Location-Based Authentication for Image Processing Systems

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing image processing systems lack the ability to restrict authenticated users to specific locations, leading to potential security issues where a user authenticated for one apparatus can access and use all image processing apparatuses and their functions uniformly.

Innovation Solution

An information processing system that includes an authenticator and a server with a processor, which authenticates users and permits access to image processing apparatuses based on location-specific authorization information, ensuring that users can only use the apparatuses and functions associated with their authenticated location.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a user is authenticated as a registered user, then the user can use image processing apparatuses uniformly, but the user can access and use all image processing apparatuses and their functions uniformly which creates security issues

Engineering Contradiction:
Improveuser access convenienceVSAvoidsystem security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent applies local quality by differentiating access rights based on the specific location (apparatus) where the user attempts to access. Instead of uniform access rights, the system evaluates each access request individually by comparing the user's authentication information with location-specific registered information. This allows the user to access some apparatuses while being restricted from others, achieving both convenience for authorized access and security by preventing unauthorized access to specific locations.

Inventive Principle:
Principle #3Local quality

2Device complexity

If uniform authorization is provided to authenticated users, then user authentication is simplified, but location-specific access control cannot be implemented

Engineering Contradiction:
Improveauthentication system complexityVSAvoidlocation-specific access control capability
Core Design Contradiction:
Device complexityVSAdaptability or versatility

Solution Approach 1:

The patent segments the authentication system into two distinct components: an authentication module that verifies user identity, and an authorization module that determines access rights based on location. The authentication information is segmented into user identification data and location-specific registered information. This segmentation allows the system to maintain a relatively simple authentication process while implementing complex location-specific access control through the separate authorization evaluation step.

Inventive Principle:
Principle #1Segmentation

3Reliability

If location-by-location restriction is implemented, then system security is enhanced, but the authentication and access control process becomes more complex

Engineering Contradiction:
Improvesystem securityVSAvoidaccess control system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent applies preliminary action by pre-registering authentication information for each user at each location before actual access attempts occur. The system stores location-specific registered information in advance, so that when a user attempts to access an apparatus, the system can quickly retrieve and compare against the pre-prepared authentication data. This eliminates the need for complex real-time evaluation and reduces the complexity of the access control process while maintaining security.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS11650774B2Information processing system, information processing apparatus, and information processing method for authentication
Publication Date: 2023.05.16 FUJIFILM BUSINESS INNOVATION CORP
  • US11650774B2 patent drawing
  • US11650774B2 patent drawing
  • US11650774B2 patent drawing

AI summary

An information processing system includes: an authenticator that authenticates one or more image processing apparatuses using authentication information of a user in response to receipt of the authentication information; and a server including a processor configured to permit the user to use an image processing apparatus that has location information related to the authentication information of the user among the authenticated one or more image processing apparatuses.