190 HB700 | CPU | PMC921xEx | en | 24-04
Web-based management - WBM
Security > Certificate Authentication
Tab: Trust Store
Creating a Trust Store
4. Click on [Apply].
🡆 The certificate is used for authentication in the NGINX configuration.
Please note that reconfiguring the web service can affect the
real-time behavior of your system. A
void this during productive
operation.
6.5 Security
The safety-related settings for the CPU must be configured in the ‘Security’
area of the
WBM.
6.5.1 Certificate Authentication
At ‘Certificate Authentication
’ you can manage your certificates for secure CPU communi-
cation. ‘Certificate Authentication’ is divided into the following tabs:
â– Trust Store
– Trusted certificates and revocation lists of possible communication partners are
stored here.
â– Identity Store
– The personally created certificates are stored here.
−
The name for each store can be used with the interfaces for TLS com-
munication, e.g. TLS_SOCKET block in IEC 61131-3 or TlsSocket
class in C ++ or C#.
−
The names of the stores are case-sensitive.
Certificate Authentication
Security
Trust Stores ...
Security
Certificate Authentication
F
irewall
SD Card
Syslog Configuration
User Authentication
Information
Diagnostics
Configuration
Administration
iC92...
PMC92...
Each Trust Store is defined in the WBM by two tables:
■Table ‘Certificates’
– In this table you can manage trusted Certificates and issuer certificates.
■Table ‘CRL lists’
– In this table you can manage the revocation lists for the corresponding Trust Store.
By storing untrusted certificates and issuer certificates here.
1. To create a Trust Store, click the button at the end of the table.
🡆 The input dialog opens for entering a name for the Trust Store.
2. Enter a name.