© Softing Industrial Automation GmbH 13
Chapter 4 - IT Settings
4.2.2 OPC UA Security
The OPC UA Security view supports the configuration of the OPC UA transport layer for access by OPC UA Clients.
Security Mode
The following security mode options are supported:
sign
Messages are signed digitally to protect against manipulation.
sign & encrypt
Messages are signed digitally to protect against manipulation and encrypted.
none
Messages are not signed digitally and encrypted.
Security Policy
If the security modes sign or sign & encrypt has been selected as least one of the following security policies has
to be selected.
Basic128Rsa15
Support of medium message security
The OPC UA Client certificate needs to be trusted (see Manage Client Certificates ).
Basic256
Support of high message security
The OPC UA Client certificate needs to be trusted (see Manage Client Certificates ).
Basic256Sha256
Support of very high message security
The OPC UA Client certificate needs to be trusted (see Manage Client Certificates ).
Note
The Basic256Sha256 security policy can only be set, if the certificate has been generated with
firmware version V1.40 or higher.
4.2.3 OPC UA Authentication
The OPC UA Authentication view allows to select the authentication settings of the OPC UA Server of the
dataFEED Gateway.
The following authentication policies are supported:
Certificate policy
OPC UA Clients that are authenticated by a trusted certificate may access data of the OPC UA Server.
(see Manage Client Certificates)
Anonymous policy
Each OPC UA Client may access data of the OPC UA Server.
User Name Policy
OPC UA Clients that are authenticated by a valid user name and password may access data of the OPC UA
Server.
14
14
14
14