WO2005010806A1 - 生体認証併用複合認証方法及びシステム - Google Patents

生体認証併用複合認証方法及びシステム Download PDF

Info

Publication number
WO2005010806A1
WO2005010806A1 PCT/JP2004/008682 JP2004008682W WO2005010806A1 WO 2005010806 A1 WO2005010806 A1 WO 2005010806A1 JP 2004008682 W JP2004008682 W JP 2004008682W WO 2005010806 A1 WO2005010806 A1 WO 2005010806A1
Authority
WO
WIPO (PCT)
Prior art keywords
authentication
card
unit
biometric
medium
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Ceased
Application number
PCT/JP2004/008682
Other languages
English (en)
French (fr)
Inventor
Seiichi Itoda
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Oki Electric Industry Co Ltd
Original Assignee
Oki Electric Industry Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Oki Electric Industry Co Ltd filed Critical Oki Electric Industry Co Ltd
Priority to US10/565,884 priority Critical patent/US20070067822A1/en
Publication of WO2005010806A1 publication Critical patent/WO2005010806A1/ja
Anticipated expiration legal-status Critical
Ceased legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • G06F21/34User authentication involving the use of external additional devices, e.g. dongles or smart cards
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • G06F21/32User authentication using biometric data, e.g. fingerprints, iris scans or voiceprints
    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07CTIME OR ATTENDANCE REGISTERS; REGISTERING OR INDICATING THE WORKING OF MACHINES; GENERATING RANDOM NUMBERS; VOTING OR LOTTERY APPARATUS; ARRANGEMENTS, SYSTEMS OR APPARATUS FOR CHECKING NOT PROVIDED FOR ELSEWHERE
    • G07C9/00Individual registration on entry or exit
    • G07C9/20Individual registration on entry or exit involving the use of a pass
    • G07C9/22Individual registration on entry or exit involving the use of a pass in combination with an identity check of the pass holder
    • G07C9/25Individual registration on entry or exit involving the use of a pass in combination with an identity check of the pass holder using biometric data, e.g. fingerprints, iris scans or voice recognition
    • G07C9/257Individual registration on entry or exit involving the use of a pass in combination with an identity check of the pass holder using biometric data, e.g. fingerprints, iris scans or voice recognition electronically

