专利摘要:
A tool system user interface (11; 12; 13; 14) and a method for a tool system (1) with at least two tool system controllers (110,120,130,140) are provided. The tool system user interface (11; 12; 13; 14) includes a communication device (111; 121; 131; 141) for exchanging data (40) with an access management apparatus (20), for determining on the basis of the data data (40) a a user (5) associated with the user system user interface (42) for the tool system user interface (11; 12; 13; 14), and a display device (113; 123; 133; 143) for indicating a predetermined area based on the determined one. user accessibility (42) .Fig. 1
公开号:SE1550731A1
申请号:SE1550731
申请日:2015-06-04
公开日:2015-12-14
发明作者:Dhruv Kalia
申请人:Bosch Gmbh Robert;
IPC主号:
专利说明:

tool system control devices with which the above-mentioned problems can be solved. In particular, a tool system user interface and a tool system method shall be provided with at least two tool system controllers, in which a high degree of flexibility in the use of the tool system is accompanied by minor efforts in complying with applicable safety measures.
This object is solved by a tool system user interface for a tool system with at least two tool system control devices according to claim 1.
The tool system user interface has a communication device for exchanging data with an access management apparatus, for determining based on the data data an associated user access eligibility degree for the tool system user interface, and a display device for indicating a predetermined area based on the determined access. | / led tool system user interface for the tool system, it is possible to configure the access rights for the tool system user interface centrally in one place and store the corresponding necessary data in the same place centrally. Thus, the efforts to comply with the applicable safety measures at the tool system, even with a high degree of flexibility when using the tool system, are very small.
Advantageous additional designs of the tool system user interface are set out in the dependent claims.
According to one embodiment, the communication device may be designed so that when a user logs in to the tool system user interface, the username and user access level of the access management device are received as data, and / or the communication device may be configured to exchange the data via the OPC tool. the user interface may be configured as an OPC client and the access management device as an OPC server, and / or the communication device may be configured to receive a message from the access management device when the user logs in and logs out.
According to a further embodiment, the communication device may request the data information through LDAP request of the access management device, and / or the communication device may be configured to send a message to the access management device, when the user logs in and logs out.
It is also possible for the tool system user interface to have a configuration device for configuring the functions of the tool system user interface and / or the at least two tool system controllers based on the degree of accessibility used for one in the tool system user interface and / or in one of the at least two tool system control devices for logged in users.
Possibly, each tool system user interface is assigned to one of the at least two tool system control nodes. At least one of the tool system user interfaces described above may be part of a tool system, which additionally has at least two tool system control nodes and an access management apparatus, in which data regarding a user's accessibility for a use of one of the at least two tool systems the control devices are stored by means of one of the at least one tool system user interfaces, the access management device being configured to exchange data with the communication device to the tool system user interface.
According to an exemplary embodiment, it is possible for the access management apparatus to be a server, on which an electronic key for a predetermined user and a user access entitlement assigned to the predetermined user are stored.
According to a further exemplary embodiment, it is possible for the access management apparatus to be an active data list server, on which a user access right assigned to the predetermined user is stored.
In the access management apparatus, it can be determined which data belonging to the access management apparatus is to be read by the communication device to the tool system using the interface.
In the case of the tool system, data for access to the at least one tool system user interface can be a username and a password or have biometric data or be data for a system with an electronic key.
The task is solved in addition by a method for a tool system with at least two tool system controllers according to claim 10. The method has the steps: exchanging, with a communication device, data with an access management apparatus, to determine on the basis of the data information a user-accessible degree for a user. the tool system user interface, and indicating, with a display device, a predetermined area on the basis of the established degree of user access eligibility.
The method achieves the same advantages as those mentioned above with respect to the tool system using the interface.
However, further possible implementations of the invention do not explicitly include said combinations of the criteria or embodiments described above or in the following with respect to the exemplary embodiments. In doing so, the person skilled in the art also adds individual aspects such as improvements or completions of the current basic form of the invention.
