WEZHIKE
SMART ACCESS & IOT SECURITY
DEFENSE-IN-DEPTH

Technology Architecture & Financial-Grade Security

Security is not an add-on featureβ€”it is engineered into every circuit trace, network packet, and microservice container of the WEZHIKE platform.

Layer 01: Silicon & Cryptography

Hardware Security Element & Key Vault

Each reader and controller embeds a dedicated cryptographic chip. AES-256 keys and ECC certificates are generated inside the silicon and never exposed in plaintext memory.

Layer 02: Transport & Fieldbus

Mutual TLS 1.3 & OSDP Secure Channel

All reader-to-controller fieldbus channels utilize OSDP v2.2 with Secure Channel Protocol. Controller-to-Cloud communication enforces mTLS 1.3 with automated certificate rotation.

Layer 03: Architecture & Resilience

Zero-Downtime Offline Autonomy

Even in the event of fiber cuts or cloud outages, local edge controllers retain full privilege databases and continue logging events locally with nanosecond timestamps.

Layer 04: Lifecycle & Governance

Signed Dual-Bank Remote OTA

Remote firmware deployments undergo automated static binary analysis, cryptographic signature checks, and canary stage rollouts with instantaneous rollback failover.

Cloud-Native Edge Topology

1. Edge Device Tier
Biometric face readers, NFC mullions, optical QR turnstile sensors.
2. Industrial Controller Tier
WZK-4D controllers, relay logic, tamper alarms, local SQLite/Flash database.
3. Cloud Orchestration Tier
Kubernetes clusters, multi-tenant RBAC, Kafka event stream, REST/Webhook APIs.