Ic card, register device and service providing system
Abstract
Problem to be solved.To provide an IC card, a register device and a service providing system that ensure sharing of a principal authentication function in the IC card among a plurality of services and permit a service user's own selection of a plurality of principal authentication methods to a degree keeping safety intact.
Solution.A principal authentication function part 14 uses an authentication method recorded in an EEPROM 3 to compare an authentication template for principal specification recorded in the EEPROM 3 and information externally input when a command execution management part 13 executes processing of an application program, and then executes an authentication of the IC card user in an authentication method specified by the application program. Application programs run on the IC card are managed by an application addition and deletion function part 11, and a register of authentication information including an authentication method requested by an application program and an authentication template is managed by a data reading and writing part 12.

Term
Term ended
Projected expiry passed 18 October 2020, 5.9 years ago.
- Priority and filed
- Published
- Projected expiry
- Today
10 claims: 3 independent, 7 dependent
- 1[Claims] [Claim 1] An IC card that provides services by an application program recorded on the IC card. A plurality of the application programs executed by the IC card, an authentication method for executing the application programs, and a recording means for recording authentication information including authentication data. Using the authentication method recorded in the recording means, the authentication data for identifying the person recorded in the recording means and the processing of any of the application programs recorded in the recording means are executed from the outside. A personal authentication method that authenticates the IC card user by comparing it with the entered information, A command execution means for executing the process of the application program to be executed recorded in the recording means by performing authentication in the person authentication means, and An IC card characterized by the provision of. 【特許請求の範囲】 【請求項1】 ICカード上に記録されたアプリケーションプログラムによりサービスを提供するICカードであって、 前記ICカードで実行される複数の前記アプリケーションプログラム、及び前記アプリケーションプログラムを実行するための認証方法と認証データを含む認証情報を記録する記録手段と、 前記記録手段に記録された認証方法を用いて、前記記録手段に記録された本人を特定する認証用データと、前記記録手段に記録されたいずれかのアプリケーションプログラムの処理を実行する際に外部より入力された情報とを比較することによりICカード使用者の認証を行う本人認証手段と、 前記本人認証手段において認証が行われることにより前記記録手段に記録された実行対象となるアプリケーションプログラムの処理を実行するコマンド実行手段と、 を設けたことを特徴とするICカード。
- 4The personal authentication means is One of claims 1 to 3, wherein when a plurality of the authentication data used for authentication are recorded, the authentication data used for the authentication method is selected according to a preset priority. The listed IC card. 【請求項4】 前記本人認証手段は、 認証に使用する前記認証用データが複数記録されている場合、予め設定された優先順位により前記認証方法に用いる認証用データを選択することを特徴とする請求項1から請求項3のいずれかに記載のICカード。
- 10An authentication method for an IC card user in an IC card that provides a service by an application program recorded on the IC card. Using the plurality of application programs executed by the IC card, and the authentication method for executing the application programs and the authentication method recorded in the recording means on the IC card for recording the authentication information including the authentication data. An IC card is used by comparing the authentication data recorded in the recording means for identifying the person with the information input from the outside when executing the processing of any of the application programs recorded in the recording means. Personal authentication processing to authenticate the person and A command execution process for executing the process of the application program to be executed recorded in the recording means by performing authentication in the personal authentication process, and a command execution process. An IC card user authentication method characterized by including. 【請求項10】 ICカード上に記録されたアプリケーションプログラムによりサービスを提供するICカードにおけるICカード使用者の認証方法であって、 前記ICカードで実行される複数の前記アプリケーションプログラム、及び前記アプリケーションプログラムを実行するための認証方法と認証データを含む認証情報を記録するICカード上の記録手段に記録された認証方法を用いて、前記記録手段に記録された本人を特定する認証用データと、前記記録手段に記録されたいずれかのアプリケーションプログラムの処理を実行する際に外部より入力された情報とを比較することによりICカード使用者の認証を行う本人認証処理と、 前記本人認証処理において認証が行われることにより前記記録手段に記録された実行対象となるアプリケーションプログラムの処理を実行するコマンド実行処理と、 を含むことを特徴とするICカード使用者の認証方法。
Independent claims3
165 paragraphs in 1 section, as filed
Description: TECHNICAL FIELD [Detailed description of the invention]
【0001】
[Technical field to which the invention belongs]
The present invention relates to an IC card, a registration device, and a service providing system that utilize a plurality of authentication methods, including authentication by human biometric information.
【0002】
[Conventional technology]
Conventionally, biometrics technology is one of the technologies for electronically authenticating a person by utilizing the biological characteristics of the person. The authentication method is mainly performed as follows. (1) Digitalize and register the biological characteristics of the person (those with little secular change and unique characteristics for each individual) in advance. (2) The biological characteristics of the person to be authenticated at the time of collation are captured by a scanner or the like and digitized, and the degree of similarity with the pre-registered data is calculated. When introducing such biometrics technology into a system, a mechanism for safely managing personal biometric information is required. This is because personal biometric information is highly private information and has the characteristic that it cannot be changed. One way to complement this problem is to combine it with a personal portable device such as an IC card. That is, it is possible to protect privacy by storing and managing biometric information in an IC card for each individual. In addition, a technology has been proposed that enables relatively secure authentication locally without using an authentication server by storing biometric information in an IC card and using it in combination with a small collation device. In the case of a relatively small number of people, these technologies can be constructed by a method in which a small collation device manages the biometric information of a plurality of people. However, when a large number of people use a plurality of collation devices, it is difficult to collectively manage biometric information. Therefore, a method has been proposed in which biometric information is stored in an IC card for each individual and managed.
【0003】
[Problems to be Solved by the Invention]
In response to the use of a mobile device owned by an individual or the authentication act performed using the device, there is a method of authenticating the person himself / herself by using a password in combination with biometric information. However, passwords have the problem of being forgotten or the risk of spoofing due to theft. In addition, when using biometric information, taking the condition and physical condition of the part to be used such as an injury, and even fingerprint authentication as an example, the fingerprint is thin by nature and is not suitable for authentication. There was a problem that authentication might not be possible. Furthermore, in order to make up for these shortcomings, it is necessary to combine multiple authentication methods. However, in general, the personal authentication method is fixedly determined for each service provider. Therefore, it is necessary to repeat the personal authentication for each service, and there is a problem that there is a lot of waste.
【0004】
The present invention has been made in view of the above problems, and instead of using a separate personal authentication method for each service provider, the principal is shared by sharing the personal authentication function in the IC card from a plurality of services. It is possible to eliminate waste of the authentication function, and the service user can easily select and change multiple personal authentication methods within the range that does not impair the security. The purpose is to provide IC cards, registration devices, and service provision systems that can be realized.
【0005】
[Means for solving problems]
In order to solve the above problems, the present invention is an IC card that provides services by an application program recorded on the IC card, and executes a plurality of application programs executed by the IC card and the application programs. A recording means for recording the authentication information including the authentication method and the authentication data for the purpose, and the authentication data recorded in the recording means for identifying the person using the authentication method recorded in the recording means, and recorded in the recording means. A personal authentication means that authenticates an IC card user by comparing it with information input from the outside when executing the processing of one of the application programs, and a recording means that is authenticated by the personal authentication means. It is characterized by providing a command execution means for executing the processing of the application program to be executed recorded in. With the above configuration, it is possible to easily realize the registration and change of the application program executed by the IC card and the information required for the personal authentication required by the application program.
【0006】
According to the present invention, in the IC card, the personal authentication means is executed according to a means for acquiring the execution result of the authentication method by a preset score (for example, step S102 of the embodiment) and a preset priority. A means for adding points output as a result of executing a plurality of authentication methods (for example, step S106 of the embodiment) and a means for comparing the added points with a predetermined score specified by the application program (for example, the embodiment). It further includes step S103 or step S107) of the above, and is characterized in that the application is notified of the normal completion of authentication when a predetermined score specified by the application program is satisfied. With the above configuration, it is possible to select and execute a plurality of authentication methods according to the priority specified by the user regardless of the contents of the application program executed by the IC card.
【0007】
According to the present invention, in the above IC card, the personal authentication means obtains the execution result of the authentication method by a preset score (for example, step S123 of the embodiment) and the present output as the execution result of the authentication method. The means for comparing the score of the above with the predetermined score specified by the application program to be executed next (for example, steps S128 to S130 of the embodiment), and as a result of the comparison, the predetermined score specified by the application program is the current score. If it is larger, the authentication method specified in the application program is executed, and the means for recording / updating the score by the authentication method as a new current score (for example, step S131 of the embodiment) is further included, and the present based on the authentication result is included. When the score of is satisfied with the predetermined score specified by the application program, the execution of the authentication method specified by the application program is omitted. With the above configuration, it is possible for a plurality of application programs executed on the IC card to share the result of the authentication method.
【0008】
The present invention is characterized in that, in the above IC card, when a plurality of authentication data used for authentication are recorded, the personal authentication means selects the authentication data used for the authentication method according to a preset priority. To do. With the above configuration, it is possible to change the execution order of the authentication method when fingerprint authentication cannot be performed due to injury.
【0009】
According to the present invention, in the above IC card, the personal authentication means is suspended when the personal authentication can be confirmed by personal authentication using other authentication data even if the authentication data is suspended due to the failure of the authentication. It is characterized by further including means for restoring the authentication data (for example, steps S141 to S153 of the embodiment). With the above configuration, users and administrators can manage IC cards safely and easily and continue to use IC cards.
【0010】
The present invention is an authentication information registration device that registers authentication information including authentication data in the IC card, and executes registration authentication for confirming that the IC card is a legitimate connection destination of the authentication information registration device. The registered authentication means (for example, step S2 of the embodiment) and the selection means (for example, step S5 of the embodiment) that displays the authentication method that can be registered when the registration authentication is normal and allows the user to select the desired authentication method. From step S6), and a registration means (for example, step S7 of the embodiment) for registering the selected authentication method and authentication information in the IC card is provided. With the above configuration, it is possible for the user to safely and easily register the desired authentication method on the IC card.
【0011】
The present invention is an application program registration device that registers an application program to be executed by the IC card in the IC card, and is an authentication means for executing authentication of the application program by an application key (for example, step S43 of the embodiment). , If the authentication by the application key is normal, the confirmation means to perform the personal authentication by the authentication method registered in the IC card (for example, step S45 of the embodiment), and if the personal authentication executed by the IC card is normal, add A selection means for displaying possible application programs and allowing the user to select a desired application program (for example, steps S48 to S49 of the embodiment) and a registration / deletion means for registering / deleting the selected application program. (For example, step S50 of the embodiment) is provided. With the above configuration, it is possible for the user to safely and easily register the desired application program on the IC card.
【0012】
The present invention is a service providing system using the above IC card, in which a customer management server (for example, a customer management server 101 of the embodiment) that issues an IC card and manages a user, and a user can use the IC card. It is characterized in that a client terminal (for example, the client terminal 103 of the embodiment) prepared at home or in a store is provided for use. With the above configuration, it is possible for the user to issue an IC card or use the IC card by operating from the client terminal.
【0013】
The present invention relates to an IC card vending machine (for example, the IC card vending machine 105 of the embodiment) for a user to obtain an IC card on the street in the above service providing system, and a sales history of the IC card vending machine. It is characterized by further providing an IC card sales management server (for example, the IC card sales management server 106 of the embodiment) that manages the user. With the above configuration, it is possible for the user to obtain an IC card from a terminal on the street.
【0014】
The present invention is a method for authenticating an IC card user in an IC card that provides services by an application program recorded on the IC card, in order to execute a plurality of application programs executed by the IC card and the application programs. Using the authentication method recorded in the recording means on the IC card that records the authentication information including the authentication method and the authentication data, the authentication data recorded in the recording means for identifying the person and recorded in the recording means. A personal authentication process that authenticates the IC card user by comparing it with information input from the outside when executing the processing of any application program, and a recording means that is authenticated in the personal authentication process. It is characterized by including a command execution process for executing the recorded process of the application program to be executed.
【0015】
BEST MODE FOR CARRYING OUT THE INVENTION
Hereinafter, embodiments of the present invention will be described with reference to the drawings. FIG. 1 is a block diagram illustrating a functional block configured on the IC card of the present embodiment. In FIG. 1, reference numeral 1 indicates a control processing unit that controls the operation of the IC card of the present embodiment. Reference numeral 2 indicates an input / output control unit that connects the control processing unit 1 and the R / W (Read / Write) device of the IC card that reads / writes the information of the IC card. Code 3 is EEPROM (Electricaly Erasable and Programmable ROM) for recording authentication information including application programs and authentication methods executed on IC cards, and authentication templates (data such as passwords and biometric data for authentication). Rewritable non-volatile memory) is shown. Reference numeral 4 indicates a ROM (Read Only Memory) in which the control program of the IC card of the present embodiment executed by the control processing unit 1 is recorded in advance. Reference numeral 5 is RAM (Random Access) for recording temporary data handled by the control processing unit 1. Memory) is shown. The interface between the IC card and the R / W device of the IC card of the present embodiment can be realized not only by the contact type but also by the non-contact type using wireless or the like. In this case, input / output control is performed. Part 2 shall include a wireless circuit. Further, as the EEPROM 3, a flash memory (Flash Memory: an electrically rewritable semiconductor non-volatile memory) may be used.
【0016】
Further, the control processing unit 1 is composed of an application addition / deletion function unit 11, a data reading / writing processing unit 12, a command execution management unit 13, and a personal authentication function unit 14. The application addition / deletion function unit 11 manages the addition / deletion of the application program recorded in the EEPROM 3. The data reading / writing processing unit 12 registers and maintains authentication information including an authentication method and an authentication template (data such as a password and biometric data for authentication) recorded in EEPROM 3. The command execution management unit 13 executes the processing of the application program recorded on the IC card by the application addition / deletion function unit 11. The personal authentication function unit 14 uses the authentication method recorded in the EEPROM 3 to identify an authentication template (data such as a password and biometric data for authentication) recorded in the EEPROM 3 and an application by the command execution management unit 13. The IC card user is authenticated by comparing it with the information input from the outside when executing the program processing.
