SECURITY SOLUTIONS
Matrix COSEC
Software Installation Guide
Documentation Disclaimer
Matrix Comsec reserves the right to make changes in the design or components of the product as engineering and
manufacturing may warrant. Specifications are subject to change without notice.
This is a general documentation for all variants of the product. The product may not support all the features and
facilities described in the documentation.
Information in this documentation may change from time to time. Matrix Comsec reserves the right to revise
information in this publication for any reason without prior notice. Matrix Comsec makes no warranties with respect
to this documentation and disclaims any implied warranties. While every precaution has been taken in the
preparation of this system manual, Matrix Comsec assumes no responsibility for errors or omissions. Neither is any
liability assumed for damages resulting from the use of the information contained herein.
Neither Matrix Comsec nor its affiliates shall be liable to the buyer of this product or third parties for damages,
losses, costs or expenses incurred by the buyer or third parties as a result of: accident, misuse or abuse of this
product or unauthorized modifications, repairs or alterations to this product or failure to strictly comply with Matrix
Comsec operating and maintenance instructions.
Warranty
For product registration and warranty related details visit us at:
[Link]
Copyright
All rights reserved. No part of this system manual may be copied or reproduced in any form or by any means
without the prior written consent of Matrix Comsec.
Version 4
Release date: August 1, 2022
Contents
COSEC Software Installation......................................................................................................................... 1
System Requirements.................................................................................................................................... 1
Pre-Requisites for Face Recognition and Face Enrollment ........................................................................... 2
Recommendations for Liveness Verification.................................................................................................. 2
Recommendations for Face Recognition....................................................................................................... 3
Recommended Camera Settings for Liveness Verification............................................................................ 3
Security Setup for COSEC............................................................................................................................. 3
Installing Prerequisites ...................................................................................................................................... 5
Installing COSEC ............................................................................................................................................ 17
COSEC Admin Management Portal DB Details........................................................................................... 20
COSEC DB Details ...................................................................................................................................... 23
Login to Admin Portal & COSEC Web ........................................................................................................ 32
Login to Visitor Portal .................................................................................................................................. 36
Table of Contents i
CHAPTER 1 COSEC Software
Installation
Before commencing the installation, make sure that the computers on which the software will be installed meets the
necessary requirements.
The COSEC setup installation is explained for Premise based solution. For Cloud based solution; setup
installation will be done on the Cloud server.
System Requirements
Make sure that the computer on which you are installing the software meets the following requirements:
• Operating Systems: Windows7 Professional and above
• Processor: Recommended is dual core processor and above
• RAM: Minimum available is 4GB
• Hard disk: Minimum available is 40 GB
• Screen resolution: Minimum Recommended is 1366 x 768
• DVD/CD-ROM drive
• Network Interface card: 10/100 Base-T network adapter
• Recommended IIS ver 6.0 or higher
• Microsoft .Net Framework ver 4.5
• Internet Explorer 9.0 -11.0
• Requires USB2.0 or higher Port for license dongle
Please ensure that you have installed the IIS ver 6.0 or higher, prior to proceeding with the installation of the
application as described in the following section. The user needs to ensure that [Link] Framework 4.5 is
installed only after the installation of the IIS component to enable appropriate registration of the [Link] with
IIS. To check if IIS is installed on the computer, open the web browser (Internet Explorer) and type in http://
localhost in the address field. The IIS home page must appear.
SQL database is supported for SQL server 2008 R2 and [Link] database is supported from version
10g upto version 19c.
Matrix COSEC Installation Manual 1
Pre-Requisites for Face Recognition and Face Enrollment
Face Recognition and Face Enrollment System Requirement support for windows application development targets
3 major platforms: x86 (CPU), x64 (CPU) and x64 (NVIDIA GPU).
Computer Hardware Platform
For Windows with CPU:
• 6th and above generation Intel Core processors and Intel Xeon processors.
• Intel Xeon processor E family (formerly code named Sandy Bridge, Ivy Bridge, Haswell and Broadwell)
• 3rd generation Intel Xeon Scalable processor (formerly code named Cooper Lake)
• Intel Xeon Scalable processor (formerly Skylake and Cascade Lake).
