Set application permissions

Set permissions on the application to control whether a user-computer pair can:
  • See the application or its contents (
    Read
    )
  • Modify the properties of any item in the application (
    Write
    )
  • Add areas or data servers to the application (
    Create Children
    )
  • Change the security settings of the application (
    Configure Security
    )
  • View the contents of the application (
    List Children
    )
  • Delete the application or any item within it (
    Delete
    )
  • Write tags in data servers (
    Write Value
    )
  • Perform other product-specific actions
  • Perform actions defined in user action groups
If a resource grouping is associated with the application, the networks or devices in the resource grouping inherit the security permissions of the application.
TIP:
  • Denying
    Read
    does not prevent users from reading tag values from data servers in the application.
  • Denying
    Write
    prevents users from modifying the properties of any item in the application. However, if
    Create Children
    is allowed, users can add areas or data servers to an application.
  • The
    Write Value
    action does not prevent users from writing values to tags in specific hardware devices.
Prerequisites
Setting application permissions requires these security permissions:
  • Common > Read
  • Common > Configure Security
To set application permissions
  1. In
    FactoryTalk Administration Console
    Explorer
    , right-click the application to secure, then select
    Security
    .
  2. In
    Security Settings,
    in the
    Permissions
    tab, either:
    • Set permissions by user:
      • Select
        User
        .
      • In
        Users and Computers
        , select a user and computer.
      • In
        Action
        , expand the category that contains the action to secure, and select the action.
    • Set permissions by action:
      • Select
        Action
        .
      • In
        Action
        , expand the category that contains the action to secure, and select the action. If the list of actions is blank, add users and computers first.
      • In
        Users and Computers
        , select a user and computer.
  3. Select
    Allow
    or
    Deny
    , or clear both. Clear both
    Allow
    and
    Deny
    to make the application inherit its security settings from the
    FactoryTalk Directory
    folder.
  4. (optional) To control access to the action by another user or group, select
    Add
    , and in
    Select User and Computer,
    select the user or group, and computer or group to add, and select
    OK
    .
  5. When finished configuring security for the application, select
    OK
    .
Provide Feedback
Have questions or feedback about this documentation? Please submit your feedback here.
Normal