Server device, server device control method and program

JPWO2025004221A5Pending Publication Date: 2026-02-10
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
JP2025529083
Authority / Receiving Office
JP · JP
Patent Type
Applications
Filing Date
2025-11-11
Publication Date
2026-02-10

AI Technical Summary

Technical Problem

Existing systems face challenges in accurately matching and associating user information across different businesses due to variations in name spelling and addressing, making it difficult to utilize shared user data effectively.

Method used

A server device and method that associate biometric information with individual IDs from multiple service providers, using biometric authentication to accurately match and store user data, enabling precise ID linkage and integration of user behavior histories across service providers.

Benefits of technology

This approach allows for accurate association and utilization of user information across different businesses, providing a unified behavior history that enhances consumer behavior insights for service providers.

✦ Generated by Eureka AI based on patent content.
Patent Text Reader

Abstract

Provided is a server device capable of utilizing user information held by different business operators. The server device includes a storage means and an ID linkage control means. The storage means stores, for each of a plurality of users, biological information and an individual ID for each of a plurality of service providers, each of which provides a service using biometric authentication. The biological information and individual IDs are stored in association with each other in a database. The ID linkage control means acquires, from a first service provider, biological information for a first user and a first individual ID used by the first service provider to manage the first user. The ID linkage control means executes a collation process that uses the acquired biological information for the first user and the biological information stored in the database. When the collation process is successful, the ID linkage control means stores the biological information for the first user and the first individual ID in association with each other in a database entry specified by the collation process.
Need to check novelty before this filing date? Find Prior Art

Description

Server device, server device control method and storage medium

[0001] The present invention relates to a server device, a control method for a server device, and a storage medium.

[0002] There is a technology that associates information about the same person across different businesses.

[0003] For example, Patent Document 1 describes a linkage server program that can associate anonymized data for the same person across different business entities, even if there is no prior association of data for the same person between them. The linkage server program in Patent Document 1 includes a linkage acquisition unit, a combination unit, and a linkage provision unit. The linkage acquisition unit acquires anonymized customer data, which is anonymized customer data managed by each of the multiple business entities, and hash data from multiple business entities. The hash data represents a hash value calculated based on data on key data items of the customer data, which serves as a key for combining customer data managed by each of the multiple business entities. The combination unit combines the anonymized customer data acquired from the multiple business entities using the hash values ​​acquired from each of the multiple business entities to generate combined anonymized customer data. The linkage provision unit provides the combined anonymized customer data to at least one of the business entities and other external devices.

[0004] Japanese Patent Application Laid-Open No. 2021-117679

[0005] As disclosed in Patent Literature 1, there is a need to associate and utilize information (data) of the same user held by different businesses. For example, service providers such as hotels and restaurants manage customers using unique IDs. Because each service provider uses its own unique ID, it is difficult to accurately collate the information (data) held by each service provider. Specifically, due to variations in spelling, there are problems with accuracy when collaterizing information using names and addresses.

[0006] A primary object of the present invention is to provide a server device, a method for controlling a server device, and a storage medium that contribute to making it possible to utilize user information held by different businesses.

[0007] According to a first aspect of the present invention, there is provided a server device comprising: a storage means for storing, in a database, biometric information for each of a plurality of users and an individual ID for each of a plurality of service providers that each provide a service using biometric authentication, in association with each other; and an ID linkage control means for acquiring, from a first service provider, the biometric information of a first user and a first individual ID used by the first service provider to manage the first user, and, if a matching process using the acquired biometric information of the first user and the biometric information stored in the database is successful, storing, in association with each other, the biometric information of the first user and the first individual ID in an entry of the database identified by the matching process.

[0008] According to a second aspect of the present invention, there is provided a method for controlling a server device, which includes a storage step of storing, in a database, biometric information for each of a plurality of users and an individual ID for each of a plurality of service providers that each provide a service using biometric authentication, in association with each other; and an ID linkage control step of acquiring, from a first service provider, the biometric information of a first user and a first individual ID used by the first service provider to manage the first user, and, if a matching process using the acquired biometric information of the first user and the biometric information stored in the database is successful, storing, in association with each other, the biometric information of the first user and the first individual ID in an entry of the database identified by the matching process.

[0009] According to a third aspect of the present invention, there is provided a computer-readable storage medium that stores a program for causing a computer mounted on a server device to execute a storage process that associates biometric information for each of a plurality of users with an individual ID for each of a plurality of service providers that each provide a service using biometric authentication and stores the associated information in a database; and an ID linkage control process that acquires from a first service provider the biometric information of a first user and a first individual ID used by the first service provider to manage the first user, and, if a matching process using the acquired biometric information of the first user and the biometric information stored in the database is successful, stores the biometric information of the first user in association with the first individual ID in an entry of the database identified by the matching process.

[0010] According to each aspect of the present invention, a server device, a control method for a server device, and a storage medium are provided that contribute to enabling utilization of user information held by different businesses. Note that the effects of the present invention are not limited to those described above. The present invention may achieve other effects instead of or in addition to the effects described above.

[0011] FIG. 1 is a diagram illustrating an overview of an embodiment. FIG. 2 is a flowchart illustrating an example of an operation of an embodiment. FIG. 3 is a diagram illustrating an example of a schematic configuration of an information processing system according to a first embodiment. FIG. 4 is a diagram illustrating an example of an operation of the information processing system according to the first embodiment. FIG. 5 is a diagram illustrating an example of an operation of the information processing system according to the first embodiment. FIG. 6 is a diagram illustrating an example of an operation of the information processing system according to the first embodiment. FIG. 7 is a diagram illustrating an example of an operation of the information processing system according to the first embodiment. FIG. 8 is a diagram illustrating an example of a processing configuration of a control server according to the first embodiment. FIG. 9 is a flowchart illustrating an example of an operation of an ID linkage control unit according to the first embodiment. FIG. 10 is a diagram illustrating an example of a user management database according to the first embodiment. FIG. 11 is a diagram illustrating an example of a display of a terminal according to the first embodiment. FIG. 12 is a diagram illustrating an example of a processing configuration of a service server according to the first embodiment. FIG. 13 is a diagram illustrating an example of a customer management database according to the first embodiment. FIG. 14 is a flowchart illustrating an example of an operation of an authentication control unit according to the first embodiment. FIG. 15 is a diagram illustrating an example of a processing configuration of an authentication terminal according to the first embodiment. FIG. 16 is a sequence diagram illustrating an example of an operation of the information processing system according to the first embodiment. Fig. 17 is a diagram showing an example of a display of a terminal according to a modified example of the first embodiment. Fig. 18 is a diagram for explaining the operation of an information processing system according to a second embodiment. Fig. 19 is a diagram showing an example of a user management database according to the second embodiment. Fig. 20 is a diagram showing an example of a user management database according to a modified example of the second embodiment. Fig. 21 is a diagram showing an example of the hardware configuration of a control server according to the present disclosure.

[0012] First, an overview of one embodiment will be described. Note that the reference numerals in the drawings are added to each element for convenience as an example to facilitate understanding, and the description of this overview is not intended to be limiting in any way. Furthermore, unless otherwise specified, the blocks shown in each drawing represent functional units, not hardware units. Connection lines between blocks in each drawing include both bidirectional and unidirectional lines. Unidirectional arrows are used to schematically indicate the flow of the main signal (data) and do not exclude bidirectionality. Note that in this specification and drawings, elements that can be similarly described may be assigned the same reference numerals to avoid redundant explanation.

[0013] A server device 100 according to one embodiment includes a storage unit 101 and an ID linkage control unit 102 (see FIG. 1 ). The storage unit 101 stores, in a database, biometric information for each of a plurality of users and an individual ID for each of a plurality of service providers that provide services using biometric authentication, in association with each other (storing biometric information and individual IDs; step S1 in FIG. 2 ). The ID linkage control unit 102 acquires, from a first service provider, the biometric information of the first user and a first individual ID used by the first service provider to manage the first user (step S2). The ID linkage control unit 102 executes a matching process using the acquired biometric information of the first user and the biometric information stored in the database (step S3). If the matching process is successful, the ID linkage control unit 102 stores, in association with each other, the biometric information of the first user and the first individual ID in the database entry identified by the matching process (step S4).

