EP3732640A1 - Systeme et procede de gestion de donnees personnelles dans un rassemblement de masse - Google Patents
Systeme et procede de gestion de donnees personnelles dans un rassemblement de masseInfo
- Publication number
- EP3732640A1 EP3732640A1 EP18845306.2A EP18845306A EP3732640A1 EP 3732640 A1 EP3732640 A1 EP 3732640A1 EP 18845306 A EP18845306 A EP 18845306A EP 3732640 A1 EP3732640 A1 EP 3732640A1
- Authority
- EP
- European Patent Office
- Prior art keywords
- data
- personal
- participant
- bracelet
- personal data
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Withdrawn
Links
Classifications
-
- G—PHYSICS
- G07—CHECKING-DEVICES
- G07C—TIME OR ATTENDANCE REGISTERS; REGISTERING OR INDICATING THE WORKING OF MACHINES; GENERATING RANDOM NUMBERS; VOTING OR LOTTERY APPARATUS; ARRANGEMENTS, SYSTEMS OR APPARATUS FOR CHECKING NOT PROVIDED FOR ELSEWHERE
- G07C9/00—Individual registration on entry or exit
- G07C9/20—Individual registration on entry or exit involving the use of a pass
- G07C9/22—Individual registration on entry or exit involving the use of a pass in combination with an identity check of the pass holder
- G07C9/25—Individual registration on entry or exit involving the use of a pass in combination with an identity check of the pass holder using biometric data, e.g. fingerprints, iris scans or voice recognition
- G07C9/257—Individual registration on entry or exit involving the use of a pass in combination with an identity check of the pass holder using biometric data, e.g. fingerprints, iris scans or voice recognition electronically
-
- G—PHYSICS
- G07—CHECKING-DEVICES
- G07C—TIME OR ATTENDANCE REGISTERS; REGISTERING OR INDICATING THE WORKING OF MACHINES; GENERATING RANDOM NUMBERS; VOTING OR LOTTERY APPARATUS; ARRANGEMENTS, SYSTEMS OR APPARATUS FOR CHECKING NOT PROVIDED FOR ELSEWHERE
- G07C9/00—Individual registration on entry or exit
- G07C9/20—Individual registration on entry or exit involving the use of a pass
- G07C9/27—Individual registration on entry or exit involving the use of a pass with central registration
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q10/00—Administration; Management
- G06Q10/08—Logistics, e.g. warehousing, loading or distribution; Inventory or stock management
- G06Q10/083—Shipping
- G06Q10/0833—Tracking
-
- G—PHYSICS
- G07—CHECKING-DEVICES
- G07C—TIME OR ATTENDANCE REGISTERS; REGISTERING OR INDICATING THE WORKING OF MACHINES; GENERATING RANDOM NUMBERS; VOTING OR LOTTERY APPARATUS; ARRANGEMENTS, SYSTEMS OR APPARATUS FOR CHECKING NOT PROVIDED FOR ELSEWHERE
- G07C9/00—Individual registration on entry or exit
- G07C9/20—Individual registration on entry or exit involving the use of a pass
- G07C9/28—Individual registration on entry or exit involving the use of a pass the pass enabling tracking or indicating presence
-
- G—PHYSICS
- G07—CHECKING-DEVICES
- G07C—TIME OR ATTENDANCE REGISTERS; REGISTERING OR INDICATING THE WORKING OF MACHINES; GENERATING RANDOM NUMBERS; VOTING OR LOTTERY APPARATUS; ARRANGEMENTS, SYSTEMS OR APPARATUS FOR CHECKING NOT PROVIDED FOR ELSEWHERE
- G07C9/00—Individual registration on entry or exit
- G07C9/20—Individual registration on entry or exit involving the use of a pass
- G07C9/29—Individual registration on entry or exit involving the use of a pass the pass containing active electronic elements, e.g. smartcards
-
- G—PHYSICS
- G07—CHECKING-DEVICES
- G07C—TIME OR ATTENDANCE REGISTERS; REGISTERING OR INDICATING THE WORKING OF MACHINES; GENERATING RANDOM NUMBERS; VOTING OR LOTTERY APPARATUS; ARRANGEMENTS, SYSTEMS OR APPARATUS FOR CHECKING NOT PROVIDED FOR ELSEWHERE
- G07C9/00—Individual registration on entry or exit
- G07C9/20—Individual registration on entry or exit involving the use of a pass
- G07C9/22—Individual registration on entry or exit involving the use of a pass in combination with an identity check of the pass holder
- G07C9/25—Individual registration on entry or exit involving the use of a pass in combination with an identity check of the pass holder using biometric data, e.g. fingerprints, iris scans or voice recognition
- G07C9/26—Individual registration on entry or exit involving the use of a pass in combination with an identity check of the pass holder using biometric data, e.g. fingerprints, iris scans or voice recognition using a biometric sensor integrated in the pass
Definitions
- the invention relates to the field of mass collection management, and more particularly a device and a personal data management system that can be used to facilitate the management of participants in a mass meeting and allow the provision of services. personalized to these participants.
- the invention also relates to a method for managing personal data in a mass gathering, in particular to improve the security of the gathering and the experience of the participant.
- the large gatherings also called mass events or mass gathering, are characterized by a large number of people attending or participating in a common event, for example a pilgrimage, a sports competition or a concert. With the increase in population, communication and the democratization of long-distance transport, these large gatherings are more and more frequent and concern more and more numerous and diverse people.
- the invention therefore aims to overcome the disadvantages of the prior art.
- the invention aims to provide a personal data management device in the context of a mass meeting, said device to improve the management of personal safety and to enable the fight against fraud in said gathering.
- the invention also aims to provide a personal data management system in the context of a mass gathering, hosting at least several thousand people, at a meeting place, said system can be used to verify the identity of the people, offer them value-added services, particularly in the context of planning their trip and finally assist them in any exchanges with health authorities.
- a personal data management system in the context of a mass gathering, hosting at least several thousand people, at a meeting place, said system can be used to verify the identity of the people, offer them value-added services, particularly in the context of planning their trip and finally assist them in any exchanges with health authorities.
- the invention relates to a personal electronic bracelet for the management of personal data of a participant in a mass meeting comprising:
- a communication module capable of receiving the participant's personal data in encrypted form
- a storage module able to store the participant's encrypted personal data
- an electronic closing mechanism configured to change state following receipt of a state change data.
- the invention relates to a bracelet having the advantage of being able to reduce the duration of the identity verification procedures while maintaining a high level of requirement in terms of securing data. It also makes it possible to compensate for the difficulty of identifying certain pilgrims and to overcome the language barrier.
- Such a system is particularly useful in the context of the management of gatherings such as small and large vocational movement to Mecca, including via better management of participants' personal data.
- the presence of personal data in encrypted form allows a control of the dissemination of data while making them accessible to authorized entities even in case of disruption of communications.
- the electronic closure mechanism changing state following the receipt of data avoids manual opening and accidental or intentional loss of the bracelet.
- the state change data is a biometric data associated with a responsible operator of said participant.
- the biometric data is a fingerprint.
- the bracelet can only be locked and unlocked by the operator responsible for the participant. This makes it possible to meet the security requirements of such devices comprising sensitive information and being used for identity checks.
- the participant's personal data includes: identity data, travel data and health data.
- the communication module is able to communicate with a third party device and is configured to allow access by said third party device to only a portion of the personal data of the participant.
- the data is encrypted to that the third device can decrypt, even with the appropriate decryption key, only part of personal data.
- It is configured to send, via a communication module, a message to an operator responsible for said participant if it were to be opened by force.
- the invention also relates to a personal data management system in the context of a mass meeting, said management system comprising a personal electronic bracelet according to the invention and a secure platform, said secure platform comprising a personal data module, configured to store personal data of the participant.
- the third-party device also includes at least one third party device configured to access only part of the participant's personal data.
- the third-party device may be configured to transmit an identifier to the personal electronic bracelet, to receive all or part of the participant's personal data in encrypted form and to decrypt only a portion of the participant's personal data.
- At least one of the third-party devices is able to access personal data comprising a visa number, to compare the visa number with a predetermined list and to generate an alert instruction based on said comparison. Thanks to this the system according to the invention allows a fast and secure identity check and can lead to a reduction in waiting times for example in airports during mass gatherings.
- a third party device may for example take the form of a security gantry that can be used in an airport.
- the portal upon the arrival of a participant, the portal will be able to access many personal identity data such as last name, first name, biometric data of the participant and airport of arrival, and including a visa number.
- the predetermined list may include other information that can be compared with the arrival airport advantageously.
- the predetermined list may have been sent by the authoritative server.
- the alert instruction preferably makes it possible to generate a sound or visual type signal. It may for example consist of an instruction configured to light a light, operate a speaker or send a message to an electronic device.
- the alert makes it possible to prevent the access of a zone to an unauthorized participant.
- at least one third-party device is a third-party access control device for a vehicle configured to:
- the vehicle can preferably be a public transport vehicle.
- the data control can be done for example via a comparison of these data to a list of participants authorized to ride in the vehicle.
- the secure platform includes an analysis module configured to:
- these analyzes can then be processed by representation applications in order to highlight the relevant information ("heat maps" type format), so that the analysis module is able to generate statistical data that make it possible to improve This analyzed data can also be saved as files on a memory.
- the secure platform includes a scheduling and access control module configured to correlate mass gather participant distribution information, visit planning information, and personal electronic bracelet positioning information to generate access authorizations to zones for the wearer of said bracelet.
- the scheduling and access control module is configured to:
- the bearer may be denied access to a zone if access schedules authorized for the holder of the personal electronic bracelet are not respected,
- the wearer may receive a reminder of the exit schedule of the zone or a request for immediate exit from the zone if the visiting schedule is exceeded;
- the invention furthermore relates to a method for managing personal data in the context of a mass gathering, said personal data being recorded on a personal electronic bracelet according to the invention, said method comprising a step of configuring the personal electronic bracelet. comprising the following steps:
- the invention furthermore relates to a method for managing personal data in the context of a mass gathering, said personal data being recorded on a personal electronic bracelet according to the invention, said method comprising a step of configuring a device third party comprising the following steps:
- the personal electronic bracelet will transmit personal data only to a third party device that has sent the expected key, said key expected being preferably different for each personal device.
- Figure 1 a schematic representation of the personal electronic bracelet personal data management according to the invention.
- FIG. 2 a schematic representation of the personal data management system according to the invention
- FIG. 3 a schematic representation of a step of configuring the personal electronic personal data management bracelet according to one embodiment of the invention
- FIG. 4 a schematic representation of a step of configuring third-party devices according to one embodiment of the invention
- FIG. 5 a schematic representation of a step of access to the personal data of an electronic bracelet in the context of one embodiment of the invention
- geometric location a place that can be defined by its area, be constituted by outdoor areas and / or indoor areas.
- the term "mass gathering” according to the invention corresponds to a planned or spontaneous event, preferably planned, which will attract a number of participants likely to solicit considerable resources in terms of planning and action of directors or of the host country.
- the Olympic Games, Hajj and other major sporting, religious or cultural events are examples.
- the term “distribution” refers, according to the invention, to a quantity or to a movement of people.
- the quantity can be expressed in several dimensions as a density (eg person / m 2 ), a total number (eg in a hundred people), a percentage (eg number of people / capacity of the area). Movement is a quantity in and out of the geographic location or part of the geographic location.
- the "distribution data" according to the invention corresponds to one or more values.
- parameter in the sense of the invention a value obtained by transformation of raw data and can then be used within a model. This applies in particular to the transformation of a series of images of a video or the transformation of a series of values obtained via a network sensor.
- model or “rule” or “algorithm” must be understood within the meaning of the invention a finite sequence of operations or instructions for calculating a value through a classification or partitioning the data within previously defined groups Y and assigning a score or ranking one or more data within a ranking.
- the implementation of this finite sequence of operations makes it possible, for example, to assign a label Y to an observation described by a set of characteristics or parameters X by, for example, the implementation of a function f that is capable of reproducing Y having observed X.
- Unsupervised learning method means a method of prioritizing data or dividing a set of data into different homogeneous groups, where the homogeneous groups share common characteristics and without the observations being tagged.
- maintenance or “maintenance action” is meant within the meaning of the invention an activity to repair, recharge, clean or replace an installation.
- installation is meant in the sense of the invention a building, a room, a home but also equipment (eg water dispenser, furniture).
- maintenance resources refers to people, also called “maintenance agents” qualified to carry out maintenance actions or devices that may be necessary to carry out maintenance actions.
- treat “calculate”, “determine”, “display”, “extract””compare” or more broadly “executable operation”, within the meaning of the invention, an action performed by a device or a processor unless the context indicates otherwise.
- the operations relate to actions and / or processes of a data processing system, for example a computer system or an electronic computing device, which manipulates and transforms the data represented as physical (electronic) quantities. ) in the memories of the computer system or other devices for storing, transmitting or displaying information.
- a data processing system for example a computer system or an electronic computing device, which manipulates and transforms the data represented as physical (electronic) quantities.
- These operations can be based on applications or software.
- application means any expression, code or notation, of a set of instructions intended to cause a data processing to perform a particular function directly or indirectly (eg after a conversion operation to another code).
- Program code examples may include, but are not limited to, a subroutine, function, executable application, source code, object code, library, and / or any other sequence of instructions designed for the application. run on a computer system.
- processor means at least one hardware circuit configured to execute operations according to instructions contained in a code.
- the hardware circuit can be an integrated circuit. Examples of a processor include, but are not limited to, a central processing unit, a graphics processor, an application specific integrated circuit (ASIC), and a programmable logic circuit.
- ASIC application specific integrated circuit
- Coupled within the meaning of the invention, connected directly or indirectly with one or more intermediate elements. Two elements can be coupled mechanically, electrically or linked by a communication channel.
- the term “only” means a restriction, a subassembly or a part of an assembly.
- the expression “only a part of the personal data” corresponds to a part of all the personal data.
- a decryption key capable of decrypting only part of the personal data protects another part of the personal data in order to prevent access to this personal data.
- decrypt in the sense of the invention means any means capable of decoding a message to find the original text said "clear”, (eg by means of a key of deciphering).
- the data is stored in encrypted form on the bracelet, and is made accessible only to authorized entities.
- the invention relates to a device, a system or a method for facilitating the management of personal data in the context of a mass meeting.
- Events likely to bring together the greatest number of people are often a crawling, sporting events or cultural events.
- the present invention although applicable to many mass gatherings will be illustrated more particularly in a context of determinative in a context of determinative in a context of determinative to Mecca, for example during the great mitage or civil Arabia.
- the pilgrimage to Mecca represents about five million visitors each year in the cities of Mecca and Medina in Saudi Arabia. These visitors are found in particular during the annual ritual of Hajj which is performed on a specific number of days of the month of Dhul-Hijja of each lunar year, especially during the first 12 days.
- 2017, the first day of the month Dhul-Hijja of the lunar year 1437 was August 23, 2017.
- the Hajj crawlage over a geographical location corresponding to Mecca is more than 1000 km 2 .
- Hajj participants also known as Hajis, will pray five times a day at the same gathering places and will proceed to the same cults as explained. They will, for example, have seven rounds around the Kaaba, walk seven times between Safa and Marwah, drink at Zamzam spring and then go to the place called "Mina” 4 km from Mecca and pray the prayers of the afternoon (asr), evening (maghreb and icha) and morning (fajr). They will also have to go to Arafat Mountain and pray at noon and afternoon and then go to "Muzdalifah” for evening prayers.
- the invention carries a first aspect on a personal electronic bracelet 40 for example associated with a participant in a mass meeting and an operator responsible for said participant.
- This mass gathering can accommodate for example at least several thousand people, preferably more than 100,000 people, more preferably over a million people.
- the operator responsible for the participant is usually the person, employee of a company organizing the participant's trip, who will be in charge of the participant during the mass rally.
- the organizing company will have planned the presence at the participant's mass gathering. This includes, for example, the administrative procedures for obtaining a visa, the purchase of a transport ticket, the rental of accommodation, the possible registration for the meeting and / or the planning of any visits.
- the personal electronic bracelet 40 comprises an electronic closure mechanism 43 configured to change state following the receipt of a state change data, preferably from the operator responsible for said participant.
- the change of state corresponds to the opening or closing of the electronic closing mechanism.
- the state of change data of the responsible operator is a biometric data, preferably a data relating to the imprint of the responsible operator.
- the bracelet may include a fingerprint reader.
- the fingerprint reader can in particular be configured to read a fingerprint, generate fingerprint read data and then check the match between the fingerprint read data and a data relating to the responsible operator's fingerprint recorded on the fingerprint. the bracelet 40.
- the personal electronic bracelet 40 also includes a storage module 42 able to store the personal data of the participant in encrypted form.
- the personal data of the participant may for example include: identity data, travel data and health data.
- this storage module 42 is more particularly capable of recording:
- the storage module 42 may comprise a transient memory and / or a non-transitory memory.
- the non-transitory memory may be a medium such as a CDrom, a memory card, or a hard disk for example hosted by a remote server.
- the storage module 42 is configured to include encrypted data.
- the invention has the particularity of securing the participant's personal data and making them highly accessible but only to authorized entities.
- the personal data are recorded on the personal bracelet in encrypted form.
- an authorized third party may have restricted access and will not be able to access all information.
- the personal data may for example be compartmentalized so that all the information is not accessible to an authorized third party. For example, a supervisor at the border of a country will not need to know information about the participant's medical record. Similarly, a doctor may not be authorized to access personal information associated for example with the visa of the participant to be treated.
- the personal data recorded on the personal bracelet can for example be encrypted according to a symmetric or asymmetric encryption algorithm such as an algorithm selected among the following encryption algorithms: RSA, DSA ("Digital Signature Algorithm"), DES ("Data Encryption Standard "), triple DES, AES (" Advanced Encryption Standard ").
