PIVCheck

PIVCheck®

PIVCheck is an award-winning software and hardware solution designed to assist security personnel in validating PIV, TWIC, FRAC, and CAC credentials and verify cardholder identities, then harvesting the data for use with a PACS. The software can be deployed on a PC, laptop, or handheld terminal.

PIVCheck Desktop Edition is intended for use in an indoor setting whereas PIVCheck Mobile Edition is intended for verifying credentials and harvesting credential data at locations where network connectivity is neither available nor required.

To extract all of the data elements, the cardholder's PIN is used to unlock the card. The card's authenticity is then verified by issuing a cryptographic challenge to the card. The CHUID and biometric signatures are verified, and the revocation status of the X.509 Certificate for PIV Authentication and the CHUID signing certificates are checked using a flexible combination of Microsoft's Cryptographic API, OCSP, or SCVP.

To ensure that the credential is issued to the person presenting it, a fingerprint image is acquired, and the resulting template is matched with the template encoded on the credential.

For TWICs, PIVCheck can be configured to verify that the cardholder's FASC-N is not on the current TWIC Canceled Card List (CCL). The CCL can be imported, or can be accessed directly if the desktop or mobile verification terminal has Internet connectivity.

For auditing, the credential validation session is logged to an encrypted, serialized data file. The contents of the file can be exported to a removable file system, such as a flash drive.

PIVCheck Desktop and Mobile Editions can be found on the GSA FIPS 201 Approved Products List (APL) in the following categories:

  • SCVP Client
  • PIV Authentication System
  • CAK Authentication System
  • Card Authentication System
  • CHUID Authentication System
  • Caching Status Proxy (when PIVCheck Certificate Manager is deployed)

PIVCheck Mobile Edition includes a FIPS 140-2 Level 1-certified cryptographic module which supports RSA, AES, and ECC encryption algorithms, as well as SHA-1, SHA-256, and ECDSA signature algorithms. It is a FIPS 201-approved PIV authentication system when running on ARM-based mobile terminals such as:

PIVCheck Desktop or Mobile Edition can be upgraded to PIVCheck Plus Desktop or Mobile Edition*, which provides:

  • Networked PACS registration of credential data (insert and update PACS cards and cardholders)
  • Audit trail exporting to a database server (in real-time or batch mode)
  • Downloading server-based configuration policies

* The Plus option automatically includes the Audit Trail option.

Configurations

PIVCheck Desktop Edition

PIVCheck Plus Desktop Edition includes PIVCheck credential and identity verification. It is a standalone product intended for use in an indoor setting.

PIVCheck Desktop on Intel-based PC with minimum 1.8 GHz CPU, 1GB RAM, 40 GB hard disk is certified on:

  • Windows XP SP3
  • Windows 2003 Server
  • Vista Business Edition
  • Windows 7

Requires USB-based PC/SC smart card reader.

Biometric capture/matching is optional. If used, select MSO350/1350, Identix BTO-500, Secugen Hamster IV, Lumidigm Venus, Cogent CSD301, or UPEK single fingerprint capture device.

PIVCheck Plus Desktop Edition

PIVCheck Plus Desktop Edition includes PIVCheck credential and identity verification, certificate validation and registers the credential data with a PACS. It is a software product intended for use in an indoor setting.

PIVCheck Plus Desktop on Intel-based PC with minimum 1.8 GHz CPU, 1GB RAM, 40 GB hard disk is certified on:

  • Windows XP SP3
  • Windows 2003 Server
  • Vista Business Edition
  • Windows 7

Requires USB-based PC/SC smart card reader.

Biometric capture/matching is optional. If used, select MSO350/1350, Identix BTO-500, Secugen Hamster IV, Lumidigm Venus, Cogent CSD301, or UPEK single fingerprint capture device.

The PACS Plug-in selected from the list below, can be installed on same computer as PIVCheck Plus Desktop client or the PACS itself.

PIVCheck Mobile Edition (software only)

With uncompromising power and capability, PIVCheck Mobile Edition offers all of the functionality of PIVCheck Desktop Edition, but is designed for mobile devices. PIVCheck Mobile Edition runs on Windows CE 5.0 and Mobile 6, leveraging all of the connectivity that the device supports.

PIVCheck Mobile Edition (software only) does not include the mobile device.

PIVCheck Plus Mobile Edition (software only)

With uncompromising power and capability, PIVCheck Plus Mobile Edition offers all of the functionality of PIVCheck Plus Desktop Edition, but is designed for mobile devices. PIVCheck Plus Mobile Edition runs on Windows CE 5.0 and Mobile 6, leveraging all of the connectivity that the device supports.

PIVCheck Plus Mobile Edition includes a PACS Plug-in selected from the list below. The PACS Plug-in can be installed on a standalone PC or on the same computer as the PACS itself.