[0014] When the server device 100 acquires from a service provider an individual ID used by the service provider to manage users, it identifies the user registered in the database using the user's biometric information. The server device 100 stores the acquired individual ID in the entry for the identified user. That is, the server device 100 uses the user's biometric information to match (associate) individual IDs used by different service providers. Biometric information has characteristics such as universality (universality in that it is possessed by everyone), uniqueness (uniqueness in that it is unique to everyone), and permanence (unchanging throughout a lifetime). Therefore, the server device 100 can accurately match individual IDs, unlike name matching, etc. Furthermore, once the individual IDs of different service providers (businesses) are matched, the server device 100 can provide each service provider with an individual ID and request a behavioral history. By integrating the behavioral history held by each service provider, the server device 100 can provide more useful information to businesses that want to understand users' consumption behavior, etc. That is, the server device 100 enables the use of user information held by different businesses.

[0015] Specific embodiments will be described in more detail below with reference to the drawings.

[0016] First Embodiment The first embodiment will be described in more detail with reference to the drawings.

[0017] [System Configuration] Fig. 3 is a diagram showing an example of a schematic configuration of an information processing system (information providing system, authentication system) according to Embodiment 1. As shown in Fig. 3, the information processing system includes multiple service providers A to C.

[0018] A service provider is a business that provides services to users using biometric authentication. The information processing system disclosed herein is premised on service providers belonging to various business types and industries providing services using biometric authentication. Note that the services provided by the service providers may be paid or free of charge.

[0019] For example, examples of service providers include businesses that provide accommodation services, businesses such as retail stores and restaurants, businesses that provide financial services, and educational businesses. Service providers disclosed herein also include businesses that provide rental housing services such as condominiums, businesses where employees work (users' workplaces), businesses that host events such as concerts, and businesses that operate means of transportation such as airplanes. Note that service providers are not limited to private businesses. Public institutions such as local governments may also be service providers.

[0020] The control server 10 controls the behavioral history of a user. The control server 10 generates a cross-sectional behavioral history across multiple service providers. For example, the control server 10 generates a behavioral history of a user based on information about services provided to the same user by service provider A and service provider B.

[0021] The control server 10 stores various IDs to realize the generation of the cross-sectional behavioral history. Specifically, the control server 10 stores user IDs that are commonly used in the system and IDs that each service provider uses to manage users. In the following description, the user IDs that are commonly used in the system are referred to as "user IDs," and the IDs that each service provider uses to manage users are referred to as "individual IDs."

[0022] Furthermore, the control server 10 stores the user's biometric information. The control server 10 associates the user's user ID, biometric information, and at least one individual ID with each other and stores them in a user management database. The user management database will be described in detail later.

[0023] Examples of biometric information include data (features) calculated from physical characteristics unique to an individual, such as a face, fingerprint, voiceprint, veins, retina, or iris pattern. Alternatively, the biometric information may be image data such as a face image or fingerprint image. The biometric information may be any information that includes the user's physical characteristics. In the embodiment disclosed herein, a case where biometric information related to a person's "face" (a face image or features generated from a face image) is used will be described.

[0024] As described above, service providers provide users with services that use biometric authentication. For example, biometric authentication is used during check-in procedures at hotels, entering and leaving guest rooms, etc. Also, biometric authentication is used during entrance and exit management and payment procedures at retail stores, etc.

[0025] 3, each service provider includes a service server 20 and at least one authentication terminal 30. The devices included in the service provider (service server 20, authentication terminal 30) are connected to each other so that they can communicate with each other. Specifically, the service server 20 and the authentication terminal 30 are connected by wired or wireless communication means.

[0026] The service server 20 is connected to the control server 10 via a network. The service server 20 may be installed in the building of the service provider, or may be installed on the cloud.

[0027] The service server 20 stores information required when providing services to users. Specifically, the service server 20 stores business information required when each service provider provides a service using biometric authentication. The service server 20 stores the business information in a customer management database. The customer management database will be described in detail later.

[0028] For example, the hotel service server 20 stores the individual ID (e.g., guest ID) of each guest as business information, such as name, gender, address, date of birth, biometric information, contact information, reservation information, and accommodation history. The reservation information includes, for example, the date of stay (planned stay period; planned check-in date, planned check-out date), room type, etc. The accommodation history includes, for example, the check-in date and time, check-out date and time, and the room number where the guest stayed.

[0029] Alternatively, a service server 20 at a retail store or the like stores business information such as a customer's individual ID (e.g., member ID), name, gender, address, date of birth, biometric information, contact information, account information, and purchase history. The account information includes, for example, credit card information for payment. The purchase history includes, for example, the date of purchase, the name of the purchased product, and the amount paid.

[0030] The authentication terminal 30 is a device that serves as an interface for users who receive services. The authentication terminal 30 is installed at the service providing location of each service provider. More specifically, the authentication terminal 30 is installed in a store or the like that the user actually visits.

[0031] The authentication terminal 30 has functions and forms according to the type of business of the service provider. For example, an authentication terminal 30 installed in a hotel (hotel lobby or front desk) is a signage or tablet type terminal. Alternatively, an authentication terminal 30 installed in a retail store or restaurant is a tablet type terminal. Alternatively, an authentication terminal 30 installed in a user's office or the like is a gate device equipped with a gate.

[0032] A user or a system administrator has a terminal 40. The user or the like operates the terminal 40 to access the service server 20 or the like.

[0033] 3 is merely an example and is not intended to limit the configuration of the information processing system disclosed herein. For example, the information processing system may include two or more control servers 10. Furthermore, it is sufficient that at least one or more service providers participate in the information processing system. Furthermore, it is sufficient that each service provider includes at least one or more service servers 20 and at least one or more authentication terminals 30.

[0034] [Overall Operation] Next, an overall operation of the information processing system according to the first embodiment will be described.

[0035] <User Registration> A user who wishes to receive a service from a service provider must register with the service provider. Specifically, the user operates the terminal 40 he or she owns to access the service server 20 of the business operator from which the user wishes to receive the service (see FIG. 4).

[0036] For example, a user who wishes to use a hotel accesses the hotel's service server 20 to register as a user (to complete the hotel reservation procedure). Alternatively, a user who wishes to use biometric authentication payment at a retail store or the like accesses the retail store's service server 20 to register as a user (to become a member).

[0037] A user inputs their name, gender, date of birth, address, biometric information, contact information, etc. on a web page or the like provided by the service server 20. When the service server 20 acquires the name, etc., it generates an individual ID for identifying the user. For example, the service server 20 of a hotel generates a guest ID for identifying a guest staying at the hotel. Alternatively, the service server 20 of a retail store generates a member ID for identifying its own members.

[0038] The service server 20 associates the generated individual ID with the acquired name, biometric information, etc. and stores them in the customer management database.

[0039] <ID Linkage> The service server 20 of each service provider periodically or at a predetermined timing transmits an "individual ID notification" including the user's individual ID, biometric information, and business code to the control server 10 (see FIG. 5). For example, when a new user is registered, the control server 10 is notified of the new user's individual ID, biometric information, and business code.

[0040] The business code is identification information for identifying a service provider included in the information processing system. The business code is shared between the control server 10 and the service server 20 by any method. For example, a system administrator determines a business code and sets the determined business code in the service server 20. The system administrator also inputs the determined business code and information about the service provider into the control server 10. For example, the system administrator inputs the service provider's name, address, contact information, homepage address, address of the service server 20, etc. into the control server 10.

[0041] For example, when the hotel's service server 20 accepts a user's reservation or when the person making the reservation completes the check-in procedure, it sends an individual ID notification to the control server 10, which includes the user's individual ID, biometric information, and the hotel's business code, etc.

[0042] As described above, the control server 10 stores the user ID of a user that is commonly used in the system, the user's biometric information, and an individual ID that each service provider uses to manage the user, in association with each other.

[0043] When the control server 10 receives the individual ID notification from the service server 20, the control server 10 executes a matching process using the biometric information included in the request and the biometric information stored in the user management database.

[0044] If the user corresponding to the biometric information included in the individual ID notification is not registered in the user management database, the control server 10 adds a new entry to the user management database. The control server 10 stores the user's user ID, the biometric information, and the individual ID of the service provider in the added entry.

[0045] If the user corresponding to the biometric information included in the individual ID notification is registered in the user management database, the control server 10 adds the individual ID of the service provider to the entry identified by the matching process.

[0046] <Provision of Service> After completing user registration, the user visits a service provider to receive the service. For example, the user visits a hotel, a retail store, or the like.

