If operating in a windows workgroup – Rockwell Automation FactoryTalk AssetCentre Installation Guide 5.0 User Manual

Page 69

Advertising
background image

5

I

NSTALLING

F

ACTORY

T

ALK

A

SSET

C

ENTRE

AGENTS

63

• •

2. On each agent computer:

Add the new domain account to the Administrator user group in Windows.

Configure both services to run as the new domain account created above. To do so,
open the Services utility in Microsoft Windows, find the FactoryTalk
AssetCentre AgentController
service and edit its properties to log on as the
account. Find the VerificationAgent service and edit its properties to log on as the
account.

3. On any computer in the system, open the FactoryTalk Administration Console

(logging on to the Network directory using a FactoryTalk Administrator account) and
add the new domain account as a new Windows-linked user.

4. Grant this user read access to the FactoryTalk Directory. To do so, right-click the

Network node at the top of the tree, and then select Security. On the Permissions tab,
select the domain account and then expand the Common permissions group. Make
sure the Read permission is set to Allow.

5. Set permissions for your RSLogix family software packages (depending on what type

of processors you are using). Under System in the Explorer pane, right-click
Networks and Devices and select Security. On the Permissions tab, select the new
domain user. (If the user account you just created doesn’t appear in the list of users,
add it.) Expand the permissions group for the appropriate software and set the
following permissions to Allow:

For RSLogix 5 grant Offline Program File Monitoring, Save, and Upload.

For RSLogix 500 grant Offline Program File Monitoring, Save, and Upload.

For RSLogix 5000 grant Project: Export, Project: Go Online, Project: Open,
Project: Save, and Project: Upload. (Use this group for Logix Designer
applications and grant the same permissions.)

6. Configure FactoryTalk Security to use single sign-on. Still in the FactoryTalk

Administration Console, navigate to System > Policies > System Policies in the
Explorer pane. Double-click Security Policy. Set the Use single sign-on policy to
Enabled.

If operating in a Windows workgroup

O

N

EACH

AGENT

COMPUTER

:

Perform these steps on each agent computer in the system. These steps show you how to
create a new Windows user account and a new FactoryTalk user account for each agent
computer.

FTAC-IN005A-EN-E.book Page 63 Monday, March 4, 2013 4:03 PM

Advertising