LumiCenter/How to Create Roles and Users: Difference between revisions

From Luminys WIKI
No edit summary
No edit summary
 
Line 10: Line 10:


===Video Instructions===
===Video Instructions===
<!--<embedvideo service="youtube">Coming soon</embedvideo>-->
<youtube>https://www.youtube.com/watch?v=o_ayQ1IykjM</youtube>
Coming soon


===Step by Step Instructions===
===Step by Step Instructions===

Latest revision as of 14:58, 3 December 2024

How to Create Roles and Users

Description

This tutorial will go over how to create roles and users.

Prerequisites

  • LumiCenter setup and logged in.

Video Instructions

Step by Step Instructions

1. User configuration panel

  1. List of all Role, Users and LDAP catalogs.
  2. The information of the selected Role or User.

Note: By default, LumiCenter includes a single Role (admin) and a single User (root). The root user is assigned to the admin role, which has permissions to configure all components of the VMS.

To create a user with individual permissions, follow these steps:

Step 1: Create a new role and assign the required permissions.
Step 2: Create a new user.
Step 3: Assign the created user to the new role.

2. After selecting “Create a user,” four permission options will be presented:

  • Role: Grants access to menus, functions, interfaces, and settings.
  • Groups & Devices: Grants access to specific devices or device groups.
  • Storages: Grants access to storage archives.
  • Macros: Grants access to Macros.

3. Role

Basic: Allows entry of the role name.

Map Control: The drop-down menu provides four options:

  • No access: Restricts map viewing.
  • View only: Allows viewing of maps only.
  • View/move/scale: Enables viewing, moving, and scaling of maps.
  • Full access: Grants permission for all map-related operations.

Other: Playback viewing is based on the number set here.

  • Storage depth viewing restriction: Limits the total duration of recordings accessible to users by entering a specific number. A value of 0 means there is no limit.

4. Access to Functions

  • Access to confidential comments
    • Yes / No: Determines if users can add and view confidential comments.
  • Access to Search in storage mode
    • Yes / No: Determines if users can use the storage search panel to find specific events, etc.
  • Adding cameras to layout in monitoring mode
    • Yes / No: Determines if users can drag a camera to a surveillance cell in the Layouts interface.
  • Adding / editing presets
    • Yes / No: Determines if users can add and edit PTZ presets.
  • Alarms processing
    • No access: Users cannot access alarm videos.
    • View only: Users can view alarm videos, but cannot assess alarms.
    • Full access: Users can view alarm videos and access alarms.
  • Allow comments in storage
    • No access: Users cannot add comments or create protected recordings.
    • Create: Users can add comments to recordings.
    • Create/Protect: Users can add comments and create protected recordings.
    • Create/Protect/Edit and delete: Users can add comments, create, and edit protected recordings.
  • Allow to delete records
    • Yes / No: Determines if users can delete recordings.
  • Allow unprotected exports
    • Yes / No: Determines if users can export recordings without password protection.

5. Access to Functions (continued)

  • Export
    • Yes / No: Determines if users can export recordings.
  • Layout editing
    • Yes / No: Determines if users can edit layouts.
  • Minimize to taskbar
    • Yes / No: Determines if users can minimize LumiCenter Client to the taskbar.
  • Operating domain
    • Yes / No: Determines if users can manage LumiCenter domain settings, such as creating, adding, or removing a server object from the domain.
  • Permission to access via Web UI
    • Yes / No: Determines if users can access the LumiCenter Web Client.
  • Show captions
    • Determines if users can view titles from POS terminals.
  • Show faces
    • Determines if users can see faces in Live View and Playback, provided that a Face Detection Tool has been configured.
  • System log
    • Yes / No: Determines if users can view system logs.
  • Unlock camera menu button
    • Yes / No: Determines if users can use the camera menu button for specific operations in Live View.
  • View masked video
    • Yes / No: Determines if users can view masked videos.

6. Access to Interfaces

  • Group panels
    • Yes / No: Determines if users can see device groups in the Layouts interface.
  • Layout tab
    • Yes / No: Determines if users can access the Layouts interface, also known as the Monitoring Center, where users can perform Live View, Playback, and Search.
  • Object panel and Camera search panel
    • Yes / No: Determines if users can access the Object panel and the Camera search panel in the Layout interface.

7. Access to Settings

  • Detection settings
    • Yes / No: Determines if users can access the Detection tool tab.
  • Device settings
    • Yes / No: Determines if users can access the Device tab.
  • Option settings
    • Yes / No: Determines if users can access the Option tab.
  • Macro setup
    • Yes / No: Determines if users can set up Macros.
  • Show error messages
    • Yes / No: Determines if users can view error messages, excluding critical error messages.
  • Storage settings
    • Yes / No: Determines if users can access storage-related settings.
  • User Permission settings
    • Yes / No: Determines if users can access the User tab.

8. Additional

  • Comment
    • Specify additional information if necessary.

