Limitations¶
-
Device Owner role: For new installations, the Device Owner role is replaced by the Admin role. For existing systems, the Device Owner remains only as a placeholder.
-
Role Templates: Only predefined role templates are available at this time. Custom role template creation is not yet supported.
-
Permissions for Device Applications: Fine-grain permissions for device applications are supported only for custom applications. Sharing permissions work only if the user has an assigned template role.
-
Management Applications access: Management Application operations (Install / Update / Delete) are accessible only to the Admin role. These operations are not covered by fine-grain access permissions. Access control inside the IEM App itself is determined by the IEM App, not by fine-grain access.
-
Device Twin bug: An existing device twin error message issue is not yet resolved.
-
Device Groups: Users can list only the device groups they created themselves. Only the Admin role can list all device groups.
-
Relocation: Global IEM settings, including relocation, are restricted to the Admin role and are not covered by fine-grain access control. This functionality is therefore unavailable for non-admin roles.
-
Onboarder role: The Onboarder currently has full access to all its devices and applications. Fine-grain restrictions for the Onboarder role are not yet implemented.
-
Device Application upload with same name: If User 1 uploads an application and User 2 attempts to upload another application with the same name, the system will not allow it. Duplicate application names are currently not supported.
-
IEM URL: The IEM URL must be a valid domain containing at least one "." or an IP address; domains without a "." are not supported, and applications will not be installed.