Dispelling myths from the past

Access & Identity Management Handbook 2012 Access Control & Identity Management

Gary Chalmers asks if the access control playing field has changed.

Access control has always been a key priority for business. Securing premises, people, possessions and property (the intellectual kind especially) is a non-negotiable requirement that companies overlook at their peril, a requirement around which an entire business sector has grown.

But has the playing field changed? Are the myths of the past holding back the solutions of the future, allowing unscrupulous market players to drive ageing products out to uneducated consumers? The answer to these questions, I believe, is a loud and resounding Yes.

Biometrics is a relatively new player on the security scene, and many people do not realise that the initial systems had significant weaknesses which, when combined with the legacy systems in place, resulted in today’s overly complex solutions.

Originally, security systems were designed around card-based readers, where the intelligence lay in the back-end controller. The better systems linked card readers to controllers in the ceiling which acted as a kind of digital doorman. Requests from readers are passed to the controller, which in turn passes these requests on to the server for verification. The server’s response is returned to the controller which, depending on the result received, would send the signal that releases the door. This meant that taking the card reader off the wall and trying to short circuit the cables had no effect whatsoever on the release of the door – you would need to have a ceiling breach in order to reach the cables that actually triggered the release signal.

When biometric readers first came onto the scene, their communication in a standalone mode was a direct, unsecured electrical pulse sent directly to the relay itself. The little-known yet terrifying flaw in this design is that you can bypass the average biometric device by removing it from the wall and shorting out the correct lines on the signal wire.

To avoid this situation, most security companies use biometric readers as nothing more than fancy card readers. Sitting behind the biometric reader is a connection to a controller in the ceiling, which still talks to a back-end, centralised system, and then sends a signal to the door to release based on the rules in its database.

The biometric reader is, in this case, a dumb terminal that resolves a fingerprint to an identity and sends a card number to the controller using a standard communication protocol called Wiegand.

The issue with this type of design is that it is mostly just smoke and mirrors: using old technology with a new front end to convince customers it is a modern solution. The result is a costly, highly complex solution which has multiple points of failure and requires high-value service level agreements and skilled personnel to maintain.

Modern solutions

With the advances in many biometric systems today, the need for this whole back-end system – and the separate door controllers – is completely redundant. Myth debunked.

Most modern readers have secure, encrypted communications to the relays while running the intelligence they need to deny or grant access internally, only using a back-end database for complex instructions when required. Many companies will tell you that not using a back-end controller means a lack of control, inability to do accurate anti-passback, and reduced security overall.

The truth, however, could not be further from this myth. All the features of the older systems are available with most of the new biometric systems, but without any of the additional overhead in terms of cost or maintenance. By removing the back-end system and the controllers from the equation, products are able to provide a significantly lower cost-per-door than the legacy systems, which is the true comparison a user should be making.

Many companies make the mistake of comparing one biometric reader’s price to another, without understanding that while the more intelligent readers may be similarly priced, or even more expensive than older technology, the overall cost per door is significantly reduced when you factor in the additional costs of the controllers and the back-end system on the legacy product.

Next generation biometric products offer simplicity over legacy systems, which translates to significant cost savings on purchase, support and maintenance of the system. In addition to this, the simplicity of use from an internal maintenance point of view results in system performance increases.

There is simply no reason anymore to tie an organisation into a single legacy system which has a limited life span, despite what the guys in the designer suits say.

For more information contact iPulse, 0860 IPULSE, [email protected], www.ipulse.co.za



Credit(s)




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

The future of security: intelligent automation
Access Control & Identity Management AI & Data Analytics IoT & Automation
As the security landscape evolves, businesses are no longer looking for stand-alone solutions, they want connected, intelligent systems that automate, streamline, and protect.

Read more...
Smart automation is changing security
SA Technologies IntelliGuard Access Control & Identity Management
Security has come a long way from manual check-ins, logbooks, and standalone surveillance cameras. With the rise of intelligent automation, security is now faster, smarter, and more connected than ever.

Read more...
The future of security in South Africa
ATG Digital Access Control & Identity Management
Security technology is evolving rapidly, but is local innovation keeping pace? Some global players recognise the potential of South African products for international markets, but can our manufacturers and service providers thrive without external support?

Read more...
Integration enhances estate access control
Access Control & Identity Management
With one-third of residential burglaries starting at the front door, the continued seamless integration of Glovent’s estate management platform with Impro access control software is welcome news for estates.

Read more...
T&A in South Africa’s retail sector
ERS Biometrics Access Control & Identity Management
Using existing systems, ERSBio provides a practical and more cost-effective way for businesses to manage operations, reduce payroll mistakes, and enhance overall efficiency through innovative T&A processes.

Read more...
Navigating the complexities of privileged access management
Editor's Choice Access Control & Identity Management
Privileged Access Management and Identity Access Management are critical pillars of modern cybersecurity, designed to secure access to sensitive resources, enforce principles like least privilege, and implement just-in-time access controls.

Read more...
Paxton opens second experience centre
Paxton News & Events Access Control & Identity Management
Security technology manufacturer, Paxton, has opened a new experience centre in Cape Town on 12 February in partnership with its exclusive distributors, Reditron and Regal Security.

Read more...
DoorBell with built-in AI
Ajax Systems Access Control & Identity Management Products & Solutions Smart Home Automation
Ajax Systems has announced the release of Ajax DoorBell, which features built-in AI, an IR sensor, and app control, seamlessly integrating into the Ajax ecosystem to ensure efficiency and security confidence.

Read more...
Physical security evolving beyond security teams
ATG Digital Access Control & Identity Management
The landscape of physical security is undergoing a major shift. Traditionally, selecting access control and visitor management solutions fell squarely on the shoulders of security professionals, but today includes legal, IT, technical operations and more.

Read more...
A passwordless future?
Access Control & Identity Management
The digital landscape is evolving rapidly, and with it comes the urgent need for more secure authentication methods. Passwords, once the cornerstone of online security, are now easy targets for cybercriminals.

Read more...