【0017】
Next, the structure of the information recorded in the EEPROM 3 will be described with reference to FIGS. 2 and 3. 2 and 3 are schematic views illustrating the structure of information recorded in EEPROM 3 on the IC card according to the embodiment of the present invention. In FIGS. 2 and 3, the types of information recorded in EEPROM 3 are roughly classified as follows. (1) Application program (2) Information on authentication method (3) Key data (4) Other information Explaining each in more detail, (1) as the application program, "application programs 1 to N" and whether or not the application program uses the authentication function by the personal authentication function unit 14 are shown for each application program. It is possible to record "a. Identity verification function use flag" and "b. Identity verification level" which means the level of identity authentication required by the application program. The details of the "identity verification level" will be described later. In addition, (2) as information on the authentication method, for each of the authentication methods 1 to N, M "personal authentication templates (data such as passwords and biometric data for authentication)" and as parameters of the authentication method, " The threshold value, template priority, lock / unlock retry count of each template, unlock count upper limit, lock count upper limit, combination parameter "etc. can be recorded. Here, the "threshold value" calculates the similarity between the template input at the time of personal authentication and the template set in the card in advance, and whether or not the person is the person depending on whether or not the value is equal to or more than a certain value. This is the standard value used when determining whether or not. The "template priority" is a parameter of which template is preferentially used when the templates used in each personal authentication method are stored in a plurality of IC cards. It should be noted that the template may include not only a plurality of templates for one person but also a template for a plurality of people. The "combination parameter" is a parameter indicating a combination method when a plurality of templates are used for personal authentication at one time.
【0018】
Furthermore, the input template is compared with the registered template, and the number of authentication failures is recorded in the card. If the authentication fails beyond the "upper limit of the number of locks", the template is locked and the template cannot be used. The "lock retry count" indicates the remaining number of times obtained by subtracting the number of authentication failures from the "lock count upper limit value", and represents the number of retries possible until the lock. In addition, in order to set not to lock, it is possible by setting the "upper limit of the number of locks" to zero. In addition, even if one template exceeds the "upper limit of the number of locks" and is locked due to changes in the biological condition, if the identity authentication is OK with the other template, the template is unlocked and used again. It is possible to make it possible. The "upper limit of unlock count" indicates the maximum number of unlocks that can be unlocked. Once unlocked, the "unlock retry count" is reduced by 1 and unlock cannot be executed when it reaches 0. And. (3) As the key data, the "application addition key data" used when adding the application program, the "application deletion key data" used when deleting the application program, and the IC card issuer It is possible to record "issuer key data" used for maintenance of the IC card and "maintenance key data" used by the IC card administrator for maintenance of the IC card. In addition, (4) Other information includes "card-side authentication level" which is the result of personal authentication executed by the application program and "card-side authentication" which shows a list of multiple authentication methods set in the IC card. "Method list", when multiple authentication methods are set, "authentication method priority" indicating the order of performing multiple authentication methods and "card expiration date" indicating the expiration date of the IC card can be recorded. Is. The "identity verification level on the card side" is set when the identity verification is successful, and is cleared when the IC card is reset.
【0019】
Next, the operation of the present embodiment will be described with reference to the drawings. First, the operation of registering the personal authentication function on the IC card by the dedicated registration terminal will be described using the flowchart of FIG. In Fig. 4, the user's intention to obtain an IC card is first confirmed (step S1). In step S1, if the user intends to obtain an IC card (YES in step S1), perform IC card registration authentication for registering personal authentication data (password, biometric information, etc.) in the IC card (step). S2). Registration authentication is performed to confirm that the IC card is a legitimate connection destination of the registered terminal, and writing to the card is possible when the authentication is successful. The details of the authentication operation will be described later. Next, it is determined whether or not the registration and authentication of the IC card has been completed normally (step S3). If the registration and authentication of the IC card has been completed normally in step S3 (YES in step S3), the registration of the authentication method is started (step S4). Then, the authentication methods that can be registered are displayed so that the user can select an appropriate authentication method from the plurality of authentication methods (step S5). For example, in the case of a registered terminal equipped with a plurality of scanners, cameras, etc., the user can select a plurality of authentication methods by himself / herself. Next, let the user determine if there is a desired authentication method (step S6). If the user determines in step S6 that there is a desired authentication method (YES in step S6), the authentication information is registered (step S7). For the authentication information, the feature information is extracted from the information obtained by using a scanner or a camera, and when it is judged that the quality of the feature information is good, it is considered successful and the data is written to the IC card. Then, it is determined whether or not the registration of the authentication information is successful (step S8), and if the registration is successful (YES in step S8), the authentication method list in the card is rewritten and the IC card is ejected. (Step S9), the registration operation of the personal authentication function to the IC card is completed.
【0020】
On the other hand, in step S3, if the registration and authentication of the IC card is not completed normally (NO in step S3), it is determined that the IC card is forged, the system is stopped, and the card issuing operation is stopped (NO). Step S10). Further, in step S7, if the registration of the authentication information is not successful (NO in step S8), the user is asked to input whether or not to register again (step S11). If the user inputs the registration again in step S11 (YES in step S11), the process returns to step S5 and the above operation is repeated. In step S11, if the user inputs that the registration is not performed again (NO in step S11), the registration operation of the personal authentication function to the IC card is terminated. As described above, when registering, select the one in good condition from multiple times and register it. If registration fails, return to step S5 and select an authentication method that can be registered. Here, it is also possible to set the details of the authentication method. For example, the order and combination of methods when using multiple authentication methods, and the order and combination of templates. You can also set the priority of the authentication method you want to use. Further, in the above method, the authentication method is not set at the time of obtaining the card, but the authentication method may already be set at the time of obtaining the card. In that case, before the registration authentication to the IC card, the verification is performed by the set authentication method, and when the authentication is successful, the authentication method can be added / deleted / the priority can be changed. If authentication fails, eject the card.
【0021】
Next, an example of the registration authentication operation to the IC card at the time of registration of the personal authentication function will be described with reference to the sequence diagram of FIG. In the registration authentication operation, first, a random number generation request is transmitted from the registration terminal to the IC card (step S21). The IC card that receives the random number generation request generates a random number (step S22), and transmits the generated random number A to the registration terminal (step S23). At the registration terminal, the random number A is encrypted with the private key (step S24) and transmitted to the IC card (step S25). In the IC card, the received ciphertext is decrypted (step S26), and the decrypted random number is compared with the generated random number A (step S27). If the random numbers match as a result of the comparison, a registration flag is set (step S28) and a normal end is returned to the registered terminal (step S29). If the random numbers do not match as a result of the comparison, an error is returned to the registered terminal (step S30).
【0022】
Next, the operation of registering / deleting the application program on the IC card by the dedicated application registration / deletion terminal will be described using the flowchart of FIG. In Fig. 6, first, the IC card is inserted into the application registration / deletion terminal (step S41). Next, it is determined whether or not the expiration date of the inserted IC card is within the expiration date (step S42). In step S42, if the IC card is within the expiration date (YES in step S42), the application key is used for authentication (step S43). The details of authentication using the application key will be described later. Then, it is determined whether or not the authentication is successful (step S44), and if the authentication is successful (YES in step S44), the personal authentication registered by registering the personal authentication function shown in FIG. 4 on the IC card is performed. Is executed (step S45). Next, it is determined whether or not the personal authentication is successful (step S46), and if the authentication is successful (YES in step S46), the registration status of the current application program registered in the IC card is displayed. (Step S47). Also, a list of application programs that can be added is displayed (step S48). Next, when the user is asked to enter whether to register / delete the application program (step S49) and the user inputs to register / delete the application program (YES in step S49), the application program is registered / deleted. Delete it (step S50). Then, it is determined whether or not the registration / deletion of the application program is successful (step S51), and if it is successful (YES in step S51), the process returns to step S49, and the user is further registered / deleted of the application program. Ask them to enter whether or not to do it.
