Overview
ISO/IEC 20933:2019 - Information technology - Distributed application platforms and services (DAPS) - Framework for distributed real-time access systems - defines a reference framework for distributed, real‑time access control systems. The standard specifies an ID‑triggered modular architecture, the behaviour of a transaction from access request to final result, the semantics and elements of inter‑module messages, and performance measurement mechanisms based on a time‑stamping function.
Keywords: ISO/IEC 20933:2019, distributed real‑time access systems, DAPS, access control, time stamping, modular architecture, RED module.
Key topics and technical requirements
- Modular system architecture: Defines five primary modules - Access‑point, Policy, RED (Rule Evaluation and Dispatching), Processing, and Storage - and four internal interfaces (Access, Policy, Processing, Storage) plus two external interfaces (In, Out).
- Transaction lifecycle: Describes states (generated, on‑going, completed), how a transaction is initiated by an access‑ID, generation of a transaction‑ID, and the message sequence to produce a final result (Final‑Result‑Notification).
- Message semantics: Specifies request/response message types (e.g., Transaction‑start‑request, Processing‑request/response, Retrieve/Store requests/responses, Policy‑setter/getter) and required message elements and timestamps.
- Time stamping and performance measurement: Introduces a time‑stamping function and measurement metrics to evaluate transaction processing time, module processing time, data transmission time, and other performance indicators.
- Conformance: Modules and systems conform by implementing defined interfaces, responses and time‑stamping behavior.
Practical applications
ISO/IEC 20933:2019 is designed for systems requiring deterministic, networked access control and real‑time decisioning:
- Physical entry systems (gates, turnstiles) integrated with networked back‑end services
- Service access control for membership, settlements, or event entry
- Cloud/virtualized access platforms combining biometrics, NFC, QR codes, tokens
- Distributed IoT access control where modularity and performance measurement are important
Who should use this standard
- System architects and integrators designing modular access control solutions
- Vendors and OEMs of access hardware and cloud access platforms
- Security and compliance engineers specifying conformance and auditing requirements
- Test engineers and performance analysts who measure transaction latencies and module timings
- Procurement teams drafting technical specifications for access‑control solutions
Related standards (if applicable)
- Other ISO/IEC DAPS (Distributed Application Platforms and Services) family documents and general ISO/IEC information‑technology standards for security, messaging and time synchronization may complement ISO/IEC 20933:2019. Consult ISO/IEC catalogues for related references.
For architects and implementers, ISO/IEC 20933:2019 provides a reusable model to standardize message flows, modular responsibilities, and measurable performance for distributed real‑time access systems.