Information Equipment Security Level Enhancement Automation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In shared information equipment, administrators face a significant burden when enhancing security levels, as users may forget to change their passwords, leading to potential access issues, and existing methods require manual checks to ensure all users can access the system post-security level increase.
Innovation Solution
The information equipment includes a determination portion that assesses whether data, access restrictions, and user authentication meet security requirements after a security level enhancement, and sends messages to users via the network to update their passwords or access restrictions if they do not meet these criteria, thereby reducing the administrative burden.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If the security level of a multifunction device is enhanced, then the security is improved, but the operation becomes complicated and users may be unable to access the device
Solution Approach 1:
The system performs preliminary actions by automatically notifying users before security level enhancement takes effect. The notification is sent in advance to give users time to prepare or change their authentication credentials, preventing access issues before they occur.
Solution Approach 2:
The system implements feedback by monitoring user authentication information and automatically identifying users who will be affected by security level changes. This feedback mechanism allows the system to selectively notify only those users whose credentials do not meet the new security requirements, rather than notifying all users.
2Reliability
If the administrator manually checks all user passwords to ensure compatibility with new security requirements, then access issues are prevented, but the administrative burden increases significantly
Solution Approach 1:
The system enables self-service by automatically performing the task of checking user authentication information against new security requirements. The determination portion autonomously identifies users who need notification, eliminating the need for administrators to manually verify each user's password compatibility.
Solution Approach 2:
The system replaces the mechanical manual checking process with an automated electronic determination process. The determination portion uses electronic criteria evaluation to assess user authentication information, substituting the manual administrative task with an automated computational process that operates without human intervention.
3Ease of operation
If the administrator sends advance notices to all users to change passwords, then users are prepared for security level enhancement, but users who forget or ignore the notices may still face access issues
Solution Approach 1:
The system uses feedback to identify and notify only the specific users whose authentication information does not meet the new security requirements. This targeted approach ensures that notification is sent to the right users based on actual compatibility assessment, rather than sending blanket notices to all users.
Solution Approach 2:
The system performs preliminary identification of affected users before security level enhancement. By determining which users' credentials do not meet the new requirements and notifying them in advance, the system ensures these specific users have the opportunity to update their credentials before the change takes effect.
Data Source
AI summary
Information equipment having a memory area for which access restrictions are set is provided. The information equipment makes a determination, in response to operation for turning a security mode into a security level enhanced mode, on data in the memory area, whether or not any one of the following conditions satisfy security requirements after the security level is enhanced: access restrictions set for the data itself; access restrictions set for the memory area; and authentication information for a user who has stored the data, and sends, to the user who has stored the corresponding data in the memory area or a user who has set the access restrictions for the memory area storing the corresponding data therein, a message to prompt one of the users to perform operation for satisfying the security requirements.


