One shared key copied five times, so the door log can only record that it opened, next to a credential per person, where the log names who entered and who was refused

Badge or Biometric Access

Back to Data Center Management · Access Logging · Visitor and Vendor Tracking · Cage or Rack-Level Restriction · Service Offerings

This is entry restricted to people who actually need it, not a shared key everyone has a copy of. The contrast in that sentence is the whole argument, and it is not really about convenience.

1. A Key Has No Identity

A mechanical key authenticates nothing. It proves only that whoever turned it was holding a piece of metal, and metal does not record who carried it. Three consequences follow, and all three are the reason this control exists.

A per-person credential fixes all three at once, which is why this is worth doing even in a small room with five people in it.

2. Not All Badges Are Equal

The most common mistake is treating a badge system as solved because badges exist. The underlying card technology decides whether the credential means anything.

Technology What it does Status
125 kHz proximity Broadcasts a fixed number to any reader that asks. No authentication at all Cloned in seconds with a cheap handheld copier. Treat as a label, not a credential
Magnetic stripe Static data, read and written with commodity hardware Equivalent to the above
13.56 MHz smartcard with mutual authentication Card and reader prove themselves to each other with diversified keys; the exchange differs every time The current baseline. DESFire EV2 or EV3, Seos and similar
Phone-based credential Credential in a secure element, usually with the phone's own unlock as a second factor Good, and issued and revoked without anyone handling plastic

If you inherit a site, find out which of these you have before anything else. A building full of 125 kHz cards has the appearance of access control and the security of a shared key, with the added disadvantage that everyone believes it is solved.

3. Biometrics Solve One Problem and Create Another

Biometrics answer the question a card cannot: whether the credential is being used by the person it was issued to. That is genuinely valuable at the door of a room full of other people's data. They come with constraints that are easy to discover too late.

4. The Part That Actually Fails Is Removal

Almost no breach of physical access control involves defeating a reader. It involves a credential that should have stopped working months ago and did not.

5. Scope the Access, Not Just the Person

6. What the Reader Cannot Enforce

How We Approach It

  1. Establish what the credentials actually are — card technology first, because a 125 kHz estate changes the priorities entirely.
  2. Pull the current access list and reconcile it against HR. The leavers still holding access are usually the first concrete finding.
  3. Define zones and who needs each, including time-of-day limits.
  4. Wire revocation into joiners, movers and leavers, with expiry by default for contractors.
  5. Decide where a second factor is proportionate, and handle the data protection work if that factor is biometric.
  6. Set the review cadence, and connect the system to logging so that entries can be reviewed at all.

What You Get

The question worth being able to answer is not whether you have badges. It is what happened to the badge of the person who left in March.