Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

113 results about "Physical access" patented technology

Physical access is a term in computer security that refers to the ability of people to physically gain access to a computer system. According to Gregory White, "Given physical access to an office, the knowledgeable attacker will quickly be able to find the information needed to gain access to the organization's computer systems and network."

Physical access control apparatus driven by a mesh of surveillance sensors which distinguish abnormal from normal variance, by machine learning shared among edge computing devices

A system transforms video frames into event metadata reports on object recognition and occupancy patterns and trends. Each camera distinguishes foreground content and uploads meta data and changes. Occupancy within bounding boxes, and object pre-cognition are transformed to non-image event data sets. Objects and persons of interest are tagged for optical tracking and correlation. Cloud analytics estimate probabilities of occupancy and change. Periodic capture is augmented by expectation of peaks and valleys. Imagery and event meta data across multiple cameras are combined for object recognition. The cloud reports and predicts regions of interest due metrics of occupancy. Each edge device is trained on the local topology of other edge devices and actuators through which objects may pass before and after entering its region of interest. Edge devices collectively initiate physical access actuator controls, predict events for other edge devices, and transmit alerts when low probability events occur.
Owner:EAGLE EYE NETWORKS INC

Distributed one-time-use entry code generation for physical access control method of operation and mobile systems

Embodiments of a physical access control system may grant authorized portal entry upon receiving a physical access request by generating a temporal credential based on the elapsed time from a prior access request. The controller processes multiple physical access requests from various mobile application devices. For each mobile application device, embodiments may authenticate an initial (predecessor) access request. For subsequent (successor) access requests, embodiments may use monotonic nonces to advance the range of temporal code matches. Entry code generation is decentralized to distributed application devices and remains unpredictable until a subsequent (successor) access request is initiated by the same mobile application device.
Owner:BRIVO INC

Single credential admittance applied to a plurality of individuals by video image transformation system and method of operation

A single credential capture event enables a plurality of persons to transit a physical access control portal. A cohort is determined when each of a plurality of persons is found within an identity indicia store. When a credential for any one of the cohort is validated, a physical access control actuator is enabled. A video stream of the plurality of persons is transformed to a plurality of best face images. When each one of the best face images is correlated with an entry in the identity indicia store above a threshold, a potential validation window is opened for the cohort. When a credential event for any of the plurality of persons occurs within the validation window, admittance is enabled through the physical access control portal. A cohort is a contiguous sequence of persons which begins with a first correlated best face and is terminated before the first uncorrelated best face.
Owner:BRIVO SYSTEMS LLC

Methods and systems for detecting a discrepancy between access rules of access control equipment and an access policy

Methods, systems, and computer-readable media are described herein for receiving access events from access control equipment controlling physical access to a secured premises, comparing each access event to an access policy, detecting that a particular access event violates a clause of the access policy, and generating a compensatory action item for the particular access event that violates the access policy. The access control equipment includes a door controller and one or more readers in communication with the door controller. The door controller is configured to receive requests from the one or more readers, to control access to the secured premises based on access rules for the secured premises, and to generate the access events based on the requests from the one or more readers.
Owner:GENETEC

Physical security system and method for effecting a temporary access permission change

A physical security system and method for effecting a temporary access permission change are disclosed. The method includes analyzing context information, corresponding to a defined and applied, time-limited video redaction, to responsively define the temporary access permission change impacting a physical access control system of the physical security system. The method also includes effecting the temporary access permission change to at least make entry via an at least one entry barrier of the physical access control system more restricted than before the effecting of the temporary access permission change.
Owner:MOTOROLA SOLUTIONS INC

Method and apparatus for policy based access control

An authorization approach to physical access uses identity attributes, doors / readers attributes, time of the day, and policies to determine access rights to facilities and physical spaces in real-time, based on three criteria: who, when, and what. Embodiments address the constantly changing physical access needs of companies as those needs evolve.
Owner:ALERT ENTERPRISE

