Preventing Bluetooth Bypass with Confirmation Mode, Anti-Passback Enforcement, and Strategic Reader Placement for Time-and-Attendance Systems

Preventing Bluetooth Bypass with Confirmation Mode, Anti-Passback Enforcement, and Strategic Reader Placement for Time-and-Attendance Systems

As part of LumiRing’s ongoing efforts to enhance security and streamline time-and-attendance tracking, we’ve introduced a Confirmation Mode for Bluetooth (BT) readers. This mode is designed to prevent Bluetooth bypass and bolster anti-passback measures, ensuring compliance and accurate attendance data in both hybrid and full-time return-to-office scenarios.


High-Security Confirmation Mode

The Confirmation Mode requires users to confirm their presence by waving at the reader, ensuring physical interaction. This feature mitigates the risk of advanced or abusive users attempting to bypass the system by selecting an exit reader in the Vikey app from outside the building if their BT signal can reach the reader. The Confirmation Mode can be enabled individually on each reader, and it is recommended to activate it on exit readers.

This functionality is particularly effective in preventing coffee badging, where users attempt to register attendance briefly without remaining in the office, a common tactic in modern time-and-attendance systems.


Additional Possible Measures

  1. Strategic Placement of Exit Readers
    To further enhance security, install readers in protected areas where Bluetooth signals cannot reach from outside. For example, adding a metal shield behind the wall where the reader is installed can reduce the signal’s ability to penetrate walls.

  2. Audit Trails
    Implement audit trails to log all access attempts, or random log checks, especially those involving Bluetooth connections. These logs provide critical insights for post-event analysis and compliance enforcement.

  3. Video/Random Verification
    Incorporate video verification or random checks to visually confirm the user’s presence at the entry point, reducing the likelihood of anti-passback violations.

  4. Addition of Check-In/Check-Out Readers
    Install check-in/check-out readers inside the protected work area or dedicated check-in points locations within the building. Ideally, these areas should have no Bluetooth connectivity to external regions. This setup ensures that confirmation happens only within a secure boundary, preventing external attempts at bypass.


Future Enhancements for AIR Readers

LumiRing remains committed to innovation. The Confirmation Mode feature is available within a new firmware for AIR readers starting from 1.134.

Additionally, new system updates will gradually introduce more advanced anti-passback features, further strengthening our attendance and access control systems.


Note on Bluetooth Limitations

For certain high-security environments, Bluetooth may not always guarantee a specific distance or proximity detection due to Bluetooth technology's standard range of up to 30 feet (9 meters). While Bluetooth is effective in many scenarios, we recommend using it cautiously in environments requiring precise proximity detection.

Keywords: anti-pass back, anti-passback, Bluetooth confirmation, BT reader, attendance tracking, coffee badging, hybrid work security, return-to-office compliance, exit reader security, Vikey app, audit trail, access control, security enhancement, check-in check-out, AIR reader firmware, Bluetooth limitations, workplace security, physical confirmation, time tracking, anti-bypass measures, security compliance, random verification.