© Softing Industrial Automation GmbH
13
Chapter 4 - IT Settings
4.2.2 OPC UA Security
The
OPC UA Security
view supports the configuration of the OPC UA transport layer for access by OPC UA Clients.
Security Mode
The following security mode options are supported:
sign
Messages are signed digitally to protect against manipulation.
sign & encrypt
Messages are signed digitally to protect against manipulation and encrypted.
none
Messages are not signed digitally and encrypted.
Security Policy
If the security modes
sign
or
sign & encrypt
has been selected as least one of the following security policies has
to be selected.
Basic128Rsa15
Support of medium message security
The OPC UA Client certificate needs to be trusted (see
).
Basic256
Support of high message security
The OPC UA Client certificate needs to be trusted (see
).
Basic256Sha256
Support of very high message security
The OPC UA Client certificate needs to be trusted (see
).
Note
The
Basic256Sha256
security policy can only be set, if the certificate has been generated with
firmware version V1.40 or higher.
4.2.3 OPC UA Authentication
The
OPC UA Authentication
view allows to select the authentication settings of the OPC UA Server of the
dataFEED Gateway.
The following authentication policies are supported:
Certificate policy
OPC UA Clients that are authenticated by a trusted certificate may access data of the OPC UA Server.
(see
Anonymous policy
Each OPC UA Client may access data of the OPC UA Server.
User Name Policy
OPC UA Clients that are authenticated by a valid user name and password may access data of the OPC UA
Server.
14
14
14
14