Networked Printing Device Initialization for Secure User Handover
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional image forming devices face the risk of user information leakage after the expiration of a service contract, as unique and changeable information is not adequately managed, allowing potential exposure of sensitive data.
Innovation Solution
An information processing apparatus and method that manages printing devices by identifying individual devices and outputting initialization commands to terminate user access, preventing user information leakage by associating physical and logical devices and ensuring secure data transfer during ownership changes.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If registration data is erased from the image forming device once the service contract expires, then the device can be reused by new users, but user information may still be leaked from the server
Solution Approach 1:
The system performs preliminary erasure of registration data and changeable information from the image forming device before allowing new users to take over. The controller is configured to erase registration data stored in the hard disk drive when the service contract expires, ensuring that no user information remains on the device itself. This preliminary action prevents information leakage even before the new user begins using the device.
Solution Approach 2:
The invention extracts and removes changeable information (registration data, user settings, and other modifiable data) from the hard disk drive while preserving unique information (serial number, model number). This selective extraction ensures that only the necessary device identification data remains, while all user-specific information is completely removed from the device storage, preventing any potential leakage to new users.
2Reliability
If unique information and changeable information are stored in the hard disk drive, then the device can maintain its identity and functionality, but user information leakage risk increases
Solution Approach 1:
The hard disk drive storage is segmented into two distinct areas: one for storing unique information (serial number, model number) that identifies the device, and another for storing changeable information (registration data, user settings). This segmentation allows the system to maintain device identity through unique information while separately managing user information that can be erased, thereby reducing the risk of information leakage.
Solution Approach 2:
Different storage areas within the hard disk drive are assigned different qualities and access rights. The unique information area maintains permanent storage with read access for device identification, while the changeable information area allows for selective erasure and modification. This local quality differentiation ensures that device identity is preserved while user information can be securely removed when needed.
3Adaptability or versatility
If the controller manages the printing device based on user information, then the system can provide personalized service, but the complexity of information management increases
Solution Approach 1:
The controller is designed with multi-functionality to handle various tasks: it manages device operations, stores user information, processes registration data, and executes erasure operations when contracts expire. By integrating these multiple functions into a single controller unit, the system achieves personalized service capabilities without proportionally increasing overall system complexity.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
An information processing apparatus includes: a communication interface configured to communicate with a printing device via a network; and a controller configured to manage the printing device on the basis of user information of a corresponding user. The printing device is configured to perform image formation on a printing medium. The controller is further configured to perform: (a) acquiring individual information identifying the printing device; (b) outputting an initialization command to the printing device identified by the individual information acquired in the (a) acquiring, and (c) prohibiting, in response to outputting the initialization command to the identified printing device in the (b) outputting, access to the user information of the first user from a second user different from the first user. The initialization command is a command instructing the identified printing device to perform information initialization for terminating use of the identified printing device by a first user.