Certificate Management

Starting in AX-3.7, Certificate Management is one of several available platform views. This view appears only if the platform-connected host is licensed for SSL/TLS (feature "crypto"), and has the necessary modules installed, including platCrypto.

Refer to the document NiagaraAX SSL Connectivity Guide for complete details. The rest of this section provides overview level information.

Figure 15.   Certificate Management platform view
Image

You use this view to manage PKI (Public Key Infrastructure) digital certificates or “self-signed” digital certificates on the platform. Certificates are used in any secure (TLS) connections to this host.

Following the certificate management portion of configuration, secure connections can be enabled (and/or required) for any of the following connection types:

  • Platform connection from Workbench (client) to the platform’s (JACE or Supervisor) Niagara platform daemon (server), also known as “niagarad”. A secure platform connection is sometimes referred to as “platformssl”. You enable this in the Platform Administration view of the platform. See “Platform Administration”.
  • Fox (station) connection from a Workbench client or via Web Workbench. You enable this in properties of the Fox Service in the station. In Niagara 4, the FoxService is in the station’s Services container (Config > Services). Note this different than in a NiagaraAX station, where the FoxService is a slot under the station’s NiagaraNetwork (Config > Drivers > NiagaraNetwork).
  • Any browser (HTTP) connection to the station’s web server. You enable this in properties of the station’s WebService, also found in its Config > Services container.
  • Client connections to the station’s email server (EmailService), if applicable. You enable this in properties of the station’s EmailService, typically found in the station’s Config > Services container.

The following sections provide a few basic details about the different tabs in the Certificate Management platform view: