Electronic key management device, electronic key management system, electronic key management method, and management method for electronic key management system
The electronic key management system addresses the challenge of securely sharing electronic locks in private accommodation facilities by generating temporary keys based on unique identification and location information, ensuring secure and controlled access.
Patent Information
- Application Number
- PCT/JP2023/046067
- Authority / Receiving Office
- WO · WO
- Patent Type
- Applications
- Current Assignee / Owner
- Filing Date
- 2023-12-22
- Publication Date
- 2025-06-26
AI Technical Summary
In private accommodation facilities, there is a challenge in temporarily sharing electronic locks while maintaining security, as easily passing electronic keys can compromise security.
An electronic key management system that includes an electronic device and a key management device, allowing for the generation and transmission of temporary electronic keys to specific terminal devices, ensuring secure sharing of facility access.
The system enables secure temporary sharing of electronic locks, limiting access to authorized users and maintaining facility security by using unique identification information and location-based key generation.
Smart Images

Figure JP2023046067_26062025_PF_FP_ABST
Abstract
Description
Electronic key management device, electronic key management system, electronic key management method, and management method for electronic key management system
[0001] The present invention relates to an electronic key management device, an electronic key management system, an electronic key management method, and a management method for an electronic key management system.
[0002] An electronic lock system that uses a terminal device as an electronic key to lock and unlock a door is known (see, for example, Patent Document 1). Such electronic lock systems are widely used in private lodging facilities, rental studios, rental conference rooms, etc., because they do not require the exchange of a physical key.
[0003] JP 2017-091116 A
[0004] In private lodging facilities, there are cases where users want to temporarily share the electronic lock on the door with others, such as when a visitor or family member is staying temporarily. In such cases, if the electronic key is easily handed over from the user currently using the facility to a user who wants to share the facility, security may not be maintained.
[0005] In view of the above-mentioned problems, the present invention aims to provide an electronic key management device, an electronic key management system, an electronic key management method, and a management method for an electronic key management system that allow electronic locks to be easily shared while maintaining security.
[0006] An electronic key management device according to one aspect of the present invention is an electronic key management system that includes an electronic device and an electronic key management device communicably connected to the electronic device, and that manages electronic keys capable of unlocking locks installed in a facility, the electronic key management device comprising: a first transmission unit that transmits a first electronic key capable of unlocking the lock to a first terminal device in response to a request to use the facility; a first storage unit that stores the first electronic key and first identification information of the first terminal device; and a first storage unit that stores the first identification information individually assigned to the first terminal device and the first identification information of the first terminal device, which is used by a user who arrives at the facility, by the electronic device that is fixedly installed in the facility. and a key generating unit configured to generate the second electronic key, which is different from the first electronic key corresponding to the first identification information and can unlock the lock, when the first identification information, the second identification information, and the third identification information are received in response to transmission from the electronic device of the first identification information, the second identification information, and the third identification information individually assigned to the electronic device; a second storage unit configured to store the generated second electronic key and the second identification information; and a third transmission unit configured to transmit the second electronic key to either the first terminal device or the second terminal device.
[0007] An electronic key management system according to one aspect of the present invention includes an electronic device and an electronic key management device communicably connected to the electronic device, and manages electronic keys capable of unlocking locks installed in a facility, the electronic device being an electronic device fixedly installed within the facility, the electronic device including a first acquisition unit that acquires, from a first terminal device used by a user who has arrived at the facility, first identification information individually assigned to the first terminal device and second identification information individually assigned to a second terminal device different from the first terminal device, and a third identification information that is individually assigned to the electronic device, and a fourth acquisition unit that transmits the first identification information, the second identification information, and third identification information individually assigned to the electronic device to the electronic key management device. and a second transmission unit, and the electronic key management device has a first transmission unit that transmits a first electronic key that can unlock the lock to a first terminal device in response to a request to use the facility, a first memory unit that stores the first electronic key and first identification information of the first terminal device, a key generation unit that, upon receiving the first identification information, the second identification information, and the third identification information transmitted from the electronic device, generates the second electronic key that is different from the first electronic key corresponding to the first identification information and can unlock the lock, a second memory unit that stores the generated second electronic key and the second identification information, and a third transmission unit that transmits the second electronic key to either the first terminal device or the second terminal device.
