Security; Managing Certificates; Overview Of Certificate Management - Siemens SINEMA Remote Connect Operating Instructions Manual

Sinema rc server
Table of Contents

Advertisement

4.9

Security

4.9.1

Managing certificates

4.9.1.1

Overview of certificate management

Certificate types
Admin RC uses different certificates to authenticate the various participants when
establishing a VPN connection. These include:
Certificate
CA certificate
Server certificate
Device certificate
User certificate
PKI CA certificate
SINEMA Remote Connect - Server
Operating Instructions, 11/2017, C79000-G8976-C383-04
Is used for ...
The CA certificate is a certificate issued by the "Certificate
Authority" from which certificates are derived.
So that a certificate is derived, a private key belongs to every
CA certificate. The derived certificates are signed with the
private key.
The signature of the derived certificate is checked with the
public key of the CA certificate.
When SINEMA RC Server is installed a CA certificate is
generated. When necessary the CA certificate can be re-
newed.
The server, device and user certificates are derived from the
currently valid CA certificate.
The key exchange between the device and the VPN gateway
of the partner takes place automatically when establishing
the OpenVPN connection. No manual exchange of key files
is necessary.
Server certificates are required to establish secure communi-
cation (e.g. HTTPS, VPN...) between the device and another
network participant. The server certificate is an encrypted
SSL certificate.
Device certificates and corresponding keys are only created
when the user has the appropriate rights.
For each created device, SINEMA RC Server creates a de-
vice certificate.
For each created user, SINEMA RC Server creates a per-
sonal certificate.
For the logon with the PKI certificate.
The PKI CA certificate is created by an external certification
authority.
Configuring with Web Based Management
File type Description in section
...
*.crt
CA certificate
(Page 90)
*.p12
Server certificate
(Page 91)
*.p12
Overview of device
management
(Page 65)
*.p12
User certificate
(Page 104)
*.pem
*.pem
PKI CA certificate
(Page 96)
4.9 Security
87

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents