Authentication terminal, authentication terminal control method, program, and system
Patent Information
- Application Number
- JP2024574164
- Authority / Receiving Office
- JP · JP
- Patent Type
- Applications
- Current Assignee / Owner
- Filing Date
- 2025-06-27
- Publication Date
- 2025-09-09
- Estimated Expiration
- 2043-02-01
AI Technical Summary
Biometric authentication systems face increased load and decreased authentication speed when processing user entries during permitted time periods, leading to potential delays in entry/exit determination at restricted areas.
An authentication terminal and method that request and store user IDs and permitted time periods from a management server, reducing the load on the biometric authentication server by narrowing down authentication targets to only authorized persons within the permitted time frame, using a list of authorized users to associate and verify biometric information.
This approach reduces the processing load on the authentication server, improves authentication accuracy, and ensures smooth entry/exit operations by focusing on a limited set of authorized users, thereby enhancing the overall efficiency and speed of biometric authentication.
Abstract
Description
Authentication terminal, authentication terminal control method, storage medium, and system
[0001] The present invention relates to an authentication terminal, a control method for an authentication terminal, a storage medium, and a system.
[0002] There is technology regarding entry and exit to designated facilities.
[0003] For example, Patent Document 1 describes a server device that allows a visitor to easily determine whether or not to meet with a person they wish to meet while grasping the location of the person. Patent Document 2 describes a server device that determines whether or not a user has permission to stay at a facility where the user is staying based on a beacon ID transmitted from a beacon transmitter.
[0004] Furthermore, there are technologies related to user authentication.
[0005] For example, Patent Document 3 describes that a system is provided for accurately determining whether a user of an authentication-subject device belongs to a specific group. Patent Document 4 describes that a system is provided for reducing the operation of inputting authentication information when a user (e.g., a user who has forgotten their card) uses an image forming device (e.g., a multifunction device).
[0006] International Publication No. 2022 / 009380 JP 2022-031037 A JP 2012-032952 A JP 2011-128907 A
[0007] In facilities such as apartment buildings, there are areas (restricted entry areas) that only authorized personnel can enter. To control entry and exit to the restricted entry areas, the authentication information (e.g., biometric information) of people who are allowed to enter the restricted entry areas must be registered in a server along with the date, time, and time period when the person is permitted to enter.
[0008] For example, consider a case where entry to a restricted area is controlled by biometric authentication. In this case, the biometric information, user ID, and permitted entry time period of each person allowed to enter the restricted area must be registered in the biometric authentication server. The biometric authentication server will not determine that the person to be authenticated has been successfully authenticated outside the permitted entry time period, even if the biometric information is registered.
[0009] However, if the biometric authentication server performs such a process (authentication process taking into account the permitted entry time slot), the load on the biometric authentication server increases and the authentication speed decreases, which may result in a problem of being unable to smoothly determine whether the person to be authenticated has entered or left the facility.
[0010] A primary object of the present invention is to provide an authentication terminal, a control method for the authentication terminal, a storage medium, and a system that contribute to reducing the load on a server that handles biometric authentication.
[0011] According to a first aspect of the present invention, there is provided an authentication terminal comprising: a list acquisition control means that stores the user IDs of users who are allowed to pass through authentication points corresponding to restricted areas within a facility where entry is restricted, and the permitted time periods during which the users are allowed to pass through the authentication points, and that requests a management server to provide a list of permitted persons consisting of the user IDs of at least one or more permitted persons who are allowed to pass through the authentication point corresponding to the device itself, and receives from the management server the list of permitted persons that the management server has generated based on the permitted time periods; and an authentication request means that transmits at least the biometric information of the person to be authenticated and the list of permitted persons to an authentication server that stores the user ID and biometric information of the person to be authenticated in a database in association with each other.
[0012] According to a second aspect of the present invention, there is provided a control method for an authentication terminal, in which an authentication terminal stores the user IDs of users who are allowed to pass through an authentication point corresponding to a restricted area within a facility where entry is restricted, and the permitted time periods during which the users are allowed to pass through the authentication point, requests a management server to provide a list of permitted persons consisting of the user IDs of at least one or more permitted persons who are allowed to pass through the authentication point corresponding to the device itself, receives from the management server the list of permitted persons generated by the management server based on the permitted time periods, and transmits at least the biometric information of the person to be authenticated and the list of permitted persons to an authentication server which stores the user ID and biometric information of the person to be authenticated in a database in association with each other.
[0013] According to a third aspect of the present invention, a computer-readable storage medium is provided that stores a program for causing a computer mounted on an authentication terminal to execute the following processes: storing the user IDs of users who are allowed to pass through an authentication point corresponding to a restricted area within a facility where entry is restricted, and the permitted time periods during which the users are allowed to pass through the authentication point; requesting a management server to provide a list of permitted persons consisting of the user IDs of at least one or more permitted persons who are allowed to pass through the authentication point corresponding to the device; receiving from the management server the list of permitted persons that the management server has generated based on the permitted time periods; and transmitting at least the biometric information of the person to be authenticated and the list of permitted persons to an authentication server that stores the user ID and biometric information of the person to be authenticated in a database in association with each other.
[0014] According to a fourth aspect of the present invention, there is provided a system including an authentication terminal installed at an authentication point corresponding to a restricted area within a facility where entry is restricted; a management server that stores the user IDs of users who are allowed to pass through the authentication point and the permitted time periods during which the users are allowed to pass through the authentication point; and an authentication server that associates the user IDs of persons to be authenticated with biometric information and stores them in a database, wherein the authentication terminal requests the management server to provide a list of permitted persons consisting of the user IDs of at least one or more permitted persons who are allowed to pass through the authentication point corresponding to the authentication terminal, the management server generates the list of permitted persons based on the permitted time periods and transmits the generated list of permitted persons to the authentication terminal, the authentication terminal transmits at least the biometric information of the person to be authenticated and the list of permitted persons to the authentication server, and the authentication server extracts from the database at least one or more pieces of biometric information corresponding to at least one or more user IDs included in the list of permitted persons and performs a matching process using the extracted at least one or more pieces of biometric information and the biometric information of the person to be authenticated.
[0015] According to a fifth aspect of the present invention, there is provided a system including an authentication terminal installed at an authentication point corresponding to a restricted area within a facility where entry is restricted; a management server that stores user IDs of users who are allowed to pass through the authentication point and the permitted time periods during which the users are allowed to pass through the authentication point; and an authentication server that associates the user IDs of persons to be authenticated with biometric information and stores them in a database, wherein the management server generates a list of permitted persons consisting of the user IDs of at least one or more permitted persons who are allowed to pass through the authentication point based on the permitted time periods, the authentication server obtains the list of permitted persons from the management server, the authentication terminal transmits a list ID for identifying the list of permitted persons and the biometric information of the person to be authenticated to the authentication server, and the authentication server extracts from the database at least one or more pieces of biometric information corresponding to at least one or more user IDs included in the list of permitted persons, and performs a matching process using the extracted at least one or more pieces of biometric information and the biometric information of the person to be authenticated.
[0016] According to a sixth aspect of the present invention, there is provided an authentication system including an authentication terminal installed at an authentication point corresponding to a restricted area within a facility where entry is restricted, a management server that stores user IDs of users who are allowed to pass through the authentication point and permitted time periods during which the users can pass through the authentication point, and an authentication server that stores the user IDs of persons to be authenticated and biometric information in a database in association with each other, wherein the authentication terminal requests the management server to provide a list of permitted persons that is made up of the user IDs of at least one permitted person who is allowed to pass through the authentication point corresponding to the authentication terminal itself, and the management server A system is provided which generates a list of persons permitted to pass and transmits the generated list of persons permitted to pass to the authentication terminal, and when authentication of a person to be authenticated becomes necessary, the authentication terminal transmits at least the list of persons permitted to pass to the authentication server, and the authentication server extracts from the database at least one or more pieces of biometric information corresponding to at least one or more user IDs included in the list of persons permitted to pass and transmits the extracted at least one or more pieces of biometric information to the authentication terminal, and the authentication terminal performs a matching process using the at least one or more pieces of biometric information obtained from the authentication server and the biometric information of the person to be authenticated.
[0017] According to each aspect of the present invention, an authentication terminal, an authentication terminal control method, a storage medium, and a system are provided that contribute to reducing the load on a server that performs biometric authentication. Note that the effects of the present invention are not limited to those described above. The present invention may achieve other effects instead of or in addition to the effects described above.
