WO2015166552A1 - 情報処理装置、情報処理方法、プログラム、記憶媒体及びパスワード入力装置 - Google Patents

情報処理装置、情報処理方法、プログラム、記憶媒体及びパスワード入力装置 Download PDF

Info

Publication number
WO2015166552A1
WO2015166552A1 PCT/JP2014/061945 JP2014061945W WO2015166552A1 WO 2015166552 A1 WO2015166552 A1 WO 2015166552A1 JP 2014061945 W JP2014061945 W JP 2014061945W WO 2015166552 A1 WO2015166552 A1 WO 2015166552A1
Authority
WO
WIPO (PCT)
Prior art keywords
password
old
terminal
identification information
changed
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Ceased
Application number
PCT/JP2014/061945
Other languages
English (en)
French (fr)
Inventor
英士 福田
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Rakuten Group Inc
Original Assignee
Rakuten Inc
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Rakuten Inc filed Critical Rakuten Inc
Priority to PCT/JP2014/061945 priority Critical patent/WO2015166552A1/ja
Priority to JP2014552413A priority patent/JP5690030B1/ja
Priority to US15/307,413 priority patent/US10282527B2/en
Priority to TW104110686A priority patent/TWI512523B/zh
Publication of WO2015166552A1 publication Critical patent/WO2015166552A1/ja
Anticipated expiration legal-status Critical
Ceased legal-status Critical Current

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/45Structures or tools for the administration of authentication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/083Network architectures or network communication protocols for network security for authentication of entities using passwords
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0876Network architectures or network communication protocols for network security for authentication of entities based on the identity of the terminal or configuration, e.g. MAC address, hardware or software configuration or device fingerprint
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0891Revocation or update of secret information, e.g. encryption key update or rekeying
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3226Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using a predetermined code, e.g. password, passphrase or PIN
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2117User registration

Definitions

  • the present invention relates to an information processing device, an information processing method, a program, a storage medium, and a password input device that can be shared by a plurality of people.
  • the password when the user is authenticated as one user in one company or group, the password can be commonly used by a plurality of persons belonging to one company or the like.
  • the handling of passwords when used in common by a plurality of people has not been studied in detail.
  • an object of the present invention is to provide an information processing device, an information processing method, a program, a storage medium, and a password input device capable of facilitating handling of a password commonly used by a plurality of persons. There is to do.
  • an information processing apparatus includes a communication unit, a storage unit, and a control unit.
  • the communication unit is configured to be able to communicate with a terminal.
  • storage part memorize
  • the control unit In response to a change request for the first password from the terminal, a change screen on which a second password different from the first password and change user identification information for identifying the change request source user can be input Generate a page and control the communication unit to transmit the change screen page to the terminal, When the second password and the changed user identification information input via the change screen page are received, the first password is updated to the second password, and the first password is changed to the old one.
  • Controlling the storage unit to store the password in association with the changed user identification information It is determined whether the password received for the authentication from the terminal after the update matches the second password. If the password does not match the second password, the received password is changed to the old password. It is determined whether or not it matches the password, and when it matches the old password, notification information indicating that the password has been changed, including the changed user identification information associated with the old password, is sent to the terminal.
  • the communication unit is controlled to transmit.
  • the notification information it is possible to transmit the notification information to a user who is one of a plurality of users who share one password and who has input the old password without knowing that the password has been changed. Become. Thereby, the user who acquired the notification information can acquire the password after the change by contacting the user who has changed the password. Therefore, it is possible to facilitate the handling of passwords commonly used by a plurality of people.
  • the storage unit further stores a plurality of old passwords used for previous authentication, The control unit When it is determined whether the password received for the authentication matches at least one of the plurality of old passwords, and it is determined that the password matches at least one of the plurality of old passwords, the communication unit may be controlled to transmit the notification information to the terminal.
  • the changed user identification associated with the first password (old password) It is possible to transmit notification information including information indicating that the password has been changed.
  • the plurality of old passwords may be a plurality of old passwords used for authentication before a predetermined period.
  • control unit Controlling the storage unit to store the identification information of the terminal that is the request source of the first password change as the identification information of the first terminal; Controlling the storage unit to store the identification information of the terminal that received the updated password as the identification information of the second terminal; When the received password matches the old password, it is determined whether or not the identification information of the first terminal matches the identification information of the second terminal.
  • the communication unit may be controlled to transmit the notification information to the terminal.
  • the notification information can be transmitted to terminals other than the terminal that has been changed to the second password. That is, the notification information is not transmitted to the terminal used by the user who has changed to the second password, and the above-described troublesomeness can be avoided.
  • An information processing method includes: In response to a change request for the first password for authenticating the user from the terminal, a second password different from the first password and change user identification information for identifying the change requesting user are input. Generating a possible change screen page and sending the change screen page to the terminal; When the second password and the changed user identification information input via the change screen page are received, the first password is updated to the second password, and the first password is changed to the old one.
  • a program according to still another aspect of the present invention is provided in an information processing apparatus.
  • a second password different from the first password and change user identification information for identifying the change requesting user are input.
  • the first password is updated to the second password, and the first password is changed to the old one.
  • the recording medium is In response to a change request for the first password for authenticating the user from the terminal, a second password different from the first password and change user identification information for identifying the change requesting user are input. Generating a possible change screen page and sending the change screen page to the terminal; When the second password and the changed user identification information input via the change screen page are received, the first password is updated to the second password, and the first password is changed to the old one.
  • storage part memorize
  • the display unit is configured to be able to display an image.
  • the control unit Controlling the display unit to display a second screen different from the first password and a change screen page on which change user identification information for identifying the user can be input; When the second password and the changed user identification information are input via the change screen page, the first password is updated to the second password, and the first password is used as the old password.
  • Controlling the storage unit to store in association with the changed user identification information It is determined whether the password entered for the authentication after the update matches the second password. If the password entered does not match the second password, the entered password matches the old password. If the password matches the old password, the notification screen page indicating that the password has been changed including the changed user identification information associated with the old password is displayed. Control the display.
  • the notification screen page can be displayed to one of a plurality of users who share one password and who has entered the old password without knowing that the password has been changed. It becomes. Therefore, it is possible to facilitate the handling of passwords commonly used by a plurality of people.
  • An information processing method includes: Displaying a second screen different from the first password for authenticating the user, and a change screen page allowing input of changed user identification information for identifying the user; Updating the first password to the second password when the second password and the changed user identification information are input via the change screen page; Controlling the storage unit to store the first password in association with the changed user identification information as an old password; Determining whether the password entered for the authentication after the update matches the second password; Determining whether the input password matches the old password if it does not match the second password; Controlling the display unit to display a notification screen page indicating that the password has been changed, including the changed user identification information associated with the old password when the old password is matched. Including.
  • an information processing device As described above, according to the present invention, it is possible to provide an information processing device, an information processing method, a program, a storage medium, and a password input device capable of facilitating handling of a password commonly used by a plurality of persons. it can.
  • the effects described here do not necessarily limit the present invention.
  • FIG. 1 is a diagram illustrating a configuration of an information processing system according to the present embodiment.
  • this system includes a wedding hall information providing server (information providing server, information processing apparatus) 100 on the Internet 50 and a plurality of wedding hall terminals (terminals) 200.
  • the information providing server 100 is a server managed by the operating company of the wedding hall information providing site, and is connected via the Internet 50 to the wedding hall terminal 200 and the user terminal 300 of the user who receives the wedding hall information providing service.
  • the wedding hall terminal 200 is a terminal device used by a plurality of wedding hall employees registered in the wedding hall information providing site, such as a PC (Personal Computer), a tablet PC, or the like.
  • the wedding hall terminal 200 includes, for example, a plurality of wedding hall terminals 200 used by a plurality of employees of the same wedding hall. In the following description, each employee is also referred to as a “user” of the wedding hall terminal 200.
  • the information provision server 100 In response to an access request from the wedding hall terminal 200 to the wedding hall information provision site, the information provision server 100 generates a web page (HTML (HyperText Markup Language) document) that can edit wedding hall information, Reply to the wedding hall terminal 200.
  • HTML HyperText Markup Language
  • the wedding hall terminal 200 accesses the information providing server 100, receives the web page, and displays it on the screen by a browser. Access from the wedding hall terminal 200 to the information providing server 100 requires authentication using a wedding hall ID and password determined for each wedding hall. That is, a plurality of employees at the same wedding hall can access the site from different wedding hall terminals 200 using the same password.
  • Each user using a plurality of wedding hall terminals 200 can update information related to the wedding hall to which the user belongs through the screen displayed by the browser.
  • the wedding hall terminal 200 can access the information providing server 100 and acquire the tour reservation status, reservation person information, etc. for its own ceremony hall from the user terminal 300.
  • the user terminal 300 is a terminal operated by a user who receives the wedding hall information provision service, and is, for example, a PC, a smartphone, a mobile phone, a tablet PC, or the like.
  • the user terminal 300 can access the information providing server 100 to browse information on a specific wedding hall, or execute a wedding hall reservation process or the like.
  • FIG. 2 is a diagram illustrating a hardware configuration of the information providing server 100.
  • an information providing server 100 includes a CPU (Central Processing Unit) 11, a ROM (Read Only Memory) 12, a RAM (Random Access Memory) 13, an input / output interface 15, and a bus for connecting them together. 14.
  • CPU Central Processing Unit
  • ROM Read Only Memory
  • RAM Random Access Memory
  • the CPU 11 appropriately accesses the RAM 13 and the like as necessary, and performs overall control of the entire blocks of the information providing server 100 while performing various arithmetic processes.
  • the ROM 12 is a non-volatile memory in which an OS to be executed by the CPU 11, firmware such as programs and various parameters are fixedly stored.
  • the RAM 13 is used as a work area for the CPU 11 and temporarily holds the OS, various applications being executed, and various data being processed.
  • a display unit 16 an operation receiving unit 17, a storage unit 18, a communication unit 19 and the like are connected to the input / output interface 15.
  • the display unit 16 is a display device using, for example, an LCD (Liquid Crystal Display), an OELD (Organic ElectroLuminescence Display), a CRT (Cathode Ray Tube), or the like.
  • LCD Liquid Crystal Display
  • OELD Organic ElectroLuminescence Display
  • CRT Cathode Ray Tube
  • the operation receiving unit 17 is, for example, a pointing device such as a mouse, a keyboard, a touch panel, and other input devices.
  • the operation reception unit 17 is a touch panel
  • the touch panel can be integrated with the display unit 16.
  • the storage unit 18 is, for example, a nonvolatile memory such as an HDD (Hard Disk Drive), a flash memory (SSD; Solid State Drive), or other solid-state memory.
  • the storage unit 18 stores the OS, various applications, and various data.
  • the communication unit 19 is, for example, an NIC (Network Interface Card) for Ethernet, and performs communication processing between the wedding hall terminal 200 and the user terminal 300.
  • NIC Network Interface Card
  • FIG. 3 is a diagram showing a hardware configuration of the wedding hall terminal 200. As shown in the figure, the hardware configuration of the wedding hall terminal 200 is basically the same as the hardware configuration of the information providing server 100.
  • the wedding hall terminal 200 includes a CPU 21, a ROM 22, a RAM 23, an input / output interface 25, and a bus 24, a display unit 26, an operation reception unit 27, a storage unit 28, and a communication unit 29.
  • the display unit 26 may be externally connected to the wedding hall terminal 200.
  • an HDD Hard Disk Disk Drive
  • HDD Hard Disk Disk Drive
  • CPU21 controls each block, such as the memory
  • the operation accepting unit 27 is, for example, a pointing device such as a mouse, a keyboard, a touch panel, and other input devices.
  • the operation reception unit 27 is a touch panel, the touch panel can be integrated with the display unit 26.
  • the storage unit 28 is, for example, a flash memory, and stores various software such as an OS and a browser, data necessary for executing them, and the like.
  • the communication unit 29 is an NIC for Ethernet, for example, and is responsible for communication processing with the information providing server 100.
  • the hardware configuration of the user terminal 300 is the same as that of the wedding hall terminal 200.
  • the information providing server 100 has a wedding hall information database 31 in the storage unit 18.
  • the wedding hall information database 31 stores the wedding hall name, authentication ID, password, and other information related to the wedding hall (the location of the wedding hall, wedding plan, price, evaluation, etc.) for each wedding hall.
  • the wedding hall information database 31 stores a first password for authenticating an employee (user) of each wedding hall as a password for each wedding hall.
  • FIG. 4 is a flowchart showing an operation example of the information providing server 100.
  • a user who is an employee of one wedding hall changes the password for logging in to the wedding hall information providing site by using the wedding hall terminal 200, and then another user who is an employee of the wedding hall changes the password before the change.
  • the user wishes to log in with the wedding hall terminal 200 using a password.
  • the CPU 11 of the information providing server 100 first determines whether or not the communication unit 19 has received a first password change request from the wedding hall terminal 200 (step 41). If it is determined that it has been received (Yes in step 41), the CPU 11 displays a change screen page on which the second password different from the first password and the changed user identification information for identifying the change request source user can be input.
  • the communication unit 19 is controlled to generate and transmit the change screen page to the wedding hall terminal 200 (step 42).
  • the changed user identification information is information that can specify the change requesting user within the group sharing the password, and may be information including the user's name, employee ID, nickname, and the like.
  • FIG. 5 is an example of a change screen page displayed on the display unit 26 of the wedding hall terminal 200.
  • the change screen page includes a new password input field 261 in which a second password can be input, and an input field 262 for changed user identification information using the wedding hall terminal 200.
  • the changed user identification information is, for example, the name of the user.
  • the change screen page may include a new password re-input field 263 for confirming the second password.
  • the user who uses the wedding hall terminal 200 inputs the second password and the changed user identification information in the input fields 261, 262, and 263, and clicks the password change button 264, thereby performing a password change operation.
  • the change screen page is not limited to the above-described example, and may be a screen page on which at least the second password and the change user identification information can be input.
  • the CPU 11 of the information providing server 100 determines whether or not the second password and changed user identification information input via the change screen page have been received (step 43). If it is determined that it has been received (Yes in step 43), the CPU 11 updates the first password to the second password, and stores the first password as the old password in association with the changed user identification information.
  • the unit 18 is controlled (step 44).
  • the CPU 11 of the information providing server 100 determines whether or not a password for authentication has been received from the wedding hall terminal 200 after the update (step 45). If it is determined that the password has been received (Yes in step 45), the CPU 11 determines whether or not the received password matches the second password (step 46).
  • step 46 If it matches the second password (Yes in step 46), the CPU 11 authenticates the user (step 49), and the process ends.
  • step 46 the CPU 11 determines whether or not the password received for authentication matches the old password (step 47).
  • the CPU 11 transmits to the wedding hall terminal 200 notification information indicating that the password has been changed, including changed user identification information associated with the old password.
  • the communication unit 19 is controlled as described above (step 48).
  • the notification information may be, for example, a notification screen page indicating that the password has been changed, including changed user identification information, and is voice data indicating that the password has been changed, including changed user identification information. May be. Alternatively, it may be information including such a notification screen page or a command for generating audio data.
  • the notification information is transmitted to one of a plurality of users who share one password and who has input the old password without knowing that the password has been changed. It becomes possible. Thereby, the user who acquired the notification information can acquire the password after the change by contacting the user who has changed the password. Therefore, when a single password is managed by a plurality of users, it is possible to avoid confusion due to a well-known incompleteness when changing the password.
  • the notification information is transmitted when the password received after the update matches the old password, the information can be notified only to the user who has changed the password and the user who has shared the old password. . Therefore, the risk of leakage of personal information and password can be reduced.
  • the present invention may be applied not only to a system including the server 100 and the terminal 200 but also to the following password input device.
  • the password input device (input device) 400 is an electronic device that performs user authentication using a password during a predetermined operation, such as a PC or a tablet PC.
  • the predetermined operation is not particularly limited, and may be a user authentication operation when starting up the input device 300, a user authentication operation when changing personal settings of the PC, or the like.
  • the input device 400 is used jointly by a plurality of users, and these users can use a common password for the user authentication.
  • FIG. 6 is a diagram illustrating a hardware configuration of the input device 400. As shown in the figure, the hardware configuration of the input device 400 is basically the same as that of the information providing server 100 and the wedding hall terminal 200.
  • the input device 400 includes a CPU 41, a ROM 42, a RAM 43, an input / output interface 45, and a bus 44, a display unit 46, an operation receiving unit 47, a storage unit 48, and a communication unit 49 that connect these components to each other.
  • the display unit 46 may be externally connected to the input device 400.
  • an HDD may be used as the storage unit 48.
  • CPU41 controls each block, such as the memory
  • the display unit 46 is a display device using, for example, an LCD, an OELD, a CRT, or the like, and is configured to be able to display an image.
  • the storage unit 48 is a non-volatile memory such as an HDD, flash memory, or other solid-state memory, for example, and stores a first password for authenticating the user.
  • FIG. 7 is a flowchart showing an operation example by the input device 400.
  • one of the plurality of users who use the input device 400 changes the password for user authentication, and then another user of the plurality of users sets the password for user authentication. Assume a case of input.
  • the CPU 41 determines whether or not the operation reception unit 47 has received an operation requesting a change of the first password (step 71).
  • the CPU 41 displays a change screen page on which a second password different from the first password and change user identification information for identifying the user can be input. 46 is controlled (step 72). Thereby, a change screen page as shown in FIG. 5 is displayed on the display unit 46.
  • the CPU 41 determines whether or not the second password and the changed user identification information are input by the operation receiving unit 47 (step 73). If it is determined that the password has been input (Yes in step 73), the CPU 41 updates the first password to the second password, and stores the first password in association with the changed user identification information as the old password.
  • the unit 48 is controlled (step 74).
  • the CPU 41 determines whether or not a password for authentication has been input by the operation receiving unit 47 (step 75). If it is determined that the password has been input (Yes in step 75), the CPU 41 determines whether or not the input password matches the second password (step 76).
  • step 76 If it matches the second password (Yes in step 76), the CPU 41 authenticates the user (step 79), and the process ends.
  • step 76 the CPU 41 determines whether or not the password input for authentication matches the old password (step 77).
  • the CPU 41 displays a notification screen page indicating that the password has been changed, including changed user identification information associated with the old password. 46 is controlled (step 78).
  • the notification screen page is displayed to one of a plurality of users who share one password and who has input the old password without knowing that the password has been changed. It becomes possible to do. Therefore, when passwords are managed by a plurality of users, it is possible to avoid confusion associated with a known incompleteness when changing passwords. Furthermore, the notification screen page can be displayed only to the user who has changed the password and the user who shares the old password, and the risk of leakage of personal information and password can be avoided.
  • the storage unit 18 further stores a plurality of old passwords used for previous authentication, and the CPU 11 receives at least one of the plurality of old passwords as the password received for authentication.
  • the communication unit 19 is controlled so as to transmit notification information to the wedding hall terminal 200 when it is determined whether or not it matches any one and it is determined that it matches at least one of the plurality of old passwords. May be.
  • the storage unit 48 further stores a plurality of old passwords used for previous authentication, and the password received for authentication is at least one of the plurality of old passwords.
  • the display unit 46 may be controlled to display a notification screen page when it is determined whether or not it matches any one and when it is determined that it matches at least one of a plurality of old passwords.
  • the changed user identification associated with the first password (old password) It is possible to send or display notification information including information indicating that the password has been changed.
  • the received password may be determined whether or not it matches the old password one time before the first password. (N is a predetermined natural number) It may be repeated until a match with the previous password is determined.
  • the password used for the previous authentication may be further stored as the old password k times before.
  • the CPU 11 determines whether the password received for authentication does not match the old password of (k ⁇ 1) times before whether it matches the old password of k times.
  • the communication unit 19 may be controlled to transmit the notification information to the wedding hall terminal 200 when it is determined.
  • the CPU 41 determines whether the password received for authentication matches the old password k times before when the password received does not match the previous password (k ⁇ 1) times.
  • the display unit 46 may be controlled to display the notification screen page when it is determined that they match.
  • the storage units 18 and 48 further store the change frequency of a plurality of old passwords, and the CPUs 11 and 41 may determine the value of n to a larger value as the change frequency is higher. In this case, the storage units 18 and 48 may store the change frequency and the value of n in association with each other.
  • the frequency of change is high, it is considered that the password can be changed multiple times soon after it is publicized.
  • the change frequency is low, since there is no frequent password change, it is sufficient to notify the changed user identification information or the like to the user who knows the first password or the password several times before.
  • the user who notifies change user identification information etc. based on change frequency can be restrict
  • the plurality of old passwords may be a plurality of old passwords used for authentication before a predetermined period.
  • the wedding hall terminal 200 may be the same wedding hall terminal 200 or a different wedding hall terminal 200.
  • the difference between the user who has changed to the second password and the user who has input the password after the update is not particularly limited.
  • the user who has changed to the second password erroneously inputs the first password which is the old password
  • the user's own changed user identification information can be notified.
  • the user who has changed the password forgets that the password has been changed, the user can provide a chance to remember the changed password.
  • the information providing server 100 may be configured as follows.
  • the CPU 11 controls the storage unit 18 to store the identification information of the wedding hall terminal 200 as the first password change request source as the identification information of the first terminal, and the marriage of the recipient of the updated password is received.
  • the storage unit 18 is controlled to store the identification information of the ceremony hall terminal 200 as the identification information of the second terminal, and when the received password matches the old password, the identification information of the first terminal and the second terminal
  • the communication unit 19 may be controlled to transmit notification information to the wedding hall terminal 200 when it is determined whether or not the terminal identification information matches, and when the terminal identification information does not match.
  • the terminal identification information may be, for example, an IP (Internal Protocol) address or a MAC (Media Access Control) address.
  • the notification information can be transmitted to terminals other than the terminal that has been changed to the second password. That is, the notification information is not transmitted to the terminal used by the user who has changed to the second password, and the above-described troublesomeness can be avoided.
  • the CPU 41 has been described as controlling the display unit 46 to display the notification screen page when the input password matches the old password.
  • the password input device 400 may have a speaker unit that can output audio data.
  • the CPU 41 identifies the changed user identification associated with the old password.
  • the speaker unit may be controlled such that notification information including information indicating that the password has been changed is output as audio data.
  • the “terminal” according to the present invention is the wedding hall terminal 200
  • the present invention is not limited thereto, and for example, the “terminal” may be the user terminal 300.
  • the present invention is not limited to this, and can be applied to any system as long as it is a system that requires authentication of a user or a terminal to be used, such as online shopping, net bank, net securities, online reservation of facilities, etc. .

