NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting...

105
NetTech Rich Ames :Training

Transcript of NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting...

Page 1: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

NetTech

Rich Ames :Training

Page 2: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

IP Network

Alarm

Door LockReader

Portal

6

5

4

3

2

1

ElevatorLighting

NetBox

Security Monitor

Remote Support

Security Administrator

IP Camera Video Recorder

Analog Camera

Alarm Panel

NetBox Node

Temp Probe

IP Camera (PTZ)

Photo ID Camera Photo ID Badge

Printing

S2 System Architecture

Door Lock

Portal

Reader

Internet

Temp Probe

Door Lock

Portal

NetDoor Node

IP Network

Reader

GateReader

Portal

Page 3: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Network Controller, Node & Expansion Blades

Page 4: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

NetDoor Node, with Access Blade

Page 5: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

IP N

etwork

Controller192.168.0.250

Node192.168.0.245

Node192.168.0.220

192.168.0.237

NetDoor Node

192.168.1.201

NetDoor Node

Internet

S2 System

Page 6: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

S2 Hardware Standard (Solid State) LimitationsS2 Net Box Nodes per

System 24

Card Readers per System 140 Tested/Certified

Access Cards per System 60,000

Card Formats 32

Simultaneous Users 10

Alarm Input Points 500

Output Dry Contacts 500

Temperature Probe Inputs 500

Online event history log 50,000 records

Time specifications 100

Threat Levels 8

Holidays 30

Cards per person 100

Page 7: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

S2 Hardware Enterprise (Hard Disk) LimitationsS2 Net Box Nodes per

System 256

Card Readers per System 3500

Access Cards per System 150,000

Card Formats 32

Simultaneous Users 25

Alarm Input Points 7168 *

Output Dry Contacts 7168 *

Temperature Probe Inputs 7168 *

Online event history log 50,000 records

Time specifications 100

Threat Levels 8

Holidays 30

Cards per person 100

Page 8: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Enterprise System

Enterprise Controller

Page 9: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

S2 Combo Board

Controller LEDNC to NNNC to NN SpeedNN CountN ComConnectionActivity

Node LEDActionCo-ProcessorNN ComPowerNN to NC SpeedNN to NC Activity

Page 10: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Initmode

• Starting point with new NetBox Controller

• Set IP Address (Controller starts on “0” subnet)

• Set Time (Controller)• Email Settings• Initmode (turn off?)

Page 11: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Localization

• Date Formats– 05/31/2004– 31/05/2004– 2004/05/31

• Languages– English - Spanish– Thai - Italian – French - Japanese – Portuguese - Chinese

Page 12: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Network Port Usage

Page 13: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Securing NetBox Data:

S2 NetBoxNetwork Node

S2 NetBoxNetwork

Controller

Browser

Other Systems(NBAPI)

Encryption

Authentication/Tamper Detection

SSLUser Authentication

Roles-based UI Authorization

Authentication/Tamper Detection

SSL

Assumption: Interactions between the various networked components in any Network are not inherently secure.

For the S2 System,

each of these pathways is secured.

Page 14: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Secure by Design

• Minimal security vulnerabilities:– The NetBox is a “locked down” networked information appliance.

• S2 controls the software/firmware that is on it.

– The NetBox has a single purpose.• It is not a general purpose computer.

• Minimal chance for virus attacks

• Network Security– User Login, User Roles, Session Token– SSL– Encryption– Authentication & Tamper Detection

Page 15: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Access Blade & NetDoor Blade

REX (Input)

Buzzer (Alarm > Output)

DSM (Input)

Door Lock (Alarm > Output)

Card Reader (Reader/Keypad)

3-pin outputs2-pin inputs

Position 1 2 3 4 1 2 3 4

#1

#2

7-pin readerconnectors

Access Blade

Reader 1

Reader 2

1234

1234

Temp Input

OutputsInputs

Net Door

Page 16: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Access Control Blade

• Two card reader connectors– Readers using standard Wiegand output

up to 128 bits are supported.– 500 feet (152 meters)

• Four Supervised Inputs– Door contacts and REX devices.– Standard two wire inputs (supervised or

unsupervised).– 2000 feet (610 meters)

• Four Relay Outputs– Strike output, door opener, buzzer.– Standard 3 pin normally open or normally

closed.– 2000 feet (610 meters)

• NOTE: Inputs and Outputs not used for door hardware can be used for other functions.