[0018] FIG. 1 is a diagram illustrating an overview of an embodiment. FIG. 2 is a flowchart illustrating an overview of the operation of an embodiment. FIG. 3 is a diagram illustrating an example of a schematic configuration of an information processing system according to a first embodiment. FIG. 4 is a diagram illustrating an arrangement of an authentication terminal according to the first embodiment. FIG. 5 is a diagram illustrating the operation of the information processing system according to the first embodiment. FIG. 6 is a diagram illustrating the operation of the information processing system according to the first embodiment. FIG. 7 is a diagram illustrating the operation of the information processing system according to the first embodiment. FIG. 8 is a diagram illustrating an example of a processing configuration of a management server according to the first embodiment. FIG. 9 is a diagram illustrating an example of a display of a terminal according to the first embodiment. FIG. 10 is a diagram illustrating an example of a display of a terminal according to the first embodiment. FIG. 11 is a diagram illustrating an example of a display of a terminal according to the first embodiment. FIG. 12 is a diagram illustrating an example of a display of a terminal according to the first embodiment. FIG. 13 is a diagram illustrating an example of a user management database according to the first embodiment. FIG. 14 is a diagram illustrating an example of a display of a terminal according to the first embodiment. FIG. 15 is a diagram illustrating an example of an authentication terminal management database according to the first embodiment. FIG. 16 is a diagram illustrating an example of a pass-allowed person list according to the first embodiment. Fig. 17 is a diagram showing an example of the processing configuration of an authentication server according to the first embodiment. Fig. 18 is a diagram showing an example of an authentication target management database according to the first embodiment. Fig. 19 is a flowchart showing an example of the operation of an authentication control unit according to the first embodiment. Fig. 20 is a diagram showing an example of the processing configuration of an authentication terminal according to the first embodiment. Fig. 21 is a sequence diagram showing an example of the operation of an information processing system according to the first embodiment. Fig. 22 is a diagram for explaining the operation of an information processing system according to a modified example of the first embodiment. Fig. 23 is a diagram for explaining the operation of an information processing system according to a modified example of the first embodiment. Fig. 24 is a diagram showing an example of the hardware configuration of a management server according to the present disclosure.
[0019] First, an overview of one embodiment will be described. Note that the reference numerals in the drawings are added to each element for convenience as an example to facilitate understanding, and the description of this overview is not intended to be limiting in any way. Furthermore, unless otherwise specified, the blocks shown in each drawing represent functional units, not hardware units. Connection lines between blocks in each drawing include both bidirectional and unidirectional lines. Unidirectional arrows are used to schematically indicate the flow of the main signal (data) and do not exclude bidirectionality. Note that in this specification and drawings, elements that can be similarly described may be assigned the same reference numerals to avoid redundant explanation.
[0020] An authentication terminal 100 according to one embodiment includes a list acquisition control unit 101 and an authentication request unit 102 (see FIG. 1). The system includes the authentication terminal 100, a management server, and an authentication server. The management server stores the user IDs of users permitted to pass through authentication points corresponding to restricted areas within a facility and the permitted time periods during which the users can pass through the authentication points. The list acquisition control unit 101 requests the management server to provide a list of permitted persons, including the user IDs of at least one permitted person permitted to pass through the authentication point corresponding to the management server (step S1 in FIG. 2). The list acquisition control unit 101 receives from the management server a list of permitted persons generated by the management server based on the permitted time periods (step S2). The authentication request unit 102 transmits at least the biometric information of the person to be authenticated and the list of permitted persons to the authentication server, which stores the user IDs and biometric information of the person to be authenticated in a database in association with each other (step S3).
[0021] In the above system, the authentication terminal 100 transmits the user IDs of users who are permitted to pass through the authentication point managed by the authentication terminal 100 (i.e., who are permitted to enter the restricted area) and the biometric information of the person being authenticated to the authentication server. The authentication server extracts the person to be authenticated based on the user ID. The authentication server then performs a matching process using the extracted biometric information of the person to be authenticated and the biometric information of the person being authenticated. The matching process using biometric information and the extraction process using the user ID require a higher processing load. Therefore, narrowing down the people to be authenticated (reducing the total number of people to be authenticated) reduces the processing load on the authentication server. Furthermore, narrowing down the people to be authenticated based on the permitted-passing list reduces the total number of people to be authenticated, improving the authentication accuracy of biometric authentication. In other words, in one-to-N authentication (where N is a positive integer), as the number N of people to be authenticated increases, authentication accuracy deteriorates and false authentications occur. The system disclosed herein can prevent a decrease in authentication accuracy by reducing the number N of people to be authenticated using the permitted-passing list.
[0022] Specific embodiments will be described in more detail below with reference to the drawings.
[0023] First Embodiment The first embodiment will be described in more detail with reference to the drawings.
[0024] [System Configuration] Fig. 3 is a diagram showing an example of a schematic configuration of an information processing system (authentication system) according to the first embodiment. As shown in Fig. 3, the information processing system includes an authentication center and at least one apartment building.
[0025] The authentication center is operated by a business that provides biometric authentication services to condominiums (condominium management companies) that have entered into a specified contract with the business. The authentication center includes an authentication server 10. The authentication server 10 performs the main functions of the authentication center. The authentication server 10 associates the user ID of the person to be authenticated with biometric information and stores the associated information in a database. The authentication server 10 provides biometric authentication services for at least one condominium (multiple condominiums).
[0026] The authentication server 10 may be installed in the building of the authentication center, or may be installed on a network (on the cloud).
[0027] Each condominium has a management server 20 and at least one authentication terminal 30.
[0028] The management server 20 is a server that manages information related to the condominium residents, etc. For example, the management server 20 stores and manages each resident's name, date of birth, address (room number), living information, contact information, etc. The management server 20 also manages and controls reservations for the condominium's shared facilities (e.g., recreation rooms, meeting rooms, etc.).
[0029] The management server 20 stores the user IDs of users who are allowed to pass through authentication points corresponding to restricted areas within the facility (apartment building) where entry is restricted, as well as the dates, times, and time periods when the users can pass through the authentication points. The management server 20 may be installed in each apartment building or in the building of the apartment building management company, or may be installed on a network (on the cloud).
[0030] The authentication terminal 30 is installed according to the restricted area inside or outside the apartment building. For example, as shown in Fig. 4, the authentication terminal 30 is installed near the restricted area where it is necessary to restrict the entry of users, such as the entrance and exit of the apartment building, the elevator hall, or the manager's office.
[0031] For example, authentication terminal 30-1 is installed near the entrance. Authentication terminal 30-2 is installed in the elevator hall. Authentication terminal 30-3 is installed near the entrance to the recreation room. Authentication terminal 30-4 is installed near the entrance to the caretaker's room. Authentication terminal 30-5 is installed near the entrance to the meeting room. In this way, if there are multiple restricted areas within a facility (apartment building), multiple authentication terminals 30 are installed corresponding to each of the multiple restricted areas.
[0032] In the following description, unless there is a particular reason to distinguish between the authentication terminals 30-1 to 30-5, they will simply be referred to as "authentication terminals 30."
[0033] Each authentication terminal 30 is connected to a door or gate. The authentication terminal 30 controls the door or gate and restricts residents and the like from entering a restricted area (entering a restricted area and passing through an authentication point). For example, the authentication terminal 30-4 permits an apartment building manager to enter the manager's room and denies unauthorized apartment building residents and the like from entering the manager's room.
[0034] 3, each user, such as a condominium resident, a condominium manager, or an employee of a condominium management company, carries a terminal 40. The user uses the terminal 40 to access the management server 20.
[0035] The authentication server 10, the management server 20, and the authentication terminal 30 are configured to be able to communicate with each other. For example, the management server 20 and the authentication terminal 30 are connected by wired or wireless communication means.
[0036] 3 is an example and is not intended to limit the configuration of the information processing system disclosed herein. For example, an authentication center may include two or more authentication servers 10. Also, an apartment building may include at least one authentication terminal 30. Furthermore, FIG. 4 is an example and is of course not intended to limit the placement of each authentication terminal 30.
[0037] [Overall Operation] Next, an overall operation of the information processing system according to the first embodiment will be described.
[0038] <User Registration> Users who wish to pass through each authentication point within the condominium are required to register in advance. The user operates the terminal 40 to register as a user. A condominium management application is installed on the terminal 40. The user registers as a user using the terminal 40 (condominium management application).
[0039] For example, a resident of an apartment building registers himself / herself as an "apartment building resident" in the management server 20 (resident registration). Alternatively, an employee of the apartment building management company registers a "manager" who will use the manager's room in the management server 20 (manager registration). Alternatively, a user who invites friends or the like to the apartment building registers a "visitor" in the management server 20 (visitor registration).
[0040] For example, with regard to resident registration, the management server 20 acquires the resident's user information (for example, name, date of birth, address, biometric information, contact information, etc.) (see FIG. 5).
[0041] Examples of the user's biometric information include data (features) calculated from physical characteristics unique to an individual, such as a face, fingerprint, voiceprint, veins, retina, and iris pattern. Alternatively, the user's biometric information may be image data such as a face image or fingerprint image. The user's biometric information may be any information that includes the user's physical characteristics. In the first embodiment, the biometric information is a person's face image or features generated from a face image.
[0042] When the management server 20 acquires the user information, it generates a user ID for identifying the resident (user). The management server 20 associates the generated user ID with the acquired user information, etc., and registers them in a user management database. The user management database will be described in detail later.
[0043] Similarly, for manager registration and visitor registration, the management server 20 acquires user information (manager information, visitor information) from the condominium management company and condominium residents. The management server 20 generates user IDs for the manager, visitors, etc. The management server 20 registers the generated user IDs and user information (user information for the manager and visitors) in the user management database.