【0023】
On the other hand, in step S42, if the IC card is not within the expiration date (NO in step S42), the application information registered in the IC card is transmitted to the center (step S52), and when the IC card is obtained again. Used for. For the expired IC card, delete the identity verification data in the card, make the card unusable in terms of software or hardware, and discard it (step S53).
【0024】
If it is determined in step S44 that the application key authentication has failed (NO in step S44), the problem is on the IC card side or the system side, so the application information in the card is read and the fraudulent card information is sent to the center. (Step S54). Then, the registration / deletion key in the card is locked (step S55), and the IC card is ejected (step S56). Further, in step S49, when the user inputs that the application program is not registered / deleted (NO in step S49), or in step S51, it is determined that the registration / deletion of the application program has failed (step S51). NO), eject the IC card (step S56). If the identity verification level set in the application program is not in the card-side authentication method list at the time of adding the application program, it means "not" from the IC card immediately after downloading the application program. Response may be sent to the application registration / deletion terminal.
【0025】
Next, an example of the authentication operation using the application key when registering / deleting the application will be described with reference to the sequence diagrams of FIGS. 7 and 8. In FIG. 7, first, the application ID is transmitted from the application registration / deletion terminal to the IC card (step S61). Next, the application ID check code is used to check for duplication with the application ID recorded in the IC card (step S62). If the check is OK, a flag is set in the IC card (step S63) and a normal completion is returned to the application registration / deletion terminal (step S64). If the check is NG, an error is returned to the application registration / deletion terminal (step S65). Next, a random number generation request is sent from the application registration / deletion terminal to the IC card (step S66). The IC card that receives the random number generation request generates a random number (step S67) and sends the generated random number B to the application registration / deletion terminal (step S68).
【0026】
The application registration / deletion terminal that has received the random number B encrypts the random number B and the hash value of the application program with the private key (step S69). Next, the ciphertext and the application program itself (only when the application program is registered, only when the application program is deleted) are transmitted to the IC card (step S70). The IC card that received the ciphertext decrypts the received ciphertext (step S71) and compares the decrypted random number with the generated random number B (step S72). Next, in FIG. 8, when registering the application program, the decrypted hash value and the transmitted hash value of the application program are compared (step S73). When deleting the application program, the decrypted hash value is compared with the hash value of the application program recorded in the IC card (step S74). Then, if the random number B and the hash value match as a result of the comparison, the application program is registered or deleted (step S75). If the random number B and the hash value do not match as a result of the comparison, an error is returned to the application registration / deletion terminal (step S76).
【0027】
Next, using Table 1, an example of the identity verification level for each authentication method executed on the IC card of the present embodiment will be described. "Identity verification level" means the security level of identity verification required by the application program.
[table 1]
<img file="JP2002133384A_D0001.tif" />Table 1 records the types of authentication methods and the level of identity verification for each method on a one-to-one basis. To give an example, in the fingerprint verification authentication method, it is a very strict condition that the fingerprints match when the score is 60% or more, so the identity verification level is set as high as 13 points. In addition, since information such as the date of birth is easily known to others, the identity verification level is set as low as 1 point for the input of the date of birth. In this way, the identity verification level represents the security level of identity authentication required by the application program for each authentication method classified by the difficulty level, and the higher the difficulty level, the higher the point is set.
【0028】
Based on the above, next, using the flowchart of FIG. 9, the operation when the application executed by the IC card of the present embodiment executes one authentication method will be described. In FIG. 9, the application first requests personal authentication (step S81). Next, the identity verification level required by the application is transmitted to the identity verification function on the card side (step S82), and it is determined whether or not the authentication method in the card satisfies the required identity verification level (step S83). In step S83, if the authentication method in the card satisfies the required identity verification level (YES in step S83), the higher priority authentication method is selected (step S84), and the selected authentication method is executable. It is determined whether or not there is (step S85). In step S85, if the selected authentication method is feasible (YES in step S85), then the specified authentication method is executed (step S86). Then, it is determined whether or not the authentication is successful (step S87). In step S87, if the specified authentication was successful (YES in step S87), the result is returned to the application (step S88). On the other hand, in step S83, the authentication method in the card does not satisfy the required identity verification level (NO in step S83), or in step S85, the selected authentication method is infeasible (step S85). NO), reply an error to the application (step S89), and terminate the application usage service. Also, in step S87, if the specified authentication was not successful (NO in step S87), the failure is recorded (step S90) and the result is returned to the application (step S88).
【0029】
Next, the operation when the application executed by the IC card of the present embodiment selects and executes a plurality of authentication methods according to the priority order will be described with reference to the flowchart of FIG. In FIG. 10, when the application requests personal authentication, the priority 1 authentication method is executed (step S101). Next, the identity verification level of the authentication result of the executed authentication method is obtained and recorded in the identity verification level on the card side (step S102). Next, it is determined whether or not the identity verification level on the card side satisfies the identity verification level required by the application (step S103). If it is determined in step S103 that the requested identity verification level does not meet the identity verification level required by the application (NO in step S103), the optimal authentication method that meets the identity verification level is searched according to the priority (NO). Step S104). Next, it is determined whether or not the number of searches exceeds the preset upper limit value (step S105), and if the number of searches does not exceed the upper limit value (NO in step S105), the searched authentication method is executed for authentication. The resulting identity verification level is calculated and added to the card-side identity verification level (step S106). Then, it is determined whether or not the added card-side identity verification level satisfies the identity verification level required by the application (step S107).
【0030】
If it is determined in step S107 that the requested identity verification level does not meet the identity verification level required by the application (NO in step S107), the process returns to step S104, and the above operation is repeated to add the identity verification level. And stack. On the other hand, in step S105, when the number of searches exceeds the preset upper limit value (YES in step S105), the application is notified of the authentication error (step S108) and the process ends. Further, in step S103, when it is determined that the required identity verification level satisfies the identity verification level required by the application (YES in step S103), or in step S107, the requested identity verification level is requested by the application. If it is determined that the specified identity verification level is satisfied (YES in step S107), the current identity verification level is set in the IC card (step S109) and the application is executed. In the above description, in step S104, when searching for the optimum authentication method that satisfies the identity verification level according to the priority, the number of searches is set in advance, and whether or not the number of searches exceeds the set upper limit is determined. Although it was used as a criterion for determining whether or not to continue the search, the search time is set in the same manner as the number of searches, and whether or not the search time exceeds the set upper limit time is also used as a criterion for determining whether or not to continue the search. good.
【0031】
Next, the operation when a plurality of applications executed by the IC card of the present embodiment share the authentication result will be described with reference to the flowchart of FIG. Here, the application program to be executed first by the user among the plurality of application programs will be described as "application 1". In FIG. 11, first, the user is made to select application 1 (step S121). Next, personal authentication is performed by the card-side personal authentication function required by application 1 (step S122), and the authentication result is recorded in the card-side personal identification level (step S123). After recording the authentication result, execute application 1 (step S124). Then ask the user to enter whether to continue running other applications (step S125). In step S125, if the user continues to run another application (YES in step S125), the other application is selected (step S126). When another application is selected, check the authentication method required by the other application (step S127). Next, the current card-side identity verification level is acquired (step S128). After obtaining the current card-side verification level, compare the card-side identity verification level with the identity verification level requested by another application (step S129) to determine whether the requested identity verification level is higher. (Step S130).
