Server device, system, server device control method and program
Patent Information
- Application Number
- JP2025516377
- Authority / Receiving Office
- JP · JP
- Patent Type
- Applications
- Filing Date
- 2025-09-25
- Publication Date
- 2025-12-15
AI Technical Summary
The burden on family representatives to register biometric information for multiple family members is significant, as they often do not have access to the necessary biometric data of their family members, such as facial photos, making the registration process cumbersome.
A server device and system that allows family members to register their own biometric information, with the representative issuing user registration information and the server device acquiring biometric data from the family members, reducing the representative's burden by enabling direct registration by the individuals themselves.
This solution simplifies the biometric registration process by allowing family members to register their own information, thereby reducing the administrative load on the representative and ensuring that biometric data is securely stored without relying on the representative to obtain it.
Abstract
Description
Server device, system, server device control method and storage medium
[0001] The present invention relates to a server device, a system, a method for controlling a server device, and a storage medium.
[0002] When unlocking doors in apartment buildings and other buildings using biometric authentication, users must register their biometric information in advance.
[0003] For example, Patent Document 1 describes a fingerprint matching device for apartment buildings that reduces the hassle of registering fingerprint data and protects privacy. The fingerprint matching device of Patent Document 1 is installed at the common entrance of an apartment building, compares input fingerprint data with pre-stored fingerprint data to determine whether they match, and if they match, issues a command to open the common entrance. The fingerprint matching device for apartment buildings stores at least one person in each household in the apartment building as a registration authority who has the authority to register fingerprint data for other residents in that household. If the fingerprint data of the stored registration authority matches the pre-stored fingerprint data and the fingerprint data of another resident is input, the fingerprint matching device stores the fingerprint data of the other resident.
[0004] Furthermore, Patent Document 2 discloses a facial authentication system and program that can perform processing related to room numbers through facial authentication by pre-registering information about the facial images of each resident in an apartment building or the like. The facial authentication platform of Patent Document 2 transmits registration request information and then receives at least information about the user's facial image and registration information, and stores the received information about the user's facial image, room number, and registration information in a storage unit. The facial authentication platform transmits information about the user's facial image to the first to fifth imaging devices. The authentication unit compares information about the user's facial image captured by each imaging unit with information about the user's facial image stored in each storage unit to authenticate the user, and then a processing device performs processing related to the authenticated user's room number.
[0005] JP 2004-211381 A JP 2023-004868 A
[0006] In order to enter a home using biometric authentication, biometric information and other information must be registered in the system. For example, if a family has four people, the biometric information of all four members must be registered in the system. However, it is a heavy burden for the family representative (e.g., head of household) to register the biometric information of other family members in the system. This is because the representative's smartphone or other device may not necessarily store biometric information (e.g., facial photos) of family members suitable for biometric authentication.
[0007] The main object of the present invention is to provide a server device, a system, a method for controlling a server device, and a storage medium that contribute to reducing the burden on a representative who represents multiple users regarding the registration of biometric information.
[0008] According to a first aspect of the present invention, there is provided a server device comprising: an issuing means for issuing user registration information to a first user in response to a request from the first user, the user registration information being required for the second user to perform user registration necessary for the second user to receive biometric authentication; and an acquiring means for acquiring at least the biometric information of the second user from the second user upon acquiring the user registration information issued to the first user from the second user.
[0009] According to a second aspect of the present invention, there is provided a system including a first terminal carried by a first user, a second terminal carried by a second user, and a server device, wherein the server device, in response to a request from the first user, displays user registration information on the first terminal for the second user to perform user registration necessary for the second user to receive biometric authentication, the second terminal acquires the user registration information from the first terminal and transmits the acquired user registration information to the server device, and upon acquiring the user registration information from the second terminal, the server device acquires at least biometric information of the second user from the second terminal.
[0010] According to a third aspect of the present invention, there is provided a control method for a server device, in which, in response to a request from a first user, a server device issues user registration information to the first user, which information is used by the second user to perform user registration necessary for the second user to receive biometric authentication, and, upon receiving the user registration information issued to the first user from the second user, the server device acquires at least the biometric information of the second user from the second user.
[0011] According to a fourth aspect of the present invention, there is provided a computer-readable storage medium that stores a program for causing a computer mounted on a server device to execute the following processes: a process of issuing user registration information to a first user in response to a request from the first user, so that the second user can perform user registration necessary for the second user to receive biometric authentication; and a process of acquiring at least the biometric information of the second user from the second user upon acquiring the user registration information issued to the first user from the second user.
[0012] According to each aspect of the present invention, a server device, a system, a method for controlling a server device, and a storage medium are provided that contribute to reducing the burden on a representative who represents multiple users regarding the registration of biometric information. Note that the effects of the present invention are not limited to those described above. The present invention may achieve other effects instead of or in addition to the effects described above.
