Security definition for plant Area
Hi, I've created a new plant area with 4 graphic displays and I want to use de "Security definition" aspect to grant operation acess to the one operator and block another.
I know that I cant do that directly at the plant area acording to another question that I read.
I know that the security definition can be only used into objects.
How do I organize the new plant area to do this?
system: 800xA v4.1
You can organize the workplace based on AE class with corresponding area objects should have same AE class and give the security definition either at the top of this same program else give it in the control str objects level.
If you have single workplace means common workplace for all operators then define d security definition at top of d control str i.e project level with operate n operate configure allowed for one A opr and denied for B opr.
when reading the Administration and Security manual you read following:
The general principle when configuring 800xA Security is to keep it as simple as
possible. A complicated security configuration is, in itself, a security problem,
because it will be difficult to maintain and will encourage shortcuts.
The manual describes how to configure it simple, try to have as few security definition aspects as possible.
This means if you want to set security on many objects, try to do it as much up as possible in the Structure (Root is upmost).
If this is not possible, ie you realize you need a Security Definition for single objects in Control Structure, then you need to "Insert Object" in eg Functional Structure, where you put objects for Operator A under object Operator A (or normally a certain process section name), and objects for Operator B under object B. Then you only need two Security Definition aspects, one for object Operator A and B respectively.
When configuring the Security Definition, the Search Option can be wrong. Read more about it in the same manual, Administration and Security.
You can always verify actual Permission, as rightclick on an object and under Details, Permissions tab see actual permissions for logged in user.