PIVCheck Plus Mobile Edition (software only) does not include the mobile device.

PIVCheck Mobile Edition with Mobile Reader

PIVCheck Mobile Edition with Mobile Reader includes a mobile reader selected from the list below, pre-loaded with PIVCheck Mobile Edition software.

PIVCheck Plus Mobile Edition with Mobile Reader

PIVCheck Plus with the Mobile Reader option includes a mobile reader selected from the list below, pre-loaded with PIVCheck Plus Mobile Edition software.

Operates on selected mobile devices with Windows CE or Windows Mobile operating system, contact/contactless smartcard reader, and fingerprint reader. Mobile devices must include either WiFi, Ethernet, or GSM connectivity to connect with the PIVCheck PACS Service.

Mobile Readers

Datastrip DSV2+TURBO

Description
Datastrip’s DSV2TURBO is a handheld, biometrically enabled device that provides on-the-spot ID verification. The unit supports facial, fingerprint and iris biometrics to help agencies overcome the limitations of using only one biometric as their ID verification tool. By integrating two or more types of biometric security, the DSVII-SC allows facilities to comply with stringent programs such as HSPD-12 and FIPS 201.

Technical Specifications


Size:

■ Approx. 7" x 7" x 2" (185 mm x 185 mm x 50 mm)


Weight:

■ Approx. 2 lbs (950 g)


Operating System:

■ Microsoft® Windows® CE.NET Version 5.0


Processor:

■ Renesas SH4 7760 True Floating Point Processor enabling fast biometric matching


Display:

■ 3.5" color digital transflective touchscreen with stylus 240 (w) x 320 (h) QVGA


MEMORY:

■ 64 MB RAM, 128+ MB CF storage


Fingerprint Sensor:

■ 500-dpi capacitive solid-state sensor, 12.5 mm x 15.0 mm sensor area


Keypad:

■ 5-button backlit rubber keypad (power button + 4 programmable function keys)


Smartcard Interface:

■ Supports ISO-7816 contact and ISO-14443 A/B contactless smartcards

Interface:

■ Serial, USB host (2), CF slots (1 external, 1 internal), LAN


Other options:

■ Memory expansion, barcode scanning, 1.3 megapixel iris camera, 3.2 megapixel digital camera, docking cradle, third-party applications and more. Data and communications encryption options available to protect sensitive files including hardware encryption capabilities utilizing Security Access Modules for digital signatures.

Optional Wireless Features:

■ Wi-Fi (802.11g), Bluetooth®, Cellular (GSM/GPRS)


Battery:

■ High-capacity rechargeable and user-replaceable Li-polymer battery. Standard single battery provides 3000 mAh (up to 8 hours normal use). Second battery can be installed by user or factory-fitted at time of order and will increase
internal capacity to 6000 mAh (up to 14 hours normal use).

Power Supply:

■ AC adapter/charger: 100-240 V AC, 50-60 Hz Optional auto adapter/charger: 12-19 V DC


Environmental:

■ IP54

Iris Camera (optional):

■ 1.3 M pixel Image Resolution: 640 (w) x 480 (h) VGA IR invisible illuminators, full SDK support

DIGITAL STILL CAMERA (optional):

■ 3.2 M pixel, 24-bit full color, Image Resolution: 2048 x 1536 to 160 x 120, Depth of Field: 0.6 to 5.1m, Illumination: Preview and flash, full SDK support

DAP CE3240BWE

Description
DAP CE3240 Family is specifically designed to transfer DAP's mobile computing expertise into the featherweight field of handhelds.

Meeting all expectations, it also offers the largest variety of customization hardware modules and features the most efficient, safe and cost effective tools for all field workers.


Technical Specifications

Operating System:

■ Windows CE 5.0


Processor:

■ XScale (Bulverde) - PXA270, 520 MHz

Memory:

■ 128 MB Storage Flash

■ 128 MB SRAM

Display:

■ 3.5" QVGA TFT transmissive color LCD with LED backlighting


Keyboard:

■ Highly ergonomic 22-key keypad with 10 numeric and function keys plus 2 trigger keys

Connectivity - CE3240B ETHERNET EDITION

■ Ethernet 10BaseT


Connectivity - CE3240BW WIRELESS EDITION adds:

■ Internal Bluetooth Class 2

■ Internal 802.11 b/g


Power:

■ Rechargeable 2000 mAh Lithium-Ion battery pack

■ Battery Life: 2 to 4 working days


Adaptable End-Caps:

■ 1D/2D Barcode Reader (CMOS Imager)

■ Optional Integrated Image Scanner (2D Codes, Linear, Postal Modules, OCR Fonts)

PC Card and SDIO:

■ 1 PC Card Type II (CF Card via Adapter)

■ 1 Secure Digital (SD or SDIO) slot

MorphoTrak MorphoCheck

MorphoCheck™ is a portable terminal used to check the identity of an individual using their identity documents and biometric data. By comparing the fingerprint of the document holder (boarding card, ID card or passport) with the fingerprint in the document, MorphoCheck™ enables an individual’s identity to be checked quickly and reliably.

MorphoCheck™ can authenticate all types of identity documents quickly and easily.

Technical specifications

• High Quality SAGEM Optical Fingerprint Sensor (500 dpi, 256 grey levels)

• Integrated Rochford Thompson OCR Swipe-through Reader for Machine Readable Zone (MRZ) capture

• Built-in ACG HF Dual ISO reader (ISO 7816 & full ISO 14443 A/B)

• Internal Secure Access Module (SAM) sockets

• Psion Teklogix professional PDA-based Technology running Windows Mobile (520 MHz Intel PXA270 processor, 3.6” Transflective Full VGA TFT LCD Touch Panel, 65536 colors, 128 MB Flash Memory & 128 MB SDRAM)

• Integrated Bluetooth, Optional WiFi (802.11b/g) and GSM/GPRS/Edge via expansion card

• SAGEM application for ICAO Decoding with Basic and Extended Access Control management

• On-board SAGEM fingerprint encoding and matching algorithms

Cross Match Be.U Mobile

Technical Specifications

Fingerprint Types:

■ Single-finger rolls, Single-finger flats

Resolution:

■ 508 ppi

Capture Area:

■ 0.7" x 0.5" (18 mm x 12.8 mm)

Standards:

■ PIV-compliant FIPS 201 CHUID reader

■ MIL-STD-810F compliant housing

Operating Temperature:

■ 14 to 122° F (-10 to 50º C)

Humidity Range :

■ 10-90% non-condensing; splash resistant

Dimensions:

■ 3.94" x 8.58" x 1.85" (100 mm x 218 mm x 47 mm)

Weight:

■ 24 oz. (683 g)

Interfaces:

■ WiFi, GSM, CDMA

Operating Systems:

■ Windows CE 5.0

Certificate:

■ CE, FCC, TUV, WEEE

Datastrip DSV3

Description

Datastrip’s EasyVerify is a handheld biometric reader designed specifically for on-the-spot mobile identity verification. The unit comes standard with a 37-key QWERTY keyboard that can be used to input critical data, as well a biometric fingerprint sensor and a contactless smartcard reader. Additional options include cameras for facial and/or iris biometric identification, and readers for contact cards, magnetic stripes or 2D barcodes.

The EasyVerify is ergonomically designed to be held comfortably in the user’s hand. The unit can be configured to operate for up to 8 hours of battery life, and its hot-swappable replacement batteries boost the EasyVerify’s efficiency and reliability in the field.

Offering a variety of expansion capabilities, the EasyVerify can be connected optionally to remote databases via Wi-Fi, Bluetooth® and cellular networks. These support applications such as memory expansion and global communications.

Technical Specifications

Size:

■ 6.2” x 7.3” x 2.1” (156 mm x 185.42 mm x 53 mm)

Weight:

■ Approx. 2.0 lbs (1 kg) with battery

Operating System:
■ Microsoft® Windows® CE.NET Version 5.0

Processor:

■ AMD LX800 Geode (x86), 500 MHz, integrated FPU

Display:

■ 3.7” transflective color-reflective TFT (LED-backlit) VGA LCD indoor/outdoor viewable 640 (h) x 480 (v) pixels

Memory:

■ 256 MB Flash DRAM memory (expandable to greater than 1 GB);

■ 256 MB 64-bit DDR (expandable to 1 GB)

Biometrics:

■ Fingerprint Sensor (standard): FIPS 201/NIST SP 800-76 compliant, UPEK TCS1 508-dpi capacitive solid-state sensor, 8-bit grayscale 12.8 mm x 18.0 mm sensor area

■ Face Digital Still Camera (optional):

■ 3.2 M pixel, 24-bit full color

■ Captured Image Resolution: 2048 (h) x 1536 (v) to 160 (h) x 120 (v) pixels

■ Depth of Field: 0.6 m to 5.1 m

■ Illumination: Preview and Flash, full SDK support

■ Iris Camera (optional): 1.3 M pixel

■ Captured Image Resolution: VGA 640 (h) x 480 (v) pixels

■ Illumination: NIR, full SDK support

Keypad:

■ 37-key QWERTY keypad, 2 x 4 function keypad, 5-position joystick

Smartcard Interface:

■ Supports ISO 14443 A/B contactless (standard),

■ ISO 15693 contactless (optional) and ISO 7816 contact (optional) smartcards

Onboard Interface:

■ USB 2.0 Host: mini-A (x1); USB 2.0 Client: mini-B (x1);

■ CF Type I/II external interface (x1); SDIO internal interface (x1)

Docking Station Interface:

■ USB 2.0 Host: standard A (x2); USB 2.0 Client: standard B (x1); Ethernet: 10/100 RJ45 (x1); RS-232 DB9 (x1)

Optional Point and Shoot Optical Scanner:

■ 1D/2D barcodes, OCR (A, B, MICR), 50° (h) x 37.5° (v)

Optional Internal Wireless Features:

■ 16-channel global positioning receiver, Wi-Fi (802.11b/g), Bluetooth®, cellular GSM (GPRS/EDGE)

Optional Docking Station:

■ USB 2.0 Host: standard A (x2); USB 2.0 Client: standard B (x1); Ethernet: 10/100 RJ45 (x1); RS-232 DB9 (x1).

■ Charges batteries inside terminal.

Optional Proximity Card Reader:

■ 125 kHz

Battery:

■ High-capacity 7.4 V rechargeable and field-replaceable Li-polymer smart battery with integral charging and protection circuitry. Battery provides 5000 mAh (up to 8 hours normal use).

Power Supply:

■ AC adapter charger: 100-240 V AC, 50-60 Hz; external power: 11.4-10 V DC; power connector: 1.7 mm DC power jack or docking station connector.

Environmental:

■ IP54, exceeds MIL-STD 810F

Edgeline CN3 PIV
Product Overview

The Edgeline Technologies Personal Identity Verification (PIV) module is an all-in-one accessory that enables Intermec CN3 and CN4 series mobile computers to authenticate personnel via multiple methods. The PIV module incorporates a biometric fingerprint reader, a magnetic stripe reader, a contact smart card reader and a contactless smart card reader into a single snap-on solution.

Used with Intermec CN3 and CN4 series mobile computers, the PIV module provides maximum flexibility for applications that demand a multi-step authentication process for access to restricted areas or to highly confidential information. The solution can help federal agencies meet personnel identification requirements driven by Homeland Security directives, as well as assist state and local government with meeting similar needs in Mass Casualty Incident (MCI) and emergency response situations.

The PIV accessory is designed for quick and easy snap-on attachment to the host device. The CN3 and CN4 Single Dock or Multi Dock enables charging and communication with the mobile computer, via Ethernet and USB client, while the module is attached emergency management The PIV solution can be used to authenticate First Responders within a restricted site and limit access to others, so that site control can be improved. The solution can also be used by EMT personnel to identify, record and treat those people affected by a disaster.

Law Enforcement

Drivers license identification methods vary from state to state, from use of magnetic stripes to bar codes to smart cards. Fingerprinting is also becoming more commonly used when positive identification is needed. The PIV module provides law enforcement officers with fast and flexible access to the data they need from multiple sources.

Military

Mobile computer users in the military can leverage the PIV module to log in to government systems with their electronic smart card (Common Access Card) or contactless smart card, as required by the Department of Defense. They can also use the solution to positively identify and/or authenticate individuals in critical situations. In addition, the PIV module can be used to identify and track military personnel deployed around the world, from the beginning of their travels, through multiple stops, to their destination.

Specifications

RoHS & WEEE compliant

OS Versions Supported

• Microsoft® Windows Mobile® 5.0
• Microsoft® Windows Mobile® 6.1

Physical

• Dimensions (mm): 48 H x 84.5 W x 134 D
• (1.89”H x 3.33”W x 5.26”D)
• Weight: 156 g (5.5 oz)

Environmental

• Operating Temp: -10°–50° C (14°–122° F)
• Drop Spec: 4 ft (1.22m), 26x all faces, sides and corners
• Environmental Protection : IP54 compliant

Data Input Technologies

Biometric Fingerprint Reader

• FIPS 201 & NIST 800-76 standards compliant
• FBI PIV-IQF compliant
• 0.55 x 0.87 in (14 x22 mm) optical sensor
• 500 DPI, 8 bits per pixel

Magnetic Stripe Card Reader

• ISO 7810 & 7811 standards compliant
• Formats supported: ISO 7811 and AAMVA
• Card Thickness Supported:
0.76mm ± 0.08mm

Contact Smart Card Reader

• ISO 7816 & 7810, GSC-IS & EMV Level 1 standards compliant

• Formats supported: Asynchronous (T=0 & T=1 protocols) and Synchronous RFID Contactless Smart Card Reader
• ISO 14443, FIPS 201 and NIST 800-73 standards compliant
• Provides a read-only interface with a maximum read range of 10cm

Accessories

• CN3 Single Dock and CN3 Multi-Dock
• Enables charging and data synchronization (via USB ActiveSync & Ethernet) with the mobile computer while the PIV module is connected.

