Access control readers - Expert commentary

The EU called for a ban on police use of facial recognition but not commercial use. Why?
The EU called for a ban on police use of facial recognition but not commercial use. Why?

Recently, the European Parliament called for a ban on police use of facial recognition. In the US, too, some cities have restricted police use of facial recognition. The first question that comes to mind is - why ban police from using technology that is allowed to private companies? Point of difference The key difference between the way police use facial recognition and the way commercial facial recognition products work is that: The police get a picture of a suspect from a crime scene and want to find out: "Who is the person in the picture?" That requires as wide a database as possible. Optimally - photos and identities of all the people in the world. Commercial facial recognition products such as those used by supermarkets, football stadiums, or casinos answer different questions: "Is the person in the picture on the employees' list? Is the person in the picture on a watch-list of known shoplifters?" To answer these questions doesn't require a broad database but rather a defined list of employees or a watch-list of specific people against whom there is an arrest warrant or a restraining order. Use of facial recognition AnyVision helps organisations leverage facial recognition ethically to identify known persons of interest "Facial Recognition Apps Should Be Provided to the Police with an Empty Database". This is exactly the subject of the open letter sent by AnyVision, to the British Biometrics and Surveillance Camera Commissioner, Prof. Fraser Sampson, titled: "Facial Recognition Apps Should Be Provided to the Police with an Empty Database". AnyVision recently raised $235M from Softbank and another leading VCs is a visual AI platform company that helps organisations across the globe leverage facial recognition ethically to identify known persons of interest, including shoplifters, felons, and security threats. Ethical use of facial recognition AnyVision CEO Avi Golan wrote, "The ethical use of facial recognition is a thorny one and requires a nuanced discussion. Part of that discussion has to explain how facial recognition works, but, just as important, the discussion must also involve how the technology is used by police departments and what checks and balances are built into their processes.” “We recommend building their watchlists from the ground up based on known felons, persons of interest, and missing persons. Some facial recognition solution providers have scrapped billions of photos and identities of people from social networks, usually without their consent." "Unfortunately, this method of facial recognition has justifiably angered privacy groups and data protection agencies around the globe and damaged the public trust in accuracy and reliability of facial recognition systems.” Preventing invasion of citizen’s privacy We believe an unjustified invasion of citizens' privacy can be prevented, false arrests can be reduced" “We believe that lists of suspects should be limited and justified. In this way, unjustified invasion of citizens' privacy can be prevented, false arrests can be reduced and public confidence in technology can be increased.” Golan added: "AnyVision is willing to share its industry insights and best practices from our vast research experience with leading global players, including name-brand retailers, global hospitality and entertainment companies, and law enforcement agencies from around the world.” Balancing public order and crime prevention “If the regulations set forth by Surveillance Camera Code of Practice are committed to the principles outlined above, then law enforcement agencies can strike the right balance between the need to maintain public order and prevent crime with the rights of every person to privacy and non-discrimination before the law." Recently Clearview AI CEO told Wired; the company has scraped 10 billion photos from the web - 3 times more than was previously known.

Access the right areas - Making a smart home genius with biometrics
Access the right areas - Making a smart home genius with biometrics

