Information Processing Apparatus Security Setting Control
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Users, especially those unfamiliar with server connection settings, may unintentionally change high-security server connection settings to lower-security settings, compromising security.
Innovation Solution
An information processing apparatus is designed with a control unit that prevents the setting of lower-security server connection settings when a high-security setting, such as OAuth 2.0, is already established. This is achieved by gray-out or disabling the options for other server connection settings on the setting screen.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If users are allowed to freely change server connection settings, then ease of operation is improved, but security is worsened due to unintentional downgrading of security levels
Solution Approach 1:
The control unit applies preliminary anti-action by detecting when a high-security setting is established and proactively preventing the selection of lower-security settings before the user can accidentally downgrade security. This is achieved by the control unit monitoring setting changes and blocking attempts to set lower-security authentication schemes when high-security settings are active, thus counteracting the potential harmful action before it occurs.
2Reliability
If high-security settings are enforced, then security is improved, but adaptability is worsened as users cannot switch to other settings
Solution Approach 1:
The system applies dynamics by making the security setting restrictions conditional rather than fixed. The control unit dynamically adjusts the availability of setting options based on the current security level - when high-security settings are detected, lower-security options are restricted; when high-security settings are not present, all options remain available. This dynamic adaptation resolves the contradiction between enforcing security and maintaining user adaptability.
Data Source
AI summary
An information processing apparatus includes a second reception unit capable of receiving an instruction to set second setting for executing authentication with a second server by a second authentication scheme having a security level at a second level higher than a first level, a second authentication unit configured to execute authentication with the second server by the second authentication scheme based on reception of the instruction to set the second setting, and a control unit configured to perform, based on reception of the instruction to set the second setting by the second reception unit, control to prevent reception of an instruction to set first setting for executing authentication with a first server by a first authentication scheme having a security level at a first level.