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Hardware Design (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Theoretical Computer Science (AREA)
  • Computing Systems (AREA)
  • Software Systems (AREA)
  • General Physics & Mathematics (AREA)
  • Physics & Mathematics (AREA)
  • Power Engineering (AREA)
  • Information Transfer Between Computers (AREA)
  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)

Abstract

 本発明に係る情報処理装置は、端末と通信可能に構成される通信部と、ユーザを認証するための第1のパスワードを記憶する記憶部と、制御部とを具備する。上記制御部は、上記端末からの上記第1のパスワードの変更要求に応じて、上記第1のパスワードとは異なる第2のパスワードと、上記変更要求元のユーザを識別する変更ユーザ識別情報の入力が可能な変更画面ページを生成して、当該変更画面ページを上記端末へ送信するように上記通信部を制御し、上記変更画面ページを介して入力された上記第2のパスワード及び上記変更ユーザ識別情報が受信された場合に、上記第1のパスワードを上記第2のパスワードへ更新し、上記第1のパスワードを旧パスワードとして上記変更ユーザ識別情報と対応付けて記憶するように上記記憶部を制御し、上記更新後に上記端末から上記認証のために受信されたパスワードが上記第2のパスワードと一致するか否かを判定し、上記第2のパスワードと一致しない場合に、上記受信されたパスワードが上記旧パスワードと一致するか否かを判定し、上記旧パスワードと一致する場合に、当該旧パスワードと対応付けられた上記変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知情報を上記端末へ送信するように上記通信部を制御する。

