Introduce compatibility between PCS AIM and Azure national cloud deployments
Currently, Platform Common Services (PCS) for the PI System is incompatible with Azure national cloud deployments (e.g. A U.S. government Entra ID instance) due to limitations with Microsoft Graph global service, upon which PCS AVEVA Identity Mana...
Add OAuth 2.0 Token Exchange (RFC 8693) Support to PCS for PI
Add native support for the OAuth 2.0 Token Exchange (RFC 8693) grant type in Platform Common Services (PCS) for PI when integrated with external identity providers such as Microsoft Entra ID. AIM must support exchanging externally issued access to...
Add configurable defaults for PI Point "Pointsecurity" and "Datasecurity"
Read access to the PIPOINT table is required for most identities. Pointsecurity and Datasecurity currently use the settings on the PIPOINT table as the default. New points will generally give read access to most identities because of these default...
Allow AIM to directly authenticate users from other Identity Providers without CONNECT
Currently, AIM can only use CONNECT or Microsoft Entra ID as the main Identity Provider. Configuring any other IDP requires federation through CONNECT. Allowing other IDPs to work directly with AIM without CONNECT would simplify the OIDC configura...
Allow mapping of OIDC clientcredential to multiple identities for Data archive
Currently, when you create a mapping in PI Data archive for OIDC client credentals, you can only assign one identity.This severely limits the granularity and forces to add new identities to existing tags to grant extra permissions and is an easy s...
Increase the allowed password length for AF Linked Table "Supply Password" connections
Currently the maximum password length for AF Linked Table connections using the "Supply Password" option is 15 characters. This length limitation should be increased to at least 25 characters.
We have some user that are able to edit some fields in AF using System explorer but they cannot do it using PI Builder (that require database access). Please align PI Builder access and PI System explorer because the actual situation is a nonsense
Provide a central point to manage the security for the whole PI System
Instead of having several admlin tools to manage the security for data archive, AF, PI Vision, PI Integrators
Could you provide a centralized security management interface which could manage all the existing and upcoming OSIsoft tools
jerome.boudon
almost 4 years ago
in Security
1
No status