2 Quick Start
The User Manual is available for Max and Standard. Use the tabs below to switch between editions.
- Max
- Standard
This chapter helps administrators and implementation personnel complete the shortest end-to-end business process, from tenant enablement to the first Palm Scan verification and viewing the verification record. Follow the sequence below. For detailed device operations, see the applicable Device User Manual.
2.1 Enable and Configure a Tenant
Create a tenant
If you have Super Administrator permissions, open the Admin Console and go to System Management > Tenant Management:
- Click Add Tenant to open the tenant creation page.
- Configure basic information such as the Tenant Name, unique identifier, and Palm Database Quota.
- In Scene Mode, select Open Scene or Closed Scene.
- Based on the registration methods you plan to use, enable Phone Scan QR Registration, Device Scan QR Registration, Host Input, or Mobile Palm Registration. Device Input is available by default and does not require enabling a switch.
- If Additional Verification is required, select the last four digits of the mobile number, a custom numeric field, or device QR code additional verification.
- Create a Tenant Administrator account.
For details about each field, see "3.9.1 Create a Tenant."
Use a delivered tenant
After a private environment has been deployed and technical support has delivered the tenant and administrator account, you do not need to create the tenant again. After logging in, the administrator should confirm that the Scene Mode, registration methods, Palm Database Quota, and Additional Verification configuration meet the project requirements.
After configuration is complete, the administrator can continue configuring devices, scenes, and users. For details, see "3.9 Tenant Management."
2.2 Connect and Authorize a Device
- Power on the device and connect it to the network.
- Check whether the device was permanently authorized at the factory. A device with permanent authorization does not need to be authorized again.
- If the device has not been authorized or its authorization has expired, contact the applicable sales representative to obtain an authorization QR code.
- Use Online Authorization by default. Use Offline Authorization only in special cases:
- Online Authorization: The device must connect to the network to access the authorization service.
- Offline Authorization: The authorization QR code already contains the authorization information, so the network is not required when scanning the code to inject the information. After authorization, the device can be used in a fully offline standalone scenario. Because other device features usually require a network connection, it is still recommended that you complete the network configuration first.
- When the device displays
Unauthorized, tap Scan the QR code and scan the authorization QR code. - Confirm that the device displays a successful authorization result.
Device authorization grants a license to use Palm Scan capabilities. It does not connect the device to the Admin Console environment. For details about network connections and authorization, see the applicable Device User Manual.
2.3 Register and Activate a Device
Prerequisites
- The device is powered on and connected to the network.
- The device has been authorized.
- The device version meets the project requirements.
Procedure
- Register the Device SN (located in the upper-left corner or on the back of the Palm Verification Device) in the Admin Console. For details, see "3.1.1.1 Register Device."
- Generate a device activation QR code in the Admin Console.
- Use the device to scan the activation QR code and connect the device to the current Admin Console environment.
- Return to the device list and confirm the device status:
Not Activated: The device has not been activated for the environment.OnlineorOffline: The device has been activated for the environment.
Device authorization and device activation are independent processes. For details about device registration and environment activation, see "3.1.1.1 Register Device," "3.1.1.2 Device Activation and Environment Binding," and the applicable Device User Manual.
2.4 Configure Scenes and Rules
- Create a Scene Group and a scene. For example, you can set "Tencent Building" as the Scene Group and "North Entrance, 31st Floor" as the scene.
- Select a Scene Strategy for the scene.
- Associate the device with the scene.
- Associate verification rules as required by the service, and configure the users, dates, and time periods allowed for verification.
- Configure the tenant's Additional Verification method as required by the service.
After a device is associated with a scene, verification results can be uploaded and queried by scene. For details, see "3.2 Scene Management," "3.4 Verification Rules," and "3.9.4 Tenant-Level Additional Verification Configuration."
2.5 Enter User Information
- View the tenant's Scene Mode in Tenant Management.
- For Open Scene, users do not need to be created in advance. The system automatically creates a user after the user submits registration information.
- For Closed Scene, go to User List and click Add new user to create an individual user, or use Import users in batches to import users in bulk. Information such as User ID and Username submitted during registration must match the user created in the Admin Console.
For details, see "3.5.1 Create a User."
2.6 Select a Registration Method and Complete Palm Registration
The platform supports Phone Scan QR Registration, Device Input, Host Input, Device Scan QR Registration, and Mobile Palm Registration. Device Input is available by default. The other four methods are controlled by the tenant's registration method switches. Host Input availability depends on device capabilities and project configuration.
For a quick trial, use one of the following two methods first. For details about other registration methods, see the registration sections in the applicable Device User Manual.
Method 1: Device Input
This method does not require a mobile App, H5 page, or Host. It is suitable for quickly validating the end-to-end business process from palm registration on the device to Palm Scan verification.
- Tap Setting in the upper-left corner of the device screen.
- Enter the initial password
000000and open the device settings page. - On the device, switch Mode to Registration - Device Input.
- The user first performs a Palm Scan on the device.
- Follow the device prompts to enter user information and confirm registration.
- Wait for the device to bind the palm to the user information.
For details, see the Device Input registration section in the applicable Device User Manual.
Method 2: Mobile Palm Registration
This method uses a mobile App or Mobile Palm Registration H5 to preregister a palm. The user then performs the first Palm Scan on an on-site device to activate the palm.
- Log in to PalmMa demo App, or open Mobile Palm Registration H5.
- Go to the palm registration page and follow the prompts to scan the palm and complete preregistration.
- Switch the on-site device to Recognition mode.
- The user performs the first Palm Scan with the preregistered palm to activate the palm.
- Return to the App to view the palm status and confirm that the interface displays
Activated.
For details, see "4.5 Mobile Palm Registration and Palm Management" in the Mobile Application User Manual, "5.4.5 Mobile Palm Registration" in the User Manual for M3, or "6.4.6 Mobile Palm Registration" in the User Manual for M4.
Note
To try Device Scan QR Registration, the user must first generate a registration QR code on the Device Scan QR Registration H5 page. On the device, complete registration in the following order: perform a Palm Scan first, and then scan the registration QR code. For details, see "4.8 Device Scan QR Registration" in the Mobile Application User Manual.
2.7 Complete the First Palm Scan Verification
- Switch the device to Recognition mode.
- The user performs a Palm Scan in the device's palm recognition area.
- View the verification result displayed on the device.
- If the device triggers Additional Verification, follow the device prompts to complete the applicable secondary identity confirmation:
- Additional Verification using the last four digits of the mobile number.
- Additional Verification using a custom numeric field.
- Device QR code Additional Verification: Generate an authentication QR code on the Device QR Code Additional Verification H5 page, and then use the device to scan the QR code.
When a hybrid or cloud strategy is used, the system may trigger Additional Verification based on security risk-control results. Additional Verification is not triggered for every Palm Scan.
For details about routine Palm Scan verification and Additional Verification, see the applicable Device User Manual.
2.8 View Verification Records and Troubleshoot
- Go to the Verification Records page in the Admin Console.
- Filter verification records by time range, scene, User ID, Username, verification status, or source.
- View verification results, or export the records within the current permission scope to an Excel file.
If no verification records are found, check the following items in order:
- Whether the device has been authorized.
- Whether the device has been activated for the Admin Console environment and its current status is
Online. - Whether the device has been associated with a scene.
- Whether the Scene Strategy has been dispatched and taken effect.
- Whether the user has been created in the Admin Console for a Closed Scene.
- Whether the user has completed palm registration. For Mobile Palm Registration, check whether the palm has been activated on an on-site device.
- Whether the user is within the scope of users allowed for verification in the current scene.
- Whether the current date and time are within the range allowed by the verification rule.
- Whether the tenant's Additional Verification method and the scene's verification strategy have taken effect.
For details, see "3.3 Verification Records," "5.4.11 Report and View Verification Records" in the User Manual for M3, or "6.4.12 Report and View Verification Records" in the User Manual for M4.
This chapter helps administrators and implementation personnel complete the shortest end-to-end business process, from tenant enablement to the first Palm Scan verification and viewing the verification record. Follow the sequence below. For detailed device operations, see the applicable Device User Manual.
2.1 Enable and Configure a Tenant
Create a tenant
If you have Super Administrator permissions, open the Admin Console and go to System Management > Tenant Management:
- Click Add Tenant to open the tenant creation page.
- Configure basic information such as the Tenant Name, unique identifier, and Palm Database Quota. The Palm Database limit for each tenant is 50,000.
- In Scene Mode, select Open Scene or Closed Scene.
- Based on the registration methods you plan to use, enable Phone Scan QR Registration, Device Scan QR Registration, Host Input, or Mobile Palm Registration. Device Input is available by default and does not require enabling a switch.
- Create a Tenant Administrator account.
For details about each field, see "3.9.1 Create a Tenant."
Use a delivered tenant
After a private environment has been deployed and technical support has delivered the tenant and administrator account, you do not need to create the tenant again. After logging in, the administrator should confirm that the Scene Mode, registration methods, and Palm Database Quota meet the project requirements.
After configuration is complete, the administrator can continue configuring devices, scenes, and users. For details, see "3.9 Tenant Management."
2.2 Connect and Authorize a Device
- Power on the device and connect it to the network.
- Check whether the device was permanently authorized at the factory. A device with permanent authorization does not need to be authorized again.
- If the device has not been authorized or its authorization has expired, contact the applicable sales representative to obtain an authorization QR code.
- Use Online Authorization by default. Use Offline Authorization only in special cases:
- Online Authorization: The device must connect to the network to access the authorization service.
- Offline Authorization: The authorization QR code already contains the authorization information, so the network is not required when scanning the code to inject the information. After authorization, the device can be used in a fully offline standalone scenario. Because other device features usually require a network connection, it is still recommended that you complete the network configuration first.
- When the device displays
Unauthorized, tap Scan the QR code and scan the authorization QR code. - Confirm that the device displays a successful authorization result.
Device authorization grants a license to use Palm Scan capabilities. It does not connect the device to the Admin Console environment. For details about network connections and authorization, see the applicable Device User Manual.
2.3 Register and Activate a Device
Prerequisites
- The device is powered on and connected to the network.
- The device has been authorized.
- The device version meets the project requirements.
Procedure
- Register the Device SN (located in the upper-left corner or on the back of the Palm Verification Device) in the Admin Console. For details, see "3.1.1.1 Register Device."
- Generate a device activation QR code in the Admin Console.
- Use the device to scan the activation QR code and connect the device to the current Admin Console environment.
- Return to the device list and confirm the device status:
Not Activated: The device has not been activated for the environment.OnlineorOffline: The device has been activated for the environment.
Device authorization and device activation are independent processes. For details about device registration and environment activation, see "3.1.1.1 Register Device," "3.1.1.2 Device Activation and Environment Binding," and the applicable Device User Manual.
2.4 Configure Scenes and Rules
- Create a Scene Group and a scene. For example, you can set "Tencent Building" as the Scene Group and "North Entrance, 31st Floor" as the scene.
- Select Strategy A: 100 User Demo On-device Recognition or Strategy B: 10k User Access Control and Attendance On-device Recognition for the scene.
- Associate the device with the scene.
- Associate verification rules as required by the service, and configure the users, dates, and time periods allowed for verification.
After a device is associated with a scene, verification results can be uploaded and queried by scene. For details, see "3.2 Scene Management" and "3.4 Verification Rules."
2.5 Enter User Information
- View the tenant's Scene Mode in Tenant Management.
- For Open Scene, users do not need to be created in advance. The system automatically creates a user after the user submits registration information.
- For Closed Scene, go to User List and click Add new user to create an individual user, or use Import users in batches to import users in bulk. Information such as User ID and Username submitted during registration must match the user created in the Admin Console.
For details, see "3.5.1 Create a User."
2.6 Select a Registration Method and Complete Palm Registration
The platform supports Phone Scan QR Registration, Device Input, Host Input, Device Scan QR Registration, and Mobile Palm Registration. Device Input is available by default. The other four methods are controlled by the tenant's registration method switches. Host Input availability depends on device capabilities and project configuration.
For a quick trial, use one of the following two methods first. For details about other registration methods, see the registration sections in the applicable Device User Manual.
Method 1: Device Input
This method does not require a mobile App, H5 page, or Host. It is suitable for quickly validating the end-to-end business process from palm registration on the device to Palm Scan verification.
- Tap Setting in the upper-left corner of the device screen.
- Enter the initial password
000000and open the device settings page. - On the device, switch Mode to Registration - Device Input.
- The user first performs a Palm Scan on the device.
- Follow the device prompts to enter user information and confirm registration.
- Wait for the device to bind the palm to the user information.
For details, see the Device Input registration section in the applicable Device User Manual.
Method 2: Mobile Palm Registration
This method uses a mobile App or Mobile Palm Registration H5 to preregister a palm. The user then performs the first Palm Scan on an on-site device to activate the palm.
- Log in to PalmMa demo App, or open Mobile Palm Registration H5.
- Go to the palm registration page and follow the prompts to scan the palm and complete preregistration.
- Switch the on-site device to Recognition mode.
- The user performs the first Palm Scan with the preregistered palm to activate the palm.
- Return to the App to view the palm status and confirm that the interface displays
Activated.
For details, see "4.5 Mobile Palm Registration and Palm Management" in the Mobile Application User Manual, "5.4.5 Mobile Palm Registration" in the User Manual for M3, or "6.4.6 Mobile Palm Registration" in the User Manual for M4.
Note
To try Device Scan QR Registration, the user must first generate a registration QR code on the Device Scan QR Registration H5 page. On the device, complete registration in the following order: perform a Palm Scan first, and then scan the registration QR code. For details, see "4.6 Device Scan QR Registration" in the Mobile Application User Manual.
2.7 Complete the First Palm Scan Verification
- Switch the device to Recognition mode.
- The user performs a Palm Scan in the device's palm recognition area.
- View the verification result displayed on the device.
For details about routine Palm Scan verification, see the applicable Device User Manual.
2.8 View Verification Records and Troubleshoot
- Go to the Verification Records page in the Admin Console.
- Filter verification records by time range, scene, User ID, Username, verification status, or source.
- View verification results, or export the records within the current permission scope to an Excel file.
If no verification records are found, check the following items in order:
- Whether the device has been authorized.
- Whether the device has been activated for the Admin Console environment and its current status is
Online. - Whether the device has been associated with a scene.
- Whether the Scene Strategy has been dispatched and taken effect.
- Whether the user has been created in the Admin Console for a Closed Scene.
- Whether the user has completed palm registration. For Mobile Palm Registration, check whether the palm has been activated on an on-site device.
- Whether the user is within the scope of users allowed for verification in the current scene.
- Whether the current date and time are within the range allowed by the verification rule.
- Whether the verification rule has taken effect.
For details, see "3.3 Verification Records," "5.4.10 Report and View Verification Records" in the User Manual for M3, or "6.4.11 Report and View Verification Records" in the User Manual for M4.