Platform TLS settings

This window sets up the platformtls (niagarad) properties that provide server authentication and encryption. To access it, right-click Platform > Views > Platform Administration and double-click Change TLS Settings.
Figure 48.   Platform TLS Settings window
Image
Name Value Description
State TLS Defaults to TLS only.
Port number The port for secure communication. Defaults to 5011
Certificate drop-down list Provides a list of available certificate aliases. The tridium certificate is the default, self-signed certificate created when you first accessed the platform.
Protocol drop-down listTLSv1.0+ (default)TLSv1.1+TLSv1.2 Configures the minimum level of the TLS (Transport Layer Security) protocol to which the server accepts negotiations. Options include versions TLSv1.0+ TLSv1.1+, TLSv1.2+, and TLSv1.3. Choosing the lowest level works with most clients, providing greater flexibility than an individual version, however, choosing a higher level provides more security.

During the handshake, the server and client agree on which protocol to use.

Change Protocol from the default if your network requires a specific version or if a future vulnerability is found in one of the versions.