WO2025196871A1 - 情報処理システム、情報処理装置、情報処理方法及び記録媒体 - Google Patents

情報処理システム、情報処理装置、情報処理方法及び記録媒体

Info

Publication number
WO2025196871A1
WO2025196871A1 PCT/JP2024/010489 JP2024010489W WO2025196871A1 WO 2025196871 A1 WO2025196871 A1 WO 2025196871A1 JP 2024010489 W JP2024010489 W JP 2024010489W WO 2025196871 A1 WO2025196871 A1 WO 2025196871A1
Authority
WO
WIPO (PCT)
Prior art keywords
information
authentication
user
biometric
target
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
PCT/JP2024/010489
Other languages
English (en)
French (fr)
Inventor
航介 吉見
彰斗 菅
厚史 伊藤
竜一 赤司
悠歩 庄司
政人 佐々木
崇史 野中
恵 木村
真二 大湊
佑也 小林
悠 圓谷
和史 宮城
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
NEC Corp
Original Assignee
NEC Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by NEC Corp filed Critical NEC Corp
Priority to PCT/JP2024/010489 priority Critical patent/WO2025196871A1/ja
Publication of WO2025196871A1 publication Critical patent/WO2025196871A1/ja
Pending legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication

Definitions

  • This disclosure relates to the technical fields of information processing systems, information processing devices, information processing methods, and recording media.
  • One example of this type of system is a system that uses an image of the facial area that can be observed by an inward-facing camera of a wearable device worn by a user whose facial expression cannot be discerned from its appearance to represent the facial expression of the user's avatar (see Patent Document 1).
  • the objective of this disclosure is to provide an information processing system, information processing device, information processing method, and recording medium that aim to improve upon the technology related to the prior art documents mentioned above.
  • One aspect of the information processing system comprises an acquisition means for acquiring biometric information including information relating to the eyes of a subject wearing a wearable device, an authentication means for performing biometric authentication of the subject using the biometric information, an output means for outputting subject information relating to the subject to a security terminal if the biometric authentication by the authentication means is successful, and a receiving means for receiving permission information from the security terminal indicating whether the subject is permitted to log in to a virtual space based on the subject information.
  • One aspect of the information processing device comprises an acquisition means for acquiring biometric information including information relating to the eyes of a subject wearing a wearable device, an authentication means for performing biometric authentication of the subject using the biometric information, an output means for outputting subject information relating to the subject to a security terminal if the biometric authentication by the authentication means is successful, and a receiving means for receiving permission information from the security terminal indicating whether the subject is permitted to log in to a virtual space based on the subject information.
  • One aspect of the information processing method involves acquiring biometric information including information related to the eyes of a subject wearing a wearable device, performing biometric authentication of the subject using the biometric information, and, if the biometric authentication is successful, outputting subject information related to the subject to a security terminal, and receiving permission information from the security terminal indicating whether the subject is permitted to log in to a virtual space based on the subject information.
  • One embodiment of the recording medium has recorded on it a computer program for causing a computer to execute an information processing method that acquires biometric information, including information related to the eyes, of a subject wearing a wearable device, performs biometric authentication of the subject using the biometric information, and, if the biometric authentication is successful, outputs subject information related to the subject to a security terminal, and receives permission information from the security terminal indicating whether the subject is permitted to log in to a virtual space based on the subject information.
  • FIG. 1 is a diagram illustrating an example of a configuration of an information processing system according to an embodiment. 4 is a flowchart illustrating an example of an operation of the information processing system according to the embodiment.
  • FIG. 10 is a diagram illustrating another example of the configuration of the information processing system according to the embodiment.
  • FIG. 2 is a block diagram illustrating an example of a configuration of a terminal device according to the embodiment.
  • FIG. 1 is a diagram illustrating an example of a configuration of a wearable device according to an embodiment.
  • FIG. 2 is a block diagram illustrating an example of a configuration of an authentication server according to the embodiment.
  • FIG. 2 is a block diagram illustrating an example of the configuration of a calculation device of an authentication server according to the embodiment.
  • FIG. 10 is a diagram illustrating another example of the configuration of the information processing system according to the embodiment.
  • FIG. 2 is a block diagram showing an example of the configuration of a virtual world server according to the embodiment.
  • FIG. 2 is a block diagram showing an example of the configuration of a computing device of a virtual world server according to the embodiment.
  • FIG. 10 is a diagram illustrating another example of the configuration of the information processing system according to the embodiment.
  • FIG. 2 is a block diagram showing an example of the configuration of a calculation device of the terminal device according to the embodiment.
  • FIG. 10 is a diagram illustrating another example of the configuration of the information processing system according to the embodiment.
  • FIG. 10 is a diagram illustrating another example of the configuration of the information processing system according to the embodiment.
  • FIG. 10 is a block diagram showing another example of the configuration of the arithmetic device of the authentication server according to the embodiment.
  • FIG. 10 is a block diagram illustrating another example of the configuration of the arithmetic unit of the terminal device according to the embodiment.
  • FIG. 10 is a block diagram showing another example of the configuration of the arithmetic device of the authentication server according to the embodiment.
  • FIG. 10 is a diagram illustrating another example of the configuration of the information processing system according to the embodiment.
  • FIG. 10 is a block diagram showing another example of the configuration of the arithmetic device of the virtual world server according to the embodiment.
  • FIG. 10 is a block diagram showing another example of the configuration of the arithmetic device of the virtual world server according to the embodiment.
  • 2 is a block diagram showing an example of the configuration of a security terminal according to the embodiment;
  • FIG. 2 is a block diagram showing an example of the configuration of a computing device of a security terminal according to an embodiment.
  • the information processing system 1 includes an acquisition device 11, an authentication device 12, an output device 13, and a receiving device 14.
  • the acquisition device 11 acquires biometric information including information related to the eyes of a subject wearing a wearable device (e.g., a Head Mounted Display (HMD)).
  • the information related to the subject's eyes may be, for example, an eye image including the subject's eyes, or feature amounts extracted from the eye image.
  • the feature amounts extracted from the eye image may be feature amounts related to the subject's iris.
  • the wearable device may be, for example, an immersive head-mounted display, a video see-through head-mounted display, or an optical see-through head-mounted display (so-called AR (Augmented Reality) glasses).
  • the acquisition device 11 may be provided in the wearable device. In other words, the acquisition device 11 may constitute a part of the wearable device. Alternatively, the acquisition device 11 may be a device external to the wearable device. In other words, the acquisition device 11 does not have to constitute a part of the wearable device.
  • the authentication device 12 performs biometric authentication of the target using biometric information.
  • the biometric information includes information related to the target's eyes. Therefore, the authentication device 12 may perform iris authentication as biometric authentication.
  • the authentication device 12 may also be provided in a wearable device. In other words, the authentication device 12 may constitute part of the wearable device. Alternatively, the authentication device 12 may be a device external to the wearable device. In other words, the authentication device 12 does not have to constitute part of the wearable device.
  • the output device 13 When biometric authentication by the authentication device 12 is successful, the output device 13 outputs target information about the target to the security terminal.
  • biometric authentication is successful may mean that the target is identified as one of the pre-registered registrants.
  • biometric authentication is unsuccessful may mean that the target does not correspond to any of the pre-registered registrants.
  • Target information may include, for example, at least one of information for identifying the target (name, identification number, affiliation, etc.) and information indicating the target's status (audio, image, etc.).
  • security terminal refers to a terminal device used for security work.
  • a terminal device used for security work is referred to as a "security terminal.”
  • a terminal device serving as a security terminal may be a dedicated product with a configuration specialized for security work, or may be a general-purpose product.
  • the security terminal may be, for example, at least one of a personal computer, a tablet terminal, and a smartphone.
  • the security terminal may be equipped with AI (artificial intelligence) specialized for security work.
  • the security terminal may be a security robot.
  • the receiving device 14 receives permission information from the security terminal indicating whether or not it is possible to log in to the target virtual space based on the target information.
  • Virtual space may refer to a three-dimensional virtual space constructed on at least one of a network and a computer.
  • Virtual space may, for example, be a virtual space that can be used jointly by multiple users.
  • the acquisition device 11, authentication device 12, output device 13, and receiving device 14 may be provided in a single device.
  • This single device may be, for example, a server device.
  • the server device including the acquisition device 11, authentication device 12, output device 13, and receiving device 14 corresponds to the information processing device of this embodiment.
  • a wearable device may include the acquisition device 11, authentication device 12, output device 13, and receiving device 14. In this case, the wearable device corresponds to the information processing device of this embodiment.
  • the acquisition device 11, authentication device 12, output device 13, and receiving device 14 may be devices independent of each other.
  • the acquisition device 11 acquires biometric information, including information related to the eyes, of a subject wearing a wearable device (e.g., an HMD) (step S101).
  • the authentication device 12 performs biometric authentication of the subject using the biometric information acquired in the processing of step S101 (step S102).
  • the authentication device 12 may transmit information indicating that the biometric authentication was successful to the output device 13.
  • the output device 13 Upon receiving the information indicating that the biometric authentication was successful, the output device 13 outputs target information regarding the target to the security terminal (step S103).
  • the receiving device 14 receives permission information from the security terminal indicating whether the target is permitted to log in to the virtual space based on the target information (step S104).
  • step S102 if the target biometric authentication fails in the processing of step S102, the operation shown in FIG. 2 may be terminated. In this case, the processing from step S103 onwards does not need to be performed.
  • the information processing system 1 may perform an information processing method that acquires biometric information including information related to the eyes of the subject wearing the wearable device, performs biometric authentication of the subject using the biometric information, and if the biometric authentication is successful, outputs subject information related to the subject to a security terminal, and receives permission information from the security terminal indicating whether the subject is allowed to log in to the virtual space based on the subject information.
  • a single device e.g., a server device, a wearable device
  • an acquisition device 11 an authentication device 12, an output device 13, and a receiving device 14
  • the recording medium may contain a computer program that causes the computer to execute an information processing method that acquires biometric information including information relating to the eyes of a subject wearing the wearable device, performs biometric authentication of the subject using the biometric information, and, if the biometric authentication is successful, outputs subject information relating to the subject to a security terminal, and receives permission information from the security terminal indicating whether the subject is permitted to log in to the virtual space based on the subject information.
  • entry and exit management for areas with a relatively high security level often involves, for example, identity verification using a security card or biometric authentication, as well as visual confirmation by at least one of a security guard and a guard.
  • virtual spaces with a relatively high security level may be created. Entry and exit management for virtual spaces with a relatively high security level may require, as in the real world, identity verification using an ID and password or biometric authentication, as well as confirmation of the user (corresponding to the above-mentioned subject) by at least one of a security guard and a guard.
  • An example of a virtual space with a relatively high security level is an office built in a virtual space (i.e., a virtual office).
  • target information is output to the security terminal.
  • the operator of the security terminal e.g., at least one of a security guard and a security guard
  • the operator of the security terminal can also confirm the target.
  • the subject may log in to the virtual space.
  • the permission information indicates that the subject is not permitted to log in to the virtual space, the subject cannot log in to the virtual space.
  • Second Embodiment A second embodiment of an information processing system, an information processing device, an information processing method, and a recording medium will be described with reference to Figures 3 to 8. Below, the second embodiment of an information processing system, an information processing device, an information processing method, and a recording medium will be described using an information processing system 2. Note that, for the second embodiment, descriptions that overlap with the description of the first embodiment will be omitted as appropriate.
  • the information processing system 2 includes a terminal device 100, an authentication server 200, a security terminal 300, and a virtual world server 400.
  • the terminal device 100, the authentication server 200, the security terminal 300, and the virtual world server 400 are configured to be able to communicate with each other via a network such as the Internet.
  • the virtual world server 400 is a server for realizing a virtual space.
  • the security terminal 300 corresponds to the security terminal in the first embodiment.
  • information processing system 2 may perform the following operations.
  • virtual world server 400 e.g., a homepage related to the virtual space provided by virtual world server 400
  • virtual world server 400 may send information for authentication to terminal device 100.
  • terminal device 100 may automatically access authentication server 200 based on the information for authentication.
  • the information for authentication may be, for example, information for accessing authentication server 200 (e.g., the URL of an authentication page related to authentication server 200).
  • the authentication server 200 may acquire biometric information of user U from the terminal device 100.
  • the authentication server 200 may perform biometric authentication of user U using the biometric information. If the biometric authentication is successful, the authentication server 200 may output user information about user U to the security terminal 300.
  • the operator O of the security terminal 300 may determine whether or not user U can log in to the virtual space based on the user information.
  • the operator O of the security terminal 300 may be a person performing security duties. Examples of a person performing security duties include at least one of a security guard and a security guard.
  • the operator O may also be a person who operates the security terminal 300 in accordance with the instructions of a person performing security duties. In other words, the operator O may be a person who performs security duties indirectly.
  • Operator O may use security terminal 300 to send permission information (in other words, operator O's judgment result) indicating whether user U is permitted to log in to the virtual space to authentication server 200.
  • authentication server 200 may receive permission information indicating whether user U is permitted to log in to the virtual space.
  • Authentication server 200 may send the permission information to terminal device 100.
  • the terminal device 100 may transmit the permission information to the virtual world server 400. As a result, user U may log in to the virtual space. On the other hand, if the permission information indicates that user U is not permitted to log in to the virtual space, the terminal device 100 may, for example, notify user U that he or she cannot log in to the virtual space. Note that "user U" corresponds to "target" in the first embodiment.
  • the terminal device 100 includes a calculation device 110, a storage device 120, a communication device 130, an input device 140, an output device 150, and a camera 170.
  • the calculation device 110, the storage device 120, the communication device 130, the input device 140, the output device 150, and the camera 170 may be connected via a data bus 160.
  • the camera 170 may be a camera for capturing an image of the appearance of the user U.
  • the camera 170 may be positioned so as to be able to capture an image of at least the head of the user U, for example.
  • the camera 170 may be a visible light camera sensitive to the visible light wavelength range.
  • the arithmetic device 110 may have a processor 1101.
  • the arithmetic device 110 may have other processors in addition to the processor 1101. In other words, the arithmetic device 110 may have one or more processors.
  • the processor 1101 may be a multi-core processor. When the arithmetic device 110 has a single processor 1101 that is a multi-core processor, it can be said that the arithmetic device 110 logically has multiple processors.
  • the processor 1101 may be, for example, at least one of a CPU (Central Processing Unit), a GPU (Graphics Processing Unit), an FPGA (Field Programmable Gate Array), a TPU (Tensor Processing Unit), and a quantum processor.
  • a CPU Central Processing Unit
  • GPU Graphics Processing Unit
  • FPGA Field Programmable Gate Array
  • TPU Torsor Processing Unit
  • quantum processor a quantum processor
  • the storage device 120 may have memory 1201. Note that the storage device 120 may have other memories in addition to the memory 1201. In other words, the storage device 120 may have one or more memories.
  • the memory 1201 may be, for example, at least one of RAM (Random Access Memory), ROM (Read Only Memory), a hard disk device, a magneto-optical disk device, an SSD (Solid State Drive), and an optical disk array. Therefore, the storage device 120 may have memory 1201 as a non-transitory recording medium.
  • the storage device 120 can store desired data.
  • the memory 1201 of the storage device 120 may store a computer program 1201a to be executed by the arithmetic device 110.
  • the storage device 120 may temporarily store data that is temporarily used by the arithmetic device 110 when the arithmetic device 110 is executing the computer program 1201a.
  • computer program 1201a may be recorded on a computer-readable, non-transitory recording medium.
  • the computer program 1201a may be stored in memory 1201 by reading the recording medium using a recording medium reading device (not shown) provided in terminal device 100.
  • the recording medium may be at least one of an optical disk, a magnetic medium, a magneto-optical disk, a semiconductor memory, and any other medium capable of storing a program.
  • computer program 1201a may be acquired (in other words, downloaded) from a device (not shown) external to terminal device 100 via communication device 130.
  • the acquired computer program 1201a may be stored in memory 1201.
  • the communication device 130 may be capable of communicating with devices external to the terminal device 100 (e.g., the authentication server 200 and the virtual world server 400).
  • the communication device 130 may perform wired or wireless communication.
  • the input device 140 is a device capable of accepting information input to the terminal device 100 from outside.
  • the input device 140 may include an operating device (e.g., a keyboard, mouse, touch panel, etc.) that can be operated by a user of the terminal device 100.
  • the input device 140 may include a recording medium reading device that can read information recorded on a recording medium that is detachable from the terminal device 100, such as a USB (Universal Serial Bus) memory.
  • a USB Universal Serial Bus
  • the output device 150 is a device capable of outputting information to the outside of the terminal device 100.
  • the output device 150 may output visual information such as text or images, auditory information such as sound, or tactile information such as vibration, as the information.
  • the output device 150 may include, for example, at least one of a display, speaker, printer, and vibration motor.
  • the output device 150 may also be capable of outputting information to a recording medium that is detachable from the terminal device 100, such as a USB memory. Note that when the terminal device 100 outputs information via the communication device 130, the communication device 130 may function as the output device.
  • the output device 150 particularly includes a wearable device 151.
  • the processor 1101 of the computing device 110 may execute the processing to be performed by the terminal device 100 together with the memory 1201 of the storage device 120 in which the computer program 1201a is stored (in other words, together with the memory 1201 and the computer program 1201a stored in the memory 1201).
  • the processor 1101 may execute the computer program 1201a to realize a logical functional block within the computing device 110 (e.g., within the processor 1101) for executing the processing to be performed by the terminal device 100.
  • Wearable device 151 will be described with reference to Figure 5.
  • a video see-through head-mounted display is taken as an example of wearable device 151.
  • wearable device 151 is not limited to a video see-through head-mounted display, and may be, for example, an immersive head-mounted display or an optical see-through head-mounted display.
  • a head-mounted display as an example of a wearable device 151 may be a PC-connected head-mounted display that is connected to a personal computer as an example of a terminal device 100. Note that a head-mounted display as an example of a wearable device 151 may also be a standalone head-mounted display. Alternatively, a head-mounted display as an example of a wearable device 151 may also be a hybrid head-mounted display (i.e., a head-mounted display that can operate as both a standalone type and a PC-connected type).
  • wearable device 151 has display 1511, lens 1512L for the left eye, lens 1512R for the right eye, and multiple light sources 1513#1, 1513#2, 1513#3, and 1513#4 that emit near-infrared light.
  • Light sources 1513#1 and 1513#2 may be arranged around lens 1512L.
  • Light sources 1513#3 and 1513#4 may be arranged around lens 1512R.
  • Lenses 1512L and 1512R may be referred to as VR lenses.
  • Wearable device 151 further has cameras 1514L and 1514R, and cameras 1515L and 1515R.
  • Camera 1514L may be positioned so that it can capture an image of user U's left eye.
  • Camera 1514R may be positioned so that it can capture an image of user U's right eye.
  • Cameras 1514L and 1514R may be near-infrared cameras sensitive to the near-infrared wavelength range.
  • Cameras 1514L and 1514R may have a filter that transmits near-infrared wavelengths while cutting visible light wavelengths.
  • Cameras 1514L and 1514R may be referred to as in-cameras.
  • Cameras 1515L and 1515R may be positioned so that they can capture an image of the surroundings of wearable device 151.
  • Cameras 1515L and 1515R may be visible light cameras sensitive to the visible light wavelength range.
  • Cameras 1515L and 1515R may be referred to as outer cameras.
  • wearable device 151 may have a display for the left eye and a display for the right eye instead of display 1511.
  • the number of light sources emitting near-infrared light is not limited to four, and may be five or more, or three or less.
  • the authentication server 200 includes a calculation device 210, a storage device 220, a communication device 230, an input device 240, and an output device 250.
  • the calculation device 210, the storage device 220, the communication device 230, the input device 240, and the output device 250 may be connected via a data bus 260.
  • the arithmetic device 210 may have a processor 2101.
  • the arithmetic device 210 may have other processors in addition to the processor 2101. In other words, the arithmetic device 210 may have one or more processors.
  • the processor 2101 may be a multi-core processor. When the arithmetic device 210 has a single processor 2101 that is a multi-core processor, it can be said that the arithmetic device 210 logically has multiple processors.
  • the processor 2101 may be, for example, at least one of a CPU, GPU, FPGA, TPU, and quantum processor.
  • the storage device 220 may include memory 2201. Note that the storage device 220 may include other memories in addition to the memory 2201. In other words, the storage device 220 may include one or more memories.
  • the memory 2201 may be, for example, at least one of RAM, ROM, a hard disk device, a magneto-optical disk device, an SSD, and an optical disk array. Therefore, the storage device 220 may include memory 2201 as a non-transitory recording medium.
  • the storage device 220 can store desired data.
  • the memory 2201 of the storage device 220 may store a computer program 2201a executed by the arithmetic device 210.
  • the storage device 220 may temporarily store data that is temporarily used by the arithmetic device 210 when the arithmetic device 210 is executing the computer program 2201a.
  • the storage device 220 may store a database related to biometric authentication.
  • the database may include at least one of registered images and registered features used for biometric authentication.
  • Computer program 2201a may be recorded on a computer-readable, non-transitory recording medium.
  • the computer program 2201a may be stored in memory 2201 by reading the recording medium using a recording medium reading device (not shown) provided in authentication server 200.
  • the recording medium may be at least one of an optical disk, a magnetic medium, a magneto-optical disk, a semiconductor memory, or any other medium capable of storing a program.
  • Computer program 2201a may be acquired (in other words, downloaded) from a device (not shown) external to authentication server 200 via communication device 230.
  • the acquired computer program 2201a may be stored in memory 2201.
  • the communication device 230 may be capable of communicating with devices external to the authentication server 200 (e.g., the terminal device 100 and the security terminal 300).
  • the communication device 230 may perform wired or wireless communication.
  • the input device 240 is a device capable of accepting information input to the authentication server 200 from outside.
  • the input device 240 may include an operating device (e.g., a keyboard, mouse, touch panel, etc.) that can be operated by a user of the authentication server 200.
  • the input device 240 may include a recording medium reading device that can read information recorded on a recording medium that is detachable from the authentication server 200, such as a USB memory. Note that when information is input to the authentication server 200 via the communication device 230 (in other words, when the authentication server 200 obtains information via the communication device 230), the communication device 230 may function as an input device.
  • the output device 250 is a device capable of outputting information to the outside of the authentication server 200.
  • the output device 250 may output visual information such as text or images, auditory information such as sound, or tactile information such as vibration as the information.
  • the output device 250 may include, for example, at least one of a display, speaker, printer, and vibration motor.
  • the output device 250 may also be capable of outputting information to a recording medium that is detachable from the authentication server 200, such as a USB memory. Note that when the authentication server 200 outputs information via the communication device 230, the communication device 230 may function as the output device.
  • the processor 2101 of the computing device 210 may execute the processing to be performed by the authentication server 200.
  • a logical functional block for executing the processing to be performed by the authentication server 200 may be realized within the computing device 210 (e.g., within the processor 2101).
  • the computing device 210 may have an acquisition unit 211, an authentication unit 212, and an output unit 213, either as logically realized functional blocks or as physically realized processing circuits. Furthermore, at least one of the acquisition unit 211, authentication unit 212, and output unit 213 may be realized in a form that combines logical functional blocks and physical processing circuits (i.e., hardware).
  • the acquisition unit 211, authentication unit 212, and output unit 213 may be realized by a single processor (e.g., processor 2101).
  • the acquisition unit 211, authentication unit 212, and output unit 213 may each be realized by different processors.
  • parts of the acquisition unit 211, authentication unit 212, and output unit 213 may be realized by a single processor, and the remaining parts of the acquisition unit 211, authentication unit 212, and output unit 213 may be realized by one or more processors different from the single processor.
  • the "acquisition unit 211,” “authentication unit 212,” and “output unit 213” are components corresponding to the “acquisition device 11,” “authentication device 12,” and “output device 13" in the first embodiment, respectively.
  • the "communication device 230" is a component corresponding to the "reception device 14" in the first embodiment.
  • the authentication server 200 corresponds to the information processing device in this embodiment.
  • the acquisition unit 211 acquires biometric information including information related to the eyes of the user U wearing the wearable device 151.
  • the biometric information may be at least one of an eye image of the left eye generated by the camera 1514L of the wearable device 151 capturing an image of the left eye of the user U and an eye image of the right eye generated by the camera 1514R capturing an image of the right eye of the user U.
  • the calculation unit 110 of the terminal device 100 may extract features (e.g., features related to the iris) from at least one of the eye images of the left eye and the right eye.
  • the acquisition unit 211 of the authentication server 200 may acquire the extracted features as biometric information.
  • the authentication unit 212 performs biometric authentication of user U using the biometric information acquired by the acquisition unit 211. For example, if the biometric information is an eye image (i.e., at least one of an eye image of the left eye and an eye image of the right eye) and a registered image (e.g., an eye image) is registered in the database, the authentication unit 212 may perform the following processing.
  • the authentication unit 212 may extract features from the eye image as biometric information.
  • the authentication unit 212 may extract features from the registered image.
  • the authentication unit 212 may calculate a matching score by matching the features extracted from the eye image as biometric information with the features extracted from the registered image.
  • the authentication unit 212 may compare the matching score with a predetermined threshold.
  • the authentication unit 212 may determine that user U is the person associated with the registered image. On the other hand, if the matching score is less than the predetermined threshold, the authentication unit 212 may determine that user U is not the person associated with the registered image.
  • the authentication unit 212 may perform 1:N authentication as biometric authentication. If the maximum matching score is equal to or greater than a predetermined threshold, the authentication unit 212 may determine that user U is the person associated with the registered image with the maximum matching score. In this case, the authentication unit 212 may determine that authentication has been successful. On the other hand, if the maximum matching score is smaller than the predetermined threshold, the authentication unit 212 may determine that authentication has failed. Note that the authentication unit 212 may also perform 1:1 authentication as biometric authentication.
  • the authentication unit 212 may perform the following process.
  • the authentication unit 212 may extract the features from the eye image as biometric information.
  • the authentication unit 212 may calculate a matching score by matching the features extracted from the eye image as biometric information with the registered features.
  • the authentication unit 212 may perform the following process.
  • the authentication unit 212 may extract the feature from the registered image.
  • the authentication unit 212 may calculate a matching score by matching the feature as biometric information with the feature extracted from the registered image.
  • the authentication unit 212 may perform the following process.
  • the authentication unit 212 may calculate a matching score by matching the feature as biometric information with the registered feature.
  • the arithmetic unit 210 of the authentication server 200 may transmit information indicating that the biometric authentication has failed to the terminal device 100 via the communication device 230.
  • the arithmetic unit 110 of the terminal device 100 which has received the information indicating that the biometric authentication has failed, may control the output device 150 to notify the terminal device 100 that the biometric authentication has failed.
  • at least one of text, graphics, and images indicating that the biometric authentication has failed may be displayed on the display 1511 of the wearable device 151.
  • at least one of a voice and a sound effect may be emitted to indicate that the biometric authentication has failed.
  • the output unit 213 of the authentication server 200 transmits user information about user U to the security terminal 300 via the communication device 230.
  • the user information may include, for example, information for identifying user U (such as name, identification number, affiliation, etc.). Note that the information for identifying user U may be obtained, for example, from a database related to biometric authentication.
  • User information may include, for example, information for operator O of security terminal 300 to chat, make a voice call, or make a video call with user U.
  • information for operator O of security terminal 300 to chat may include, for example, information for operator O of security terminal 300 to chat, make a voice call, or make a video call with user U.
  • the information for the chat, make a voice call, or make a video call may be information (e.g., URL, ID, and password) for operator O and user U to access a specific page provided by authentication server 200.
  • the information for the chat, make a voice call, or make a video call may be information (e.g., IP address) for security terminal 300 to access terminal device 100.
  • the operator O of the security terminal 300 may determine whether or not user U can log in to the virtual space by chatting or making a voice or video call with user U, in addition to the information for identifying user U included in the user information (name, identification number, affiliation, etc.). In this case, the security terminal 300 may output at least one of the text data entered by user U and the voice of user U.
  • the output device 150 e.g., wearable device 151 of the terminal device 100 may output at least one of the text data entered by operator O and the voice of operator O.
  • a voice or video call can be used to check the liveness of user U, which is useful, for example, as a countermeasure against impersonation.
  • operator O may check user U's status by chatting or making a call with user U.
  • operator O may decide to allow user U to log in to the virtual space. On the other hand, if there is anything suspicious about user U, for example, operator O may continue chatting or talking with user U until the suspicious behavior is resolved. If the suspicious behavior is not resolved, operator O may decide not to allow user U to log in to the virtual space.
  • the calculation device 110 of the terminal device 100 may generate, for example, image Img2 shown in FIG. 8 by combining an eye image of the left eye generated by camera 1514L of the wearable device 151 capturing an image of user U's left eye with an eye image of the right eye generated by camera 1514R capturing an image of user U's right eye.
  • the calculation device 110 may further generate image Img3 by combining image Img1 and image Img2.
  • the calculation device 110 may transmit image Img3 to at least one of the security terminal 300 and the authentication server 200 via the communication device 130. For example, if image Img3 is displayed during a video call, the operator O can appropriately determine whether user U is the person in question.
  • a pre-registered facial image may be displayed on the display device of the security terminal 300.
  • cameras 1514L and 1514R may be near-infrared cameras.
  • image Img2 may be a near-infrared image.
  • camera 170 may be a visible light camera.
  • Img1 may be a visible light image. If image Img3 is generated by combining visible light image Img1 and near-infrared image Img2 and displayed on security terminal 300, operator O may feel uncomfortable. Therefore, calculation device 110 may, for example, perform color correction on image Img2 based on the color tone of image Img1. This configuration can prevent operator O from feeling uncomfortable when image Img3 is displayed on security terminal 300.
  • operator O may request, for example, an image generated by at least one of cameras 1515L and 1515R of wearable device 151 capturing an image of the area around wearable device 151 (in other words, the area around user U). For example, operator O can learn about the area around user U from the image. For example, if user U is in a location that is not desirable from a security standpoint, operator O may decide not to allow user U to log in to the virtual space. If user U does not respond to the video call, or if user U responds to the video call but the camera is turned off, operator O may decide not to allow user U to log in to the virtual space.
  • operator O may decide not to allow user U to log in to the virtual space. For example, if operator O determines that user U is being threatened by a person other than user U, operator O may call the police. Note that the user U and the operator O may agree in advance on a signal to signal an emergency. For example, if the user U signals an emergency, the operator O may call the police. Note that the user information may also include a biometric authentication matching score. For example, the operator O may refer to the matching score to change the way the operator responds to the user U.
  • the matching score is equal to or greater than the predetermined threshold, even if the matching score is equal to or greater than the predetermined threshold, an unregistered person (i.e., a stranger) may be mistaken for a registered person. If the matching score is significantly greater than the predetermined threshold, the possibility of misidentification is negligible. On the other hand, if the matching score is slightly greater than the predetermined threshold, the possibility of misidentification cannot be ignored. For example, if the matching score is slightly greater than the predetermined threshold, the operator O may check the user U more carefully. Such behavior by the operator O is also effective as a countermeasure against impersonation. In other words, including the matching score in the user information can provide countermeasures against impersonation.
  • Operator O uses security terminal 300 to send permission information indicating whether user U is permitted to log in to the virtual space to authentication server 200.
  • communication device 230 of authentication server 200 may receive the permission information.
  • computing device 210 of authentication server 200 transmits the permission information to terminal device 100 via communication device 230.
  • the calculation device 110 of the terminal device 100 may transmit the permission information to the virtual world server 400 via the communication device 130. As a result, user U may log in to the virtual space. On the other hand, if the permission information indicates that user U is not permitted to log in to the virtual space, the calculation device 110 of the terminal device 100 may, for example, control the output device 150 to notify user U that he or she cannot log in to the virtual space.
  • the information processing system 3 includes a terminal device 100, a security terminal 300, and a virtual world server 400.
  • the virtual world server 400 has the functions related to the authentication server 200 in the second embodiment.
  • information processing system 3 may perform the following operations. First, when user U wearing wearable device 151 accesses virtual world server 400 using terminal device 100, virtual world server 400 may acquire biometric information of user U from terminal device 100. The virtual world server 400 may perform biometric authentication of user U using the biometric information.
  • the virtual world server 400 may output user information about user U to the security terminal 300.
  • An operator O e.g., a security guard or a security guard
  • the operator O may use the security terminal 300 to send permission information indicating whether or not user U is permitted to log in to the virtual space (in other words, the result of the operator O's determination) to the virtual world server 400.
  • the virtual world server 400 may receive permission information indicating whether or not user U is permitted to log in to the virtual space.
  • the virtual world server 400 may permit user U to log in to the virtual space. As a result, user U may log in to the virtual space.
  • the virtual world server 400 may, for example, send information to the terminal device 100 indicating that user U cannot log in to the virtual space. As a result, the terminal device 100 may, for example, notify user U that he or she cannot log in to the virtual space.
  • the virtual world server 400 includes a computing device 410, a storage device 420, a communication device 430, an input device 440, and an output device 450.
  • the computing device 410, the storage device 420, the communication device 430, the input device 440, and the output device 450 may be connected via a data bus 460.
  • the arithmetic device 410 may have a processor 4101.
  • the arithmetic device 410 may have other processors in addition to the processor 4101. In other words, the arithmetic device 410 may have one or more processors.
  • the processor 4101 may be a multi-core processor. When the arithmetic device 410 has a single processor 4101 that is a multi-core processor, it can be said that the arithmetic device 410 logically has multiple processors.
  • the processor 4101 may be, for example, at least one of a CPU, GPU, FPGA, TPU, and quantum processor.
  • the storage device 420 may include a memory 4201.
  • the storage device 420 may include other memories in addition to the memory 4201. That is, the storage device 420 may include one or more memories.
  • the memory 4201 may be, for example, at least one of RAM, ROM, a hard disk device, a magneto-optical disk device, an SSD, and an optical disk array. Therefore, the storage device 420 may include the memory 4201 as a non-transitory recording medium.
  • the storage device 420 can store desired data.
  • the memory 4201 of the storage device 420 may store a computer program 4201a executed by the arithmetic device 410.
  • the storage device 420 may temporarily store data that is temporarily used by the arithmetic device 410 when the arithmetic device 410 is executing the computer program 4201a.
  • the storage device 420 may store a database related to biometric authentication.
  • the database may include at least one of registered images and registered features used for biometric authentication.
  • the computer program 4201a may be recorded on a computer-readable, non-transitory recording medium.
  • the computer program 4201a may be stored in the memory 4201 by reading the recording medium using a recording medium reading device (not shown) provided in the virtual world server 400.
  • the recording medium may be at least one of an optical disk, a magnetic medium, a magneto-optical disk, a semiconductor memory, and any other medium capable of storing a program.
  • the computer program 4201a may be acquired (in other words, downloaded) from a device (not shown) external to the virtual world server 400 via the communication device 430.
  • the acquired computer program 4201a may be stored in the memory 4201.
  • the communication device 430 may be capable of communicating with devices external to the virtual world server 400 (e.g., the terminal device 100 and the security terminal 300).
  • the communication device 430 may perform wired or wireless communication.
  • the input device 440 is a device capable of accepting information input to the virtual world server 400 from outside.
  • the input device 440 may include an operating device (e.g., a keyboard, mouse, touch panel, etc.) that can be operated by a user of the virtual world server 400.
  • the input device 440 may include a recording medium reading device that can read information recorded on a recording medium that can be attached to or detached from the virtual world server 400, such as a USB memory. Note that when information is input to the virtual world server 400 via the communication device 430 (in other words, when the virtual world server 400 obtains information via the communication device 430), the communication device 430 may function as an input device.
  • the output device 450 is a device capable of outputting information to the outside of the virtual world server 400.
  • the output device 450 may output visual information such as text or images, auditory information such as sound, or tactile information such as vibration, as the information.
  • the output device 450 may include, for example, at least one of a display, speaker, printer, and vibration motor.
  • the output device 450 may also be capable of outputting information to a recording medium that is detachable from the virtual world server 400, such as a USB memory stick. Note that when the virtual world server 400 outputs information via the communication device 430, the communication device 430 may function as an output device.
  • the processor 4101 of the computing device 410 may execute the processing to be performed by the virtual world server 400.
  • a logical functional block for executing the processing to be performed by the virtual world server 400 may be realized within the computing device 410 (e.g., within the processor 4101).
  • the computing device 410 may have an acquisition unit 411, an authentication unit 412, and an output unit 413, either as logically realized functional blocks or as physically realized processing circuits. Note that at least one of the acquisition unit 411, authentication unit 412, and output unit 413 may be realized in a form that combines logical functional blocks and physical processing circuits (i.e., hardware).
  • the acquisition unit 411, authentication unit 412, and output unit 413 may be realized by a single processor (e.g., processor 4101).
  • the acquisition unit 411, authentication unit 412, and output unit 413 may each be realized by different processors.
  • parts of the acquisition unit 411, authentication unit 412, and output unit 413 may be realized by a single processor, and the remaining parts of the acquisition unit 411, authentication unit 412, and output unit 413 may be realized by one or more processors different from the single processor.
  • the "acquisition unit 411,” “authentication unit 412,” and “output unit 413” are components corresponding to the “acquisition device 11,” “authentication device 12,” and “output device 13" in the first embodiment, respectively.
  • the "communication device 430" is a component corresponding to the "reception device 14" in the first embodiment.
  • the virtual world server 400 corresponds to the information processing device in this embodiment.
  • the output unit 413 of the virtual world server 400 sends user information about user U to the security terminal 300 via the communication device 430.
  • the operator O uses the security terminal 300 to send permission information to the virtual world server 400 indicating whether user U is permitted to log in to the virtual space.
  • the communication device 430 of the virtual world server 400 may receive the permission information.
  • the virtual world server 400 may permit user U to log in to the virtual space. As a result, user U may log in to the virtual space.
  • the calculation device 410 of the virtual world server 400 may, for example, send information indicating that user U cannot log in to the virtual space to the terminal device 100 via the communication device 430.
  • the calculation device 110 of the terminal device 100 may, for example, control the output device 150 to notify user U that he or she cannot log in to the virtual space.
  • the information processing system 4 includes a terminal device 100, a security terminal 300, and a virtual world server 400.
  • the terminal device 100 has the functions related to the authentication server 200 in the second embodiment.
  • information processing system 4 may perform the following operations. First, when user U wearing wearable device 151 uses terminal device 100 to access virtual world server 400 (for example, a homepage related to the virtual space provided by virtual world server 400), virtual world server 400 may request authentication of user U from terminal device 100.
  • virtual world server 400 for example, a homepage related to the virtual space provided by virtual world server 400
  • the terminal device 100 may acquire biometric information of user U.
  • the terminal device 100 may use the biometric information to perform biometric authentication of user U. If the biometric authentication is successful, the terminal device 100 may output user information about user U to the security terminal 300.
  • An operator O of the security terminal 300 e.g., at least one of a security guard and a security guard
  • Operator O may use security terminal 300 to send permission information (in other words, the result of operator O's judgment) indicating whether user U is permitted to log in to the virtual space to terminal device 100.
  • terminal device 100 may receive permission information indicating whether user U is permitted to log in to the virtual space.
  • the terminal device 100 may transmit the permission information to the virtual world server 400. As a result, user U may log in to the virtual space. On the other hand, if the permission information indicates that user U is not permitted to log in to the virtual space, the terminal device 100 may, for example, notify user U that he or she cannot log in to the virtual space.
  • the arithmetic device 110 of the terminal device 100 may include, as logically realized functional blocks or physically realized processing circuits, an acquisition unit 111, an authentication unit 112, and an output unit 113.
  • the acquisition unit 111, the authentication unit 112, and the output unit 113 may be realized in a form in which a logical functional block and a physical processing circuit (i.e., hardware) are mixed.
  • the acquisition unit 111, authentication unit 112, and output unit 113 may be realized by a single processor (for example, processor 1101).
  • the acquisition unit 111, authentication unit 112, and output unit 113 may each be realized by different processors.
  • parts of the acquisition unit 111, authentication unit 112, and output unit 113 may be realized by a single processor, and the remaining parts of the acquisition unit 111, authentication unit 112, and output unit 113 may be realized by one or more processors different from the single processor.
  • the "acquisition unit 111,” “authentication unit 112,” and “output unit 113" are components corresponding to the “acquisition device 11,” “authentication device 12,” and “output device 13" in the first embodiment, respectively.
  • the "communication device 130" is a component corresponding to the "reception device 14" in the first embodiment.
  • the terminal device 100 corresponds to the information processing device in this embodiment.
  • the acquisition unit 111 acquires biometric information including information related to the eyes of the user U wearing the wearable device 151.
  • the authentication unit 112 performs biometric authentication of the user U using the biometric information acquired by the acquisition unit 111.
  • the authentication unit 112 may perform 1:1 authentication as the biometric authentication. However, the authentication unit 112 may also perform 1:N authentication as the biometric authentication. If the biometric authentication fails, the calculation device 110 may control the output device 150 to notify the user that the biometric authentication has failed.
  • the output unit 113 transmits user information about user U to the security terminal 300 via the communication device 130.
  • the operator O uses the security terminal 300 to transmit permission information indicating whether user U is permitted to log in to the virtual space to the terminal device 100.
  • the communication device 130 of the terminal device 100 may receive the permission information.
  • the calculation device 110 of the terminal device 100 may transmit the permission information to the virtual world server 400 via the communication device 130. As a result, user U may log in to the virtual space. On the other hand, if the permission information indicates that user U is not permitted to log in to the virtual space, the calculation device 110 of the terminal device 100 may, for example, control the output device 150 to notify user U that he or she cannot log in to the virtual space.
  • information processing system 5 includes multiple terminal devices 100#1, 100#2, and 100#3, an authentication server 200, a security terminal 300, and a virtual world server 400.
  • the multiple terminal devices 100#1, 100#2, and 100#3, authentication server 200, security terminal 300, and virtual world server 400 are configured to be able to communicate with each other via a network such as the Internet.
  • information processing system 5 may include only two terminal devices, or may include four or more terminal devices.
  • Terminal device 100#1 is a terminal device used by user U#1.
  • Terminal device 100#2 is a terminal device used by user U#2.
  • Terminal device 100#3 is a terminal device used by user U#3.
  • the configuration of each of the multiple terminal devices 100#1, 100#2, and 100#3 may be the same as that of terminal device 100 in the second embodiment. Therefore, an explanation of the configuration of each of the multiple terminal devices 100#1, 100#2, and 100#3 will be omitted.
  • user U#1 is assumed to be wearing a wearable device provided in terminal device 100#1.
  • User U#2 is assumed to be wearing a wearable device provided in terminal device 100#2.
  • User U#3 is assumed to be wearing a wearable device provided in terminal device 100#3.
  • the wearable devices of the multiple terminal devices 100#1, 100#2, and 100#3 each correspond to the wearable device 151 in the second embodiment.
  • the information processing system 5 may perform the following operations.
  • a user U#1 wearing a wearable device uses a terminal device 100#1 to access the virtual world server 400 (for example, a homepage related to a virtual space provided by the virtual world server 400)
  • the virtual world server 400 may send information for authentication to the terminal device 100#1.
  • the terminal device 100#1 may automatically access the authentication server 200 based on the information for authentication.
  • the authentication server 200 may acquire biometric information of the user U#1 from the terminal device 100#1.
  • the authentication server 200 may use the biometric information to perform biometric authentication of the user U#1.
  • the virtual world server 400 may transmit information for authentication to terminal device 100#2. Having received the information for authentication, terminal device 100#2 may automatically access the authentication server 200 based on the information for authentication.
  • the authentication server 200 may acquire biometric information of user U#2 from terminal device 100#2.
  • the authentication server 200 may use the biometric information to perform biometric authentication of user U#2.
  • the virtual world server 400 may transmit information for authentication to terminal device 100#2. Having received the information for authentication, terminal device 100#3 may automatically access the authentication server 200 based on the information for authentication.
  • the authentication server 200 may acquire biometric information of user U#3 from terminal device 100#3.
  • the authentication server 200 may use the biometric information to perform biometric authentication of user U#3.
  • the authentication server 200 may determine whether the multiple users U#1, U#2, and U#3 satisfy predetermined authentication conditions based on the user information for user U#1, user information for user U#2, and user information for user U#3. If biometric authentication fails for at least one of the multiple users U#1, U#2, and U#3, the authentication server 200 may not allow the multiple users U#1, U#2, and U#3 to log in to one virtual space. If it is determined that the multiple users U#1, U#2, and U#3 do not satisfy the predetermined authentication conditions, the authentication server 200 may not allow the multiple users U#1, U#2, and U#3 to log in to one virtual space.
  • the authentication server 200 may output user information about user U#1, user information about user U#2, and user information about user U#3 to the security terminal 300.
  • the operator O of the security terminal 300 may determine whether or not multiple users U#1, U#2, and U#3 can log in to one virtual space based on the user information about user U#1, user information about user U#2, and user information about user U#3. Note that the operator O is prohibited from making a decision to allow only a portion of multiple users U#1, U#2, and U#3 to log in to one virtual space (in other words, not allowing only a portion of multiple users U#1, U#2, and U#3 to log in to one virtual space).
  • Operator O may use security terminal 300 to send permission information (in other words, operator O's judgment result) indicating whether multiple users U#1, U#2, and U#3 are permitted to log in to one virtual space to authentication server 200.
  • authentication server 200 may receive permission information indicating whether multiple users U#1, U#2, and U#3 are permitted to log in to one virtual space.
  • Authentication server 200 may send the permission information to multiple terminal devices 100#1, 100#2, and 100#3.
  • each of terminal devices 100#1, 100#2, and 100#3 may transmit the permission information to virtual world server 400. As a result, multiple users U#1, U#2, and U#3 may log in to one virtual space.
  • terminal devices 100#1, 100#2, and 100#3 may, for example, notify users that they cannot log in to one virtual space.
  • the authentication server 200 may include a computing device 210a instead of the computing device 210.
  • the computing device 210a may have one or more processors, similar to the computing device 210.
  • the computing device 210a may have an acquisition unit 211, a personal authentication unit 212a, an output unit 213, and a group authentication unit 214 as logically realized functional blocks or as physically realized processing circuits.
  • the acquisition unit 211, the personal authentication unit 212a, the output unit 213, and the group authentication unit 214 may be realized in a form in which a logical functional block and a physical processing circuit (i.e., hardware) are mixed.
  • the acquisition unit 211, personal authentication unit 212a, output unit 213, and group authentication unit 214 may be realized by a single processor.
  • the acquisition unit 211, personal authentication unit 212a, output unit 213, and group authentication unit 214 may each be realized by different processors.
  • parts of the acquisition unit 211, personal authentication unit 212a, output unit 213, and group authentication unit 214 may be realized by a single processor, and the remaining parts of the acquisition unit 211, personal authentication unit 212a, output unit 213, and group authentication unit 214 may be realized by one or more processors different from the single processor.
  • the "personal authentication unit 212a” is a component corresponding to the "authentication unit 212" in the second embodiment.
  • the authentication server 200 corresponds to the information processing device according to this embodiment.
  • the personal authentication unit 212a and the group authentication unit 214 may be configured as an integrated unit.
  • the acquisition unit 211 acquires biometric information including information related to the eyes of user U#1 wearing the wearable device.
  • the biometric information may be at least one of an image of the left eye and an image of the right eye of user U#1.
  • the biometric information may also be a feature extracted from at least one of the image of the left eye and the image of the right eye of user U#1.
  • the personal authentication unit 212a performs biometric authentication of user U#1 using the biometric information of user U#1 acquired by the acquisition unit 211.
  • the acquisition unit 211 acquires biometric information including information related to the eyes of user U#2 wearing the wearable device.
  • the personal authentication unit 212a performs biometric authentication of user U#2 using the biometric information of user U#2 acquired by the acquisition unit 211.
  • the acquisition unit 211 acquires biometric information including information related to the eyes of user U#3 wearing the wearable device.
  • the personal authentication unit 212a performs biometric authentication of user U#3 using the biometric information of user U#3 acquired by the acquisition unit 211.
  • the calculation device 210a of the authentication server 200 may send information indicating that biometric authentication has failed to the terminal device used by at least one of the users (i.e., at least one of the multiple terminal devices 100#1, 100#2, and 100#3) via the communication device 230.
  • the calculation device 110 of the terminal device used by at least one of the users which receives the information indicating that biometric authentication has failed, may control the output device 150 to notify the user that biometric authentication has failed.
  • the calculation device 210a of the authentication server 200 may transmit information indicating that login to the one virtual space is not permitted to the multiple terminal devices 100#1, 100#2, and 100#3 via the communication device 230.
  • the calculation device 110 of each of the multiple terminal devices 100#1, 100#2, and 100#3 that has received the information indicating that login to the one virtual space is not permitted may control the output device 150 to notify that login to the one virtual space is not permitted.
  • the personal authentication unit 212a of the authentication server 200 may send user information about user U#1, user information about user U#2, and user information about user U#3 to the group authentication unit 214.
  • the personal authentication unit 212a may send a group authentication query to the group authentication unit 214. Having received the group authentication query, the group authentication unit 214 may determine whether the multiple users U#1, U#2, and U#3 satisfy predetermined authentication conditions based on the user information about user U#1, user information about user U#2, and user information about user U#3.
  • the specified authentication conditions may include, for example, at least one of the following: a user who is registered as a member of a group and who holds a specified job title is included; the user combination satisfies a predetermined combination; and the time elapsed since the group authentication query was received does not exceed a specified time.
  • the specified authentication conditions may include at least one of a condition that must be met by multiple users and a time limit condition.
  • the calculation device 210a may transmit information indicating that login to the one virtual space is not permitted to the multiple terminal devices 100#1, 100#2, and 100#3 via the communication device 230.
  • the calculation device 110 of each of the multiple terminal devices 100#1, 100#2, and 100#3 that has received the information indicating that login to the one virtual space is not permitted may control the output device 150 to notify that login to the one virtual space is not permitted.
  • the output unit 213 of the authentication server 200 may output user information regarding user U#1, user information regarding user U#2, and user information regarding user U#3 to the security terminal 300 via the communication device 230.
  • An operator O of the security terminal 300 may determine whether or not multiple users U#1, U#2, and U#3 can log in to one virtual space by, for example, chatting or making voice or video calls with multiple users U#1, U#2, and U#3, in addition to the information for identifying the user included in each user's information (name, identification number, affiliation, etc.).
  • the security terminal 300 may display multiple images (e.g., an image equivalent to image Img3 shown in FIG. 8) corresponding to multiple users U#1, U#2, and U#3, respectively.
  • This configuration allows the operator O to be presented with more information about the users.
  • the operator O of the security terminal 300 may simultaneously chat or make voice or video calls with multiple users U#1, U#2, and U#3.
  • the wearable devices of each of the multiple terminal devices 100#1, 100#2, and 100#3 may also display multiple images corresponding to the multiple users U#1, U#2, and U#3, respectively.
  • operator O may check the status of each of multiple users U#1, U#2, and U#3 by chatting or calling with them. For example, operator O may check the status of each of multiple users U#1, U#2, and U#3 by having the users chat or call with each other. At this time, each of multiple users U#1, U#2, and U#3 may check the status of the other users by referring to the content of the chat or call. For example, if one of multiple users U#1, U#2, and U#3 feels that another user is suspicious, that user may inform operator O that there is something suspicious about the other user. With this configuration, not only operator O but also multiple users U#1, U#2, and U#3 can check on each other.
  • the operator O may decide to allow the multiple users U#1, U#2, and U#3 to log in to one virtual space.
  • the operator O may decide not to allow the multiple users U#1, U#2, and U#3 to log in to one virtual space.
  • Operator O may use security terminal 300 to send permission information to authentication server 200 indicating whether multiple users U#1, U#2, and U#3 are permitted to log in to one virtual space.
  • communication device 230 of authentication server 200 may receive the permission information.
  • computing device 210 of authentication server 200 may transmit the permission information to multiple terminal devices 100#1, 100#2, and 100#3 via communication device 230.
  • the calculation device 110 of each of the multiple terminal devices 100#1, 100#2, and 100#3 may transmit the permission information to the virtual world server 400 via the communication device 130. As a result, the multiple users U#1, U#2, and U#3 may log in to the virtual space. On the other hand, if the permission information indicates that multiple users U#1, U#2, and U#3 are not permitted to log in to the virtual space, the calculation device 110 of each of the multiple terminal devices 100#1, 100#2, and 100#3 may control the output device 150 to notify the users that they cannot log in to the virtual space.
  • FIG. 16 and 17 A sixth embodiment of an information processing system, an information processing device, an information processing method, and a recording medium will be described with reference to Figs. 16 and 17 in addition to Fig. 14.
  • the sixth embodiment of an information processing system, an information processing device, an information processing method, and a recording medium will be described using an information processing system 5.
  • the sixth embodiment similar to the fifth embodiment, a case where multiple users log in to one virtual space will be described. Note that, for the sixth embodiment, descriptions that overlap with the descriptions of the first to fifth embodiments will be omitted as appropriate.
  • the information processing system 5 may perform the following operations.
  • a user U#1 wearing a wearable device uses the terminal device 100#1 to access the virtual world server 400 (e.g., a homepage related to a virtual space provided by the virtual world server 400)
  • the virtual world server 400 may request the terminal device 100#1 to authenticate the user U#1.
  • the terminal device 100#1 that has been requested to authenticate the user U#1 may acquire biometric information of the user U#1.
  • the terminal device 100#1 may perform biometric authentication of the user U#1 using the biometric information. If the biometric authentication is successful, the terminal device 100#1 may transmit user information related to the user U#1 to the authentication server 200.
  • the virtual world server 400 may request terminal device 100#2 to authenticate user U#2.
  • terminal device 100#2 may acquire biometric information of user U#2.
  • Terminal device 100#2 may perform biometric authentication of user U#2 using the biometric information. If the biometric authentication is successful, terminal device 100#2 may transmit user information about user U#2 to the authentication server 200.
  • terminal device 100#3 may request terminal device 100#3 to authenticate user U#3.
  • terminal device 100#3 may acquire biometric information of user U#3.
  • Terminal device 100#3 may perform biometric authentication of user U#3 using the biometric information. If the biometric authentication is successful, terminal device 100#3 may transmit user information about user U#3 to the authentication server 200.
  • the authentication server 200 which has received user information about user U#1, user U#2, and user U#3, may determine whether multiple users U#1, U#2, and U#3 satisfy predetermined authentication conditions based on the user information about user U#1, user U#2, and user U#3. If the authentication server 200 does not receive user information about at least one of the multiple users U#1, U#2, and U#3 within a predetermined period due to a biometric authentication failure for at least one of the multiple users U#1, U#2, and U#3, the authentication server 200 may not allow the multiple users U#1, U#2, and U#3 to log in to one virtual space. If it is determined that the multiple users U#1, U#2, and U#3 do not satisfy the predetermined authentication conditions, the authentication server 200 may not allow the multiple users U#1, U#2, and U#3 to log in to one virtual space.
  • the authentication server 200 may output user information about user U#1, user information about user U#2, and user information about user U#3 to the security terminal 300.
  • An operator O of the security terminal 300 may determine whether or not multiple users U#1, U#2, and U#3 can log in to one virtual space based on the user information about user U#1, user information about user U#2, and user information about user U#3.
  • Operator O may use security terminal 300 to send permission information (in other words, operator O's judgment result) indicating whether multiple users U#1, U#2, and U#3 are permitted to log in to one virtual space to authentication server 200.
  • authentication server 200 may receive permission information indicating whether multiple users U#1, U#2, and U#3 are permitted to log in to one virtual space.
