SSL considerations for platform tunneling

Starting in AX-3.7, secure (SSL) connections to NiagaraAX hosts are possible for platform connections, station (fox) connections from Workbench or other stations, and web browser (http) connections to a station’s WebService.

Currently, platform tunneling to a target host configured for platformssl only is not supported (“Ssl Only” from the “Change SSL Settings” function in its Platform Administration view—see Change SSL Settings.) To platform connect to such a host, you must make a direct platform connection from Workbench.

However, you can make a “regular” (unencrypted) tunneled platform connection to a target host that is merely “enabled” for platformssl. Additionally, the Supervisor (tunnel server) may be configured for SSL, say for all connection types (platform, fox, webserver)—and this may be more common than not.

For complete details on SSL configuration in AX-3.7 and later, refer to the NiagaraAX SSL Connectivity Guide.