Communication encryption

EnOS Edge uses the TLS1.2 protocol to secure communication sessions with downstream devices.

Connection mode supported

  • TCP/IP(S) client
  • TCP/IP(S) server

The way of issuing certificates

  • EnOS CA issued
  • EnOS Edge is self-issued locally
  • A third-party certification authority

Authentication supported

  • One-way authentication
  • Two-way authentication

How EnOS Edge certificates are generated

  • EnOS Edge uses EnOS CA to issue certificates. It requires EnOS Edge to communicate with EnOS IoT Hub.
  • EnOS Edge uses a third-party authority issued certificate, i.e. reset the certificate, need to download the certificate which was requested by EnOS Edge under a specific connection from a third-party organization and then import it under the appropriate Edge connection.
  • When EnOS Edge boot from factory original set up, a locally issued certificate is automatically generated.

How EnOS Edge certificates are used

  • EnOS Edge communicates with EnOS IoT Hub, and if the certificate is not reset under the connection, the certificate issued by EnOS CA will be used. Otherwise, use the reset certificate.
  • EnOS Edge has never communicated with EnOS IoT Hub, and if the certificate is not reset under the connection, a self-issued certificate will be used.
  • EnOS Edge currently supports a crypt suite: RSA-AES-SHA