Information Processing Apparatus, Information Processing System, Information Processing Method, and Program
Patent Information
- Application Number
- JP2024551156
- Authority / Receiving Office
- JP · JP
- Patent Type
- Applications
- Current Assignee / Owner
- Filing Date
- 2025-04-16
- Publication Date
- 2025-06-27
- Estimated Expiration
- 2042-10-20
AI Technical Summary
Existing systems for authenticating visitors are time-consuming and require centralized management of facial data, making them inefficient for verifying identities in real-time scenarios such as home delivery and home visit services.
An information processing device and system that issues access information, receives biometric data from a terminal, and verifies the identity of affiliated persons using stored biometric information, allowing remote authentication and reducing fraud by comparing facial feature information.
Enables efficient and secure remote verification of identities, preventing impersonation and ensuring a safe service provision environment by automating the authentication process and reducing the need for complex data management.
Abstract
Description
Information processing device, information processing system, information processing method, and non-transitory computer-readable medium storing a program
[0001] The present disclosure relates to an information processing device, an information processing system, an information processing method, and a non-transitory computer-readable medium on which a program is stored.
[0002] Various technologies have been proposed to prevent the misrepresentation of visitors and other interlocutors. For example, Patent Document 1 discloses an access control system that determines the legitimacy of visitors to a facility using both a pre-assigned visitor identification code and the visitor's facial photograph data. In Patent Document 1, when a visitor sends information about a visitor to a central processing unit when registering a visit request, the management control unit of the central processing unit first determines a visit request registration number for the visit request and a visitor identification code (two-dimensional code) to be assigned to the visitor. The management control unit then sends an email to the visitor's mobile phone and transmits the two-dimensional code.
[0003] The management control unit also sends a request to send the visitor's facial photograph data via email. Upon receiving the request from the central processing unit, the visitor takes a photograph of themselves using the camera function of their mobile phone and sends it to the central processing unit. Upon receiving the facial photograph data, the central processing unit creates a visit case data file.
[0004] When a visitor arrives, the visitor presents the two-dimensional code stored in their mobile phone to the camera. If it is determined that a corresponding visit case data file exists based on the two-dimensional code, the camera takes a photograph of the visitor's face, which is then collated and compared with the facial photograph data of visitors pre-registered in the visit case data file to determine whether the visitor matches the pre-registered visitor.
[0005] JP 2011-48817 A
[0006] In the method of Patent Document 1, the person making the visit must register information about the visitor related to the visit, which is time-consuming. Also, the facial photograph data sent by the visitor must be managed by a central processing unit.
[0007] In view of the above-mentioned problems, the object of the present disclosure is to provide an information processing device, an information processing system, an information processing method, and a program that can eliminate the hassle involved in authenticating face-to-face parties, including visitors.
[0008] An information processing device according to one aspect of the present disclosure includes an issuing unit, a querying unit, and an output unit. The issuing unit issues access information in response to a request from a referenced terminal and transmits the access information to at least one of the referenced terminal and a query requester terminal different from the referenced terminal. When the querying unit receives access based on the access information from the query requester terminal and query data of the referenced terminal, it queries the query data against member data pre-stored in a predetermined storage device and receives the query result. The output unit outputs the query result to the query requester terminal.
[0009] An information processing system according to one aspect of the present disclosure includes an information processing device and an inquired party terminal certified by the information processing device. The information processing device includes an issuing unit, an inquiry unit, and an output unit. The issuing unit issues access information in response to a request from the inquired party terminal and transmits the access information to at least one of the inquired party terminal and an inquiry requester terminal different from the inquired party terminal. When the inquiry unit receives access based on the access information from the inquiry requester terminal and inquiry data of the inquired party, the inquiry unit queries the inquiry data against member data pre-stored in a predetermined storage device and receives the inquiry result. The output unit outputs the inquiry result to the inquiry requester terminal.
[0010] In an information processing method according to one aspect of the present disclosure, a computer executes the following processes: A process of issuing access information in response to a request from a referenced terminal and transmitting the access information to at least one of the referenced terminal and a reference requester terminal different from the referenced terminal; A process of, when receiving access based on the access information from the reference requester terminal and reference data of the referenced person, checking the reference data against member data stored in advance in a predetermined storage device and receiving the reference result; A process of outputting the reference result to the reference requester terminal.
[0011] A program according to one aspect of the present disclosure causes a computer to execute the following processes: A process of issuing access information in response to a request from a referenced terminal and transmitting the access information to at least one of the referenced terminal and a reference requester terminal different from the referenced terminal; A process of, when receiving access based on the access information from the reference requester terminal and reference data of the referenced person, comparing the reference data with member data stored in advance in a predetermined storage device and receiving the reference result; A process of outputting the reference result to the reference requester terminal.
[0012] The present disclosure can eliminate the hassle involved in authenticating a face-to-face person.
[0013] 10 is a block diagram showing the configuration of an information processing device according to embodiment 1. FIG. 11 is a flowchart explaining the flow of an information processing method according to embodiment 1. FIG. 12 is a block diagram showing the overall configuration of an information processing system according to embodiment 2. FIG. 13 is a block diagram showing the configuration of the entrance / exit management device of FIG. 3. FIG. 14 is a block diagram showing the configuration of the inquired person terminal of FIG. 3. FIG. 15 is a block diagram showing the configuration of the inquiry requester terminal of FIG. 3. FIG. 16 is a sequence diagram showing the flow of inquiry processing of an inquired person in the information processing system according to embodiment 2. FIG. 17 is a diagram showing an example of a screen displayed on the inquiry requester terminal. FIG. 18 is a block diagram showing the overall configuration of an information processing system according to embodiment 3. FIG. 19 is a block diagram showing the configuration of the management device of FIG. 9. FIG. 10 is a block diagram showing the overall configuration of an information processing system according to embodiment 4.
[0014] Hereinafter, embodiments of the present disclosure will be described in detail with reference to the drawings. In each drawing, the same or corresponding elements are designated by the same reference numerals, and for clarity of explanation, duplicate explanations will be omitted as necessary.
[0015] In delivery services, home visit services, and the like, there is a demand for technology that can verify whether the identification presented by a visitor is authentic in order to prevent visitor impersonation. Meanwhile, organizations such as companies routinely verify the identity of members entering their facilities by using an entrance / exit management device or the like. The embodiment relates to technology that uses authentication data of members held by the organization to verify their identity to a third party.
[0016] Embodiment 1. Fig. 1 is a block diagram showing the configuration of an information processing device 1 according to embodiment 1. The information processing device 1 is a device that, for example, verifies the identity of a member of an organization that provides home visit services, delivery services, etc., when the member visits a customer (third party). Members include employees of the organization as well as service personnel who undertake services provided by the organization. Examples of services provided by members include delivery of products purchased by customers, inspection of electricity, water, and fire extinguishers, door-to-door sales, door-to-door visits by police officers, and taxi driving.
[0017] Each organization to which members belong manages member data related to each member. In the following description, it is assumed that the information processing device 1 authenticates the identity of each member through biometric authentication using the member's biometric information. The member data includes the member's authentication data (biometric information). The biometric information may be data (feature amounts) based on physical characteristics unique to an individual, such as face, fingerprint, voiceprint, veins, retina, or iris. Various technologies using captured images can be applied to biometric authentication using biometric information.
[0018] The member data may also include attribute data such as the name of the organization to which the member belongs, the organization's location, telephone number, and the member's name, age, gender, etc. The information processing device 1 can identify the attribute data related to the member based on the result of the member's identification.
[0019] A member of an organization is the "inquired person" whose identity is verified, and a customer is the "inquiry requester" who requests identification from the member. The "inquired person" is the person who meets the customer face-to-face, either directly or indirectly via a monitor, for example. The terminal owned by the inquired person is referred to as the inquired person terminal, and the terminal owned by the person requesting the inquiry is referred to as the inquiry requester terminal. In the following explanation, the inquired person before their identity is verified will be referred to as the "person met," and the inquired person whose identity has been verified will be referred to as the "member."
[0020] The information processing device 1 performs various communications with external devices via a network. The network may be wired or wireless, and the type of communication protocol may be any. Specifically, the information processing device 1 is connected via the network to an inquired party terminal and an inquiry requester terminal (not shown). The inquired party terminal and the inquiry requester terminal may be mobile terminals owned by an affiliate and a customer, respectively. The inquired party terminal and the inquiry requester terminal may be mobile terminals such as a mobile phone, portable PC, tablet terminal, or smartphone.
[0021] 1, the information processing device 1 mainly includes an issuing unit 11, a querying unit 12, and an output unit 13. The issuing unit 11 issues access information in response to a request from the inquired party terminal, and transmits the access information to at least one of the inquired party terminal and the query requester terminal.
[0022] When the access information is sent to the inquired party's terminal, the person meeting the customer displays the access information on their own inquired party's terminal and presents it to the customer. The customer uses their own inquiry requester's terminal to read the access information displayed on the inquired party's terminal and accesses the information processing device 1 based on the access information. When the access information is sent to the inquiry requester's terminal, the customer can access the information processing device 1 based on the received access information.
[0023] Furthermore, the customer uses the inquiry requester terminal to photograph the biometric information of the person they are meeting with and provides the photographed image data as inquiry data to the information processing device 1. For example, a facial image of the person they are meeting with can be acquired by photographing the person with a camera mounted on the inquiry requester terminal. The inquiry requester terminal can transmit this image data to the information processing device 1 via a network. The inquiry requester terminal can also extract features contained in the photographed image data and provide facial feature information to the information processing device 1 as inquiry data.
[0024] When the inquiry unit 12 receives access based on the access information from an inquiry requester terminal different from the inquiry recipient terminal and also receives the inquiry data of the inquiry recipient, it compares the inquiry data with the member data stored in advance in a predetermined storage device and receives the inquiry result. The output unit 13 outputs the inquiry result to the inquiry requester terminal. In this way, by outputting the inquiry result to the inquiry requester terminal, the information processing device 1 can verify the identity of the person meeting with the customer.
[0025] For example, the query unit 12 performs facial authentication on the acquired facial image using facial feature information of the member stored in the storage device. If authentication is successful, the query unit 12 can also identify attribute data of the member related to the facial authentication. The identified attribute data may be included in the query result sent to the query requester terminal. If the query result includes attribute data, an electronic business card with a facial image of the identified member may be displayed on the query requester terminal.
[0026] Next, the processing performed by the information processing device 1 will be described with reference to Fig. 2. Fig. 2 is a flowchart showing an information processing method performed by the information processing device 1 according to embodiment 1. First, the information processing device 1 issues access information in response to a request from the inquired party terminal and transmits it to the inquired party terminal (S11).
