Image processing apparatus that operates according to security policies, control method therefor, and storage medium
US-2016112459-A1 · Apr 21, 2016 · US
US10154063B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-10154063-B2 |
| Application number | US-201415028875-A |
| Country | US |
| Kind code | B2 |
| Filing date | Oct 1, 2014 |
| Priority date | Oct 17, 2013 |
| Publication date | Dec 11, 2018 |
| Grant date | Dec 11, 2018 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
A device management apparatus includes a setting information acquisition unit that acquires setting information of one or more security setting items from a device; a policy information acquisition unit that acquires policy information defining a single piece of compliant information, a plurality of pieces of compliant information, or a compliant range, for each security setting item; a determination unit that determines whether each of the setting information of the one or more security setting items conforms, based on the policy information; a change unit that changes, when the setting information of any security setting item does not conform, the setting information so as to conform; and a distribution unit that distributes the changed setting information of the security setting item to the device.
Opening claim text (preview).
The invention claimed is: 1. A device management apparatus comprising: processing circuitry configured to acquire setting information of one or more security setting items from a device, the setting information including one or more specific settings including a default value that is to conform with policy information, the policy information defining a single piece of compliant information, a plurality of pieces of pieces of compliant information, or a compliant range; acquire the policy information for each security setting item; determine whether the setting information of the one or more security setting items matches a specific condition required by the single piece of compliant information, the plurality of pieces of pieces of compliant information, or the compliant range defined by the policy information; change, when a corresponding piece of the setting information of any one of the security setting items does not match with the specific condition of the policy information, the corresponding piece of the setting information so as to match with the corresponding single piece of the policy information, any one of the corresponding plurality of pieces of pieces of compliant information, or lie within the corresponding compliant range defined by the specific condition of policy information; and distribute the changed setting information of the security setting item to the device. 2. The device management apparatus according to claim 1 , wherein the policy information defines, for the security setting item for which one or more pieces of compliant information are defined, default information corresponding to any one of the pieces of compliant information, the policy information defines, for the security setting item for which the compliant range is defined, default information included in the compliant range, and the processing circuitry changes, when a corresponding piece of the setting information of any one of the security setting items does not match with the specific condition of the policy information and the policy information defines the pieces of compliant information or the compliant range for the any one of the security setting items, the corresponding piece of the setting information to the corresponding default information of the any one of the security setting items. 3. The device management apparatus according to claim 1 , wherein the processing circuitry sets a security level, wherein the processing circuitry changes, when a corresponding piece of the setting information of any one of the security setting items does not match with the specific condition of the policy information and the policy information defines the pieces of compliant information or the compliant range for the any one of the security setting items, the corresponding piece of the setting information to the compliant information or information in the compliant range in accordance with the security level of the any one of the security setting items. 4. The device management apparatus according to claim 1 , wherein the processing circuitry changes, when a corresponding piece of the setting information of any one of the security setting items does not match with the specific condition of the policy information and the policy information defines the single piece of compliant information for the any one of the security setting items, the corresponding piece of the setting information to the single piece of information of the any one of the security setting items. 5. The device management apparatus according to claim 1 , wherein the processing circuitry determines, for the security setting item for which the policy information defines the single piece of compliant information, whether the corresponding piece of the setting information of the security setting item matches with the single piece of compliant information of the security setting item. 6. The device management apparatus according to claim 1 , wherein the processing circuitry determines, for the security setting item for which the policy information defines the pieces of compliant information, whether the corresponding piece of the setting information of the security setting item matches with any one of the pieces of compliant information of the security setting item. 7. The device management apparatus according to claim 1 , wherein the processing circuitry determines, for the security setting item for which the policy information defines the compliant range, whether the corresponding piece of the setting information of the security setting item lies within the compliant range of the security setting item. 8. The device management apparatus according to claim 1 , wherein the processing circuitry further acquires kind information indicating a kind of the device from the device, the policy information defines a kind of the applied device for each security setting item, and the processing circuitry determines whether each piece of the setting information of the one or more security setting items matches the kind information and the policy information. 9. The device management apparatus according to claim 1 , further comprising a display controller that displays determination results of the processing circuitry on a display. 10. The device management apparatus according to claim 1 , further comprising a memory that stores therein the policy information, wherein the processing circuitry acquires the policy information from the memory. 11. The device management apparatus according to claim 10 , wherein the processing circuitry is configured to register the policy information in the storage unit. 12. A device management system comprising: processing circuitry configured to acquire setting information of one or more security setting items from a device, the setting information including one or more specific settings including a default value that is to conform with policy information, the policy information defining a single piece of compliant information, a plurality of pieces of pieces of compliant information, or a compliant range; acquire the policy information for each security setting item; determine whether the setting information of the one or more security setting items matches a specific condition required by the single piece of compliant information, the plurality of pieces of pieces of compliant information, or the compliant range defined by the policy information; change, when a corresponding piece of the setting information of any one of the security setting items does not match with the specific condition of the policy information, the corresponding piece of the setting information so as to match with the corresponding single piece of the policy information, any one of the corresponding plurality of pieces of pieces of compliant information, or lie within the corresponding compliant range defined by the specific condition of policy information; and distribute the changed setting information of the security setting item to the device. 13. A security setting method comprising: acquiring setting information of one or more security setting items from a device, the setting information including one or more specific settings including a default value that is to conform with policy information, the policy information defining a single piece of compliant information, a plurality of pieces of pieces of compliant information, or a compliant range; acquiring the policy information for each security setting item; determining whether the setting information of the one or more security setting items matches a specific condition required by the single piece of compliant information, the plurality of pieces of pi
for managing network security; network security policies in general (filtering policies H04L63/0227) · CPC title
to a system of files or objects, e.g. local or distributed file system or database · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.