Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
You can set up and configure SSO settings on this page.
When you don’t have any changes, the DISCARD and APPLY buttons are disabled.
You can clear your changes by clicking the DISCARD button at the bottom right corner of the page.
Service Provider's X509 certificate
and Service Provider's private key
Can replace input by uploading files.
Click the file upload button next to the input box, and a drop-down menu for uploading files will appear. Click the upload file option to upload the desired file.
Can be generated by manual input.
Click the file upload button next to the input box, and a drop-down for uploading files will appear. Click the self signed button. There will be a pop-up box to fill in the information. Items marked with * are required.
If you want to get the default data again, you can click the refresh button in the upper right corner of the page.
The fields with * in the label are required. When users do not fill the required fields and click the APPLY button, the following error will appear:
If everything is ready, click the APPLY button and a confirmation box will pop up.
Click the CANCEL button, the pop-up window will be closed. Then click the OK button, it will prompt the success message. Since any configuration modification requires restarting the server service, a pop-up box will appear to confirm whether to restart the service.After clicking the OK button, configuration changes will start. Users will be notified after server restarting when all the process is completed.
The User Management page has three tabs: My Profile, All Users and Role Management.
All users can access the My Profile tab to manage themselves.
Below the cards are secret management section. You can create as many secrets for each graph as you want, but remember to copy the secret value out at the creation time. Once you refresh the page or go to another page and come back, the actual secret value will be masked for security. You need to provide an alias for the secret, and click the green plus sign to add the secret.
When token authentication is enabled, you need to use the secrets to request tokens and add the tokens in the HTTP request headers to call TigerGraph RESTful endpoints. Read more at: User Privileges and Authentication.
Due to the difference in users' information display compared to GSQL, Admin Portal doesn't allow users with admin role to a graph to create/edit/delete users or assign a user with a role to a graph. Superuser can manage users in this case. Users with Admin role to a local graph can revoke roles to other users for this local graph.
Both native users and proxy users are displayed in the User section. However, you can only change password for native users.
Only superuser can access this tab. Superuser can add new users, change other users' password, delete users, create proxy groups, change proxy rules of the groups, and delete proxy groups.
Read more about proxy group at User Privileges and Authentication.
Admin Portal does not indicate whether a user belongs a proxy group. You can find out more from GSQL client.
Admin Portal shows a combination of roles for proxy users. Proxy user which belongs to a proxy group inherits all the roles from the proxy group plus all the roles the proxy user has. Therefore, if you want to revoke a role from a proxy user, you need to revoke the role from the proxy group first. Then you might need to revoke the same role from the proxy user if the proxy user also has that role.
Superusers and Admin users can access this tab to assign different roles to users on different graphs. Superusers can assign superuser role to other users, while admin users cannot.
You can use the dropdown menu at the top left corner to select on which graph you want to assign different roles to different users:
You can type in text to search for users:
You can sort the users by alphabetic order or number of roles they have:
You can choose to show all users, show the users who have role(s), or show the users who don't have a role:
You have two ways to grant a new role to a user.
The first way is drag-and-drop. You can drag a user from the right section to under the role you want to grant.
After the role is granted successfully, the user's name will appear under the corresponding role, and the role's color will appear on the user at the right section. You can grant multiple roles to the same user, and multiple colors will show on the user at the right section to indicate these roles.
The second way is right click a user, and choose the role you want to grant:
You have two ways to revoke a role from a user.
The first way is drag-and-drop. You can drag a user from the role you want to revoke to the right section:
After the role is revoked successfully, the user's name will disappear under the corresponding role, and the role's color will disappear from the user at the right section.
The second way is right click a user, and choose the role you want to revoke:
You can drag a user from under one role to under another role at the left section. This is a shortcut to change the user's role:
Tip: If you manage users through GSQL, please click on refresh button on the top right corner to reflect the changes in Admin Portal.
You can set up and configure LDAP settings through this page.
When you don’t have any changes, the DISCARD and APPLY buttons are disabled.
You can clear your changes by clicking the DISCARD button at the bottom right corner of the page.
For security reason, password is masked by default:
If you want to see your password, click the button at the end of the input box
Truststore can be updated by uploading files. Click the file upload button next to the input box, and a drop-down for uploading files will appear. Click the upload file option to upload the desired file, and you can see the file content in the input box.
If you want to get the default data again, you can click the refresh button on the upper right corner of the page.
The fields with * in the label are required entries.When users do not fill the required items and click the APPLY button, the following error message will appear:
If everything is ready, click the APPLY button and a confirmation box will pop up
Click the CANCEL button, the pop-up window will be closed. Click the OK button, it will prompt the success message. Since configuration modification requires restarting the server service, a pop-up box will appear to confirm whether to restart the service. After clicking the OK button, it will take a while for configuration changes and server restart. You will be notified when all the process is completed.
There are three information cards at the top: Username shows the user's username; Accessible graph shows how many graphs the user can access, and Password allows user to change password by clicking the key icon:
Clickto add new users:
Clickto change other users' password:
Clickto delete a user.
Clickto see all proxy groups:
Clickto add new proxy groups:
Clickto edit the proxy rule of an existing proxy group:
Clickto delete a proxy group.
Similarly, you can also clickto switch to proxy groups and manage their roles.
You can configure RESTPP settings on this page: Default query timeout.
When you don’t have any changes, the DISCARD and APPLY buttons are disabled.
You can clear your changes by clicking the DISCARD button at the bottom right corner of the page.
If you want to get the default data again, you can click the refresh button on the upper right corner of the page.
The fields with * in the label are required entries. When users do not fill in the required items and click the APPLY button, the following error will appear:
If everything is ready, click the APPLY button and a confirmation box will pop up.
Click the CANCEL button, the pop-up window will be closed. Click the OK button, it will prompt the success message.Since configuration change requires restarting the server service, a pop-up box will appear to confirm whether to restart the service. After clicking the OK button, it will take a while for the configuration changes and server restart. You will be notified after all the process is completed.
You can go to License page to update TigerGraph license key. If no TigerGraph license key is provided during TigerGraph installation time, the license page will look like this:
Click the SELECT FILE button and choose the license text file, then click UPDATE button. The license detail will be loaded like below:
You can click more details to show more information about the license:
You can configure Application Server (GUI) settings through this page. Application Server is the backend component powering both GraphStudio and Admin Portal. Allowed setting includes: Query return size.
When you don’t have any changes, the DISCARD and APPLY buttons are disabled.
You can clear your changes by clicking the DISCARD button at the bottom right corner of the page.
If you want to get the default data again, you can click the refresh button in the upper right corner of the page.
The fields with * in the label are required entries. When users do not fill in the required items and click the APPLY button, the following error will appear:
If everything is ready, click the APPLY button and a confirmation box will pop up.
Click the CANCEL button, the pop-up window will be closed. Click the OK button, it will prompt the success message.Since configuration change requires restarting the server service, a pop-up box will appear to confirm whether to restart the service. After clicking the OK button, it will take a while for the configuration changes and server restart. You will be notified after all the process is completed.
You can configure Nginx settings on this page. The following settings can be configured: SSL configuration, allowed CIDR list (whitelist IP), and response header.
When you don’t have any changes, the DISCARD and APPLY buttons are disabled.
You can clear your changes by clicking the DISCARD button at the bottom right corner of the page.
Allowed CIDR list
are separated by ,
The response header
can be empty. In addition, you can also add one by clicking the + on the right side of the response header
box, or you can delete the specified one by clicking-on the right side of a response header
.
SSL certificate
and SSL key
Can update input by uploading files.
Click the file upload button next to the input box, and a drop-down menu for uploading files will appear. Click the upload file option to upload the desired file.
Can be generated by manual input.
Click the file upload button next to the input box, and a drop-down menu for uploading files will appear. Click the self signed button. There will be a pop-up box to fill in the information. Items marked with * are required.
If you want to get the default data again, you can click the refresh button on the upper right corner of the page.
The fields with * in the label are required entries. When users do not fill in the required items and click the APPLY button, the following error will appear:
If everything is ready, click the APPLY button and a confirmation box will pop up
Click the CANCEL button, the pop-up window will be closed. Click the OK button, it will prompt the success message.Since configuration change requires restarting the server service, a pop-up box will appear to confirm whether to restart the service. After clicking the OK button, it will take a while for the configuration changes and server restart. You will be notified after all the process is completed.
In v3.1, TigerGraph enhanced the security configuration for cookie by setting a secure flag when SSL is enabled, which may trigger an issue when using Chrome to turn off SSL. Due to this security feature, when downgrading from HTTPS to HTTP, Chrome will not allow setting the same cookie. This will result in user authentication failure because the cookie fails to be set. To solve this problem, users can clear the cache from Chrome and refresh the browser. Enabling from HTTP to HTTPS will work as expected.
Please note that the GraphStudio item under Applications section needs to be lightened like above. If it looks like the grayed icon here: , it means GraphStudio is not enabled in the provided license, and you won't be able to use GraphStudio in this case. You can upgrade your license to enable GraphStudio access, please contact sales@tigergraph.com for more information.