Edgeline Technologies, LLC 17735 NE 65th St Suite 130
Redmond, WA 98052
Phone: 415-897-2230
Email: jlucan@EdgelinePC.com
Website: www.edgelinepc.com
Motorola MC75 with Sagem Optical Sensor

MC75 3.5G Worldwide Enterprise Digital Assistant (EDA)

No matter what your workers need to get the job done, Motorola's MC75 Worldwide Enterprise Digital Assistant delivers by combining an unparalleled number of business capabilities into an easy-to-carry rugged device. 3.5G GSM HSDPA and CDMA-EVDO Rev A support provides high performance voice and data services around the globe.

Your workers will enjoy having all the features they need right at their fingertips in one device designed to endure all day everyday use outside the enterprise -- including push-to-talk, integrated GPS with superior sensitivity and tracking capabilities, 1D or 2D bar code scanning, a high resolution 2 megapixel autofocus digital color camera, 802.11a/b/g wireless LAN (WLAN), Bluetooth and IrDA connectivity.

Technical Specifications

2D IMAGER ENGINE

Aiming element (VLD): 650 nm ± 5 nm
Ambient light immunity: Total darkness to 9,000 ft. candles/96,900 lux
Field of View: Horizontal: 32.2°; Vertical: 24.5°
Focal distance from front of engine: 5 inches; Far: 9 inches
Illumination element (LED): 635 nm ± 20 nm
Optical resolution (gray scale) : 640 H x 480 V pixels (gray scale)
Pitch angle: ± 60° from normal
Roll: 360°
Skew tolerance: ± 50° from normal

LINEAR 1D SCANNER

Optical resolution: 4 Mil minimum element width
Scan angle: 47° ± 3° default, 35° ± 3° reduced
Scan rate: 104 (+/- 12) scans/sec (bi-directional)

PERFORMANCE CHARACTERISTICS

Ambient light: 10,000 candles
Data capture options: 1D linear or 2D imager
External interfaces: RS232, USB 1.1
Imager / Camera: Yes
Memory: 128MB RAM; 512MB Flash
Operating system (OS): Windows Mobile 6.5 Professional
Processor (CPU): XScale™ PXA270 624 MHz processor
Windows Mobile: Yes

PHYSICAL CHARACTERISTICS

Audio options: Microphone, Receiver, Speaker , Software support for full duplex record and playback (stereo), Headset jack
Dimensions (HxWxD): 6 in. L x 3.3 in. W x 1.7 in D (15.24 cm L x 8.4 cm W x 4.4 cm D)
Display resolution: Transflective color 3.5” full VGA with backlight, 640 x 480
Display type: LED backlight, touch screen
Keyboard: Numeric; QWERTY, AZERTY, QWERTZ, DSD
Network connections: Ethernet (via cradle), Full-speed USB, host or client
Notification: Vibrator, LED
Rugged: Yes
Weight: Standard 1.5X battery: 14.9 oz./422 g
Extended Capacity 2.5X battery: 15.7 oz./446 g

POWER

Main battery: Rechargeable Lithium Ion 3.7V, 3600 mAh Smart Battery
Extended capacity battery: Rechargeable Lithium Ion 3.7V, 4800 mAh Smart Battery

REGULATORY SPECIFICATIONS

EMC EN 301 489-1, EN 301 489-7, EN 301 489-17, EN 301 489-19, IEC 60601-1-2, EN 55022, FCC Part 15 Subpart B, ICES 003 Class B, EN 55024
Electrical safety: EN 60950-1, IEC 60950-1, Certified to UL / cUL 60950-1
Environmental: RoHS-compliant
Laser safety2: EN 60825-1, IEC 60825-1, IEC Class 2/FDA Class II
RF exposure: USA: FCC Part 2, FCC OET Bulletin 65 Supplement C; Canada: RSS-102; EU: EN 50360; Australia: Radiocommunications Standard 2003

USER ENVIRONMENT

Drop specification: Multiple 5 ft. drops to concrete at ambient temperature 73°F / 23°C;
Multiple 4 ft. drops to concrete across operating temperature range;
Meets and Exceeds MIL-STD 810G
Electrostatic discharge (ESD) : ±15kV air discharge, ±8kV direct discharge
Environmental sealing: IP54
Humidity: 95% non-condensing
Operating temperature: 14° F to 122° F/-10° C to 50° C
Storage temperature: 40° F to 158° F/-40° C to 70° C (w/o battery)
Tumble specifications: 1,000 1.6 ft./.5 m tumbles (2,000 drops);

WARRANTY

Handheld Warranty: The MC75 is warranted against defects in workmanship and materials for a period of 12 months from date of shipment, provided that the product remains unmodified and is operated under normal and proper conditions.

