Introduction

To provide the required level of cyber security, each entity RTU module manages a trust list of all certificates of devices/applications that communicate with it.

Only devices that have provided the RTU module with an application instance certificate can communicate with RTU. The module implements local (module-based) management of application instance certificates, which are stored in a trust list. Use the commands on the Certificates Management web pages to add, download, or delete a certificate.

NOTE:

Access the Page

Access the Trust List Management web page through the SETUP tab for the BMENOR2200H module (SETUP > MENU > CERTIFICATES MANAGEMENT > Trust List Management).

Parameters

Use these parameters and settings on the on the Trust List Management web page to create a truts list:

Parameter

Description

Name (CN)

This field shows the name of the certificate.

Distinguished Name (DN)

This field corresponds to the name of the certificate.

Expiration Date

This field shows the expiration date of the certificate.

NOTE:

The expiration dates of the trusted certificates are made by reference to the internal Date and Time settings of the RTU module. To help avoid inconsistency, use the NTP service to update the date and time settings of the RTU module, and check that the NTP server is accessible and has an updated time and date settings.

The RTU module does not automatically manage the expiration dates of certificates.
  • For a self-signed certificate file, it is determined by the device.

  • For a CA certificate file, it depends on the CA agent.

Browse

Click this button to navigate to and select the certificate you want to add to the list.

Submit

Click this button to add the selected file to the list.

Apply

Click this button to record your configuration changes.

Execute Changes

After you configure any of these parameters, press the Apply button in the page banner to implement your changes.
NOTE: The Apply and Discard buttons are disabled (grayed out) when the configuration is not valid.