WO2008032405A1 - Inforation management program and information processing device - Google Patents
Inforation management program and information processing device Download PDFInfo
- Publication number
- WO2008032405A1 WO2008032405A1 PCT/JP2006/318401 JP2006318401W WO2008032405A1 WO 2008032405 A1 WO2008032405 A1 WO 2008032405A1 JP 2006318401 W JP2006318401 W JP 2006318401W WO 2008032405 A1 WO2008032405 A1 WO 2008032405A1
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- identification information
- user
- installation environment
- information
- work group
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Ceased
Links
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/30—Authentication, i.e. establishing the identity or authorisation of security principals
- G06F21/31—User authentication
- G06F21/34—User authentication involving the use of external additional devices, e.g. dongles or smart cards
- G06F21/35—User authentication involving the use of external additional devices, e.g. dongles or smart cards communicating wirelessly
Definitions
- the present invention relates to an information management program and an information processing apparatus, and in particular, information for acquiring user identification information from a wireless communication device that holds user identification information and restricting use according to the acquired user identification information.
- the present invention relates to a management program and an information processing apparatus.
- a user authentication is performed to restrict users who access information in the information processing system.
- the most widespread user authentication is a method in which a user inputs an ID and a password and determines whether or not the user can use the user by authenticity.
- user authentication using RFID (Radio Frequency Identification System), which is contactless wireless communication, is being introduced to ensure security and reduce user burden.
- FIG. 17 is a diagram showing an outline of a conventional authentication system using RFID. The figure shows user authentication applied to a personal computer (PC).
- PC personal computer
- RFID receiver built-in PC910 built in RFID receiver RFID reader (receiver) 911 that reads information recorded in the RFID tag, and use that authenticates users based on the information read by the RFID reader 911 Person authentication means 912.
- the user 921 has an RFID tag 922 that records its identification information (user ID).
- the RFID reader 911 causes the user ID recorded in the RFID tag 922 to be read.
- the RFID reader 911 performs wireless communication to read the user ID and sends it to the user authentication unit 912.
- User authentication means 912 authenticates the user using the acquired user ID. Once authenticated, use is permitted and access to the information stored inside is possible.
- Patent Document 1 Japanese Patent Laid-Open No. 2003-317044
- the present invention has been made in view of these points, and provides an information management program and an information processing apparatus capable of limiting the user's available range according to the surrounding environment. Objective.
- the present invention provides an information management program for causing a computer to execute the processing shown in FIG.
- the information management program according to the present invention is applied to the information processing apparatus 1 and can cause a computer to execute the following processing.
- Information processing device 1 identifies communication means la functioning as a receiver, work group ID storage means lb for storing work group identification information for identifying work group members, and identifies the installation environment of information processing device 1 Installation environment identification means lc to be used, and use restriction means Id to restrict the use of users.
- the communication means la exists within a communicable range and performs wireless communication with the wireless communication devices 2a, 2b, 2c, 2d that hold predetermined identification information for identifying a user or a device, and identifies each of them. Collect information.
- the work group ID storage means lb stores work group identification information in which identification information for identifying a work group member including a user or a device existing in a safety area where a predetermined work is permitted is registered.
- the installation environment identification means lc compares the identification information collected by the communication means la with the work group identification information stored in the work group ID storage means lb, so that the installation environment of the information processing apparatus 1 is safe. Identify whether or not.
- Usage restriction means Id restricts the use of the user according to the installation environment of the information processing apparatus 1 identified by the installation environment identification means lc.
- the work group ID storage means lb is registered with work group identification information in which identification information of work group members existing in a safe area where a predetermined work is permitted is registered. Information is stored.
- the information processing device 1 uses the communication means la to identify identification information (in the figure, the user ID in the figure) of the wireless communication apparatuses (in the figure, the wireless communication apparatuses 2a, 2b, 2c, 2d) that are within the communicable range. ).
- the wireless communication device 2a performs a predetermined work using the information processing device 1
- the installation environment identification unit lc The work group identification information on the work group ID storage means lb force is read out and collated with the identification information collected by the communication means la.
- the usage restriction means Id limits the usage that can be performed by the user.
- an information processing device that acquires user identification information from a wireless communication device that holds the user identification information and restricts the use according to the acquired user identification information
- Communication means for collecting identification information through wireless communication with a wireless communication device that exists within a communicable range and that retains predetermined identification information for identifying a user or a device, and a predetermined operation is permitted.
- the work group identification information storage means for storing the identification information of the work group member including the user or the device existing in the safety area is registered, and the desired work from the work group identification information storage means is stored.
- the installation environment identification means for identifying whether the installation environment is safe by reading the work group identification information related to the information and collating with the identification information collected by the communication means, and the installation environment
- an information processing apparatus characterized by having usage restriction means for restricting the use of a user according to the installation environment identified by the boundary identification means.
- identification information is collected from the radio communication device existing in the communicable range by the communication means.
- the installation environment identification means reads the work group identification information related to the work desired by the user from the work group identification information storage means, compares it with the collected identification information, and determines whether the installation environment of the information processing apparatus is safe. Separate.
- the use restriction means restricts the use of the user according to the identified installation environment.
- the information processing apparatus stores work group identification information in which identification information of a work group member including a user or a device that exists in a safe area where a predetermined work is permitted is stored. .
- surrounding identification information is collected and collated with work group identification information to identify whether the installation environment of the information processing device is within the safe area. Then, the user's usage is restricted according to the identification result.
- FIG. 1 is a conceptual diagram of an invention applied to an embodiment.
- FIG. 2 is a block diagram showing a configuration of a PC security system and a hardware configuration example of a PC according to the present embodiment.
- FIG. 3 is a diagram showing an example of the configuration of the PC security system according to the embodiment of the present invention.
- FIG. 4 is a diagram showing an example of registration information (administrator information and file protection information) according to the embodiment of the present invention.
- FIG. 5 is a diagram showing an example of registration information (input information necessary for operation) according to the embodiment of the present invention.
- FIG. 6 is a flowchart showing a procedure of the same work group ID candidate collection process in the registration unit of the embodiment of the present invention.
- FIG. 7 is a diagram showing an authentication process at the time of login in the PC according to the embodiment of the present invention.
- FIG. 8 is a diagram showing a login authentication process when an ID card is forgotten in the PC according to the embodiment of the present invention.
- FIG. 9 is a diagram showing processing when login authentication is not permitted in the PC according to the embodiment of the present invention.
- FIG. 10 is a diagram showing a process for restricting the use of a file with file access restrictions according to the embodiment of the present invention.
- FIG. 11 is a diagram showing use restriction processing (if not permitted) of a file with file access restriction according to the embodiment of the present invention.
- FIG.12 File with restricted file access (requires multiple IDs) according to the embodiment of the present invention
- FIG. 13 is a flowchart showing a procedure of file Z folder access control processing in the embodiment of the present invention.
- FIG. 14 is a diagram showing a first stage processing procedure in the installation environment diagnosis according to the embodiment of the present invention.
- FIG. 15 is a diagram showing a processing procedure of a second stage in the installation environment diagnosis according to the embodiment of the present invention.
- FIG. 16 is a diagram showing an example of another embodiment of the present invention.
- FIG. 17 is a diagram showing an outline of a conventional authentication system using RFID.
- FIG. 1 is a conceptual diagram of the invention applied to the embodiment.
- the information management system holds user identification information (hereinafter referred to as user ID), and has a wireless communication function that transmits the held user ID in response to a request.
- Communication devices 2a, 2b, 2c, and 2d, and an information processing apparatus 1 that collects user IDs and restricts the use of the users based on the collected user IDs.
- the wireless communication devices 2a, 2b, 2c, 2d are RFID tags mounted on an ID card or the like carried by each user.
- a user ID stored in the internal memory is transmitted.
- the wireless communication devices 2a, 2b, 2c, and 2d may be information terminal devices or PCs that are carried by the user with the power of the user's ID card.
- the internal memory may hold the device ID.
- user and device identification information is collectively referred to as user ID.
- the user ID forms the same work group 3 for each member (including users and devices) of the work group that performs a predetermined work.
- the user IDs of the members belonging to this same work group 3 are stored as work group identification information in the work group ID storage means lb of the information processing apparatus 1.
- the information processing device 1 is a communication means (receiver) that performs communication with the wireless communication devices 2a, 2b, 2c, 2d La, work group ID storage means lb for storing the work group ID of the same work group 3, installation environment identification means lc for checking the installation environment, use restriction means for restricting the use of the user according to the surrounding environment ld, and a protection information database (hereinafter referred to as DB) le that stores protection information.
- DB protection information database
- the communication means (receiver) la performs wireless communication with the wireless communication devices 2a, 2b, 2c, and 2d that store the user ID when requested by a predetermined cycle or other processing means. Go and collect the user IDs that each stores.
- the work group ID storage means lb is a work group identification information (hereinafter referred to as a work group) in which user IDs of users or work group members including a device existing in a safe area where a predetermined work is permitted are registered.
- Storage means for storing ID For example, if the work is done at your own seat in the company, colleagues in the surrounding seats can be set as the same work duplication. In other words, if the user IDs of colleagues who should be in the surrounding seats can be collected, the user can be regarded as working in the company's own seat.
- the work group ID storage means lb a certain area where the information processing apparatus 1 is used is set as a safety area, and user IDs of colleagues and devices in the safety area are registered as work group IDs.
- a group of registered work group members is referred to as the same work group.
- the user ID of the wireless communication device 2a, the user ID of the wireless communication device 2b, the user ID of the wireless communication device 2c, and the user ID of the wireless communication device 2d Is registered in the work group ID and stored in the work group ID storage means lb.
- the installation environment identification means lc reads the work group ID of the work group member stored in the work group ID storage means lb, and compares it with the surrounding user IDs collected by the communication means la. Then, the collation result identifies whether the environment in which the information processing apparatus 1 is installed is in the safe area. If multiple work group IDs are registered, how many or more user IDs corresponding to the work group IDs are considered safe areas may be set! .
- Usage restriction means Id restricts the use of the user based on the installation environment identified by the installation environment identification means lc. To use, log in to the information processing device 1 and enter the specified operation. And access to protected information DBle, and usage restrictions are considered for each. If the user is logged in, the user ID of the user obtained through the communication means la is confirmed, and if the installation environment identification means lc confirms that the user ID is within the safe area, the mouth guin is permitted. In addition, after the login is approved, depending on the contents of the work, the installation environment is checked by the installation environment identification means lc at the time of the work request, and the work is permitted only when it is identified as a safe area. At this time, more detailed conditions may be set.
- access to a file can be done only if the user IDs of specific members of the same work group 3 are collected! /, But other files can be accessed by any two people in the same work group.
- Set conditions according to importance such as user ID. Permit this work when set conditions are met. When such conditions are set, if there are members of the same work group 3 in the surrounding area, it is regarded as a safe area and general work is allowed. However, if a user ID of a specific member is required, the operation is not permitted unless the user ID of that member is collected. In this way, user use can be restricted as necessary.
- user authentication may be substituted by entering a password or the like if it is identified as a safe area by the installation environment identification means lc. . Even if the user ID of the user cannot be confirmed, there are members of the same work group 3 around it, so safety can be confirmed from the installation environment. In this way, even if the user forgets the ID tag, the robustness of the authentication can be maintained by confirming the safety based on the installation environment.
- the use restriction unit Id activates the installation environment identification unit lc at a fixed period to confirm the safety of the installation environment. If the installation environment identification means lc continues to identify the installation environment as unsafe for a certain period of time, protection to prevent leakage of protected information that must be kept confidential Execute the process.
- the work group ID storage means lb user IDs of predetermined work group members are registered and stored in the work group ID.
- the communication means la collects user IDs from the wireless communication devices 2a, 2b, 2c, 2d and sends them to the installation environment identification means lc.
- Installation environment identification means LC Verifies the collected user ID with the user ID registered in the work group ID stored in the work group ID storage means lb. Here, if even one collected user ID matches, it is identified as a safe area.
- the use restriction means Id obtains the user ID of the user through the communication means 1a and confirms the user, and the installation environment identification means lc determines the installation environment. Let me check. If the user ID is confirmed and the installation environment is identified as safe, login is permitted. If the installation environment is safe, authentication using a password can be used.
- the usage restriction means Id checks the safety area by the installation environment identification means lc and when more detailed environmental conditions are set. Check its environmental conditions. When these conditions are met, the operation is permitted. If it is not identified as a safe area, the condition is not checked and access is denied immediately.
- the installation environment identification means lc identifies that the installation environment is not safe for a certain period of time, it may be considered that the information processing device 1 is installed outside the safe area. Yes, you can do some kind of maintenance! ,.
- the user ID of the user is used to identify whether or not the surrounding environment is a safe area that satisfies a preset condition. Is done. Then, if it is identified that the information processing apparatus 1 is installed outside the safe area, its use is restricted. Furthermore, if the condition outside the safe area continues for a certain period of time, it may be possible to take maintenance measures such as deleting the information to be protected.
- Figure 2 shows the configuration of the PC security system and the hardware configuration of the PC in this embodiment. It is a block diagram which shows a composition example.
- the PC security system includes an ID force code 20 in which a user ID is recorded, and a PC 10 that reads the ID and performs security management.
- the entire PC 10 is controlled by a CPU (Central Processing Unit) 101.
- a random access memory (RAM) 102, a hard disk drive (HDD) 103, a graphic processing device 104, an input interface 105, a communication interface 106, and an RFID interface 107 are connected to the CPU 101 via a bus 108. ing.
- the RAM 102 temporarily stores at least part of an OS (Operating System) program application program to be executed by the CPU 101.
- the RAM 102 stores various data necessary for processing by the CPU 101.
- the HDD 103 stores the OS and application programs.
- a monitor 110 is connected to the graphic processing device 104, and an image is displayed on the screen of the monitor 110 in accordance with a command from the CPU 101.
- a keyboard 111 and a mouse 112 are connected to the input interface 105, and signals sent from the keyboard 111 and the mouse 112 are transmitted to the CPU 101 via the bus 108.
- the communication interface 106 is connected to a network 109 and transmits / receives data to / from other devices via the network 109.
- the RFID interface 107 controls the RFID reader 11 that performs wireless communication with the RFID tag 200 and reads the user information recorded in the RFID tag, and sends the read ID via the bus 108. To CPU101.
- the RFID tag 200 includes a memory 201 that records an ID, a control unit 202 that performs read control, and a communication processing unit 203.
- the communication processing unit 203 receives a read signal from the RFID reader 11, it transmits a read request to the control unit 202.
- the control unit 202 reads the ID stored in the memory 201 and returns the ID to the RFID reader 11 via the communication processing unit 203.
- FIG. 3 is a diagram showing an example of the configuration of the PC security system according to the embodiment of the present invention.
- the figure shows an example of the software configuration of the PC 10 and an example of a neighboring person holding an ID card.
- the PC security system includes a PC 10 that reads an ID and manages internal protection information, and an ID card 20, 21, 22, 23 that transmits an ID held in response to a request. , 24, 25, 26, 27.
- the PC 10 includes an RFID reader 11, a registration unit 12, an installation environment identification unit 13, a use restriction unit 14, and a protection information DB 16.
- the RFID reader (receiver) 11 performs wireless communication with the RFID tag 200 in the communicable area and collects IDs held by the RFID tag 200.
- the registration unit 12 determines a work group member, and generates the same work group ID 15 in which an ID for identifying the work group member is registered.
- the surrounding ID is collected by the RFID reader 11, and the collected ID is provided as a work group member candidate to the registered user.
- the user corrects this and a final identical work group ID 15 is generated.
- the condition setting for permitting the operation request and the protection processing method for the protection target information stored in the protection information DB 16 are also set.
- the installation environment identification unit 13 compares the surrounding ID collected by the RFID reader 11 with the same work group ID 15 to determine whether the installation environment is safe. Identify The identification result is notified to the use restriction unit 14 together with the detected ID.
- the usage restriction unit 14 activates the installation environment identification unit 13 to check the installation environment when logging in by the user, when requesting an operation from the user, and during periodic installation environment diagnosis. Limit the use of users accordingly. At this time, the same work group ID 15 is referenced as necessary. Details will be described later.
- the same work group ID 15 stores the same work group ID registered in the same work group.
- the protection information DB 16 stores the information to be protected that must be prevented from being leaked.
- the ID card 20 stores an ID (ID: A) of the user A who uses the PC 10, as shown in FIG. 3, and transmits the held ID in response to the read request. It comprises.
- the other ID cards 21, 22, 23, 24, 25, 26, 27 have the same configuration.
- ⁇ IJ user A has colleague B holding ID card (ID: B) 21, colleague C holding ID card (ID: C) 22, and ID card (ID: D) 23. Form same working group 3 with colleague D.
- the registration unit 12 is activated, and the same work group ID 15 in which members belonging to the same work group 3 are registered is generated.
- the conditions for accepting operation requests and the protection processing method related to protection target information are also set.
- the usage restriction unit 14 checks the ID read from the user's ID card and the installation environment, and if authenticated, permits the login. Even if the user does not hold an ID card, if the members of the same work group 3 can confirm, the user may be authenticated by an authentication method such as a password.
- the setting of the condition for allowing the operation request set in advance is checked together with the confirmation of the installation environment. If the installation environment is confirmed to be safe and it meets the conditions allowing the operation request, the operation request is permitted. If it is specified that confirmation is not required, including confirmation of the installation environment, the operation request is allowed unconditionally.
- the use restriction unit 14 also periodically activates the installation environment identification unit 13 to check the installation environment. If the installation environment identification unit 13 continues to be identified as unsafe for a certain period of time, the protection process determined by the registration process is performed. The protection process is For example, it is divided into two stages. If the same work group ID is not detected and the setting time of the first stage continues, access to the protection information DB 16 is prohibited. If an access request is entered, the access request is disallowed. If a certain amount of time has passed since the completion of the first step, the information stored in the protection information DB 16 is deleted as the second step. For example, overwrite another data so that the original information cannot be read.
- the protection information is automatically obtained when the PC 10 can be used and if the force is outside the safe area and the force has passed for a certain period of time. Since is deleted, it is possible to ensure a higher level of security.
- the administrator is registered, the operation process is registered when the PC is lost or stolen, the necessary conditions for authorizing the operation request are registered, and the ID of the same work group is registered.
- FIG. 4 is a diagram showing an example of registration information (administrator information and file protection information) according to the embodiment of the present invention.
- an ID of an administrator who performs PC security management is registered as administrator information.
- the ID of administrator G24 is registered.
- “File deletion start time” is set to “8 hours later”
- “File deletion target” is set to “Filel, File2, File3, File4, ...”. ing. That is, it was identified as unsafe by the installation environment identification unit 13. It is stipulated that “Filel, File2, File3, File4,...” Should be “deleted” if the state continues for “8 hours”.
- FIG. 5 is a diagram showing an example of registration information (input information necessary for operation) according to the embodiment of the present invention.
- the figure shows an RFID tag (HD information from which RFID tag power is also read), ID (information from which power such as a keyboard is input), or password (information from which power such as a keyboard is input) in response to an operation request from user A Of which is needed.
- RFID tag HD information from which RFID tag power is also read
- ID information from which power such as a keyboard is input
- password information from which power such as a keyboard is input
- Usage authentication 403 registers that "user A ID (keyboard input)" and "user A password” are required as user authentication requirements. If the ID can be read from the RFID tag of user A, the usage authentication 403 is not referred to.
- file access 406 necessary conditions for permitting access to the file are registered in units of each file or a group of files (folders) in which the files are collected.
- file B access requires “colleague B RFID tag”
- file C access requires “colleague C RFID tag”
- folder D access requires “colleague D” RFID tag.
- Access to folder E requires “RFID tags of at least three of the members (user A, colleagues B, C, D) of the same work group 3”.
- folder F “RFID tags of all members of the same work group 3 (users A, colleagues B, C, D)” are required.
- the RFID reader 11 is used to collect surrounding IDs and display a list on the monitor 110 to reduce the registration burden.
- Figure 6 shows the 10 is a flowchart showing a procedure of the same work group ID candidate collection process in the registration unit according to the present embodiment.
- Step S11 The collection time is set. When collecting candidates for the same work group ID, collection is repeated for a predetermined collection time. IDs collected during the collection time are candidates for the same work group ID.
- Step S12 The RFID reader 11 is activated at regular intervals, and RFID tags existing in a certain range (the communication range of the RFID reader 11) are read.
- Step S13 Time is measured to determine whether the collection time set in step S11 has been exceeded. If it exceeds, the process is terminated.
- Step S14 It is determined whether or not the RFID reader 11 detects the HD information of the RFID tag. If not, return to step S12 and wait for the next collection cycle
- Step S15 When the RFID reader 11 detects the HD information of the RFID tag, the collected tag information is stored in the temporary storage memory.
- the ID detected within the collection time is stored in the time storage memory.
- the ID stored in the temporary storage memory becomes the same work group ID candidate.
- User A confirming the list on monitor 110 edits the same work group ID, and deletes the IDs of business traveler E and business traveler F who do not belong to the same work group 3. Also, the ID of colleague D who has not been collected is registered. As a result, four users, User A, Colleague B, Colleague C, and Colleague D, are registered in the same work group ID15.
- the usage restriction process executed by the usage restriction unit 14 includes usage restrictions based on user authentication at login, usage restrictions at the time of operation requests, and usage restrictions according to periodic installation environment diagnosis.
- FIG. 7 is a diagram showing authentication processing at the time of login in the PC according to the embodiment of the present invention.
- the use restriction unit 14 activates the installation environment identification unit 13 to identify the installation environment.
- the installation environment identification unit 13 activates the RFID reader 11 to collect IDs.
- the R FID reader 11 collects IDs from RFID tag B201 of colleague B and RFID tag C202 of colleague C along with information on RFID tag A200 of user A.
- the installation environment identification unit 13 uses the ID (user A, colleague B, colleague C) collected by the RFID reader 11 and the ID registered in the same work group ID 150 (ID: A, ID: B, ID: C, Match with ID: D). Since the IDs of multiple people in the same work group were detected, the installation environment is identified as being within the safe area. Since the ID of user A is also confirmed, the use restriction unit 14 permits login by user A and allows access to general PC information 160 that is not restricted.
- FIG. 8 is a diagram showing login authentication processing when the ID card is forgotten in the PC according to the embodiment of the present invention.
- the RFID reader 11 collects IDs from the RFID tag B201 of the colleague B who sits next to it and the RFI D tag C202 of the colleague C.
- the installation environment identification unit 13 uses the ID (colleague B, colleague C) collected by the RFID reader 11 and the ID (ID: A, ID: B, ID: C, ID: D) registered in the same work group ID 150. Match. Since the IDs of multiple people in the same work group were detected, the installation environment is identified as being within the safe area.
- Usage restriction part 14 is that PC10 is in the safe area. Since it has been confirmed, user A is requested to input an ID and password based on the setting of the usage authentication 403 shown in FIG. User authentication is performed using the entered ID and password. If authenticated, user A is allowed to log in, and access to general PC information 160, which was once restricted, is permitted.
- FIG. 9 is a diagram showing processing when login authentication in the PC according to the embodiment of the present invention is not permitted.
- the installation environment identification unit 13 compares the ID (third party H) collected by the RFID reader 11 with the ID (ID: A, ID: B, ID: C, ID: D) registered in the same work group ID150. To do. Since the IDs of multiple people in the same work group are not detected, the installation environment is identified as being outside the safe area.
- Usage restriction unit 14 does not allow login because PC 10 is identified as being outside the safe area. Therefore, the PC information 160 cannot be accessed.
- FIG. 10 is a diagram showing a file use restriction process for which file access restriction is performed according to the embodiment of this invention.
- file B requires RFID tag information of colleague B during operation.
- usage restriction unit 14 requests installation environment identification unit 13 to identify the installation environment.
- the installation environment identification unit 13 uses the RFID reader 11 to collect the ID of the RFID tag A200 of the user A and the ID of the RFID tag B201 of the colleague B.
- the collected environment (User A, Colleague B) is checked against the ID (ID: A, ID: B, ID: C, ID: D) registered in the same work group ID 150, and the installation environment is in the safe area. Identifies as within.
- the detection ID (user A, colleague B) is notified to the usage restriction unit 14 along with the identification result.
- Usage restriction unit 14 permits the update of file B1 61 because the ID of RFID tag B of colleague B, which is a condition for permitting access request to file B, is detected in the installation environment is a safe area. .
- FIG. 11 is a diagram showing a file use restriction process (in a case where permission is not allowed) of a file with restricted file access according to the embodiment of the present invention.
- the RFID reader 11 that receives a request to update the file B161 by the user A is a case where the information of the RFID tag B201 of the colleague B cannot be collected. It is assumed that the installation environment is confirmed to be a safe area by a colleague C (not shown). In this case, the usage restriction unit 14 is in a safe area, but the ID of the RFID tag B of the colleague B, which is a condition for permitting the access request to the file B, is not detected! Do not update.
