Certificates - Siemens SIMATIC NET SCALANCE SC-600 Configuration Manual

Industrial ethernet security web based management (wbm)
Hide thumbs Also See for SIMATIC NET SCALANCE SC-600:
Table of Contents

Advertisement

NAT translation and firewall rules
You will find an example of NAT translations on the Internet pages of Siemens Industry
Online Support.
Link: (https://support.industry.siemens.com/cs/ww/en/view/109744660)
3.8.6

Certificates

Certificate types
The device uses different certificates to authenticate the various nodes.
Certificate
CA certificate
The CA certificate is a certificate issued by a Certificate Authority from
which the server, device and partner certificates are derived. To allow a
certificate to be derived, the CA certificate has a private key signed by
the certificate authority.
The key exchange between the device and the VPN gateway of the
partner takes place automatically when establishing the connection. No
manual exchange of key files is necessary.
Server certificate Server certificates are required to establish secure communication (e.g.
HTTPS, VPN...) between the device and another network participant.
The server certificate is an encrypted SSL certificate. The server
certificate is derived from the oldest valid CA, even if this is "out of
service". The crucial thing is the validity date of the CA.
Device
Certificates with the private key (key file) with which the device
certificate
identifies itself.
Partner
Certificates with which the VPN gateway of the partner identifies itself
certificate
with the device.
File types
File type
*.crt
*.p12
*.pem
SCALANCE SC-600 Web Based Management (WBM)
Configuration Manual, 10/2021, C79000-G8976-C475-03
Description
File that contains the certificate.
In the PKCS12 certificate file, the private key is stored with the corresponding
certificate and is password protected.
The CA creates a certificate file (PKCS12) for both ends of a VPN connection
with the file extension ".p12". This certificate file contains the public and private
key of the local station, the signed certificate of the CA and the public key of the
CA.
Certificate and key as Base64-coded ASCII text.
Technical basics
3.8 Security functions
Is used in...
IPsec VPN (Page 330)
SINEMA RC
IPsec VPN (Page 330)
IPsec VPN (Page 330)
59

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents