Map the PI identity to the Process Identity Client
- Last UpdatedApr 07, 2025
- 2 minute read
Note: This section only applies if installing in an environment whose end users only use OpenID Connect authentication and you selected the authentication option Use OpenID Connect with Process Identity Client ID for the PI Vision Connection to PI Data Archive and AF Servers. (This is the only valid selection if your PI Vision server is not installed on a domain.) Otherwise, proceed to Configure security.
To map the PI identity to the Process Identity Client, create a PI mapping:
-
Open PI System Management Tools (SMT).
-
Under Servers, select the server.
-
Under System Management Tools, select Security > Identities, Users, & Groups.
-
Select the PI identity that you want to map.
-
In the toolbar, select the properties button
.
The Properties window opens.
-
In the Properties window, select the Mappings and Trusts tab.
The top portion of the window shows all existing mappings for this PI identity. The bottom portion shows all existing PI trusts.
-
Select the Add button under the mappings portion of the window.
Note: The Add button is disabled if the selected PI identity is flagged as disabled or not usable in a mapping.
The Add New Mapping window opens.
-
In the Authentication field, select OpenID Connect.
-
In the Role field, select the browse button
to browse the available Roles and Clients on the Identity Server. You may be prompted
to sign in with the Identity Server.
-
Select the Client ID option and browse for the Process Identity Client. Select it and select OK.
The dialog closes.
-
In the Add New Mapping window, select Create.
-
In the Properties window, select OK.
If you have difficulty creating the mapping, select the Help button in PI SMT.