Please ensure Javascript is enabled for purposes of website accessibility
Powered by Zoomin Software. For more details please contactZoomin

Asset Framework and PI System Explorer (PI Server 2018)

Configure security for a PI AF server

  • Last UpdatedJan 11, 2023
  • 2 minute read

To connect to a PI AF server, an identity must have read permissions to the PI AF server object.

Configure access permissions for a connected PI AF server so that a PI AF identity can access databases, collections and objects.

  1. Choose one of the following methods to open the Permissions tab on the Security Configuration window for a PI AF server:

    To open from ...

    Do this ...

    Servers window

    1. Select File > Connections.

    2. In the Servers window, right-click the default connected () PI AF server and click Security.

    PI AF Server Properties window

    1. On the toolbar, click .

    2. In the PI AF Server Properties window, click the Security link.

    Select Database window

    1. On the toolbar, click the Database button.

    2. In the Select Database window, click the Edit Security button.

    In the Items to Configure list of the Security Configuration window, the server and every collection is selected.

  2. Clear those collections that you do not want to be assigned the same permission settings as the server. For example, you might want to assign access rights for server-wide collections such as Mappings and Identities, but use a different set of access permissions for databases and their collections.

  3. In the Identities list, review existing identities and validate their permissions. You can also add and remove identities, as needed.

    To ...

    Do this ...

    Add or modify permissions of existing identities

    1. Select an identity in the Identities list.

    2. In the Permissions for Identity list, select or clear the Allow or Deny check boxes beside the permissions you wish to set.

    Add another identity to the Identities list

    1. Click Add.

    2. In the Select Identity window, select the identity you wish to add.

    3. Click OK. The identity is added to the list.

    4. In the Permissions for Identity list, set the access permissions as needed (the default setting is all are selected).

    Tip: If you need to create a new identity and mapping, click New Identity. For more information, see Manage identities in PI AF.

    Remove an identity from the Identities list

    1. Select an identity in the Identities list.

    2. Click Remove.

  4. Select one of the Child Permissions options. For more information, see Understand permission inheritance of element objects.

  5. Optional. To view all of a user's access permissions on items in PI AF based on his or her current PI AF identity mappings, click the Effective Access tab.

  6. Optional. In the Domain User field, enter a user's Windows domain name whose permissions you want to view.

  7. Optional. Press Tab or Enter to validate your entry.

  8. Click OK.

TitleResults for “How to create a CRG?”Also Available in