Certificates and keys in OPC UA

To identify the participants in a communication and to verify the authenticity and confidentiality of the exchanged messages, every OPC UA application (client and server) must have a public certificate that is an Application Instance Interface and a public key/private key pair.

Keys

The public key is distributed with the certificate. The private key is not disclosed.
Private key file
Used to sign messages to send and to decrypt the messages received.
Public key file
Used to verify that the signature of the messages received and to encrypt the messages to send.
Provide Feedback
Have questions or feedback about this documentation? Please submit your feedback here.