Securing your data centre

Issue 1 2021 Access Control & Identity Management

Data centres and IT facilities usually come in two flavours: off-site and in-house. However, in each case the common denominators are that an organisation’s data centre holds delicate and highly confidential information that requires the highest level of security. While today’s headlines are filled with hacking attempts to steal information off vulnerable networks and servers from remote locations, the threat of physical breaches into data centres is also real and requires a coordinated security strategy using a layered approach.

Whether the data centre is a remote, standalone facility or housed in a corporate location, it needs a protection plan that begins at the perimeter and moves to the building itself, then into the facility, the data centre or server room, and finally securing the cabinets and racks containing the wiring arrays and equipment. The security layers may feature perimeter barriers and surveillance, or secured entrances with high-level access control like mantraps and turnstiles, badging, multi-technology biometrics and analytics.

The size and shape of data centres varies according to the size of the organisations they serve, but each is the nerve centre of that company and prone to physical attacks. It is important to remember that many data centres are more than just information storehouses. The data centres contain essentials such as the wiring compartment room, which hosts the wiring infrastructure where network and systems alarms and firewalls are located, the computer/server room where the devices that perform the primary processing of a data centre are stored, and finally, the inner sanctum of the data centre, which is its data storage location.

While all of these areas are susceptible to remote virtual breaches, a physical breach into the data centre that destroys wiring infrastructure, or results in stolen servers or RAID drives, would be catastrophic for an organisation’s business health and operations.

Protecting data with access control

While physical security may not be the first thought in an environment of cloud computing and virtualisation, it should not be overlooked or underrated as a critical tool for cybersecurity. Controlling access to and within the building and its servers is critical to overall data centre security. By peeling away each layer within the building, the options available to help secure data centres are clear.

An immediate priority would be to limit access points into any facility housing a data centre, while keeping unencumbered exits required by fire codes. A high-security facility would require people entering the building to authenticate themselves a minimum of three times. Outer secured entrances to the facility could be a badge-in door with a buzzer or intercom system for guests. A sophisticated visitor management system would require guests to receive temporary access rights via mobile or RFID access cards tied to the access control system for tracking. In the case of a co-location facility, security revolving doors with anti-tailing sensor systems can be used.

Multi-factor authentication with any combination of face recognition, fingerprint, RF card and/or PIN is the best possible scenario. The access control system should allow for integration with video surveillance and have options for biometric authentication. Employing a level of flexibility in system design, differentiating authentication methods from the strict high-security access points to public areas with less restriction is an option. A high degree of separation and access must also be implemented, allowing access to only those who need it, and in the case of co-location, segmenting the rooms as much as possible.

The highest degree of security must be reserved for the data centre itself and it is here that a comprehensive anti-tailgating strategy is essential. Options include security revolvers (revolving doors) and personal interlocks tied into the building’s access control system. A security revolver may be equipped with a contact mat, scales (sensors to detect and prevent tailgating and piggybacking), or internal monitoring. A personal interlock or ‘mantrap’ would also work to prevent tailgating and piggybacking by only allowing one person through at a time.

Suprema recognises that your data centre is home to the most valuable assets of your company. Suprema’s latest biometric access control solutions are designed to meet stringent requirements from modern data centres. Combining the world’s leading biometric technology, distributed system topology, and integration with third-party solutions, Suprema provides the most secure physical access control solutions for data centres.

Suprema adheres to strict security standards:

Irreversible biometric template protection: Leakage of real fingerprint or facial images registered for authentication may pose a serious threat to security. Actual images are reorganised as binary templates through an advanced analysis algorithm which can never be reversed to a real live image.

Personal data protection: Protecting personal data from malicious attacks or leaks has never been more important. Suprema solutions are designed to safeguard all personal data including biometric credentials and any information that can be traced back to a user. All data is encrypted using AES 256, AES 128, DES/3DES before storing in the server, device or cards. Suprema’s web-based open security platform BioStar 2 also received ISO 27001 and 27701 certifications, satisfying international standards for data protection and management.