【0032】
If the requested identity verification level is higher in step S130 (YES in step S130), the identity verification is performed by the requested authentication method and the card side identity verification level is updated (step S131). Here, the update of the identity verification level on the card side is "identity verification level (after update) = identity verification level (before update) + identity verification level based on the authentication result of another application". Further, although an example of simply adding is shown here, a value obtained by multiplying a weighting factor preset by the usage environment may be added. When the identity verification level is updated, run another application (step S132) and return to step S125 to let the user enter whether to run another application. On the other hand, in step S125, if the user does not continuously execute another application (NO in step S125), the card-side identity verification level is cleared (step S133), and the application use service is terminated (step S134). If the requested identity verification level is lower in step S130 (NO in step S130), the other application is executed without performing identity verification by the requested authentication method (step S132).
【0033】
Also, when using the personal authentication function in the card, the template may be locked due to authentication failure. Therefore, even if the template is locked, the personal authentication function performed by the cardholder of the IC card by the dedicated maintenance device using the flowcharts of FIGS. 12 and 13 so that the user can continue to use the card. The maintenance operation will be described. In FIG. 12, first, the IC card is inserted into the maintenance device (step S141). Next, IC card maintenance authentication is performed (step S142). The maintenance authentication method is different only in that the authentication method described in FIG. 5 is performed by the maintenance key, so the description thereof is omitted here. After performing maintenance authentication, determine whether the authentication was successful (step S143). If the maintenance authentication is successful in step S143 (YES in step S143), the IC card is made to authenticate the person with the unlocked template (step S144). Next, it is determined whether or not the personal authentication is successful (step S145). In step S145, if the identity authentication is successful (YES in step S145), the list of currently locked templates is displayed (step S146).
【0034】
After getting the list of locked templates, determine if there are any unlockable templates (step S147). In step S147, if there is an unlockable template (YES in step S147), unlock it as shown in FIG. 13 (step S148). Next, it is determined whether or not the unlock is successful (step S149). If the unlock was successful in step S149 (YES in step S149), re-register the template (step S150). After executing the template re-registration, it is determined whether the template re-registration was successful (step S151), and if it was successful (YES in step S151), the current registration status is displayed (step S152). Then, when the registration status of the IC card template is displayed, the IC card is ejected (step S153).
【0035】
On the other hand, in step S143, if the maintenance authentication is not successful (NO in step S143), the IC card is taken in, the system is stopped and terminated (step S154). Further, in step S145, if the personal authentication is not successful (NO in step S145), it is confirmed whether or not to confirm again (step S155), and if it is confirmed again (YES in step S155), the process returns to step S144. , Re-execute personal authentication. If the personal authentication is not confirmed again in step S155 (NO in step S155), or if there is no unlockable template in step S147 (NO in step S147), the process proceeds to step S153 and the IC card is ejected. Further, in step S151, if the template re-registration is not successful (NO in step S151), it is confirmed whether or not to re-register again (step S156). When re-registering in step S156 (YES in step S156), the process returns to step S150 and the above operation is repeated. If re-registration is not performed in step S156 (NO in step S156), the current registration status is displayed (step S152) and the IC card is ejected (step S153).
【0036】
Next, the maintenance operation of the personal authentication function performed by the system administrator of the IC card by the dedicated maintenance device will be described with reference to the flowchart of FIG. In FIG. 14, first, the administrator IC card is inserted into the maintenance device (step S161). Next, the IC card is made to authenticate the person with the unlocked template (step S162), and it is determined whether or not the person authentication is successful (step S163). If the identity authentication is successful in step S163 (YES in step S163), the maintenance key is read out (step S164). After obtaining the maintenance key, eject the administrator IC card (step S165) and insert the user IC card (step S166). Then, the process proceeds to step S142 shown in FIG. 12, and the above-mentioned operations from step S142 to step S156 are performed. On the other hand, in step S163, if the personal authentication is not successful (NO in step S163), it is confirmed whether or not to confirm again (step S167), and if it is confirmed again (YES in step S167), the process returns to step S162. , Re-execute personal authentication. If the personal authentication is not confirmed again in step S167 (NO in step S167), the IC card is ejected (step S168).
【0037】
(Explanation of Examples) Next, examples of the present invention will be described with reference to the drawings. FIG. 15 is a block diagram illustrating a system configuration according to an embodiment of the present invention. This embodiment shows an example in which an IC card is obtained by mail or from a vending machine on a street corner. In FIG. 15, reference numeral 101 indicates a customer management server that issues an IC card and manages the user of the IC card. Reference numeral 102 indicates an authentication data registration IC card issuing machine connected to the customer management server 101 that registers authentication data and issues an IC card. Reference numeral 103 indicates a client terminal for the user of the IC card to access the customer management server. Reference numeral 104 indicates a scanner or collation device connected to the client terminal 103 in order to acquire authentication information such as fingerprint information. Reference numeral 105 indicates an IC card vending machine equipped with a camera, a fingerprint verification device, an operation unit for entering a personal identification number, and the like, in addition to a cash payment function. In IC card vending machines, when an individual purchases a card, he / she must select some kind of authentication method before he / she can purchase the IC card. Reference numeral 106 indicates an IC card sales management server that manages information on IC cards sold by the IC card vending machine. Reference numeral 107 indicates a computer network connecting the customer management server 101, the client terminal 103, the IC card vending machine 105, and the IC card sales management server 106. The client terminal 103 may be a mobile terminal as well as a PC or the like as long as a scanner or a collation device can be connected.
【0038】
Next, the IC card issuing operation by the authentication data registration IC card issuing machine 102 in the system shown in FIG. 15 will be described with reference to the sequence diagram shown in FIG. In FIG. 16, first, a personal computer (client terminal 103) at an individual's home is dialed up to connect to a provider or the like, and then to a homepage launched by a customer management server 101 on the Internet. Then, the session for registering the authentication function is requested (step S181). The customer management server 101 requested the session requests the user who operates the client terminal 103 to input the authentication information (step S182). The user who is requested to enter the authentication information transmits the ID number, password, etc. from the client terminal 103 (step S183). The customer management server 101 authenticates the user based on the transmitted authentication information (step S184), and notifies the client terminal 103 of the result (step S185). Upon receiving the authentication result, the user then receives the recorded information on the IC card from the client terminal 103, such as his / her name, telephone number, e-mail address, password such as the password required for registering the IC card, and the person himself / herself. Send confirmable image data (copy of driver's license or insurance card), electronic certificate, etc. (step S186). At this time, the type of IC card to be registered, the price, the pattern, and the memory capacity may be selected. If the IC chip and card can be separated, they may be purchased separately and combined at the time of use.
