Certificate Management
    How do I open Certificate Management?
        
- From theStartmenu, selectRockwell Software>.FactoryTalk Linx GatewayConfiguration
- UnderOPC UA Sever, selectCertificate Management, and then selectIncoming CertificateorOutgoing Certificate.
Use 
Certificate Management
 to view FactoryTalk Linx Gateway
 OPC
 UA server certificate information.FactoryTalk Linx Gateway
 creates a default, self-signed security certificate during installation. The security certificate is stored at C:\ProgramData\Rockwell\FactoryTalk Linx Gateway\PKI\own\cert_ftgw_opcua_server.der
 on the host computer for the FactoryTalk Linx Gateway
 server. A custom security certificate can be created by generating a certificate signing request (CSR) in FactoryTalk Linx Gateway
 and signed by an external trusted security authority and then imported to FactoryTalk Linx Gateway
 to replace the default certificate.Incoming Certificate
        
  
    
| Button | Description | 
|---|---|
| Refresh | Refreshes to display the latest certificates. | 
| Manage Access | Limits access to security certificate management operations to administrators or individuals approved by an administrator. This function is only available to Administrator. To add user or group: 
 | 
| Import | Specifies and import the certificate to be used as incoming certificate or outgoing certificate. | 
| Reject | Moves the specific certificates from  Trusted Certificateslist to Rejected Certificateslist. The client(s) cannot communicate with FactoryTalk Linx Gateway. | 
| Remove | Removes the specific certificates from  Trusted Certificateslist or Rejected Certificateslist. The clients cannot communicate with FactoryTalk Linx Gateway. | 
| Trust | The specific certificate is added to  Trusted Certificateslist and the client can communicate with FactoryTalk Linx Gateway. | 
Outgoing Certificate
        
  
    
| Button | Description | 
|---|---|
| Refresh | Refreshes to display the latest certificates. It is only available when
                    enabling the certificate management by  FactoryTalk Policy Manager. | 
| Manage Access | Limits access to security certificate management operations to administrators or individuals approved by an administrator. This function is only available to Administrator. To add user or group: 
 | 
| Create CSR | Creates a Certificate Signing Request (CSR) and save the request as a  CSRfile. | 
| Import | Specifies and import the certificate to be used as incoming certificate or outgoing certificate. | 
| Regenerate | Creates another certificate to renew the valid period. | 
Certificate properties
| Field | Description | 
|---|---|
| Name | Displays the name of the security certificate. | 
| Location | Displays the path to the security certificate on the  FactoryTalk Linx Gatewaycomputer. | 
| Application Name | Displays the application from where the certificate is presented. | 
| Organization | Displays the organization name that submitted to CA when requesting the certificate. | 
| Application URI | Displays the  FactoryTalk Linx Gatewayapplication URI associated with the security certificate. | 
| Domain | Displays the domain name. | 
| Subject Name | Displays the subject properties on the certificate. For example, Common Name (CN). | 
| Valid From | The date and time when the security certificate is valid. | 
| Expiration Time | The date and time when the security certificate expires. | 
| Thumbprint | A short sequence of bytes created by applying the cryptographic hash function to identify a certificate.  | 
Provide Feedback