[0044] The management server 20 acquires information about users other than apartment building residents (caretakers, visitors, etc.), such as the authentication points that the users can access and the time periods during which they can access them. Apartment building residents are assumed to be able to access authentication points within the apartment building (restricted areas between the entrance and their homes) at all times (24 hours a day, 365 days a year). Apartment building residents are typically restricted from entering the caretaker's office or other residential areas unrelated to their own residential area. Caretakers may be able to move around the apartment building at all times (24 hours a day, 365 days a year), excluding their private areas.
[0045] When the user registration is completed, the management server 20 notifies the authentication center of the user's user ID, biometric information, and condominium ID. Specifically, the management server 20 sends an authentication information notification including the user ID, biometric information, and condominium ID to the authentication server 10.
[0046] The condominium ID is information for identifying each condominium included in the information processing system. The condominium ID may be any information that can uniquely identify a condominium.
[0047] Furthermore, the condominium ID is shared by any method among the authentication server 10, the management server 20, and the authentication terminal 30. For example, the system administrator determines the condominium ID and sets the determined condominium ID in the authentication server 10. The system administrator also sets the determined condominium ID in the management server 20 and the authentication terminal 30.
[0048] Upon receiving the authentication information notification, the authentication server 10 registers the user ID and biometric information contained in the notification in an authentication target management database. Details of the authentication target management database will be described later. Note that, when the authentication server 10 provides biometric authentication services to multiple apartment buildings, it has an authentication target management database for each apartment building (for each apartment building). In other words, since the system disclosed herein is multi-tenant compatible, the authentication server 10 has one or more authentication target management databases (databases with the same structure).
[0049] In this way, when the management server 20 acquires the user's biometric information, it transmits the user's user ID and the acquired biometric information to the authentication server 10. The authentication server 10 stores the user ID and biometric information received from the management server 20 in the authentication target management database.
[0050] Note that the transmission and reception of biometric information between the management server 20 and the authentication server 10 is not limited to the transmission and reception of authentication information notifications including a user ID and biometric information. For example, when the management server 20 acquires new biometric information, it transmits the acquired biometric information to the authentication server 10. When the new biometric information is received, the authentication server 10 generates a person ID and stores the acquired biometric information in association with the person ID. Furthermore, the authentication server 10 transmits the generated person ID to the management server 10 (issues the person ID). The management server 10 manages the received person ID in association with the user ID. The management server 10 may set the person ID in place of the user ID in the permitted pass list described below.
[0051] <Management of Permitted Passers> The management server 20 manages and stores, for each authentication point (restricted area), the users who are permitted to pass through that authentication point. More specifically, for each authentication point, the management server 20 stores the user ID of the user and the date, time, and time period when the user is permitted to pass through the authentication point.
[0052] The management server 20 manages, for each authentication terminal 30, the user ID of a user who is allowed to pass through the corresponding authentication point, in association with the date and time period during which the user is allowed to pass through the authentication point (hereinafter referred to as the permitted time period). The management server 20 stores the user ID of the user and the permitted time period in association with each other in an authentication terminal management database prepared for each authentication terminal 30. The authentication terminal management database will be described in detail later.
[0053] For example, the management server 20 allows an apartment resident to pass through an authentication point (restricted area) that exists on the route from the entrance / exit of the apartment building to his / her home.
[0054] For example, if user A lives on the second floor of an apartment building, management server 20 allows user A to use the elevator to reach his / her home on the second floor. Specifically, management server 20 stores user A's user ID and permitted time period in the authentication terminal management databases of at least authentication terminal 30-1 and authentication terminal 30-2. Note that user A does not have the authority to enter the building manager's room, so user A's user ID is not stored in the authentication terminal management database of authentication terminal 30-4.
[0055] Alternatively, the management server 20 allows the condominium caretaker to enter the restricted areas of the condominium entrance and the caretaker's room. In this case, the user ID and permitted time period of the caretaker are recorded in at least the authentication terminal management database of the authentication terminal 30-1 and the authentication terminal management database of the authentication terminal 30-4.
[0056] <Acquisition of a Passing-Allowed Person List> Each authentication terminal 30 acquires a "passing-allowed person list" from the management server 20. The passing-allowed person list is a list consisting of the user IDs of users who can pass through the authentication point corresponding to each authentication terminal 30 at the current time (more precisely, between the time when the passing-allowed person list is acquired and the time when the next passing-allowed person list is acquired).
[0057] The authentication terminal 30 transmits a "list provision request" including the terminal ID of the authentication terminal 30 to the management server 20 (see FIG. 6).
[0058] The terminal ID is an ID for identifying each authentication terminal 30. The terminal ID may be a media access control (MAC) address or an internet protocol (IP) address of the authentication terminal 30. The terminal ID is shared between the management server 20 and the authentication terminal 30 by any method. For example, the system administrator determines the terminal ID and sets the determined terminal ID in the management server 20. The system administrator also sets the determined terminal ID in the authentication terminal 30.
[0059] The management server 20 identifies the sender of the list request using the terminal ID included in the list request, and accesses the authentication terminal management database corresponding to the sender's authentication terminal 30 to generate a list of permitted passers.
[0060] The management server 20 transmits the generated permitted person list to the authentication terminal 30 .
[0061] The authentication terminal 30 acquires the pass-permitted person list by transmitting a list provision request to the management server 20 periodically or at a predetermined timing. For example, the authentication terminal 30 transmits a list provision request to the management server 20 at one-minute intervals and acquires the pass-permitted person list from the management server 20. That is, the authentication terminal 30 acquires the latest pass-permitted person list by performing a polling process on the pass-permitted person list. Note that, when the authentication terminal 30 receives the pass-permitted person list from the management server 20, it may update or overwrite the previously received pass-permitted person list with the received pass-permitted person list. Alternatively, the authentication terminal 30 may store the latest pass-permitted person list and pass-permitted person lists other than the latest one for a certain period of time, distinguishing between them.
[0062] For example, consider a case where the authentication terminal management database of authentication terminal 30-4 records that user B can enter the manager's room between 15:00 and 15:30 on January 16, 2022.
[0063] In this case, if a list provision request is sent from authentication terminal 30-4 before 15:00, the user ID of user B will not be included in the permitted persons list generated by management server 20. If a list provision request is sent between 15:00 and 15:29, the permitted persons list will include the user ID of user B. If a list provision request is sent after 15:30, the permitted persons list will not include the user ID of user B.
[0064] In this way, the authentication terminal 30 requests the management server 20 to provide a list of permitted persons consisting of the user IDs of at least one permitted person who can pass through the authentication point corresponding to the authentication terminal 30. The management server 20 generates a list of permitted persons based on the permitted time period and transmits the generated list of permitted persons to the authentication terminal 30.
[0065] <Authentication of Person to be Authenticated> When a user (person to be authenticated) attempts to pass through an authentication point (enter a restricted area), the user moves in front of authentication terminal 30 .
[0066] The authentication terminal 30 acquires biometric information of the user (person to be authenticated) and sends an authentication request including the apartment building ID of the apartment building where the authentication terminal 30 is installed, the acquired biometric information, and the list of permitted persons (the most recent list of permitted persons) to the authentication server 10 (see FIG. 7).
[0067] The authentication server 10 identifies the apartment building in which the authentication terminal 30 that sent the authentication request is installed based on the apartment building ID. The authentication server 10 references the authentication target management database of the identified apartment building and extracts the biometric information of the authentication target corresponding to the user ID included in the acquired permitted pass-through list. For example, if the permitted pass-through list contains the user IDs of five people, the biometric information of five people is extracted.
[0068] As described above, when the authentication server 10 issues a person ID to the management server 20, the authentication server 10 can use the person ID to identify the apartment building in which the authentication terminal 30 is installed. In this case, the authentication terminal 30 does not need to transmit the apartment building ID to the authentication server 10 (it only needs to transmit the permitted pass list to the authentication server 10).
[0069] The authentication server 10 executes a matching process (authentication process) using the biometric information included in the authentication request and the extracted biometric information.
[0070] If the matching process is successful (if the extracted biometric information includes biometric information that is substantially identical to the biometric information included in the authentication request), the authentication server 10 sends a positive response indicating successful authentication to the authentication terminal 30.
[0071] If the matching process fails (if the extracted biometric information does not contain biometric information that is substantially identical to the biometric information included in the authentication request), the authentication server 10 sends a negative response indicating authentication failure to the authentication terminal 30.
[0072] Upon receiving a positive response (authentication success), the authentication terminal 30 allows the person to be authenticated to pass through the authentication point. For example, the authentication terminal 30 opens a door and allows the person to be authenticated to pass through the authentication point.
[0073] If a negative response (authentication failure) is received, the authentication terminal 30 will deny the person to be authenticated from passing through the authentication point. For example, the authentication terminal 30 will close the door to deny the person to be authenticated from passing through the authentication point.
[0074] In this way, the authentication terminal 30 transmits at least the biometric information of the person to be authenticated and the list of permitted persons to the authentication server 10. The authentication server 10 extracts at least one piece of biometric information corresponding to at least one user ID included in the list of permitted persons from the authentication target management database. The authentication server 10 executes a matching process using the extracted at least one piece of biometric information and the biometric information of the person to be authenticated. If the matching process is successful, the authentication server 10 notifies the authentication terminal 30 of successful authentication. Upon being notified of successful authentication, the authentication terminal 30 allows the person to be authenticated to pass through the authentication point.
[0075] That is, the authentication terminal 30 acquires in real time a list of permitted passers consisting of the user IDs of users permitted to pass through the corresponding authentication point. When authentication of the person to be authenticated becomes necessary, the authentication terminal 30 transmits the list of permitted passers to the authentication server 10 along with the biometric information of the person to be authenticated. The authentication server 10 narrows down the persons to be authenticated (those on the registered side) according to the list of permitted passers. The persons to be authenticated narrowed down according to the list of permitted passers are users who are permitted to pass through the authentication point. Therefore, if the person to be authenticated is included among the persons to be authenticated narrowed down by the list of permitted passers (if the biometric information of the person to be authenticated and the biometric information of the person to be authenticated substantially match), it is determined that the person to be authenticated is permitted to pass through the authentication point.
[0076] Next, details of each device included in the information processing system according to the first embodiment will be described.
[0077] [Management Server] Fig. 8 is a diagram showing an example of the processing configuration (processing modules) of the management server 20 according to the first embodiment. Referring to Fig. 8, the management server 20 includes a communication control unit 201, a user management unit 202, an authentication information control unit 203, a user passage control unit 204, a list provision control unit 205, and a storage unit 206.
[0078] The communication control unit 201 is a means for controlling communication with other devices. For example, the communication control unit 201 receives data (packets) from the authentication terminal 30. The communication control unit 201 also transmits data to the authentication terminal 30. The communication control unit 201 passes data received from other devices to other processing modules. The communication control unit 201 transmits data acquired from other processing modules to other devices. In this way, other processing modules transmit and receive data to and from other devices via the communication control unit 201. The communication control unit 201 has a function as a receiving unit that receives data from other devices and a function as a transmitting unit that transmits data to other devices.
[0079] The user management unit 202 is a means for controlling and managing users such as apartment building residents. When a user operates a terminal 40 to access the management server 20, the user management unit 202 displays a GUI (Graphical User Interface) on the terminal 40 for selecting user registration and application for use of shared facilities.
[0080] For example, the user management unit 202 displays a GUI such as that shown in FIG.
[0081] When a user requests "resident registration" (when the resident registration button is pressed), the user management unit 202 acquires from the user the name, date of birth, address, biometric information (facial image), contact information, etc. For example, the user management unit 202 acquires user information such as the name using a GUI such as that shown in FIG.
[0082] When an employee of a condominium management company wishes to register as a manager (when the manager registration button is pressed), the user management unit 202 displays a menu screen similar to that shown in Fig. 9 and then displays a GUI such as that shown in Fig. 11 on the terminal 40. In addition to the name and biometric information of the user (manager), the user management unit 202 also acquires the facilities within the condominium that the manager can use (facilities in use; for example, the manager's room), the dates and times when the facilities can be used (permitted times). In this way, employees of the condominium management company register as a manager using a system management terminal.
[0083] When an apartment resident or the like wishes to register a visitor (when the visitor registration button is pressed), the user management unit 202 displays a GUI (web page for guest registration) such as that shown in Fig. 12 on the terminal 40. The user management unit 202 acquires the name, biometric information, etc. of the user (visitor), as well as the facility used by the visitor and the permitted time period.
[0084] When the user information of a user (e.g., an apartment resident, a caretaker, a visitor, etc.) is acquired, the user management unit 202 generates a user ID for identifying the user. The user ID may be any information that can uniquely identify the user. For example, the user management unit 202 may assign a unique value each time a user is registered and use this as the user ID.
[0085] The user management unit 202 associates the generated user ID, user type, user information, facility used, permitted time period, etc., and registers them in the user management database (see FIG. 13).
[0086] For an apartment resident, the user management unit 202 sets the facility to be used to the resident's "home (address)." Furthermore, the user management unit 202 sets the permitted time period for the resident to always (24 hours a day, 365 days a year).
[0087] Note that the user management database shown in Fig. 13 is an example and is not intended to limit the items stored therein. For example, features generated from a facial image may be registered as biometric information in the user management database. Alternatively, biometric information (facial image, features) may not be registered in the user management database.
[0088] A single user can enter multiple locations within an apartment building. For example, a user who has applied to use a facility can enter both their home and the facility for which they applied. In other words, the relationship between person management and entry management is one-to-many. Therefore, the user management database (such as the database shown in FIG. 13) can contain multiple facilities and permitted time periods for use for the same person.
[0089] When user registration is complete (when the user ID, etc. is registered in the user management database), the user management unit 202 notifies the authentication information control unit 203 and the user passage control unit 204 of the user ID of the user whose user registration has been completed.
[0090] The user management unit 202 also accepts applications from condominium residents to use the shared facilities. For example, when "Facility Use Application" is selected on the menu screen shown in Fig. 9, the user management unit 202 displays a facility use application screen as shown in Fig. 14 on the terminal 40.
[0091] The user management unit 202 acquires information identifying the facility user (for example, name or a combination of name and date of birth), the facility used, the date and time of use (permitted time period), etc. using a GUI such as that shown in FIG.
[0092] The user management unit 202 searches the user management database using information identifying the facility user (for example, a name or a combination of a name and a date of birth) as a key to identify the corresponding user (apartment resident). The user management unit 202 notifies the user passage control unit 204 of the identified user's user ID, facility used, and permitted time period.
[0093] A detailed description of facility use applications (reservations for facilities) will be omitted, as facility reservations are outside the scope of the present disclosure.
[0094] Furthermore, the user management unit 202 accesses the user management database periodically or at a predetermined timing. The user management unit 202 deletes entries whose permitted time period has passed. In the example of Fig. 13, the entry of a visitor whose user ID is "ID05" will be deleted after 4:00 PM on January 17, 2023.
[0095] The authentication information control unit 203 is a means for controlling the authentication information (user ID, biometric information) of the user.
[0096] When the user registration of the user is completed, the authentication information control unit 203 transmits an authentication information notification including the user ID, biometric information (for example, a facial image) and condominium ID of the user to the authentication server 10 .
[0097] The user passage control unit 204 is a means for controlling the access so that registered users (apartment residents, managers, visitors, etc.) and facility users can reach their destinations.
[0098] The user passage control unit 204 calculates a route that can be taken by a user who has completed user registration (a route that includes at least one authentication point (restricted area)).The user passage control unit 204 sets the entrance / exit of the apartment building as the starting point and the facility being used (the apartment building resident's home, the caretaker's office, the visitor's destination, etc.) as the arrival point, and identifies the authentication points (authentication terminal 30) that exist between the starting point and the arrival point.
[0099] For example, the user passage control unit 204 refers to table information that stores authentication points for each combination of departure point and arrival point, and identifies authentication points that exist between the user and the destination (home, manager's office, or destination).
[0100] Next, the user passage control unit 204 refers to the user management database using the user ID of the user, and acquires the permitted time period (date, time period) during which the user can pass through each authentication point.
[0101] The user passage control unit 204 stores the user ID and the permitted time period of the user in the authentication terminal management database corresponding to the authentication terminal 30 on the user's route (see FIG. 15). That is, the user passage control unit 204 stores, for each of the multiple authentication terminals 30, the user ID and the permitted time period of the user who is allowed to pass through the corresponding authentication point in association with each other.
[0102] The authentication terminal management database shown in Fig. 15 is an example and is not intended to limit the items to be stored, etc. The authentication terminal management database shown in Fig. 15 is an example of a database corresponding to the authentication terminal 30-5 installed in the meeting room.
[0103] Similarly, for users whose application to use the facility has been approved, the user passage control unit 204 sets the user ID and permitted time period in the authentication terminal management database of the authentication terminal 30 that is present until the user arrives at the facility to be used.
[0104] Here, the user passage control unit 204 accesses each authentication terminal management database periodically or at a predetermined timing. The user passage control unit 204 deletes entries whose permitted time period has passed. In the example of Fig. 15, the two entries will be deleted after 3:00 PM on January 17, 2023.
[0105] The list providing control unit 205 is a means for managing and controlling the permitted passerby list. Specifically, the list providing control unit 205 processes a list providing request received from the authentication terminal 30.
[0106] The list provision control unit 205 uses the terminal ID included in the list provision request to identify the sender of the list provision request (authentication terminal 30). The list provision control unit 205 refers to the authentication terminal management database corresponding to the identified authentication terminal 30.
[0107] The list provision control unit 205 refers to the permitted time period field of the authentication terminal management database, and extracts entries (users) for which the time of receipt of the list provision request falls within the permitted time period.
[0108] The list providing control unit 205 generates a list of user IDs described in the extracted entries as a list of permitted passers. For example, when a list providing request is received, if five users are permitted to pass through the authentication point corresponding to the authentication terminal 30, a list of permitted passers as shown in FIG. 16 is generated.
[0109] The list provision control unit 205 transmits the generated permitted person list to the sender of the list provision request (authentication terminal 30). In this way, the list provision control unit 205 generates a permitted person list for the authentication terminal 30 corresponding to the terminal ID, and transmits the generated permitted person list to the authentication terminal 30.
[0110] The storage unit 206 is a means for storing information necessary for the operation of the management server 20 .
[0111] [Authentication Server] Fig. 17 is a diagram showing an example of the processing configuration (processing modules) of the authentication server 10 according to the first embodiment. Referring to Fig. 17, the authentication server 10 includes a communication control unit 301, an authentication information notification processing unit 302, an authentication control unit 303, and a storage unit 304.
[0112] The communication control unit 301 is a means for controlling communication with other devices. For example, the communication control unit 301 receives data (packets) from the authentication terminal 30. The communication control unit 301 also transmits data to the authentication terminal 30. The communication control unit 301 passes data received from other devices to other processing modules. The communication control unit 301 transmits data acquired from other processing modules to other devices. In this way, other processing modules transmit and receive data to and from other devices via the communication control unit 301. The communication control unit 301 has a function as a receiving unit that receives data from other devices and a function as a transmitting unit that transmits data to other devices.
[0113] The authentication information notification processing unit 302 is a means for processing the authentication information notification received from the management server 20 .
[0114] If the authentication information notification includes a facial image of the user, the authentication information notification processing unit 302 generates features from the facial image. The feature generation process by the authentication information notification processing unit 302 can use existing technology, so a detailed description thereof will be omitted. For example, the authentication information notification processing unit 302 extracts the eyes, nose, mouth, etc. from the facial image as feature points. The authentication information notification processing unit 302 then calculates the positions of each feature point and the distances between each feature point as feature amounts (generating a feature vector consisting of multiple feature amounts).
[0115] The authentication information notification processing unit 302 identifies the condominium (management server 20) that is the sender of the authentication information notification based on the condominium ID included in the authentication information notification.
[0116] The authentication information notification processing unit 302 stores the user ID and biometric information (e.g., the generated feature amounts) included in the authentication information notification in the authentication target management database corresponding to the identified condominium (see FIG. 18). Note that the authentication target management database shown in FIG. 18 is an example and is not intended to limit the items to be stored. For example, a "facial image" may be registered in the authentication target management database as biometric information.
[0117] The authentication control unit 303 is a means for controlling the biometric authentication of the person to be authenticated. The authentication control unit 303 processes an authentication request received from the authentication terminal 30.
[0118] 19 is a flowchart showing an example of the operation of the authentication control unit 303 according to the first embodiment. The operation of the authentication control unit 303 will be described with reference to FIG.
[0119] The authentication control unit 303 identifies the apartment building in which the authentication terminal 30 is installed based on the apartment building ID included in the authentication request (step S101).
[0120] The authentication control unit 303 accesses the authentication target management database corresponding to the identified condominium, and extracts from the authentication target management database the biometric information of the authentication target corresponding to the user ID included in the permitted pass list obtained from the authentication request (step S102).
[0121] The authentication control unit 303 executes a matching process (authentication process) using the biometric information included in the authentication request and the extracted biometric information (step S103). For example, if the permitted pass list includes user IDs of five people, five pieces of biometric information are extracted and used in the matching process.
[0122] More specifically, the authentication control unit 303 generates features from the facial image included in the authentication request. The authentication control unit 303 sets the generated features as targets for matching and performs a matching process (one-to-N matching; N is a positive integer, the same applies hereinafter) between the features and features extracted from the authentication target management database.
[0123] The authentication control unit 303 calculates the similarity between the feature to be matched and each of the multiple feature values on the registration side (at least one extracted feature value). The similarity can be calculated using chi-square distance, Euclidean distance, or the like. Note that the greater the distance, the lower the similarity, and the closer the distance, the higher the similarity.
[0124] The authentication control unit 303 determines that the matching process has failed if there is no feature among the multiple features extracted from the authentication target management database that has a similarity with the feature to be matched that is equal to or greater than a predetermined value.
[0125] The authentication control unit 303 determines that the matching process is successful if there is a feature among the multiple feature amounts extracted from the authentication target management database that has a similarity with the feature amount to be matched that is equal to or greater than a predetermined value.
[0126] If the matching process is successful (step S104, branch Yes), the authentication control unit 303 transmits a positive response indicating successful authentication to the authentication terminal 30 (step S105).If the matching process is unsuccessful (step S104, branch No), the authentication control unit 303 transmits a negative response indicating unsuccessful authentication to the authentication terminal 30 (step S106).
[0127] The storage unit 304 is a means for storing information necessary for the operation of the authentication server 10 .
[0128] [Authentication Terminal] Fig. 20 is a diagram showing an example of the processing configuration (processing modules) of the authentication terminal 30 according to the first embodiment. Referring to Fig. 20, the authentication terminal 30 includes a communication control unit 401, a list acquisition control unit 402, a biometric information acquisition unit 403, an authentication request unit 404, and a storage unit 405.
[0129] The communication control unit 401 is a means for controlling communication with other devices. For example, the communication control unit 401 receives data (packets) from the management server 20. The communication control unit 401 also transmits data to the management server 20. The communication control unit 401 passes data received from other devices to other processing modules. The communication control unit 401 transmits data acquired from other processing modules to other devices. In this way, other processing modules transmit and receive data to and from other devices via the communication control unit 401. The communication control unit 401 has a function as a receiving unit that receives data from other devices and a function as a transmitting unit that transmits data to other devices.
[0130] The list acquisition control unit 402 is a means for controlling the acquisition of the permitted-passing person list. The list acquisition control unit 402 periodically or at a predetermined timing transmits a "list provision request" including the terminal ID of its own device to the management server 20. In this way, the list acquisition control unit 402 is a means for requesting the management server 20 to provide the permitted-passing person list.
[0131] The list acquisition control unit 402 acquires the permitted person list from the management server 20. The list acquisition control unit 402 acquires the permitted person list of its own device by periodically or at a predetermined timing transmitting the terminal ID of its own device to the management server 20. The list acquisition control unit 402 stores the acquired permitted person list internally.
[0132] In this way, the list acquisition control unit 402 requests the management server 20 to provide a list of permitted persons consisting of the user IDs of at least one permitted person who can pass through the authentication point corresponding to the management server 20. The list acquisition control unit 402 receives from the management server 20 the list of permitted persons that the management server 20 has generated based on the permitted time period.
[0133] The biometric information acquisition unit 403 is a means for controlling the camera and acquiring biometric information (e.g., a facial image) of a user. The biometric information acquisition unit 403 periodically or at a predetermined timing captures an image of the area in front of the device. The biometric information acquisition unit 403 determines whether the acquired image contains a human facial image, and if a facial image is included, extracts the facial image from the acquired image data.
[0134] Note that since existing technologies can be used for the facial image detection process and facial image extraction process by the biometric information acquisition unit 403, detailed description thereof will be omitted. For example, the biometric information acquisition unit 403 may extract a facial image (face region) from image data using a learning model trained by a CNN (Convolutional Neural Network). Alternatively, the biometric information acquisition unit 403 may extract a facial image using a technique such as template matching.
[0135] The biometric information acquisition unit 403 passes the extracted face image to the authentication request unit 404 .
[0136] The authentication request unit 404 is a means for requesting authentication of the person to be authenticated from the authentication server 10. When authentication of the person to be authenticated becomes necessary, the authentication request unit 404 transmits an authentication request to the authentication server 10, the authentication request including the biometric information of the person to be authenticated (the user in front of the authentication terminal 30), the latest permitted passerby list, and the condominium ID.
[0137] The authentication request unit 404 receives the authentication result (authentication success, authentication failure) from the authentication server 10 .
[0138] If the response from the authentication server 10 is a "negative response" (if the authentication has failed), the authentication request unit 404 closes the door or gate to deny the person to be authenticated from passing through the authentication point (denies the person to be authenticated from entering the restricted area). The authentication request unit 404 may also notify the person to be authenticated that they cannot pass through the authentication point.
[0139] If the response from the authentication server 10 is a "positive response" (if authentication is successful), the authentication request unit 404 opens the door or gate and allows the person to pass through the authentication point (allows the person to enter the restricted area).
[0140] In this way, the authentication request unit 404 transmits at least the biometric information of the person to be authenticated and the list of permitted passers to the authentication server 10, which stores the user ID of the person to be authenticated and the biometric information in a database in association with each other. When the authentication request unit 404 receives a notification of successful authentication from the authentication server 10, it permits the person to pass through the authentication point.
[0141] The storage unit 405 stores information necessary for the operation of the authentication terminal 30 .
[0142] [Terminal] Examples of the terminal 40 include a smartphone, a mobile phone, a game console, a mobile terminal device such as a tablet, a computer (personal computer, laptop computer), etc. The terminal 40 can be any equipment or device that can accept user operations and communicate with the management server 20, etc. Furthermore, the configuration of the terminal 40 is clear to those skilled in the art, so a detailed description will be omitted.
[0143] [System Operation] Next, the operation of the information processing system according to the first embodiment will be described.
[0144] 21 is a sequence diagram showing an example of the operation of the information processing system according to the first embodiment. The operation of the information processing system according to the first embodiment will be described with reference to FIG.
[0145] The authentication terminal 30 transmits a list provision request to the management server 20 periodically or at a predetermined timing (step S01).
[0146] The management server 20 transmits a list of user IDs of users who are allowed to pass through the authentication point corresponding to the authentication terminal 30 as a pass-permitted person list to the authentication terminal 30 (step S02). The authentication terminal 30 stores the received pass-permitted person list.
[0147] When the authentication terminal 30 detects the person to be authenticated in front of it, it acquires the biometric information of the person to be authenticated, and then transmits an authentication request including the acquired biometric information and the latest permitted person list to the authentication server 10 (step S03).
[0148] The authentication server 10 extracts the person to be authenticated using the permitted passerby list, and executes a matching process using the biometric information of the extracted person to be authenticated and the biometric information included in the authentication request (step S04).
[0149] The authentication server 10 transmits the authentication result (authentication success, authentication failure) to the authentication terminal 30 (step S05).
[0150] The authentication terminal 30 controls the gates and the like according to the authentication result (step S06).
[0151] <Variation 1 of the First Embodiment> In the above embodiment, it has been described that the authentication terminal 30 holds the latest list of permitted persons, and when authentication of the person to be authenticated becomes necessary, the latest list of permitted persons is transmitted to the authentication server 10.
[0152] However, the latest permitted person list may be held by the authentication server 10. For example, the management server 20 and the authentication server 10 share the list ID of the permitted person list corresponding to each authentication terminal 30.
[0153] The management server 20 generates in real time a list of permitted persons consisting of user IDs of permitted persons who can pass through each authentication point, based on the permitted time period of each user.
[0154] The authentication server 10 periodically or at a predetermined timing transmits a list provision request to the management server 20 to obtain the permitted person list of each authentication terminal 30. Alternatively, the management server 20 may periodically or at a predetermined timing transmit the permitted person list of each authentication terminal 30 to the authentication server 10 (see FIG. 22 ).
[0155] When authentication of the person to be authenticated becomes necessary, the authentication terminal 30 transmits to the authentication server 10 an authentication request including the list ID corresponding to the authentication terminal itself and the biometric information of the person to be authenticated.
[0156] The authentication server 10 identifies the permitted person list based on the list ID included in the authentication request, extracts the person to be authenticated based on the identified permitted person list, and executes a matching process.
[0157] In this way, the management server 20 generates a list of permitted persons consisting of the user IDs of at least one permitted person who can pass through the authentication point based on the permitted time period for each user. The authentication server 10 obtains the list of permitted persons from the management server 20. When authentication of a person to be authenticated becomes necessary, the authentication terminal 30 transmits a list ID for identifying the list of permitted persons and the biometric information of the person to be authenticated to the authentication server 10. The authentication server 10 extracts at least one piece of biometric information corresponding to at least one user ID included in the list of permitted persons from the authentication target management database. The authentication server 10 performs a matching process using the extracted at least one piece of biometric information and the biometric information of the person to be authenticated. In other words, by transmitting and receiving the list ID between the authentication server 10 and the authentication terminal 30, the amount of communication between the authentication server 10 and the authentication terminal 30 is reduced.
[0158] In the above embodiment, the authentication server 10 executes the matching process (authentication process) using the biometric information narrowed down based on the permitted-passing person list. The matching process may be executed on the apartment building side (edge side; authentication terminal 30).
[0159] In this case, when authentication of the person to be authenticated becomes necessary, the authentication terminal 30 sends a biometric information provision request (a request that does not include the biometric information of the person to be authenticated) including the latest list of permitted persons to the authentication server 10 (see Figure 23).
[0160] The authentication server 10 extracts biometric information of an entry corresponding to a user ID listed in the permitted person list from the authentication target management database. For example, if the permitted person list contains five user IDs, five pieces of biometric information corresponding to the user IDs are extracted.
[0161] The authentication server 10 transmits the extracted biometric information to the authentication terminal 30 .
[0162] The authentication terminal 30 executes a matching process using the biometric information of the person to be authenticated and the biometric information acquired from the authentication server 10 .
[0163] If the verification process is successful, the authentication terminal 30 allows the person to be authenticated to pass through the authentication point. If the verification process is unsuccessful, the authentication terminal 30 denies the person to be authenticated from passing through the authentication point.
[0164] In this way, when authentication of a person to be authenticated becomes necessary, the authentication terminal 30 transmits at least the list of permitted persons to the authentication server 10. The authentication server 10 extracts at least one piece of biometric information corresponding to at least one user ID included in the list of permitted persons from the authentication target management database. The authentication server 10 transmits the extracted at least one piece of biometric information to the authentication terminal 30. The authentication terminal 30 performs a matching process using at least one piece of biometric information acquired from the authentication server 10 and the biometric information of the person to be authenticated. Because the authentication server 10 does not perform the matching process, the processing load on the authentication server 10 is reduced.
[0165] As described above, in the information processing system according to the first embodiment, the authentication terminal 30 transmits to the authentication server 10 a list of user IDs of users who are permitted to pass through the authentication point managed by the authentication terminal 30 (i.e., who are permitted to enter the restricted area) and biometric information of the person to be authenticated. The authentication server 10 narrows down the persons to be authenticated based on the list of user IDs (permitted-passing person list). The authentication server 10 then executes a matching process (authentication process) using the biometric information of the narrowed-down persons to be authenticated. The matching process using biometric information and the biometric information extraction process using user IDs require a higher processing load. Therefore, narrowing down the persons to be authenticated (reducing N in one-to-N matching) reduces the processing load on the authentication server 10. Furthermore, reducing the number of persons to be authenticated improves the accuracy and processing speed of biometric authentication.
[0166] Furthermore, the authentication server 10 does not manage information such as each user's permitted time period. In other words, even if a user applies for use of a shared facility and the time period during which the facility is available changes, this does not affect the authentication server 10's authentication target management database. Changes in the permitted time period for each user in the condominium are reflected in the authentication terminal management database managed by the management server 20. Furthermore, these changes in the permitted time period are reflected in the permitted pass list acquired by the authentication terminal 30. In this way, changes in the user's situation as viewed by the authentication center (authentication server 10) are absorbed by the user, allowing the authentication server 10 to focus on matching the user to be authenticated. Furthermore, by adopting this configuration, the authentication server 10 can provide authentication services to a large number of condominiums, eliminating the need for modifications (customization) to suit the circumstances of each individual condominium.
[0167] Next, the hardware of each device constituting the information processing system will be described. FIG. 24 is a diagram showing an example of the hardware configuration of the management server 20.
[0168] The management server 20 can be configured using an information processing device (a so-called computer), and has the configuration shown in Fig. 24. For example, the management server 20 includes a processor 311, a memory 312, an input / output interface 313, and a communication interface 314. The components such as the processor 311 are connected by an internal bus or the like, and are configured to be able to communicate with each other.
[0169] However, the configuration shown in Fig. 24 is not intended to limit the hardware configuration of the management server 20. The management server 20 may include hardware not shown, and may not include the input / output interface 313 as necessary. Furthermore, the number of processors 311 and the like included in the management server 20 is not intended to be limited to the example shown in Fig. 24, and the management server 20 may include multiple processors 311, for example.
[0170] The processor 311 is a programmable device such as a central processing unit (CPU), a micro processing unit (MPU), or a digital signal processor (DSP). Alternatively, the processor 311 may be a device such as a field programmable gate array (FPGA) or an application specific integrated circuit (ASIC). The processor 311 executes various programs including an operating system (OS).
[0171] The memory 312 is a random access memory (RAM), a read only memory (ROM), a hard disk drive (HDD), a solid state drive (SSD), etc. The memory 312 stores an OS program, application programs, and various data.
[0172] The input / output interface 313 is an interface for a display device and an input device (not shown). The display device is, for example, a liquid crystal display. The input device is, for example, a keyboard, a mouse, a touch panel, or the like that accepts user operations.
[0173] The communication interface 314 is a circuit, module, etc. that communicates with other devices. For example, the communication interface 314 includes a network interface card (NIC).
[0174] The functions of the management server 20 are realized by various processing modules. The processing modules are realized, for example, by the processor 311 executing a program stored in the memory 312. The program can be recorded on a computer-readable storage medium. The storage medium can be a non-transitory medium such as a semiconductor memory, a hard disk, a magnetic recording medium, or an optical recording medium. That is, the present invention can also be embodied as a computer program product. The program can be downloaded via a network or updated using a storage medium storing the program. Furthermore, the processing modules can be realized by a semiconductor chip.
[0175] The authentication server 10, authentication terminal 30, etc. can also be configured using information processing devices, similar to the management server 20, and their basic hardware configurations are no different from those of the management server 20, so a description thereof will be omitted.
[0176] The management server 20 is equipped with a computer, and the computer executes a program to realize the functions of the management server 20. The management server 20 also executes a control method for the management server 20 by the program.
[0177] [Modifications] The configuration, operation, etc. of the information processing system described in the above embodiment are merely examples, and are not intended to limit the configuration, etc. of the system.