【0039】
The customer management server 101 that has received the recorded information on the IC card confirms that the telephone number or name acquired by the caller ID notification matches the input telephone number or name, and confirms the user (step S187). ). After the user can confirm, the customer management server 101 sends the authentication data registration IC card issuing machine 102 the information and images received by the customer management server 101 that can be confirmed by the customer, as well as the recorded information on the IC card such as the password. (Step S188). Next, a registration response is sent to the client terminal as confirmation of the registration of the authentication information (step S189). On the other hand, the authentication data registration IC card issuing machine 102 issues an IC card that records data such as authentication information transmitted from the customer management server 101, and registers the history in the customer management server 101 (step S190). After that, the issued IC card is delivered to the user who operates the client terminal 103 by mail or the like (step S191), and the user re-registers the personal authentication data as necessary (step S192). Since the specified PIN and image data are registered in the sent IC card, it is possible to re-register by the authentication method selected by the individual after authenticating the person using them. For example, by re-registering the fingerprint data captured from the personal authentication device connected to the personal computer at home to the IC card, it is possible to confirm the cardholder by fingerprint. The re-registration procedure may be set so that the authentication method that can be selected by an individual can be changed only once. In addition, the data exchanged between the client and server may be encrypted.
【0040】
Next, the operation of obtaining an IC card by the IC card vending machine in the system shown in FIG. 15 will be described with reference to the sequence diagram shown in FIG. In FIG. 17, the user first goes to the IC card vending machine 105 on the street corner and requests the purchase of the IC card (step S201). The IC card vending machine 105, which is requested by the user to purchase an IC card, requests a card registration session from the IC card sales management server 106 (step S202). The IC card sales management server 106 requested the card registration session transmits the session request response to the IC card vending machine 105 (step S203). Upon receiving the session request response of the IC card sales management server 106, the IC card vending machine 105 displays the response of the IC card purchase request to the user (step S204). Next, the user selects the authentication method to be set on the IC card (step S205), and inputs the information recorded on the IC card such as the necessary authentication data (step S206). The IC card vending machine 105 that has received the recorded information on the IC card issues and registers the IC card (step S207), and transmits the issued IC card information to the IC card sales management server 106 (step S208). Upon receiving the IC card issuance / registration information, the IC card sales management server 106 transmits the end of the card registration session to the IC card vending machine 105 (step S209). Then, the IC card vending machine 105 ejects the created IC card (step S210) and ends the operation of selling the IC card.
【0041】
Next, an example of using the IC card obtained in this way will be described with reference to the drawings. In this use case, it is very difficult for a sick user to go to a distant hospital to get the medicine, so the patient's medicine is sent to a convenience store near the place where the hospital lives. This is an example of providing a carrying service. The IC card already contains a cash card application, and users who want to receive the above services obtain the hospital ID card application at a hospital or the like and go to a nearby convenience store to pick up the medicine. First, FIGS. 18 to 21 show an example of the data structure in the IC card. FIG. 18 is a schematic diagram illustrating an application configuration example in an IC card according to an embodiment of the present invention. In FIG. 18, in the IC card, (1) a "cash card application" and a later downloaded "hospital ID card application" are recorded as application programs. "A. Identity verification function use flag" and "b. Identity verification level" are set for each application, and "c. Drug information" is further recorded in the hospital ID card application. ..
【0042】
In addition, (2) as information on the authentication method, "authentication method priority" in which authentication method 1 is rank 1, authentication method 3 is rank 2, and authentication method 2 is rank 3, and authentication method 1 is a password and authentication method 2 The "card-side authentication method list" with fingerprint verification and authentication method 3 as voice verification, the template and parameters of authentication method 1, the template and parameters of authentication method 2, and the template and parameters of authentication method 3 are recorded. There is. FIG. 19 is a schematic diagram illustrating the details of the authentication method list using the password in the IC card in FIG. FIG. 20 is a schematic diagram illustrating the details of the authentication method list by fingerprint verification in the IC card in FIG. FIG. 21 is a schematic diagram illustrating the details of the authentication method list by voice verification in the IC card in FIG. In each figure, each authentication method is described as "a. Authentication method template" and "b. Authentication method parameter" as "threshold", "template priority", "number of lock retries", and ". Each parameter of "unlock number of retries", "unlock number upper limit", "lock number upper limit", and "combination parameter" is set. In the above example, since the user is injured in the hand and fingerprint authentication cannot be performed, the fingerprint authentication is set to be the last in the order.
【0043】
Based on the above, the implementation method of this embodiment is shown. 22 and 23 are sequence diagrams illustrating the operation of the hospital ID card application recorded on the IC card. In FIG. 22, the user first accesses the hospital homepage by the client terminal 103 prepared at home, inserts an IC card, and requests a drug purchase session from the hospital application (hospital homepage) (step S221). ). The hospital application requests mutual authentication from the IC card (hospital ID card application) in response to the session request (step S222). Next, the IC card and the hospital application perform mutual authentication (step S223). The details of mutual authentication will be described later. After mutual authentication is completed, personal authentication is performed using the hospital ID card application (step S224). Here, since the identity verification level required by the hospital ID card application requires either fingerprint authentication or a combination of voice authentication and password, the password with high priority in the IC card as described above. Select the combination of voice authentication and voice authentication as the personal authentication method. After verifying the identity by the authentication method, when the authentication is successful, you can log in to the homepage of the hospital and order the necessary medicines from the homepage of the hospital (step S225).
【0044】
The hospital application then checks the drug inventory (step S226) and requests payment of the purchase price if the inventory is confirmed (step S227). The user who is requested to pay the purchase price processes the payment by the cash card application (step S228). The details of payment processing by the cash card application will be described later. After processing the payment by the cash card application, the user responds to the payment request (step S229), and the hospital application writes the drug reservation information to the IC card (step S230). When the IC card sends a response to the reservation information writing (step S231), the hospital ID card application delivers the medicine to the designated store (step S232).
【0045】
At a later date, the user goes to the designated store and requests a drug purchase session from the client terminal 103 prepared in the store (step S233). The store terminal (application for the store) requests mutual authentication from the IC card in response to the session request (step S234). Next, the IC card and the store terminal perform mutual authentication (step S235). The details of mutual authentication will be described later. After the mutual authentication is completed, as shown in FIG. 23, the personal authentication required for receiving the medicine is performed (step S236). Here, the identity verification level required to receive the medicine is set low, so the identity verification is performed by holding the card. Next, the store terminal sends the drug reservation information to the IC card (step S237), and the IC card confirms the consistency between the drug information registered on the card side and the delivered drug (step). S238). Then, at the same time as notifying the store terminal of the confirmation result (step S239), the store hands the drug to the cardholder (step S240). If the consistency between the drug information registered on the card and the delivered drug can be confirmed, the reservation information will be deleted from the IC card.
【0046】
Next, an example of the mutual authentication operation between the IC card and the application for a hospital or a store will be described with reference to the sequence diagrams of FIGS. 24 and 25. In FIG. 24, first, the application for the hospital or store encrypts the application key with the issuer key (step S241) and sends it to the IC card (step S242). The IC card decrypts the received ciphertext and sets the application key in the IC card (step S243). Next, the hospital or store application generates a random number C (step S244) and sends the generated random number C to the IC card (step S245). The IC card that receives the random number C encrypts the random number C with the application key (step S246) and sends it to the application for the hospital or store (step S247). The hospital or store application decrypts the received ciphertext (step S248) and compares the decrypted random number with the generated random number C (step S249). If the compared random numbers match in step S249, the hospital or store application determines that the application key has been set in the IC card (step S250). In step S249, if the compared random numbers do not match, the hospital or store application determines that the application key is not set in the IC card (step S251). If the application key is not set in the IC card, the IC card may be counterfeit.
【0047】
Next, as shown in FIG. 25, the IC card encrypts the card key with the issuer key (step S252) and sends it to the application for the hospital or store (step S253). The hospital or store application decrypts the received ciphertext and sets the card key in the hospital or store application (step S254). The IC card then generates a random number D (step S255) and sends the generated random number D to the hospital or store application (step S256). The hospital or store application that receives the random number D encrypts the random number D with the card key (step S257) and sends it to the IC card (step S258). The IC card decrypts the received ciphertext (step S259) and compares the decrypted random number with the generated random number D (step S260). If the compared random numbers match in step S260, the IC card determines that the card key has been set in the hospital or store application (step S261). In step S260, if the compared random numbers do not match, the IC card determines that the card key is not set in the hospital or store application (step S262). If the card key is not set in the hospital or store application, the hospital or store application may have been eavesdropped or tampered with.
【0048】
Next, the operation of the cash card application of the IC card of this embodiment will be described with reference to the sequence diagram of FIG. In FIG. 26, first, the user starts a bank application by a client terminal 103 prepared at home, inserts an IC card, and requests a bank settlement session by the cash card application (step S281). The banking application requires the IC card to authenticate itself in response to the session request (step S282). However, since the identity verification result of the hospital ID card application already exists in the card, the identity verification here can be omitted by following the procedure of step S130 in FIG. Is. If the IC card is successfully authenticated, send the status to the banking application (step S283). Next, the bank application reads the information on the IC card (step S284). The IC card sends the user's account information and credit information to the bank terminal in response to reading the information (step S285). At this time, the information to be transmitted may be encrypted. Next, the bank application sends the transfer destination information to the bank terminal (step S286). The bank terminal that has received the user information and the transfer destination information performs the account transfer process (step S287) and notifies the transfer result to the IC card (step S288). Upon receiving the fund transfer notification, the IC card records the fund transfer result (step S289), sends the status to the bank application (step 290), and terminates the IC card cash card application.
【0049】
Next, the template selection operation when two templates exist in the IC card as in the present embodiment will be described with reference to the flowchart of FIG. 27. In FIG. 27, first, the person is authenticated using the first template (step S301). Next, it is determined whether or not the authentication is successful (step S302). In step S302, if the authentication is not successful (NO in step S302), it is determined whether or not the counter indicating the number of times of authentication by the first template is N or more (step S303). If the counter is less than N in step S303 (NO in step S303), the process returns to step S301, and the above-mentioned personal authentication using the first template is repeated. In step S303, if the counter is N or more (YES in step S303), the user is asked to input whether or not to perform authentication by the following template (step S304). In step S304, if the user authenticates using the following template (YES in step S304), the user authenticates using the second template (step S305). Next, it is determined whether or not the authentication is successful (step S306). In step S306, if the authentication is not successful (NO in step S306), it is determined whether or not the counter indicating the number of times of authentication by the second template is N or more (step S307). If the counter is less than N in step S307 (NO in step S307), the process returns to step S305, and the above-mentioned personal authentication using the second template is repeated. In step S307, if the counter is N or more (YES in step S307), record the failure of personal authentication (step S308) and return the result to the application (step S309). On the other hand, in step S302, if the authentication is successful (YES in step S302), the process proceeds to step S308 and the result is returned to the application. Also, if the authentication was successful in step S306 (YES in step S306).
【0050】
[Effect of the invention]
As described above, according to the present invention, instead of using a separate personal authentication method for each service provider, the personal authentication function in the IC card is shared from a plurality of services, thereby eliminating waste of the personal authentication function. It is possible to easily register and change the information required for personal authentication by a mechanism that allows the service user to select multiple personal authentication methods within the range that does not impair security. Become. Therefore, avoiding the risk of spoofing for authentication, and when using biometric information, taking the condition and physical condition of the part to be used such as an injury, and even fingerprint authentication as an example, the fingerprint is naturally thin and it is not possible to authenticate. The effect of being able to realize an IC card, registration device, and service providing system that can be used when complete personal authentication cannot be performed due to natural characteristics such as unsuitability can be obtained.
[Simple explanation of drawings]
[Figure 1]
It is a block diagram explaining the functional block configured on the IC card of embodiment of this invention.
[Figure 2]
It is a schematic diagram explaining the structure of the information recorded in the EEPROM on the IC card of the same embodiment.
[Fig. 3]
It is a schematic diagram explaining the structure of the information recorded in the EEPROM on the IC card of the same embodiment.
[Fig. 4]
It is a flowchart explaining the registration operation of the person authentication function to the IC card of the same embodiment.
[Fig. 5]
It is a sequence diagram explaining an example of the registration authentication operation to the IC card at the time of registration of a person authentication function.
[Fig. 6]
It is a flowchart explaining the registration / deletion operation of the application program to the IC card of the same embodiment.
[Fig. 7]
It is a sequence diagram explaining an example of the authentication operation by an application key at the time of registration / deletion of an application.
[Fig. 8]
It is a sequence diagram explaining an example of the authentication operation by an application key at the time of registration / deletion of an application.
[Fig. 9]
It is a flowchart explaining the operation when the application executed by the IC card of the same embodiment executes one authentication method.
[Fig. 10]
It is a flowchart explaining the operation when the application executed by the IC card of the same embodiment selects and executes a plurality of authentication methods by priority.
[Fig. 11]
It is a flowchart explaining the operation when a plurality of applications executed by the IC card of the same embodiment share an authentication result.
[Fig. 12]
It is a flowchart explaining the maintenance operation of the personal authentication function by the cardholder of the IC card of the same embodiment.
[Fig. 13]
It is a flowchart explaining the maintenance operation of the personal authentication function by the cardholder of the IC card of the same embodiment.
[Fig. 14]
It is a flowchart explaining the maintenance operation of the personal authentication function by the system administrator of the IC card of the same embodiment.
[Fig. 15]
It is a block diagram explaining the system structure of the Example of this invention.
[Fig. 16]
It is a sequence diagram explaining the IC card issuing operation by the authentication data registration IC card issuing machine of the Example of this invention.
[Fig. 17]
It is a sequence diagram explaining the IC card acquisition operation by the IC card vending machine of the Example of this invention.
[Fig. 18]
It is a schematic diagram explaining the application configuration example in IC card of the Example of this invention.
[Fig. 19]
It is a schematic diagram explaining the details of the authentication method list by the password in the IC card of the Example of this invention.
[Fig. 20]
It is a schematic diagram explaining the details of the authentication method list by the fingerprint collation in the IC card of the Example of this invention.
[Fig. 21]
It is a schematic diagram explaining the details of the authentication method list by the voice collation in the IC card of the Example of this invention.
[Fig. 22]
It is a sequence diagram explaining the operation of the hospital ID card application of the Example of this invention.
[Fig. 23]
It is a sequence diagram explaining the operation of the hospital ID card application of the Example of this invention.
[Fig. 24]
It is a sequence diagram explaining an example of the mutual authentication operation between an IC card and an application for a hospital or a store.
[Fig. 25]
It is a sequence diagram explaining an example of the mutual authentication operation between an IC card and an application for a hospital or a store.
[Fig. 26]
It is a sequence diagram explaining the operation of the cash card application of the Example of this invention.
[Fig. 27]
It is a flowchart explaining the template selection operation when two templates exist in the IC card of the Example of this invention.
