top of page
SERVICE CONTRACTS.jpg

How to Commission Access Control Reliably

loktec
Sep 8
5 min read

A door that releases for the wrong person, rejects an authorised employee or fails to report an event is not a minor commissioning defect. It is a gap in the protection of people, premises, data-bearing assets and operations. To commission access control properly, the system must be proven against the way a site actually works - not simply shown to open and lock a door.

For commercial and industrial organisations, commissioning is the point where a security design becomes dependable operational infrastructure. It confirms that readers, locks, controllers, credentials, door furniture, software and network connections function together under normal conditions and under fault conditions. Just as importantly, it confirms that access rules support the organisation without creating avoidable workarounds.

How to Commission Access Control Properly

Effective commissioning begins before an engineer attends site. The design documentation should set out every controlled opening, the required hardware, locking method, fire-door interfaces, access groups, schedules, alarm actions and reporting requirements. This creates a clear benchmark for testing and prevents a system being accepted on the basis of assumptions.

Site conditions matter. A distribution centre with shift changes, loading bays and welfare areas has different access requirements from a corporate office, financial branch or high-value storage facility. A door to a comms room may require tightly controlled permissions and a full audit trail. A staff entrance may need timed access for multiple teams, while a fire exit must maintain life-safety compliance without becoming an unmanaged route into the building.

The commissioning engineer should inspect the installed opening before configuring it. Door alignment, latch engagement, closer performance, hinge condition and the quality of the cable route all affect access-control reliability. No software setting can compensate for a poorly closing door or a lock that is incorrectly fitted. Where steel security doors, specialist locks or escape hardware are involved, the interaction between mechanical and electronic security requires particular care.

Proving every opening and its components

Each door should be tested as a complete assembly, rather than as isolated devices. This includes credential presentation, lock release, door monitoring, request-to-exit devices, emergency override and local alarm behaviour. The controller must receive and record the correct status at every stage.

A practical test sequence normally verifies that an authorised credential permits entry, an unauthorised credential is denied, and an expired or withdrawn credential remains inactive. It should also establish what happens if a door is held open, forced, left ajar or opened outside its permitted schedule. These events should generate the right notification and appear accurately in the management platform.

Fault testing is equally valuable. If network connectivity is interrupted, the system must behave according to the agreed resilience plan. Depending on the architecture, a door may continue to make local access decisions, default to a specified state or provide restricted operation until communications return. There is no universal correct setting. The appropriate response depends on the opening's risk profile, occupancy requirements, life-safety obligations and business continuity needs.

Power-loss testing should be carried out with the same discipline. The door must fail safe or fail secure as designed, and any standby power provision must perform as expected. This is especially significant at external doors, data rooms, cash-handling areas and sites where an uncontrolled release could cause material loss or disruption.

Commission Access Control Around Real Workflows

Access permissions should reflect roles, locations and working patterns, not a collection of one-off exceptions. During commissioning, the project team should test realistic scenarios with the people who will use and administer the system. That may include an employee starting an early shift, a contractor attending a restricted plant area, a facilities manager issuing a temporary credential, or a security team responding to a door alarm.

This exercise often identifies permissions that look logical in a spreadsheet but create friction in practice. For example, a maintenance contractor may need escorted access to a plant room but no access to offices. A cleaning team may require entry only during a defined evening period. A mobile supervisor may need access across multiple sites, but only to relevant zones. Properly configured access groups make these rules manageable and preserve a clean audit trail.

For organisations using SALTO access control, commissioning should also validate the chosen credential approach. RFID cards, fobs, PINs and mobile credentials can all support different operational needs. Mobile access can reduce the cost and delay of issuing physical cards, while physical credentials may remain preferable for certain visitor, workforce or contingency arrangements. The decision should be based on user groups, site connectivity, device policy and administrative control, rather than novelty.

Where cloud management is used, authorised administrators need a controlled handover. They should understand how to add and remove users, apply access schedules, review events and manage lost credentials. The principle is straightforward: access changes should be quick enough to support operations, but governed tightly enough to prevent permissions being granted without accountability.

Integration Must Be Tested, Not Assumed

Access control rarely operates alone. A controlled door may interact with CCTV, intruder alarms, intercoms, visitor management, key cabinets or building-management functions. Commissioning should prove the intended behaviour at these connection points.

An intercom call, for example, may allow reception or security personnel to verify a visitor before releasing a door. A forced-door alarm may trigger an associated camera view or flag an event for investigation. A visitor system may issue a time-limited credential and remove its validity automatically at the end of an appointment. These workflows can improve response and reduce manual administration, but only when the configuration has been tested across the full chain.

Integration also introduces trade-offs. Connecting more systems can provide stronger visibility and more informed decision-making, yet it increases the need for clear responsibility, network planning and change control. A useful integration is one that supports a defined operational action. Collecting events that nobody reviews adds complexity without improving security.

Acceptance Testing Should Leave a Clear Record

A commissioning handover should provide more than confirmation that the system is live. The organisation needs an accurate record of what has been installed, how it has been configured and who is responsible for ongoing administration and support.

The acceptance documentation should include opening schedules, device identifiers, controller locations, access-group definitions, test results, outstanding actions and relevant operating instructions. If changes are required after testing, they should be recorded with an owner and completion date. This prevents minor defects being lost between installation completion and operational handover.

Training should be tailored to the people receiving it. System administrators need confidence in permission management, reporting and audit procedures. Facilities teams may need to understand basic checks for door faults and how to report them. Security personnel need clear escalation procedures when alarms, denied access attempts or lost credentials occur. The aim is not to turn every user into an engineer; it is to ensure the right people can take the right action promptly.

Plan Support Before the First Fault

Access control is a long-term operating system, not a one-time project. Doors are adjusted, teams change, tenants move, sites expand and risk profiles evolve. Regular servicing protects the performance of both electronic components and mechanical door hardware, while planned reviews can identify redundant permissions, ageing equipment or changing compliance needs.

Nationwide support is particularly valuable for multi-site organisations that need consistent standards across offices, warehouses, branches and remote facilities. A technical partner that understands the original design can diagnose faults faster, manage changes with less disruption and maintain a reliable record of the security estate. Loktec Security Group combines specialist design, installation, commissioning and ongoing support so organisations can retain continuity from the first opening tested to the next phase of expansion.

The best commissioning result is not a signed checklist alone. It is an access-control system that gives authorised people the right access at the right time, provides managers with evidence they can trust, and continues to protect the business when the unexpected happens.

 
 
 

Comments


bottom of page