Definitions

  • the present invention relates to an authentication method and system in which personal authentication or personal authentication based on possession of an IC card / magnetic card or the like and biometrics authentication are combined.
  • Conventional methods for personal authentication include the following.
  • One is a personal authentication method based on property.
  • an individual owns an IG card or magnetic card, and the individual's ID and information are stored in advance on the card to perform individual authentication.
  • the other is a personal authentication method using biometrics. This is an authentication method using physical characteristics of an individual such as a fingerprint and an iris.
  • biometrics authentication has a low risk of misuse and has the advantage of being able to be authenticated reliably due to individual physical characteristics.
  • the authentication device is expensive and has the disadvantage of requiring a relatively long authentication time. Disclosure of the invention
  • the present invention composes a system that supplements the merits and demerits of each by combining “personal authentication by property” and “biometric personal authentication”.
  • One is a biometric combined authentication method in which biometric authentication is performed using the physical characteristics of the object to be authenticated, and if the result of the biometric authentication is positive, then the result of the positive biometric authentication is used.
  • a process of issuing an authentication medium capable of performing simple and quick authentication based on the premise of: authenticating an object to be authenticated using the authentication medium, and permitting use of the device according to a result of the authentication using the authentication medium. Characterized by comprising:
  • This method includes, for example, a biometric authentication unit that performs biometric authentication using physical characteristics of an authentication target, and a medium issuing unit that issues an authentication medium when the result of the biometric authentication is positive.
  • a first authentication device comprising: a first authentication device; a medium authentication unit for authenticating an object to be authenticated using the authentication medium; and a device control unit for permitting use of the device in accordance with a result of the authentication with the authentication medium. It is used in a combined biometric authentication system with two authentication devices.
  • the first authentication device writes all data necessary for subsequent authentication to the property of the device user, and the second authentication device writes data obtained from the property. It is characterized in that it is possible to judge whether or not to permit the use of the device solely based only on this.
  • the other method is characterized in that, in the method of configuration 1, the process of collecting the property as an authentication medium involves biometric authentication.
  • a biometric authentication unit that performs biometric authentication at the time of collection of the property is provided in a recognition device including a collection unit that collects the property as an authentication medium.
  • FIG. 1 is a block diagram showing a system configuration of Embodiment 1 of the present invention.
  • FIG. 2 is a block diagram showing a functional configuration of the management device in FIG.
  • FIG. 3 is a block diagram showing a functional configuration of the authentication device A in FIG.
  • FIG. 4 is a block diagram showing a functional configuration of the authentication device B of FIG.
  • FIG. 5 is a block diagram showing a functional configuration of the authentication device C in FIG.
  • FIG. 6 is a diagram showing an example of the authentication data.
  • FIG. 7 is a diagram showing an example of a registrant DB.
  • FIG. 8 is a diagram showing an example of card input data.
  • FIG. 9 is a diagram showing an example of device data.
  • FIG. 10 is a diagram showing an example of the biometric data.
  • FIG. 11 is a flowchart showing an authentication operation in the authentication device A.
  • FIG. 12 is a flowchart showing an authentication operation in the authentication device B.
  • FIG. 13 is a flowchart showing an authentication operation in the authentication device C.
  • FIG. 14 is a block diagram showing a system configuration of Embodiment 2 of the present invention.
  • FIG. 15 is a block diagram showing a functional configuration of the authentication device B in FIG.
  • FIG. 16 is a block diagram showing a functional configuration of the authentication device C in FIG.
  • FIG. 17 is a diagram showing an example of card input data in the second embodiment.
  • FIG. 18 is a flowchart showing an authentication operation in the authentication device B of the second embodiment.
  • FIG. 19 is a flowchart showing an authentication operation in the authentication device C of the second embodiment.
  • FIG. 20 is a block diagram showing a system configuration of Embodiment 3 of the present invention.
  • FIG. 21 is a block diagram showing a functional configuration of the authentication device C in FIG.
  • FIG. 22 is a flowchart showing an authentication operation in the authentication device C of the third embodiment.
  • Figure 23 is an explanatory diagram of the comparison between authentication by property and biometric authentication. BEST MODE FOR CARRYING OUT THE INVENTION
  • FIG. 1 is a system configuration diagram of Embodiment 1 of the present invention.
  • a management device 11 manages the entire system, and performs combined authentication of possession or pass-pass authentication and biometric authentication.
  • the management device 11 is connected to an authentication device A 12, an authentication device B 13, and an authentication device C 14 via a network.
  • the authentication device A 12 includes a geometric authentication device 12-1, a card issuing device 12-2, a control device 12-3, and a result display device 12-4.
  • control device 12-3 examples include an electric lock and a billing device.
  • the control device 12-3 is provided together with the card issuing device 12-2.
  • a configuration without the control device may be employed.
  • the result display device 12-4 is a device that notifies the user of the result using an LED or LGD.
  • the user performs biometrics authentication using the authentication device A12. And receive the card.
  • the door can be unlocked and money can be paid at the same time.
  • the authentication device B 13 includes a card reader 13-1, a control device 13-2, and a result display device 13-3.
  • control device 13-2 examples include an electric lock and a billing device.
  • the user can use the card in the authentication device B13 to unlock and pay for the door.
  • the authentication device C14 includes a card collection device 14-1, a control device 14-2, and a result display device 14-3.
  • the card collection device 14-1 may have a card reader function.
  • control device 14-2 examples include an electric lock and a billing device. Although the control device 14-2 is provided in the illustrated example, a configuration without the control device may be employed.
  • the user returns the card using the card collection device 14-1.
  • the door can be unlocked and money can be paid at the same time.
  • FIGS. 2 to 5 are functional block diagrams of each device in FIG.
  • FIG. 2 is a functional block diagram of the management device 11.
  • an authentication data receiving unit 101 receives authentication data from the authentication device A 12.
  • Fig. 6 shows an example of the authentication data.
  • the authentication data is a unique number that is linked to the ID of the registrant DB109, “IDJ, a device that identifies the authentication device A12”. ID ”and other information.
  • the registrant DB search unit 102 searches for data from the registrant DB 109 using the ID as a key.
  • Figure 7 shows an example of registrant DB109.
  • the registrant D B109 has a unique number of “IDJ,“ name ”,“ card issuance status ”that determines whether or not the card has been issued,“ card expiration date ”that indicates the expiration date for using the card, It consists of information such as “usage authority” indicating the device to which the authority is granted.
  • the card issuance determination unit 103 determines whether or not to issue a card from the "card issuance status" of the registrant DB109 searched by the ID of the authentication data, the "usage right J," etc.
  • issuance determination there is a method of determining that a card can be issued if the “card issuance state” has not been issued and the use authority of the authentication device A12 is “usable”.
  • the card issuance determination result transmitting unit 104 transmits the result of the card issuance determination and the card input data to the authentication device A12.
  • Fig. 8 shows an example of card input data.
  • the card input data is composed of information such as "ID" which is a unique number linked to the ID of the registrant DB109.
  • the registrant DB updating unit 105 updates the “card issuance status” and the “card expiration date” of the registrant DB109.
  • the device data receiving unit 106 receives device data from the authentication device B13 or the authentication device C14. Receive.
  • FIG 9 shows the equipment data.
  • the device data is composed of information such as “ID”, which is a unique number linked to the ID of the registrant DB109, and “device ID” uniquely assigned to each device to identify the device.
  • the device use determination unit 107 determines whether to permit the use of the device based on the “registration date” and “authorization right” of the registrant DB109 retrieved from the device data ID. I do.
  • An example of the device use determination is when the card is within the expiration date and the use right is available.
  • the device use determination result transmission unit 108 transmits the determination result of the device use determination unit 107 to the authentication device B13 or the authentication device C14.
  • FIG. 3 is a functional block diagram of the authentication device A12.
  • a biometrics authentication unit 121 acquires a user's biometrics data using the biometrics authentication device 12-1 in FIG. Then, the user is authenticated by matching this with the biometric data registered in advance in the biometrics DB128.
  • Fig. 7 shows an example of Pyometrics DB128.
  • the biometrics DB consists of a unique number “ID” linked to the ID of the registrant DB109, and information such as “biometrics data” that is data for authenticating individuals.
  • the biometric DB is provided in the authentication device A12, but is provided in the management device 11, and the biometric authentication is performed in the management device 11 via the network. May be implemented.
  • the result display unit 122 notifies the user of the result of the biometrics authentication, the card issuance determination result, and the like by using the result display device 12-4.
  • the authentication data transmission unit 123 transmits the authentication data to the management device 11.
  • the authentication data consists of “ID” obtained from Biometrics DB128 and the device ID of authentication device A12 (see Fig. 6).
  • the card issuance determination result receiving unit 124 receives the card issuance determination result transmitted from the management device 11.
  • the card issuing unit 125 writes the card input data and issues the card from the card issuing device 12-2.
  • the control unit 126 controls the control device 12-3.
  • the control device 12-3 is an electronic lock, open the electronic lock. In this case, the control device 12-3 is controlled. However, in a configuration in which the control device 12-3 is not provided, the control device is not controlled after the card is issued.
  • FIG. 4 is a functional block diagram of the authentication device B13.
  • a card data reading unit 131 reads the card input data using the card reader 13-1 in FIG.
  • the device data transmission unit 132 transmits the device data to the management device 11.
  • the device data consists of card input data and device ID (Fig. 9).
  • the device use determination result receiving unit 133 receives the device use determination result from the management device 11 in FIG. Receive.
  • the result display unit 134 displays the device use determination on the result display device 13-3 in FIG.
  • the control unit 135 controls the control device 13-2 in FIG. For example, if the control device 13-2 is an electronic lock, open the electronic lock.
  • FIG. 5 is a functional block diagram of the authentication device C14.
  • a card data reading section 141 reads card input data using a card collection device 14-1 having a card function.
  • the device data transmitting unit 142 transmits the device data to the management device 11.
  • the device use determination result receiving unit 143 receives the device use determination result from the management device 11.
  • the result display unit 144 displays the device use determination on the result display device 14-4.
  • the card collection unit 145 collects the cards using the card collection device 14-1.
  • the control unit 146 controls the control device 14-2.
  • the control device 14-2 is an electronic lock, open the electronic lock.
  • the control device is controlled by the data of the card, but the embodiment may be such that only the card collection is performed and the control device is not controlled.
  • controlling the control device there is a method of controlling the control device by triggering the card collection without controlling the control device by the card data.
  • FIG. 11 shows an authentication operation in the authentication device A12.
  • the biometric authentication unit 121 performs biometric authentication. If the authentication is successful, the process proceeds to S103. If the authentication cannot be performed, the process proceeds to S102.
  • the result display unit 122 notifies the user that the authentication has failed.
  • the authentication data transmitting unit 123 transmits the authentication data to the management device 11.
  • the authentication data receiving unit 101 receives authentication data.
  • the registrant DB search unit 102 searches for data on the registrant DB 109 based on the ID of the received authentication data.
  • the card issuance determination unit 103 determines whether or not to issue a recard based on the retrieved data.
  • the registrant DB updating unit 105 updates the data of the registrant DB109.
