BSI 24/30484404 DC 2024
$24.66
BS EN IEC 62541-12. OPC Unified Architecture – Part 12. Discovery and global services
Published By | Publication Date | Number of Pages |
BSI | 2024 | 123 |
PDF Catalog
PDF Pages | PDF Title |
---|---|
9 | FIGURES |
10 | TABLES |
13 | FOREWORD |
15 | 1 Scope 2 Normative references |
16 | 3 Terms, definitions, and conventions 3.1 Terms and definitions |
18 | 3.2 Abbreviations and symbols |
19 | 4 The Discovery Process 4.1 Overview 4.2 Registration and Announcement of Applications 4.2.1 Overview 4.2.2 Hosts with a LocalDiscoveryServer |
20 | 4.2.3 Hosts without a LocalDiscoveryServer 4.3 The Discovery Process for Clients to Find Servers 4.3.1 Overview |
21 | 4.3.2 Simple Discovery with a DiscoveryUrl 4.3.3 Local Discovery |
22 | 4.3.4 MulticastSubnet Discovery 4.3.5 Global Discovery |
23 | 4.3.6 Combined Discovery Process for Clients |
24 | 4.4 The Discovery Process for Reverse Connections 4.4.1 Overview 4.4.2 Out-of-band Discovery 4.4.3 Global Discovery for Reverse Connections |
25 | 5 Local Discovery Server 5.1 Overview 5.2 Security Considerations for Multicast DNS 5.3 Network Architectures 5.3.1 Overview 5.3.2 Single MulticastSubnet |
26 | 5.3.3 Multiple MulticastSubnet |
27 | 5.3.4 No MulticastSubnet 5.3.5 Domain Names and MulticastSubnets |
28 | 6 Global Discovery Server 6.1 Overview 6.2 Roles and Privileges 6.3 Client connections to global services |
29 | 6.4 Local Discovery |
30 | 6.5 Application Registration Workflow |
32 | 6.6 Information Model 6.6.1 Overview |
33 | 6.6.2 Directory 6.6.3 DirectoryType |
34 | 6.6.4 FindApplications |
35 | 6.6.5 ApplicationRecordDataType 6.6.6 RegisterApplication |
36 | 6.6.7 UpdateApplication |
37 | 6.6.8 UnregisterApplication 6.6.9 GetApplication |
38 | 6.6.10 QueryApplications |
39 | 6.6.11 QueryServers (deprecated) |
41 | 6.6.12 ApplicationRegistrationChangedAuditEventType 7 Certificate Management 7.1 Overview |
42 | 7.2 Roles and Privileges |
43 | 7.3 Pull Management |
44 | 7.4 Push Management 7.5 Application Setup |
45 | 7.6 Pull Management Workflow |
48 | 7.7 Push Management Workflow |
50 | 7.8 Common Information Model 7.8.1 Overview 7.8.2 TrustLists 7.8.2.1 TrustListType |
51 | 7.8.2.2 OpenWithMasks |
52 | 7.8.2.3 CloseAndUpdate |
53 | 7.8.2.4 AddCertificate |
54 | 7.8.2.5 RemoveCertificate |
55 | 7.8.2.6 TrustListDataType 7.8.2.7 TrustListMasks |
56 | 7.8.2.8 TrustListValidationOptions 7.8.2.9 TrustListOutOfDateAlarmType |
57 | 7.8.2.10 TrustListUpdateRequestedAuditEventType 7.8.2.11 TrustListUpdatedAuditEventType |
58 | 7.8.3 CertificateGroups 7.8.3.1 CertificateGroupType |
59 | 7.8.3.2 GetRejectedList 7.8.3.3 CertificateGroupFolderType |
60 | 7.8.4 CertificateTypes 7.8.4.1 CertificateType 7.8.4.2 ApplicationCertificateType |
61 | 7.8.4.3 HttpsCertificateType 7.8.4.4 RsaMinApplicationCertificateType 7.8.4.5 RsaSha256ApplicationCertificateType |
62 | 7.8.4.6 EccApplicationCertificateType 7.8.4.7 EccNistP256ApplicationCertificateType 7.8.4.8 EccNistP384ApplicationCertificateType 7.8.4.9 EccBrainpoolP256r1ApplicationCertificateType |
63 | 7.8.4.10 EccBrainpoolP384r1ApplicationCertificateType 7.8.4.11 EccCurve25519ApplicationCertificateType 7.8.4.12 EccCurve448ApplicationCertificateType |
64 | 7.9 Information Model for Pull Certificate Management 7.9.1 Overview 7.9.2 CertificateDirectoryType |
65 | 7.9.3 StartSigningRequest |
67 | 7.9.4 StartNewKeyPairRequest |
68 | 7.9.5 FinishRequest |
69 | 7.9.6 RevokeCertificate |