  • Authentication server 200 may send the permission information to multiple terminal devices 100#1, 100#2, and 100#3.
  • each of terminal devices 100#1, 100#2, and 100#3 may transmit the permission information to virtual world server 400. As a result, multiple users U#1, U#2, and U#3 may log in to one virtual space.
  • terminal devices 100#1, 100#2, and 100#3 may, for example, notify users that they cannot log in to one virtual space.
  • Each of the terminal devices 100#1, 100#2, and 100#3 may include a computing device 110a instead of the computing device 110.
  • the computing device 110a may have one or more processors, similar to the computing device 110.
  • the computing device 110a may have an acquisition unit 111, a personal authentication unit 112a, and an output unit 113 as logically realized functional blocks or as physically realized processing circuits.
  • the "personal authentication unit 112a" is a component corresponding to the "authentication unit 112" in the fourth embodiment.
  • the authentication server 200 may include a computing device 210b instead of the computing device 210 or 210a.
  • the computing device 210b may have one or more processors, similar to the computing device 210.
  • the computing device 210b may include an acquisition unit 211, an output unit 213, and a group authentication unit 214 as logically realized functional blocks or as physically realized processing circuits.
  • the acquisition unit 111 of the terminal device 100#1 may acquire biometric information including information related to the eyes of the user U#1 wearing the wearable device.
  • the personal authentication unit 112a of the terminal device 100#1 may perform biometric authentication of the user U#1 using the biometric information acquired by the acquisition unit 111. If the biometric authentication is successful, the output unit 113 of the terminal device 100#1 may transmit user information related to the user U#1 to the authentication server 200 via the communication device 130 of the terminal device 100#1. Note that if the biometric authentication fails, the calculation device 110a of the terminal device 100#1 may control the output device 150 of the terminal device 100#1 to notify the user that the biometric authentication has failed.
  • the acquisition unit 111 of terminal device 100#2 may acquire biometric information including information related to the eyes of user U#2 wearing the wearable device.
  • the personal authentication unit 112a of terminal device 100#2 may perform biometric authentication of user U#2 using the biometric information acquired by the acquisition unit 111. If the biometric authentication is successful, the output unit 113 of terminal device 100#2 may transmit user information related to user U#2 to the authentication server 200 via the communication device 130 of terminal device 100#2. Note that if the biometric authentication fails, the calculation unit 110a of terminal device 100#2 may control the output device 150 of terminal device 100#2 to notify the user that the biometric authentication has failed.
  • the acquisition unit 111 of terminal device 100#3 may acquire biometric information including information related to the eyes of user U#3 wearing the wearable device.
  • the personal authentication unit 112a of terminal device 100#3 may perform biometric authentication of user U#3 using the biometric information acquired by the acquisition unit 111. If the biometric authentication is successful, the output unit 113 of terminal device 100#3 may transmit user information related to user U#3 to the authentication server 200 via the communication device 130 of terminal device 100#3. Note that if the biometric authentication fails, the calculation unit 110a of terminal device 100#3 may control the output device 150 of terminal device 100#3 to notify the user that the biometric authentication has failed.
  • the acquisition unit 211 of the authentication server 200 may acquire user information about user U#1, user U#2, and user U#3 transmitted from each of the multiple terminal devices 100#1, 100#2, and 100#3.
  • the multiple terminal devices 100#1, 100#2, and 100#3 may also transmit a group authentication query to the authentication server 200.
  • the group authentication unit 214 of the authentication server 200 may determine whether the multiple users U#1, U#2, and U#3 satisfy predetermined authentication conditions based on the user information about user U#1, user information about user U#2, and user information about user U#3.
  • the calculation device 210b may transmit information indicating that login to the one virtual space is not permitted to the multiple terminal devices 100#1, 100#2, and 100#3 via the communication device 230.
  • the calculation device 110 of each of the multiple terminal devices 100#1, 100#2, and 100#3 that has received the information indicating that login to the one virtual space is not permitted may control the output device 150 to notify that login to the one virtual space is not permitted.
  • the output unit 213 of the authentication server 200 may output user information regarding user U#1, user information regarding user U#2, and user information regarding user U#3 to the security terminal 300 via the communication device 230.
  • Operator O may use security terminal 300 to send permission information to authentication server 200 indicating whether multiple users U#1, U#2, and U#3 are permitted to log in to one virtual space.
  • communication device 230 of authentication server 200 may receive the permission information.
  • computing device 210 of authentication server 200 may transmit the permission information to multiple terminal devices 100#1, 100#2, and 100#3 via communication device 230.
  • Seventh Embodiment A seventh embodiment of an information processing system, an information processing device, an information processing method, and a recording medium will be described with reference to Figures 18 and 19. Below, the seventh embodiment of an information processing system, an information processing device, an information processing method, and a recording medium will be described using an information processing system 6. In the seventh embodiment, similar to the fifth embodiment, a case where multiple users log in to one virtual space will be described. Note that, for the seventh embodiment, descriptions that overlap with the descriptions of the first to sixth embodiments will be omitted as appropriate.
  • information processing system 6 includes multiple terminal devices 100#1, 100#2, and 100#3, a security terminal 300, and a virtual world server 400.
  • the multiple terminal devices 100#1, 100#2, and 100#3, security terminal 300, and virtual world server 400 are configured to be able to communicate with each other via a network such as the Internet.
  • information processing system 6 may include only two terminal devices, or may include four or more terminal devices.
  • the information processing system 6 may perform the following operations.
  • a user U#1 wearing a wearable device accesses the virtual world server 400 using the terminal device 100#1, the virtual world server 400 may acquire biometric information of the user U#1 from the terminal device 100#1.
  • the virtual world server 400 may perform biometric authentication of the user U#1 using the biometric information.
  • the virtual world server 400 may acquire biometric information of user U#2 from terminal device 100#2.
  • the virtual world server 400 may use the biometric information to perform biometric authentication of user U#2.
  • the virtual world server 400 may acquire biometric information of user U#3 from terminal device 100#3.
  • the virtual world server 400 may use the biometric information to perform biometric authentication of user U#3.
  • the virtual world server 400 may determine whether the multiple users U#1, U#2, and U#3 satisfy predetermined authentication conditions based on the user information for user U#1, user information for user U#2, and user information for user U#3. If biometric authentication fails for at least one of the multiple users U#1, U#2, and U#3, the virtual world server 400 may not allow the multiple users U#1, U#2, and U#3 to log in to one virtual space. If it is determined that the multiple users U#1, U#2, and U#3 do not satisfy the predetermined authentication conditions, the virtual world server 400 may not allow the multiple users U#1, U#2, and U#3 to log in to one virtual space.
  • the virtual world server 400 may output user information about user U#1, user information about user U#2, and user information about user U#3 to the security terminal 300.
  • An operator O of the security terminal 300 may determine whether or not multiple users U#1, U#2, and U#3 can log in to one virtual space based on the user information about user U#1, user information about user U#2, and user information about user U#3.
  • Operator O may use security terminal 300 to send permission information (in other words, the result of operator O's judgment) indicating whether or not multiple users U#1, U#2, and U#3 are permitted to log in to one virtual space to virtual world server 400.
  • permission information in other words, the result of operator O's judgment
  • virtual world server 400 may receive permission information indicating whether or not multiple users U#1, U#2, and U#3 are permitted to log in to one virtual space.
  • the virtual world server 400 may permit the multiple users U#1, U#2, and U#3 to log in to the virtual space. As a result, the multiple users U#1, U#2, and U#3 may log in to the virtual space.
  • the virtual world server 400 may, for example, send information to the multiple terminal devices 100#1, 100#2, and 100#3 indicating that they cannot log in to the virtual space. As a result, the terminal devices 100#1, 100#2, and 100#3 may, for example, notify them that they cannot log in to the virtual space.
  • the virtual world server 400 may include a computing device 410a instead of the computing device 410.
  • the computing device 410a may have one or more processors, similar to the computing device 410.
  • the computing device 410a may have an acquisition unit 411, a personal authentication unit 412a, an output unit 413, and a group authentication unit 414, either as logically realized functional blocks or as physically realized processing circuits.
  • the acquisition unit 411, the personal authentication unit 412a, the output unit 413, and the group authentication unit 414 may be realized in a form in which a logical functional block and a physical processing circuit (i.e., hardware) are mixed.
  • the acquisition unit 411, personal authentication unit 412a, output unit 413, and group authentication unit 414 may be realized by a single processor.
  • the acquisition unit 411, personal authentication unit 412a, output unit 413, and group authentication unit 414 may each be realized by different processors.
  • parts of the acquisition unit 411, personal authentication unit 412a, output unit 413, and group authentication unit 414 may be realized by a single processor, and the remaining parts of the acquisition unit 411, personal authentication unit 412a, output unit 413, and group authentication unit 414 may be realized by one or more processors different from the single processor.
  • the "personal authentication unit 412a” is a component corresponding to the "authentication unit 412" in the third embodiment.
  • the virtual world server 400 corresponds to the information processing device according to this embodiment.
  • the personal authentication unit 412a and the group authentication unit 414 may be configured as an integrated unit.
  • the acquisition unit 411 acquires biometric information including information related to the eyes of user U#1 wearing the wearable device.
  • the biometric information may be at least one of an image of the left eye and an image of the right eye of user U#1.
  • the biometric information may also be a feature extracted from at least one of the image of the left eye and the image of the right eye of user U#1.
  • the personal authentication unit 412a performs biometric authentication of user U#1 using the biometric information of user U#1 acquired by the acquisition unit 411.
  • the acquisition unit 411 acquires biometric information including information related to the eyes of user U#2 wearing the wearable device.
  • the personal authentication unit 412a performs biometric authentication of user U#2 using the biometric information of user U#2 acquired by the acquisition unit 411.
  • the acquisition unit 411 acquires biometric information including information related to the eyes of user U#3 wearing the wearable device.
  • the personal authentication unit 412a performs biometric authentication of user U#3 using the biometric information of user U#3 acquired by the acquisition unit 411.
  • the computing device 410a of the virtual world server 400 may send information indicating that biometric authentication has failed to the terminal device used by at least one of the users (i.e., at least one of the multiple terminal devices 100#1, 100#2, and 100#3) via the communication device 430.
  • the computing device 110 of the terminal device used by at least one of the users which receives the information indicating that biometric authentication has failed, may control the output device 150 to notify the user that biometric authentication has failed.
  • the computing device 410a of the virtual world server 400 may transmit information indicating that login to the one virtual space is not permitted to the multiple terminal devices 100#1, 100#2, and 100#3 via the communication device 430.
  • the computing device 110 of each of the multiple terminal devices 100#1, 100#2, and 100#3 that has received the information indicating that login to the one virtual space is not permitted may control the output device 150 to notify that login to the one virtual space is not permitted.
  • the personal authentication unit 412a of the virtual world server 400 may send user information about user U#1, user information about user U#2, and user information about user U#3 to the group authentication unit 414.
  • the personal authentication unit 412a may send a group authentication query to the group authentication unit 414. Having received the group authentication query, the group authentication unit 414 may determine whether the multiple users U#1, U#2, and U#3 satisfy predetermined authentication conditions based on the user information about user U#1, user information about user U#2, and user information about user U#3.
  • the calculation device 410a may transmit information indicating that login to the one virtual space is not permitted to the multiple terminal devices 100#1, 100#2, and 100#3 via the communication device 430.
  • the calculation device 110 of each of the multiple terminal devices 100#1, 100#2, and 100#3 that has received the information indicating that login to the one virtual space is not permitted may control the output device 150 to notify that login to the one virtual space is not permitted.
  • the output unit 413 of the virtual world server 400 may output user information regarding user U#1, user information regarding user U#2, and user information regarding user U#3 to the security terminal 300 via the communication device 430.
  • Operator O may use security terminal 300 to send permission information indicating whether multiple users U#1, U#2, and U#3 are permitted to log in to one virtual space to virtual world server 400.
  • communication device 430 of virtual world server 400 may receive the permission information.
  • the virtual world server 400 may permit the multiple users U#1, U#2, and U#3 to log in to the virtual space. As a result, the multiple users U#1, U#2, and U#3 may log in to the virtual space.
  • the computing device 410 of the virtual world server 400 may transmit, for example, information indicating that they are unable to log in to the virtual space to the multiple terminal devices 100#1, 100#2, and 100#3 via the communication device 420. As a result, the computing device 110 of each of the multiple terminal devices 100#1, 100#2, and 100#3 may control the output device 150 to notify that they are unable to log in to the virtual space.
  • the information processing system 6 may perform the following operations.
  • a user U#1 wearing a wearable device uses the terminal device 100#1 to access the virtual world server 400 (e.g., a homepage related to a virtual space provided by the virtual world server 400)
  • the virtual world server 400 may request the terminal device 100#1 to authenticate the user U#1.
  • the terminal device 100#1 that has been requested to authenticate the user U#1 may acquire biometric information of the user U#1.
  • the terminal device 100#1 may perform biometric authentication of the user U#1 using the biometric information. If the biometric authentication is successful, the terminal device 100#1 may transmit user information related to the user U#1 to the virtual world server 400.
  • the virtual world server 400 may request that terminal device 100#2 authenticate user U#2.
  • terminal device 100#2 may acquire biometric information of user U#2.
  • Terminal device 100#2 may use the biometric information to perform biometric authentication of user U#2. If the biometric authentication is successful, terminal device 100#2 may transmit user information about user U#2 to the virtual world server 400.
  • the virtual world server 400 may request terminal device 100#3 to authenticate user U#3.
  • terminal device 100#3 may acquire biometric information of user U#3.
  • Terminal device 100#3 may use the biometric information to perform biometric authentication of user U#3. If the biometric authentication is successful, terminal device 100#3 may transmit user information about user U#3 to the virtual world server 400.
  • the virtual world server 400 which has received user information about user U#1, user information about user U#2, and user information about user U#3, may determine whether multiple users U#1, U#2, and U#3 satisfy predetermined authentication conditions based on the user information about user U#1, user information about user U#2, and user information about user U#3. If the virtual world server 400 does not receive user information about at least one of the multiple users U#1, U#2, and U#3 within a predetermined period due to a biometric authentication failure for that at least one of the multiple users, the virtual world server 400 may not allow the multiple users U#1, U#2, and U#3 to log in to one virtual space. If it is determined that the multiple users U#1, U#2, and U#3 do not satisfy the predetermined authentication conditions, the virtual world server 400 may not allow the multiple users U#1, U#2, and U#3 to log in to one virtual space.
  • the virtual world server 400 may output user information about user U#1, user information about user U#2, and user information about user U#3 to the security terminal 300.
  • An operator O of the security terminal 300 may determine whether or not multiple users U#1, U#2, and U#3 can log in to one virtual space based on the user information about user U#1, user information about user U#2, and user information about user U#3.
  • Operator O may use security terminal 300 to send permission information (in other words, the result of operator O's judgment) indicating whether or not multiple users U#1, U#2, and U#3 are permitted to log in to one virtual space to virtual world server 400.
  • permission information in other words, the result of operator O's judgment
  • virtual world server 400 may receive permission information indicating whether or not multiple users U#1, U#2, and U#3 are permitted to log in to one virtual space.
  • the virtual world server 400 may permit the multiple users U#1, U#2, and U#3 to log in to the virtual space. As a result, the multiple users U#1, U#2, and U#3 may log in to the virtual space.
  • the virtual world server 400 may, for example, send information to the multiple terminal devices 100#1, 100#2, and 100#3 indicating that they cannot log in to the virtual space. As a result, the terminal devices 100#1, 100#2, and 100#3 may, for example, notify them that they cannot log in to the virtual space.
  • Each of the terminal devices 100#1, 100#2, and 100#3 may include a calculation device 110a shown in FIG.
  • the virtual world server 400 may include a computing device 410b instead of the computing device 410 or 410a.
  • the computing device 410b may have one or more processors, similar to the computing device 410.
  • the computing device 410b may include an acquisition unit 411, an output unit 413, and a group authentication unit 414 as logically realized functional blocks or as physically realized processing circuits.
  • the acquisition unit 111 of the terminal device 100#1 may acquire biometric information including information related to the eyes of the user U#1 wearing the wearable device.
  • the personal authentication unit 112a of the terminal device 100#1 may perform biometric authentication of the user U#1 using the biometric information acquired by the acquisition unit 111. If the biometric authentication is successful, the output unit 113 of the terminal device 100#1 may transmit user information related to the user U#1 to the virtual world server 400 via the communication device 130 of the terminal device 100#1. Note that if the biometric authentication fails, the calculation device 110a of the terminal device 100#1 may control the output device 150 of the terminal device 100#1 to notify the user that the biometric authentication has failed.
  • the acquisition unit 111 of terminal device 100#2 may acquire biometric information including information related to the eyes of user U#2 wearing the wearable device.
  • the personal authentication unit 112a of terminal device 100#2 may perform biometric authentication of user U#2 using the biometric information acquired by the acquisition unit 111. If the biometric authentication is successful, the output unit 113 of terminal device 100#2 may transmit user information related to user U#2 to the virtual world server 400 via the communication device 130 of terminal device 100#2. Note that if the biometric authentication fails, the calculation device 110a of terminal device 100#2 may control the output device 150 of terminal device 100#2 to notify that the biometric authentication has failed.
  • the acquisition unit 111 of the terminal device 100#3 may acquire biometric information including information related to the eyes of the user U#3 wearing the wearable device.
  • the personal authentication unit 112a of the terminal device 100#3 may perform biometric authentication of the user U#3 using the biometric information acquired by the acquisition unit 111. If the biometric authentication is successful, the output unit 113 of the terminal device 100#3 may transmit user information related to the user U#3 to the virtual world server 400 via the communication device 130 of the terminal device 100#3. Note that if the biometric authentication fails, the calculation device 110a of the terminal device 100#3 may control the output device 150 of the terminal device 100#3 to notify the user that the biometric authentication has failed.
  • the acquisition unit 411 of the virtual world server 400 may acquire user information about user U#1, user information about user U#2, and user information about user U#3 transmitted from each of the multiple terminal devices 100#1, 100#2, and 100#3.
  • the multiple terminal devices 100#1, 100#2, and 100#3 may also transmit a group authentication query to the virtual world server 400.
  • the group authentication unit 414 of the virtual world server 400 may determine whether the multiple users U#1, U#2, and U#3 satisfy predetermined authentication conditions based on the user information about user U#1, user information about user U#2, and user information about user U#3.
  • the calculation device 410b may transmit information indicating that login to the one virtual space is not permitted to the multiple terminal devices 100#1, 100#2, and 100#3 via the communication device 430.
  • the calculation device 110 of each of the multiple terminal devices 100#1, 100#2, and 100#3 that has received the information indicating that login to the one virtual space is not permitted may control the output device 150 to notify that login to the one virtual space is not permitted.
  • the output unit 413 of the virtual world server 400 may output user information regarding user U#1, user information regarding user U#2, and user information regarding user U#3 to the security terminal 300 via the communication device 430.
  • Operator O may use security terminal 300 to send permission information indicating whether multiple users U#1, U#2, and U#3 are permitted to log in to one virtual space to virtual world server 400.
  • communication device 430 of virtual world server 400 may receive the permission information.
  • the virtual world server 400 may permit the multiple users U#1, U#2, and U#3 to log in to the virtual space. As a result, the multiple users U#1, U#2, and U#3 may log in to the virtual space.
  • the calculation device 410b of the virtual world server 400 may send, for example, information indicating that they cannot log in to the virtual space to the multiple terminal devices 100#1, 100#2, and 100#3 via the communication device 420. As a result, the calculation device 110 of each of the multiple terminal devices 100#1, 100#2, and 100#3 may control the output device 150 to notify that they cannot log in to the virtual space.
  • security terminal 300 includes a computing device 310, a storage device 320, a communication device 330, an input device 340, and an output device 350.
  • Computing device 310, storage device 320, communication device 330, input device 340, and output device 350 may be connected via a data bus 360.
  • the arithmetic device 310 may have a processor 3101.
  • the arithmetic device 310 may have other processors in addition to the processor 3101. In other words, the arithmetic device 310 may have one or more processors.
  • the processor 3101 may be a multi-core processor. When the arithmetic device 310 has a single processor 3101 that is a multi-core processor, it can be said that the arithmetic device 310 logically has multiple processors.
  • the processor 3101 may be, for example, at least one of a CPU, GPU, FPGA, TPU, and quantum processor.
  • the storage device 320 may include memory 3201. Note that the storage device 320 may include other memories in addition to the memory 3201. In other words, the storage device 320 may include one or more memories.
  • the memory 3201 may be, for example, at least one of RAM, ROM, a hard disk device, a magneto-optical disk device, an SSD, and an optical disk array. Therefore, the storage device 320 may include memory 3201 as a non-transitory recording medium.
  • the storage device 320 can store desired data.
  • the memory 3201 of the storage device 320 may store a computer program 3201a executed by the arithmetic device 310.
  • the storage device 320 may temporarily store data that is temporarily used by the arithmetic device 310 when the arithmetic device 310 is executing the computer program 3201a.
  • the storage device 320 may store a database related to biometric authentication.
  • the database may include at least one of registered images and registered features used for biometric authentication.
  • computer program 3201a may be recorded on a computer-readable, non-transitory recording medium.
  • computer program 3201a may be stored in memory 3201 by reading the recording medium using a recording medium reading device (not shown) provided in security terminal 300.
  • the recording medium may be at least one of an optical disk, magnetic medium, magneto-optical disk, semiconductor memory, and any other medium capable of storing a program.
  • computer program 3201a may be acquired (in other words, downloaded) from a device (not shown) external to security terminal 300 via communication device 330.
  • the acquired computer program 3201a may be stored in memory 3201.
  • the communication device 330 may be capable of communicating with devices external to the security terminal 300. Note that the communication device 330 may perform wired communication or wireless communication.
  • the input device 340 is a device capable of accepting information input to the security terminal 300 from outside.
  • the input device 340 may include an operating device (e.g., a keyboard, mouse, touch panel, etc.) that can be operated by the operator O of the security terminal 300.
  • the input device 340 may include a recording medium reading device that can read information recorded on a recording medium that is detachable from the security terminal 300, such as a USB memory. Note that when information is input to the security terminal 300 via the communication device 330 (in other words, when the security terminal 300 obtains information via the communication device 330), the communication device 330 may function as an input device.
  • the output device 350 is a device capable of outputting information to the outside of the security terminal 300.
  • the output device 350 may output visual information such as text or images, auditory information such as sound, or tactile information such as vibration.
  • the output device 350 may include, for example, at least one of a display, speaker, printer, and vibration motor.
  • the output device 350 may also be capable of outputting information to a recording medium that is detachable from the security terminal 300, such as a USB memory stick. Note that when the security terminal 300 outputs information via the communication device 330, the communication device 330 may function as an output device.
  • the processor 3101 of the computing device 310 may execute the processing to be performed by the security terminal 300.
  • a logical functional block for executing the processing to be performed by the security terminal 300 may be realized within the computing device 310 (e.g., within the processor 3101).
  • the computing device 310 may have an acquisition unit 311, an authentication unit 312, and an alarm unit 313 as logically realized functional blocks or as physically realized processing circuits. At least one of the acquisition unit 311, authentication unit 312, and alarm unit 313 may be realized in a form that combines logical functional blocks and physical processing circuits (i.e., hardware).
  • the acquisition unit 311, authentication unit 312, and alarm unit 313 may be realized by a single processor (for example, processor 3101).
  • the acquisition unit 311, authentication unit 312, and alarm unit 313 may each be realized by different processors.
  • parts of the acquisition unit 311, authentication unit 312, and alarm unit 313 may be realized by a single processor, and the remaining parts of the acquisition unit 311, authentication unit 312, and alarm unit 313 may be realized by one or more processors different from the single processor.
  • the acquisition unit 311 may acquire biometric information of the operator O.
  • the authentication unit 312 may perform biometric authentication of the operator O using the biometric information acquired by the acquisition unit 311. Note that the authentication unit 312 may perform, as the biometric authentication, at least one of face authentication, iris authentication, fingerprint authentication, palm print authentication, vein authentication, voice print authentication, ear acoustic authentication, and multimodal biometric authentication, for example.
  • Biometric authentication of operator O may be performed, for example, when operator O logs in to security terminal 300 and/or when operator O transmits the above-mentioned permission information. This configuration can prevent, for example, a person conspiring with a person attempting to log in to the virtual space through fraudulent means from operating security terminal 300. Furthermore, if biometric authentication of operator O fails, alarm unit 313 may control output device 350 to issue an alarm.
  • operator O may call the police. For example, if user U makes a signal to notify an emergency, operator O may call the police.
  • the calculation device 310 may automatically determine whether user U is being threatened, etc., based on the screen related to the video call. If it is determined that user U is being threatened, etc., the alarm unit 313 may control the output device 350 to issue an alarm. For example, the calculation device 310 may determine whether user U has given a signal indicating an emergency. If it is determined that user U has given a signal indicating an emergency, the alarm unit 313 may control the output device 350 to issue an alarm.
  • the signal indicating an emergency may be emergency information transmitted from the terminal device 100, indicating that an emergency has occurred. The calculation device 310 of the security terminal 300 that has received the emergency information may determine that user U has given a signal indicating an emergency. As a result, the alarm unit 313 may control the output device 350 to issue an alarm. This configuration can prevent the operator O from missing user U's help signal.
  • An information processing system comprising:
  • An information processing device comprising:
  • the acquiring means acquires a plurality of pieces of biometric information, each of which includes information relating to the eyes of a plurality of subjects wearing the wearable device; the authentication means performs biometric authentication of the plurality of targets using the plurality of pieces of biometric information; The authentication means determines whether the plurality of objects satisfy a predetermined authentication condition; the output means outputs a plurality of pieces of target information relating to each of the plurality of targets to the security terminal when the biometric authentication of each of the plurality of targets is successful and the plurality of targets are determined to satisfy the predetermined authentication condition;
  • the information processing device receives from the security terminal the permission information indicating whether the plurality of targets are permitted to log in to the virtual space based on the plurality of target information.
  • the information processing device according to any one of appendices 2 to 5, wherein the target information includes a matching score calculated by the authentication means in the biometric authentication.
  • Appendix 8 The information processing device described in Appendix 4, wherein the image showing the appearance of the subject is a composite image of an image including the face of the subject wearing the wearable device and an image including the subject's eyes covered by the wearable device.
  • the acquiring means acquires a plurality of pieces of biometric information, each of which includes information relating to the eyes of a plurality of subjects wearing the wearable device; the authentication means performs biometric authentication of the plurality of targets using the plurality of pieces of biometric information; The authentication means determines whether the plurality of objects satisfy a predetermined authentication condition; the output means outputs a plurality of pieces of target information relating to each of the plurality of targets to the security terminal when the biometric authentication of each of the plurality of targets is successful and the plurality of targets are determined to satisfy the predetermined authentication condition;
  • the security terminal outputs at least one of the text data input by the subject and the subject's voice;
  • the information processing system described in Appendix 1 or 10 wherein the wearable device outputs at least one of text data input by an operator of the security terminal and the operator's voice.
  • the object information includes an image showing an appearance of the object;
  • the target information includes an image showing the surroundings of the target;
  • the information processing system according to any one of appendices 1 and 10 to 12, wherein the security terminal displays an image showing the surroundings of the target.
  • the target information includes a matching score calculated by the authentication means in the biometric authentication,
  • the security terminal displays the matching score.
  • the information processing system according to any one of claims 10 to 13.
  • the plurality of pieces of target information include a plurality of images respectively showing the appearances of the plurality of targets;
  • Appendix 16 An information processing system as described in any one of appendix 1 and 10 to 15, wherein the security terminal transmits the permission information if biometric authentication of the operator of the security terminal is successful.
  • Appendix 17 The information processing system according to any one of appendixes 1 and 10 to 16, wherein the security terminal issues an alert in response to emergency information issued by the target.
  • (Appendix 19) Acquire biometric information including information related to the eyes of a subject wearing the wearable device; performing biometric authentication of the subject using the biometric information; If the biometric authentication is successful, outputting target information regarding the target to a security terminal; receiving permission information from the security terminal, the permission information indicating whether the target is permitted to log in to the virtual space based on the target information;
  • Terminal device 100
  • Authentication server 300
  • Security terminal 400