[0027] Next, when the information processing device 1 receives access based on the access information from a query requester terminal different from the referenced terminal and also receives the query data of the referenced person, it compares the query data with registered person data stored in advance in a predetermined storage device and receives the query result (S12). Note that the biometric information of the person to be met may be generated automatically by the query requester terminal or may be generated in response to input by the customer. Then, it outputs the query result to the query requester terminal (S13).
[0028] As described above, the information processing device 1 according to the first embodiment can remotely verify the identity of the person who will be visiting the customer, eliminating the hassle of authenticating the person who will be visiting the customer. Furthermore, the information processing device 1 can prevent fraud, such as impersonation of a member of the company by a person who will be visiting the customer to provide a service, thereby realizing a safe service provision environment.
[0029] The information processing device 1 includes a processor, a memory, and a storage device (not shown). The storage device stores a program that causes a computer to execute each process of the information processing method according to the first embodiment. The processor loads the program from the storage device into the memory and executes the program. In this way, the processor realizes the functions of the issuing unit 11, the query unit 12, and the output unit 13.
[0030] Each component of the information processing device 1 may be realized by dedicated hardware. Furthermore, some or all of the components of each device may be realized by general-purpose or wired circuits, processors, etc., or a combination of these. These may be configured by a single chip, or by multiple chips connected via a bus. Some or all of the components of each device may be realized by a combination of the above-mentioned circuits, etc., and programs. Furthermore, a CPU (Central Processing Unit), a GPU (Graphics Processing Unit), an FPGA (Field-Programmable Gate Array), a quantum processor (quantum computer control chip), etc., may be used as the processor.
[0031] Furthermore, when some or all of the components of the information processing device 1 are realized by multiple information processing devices, circuits, etc., the multiple information processing devices, circuits, etc. may be centrally or distributed. For example, the information processing devices, circuits, etc. may be realized as a client-server system, a cloud computing system, or the like, in a form in which each is connected via a communication network. Furthermore, the functions of the information processing device 1 may be provided in a SaaS (Software as a Service) format.
[0032] Embodiment 2. Embodiment 2 is a specific example of the above-described embodiment 1. Fig. 3 is a block diagram showing the overall configuration of an information processing system 100 according to embodiment 2. The information processing system 100 includes an entry / exit management device 10 and an inquired person terminal 20 certified by the entry / exit management device 10, and performs identity verification of the inquired person based on a request from an inquiry requester terminal 30 under predetermined conditions. The entry / exit management device 10, the inquired person terminal 20, and the inquiry requester terminal 30 are each connected via a network N. Here, the network N is a wired or wireless communication line, for example, the Internet.
[0033] The information processing system 100 is accessed from an inquiry requester terminal 30 possessed by a person making an inquiry (a customer) based on access information issued in response to a request from an inquiry recipient terminal 20 possessed by the person being inquired (a member), and is a system that authenticates the identity of the person being inquired when inquiry data of the person being inquired is received. Here, an example of performing face authentication using a face image, which is an example of biometric information, as the inquiry data will be described.
[0034] <Entry / Exit Management Device 10> The entry / exit management device 10 is a device that can manage the working status of members belonging to an organization, including coming to work, going out, returning to work, and leaving work, by managing the entry and exit of members to and from a facility. The entry / exit management device 10 includes the functional configuration of the information processing device 1 described above. The entry / exit management device 10 performs information registration processing, inquiry processing (information processing method according to embodiment 2) to verify the identity of the person being inquired (person meeting), and processing to identify attribute data of members. The entry / exit management device 10 performs identity authentication using a photographed image of the person meeting, and outputs the inquiry result to the inquiry requester terminal 30.
[0035] Fig. 4 is a block diagram showing the configuration of the entrance / exit control device 10 of Fig. 3. The entrance / exit control device 10 includes a camera 110, a storage unit 120, a memory 130, a control unit 140, and a communication unit 150. Note that the entrance / exit control device 10 may be configured with multiple servers, and each functional block may be realized by multiple computers.
[0036] The camera 110 is, for example, a photographing device that is installed within the organization's facilities and photographs members entering and leaving the premises under the control of the control unit 26. The memory unit 120 is an example of a storage device such as a hard disk or flash memory. The memory unit 120 stores a program and an information DB 121. The program is a computer program that implements part of the registration and inquiry processes for members' facial images and attribute data. The information DB 121 is a database that manages member data including member authentication data and attribute data. The information DB 121 can manage the authentication data and attribute data by linking them to, for example, an identification number individually assigned to each member.
[0037] The memory 130 is a volatile storage device such as a RAM (Random Access Memory), and is a storage area for temporarily storing information during operation of the control unit 140. The communication unit 150 is a communication interface with the network N.
[0038] The control unit 140 is a processor that controls each component of the entry / exit control device 10. The control unit 140 loads a program from the storage unit 120 into the memory 130 and executes the program. In this way, the control unit 140 realizes the functions of a registration unit 141, an issuance unit 142, a query unit 143, and an output unit 144.
[0039] The registration unit 141 registers the face image of the member captured by the camera 110 as authentication data, and also performs processing to link the input attribute data with the authentication data and register it in the information DB 121. These data may be transmitted from the inquired party terminal 20 carried by the member, which will be described later. For example, in order to register the facial feature information of the member, the registration unit 141 extracts features from a face area included in the image data and registers them in the information DB 121 as authentication data.
