Please ensure Javascript is enabled for purposes of website accessibility
Powered by Zoomin Software. For more details please contactZoomin

AVEVA™ PI Server Installation and Configuration (PI Server 2018)

List of required permissions for PI Server tasks

  • Last UpdatedFeb 12, 2025
  • 4 minute read

The following table shows the permissions that are required for various tasks.

Task

Database security permissions

Permission required on the target object

Archives: Backing up

PIBACKUP (r,w)

Archives: Create / Register / Unregister, Force Shift, Online Reprocessing

PIARCADMIN (w)

Archives: Listing, Activity Grid, General Stats, Cache Stats

PIARCDATA (r)

Archives: Cache Control

PIARCDATA (w)

Auditing: Enable

PITUNING (r,w)

Auditing: View records

PIAUDIT (r)

Backups: Perform Backups

PIBACKUP (r,w)

Batch Database: Create / Edit / Delete / View PIUnit

PIUnit is a module; see corresponding tasks for modules

Batch Database: Create / Edit / Delete PIUnitBatch, PISubBatch

PIModules (r)

PIUnit (r1,w) read and write permission on the target PIUnit

Batch Database: Create / Edit / Delete PIBatch

PIBatch (r,w)

Batch Database: Create / Edit / Delete PICampaign

PICampaign (r,w)

Batch Database: Create / Edit / Delete PITransferRecord

PITransferRecords (r,w)

  • If src or dest is type PIBatch, you also need permissions for the target batch database: View PIBatch

  • If src or dest is type PIUnitBatch, you also need permissions on the target batch database: View PIUnitBatch, PISubBatch

  • If src or dest is type module, you also need permission on the target modules: View

Batch Database: Insert / Remove PIUnitBatch into / from PIBatch

PIBatch (r,w)

PIUnit (r1,w) read and write permission on the target PIUnit

Batch Database: Insert / Remove PIBatch into / from PICampaign

PICampaign (r,w) PIBatch (r,w)

Batch Database: View PIUnitBatch, PISubBatch

PIModules (r)

PIUnit (r1,w) read and write permission on the target PIUnit

Batch Database: View PIBatch

PIBatch (r)

If contains PIUnitBatches, also need permission on the target batch database: View PIUnitBatch, PISubBatch

Batch Database: View PICampaign

PICampaign (r)

If contains PIBatches, also need permissions on the target batch database: View PIBatch

Batch Database: View PITransferRecords

PITransferRecords (r)

  • If src or dest is type PIBatch, you also need permission on the target batch database: View PIBatch

  • If src or dest is type PIUnitBatch, you also need permission on the target batch database: View PIUnitBatch, PISubBatch

  • If src or dest is type module, you also need permission on the target modules: View

Batch Subsystem: Create / Edit / Delete units and batches

PIBATCHLEGACY (r,w)

unit (r1,w) read and write permission on the target unit

Batch Subsystem: Create / Edit / Delete aliases

PIBATCHLEGACY (r,w)

Permission on the target points: View attributes

Batch Subsystem: View units and batches

PIBATCHLEGACY (r)

unit (r1,w) read and write permission on the target unit

Batch Subsystem: View aliases

PIBATCHLEGACY (r)

Permission on the target points: View attributes

Database Security Table: Edit

PIDBSEC (r,w)

Database security (w), write permission on the target database

Database Security Table: View

PIDBSEC (r)

Digital State Sets: Create / Edit / Delete digital sets or states

PIDS (r2,w)

Digital State Sets: View digital sets or states

PIDS (r2)

Event Queue: Configure

PITUNING (r,w)

Firewall: Configure

PITUNING (r,w)

HA: Create / Configure a Data Archive collective

PIREPLICATION (r,w) PIBACKUP (r,w)

Heading Sets: Create / Edit / Delete heading set

PIHeadingSets (r3,w)

heading set (r,w) read and write permission on the target heading set

Heading Sets: Create / Edit / Delete heading

PIHeadingSets (r3,w)

heading set (r,w) read and write permission on the target heading set, heading (r,w) read and write permission on the target heading

Heading Sets: View heading set

PIHeadingSets (r3)

heading set (r) read permission on the target heading set

Heading Sets: View heading

PIHeadingSets(r3)

heading set (r) read permission on the target heading set, heading (r) read permission on the target heading

Identities, Users, and Groups: Create / Edit / Delete

PIUSER (r,w)

Identities, Users, and Groups: View

PIUSER (r)

Mappings: Create / Edit / Delete

PIMAPPING (r,w)

Mappings: View

PIMAPPING (r)

Message Log: Write messages

PIMSGSS (w)

Message Log: View messages

PIMSGSS (r)

Modules: Create

PIModules (r,w)

parent module (r1,w) read and write permission on the parent module

Modules: Delete

PIModules (r,w)

parent module (r1,w) read and write permission on the parent module, module (r1,w) read and write permission on the target module

Modules: Edit

PIModules (r)

module (r1,w) read and write permission on the target module

Modules: Edit – Link / Unlink

PIModules (r)

new parent module (r1w) read and write permission on the new parent module, module (r1w) read and write permission on the target module

Modules: Edit – Add / Remove alias

PIModules (r)

module (r1w) read and write permission on the target module, permission on target point: View attributes

Modules: Edit – Add / Remove heading

PIModules (r)

module (r1w) read and write permission on the target module, permission on the target Heading Sets: View heading

Modules: View

PIModules (r)

module (r1), read permission on the target module

Points: Create

PIPOINT (r,w)

Points: Delete

PIPOINT (r,w)

PtSecurity (r,w) read and write permission on the target point's PtSecurity attribute

Points: Edit attributes

PIPOINT (r)

PtSecurity (r,w) read and write permission on the target point's PtSecurity attribute

Points: Edit DataSecurity attribute

PIPOINT (r)

PtSecurity (r,w) read and write permission on the target point's PtSecurity attribute, DataSecurity (w) write permission on the DataSecurity attribute

Points: Add / Edit / Remove data

PIPOINT (r)

PtSecurity (r) read permission on the target point's PtSecurity attribute, DataSecurity (r,w) read and write permission on the DataSecurity attribute

Points: View attributes

PIPOINT(r)

PtSecurity (r) read permission on the target point's PtSecurity attribute

Points: View data

PIPOINT(r)

PtSecurity (r) read permission on the target point's PtSecurity attribute, DataSecurity (r) read permission on the DataSecurity attribute

Trusts: Create / Edit / Delete

PITRUST (r,w)

Trusts: View

PITRUST (r)

Tuning Parameters (Timeout Table): Create / Edit / Delete

PITUNING (r,w)

Tuning Parameters (Timeout Table): View

PITUNING (r)

1 module (r) / PIUnit (r) also assumes read permission for all modules in the hierarchy path above it

2 PIDS (r) is implicitly granted by PIPOINT (r)

3 PIHeadingSets (r) is implicitly granted by PIModules (r)

TitleResults for “How to create a CRG?”Also Available in