Installation Guide

MorphoAccess® VP MD Installation Guide
Annex 1 : Finger Placement Recommendations
2019_200000XXXX-V0
IDEMIA DOCUMENT - REPRODUCTION AND DISCLOSURE PROHIBITED
December 2018
Modes for controlling access rights
Introduction
The MorphoAccess® VP MD terminal offers several methods for controlling access
rights: it needs to be configured in one of the following four modes:
Identification mode,
Authentication mode (requires a contactless smartcard reader in the terminal),
Multi-factor mode (requires a contactless smartcard reader in the terminal),
Proxy mode
Refer to MorphoAccess® VP MD Administration Guide for more information on Access
Control.
Identification mode
The Identification process of the MorphoAccess® VP MD terminal proceeds by
comparison of the biometric data of the finger placed on the biometric sensor, with all
the biometric data stored in the database.
It means that the biometric data of the allowed users must be stored in the internal
database before they can request the access on the terminal. This biometric data is
acquired either directly on the terminal (using the embedded webserver application
and the biometric sensor of the terminal), or on an enrolment system using a biometric
sensor compatible with the terminal (such as MorphoSmart™ sensors).
The access control by identification process is started when a finger is detected on the
biometric sensor
When the user requests the access, his identity is unknown, and it is the terminal that
searches for his identity. The terminal grants the access if a match is found (the user is
identified); otherwise the access is denied (the user remains unknown).
For further information, please see the "Identification mode" section in the
MorphoAccess® VP MD Administration Guide.
Authentication (verification) mode
Unlike the "identification" mode, the user identity must be known in order to execute
the authentication process.
Indeed, authentication is an identity verification process: the user provides his identity
and the terminal checks it with the relevant process.
This mode doesn’t compare the user’s data to the data of several users: it compares
the data provided by the user with the reference data provided by the same user during
enrollment phase. The data can be on a card presented to the terminal or in a database
and ID is provided by the user.
Access is authorized if the terminal finds a correspondence.