- FIG. 12 is a diagram showing a file use restriction process in which file access restriction (requires multiple persons' IDs) according to the embodiment of the present invention is performed.
- folder E has three or more RFI members out of four members of the same work group at the time of operation. D tag information is required.
- usage restriction unit 14 requests installation environment identification unit 13 to identify the installation environment.
- the installation environment identification unit 13 uses the RFID reader 11 to collect the ID of the RFID tag A200 of the user A, the ID of the RFID tag B201 of the colleague B, and the ID of the RFID tag C202 of the colleague C.
- the collected ID (User A, Colleague B, Colleague C) is checked against the ID (ID: A, ID: B, ID: C, ID: D) registered in the same work group ID 150. Identify as being within the safe area.
- the detection ID (User A, Colleague B, Colleague C) is notified to the usage restriction unit 14.
- the use restriction unit 14 detects that three or more IDs of the same work group ID 150, which is a condition for permitting an access request to the folder E, in the installation environment is a safe area, Allow update.
- an arbitrary constraint condition can be set according to the importance of the file.
- FIG. 13 is a flowchart showing the procedure of the file Z folder access control process in the embodiment of the present invention.
- Step S21 Determine whether access control of file Z folder using detection of file Z folder force ID is requested. The determination is made with reference to the file access 406 regarding the file Z folder. If there is no setting, ID detection is not required. If not, proceed to A.
- Step S22 When access control by ID detection is necessary, it is determined whether or not the ID detection power specific ID is detected. If a specific ID, that is, a single ID is specified, the process proceeds to step S23. If it is not a specific ID, that is, if a plurality of IDs are specified, the process proceeds to step S24.
- Step S23 When a specific (single) ID is specified, determine whether the ID has been detected by comparing the ID collected by the RFID reader 11 with the specified ID. To do. If detected, proceed to A. If not detected, proceed to step S27 [0090]
- a check time (check method) is determined. If the check method is access, the process proceeds to step S25. If the check method is login, the process proceeds to step S26.
- Step S25 If the check method is access, it is determined whether or not the ID specified at the time of access is detected. If “75% or more member IDs of the same work group members” or “3 or more members of the same work group members” is specified, check the number and make a decision. If ID detection conditions are met, proceed to A. If the ID detection condition is not satisfied, the process proceeds to step S27.
- Step S26 If the check method is login, it is determined whether or not the ID specified at login is detected. In this case, the judgment result at the time of login or the ID detected at the time of login is saved and the judgment is made. The details of the determination are the same as in step S25. If ID detection conditions are met, proceed to A. If the ID detection condition is not satisfied, the process proceeds to step S27.
- Step S27 Since the condition is not satisfied and the corresponding ID is not detected, access is disabled and the process is terminated.
- Step S28 Since the conditions are met and the corresponding ID is detected, access is permitted and the process is terminated.
- the installation environment diagnosis starts when the PC 10 is turned on, and periodically diagnoses the installation environment. Based on the file protection information 402 shown in FIG. 4, as the first stage, when the access restriction start time is reached, an access restriction process is performed. Subsequently, as the second stage, when the file deletion start time is reached, file deletion processing is performed.
- FIG. 14 is a diagram showing a processing procedure of the first stage in the installation environment diagnosis according to the embodiment of the present invention. The power is turned on and processing is started.
- Step S31 The elapsed time information for counting the elapsed time is also initialized.
- Step S32 The RFID reader 11 is activated at regular intervals to collect HD information of surrounding RFID tags. Store the collected ID tags in the temporary storage memory.
- Step S33 The elapsed time is updated and compared with the set time (first stage access restriction start time) to determine whether the elapsed time exceeds the set time. If so, the process proceeds to step S36.
- Step S34 Since the set time has not been exceeded, it is determined whether or not the ID tag collected in Step S32 has been detected. If no ID tag is detected, proceed to step S3.
- Step S35 Since the ID tag is detected, it is determined whether or not the detected ID tag is registered in the same (work) group. If it falls under the same work group, it is regarded as a safe area, the process returns to step S31, and the process from the initialization of the elapsed time is performed. If not detected, the process returns to step S32 to wait for the next collection process.
- Step S36 Since the period during which no ID tag of the same group is detected has exceeded the set time, the target file is made unreadable.
- Step S37 Send an e-mail to the administrator to notify them that the first stage of processing has been performed. Thereafter, the process proceeds to C shown in FIG.
- FIG. 15 is a diagram showing a second stage processing procedure in the installation environment diagnosis according to the embodiment of the present invention.
- Step S41 Activate RFID reader 11 at regular intervals to collect HD information of surrounding RFID tags. Store the collected ID tags in the temporary storage memory.
- Step S42 The elapsed time is updated and compared with the set time (second stage file deletion start time) to determine whether the elapsed time exceeds the set time. If so, the process proceeds to step S46.
- Step S43 Since the set time has not been exceeded, it is determined whether or not the ID tag collected in Step S41 has been detected. If the ID tag is not detected, the process returns to step S41 and waits for the next collection process.
- Step S44 Since the ID tag is detected, the detected ID tag is the same (work) group. It is determined whether it is registered in the group. If it falls under the same work group, the process returns to step S41 and waits for the next collection process.
- Step S45 If they fall under the same work group, they are considered to be in the safety area, and the process returns to B (initial key) shown in FIG. 14, and the process from the initialization of the elapsed time is performed.
- Step S46 If the ID tag of the same group is not detected and the period has exceeded the set time, the target file is overwritten with different data so that it cannot be read.
- Step S47 The target file information is deleted so that the target file cannot be accessed.
- Step S48 An e-mail is sent to the administrator, notifying that the second stage of processing has been performed, and the processing ends.
- the registration of the same work group ID is changed as necessary. For example, when a work group member is switched, or when the PC 10 is portable and the surrounding members change during work, etc., the registration is changed according to the environment. Since the registration change requires the conditions shown in the setting operation 405 in FIG. 5, the registration change can be performed safely.
- the power for confirming the installation environment based on the information of the RFID tag possessed by the user or the like is not limited to this.
- Other wireless communication functions can be used by using RFID tags.
- FIG. 16 is a diagram showing an example of another embodiment of the present invention.
- the PC 510 includes a memory 511 that stores device identification information, and an information management unit 512 that performs information management.
- the PC 520 includes a memory 521, an information management unit 522, and a wireless communication circuit 523.
- PC 510 and PC 520 exchange device identification information with each other via wireless communication circuit 513 and wireless communication circuit 523.
- the device identification information of PC550 is also collected.
- the information management unit 512 includes device identification information collected from other PCs and a preset safety area. Compare with the device identification information of other PCs that indicate the area, and identify whether the installation environment is in the safe area.
- the above processing functions can be realized by a computer.
- a program describing the processing contents of the functions that the information processing apparatus should have is provided.
- the above processing functions are realized on the computer.
- the program describing the processing contents can be recorded on a computer-readable recording medium.
- the computer-readable recording medium include a magnetic recording device, an optical disk, a magneto-optical recording medium, and a semiconductor memory.
- Magnetic recording devices include hard disk drives (HDD), flexible disks (FD), and magnetic tapes.
- Optical discs include DVD (Digital Versatile Disc), DVD—RAM (Random Access Memory), CD—ROM (Compact Disc Read Only Memory), and CD—R (Recordable) ZRW (Rewritable).
- Magneto-optical recording media include MO (Magneto-Optical disk).
- the computer that executes the program stores, for example, the program recorded on the portable recording medium or the server computer-transferred program in its own storage device. Then, the computer reads its own storage device power program and executes processing according to the program. The computer can also read the program directly from the portable recording medium and execute processing according to the program. In addition, each time the server computer program is transferred, the computer can also execute processing according to the received program.
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Theoretical Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Computer Hardware Design (AREA)
- Software Systems (AREA)
- Physics & Mathematics (AREA)
- General Engineering & Computer Science (AREA)
- General Physics & Mathematics (AREA)
- Storage Device Security (AREA)
Description
明 細 書
情報管理プログラム及び情報処理装置
技術分野
[0001] 本発明は情報管理プログラム及び情報処理装置に関し、特に利用者識別情報を 保持する無線通信器から利用者識別情報を取得し、取得した利用者識別情報に応 じて利用制限を行う情報管理プログラム及び情報処理装置に関する。
背景技術
[0002] 情報処理システムでは、不正使用による情報漏洩を防止するため、ユーザ認証を 行って情報処理システム内の情報にアクセスするユーザを制限している。従来、最も 普及しているユーザ認証は、ユーザに IDとパスワードとを入力させ、その真偽で利用 可否を判断する手法である。また、セキュリティの確保とユーザ負担の軽減のため、 非接触無線通信である RFID (Radio Frequency Identification System)を用いたユー ザ認証も導入されつつある。
[0003] 図 17は、従来の RFIDを用いた認証システムの概略を示した図である。図は、パー ソナルコンピュータ(以下、 PCとする)に適用されたユーザ認証を示している。
RFID受信器を内蔵する RFID受信器内蔵 PC910は、 RFIDタグに記録された情 報を読み取る RFIDリーダ (受信器) 911と、 RFIDリーダ 911が読み取った情報に基 づいて、利用者を認証する利用者認証手段 912とを具備する。利用者 921は、自身 の識別情報 (利用者 ID)を記録した RFIDタグ 922を持つ。
[0004] 利用者 921が、この RFID受信器内蔵 PC910を利用し、内部の情報にアクセスす る場合には、 RFIDリーダ 911に、 RFIDタグ 922に記録された利用者 IDを読み取ら せる。 RFIDリーダ 911は、無線通信を行って利用者 IDを読み出し、利用者認証手 段 912へ送る。利用者認証手段 912は、取得した利用者 IDを用いて利用者を認証 する。認証されれば、使用が許可され、内部に格納される情報へのアクセスが可能と なる。
[0005] このように、ユーザ認証に RFIDを用いることにより、使用開始時に、従来のユーザ 認証で行われていたパスワードや IDの入力を省略できるという利点がある。また、パ
スワードや IDの入力と比較して、認証用の情報を盗み出すことが難しいなど、より高 い安全性が確保される。
[0006] さらに、 RFIDの無線通信が傍受されて認証用の情報が盗み出され、盗み出された 認証用の情報を用いてタグなどが偽造されることを防止するため、複数の認証用コー ドをタグに記録しておき、読み出しごとに、読み出し側で認証用コードの送信順を決 める RFID認証システムが提案されている(たとえば、特許文献 1参照)。このようなシ ステムでは、読み出しごとに認証用コードが変化するため、通信が傍受されても、認 証用コードを特定することが難しくなり、安全性が高くなる。
特許文献 1:特開 2003— 317044号公報
発明の開示
発明が解決しょうとする課題
[0007] しかし、従来の情報へのアクセス管理では、利便性や安全性に関し、以下のような 問題点があった。
まず、一旦認証された後は、再度認証が行われないため、第三者に情報が漏れる 恐れがある。たとえば、認証後、所定の作業を行っていた作業者が、そのままの状態 で一時的に PC力も離れてしまった場合などには、その間に、第三者が情報を読み出 すことが可能となる。一定時間操作がされない場合には、一律にログアウトさせるもの もあるが、周囲の目が届く安全な環境にもかかわらず、強制的にログアウトされてしま う。この場合、再度認証から処理を行わなければならず、その都度作業が中断されて 好ましくない。
[0008] また、 RFIDタグを忘れるなど、利用者が RFIDタグを保持して ヽな 、場合には、利 用ができないという問題点がある。そこで、 IDとパスワードとを用いた認証と併用する システムもあるが、この場合、認証の堅牢性は、 RFIDタグを利用しない従来の認証 システムと同程度となってしまうという不都合が生じる。
[0009] さらに、従来の認証処理では、 IDとパスワードを入力させ、その真偽で利用可否を 判断するため、設置されて 、る環境が安全かどうか判断できな 、と 、う問題点もある。 たとえば、 PCが盗難にあった場合には、盗み出した PCの IDやパスワードなどの認 証情報を探し出すことは、それほど難しくない。また、直接、記憶装置の内容を読み
出すこともできるため、 PC内部の情報が第三者に漏洩する恐れがある。
[0010] 本発明はこのような点に鑑みてなされたものであり、周囲の環境に応じて利用者の 利用可能範囲を制限することが可能な情報管理プログラム及び情報処理装置を提 供することを目的とする。
課題を解決するための手段
[0011] 本発明では上記課題を解決するために、図 1に示すような処理をコンピュータに実 行させるための情報管理プログラムが提供される。本発明に係る情報管理プログラム は、情報処理装置 1に適用され、コンピュータに以下の処理を実行させることができる
[0012] 情報処理装置 1は、受信器として機能する通信手段 la、作業グループメンバを識 別するための作業グループ識別情報を記憶する作業グループ ID記憶手段 lb、情報 処理装置 1の設置環境を識別する設置環境識別手段 lc、及び利用者の利用を制限 する利用制限手段 Idを具備する。通信手段 laは、通信可能な範囲内に存在し、利 用者あるいは装置を識別する所定の識別情報を保持する無線通信器 2a, 2b, 2c, 2 dと無線通信を行って、それぞれの識別情報を収集する。作業グループ ID記憶手段 lbには、所定の作業が許可される安全領域内に存在する利用者あるいは装置を含 む作業グループメンバを識別する識別情報が登録された作業グループ識別情報が 記憶される。設置環境識別手段 lcは、通信手段 laによって収集された識別情報と、 作業グループ ID記憶手段 lbに格納される作業グループ識別情報とを照合して、情 報処理装置 1の設置環境が安全であるかどうかを識別する。利用制限手段 Idは、設 置環境識別手段 lcによって識別された情報処理装置 1の設置環境に応じて、利用 者の利用を制限する。
[0013] このような情報処理装置 1によれば、作業グループ ID記憶手段 lbには、所定の作 業が許可される安全領域内に存在する作業グループメンバの識別情報が登録され た作業グループ識別情報が格納されている。情報処理装置 1は、通信手段 laを介し て、通信可能な範囲内に存在する無線通信器(図では、無線通信器 2a, 2b, 2c, 2 d)の識別情報(図では、利用者 ID)を収集する。たとえば、無線通信器 2aが、情報 処理装置 1を用いて所定の作業を行う場合、設置環境識別手段 lcは、所定の作業
に関する作業グループ識別情報を作業グループ ID記憶手段 lb力 読み出し、通信 手段 laが収集した識別情報と照合する。そして、情報処理装置 1の設置環境が安全 であるかどうか、すなわち、周囲に作業グループメンバが検知される安全領域内に設 置されているかどうかを識別する。識別結果に応じて、利用制限手段 Idは、利用者 が実行可能な利用を制限する。
[0014] また、上記課題を解決するために、利用者識別情報を保持する無線通信器から利 用者識別情報を取得し、取得した利用者識別情報に応じて利用制限を行う情報処 理装置において、通信可能な範囲内に存在し、利用者あるいは装置を識別する所 定の識別情報を保持する無線通信器と無線通信を行って識別情報を収集する通信 手段と、所定の作業が許可される安全領域内に存在する利用者あるいは装置を含 む作業グループメンバの識別情報が登録された作業グループ識別情報を記憶する 作業グループ識別情報記憶手段と、作業グループ識別情報記憶手段から所望の作 業に関する作業グループ識別情報を読み出し、通信手段によって収集された識別 情報と照合して、設置環境が安全であるかどうかを識別する設置環境識別手段と、 設置環境識別手段によって識別された設置環境に応じて、利用者の利用を制限す る利用制限手段と、を有することを特徴とする情報処理装置、が提供される。
[0015] このような情報処理装置によれば、通信手段によって、通信可能範囲に存在する無 線通信器カゝら識別情報が収集される。設置環境識別手段は、利用者が所望する作 業に関する作業グループ識別情報を作業グループ識別情報記憶手段から読み出し 、収集した識別情報と照合し、情報処理装置の設置環境が安全であるかどうかを識 別する。利用制限手段は、識別された設置環境に応じて、利用者の利用を制限する 発明の効果
[0016] 本発明に係る情報処理装置は、所定の作業が許可される安全領域内に存在する 利用者あるいは装置を含む作業グループメンバの識別情報を登録した作業グルー プ識別情報を記憶しておく。作業要求時または一定周期ごとに、周囲の識別情報を 収集し、作業グループ識別情報と照合し、情報処理装置の設置環境が、安全領域内 であるかどうかを識別する。そして、その識別結果に応じて利用者の利用制限を行う
