Industrial Edge Management 2.0.0 (Preview)¶
Information
Industrial Edge Management 2.0.0 is currently only available as non-productive early access for IEM Pro.
Fine-Grained Access Control¶
We are introducing a new Fine-Grained Access Control in the Industrial Edge Management, enabling more efficient management of users, resources and roles.
- Role Management (Create, Edit, Delete): A new role management capability has been introduced within the Identity and access management allowing IT professionals to create ,edit and delete custom roles and assign them centrally to users.
Add Role

Edit Role

Delete Role

-
Action and Resource Validation: Actions are now explicitly defined and validated against specific resources (Devices, Applications, and IEM), ensuring users can only perform actions they are authorized for.
-
Device Group Sharing: You can now create and share device groups with specific users or roles to streamline collaboration. This feature replaces the
My Admin Groupsfunctionality from the old UI.

- Application and Version Sharing:
Applications along with their individual versions can now be shared with other users. This is the successor to the
My User Groupsfeature from the IEM Pro v1.

- Removal of the old Admin UI Panel: The legacy Admin Panel from the previous user interface has been removed. All access and permission management now takes place via the new, fine-grained access control interface.

Industrial Edge Backup and Restore: Supported Characters in App Names¶
Important Notice for App Developers
The Industrial Edge Backup and Restore solution has limitations regarding special characters in app names. Review this information carefully when naming your applications.
Supported Special Characters
The Industrial Edge Backup and Restore solution currently supports only the following special characters in app names:
/(forward slash).(period)-(hyphen)_(underscore):(colon)
Technical Background
These character restrictions are based on the underlying technology used by the Industrial Edge Backup and Restore solution. While validation is not currently enforced during app creation, using unsupported characters may cause unexpected behavior or failures at runtime.
Recommendation
When creating new applications, choose your app name carefully and use only the supported special characters listed above. Avoid using any other special characters to ensure compatibility and prevent potential issues in production environments.
Restrict Unauthorized Sideloading with Configurable Control¶
We have added a new security control that enables IT administrators to configure and restrict sideloading of applications within the IEM platform.
Version Deletion for Device Applications¶
To optimize the management of device applications on the Industrial Edge, it will now be possible to delete old or unused versions of device applications. This new feature will improve operational efficiency and system performance.
To delete device application versions, navigate to the Application details page. Click the dropdown menu next to the relevant version, and select the Delete button.

Removal Notice: Application Configuration Service (ACS)¶
Removal Notice: Application Configuration Service (ACS)
The Application Configuration Service is removed as of IEM V2.
The Application Configuration Service was previously used to render application configurations during installation. This functionality is now integrated directly into IEM, making the separate ACS component obsolete. Application configuration is now handled through the standard configuration options in the app installation flow.


Industrial Edge Management Pro 2.0.0 (based on IEM 2.0.0)¶
Argo CD Support in IEM Pro Helm Chart¶
The IEM Pro Helm Chart now supports deployment via Argo CD, enabling Kubernetes administrators to leverage GitOps principles for consistent, secure, and automated deployments.
Deprecation Notice: NGINX Ingress controller¶
We are deprecating the NGINX Ingress support for IEM Pro and remove it in future versions. We are following the retirement notification for NGINX Ingress by Kubernetes. Switch to a different ingress controller class.