Install the SSL Certificate
The SSL (Secure Sockets Layer) certificate is a file stored on the PCMM2G that enables encrypted connections (HTTPS).
- The SSL certificate is only applicable to PCMM2G.
- By default, the PCMM2G contains a certificate generated by Kollmorgen.
- The web browser shows a warning message when the connection is not secure.
- To prevent this warning, the default certificate should be replaced by creating a new certificate in the Security tab.
- This certificate must be downloaded and installed onto the PC connected to the PCMM2G.
- This user-created certificate is assigned to the PCMM2G's IP address.
- The certificate becomes invalid if this IP address is modified.
Certificate Expiration Period
- The certificate expiration period is set by the user.
- Kollmorgen recommends 365 days.
- When the expiration period is over, the certificate becomes invalid.
- The user must create and install a new certificate to prevent security warnings.
Installation Procedure
Assumptions
The PCMM2G is connected to the router or laptop.
See the PCMM2G Installation Manual.
-
- The images in this procedure are from the Microsoft® Edge browser.
Other browsers have different options.
It's recommended to have only one instance of the web browser open for this procedure.
- Open a web browser.
- Enter the URL for the PCMM2G.
The default IP address is 192.168.0.101.
A connection message appears. (Connection message) - Click the Advanced button.
Additional information about the connection appears. (Connection message - Advanced information) - Click the Continue to (IP address) (unsafe) link.
The Web server opens for the PCMM2G. (Not Secure PCMM2G) - Login to the PCMM2G.
See User Authentication. - Click the Settings tab.
- Click the Security tab. (Security tab)
- In the Create SSL Certificate area:
- Enter the Organization Name.
- Enter the Expiration Period (days). (Create SSL Certificate area with content)
- Kollmorgen recommends 365 days.
- Click the Create SSL Certificate button.
A confirmation message appears. (Confirmation message)

Create SSL Certificate area with content

- Click OK to continue.
The SSL certificate successfully created message appears. (SSL certificate successfully created message) - Click OK to reboot the controller.
A rebooting message appears. (Rebooting message) - Wait for the Disconnected message to appear. (Disconnected message)
- Refresh the browser.
The connection message reappears. (Connection message) - Click the Advanced button again.
Additional information about the connection reappears. (Connection message - Advanced information) - Click the Continue to (IP address) (unsafe) link.
The Web server opens for the PCMM2G. - Click the Not secure button and click the Your connection to this site isn't secure option. (Your connection to this site isn't secure option)
- In the message header, click the Show certificate button. (Show certificate button)
- Click the Details tab. (Details tab with Export button.)
- Click the Export button.
The Save As dialog opens. (Save As dialog) - Select a folder to save the .crt file.
This example procedure uses the Downloads folder. (Save As dialog with saved .crt file) - Click the Save button.
The Save As dialog closes and the Details tab returns. - Use Windows® Explorer to locate and select the .crt file.
- The .crt file name is the PCMM2G's IP address.
Example: 192.168.0.101.crt.
- The .crt file name is the PCMM2G's IP address.
- Right-click the file and click the Install Certificate option. (Selected .crt file and the Install Certificate option)
- Accept the default on the Welcome page and click Next.
The Certificate Store page opens. - Select the Place all certificates in the following store option. (Certificate Import Wizard - Certificate Store page with selection)
- Click the Browse... button.
The Select Certificate Store dialog opens. - Select the Trusted Root Certification Authorities certificate store. (Selected Certificate Store dialog - Trusted Root Certification Authorities)
- Click OK to save the changes or selections and close the dialog.
The Certificate Store page returns and shows the selected Certificate store. (Certificate Import Wizard - Certificate Store page with selected Certificate store) - Click Next.
The Completing the Certificate Import Wizard page opens. (Certificate Import Wizard - Completing the Certificate Import Wizard page) - Click Finish.
A Security Warning dialog opens. (Security Warning dialog) - Click Yes to install this certificate.
The Certificate Import Wizard - The import was successful message appears. (Certificate Import Wizard - The import was successful message) - Click OK to continue.
The Certificate Import Wizard - Details tab returns. - Close the wizard.
The connected PCMM2G Web server page returns. - Close the web browser.
- Verify ALL web browser windows are closed.
- Open a new web browser instance and use the URL to connect to the Web server.
The PCMM2G shows it is secure. - Click the Secure button. (Secure PCMM2G)
- Click the Connection is secure option. (Connection is secure option)
- Click the Settings tab.
- Click the Security tab.
The SSL Certificate Details area shows the Certificate Status and expiration date. (SSL Certificate Details area with certificate information)
Connection message - Advanced information
SSL certificate successfully created message
Connection message - Advanced information
The PCMM2G shows it is Not secure. (Not secured PCMM2G)
Your connection to this site isn't secure option
The certificate for this site is not valid message appears.
The Certificate Viewer dialog opens.
The General tab is active. (Certificate Viewer dialog - General tab)
Certificate Viewer dialog - General tab
Details tab with Export button.
Save As dialog with saved .crt file
Selected .crt file and the Install Certificate option
The Certificate Import Wizard opens. (Certificate Import Wizard - Welcome page)
Certificate Import Wizard - Welcome page
Certificate Import Wizard - Certificate Store page with selection
Selected Certificate Store dialog - Trusted Root Certification Authorities
Certificate Import Wizard - Certificate Store page with selected Certificate store
Certificate Import Wizard - Completing the Certificate Import Wizard page
Certificate Import Wizard - The import was successful message
The Certificate is secure message appears. (Certificate is secure message)
Troubleshooting
The webpage displays a warning:
- KAS IDE warning: The identity of this web site or the integrity of this connection cannot be verified.
- Microsoft Edge / Google Chrome warning: Your connection isn’t private.
- Mozilla Firefox warning: Warning: Potential Security Risk Ahead.
Remedies
- Verify the current certificate:
- has been downloaded and installed onto the machine.
- matches the IP address of the controller.
- has not expired yet
The IP address of the PCMM2G does not match the IP address listed on the SSL certificate.
Remedies
- Create, download, and install a new certificate with the new IP address.
- Configure the IP address with a static IP address matching the certificate’s IP address using the rotary switch.
- See Network tab.
- Reserve the certificate’s IP address for the PCMM2G using a router or server.
The KAS IDE continually prompts a Security Alert dialog box.
Remedies
- Click Yes to all the dialog boxes to continue to the Web server.
- Restart KAS-IDE.
- This situation can be avoided in the future by closing the Web server in KAS-IDE and creating the certificate using a web browser.