Regenerate zone CA certificates
Regenerate zone Certificate Authority (CA) certificates. Deploy the security policy
model to apply the regenerated zone CA certificates to devices in these zones.
Prerequisites
Log on to
FactoryTalk Policy Manager
as an administrator. See Log on to FactoryTalk Policy Manager.- To regenerate CA certificates
- From the main menu, selectSettingsand then selectCA Certificate Management.
- To regenerate zone CA certificates forCIP Securitycapable devices, inRegenerated CA certificates for CIP Security capable devices, selectRegenerate CA certificates.UnderCertificate regeneration Time of Zone CA, CA certificate regeneration time displays. The CA certificate regeneration time also displays in port property panes of impacted devices. For more information, see Policies.IMPORTANT: The certificate regeneration time is not the time of certificate deployment to devices.
- To regenerate zone CA certificates forOPC UAdevices, inRegenerated CA certificates for OPC UA capable devices, selectRegenerate CA certificates.UnderCertificate regeneration Time of Zone CA, CA certificate regeneration time displays. The CA certificate regeneration time also displays in port property panes of impacted devices. For more information, see Policies.IMPORTANT: The certificate regeneration time is not the time of certificate deployment to devices.
- To apply the regenerated zone CA certificates to devices in these zones, deploy the policy model. See Deploy a policy model.TIP: If you regenerated CA certificates forOPC UAdevices, you may need to update the certificate for client-server communication. For more information aboutOPC UA, see OPC UA security policy.
Provide Feedback