[0008] An electronic key management method according to one aspect of the present invention is an electronic key management method in an electronic key management system that has an electronic device and an electronic key management device communicably connected to the electronic device, and that manages electronic keys that can unlock locks installed in a facility, the method comprising the steps of: transmitting a first electronic key that can unlock the lock to a first terminal device in response to a request to use the facility; storing the first electronic key and first identification information of the first terminal device; and receiving, from a first terminal device used by a user who has arrived at the facility, the first identification information individually assigned to the first terminal device and the first identification information of the first terminal device by an electronic device fixedly installed within the facility. and second identification information individually assigned to a different second terminal device is acquired, and in response to the first identification information, the second identification information, and third identification information individually assigned to the electronic device being transmitted from the electronic device, upon receiving the first identification information, the second identification information, and the third identification information, the method includes the steps of generating the second electronic key, which is different from the first electronic key corresponding to the first identification information and can unlock the lock, storing the generated second electronic key and the second identification information, and transmitting the second electronic key to either the first terminal device or the second terminal device.
[0009] A management method for an electronic key management system according to one aspect of the present invention has an electronic device and an electronic key management device communicatively connected to the electronic device, and manages electronic keys capable of unlocking locks installed in a facility, wherein the electronic device is an electronic device fixedly installed within the facility, and the method includes the steps of: acquiring, from a first terminal device used by a user who has arrived at the facility, first identification information individually assigned to the first terminal device and second identification information individually assigned to a second terminal device different from the first terminal device; and transmitting, by the electronic device, the first identification information, the second identification information, and third identification information individually assigned to the electronic device to the electronic key management device. The method includes the steps of: the electronic key management device transmitting a first electronic key capable of unlocking the lock to a first terminal device in response to a request to use the facility; the electronic key management device storing the first electronic key and first identification information of the first terminal device; the electronic key management device, upon receiving the first identification information, the second identification information, and the third identification information transmitted from the electronic device, generating a second electronic key that is different from the first electronic key corresponding to the first identification information and is capable of unlocking the lock; the electronic key management device storing the generated second electronic key and the second identification information; and the electronic key management device transmitting the second electronic key to either the first terminal device or the second terminal device.
[0010] According to the present invention, while maintaining security, an electronic door lock can be easily shared temporarily with another person when a visitor or family member is staying temporarily, etc.
[0011] FIG. 1 is an explanatory diagram of an overview of an electronic key management system according to a first embodiment of the present invention. FIG. 2 is a block diagram showing an overview of a terminal device in the electronic key management system according to the first embodiment of the present invention. FIG. 3 is a block diagram showing an overview of a fixed electronic device in the electronic key management system according to the first embodiment of the present invention. FIG. 4 is a block diagram showing an overview of a key management server in the electronic key management system according to the first embodiment of the present invention. FIG. 5 is an explanatory diagram of the process when a temporary use electronic key is provided to a share user who wishes to share a facility. FIG. 6 is an explanatory diagram of the process when a temporary use electronic key is provided to a share user who wishes to share a facility. FIG. 7 is a block diagram of another aspect of an electronic key management device according to the present invention.
[0012] Hereinafter, embodiments of the present invention will be described with reference to the drawings. <First Embodiment> Fig. 1 is an explanatory diagram illustrating an overview of an electronic key management system 1 according to a first embodiment of the present invention. In Fig. 1, a facility 10 is a facility that can be used by general users through reservations and notifications, such as a private lodging facility, a rental store, a rental studio, or a rental conference room. An electronic lock 20 is attached to a door 11 of the facility 10. An electronic key E for locking and unlocking the electronic lock 20 is stored in a terminal device 30. An application program for locking and unlocking the electronic lock 20 using the electronic key E is installed in the terminal device 30. The electronic lock 20 of the door 11 and the terminal device 30 can communicate with each other via either BLE (Bluetooth Low Energy; Bluetooth is a registered trademark) or NFC (Near Field Communication).
[0013] When a user 70 who uses the facility 10 makes a reservation or submits a notification, the user 70 acquires an electronic key E for locking and unlocking the electronic lock 20 in advance and stores the electronic key E in his / her terminal device 30. The user 70 then locks and unlocks the door 11 by having the electronic lock 20 read the electronic key E stored in the terminal device 30.
[0014] A fixed electronic device 40 is also provided within the facility 10. The fixed electronic device 40 may be a personal computer (PC), a tablet terminal, a terminal device, or the like. Alternatively, a display device that displays information about the facility 10 may be used as the fixed electronic device 40. The fixed electronic device 40 is fixed to a wall, furniture, or other structure within the facility 10 so as to be immovable. When a mobile terminal such as a tablet terminal or a terminal device is used as the fixed electronic device 40, the fixed electronic device 40 is attached to a fixed object with a wire or the like so as to be immovable within the facility 10. The fixed electronic device 40 may be fastened to a structure within the facility 10 with a screw, tethered to the structure with a chain, or attached with an adhesive or pressure-sensitive adhesive. The fixed electronic device 40 is connected to a key management server 50 via a network 60. The fixed electronic device 40 is used to issue a temporary electronic key to a user who wishes to share the facility 10.
[0015] The key management server 50 is configured with one or more server devices (e.g., cloud servers). The key management server 50 issues an electronic key to a user who uses the facility 10 when the user makes a reservation or submits a notification. The key management server 50 also issues a temporary electronic key to a user who wants to share the facility 10.
[0016] In the following description, a user who makes a reservation or submits a notification to use the facility 10 is referred to as an authorized user, and the electronic key (first electronic key) issued to the authorized user is referred to as an authorized electronic key. A user who shares the facility 10 with an authorized user is referred to as a shared user, and the temporary electronic key (second electronic key) issued to the shared user is referred to as a temporary electronic key. Different usage conditions can be set for authorized electronic keys and shared electronic keys. For example, because temporary electronic keys are keys that are used temporarily by shared users, their validity period is limited to a shorter period than that of authorized electronic keys. The validity period of temporary electronic keys is set to a predetermined time (e.g., one day), and if the validity period needs to be extended, a reissue process for the temporary electronic key can be performed.
[0017] FIG. 2 is a block diagram showing an outline of the terminal device 30 in the electronic key management system 1 according to the first embodiment of the present invention.
[0018] As shown in FIG. 2, the terminal device 30 includes a control unit 301, a memory unit 302, a communication unit 303, a display unit 304, an input unit 305, a short-range communication unit 306, a GPS (Global Positioning System) positioning unit 307, and a camera unit 308.
[0019] The control unit 301 is composed of a CPU (Central Processing Unit) and performs various processes based on programs stored in the storage unit 302. In this embodiment, the control unit 301 executes the processing of an application program 310 for locking and unlocking the electronic lock 20.
[0020] The storage unit 302 is configured by, for example, a hard disk drive (HDD), a flash memory, an electrically erasable programmable read-only memory (EEPROM), a random access read / write memory (RAM), a read-only memory (ROM), or any combination of these storage media. The storage unit 302 stores an electronic key E.
[0021] The communication unit 303 performs mobile communication. Various communication methods have been proposed, such as 2G (Frequency Division Multiple Access (FDMA) and Time Division Multiple Access (TDMA)), 3G (Wideband Code Division Multiple Access (W-CDMA)), 4G (Long Term Evolution (LTE)), and 5G, and any of these methods may be used. Furthermore, a wireless LAN (IEEE 802.11) may be used as the communication unit 303.
[0022] The display unit 304 is configured by, for example, an LCD (Liquid Crystal Display) or an organic EL (Electro Luminescence) display, and displays various types of information.
[0023] The input unit 305 is formed of, for example, a touch panel arranged on top of the display unit 304, and receives various operational inputs from the user.
[0024] The short-range communication unit 306 is used for communication with the electronic lock 20 and the fixed electronic device 40. As the short-range communication unit 306, BLE or NFC may be used.
[0025] The GPS positioning unit 307 measures the position of the terminal device 30. The camera unit 308 takes pictures of the surroundings. The camera unit 308 also takes pictures of two-dimensional barcodes and interprets the captured two-dimensional barcodes to extract information contained in the two-dimensional barcodes.
[0026] FIG. 3 is a block diagram showing an outline of the fixed electronic device 40 in the electronic key management system 1 according to the first embodiment of the present invention.
[0027] As shown in FIG. 3, the fixed electronic device 40 includes a control unit 401 , a storage unit 402 , an input unit 403 , a display unit 404 , a communication unit 405 , a short-range communication unit 406 , and a GPS positioning unit 407 .
[0028] The functions of the control unit 401 may be realized by a CPU installed in the fixed electronic device 40 reading and executing a program stored in the storage unit 402. The control unit 401 performs various processes. In this embodiment, when issuing a temporary use electronic key to a share user 70b who wishes to share the facility 10, the control unit 401 acquires identification information (first identification information) of the terminal device 30a owned by the authorized user, identification information (second identification information) of the terminal device 30b owned by the share user, and identification information and location information (third identification information) of the fixed electronic device 40, and transmits them to the key management server 50. Here, the identification information may be a Media Access Control address (MAC address). The identification information is not limited to a MAC address, and any information that can identify the device may be used. The control unit 401 also acquires parameters necessary for generating a temporary use electronic key for the share user and transmits them to the key management server 50.
