Securing the historian server – Rockwell Automation FactoryTalk Historian SE 4.0 Installation and Configuration Guide User Manual

Page 64

Advertising
background image

Chapter 5 Configuring FactoryTalk Historian

64

Rockwell Automation Publication HSE-IN025A-EN-E–September 2013

To activate FactoryTalk Historian SE server:

1. Go to

Start > All Programs > Rockwell Software > FactoryTalk

Activation > FactoryTalk Activation Manager. The
FactoryTalk Activation Manager dialog box appears.

2. Follow the instructions displayed in the dialog box to

configure your activations.

NOTE

Click Help for more information, or refer to the instructions from

the Activate Rockwell Software Products leaflet, available with

your FactoryTalk Historian SE installation package.

FactoryTalk Historian SE allows you to manage the Historian server

authentication through Windows and Microsoft Active Directory
(AD). This solution improves the Historian server security, reduces
your management workload, and provides users with a single sign-on
experience.

With Windows authentication for the FactoryTalk Historian SE
Server, users log on to their Windows accounts and are
automatically authenticated on the Historian server. The Historian
server comes with a set of preconfigured security components
created to reflect particular roles that may be adopted by users to

access the Historian server resources. Each user comes with
predefined trusts and is assigned to one or more groups, depending
on the scope of privileges they should have. Each group is defined
with a different scope of privileges. The users and groups are
assigned to individual database tables, creating in this way a system
of permissions for accessing the Historian server database resources.

The users are the central components that connect the Windows
authentication functionality with the Historian server security
model. They determine which Windows users are authenticated on

the Historian server and what access permissions they have there
(for example, whether the user is allowed to create a point or run a
backup).

Securing the Historian Server

Advertising