Replacing low assurance credentials

August 30, 2024 – From the desk of Trent White

Are you issuing a low assurance credentials in a high assurance access control environment? Examples of low assurance credentials are low security access cards like Prox, iClass, SEOS and MiFare Classic/Desfire.  What do you do for students, interns, and short-term employees who may only be on-site for 90 days but will not receive their PIV card until near the end of their time? What about long term contractors or employees who may not be eligible for a PIV card? Visitor badges are intended for short term use, but we know facilities are making exceptions and by doing so taking a big security risk. You can issue all of those people a high assurance credential controlled in your environment instead of taking that risk.

FIPSlink by Identity One has the solution with FIPSlink CMS (Card Management System) and FIPSlink Visitor. FIPSlink CMS is a fully integrated PIV and PIV-I Card Management System for enrollment of people (capturing photo and ANSI378 fingerprint), issuance of certificates for the person and card, and writing to the PIV or PIV-I card. When FIPSlink CMS is coupled together with FIPSlink Visitor temporary CIV / PIV-I cards can be issued to be visitors from a Kiosk. 

FIPSlink CMS and FIPSlink Visitor is a cost-effective solution for using PIV / PIV-I cards in place of traditional low assurance credentials like iCLASS, SEOS, Proximity and MiFare Classic/Desfire. It is designed to fill the gap between an Enterprise-Wide CMS and the need for a locally administered system. Simple setup and configuration management with built-in certificate authority deployed on-premises.

Let’s discuss how FIPSlink CMS and FIPSlink Visitor can help eliminate vulnerabilities in your security plan.

Click here to contact Trent White and learn more.

About Identity One

Identity One builds on the FIPS 201 standard, creating innovative next generation registration, validation, issuance visitor management, visitor PIV card and derived credentials for CAC, PIV and TWIC.  Identity One’s solutions serve physical access, logical access for TWIC compliance, US Federal Government Security and US Armed Forces Security. We issue, register and verify identities for frictionless access and integration everywhere, protect identities from being impersonated, and secure intellectual property. We digitally verify identities for the physical and logical world. Identity One software and services are BAA (Buy American Act) compliant and TAA (Trade Agreements Act) compliant. Identity One is headquartered in Atlanta, Georgia, USA and all our products are proudly made in the USA.