Ticket-Based IC Card ID Update for Access Authorization
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing methods for managing access authorization for image processing apparatuses using IC cards are inefficient, particularly when cards are lost or damaged, as they require complex administrative workloads, potential security concerns, and increased costs due to the need for system updates and information exchange between card issuers and access authorization administrators.
Innovation Solution
An information processing apparatus and method that utilizes a portable storage medium to manage user access authorization by generating and verifying ticket information, allowing seamless updates of IC card IDs, thereby reducing administrative burdens and security risks.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If IC card re-issuance requires communication between card issuer and access authorization administrator, then access authorization can be updated, but administrative workload increases
Solution Approach 1:
The patent introduces a ticket as an intermediary carrier that transports authorization information between the card issuer and access authorization administrator. The ticket contains encoded authorization data that can be automatically processed without requiring direct communication or manual intervention between administrators, thus reducing administrative workload while ensuring reliable authorization updates
Solution Approach 2:
The patent creates a copy of authorization information in the form of a ticket that can be independently transmitted and processed. Instead of requiring the original authorization system to directly update the access control system, a replicated authorization record is created and transferred via ticket, enabling automated processing and reducing administrative burden
2Ease of operation
If spare IC cards are distributed to users, then card re-issuance becomes convenient, but security concerns arise
Solution Approach 1:
The patent applies different security qualities to different parts of the card system. The IC card itself maintains full security credentials, while the ticket (a separate local artifact) contains limited authorization information that can be safely distributed. This allows users to have convenient re-issuance capability through tickets without compromising the security of the actual IC cards
3Reliability
If IC card information is restricted for security reasons, then security is maintained, but user convenience decreases
Solution Approach 1:
The ticket serves as an intermediary that carries necessary authorization information without requiring users to access or manipulate sensitive IC card data. Users can present the ticket for authorization updates without needing to understand or handle the restricted security information stored on their IC cards, thus maintaining security while improving convenience
Data Source
AI summary
An information processing apparatus employing user access authorization management verifies user access authorization using a portable storage medium storing identification (ID) information for the portable storage medium and user verification information registered in the information processing apparatus while including the portable storage medium ID as verified ID information for the portable storage medium. The information processing apparatus includes a processor to conduct generating ticket information including read portable storage medium ID; transmitting the generated ticket information to a designated issuee; receiving a request to update the ID information for the portable storage medium; obtaining the generated ticket information and the ID information for a new portable storage medium; verifying authenticity of the obtained ticket information; and updating the portable storage medium ID, included in the user verification information registered, with the ID information for the new portable storage medium when the authenticity of the obtained ticket information is verified.