  • card issuance determination result transmitting section 104 transmits the result to authentication device A12. If the card can be issued, the result of the card issuable and the card input data are transmitted. If the card cannot be issued, a result indicating that the card cannot be issued is transmitted.
  • the card issuance determination result receiving unit 124 receives the card issuance determination result.
  • the result display unit 122 notifies the user of the card issue determination result.
  • the card issuing unit 125 issues the card in which the card input data has been written.
  • control unit 126 performs a predetermined operation. For example, if the authentication device A has an electric lock, the electric lock is unlocked.
  • FIG. 12 shows an authentication operation in the authentication device B13.
  • the card data reading unit 131 reads the card input data of the card issued by the authentication device A12.
  • the device data transmission unit 132 transmits the device data to the management device 11.
  • the operation of the management device starts.
  • device data receiving section 106 receives the device data.
  • registrant DB search section 102 searches for data on registrant DB 109 based on the ID of the received authentication data.
  • device use determination section 107 determines whether or not use of authentication device B 13 is permitted based on the retrieved data.
  • device use determination result transmitting section transmits the result to authentication device B13.
  • the operation of the authentication device B is restarted.
  • device use determination result receiving section 133 receives the result.
  • the result display unit 134 notifies the user of the device use determination result.
  • control unit 135 shifts the processing to S130. If not, the process ends.
  • control unit 135 performs a predetermined operation. For example, if the authentication device B13 has an electric lock, the electric lock is unlocked.
  • FIG. 13 shows an authentication operation in the authentication device C14.
  • the card data reading unit 141 reads the card input data of the card issued by the authentication device A12.
  • the device data transmission unit 142 transmits the device data to the management device 11.
  • the operation of the management device starts.
  • device data receiving section 106 receives the device data.
  • registrant DB search section 102 searches for data on registrant DB 109 based on the ID of the received authentication data.
  • the device use determination unit 107 determines whether to permit use of the authentication device C14 based on the retrieved data.
  • device use determination result transmitting section transmits the result to authentication device C14.
  • the operation of the authentication device C is restarted.
  • the device use determination result receiving unit 143 receives the result.
  • the result display unit 144 notifies the user of the device use determination result.
  • the card collection unit 145 shifts the processing to S151 if the device can be used. If not, move to S150.
  • the card collection unit 145 returns the card to the user. Thus, the process ends.
  • the card collection unit 145 collects the card.
  • control unit 135 performs a predetermined operation. For example, if the authentication device C14 has an electric lock, the electric lock is unlocked.
  • the system according to the first embodiment can provide both the convenience of biometric authentication and the authentication by property.
  • this system provides the security of rebiometric authentication and the convenience of not having to carry it at any time, and the convenience of being able to immediately authenticate by possession.
  • biometrics authentication is performed with the authentication device A12, and a card is acquired.
  • the card will be issued on the spot, so there is no need to carry the card.
  • the company uses this card and the authentication device B13. Use this card to pay at the cafeteria and manage entry and exit.
  • biometrics it may take a long time to perform matching, so it may be crowded in cafeterias, etc. You can authenticate immediately, so you won't be crowded. This card will be collected by the authentication device C14 when leaving the company. Therefore, the risk of theft is low because the card is not taken out of the company.
  • FIG. 14 is a system configuration diagram of the second embodiment. The difference from the first embodiment is that the management device 11 and the authentication device A 12 are connected by a network, but the authentication device B 13 and the authentication device C 14 are not connected to the management device 11. It is. Other configurations are the same as in the first embodiment.
  • FIG. 15 and FIG. 16 are functional block diagrams of each device.
  • the functional block diagrams of the management device and the authentication device A are the same as in the first embodiment.
  • FIG. 17 is an example of card input data in the second embodiment.
  • the card input data is a unique number “IDJ,“ Card expiration date ”indicating the expiration date when the card can be used, It consists of information such as “use authority” indicating the location.
  • FIG. 15 is a functional block diagram of the authentication device B 13.
  • a card data reading unit 231 reads card input data using a card reader 13-1.
  • the device use determining unit 232 determines whether to use the device based on “card expiration date”, “use authority”, and the like. As an example of the device use determination, there is a method of permitting use when the right to use the “device ID” assigned to each device is available within the card expiration date.
  • the result display unit 233 displays the result of the device use determination unit 232 on the result display device 13-3.
  • the control unit 234 controls the control device 13-2. For example, if the control device 13-3 is an electronic lock, unlock the electronic lock.
  • FIG. 16 is a functional block diagram of the authentication device C14.
  • a card data reading unit 241 reads card input data using a card collection device 14-3 having a card function.
  • the device use determining unit 242 determines whether to use the device based on “card expiration date”, “use authority”, and the like.
  • the result display unit 243 displays the device use determination on the result display device 14-4.
  • the card collection unit 244 collects the force using the card collection device 1 4-1.
  • the control unit 245 controls the control devices 14-3 when the device use determination is OK. For example, if the control device 14-4 is an electronic lock, open the electronic lock.
  • FIG. 18 shows an authentication operation in the authentication device B13.
  • the card data reading unit 231 reads the card input data of the card issued by the authentication device A12.
  • the device use determination unit 232 determines from the card input data whether to permit use of the authentication device B13.
  • the result display unit 233 notifies the user of the device use determination result.
  • the control unit 234 shifts the processing to S225. If not, the process ends.
  • control unit 234 performs a predetermined operation. For example, if the authentication device B13 has an electric lock, the electric lock is unlocked.
  • FIG. 19 shows an authentication operation in the authentication device C14.
  • the card data reading unit 241 reads the card input data of the card issued by the authentication device A12.
  • the device use determination unit 242 determines whether to permit the use of the authentication device C14 from the card input data.
  • the result display unit 243 notifies the user of the device use determination result.
  • the card collection unit 244 shifts the processing to S246 if the device can be used. Unusable If yes, the process proceeds to S245.
  • the card collection unit 244 returns the card to the user. This ends the process.
  • the card collection unit 244 collects the card.
  • control unit 245 performs a predetermined operation. For example, if the authentication device C14 has an electric lock, the electric lock is unlocked.
  • the second embodiment has the following effects, unlike the first embodiment. That is, in the first embodiment, the authentication device B 13 and the authentication device C 14 need to be connected to the network, but in the second embodiment, these devices are not connected to the network. Therefore, even in an environment where these devices cannot be connected to a network, the same effects as in the first embodiment can be obtained.
  • the place where the condominium is located is a place where the network environment is not maintained.
  • the user obtains the password using the authentication device A l l.
  • the authentication device A11 is installed in a place that can be connected to a network.
  • the lock of the condominium can be unlocked and the equipment can be used.
  • FIG. 20 is a system configuration diagram of the third embodiment. The difference from the first embodiment is that the authentication device C14 is provided with a biometrics authentication device. Management device 1 1 and authentication The device A12 and the authentication device B13 are the same as in the first embodiment.
  • the authentication device C 34 includes a metric authentication device 34-1, a card collection device 34-2, a control device 34-3, and a result display device 34-4.
  • the configuration of the first embodiment includes the authentication device C34, but the configuration of the second embodiment may include the authentication device C34.
  • FIG. 21 is a functional block diagram of each device.
  • the management device 11, the authentication device A12, and the authentication device B13 are the same as the function block diagram of the first embodiment.
  • FIG. 21 shows only the functional blocks of the authentication device C34.
  • the biometrics authentication unit 341 acquires the user's biometrics data using the biometrics authentication device 34-1 and compares the biometrics data registered in advance in the biometrics DB 349 with the biometrics data. Authenticate the user by matching.
  • the force data reading unit 342 reads the card input data using the card collection device 34-2 having a card reader function.
  • the card holder determining unit 343 determines whether or not the ID in the card matches the ID obtained by the biometric authentication.
  • the device data transmission unit 344 transmits the device data to the management device 11.
  • the device use determination result receiving unit 345 receives the device use determination result from the management device 11.
  • the result display unit 346 displays the device use determination on the result display device 34-4.
  • the card collection unit 347 collects the cards using the card collection device 34-2.
  • the control unit 348 controls the control device 34-3 when the device use determination is OK. For example, if the control device 34-3 is an electronic lock, open the electronic lock. Here, the control device is controlled by the card data. However, it is also possible to use a method of controlling the control device with the card collection as a trigger, or a mode in which only the card collection is performed and the control device is not controlled.
  • FIG. 22 shows an authentication operation in the authentication device C34.
  • the biometrics authentication unit 341 performs biometrics authentication. If the authentication is successful, the process proceeds to S343. If the authentication cannot be performed, the process proceeds to step S342.
  • the result display unit 346 notifies the user of the authentication result NG. Then, the process ends here.
  • the result display unit 346 notifies the user of the authentication result OK.
  • the card data reading unit 342 reads the force input data of the card issued by the authentication device A12.
  • the card holder determining unit 343 determines whether or not the ID obtained by the biometric authentication matches the ID of the force input data. If they match, the process proceeds to S347. If they do not match, the process proceeds to S346.
  • the result display unit 346 notifies the user that the IDs do not match.
  • the device data transmitting unit 344 transmits the device data to the management device 11.
  • the processing in the management device is started.
  • device data receiving section 106 receives the device data.
  • registrant DB search section 102 searches for data on registrant DB 109 based on the ID of the received authentication data.
  • device use determination section 107 determines whether or not use of authentication device C34 is permitted based on the retrieved data.
  • the device use determination result transmitting unit 108 transmits the result to the authentication device C34. As a result, the operation of the authentication device C is restarted.
  • the device use determination result receiving unit 345 receives the result.
  • the result display unit 346 notifies the user of the device use determination result.
  • the card collection unit 347 shifts the processing to S356 if the device can be used. If not, the process proceeds to S355.
  • the card collection unit 347 returns the card to the user. This ends the processing.
  • the card collection unit 347 collects the card.
  • control unit 348 performs a predetermined operation. For example, if the authentication device A has an electric lock, the electric lock is unlocked.
  • the third embodiment it is possible to prevent a third party from acquiring a card acquired by performing biometric authentication by a third party and using the card illegally.
  • a ski lift lift ticket There is a problem of resale of lift tickets at ski resorts Exists. The problem is that resale of a voucher purchased by a person to a third party can be used by more than one person with the same voucher.
  • the authentication device C34 it can be determined whether or not the lifted ticket belongs to the purchaser, so that unauthorized use such as a resale problem can be prevented. Specifically, at the time of purchase of the lift ticket, the security device A is required to deposit a deposit from the purchaser, and the authentication device C is required to return the deposit to the purchaser confirmed by biometrics authentication on condition that the lift ticket is returned.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Theoretical Computer Science (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Computer Hardware Design (AREA)
  • Software Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Human Computer Interaction (AREA)
  • Lock And Its Accessories (AREA)