Communication protection against malware and data breaches: Communication protection using encryption and certificates is applied to all communications used in the system. Server to client communication is protected by HTTPS, which can use a trusted CA signed certificate. Between the server and device, all communications are encrypted using AES 256, which can be enhanced by using TLS 1.2. Serial communication through RS-485 is also encrypted using AES 128 under the requirement to secure all possible communications. These implementations result in a system where it can efficiently defend against malicious attacks and protect all sensitive data.

Physical protection of sensitive data on edge devices: All edge devices produced by Suprema support security tamper-proofing to protect stored data from physical threats. If any unauthorised attacker removes the device from the wall, all data and configurations stored will be deleted immediately.

Providing proof of compliance: All activity on the system is recorded from the moment of logging into the BioStar 2 platform. The operations are recorded as logs including information of time, object, and details of actions in the system.

Authentication for data access: The BioStar 2 platform faithfully reflects privacy protection and organisational operation requirements. Permission levels to access personal information can be divided up in various ways.


Credit(s)




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

What’s in store for PAM and IAM?
Access Control & Identity Management Information Security
Leostream predicts changes in Identity and Access Management (IAM) and Privileged Access Management (PAM) in the coming year, driven by evolving cybersecurity realities, hybridisation, AI, and more.

Read more...
Protecting citizens’ identities: a shared responsibility
Access Control & Identity Management
A blind spot in identity authentication today is still physical identity documents. Identity cards, passports, and driver’s licences, biometric or not, are broken, forged, or misused, fueling global trafficking networks and undermining public trust in institutions.

Read more...
The challenges of cybersecurity in access control
Technews Publishing SMART Security Solutions Access Control & Identity Management Information Security
SMART Security Solutions summarises the key points dealing with modern cyber risks facing access control systems, from Mercury Security’s white paper “Meeting the Challenges of Cybersecurity in Access Control: A Future-Ready Approach.”

Read more...
Access as a Service is inevitable
Technews Publishing SMART Security Solutions ATG Digital Access Control & Identity Management Infrastructure
When it comes to Access Control as a Service (ACaaS), most organisations (roughly 90% internationally) plan to move, or are in the process of moving to the cloud, but the majority of existing infrastructure (about 70%) remains on-premises for now.

Read more...
From surveillance to insight across Africa
neaMetrics TRASSIR - neaMetrics Distribution Access Control & Identity Management Surveillance Products & Solutions
TRASSIR is a global developer of intelligent video management and analytics solutions, delivering AI-driven platforms that enable organisations to monitor, analyse, and respond to events across complex physical environments.

Read more...
Securing your access hardware and software
SMART Security Solutions Technews Publishing RBH Access Technologies Access Control & Identity Management Information Security
Securing access control technology is critical for physical and digital security. Every interaction between readers, controllers, and host systems creates a potential attack point for those with nefarious intent.

Read more...
Access trends for 2026
Technews Publishing SMART Security Solutions RR Electronic Security Solutions Enkulu Technologies IDEMIA neaMetrics Editor's Choice Access Control & Identity Management Infrastructure
The access control and identity management industry has been the cornerstone of organisations of all sizes for decades. SMART Security Solutions asked local integrators and distributors about the primary trends in the access and identity market for 2026.

Read more...
Access data for business efficiency
Continuum Identity Editor's Choice Access Control & Identity Management AI & Data Analytics Facilities & Building Management
In all organisations, access systems are paramount to securing people, data, places, goods, and resources. Today, hybrid systems deliver significant added value to users at a much lower cost.

Read more...
Luxury residential access
Access Control & Identity Management Residential Estate (Industry)
Clifftown Shore is an exclusive collection of 51 luxury 1, 2 and 3-bedroom seafront apartments and penthouses set within a protected conservation park area, served by CAME’s XiP system and door entry system.

Read more...
From identity to insight
neaMetrics Access Control & Identity Management
Identity outlives technology. When it is trusted, it becomes a foundation for insight and scale. When it is not, every system built on it inherits the risk. Identity quality matters, at both human and system levels, and getting it right is what allows security to endure.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.