[0029] As a parameter required for generating a temporary electronic key, at least one of the following data (a) to (e) can be used.
[0030] (a) Identification information and location information of the fixed electronic device 40 (b) The authorized electronic key held by the authorized user (c) The validity period of the authorized electronic key (d) Check-in time (random information) (e) Identification information of the terminal device of the sharing user
[0031] The parameters for generating the electronic key may be acquired by the fixed electronic device 40 by having the terminal device 30 of the authorized user communicate with the fixed electronic device 40 when the authorized user enters the facility 10 and checks in. The information on the check-in time is random information. The location information of the fixed electronic device 40 can be acquired by the GPS positioning unit 407.
[0032] The storage unit 402 is configured by, for example, a HDD, a flash memory, an EEPROM, a RAM, a ROM, or any combination of these storage media. Various programs and data are recorded and / or reproduced in the storage unit 402.
[0033] The input unit 403 is a touch panel that is stacked on the display unit 404 and receives various user inputs. The input unit 403 may be an input device such as a keyboard or a mouse.
[0034] The display unit 404 is formed of, for example, an LCD display or an organic EL display. Various information is displayed on the display unit 404. The display unit 404 can also be used to display various information in the form of a two-dimensional barcode.
[0035] The communication unit 405 communicates with the key management server 50 via the network 60. The communication unit 405 functions as a transmission unit (second transmission unit) that transmits, to the key management server 50, identification information (first identification information) of the terminal device 30 owned by the authorized user, identification information (second identification information) of the terminal device 30 owned by the share user, and identification information and location information (third identification information) of the fixed electronic device 40.
[0036] The short-range communication unit 406 is used for communication with the terminal device 30. BLE or NFC is used as the short-range communication unit 406. Various necessary information and parameters necessary for generating a temporary use electronic key can be obtained by communicating with the terminal device 30 using the short-range communication unit 406. Furthermore, communication with the terminal device 30 may be obtained using the wireless LAN function of the communication unit 405.
[0037] The GPS positioning unit 407 measures the installation position of the fixed electronic device 40. Because the fixed electronic device 40 is used in a fixed position, the fixed electronic device 40 can be identified from the position information measured by the GPS positioning unit 407. Furthermore, by using the position information measured by the GPS positioning unit 407, it can be detected whether the fixed electronic device 40 has been moved.
[0038] 4 is a block diagram showing an outline of the key management server 50 in the electronic key management system 1 according to the first embodiment of the present invention. As shown in FIG. 4, the key management server 50 includes a key generation unit 501, a communication unit 502, and a storage unit 503.
[0039] The key generation unit 501 generates an electronic key for locking and unlocking the door 11. The authorized electronic key (first electronic key) used by an authorized user is generated by the key generation unit 501 when the authorized user makes a reservation or submits a notification to use the facility 10.
[0040] The communication unit 502 transmits the authorized electronic key generated by the key generation unit 501 to the authorized user's terminal device (first transmission unit).
[0041] The communication unit 502 also receives a request to generate a temporary-use electronic key from the fixed electronic device 40 .
[0042] The key generation unit 501 receives a request to generate a temporary-use electronic key and generates the temporary-use electronic key. At this time, the communication unit 502 receives necessary information from the fixed electronic device 40, such as identification information of the terminal device 30 owned by the authorized user, identification information of the terminal device 30 owned by the share user, and identification information and location information of the fixed electronic device 40. When issuing the temporary-use electronic key, the communication unit 502 also receives parameters for generating the temporary-use electronic key from the fixed electronic device 40.
[0043] The key generating unit 501 generates a temporary use electronic key (second electronic key) using the received parameters, and the communication unit 502 transmits the generated temporary use electronic key to the fixed electronic device 40 (third transmission unit).
[0044] The storage unit 503 is configured by, for example, a HDD, a flash memory, an EEPROM, a RAM, a ROM, or any combination of these storage media.
[0045] The storage unit 503 is provided with a regular electronic key management area 511 (first storage unit) and a temporary use electronic key management area 512 (second storage unit).
[0046] The regular electronic key management area 511 stores regular electronic keys issued to regular users and identification information of terminal devices 30 that can use the electronic keys in association with each other. The temporary use electronic key management area 512 stores temporary use electronic keys issued to shared users and identification information of terminal devices 30 that can use the electronic keys in association with each other.
[0047] 5 and 6 are explanatory diagrams of the process performed when a temporary electronic key is provided to a share user who wants to share the facility 10 in the electronic key management system 1 according to the first embodiment of the present invention.
