Configuration and operation
4.8 Configuration of the CP in STEP 7 Professional
CP 443-1 OPC UA
70 Operating Instructions, 01/2017, C79000-G8976-C427-02
The security policy is a combination of one of the following security profiles and a security
procedure.
●
– No security profile
– Basic128Rsa15
This corresponds to the Security profile "Basic128Rsa15" of the OPC UA
specification.
The CP uses signing and, if configured, 128-bit encryption.
– Basic256
This corresponds to the Security profile "Basic256" of the OPC UA specification.
The CP uses signing and, if configured, 256-bit encryption.
– Basic256Sha256
This corresponds to the Security profile "Basic256Sha256" of the OPC UA
specification.
The CP uses signing and, if configured, 256-bit encryption using the hash algorithm
SHA-256.
If you enable several options, then depending on the settings on the communications
partner (client), the CP selects the profile with the the highest possible security.
●
– Sign
The CP only allows communication with signed frames.
– Sign and encrypt
The CP only allows communication with signed and encrypted frames.
●
– No access
The CP allows no access to the data of its OPC UA server.
– Read-only
The CP allows read access to the data of its OPC UA server.
– Read and write
The CP allows write access to the data of its OPC UA server.
Note
No connection with the "No access" option
When the Securityfunctions are enabled and the option "No access" is enabled with an
anonymous login, no connection is established. It is also not
possible to browse the
In this case, a connection can only be established with a user name and password.