[0047] The authentication terminal 30 acquires biometric information of the user (person to be authenticated) who receives the service. For example, the authentication terminal 30 photographs the person to be authenticated and acquires a facial image. The authentication terminal 30 then transmits an "authentication request" including the acquired facial image to the service server 20 (see FIG. 6).

[0048] If necessary, the authentication terminal 30 transmits other information (for example, the name of the purchased product, the price of the purchased product, etc.) along with the biometric information to the service server 20.

[0049] The service server 20 performs biometric authentication using the biometric information included in the authentication request and the biometric information stored in the customer management database. Specifically, the service server 20 performs a matching process using the biometric information included in the authentication request and the biometric information stored in the customer management database. The service server 20 identifies the user (person to be authenticated) registered in the customer management database through the matching process.

[0050] The service server 20 authenticates the person to be authenticated using the identified user's business information. For example, the service server 20 of a hotel determines that the authentication is successful if the reservation information of the person to be authenticated performing the check-in procedure is valid. Alternatively, the service server 20 of a retail store determines that the authentication is successful if the payment for the goods purchased by the person to be authenticated is successful.

[0051] The service server 20 transmits the authentication result (authentication success, authentication failure) to the authentication terminal 30 .

[0052] The authentication terminal 30 executes processing according to the authentication result. For example, upon receiving a successful authentication, an authentication terminal 30 installed in a hotel notifies the user that the check-in procedure has been completed and the assigned room number, etc. Alternatively, upon receiving a successful authentication, an authentication terminal 30 installed in a retail store notifies the person to be authenticated that payment for the product has been completed.

[0053] The service server 20 also stores the behavior history obtained by the authentication process in a customer management database. For example, a hotel service server 20 stores the date and time when check-in procedures were completed as a stay history in the customer management database. Alternatively, a retail store service server 20 stores the date and time of purchase of a product, the name of the product purchased, the payment amount, and the like as a purchase history in the customer management database.

[0054] <Generation and provision of behavior history> The control server 10 can generate behavior histories of users registered in the user management database. The control server 10 creates behavior histories in response to external requests and provides the created behavior histories to entities that wish to receive the behavior histories.

[0055] For example, the control server 10 receives requests for the provision of behavioral history from a system administrator, a service provider (such as an employee of the service provider), or a business operator that does not provide users with services that use biometric authentication (such as an employee of the business operator; for example, an employee of an advertising agency).

[0056] When a request for behavioral history is made, the control server 10 sends a "request for behavioral history" to the service server 20 of each service provider registered in the user management database, the "request for behavioral history" including the user's user ID and the individual ID used by each service provider to manage the user (see Figure 7).

[0057] The service server 20 transmits to the control server 10 the behavior history of the user stored in association with the individual ID included in the behavior history provision request and the user ID included in the behavior history provision request.

[0058] For example, the service server 20 of a hotel transmits to the control server 10 the accommodation history (check-in date and time, check-out date and time, room number, etc.) of the user corresponding to the individual ID notified by the control server 10. Alternatively, the service server 20 of a retail store transmits to the control server 10 the purchase history (product purchase date and time, purchased product name, payment amount) of the user.

[0059] The control server 10 integrates the behavioral histories provided by each service provider (individual behavioral histories held by each service provider; hereinafter also referred to as individual behavioral histories) to generate a behavioral history of the user. The control server 10 provides the generated behavioral history (a behavioral history obtained by integrating the individual behavioral histories; hereinafter also referred to as integrated behavioral history) to an external party. The service provider or the like uses the provided behavioral history to conduct marketing or the like.

[0060] Next, details of each device included in the information processing system according to the first embodiment will be described.

[0061] [Control Server] Fig. 8 is a diagram showing an example of the processing configuration (processing modules) of the control server 10 according to the first embodiment. Referring to Fig. 8, the control server 10 includes a communication control unit 201, an ID linkage control unit 202, a behavior history control unit 203, and a storage unit 204.

[0062] The communication control unit 201 is a means for controlling communication with other devices. For example, the communication control unit 201 receives data (packets) from the service server 20. The communication control unit 201 also transmits data to the service server 20. The communication control unit 201 passes data received from other devices to other processing modules. The communication control unit 201 transmits data acquired from other processing modules to other devices. In this way, other processing modules transmit and receive data to and from other devices via the communication control unit 201. The communication control unit 201 has a function as a receiving unit that receives data from other devices and a function as a transmitting unit that transmits data to other devices.

[0063] The ID linking control unit 202 is a means for executing control relating to ID linking of individual IDs used by each service provider to manage users.

[0064] The ID linking control unit 202 acquires, from the first service provider, biometric information of the first user and a first individual ID used by the first service provider to manage the first user. The ID linking control unit 202 executes a matching process using the acquired biometric information of the first user and biometric information stored in the user management database. If the matching process is successful, the ID linking control unit 202 stores the biometric information of the first user and the first individual ID in association with each other in the entry of the user management database identified by the matching process.

[0065] Furthermore, the ID linking control unit 202 acquires, from the second service provider, the biometric information of the second user and a second individual ID used by the second service provider to manage the second user. The ID linking control unit 202 executes a matching process using the acquired biometric information of the second user and the biometric information stored in the user management database. If the matching process fails, the ID linking control unit 202 adds a new entry to the user management database and stores the biometric information of the second user and the second individual ID in association with each other in the added entry.

[0066] The operation of the ID linking control unit 202 will be described below with reference to FIG.

[0067] The ID linking control unit 202 receives an individual ID notification from the service server 20 (step S101).

[0068] When receiving the individual ID notification, the ID linking control unit 202 executes a matching process using the biometric information included in the individual ID notification and the biometric information stored in the user management database (step S102).

[0069] The user management database stores the user ID of each of a plurality of users, biometric information, and an individual ID for each service provider, in association with each other (see FIG. 10 ). The user management database stores, for example, feature values ​​generated from a face image as the biometric information of the user.

[0070] The user management database shown in Figure 10 is an example and is not intended to limit the items stored therein. For example, a "face image" may be registered in the user management database as biometric information. The user management database also stores the individual ID of each service provider using a business code, but Figure 10 lists the business type of the service provider for ease of understanding.

[0071] When executing the matching process, the ID linking control unit 202 generates a feature amount from the face image included in the individual ID notification.

[0072] Since existing technology can be used for the process of generating feature amounts, detailed description thereof will be omitted. For example, the ID linking control unit 202 extracts the eyes, nose, mouth, etc. from the face image as feature points. Thereafter, the ID linking control unit 202 calculates the positions of the feature points and the distances between the feature points as feature amounts, and generates a feature vector (vector information that characterizes the face image) consisting of multiple feature amounts.

[0073] Thereafter, the ID linking control unit 202 sets the generated feature quantity on the matching side and the multiple feature quantities stored in the user management database on the registration side, and performs one-to-N matching (N is a positive integer, the same applies below). Specifically, the ID linking control unit 202 calculates the similarity between the feature quantity (feature vector) to be matched and each of the multiple feature quantities on the registration side. The similarity can be calculated using chi-squared distance, Euclidean distance, or the like. Note that the greater the distance, the lower the similarity, and the closer the distance, the higher the similarity.

[0074] If there is no feature whose similarity is equal to or greater than a predetermined value, the ID linking control unit 202 determines that the matching process has failed. If there is a feature whose similarity is equal to or greater than a predetermined value, the ID linking control unit 202 determines that the matching process has been successful. If the matching process is successful, the entry having the feature whose similarity is the highest is identified.

[0075] If the matching process fails (step S103, No branch), the ID linking control unit 202 adds a new user (new entry) to the user management database (step S104).

[0076] The ID linking control unit 202 generates a user ID for managing a new user. The user ID may be any information that can uniquely identify a user in the information processing system. For example, the ID linking control unit 202 may assign a unique value as the user ID each time it processes an individual ID notification.

[0077] The ID linking control unit 202 stores the generated user ID, the feature amount (biometric information) generated from the facial image, and the individual ID in the added entry. Regarding the registration of the individual ID, the ID linking control unit 202 stores the individual ID acquired from the service server 20 in the individual ID field corresponding to the business code included in the individual ID notification.

[0078] If the matching process is successful (step S103, Yes branch), the ID linking control unit 202 stores the individual ID in the entry identified by the matching process (step S105).

[0079] The ID linking control unit 202 stores the individual ID acquired from the service server 20 in the individual ID field (the individual ID field of the entry identified by the matching process) corresponding to the business code included in the individual ID notification.