[0013] FIG. 1 is a diagram illustrating an overview of an embodiment. FIG. 2 is a flowchart illustrating an overview of an operation of an embodiment. FIG. 3 is a diagram illustrating an example of a schematic configuration of an information processing system according to a first embodiment. FIG. 4 is a diagram illustrating an operation of the information processing system according to the first embodiment. FIG. 5 is a diagram illustrating an operation of the information processing system according to the first embodiment. FIG. 6 is a diagram illustrating an example of a processing configuration of a server device according to the first embodiment. FIG. 7 is a diagram illustrating an example of a display of a terminal according to the first embodiment. FIG. 8 is a diagram illustrating an example of a display of a terminal according to the first embodiment. FIG. 9 is a flowchart illustrating an example of an operation of a user management unit according to the first embodiment. FIG. 10 is a diagram illustrating an example of a display of a terminal according to the first embodiment. FIG. 11 is a diagram illustrating an example of a display of a terminal according to the first embodiment. FIG. 12 is a diagram illustrating an example of a display of a terminal according to the first embodiment. FIG. 13 is a diagram illustrating an example of a display of a terminal according to the first embodiment. FIG. 14 is a diagram illustrating an example of a display of a terminal according to the first embodiment. FIG. 15 is a diagram illustrating an example of a resident management database according to the first embodiment. FIG. 16 is a flowchart illustrating an example of an operation of the user management unit according to the first embodiment. FIG. 17 is a diagram illustrating an example of a display of a terminal according to the first embodiment. Fig. 18 is a diagram showing an example of a display on a terminal according to the first embodiment. Fig. 19 is a diagram showing an example of a display on a terminal according to the first embodiment. Fig. 20 is a flowchart showing an example of an operation of a user management unit according to the first embodiment. Fig. 21 is a diagram showing an example of a display on a terminal according to the first embodiment. Fig. 22 is a diagram showing an example of a display on a terminal according to the first embodiment. Fig. 23 is a diagram showing an example of a display on a terminal according to a modification of the first embodiment. Fig. 24 is a diagram showing an example of a display on a terminal according to a modification of the first embodiment. Fig. 25 is a diagram showing an example of a hardware configuration of a server device according to the present disclosure.
[0014] First, an overview of one embodiment will be described. Note that the reference numerals in the drawings are added to each element for convenience as an example to facilitate understanding, and the description of this overview is not intended to be limiting in any way. Furthermore, unless otherwise specified, the blocks shown in each drawing represent functional units, not hardware units. Connection lines between blocks in each drawing include both bidirectional and unidirectional lines. Unidirectional arrows are used to schematically indicate the flow of the main signal (data) and do not exclude bidirectionality. Note that in this specification and drawings, elements that can be similarly described may be assigned the same reference numerals to avoid redundant explanation.
[0015] A server device 100 according to an embodiment includes an issuing unit 101 and an acquiring unit 102 (see FIG. 1 ). In response to a request from a first user, the issuing unit 101 issues user registration information to the first user, which is necessary for the second user to perform user registration in order to receive biometric authentication (step S1 in FIG. 2 ). Upon acquiring the user registration information issued to the first user from the second user, the acquiring unit 102 acquires at least the biometric information of the second user from the second user (step S2).
[0016] In response to a request from a user (e.g., a family representative), the server device 100 issues user registration information for user registration necessary for other users (e.g., family members) to undergo biometric authentication. When the family member presents the user registration information obtained from the representative to the server device 100, the server device 100 acquires biometric information from the family member themselves. In this way, the server device 100 acquires biometric information necessary for biometric authentication from the family member who has been permitted by the representative to register as a user. In other words, biometric information that is difficult for anyone other than the family member to obtain is registered in the server device 100 by the family member themselves. As a result, the burden of registering biometric information of family members by a representative (e.g., a household head) who represents multiple users is reduced.
[0017] Specific embodiments will be described in more detail below with reference to the drawings.
[0018] First Embodiment The first embodiment will be described in more detail with reference to the drawings.
[0019] [System Configuration] Fig. 3 is a diagram showing an example of a schematic configuration of an information processing system (authentication system) according to the first embodiment. As shown in Fig. 3, the information processing system includes a server device 10.
[0020] The server device 10 is a device that provides biometric authentication services to apartment residents (residents). The server device 10 stores the names, birth dates, addresses (room numbers), biometric information, contact information, etc. of apartment residents. The server device 10 provides biometric authentication services using the registered information. Specifically, the server device 10 executes control so that apartment residents can enter their homes using biometric authentication.
[0021] The server device 10 is operated by an apartment building management company, etc. The server device 10 may be installed in the apartment building, or may be installed on a network (on the cloud).
[0022] An authentication module is installed in each apartment building (at or near the door of each apartment building).
[0023] The authentication module includes a camera device for capturing an image of the person to be authenticated, an electronic lock for locking and unlocking the door, a communication device for connecting to a network, a touch panel for displaying messages and accepting user operations, etc. The configuration and operation of the authentication module are obvious to those skilled in the art and are different from the gist of the present disclosure, so detailed explanation will be omitted.
[0024] 3, each condominium resident carries a terminal 20. The condominium resident uses the terminal 20 to access the server device 10 and the like.
[0025] The server device 10, the terminal 20, and the authentication module are configured to be able to communicate with other devices on the network. For example, the server device 10 and the authentication module are connected by wired or wireless communication means.
[0026] 3 is an example and is not intended to limit the configuration of the information processing system disclosed herein. For example, the information processing system may include two or more server devices 10. Furthermore, the information processing system may include multiple condominiums (apartments consisting of multiple buildings) managed by the same condominium management company or multiple condominiums managed by different condominium companies.
[0027] [Overall Operation] Next, an overall operation of the information processing system according to the first embodiment will be described.
[0028] <User Registration> Residents of an apartment building are required to register as users in order to enter their homes using biometric authentication. User registration is performed for each resident of each household. For example, in the case of a family of four, each of the four members is required to register as a user.
[0029] User registration is performed using a condominium management application (hereinafter sometimes simply referred to as the application) installed on each resident's terminal 20. The condominium management application includes, for example, a preset address of the server device 10 (a message destination).
[0030] The user registration is first performed for a family representative (e.g., head of household, condominium owner, etc.). The condominium management company (or an employee of the condominium management company, etc.) provides the representative with the representative registration information to register as a user.
[0031] Specifically, the condominium management company provides the representative with a two-dimensional barcode converted from the ID of the residence (residence ID; for example, room number) in which the household including the representative resides, as representative registration information. The condominium management company hands the representative a paper medium or the like on which the representative registration information (two-dimensional barcode) is printed.
[0032] The representative starts the condominium management application and uses the acquired two-dimensional barcode to access the server device 10. The representative registers his / her own profile information (e.g., his / her name, date of birth, etc.) and biometric information in the server device 10.
[0033] Examples of biometric information include data (features) calculated from physical characteristics unique to an individual, such as a face, fingerprint, voiceprint, veins, retina, and iris pattern. Alternatively, the user's biometric information may be image data such as a face image or fingerprint image. The user's biometric information may be any information that includes the user's physical characteristics. In the first embodiment, the biometric information is a person's face image or features generated from a face image.
[0034] If there are family members living with the representative, the representative will carry out the procedures for registering those family members as users. The representative will enter the family member's profile information (e.g., name, date of birth, etc.) in his / her account. Furthermore, the representative will issue family registration information for the family members to register as users. For example, a husband will issue family registration information to enable his / her wife and children to register as users.
[0035] Specifically, the server device 10 generates family registration information in response to a request from the representative. Specifically, the server device 10 generates the family registration information by converting the user IDs of the family members into a two-dimensional barcode format. The server device 10 displays the generated family registration information (two-dimensional barcode) on the representative's terminal 20 (see FIG. 4).
[0036] Each family member operates the terminal 20 they possess to read the family registration information (two-dimensional barcode) displayed on the representative's terminal 20. The terminal 20 transmits the user ID obtained from the family registration information to the server device 10.
[0037] The server device 10 identifies the family member whose representative has entered profile information based on the user ID received from the family member's terminal 20. The server device 10 provides the family member's terminal 20 with an interface for the identified family member to register biometric information. The family member follows instructions from the server device 10 to register biometric information (e.g., a facial image) in the server device 10 for entering their home through biometric authentication.
[0038] <Biometric Authentication> As described above, when a resident enters his or her home, the resident is required to undergo biometric authentication.
[0039] Specifically, when a resident moves in front of his or her house, the authentication module acquires the resident's biometric information (face image).
[0040] The authentication module sends an authentication request including the acquired biometric information and the home ID to the server device 10 (see FIG. 5). The home ID is an ID for identifying each home (each home's authentication module). As mentioned above, the room number can be used as the home ID.
[0041] The server device 10 identifies the person to be authenticated (a resident standing in front of the house) by performing a matching process using the biometric information included in the authentication request and pre-registered biometric information. The server device 10 identifies the house where the person to be authenticated is standing based on the house ID.
[0042] The server device 10 determines that the authentication is successful if the identified person to be authenticated (resident) has the authority to enter the identified house. For example, the authentication is successful for a pre-registered representative and his / her family.
[0043] The server device 10 determines that the authentication has failed if the person to be authenticated cannot be identified through the matching process (if the person to be authenticated is not a condominium resident) or if the person to be authenticated does not have the authority to enter the identified residence (such as when a condominium resident enters someone else's residence).
[0044] The server device 10 transmits the authentication result (authentication success, authentication failure) to the authentication module.
[0045] If the authentication module receives a successful authentication, it unlocks the electronic lock. If the authentication module receives a failed authentication, it does not unlock the electronic lock. The authentication module may also display a message according to the authentication result.
[0046] In addition to the residences of individual residents, apartment buildings also have other areas where biometric authentication is required (for example, entrance halls, elevator halls, shared facilities, etc.). By registering as a user, apartment residents can pass through the entrance halls and other areas using biometric authentication.
[0047] An explanation of biometric authentication in the entrance hall of an apartment building will be omitted here, as it is clear from the biometric authentication in each residence described above.
[0048] Next, details of each device included in the information processing system according to the first embodiment will be described.
[0049] [Server Device] Fig. 6 is a diagram showing an example of a processing configuration (processing module) of the server device 10 according to the first embodiment. Referring to Fig. 6, the server device 10 includes a communication control unit 201, a user management unit 202, an authentication unit 203, and a storage unit 204.
[0050] The communication control unit 201 is a means for controlling communication with other devices. For example, the communication control unit 201 receives data (packets) from an authentication module. The communication control unit 201 also transmits data to the authentication module. The communication control unit 201 passes data received from other devices to other processing modules. The communication control unit 201 transmits data acquired from other processing modules to other devices. In this way, other processing modules transmit and receive data to and from other devices via the communication control unit 201. The communication control unit 201 has a function as a receiving unit that receives data from other devices and a function as a transmitting unit that transmits data to other devices.
[0051] The user management unit 202 is a means for controlling and managing users such as apartment residents.
[0052] The user management unit 202 has a function as an issuing means and a function as an acquiring means. The issuing means issues user registration information to the representative (first user) in response to a request from the representative, allowing the family member to perform user registration necessary for the family member (second user) living with them to receive biometric authentication. The acquiring means, upon acquiring the user registration information issued by the family member to the representative, acquires at least the biometric information of the family member from the family member themselves.