Abstract

生体認証と通常の認証との双方の利点を引き出す。生体認証併用複合認証システムは、少なくとも、第1の認証装置A12と、第2の認証装置B13とを備え、これらを管理する管理装置11を備える。第1の認証装置A12は、認証対象である機器使用者の身体上の特徴を用いて生体認証するバイオメトリクス認証装置12-1と、当該生体認証の結果が肯定的であるときに、認証媒体であるカードを発行するカード発行装置12-2とを含む。第2の認証装置B13は、前記カードを用いて使用者を認証するために当該カードを読み取るカードリーダ13-1と、当該カードによる認証の結果に応じて機器の使用を許可する制御機器13-2とを含む。これらの装置を各方式の認証の特性に応じて使い分ける。なお、カードは、認証装置C14に設けられたカード回収装置14-1で回収するようにしても良い。

Description

明 細 書 生体認証併用複合認証方法及びシステム 技術分野
本発明は、 I Cカードゃ磁気カード等の所有物による個人認証やパスヮードによ る認証と、 バイオメ 卜リクス認証を複合した認証方法及びシステムに関するもの である。 背景技術
個人認証の方式として従来以下のものがある。
(1 ) 1つは、 所有物による個人認証方式である。 これは、 I G カードや磁気カー ドを個人が所有し、そのカードにあらかじめ個人の I Dや情報を格納しておくこと によリ個人認証する方式である。
(2) もう 1つは、 バイオメ トリクスを利用した個人認証方式である。 これは、 指 紋ゃ虹彩等の個人の身体的特徴を用いる認証方式である。
第 2 3図において、上述の各認証方式の特徴を比較して示す。図示のように「所 有物による個人認証」と「バイオメ トリクス個人認証」とは対称的な特徴を示す。 すなわち、 「所有物による個人認証」は低費用で認識でき、認証時間が高速であ るメ リッ トがある。 その反面、 悪用される危険性があるとともに、 所有物を携帯 していないときは認証できないなどのデメリッ トを有している。
一方、 「バイオメ トリクス認証」は悪用される危険性が低く、個人の身体特徴の ため確実に認証可能であるメリッ トをもつ。 その反面、 認証装置が高価となり、 認証時間に比較的長時間を要するデメリッ 卜を有する。 発明の開示
そこで、 本発明は以上の点を解決するため、 「所有物による個人認証」 と 「バイ オメ トリクス個人認証」 を複合することでそれぞれのメリッ ト、 デメリッ トを補 うシステムを構成する。
すなわち、 次の構成を採用する。
〈構成 1〉
1つは、 生体認証併用複合認証方法であり、 認証対象の身体上の特徴を用いて 生体認証し、 当該生体認証の結果が肯定的であるときに、 その後、 当該肯定的な 生体認証の結果を前提とした簡易かつ迅速な認証を行える認証媒体を発行する過 程と、 前記認証媒体を用いて認証対象を認証し、 当該認証媒体による認証の結果 に応じて機器の使用を許可する過程とから成ることを特徴とする。
これは、 1度、 安全確実な生体認証を行った後は、 簡易かつ迅速な認証を行う ようにしたものである。
この方法は、 例えば、 認証対象の身体上の特徴を用いて生体認証する生体認証 部と、 当該生体認証の結果が肯定的であるときに、 認証媒体を発行する媒体発行 部とから成る第 1の認証装置と、 前記認証媒体を用いて認証対象を認証する媒体 認証部と、 当該認証媒体による認証の結果に応じて機器の使用を許可する機器制 御部から成る第 2の認証装置を備えた生体認証併用複合認証システムにおいて使 用される。
〈構成 2〉
もう 1つは、 構成 1のシステムにおいて、 第 1の認証装置は機器使用者の所有 物にその後の認証に必要なすべてのデータを書き込み、 第 2の認証装置は前記所 有物から取得したデータのみをもとに単独で機器使用を許可するか否かを判定し 得ることを特徴とする。
これは、 第 1の認証装置と、 第 2の認証装置とを通信回線で接続できない状況 でも、 構成 1の方法を使用できるシステムである。
〈構成 3〉
さらにもう 1つは、 構成 1の方法において、 認証媒体である所有物を回収する 過程で生体認証を伴うことを特徴とする。
あるいは、 構成 1 または構成 2のシステムにおいて、 認証媒体である所有物を 回収する回収部を備えた認識装置内に、 当該所有物の回収時に生体認証する生体 認証部を備えたことを特徴とする。
これらは、 生体認証を活用して、 所有物が機器使用者にとって不要となった後 に、 その所有物を他の者に利用させることができないような保証を作ろうとする ものである。 図面の簡単な説明
第 1図は、 本発明の実施例 1のシス亍ム構成を示すブロック図である。
第 2図は、 第 1図の管理装置の機能構成を示すブロック図である。
第 3図は、 第 1図の認証装置 Aの機能構成を示すブロック図である。
第 4図は、 第 1図の認証装置 Bの機能構成を示すブロック図である。
第 5図は、 第 1図の認証装置 Cの機能構成を示すブロック図である。
第 6図は、 認証データの一例を示す図である。
第 7図は、 登録者 D Bの一例を示す図である。
第 8図は、 カード入力データの一例を示す図である。
第 9図は、 装置データの一例を示す図である。
第 1 0図は、 バイオメ トリクスデータの一例を示す図である。
第 1 1図は、 認証装置 Aでの認証動作を示すフローチャートである。
第 1 2図は、 認証装置 Bでの認証動作を示すフローチャートである。
第 1 3図は、 認証装置 Cでの認証動作を示すフローチャートである。
第 1 4図は、 本発明の実施例 2のシステム構成を示すブロック図である。
第 1 5図は、 第 1 4図の認証装置 Bの機能構成を示すブロック図である。
第 1 6図は、 第 1 4図の認証装置 Cの機能構成を示すブロック図である。
第 1 7図は、 実施例 2でのカード入力データの一例を示す図である。
第 1 8図は、実施例 2の認証装置 Bでの認証動作を示すフローチヤ一トである。 第 1 9図は、実施例 2の認証装置 Cでの認証動作を示すフローチヤ一トである。 第 2 0図は、 本発明の実施例 3のシステム構成を示すブロック図である。
第 2 1図は、 第 2 0図の認証装置 Cの機能構成を示すブロック図である。
第 2 2図は、実施例 3の認証装置 Cでの認証動作を示すフローチャートである。 第 2 3図は、 所有物による認証とバイオメ トリクス認証との比較内容の説明図 である。 発明を実施するための最良の形態
以下、 本発明の最良の実施の形態を実施例を用いて説明する。
実施例 1
第 1図は、 本発明の実施例 1のシステム構成図である。 第 1図において、 管理 装置 11 は本システム全体を管理し、所有物あるいはパスヮ一ドによる認証と、バ ィオメ トリクス認証を複合した認証を行う。 この管理装置 1 1 は、 認証装置 A 12、 認証装置 B 13、 認証装置 C 14とネッ トワークで接続されている。
認証装置 A 12は くィオメ トリクス認証装置 12-1 と、カード発行装置 12-2と、 制御機器 12- 3と、 結果表示装置 12-4を備えている。
制御機器 12- 3の例として、 電気錠や課金装置があげられる。 なお、 図示の例で は、 カード発行装置 12 - 2とともに、 制御機器 12 - 3を備えるようにしたが、 制御 機器を備えない構成でもよい。
結果表示装置 12-4は、 LEDや LGDを使い使用者に結果を通知する装置である。 使用者は認証装置 A 12を使い、 バイオメ トリクス認証を行う。 そして、 カード を受け取る。 この際、 図示のような構成のものでは、 同時に、 ドアの開錠や金銭 の支払いをすることができる。
認証装置 B 13は、 カードリ一ダ 13-1 と、 制御機器 13-2と、結果表示装置 13 - 3 を備えている。
制御機器 13-2の例として、 電気錠や課金装置があげられる。
使用者は認証装置 B 13 においてカードを使いドアの開錠や支払いをすること ができる。
認証装置 C 14は、カード回収装置 14 - 1 と、制御機器 14 - 2と、結果表示装置 14-3 を備えている。