[0048] 5 and 6, an authorized user 70a owns a terminal device 30a. A shared user 70b owns a terminal device 30b. The electronic keys include an authorized electronic key Ea (first electronic key) and a temporary electronic key Eb (second electronic key). The authorized electronic key Ea is the electronic key used by the authorized user 70a. The temporary electronic key Eb is the electronic key used by the shared user 70b.
[0049] At the time of reservation, the authorized user 70a has in his / her terminal device 30a an authorized electronic key Ea that can unlock and lock the door 11 of the facility 10. As shown in Figure 5, when the user 70a arrives at the facility 10, the user 70a unlocks the door 11 using the authorized electronic key Ea of his / her terminal device 30a and enters the facility 10.
[0050] Now, suppose that a share user 70b wishes to share the facility 10. In this case, the share user 70b, who wishes to share the facility 10, uses the terminal device 30b of the share user 70b to request a temporary use electronic key from the terminal device 30a of the authorized user 70a. The authorized user 70a receives the request for the temporary use electronic key from the share user 70b via the terminal device 30a.
[0051] Upon receiving the temporary use electronic key request, the authorized user 70a operates his / her own terminal device 30a and the fixed electronic device 40 in the facility 10 to send a temporary use electronic key generation request to the key management server 50. At this time, the fixed electronic device 40 acquires identification information of the authorized user 70a's terminal device 30a and identification information of the share user 70b's terminal device 30b from the terminal device 30a, and transmits the identification information of the authorized user 70a's terminal device 30a, the identification information of the share user 70b's terminal device 30b, and the identification information and location information of the fixed electronic device 40 as necessary information to the key management server 50. The fixed electronic device 40 also acquires the identification information and location information of the fixed electronic device 40, the authorized electronic key Ea held by the authorized user 70a, the validity period of the authorized electronic key Ea, the check-in time, the identification information of the share user 70b's terminal device 30b, etc. as parameters necessary for key generation, and transmits them to the key management server 50.
[0052] When the key management server 50 receives the request for generating a temporary electronic key together with the parameters and information required for key generation from the fixed electronic device 40, it generates the temporary electronic key Eb.
[0053] As shown in FIG. 6 , the generated temporary use electronic key Eb is sent from the key management server 50 to the terminal device 30b of the share user 70b. Alternatively, it may be sent to the terminal device 30b via the fixed electronic device 40, or may be sent to the terminal device 30b via the terminal device 30a. That is, the example in FIG. 6 illustrates a case in which the generated temporary use electronic key Eb is sent from the key management server 50 to the fixed electronic device 40. The fixed electronic device 40 receives the temporary use electronic key Eb sent from the key management server 50 and transfers it to the terminal device 30a of the authorized user 70a. The authorized user 70a then transmits the temporary use electronic key Eb from its own terminal device 30a to the terminal device 30b of the share user 70b. The share user 70b stores the temporary use electronic key Eb sent from the authorized user 70a in its own terminal device 30b. As a result, the share user 70b can lock and unlock the door 11 of the facility 10 using the temporary use electronic key Eb stored in the terminal device 30b.
[0054] As described above, in this embodiment, to generate a temporary electronic key, the user needs to use the fixed electronic device 40. The fixed electronic device 40 is fixed within the facility 10. Therefore, to use the fixed electronic device 40, the user needs to enter the facility 10. Only authorized users 70a who have a regular electronic key Ea that can unlock the door 11 of the facility 10 can enter the facility 10. Therefore, in this embodiment, users who can share the facility 10 as shared users 70b can be limited to users related to the authorized user 70a.
[0055] In this embodiment, the necessary information, including the identification information of the terminal device 30a owned by the authorized user 70a, the identification information of the terminal device 30b owned by the shared user 70b, and the identification information and location information of the fixed electronic device 40, is transmitted from the fixed electronic device 40 to the key management server 50. By using this information, it is possible to obtain information about the terminal that requested the generation of the temporary-use electronic key. This makes it possible to prevent the issuance of keys through impersonation and maintain security.
[0056] Furthermore, the fixed electronic device 40 is embedded in a wall, furniture, or the like, and is installed so as not to be moved from the facility 10. Therefore, there is no risk that the fixed electronic device 40 will be taken outside and a temporary-use electronic key will be generated. Furthermore, the fixed electronic device 40 is provided with a GPS positioning unit 407, and this location information is transmitted from the fixed electronic device 40 to the key management server 50 when a temporary-use electronic key is generated. Therefore, movement of the fixed electronic device 40 can be detected. Therefore, it is possible to prohibit the fixed electronic device 40 from being taken outside and generating a temporary-use electronic key.