WIRELESS DATA COMMUNICATIONS

Antenna: Internal for LAN, External for WAN
GPS-enabled: Integrated Assisted-GPS (A-GPS)
Individual data rates supported: 1, 2, 5.5, 6, 9, 11, 12, 18, 24, 36, 48 and 54 Mbps
Operating channels: Chan 1-13 (2412-2472 MHz), Chan 14 (2484 MHz) Japan Only, Chan 8-165 (5040 – 5825 MHz), Actual operating channels/frequencies depend on regulatory rules and certification agency
Security: WPA2, WEP (40 or 128 bit), TKIP, TLS, TTLS (MS-CHAP), TTLS (MS-CHAP v2), TTLS (CHAP), TTLS-MD5, TTLS-PAP, PEAP-TLS, PEAP (MS-CHAP v2), AES, LEAP
Voice communication Integrated Voice-over-IP ready (P2P, PBX, PTT),
Wi-Fi™-certified, IEEE 802.11a/b/g direct sequence wireless LAN
WLAN: 802.11a/b/g tri-mode radio
WPAN (Bluetooth Support) on-board chip antenna, Bluetooth v2.0

BIOMETRIC / SMART CARD

+ The Biometric Tri Scan reader combines CONTACT SMART CARD, CONTACTLESS SMART CARD and FINGERPRINT BIOMETRIC CAPTURE. The biometric core uses a rugged, high image quality optical fingerprint sensor. The Tri scan reader is compatible with most contact AND contactless Smart Cards including all Mifare and iClass contactless cards. The contactless card reader is hardware compatible with the CAC, TWIC, FRAC cards as well as ICAO ePassports.

+ The Tri Scan reader attaches as a snap-on unit to the base of the MC75 - the mechanical design of the module enables the attachment to remain compatible with existing MC75 accessories such as the desktop charge cradle and the car charger. The module may be quickly removed from the MC75, or semi permanently attached with two screws.

+ The fingerprint reader sensor provides a rugged, reliable solution even in dusty or damp environments. The sealed sensor with a toughened platen provides immunity to Electro Static Discharge and protection from scratching and mechanical damage.immunity to 15kV and the ability to withstand everyday wear and tear (rated to >2 million touches). The reader conforms to the FIPS 201 specification for Single Finger Capture Devices.

+ The contact smartcard reader is compliant to ISO7816-1,2,3,4, and supports T=0 and T=1 protocols and 2-wire and 3-wire modes. The reader is based on industry standards, including PC/SC and EMV 2000 Level 1 to address a wide range of applications across government, enterprise and financial sectors.

+ The contactless smartcard reader provides the ability to read and write to a wide variety of transponders at 13.56 MHz compliant to ISO14443A, ISO14443B, ISO 15693 and HID iClass.

+ The Tri Scan reader is supported by demonstration software and a Software Development Kit (SDK). The SDK is required for application development and provides the means to capture finger images. The fingerprint reader directly supports template extraction and matching in ANSI INCITS 378-2004, MINEX A, ISO/IEC 19794-2 and SAGEM proprietary formats. Templates may be stored on a remote database, on a contact or contactless smartcard or locally on the reader and used for 1:1 and 1:N verification.

+ Communication is via the MC75 USB port which is automatically switched to allow ActiveSync of the MC75 with a host device.

Options

PIVCheck Plus Option
Option image
When this option is enabled, the data elements extracted from the credential are used to provision a new card in a physical access control system (PACS). The Plus option includes a PACS plug-in that "knows" how to provision a card and cardholder in a specific manufacturer's PACS.

Each PACS Plug-in can perform the following tasks on behalf of PIVCheck mobile and desktop clients:
  • Insert a record into the PACS card or cardholder table using the data extracted from the credential
  • Update an existing card or cardholder record with data extracted from the smart card
In addition, the PACS Plug-in can:
  • Determine whether a given PIV credential exists in the PACS
  • Explicitly suspend a PIV card in the PACS when called upon to do so by the Certificate Manager
Depending on the PACS and its API, some plug-ins support the ability to add the FIPS 201 credential as a second card assigned to an existing cardholder. When the PACS supports the notion of a many-to-one relationship between cards and cardholders, the plug-in can generally perform this linking. Contact us for more details.

Finally, some PACS provide a means for receiving event notifications from 3rd party systems. For example, if a card is revoked by the Certificate Manager, an event can be reported to the alarm monitor. Additional logic could be configured to automatically display the last location that the person used their credential.
Audit Trail Option
Option image

The Audit Trail option enables PIVCheck and OMNICheck software to upload a record of each credential verification transaction to the PIVCheck PACS Server.

  • Start Date and Time
  • TWIC Authentication Mode
  • CHUID FASC-N
  • Card Holder Name
  • Expiration Date and Time
  • Number of PIN attempts (including first)
  • Verification Date and Time
  • CHUID Check Results (Ok, Bad, or Not Checked)
  • Biometric Comparison Results (Match, No Match, or Not Configured)
  • TSA Hotlist Check Results (Not Found, Found, Not Configured, or Deferred)
  • PKI Validation Results (Good, Revoked, Not Configured, or Deferred)
  • Operator User Name
  • Unit (System) ID (serial number)
  • Stop Date and Time
  • Overall Result (Authenticated, Not Authenticated)

On the server side, the Audit Logs reporting tool includes several canned reports and provides an easy to use SQL editor for generating your own queries.

PACS Data Import Option
Option image

When the Data Import option is enabled, the PACS Plug-in synchronizes the PIVCheck credential database with credential data from the PACS. Data flows in effect, the opposite direction, from PACS registration. This enables devices running OMNICheck Plus to display access rights and PACS status information of PIV and non-PIV credentials, and allows PIVCheck Plus operators to assign access rights on the fly during PACS registration.

Not all PACS Plug-ins support Data Import. Check the PACS Plug-ins section to determine individual plug-in support.

Prerequisites

OMNICheck Plus Edition, PIVCheck Plus Mobile Edition or PIVCheck Plus Desktop Edition

Note: The Data Import option is discounted by 50% when ordered with PIVCheck Plus.

Passage Option
Option image

The Passage option enables PIVCheck Desktop, PIVCheck Mobile, TWICCheck, or OMNICheck to send a Wiegand output to a PACS panel. Supported output formats are:

  • 200-bit FASC-N
  • 75-bit GSA
  • 75-bit TSA (with ICI encoded in first byte of Credential Number)
  • 64-bit BCD
  • 48-bit GSA
  • 48-bit TSA (with ICI encoded in first byte of Credential Number)
  • HID Fortune 1000
  • 26-bit

A Wiegand data converter is shipped with each licensed client. The converter transforms network messages into Wiegand output, producing the same wire protocol expected from a typical PACS reader. The client does not make access control decisions. It simply reports the appropriate card number in the specified Wiegand format to the panel. The access control panel or its host ultimately decides whether a door or gate should be unlocked.

PIVCheck Passage supports a configurable delay so that the PACS has time to push a newly registered credential to the panel. For previously registered credentials, no delay is necessary.

MorphoTrak MSO 350 Fingerprint Sensor Option (smart card reader + fingerprint sensor)
Option image

To achieve the mandates set forth by HSPD-12 for Federal employee and contractor identification, the National Institute of Standards and Technology was instructed to craft a standard for secure and trusted identification. As a result, the FIPS-201 Personal Identity Verification standard was created.

Applying its experience in biometric Identity Management solutions already in use in 70 countries worldwide, Sagem Morpho is ready to meet the challenge of the Personal Identity Verification (PIV) program with the introduction of the MorphoSmart™ Optic 350 PIV Biometric terminal.

PIV compliant fingerprint processing unit

• Fingerprint sensor

- High quality FBI certified optical sensor

- 500 dpi resolution, 416 X 416 pixels

- .87” X .87” (22mm x 22mm) sensor area

- FBI Certified list:

- http://www.fbi.gov/hq/cjisd/iafis/cert.htm

- FBI list product name: MSO 350

• Biometrics

- Verification time < 1 sec

- Identification time (2,000 records) < 2 sec

• Smart Card Contact Reader

- Conforms to Personal Computer/Smart Card (PC/SC) specification for Reader-to-host system interface in general desktop computing environment.

- Smart card interface is CCID compliant

- Smart card interface is compliant to ISO 7816 parts 1, 2, 3, and 4

• Operating Temperature

- 32 F to 104 F (0°C to 40°C)

• Power consumption

- Less than 2.5W

• Dimensions & Weight

- MSO 350 PIV 3.6 x 3.1 x2 .3 in (9.1 x 8.0 x 5.9cm), 10.0 oz (284g, PC-ABS)

• Connections

- MSO 350 PIV, 1.5 m USB cable

• Processor

- Powered by an ARM9™ family CPU core.

• Software

- Microsoft® Windows 2000, and XP Platforms.

HID Omnikey Smart Card Reader Option (smart card reader + secure PIN pad)
Option image

With its product brand OMNIKEY, one of the world's leading manufacturers of innovative smart card readers, HID Global offers the OMNIKEY® 3821, a high-performance PIN pad reader with display for desktop usage. The OMNIKEY® 3821 is an easy–to-install USB device particularly suited for online-banking or digital signature applications.

Note: This reader supports Secure PIN Entry (SPE). SPE allows the PIN to be directly sent to the smart card from the PIN pad independently of the application software.

L-1 BTO 500 Fingerprint Sensor Option (fingerprint sensor only)
Option image

The BioTouch 500 is a standalone 500-ppi plug-and-play fingerprint reading peripheral that produces a consistent quality image for secure access into network and desktop applications each and every time.