The invention is described in more detail below with reference to the accompanying drawings and with the aid of the exemplary embodiments. They show: Fig. 1 a schematic block connection diagram of a tool system according to a first embodiment, Fig. 2 a flow diagram of a method for a tool system with at least two tool system control grooves according to the first embodiment; and Fig. 3 is a schematic block connection view of a tool system according to a second embodiment.
In the figures, identical or function-like elements, unless otherwise indicated, are provided with the same reference numerals.
Fig. 1 shows a tool system 1, which is operable by a user 5.
The tool system 1 has a plurality of tool system user interfaces 11, 12, 13, 14, a plurality of tool system controllers 110, 120, 130, 140 and an externally arranged, in particular central, access management apparatus 20. The access management apparatus 20 is in all cases connected via a communication connection 31, 32, 33, 34 with the respective tool system controllers 110, 120, 130, 140 and / or tool system user interfaces 11, 12, 13, 14, even when in Fig. 1 only the direct connection to the respective tool system control device 110, 120, 130, 140 are shown.
Each of the tool system controllers 110, 120, 130, 140 may, for example, control a screw tool or a clamping tool or a rivet tool or a chip cutting tool, or a chip separating tool, and so on. In this way, in tool system 1, one or more of the above-mentioned tools can be operated in any combination.
According to Fig. 1, the tool system user interface 11 has a communication device 111, a configuration device 112 and a display device 113 for indicating a predetermined area 113A of the display device 113.
The communication device 111 serves for the exchange of data 40 via the communication connection 31 with the external, in particular central, access management apparatus 20. According to the data data 40, the user name and a user access entitlement 42 associated with the user 5 can be determined.
With the configuration device 112, the functions of the tool system user interface 11 and / or of the tool system controller 110 can be configured.
The configuration takes place on the basis of the user access eligibility degree 42 for a user 5 logged in to the tool system user interface 11 and / or in the tool system controller 110. Accordingly, a user 5 logged in to the tool system user interface 11 for the tool system controller 110 is displayed only. the functions of the tool system-user interface 11 and / or of the tool system-controlling the mandrel 110, which the user 5 is entitled to perform.
For example, a user 5 may only be entitled to operate the tool intended for control by the tool system control device 110, while on the other hand another user 5 may also change or configure the functions of the tool. Thus, each user 5 is assigned a special user group. There are also other possibilities for other user groups than those exemplified above. Accordingly, a user access entitlement 42 determines which functions of the corresponding tool system controller 110 and / or of the corresponding tool and / or of the corresponding user interface 11, 12, 13, 14 may be used by the respective user 5 at one of the user interfaces 11, 12, 13, 14 and / or by one of the tool system controllers 110, 120, 130, 140.
The display device 113 indicates the predetermined area 113A on the basis of the determined user access eligibility degree 41. Thereby, the user 5 can only perform the functions with respect to the tool, which the user 5 is entitled to perform based on the assigned user access eligibility degree 42.
As further shown in Fig. 1, the tool system user interface 12 likewise has a communication device 121, a configuration device 122 and a display device 123 for indicating a predetermined area 123A with the display device 123.
The devices 121, 122, 123 have the same functions as the devices 111 112, 113 of the tool system user interface 11, so that for the description of the functions of the devices 121, 122, 123 reference is made to the description of the tool system user interface 11.
Likewise, the tool system user interface 13 has a communication device 131, a configuration device 132 and a display device 133 for indicating a predetermined area 133A with the display device 133. The devices 131, 132, 133 have the same functions as the devices 111, 112, 113 of the tool system user interface 11, so that also for the description of the functions of the devices 131, 132, 133 reference is made to the description of the tool system user interface 11.
Likewise, the tool system user interface 14 has a communication device 141, a configuration device 142 and a display device 143 for indicating a predetermined area 143A with the display device 143. The devices 141, 142, 143 have the same functions as the devices 111, 112, 113 of the tool system user interface 11, so that also for the description of the functions of the devices 141, 142, 143 reference is made to the description of the tool system user interface 11.
In addition, the access management apparatus 20 in Fig. 1 has a detection unit 21 for detecting whether a user at one of the tool system user interfaces 11, 12, 13 has logged out or logged in. In addition, the access management apparatus 20 has a user storage unit 22 for storing access data 41 for a user, such as username, password, two-dimensional code, in particular bar code, or biometric data, in particular a fingerprint, etc. In addition, the access management apparatus 20 has a user access eligibility storage unit 23 for storing the user access eligibility grades 42, which are assigned to the individual users 5. In the present embodiment, the access management apparatus 20 is a server on which an electronic key for a predetermined user 5 assigned user access entitlement 42 are stored.
The central access management apparatus 20 and the tool system user interfaces 11, 12, 13, 14 and / or the tool system controllers 110, 120, 130, 140 exchange data 40 by means of the OPC protocol. With the OPC protocol, a data exchange between uses of different manufacturers of devices, such as sensors, controllers, etc. to the tool system 1 is guaranteed. The OPC protocol, in which OPC is an abbreviation for OLE for Process Control, based on a data communication standard of the OPC Foundation, which currently belongs to hundreds of manufacturers. The standard was first established in August 1996 in "specification version 1.10" and is used and disseminated by the OPC Foundation.The OPC Protocol currently uses the DCOM (Distributed Component Object Model) technology from Microsoft Corporation, USA, for communication between uses and devices.
In the present embodiment, the central access management apparatus 20 functions as an OPC server. In comparison, the tool system user interfaces 11, 12, 13, 14 and / or the tool system controllers 110, 120, 130, 140 in all cases function as OPC clients.
Thus, the tool system user interfaces 11, 12, 13, 14 and / or the tool system controllers 110, 120, 130, 140 in all cases support predetermined user access eligibility degrees 42. The operation of the interfaces 11, 12, 13, 14 and / or the controllers 110, 120, 130, 140 are configured on the basis of the user access eligibility degree 42 for the logged in user 5. In addition, configuration can be performed by means of the configuration devices 112, 122, 132, 142. In particular by programming, where data belonging to the central access management apparatus 20 can be read by the respective user interfaces 11, 12, 13, 14 and / or control device 110, 120, 130, 140, to determine the user 5, in particular his username and user accessibility 42. In addition, if a user 5 logs in or out at a user interface 11, 12, 13, 14 and / or at a control device 110, 120, 130, 140, the central access management device 20 can always send the data data 40 and / or notifications to the relevant and associated user interfaces 11, 12, 13, 14 and / or the control device 110, 120, 130, 140. When the user interfaces 11, 12, 13, 14 and / or the tool system control devices 110, 120, 130, 140 act as OPC client, the interfaces and devices may receive the notifications and / or data data 40 from the central access management device 20. From there, when the respective user interfaces 11, 12, 13, 14 and / or the respective tool system control device 110, 120, 130, 140 the user access entitlement degree 42 for the logged in user 5 and consequently the predetermined surface 113A, 123A, 133A, 143A is adapted to the corresponding display device 113, 123, 133, 143 .
Fig. 2 shows the above described in a flow chart for a method, which can be performed on the tool system 1.
Accordingly, after the start of the process, in a step S1, all the data required in the central access management apparatus 20 and / or the user interfaces 11, 12, 13, 14 and / or the control devices 110, 120, 130, 140 are stored to perform the the functions described above. Then the flow proceeds to a step S2.
At step S2, the configuration device configures the corresponding functions of the user interfaces 11, 12, 13, 14 and / or the control devices 110, 120, 130, 140. In this way it can be ensured that a user 5 after his login can only perform the functions of the user interfaces 11, 12, 13, 14 and / or of the control devices 110, 120, 130, 140, to which the user 5 is entitled. Then the flow proceeds to a step S3.
At step S3, it is checked whether the user 5 has logged in to the tool system 1.
The login can take place, for example, at one of the user interfaces 11, 12, 13, 14 for the control devices 110, 120, 130, 140. If the user 5 has logged in, the flow proceeds to a step S4. If no user 5 has logged in, the flow returns to step S1.
