Information security system, its server and its storage medium
First Claim
1. An information security system comprising a portable information processing device and a server, the portable information processing devices comprises an identification information detection/notification unit for detecting detectable identification information, of identification information of the portable information processing device, identification information of a user and identification information of a place, and notifying a server of the detected information;
- and a file using control unit for making an inquiry of the server if a file is a security target file when a user specifies an arbitrary file, and controlling use of the specified file, according to a response to the inquiry and the server comprises a first storage unit for storing in advance using qualification in connection with each specific combination of the three types of identification information;
a second storage unit for storing in advance a level for each file;
a using qualification determination unit for giving the using qualification corresponding to a specific combination stored in the first storage unit to a notifier portable information processing device, if each piece of the notified identification information coincides with the specific combination; and
a using permit determination unit for determining whether to permit use of the specified file by computing a level of the specified file referring to the second storage unit when there is the inquiry and comparing the level with the using qualification given to the inquirer portable information processing device, and replying to the file using control unit.
1 Assignment
0 Petitions
Accused Products
Abstract
An RFID notification unit enables an RFID reader to regularly read the RFID code of an RFID tag attached to the relevant terminal itself, its user and its current location and transmits the RFID code to a server. Upon receipt of this code, the using qualification determination unit of the server determines the current using qualification of the terminal referring to a using condition storage unit. When a user attempts to open an important information file, a file using control unit issues a request to the server. A permit determination unit determines whether to permit the opening of the relevant file, based on the using qualification and the storage contents of a file/level storage unit. When the opening is permitted, the important information file is downloaded onto the terminal or its decoding key is returned.
23 Citations
13 Claims
-
1. An information security system comprising a portable information processing device and a server,
the portable information processing devices comprises an identification information detection/notification unit for detecting detectable identification information, of identification information of the portable information processing device, identification information of a user and identification information of a place, and notifying a server of the detected information; - and
a file using control unit for making an inquiry of the server if a file is a security target file when a user specifies an arbitrary file, and controlling use of the specified file, according to a response to the inquiry and the server comprises a first storage unit for storing in advance using qualification in connection with each specific combination of the three types of identification information;
a second storage unit for storing in advance a level for each file;
a using qualification determination unit for giving the using qualification corresponding to a specific combination stored in the first storage unit to a notifier portable information processing device, if each piece of the notified identification information coincides with the specific combination; and
a using permit determination unit for determining whether to permit use of the specified file by computing a level of the specified file referring to the second storage unit when there is the inquiry and comparing the level with the using qualification given to the inquirer portable information processing device, and replying to the file using control unit. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10)
- and
-
11. A sever, comprising:
-
a first storage unit for storing in advance a using qualification in connection with each combination of three types of identification information of identification information of a portable information processing device, identification information of a user and identification information of a place;
a second storage unit for storing in advance a level for each file;
a using qualification determination unit for giving the using qualification corresponding to the specific combination to the notifier portable information processing device if each piece of the notified identification information corresponds to a specific combination stored in the first storage unit when the identification information is notified by any of the portable information processing devices; and
a using permit determination unit for determining whether to permit use of the requested security target file by computing a level of the requested security target file referring to the second storage unit and comparing the using qualification given to the requester portable information processing device with the level, when there is a use request of an arbitrary security target file from any of the portable information processing devices.
-
-
12. A computer-readable storage medium on which is recorded a program for enabling a computer to realize a function, the function comprising:
-
a first storage function to store in advance a using qualification in connection with each combination of three types of identification information of identification information of a portable information processing device, identification information of a user and identification information of a place;
a second storage function to store in advance a level for each file;
a function to give the using qualification corresponding to the specific combination to the notifier portable information processing device if each piece of the notified identification information corresponds to a specific combination stored in the first storage unit when the identification information is notified by any of the portable information processing devices; and
a function to determine whether to permit use of the requested security target file by computing a level of the requested security target file referring to the second storage unit, and comparing the using qualification given to the requestor portable information processing device with the level, when there is a use request of an arbitrary security target file from any of the portable information processing devices.
-
-
13. A transmission signal by which is carried a program for enabling a computer to realize a function, the function comprising:
-
a first storage function to store in advance a using qualification in connection with each combination of three types of identification information of identification information of a portable information processing device, identification information of a user and identification information of a place;
a second storage function to store in advance a level for each file;
a function to give the using qualification corresponding to the specific combination to the notifier portable information processing device if each piece of the notified identification information corresponds to a specific combination stored in the first storage unit when the identification information is notified by any of the portable information processing devices; and
a function to determine whether to permit use of the requested security target file by computing a level of the requested security target file referring to the second storage unit, and comparing the using qualification given to the requestor portable information processing device with the level, when there is a use request of an arbitrary security target file from any of the portable information processing devices.
-
Specification