MFP Browser User Information Deletion Timing
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Image formation apparatuses, such as multi-functional peripherals (MFPs), face issues with user information leakage due to inconsistent deletion timing settings, leading to unauthorized access and privacy breaches when shared among multiple users or used by unspecified individuals.
Innovation Solution
The image formation apparatus is equipped with a processor that determines the appropriate time to delete user information based on predefined states and user operations, such as timeouts or logouts, ensuring secure deletion and preventing information leakage by prioritizing the earlier of these conditions.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If the timing of deleting user information is set to auto-reset, then user information is deleted automatically after a period of inactivity, but user information may not be deleted when a user logs out, leading to information leakage
Solution Approach 1:
The patent implements dynamic deletion timing that adapts to different usage patterns. The system monitors whether a user is authenticated and adjusts the deletion trigger accordingly: for authenticated users, deletion occurs at logout; for unauthenticated users, deletion occurs at auto-reset. This dynamic adaptation resolves the contradiction between reliable security and usage pattern versatility.
Solution Approach 2:
The system changes the deletion timing parameter based on authentication state. When a user is authenticated, the deletion timing parameter is set to logout event; when unauthenticated, it is set to auto-reset event. This parameter change allows the system to maintain security reliability across different usage patterns.
2Reliability
If the timing of deleting user information is set to logout, then user information is deleted when users log out, but user information is not deleted when auto-reset occurs without logout, leading to information leakage
Solution Approach 1:
The system dynamically adjusts deletion timing based on authentication status. For authenticated users, deletion is triggered at logout to maintain security. For unauthenticated users accessing the browser without login, deletion is triggered at auto-reset, ensuring information is cleared even without explicit logout. This dynamic approach resolves the contradiction between security and operational efficiency.
3Ease of operation
If user information is retained in the browser, then user can conveniently access previously viewed web pages, but next user may access previous user's information, causing privacy breach
Solution Approach 1:
The system performs preliminary deletion of user information at appropriate timing (logout or auto-reset) before the next user accesses the browser. This preliminary action eliminates the harmful factor of information leakage while preserving the benefit of convenient access for authenticated users during their session.
Solution Approach 2:
The system uses feedback from authentication state and usage patterns to determine when to delete user information. By monitoring whether users are authenticated and tracking logout events, the system provides feedback-driven deletion timing that balances convenience and security.
Data Source
AI summary
An MFP includes a processor following a user instruction to execute a browser and cause a display device to display a designated web page. In doing so, the processor obtains user information and stores it to a memory. The processor determines that the user information stored in the memory is deleted at a point of time at which the processor determines that the MFP presents a predefined state allowing the MFP to end displaying a web page or at a point of time at which the processor determines that a user operation is done that is predefined to cause the MFP to end displaying the web page. At the earlier one of these points of time, the processor deletes the user information stored in the memory.


