Image Processing Push Scan Gating by Encryption Status

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In existing scanning systems, authentication information transmitted during a push scan is vulnerable to eavesdropping due to unencrypted communication paths, posing a risk of user spoofing and data leakage.

Innovation Solution

The system controls push scan instructions based on communication encryption status, ensuring authentication information is only transmitted over encrypted channels, and restricts push scans in unencrypted environments, optionally prompting user authorization for plaintext communication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If push scan is enabled in unencrypted communication mode, then scanning functionality is available, but authentication information is vulnerable to eavesdropping

Engineering Contradiction:
Improvepush scan functionalityVSAvoidauthentication information leakage
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The system changes the communication mode parameter between unencrypted and encrypted states. When encrypted communication mode is detected, the system enables push scan functionality. When unencrypted mode is detected, the system disables push scan or prompts for user authorization, thereby preventing authentication information leakage while maintaining functionality when secure.

Inventive Principle:
Principle #35Parameter changes

Solution Approach 2:

The system provides feedback to the user about the communication encryption status and obtains user authorization when unencrypted mode is detected. This feedback mechanism allows users to be informed of security risks and make informed decisions about whether to proceed with push scan in unencrypted mode, balancing convenience and security.

Inventive Principle:
Principle #23Feedback

2Reliability

If communication encryption is implemented, then authentication information security is improved, but communication complexity increases

Engineering Contradiction:
Improveauthentication information securityVSAvoidcommunication encryption processing
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system automatically detects the communication encryption status and makes decisions about push scan enablement without requiring manual configuration. The encryption status is determined through standard protocol detection, and the system self-adjusts its behavior accordingly, reducing the operational complexity for users while maintaining security.

Inventive Principle:
Principle #25Self-service

3Object-affected harmful factors

If push scan is restricted in unencrypted environments, then security is improved, but user convenience deteriorates

Engineering Contradiction:
Improvedata exposure riskVSAvoidscan operation convenience
Core Design Contradiction:
Object-affected harmful factorsVSEase of operation

Solution Approach 1:

The system provides feedback to users about encryption status and seeks authorization when restricting push scan. This allows users to understand the security implications and manually override restrictions when they accept the risk, thereby maintaining convenience for informed users while defaulting to secure operation.

Inventive Principle:
Principle #23Feedback

Solution Approach 2:

The system changes its operational parameters based on encryption status. In encrypted mode, push scan is fully enabled. In unencrypted mode, the system either disables push scan or prompts for user authorization, dynamically adjusting functionality based on security conditions.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS12417056B2Information processing apparatus that executes control for enabling a security setting related to encrypted communication when a function related to a push scan is enabled, image processing apparatus, information processing method, and storage medium
Publication Date: 2025.09.16 CANON KK
  • US12417056B2 patent drawing
  • US12417056B2 patent drawing
  • US12417056B2 patent drawing

AI summary

There is provided with an information processing apparatus. A controlling unit, in a case where a condition related to at least any of a mode of communication with an image processing apparatus, a form of a connection with an image processing apparatus, and an authorization level of communication with an image processing apparatus is satisfied, enables an instruction for a push scan to the image processing apparatus. A sending unit transmits to the image processing apparatus a credential to be used in transmission processing in a push scan. The controlling unit, in a case where a condition related to at least any of the mode of communication, the connection form, and the authorization level is not satisfied, controls to not perform an instruction for a push scan to the image processing apparatus.