Learn about retiring SDK trusts
- Last UpdatedFeb 12, 2025
- 1 minute read
- PI System
- PI Server 2018
- PI Server
The PI SDK (version 1.3.6 and later) supports Windows authentication, so you can almost always use a mapping rather than a trust. You should do that for two reasons:
-
Though more secure than explicit logins, PI trusts are not as secure as Windows authentication.
-
If you create a trust, application users might still be authenticated through Windows and not the trust (Windows authentication versus SDK trusts). This means that their access permissions will be dictated through Windows, rather than the trust.
After you replace your SDK trusts by Windows authentication, you can further secure the Data Archive server by disabling SDK trusts altogether.