The field of the invention relates to security systems and more particularly to multi-zone security systems.
Multi-zone security systems and generally known. Such systems are typically used wherever an organization has assets (e.g., people, organizational property, etc.) to protect. An example of such a situation could be a retail organization. In this case, a retail organization may operate within a first secured area or zone in which only employees of the organization are allowed. One or more high security areas or zones may also exist within the first secured area for high value assets (e.g., cash, confidential information, etc.).
Isolating the security zones may be a physical barrier (e.g., walls, fences, etc.) with one or more access points (e.g., doors). Physical passage through the access points may be provided through the use of a respective access controller. The access controller may include a lock controlling the opening of the door coupled to a user identification device (e.g., keypad for entry of a access code, fingerprint or iris scanner for physical identification of a user, a card reader, etc.).
The access controller may have an entry portion outside of the secured area to control entry into the secured area. The access controller may also have an egress portion to control egress from the secured area.
While each of the access controllers of the zones could operate independently, they are, instead, typically coupled to a security panel. The security panel is typically located in a high security area and functions to compare indicia of identify with a reference indicia of identity saved within a computer file.
While security systems operate relatively well, the access controllers are typically maintained in an activated state continuously to detect the need for access. However, there are times when no access is requested or needed. Accordingly, a need exists for better methods of controlling power consumption in access controllers.
Associated with the security areas 12, 14, 16, 18 is a number of access points 20, 22, 24, 26, 28, 30, 32, 34. Each access point 20, 22, 24, 26, 28, 30 includes at least three elements. The elements include the physical barrier (e.g., a door), an actuator that controls the physical barrier (e.g., a solenoid activated lock) and an access controller 35, 36, 38, 40, 42, 44, 46, 48 that electrically activates the actuator.
Each access controller 35, 36, 38, 40, 42, 44, 46, 48 may also include one or more use identification devices A-P. The user identification devices may operate to identify persons under any of a number of different formats (e.g., card readers, fingerprint readers, iris scanners, etc.). For example, the access controller 35 for access point 20 may include a first card reader (hereinafter “card reader in”, labeled “A” in
The card readers A-P are, in turn, coupled to a security panel 50 via a communication link 52. The link 52 may be provided by electrical conductors or may be provided in the form of a wireless communication path.
The secured areas 12, 14, 16, 18 may be accessed by a group 54 of persons 56, 58 authorized to enter the secured areas 12, 14, 16, 18. Each of the persons 56, 58 may be assigned a respective access card 60, 62 (in the case where card readers are used). Each of the cards 60, 62 may be encoded with an identifier of the person 56, 58 assigned to use the card 60, 62.
Included within the security panel 50 is a corresponding file 64, 66 that contains the identifier of the respective person 56, 58. In addition to the identifier of the person 56, 58, the respective file 64, 66 also contains a security rating or level. For example, a first security level may allow a first person 56, 58 to enter the first security area 12, but not inner security levels 14, 16, 18. Another security level may allow a second person 56, 58 to enter the outer security level 12 and inner security level 18. A third security level may allow a third person 56, 58 to enter the outer security level 12 as well as all of the inner security areas 14, 16, 18. Other security levels are also possible.
In general, each time a person 56, 58 desires to enter a security area 12, 14, 16, 18, the person 56, 58 may swipe his/her card 60, 62 through the appropriate card reader A-P. In response, the card reader A-P reads the card (e.g., the magnetic stripe, excites and reads a RFID element, etc.) to recover the identifier and send the identifier to the security panel 50.
Within the security panel 50, an access processor 68 compares the received identifier with the identifiers within each of the files 64, 66. If the processor 68 finds a match within one of the files 64, 66, then the processor 68 retrieves a security level from the file 64, 66 and compares the security level with security level of the area 12, 14, 16, 18 into which the person 56, 58 is requesting access. If the security level of the file 64, 66 meets or exceeds the security level of the area 12, 14, 16, 18, then the processor 68 sends a signal to the access controller 35, 36, 38, 40, 42, 44, 46, 48 granting passage through the access point 20, 22, 24, 26, 28, 30, 32, 34.
Under an illustrated embodiment of the invention, an occupancy processor 84 within the control panel 50 monitors for the presence of persons 56, 58 within the secured areas 12, 14, 16, 18 based upon access grants from the access processor 68 and deactivates user identification devices A-M based upon the presence and distribution of any detected persons 56, 58.
For example,
In this case, so long as the three persons 56, 58 remain located with the inner security area 14, then a number of user identification devices A-P could be deactivated without detracting from the functionality of the system 10. In this case, the reader out devices F, H, I would remain activated because they are inside the area containing the persons 56, 58. However, there are no persons 56, 58 in the security areas 12, 14, 16 (i.e., outside of area 18). For example, since the read in devices E, G, J are on the outside of security area 18, these devices E, G, J are deactivated by the occupancy processor 84. Similarly, since there are no persons 56, 58 outside of security area 14 in security areas 12, 14, 18, reader devices B, C, D, E, G, J, K, M, N, O and P are also deactivated. Readers A and L remain activated because other persons 56, 58 could enter from outside.
In general,
The system 10 then determines 108 if at least one person 56, 58 is located in each of the security areas 12, 14, 16, 18. Since the outer area 12 has changed 112 from an occupancy of zero to an occupancy of at least one person 56, 58, the panel 50 activates 114 each of the readers B, D, J, K, M within the outer area 12.