- the personal data recorded on the personal bracelet are encrypted according to several symmetric or asymmetric encryption algorithms. This being one of the possibilities allowing access to only a part of the data.
- the storage module 42 is configured to include at least two, preferably at least three sets of encrypted data, each of the sets of encrypted data being encrypted with different encryption algorithms or encryption algorithms using keys different.
- the personal electronic bracelet 40 may include a communication module 41 for example able to communicate with a device, a platform or a computer system. Thanks to this communication module 41, the bracelet 40 is able to communicate with various communicating electronic devices such as, for example, the organizing server, the secure platform 100, and the third devices 51.
- the communication module 41 is configured to receive and transmit information to remote systems such as sensors, tablets, telephones, computers or servers.
- the communication module makes it possible to transmit the data on at least one communication network and may comprise wired or wireless communication.
- the communication is operated via a wireless protocol such as wifi, 3G, 4G, and / or Bluetooth. These data exchanges may take the form of sending and receiving files, preferably encrypted and associated with a specific receiver key.
- the communication module 41 is further adapted to allow communication between the bracelet 40 and a remote terminal, including a client.
- the client is generally any hardware and / or software that can access the bracelet 40 and allowing for example its configuration or the consultation of personal data.
- the bracelet 40 may include a processor and a display module 49 allowing it for example to display personalized alert messages. It may further comprise a geolocation chip 44 of the GNSS type (including GPS), an accelerometer 45, and a GSM communication chip 46 associated with a SIM card 47 being preferably immovably affixed to the device (eg soldered) and comprising a memory 48 preferably encrypted. This encrypted memory 48 can in particular be used for the storage of personal data and thus constitute the storage module 42.
- the bracelet 40 according to the invention may also comprise an actuator configured for, after activation, send an alert message to the operator responsible for the participant and / send an alert message to the emergency services.
- these messages may be accompanied by identification data of the participant wearing the bracelet and also position data of the participant wearing the bracelet.
- the invention also relates in a second aspect to a system 1 for managing personal data in the context of a mass gathering, said management system 1 comprising the electronic bracelet 40 according to the invention.
- invention and a secure platform 100.
- This secure platform 100 is more particularly in charge of the processing of information, planning and generation of instructions especially for the electronic bracelet 40.
- the secure platform 100 of the system 1 comprises a personal data module 110 configured to store personal data of the participant and possibly personal data of the responsible operator.
- the secure platform 100 of the system 1 comprises an encryption module 120, configured to implement an encryption step on the personal data and more broadly on all data managed by the secure platform and to be protected.
- the data may for example be encrypted according to a symmetric or asymmetric encryption algorithm such as for example an algorithm selected from the following encryption algorithms: RSA, DSA ("Digital Signature Algorithm"), DES ("Data Encryption Standard”), triple DES, AES ("Advanced Encryption Standard").
- the data are preferably encrypted according to a symmetrical block cipher algorithm.
- Block ciphering consists of cutting the data to be encrypted into successive blocks whose size (in bits) is a function of the chosen algorithm, for example in blocks of 128 bits each, and to successively encrypt each block in particular in the initial order to obtain corresponding encrypted blocks of 128 bits each for example.
- block chaining mode CBC type, for "Cipher Block Chaining" in English terminology
- Symmetric block cipher algorithms include AES, DES, algorithms according to ISO / IEC 18033-3, Camellia, HIGHT, Blowfish, Snake or Twofish.25 algorithms.
- the secure platform 100 of the system 1 comprises a personal data preparation module 130, configured to check the completeness of the personal data and if necessary standardize them.
- the personal data preparation module 130 can also be configured to anonymize the personal data once the electronic wristbands 40 and the third devices 51 configured.
- the personal data preparation module 130 may also be configured to initiate a procedure for anonymizing the personal data in the event of an attack detected on the secure platform 100.
- the secure platform 100 of the system 1 comprises a data analysis module 140.
- This data analysis module 140 is notably configured to generate data analyzed from data coming from the personal electronic bracelet 40 but also coming from other devices, such as, advantageously, a device for calculating the distribution of the participants on the geographical site of the device. mass gathering.
- the secure platform 100 of the system 1 comprises a recording module 150. It may comprise a transient memory and / or a non-transient memory.
- the non-transitory memory may be a medium such as a CDrom, a memory card, or a hard disk for example hosted by a remote server.
- the system according to the invention can also on the basis of data. previously recorded, create models to anticipate a risky situation and avoid its occurrence.
- the secure platform 100 may also include a learning module 160.
- the learning module 160 is able to implement algorithms based on supervised or unsupervised learning methods.
- the secure platform 100 is configured to implement the input data in one or more algorithms, preferably previously calibrated. These algorithms may have different versions depending on the time of a gathering period. For example, during the gathering, three periods can be taken into account: the Hajj or great mitage, the small mitage and the rest of the year. This makes it possible to refine the predictions resulting from the models.
- These algorithms may have been constructed from different learning models, including partitioning, supervised or unsupervised.
- An unsupervised learning algorithm can for example be selected from an unsupervised Gaussian mixing model, a hierarchical hierarchical classification (Hierarchical clustering Agglomerative in Anglo-Saxon terminology), a hierarchical descending classification (Hierarchical clustering divisive in Anglo-Saxon terminology). .
- the algorithm is based on a supervised statistical learning model configured to minimize a risk of the scheduling rule and thus to obtain more efficient prediction rules.
- the calculation steps for determining and estimating can be based on a model, driven on a dataset, and configured to predict a label. For example, for the purposes of calibration, it is possible to use a dataset representative of a situation whose label is known, for example the number of participants in a manually counted area.
- the data set may also include multiple tags.
