Abstract:
In an authentication method according to the present disclosure, (1) a device transmits device history information with a CRL added thereto (hereinafter, device history information with added CRL) to a controller, (2) the controller transmits the device history information with added CRL to a server, and (3) if the version of the CRL included in the device history information with added CRL is older than the version of the CRL stored on the server, the server judges that the controller is unauthorized.
Abstract:
A device in an authentication system acquires a certificate revocation list along with a control command from an operating terminal to the device. The device determines the validity of the controller to which the device connects, based on the certificate revocation list acquired along with the control command.
Abstract:
A first device, upon detecting participation in an authentication system, transmits new and old identification information of a first certificate revocation list that the first device manages to a second device. In a case where the new and old identification information of a second certificate revocation list that the second device manages is older than the new and old identification information of the received first certificate revocation list, the second device transmits a transmission request for the first certificate revocation list to the first device. Upon receiving the transmission request for the first certificate revocation list from the second device, the first device transmits the first certificate revocation list to the second device. the second device updates the second certificate revocation list using the received first certificate revocation list.
Abstract:
An authentication system according to the present disclosure includes a first controller connected to a first server via a first network, a second controller connected to a second server via a second network, and a device. The device compares a next issue date described in a first certificate revocation list acquired from the first controller and an issue date described in a second certificate revocation list acquired from the second controller thereby determining whether the first controller is invalid or not.
Abstract:
An information providing apparatus includes: an inputter that obtains log information and personal information corresponding thereto; a tentative ID giver that gives each tentative ID to the personal information at each predetermined timing; a first storage that stores correspondence-relationship information indicating a correspondence relationship between the personal information and the each tentative ID; a receiver that receives a request for outputting information including a requested tentative ID identified by a current tentative ID given and the one past timing when the requested ID was given; an information processor that determines, in accordance with the request, link-relationship information indicating a correspondence relationship between the requested tentative ID and the current tentative ID; a second storage that stores the determined link-relationship information; and an outputter that outputs first information including the requested tentative ID or second information indicating that first-information outputting is not permitted, based on the stored link-relationship information.