Configure OPC UA certificate login

After an upgrade to
FactoryTalk Optix Studio
1.8.0 from an earlier version, copy intended X.509 user certificates to the user identity trust store. This does not affect password-based login and transport trust.
IMPORTANT: After the upgrade,
PKI/User/Trusted/Certs
is empty. An OPC UA certificate trusted in
PKI/Trusted/Certs
does not automatically serve as user-identity credentials.
PKI/Trusted/Certs
The application transport trust store that permits an OPC UA client to open a SecureChannel.
PKI/User/Trusted/Certs
User identity trust store that permits OPC UA certificate user login.
  1. Copy each intended X.509 user certificate to
    PKI/User/Trusted/Certs
  2. If using CA-issued certificates, copy the CA certificates to
    PKI/User/Issuers/Certs
OPC UA certificate user login can use the configured user identity trust store.
Provide Feedback
Have questions or feedback about this documentation? Please submit your feedback here.
Normal