Using custom certificates in Industrial Edge Devices¶
You also have the possibility to use custom certificates for the HTTPS interface in Edge Devices. You can upload these certificates under "Settings > System" in the Edge Device UI.
The IED communicates with the IEM on the IEM web interface and the IEM Registry Interface. In case the "Public Trusted" check box was not checked during the IEM setup, the root-CA certificate of these HTTPS servers is transferred to the Edge Device while onboarding the Edge Device. If the IEM is set up with custom certificates, this root-CA certificate might not be automatically updated. Hence, you need to upload your root-CA certificate to the Edge Device, if it has changed. To do so, use "Import IEM Trust Certificate" under "Settings > System" in the Edge Device UI. You can download the needed certificate chain (*.json file) by clicking "IEM CA Certificates" of the respective Edge Device under "Edge Devices" in the Management UI.