# ClientFindServers configuration # # Shared keys: # discoveryEndpoint LDS endpoint URL (e.g. opc.tcp://localhost:4840) # applicationUri OPC UA application URI # # Discovery-side keys (LDS connection): # discoveryCertificate Path to certificate for LDS connections (.der) # discoveryPrivateKey Path to private key for LDS connections (.der) # discoverySecurityMode None, Sign, or SignAndEncrypt # discoverySecurityPolicy None, Basic256Sha256, Aes256_Sha256_RsaPss, # Aes128_Sha256_RsaOaep, or ECC_nistP256 # discoveryAuthMode "anonymous" or "user" # discoveryUsername Username (required when discoveryAuthMode = user) # discoveryPassword Password (required when discoveryAuthMode = user) # discoveryTrustList Trusted certificate path (repeat for multiple) # # Server-side keys (connections to discovered servers): # serverCertificate Path to certificate for server connections (.der) # serverPrivateKey Path to private key for server connections (.der) # serverSecurityMode None, Sign, or SignAndEncrypt # serverSecurityPolicy None, Basic256Sha256, Aes256_Sha256_RsaPss, # Aes128_Sha256_RsaOaep, or ECC_nistP256 # serverAuthMode "anonymous" or "user" # serverUsername Username (required when serverAuthMode = user) # serverPassword Password (required when serverAuthMode = user) # serverTrustList Trusted certificate path (repeat for multiple) discoveryEndpoint = opc.tcp://localhost:4840 applicationUri = urn:bobink.ClientFindServers # Discovery (LDS) side discoveryCertificate = certs/ClientFindServers_cert.der discoveryPrivateKey = certs/ClientFindServers_key.der discoverySecurityMode = SignAndEncrypt discoverySecurityPolicy = Aes128_Sha256_RsaOaep discoveryAuthMode = user discoveryUsername = user discoveryPassword = password discoveryTrustList = certs/ServerLDS_cert.der # Server side serverCertificate = certs/ClientFindServers_cert.der serverPrivateKey = certs/ClientFindServers_key.der serverSecurityMode = SignAndEncrypt serverSecurityPolicy = Aes128_Sha256_RsaOaep serverAuthMode = user serverUsername = user serverPassword = password serverTrustList = certs/ServerRegister_cert.der