[0017] このように、周囲の識別情報を収集して情報処理装置が設置される周りの環境を識 別し、識別された環境に応じて利用者の利用を制限することが可能となる。この結果 、安全でない場所での利用を制限し、セキュリティを向上させることが可能となる。
[0018] 本発明の上記および他の目的、特徴および利点は本発明の例として好ま U、実施 の形態を表す添付の図面と関連した以下の説明により明らかになるであろう。
図面の簡単な説明
[0019] [図 1]実施の形態に適用される発明の概念図である。
[図 2]本実施の形態の PCセキュリティシステムの構成及び PCのハードウェア構成例 を示すブロック図である。
[図 3]本発明の実施の形態の PCセキュリティシステムの構成の一例を示した図である
[図 4]本発明の実施の形態の登録情報 (管理者情報とファイル保護情報)の一例を示 した図である。
[図 5]本発明の実施の形態の登録情報 (操作に必要な入力情報)の一例を示した図 である。
[図 6]本発明の実施の形態の登録部における同一作業グループ ID候補収集処理の 手順を示したフローチャートである。
[図 7]本発明の実施の形態の PCにおけるログイン時の認証処理を示した図である。
[図 8]本発明の実施の形態の PCにおける IDカードを忘れた場合のログイン認証処理 を示した図である。
[図 9]本発明の実施の形態の PCにおけるログイン認証が不許可となる場合の処理を 示した図である。
[図 10]本発明の実施の形態のファイルアクセス制限がされたファイルの利用制限処 理を示した図である。
[図 11]本発明の実施の形態のファイルアクセス制限がされたファイルの利用制限処 理 (許可されな 、場合)を示した図である。
[図 12]本発明の実施の形態のファイルアクセス制限 (複数人の ID要)がされたフアイ
ルの利用制限処理を示した図である。
[図 13]本発明の実施の形態におけるファイル Zフォルダアクセス制御処理の手順を 示したフローチャートである。
[図 14]本発明の実施の形態の設置環境診断における第 1段階の処理手順を示した 図である。
[図 15]本発明の実施の形態の設置環境診断における第 2段階の処理手順を示した 図である。
[図 16]本発明の他の実施の形態の一例を示した図である。
[図 17]従来の RFIDを用いた認証システムの概略を示した図である。
発明を実施するための最良の形態
[0020] 以下、本発明の実施の形態を図面を参照して説明する。まず、実施の形態に適用 される発明の概念について説明し、その後、実施の形態の具体的な内容を説明する 図 1は、実施の形態に適用される発明の概念図である。
[0021] 本発明に係る情報管理システムは、それぞれ利用者識別情報 (以下、利用者 IDと する)を保持し、要求に応じて、保持した利用者 IDを送信する無線通信機能を具備 する無線通信器 2a, 2b, 2c, 2dと、利用者 IDを収集し、収集した利用者 IDに基づ いて、利用者の利用を制限する情報処理装置 1と、を有する。
[0022] 無線通信器 2a, 2b, 2c, 2dは、利用者が各々携帯する IDカードなどに搭載された RFIDタグなどである。情報処理装置 1からの要求に応じて、内部のメモリに保持する 利用者 IDを送信する。なお、無線通信器 2a, 2b, 2c, 2dは、利用者の IDカードば 力りでなぐ利用者が携帯する情報端末装置や、 PCなどであってもよい。この場合、 内部のメモリには装置の IDが保持されているとしてもよい。以下、利用者及び装置の 識別情報をまとめて利用者 IDとする。なお、利用者 IDは、所定の作業を行う作業グ ループのメンバ (利用者及び装置を含む)ごとに、同一作業グループ 3を形成する。こ の同一作業グループ 3に属するメンバの利用者 IDは、情報処理装置 1の作業グルー プ ID記憶手段 lbに作業グループ識別情報として格納される。
[0023] 情報処理装置 1は、無線通信器 2a、 2b, 2c, 2dとの間の通信を行う通信手段 (受
信器) la、同一作業グループ 3の作業グループ IDを記憶する作業グループ ID記憶 手段 lb、設置環境を調べる設置環境識別手段 lc、周囲の環境に応じて利用者の利 用を制限する利用制限手段 ld、及び保護情報を格納する保護情報データベース( 以下、 DBとする) leを有する。なお、各処理手段は、コンピュータが情報管理プログ ラムを実行することによって、その処理機能が実現される。
[0024] 通信手段 (受信器) laは、所定の周期、あるいは、他の処理手段から要求された場 合に、利用者 IDを格納する無線通信器 2a, 2b, 2c, 2dと無線通信を行って、それ ぞれが格納する利用者 IDを収集する。
[0025] 作業グループ ID記憶手段 lbは、所定の作業が許可される安全領域内に存在する 利用者あるいは装置を含む作業グループメンバの利用者 IDを登録した作業グルー プ識別情報 (以下、作業グループ IDとする)を格納する記憶手段である。たとえば、 社内の自席で行われる作業であれば、周囲の座席にいる同僚などを同一作業ダル ープに設定することができる。すなわち、周囲の座席にいるべき同僚の利用者 IDを 収集できれば、利用者は社内の自席で作業していると見なすことができる。そこで、 作業グループ ID記憶手段 lbには、情報処理装置 1が使用される一定範囲の領域を 安全領域とし、安全領域にいる同僚や装置などの利用者 IDを作業グループ IDとして 登録しておく。登録される作業グループメンバの集合体を、同一作業グループと呼ぶ 。図の例では、同一作業グループ 3のメンバとして、無線通信器 2aの利用者 ID、無 線通信器 2bの利用者 ID、無線通信器 2cの利用者 ID、及び無線通信器 2dの利用 者 IDが作業グループ IDに登録され、作業グループ ID記憶手段 lbに格納される。
[0026] 設置環境識別手段 lcは、作業グループ ID記憶手段 lbに格納される作業グループ メンバの作業グループ IDを読み出し、通信手段 laが収集した周囲の利用者 IDと照 合する。そして、照合結果により、情報処理装置 1の設置されている環境が、安全領 域内であるかどうかを識別する。なお、作業グループ IDが複数登録されている場合 には、作業グループ IDに該当する利用者 IDが何人以上の場合に安全領域と見なす のかと!/、う基準を設定するようにしてもょ 、。
[0027] 利用制限手段 Idは、設置環境識別手段 lcによって識別された設置環境に基づい て、利用者の利用を制限する。利用は、情報処理装置 1へのログイン、所定の操作入
力、保護情報 DBleへのアクセスなどの形態があり、それぞれに利用制限が検討さ れる。ログインであれば、通信手段 laを介して取得した利用者の利用者 IDが確認さ れ、設置環境識別手段 lcによって、安全領域内であることが確認された場合、口グイ ンを許可する。また、ログインが認められた後、作業の内容に応じては、作業用要求 時に設置環境識別手段 lcによって設置環境を調べ、安全領域であると識別された 場合にのみ作業を許可する。このとき、さらに細かい条件が設定されてもよい。たとえ ば、あるファイルへのアクセスは、同一作業グループ 3のうちの特定のメンバの利用者 IDが収集されなければできな!/、が、他のファイルは同一作業グループ内の任意の 2 人の利用者 IDでよいなど、重要度に応じて条件を設定する。設定された条件が満た されたとき、この作業を許可するなどである。このような条件設定が行われると、周囲 に同一作業グループ 3のメンバがいれば、安全領域とみなされ、一般的な作業は許 可される。ただし、特定のメンバの利用者 IDが必要な作業であれば、そのメンバの利 用者 IDが収集されなければ作業は許可されない。このように、利用者の利用を必要 に応じて制限することができる。
[0028] なお、ログイン時、利用者の利用者 IDが収集されなくても、設置環境識別手段 lc によって安全領域と識別されれば、ユーザ認証をパスワード入力などで代用できるよ うにしてもよい。利用者の利用者 IDを確認できなくても、周囲には、同一作業グルー プ 3のメンバがいるので、設置環境から安全性が確認できる。このように、利用者が I Dタグを忘れた場合でも、設置環境に基づく安全性確認を行うことによって、認証の 堅牢'性を保つことができる。
[0029] さらに、利用制限手段 Idは、一定周期で設置環境識別手段 lcを起動し、設置環 境の安全性の確認を行う。そして、設置環境識別手段 lcにより、設置環境が安全で はないと識別される状態が一定期間継続した場合には、機密を保持しなければなら ない保護対象の情報の漏洩を防止するための保護処理を実行させる。
[0030] このような構成の情報管理システムの動作にっ 、て説明する。
作業グループ ID記憶手段 lbには、所定の作業グループメンバの利用者 IDが作業 グループ IDに登録され、格納されている。通信手段 laは、無線通信器 2a, 2b, 2c, 2dから利用者 IDを収集し、設置環境識別手段 lcへ送る。設置環境識別手段 lcで
は、収集された利用者 IDと、作業グループ ID記憶手段 lbに格納される作業グルー プ IDに登録された利用者 IDとを照合する。ここでは、収集された利用者 ID力 1人 でも一致すれば、安全領域と識別される。
[0031] ログイン要求があった場合、利用制限手段 Idは、利用者の利用者 IDを通信手段 1 aを介して取得して利用者の確認を行うとともに、設置環境識別手段 lcによって設置 環境をチェックさせる。利用者 IDが確認され、設置環境が安全であると識別されれば 、ログインを許可する。なお、設置環境が安全であれば、パスワードなどを用いた認 証とすることちでさる。
[0032] ファイルへのアクセスなどの操作要求があった場合、利用制限手段 Idは、設置環 境識別手段 lcによる安全領域の確認を行うとともに、さらに詳細な環境条件が設定さ れている場合には、その環境条件を確認する。そして、これらの条件を満たしたとき、 操作が許可される。なお、安全領域と識別されない場合は、条件はチェックされず、 ただちにアクセスを拒否する。
[0033] さらに、設置環境識別手段 lcによって設置環境が安全ではないと識別される状態 がー定時間継続した場合は、情報処理装置 1が安全領域外に設置されていると見な すことができるので、何らかの保全処理を行うようにしてもよ!、。
[0034] このように、本発明に係る情報処理装置 1では、利用者本人の利用者 IDにカ卩え、周 囲の環境が予め設定された条件を満たす、安全領域であるかどうかが識別される。そ して、安全領域外に情報処理装置 1が設置されていると識別されれば、その利用を 制限する。さらに、安全領域外である状態が一定期間継続する場合には、保護対象 の情報を消去するなどの保全対策を行うようにしてもょ 、。
[0035] これにより、情報処理装置が盗み出され、周囲の利用者 IDが収集できなくなつたよ うな場合は、ファイルへのアクセスが禁止され、情報漏洩を防止することができる。こ のとき、利用者が新たに作業を行う必要はないので、利用者の負担が増すことなぐ 安全性を向上させることができる。
[0036] 以下、実施の形態を、 RFIDを用いた PCセキュリティシステムに適用した場合を例 に図面を参照して詳細に説明する。
図 2は、本実施の形態の PCセキュリティシステムの構成及び PCのハードウェア構
成例を示すブロック図である。
[0037] 本発明の実施の形態の PCセキュリティシステムは、利用者の IDが記録された ID力 ード 20と、 IDを読み取り、セキュリティ管理を行う PC10と、から構成される。
PC10は、 CPU (Central Processing Unit) 101によって装置全体が制御されている 。 CPU101には、バス 108を介して RAM (Random Access Memory) 102、ハードデ イスクドライブ(HDD: Hard Disk Drive) 103、グラフィック処理装置 104、入力インタ フェース 105、通信インタフェース 106、及び RFIDインタフェース 107が接続されて いる。
[0038] RAM102には、 CPU101に実行させる OS (Operating System)のプログラムゃァ プリケーシヨンプログラムの少なくとも一部が一時的に格納される。また、 RAM102に は、 CPU101による処理に必要な各種データが格納される。 HDD103には、 OSや アプリケーションのプログラムが格納される。グラフィック処理装置 104には、モニタ 1 10が接続されており、 CPU101からの命令に従って画像をモニタ 110の画面に表示 させる。入力インタフェース 105には、キーボード 111やマウス 112が接続されており 、キーボード 111やマウス 112から送られてくる信号を、バス 108を介して CPU101 に送信する。通信インタフェース 106は、ネットワーク 109に接続されており、ネットヮ ーク 109を介して他装置との間でデータの送受信を行う。
[0039] RFIDインタフェース 107は、 RFIDタグ 200との間で無線通信を行って RFIDタグ に記録された利用者の 情報を読み出す RFIDリーダ 11を制御し、読み出された I Dを、バス 108を介して CPU101に送信する。
[0040] RFIDタグ 200は、 IDを記録するメモリ 201、読み出し制御を行う制御部 202、及び 通信処理部 203を有する。通信処理部 203は、 RFIDリーダ 11からの読み出し信号 を受信すると、制御部 202に対し読み出し要求を伝える。制御部 202は、メモリ 201 に格納される IDを読み出し、通信処理部 203を介して、 IDを RFIDリーダ 11へ返信 する。
[0041] このようなハードウェア構成によって、本発明の実施の形態の処理機能を実現する ことができる。
次に、本発明の実施の形態の PCセキュリティシステムのソフトウェアの構成例と、そ
の情報管理処理にっ 、て説明する。
[0042] 図 3は、本発明の実施の形態の PCセキュリティシステムの構成の一例を示した図で ある。図は、 PC10のソフトウェアの構成例と、 IDカードを保持する周辺人物の一例を 示している。
[0043] 本発明の実施の形態の PCセキュリティシステムは、 IDを読み取り、内部の保護情 報の管理を行う PC10と、要求に応じて保持する IDを送信する IDカード 20, 21,22, 23, 24, 25, 26, 27と、力ら構成される。
[0044] PC10は、 RFIDリーダ 11、登録部 12、設置環境識別部 13、利用制限部 14、及び 保護情報 DB16を具備する。
RFIDリーダ (受信器) 11は、通信可能領域にある RFIDタグ 200と無線通信を行つ て、 RFIDタグ 200が保持する IDを収集する。
[0045] 登録部 12は、作業グループメンバを決定し、その作業グループメンバを識別する I Dを登録した同一作業グループ ID15を生成する。同一作業グループ ID15の登録 の際は、 RFIDリーダ 11によって周囲の IDを収集し、収集した IDを作業グループメン バ候補として、登録を行う利用者に提供する。利用者が、これを修正し、最終的な同 一作業グループ ID15が生成される。また、このとき、操作要求を認める条件設定や、 保護情報 DB16に格納される保護対象の情報に関する保護処理方法などの設定も 行う。
[0046] 設置環境識別部 13は、利用制限部 14からの要求に応じて、 RFIDリーダ 11が収 集した周囲の IDと、同一作業グループ ID15とを照合し、設置環境が安全であるかど うかを識別する。識別結果は、検出した IDとともに利用制限部 14に通知する。
[0047] 利用制限部 14は、利用者によるログイン時、利用者からの操作要求時、及び定期 的な設置環境診断時、設置環境識別部 13を起動して設置環境を確認し、設置環境 に応じて利用者の利用を制限する。このとき、必要に応じて、同一作業グループ ID1 5を参照する。詳細は後述する。
[0048] 同一作業グループ ID15には、同一作業グループに登録された同一作業グループ IDが格納される。また、保護情報 DB16には、情報の漏洩を防がなければならない 保護対象の情報が格納される。