[0040] The issuing unit 142 issues access information in response to a request from the inquired party terminal 20 and transmits it to the inquired party terminal 20. The issuing unit 142 can generate code information that can be displayed as an image, such as a barcode or a two-dimensional code (QR code (registered trademark)), as the access information and transmit it to the inquired party terminal 20. The inquired party can present the received access information as an image on the inquiry requester terminal 30.
[0041] The inquiry requester terminal 30 can access the entry / exit management device 10 by reading the access information displayed on the inquired person terminal 20. The issuing unit 11 may also transmit the access information to the inquiry requester terminal 30. In this case, the inquiry requester terminal 30 can access the entry / exit management device 10 using the received access information. The inquiry requester terminal 30 also photographs the face of the person facing the other party and supplies the photographed image data (or feature amounts extracted from the image data) to the entry / exit management device 10 as inquiry data.
[0042] It is preferable that predetermined conditions are set in advance for the access information. These predetermined conditions include conditions related to access restrictions based on the access information from the inquiry requester terminal 30. Examples of conditions related to access restrictions include the validity period and valid number of times of the access information.
[0043] The predetermined condition may also be that the location information of the inquired person terminal 20 approximately matches the location information of the inquiry requester terminal 30 or is within a predetermined range. Alternatively, the predetermined condition may be that the inquiry requester terminal 30 accesses the entry control device 10 while the entry control device 10 is being accessed by the inquired person terminal 20. The entry control device 10 can be accessed based on the access information from the inquiry requester terminal 30 when the predetermined condition is met.
[0044] When the query unit 143 receives access based on the access information from a query requester terminal 30 different from the query recipient terminal 20 and also receives query data of the query recipient, the query unit 143 queries the member data stored in advance in a predetermined storage device and receives the query result. The output unit 144 returns the query result to the query requester terminal 30 that made the request.
[0045] Specifically, when the query unit 143 receives an authentication request for the inquired person from the query requester terminal 30, it extracts facial feature information from the facial image included in the authentication request. Then, the query unit 143 compares the facial feature information extracted from the facial image included in the facial authentication request with the authentication data in the information DB 121 to calculate the degree of match. If the degree of match of the facial feature information is equal to or greater than a threshold, the query unit 143 outputs a query result indicating that facial authentication was successful. Note that in this case, the query unit 143 may identify attribute data of the inquired person and further transmit the identified attribute data to the query requester terminal 30. The query unit 143 can output at least one of the query result and the attribute data.
[0046] If the degree of match of the facial feature information is less than the threshold, the query unit 143 generates a query result indicating that the facial authentication has failed. The output unit 144 returns the query result to the query requester terminal 30 via the network N.
[0047] The entrance / exit control device 10 may also create a meeting record indicating that the member met the customer when sending the inquiry result to the inquiry requester terminal 30. This allows the member to carry out their business activities fairly and impartially without violating social norms.
[0048] The control unit 140 may also receive an identification number of the inquired person from the inquired person terminal 20 and change the order of priority when comparing the inquiry data with the member data according to the received identification number. For example, the control unit 140 may store the member data corresponding to the received identification number in a cache, and when a query request is received from the query requester terminal 30, the member data stored in the cache may be given priority for matching with the inquiry data. This reduces the time required to authenticate the inquired person. The member data stored in the cache may also be deleted after a predetermined time has elapsed.
[0049] <Inquired person terminal 20> The inquired person terminal 20 is an information terminal that is carried and operated by an affiliated person who will be the inquired person (facing person), and transmits and receives data to and from the entry / exit management device 10 via the network N by wireless communication. The inquired person terminal 20 is a portable terminal such as a mobile phone, smartphone, or tablet terminal. Figure 5 is a block diagram showing the configuration of the inquired person terminal 20 of Figure 3.
[0050] The inquired person terminal 20 includes a camera 21, a storage unit 22, a memory 23, a communication unit 24, an input / output unit 25, and a control unit 26. The camera 21 is an imaging device that takes images under the control of the control unit 26. The storage unit 22 is an example of a storage device that includes a non-volatile memory such as a flash memory or an SSD (Solid State Drive). The storage unit 22 stores a program that implements processes including a process for requesting access information from the entrance / exit management device 10 and a process for displaying the obtained access information.
[0051] The memory 23 is a volatile storage device such as RAM (Random Access Memory), and is a storage area for temporarily storing information when the control unit 26 is operating. The communication unit 24 is a communication interface with the network N. The communication unit 24 may also establish a short-range wireless communication connection with the inquiry requester terminal 30 to communicate. Various standards for short-range wireless communication can be applied here, such as Bluetooth (registered trademark), BLE (Bluetooth Low Energy), and UWB (Ultra Wide Band).
[0052] The input / output unit 25 is, for example, a touch panel, and includes a display device and an input device. The control unit 26 is a processor that controls the hardware of the inquired person terminal 20. The control unit 26 loads a program from the storage unit 22 into the memory 23 and executes it. In this way, the control unit 26 realizes the functions of an access information request unit 261 and a display control unit 262.
[0053] The request unit 261 requests the entry / exit control device 10 to issue access information via the network N in accordance with the information input by the person being inquired. The issuing unit 11 can generate access information in accordance with the request and transmit it to the person being inquired terminal 20. The display control unit 262 causes the received access information to be displayed on the input / output unit 25. As will be described in detail later, the inquiry requester terminal 30 can read the access information displayed on the input / output unit 25 and access the entry / exit control device 10 based on the access information.
