Please ensure Javascript is enabled for purposes of website accessibility
Powered by Zoomin Software. For more details please contactZoomin

AVEVA™ Manufacturing Execution System 2023 R2

Configure certificates for secure communication on nodes without System Platform

Configure certificates for secure communication on nodes without System Platform

  • Last UpdatedAug 22, 2024
  • 2 minute read

To configure a certificate on a node where System Platform is not installed, you must manually load the certificate on both the SMS host and client.

Configure a certificate for secure communication on nodes without System Platform

  1. Obtain a PFX format certificate.

    Note: CER format certificate files cannot be imported using the SMS plug-in on a client machine when the certificate source indicates that the certificate was provided by IT. In this case, a PFX file is required. In addition, the same certificate file must be used for configuration on both the SMS host and the SMS client.

  2. On the SMS client node, load the certificate in the Personal Certificate folder using the Microsoft Certificate Management Console.

    The Microsoft Certification Management Console showing the contents of the personal certificate folder.

  3. On the SMS host node, open the post-install configurator System Management Server Component and do the following:

    1. Select Advanced.

      The Advanced Configuration dialog opens.

    2. Select the Certificates tab.

      The Configurator System Management Server Advanced Configuration dialog showing settings related to configuring certificates provided by IT.

      Note: The System Management Server field is displayed only if you have selected the Connect to an existing System Management Server option in the previous screen. Use this field to change to a different System Management Server if required. From the System Management Server list, select the machine on which you want the certificate to be generated. You must specify a computer name or a fully-qualified domain name for the System Management to identify the SMS. Specifying the name in a different format, for example an IP address, may result in errors.

    3. In the Certificate Source field, select Provided by IT (Import/Select).

    4. Select Import.

      The Import Certificate dialog opens.

    5. Navigate to and select the PFX format Certificate File.

    6. In the Certificate Store field, select Personal.

    7. [Optional] If required, enter the node Password.

    8. To close the Import Certificate dialog, select OK.

      In the Certificates tab, select Details to view the details of the imported certificate.

    9. To close the Advanced Configuration dialog, select OK.

    10. To configure the SMS Component and import the certificate, select Configure.

TitleResults for “How to create a CRG?”Also Available in