For Windows with GPU:
• Nvidia GeForce GTX 1050 Ti-4 GB onwards
Operating System
Microsoft Windows 10 64-bit
Recommendations for Liveness Verification
Below mentioned recommendations for Liveness Verification is applicable for all Matrix’s Cameras.
• Custom ROI of Height ~= 1000 px and Width ~= 700 px.
• Good and evenly distributed light is required on person's face.
• Good lighting is required at setup location facing person's front. Back light degrades acceptance rate of
real person.
• Person's distance from camera when marking attendance must be between 1 to 2 ft (For Moderate and
Advance Face Anti-Spoofing Mode) and more than 3 ft (For Basic Face Anti-Spoofing Mode).
• Face horizontal shift must be between -30% to 30% which means faces looking more left or right are
rejected.
• Face coordinates must not exceed 10% area near left and right edges and 5% area near top and bottom
edges of input image.
• Face touching image's border is rejected.
• Face must cover less than 70% area of valid image region. Faces very close to camera are also rejected.
2 Matrix COSEC Installation Manual
Recommendations for Face Recognition
• User’s distance from camera when marking attendance must be between 1 to 3 ft (i.e. Face Height should
be more than 80px).
• Good and evenly distributed light is required on user’s face.
• Shadow / Under Exposure / Over Exposure lighting should be avoided.
• Motion Blur / Over Image Compression / Environmental Noise should be avoided.
• Any type of Occlusions like Sunglasses / Mask / Helmet / Cloths covering the face should be avoided.
• Face Angle should not be more than 30 degree horizontal and 10 degree vertical.
Recommended Camera Settings for Liveness Verification
The below mentioned recommendations are applicable to SATATYA MIDR20FL28CWS or Wall mounted Cogniface
Cameras.
Name Value
Profile No. 4
CODEC MJPEG
Resolution 720p
Bit Rate Control VBR (For all Modes)
Bit Rate 1024 kbps
FPS 10
Lens Correction Off
Security Setup for COSEC1
If you are having any security concerns then make sure you manually configure the changes as per the steps given
below along with installation of the COSEC package:
Step 1:
It is expected that wwwroot folder contains only Cosec Web Applications i.e. COSEC, COSECAdmin,
COSECVisitor. If there are any other applications in wwwroot folder then placing/updating [Link] file may
impact other application too.
If your [Link] folder does not have the [Link], then follow the steps mentioned below:
• You need to copy the [Link] file from the COSEC Setup/Prerequisites and place it in the root folder.
Path of the root folder: C:\inetpub\wwwroot.
1. These settings need to be done if COSEC is to undergo security testing via any third party to evaluate that the software is free from
security vulnerability. These tests help validate the software’s security controls and measures against real world’s attacks, for
example VAPT.
Matrix COSEC Installation Manual 3
• Open this file in notepad, and replace the [Link] text with the IP or Domain which the user
wants to use.
If your [Link] folder already has the [Link], then follow the steps mentioned below:
• Copy the [Link] file from the COSEC Setup/Prerequisites and place it on the desktop.
• Open this file in notepad, and replace the [Link] text with the IP or Domain which the user
wants to use.
• Then copy the content from the dummy file and append it in your [Link] file.
Step 2:
Uncomment the httpCookies tag in the following config files of COSEC.
• COSEC Path: C:\inetpub\wwwroot\COSEC\[Link]
• COSEC Admin Path: C:\inetpub\wwwroot\COSECADMIN\[Link]
• COSEC Visitor Web Path: C:\inetpub\wwwroot\COSECVisitor\[Link]
Step 3:
• Enable TLS1.2 in the Server.
Port Requirement
The Default Ports for running different COSEC services for SSL and Non SSL communication are as follows:
1. Master Service: Non-Secure = 15001 & Secure = 15010
2. Alert Service: Non-Secure = 13001 & Secure = 13010
3. Enroll Service: Non-Secure = 12001 & Secure = 12010
4. Monitor Service:
• Communication with Master Service: Non-Secure = 11001 & Secure = 11010
• Communication with Device: Non-Secure = 11000 & Secure = 11009
• Communication with Monitor Utility: 11003
5. Admin Portal Service: Non-Secure = 14001 & Secure = 14010
6. Visitor Service: Non-Secure = 16001 & Secure = 16010
4 Matrix COSEC Installation Manual
Installing Prerequisites
The following Prerequisites should be installed (not included in setup) by user who is using Premise based solution
(COSEC Centra) before running the COSEC Installation Setup:
1. Install Internet Information Services (IIS).
For Installing Internet Information Services (IIS) click on “Installing IIS on the Windows Operating System
(Windows10)”.
2. Install .Net Framework ver. 4.5 (mandatory).
For Installing .Net Framework click on “.Net Framework Installation”.
3. Microsoft SQL Server 2008 R2 SP2 or above.
For Starting Microsoft SQL Server click on “Microsoft SQL Server”.
4. Oracle database server- upto version 19C. For Starting Oracle click on “Oracle Installation”.
Installing IIS on the Windows Operating System (Windows10)
To install the IIS on the Windows operating systems, the administrator needs to open the Windows Features dialog
by performing the following steps.
To know about IIS installation procedure in different operating systems, read the Help topic from
the installation Setup.
The following IIS components must be enabled for Windows 10 and above.
"WCF-HTTP-Activation45"
"IIS-WebServerRole"
"IIS-WebServer"
"IIS-ApplicationDevelopment"
"IIS-NetFxExtensibility46"
"IIS-ASPNET46"
"IIS-ISAPIExtensions"
"IIS-ISAPIFilter"
"IIS-CommonHttpFeatures"
"IIS-DefaultDocument"
"IIS-DirectoryBrowsing"
"IIS-HttpErrors"
"IIS-HttpRedirect"
"IIS-StaticContent"
"IIS-Performance"
"IIS-HttpCompressionStatic"
"IIS-HttpCompressionDynamic"
"IIS-Security"
"IIS-RequestFiltering"
"IIS-WindowsAuthentication"
"IIS-WebServerManagementTools"
"IIS-ManagementConsole"
"IIS-IIS6ManagementCompatibility"
"IIS-Metabase"
"IIS-WMICompatibility"
"IIS-LegacyScripts"
Matrix COSEC Installation Manual 5
"IIS-LegacySnapIn"
The figures depict the screens as they appear on the Windows 10 Operating system. However, the same
procedure may be followed to activate IIS on other Windows Operating system.
• Navigate to Control Panel by typing it in “Search the Web and Windows” field. The Windows Control Panel
appears as shown below. Now click on Programs as shown in the figure.
• The Control Panel Programs and features options are displayed.
• Click, Turn Windows features on or off. You may receive the Windows Security warning at this point.
Click Continue to continue.
6 Matrix COSEC Installation Manual
The Turn Windows Features on or off window will be displayed as shown below:
• The IIS default install features are shown as selected. Click on Internet Information Services. Additional
IIS features will be displayed as shown.
Matrix COSEC Installation Manual 7
• Click on Web Management Tools to view the available features. Check the boxes against the features to
be turned on as shown below.
• Click on the IIS 6 Management Compatibility (Version depends on OS) and check the boxes against the
features as shown.
8 Matrix COSEC Installation Manual
• Now click on World Wide Web Services and then on the Application Development Features option.
Check the boxes against the features as shown.
• After selecting the IIS features as described above, click OK to start installation. The following Progress
window will be displayed.
Matrix COSEC Installation Manual 9
When the installation completes, the Windows Features dialog closes and you are returned to the Control Panel.
In order to perform a quick check to verify that IIS is installed:
Start Internet Explorer web browser and enter the address [Link]
You should see the default IIS “Welcome” page.
IIS version may change depending on the software updation and Windows in your Computer.
10 Matrix COSEC Installation Manual
.Net Framework Installation
In the absence of [Link] Framework, user must install it before proceeding with COSEC installation.
Browse the set and run the application.
Click on Install to install Microsoft .NET Framework. The Installation will begin.
Matrix COSEC Installation Manual 11
After installation is complete Click on Finish to exit the setup.
Microsoft SQL Server
Now the installer needs to enable the appropriate protocols from the SQL Server Configuration Manager to allow
the connectivity to the SQL server. For example; Navigate to the SQL Server 2014 Configuration Manager by
typing it in “Search the web and Windows” option.
Go to SQL Server Network Configuration > Protocols for SQLEXPRESS option as shown in the figure.
12 Matrix COSEC Installation Manual
Click on the Protocols for SQLEXPRESS option in the left pane. The protocol options appear in the right pane as
shown.
Right click on the TCP/IP option in the right pane and select the Enable option. The System will display the warning
that the changes have been saved but it will take effect only after the service is restarted. Click OK to continue.
Select the SQL Server Services in the left pane. Restart the SQL Server and the SQL Server Browser services
by right clicking on the options and selecting the Restart option as shown below:
Matrix COSEC Installation Manual 13
Oracle Installation
For Oracle database, Oracle setup must be installed as shown below.
14 Matrix COSEC Installation Manual
Then you must create the user and assign the required privileges as shown below.
From PC where COSEC Web is installed - Execute msi file available at following path of Setup folder:
Setup\Prerequisites\SqlLocalDB\x64 OR x86 (as per 64-bit OR 32-bit system respectively)
Now once the Oracle user is created, you can start with the COSEC installation.
FIPS Algorithm Policy Check
To Install COSEC Component the FIPS Algorithm Flag must be disabled. If the FIPS Algorithm flag is enabled then
following pop up will appear while installing the setup.
To disable FIPS Algorithm policy go to Registry Editor by typing regedit from the start menu of your computer.
Matrix COSEC Installation Manual 15
Then go to the path:
Computer\HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy.
Now you can disable the FIPS Algorithm policy. Then Reset IIS Server and install the setup.
16 Matrix COSEC Installation Manual
Installing COSEC
In order to install the COSEC application:
• Open the COSEC Setup folder in your PC.
• Double-click the COSEC Installer Application.
• The Matrix COSEC Installer page opens.
This Installer automatically checks the computer for the prerequisites required for the installation of the applications
prior to starting the installation process. Prior to running the Installer utility it is necessary to ensure that the logged
in user has administrator rights on the computers where the various COSEC components are to be installed.
The COSEC application requires the Microsoft .Net Framework ver 4.0 to be installed prior to its installation on the
application server. The COSEC Installer utility automatically detects the presence or absence of this component
and the same must be installed in its absence.
Click on Install to initiate the installation process.
Matrix COSEC Installation Manual 17
The End User License Agreement page will appear when new installation is done.
The Annual Upgrade Package for COSEC must be updated. Only then you can access COSEC. When
the package gets expired; then you must have to get it upgraded through the Matrix channel partners.
Click on “I Accept Terms and Conditions” and click Next. The window appears with the following installation options:
Complete: Enables to install all the components of the COSEC application.
Custom: Enables the selected components to be installed on a particular computer.
18 Matrix COSEC Installation Manual
Select the appropriate installation option to continue.
The grid on the left displays the progress of the installation process. Click on the Exit button to close the COSEC
Installer. The Back button is provided and enables the user to go a step backwards in the installation process.
Custom Installation
The Custom Installation option provides flexibility in selecting the components to be installed by checking the
boxes against the relevant options and click on Next to continue.
If you select Master Service in the custom options; then database creation page will appear from where you can
configure Admin Management Database and COSEC Database which is explained in Complete Installation
section.
If the custom options selected does not include Master service, then directly installation can be proceeded.
Matrix COSEC Installation Manual 19
Complete Installation
The Complete Installation option will install all the COSEC components. Click on Complete option. The Database
creation page will appear from where you can configure Admin Management Database and COSEC Database as
shown below.
COSEC Admin Management Portal DB Details
Enter the details to configure Admin Management Portal Database.
20 Matrix COSEC Installation Manual
Database Type: Select the database type as MS SQL or ORACLE to configure and connect the Admin
Management portal database.
Server Address: Enter the server address where the database of Admin Management Portal is to be created. Eg:
sheetalraval\sqlexpress for sql database and [Link] for oracle database.
Authentication: Select the authentication type as SQL Authentication or Windows Authentication for connecting
Tenant Admin Portal database for MS SQL database.
SQL database type
• For SQL authentication:
• User Name: Specify the user name as created during sql server instance. Eg: sa
• Password: Specify the password as created during sql server instance. Eg: matrix_1
• For Windows authentication: The Username and Password will be disabled.
Oracle database type
• In this Authentication field will be disabled. But you have to enter the User Name and Password to connect
with the oracle database.
• User Name: Specify the user name as the name of the user created from Oracle system. Eg:
cosecadmin
• Password: Specify the password as created while creating the user in Oracle. Eg: admin
Before connecting COSEC with ORACLE; you must create the user in ORACLE will following privileges.
Matrix COSEC Installation Manual 21
Database Name: Enter the name with which Tenant Admin database is to be created in the server.
Test Connection: Click Test connection to establish connection with the configured SQL database or ORacle
database.
COSEC Web URL: Enter the URL through which COSEC Web is to be accessed. If you are installing COSEC Web
in PC2 and accessing from PC1; then give IP of PC2 where Web is installed. If Web is to be accessed locally then
IP or localhost can be given in URL.
COSEC Visitor Portal URL: Enter the URL through which COSEC Visitor Portal is to be accessed. If you are
installing COSEC Visitor Portal in PC2 and accessing from PC1; then give IP of PC2 where Visitor Portal is
installed. If Visitor Portal is to be accessed locally then IP or localhost can be given in URL.
Now click on Next button.
22 Matrix COSEC Installation Manual
COSEC DB Details
Enter the details to configure COSEC Database.
COSEC DB Details and Company Details must be configured only in COSEC Centra Solution.
Proceed with Single DB: Select this checkbox to complete the installation with creation of single database for
Admin Portal and COSEC. The details will be auto-filled similar to the details of “COSEC Admin Management
Portal DB Details”.
Database Type: Select the database type as MS SQL or ORACLE to configure the COSEC database.
Database Type is MS SQL
Matrix COSEC Installation Manual 23
Database Type is Oracle
24 Matrix COSEC Installation Manual
Server Address: Enter the server address where the COSEC database is to be created. Eg:
SHEETALRAVAL\sqlexpress for sql and [Link] for oracle.
Authentication: Select the authentication type as SQL Authentication or Windows Authentication for connecting
COSEC database with SQL server.
• For SQL authentication:
• User Name: Specify the user name as created during sql server instance. Eg: sa
• Password: Specify the password as created during sql server instance. Eg: matrix_1
• For Windows authentication: The Username and Password will be disabled.
For Oracle database type; Authentication field will be disabled. But you have to enter the User Name and Password
to connect with the oracle database.
• User Name: Specify the user name as the name of the user created from Oracle system. Eg:
cosecadmin
• Password: Specify the password as created while creating the user in Oracle. Eg: admin
Database Name: Enter the name with which COSEC database is to be created in the server.
Test Connection: Click Test connection to establish connection with the configured SQL database or Oracle
database.
Matrix COSEC Installation Manual 25
Company Details
Name: Enter the name of the company which will be created by default in the Admin Management Portal.
In COSEC Centra only one company will be created.
Email ID: Enter the Email ID of the company. This ID will appear in the Company configuration.
Contact No: Enter the Contact Number of the company. This contact number will appear in the Company
configuration.
License Verification Mode: Select the option as Server Based or Device Based for verifying the license.
• For Server based: License will be verified from the dongle connected to the PC where Master service is
installed.
• For Device based: License will be verified from the dongle connected to the COSEC [Link] device
will communicate with Master Service so that Master Service can fetch the license key from the dongle and
all of the COSEC services will function.
Only Vega direct door and Panel lite V2 in server mode can be used for Device based license verification.
You must ensure that Vega and Panel lite V2 are in CENTRA connection mode.
Once dongle is connected to the device (Vega or Panel lite V2); enter the License server URL (Default
is [Link]) and License server Port (Default is 15025) in Server Settings from device or its
webpage.
Server based License Reading
The dongle must be inserted in the computer where Master Service is running.
Master service checks for the presence of dongle. If dongle is available, then Master service sends Refresh
command to all other services.
Device based License Reading & Writing
In device based licensing Vega direct door or Panel lite V2 can be used. And the Tenant/ Company must be device
based.
The license dongle is connected to either Vega direct door or Panel lite V2.
• The device (Vega/Panel lite V2) sends information to the Master service that device has license dongle.
• The Master Service responds to the device by sending the IP address of Master service.
• Now device sends license key to the Master service. The master service gets the license key and gives to
other services.
26 Matrix COSEC Installation Manual
Panel lite V2
Informs that Device has Dongle
Master Service
Responds with IP address
Sends License Key
Dongle
Refresh
Enroll
Service
Admin Portal
Service
Monitor
Service
Visitor Alert
Service Service
COSEC Centra
When dongle is removed from the device, then immediate information is sent to the Master service and immediate
refresh is sent to other services.
When device goes offline, then master service will continue working for a considerable time after which the master
service and other services will get refresh.
Any change or updation in license key will be fetched by the device when it is online. The updated license key will
then be sent to the Master Service and hence other services.
In the Server Settings of Panel lite V2; Enter the URL for COSEC Centra server as the IP address of the
computer where Monitor Service is running.
And enter the License Server URL as the IP address of the computer where Master Service is running.
Once the license verification mode is selected and test connection is successful, click on Next button.
Matrix COSEC Installation Manual 27
The selected components or all the components will be installed based on Custom or Complete installation
respectively.
Click Install to start installation of components.
28 Matrix COSEC Installation Manual
After the Installation is successful, Admin Portal database backup and COSEC database backup can be taken at
desired network path.
The default network path where backup will be taken is of My documents folder.
You can Browse and select the desired path where backup is to be taken.
Matrix COSEC Installation Manual 29
In case if the Backup fails at the time of installation then its log entry will be made in its backup log file which would
be created at the same location as backup.
After taking the backup, the following services will be started automatically.
• COSEC Master Service
• COSEC Admin Management Portal Service
• COSEC Alert Service
• COSEC Enroll Service
• COSEC Monitor Service
• COSEC Identification Service
• COSEC VMS Services
30 Matrix COSEC Installation Manual
Once the services are started and license dongle is connected then you can login to Admin Portal and COSEC
Web.
For more information regarding the above services refer, COSEC Services User Manual.
Matrix COSEC Installation Manual 31
CHAPTER 2 Login to Admin Portal &
COSEC Web
Once the services are started and license dongle is connected, you can login into the Admin Portal and COSEC
[Link] do so, follow the respective links given below:
• “Login to Admin Portal”
• “Login to COSEC Web”
Login to Admin Portal
To access the Admin Management Portal, login to the Tenant Admin Portal with the URL localhost/cosecadmin on
your browser or [Link]/cosecadmin or double-click on
The COSECADMIN folder in inetpub must have administrator rights to access the Admin Portal.
Check the rights on COSECADMIN folder. For this go to path C:\inetpub\wwwroot. The IIS user must be given full
control rights. So click Edit and enable Full control checkbox. Then apply the changes. Now you can login to Admin
Portal.
Matrix COSEC Installation Manual 32
The Connection Settings page will appear as shown below:
Enter the Master Service Address to connect with the database and click Connect. The Admin Portal will get
connected with its database through the Master service. Ensure that Master service is running.
Then login with default login ID “sa” and set the desired password. You can use Login ID as User ID/Mobile
Number/Email ID and login using OTP which is received on the Email ID and Contact number as specified while
setting the password.
The Admin Portal page will open as shown below.
Matrix COSEC Installation Manual 33
For detailed information regarding Admin Portal refer Admin Management Portal User Manual from the setup.
Login to COSEC Web
You can login to the COSEC Web using the Web URL localhost/cosec or say [Link]/cosec in your
browser or double-click on .
The login page appears as shown below.
When any of the system account user (sa, so, se) logins for the first time, they need to enter just the Login ID and
directly click on Login and set the password.
34 Matrix COSEC Installation Manual
You can also use Login ID as User ID/Mobile Number/Email ID to login into COSEC using the newly created
password or the OTP once Alert configurations are done.
For detailed information regarding COSEC Web refer COSEC User Guide from the setup.
Matrix COSEC Installation Manual 35
CHAPTER 3 Login to Visitor Portal
To access Visitor Portal, type the following link in your browser: [Link]
or double-click on COSEC Visitor Portal .
To access Visitor Portal, VMS services should be running.
The login page will appear as shown below:
System Account User having rights for this application can login here.
User Id: Enter System Account User’s Login ID.
Password: Enter System Account User’s Login Password. Icon allows to view the password that is been
entered.
Check the Remember Me box to avail user id and password automatically for the next login time.
After filling the details click on Login.
Matrix COSEC Installation Manual 36
SECURITY SOLUTIONS
MATRIX COMSEC
Head Office:
394-GIDC, Makarpura, Vadodara - 390010, India.
Ph: (+91)18002587747
E-mail: Support@[Link]
[Link]