[0054] As described above, facial feature information of the person being inquired is registered in advance in the information DB 121 of the entrance / exit control device 10 as authentication data. In addition, attribute data of the person being inquired is also registered in advance in the information DB 121. The authentication data and attribute data are included in the member data. Note that an authentication device for performing facial authentication may be provided separately from the entrance / exit control device 10. In this case, the authentication data may be registered in the DB of the authentication device, and the authentication data and attribute data may be linked by an ID issued at the time of registration. The display control unit 262 can display the access information received from the entrance / exit control device 10 via the network N.
[0055] <Inquiry requester terminal 30> The inquiry requester terminal 30 is an information terminal carried and operated by a customer who is making an inquiry request, and transmits and receives data to and from the entry / exit management device 10 via the network N via wireless communication. The inquiry requester terminal 30 is a mobile terminal such as a mobile phone, smartphone, or tablet terminal. The inquiry requester terminal 30 may also be an intercom or surveillance camera installed in the home of the inquiry requester. The inquiry requester terminal 30 reads the access information displayed on the inquired person's terminal 20 and attempts to access the entry / exit management device 10 based on the access information. The inquiry requester terminal 30 also photographs the face of the inquired person and transmits an authentication request including the facial image to the entry / exit management device 10. The inquiry requester terminal 30 receives and displays the inquiry results of the inquired person.
[0056] Fig. 6 is a block diagram showing the configuration of the inquiry requester terminal 30 of Fig. 3. As shown in Fig. 6, the inquiry requester terminal 30 includes a camera 31, a storage unit 32, a memory 33, a communication unit 34, an input / output unit 35, and a control unit 36. In this example, the imaging device and the display terminal are integrated.
[0057] The camera 31 is a photographing device that takes photographs under the control of the control unit 36. The storage unit 32 is an example of a storage device that includes a non-volatile memory such as a flash memory or an SSD (Solid State Drive). The storage unit 32 stores a program that implements various processes, including an authentication request process for the inquired person, which will be described later.
[0058] The memory 33 is a volatile storage device such as RAM (Random Access Memory), and is a storage area for temporarily storing information during operation of the control unit 36. The communication unit 34 is a communication interface with the network N. The input / output unit 35 is, for example, a touch panel, and includes a display device (display terminal) such as a screen and an input device.
[0059] The control unit 36 is a processor that controls the hardware of the inquiry requester terminal 30. The control unit 36 loads a program from the storage unit 32 into the memory 33 and executes it. In this way, the control unit 36 realizes the functions of a display control unit 361 and an authentication request unit 362.
[0060] The display control unit 361 displays the query result generated by the execution of the program on the input / output unit 35. The display control unit 361 may also display on the input / output unit 35 a message prompting the user to photograph the face of the person being inquired for facial authentication.
[0061] The authentication request unit 362 extracts a human facial area as a facial image from the image of the person being inquired taken by the camera 31, and transmits an authentication request including the facial image to the entry / exit control device 10. The authentication request unit 362 may also transmit facial feature information, which is obtained by extracting features from the facial image, to the entry / exit control device 10. The entry / exit control device 10 transmits the inquiry result of the person being inquired to the inquiry requester terminal 30. If the authentication is successful, the display control unit 361 causes the input / output unit 35 to display the inquiry result that proves the identity of the person being inquired. The person requesting the inquiry can confirm the legitimacy of the identity of the person being inquired by checking the display on the screen.
[0062] In this way, according to the information processing system 100, the entry / exit management device 10 installed in the organization to which the member belongs can be used to verify the identity of the person being inquired in response to a request from the person making the inquiry, thereby eliminating the hassle involved in authenticating the person in front of the person.
[0063] 7 is a sequence diagram showing the flow of the inquiry process for an inquired person. First, the inquired person terminal 20, which is permitted to access the entry / exit control device 10, requests the entry / exit control device 10 to issue access information (S20). The entry / exit control device 10 issues the access information (S21) and transmits it to the inquired person terminal 20. The inquired person can display the access information on the inquired person terminal 20 (S22) and present it to the person requesting the inquiry. Note that the entry / exit control device 10 may also transmit the access information directly to the terminal of the person requesting the inquiry.
[0064] Then, the inquiry requester terminal 30 reads the access information displayed on the screen of the inquired party terminal 20 (S23). The inquiry requester terminal 30 may read the access information presented by the person in person, or may read the access information presented via a monitor such as an intercom. Furthermore, if the inquiry requester terminal 30 is an intercom, it is also possible to read the access information presented by the person using the intercom's camera.
[0065] The entrance / exit control device 10 can also verify the identity of callers who meet face-to-face via a monitor during video conferences, etc. In this case, the inquiry requester terminal 30 can read the caller's access information presented via the monitor. Furthermore, the terminal itself, on which an application program for video conferences is running, can access the entrance / exit control device 10 based on the access information and obtain a facial image of the caller.
[0066] Once the access information has been read, the inquiry requester terminal 30 accesses the entry / exit control device 10 based on the access information (S24). At this time, a message prompting the inquiry requester terminal 30 to take a photograph of the person being inquired may be displayed on the screen of the inquiry requester terminal 30. The inquiry requester terminal 30 then takes a photograph of the face of the person being inquired using the camera 31 (S25). The inquiry requester terminal 30 then transmits a face authentication request including the face image to the entry / exit control device 10 (S26). Upon receiving the face authentication request, the inquiry unit 143 of the entry / exit control device 10 performs an inquiry process (S27).
