Search
21 result(s) for Certificate Groups
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Servicesrecord matches the expected application record, the next step is Browse CertificateGroups . If the array size is one and the record does not match the expected application record, the registration ... issue. Typical errors include insufficient rights or conflicts with other application records. Browse CertificateGroups The Browse Service is used to get the list of GDS managed CertificateGroups by browsing
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global ServicesRole grants rights to request or revoke any Certificate , update any TrustList or assign CertificateGroups to OPC UA Applications . RegistrationAuthorityAdmin This Role grants rights to approve Certificate Signing requests ... Application the right to renew its own Certificate or read its own CertificateGroups and TrustLists . The Certificate used to create the SecureChannel is used to determine the identity
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Servicespersisted at the same time to ensure a consistent setup. Repeat for all CertificateGroups Repeat the process for all CertificateGroups Disconnect Disconnect from CertificateManager
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global ServicesObject or one of the ApplicationConfigurationType instances in the ManagedApplications Folder . The list of CertificateGroups to update may be specified by an administrator or discovered by browsing a ApplicationConfigurationType instance ... Only CertificateGroups with an ApplicationCertificateType Purpose are considered. The CertificateManager needs credentials that will have access to the SecurityAdmin Role on the Server . Connect The CertificateManager creates a secure connection
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.7.5 Create Endpoint WorkflowApplicationConfiguration instance. The ConfigurationVersion is needed when updating the configuration. Existing SecuritySettings , UserTokenSettings and CertificateGroups may be used by the new Endpoint . The current configuration is extended with new records ... UpdateTarget with UpdateType=INSERT is created for the new CertificateGroup . The Path is 'CertificateGroups.[n]' where n is the index in the list of CertificateGroups currently in the configuration
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.8.3.1 CertificateGroupTypeCertificateGroupType This ObjectType is used for Objects which represent CertificateGroups in the AddressSpace . A CertificateGroup is a context that contains a TrustList and one or more CertificateTypes that ... and/or ApplicationInstance Certificates to express them in its AddressSpace . A CertificateManager can have many CertificateGroups which manage CertificateTypes and TrustLists for the applications in the system. A Server
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.8.3.3 CertificateGroupFolderTypeCertificateGroupFolderType This type is used for Folders which organize CertificateGroups in the AddressSpace . This type is defined in Table 43 . Table 43 - CertificateGroupFolderType Definition Attribute Value BrowseName 0:CertificateGroupFolderType IsAbstract ... allowed for user credentials Certificate . This Object shall leave CertificateTypes list empty. Any additional CertificateGroups shall have a BrowseName where the Name is unique within the CertificateGroupFolder
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.8.3.4 CertificateGroupDataTypeused as part of the ApplicationConfigurationDataType defined in 7.10.19 which allows multiple of CertificateGroups in a Server to be updated at once. The Name of the record is the name ... associated CertificateGroup Object in the AddressSpace . It may not be possible to delete CertificateGroups such as DefaultApplicationGroup . Note that when a new CertificateGroup is added, Clients need to browse
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.9.2 CertificateDirectoryTypeModelling Rule Subtype of the 2: DirectoryType defined in 6.5.3 . 0:Organizes Object 2:CertificateGroups 0:CertificateGroup FolderType Mandatory 0:HasComponent Method 2:StartSigningRequest Defined in 7.9.3 . Mandatory 0:HasComponent ... CheckRevocationStatus Defined in 7.9.11 . Optional Conformance Units GDS Certificate Manager Pull Model The CertificateGroups Object organizes the CertificateGroups supported by the CertificateManager . It is described in 7.8.4.10 . CertificateManagers shall support
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.9.3 StartSigningRequestassignment may occur any time before Finish Request returns success. The set of available CertificateGroups are found in the CertificateGroups folder described in 7.9.2 . The CertificateGroups allowed for an application
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.9.4 StartNewKeyPairRequestthen, if permitted, add the application to the CertificateGroup. The set of available CertificateGroups are found in the CertificateGroups folder described in 7.9.2 . The CertificateGroups allowed for an application
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.9.7 GetCertificateGroupsGetCertificateGroups The GetCertificateGroups Method returns the CertificateGroups assigned to application. Signature GetCertificateGroups( [in] NodeId ApplicationId [out] NodeId[] CertificateGroupIds ); Argument Description ApplicationId The identifier assigned to the application ... CertificateGroupIds An identifier for the CertificateGroups assigned to the application. A CertificateGroup provides a TrustList and one or more CertificateTypes which may be assigned to an application. This Method shall
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.9.8 GetCertificatesCertificates belong to. If null, the CertificateManager shall return the Certificates for all CertificateGroups assigned to the application. CertificateTypeIds The CertificateTypes that currently have a Certificate assigned. The length
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.10.2 Transaction LifecycleTransaction Lifecycle The CertificateGroups and TrustLists used by a Server may be updated as part of a transaction where multiple Methods are invoked, however, no changes will have any effect
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.10.3 ServerConfigurationTypeMandatory 0:HasComponent Method 0:ResetToServerDefaults See 7.10.13 . Optional 0:HasComponent Object 0:CertificateGroups 0:CertificateGroupFolderType Mandatory 0:HasComponent Object 0:TransactionDiagnostics 0:TransactionDiagnosticsType Optional 0:HasComponent Object 0:ConfigurationFile ... CertificateTypes in a CertificateGroup. The ApplyChanges Method is used complete changes made to CertificateGroups and/or TrustLists within the context of a transaction. The CancelChanges Method is used to cancel
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.10.4 ServerConfigurationavailable) to users who can access the Server Object. The children of the CertificateGroups Object should only be visible to Clients with access to the SecurityAdmin Role . Its representation
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.10.17 TransactionDiagnosticsTypeTrustList is added to the transaction. The AffectedCertificateGroups Property specifies the NodeIds of the CertificateGroups are included in the transaction. It is updated each time as soon as a CertificateGroup
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.10.19 ApplicationConfigurationDataTypecurrent Session. Updates to the configuration are applied in the following order: ApplicationIdentity CertificateGroups UserTokenSettings SecuritySettings ServerEndpoints ClientEndpoints AuthorizationServices While processing a single record type updates are applied ... Description ApplicationConfigurationDataType Structure ApplicationIdentity 0:ApplicationIdentityDataType The application identity used to create new Certificates . CertificateGroups 0:CertificateGroupDataType [] The list CertificateGroups . ServerEndpoints 0:ServerEndpointDataType [] A list of Server Endpoints. Not specified
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.10.20 ApplicationConfigurationFileTypedefined. 0 means no limit. The MaxCertificateGroups Property specifies the maximum number of CertificateGroups that may be defined. 0 means no limit
-
OPC-10000-12 – OPC Unified Architecture - Part 12: Discovery and Global Services7.10.25 UserTokenSettingsDataTypeuses SecurityPolicy = None. CertificateGroupName 0:String The name of the corresponding entry in the CertificateGroups list of the ApplicationConfiguration . It contains the TrustList used to verify an X509IdentityToken . Only specified
-
OPC-10000-21 – OPC Unified Architecture - Part 21: Device Onboarding9.3.1 OverviewServer itself is configured via the ServerConfiguration Object. Some DCAs may choose to have CertificateGroups for individual Applications organized by the CertificateGroups Folder in the ServerConfiguration Object. In these cases ... DCAs shall add a Reference from the ServerConfiguration CertificateGroups Folder to the CertificateGroup Object under the Application