Search
22 result(s) for ApplicationInstance
-
OPC-10000-2 – OPC Unified Architecture - Part 2: Security Model3.1.3 ApplicationInstanceApplicationInstance individual installation of an OPC UA program with a globally unique identity Note 1 to entry: There can be several ApplicationInstances of the same application running at the same
-
OPC-10000-2 – OPC Unified Architecture - Part 2: Security ModelApplicationInstanceCertificate Certificate that uniquely identifies an individual ApplicationInstance Note 1 to entry: Different installations of one software product would have different ApplicationInstanceCertificates . The use of an ApplicationInstanceCertificate for uses outside ... ApplicationInstanceCertificate and should be discouraged. Note 2 to entry: also written as ApplicationInstance Certificate
-
OPC-10000-2 – OPC Unified Architecture - Part 2: Security Model9.1 Overviewcompletely described in OPC 10000-6 . These data items describe the ApplicationInstance that the Certificate is assigned to. The Certificates include a Digital Signature by the generator of the Certificate
-
OPC-10000-2 – OPC Unified Architecture - Part 2: Security Modelsummary of these key points when a CA based security system is deployed: ApplicationInstance - An OPC UA Application installed on a single machine is called an ApplicationInstance . Each instance ... when connecting to other OPC UA Applications (the Public Key and Private Key ). Each ApplicationInstance has a globally unique URI which identifies it. The OPC UA Application will also check
-
OPC-10000-3 – OPC Unified Architecture - Part 3: Address Space Model4.2 URIsassigned by the OwnerOperator or automatically created by the application software. An ApplicationInstance Certificate has the ApplicationUri in the subjectAltName (see OPC 10000-6 ); ProductInstanceUris identify a Device
-
OPC-10000-3 – OPC Unified Architecture - Part 3: Address Space Model4.9.1 OverviewTrustedApplication Role is always assigned when a Session has been authenticated with a trusted ApplicationInstance Certificate (see OPC 10000-4 ) and uses at least a signed communication channel. The standard
-
OPC-10000-4 – OPC Unified Architecture - Part 4: Servicesother security errors. OpenSecureChannel returns Bad_CertificateInvalid in the case of a new Server ApplicationInstance Certificate . In case of security failures, the Client shall use the GetEndpoints Service to fetch
-
OPC-10000-6 – OPC Unified Architecture - Part 6: Mappingssuppressed and logged as a warning. The cA flag shall be FALSE for any ApplicationInstance Certificate , however, TRUE shall be accepted to ensure backward interoperability when validating ApplicationInstance Certificates ... backward interoperability in configuration. If the cA flag is TRUE for a self-signed ApplicationInstance Certificate, then the pathLength should be 0. If an application accepts an ApplicationInstance Certificate with
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Serviceswith fully qualified domain names should specify the fully qualified domain name in its ApplicationInstance Certificate . Servers shall not append the 'local' top level domain to any domains declared
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.4 Push ManagementSecurityAdmin Role could be mapped to user credentials for an administrator or to a ApplicationInstance Certificate issued to a configuration tool. OPC 10000-21 defines a mechanism to install administrative
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.8.2.8 TrustListDataTypeTrustListMasks enumeration in 7.8.2.9 defines the allowed values. TrustedCertificates ByteString[] The list of ApplicationInstance and CA Certificates which are trusted. TrustedCrls ByteString[] The CRLs for the Certificates in the TrustedCertificates
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Servicesensure that the device belongs on the network. The manufacturer can provide a unique ApplicationInstance Certificate during manufacture and provide the serial numbers to the device installer. The installer would
-
OPC-10000-17 – OPC Unified Architecture - Part 17: Alias NamesD.2.2 AliasUpdateDataTypeTable D.3 - AliasUpdateDataType DataType structure Name Type Description AliasUpdateDataType Structure ApplicationUri String The ApplicationInstance associated with the Server that has the AliasNames defined. (this is the Server that needs
-
OPC-10000-18 – OPC Unified Architecture - Part 18: Role-Based Security4.4.1 RoleType definitionApplicationsExclude Property is not provided or has a value of FALSE then only ApplicationInstance Certificates included in the Applications Property shall be included in this Role . All other ApplicationInstance Certificates ... this Role . If the ApplicationsExclude Property has a value of TRUE then all ApplicationInstance Certificates included in the Applications Property shall be excluded from this Role . All other ApplicationInstance Certificates
-
OPC-10000-18 – OPC Unified Architecture - Part 18: Role-Based Security4.4.3 IdentityMappingRuleTypeempty string. The criteriaType applies for any Client application with a trusted ApplicationInstance Certificate . The Client Certificate shall be trusted by the Server and the Session shall use at least
-
OPC-10000-18 – OPC Unified Architecture - Part 18: Role-Based Security4.4.4 IdentityCriteriaTyperule specifies any trusted application that has been authenticated with a trusted ApplicationInstance Certificate (see OPC 10000-4 ) and uses at a signed or signed and encrypted communication channel
-
OPC-10000-21 – OPC Unified Architecture - Part 21: Device Onboarding4.3.3 Application SetupApplication Setup Application Setup is the process of issuing an Application Instance Certificate and a TrustList to one or more Applications running on a Device that will allow the Applications ... Certificate that allows it to request or accept Certificates on behalf of any Application running on the Device . If the DCA is a Client it can connect to CertificateManager
-
OPC-10000-21 – OPC Unified Architecture - Part 21: Device Onboarding4.3.5 Operationthis stage it is possible to update the TrustList and/or renew the Application Instance Certificate using the CertificateManager PushManagement or PullManagement described in OPC 10000-12 . Some Devices may allow
-
OPC-10000-21 – OPC Unified Architecture - Part 21: Device OnboardingCertificate is described completely in OPC 10000-4 , however, checks that are specific to Application Instance Certificates do not apply (e.g. the HostName and ApplicationUri checks). Trusted root CertificateAuthorities used
-
OPC-10000-21 – OPC Unified Architecture - Part 21: Device Onboarding7.1 Overviewsecure connection to the Device using the selected DeviceIdentity Certificate. Issue a DCA Application Instance Certificate to the Device that indicates that it has been authenticated. The initial communication between ... PrivateKey associated with the Certificate . The Registrar uses the SecureChannel to provide an Application Instance Certificate to the DCA which will allow the DCA to be used to provision
-
OPC-10000-81 – OPC Unified Architecture - Part 81: UAFX Connecting Devices and Information Model13.2.1 Locating Server via GDSmode and policy The use of Roles (this may require user authentication or specific ApplicationInstance certificates) If SecurityPolicyUri contains an empty or null string, the EndpointDescription on the Server with
-
OPC-10000-81 – OPC Unified Architecture - Part 81: UAFX Connecting Devices and Information Model13.2.2 Connecting to Server via LDSmode and policy. The use of Roles (this may require user authentication or specific ApplicationInstance certificates) If SecurityPolicyUri contains empty or null string, the EndpointDescription on the Server with