[0053] Prior to the operation of the user management unit 202, the operation of the terminal 20 when registering a representative user will be described.
[0054] A user (e.g., a family representative) installs a condominium management application on his or her terminal 20. When the user operates terminal 20 to start the condominium management application, terminal 20 displays a GUI (Graphical User Interface) such as that shown in Fig. 7 .
[0055] When the user (representative) presses the "User Registration" button, the terminal 20 displays a two-dimensional barcode reading screen as shown in Figure 8. The terminal 20 reads the representative registration information (two-dimensional barcode) provided to the user (representative) by the condominium management company or the like. The terminal 20 decodes the read two-dimensional barcode and obtains the residence ID (room number). The terminal 20 transmits the obtained residence ID to the server device 10.
[0056] 9 is a flowchart showing an example of the operation of the user management unit 202 according to the first embodiment. The operation of the user management unit 202 according to the first embodiment (operation related to user registration of a representative) will be described with reference to FIG.
[0057] When the user management unit 202 receives the housing ID, the user management unit 202 obtains the user's consent regarding the terms of use and privacy policy established by the condominium management company (step S101). For example, the user management unit 202 displays a GUI such as that shown in Fig. 10 on the terminal 20. The user management unit 202 obtains the user's consent regarding the terms of use and privacy policy using the GUI such as that shown in Fig. 10.
[0058] Once the user's consent has been obtained (the checkboxes corresponding to the terms of use and privacy policy are checked and the "Next" button is pressed), the user management unit 202 acquires the user's email address (step S102). For example, the user management unit 202 acquires the user's email address using a GUI such as that shown in Fig. 11. The user management unit 202 treats the acquired email address as the user ID of the user (representative).
[0059] When the user's email address is acquired (when the "Next" button in FIG. 11 is pressed), the user management unit 202 acquires a password for the user to access the portal site (account) (step S103). For example, the user management unit 202 acquires the password using a GUI such as that shown in FIG. 12.
[0060] Once the user's password is acquired (when the "Next" button in FIG. 12 is pressed), the user management unit 202 performs terminal authentication (step S104). Specifically, the user management unit 202 sends an authentication email containing a PIN (authentication number, confirmation code) to the previously registered email address. The user management unit 202 then displays a GUI such as that shown in FIG. 13 on the terminal 20.
[0061] The user enters the PIN number written in the received authentication email into the terminal 20. If the entered PIN number is correct (if the PIN number written in the authentication email matches the entered number) and the "Next" button is pressed, the user management unit 202 acquires the profile information of the user (representative) (step S105). For example, the user management unit 202 displays a GUI such as that shown in FIG. 14 on the terminal 20.
[0062] The user management unit 202 acquires the profile information (e.g., first name, furigana, date of birth, telephone number, etc.) and biometric information (e.g., facial image) of the user (representative) using a GUI such as that shown in Fig. 14. Upon acquiring the user's profile information and biometric information, the user management unit 202 creates an account for the user (step S106).
[0063] Specifically, when the user management unit 202 acquires biometric information (a facial image), it generates feature quantities from the facial image. The feature quantity generation process by the user management unit 202 can use existing technology, so a detailed description thereof will be omitted. For example, the user management unit 202 extracts the eyes, nose, mouth, etc. from the facial image as feature points. The user management unit 202 then calculates the positions of each feature point and the distances between each feature point as feature quantities (generating a feature vector consisting of multiple feature quantities).
[0064] After generating the features, the user management unit 202 stores the user's user ID (email address), password, biometric information (features), type, room number (house ID), name, date of birth, etc. in the resident management database (see FIG. 15). The user management unit 202 sets the type of the user who registers as a user to "representative" using the representative registration information.
[0065] The resident management database shown in Fig. 15 is an example and is not intended to limit the items to be stored, etc. For example, a "face image" may be registered as biometric information in the resident management database.
[0066] By generating the account, the operation of the user management unit 202 when receiving the house ID is completed.
[0067] 16 is a flowchart showing an example of the operation of the user management unit 202 according to the first embodiment. The operation of the user management unit 202 according to the first embodiment (operation related to user registration of family members) will be described with reference to FIG.
[0068] When registering a family member as a user, the representative operates terminal 20 to launch the condominium management application. The representative enters a user ID and password on the screen shown in Fig. 7. The representative then presses the "Login" button shown in Fig. 7. In response to the pressing of the login button, terminal 20 transmits the user ID and password to server device 10.
[0069] The user management unit 202 authenticates the user (representative) using the acquired user ID and password. If the authentication is successful, the user (representative) can log in to his or her own account.
[0070] The user management unit 202 displays a home screen such as that shown in Fig. 17 on the terminal 20 of a user who has logged in to the portal site. The user management unit 202 displays information about the user's home (e.g., apartment name, room number, etc.) and a facial image of the user, and also displays an "Add Family" button for registering family members as users.
[0071] When the user presses the "Add Family" button, the user management unit 202 acquires the profile information of the family member who is to be registered as a user (step S201 in FIG. 16). For example, the user management unit 202 acquires the profile information of the family member by displaying a GUI such as that shown in FIG. 18 on the representative's terminal 20.
[0072] The user inputs the family member's profile information (such as name and date of birth) according to the GUI displayed on the terminal 20. When the family member's profile information is input and the "Register" button is pressed, the user management unit 202 generates an account for the family member whose profile information has been acquired (step S202).