カード回収装置 14-1 は、 カードリーダの機能を備えてもよい。
制御機器 14 - 2の例として、 電気錠や課金装置があげられる。 なお、 図示の例で は、 制御機器 14- 2を備えたが、 制御機器は備えない構成でもよい。
使用者はカード回収装置 14-1 にてカードを返却する。 この際、図示の構成のも のでは、 同時に、 ドアの開錠や金銭の支払いをすることができる。
第 2図から第 5図までは、 第 1図の各機器の機能ブロック図である。
第 2図は、 管理装置 1 1 の機能プロック図である。第 2図において、 認証データ 受信部 101 は、 認証装置 A 12からの認証データを受信する。
第 6図に認証データの一例を示す。 認証データは登録者 D B 109 の I Dとリン クしているユニークな番号である 「 I D J、 認証装置 A 1 2 を識別するための 「装 置 I D」 等の情報から構成される。
第 2図に戻り、 登録者 D B検索部 102は、 I Dをキーにして登録者 D B 109か らデータを検索する。
第 7図に登録者 D B109 の例を示す。 登録者 D B109 はユニークな番号である 「 I DJ、 「名前」、 カードを発行済みか否かを判定する 「カード発行状態」、 カー ドを使用可能な有効期限を示す「カード有効期限」、使用権限のある装置を示す「使 用権限」 等の情報により構成される。
第 2図に戻り、 カード発行判定部 103は、 認証データの I Dで検索された登録 者 D B109 の 「カード発行状態」、 「使用権限 J 等からカード発行するか否かを判 定する。 カード発行判定の一例としては 「カード発行状態」 が未発行であり、 認 証装置 A12の使用権限が 「使用可」 である場合カードを発行可と判定する手法が あげられる。
カード発行判定結果送信部 104は、 カード発行判定の結果およびカード入力デ ータを認証装置 A 12に送信する。
第 8図にカード入力データの一例を示す。 カード入力データは登録者 D B109 の I Dとリンクしているユニークな番号である 「 I D」 等の情報によリ構成され る。
第 2図に戻り、 登録者 D B更新部 105は、 登録者 D B109の 「カードの発行状 況」 と 「カード有効期限」 等を更新する。
装置データ受信部 106は、認証装置 B13または認証装置 C14から装置データを 受信する。
第 9図に装置データを示す。 装置データは登録者 D B 109 の I Dとリンクして いるユニークな番号である Γ I D」、装置を識別するために装置毎に固有に与えら れた 「装置 I D」 等の情報により構成される。
第 2図に戻り、 装置使用判定部 107は、 装置データの I Dから検索された登録 者 D B109 の 「カード有効期限」 および 「使用権限」 等より、 装置の使用を許可 するか否かを判定する。装置使用判定の一例としてはカードの有効期限内であり、 使用権限が使用可になっている場合があげられる。
装置使用判定結果送信部 108は、 装置使用判定部 107での判定結果を認証装置 B13または認証装置 C 14に送信する。
第 3図は、 認証装置 A12の機能ブロック図である。 第 3図において、 バイオメ トリクス認証部 121 は、第 1図のバイオメ トリクス認証装置 12-1 を用いて使用者 のバイオメ 卜リクスデータを取得する。 そして、 これを、 あらかじめバイオメ ト リクス D B128 に登録されているバイオメ トリクスデータとマッチングすること によリ使用者を認証する。
第 7図にパイオメ トリクス D B128 の一例を示す。 バイオメ トリクス D Bは登 録者 D B109 の I Dとリンクしているユニークな番号の 「 I D」 と個人を認証す るためのデータである「バイオメ トリクスデータ」等の情報から構成されている。 第 3図に示す例では、 バイオメ トリクス DBを認証装置 A 12に設けたが、 管理装 置 11 に設けてネッ トワークを介して管理装置 11 においてバイオメ トリクス認証 を実施してもよい。
結果表示部 122は、 バイオメ トリクス認証の結果やカード発行判定結果等を結 果表示装置 12-4により使用者に通知する。
認証データ送信部 123は、認証データを管理装置 11へ送信する。認証データは バイオメ トリクス D B128から取得した 「 I D」 と認証装置 A12の装置 I D等か らなる (第 6図参照)。
カード発行判定結果受信部 124は、管理装置 11から送信されたカード発行判定 結果を受信する。
カード発行部 125は、カード入力データを書込み、カードをカード発行装置 12-2 から発行する。
制御部 126は、 制御機器 12-3を制御する。 たとえば制御機器 12-3が電子錠の 場合は電子錠を開錠する。なお、ここでは制御機器 12 - 3を制御するものとしたが、 制御機器 12-3が備えられていない構成ではカードの発行を実施後、制御機器の制 御はしない。
第 4図は、 認証装置 B13の機能ブロック図である。 第 4図において、 カードデ ータ読取り部 131 は、第 1図のカードリーダ 13-1 を用いてカード入力データを読 込む。
装置データ送信部 132は、装置データを管理装置 11へ送信する。装置データは カード入力データおよび装置 I Dからなる (第 9図)。
装置使用判定結果受信部 133は、第 1図の管理装置 11 から装置使用判定結果を 受信する。
結果表示部 134は、 装置使用判定を第 1図の結果表示装置 13-3に表示する。 制御部 1 35は、装置使用判定が O Kの場合、第 1図の制御機器 13- 2を制御する。 たとえば、 制御機器 13-2が電子錠の場合は電子錠を開錠する。
第 5図は、 認証装置 C 14の機能ブロック図である。 第 5図において、 カードデ ータ読取り部 141 は、カード機能を持ったカード回収装置 14-1 を用いてカード入 力データを読込む。
装置データ送信部 142は、 装置データを管理装置 1 1へ送信する。
装置使用判定結果受信部 143は、管理装置 1 1から装置使用判定結果を受信する。 結果表示部 144は、 装置使用判定を結果表示装置 14-4に表示する。
カード回収部 145は、 カード回収装置 14-1 を用いてカードを回収する。
制御部 146は、装置使用判定が O Kの場合、 制御機器 14- 2を制御する。 たとえ ば、 制御機器 14 - 2が電子錠の場合は電子錠を開錠する。 なお、 ここではカードの データによリ制御機器を制御しているが、 カード回収のみを実施し制御機器の制 御は実施しない形態でもよい。 また、 制御機器を制御するに際しては、 カードの データによリ制御機器を制御せずに、 カード回収をトリガにして制御機器を制御 する手法もある。
〈実施例 1の動作〉
第 1 1、 1 2、 1 3図における実施例 1の動作のフローチャートに沿って、 本 実施例の動作を説明する。 第 1 1図は、 認証装置 A12での認証動作を示す。
まず、 S101 で、 バイオメ トリクス認証部 121 はバイオメ トリクス認証を実施 する。 そして、 認証ができた場合は S 103 の処理へ移る。 認証ができない場合は S102の処理へ移る。
S102で、 結果表示部 122は使用者に認証ができなかったことを通知する。
S103で、 認証データ送信部 123は認証データを管理装置 11 に送信する。
ここで、 管理装置の動作が始まる。
まず、 S104で、 認証データ受信部 101 は認証データを受信する。
そして、 S105で、 登録者 D B検索部 102は受信した認証データの I Dをもと に登録者 D B 109上のデータを検索する。
S106で、 カード発行判定部 103は検索したデータよリカード発行するか否か を判定する。
また、 S107で、 登録者 D B更新部 105は登録者 D B109のデータを更新する。 S108で、 カード発行判定結果送信部 104は認証装置 A12へ結果を送信する。 カード発行可の場合はカード発行可の結果とカード入力データを送信する。また、 カード発行不可の場合は力一ド発行不可の結果を送信する。
