Learn about mappings for untrusted domains
- Last UpdatedFeb 12, 2025
- 1 minute read
- PI System
- PI Server 2024 R2
- PI Server
In this deployment scenario, the Interface node and Data Archive are located in different domains, and the domains are not trusted domains. The objective is to map User1 to Identity1.
-
If the Windows account (User1) is a local account or a domain account on the Interface node domain, then either:
-
Map Windows account (User1) to a Data Archive domain account (ServerDomain\DomainUser1) in Windows Credential Manager on the Interface node. See Learn about Windows Credential Manager. Map ServerDomain\DomainUser1 to Identity1 on Data Archive.
-
Create the same Windows account (User1) on theData Archive node with the same credentials as the account on the Interface node. Map ServerNode\User1 to Identity1.
-
-
If Windows account (User1) is either a Local System account or Network Service account, change the user account of the Interface node to enable Windows authentication (see Task 4: Change the login credentials for your interfaces).