EasyManua.ls Logo

Distech ECYPSE - Remote RADIUS Server

Default Icon
174 pages
Print Icon
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
ECLYPSE Web Interface
88 ECLYPSE User Guide
Item
Description
User access
attributes:
The access levels the user will be able to use. Set one or more
options according to the user’s role.
Admin: Allows user access to the ENVYSION studio and viewer.
The user can also view and modify all configuration interface
parameters and program the controller with EC-gfxProgram.
Operator: Allows user access to the ENVYSION interface in viewing
mode as well as gives partial access to the ECLYPSE Web
Configuration Interface. Certain configuration interface screens are
unavailable such as User Management, Viewer Information, etc.
Viewer: Allows user access to the ENVYSION interface in Viewing
mode. The user is not allowed to access the ECLYPSE Web
Configuration Interface.
Rest: Allows a user to program the controller with EC-gfxProgram.
This user does not have access to the ECLYPSE Web Configuration
Interface or ENVYSION.
Remote RADIUS Server
When Authentication is set to Proxy, the following configuration parameters are available.
This centralizes access management on a remote RADIUS server thereby saving time by
eliminating the need to add users to each controller individually. A remote RADIUS server
can be another ECY series controller or a suitably-configured EC-Net
AX
/ EC-BOS
AX
station.
See Supported RADIUS Server Architectures on page 61.
Should the connection to the remote RADIUS server be temporarily lost, ECLYPSE
controllers have a fall back authentication mode: Users that have already authenticated
themselves with the remote RADIUS server and then the connection to the RADIUS server
is lost, these users will still be able to login to the controller as their successfully
authenticated credentials are locally cached.
The user profile cache is updated when the user authenticates themselves while
there is a working RADIUS server connection. For this reason, at a minimum, admin
users should log in to each ECLYPSE controller at least once so their login can be
cached on that controller. Otherwise, if there is a RADIUS server connectivity issue,
and a user who has never connected to the ECLYPSE controller before will be
locked out from the controller. It is particularly important for admin user credentials
to be cached on each controller as an admin user can change the controller’s
network connection parameters that may be at cause for the loss of connectivity to
the RADIUS server.

Table of Contents