Configure OIDC for upgrades
- Last UpdatedSep 03, 2025
- 1 minute read
- PI System
- PI Server 2024 R2
- PI Server
This table lists the basic steps to configure an upgraded Data Archive server with OpenID Connect (OIDC), also called claims-based authentication.
|
Step |
Notes |
|
Review existing access permissions |
|
|
Create a list of unique access strings |
|
|
Identify PI groups and PI users that will be retained |
|
|
Create new identities to fill gaps |
|
|
After installing and configuring the AVEVA Identity Manager and registering all installed PI components, decide which identity provider(s) (AVEVA Connect or Windows Active Directory) are being used on the configured AIM Server |
Install and configure the AVEVA™ Identity Manager Register PI Server components with the AVEVA Identity Manager |
|
Determine which AD groups are needed and which identities to map them to |
(AD only) See Review AD groups |
|
Determine what identity provider roles and/or client IDs are needed and which identities to map them to |
|
|
Create mappings |
|
|
Verify configuration |
|
|
Upgrade PI SMT to version 7.0 or later (PI SMT 2023) |