200 likes | 372 Views
Secure Kiosk Solutions. RFID Based Access Control Solutions designed specifically for Shared Clinical Workstations in Healthcare November 2010. Secure Kiosk Solutions. Supports variety of Contactless RFID Cards ( HID Prox, HID iCLASS, Mifare, DesFire ) using OMNIKEY USB Readers
E N D
Secure Kiosk Solutions RFID Based Access Control Solutions designed specifically for Shared Clinical Workstations in Healthcare November 2010
Secure Kiosk Solutions • Supports variety of Contactless RFID Cards ( HID Prox, HID iCLASS, Mifare, DesFire ) using OMNIKEY USB Readers • Client / Server based Access Control applications for Shared Computers • Supports Windows XP or XPE Thin Clients using SKS GINA for change of control • Supports Windows XP, XPE, Windows 7, using SKS application for change of control • Provides Fast, Secure, Fully Audited change of control on workstations using Generic Windows Logon Accounts
SKS Software - Server Side • SKS database typically resides on Microsoft Server 2003 or 2008 R2 running SQL or SQL Express ( 2005, 2008, 2008 R2 ) • Can run on Windows XP or higher • Requires fixed IP address • SKS Server Application and SKS Management Portal application reside on Microsoft Server 2003 or 2008 R2 • Microsoft IIS is required • Fixed IP address
SKS Software - Client Side • Two Options available • Uses Modified Windows GINA with Windows XP or XPe to deliver managed changed of control using LOCK and UNLOCK functions of Windows desktop • Uses SKS Application “AppManagement” tool to provide change of control with Citrix or VMware Interface . This is done without locking the desktop.
SKS Software - Client Side • SKS Client – GINA Version • Requires modified GINA for Windows XP or Xpe • Change of control occurs on LOCK / UNLOCK of Windows Desktop • SKS Application Management Tool is available as an add-on option • Provides secondary authentication to applications using Active Directory Username and Password
SKS Software - Client Side • SKS Client – AppManagement Version • No change to GINA for Windows XP or Xpe • No change to Credential Provider on Vista or Windows 7 • Change of control at application level instead of locking / unlocking desktop • SKS Application Management Tool is required and automatically provides secondary authentication to applications using Active Directory Username and Password
User Enrollment Options • Self Service Enrollment using Active Directory Authentication • Supported with either GINA or Application methods • Administrator Defined Enrollment using SKS Database and SKS ID Card Registration App • Done at ADMIN Workstation with Reader • Options are Defined via Group Policy in SKS Management Portal
Group Policies • Configure Group Policy Settings • Associate New users to specific Group Policy • Default uses Active Directory Authentication • Optional policy can use SKS database authentication as defined by the Administrator • Typically used in manufacturing or smaller medical offices that do not have Active Directory in place
User Authentication Options • RFID Card Only • RFID Card and PIN • Pin Policy can be tightened to require “x” number of characters and use of special characters • RFID Card and Active Directory Password • Will be adding GRACE PERIOD timer in future release • Authenticate once using PIN or Password at start of shift and then use Card Only for remainder of programmed Grace Period
HID Prox • 125 kHz card and tags • HID iCLASS • 13.56 MHz card and tags Most HID credentials can be used with Secure Kiosk Solutions Software
Secure Kiosk Solutions Software Also supports standard 13.56 MHz Mifare or DesFire Cards
Secure Kiosk Solutions OMNIKEY USB Readers from HID Global
OMNIKEY 5325 CL • Supports legacy HID 125 kHz Proximity • USB Connection with 70.9” cable • 1” – 2” read range • MSRP of $ 54.00
OMNIKEY 5321 CLi • Supports HID 13.56 MHz iCLASS technology • USB Connection with 70.9” cable • 1” – 2” read range • MSRP of $ 44.00
OMNIKEY 5321 CR Clean Room Reader • Supports leading 13.56 MHz technologies • HID iCLASS, Mifare, DesFire • USB Connection with 70.9” cable • 1” – 2” read range • MSRP $ 87.90
OMNIKEY 6321 CLi • Supports HID 13.56 MHz iCLASS technology • USB Connection – no cable provided • 1” – 2” read range • MSRP $ 44.00
OMNIKEY 6321 • Supports leading 13.56 MHz technologies • HID iCLASS, Mifare, DesFire • USB Connection – No cable provided • 1” – 2” read range • MSRP $ 64.50
OMNIKEY 5321 CL • Supports leading 13.56 MHz technologies • HID iCLASS, Mifare, DesFire • USB Connection with 70.9” cable • 1” – 2” read range • MSRP of $ 55.00
Closing thoughts Secure Kiosk Solutions • Convenient, fast, and secure change of control at shared workstations using RFID badge with PIN or Password • Leverage existing badge infrastructure or add RFID credentials starting at $ 5 per user • Affordable PC based RFID Readers starting at $ 44.00 • Integrates well with Citrix or VMware Virtual Desktops • Integrates well with Citrix Password Manager
Contact Information David Shook Consultant Secure Kiosk Solutions Email: dshook@hotmail.com Telephone: 847-800-8885