Skip to content

WestPoint · Access · dormakaba

The only one that also makes the door.

exos and MATRIX are the access control of a firm that comes from the lock, the door closer and the turnstile. It shows in what it does well —whole buildings, many doors, a lot of organisation behind them— and also in what it is not: a video command centre.

What it is, and where it comes from.

To understand exos you have to understand which company it comes out of.

dormakaba comes from joining two businesses that had each spent a century at the door: the ironmongery —door closers, automatic doors, turnstiles— and the locking —keys, cylinders, master key suites—. The access control came later, and that explains almost everything that follows.

exos is the platform for large installations: its own server, a database, administration clients and an organisational structure that looks like a real company —sites, departments, tenants of a building, contractors— and not a flat list of users. MATRIX sits one step below, for anyone who does not need all that machinery.

The problem it solves is not opening doors. It is running a building with employees, visitors, suppliers, lockers, parking and a schedule per group, where the day to day is handled by personnel or facilities and not by a security department working shifts. It turns up in corporate head offices, buildings with several tenants, universities, hospitals and airports.

How it's built.

What matters about the architecture is what goes on working when something goes down, and how far it grows without being rebuilt.

Underneath there are controllers in a cabinet keeping their copy of who can open and on what schedule. If the network or the server goes down, the doors go on deciding on their own and note what happens to report it when the connection comes back. Better to check that at handover than to believe it.

It grows by sites: they are added to the same server with the organisation kept separate inside, so that whoever administers Barcelona does not touch Lisbon. That is where it earns its keep, and that is where it shows if nobody drew that structure before the first person was registered: reorganising it afterwards is expensive.

With the video and with the intruder detection it talks through interfaces, and that is looked at closely project by project. It does well at the reasonable things: a denied access that brings up the camera on that door, an alarm that does not go off because somebody came in with a valid credential. Do not expect the single desktop of a control room with three hundred cameras in front of it; that is not its fight, and expecting it means paying twice for the same thing.

For the credential it works with encrypted cards from the usual families and with the phone, and it has its own line of cylinders and door furniture for the doors that are not cabled. What gets decided on day one is the management of the card keys: that is not changed later without reissuing them all.

The advantage nobody tells you about.

It comes from the mechanical half, not from IT.

Hardly anybody switches from key to card in one go. It is done zone by zone, over years, and meanwhile the two live side by side: doors with a reader, doors with a wireless electronic cylinder and doors with the same old key inside the same master key suite. Managing that coexistence is the real work, and it comes out much better when the key, the cylinder and the reader all fit in the same locking plan.

The other half is the ironmongery. A turnstile or a control lane is not a reader with a door behind it: they have to decide what to do with somebody following close behind the person in front, with a wheelchair and with the fire alarm when it goes off. If the turnstile and the access control come from the same firm, that arrives already solved. If not, it is an integration, and the ones at the physical door eat up the most site visits.

And a point from the trade: this family carries a lot of inheritance from time and attendance and clocking in. Useful if you need it; a trap if you do not, because it turns a security project into one involving personnel, the works council and a conversation about workers' data that nobody had planned for.

Who it fits, and who it doesn't.

The question is not whether it is good. It is whether it is for you.

  • It fits if the building is the main character: many doors, several tenants or departments, constant visitors, lockers, parking and a turnstile in the lobby.
  • It fits if you already have a mechanical master key suite and you want to move to electronic without throwing the key plan in the bin.
  • It fits if the day to day is going to be run by people inside and each administrator has to see only their own patch.
  • It does not fit if you want a control room where the video rules and access is one more event in the list. There are platforms born for that.
  • It does not fit if it is eight doors in an industrial unit: you would be paying for an organisational structure you do not have and a server for nothing.
  • It does not fit if you do not want to open the time and attendance conversation. That part can be left unused, but it is there and somebody from personnel is going to ask.

What we do with it.

  • The design before the order: door by door what it gets —a reader, a cylinder, nothing—, what it does when the power goes and how it is coordinated with the fire alarm. The person in charge of the site decides it and it is written down.
  • The organisational structure drawn before the first person is registered: sites, departments, schedule profiles and who administers what. Nobody asks for it and it decides whether the system lasts three years.
  • The credential and card key decision: what happens to the ones already out there, who holds them and how they are reissued if that is needed.
  • The installation: cabinets, power, backup, a network separate from the one the company works on and the reader cable encrypted, not in the clear.
  • The commissioning against tests written down before anything is fitted: every door, every schedule, the power cut, the evacuation and the report of who came in.
  • The maintenance with the mechanical part included, which is the one that gets forgotten: door closers, turnstile adjustments, cylinders, cylinder batteries and a review of active credentials.

Who configures it after us.

The right question is not whether the client can. It is what they can and what they cannot.

The day to day is run by the client, and it is designed for that: registering and removing a person, changing a schedule profile, a permission by zone, issuing a card, logging a visit and the list of who went in where. People from personnel, reception or facilities do that without us, with an administrator limited to their own patch.

What is not the client's: adding a door or a controller, creating a schedule profile from scratch, changing the organisational structure, touching the readers and anything that goes near the card keys. It is not forbidden: it is that the damage from doing it badly is not seen the same day and afterwards nobody knows where it came from.

For them to really be able to, three things are needed, and we leave them. Training with the people who are going to use it —not with their boss— on their own system, with their doors and their names. A short manual with the five procedures of each week, written for the job. And a procedure for joiners and leavers agreed with personnel: who gives notice, within what time and who reviews it each quarter.

What we do not leave is the administrator passwords in our drawer. Anyone who wants to change supplier has to be able to do it without asking our permission.

Migrating from something else.

The usual thing is to arrive from a mechanical key, or from an old system from the same firm that no longer has support. In both cases the order is the same: first you survey what is there —doors, readers, credentials in circulation, who has what—, and that inventory on its own turns up half a dozen active cards belonging to people who do not work here.

The old card, if it is one of the low-security ones, is not reused. You can live for a few months with readers that read both the old and the new, but that is the route and not the destination: a card that can be cloned still can be even if a modern system reads it.

If what is there is another platform with its own hardware, the cabinet is changed. That is said with the quotation in front of you and not halfway through the work, and it is one more reason to know which controller you have before deciding anything.

Back to access control

Get started

Do you have exos or MATRIX in place?

Tell us how many doors there are, which version you were told you have and how joiners and leavers are handled today. We tell you what is solved with configuration and training, and what has to be changed.