[0057] As described above, in this embodiment, the parameters used to generate the temporary use electronic key include identification information of the terminal device 30b of the share user 70b, so that the temporary use electronic key Eb used by the share user 70b can be valid only on the terminal device 30b of that share user 70b.
[0058] In other words, when the electronic lock 20 receives an unlocking request from the terminal device 30b of the shared user 70b, it receives the identification information of the terminal device 30b and the temporary use electronic key Eb from the terminal device 30b, and sends the received combination of the identification information of the terminal device 30b and the temporary use electronic key Eb to the key management server 50. The identification information of the terminal device 30b and the temporary use electronic key Eb are stored in association with each other in the storage unit 503 of the key management server 50. When the key management server 50 receives the identification information of the terminal device 30b and the temporary use electronic key Eb from the terminal device 30b, it determines whether the received combination of the identification information of the terminal device 30b and the temporary use electronic key Eb matches the combination of the identification information of the terminal device 30b and the temporary use electronic key Eb stored in the storage unit 503 of the key management server 50. The electronic lock 20 then allows unlocking if the combination of the identification information and temporary use electronic key Eb of the previous terminal device 30b received matches the combination of the identification information and temporary use electronic key Eb of the terminal device 30b stored in the memory unit 503 of the key management server 50.
[0059] <Variations and application examples> In the first embodiment described above, when sending the temporary use electronic key Eb generated by the key management server 50 to the terminal device 30b of the shared user 70b, the key management server 50 transmits the temporary use electronic key Eb to the fixed electronic device 40, transfers information about the fixed electronic key Eb from the fixed electronic device 40 to the terminal device 30a of the authorized user 70a, and transmits it from the terminal device 30a of the authorized user 70a to the terminal device 30b of the shared user 70b.
[0060] A readable code may be used to transfer the temporary use electronic key Eb from the fixed electronic device 40 to the terminal device 30a. That is, the key management server 50 transmits a readable code (two-dimensional barcode) indicating the temporary use electronic key Eb to the fixed electronic device 40 (fourth transmission unit). Upon receiving information from the key management server 50, the fixed electronic device 40 displays the two-dimensional barcode indicating the temporary use electronic key Eb on the display unit 404. The authorized user 70a reads the displayed two-dimensional barcode with the camera unit 308 of his / her terminal device 30a. This allows the temporary use electronic key Eb to be transferred from the fixed electronic device 40 to the terminal device 30a.
[0061] In order to maintain security, the two-dimensional barcode displayed on the fixed electronic device 40 needs to be hidden after being read by the terminal device 30a. Therefore, the two-dimensional barcode displayed on the fixed electronic device 40 is hidden after a predetermined time. Furthermore, the terminal device 30a may send a completion notification to the key management server 50 after reading the two-dimensional barcode, and the key management server 50 may hide the two-dimensional barcode upon receiving the completion notification.
[0062] Alternatively, the key management server 50 may transmit to the terminal device 30b of the share user 70b information from which the temporary use electronic key Eb can be downloaded (URL: Uniform Resource Locator) rather than information on the temporary use electronic key Eb itself. Upon receiving the information on the URL where the temporary use electronic key Eb is stored, the share user 70b accesses the URL on the terminal device 30b, thereby obtaining the temporary use electronic key Eb.
[0063] The temporary use electronic key Eb generated by the key management server 50 may be sent from the key management server 50 to the terminal device 30a of the authorized user 70a and then to the terminal device 30b of the shared user 70b. When sending the temporary use electronic key Eb from the key management server 50 to the terminal device 30a, the information on the temporary use electronic key Eb may not be sent directly, but information on a URL from which the temporary use electronic key Eb can be downloaded may be sent instead.
[0064] In the first embodiment described above, the temporary use electronic key Eb generated by the key management server 50 is transferred from the key management server 50 to the terminal device 30b of the share user 70b via the fixed electronic device 40 and the terminal device 30a. This is because the share user 70b is not the user who made the reservation or notification to use the facility 10, and therefore the destination address and email address of the terminal device 30b of the share user 70b are unknown to the key management server 50.
[0065] If the email address of the terminal device 30b of the shared user 70b is registered on the key management server 50 side, the temporary use electronic key Eb generated by the key management server 50 can be sent directly to the terminal device 30b from the key management server 50. When sending the temporary use electronic key Eb from the key management server 50 to the terminal device 30b, the information on the temporary use electronic key Eb may not be sent directly, but information on a URL from which the temporary use electronic key Eb can be downloaded may be sent instead.