3-pin outputs2-pin inputs

Position 1 2 3 4 1 2 3 4

#1

#2

7-pin readerconnectors

2 Wiegand Readers

4 Inputs 4 Outputs

Page 17: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Alarm Inputs

• 8 Standard two wire inputs.

• A variety of supervised and unsupervised inputs can be configured: PIR, Exit Request, Alarm button. Door Status Monitor

• Input blade barcode numerals begin with “01.”

2-pin inputs

Position 1 2 3 4 5 6 7 8

Input State Resistance Values Normal 1k Ohms Alarm 0.5k Ohms or 2k Ohms Short 0 Ohms Open No Current

Page 18: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Temperature Inputs

• 8 Standard two wire inputs.

• S2 temperature probe. Max distance 500 ft. (1000 ft with Category 5 wire)

• Operating Range: -55º C to 100º C (-67° F to 212° F)

• Temperature blade barcode numerals begin with “08.”

• NOTE: For distances up to 500 feet (152.4 meters) use Category 3 cable. For distances over 500 feet up to 1000 feet (304.8 meters) use Category 5 cable.

2-pin inputs

Position 1 2 3 4 5 6 7 8

Page 19: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Output Blade 3-pin outputs

Position 1 2 3 4 5 6 7 8

Output devices: Strikes,Mag locks, sounders, etc.

• Eight 3-pin output relays– Standard normally open or

normally closed Form C Relays– Suitable for controlling many

strikes, but a step up relay should be used for magnetic locks.

– Max ratings: 30 Volts DC or AC, 2.5 Amps inductive or 5.0 Amps non-inductive

– Requires appropriate suppression: MOVs or diodes

Page 20: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Expansion Slots

Slots 0 1 2 3 4 5 6 7

Slot 0 is for the Controller/Node

0

Slot/Connector Positions

Page 21: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

The Portal

• Access or Egress Point– Door

– Gate

– Turnstile

• Associate Inputs and Outputs– Readers, Keypads– Locks– Rex, DSM

Page 22: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

REX (Input)

Buzzer (Alarm > Output)

DSM (Input)

Door Lock (Alarm > Output)

Card Reader (Reader/Keypad)

3-pin outputs2-pin inputs

Position 1 2 3 4 1 2 3 4

#1

#2

7-pin readerconnectors

Access Blade & Portal

Access BladePortal

Page 23: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

10 Steps to Gain Simple Access

1. Wire and connect a Reader and Door Lock.

2. Define a Reader

3. Define an Output (Lock)

4. Define a Portal with Reader and Lock

Page 24: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Basic Access Requirements

Lock

Portal

Reader

Page 25: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

10 Steps to Gain Simple Access

1. Wire and connect a Reader and Door Lock.

2. Define a Reader

3. Define an Output (Lock)

4. Define a Portal with Reader and Lock

5. Define a Card Format

Page 26: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Decoding Credentials

• Test and Compare to determine format• Decode content

Page 27: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Basic Access Requirements

Lock

Portal

Reader

Page 28: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

10 Steps to Gain Simple Access

1. Wire and connect a Reader and Door Lock.

2. Define a Reader

3. Define an Output (Lock)

4. Define a Portal with Reader and Lock

5. Define a Card Format

6. Define an Access Level for Readers/Groups

Page 29: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Basic Access Requirements

Lock

Portal

Access Level

Reader(s)

Time Spec

Reader

Page 30: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

10 Steps to Gain Simple Access

1. Wire and connect a Reader and Door Lock.

2. Define a Reader

3. Define an Output (Lock)

4. Define a Portal with Reader and Lock

5. Define a Card Format

6. Define an Access Level for Readers/Groups

7. Add a Person

8. Assign a Card

9. Assign an Access Level

Page 31: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Basic Access Requirements

Lock

Portal

Person (Card Holder) Record

Access Level

Reader(s)

Time Spec

Reader

Page 32: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

10 Steps to Gain Simple Access

1. Wire and connect a Reader and Door Lock.

2. Define a Reader

3. Define an Output (Lock)

4. Define a Portal with Reader and Lock

5. Define a Card Format

6. Define an Access Level for Readers/Groups

7. Add a Person

8. Assign a Card

9. Assign an Access Level

10. Present the card to the reader to unlock the Door

Page 33: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Basic Access Requirements