[0080] The behavior history control unit 203 is a means for executing control regarding the behavior history of the user.

[0081] The behavior history control unit 203 receives a request for providing a behavior history from an external business or the like. An employee or the like of the business operates a terminal 40 owned by the employee or the like to access a website for obtaining (referring to) the behavior history. The employee or the like requests the provision of the user's behavior history on the website.

[0082] When a request for provision of a behavior history is made, the behavior history control unit 203 transmits a "request for provision of behavior history" to the service server 20 of each service provider registered in the user management database. The behavior history control unit 203 transmits the request for provision of behavior history, which includes a combination of the user's user ID and the service provider's individual ID, to the service server 20 of the service provider.

[0083] For example, the behavior history control unit 203 transmits a behavior history provision request including a guest ID (individual ID) used by the hotel to manage guests to the hotel service server 20. In the example of Fig. 10, the behavior history control unit 203 transmits a behavior history provision request including a user ID "ID01" and an individual ID "AAA" to the hotel service server 20. Similarly, the behavior history control unit 203 transmits a behavior history provision request including a user ID "ID02" and an individual ID "BBB", and a behavior history provision request including a user ID "ID03" and an individual ID "CCC" to the hotel service server 20.

[0084] Alternatively, the behavior history control unit 203 transmits a behavior history provision request including a member ID (individual ID) used by the retail store to manage members to the retail store's service server 20. In the example of Fig. 10, behavior history provision requests including a combination of user ID "ID01" and individual ID "123", a combination of user ID "ID02" and individual ID "456", and a combination of user ID "ID04" and individual ID "789" are transmitted to the service server 20.

[0085] The behavior history control unit 203 may transmit one behavior history provision request to each service provider. In the example of the hotel, one behavior history provision request including three combinations of user IDs and individual IDs may be transmitted to the hotel service server 20.

[0086] The behavior history control unit 203 acquires the user ID of the user and the behavior history of the user (individual behavior history at each service provider) from each service server 20. The behavior history control unit 203 associates the behavior histories using the user ID acquired from each service server 20, and generates an integrated behavior history (integrated behavior history) for each user. That is, the behavior history control unit 203 integrates the individual behavior histories acquired from each service server 20, and generates the behavior history of each user.

[0087] The behavior history control unit 203 provides the generated behavior history (integrated behavior history for each user) to external businesses, etc. For example, the behavior history control unit 203 displays a screen such as that shown in Fig. 11 on a website accessed by an employee of an external business, etc. The behavior history control unit 203 generates a behavior history provision screen such as that shown in Fig. 11 by chronologically arranging the contents of the individual behavior histories for users with the same user ID obtained from each service provider.

[0088] In addition, if an employee of an external business wishes to download the behavioral history (if the download button in Figure 11 is pressed), the behavioral history control unit 203 sends a file containing the integrated behavioral history to the terminal 40.

[0089] In this way, the behavior history control unit 203 acquires behavior histories corresponding to the individual IDs from each of the multiple service providers by transmitting the individual IDs used by each service provider to manage users to each of the multiple service providers. Furthermore, the behavior history control unit 203 provides an external entity with a behavior history that integrates the acquired behavior histories.

[0090] The storage unit 204 is a means for storing information necessary for the operation of the control server 10. A user management database is constructed in the storage unit 204. The user management database stores, for each of a plurality of users, biometric information and an individual ID for each of a plurality of service providers that provide services using biometric authentication, in association with each other.

[0091] 12 is a diagram showing an example of the processing configuration (processing modules) of the service server 20 according to the first embodiment. Referring to FIG. 12, the service server 20 includes a communication control unit 301, a user registration unit 302, an authentication control unit 303, and a storage unit 304.

[0092] The communication control unit 301 is a means for controlling communication with other devices. For example, the communication control unit 301 receives data (packets) from the control server 10. The communication control unit 301 also transmits data to the control server 10. The communication control unit 301 passes data received from other devices to other processing modules. The communication control unit 301 transmits data acquired from other processing modules to other devices. In this way, other processing modules transmit and receive data to and from other devices via the communication control unit 301. The communication control unit 301 has a function as a receiving unit that receives data from other devices and a function as a transmitting unit that transmits data to other devices.

[0093] The user registration unit 302 is a means for realizing user registration. The user registration unit 302 acquires business information such as the name, sex, date of birth, address, biometric information, and contact information of a user who operates the terminal 40 to access a predetermined website or the like.

[0094] The user registration unit 302 also acquires information necessary for each service provider to provide its services. For example, the user registration unit 302 of the service server 20 of a hotel acquires reservation information related to a hotel reservation. Alternatively, the user registration unit 302 of the service server 20 of a retail store acquires account information (e.g., credit card information) for biometric authentication payment.

[0095] When business information such as name, gender, and biometric information is acquired, the user registration unit 302 generates an individual ID (e.g., a hotel guest ID or a retail store membership ID) for managing each user. Furthermore, when a facial image is acquired as biometric information, the user registration unit 302 generates features from the facial image. Alternatively, the user registration unit 302 may acquire an individual ID from the user. For example, the user registration unit 302 may acquire an email address as the individual ID.

[0096] The user registration unit 302 stores the generated individual ID, name, gender, biometric information (feature amount), etc. in a customer management database (see FIG. 13). The customer management database shown in FIG. 13 is an example and is not intended to limit the items to be stored. For example, a "face image" may be registered in the customer management database as biometric information. Note that FIG. 13 is an example of a customer management database provided in the hotel service server 20.

[0097] When user registration is complete, the user registration unit 302 sends an "individual ID notification" to the control server 10, which includes the individual ID of the user whose registration has been completed, biometric information (e.g., a facial image), and the company's business code.

[0098] The authentication control unit 303 is a means for controlling the biometric authentication of the person to be authenticated.

[0099] 14 is a flowchart showing an example of the operation of the authentication control unit 303 according to the first embodiment. The operation of the authentication control unit 303 will be described with reference to FIG.

[0100] When an authentication request is received from the authentication terminal 30, the authentication control unit 303 executes a matching process using biometric information (step S201).

[0101] Specifically, the authentication control unit 303 generates features from the face image included in the authentication request, and executes a matching process using the generated features and features registered in the customer management database.

[0102] If the matching process fails (step S202, No branch), the authentication control unit 303 sets the authentication result to "authentication failed" (step S203).

[0103] If the matching process is successful (step S202, Yes branch), the authentication control unit 303 determines whether or not a service can be provided to the person to be authenticated using the business information of the person to be authenticated identified by the matching process. The authentication control unit 303 determines whether or not a service can be provided using all or part of the business information (step S204).

[0104] For example, the authentication control unit 303 of the service server 20 of a hotel determines that the service can be provided if the reservation information of the person to be authenticated who is checking in is valid (if the day the user visits the hotel is the scheduled check-in date). Alternatively, the authentication control unit 303 of the service server 20 of a retail store or the like determines that the service can be provided if payment for the product price using credit card information or the like is successful.

[0105] Note that a detailed description of the authentication process using business information at each service provider will be omitted, as the process specific to each service provider is outside the scope of the present disclosure.

[0106] If the service cannot be provided (step S205, No branch), the authentication control unit 303 sets the authentication result to "authentication failed" (step S203).

[0107] If the service can be provided (step S205, Yes branch), the authentication control unit 303 sets the authentication result to "authentication successful" (step S206).

[0108] The authentication control unit 303 transmits the authentication result (authentication success, authentication failure) to the authentication terminal 30 (step S207).

[0109] If the authentication fails, the authentication control unit 303 transmits a negative response to that effect to the authentication terminal 30.

[0110] If the authentication is successful, the authentication control unit 303 sends an affirmative response indicating this to the authentication terminal 30. At that time, the authentication control unit 303 sends an affirmative response including information necessary for providing services to the user, as necessary, to the authentication terminal 30. In the example of the hotel check-in procedure described above, the room number assigned to the guest is sent to the authentication terminal 30.

[0111] If the authentication is successful, the authentication control unit 303 updates the customer management database (update database; step S208).

[0112] Specifically, the authentication control unit 303 adds the behavioral history (individual behavioral history held by each service provider; individual behavioral history) of the successfully authenticated person (the person to be authenticated who is determined to have been successfully authenticated) to the customer management database.

