Product Features
  • 04 Mar 2024
  • 5 Minutes to read
  • Contributors
  • Dark
    Light
  • PDF

Product Features

  • Dark
    Light
  • PDF

Article summary

The QwickAccess for IGEL application speeds user access, dramatically reduces the frequency that users need to type their passwords, and increases efficiency at shared IGEL endpoints. QwickAccess for IGEL provides the following benefits for users and IT staff.

Tap-in

Tap your badge on the RFID reader connected to the IGEL endpoint to automatically log into and launch your Citrix session or log into a Citrix-hosted Epic Hyperdrive session.

Tap-out

Tap your badge on the reader to automatically secure your session without disconnecting it. When you return, simply tap your badge to access the session just as you left it without any reconnection time!

Tap-over

In addition to Tap-In and Tap-Out, users are able to Tap-Over. The Tap-Over feature allows a user to start their own session on an IGEL endpoint even if another user already has an active session on that endpoint. The second user would simply tap their badge to secure the first user's session automatically, while simultaneously logging in to their own session.

Rolling Configurable Password Save

Your password is saved for a configurable period of time after your badge is tapped. Within the configured password-save time period, you can now tap-in without entering your password. The password-save time "rolls over" at any tap-in, tap-out, or tap-over event, renewing the amount of time in which your password is saved. Organizations usually configure this password-save time so that users are prompted for their password once when they start their shift, but don’t have to enter it again for the rest of the day as long as they are actively using their badge to access their work.

Badge Self-enrollment

Badge self-enrollment enables a user to enroll their badge without seeing an administrator, calling the help desk, or visiting a special registration station.  A user who is not yet enrolled simply needs to tap their badge where ever QwickAccess is installed and QwickAccess will then prompt the user for their username and password. After these are verified they are securely saved in the system. Conveniently, the user only needs to enroll their badge once and it then becomes usable where ever QwickAccess or ExactAccess* is installed, i.e., they don’t need to enroll their badge at each endpoint they visit.

* ExactAccess

ExactAccess is the Enterprise Single Sign-On (ESSO) solution offered by Identity Automation which can be deployed on its own or in conjunction with QwickAccess for IGEL. Badges enrolled with QwickAccess for IGEL can be used with ExactAccess or vice-versa without needing to re-enroll the badge.

Forgotten Badge

A user who forgets their badge at home can enroll a temporary replacement badge provided by the organization and use that for the day. The temporary badge replaces the original badge which means the original badge cannot be used until it is re-enrolled. This is a security feature. The next day when the user returns with their original badge they simply enroll it again and the temporary badge is no longer enrolled (it is replaced by the original badge) and therefore can be assigned to a different user who has forgotten their badge.

Automatic Lock and Logoff

QwickAccess for IGEL can automatically lock a user’s session after a configurable period of inactivity in the case where a user has walked away and forgotten to tap-out. If the user returns, they simply need to tap their badge again to unlock their existing session (tap-to-unlock), or another user can tap their own badge to automatically logoff the first user and log into their own session (tap-over). In addition, a locked session can be automatically logged off after another configurable period of time.

A Unique Session Mode (see next section) session that is logged off is only disconnected from the IGEL endpoint and therefore may still be running on the Citrix server.

Two Modes

Two modes of operation are available: Unique Session Mode and Shared Session Mode.

Unique Session Mode (USM): After QwickAccess for IGEL is configured to be in USM, when a user walks up to the IGEL endpoint and taps their enrolled badge, they will be logged into a Citrix session with the user account that is associated with the badge. In other words, the Citrix session is unique to the user account associated with the badge. The user can then move to another IGEL endpoint with QwickAccess for IGEL installed and configured to be in USM and tap their badge. This would then disconnect the user’s session from the first IGEL endpoint and connect it to the second IGEL endpoint. In other words, when the two endpoints are in USM the user’s Citrix session roams (or follows) the user and is unique to the user. For more information about how to configure this mode and its capabilities, see Unique Session Mode Settings.

Shared Session Mode (SSM): When in SSM, QwickAccess for IGEL will automatically launch and log into a Citrix session when the IGEL endpoint is started. This happens without any user interaction. The IGEL endpoint then becomes a kiosk where the same Citrix session can be used by multiple users. Typically, this mode is used by organizations who host Epic Hyperdrive* on Citrix. In this scenario, after the shared Citrix session is launched, the Epic Hyperdrive application is also launched and is displayed on the IGEL endpoint. Users then can tap-in/out/over in Epic Hyperdrive, but the shared Citrix session stays connected. For more information about how to configure this mode and its capabilities, see Shared Session Mode Settings.

Each IGEL endpoint with QwickAccess for IGEL installed can only be configured for one mode or the other, but not both. However, you can have a mix of IGEL endpoints, each with a different mode throughout the organization.

* Epic Hyperdrive

Epic Hyperdrive is an Electronic Medical Record (EMR) or Electronic Health Record (EHR) app offered by Epic Systems.

Leverages Microsoft Active Directory (AD)

QwickAccess for IGEL leverages an organization’s existing Microsoft Active Directory infrastructure with no changes needed. This means that users use the same account and credentials with QwickAccess for IGEL that they currently use; no separate account or credentials are needed. In addition, AD administrators can continue to use the AD tools they are familiar with to manage user accounts and reset passwords. QwickAccess for IGEL will automatically recognize these changes and respond appropriately.

Easy, Remote Deployment

QwickAccess for IGEL can be easily and remotely deployed to the enterprise using IGEL Universal Management Suite (UMS) and requires no changes to your existing Citrix infrastructure, and no changes to Active Directory. In addition, users simply use the same RFID-enabled badges they currently use for building access or identification purposes.


Was this article helpful?

What's Next