[0067] Specifically, the query unit 143 extracts facial feature information from the facial image included in the facial authentication request, compares it with the authentication data in the information DB 121, and calculates the degree of match. When the query requester terminal 30 transmits features extracted from the facial image (facial feature information), the query unit 143 compares the facial feature information with the authentication data. If the facial feature information matches, that is, if the degree of match of the facial feature information is equal to or greater than a threshold, the query unit 143 returns a query result indicating successful facial authentication to the query requester terminal 30 via the network N (S28). In this case, the query unit 143 may identify attribute data associated with the facial feature information and include the identified attribute data in the query result. The query requester terminal 30 then displays the received query result (S29).
[0068] If the facial authentication fails, the entrance / exit control device 10 can transmit an inquiry result indicating the authentication failure to the inquiry requester terminal 30. The inquiry requester terminal 30 displays on its screen that the facial authentication has failed. The inquiry requester terminal 30 may also notify the inquired person terminal 20 that the facial authentication has failed via short-range wireless communication or the like.
[0069] As described above, according to the first embodiment, it is possible to provide customers with proof of membership, which gives them a sense of security when receiving services. It is also possible to prevent crimes such as fraud caused by a face-to-face person impersonating a member. Furthermore, face-to-face proof ensures the transparency of corporate activities and strengthens compliance.
[0070] In addition, there is no need for complicated procedures or operations because the biometric information (authentication data) of members can be managed centrally using the entrance / exit management device 10. Furthermore, when verifying the identity of a member, the issuance of access information by the referenced terminal 20 held by the member and the authentication request by the reference requester terminal 30 held by the customer are used, which prevents fraud.
[0071] The inquiry requester terminal 30 may display an electronic business card using attribute data output in response to successful biometric authentication. Fig. 8 is a diagram showing an example of a screen displayed on the inquiry requester terminal 30. The screen includes an image 2 related to facial authentication of the inquired person, a facial authentication result display 3, and an information display 4.
[0072] The screen shown in Figure 8 is obtained when the owner of the inquiry requester terminal 30 makes an inquiry request for the inquired person based on the access information presented by the inquired person visiting their home, and facial authentication of the inquired person is successful. Information display 4 shows attribute data including the inquired person's name, etc. Note that the attribute data shown in Figure 8 is an example, and other information may be displayed in addition to or instead of the information shown here. The inquiry requester can refer to this information displayed on the inquiry requester terminal 30 and accept the inquired person into their home with peace of mind.
[0073] Embodiment 3. Embodiment 3 is a modification of the above-described embodiment 2. Fig. 9 is a block diagram showing the overall configuration of an information processing system 100A according to embodiment 3. The information processing system 100A includes an entry / exit control device 10 and an inquired person terminal 20 certified by the entry / exit control device 10, and performs identity verification of the inquired person based on a request from an inquiry requester terminal 30 under predetermined conditions.
[0074] Also, as a difference from the second embodiment, in the third embodiment, the management device 40 provides a cloud service that certifies the validity of the access information issued by the entry / exit management device 10, and functions as an authentication infrastructure. In other words, the management device 40 serves as a trusted third party (TTP). The entry / exit management device 10, the inquired person terminal 20, the inquiry requester terminal 30, and the management device 40 are each connected via a network N. The following description will focus on the differences from the second embodiment.
[0075] The management device 40 is, for example, a cloud server and an authentication infrastructure equipped with an authentication function for verifying the validity of access information. That is, the management device 40 verifies that the access information presented by the member has been issued by a reliable entrance / exit management device 10.
[0076] 10 is a block diagram showing the functional configuration of the management device 40. As shown in FIG. 10, the entry / exit control device 10 includes a reception unit 41, a response unit 42, and a storage unit 43. Information related to the entry / exit control device 10 is registered in the storage unit 43 as certification information. The information related to the entry / exit control device 10 may include the company ID of the organization in which the entry / exit control device 10 is installed, access information issued to the inquired person terminal 20 that can access the entry / exit control device 10, credit information obtained by the organization in which the entry / exit control device 10 is installed through a prior screening, and the like.
[0077] The reception unit 41 receives access information issued by the entry / exit control device 10 when the entry / exit control device 10 receives a request to issue access information from the inquired person terminal 20. Furthermore, instead of or in addition to receiving the access information from the entry / exit control device 10, the reception unit 41 may also receive a request to inquire about the access information when the inquiry requester terminal 30 accesses the entry / exit control device 10 based on the access information. The access information and inquiry request may include location information, time information, etc. of the inquired person terminal 20 and the inquiry requester terminal 30.
[0078] The response unit 42 queries the storage unit 43 for the received access information, determines whether the access information is valid, and returns the determination result to the inquiry requester terminal 30. For example, the access information may include a company ID indicating the organization that has installed the entrance / exit control device 10. The response unit 42 can determine whether the company ID included in the access information matches the company ID stored in the storage unit 43. Alternatively, the response unit 42 may audit the URL represented by the two-dimensional code serving as the access information.
[0079] Furthermore, the response unit 42 can also determine the validity of access information in response to a query request for access information from the query requester terminal 30, and return the determination result to the query requester terminal 30. This allows customers to access the entrance / exit control device 10 with peace of mind, based on reliable access information.
[0080] The response unit 42 may determine that the access information is valid if, in addition to the access information, the location information and time information of the inquired person terminal 20 and the inquiry requester terminal 30 match. This makes it possible to prevent the identification of the inquired person based on fraudulent access information.