[0113] For example, the authentication control unit 303 of a hotel stores the check-in date and time, check-out date and time, room number, etc. in the accommodation history field. Alternatively, the authentication control unit 303 of a retail store stores the product purchase date and time, the name of the purchased product, the payment amount, etc. in the purchase history field.

[0114] The storage unit 304 is a means for storing information necessary for the operation of the service server 20. A customer management database is constructed in the storage unit 304. The customer management database stores the individual ID of a user who has registered, in association with the behavior history.

[0115] 15 is a diagram showing an example of the processing configuration (processing modules) of the authentication terminal 30 according to the first embodiment. Referring to Fig. 15, the authentication terminal 30 includes a communication control unit 401, a provided service control unit 402, an authentication request unit 403, and a storage unit 404.

[0116] The communication control unit 401 is a means for controlling communication with other devices. For example, the communication control unit 401 receives data (packets) from the service server 20. The communication control unit 401 also transmits data to the service server 20. The communication control unit 401 passes data received from other devices to other processing modules. The communication control unit 401 transmits data acquired from other processing modules to other devices. In this way, other processing modules transmit and receive data to and from other devices via the communication control unit 401. The communication control unit 401 has a function as a receiving unit that receives data from other devices and a function as a transmitting unit that transmits data to other devices.

[0117] The provided service control unit 402 is a unit that executes control related to the services provided to the user. The provided service control unit 402 realizes the functions assigned to the authentication terminal 30.

[0118] When a user requests to receive a service, the provided service control unit 402 acquires biometric information (e.g., a facial image) of the user (person to be authenticated). For example, the provided service control unit 402 periodically or at a predetermined timing captures an image of the area in front of the device. The provided service control unit 402 determines whether the acquired image contains a human facial image, and if a facial image is included, extracts the facial image from the acquired image data.

[0119] Note that the face image detection process and face image extraction process performed by the provided service control unit 402 can use existing technologies, and therefore detailed description thereof will be omitted. For example, the provided service control unit 402 may extract face images (face regions) from image data using a learning model trained by a CNN (Convolutional Neural Network). Alternatively, the provided service control unit 402 may extract face images using a technique such as template matching.

[0120] The provided service control unit 402 passes the acquired biometric information (for example, a facial image) to the authentication request unit 403 .

[0121] The authentication request unit 403 is a means for requesting authentication of the person to be authenticated from the service server 20. When authentication of the person to be authenticated becomes necessary, the authentication request unit 403 transmits an authentication request including biometric information of the person to be authenticated (the user in front of the authentication terminal 30) to the service server 20.

[0122] The authentication request unit 403 receives the authentication result (authentication success, authentication failure) from the service server 20. The authentication request unit 403 passes the received authentication result to the service provided control unit 402.

[0123] For example, the provided service control unit 402 of the authentication terminal 30 installed in the lobby of a hotel displays the room number assigned to a user who is checking in.

[0124] When receiving a notification of authentication failure, the provided service control unit 402 may output a predetermined message or the like.

[0125] Note that a detailed description of the provided service control unit 402 included in the authentication terminal 30 of each service provider will be omitted because the realization of the functions of the authentication terminal 30 by the provided service control unit 402 is different from the gist of the present disclosure.

[0126] The storage unit 404 is a means for storing information necessary for the operation of the authentication terminal 30 .

[0127] [Terminal] Examples of the terminal 40 include a smartphone, a mobile phone, a game console, a mobile terminal device such as a tablet, a computer (personal computer, laptop computer), etc. The terminal 40 can be any equipment or device that can accept user operations and communicate with the service server 20, etc. Furthermore, the configuration of the terminal 40 is clear to those skilled in the art, so a detailed description thereof will be omitted.

[0128] [System Operation] Next, a description will be given of the operation of the information processing system according to the first embodiment. The operation of the information processing system for providing a behavior history will be described with reference to FIG.

[0129] In response to a request from a business operator or the like that wishes to provide a behavior history, the control server 10 transmits a behavior history provision request including an individual ID managed by each service provider to the service server 20 (step S01).

[0130] Each service server 20 transmits the behavior history and the like of the user corresponding to the individual ID included in the behavior history provision request to the control server 10 (step S02).

[0131] The control server 10 integrates the individual behavior histories received from each service server 20 to generate an integrated behavior history (step S03).

[0132] The control server 10 provides the generated integrated behavior history to businesses and the like that wish to provide the behavior history (step S04).

[0133] Next, a modification of the first embodiment will be described.

[0134] <Modification 1> In the above embodiment, the service server 20 notifies the control server 10 of the individual ID and biometric information of the user when user registration is completed (when the biometric information of the user is acquired).

[0135] When the service server 20 has successfully authenticated a user (when the service has been provided to the user), the service server 20 may notify the control server 10 of the individual ID and biometric information. In this case, when the service server 20 has successfully authenticated a user for the first time, the service server 20 may transmit an individual ID notification including the individual ID, biometric information, and business code to the control server 10.

[0136] Alternatively, the service server 20 may send an individual ID notification to the control server 10 each time the service server 20 successfully authenticates a user. In this case, if the individual ID is not stored in the user management database, the control server 10 may store the individual ID included in the individual ID notification in the user management database.

[0137] <Modification 2> The control server 10 may provide an interface for narrowing down (specifying) target users for generating behavioral histories to businesses or the like that wish to provide behavioral histories. Specifically, the behavioral history control unit 203 may acquire attribute information (e.g., gender, age) of users for whom behavioral histories are to be generated, using a GUI (Graphical User Interface) such as that shown in FIG.

[0138] In this case, the behavior history control unit 203 sends a behavior history provision request to each service server 20, which request includes attribute information (attribute information specified by an external business operator, etc.) of the user for whom the behavior history is to be generated.

[0139] Each service server 20 transmits the behavioral history of users that match the specified attributes to the control server 10. For example, if the behavioral history of a "female" is specified, the service server 20 transmits the behavioral history of the female (e.g., accommodation history, meal history) to the control server 10.

[0140] The behavior history control unit 203 can generate behavior history (integrated behavior history) of users with attributes specified by external businesses, etc., using behavior history (individual behavior history) narrowed down by attribute information. External businesses, etc. can use the acquired behavior history to carry out efficient marketing, accurate marketing, etc.

[0141] In this way, the control server 10 may transmit to each of the multiple service providers an individual ID that each service provider uses to manage users and attribute information that specifies the user for whom the behavioral history is to be generated. By transmitting the individual ID and attribute information, the control server 10 may acquire, from each of the multiple service providers, a behavioral history corresponding to the individual ID of the user specified by an external business operator or the like.

[0142] <Modification 3> In the first embodiment including the above-described modification 2, a case has been described in which user attribute information (gender, age, etc.) is not stored in the user management database of the control server 10. However, the control server 10 may store user attribute information (gender, age, etc.) in the user management database. The attribute information may be obtained from a service provider. Specifically, the service server 20 transmits an individual ID notification including the user attribute information to the control server 10.

[0143] In this case, the control server 10 may use the individual ID of the user to specify the behavioral history to be provided by the service server 20. For example, when a business operator or the like requests the provision of the behavioral history of a "male," the behavioral history control unit 203 extracts the "male" users registered in the user management database and transmits to each service server 20 a "request to provide behavioral history" including the individual ID of the extracted user.

[0144] The service server 20 transmits the individual behavior history of the user corresponding to the individual ID included in the behavior history provision request to the control server 10. The control server 10 integrates the acquired individual behavior histories to generate an integrated behavior history to be provided to external businesses, etc.

[0145] In this way, the control server 10 may store in the user management database, for each of a plurality of users, biometric information, an individual ID for each of a plurality of service providers that each provide a service using biometric authentication, and attribute information, in association with each other. In this case, the control server 10 extracts from the plurality of users a user for whom a behavioral history is to be generated based on the attribute information. The control server 10 transmits to each of the plurality of service providers the individual IDs that each service provider uses to manage the extracted users, thereby acquiring the behavioral history of the user corresponding to the individual IDs from each of the plurality of service providers. The control server 10 integrates the acquired behavioral histories and provides the integrated behavioral history to an external party.

[0146] As described above, the control server 10 according to the first embodiment acquires individual IDs and biometric information used by service providers to manage users, and identifies users registered in the user management database using the acquired biometric information. The control server 10 stores the acquired individual ID in the entry for the identified user. In this way, the control server 10 uses the user's biometric information to match (associate) individual IDs used by different service providers.

