Cloud Access Token Reauthorization via Mediation Server
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The existing system for image forming apparatuses requires users to perform a series of operations for reauthorization when the validity period of the access token expires, which is inconvenient and time-consuming.
Innovation Solution
An information processing system that includes an issuance unit for issuing access tokens, a registration unit for registering access tokens with an identifier, and a display unit for displaying reauthorization instructions, allowing for automatic reissuance and registration of access tokens when the validity period expires, minimizing user intervention.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If the access token validity period is set to expire, then security is improved, but the reauthorization process becomes more complex and time-consuming
Solution Approach 1:
The system performs preliminary actions by automatically detecting token expiration and initiating the reauthorization process before the user needs to access services. The mediation server monitors token validity periods and proactively manages the reissuance of access tokens, reducing the burden on users during the reauthorization process.
Solution Approach 2:
The mediation server acts as an intermediary between the image forming apparatus and the cloud service provider. It handles the complex reauthorization logic and communication with the cloud service, translating the user's simple reauthorization action into the appropriate technical procedures without exposing the complexity to the end user.
2Reliability
If the access token validity period is set to expire, then security is improved, but the time required for reauthorization increases
Solution Approach 1:
The system performs preliminary actions by automatically detecting token expiration and initiating the reauthorization process before the user needs to access services. The mediation server monitors token validity periods and proactively manages the reissuance of access tokens, reducing the burden on users during the reauthorization process.
Solution Approach 2:
The system enables self-service reauthorization where the mediation server automatically handles the technical aspects of token reissuance. Users simply need to press a button on their device, and the system automatically communicates with the cloud service provider to obtain a new access token, eliminating the need for manual configuration or complex user input.
3Ease of operation
If manual reauthorization operations are required, then user control is maintained, but operational convenience deteriorates
Solution Approach 1:
The system enables self-service reauthorization where the mediation server automatically handles the technical aspects of token reissuance. Users simply need to press a button on their device, and the system automatically communicates with the cloud service provider to obtain a new access token, eliminating the need for manual configuration or complex user input.
Solution Approach 2:
The mediation server acts as an intermediary between the image forming apparatus and the cloud service provider. It handles the complex reauthorization logic and communication with the cloud service, translating the user's simple reauthorization action into the appropriate technical procedures without exposing the complexity to the end user.
Data Source
AI summary
An information processing system includes a first external apparatus, a second external apparatus, an information processing apparatus, and an image forming apparatus. The information processing system further includes an issuance unit configured to issue, in the first external apparatus, an access token for accessing a cloud service, a first registration unit configured to receive the access token and register the access token in the second external apparatus in association with an identifier, a display unit configured to display a reauthorization instruction object on a browser of the information processing apparatus, and a second registration unit configured to, in a case where the reauthorization instruction object is pressed and the access token is issued again, register the reissued access token in the second external apparatus in association with the identifier.


