terminal 4 and the external device 28, and the registered key information R registered in the key information registration unit 21 matches, an unlocking signal is sent to the automatic locking device 3 by wire or wireless connection. As a result, if the automatic locking device 3 is an electric lock, for example, a cam member or gear member is driven in the unlocking direction by the power of the driving means, and as a result, the deadbolt is pulled back to the lock case side by the pull tab. The automatic locking device 3 is not particularly limited, but for example, in the case of an electric lock, it can be locked and unlocked mechanically and electrically.

[0040] Furthermore, the invention described in Patent Document 2, Japanese Patent Publication No. 2015-161163, was proposed by the applicant, and the technology related to the authentication system 5 is described in detail, for example, along with Figure 2. Here, a detailed explanation of the authentication system 5, which can be considered publicly known or well-known, will be omitted.

[0041] <Configuration of the server> Figure 4 is a schematic diagram showing the configuration of Server 7. Server 7 is preferably a cloud with a large storage capacity and includes a communication unit 31, a control unit 32, a storage unit 33, an operation unit 34, a display unit 35, etc. This section describes the communication unit 31, the control unit 32, the storage unit 33, the management method of key accounts, the deletion method of key accounts, the distribution destination of key accounts, and the distribution of key distribution applications (hereinafter referred to as "key distribution applications").

[0042] First, the communication unit 31 is a communication interface that communicates with the communication terminal 4 and the authentication system 5, and securely communicates with the communication terminal 4 and the authentication system 5 via a communication network such as a dedicated line or the internet using SSL / TLS, IPSec, etc. Preferably, the communication unit 31 conforms to a communication protocol such as a dedicated protocol or the Internet protocol, depending on the wide-area communication network to which it is connected.

[0043] Next, the control unit 32 processes various types of information, as is well known. Furthermore, the control unit 32 includes a processor and peripheral circuits, and the processor executes the code of the computer program stored in the memory unit 33 to realize the various operations performed by the communication terminal 4.

[0044] Furthermore, the control unit 32, as a functional module implemented by a computer program, includes an address information issuing means 36 that issues at least address information to the communication terminal 4, a key account issuing means 37 that links the address information and other identification information (gate identification information, lock ID, identification information of the communication terminal, identification information of the control unit, etc.) to a key account and issues it to the communication terminal 4, and an unavailable information registration means 38 that registers unavailable information in the second data list 33b of the storage unit 33 (described later) when it is received via the communication unit 31 due to a trigger from the authentication system 5.

[0045] Next, the storage unit 32 stores the code of the computer program executed on the server 7 and various data, and has arbitrary semiconductor memory such as RAM and ROM. The storage unit 12 has a first data list 33a for storing and managing key accounts for distribution to the communication terminal 4, and a second data list (list of prohibited use) 33b for storing and managing records of key accounts that have been distributed to the communication terminal 4 and for which the authentication system 5 has notified that they are unavailable, and which have been deactivated or deleted. The second data list 33b is a measure to prohibit the reuse of distributed key accounts.

[0046] Although the table-formatted linking information is not specifically illustrated, server 7 has a linking file 33c for associating user information such as the name of the facility used by the user (new resident, overnight guest, etc.), such as an apartment, detached house, lodging facility, nursing home, care facility, etc., user name, contact information, and period of use; cade information corresponding to each facility name managed by server 7; lock information such as the lock ID of the automatic locking device (e.g., electric lock) 3 installed on the cade; server address information such as the URL which is the source identification code linked to the ID of the automatic locking device 3; and information such as the ID and password of the communication terminal with a large number of key accounts stored and managed in the first data list 33a.

[0047] The first data list 33a and the second data list 33b are, so to speak, matrix-like identification key lockers, with each piece of information presented in a table format.

[0048] Next, we will describe how the communication terminal 4 accesses the server 7. A preferred embodiment is a method in which the camera of the communication terminal 4 captures a two-dimensional code. For example, a two-dimensional code can be printed on the flat surface of a building wall (gate wall, wall near the gate, etc.) as real estate, or on various items (packaging boxes, postcards, cards, posters, calendars, stands, etc.) as movable property. When the two-dimensional code is read using the camera of the communication terminal 4, a website display screen immediately appears, and touching that display screen allows for easy and rapid connection to the server. Of course, the URL (information ready for transmission) can also be obtained by reading a two-dimensional code that temporarily appears on a television screen using the camera of the communication terminal 4. There are various methods for obtaining it.

[0049] Therefore, if the building gate management system X of the present invention uses a "key distribution application," it can download the key distribution application linked to a URL from the server 7 to the communication terminal 4 held by the user, install the key distribution application so that it can be used, and then transmit the necessary information about the user to the server 7 based on the application format.

[0050] However, in the first embodiment, if the authentication system 5 becomes unable to use its registered key information (e.g., deleted, modified, deactivated, etc.), this acts as a "trigger" to send information that key account A is unavailable to the server 7, and the server 7 stores and manages the information based on the unavailable information in the second data list (list of prohibited items) 33b of the storage unit 33. The server 7 then sends a signal (preferably a deletion signal) to the communication terminal 4 via the network (local or wide-area communication network) once or multiple times, indicating that key account A can no longer be used.