Household adoption of smart home systems currently sits at 12.1% and is set to grow to 21.4% by 2025, expanding the market from US$ 78.3 billion to US$ 135 billion, in the same period. Although closely linked to the growth of connectivity technologies, including 5G, tech-savvy consumers are also recognising the benefits of next-generation security systems, to protect and secure their domestic lives. Biometric technologies are already commonplace in our smartphones, PCs and payment cards, enhancing security without compromising convenience. Consequently, manufacturers and developers are taking note of biometric solutions, as a way of levelling-up their smart home solutions. Biometrics offer enhanced security As with any home, security starts at the front door and the first opportunity for biometrics to make a smart home genius lies within the smart lock. Why? Relying on inconvenient unsecure PINs and codes takes the ‘smart’ out of smart locks. As the number of connected systems in our homes increase, we cannot expect consumers to create, remember and use an ever-expanding list of unique passwords and PINs. Indeed, 60% of consumers feel they have too many to remember and the number can be as high as 85 for all personal and private accounts. Biometric solutions strengthen home access control Biometric solutions have a real opportunity to strengthen the security and convenience of home access control Doing this risks consumers becoming apathetic with security, as 41% of consumers admit to re-using the same password or introducing simple minor variations, increasing the risk of hacks and breaches from weak or stolen passwords. Furthermore, continually updating and refreshing passwords, and PINs is unappealing and inconvenient. Consequently, biometric solutions have a real opportunity to strengthen the security and convenience of home access control. Positives of on-device biometric storage Biometric authentication, such as fingerprint recognition uses personally identifiable information, which is stored securely on-device. By using on-device biometric storage, manufacturers are supporting the 38% of consumers, who are worried about privacy and biometrics, and potentially winning over the 17% of people, who don’t use smart home devices for this very reason. Compared to conventional security, such as passwords, PINs or even keys, which can be spoofed, stolen, forgotten or lost, biometrics is difficult to hack and near impossible to spoof. Consequently, homes secured with biometric smart locks are made safer in a significantly more seamless and convenient way for the user. Biometric smart locks Physical access in our domestic lives doesn’t end at the front door with smart locks. Biometrics has endless opportunities to ease our daily lives, replacing passwords and PINs in all devices. Biometric smart locks provide personalised access control to sensitive and hazardous areas, such as medicine cabinets, kitchen drawers, safes, kitchen appliances and bike locks. They offer effective security with a touch or glance. Multi-tenanted sites, such as apartment blocks and student halls, can also become smarter and more secure. With hundreds of people occupying the same building, maintaining high levels of security is the responsibility for every individual occupant. Biometric smart locks limit entry to authorised tenants and eliminate the impact of lost or stolen keys, and passcodes. Furthermore, there’s no need for costly lock replacements and when people leave the building permanently, their data is easily removed from the device. Authorised building access Like biometric smart locks in general, the benefits extend beyond the front door Like biometric smart locks in general, the benefits extend beyond the front door, but also throughout the entire building, such as washing rooms, mail rooms, bike rooms and community spaces, such as gyms. Different people might have different levels of access to these areas, depending on their contracts, creating an access control headache. But, by having biometric smart locks, security teams can ensure that only authorised people have access to the right combination of rooms and areas. Convenience of biometric access cards Additionally, if building owners have options. The biometric sensors can be integrated into the doors themselves, thereby allowing users to touch the sensor, to unlock the door and enter. Furthermore, the latest technology allows biometric access cards to be used. This embeds the sensor into a contactless keycard, allowing the user to place their thumb on the sensor and tap the card to unlock the door. This may be preferable in circumstances where contactless keycards are already in use and can be upgraded. Smarter and seamless security In tandem with the growth of the smart home ecosystem, biometrics has real potential to enhance our daily lives, by delivering smarter, seamless and more convenient security. Significant innovation has made biometrics access control faster, more accurate and secure. Furthermore, today’s sensors are durable and energy efficient. With the capacity for over 10 million touches and ultra-low power consumption, smart home system developers no longer have to worry about added power demands. As consumers continue to invest in their homes and explore new ways to secure and access them, biometrics offers a golden opportunity for market players, to differentiate and make smart homes even smarter.

Open Supervised Device Protocol (OSDP) – what you need to know about modern and future proof access control security?
Open Supervised Device Protocol (OSDP) – what you need to know about modern and future proof access control security?