- the algorithm can be derived from the use of a supervised statistical learning model selected for example from among the kernel methods (eg Large Margin Separators - Vector Vector SVM Support, Kernel Ridge Regression) described for example in Burges, 1998 (Data Mining and Knowledge Discovery, A tutorial on Vector Support for Pattern Recognition), set methods (eg decision trees) described for example in Brieman, 2001 (Machine Learning, Random Forests), FP-Growth, Apriori, hierarchical partitioning, partitioning in k-means, decision trees, logical regression or neural networks described for example in Rosenblatt, 1958 (The perceptron: a probabilistic model for information storage and organization in the brain).
- the secure platform 100 of the system 1 according to the invention comprises a supervision module 170.
- the secure platform 100 of the system 1 comprises a communication module 180.
- the secure platform 100 is able to communicate with a plurality of devices or systems involved in data management. of a participant in the mass rally. These devices or systems can for example be selected from: portable data readers, control gantries, vehicles.
- the communication module 180 is configured to receive and transmit information to remote systems such as sensors, tablets, telephones, computers or servers.
- the communication module 180 makes it possible to transmit the data on at least one communication network and may comprise a wired or wireless communication.
- the communication is operated via a wireless protocol such as wifi, 3G, 4G, and / or Bluetooth.
- These data exchanges may take the form of sending and receiving files, preferably encrypted and associated with a specific receiver key.
- the secure platform 100 via its communication module 180, is able to communicate directly with the communication module 41 of the personal electronic bracelet 40.
- the secure platform 100 of the system 1 advantageously comprises a planning and access control module 190.
- This module makes it possible, for example, to correlate the distribution information of the participants with the mass gathering, with planning information. visit and positioning information of the personal electronic bracelet 40 so as to generate the access authorizations of certain zones to the wearer of said bracelet 40.
- the various modules of the bracelet or the secure platform 100 are shown separately in Figures 1 and 2, but the invention can provide various types of arrangement such as for example a single module cumulating all the functions described here. . Similarly, these means can be divided into several electronic cards or collected on a single electronic card.
- an action is taken to a device or module, it is actually performed by a microprocessor of the device or module controlled by instruction codes stored in a memory.
- a microprocessor of the device in a memory of which the instruction codes corresponding to the application are recorded.
- a device or module transmits or receives a message, this message is sent or received by a communication interface.
- the bracelet and the system according to the invention may include one or more man-machine interfaces.
- the human-machine interface within the meaning of the invention, corresponds to any element allowing a human being to communicate with a particular computer and without this list being exhaustive, a keyboard and means allowing in response to orders entered at keyboard to perform displays and optionally select with the mouse or a touchpad items displayed on the screen.
- Another embodiment is a touch screen for selecting directly on the screen the elements touched by the finger or an object and possibly with the possibility of displaying a virtual keyboard.
- the management system 1 comprises, or is associated with, an organizing server 10.
- the organizing server corresponds, for example, to the server of the entity responsible for organizing the presence of the participant at the gathering of mass.
- the management system 1 comprises, or is associated with, an authority server 20.
- the authority server corresponds, for example, to the server of the entity responsible for the administration of the mass gathering and in particular of the management of the authorization of presence.
- the exchanges between the secure platform 100 and the authority server 20 are secure exchanges (encrypted).
- the management system 1 comprises, or is associated with, a third party server 50.
- the third party server corresponds for example to the server of a third party entity (hospitals, security agency, hotels, government organization) of which access to personal data is desired.
- the management system 1 according to the invention comprises or is associated with a third device 51.
- the third device 51 may for example be a reader, a sensor, a tablet, a telephone or a computer.
- the third device 50 is able to transmit an identifier or an identification key to the personal electronic bracelet 40, to receive personal data of the participant in encrypted form and to decrypt only part of the personal data of the participant.
- the third-party device may receive all the participant's personal data or only a portion of the participant's data. On the other hand, the third-party device can only access part of the personal data, said part being a function of its identification key.
- the decryption of part of the personal data can be achieved at the level of the third device 51.
- the application embedded in the third device 51 restores the raw text data from the received message, implying verifications of integrity and authenticity using a message authentication code and decryption of the encrypted data.
- the decryption can be performed at the personal electronic bracelet 40 before sending.
- the organizers In mass gathering, some individuals seek to attend these gatherings without having completed the required formalities or without wishing to reveal their identity. To overcome this, the organizers generally implement verification procedures that take into account, on the one hand, the identity of the individuals and the other by the authorizations acquired.
- vehicles especially public transport vehicles, are a prime location for the concealment of unregistered participants and are also a source of slowdown during checks.
- the third device may be a third party access control device 60 to a vehicle, preferably a public transport vehicle.
- a vehicle preferably a public transport vehicle.
- Such a device can for example be positioned at the entrance of a vehicle and will be configured to: access a portion of the participant's personal data, control them for example via a comparison of these data to a list of participants authorized to climb into said vehicle, then record personal data of the participant entered the vehicle.
- the vehicle equipped with the third-party access control device 60 to a vehicle may during control steps transmit, for example to a vehicle control device, a list of the passenger-participants of this vehicle with a part of the vehicle. their personal data. The verification will then be much faster.
- spot checks may be implemented and the learning module may in the light of the control results establish a vehicle control model allowing depending on the behavior of the vehicle to predict a risk of fraud.
- the invention also relates to a step 200 of configuration of the personal electronic bracelet 40 according to the invention.
- This configuration may comprise in particular the following steps: - Configuration of the electronic closing mechanism 43 so that it is able to change state following the receipt of a predetermined change of state data. Recording of encrypted personal data on the storage module 42, and
- the bracelet configuration method may include a prior step of loading personal data and processing of personal data.
- the processing of personal data, prior to encryption, may for example include a step of formalizing the data so as to make them intelligible by third parties who will consult these personal data.
- Figure 3 is a diagram illustrating the exchanges between the various elements of the system according to the invention described above in the context of the configuration of a bracelet Personal computer 40.
- Figure 3 refers in particular to the secure platform 100, the organizing server 10, the authority server 20 and the personal electronic bracelet 40.
- the organizing server 10 transmits to the secure platform 100 personal data of a participant.
- the organizing server 10 can also transmit data on the manager who will be in charge of the participants during the mass gathering.