Systems, apparatus, and methods for access resolution based on situational awareness

PendingUS20250316122A1Individual entry/exit registersPrivacy protectionBinary outcome
Systems, apparatus, and methods for access resolution based on situational awareness. The system adapts to the behaviors of users and provide more secure, more natural operation. Unlike existing solutions that are focused on a single factor / multi-factor authentication and binary outcomes (grant / deny), the exemplary “physical access resolution” system assesses the entire access event (not just identity) and may responsively launch multiple resolutions at points throughout the access event (not just a binary decision). Various entities employ layers of abstraction and integration between logical layers to allow for integration across nodes. Information collection may be staged and handled with varying levels of privacy protections. Access resolution may be implemented according to multi-modal and / or confidence-based metrics.
Owner:DURIN INC

Verified physical access of telecommunications network subscribers at third-party events or venues

The verification of individuals entering controlled locations such as events and venues is improved by using wireless devices as the entry tickets themselves, verifiable by a telecommunications network. The wireless device provides a network subscriber's identification information (e.g., a phone number) to an access point terminal, in response to an identification / authentication request from the access point terminal. In order to obtain the identification information to provide to the terminal, the wireless device verifies itself via the telecommunications network, which is capable of verifying the device's subscriber identity module (SIM) via cryptographic protocols. Thus, by verifying the device's SIM, the telecommunications network verifies the identity of the network subscriber operating the device, for purposes of sharing a phone number as an entry ticket. Because entry is controlled according to the device's own network-verifiable identity, third-parties that operate events or venues need not distribute entry tickets (e.g., physical or electronic) to individuals.
Owner:T MOBILE US INC

Context-aware elm security analysis and response

An improved context-aware security system may include an artificial intelligence (Al) reasoning security system. The context-aware security system may be configured to receive security input data from a plurality of input sources, generate a contextual security analysis, identify a security response, and send instructions to a security system output device to execute the security response. The context-aware security system may include a plurality of security input sources configured to provide security inputs and contextual data, including credential readers, physical access controllers, security sensors, environmental sensors, or external information sources. The context-aware security system may include a directive input subsystem configured to receive security directives from an authorized user interface. A plurality of security system output devices may be configured to execute the security response, including credential reading systems, biometric systems, alerting systems, logging systems, or notification systems.
Owner:HID GLOBAL CORP

Multipath link optimization for private mobile network

Some embodiments of the invention provide a method for link optimization in an SD-PMN defined over at least a first site of a first entity and a second site of a PMN-provider. The method configures a first portion of the SD-PMN deployed at the first entity's first site, the first portion of the SD-PMN including at least one or more physical access points for connecting user devices at the first entity's first site to the SD-PMN and one or more control plane components of the SD-PMN. The method configures a first edge router deployed at the first entity's first site to use multiple links including at least one commercial Internet network link between the first edge router and a gateway router deployed in the PMN-provider second site to reach the PMN-provider second site and to perform a multi-link optimization process on the multiple links to establish a secure tunnel for use in communicating with the gateway router.
Owner:VELOCLOUD NETWORKS LLC

A safety protection device

This invention relates to the field of industrial safety technology, and in particular to a safety protection device, comprising a cabinet with an installation port. Baffles are installed on the inner walls of both sides of the installation port near the inner side of the cabinet, and an openable door is provided on the inner wall of the installation port near the outer side of the cabinet. A first type of sensor is disposed between the door and the baffles to detect the opening and closing state of the door and output a first state signal. A second type of sensor is disposed at the installation port to detect intrusion into the area of ​​the installation port and output a second state signal. A safety controller is mounted on the baffles. This invention integrates physical access control sensing and open area photoelectric sensing through the first and second types of sensors, achieving comprehensive protection with both contact and non-contact warnings, thus achieving a dual warning effect to prevent personnel from entering dangerous areas.
Owner:KUNSHAN SEAGEAR AUTOMATION SYST CO LTD