[0049] IDカード 20は、図 3に示したような、 PC10を利用する利用者 Aの ID (ID : Aとする) を記憶し、読み出し要求に応じて保持した IDを送信する RFIDタグ 200を具備する。 他の IDカード 21, 22, 23, 24, 25, 26, 27も同様の構成をとる。図の例では、禾 IJ用 者 Aは、 IDカード (ID : B) 21を保持する同僚 B、 IDカード (ID : C) 22を保持する同僚 C、及び IDカード (ID: D) 23を保持する同僚 Dと同一作業グループ 3を組む。また、 PC10の周囲には、 IDカード (ID : G) 24を保持する管理者 Gと、たまたま居合わせた IDカード (ID: E) 25を保持する出張者 E及び IDカード (ID: F) 26を保持する出張者 Fと、悪意を持ち、 IDカード (ID : H) 27を保持する第三者 H及び IDカードを持たない 第三者 Iがいる。
[0050] このような構成の PCセキュリティシステムの動作の概略を説明し、続いて各処理を 詳細に説明する。
最初に、登録部 12が起動され、同一作業グループ 3に属するメンバを登録した同 一作業グループ ID15が生成される。また、操作要求を認める条件設定や、保護対 象の情報に関する保護処理方法などの設定も行われる。
[0051] 登録処理が終了すると、利用者からのアクセスが可能となる。
利用制限部 14は、利用者からログイン要求が行われた場合は、当該利用者の ID カードから読み取った IDと、設置環境とを確認し、認証されれば、ログインを許可する 。なお、利用者が IDカードを保持していない場合でも、同一作業グループ 3のメンバ が確認できれば、パスワードなどの認証方法によって利用者の認証を行えるようにし てもよい。
[0052] また、利用者力も操作要求が行われた場合は、設置環境の確認とともに、予め設定 された操作要求を認める条件設定をチェックする。設置環境が安全であると確認され 、操作要求を認める条件に適合していれば、操作要求を許可する。なお、設置環境 の確認を含め、確認が必要ないと指定されている場合は、無条件に操作要求を許可 する。
[0053] 利用制限部 14は、また、定期的に、設置環境識別部 13を起動し、設置環境をチエ ックする。設置環境識別部 13によって、安全でないと識別される状態が一定期間継 続した場合には、登録処理などによって決められた保護処理を行う。保護処理は、た
とえば、 2段階に分ける。同一作業グループ IDが検知されない状態が第 1段階の設 定時間継続した場合には、まず、保護情報 DB16へのアクセスを禁止とする。ァクセ ス要求が入力された場合には、そのアクセス要求を不許可とする。第 1段階の処理が 終了してから、さらに、一定時間が経過した場合には、第 2段階として、保護情報 DB 16に格納される情報を消去する。たとえば、別データを上書きして、元の情報を読み 出せないようにする。
[0054] このように、 PC10の設置場所が安全領域である場合のみ、 PC10の利用が可能と なるばかりでなぐ安全領域外となって力も一定時間経過した場合には、自動的に保 護情報が消去されるので、より高度なセキュリティを確保することが可能となる。
[0055] 以下、登録処理と、利用制限処理について、詳細に説明する。
(1)登録処理
登録処理では、管理者の登録、 PCを紛失'盗難した場合の動作処理登録、操作要 求を認めるための必要条件の登録、及び同一作業グループの ID登録が行われる。
[0056] 管理者の登録と、 PCを紛失'盗難した場合の動作処理登録について説明する。
図 4は、本発明の実施の形態の登録情報 (管理者情報とファイル保護情報)の一例 を示した図である。
[0057] 管理者情報 401には、 PCのセキュリティ管理を行う管理者の IDが管理者 情報と して登録される。この例では、管理者 G24の IDが登録される。
ファイル保護情報 402には、 PCを紛失'盗難した場合の動作処理指定が登録され る。ここでは、保護処理を 2段階に分け、 1段階目として「アクセス制限」を行い、 2段 階目に「ファイル削除」を行うとする。図の例では、 1段階目のアクセス制限処理につ いて、「アクセス制限開始時間」を「1時間後」、「アクセス制限種類」を「読取不可」、「 アクセス制限対象」を「Filel, File2, File 3, File4, · · ·」とすることが設定されている 。すなわち、設置環境識別部 13によって安全でないと識別された状態が「1時間」続 いた場合には、「Filel, File2, File3, File4, · · ·」を「読取不可」とすることが指定さ れている。同様に、 2段階目のファイル削除処理について、「ファイル削除開始時間」 を「8時間後」、「ファイル削除対象」を「Filel, File2, File3, File4, · · ·」とすること が設定されている。すなわち、設置環境識別部 13によって安全でないと識別された
状態が「8時間」続いた場合には、「Filel, File2, File3, File4, · · ·」を「削除」とす ることが旨定されている。
[0058] 次に、操作要求を認めるための必要条件の登録について説明する。
図 5は、本発明の実施の形態の登録情報 (操作に必要な入力情報)の一例を示し た図である。図は、利用者 Aからの操作要求に対し、 RFIDタグ (RFIDタグ力も読み 出した HD情報)、 ID (キーボードなど力も入力された情報)、またはパスワード (キーボ ードなど力も入力された情報)のうち、どれが必要であるかを示している。
[0059] 利用認証 403には、利用者認証の必要条件として、「利用者 Aの ID (キーボード入 力)」、「利用者 Aのパスワード」が要求されることが登録されている。なお、利用者 A の RFIDタグから IDが読み出せた場合、利用認証 403は参照されな 、。
[0060] 管理者設定 Z変更 404には、管理者情報 401に登録された管理者の変更操作の 必要条件が登録されている。図の例では、管理者の変更には、「現在の管理者 (管 理者 G)の RFIDタグ」、「ID (キーボード入力)」、及び「パスワード」が必要となる。
[0061] 設定操作 405には、 PC10の設定の変更操作の必要条件が登録されている。図の 例では、「管理者 Gの RFIDタグ」、「利用者 Aの ID (キーボード入力)」、及び「利用者 Aのパスワード」が必要となる。
[0062] ファイルアクセス 406には、各ファイル、または、ファイルをまとめたファイル群(フォ ルダ)単位で、当該ファイルのアクセスを許可する必要条件が登録されている。図の 例では、ファイル Bのアクセスには「同僚 Bの RFIDタグ」、ファイル Cのアクセスには「 同僚 Cの RFIDタグ」、フォルダ Dのアクセスには「同僚 D」の RFIDタグが必要となる。 フォルダ Eのアクセスには、 「同一作業グループ 3の構成員 (利用者 A、同僚 B, C, D )のうち、少なくとも 3人の RFIDタグ」が必要となる。そして、フォルダ Fのアクセスには 、「同一作業グループ 3の構成員 (利用者 A、同僚 B, C, D)全員の RFIDタグ」が必 要となる。
[0063] このように、操作あるいは、アクセスファイルごとに、利用制限を行うことができる。
次に、同一作業グループの ID登録について説明する。
同一作業グループの ID登録処理では、 RFIDリーダ 11を用いて、周囲の IDを収集 し、モニタ 110に一覧を表示して、登録の負担を軽減する処理を行う。図 6は、本発
明の実施の形態の登録部における同一作業グループ ID候補収集処理の手順を示 したフローチャートである。
[0064] [ステップ S11] 収集時間が設定される。同一作業グループ IDの候補の収集にあ たっては、所定の収集時間の間、繰り返して収集を行う。そして、収集時間の間に収 集された IDを同一作業グループ IDの候補とする。
[0065] [ステップ S12] —定間隔ごとに RFIDリーダ 11を起動させ、一定範囲(RFIDリー ダ 11の通信範囲)に存在する RFIDタグの読み取りを行う。
[ステップ S 13] 時間を計時し、ステップ S 11で設定された収集時間を超えたかどう かを判定する。超えた場合は、処理を終了する。
[0066] [ステップ S14] RFIDリーダ 11によって RFIDタグの HD情報が検知されたかどうか を判定する。検知されていない場合は、ステップ S12に戻って、次の収集周期を待つ
[0067] [ステップ S15] RFIDリーダ 11によって、 RFIDタグの HD情報が検知された場合 には、収集したタグ情報を一時保存メモリに記憶する。
以上の処理手順が実行されると、収集時間内に検知された IDがー時保存メモリ〖こ 格納される。一時保存メモリに格納された IDが同一作業グループ ID候補になる。
[0068] ここでは、 IDカード保持者として、利用者 A、同僚 B、同僚 C、出張者 E、及び出張 者 Fが検出され、同一作業グループ ID候補として、モニタ 110に一覧表示されたとす る。
[0069] なお、図 3に示したように、同僚 Bと同僚 Cとは、利用者 Aの隣の席に座っている同 一作業グループ 3のメンバであるとする。同一作業グループ 3に属するもう 1人の同僚 Dは、上記の収集処理のときには、不在であったとする。また、出張者 Eと出張者 Fと は、近くを通過しただけで、同一作業グループ 3には属していないとする。
[0070] モニタ 110で一覧を確認した利用者 Aは、同一作業グループ IDの編集を行い、同 一作業グループ 3に属さない出張者 Eと、出張者 Fとの IDを削除する。また、収集さ れな力つた同僚 Dの IDを登録する。これにより、同一作業グループ ID15には、利用 者 A、同僚 B、同僚 C、及び同僚 Dの 4人が登録される。
[0071] このように、周辺の IDカードの HD情報を自動的に読み取り、同一作業グループ ID
候補として提示することにより、利用者の設定負担を軽減することができる。
(2)利用制限処理
利用制限部 14が実行する利用制限処理には、ログイン時の利用者認証による利 用制限、操作要求時の利用制限、及び定期的な設置環境診断に応じた利用制限が ある。
[0072] まず、ログイン時の利用者認証について説明する。
図 7は、本発明の実施の形態の PCにおけるログイン時の認証処理を示した図であ る。
ここでは、利用者 A力PC10を利用する場合について説明する。利用者 A力 PC10 にログインしょうとすると、利用制限部 14は、設置環境識別部 13を起動し、設置環境 の識別を行う。設置環境識別部 13は、 RFIDリーダ 11を起動し、 IDを収集させる。 R FIDリーダ 11では、利用者 Aの RFIDタグ A200の情報とともに、隣に着席する同僚 Bの RFIDタグ B201、及び同僚 Cの RFIDタグ C202からも IDが収集される。設置環 境識別部 13は、 RFIDリーダ 11が収集した ID (利用者 A、同僚 B、同僚 C)と、同一 作業グループ ID150に登録された ID (ID :A, ID : B, ID : C, ID : D)と照合する。同 一作業グループの複数人の IDが検知されたので、設置環境は安全領域内であると 識別する。利用者 Aの IDも確認されたので、利用制限部 14は、利用者 Aによるログ インを許可し、制限が力かっていない一般の PC情報 160へのアクセスを許可する。
[0073] なお、利用者 A力 Dカード 20を忘れた場合であっても、安全を確認し、ログインを 許可することちできる。
図 8は、本発明の実施の形態の PCにおける IDカードを忘れた場合のログイン認証 処理を示した図である。
[0074] 利用者 Aは、 PC10を利用しょうとした力 Dカード 20を忘れてしまった。この場合、 RFIDリーダ 11によって、隣に着席する同僚 Bの RFIDタグ B201、及び同僚 Cの RFI Dタグ C202からは、 IDが収集される。設置環境識別部 13は、 RFIDリーダ 11が収集 した ID (同僚 B、同僚 C)と、同一作業グループ ID150に登録された ID (ID : A, ID : B, ID : C, ID : D)と照合する。同一作業グループの複数人の IDが検知されたので、 設置環境は安全領域内であると識別する。利用制限部 14は、 PC10は安全領域に
あると確認されたので、利用者 Aに対して、図 5に示した利用認証 403の設定に基づ いて、 IDと、パスワードとの入力を要求する。そして、入力された IDとパスワードにより 利用者認証を行う。認証されれば、利用者 Aによるログインを許可し、制限がかかつ て ヽな 、一般の PC情報 160へのアクセスを許可する。
[0075] このように、設置環境を確認してから ID及びパスワードによる認証を行うので、 ID及 びパスワードだけによる認証と比較して、より堅牢な安全確認が可能である。なお、必 要に応じて、 RFIDタグによらない認証の場合、 RFIDタグによる認証よりも利用者の 利用を制限するようにしてもよい。利用認証 403に制限条件を設定しておけば、任意 の利用制限を行うことが可能である。
[0076] なお、上記の説明では、ログイン時の処理につ 、て説明した力 上記の設置環境 による利用制限処理は、操作要求時ごとに行うこともできる。
利用者力ゝらの操作要求が入力されるごとに、設置環境を識別し、安全領域であると 確認できた場合のみ、操作要求を許可する。
[0077] ここで、認証が認められな!/、場合にっ 、て説明する。
図 9は、本発明の実施の形態の PCにおけるログイン認証が不許可となる場合の処 理を示した図である。
[0078] RFIDタグ H207を持つ第三者 H、または、 RFIDタグを持たな!、第三者 Iがログイン 要求を行った場合、 RFIDリーダ 11によって収集されるのは、第三者 Hの IDのみで ある。設置環境識別部 13は、 RFIDリーダ 11が収集した ID (第三者 H)と、同一作業 グループ ID150に登録された ID (ID :A, ID : B, ID : C, ID : D)と照合する。同一作 業グループの複数人の IDが検知されな 、ので、設置環境は安全領域外であると識 別する。利用制限部 14は、 PC10は安全領域外にあると識別されたので、ログインを 許可しない。したがって、 PC情報 160へのアクセスは行えない。
[0079] このように、安全領域外であると識別されれば、一切の操作要求を拒否する。
次に、操作要求時の利用制限について、ファイルアクセスの場合で説明する。特に 条件設定がされていない場合には、無条件、上記のような操作要求時の設置環境の 確認を行う。以下では、図 5のようなファイルアクセス 406が設定されたファイルのァク セス要求に対する利用制限処理ついて説明する。
[0080] 図 10は、本発明の実施の形態のファイルアクセス制限がされたファイルの利用制 限処理を示した図である。
ここでは、利用者 Aが、ファイル Bの更新要求を行うとする。なお、ファイル Bは、図 5 に示したように、操作時に同僚 Bの RFIDタグ情報が必要である。
[0081] 利用者 Aによるファイル B161の更新要求が入力されると、利用制限部 14は、設置 環境識別部 13に対し、設置環境の識別を依頼する。設置環境識別部 13は、 RFIDリ ーダ 11によって、利用者 Aの RFIDタグ A200の IDと、同僚 Bの RFIDタグ B201の I Dを収集する。収集された ID (利用者 A、同僚 B)と、同一作業グループ ID150に登 録された ID (ID :A, ID : B, ID: C, ID: D)と照合し、設置環境は安全領域内である と識別する。識別結果とともに、検出 ID (利用者 A、同僚 B)を利用制限部 14に通知 する。利用制限部 14は、設置環境が安全領域であり、かつ、ファイル Bへのアクセス 要求を許可する条件である同僚 Bの RFIDタグ Bの IDが検知されたので、ファイル B1 61の更新を許可する。
[0082] 図 11は、本発明の実施の形態のファイルアクセス制限がされたファイルの利用制 限処理 (許可されな 、場合)を示した図である。
図 10と同様に、利用者 Aによるファイル B161の更新要求が入力される力 RFIDリ ーダ 11は、同僚 Bの RFIDタグ B201の情報を収集できな力つた場合である。なお、 図示しない同僚 Cなどによって、設置環境は、安全領域であると確認されたとする。こ の場合、利用制限部 14は、設置環境は安全領域であるが、ファイル Bへのアクセス 要求を許可する条件である同僚 Bの RFIDタグ Bの IDが検知されな!、ので、ファイル B161の更新を不可とする。
