Image Processing Apparatus Local Authentication via Terminal ID Collation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional image processing apparatuses require communication with an authentication server for authentication, which can be inconvenient and may not function without a stable network connection.

Innovation Solution

An image processing apparatus with a memory, communication interfaces, and a controller that performs authentication processes locally by storing terminal identifying information and user authentication data, allowing for secure login and function access without continuous server communication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If authentication is performed using an authentication server with stored authentication information, then authentication security is improved, but system complexity and network dependency increase

Engineering Contradiction:
Improveauthentication securityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The authentication system is segmented into two parts: the authentication server that stores master authentication information, and the image processing apparatus that stores only terminal identification information locally. This segmentation allows secure authentication without requiring the apparatus to handle all authentication data, reducing system complexity while maintaining security.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

Terminal identification information is preliminarily registered in the image processing apparatus during a registration process. This preliminary action enables the apparatus to perform quick local authentication by comparing received terminal information against pre-stored data, avoiding the need for continuous server communication while maintaining secure authentication.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If authentication requires communication with an authentication server, then centralized security control is improved, but ease of operation deteriorates due to network dependency

Engineering Contradiction:
Improvecentralized security controlVSAvoidease of operation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system implements local quality by enabling the image processing apparatus to perform authentication operations locally using pre-registered terminal identification information. This local capability allows users to authenticate without network connectivity, improving ease of operation, while the authentication server maintains centralized security control for initial registration and master authentication.

Inventive Principle:
Principle #3Local quality

3Productivity

If terminal identification information is stored locally in the image processing apparatus, then authentication speed is improved, but information security risks increase

Engineering Contradiction:
Improveauthentication speedVSAvoidinformation security risks
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The system extracts and stores only terminal identification information locally in the image processing apparatus, while keeping the complete authentication information (including passwords and verification data) securely stored only in the authentication server's database. This extraction approach enables fast local authentication by comparing terminal IDs, while minimizing security risks by not storing sensitive authentication data locally.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS10466943B2Image processing apparatus, method and non-transitory computer-readable recording medium storing instructions therefor
Publication Date: 2019.11.05 BROTHER KOGYO KK
  • US10466943B2 patent drawing
  • US10466943B2 patent drawing
  • US10466943B2 patent drawing

AI summary

An image processing apparatus including a memory, a first communication interface configured to communicate with an authentication server, a second communication interface configured to receive terminal identifying information from an external device, a user interface, and a controller. The controller is configured to transmit the first authentication information to the authentication server and receive an authentication result. If the received authentication result indicates that authentication is successfully done, The controller switches a state of the image processing apparatus from a logged out state to a logged-in state. Further, the controller is configured to store terminal identifying information identifying the external device in the memory as corresponding information. In response to receiving the terminal identifying information, the controller performs authentication by collating the terminal identifying information and the corresponding information and switches the state of the image processing apparatus from the logged-out state to the logged-in state.