ここで、 認識装置 Aの動作が再開される。
S109で、 カード発行判定結果受信部 124はカード発行判定結果を受信する。
S110で、 結果表示部 122はカード発行判定結果を使用者に通知する。
S111 で、 カード発行部 125は力一ド発行可の場合、 S112の処理へ移る。 カー ド発行不可の場合は終了する。
S112で、カード発行部 125はカード入力データを書込んだカードを発行する。 S113で、 制御部 126は所定の動作を実施する。 たとえば認証装置 Aに電気錠 が設けられているならば電気錠の開錠を実施する。
第 1 2図は、 認証装置 B13での認証動作を示す。
まず、 S121 で、 カードデータ読取り部 131 は認証装置 A12で発行されたカー ドのカード入力データを読取る。
S122で、 装置データ送信部 132は装置データを管理装置 11へ送信する。 ここで、 管理装置の動作が始まる。
S123で、 装置データ受信部 106は装置データを受信する。
S124で、 登録者 D B検索部 102は受信した認証データの I Dをもとに登録者 D B109上のデータを検索する。
S125で、 装置使用判定部 107は検索したデータから認証装置 B 13の使用許可 するか否かを判定する。
S126で、 装置使用判定結果送信部 108は認証装置 B13へ結果を送信する。 ここで、 認証装置 Bの動作が再開される。
S127で、 装置使用判定結果受信部 133は結果を受信する。
S128で、 結果表示部 134は装置使用判定結果を使用者に通知する。
S129で、制御部 135は装置使用可の場合は処理を S 130へ移す。使用不可の場 合は処理を終了する。 S130で、 制御部 135は所定の動作を実施する。 たとえば、 認証装置 B13に電 気錠が設けられているならば電気錠の開錠を実施する。
第 1 3図は、 認証装置 C14での認証動作を示す。
まず、 S141 で、 カードデータ読取り部 141 は認証装置 A12で発行されたカー ドのカード入力データを読取る。
S142で、 装置データ送信部 142は装置データを管理装置 11へ送信する。 ここで、 管理装置の動作が始まる。
S 143で、 装置データ受信部 106は装置データを受信する。
S144で、 登録者 D B検索部 102は受信した認証データの I Dをもとに登録者 D B109上のデータを検索する。
S145で、 装置使用判定部 107は検索したデータから認証装置 C 14の使用許可 するか否かを判定する。
S146で、 装置使用判定結果送信部 108は認証装置 C14へ結果を送信する。 ここで、 認証装置 Cの動作が再開される。
S147で、 装置使用判定結果受信部 143は結果を受信する。
S148で、 結果表示部 144は装置使用判定結果を使用者に通知する。
S 149で、 カード回収部 145は装置使用可の場合は処理を S 151へ移す。使用不 可の場合は S 150へ処理を移す。
S150で、 カード回収部 145はカードを使用者に返却する。 これにより、 処理 終了する。 S 151 で、 カード回収部 145はカードを回収する。
S 1 52で、 制御部 1 35は所定の動作を実施する。 たとえば、 認証装置 C 14に電 気錠が設けられているならば電気錠の開錠を実施する。
なお、 上述した実施例においては、 カード等の所有物による認証とバイオメ 卜 リクス認証を複合させるものについて説明したが、 本発明はこれに限らず、 暗証 すなわちパスヮードによる認証とバイオメ 卜リクス認証を複合させたものによつ ても同様に実現できるものである。 この点、 後述する実施例についても同様であ る。
〈実施例 1の効果〉
以上詳述したように、 実施例 1のシステムによりバイオメ トリクス認証と所有 物による認証の両方の利便性を得ることが可能となる。 すなわち、 本システムに よリバイオメ トリクス認証による安全性および随時携帯しなくてよいという利便 性を得るとともに、 所有物による認証による即座に認証可能であるという利便性 を得ることが可能となる。
例えば、 会社等の施設での運用を考える。 会社の門では認証装置 A 1 2でバイオ メ トリクス認証を実施し、 カードを取得する。 ここでは、 バイオメ トリクス認証 を実施するため高い安全性を確保できる。 この際、 カードはこの場で発行される ため、 カードを携帯する必要はない。 会社内ではこのカードと認証装置 B 1 3を使 う。 このカードで食堂での支払いや、 入退室管理を実施する。 バイオメ トリクス では照合に時間がかかるケースがあるため食堂等で混雑する可能性があるが、 力 一ドは即座に認証可能なため混雑することはない。 このカードは最後会社から退 社する際に認証装置 C 14で回収する。従って会社の外にカードがもちだされるこ とはないため盗難等の危険性は低い。
また、 本システムをマンションの管理システムに応用した場合には、 マンショ ンの入口で本システムに登録された住民は認証装置 A 1 2 によりバイオメ トリク ス認証を受け、 カードあるいはキーを取得する。 ここで、 バイオメ トリクス認証 の実施により高度のセキュリティを確保できる。 この際、 カードやキーはこの場 で発行されるため、 それらを携帯して外出する必要はない。 自宅に入るときはこ のカードあるいはキーと認証装置 B 13を使う。 このカードゃキーは外出する際に マンションの出口に設けられた認証装置 C 14で回収する。従ってマンションの外 にこれらがもちだされることはないため盗難等の危険性は低くなる。
実施例 2
第 1 4図は、 実施例 2のシステム構成図である。 実施例 1 と異なる点は管理装 置 1 1 と認証装置 A 1 2はネッ 卜ワークで接続されているが、 認証装置 B 1 3と認証 装置 C 14は管理装置 1 1 に接続されていない点である。 その他の構成は実施例 1 と同様である。
第 1 5図および第 1 6図は、 各機器の機能ブロック図である。 管理装置と認証 装置 Aの機能ブロック図は、 実施例 1 と同様である。 第 1 7図は、 実施例 2での カード入力データの一例である。 カード入力データはユニークな番号である 「 I D J、 カードを使用可能な有効期限を示す 「カード有効期限」、 使用権限のある装 置を示す 「使用権限」 等の情報により構成される。
第 1 5図は、 認証装置 B 1 3の機能ブロック図である。 第 1 5図において、 カー ドデータ読取り部 231は、カードリーダ 1 3 - 1を用いてカード入力データを読込む。 装置使用判定部 232は、 「カード有効期限」、 「使用権限」等より装置の使用を許可 するか否かを判定する。 装置使用判定の一例としてはカード有効期限内であり、 装置毎に割り当てられている 「装置 I D」 の使用権限が使用可の場合、 使用を許 可する手法があげられる。
結果表示部 233は、装置使用判定部 232における結果を結果表示装置 1 3-3に表 示する。 制御部 234は、 装置使用判定が O Kの場合、 制御機器 1 3-2を制御する。 たとえば、 制御機器 1 3-3が電子錠の場合は電子錠を開錠する。
第 1 6図は、 認証装置 C 14の機能ブロック図である。 第 1 6図において、 カー ドデータ読取り部 241 は、カード機能を持ったカード回収装置 14-3を用いてカー ド入力データを読込む。 装置使用判定部 242は、 「カード有効期限」、 「使用権限」 等より装置の使用を許可するか否かを判定する。
結果表示部 243は、装置使用判定を結果表示装置 1 4-4に表示する。 カード回収 部 244は、 カード回収装置 1 4-1 を用いて力一ドを回収する。 制御部 245は、 装置 使用判定が O Kの場合、 制御機器 1 4- 3を制御する。 たとえば、 制御機器 1 4-3が 電子錠の場合は電子錠を開錠する。
〈実施例 2の動作〉
第 1 8図および第 1 9図の実施例 2の動作のフローチヤ一卜に沿って、 本実施 例の動作を説明する。
