Ticket-Based IC Card ID Update for Access Authorization

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing methods for managing access authorization for image processing apparatuses using IC cards are inefficient, particularly when cards are lost or damaged, as they require complex administrative workloads, potential security concerns, and increased costs due to the need for system updates and information exchange between card issuers and access authorization administrators.

Innovation Solution

An information processing apparatus and method that utilizes a portable storage medium to manage user access authorization by generating and verifying ticket information, allowing seamless updates of IC card IDs, thereby reducing administrative burdens and security risks.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If IC card re-issuance requires communication between card issuer and access authorization administrator, then access authorization can be updated, but administrative workload increases

Engineering Contradiction:
Improveaccess authorization updateVSAvoidadministrative workload
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces a ticket as an intermediary carrier that transports authorization information between the card issuer and access authorization administrator. The ticket contains encoded authorization data that can be automatically processed without requiring direct communication or manual intervention between administrators, thus reducing administrative workload while ensuring reliable authorization updates

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent creates a copy of authorization information in the form of a ticket that can be independently transmitted and processed. Instead of requiring the original authorization system to directly update the access control system, a replicated authorization record is created and transferred via ticket, enabling automated processing and reducing administrative burden

Inventive Principle:
Principle #26Copying

2Ease of operation

If spare IC cards are distributed to users, then card re-issuance becomes convenient, but security concerns arise

Engineering Contradiction:
Improvecard re-issuance convenienceVSAvoidsecurity risk
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent applies different security qualities to different parts of the card system. The IC card itself maintains full security credentials, while the ticket (a separate local artifact) contains limited authorization information that can be safely distributed. This allows users to have convenient re-issuance capability through tickets without compromising the security of the actual IC cards

Inventive Principle:
Principle #3Local quality

3Reliability

If IC card information is restricted for security reasons, then security is maintained, but user convenience decreases

Engineering Contradiction:
ImprovesecurityVSAvoiduser convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The ticket serves as an intermediary that carries necessary authorization information without requiring users to access or manipulate sensitive IC card data. Users can present the ticket for authorization updates without needing to understand or handle the restricted security information stored on their IC cards, thus maintaining security while improving convenience

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS8752159B2Information processing apparatus, verification system, control method of verification system, program of control method of verification system, and storage medium
Publication Date: 2014.06.10 RICOH CO LTD
  • US8752159B2 patent drawing
  • US8752159B2 patent drawing
  • US8752159B2 patent drawing

AI summary

An information processing apparatus employing user access authorization management verifies user access authorization using a portable storage medium storing identification (ID) information for the portable storage medium and user verification information registered in the information processing apparatus while including the portable storage medium ID as verified ID information for the portable storage medium. The information processing apparatus includes a processor to conduct generating ticket information including read portable storage medium ID; transmitting the generated ticket information to a designated issuee; receiving a request to update the ID information for the portable storage medium; obtaining the generated ticket information and the ID information for a new portable storage medium; verifying authenticity of the obtained ticket information; and updating the portable storage medium ID, included in the user verification information registered, with the ID information for the new portable storage medium when the authenticity of the obtained ticket information is verified.