Creating a Group Account to Proficy Authentication
By default, all iFIX security groups are added to Proficy Authentication at the time of registration. As per your requirement, you can modify the permissions. Whenever you register iFIX with Proficy Authentication, those groups along with the configured permissions are added to the Proficy Authentication server.
NOTES:
The following groups IFIX_PROFICY_AUTH_ADMIN and APPLICATION_DESIGNER are not available by default in IFIX if you have upgraded from iFIX 6.1 or 6.5 . You must manually create those groups with all the iFIX application features as needed.
Once you delete a group in iFIX, Proficy Authentication will not recognize that the group is deleted in iFIX. So the Proficy Authentication users in that group will not have the permission to log in to iFIX.
To create a new group and add to Proficy authentication, perform the following:
- In Classic view, the iFIX WorkSpace, click the Security Configuration button on the toolbar.
-Or-
In Ribbon view, on the Applications tab, in the System & Security group, click Security, and then click Security Configuration Utility. -
Click the Group Account button on the Security toolbox.
- Click Add.
- In the Group Name field, enter a name for the group account that you want to create.
NOTE: Ensure that there is no empty space in between the group name. For example, "iFIX Group1" is not accepted, instead, it can be "iFIX_Group1". - Add security areas.
- Add application features.
For more information on the application features and the security groups, refer to the section Built-in Application Features and Security Groups in Proficy Authentication. - Click OK to save the group account in memory.
- In the Group Accounts dialog box, in the Add to Proficy Auth group, select the following:
Field Description Shared prefix The name of the group that you created is added to the Proficy authentication server with scada.ifix_shared in the prefix. For example, if you created a group called iFIX_Group1 in iFIX, the group is added as scada.ifix_shared.iFIX_Group1. The Shared Prefix essentially saves you from having to add the same groups from each iFIX node in the system; you only need to add it once to Proficy Authentication. Node Name prefix The name of the group that you created is added to the Proficy authentication server with <scada>.nodename in the prefix. For example, if the node name is FIX, and the group name you created in iFIX is iFIX_Group1, the group is added as scada.FIX.iFIX_Group1. The Node Name Prefix enables you to use the same group names across different nodes but with different privileges. - Click Add Groups.
The selection is added to the Proficy authentication. - Click OK again to close the Group Accounts dialog box.
- On the File menu, click Save.
See Also
- Using iFIX with Proficy Authentication.
- Registering iFIX with Proficy Authentication Server.
- Registering iFIX with Configuration Hub, Proficy Authentication.
- Assign iFIX Groups to the Newly Created User.
- Assign iFIX Groups to the Newly Created User.
- Logging into iFIX Manually using Proficy Authentication.
- Create Users in Proficy Authentication.
- Trust an Untrusted Certificate while Registering iFIX to Proficy Authentication Server.
- Trust an Untrusted Certificate while Registering iFIX with Configuration Hub and Proficy Authentication server.