実施例 1 における第 1 1 図の S 101〜S 113 までの動作は実施例 2も同じよう に行われるものである。 ただし、 カード入力データが第 1 7図の内容になる。 第 1 8図は、 認証装置 B 13での認証動作である。
まず、 S221 で、 カードデータ読取り部 231 は認証装置 A12で発行されたカー ドのカード入力データを読取る。
S 222で、 装置使用判定部 232はカード入力データから認証装置 B13の使用許 可するか否かを判定する。
そして、 S 223で、 結果表示部 233は装置使用判定結果を使用者に通知する。 S224で、制御部 234は装置使用可の場合は処理を S 225へ移す。使用不可の場 合は処理を終了する。
S225で、 制御部 234は所定の動作を実施する。 たとえば、 認証装置 B13に電 気錠が設けられているならば電気錠の開錠を実施する。
第 1 9図は、 認証装置 C14での認証動作を示す。
まず、 S241 で、 カードデータ読取り部 241 は認証装置 A12で発行されたカー ドのカード入力データを読取る。
S242で、 装置使用判定部 242はカード入力データから認証装置 C14を使用許 可するか否かを判定する。
そして、 S243で、 結果表示部 243は装置使用判定結果を使用者に通知する。 S244で、カード回収部 244は装置使用可の場合は処理を S 246へ移す。使用不 可の場合は S 245へ処理を移す。
S 245で、 カード回収部 244はカードを使用者に返却する。 これで、 処理を終 了する。
S 246で、 カード回収部 244はカードを回収する。
S 247で、 制御部 245は所定の動作を実施する。 たとえば、 認証装置 C 14に電 気錠が設けられているならば電気錠の開錠を実施する。
〈実施例 2の効果〉
以上詳述したように、 実施例 2によれば、 実施例 1 と異なり、 以下の効果があ る。すなわち、実施例 1では認証装置 B 1 3と認証装置 C 14がネッ トワークに接続 されている必要があつたが、 実施例 2では、 これらの装置はネッ トワークとは接 続されていない。 このため、 これらの装置をネッ トワークにつなげることができ ないような環境でも、 実施例 1 と同様の効果を得られる。
例えばコンドミニアムの運用を考える。 コンドミニアムがある場所はネッ トヮ ーク環境が整備されていないような場所とする。使用者は認証装置 A l l を使い力 一ドを取得する。認証装置 A 1 1 はネッ 卜ワーク接続可能な場所に設置されている。 このカードを認証装置 B 13 が設置されているコンドミニアムで使用することで コンドミニアムの錠を開錠でき、 設備の使用が可能となる。
実施例 3
第 2 0図は実施例 3のシステム構成図である。 実施例 1 と異なる点は認証装置 C 14にバイオメ トリクス認証装置が備えられたことである。 管理装置 1 1 と認証 装置 A12と認証装置 B13は実施例 1 と同様である。
認証装置 C 34は ィオメ トリクス認証装置 34 - 1 と、カード回収装置 34-2と、 制御機器 34-3と、 結果表示装置 34 - 4を備えている。 ここでは、 実施例 1の構成 に認証装置 C34を備えたが、 実施例 2の構成に認証装置 C34を備えてもよい。 第 2 1図は各機器の機能プロック図である。 管理装置 11 と認証装置 A12 と認 証装置 B13は実施例 1の機能プロック図と同様である。
そこで、 第 2 1図では認証装置 C34の機能ブロックのみを示す。 第 2 1図にお いて、バイオメ トリクス認証部 341 は、バイオメ 卜リクス認証装置 34- 1 を用いて 使用者のバイオメ トリクスデータを取得し、あらかじめバイオメ トリクス D B349 に登録されているパイオメ トリクスデータとマッチングすることにより使用者を 認証する。
力一ドデータ読取り部 342は、 カードリーダ機能を持ったカード回収装置 34 - 2 を用いてカード入力データを読込む。 カード所有者判定部 343は、 カード内の ID とバイオメ トリクス認証で取得できた IDがー致するか否かを判定する。装置デー タ送信部 344は、装置データを管理装置 11へ送信する。装置使用判定結果受信部 345は、 管理装置 11から装置使用判定結果を受信する。
結果表示部 346は、装置使用判定を結果表示装置 34-4に表示する。カード回収 部 347は、 カード回収装置 34-2を用いてカードを回収する。制御部 348は、 装置 使用判定が O Kの場合、 制御機器 34-3を制御する。 たとえば、 制御機器 34- 3が 電子錠の場合は電子錠を開錠する。 ここではカードのデータにより制御機器を制 御しているが、 カード回収をトリガにして'制御機器を制御する手法や、 カード回 収のみを実施し、 制御機器の制御は実施しない形態でもよい。
〈実施例 3の動作〉
実施例 1 における第 1 1図の S 101〜S 113、第 1 2図の S 121〜S 130までの動 作は実施例 3でも同じである。
第 2 2図は認証装置 C34での認証動作を示す。
まず、 S341 で、 バイオメ トリクス認証部 341 はバイオメ トリクス認証を実施 する。認証ができた場合は S343の処理へ移る。認証ができない場合は S342の処 理へ移る。
S342で、 結果表示部 346 は認証結果 N Gを使用者に通知する。 そして、 ここ で処理を終了する。
一方、 S343で、 結果表示部 346は認証結果 O Kを使用者に通知する。
S344で、 カードデータ読取り部 342は認証装置 A 12で発行されたカードの力 一ド入力データを読取る。
S345で、 カード所有者判定部 343はバイオメ トリクス認証で得られた IDと力 一ド入力データの IDがー致するか否かを判定する。そして、一致する場合は S347 の処理へ移行する。 一致しない場合は S346の処理へ移行する。
S346で、 結果表示部 346は IDが一致しないことを使用者に通知する。
S347で、 装置データ送信部 344は装置データを管理装置 11へ送信する。 これ により、 管理装置での処理が始められる。 S 348で、 装置データ受信部 106は装置データを受信する。
S349で、 登録者 D B検索部 102は受信した認証データの I Dをもとに登録者 D B109上のデータを検索する。
S350で、 装置使用判定部 107は検索したデータから認証装置 C34の使用許可 するか否かを判定する。
S351 で、 装置使用判定結果送信部 108は認証装置 C34へ結果を送信する。 こ れにより、 認証装置 Cの動作が再開される。
S 352で、 装置使用判定結果受信部 345は結果を受信する。
S353で、 結果表示部 346は装置使用判定結果を使用者に通知する。
S 354で、カード回収部 347は装置使用可の場合は処理を S 356へ移す。使用不 可の場合は S 355へ処理を移す。
S 355で、 カード回収部 347はカードを使用者に返却する。 これで処理を終了 する。
S356では、 カード回収部 347はカードを回収する。
S357で、 制御部 348は所定の動作を実施する。 たとえば、 認証装置 Aに電気 錠が設けられているならば電気錠の開錠を実施する。
〈実施例 3の効果〉
実施例 3によりある人がバイオメ トリクス認証を実施して取得したカードを第 三者が取得して不正利用することを防止することができる。
例としてスキー場のリフ ト券を考える。 スキー場ではリフ ト券の転売問題が存 在する。 ある人が購入したリフ ト券を第三者に転売することで同じリフ ト券で 2 名以上が使用する問題である。認証装置 C 34を使用することでそのリフ 卜券が購 入者のものか否かを判定できるため転売問題のような不正利用を防止できる。 具体的には、リフ 卜券の購入時に認証装置 Aでその購入者から保証金を預かり、 認証装置 Cでリフ 卜券の返還を条件としてバイオメ トリクス認証で確認したその 購入者にその保証金を返すようにする。