[0073] The user management unit 202 adds a new entry to the resident management database. The user management unit 202 stores the user ID (the family member's email address entered by the representative), name, date of birth, etc. of the family member added to the new entry. The user management unit 202 also sets the type of user registered by the representative to "family member." Furthermore, with regard to the room number (housing ID), the user management unit 202 sets the representative's room number as the family member's room number.
[0074] Here, the family member cannot directly log in to the account created in the server device 10. Therefore, the user management unit 202 does not acquire the password of the family member. Furthermore, the resident management database does not store the password of the family member.
[0075] After creating the family account, the user management unit 202 creates family registration information for registering the added family member as a user (step S203). Specifically, the user management unit 202 creates the family registration information by converting the family member's user ID into a two-dimensional barcode format.
[0076] When the family registration information is generated, the user management unit 202 displays a message including the family registration information (two-dimensional barcode) as shown in FIG. 19 on the representative's terminal 20 (step S204).
[0077] When the family registration information is displayed, the operation of the user management unit 202 for the representative's account is completed. In this way, in response to a request from the representative, the user management unit 202 issues the family registration information to the representative to realize user registration of the representative's family.
[0078] Next, the operation of the user management unit 202 when a family member registers as a user will be described.
[0079] Fig. 20 is a flowchart showing an example of the operation of the user management unit 202 according to the first embodiment. The operation of the user management unit 202 according to the first embodiment (operation related to user registration of family members) will be described with reference to Fig. 20 .
[0080] The family member operates the terminal 20 that he or she possesses to read the two-dimensional barcode (family registration information shown in FIG. 19 ) displayed on the representative's terminal 20. The family member's terminal 20 decodes the two-dimensional barcode to obtain a user ID, which is then transmitted to the server device 10.
[0081] When the user ID of the family member is received, the user management unit 202 searches the resident management database using the family registration information (user ID of the family member) as a key.
[0082] If the search fails, the user management unit 202 notifies the user (family member) that user registration is not possible.
[0083] If the search is successful, the user management unit 202 displays a GUI on the family member's terminal 20 that allows the user to edit the family member's profile information (editing profile information; step S301). Specifically, the user management unit 202 displays a GUI such as that shown in FIG. 21 on the family member's terminal 20.
[0084] At this time, the user management unit 202 acquires the family member's profile information (such as name, date of birth, and telephone number) from the entry corresponding to the user ID in the resident management database. The user management unit 202 uses the acquired profile information to display the family member's name, etc. in the input box.
[0085] Furthermore, when a user (family member) operates the terminal 20 to request registration of his / her biometric information (when the "Register face photo" button is pressed), the user management unit 202 acquires a facial image of the user (step S302). Specifically, the user management unit 202 displays a GUI such as that shown in FIG. 22 on the terminal 20.
[0086] The user registers biometric information (face image) in the server device 10 according to the GUI. The user registers a face image by taking a selfie, or selects a face image file stored in the terminal 20. The family member's terminal 20 transmits the biometric information (face image) to the server device 10.
[0087] When the user management unit 202 acquires the facial images of the family members, it generates feature quantities from the facial images and stores the generated feature quantities in the corresponding entries in the resident management database (step S303).
[0088] The family's user registration is completed when the family's characteristics (biometric information) are registered in the resident management database.
[0089] In this way, the user management unit 202 acquires profile information of a family member (a second user who lives in the same apartment building as the first user) from the representative (a first user). The user management unit 202 acquires biometric information (e.g., a facial image) from the family member themselves. The user management unit 202 associates the biometric information acquired from the family member themselves with the family member's profile information acquired from the representative and stores them in the storage unit 204.
[0090] The authentication unit 203 is a means for processing an authentication request received from an authentication module.
[0091] The authentication unit 203 generates features from the biometric information included in the authentication request. The authentication unit 203 performs a matching process using the generated features and features registered in the resident management database. The authentication unit 203 sets the generated features as the target for matching and performs a matching process (one-to-N matching; N is a positive integer, the same applies below) between the generated features and the features registered in the resident management database.
[0092] The authentication unit 203 calculates the similarity between the feature to be matched and each of the multiple feature values on the registration side. The similarity can be calculated using chi-square distance, Euclidean distance, or the like. Note that the greater the distance, the lower the similarity, and the closer the distance, the higher the similarity.
[0093] If there is no feature among the multiple features registered in the resident management database whose similarity with the feature to be matched is equal to or greater than a predetermined value, the authentication unit 203 determines that the matching process (authentication process) has failed.
[0094] The authentication unit 203 determines that the matching process is successful if, among the multiple feature quantities registered in the resident management database, there is a feature quantity whose similarity with the feature quantity to be matched is equal to or greater than a predetermined value. If the matching process is successful, the authentication unit 203 identifies the resident corresponding to the feature quantity with the highest similarity as the person to be authenticated.
[0095] When the person to be authenticated is specified, authentication unit 203 determines whether or not the house ID (room number) included in the authentication request matches the house ID (room number) of the specified person to be authenticated.
[0096] If the two house IDs do not match, the authentication unit 203 determines that the authentication has failed.
[0097] If the two house IDs match, the authentication unit 203 determines that the authentication is successful.
[0098] The authentication unit 203 transmits the authentication result (authentication success, authentication failure) to the authentication module.