Supervisor Confirmation

  • Supervisor for access to export
    • Select a role from the dropdown menu: If confirmation is required before users of this role can initiate an export, select the appropriate role from the dropdown menu.
  • Supervisor for authorization in Client
    • Select a role from the dropdown menu: If confirmation is required before users of this role can log in, select the appropriate role from the dropdown menu.

Time Schedule Management

  • Time schedule
    • Select a schedule from the dropdown menu: Users can only log in within the specified duration of the selected time schedule.

Video Wall Management

  • XXX (Server objects)
    • Yes / No: Determines if users have access to monitors connected to LumiCenter servers via the LumiCenter client.

9. Group and device Permissions

In LumiCenter, user permissions can be set for both individual devices and device groups. If a device is part of multiple groups with different access levels, the highest access level assigned to any of the groups will be applied to the user.

What is Default permissions?

The default permissions for devices, storage archives, and macros in LumiCenter apply to newly added or created items. When creating a role, permissions can only be specified for devices that have already been added. This setting allows for automatic assignment of permissions to new devices or macros, eliminating the need to manually reconfigure role permissions each time a new device or macro is added.

10. Default permissions

  • Camera access
    • No access: Users have no access to new devices.
    • Storage only: Users can only view recordings from the camera.
    • Live in Armed mode: Users can view the camera only when it is armed.
    • Live: Users can view live video from the camera.
    • Live / Storage: Users can view both live and recorded video from the camera.
    • Live / Storage / Control: Users can view live and recorded video, and control the camera, but cannot configure the device.
    • Live / Storage / Control / Configure: Users have access to all functions, including device configuration.
  • Microphone access
    • No access: Users cannot listen to audio in live view or recordings and cannot export audio.
    • Live audio: Users can listen to audio in live view.
    • Live audio and storage: Users can listen to live audio and access audio from stored recordings, with full functionality.
  • PTZ Priority
    • No access: Users cannot control the PTZ (pan-tilt-zoom) of the camera.
    • Minimum level, Low level, Medium level, High level, Maximum level: Users can control the PTZ device with the corresponding priority level.

11. Group permissions

  • Device group
    • Inherited: Access permissions are inherited from the "Camera access" under the "Default permissions" tab in the previous step.
    • No Access: Users have no access to the device in the group.
    • Storage only: Users can only view recordings.
    • Live in Armed mode: Users can only view video from the camera when it is armed.
    • Live: Users can view live video from the camera.
    • Live/Storage: Users can view both live and recorded video from the cameras.
    • Live/Storage/Control: All functions are available except for configuring the camera.
    • Live/Storage/Control/Configure: All functions, including camera configuration, are available.

12. Storage

Default permissions

  • Storage access
    • No access: Users have no access to new storage archives.
    • Full access: Users have full access to new storage archives.

Storage permissions

  • Storage archive(s)
    • Inherited: Access level is inherited from the Default permissions tab.
    • No access: Users have no access to this storage archive.
    • Full access: Users have full access to this storage archive.

13. Macros

Default permissions

Macros access

  • No access: Users have no access to new macros.
  • Full access: Users have full access to new macros.

Macro permissions

  • Automatic rules
    • Inherited: Access level is inherited from the Default permissions tab.
    • No access: Users have no access to automatic rules.
    • Full access: Users have full access to automatic rules.
  • Cycle rules
    • Inherited: Access level is inherited from the Default permissions tab.
    • No access: Users have no access to cycle rules.
    • Full access: Users have full access to cycle rules.
  • Event rules
    • Inherited: Access level is inherited from the Default permissions tab.
    • No access: Users have no access to event rules.
    • Full access: Users have full access to event rules.

14. Creating users:

Basic

  • Name – Enter a username.

Additional

  • Comment: Insert any additional information if necessary.

Basic

  • Company ID: Insert the company ID of the user if necessary.
  • Date of creation: Indicates the date when the user was created.
  • IP address: Insert the IP address of the user if necessary. This does not restrict the access of the user account.
  • Lock user account: If "Yes" is selected, the user will not be able to log into LumiCenter with the account.
  • Role: Select a role for the user.
  • Social ID: Insert the social ID of the user if necessary.
  • User e-mail: Insert the email of the user if necessary.

15. LDAP

  • Catalog: If the user belongs to an LDAP catalog, select it from the dropdown menu.

Security

  • Change password on next access: If "Yes" is selected, the user will be required to set a new password upon login.
  • Password: Set a password for the user account.

Simultaneous connections limitations

  • Maximum number of mobile app connections: Sets a limit on the number of connections a user can make through the mobile client.
  • Maximum number of web app connections: Sets a limit on the number of connections a user can make through the web client. This also determines the maximum number of RTSP stream requests the user can make.

16. Multiple roles for one user: If you want the user to have more than one role, hold Ctrl and drag the user to another role. The same user will appear under multiple roles, thereby combining the permissions from each role.