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Theoretical Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • Software Systems (AREA)
  • Physics & Mathematics (AREA)
  • General Engineering & Computer Science (AREA)
  • General Physics & Mathematics (AREA)
  • Collating Specific Patterns (AREA)

Abstract

情報処理システムは、ウェアラブルデバイスを装着する対象の目に係る情報を含む生体情報を取得する取得手段と、生体情報を用いて対象の生体認証を行う認証手段と、認証手段による生体認証が成功した場合に、対象に関する対象情報を、警備端末に出力する出力手段と、対象情報に基づく、対象の仮想空間へのログインの可否を示す許可情報を警備端末から受信する受信手段と、を備える。

Description

情報処理システム、情報処理装置、情報処理方法及び記録媒体
 この開示は、情報処理システム、情報処理装置、情報処理方法及び記録媒体の技術分野に関する。
 この種のシステムとして、例えば、外観から表情がわからないようなウェアブルデバイスを装着しているユーザの、該ウェアブルデバイスの内向きのカメラによって観察され得る顔の領域の画像を使用して、ユーザのアバタの顔の表情を表現するシステムが提案されている(特許文献1参照)。
特開2023-096152号公報
 この開示は、上述した先行技術文献に関連する技術の改良を目的とする情報処理システム、情報処理装置、情報処理方法及び記録媒体を提供することを課題とする。
 情報処理システムの一の態様は、ウェアラブルデバイスを装着する対象の目に係る情報を含む生体情報を取得する取得手段と、前記生体情報を用いて前記対象の生体認証を行う認証手段と、前記認証手段による前記生体認証が成功した場合に、前記対象に関する対象情報を、警備端末に出力する出力手段と、前記対象情報に基づく、前記対象の仮想空間へのログインの可否を示す許可情報を前記警備端末から受信する受信手段と、を備える。
 情報処理装置の一態様は、ウェアラブルデバイスを装着する対象の目に係る情報を含む生体情報を取得する取得手段と、前記生体情報を用いて前記対象の生体認証を行う認証手段と、前記認証手段による前記生体認証が成功した場合に、前記対象に関する対象情報を、警備端末に出力する出力手段と、前記対象情報に基づく、前記対象の仮想空間へのログインの可否を示す許可情報を前記警備端末から受信する受信手段と、を備える。
 情報処理方法の一態様は、ウェアラブルデバイスを装着する対象の目に係る情報を含む生体情報を取得し、前記生体情報を用いて前記対象の生体認証を行い、前記生体認証が成功した場合に、前記対象に関する対象情報を、警備端末に出力し、前記対象情報に基づく、前記対象の仮想空間へのログインの可否を示す許可情報を前記警備端末から受信する。
 記録媒体の一態様は、コンピュータに、ウェアラブルデバイスを装着する対象の目に係る情報を含む生体情報を取得し、前記生体情報を用いて前記対象の生体認証を行い、前記生体認証が成功した場合に、前記対象に関する対象情報を、警備端末に出力し、前記対象情報に基づく、前記対象の仮想空間へのログインの可否を示す許可情報を前記警備端末から受信する情報処理方法を実行させるためのコンピュータプログラムが記録されている。
実施形態に係る情報処理システムの構成の一例を示す図である。 実施形態に係る情報処理システムの動作の一例を示すフローチャートである。 実施形態に係る情報処理システムの構成の他の例を示す図である。 実施形態に係る端末装置の構成の一例を示すブロック図である。 実施形態に係るウェアラブルデバイスの構成の一例を示す図である。 実施形態に係る認証サーバの構成の一例を示すブロック図である。 実施形態に係る認証サーバの演算装置の構成の一例を示すブロック図である。 画像合成の概念を示す概念図である。 実施形態に係る情報処理システムの構成の他の例を示す図である。 実施形態に係る仮想世界サーバの構成の一例を示すブロック図である。 実施形態に係る仮想世界サーバの演算装置の構成の一例を示すブロック図である。 実施形態に係る情報処理システムの構成の他の例を示す図である。 実施形態に係る端末装置の演算装置の構成の一例を示すブロック図である。 実施形態に係る情報処理システムの構成の他の例を示す図である。 実施形態に係る認証サーバの演算装置の構成の他の例を示すブロック図である。 実施形態に係る端末装置の演算装置の構成の他の例を示すブロック図である。 実施形態に係る認証サーバの演算装置の構成の他の例を示すブロック図である。 実施形態に係る情報処理システムの構成の他の例を示す図である。 実施形態に係る仮想世界サーバの演算装置の構成の他の例を示すブロック図である。 実施形態に係る仮想世界サーバの演算装置の構成の他の例を示すブロック図である。 実施形態に係る警備端末の構成の一例を示すブロック図である。 実施形態に係る警備端末の演算装置の構成の一例を示すブロック図である。
 <第1実施形態>
 情報処理システム、情報処理装置、情報処理方法及び記録媒体の第1実施形態について図1及び図2を参照して説明する。以下では、情報処理システム1を用いて、情報処理システム、情報処理装置、情報処理方法及び記録媒体の第1実施形態について説明する。
 図1において、情報処理システム1は、取得装置11、認証装置12、出力装置13及び受信装置14を備える。取得装置11は、ウェアラブルデバイス(例えば、Head Mounted Display:HMD)を装着する対象の目に係る情報を含む生体情報を取得する。対象の目に係る情報は、例えば、対象の目を含む目画像であってもよいし、該目画像から抽出された特徴量であってもよい。尚、目画像から抽出された特徴量は、対象の虹彩に係る特徴量であってもよい。
 ウェアラブルデバイスは、例えば、没入型のヘッドマウントディスプレイであってもよいし、ビデオシースルー型のヘッドマウントディスプレイであってもよいし、光学シースルー型のヘッドマウントディスプレイ(いわゆる、AR(Augmented Reality)グラス)であってもよい。尚、取得装置11は、ウェアラブルデバイスに設けられていてもよい。つまり、取得装置11は、ウェアラブルデバイスの一部を構成していてもよい。或いは、取得装置11は、ウェアラブルデバイスの外部の装置であってもよい。つまり、取得装置11は、ウェアラブルデバイスの一部を構成していなくてもよい。
 認証装置12は、生体情報を用いて対象の生体認証を行う。上述したように、生体情報は、対象の目に係る情報を含む。このため、認証装置12は、生体認証として、虹彩認証を行ってよい。尚、認証装置12は、ウェアラブルデバイスに設けられていてもよい。つまり、認証装置12は、ウェアラブルデバイスの一部を構成していてもよい。或いは、認証装置12は、ウェアラブルデバイスの外部の装置であってもよい。つまり、認証装置12は、ウェアラブルデバイスの一部を構成していなくてもよい。
 出力装置13は、認証装置12による生体認証が成功した場合に、対象に関する対象情報を、警備端末に出力する。ここで、「生体認証が成功」とは、対象が、予め登録されている一の登録者として特定されることを意味してよい。尚、「生体認証が失敗」とは、対象が、予め登録されている複数の登録者のいずれにも該当しないことを意味してよい。対象情報は、例えば、対象を識別するための情報(氏名、識別番号、所属等)、及び、対象の状態を示す情報(音声、画像等)の少なくとも一方を含んでよい。尚、「警備端末」とは、警備業務に用いられる端末装置を意味する。つまり、本実施形態では、警備業務に用いられる端末装置が、「警備端末」と称されている。警備端末としての端末装置は、警備業務に特化した構成を有する専用品であってもよいし、汎用品であってもよい。警備端末は、例えば、パーソナルコンピュータ、タブレット端末及びスマートフォンの少なくとも一つであってよい。尚、警備端末には、警備業務に特化したAI(Artificial Intelligence)が組み込まれていてもよい。この場合、警備端末は、警備ロボットであってもよい。
 受信装置14は、対象情報に基づく、対象の仮想空間へのログインの可否を示す許可情報を警備端末から受信する。「仮想空間」は、ネットワーク及びコンピュータの少なくとも一方に構築された三次元の仮想的な空間を意味してよい。「仮想空間」は、例えば、複数のユーザが共同で利用可能な仮想空間であってよい。
 尚、取得装置11、認証装置12、出力装置13及び受信装置14は、単一の装置に設けられていてよい。該単一の装置は、例えばサーバ装置であってもよい。この場合、取得装置11、認証装置12、出力装置13及び受信装置14を備えるサーバ装置は、本実施形態に係る情報処理装置に相当する。例えば、ウェアラブルデバイスは、取得装置11、認証装置12、出力装置13及び受信装置14を備えてよい。この場合、ウェアラブルデバイスは、本実施形態に係る情報処理装置に相当する。尚、取得装置11、認証装置12、出力装置13及び受信装置14は、互いから独立した装置であってもよい。
 情報処理システム1の動作について図2のフローチャートを参照して説明を加える。図2において、取得装置11は、ウェアラブルデバイス(例えば、HMD)を装着する対象の目に係る情報を含む生体情報を取得する(ステップS101)。認証装置12は、ステップS101の処理において取得された生体情報を用いて、対象の生体認証を行う(ステップS102)。
 対象の生体認証が成功した場合、認証装置12は、生体認証が成功したことを示す情報を、出力装置13に送信してよい。生体認証が成功したことを示す情報を受信した出力装置13は、対象に関する対象情報を、警備端末に出力する(ステップS103)。受信装置14は、対象情報に基づく、対象の仮想空間へのログインの可否を示す許可情報を警備端末から受信する(ステップS104)。
 尚、ステップS102の処理において対象の生体認証が失敗した場合、図2に示す動作は終了されてよい。この場合、ステップS103以降の処理は行われなくてよい。
 このように、情報処理システム1は、ウェアラブルデバイスを装着する対象の目に係る情報を含む生体情報を取得し、生体情報を用いて対象の生体認証を行い、生体認証が成功した場合に、対象に関する対象情報を、警備端末に出力し、対象情報に基づく、対象の仮想空間へのログインの可否を示す許可情報を警備端末から受信する情報処理方法を行ってよい。
 例えば、取得装置11、認証装置12、出力装置13及び受信装置14を備える単一の装置(例えば、サーバ装置、ウェアラブルデバイス)は、単一の装置を構成するコンピュータが記録媒体に記録されたコンピュータプログラムを読み込むことによって実現されてよい。この場合、記録媒体には、コンピュータに、ウェアラブルデバイスを装着する対象の目に係る情報を含む生体情報を取得し、生体情報を用いて対象の生体認証を行い、生体認証が成功した場合に、対象に関する対象情報を、警備端末に出力し、対象情報に基づく、対象の仮想空間へのログインの可否を示す許可情報を警備端末から受信する情報処理方法を実行させるためのコンピュータプログラムが記録されていてよい。
 (技術的効果)
 現実世界において、セキュリティレベルの比較的高いエリアの入退管理では、例えばセキュリティカードや生体認証による本人確認に加えて、警備員及び守衛の少なくとも一方による目視確認が行われることが多い。仮想空間の利用が広がると、セキュリティレベルの比較的高い仮想空間が構築される可能性がある。セキュリティレベルの比較的高い仮想空間の入退管理には、現実世界と同様に、ID及びパスワードや生体認証による本人確認に加えて、警備員及び守衛の少なくとも一方によるユーザ(上述の対象に相当)の確認が要求される可能性がある。尚、セキュリティレベルの比較的高い仮想空間の一例として、仮想空間に構築されたオフィス(即ち、仮想オフィス)が挙げられる。
 情報処理システム1では、認証装置12による対象の生体認証が成功した場合に、警備端末に対象情報が出力される。このため、警備端末のオペレータ(例えば、警備員及び守衛の少なくとも一方)は、対象情報に基づいて対象を確認することができる。従って、情報処理システム1によれば、生体認証による本人確認に加えて、警備端末のオペレータによる対象の確認を行うことができる。
 尚、許可情報が、対象の仮想空間へのログインの許可を示している場合、対象は仮想空間にログインしてよい。他方で、許可情報が、対象の仮想空間へのログインの不許可を示している場合、対象は仮想空間にログインすることはできない。
 <第2実施形態>
 情報処理システム、情報処理装置、情報処理方法及び記録媒体の第2実施形態について図3乃至図8を参照して説明する。以下では、情報処理システム2を用いて、情報処理システム、情報処理装置、情報処理方法及び記録媒体の第2実施形態について説明する。尚、第2実施形態について、第1実施形態の説明と重複する説明を適宜省略する。
 (情報処理システム2の概要)
 図3において、情報処理システム2は、端末装置100、認証サーバ200、警備端末300及び仮想世界サーバ400を備える。端末装置100、認証サーバ200、警備端末300及び仮想世界サーバ400は、例えばインターネット等のネットワークを介して、互いに通信可能に構成されている。尚、仮想世界サーバ400は、仮想空間を実現するためのサーバである。尚、警備端末300は、第1実施形態における警備端末に相当する。
 ユーザUが端末装置100を使用して、仮想世界サーバ400により実現される仮想空間にログインする場合、情報処理システム2は、次のような動作を行ってよい。先ず、ウェアラブルデバイス151を装着するユーザUが、端末装置100を使用して仮想世界サーバ400(例えば、仮想世界サーバ400が提供する仮想空間に係るホームページ)にアクセスした場合、仮想世界サーバ400は、認証を行うための情報を、端末装置100に送信してよい。認証を行うための情報を受信した端末装置100は、認証を行うための情報に基づいて、認証サーバ200に自動的にアクセスしてよい。尚、認証を行うための情報は、例えば、認証サーバ200にアクセスするための情報(例えば、認証サーバ200に係る認証ページのURL)であってよい。
 認証サーバ200は、端末装置100からユーザUの生体情報を取得してよい。認証サーバ200は、生体情報を用いてユーザUの生体認証を行ってよい。生体認証が成功した場合、認証サーバ200は、ユーザUに関するユーザ情報を、警備端末300に出力してよい。警備端末300のオペレータOは、ユーザ情報に基づいて、ユーザUの仮想空間へのログインの可否を判断してよい。尚、警備端末300のオペレータOは、警備業務を行う者であってよい。警備業務を行う者の一例として、警備員及び守衛の少なくとも一方が挙げられる。尚、オペレータOは、警備業務を行う者の指示に従って、警備端末300を操作する者であってもよい。つまり、オペレータOは、間接的に警備業務を行う者であってもよい。
 オペレータOは、警備端末300を使用して、ユーザUの仮想空間へのログインの可否を示す許可情報(言い換えれば、オペレータOの判断結果)を認証サーバ200に送信してよい。この結果、認証サーバ200は、ユーザUの仮想空間へのログインの可否を示す許可情報を受信してよい。認証サーバ200は、許可情報を、端末装置100に送信してよい。
 許可情報が、ユーザUの仮想空間へのログインの許可を示している場合、端末装置100は、許可情報を仮想世界サーバ400に送信してよい。この結果、ユーザUは、仮想空間にログインしてよい。他方で、許可情報が、ユーザUの仮想空間へのログインの不許可を示している場合、端末装置100は、例えば、仮想空間にログインできないことをユーザUに報知してよい。尚、「ユーザU」は、第1実施形態における「対象」に相当する。
 (端末装置100の構成)
 端末装置100の構成について図4を参照して説明する。図4において、端末装置100は、演算装置110、記憶装置120、通信装置130、入力装置140、出力装置150及びカメラ170を備える。演算装置110、記憶装置120、通信装置130、入力装置140、出力装置150及びカメラ170は、データバス160を介して接続されていてよい。カメラ170は、ユーザUの外観を撮像するためのカメラであってよい。カメラ170は、例えば、ユーザUの、少なくとも頭部を撮像可能に配置されてよい。カメラ170は、可視光波長域に感度を有する可視光カメラであってよい。
 演算装置110は、プロセッサ1101を有していてよい。尚、演算装置110は、プロセッサ1101に加えて、他のプロセッサを有していてよい。つまり、演算装置110は、1以上のプロセッサを有していてよい。尚、プロセッサ1101は、マルチコアプロセッサであってよい。演算装置110が、マルチコアプロセッサである単一のプロセッサ1101を有する場合、演算装置110は、論理的には、複数のプロセッサを有していると言える。
 プロセッサ1101は、例えば、CPU(Central Processing Unit)、GPU(Graphics Processing Unit)、FPGA(Field Programmable Gate Array)、TPU(TensorProcessingUnit)、及び、量子プロセッサのうち少なくとも一つであってよい。
 記憶装置120は、メモリ1201を有していてよい。尚、記憶装置120は、メモリ1201に加えて、他のメモリを有していてよい。つまり、記憶装置120は、1以上のメモリを有していてよい。メモリ1201は、例えば、RAM(Random Access Memory)、ROM(Read Only Memory)、ハードディスク装置、光磁気ディスク装置、SSD(Solid State Drive)、及び、光ディスクアレイのうち少なくとも一つであってよい。従って、記憶装置120は、一時的でない記録媒体としてのメモリ1201を有していてよい。
 記憶装置120は、所望のデータを記憶可能である。記憶装置120のメモリ1201には、演算装置110が実行するコンピュータプログラム1201aが記憶されていてよい。記憶装置120は、演算装置110がコンピュータプログラム1201aを実行している場合に、演算装置110が一時的に使用するデータを一時的に記憶してよい。
 尚、コンピュータプログラム1201aは、コンピュータで読み取り可能であって且つ一時的でない記録媒体に記録されていてもよい。この場合、端末装置100が備える図示しない記録媒体読み取り装置を用いて上記記録媒体が読み取られることによって、メモリ1201にコンピュータプログラム1201aが記憶されてよい。尚、上記記録媒体として、光ディスク、磁気媒体、光磁気ディスク、半導体メモリ、及び、その他プログラムを格納可能な任意の媒体の少なくとも一つが用いられてよい。尚、コンピュータプログラム1201aは、通信装置130を介して、端末装置100の外部の図示しない装置から取得されてもよい(言い換えれば、ダウンロードされてもよい)。該取得されたコンピュータプログラム1201aは、メモリ1201に記憶されてよい。
 通信装置130は、端末装置100の外部の装置(例えば、認証サーバ200及び仮想世界サーバ400)と通信可能であってもよい。尚、通信装置130は、有線通信を行ってもよいし、無線通信を行ってもよい。
 入力装置140は、外部から端末装置100に対する情報の入力を受け付け可能な装置である。入力装置140は、端末装置100のユーザが操作可能な操作装置(例えば、キーボード、マウス、タッチパネル等)を含んでよい。入力装置140は、例えばUSB(Universal Serial Bus)メモリ等の、端末装置100に着脱可能な記録媒体に記録されている情報を読み取り可能な記録媒体読取装置を含んでよい。尚、端末装置100に、通信装置130を介して情報が入力される場合(言い換えれば、端末装置100が通信装置130を介して情報を取得する場合)、通信装置130は入力装置として機能してよい。
 出力装置150は、端末装置100の外部に対して情報を出力可能な装置である。出力装置150は、上記情報として、文字や画像等の視覚情報を出力してもよいし、音声等の聴覚情報を出力してもよいし、振動等の触覚情報を出力してもよい。出力装置150は、例えば、ディスプレイ、スピーカ、プリンタ及び振動モータの少なくとも一つを含んでいてよい。出力装置150は、例えばUSBメモリ等の、端末装置100に着脱可能な記録媒体に情報を出力可能であってもよい。尚、端末装置100が通信装置130を介して情報を出力する場合、通信装置130は出力装置として機能してよい。本実施形態では特に、出力装置150は、ウェアラブルデバイス151を有する。
 演算装置110のプロセッサ1101は、コンピュータプログラム1201aが記憶された、記憶装置120のメモリ1201とともに(言い換えれば、メモリ1201と、メモリ1201に記憶されたコンピュータプログラム1201aとともに)、端末装置100が行うべき処理を実行してよい。例えば、プロセッサ1101が、コンピュータプログラム1201aを実行することによって、演算装置110内に(例えば、プロセッサ1101内に)、端末装置100が行うべき処理を実行するための論理的な機能ブロックが実現されてもよい。
 ウェアラブルデバイス151について図5を参照して説明する。ここでは、ウェアラブルデバイス151として、ビデオシースルー型のヘッドマウントディスプレイを挙げる。尚、ウェアラブルデバイス151は、ビデオシースルー型のヘッドマウントディスプレイに限らず、例えば、没入型のヘッドマウントディスプレイであってもよいし、光学シースルー型のヘッドマウントディスプレイであってもよい。
 ウェアラブルデバイス151の一例としてのヘッドマウントディスプレイは、端末装置100の一例としてのパーソナルコンピュータに接続される、PC接続型のヘッドマウントディスプレイであってよい。尚、ウェアラブルデバイス151の一例としてのヘッドマウントディスプレイは、スタンドアローン型のヘッドマウントディスプレイであってもよい。或いは、ウェアラブルデバイス151の一例としてのヘッドマウントディスプレイは、ハイブリッド型のヘッドマウントディスプレイ(即ち、スタンドアローン型としても、PC接続型としても動作可能なヘッドマウントディスプレイ)であってもよい。
 図5において、ウェアラブルデバイス151は、ディスプレイ1511と、左目用のレンズ1512Lと、右目用のレンズ1512Rと、近赤外光を発する複数の光源1513#1、1513#2、1513#3及び1513#4とを有する。尚、光源1513#1及び1513#2は、レンズ1512Lの周囲に配置されていてよい。光源1513#3及び1513#4は、レンズ1512Rの周囲に配置されていてよい。尚、レンズ1512L及び1512Rは、VRレンズと称されてもよい。
 ウェアラブルデバイス151は更に、カメラ1514L及び1514Rと、カメラ1515L及び1515Rとを有する。カメラ1514Lは、ユーザUの左目を撮像可能に配置されてよい。カメラ1514Rは、ユーザUの右目を撮像可能に配置されてよい。カメラ1514L及び1514Rは、近赤外線波長域に感度を有する近赤外カメラであってよい。尚、カメラ1514L及び1514Rは、近赤外線波長を透過する一方で、可視光波長をカットするフィルタを有していてよい。カメラ1514L及び1514Rは、インカメラと称されてもよい。カメラ1515L及び1515Rは、ウェアラブルデバイス151の周囲を撮像可能に配置されてよい。カメラ1515L及び1515Rは、可視光波長域に感度を有する可視光カメラであってよい。カメラ1515L及び1515Rは、アウトカメラと称されてもよい。
 尚、ウェアラブルデバイス151は、ディスプレイ1511に代えて、左目用のディスプレイと右目用のディスプレイとを有していてもよい。尚、近赤外光を発する光源の数は、4に限らず、5以上であってもよいし、3以下であってもよい。
 (認証サーバ200の構成)
 認証サーバ200の構成について図6を参照して説明する。図6において、認証サーバ200は、演算装置210、記憶装置220、通信装置230、入力装置240及び出力装置250を備える。演算装置210、記憶装置220、通信装置230、入力装置240及び出力装置250は、データバス260を介して接続されていてよい。
 演算装置210は、プロセッサ2101を有していてよい。尚、演算装置210は、プロセッサ2101に加えて、他のプロセッサを有していてよい。つまり、演算装置210は、1以上のプロセッサを有していてよい。尚、プロセッサ2101は、マルチコアプロセッサであってよい。演算装置210が、マルチコアプロセッサである単一のプロセッサ2101を有する場合、演算装置210は、論理的には、複数のプロセッサを有していると言える。プロセッサ2101は、例えば、CPU、GPU、FPGA、TPU及び量子プロセッサのうち少なくとも一つであってよい。
 記憶装置220は、メモリ2201を有していてよい。尚、記憶装置220は、メモリ2201に加えて、他のメモリを有していてよい。つまり、記憶装置220は、1以上のメモリを有していてよい。メモリ2201は、例えば、RAM、ROM、ハードディスク装置、光磁気ディスク装置、SSD及び光ディスクアレイのうち少なくとも一つであってよい。従って、記憶装置220は、一時的でない記録媒体としてのメモリ2201を有していてよい。
 記憶装置220は、所望のデータを記憶可能である。記憶装置220のメモリ2201には、演算装置210が実行するコンピュータプログラム2201aが記憶されていてよい。記憶装置220は、演算装置210がコンピュータプログラム2201aを実行している場合に、演算装置210が一時的に使用するデータを一時的に記憶してよい。記憶装置220には、生体認証に係るデータベースが記憶されていてよい。該データベースには、生体認証に用いられる登録画像及び登録特徴量の少なくとも一方が含まれてよい。
 尚、コンピュータプログラム2201aは、コンピュータで読み取り可能であって且つ一時的でない記録媒体に記録されていてもよい。この場合、認証サーバ200が備える図示しない記録媒体読み取り装置を用いて上記記録媒体が読み取られることによって、メモリ2201にコンピュータプログラム2201aが記憶されてよい。尚、上記記録媒体として、光ディスク、磁気媒体、光磁気ディスク、半導体メモリ、及び、その他プログラムを格納可能な任意の媒体の少なくとも一つが用いられてよい。尚、コンピュータプログラム2201aは、通信装置230を介して、認証サーバ200の外部の図示しない装置から取得されてもよい(言い換えれば、ダウンロードされてもよい)。該取得されたコンピュータプログラム2201aは、メモリ2201に記憶されてよい。
 通信装置230は、認証サーバ200の外部の装置(例えば、端末装置100及び警備端末300)と通信可能であってもよい。尚、通信装置230は、有線通信を行ってもよいし、無線通信を行ってもよい。
 入力装置240は、外部から認証サーバ200に対する情報の入力を受け付け可能な装置である。入力装置240は、認証サーバ200のユーザが操作可能な操作装置(例えば、キーボード、マウス、タッチパネル等)を含んでよい。入力装置240は、例えばUSBメモリ等の、認証サーバ200に着脱可能な記録媒体に記録されている情報を読み取り可能な記録媒体読取装置を含んでよい。尚、認証サーバ200に、通信装置230を介して情報が入力される場合(言い換えれば、認証サーバ200が通信装置230を介して情報を取得する場合)、通信装置230は入力装置として機能してよい。
 出力装置250は、認証サーバ200の外部に対して情報を出力可能な装置である。出力装置250は、上記情報として、文字や画像等の視覚情報を出力してもよいし、音声等の聴覚情報を出力してもよいし、振動等の触覚情報を出力してもよい。出力装置250は、例えば、ディスプレイ、スピーカ、プリンタ及び振動モータの少なくとも一つを含んでいてよい。出力装置250は、例えばUSBメモリ等の、認証サーバ200に着脱可能な記録媒体に情報を出力可能であってもよい。尚、認証サーバ200が通信装置230を介して情報を出力する場合、通信装置230は出力装置として機能してよい。
 演算装置210のプロセッサ2101は、コンピュータプログラム2201aが記憶された、記憶装置220のメモリ2201とともに(言い換えれば、メモリ2201と、メモリ2201に記憶されたコンピュータプログラム2201aとともに)、認証サーバ200が行うべき処理を実行してよい。例えば、プロセッサ2101が、コンピュータプログラム2201aを実行することによって、演算装置210内に(例えば、プロセッサ2101内に)、認証サーバ200が行うべき処理を実行するための論理的な機能ブロックが実現されてもよい。
 図7に示すように、演算装置210は、論理的に実現される機能ブロックとして、又は、物理的に実現される処理回路として、取得部211、認証部212及び出力部213を有していてよい。尚、取得部211、認証部212及び出力部213の少なくとも一つは、論理的な機能ブロックと、物理的な処理回路(即ち、ハードウェア)とが混在する形式で実現されてよい。
 尚、取得部211、認証部212及び出力部213が機能ブロックとして実現される場合、取得部211、認証部212及び出力部213は、単一のプロセッサ(例えば、プロセッサ2101)により実現されてもよい。或いは、取得部211、認証部212及び出力部213は、夫々異なるプロセッサにより実現されてもよい。或いは、取得部211、認証部212及び出力部213の一部が、一のプロセッサにより実現され、取得部211、認証部212及び出力部213の残りの部分が、一のプロセッサとは異なる一以上のプロセッサにより実現されてもよい。
 尚、「取得部211」、「認証部212」及び「出力部213」は、夫々、第1実施形態における「取得装置11」、「認証装置12」及び「出力装置13」に対応する構成要素である。また、「通信装置230」は、第1実施形態における「受信装置14」に対応する構成要素である。尚、認証サーバ200は、本実施形態に係る情報処理装置に相当する。
 (情報処理システム2の動作)
 取得部211は、ウェアラブルデバイス151を装着するユーザUの目に係る情報を含む生体情報を取得する。ここで、生体情報は、ウェアラブルデバイス151のカメラ1514LがユーザUの左目を撮像することによって生成された左目の目画像、及び、カメラ1514RがユーザUの右目を撮像することによって生成された右目の目画像の少なくとも一方であってよい。尚、端末装置100の演算装置110は、上述した左目の目画像及び右目の目画像の少なくとも一方の目画像から、特徴量(例えば、虹彩に係る特徴量)を抽出してよい。認証サーバ200の取得部211は、該抽出された特徴量を、生体情報として取得してもよい。
