Guard All Security Symposium Identity and Access Management
The Complex Digital World
Welcome to the Identiverse Segments / Brands Product Offerings Applications ID Management Solutions Governmental credentialing Integrated security systems Payment systems Ticketing & transportation systems Multi-application card Enterprise-scale logical and physical access Consumer loyalty systems Transportation and payment systems NFC targeted marketing ID Products Physical / logical access readers Readers & terminals Smart inlays & transponders ASICs Transportation ticketing Loyalty, transportation and event tickets Animal / object tracking Pharmaceutical labels / ID s
Identity Markets Served by Identive People-Based Non-People-Based Citizen ID Employee ID Consumer ID Food & Animal ID Object & Pharma ID Integration & Services Software System Readers & Transponders
Government Agency Customers
Government Agency Customers
Government Agency Customers
Government Agency Customers
What We Do Identity and Credentials Authenticate Authorize Alarm Audit Text; Graphics Email; SMS; Video; Integration Print; Email User Mgmt Integration
Identity and Credentials UNDERSTANDING IDENTITY
What is Identity? We don t have a clue to his identity!
The Evolution of Identity Paper ID Photo ID Digital ID 1950 1980 2010 Implementation of identity proof evolves with technology
Identity Consolidation Facebook 401k Driver s License Payroll Twitter ebenefits Passport Assets Bank Credit/FICO Personal HR Certs IT Hirsch Physical IDMS Bio PACS #1 Convergence Active Directory VPN Parking PACS #2 Public/Private Cloud SSO Identive Group, Inc. 2012
CREDENTIALS and CREDENTIALING Identity and Credentials
What Type of Credential Level of Security Required Logistics of Issuance
Proximity Functional Was the gold standard Not secure in today s world Cost is same or more than new standards. Read-only
Contactless Smart Cards Very secure. Safety is the most important reason. Read/Write Capability Multiple applications on a single card. ISO 14443 Standards. Direction of education, government, financial and commercial markets. Can be Proprietary!
Contactless Card Technology ISO 14443, 13.56 MHz Standards. Most widely used in the world. Mifare Classic Plus Desfire Desfire EV1 I-Class (ISO 15693) Felica Others
Secure Sectors Keys to doors open rooms to data blocks of various sizes and uses. Transportation Logical Access Cafeteria Biometrics Vending Physical Access
Card Security Comparison Data Encryption Message Authentication Coding Mutual Authentication Secure Common Prox
Proprietary vs. Open Proprietary cards may mean you can only use the applications provided by the vendor. Applications & sectors already defined. You are locked into that vendor and card. What if you want to add an application, like mass transit, that is not provided by the vendor? Costs ( priming cards)
Credential Consolidation Building Access Secure Network Access Information Security Time and Attendance Mobile Communications Username Password Parking Cashless Vending Cafeteria
Authentication Authenticate Authenticate
Authentication Devices Wiegand ISO/ABA Mag Stripe ISO 14443 Smart Card ISO 7816 Contact Smart Card SIA OSDP Data in from Cards Data out to Controllers
Authorization Authorize Authorize
Authentication Devices Distributed Intelligence Independent Decisions Encrypted Communications RS232, RS485, TCP/IP
Alarm Alarm Monitoring
Alarm Viewer Unacknowledged Panel Instructions to Operator Notes by Operator Acknowledged Pane
Real Time Dynamic Graphics
Auditing Audit Audit
Audit Reports Database of all Activity Paper Reports Email Reports Automatic Generation Integration