- the secure platform 100 can perform a first processing 210 so as to verify compliance. and the completeness of the data sent. It can also at this time modify the personal data to make them correspond to a standard required by the authoritative server 20.
- the secure platform 100 transmits 21 1 at least a portion of the personal data of the participant to the authority server 20.
- the secure platform 100 can send all of the personal data received or send a part only. Preferably, it sends only part of the personal data received.
- the secure platform 100 can also transmit data on the person in charge who will be in charge of the participants during the mass gathering.
- the authority server 20 receives these data, it can initiate a verification 220 of the data received and a validation procedure 230 of the registration of the participant to the mass meeting.
- a conflict is detected (NOK)
- the authority server 20 transmits to the secure platform 100 a refusal in a step 231. Otherwise (OK) a step 240 is implemented to establish a transaction request that will configure third-party devices.
- the transaction request and the validation of the participation of the participant is transmitted to the secure platform 100.
- the transaction request may include including identifiers for third-party devices 51 that will be able to access to the data stored on the personal electronic bracelet 40.
- the secure platform 100 When the secure platform 100 receives this data, it can inform the organizer, for example via a step 242 of data transmission to the host server. It also initiates a data preparation step 250.
- the preparation 250 of the data on the secure platform 100 can notably include:
- the encrypted personal data After transmission 251 of the encrypted personal data to the organizing server or the personal electronic bracelet 40, the encrypted personal data is recorded 260 on the personal electronic bracelet 40.
- organizer data can also be stored encrypted therein. or not.
- the wristband is configured to only be locked and unlocked when it receives the change data. 'state. Preferably, it is configured so that it can only be locked and unlocked when the device receives a signal corresponding to the fingerprint of the participant's manager.
- the bracelet is configured so that personal data can be accessed only by third-party devices. corresponding to predetermined access keys.
- each third device 51 will have access to only a portion of the personal data contained in the bracelet.
- the invention also relates to a configuration step 300 of a third party device 51 able to access a portion of the personal encrypted information recorded on the personal electronic bracelet 40 according to the invention.
- This configuration 300 of a third device 51 may comprise in particular the following steps:
- - Creation 310 of a unique identification key able to allow access of a third device 51 to a personal electronic bracelet 40.
- the personal electronic bracelet 40 will transmit the personal data to a third party device that will have sent the correct key, said key being different for each personal device.
- Creation 320 of a decryption key encrypted personal data capable of decrypting only part of the personal data of the personal electronic bracelet 40.
- FIG. 4 is a diagram illustrating the exchanges between the various elements of the system according to the invention described above in the context of the configuration 300 of a third device 51.
- FIG. 4 refers in particular to the secure platform 100, to the organizing server 10, to the authority server 20, to a third server 50 and to a third device 51.
- the authoritative server 20 transmits to the secure platform 100 a transaction request.
- This transaction request includes in particular personal data of a participant.
- the transaction request can be for a plurality of personal bracelets. Indeed, an organizer will be in charge of organizing the participation of several people in the mass rally.
- the authoritative server has the possibility to send a transaction request for all the people who have been authorized to participate in the event.
- the transaction request includes personal data of at least one participant. This personal data includes the identity of the participant.
- the transaction request includes data relating to third-party devices 51 or to third-party organizations that will be authorized to access some of the information contained in the personal electronic bracelet 40.
- the transaction request may comprise more particularly a list identifiers of third parties that can access the bracelet.
- the secure platform initiates a step 210 of preparing the personal data.
- the participant's personal data can be encrypted so that each third party listed in the transaction request can access a portion of that data, the extent of the data that can be accessed depending on the key.
- the method may also comprise a step 310 of creating a unique identification key between each third party and personal device so that the personal bracelet transmits the personal data only to a third party device that has sent the good key, said key being different for each personal device.
- this step 310 advantageously comprises the construction of at least one key for each third party (ID n ) having the authorization to access part of the data contained in the personal bracelet. These keys are transmitted, for example to a third device 51, during a step 31 1.
- the method may also comprise a step 320 for creating keys (K n ) for decrypting the encrypted data capable of decrypting part of the personal data of the bracelet. Then, the decryption keys are transmitted 321 to a third party server 50 or directly to third party devices 51. If the decryption keys are transmitted to a third party server 50 then it sends 314 the keys to the third devices 51 and receives 315 an acknowledgment.
- K n keys
- the third-party server or, if applicable, the third-party device 51 sends to the secure platform 100 a message acknowledging the data during a step 312, 322.
- the secure platform 100 having received an acknowledgment sends a report to the authority server making a review of the data transmitted and establishing the end of the transaction of implementation of third-party devices.
- This secure platform 100 is more particularly in charge of information processing, planning and the generation of instructions, in particular for the electronic bracelet 40.
- the invention also relates to an access step 400 to the participant's personal data by a third party device 51.
- the participant's personal data being encrypted and recorded on the personal electronic bracelet 40 according to the invention.
- This access 400 may comprise in particular the following steps:
- - Creation 310 of a unique identification key able to allow access of a third device 51 to a personal electronic bracelet 40.
- the personal electronic bracelet 40 will transmit the personal data to a third party device that will have sent the correct key, said key being different for each personal device.
- Creation 320 of a decryption key encrypted personal data capable of decrypting only part of the personal data of the personal electronic bracelet 40.
- FIG. 5 is a diagram illustrating the exchanges between the various elements of the system according to the invention described above in the context of the access 400 to personal data.
- FIG. 5 refers in particular to the personal electronic bracelet 40 and to a third device 51.
- the third device 51 transmits to the personal electronic bracelet a transaction request.
- This transaction request includes in particular a unique identification key (IDi) allowing the bracelet to recognize the third device 51 as an authorized third party device that can access a portion of the personal data of the participant.
- IDi unique identification key
- the personal data are only transmitted to authorized third parties. Indeed, it is not desirable that any device can access the information contained in the personal electronic bracelet 40.
- the data are transmitted only on receipt 405 of an authorized identifier or a unique identification key.
- the bracelet can send a message of alert to the secure platform.
- the personal data are then sent 421 to the third device 51.
