Certificate Manager; Handling Certificates - Siemens SIMATIC TeleControl DNP3 Configuration Manual

Hide thumbs Also See for SIMATIC TeleControl DNP3:
Table of Contents

Advertisement

Configure the permission for VPN connection establishment for the CP as a passive
subscriber as follows:
1. In STEP 7, go to the devices and network view.
2. Select the CP.
3. Open the parameter group "VPN" in the local security settings.
4. For each VPN connection with the CP as a passive VPN subscriber, change the default
setting "Initiator/Responder" to the setting "Responder".
3.17.5

Certificate manager

Assignment of certificates
If you use communication with authentication for the module, for example SSL/TLS for
secure transfer of e-mails, certificates are required. You need to import certificates of non-
Siemens communications partners into the STEP 7 project and download them to the
module with the configuration data:
1. Import the certificates of the communications partners using the certificate manager in the
global security settings.
2. Then assign the imported certificates to the module in the table below the local security
settings of the module.
For a description of the procedure, refer to the section Handling certificates (Page 81).
You will find further information in the STEP 7 information system.
3.17.6

Handling certificates

Certificate for authentication
If you have configured secure communication with authentication for the module, own
certificates and certificates of the communications partner will be required for communication
to take place.
All nodes of a STEP 7 project with enabled security functions are supplied with certificates.
The STEP 7 project is the certification authority.
For the secure transfer of e-mails via SSL/TLS and SSL certificate is created for the module.
It is visible in STEP 7 in "Global security settings > Certificate manager > Device
certificates".
The table "Device certificates" shows the issuer, validity, use of a certificate
(service/application) and the use of a key. You can call up further information about a
certificate by selecting the certificate in the table and selecting the shortcut menu "Show".
The table also shows all other certificates generated by STEP 7 and all imported certificates.
Configuration - DNP3
Configuration Manual, 11/2018, C79000-G8976-C508-01
Configuration
3.17 Security (CP) and certificates
81

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents