CAUTION!
The user passwords are stored irreversibly. If a password gets lost, the respective user account gets unusable. If the "Owner“-password gets lost, the entire project might get unusable! !
Security Project:
The access control for projects, particular objects resp. the right to perform certain actions in a project can be configured and managed via dialogs of the Project Settings and object Properties.
A project basically can be protected by an encrypted password, see “Project Settings, Security”.
Access rights concerning objects always are assigned to particular user groups, not to single users. For each object a list of allowed actions can be defined for each user group.
Each particular user however can get an own password.
See help pages to “User and Access Rights Management” for more information. PLC:
Depending on the device there might be also an access control concerning objects and files on the PLC. See help page “Users and Groups” for the respective user and access rights management possibilities in the device configuration editor.
Figure 116
In “Project” “Project Settings” it is possible to activate the password protection for your project.
A-178
In users and groups you can create a new group of users and give them their own password to access the system
Figure 117
In this screen you can add users.
Codesys for Industry V3.5 [version 1.3] ۰Festo Didactic
A-179
Account properties:
Login name: Log-on name for the new user.
Full name: Complete name of the new user. Just to give additional information.
Description: Description on the new user. Just to give additional information.
Old Password: This field is only editable, when the dialog is used for modifying an existing user account ("Edit User", see below). Before you can modify the password of an existing user, you must enter the currently valid password.
Password: Password for the new user. The entry is masked by * characters.
Confirm password: The entry made in field 'Password' must be repeated here and you will get an error message if the two entries do not match. Also here the entry is masked by * characters
Active: If this option is activated the user account is valid. If the account is not valid, the user cannot log-on. An account might be deactivated automatically if repeatedly a log-on has been tried with incorrect authentication entries.
Memberships: In this list all currently existing user groups are listed, beside group "Everyone", to which the new user belongs automatically. By selecting the respective entries ( ) you can define to which groups the new user should belong.
To set up the new user close the dialog with OK. If there are incorrect entries (no login name, password mismatch, user already existing) you will get an appropriate error message
Modify an existing user account:
Use button Edit to open the Edit User dialog. The entry fields are the same as in the
Add User dialog (see above). The password fields however - for safety reasons - will show 32 * characters. After having modified the desired entries close the dialog with
OK to get applied the new settings. Remove one or several user accounts:
Select the respective users in the Users list and use button Remove. Note that you will get no further inquiry! An appropriate error message will appear if you try to delete all users from the group. At least one must remain.
A-180
Group properties:
name: Name for the new group.
Description: Description on the new group. Just to give additional information.
Members: List of all currently available users and groups. Select those ones ( ) which should be members of the current group.
To set up the new group close the dialog with OK. If there are incorrect entries (no name defined, group already existing, in Members having selected a group which would cause a "group cycle", you will get an appropriate error message.
Modify an existing group:
Use button Edit to open the Edit Group dialog. The entry fields are the same as in the 'Add Group' dialog (see above). After having modified the desired entries close the dialog with OK to get applied the new settings.
Remove one or several groups:
Select the respective entries in the group‟s tree and use button Remove. Note that you will get no further inquiry! The members of the deleted groups will remain
unmodified. An appropriate error message will appear if you try to delete the groups "Everyone" and/or "Owner".
Figure 120
Maximum number of authentication trials: If activated, the user account will be set invalid after the specified number of trials to log in with a wrong password. If not activated, the number of erroneous trials is unlimited. Default: option activated, number of trials: 3; permissible values: 1-10.
Automatically log out after time of inactivity: If activated, the user account will be logged out automatically after the specified number of minutes of inactivity (no user actions via mouse or keyboard registered in the programming system). Default: option activated, time: 10 minutes; permissible time values: 1-180 minutes)
Codesys for Industry V3.5 [version 1.3] ۰Festo Didactic
A-181
Figure 121
Figure 122
In this screen all the permissions can be set.
Be very care full using password protection. A forgotten password can‟t be restored in any way. Your project is lost!