[0083] このように、重要なファイルであれば、設置環境にさらに、利用を制限する条件を設 定することができる。このとき、条件に、周囲の RFIDタグの検知を設定しておけば、 利用者に操作上の負担を強いることなぐ安全確認を行うことができる。
[0084] 図 12は、本発明の実施の形態のファイルアクセス制限 (複数人の ID要)がされたフ アイルの利用制限処理を示した図である。
ここでは、利用者 Aが、フォルダ Eの更新要求を行うとする。なお、フォルダ Eは、図 5に示したように、操作時に同一作業グループのメンバ、 4人のうち、 3人以上の RFI
Dタグ情報が必要である。
[0085] 利用者 Aによるフォルダ E162の更新要求が入力されると、利用制限部 14は、設置 環境識別部 13に対し、設置環境の識別を依頼する。設置環境識別部 13は、 RFIDリ ーダ 11によって、利用者 Aの RFIDタグ A200の ID、同僚 Bの RFIDタグ B201の ID 、及び同僚 Cの RFIDタグ C202の IDを収集する。収集された ID (利用者 A、同僚 B、 同僚 C)と、同一作業グループ ID150に登録された ID (ID : A, ID : B, ID : C, ID: D )と照合し、設置環境は安全領域内であると識別する。識別結果とともに、検出 ID (利 用者 A、同僚 B、同僚 C)を利用制限部 14に通知する。利用制限部 14は、設置環境 が安全領域であり、かつ、フォルダ Eへのアクセス要求を許可する条件である同一作 業グループ ID150のうちの 3人以上の IDが検知されたので、フォルダ E162の更新 を許可する。
[0086] このように、ファイルの重要度に応じて、任意の制約条件を設定することができる。
ここで、ファイル Zフォルダアクセス時の処理手順を説明する。図 13は、本発明の 実施の形態におけるファイル Zフォルダアクセス制御処理の手順を示したフローチヤ ートである。
[0087] ファイル Zフォルダのアクセス要求がされて、処理が起動される。
[ステップ S21] アクセス要求のあったファイル Zフォルダ力 IDの検知を用いたフ アイル Zフォルダのアクセス制御が必要であるかどうかを判定する。判定は、当該ファ ィル Zフォルダに関するファイルアクセス 406を参照して行う。設定がなければ、 ID 検知は不要とする。不要である場合には、処理を Aへ進める。
[0088] [ステップ S22] ID検知によるアクセス制御が必要である場合、 ID検知力 特定 ID を検知するものであるかどうかを判定する。特定の ID、すなわち、単一の IDが指定さ れている場合は、処理をステップ S23へ進める。特定の IDでない、すなわち、複数の IDが指定されて ヽる場合は、処理をステップ S 24へ進める。
[0089] [ステップ S23] 特定(単一)の IDが指定されて ヽる場合、その IDが検知されたか どうかを、 RFIDリーダ 11が収集した IDと、指定された IDとを照合して判定する。検知 された場合は、処理を Aへ進める。検知されない場合、処理をステップ S27へ進める
[0090] [ステップ S24] 特定の IDが指定されていない、すなわち、複数の IDが指定され ている場合、チェック時期(チェック方式)を判定する。チェック方式がアクセス時であ れば、処理をステップ S25へ進める。チェック方式がログイン時であれば、処理をステ ップ S26へ進める。
[0091] [ステップ S25] チェック方式がアクセス時であれば、アクセス時に指定された IDが 検知されたかどうかを判定する。「同一作業グループメンバのうち、 75パーセント以上 のメンバの ID」、「同一作業グループメンバのうち、 3人以上」などの指定がされてい た場合は、数をチェックし、判定を行う。 ID検知条件が成立した場合は、処理を Aへ 進める。 ID検知条件が不成立の場合は、処理をステップ S27へ進める。
[0092] [ステップ S26] チェック方式がログイン時であれば、ログイン時に指定された IDが 検知されたカゝどうかを判定する。この場合、ログイン時の判定結果、または、ログイン 時に検知した IDを保存しておき、判定を行う。判定の詳細は、ステップ S25と同様で ある。 ID検知条件が成立した場合は、処理を Aへ進める。 ID検知条件が不成立の場 合は、処理をステップ S27へ進める。
[0093] [ステップ S27] 条件不成立、及び該当 IDが検知されないので、アクセスを不可と し、処理を終了する。
[ステップ S28] 条件成立、及び該当 IDが検知されたので、アクセスを許可し、処 理を終了する。
[0094] 以上の処理手順が実行されることにより、周囲力 検出された IDに基づぐファイル Zフォルダのアクセス制御が行われる。
次に、設置環境診断に応じた利用制限について説明する。
[0095] 設置環境診断は、 PC10に電源が投入されるとともに開始され、定期的に、設置環 境の診断を行う。図 4に示したファイル保護情報 402に基づき、第 1段階として、ァク セス制限開始時間となった場合には、アクセス制限処理を行う。続いて、第 2段階とし て、ファイル削除開始時間になった場合には、ファイル削除処理を行う。
[0096] 図 14は、本発明の実施の形態の設置環境診断における第 1段階の処理手順を示 した図である。電源が投入されて、処理が開始される。
[ステップ S31] 経過時間を計時するための、経過時間情報も初期化する。
[0097] [ステップ S32] —定間隔で RFIDリーダ 11を起動させ、周囲の RFIDタグの HD情 報の収集を実行させる。収集した IDタグは、一時保存メモリに格納しておく。
[ステップ S33] 経過時間を更新し、設定時間 (第 1段階のアクセス制限開始時間) と比較し、経過時間が設定時間を超えたかどうか判定する。超過した場合は、処理を ステップ S36へ進める。
[0098] [ステップ S34] 設定時間を超えていないので、ステップ S32で収集された IDタグ が検知されたかどうかを判定する。 IDタグが検知されない場合は、処理をステップ S3
2へ戻し、次の収集処理を待つ。
[0099] [ステップ S35] IDタグが検知されたので、検知された IDタグが同一(作業)グルー プに登録されているかどうかを判定する。同一作業グループに該当する場合は、安 全領域であると見なし、処理をステップ S31へ戻し、経過時間の初期化からの処理を 行う。検知されない場合は、処理をステップ S32へ戻し、次の収集処理を待つ。
[0100] [ステップ S36] 同一グループの IDタグが検知されない期間が設定時間を超えた ので、対象ファイルを読み取り不可状態にする。
[ステップ S37] 管理者へ Eメールを送信して、第 1段階の処理を行ったことを通知 する。その後、処理を図 15に示す Cへ進める。
[0101] 図 15は、本発明の実施の形態の設置環境診断における第 2段階の処理手順を示 した図である。
図 14に示した Cから処理が継続される。
[0102] [ステップ S41] —定間隔で RFIDリーダ 11を起動させ、周囲の RFIDタグの HD情 報の収集を実行させる。収集した IDタグは、一時保存メモリに格納しておく。
[ステップ S42] 経過時間を更新し、設定時間 (第 2段階のファイル削除開始時間) と比較し、経過時間が設定時間を超えたかどうか判定する。超過した場合は、処理を ステップ S46へ進める。
[0103] [ステップ S43] 設定時間を超えていないので、ステップ S41で収集された IDタグ が検知されたかどうかを判定する。 IDタグが検知されない場合は、処理をステップ S4 1へ戻し、次の収集処理を待つ。
[0104] [ステップ S44] IDタグが検知されたので、検知された IDタグが同一(作業)グルー
プに登録されているかどうかを判定する。同一作業グループに該当する場合は、処 理をステップ S41へ戻し、次の収集処理を待つ。
[0105] [ステップ S45] 同一作業グループに該当する場合は、安全領域であると見なし、 処理を図 14に示した B (初期ィ匕)へ戻し、経過時間の初期化からの処理を行う。
[ステップ S46] 同一グループの IDタグが検知されな 、期間が設定時間を超えた ので、対象ファイルを別データで上書きし、読み取れないようにする。
[0106] [ステップ S47] 対象ファイル情報を削除し、対象ファイルへのアクセスができない ようにする。
[ステップ S48] 管理者へ Eメールを送信して、第 2段階の処理を行ったことを通知 し、処理を終了する。
[0107] 以上の処理手順が実行されることにより、安全領域外であることが検出され、所定の 時間が経過した場合には、ファイルの保護処理が行われる。
なお、同一作業グループ IDの登録は、必要に応じて、適宜変更される。たとえば、 作業グループメンバが入れ替わったとき、あるいは、 PC10が可搬型であって、出張 などによって作業時の周囲のメンバが変わる場合など、環境に合わせて登録を変更 する。登録変更は、図 5の設定操作 405に示したような条件を必要とするため、安全 に登録変更を行うことができる。
[0108] また、上記の説明では、利用者などが持つ RFIDタグの情報に基づ 、て設置環境 を確認するとした力 本発明はこれに限定されない。 RFIDタグば力りでなぐ他の無 線通信機能を用いることができる。
[0109] 図 16は、本発明の他の実施の形態の一例を示した図である。
PC510は、装置識別情報を記憶するメモリ 511、情報管理を行う情報管理部 512
、及び他の PCとの間で無線通信を行う無線通信回路 513を具備する。 PC520も同 様に、メモリ 521、情報管理部 522、及び無線通信回路 523を具備する。
[0110] PC510及び PC520は、無線通信回路 513及び無線通信回路 523を介して、互い の装置識別情報を交換している。また、同様の構成を持つ、 PC530、 PC540、及び
PC550の装置識別情報も収集する。
[0111] 情報管理部 512は、他の PCから収集した装置識別情報と、予め設定された安全領
域を示す他の PCの装置識別情報とを照合し、自装置が設置されて!、る設置環境が 安全領域であるのかどうかを識別する。
[0112] このような構成によっても、 PCの設置環境が安全領域にない場合に、情報の漏洩 を防止し、セキュリティを向上させることができる。
なお、上記の処理機能は、コンピュータによって実現することができる。その場合、 情報処理装置が有すべき機能の処理内容を記述したプログラムが提供される。その プログラムをコンピュータで実行することにより、上記処理機能がコンピュータ上で実 現される。処理内容を記述したプログラムは、コンピュータで読み取り可能な記録媒 体に記録しておくことができる。コンピュータで読み取り可能な記録媒体としては、磁 気記録装置、光ディスク、光磁気記録媒体、半導体メモリなどがある。磁気記録装置 には、ハードディスク装置 (HDD)、フレキシブルディスク (FD)、磁気テープなどがあ る。光ディスクには、 DVD (Digital Versatile Disc)、 DVD— RAM (Random Access Memory)、 CD— ROM (Compact Disc Read Only Memory)、 CD— R (Recordable) ZRW (Rewritable)などがある。光磁気記録媒体には、 MO (Magneto- Optical disk) などがある。
[0113] プログラムを流通させる場合には、たとえば、そのプログラムが記録された DVD、 C D— ROMなどの可搬型記録媒体が販売される。また、プログラムをサーバコンビユー タの記憶装置に格納しておき、ネットワークを介して、サーバコンピュータから他のコ ンピュータにそのプログラムを転送することもできる。
[0114] プログラムを実行するコンピュータは、たとえば、可搬型記録媒体に記録されたプロ グラムもしくはサーバコンピュータ力 転送されたプログラムを、 自己の記憶装置に格 納する。そして、コンピュータは、自己の記憶装置力 プログラムを読み取り、プロダラ ムに従った処理を実行する。なお、コンピュータは、可搬型記録媒体から直接プログ ラムを読み取り、そのプログラムに従った処理を実行することもできる。また、コンビュ ータは、サーバコンピュータ力 プログラムが転送されるごとに、逐次、受け取ったプ ログラムに従った処理を実行することもできる。
[0115] 上記については単に本発明の原理を示すものである。さらに、多数の変形、変更が 当業者にとって可能であり、本発明は上記に示し、説明した正確な構成および応用
例に限定されるものではなぐ対応するすべての変形例および均等物は、添付の請 求項およびその均等物による本発明の範囲とみなされる。
符号の説明
1 情報処理装置
la 通信手段 (受信器)
lb 作業グループ ID記憶手段
lc 設置環境識別手段
Id 利用制限手段
le 保護情報データベース (DB)
2a, 2b, 2c, 2d 無線通信器
3 同一作業グループ
Claims
[1] 利用者識別情報を保持する無線通信器カゝら前記利用者識別情報を取得し、取得 した前記利用者識別情報に応じて利用制限を行う情報管理プログラムにおいて、 コンピュータを、
通信可能な範囲内に存在し、利用者あるいは装置を識別する所定の識別情報を 保持する前記無線通信器と無線通信を行って前記識別情報を収集する通信手段、 所定の作業が許可される安全領域内に存在する利用者あるいは装置を含む作業 グループメンバの識別情報が登録された作業グループ識別情報を記憶する作業グ ループ識別情報記憶手段から所望の作業に関する前記作業グループ識別情報を 読み出し、前記通信手段によって収集された前記識別情報と照合して、設置環境が 安全であるかどうかを識別する設置環境識別手段、
前記設置環境識別手段によって識別された前記設置環境に応じて、前記利用者 の利用を制限する利用制限手段、
として機能させることを特徴とする情報管理プログラム。
[2] 前記利用制限手段として、
前記利用者力 ログイン要求があった場合は、前記通信手段を介して取得した前 記利用者の識別情報によって前記利用者が確認され、かつ、前記設置環境識別手 段によって設置環境が安全であると識別されれば、前記利用者を認証し、ログインを 許可する、
処理をコンピュータに実行させることを特徴とする請求の範囲第 1項記載の情報管 理プログラム。
[3] 前記利用制限手段として、
前記通信手段によって前記利用者の前記利用者識別情報が収集できなかった場 合は、前記設置環境識別手段によって設置環境が安全であると確認されれば、前記 利用者による作業を許可する、
処理をコンピュータに実行させることを特徴とする請求の範囲第 1項記載の情報管 理プログラム。
[4] 前記利用制限手段として、
前記利用者識別情報が収集できなカゝつた前記利用者によるログインを許可する場 合は、前記利用者に対し入力操作が可能な認証情報を要求し、入力された前記認 証情報に基づ!ヽて前記利用者の認証を行 ヽ、認証された場合に前記作業を許可す る、
処理をコンピュータに実行させることを特徴とする請求の範囲第 3項記載の情報管 理プログラム。
[5] 前記利用制限手段として、
前記利用者によって所定の作業が要求されるごとに随時、前記設置環境識別手段 よって設置環境を識別させ、前記設置環境識別手段によって設置環境が安全である と識別されれば、前記所定の作業を許可する、
処理をコンピュータに実行させることを特徴とする請求の範囲第 1項記載の情報管 理プログラム。
[6] 前記コンピュータを、さらに、
前記作業グループ識別情報の登録が行われる場合に、前記通信手段を動作させ て通信可能範囲に存在する前記無線通信器から前記識別情報を収集し、所定の期 間の間に収集した前記識別情報を、前記利用者あるいは装置の前記作業グループ メンバに関する前記作業グループ識別情報の登録候補とする登録手段、
として機能させることを特徴とする請求の範囲第 1項記載の情報管理プログラム。
[7] 前記設置環境識別手段として、
前記利用制限手段からの起動で、前記通信手段によって前記無線通信器から前 記識別情報を収集し、収集した前記識別情報と、前記作業グループ識別情報記憶 手段に格納されて!ヽる前記作業グループ識別情報とを照合して、前記作業グループ 識別情報と一致する前記識別情報が収集できた場合には、設置環境は安全であると 識別し、前記作業グループ識別情報と一致する前記識別情報が収集できな!ヽ場合 には、設置環境は安全でないと識別する、