[0178] In the above embodiment, an apartment building is used as an example of a facility having a restricted area. However, the facilities to which the information processing system disclosed herein can be applied are not limited to apartment buildings. The information processing system disclosed herein can be applied to any facility having a restricted area, such as an office.
[0179] In the above embodiment, the authentication server 10 is provided with an authentication target management database for each apartment building, and stores the authentication information (user ID, biometric information) of the authentication target for each apartment building. However, the authentication server 10 may store the authentication information of the authentication target for each apartment building that has a contract with the authentication center in a single authentication terminal management database. In this case, it is only necessary that the user IDs of users do not overlap between the apartment buildings.
[0180] In the above embodiment, the case where the authentication terminal 30 requests the management server 20 to provide the permitted person list has been described. The management server 20 may transmit the permitted person list to each authentication terminal 30 periodically or at a predetermined timing. For example, the permitted person list may be transmitted to the authentication terminal 30 when a user ID included in the permitted person list changes in response to a change in the user's permitted time period. In other words, the management server 20 may transmit the permitted person list to the authentication terminal 30 unilaterally or periodically, even when there is no request from the authentication terminal 30.
[0181] In the above embodiment, it has been described that the authentication terminal 30 transmits an authentication request to the authentication server 10. The authentication terminal 30 may transmit an authentication request to the management server 20. Specifically, when the authentication terminal 30 detects a person to be authenticated, it transmits an authentication request including the biometric information of the person to be authenticated and a terminal ID to the management server 20. The management server 20 identifies the authentication terminal 30 based on the terminal ID and generates a corresponding permitted person list. The management server 20 transmits the generated permitted person list and the biometric information of the person to be authenticated to the authentication server 10. The authentication server 10 transmits the authentication result to the authentication terminal 30 directly or indirectly via the management server 20.
[0182] If the user ID is not included in the permitted-passing-person list, the authentication terminal 30 may treat the authentication result of the person to be authenticated as an authentication failure without sending an authentication request to the authentication server 10. The fact that the user ID is not included in the permitted-passing-person list indicates that there is no person to be authenticated who can pass through the authentication point.
[0183] In the above embodiment, the management server 20 transmits to the authentication terminal 30 a list of permitted persons including the user IDs of users who are allowed to pass through the authentication point when it receives a list provision request. However, the management server 20 may transmit to the authentication terminal 30 a list of permitted persons including the user IDs of users who are allowed to pass through the authentication point within a predetermined period from the time of receiving the list provision request. For example, consider a case where the management server 20 receives a list provision request at 15:00 and the predetermined period is "10 minutes." In this case, the management server 20 may transmit to the authentication terminal 30 a list of permitted persons including the user IDs of users who are allowed to pass through the authentication point between 15:00 and 15:10.
[0184] In the above embodiment, a case has been described in which the user management database and authentication terminal management database are configured inside the management server 20, but these databases may be constructed on an external database server or the like. That is, some of the functions of the management server 20 may be implemented in another device. More specifically, it is sufficient that the above-described "list provision control unit (list provision control means)" and the like are implemented in any of the devices included in the system.
[0185] The form of data transmission and reception between the devices (authentication server 10, management server 20, authentication terminal 30) is not particularly limited, but the data transmitted and received between these devices may be encrypted. Biometric information and the like is transmitted and received between these devices, and in order to appropriately protect this information, it is desirable to transmit and receive encrypted data.
[0186] In the flow charts (flowcharts, sequence diagrams) used in the above explanation, multiple steps (processes) are described in order, but the order of execution of the steps executed in the embodiments is not limited to the order described. In the embodiments, the order of the steps shown in the drawings can be changed to the extent that the content is not affected, such as by executing each process in parallel.
[0187] The above-described embodiments have been described in detail to facilitate understanding of the present disclosure, and it is not intended that all of the above-described configurations are required. Furthermore, when multiple embodiments are described, each embodiment may be used alone or in combination. For example, it is possible to replace part of the configuration of one embodiment with the configuration of another embodiment, or to add the configuration of another embodiment to the configuration of one embodiment. Furthermore, it is possible to add, delete, or replace part of the configuration of one embodiment with another configuration.
[0188] From the above explanation, it is clear that the present invention has industrial applicability, and the present invention can be suitably applied to an information processing system that realizes biometric authentication in an apartment building or the like that has a restricted area.
[0189] Some or all of the above embodiments may be described as, but are not limited to, the following supplementary notes: [Supplementary Note 1] An authentication terminal comprising: a list acquisition control means that stores user IDs of users who are allowed to pass through an authentication point corresponding to a restricted area within a facility where entry is restricted, and a permitted time period during which the users are allowed to pass through the authentication point, and that requests a management server to provide a list of permitted persons consisting of the user IDs of at least one or more permitted persons who are allowed to pass through the authentication point corresponding to the authentication terminal itself, and receives from the management server the list of permitted persons that the management server has generated based on the permitted time period; and an authentication request means that transmits at least biometric information of a person to be authenticated and the list of permitted persons to an authentication server that stores the user ID and biometric information of a person to be authenticated in a database in association with each other. [Supplementary Note 2] The authentication terminal according to Supplementary Note 1, wherein the authentication server extracts from the database at least one piece of biometric information corresponding to at least one of the user IDs included in the permitted-passing list, and performs a matching process using the extracted at least one piece of biometric information and the biometric information of the person to be authenticated, and the authentication request means, upon receiving a notification of successful authentication from the authentication server, permits the person to be authenticated to pass through the authentication point. [Supplementary Note 3] The authentication terminal according to Supplementary Note 2, wherein the facility is an apartment building. [Supplementary Note 4] The authentication terminal according to any one of Supplements 1 to 3, wherein the biometric information is a facial image or a feature amount generated from the facial image. [Supplementary Note 5] A control method for an authentication terminal, wherein the authentication terminal requests a management server, which stores user IDs of users who are allowed to pass through authentication points corresponding to restricted areas within a facility and permitted time periods during which the users are allowed to pass through the authentication points, to provide a list of permitted persons consisting of the user IDs of at least one or more permitted persons who are allowed to pass through the authentication point corresponding to the device itself, receives from the management server the list of permitted persons that the management server has generated based on the permitted time periods, and transmits at least the biometric information of the person to be authenticated and the list of permitted persons to an authentication server which stores the user IDs and biometric information of the person to be authenticated in a database in association with each other.[Supplementary Note 6] A computer-readable storage medium storing a program for causing a computer mounted on an authentication terminal to execute the following processes: a process of requesting a management server, which stores user IDs of users who are allowed to pass through authentication points corresponding to restricted areas within a facility and permitted time periods during which the users are allowed to pass through the authentication points, to provide a list of permitted persons consisting of the user IDs of at least one or more permitted persons who are allowed to pass through the authentication point corresponding to the authentication terminal; a process of receiving from the management server the list of permitted persons that the management server has generated based on the permitted time periods; and a process of transmitting at least the biometric information of the person to be authenticated and the list of permitted persons to an authentication server, which stores the user IDs and biometric information of the person to be authenticated in a database in association with each other. [Supplementary Note 7] A system including: an authentication terminal installed at an authentication point corresponding to a restricted area within a facility where entry is restricted; a management server that stores user IDs of users who are allowed to pass through the authentication point and permitted time periods during which the users are allowed to pass through the authentication point; and an authentication server that stores the user IDs of persons to be authenticated in a database in association with biometric information, wherein the authentication terminal requests the management server to provide a list of permitted persons consisting of the user IDs of at least one or more permitted persons who are allowed to pass through the authentication point corresponding to the authentication terminal itself; the management server generates the list of permitted persons based on the permitted time periods and transmits the generated list of permitted persons to the authentication terminal; the authentication terminal transmits at least the biometric information of the person to be authenticated and the list of permitted persons to the authentication server; and the authentication server extracts from the database at least one or more pieces of biometric information corresponding to at least one or more user IDs included in the list of permitted persons, and performs a matching process using the extracted at least one or more pieces of biometric information and the biometric information of the person to be authenticated.[Supplementary Note 8] The system according to Supplementary Note 7, wherein the facility includes a plurality of restricted areas, each of which includes a corresponding plurality of authentication terminals, the management server stores, for each of the plurality of authentication terminals, the user IDs and the permitted time periods of users who are allowed to pass through the corresponding authentication point, the authentication terminals periodically or at predetermined timings transmit their own terminal IDs to the management server, and the management server generates a list of permitted passers for the authentication terminals corresponding to the terminal IDs and transmits the generated list of permitted passers to the authentication terminal. [Supplementary Note 9] The system according to Supplementary Note 8, wherein, upon acquiring biometric information of the user, the management server transmits the user ID of the user and the acquired biometric information to the authentication server, and the authentication server stores the user ID and biometric information received from the management server in the database. [Supplementary Note 10] The system according to Supplementary Note 9, wherein, upon successful matching, the authentication server notifies the authentication terminal of successful authentication, and the authentication terminal notified of successful authentication permits the person to pass through the authentication point. [Supplementary Note 11] The system according to any one of Supplementary Note 7 to Supplementary Note 10, wherein the facility is an apartment building. [Supplementary Note 12] The system according to Supplementary Note 11, wherein the biometric information is a face image or a feature amount generated from the face image.[Supplementary Note 13] A system comprising: an authentication terminal installed at an authentication point corresponding to a restricted area within a facility where entry is restricted; a management server that stores user IDs of users who are allowed to pass through the authentication point and permitted time periods during which the users are allowed to pass through the authentication point; and an authentication server that stores the user IDs of persons to be authenticated in a database in association with biometric information, wherein the management server generates a list of permitted persons consisting of the user IDs of at least one or more permitted persons who are allowed to pass through the authentication point based on the permitted time periods, the authentication server obtains the list of permitted persons from the management server, the authentication terminal transmits a list ID for identifying the list of permitted persons and biometric information of the person to be authenticated to the authentication server, and the authentication server extracts from the database at least one or more pieces of biometric information corresponding to at least one or more user IDs included in the list of permitted persons, and performs a matching process using the extracted at least one or more pieces of biometric information and the biometric information of the person to be authenticated.[Supplementary Note 14] An authentication terminal installed at an authentication point corresponding to a restricted area within a facility where entry is restricted; a management server that stores user IDs of users who are allowed to pass through the authentication point and permitted time periods during which the users can pass through the authentication point; and an authentication server that stores the user IDs of persons to be authenticated in a database in association with biometric information, wherein the authentication terminal requests the management server to provide a list of permitted persons consisting of the user IDs of at least one or more permitted persons who are allowed to pass through the authentication point corresponding to the authentication terminal itself, the management server generates the list of permitted persons based on the permitted time periods and transmits the generated list of permitted persons to the authentication terminal, and when authentication of a person to be authenticated becomes necessary, the authentication terminal transmits at least the list of permitted persons to the authentication server, and the authentication server extracts from the database at least one or more pieces of biometric information corresponding to at least one or more user IDs included in the list of permitted persons and transmits the extracted at least one or more pieces of biometric information to the authentication terminal, The authentication terminal executes a matching process using at least one piece of biometric information acquired from the authentication server and the biometric information of the person to be authenticated.