Context-tagged access credentials for physical access control

In one example, a method for context-tagging access credentials for physical access control includes receiving, by an access control device associated with a locking device for a controlled area and from a computing device, an access request including one or more access credentials and contextual information indicating one or more activities being performed by a user of the computing device, and determining, by the access control device, whether the contextual information satisfies one or more contextual conditions. The method may further include determining, by the access control device, whether the one or more access credentials are valid, and, responsive to determining that the one or more access credentials are valid and responsive to determining that the contextual information satisfies the one or more contextual conditions, changing, by the access control device, a state of the locking device.
Owner:GOOGLE LLC

Systems and methods for authentication of physical access tokens at access terminals

In certain embodiments, a physical network access token at a network access terminal may be authenticated for modification of records at a remote server system. In some embodiments, a set of records and counterpart records having the same record identifiers and resource amounts may be stored independently on a physical token or user device and the remote server system. When a connection is established between an access terminal and the physical token (e.g., for authenticating a modification of record(s)), the access terminal may transmit input data to the token, which may use the input data with the records stored on the token to generate authentication data, which may be used by the remote server to authenticate a network action requested via the token.
Owner:MILES STANLEY KEVIN

Methods and apparatus for accessing secured physcial assets at a facility utilized for maintenance and management

Asset access systems in accordance with various embodiments of the invention utilize a two-dimensional (2D) code that allows a user to gain physical access to and take possession of a key fob, where key fob is understood to represent any wireless device that interacts with a vehicle control system to access, manage, and operate the asset. Users of the system will present the 2D code to a transaction client that grants the user access to the key fob. Transaction clients can reside at various facilities that do not employ humans as part of the asset transfer to the user. Upon completion of the return of the asset to the facility, the user will present a new 2D code to the human-less access system that allows the user to return the key fob or other physical asset to a designated location at the transaction client.
Owner:1 MICRO LLC

Systems and methods for determining possession of mobile devices holding digital credential

A method of operating a seamless physical access control (PAC) system includes receiving, by a verification device of the PAC system, credential information from a credential device; receiving inertial measurement unit (IMU) information from the credential device; receiving video data from another device different from the credential device, the video data including images of one or more persons; and correlating movement of the one or more persons detected in the video data with the received IMU information to identify a person in the video data as a holder in possession of the credential device.
Owner:HID GLOBAL CORP

Intelligent asset management method and system based on multi-modal interaction and intent understanding

The application discloses an intelligent asset management method and system based on multi-modal interaction and intention understanding, and belongs to the technical field of Internet of Things and artificial intelligence interaction. The method comprises the following steps: collecting a voice instruction of a user in response to the passing of user identity authentication; performing intention recognition and slot filling on the voice instruction, and extracting structured operation information containing an operation intention, an asset identifier and an operation quantity; generating a structured business record based on the structured operation information; performing authority decision according to the structured business record, and controlling to open a storage door after the decision passes. The system comprises an identity authentication module, a voice collection module, a sensor array, an edge computing main control, an electronic lock control module and a communication module. The application automatically maps a physical access operation into a structured business record, realizes in-process compliance control and multi-modal data cross verification, has a delay record degradation path, and solves the technical problems of log hollowing and low compliance data collection rate of existing asset management equipment.
Owner:周乐熙

System and method for establishing a virtual access point

System and method for establishing a virtual access point (vAP) is described. A wireless network includes a router to provide access to external networks, physical access points (pAPs) to provide radio communications access to a user device, and a controller to form a vPA by layer two link aggregating the pAPs using access point and configuration information and send a virtual service set identifier (vSSID) to the pAPs. The vAP having a layer two data plane and control plane. The vAP provides a wireless coverage area equivalent to the pAPs using the vSSID, enable a user device to connect to the data plane via a data link, connect to the control place via layer two control links, and radio frequency connect to the pAPs. The controller and the pAPs configured to manage user data traffic flow between the router and the user device via the control and the data planes.
Owner:CHARTER COMM OPERATING LLC