[0099] The storage unit 204 is a means for storing information necessary for the operation of the server device 10 .
[0100] [Terminal] Examples of the terminal 20 include mobile terminal devices such as smartphones, mobile phones, game consoles, and tablets, as well as computers (personal computers, laptop computers). The terminal 20 can be any equipment or device that can accept user operations and communicate with the server device 10, etc. The configuration of the terminal 20 is clear to those skilled in the art, so detailed description thereof will be omitted.
[0101] <Modification 1 of the First Embodiment> In the above embodiment, a case has been described in which a family member registers their own biometric information (e.g., a facial image) in the system. The biometric information may be registered by a representative. Specifically, when the representative inputs the family member's profile information in the GUI shown in FIG. 18 , the user management unit 202 determines whether the family member's age is younger than a predetermined age.
[0102] If the input age is younger than a predetermined age (for example, if the family member is younger than 12 years old), the user management unit 202 displays a GUI for the representative to register the family member's biometric information on the representative's terminal 20. For example, the user management unit 202 displays a GUI such as that shown in FIG. 23 on the representative's terminal 20.
[0103] In this way, if the age of a family member is younger than a predetermined age, the user management unit 202 may acquire the family member's biometric information (e.g., a facial image) from the representative. For family members who do not own a terminal 20, such as young children, the head of the household may register the biometric information of the family member in the system on their behalf.
[0104] Alternatively, the user management unit 202 may display a GUI on the representative's terminal 20 for acquiring biometric information of a family member who is to be registered as a user, in response to an explicit instruction from the representative.
[0105] In this way, if there is a family in which a representative (e.g., head of household) can register profile information and biometric information (e.g., facial image), the representative's (e.g., head of household) terminal can be used to complete the family registration. For example, in a family of four consisting of a husband (representative), a wife, an eldest son, and a second son, the husband (representative) registers the profile information and facial images of the eldest and second sons in the system. As for the wife, the husband presents her with family registration information (a two-dimensional barcode), and the wife herself registers her biometric information and other information in the system.
[0106] <Modification 2 of First Embodiment> In the above embodiment, the case where a representative (e.g., a head of household) issues family registration information has been described. The family registration information may also be issued by a family member who has been granted administrator authority by the representative.
[0107] For example, when the representative enters profile information of a family member, the user management unit 202 displays a GUI such as that shown in Fig. 24 on the representative's terminal 20. The user management unit 202 obtains information as to whether the representative will grant administrator authority to the family member who is permitted to register as a user.
[0108] When a family member is granted administrator privileges, the user management unit 202 sets the representative's password in the password field of the corresponding entry in the resident management database. As a result, the family member who has been granted administrator privileges can log in to the representative's account using their own user ID and the representative's password.
[0109] A family member who has been granted administrator authority can issue family registration information in the same way as the representative. Specifically, the family member operates their own terminal 20, enters their user ID (their own email address) and password (the password provided by the representative) into the server device 10, and logs in to the representative's account.
[0110] A family member with administrator authority for the account issues family registration information for the family member. Specifically, the family member operates the terminal 20 to press the "Add Family Member" button shown in Figure 17. The operation of the user management unit 202 when this button is pressed is the same as the operation when the representative presses this button.
[0111] In this way, when a representative (first user; for example, father) has granted administrator authority to a family member (third user; for example, mother), the user management unit 202 may issue family registration information to the family member upon request from the family member.
[0112] As described above, in the information processing system according to the first embodiment, the server device 10 enables user registration of the representative's family members after the representative has completed his or her own user registration. Specifically, the server device 10 issues family registration information in response to a request from the family representative. When the family member accesses the server device 10 while providing the family registration information, the server device 10 acquires biometric information from the family member. The server device 10 acquires biometric information from the family member who has been permitted to register as a user by the representative. In other words, biometric information that is difficult for anyone other than the family member to acquire is registered on the server device 10 by the family member themselves. As a result, the burden on the representative in registering the family member's biometric information is reduced.
[0113] Next, the hardware of each device constituting the information processing system will be described. Fig. 25 is a diagram showing an example of the hardware configuration of the server device 10.
[0114] The server device 10 can be configured by an information processing device (so-called computer), and has the configuration exemplified in Fig. 25. For example, the server device 10 includes a processor 311, a memory 312, an input / output interface 313, and a communication interface 314. The components such as the processor 311 are connected by an internal bus or the like, and are configured to be able to communicate with each other.
[0115] However, the configuration shown in Fig. 25 is not intended to limit the hardware configuration of the server device 10. The server device 10 may include hardware not shown, and may not include the input / output interface 313 as necessary. Furthermore, the number of processors 311 and the like included in the server device 10 is not intended to be limited to the example shown in Fig. 25, and for example, the server device 10 may include multiple processors 311.
[0116] The processor 311 is a programmable device such as a central processing unit (CPU), a micro processing unit (MPU), or a digital signal processor (DSP). Alternatively, the processor 311 may be a device such as a field programmable gate array (FPGA) or an application specific integrated circuit (ASIC). The processor 311 executes various programs including an operating system (OS).
[0117] The memory 312 is a random access memory (RAM), a read only memory (ROM), a hard disk drive (HDD), a solid state drive (SSD), etc. The memory 312 stores an OS program, application programs, and various data.
[0118] The input / output interface 313 is an interface for a display device and an input device (not shown). The display device is, for example, a liquid crystal display. The input device is, for example, a keyboard, a mouse, a touch panel, or the like that accepts user operations.