Access control and management of trusted identities are the building blocks of security, safety, and site management policies for many businesses and organisations. The current pandemic has compounded this with the introduction of new policies and regulations, particularly around social distancing and contact tracing. Most organisations will have some form of legacy access control in place, ranging from the most simplistic options, such as locks and keys, to technology-based systems. The issue with legacy systems of any type is that risks, just like technology, evolve. What was secure, convenient, and efficient a few years ago is often found wanting as the threat landscape changes. The standards governing the development and testing of physical access control systems (PACS) have also evolved to improve security and product interoperability. An example is the Open Supervised Device Protocol (OSDP), introduced 10 years ago as an alternative to the antiquated and vulnerable Clock-and-Data and Wiegand protocols. However, when it comes to planning infrastructure upgrades or implementing new tools, businesses must carry out due diligence to ensure the solutions are future-proof and deliver the expected level of security. Vulnerabilities and challenges In the early 1980s, Clock-and-Data and Wiegand protocols were widely adopted as the de-facto standard for interoperability between access control readers and physical access controllers. Those de-facto standards were later formalised and adopted into industry standards by the Security Industry Association in the 1990s. Wiegand is unencrypted and unable to protect from “man in the middle” attacks and vulnerabilities  There were weaknesses, though, Wiegand is unencrypted and unable to protect from “man in the middle” attacks and vulnerabilities from the reader to the controller. Not only that, but Wiegand delivers limited range options and is operationally inefficient. It is also easy to target via its learnable language and a host of hacking devices available via online sources. Furthermore, the retrofitting installation alongside a legacy system is complicated for integrators and expensive for organisations, as most readers require dedicated home-run wiring. Extensive wiring on a large-scale project, such as a school or corporate campus, results in considerable — often prohibitive — costs for the installation of a PACS. Legacy access control protocol Despite the well-publicised vulnerabilities and weaknesses, Wiegand is still one of the most common protocols in legacy access control, with estimates indicating it is used in more than 90 percent of installed systems. This not only presents issues about physical security but also raises concerns relating to the protection of personal data. Access control systems not only contain information about who can and cannot use certain doors. OSDP is a communication standard Modern systems include a wide range of personal data, ranging from qualifications and certifications of individuals, home contact details, and even medical conditions or HR and employment information. With the potential fines associated with GDPR breaches, companies need to take this concern seriously. These weaknesses pushed the security industry to adopt a new protocol: Open Supervised Device Protocol (OSDP). This access control communications standard was developed by Mercury Security (now part of HID Global) and HID Global in 2008, and donated, free of intellectual property, to the Security Industry Association (SIA) to improve interoperability among access control and security products. Since then, it has been adopted as a standard by SIA, becoming the first secure, bidirectional reader/controller protocol to be governed by a major standards body in the security industry. In 2020 OSDP reached an additional milestone in becoming an International Electrotechnical Commission (IEC) standard. Why implement OSDP as a standard? OSDP is the only protocol that is secure and open for communication between readers and controllers The growth of networked devices, such as video and access control products, has led to an increased demand for converged solutions. Businesses and organisations recognise the value of implementing an integrated solution to enhance security and add value to technology investment. OSDP is the only protocol that is secure and open for communication between readers and controllers and is also being widely adopted by industry-leading reader and controller manufacturers. It is an evolving, ‘living standard,’ making it a safer, more robust, future-proof option for governing physical access control systems. OSDP offers important benefits: 1) Increased security Implementing OSDP standards can increase security, as OSDP with Secure Channel Protocol (SCP) supports AES-128 encryption that is required in U.S. federal government applications. Additionally, OSDP constantly monitors wiring to protect against tampering, removing the guesswork since the encryption and authentication are predefined. 2) Bidirectional communication Early on, communication protocols such as Wiegand were unidirectional, with external card readers sending information one way to a centralized access control platform. OSDP has transformed the ability for information to be collected, shared, and acted upon with the addition of bidirectional communication for configuration, status monitoring, tampering, and malfunction detection, and other valuable functions. In fact, OSDP is the only open, non-proprietary, bidirectional, secure protocol for communication between card reader and physical access controller. 3) Open and interoperable OSDP adds new technology that enhances its ability to protect incoming and outgoing data collection OSDP supports IP communications and point-to-point serial interfaces, enabling customers to flexibly enhance system functionality as needs change and new threats emerge. They also can proactively add new technology that enhances their ability to protect incoming and outgoing data collection through a physical access control system. 4) Reduced installation costs OSDP’s use of two wires (as compared to a potential of 11 wires with Wiegand) allows for multi-drop installation, supervised connections to indicate reader malfunctions, and scalability to connect more field devices. Daisy-chaining accommodates many readers connected to a single controller, eliminating the need to run home-run wiring for each reader, and the use of a four-conductor cable achieves up to 10x longer distances between reader and controller than Wiegand while also powering the reader and sending/receiving data. 5) User friendly OSDP gives credential holders greater ease of use, with audio and visual feedback such as coloured lights, audible beeps, and the ability to display alerts on the reader. For security administrators, managing and servicing OSDP-enabled readers also becomes increasingly convenient, as OSDP-enabled readers can be remotely configured from network-connected locations. Users can poll and query readers from a central location, eliminating the cost and time to physically visit and diagnose malfunctioning devices. Unlimited application enhancements OSDP streamlines installations and upgrades while saving organisations the expense of replacing readers  OSDP supports advanced smartcard technology applications, including PKI/FICAM and biometrics, and other enhanced authentication protocols used in applications that require Federal Information Processing Standards (FIPS) compliance and interactive terminal capabilities. Audio-visual user feedback mechanisms provide a rich, user-centric access control environment. OSDP offers advantages for users, administrators, and integrators, alike. It adds security and real-world efficiencies, and its interoperability ensures that organisations can use systems from numerous manufacturers as they invest in infrastructure that maximises the protection of critical data. For our part, HID Global’s range of HID Signo readers is OSDP verified, ensuring they offer the intended interoperability and security for secure bidirectional communication and provide an easy migration from Wiegand devices. In a campus environment, OSDP streamlines installations and upgrades while saving organisations the expense of replacing readers if a new access control solution is implemented. There are also service and maintenance benefits as OSDP encourages continuous monitoring of system uptime and allows for remote configuration of -- or upgrades to -- a reader. Cost savings upon system upgrade Integrators can also capitalise on the introduction of OSDP by encouraging open standards, which can, in turn, help them build new customer relationships and win more projects. Although upgrading to access control systems that adhere to OSDP standards is a significant initiative, the range of benefits outweighs the cost of upgrading. Increased security coupled with business efficiencies adds value for those administering the system and a high level of interoperability ensures users can deploy systems from numerous third-party manufacturers. Integrators who understand the benefits of OSDP can also help their customers support both current and future technology requirements. When a site’s needs change, OSDP offers significant cost savings as the open functionality makes adding new devices easier and reduces the expense of requiring all readers to be replaced if a new solution is installed. Businesses and organisations transitioning to OSDP will also enhance value in terms of operational costs such as servicing and maintenance.