[0190] The disclosures of the above-cited prior art documents are incorporated herein by reference. Although the embodiments of the present invention have been described above, the present invention is not limited to these embodiments. Those skilled in the art will understand that these embodiments are merely illustrative and that various modifications are possible without departing from the scope and spirit of the present invention. In other words, the present invention naturally includes various modifications and alterations that may be made by those skilled in the art in accordance with the entire disclosure, including the claims, and the technical concepts thereof.
[0191] 10 Authentication Server 20 Management Server 30 Authentication Terminal 30-1 Authentication Terminal 30-2 Authentication Terminal 30-3 Authentication Terminal 30-4 Authentication Terminal 30-5 Authentication Terminal 40 Terminal 100 Authentication Terminal 101 List Acquisition Control Means 102 Authentication Request Means 201 Communication Control Unit 202 User Management Unit 203 Authentication Information Control Unit 204 User Passage Control Unit 205 List Provision Control Unit 206 Storage Unit 301 Communication Control Unit 302 Authentication Information Notification Processing Unit 303 Authentication Control Unit 304 Storage Unit 311 Processor 312 Memory 313 Input / Output Interface 314 Communication Interface 401 Communication Control Unit 402 List Acquisition Control Unit 403 Biometric Information Acquisition Unit 404 Authentication Request Unit 405 Storage Unit
Claims
1. a list acquisition control means for storing user IDs of users who are permitted to pass through authentication points corresponding to restricted areas within a facility where entry is restricted, and permitted time periods during which the users can pass through the authentication points, and for requesting a management server to provide a list of permitted persons consisting of the user IDs of at least one permitted person who is permitted to pass through the authentication point corresponding to the device itself, and for receiving from the management server the list of permitted persons that the management server has created based on the permitted time periods; an authentication request means for transmitting at least the biometric information of the person to be authenticated and the list of permitted persons to an authentication server which stores the user ID of the person to be authenticated and the biometric information in a database in association with each other; An authentication terminal comprising:
2. the authentication server extracts from the database at least one piece of biometric information corresponding to at least one piece of user ID included in the permitted-passing person list, and performs a matching process using the extracted at least one piece of biometric information and the biometric information of the person to be authenticated; 2. The authentication terminal according to claim 1, wherein said authentication request means permits said person to pass through said authentication point when said authentication request means receives a notification of successful authentication from said authentication server.
3. The authentication terminal according to claim 2 , wherein the facility is an apartment building.
4. The authentication terminal according to claim 1 , wherein the biometric information is a facial image or a feature amount generated from the facial image.
5. At the authentication terminal, requesting a management server that stores user IDs of users who are permitted to pass through authentication points corresponding to restricted areas within a facility where entry is restricted and permitted time periods during which the users can pass through the authentication points to provide a list of permitted persons consisting of the user IDs of at least one or more permitted persons who are permitted to pass through the authentication points corresponding to the device itself; receiving, from the management server, the list of permitted persons generated by the management server based on the permitted time period; A control method for an authentication terminal, which transmits at least the biometric information of the person to be authenticated and the permitted person list to an authentication server which stores the user ID of the person to be authenticated and the biometric information in a database in association with each other.
6. The computer installed in the authentication terminal a process of requesting a management server, which stores user IDs of users who are allowed to pass through authentication points corresponding to restricted areas within a facility where entry is restricted, and permitted time periods during which the users can pass through the authentication points, to provide a list of permitted persons consisting of the user IDs of at least one or more permitted persons who are allowed to pass through the authentication points corresponding to the device itself; receiving, from the management server, the list of permitted persons generated by the management server based on the permitted time period; a process of transmitting at least the biometric information of the person to be authenticated and the list of permitted persons to an authentication server which stores the user ID of the person to be authenticated and the biometric information in a database in association with each other; A program to execute.
7. an authentication terminal installed at an authentication point corresponding to a restricted area within the facility where access is restricted; a management server that stores a user ID of a user who is allowed to pass through the authentication point and an authorized time period during which the user is allowed to pass through the authentication point; an authentication server that stores the user ID of the person to be authenticated and biometric information in a database in association with each other; Including, the authentication terminal requests the management server to provide a list of permitted persons including the user IDs of at least one permitted person who can pass through the authentication point corresponding to the authentication terminal itself; the management server generates the list of permitted persons based on the permitted time period and transmits the generated list of permitted persons to the authentication terminal; the authentication terminal transmits at least the biometric information of the person to be authenticated and the permitted person list to the authentication server; The authentication server extracts from the database at least one piece of biometric information corresponding to at least one of the user IDs included in the permitted passage list, and performs a matching process using the extracted at least one piece of biometric information and the biometric information of the person to be authenticated.
8. There are a plurality of restricted areas within the facility, and a plurality of the authentication terminals are included corresponding to each of the plurality of restricted areas; the management server stores, for each of the plurality of authentication terminals, the user IDs of users who are allowed to pass through the corresponding authentication points and the permitted time periods; the authentication terminal periodically or at a predetermined timing transmits its own terminal ID to the management server; The system according to claim 7 , wherein the management server generates the permitted person list of the authentication terminal corresponding to the terminal ID, and transmits the generated permitted person list to the authentication terminal.
9. an authentication terminal installed at an authentication point corresponding to a restricted area within the facility where access is restricted; a management server that stores a user ID of a user who is allowed to pass through the authentication point and an authorized time period during which the user is allowed to pass through the authentication point; an authentication server that stores the user ID of the person to be authenticated and biometric information in a database in association with each other; Including, the management server generates a list of permitted persons, which is made up of the user IDs of at least one permitted person who can pass through the authentication point, based on the permitted time period; the authentication server acquires the permitted person list from the management server; the authentication terminal transmits a list ID for identifying the permitted person list and biometric information of the person to be authenticated to the authentication server; The authentication server extracts from the database at least one piece of biometric information corresponding to at least one of the user IDs included in the permitted passage list, and performs a matching process using the extracted at least one piece of biometric information and the biometric information of the person to be authenticated.
10. an authentication terminal installed at an authentication point corresponding to a restricted area within the facility where access is restricted; a management server that stores a user ID of a user who is allowed to pass through the authentication point and an authorized time period during which the user is allowed to pass through the authentication point; an authentication server that stores the user ID of the person to be authenticated and biometric information in a database in association with each other; Including, the authentication terminal requests the management server to provide a list of permitted persons including the user IDs of at least one permitted person who can pass through the authentication point corresponding to the authentication terminal itself; the management server generates the list of permitted persons based on the permitted time period and transmits the generated list of permitted persons to the authentication terminal; When authentication of the person to be authenticated becomes necessary, the authentication terminal transmits at least the permitted person list to the authentication server; the authentication server extracts from the database at least one piece of biometric information corresponding to at least one of the user IDs included in the permitted person list, and transmits the extracted at least one piece of biometric information to the authentication terminal; The authentication terminal executes a matching process using at least one piece of biometric information acquired from the authentication server and the biometric information of the person to be authenticated.