[0119] The communication interface 314 is a circuit, module, etc. that communicates with other devices. For example, the communication interface 314 includes a network interface card (NIC).
[0120] The functions of the server device 10 are realized by various processing modules. The processing modules are realized, for example, by the processor 311 executing a program stored in the memory 312. The program can be recorded on a computer-readable storage medium. The storage medium can be a non-transitory medium such as a semiconductor memory, a hard disk, a magnetic recording medium, or an optical recording medium. That is, the present invention can also be embodied as a computer program product. The program can be downloaded via a network or updated using a storage medium storing the program. Furthermore, the processing modules can be realized by semiconductor chips.
[0121] The terminal 20 and the like can also be configured by an information processing device in the same way as the server device 10, and the basic hardware configuration is the same as that of the server device 10, so a description thereof will be omitted.
[0122] The server device 10 is equipped with a computer, and the computer executes a program to realize the functions of the server device 10. The server device 10 also executes a control method for the server device 10 by the program.
[0123] [Modifications] The configuration, operation, etc. of the information processing system described in the above embodiment are merely examples, and are not intended to limit the configuration, etc. of the system.
[0124] In the above embodiment, the operation of the information processing system for registering biometric information of family members has been described for a biometric authentication service in an apartment building. The information processing system according to the first embodiment may be used for registering family members (user registration of family members) living in a detached house as well as in a collective housing complex such as an apartment building.
[0125] In the above embodiment, the operation of the information processing system was explained using an example in which multiple users are "family members" and the "head of household" is the representative who represents the multiple users. However, the multiple users are not limited to family members, and may be "multiple friends" who use the shared house. In this case, a user selected from the multiple friends will be the representative.
[0126] In the above embodiment, a case has been described in which the representative inputs the family's profile information into the server device 10. Here, the representative may input all or part of the profile information that needs to be registered into the server device 10. For example, the representative may input the family member's name and leave the input of information such as the family member's date of birth to the family member. In this way, the server device 10 may display a GUI or the like on the representative's terminal 20, which enables the family representative to input all or part of the family member's profile information.
[0127] In the above embodiment, an example has been described in which the representative or family member mainly registers facial images as biometric information in the server device 10. However, the representative or family member may also register features generated from facial images in the server device 10. In this case, the terminal 20 may generate features from a facial image selected by the user and provide the generated features to the server device 10.
[0128] Alternatively, the server device 10 may register a facial image instead of the feature as the biometric information of the user in the resident management database. In this case, the server device 10 may generate a feature each time it processes an authentication request and authenticate the person to be authenticated.
[0129] An expiration date may be set for the family registration information (two-dimensional barcode) issued by the server device 10. In this case, if the server device 10 receives a user ID from the family member's terminal 20 during the validity period of the family registration information, the server device 10 may enable editing of the family member's profile corresponding to the received user ID.
[0130] The server device 10 may generate family registration information (two-dimensional barcodes) using the user ID and other information. For example, the server device 10 may generate family registration information (two-dimensional barcodes) using the apartment name and room number of the house in addition to the user ID of the family member whose representative has authorized user registration. When the family member's terminal 20 reads the two-dimensional barcode, it may notify the user (family member) of the apartment name, room number, etc. before transmitting the user ID to the server device 10.
[0131] In the above embodiment, the operation of the information processing system disclosed herein has been described using the example of registering information required for biometric authentication in an apartment building. However, the information processing system disclosed herein may also be applied to registering information required for biometric authentication in a theme park, hotel, etc. That is, the method in which a representative presents other person registration information (two-dimensional barcode) to group members and the group members themselves register their information can be used not only in apartment buildings, but also in other facilities such as theme parks and hotels.
[0132] In the above embodiment, the user ID is described as being different for each family member. That is, the same user ID is not used for all family members, but each child's user ID and the wife's user ID are different. However, the same user ID may be used for all family members.
[0133] In the above embodiment, the resident management database is configured inside the server device 10, but the database may also be configured on an external database server, etc. In other words, some of the functions of the server device 10 may be implemented in another device. More specifically, the above-described "user management unit (user management means)" and the like may be implemented in any of the devices included in the system.
[0134] The form of data transmission and reception between the devices (server device 10, terminal 20) is not particularly limited, but the data transmitted and received between these devices may be encrypted. Biometric information and the like is transmitted and received between these devices, and in order to appropriately protect this information, it is desirable to transmit and receive encrypted data.
[0135] In the flow charts (flowcharts, sequence diagrams) used in the above explanation, multiple steps (processes) are described in order, but the order of execution of the steps executed in the embodiments is not limited to the order described. In the embodiments, the order of the steps shown in the drawings can be changed to the extent that the content is not affected, such as by executing each process in parallel.
[0136] The above-described embodiments have been described in detail to facilitate understanding of the present disclosure, and it is not intended that all of the above-described configurations are required. Furthermore, when multiple embodiments are described, each embodiment may be used alone or in combination. For example, it is possible to replace part of the configuration of one embodiment with the configuration of another embodiment, or to add the configuration of another embodiment to the configuration of one embodiment. Furthermore, it is possible to add, delete, or replace part of the configuration of one embodiment with another configuration.
[0137] From the above explanation, it is clear that the present invention has industrial applicability, and the present invention can be suitably applied to information processing systems that implement biometric authentication for apartment building residents and the like.