- the data is then decrypted during a step 430 by means of a suitable decryption key.
- the personal data accessible will be different.
- third-party devices dedicated to security agents will be able to access personal data such as last name, first name, and contact details of the operator
- third-party devices dedicated to doctors will be able to access personal data.
- personal data such as last name, first name, contact details of the operator and medical data.
- third-party devices dedicated to agents of a border control authority will be able to access all the personal data relating to the identity but will not be able to access the medical data.
- the invention improves the overall experience of a participant and facilitates including verification of the identity of the participant, its transport and medical treatment, the fight against fraud and the planning of the meeting in taking into account the distribution of participants.
Landscapes
- General Physics & Mathematics (AREA)
- Physics & Mathematics (AREA)
- Business, Economics & Management (AREA)
- Engineering & Computer Science (AREA)
- Economics (AREA)
- Quality & Reliability (AREA)
- General Business, Economics & Management (AREA)
- Operations Research (AREA)
- Human Resources & Organizations (AREA)
- Strategic Management (AREA)
- Tourism & Hospitality (AREA)
- Entrepreneurship & Innovation (AREA)
- Marketing (AREA)
- Development Economics (AREA)
- Theoretical Computer Science (AREA)
- Human Computer Interaction (AREA)
- Management, Administration, Business Operations System, And Electronic Commerce (AREA)
- Storage Device Security (AREA)
- Medical Treatment And Welfare Office Work (AREA)
Abstract
Description
Claims
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| FR1763427A FR3076382A1 (fr) | 2017-12-31 | 2017-12-31 | Systeme et procede de gestion de donnees personnelles dans un rassemblement de masse |
| PCT/FR2018/053561 WO2019130004A1 (fr) | 2017-12-31 | 2018-12-28 | Systeme et procede de gestion de donnees personnelles dans un rassemblement de masse |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| EP3732640A1 true EP3732640A1 (fr) | 2020-11-04 |
Family
ID=62528510
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| EP18845306.2A Withdrawn EP3732640A1 (fr) | 2017-12-31 | 2018-12-28 | Systeme et procede de gestion de donnees personnelles dans un rassemblement de masse |
Country Status (4)
| Country | Link |
|---|---|
| US (1) | US10650624B2 (fr) |
| EP (1) | EP3732640A1 (fr) |
| FR (1) | FR3076382A1 (fr) |
| WO (1) | WO2019130004A1 (fr) |
Families Citing this family (4)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN112509278B (zh) * | 2019-08-26 | 2022-07-22 | 广州汽车集团股份有限公司 | 车内乘员的保护方法、设备及系统 |
| EP3896632B1 (fr) | 2020-04-17 | 2024-03-13 | Bull SAS | Procédé et système de gestion d'une épidémie sanitaire sur un territoire |
| US12121118B2 (en) * | 2022-02-23 | 2024-10-22 | Autumn Dudai | Emergency alert bracelet assembly |
| US12165454B2 (en) * | 2022-07-01 | 2024-12-10 | Sargent Manufacturing Company | Access request mode for access control devices |
Citations (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20150054628A1 (en) * | 2013-08-26 | 2015-02-26 | Michael D. Roth | Personal medical monitoring apparatus and method of use thereof |
Family Cites Families (27)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20020069084A1 (en) * | 2000-01-03 | 2002-06-06 | Donovan John K. | Method and system for countering terrorism and monitoring visitors from abroad |
| WO2004114190A1 (fr) * | 2003-06-16 | 2004-12-29 | Uru Technology Incorporated | Procede et systeme pour l'etablissement et l'exploitation de dispositifs de gestion de justificatifs d'identite multifonctions a activation biometrique |
| US20090266882A1 (en) * | 2003-06-17 | 2009-10-29 | Sajkowsky James M | Smart passport system for monitoring and recording activity and data relating to persons |
| CA2604157A1 (fr) * | 2005-04-06 | 2006-10-12 | Omnilink Systems, Inc. | Systeme et procede de reperage et de surveillance des deplacements de personnes, de collecte et de transmission de donnees sur les deplacements de ces personnes et de communication avec des dernieres |
| US8009013B1 (en) * | 2007-09-21 | 2011-08-30 | Precision Control Systems of Chicago, Inc. | Access control system and method using user location information for controlling access to a restricted area |
| US8040246B2 (en) * | 2007-12-04 | 2011-10-18 | Avaya Inc. | Systems and methods for facilitating a first response mission at an incident scene |
| US20100238033A1 (en) * | 2009-03-20 | 2010-09-23 | Dan Blumel | Tracking and Alert Apparatus, System and Method |
| US8519845B2 (en) * | 2010-12-16 | 2013-08-27 | King Fahd University Of Petroleum And Minerals | System and method for tracking people |
| US8626568B2 (en) * | 2011-06-30 | 2014-01-07 | Xrs Corporation | Fleet vehicle management systems and methods |
| EP2795566A4 (fr) * | 2011-12-22 | 2015-08-12 | Intel Corp | Procédés et appareil de fourniture de services d'assistance pour des foules importantes |
| US9107034B2 (en) * | 2012-10-04 | 2015-08-11 | Honeywell International Inc. | Emergency broadcasting systems and methods |
| US10373170B2 (en) * | 2012-10-22 | 2019-08-06 | Long Range Systems, Llc | Utilizing user devices in venues |
| US9449121B2 (en) * | 2012-10-30 | 2016-09-20 | Apple Inc. | Venue based real time crowd modeling and forecasting |
| US9055350B2 (en) * | 2012-11-16 | 2015-06-09 | At&T Intellectual Property I, Lp | Method and apparatus for communicating emergency information |
| US9286511B2 (en) * | 2013-01-22 | 2016-03-15 | Amerasia International Technology, Inc. | Event registration and management system and method employing geo-tagging and biometrics |
| US9171434B2 (en) * | 2014-03-12 | 2015-10-27 | Google Inc. | Selectively redirecting notifications to a wearable computing device |