[0066] 7 is a block diagram of another embodiment of an electronic key management device according to the present invention. The electronic key management device 1050 includes an electronic device 1040 and an electronic key management device 1050 communicably connected to the electronic device 1040, and is part of an electronic key management system that manages electronic keys capable of unlocking a lock 1020 installed in a facility 1010.
[0067] The electronic key management device 1050 includes a first transmission unit 1502 , a first storage unit 1511 , a key generation unit 1501 , and a second storage unit 1512 .
[0068] The first transmitting unit 1502 transmits the first electronic key Ea capable of unlocking the lock 1020 to the first terminal device 1030a in response to a request to use the facility 1010.
[0069] The first storage unit 1511 stores the first electronic key Ea and the first identification information of the first terminal device 1030a.
[0070] The key generation unit 1501 receives, from the first terminal device 1030a used by the user 70a who has arrived at the facility 1010, first identification information individually assigned to the first terminal device 1030a and second identification information individually assigned to a second terminal device 1030b different from the first terminal device 1030a, using the electronic device 1040 that is fixedly installed within the facility 1010, and in response to the first identification information, the second identification information, and the third identification information individually assigned to the electronic device 1040 being transmitted from the electronic device 1040, generates a second electronic key Eb that is different from the first electronic key Ea corresponding to the first identification information and that can unlock the lock 1020.
[0071] The second storage unit 1512 stores the generated second electronic key Eb and the second identification information.
[0072] The third transmission unit 1503 transmits the second electronic key Eb to any one of the electronic device 1040, the first terminal device 1030a, or the second terminal device 1030b. The third transmission unit 1503 may transmit the second electronic key Eb to any one of the first terminal device 1030a or the second terminal device 1030b via the electronic device 1040.
[0073] All or part of the electronic key management system 1 in the above-described embodiment may be implemented by a computer. In this case, a program for implementing this function may be recorded on a computer-readable recording medium, and the program may be loaded into a computer system and executed. Note that the term "computer system" as used herein includes hardware such as an OS and peripheral devices. Furthermore, "computer-readable recording medium" refers to portable media such as flexible disks, optical magnetic disks, ROMs, and CD-ROMs, as well as storage devices such as hard disks built into a computer system. Furthermore, "computer-readable recording medium" may also include devices that dynamically store programs for a short period of time, such as communication lines used when transmitting programs via networks such as the Internet or telephone lines, or devices that store programs for a fixed period of time, such as volatile memory within a computer system that serves as a server or client. The program may also be designed to implement part of the aforementioned functions, or may be capable of implementing the aforementioned functions in combination with a program already stored in the computer system, or may be implemented using a programmable logic device such as an FPGA.
[0074] Although an embodiment of the present invention has been described above in detail with reference to the drawings, the specific configuration is not limited to this embodiment, and includes designs within the scope of the gist of the present invention.
[0075] REFERENCE SIGNS LIST 10 Facility 11 Door 20 Electronic lock 30, 30a, 30b Terminal device 40 Fixed electronic device 50 Key management server 501 Key generation unit 502 Communication unit 503 Storage unit 511 Regular electronic key management area 512 Temporary use electronic key management area
Claims
1. An electronic key management device in an electronic key management system that has an electronic device and an electronic key management device communicably connected to the electronic device, and manages an electronic key capable of unlocking a lock provided in a facility, a first transmission unit that transmits a first electronic key capable of unlocking the lock in response to a request to use the facility to a first terminal device; a first storage unit that stores the first electronic key and first identification information of the first terminal device; when the electronic device fixedly provided in the facility acquires, from the first terminal device used by a user who has arrived in the facility, first identification information individually assigned to the first terminal device and second identification information individually assigned to a second terminal device different from the first terminal device, and the first identification information, the second identification information, and third identification information individually assigned to the electronic device are transmitted from the electronic device, a key generation unit that generates a second electronic key that is different from the first electronic key corresponding to the first identification information and is capable of unlocking the lock; a second storage unit that stores the generated second electronic key and the second identification information; a third transmission unit that transmits the second electronic key to either the first terminal device or the second terminal device.
2. The third transmission unit of the electronic key management device transmits the second electronic key to the first terminal device, and the second electronic key is transmitted from the first terminal device to the second terminal device. The electronic key management device according to claim 1.
