摘要:
A method and arrangement for providing data from an industrial automation arrangement to an external application operated in a data cloud and arranged outside a first data network, where an industrial Edge device processes raw data from the data source and makes the processed data available to the external application, the external application transmits a work order to the gateway component, the work order is checked by the gateway component, the raw data are captured and processed according to the work order, and the processed, abstracted and/or anonymized data are provided to the external application or a destination defined in the work order, such that an external user can automatically control access and hence use the data without accessing the underlying raw data because the level of data access is automatically negotiated and produced between the components involved (data source, gateway component) while taking into account requirements and rules.
摘要:
A comprehensive authentication and identity system and method are disclosed. A central profile is created for a user which includes user information that can be passed back or otherwise utilized by websites (e.g. for registrations, logins, etc.) The user information may include the user's username, password, contact information, personal information, marketing preferences, financial information, etc. For website registrations, the user may provide a mobile communication number that is utilized to perform a type of mobile communication device verification process. As part of a website login, the user may provide identifiable information (e.g. a username) that is looked up by the system or website to determine a mobile communication number for the user, which is used for a verification process. If the verification process is completed successfully, the user may be logged into the website. For accessing the system directly, a user may go through a mobile communication device verification process.
摘要:
A comprehensive authentication and identity system and method are disclosed. A central profile is created for a user which includes user information that can be passed back or otherwise utilized by websites (e.g. for registrations, logins, etc.) The user information may include the user's username, password, contact information, personal information, marketing preferences, financial information, etc. For website registrations, the user may provide a mobile communication number that is utilized to perform a type of mobile communication device verification process. As part of a website login, the user may provide identifiable information (e.g. a username) that is looked up by the system or website to determine a mobile communication number for the user, which is used for a verification process. If the verification process is completed successfully, the user may be logged into the website. For accessing the system directly, a user may go through a mobile communication device verification process.
摘要:
The invention relates to an operating unit (1) for a production plant (2). The operating unit (1) comprises an authorization receiving module (71) so as to receive authorization identifications (61, 62, 63, 64) which are sent out by operating modules (51, 52, 53, 54) of the operating unit (1), an authorization storage module (72) so as to store in an authorization data storage (8) authorization data including allocations of user identifications (31, 32, 33, 34, 41, 42) to the received authorization identifications (61, 62, 63, 64), and an authorization checking module (73) so as to receive at least one authorization identification (61, 62, 63, 64) from the operating modules (51, 52, 53, 54) and to determine at least one user identification (31, 32, 33, 34, 41, 42), and to unlock an operating module (51, 52, 53, 54) if in the authorization data storage (8) an allocation of the at least one user identification (31, 32, 33, 34, 41, 42) to the at least one authorization identification (61, 62, 63, 64) is stored.
摘要:
A system for communicating with a motion control system, comprising a set of motion operations, a set of functions, a set of security levels, and client software. The functions are capable of causing the motion control system to perform at least one motion operation. The client software is capable of calling at least one of the functions. The ability of the client software to call at least one of the functions is restricted based on at least one of the security levels.
摘要:
A process automation system in which process devices (1-6) execute predetermined functions as part of the process automation and exchange data (23, 24) relevant to functions and/or devices with the process automation system. Some but not all of the data (23, 24) are exchanged in encrypted form.
摘要:
An exemplary embodiment of a project docket management apparatus includes a processor configured to execute a control program and communicate with a user. In a typical aspect, the processor is located in a server computer. The user is one of the personnel assigned to a given project and has authorization to log into the server and access a database of records. The user communicates with the processor to selectively add, edit, modify and delete project records depending on his access level. If the user is an administrator, he has full control over the database records. If the user has a lower access level, he may only be able to view records, for example. The apparatus further includes a notification structure that periodically distributes information to project personnel based on predefined dates or activities. For example, the project personnel may be notified by e-mail when a date deadline is approaching, or when an action has been authorized or completed. Advantages of the invention include the ability provide flexibility and capabilities of managing tasks, events and due dates, while communicating the updated information to all necessary project personnel. In addition, the ability to control access to authorized personnel at various levels allows users to selectively add, edit, modify and delete project records depending on their access level. Finally, the ability to selectively notify the project personnel based on predefined dated or activities keeps all personnel up to date on the project.
摘要:
A security system for controlling access to motion control systems. The security system limits access to application programming interface (API) functions. The limitations on API functions can be implemented as a denial of access to certain restricted functions and/or as a limitation on certain controlled parameters employed by certain restricted functions. The security system may allow or disallow access based on users or accounts. The security system may also be programmed to prevent access to certain functions arbitrarily as determined by a system administrator or on criteria such as the status of the system.
摘要:
A span of responsibility access control system for use in plant process management and similar applications. The system leverages span-of-responsibility enabled user accounts and corresponding resource properties to assign, verify, and control access to assets and other resources in the plant process management system on a per user basis. Aspects of the system include configuration of properties for each monitored or controlled asset and association of a span of responsibility based on asset properties, such as asset type and location, with a user account. An access control module compares asset properties to the span of responsibility associated with the user account to determine whether the user is entitled to access any given asset, independent of determining permissions to act on such asset.
摘要:
An application management server includes: a terminal management table storage unit configured to store terminal device identification data for identifying a terminal device and information indicating whether or not transmission of notification data is necessary while correlating the terminal device identification data with the information; a registration request reception unit configured to receive from the terminal device, a registration request for registering transmission of notification data, and update the terminal management table storage unit based on the registration request; a release request reception unit configured to receive from the terminal device, a release request for releasing transmission of notification data, and update the terminal management table storage unit based on the release request; a via-broadcasting notification transmission unit configured to perform a process of including notification data in a broadcasting signal and transmitting the notification data; and a via-communication notification transmission unit configured to perform a process of referring to the terminal management table storage unit and transmitting the notification data to the terminal device.