Alert EnterpriseWiki

Suprema BioStar 2 (REST)

Suprema·AE_HSc_SupremaBioStar2_RestConnectorGuide

BiometricactiveSuprema BioStar 2 REST API version 8.4 and above
Transports
rest
Direction
bidirectional
Authentication
BioStar 2 login session
Last updated
2026-05-22

Overview

The Suprema BioStar 2 REST connector integrates AlertEnterprise with Suprema BioStar 2 — a biometric access-control platform supporting face, fingerprint, and card-based authentication. Common in fin-services data-center and high-security-zone deployments where biometric MFA is required.

Topology: AlertEnterprise application → Suprema BioStar 2 REST Connector → Suprema BioStar 2 RESTful APIs. Direct REST integration; no intermediate agent.

Architecture

Composed from this connector's actors + edges. Trust zones are color-coded; trust crossings render as thicker lines.

Composing diagram — running ELK layout5 actors · 4 edges

Authentication

1 method supported

BioStar 2 login session
session-cookie

BioStar 2's REST API uses a session-cookie authentication model — the connector POSTs login credentials and receives a session cookie used on subsequent calls. See the connector guide's Security chapter for the configured credential storage pattern.

Credential storage
AE connector configuration (encrypted at rest)

Prerequisites

Everything that must be in place for this connector to work, with the owner who's responsible.

BioStar 2 server v8.4+

customer

Customer's BioStar 2 server must be on version 8.4 or above to expose the REST API surface the connector requires.

BioStar 2 API user with appropriate permissions

customer

Dedicated API user account on BioStar 2 with permissions to manage users + access groups.

Known limitations

Documented constraints to set customer expectations before deployment.

Biometric template handling is regulatory-sensitive

important

Biometric templates are sensitive personal data under GDPR Article 9, India DPDP 2023, US BIPA, and similar regimes. The connector moves template references but customer must establish lawful basis, consent, and retention policies separately.

Data fields

3 fields mapped between AE Guardian and the vendor system.

AE fieldVendor fieldDescriptionDirectionRequired
UserBioStar 2 UserUser records — name, ID, biometric template references (templates stored on device or server depending on deployment).bidirectionalyes
CredentialBioStar 2 Card / Biometric TemplateCards and biometric templates assigned to users. Provisioning manages both.bidirectionalyes
Access LevelBioStar 2 Access GroupAccess group / access-level assignments per user.bidirectionalno
Source materials
  • src/connectors/suprema-bio-star2-rest/source.pdf p6 — Chapter 1, Supported Version
  • src/connectors/suprema-bio-star2-rest/source.pdf p8 — Chapter 2, Connector Architecture
Verifying access
Desktop only

The AE Mobile Wiki needs a bigger screen.

The diagrams, comparisons, and animated flows aren't built for phones. Open this link on your laptop or desktop browser and you'll see the full reference.

wiki.alertenterprise.app

Same Google sign-in as the AE App Hub — you'll be in once you open it on a larger screen.