At step S4, the central access management apparatus 20 sends the data data 40 and possibly further notifications to the user interface 11, 12, 13, 14, at which the user 5 has logged in. An exchange of data 40 and possibly of further notifications thus takes place between the user interface 11, 12, 13, 14 and the central access management apparatus 20. Thereafter, the flow proceeds to a step S5. At step S5, it is preferably determined at the relevant user interface 11, 12, 13, 14, if the user 5 is provided for the tool system 1, i.e. if the user 5 can register with tool system 1, and if so, which user access eligibility degree 42 is assigned to him. Then the flow proceeds to a step S6.
At step S6, the configuration device configures the corresponding functions of the user interfaces 11, 12, 13, 14 and / or the control devices 110, 120, 130, 140 in such a way that the display device 113, 123, 133, 143 to the respective user interface 11, 12, 13, 14 indicates the predetermined area 113A, 123A, 133A, 143A, which is intended to be indicated for a user 5 with the user name 41 and the associated user access eligibility degree 42. As a result, the user 5 can use the functions of the tool 1 to which he is entitled. Then the flow proceeds to a step S7.
At step S7, it checks with respect to the user interface 11, 12, 13, 14 whether the user 5 is still logged in or whether he has already logged out. If the user 5 is still logged in to tool system 1, i.e. logged in, the flow goes to step S6, so that the already running message to the one concerning the display device 113, 123, 133, 143 is not interrupted. However, if the user 5 is already logged out, the flow returns to step S1.
The process is terminated when the tool system 1 or the user interfaces 11, 12, 13, 14 or the access management apparatus 20 are switched off.
Depending on the need, the flow after step S7 can also return directly to step S3 instead of returning to step S1. Steps S1 and S2 can in this case be called by a separate routine. The method can also be performed in another way than previously described, as long as the above-described functions of the tool 1 are given.
Fig. 3 shows a tool system 2 according to a second embodiment. The tool system 2 according to the present exemplary embodiment is constructed in substantially the same way as the tool system 1 according to the first exemplary embodiment. 11 However, in contrast to the first exemplary embodiment, in the tool system 2 according to the present exemplary embodiment, the communication device 111 has a connection to a reading apparatus 51; the communication device 121 has a connection to a reading apparatus 52; the communication device 131 has a connection to a reading device 53 and the communication device 141 has a connection to a reading device 54.
The reading apparatus 51, 52, 53, 54 may, for example, be designed as optical reading apparatus.
In this case, biometric data, in particular a fingerprint and / or an iris in an eye, and / or other data, such as a code, such as a bar code, an arbitrary two-dimensional or three-dimensional code, etc. can be read in as access data 41.
The data data read by the reading devices 51, 52, 53, 54 for a user 5 can be compared with the data data which are stored in the central access management apparatus 20. For this purpose it transmits data 45 with the access data 41 to the access management apparatus 20 regarding the communication device 111, 121, 131, 141. , whereupon the access management apparatus 20 sends data 50 with the user access rating 42 for the user 5 to the respective user interfaces 11, 12, 13, 14 and / or control devices 110, 120, 130, 140, to determine the user name and / or user rating 42 for the user 5.
The determination can here be carried out either on the side of the user interfaces 11, 12, 13, 14 or also carried out by the access management apparatus 20.
The tool system 2 is executed according to the present embodiment by means of LDAP queries (LDAP-queries; LDAP = Lightweight Directory Access Protocol), to identify or determine, which user access eligibility degree 42 applies to the logged-in user 5. As before, the corresponding the user access level 42 for the user 5 with the display device 113, 123, 133, 143 with respect to the predetermined surface 113A, 123A, 133A, 143A is indicated. LDAP is a protocol for the use of network technology and enables the reading and modification of information by a list service (a hierarchical database distributed in the network) via an Internet protocol network. From such a list, object-related data, such as user access eligibility degree 42 for the logged-in user 5, can be read out. In this case, the client formulates, for example after initiation by logging in the user 5, an LDAP question to the list, which provides the user access entitlement 42 for the logged in user 5. The list formulates the answer and communicates it to the client.