[0081] Embodiment 4. Embodiment 4 is a further modification of the above-described embodiment 2. Fig. 11 is a block diagram showing the overall configuration of an information processing system 100B according to embodiment 4. The information processing system 100B includes an entry / exit control device 10 and an inquired person terminal 20 certified by the entry / exit control device 10, and performs identity verification of the inquired person based on a request from an entry / exit control device 50 different from the entry / exit control device 10 under predetermined conditions. The entry / exit control device 10, the inquired person terminal 20, and the entry / exit control device 50 are each connected via a network N.
[0082] In this example, the entry / exit management device 10 is a system that manages the entry and exit of members belonging to company A to facilities of company A. The entry / exit management device 50 is a system that manages the entry and exit of members belonging to company B, which is different from company A, to facilities of company B. The entry / exit management device 50 may include a configuration similar to the inquiry requester terminal 30 shown in Fig. 6. For example, the entry / exit management device 50 may include a camera or monitor installed at the entrance of company B, a control unit that sends an authentication request for the person being inquired to the entry / exit management device 10, and the like.
[0083] The entrance / exit control device 50 can access the entrance / exit control device 10 based on the access information by reading the access information presented by a person (inquired person) from company A who is visiting company B using a camera installed at the entrance of company B. The entrance / exit control device 50 can also take a picture of the inquired person using a camera installed at the entrance of company B to generate a facial image, and send an authentication request together with the facial image to the entrance / exit control device 10.
[0084] The result of the inquiry for the employee of company A is sent from the entrance / exit control device 10 to the entrance / exit control device 50. If the authentication is successful, the inquiry result verifying the identity of the person being inquired can be displayed, for example, on a monitor installed at the entrance of company B. This allows the entrance / exit control device 50 of company B to permit the visiting employee of company A to enter company B.
[0085] The entrance / exit control device 50 may have substantially the same functional configuration as the entrance / exit control device 10 described above. That is, both the entrance / exit control device 10 and the entrance / exit control device 50 may have the mechanical configuration of the information processing device 1. As a result, when a member of company B visits company A, the member data managed by the entrance / exit control device 50 of company B can be used to authenticate the identity of the member of company B. That is, in this case, the member data of companies A and B can be mutually used to authenticate the identity of the visitor.
[0086] Furthermore, the information processing system 100B according to the third embodiment may be used as a system for verifying the employment status of the company to which the inquired person belongs when the company B is a financial institution and the inquired person undergoes loan screening at the financial institution. Furthermore, the information processing system 100B may also be used to verify the identity of a bidder in a public bidding by a government agency or a government institution. In other words, the inquiry result issued by the entrance / exit control device 10 may be used as an official employment certificate.
[0087] The program for executing the above-described processes includes instructions (or software code) that, when loaded into a computer, cause the computer to perform one or more functions described in the embodiments. The program may be stored in a non-transitory computer-readable medium or a tangible storage medium. By way of example and not limitation, computer-readable media or tangible storage media include random-access memory (RAM), read-only memory (ROM), flash memory, solid-state drive (SSD) or other memory technologies, CD-ROM, digital versatile disc (DVD), Blu-ray (registered trademark) disc or other optical disk storage, magnetic cassette, magnetic tape, magnetic disk storage or other magnetic storage device. The program may also be transmitted on a transitory computer-readable medium or communication medium. By way of example and not limitation, transitory computer-readable media or communication media include electrical, optical, acoustic, or other forms of propagated signals.
[0088] The present disclosure is not limited to the above-described embodiments, and may be modified as appropriate without departing from the spirit and scope of the present disclosure. In addition, the present disclosure may be implemented by appropriately combining the respective embodiments.
[0089] In the above description, the identification of a member is verified by biometric authentication, but this is not limited to this example. For example, when registering the member's attribute data, a server managing the attribute data may issue an authentication ID and password linked to the attribute data. In this case, the customer can verify their identity by entering the member's ID and password. Furthermore, the information processing device of the embodiment can be incorporated into an intercom or surveillance camera installed in a home.
[0090] Some or all of the above embodiments may be described as, but are not limited to, the following supplementary notes. (Supplementary Note A1) An information processing device comprising: an issuing unit that issues access information in response to a request from a referenced terminal and transmits the access information to the referenced terminal; a querying unit that, when receiving access based on the access information and query data of the referenced terminal from a query requester terminal different from the referenced terminal, queries the query data against member data pre-stored in a predetermined storage device and receives the query result; and an output unit that outputs the query result to the query requester terminal. (Supplementary Note A2) The information processing device according to Supplementary Note A1, wherein a predetermined condition is set in the access information, and the querying unit receives access from the query requester terminal based on the access information when the predetermined condition is met. (Supplementary Note A3) The information processing device according to Supplementary Note A2, wherein the predetermined condition includes a condition related to restricting access based on the access information from the query requester terminal. (Appendix A4) The information processing device of Appendix A1, wherein attribute data related to the member is linked to the member data, and wherein the output unit outputs at least one of the query result and the attribute data of the inquired person when the query of the query data is successful. (Appendix A5) The information processing device of Appendix A1, wherein the storage device manages the member data by linking it to an identification number, and further comprises a change unit that receives the identification number of the inquired person from the inquired person terminal and changes the order when the query data is inquired against the member data according to the received identification number. (Appendix A6) The information processing device of Appendix A1, wherein the issue unit provides the access information to the inquired person terminal so that the inquired person can present the access information to the query requester terminal as image data. (Appendix A7) The information processing device of Appendix A1, wherein the query data includes biometric information acquired from the inquired person by the query requester terminal.
