Search
20 result(s) for Application Instance
-
OPC-10000-2 – OPC Unified Architecture - Part 2: Security Model3.1.3 ApplicationInstanceApplicationInstance individual installation of an OPC UA program with a globally unique identity Note 1 to entry: There can be several ApplicationInstances of the same application running at the same
-
OPC-10000-2 – OPC Unified Architecture - Part 2: Security ModelApplicationInstanceCertificate Certificate that uniquely identifies an individual ApplicationInstance Note 1 to entry: Different installations of one software product would have different ApplicationInstanceCertificates . The use of an ApplicationInstanceCertificate for uses outside ... ApplicationInstanceCertificate and should be discouraged. Note 2 to entry: also written as ApplicationInstance Certificate
-
OPC-10000-2 – OPC Unified Architecture - Part 2: Security Model9.1 Overviewcompletely described in OPC 10000-6 . These data items describe the ApplicationInstance that the Certificate is assigned to. The Certificates include a Digital Signature by the generator of the Certificate
-
OPC-10000-2 – OPC Unified Architecture - Part 2: Security Modelsummary of these key points when a CA based security system is deployed: ApplicationInstance - An OPC UA Application installed on a single machine is called an ApplicationInstance . Each instance ... when connecting to other OPC UA Applications (the Public Key and Private Key ). Each ApplicationInstance has a globally unique URI which identifies it. The OPC UA Application will also check
-
OPC-10000-3 – OPC Unified Architecture - Part 3: Address Space Model4.2 URIsassigned by the OwnerOperator or automatically created by the application software. An ApplicationInstance Certificate has the ApplicationUri in the subjectAltName (see OPC 10000-6 ); ProductInstanceUris identify a Device
-
OPC-10000-3 – OPC Unified Architecture - Part 3: Address Space Model4.9.1 OverviewTrustedApplication Role is always assigned when a Session has been authenticated with a trusted ApplicationInstance Certificate (see OPC 10000-4 ) and uses at least a signed communication channel. The standard
-
OPC-10000-4 – OPC Unified Architecture - Part 4: Servicesother security errors. OpenSecureChannel returns Bad_CertificateInvalid in the case of a new Server ApplicationInstance Certificate . In case of security failures, the Client shall use the GetEndpoints Service to fetch
-
OPC-10000-6 – OPC Unified Architecture - Part 6: Mappingssuppressed and logged as a warning. The cA flag shall be FALSE for any ApplicationInstance Certificate , however, TRUE shall be accepted to ensure backward interoperability when validating ApplicationInstance Certificates ... backward interoperability in configuration. If the cA flag is TRUE for a self-signed ApplicationInstance Certificate, then the pathLength should be 0. If an application accepts an ApplicationInstance Certificate with
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Serviceswith fully qualified domain names should specify the fully qualified domain name in its ApplicationInstance Certificate . Servers shall not append the 'local' top level domain to any domains declared
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.4 Push ManagementSecurityAdmin Role could be mapped to user credentials for an administrator or to a ApplicationInstance Certificate issued to a configuration tool. OPC 10000-21 defines a mechanism to install administrative
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.8.2.8 TrustListDataTypeTrustListMasks enumeration in 7.8.2.9 defines the allowed values. TrustedCertificates ByteString[] The list of ApplicationInstance and CA Certificates which are trusted. TrustedCrls ByteString[] The CRLs for the Certificates in the TrustedCertificates
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Servicesensure that the device belongs on the network. The manufacturer can provide a unique ApplicationInstance Certificate during manufacture and provide the serial numbers to the device installer. The installer would
-
OPC-10000-17 – OPC Unified Architecture - Part 17: Alias NamesD.2.2 AliasUpdateDataTypeTable D.3 - AliasUpdateDataType DataType structure Name Type Description AliasUpdateDataType Structure ApplicationUri String The ApplicationInstance associated with the Server that has the AliasNames defined. (this is the Server that needs
-
OPC-10000-18 – OPC Unified Architecture - Part 18: Role-Based Security4.4.1 RoleType definitionApplicationsExclude Property is not provided or has a value of FALSE then only ApplicationInstance Certificates included in the Applications Property shall be included in this Role . All other ApplicationInstance Certificates ... this Role . If the ApplicationsExclude Property has a value of TRUE then all ApplicationInstance Certificates included in the Applications Property shall be excluded from this Role . All other ApplicationInstance Certificates
-
OPC-10000-18 – OPC Unified Architecture - Part 18: Role-Based Security4.4.3 IdentityMappingRuleTypeempty string. The criteriaType applies for any Client application with a trusted ApplicationInstance Certificate . The Client Certificate shall be trusted by the Server and the Session shall use at least
-
OPC-10000-18 – OPC Unified Architecture - Part 18: Role-Based Security4.4.4 IdentityCriteriaTyperule specifies any trusted application that has been authenticated with a trusted ApplicationInstance Certificate (see OPC 10000-4 ) and uses at a signed or signed and encrypted communication channel
-
OPC-10000-21 – OPC Unified Architecture - Part 21: Device Onboarding4.3.3 Application SetupApplication Setup Application Setup is the process of issuing an Application Instance Certificate and a TrustList to one or more Applications running on a Device that will allow the Applications ... Certificate that allows it to request or accept Certificates on behalf of any Application running on the Device . If the DCA is a Client it can connect to CertificateManager
-
OPC-10000-21 – OPC Unified Architecture - Part 21: Device Onboarding4.3.5 Operationthis stage it is possible to update the TrustList and/or renew the Application Instance Certificate using the CertificateManager PushManagement or PullManagement described in OPC 10000-12 . Some Devices may allow
-
OPC-10000-21 – OPC Unified Architecture - Part 21: Device OnboardingCertificate is described completely in OPC 10000-4 , however, checks that are specific to Application Instance Certificates do not apply (e.g. the HostName and ApplicationUri checks). Trusted root CertificateAuthorities used
-
OPC-10000-21 – OPC Unified Architecture - Part 21: Device Onboarding7.1 Overviewsecure connection to the Device using the selected DeviceIdentity Certificate. Issue a DCA Application Instance Certificate to the Device that indicates that it has been authenticated. The initial communication between ... PrivateKey associated with the Certificate . The Registrar uses the SecureChannel to provide an Application Instance Certificate to the DCA which will allow the DCA to be used to provision