| US9563232B2 (en) * | 2014-06-19 | 2017-02-07 | Umm Al-Qura University | Wrist-mounted device to assist pilgrims |
| US10147256B2 (en) * | 2014-08-15 | 2018-12-04 | Collateral Opportunities, Llc | Electronic identification, location tracking, communication and notification system |
| GB2530563A (en) * | 2014-09-26 | 2016-03-30 | Uk Innovation Ct Ltd | Occupancy-control device and methods of use |
| WO2016092246A1 (fr) * | 2014-12-12 | 2016-06-16 | Tag Team (World) Malta Limited | Appareil d'information pour visiteurs |
| US9928713B2 (en) * | 2015-02-24 | 2018-03-27 | KiLife Tech, Inc. | Locks for wearable electronic bands |
| US10032353B2 (en) * | 2015-02-24 | 2018-07-24 | KiLife Tech, Inc. | Monitoring dependent individuals |
| US9483230B1 (en) * | 2015-04-09 | 2016-11-01 | Sonos, Inc. | Wearable device zone group control |
| US9699603B2 (en) * | 2015-10-14 | 2017-07-04 | Cisco Technology, Inc. | Utilizing mobile wireless devices to analyze movement of crowds |
| MA38529A1 (fr) * | 2015-10-21 | 2017-05-31 | Univ Int De Rabat Uir | Systeme et procede de securite et de suivi pour pelerins |
| US10278027B2 (en) * | 2016-05-03 | 2019-04-30 | Johnson Controls Technology Company | Targeted alert system with location-based and role-based alert distribution |
| EP3475214B1 (fr) * | 2016-06-24 | 2020-06-10 | Crown Equipment Corporation | Badge électronique d'authentification et de suivi d'un utilisateur de véhicule industriel |
-
2017
- 2017-12-31 FR FR1763427A patent/FR3076382A1/fr active Pending
-
2018
- 2018-12-27 US US16/233,698 patent/US10650624B2/en active Active
- 2018-12-28 WO PCT/FR2018/053561 patent/WO2019130004A1/fr not_active Ceased
- 2018-12-28 EP EP18845306.2A patent/EP3732640A1/fr not_active Withdrawn
Patent Citations (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20150054628A1 (en) * | 2013-08-26 | 2015-02-26 | Michael D. Roth | Personal medical monitoring apparatus and method of use thereof |
Also Published As
| Publication number | Publication date |
|---|---|
| US20190206159A1 (en) | 2019-07-04 |
| WO2019130004A1 (fr) | 2019-07-04 |
| FR3076382A1 (fr) | 2019-07-05 |
| US10650624B2 (en) | 2020-05-12 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US12131214B2 (en) | Digital identity system | |
| EP3732638B1 (fr) | Système et procédé de gestion de rassemblement de masse | |
| JP6976620B2 (ja) | ブロックチェーンに記録された制限された情報のカスタマイズされたビュー | |
| US10555112B2 (en) | Systems and methods for providing location-based security and/or privacy for restricting user access | |
| US10692085B2 (en) | Secure electronic payment | |
| US11882438B2 (en) | Network-enabled electronic cigarette | |
| US11011003B1 (en) | Systems and methods for managing infectious disease dissemination | |
| US20210202067A1 (en) | Dynamic and adaptive systems and methods for rewarding and/or disincentivizing behaviors | |
| US20200105113A1 (en) | Systems and methods for monitoring for and preempting pre-identified restriction violation-related behavior(s) of persons under restriction | |
| EP3579524B1 (fr) | Système d'identité numérique | |
| US20180176017A1 (en) | Digital Identity System | |
| EP3732640A1 (fr) | Systeme et procede de gestion de donnees personnelles dans un rassemblement de masse | |
| EA008879B1 (ru) | Система и способ обеспечения сетевой безопасности и электронной идентификации | |
| US12342240B2 (en) | Systems and methods for monitoring for and lowering the risk of addiction-related or restriction violation-related behavior(s) | |
| US20250148098A1 (en) | Method and system for providing multi-layer identification, verification, tracking and location information for people and objects | |
| US20210352075A1 (en) | Group identification using machine learning | |
| Dauvergne | Identified, tracked, and profiled: the politics of resisting facial recognition technology | |
| Parvathi et al. | Enterprise support hierarchical model with secure data protocol | |
| WO2023182952A1 (fr) | Modèle de gouvernance numérique | |
| NELLIS | Electronically monitoring offenders and penal innovation in a telematic society | |
| Oakley | The Limit Does Not Exist: How Smartphone Technology Expands Electronic Monitoring and a Proposed Limitation | |
| EP3190530A1 (fr) | Carte médicale duale de gestion administrative et de dossier médical et procédés associés | |
| Buoncompagni | Migration Intelligence. AI and bio-surveillance of migration flows | |
| Alahuhta et al. | Ambient Intelligence (SWAMI) | |
| Aimiuwu | Combating Private lockchain Fraud: A Virtual Reality & Artificial Intelligence Model |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: UNKNOWN |
|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: THE INTERNATIONAL PUBLICATION HAS BEEN MADE |
|
| PUAI | Public reference made under article 153(3) epc to a published international application that has entered the european phase |
Free format text: ORIGINAL CODE: 0009012 |
|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: REQUEST FOR EXAMINATION WAS MADE |
|
| 17P | Request for examination filed |
Effective date: 20200629 |
|
| AK | Designated contracting states |
Kind code of ref document: A1 Designated state(s): AL AT BE BG CH CY CZ DE DK EE ES FI FR GB GR HR HU IE IS IT LI LT LU LV MC MK MT NL NO PL PT RO RS SE SI SK SM TR |
|
| AX | Request for extension of the european patent |
Extension state: BA ME |
|
| DAV | Request for validation of the european patent (deleted) | ||
| DAX | Request for extension of the european patent (deleted) | ||
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: EXAMINATION IS IN PROGRESS |
|
| 17Q | First examination report despatched |
Effective date: 20210625 |
|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: THE APPLICATION IS DEEMED TO BE WITHDRAWN |
|
| 18D | Application deemed to be withdrawn |
Effective date: 20211106 |