Similarly, if the person 56, 58 should swipe his card 60, 62, through reader B, then the panel 50 may check for whether the person 56, 58 has clearance to enter the area 18. If the person 56, 58 has clearance to enter the area 18, then the panel unlocks the access point 22. The panel 50 also decrements the counter associated with the outer area 12 and increments the counter associated with the area 18.
The panel 50 then determines a status for each of the areas 12, 14, 16, 18. Since the occupancy for the outer area 12 has gone from one to zero, the panel deactivates 110, the readers B, D, J, K, M in the outer area 12 and activates the readers C, G, N inside the security area 18.
In another embodiment, the security areas 12, 14, 16, 18 are each provided with at least one motion detector 70, 72, 74, 76, 78. In this case, the motion detectors 70, 72, 74, 76, 78 operate to detect deviations in the proper use of the access cards 60, 62. For example, the proper use of the access cards 60, 62 requires each person 56, 58 entering a secure area 12, 14, 16, 18 to swipe their card through a card reader. However, when two persons enter together, it is also common practice, for the second person to neglect swiping their card and, in stead, to piggyback onto the first person's grant of access into the secure area.
Under the illustrated embodiment, the motion detectors 70, 72, 74, 76, 78 are used to over ride deactivating the card readers whenever motion is detected within a security area 12, 14, 16, 18. This avoids the situation where the security panel 50 deactivates the card readers inside a security area 12, 14, 16, 18 while there is still a person within the area. For example, if two persons 56, 58 were to enter the outer area 12 and only the first of the two persons 56, 58 were to swipe their card 60, 62 through card reader A, then the security panel 50 would only be aware of the first person 56, 58 in the outer security area 12. If the first person 56, 58 were to exit the area by swiping their card 60, 62 through reader M, then the security panel 50 would determine 108 that the occupancy count of outer area 12 was zero and would, otherwise, attempt to deactivate the readers B, D, J, K, M. However, if the presence of the second person 56, 58 is detected by the motion sensor 70, then the detected motion over rides the deactivation of readers B, D, J, K, M and, instead, maintains readers B, D, J, K, M in an activated state.
In still another illustrated embodiment, the security system 10 is provided with an uninterruptible power supply (UPS) 80 that powers the security system 10 during power outages. During power outages the deactivation of readers A-P based upon occupancy (as described above) extends the reserve power of the UPS 80, thereby extending the time period in which full functionality of the security system 10 is maintained.
In order to further extend the functionality of the system 10, the access points 20, 22, 24, 26, 28, 30, 32, 34 are classified in order of its importance or security level. For example, the secure area 14 may contain confidential information may receive a classification of 5 (i.e., most secure) and the outer area 12 may receive a classification of 1 (i.e., least secure). When a power outage occurs, a power reserve processor 82 is pre-programmed to sequentially power down the lower levels (e.g., level 1 access points (e.g., locks) 20, 34) after a predetermined amount of time. Alternatively, the power reserve processor 82 may be programmed to monitors a battery reserve capacity (e.g., voltage) and power down the lower level (e.g., the level 1 access points 20, 34) when the reserve capacity reaches some minimum threshold level.
Under still another illustrated embodiment, an administrator may supply a type or model number for each of the access points 20, 22, 24, 26, 28, 30, 32, 34. In this case, the type or model number would identify a power requirement of the lock and associated card readers. The power reserve processor 82 may receive the power requirements along with a reserve capacity of the UPS 80 and calculate a time period of full and reduced operation based upon the reserve capacity and power requirements.
By providing the power requirements and classification of each access point 20, 22, 24, 26, 28, 30, 32, 34, the power reserve processor 82 is able to maintain either full or reduced functionality under any of a number of different operating modes. For example, the power reserve processor 82 may sequentially power down access points 20, 22, 24, 26, 28, 30, 32, 34 based upon time, upon a reserve capacity or upon a relative power consumption rate of the respective access points. In this case, the power reserve processor 82 may power down the lowest classification first (e.g., level 1 security) and sequentially progressing to the next higher classification (e.g., level 2 security) after some predetermined time period. Alternatively, the power reserve processor 82 may power down at least some access points 20 or 34 where alternatives exist based upon relative power consumption or where guards could be posted. The ability of the power reserve processor 82 to monitor battery reserve allows the power reserve processor 82 to provide a constant readout of the remaining time left (in minutes) before the UPS 80 is completely depleted of power.
As a still further alternative, an administrator of the security system 10 may assign a priority level to access points 20, 22, 24, 26, 28, 30 independent of the security level of the area that the access point 20, 22, 24, 26, 28, 30 protects. For example, commonly used doors may be assigned a high security level, while less used and rarely used doors may be assigned a lower security level. In this case, the administrator may access an input of the alarm panel and provide the alarm panel with an ordered list of access points 20, 22, 24, 26, 28, 30 based upon priority. Under this scenario and in the event of a power failure, a lobby door and main entrance are still powered and side doors or less commonly used doors are the first to be deactivated. In this case, the less commonly used doors would require, some form of high security key to manually open while the more commonly used doors would still be electrically powered from the battery backup.
A specific embodiment of method and apparatus for securing a protected space has been described for the purpose of illustrating the manner in which the invention is made and used. It should be understood that the implementation of other variations and modifications of the invention and its various aspects will be apparent to one skilled in the art, and that the invention is not limited by the specific embodiments described. Therefore, it is contemplated to cover the present invention and any and all modifications, variations, or equivalents that fall within the true spirit and scope of the basic underlying principles disclosed and claimed herein.