Company Events Academic Community Support Solutions Products & Services Contact NI MyNI

Relationships between User Accounts and Permissions

NI InsightCM™ 3.1 Help

Edition Date: July 2017

Part Number: 374498D-01

»View Product Info
Download Help (Windows Only)

Parent Topic:   Permission-Based Access to NI InsightCM Web Application Features

Permissions determine which features in the NI InsightCM web application a user can access when he or she logs in. Several factors determine which permissions a user receives:

Permission The ability to see and/or configure a specific page or tab in the NI InsightCM web application. You assign permissions to roles.
Role An administrator-defined persona with assigned permissions.
Active Directory group A group in the Windows Active Directory service running on the server machine that contains user accounts. Groups map to roles.
Note  The NI InsightCM web application does not require you to authenticate users with Active Directory. An alternative is allowing users to log into the NI InsightCM web application with the names of built-in roles, which do not require a password. For information about choosing between these options, refer to the Authenticating Users via Windows Active Directory section.
User account An account on the Windows domain whose credentials a user enters to log in to the NI InsightCM web application. Accounts belong to Active Directory groups and therefore, they receive the permissions from any role to which their Active Directory group is mapped.

The following diagram shows the relationship between all four items. Notice that the user accounts receive permissions via a group. In other words, you cannot assign permissions directly a specific account.

Authenticating Users via Windows Active Directory

The process for assigning permissions to users depends on whether you want to use Windows Active Directory to authenticate NI InsightCM web application users. The following list explains some of the consequences of this decision:

  • Use Active Directory for authentication—Requires you to enable SSL, configure LDAP settings, assign administrator permissions to a Windows account, and map Active Directory groups to NI InsightCM web application roles. Also requires users to log in to the NI InsightCM web application with Windows account credentials.
  • Use built-in roles—You add roles or customize the permissions of built-in roles without mapping the roles to groups of Windows accounts. Users can log in to the NI InsightCM web application in these roles by entering the name of a role and no password.

Refer to Assigning Permissions to NI InsightCM Web Application Users for step-by-step instructions for integrating the NI InsightCM web application with Windows Active Directory.

Related Information

Assigning Permissions to NI InsightCM Web Application Users


 

Your Feedback! poor Poor  |  Excellent excellent   Yes No
 Document Quality? 
 Answered Your Question? 
Add Comments 1 2 3 4 5 submit