Lock

Portal

Person (Card Holder) Record

Access Level

Reader(s)

Time Spec

Reader

Page 34: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

NetBoxNavigation

Page 35: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Card or Keypad vs Card + PIN• Card or Keypad entry:

– Reader defined • Reader only

– Keypad Format• Credential format

– Portal • Reader Only

• Card + PIN– Reader defined

• Reader or Reader + Keypad

– Keypad Format• For Keypad

– Portal• Reader• Keypad

Page 36: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Personal Information

• Optional Tabs– Contact– Other Contact– User Defined– Vehicles (Parking)

• User Defined Tab– 20 fields available– User Defined Labels for Tab and Fields.– Show? Y/N– Use fields for sorting and filtering reports

Page 37: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Photo ID

• License required (Badge)– Supports Canon PowerShot digital cameras A70, A75, A80, A85,

A95, A510, A520, A620, A640, G3, G5, G6, G7, G9, Pro 1, S3 IS, S5 IS, S70, S80 and SX100 IS

Page 38: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Support Information

Your Company Contact Information • On “Dealer Info” Page • On “About” page

Page 39: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Support Information

Your Company Contact Information • On Dealer Page • On “About” page

Page 40: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Inputs

• Two Pin Relays– Used to monitor status or receive

input

• Supervision Types– Dual Resistor NO or NC

• Four States: Normal, Alarm, Short, Open

– Parallel Resistor NO or NC• Three States: Normal, Alarm,

Open/Short– Series Resistor NO or NC

• Three States: Normal, Alarm, Open/Short

– Unsupervised NO or NC• Two States: Normal, Alarm

3-pin outputs2-pin inputs

Position 1 2 3 4 1 2 3 4

#1

#2

7-pin readerconnectors

2-pin inputs

Position 1 2 3 4 5 6 7 8

Page 41: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Dual Resistors

Input State Resistance Values Normal 1k Ohms Alarm 0.5k Ohms or 2k Ohms Short 0 Ohms Open No Current

Page 42: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Normally Closed Parallel Resistor

Input State Resistance Values Normal 0 Ohms Alarm 1k Ohms Open No Current

Page 43: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Normally Closed Series Resistor

Input State Resistance Values Normal 1k Ohms Alarm No Current Short 0 Ohms

Page 44: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Normally Closed Unsupervised

Input State Resistance Values Normal 0 Ohms Alarm No Current

Page 45: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Normally Open Parallel Resistor

Input State Resistance Values Normal 1k Ohms Alarm 0 Ohms Open No Current

Page 46: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Normally Open Series Resistor

Input State Resistance Values Normal No Current Alarm 1 Ohms Short 0 Ohms

Page 47: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Normally Open Unsupervised

Input State Resistance Values Normal No Current Alarm 0 Ohms

Page 48: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Output Relay Connectors

Normally EnergizedNormally Not Energized

Page 49: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Local to Node Events

• Output activated by Portal Status• Timed or for Length of Status.

Page 50: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

The Portal

• Access or Egress Point– Door

– Gate

– Turnstile

• Associate Inputs and Outputs– Readers, Keypads– Locks– Rex, DSM

• Events– Local to Node

• Outputs– System Wide

• Event Actions and Alarms

Page 51: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Momentary and Scheduled Actions

• Access Portals for impromptu unlock/lock– Momentary – quick unlock and relock

• Scheduled Portal Unlock– Used to temporarily unlock for one-time activity– Start time and date or Now– End time and date or after X period of time– Comment is a good idea – it documents unlock reason

Page 52: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Time Specs & Holidays

• Holidays: normal function does not apply unless specified as part of the controlling Time Spec.

– Define Beginning Date/Time and Ending Date/Time– 3 Holiday Groups: Must be in at least one group.

• Holidays are not part of Access Level unless specified in the Time Spec.

Page 53: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Time Specs & Holidays• Time Spec is a period of time definition

– 2 standard time specs (Cannot be changed)• Always• Never

– Specify Start and End Times– Days of the week and Holidays that apply

Page 54: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Time Specs: Where are they used?

