Data Processing Apparatus Authentication for External Web Requests

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional data processing apparatuses, such as Multi Function Peripherals (MFPs), lack effective authentication mechanisms to prevent unauthorized processing requests from external web servers, leading to unwanted operations being executed on the device.

Innovation Solution

A data processing apparatus with a display unit, input unit, instruction transmitting unit, generating unit for authentication information, storing unit, authentication information transmitting unit, receiving unit, and control unit that ensures only authorized processing requests are executed by verifying authentication information received from an external apparatus against stored authentication information.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If the data processing apparatus accepts processing requests from external web servers based on legitimacy determination, then the apparatus can utilize web server functionality, but unauthorized users can execute unwanted processing operations

Engineering Contradiction:
Improveweb server utilization capabilityVSAvoidunauthorized execution prevention
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The system performs preliminary authentication of the operating user before accepting processing requests from external web servers. The authentication unit verifies user credentials in advance, and the control unit is configured to reject requests that fail authentication, preventing unauthorized execution before it can occur.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces an authentication unit as an intermediary component between the web server interface and the processing execution unit. This intermediary verifies user legitimacy and controls request transmission, acting as a security gateway that filters out unauthorized requests while allowing legitimate ones to proceed.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If the apparatus executes processing requests from web servers without user authentication, then web service functionality is enabled, but processing not desired by the operating user may be carried out

Engineering Contradiction:
Improveweb interface accessibilityVSAvoidunwanted processing execution
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The system applies preliminary anti-action by preemptively blocking unauthorized processing requests before they can affect the system. The authentication unit pre-validates user credentials, and the control unit pre-rejects requests from users who have not properly authenticated, preventing unwanted processing before it occurs.

Inventive Principle:
Principle #9Preliminary anti-action

Solution Approach 2:

The authentication unit provides feedback to the control unit regarding user authentication status. This feedback mechanism enables the control unit to make informed decisions about whether to accept or reject processing requests, creating a closed-loop security system that responds to authentication outcomes.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS9710676B2Data processing apparatus, information processing apparatus, and storage medium
Publication Date: 2017.07.18 CANON KK
  • US9710676B2 patent drawing
  • US9710676B2 patent drawing
  • US9710676B2 patent drawing

AI summary

In a case where a processing request corresponding to an instruction transmitted from a data processing apparatus is accepted from an external apparatus, an appropriate processing based on a processing request corresponding to an instruction made by a user who operates the data processing apparatus is performed.