[Explanation of symbols]
1 Control processing unit 2 Input / output control unit 3 EEPROM 4 ROM 5 RAM 11 Application addition / deletion function 12 Data reading / writing processing unit 13 Command Execution Management Department 14 Personal Authentication Function Department 101 Customer Management Server 102 Authentication data registration IC card issuing machine 103 Client terminal 104 Scanner or collation device 105 IC card vending machine 106 IC card sales management server 107 Computer network
12 sheets
Sheet 1 Sheet 2 Sheet 3 Sheet 4 Sheet 5 Sheet 6 Sheet 7 Sheet 8 Sheet 9 Sheet 10 Sheet 11 Sheet 12
Every citation, both ways
| Document | Relation | Office | Cited during |
|---|---|---|---|
| JP2019503003A | Cited by | Japan | Search report |
| JP2004240645A | Cited by | Japan | Search report |
| US7769696B2 | Cited by | United States of America | Applicant |
| JP2006085251A | Cited by | Japan | Search report |
| JP2005216107A | Cited by | Japan | Search report |
| JP2020017323A | Cited by | Japan | Search report |
| JP2009169809A | Cited by | Japan | Search report |
| JP2006107406A | Cited by | Japan | Search report |
| JP2005038257A | Cited by | Japan | Search report |
| JP2018185657A | Cited by | Japan | Search report |
| US7769696B2 | Cited by | United States of America | Applicant |
| JP2008134882A | Cited by | Japan | Examiner |
| JP2012512474A | Cited by | Japan | Examiner |
| JP2020086769A | Cited by | Japan | Search report |
| US8131260B2 | Cited by | United States of America | Applicant |
| JP2016018356A | Cited by | Japan | Search report |
| JP2009122833A | Cited by | Japan | Search report |
| JP2008040743A | Cited by | Japan | Search report |
| JP2017151759A | Cited by | Japan | Search report |
| US7769696B2 | Cited by | United States of America | Applicant |
| JP2013069250A | Cited by | Japan | Search report |
| JP2011253329A | Cited by | Japan | Examiner |
| JP2008097205A | Cited by | Japan | Examiner |
| US10997586B2 | Cited by | United States of America | Applicant |
| JP2006504167A | Cited by | Japan | Search report |
| JP2017216005A | Cited by | Japan | Search report |
| US7461252B2 | Cited by | United States of America | Applicant |
| US11222498B2 | Cited by | United States of America | Applicant |
| JP2017151759A | Cited by | Japan | Search report |
| JP2006504167A | Cited by | Japan | Search report |
| JP2008176435A | Cited by | Japan | Examiner |
| JP2014146275A | Cited by | Japan | Search report |
| JP2007537518A | Cited by | Japan | Search report |
| JP2004234627A | Cited by | Japan | Search report |
| JP2006085251A | Cited by | Japan | Search report |
| JP2006210977A | Cited by | Japan | Search report |
| JP2005190184A | Cited by | Japan | Search report |
| JP2021182394A | Cited by | Japan | Search report |
| JP2005284739A | Cited by | Japan | Search report |
| JP2007226613A | Cited by | Japan | Examiner |
| JP2007323564A | Cited by | Japan | Examiner |
| JP2004272400A | Cited by | Japan | Search report |
| JP2008123177A | Cited by | Japan | Examiner |
| JP2007026118A | Cited by | Japan | Examiner |
| JP2018018324A | Cited by | Japan | Search report |
| JP2007066330A | Cited by | Japan | Search report |
| JP2007221223A | Cited by | Japan | Search report |
| JP2006072553A | Cited by | Japan | Search report |
| JP2020086769A | Cited by | Japan | Search report |
2 members in 1 office
Priority claims2
| Document | Office | Kind | Date |
|---|---|---|---|
| 2000318428 | Japan | A | |
| JP20000318428 | – | – | – |
Members2
| Document | Office | Kind | |
|---|---|---|---|
| JP2002133384AThis record | Japan | A | |
| JP4090680B2 | Japan | B2 |
28 legal events, as the office reported them to INPADOC
Over the term
Point at a mark for the eventEvents
| Event | Code | |
|---|---|---|
| Receipt of annual feesJAPANESE INTERMEDIATE CODE: R250R250 | R250 | |
| Receipt of annual feesJAPANESE INTERMEDIATE CODE: R250R250 | R250 | |
| Receipt of annual feesJAPANESE INTERMEDIATE CODE: R250R250 | R250 | |
| Receipt of annual feesJAPANESE INTERMEDIATE CODE: R250R250 | R250 | |
| Receipt of annual feesJAPANESE INTERMEDIATE CODE: R250R250 | R250 | |
| Receipt of annual feesJAPANESE INTERMEDIATE CODE: R250R250 | R250 | |
| Receipt of annual feesJAPANESE INTERMEDIATE CODE: R250R250 | R250 | |
| Renewal fee payment (event date is renewal date of database)FPAY | FPAY | |
| Receipt of annual feesJAPANESE INTERMEDIATE CODE: R250R250 | R250 | |
| Renewal fee payment (event date is renewal date of database)FPAY | FPAY | |
| Renewal fee payment (event date is renewal date of database)FPAY | FPAY | |
| Receipt of annual feesJAPANESE INTERMEDIATE CODE: R250R250 | R250 | |
| Renewal fee payment (event date is renewal date of database)FPAY | FPAY | |
| Renewal fee payment (event date is renewal date of database)FPAY | FPAY | |
| Receipt of annual feesJAPANESE INTERMEDIATE CODE: R250R250 | R250 | |
| Renewal fee payment (event date is renewal date of database)FPAY | FPAY | |
| Renewal fee payment (event date is renewal date of database)FPAY | FPAY | |
| Certificate of patent or registration of utility modelJAPANESE INTERMEDIATE CODE: R150R150 | R150 | |
| Certificate of patent or registration of utility modelJAPANESE INTERMEDIATE CODE: R150R150 | R150 | |
| First payment of annual fees (during grant procedure)JAPANESE INTERMEDIATE CODE: A61A61 | A61 | |
| Written decision to grant a patent or to grant a registration (utility model)JAPANESE INTERMEDIATE CODE: A01A01 | A01 | |
| Decision of grant or rejection writtenTRDD | TRDD | |
| Written amendmentJAPANESE INTERMEDIATE CODE: A523A521 | A521 | |
| Notification of reasons for refusalJAPANESE INTERMEDIATE CODE: A131A131 | A131 | |
| Written amendmentJAPANESE INTERMEDIATE CODE: A523A521 | A521 | |
| Notification of reasons for refusalJAPANESE INTERMEDIATE CODE: A131A131 | A131 | |
| Report on retrievalJAPANESE INTERMEDIATE CODE: A971007A977 | A977 | |
| Written request for application examinationJAPANESE INTERMEDIATE CODE: A621A621 | A621 |
Numbers
- Publication
- 2002-133384
- Publication, DOCDB
- 2002133384
- Publication, EPODOC
- JP2002133384
- Application
- 318428
- Application, DOCDB
- 2000318428
- Application, EPODOC
- JP20000318428
Titles2
- Japanese
- 【発明の名称】ICカード、登録装置、及びサービス提供システム
- English
- [Title of Invention] IC card, registration device, and service providing system
Classification
- IPC, 13
- B42D15 10
- G06F1 00
- G06F12 14
- G06F15 00
- G06F21 12
- G06F21 32
- G06F21 34
- G06F21 44
- G06F21 62
- G06K19 073
- G06Q20 40
- G06Q40 00
- G06Q40 02