[0091] (Appendix B1) An information processing system including an information processing device and an inquired party terminal certified by the information processing device, wherein the information processing device comprises: an issuing unit that issues access information in response to a request from the inquired party terminal and transmits it to the inquired party terminal; a querying unit that, when access based on the access information is received from a query requester terminal different from the inquired party terminal and query data of the inquired party is received, queries the query data against member data pre-stored in a specified storage device and receives the query result; and an output unit that outputs the query result to the query requester terminal.
[0092] (Appendix C1) An information processing method in which a computer executes the following processes: issuing access information in response to a request from a person being inquired and sending it to the person being inquired; when the computer receives access based on the access information from a person being inquired that is a different person being inquired and also receives inquiry data of the person being inquired, comparing the inquiry data with member data stored in advance in a specified storage device and receiving the inquiry result; and outputting the inquiry result to the person being inquired that is inquired.
[0093] (Appendix D1) A non-transitory computer-readable medium storing a program that causes a computer to execute the following processes: issuing access information in response to a request from a referenced terminal and sending it to the referenced terminal; when access is received based on the access information from a reference requester terminal different from the referenced terminal and reference data for the referenced person is received, comparing the reference data with member data pre-stored in a specified storage device and receiving the reference result; and outputting the reference result to the reference requester terminal.
[0094] (Appendix E1) An information processing system including an information processing device, an inquired party terminal certified by the information processing device, and an inquiry requester terminal different from the inquired party terminal, wherein the information processing device comprises: an issuing unit that issues access information in response to a request from the inquired party terminal and transmits it to the inquired party terminal; a querying unit that, when access based on the access information is received from the query requester terminal and query data of the inquired party is received, queries the query data against member data pre-stored in a specified storage device and receives the query result; and an output unit that outputs the query result to the query requester terminal.
[0095] REFERENCE SIGNS LIST 1 Information processing device 10 Entry / exit management device 11 Issuing unit 12 Inquiry unit 13 Output unit 14 Storage device 20 Inquired person terminal 21 Camera 22 Storage unit 23 Memory 24 Communication unit 25 Input / output unit 26 Control unit 261 Request unit 262 Display control unit 30 Inquiry requester terminal 31 Camera 32 Storage unit 33 Memory 34 Communication unit 35 Input / output unit 36 Control unit 361 Display control unit 362 Authentication request unit 40 Management device 41 Reception unit 42 Response unit 43 Storage unit 50 Entry / exit management device 100 Information processing system 110 Camera 120 Storage unit 121 Information DB 130 Memory 140 Control unit 141 Registration unit 142 Issuance unit 143 Inquiry unit 144 Output unit 150 Communication unit N Network
Claims
1. an issuing unit that issues access information in response to a request from a referenced terminal and transmits the access information to at least one of the referenced terminal and a reference requester terminal different from the referenced terminal; a query unit, when receiving access based on the access information from the query requester terminal and query data of the person being referenced, querying the query data against member data stored in advance in a predetermined storage device and receiving a query result; an output unit for outputting the query result to the query requester terminal; An information processing device comprising:
2. The access information has a predetermined condition set in advance, the inquiry unit receives access based on the access information from the inquiry requester terminal when the predetermined condition is satisfied; The information processing device according to claim 1 .
3. the predetermined conditions include conditions regarding restrictions on access based on the access information from the inquiry requester terminal; The information processing device according to claim 2 .
4. Member data is linked to attribute data about members, The output unit outputs at least one of the query result and attribute data of the inquired person when the query of the query data is successful. The information processing device according to claim 1 .
5. The storage device manages the member data by linking it to an identification number, A change unit is further provided which receives an identification number of the person to be referred from the person to be referred to and changes the order of priority when the referred data is referred to the member data according to the received identification number. The information processing device according to claim 1 .
6. the issuing unit provides the access information to the referenced person terminal so that the referenced person can present the access information to the reference requester terminal as image data; The information processing device according to claim 1 .
7. the inquiry data includes biometric information acquired from the inquired person by the inquiry requester terminal, The information processing device according to claim 1 .
8. An information processing device and a referee terminal certified by the information processing device, The information processing device includes: an issuing unit that issues access information in response to a request from the inquired person terminal and transmits the access information to at least one of the inquired person terminal and an inquiry requester terminal different from the inquired person terminal; a query unit which, when receiving access based on the access information from the query requester terminal and query data of the person being referenced, queries the query data against member data stored in advance in a predetermined storage device and receives a query result; an output unit for outputting the query result to the query requester terminal; Equipped with Information processing system.
9. The computer a process of issuing access information in response to a request from a referenced terminal and transmitting the access information to at least one of the referenced terminal and a reference requester terminal different from the referenced terminal; a process of receiving access based on the access information from the inquiry requester terminal and receiving inquiry data of the inquired person from the inquiry requester terminal, comparing the inquiry data with member data stored in advance in a predetermined storage device, and receiving the inquiry result; outputting the query result to the query requester terminal; An information processing method.
10. a process of issuing access information in response to a request from a referenced terminal and transmitting the access information to at least one of the referenced terminal and a reference requester terminal different from the referenced terminal; a process of receiving access based on the access information from the inquiry requester terminal and receiving inquiry data of the inquired person from the inquiry requester terminal, comparing the inquiry data with member data stored in advance in a predetermined storage device, and receiving the inquiry result; outputting the query result to the query requester terminal; to cause a computer to execute program.