 認証部212は、取得部211により取得された生体情報を用いて、ユーザUの生体認証を行う。例えば、生体情報が目画像(即ち、左目の目画像及び右目の目画像の少なくとも一方)であり、データベースに登録画像(例えば、目画像)が登録されている場合、認証部212は、次のような処理を行ってよい。認証部212は、生体情報としての目画像から特徴量を抽出してよい。認証部212は、登録画像から特徴量を抽出してよい。認証部212は、生体情報としての目画像から抽出された特徴量と、登録画像から抽出された特徴量とを照合することによって、照合スコアを算出してよい。認証部212は、照合スコアと所定の閾値とを比較してよい。照合スコアが所定の閾値以上である場合、認証部212は、ユーザUが登録画像に係る人物であると判定してよい。他方で、照合スコアが所定の閾値より小さい場合、認証部212は、ユーザUが登録画像に係る人物ではないと判定してよい。
 ここで、認証部212は、生体認証として、1:N認証を行ってよい。照合スコアの最大値が所定の閾値以上である場合、認証部212は、ユーザUが、最大の照合スコアとなった登録画像に係る人物であると判定してよい。この場合、認証部212は、認証が成功したと判定してよい。他方で、照合スコアの最大値が所定の閾値より小さい場合、認証部212は、認証が失敗したと判定してよい。尚、認証部212は、生体認証として、1:1認証を行ってもよい。
 例えば、生体情報が目画像(即ち、左目の目画像及び右目の目画像の少なくとも一方)であり、データベースに登録特徴量(例えば、虹彩に係る特徴量)が登録されている場合、認証部212は、次のような処理を行ってよい。認証部212は、生体情報としての目画像から特徴量を抽出してよい。認証部212は、生体情報としての目画像から抽出された特徴量と、登録特徴量とを照合することによって、照合スコアを算出してよい。
 例えば、生体情報が特徴量(即ち、左目の目画像及び右目の目画像の少なくとも一方の目画像から抽出された特徴量)であり、データベースに登録画像(例えば、目画像)が登録されている場合、認証部212は、次のような処理を行ってよい。認証部212は、登録画像から特徴量を抽出してよい。認証部212は、生体情報としての特徴量と、登録画像から抽出された特徴量とを照合することによって、照合スコアを算出してよい。
 例えば、生体情報が特徴量(即ち、左目の目画像及び右目の目画像の少なくとも一方の目画像から抽出された特徴量)であり、データベースに登録特徴量(例えば、虹彩に係る特徴量)が登録されている場合、認証部212は、次のような処理を行ってよい。認証部212は、生体情報としての特徴量と、登録特徴量とを照合することによって、照合スコアを算出してよい。
 生体認証が失敗した場合、認証サーバ200の演算装置210は、通信装置230を介して、生体認証が失敗したことを示す情報を端末装置100に送信してよい。生体認証が失敗したことを示す情報を受信した端末装置100の演算装置110は、生体認証が失敗したことを報知するように出力装置150を制御してよい。この場合、例えば、ウェアラブルデバイス151のディスプレイ1511に、生体認証が失敗したことを示す文字、図形及び画像の少なくとも一つが表示されてよい。また、生体認証が失敗したことを示す音声及び効果音の少なくとも一方が発せられてもよい。
 生体認証が成功した場合、認証サーバ200の出力部213は、ユーザUに関するユーザ情報を、通信装置230を介して、警備端末300に送信する。ユーザ情報には、例えば、ユーザUを識別するための情報(氏名、識別番号、所属等)が含まれていてよい。尚、ユーザUを識別するための情報は、例えば、生体認証に係るデータベースから取得されてもよい。
 ユーザ情報には、例えば、警備端末300のオペレータOが、ユーザUとチャット又は音声通話若しくはビデオ通話するための情報が含まれていてよい。例えば、認証サーバ200を介して、オペレータOとユーザUとがチャット又は音声通話若しくはビデオ通話する場合、チャット又は音声通話若しくはビデオ通話するための情報は、オペレータO及びユーザUが、認証サーバ200が提供する所定のページにアクセスするための情報(例えば、URL並びにID及びパスワード)であってよい。警備端末300と端末装置100とがピア・ツー・ピア型式で接続されて、オペレータOとユーザUとがチャット又は音声通話若しくはビデオ通話する場合、チャット又は音声通話若しくはビデオ通話するための情報は、警備端末300が端末装置100にアクセスするための情報(例えば、IPアドレス)であってよい。
 警備端末300のオペレータOは、例えば、ユーザ情報に含まれるユーザUを識別するための情報(氏名、識別番号、所属等)に加えて、ユーザUとチャット又は音声通話若しくはビデオ通話を行うことによって、ユーザUの仮想空間へのログインの可否を判断してよい。この場合、警備端末300は、ユーザUにより入力されたテキストデータ及びユーザUの音声の少なくとも一方を出力してよい。端末装置100の出力装置150(例えば、ウェアラブルデバイス151)は、オペレータOにより入力されたテキストデータ及びオペレータOの音声の少なくとも一方を出力してよい。尚、音声通話又はビデオ通話によって、ユーザUのライブネスチェックを行うことができるので、例えば、なりすまし対策として有用である。例えば、オペレータOは、ユーザUとチャット又は通話をすることによって、ユーザUの状態を確認してよい。ユーザUに不審な点がない場合、オペレータOは、ユーザUの仮想空間へのログインを許可すると判断してよい。他方で、ユーザUに不審な点がある場合、例えば、オペレータOは、不審な点が解消されるまで、ユーザUとのチャット又は通話を継続してよい。不審な点が解消されない場合、オペレータOは、ユーザUの仮想空間へのログインを許可しないと判断してよい。
 例えば、オペレータOとユーザUとがビデオ通話を行う場合、次のような課題がある。端末装置100のカメラ170が、ウェアラブルデバイス151を装着するユーザUを撮像することによって生成された画像では、例えば図8に示す画像Img1のように、ユーザUの目の周辺がウェアラブルデバイス151により隠されている。ビデオ通話において、例えば画像Img1が表示されると、オペレータOが、ユーザUが本人であるか否かを判断することが困難になる。
 そこで、端末装置100の演算装置110は、ウェアラブルデバイス151のカメラ1514LがユーザUの左目を撮像することによって生成された左目の目画像と、カメラ1514RがユーザUの右目を撮像することによって生成された右目の目画像とを合成することによって、例えば図8に示す画像Img2を生成してよい。演算装置110は更に、画像Img1と画像Img2とを合成して、画像Img3を生成してよい。演算装置110は、通信装置130を介して、画像Img3を警備端末300及び認証サーバ200の少なくとも一方に送信してよい。例えば、ビデオ通話において、画像Img3が表示されれば、オペレータOが、ユーザUが本人であるか否かを適切に判断することができる。尚、警備端末300の表示装置には、例えば画像Img3に加えて、予め登録された顔画像が表示されてもよい。このように構成すれば、オペレータOが、ユーザUが本人であるか否かを比較的容易に判断することができる。尚、上述したようにカメラ1514L及び1514Rは近赤外カメラであってよい。この場合、画像Img2は、近赤外画像であってよい。他方で、カメラ170は、可視光カメラであってよい。この場合、Img1は、可視光画像であってよい。可視光画像であるImg1と、近赤外画像であるImg2とが合成されることによって生成された画像Img3が、警備端末300に表示された場合、オペレータOが違和感を覚える可能性がある。そこで、演算装置110は、例えば、画像Img1の色調に基づいて、画像Img2に対して色調補正を行ってよい。このように構成すれば、画像Img3が警備端末300に表示された場合に、オペレータOが違和感を覚えることを抑制することができる。
 尚、ユーザUに不審な点がある場合、オペレータOは、例えば、ウェアラブルデバイス151のカメラ1515L及び1515Rの少なくとも一方が、ウェアラブルデバイス151の周囲(言い換えれば、ユーザUの周囲)を撮像することによって生成された画像を要求してもよい。例えば、オペレータOは、該画像からユーザUの周囲の様子を知ることができる。例えば、ユーザUがセキュリティ上好ましくない場所にいる場合、オペレータOは、ユーザUの仮想空間へのログインを許可しないと判断してよい。尚、ユーザUがビデオ通話に応じない場合、或いは、ユーザUがビデオ通話に応じたもののカメラがOFFである場合、オペレータOは、ユーザUの仮想空間へのログインを許可しないと判断してよい。尚、ビデオ通話に係る画面に、ユーザUに加えて、ユーザU以外の人物が表示された場合、オペレータOは、ユーザUの仮想空間へのログインを許可しないと判断してよい。例えば、ユーザUが、ユーザU以外の人物に脅迫等されているとオペレータOが判断した場合、オペレータOは、警察に通報してもよい。尚、ユーザUとオペレータOとの間で、非常時を知らせる合図が事前に決められていてもよい。例えば、ユーザUが非常時を知らせる合図を発した場合、オペレータOは、警察に通報してもよい。尚、ユーザ情報には、生体認証における照合スコアが含まれていてもよい。例えば、オペレータOは、照合スコアを参照して、ユーザUへの対応を変更してもよい。ここで、生体認証に係る所定の閾値によっては、照合スコアが所定の閾値以上であったとしても、登録されていない人物(即ち、他人)が、登録者であると誤認される可能性がある。照合スコアが所定の閾値より著しく大きい場合、誤認の可能性は無視できる程度である。他方で、照合スコアが所定の閾値よりわずかに大きい場合、誤認の可能性を無視することはできない。例えば、照合スコアが所定の閾値よりわずかに大きい場合、オペレータOは、ユーザUの確認をより注意して行ってよい。このようなオペレータOの行動は、なりすまし対策としても有効である。つまり、ユーザ情報に照合スコアが含まれることによって、なりすまし対策を行うことができる。
 オペレータOは、警備端末300を使用して、ユーザUの仮想空間へのログインの可否を示す許可情報を、認証サーバ200に送信する。この結果、認証サーバ200の通信装置230は、許可情報を受信してよい。許可情報を取得した認証サーバ200の演算装置210は、通信装置230を介して、許可情報を端末装置100に送信する。
 許可情報が、ユーザUの仮想空間へのログインの許可を示している場合、端末装置100の演算装置110は、通信装置130を介して、許可情報を仮想世界サーバ400に送信してよい。この結果、ユーザUは、仮想空間にログインしてよい。他方で、許可情報が、ユーザUの仮想空間へのログインの不許可を示している場合、端末装置100の演算装置110は、例えば、仮想空間にログインできないことをユーザUに報知するように出力装置150を制御してよい。
 (技術的効果)
 第2実施形態に係る情報処理システム2によれば、上述した第1実施形態に係る情報処理システム1と同様に、生体認証による本人確認に加えて、警備端末300のオペレータOによるユーザUの確認を行うことができる。
 <第3実施形態>
 情報処理システム、情報処理装置、情報処理方法及び記録媒体の第3実施形態について図9乃至図11を参照して説明する。以下では、情報処理システム3を用いて、情報処理システム、情報処理装置、情報処理方法及び記録媒体の第3実施形態について説明する。尚、第3実施形態について、第1実施形態及び第2実施形態の説明と重複する説明を適宜省略する。
 (情報処理システム3の概要)
 図9において、情報処理システム3は、端末装置100、警備端末300及び仮想世界サーバ400を備える。本実施形態では、仮想世界サーバ400が、第2実施形態における認証サーバ200に係る機能を有する。
 ユーザUが端末装置100を使用して、仮想世界サーバ400により実現される仮想空間にログインする場合、情報処理システム3は、次のような動作を行ってよい。先ず、ウェアラブルデバイス151を装着するユーザUが、端末装置100を使用して仮想世界サーバ400にアクセスした場合、仮想世界サーバ400は、端末装置100からユーザUの生体情報を取得してよい。仮想世界サーバ400は、生体情報を用いてユーザUの生体認証を行ってよい。
 生体認証が成功した場合、仮想世界サーバ400は、ユーザUに関するユーザ情報を、警備端末300に出力してよい。警備端末300のオペレータO(例えば、警備員及び守衛の少なくとも一方)は、ユーザ情報に基づいて、ユーザUの仮想空間へのログインの可否を判断してよい。オペレータOは、警備端末300を使用して、ユーザUの仮想空間へのログインの可否を示す許可情報(言い換えれば、オペレータOの判断結果)を仮想世界サーバ400に送信してよい。この結果、仮想世界サーバ400は、ユーザUの仮想空間へのログインの可否を示す許可情報を受信してよい。
 許可情報が、ユーザUの仮想空間へのログインの許可を示している場合、仮想世界サーバ400は、ユーザUの仮想空間へのログインを許可してよい。この結果、ユーザUは、仮想空間にログインしてよい。他方で、許可情報が、ユーザUの仮想空間へのログインの不許可を示している場合、仮想世界サーバ400は、例えば、仮想空間にログインできないことを示す情報を、端末装置100に送信してよい。この結果、端末装置100は、例えば、仮想空間にログインできないことをユーザUに報知してよい。
 (仮想世界サーバ400の構成)
 仮想世界サーバ400の構成について図10を参照して説明する。図10において、仮想世界サーバ400は、演算装置410、記憶装置420、通信装置430、入力装置440及び出力装置450を備える。演算装置410、記憶装置420、通信装置430、入力装置440及び出力装置450は、データバス460を介して接続されていてよい。
 演算装置410は、プロセッサ4101を有していてよい。尚、演算装置410は、プロセッサ4101に加えて、他のプロセッサを有していてよい。つまり、演算装置410は、1以上のプロセッサを有していてよい。尚、プロセッサ4101は、マルチコアプロセッサであってよい。演算装置410が、マルチコアプロセッサである単一のプロセッサ4101を有する場合、演算装置410は、論理的には、複数のプロセッサを有していると言える。プロセッサ4101は、例えば、CPU、GPU、FPGA、TPU及び量子プロセッサのうち少なくとも一つであってよい。
 記憶装置420は、メモリ4201を有していてよい。尚、記憶装置420は、メモリ4201に加えて、他のメモリを有していてよい。つまり、記憶装置420は、1以上のメモリを有していてよい。メモリ4201は、例えば、RAM、ROM、ハードディスク装置、光磁気ディスク装置、SSD及び光ディスクアレイのうち少なくとも一つであってよい。従って、記憶装置420は、一時的でない記録媒体としてのメモリ4201を有していてよい。
 記憶装置420は、所望のデータを記憶可能である。記憶装置420のメモリ4201には、演算装置410が実行するコンピュータプログラム4201aが記憶されていてよい。記憶装置420は、演算装置410がコンピュータプログラム4201aを実行している場合に、演算装置410が一時的に使用するデータを一時的に記憶してよい。記憶装置420には、生体認証に係るデータベースが記憶されていてよい。該データベースには、生体認証に用いられる登録画像及び登録特徴量の少なくとも一方が含まれてよい。
 尚、コンピュータプログラム4201aは、コンピュータで読み取り可能であって且つ一時的でない記録媒体に記録されていてもよい。この場合、仮想世界サーバ400が備える図示しない記録媒体読み取り装置を用いて上記記録媒体が読み取られることによって、メモリ4201にコンピュータプログラム4201aが記憶されてよい。尚、上記記録媒体として、光ディスク、磁気媒体、光磁気ディスク、半導体メモリ、及び、その他プログラムを格納可能な任意の媒体の少なくとも一つが用いられてよい。尚、コンピュータプログラム4201aは、通信装置430を介して、仮想世界サーバ400の外部の図示しない装置から取得されてもよい(言い換えれば、ダウンロードされてもよい)。該取得されたコンピュータプログラム4201aは、メモリ4201に記憶されてよい。
 通信装置430は、仮想世界サーバ400の外部の装置(例えば、端末装置100及び警備端末300)と通信可能であってもよい。尚、通信装置430は、有線通信を行ってもよいし、無線通信を行ってもよい。
 入力装置440は、外部から仮想世界サーバ400に対する情報の入力を受け付け可能な装置である。入力装置440は、仮想世界サーバ400のユーザが操作可能な操作装置(例えば、キーボード、マウス、タッチパネル等)を含んでよい。入力装置440は、例えばUSBメモリ等の、仮想世界サーバ400に着脱可能な記録媒体に記録されている情報を読み取り可能な記録媒体読取装置を含んでよい。尚、仮想世界サーバ400に、通信装置430を介して情報が入力される場合(言い換えれば、仮想世界サーバ400が通信装置430を介して情報を取得する場合)、通信装置430は入力装置として機能してよい。
 出力装置450は、仮想世界サーバ400の外部に対して情報を出力可能な装置である。出力装置450は、上記情報として、文字や画像等の視覚情報を出力してもよいし、音声等の聴覚情報を出力してもよいし、振動等の触覚情報を出力してもよい。出力装置450は、例えば、ディスプレイ、スピーカ、プリンタ及び振動モータの少なくとも一つを含んでいてよい。出力装置450は、例えばUSBメモリ等の、仮想世界サーバ400に着脱可能な記録媒体に情報を出力可能であってもよい。尚、仮想世界サーバ400が通信装置430を介して情報を出力する場合、通信装置430は出力装置として機能してよい。
 演算装置410のプロセッサ4101は、コンピュータプログラム4201aが記憶された、記憶装置420のメモリ4201とともに(言い換えれば、メモリ4201と、メモリ4201に記憶されたコンピュータプログラム4201aとともに)、仮想世界サーバ400が行うべき処理を実行してよい。例えば、プロセッサ4101が、コンピュータプログラム4201aを実行することによって、演算装置410内に(例えば、プロセッサ4101内に)、仮想世界サーバ400が行うべき処理を実行するための論理的な機能ブロックが実現されてもよい。
 図11に示すように、演算装置410は、論理的に実現される機能ブロックとして、又は、物理的に実現される処理回路として、取得部411、認証部412及び出力部413を有していてよい。尚、取得部411、認証部412及び出力部413の少なくとも一つは、論理的な機能ブロックと、物理的な処理回路(即ち、ハードウェア)とが混在する形式で実現されてよい。
 尚、取得部411、認証部412及び出力部413が機能ブロックとして実現される場合、取得部411、認証部412及び出力部413は、単一のプロセッサ(例えば、プロセッサ4101)により実現されてもよい。或いは、取得部411、認証部412及び出力部413は、夫々異なるプロセッサにより実現されてもよい。或いは、取得部411、認証部412及び出力部413の一部が、一のプロセッサにより実現され、取得部411、認証部412及び出力部413の残りの部分が、一のプロセッサとは異なる一以上のプロセッサにより実現されてもよい。
 尚、「取得部411」、「認証部412」及び「出力部413」は、夫々、第1実施形態における「取得装置11」、「認証装置12」及び「出力装置13」に対応する構成要素である。また、「通信装置430」は、第1実施形態における「受信装置14」に対応する構成要素である。尚、仮想世界サーバ400は、本実施形態に係る情報処理装置に相当する。
 (情報処理システム3の動作)
 取得部411は、ウェアラブルデバイス151を装着するユーザUの目に係る情報を含む生体情報を取得する。認証部412は、取得部411により取得された生体情報を用いて、ユーザUの生体認証を行う。生体認証が失敗した場合、仮想世界サーバ400の演算装置410は、通信装置430を介して、生体認証が失敗したことを示す情報を端末装置100に送信してよい。生体認証が失敗したことを示す情報を受信した端末装置100の演算装置110は、生体認証が失敗したことを報知するように出力装置150を制御してよい。
 生体認証が成功した場合、仮想世界サーバ400の出力部413は、ユーザUに関するユーザ情報を、通信装置430を介して、警備端末300に送信する。オペレータOは、警備端末300を使用して、ユーザUの仮想空間へのログインの可否を示す許可情報を、仮想世界サーバ400に送信する。この結果、仮想世界サーバ400の通信装置430は、許可情報を受信してよい。
 許可情報が、ユーザUの仮想空間へのログインの許可を示している場合、仮想世界サーバ400は、ユーザUの仮想空間へのログインを許可してよい。この結果、ユーザUは、仮想空間にログインしてよい。他方で、許可情報が、ユーザUの仮想空間へのログインの不許可を示している場合、仮想世界サーバ400の演算装置410は、通信装置430を介して、例えば、仮想空間にログインできないことを示す情報を、端末装置100に送信してよい。この結果、端末装置100の演算装置110は、例えば、仮想空間にログインできないことをユーザUに報知するように出力装置150を制御してよい。
 (技術的効果)
 第3実施形態に係る情報処理システム3によれば、上述した第2実施形態に係る情報処理システム2と同様に、生体認証による本人確認に加えて、警備端末300のオペレータOによるユーザUの確認を行うことができる。
 <第4実施形態>
 情報処理システム、情報処理装置、情報処理方法及び記録媒体の第4実施形態について図12及び図13を参照して説明する。以下では、情報処理システム4を用いて、情報処理システム、情報処理装置、情報処理方法及び記録媒体の第4実施形態について説明する。尚、第4実施形態について、第1実施形態乃至第3実施形態の説明と重複する説明を適宜省略する。
 (情報処理システム4の概要)
 図11において、情報処理システム4は、端末装置100、警備端末300及び仮想世界サーバ400を備える。本実施形態では、端末装置100が、第2実施形態における認証サーバ200に係る機能を有する。
 ユーザUが端末装置100を使用して、仮想世界サーバ400により実現される仮想空間にログインする場合、情報処理システム4は、次のような動作を行ってよい。先ず、ウェアラブルデバイス151を装着するユーザUが、端末装置100を使用して仮想世界サーバ400(例えば、仮想世界サーバ400が提供する仮想空間に係るホームページ)にアクセスした場合、仮想世界サーバ400は、端末装置100に対してユーザUの認証を要求してよい。
 ユーザUの認証を要求された端末装置100は、ユーザUの生体情報を取得してよい。端末装置100は、生体情報を用いてユーザUの生体認証を行ってよい。生体認証が成功した場合、端末装置100は、ユーザUに関するユーザ情報を、警備端末300に出力してよい。警備端末300のオペレータO(例えば、警備員及び守衛の少なくとも一方)は、ユーザ情報に基づいて、ユーザUの仮想空間へのログインの可否を判断してよい。
 オペレータOは、警備端末300を使用して、ユーザUの仮想空間へのログインの可否を示す許可情報(言い換えれば、オペレータOの判断結果)を端末装置100に送信してよい。この結果、端末装置100は、ユーザUの仮想空間へのログインの可否を示す許可情報を受信してよい。
 許可情報が、ユーザUの仮想空間へのログインの許可を示している場合、端末装置100は、許可情報を仮想世界サーバ400に送信してよい。この結果、ユーザUは、仮想空間にログインしてよい。他方で、許可情報が、ユーザUの仮想空間へのログインの不許可を示している場合、端末装置100は、例えば、仮想空間にログインできないことをユーザUに報知してよい。
 (端末装置100の動作)
 図13に示すように、第4実施形態に係る端末装置100の演算装置110は、論理的に実現される機能ブロックとして、又は、物理的に実現される処理回路として、取得部111、認証部112及び出力部113を有していてよい。尚、取得部111、認証部112及び出力部113の少なくとも一つは、論理的な機能ブロックと、物理的な処理回路(即ち、ハードウェア)とが混在する形式で実現されてよい。
 尚、取得部111、認証部112及び出力部113が機能ブロックとして実現される場合、取得部111、認証部112及び出力部113は、単一のプロセッサ(例えば、プロセッサ1101)により実現されてもよい。或いは、取得部111、認証部112及び出力部113は、夫々異なるプロセッサにより実現されてもよい。或いは、取得部111、認証部112及び出力部113の一部が、一のプロセッサにより実現され、取得部111、認証部112及び出力部113の残りの部分が、一のプロセッサとは異なる一以上のプロセッサにより実現されてもよい。
 尚、「取得部111」、「認証部112」及び「出力部113」は、夫々、第1実施形態における「取得装置11」、「認証装置12」及び「出力装置13」に対応する構成要素である。また、「通信装置130」は、第1実施形態における「受信装置14」に対応する構成要素である。尚、端末装置100は、本実施形態に係る情報処理装置に相当する。
 (情報処理システム4の動作)
 取得部111は、ウェアラブルデバイス151を装着するユーザUの目に係る情報を含む生体情報を取得する。認証部112は、取得部111により取得された生体情報を用いて、ユーザUの生体認証を行う。尚、認証部112は、生体認証として、1:1認証を行ってよい。ただし、認証部112は、生体認証として、1:N認証を行ってもよい。生体認証が失敗した場合、演算装置110は、生体認証が失敗したことを報知するように出力装置150を制御してよい。
 生体認証が成功した場合、出力部113は、ユーザUに関するユーザ情報を、通信装置130を介して、警備端末300に送信する。オペレータOは、警備端末300を使用して、ユーザUの仮想空間へのログインの可否を示す許可情報を、端末装置100に送信する。この結果、端末装置100の通信装置130は、許可情報を受信してよい。
 許可情報が、ユーザUの仮想空間へのログインの許可を示している場合、端末装置100の演算装置110は、通信装置130を介して、許可情報を仮想世界サーバ400に送信してよい。この結果、ユーザUは、仮想空間にログインしてよい。他方で、許可情報が、ユーザUの仮想空間へのログインの不許可を示している場合、端末装置100の演算装置110は、例えば、仮想空間にログインできないことをユーザUに報知するように出力装置150を制御してよい。
 (技術的効果)
 第4実施形態に係る情報処理システム4によれば、上述した第2実施形態に係る情報処理システム2と同様に、生体認証による本人確認に加えて、警備端末300のオペレータOによるユーザUの確認を行うことができる。
 <第5実施形態>
 情報処理システム、情報処理装置、情報処理方法及び記録媒体の第5実施形態について図14及び図15を参照して説明する。以下では、情報処理システム5を用いて、情報処理システム、情報処理装置、情報処理方法及び記録媒体の第5実施形態について説明する。尚、第5実施形態について、第1実施形態乃至第4実施形態の説明と重複する説明を適宜省略する。
 上述した第1実施形態乃至第4実施形態では、一人のユーザU(第1実施形態では“対象”)が仮想空間にログインする場合について説明されている。第5実施形態では、複数のユーザが、一の仮想空間にログインする場合について説明する。第5実施形態では、複数のユーザが所定の認証条件を満たした場合だけ、該複数のユーザが一の仮想空間にログインできるものとする。
 (情報処理システム5の概要)
 図14において、情報処理システム5は、複数の端末装置100#1、100#2及び100#3と、認証サーバ200と、警備端末300と、仮想世界サーバ400とを備える。複数の端末装置100#1、100#2及び100#3、認証サーバ200、警備端末300並びに仮想世界サーバ400は、例えばインターネット等のネットワークを介して、互いに通信可能に構成されている。尚、情報処理システム5は、端末装置を2つだけ備えていてもよいし、4以上の端末装置を備えていてもよい。
 端末装置100#1は、ユーザU#1が使用する端末装置である。端末装置100#2は、ユーザU#2が使用する端末装置である。端末装置100#3は、ユーザU#3が使用する端末装置である。複数の端末装置100#1、100#2及び100#3各々の構成は、第2実施形態における端末装置100と同様であってよい。このため、複数の端末装置100#1、100#2及び100#3各々の構成についての説明は省略する。尚、ユーザU#1は、端末装置100#1が備えるウェアラブルデバイスを装着しているものとする。ユーザU#2は、端末装置100#2が備えるウェアラブルデバイスを装着しているものとする。ユーザU#3は、端末装置100#3が備えるウェアラブルデバイスを装着しているものとする。尚、複数の端末装置100#1、100#2及び100#3各々のウェアラブルデバイスは、第2実施形態におけるウェアラブルデバイス151に相当する。
 情報処理システム5は、次のような動作を行ってよい。ウェアラブルデバイスを装着するユーザU#1が、端末装置100#1を使用して仮想世界サーバ400(例えば、仮想世界サーバ400が提供する仮想空間に係るホームページ)にアクセスした場合、仮想世界サーバ400は、認証を行うための情報を、端末装置100#1に送信してよい。認証を行うための情報を受信した端末装置100#1は、認証を行うための情報に基づいて、認証サーバ200に自動的にアクセスしてよい。認証サーバ200は、端末装置100#1からユーザU#1の生体情報を取得してよい。認証サーバ200は、生体情報を用いてユーザU#1の生体認証を行ってよい。
 同様に、ウェアラブルデバイスを装着するユーザU#2が、端末装置100#2を使用して仮想世界サーバ400にアクセスした場合、仮想世界サーバ400は、認証を行うための情報を、端末装置100#2に送信してよい。認証を行うための情報を受信した端末装置100#2は、認証を行うための情報に基づいて、認証サーバ200に自動的にアクセスしてよい。認証サーバ200は、端末装置100#2からユーザU#2の生体情報を取得してよい。認証サーバ200は、生体情報を用いてユーザU#2の生体認証を行ってよい。
 同様に、ウェアラブルデバイスを装着するユーザU#3が、端末装置100#3を使用して仮想世界サーバ400にアクセスした場合、仮想世界サーバ400は、認証を行うための情報を、端末装置100#2に送信してよい。認証を行うための情報を受信した端末装置100#3は、認証を行うための情報に基づいて、認証サーバ200に自動的にアクセスしてよい。認証サーバ200は、端末装置100#3からユーザU#3の生体情報を取得してよい。認証サーバ200は、生体情報を用いてユーザU#3の生体認証を行ってよい。
 複数のユーザU#1、U#2及びU#3各々の生体認証が成功した場合、認証サーバ200は、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とに基づいて、複数のユーザU#1、U#2及びU#3が所定の認証条件を満たすか否かを判定してよい。尚、複数のユーザU#1、U#2及びU#3の少なくとも一人の生体認証が失敗した場合、認証サーバ200は、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインを許可しなくてよい。尚、複数のユーザU#1、U#2及びU#3が所定の認証条件を満たさないと判定された場合、認証サーバ200は、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインを許可しなくてよい。
 複数のユーザU#1、U#2及びU#3が所定の認証条件を満たすと判定された場合、認証サーバ200は、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とを警備端末300に出力してよい。警備端末300のオペレータOは、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とに基づいて、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの可否を判断してよい。尚、オペレータOが、複数のユーザU#1、U#2及びU#3の一部だけについて一の仮想空間へのログインを許可する(言い換えれば、複数のユーザU#1、U#2及びU#3の一部だけについて一の仮想空間へのログインを許可しない)、という判断を行うことは禁止されている。
 オペレータOは、警備端末300を使用して、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの可否を示す許可情報(言い換えれば、オペレータOの判断結果)を認証サーバ200に送信してよい。この結果、認証サーバ200は、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの可否を示す許可情報を受信してよい。認証サーバ200は、許可情報を、複数の端末装置100#1、100#2及び100#3に送信してよい。
 許可情報が、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの許可を示している場合、端末装置100#1、100#2及び100#3各々は、許可情報を仮想世界サーバ400に送信してよい。この結果、複数のユーザU#1、U#2及びU#3は、一の仮想空間にログインしてよい。他方で、許可情報が、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの不許可を示している場合、端末装置100#1、100#2及び100#3は、例えば、一の仮想空間にログインできないことを報知してよい。
 (認証サーバ200の構成)
 認証サーバ200は、演算装置210に代えて、演算装置210aを備えてよい。演算装置210aは、演算装置210と同様に、1以上のプロセッサを有していてよい。図15に示すように、演算装置210aは、論理的に実現される機能ブロックとして、又は、物理的に実現される処理回路として、取得部211、個人認証部212a、出力部213及びグループ認証部214を有していてよい。尚、取得部211、個人認証部212a、出力部213及びグループ認証部214の少なくとも一つは、論理的な機能ブロックと、物理的な処理回路(即ち、ハードウェア)とが混在する形式で実現されてよい。
 尚、取得部211、個人認証部212a、出力部213及びグループ認証部214が機能ブロックとして実現される場合、取得部211、個人認証部212a、出力部213及びグループ認証部214は、単一のプロセッサにより実現されてもよい。或いは、取得部211、個人認証部212a、出力部213及びグループ認証部214は、夫々異なるプロセッサにより実現されてもよい。或いは、取得部211、個人認証部212a、出力部213及びグループ認証部214の一部が、一のプロセッサにより実現され、取得部211、個人認証部212a、出力部213及びグループ認証部214の残りの部分が、一のプロセッサとは異なる一以上のプロセッサにより実現されてもよい。
 尚、「個人認証部212a」は、第2実施形態における「認証部212」に対応する構成要素である。尚、認証サーバ200は、本実施形態に係る情報処理装置に相当する。尚、個人認証部212a及びグループ認証部214は、一体として構成されていてよい。
 (情報処理システム5の動作)
 取得部211は、ウェアラブルデバイスを装着するユーザU#1の目に係る情報を含む生体情報を取得する。生体情報は、ユーザU#1の左目の目画像及び右目の目画像の少なくとも一方であってよい。生体情報は、ユーザU#1の左目の目画像及び右目の目画像の少なくとも一方から抽出された特徴量であってもよい。個人認証部212aは、取得部211により取得された、ユーザU#1の生体情報を用いて、ユーザU#1の生体認証を行う。
 同様に、取得部211は、ウェアラブルデバイスを装着するユーザU#2の目に係る情報を含む生体情報を取得する。個人認証部212aは、取得部211により取得された、ユーザU#2の生体情報を用いて、ユーザU#2の生体認証を行う。同様に、取得部211は、ウェアラブルデバイスを装着するユーザU#3の目に係る情報を含む生体情報を取得する。個人認証部212aは、取得部211により取得された、ユーザU#3の生体情報を用いて、ユーザU#3の生体認証を行う。
 ユーザU#1、U#2及びU#3の少なくとも一人の生体認証が失敗した場合、認証サーバ200の演算装置210aは、通信装置230を介して、生体認証が失敗したことを示す情報を、上記少なくとも一人が使用する端末装置(即ち、複数の端末装置100#1、100#2及び100#3の少なくとも一つ)に送信してよい。生体認証が失敗したことを示す情報を受信した、上記少なくとも一人が使用する端末装置の演算装置110は、生体認証が失敗したことを報知するように出力装置150を制御してよい。
 この場合、認証サーバ200の演算装置210aは、通信装置230を介して、一の仮想空間へのログインを許可しないことを示す情報を、複数の端末装置100#1、100#2及び100#3に送信してよい。一の仮想空間へのログインを許可しないことを示す情報を受信した複数の端末装置100#1、100#2及び100#3各々の演算装置110は、一の仮想空間にログインできないことを報知するように出力装置150を制御してよい。
 複数のユーザU#1、U#2及びU#3各々の生体認証が成功した場合、認証サーバ200の個人認証部212aは、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とをグループ認証部214に送信してよい。このとき、個人認証部212aは、グループ認証クエリをグループ認証部214に送信してよい。グループ認証クエリをを受信したグループ認証部214は、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とに基づいて、複数のユーザU#1、U#2及びU#3が所定の認証条件を満たすか否かを判定してよい。
 所定の認証条件には、例えば、グループの構成員として登録されている、所定の職位のユーザが含まれている、ユーザの組み合わせが予め定められた組み合わせを満たす、及び、グループ認証のクエリが受け付けられてからの経過時間が所定時間を超えてない、の少なくとも一つを含んでよい。つまり、所定の認証条件には、複数のユーザが満たすべき条件と、時間制限条件との少なくとも一方が含まれてよい。複数のユーザが満たすべき条件が規定されることで、例えば、複数のユーザが一の仮想空間にログイン可能であるか否かを比較的容易に判定することができる。制限時間条件が規定されることで、例えば、複数のユーザの少なくとも一人に何らかの不具合が生じた場合に、処理を終了することができる。
 複数のユーザU#1、U#2及びU#3が所定の認証条件を満たさないと判定された場合、演算装置210aは、通信装置230を介して、一の仮想空間へのログインを許可しないことを示す情報を、複数の端末装置100#1、100#2及び100#3に送信してよい。一の仮想空間へのログインを許可しないことを示す情報を受信した複数の端末装置100#1、100#2及び100#3各々の演算装置110は、一の仮想空間にログインできないことを報知するように出力装置150を制御してよい。
 複数のユーザU#1、U#2及びU#3が所定の認証条件を満たすと判定された場合、認証サーバ200の出力部213は、通信装置230を介して、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とを警備端末300に出力してよい。
 警備端末300のオペレータOは、例えば、各ユーザ情報に含まれるユーザを識別するための情報(氏名、識別番号、所属等)に加えて、複数のユーザU#1、U#2及びU#3とチャット又は音声通話若しくはビデオ通話を行うことによって、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの可否を判断してよい。
 警備端末300には、例えば、複数のユーザU#1、U#2及びU#3に夫々対応する複数の画像(例えば、図8に示す画像Img3に相当する画像)が表示されてよい。このように構成すれば、オペレータOに、ユーザに関するより多くの情報を提示することができる。警備端末300のオペレータOは、複数のユーザU#1、U#2及びU#3と同時に、チャット又は音声通話若しくはビデオ通話を行ってよい。この場合、複数の端末装置100#1、100#2及び100#3各々のウェアラブルデバイスにも、複数のユーザU#1、U#2及びU#3に夫々対応する複数の画像が表示されてもよい。
 例えば、オペレータOは、複数のユーザU#1、U#2及びU#3とチャット又は通話をすることによって、複数のユーザU#1、U#2及びU#3各々の状態を確認してよい。例えば、オペレータOは、ユーザ同士でチャット又は通話させることによって、複数のユーザU#1、U#2及びU#3各々の状態を確認してよい。このとき、複数のユーザU#1、U#2及びU#3各々は、チャット又は通話の内容を参照して、他のユーザの状態を確認してよい。例えば、複数のユーザU#1、U#2及びU#3の一のユーザが、他のユーザに不審な点があると感じた場合、該一のユーザは、他のユーザに不審な点があることをオペレータOに知らせてよい。このように構成すれば、オペレータOだけでなく、複数のユーザU#1、U#2及びU#3が相互に確認を行うことができる。
 複数のユーザU#1、U#2及びU#3に不審な点がない場合、オペレータOは、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインを許可すると判断してよい。他方で、複数のユーザU#1、U#2及びU#3の少なくとも一人の不審な点が解消されない場合、オペレータOは、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインを許可しないと判断してよい。
 オペレータOは、警備端末300を使用して、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの可否を示す許可情報を、認証サーバ200に送信してよい。この結果、認証サーバ200の通信装置230は、許可情報を受信してよい。許可情報を取得した認証サーバ200の演算装置210は、通信装置230を介して、許可情報を複数の端末装置100#1、100#2及び100#3に送信してよい。
 許可情報が、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの許可を示している場合、複数の端末装置100#1、100#2及び100#3各々の演算装置110は、通信装置130を介して、許可情報を仮想世界サーバ400に送信してよい。この結果、複数のユーザU#1、U#2及びU#3は、一の仮想空間にログインしてよい。他方で、許可情報が、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの不許可を示している場合、複数の端末装置100#1、100#2及び100#3各々の演算装置110は、一の仮想空間にログインできないことを報知するように出力装置150を制御してよい。
 (技術的効果)
 第5実施形態に係る情報処理システム5によれば、複数のユーザが一の仮想空間にログインする場合に、生体認証による本人確認に加えて、警備端末300のオペレータOによる複数のユーザの確認を行うことができる。
 <第6実施形態>
 情報処理システム、情報処理装置、情報処理方法及び記録媒体の第6実施形態について図14に加えて、図16及び図17を参照して説明する。以下では、情報処理システム5を用いて、情報処理システム、情報処理装置、情報処理方法及び記録媒体の第6実施形態について説明する。第6実施形態では、第5実施形態と同様に、複数のユーザが、一の仮想空間にログインする場合について説明する。尚、第6実施形態について、第1実施形態乃至第5実施形態の説明と重複する説明を適宜省略する。
 (情報処理システム5の概要)
 情報処理システム5は、次のような動作を行ってよい。ウェアラブルデバイスを装着するユーザU#1が、端末装置100#1を使用して仮想世界サーバ400(例えば、仮想世界サーバ400が提供する仮想空間に係るホームページ)にアクセスした場合、仮想世界サーバ400は、端末装置100#1に対してユーザU#1の認証を要求してよい。ユーザU#1の認証を要求された端末装置100#1は、ユーザU#1の生体情報を取得してよい。端末装置100#1は、生体情報を用いてユーザU#1の生体認証を行ってよい。生体認証が成功した場合、端末装置100#1は、ユーザU#1に関するユーザ情報を、認証サーバ200に送信してよい。
 同様に、ウェアラブルデバイスを装着するユーザU#2が、端末装置100#2を使用して仮想世界サーバ400にアクセスした場合、仮想世界サーバ400は、端末装置100#2に対してユーザU#2の認証を要求してよい。ユーザU#2の認証を要求された端末装置100#2は、ユーザU#2の生体情報を取得してよい。端末装置100#2は、生体情報を用いてユーザU#2の生体認証を行ってよい。生体認証が成功した場合、端末装置100#2は、ユーザU#2に関するユーザ情報を、認証サーバ200に送信してよい。
 同様に、ウェアラブルデバイスを装着するユーザU#3が、端末装置100#3を使用して仮想世界サーバ400にアクセスした場合、仮想世界サーバ400は、端末装置100#3に対してユーザU#3の認証を要求してよい。ユーザU#3の認証を要求された端末装置100#3は、ユーザU#3の生体情報を取得してよい。端末装置100#3は、生体情報を用いてユーザU#3の生体認証を行ってよい。生体認証が成功した場合、端末装置100#3は、ユーザU#3に関するユーザ情報を、認証サーバ200に送信してよい。
 ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とを受信した認証サーバ200は、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とに基づいて、複数のユーザU#1、U#2及びU#3が所定の認証条件を満たすか否かを判定してよい。尚、複数のユーザU#1、U#2及びU#3の少なくとも一人の生体認証が失敗したことに起因して、認証サーバ200が、所定期間内に、上記少なくとも一人に関するユーザ情報を受信しない場合、認証サーバ200は、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインを許可しなくてよい。尚、複数のユーザU#1、U#2及びU#3が所定の認証条件を満たさないと判定された場合、認証サーバ200は、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインを許可しなくてよい。
 複数のユーザU#1、U#2及びU#3が所定の認証条件を満たすと判定された場合、認証サーバ200は、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とを警備端末300に出力してよい。警備端末300のオペレータOは、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とに基づいて、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの可否を判断してよい。
 オペレータOは、警備端末300を使用して、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの可否を示す許可情報(言い換えれば、オペレータOの判断結果)を認証サーバ200に送信してよい。この結果、認証サーバ200は、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの可否を示す許可情報を受信してよい。認証サーバ200は、許可情報を、複数の端末装置100#1、100#2及び100#3に送信してよい。
 許可情報が、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの許可を示している場合、端末装置100#1、100#2及び100#3各々は、許可情報を仮想世界サーバ400に送信してよい。この結果、複数のユーザU#1、U#2及びU#3は、一の仮想空間にログインしてよい。他方で、許可情報が、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの不許可を示している場合、端末装置100#1、100#2及び100#3は、例えば、一の仮想空間にログインできないことを報知してよい。
 (端末装置100#1、100#2及び100#3各々の構成)
 端末装置100#1、100#2及び100#3各々は、演算装置110に代えて、演算装置110aを備えてよい。演算装置110aは、演算装置110と同様に、1以上のプロセッサを有していてよい。図16に示すように、演算装置110aは、論理的に実現される機能ブロックとして、又は、物理的に実現される処理回路として、取得部111、個人認証部112a及び出力部113を有していてよい。尚、「個人認証部112a」は、第4実施形態における「認証部112」に対応する構成要素である。
 (認証サーバ200の構成)
 認証サーバ200は、演算装置210又は210aに代えて、演算装置210bを備えてよい。演算装置210bは、演算装置210と同様に、1以上のプロセッサを有していてよい。図17に示すように、演算装置210bは、論理的に実現される機能ブロックとして、又は、物理的に実現される処理回路として、取得部211、出力部213及びグループ認証部214を有していてよい。
 (情報処理システム5の動作)
 端末装置100#1の取得部111は、ウェアラブルデバイスを装着するユーザU#1の目に係る情報を含む生体情報を取得してよい。端末装置100#1の個人認証部112aは、取得部111により取得された生体情報を用いて、ユーザU#1の生体認証を行ってよい。生体認証が成功した場合、端末装置100#1の出力部113は、ユーザU#1に関するユーザ情報を、端末装置100#1の通信装置130を介して、認証サーバ200に送信してよい。尚、生体認証が失敗した場合、端末装置100#1の演算装置110aは、生体認証が失敗したことを報知するように端末装置100#1の出力装置150を制御してよい。
 端末装置100#2の取得部111は、ウェアラブルデバイスを装着するユーザU#2の目に係る情報を含む生体情報を取得してよい。端末装置100#2の個人認証部112aは、取得部111により取得された生体情報を用いて、ユーザU#2の生体認証を行ってよい。生体認証が成功した場合、端末装置100#2の出力部113は、ユーザU#2に関するユーザ情報を、端末装置100#2の通信装置130を介して、認証サーバ200に送信してよい。尚、生体認証が失敗した場合、端末装置100#2の演算装置110aは、生体認証が失敗したことを報知するように端末装置100#2の出力装置150を制御してよい。
 端末装置100#3の取得部111は、ウェアラブルデバイスを装着するユーザU#3の目に係る情報を含む生体情報を取得してよい。端末装置100#3の個人認証部112aは、取得部111により取得された生体情報を用いて、ユーザU#3の生体認証を行ってよい。生体認証が成功した場合、端末装置100#3の出力部113は、ユーザU#3に関するユーザ情報を、端末装置100#3の通信装置130を介して、認証サーバ200に送信してよい。尚、生体認証が失敗した場合、端末装置100#3の演算装置110aは、生体認証が失敗したことを報知するように端末装置100#3の出力装置150を制御してよい。
 認証サーバ200の取得部211は、複数の端末装置100#1、100#2及び100#3各々から送信された、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とを取得してよい。ここで、複数の端末装置100#1、100#2及び100#3の少なくとも一つは、ユーザ情報を認証サーバ200に送信する場合に、グループ認証クエリも認証サーバ200に送信してよい。グループ認証クエリをを受信した認証サーバ200のグループ認証部214は、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とに基づいて、複数のユーザU#1、U#2及びU#3が所定の認証条件を満たすか否かを判定してよい。
 複数のユーザU#1、U#2及びU#3が所定の認証条件を満たさないと判定された場合、演算装置210bは、通信装置230を介して、一の仮想空間へのログインを許可しないことを示す情報を、複数の端末装置100#1、100#2及び100#3に送信してよい。一の仮想空間へのログインを許可しないことを示す情報を受信した複数の端末装置100#1、100#2及び100#3各々の演算装置110は、一の仮想空間にログインできないことを報知するように出力装置150を制御してよい。
 複数のユーザU#1、U#2及びU#3が所定の認証条件を満たすと判定された場合、認証サーバ200の出力部213は、通信装置230を介して、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とを警備端末300に出力してよい。
 オペレータOは、警備端末300を使用して、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの可否を示す許可情報を、認証サーバ200に送信してよい。この結果、認証サーバ200の通信装置230は、許可情報を受信してよい。許可情報を取得した認証サーバ200の演算装置210は、通信装置230を介して、許可情報を複数の端末装置100#1、100#2及び100#3に送信してよい。
 許可情報が、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの許可を示している場合、複数の端末装置100#1、100#2及び100#3各々の演算装置110は、通信装置130を介して、許可情報を仮想世界サーバ400に送信してよい。この結果、複数のユーザU#1、U#2及びU#3は、一の仮想空間にログインしてよい。他方で、許可情報が、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの不許可を示している場合、複数の端末装置100#1、100#2及び100#3各々の演算装置110は、一の仮想空間にログインできないことを報知するように出力装置150を制御してよい。
 (技術的効果)
 第6実施形態に係る情報処理システム5によれば、上述した第5実施形態に係る情報処理システム5と同様に、複数のユーザが一の仮想空間にログインする場合に、生体認証による本人確認に加えて、警備端末300のオペレータOによる複数のユーザの確認を行うことができる。
 <第7実施形態>
 情報処理システム、情報処理装置、情報処理方法及び記録媒体の第7実施形態について図18及び図19を参照して説明する。以下では、情報処理システム6を用いて、情報処理システム、情報処理装置、情報処理方法及び記録媒体の第7実施形態について説明する。第7実施形態では、第5実施形態と同様に、複数のユーザが、一の仮想空間にログインする場合について説明する。尚、第7実施形態について、第1実施形態乃至第6実施形態の説明と重複する説明を適宜省略する。
 (情報処理システム6の概要)
 図18において、情報処理システム6は、複数の端末装置100#1、100#2及び100#3と、警備端末300と、仮想世界サーバ400とを備える。複数の端末装置100#1、100#2及び100#3、警備端末300並びに仮想世界サーバ400は、例えばインターネット等のネットワークを介して、互いに通信可能に構成されている。尚、情報処理システム6は、端末装置を2つだけ備えていてもよいし、4以上の端末装置を備えていてもよい。
 情報処理システム6は、次のような動作を行ってよい。ウェアラブルデバイスを装着するユーザU#1が、端末装置100#1を使用して仮想世界サーバ400にアクセスした場合、仮想世界サーバ400は、端末装置100#1からユーザU#1の生体情報を取得してよい。仮想世界サーバ400は、生体情報を用いてユーザU#1の生体認証を行ってよい。
 同様に、ウェアラブルデバイスを装着するユーザU#2が、端末装置100#2を使用して仮想世界サーバ400にアクセスした場合、仮想世界サーバ400は、端末装置100#2からユーザU#2の生体情報を取得してよい。仮想世界サーバ400は、生体情報を用いてユーザU#2の生体認証を行ってよい。
 同様に、ウェアラブルデバイスを装着するユーザU#3が、端末装置100#3を使用して仮想世界サーバ400にアクセスした場合、仮想世界サーバ400は、端末装置100#3からユーザU#3の生体情報を取得してよい。仮想世界サーバ400は、生体情報を用いてユーザU#3の生体認証を行ってよい。
 複数のユーザU#1、U#2及びU#3各々の生体認証が成功した場合、仮想世界サーバ400は、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とに基づいて、複数のユーザU#1、U#2及びU#3が所定の認証条件を満たすか否かを判定してよい。尚、複数のユーザU#1、U#2及びU#3の少なくとも一人の生体認証が失敗した場合、仮想世界サーバ400は、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインを許可しなくてよい。尚、複数のユーザU#1、U#2及びU#3が所定の認証条件を満たさないと判定された場合、仮想世界サーバ400は、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインを許可しなくてよい。
 複数のユーザU#1、U#2及びU#3が所定の認証条件を満たすと判定された場合、仮想世界サーバ400は、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とを警備端末300に出力してよい。警備端末300のオペレータOは、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とに基づいて、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの可否を判断してよい。
 オペレータOは、警備端末300を使用して、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの可否を示す許可情報(言い換えれば、オペレータOの判断結果)を仮想世界サーバ400に送信してよい。この結果、仮想世界サーバ400は、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの可否を示す許可情報を受信してよい。
 許可情報が、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの許可を示している場合、仮想世界サーバ400は、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインを許可してよい。この結果、複数のユーザU#1、U#2及びU#3は、一の仮想空間にログインしてよい。他方で、許可情報が、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの不許可を示している場合、仮想世界サーバ400は、例えば、一の仮想空間にログインできないことを示す情報を、複数の端末装置100#1、100#2及び100#3に送信してよい。この結果、端末装置100#1、100#2及び100#3は、例えば、一の仮想空間にログインできないことを報知してよい。
 (仮想世界サーバ400の構成)
 仮想世界サーバ400は、演算装置410に代えて、演算装置410aを備えてよい。演算装置410aは、演算装置410と同様に、1以上のプロセッサを有していてよい。図19に示すように、演算装置410aは、論理的に実現される機能ブロックとして、又は、物理的に実現される処理回路として、取得部411、個人認証部412a、出力部413及びグループ認証部414を有していてよい。尚、取得部411、個人認証部412a、出力部413及びグループ認証部414の少なくとも一つは、論理的な機能ブロックと、物理的な処理回路(即ち、ハードウェア)とが混在する形式で実現されてよい。
 尚、取得部411、個人認証部412a、出力部413及びグループ認証部414が機能ブロックとして実現される場合、取得部411、個人認証部412a、出力部413及びグループ認証部414は、単一のプロセッサにより実現されてもよい。或いは、取得部411、個人認証部412a、出力部413及びグループ認証部414は、夫々異なるプロセッサにより実現されてもよい。或いは、取得部411、個人認証部412a、出力部413及びグループ認証部414の一部が、一のプロセッサにより実現され、取得部411、個人認証部412a、出力部413及びグループ認証部414の残りの部分が、一のプロセッサとは異なる一以上のプロセッサにより実現されてもよい。
 尚、「個人認証部412a」は、第3実施形態における「認証部412」に対応する構成要素である。尚、仮想世界サーバ400は、本実施形態に係る情報処理装置に相当する。尚、個人認証部412a及びグループ認証部414は、一体として構成されていてよい。
 (情報処理システム6の動作)
 取得部411は、ウェアラブルデバイスを装着するユーザU#1の目に係る情報を含む生体情報を取得する。生体情報は、ユーザU#1の左目の目画像及び右目の目画像の少なくとも一方であってよい。生体情報は、ユーザU#1の左目の目画像及び右目の目画像の少なくとも一方から抽出された特徴量であってもよい。個人認証部412aは、取得部411により取得された、ユーザU#1の生体情報を用いて、ユーザU#1の生体認証を行う。
 同様に、取得部411は、ウェアラブルデバイスを装着するユーザU#2の目に係る情報を含む生体情報を取得する。個人認証部412aは、取得部411により取得された、ユーザU#2の生体情報を用いて、ユーザU#2の生体認証を行う。同様に、取得部411は、ウェアラブルデバイスを装着するユーザU#3の目に係る情報を含む生体情報を取得する。個人認証部412aは、取得部411により取得された、ユーザU#3の生体情報を用いて、ユーザU#3の生体認証を行う。
 ユーザU#1、U#2及びU#3の少なくとも一人の生体認証が失敗した場合、仮想世界サーバ400の演算装置410aは、通信装置430を介して、生体認証が失敗したことを示す情報を、上記少なくとも一人が使用する端末装置(即ち、複数の端末装置100#1、100#2及び100#3の少なくとも一つ)に送信してよい。生体認証が失敗したことを示す情報を受信した、上記少なくとも一人が使用する端末装置の演算装置110は、生体認証が失敗したことを報知するように出力装置150を制御してよい。
 この場合、仮想世界サーバ400の演算装置410aは、通信装置430を介して、一の仮想空間へのログインを許可しないことを示す情報を、複数の端末装置100#1、100#2及び100#3に送信してよい。一の仮想空間へのログインを許可しないことを示す情報を受信した複数の端末装置100#1、100#2及び100#3各々の演算装置110は、一の仮想空間にログインできないことを報知するように出力装置150を制御してよい。
 複数のユーザU#1、U#2及びU#3各々の生体認証が成功した場合、仮想世界サーバ400の個人認証部412aは、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とをグループ認証部414に送信してよい。このとき、個人認証部412aは、グループ認証クエリをグループ認証部414に送信してよい。グループ認証クエリをを受信したグループ認証部414は、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とに基づいて、複数のユーザU#1、U#2及びU#3が所定の認証条件を満たすか否かを判定してよい。
 複数のユーザU#1、U#2及びU#3が所定の認証条件を満たさないと判定された場合、演算装置410aは、通信装置430を介して、一の仮想空間へのログインを許可しないことを示す情報を、複数の端末装置100#1、100#2及び100#3に送信してよい。一の仮想空間へのログインを許可しないことを示す情報を受信した複数の端末装置100#1、100#2及び100#3各々の演算装置110は、一の仮想空間にログインできないことを報知するように出力装置150を制御してよい。
 複数のユーザU#1、U#2及びU#3が所定の認証条件を満たすと判定された場合、仮想世界サーバ400の出力部413は、通信装置430を介して、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とを警備端末300に出力してよい。
 オペレータOは、警備端末300を使用して、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの可否を示す許可情報を、仮想世界サーバ400に送信してよい。この結果、仮想世界サーバ400の通信装置430は、許可情報を受信してよい。
 許可情報が、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの許可を示している場合、仮想世界サーバ400は、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインを許可してよい。この結果、複数のユーザU#1、U#2及びU#3は、一の仮想空間にログインしてよい。他方で、許可情報が、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの不許可を示している場合、仮想世界サーバ400の演算装置410は、通信装置420を介して、例えば、仮想空間にログインできないことを示す情報を、複数の端末装置100#1、100#2及び100#3に送信してよい。この結果、複数の端末装置100#1、100#2及び100#3各々の演算装置110は、一の仮想空間にログインできないことを報知するように出力装置150を制御してよい。
 (技術的効果)
 第7実施形態に係る情報処理システム6によれば、上述した第5実施形態に係る情報処理システム5と同様に、複数のユーザが一の仮想空間にログインする場合に、生体認証による本人確認に加えて、警備端末300のオペレータOによる複数のユーザの確認を行うことができる。
 <第8実施形態>
 情報処理システム、情報処理装置、情報処理方法及び記録媒体の第8実施形態について図18に加えて、図16及び図20を参照して説明する。以下では、情報処理システム6を用いて、情報処理システム、情報処理装置、情報処理方法及び記録媒体の第8実施形態について説明する。第8実施形態では、第7実施形態と同様に、複数のユーザが、一の仮想空間にログインする場合について説明する。尚、第8実施形態について、第1実施形態乃至第7実施形態の説明と重複する説明を適宜省略する。
 (情報処理システム6の概要)
 情報処理システム6は、次のような動作を行ってよい。ウェアラブルデバイスを装着するユーザU#1が、端末装置100#1を使用して仮想世界サーバ400(例えば、仮想世界サーバ400が提供する仮想空間に係るホームページ)にアクセスした場合、仮想世界サーバ400は、端末装置100#1に対してユーザU#1の認証を要求してよい。ユーザU#1の認証を要求された端末装置100#1は、ユーザU#1の生体情報を取得してよい。端末装置100#1は、生体情報を用いてユーザU#1の生体認証を行ってよい。生体認証が成功した場合、端末装置100#1は、ユーザU#1に関するユーザ情報を、仮想世界サーバ400に送信してよい。
 同様に、ウェアラブルデバイスを装着するユーザU#2が、端末装置100#2を使用して仮想世界サーバ400にアクセスした場合、仮想世界サーバ400は、端末装置100#2に対してユーザU#2の認証を要求してよい。ユーザU#2の認証を要求された端末装置100#2は、ユーザU#2の生体情報を取得してよい。端末装置100#2は、生体情報を用いてユーザU#2の生体認証を行ってよい。生体認証が成功した場合、端末装置100#2は、ユーザU#2に関するユーザ情報を、仮想世界サーバ400に送信してよい。
 同様に、ウェアラブルデバイスを装着するユーザU#3が、端末装置100#3を使用して仮想世界サーバ400にアクセスした場合、仮想世界サーバ400は、端末装置100#3に対してユーザU#3の認証を要求してよい。ユーザU#3の認証を要求された端末装置100#3は、ユーザU#3の生体情報を取得してよい。端末装置100#3は、生体情報を用いてユーザU#3の生体認証を行ってよい。生体認証が成功した場合、端末装置100#3は、ユーザU#3に関するユーザ情報を、仮想世界サーバ400に送信してよい。
 ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とを受信した仮想世界サーバ400は、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とに基づいて、複数のユーザU#1、U#2及びU#3が所定の認証条件を満たすか否かを判定してよい。尚、複数のユーザU#1、U#2及びU#3の少なくとも一人の生体認証が失敗したことに起因して、仮想世界サーバ400が、所定期間内に、上記少なくとも一人に関するユーザ情報を受信しない場合、仮想世界サーバ400は、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインを許可しなくてよい。尚、複数のユーザU#1、U#2及びU#3が所定の認証条件を満たさないと判定された場合、仮想世界サーバ400は、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインを許可しなくてよい。
 複数のユーザU#1、U#2及びU#3が所定の認証条件を満たすと判定された場合、仮想世界サーバ400は、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とを警備端末300に出力してよい。警備端末300のオペレータOは、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とに基づいて、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの可否を判断してよい。
 オペレータOは、警備端末300を使用して、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの可否を示す許可情報(言い換えれば、オペレータOの判断結果)を仮想世界サーバ400に送信してよい。この結果、仮想世界サーバ400は、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの可否を示す許可情報を受信してよい。
 許可情報が、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの許可を示している場合、仮想世界サーバ400は、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインを許可してよい。この結果、複数のユーザU#1、U#2及びU#3は、一の仮想空間にログインしてよい。他方で、許可情報が、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの不許可を示している場合、仮想世界サーバ400は、例えば、一の仮想空間にログインできないことを示す情報を、複数の端末装置100#1、100#2及び100#3に送信してよい。この結果、端末装置100#1、100#2及び100#3は、例えば、一の仮想空間にログインできないことを報知してよい。
 (端末装置100#1、100#2及び100#3各々の構成)
 端末装置100#1、100#2及び100#3各々は、演算装置110に代えて、図16に示す演算装置110aを備えてよい。
 (仮想世界サーバ400の構成)
 仮想世界サーバ400は、演算装置410又は410aに代えて、演算装置410bを備えてよい。演算装置410bは、演算装置410と同様に、1以上のプロセッサを有していてよい。図20に示すように、演算装置410bは、論理的に実現される機能ブロックとして、又は、物理的に実現される処理回路として、取得部411、出力部413及びグループ認証部414を有していてよい。
 (情報処理システム6の動作)
 端末装置100#1の取得部111は、ウェアラブルデバイスを装着するユーザU#1の目に係る情報を含む生体情報を取得してよい。端末装置100#1の個人認証部112aは、取得部111により取得された生体情報を用いて、ユーザU#1の生体認証を行ってよい。生体認証が成功した場合、端末装置100#1の出力部113は、ユーザU#1に関するユーザ情報を、端末装置100#1の通信装置130を介して、仮想世界サーバ400に送信してよい。尚、生体認証が失敗した場合、端末装置100#1の演算装置110aは、生体認証が失敗したことを報知するように端末装置100#1の出力装置150を制御してよい。
 端末装置100#2の取得部111は、ウェアラブルデバイスを装着するユーザU#2の目に係る情報を含む生体情報を取得してよい。端末装置100#2の個人認証部112aは、取得部111により取得された生体情報を用いて、ユーザU#2の生体認証を行ってよい。生体認証が成功した場合、端末装置100#2の出力部113は、ユーザU#2に関するユーザ情報を、端末装置100#2の通信装置130を介して、仮想世界サーバ400に送信してよい。尚、生体認証が失敗した場合、端末装置100#2の演算装置110aは、生体認証が失敗したことを報知するように端末装置100#2の出力装置150を制御してよい。
 端末装置100#3の取得部111は、ウェアラブルデバイスを装着するユーザU#3の目に係る情報を含む生体情報を取得してよい。端末装置100#3の個人認証部112aは、取得部111により取得された生体情報を用いて、ユーザU#3の生体認証を行ってよい。生体認証が成功した場合、端末装置100#3の出力部113は、ユーザU#3に関するユーザ情報を、端末装置100#3の通信装置130を介して、仮想世界サーバ400に送信してよい。尚、生体認証が失敗した場合、端末装置100#3の演算装置110aは、生体認証が失敗したことを報知するように端末装置100#3の出力装置150を制御してよい。
 仮想世界サーバ400の取得部411は、複数の端末装置100#1、100#2及び100#3各々から送信された、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とを取得してよい。ここで、複数の端末装置100#1、100#2及び100#3の少なくとも一つは、ユーザ情報を仮想世界サーバ400に送信する場合に、グループ認証クエリも仮想世界サーバ400に送信してよい。グループ認証クエリをを受信した仮想世界サーバ400のグループ認証部414は、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とに基づいて、複数のユーザU#1、U#2及びU#3が所定の認証条件を満たすか否かを判定してよい。
 複数のユーザU#1、U#2及びU#3が所定の認証条件を満たさないと判定された場合、演算装置410bは、通信装置430を介して、一の仮想空間へのログインを許可しないことを示す情報を、複数の端末装置100#1、100#2及び100#3に送信してよい。一の仮想空間へのログインを許可しないことを示す情報を受信した複数の端末装置100#1、100#2及び100#3各々の演算装置110は、一の仮想空間にログインできないことを報知するように出力装置150を制御してよい。
 複数のユーザU#1、U#2及びU#3が所定の認証条件を満たすと判定された場合、仮想世界サーバ400の出力部413は、通信装置430を介して、ユーザU#1に関するユーザ情報と、ユーザU#2に関するユーザ情報と、ユーザU#3に関するユーザ情報とを警備端末300に出力してよい。
 オペレータOは、警備端末300を使用して、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの可否を示す許可情報を、仮想世界サーバ400に送信してよい。この結果、仮想世界サーバ400の通信装置430は、許可情報を受信してよい。
 許可情報が、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの許可を示している場合、仮想世界サーバ400は、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインを許可してよい。この結果、複数のユーザU#1、U#2及びU#3は、一の仮想空間にログインしてよい。他方で、許可情報が、複数のユーザU#1、U#2及びU#3の一の仮想空間へのログインの不許可を示している場合、仮想世界サーバ400の演算装置410bは、通信装置420を介して、例えば、仮想空間にログインできないことを示す情報を、複数の端末装置100#1、100#2及び100#3に送信してよい。この結果、複数の端末装置100#1、100#2及び100#3各々の演算装置110は、一の仮想空間にログインできないことを報知するように出力装置150を制御してよい。
 (技術的効果)
 第8実施形態に係る情報処理システム6によれば、上述した第7実施形態に係る情報処理システム6と同様に、複数のユーザが一の仮想空間にログインする場合に、生体認証による本人確認に加えて、警備端末300のオペレータOによる複数のユーザの確認を行うことができる。
 <変形例>
 第1実施形態乃至第8実施形態に共通の変形例について図21及び図22を参照して説明する。尚、第1実施形態乃至第8実施形態の説明と重複する説明を適宜省略する。
 (警備端末300の構成)
 警備端末300の構成について図21を参照して説明する。図21において、警備端末300は、演算装置310、記憶装置320、通信装置330、入力装置340及び出力装置350を備える。演算装置310、記憶装置320、通信装置330、入力装置340及び出力装置350は、データバス360を介して接続されていてよい。
 演算装置310は、プロセッサ3101を有していてよい。尚、演算装置310は、プロセッサ3101に加えて、他のプロセッサを有していてよい。つまり、演算装置310は、1以上のプロセッサを有していてよい。尚、プロセッサ3101は、マルチコアプロセッサであってよい。演算装置310が、マルチコアプロセッサである単一のプロセッサ3101を有する場合、演算装置310は、論理的には、複数のプロセッサを有していると言える。プロセッサ3101は、例えば、CPU、GPU、FPGA、TPU及び量子プロセッサのうち少なくとも一つであってよい。
 記憶装置320は、メモリ3201を有していてよい。尚、記憶装置320は、メモリ3201に加えて、他のメモリを有していてよい。つまり、記憶装置320は、1以上のメモリを有していてよい。メモリ3201は、例えば、RAM、ROM、ハードディスク装置、光磁気ディスク装置、SSD及び光ディスクアレイのうち少なくとも一つであってよい。従って、記憶装置320は、一時的でない記録媒体としてのメモリ3201を有していてよい。
 記憶装置320は、所望のデータを記憶可能である。記憶装置320のメモリ3201には、演算装置310が実行するコンピュータプログラム3201aが記憶されていてよい。記憶装置320は、演算装置310がコンピュータプログラム3201aを実行している場合に、演算装置310が一時的に使用するデータを一時的に記憶してよい。記憶装置320には、生体認証に係るデータベースが記憶されていてよい。該データベースには、生体認証に用いられる登録画像及び登録特徴量の少なくとも一方が含まれてよい。
 尚、コンピュータプログラム3201aは、コンピュータで読み取り可能であって且つ一時的でない記録媒体に記録されていてもよい。この場合、警備端末300が備える図示しない記録媒体読み取り装置を用いて上記記録媒体が読み取られることによって、メモリ3201にコンピュータプログラム3201aが記憶されてよい。尚、上記記録媒体として、光ディスク、磁気媒体、光磁気ディスク、半導体メモリ、及び、その他プログラムを格納可能な任意の媒体の少なくとも一つが用いられてよい。尚、コンピュータプログラム3201aは、通信装置330を介して、警備端末300の外部の図示しない装置から取得されてもよい(言い換えれば、ダウンロードされてもよい)。該取得されたコンピュータプログラム3201aは、メモリ3201に記憶されてよい。
 通信装置330は、警備端末300の外部の装置と通信可能であってもよい。尚、通信装置330は、有線通信を行ってもよいし、無線通信を行ってもよい。
 入力装置340は、外部から警備端末300に対する情報の入力を受け付け可能な装置である。入力装置340は、警備端末300のオペレータOが操作可能な操作装置(例えば、キーボード、マウス、タッチパネル等)を含んでよい。入力装置340は、例えばUSBメモリ等の、警備端末300に着脱可能な記録媒体に記録されている情報を読み取り可能な記録媒体読取装置を含んでよい。尚、警備端末300に、通信装置330を介して情報が入力される場合(言い換えれば、警備端末300が通信装置330を介して情報を取得する場合)、通信装置330は入力装置として機能してよい。
 出力装置350は、警備端末300の外部に対して情報を出力可能な装置である。出力装置350は、上記情報として、文字や画像等の視覚情報を出力してもよいし、音声等の聴覚情報を出力してもよいし、振動等の触覚情報を出力してもよい。出力装置350は、例えば、ディスプレイ、スピーカ、プリンタ及び振動モータの少なくとも一つを含んでいてよい。出力装置350は、例えばUSBメモリ等の、警備端末300に着脱可能な記録媒体に情報を出力可能であってもよい。尚、警備端末300が通信装置330を介して情報を出力する場合、通信装置330は出力装置として機能してよい。
 演算装置310のプロセッサ3101は、コンピュータプログラム3201aが記憶された、記憶装置320のメモリ3201とともに(言い換えれば、メモリ3201と、メモリ3201に記憶されたコンピュータプログラム3201aとともに)、警備端末300が行うべき処理を実行してよい。例えば、プロセッサ3101が、コンピュータプログラム3201aを実行することによって、演算装置310内に(例えば、プロセッサ3101内に)、警備端末300が行うべき処理を実行するための論理的な機能ブロックが実現されてもよい。
 図22に示すように、演算装置310は、論理的に実現される機能ブロックとして、又は、物理的に実現される処理回路として、取得部311、認証部312及び警報部313を有していてよい。尚、取得部311、認証部312及び警報部313の少なくとも一つは、論理的な機能ブロックと、物理的な処理回路(即ち、ハードウェア)とが混在する形式で実現されてよい。
 尚、取得部311、認証部312及び警報部313が機能ブロックとして実現される場合、取得部311、認証部312及び警報部313は、単一のプロセッサ(例えば、プロセッサ3101)により実現されてもよい。或いは、取得部311、認証部312及び警報部313は、夫々異なるプロセッサにより実現されてもよい。或いは、取得部311、認証部312及び警報部313の一部が、一のプロセッサにより実現され、取得部311、認証部312及び警報部313の残りの部分が、一のプロセッサとは異なる一以上のプロセッサにより実現されてもよい。
 (警備端末300の動作)
 取得部311は、オペレータOの生体情報を取得してよい。認証部312は、取得部311により取得された生体情報を用いて、オペレータOの生体認証を行ってよい。尚、認証部312は、生体認証として、例えば、顔認証、虹彩認証、指紋認証、掌紋認証、静脈認証、声紋認証及び耳音響認証、並びに、マルチモーダル生体認証の少なくとも一つを行ってよい。
 オペレータOの生体認証は、例えば、オペレータOの警備端末300へのログイン時、及び、オペレータOが上述した許可情報を送信する場合の少なくとも一方で行われてよい。このように構成すれば、例えば、不正の手段によって仮想空間にログインしようとする者と共謀する者が、警備端末300を操作することを防止することができる。尚、オペレータOの生体認証が失敗した場合、警報部313は、警報を発するように出力装置350を制御してよい。
 例えば、第2実施形態において説明したように、オペレータOとユーザUとのビデオ通話に係る画面に、ユーザUに加えて、ユーザU以外の人物が表示され、且つ、ユーザUが、ユーザU以外の人物に脅迫等されているとオペレータOが判断した場合、オペレータOは、警察に通報してもよい。例えば、ユーザUが非常時を知らせる合図を発した場合、オペレータOは、警察に通報してもよい。
 本変形例では、例えば演算装置310が、ビデオ通話に係る画面に基づいて、ユーザUが脅迫等されているか否かを自動的に判定してよい。ユーザUが脅迫等されていると判定された場合、警報部313は、警報を発するように出力装置350を制御してよい。例えば演算装置310は、ユーザUが非常時を知らせる合図を発したか否かを判定してよい。ユーザUが非常時を知らせる合図を発したと判定された場合、警報部313は、警報を発するように出力装置350を制御してよい。尚、非常時を知らせる合図は、端末装置100から送信される、非常時であることを示す非常時情報であってもよい。非常時情報を受信した警備端末300の演算装置310は、ユーザUが非常時を知らせる合図を発したと判定してよい。この結果、警報部313は、警報を発するように出力装置350を制御してよい。このように構成すれば、オペレータOがユーザUのヘルプシグナルを見逃すことを抑制することができる。
 <付記>
 上記の実施形態の一部又は全部は、以下の付記のようにも記載され得るが、以下には限られない。
 (付記1)
 ウェアラブルデバイスを装着する対象の目に係る情報を含む生体情報を取得する取得手段と、
 前記生体情報を用いて前記対象の生体認証を行う認証手段と、
 前記認証手段による前記生体認証が成功した場合に、前記対象に関する対象情報を、警備端末に出力する出力手段と、
 前記対象情報に基づく、前記対象の仮想空間へのログインの可否を示す許可情報を前記警備端末から受信する受信手段と、
 を備える情報処理システム。
 (付記2)
 ウェアラブルデバイスを装着する対象の目に係る情報を含む生体情報を取得する取得手段と、
 前記生体情報を用いて前記対象の生体認証を行う認証手段と、
 前記認証手段による前記生体認証が成功した場合に、前記対象に関する対象情報を、警備端末に出力する出力手段と、
 前記対象情報に基づく、前記対象の仮想空間へのログインの可否を示す許可情報を前記警備端末から受信する受信手段と、
 を備える情報処理装置。
 (付記3)
 前記取得手段は、夫々ウェアラブルデバイスを装着する複数の対象の目に係る情報を夫々含む複数の生体情報を取得し、
 前記認証手段は、前記複数の生体情報を用いて前記複数の対象の生体認証を行い、
 前記認証手段は、前記複数の対象が所定の認証条件を満たすか否かを判定し、
 前記出力手段は、前記複数の対象各々の生体認証が成功し、且つ、前記複数の対象が前記所定の認証条件を満たすと判定された場合に、前記複数の対象に夫々関する複数の対象情報を前記警備端末に出力し、
 前記受信手段は、前記複数の対象情報に基づく、前記複数の対象の前記仮想空間へのログインの可否を示す前記許可情報を前記警備端末から受信する
 付記2に記載の情報処理装置。
 (付記4)
 前記対象情報は、前記対象の外観を示す画像を含む
 付記2又は3に記載の情報処理装置。
 (付記5)
 前記対象情報は、前記対象の周囲を示す画像を含む
 付記2乃至4のいずれか一項に記載の情報処理装置。
 前記対象情報は、前記認証手段が前記生体認証において算出する照合スコアを含む
 付記2乃至5のいずれか一項に記載の情報処理装置。
 (付記7)
 前記所定の認証条件は、前記複数の対象が満たすべき条件と、時間制限条件との少なくとも一方を含む
 付記3に記載の情報処理装置。
 (付記8)
 前記対象の外観を示す画像は、前記ウェアラブルデバイスを装着している前記対象の顔を含む画像と、前記ウェアラブルデバイスに覆われている前記対象の目を含む画像と、が合成された画像である
 付記4に記載の情報処理装置。
 (付記9)
 前記複数の対象が満たすべき条件は、前記複数の対象の組み合わせに関する条件を含む
 付記7に記載の情報処理装置。
 (付記10)
 前記取得手段は、夫々ウェアラブルデバイスを装着する複数の対象の目に係る情報を夫々含む複数の生体情報を取得し、
 前記認証手段は、前記複数の生体情報を用いて前記複数の対象の生体認証を行い、
 前記認証手段は、前記複数の対象が所定の認証条件を満たすか否かを判定し、
 前記出力手段は、前記複数の対象各々の生体認証が成功し、且つ、前記複数の対象が前記所定の認証条件を満たすと判定された場合に、前記複数の対象に夫々関する複数の対象情報を前記警備端末に出力し、
 前記受信手段は、前記複数の対象情報に基づく、前記複数の対象の前記仮想空間へのログインの可否を示す前記許可情報を前記警備端末から受信する
 付記1に記載の情報処理システム。
 (付記11)
 前記警備端末は、前記対象により入力されたテキストデータ及び前記対象の音声の少なくとも一方を出力し、
 前記ウェアラブルデバイスは、前記警備端末のオペレータにより入力されたテキストデータ及び前記オペレータの音声の少なくとも一方を出力する
 付記1又は10に記載の情報処理システム。
 (付記12)
 前記対象情報は、前記対象の外観を示す画像を含み、
 前記警備端末は、前記対象の外観を示す画像を表示する
 付記1、10又は11に記載の情報処理システム。
 (付記13)
 前記対象情報は、前記対象の周囲を示す画像を含み、
 前記警備端末は、前記対象の周囲を示す画像を表示する
 付記1、及び、10乃至12のいずれか一項に記載の情報処理システム。
 (付記14)
 前記対象情報は、前記認証手段が前記生体認証において算出する照合スコアを含み、
 前記警備端末は、前記照合スコアを表示する
 付記1、及び、10乃至13のいずれか一項に記載の情報処理システム。
 (付記15)
 前記複数の対象情報は、前記複数の対象の外観を夫々示す複数の画像を含み、
 前記警備端末は、前記複数の画像を表示する
 付記10に記載の情報処理システム。
 (付記16)
 前記警備端末のオペレータに係る生体認証が成功した場合に、前記警備端末は、前記許可情報を送信する
 付記1、及び、10乃至15のいずれか一項に記載の情報処理システム。
 (付記17)
 前記警備端末は、前記対象が発した非常時情報に応じてアラートを発する
 付記1、及び、10乃至16のいずれか一項に記載の情報処理システム。
 (付記18)
 前記オペレータは、警備業務を行う者である
 付記16に記載の情報処理システム。
 (付記19)
 ウェアラブルデバイスを装着する対象の目に係る情報を含む生体情報を取得し、
 前記生体情報を用いて前記対象の生体認証を行い、
 前記生体認証が成功した場合に、前記対象に関する対象情報を、警備端末に出力し、
 前記対象情報に基づく、前記対象の仮想空間へのログインの可否を示す許可情報を前記警備端末から受信する
 情報処理方法。
 (付記20)
 コンピュータに、
 ウェアラブルデバイスを装着する対象の目に係る情報を含む生体情報を取得し、
 前記生体情報を用いて前記対象の生体認証を行い、
 前記生体認証が成功した場合に、前記対象に関する対象情報を、警備端末に出力し、
 前記対象情報に基づく、前記対象の仮想空間へのログインの可否を示す許可情報を前記警備端末から受信する
 情報処理方法を実行させるためのコンピュータプログラムが記録されている記録媒体。
 また、上述した付記1に従属する付記10乃至付記18に記載した構成の一部又は全ては、付記19に対しても付記10乃至付記18と同様の従属関係により従属し得る。上述した付記2に従属する付記3乃至付記9に記載した構成の一部又は全ては、付記19及び付記20各々に対しても付記3乃至付記9と同様の従属関係により従属し得る。更には、付記1、付記2、付記19及び付記20に限らず、上述した各実施形態から逸脱しない範囲において、様々なハードウェア、ソフトウェア、ソフトウェアを記録するための種々の記録手段、又はシステムに対しても同様に、付記として記載した構成の一部又は全てを従属させ得る。
 この開示は、請求の範囲及び明細書全体から読み取るこのできる発明の要旨又は思想に反しない範囲で適宜変更可能であり、そのような変更を伴う情報処理システム、情報処理装置、情報処理方法、及び記録媒体もまたこの開示の技術思想に含まれる。
 1、2、3、4、5、6 情報処理システム
 100 端末装置
 200 認証サーバ
 300 警備端末
 400 仮想世界サーバ

Claims (20)

  1.  ウェアラブルデバイスを装着する対象の目に係る情報を含む生体情報を取得する取得手段と、
     前記生体情報を用いて前記対象の生体認証を行う認証手段と、
     前記認証手段による前記生体認証が成功した場合に、前記対象に関する対象情報を、警備端末に出力する出力手段と、
     前記対象情報に基づく、前記対象の仮想空間へのログインの可否を示す許可情報を前記警備端末から受信する受信手段と、
     を備える情報処理システム。
  2.  ウェアラブルデバイスを装着する対象の目に係る情報を含む生体情報を取得する取得手段と、
     前記生体情報を用いて前記対象の生体認証を行う認証手段と、
     前記認証手段による前記生体認証が成功した場合に、前記対象に関する対象情報を、警備端末に出力する出力手段と、
     前記対象情報に基づく、前記対象の仮想空間へのログインの可否を示す許可情報を前記警備端末から受信する受信手段と、
     を備える情報処理装置。
  3.  前記取得手段は、夫々ウェアラブルデバイスを装着する複数の対象の目に係る情報を夫々含む複数の生体情報を取得し、
     前記認証手段は、前記複数の生体情報を用いて前記複数の対象の生体認証を行い、
     前記認証手段は、前記複数の対象が所定の認証条件を満たすか否かを判定し、
     前記出力手段は、前記複数の対象各々の生体認証が成功し、且つ、前記複数の対象が前記所定の認証条件を満たすと判定された場合に、前記複数の対象に夫々関する複数の対象情報を前記警備端末に出力し、
     前記受信手段は、前記複数の対象情報に基づく、前記複数の対象の前記仮想空間へのログインの可否を示す前記許可情報を前記警備端末から受信する
     請求項2に記載の情報処理装置。
  4.  前記対象情報は、前記対象の外観を示す画像を含む
     請求項2に記載の情報処理装置。
  5.  前記対象情報は、前記対象の周囲を示す画像を含む
     請求項2に記載の情報処理装置。
  6.  前記対象情報は、前記認証手段が前記生体認証において算出する照合スコアを含む
     請求項2に記載の情報処理装置。
  7.  前記所定の認証条件は、前記複数の対象が満たすべき条件と、時間制限条件との少なくとも一方を含む
     請求項3に記載の情報処理装置。
  8.  前記対象の外観を示す画像は、前記ウェアラブルデバイスを装着している前記対象の顔を含む画像と、前記ウェアラブルデバイスに覆われている前記対象の目を含む画像と、が合成された画像である
     請求項4に記載の情報処理装置。
  9.  前記複数の対象が満たすべき条件は、前記複数の対象の組み合わせに関する条件を含む
     請求項7に記載の情報処理装置。
  10.  前記取得手段は、夫々ウェアラブルデバイスを装着する複数の対象の目に係る情報を夫々含む複数の生体情報を取得し、
     前記認証手段は、前記複数の生体情報を用いて前記複数の対象の生体認証を行い、
     前記認証手段は、前記複数の対象が所定の認証条件を満たすか否かを判定し、
     前記出力手段は、前記複数の対象各々の生体認証が成功し、且つ、前記複数の対象が前記所定の認証条件を満たすと判定された場合に、前記複数の対象に夫々関する複数の対象情報を前記警備端末に出力し、
     前記受信手段は、前記複数の対象情報に基づく、前記複数の対象の前記仮想空間へのログインの可否を示す前記許可情報を前記警備端末から受信する
     請求項1に記載の情報処理システム。
  11.  前記警備端末は、前記対象により入力されたテキストデータ及び前記対象の音声の少なくとも一方を出力し、
     前記ウェアラブルデバイスは、前記警備端末のオペレータにより入力されたテキストデータ及び前記オペレータの音声の少なくとも一方を出力する
     請求項1に記載の情報処理システム。
  12.  前記対象情報は、前記対象の外観を示す画像を含み、
     前記警備端末は、前記対象の外観を示す画像を表示する
     請求項1に記載の情報処理システム。
  13.  前記対象情報は、前記対象の周囲を示す画像を含み、
     前記警備端末は、前記対象の周囲を示す画像を表示する
     請求項1に記載の情報処理システム。
  14.  前記対象情報は、前記認証手段が前記生体認証において算出する照合スコアを含み、
     前記警備端末は、前記照合スコアを表示する
     請求項1に記載の情報処理システム。
  15.  前記複数の対象情報は、前記複数の対象の外観を夫々示す複数の画像を含み、
     前記警備端末は、前記複数の画像を表示する
     請求項10に記載の情報処理システム。
  16.  前記警備端末のオペレータに係る生体認証が成功した場合に、前記警備端末は、前記許可情報を送信する
     請求項1に記載の情報処理システム。
  17.  前記警備端末は、前記対象が発した非常時情報に応じてアラートを発する
     請求項1に記載の情報処理システム。
  18.  前記オペレータは、警備業務を行う者である
     請求項16に記載の情報処理システム。
  19.  ウェアラブルデバイスを装着する対象の目に係る情報を含む生体情報を取得し、
     前記生体情報を用いて前記対象の生体認証を行い、
     前記生体認証が成功した場合に、前記対象に関する対象情報を、警備端末に出力し、
     前記対象情報に基づく、前記対象の仮想空間へのログインの可否を示す許可情報を前記警備端末から受信する
     情報処理方法。
  20.  コンピュータに、
     ウェアラブルデバイスを装着する対象の目に係る情報を含む生体情報を取得し、
     前記生体情報を用いて前記対象の生体認証を行い、
     前記生体認証が成功した場合に、前記対象に関する対象情報を、警備端末に出力し、
     前記対象情報に基づく、前記対象の仮想空間へのログインの可否を示す許可情報を前記警備端末から受信する
     情報処理方法を実行させるためのコンピュータプログラムが記録されている記録媒体。
PCT/JP2024/010489 2024-03-18 2024-03-18 情報処理システム、情報処理装置、情報処理方法及び記録媒体 Pending WO2025196871A1 (ja)

Priority Applications (1)

Application Number Priority Date Filing Date Title
PCT/JP2024/010489 WO2025196871A1 (ja) 2024-03-18 2024-03-18 情報処理システム、情報処理装置、情報処理方法及び記録媒体

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
PCT/JP2024/010489 WO2025196871A1 (ja) 2024-03-18 2024-03-18 情報処理システム、情報処理装置、情報処理方法及び記録媒体

Publications (1)

Publication Number Publication Date
WO2025196871A1 true WO2025196871A1 (ja) 2025-09-25

Family

ID=97138757

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/JP2024/010489 Pending WO2025196871A1 (ja) 2024-03-18 2024-03-18 情報処理システム、情報処理装置、情報処理方法及び記録媒体

Country Status (1)

Country Link
WO (1) WO2025196871A1 (ja)

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2007006393A (ja) * 2005-06-27 2007-01-11 Institute Of Physical & Chemical Research 情報提示システム
JP2022007212A (ja) * 2020-06-25 2022-01-13 セコム株式会社 表示装置
WO2023032170A1 (ja) * 2021-09-03 2023-03-09 日本電気株式会社 情報処理装置、情報処理方法、及びコンピュータ読み取り可能な記憶媒体

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2007006393A (ja) * 2005-06-27 2007-01-11 Institute Of Physical & Chemical Research 情報提示システム
JP2022007212A (ja) * 2020-06-25 2022-01-13 セコム株式会社 表示装置
WO2023032170A1 (ja) * 2021-09-03 2023-03-09 日本電気株式会社 情報処理装置、情報処理方法、及びコンピュータ読み取り可能な記憶媒体

Similar Documents

Publication Publication Date Title
US12377357B2 (en) Extended reality techniques improving social interactions
US9979547B2 (en) Password management
US12243120B2 (en) Content distribution system, content distribution method, and content distribution program
US11880445B2 (en) Administered authentication in artificial reality systems
US12339942B1 (en) Artificial reality encryption and decryption
CN110866230B (zh) 已认证设备辅助的用户认证
Heller Reimagining reality: Human rights and immersive technology
US12519759B2 (en) Data management and control in extended reality experiences
JP7616948B2 (ja) 認証装置、認証方法、及び、プログラム
JP7291106B2 (ja) コンテンツ配信システム、コンテンツ配信方法、及びコンテンツ配信プログラム
CA2658174A1 (en) System to provide virtual avatars having real faces with biometric identification
US20240259528A1 (en) Provision system and control method for same
WO2025197009A1 (ja) 情報処理装置、情報処理システム、情報処理方法及び記録媒体
CN113239887A (zh) 活体检测方法及装置、计算机可读存储介质和电子设备
JP2021093125A (ja) 目復元に基づく目追跡方法及び装置
US20250392457A1 (en) System and method for secure optical encryption and authentication using eye-tracking and neuromorphic computing
JP7824977B2 (ja) アバター生成装置
JP7776646B2 (ja) 認証装置
WO2025115212A1 (ja) 情報処理装置、情報処理システム、情報処理方法及び記録媒体
JP2025155339A (ja) 画像処理装置、画像処理方法、及びプログラム
Salice et al. Adversarial Behavior—Attack and Defense
CN120883210A (zh) 信息处理装置、信息处理方法和程序
KR20230033468A (ko) 메타버스 환경에서 사용자 인증장치 및 인증방법
WO2024190008A1 (ja) 情報処理装置、情報処理システム、情報処理方法、およびプログラム
HK40088242A (zh) 一种数据处理方法、装置、设备、存储介质及程序产品

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 24930967

Country of ref document: EP

Kind code of ref document: A1