Security Token Service (STS)
- Last UpdatedMar 26, 2024
- 2 minute read
The Security Token Service (STS) needs to provide the following claims for users:
-
Capability
URI: http://schemas.aveva.com/ism/2014/01/claims/capability
Can be one of these values:
-
Reader
-
Users with this value will have read only access to AVEVA Information Standards Manager.
-
They are allowed to upload Class Libraries.
-
They are not allowed to save Class Libraries to Catalogues.
-
Author
-
Users with this value will have read and write access to AVEVA Information Standards Manager.
-
They will have all capabilities of Readers.
-
They are allowed to lock existing standards to make changes.
-
They are not allowed to save Class Libraries to Catalogues.
-
Creator
-
Users with this value will have read, write and create access to AVEVA Information Standards Manager.
-
They will have all capabilities of Readers and Authors.
-
They are allowed to create and save Class Libraries to Catalogue.
-
Administrator
-
Users with this value will have read, write and create access to AVEVA Information Standards Manager.
-
They will have all capabilities of Readers, Authors and Creators.
-
They are allowed to Unlock a Class Library on behalf of another User.
-
They are allowed to permanently delete a Class Library, as long as conditions are met.
-
Organization
URI: http://schemas.aveva.com/ism/2014/01/claims/organisation
The organization name of the User. Users will only have access to Standards owned by this Organization. All users within an organization must have the same organization name. -
Email address
URI: http://schemas.xmlsoap.org/ws/2005/05/identity/claims/emailaddress
The email address of the user, the email address must be unique for all users of AVEVA Information Standards Manager. -
Name identifier
URI: http://schemas.xmlsoap.org/ws/2005/05/identity/claims/nameidentifier
The unique name (user name) of the user. This must be unique within an organization. -
Name
URI: http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name
The display name of the user.