Latest Keyscan Inc. news

Altronix showcases Trove Access and Power Integration Solutions at ISC West 2018
Altronix showcases Trove Access and Power Integration Solutions at ISC West 2018

Altronix, a manufacturer of power and data transmission products for the professional security industry, is showcasing a host of new Trove Access and Power Integration Solutions here at ISC West 2018 (booth #11073). Trove easily combines Altronix power with access controllers from the industry’s leading manufacturers. DMP, ProdataKey (PDK), Sielox, and ZKTeco USA now join Altronix’s extensive list of access control manufacturers to capitalise on the benefits that Trove solutions deliver. “Trove is engineered to help system designers easily layout power supplies, access controllers and accessories in an organised streamlined manner, which saves time, reduces costs and conserves valuable space,” said Alan Forman, President, Altronix Corporation. “We are pleased to collaborate with the industry’s leading access manufacturers, increasing ROI and providing value-added features for our mutual customers.”Removable backplanes designed for specific access control brands allow installers to easily configure and test system configurations Simplifying security deployments Trove Access and Power Integration Solutions simplify board layout and wire management, while providing extreme flexibility and scalability when designing and deploying access systems. Removable backplanes designed for specific access control brands allow installers to easily configure and test system configurations prior to on-site installation, reducing time and labour and increasing profitability. In addition to the Trove1 and Trove2 Series, Altronix introduced Trove3 for the largest access control deployments. Altronix Trove now supports over 40 brands, including: AMAG, Bosch, CDVI, DMP, Genetec, HID, Honeywell, Kantech, Keyscan, Lenel, Mercury, ProdataKey (PDK), Sielox, Software House and ZKTeco USA with more to come. Trove enclosures include a cam lock, tamper switch, mounting hardware, and provide ample room to accommodate back-up batteries. Altronix also offers a free Trove System Design Tool to further simplify the product selection and design process.

Altronix demonstrates Trove Access and Power Integration Solutions at ASIS 2017
Altronix demonstrates Trove Access and Power Integration Solutions at ASIS 2017

Altronix, a recognised provider of power and transmission solutions for the professional security industry, is featuring its expanded offering of Trove Access and Power Integration Solutions at ASIS 2017 (booth # 2823). New additions to the Trove series include Altronix integrations with Bosch, DMP, Honeywell, Kantech and Sielox access. These new models join the versatile line of Trove solutions which accommodate AMAG, CDVI, HID/Vertx, KABA/KeyScan, Mercury and Software House access controllers. “Trove enclosures and backplanes simplify board layout and wire management, greatly reducing installation and labor costs, while providing the versatility and scalability that system designers and installers require to easily configure their systems.” said Alan Forman, President, Altronix Corporation. Enhanced performance efficiency Trove2 Access and Power Integration Solutions are designed for larger applications, allowing Altronix power/accessories combined with access controllers from the industry’s leading manfacturers to be wired and pre-tested prior to on-site installation. This reduces total cost and enhances performance efficiency. Altronix also offers the Trove1 Access and Power Integration Solution, a more compact version of the Trove2 for smaller applications which accommodate CDVI, HID/VertX and Mercury access controllers. All Trove enclosures include a cam lock, tamper switch and mounting hardware. Altronix has further simplified the product selection and configuration process by offering a free online Trove System Design Tool for configuring a access system.

