PI Buffer Subsystem security requirements
- Last UpdatedJan 13, 2023
- 1 minute read
PI Buffer Subsystem requires access permissions on both the buffered node and the Data Archive server.
-
On the buffered computer, PI Buffer Subsystem runs as a Windows service. By default, this service runs as the Virtual account. For increased security, we recommend configuring the service to log on as a dedicated domain user account.
-
On the Data Archive computer, PI Buffer Subsystem (pibufss.exe) needs a PI identity, PI user, or PI group to define its identity when it connects to the server. It also needs a PI mapping (for Windows authentication) or, if you are using PI API version 1.6.8 or earlier, a PI trust so it can successfully authenticate using the selected PI identity, PI user, or PI group.