View Issue Details

IDProjectCategoryView StatusLast Update
000719810000-007: ProfilesSpecpublic2021-12-06 15:32
ReporterAlexander Allmendinger Assigned ToKarl Deiretsbacher  
PrioritynormalSeverityminorReproducibilityhave not tried
Status closedResolutionfixed 
Fixed in Version1.05.00 
Summary0007198: Wording of "Security – No Application Authentication" description is not clear
Description

The text "configure server to accept all certificates" can either mean:

  • Only skip the trust list check
  • Skip other certificate validation steps too (e.g. expiration date, not yet valid, ...)

We assume the first one is true in this case the description should be changed to state:
"Configure Server to accept untrusted certificates"

Additional Information

Old definition:
The Server supports being able to be configured for no application authentication, just User authentication and normal encryption/signing:
– Configure Server to accept all certificates
– Certificates are just used for message security (signing and encryption)
– Users level is used for authentication

TagsNo tags attached.
Commit Version
Fix Due Date

Activities

Karl Deiretsbacher

2021-11-24 10:49

developer   ~0015381

fixed as suggested. See https://profiles.opcfoundation.org/conformanceunit/3781

Jim Luth

2021-12-06 15:32

administrator   ~0015459

Agreed to close in Virtual F2F.

Issue History

Date Modified Username Field Change
2021-08-12 15:39 Alexander Allmendinger New Issue
2021-11-23 18:09 Jim Luth Assigned To => Karl Deiretsbacher
2021-11-23 18:09 Jim Luth Status new => assigned
2021-11-24 10:49 Karl Deiretsbacher Status assigned => resolved
2021-11-24 10:49 Karl Deiretsbacher Resolution open => fixed
2021-11-24 10:49 Karl Deiretsbacher Note Added: 0015381
2021-12-06 15:32 Jim Luth Status resolved => closed
2021-12-06 15:32 Jim Luth Fixed in Version => 1.05.00
2021-12-06 15:32 Jim Luth Note Added: 0015459