3. The third transmission unit of the electronic key management device transmits a URL from which the second electronic key can be downloaded to the first terminal device, the URL is transmitted from the first terminal device to the second terminal device, and the second terminal device downloads the second electronic key to the second terminal device based on the URL. The electronic key management device according to claim 1.
4. The electronic device is fixedly attached to the structure of the facility. The electronic key management device according to claim 1.
5. The key generation unit assigns the second electronic key with a valid period shorter than a reserved use period as the period for which the user uses the facility. The electronic key management device according to claim 1.
6. The electronic key management device, when receiving a request to unlock the lock, identification information individually assigned to the terminal device that is the source of the unlock request, and an electronic key from the terminal device that is the source of the request, determines whether or not a combination of the identification information and the electronic key is stored in the second storage unit, and has an unlock control unit that permits unlocking of the lock when the combination of the identification information and the electronic key is stored in the second storage unit. The electronic key management device according to claim 1.
7. The electronic key management device has a fourth transmission unit that transmits a read code capable of acquiring the generated second electronic key to the electronic device, and the electronic device displays the read code transmitted from the electronic key management device on a display screen and makes the read code non-displayed in response to the read code being read by the first terminal device. The electronic key management device according to claim 1.
8. The third transmission unit transmits the second electronic key to either the first terminal device or the second terminal device via the electronic device. The electronic key management device according to claim 1.
9. An electronic key management system that includes an electronic device and an electronic key management device communicably connected to the electronic device, and manages an electronic key capable of unlocking a lock provided in a facility, wherein the electronic device is an electronic device fixedly provided in the facility, and the electronic device includes a first acquisition unit that acquires, from a first terminal device used by a user who has entered the facility, first identification information individually assigned to the first terminal device and second identification information individually assigned to a second terminal device different from the first terminal device, and a second transmission unit that transmits the first identification information, the second identification information, and third identification information individually assigned to the electronic device to the electronic key management device; the electronic key management device includes a first transmission unit that transmits a first electronic key capable of unlocking the lock in response to a request to use the facility to the first terminal device, a first storage unit that stores the first electronic key and the first identification information of the first terminal device, a key generation unit that generates a second electronic key that is different from the first electronic key corresponding to the first identification information and is capable of unlocking the lock when the first identification information, the second identification information, and the third identification information transmitted from the electronic device are received, a second storage unit that stores the generated second electronic key and the second identification information, and a third transmission unit that transmits the second electronic key to either the first terminal device or the second terminal device.
10. An electronic key management method in an electronic key management system that includes an electronic device and an electronic key management device communicably connected to the electronic device, and manages an electronic key capable of unlocking a lock provided in a facility, the method comprising: a step of transmitting a first electronic key capable of unlocking the lock in response to a request to use the facility to a first terminal device; a step of storing the first electronic key and first identification information of the first terminal device; a step of acquiring, by an electronic device fixedly provided in the facility, from a first terminal device used by a user who has entered the facility, first identification information individually assigned to the first terminal device and second identification information individually assigned to a second terminal device different from the first terminal device, and receiving the first identification information, the second identification information, and third identification information individually assigned to the electronic device from the electronic device, and generating a second electronic key different from the first electronic key corresponding to the first identification information and capable of unlocking the lock; a step of storing the generated second electronic key and the second identification information; and a step of transmitting the second electronic key to either the first terminal device or the second terminal device.
11. A management method for an electronic key management system having an electronic device and an electronic key management device communicably connected to the electronic device, for managing an electronic key capable of unlocking a lock provided in a facility, wherein the electronic device is an electronic device fixedly provided in the facility, the step of the electronic device acquiring, from a first terminal device used by a user who has entered the facility, first identification information individually assigned to the first terminal device and second identification information individually assigned to a second terminal device different from the first terminal device; the step of the electronic device transmitting the first identification information, the second identification information, and third identification information individually assigned to the electronic device to the electronic key management device; the step of the electronic key management device transmitting a first electronic key capable of unlocking the lock in response to a request to use the facility to the first terminal device; the step of the electronic key management device storing the first electronic key and the first identification information of the first terminal device; when the electronic key management device receives the first identification information, the second identification information, and the third identification information transmitted from the electronic device, generating a second electronic key different from the first electronic key corresponding to the first identification information and capable of unlocking the lock; the step of the electronic key management device storing the generated second electronic key and the second identification information; and the step of the electronic key management device transmitting the second electronic key to either the first terminal device or the second terminal device.
Citation Information
Patent Citations
Key management method, key management program, and key management device
JP2018123654A
Authorization system and authorization method
JP2020031409A
QR code dispay and cars with the same
KR1020250019186A