Device properties

Use device properties to define the device information, security, and network settings for a device.
Device properties defined using the electronic data sheet (EDS) for the device cannot be modified. A device can have one or more ports that are added to the policy model.
Some of the following properties may be read-only for:
  • The devices added to the Onboarding Area by Automatic Policy Deployment.
  • The devices that are not added to a secure zone.

Device

The settings that provide the identification parameters of the device.
General
Property
Description
Device Name
The name of the device. The name is required and must be unique.
Generic devices are automatically named
Device
<number>
. Devices selected by catalog number or discovered are already named.
Description
An optional description for the device.
The description of generic devices is empty by default. Devices selected by catalog number or discovered may have an existing description.
Catalog number
If defined using device discovery, the catalog number cannot be changed. Otherwise, choose a catalog number from the list. Choosing a
Rockwell Automation
catalog number automatically completes the Vendor information.
A device without a catalog number is listed as a
Generic Device
.
Vendor
The name of the device's vendor.
If a
Rockwell Automation
/
Allen-Bradley
catalog number was provided, this setting is completed by default and cannot be modified.
Firmware Revision
The firmware revision number of a device.
Required to enable
CIP Security
for a device.
This setting is required to apply
CIP Security
settings to the device ports.
FactoryTalk Policy Manager
automatically assigns the latest firmware revision to devices added using a catalog number or using
Discovery
.
CIP Security capable
Identifies whether a device can use the security settings of the zone.
Select to configure additional
CIP Security
settings for a generic device.
The Catalog Number and firmware revision determine the
CIP Security
capability of a device automatically.
USB
Property
Description
Disable CIP Bridging through USB
When selected, it disables inbound and outbound CIP Bridging through the USB port.
When cleared, it enables inbound traffic through the USB port. Outbound traffic is enabled if the device supports it.
This setting is only available for the devices with the
Capable
property enabled. The available options may be restricted by Global Settings.
These settings identify the ports available on the device.
Ports
Property
Description
Port name and number
The name and number of ports available on the device.
Select
Properties
next to the port number to configure port properties, such as the port name, description, EtherNet driver, IP address, and protocols used by the device.
For more information, see Port properties.
TIP:
For generic devices, you can manually add ports as needed by selecting
+
next to
Ports
.
For
CompactLogix
5380 Controllers and
Compact GuardLogix
5380 Controllers that operate in dual mode, you cannot add
Port 2
.

UA Client

Client configuration
Item
Description
Name
OPC UA
client name.
TIP: The default
UA Client
tab title changes if you change the
OPC UA
client name.
IP Address
IP address of the
OPC UA
client.
Policies
Item
Description
Zone
The zone that the
OPC UA
client is assigned to.
Client certification
Item
Description
Export
Exports the
OPC UA
client certificate.
Import
Imports the
OPC UA
client certificate.
Item
Description
Sharing identity with the server
OPC UA
client shares its identity with the
OPC UA
server identity. The identity includes the PKI certificate, username, and password.

UA Server

Server configuration
Item
Description
Name
OPC UA
server name.
TIP: The default
UA Server
tab title changes if you change the
OPC UA
server name.
Server URI
Non-editable
OPC UA
server URI based on the
OPC UA
server certificate.
Server URL
The URL of the
OPC UA
server endpoint.
Endpoint
List of endpoints with the Sign & Encrypt security policy mode or stricter. For more information, see OPC UA security policy.
Select
Refresh
to refresh the list.
Endpoint Encryption to use for Deployment
Encryption algorithm for the
OPC UA
server endpoint to use for deployment.
None
Use no encryption for server endpoint deployment.
Aes256
Use the Aes256-Sha256-RsaPss encryption algorithm for server endpoint deployment.
TIP: The encryption algorithm may change if you specify a different endpoint in
Server URL
.
Policies
Item
Description
Zone
The zone that the
OPC UA
server is assigned to.
Server Credentials
Item
Description
Anonymous
Log on as an anonymous user to the
OPC UA
server.
Username
The user name to log on to the
OPC UA
server.
Password
The password to log on to the
OPC UA
server.
Show Password
Shows the password.
Server Certification
Item
Description
Import
Imports the
OPC UA
server certificate.
Item
Description
Verify
Verifies connection to the
OPC UA
server.
Sharing identity with the client
OPC UA
server shares its identity with the
OPC UA
client identity. The identity includes the PKI certificate, username, and password.
Provide Feedback
Have questions or feedback about this documentation? Please submit your feedback here.
Normal