Avatar
Please consider registering
guest
sp_LogInOut Log Insp_Registration Register
Register | Lost password?
Advanced Search
Forum Scope


Match



Forum Options



Minimum search word length is 3 characters - maximum search word length is 84 characters
sp_Feed Topic RSSsp_TopicIcon
bouncy castle?
August 24, 2018
2:03, EEST
Avatar
luke
New Member
Members
Forum Posts: 1
Member Since:
August 24, 2018
sp_UserOfflineSmall Offline

We’re evaluating OPC UA on our site. We have a simple OPC UA server and using the Prosys OPC UA client to test the connection.

For the User Security component – when using ‘Anonymous or Username/Passwords – there are no problems connecting.

I am having difficulty with the User Security component when attempting to use Certificates and Private Keys. I’m not familiar with certificates, public and private keys, and Certificate Authorities etc. So I might be completely off the garden path with what I’m attempting to do.

I found the Opc.Ua.CertificateGenerator.exe tool on the OPC UA server. In command prompt, I used the following parameters.

Opc.Ua.CertificateGenerator.exe -cmd issue -sp . -an OPCTEST-o MyCompany –pw password –pem true,

This generated the type of files that seemed to be recognised on the Prosys OPC UA Client (.der for the certificate and .pem for the private key). However, when using the password, the Prosys client produced an error when trying to read the private key:

“Could not load private key: unable to process key spec: java.lang.ClassCastException: org.bouncycastle.asn1.DLSequence cannot be cast to org.bouncycastle.asn1.ASN1Integer”

What am I doing wrong here?

August 24, 2018
16:39, EEST
Avatar
Bjarne Boström
Moderator
Moderators
Forum Posts: 1045
Member Since:
April 3, 2012
sp_UserOfflineSmall Offline

Hi,

Could you please validate that those actually are proper .der (containing the public key part) and .pem (containing the private key part)? e.g. https://stackoverflow.com/ques…..pem-format

For the security concepts I recommend reading the specification Part 2.

March 18, 2019
11:39, EET
Avatar
bouncycastlerentals
Waterloo, On
New Member
Members
Forum Posts: 1
Member Since:
March 18, 2019
sp_UserOfflineSmall Offline

Yes It is truly need to take care of Username and Passwords and its should be contain strong symbol.Yell

Forum Timezone: Europe/Helsinki
Most Users Ever Online: 1919
Currently Online:
Guest(s) 50
Currently Browsing this Page:
1 Guest(s)
Top Posters:
Heikki Tahvanainen: 402
hbrackel: 144
rocket science: 90
pramanj: 86
Francesco Zambon: 83
Ibrahim: 78
Sabari: 62
kapsl: 57
gjevremovic: 49
Xavier: 43
Member Stats:
Guest Posters: 0
Members: 732
Moderators: 8
Admins: 1
Forum Stats:
Groups: 3
Forums: 15
Topics: 1545
Posts: 6515
Newest Members:
mood edibles, LouieWreve, daniellabdx, janessan21, sammiebeak359, gena7127517, thorstenbouldin, Brett.Rollason, steven014223542, Roberthat
Moderators: Jouni Aro: 1029, Pyry: 1, Petri: 1, Bjarne Boström: 1045, Jimmy Ni: 26, Matti Siponen: 353, Lusetti: 0, Elias: 0
Administrators: admin: 1