Connecting a Kepware Client to an OPC UA server involves establishing a communication link that adheres to the OPC UA standard. It requires managing security certificates, defining connection details within Kepware, and importing the OPC UA server's tag structure. Configuration includes the certificate exchange, specifying server endpoints, and adding relevant tags.

On this page:



System Requirements

  • KepServerEx V5 (or superior).
  • OPC UA Protocol

How to Use

The procedure for a successful OPC UA connection is divided into three main steps.

  • KepServerEx OPC UA Client Certification
  • Creating certificates for the OPC Server
  • Kepware OPC Client Configuration

KepServerEx Client Certificate

In the Kepware OPC UA Configuration Manager, go to Instance Certificates (1). In the Client Certificate portion, click Export Client Driver Certificate... (2), and save the file in any folder you want.

OPC UA Server Configuration

Navigate to the Solution → Settings tab, locate the OPC Server Runtime configuration, select OPC UA, and click on Settings (1).

You should see an application called UA Server Configuration Helper opening up. Click Browse (2) and search for the file .. fs-9.1uaPLUS.Net4.exe. Then, click Create UA Configuration (3) followed by Edit UA Configuration (4).

The Edit UA Configuration page is where the OPC UA Server properties are configured, such as Endpoint (1), Security Policies (2), and Certifications (Client and Server) (3).

In the certificate popup, click Import a Client Certificate (4) and browse for the Kepware Client Certificate. Then, in Create a new self signed server certificate (5), give it a friendly name, and click Create.

Finally, click Export (6) to save the Server Certificate. Click OK → Save And Close → Done

KepServerEx Configuration

In the KepServerEX Configuration display, right-click Connectivity and select New Channel. From the Channel Wizard popup, browse for the OPC UA Client.

Fill in the Wizard configuration with the information from the OPC Server.

Click Add Device (1) and name it. Fill in all the device parameters until you reach the Import Items (2) page.

The import tool WILL NOT work right now because the OPC Server (Project) is not running yet. Click  Advance (3) and finish your configuration.


Importing Server Certificate

Back in the OPC UA Configuration Manager, go to the Trusted Servers (1) tab and Import (2) the OPC Server certificate.

Reinitialize the Kepware service and run your project.


Solution Runtime

Once the configuration is done, you can launch the Solution to test the communication exchange. Remember to have the OPC Server Module enabled on Runtime → Startup.

You can now go to your Kepware Device and Browse for the existing Tags.

The Tags Visibility property (on Edit → Objects) must be configured according to the description below:

  • Public: Can be read and write in your OPC
  • Protected: Can only be read
  • Private: will not be seen or browsed

In the Advosol UAplus Server popup, you can monitor the clients currently connected to your server. As shown in the image below, we have one client (Kepware’s OPC Quick Client) that is successfully communicating with our Solution.


In this section:

  • No labels