With below the table ‘CRL lists’ you can add a revocation list via the dialog.
Add CRL List
Trust Store
CRL Type
CRL content in PEM Format:
Input Method
OPC UA configurable
Trusted CRL
File Upload
Browse ...
Cancel
ð
n Trust Store
– Name of the Trust Store.
n CRL Type
– Specify here whether the revocation list is trusted or untrusted.
n Certificate in PEM format
– Revocation list files can be processed in PEM format only.
n Input Method
– Here you can specify the format in which the revocation list is to be
added.
– You can choose between text and file (PEM format).
1.
To delete a certificate or a revocation list, click on the button for the relevant cer-
tificate or revocation list.
2. In the query dialog click on ‘Remove’ .
The detail views provide detailed information on each certificate and each revocation list:
1.
Click on to open the detail view.
ð
The detail view is opened.
2. This is closed again with [Close].
n You can create and manage multiple identity stores in the ‘Identity Store’ tab.
n Each Identity Store usually contains an RSA key pair and the corresponding key cer-
tificate.
n Optionally, you can add further issuer certificates to an identity store.
n The IDevID and OPC UA-self-signed identity stores are part of the system and are
supplied with the CPU.
Adding a revocation list
Deleting certificates and
revocation lists
Detail view
Tab: Identity Store
iC9200 Series
Deployment
Web-based management - WBM > Security
HB700 | CPU | PMC921xEx | en | 23-06 93