Integration with physical access control systems
Many organizations have deployed multiple access control systems (both physical and logical) at one or multiple locations and it is not unusual to have multiple administrators managing each system independently. Users also have to maintain multiple ID cards, passwords and pin codes in order to get access to different system or locations. An Identity Management System could be used to help maintain multiple identities/profiles for each user, but it gets quite complex and expensive as the number of independent systems and number of users grows. There is a much simpler yet more secure solution - integrate multiple access control systems by combining user identification into a single, reliable and convenient authentication method throughout the whole organization. This opens new opportunities for:
- "Cross-system" access control to combine physical and logical access - for example, a user is not allowed to access the corporate network until physically present inside the location (cleared through a secured door );
- Restriction on leaving a specific physical location based on the current conditions of access to the network: for example users might be prevented from leaving the computer room while their terminal session is still in progress;
- Consolidating reports for logical and physical security events;
- Centralized and integrated administration of both company employees and guests.
MatchLogon supports a variety of technologies to implement consolidated user identification, including biometrics and multi-factor authentication. Different authentication methods can be "mixed and matched" at different locations depending on the security policies, cost or other factors.
|