Description

情報処理装置、情報処理方法、プログラム、記憶媒体及びパスワード入力装置
 本発明は、複数人で一つのパスワードを共通に使用することが可能な情報処理装置、情報処理方法、プログラム、記憶媒体及びパスワード入力装置に関する。
 従来から、例えばEC(Electronic Commerce)サイト等のユーザの個人情報を扱うウェブサイトでは、プライバシー保護のため、パスワードを用いてユーザの認証が行われている(例えば、下記特許文献1参照)。
特開2012-252425
 ところで、一つの企業やグループ単位で一ユーザとして認証される場合、パスワードは、一つの企業等に所属する複数人で共通に用いられ得る。しかしながら、従来、複数人で共通に用いられる場合のパスワードの取り扱いについては、詳細に検討されていなかった。
 以上のような事情に鑑み、本発明の目的は、複数人が共通に使用するパスワードの取り扱いを円滑にすることが可能な情報処理装置、情報処理方法、プログラム、記憶媒体及びパスワード入力装置を提供することにある。
 上述の課題を解決するため、本発明の一形態に係る情報処理装置は、通信部と、記憶部と、制御部とを具備する。
 上記通信部は、端末と通信可能に構成される。
 上記記憶部は、ユーザを認証するための第1のパスワードを記憶する。
 上記制御部は、
 上記端末からの上記第1のパスワードの変更要求に応じて、上記第1のパスワードとは異なる第2のパスワードと、上記変更要求元のユーザを識別する変更ユーザ識別情報の入力が可能な変更画面ページを生成して、当該変更画面ページを上記端末へ送信するように上記通信部を制御し、
 上記変更画面ページを介して入力された上記第2のパスワード及び上記変更ユーザ識別情報が受信された場合に、上記第1のパスワードを上記第2のパスワードへ更新し、上記第1のパスワードを旧パスワードとして上記変更ユーザ識別情報と対応付けて記憶するように上記記憶部を制御し、
 上記更新後に上記端末から上記認証のために受信されたパスワードが上記第2のパスワードと一致するか否かを判定し、上記第2のパスワードと一致しない場合に、上記受信されたパスワードが上記旧パスワードと一致するか否かを判定し、上記旧パスワードと一致する場合に、当該旧パスワードと対応付けられた上記変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知情報を上記端末へ送信するように上記通信部を制御する。
 上記構成によれば、一つのパスワードを共有する複数ユーザのうちの一人であって、パスワードが変更されたことを知らずに旧パスワードを入力したユーザに対し、上記通知情報を送信することが可能となる。これにより、通知情報を取得したユーザが、パスワードを変更したユーザにコンタクトすることで変更後のパスワードを取得することが可能となる。したがって、複数人が共通に使用するパスワードの取り扱いを円滑にすることが可能となる。
 また、上記記憶部は、以前の認証に用いられた複数の旧パスワードをさらに記憶し、
 上記制御部は、
 上記認証のために受信されたパスワードが上記複数の旧パスワードのうちの少なくともいずれか一つと一致するか否かを判定し、上記複数の旧パスワードのうちの少なくともいずれか一つと一致すると判定した場合に、上記通知情報を上記端末へ送信するように上記通信部を制御してもよい。
 これにより、第1及び第2のパスワードは知らず、第1のパスワードより前に用いられたパスワードのみ知っているユーザに対しても、第1のパスワード(旧パスワード)と対応付けられた変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知情報を送信することが可能となる。
 この場合に、上記複数の旧パスワードは、所定の期間前までの認証に用いられた複数の旧パスワードであってもよい。
 これにより、変更頻度が高くなるに従い、より多くの複数の旧パスワードを記憶することができる。変更頻度が高い場合は、周知される間もなく複数回パスワードが変更され得るものと考えられる。上記構成により、第1のパスワードの複数回前のパスワードしか知らないユーザに対しても、変更ユーザ識別情報等を通知することが可能となる。一方、変更頻度が低い場合は、頻繁なパスワード変更が無いため、第1のパスワード又はその数回前のパスワードを知っているユーザに対してのみ、変更ユーザ識別情報等を通知することが可能となる。このように、変更頻度に基づいて変更ユーザ識別情報等を通知するユーザを適切に制限することができる。
 また、上記制御部は、
 上記第1のパスワードの変更要求元の上記端末の識別情報を、第1の端末の識別情報として記憶するよう上記記憶部を制御し、
 上記更新後の上記パスワードの受信元の上記端末の識別情報を、第2の端末の識別情報として記憶するよう上記記憶部を制御し、
 上記受信されたパスワードが上記旧パスワードと一致する場合に、上記第1の端末の識別情報と上記第2の端末の識別情報とが一致するか否か判定し、一致しないと判定した場合に、上記通知情報を上記端末へ送信するように上記通信部を制御してもよい。
 これにより、第2のパスワードへ変更した端末以外の端末に対して、上記通知情報を送信することができる。すなわち、第2のパスワードへ変更したユーザが使用する端末に対しては、上記通知情報を送信しない構成とすることができ、上述の煩わしさを回避することができる。
 本発明の他の形態に係る情報処理方法は、
 端末からのユーザを認証するための第1のパスワードの変更要求に応じて、上記第1のパスワードとは異なる第2のパスワードと、上記変更要求元のユーザを識別する変更ユーザ識別情報の入力が可能な変更画面ページを生成して、当該変更画面ページを上記端末へ送信するステップと、
 上記変更画面ページを介して入力された上記第2のパスワード及び上記変更ユーザ識別情報が受信された場合に、上記第1のパスワードを上記第2のパスワードへ更新し、上記第1のパスワードを旧パスワードとして上記変更ユーザ識別情報と対応付けて記憶するステップと、
 上記更新後に上記端末から上記認証のために受信されたパスワードが上記第2のパスワードと一致するか否かを判定するステップと、
 上記第2のパスワードと一致しない場合に、上記受信されたパスワードが上記旧パスワードと一致するか否かを判定するステップと、
 上記旧パスワードと一致する場合に、当該旧パスワードと対応付けられた上記変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知情報を上記端末へ送信するステップとを含む。
 本発明のさらに別の形態に係るプログラムは、情報処理装置に、
 端末からのユーザを認証するための第1のパスワードの変更要求に応じて、上記第1のパスワードとは異なる第2のパスワードと、上記変更要求元のユーザを識別する変更ユーザ識別情報の入力が可能な変更画面ページを生成して、当該変更画面ページを上記端末へ送信するステップと、
 上記変更画面ページを介して入力された上記第2のパスワード及び上記変更ユーザ識別情報が受信された場合に、上記第1のパスワードを上記第2のパスワードへ更新し、上記第1のパスワードを旧パスワードとして上記変更ユーザ識別情報と対応付けて記憶するステップと、
 上記更新後に上記端末から上記認証のために受信されたパスワードが上記第2のパスワードと一致するか否かを判定するステップと、
 上記第2のパスワードと一致しない場合に、上記受信されたパスワードが上記旧パスワードと一致するか否かを判定するステップと、
 上記旧パスワードと一致する場合に、当該旧パスワードと対応付けられた上記変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知情報を上記端末へ送信するステップと
 を実行させる。
 本発明のさらに別の形態に係る記録媒体は、
 端末からのユーザを認証するための第1のパスワードの変更要求に応じて、上記第1のパスワードとは異なる第2のパスワードと、上記変更要求元のユーザを識別する変更ユーザ識別情報の入力が可能な変更画面ページを生成して、当該変更画面ページを上記端末へ送信するステップと、
 上記変更画面ページを介して入力された上記第2のパスワード及び上記変更ユーザ識別情報が受信された場合に、上記第1のパスワードを上記第2のパスワードへ更新し、上記第1のパスワードを旧パスワードとして上記変更ユーザ識別情報と対応付けて記憶するステップと、
 上記更新後に上記端末から上記認証のために受信されたパスワードが上記第2のパスワードと一致するか否かを判定するステップと、
 上記第2のパスワードと一致しない場合に、上記受信されたパスワードが上記旧パスワードと一致するか否かを判定するステップと、
 上記旧パスワードと一致する場合に、当該旧パスワードと対応付けられた上記変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知情報を上記端末へ送信するステップと
 を情報処理装置に実行させるプログラムを記録する。
 本発明のさらに別の形態に係るパスワード入力装置は、記憶部と、表示部と、制御部とを具備する。
 上記記憶部は、ユーザを認証するための第1のパスワードを記憶する。
 上記表示部は、画像を表示することが可能に構成される。
 上記制御部は、
 上記第1のパスワードとは異なる第2のパスワードと、ユーザを識別する変更ユーザ識別情報の入力が可能な変更画面ページを表示するよう上記表示部を制御し、
 上記変更画面ページを介して上記第2のパスワード及び上記変更ユーザ識別情報が入力された場合に、上記第1のパスワードを上記第2のパスワードへ更新し、上記第1のパスワードを旧パスワードとして上記変更ユーザ識別情報と対応付けて記憶するように上記記憶部を制御し、
 上記更新後に上記認証のために入力されたパスワードが上記第2のパスワードと一致するか否かを判定し、上記第2のパスワードと一致しない場合に、上記入力されたパスワードが上記旧パスワードと一致するか否かを判定し、上記旧パスワードと一致する場合に、当該旧パスワードと対応付けられた上記変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知画面ページを表示するように上記表示部を制御する。
 上記構成によれば、一つのパスワードを共有する複数ユーザのうちの一人であって、パスワードが変更されたことを知らずに旧パスワードを入力したユーザに対し、上記通知画面ページを表示することが可能となる。したがって、複数人が共通に使用するパスワードの取り扱いを円滑にすることが可能となる。
 本発明のさらに別の形態に係る情報処理方法は、
 ユーザを認証するための第1のパスワードとは異なる第2のパスワードと、ユーザを識別する変更ユーザ識別情報の入力が可能な変更画面ページを表示するステップと、
 上記変更画面ページを介して上記第2のパスワード及び上記変更ユーザ識別情報が入力された場合に、上記第1のパスワードを上記第2のパスワードへ更新するステップと、
 上記第1のパスワードを旧パスワードとして上記変更ユーザ識別情報と対応付けて記憶するように上記記憶部を制御するステップと、
 上記更新後に上記認証のために入力されたパスワードが上記第2のパスワードと一致するか否かを判定するステップと、
 上記第2のパスワードと一致しない場合に、上記入力されたパスワードが上記旧パスワードと一致するか否かを判定するステップと、
 上記旧パスワードと一致する場合に、当該旧パスワードと対応付けられた上記変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知画面ページを表示するように上記表示部を制御するステップとを含む。
 以上のように、本発明によれば、複数人が共通に使用するパスワードの取り扱いを円滑にすることが可能な情報処理装置、情報処理方法、プログラム、記憶媒体及びパスワード入力装置を提供することができる。
 しかし、ここに記載された効果は必ずしも本発明を限定するものではない。
本発明の第1の実施形態に係る結婚式場情報提供システムの構成を示した図である。 上記システムにおける結婚式場情報提供サーバのハードウェア構成を示した図である。 上記システムにおける結婚式場端末のハードウェア構成を示した図である。 上記結婚式場情報提供サーバの動作例を示したフローチャートである。 上記結婚式場端末に表示される変更画面ページの例を示した図である。 本発明の第2の実施形態に係るパスワード入力装置のハードウェア構成を示した図である。 上記パスワード入力装置の動作例を示したフローチャートである。
 以下、本発明の実施形態を、図面を参照しながら説明する。
 [システムの構成]
 図1は、本実施形態に係る情報処理システムの構成を示した図である。
 同図に示すように、このシステムは、インターネット50上の結婚式場情報提供サーバ(情報提供サーバ、情報処理装置)100と、複数の結婚式場端末(端末)200とを含む。
 情報提供サーバ100は、結婚式場情報提供サイトの運営会社により管理されるサーバであり、結婚式場情報提供サービスを受けるユーザの結婚式場端末200及びユーザ端末300とインターネット50を介して接続されている。
 結婚式場端末200は、結婚式場情報提供サイトに登録する結婚式場の複数の従業者等が利用する端末装置であり、例えばPC(Personal Computer)、タブレットPC等である。結婚式場端末200は、例えば、同一の結婚式場の複数の従業者が使用する複数の結婚式場端末200を含む。なお、以下の説明において、各従業者を、結婚式場端末200の「ユーザ」とも称する。
 情報提供サーバ100は、結婚式場端末200からの結婚式場情報提供サイトへのアクセス要求に応じて、結婚式場の情報の編集が可能なウェブページ(HTML(HyperText Markup Language)文書)を生成して、結婚式場端末200へ返信する。
 結婚式場端末200は、情報提供サーバ100へアクセスし、上記ウェブページを受信して、ブラウザにより画面に表示する。結婚式場端末200から情報提供サーバ100へのアクセスには、各結婚式場毎に定められた結婚式場ID及びパスワードを用いた認証が必要となる。すなわち、同一の結婚式場の複数の従業者は、異なる結婚式場端末200から、同一のパスワードを用いて上記サイトへアクセスすることが可能である。
 複数の結婚式場端末200を使用する各ユーザは、上記ブラウザによって表示される画面を介して、ユーザ自身の属する結婚式場に関する情報を更新することができる。また、結婚式場端末200は、情報提供サーバ100にアクセスして、ユーザ端末300からの自身の式場に対する見学予約状況や予約者情報等を取得可能である。
 ユーザ端末300は、結婚式場情報提供サービスを受けるユーザが操作する端末であり、例えばPC、スマートフォン、携帯電話、タブレットPC等である。ユーザ端末300は、情報提供サーバ100にアクセスして、特定の結婚式場の情報を閲覧し、あるいは結婚式場の予約処理等を実行することができる。
[情報提供サーバのハードウェア構成]
 図2は、上記情報提供サーバ100のハードウェア構成を示した図である。同図に示すように、情報提供サーバ100は、CPU(Central Processing Unit)11、ROM(Read Only Memory)12、RAM(Random Access Memory)13、入出力インタフェース15、及び、これらを互いに接続するバス14を備える。
 CPU11は、必要に応じてRAM13等に適宜アクセスし、各種演算処理を行いながら情報提供サーバ100の各ブロック全体を統括的に制御する。ROM12は、CPU11に実行させるOS、プログラムや各種パラメータなどのファームウェアが固定的に記憶されている不揮発性のメモリである。RAM13は、CPU11の作業用領域等として用いられ、OS、実行中の各種アプリケーション、処理中の各種データを一時的に保持する。
 入出力インタフェース15には、表示部16、操作受付部17、記憶部18、通信部19等が接続される。
 表示部16は、例えばLCD(Liquid Crystal Display)、OELD(Organic ElectroLuminescence Display)、CRT(Cathode Ray Tube)等を用いた表示デバイスである。
 操作受付部17は、例えばマウス等のポインティングデバイス、キーボード、タッチパネル、その他の入力装置である。操作受付部17がタッチパネルである場合、そのタッチパネルは表示部16と一体となり得る。
 記憶部18は、例えばHDD(Hard Disk Drive)や、フラッシュメモリ(SSD;Solid State Drive)、その他の固体メモリ等の不揮発性メモリである。当該記憶部18には、上記OSや各種アプリケーション、各種データが記憶される。
 通信部19は、例えばEthernet用のNIC(Network Interface Card)であり、上記結婚式場端末200及びユーザ端末300の間の通信処理を担う。
[結婚式場端末のハードウェア構成]
 図3は、上記結婚式場端末200のハードウェア構成を示した図である。同図に示すように、結婚式場端末200のハードウェア構成も、上記情報提供サーバ100のハードウェア構成と基本的に同様である。
 すなわち、結婚式場端末200は、CPU21、ROM22、RAM23、入出力インタフェース25、及び、これらを互いに接続するバス24、表示部26、操作受付部27、記憶部28、通信部29を備える。ここで表示部26は、結婚式場端末200に外部接続されていてもよい。また記憶部28としては、HDD(Hard Disk Drive)が用いられてもよい。
 CPU21は、記憶部28や通信部29等の各ブロックを制御して、情報提供サーバ100との通信処理や、各種データ処理を実行する。
 操作受付部27は、例えばマウス等のポインティングデバイス、キーボード、タッチパネル、その他の入力装置である。操作受付部27がタッチパネルである場合、そのタッチパネルは表示部26と一体となり得る。
 記憶部28は、例えばフラッシュメモリであり、OSやブラウザ等の各種ソフトウェアや、それらの実行に必要なデータ等を記憶する。
 通信部29は、例えばEthernet用のNICであり、上記情報提供サーバ100との間の通信処理を担う。
 図示しないが、ユーザ端末300のハードウェア構成も結婚式場端末200のそれと同様である。
[情報提供サーバのデータベース構成]
 図2に示すように、情報提供サーバ100は、記憶部18に、結婚式場情報データベース31を有する。
 結婚式場情報データベース31は、結婚式場毎に、結婚式場名、認証ID、パスワード、その他当該結婚式場に関する情報(結婚式場の所在地、結婚式プラン、価格、評価等)を記憶している。結婚式場情報データベース31は、各結婚式場のパスワードとして、各結婚式場の従業者(ユーザ)を認証するための第1のパスワードを記憶する。
[情報提供サーバの動作]
 次に、以上のように構成された情報提供サーバ100の動作について説明する。当該動作は、情報提供サーバ100のCPU11及び通信部19等のハードウェアと、情報提供サーバ100の記憶部18に記憶されたソフトウェアとの協働により実行される。以下の説明では、便宜上、CPU11を動作主体とする。
 図4は、上記情報提供サーバ100の動作例を示したフローチャートである。ここでは、一結婚式場の従業者であるユーザが、結婚式場情報提供サイトへログインするパスワードを結婚式場端末200により変更し、その後、当該結婚式場の従業者である他のユーザが、変更前のパスワードで結婚式場端末200によりログインしようとする場合を想定する。
 同図に示すように、まず情報提供サーバ100のCPU11は、通信部19が、結婚式場端末200からの第1のパスワードの変更要求を受信したか否か判定する(ステップ41)。受信したと判定した場合(ステップ41でYes)、CPU11は、第1のパスワードとは異なる第2のパスワードと、変更要求元のユーザを識別する変更ユーザ識別情報の入力が可能な変更画面ページを生成して、当該変更画面ページを結婚式場端末200へ送信するよう通信部19を制御する(ステップ42)。
 変更ユーザ識別情報は、パスワードを共有するグループ内で変更要求元のユーザを特定可能な情報であって、例えば、ユーザの氏名、従業者ID、ニックネーム等を含む情報とすることができる。
 図5は、結婚式場端末200の表示部26に表示された変更画面ページの例である。同図に示すように、変更画面ページは、第2のパスワードの入力が可能な新パスワード入力欄261と、結婚式場端末200を使用する変更ユーザ識別情報の入力欄262とを含む。変更ユーザ識別情報は、例えば、ユーザの氏名とする。さらに、変更画面ページは、第2のパスワードの確認のための新パスワード再入力欄263を含んでもよい。
 結婚式場端末200を使用するユーザは、第2のパスワード及び変更ユーザ識別情報を入力欄261,262,263に入力し、パスワード変更ボタン264をクリックすることで、パスワードの変更操作を実施する。なお、変更画面ページは、上述の例に限定されず、少なくとも、第2のパスワードと、変更ユーザ識別情報との入力が可能な画面ページであればよい。
 次に情報提供サーバ100のCPU11は、変更画面ページを介して入力された第2のパスワード及び変更ユーザ識別情報が受信されたか否か判定する(ステップ43)。受信されたと判定した場合(ステップ43でYes)、CPU11は、第1のパスワードを第2のパスワードへ更新し、第1のパスワードを旧パスワードとして変更ユーザ識別情報と対応付けて記憶するように記憶部18を制御する(ステップ44)。
 次に情報提供サーバ100のCPU11は、更新後に結婚式場端末200から認証のためのパスワードが受信されたか否かを判定する(ステップ45)。受信されたと判定した場合(ステップ45でYes)、CPU11は、受信されたパスワードが第2のパスワードと一致するか否かを判定する(ステップ46)。
 第2のパスワードと一致する場合に(ステップ46でYes)、CPU11がユーザを認証し(ステップ49)、処理が終了する。
 一方、第2のパスワードと一致しない場合に(ステップ46でNo)、CPU11は、認証のために受信されたパスワードが旧パスワードと一致するか否かを判定する(ステップ47)。
 旧パスワードと一致する場合に(ステップ47でYes)、CPU11は、当該旧パスワードと対応付けられた変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知情報を結婚式場端末200へ送信するように通信部19を制御する(ステップ48)。
 上記通知情報は、例えば、変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知画面ページであってもよく、変更ユーザ識別情報を含む、パスワードが変更されたことを示す音声データであってもよい。あるいは、このような通知画面ページや、音声データを生成する命令を含む情報であってもよい。
 以上より、本実施形態によれば、一つのパスワードを共有する複数ユーザのうちの一人であって、パスワードが変更されたことを知らずに旧パスワードを入力したユーザに対し、上記通知情報を送信することが可能となる。これにより、通知情報を取得したユーザが、パスワードを変更したユーザにコンタクトすることで変更後のパスワードを取得することが可能となる。したがって、複数のユーザで一つのパスワードを管理する場合に、パスワード変更時の周知の不徹底に伴う混乱を回避することが可能となる。
 さらに、更新後に受信されたパスワードが旧パスワードと一致する場合に通知情報を送信するため、パスワードを変更したユーザと旧パスワードを共有していたユーザに対してのみこれらの情報を通知することができる。したがって、個人情報やパスワードの漏洩のリスクを低減できる。
