Create a New Project in Manual Configuration Mode on a Client/FEP

When you create a project in manual configuration mode, you must manually enter the client/FEP project details into the relevant fields.

Before you start, make sure that you have all the necessary server project details, including the server name, the ports (except Pmon), the shared project path, and the security details. Although manual configuration mode lets you freely enter the Client/FEP project details (for example, Client/Server communication mode and certificate type), you must still ensure these match those of the selected Server project. Otherwise, Installed Client on Client/FEP does not launch.

You can establish a secured communication between the Server project and the Client/FEP project. For this you either use file (.pem file) based or Windows store based certificates. The following procedure describes the Client/FEP project creation using Windows store based certificates.

On the Server, ensure the following:

On the client/FEP machine, you must ensure the following for the Windows store certificates.

  1. In the SMC tree, select Projects.
  2. Click Create Project .
  3. In the Server Information expander, do the following:
    a. Select the Manual configuration check box.
    b. In the Server name field, type the full computer name of the server or click Browse to locate and select the server using the Workstation Picker dialog box.
  4. The service port is disabled, and the Client Project Information and the Communication Security expanders become available.
  5. In the Client Project Information expander, do the following:
    a. Enter a value into the Project name field.
    b. Edit the Project path to change the default.
    c. Edit the Languages to match the languages on the server project.
    d. Enter a value into the Shared project path or browse for the server project.
    NOTE: The shared project path is mandatory for activating the project.
    e. Edit the port numbers for the Pmon, Server Data, Server Event, Server HDB Reader and Query Cache port fields.
    f. Select the Query Cache port check box that enables the Query Cache port field. Set a unique port number.
  6. In the Communication Security expander, do the following:
    a. In the Client/Server Communication drop-down list, change the default setting Secured to Unsecured only when you want to enable the Client/Server communication in Unsecured mode or to Stand-alone only when you want to disable the communication between the server project and the client/FEP station.
    b. Type or set the Proxy port field so that it matches that of the selected server project.
    c. Select the certificate type to match that of the selected server project. The default selection is Certificate type - Windows store.
    d. Click Browse to change and select the root and host certificates, and the host key (only in case of .pem file certificate). Ensure that the root certificate is the same as that of the Server project. Otherwise, the Desigo CC client application will not launch. The host certificate and the host key must be generated from the root certificate provided on the Server project.
    e. (Available only when the Client/Server communication type is Secured and the Certificate type is Windows store) Add Host certificate user to the list of users.
    NOTE 1: Only users and groups listed for the selected host certificate can launch the Desigo CC client application on the client/FEP station.
    NOTE 2: Even if the logged-on user of the client/FEP operating system is a member of the Administrators group and has rights on the private key of the host certificate provided, you still have to explicitly assign this user rights on the host certificate’s private key by adding the Host Certificate User list.
  7. Click Save .
    NOTE: Make sure that the root certificate is the same as that of the Server project. Otherwise, the Desigo CC client application cannot launch, and you must do the following:
    a. Click Cancel.
    b. In the Root Certificate field of the Communication Security expander, browse for and select the same root certificate as on the server.
    c. Click Save .
    d. The data entered while creating the project is validated and saved.
  1. On successful project creation, the new project node is created as a child under the Projects node in the SMC tree. It is in Stopped state you can edit, activate, or delete it. You also can start/stop the project.
    A project folder structure is created with subfolders and files at the specified path.
    For .pem file certificates, the root and host certificates and the host certificate key file used for secure communication are copied to the path ..\[ProjectName]\Config and the config file is updated.
    In case of (.pfx/.cer) certificates, only the config file is updated.

Special Considerations When Applying Security for Closed Mode Configurations

Tips