Device Management System for Secure Mobile Access Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Unfettered access to image processing apparatuses in public facilities from mobile devices poses unique data-security challenges, particularly in managed and telework networks where secure authentication and authorization are critical.

Innovation Solution

A device management system that includes a device management apparatus and method, utilizing a memory to store authorized user identification information, processing circuitry to determine user access, and an intervening apparatus to manage communication requests from mobile devices, ensuring only authorized users can access and use image processing apparatuses by verifying user identification information and device identification.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If image processing apparatuses are made accessible from mobile devices in public facilities, then usability and accessibility are improved, but data security and access control become compromised

Engineering Contradiction:
Improveaccessibility from mobile devicesVSAvoiddata security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces an authentication server as an intermediary between mobile devices and image processing apparatuses. This server mediates authentication requests, verifying user credentials and device identification information before granting access. The intermediary handles security protocols centrally, allowing mobile devices to access public facility apparatuses while maintaining robust security control through the authentication server's verification processes.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Measurement precision

If authentication servers store detailed user identification information and device information, then access control precision is improved, but system complexity and data management burden increase

Engineering Contradiction:
Improveaccess control precisionVSAvoidsystem complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The patent segments the authentication system into distinct functional components: user identification verification, device identification verification, and authentication decision-making. The authentication server stores and processes user identification information and device information separately, allowing precise access control through modular verification steps. This segmentation enables detailed tracking of user-device-apparatus relationships while organizing system complexity into manageable, independent modules.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS10230861B2Device management system, device management apparatus, and device management method
Publication Date: 2019.03.12 RICOH CO LTD
  • US10230861B2 patent drawing
  • US10230861B2 patent drawing
  • US10230861B2 patent drawing

AI summary

A device management system includes a device management apparatus, a first electronic device, a second electronic device, and an intervening apparatus. The device management apparatus includes a memory storing authorized user identification information, a receiver receiving user identification information from the first electronic device, and processing circuitry determining whether it is allowed to use at least the first electronic device. If so, third device identification information is stored. The intervening apparatus includes a receiver receiving the user identification information from the second electronic device and processing circuitry determining whether it is allowed to use at least the first electronic device. If so, the third device identification information is received. The second electronic device includes a receiver receiving a request and processing circuitry determining whether the third device identification information in the request matches the third device identification information received from the device management apparatus, and accepts the request.