<第2の実施形態>
 本発明は、サーバ100と端末200とを含むシステムに適用されるのみならず、以下のようなパスワード入力装置に適用されてもよい。
 パスワード入力装置(入力装置)400は、所定の操作時にパスワードを用いたユーザ認証を行う電子機器であり、例えばPC、タブレットPC等である。所定の操作は特に限定されず、入力装置300起動時のユーザ認証操作であってもよいし、PCの個人設定の変更時におけるユーザ認証操作等であってもよい。入力装置400は、例えば、複数ユーザが共同で使用するものであり、これらのユーザは、上記ユーザ認証のため共通のパスワードを使用し得る。
 [パスワード入力装置のハードウェア構成]
 図6は、入力装置400のハードウェア構成を示した図である。同図に示すように、入力装置400のハードウェア構成も、上記情報提供サーバ100及び結婚式場端末200のハードウェア構成と基本的に同様である。
 すなわち、入力装置400は、CPU41、ROM42、RAM43、入出力インタフェース45、及び、これらを互いに接続するバス44、表示部46、操作受付部47、記憶部48、通信部49を備える。ここで表示部46は、入力装置400に外部接続されていてもよい。また記憶部48としては、HDDが用いられてもよい。
 CPU41は、記憶部48や通信部49等の各ブロックを制御して、各種データ処理を実行する。
 表示部46は、例えばLCD、OELD、CRT等を用いた表示デバイスであって、画像を表示することが可能に構成される。
 記憶部48は、例えばHDDや、フラッシュメモリ、その他の固体メモリ等の不揮発性メモリであって、ユーザを認証するための第1のパスワードを記憶する。
 [パスワード入力装置の動作]
 次に、以上のように構成された入力装置400の動作について説明する。当該動作は、入力装置400のCPU41、表示部46、操作受付部47等のハードウェアと、入力装置400の記憶部48に記憶されたソフトウェアとの協働により実行される。以下の説明では、便宜上、CPU41を動作主体とする。
 図7は、入力装置400による動作例を示したフローチャートである。ここでは、入力装置400を使用する複数ユーザのうちの一人のユーザが、ユーザ認証のためのパスワードを変更し、その後、上記複数ユーザのうちの他のユーザが、上記ユーザ認証のためのパスワードを入力する場合を想定する。
 同図に示すように、まずCPU41は、操作受付部47が、第1のパスワードの変更を要求する操作を受け付けたか否か判定する(ステップ71)。受け付けたと判定した場合(ステップ71でYes)、CPU41は、第1のパスワードとは異なる第2のパスワードと、ユーザを識別する変更ユーザ識別情報の入力が可能な変更画面ページを表示するよう表示部46を制御する(ステップ72)。これにより、図5で示したような変更画面ページが表示部46に表示される。
 続いてCPU41は、操作受付部47により第2のパスワード及び変更ユーザ識別情報が入力されたか否か判定する(ステップ73)。入力されたと判定した場合(ステップ73でYes)、CPU41は、第1のパスワードを第2のパスワードへ更新し、第1のパスワードを旧パスワードとして変更ユーザ識別情報と対応付けて記憶するように記憶部48を制御する(ステップ74)。
 次にCPU41は、更新後に、操作受付部47により認証のためのパスワードが入力されたか否か判定する(ステップ75)。入力されたと判定した場合(ステップ75でYes)、CPU41は、入力されたパスワードが第2のパスワードと一致するか否かを判定する(ステップ76)。
 第2のパスワードと一致する場合は(ステップ76でYes)、CPU41がユーザを認証し(ステップ79)、処理が終了する。
 一方、第2のパスワードと一致しない場合に(ステップ76でNo)、CPU41は、認証のために入力されたパスワードが旧パスワードと一致するか否か判定する(ステップ77)。
 旧パスワードと一致する場合に(ステップ77でYes)、CPU41は、当該旧パスワードと対応付けられた変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知画面ページを表示するように表示部46を制御する(ステップ78)。
 このように、本実施形態によっても、一つのパスワードを共有する複数ユーザのうちの一人であって、パスワードが変更されたことを知らずに旧パスワードを入力したユーザに対し、上記通知画面ページを表示することが可能となる。したがって、複数のユーザでパスワードを管理する場合に、パスワード変更時の周知の不徹底に伴う混乱を回避することが可能となる。さらに、パスワードを変更したユーザと旧パスワードを共有するユーザに対してのみ通知画面ページを表示することができ、個人情報やパスワードの漏洩の危険性を回避できる。
[変形例]
 本発明は上述の実施形態にのみ限定されるものではなく、本開示の要旨を逸脱しない範囲内において種々変更され得る。
 上述の第1の実施形態において、記憶部18は、以前の認証に用いられた複数の旧パスワードをさらに記憶し、CPU11は、認証のために受信されたパスワードが複数の旧パスワードのうちの少なくともいずれか一つと一致するか否かを判定し、複数の旧パスワードのうちの少なくともいずれか一つと一致すると判定した場合に、通知情報を結婚式場端末200へ送信するように通信部19を制御してもよい。
 同様に、上述の第2の実施形態において、記憶部48は、以前の認証に用いられた複数の旧パスワードをさらに記憶し、認証のために受信されたパスワードが複数の旧パスワードのうちの少なくともいずれか一つと一致するか否かを判定し、複数の旧パスワードのうちの少なくともいずれか一つと一致すると判定した場合に、通知画面ページを表示するように表示部46を制御してもよい。
 これにより、第1及び第2のパスワードは知らず、第1のパスワードより前に用いられたパスワードのみ知っているユーザに対しても、第1のパスワード(旧パスワード)と対応付けられた変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知情報を送信し、あるいは表示することが可能となる。
 この場合、受信されたパスワードが旧パスワードと一致しない場合は、第1のパスワードの1回前の旧パスワードと一致するか否かを判定してもよく、この処理を、第1のパスワードのn(nは所定の自然数)回前の旧パスワードとの一致を判定するまで、繰り返し行ってもよい。
 すなわち、記憶部18,48は、旧パスワード(第1のパスワード)の他、k=1,2,・・・,n(nは所定の自然数)としたときに、第1のパスワードのk回前の認証に用いられたパスワードをk回前の旧パスワードとしてさらに記憶してもよい。そして第1の実施形態に係るCPU11は、認証のために受信されたパスワードが(k-1)回前の旧パスワードと一致しない場合に、k回前の旧パスワードと一致するか判定し、一致すると判定した場合に上記通知情報を結婚式場端末200へ送信するように通信部19を制御してもよい。
 同様に、第2の実施形態に係るCPU41は、認証のために受信されたパスワードが(k-1)回前の旧パスワードと一致しない場合に、k回前の旧パスワードと一致するか判定し、一致すると判定した場合に上記通知画面ページを表示するように表示部46を制御してもよい。
 さらに、記憶部18,48は、複数の旧パスワードの変更頻度をさらに記憶しており、CPU11,41は、変更頻度が高いほど、nの値をより大きい値に決定してもよい。この場合、記憶部18,48は、変更頻度とnの値とを対応付けて記憶していてもよい。
 変更頻度が高い場合は、周知される間もなく、複数回パスワードが変更され得るものと考えられる。上記構成により、第1のパスワードの複数回前のパスワードしか知らないユーザに対しても、変更ユーザ識別情報等を通知することが可能となる。一方、変更頻度が低い場合は、頻繁なパスワード変更が無いため、第1のパスワード又はその数回前のパスワードを知っているユーザに対して、変更ユーザ識別情報等を通知すれば十分である。このように、上記構成によれば、変更頻度に基づいて変更ユーザ識別情報等を通知するユーザを適切に制限することができる。
 あるいは、複数の旧パスワードは、所定の期間前までの認証に用いられた複数の旧パスワードとしてもよい。
 これによっても、変更頻度が高くなるに従い、より多くの複数の旧パスワードを記憶することができる。したがって、変更ユーザ識別情報等を通知するユーザを適切に制限することができ、パスワード漏洩等のリスクを低減しつつ、第2のパスワードの取得を容易にすることができる。
 さらに、上述の第1の実施形態において、結婚式場端末200は、同一の結婚式場端末200であってもよく、異なる結婚式場端末200であってもよい。
 また、上述の第1及び第2の実施形態において、第2のパスワードへ変更したユーザと、更新後にパスワードを入力したユーザの相違は特に限定されない。この場合、第2のパスワードへ変更したユーザが誤って旧パスワードである第1のパスワードを入力した場合にも、当該ユーザ自身の変更ユーザ識別情報が通知され得る。これにより、パスワードを変更したユーザ自身がパスワードを変更したことを失念している場合に、変更後のパスワードを思い出すきっかけを提供することができる。
 また、第2のパスワードへ変更したユーザに対して変更ユーザ識別情報を通知することが煩わしい場合には、情報提供サーバ100を以下のように構成してもよい。
 すなわち、CPU11は、第1のパスワードの変更要求元の結婚式場端末200の識別情報を、第1の端末の識別情報として記憶するよう記憶部18を制御し、更新後のパスワードの受信元の結婚式場端末200の識別情報を、第2の端末の識別情報として記憶するよう記憶部18を制御し、受信されたパスワードが旧パスワードと一致する場合に、第1の端末の識別情報と第2の端末の識別情報とが一致するか否か判定し、一致しないと判定した場合に、通知情報を結婚式場端末200へ送信するように通信部19を制御してもよい。端末の識別情報は、例えばIP(Internal Protocol)アドレスやMAC(Media Access Control)アドレスであってもよい。
 これにより、第2のパスワードへ変更した端末以外の端末に対して、上記通知情報を送信することができる。すなわち、第2のパスワードへ変更したユーザが使用する端末に対しては、上記通知情報を送信しない構成とすることができ、上述の煩わしさを回避することができる。
 また、上述の第2の実施形態において、CPU41は、入力されたパスワードが旧パスワードと一致した場合、上記通知画面ページを表示するように表示部46を制御すると説明したが、これに限定されない。例えば、パスワード入力装置400は、音声データの出力が可能なスピーカ部を有していてもよく、CPU41は、入力されたパスワードが旧パスワードと一致した場合、旧パスワードと対応付けられた変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知情報を音声データとして出力するよう、スピーカ部を制御してもよい。
 上述の第1の実施形態では、本発明に係る「端末」が結婚式場端末200である例が示された。しかし、本発明はそれに限定されず、例えば、「端末」がユーザ端末300であってもよい。
 上述の第1の実施形態では、本発明が結婚式場情報提供システムに適用された例が示された。しかし、本発明はそれに限られず、例えば、ネットショッピングや、ネットバンク、ネット証券、施設等のネット予約等、ユーザや使用端末の認証が必要なシステムであれば、如何なるシステムにも適用可能である。
 11,41…CPU
 16,46…表示部
 18,48…記憶部
 19.49…通知部
 50…インターネット
 100…結婚式場情報提供サーバ
 200…結婚式場端末(端末)
 300…ユーザ端末
 400…パスワード入力装置