Claims

請求の範囲
1 . 認証対象の身体上の特徴を用いて生体認証し、 当該生体認証の結果が肯 定的であるときに、 その後、 当該肯定的な生体認証の結果を前提とした簡易かつ 迅速な認証を行える認証媒体を発行する過程と、
前記認証媒体を用いて認証対象を認証し、 当該認証媒体による認証の結果に応 じて機器の使用を許可する過程とから成ることを特徴とする生体認証併用複合認 証方法。
2 . 前記認証媒体は、 認証対象である機器使用者の所有物であることを特徴 とする請求の範囲第 1項記載の生体認証併用複合認証方法。
3 . 前記認証媒体は、 パスワードであることを特徴とする請求の範囲第 1項 記載の生体認証併用複合認証方法。
4 . 前記認証媒体である所有物を回収する過程を伴うことを特徴とする請求 の範囲第 2項記載の生体認証併用複合認証方法。
5 . 認証対象の身体上の特徴を用いて生体認証する生体認証部と、 当該生体 認証の結果が肯定的であるときに、 認証媒体を発行する媒体発行部とから成る第 1の認証装置と、
前記認証媒体を用いて認証対象を認証する媒体認証部と、 当該認証媒体による 認証の結果に応じて機器の使用を許可する機器制御部から成る第 2の認証装置を 備えたことを特徴とする生体認証併用複合認証システム。
6 . 前記認証媒体は、 認証対象である機器使用者の所有物であることを特徴 とする請求の範囲第 5項記載の生体認証併用複合認証システム。
7 . 前記認証媒体は、 パスワードであることを特徴とする請求の範囲第 5項 記載の生体認証併用複合認証システム。
8 . 前記認証媒体である所有物を回収する回収部を備えたことを特徴とする 請求の範囲第 6項記載の生体認証併用複合認証システム。
9 . 前記第 1の認証装置は機器使用者の所有物にその後の認証に必要なすべ てのデータを書き込み、
前記第 2の認証装置は前記所有物から取得したデータのみをもとに単独で機器 使用を許可するか否かを判定し得ることを特徴とする請求の範囲第 6項記載の生 体認証併用複合認証システム。
1 0 . 前記認証媒体である所有物を回収する過程において生体認証を伴うこ とを特徴とする請求の範囲第 4項記載の生体認証併用複合認証方法。
1 1 . 前記認証媒体である所有物を回収する回収部を備えた認識装置内に、 当該所有物の回収時に生体認証する生体認証部を備えたことを特徴とする請求の 範囲第 8項記載の生体認証併用複合認証システム。
PCT/JP2004/008682 2003-07-25 2004-06-15 生体認証併用複合認証方法及びシステム Ceased WO2005010806A1 (ja)

Priority Applications (1)

Application Number Priority Date Filing Date Title
US10/565,884 US20070067822A1 (en) 2003-07-25 2004-06-15 Multi-authenticating method and system also for use in organism authenication

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
JP2003279637A JP2005044252A (ja) 2003-07-25 2003-07-25 生体認証併用複合認証方法及びシステム
JP2003-279637 2003-07-25

Publications (1)

Publication Number Publication Date
WO2005010806A1 true WO2005010806A1 (ja) 2005-02-03

Family

ID=34100824

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/JP2004/008682 Ceased WO2005010806A1 (ja) 2003-07-25 2004-06-15 生体認証併用複合認証方法及びシステム

Country Status (3)

Country Link
US (1) US20070067822A1 (ja)
JP (1) JP2005044252A (ja)
WO (1) WO2005010806A1 (ja)

Families Citing this family (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP4685532B2 (ja) * 2005-07-14 2011-05-18 日立オムロンターミナルソリューションズ株式会社 生体認証システム
JP4881604B2 (ja) * 2005-10-28 2012-02-22 東芝テック株式会社 商品登録処理システム
JP2008282060A (ja) * 2007-05-08 2008-11-20 Dainippon Printing Co Ltd 情報記憶媒体管理システム

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JPH0944617A (ja) * 1995-07-31 1997-02-14 Toshiba Corp 画像形成装置
JPH10246041A (ja) * 1997-03-05 1998-09-14 Glory Ltd 無人受付システム
JP2003044892A (ja) * 2001-07-27 2003-02-14 Matsushita Electric Ind Co Ltd 来訪者管理装置

Family Cites Families (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6970846B1 (en) * 1996-11-27 2005-11-29 Diebold, Incorporated Automated banking machine configuration method
EP0956818B1 (en) * 1998-05-11 2004-11-24 Citicorp Development Center, Inc. System and method of biometric smart card user authentication
US6957337B1 (en) * 1999-08-11 2005-10-18 International Business Machines Corporation Method and apparatus for secure authorization and identification using biometrics without privacy invasion
US6728881B1 (en) * 1999-10-01 2004-04-27 The United States Of America As Represented By The Secretary Of The Army Fingerprint and signature identification and authorization card and pen
JP3808302B2 (ja) * 2000-10-18 2006-08-09 富士通株式会社 利用者確認システム及び方法
US7114080B2 (en) * 2000-12-14 2006-09-26 Matsushita Electric Industrial Co., Ltd. Architecture for secure remote access and transmission using a generalized password scheme with biometric features
US7137553B2 (en) * 2001-12-31 2006-11-21 Digital Data Research Company Security clearance card, system and method of reading a security clearance card

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JPH0944617A (ja) * 1995-07-31 1997-02-14 Toshiba Corp 画像形成装置
JPH10246041A (ja) * 1997-03-05 1998-09-14 Glory Ltd 無人受付システム
JP2003044892A (ja) * 2001-07-27 2003-02-14 Matsushita Electric Ind Co Ltd 来訪者管理装置

Also Published As

Publication number Publication date
US20070067822A1 (en) 2007-03-22
JP2005044252A (ja) 2005-02-17

Similar Documents

Publication Publication Date Title
JP5424905B2 (ja) 旅行特権割当ておよび検証用個人認証ソフトウェアおよびシステム
US7185198B2 (en) Apparatus and method for authentication and method for registering a person
JP4996175B2 (ja) 入室管理システムおよび入室管理方法
US8340286B2 (en) Interleaving and deinterleaving method for preventing periodic position interference
US20040021552A1 (en) Method, device, and system for door lock
JP2003343133A (ja) デジタル鍵システムと装置
JP2007515576A (ja) ユニバーサルキーセキュリティ方法およびシステム
CN101243455A (zh) 认证系统
US20220292411A1 (en) Method and system for providing equipment rental service using biometric id card
JP5495603B2 (ja) 認証装置
JP3835132B2 (ja) セキュリティシステム
US20030014642A1 (en) Security arrangement
JP5117865B2 (ja) 生体認証システム、生体認証方法、および生体認証プログラム
WO2005010806A1 (ja) 生体認証併用複合認証方法及びシステム
US20060088192A1 (en) Identification system
JP4309150B2 (ja) 電子錠式ロッカーシステム
JP2004206516A (ja) 部屋管理システム及び装置
JP4008626B2 (ja) 入退室・機器使用統合管理システム
JP2020133367A (ja) 利用制御システムおよび利用制御方法
JP2001342760A (ja) 指紋を用いた電子保安システム
JP2003248900A (ja) 物品管理システム
JP2008282060A (ja) 情報記憶媒体管理システム
JP2000322529A (ja) 正規使用者認証装置及び正規使用者認証システム
JP4701082B2 (ja) セキュリティ強化自動施錠装置
JP2003184374A (ja) 運転者チェックシステム、およびその方法

Legal Events

Date Code Title Description
AK Designated states

Kind code of ref document: A1

Designated state(s): AE AG AL AM AT AU AZ BA BB BG BR BW BY BZ CA CH CN CO CR CU CZ DE DK DM DZ EC EE EG ES FI GB GD GE GH GM HR HU ID IL IN IS KE KG KP KR KZ LC LK LR LS LT LU LV MA MD MG MK MN MW MX MZ NA NI NO NZ OM PG PH PL PT RO RU SC SD SE SG SK SL SY TJ TM TN TR TT TZ UA UG US UZ VC VN YU ZA ZM ZW

AL Designated countries for regional patents

Kind code of ref document: A1

Designated state(s): GM KE LS MW MZ NA SD SL SZ TZ UG ZM ZW AM AZ BY KG KZ MD RU TJ TM AT BE BG CH CY CZ DE DK EE ES FI FR GB GR HU IE IT LU MC NL PL PT RO SE SI SK TR BF BJ CF CG CI CM GA GN GQ GW ML MR NE SN TD TG

121 Ep: the epo has been informed by wipo that ep was designated in this application
WWE Wipo information: entry into national phase

Ref document number: 2007067822

Country of ref document: US

Ref document number: 10565884

Country of ref document: US

122 Ep: pct application non-entry in european phase
WWP Wipo information: published in national office

Ref document number: 10565884

Country of ref document: US