• Access Level: Time Spec

• Floor Groups: Free Access Time Spec

• Portal Groups: Unlock Time Spec

• Alarm Panel: Auto Arm Time Spec

• Input Groups: Auto Arm Time Spec

• Output Groups: Auto Activate Time Spec

• Events – Enabled Time Spec

• Portals: – Keypad Time Spec,– Exit Reader Time Spec– Exit Keypad Time Spec

Page 55: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

First in Unlock, (Monitored Unlock)

• Works with Portal Group Unlock Time Spec• Set up in System Rules

– Requires a special Access Level (You should limit who can do this)

– Set Unlock access level (required to activate unlock time spec)– Set Re-Lock access level (automatic relock at end of time spec)– Set reset time: resets to locked starting position.

• Portal Group must have– Unlock Time Spec and First In Unlock Rule

• Unlocks Door(s) with badge read during unlock time spec• Relock at end of unlock time spec or with Relock Access

Level badge read.

Page 56: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Threat Levels

• Pre-defined to match US Homeland Security Definition and color coding.

– You can add your own (snow day)– You can upload your own Threat

Icon• Use to mass change Access ability

- Quick Lock down - • Must Assign Threat Level Groups to all

Access Levels

• Activated by Event or Manually by pre-authorized person.

• Must reset after Threat Level has changed

– Manually (may require password)– Input Event with change Threat

Level action• Make sure someone has access

during Lock Down.

Page 57: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Passback and Tailgate Violations

• Definitions: – Passback is when a card is “passed back” to another person so

both can gain access on same card.– To Tailgate is to gain access without a valid card read and without

forced entry.

• Time may be used to determine passback violation.• Regions are used to determine either violation

– At least two regions required for passback violation.– At least three regions required for Tailgate violation.

Page 58: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Region 1

Uncontrolled

Uncontrolled

Reader A: In UncontrolledReader B: In Uncontrolled

Portal: Main EntranceReader 1. Reader A

Access to Region 1

Region 1Passback? - Time onlyTailgate? - No

Regions

Page 59: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Region 1

Uncontrolled

Uncontrolled

Reader A: In UncontrolledReader B: In UncontrolledReader C: In Region 1Reader D: In Region 1

Portal: Main EntranceReader 1. Reader A

Access to Region 1Reader 2. Reader C

Access to Uncontrolled

Region 1Passback? - Time or RegionTailgate? - No

Regions

Page 60: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Passback and Tailgate Violations

• Definitions: – Passback is when a card is “passed back” to another person so both

can gain access on same card.– To Tailgate is to gain access without a valid card read and without

forced entry.

• Time may be used to determine passback violation• Regions are used to determine either violation

– At least two regions required for passback violation.– At least three regions required for Tailgate violation.

• Actions to be taken (defined in Region definition)– Soft - Log entry but allow access– Hard - Log entry and deny access– Ignore – allow access.

Page 61: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Regions

Region 1

Region 3

Uncontrolled

Uncontrolled

Region 2

Reader D: In Region 3Reader E: In Region 2

Portal: Lab Back DoorReader 1. Reader E

Access to Region 3Reader 2. Reader D

Access to Region 2

Region 3Passback? - Time or RegionTailgating? - Region

Page 62: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Regions

Region 1

Region 3

Uncontrolled

Uncontrolled

Region 2

Reader B: In Region 1Reader C: In Region 3

Portal: Lab Front DoorReader 1. _________________

Access to ________Reader 2. _________________

Access to ________

Page 63: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Technical and Installation Information* For a password (must register on website):

– www.s2sys.com

– Support Phone: (508) 663-2505

Page 64: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

S2 Support Central - Downloads

Page 65: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Miscellaneous Information

• Photo ID URL – Storage location for Person Pictures– Default on Controller /upload/pics– Off-board location NAS

• Photo ID Layout – default layout for badges• Enrollment Reader – for assigning access cards to People• Default Card Format – Can change when issuing cards• Hide Unpermitted Access Levels – Only allows certain User Roles to see

Access Levels• PIN entry timeout – System wide time allowed for PIN entry after card read.• ODBC Report user password – password protection for ODBC connection

direct to Network Controller for user defined reports.• Log Archive Interval – Time interval between automatic archive creation of

Activity Log.• Temperature Scale – For Temperature input unit of measure.• Unacknowledged Alarm Audio – Wave file to play once per minute during

unacknowledged alarm (System Wide Action)

Page 66: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Configure Remote Nodes

• Portable Node Configuration Utility

• Finds Nodes on network• Displays Node Address,

Netmask and Gateway• Assign Network Controller

Page 67: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Backups(Backup is only needed when you haven’t)(Murphy’s IT corollary)

• Automatic Backup daily.– System holds up to 6 weeks– Sunday is a full backup … all

others are differential backups.– Seventh week starts overwrite

of oldest backup.• Backup writes to CFC• Optional to NAS and FTP site.

– Must set up NAS or FTP address and password.

– Will not overwrite old backups.• Use “get” to off-load backup to

laptop or off-site.• Save, Shutdown or Reboot

save to ROM is automatic (v3.0 or higher).

Page 68: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Backups to NAS or FTP sites

• FTP Backup (File Transfer Protocol) web site.

• Network Storage (NAS=network attached storage).

Page 69: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

System Upgrade

• Email Upgrade File (need i-button number, - serial number -)• Backup System• Upload patch file• Apply Upgrade• Backup System

Page 70: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Node Upgrade Activity Log

Node Disconnect for Upgrade

Node is back on-line

Page 71: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

IP Camera Configuration

• The Install Guide has a list of IP cameras that we have tried but any IP Camera should work. System ships with a growing set of camera types.

• Camera Types are user configurable – see manufacturer’s documentation for pan, tilt, and zoom (PTZ) URLs etc.

Page 72: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

IP Camera Configuration

• Camera Definition– IP Address of Camera (No http://)– IP Address of Control (No http://)– Port– If PTZ

• User Name• Password

Page 73: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

IP Camera and NetBox Interface

S2Browser UI

VideoPTZ S

etup IP Address

Page 74: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Events• Something that requires action

– Door Forced– Door Held– Input in abnormal state– Designated Alarm Input– Motion Detected– Invalid Entry Attempt

• Acknowledgment may be required

Page 75: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

– Send an SMS (text) message– Arm Alarm Panel– Disarm Alarm Panel– Move a Camera to a Preset (IP

cameras must be set up before you can use them in an Event)

– Save the event to an Activity Log– Record Video– Set a Threat Level

• Actions triggered by Event– Lock a Portal *– Unlock a Portal *– Momentarily unlock a Portal– Activate a Relay *– Deactivate a Relay *– Arm Input or Input Group– Pulse Output or Output Group– Send an Email

Events

Page 76: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Putting Events to Work

• Portal Status: System Wide Actions– React to Door State – React to Card Read

• Input Action: Off-normal event– Input activates Action(s)

Page 77: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Putting Events to Work

• Access Level Actions taken on entry– With Valid Entry

• Alarm Panel Actions based on Panel or Zone – Arm Failure– Activity in Armed Area

Page 78: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Putting Events to Work

• Temperature Events: Temp too High or too Low or Not Reading

• Node Status: Node Tamper, Timeout or Disconnect Alarm

Page 79: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Putting Events to Work

• Video Action: Record Video or Notify of Failed Camera– Normal activates when Camera returns to normal– Motion activates Recording– Fail activates when camera fails or stops communicating

Page 80: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Conceptually, the DVR and NVR are treated the same

DVR or NVR

S2Browser UI

Video

Setup

Page 81: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Floorplans

• Used to Monitor Activity or Status of– Portals – temporarily unlock– Cameras – thumbnail– Temperature – Graph of last hour, day, week.

• Link Detailed Floor Plans to General Floor Plans• Setup Sequence

– Upload jpg files– Define Floorplan– Place Resources

• Set Place• Resource type• Resource select• Save Floorplan

Page 82: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

The Five Steps to DVR/NVR Setup

1: Complete the set up of the DVR/NVR.

2: Point the S2 NetBox to the DVR/NVR.

3: Verify live video from the NetBox interface.

4: Set up Video Motion Detection from DVR/NVR.

5: Set up Video Recording Actions from the NetBox.

Page 83: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

1: Complete the set up of the NVR.

NVR Windows UI

Video Server S2 Milestone Generic Event BuilderS2 Milestone Service

Page 84: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

1: Complete the set up of the NVR.

• Install the software:– NVR Systems software components.

– S2 OVIDServiceHandles communications between NVR and the S2 Netbox.Service should start itself.Service creates its own Event Log.Make sure you set “Overwrite events as needed”Service should add itself to the Windows Firewall (requires

Windows XP SP2).

– S2 Generic Event Builder (Included with OVID Service)Creates correct Start, Stop and PTZ events for each camera.

Page 85: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

To open the Windows Firewall applet select Settings : Control Panel : Windows Firewall

Page 86: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

1: Complete the set up of the DVR.

DVR B

rowse

r UI

Page 87: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

1: Complete the set up of the DVR.

• Make sure you set up the cameras first, and verify that you can see live video through the DS2 interface.

• Be aware of browser capabilities.– DM is promoting use of Java over ActiveX.– JRE 1.4.2 or 5.0 required.– We are integrating their Java applet into our S2 NetBox

interface.

Page 88: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

2: Point the S2 NetBox to the Milestone Server

Setup

MilestoneVideo Server

S2 Browser UI

Page 89: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

2: Point the S2 NetBox to the DM DVR.

Setup

S2 Browser UI

Page 90: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

DVR or NVR

Video

3: Verify live video from the NetBox interface.

S2 Browser UI

Page 91: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

DVR or NVR

S2Browser UI

Video

4: Set up Video Motion Detection from NVR/DVR

VMD Events

Setup

VM

D

Page 92: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

DVR or NVR

Video

5: Set up Video Recording Actions from NetBox

Events, VI, Triggers

Recording Events

VMD Events

Page 93: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Alarm Panels

• Identify 2 Inputs for “zone” and “armed” status from panel• One Output to allow arming or disarming from NetBox• Auto Arming

– Output to sound warning device.• Warning duration

– Auto Arming Time Spec (armed period).• When the panel should be armed.

– Auto Arm Inactivity Time• Length of time for panel to show all zones as inactive.

– Arm Panel request timeout – time to wait for armed status input.• 5 seconds longer than panel’s grace period.

– Disarm reader group – card read for disarm access level to disarm panel.– Disable reader group – disabled (deny access) readers when panel is

armed.• Events

– Specify Event to occur when there is failure to arm.– Event to occur when activity detected during armed period.

Page 94: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Elevator Control

Page 95: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Floors are mapped to button outputs

6

5

4

3

2

1

Elevator 1

Output 1

Output 2

Read

er 1

6

5

4

3

2

1

Elevator 2

Output 3

Output 4

Read

er 2Floor 6

Floor 5

Page 96: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Elevator Access Levels

654321

OK?

YES

Page 97: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Floor Groups and Free Access Time Spec

6

5

4

3

2

1

Elevator 1

Output 1

Output 2

Read

er E1

6

5

4

3

2

1

Elevator 2

Output 3

Output 4

Read

er E2

RestrictedAccess

FreeAccess

Page 98: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Other uses of Elevator Controls

Front Entrance

Floor 6 Thermostat

Floor 5 Thermostat

Page 99: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Personal Information

• Access Control– Badge– Access Level– PIN

• Photo ID• User Defined (optional)

– User Labels and fields– Display all or some

• Contact (optional)• Other Contact (optional)• Vehicle (optional)• Login

– User Roles– Widget Desktop Layouts

• Recent Activity

Page 100: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

User Roles• Predefined Categories

– Partition Monitor – Monitor menu only– Partition Administrator – Monitor plus Administration menus– Partition (System) Setup – Setup plus Monitor and Administration menus

• Custom User Roles– Threat Level Group – Affects user system access – Monitor limitations

• Camera groups: view, go to presets, PTZ• Portal Groups: view, momentary unlock. extended unlock extended lock• Elevator Groups: view• Event Groups: view, acknowledge, clear actions• Floorplan Groups: view• Report Groups: run, edit• Layout Groups: run• Reader Groups: view photo IDs• Access Levels: assign

Page 101: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

User Roles

– Administrator: Person Record limitations• View, Assign, Add, Edit, Delete, Lookup

– Add Administration Privileges– Add Setup Privileges

Page 102: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

History Reports

• History Reports– Access History - General Event History– Portal Access Count by User - Custom Reports

Page 103: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Custom Report

Page 104: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

System Reset and Evaluation

• Reset to Factory Defaults– Do Not Remove Power until after License Page– Use for configuring before going to the site.– Be sure to wait for single beep.

• Leave S2 NetBox Powered up and Plugged in• Tear out Evaluation page

– Fill in– Leave with instructor

Page 105: NetTech Rich Ames :Training. IP Network Alarm Door Lock Reader Portal 6 5 4 3 2 1 Elevator Lighting NetBox Security Monitor Remote Support Security Administrator.

Thank you for your attention!

Thanks for takingS2 NetTech Training