Unicon documentation migration is in progress. You might find some broken links or experience minor issues in the documentation. We are working on resolving these issues.

X

Access management via AD

Provided, you have activated the AD logon during installation, AD users can log on to ELIAS 18 with their accounts if they are either members of the ELIAS AD group or are authorized via an access right defined in ELIAS.

AD group ELIAS

Members of the ELIAS AD group, which has been set up in your AD system for this purpose, can log on directly with their AD account to ELIAS 18.

Prerequisite:

  • In your Active directory system, create an AD group named ELIAS and add the relevant users to this group.

After installation, you will find a group named elias@< AD domain> in ELIAS under Access rights. < AD domain> corresponds to the domain specified during installation. Example: elias@int.sampletec-01.com

Note:

All members of the ELIAS AD group have the Global Admin role and thus access to all functions and all containers.

After the ELIAS installation, you can change the AD group name:

  • Edit the file Program FilesUniconScoutELIASserver.json and modify the value of the adGroup parameter. Subsequently, restart the ELIAS service in Services.msc

ELIAS access rights

The users are granted an access right configured in ELIAS. This may be a user or a group of any domain. The access rights are defined by an administrator with global access. Included in the access right is the ELIAS role that defines which functions the users have access to.

Users who are authorized to log on via an ELIAS access right also log on with their AD account. However, authentication is independent of any predefined group or domain membership.

Prerequisite:

  • In ELIAS 18, in the Globaler Admin role, create access rights based on your AD system.

For further information, see ELIAS access rights.

Access management via AD