処理をコンピュータに実行させることを特徴とする請求の範囲第 1項記載の情報管 理プログラム。
[8] 前記利用制限手段として、
所定の周期で、前記設置環境識別手段を起動して設置環境を識別させ、前記設 置環境識別手段によって設置環境が安全でないと識別された期間が一定期間継続 した場合には、設置環境が安全領域外であると識別し、保護対象の情報の保護処理 を実行する、
処理をコンピュータに実行させることを特徴とする請求の範囲第 1項記載の情報管 理プログラム。
[9] 前記利用制限手段として、
前記安全領域外であると識別させる期間として、前記識別情報が収集できなくなつ て力 の経過時間に応じて、少なくとも第 1の段階と、前記第 1の段階が経過した後の 第 2の段階とを設定し、段階ごとに経過時間に応じて前記保護対象の情報の保護処 理を実行する、
処理をコンピュータに実行させることを特徴とする請求の範囲第 8項記載の情報管 理プログラム。
[10] 前記利用制限手段として、
前記識別情報が収集できなくなつてからの期間が、前記第 1の段階が経過した場 合は、保護対象の対象ファイルの読み取り要求を不許可とし、
前記識別情報が収集できなくなつてからの期間が、前記第 2の段階が経過した場 合は、保護対象の対象ファイルを削除する、
処理をコンピュータに実行させることを特徴とする請求の範囲第 9項記載の情報管 理プログラム。
[11] 前記利用制限手段として、
前記保護対象の対象ファイルが格納される記憶手段の領域に、任意のデータの上 書きによって前記対象ファイルを削除する、
処理をコンピュータに実行させることを特徴とする請求の範囲第 10項記載の情報 管理プログラム。
[12] 前記利用制限手段として、
前記第 1の段階が経過して前記保護対象の対象ファイルの読み取り要求を不許可 とした後、前記第 2の段階が経過する前に、前記設置環境識別手段によって設置環
境が安全であると識別された場合は、以降の前記保護対象の対象ファイルの読み取 り要求を許可する、
処理をコンピュータに実行させることを特徴とする請求の範囲第 10項記載の情報 管理プログラム。
[13] 前記設置環境識別手段として、
前記第 1の段階、及び前記第 2の段階に到達した場合には、ネットワークに接続す るネットワーク通信手段を介して管理者宛の通知を送信する、
処理をコンピュータに実行させることを特徴とする請求の範囲第 9項記載の情報管 理プログラム。
[14] 前記利用制限手段として、
記憶手段に格納されるファイルへのアクセス要求が入力された場合には、ファイル 単位あるいは複数のファイルカゝら成るファイル群単位で設定された前記アクセス要求 を許可するアクセス許可環境条件と、前記設置環境識別手段により識別された前記 設置環境とを照合し、適合する場合のみ前記アクセス要求を許可する、
処理をコンピュータに実行させることを特徴とする請求の範囲第 1項記載の情報管 理プログラム。
[15] 利用者識別情報を保持する無線通信器カゝら前記利用者識別情報を取得し、取得 した前記利用者識別情報に応じて利用制限を行う情報処理装置において、 通信可能な範囲内に存在し、利用者あるいは装置を識別する所定の識別情報を 保持する前記無線通信器と無線通信を行って前記識別情報を収集する通信手段と 所定の作業が許可される安全領域内に存在する利用者あるいは装置を含む作業 グループメンバの識別情報が登録された作業グループ識別情報を記憶する作業グ ループ識別情報記憶手段と、
前記作業グループ識別情報記憶手段から所望の作業に関する前記作業グループ 識別情報を読み出し、前記通信手段によって収集された前記識別情報と照合して、 設置環境が安全であるかどうかを識別する設置環境識別手段と、
前記設置環境識別手段によって識別された前記設置環境に応じて、前記利用者
の利用を制限する利用制限手段と、
を有することを特徴とする情報処理装置。
[16] 前記通信手段は、 RFIDによって前記識別情報を送信する前記無線通信器と無線 通信を行う RFIDリーダである、
ことを特徴とする請求の範囲第 15項記載の情報処理装置。
[17] 利用者識別情報を保持する無線通信器カゝら前記利用者識別情報を取得し、取得 した前記利用者識別情報に応じて利用制限を行う情報管理方法において、 通信手段が、通信可能な範囲内に存在し、利用者あるいは装置を識別する所定の 識別情報を保持する前記無線通信器と無線通信を行って前記識別情報を収集し、 設置環境識別手段が、所定の作業が許可される安全領域内に存在する利用者あ るいは装置を含む作業グループメンバの識別情報が登録された作業グループ識別 情報を記憶する作業グループ識別情報記憶手段から所望の作業に関する前記作業 グループ識別情報を読み出し、前記通信手段によって収集された前記識別情報と照 合して、設置環境が安全であるかどうかを識別し、
利用制限手段が、前記設置環境識別手段によって識別された前記設置環境に応 じて、前記利用者の利用を制限する、
手順を行うことを特徴とする情報管理方法。
[18] 利用者識別情報を保持する無線通信器カゝら前記利用者識別情報を取得し、取得 した前記利用者識別情報に応じて利用制限を行う情報管理プログラムを記録したコ ンピュータ読み取り可能な記録媒体において、
コンピュータを、
通信可能な範囲内に存在し、利用者あるいは装置を識別する所定の識別情報を 保持する前記無線通信器と無線通信を行って前記識別情報を収集する通信手段、 所定の作業が許可される安全領域内に存在する利用者あるいは装置を含む作業 グループメンバの識別情報が登録された作業グループ識別情報を記憶する作業グ ループ識別情報記憶手段から所望の作業に関する前記作業グループ識別情報を 読み出し、前記通信手段によって収集された前記識別情報と照合して、設置環境が 安全であるかどうかを識別する設置環境識別手段、
前記設置環境識別手段によって識別された前記設置環境に応じて、前記利用者 の利用を制限する利用制限手段、
として機能させる情報管理プログラムを記録したことを特徴とするコンピュータ読み 取り可能な記録媒体。
Priority Applications (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| PCT/JP2006/318401 WO2008032405A1 (en) | 2006-09-15 | 2006-09-15 | Inforation management program and information processing device |
Applications Claiming Priority (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| PCT/JP2006/318401 WO2008032405A1 (en) | 2006-09-15 | 2006-09-15 | Inforation management program and information processing device |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| WO2008032405A1 true WO2008032405A1 (en) | 2008-03-20 |
Family
ID=39183476
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| PCT/JP2006/318401 Ceased WO2008032405A1 (en) | 2006-09-15 | 2006-09-15 | Inforation management program and information processing device |
Country Status (1)
| Country | Link |
|---|---|
| WO (1) | WO2008032405A1 (ja) |
Citations (6)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| JP2004246419A (ja) * | 2003-02-10 | 2004-09-02 | Sharp Corp | データ処理装置 |
| JP2005228351A (ja) * | 2005-03-04 | 2005-08-25 | Sharp Corp | 通信ネットワークにおける簡易セキュリティ設定方法およびそのための装置、ならびに通信ネットワークにおける簡易セキュリティ設定プログラムを記録したコンピュータで読取可能な記録媒体 |
| JP2005293034A (ja) * | 2004-03-31 | 2005-10-20 | Fuji Photo Film Co Ltd | 医療情報管理方法及びサーバ及びプログラム |
| JP2005322240A (ja) * | 2004-05-03 | 2005-11-17 | Sony Computer Entertainment Inc | インデックス付きレジスタアクセス用の方法および装置 |
| JP2006092367A (ja) * | 2004-09-24 | 2006-04-06 | Fuji Xerox Co Ltd | 共同作業空間形成装置、共同作業空間形成方法およびプログラム |
| JP2006092170A (ja) * | 2004-09-22 | 2006-04-06 | Fuji Xerox Co Ltd | リソースアクセス管理システムおよびリソースアクセス管理方法 |
-
2006
- 2006-09-15 WO PCT/JP2006/318401 patent/WO2008032405A1/ja not_active Ceased
Patent Citations (6)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| JP2004246419A (ja) * | 2003-02-10 | 2004-09-02 | Sharp Corp | データ処理装置 |
| JP2005293034A (ja) * | 2004-03-31 | 2005-10-20 | Fuji Photo Film Co Ltd | 医療情報管理方法及びサーバ及びプログラム |
| JP2005322240A (ja) * | 2004-05-03 | 2005-11-17 | Sony Computer Entertainment Inc | インデックス付きレジスタアクセス用の方法および装置 |
| JP2006092170A (ja) * | 2004-09-22 | 2006-04-06 | Fuji Xerox Co Ltd | リソースアクセス管理システムおよびリソースアクセス管理方法 |
| JP2006092367A (ja) * | 2004-09-24 | 2006-04-06 | Fuji Xerox Co Ltd | 共同作業空間形成装置、共同作業空間形成方法およびプログラム |
| JP2005228351A (ja) * | 2005-03-04 | 2005-08-25 | Sharp Corp | 通信ネットワークにおける簡易セキュリティ設定方法およびそのための装置、ならびに通信ネットワークにおける簡易セキュリティ設定プログラムを記録したコンピュータで読取可能な記録媒体 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US8041787B2 (en) | Application software and data management method, management system, and thin client terminal, management server and remote computer used therefor | |
| JP5270694B2 (ja) | 機密ファイルを保護するためのクライアント・コンピュータ、及びそのサーバ・コンピュータ、並びにその方法及びコンピュータ・プログラム | |
| EP3777082B1 (en) | Trusted platform module-based prepaid access token for commercial iot online services | |
| CN101371259B (zh) | 文件管理系统及方法、以及便携终端装置 | |
| JP4781692B2 (ja) | クライアントのi/oアクセスを制限する方法、プログラム、システム | |
| CN1985260A (zh) | 使用外部设备的计算机控制方法及计算机控制系统 | |
| JP2005122474A (ja) | 情報漏洩防止プログラムおよびその記録媒体並びに情報漏洩防止装置 | |
| RU2581559C2 (ru) | Система и способ применения политик безопасности к накопителю в сети | |
| JP4044126B1 (ja) | 情報漏洩抑止装置、情報漏洩抑止プログラム、情報漏洩抑止記録媒体、及び情報漏洩抑止システム | |
| JP2005284679A (ja) | リソース利用ログ取得プログラム | |
| US9471808B2 (en) | File management system and method | |
| JP2005157429A (ja) | 情報処理装置、情報処理システム及びプログラム | |
| JP4786501B2 (ja) | データ管理システム、データ管理方法、情報処理装置 | |
| CN101765821A (zh) | 指纹读取器重置系统和方法 | |
| JPWO2004084075A1 (ja) | 情報アクセス制御方法、アクセス制御プログラム及び外部記録媒体 | |
| JP4613198B2 (ja) | 画像形成システム | |
| WO2008032405A1 (en) | Inforation management program and information processing device | |
| US20070055478A1 (en) | System and method for active data protection in a computer system in response to a request to access to a resource of the computer system | |
| JP4444554B2 (ja) | パスワード保存制限方法 | |
| KR100778749B1 (ko) | 컴퓨터 단말기의 보안 장치 및 상기 보안 장치의 동작 방법 | |
| JP2003323344A (ja) | アクセス制御システム、アクセス制御方法及びアクセス制御プログラム | |
| JP2004185255A (ja) | 個人情報管理及び生体認証を兼ね備えたフロッピー(登録商標)ディスク型生体情報認証装置 | |
| JP2006236028A (ja) | 画像出力装置、ホスト装置及び画像出力システム | |
| KR20060065923A (ko) | 네트워크 기반의 금융 자동화기기 보안관리 시스템 및 그제어방법 | |
| JP2003293634A (ja) | 入退室管理装置、入退室管理方法及び入退室管理プログラム |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| 121 | Ep: the epo has been informed by wipo that ep was designated in this application |
Ref document number: 06810193 Country of ref document: EP Kind code of ref document: A1 |
|
| NENP | Non-entry into the national phase |
Ref country code: DE |
|
| 122 | Ep: pct application non-entry in european phase |
Ref document number: 06810193 Country of ref document: EP Kind code of ref document: A1 |
|
| NENP | Non-entry into the national phase |
Ref country code: JP |