Claims (9)

  1.  端末と通信可能な通信部と、
     ユーザを認証するための第1のパスワードを記憶する記憶部と、
      前記端末からの前記第1のパスワードの変更要求に応じて、前記第1のパスワードとは異なる第2のパスワードと、前記変更要求元のユーザを識別する変更ユーザ識別情報の入力が可能な変更画面ページを生成して、当該変更画面ページを前記端末へ送信するように前記通信部を制御し、
      前記変更画面ページを介して入力された前記第2のパスワード及び前記変更ユーザ識別情報が受信された場合に、前記第1のパスワードを前記第2のパスワードへ更新し、前記第1のパスワードを旧パスワードとして前記変更ユーザ識別情報と対応付けて記憶するように前記記憶部を制御し、
      前記更新後に前記端末から前記認証のために受信されたパスワードが前記第2のパスワードと一致するか否かを判定し、前記第2のパスワードと一致しない場合に、前記受信されたパスワードが前記旧パスワードと一致するか否かを判定し、前記旧パスワードと一致する場合に、当該旧パスワードと対応付けられた前記変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知情報を前記端末へ送信するように前記通信部を制御する
     制御部と
     を具備する情報処理装置。
  2.  請求項1に記載の情報処理装置であって、
     前記記憶部は、以前の認証に用いられた複数の旧パスワードをさらに記憶し、
     前記制御部は、
     前記認証のために受信されたパスワードが前記複数の旧パスワードのうちの少なくともいずれか一つと一致するか否かを判定し、前記複数の旧パスワードのうちの少なくともいずれか一つと一致すると判定した場合に、前記通知情報を前記端末へ送信するように前記通信部を制御する
     情報処理装置。
  3.  請求項2に記載の情報処理装置であって、
     前記複数の旧パスワードは、所定の期間前までの認証に用いられた複数の旧パスワードである
     情報処理装置。
  4.  請求項1に記載の情報処理装置であって、
     前記制御部は、
     前記第1のパスワードの変更要求元の前記端末の識別情報を、第1の端末の識別情報として記憶するよう前記記憶部を制御し、
     前記更新後の前記パスワードの受信元の前記端末の識別情報を、第2の端末の識別情報として記憶するよう前記記憶部を制御し、
     前記受信されたパスワードが前記旧パスワードと一致する場合に、前記第1の端末の識別情報と前記第2の端末の識別情報とが一致するか否か判定し、一致しないと判定した場合に、前記通知情報を前記端末へ送信するように前記通信部を制御する
     情報処理装置。
  5.  端末からのユーザを認証するための第1のパスワードの変更要求に応じて、前記第1のパスワードとは異なる第2のパスワードと、前記変更要求元のユーザを識別する変更ユーザ識別情報の入力が可能な変更画面ページを生成して、当該変更画面ページを前記端末へ送信し、
     前記変更画面ページを介して入力された前記第2のパスワード及び前記変更ユーザ識別情報が受信された場合に、前記第1のパスワードを前記第2のパスワードへ更新し、前記第1のパスワードを旧パスワードとして前記変更ユーザ識別情報と対応付けて記憶し、
     前記更新後に前記端末から前記認証のために受信されたパスワードが前記第2のパスワードと一致するか否かを判定し、
     前記第2のパスワードと一致しない場合に、前記受信されたパスワードが前記旧パスワードと一致するか否かを判定し、
     前記旧パスワードと一致する場合に、当該旧パスワードと対応付けられた前記変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知情報を前記端末へ送信する
     情報処理方法。
  6.  情報処理装置に、
     端末からのユーザを認証するための第1のパスワードの変更要求に応じて、前記第1のパスワードとは異なる第2のパスワードと、前記変更要求元のユーザを識別する変更ユーザ識別情報の入力が可能な変更画面ページを生成して、当該変更画面ページを前記端末へ送信するステップと、
     前記変更画面ページを介して入力された前記第2のパスワード及び前記変更ユーザ識別情報が受信された場合に、前記第1のパスワードを前記第2のパスワードへ更新し、前記第1のパスワードを旧パスワードとして前記変更ユーザ識別情報と対応付けて記憶するステップと、
     前記更新後に前記端末から前記認証のために受信されたパスワードが前記第2のパスワードと一致するか否かを判定するステップと、
     前記第2のパスワードと一致しない場合に、前記受信されたパスワードが前記旧パスワードと一致するか否かを判定するステップと、
     前記旧パスワードと一致する場合に、当該旧パスワードと対応付けられた前記変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知情報を前記端末へ送信するステップと
     を実行させるプログラム。
  7.  端末からのユーザを認証するための第1のパスワードの変更要求に応じて、前記第1のパスワードとは異なる第2のパスワードと、前記変更要求元のユーザを識別する変更ユーザ識別情報の入力が可能な変更画面ページを生成して、当該変更画面ページを前記端末へ送信するステップと、
     前記変更画面ページを介して入力された前記第2のパスワード及び前記変更ユーザ識別情報が受信された場合に、前記第1のパスワードを前記第2のパスワードへ更新し、前記第1のパスワードを旧パスワードとして前記変更ユーザ識別情報と対応付けて記憶するステップと、
     前記更新後に前記端末から前記認証のために受信されたパスワードが前記第2のパスワードと一致するか否かを判定するステップと、
     前記第2のパスワードと一致しない場合に、前記受信されたパスワードが前記旧パスワードと一致するか否かを判定するステップと、
     前記旧パスワードと一致する場合に、当該旧パスワードと対応付けられた前記変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知情報を前記端末へ送信するステップと
     を情報処理装置に実行させるプログラムを記録した記録媒体。
  8.  ユーザを認証するための第1のパスワードを記憶する記憶部と、
     画像を表示することが可能な表示部と、
      前記第1のパスワードとは異なる第2のパスワードと、ユーザを識別する変更ユーザ識別情報の入力が可能な変更画面ページを表示するよう前記表示部を制御し、
      前記変更画面ページを介して前記第2のパスワード及び前記変更ユーザ識別情報が入力された場合に、前記第1のパスワードを前記第2のパスワードへ更新し、前記第1のパスワードを旧パスワードとして前記変更ユーザ識別情報と対応付けて記憶するように前記記憶部を制御し、
      前記更新後に前記認証のために入力されたパスワードが前記第2のパスワードと一致するか否かを判定し、前記第2のパスワードと一致しない場合に、前記入力されたパスワードが前記旧パスワードと一致するか否かを判定し、前記旧パスワードと一致する場合に、当該旧パスワードと対応付けられた前記変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知画面ページを表示するように前記表示部を制御する
     制御部と
     を具備するパスワード入力装置。
  9.  ユーザを認証するための第1のパスワードとは異なる第2のパスワードと、ユーザを識別する変更ユーザ識別情報の入力が可能な変更画面ページを表示し、
     前記変更画面ページを介して前記第2のパスワード及び前記変更ユーザ識別情報が入力された場合に、前記第1のパスワードを前記第2のパスワードへ更新し、
     前記第1のパスワードを旧パスワードとして前記変更ユーザ識別情報と対応付けて記憶するように前記記憶部を制御し、
     前記更新後に前記認証のために入力されたパスワードが前記第2のパスワードと一致するか否かを判定し、
     前記第2のパスワードと一致しない場合に、前記入力されたパスワードが前記旧パスワードと一致するか否かを判定し、
     前記旧パスワードと一致する場合に、当該旧パスワードと対応付けられた前記変更ユーザ識別情報を含む、パスワードが変更されたことを示す通知画面ページを表示するように前記表示部を制御する
     情報処理方法。
PCT/JP2014/061945 2014-04-30 2014-04-30 情報処理装置、情報処理方法、プログラム、記憶媒体及びパスワード入力装置 Ceased WO2015166552A1 (ja)

