Please consider registering

sp_LogInOut Log In sp_Registration Register

Register | Lost password?
Advanced Search

— Forum Scope —

— Match —

— Forum Options —

Minimum search word length is 3 characters - maximum search word length is 84 characters

sp_Feed Topic RSS sp_TopicIcon
bouncy castle?
August 24, 2018
2:03, EEST
New Member
Forum Posts: 1
Member Since:
August 24, 2018
sp_UserOfflineSmall Offline

We’re evaluating OPC UA on our site. We have a simple OPC UA server and using the Prosys OPC UA client to test the connection.

For the User Security component – when using ‘Anonymous or Username/Passwords – there are no problems connecting.

I am having difficulty with the User Security component when attempting to use Certificates and Private Keys. I’m not familiar with certificates, public and private keys, and Certificate Authorities etc. So I might be completely off the garden path with what I’m attempting to do.

I found the Opc.Ua.CertificateGenerator.exe tool on the OPC UA server. In command prompt, I used the following parameters.

Opc.Ua.CertificateGenerator.exe -cmd issue -sp . -an OPCTEST-o MyCompany –pw password –pem true,

This generated the type of files that seemed to be recognised on the Prosys OPC UA Client (.der for the certificate and .pem for the private key). However, when using the password, the Prosys client produced an error when trying to read the private key:

“Could not load private key: unable to process key spec: java.lang.ClassCastException: org.bouncycastle.asn1.DLSequence cannot be cast to org.bouncycastle.asn1.ASN1Integer”

What am I doing wrong here?

August 24, 2018
16:39, EEST
Bjarne Boström
Forum Posts: 544
Member Since:
April 3, 2012
sp_UserOfflineSmall Offline


Could you please validate that those actually are proper .der (containing the public key part) and .pem (containing the private key part)? e.g. https://stackoverflow.com/questions/5215771/how-can-i-check-if-the-certificate-file-i-have-is-in-pem-format

For the security concepts I recommend reading the specification Part 2.

March 18, 2019
11:39, EEST
Waterloo, On
New Member
Forum Posts: 1
Member Since:
March 18, 2019
sp_UserOfflineSmall Offline

Yes It is truly need to take care of Username and Passwords and its should be contain strong symbol.Yell

Forum Timezone: Europe/Helsinki

Most Users Ever Online: 267

Currently Online:
7 Guest(s)

Currently Browsing this Page:
1 Guest(s)

Top Posters:

hbrackel: 103

pramanj: 86

ibrahim: 70

kapsl: 57

gjevremovic: 49

TimK: 41

Fransua33: 39

fred: 38

Rainer Versteeg: 32

Thomas Reuther: 31

Member Stats:

Guest Posters: 0

Members: 1102

Moderators: 14

Admins: 1

Forum Stats:

Groups: 3

Forums: 15

Topics: 1008

Posts: 4266

Newest Members:

normagalindo47, aurelia27u, isobel41d356980, michaeldegli, gqbdolores, kez1399, jaclynmcvay358, testuser20, edox, danilolapine

Moderators: Jouni Aro: 851, Otso Palonen: 32, Tuomas Hiltunen: 5, janimakela: 0, Pyry: 1, Terho: 0, Petri: 0, Bjarne Boström: 544, Heikki Tahvanainen: 402, Jukka Asikainen: 1, Teppo Uimonen: 20, Markus Johansson: 19, Matti Siponen: 53, Lusetti: 0

Administrators: admin: 0