Web-cloud hosted unified physical security system

A system comprises a web-cloud security subsystem that hosts, manages, and analyzes data related to a plurality of hosted applications that provide at least one of physical access control, surveillance, alarm management, visitor management, and elevator management; at least one physical security subsystem that exchanges data with a corresponding hosted application of the web-cloud security subsystem; and a real-time control and monitoring device that provides secure access of the web-cloud security subsystem.
Owner:BLUBOX SECURITY INC

Real-time broadcast program emergency processing system and method

The invention discloses a real-time broadcast program emergency processing system and method, and the system comprises a hardware layer which completes signal physical access, computing power support and data storage; the data acquisition and preprocessing layer is used for uniformly acquiring and processing multi-source heterogeneous monitoring signals, mainly realizing demodulation, descrambling and demultiplexing of the signals, code stream trimming and IP multicast, and realizing radio frequency monitoring, TS stream monitoring, environment monitoring and EFD intrusion alarm; the core algorithm layer is used for completing feature modeling, multi-channel signal comparison, abnormal classification positioning and continuous model iteration; the application service layer is used for realizing business logic processing, fault warning and automatic handling, and data query and analysis; and the user interaction layer realizes man-machine interaction, state display, model management and compliance auditing. In the aspect of broadcast program degradation identification, the accuracy and the response speed can be improved, so that the aims of reducing the error rate and the accident level of safe broadcast and improving the operation and management level of the safe broadcast are fulfilled.
Owner:SHANGHAI MEDIA & ENTERTAINMENT TECH DEV CO LTD

Single physical access point based roaming test system

Examples provide new roaming test systems for network deployments that can be implemented remotely using a single physical AP. Examples achieve this elegant system by emulating a physical network deployment using a group of VAPs provisioned on the single physical AP (a VAP may refer to a logical or a virtual AP instance on a physical AP). Each VAP of CAP group may be configured to represent a physical AP of the physical network deployment (such a network deployment may be a prospective deployment or, an actual / set-up deployment). Examples can simulate / emulate a wireless client physically moving between physical APs of the network deployment by varying transmission power associated with each VAP as a function of time in a manner that mirrors how a wireless client would perceive transmission power varying for physical APs of the network deployment (represented by the VAPs) as the wireless client moves across the geographical site of the network deployment.
Owner:HEWLETT PACKARD ENTERPRISE DEV LP

Method and system for unauthorized person alerting

A method and system for unauthorized person alerting. The method includes activating at least one non-imaging sensor to capture non-imaging data. The non-imaging sensor monitors an area in respect of which a physical access control system restricts access. At least one processor is employed to generate a count of people present in the monitored area from computerized analysis of the non-imaging data. An unauthorized person alert is generated based on at least one of a plurality of alert conditions being satisfied.
Owner:MOTOROLA SOLUTIONS INC

System access using mobile devices

Embodiments of the present disclosure relate to system access using a mobile device. The present invention discloses techniques related to electronic security, such as for authenticating a mobile electronic device to allow access to system functions (e.g., physical access to the system, starting the engine / motor, etc.). In some embodiments, the system and the mobile device exchange public keys of a public key pair during a pairing process. In some embodiments, an asymmetric transaction process includes using a key derivation function to generate a shared secret based on a key established using a secure key exchange (e.g., Elliptic Curve Diffie-Hellman) and verifying the signature of the system before transmitting any information identifying the mobile device. In various embodiments, the disclosed techniques can increase transaction security and the privacy of identification information.
Owner:APPLE INC

Switching between physical access points sharing the same virtual access point identifier

A method for managing switching of a terminal between a plurality of physical access points to a Wi-Fi network, a virtual access point identifier dedicated to the terminal being assigned by a controller to a first physical access point, the terminal associating with the first physical access point by a first connection using the virtual access point identifier. The method includes at the first access point: transmitting, from the first physical access point to the controller, information relating to the capabilities of the terminal, receiving an order to switch from the first connection to a second connection established between the terminal and a second physical access point of the plurality using the same virtual access point identifier, the first and the second connections being adapted to the capabilities of the terminal.
Owner:ORANGE SA

Object hierarchy to support device configuration in physical access control systems

Example implementations include a method, apparatus, and computer-readable medium for configuring a device in a physical security system via an open architecture. The device receives a command from an application via a publish-and-subscribe broker. The command includes: a type field indicating the command, a source field indicating the application, a timestamp, and a payload including a list of objects, each object including one or more parameters defined by a field name, a datatype, one or more possible values, and a mandatory status. The device transmits an event message to the application via the publish-and-subscribe broker, the event message includes a type field identifying the event message, a source field identifying the device, a timestamp, and a payload including a type field identifying a type of event.
Owner:TYCO FIRE & SECURITY GMBH

Offline mode NFC-based FIDO2 Authentication System for Door / Turnstile Access Control

The present invention relates to an offline mode Near Field Communication (NFC)-based FIDO2 authentication system for door and turnstile access control. This system comprises a FIDO2 security key, an NFC reader, and a door controller. The FIDO2 security key stores user credentials and performs cryptographic operations, while the NFC reader communicates with the key to authenticate users. The door controller, connected to the NFC reader, controls the door lock mechanism based on authentication results. The system operates without continuous network connectivity, providing secure offline authentication. The NFC reader performs several operations: it receives credential data from the FIDO2 security key, generates and transmits a cryptographic challenge, receives and verifies a signed response using a pre-stored public key, extracts a Physical Access Control (PAC) number upon successful authentication, and transmits the PAC number to the door controller to grant or deny access.
Owner:SINGH SHASHI PRAKASH +1

Physical security system and method for effecting a temporary access permission change

A physical security system and method for effecting a temporary access permission change are disclosed. The method includes analyzing context information, corresponding to a defined and applied, time-limited video redaction, to responsively define the temporary access permission change impacting a physical access control system of the physical security system. The method also includes effecting the temporary access permission change to at least make entry via an at least one entry barrier of the physical access control system more restricted than before the effecting of the temporary access permission change.
Owner:MOTOROLA SOLUTIONS INC

Beacon and device location verification using additional generated codes

A method of operating a physical access control system (PACS) includes detecting, by a credential device of the PACS, a beacon signal associated with a physical access portal of the PACS; reading, by the credential device, beacon authentication information for the beacon signal; authenticating the beacon signal using the beacon authentication information; proceeding with a process of authentication of the credential device when the beacon signal is authenticated, and ending the process of authentication of the credential device when the beacon signal is not authenticated; and initiating access to a physical access portal conditional on authentication of the credential device.
Owner:ASSA ABLOY AB

Thermal imaging for room-level real-time location service

PendingUS20260253470A1RoombaPhysical access
A method of operating a real-time location services (RTLS) system includes obtaining, by a processing device of the RTLS system, location information identifying an object or person and a building-area location of the object or person; obtaining, by the processing device, access-event information of a access of a physical access portal associated with the building-area location; and matching the location information of the identified object or person and the access-event information and generating an indication of the building-area location of the object or person using the processing device in response to the matching.
Owner:HID GLOBAL CORP +1

Distributed one-time-use entry code generation for physical access control method of operation and mobile systems

A physical access control system enables acceptable portal entry codes upon receiving each physical access request by operating on the elapsed time from a previous physical access request to generate a temporal credential. The controller receives a plurality of physical access requests from a plurality of mobile application devices. Upon authenticating the first access request, the controller eliminates repetition from the space of acceptable successor requests from each mobile application device. Monotonic nonces advance the range of temporal code matches. Entry code generation is decentralized to distributed application devices and is inherently unknowable until a successor access request is initiated by the same application device.
Owner:BRIVO SYSTEMS LLC