Priority Applications (4)

Application Number Priority Date Filing Date Title
PCT/JP2014/061945 WO2015166552A1 (ja) 2014-04-30 2014-04-30 情報処理装置、情報処理方法、プログラム、記憶媒体及びパスワード入力装置
JP2014552413A JP5690030B1 (ja) 2014-04-30 2014-04-30 情報処理装置、情報処理方法、プログラム及び記録媒体
US15/307,413 US10282527B2 (en) 2014-04-30 2014-04-30 Information processing apparatus, information processing method, program, storage medium, and password entry apparatus
TW104110686A TWI512523B (zh) 2014-04-30 2015-04-01 Information processing apparatus, information processing method, program and recording medium

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
PCT/JP2014/061945 WO2015166552A1 (ja) 2014-04-30 2014-04-30 情報処理装置、情報処理方法、プログラム、記憶媒体及びパスワード入力装置

Publications (1)

Publication Number Publication Date
WO2015166552A1 true WO2015166552A1 (ja) 2015-11-05

Family

ID=52823347

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/JP2014/061945 Ceased WO2015166552A1 (ja) 2014-04-30 2014-04-30 情報処理装置、情報処理方法、プログラム、記憶媒体及びパスワード入力装置

Country Status (4)

Country Link
US (1) US10282527B2 (ja)
JP (1) JP5690030B1 (ja)
TW (1) TWI512523B (ja)
WO (1) WO2015166552A1 (ja)

Families Citing this family (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
NL2017032B1 (en) * 2016-06-23 2018-01-19 Mindyourpass Holding B V Password generation device and password verification device
US11144620B2 (en) * 2018-06-26 2021-10-12 Counseling and Development, Inc. Systems and methods for establishing connections in a network following secure verification of interested parties
US10812267B2 (en) * 2018-11-05 2020-10-20 International Business Machines Corporation Secure password lock and recovery

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JPH04253255A (ja) * 1991-01-29 1992-09-09 Nec Corp 会話処理コンピュータ装置
JP2005050121A (ja) * 2003-07-28 2005-02-24 Kyocera Mita Corp パスワード管理装置,その管理方法及び管理プログラム
JP2006185330A (ja) * 2004-12-28 2006-07-13 Kyocera Mita Corp パスワード管理装置,その管理方法及び管理プログラム
JP2009294746A (ja) * 2008-06-03 2009-12-17 Konica Minolta Business Technologies Inc 認証システム及び認証方法並びに認証プログラム
US8365245B2 (en) * 2008-02-19 2013-01-29 International Business Machines Corporation Previous password based authentication

Family Cites Families (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5611048A (en) * 1992-10-30 1997-03-11 International Business Machines Corporation Remote password administration for a computer network among a plurality of nodes sending a password update message to all nodes and updating on authorized nodes
EP1612692A1 (en) * 2003-04-10 2006-01-04 Matsushita Electric Industrial Co., Ltd. Password change system
US20070124807A1 (en) * 2005-11-29 2007-05-31 Taiwan Semiconductor Manufacturing Co., Ltd. Password update systems and methods
US8424067B2 (en) * 2006-01-19 2013-04-16 International Business Machines Corporation Smart password determination
JP4800068B2 (ja) * 2006-02-23 2011-10-26 富士通株式会社 パスワード管理装置、パスワード管理方法、パスワード管理プログラム
US20080104411A1 (en) * 2006-09-29 2008-05-01 Agrawal Pankaj O Methods and apparatus for changing passwords in a distributed communication system
US8959618B2 (en) * 2008-02-05 2015-02-17 Red Hat, Inc. Managing password expiry
TW200948009A (en) * 2008-05-05 2009-11-16 Chunghwa Telecom Co Ltd Password management system
US8186586B2 (en) * 2009-06-05 2012-05-29 Datacard Corporation System, method, and apparatus for smart card pin management via an unconnected reader
JP5679327B2 (ja) 2011-05-31 2015-03-04 楽天株式会社 情報処理システム、情報処理方法、情報処理装置、プログラム及び記録媒体
US9032496B2 (en) * 2012-02-28 2015-05-12 Citrix Systems, Inc. Secure single sign-on
US9699173B1 (en) * 2015-05-22 2017-07-04 Amazon Technologies, Inc. Incorrect password management

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JPH04253255A (ja) * 1991-01-29 1992-09-09 Nec Corp 会話処理コンピュータ装置
JP2005050121A (ja) * 2003-07-28 2005-02-24 Kyocera Mita Corp パスワード管理装置,その管理方法及び管理プログラム
JP2006185330A (ja) * 2004-12-28 2006-07-13 Kyocera Mita Corp パスワード管理装置,その管理方法及び管理プログラム
US8365245B2 (en) * 2008-02-19 2013-01-29 International Business Machines Corporation Previous password based authentication
JP2009294746A (ja) * 2008-06-03 2009-12-17 Konica Minolta Business Technologies Inc 認証システム及び認証方法並びに認証プログラム

Also Published As

Publication number Publication date
TWI512523B (zh) 2015-12-11
JPWO2015166552A1 (ja) 2017-04-20
JP5690030B1 (ja) 2015-03-25
TW201537377A (zh) 2015-10-01
US20170054699A1 (en) 2017-02-23
US10282527B2 (en) 2019-05-07

Similar Documents

Publication Publication Date Title
US20190253428A1 (en) Invisible password reset protocol
JP6929181B2 (ja) デバイスと、その制御方法とプログラム
JP6119709B2 (ja) サービスプロバイダ装置、プログラム及びサービス提供方法
WO2013119967A1 (en) Systems and methods for password-free authentication
US20140130134A1 (en) Managing and Providing Access to Applications in an Application-Store Module
JP2011180629A (ja) 簡易パスワード入力システム
JP5690030B1 (ja) 情報処理装置、情報処理方法、プログラム及び記録媒体
JP2015130028A (ja) 代行ログイン装置、端末、制御方法およびプログラム
JP7000484B2 (ja) ユーザ端末、その制御方法、及びプログラム
JP4858945B2 (ja) システムにアクセスする方法及びネットワークシステム
US11343242B2 (en) Dynamic connection across systems in real-time
JP2018106515A (ja) サーバ、ログイン処理方法、及び、ログイン処理プログラム
CN112292845A (zh) 信息处理设备、信息处理方法和程序
JP2017049745A (ja) 認証サーバ、認証方法およびプログラム
JP2016085638A (ja) サーバー装置、端末装置、システム、情報処理方法及びプログラム
CN106304022A (zh) 移动终端及其对登录信息的处理方法
US11277397B2 (en) Method and system for user authentication
JP2009140163A (ja) セッション管理装置
JP5014373B2 (ja) Webページへの入力方法、Webサーバ及びWebシステム
JP2009098776A (ja) 情報取得システム、携帯端末装置、情報取得方法および情報取得プログラム
JP5881756B2 (ja) 情報提供装置、情報提供システム、情報提供プログラムおよび情報提供方法
JP2014085919A (ja) ユーザ認証装置、ユーザ認証方法及びユーザ認証プログラム
JP2009093482A (ja) 情報処理システム、情報処理装置、認証サーバ、情報処理方法、及びプログラム
US10554789B2 (en) Key based authorization for programmatic clients
KR102029309B1 (ko) 인증 요청 기능이 구비된 정보 입력 장치 및 이를 이용한 인증 요청 방법

Legal Events

Date Code Title Description
ENP Entry into the national phase

Ref document number: 2014552413

Country of ref document: JP

Kind code of ref document: A

121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 14890756

Country of ref document: EP

Kind code of ref document: A1

WWE Wipo information: entry into national phase

Ref document number: 15307413

Country of ref document: US

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 14890756

Country of ref document: EP

Kind code of ref document: A1