





















Simple dashboard that doesn't require an IT degree to navigate.
| Aspect | Implementation | |--------|----------------| | | TLS 1.2+ for device‑to‑server communication; optional at‑rest encryption via SQL Transparent Data Encryption (TDE). | | Authentication | Windows Integrated Authentication (AD) or local ZKTeco accounts; MFA can be enforced at the OS level. | | Audit Trail | All configuration changes, user log‑ins, and data imports are logged in the AuditLog table. | | GDPR / Data Privacy | Biometric templates are stored as hashed, non‑reversible data. Export of raw biometric data is disabled by default. | | Network Hardening | Devices and servers should be placed on a dedicated VLAN; firewall rules restrict inbound traffic to required ports only. | | Patch Management | Regularly apply ZKTeco’s security patches (released on their support portal). |
Handles multiple shifts, overnight rotations, and complex break rules.