Accordingly, authentication in the present embodiment is performed by the respective reading apparatus 51, 52, 53, 54 by the user 5, in particular by means of fingerprints or iris reading, and a corresponding notification is given for a continuous use. The current use is, for example, the user interfaces 11, 12, 13, 14, to which the reading device 51, 52, 53, 54 used by the user 5 is connected. With respect to user interfaces 11, 12, 13, 14, the degree of user access eligibility 42 is obtained from the request of an active directory server as access management device 20. The active data list server and the access management device 20, respectively, will have as many user groups as the stored number of users. user access eligibility degrees 42 in the user interfaces 11, 12, 13, 14 and / or in the control devices 110, 120, 130, 140.
As in the first embodiment, each user is assigned one of the user access eligibility degrees 42.
Otherwise, the present embodiment is constructed in the same manner as that described with respect to the first embodiment. Thus, even with tool system 2, the current safety measures can be fulfilled at the tool system 2 with high flexibility and little effort.
All of the above-described configurations of the tool system 1, 2 with associated tool system user interfaces 11, 12, 13, 14, tool system controllers 110, 120, 130, 140, the access management apparatus 20 and the method may find use separately or in all possible combinations. In particular, all the criteria and / or functions of the embodiments described above can be arbitrarily combined. In addition, the following modifications in particular are conceivable. The parts shown in the figures are schematically represented and may in the exact design deviate from the shapes shown in the figures, as long as the functions described above are guaranteed.
The communication connections 31, 32, 33, 34 can also be designed as a communication bus, in particular a local area network (LAN) and so on.
The number of tool system user interfaces 11, 12, 13, 14 is arbitrarily selectable. In addition, the number of tool system controllers 110, 120, 130, 140 is arbitrarily selectable. In particular, one or more tool system user interfaces 11, 12, 13, 14 may also control more than one of the control devices 110, 120, 130, 140.
权利要求:
Claims (10)
[1]
Tool system user interface (11; 12; 13; 14) for a tool system (1) with at least two tool system controllers (110, 120, 130, 140), with a communication device (111; 121; 131; 141) for exchange of data (40) with an access management apparatus (20), for determining on the basis of data (40) a user access entitlement (42) associated with a user (5) for the tool system user interface (11; 12; 13; 14), and a display device (113; 123; 133; 143) for indicating a predetermined area based on the determined degree of user accessibility (42).
[2]
The tool system user interface (11; 12; 13; 14) according to claim 1, wherein the communication device (111; 121; 131; 141) is configured so that when logging in a user (5) to the tool system user interface (11; 12; 13; 14) the user name (41) and the degree of user access eligibility (42) are received by the access management apparatus (20) as data (40), and / or wherein the communication device (111; 121; 131; 141) is configured to exchange data (40) via the OPC communication protocol, and / or wherein the tool system user interface (11; 12; 13; 14) is designed as an OPC client and the access management device (20) as an OPC server, and / or wherein the communication device (111; 121; 131; 141 ) is configured to receive a message from the access management device (20), when the user (5) logs in and out.
[3]
The tool system user interface (11; 12; 13; 14) of claim 1, wherein the communication device (111: 121; 131; 141) requests data (40) via LDAP query from the access management device (20), and / or wherein the communication device ( 111: 121; 131; 141) is configured to send a message to the access management device (20), when a user (5) logs in or out.
[4]
Tool system user interface (11; 12; 13; 14) according to any one of the preceding claims, in addition with a configuration device (112; 122; 132; 142) for configuring the functions of the tool system user interface (11; 12; 13; 14 ) and / or the at least two tool system controllers (110, 120, 130, 140) based on the user access eligibility degree (42) for one in a tool system user interface (11; 12; 13; 14) and / or in one of the at least two logged in user tools (110, 120, 130, 140).
[5]
A tool system user interface (11; 12; 13; 14) according to any preceding claim, wherein each tool system user interface (11; 12; 13; 14) is assigned to one of the at least two tool system controllers (110, 120, 130). , 140).