[0147] Biometric information has the characteristics of universality, meaning that it is possessed by everyone, uniqueness, meaning that it is unique to each individual, and permanence, meaning that it remains unchanged throughout a person's life. The universality of biometric information allows the control server 10 to associate an individual ID with any person. Furthermore, the uniqueness of biometric information allows the control server 10 to accurately associate an individual ID. Furthermore, the permanence of biometric information allows the control server 10 to associate an individual ID at any time or timing.

[0148] In addition, the control server 10 can collect behavioral history from each service provider using the individual ID held by each service provider, thereby generating behavioral history that is useful to external businesses and the like across multiple service providers.

[0149] Second Embodiment Next, a second embodiment will be described in detail with reference to the drawings.

[0150] In the first embodiment, the control server 10 acquires the individual behavior history necessary for generating the integrated behavior history by requesting the service server 20 to provide the behavior history. In the second embodiment, the control server 10 acquires the individual behavior history by notifying the control server 10 of the individual behavior history every time the service server 20 succeeds in authenticating the authenticatee.

[0151] The configuration of the information processing system according to the second embodiment can be the same as that of the first embodiment, and therefore the description corresponding to Fig. 3 will be omitted. Also, the processing configurations of the control server 10, service server 20, etc. according to the second embodiment can be the same as those of the first embodiment, and therefore the description thereof will be omitted.

[0152] The following description will focus on the differences between the first and second embodiments.

[0153] Each time the service server 20 of each service provider succeeds in authenticating a person to be authenticated, it notifies the control server 10 of the successful authentication. Specifically, the authentication control unit 303 of the service server 20 transmits to the control server 10 an "authentication success notification" including the individual ID of the person to be successfully authenticated, the company's business code, and the behavior history (individual behavior history) generated upon successful authentication (see FIG. 18).

[0154] The behavior history control unit 203 of the control server 10 processes the authentication success notification. Specifically, the behavior history control unit 203 searches the user management database using the business code and individual ID included in the authentication success notification as keys to identify the corresponding entry.

[0155] The behavior history control unit 203 stores the behavior history (individual behavior history) included in the authentication success notification in the behavior history field of the identified entry. As a result, a user management database such as that shown in FIG.

[0156] When an external business or the like requests the provision of a user's behavior history, the behavior history control unit 203 generates a behavior history to be provided to the business or the like using the behavior history stored in the user management database.

[0157] In this way, the service server 20 of each service provider may notify the control server 10 of the user's behavioral history (e.g., accommodation history, purchase history) each time the service is provided to the user. For example, the user's individual ID and behavioral history may be transmitted to the control server 10 when the user checks in, checks out, or completes biometric authentication payment. In this case, the control server 10 identifies the user who received the service using the individual ID, and stores the behavioral history in the entry for the identified user.

[0158] More specifically, the ID linkage control unit 202 of the control server 10 receives an authentication success notification, including the individual ID and behavior history of the person who has successfully biometrically authenticated, from a service provider who has successfully biometrically authenticated the person. The ID linkage control unit 202 stores the behavior history included in the authentication success notification in an entry in the user management database that corresponds to the individual ID included in the authentication success notification.

[0159] Next, a modified example of the second embodiment will be described.

[0160] <Modification 1> The service server 20 may transmit an authentication history instead of a behavior history to the control server 10. Specifically, the service server 20 transmits to the control server 10 an authentication success notification including the user's individual ID, its own company's business code, and authentication history (authentication date and time, authentication location, etc.).

[0161] The control server 10 stores the authentication history of the received authentication success notification in the user management database, resulting in the creation of a user management database such as that shown in FIG.

[0162] When an external business operator or the like requests the provision of a user's behavior history, the behavior history control unit 203 of the control server 10 generates a behavior history to be provided to the business operator or the like using the authentication history stored in the user management database.

[0163] The control server 10 can provide to an external party an integrated behavior history consisting of the date and time and the location where the user received a service using biometric authentication.

[0164] In this way, the service server 20 may notify the control server 10 of the date, time, and location where the user received a service using biometric authentication (authentication history) rather than the user's detailed behavioral history. That is, the control server 10 not only generates a detailed behavioral history by linking data held by each service provider, but also generates a simple behavioral history without linking data held by each service provider. The ID linking control unit 202 of the control server 10 receives an authentication success notification from a service provider that has successfully performed biometric authentication of the authenticated person, the authentication success notification including the individual ID and authentication history of the authenticated person. The ID linking control unit 202 stores the authentication history included in the authentication success notification in an entry in the user management database that corresponds to the individual ID included in the authentication success notification.

[0165] The control server 10 can also generate a simple behavior history consisting of the date and time at which the user received the service by using the authentication date and time and the authentication location (information on the location where the authentication terminal 30 is installed; edge information). In this case, the control server 10 does not need to obtain a detailed behavior history of the user from each service server 20.

[0166] In this way, the control server 10 can use various ID information within its own device as a common master to integrate the data of each service server 20 and generate a detailed behavioral history, or it can generate a simple behavioral history without integrating the data of each service server 20.

[0167] As described above, each time the service server 20 according to the second embodiment succeeds in authenticating a user, it transmits the behavior history and authentication history of the user to the control server 10. The control server 10 can generate a behavior history spanning multiple service providers by using the behavior history and the like collected from each service provider.

[0168] Next, the hardware of each device constituting the information processing system will be described. Fig. 21 is a diagram showing an example of the hardware configuration of the control server 10.

[0169] The control server 10 can be configured using an information processing device (a so-called computer), and has the configuration shown in Fig. 21. For example, the control server 10 includes a processor 311, a memory 312, an input / output interface 313, and a communication interface 314. The components such as the processor 311 are connected by an internal bus or the like, and are configured to be able to communicate with each other.

[0170] However, the configuration shown in Fig. 21 is not intended to limit the hardware configuration of the control server 10. The control server 10 may include hardware not shown, and may not include the input / output interface 313 as necessary. Furthermore, the number of processors 311 and the like included in the control server 10 is not intended to be limited to the example shown in Fig. 21 , and the control server 10 may include multiple processors 311, for example.

[0171] The processor 311 is a programmable device such as a central processing unit (CPU), a micro processing unit (MPU), or a digital signal processor (DSP). Alternatively, the processor 311 may be a device such as a field programmable gate array (FPGA) or an application specific integrated circuit (ASIC). The processor 311 executes various programs including an operating system (OS).

[0172] The memory 312 is a random access memory (RAM), a read only memory (ROM), a hard disk drive (HDD), a solid state drive (SSD), etc. The memory 312 stores an OS program, application programs, and various data.

[0173] The input / output interface 313 is an interface for a display device and an input device (not shown). The display device is, for example, a liquid crystal display, etc. The input device is, for example, a device that accepts user operations, such as a keyboard or a mouse.

[0174] The communication interface 314 is a circuit, module, etc. that communicates with other devices. For example, the communication interface 314 includes a network interface card (NIC).

[0175] The functions of the control server 10 are realized by various processing modules. The processing modules are realized, for example, by the processor 311 executing a program stored in the memory 312. The program can be recorded on a computer-readable storage medium. The storage medium can be a non-transitory medium such as a semiconductor memory, a hard disk, a magnetic recording medium, or an optical recording medium. That is, the present invention can also be embodied as a computer program product. The program can be downloaded via a network or updated using a storage medium storing the program. The processing modules can also be realized by semiconductor chips.

[0176] The service server 20, authentication terminal 30, terminal 40, etc. can also be configured using information processing devices similar to the control server 10, and their basic hardware configurations are not described here because they are no different from the control server 10. For example, the authentication terminal 30 may be equipped with a camera device for photographing the person to be authenticated.

[0177] The control server 10, which is an information processing device, is equipped with a computer and can realize the functions of the control server 10 by causing the computer to execute a program. The control server 10 also executes the control method of the control server 10 using the program. Similarly, the service server 20, which is an information processing device, is equipped with a computer and can realize the functions of the service server 20 by causing the computer to execute a program. The service server 20 also executes the control method of the service server 20 using the program.

[0178] [Modification] The configuration, operation, etc. of the information processing system described in the above embodiment are merely examples, and are not intended to limit the configuration, etc. of the system.