This compact device has a USB2 interface for secure access to computer or network systems, and when coupled with the BioLogon® software product, provides real-time feedback on factors such as horizontal and vertical alignment, finger rotation, core quality, destroyed ridgelines and pressure.

* Advanced imaging: Developed with an advanced CMOS imager technology, the BioTouch 500 provides enhanced definition for better image fidelity and far better match results.

* Easy implementations for custom applications: L-1's SDKs, such as BioEngine®, give you greater control over your biometric solution.

* Quality assurance: Integrated quality control capabilities provide real-time feedback on factors such as horizontal and vertical alignment, finger rotation, core quality, destroyed ridgelines, and pressure.

* User convenience: Captures and stores a minutiae point template to reduce the risk of unauthorized access to protected systems.

PACS Plug-ins

AMAG Symmetry 6, 7
AMAG Symmetry 6, 7 PACS Plug-in capabilities:
AMT WebBrix
AMT WebBrix PACS Plug-in capabilities:
Brivo ACS, Aparato

Brivo ACS Onsite Aparato is listed on the GSA Approved Products List (APL).

Brivo ACS, Aparato PACS Plug-in capabilities:
Continental Access CA 3000
Continental Access CA 3000 PACS Plug-in capabilities:
Datawatch D3000
Datawatch D3000 PACS Plug-in capabilities:
DSX WinDSX
DSX WinDSX PACS Plug-in capabilities:
Gallagher Command Centre
Gallagher Command Centre PACS Plug-in capabilities:
Hirsch Velocity 3.1
Hirsch Velocity 3.1 PACS Plug-in capabilities:
Honeywell EBI R410
Honeywell EBI R410 PACS Plug-in capabilities:
Honeywell Pro-Watch 3.7, 3.8
Honeywell Pro-Watch 3.7, 3.8 PACS Plug-in capabilities:
IDenticard PremiSys

IDenticard PremiSys is listed on the GSA Approved Products list.

IDenticard PremiSys PACS Plug-in capabilities:
Johnson Controls P2000 V3.1
Johnson Controls P2000 V3.1 PACS Plug-in capabilities:
Johnson Controls P2000 V4.0
Johnson Controls P2000 V4.0 PACS Plug-in capabilities:
Kantech EntraPass Corporate Edition
Kantech EntraPass Corporate Edition PACS Plug-in capabilities:
Keyscan System VII
Keyscan System VII PACS Plug-in capabilities:
Lenel OnGuard 5.10, 5.12, 6.0, 6.1, 6.2, 6.3, 6.4

A OnGuard DataconduIT license is required.

Codebench is a proud member of Lenel's OAAP program. PIVCheck Plus with Certificate Manager is certified with OnGuard 5.12, OnGuard 6.0, and OnGuard 6.4.500. OMNICheck Plus, Fixed Reader Services, and IDSync are certified to work with OnGuard 6.4.500.

For more information, see Lenel Members | Codebench.

Lenel OnGuard 5.10, 5.12, 6.0, 6.1, 6.2, 6.3, 6.4 PACS Plug-in capabilities:
Matrix Frontier
Matrix Frontier PACS Plug-in capabilities:
Quintron AccessNsite

Quintron AccessNsite™ HSPD-12 Plug-in is listed on the GSA Approved Products List (APL).

Quintron AccessNsite PACS Plug-in capabilities:
RedCloud Security Management Software
RedCloud Security Management Software PACS Plug-in capabilities:
RS2 Technologies Access It! Universal
RS2 Technologies Access It! Universal PACS Plug-in capabilities:
S2 NetBox
S2 NetBox PACS Plug-in capabilities:
Sielox Pinnacle
Sielox Pinnacle PACS Plug-in capabilities:
Siemens SiPass 2.50
Siemens SiPass 2.50 PACS Plug-in capabilities:
Software House CCURE 800
Software House CCURE 800 PACS Plug-in capabilities:
Software House CCURE 9000

Software House CCURE 9000 Version 2 is listed on the GSA FIPS 201 Approved Products List.

Software House CCURE 9000 PACS Plug-in capabilities:
UTC Facility Commander Wnx 7.5, 7.6
UTC Facility Commander Wnx 7.5, 7.6 PACS Plug-in capabilities:
UTC Picture Perfect 4.0, 4.5

All PIVCheck Desktop and PIVCheck Mobile systems on site communicate with a single Picture Perfect 4 PACS Plug-in Extension. Because the PIVCheck PACS Plug-in extension is Microsoft Windows-based, it must be installed on a Windows computer, and cannot be co-located with the Picture Perfect server.

UTC Picture Perfect 4.0, 4.5 PACS Plug-in capabilities: