Overview
The FUYL Smart Locker System can be configured to allow users to quickly authenticate at a FUYL Kiosk using RFID cards, fobs, or other RFID-enabled devices. This provides fast, tap-to-authenticate access using existing employee or student ID credentials.
This article covers RFID authentication for FUYL Enhanced environments. For RFID configuration in Classic (Essentials/Advanced), see Manage RFID.
Administrators are always given the option to authenticate either on the Kiosk or on a personal device (via a QR scan or a URL & confirmation code), regardless of RFID configuration for users.
Compatibility
RFID on Enhanced depends on the locker model and the type of reader:
| Locker | Integrated reader | External reader |
|---|---|---|
| FUYL Tower (MK2) | Not compatible | Not compatible |
| FUYL Tower (MK2.5) | Compatible | Compatible |
| FUYL Tower Pro (MK3) | Compatible | Compatible |
| FUYL 8 & 23 (MK4) | No integrated reader | Compatible |
To check which model you have, see Identify a Smart Locker.
The supported formats differ between the integrated and external readers, and the right transformation settings depend on your tags and environment.
FUYL currently supports the following RFID types and identifiers:
- MIFARE (Card Serial Number - not Proximity Access Control/PAC)
- HID Prox (Unique ID/UID)
- HID Prox (HID Corporate 1000 35 bit)
- HID Prox (HID H10301)
- HID iCLASS Legacy / SR (Unique ID/UID)
- HID iCLASS Legacy / SR (HID H10301)
While the reader may emit a beep when a tag is presented, this does not guarantee a supported format, or that the correct identifier was read. Contact support for more help with RFID.
Using RFID Authentication
When a user initiates a workflow at the FUYL Kiosk, they are prompted to tap their RFID tag on the Locker's reader. A beep confirms a successful read, and the user then returns to the Kiosk interface to continue their interaction. This tap-to-authenticate method is significantly quicker than entering a username and password or aligning a barcode to the scanner, making it well-suited for high-traffic environments.
While faster, RFID authentication is less secure compared to more robust authentication methods like SSO with MFA.
Set Up RFID Authentication
Setting up RFID in Enhanced takes three stages of configuration, then a test read. Each is described below.
- Sync RFID data Map an attribute to rfid_credential in provisioning.
- Set the Kiosk login method Select RFID under FUYL Kiosk login.
- Configure RFID settings Choose the readers in use, and for the integrated reader, the tag type and data format.
- Run a test read Check tags are read and matched correctly.
Sync RFID Data
RFID data/values must be synced from the identity provider via provisioning. This requires mapping an attribute to the new rfid_credential field, which may not be configured by default.
- Open provisioning Navigate to Settings > Users > Provisioning in FUYL.io.
-
Map an attribute Map an attribute from the identity provider source to
rfid_credential(contact support for assistance if unsure). - Save and sync Save and sync the provisioning configuration.
The data may take some time to reach the FUYL Portal, depending on provider and sync schedule. See the SSO & Provisioning guide for more help with configuration, and contact support for help or deeper troubleshooting.
Set the Kiosk Login Method
- Open FUYL Kiosk Login In the FUYL Portal, navigate to Settings > FUYL Kiosk Login.
- Select RFID As the preferred user login method. Optionally, configure a custom prompt to display, e.g. "Tap your ID Card against the reader".
- Save the changes
Configure RFID Settings
RFID configuration determines how the system reads and interprets data from RFID tags. What’s available under Settings > RFID depends on which RFID readers are enabled:
- Integrated RFID reader: built into FUYL 5 and FUYL 15 Pro (MK3) lockers. When it’s enabled, an RFID type and data format can be selected, which then reveals the transformation options for that combination. These transformations also apply to values read by an external reader.
- External RFID reader: with only the external reader enabled, the type, format and transformation settings aren’t shown. Contact support for more information on configuring an external reader.
To configure the integrated reader:
- Open RFID settings In the FUYL Portal, navigate to Settings > RFID.
- Enable the integrated reader Turn on Integrated RFID reader.
- Select the Type e.g., MIFARE, HID Prox, HID iCLASS.
- Select the Data Format e.g., Card Serial Number, Unique ID, HID H10301.
- Configure data transformations Configure any available transformations as required. They’re applied in the order they appear on the page. If unsure, leave unset and test first!
- Select the provisioned format The format in which RFID data is provisioned (Decimal/Hex/Binary).
- Save the configuration
Supported RFID types include MIFARE, HID Prox, HID iCLASS, with more available on request. Depending on the selected type and data format, various transformation options may be available (e.g., reverse byte/bit order, trim/pad bits, output format) to match the RFID data to the format stored in the provisioned data.
If a required RFID type is not listed, submit a support request for consideration of future compatibility. Additional RFID types may be introduced on request.
RFID Testing
After configuring RFID settings, test and verify that RFID tags are being read and transformed correctly.
- Open RFID settings In the FUYL Portal, navigate to Settings > RFID.
- Find Conduct test read Locate the Conduct test read area (if it’s not present, check the provisioning configuration and contact support).
- Select a Kiosk station group To test with.
- Enter the expected output value The value stored and provisioned to FUYL.
- Click Run Test This activates the RFID reader for the selected kiosk group.
- Scan the RFID tag On the tower's reader.
The test runs three verification checks:
- Read & Transform Match: Confirms the expected value matches what the tower read after transformations are applied.
- Database Lookup: Confirms the read and transformed value matches an RFID value in the provisioned data.
- Expected Value Lookup: Confirms the expected output value matches an RFID credential in the provisioned data.
More support
For any help with RFID configuration, provisioning or testing don't hesitate to contact support.