[0179] When registering a user, the service provider (service server 20) may obtain consent to provide the user's biometric information and individual ID to other businesses and to generate a behavioral history using the provided biometric information, etc. The service server 20 does not send an individual ID notification to the control server 10 regarding a user who has not given consent to the provision of biometric information, etc. As a result, a behavioral history will not be generated for a service provider to which the user has not given consent. The user can decide whether to consent or not to the provision of biometric information, etc. for each service provider. As a result, the user can select, for example, to allow the control server 10 to provide to an external party a behavioral history regarding hotel stays, etc., but not to allow the control server 10 to provide to an external party a behavioral history (payment information) at a retail store, etc.

[0180] When the biometric information registered in the customer management database is updated, the service server 20 may notify the control server 10 of the updated biometric information and the individual ID.

[0181] The control server 10 may provide an interface that enables an external business operator to specify the period when the behavioral history was acquired by each service provider when specifying the target person for which the behavioral history is to be generated. For example, the external business operator may select to provide a behavioral history for one month, six months, or the like.

[0182] When providing a service to a user who has not registered his / her biometric information (when providing the service), the service provider may encourage the user to register his / her biometric information. For example, the service provider may recommend biometric authentication payment to a user who wishes to pay by cash at a restaurant. In this case, the service provider (service server 20) may give a benefit (discount, points) to the user who registers his / her biometric information.

[0183] In the first embodiment, the case where the service server 20 transmits an individual ID notification including a facial image of the user to the control server 10 has been described. That is, in the first embodiment, the control server 10 and the service server 20 transmit and receive facial images, thereby enabling user name identification even if the biometric authentication algorithms adopted by the control server 10 and the service server 20 are different. However, if the control server 10 and the service server 20 adopt the same biometric authentication algorithm, the service server 20 may transmit an individual ID notification including feature amounts generated from the facial image of the user to the control server 10. The control server 10 may use the feature amounts to identify the user who has registered with the service provider.

[0184] In the above embodiment, a case has been described in which the user management database is configured inside the control server 10, but the database may also be constructed on an external database server or the like. That is, some of the functions of the control server 10 may be implemented on another server. More specifically, it is sufficient that the above-described "ID linkage control unit (ID linkage control means)" and the like are implemented on any of the devices included in the system.

[0185] The form of data transmission and reception between the devices (control server 10, service server 20, authentication terminal 30) is not particularly limited, but the data transmitted and received between these devices may be encrypted. Biometric information and the like is transmitted and received between these devices, and in order to appropriately protect this information, it is desirable to transmit and receive encrypted data.

[0186] In the flow charts (flowcharts, sequence diagrams) used in the above explanation, multiple steps (processes) are described in order, but the order of execution of the steps executed in the embodiments is not limited to the order described. In the embodiments, the order of the steps shown in the drawings can be changed to the extent that the content is not affected, such as by executing each process in parallel.

[0187] The above-described embodiments have been described in detail to facilitate understanding of the present disclosure, and it is not intended that all of the above-described configurations are required. Furthermore, when multiple embodiments are described, each embodiment may be used alone or in combination. For example, it is possible to replace part of the configuration of one embodiment with the configuration of another embodiment, or to add the configuration of another embodiment to the configuration of one embodiment. Furthermore, it is possible to add, delete, or replace part of the configuration of one embodiment with another configuration.

[0188] From the above explanation, it is clear that the present invention has industrial applicability, and the present invention can be suitably applied to an information processing system that provides a user's behavior history.

[0189] Some or all of the above embodiments may be described as, but are not limited to, the following supplementary notes: [Supplementary Note 1] A server device comprising: a storage means for storing, in a database, biometric information for each of a plurality of users and an individual ID for each of a plurality of service providers that each provide a service using biometric authentication, in association with each other; and an ID linkage control means for acquiring, from a first service provider, the biometric information of a first user and a first individual ID used by the first service provider to manage the first user, and, when a matching process using the acquired biometric information of the first user and the biometric information stored in the database is successful, storing the biometric information of the first user and the first individual ID in association with each other in an entry of the database identified by the matching process. [Supplementary Note 2] The server device according to Supplementary Note 1, wherein the ID linkage control means acquires, from a second service provider, biometric information of a second user and a second individual ID used by the second service provider to manage the second user, and if a matching process using the acquired biometric information of the second user and the biometric information stored in the database fails, adds a new entry to the database and stores the biometric information of the second user and the second individual ID in the added entry in association with each other. [Supplementary Note 3] The server device according to Supplementary Note 2, further comprising: behavior history control means, each of the plurality of service providers stores the individual ID of the user who has registered as a user in association with a behavior history, by transmitting the individual ID used by each service provider to each of the plurality of service providers to manage users, and acquires the behavior history corresponding to the individual ID from each of the plurality of service providers, and provides an integrated behavior history of the acquired behavior histories to an external party. [Appendix 4] The behavioral history control means of the server device described in Appendix 3 transmits to each of the plurality of service providers the individual ID used by each service provider to manage users and attribute information specifying the user for whom the behavioral history is to be generated, thereby obtaining the behavioral history corresponding to the individual ID of the specified user from each of the plurality of service providers.[Supplementary Note 5] The server device according to Supplementary Note 2, further comprising: a behavior history control means that, for each of the plurality of users, the storage means associates biometric information with an individual ID and attribute information for each of a plurality of service providers that provide services using biometric authentication, and stores them in the database; extracts from the plurality of users a user for whom a behavior history is to be generated based on the attribute information, and transmits to each of the plurality of service providers the individual ID used by each service provider to manage the extracted user, thereby acquiring the behavior history of the user corresponding to the individual ID from each of the plurality of service providers, and provides an integrated behavior history of the acquired behavior histories to an external party. [Supplementary Note 6] The server device according to Supplementary Note 2, further comprising: a behavior history control means that receives, from a service provider that has succeeded in biometric authentication of the authenticated person, a notification of authentication success, the notification including the individual ID and behavior history of the authenticated person whose biometric authentication has been successful, and stores the behavior history included in the authentication success notification in an entry of the database that corresponds to the individual ID included in the authentication success notification. [Supplementary Note 7] The server device according to Supplementary Note 2, wherein the ID linking control means receives, from a service provider who has succeeded in biometric authentication of the authenticated person, a notification of successful authentication, the notification including the individual ID and an authentication history of the authenticated person, and stores the authentication history included in the notification of successful authentication in an entry of the database corresponding to the individual ID included in the notification of successful authentication. [Supplementary Note 8] A control method for a server device, comprising: a storage step of storing, for each of a plurality of users, biometric information and an individual ID for each of a plurality of service providers who each provide a service using biometric authentication, in association with each other in a database; and an ID linking control step of acquiring, from a first service provider, the biometric information of a first user and a first individual ID used by the first service provider to manage the first user, when a matching process using the acquired biometric information of the first user and the biometric information stored in the database is successful, storing the biometric information of the first user and the first individual ID in association with each other in an entry of the database identified by the matching process.[Supplementary Note 9] The control method for a server device according to Supplementary Note 8, wherein the ID linkage control step acquires, from a second service provider, biometric information of a second user and a second individual ID used by the second service provider to manage the second user, and if a matching process using the acquired biometric information of the second user and the biometric information stored in the database fails, adds a new entry to the database and stores the biometric information of the second user and the second individual ID in association with each other in the added entry. [Supplementary Note 10] The control method for a server device according to Supplementary Note 9, further comprising a behavior history control step of: each of the plurality of service providers stores the individual ID of the user who has registered as a user in association with a behavior history, and transmits the individual ID used by each service provider to each of the plurality of service providers to manage users, thereby acquiring the behavior history corresponding to the individual ID from each of the plurality of service providers, and providing an integrated behavior history of the acquired behavior histories to an external party. [Supplementary Note 11] The control method for a server device according to Supplementary Note 10, wherein the behavior history control step acquires, from each of the plurality of service providers, the behavior history corresponding to the individual ID of the designated user by transmitting, to each of the plurality of service providers, the individual ID used by each service provider to manage users and attribute information specifying the user for whom the behavior history is to be generated. [Supplementary Note 12] The control method for a server device according to Supplementary Note 9, further comprising a behavior history control step of: storing, for each of the plurality of users, biometric information, an individual ID for each of a plurality of service providers that each provides a service using biometric authentication, and attribute information in the database in association with each other, extracting from the plurality of users a user for whom a behavior history is to be generated based on the attribute information, transmitting, to each of the plurality of service providers, the individual ID used by each service provider to manage the extracted user, thereby acquiring, from each of the plurality of service providers, the behavior history of the user corresponding to the individual ID, and providing, to an external party, a behavior history obtained by integrating the acquired behavior histories.[Supplementary Note 13] The control method for a server device according to Supplementary Note 9, wherein the ID linking control step receives an authentication success notification from a service provider who has succeeded in biometric authentication of the person to be authenticated, the authentication success notification including the individual ID and behavior history of the person to be authenticated who has succeeded in the biometric authentication, and stores the behavior history included in the authentication success notification in an entry of the database corresponding to the individual ID included in the authentication success notification. [Supplementary Note 14] The control method for a server device according to Supplementary Note 9, wherein the ID linking control step receives an authentication success notification from a service provider who has succeeded in biometric authentication of the person to be authenticated, the authentication success notification including the individual ID and authentication history of the person to be authenticated who has succeeded in the biometric authentication, and stores the authentication history included in the authentication success notification in an entry of the database corresponding to the individual ID included in the authentication success notification. [Supplementary Note 15] A computer-readable storage medium storing a program for causing a computer mounted on a server device to execute the following steps: a storage process for storing, in a database, biometric information for each of a plurality of users and an individual ID for each of a plurality of service providers that each provide a service using biometric authentication, in association with each other; and an ID linkage control process for acquiring, from a first service provider, the biometric information of a first user and a first individual ID used by the first service provider to manage the first user, and, if a matching process using the acquired biometric information of the first user and the biometric information stored in the database is successful, storing the biometric information of the first user and the first individual ID in association with each other in an entry of the database identified by the matching process. [Appendix 16] The ID linkage control process, a storage medium as described in Appendix 15, acquires from a second service provider biometric information of a second user and a second individual ID used by the second service provider to manage the second user, and if a matching process using the acquired biometric information of the second user and the biometric information stored in the database fails, adds a new entry to the database and stores the biometric information of the second user in association with the second individual ID in the added entry.[Supplementary Note 17] The storage medium according to Supplementary Note 16, further comprising a behavior history control process in which each of the plurality of service providers stores an individual ID of a user who has registered, in association with the individual ID and behavior history of the user, and transmits to each of the plurality of service providers the individual ID used by each service provider to manage users, thereby acquiring behavior histories corresponding to the individual ID from each of the plurality of service providers, and providing an integrated behavior history of the acquired behavior histories to an external party. [Supplementary Note 18] The storage medium according to Supplementary Note 17, wherein the behavior history control process transmits to each of the plurality of service providers the individual ID used by each service provider to manage users and attribute information specifying a user for whom the behavior history is to be generated, thereby acquiring behavior histories corresponding to the individual ID of the specified user from each of the plurality of service providers. [Supplementary Note 19] The storage medium according to Supplementary Note 16, wherein the storage process further comprises a behavior history control process that: for each of the plurality of users, stores biometric information, an individual ID for each of a plurality of service providers that each provides a service using biometric authentication, and attribute information in the database in association with each other; extracts from the plurality of users a user for whom a behavior history is to be generated based on the attribute information; acquires from each of the plurality of service providers the behavior history of the user corresponding to the individual ID by transmitting to each of the plurality of service providers the individual ID used by each service provider to manage the extracted user; and provides to an external party a behavior history in which the acquired behavior histories are integrated. [Supplementary Note 20] The storage medium according to Supplementary Note 16, wherein the ID linkage control process receives an authentication success notification from a service provider that has succeeded in biometric authentication of the authenticated person, the authentication success notification including the individual ID and behavior history of the authenticated person; and stores the behavior history included in the authentication success notification in an entry of the database corresponding to the individual ID included in the authentication success notification.[Appendix 21] The ID linking control process is a storage medium described in Appendix 16, which receives an authentication success notification from a service provider who has successfully performed biometric authentication on the authenticated person, the authentication success notification including the individual ID and authentication history of the authenticated person, and stores the authentication history included in the authentication success notification in an entry of the database corresponding to the individual ID included in the authentication success notification.