70 | 7.9.7 GetCertificateGroups 7.9.8 GetCertificates |
71 | 7.9.9 GetTrustList |
72 | 7.9.10 GetCertificateStatus 7.9.11 CheckRevocationStatus |
73 | 7.9.12 CertificateRequestedAuditEventType |
74 | 7.9.13 CertificateDeliveredAuditEventType 7.10 Information Model for Push Certificate Management 7.10.1 Overview |
76 | 7.10.2 ServerConfiguration |
77 | 7.10.3 ServerConfigurationType |
78 | 7.10.4 UpdateCertificate |
79 | 7.10.5 GetCertificates |
80 | 7.10.6 ApplyChanges 7.10.7 CreateSigningRequest |
81 | 7.10.8 CancelChanges |
82 | 7.10.9 GetRejectedList 7.10.10 ResetToServerDefaults |
83 | 7.10.11 TransactionDiagnosticsType |
84 | 7.10.12 TransactionErrorType 7.10.13 CertificateUpdateRequestedAuditEventType 7.10.14 CertificateUpdatedAuditEventType |
85 | 8 KeyCredential Management 8.1 Overview 8.2 Roles and Privileges |
86 | 8.3 Pull Management |
87 | 8.4 Push Management 8.5 Information Model for Pull Management 8.5.1 Overview |
88 | 8.5.2 KeyCredentialManagementFolderType 8.5.3 KeyCredentialManagement 8.5.4 KeyCredentialServiceType |
89 | 8.5.5 StartRequest |
90 | 8.5.6 FinishRequest |
91 | 8.5.7 Revoke 8.5.8 KeyCredentialAuditEventType |
92 | 8.5.9 KeyCredentialRequestedAuditEventType 8.5.10 KeyCredentialDeliveredAuditEventType 8.5.11 KeyCredentialRevokedAuditEventType |
93 | 8.6 Information Model for Push Management 8.6.1 KeyCredentialConfigurationFolderType |
94 | 8.6.2 CreateCredential 8.6.3 KeyCredentialConfiguration 8.6.4 KeyCredentialConfigurationType |
95 | 8.6.5 GetEncryptingKey |
96 | 8.6.6 UpdateCredential 8.6.7 DeleteCredential |
97 | 8.6.8 KeyCredentialUpdatedAuditEventType 8.6.9 KeyCredentialDeletedAuditEventType |
98 | 9 AuthorizationServices 9.1 Overview 9.2 Roles and Privileges |
99 | 9.3 Implicit |
100 | 9.4 Explicit 9.5 Chained |
101 | 9.6 Information Model for Requesting Access Tokens 9.6.1 Overview |
102 | 9.6.2 AuthorizationServicesFolderType 9.6.3 AuthorizationServices 9.6.4 AuthorizationServiceType |
103 | 9.6.5 RequestAccessToken |
104 | 9.6.6 GetServiceDescription 9.6.7 AccessTokenIssuedAuditEventType |
105 | 9.7 Information Model for Configuring Servers 9.7.1 Overview 9.7.2 AuthorizationServiceConfigurationFolderType |
106 | 9.7.3 AuthorizationServices 9.7.4 AuthorizationServiceConfigurationType 10 Namespaces 10.1 Namespace Metadata |
107 | 10.2 Handling of OPC UA Namespaces |
108 | Annex A (informative) Deployment and Configuration A.1 Firewalls and Discovery |
110 | A.2 Resolving References to Remote Servers |
111 | Annex B (normative) NodeSet and Constants B.1 NodeSet B.2 Numeric Node Ids |
112 | Annex C (normative) OPC UA Mapping to mDNS C.1 DNS Server (SRV) Record Syntax C.2 DNS Text (TXT) Record Syntax |
113 | C.3 DiscoveryUrl Mapping |
114 | Annex D (normative) Server Capability Identifiers |
115 | Annex E (normative) DirectoryServices E.1 Global Discovery via Other Directory Services E.2 UDDI |
116 | E.3 LDAP |
118 | Annex F (normative) Local Discovery Server F.1 Certificate Store Directory Layout F.2 Installation Directories on Windows |
120 | Annex G (normative) Application Setup G.1 Application Setup with Pull Management G.2 Application Setup with the Push Management |
121 | G.3 Setting Permissions |
122 | Annex H (informative) Comparison with RFC 7030 H.1 Overview H.2 Obtaining CA Certificates H.3 Initial Enrolment H.4 Client Certificate Reissuance |
123 | H.5 Server Key Generation H.6 Certificate Signing Request (CSR) Attributes Request |