[0051] Furthermore, it is preferable that the control signal be transmitted at least twice in total at different times (for example, immediately after a tenant moves out and can no longer use the security zone, immediately before a new resident moves in to use the security zone, and in between the two such instances).

[0052] Furthermore, when security zone 1 has at least a first security zone (e.g., common areas of a building) and a second security zone (e.g., private areas of a building), and either server 7 or authentication system 5 outputs an unavailability signal that prevents the use of a key account, the unavailability signal includes a first signal specifically for common areas that prevents the use of the gate to the first security zone, and a second signal separate from the first signal that prevents the use of the gate to the second security zone.

[0053] <Note> In a building gate management system, if a security zone consists of at least a first security zone and a second security zone, and the authentication system of the first security zone becomes unable to use registered key information due to a command signal from an external device or a command operation unit, the communication terminal may send a control signal to the server indicating that the key account is unavailable, and the server may record the unavailable information in its storage unit and then send the control signal to the authentication system of the second security zone. Conversely, if the authentication system of the second security zone becomes unable to use registered key information due to a command signal from an external device or a command operation unit, the communication terminal may send a signal to the server indicating that the key account is unavailable, and the server may record the unavailable information in its storage unit and then send the signal to the authentication system of the first security zone.

[0054] Furthermore, even within the common areas of the same building, security zones may exist in multiple locations, such as at the common entrance, elevator floor, or entrances to the parking lot or bicycle parking area. Similarly, within the private areas of the same building, if a resident owns multiple rooms (private areas), multiple security zones may exist.

[0055] Thus, if there are multiple security zones, and the authentication system of any one of the security zones becomes unable to use the registered key information due to a command signal from an external device or a command operation unit, the communication terminal may, based on this unavailability, send a signal of the key account unavailability information recorded by the communication terminal to the server. The server may then record the unavailability information in its storage unit and then send the key account unavailability information signal to the authentication system of at least one of the other security zones.

[0056] Furthermore, in a building's gate management system, if a former resident of the building has registered multiple key details in the authentication system, and the authentication system becomes unable to use all of the registered key details due to a command signal from an external device or control unit, the system will send a signal to the server indicating that the key account is unavailable, based on the condition that the key details are unavailable.

[0057] The claim regarding the "program" is as follows: "A program that causes the computer of a server used in a gate management method for a building, comprising: a communication terminal that records key accounts for opening and closing gates installed in a security zone; an authentication system that compares the key accounts with registered key information and activates a gate locking device if the result of the comparison is valid; a network to which the communication terminal and the authentication system are respectively connected; and a server that connects to the authentication system via the network and manages the key accounts, wherein the program causes the computer, upon receiving information from the authentication system indicating that the registered key information corresponding to the key account recorded in the communication terminal held by a former resident who has left the building is unavailable, to execute a process to record the unavailable information in the storage's prohibited list." [Examples]

[0058] Here, we will first describe the invention of the method corresponding to the first embodiment (apparatus) with reference to Figure 5. Note that the terms and reference numerals used will be those of the first embodiment.

[0059] The invention of the method is a building gate management method Y comprising: a communication terminal that records a key account A for opening and closing a gate provided in security zone 1; an authentication system 5 that compares the key account with registered key information and activates a gate locking device 3 when the registered key information and the key account match; a network 6 to which the communication terminal 4 and the authentication system 5 are respectively connected; and a server 7 that connects to the authentication system via either the authentication system or the network and manages the key account.

[0060] However, a building gate management method comprising: a communication terminal that records key accounts for opening and closing gates installed in a security zone; an authentication system that verifies the key accounts against registered key information and activates a gate locking device if the verification result is valid; a network to which the communication terminal and the authentication system are connected; and a server that connects to the authentication system via the network and manages the key accounts, wherein The communication terminal includes a first communication step (b) in which it obtains a key account via either the authentication system or the network; a registered key information unavailability execution step (c) in which, by input execution by either an external device or a command operation unit, the authentication system renders the registered key information corresponding to the key account recorded in the communication terminal unavailable; a second communication step (d) in which, conditional on the registered key information being unavailable, the authentication system transmits information on the unavailability of the key account recorded in the communication terminal of a former resident who has moved out of the building to the server; and an unavailability information storage step (e) in which the server, having obtained the unavailability information, registers the unavailability information in its storage unit based on the unavailability information.

[0061] As described above, when a vendor sets new key information in the key information registration unit 21 of the authentication system 5 via an external device 28, either wired or wirelessly, the authentication system 5 notifies the server 7 from the first communication unit 25 that the new key information has been registered. When the server 7 receives the notification, it registers it in the first data list (list of new registrations) 33b of its storage unit 33 (the process of registering the new key information on the server side).

[0062] However, the building gate management method Y may include a key account acquisition step (a) in which the first communication terminal reads a two-dimensional code in advance and accesses a server 7 on the network 6, and obtains a key account for opening and closing the gate of security zone 1, which is associated with a source identification code (URL), from the server 7 via the network 6.

