Limitations¶
-
Device Owner role: For new installations, the Device Owner role is replaced by the Admin role. For existing systems, the Device Owner remains only as a placeholder.
-
Role Templates: Only predefined role templates are available at this time. Custom role template creation is not yet supported.
-
Permissions for Device Applications: Fine-grain permissions for device applications are supported only for custom applications. Sharing permissions work only if the user has an assigned template role.
-
Management Applications access: Management Application operations (Install / Update / Delete) are accessible only to the Admin role. These operations are not covered by fine-grain access permissions. Access control inside the IEM App itself is determined by the IEM App, not by fine-grain access.
-
Backup limitations: Backup creation is only possible if the user has access to all installed apps and their versions. Backup cannot be created if the user lacks permissions for installed apps. Displaying source device information before creating a backup may fail due to missing authorization support in Device Twin. Devices without Device Twin support cannot be backed up.
-
Restore limitations: Restore operations are only supported if the user has all required App Management permissions for the devices and all the applications included in the backup. Without these permissions, restore is not supported.
-
Device Twin bug: An existing device twin error message issue is not yet resolved.
-
Device Groups: Users can list only the device groups they created themselves. Only the Admin role can list all device groups.
-
Relocation: Global IEM settings, including relocation, are restricted to the Admin role and are not covered by fine-grain access control. This functionality is therefore unavailable for non-admin roles.
-
Onboarder role: The Onboarder currently has full access to all its devices and applications. Fine-grain restrictions for the Onboarder role are not yet implemented.
-
Device Application upload with same name: If User 1 uploads an application and User 2 attempts to upload another application with the same name, the system will not allow it. Duplicate application names are currently not supported.