<?xml-stylesheet type="text/xsl" href="https://community.element14.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Connect to AVNET iotconnect.io with Node-RED - part 9e: IIoT supply chain and Certificates - Test!</title><link>/technologies/industrial-automation-space/b/blog/posts/connect-to-avnet-iotconnect-io-with-node-red---part-9e-iiot-supply-chain-and-certificates---test</link><description>For context, check the intro post . Summary: How to use Signed Certificates in an IoT supply chain. Without giving away your private keys to your subcontractor.At the end of this post, you completed 90% of the end-to-end process.You, as subcontra...</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: Connect to AVNET iotconnect.io with Node-RED - part 9e: IIoT supply chain and Certificates - Test!</title><link>https://community.element14.com/technologies/industrial-automation-space/b/blog/posts/connect-to-avnet-iotconnect-io-with-node-red---part-9e-iiot-supply-chain-and-certificates---test</link><pubDate>Mon, 17 May 2021 16:37:33 GMT</pubDate><guid isPermaLink="false">93d5dcb4-84c2-446f-b2cb-99731719e767:10be91e4-8385-4147-a1da-1da0ecd22995</guid><dc:creator>Jan Cumps</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;I have done additional tests last weekend.&lt;/p&gt;&lt;p&gt;When I originally wrote this, I tried to see if the mechanism really checked if the signature matches a named device, and if at connection time it is validated if a device is signed by the expected certificate chain.&lt;/p&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;I have now tried to see if I could spill over to another online entity (equals a company), if they happen to use the same Root CA provider.&lt;/p&gt;&lt;p&gt;That is also working as expected. Even if 2 companies share and register the same Root certificate, the connection is rejected when a thing tries to connect to the other company.&lt;/p&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;&lt;span&gt;[View:/resized-image/__size/930x33/__key/commentfiles/f7d226abd59f475c9d224a79e3f0ec07-10be91e4-8385-4147-a1da-1da0ecd22995/contentimage_5F00_207918.png:930:33]&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;&lt;span&gt;[View:/resized-image/__size/561x317/__key/commentfiles/f7d226abd59f475c9d224a79e3f0ec07-10be91e4-8385-4147-a1da-1da0ecd22995/contentimage_5F00_207919.png:561:317]&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Good.&lt;/p&gt;&lt;img src="https://community.element14.com/aggbug?PostID=11155&amp;AppID=141&amp;AppType=Weblog&amp;ContentType=0" width="1" height="1"&gt;</description></item></channel></rss>