Physical Access Control - PIV Credential Authentication - ActivEntry

ActivEntry Physical Access Control

The ActivIdentity ActivEntry suite of products allows government agencies to use Personal Identity Verification (PIV) cards for physical access control, as mandated by HSPD-12.  

The ActivIdentity ActivEntry solution offers the following benefits:

  • Upgrades existing physical access control systems (PACS) to authenticate credentials at full range of assurance levels
  • Upgrades existing PACSs without the need for wholesale rip and replacement of existing equipment
  • Provides government agencies and commercial enterprises the capability to fulfill the promise of converged physical and logical security as envisioned by HSPD-12
  • Only solution on the market that delivers the complete FIPS 201 and SP 800-116 compliance the industry demands
  • Addresses security, compliance and ROI objectives by enabling the use of PIV, PIV-I, PIV-C and CAC cards access to facilities

The solution consists of the following elements:

  • The ActivIdentity ActivEntry Module, installed between an existing PACS panel and a supported card or biometric reader, validates FIPS 201 cards, extracts the badge ID and passes it along to the PACS panel for an access decision
  • The ActivIdentity ActivEntry Manager provides centralized control of assurance level settings and distribution of validation data

ActivIdentity ActivEntry: How It Works

ActivEntry Physical Access Control Diagram

The ActivIdentity ActivEntry solution requires no modification or replacement of the PACS. All ActivIdentity ActivEntry Modules are managed by an ActivIdentity ActivEntry Manager that provides centralized control of assurance level settings and distribution of validation data such as card revocations and trusted issuers.

The ActivIdentity ActivEntry Module validates cards according to the assurance level setting, extracts the badge ID from data on the card, and then passes the badge ID to the PACS panel for an access decision. For invalid cards, the Module is configurable to send a preset badge ID to the PACS panel and/or close an output relay. Cardholder data is captured automatically the first time a card is presented to any ActivEntry supported reader for validation and then stored and distributed to all other Modules by the ActivIdentity ActivEntry Manager. This feature allows traditional enrollment of cardholders using existing PACS enrollment functionality, integration with an identity management system (IDMS) or card management system (CMS), or use of a third party enrollment package such as visitor software.