BioConnect and Suprema to showcase biometrics, security and identity innovations at ISC West 2017
BioConnect and Suprema to showcase biometrics, security and identity innovations at ISC West 2017

The new FaceStation 2 is a contactless facial recognition device with an adjustable wall bracket  BioConnect and Suprema will be at ISC West 2017 demonstrating the newest innovations in biometrics, security and identity in booth no. 22075. New facial recognition, dual-factor cabinet lock, cybersecurity and mobile solutions will be demonstrated in the joint booth.  With cybersecurity issues seemingly ever-more prevalent and the development of more user-friendly security solutions such as mobile and contactless biometric, security professionals are consistently seeking ways to protect both physical and logical applications. BioConnect and Suprema are pleased to address these issues with a focus on biometrics, security and identity at ISC West 2017 and invite security professionals to learn more. Suprema FaceStation 2 Suprema will debut the new FaceStation 2, a facial recognition device with multi-card support. The FaceStation 2 is the next generation of the FaceStation and as a contactless facial recognition device with an adjustable wall bracket to accommodate different heights, it is very user friendly. It boasts an incredibly fast and accurate matching speed (1:3,000 matches in one second) and captures both static and dynamic templates, giving it the ability to constantly evolve and sustain a more exact understanding of the daily changing expressions of the face. The device also offers multi-factor authentication options with a RF card (HID Seos, iClass, Prox) and PIN. It also can operate in much harsher lighting conditions than other competing facial recognition devices with an operating illuminance of up to 25,000 lux.  BioConnect ID CabinetShield BioConnect ID is at the core of every biometric service offered by BioConnect and simplifiesthe deployment of biometrics BioConnect colocation customers expressed the need to provide dual-factor authentication from the front door all the way to the cabinet to address both compliance and their customer security requirements. In the past, solutions to meet these requirements at the server cabinet were limited. To address this problem, BioConnect created BioConnect ID CabinetShield a dual-factor fingerprint plus card lock to secure server cabinets. With biometric (fingerprint) and card support, the lock is manufactured to fit most of the common cabinets and can be easily integrated with over 25 various access control solutions, making installation and enrolment much more simple and sustainable. The BioConnect team has completed multiple successful pilots of the solution in flagship data centers across North America. BioConnect ID Mobile With companies going global in footprint and supporting a workforce that is more mobile than ever, BioConnect’s partners are fast-developing solutions where mobile credentials are replacing plastic cards. BioConnect ID is at the core of every biometric service offered by BioConnect and simplifies the deployment of biometrics. BioConnect will debut BioConnect ID in the form of an API/SDK and mobile app to enable enterprises to take advantage of biometrics (face, voice, fingerprint, eyeprint) within their mobile app. BioConnect will be demonstrating partner mobile apps that are secured by BioConnect ID.  BioConnect ID Cybershield Suprema and BioConnect are consistently updating theirbiometric offerings to support evolving industry standards BioConnect and Suprema are very excited to debut BioConnect ID Cybershield, a complete end-to-end physical security solution that meets IT requirements. BioConnect ID Cybershield incorporates Suprema BioStation 2 fingerprint plus card access device integrated with leading access control solutions. It boasts software customisations that meet the requirements of network security, from how the device communicates to the panel, to the network, how the data is stored and can even support an enterprise transitioning to newer network protocols such as 802.1x and IPv6. The solution will be demonstrated with Software House CCURE 9000 access control.  BioConnect ID Enterprise BioConnect is consistently integrating the leading biometric solutions on the market to offer flexibility to grow in the future. BioConnect and Suprema will demonstrate how Suprema devices and BioConnect ID CabinetShield seamlessly integrate with Lenel OnGuard, Brivo OnAir, AMAG Symmetry, Genetec Security Center and Keyscan Aurora access control solutions with BioConnect ID Enterprise.  Suprema and BioConnect are also consistently updating their biometric offerings to support evolving industry standards such as communication protocols (such as OSDP) and card types such as HID iClass and SEOS. BioConnect and Suprema are looking forward to meeting with security professionals at ISC West. Attendees can request a meeting on BioConnect’s website or visit booth no. 22075 to see the latest biometric solutions on the market. 

Related white papers

Top 5 ways to ensure visitor safety and security

Moving to mobile: A guide for businesses switching to mobile access control

School security moves to the cloud