It should be noted here that in the case of secured applications, limited features are available to users who have not logged on or do not have a user account, although some of these limited features can be protected from use by the creation of application privileges.
The table below identifies the limited features available to users of secured applications who have not logged on, and where possible, suggests some application privileges that you might wish to configure to prevent operators from accessing these features.
|
Feature |
Description |
Suggested Application Privilege |
|
Plotting data on the Historical Data Viewer page |
Users who are not logged on to a secured application still have the ability to configure pens to plot tag data on the Historical Data Viewer page either using the "Tag Selector", or by right-clicking an analog input or digital input tag's drawing method. |
|
|
Viewing Alarms on the Alarms page |
Users who are not logged on to a secured application still have the ability to view alarms in the alarms list on the Alarms page, and can change the view of the list to view the alarms log, active alarms, unacknowledged alarms, current alarms, disabled alarms and configured alarms. They cannot, however, respond to alarms or alarm sounds. |
|
|
Page Changes |
Users who are not logged on to a secured application still have the ability to change pages in the application using the menu, hotboxes or page buttons. |
Configure a Page Change privilege and assign it to the system pages you wish to protect by selecting it from the Page Security Bit drop-down list in the Page Properties dialog. Result: Users not granted the new application privilege will be unable to access system pages using the menu, page buttons or hotboxes. |
|
Sending Output Values to Equipment |
Users who are not logged on to a secured application still have the ability to change the value of analog and digital output tags whose drawing methods are output control related (such as a command button, or entry field), even though you may have denied the Tag Modify privilege or the Manual Data privilege. This does not apply to read-only workstations. |
Configure a Control privilege and assign it to the tags you wish to protect from data entry by selecting it from the tag's Security Bit drop-down list in the tag properties folder. Result: Users not granted the new application privilege will be unable to send values to equipment via output tags. |