PI Vision Access Control Management
There should be provision of granting access to PI Identities or PI users on PI Vision using PI Vision admin webpage.
In our system, we have multiple AF servers, but only 1 Vision server. The Vision server has access to the AF databases on all the AF servers. User access to the AF dbs is controlled by Identities mapped to AD groups. But AF server access is also controlled by Local Security Policy. Not all Identities on the Vision server have access to all of the AF servers. But all Identities on the Vision server do have visibility to all of the AF databases from the Assets panel in Vision. Consequently, when a Vision user clicks on an Asset from an AF server where their Identity does not have the "Access this computer from the network" privilege, then that AF server reports a login failure, which is a nuisance to system operations. See my support case#00858150 for more details.
I also want all PI Vision permissions to be driven from the PI Vision admin webpage, using AF for permissions is a problem for us, as we have multiple AFs.
I also want the ability to assign ownership of a screen to a group, not an individual.
Marc Dunivan commented
To be able to manage PI Vision user members and admin members from the PI Vision Admin website would be nice. To be able to make a user a PI Vision user based on an existing PI Identity from the PI Vision Admin website...awesome!