[6]
A tool system (1) having at least two tool system controllers (110, 120, 130, 140), at least one tool system user interface (11; 12; 13; 14) according to any one of the preceding claims, and an access management apparatus (20), wherein data (40) is stored with respect to access eligibility for a user (5) for use of one of the at least two tool system controllers (110, 120, 130, 140) by means of one of the at least one tool system user interface (11). ; 12; 13; 14), wherein the access management apparatus (20) is configured to exchange data (40) with the communication device (111; 121; 131; 141) to the tool system user interface (11; 12; 13; 14).
[7]
A tool system (1) according to claim 6, wherein the access management apparatus (20) is a server on which an electronic key for a predetermined user (5) and a user access eligibility degree (42) assigned to the predetermined user (5) are stored, or wherein the access management apparatus (20) is an active data list server, on which a user access eligibility degree (42) assigned to the predetermined user (5) is stored.
[8]
A tool system (1) according to claim 6 or 7, wherein it is determined in the access management apparatus (20), what data data (40) of the access management apparatus (20) can be read by the communication device (111; 121; 131; 141) of the Tool System user interface (11; 12; 13; 14). 16
[9]
A tool system according to any one of the preceding claims, wherein the data data (40) for accessing the at least one tool system user interface (11; 12; 13; 14) is a username and a password or has biometric data or is data of an electronic key system.
[10]
Method for a tool system (1) with at least two tool system-control nodes (110, 120, 130, 140), with steps exchange (S4), with a communication device (111; 121, 131; 141), of data data (40 ) with an access management apparatus (20), for determining on the basis of the data data (40) a user access entitlement (42) associated with a user (5) for the tool system user interface (11; 12; 13; 14), and indication (S6), with a display device (113; 123; 133; 143), of a predetermined area based on the determined degree of user access eligibility (42).
类似技术:
公开号 | 公开日 | 专利标题
US9542139B2|2017-01-10|Network printing system having a print server and a logon server
IL265941D0|2019-05-30|Automatic provisioning of iot devices
JP6307393B2|2018-04-04|Distributed events in access control systems
US7738504B1|2010-06-15|Method of establishing and updating master node in computer network
JP6974218B2|2021-12-01|Storage system and its operation method
EP3535942B1|2021-08-11|Iot device authentication
CN109428922B|2020-09-08|Subscription and publishing method and server
KR20180051409A|2018-05-16|Management system and control method
US9043053B2|2015-05-26|Aircraft information management system
RU2763779C2|2022-01-11|System and computer-implemented method of machine-to-machine authentication of the device
SE1550731A1|2015-12-14|Tool system user interface and method for a tool system with at least two tool system controls
WO2013171865A1|2013-11-21|Management method and management system
EP3171272A1|2017-05-24|Identification of cross-interference between workloads in compute-node clusters
JP6168079B2|2017-07-26|Printing system, printing device search program, and recording medium
EP2940587A1|2015-11-04|Computer, control device for computer system, and recording medium
CN107888517B|2020-08-14|Method and equipment for domain planning of host
CN112564928A|2021-03-26|Service classification method and equipment and Internet system
WO2014113716A2|2014-07-24|Device driver detection and management system
US20210288884A1|2021-09-16|Fingerprint determination for network mapping
CN105426429B|2019-03-26|Data processing method, induction element data processing equipment, data processing system
US20140280850A1|2014-09-18|Collaborative State Machine Management
US10609013B2|2020-03-31|Twin factor authentication for controller
US20130104215A1|2013-04-25|System and method for managing network devices
JP2007249650A|2007-09-27|Distribution method for installation information
Cong2014|Stabilising switching law to minimise return ratio with two linear planar subsystems
同族专利:
公开号 | 公开日
DE102014224848A1|2015-12-17|
引用文献:
公开号 | 申请日 | 公开日 | 申请人 | 专利标题

DE102019119359A1|2019-07-17|2021-01-21|Gebr. Heller Maschinenfabrik Gmbh|Machine tool with adjustable control unit|
法律状态:
优先权:
申请号 | 申请日 | 专利标题
DE102014211300|2014-06-13|
DE102014224848.5A|DE102014224848A1|2014-06-13|2014-12-04|Tool system user interface and method for a tool system having at least two tool system controllers|
[返回顶部]