Please ensure Javascript is enabled for purposes of website accessibility
Powered by Zoomin Software. For more details please contactZoomin

Asset Framework and PI System Explorer (PI Server 2024 R2)

Create a subject mapping

  • Last UpdatedApr 13, 2026
  • 1 minute read

Subject mappings are used to map an individual OpenID Connect (OIDC) user to an Asset Framework (AF) identity in order to grant access to AF server and set permissions.

Important: While subject mappings can be used, AVEVA highly recommends using role or group-based security in place of subject mappings to ensure scalability and manageability.

  1. Open PI System Explorer, then connect to the desired AF server.

  2. Select File, then select Server Properties.

    The Server Properties dialog opens.

  3. Select the Mappings tab.

  4. Right-click on the mappings list, then select New Mapping.

    The Security Properties Mapping dialog opens.

  5. Verify that the OpenID Connect option is selected.

  6. In the Role field, enter the domain name and user name for the subject mapping following this format: sub:<Domain>\<User>.

    • Replace <Domain> with the domain of the user.

    • Replace <User> with the name of the user.

  7. Press the Tab key, then verify that the Role ID and Name fields have been automatically populated with the correct subject mapping in this format: sub:<Domain>\<User>.

  8. Select the Identity field to reveal the dropdown list, then select the AF identity you want to assign to the subject mapping.

  9. Select OK to save your changes.

    The subject mapping is created.

TitleResults for “How to create a CRG?”Also Available in