[0063] Furthermore, if the communication terminal 4 consists of a first communication terminal held by the departing tenant and a second communication terminal recorded by the new tenant, the third communication step (f) may include a fourth communication step (g) in which one or more new key accounts usable to the second communication terminal are distributed by the third communication step (f) between the time the key account of the first communication terminal becomes unusable and the time immediately before the new tenant first passes through the gate of security zone 1 (this may also be a constituent requirement).

[0064] Next, Figure 6 shows a modified example (third embodiment) of the first embodiment of the present invention. The terms and reference numerals used are those of the first embodiment. The main difference between this third embodiment and the first embodiment is that the command operation unit 28A is directly installed in the authentication system 5 itself, instead of the external device 28 of the first embodiment.

[0065] The command operation unit 28A is provided as a touch panel or multiple operation buttons on the hardware (enclosure) that constitutes the authentication system 5. The command operation unit 28A sends command signals to the control unit 20 by operating the touch panel or multiple operation buttons, and can change the registered key information to one of three states: change, disable use, or delete. Therefore, it may also be an information processing device having a CPU (not shown).

[0066] Finally, Figure 7 is a schematic diagram illustrating the technical concept of the present invention. Figure 7 shows that when sending a command signal to the authentication system 5 located in security zone 1, which includes the site, either the external device 28 shown in Figure 3 or the command operation unit 28A (including the information processing device) can be used. In short, at the site in security zone 1, at least the registered key information of the authentication system 5 is set, changed, etc. Details of Figure 7 are omitted here as they would be redundant. [Industrial applicability]

[0067] This invention can be used in the field of building gate management systems. [Explanation of Symbols]

[0068] X... Building gate management system, Y...Gate management method for buildings, 1...Security zone, 2...Gate, 3…Automatic locking device, 4…Communication terminals, 5…Authentication system, 6…Network, 7... Server, 28...External equipment, 28A...Command operation section, A... Key account, R...Registered key information, a... Key account acquisition process, b...first communication process, c...Unusable execution process, d...second communication process, e…Utilizing unauthorized information storage projects, f…Third Communications Engineering, g…4th Communication Engineering.

Claims

1. A building gate management system comprising: a communication terminal that records key accounts for opening and closing gates located in a security zone; an authentication system that verifies the key accounts against registered key information and activates a gate locking device if the verification result is valid; a network to which the communication terminal and the authentication system are connected; and a server that connects to the authentication system via the network and manages the key accounts, wherein The building gate management system is characterized in that the authentication system is located within the security zone and, upon receiving a command signal from either an external device or a command operation unit that can change, disable, or delete the registered key information, determines that the registered key information corresponding to the key account recorded on the communication terminal of a former resident who has left the building has become unavailable. Using this determination as a trigger, the authentication system transmits information that the registered key information is unavailable to the server, and the server records the unavailable information in its storage unit for centralized management.

2. A building gate management system according to claim 1, wherein the security zone includes both a private area and a common area, and the authentication system includes both an authentication system for the private area and an authentication system for the common area, and a former resident who has moved out of the building has registered multiple key information in the authentication system, and the authentication system for the common area, upon receiving the command signal from either the external device or the command operation unit, determines that all of the multiple registered key information have become unavailable, and triggers this determination, the authentication systems for the private area and the common area transmit the information that the key account is unavailable, which is recorded by the communication terminal, to the server.

3. A building gate management system according to claim 2, characterized in that the server records the unavailable information in a storage unit and then transmits the unavailable key account information to the communication terminal of a former resident who has moved out of the building.

4. A building gate management method comprising: a communication terminal that records key accounts for opening and closing gates installed in a security zone; an authentication system that verifies the key accounts against registered key information and activates a gate locking device if the verification result is valid; a network to which the communication terminal and the authentication system are connected; and a server that connects to the authentication system via the network and manages the key accounts, wherein A building gate management method comprising: a first communication step (b) in which the communication terminal obtains a key account via either the authentication system or the network; a registered key information unavailability execution step (c) in which the authentication system renders the registered key information corresponding to the key account recorded in the communication terminal unavailable upon input execution by either an external device or a command operation unit, provided that the communication terminal is located within the security zone; a second communication step (d) in which the authentication system transmits information on the unavailability of the key account recorded in the communication terminal of a former resident who has moved out of the building to the server, provided that the registered key information is unavailable; and an unavailability information storage step (e) in which the server that has obtained the unavailability information registers the unavailability information in its storage unit and manages it collectively.

5. A program to run on the computer of a server used in a gate management method for a building, comprising: a communication terminal that records key accounts for opening and closing gates installed in a security zone; an authentication system that verifies the key accounts against registered key information and activates a gate locking device if the verification result is valid; a network to which the communication terminal and the authentication system are connected; and a server that connects to the authentication system via the network and manages the key accounts. A program that causes the computer, upon receiving information from the authentication system indicating that the registered key information corresponding to the key account recorded on the communication terminal owned by a former resident who has moved out of the building is unavailable, to record the unavailable information in a list of items prohibited from use in the storage unit and manage them collectively.