Printer Digital Certificate Authentication
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Cloud print services face issues in safely specifying the physical printer associated with a logical printer, leading to unintended printing due to tampered or improperly obtained device IDs.
Innovation Solution
A printing apparatus equipped with a first receiving unit for print jobs, a second receiving unit for local area network jobs, a print unit, a storage unit for private keys and digital certificates, and a transmission unit to securely transmit digital certificates within the local area network, ensuring accurate printer specification through electronic signatures and public key pairs.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If device ID comparison is used to specify physical printer, then printer specification can be achieved, but security against tampering is insufficient
Solution Approach 1:
The patent introduces digital certificates as an intermediary mechanism between the information processing apparatus and physical printer. The print server acts as a trusted intermediary that issues digital certificates to printers. This intermediary layer prevents direct manipulation of device IDs while maintaining the ability to accurately specify printers through certificate-based authentication.
Solution Approach 2:
The patent replaces the mechanical/text-based device ID comparison system with a cryptographic digital certificate system. Instead of comparing plain text device IDs that can be easily tampered with, the system uses digitally signed certificates that provide cryptographic protection against manipulation, substituting a vulnerable mechanical identification system with a secure cryptographic one.
2Reliability
If digital certificates are transmitted securely, then authentication accuracy improves, but communication complexity increases
Solution Approach 1:
The patent implements preliminary action by having the print server issue digital certificates to printers in advance, before actual printing operations occur. This pre-establishment of authentication credentials simplifies subsequent communication, as the certificates are already in place and ready for use, reducing the complexity of real-time authentication processes.
Data Source
AI summary
A printing apparatus includes a first receiving unit configured to receive a first print job from a print server, a second receiving unit configured to receive a second print job from an information processing apparatus within a local area network, a print unit configured to perform printing that is based on the first print job and printing that is based on the second print job, a storage unit configured to store a private key and a digital certificate, and a transmission unit configured to transmit the digital certificate to the information processing apparatus within the local area network. The digital certificate includes a public key paired with the private key, and an electronic signature created by the print server.


