DALI · Concepts
Roles and access
The three roles on a station, exactly what each can open and do, and the ways to sign in. Your role always comes from Live3.
Everyone who signs in to a station has one of three roles: Factory, Admin or User. The station checks your role on every page and every action, not just in the menu. If you try something your role does not allow, the station refuses it and records the attempt in the activity log.
Firmware 4.1 and later
This page describes firmware 4.1 and later, where sign-in goes through Live3. Stations on firmware 4.0 use the same three roles but sign in with a username and password on the station.
The three roles
| Role | Who has it | In short |
|---|---|---|
| Factory | Aeron staff only. Granted by Live3, never with a password. | Everything, including calibration, commissioning, and the Factory page. |
| Admin | The people who set up and look after the station. | Everything a site needs: sensors, parameters, network, cloud upload, time, storage, updates and the activity log. |
| User | People who only need to see the data. | The Dashboard and Data output. Reads data, changes nothing. |
What each role can open and do
| Page or action | User | Admin | Factory |
|---|---|---|---|
| Dashboard | Yes | Yes | Yes |
| Data output: live values, logged records, data downloads, SD card downloads | Yes | Yes | Yes |
| Download the GPS health log (on Data output) | No | No | Yes |
| Modbus: masters and slaves on TCP, RS-232 and RS-485 | No | Yes | Yes |
| SDI-12 | No | Yes | Yes |
| Analog and digital: analog and digital channels | No | Yes | Yes |
| Calibration tab on Analog and digital | No | No | Yes |
| Sensors (sensor inventory) | No | Yes | Yes |
| Parameters, including calculated parameters and parameter order | No | Yes | Yes |
| Network: Ethernet, Wi-Fi, Hotspot, Cellular | No | Yes | Yes |
| Cloud upload: FTP, HTTP and cloud destinations | No | Yes | Yes |
| Cloud upload: turn Aeron Cloud (Live3) upload on or off | No | Yes | Yes |
| Cloud upload: change Aeron Cloud (Live3) upload settings | No | No | Yes |
| Show a stored password (Wi-Fi, cellular, hotspot, cloud) | No | Yes | Yes |
| Device: Time, Storage (including USB export and SD card switches), System, Remote support | No | Yes | Yes |
| Device: firmware update status, check for updates, install a staged update | No | Yes | Yes |
| Device: station information card (serial number, model, hardware) | No | No | Yes |
| Device: firmware package upload, field sensor firmware, CPU temperature, device token | No | No | Yes |
| Device: import or export the whole configuration | No | No | Yes |
| Activity logs | No | Yes | Yes |
| Commissioning | No | No | Yes |
| Factory | No | No | Yes |
A few Factory actions, such as running a calibration or setting a station's serial number and model, also need the Factory role to have come from Live3 in this session.
How you get a role
Your role is set in Live3, by whoever manages the station there, and it travels with your sign-in. The station does not keep its own list of who is an Admin. To change your role, ask the station's owner in Live3.
Ways to sign in
There are three ways in, all through your Live3 account. There is no station password on the sign-in page. See the Sign-in page for every field, and Sign in to a station for the steps.
1. Access code from the Live3 app
Open the station in the Live3 mobile app and read the 8-character code. Type your email and the code on the station's sign-in page.
- The code changes every minute.
- It is made for you, for this station, and for your role. A code made on someone else's Live3 account is refused, and so is a code for a different station.
- Each code works once.
- The station does not need internet to check the code. The Live3 app also keeps what it needs ahead of time, so it can show a code with no signal.
- After you have signed in once, the station remembers your email and you only type the code next time.
If a correct code is refused, check the station's clock first: a code is only accepted if the station's clock is within a few minutes of the real time. See Set the time.
2. Access link
Someone who manages the station in Live3 can send you a signed access link. Open it, or paste it into Paste the link someone shared with you on the sign-in page.
- A link names one station and one role, and works only on that station.
- It expires, at most 30 days after it was made.
- It can be used once. After that it only works again in the browser that used it.
- The station checks the link on its own, with no internet.
- The owner can cancel links in Live3. A station that is offline keeps honouring an old link until it next reaches Live3.
3. Continue with Live3
Click Continue with Live3 on the sign-in page. Your browser goes to Live3, confirms who you are, and comes back to the station signed in. This needs internet in your browser.
No access yet
Click Request access from the device owner on the sign-in page. It opens Live3, where you ask for access; anyone the station is allocated to can approve it, and approval sends you an access link. See Request access.
Bluetooth on site
The Live3 app can wake and reach a station over Bluetooth when you stand next to it. Being nearby on its own only gives you the User role. To get Admin you still need your access code or a grant signed by Live3.
Signing out
Use Logout in the account menu at the top right. The station also signs you out after 30 minutes without activity.