[0190] The disclosures of the above-cited prior art documents are incorporated herein by reference. Although the embodiments of the present invention have been described above, the present invention is not limited to these embodiments. Those skilled in the art will understand that these embodiments are merely illustrative and that various modifications are possible without departing from the scope and spirit of the present invention. In other words, the present invention naturally includes various modifications and alterations that may be made by those skilled in the art in accordance with the entire disclosure, including the claims, and the technical concepts thereof.

[0191] REFERENCE SIGNS LIST 10 control server 20 service server 30 authentication terminal 40 terminal 100 server device 101 storage means 102 ID linkage control means 201 communication control unit 202 ID linkage control unit 203 action history control unit 204 storage unit 301 communication control unit 302 user registration unit 303 authentication control unit 304 storage unit 311 processor 312 memory 313 input / output interface 314 communication interface 401 communication control unit 402 provided service control unit 403 authentication request unit 404 storage unit

Claims

1. a storage means for storing, in a database, biometric information for each of a plurality of users and an individual ID for each of a plurality of service providers that provide services using biometric authentication, in association with each other; an ID linking control means for acquiring, from a first service provider, biometric information of a first user and a first individual ID used by the first service provider to manage the first user, and, if a matching process using the acquired biometric information of the first user and biometric information stored in the database is successful, storing the biometric information of the first user and the first individual ID in an entry of the database identified by the matching process in association with each other; A server device comprising:

2. The ID linkage control means 2. The server device according to claim 1, further comprising: a server device configured to acquire, from a second service provider, biometric information of a second user and a second individual ID used by the second service provider to manage the second user; and, if a matching process using the acquired biometric information of the second user and the biometric information stored in the database fails, add a new entry to the database and store the biometric information of the second user and the second individual ID in association with each other in the added entry.

3. Each of the plurality of service providers stores an individual ID of a user who has registered as a user and a behavior history in association with each other; The server device of claim 2 further comprises a behavior history control means that acquires behavior history corresponding to the individual ID from each of the plurality of service providers by sending the individual ID used by each service provider to manage users, and provides an externally integrated behavior history of the acquired behavior history.

4. The behavior history control means The server device of claim 3 obtains behavioral history corresponding to the individual ID of the specified user from each of the plurality of service providers by sending to each of the plurality of service providers the individual ID used by each service provider to manage users and attribute information specifying the user for whom the behavioral history is to be generated.

5. the storage means stores, in the database, biometric information for each of the plurality of users, an individual ID for each of a plurality of service providers that respectively provide services using biometric authentication, and attribute information in association with each other; The server device of claim 2 further comprises a behavior history control means that extracts users from the plurality of users for whom behavior histories are to be generated based on the attribute information, transmits the individual IDs used by each service provider to manage the extracted users to each of the plurality of service providers, thereby acquiring behavior histories of users corresponding to the individual IDs from each of the plurality of service providers, and provides an external behavior history that integrates the acquired behavior histories.

6. The ID linkage control means receiving a notification of successful authentication from a service provider who has successfully performed biometric authentication on the person to be authenticated, the notification including the individual ID and behavior history of the person to be authenticated who has successfully performed biometric authentication on the person to be authenticated; The server device according to claim 2 , wherein the action history included in the authentication success notification is stored in an entry of the database corresponding to the individual ID included in the authentication success notification.

7. The ID linkage control means receiving a notification of successful authentication from a service provider who has successfully performed biometric authentication on the person to be authenticated, the notification including the individual ID and authentication history of the person to be authenticated who has successfully performed biometric authentication on the person to be authenticated; 3. The server device according to claim 2, wherein the authentication history included in the authentication success notification is stored in an entry of the database corresponding to the individual ID included in the authentication success notification.

8. a storage step of storing, in a database, biometric information for each of a plurality of users and an individual ID for each of a plurality of service providers that provide services using biometric authentication, in association with each other; an ID linking control step of acquiring, from a first service provider, biometric information of a first user and a first individual ID used by the first service provider to manage the first user, and, if a matching process using the acquired biometric information of the first user and biometric information stored in the database is successful, storing the biometric information of the first user and the first individual ID in association with each other in an entry of the database identified by the matching process; A method for controlling a server device, comprising:

9. The computer installed in the server device a storage process for storing, in a database, biometric information for each of a plurality of users and an individual ID for each of a plurality of service providers that provide services using biometric authentication in association with each other; an ID linking control process for acquiring, from a first service provider, biometric information of a first user and a first individual ID used by the first service provider to manage the first user, and, if a matching process using the acquired biometric information of the first user and biometric information stored in the database is successful, storing the biometric information of the first user and the first individual ID in association with each other in an entry of the database identified by the matching process; A program to execute.