[0138] Some or all of the above embodiments may be described as, but are not limited to, the following supplementary notes. [Supplementary Note 1] A server device comprising: an issuing means that, in response to a request from a first user, issues user registration information to the first user, which is used by the second user to perform user registration necessary for the second user to receive biometric authentication; and an acquiring means that, upon acquiring the user registration information issued to the first user from the second user, acquires at least biometric information of the second user from the second user. [Supplementary Note 2] The server device according to Supplementary Note 1, wherein the issuing means generates the user registration information by converting a user ID of the second user into a two-dimensional barcode. [Supplementary Note 3] The server device according to Supplementary Note 2, wherein the acquiring means acquires profile information of the second user from the first user, and stores the biometric information acquired from the second user and the profile information of the second user acquired from the first user in association with each other. [Supplementary Note 4] The server device according to Supplementary Note 3, wherein the issuing means does not issue the user registration information if the second user's age is younger than a predetermined age, and the acquiring means acquires the second user's biometric information from the first user if the second user's age is younger than a predetermined age. [Supplementary Note 5] The server device according to Supplementary Note 4, wherein the issuing means issues the user registration information to the third user in response to a request from the third user if the first user has granted administrator authority to the third user. [Supplementary Note 6] The server device according to any one of Supplements 1 to 5, wherein the first and second users reside in the same house in an apartment building. [Supplementary Note 7] The server device according to Supplementary Note 6, wherein the biometric information is a facial image or a feature generated from the facial image.[Supplementary Note 8] A system including a first terminal carried by a first user, a second terminal carried by a second user, and a server device, wherein the server device, in response to a request from the first user, displays user registration information on the first terminal for the second user to perform user registration necessary for the second user to receive biometric authentication, the second terminal acquires the user registration information from the first terminal and transmits the acquired user registration information to the server device, and upon acquiring the user registration information from the second terminal, the server device acquires at least biometric information of the second user from the second terminal. [Supplementary Note 9] A control method for a server device, wherein the server device, in response to a request from the first user, issues user registration information to the first user for the second user to perform user registration necessary for the second user to receive biometric authentication, and upon acquiring the user registration information issued to the first user from the second user, acquires at least biometric information of the second user from the second user. [Supplementary Note 10] A computer-readable storage medium storing a program for causing a computer mounted on a server device to execute the following processes: a process of issuing user registration information to a first user in response to a request from the first user, so that the second user can perform user registration necessary for the second user to receive biometric authentication; and a process of acquiring at least the biometric information of the second user from the second user upon acquiring the user registration information issued to the first user from the second user.
[0139] The disclosures of the above-cited prior art documents are incorporated herein by reference. Although the embodiments of the present invention have been described above, the present invention is not limited to these embodiments. Those skilled in the art will understand that these embodiments are merely illustrative and that various modifications are possible without departing from the scope and spirit of the present invention. In other words, the present invention naturally includes various modifications and alterations that may be made by those skilled in the art in accordance with the entire disclosure, including the claims, and the technical concepts thereof.
[0140] 10 Server device 20 Terminal 100 Server device 101 Issuing means 102 Acquiring means 201 Communication control unit 202 User management unit 203 Authentication unit 204 Storage unit 311 Processor 312 Memory 313 Input / output interface 314 Communication interface
Claims
1. an issuing means for issuing, in response to a request from a first user, user registration information to the first user, which is used by the second user to perform user registration necessary for the second user to receive biometric authentication; an acquisition means for acquiring, upon acquisition from the second user of user registration information issued to the first user, at least biometric information of the second user; A server device comprising:
2. The server device according to claim 1 , wherein the issuing unit generates the user registration information by converting the user ID of the second user into a two-dimensional barcode.
3. The server device according to claim 2, wherein the acquisition means acquires profile information of the second user from the first user, and stores the biometric information acquired from the second user in association with the profile information of the second user acquired from the first user.
4. the issuing means does not issue the user registration information if the age of the second user is younger than a predetermined age, The server device according to claim 3 , wherein the acquisition means acquires the biometric information of the second user from the first user when the age of the second user is younger than a predetermined age.
5. 5. The server device according to claim 4, wherein the issuing means issues the user registration information to the third user in response to a request from the third user when the third user has been granted administrator authority by the first user.
6. The server device according to claim 1 , wherein the first and second users reside in the same house in an apartment building.
7. The server device according to claim 6 , wherein the biometric information is a facial image or a feature amount generated from the facial image.
8. a first terminal possessed by a first user; a second terminal possessed by a second user; a server device; Including, The server device displaying, in response to a request from the first user, user registration information on the first terminal for the second user to perform user registration necessary for the second user to receive biometric authentication; The second terminal acquiring the user registration information from the first terminal and transmitting the acquired user registration information to the server device; The server device When the user registration information is acquired from the second terminal, at least biometric information of the second user is acquired from the second terminal.
9. In the server device, In response to a request from a first user, issue user registration information to the first user, which is used by the second user to perform user registration necessary for the second user to receive biometric authentication; A control method for a server device, which, upon obtaining user registration information issued to the first user from the second user, obtains at least biometric information of the second user from the second user.
10. The computer installed in the server device a process of issuing user registration information to a first user in response to a request from the first user, the user registration information being used by the second user to perform user registration necessary for the second user to undergo biometric authentication; a process of acquiring, when the user registration information issued to the first user is acquired from the second user, at least biometric information of the second user from the second user; A program to execute.